|
Plagegeister aller Art und deren Bekämpfung: Awesomehp ist auf meinem ComputerWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
19.02.2014, 23:04 | #1 |
| Awesomehp ist auf meinem Computer Hallo, ich habe awesomehp auf meinem Computer. Eigentlich wollte ich mir Windows live movie maker herunterladen, doch seitdem hat sich folgendes verändert: z.B.: 1. Meine Desktop-Ansicht hat sich verändert (die Symbole sind anders geordnet und viel kleiner). 2. Es öffnen sich immer wieder Fenster mit allen möglichen anfragen von Schutzprogrammen. 3. Im Firefox-Suchfeld erscheint nicht mehr 'google' sondern 'awesomehp'. 4. Bei Suchanfragen oder beim Öffnen von Video-links wird immer das angezeigt: Dieser Verbindung wird nicht vertraut. ... Könnt ihr mir helfen das wieder in den Griff zu bekommen? Grüße Geändert von Caveman12 (19.02.2014 um 23:18 Uhr) |
20.02.2014, 00:39 | #2 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Awesomehp ist auf meinem Computer Hallo und
__________________Hast du noch weitere Logs (mit Funden)? Malwarebytes und/oder andere Virenscanner, sind die mal fündig geworden? Ich frage deswegen nach => http://www.trojaner-board.de/125889-...tml#post941520 Bitte keine neuen Virenscans machen sondern erst nur schon vorhandene Logs in CODE-Tags posten! Relevant sind nur Logs der letzten 7 Tage bzw. seitdem das Problem besteht! Zudem bitte auch ein Log mit Farbars Tool machen: Scan mit Farbar's Recovery Scan Tool (FRST) Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
Lesestoff: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ |
20.02.2014, 03:07 | #3 |
| Awesomehp ist auf meinem Computer McAfee hat nichts gefunden. Ist aktuell und scannt täglich.
__________________FRST Logfile: FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 18-02-2014 Ran by Caveman (administrator) on CAVEMAN-CAVEMAN on 20-02-2014 03:03:06 Running from C:\Users\Caveman\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\system32\atiesrxx.exe (AMD) C:\Windows\system32\atieclxx.exe (Microsoft Corporation) C:\Windows\system32\WLANExt.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (APN LLC.) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Just Develop It) C:\Program Files (x86)\MyPC Backup\BackupStack.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (McAfee, Inc.) C:\Windows\system32\mfevtps.exe (GenTechnologies Apps, LLC) C:\ProgramData\MovieMode\MovieModeService.exe (Sony Corporation) c:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe () C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Sony Corporation) C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe (Microsoft Corporation) C:\Windows\SysWOW64\DllHost.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Microsoft Corporation) C:\Windows\SysWOW64\DllHost.exe (McAfee, Inc.) C:\Program Files\McAfee\MSC\McAPExe.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (GenTechnologies Apps, LLC) C:\ProgramData\MovieMode\MovieMode.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (McAfee, Inc.) C:\Program Files (x86)\McAfeeMOBK\WrapperTrayIcon.exe (Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMgr.exe (SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_YATIHVE.EXE (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe () C:\Users\Caveman\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe (BrowserSafeguard) C:\Users\Caveman\AppData\Local\BrowserSafeguard\BrowserSafeguard.exe (PIXELA CORPORATION) C:\Program Files (x86)\PIXELA\Everio MediaBrowser\MBCameraMonitor.exe (McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.141\SSScheduler.exe (MyPCBackup.com) C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe (Deutsche Telekom AG) C:\Program Files\Netzmanager\netzmanager.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Sony Corporation) C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe (Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe (SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (APN) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe (Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE (Advanced Micro Devices Inc.) c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Adobe Systems Incorporated) c:\Program Files (x86)\Adobe\Elements 10 Organizer\PhotoshopElementsFileAgent.exe (Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe (Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe (Deutsche Telekom AG) C:\Program Files\Netzmanager\NMInfraIS2\Netzmanager_Service.exe (Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (Sony Corporation) C:\Program Files\Sony\VAIO Improvement\vim.exe (Sony Corporation) C:\Program Files\Sony\VAIO Improvement\vim.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCSystemTray.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee Online Backup\MOBK649backup.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCPerfService.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee Online Backup\MOBK649backup.exe (McAfee, Inc.) C:\Program Files\McAfee\MAT\McPvTray.exe (ArcSoft, Inc.) C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe (Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMService.exe (Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNService.exe (Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNClient.exe (McAfee, Inc.) C:\Program Files\McAfee\msm\McSmtFwk.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Sony Corporation) C:\Program Files\Sony\VAIO Update Common\VUAgent.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCService.exe (Sony of America Corporation) C:\Program Files\Sony\VAIO Care\listener.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCAgent.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVH.EXE () C:\Program Files (x86)\Common Files\microsoft shared\virtualization handler\OfficeVirt.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE () C:\Users\Caveman\AppData\Roaming\VOPackage\VOPackage.exe () C:\Users\Caveman\AppData\Roaming\VOPackage\VOsrv.exe (Cherished Technololgy LIMITED) C:\ProgramData\WPM\wprotectmanager.exe (Cherished Technololgy LIMITED) C:\ProgramData\IePluginService\PluginService.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe () C:\Program Files (x86)\AnyProtectEx\AnyProtectTrayIcon.exe () C:\Program Files (x86)\EnhanceTronic\updateEnhanceTronic.exe () C:\Program Files (x86)\EnhanceTronic\bin\utilEnhanceTronic.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe (Intel Corporation) C:\Windows\system32\igfxsrvc.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESGfxMgr.exe (Intel Corporation) C:\Windows\system32\igfxext.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1158248 2012-02-27] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1158248 2012-02-27] (Realtek Semiconductor) HKLM\...\Run: [BTMTrayAgent] - C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll [11406608 2011-12-19] (Intel Corporation) HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2870032 2012-02-24] (Synaptics Incorporated) HKLM\...\Run: [McAfeeWrapperApplication] - C:\Program Files (x86)\McAfeeMOBK\WrapperTrayIcon.exe [453344 2010-12-07] (McAfee, Inc.) HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [499608 2011-06-16] (Adobe Systems Incorporated) HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284440 2011-11-29] (Intel Corporation) HKLM-x32\...\Run: [Dolby Home Theater v4] - C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [500736 2011-05-02] (Dolby Laboratories Inc.) HKLM-x32\...\Run: [USB3MON] - C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-02-23] (Intel Corporation) HKLM-x32\...\Run: [StartCCC] - c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [343168 2012-02-03] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [mcui_exe] - C:\Program Files\McAfee.com\Agent\mcagent.exe [537512 2013-09-24] (McAfee, Inc.) HKLM-x32\...\Run: [ISBMgr.exe] - C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe [60552 2011-09-20] (Sony Corporation) HKLM-x32\...\Run: [PMBVolumeWatcher] - c:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [693608 2012-02-21] (Sony Corporation) HKLM-x32\...\Run: [FUFAXRCV] - C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe [495616 2011-03-09] (SEIKO EPSON CORPORATION) HKLM-x32\...\Run: [FUFAXSTM] - C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe [856064 2011-03-09] (SEIKO EPSON CORPORATION) HKLM-x32\...\Run: [EEventManager] - C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [979328 2010-10-12] (SEIKO EPSON CORPORATION) HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [684600 2014-02-18] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [ApnTBMon] - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1778640 2013-12-20] (APN) HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.) HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-11-02] (Apple Inc.) HKLM-x32\...\Run: [mcpltui_exe] - C:\Program Files\McAfee.com\Agent\mcagent.exe [537512 2013-09-24] (McAfee, Inc.) HKLM-x32\...\Run: [TkBellExe] - C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe [295512 2014-02-18] (RealNetworks, Inc.) HKLM-x32\...\Run: [mobilegeni daemon] - C:\Program Files (x86)\Mobogenie\DaemonProcess.exe HKLM-x32\...\RunOnce: [VOPackage] - C:\Users\Caveman\AppData\Roaming\VOPackage\VOPackage.exe /runonce [195736 2014-02-19] () Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer: [NoControlPanel] 0 HKU\S-1-5-21-3184525795-2871511248-3231849656-1000\...\Run: [EPLTarget\P0000000000000000] - C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIHVE.EXE [239488 2011-04-25] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-3184525795-2871511248-3231849656-1000\...\Run: [EADM] - C:\Program Files (x86)\Origin\Origin.exe [3598680 2014-02-15] (Electronic Arts) HKU\S-1-5-21-3184525795-2871511248-3231849656-1000\...\Run: [DT Emphelungstool] - "C:\Users\Caveman\AppData\Local\Deutsche Telekom\Empfehlungstool\DTEmpfehlungstool.exe" 2 HKU\S-1-5-21-3184525795-2871511248-3231849656-1000\...\Run: [Amazon Cloud Player] - C:\Users\Caveman\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe [3140608 2014-01-14] () HKU\S-1-5-21-3184525795-2871511248-3231849656-1000\...\Run: [BrowserSafeguard] - C:\Users\Caveman\AppData\Local\BrowserSafeguard\BrowserSafeguard.exe [418304 2014-02-18] (BrowserSafeguard) HKU\S-1-5-21-3184525795-2871511248-3231849656-1000\...\Run: [BrowserSafeguard Update Task] - C:\Users\Caveman\AppData\Local\BrowserSafeguard\uninstall.BrowserSafeguard.exe [3352576 2014-02-18] () HKU\S-1-5-21-3184525795-2871511248-3231849656-1000\...\RunOnce: [Uninstall C:\Users\Caveman\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64] - C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Caveman\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64" HKU\S-1-5-21-3184525795-2871511248-3231849656-1000\...\RunOnce: [Uninstall C:\Users\Caveman\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910] - C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Caveman\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910" Startup: C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk ShortcutTarget: MyPC Backup.lnk -> C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe (MyPCBackup.com) Startup: C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Netzmanager.lnk ShortcutTarget: Netzmanager.lnk -> C:\Program Files\Netzmanager\netzmanager.exe (Deutsche Telekom AG) ==================== Internet (Whitelisted) ==================== ProxyEnable: Internet Explorer proxy is enabled. ProxyServer: http=127.0.0.1:49192;https=127.0.0.1:49192 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.awesomehp.com/?type=hp&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.awesomehp.com/?type=hp&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://sony.msn.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://sony.msn.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.awesomehp.com/?type=hp&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.awesomehp.com/?type=hp&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.awesomehp.com/web/?type=ds&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.awesomehp.com/?type=hp&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.awesomehp.com/?type=hp&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.awesomehp.com/web/?type=ds&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX&q={searchTerms} URLSearchHook: HKCU - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) URLSearchHook: HKCU - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe hxxp://www.awesomehp.com/?type=sc&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX&q={searchTerms} SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX&q={searchTerms} SearchScopes: HKLM-x32 - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX&q={searchTerms} SearchScopes: HKLM-x32 - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX&q={searchTerms} SearchScopes: HKCU - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX&q={searchTerms} SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX&q={searchTerms} SearchScopes: HKCU - {ABF25B2D-125B-43FE-BF71-D6AFA76D3723} URL = hxxp://rover.ebay.com/rover/1/707-37276-16609-27/4?mpre=hxxp://shop.ebay.de/?oemInLn=ieSrch-Q212&_nkw={searchTerms} BHO: HQ-Video-Profession-1.3 - {11111111-1111-1111-1111-110511151178} - C:\Program Files (x86)\HQ-Video-Profession-1.3\HQ-Video-Profession-1.3-bho64.dll (HQ-Video) BHO: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport_x64.dll (APN LLC.) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.141\McAfeeMSS_IE.dll (McAfee, Inc.) BHO-x32: HQ-Video-Profession-1.3 - {11111111-1111-1111-1111-110511151178} - C:\Program Files (x86)\HQ-Video-Profession-1.3\HQ-Video-Profession-1.3-bho.dll (HQ-Video) BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO-x32: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader) BHO-x32: IETabPage Class - {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} - C:\Program Files (x86)\SupTab\SupTab.dll (Thinknice Co. Limited) BHO-x32: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: EnhanceTronic - {f530d5e8-9d18-4cba-b7cc-95944f9ebe3d} - C:\Program Files (x86)\EnhanceTronic\EnhanceTronicbho.dll (EnhanceTronic) Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) Toolbar: HKLM - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport_x64.dll (APN LLC.) Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) Toolbar: HKLM-x32 - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.) Toolbar: HKCU - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport_x64.dll (APN LLC.) Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files\McAfee\MSC\McSnIePl64.dll (McAfee, Inc.) Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files (x86)\McAfee\MSC\McSnIePl.dll (McAfee, Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\Caveman\AppData\Roaming\Mozilla\Firefox\Profiles\ksk70vq0.default-1392743824136 FF user.js: detected! => C:\Users\Caveman\AppData\Roaming\Mozilla\Firefox\Profiles\ksk70vq0.default-1392743824136\user.js FF NewTab: chrome://lightning/content/newtab.html FF DefaultSearchEngine: awesomehp FF SelectedSearchEngine: awesomehp FF Homepage: hxxp://avira.search.ask.com/?tpid=AVIRA-V7&o=APN11074&pf=V7&trgb=ALL&p2=%5EB0Q%5EYYYYYY%5EZF%5EDE&gct=hp&apn_ptnrs=%5EB0Q&apn_dtid=%5EYYYYYY%5EZF%5EDE&apn_dbr=ff_25.0&apn_uid=4F77CA38-0924-4CB2-AD1B-4507CA804779&itbv=12.6.0.1898&doi=2013-12-08&psv= FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll () FF Plugin: @java.com/JavaPlugin - C:\Program Files\Java\jre7\bin\new_plugin\npjp2.dll (Oracle Corporation) FF Plugin: @mcafee.com/MSC,version=10 - c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/JavaPlugin - C:\Program Files (x86)\Java\jre7\bin\new_plugin\npjp2.dll (Oracle Corporation) FF Plugin-x32: @mcafee.com/McAfeeMssPlugin - C:\Program Files\McAfee Security Scan\3.8.141\npMcAfeeMss.dll (McAfee, Inc.) FF Plugin-x32: @mcafee.com/MSC,version=10 - c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL () FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @playstation.com/PsndlCheck,version=1.00 - C:\Program Files (x86)\Sony\PLAYSTATION Network Downloader\nppsndl.dll (Sony Computer Entertainment Inc.) FF Plugin-x32: @real.com/nppl3260;version=16.0.3.51 - C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprndlchromebrowserrecordext;version=1.3.3 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprndlhtml5videoshim;version=1.3.3 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprndlpepperflashvideoshim;version=1.3.3 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprpplugin;version=16.0.3.51 - C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpplugin.dll (RealPlayer) FF Plugin-x32: @realnetworks.com/npdlplugin;version=1 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader) FF Plugin-x32: @SonyCreativeSoftware.com/Media Go,version=1.0 - C:\Program Files (x86)\Sony\Media Go\npmediago.dll (Sony Network Entertainment International LLC) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll () FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\awesomehp.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: No Name - C:\Users\Caveman\AppData\Roaming\Mozilla\Firefox\Profiles\ksk70vq0.default-1392743824136\Extensions\1392843075_xpi [2014-02-19] FF Extension: HQ-Video-Profession-1.3 - C:\Users\Caveman\AppData\Roaming\Mozilla\Firefox\Profiles\ksk70vq0.default-1392743824136\Extensions\13c471d9-6cbb-4c08-9dd1-8dc16c66bb1f@cf5065af-ca24-464a-a637-af7582a82514.com [2014-02-19] FF Extension: Extension_Protected - C:\Users\Caveman\AppData\Roaming\Mozilla\Firefox\Profiles\ksk70vq0.default-1392743824136\Extensions\jid0-O6MIff3eO5dIGf5Tcv8RsJDKxrs@jetpack.xpi [2014-02-19] FF Extension: Quick Start - C:\Users\Caveman\AppData\Roaming\Mozilla\Firefox\Profiles\ksk70vq0.default-1392743824136\Extensions\lightningnewtab@gmail.com.xpi [2014-02-19] FF Extension: EnhanceTronic - C:\Users\Caveman\AppData\Roaming\Mozilla\Firefox\Profiles\ksk70vq0.default-1392743824136\Extensions\{a414b9c8-afb5-4899-b1dc-d307d6e50473}.xpi [2014-02-13] FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor [2012-05-22] FF HKLM-x32\...\Firefox\Extensions: [{D19CA586-DD6C-4a0a-96F8-14644F340D60}] - C:\Program Files (x86)\Common Files\McAfee\SystemCore FF Extension: McAfee ScriptScan for Firefox - C:\Program Files (x86)\Common Files\McAfee\SystemCore [2012-05-22] FF HKLM-x32\...\Firefox\Extensions: [{DF153AFF-6948-45d7-AC98-4FC4AF8A08E2}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\ FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\ [] FF HKLM-x32\...\Firefox\Extensions: [lightningnewtab@gmail.com] - C:\Users\Caveman\AppData\Roaming\Mozilla\Firefox\Profiles\ksk70vq0.default-1392743824136\extensions\lightningnewtab@gmail.com.xpi FF Extension: Quick Start - C:\Users\Caveman\AppData\Roaming\Mozilla\Firefox\Profiles\ksk70vq0.default-1392743824136\extensions\lightningnewtab@gmail.com.xpi [2014-02-19] FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2014-02-18] FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2012-05-22] FF StartMenuInternet: FIREFOX.EXE - C:\Program Files (x86)\Mozilla Firefox\firefox.exe hxxp://www.awesomehp.com/?type=sc&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX Chrome: ======= Error reading preferences. Please check "preferences" file for possible corruption. <======= ATTENTION CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2014-02-10] CHR HKLM-x32\...\Chrome\Extension: [idhngdhcfkoamngbedgpaokgjbnpdiji] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx [2013-08-14] ==================== Services (Whitelisted) ================= S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.) R2 AdobeActiveFileMonitor10.0; c:\Program Files (x86)\Adobe\Elements 10 Organizer\PhotoshopElementsFileAgent.exe [169624 2011-09-14] (Adobe Systems Incorporated) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440376 2014-02-18] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440376 2014-02-18] (Avira Operations GmbH & Co. KG) S2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1011768 2014-02-18] (Avira Operations GmbH & Co. KG) R2 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [166352 2013-12-20] (APN LLC.) R2 BackupStack; C:\Program Files (x86)\MyPC Backup\BackupStack.exe [36392 2014-02-06] (Just Develop It) R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 IePluginService; C:\ProgramData\IePluginService\PluginService.exe [508016 2014-02-19] (Cherished Technololgy LIMITED) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128280 2012-02-23] () R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2012-02-23] (Intel Corporation) R2 McAfee SiteAdvisor Service; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [249936 2011-01-27] (McAfee, Inc.) R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [178048 2013-11-28] (McAfee, Inc.) S3 McAWFwk; C:\Program Files\McAfee\MSC\McAWFwk.exe [225216 2011-01-28] (McAfee, Inc.) S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.141\McCHSvc.exe [289256 2014-01-16] (McAfee, Inc.) R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 McNaiAnn; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) S3 McODS; C:\Program Files\McAfee\VirusScan\mcods.exe [602944 2013-08-02] (McAfee, Inc.) S4 McOobeSv; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [249936 2011-01-27] (McAfee, Inc.) R2 mcpltsvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 McProxy; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [199304 2012-05-25] (McAfee, Inc.) R2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1025232 2013-12-11] (McAfee, Inc.) R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [219272 2013-11-04] (McAfee, Inc.) R2 mfevtp; C:\Windows\system32\mfevtps.exe [182752 2013-11-04] (McAfee, Inc.) R2 MOBK649backup; C:\Program Files (x86)\McAfee Online Backup\MOBK649backup.exe [223544 2011-04-18] (McAfee, Inc.) R2 MovieMode; C:\ProgramData\MovieMode\MovieMode.exe [151184 2014-02-11] (GenTechnologies Apps, LLC) R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273168 2011-12-08] () R2 Netzmanager Service; C:\Program Files\Netzmanager\NMInfraIS2\Netzmanager_Service.exe [2635776 2012-07-20] (Deutsche Telekom AG) R2 PMBDeviceInfoProvider; c:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [473960 2012-02-21] (Sony Corporation) R2 RealNetworks Downloader Resolver Service; C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2013-08-14] () R2 SampleCollector; C:\Program Files\Sony\VAIO Care\VCPerfService.exe [260768 2011-11-30] (Sony Corporation) R2 uCamMonitor; C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [105024 2011-02-23] (ArcSoft, Inc.) R2 Update EnhanceTronic; C:\Program Files (x86)\EnhanceTronic\updateEnhanceTronic.exe [80680 2014-02-19] () R2 Util EnhanceTronic; C:\Program Files (x86)\EnhanceTronic\bin\utilEnhanceTronic.exe [80680 2014-02-19] () S3 VCFw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [960160 2011-12-29] (Sony Corporation) R2 VOsrv; C:\Users\Caveman\AppData\Roaming\VOPackage\VOsrv.exe [61456 2014-02-19] () R2 Wpm; C:\ProgramData\WPM\wprotectmanager.exe [493568 2014-02-19] (Cherished Technololgy LIMITED) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [594704 2011-12-08] (Intel® Corporation) ==================== Drivers (Whitelisted) ==================== R0 amdkmpfd; C:\Windows\System32\DRIVERS\amdkmpfd.sys [31872 2012-03-19] (Advanced Micro Devices, Inc.) R3 ArcSoftKsUFilter; C:\Windows\System32\DRIVERS\ArcSoftKsUFilter.sys [19968 2009-05-26] (ArcSoft, Inc.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2013-12-17] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131576 2013-12-17] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-12-08] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\System32\DRIVERS\avnetflt.sys [84720 2013-12-17] (Avira Operations GmbH & Co. KG) R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [70112 2013-11-04] (McAfee, Inc.) S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.) R2 McPvDrv; C:\Windows\system32\drivers\McPvDrv.sys [74560 2013-09-09] (McAfee, Inc.) R2 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [179792 2013-11-04] (McAfee, Inc.) U3 mfeapfk01; No ImagePath R2 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [311120 2013-11-04] (McAfee, Inc.) U3 mfeavfk01; No ImagePath R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [519576 2013-11-04] (McAfee, Inc.) R2 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [782360 2013-11-04] (McAfee, Inc.) R3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [411944 2013-11-26] (McAfee, Inc.) S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [96112 2013-11-26] (McAfee, Inc.) S3 mferkdet; C:\Windows\System32\drivers\mferkdet.sys [100912 2012-02-22] (McAfee, Inc.) R2 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [343696 2013-11-04] (McAfee, Inc.) R1 MOBK649Filter; C:\Windows\System32\DRIVERS\MOBK649.sys [66040 2011-04-18] (Mozy, Inc.) R2 rimssne; C:\Windows\System32\DRIVERS\rimssne64.sys [102912 2012-02-24] (REDC) R2 risdsnxc; C:\Windows\System32\DRIVERS\risdsnxc64.sys [104448 2012-02-23] (REDC) R3 TelekomNM6; C:\Program Files\Netzmanager\NMInfraIS2\Driver\TelekomNM6.sys [45664 2010-09-16] (Deutsche Telekom AG AG, Marmiko IT-Solutions GmbH) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-20 03:01 - 2014-02-20 03:01 - 02153472 _____ (Farbar) C:\Users\Caveman\Desktop\FRST64.exe 2014-02-19 22:30 - 2014-02-19 22:32 - 00044323 _____ () C:\Users\Caveman\Desktop\Addition.txt 2014-02-19 22:28 - 2014-02-20 03:03 - 00038437 _____ () C:\Users\Caveman\Desktop\FRST.txt 2014-02-19 22:28 - 2014-02-20 03:03 - 00000000 ____D () C:\FRST 2014-02-19 22:10 - 2014-02-19 22:10 - 00825208 _____ (AnyProtect.com) C:\Users\Caveman\AppData\Local\nsvE706.tmp 2014-02-19 22:10 - 2014-02-19 22:10 - 00001049 _____ () C:\Users\Caveman\Desktop\AnyProtect.lnk 2014-02-19 22:10 - 2014-02-19 22:10 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup 2014-02-19 22:10 - 2014-02-19 22:10 - 00000000 ____D () C:\Program Files (x86)\AnyProtectEx 2014-02-19 22:00 - 2014-02-19 22:00 - 00001104 _____ () C:\Users\Caveman\Desktop\Continue VuuPC Installation.lnk 2014-02-19 21:51 - 2014-02-19 21:51 - 00004614 _____ () C:\Windows\System32\Tasks\HQ-Video-Profession-1.3-updater 2014-02-19 21:51 - 2014-02-19 21:51 - 00004570 _____ () C:\Windows\System32\Tasks\HQ-Video-Profession-1.3-codedownloader 2014-02-19 21:51 - 2014-02-19 21:51 - 00004468 _____ () C:\Windows\System32\Tasks\HQ-Video-Profession-1.3-enabler 2014-02-19 21:51 - 2014-02-19 21:51 - 00001584 _____ () C:\Windows\Tasks\HQ-Video-Profession-1.3-updater.job 2014-02-19 21:51 - 2014-02-19 21:51 - 00001540 _____ () C:\Windows\Tasks\HQ-Video-Profession-1.3-codedownloader.job 2014-02-19 21:51 - 2014-02-19 21:51 - 00001438 _____ () C:\Windows\Tasks\HQ-Video-Profession-1.3-enabler.job 2014-02-19 21:51 - 2014-02-19 21:51 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\SupTab 2014-02-19 21:51 - 2014-02-19 21:51 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\awesomehp 2014-02-19 21:51 - 2014-02-19 21:51 - 00000000 ____D () C:\Users\Caveman\AppData\Local\newplayer 2014-02-19 21:51 - 2014-02-19 21:51 - 00000000 ____D () C:\ProgramData\WPM 2014-02-19 21:51 - 2014-02-19 21:51 - 00000000 ____D () C:\ProgramData\IePluginService 2014-02-19 21:51 - 2014-02-19 21:51 - 00000000 ____D () C:\Program Files (x86)\SupTab 2014-02-19 21:50 - 2014-02-20 03:00 - 00000282 _____ () C:\Windows\Tasks\SpeedUpMyPC Maintenance.job 2014-02-19 21:50 - 2014-02-19 21:51 - 00000000 ____D () C:\Program Files (x86)\HQ-Video-Profession-1.3 2014-02-19 21:50 - 2014-02-19 21:50 - 00003238 _____ () C:\Windows\System32\Tasks\SpeedUpMyPC Maintenance 2014-02-19 21:50 - 2014-02-19 21:50 - 00003144 _____ () C:\Windows\Tasks\HQ-Video-Profession-1.3-chromeinstaller.job 2014-02-19 21:50 - 2014-02-19 21:50 - 00002666 _____ () C:\Windows\Tasks\HQ-Video-Profession-1.3-firefoxinstaller.job 2014-02-19 21:50 - 2014-02-19 21:50 - 00002526 _____ () C:\Windows\System32\Tasks\SpeedUpMyPC Startup 2014-02-19 21:50 - 2014-02-19 21:50 - 00001169 _____ () C:\Users\Public\Desktop\SpeedUpMyPC.lnk 2014-02-19 21:50 - 2014-02-19 21:50 - 00001117 _____ () C:\Users\Public\Desktop\NewPlayer.lnk 2014-02-19 21:50 - 2014-02-19 21:50 - 00000276 _____ () C:\Windows\Tasks\SpeedUpMyPC Startup.job 2014-02-19 21:50 - 2014-02-19 21:50 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Uniblue 2014-02-19 21:50 - 2014-02-19 21:50 - 00000000 ____D () C:\Program Files (x86)\Uniblue 2014-02-19 21:49 - 2014-02-19 21:50 - 00000000 ____D () C:\Program Files (x86)\NewPlayer 2014-02-19 21:49 - 2014-02-19 21:49 - 00001874 _____ () C:\Users\Caveman\Desktop\Configure VO Package.lnk 2014-02-19 21:49 - 2014-02-19 21:49 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\VOPackage 2014-02-19 21:33 - 2014-02-19 21:33 - 00000000 ____D () C:\Users\Caveman\AppData\Local\SearchProtect 2014-02-19 21:33 - 2014-02-19 21:33 - 00000000 _____ () C:\END 2014-02-19 21:32 - 2014-02-19 21:32 - 00342568 _____ () C:\Users\Caveman\Downloads\Player.exe 2014-02-19 21:29 - 2014-02-19 21:29 - 02278856 _____ () C:\Users\Caveman\Downloads\avira_pc_cleaner_de(1).exe 2014-02-19 21:29 - 2014-02-19 21:29 - 00002042 _____ () C:\Users\Caveman\Desktop\Entfernen des Avira PC Cleaners.lnk 2014-02-19 21:29 - 2014-02-19 21:29 - 00001986 _____ () C:\Users\Caveman\Desktop\Avira PC Cleaner.lnk 2014-02-19 21:28 - 2014-02-19 21:29 - 02278856 _____ () C:\Users\Caveman\Downloads\avira_pc_cleaner_de.exe 2014-02-19 00:27 - 2014-02-19 00:27 - 00000000 ____D () C:\Users\Caveman\Documents\VideoPad Projekte 2014-02-18 23:17 - 2014-02-18 23:17 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Deshaker 2014-02-18 22:52 - 2014-02-18 23:17 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\NCH Software 2014-02-18 22:52 - 2014-02-18 22:52 - 00001194 _____ () C:\Users\Public\Desktop\PhotoStage Diashow-Ersteller.lnk 2014-02-18 22:52 - 2014-02-18 22:52 - 00001172 _____ () C:\Users\Public\Desktop\Express Burn.lnk 2014-02-18 22:52 - 2014-02-18 22:52 - 00001144 _____ () C:\Users\Public\Desktop\WavePad Audio-Editor.lnk 2014-02-18 22:52 - 2014-02-18 22:52 - 00001132 _____ () C:\Users\Public\Desktop\Prism Videodatei-Konverter.lnk 2014-02-18 22:52 - 2014-02-18 22:52 - 00000000 ____D () C:\Windows\System32\Tasks\NCH Software 2014-02-18 22:52 - 2014-02-18 22:52 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Videoverwandte Programme 2014-02-18 22:52 - 2014-02-18 22:52 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NCH Software Produktpalette 2014-02-18 22:52 - 2014-02-18 22:52 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Audioverwandte Programme 2014-02-18 22:52 - 2014-02-18 22:52 - 00000000 ____D () C:\ProgramData\NCH Software 2014-02-18 22:51 - 2014-02-18 22:52 - 00000000 ____D () C:\Program Files (x86)\NCH Software 2014-02-18 22:51 - 2014-02-18 22:51 - 00001160 _____ () C:\Users\Public\Desktop\VideoPad Video-Editor.lnk 2014-02-18 22:50 - 2014-02-18 22:50 - 05699096 _____ (NCH Software) C:\Users\Caveman\Downloads\vppsetup.exe 2014-02-18 20:14 - 2014-02-18 20:14 - 00000000 ____D () C:\Windows\de 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\nl 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\hu 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\fr 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\fi 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\en 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\el 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\da 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\cs 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\bg 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\sv 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\sl 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\sk 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\ru 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\ro 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\pl 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\it 2014-02-18 20:10 - 2014-02-18 20:10 - 00000000 ____D () C:\Windows\uk 2014-02-18 20:10 - 2014-02-18 20:10 - 00000000 ____D () C:\Windows\tr 2014-02-18 19:43 - 2014-02-18 19:43 - 00000000 ____D () C:\Program Files\Windows Live 2014-02-18 19:43 - 2013-02-05 22:06 - 00057840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fssfltr.sys 2014-02-18 19:37 - 2014-02-18 19:37 - 00000000 ___RD () C:\Users\Caveman\SkyDrive 2014-02-18 19:37 - 2014-02-18 19:37 - 00000000 ____D () C:\ProgramData\Microsoft SkyDrive 2014-02-18 19:37 - 2014-02-18 19:37 - 00000000 ____D () C:\Program Files (x86)\Microsoft SkyDrive 2014-02-18 19:27 - 2014-02-18 21:42 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Windows Live 2014-02-18 19:27 - 2014-02-18 19:27 - 01245168 _____ (Microsoft Corporation) C:\Users\Caveman\Downloads\windows-live-movie-maker_18116.exe 2014-02-18 18:57 - 2014-02-18 18:57 - 00000000 ____D () C:\Users\Caveman\Documents\Optimizer Pro 2014-02-18 18:54 - 2014-02-18 18:54 - 00001973 _____ () C:\Users\Caveman\Desktop\Sync Folder.lnk 2014-02-18 18:54 - 2014-02-18 18:54 - 00000000 ____D () C:\Users\Caveman\AppData\Local\BrowserSafeguard 2014-02-18 18:53 - 2014-02-18 20:28 - 00000000 ____D () C:\Program Files (x86)\MyPC Backup 2014-02-18 18:53 - 2014-02-18 18:58 - 00000000 ____D () C:\Users\Caveman\AppData\Local\cache 2014-02-18 18:53 - 2014-02-18 18:53 - 00001091 _____ () C:\Users\Caveman\Desktop\MyPC Backup.lnk 2014-02-18 18:53 - 2014-02-18 18:53 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup 2014-02-18 18:53 - 2014-02-18 18:53 - 00000000 ____D () C:\Users\Caveman\.android 2014-02-18 18:52 - 2014-02-19 14:43 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Mobogenie 2014-02-18 18:52 - 2014-02-18 18:52 - 00000000 ____D () C:\Users\Caveman\Documents\Mobogenie 2014-02-18 18:52 - 2014-02-18 18:52 - 00000000 ____D () C:\Users\Caveman\AppData\Local\genienext 2014-02-18 18:52 - 2014-02-18 18:52 - 00000000 _____ () C:\Users\Caveman\daemonprocess.txt 2014-02-18 18:51 - 2014-02-18 21:55 - 00000000 ____D () C:\Program Files (x86)\Optimizer Pro 2014-02-18 18:50 - 2014-02-18 20:23 - 00000000 ____D () C:\Program Files (x86)\EnhanceTronic 2014-02-18 18:49 - 2014-02-19 21:37 - 00000000 ____D () C:\Users\Caveman\AppData\Local\MovieMode 2014-02-18 18:47 - 2014-02-18 22:30 - 00003358 _____ () C:\Windows\System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-3184525795-2871511248-3231849656-1000 2014-02-18 18:47 - 2014-02-18 22:30 - 00003228 _____ () C:\Windows\System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-3184525795-2871511248-3231849656-1000 2014-02-18 18:47 - 2014-02-18 18:47 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\RealNetworks 2014-02-18 18:47 - 2014-02-18 18:47 - 00000000 ____D () C:\ProgramData\MovieMode 2014-02-18 18:46 - 2014-02-18 18:46 - 00001268 _____ () C:\Users\Public\Desktop\RealPlayer.lnk 2014-02-18 18:46 - 2014-02-18 18:46 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Real 2014-02-18 18:46 - 2014-02-18 18:46 - 00000000 ____D () C:\Program Files (x86)\RealNetworks 2014-02-18 18:45 - 2014-02-18 18:45 - 00000000 ____D () C:\ProgramData\RealNetworks 2014-02-18 18:44 - 2014-02-18 18:44 - 00272896 _____ (Progressive Networks) C:\Windows\SysWOW64\pncrt.dll 2014-02-18 18:44 - 2014-02-18 18:44 - 00201872 _____ (RealNetworks, Inc.) C:\Windows\SysWOW64\rmoc3260.dll 2014-02-18 18:44 - 2014-02-18 18:44 - 00006656 _____ (RealNetworks, Inc.) C:\Windows\SysWOW64\pndx5016.dll 2014-02-18 18:44 - 2014-02-18 18:44 - 00005632 _____ (RealNetworks, Inc.) C:\Windows\SysWOW64\pndx5032.dll 2014-02-18 18:43 - 2014-02-18 18:45 - 00000000 ____D () C:\Program Files (x86)\Real 2014-02-18 18:42 - 2014-02-18 18:51 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Real 2014-02-18 18:42 - 2014-02-18 18:45 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Google 2014-02-18 18:41 - 2014-02-19 14:30 - 00000000 ____D () C:\Program Files (x86)\Google 2014-02-18 18:41 - 2014-02-18 18:51 - 00000000 ____D () C:\ProgramData\Real 2014-02-18 18:40 - 2014-02-18 18:40 - 00553768 _____ (Fusion Install ) C:\Users\Caveman\Downloads\Setup(2).exe 2014-02-18 18:38 - 2014-02-18 18:38 - 00553768 _____ (Fusion Install ) C:\Users\Caveman\Downloads\Setup(1).exe 2014-02-18 18:36 - 2014-02-18 18:36 - 00553768 _____ (Fusion Install ) C:\Users\Caveman\Downloads\Setup.exe 2014-02-18 18:33 - 2014-02-18 18:33 - 00000000 ____D () C:\ProgramData\Uniblue 2014-02-18 16:20 - 2014-02-18 16:20 - 00347816 _____ (Microsoft Corporation) C:\Users\Caveman\Downloads\MicrosoftFixit.Codec.RNP.34316163822502393.7.1.Run.exe 2014-02-18 14:39 - 2014-02-18 14:51 - 00001229 _____ () C:\Users\Caveman\Desktop\Amazon Cloud Player.lnk 2014-02-18 14:38 - 2014-02-18 14:52 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Amazon Cloud Player 2014-02-18 14:38 - 2014-02-18 14:38 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon Cloud Player 2014-02-18 14:36 - 2014-02-18 14:37 - 36160080 _____ (Amazon) C:\Users\Caveman\Downloads\AmazonCloudPlayerInstaller_422.exe 2014-02-18 14:30 - 2014-02-18 14:31 - 00000000 ____D () C:\Users\Caveman\AppData\Local\{D557A97B-DB54-4E33-8FBE-EEB01F1CE217} 2014-02-17 07:08 - 2014-02-17 07:08 - 00283288 _____ () C:\Windows\Minidump\021714-39390-01.dmp 2014-02-16 19:53 - 2014-02-17 06:43 - 00000000 ____D () C:\Users\Caveman\Desktop\Ausdrucken 2014-02-16 19:43 - 2014-02-16 19:44 - 00000000 ____D () C:\Users\Caveman\AppData\Local\{537664D4-1769-4B3F-B494-30EC57C618A6} 2014-02-15 08:54 - 2014-02-15 08:54 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-14 15:01 - 2014-02-14 15:01 - 00000000 ____D () C:\Program Files\McAfee Security Scan 2014-02-14 14:58 - 2014-02-14 15:01 - 00001931 _____ () C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk 2014-02-14 14:58 - 2014-02-14 14:58 - 00000000 ____D () C:\ProgramData\McAfee Security Scan 2014-02-14 01:44 - 2013-12-21 10:53 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-02-14 01:44 - 2013-12-21 09:56 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-02-14 01:43 - 2014-02-06 13:16 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-02-14 01:43 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-02-14 01:43 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-02-14 01:43 - 2014-02-06 12:12 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-02-14 01:43 - 2014-02-06 12:07 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-02-14 01:43 - 2014-02-06 12:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-02-14 01:43 - 2014-02-06 11:57 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-02-14 01:43 - 2014-02-06 11:56 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-02-14 01:43 - 2014-02-06 11:52 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-02-14 01:43 - 2014-02-06 11:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-02-14 01:43 - 2014-02-06 11:48 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-02-14 01:43 - 2014-02-06 11:48 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-02-14 01:43 - 2014-02-06 11:32 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-02-14 01:43 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-02-14 01:43 - 2014-02-06 11:17 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-02-14 01:43 - 2014-02-06 11:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-02-14 01:43 - 2014-02-06 11:00 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-02-14 01:43 - 2014-02-06 10:57 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-02-14 01:43 - 2014-02-06 10:57 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-02-14 01:43 - 2014-02-06 10:52 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-02-14 01:43 - 2014-02-06 10:52 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-02-14 01:43 - 2014-02-06 10:49 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-02-14 01:43 - 2014-02-06 10:47 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-02-14 01:43 - 2014-02-06 10:46 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-02-14 01:43 - 2014-02-06 10:25 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-02-14 01:43 - 2014-02-06 10:24 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-02-14 01:43 - 2014-02-06 10:13 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-02-14 01:43 - 2014-02-06 10:09 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-02-14 01:43 - 2014-02-06 09:55 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-02-14 01:43 - 2014-02-06 09:41 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-02-14 01:43 - 2014-02-06 09:40 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-02-14 01:43 - 2014-02-06 09:36 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-02-14 01:43 - 2014-02-06 09:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-02-14 01:42 - 2014-02-06 11:38 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-02-14 01:42 - 2014-02-06 11:11 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-02-14 01:42 - 2014-02-06 10:50 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-02-14 01:42 - 2014-02-06 10:25 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-02-14 01:42 - 2014-02-06 10:22 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-02-14 01:42 - 2014-02-06 10:03 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-02-13 23:37 - 2014-01-01 00:05 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls 2014-02-13 23:37 - 2014-01-01 00:04 - 00420008 _____ () C:\Windows\system32\locale.nls 2014-02-13 23:37 - 2013-12-06 03:30 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-02-13 23:37 - 2013-12-06 03:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-02-13 23:37 - 2013-12-06 03:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-02-13 23:37 - 2013-12-06 03:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-02-13 23:36 - 2013-12-25 00:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-02-13 23:36 - 2013-12-24 23:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-02-13 23:36 - 2013-12-04 03:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll 2014-02-13 23:36 - 2013-12-04 03:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll 2014-02-13 23:36 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll 2014-02-13 23:36 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll 2014-02-13 23:36 - 2013-12-04 03:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll 2014-02-13 23:36 - 2013-12-04 03:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe 2014-02-13 23:36 - 2013-12-04 03:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe 2014-02-13 23:36 - 2013-12-04 03:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe 2014-02-13 23:36 - 2013-12-04 03:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe 2014-02-13 23:36 - 2013-12-04 03:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll 2014-02-13 23:36 - 2013-12-04 03:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll 2014-02-13 23:36 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll 2014-02-13 23:36 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll 2014-02-13 23:36 - 2013-12-04 03:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll 2014-02-13 23:36 - 2013-12-04 02:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe 2014-02-13 23:36 - 2013-12-04 02:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe 2014-02-13 23:36 - 2013-12-04 02:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe 2014-02-13 23:36 - 2013-12-04 02:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe 2014-02-13 23:36 - 2013-11-26 09:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2014-02-13 23:36 - 2013-11-22 23:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2014-02-11 00:32 - 2014-02-11 00:32 - 01152656 _____ () C:\Windows\SysWOW64\MovieMode.48CA2AEFA22D.dll 2014-02-09 08:06 - 2014-02-18 18:17 - 00000000 ____D () C:\Users\Caveman\Desktop\Alte Firefox-Daten 2014-02-08 09:53 - 2014-02-08 09:53 - 00280208 _____ () C:\Windows\Minidump\020814-34445-01.dmp 2014-02-07 16:33 - 2014-02-07 16:33 - 00280808 _____ () C:\Windows\Minidump\020714-27924-01.dmp 2014-02-05 21:11 - 2014-02-05 21:13 - 126220554 _____ () C:\Users\Caveman\Downloads\E2010_PC_v4.zip 2014-02-02 15:10 - 2014-02-02 15:10 - 00283288 _____ () C:\Windows\Minidump\020214-24741-01.dmp 2014-01-31 20:34 - 2014-01-31 20:34 - 00283288 _____ () C:\Windows\Minidump\013114-24960-01.dmp 2014-01-29 15:02 - 2014-01-29 15:02 - 00262144 _____ () C:\Windows\Minidump\012914-63071-01.dmp 2014-01-26 18:53 - 2014-01-26 18:53 - 00280664 _____ () C:\Windows\Minidump\012614-31559-01.dmp 2014-01-26 07:16 - 2013-09-23 13:49 - 00197704 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\HipShieldK.sys 2014-01-23 14:52 - 2014-01-23 14:53 - 00281848 _____ () C:\Windows\Minidump\012314-65660-01.dmp ==================== One Month Modified Files and Folders ======= 2014-02-20 03:03 - 2014-02-19 22:28 - 00038437 _____ () C:\Users\Caveman\Desktop\FRST.txt 2014-02-20 03:03 - 2014-02-19 22:28 - 00000000 ____D () C:\FRST 2014-02-20 03:01 - 2014-02-20 03:01 - 02153472 _____ (Farbar) C:\Users\Caveman\Desktop\FRST64.exe 2014-02-20 03:00 - 2014-02-19 21:50 - 00000282 _____ () C:\Windows\Tasks\SpeedUpMyPC Maintenance.job 2014-02-20 02:59 - 2012-05-22 22:53 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-02-20 00:53 - 2009-07-14 05:51 - 00097768 _____ () C:\Windows\setupact.log 2014-02-20 00:06 - 2012-05-22 22:48 - 00697534 _____ () C:\Windows\system32\perfh007.dat 2014-02-20 00:06 - 2012-05-22 22:48 - 00148540 _____ () C:\Windows\system32\perfc007.dat 2014-02-20 00:06 - 2009-07-14 06:13 - 01614956 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-02-19 23:30 - 2012-07-17 17:38 - 00069584 _____ () C:\Users\Caveman\AppData\Local\GDIPFONTCACHEV1.DAT 2014-02-19 22:32 - 2014-02-19 22:30 - 00044323 _____ () C:\Users\Caveman\Desktop\Addition.txt 2014-02-19 22:15 - 2012-05-22 21:54 - 01486032 _____ () C:\Windows\WindowsUpdate.log 2014-02-19 22:10 - 2014-02-19 22:10 - 00825208 _____ (AnyProtect.com) C:\Users\Caveman\AppData\Local\nsvE706.tmp 2014-02-19 22:10 - 2014-02-19 22:10 - 00001049 _____ () C:\Users\Caveman\Desktop\AnyProtect.lnk 2014-02-19 22:10 - 2014-02-19 22:10 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup 2014-02-19 22:10 - 2014-02-19 22:10 - 00000000 ____D () C:\Program Files (x86)\AnyProtectEx 2014-02-19 22:00 - 2014-02-19 22:00 - 00001104 _____ () C:\Users\Caveman\Desktop\Continue VuuPC Installation.lnk 2014-02-19 21:51 - 2014-02-19 21:51 - 00004614 _____ () C:\Windows\System32\Tasks\HQ-Video-Profession-1.3-updater 2014-02-19 21:51 - 2014-02-19 21:51 - 00004570 _____ () C:\Windows\System32\Tasks\HQ-Video-Profession-1.3-codedownloader 2014-02-19 21:51 - 2014-02-19 21:51 - 00004468 _____ () C:\Windows\System32\Tasks\HQ-Video-Profession-1.3-enabler 2014-02-19 21:51 - 2014-02-19 21:51 - 00001584 _____ () C:\Windows\Tasks\HQ-Video-Profession-1.3-updater.job 2014-02-19 21:51 - 2014-02-19 21:51 - 00001540 _____ () C:\Windows\Tasks\HQ-Video-Profession-1.3-codedownloader.job 2014-02-19 21:51 - 2014-02-19 21:51 - 00001438 _____ () C:\Windows\Tasks\HQ-Video-Profession-1.3-enabler.job 2014-02-19 21:51 - 2014-02-19 21:51 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\SupTab 2014-02-19 21:51 - 2014-02-19 21:51 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\awesomehp 2014-02-19 21:51 - 2014-02-19 21:51 - 00000000 ____D () C:\Users\Caveman\AppData\Local\newplayer 2014-02-19 21:51 - 2014-02-19 21:51 - 00000000 ____D () C:\ProgramData\WPM 2014-02-19 21:51 - 2014-02-19 21:51 - 00000000 ____D () C:\ProgramData\IePluginService 2014-02-19 21:51 - 2014-02-19 21:51 - 00000000 ____D () C:\Program Files (x86)\SupTab 2014-02-19 21:51 - 2014-02-19 21:50 - 00000000 ____D () C:\Program Files (x86)\HQ-Video-Profession-1.3 2014-02-19 21:50 - 2014-02-19 21:50 - 00003238 _____ () C:\Windows\System32\Tasks\SpeedUpMyPC Maintenance 2014-02-19 21:50 - 2014-02-19 21:50 - 00003144 _____ () C:\Windows\Tasks\HQ-Video-Profession-1.3-chromeinstaller.job 2014-02-19 21:50 - 2014-02-19 21:50 - 00002666 _____ () C:\Windows\Tasks\HQ-Video-Profession-1.3-firefoxinstaller.job 2014-02-19 21:50 - 2014-02-19 21:50 - 00002526 _____ () C:\Windows\System32\Tasks\SpeedUpMyPC Startup 2014-02-19 21:50 - 2014-02-19 21:50 - 00001169 _____ () C:\Users\Public\Desktop\SpeedUpMyPC.lnk 2014-02-19 21:50 - 2014-02-19 21:50 - 00001117 _____ () C:\Users\Public\Desktop\NewPlayer.lnk 2014-02-19 21:50 - 2014-02-19 21:50 - 00000276 _____ () C:\Windows\Tasks\SpeedUpMyPC Startup.job 2014-02-19 21:50 - 2014-02-19 21:50 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Uniblue 2014-02-19 21:50 - 2014-02-19 21:50 - 00000000 ____D () C:\Program Files (x86)\Uniblue 2014-02-19 21:50 - 2014-02-19 21:49 - 00000000 ____D () C:\Program Files (x86)\NewPlayer 2014-02-19 21:50 - 2013-12-08 18:07 - 00001367 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-02-19 21:50 - 2012-07-17 17:42 - 00001653 _____ () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-02-19 21:49 - 2014-02-19 21:49 - 00001874 _____ () C:\Users\Caveman\Desktop\Configure VO Package.lnk 2014-02-19 21:49 - 2014-02-19 21:49 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\VOPackage 2014-02-19 21:37 - 2014-02-18 18:49 - 00000000 ____D () C:\Users\Caveman\AppData\Local\MovieMode 2014-02-19 21:33 - 2014-02-19 21:33 - 00000000 ____D () C:\Users\Caveman\AppData\Local\SearchProtect 2014-02-19 21:33 - 2014-02-19 21:33 - 00000000 _____ () C:\END 2014-02-19 21:32 - 2014-02-19 21:32 - 00342568 _____ () C:\Users\Caveman\Downloads\Player.exe 2014-02-19 21:29 - 2014-02-19 21:29 - 02278856 _____ () C:\Users\Caveman\Downloads\avira_pc_cleaner_de(1).exe 2014-02-19 21:29 - 2014-02-19 21:29 - 00002042 _____ () C:\Users\Caveman\Desktop\Entfernen des Avira PC Cleaners.lnk 2014-02-19 21:29 - 2014-02-19 21:29 - 00001986 _____ () C:\Users\Caveman\Desktop\Avira PC Cleaner.lnk 2014-02-19 21:29 - 2014-02-19 21:28 - 02278856 _____ () C:\Users\Caveman\Downloads\avira_pc_cleaner_de.exe 2014-02-19 20:32 - 2009-07-14 05:45 - 00020992 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-02-19 20:32 - 2009-07-14 05:45 - 00020992 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-02-19 18:39 - 2009-07-14 06:32 - 00000000 ____D () C:\Windows\system32\FxsTmp 2014-02-19 14:43 - 2014-02-18 18:52 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Mobogenie 2014-02-19 14:40 - 2012-05-22 22:09 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-02-19 14:30 - 2014-02-18 18:41 - 00000000 ____D () C:\Program Files (x86)\Google 2014-02-19 14:30 - 2012-08-01 10:54 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\SoftGrid Client 2014-02-19 14:15 - 2013-01-26 08:32 - 00000000 ____D () C:\ProgramData\Origin 2014-02-19 14:12 - 2013-12-22 08:10 - 00000000 ____D () C:\Program Files (x86)\Origin 2014-02-19 14:08 - 2014-01-15 10:01 - 00000000 __RSD () C:\Users\Caveman\Documents\McAfee-Tresore 2014-02-19 14:02 - 2012-05-22 22:28 - 00000000 ____D () C:\Program Files (x86)\McAfee 2014-02-19 14:02 - 2010-11-21 04:47 - 00020426 _____ () C:\Windows\PFRO.log 2014-02-19 14:02 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-02-19 06:49 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache 2014-02-19 06:30 - 2012-05-22 22:29 - 00000000 ____D () C:\Program Files\Common Files\McAfee 2014-02-19 00:27 - 2014-02-19 00:27 - 00000000 ____D () C:\Users\Caveman\Documents\VideoPad Projekte 2014-02-18 23:17 - 2014-02-18 23:17 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Deshaker 2014-02-18 23:17 - 2014-02-18 22:52 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\NCH Software 2014-02-18 22:52 - 2014-02-18 22:52 - 00001194 _____ () C:\Users\Public\Desktop\PhotoStage Diashow-Ersteller.lnk 2014-02-18 22:52 - 2014-02-18 22:52 - 00001172 _____ () C:\Users\Public\Desktop\Express Burn.lnk 2014-02-18 22:52 - 2014-02-18 22:52 - 00001144 _____ () C:\Users\Public\Desktop\WavePad Audio-Editor.lnk 2014-02-18 22:52 - 2014-02-18 22:52 - 00001132 _____ () C:\Users\Public\Desktop\Prism Videodatei-Konverter.lnk 2014-02-18 22:52 - 2014-02-18 22:52 - 00000000 ____D () C:\Windows\System32\Tasks\NCH Software 2014-02-18 22:52 - 2014-02-18 22:52 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Videoverwandte Programme 2014-02-18 22:52 - 2014-02-18 22:52 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NCH Software Produktpalette 2014-02-18 22:52 - 2014-02-18 22:52 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Audioverwandte Programme 2014-02-18 22:52 - 2014-02-18 22:52 - 00000000 ____D () C:\ProgramData\NCH Software 2014-02-18 22:52 - 2014-02-18 22:51 - 00000000 ____D () C:\Program Files (x86)\NCH Software 2014-02-18 22:51 - 2014-02-18 22:51 - 00001160 _____ () C:\Users\Public\Desktop\VideoPad Video-Editor.lnk 2014-02-18 22:50 - 2014-02-18 22:50 - 05699096 _____ (NCH Software) C:\Users\Caveman\Downloads\vppsetup.exe 2014-02-18 22:30 - 2014-02-18 18:47 - 00003358 _____ () C:\Windows\System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-3184525795-2871511248-3231849656-1000 2014-02-18 22:30 - 2014-02-18 18:47 - 00003228 _____ () C:\Windows\System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-3184525795-2871511248-3231849656-1000 2014-02-18 21:55 - 2014-02-18 18:51 - 00000000 ____D () C:\Program Files (x86)\Optimizer Pro 2014-02-18 21:42 - 2014-02-18 19:27 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Windows Live 2014-02-18 20:28 - 2014-02-18 18:53 - 00000000 ____D () C:\Program Files (x86)\MyPC Backup 2014-02-18 20:23 - 2014-02-18 18:50 - 00000000 ____D () C:\Program Files (x86)\EnhanceTronic 2014-02-18 20:14 - 2014-02-18 20:14 - 00000000 ____D () C:\Windows\de 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\nl 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\hu 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\fr 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\fi 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\en 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\el 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\da 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\cs 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\bg 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\sv 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\sl 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\sk 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\ru 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\ro 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\pl 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\it 2014-02-18 20:10 - 2014-02-18 20:10 - 00000000 ____D () C:\Windows\uk 2014-02-18 20:10 - 2014-02-18 20:10 - 00000000 ____D () C:\Windows\tr 2014-02-18 19:44 - 2012-05-23 00:09 - 00000000 ____D () C:\Program Files (x86)\Windows Live 2014-02-18 19:43 - 2014-02-18 19:43 - 00000000 ____D () C:\Program Files\Windows Live 2014-02-18 19:42 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2014-02-18 19:39 - 2012-05-22 23:25 - 00097761 _____ () C:\Windows\DirectX.log 2014-02-18 19:37 - 2014-02-18 19:37 - 00000000 ___RD () C:\Users\Caveman\SkyDrive 2014-02-18 19:37 - 2014-02-18 19:37 - 00000000 ____D () C:\ProgramData\Microsoft SkyDrive 2014-02-18 19:37 - 2014-02-18 19:37 - 00000000 ____D () C:\Program Files (x86)\Microsoft SkyDrive 2014-02-18 19:37 - 2012-07-17 17:38 - 00000000 ____D () C:\Users\Caveman 2014-02-18 19:27 - 2014-02-18 19:27 - 01245168 _____ (Microsoft Corporation) C:\Users\Caveman\Downloads\windows-live-movie-maker_18116.exe 2014-02-18 18:58 - 2014-02-18 18:53 - 00000000 ____D () C:\Users\Caveman\AppData\Local\cache 2014-02-18 18:57 - 2014-02-18 18:57 - 00000000 ____D () C:\Users\Caveman\Documents\Optimizer Pro 2014-02-18 18:54 - 2014-02-18 18:54 - 00001973 _____ () C:\Users\Caveman\Desktop\Sync Folder.lnk 2014-02-18 18:54 - 2014-02-18 18:54 - 00000000 ____D () C:\Users\Caveman\AppData\Local\BrowserSafeguard 2014-02-18 18:53 - 2014-02-18 18:53 - 00001091 _____ () C:\Users\Caveman\Desktop\MyPC Backup.lnk 2014-02-18 18:53 - 2014-02-18 18:53 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup 2014-02-18 18:53 - 2014-02-18 18:53 - 00000000 ____D () C:\Users\Caveman\.android 2014-02-18 18:53 - 2012-07-17 17:42 - 00000000 ___RD () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-02-18 18:52 - 2014-02-18 18:52 - 00000000 ____D () C:\Users\Caveman\Documents\Mobogenie 2014-02-18 18:52 - 2014-02-18 18:52 - 00000000 ____D () C:\Users\Caveman\AppData\Local\genienext 2014-02-18 18:52 - 2014-02-18 18:52 - 00000000 _____ () C:\Users\Caveman\daemonprocess.txt 2014-02-18 18:51 - 2014-02-18 18:42 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Real 2014-02-18 18:51 - 2014-02-18 18:41 - 00000000 ____D () C:\ProgramData\Real 2014-02-18 18:47 - 2014-02-18 18:47 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\RealNetworks 2014-02-18 18:47 - 2014-02-18 18:47 - 00000000 ____D () C:\ProgramData\MovieMode 2014-02-18 18:46 - 2014-02-18 18:46 - 00001268 _____ () C:\Users\Public\Desktop\RealPlayer.lnk 2014-02-18 18:46 - 2014-02-18 18:46 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Real 2014-02-18 18:46 - 2014-02-18 18:46 - 00000000 ____D () C:\Program Files (x86)\RealNetworks 2014-02-18 18:45 - 2014-02-18 18:45 - 00000000 ____D () C:\ProgramData\RealNetworks 2014-02-18 18:45 - 2014-02-18 18:43 - 00000000 ____D () C:\Program Files (x86)\Real 2014-02-18 18:45 - 2014-02-18 18:42 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Google 2014-02-18 18:44 - 2014-02-18 18:44 - 00272896 _____ (Progressive Networks) C:\Windows\SysWOW64\pncrt.dll 2014-02-18 18:44 - 2014-02-18 18:44 - 00201872 _____ (RealNetworks, Inc.) C:\Windows\SysWOW64\rmoc3260.dll 2014-02-18 18:44 - 2014-02-18 18:44 - 00006656 _____ (RealNetworks, Inc.) C:\Windows\SysWOW64\pndx5016.dll 2014-02-18 18:44 - 2014-02-18 18:44 - 00005632 _____ (RealNetworks, Inc.) C:\Windows\SysWOW64\pndx5032.dll 2014-02-18 18:44 - 2003-03-18 19:14 - 00499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll 2014-02-18 18:44 - 2003-02-21 03:42 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll 2014-02-18 18:40 - 2014-02-18 18:40 - 00553768 _____ (Fusion Install ) C:\Users\Caveman\Downloads\Setup(2).exe 2014-02-18 18:38 - 2014-02-18 18:38 - 00553768 _____ (Fusion Install ) C:\Users\Caveman\Downloads\Setup(1).exe 2014-02-18 18:36 - 2014-02-18 18:36 - 00553768 _____ (Fusion Install ) C:\Users\Caveman\Downloads\Setup.exe 2014-02-18 18:33 - 2014-02-18 18:33 - 00000000 ____D () C:\ProgramData\Uniblue 2014-02-18 18:17 - 2014-02-09 08:06 - 00000000 ____D () C:\Users\Caveman\Desktop\Alte Firefox-Daten 2014-02-18 16:20 - 2014-02-18 16:20 - 00347816 _____ (Microsoft Corporation) C:\Users\Caveman\Downloads\MicrosoftFixit.Codec.RNP.34316163822502393.7.1.Run.exe 2014-02-18 15:08 - 2013-09-29 00:51 - 00000000 ____D () C:\Users\Caveman\Desktop\Projekt F 2014-02-18 14:52 - 2014-02-18 14:38 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Amazon Cloud Player 2014-02-18 14:51 - 2014-02-18 14:39 - 00001229 _____ () C:\Users\Caveman\Desktop\Amazon Cloud Player.lnk 2014-02-18 14:38 - 2014-02-18 14:38 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon Cloud Player 2014-02-18 14:37 - 2014-02-18 14:36 - 36160080 _____ (Amazon) C:\Users\Caveman\Downloads\AmazonCloudPlayerInstaller_422.exe 2014-02-18 14:31 - 2014-02-18 14:30 - 00000000 ____D () C:\Users\Caveman\AppData\Local\{D557A97B-DB54-4E33-8FBE-EEB01F1CE217} 2014-02-18 03:05 - 2014-01-05 21:38 - 00000000 ____D () C:\Windows\system32\MRT 2014-02-18 03:01 - 2014-01-05 21:38 - 88567024 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-02-17 07:08 - 2014-02-17 07:08 - 00283288 _____ () C:\Windows\Minidump\021714-39390-01.dmp 2014-02-17 07:08 - 2014-01-09 15:14 - 525611570 _____ () C:\Windows\MEMORY.DMP 2014-02-17 07:08 - 2014-01-09 15:14 - 00000000 ____D () C:\Windows\Minidump 2014-02-17 06:43 - 2014-02-16 19:53 - 00000000 ____D () C:\Users\Caveman\Desktop\Ausdrucken 2014-02-16 19:44 - 2014-02-16 19:43 - 00000000 ____D () C:\Users\Caveman\AppData\Local\{537664D4-1769-4B3F-B494-30EC57C618A6} 2014-02-16 18:29 - 2013-12-08 18:07 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-02-15 08:54 - 2014-02-15 08:54 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-14 15:09 - 2012-07-17 17:43 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Adobe 2014-02-14 15:01 - 2014-02-14 15:01 - 00000000 ____D () C:\Program Files\McAfee Security Scan 2014-02-14 15:01 - 2014-02-14 14:58 - 00001931 _____ () C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk 2014-02-14 14:58 - 2014-02-14 14:58 - 00000000 ____D () C:\ProgramData\McAfee Security Scan 2014-02-14 01:58 - 2011-02-11 00:03 - 01592786 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-02-12 19:26 - 2013-06-25 06:32 - 00000000 ____D () C:\Users\Caveman\Desktop\KIT 2014-02-11 00:32 - 2014-02-11 00:32 - 01152656 _____ () C:\Windows\SysWOW64\MovieMode.48CA2AEFA22D.dll 2014-02-08 09:53 - 2014-02-08 09:53 - 00280208 _____ () C:\Windows\Minidump\020814-34445-01.dmp 2014-02-07 19:45 - 2013-07-31 00:58 - 00000000 ____D () C:\Users\Caveman\Desktop\AAAAAAAAAAA 2014-02-07 16:33 - 2014-02-07 16:33 - 00280808 _____ () C:\Windows\Minidump\020714-27924-01.dmp 2014-02-06 13:16 - 2014-02-14 01:43 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-02-06 12:30 - 2014-02-14 01:43 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-02-06 12:30 - 2014-02-14 01:43 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-02-06 12:12 - 2014-02-14 01:43 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-02-06 12:07 - 2014-02-14 01:43 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-02-06 12:06 - 2014-02-14 01:43 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-02-06 11:57 - 2014-02-14 01:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-02-06 11:56 - 2014-02-14 01:43 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-02-06 11:52 - 2014-02-14 01:43 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-02-06 11:49 - 2014-02-14 01:43 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-02-06 11:48 - 2014-02-14 01:43 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-02-06 11:48 - 2014-02-14 01:43 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-02-06 11:38 - 2014-02-14 01:42 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-02-06 11:32 - 2014-02-14 01:43 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-02-06 11:20 - 2014-02-14 01:43 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-02-06 11:17 - 2014-02-14 01:43 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-02-06 11:11 - 2014-02-14 01:42 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-02-06 11:01 - 2014-02-14 01:43 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-02-06 11:00 - 2014-02-14 01:43 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-02-06 10:57 - 2014-02-14 01:43 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-02-06 10:57 - 2014-02-14 01:43 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-02-06 10:52 - 2014-02-14 01:43 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-02-06 10:52 - 2014-02-14 01:43 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-02-06 10:50 - 2014-02-14 01:42 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-02-06 10:49 - 2014-02-14 01:43 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-02-06 10:47 - 2014-02-14 01:43 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-02-06 10:46 - 2014-02-14 01:43 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-02-06 10:25 - 2014-02-14 01:43 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-02-06 10:25 - 2014-02-14 01:42 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-02-06 10:24 - 2014-02-14 01:43 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-02-06 10:22 - 2014-02-14 01:42 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-02-06 10:13 - 2014-02-14 01:43 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-02-06 10:09 - 2014-02-14 01:43 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-02-06 10:03 - 2014-02-14 01:42 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-02-06 09:55 - 2014-02-14 01:43 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-02-06 09:41 - 2014-02-14 01:43 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-02-06 09:40 - 2014-02-14 01:43 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-02-06 09:36 - 2014-02-14 01:43 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-02-06 09:34 - 2014-02-14 01:43 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-02-05 21:13 - 2014-02-05 21:11 - 126220554 _____ () C:\Users\Caveman\Downloads\E2010_PC_v4.zip 2014-02-04 21:59 - 2012-05-22 22:53 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-02-04 21:59 - 2012-05-22 22:53 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-02-04 21:59 - 2012-05-22 22:53 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-02-02 15:10 - 2014-02-02 15:10 - 00283288 _____ () C:\Windows\Minidump\020214-24741-01.dmp 2014-01-31 20:34 - 2014-01-31 20:34 - 00283288 _____ () C:\Windows\Minidump\013114-24960-01.dmp 2014-01-29 15:02 - 2014-01-29 15:02 - 00262144 _____ () C:\Windows\Minidump\012914-63071-01.dmp 2014-01-27 07:13 - 2013-11-28 13:46 - 00000000 ____D () C:\ProgramData\Netzmanager 2014-01-26 18:53 - 2014-01-26 18:53 - 00280664 _____ () C:\Windows\Minidump\012614-31559-01.dmp 2014-01-25 22:52 - 2009-07-14 06:08 - 00032640 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-01-23 14:53 - 2014-01-23 14:52 - 00281848 _____ () C:\Windows\Minidump\012314-65660-01.dmp 2014-01-23 08:31 - 2013-12-13 22:11 - 00000000 ____D () C:\Users\Caveman\Desktop\OK Some content of TEMP: ==================== C:\Users\Caveman\AppData\Local\Temp\aacenc3.exe C:\Users\Caveman\AppData\Local\Temp\avgnt.exe C:\Users\Caveman\AppData\Local\Temp\BackupSetup.exe C:\Users\Caveman\AppData\Local\Temp\burnsetup.exe C:\Users\Caveman\AppData\Local\Temp\deshaker.exe C:\Users\Caveman\AppData\Local\Temp\prismsetup.exe C:\Users\Caveman\AppData\Local\Temp\pstagesetup.exe C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite.dll C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite49696.dll C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite53425.dll C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite54514.dll C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite56758.dll C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite91516.dll C:\Users\Caveman\AppData\Local\Temp\wpsetup.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-02-19 06:27 ==================== End Of Log ============================ --- --- --- --- --- --- |
20.02.2014, 03:26 | #4 |
| Awesomehp ist auf meinem ComputerCode:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 18-02-2014 Ran by Caveman at 2014-02-20 03:08:18 Running from C:\Users\Caveman\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: McAfee Anti-Virus und Anti-Spyware (Enabled - Up to date) {ADA629C7-7F48-5689-624A-3B76997E0892} AV: McAfee Anti-Virus und Anti-Spyware (Disabled - Up to date) {86355677-4064-3EA7-ABB3-1B136EB04637} AV: Avira Desktop (Enabled - Up to date) {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C} AS: Avira Desktop (Enabled - Up to date) {4D1AAC01-E68E-63B1-344F-57F1C6DA4691} AS: McAfee Anti-Virus und Anti-Spyware (Enabled - Up to date) {16C7C823-5972-5907-58FA-0004E2F9422F} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: McAfee Anti-Virus und Anti-Spyware (Disabled - Up to date) {3D54B793-665E-3129-9103-206115370C8A} FW: McAfee Firewall (Disabled) {BE0ED752-0A0B-3FFF-80EC-B2269063014C} FW: McAfee Firewall (Enabled) {959DA8E2-3527-57D1-4915-924367AD4FE9} ==================== Installed Programs ====================== Adobe AIR (x32 Version: 2.7.0.19460 - Adobe Systems Incorporated) Adobe AIR (x32 Version: 2.7.0.19460 - Adobe Systems Incorporated) Hidden Adobe Community Help (x32 Version: 3.5.23 - Adobe Systems Incorporated.) Adobe Community Help (x32 Version: 3.5.23 - Adobe Systems Incorporated.) Hidden Adobe Flash Player 12 ActiveX (x32 Version: 12.0.0.44 - Adobe Systems Incorporated) Adobe Flash Player 12 Plugin (x32 Version: 12.0.0.44 - Adobe Systems Incorporated) Adobe Photoshop Elements 10 (x32 Version: 10.0 - Adobe Systems Incorporated) Adobe Photoshop Elements 10 (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden Adobe Reader X MUI (x32 Version: 10.0.0 - Adobe Systems Incorporated) Agatha Christie - Death on the Nile (x32 Version: 2.2.0.98 - WildTangent) Hidden Alfons Lernwelt (x32 Version: - Bildungshaus Schulbuchverlage Westermann Schroedel Diesterweg Schöningh Winklers GmbH) Aloha TriPeaks (x32 Version: 2.2.0.98 - WildTangent) Hidden Amazon Cloud Player (HKCU Version: 2.3.0.422 - Amazon Services LLC) AMD APP SDK Runtime (Version: 10.0.851.6 - Advanced Micro Devices Inc.) Hidden AMD Catalyst Install Manager (Version: 3.0.859.0 - Advanced Micro Devices, Inc.) AnyProtect (x32 Version: 1.0.0.0 - CMI Limited) Apple Application Support (x32 Version: 2.3.6 - Apple Inc.) Apple Mobile Device Support (Version: 7.0.0.117 - Apple Inc.) Apple Software Update (x32 Version: 2.1.3.127 - Apple Inc.) ArcSoft Magic-i Visual Effects 2 (x32 Version: 2.0.1.161 - ArcSoft) ArcSoft WebCam Companion 4 (x32 Version: 4.0.21.457 - ArcSoft) Avira Free Antivirus (x32 Version: 14.0.2.344 - Avira) Avira SearchFree Toolbar (x32 Version: 12.10.0.2949 - APN, LLC) awesomehp uninstaller (x32 Version: - awesomehp) <==== ATTENTION Bejeweled 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden Benutzerhandbuch EPSON BX635FWD Series (x32 Version: - ) Bing Bar (x32 Version: 7.0.610.0 - Microsoft Corporation) Blitzrechnen (x32 Version: - ) Bonjour (Version: 3.0.0.10 - Apple Inc.) BrowserSafeguard (HKCU Version: - Browsersafeguard) <==== ATTENTION Build-a-lot 2 (x32 Version: 2.2.0.98 - WildTangent) Hidden Cake Mania (x32 Version: 2.2.0.98 - WildTangent) Hidden Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center (x32 Version: 2012.0203.1528.27522 - Ihr Firmenname) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2012.0203.1528.27522 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2012.0203.1528.27522 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2012.0203.1528.27522 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Profiles Mobile (x32 Version: 2012.0203.1528.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Standard (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Traditional (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Czech (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Danish (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Dutch (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help English (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Finnish (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help French (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help German (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Greek (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Hungarian (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Italian (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Japanese (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Korean (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Norwegian (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Polish (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Portuguese (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Russian (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Spanish (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Swedish (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Thai (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Turkish (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden ccc-utility64 (Version: 2012.0203.1528.27522 - Advanced Micro Devices, Inc.) Hidden Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden CyberLink PowerDVD (x32 Version: 9.0.5009.52 - CyberLink Corp.) CyberLink PowerDVD (x32 Version: 9.0.5009.52 - CyberLink Corp.) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden D-GISS 2013-2014 (x32 Version: 18.0 - Universum Verlag GmbH, Wiesbaden) Digital Photo Navigator 1.5 (x32 Version: - ) DMUninstaller (x32 Version: - ) <==== ATTENTION Dolby Home Theater v4 (x32 Version: 7.2.7000.6 - Dolby Laboratories Inc) Download Navigator (x32 Version: 1.1.0 - SEIKO EPSON CORPORATION) Elements 10 Organizer (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden ElsterFormular (x32 Version: 14.4.20130909 - Landesfinanzdirektion Thüringen) EnhanceTronic (Version: 2014.02.13.012613 - EnhanceTronic) EPSON BX635FWD Series Printer Uninstall (Version: - SEIKO EPSON Corporation) Epson Event Manager (x32 Version: 2.50.0001 - SEIKO EPSON CORPORATION) Epson FAX Utility (x32 Version: 1.20.00 - SEIKO EPSON CORPORATION) Epson PC-FAX Driver (x32 Version: - ) EPSON Scan (x32 Version: - Seiko Epson Corporation) EpsonNet Print (x32 Version: 2.4j - SEIKO EPSON CORPORATION) Everio MediaBrowser (x32 Version: 2.01.202 - PIXELA) Evernote v. 4.5.2 (x32 Version: 4.5.2.5904 - Evernote Corp.) Express Burn (x32 Version: 4.69 - NCH Software) FDUx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden FIFA 13 (x32 Version: 1.0.0.0 - Electronic Arts) Filmlexikon 2011 (x32 Version: 1.00.0000 - USM) Filmlexikon 2011 (x32 Version: 1.00.0000 - USM) Hidden Fishdom (TM) 2 (x32 Version: 2.2.0.98 - WildTangent) Hidden Fotogaléria (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Fotogalerie (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Fotogalerija (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Fotogalleri (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Fotogalleriet (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Fotoğraf Galerisi (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Fotótár (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Galeria de Fotografias (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Galeria fotografii (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Galerie de photos (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Galerie foto (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden HQ-Video-Profession-1.3 (x32 Version: 1.34.1.29 - HQ-Video) IePluginService12.27.0.3326 (x32 Version: 12.27.0.3326 - Cherished Technololgy LIMITED) <==== ATTENTION Insaniquarium Deluxe (x32 Version: 2.2.0.97 - WildTangent) Hidden Intel PROSet Wireless (Version: - ) Hidden Intel(R) Control Center (x32 Version: 1.2.1.1007 - Intel Corporation) Intel(R) Display Audio Driver (x32 Version: 6.14.00.3090 - Intel Corporation) Intel(R) Management Engine Components (x32 Version: 8.0.2.1410 - Intel Corporation) Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed (Version: 15.0.0.0083 - Intel Corporation) Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (Version: 2.0.0.0086 - Intel Corporation) Intel(R) Rapid Storage Technology (x32 Version: 11.0.0.1032 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (x32 Version: 1.0.3.214 - Intel Corporation) Intel(R) WiDi (x32 Version: 3.0.13.0 - Intel Corporation) Intel(R) Wireless Display (Version: - ) Intel® PROSet/Wireless WiFi-Software (Version: 15.00.0000.0708 - Intel Corporation) Intel® Trusted Connect Service Client (Version: 1.23.605.1 - Intel Corporation) iTunes (Version: 11.1.3.8 - Apple Inc.) Java Auto Updater (x32 Version: 2.1.5.1 - Sun Microsystems, Inc.) Hidden Java(TM) 7 Update 1 (64-bit) (Version: 7.0.10 - Oracle) Java(TM) 7 Update 1 (x32 Version: 7.0.10 - Oracle) Jewel Quest Solitaire 2 (x32 Version: 2.2.0.98 - WildTangent) Hidden Junk Mail filter update (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden KUx86 (x32 Version: 1.0.0 - Sony Corporation ) Hidden LEGO® Star Wars™: Die Komplette Saga (x32 Version: 1.00.0000 - LucasArts) LEGO® Star Wars™: The Complete Saga (x32 Version: 1.00.0000 - LucasArts) Hidden Mahjongg Artifacts (x32 Version: 2.2.0.95 - WildTangent) Hidden McAfee Online Backup (Version: 1.16.6.1 - McAfee, Inc.) Hidden McAfee Online Backup (x32 Version: - McAfee, Inc.) McAfee Security Scan Plus (Version: 3.8.141.11 - McAfee, Inc.) McAfee Total Protection (x32 Version: 12.8.903 - McAfee, Inc.) Media Gallery (Version: 2.1.0.13300 - Sony Corporation) Media Go (x32 Version: 2.0.317 - Sony) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Office 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Klick-und-Los 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden Microsoft Office Klick-und-Los 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Starter 2010 - Deutsch (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Silverlight (Version: 5.1.20913.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219 - Microsoft Corporation) Microsoft WSE 3.0 Runtime (x32 Version: 3.0.5305.0 - Microsoft Corp.) Movie Maker (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Movie Mode (x32 Version: 2.6.63 - GenTechnologies Apps, LLC) Mozilla Firefox 27.0.1 (x86 de) (x32 Version: 27.0.1 - Mozilla) Mozilla Maintenance Service (x32 Version: 27.0.1 - Mozilla) MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden MSXML 4.0 SP3 Parser (KB2758694) (x32 Version: 4.30.2117.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (x32 Version: 4.30.2100.0 - Microsoft Corporation) MyPC Backup (Version: - JDi Backup Ltd) <==== ATTENTION Mystery of Mortlake Mansion (x32 Version: 2.2.0.98 - WildTangent) Hidden Mystery P.I. - The London Caper (x32 Version: 2.2.0.95 - WildTangent) Hidden Netzmanager (Version: 1.071 - Deutsche Telekom AG, Marmiko IT-Solutions GmbH) Hidden Netzmanager (x32 Version: 1.071 - Deutsche Telekom AG) Netzwerkhandbuch EPSON BX635FWD Series (x32 Version: - ) NewPlayer (x32 Version: v2.1.1.0 - TUGUU SL) <==== ATTENTION Origin (x32 Version: 9.0.10.69 - Electronic Arts, Inc.) Photo Common (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Photo Gallery (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden PhotoStage Diashow-Ersteller (x32 Version: 2.29 - NCH Software) Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98 - WildTangent) Hidden PlayMemories Home (x32 Version: 6.1.01.14210 - Sony Corporation) PlayStation(R)Network Downloader (x32 Version: 2.07.00849 - Sony Computer Entertainment Inc.) PlayStation(R)Store (x32 Version: 4.5.15.13232 - Sony Computer Entertainment Inc.) Poczta usługi Windows Live (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Polar Bowler (x32 Version: 2.2.0.97 - WildTangent) Hidden Pošta Windows Live (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Prism Videodatei-Konverter (x32 Version: 2.09 - NCH Software) PSE10 STI Installer (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden PX Profile Update (x32 Version: 1.00.1. - AMD) Hidden PYV_x86 (x32 Version: 1.0.0 - Sony Corporation) Hidden Raccolta foto (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden RealDownloader (x32 Version: 1.3.3 - RealNetworks, Inc.) Hidden RealNetworks - Microsoft Visual C++ 2008 Runtime (x32 Version: 9.0 - RealNetworks, Inc) Hidden RealNetworks - Microsoft Visual C++ 2010 Runtime (x32 Version: 10.0 - RealNetworks, Inc) Hidden RealPlayer (x32 Version: 16.0.3 - RealNetworks) Realtek High Definition Audio Driver (x32 Version: 6.0.1.6573 - Realtek Semiconductor Corp.) RealUpgrade 1.1 (x32 Version: 1.1.0 - RealNetworks, Inc.) Hidden Remote Keyboard (x32 Version: 1.2.0.09270 - Sony Corporation) Hidden Remote Play with PlayStation(R)3 (x32 Version: 1.1.0.21090 - Sony Corporation) Hidden Skype™ 5.10 (x32 Version: 5.10.116 - Skype Technologies S.A.) SpeedUpMyPC (x32 Version: 6.0.1.1 - Uniblue Systems Limited) Sprachtrainer Fonts (x32 Version: 1.00.01 - Ernst Klett Verlag GmbH) SSLx64 (Version: 1.0.0 - Sony Corporation ) Hidden SSLx86 (x32 Version: 1.0.0 - Sony Corporation ) Hidden SupTab (x32 Version: 1.1.1.0 - ) <==== ATTENTION Synaptics Pointing Device Driver (Version: 15.3.44.1 - Synaptics Incorporated) The Hidden Object Game Show (x32 Version: 2.2.0.97 - WildTangent) Hidden TrackID(TM) with BRAVIA (x32 Version: 1.2.0.09270 - Sony Corportaion) Hidden Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (x32 Version: 3 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2468871) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2533523) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2600217) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2836939v3) (x32 Version: 3 - Microsoft Corporation) Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden VAIO - Microsoft Visual C++ 2010 SP1 Runtime 10.0.40219.325 (Version: 1.0.00.01300 - Sony Corporation) VAIO - PlayMemories Home Plug-in (Version: 2.0.00.14200 - Sony Corporation) VAIO - Remote Play mit PlayStation®3 (x32 Version: 1.1.0.21090 - Sony Corporation) VAIO - Remote-Tastatur (x32 Version: 1.2.0.09270 - Sony Corporation) VAIO - Remote-Tastatur mit PlayStation®3 (x32 Version: 1.2.0.09210 - Sony Corporation) VAIO - TrackID™ mit BRAVIA (x32 Version: 1.2.0.09270 - Sony Corporation) VAIO Care (Version: 7.3.0.14170 - Sony Corporation) VAIO Control Center (x32 Version: 5.2.0.14230 - Sony Corporation) VAIO Data Restore Tool (x32 Version: 1.9.0.13190 - Sony Corporation) Hidden VAIO Easy Connect (x32 Version: 1.1.2.01120 - Sony Corporation) VAIO Easy Connect (x32 Version: 1.1.2.01120 - Sony Corporation) Hidden VAIO Gate (x32 Version: 2.4.1.09230 - Sony Corporation) VAIO Gate (x32 Version: 2.4.1.09230 - Sony Corporation) Hidden VAIO Gate Default (x32 Version: 2.5.2.02090 - Sony Corporation) VAIO Gesture Control (x32 Version: 1.0.0.12300 - Sony Corporation) VAIO Gesture Control (x32 Version: 1.0.0.12300 - Sony Corporation) Hidden VAIO Improvement (x32 Version: 1.3.0.12280 - Sony Corporation) VAIO Improvement Validation (Version: 1.0.4.01190 - Sony Corporation) VAIO Sample Contents (x32 Version: 1.4.2.09010 - Sony Corporation) VAIO Smart Network (x32 Version: 3.11.0.13150 - Sony Corporation) VAIO Update (x32 Version: 5.7.0.13130 - Sony Corporation) VAIO Update Merge Module x64 (Version: 5.7.13130 - Sony Corporation) Hidden VAIO*CPU-Lüfterdiagnose (x32 Version: 1.1.0.09200 - Sony Corporation) VAIO-Handbuch (x32 Version: 2.3.0.12300 - Sony Corporation) VAIO-Support für Übertragungen (x32 Version: 1.7.0.02231 - Sony Corporation) Valokuvavalikoima (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden VCCx64 (Version: 1.0.0 - Sony Corporation) Hidden VCCx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden VHD (x32 Version: 1.0.0 - Microsoft) Hidden VideoPad Video-Editor (x32 Version: 3.25 - NCH Software) Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.98 - WildTangent) Hidden VIx64 (Version: 1.0.0 - Sony Corporation) Hidden VIx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden VMLx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden VO Package (x32 Version: 1.0.0.0 - ) VPMx64 (Version: 1.0.0 - Sony Corporation ) Hidden VSNx64 (Version: 1.0.0 - Sony Corporation) Hidden VSNx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden VSSTx64 (Version: 1.0.0 - Sony Corporation ) Hidden VSSTx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden VU5x64 (Version: 1.0.0 - Sony Corporation ) Hidden VU5x86 (x32 Version: 1.0.0 - Sony Corporation ) Hidden VWSTx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden WavePad Audio-Editor (x32 Version: 5.71 - NCH Software) WildTangent Games App (x32 Version: 4.0.5.36 - WildTangent) Hidden WildTangent-Spiele (x32 Version: 1.0.2.5 - WildTangent) Windows Live Communications Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Essentials (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Windows Live Essentials (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Family Safety (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Family Safety (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Fotogalleri (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 16.4.3508.0205 - společnost Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 16.4.3508.0205 - Корпорація Майкрософт) Hidden Windows Live Messenger (x32 Version: 15.4.3538.0513 - Microsoft Corporation) Hidden Windows Live Messenger (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Messenger (x32 Version: 16.4.3508.0205 - společnost Microsoft Corporation) Hidden Windows Live Messenger (x32 Version: 16.4.3508.0205 - Корпорация Майкрософт) Hidden Windows Live Messenger (x32 Version: 16.4.3508.0205 - Корпорація Майкрософт) Hidden Windows Live MIME IFilter (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Temel Parçalar (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Writer (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Writer Resources (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Liven peruspaketti (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Liven sähköposti (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden WPM17.8.0.3325 (x32 Version: 17.8.0.3325 - Cherished Technololgy LIMITED) <==== ATTENTION Συλλογή φωτογραφιών (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Основи Windows Live (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Основные компоненты Windows Live (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Почта Windows Live (x32 Version: 16.4.3508.0205 - Корпорация Майкрософт) Hidden Фотоальбом (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Фотогалерия (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Фотографии (общедоступная версия) (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Фотоколекція (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden ==================== Restore Points ========================= 07-02-2014 19:32:29 Geplanter Prüfpunkt 14-02-2014 00:42:28 Windows Update 18-02-2014 02:00:36 Windows Update 18-02-2014 17:33:18 Uniblue DriverScanner installation 18-02-2014 18:28:03 Windows Live Essentials 18-02-2014 18:38:07 DirectX wurde installiert 18-02-2014 18:39:23 DirectX wurde installiert 18-02-2014 18:40:11 DirectX wurde installiert 18-02-2014 18:43:06 WLSetup 19-02-2014 13:31:38 Removed Skype™ 5.10 19-02-2014 13:39:24 Entfernt Découvertes 1 Sprachtrainer 19-02-2014 13:41:41 D-GISS 2013-2014 wird entfernt 19-02-2014 20:50:02 Uniblue SpeedUpMyPC installation ==================== Hosts content: ========================== 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {08E9D536-28C5-4F08-BD75-97694289D449} - System32\Tasks\HQ-Video-Profession-1.3-chromeinstaller => C:\Program Files (x86)\HQ-Video-Profession-1.3\HQ-Video-Profession-1.3-chromeinstaller.exe [2014-02-19] (HQ-Video) Task: {0B82AA9E-B80E-41C7-9AC7-E4ED7B0FC3AD} - System32\Tasks\Sony Corporation\VAIO Care\CRMReminder => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-01-31] (Sony Corporation) Task: {0C8BBA57-D804-48C5-B275-FBDB50F9568F} - System32\Tasks\Sony Corporation\VAIO Smart Network\VSN Logon Start => net Task: {1452FD56-6E57-43C8-9568-F8A566E0A8AC} - System32\Tasks\Sony Corporation\VAIO Improvement\VAIOImprovementMonitorSystem => C:\Program Files\Sony\VAIO Improvement\vim.exe [2011-12-27] (Sony Corporation) Task: {14E7506F-5AAB-4B43-B45E-2EFB49C83767} - System32\Tasks\Sony Corporation\VAIO Improvement\VAIOImprovementMonitorUser => C:\Program Files\Sony\VAIO Improvement\vim.exe [2011-12-27] (Sony Corporation) Task: {2866A9CB-D782-4AD7-AB00-545E52DF24B6} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-3184525795-2871511248-3231849656-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2013-08-14] (RealNetworks, Inc.) Task: {28BCF312-45DA-4A44-B3F8-DA906C630124} - System32\Tasks\Sony Corporation\VAIO Power Management\VPM Session Change => C:\Program Files\Sony\VAIO Power Management\SPMgr.exe [2012-01-10] (Sony Corporation) Task: {2CC8FB8F-8DAD-42F4-BD88-230BAD415B42} - System32\Tasks\NCH Software\WavePadSevenDays => C:\Program Files (x86)\NCH Software\WavePad\WavePad.exe [2014-02-12] (NCH Software) Task: {3D42CF96-562B-447B-A923-92B159477FEF} - System32\Tasks\HQ-Video-Profession-1.3-codedownloader => C:\Program Files (x86)\HQ-Video-Profession-1.3\HQ-Video-Profession-1.3-codedownloader.exe [2014-02-19] (HQ-Video) Task: {3F300AB2-E269-4D84-ABD4-1BB0B4D8B70A} - System32\Tasks\HQ-Video-Profession-1.3-firefoxinstaller => C:\Program Files (x86)\HQ-Video-Profession-1.3\HQ-Video-Profession-1.3-firefoxinstaller.exe [2014-02-19] (HQ-Video) Task: {54128DEB-5EA8-455E-9BF5-EBCF2E5A4EEB} - System32\Tasks\NCH Software\PhotoStageSevenDays => C:\Program Files (x86)\NCH Software\PhotoStage\PhotoStage.exe [2013-12-24] (NCH Software) Task: {57927F27-6946-4BC5-AEAD-81FBBF2D9E6D} - System32\Tasks\Sony Corporation\VAIO Improvement Validation\VAIO Improvement Validation => C:\Program Files\Sony\VAIO Improvement Validation\viv.exe [2011-01-20] (Sony Corporation) Task: {59EEFC92-7D3F-4B30-B3E9-37479561EB3A} - System32\Tasks\NCH Software\ExpressBurnSevenDays => C:\Program Files (x86)\NCH Software\ExpressBurn\ExpressBurn.exe [2013-10-23] (NCH Software) Task: {5EB9E72B-41AF-4BB0-A3D4-A5C3D8D19107} - System32\Tasks\Sony Corporation\VAIO Care\VCCheckIolo => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-01-31] (Sony Corporation) Task: {7026E15C-69B7-442E-A1AC-63CE687C20A9} - System32\Tasks\SpeedUpMyPC Startup => C:\Program Files (x86)\Uniblue\SpeedUpMyPC\speedupmypc.exe [2014-01-28] (Uniblue Systems Limited) Task: {7AF8A414-4E36-42D1-9AF3-D6C72437841D} - System32\Tasks\Sony Corporation\VAIO Control Center\Level4Month => C:\Program Files (x86)\Sony\VAIO Control Center\WBCBatteryCare.exe [2012-02-23] (Sony Corporation) Task: {83ACB553-5C2E-4E77-98CF-28EF9FA346A9} - System32\Tasks\Sony Corporation\VAIO Gate\VAIO Gate => C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe [2011-09-23] (Sony Corporation) Task: {89568EE6-74D5-4E43-B78A-B530DA0539B3} - System32\Tasks\NCH Software\PrismSevenDays => C:\Program Files (x86)\NCH Software\Prism\Prism.exe [2014-02-01] (NCH Software) Task: {8D1936C2-6DAE-4B20-BCAA-6FCB5F9D2B02} - System32\Tasks\HQ-Video-Profession-1.3-enabler => C:\Program Files (x86)\HQ-Video-Profession-1.3\HQ-Video-Profession-1.3-enabler.exe [2014-02-19] (HQ-Video) Task: {8F6FA4C6-CBDC-43B8-9F08-E920BEFB9FDE} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {959E6E5E-A55E-4728-B6F8-9EFDF1978E28} - System32\Tasks\VHDInformationCheck => C:\Program Files (x86)\Sony\VAIO Recovery\plugins\InformationCheck.exe [2012-02-24] (Sony Corporation) Task: {9795C0C2-7442-4178-9448-F10D8390D16A} - System32\Tasks\Sony Corporation\VAIO Care\VCOneClick => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-01-31] (Sony Corporation) Task: {A03D22F5-4DBC-49F5-87C5-2E0B7039DE7D} - System32\Tasks\Sony Corporation\VAIO Care\AutoCheckMessage => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-01-31] (Sony Corporation) Task: {A267E964-24C6-400E-836D-2212EDD4F0D2} - System32\Tasks\Sony Corporation\VAIO Gesture Control\VCGULogonTask => C:\Program Files (x86)\Sony\VAIO Camera Gesture Utility\VCGU.exe [2011-12-27] (Sony Corporation) Task: {A2C701DC-6135-4EBD-90A5-5141DE500DBE} - System32\Tasks\Sony Corporation\VAIO Power Management\VPM Logon Start => C:\Program Files\Sony\VAIO Power Management\SPMgr.exe [2012-01-10] (Sony Corporation) Task: {A5D550C1-38A4-42F9-B676-F31F680573E0} - System32\Tasks\Sony Corporation\VAIO Gate\StartExecuteProxy => C:\Program Files\Sony\VAIO Gate\ExecutionProxy.exe [2011-09-23] (Sony Corporation) Task: {B5C7F99F-8D4D-43A5-A6F6-2C85B8FFB7B4} - System32\Tasks\Sony Corporation\VAIO Improvement\VAIOImprovementUploader => C:\Program Files\Sony\VAIO Improvement\viuploader.exe [2011-12-27] (Sony Corporation) Task: {B5E9722B-7215-4EF7-97BE-07195979FFDA} - System32\Tasks\Sony Corporation\VAIO Power Management\VPM Unlock => C:\Program Files\Sony\VAIO Power Management\SPMgr.exe [2012-01-10] (Sony Corporation) Task: {C8511B7D-34A2-4AC7-8972-E726BE7FF761} - System32\Tasks\Sony Corporation\VAIO Control Center\Level4Daily => C:\Program Files (x86)\Sony\VAIO Control Center\WBCBatteryCare.exe [2012-02-23] (Sony Corporation) Task: {C91256BB-683E-4083-B80C-3633C2362593} - System32\Tasks\Sony Corporation\VAIO Care\VCMetrics => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-01-31] (Sony Corporation) Task: {D7CE3438-2BA1-4F06-92D3-8E49A3D08735} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-04] (Adobe Systems Incorporated) Task: {DA924891-1904-4952-9F9A-BD9388D88D13} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-3184525795-2871511248-3231849656-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2013-08-14] (RealNetworks, Inc.) Task: {DBF9BC6E-C83E-40E5-B300-4CA3A54D685E} - System32\Tasks\HQ-Video-Profession-1.3-updater => C:\Program Files (x86)\HQ-Video-Profession-1.3\HQ-Video-Profession-1.3-updater.exe [2014-02-19] (HQ-Video) Task: {DC3E83CD-5AD8-4255-9C36-2DADA92ED826} - System32\Tasks\SpeedUpMyPC Maintenance => C:\Program Files (x86)\Uniblue\SpeedUpMyPC\speedupmypc.exe [2014-01-28] (Uniblue Systems Limited) Task: {F41BBD59-E1C6-4097-A746-6EBEF5935917} - System32\Tasks\Sony Corporation\VAIO Care\VAIO Care => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-01-31] (Sony Corporation) Task: {FAF8729C-5CE1-4F43-8FEF-C9AE178450D8} - System32\Tasks\Sony Corporation\VAIO Care\VAU => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-01-31] (Sony Corporation) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\HQ-Video-Profession-1.3-chromeinstaller.job => C:\Program Files (x86)\HQ-Video-Profession-1.3\HQ-Video-Profession-1.3-chromeinstaller.exe Task: C:\Windows\Tasks\HQ-Video-Profession-1.3-codedownloader.job => C:\Program Files (x86)\HQ-Video-Profession-1.3\HQ-Video-Profession-1.3-codedownloader.exe Task: C:\Windows\Tasks\HQ-Video-Profession-1.3-enabler.job => C:\Program Files (x86)\HQ-Video-Profession-1.3\HQ-Video-Profession-1.3-enabler.exe Task: C:\Windows\Tasks\HQ-Video-Profession-1.3-firefoxinstaller.job => C:\Program Files (x86)\HQ-Video-Profession-1.3\HQ-Video-Profession-1.3-firefoxinstaller.exe Task: C:\Windows\Tasks\HQ-Video-Profession-1.3-updater.job => C:\Program Files (x86)\HQ-Video-Profession-1.3\HQ-Video-Profession-1.3-updater.exe Task: C:\Windows\Tasks\SpeedUpMyPC Maintenance.job => C:\Program Files (x86)\Uniblue\SpeedUpMyPC\speedupmypc.exe Task: C:\Windows\Tasks\SpeedUpMyPC Startup.job => C:\Program Files (x86)\Uniblue\SpeedUpMyPC\speedupmypc.exe ==================== Loaded Modules (whitelisted) ============= 2014-02-06 16:13 - 2014-02-06 16:13 - 01102336 _____ () C:\Program Files (x86)\MyPC Backup\x64\System.Data.SQLite.dll 2014-02-06 16:19 - 2014-02-06 16:19 - 00012288 _____ () C:\Program Files (x86)\MyPC Backup\GetText.dll 2012-05-22 22:18 - 2012-02-23 03:11 - 00128280 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe 2013-08-14 15:19 - 2013-08-14 15:19 - 00039056 _____ () C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe 2012-03-20 02:15 - 2012-03-19 08:38 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2014-02-18 14:38 - 2014-01-14 20:46 - 03140608 _____ () C:\Users\Caveman\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe 2011-11-09 08:55 - 2011-11-09 08:55 - 00016384 _____ () c:\Program Files (x86)\ATI Technologies\ATI.ACE\Branding\Branding.dll 2012-02-03 15:21 - 2012-02-03 15:21 - 00369152 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll 2010-10-19 08:31 - 2010-10-19 08:31 - 00205312 _____ () C:\Program Files\Netzmanager\NMInfraIS2\driver64\SoftplugLib.DLL 2011-04-18 21:00 - 2011-04-18 21:00 - 00081208 _____ () C:\Program Files (x86)\McAfee Online Backup\librs2.dll 2010-02-28 01:33 - 2010-02-28 01:33 - 00077664 _____ () C:\Program Files (x86)\Common Files\microsoft shared\virtualization handler\OfficeVirt.exe 2014-02-19 21:49 - 2014-02-19 21:49 - 00195736 _____ () C:\Users\Caveman\AppData\Roaming\VOPackage\VOPackage.exe 2014-02-19 15:27 - 2014-02-19 15:27 - 00061456 _____ () C:\Users\Caveman\AppData\Roaming\VOPackage\VOsrv.exe 2014-02-19 14:36 - 2014-02-19 14:36 - 00389712 _____ () C:\Program Files (x86)\AnyProtectEx\AnyProtectTrayIcon.exe 2014-02-13 02:28 - 2014-02-19 22:39 - 00080680 _____ () C:\Program Files (x86)\EnhanceTronic\updateEnhanceTronic.exe 2014-02-18 19:54 - 2014-02-19 22:42 - 00080680 _____ () C:\Program Files (x86)\EnhanceTronic\bin\utilEnhanceTronic.exe 2013-12-08 18:12 - 2013-12-08 18:11 - 00394808 _____ () C:\Program Files (x86)\Avira\AntiVir Desktop\sqlite3.dll 2013-09-13 19:51 - 2013-09-13 19:51 - 00087952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2013-09-13 19:51 - 2013-09-13 19:51 - 01242952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2012-05-22 22:44 - 2012-02-23 16:35 - 00021128 _____ () C:\Program Files (x86)\Sony\VAIO Control Center\VESBasePS.dll 2012-07-18 17:13 - 2004-09-09 16:13 - 00364544 ____N () C:\Program Files (x86)\PIXELA\Everio MediaBrowser\pxl_m17n_tool.dll 2014-02-14 11:22 - 2014-02-14 11:22 - 00172032 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\b162055347700182d96325676dd591c4\IsdiInterop.ni.dll 2012-05-22 22:09 - 2011-11-29 19:00 - 00059392 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll 2012-05-22 22:17 - 2012-02-23 03:12 - 01198872 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll 2014-02-19 21:49 - 2014-02-19 21:49 - 00117248 _____ () C:\Users\Caveman\AppData\Local\Temp\nsx5182.tmp\IpConfig.dll 2014-02-15 08:54 - 2014-02-15 08:54 - 03578992 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll 2014-02-04 21:59 - 2014-02-04 21:59 - 16287624 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Driver" ==================== Disabled items from MSCONFIG ============== MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe" ==================== Faulty Device Manager Devices ============= Name: McAfee Inc. mfeapfk Description: McAfee Inc. mfeapfk Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: mfeapfk Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Event log errors: ========================= Application errors: ================== Error: (02/19/2014 06:38:48 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 5134570 Error: (02/19/2014 06:38:48 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 5134570 Error: (02/19/2014 06:38:48 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (02/19/2014 06:38:47 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 5133525 Error: (02/19/2014 06:38:47 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 5133525 Error: (02/19/2014 06:38:47 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (02/19/2014 06:38:46 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 5132511 Error: (02/19/2014 06:38:46 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 5132511 Error: (02/19/2014 06:38:46 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (02/19/2014 06:38:45 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 5131512 System errors: ============= Error: (02/19/2014 10:56:35 PM) (Source: DCOM) (User: ) Description: {209500FC-6B45-4693-8871-6296C4843751} Error: (02/19/2014 02:07:08 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Netzmanager Infrastruktur Informationssystem Dienst" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 5000 Millisekunden durchgeführt: Neustart des Diensts. Error: (02/19/2014 02:04:55 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "VSNService" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (02/19/2014 02:04:55 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst VSNService erreicht. Error: (02/19/2014 02:04:01 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Avira Browser-Schutz" wurde mit folgendem dienstspezifischem Fehler beendet: %%4. Error: (02/19/2014 02:02:36 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "McAfee Inc. mfeapfk" wurde aufgrund folgenden Fehlers nicht gestartet: %%1243 Error: (02/19/2014 07:07:22 AM) (Source: DCOM) (User: ) Description: {995C996E-D918-4A8C-A302-45719A6F4EA7} Error: (02/19/2014 07:06:38 AM) (Source: DCOM) (User: ) Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E} Error: (02/19/2014 07:06:38 AM) (Source: DCOM) (User: ) Description: {078AEF33-C48A-49F7-AFF3-A0EE810BFE7C} Error: (02/19/2014 07:06:34 AM) (Source: DCOM) (User: ) Description: {6DFC2D17-579D-4C1C-93B7-B05B7DCCD766} Microsoft Office Sessions: ========================= Error: (02/19/2014 06:38:48 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 5134570 Error: (02/19/2014 06:38:48 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledEvent 5134570 Error: (02/19/2014 06:38:48 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (02/19/2014 06:38:47 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 5133525 Error: (02/19/2014 06:38:47 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledEvent 5133525 Error: (02/19/2014 06:38:47 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (02/19/2014 06:38:46 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 5132511 Error: (02/19/2014 06:38:46 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledEvent 5132511 Error: (02/19/2014 06:38:46 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (02/19/2014 06:38:45 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 5131512 ==================== Memory info =========================== Percentage of memory in use: 71% Total physical RAM: 3990.72 MB Available physical RAM: 1129.13 MB Total Pagefile: 7979.62 MB Available Pagefile: 3777.55 MB Total Virtual: 8192 MB Available Virtual: 8191.84 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:446.27 GB) (Free:289.08 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 466 GB) (Disk ID: F1B7C5B4) Partition: GPT Partition Type ==================== End Of Log ============================ Verdächtige eingehende Netzwerkverbindung blockiert Ausgangs-IP-Adresse: Der PC ... hat versucht, ohne ihre Erlaubnis eine Verbindung mit dem TCP-Port auf ihrem PC herzustellen. |
20.02.2014, 10:22 | #5 | ||
/// Winkelfunktion /// TB-Süch-Tiger™ | Awesomehp ist auf meinem ComputerZitat:
Zitat:
Schmeiß also mindestens Avira vom System runter. Denn Avira werden wir so nicht wieder empfehlen. Siehe Lesenstoff unten. Wenn fertig, machst du bitte mit MBAR weiter: Malwarebytes Anti-Rootkit (MBAR) Downloade dir bitte Malwarebytes Anti-Rootkit und speichere es auf deinem Desktop.
Starte keine andere Datei in diesem Ordner ohne Anweisung eines Helfers -- Lesestoff: Warum wir Avira nicht mehr empfehlen Avira liefert seit einiger Zeit mit der Standardinstallation die Ask Toolbar mit aus. Diese Toolbar ist Voraussetzung dafür, dass der Webguard zuverlässig funktioniert. Die Ask Toolbar ist dafür bekannt, dass sie das Surfverhalten des Benutzers ausspioniert, um damit in letzter Konsequenz Geld zu verdienen. Daher wird diese Toolbar von uns als "schädlich" eingestuft. Mehr Informationen. Eine Sicherheitsfirma, die dem Benutzer praktisch ungefragt schädliche Software "unterjubelt", scheidet für uns daher aus. Wir empfehlen daher allen Nutzern von Avira aufgrund dieser Geschäftspraktik, der teilweise äußerst schlechten Erkennungsrate und der überaus nervtötenden Werbung Avira zu deinstallieren und auf ein alternatives Produkt auszuweichen. Solltest du dich zu einem Wechsel entscheiden, empfehlen wir dir nach der Deinstallation mit dem Avira-Cleaner alle Reste zu entfernen. Tipps Anti-Virusprogramme
__________________ Logfiles bitte immer in CODE-Tags posten |
20.02.2014, 23:04 | #6 |
| Awesomehp ist auf meinem Computer Prima. Alles genau so geschehen, wie beschrieben. Der zweite Scan hat keinen Fund mehr angezeigt. Hier die erste Logfile: Code:
ATTFilter Malwarebytes Anti-Rootkit BETA 1.07.0.1009 www.malwarebytes.org Database version: v2014.02.20.05 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 11.0.9600.16518 Caveman :: CAVEMAN-CAVEMAN [administrator] 20.02.2014 12:30:39 mbar-log-2014-02-20 (12-30-39).txt Scan type: Quick scan Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken Scan options disabled: Objects scanned: 258736 Time elapsed: 2 hour(s), 11 minute(s), 52 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 0 (No malicious items detected) Registry Values Detected: 0 (No malicious items detected) Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 0 (No malicious items detected) Files Detected: 1 C:\Users\Caveman\AppData\Local\Temp\android\android.exe (Trojan.Android.NSD) -> Delete on reboot. Physical Sectors Detected: 0 (No malicious items detected) (end) |
21.02.2014, 10:53 | #7 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Awesomehp ist auf meinem Computer Adware/Junkware/Toolbars entfernen 1. Schritt: adwCleaner Downloade Dir bitte AdwCleaner auf deinen Desktop.
2. Schritt: JRT - Junkware Removal Tool Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
3. Schritt: Frisches Log mit FRST Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ Logfiles bitte immer in CODE-Tags posten |
21.02.2014, 14:34 | #8 |
| Awesomehp ist auf meinem Computer Nachdem der Computer beim Neustart nach der ADW-Cleaner-Benutzung wieder hochgefahren war, kam ich nicht mehr ins Internet, weil es Probleme mit dem Proxiserver gab. Die Windows-Hilfe ergab, dass das System zurückgesetzt werden soll, das habe ich gemacht. Das Internet funktioniert wieder. Was soll ich jetzt tun? Die Schritte 1-3 von vorne durchführen? Was mache ich, wenn das Internet wieder nicht funktioniert? Geändert von Caveman12 (21.02.2014 um 14:40 Uhr) |
21.02.2014, 16:22 | #9 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Awesomehp ist auf meinem Computer Logs posten!
__________________ Logfiles bitte immer in CODE-Tags posten |
21.02.2014, 18:12 | #10 |
| Awesomehp ist auf meinem Computer ADW-Cleaner Logdatei: AdwCleaner Logfile: Code:
ATTFilter # AdwCleaner v3.019 - Bericht erstellt am 21/02/2014 um 14:06:33 # Aktualisiert 17/02/2014 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzername : Caveman - CAVEMAN-CAVEMAN # Gestartet von : C:\Users\Caveman\Desktop\adwcleaner.exe # Option : Löschen ***** [ Dienste ] ***** Dienst Gelöscht : BackupStack Dienst Gelöscht : IePluginService Dienst Gelöscht : Wpm ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\ProgramData\apn Ordner Gelöscht : C:\ProgramData\IePluginService Ordner Gelöscht : C:\ProgramData\NCH Software Ordner Gelöscht : C:\ProgramData\uniblue Ordner Gelöscht : C:\ProgramData\WPM Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\uniblue Ordner Gelöscht : C:\Program Files (x86)\AnyProtectEx Ordner Gelöscht : C:\Program Files (x86)\MyPC Backup Ordner Gelöscht : C:\Program Files (x86)\NCH Software Ordner Gelöscht : C:\Program Files (x86)\optimizer pro Ordner Gelöscht : C:\Program Files (x86)\SupTab Ordner Gelöscht : C:\Program Files (x86)\uniblue Ordner Gelöscht : C:\Program Files (x86)\HQ-Video-Profession-1.3 Ordner Gelöscht : C:\Users\Caveman\AppData\Local\BrowserSafeguard Ordner Gelöscht : C:\Users\Caveman\AppData\Local\genienext Ordner Gelöscht : C:\Users\Caveman\AppData\Local\Mobogenie Ordner Gelöscht : C:\Users\Caveman\AppData\Local\PackageAware Ordner Gelöscht : C:\Users\Caveman\AppData\Local\Searchprotect Ordner Gelöscht : C:\Users\Caveman\AppData\Local\Temp\apn Ordner Gelöscht : C:\Users\Caveman\AppData\Roaming\NCH Software Ordner Gelöscht : C:\Users\Caveman\AppData\Roaming\SupTab Ordner Gelöscht : C:\Users\Caveman\AppData\Roaming\uniblue Ordner Gelöscht : C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup Ordner Gelöscht : C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup Ordner Gelöscht : C:\Users\Caveman\Documents\Mobogenie Ordner Gelöscht : C:\Users\Caveman\Documents\optimizer pro Ordner Gelöscht : C:\Users\Caveman\AppData\Roaming\Mozilla\Firefox\Profiles\ksk70vq0.default-1392743824136\Extensions\13c471d9-6cbb-4c08-9dd1-8dc16c66bb1f@cf5065af-ca24-464a-a637-af7582a82514.com Datei Gelöscht : C:\Users\Caveman\AppData\Roaming\Mozilla\Firefox\Profiles\ksk70vq0.default-1392743824136\Extensions\lightningnewtab@gmail.com.xpi Datei Gelöscht : C:\END Datei Gelöscht : C:\Users\Public\Desktop\speedupmypc.lnk Datei Gelöscht : C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk Datei Gelöscht : C:\Users\Caveman\Desktop\MyPC Backup.lnk Datei Gelöscht : C:\Users\Caveman\AppData\Roaming\Mozilla\Firefox\Profiles\ksk70vq0.default-1392743824136\user.js Datei Gelöscht : C:\Users\Caveman\AppData\Roaming\Mozilla\Firefox\Profiles\num5ie4i.default-1392447677510\user.js Datei Gelöscht : C:\Windows\System32\Tasks\NCH Software Datei Gelöscht : C:\Windows\Tasks\SpeedUpMyPC Maintenance.job Datei Gelöscht : C:\Windows\System32\Tasks\SpeedUpMyPC Maintenance Datei Gelöscht : C:\Windows\Tasks\HQ-Video-Profession-1.3-chromeinstaller.job Datei Gelöscht : C:\Windows\System32\Tasks\HQ-Video-Profession-1.3-chromeinstaller Datei Gelöscht : C:\Windows\Tasks\HQ-Video-Profession-1.3-codedownloader.job Datei Gelöscht : C:\Windows\System32\Tasks\HQ-Video-Profession-1.3-codedownloader Datei Gelöscht : C:\Windows\Tasks\HQ-Video-Profession-1.3-enabler.job Datei Gelöscht : C:\Windows\System32\Tasks\HQ-Video-Profession-1.3-enabler Datei Gelöscht : C:\Windows\Tasks\HQ-Video-Profession-1.3-firefoxinstaller.job Datei Gelöscht : C:\Windows\System32\Tasks\HQ-Video-Profession-1.3-firefoxinstaller Datei Gelöscht : C:\Windows\Tasks\HQ-Video-Profession-1.3-updater.job Datei Gelöscht : C:\Windows\System32\Tasks\HQ-Video-Profession-1.3-updater ***** [ Verknüpfungen ] ***** Verknüpfung Desinfiziert : C:\Users\Public\Desktop\Mozilla Firefox.lnk Verknüpfung Desinfiziert : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk Verknüpfung Desinfiziert : C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk Verknüpfung Desinfiziert : C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk Verknüpfung Desinfiziert : C:\Users\Caveman\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk Verknüpfung Desinfiziert : C:\Users\Caveman\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk Verknüpfung Desinfiziert : C:\Users\Caveman\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk ***** [ Registrierungsdatenbank ] ***** Wert Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [BrowserSafeguard Update Task] Wert Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [browsersafeguard] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\driverscanner Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\speedupmypc Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\ApnSetup_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\ApnSetup_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\mypc backup Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [mobilegeni daemon] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0051578.BHO Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0051578.BHO.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0051578.Sandbox Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0051578.Sandbox.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110511151178} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220522152278} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{7D86A08B-0A8F-4BE0-B693-F05E6947E780} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550555155578} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660566156678} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440544154478} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511151178} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{41564952-412D-5637-00A7-7A786E7484D7} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{41564952-412D-5637-00A7-7A786E7484D7} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{51c5a230-e7ca-4dec-b9e0-706c26e9b28b} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f93670d3-578b-440d-ace8-64a80859a3f8} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{41564952-412D-5637-00A7-7A786E7484D7}] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110511151178} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220522152278} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550555155578} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660566156678} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511151178} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{51c5a230-e7ca-4dec-b9e0-706c26e9b28b} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f93670d3-578b-440d-ace8-64a80859a3f8} Daten Wiederhergestellt : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command Daten Wiederhergestellt : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command Schlüssel Gelöscht : HKCU\Software\Conduit Schlüssel Gelöscht : HKCU\Software\installedbrowserextensions Schlüssel Gelöscht : HKCU\Software\NCH Software Schlüssel Gelöscht : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F} Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Crossrider Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\DynConIE Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\HQ-Video-Profession-1.3 Schlüssel Gelöscht : HKLM\Software\{1146AC44-2F03-4431-B4FD-889BC837521F} Schlüssel Gelöscht : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0} Schlüssel Gelöscht : HKLM\Software\{6791A2F3-FC80-475C-A002-C014AF797E9C} Schlüssel Gelöscht : HKLM\Software\Conduit Schlüssel Gelöscht : HKLM\Software\NCH Software Schlüssel Gelöscht : HKLM\Software\supTab Schlüssel Gelöscht : HKLM\Software\supWPM Schlüssel Gelöscht : HKLM\Software\Uniblue Schlüssel Gelöscht : HKLM\Software\Wpm Schlüssel Gelöscht : HKLM\Software\HQ-Video-Profession-1.3 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{E55B3271-7CA8-4D0C-AE06-69A24856E996}_is1 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IePlugins Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\supTab Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Wpm Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\HQ-Video-Profession-1.3 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyPC Backup ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.16518 Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL] Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] -\\ Mozilla Firefox v27.0.1 (de) [ Datei : C:\Users\Caveman\AppData\Roaming\Mozilla\Firefox\Profiles\ksk70vq0.default-1392743824136\prefs.js ] Zeile gelöscht : user_pref("accessibility.lightning.homepage", "hxxp://avira.search.ask.com/?tpid=AVIRA-V7&o=APN11074&pf=V7&trgb=ALL&p2=%5EB0Q%5EYYYYYY%5EZF%5EDE&gct=hp&apn_ptnrs=%5EB0Q&apn_dtid=%5EYYYYYY%5EZF%5EDE&ap[...] Zeile gelöscht : user_pref("browser.search.defaultenginename", "awesomehp"); Zeile gelöscht : user_pref("browser.search.selectedEngine", "awesomehp"); Zeile gelöscht : user_pref("browser.startup.homepage", "hxxp://avira.search.ask.com/?tpid=AVIRA-V7&o=APN11074&pf=V7&trgb=ALL&p2=%5EB0Q%5EYYYYYY%5EZF%5EDE&gct=hp&apn_ptnrs=%5EB0Q&apn_dtid=%5EYYYYYY%5EZF%5EDE&apn_dbr=ff[...] Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.InstallationThankYouPage", true); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.InstallationTime", 1392842977); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.active", true); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.addressbar", "NA"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.addressbarenhanced", ""); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.asyncdb.was_copied", "true"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.asyncdb_dbWasSet", true); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.asyncdb_dbWasSet_FF25_FIX", true); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.asyncinternaldb.was_copied", "true"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.asyncinternaldb_dbWasSet", true); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.asyncinternaldb_dbWasSet_FF25_FIX", true); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.backgroundver", 1); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.certdomaininstaller", ""); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.changeprevious", false); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.cookie.InstallationTime.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.cookie.InstallationTime.value", "%221392842977%22"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.cookie.InstallerParams.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.cookie.InstallerParams.value", "%7B%22source_id%22%3A%22001074%22%2C%22sub_id%22%3A%220%22%2C%22uz[...] Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.cookie.iframe-exists.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.cookie.iframe-exists.value", "true"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.description", "HQ Videos is an add-on for your Internet browser that enhances your online experien[...] Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.domain", ""); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.enablesearch", false); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.homepage", ""); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.iframe", false); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.internaldb.InstallerIdentifiers.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.internaldb.InstallerIdentifiers.value", "%7B%22installer_bic%22%3A%223C605630234B41549A5ADE0027673[...] Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.internaldb.InstallerParams.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.internaldb.InstallerParams.value", "%7B%22source_id%22%3A%22001074%22%2C%22sub_id%22%3A%220%22%2C%[...] Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.internaldb.InstallerParamsCache.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.internaldb.InstallerParamsCache.value", "%7B%22source_id%22%3A%22001074%22%2C%22sub_id%22%3A%220%2[...] Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.internaldb.InstallerUserIdentifiersCache.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.internaldb.InstallerUserIdentifiersCache.value", "%7B%22installer_bic%22%3A%223C605630234B41549A5A[...] Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.internaldb.Resources_appVer.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.internaldb.Resources_appVer.value", "5"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.internaldb.Resources_lastVersion.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.internaldb.Resources_lastVersion.value", "1"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.internaldb.Resources_meta.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.internaldb.Resources_meta.value", "%7B%7D"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.internaldb.Resources_nextCheck.expiration", "Fri Feb 21 2014 19:58:55 GMT+0100"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.internaldb.Resources_nextCheck.value", "true"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.internaldb.Resources_queue.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.internaldb.Resources_queue.value", "%7B%7D"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.internaldb.Resources_remote_resources.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.internaldb.Resources_remote_resources.value", "%7B%22remoteId%22%3A0%7D"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.internaldb.__defualt_browser__.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.internaldb.__defualt_browser__.value", "%22ff%22"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.internaldb.installer.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.internaldb.installer.value", "%7B%22InstallerIdentifiers%22%3A%7B%22installer_bic%22%3A%223C605630[...] Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.internaldb.monetization_plugin_last_executable_request.expiration", "Fri Feb 21 2014 11:14:06 GMT+[...] Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.internaldb.monetization_plugin_last_executable_request.value", "%22hxxp%3A//rtb.pclick.yahoo.com/i[...] Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.lastDailyReport", "1392987350433"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.lastUpdate", "1392987535969"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.manifesturl", ""); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.name", "HQ-Video-Profession-1.3"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.newtab", ""); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.opensearch", ""); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.pluginsurl", "hxxps://w9u6a2p6.ssl.hwcdn.net/plugin/apps/51578/plugins/093/ff/plugins.json"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.pluginsversion", 2); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.publisher", "HQ-Video"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.searchstatus", 0); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.setnewtab", false); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.thankyou", ""); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.updateinterval", 360); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.ver", 5); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.FilesValidatorDueTime", "1392987408771"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.apps", "51578"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.bic", "1444beb80471a06dee45ff107c72fda6"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.cid", 51578); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.firstrun", false); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.hadappinstalled", true); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.installationdate", 1392843129); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.modetype", "production"); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.reportInstall", true); Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.statsDailyCounter", 5); Zeile gelöscht : user_pref("extensions.crossrider.bic", "1444beb80471a06dee45ff107c72fda6"); ************************* AdwCleaner[R0].txt - [29266 octets] - [21/02/2014 14:04:22] AdwCleaner[S0].txt - [25319 octets] - [21/02/2014 14:06:33] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [25380 octets] ########## AdwCleaner Logfile: Code:
ATTFilter # AdwCleaner v3.019 - Bericht erstellt am 21/02/2014 um 17:09:45 # Aktualisiert 17/02/2014 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzername : Caveman - CAVEMAN-CAVEMAN # Gestartet von : C:\Users\Caveman\Desktop\adwcleaner.exe # Option : Löschen ***** [ Dienste ] ***** Dienst Gelöscht : BackupStack Dienst Gelöscht : IePluginService Dienst Gelöscht : Wpm ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\ProgramData\IePluginService Ordner Gelöscht : C:\ProgramData\NCH Software Ordner Gelöscht : C:\ProgramData\WPM Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\uniblue Ordner Gelöscht : C:\Program Files (x86)\AnyProtectEx Ordner Gelöscht : C:\Program Files (x86)\MyPC Backup Ordner Gelöscht : C:\Program Files (x86)\NCH Software Ordner Gelöscht : C:\Program Files (x86)\SupTab Ordner Gelöscht : C:\Program Files (x86)\uniblue Ordner Gelöscht : C:\Users\Caveman\AppData\Local\BrowserSafeguard Ordner Gelöscht : C:\Users\Caveman\AppData\Local\Mobogenie Ordner Gelöscht : C:\Users\Caveman\AppData\Roaming\NCH Software Ordner Gelöscht : C:\Users\Caveman\AppData\Roaming\SupTab Ordner Gelöscht : C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup Ordner Gelöscht : C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup Datei Gelöscht : C:\Users\Public\Desktop\speedupmypc.lnk Datei Gelöscht : C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk Datei Gelöscht : C:\Users\Caveman\Desktop\MyPC Backup.lnk Datei Gelöscht : C:\Users\Caveman\AppData\Roaming\Mozilla\Firefox\Profiles\ksk70vq0.default-1392743824136\user.js Datei Gelöscht : C:\Users\Caveman\AppData\Roaming\Mozilla\Firefox\Profiles\num5ie4i.default-1392447677510\user.js Datei Gelöscht : C:\Windows\System32\Tasks\NCH Software Datei Gelöscht : C:\Windows\Tasks\SpeedUpMyPC Maintenance.job Datei Gelöscht : C:\Windows\System32\Tasks\SpeedUpMyPC Maintenance ***** [ Verknüpfungen ] ***** Verknüpfung Desinfiziert : C:\Users\Public\Desktop\Mozilla Firefox.lnk Verknüpfung Desinfiziert : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk Verknüpfung Desinfiziert : C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk Verknüpfung Desinfiziert : C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk Verknüpfung Desinfiziert : C:\Users\Caveman\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk Verknüpfung Desinfiziert : C:\Users\Caveman\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk Verknüpfung Desinfiziert : C:\Users\Caveman\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk ***** [ Registrierungsdatenbank ] ***** Wert Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [BrowserSafeguard Update Task] Wert Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [browsersafeguard] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\driverscanner Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\speedupmypc Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\ApnSetup_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\ApnSetup_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\mypc backup Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [mobilegeni daemon] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0051578.BHO Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0051578.BHO.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0051578.Sandbox Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0051578.Sandbox.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110511151178} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220522152278} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{7D86A08B-0A8F-4BE0-B693-F05E6947E780} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550555155578} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660566156678} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440544154478} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511151178} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{41564952-412D-5637-00A7-7A786E7484D7} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{41564952-412D-5637-00A7-7A786E7484D7} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{41564952-412D-5637-00A7-7A786E7484D7}] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110511151178} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220522152278} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550555155578} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660566156678} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511151178} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} Daten Wiederhergestellt : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command Daten Wiederhergestellt : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command Schlüssel Gelöscht : HKCU\Software\Conduit Schlüssel Gelöscht : HKCU\Software\installedbrowserextensions Schlüssel Gelöscht : HKCU\Software\NCH Software Schlüssel Gelöscht : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F} Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Crossrider Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\DynConIE Schlüssel Gelöscht : HKLM\Software\{1146AC44-2F03-4431-B4FD-889BC837521F} Schlüssel Gelöscht : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0} Schlüssel Gelöscht : HKLM\Software\{6791A2F3-FC80-475C-A002-C014AF797E9C} Schlüssel Gelöscht : HKLM\Software\Conduit Schlüssel Gelöscht : HKLM\Software\NCH Software Schlüssel Gelöscht : HKLM\Software\supTab Schlüssel Gelöscht : HKLM\Software\supWPM Schlüssel Gelöscht : HKLM\Software\Uniblue Schlüssel Gelöscht : HKLM\Software\Wpm Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{E55B3271-7CA8-4D0C-AE06-69A24856E996}_is1 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IePlugins Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\supTab Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Wpm Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyPC Backup ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.16518 Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL] Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] -\\ Mozilla Firefox v27.0.1 (de) [ Datei : C:\Users\Caveman\AppData\Roaming\Mozilla\Firefox\Profiles\ksk70vq0.default-1392743824136\prefs.js ] Zeile gelöscht : user_pref("accessibility.lightning.homepage", "hxxp://avira.search.ask.com/?tpid=AVIRA-V7&o=APN11074&pf=V7&trgb=ALL&p2=%5EB0Q%5EYYYYYY%5EZF%5EDE&gct=hp&apn_ptnrs=%5EB0Q&apn_dtid=%5EYYYYYY%5EZF%5EDE&ap[...] Zeile gelöscht : user_pref("browser.search.defaultenginename", "awesomehp"); Zeile gelöscht : user_pref("browser.search.selectedEngine", "awesomehp"); Zeile gelöscht : user_pref("browser.startup.homepage", "hxxp://avira.search.ask.com/?tpid=AVIRA-V7&o=APN11074&pf=V7&trgb=ALL&p2=%5EB0Q%5EYYYYYY%5EZF%5EDE&gct=hp&apn_ptnrs=%5EB0Q&apn_dtid=%5EYYYYYY%5EZF%5EDE&apn_dbr=ff[...] Zeile gelöscht : user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.internaldb.monetization_plugin_last_executable_request.value", "%22hxxp%3A//rtb.pclick.yahoo.com/i[...] Zeile gelöscht : user_pref("extensions.crossrider.bic", "1444beb80471a06dee45ff107c72fda6"); ************************* AdwCleaner[R0].txt - [42455 octets] - [21/02/2014 14:04:22] AdwCleaner[S0].txt - [35872 octets] - [21/02/2014 14:06:33] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [35933 octets] ########## JRT.txt Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.2 (02.20.2014:1) OS: Windows 7 Home Premium x64 Ran by Caveman on 21.02.2014 at 17:36:33,74 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services Successfully stopped: [Service] backupstack Successfully deleted: [Service] backupstack ~~~ Registry Values Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\browsersafeguard ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3} Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23} Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\conduit Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\installedbrowserextensions Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\crossrider Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\dynconie Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\conduit Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\driverscanner Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\speedupmypc Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Paths\mypc backup Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{e55b3271-7ca8-4d0c-ae06-69a24856e996}_is1 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CrossriderApp0051578.BHO Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CrossriderApp0051578.BHO.1 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CrossriderApp0051578.Sandbox Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CrossriderApp0051578.Sandbox.1 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{11111111-1111-1111-1111-110511151178} Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{22222222-2222-2222-2222-220522152278} Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{55555555-5555-5555-5555-550555155578} Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{66666666-6666-6666-6666-660566156678} Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{44444444-4444-4444-4444-440544154478} Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{11111111-1111-1111-1111-110511151178} Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{22222222-2222-2222-2222-220522152278} Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{55555555-5555-5555-5555-550555155578} Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{66666666-6666-6666-6666-660566156678} Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{44444444-4444-4444-4444-440544154478} Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\CrossriderApp0051578.BHO Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\CrossriderApp0051578.BHO.1 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\CrossriderApp0051578.Sandbox Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\CrossriderApp0051578.Sandbox.1 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Interface\{55555555-5555-5555-5555-550555155578} Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Interface\{66666666-6666-6666-6666-660566156678} Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\TypeLib\{44444444-4444-4444-4444-440544154478} Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\Interface\{55555555-5555-5555-5555-550555155578} Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\Interface\{66666666-6666-6666-6666-660566156678} Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\TypeLib\{44444444-4444-4444-4444-440544154478} Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\APNSetup_RASAPI32 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\APNSetup_RASMANCS Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511151178} ~~~ Files Successfully deleted: [File] "C:\Users\Public\Desktop\speedupmypc.lnk" Successfully deleted: [File] "C:\Users\Caveman\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\speedupmypc.lnk" Successfully deleted: [File] C:\Windows\syswow64\sho1E2C.tmp Successfully deleted: [File] C:\Windows\syswow64\sho7CCF.tmp ~~~ Folders Successfully deleted: [Folder] "C:\Users\Caveman\appdata\local\browsersafeguard" Successfully deleted: [Folder] "C:\Program Files (x86)\mypc backup" Successfully deleted: [Folder] "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\uniblue" Successfully deleted: [Folder] "C:\Users\Caveman\AppData\Roaming\microsoft\windows\start menu\programs\mypc backup" Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{00223964-9403-4E63-917B-0B700174F90A} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{025183F1-6FB4-4335-9DD2-375F55EC291A} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{02EC2E18-6B09-4F32-BEB2-8207710FB154} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{0580D542-4936-4E5C-89B5-B6C114F0788A} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{05BF7DA8-F07F-45CF-B1AB-C50691189F50} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{066DBB4B-D2A2-44A3-9588-95EBD1C4D9B5} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{06D7DB63-B942-4C64-9102-18046497609D} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{0A12BC6A-38FD-46C8-80EE-3FD0BF4C1E42} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{0C43CBDD-49A0-4AC5-A774-68A4AB4282BD} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{0D25D05A-0CE3-4E83-86FC-EE6BB9F84689} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{0F37E974-9A22-4191-A4CB-14C5AC4873A3} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{139E5E0A-65E4-470C-8716-FD9094EFB823} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{16F7703B-3DE3-4C7A-956B-0783F0FA820F} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{19ED7A36-1D37-4D2F-9B90-78E4227DF7FA} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{1A51A4CC-62F5-4AC6-AA90-72FA7B8CA6F0} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{248AF36A-9D31-40E7-8378-E95F222D2909} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{267B62DE-C7CA-48F5-9597-E8F1E552C418} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{28AACBF1-70E9-405D-8575-BBBB93FEEBFB} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{2A76E190-38FD-4D70-B66D-0AE350282CA0} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{31DA3C0B-BE7E-4128-9A4D-FE376BFD5B7C} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{35A179BA-D897-4733-95AA-FA3EED5072C7} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{3BF43ACB-E9CB-4FC4-9FA8-F8CA0D7FF1CF} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{41108582-0C9A-44FB-909A-D3442311EC25} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{411E96C7-B1A1-49E0-8E3E-45CCFAACF43D} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{474B0D81-1F7E-4CD6-AC0B-E8BE32E30876} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{47517B24-DA1A-4572-AE65-8B26CB52DE64} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{4BDBCA1D-C6DD-4D41-8AF6-AFCE868ED603} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{5132CF40-804A-4CD4-9E53-D5C89873212A} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{537664D4-1769-4B3F-B494-30EC57C618A6} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{593260E9-AE5B-4A9D-A459-4F99284F574E} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{594CFDA0-D405-4EE4-8454-1CA072FF24C8} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{5BF624AE-3FA1-4904-9392-06E32CE581D6} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{5C3DB5FF-6543-48A4-AFEF-81B75D51A8AE} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{5EA66FAC-C634-4AD7-B6CC-5FD642622418} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{61763BB7-5799-4D55-8454-43F98ECFA5EE} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{65091277-347C-4A76-9E47-D216291E0CB2} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{682AA9F5-BCC6-4D55-91B5-D6AC270F82FD} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{6B418442-9CBA-4BC3-95B2-30DC658859C0} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{6BC03388-9F80-49EF-8B8F-7D94FEED6507} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{6DFBC478-13BA-4080-900D-963C30D88577} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{70C1775C-C3D5-4B71-AFA2-4C4A3D4E3A74} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{7AC9402E-6D52-453A-85AD-989F1541D6E6} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{7EA9DFC5-126C-4CE1-889F-34A505CCCE48} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{8870033A-7EE5-4152-8DEF-64090BE1EC95} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{8A0451C9-3574-449D-A481-2AFA91B8853F} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{8A2A1282-FF60-4457-9B8A-A24B79A62F22} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{8E7B3048-7ACB-4C38-9CB7-9CCEE7BF6ABA} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{8EB65B7D-B656-4760-939D-0B2216E11632} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{9293B07C-E2F2-4EFE-A9A1-652EC318B480} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{9528B0F8-7A74-41E0-A8D0-51A8CF268AB0} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{98E083DC-82BF-4AA0-9012-41DC6A8FC5DE} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{9EB29456-6BA3-4E78-B2AC-B11986C28745} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{A58DC050-47A2-492A-9094-6AC0E035E48F} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{A880039D-AB7A-4021-ACE7-4DA9A16EDBC4} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{AEDAA221-F84D-41BF-A123-CB76DEC73187} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{B43DECC6-E0A1-47F1-A26E-5C403F060C3B} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{B80C4BCD-9760-4D21-8EFD-EC8BAE4989C7} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{B8C4D41F-0AC9-4F63-890D-CC86D5420A3C} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{BCFFB95D-97F5-48DC-AF38-305E7F8B7351} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{C01BE630-CC78-400C-9CF1-9D33823413A9} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{C283D884-6F4B-4B73-B195-CE098295B895} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{C722516A-2BE9-4A07-97C1-37A8335239AB} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{C946A1DF-4799-44F8-8167-4352E223358D} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{CEA8B144-59A1-48AF-A3B5-5413298AA334} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{CF4BF61C-127D-44CB-9A79-19DC3332D052} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{D0414A94-D99E-44AA-BB56-39C97F0E2FF3} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{D557A97B-DB54-4E33-8FBE-EEB01F1CE217} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{D579AE6F-75A5-4A36-B3F0-8ADC2A65BC8C} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{DAECE89E-9992-45FF-9F5C-49815C2B79F6} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{DF96DCA9-6684-4352-9AF8-1B4E122DFF3A} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{E0F63415-7C12-4082-BF1A-725471C0C093} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{E3459D13-B5EC-4212-B72A-C2763955043D} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{E462A0FA-8B64-4158-B9B0-2496F4F5CBBC} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{E5B9F49B-75D4-4095-B6BA-A53AC7901560} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{E9A26F6A-2761-4CD7-A36D-3766FC9F62BD} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{EA3F319E-51B8-4C41-AF35-91D59A037A4A} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{EA82146B-F0EF-43B6-8B49-8B3057D648DE} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{EAF7476B-6B40-4B3B-BF54-B64907A6B8E2} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{EDE01A0D-58E1-48D7-859B-855204D1DB05} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{EF111D61-FCCF-40DD-89B7-27800B225DFE} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{F2930CAE-BE29-4F76-8338-323BF971FE2F} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{F916E24F-FDDA-40F8-A3B7-A20F351E712D} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{F960B86E-47EE-48C5-8EC7-B923D1A446DD} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{FAF584CF-317C-4ED7-A3E1-7B2E2C9CBF02} Successfully deleted: [Empty Folder] C:\Users\Caveman\appdata\local\{FBE4E758-31C9-4CAB-822E-467C76B59D48} ~~~ FireFox Successfully deleted: [File] C:\Users\Caveman\AppData\Roaming\mozilla\firefox\profiles\ksk70vq0.default-1392743824136\user.js Successfully deleted the following from C:\Users\Caveman\AppData\Roaming\mozilla\firefox\profiles\ksk70vq0.default-1392743824136\prefs.js user_pref("accessibility.lightning.homepage", "hxxp://avira.search.ask.com/?tpid=AVIRA-V7&o=APN11074&pf=V7&trgb=ALL&p2=%5EB0Q%5EYYYYYY%5EZF%5EDE&gct=hp&apn_ptnrs=%5EB0Q&apn_dt user_pref("browser.startup.homepage", "hxxp://avira.search.ask.com/?tpid=AVIRA-V7&o=APN11074&pf=V7&trgb=ALL&p2=%5EB0Q%5EYYYYYY%5EZF%5EDE&gct=hp&apn_ptnrs=%5EB0Q&apn_dtid=%5EYY user_pref("extensions.a13c471d96cbb4c089dd18dc16c66bb1fcf5065afca24464aa637af7582a82514com51578.51578.internaldb.monetization_plugin_last_executable_request.value", "%22hxxp%3 user_pref("extensions.crossrider.bic", "1444beb80471a06dee45ff107c72fda6"); Emptied folder: C:\Users\Caveman\AppData\Roaming\mozilla\firefox\profiles\ksk70vq0.default-1392743824136\minidumps [7 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 21.02.2014 at 17:45:37,36 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
21.02.2014, 18:17 | #11 |
| Awesomehp ist auf meinem Computer FRST.txt FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 20-02-2014 Ran by Caveman (administrator) on CAVEMAN-CAVEMAN on 21-02-2014 18:14:50 Running from C:\Users\Caveman\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\system32\atiesrxx.exe (AMD) C:\Windows\system32\atieclxx.exe (Microsoft Corporation) C:\Windows\system32\WLANExt.exe (Cherished Technololgy LIMITED) C:\ProgramData\IePluginService\PluginService.exe (Cherished Technololgy LIMITED) C:\ProgramData\WPM\wprotectmanager.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Just Develop It) C:\Program Files (x86)\MyPC Backup\BackupStack.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (McAfee, Inc.) C:\Windows\system32\mfevtps.exe (GenTechnologies Apps, LLC) C:\ProgramData\MovieMode\MovieModeService.exe (Deutsche Telekom AG) C:\Program Files\Netzmanager\NMInfraIS2\Netzmanager_Service.exe (Sony Corporation) c:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe () C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe () C:\Program Files (x86)\EnhanceTronic\updateEnhanceTronic.exe (GenTechnologies Apps, LLC) C:\ProgramData\MovieMode\MovieMode.exe () C:\Program Files (x86)\EnhanceTronic\bin\utilEnhanceTronic.exe (Sony Corporation) C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe () C:\Users\Caveman\AppData\Roaming\VOPackage\VOsrv.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Microsoft Corporation) C:\Windows\SysWOW64\DllHost.exe (Microsoft Corporation) C:\Windows\SysWOW64\DllHost.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNService.exe (Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNClient.exe (Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMgr.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_YATIHVE.EXE () C:\Users\Caveman\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe (BrowserSafeguard) C:\Users\Caveman\AppData\Local\BrowserSafeguard\BrowserSafeguard.exe (PIXELA CORPORATION) C:\Program Files (x86)\PIXELA\Everio MediaBrowser\MBCameraMonitor.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Sony Corporation) C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe (Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe (SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXRCV.exe (SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXSTM.exe (MyPCBackup.com) C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe (SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe (Deutsche Telekom AG) C:\Program Files\Netzmanager\netzmanager.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe (Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe (Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (Advanced Micro Devices Inc.) c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Adobe Systems Incorporated) c:\Program Files (x86)\Adobe\Elements 10 Organizer\PhotoshopElementsFileAgent.exe (Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe (Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCPerfService.exe (Sony of America Corporation) C:\Program Files\Sony\VAIO Care\listener.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCSystemTray.exe (ArcSoft, Inc.) C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe (Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_70.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_70.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCService.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCAgent.exe (Microsoft Corporation) C:\Windows\System32\vds.exe (Sony Corporation) C:\Program Files\Sony\VAIO Update Common\VUAgent.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCAdmin.exe (Sony Corporation) C:\Program Files\Sony\VAIO Improvement\vim.exe (Sony Corporation) C:\Program Files\Sony\VAIO Improvement\vim.exe (Intel Corporation) C:\Windows\system32\igfxsrvc.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1158248 2012-02-27] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1158248 2012-02-27] (Realtek Semiconductor) HKLM\...\Run: [BTMTrayAgent] - C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll [11406608 2011-12-19] (Intel Corporation) HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2870032 2012-02-24] (Synaptics Incorporated) HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [499608 2011-06-16] (Adobe Systems Incorporated) HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284440 2011-11-29] (Intel Corporation) HKLM-x32\...\Run: [Dolby Home Theater v4] - C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [500736 2011-05-02] (Dolby Laboratories Inc.) HKLM-x32\...\Run: [USB3MON] - C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-02-23] (Intel Corporation) HKLM-x32\...\Run: [StartCCC] - c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [343168 2012-02-03] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [mcui_exe] - "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey HKLM-x32\...\Run: [ISBMgr.exe] - C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe [60552 2011-09-20] (Sony Corporation) HKLM-x32\...\Run: [PMBVolumeWatcher] - c:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [693608 2012-02-21] (Sony Corporation) HKLM-x32\...\Run: [FUFAXRCV] - C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe [495616 2011-03-09] (SEIKO EPSON CORPORATION) HKLM-x32\...\Run: [FUFAXSTM] - C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe [856064 2011-03-09] (SEIKO EPSON CORPORATION) HKLM-x32\...\Run: [EEventManager] - C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [979328 2010-10-12] (SEIKO EPSON CORPORATION) HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.) HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-11-02] (Apple Inc.) HKLM-x32\...\Run: [TkBellExe] - C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe [295512 2014-02-18] (RealNetworks, Inc.) HKLM-x32\...\Run: [mobilegeni daemon] - C:\Program Files (x86)\Mobogenie\DaemonProcess.exe Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer: [NoControlPanel] 0 HKU\S-1-5-21-3184525795-2871511248-3231849656-1000\...\Run: [EPLTarget\P0000000000000000] - C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIHVE.EXE [239488 2011-04-25] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-3184525795-2871511248-3231849656-1000\...\Run: [EADM] - C:\Program Files (x86)\Origin\Origin.exe [3598680 2014-02-15] (Electronic Arts) HKU\S-1-5-21-3184525795-2871511248-3231849656-1000\...\Run: [DT Emphelungstool] - "C:\Users\Caveman\AppData\Local\Deutsche Telekom\Empfehlungstool\DTEmpfehlungstool.exe" 2 HKU\S-1-5-21-3184525795-2871511248-3231849656-1000\...\Run: [Amazon Cloud Player] - C:\Users\Caveman\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe [3140608 2014-01-14] () HKU\S-1-5-21-3184525795-2871511248-3231849656-1000\...\Run: [BrowserSafeguard] - C:\Users\Caveman\AppData\Local\BrowserSafeguard\BrowserSafeguard.exe [418304 2014-02-18] (BrowserSafeguard) HKU\S-1-5-21-3184525795-2871511248-3231849656-1000\...\Run: [BrowserSafeguard Update Task] - C:\Users\Caveman\AppData\Local\BrowserSafeguard\uninstall.BrowserSafeguard.exe [3352576 2014-02-18] () HKU\S-1-5-21-3184525795-2871511248-3231849656-1000\...\RunOnce: [Uninstall C:\Users\Caveman\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64] - C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Caveman\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64" Startup: C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk ShortcutTarget: MyPC Backup.lnk -> C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe (MyPCBackup.com) Startup: C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Netzmanager.lnk ShortcutTarget: Netzmanager.lnk -> C:\Program Files\Netzmanager\netzmanager.exe (Deutsche Telekom AG) ==================== Internet (Whitelisted) ==================== ProxyEnable: Internet Explorer proxy is enabled. ProxyServer: http=127.0.0.1:49192;https=127.0.0.1:49192 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.awesomehp.com/?type=hp&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.awesomehp.com/?type=hp&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://sony.msn.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://sony.msn.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.awesomehp.com/?type=hp&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.awesomehp.com/?type=hp&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.awesomehp.com/web/?type=ds&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.awesomehp.com/?type=hp&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.awesomehp.com/?type=hp&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.awesomehp.com/web/?type=ds&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX&q={searchTerms} StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe hxxp://www.awesomehp.com/?type=sc&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX&q={searchTerms} SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX&q={searchTerms} SearchScopes: HKLM-x32 - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX&q={searchTerms} SearchScopes: HKLM-x32 - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX&q={searchTerms} SearchScopes: HKCU - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX&q={searchTerms} SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX&q={searchTerms} SearchScopes: HKCU - {ABF25B2D-125B-43FE-BF71-D6AFA76D3723} URL = hxxp://rover.ebay.com/rover/1/707-37276-16609-27/4?mpre=hxxp://shop.ebay.de/?oemInLn=ieSrch-Q212&_nkw={searchTerms} BHO: HQ-Video-Profession-1.3 - {11111111-1111-1111-1111-110511151178} - C:\Program Files (x86)\HQ-Video-Profession-1.3\HQ-Video-Profession-1.3-bho64.dll (HQ-Video) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: HQ-Video-Profession-1.3 - {11111111-1111-1111-1111-110511151178} - C:\Program Files (x86)\HQ-Video-Profession-1.3\HQ-Video-Profession-1.3-bho.dll (HQ-Video) BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO-x32: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader) BHO-x32: IETabPage Class - {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} - C:\Program Files (x86)\SupTab\SupTab.dll (Thinknice Co. Limited) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: EnhanceTronic - {f530d5e8-9d18-4cba-b7cc-95944f9ebe3d} - C:\Program Files (x86)\EnhanceTronic\EnhanceTronicbho.dll (EnhanceTronic) Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) Toolbar: HKCU - No Name - {41564952-412D-5637-00A7-7A786E7484D7} - No File Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\Caveman\AppData\Roaming\Mozilla\Firefox\Profiles\ksk70vq0.default-1392743824136 FF user.js: detected! => C:\Users\Caveman\AppData\Roaming\Mozilla\Firefox\Profiles\ksk70vq0.default-1392743824136\user.js FF DefaultSearchEngine: awesomehp FF SelectedSearchEngine: awesomehp FF Homepage: hxxp://avira.search.ask.com/?tpid=AVIRA-V7&o=APN11074&pf=V7&trgb=ALL&p2=%5EB0Q%5EYYYYYY%5EZF%5EDE&gct=hp&apn_ptnrs=%5EB0Q&apn_dtid=%5EYYYYYY%5EZF%5EDE&apn_dbr=ff_25.0&apn_uid=4F77CA38-0924-4CB2-AD1B-4507CA804779&itbv=12.6.0.1898&doi=2013-12-08&psv= FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_70.dll () FF Plugin: @java.com/JavaPlugin - C:\Program Files\Java\jre7\bin\new_plugin\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_70.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/JavaPlugin - C:\Program Files (x86)\Java\jre7\bin\new_plugin\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @playstation.com/PsndlCheck,version=1.00 - C:\Program Files (x86)\Sony\PLAYSTATION Network Downloader\nppsndl.dll (Sony Computer Entertainment Inc.) FF Plugin-x32: @real.com/nppl3260;version=16.0.3.51 - C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprndlchromebrowserrecordext;version=1.3.3 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprndlhtml5videoshim;version=1.3.3 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprndlpepperflashvideoshim;version=1.3.3 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprpplugin;version=16.0.3.51 - C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpplugin.dll (RealPlayer) FF Plugin-x32: @realnetworks.com/npdlplugin;version=1 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader) FF Plugin-x32: @SonyCreativeSoftware.com/Media Go,version=1.0 - C:\Program Files (x86)\Sony\Media Go\npmediago.dll (Sony Network Entertainment International LLC) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll () FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\awesomehp.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF HKLM-x32\...\Firefox\Extensions: [{DF153AFF-6948-45d7-AC98-4FC4AF8A08E2}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\ FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\ [] FF HKLM-x32\...\Firefox\Extensions: [lightningnewtab@gmail.com] - C:\Users\Caveman\AppData\Roaming\Mozilla\Firefox\Profiles\ksk70vq0.default-1392743824136\extensions\lightningnewtab@gmail.com.xpi FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2014-02-18] FF StartMenuInternet: FIREFOX.EXE - C:\Program Files (x86)\Mozilla Firefox\firefox.exe hxxp://www.awesomehp.com/?type=sc&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX ==================== Services (Whitelisted) ================= S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.) R2 AdobeActiveFileMonitor10.0; c:\Program Files (x86)\Adobe\Elements 10 Organizer\PhotoshopElementsFileAgent.exe [169624 2011-09-14] (Adobe Systems Incorporated) R2 BackupStack; C:\Program Files (x86)\MyPC Backup\BackupStack.exe [36392 2014-02-06] (Just Develop It) R2 IePluginService; C:\ProgramData\IePluginService\PluginService.exe [508016 2014-02-19] (Cherished Technololgy LIMITED) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128280 2012-02-23] () R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2012-02-23] (Intel Corporation) R2 McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [199304 2012-05-25] (McAfee, Inc.) R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [219272 2013-11-04] (McAfee, Inc.) R2 mfevtp; C:\Windows\system32\mfevtps.exe [182752 2013-11-04] (McAfee, Inc.) R2 MovieMode; C:\ProgramData\MovieMode\MovieMode.exe [151184 2014-02-11] (GenTechnologies Apps, LLC) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273168 2011-12-08] () R2 Netzmanager Service; C:\Program Files\Netzmanager\NMInfraIS2\Netzmanager_Service.exe [2635776 2012-07-20] (Deutsche Telekom AG) R2 PMBDeviceInfoProvider; c:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [473960 2012-02-21] (Sony Corporation) R2 RealNetworks Downloader Resolver Service; C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2013-08-14] () R2 SampleCollector; C:\Program Files\Sony\VAIO Care\VCPerfService.exe [260768 2011-11-30] (Sony Corporation) R2 uCamMonitor; C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [105024 2011-02-23] (ArcSoft, Inc.) R2 Update EnhanceTronic; C:\Program Files (x86)\EnhanceTronic\updateEnhanceTronic.exe [80680 2014-02-19] () R2 Util EnhanceTronic; C:\Program Files (x86)\EnhanceTronic\bin\utilEnhanceTronic.exe [111400 2014-02-21] () S3 VCFw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [960160 2011-12-29] (Sony Corporation) R2 VOsrv; C:\Users\Caveman\AppData\Roaming\VOPackage\VOsrv.exe [61456 2014-02-19] () R2 Wpm; C:\ProgramData\WPM\wprotectmanager.exe [493568 2014-02-19] (Cherished Technololgy LIMITED) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [594704 2011-12-08] (Intel® Corporation) S2 AntiVirWebService; "C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe" [X] ==================== Drivers (Whitelisted) ==================== R0 amdkmpfd; C:\Windows\System32\DRIVERS\amdkmpfd.sys [31872 2012-03-19] (Advanced Micro Devices, Inc.) R3 ArcSoftKsUFilter; C:\Windows\System32\DRIVERS\ArcSoftKsUFilter.sys [19968 2009-05-26] (ArcSoft, Inc.) S3 cfwids; C:\Windows\System32\drivers\cfwids.sys [70112 2013-11-04] (McAfee, Inc.) S3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [179792 2013-11-04] (McAfee, Inc.) R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [311120 2013-11-04] (McAfee, Inc.) U3 mfeavfk01; No ImagePath R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [519576 2013-11-04] (McAfee, Inc.) R2 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [782360 2013-11-04] (McAfee, Inc.) S3 mferkdet; C:\Windows\System32\drivers\mferkdet.sys [100912 2012-02-22] (McAfee, Inc.) R2 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [343696 2013-11-04] (McAfee, Inc.) R2 rimssne; C:\Windows\System32\DRIVERS\rimssne64.sys [102912 2012-02-24] (REDC) R2 risdsnxc; C:\Windows\System32\DRIVERS\risdsnxc64.sys [104448 2012-02-23] (REDC) R3 TelekomNM6; C:\Program Files\Netzmanager\NMInfraIS2\Driver\TelekomNM6.sys [45664 2010-09-16] (Deutsche Telekom AG AG, Marmiko IT-Solutions GmbH) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-21 18:13 - 2014-02-21 18:13 - 02153984 _____ (Farbar) C:\Users\Caveman\Desktop\FRST64.exe 2014-02-21 18:13 - 2014-02-21 18:13 - 00000000 ____D () C:\Users\Caveman\Desktop\FRST-OlderVersion 2014-02-21 17:45 - 2014-02-21 17:45 - 00015815 _____ () C:\Users\Caveman\Desktop\JRT.txt 2014-02-21 17:36 - 2014-02-21 17:36 - 00000000 ____D () C:\Windows\ERUNT 2014-02-21 17:34 - 2014-02-21 17:35 - 01037734 _____ (Thisisu) C:\Users\Caveman\Desktop\JRT.exe 2014-02-21 17:16 - 2014-02-21 17:16 - 00036062 _____ () C:\Users\Caveman\Desktop\AdwCleaner[S0].txt 2014-02-21 14:04 - 2014-02-21 17:09 - 00000000 ____D () C:\AdwCleaner 2014-02-20 22:52 - 2014-02-20 22:59 - 17858952 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2014-02-20 14:47 - 2014-02-21 18:08 - 00003358 _____ () C:\Windows\System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-3184525795-2871511248-3231849656-1000 2014-02-20 12:29 - 2014-02-21 14:21 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2014-02-20 12:29 - 2014-02-20 14:50 - 00119000 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-02-20 12:29 - 2014-02-20 12:29 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-02-20 12:28 - 2014-02-20 22:56 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-02-20 12:28 - 2014-02-20 22:56 - 00000000 ____D () C:\Users\Caveman\Desktop\mbar 2014-02-20 12:26 - 2014-02-20 12:26 - 12589848 _____ (Malwarebytes Corp.) C:\Users\Caveman\Desktop\mbar-1.07.0.1009.exe 2014-02-20 12:23 - 2014-02-20 12:23 - 00000000 ____D () C:\Program Files\McAfee 2014-02-20 12:04 - 2014-02-14 15:01 - 00000426 _____ () C:\AVScanner.ini 2014-02-20 11:34 - 2014-02-21 18:08 - 00003228 _____ () C:\Windows\System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-3184525795-2871511248-3231849656-1000 2014-02-19 22:30 - 2014-02-20 03:09 - 00044407 _____ () C:\Users\Caveman\Desktop\Addition.txt 2014-02-19 22:28 - 2014-02-21 18:14 - 00027866 _____ () C:\Users\Caveman\Desktop\FRST.txt 2014-02-19 22:28 - 2014-02-21 18:14 - 00000000 ____D () C:\FRST 2014-02-19 22:10 - 2014-02-21 17:28 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup 2014-02-19 22:10 - 2014-02-21 17:28 - 00000000 ____D () C:\Program Files (x86)\AnyProtectEx 2014-02-19 22:10 - 2014-02-19 22:10 - 00825208 _____ (AnyProtect.com) C:\Users\Caveman\AppData\Local\nsvE706.tmp 2014-02-19 22:10 - 2014-02-19 22:10 - 00001049 _____ () C:\Users\Caveman\Desktop\AnyProtect.lnk 2014-02-19 22:00 - 2014-02-19 22:00 - 00001104 _____ () C:\Users\Caveman\Desktop\Continue VuuPC Installation.lnk 2014-02-19 21:51 - 2014-02-21 18:08 - 00001584 _____ () C:\Windows\Tasks\HQ-Video-Profession-1.3-updater.job 2014-02-19 21:51 - 2014-02-21 18:07 - 00001540 _____ () C:\Windows\Tasks\HQ-Video-Profession-1.3-codedownloader.job 2014-02-19 21:51 - 2014-02-21 18:07 - 00001438 _____ () C:\Windows\Tasks\HQ-Video-Profession-1.3-enabler.job 2014-02-19 21:51 - 2014-02-21 17:29 - 00000000 ____D () C:\ProgramData\WPM 2014-02-19 21:51 - 2014-02-21 17:29 - 00000000 ____D () C:\ProgramData\IePluginService 2014-02-19 21:51 - 2014-02-21 17:28 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\SupTab 2014-02-19 21:51 - 2014-02-21 17:28 - 00000000 ____D () C:\Program Files (x86)\SupTab 2014-02-19 21:51 - 2014-02-19 21:51 - 00004614 _____ () C:\Windows\System32\Tasks\HQ-Video-Profession-1.3-updater 2014-02-19 21:51 - 2014-02-19 21:51 - 00004570 _____ () C:\Windows\System32\Tasks\HQ-Video-Profession-1.3-codedownloader 2014-02-19 21:51 - 2014-02-19 21:51 - 00004468 _____ () C:\Windows\System32\Tasks\HQ-Video-Profession-1.3-enabler 2014-02-19 21:51 - 2014-02-19 21:51 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\awesomehp 2014-02-19 21:51 - 2014-02-19 21:51 - 00000000 ____D () C:\Users\Caveman\AppData\Local\newplayer 2014-02-19 21:50 - 2014-02-21 18:09 - 00000276 _____ () C:\Windows\Tasks\SpeedUpMyPC Startup.job 2014-02-19 21:50 - 2014-02-21 18:08 - 00003144 _____ () C:\Windows\Tasks\HQ-Video-Profession-1.3-chromeinstaller.job 2014-02-19 21:50 - 2014-02-21 18:07 - 00002666 _____ () C:\Windows\Tasks\HQ-Video-Profession-1.3-firefoxinstaller.job 2014-02-19 21:50 - 2014-02-21 17:28 - 00000000 ____D () C:\Program Files (x86)\Uniblue 2014-02-19 21:50 - 2014-02-21 14:23 - 00000000 ____D () C:\Program Files (x86)\HQ-Video-Profession-1.3 2014-02-19 21:50 - 2014-02-21 03:00 - 00000282 _____ () C:\Windows\Tasks\SpeedUpMyPC Maintenance.job 2014-02-19 21:50 - 2014-02-19 21:50 - 00003238 _____ () C:\Windows\System32\Tasks\SpeedUpMyPC Maintenance 2014-02-19 21:50 - 2014-02-19 21:50 - 00002526 _____ () C:\Windows\System32\Tasks\SpeedUpMyPC Startup 2014-02-19 21:50 - 2014-02-19 21:50 - 00001169 _____ () C:\Users\Public\Desktop\SpeedUpMyPC.lnk 2014-02-19 21:50 - 2014-02-19 21:50 - 00001117 _____ () C:\Users\Public\Desktop\NewPlayer.lnk 2014-02-19 21:49 - 2014-02-19 21:50 - 00000000 ____D () C:\Program Files (x86)\NewPlayer 2014-02-19 21:49 - 2014-02-19 21:49 - 00001874 _____ () C:\Users\Caveman\Desktop\Configure VO Package.lnk 2014-02-19 21:49 - 2014-02-19 21:49 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\VOPackage 2014-02-19 21:32 - 2014-02-19 21:32 - 00342568 _____ () C:\Users\Caveman\Downloads\Player.exe 2014-02-19 21:29 - 2014-02-19 21:29 - 02278856 _____ () C:\Users\Caveman\Downloads\avira_pc_cleaner_de(1).exe 2014-02-19 21:29 - 2014-02-19 21:29 - 00002042 _____ () C:\Users\Caveman\Desktop\Entfernen des Avira PC Cleaners.lnk 2014-02-19 21:29 - 2014-02-19 21:29 - 00001986 _____ () C:\Users\Caveman\Desktop\Avira PC Cleaner.lnk 2014-02-19 21:28 - 2014-02-19 21:29 - 02278856 _____ () C:\Users\Caveman\Downloads\avira_pc_cleaner_de.exe 2014-02-19 00:27 - 2014-02-19 00:27 - 00000000 ____D () C:\Users\Caveman\Documents\VideoPad Projekte 2014-02-18 23:17 - 2014-02-18 23:17 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Deshaker 2014-02-18 22:52 - 2014-02-21 17:28 - 00000000 ____D () C:\Windows\System32\Tasks\NCH Software 2014-02-18 22:52 - 2014-02-21 17:28 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\NCH Software 2014-02-18 22:52 - 2014-02-21 17:28 - 00000000 ____D () C:\ProgramData\NCH Software 2014-02-18 22:52 - 2014-02-18 22:52 - 00001194 _____ () C:\Users\Public\Desktop\PhotoStage Diashow-Ersteller.lnk 2014-02-18 22:52 - 2014-02-18 22:52 - 00001172 _____ () C:\Users\Public\Desktop\Express Burn.lnk 2014-02-18 22:52 - 2014-02-18 22:52 - 00001144 _____ () C:\Users\Public\Desktop\WavePad Audio-Editor.lnk 2014-02-18 22:52 - 2014-02-18 22:52 - 00001132 _____ () C:\Users\Public\Desktop\Prism Videodatei-Konverter.lnk 2014-02-18 22:52 - 2014-02-18 22:52 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Videoverwandte Programme 2014-02-18 22:52 - 2014-02-18 22:52 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NCH Software Produktpalette 2014-02-18 22:52 - 2014-02-18 22:52 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Audioverwandte Programme 2014-02-18 22:51 - 2014-02-21 17:28 - 00000000 ____D () C:\Program Files (x86)\NCH Software 2014-02-18 22:51 - 2014-02-18 22:51 - 00001160 _____ () C:\Users\Public\Desktop\VideoPad Video-Editor.lnk 2014-02-18 22:50 - 2014-02-18 22:50 - 05699096 _____ (NCH Software) C:\Users\Caveman\Downloads\vppsetup.exe 2014-02-18 20:14 - 2014-02-18 20:14 - 00000000 ____D () C:\Windows\de 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\nl 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\hu 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\fr 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\fi 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\en 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\el 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\da 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\cs 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\bg 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\sv 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\sl 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\sk 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\ru 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\ro 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\pl 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\it 2014-02-18 20:10 - 2014-02-18 20:10 - 00000000 ____D () C:\Windows\uk 2014-02-18 20:10 - 2014-02-18 20:10 - 00000000 ____D () C:\Windows\tr 2014-02-18 19:43 - 2014-02-18 19:43 - 00000000 ____D () C:\Program Files\Windows Live 2014-02-18 19:43 - 2013-02-05 22:06 - 00057840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fssfltr.sys 2014-02-18 19:37 - 2014-02-18 19:37 - 00000000 ___RD () C:\Users\Caveman\SkyDrive 2014-02-18 19:37 - 2014-02-18 19:37 - 00000000 ____D () C:\ProgramData\Microsoft SkyDrive 2014-02-18 19:37 - 2014-02-18 19:37 - 00000000 ____D () C:\Program Files (x86)\Microsoft SkyDrive 2014-02-18 19:27 - 2014-02-18 21:42 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Windows Live 2014-02-18 19:27 - 2014-02-18 19:27 - 01245168 _____ (Microsoft Corporation) C:\Users\Caveman\Downloads\windows-live-movie-maker_18116.exe 2014-02-18 18:54 - 2014-02-21 18:08 - 00001973 _____ () C:\Users\Caveman\Desktop\Sync Folder.lnk 2014-02-18 18:54 - 2014-02-21 18:06 - 00000000 ____D () C:\Users\Caveman\AppData\Local\BrowserSafeguard 2014-02-18 18:53 - 2014-02-21 18:08 - 00000000 ____D () C:\Program Files (x86)\MyPC Backup 2014-02-18 18:53 - 2014-02-21 18:06 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup 2014-02-18 18:53 - 2014-02-18 18:58 - 00000000 ____D () C:\Users\Caveman\AppData\Local\cache 2014-02-18 18:53 - 2014-02-18 18:53 - 00001091 _____ () C:\Users\Caveman\Desktop\MyPC Backup.lnk 2014-02-18 18:53 - 2014-02-18 18:53 - 00000000 ____D () C:\Users\Caveman\.android 2014-02-18 18:52 - 2014-02-21 17:28 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Mobogenie 2014-02-18 18:52 - 2014-02-18 18:52 - 00000000 _____ () C:\Users\Caveman\daemonprocess.txt 2014-02-18 18:50 - 2014-02-21 17:29 - 00000000 ____D () C:\Program Files (x86)\EnhanceTronic 2014-02-18 18:49 - 2014-02-21 18:13 - 00000000 ____D () C:\Users\Caveman\AppData\Local\MovieMode 2014-02-18 18:47 - 2014-02-18 18:47 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\RealNetworks 2014-02-18 18:47 - 2014-02-18 18:47 - 00000000 ____D () C:\ProgramData\MovieMode 2014-02-18 18:46 - 2014-02-18 18:46 - 00001268 _____ () C:\Users\Public\Desktop\RealPlayer.lnk 2014-02-18 18:46 - 2014-02-18 18:46 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Real 2014-02-18 18:46 - 2014-02-18 18:46 - 00000000 ____D () C:\Program Files (x86)\RealNetworks 2014-02-18 18:45 - 2014-02-18 18:45 - 00000000 ____D () C:\ProgramData\RealNetworks 2014-02-18 18:44 - 2014-02-18 18:44 - 00272896 _____ (Progressive Networks) C:\Windows\SysWOW64\pncrt.dll 2014-02-18 18:44 - 2014-02-18 18:44 - 00201872 _____ (RealNetworks, Inc.) C:\Windows\SysWOW64\rmoc3260.dll 2014-02-18 18:44 - 2014-02-18 18:44 - 00006656 _____ (RealNetworks, Inc.) C:\Windows\SysWOW64\pndx5016.dll 2014-02-18 18:44 - 2014-02-18 18:44 - 00005632 _____ (RealNetworks, Inc.) C:\Windows\SysWOW64\pndx5032.dll 2014-02-18 18:43 - 2014-02-18 18:45 - 00000000 ____D () C:\Program Files (x86)\Real 2014-02-18 18:42 - 2014-02-18 18:51 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Real 2014-02-18 18:42 - 2014-02-18 18:45 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Google 2014-02-18 18:41 - 2014-02-19 14:30 - 00000000 ____D () C:\Program Files (x86)\Google 2014-02-18 18:41 - 2014-02-18 18:51 - 00000000 ____D () C:\ProgramData\Real 2014-02-18 18:40 - 2014-02-18 18:40 - 00553768 _____ (Fusion Install ) C:\Users\Caveman\Downloads\Setup(2).exe 2014-02-18 18:38 - 2014-02-18 18:38 - 00553768 _____ (Fusion Install ) C:\Users\Caveman\Downloads\Setup(1).exe 2014-02-18 18:36 - 2014-02-18 18:36 - 00553768 _____ (Fusion Install ) C:\Users\Caveman\Downloads\Setup.exe 2014-02-18 16:20 - 2014-02-18 16:20 - 00347816 _____ (Microsoft Corporation) C:\Users\Caveman\Downloads\MicrosoftFixit.Codec.RNP.34316163822502393.7.1.Run.exe 2014-02-18 14:39 - 2014-02-18 14:51 - 00001229 _____ () C:\Users\Caveman\Desktop\Amazon Cloud Player.lnk 2014-02-18 14:38 - 2014-02-18 14:52 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Amazon Cloud Player 2014-02-18 14:38 - 2014-02-18 14:38 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon Cloud Player 2014-02-18 14:36 - 2014-02-18 14:37 - 36160080 _____ (Amazon) C:\Users\Caveman\Downloads\AmazonCloudPlayerInstaller_422.exe 2014-02-17 07:08 - 2014-02-17 07:08 - 00283288 _____ () C:\Windows\Minidump\021714-39390-01.dmp 2014-02-16 19:53 - 2014-02-17 06:43 - 00000000 ____D () C:\Users\Caveman\Desktop\Ausdrucken 2014-02-15 08:54 - 2014-02-20 12:08 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-14 01:44 - 2013-12-21 10:53 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-02-14 01:44 - 2013-12-21 09:56 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-02-14 01:43 - 2014-02-06 13:16 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-02-14 01:43 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-02-14 01:43 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-02-14 01:43 - 2014-02-06 12:12 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-02-14 01:43 - 2014-02-06 12:07 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-02-14 01:43 - 2014-02-06 12:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-02-14 01:43 - 2014-02-06 11:57 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-02-14 01:43 - 2014-02-06 11:56 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-02-14 01:43 - 2014-02-06 11:52 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-02-14 01:43 - 2014-02-06 11:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-02-14 01:43 - 2014-02-06 11:48 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-02-14 01:43 - 2014-02-06 11:48 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-02-14 01:43 - 2014-02-06 11:32 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-02-14 01:43 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-02-14 01:43 - 2014-02-06 11:17 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-02-14 01:43 - 2014-02-06 11:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-02-14 01:43 - 2014-02-06 11:00 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-02-14 01:43 - 2014-02-06 10:57 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-02-14 01:43 - 2014-02-06 10:57 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-02-14 01:43 - 2014-02-06 10:52 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-02-14 01:43 - 2014-02-06 10:52 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-02-14 01:43 - 2014-02-06 10:49 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-02-14 01:43 - 2014-02-06 10:47 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-02-14 01:43 - 2014-02-06 10:46 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-02-14 01:43 - 2014-02-06 10:25 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-02-14 01:43 - 2014-02-06 10:24 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-02-14 01:43 - 2014-02-06 10:13 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-02-14 01:43 - 2014-02-06 10:09 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-02-14 01:43 - 2014-02-06 09:55 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-02-14 01:43 - 2014-02-06 09:41 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-02-14 01:43 - 2014-02-06 09:40 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-02-14 01:43 - 2014-02-06 09:36 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-02-14 01:43 - 2014-02-06 09:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-02-14 01:42 - 2014-02-06 11:38 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-02-14 01:42 - 2014-02-06 11:11 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-02-14 01:42 - 2014-02-06 10:50 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-02-14 01:42 - 2014-02-06 10:25 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-02-14 01:42 - 2014-02-06 10:22 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-02-14 01:42 - 2014-02-06 10:03 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-02-13 23:37 - 2014-01-01 00:05 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls 2014-02-13 23:37 - 2014-01-01 00:04 - 00420008 _____ () C:\Windows\system32\locale.nls 2014-02-13 23:37 - 2013-12-06 03:30 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-02-13 23:37 - 2013-12-06 03:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-02-13 23:37 - 2013-12-06 03:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-02-13 23:37 - 2013-12-06 03:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-02-13 23:36 - 2013-12-25 00:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-02-13 23:36 - 2013-12-24 23:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-02-13 23:36 - 2013-12-04 03:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll 2014-02-13 23:36 - 2013-12-04 03:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll 2014-02-13 23:36 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll 2014-02-13 23:36 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll 2014-02-13 23:36 - 2013-12-04 03:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll 2014-02-13 23:36 - 2013-12-04 03:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe 2014-02-13 23:36 - 2013-12-04 03:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe 2014-02-13 23:36 - 2013-12-04 03:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe 2014-02-13 23:36 - 2013-12-04 03:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe 2014-02-13 23:36 - 2013-12-04 03:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll 2014-02-13 23:36 - 2013-12-04 03:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll 2014-02-13 23:36 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll 2014-02-13 23:36 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll 2014-02-13 23:36 - 2013-12-04 03:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll 2014-02-13 23:36 - 2013-12-04 02:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe 2014-02-13 23:36 - 2013-12-04 02:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe 2014-02-13 23:36 - 2013-12-04 02:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe 2014-02-13 23:36 - 2013-12-04 02:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe 2014-02-13 23:36 - 2013-11-26 09:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2014-02-13 23:36 - 2013-11-22 23:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2014-02-11 00:32 - 2014-02-11 00:32 - 01152656 _____ () C:\Windows\SysWOW64\MovieMode.48CA2AEFA22D.dll 2014-02-09 08:06 - 2014-02-18 18:17 - 00000000 ____D () C:\Users\Caveman\Desktop\Alte Firefox-Daten 2014-02-08 09:53 - 2014-02-08 09:53 - 00280208 _____ () C:\Windows\Minidump\020814-34445-01.dmp 2014-02-07 16:33 - 2014-02-07 16:33 - 00280808 _____ () C:\Windows\Minidump\020714-27924-01.dmp 2014-02-05 21:11 - 2014-02-05 21:13 - 126220554 _____ () C:\Users\Caveman\Downloads\E2010_PC_v4.zip 2014-02-02 15:10 - 2014-02-02 15:10 - 00283288 _____ () C:\Windows\Minidump\020214-24741-01.dmp 2014-01-31 20:34 - 2014-01-31 20:34 - 00283288 _____ () C:\Windows\Minidump\013114-24960-01.dmp 2014-01-29 15:02 - 2014-01-29 15:02 - 00262144 _____ () C:\Windows\Minidump\012914-63071-01.dmp 2014-01-26 18:53 - 2014-01-26 18:53 - 00280664 _____ () C:\Windows\Minidump\012614-31559-01.dmp 2014-01-23 14:52 - 2014-01-23 14:53 - 00281848 _____ () C:\Windows\Minidump\012314-65660-01.dmp ==================== One Month Modified Files and Folders ======= 2014-02-21 18:15 - 2014-02-19 22:28 - 00027866 _____ () C:\Users\Caveman\Desktop\FRST.txt 2014-02-21 18:14 - 2014-02-19 22:28 - 00000000 ____D () C:\FRST 2014-02-21 18:13 - 2014-02-21 18:13 - 02153984 _____ (Farbar) C:\Users\Caveman\Desktop\FRST64.exe 2014-02-21 18:13 - 2014-02-21 18:13 - 00000000 ____D () C:\Users\Caveman\Desktop\FRST-OlderVersion 2014-02-21 18:13 - 2014-02-18 18:49 - 00000000 ____D () C:\Users\Caveman\AppData\Local\MovieMode 2014-02-21 18:13 - 2012-05-22 21:54 - 01659467 _____ () C:\Windows\WindowsUpdate.log 2014-02-21 18:11 - 2013-01-26 08:32 - 00000000 ____D () C:\ProgramData\Origin 2014-02-21 18:09 - 2014-02-19 21:50 - 00000276 _____ () C:\Windows\Tasks\SpeedUpMyPC Startup.job 2014-02-21 18:08 - 2014-02-20 14:47 - 00003358 _____ () C:\Windows\System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-3184525795-2871511248-3231849656-1000 2014-02-21 18:08 - 2014-02-20 11:34 - 00003228 _____ () C:\Windows\System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-3184525795-2871511248-3231849656-1000 2014-02-21 18:08 - 2014-02-19 21:51 - 00001584 _____ () C:\Windows\Tasks\HQ-Video-Profession-1.3-updater.job 2014-02-21 18:08 - 2014-02-19 21:50 - 00003144 _____ () C:\Windows\Tasks\HQ-Video-Profession-1.3-chromeinstaller.job 2014-02-21 18:08 - 2014-02-18 18:54 - 00001973 _____ () C:\Users\Caveman\Desktop\Sync Folder.lnk 2014-02-21 18:08 - 2014-02-18 18:53 - 00000000 ____D () C:\Program Files (x86)\MyPC Backup 2014-02-21 18:07 - 2014-02-19 21:51 - 00001540 _____ () C:\Windows\Tasks\HQ-Video-Profession-1.3-codedownloader.job 2014-02-21 18:07 - 2014-02-19 21:51 - 00001438 _____ () C:\Windows\Tasks\HQ-Video-Profession-1.3-enabler.job 2014-02-21 18:07 - 2014-02-19 21:50 - 00002666 _____ () C:\Windows\Tasks\HQ-Video-Profession-1.3-firefoxinstaller.job 2014-02-21 18:07 - 2012-07-17 17:38 - 00000000 ____D () C:\Users\Caveman 2014-02-21 18:07 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-02-21 18:07 - 2009-07-14 05:51 - 00098328 _____ () C:\Windows\setupact.log 2014-02-21 18:06 - 2014-02-18 18:54 - 00000000 ____D () C:\Users\Caveman\AppData\Local\BrowserSafeguard 2014-02-21 18:06 - 2014-02-18 18:53 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup 2014-02-21 18:06 - 2013-12-08 18:07 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Mozilla 2014-02-21 18:06 - 2013-11-28 13:46 - 00000000 ____D () C:\ProgramData\Netzmanager 2014-02-21 18:06 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF 2014-02-21 18:06 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\registration 2014-02-21 17:45 - 2014-02-21 17:45 - 00015815 _____ () C:\Users\Caveman\Desktop\JRT.txt 2014-02-21 17:38 - 2009-07-14 05:45 - 00020992 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-02-21 17:38 - 2009-07-14 05:45 - 00020992 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-02-21 17:36 - 2014-02-21 17:36 - 00000000 ____D () C:\Windows\ERUNT 2014-02-21 17:35 - 2014-02-21 17:34 - 01037734 _____ (Thisisu) C:\Users\Caveman\Desktop\JRT.exe 2014-02-21 17:29 - 2014-02-19 21:51 - 00000000 ____D () C:\ProgramData\WPM 2014-02-21 17:29 - 2014-02-19 21:51 - 00000000 ____D () C:\ProgramData\IePluginService 2014-02-21 17:29 - 2014-02-18 18:50 - 00000000 ____D () C:\Program Files (x86)\EnhanceTronic 2014-02-21 17:28 - 2014-02-19 22:10 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup 2014-02-21 17:28 - 2014-02-19 22:10 - 00000000 ____D () C:\Program Files (x86)\AnyProtectEx 2014-02-21 17:28 - 2014-02-19 21:51 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\SupTab 2014-02-21 17:28 - 2014-02-19 21:51 - 00000000 ____D () C:\Program Files (x86)\SupTab 2014-02-21 17:28 - 2014-02-19 21:50 - 00000000 ____D () C:\Program Files (x86)\Uniblue 2014-02-21 17:28 - 2014-02-18 22:52 - 00000000 ____D () C:\Windows\System32\Tasks\NCH Software 2014-02-21 17:28 - 2014-02-18 22:52 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\NCH Software 2014-02-21 17:28 - 2014-02-18 22:52 - 00000000 ____D () C:\ProgramData\NCH Software 2014-02-21 17:28 - 2014-02-18 22:51 - 00000000 ____D () C:\Program Files (x86)\NCH Software 2014-02-21 17:28 - 2014-02-18 18:52 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Mobogenie 2014-02-21 17:28 - 2012-07-17 17:42 - 00000000 ___RD () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-02-21 17:28 - 2012-05-22 21:58 - 00000000 ____D () C:\ProgramData\Sony Corporation 2014-02-21 17:16 - 2014-02-21 17:16 - 00036062 _____ () C:\Users\Caveman\Desktop\AdwCleaner[S0].txt 2014-02-21 17:09 - 2014-02-21 14:04 - 00000000 ____D () C:\AdwCleaner 2014-02-21 14:27 - 2013-12-22 08:10 - 00000000 ____D () C:\Program Files (x86)\Origin 2014-02-21 14:23 - 2014-02-19 21:50 - 00000000 ____D () C:\Program Files (x86)\HQ-Video-Profession-1.3 2014-02-21 14:21 - 2014-02-20 12:29 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2014-02-21 14:21 - 2012-08-01 10:54 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\SoftGrid Client 2014-02-21 03:00 - 2014-02-19 21:50 - 00000282 _____ () C:\Windows\Tasks\SpeedUpMyPC Maintenance.job 2014-02-21 02:59 - 2012-05-22 22:53 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-02-20 22:59 - 2014-02-20 22:52 - 17858952 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2014-02-20 22:59 - 2012-05-22 22:53 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-02-20 22:59 - 2012-05-22 22:53 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-02-20 22:59 - 2012-05-22 22:53 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-02-20 22:56 - 2014-02-20 12:28 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-02-20 22:56 - 2014-02-20 12:28 - 00000000 ____D () C:\Users\Caveman\Desktop\mbar 2014-02-20 22:52 - 2009-07-14 06:32 - 00000000 ____D () C:\Windows\system32\FxsTmp 2014-02-20 14:50 - 2014-02-20 12:29 - 00119000 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-02-20 14:46 - 2012-05-22 22:28 - 00000000 ____D () C:\ProgramData\McAfee 2014-02-20 14:46 - 2010-11-21 04:47 - 00023044 _____ () C:\Windows\PFRO.log 2014-02-20 14:44 - 2012-07-17 17:41 - 00000000 ____D () C:\Windows\pss 2014-02-20 12:29 - 2014-02-20 12:29 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-02-20 12:26 - 2014-02-20 12:26 - 12589848 _____ (Malwarebytes Corp.) C:\Users\Caveman\Desktop\mbar-1.07.0.1009.exe 2014-02-20 12:24 - 2012-05-22 22:48 - 00697534 _____ () C:\Windows\system32\perfh007.dat 2014-02-20 12:24 - 2012-05-22 22:48 - 00148540 _____ () C:\Windows\system32\perfc007.dat 2014-02-20 12:24 - 2009-07-14 06:13 - 01614956 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-02-20 12:23 - 2014-02-20 12:23 - 00000000 ____D () C:\Program Files\McAfee 2014-02-20 12:11 - 2012-05-22 22:29 - 00000000 ____D () C:\Program Files\Common Files\McAfee 2014-02-20 12:08 - 2014-02-15 08:54 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-20 12:06 - 2014-01-15 10:01 - 00000000 ____D () C:\Users\Caveman\Documents\McAfee-Tresore 2014-02-20 11:36 - 2012-07-17 17:38 - 00069584 _____ () C:\Users\Caveman\AppData\Local\GDIPFONTCACHEV1.DAT 2014-02-20 03:09 - 2014-02-19 22:30 - 00044407 _____ () C:\Users\Caveman\Desktop\Addition.txt 2014-02-19 22:10 - 2014-02-19 22:10 - 00825208 _____ (AnyProtect.com) C:\Users\Caveman\AppData\Local\nsvE706.tmp 2014-02-19 22:10 - 2014-02-19 22:10 - 00001049 _____ () C:\Users\Caveman\Desktop\AnyProtect.lnk 2014-02-19 22:00 - 2014-02-19 22:00 - 00001104 _____ () C:\Users\Caveman\Desktop\Continue VuuPC Installation.lnk 2014-02-19 21:51 - 2014-02-19 21:51 - 00004614 _____ () C:\Windows\System32\Tasks\HQ-Video-Profession-1.3-updater 2014-02-19 21:51 - 2014-02-19 21:51 - 00004570 _____ () C:\Windows\System32\Tasks\HQ-Video-Profession-1.3-codedownloader 2014-02-19 21:51 - 2014-02-19 21:51 - 00004468 _____ () C:\Windows\System32\Tasks\HQ-Video-Profession-1.3-enabler 2014-02-19 21:51 - 2014-02-19 21:51 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\awesomehp 2014-02-19 21:51 - 2014-02-19 21:51 - 00000000 ____D () C:\Users\Caveman\AppData\Local\newplayer 2014-02-19 21:50 - 2014-02-19 21:50 - 00003238 _____ () C:\Windows\System32\Tasks\SpeedUpMyPC Maintenance 2014-02-19 21:50 - 2014-02-19 21:50 - 00002526 _____ () C:\Windows\System32\Tasks\SpeedUpMyPC Startup 2014-02-19 21:50 - 2014-02-19 21:50 - 00001169 _____ () C:\Users\Public\Desktop\SpeedUpMyPC.lnk 2014-02-19 21:50 - 2014-02-19 21:50 - 00001117 _____ () C:\Users\Public\Desktop\NewPlayer.lnk 2014-02-19 21:50 - 2014-02-19 21:49 - 00000000 ____D () C:\Program Files (x86)\NewPlayer 2014-02-19 21:50 - 2013-12-08 18:07 - 00001367 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-02-19 21:50 - 2012-07-17 17:42 - 00001653 _____ () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-02-19 21:49 - 2014-02-19 21:49 - 00001874 _____ () C:\Users\Caveman\Desktop\Configure VO Package.lnk 2014-02-19 21:49 - 2014-02-19 21:49 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\VOPackage 2014-02-19 21:32 - 2014-02-19 21:32 - 00342568 _____ () C:\Users\Caveman\Downloads\Player.exe 2014-02-19 21:29 - 2014-02-19 21:29 - 02278856 _____ () C:\Users\Caveman\Downloads\avira_pc_cleaner_de(1).exe 2014-02-19 21:29 - 2014-02-19 21:29 - 00002042 _____ () C:\Users\Caveman\Desktop\Entfernen des Avira PC Cleaners.lnk 2014-02-19 21:29 - 2014-02-19 21:29 - 00001986 _____ () C:\Users\Caveman\Desktop\Avira PC Cleaner.lnk 2014-02-19 21:29 - 2014-02-19 21:28 - 02278856 _____ () C:\Users\Caveman\Downloads\avira_pc_cleaner_de.exe 2014-02-19 14:40 - 2012-05-22 22:09 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-02-19 14:30 - 2014-02-18 18:41 - 00000000 ____D () C:\Program Files (x86)\Google 2014-02-19 06:49 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache 2014-02-19 00:27 - 2014-02-19 00:27 - 00000000 ____D () C:\Users\Caveman\Documents\VideoPad Projekte 2014-02-18 23:17 - 2014-02-18 23:17 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Deshaker 2014-02-18 22:52 - 2014-02-18 22:52 - 00001194 _____ () C:\Users\Public\Desktop\PhotoStage Diashow-Ersteller.lnk 2014-02-18 22:52 - 2014-02-18 22:52 - 00001172 _____ () C:\Users\Public\Desktop\Express Burn.lnk 2014-02-18 22:52 - 2014-02-18 22:52 - 00001144 _____ () C:\Users\Public\Desktop\WavePad Audio-Editor.lnk 2014-02-18 22:52 - 2014-02-18 22:52 - 00001132 _____ () C:\Users\Public\Desktop\Prism Videodatei-Konverter.lnk 2014-02-18 22:52 - 2014-02-18 22:52 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Videoverwandte Programme 2014-02-18 22:52 - 2014-02-18 22:52 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NCH Software Produktpalette 2014-02-18 22:52 - 2014-02-18 22:52 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Audioverwandte Programme 2014-02-18 22:51 - 2014-02-18 22:51 - 00001160 _____ () C:\Users\Public\Desktop\VideoPad Video-Editor.lnk 2014-02-18 22:50 - 2014-02-18 22:50 - 05699096 _____ (NCH Software) C:\Users\Caveman\Downloads\vppsetup.exe 2014-02-18 21:42 - 2014-02-18 19:27 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Windows Live 2014-02-18 20:14 - 2014-02-18 20:14 - 00000000 ____D () C:\Windows\de 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\nl 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\hu 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\fr 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\fi 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\en 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\el 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\da 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\cs 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\bg 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\sv 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\sl 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\sk 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\ru 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\ro 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\pl 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\it 2014-02-18 20:10 - 2014-02-18 20:10 - 00000000 ____D () C:\Windows\uk 2014-02-18 20:10 - 2014-02-18 20:10 - 00000000 ____D () C:\Windows\tr 2014-02-18 19:44 - 2012-05-23 00:09 - 00000000 ____D () C:\Program Files (x86)\Windows Live 2014-02-18 19:43 - 2014-02-18 19:43 - 00000000 ____D () C:\Program Files\Windows Live 2014-02-18 19:42 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2014-02-18 19:39 - 2012-05-22 23:25 - 00097761 _____ () C:\Windows\DirectX.log 2014-02-18 19:37 - 2014-02-18 19:37 - 00000000 ___RD () C:\Users\Caveman\SkyDrive 2014-02-18 19:37 - 2014-02-18 19:37 - 00000000 ____D () C:\ProgramData\Microsoft SkyDrive 2014-02-18 19:37 - 2014-02-18 19:37 - 00000000 ____D () C:\Program Files (x86)\Microsoft SkyDrive 2014-02-18 19:27 - 2014-02-18 19:27 - 01245168 _____ (Microsoft Corporation) C:\Users\Caveman\Downloads\windows-live-movie-maker_18116.exe 2014-02-18 18:58 - 2014-02-18 18:53 - 00000000 ____D () C:\Users\Caveman\AppData\Local\cache 2014-02-18 18:53 - 2014-02-18 18:53 - 00001091 _____ () C:\Users\Caveman\Desktop\MyPC Backup.lnk 2014-02-18 18:53 - 2014-02-18 18:53 - 00000000 ____D () C:\Users\Caveman\.android 2014-02-18 18:52 - 2014-02-18 18:52 - 00000000 _____ () C:\Users\Caveman\daemonprocess.txt 2014-02-18 18:51 - 2014-02-18 18:42 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Real 2014-02-18 18:51 - 2014-02-18 18:41 - 00000000 ____D () C:\ProgramData\Real 2014-02-18 18:47 - 2014-02-18 18:47 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\RealNetworks 2014-02-18 18:47 - 2014-02-18 18:47 - 00000000 ____D () C:\ProgramData\MovieMode 2014-02-18 18:46 - 2014-02-18 18:46 - 00001268 _____ () C:\Users\Public\Desktop\RealPlayer.lnk 2014-02-18 18:46 - 2014-02-18 18:46 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Real 2014-02-18 18:46 - 2014-02-18 18:46 - 00000000 ____D () C:\Program Files (x86)\RealNetworks 2014-02-18 18:45 - 2014-02-18 18:45 - 00000000 ____D () C:\ProgramData\RealNetworks 2014-02-18 18:45 - 2014-02-18 18:43 - 00000000 ____D () C:\Program Files (x86)\Real 2014-02-18 18:45 - 2014-02-18 18:42 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Google 2014-02-18 18:44 - 2014-02-18 18:44 - 00272896 _____ (Progressive Networks) C:\Windows\SysWOW64\pncrt.dll 2014-02-18 18:44 - 2014-02-18 18:44 - 00201872 _____ (RealNetworks, Inc.) C:\Windows\SysWOW64\rmoc3260.dll 2014-02-18 18:44 - 2014-02-18 18:44 - 00006656 _____ (RealNetworks, Inc.) C:\Windows\SysWOW64\pndx5016.dll 2014-02-18 18:44 - 2014-02-18 18:44 - 00005632 _____ (RealNetworks, Inc.) C:\Windows\SysWOW64\pndx5032.dll 2014-02-18 18:44 - 2003-03-18 19:14 - 00499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll 2014-02-18 18:44 - 2003-02-21 03:42 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll 2014-02-18 18:40 - 2014-02-18 18:40 - 00553768 _____ (Fusion Install ) C:\Users\Caveman\Downloads\Setup(2).exe 2014-02-18 18:38 - 2014-02-18 18:38 - 00553768 _____ (Fusion Install ) C:\Users\Caveman\Downloads\Setup(1).exe 2014-02-18 18:36 - 2014-02-18 18:36 - 00553768 _____ (Fusion Install ) C:\Users\Caveman\Downloads\Setup.exe 2014-02-18 18:17 - 2014-02-09 08:06 - 00000000 ____D () C:\Users\Caveman\Desktop\Alte Firefox-Daten 2014-02-18 16:20 - 2014-02-18 16:20 - 00347816 _____ (Microsoft Corporation) C:\Users\Caveman\Downloads\MicrosoftFixit.Codec.RNP.34316163822502393.7.1.Run.exe 2014-02-18 15:08 - 2013-09-29 00:51 - 00000000 ____D () C:\Users\Caveman\Desktop\Projekt F 2014-02-18 14:52 - 2014-02-18 14:38 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Amazon Cloud Player 2014-02-18 14:51 - 2014-02-18 14:39 - 00001229 _____ () C:\Users\Caveman\Desktop\Amazon Cloud Player.lnk 2014-02-18 14:38 - 2014-02-18 14:38 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon Cloud Player 2014-02-18 14:37 - 2014-02-18 14:36 - 36160080 _____ (Amazon) C:\Users\Caveman\Downloads\AmazonCloudPlayerInstaller_422.exe 2014-02-18 03:05 - 2014-01-05 21:38 - 00000000 ____D () C:\Windows\system32\MRT 2014-02-18 03:01 - 2014-01-05 21:38 - 88567024 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-02-17 07:08 - 2014-02-17 07:08 - 00283288 _____ () C:\Windows\Minidump\021714-39390-01.dmp 2014-02-17 07:08 - 2014-01-09 15:14 - 525611570 _____ () C:\Windows\MEMORY.DMP 2014-02-17 07:08 - 2014-01-09 15:14 - 00000000 ____D () C:\Windows\Minidump 2014-02-17 06:43 - 2014-02-16 19:53 - 00000000 ____D () C:\Users\Caveman\Desktop\Ausdrucken 2014-02-16 18:29 - 2013-12-08 18:07 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-02-14 15:09 - 2012-07-17 17:43 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Adobe 2014-02-14 15:01 - 2014-02-20 12:04 - 00000426 _____ () C:\AVScanner.ini 2014-02-14 01:58 - 2011-02-11 00:03 - 01592786 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-02-12 19:26 - 2013-06-25 06:32 - 00000000 ____D () C:\Users\Caveman\Desktop\KIT 2014-02-11 00:32 - 2014-02-11 00:32 - 01152656 _____ () C:\Windows\SysWOW64\MovieMode.48CA2AEFA22D.dll 2014-02-08 09:53 - 2014-02-08 09:53 - 00280208 _____ () C:\Windows\Minidump\020814-34445-01.dmp 2014-02-07 19:45 - 2013-07-31 00:58 - 00000000 ____D () C:\Users\Caveman\Desktop\AAAAAAAAAAA 2014-02-07 16:33 - 2014-02-07 16:33 - 00280808 _____ () C:\Windows\Minidump\020714-27924-01.dmp 2014-02-06 13:16 - 2014-02-14 01:43 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-02-06 12:30 - 2014-02-14 01:43 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-02-06 12:30 - 2014-02-14 01:43 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-02-06 12:12 - 2014-02-14 01:43 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-02-06 12:07 - 2014-02-14 01:43 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-02-06 12:06 - 2014-02-14 01:43 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-02-06 11:57 - 2014-02-14 01:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-02-06 11:56 - 2014-02-14 01:43 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-02-06 11:52 - 2014-02-14 01:43 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-02-06 11:49 - 2014-02-14 01:43 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-02-06 11:48 - 2014-02-14 01:43 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-02-06 11:48 - 2014-02-14 01:43 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-02-06 11:38 - 2014-02-14 01:42 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-02-06 11:32 - 2014-02-14 01:43 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-02-06 11:20 - 2014-02-14 01:43 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-02-06 11:17 - 2014-02-14 01:43 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-02-06 11:11 - 2014-02-14 01:42 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-02-06 11:01 - 2014-02-14 01:43 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-02-06 11:00 - 2014-02-14 01:43 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-02-06 10:57 - 2014-02-14 01:43 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-02-06 10:57 - 2014-02-14 01:43 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-02-06 10:52 - 2014-02-14 01:43 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-02-06 10:52 - 2014-02-14 01:43 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-02-06 10:50 - 2014-02-14 01:42 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-02-06 10:49 - 2014-02-14 01:43 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-02-06 10:47 - 2014-02-14 01:43 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-02-06 10:46 - 2014-02-14 01:43 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-02-06 10:25 - 2014-02-14 01:43 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-02-06 10:25 - 2014-02-14 01:42 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-02-06 10:24 - 2014-02-14 01:43 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-02-06 10:22 - 2014-02-14 01:42 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-02-06 10:13 - 2014-02-14 01:43 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-02-06 10:09 - 2014-02-14 01:43 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-02-06 10:03 - 2014-02-14 01:42 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-02-06 09:55 - 2014-02-14 01:43 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-02-06 09:41 - 2014-02-14 01:43 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-02-06 09:40 - 2014-02-14 01:43 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-02-06 09:36 - 2014-02-14 01:43 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-02-06 09:34 - 2014-02-14 01:43 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-02-05 21:13 - 2014-02-05 21:11 - 126220554 _____ () C:\Users\Caveman\Downloads\E2010_PC_v4.zip 2014-02-02 15:10 - 2014-02-02 15:10 - 00283288 _____ () C:\Windows\Minidump\020214-24741-01.dmp 2014-01-31 20:34 - 2014-01-31 20:34 - 00283288 _____ () C:\Windows\Minidump\013114-24960-01.dmp 2014-01-29 15:02 - 2014-01-29 15:02 - 00262144 _____ () C:\Windows\Minidump\012914-63071-01.dmp 2014-01-26 18:53 - 2014-01-26 18:53 - 00280664 _____ () C:\Windows\Minidump\012614-31559-01.dmp 2014-01-25 22:52 - 2009-07-14 06:08 - 00032640 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-01-23 14:53 - 2014-01-23 14:52 - 00281848 _____ () C:\Windows\Minidump\012314-65660-01.dmp 2014-01-23 08:31 - 2013-12-13 22:11 - 00000000 ____D () C:\Users\Caveman\Desktop\OK Some content of TEMP: ==================== C:\Users\Caveman\AppData\Local\Temp\0187171392895405mcinst.exe C:\Users\Caveman\AppData\Local\Temp\aacenc3.exe C:\Users\Caveman\AppData\Local\Temp\avgnt.exe C:\Users\Caveman\AppData\Local\Temp\BackupSetup.exe C:\Users\Caveman\AppData\Local\Temp\burnsetup.exe C:\Users\Caveman\AppData\Local\Temp\deshaker.exe C:\Users\Caveman\AppData\Local\Temp\prismsetup.exe C:\Users\Caveman\AppData\Local\Temp\pstagesetup.exe C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite.dll C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite18500.dll C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite22769.dll C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite30387.dll C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite37222.dll C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite49696.dll C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite53425.dll C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite54514.dll C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite56758.dll C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite65432.dll C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite73874.dll C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite76713.dll C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite80443.dll C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite91516.dll C:\Users\Caveman\AppData\Local\Temp\wpsetup.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-02-19 06:27 ==================== End Of Log ============================ |
21.02.2014, 19:28 | #12 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Awesomehp ist auf meinem Computer Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\awesomehp.xml HKU\S-1-5-21-3184525795-2871511248-3231849656-1000\...\Run: [BrowserSafeguard] - C:\Users\Caveman\AppData\Local\BrowserSafeguard\BrowserSafeguard.exe [418304 2014-02-18] (BrowserSafeguard) HKU\S-1-5-21ProxyEnable: Internet Explorer proxy is enabled. ProxyServer: http=127.0.0.1:49192;https=127.0.0.1:49192 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.awesomehp.com/?type=hp&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.awesomehp.com/?type=hp&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.awesomehp.com/web/?type=ds&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.awesomehp.com/?type=hp&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.awesomehp.com/?type=hp&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.awesomehp.com/web/?type=ds&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.awesomehp.com/web/?type=ds&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.awesomehp.com/?type=hp&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.awesomehp.com/?type=hp&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.awesomehp.com/web/?type=ds&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX&q={searchTerms} StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://www.awesomehp.com/?type=sc&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.awesomehp.com/web/?type=ds&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX&q={searchTerms} SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.awesomehp.com/web/?type=ds&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX&q={searchTerms} SearchScopes: HKLM-x32 - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.awesomehp.com/web/?type=ds&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX&q={searchTerms} SearchScopes: HKLM-x32 - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.awesomehp.com/web/?type=ds&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX&q={searchTerms} SearchScopes: HKCU - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.awesomehp.com/web/?type=ds&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX&q={searchTerms} SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.awesomehp.com/web/?type=ds&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX&q={searchTerms} BHO: HQ-Video-Profession-1.3 - {11111111-1111-1111-1111-110511151178} - C:\Program Files (x86)\HQ-Video-Profession-1.3\HQ-Video-Profession-1.3-bho64.dll (HQ-Video) BHO-x32: HQ-Video-Profession-1.3 - {11111111-1111-1111-1111-110511151178} - C:\Program Files (x86)\HQ-Video-Profession-1.3\HQ-Video-Profession-1.3-bho.dll (HQ-Video) C:\Program Files (x86)\HQ-Video-Profession-1.3 C:\Users\Caveman\AppData\Local\BrowserSafeguard C:\Users\Caveman\AppData\Local\Temp\aacenc3.exe C:\Users\Caveman\AppData\Local\Temp BHO-x32: IETabPage Class - {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} - C:\Program Files (x86)\SupTab\SupTab.dll (Thinknice Co. Limited)\avgnt.exe C:\Program Files (x86)\SupTab BHO-x32: EnhanceTronic - {f530d5e8-9d18-4cba-b7cc-95944f9ebe3d} - C:\Program Files (x86)\EnhanceTronic\EnhanceTronicbho.dll (EnhanceTronic) C:\Program Files (x86)\EnhanceTronic FF DefaultSearchEngine: awesomehp FF SelectedSearchEngine: awesomehp FF Homepage: http://avira.search.ask.com/?tpid=AVIRA-V7&o=APN11074&pf=V7&trgb=ALL&p2=%5EB0Q%5EYYYYYY%5EZF%5EDE&gct=hp&apn_ptnrs=%5EB0Q&apn_dtid=%5EYYYYYY%5EZF%5EDE&apn_dbr=ff_25.0&apn_uid=4F77CA38-0924-4CB2-AD1B-4507CA804779&itbv=12.6.0.1898&doi=2013-12-08&psv= FF StartMenuInternet: FIREFOX.EXE - C:\Program Files (x86)\Mozilla Firefox\firefox.exe http://www.awesomehp.com/?type=sc&ts=1392842979&from=tugs&uid=HitachiXHTS547550A9E384_J2150050EESG2DEESG2DX C:\Users\Caveman\AppData\Local\Temp\BackupSetup.exe C:\Users\Caveman\AppData\Local\Temp\burnsetup.exe C:\Users\Caveman\AppData\Local\Temp\deshaker.exe C:\Users\Caveman\AppData\Local\Temp\prismsetup.exe C:\Users\Caveman\AppData\Local\Temp\pstagesetup.exe C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite.dll C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite18500.dll C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite22769.dll C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite30387.dll C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite37222.dll C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite49696.dll C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite53425.dll C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite54514.dll C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite56758.dll C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite65432.dll C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite73874.dll C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite76713.dll C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite80443.dll C:\Users\Caveman\AppData\Local\Temp\System.Data.SQLite91516.dll C:\Users\Caveman\AppData\Local\Temp\wpsetup.exe C:\Users\Caveman\Downloads\Setup(2).exe C:\Users\Caveman\Downloads\Setup(1).exe C:\Users\Caveman\Downloads\Setup.exe C:\Users\Caveman\AppData\Local\Temp\0187171392895405mcinst.exe C:\ProgramData\IePluginService C:\Users\Caveman\AppData\Roaming\SupTab C:\Program Files (x86)\SupTab C:\Windows\System32\Tasks\HQ-Video-Profession-1.3-updater C:\Windows\System32\Tasks\HQ-Video-Profession-1.3-codedownloader C:\Windows\System32\Tasks\HQ-Video-Profession-1.3-enabler C:\Users\Caveman\AppData\Roaming\awesomehp C:\Users\Caveman\AppData\Local\newplayer C:\Windows\Tasks\SpeedUpMyPC Startup.job C:\Windows\Tasks\HQ-Video-Profession-1.3-chromeinstaller.job C:\Windows\Tasks\HQ-Video-Profession-1.3-firefoxinstaller.job C:\Program Files (x86)\Uniblue C:\Program Files (x86)\HQ-Video-Profession-1.3 C:\Windows\Tasks\HQ-Video-Profession-1.3-updater.job C:\Windows\Tasks\HQ-Video-Profession-1.3-codedownloader.job C:\Windows\Tasks\HQ-Video-Profession-1.3-enabler.job Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
__________________ Logfiles bitte immer in CODE-Tags posten |
22.02.2014, 13:36 | #13 |
| Awesomehp ist auf meinem Computer Fixlog.zip |
22.02.2014, 13:45 | #14 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Awesomehp ist auf meinem Computer Ist das Log zu groß fürsdirekte Posten in CODE-Tags? Mach auch bitte neue FRST Logs. Haken setzen bei additions und dann erst auf Scan klicken
__________________ Logfiles bitte immer in CODE-Tags posten |
22.02.2014, 13:55 | #15 |
| Awesomehp ist auf meinem Computer Genau. Log war viel zu groß. FRS.txt. FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 22-02-2014 01 Ran by Caveman (administrator) on CAVEMAN-CAVEMAN on 22-02-2014 13:50:12 Running from C:\Users\Caveman\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\system32\atiesrxx.exe (AMD) C:\Windows\system32\atieclxx.exe (Cherished Technololgy LIMITED) C:\ProgramData\WPM\wprotectmanager.exe (Microsoft Corporation) C:\Windows\system32\WLANExt.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Just Develop It) C:\Program Files (x86)\MyPC Backup\BackupStack.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (McAfee, Inc.) C:\Windows\system32\mfevtps.exe (GenTechnologies Apps, LLC) C:\ProgramData\MovieMode\MovieModeService.exe (Deutsche Telekom AG) C:\Program Files\Netzmanager\NMInfraIS2\Netzmanager_Service.exe (Sony Corporation) c:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe () C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe () C:\Users\Caveman\AppData\Roaming\VOPackage\VOsrv.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe (Microsoft Corporation) C:\Windows\SysWOW64\DllHost.exe (Microsoft Corporation) C:\Windows\SysWOW64\DllHost.exe (Sony Corporation) C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe (GenTechnologies Apps, LLC) C:\ProgramData\MovieMode\MovieMode.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNService.exe (Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNClient.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe (SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_YATIHVE.EXE () C:\Users\Caveman\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe (PIXELA CORPORATION) C:\Program Files (x86)\PIXELA\Everio MediaBrowser\MBCameraMonitor.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Sony Corporation) C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe (Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe (SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXRCV.exe (SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXSTM.exe (SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe (Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE (Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMgr.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (MyPCBackup.com) C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe (Deutsche Telekom AG) C:\Program Files\Netzmanager\netzmanager.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe (Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (Advanced Micro Devices Inc.) c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Adobe Systems Incorporated) c:\Program Files (x86)\Adobe\Elements 10 Organizer\PhotoshopElementsFileAgent.exe (Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe (Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCPerfService.exe (Sony of America Corporation) C:\Program Files\Sony\VAIO Care\listener.exe (ArcSoft, Inc.) C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe (Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCSystemTray.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCService.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCAgent.exe (Microsoft Corporation) C:\Windows\System32\vds.exe (Sony Corporation) C:\Program Files\Sony\VAIO Update Common\VUAgent.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCAdmin.exe (Sony Corporation) C:\Program Files\Sony\VAIO Improvement\vim.exe (Sony Corporation) C:\Program Files\Sony\VAIO Improvement\vim.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_70.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_70.exe (Microsoft Corporation) C:\Windows\system32\prevhost.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1158248 2012-02-27] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1158248 2012-02-27] (Realtek Semiconductor) HKLM\...\Run: [BTMTrayAgent] - C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll [11406608 2011-12-19] (Intel Corporation) HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2870032 2012-02-24] (Synaptics Incorporated) HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [499608 2011-06-16] (Adobe Systems Incorporated) HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284440 2011-11-29] (Intel Corporation) HKLM-x32\...\Run: [Dolby Home Theater v4] - C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [500736 2011-05-02] (Dolby Laboratories Inc.) HKLM-x32\...\Run: [USB3MON] - C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-02-23] (Intel Corporation) HKLM-x32\...\Run: [StartCCC] - c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [343168 2012-02-03] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [mcui_exe] - "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey HKLM-x32\...\Run: [ISBMgr.exe] - C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe [60552 2011-09-20] (Sony Corporation) HKLM-x32\...\Run: [PMBVolumeWatcher] - c:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [693608 2012-02-21] (Sony Corporation) HKLM-x32\...\Run: [FUFAXRCV] - C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe [495616 2011-03-09] (SEIKO EPSON CORPORATION) HKLM-x32\...\Run: [FUFAXSTM] - C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe [856064 2011-03-09] (SEIKO EPSON CORPORATION) HKLM-x32\...\Run: [EEventManager] - C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [979328 2010-10-12] (SEIKO EPSON CORPORATION) HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.) HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-11-02] (Apple Inc.) HKLM-x32\...\Run: [TkBellExe] - C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe [295512 2014-02-18] (RealNetworks, Inc.) HKLM-x32\...\Run: [mobilegeni daemon] - C:\Program Files (x86)\Mobogenie\DaemonProcess.exe Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer: [NoControlPanel] 0 HKU\S-1-5-21-3184525795-2871511248-3231849656-1000\...\Run: [EPLTarget\P0000000000000000] - C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIHVE.EXE [239488 2011-04-25] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-3184525795-2871511248-3231849656-1000\...\Run: [EADM] - C:\Program Files (x86)\Origin\Origin.exe [3598680 2014-02-15] (Electronic Arts) HKU\S-1-5-21-3184525795-2871511248-3231849656-1000\...\Run: [DT Emphelungstool] - "C:\Users\Caveman\AppData\Local\Deutsche Telekom\Empfehlungstool\DTEmpfehlungstool.exe" 2 HKU\S-1-5-21-3184525795-2871511248-3231849656-1000\...\Run: [Amazon Cloud Player] - C:\Users\Caveman\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe [3140608 2014-01-14] () HKU\S-1-5-21-3184525795-2871511248-3231849656-1000\...\Run: [BrowserSafeguard Update Task] - "C:\Users\Caveman\AppData\Local\BrowserSafeguard\uninstall.BrowserSafeguard.exe" /CheckUpdate=true HKU\S-1-5-21-3184525795-2871511248-3231849656-1000\...\RunOnce: [Uninstall C:\Users\Caveman\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64] - C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Caveman\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64" Startup: C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk ShortcutTarget: MyPC Backup.lnk -> C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe (MyPCBackup.com) Startup: C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Netzmanager.lnk ShortcutTarget: Netzmanager.lnk -> C:\Program Files\Netzmanager\netzmanager.exe (Deutsche Telekom AG) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://sony.msn.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://sony.msn.com SearchScopes: HKCU - {ABF25B2D-125B-43FE-BF71-D6AFA76D3723} URL = hxxp://rover.ebay.com/rover/1/707-37276-16609-27/4?mpre=hxxp://shop.ebay.de/?oemInLn=ieSrch-Q212&_nkw={searchTerms} BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO-x32: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) Toolbar: HKCU - No Name - {41564952-412D-5637-00A7-7A786E7484D7} - No File Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\Caveman\AppData\Roaming\Mozilla\Firefox\Profiles\ksk70vq0.default-1392743824136 FF user.js: detected! => C:\Users\Caveman\AppData\Roaming\Mozilla\Firefox\Profiles\ksk70vq0.default-1392743824136\user.js FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_70.dll () FF Plugin: @java.com/JavaPlugin - C:\Program Files\Java\jre7\bin\new_plugin\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_70.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/JavaPlugin - C:\Program Files (x86)\Java\jre7\bin\new_plugin\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @playstation.com/PsndlCheck,version=1.00 - C:\Program Files (x86)\Sony\PLAYSTATION Network Downloader\nppsndl.dll (Sony Computer Entertainment Inc.) FF Plugin-x32: @real.com/nppl3260;version=16.0.3.51 - C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprndlchromebrowserrecordext;version=1.3.3 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprndlhtml5videoshim;version=1.3.3 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprndlpepperflashvideoshim;version=1.3.3 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprpplugin;version=16.0.3.51 - C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpplugin.dll (RealPlayer) FF Plugin-x32: @realnetworks.com/npdlplugin;version=1 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader) FF Plugin-x32: @SonyCreativeSoftware.com/Media Go,version=1.0 - C:\Program Files (x86)\Sony\Media Go\npmediago.dll (Sony Network Entertainment International LLC) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll () FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF HKLM-x32\...\Firefox\Extensions: [{DF153AFF-6948-45d7-AC98-4FC4AF8A08E2}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\ FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\ [] FF HKLM-x32\...\Firefox\Extensions: [lightningnewtab@gmail.com] - C:\Users\Caveman\AppData\Roaming\Mozilla\Firefox\Profiles\ksk70vq0.default-1392743824136\extensions\lightningnewtab@gmail.com.xpi FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2014-02-18] ==================== Services (Whitelisted) ================= S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.) R2 AdobeActiveFileMonitor10.0; c:\Program Files (x86)\Adobe\Elements 10 Organizer\PhotoshopElementsFileAgent.exe [169624 2011-09-14] (Adobe Systems Incorporated) R2 BackupStack; C:\Program Files (x86)\MyPC Backup\BackupStack.exe [36392 2014-02-06] (Just Develop It) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128280 2012-02-23] () R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2012-02-23] (Intel Corporation) R2 McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [199304 2012-05-25] (McAfee, Inc.) R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [219272 2013-11-04] (McAfee, Inc.) R2 mfevtp; C:\Windows\system32\mfevtps.exe [182752 2013-11-04] (McAfee, Inc.) R2 MovieMode; C:\ProgramData\MovieMode\MovieMode.exe [151184 2014-02-11] (GenTechnologies Apps, LLC) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273168 2011-12-08] () R2 Netzmanager Service; C:\Program Files\Netzmanager\NMInfraIS2\Netzmanager_Service.exe [2635776 2012-07-20] (Deutsche Telekom AG) R2 PMBDeviceInfoProvider; c:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [473960 2012-02-21] (Sony Corporation) R2 RealNetworks Downloader Resolver Service; C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2013-08-14] () R2 SampleCollector; C:\Program Files\Sony\VAIO Care\VCPerfService.exe [260768 2011-11-30] (Sony Corporation) R2 uCamMonitor; C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [105024 2011-02-23] (ArcSoft, Inc.) S3 VCFw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [960160 2011-12-29] (Sony Corporation) R2 VOsrv; C:\Users\Caveman\AppData\Roaming\VOPackage\VOsrv.exe [61456 2014-02-19] () R2 Wpm; C:\ProgramData\WPM\wprotectmanager.exe [493568 2014-02-19] (Cherished Technololgy LIMITED) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [594704 2011-12-08] (Intel® Corporation) S2 AntiVirWebService; "C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe" [X] S2 IePluginService; C:\ProgramData\IePluginService\PluginService.exe -service [X] S2 Update EnhanceTronic; "C:\Program Files (x86)\EnhanceTronic\updateEnhanceTronic.exe" [X] S2 Util EnhanceTronic; "C:\Program Files (x86)\EnhanceTronic\bin\utilEnhanceTronic.exe" [X] ==================== Drivers (Whitelisted) ==================== R0 amdkmpfd; C:\Windows\System32\DRIVERS\amdkmpfd.sys [31872 2012-03-19] (Advanced Micro Devices, Inc.) R3 ArcSoftKsUFilter; C:\Windows\System32\DRIVERS\ArcSoftKsUFilter.sys [19968 2009-05-26] (ArcSoft, Inc.) S3 cfwids; C:\Windows\System32\drivers\cfwids.sys [70112 2013-11-04] (McAfee, Inc.) S3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [179792 2013-11-04] (McAfee, Inc.) R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [311120 2013-11-04] (McAfee, Inc.) U3 mfeavfk01; No ImagePath R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [519576 2013-11-04] (McAfee, Inc.) R2 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [782360 2013-11-04] (McAfee, Inc.) S3 mferkdet; C:\Windows\System32\drivers\mferkdet.sys [100912 2012-02-22] (McAfee, Inc.) R2 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [343696 2013-11-04] (McAfee, Inc.) R2 rimssne; C:\Windows\System32\DRIVERS\rimssne64.sys [102912 2012-02-24] (REDC) R2 risdsnxc; C:\Windows\System32\DRIVERS\risdsnxc64.sys [104448 2012-02-23] (REDC) R3 TelekomNM6; C:\Program Files\Netzmanager\NMInfraIS2\Driver\TelekomNM6.sys [45664 2010-09-16] (Deutsche Telekom AG AG, Marmiko IT-Solutions GmbH) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-22 13:34 - 2014-02-22 13:34 - 00024720 _____ () C:\Users\Caveman\Desktop\Fixlog.zip 2014-02-22 13:26 - 2014-02-22 13:26 - 00000000 ____D () C:\Program Files (x86)\7-Zip 2014-02-22 13:25 - 2014-02-22 13:25 - 01110476 _____ () C:\Users\Caveman\Desktop\7z920.exe 2014-02-22 13:06 - 2014-02-22 13:06 - 00003358 _____ () C:\Windows\System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-3184525795-2871511248-3231849656-1000 2014-02-21 18:13 - 2014-02-22 13:03 - 02154496 _____ (Farbar) C:\Users\Caveman\Desktop\FRST64.exe 2014-02-21 18:13 - 2014-02-22 13:03 - 00000000 ____D () C:\Users\Caveman\Desktop\FRST-OlderVersion 2014-02-21 17:45 - 2014-02-21 17:45 - 00015815 _____ () C:\Users\Caveman\Desktop\JRT.txt 2014-02-21 17:36 - 2014-02-21 17:36 - 00000000 ____D () C:\Windows\ERUNT 2014-02-21 17:34 - 2014-02-21 17:35 - 01037734 _____ (Thisisu) C:\Users\Caveman\Desktop\JRT.exe 2014-02-21 17:16 - 2014-02-21 17:16 - 00036062 _____ () C:\Users\Caveman\Desktop\AdwCleaner[S0].txt 2014-02-21 14:04 - 2014-02-21 17:09 - 00000000 ____D () C:\AdwCleaner 2014-02-20 22:52 - 2014-02-20 22:59 - 17858952 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2014-02-20 12:29 - 2014-02-21 14:21 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2014-02-20 12:29 - 2014-02-20 14:50 - 00119000 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-02-20 12:29 - 2014-02-20 12:29 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-02-20 12:28 - 2014-02-20 22:56 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-02-20 12:28 - 2014-02-20 22:56 - 00000000 ____D () C:\Users\Caveman\Desktop\mbar 2014-02-20 12:26 - 2014-02-20 12:26 - 12589848 _____ (Malwarebytes Corp.) C:\Users\Caveman\Desktop\mbar-1.07.0.1009.exe 2014-02-20 12:23 - 2014-02-20 12:23 - 00000000 ____D () C:\Program Files\McAfee 2014-02-20 12:04 - 2014-02-14 15:01 - 00000426 _____ () C:\AVScanner.ini 2014-02-20 11:34 - 2014-02-22 13:06 - 00003228 _____ () C:\Windows\System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-3184525795-2871511248-3231849656-1000 2014-02-19 22:30 - 2014-02-20 03:09 - 00044407 _____ () C:\Users\Caveman\Desktop\Addition.txt 2014-02-19 22:28 - 2014-02-22 13:50 - 00022637 _____ () C:\Users\Caveman\Desktop\FRST.txt 2014-02-19 22:28 - 2014-02-22 13:50 - 00000000 ____D () C:\FRST 2014-02-19 22:10 - 2014-02-21 17:28 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup 2014-02-19 22:10 - 2014-02-21 17:28 - 00000000 ____D () C:\Program Files (x86)\AnyProtectEx 2014-02-19 22:10 - 2014-02-19 22:10 - 00825208 _____ (AnyProtect.com) C:\Users\Caveman\AppData\Local\nsvE706.tmp 2014-02-19 22:10 - 2014-02-19 22:10 - 00001049 _____ () C:\Users\Caveman\Desktop\AnyProtect.lnk 2014-02-19 22:00 - 2014-02-19 22:00 - 00001104 _____ () C:\Users\Caveman\Desktop\Continue VuuPC Installation.lnk 2014-02-19 21:51 - 2014-02-21 17:29 - 00000000 ____D () C:\ProgramData\WPM 2014-02-19 21:50 - 2014-02-22 13:00 - 00000282 _____ () C:\Windows\Tasks\SpeedUpMyPC Maintenance.job 2014-02-19 21:50 - 2014-02-19 21:50 - 00003238 _____ () C:\Windows\System32\Tasks\SpeedUpMyPC Maintenance 2014-02-19 21:50 - 2014-02-19 21:50 - 00002526 _____ () C:\Windows\System32\Tasks\SpeedUpMyPC Startup 2014-02-19 21:50 - 2014-02-19 21:50 - 00001169 _____ () C:\Users\Public\Desktop\SpeedUpMyPC.lnk 2014-02-19 21:50 - 2014-02-19 21:50 - 00001117 _____ () C:\Users\Public\Desktop\NewPlayer.lnk 2014-02-19 21:49 - 2014-02-19 21:50 - 00000000 ____D () C:\Program Files (x86)\NewPlayer 2014-02-19 21:49 - 2014-02-19 21:49 - 00001874 _____ () C:\Users\Caveman\Desktop\Configure VO Package.lnk 2014-02-19 21:49 - 2014-02-19 21:49 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\VOPackage 2014-02-19 21:32 - 2014-02-19 21:32 - 00342568 _____ () C:\Users\Caveman\Downloads\Player.exe 2014-02-19 21:29 - 2014-02-19 21:29 - 02278856 _____ () C:\Users\Caveman\Downloads\avira_pc_cleaner_de(1).exe 2014-02-19 21:29 - 2014-02-19 21:29 - 00002042 _____ () C:\Users\Caveman\Desktop\Entfernen des Avira PC Cleaners.lnk 2014-02-19 21:29 - 2014-02-19 21:29 - 00001986 _____ () C:\Users\Caveman\Desktop\Avira PC Cleaner.lnk 2014-02-19 21:28 - 2014-02-19 21:29 - 02278856 _____ () C:\Users\Caveman\Downloads\avira_pc_cleaner_de.exe 2014-02-19 00:27 - 2014-02-19 00:27 - 00000000 ____D () C:\Users\Caveman\Documents\VideoPad Projekte 2014-02-18 23:17 - 2014-02-18 23:17 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Deshaker 2014-02-18 22:52 - 2014-02-21 17:28 - 00000000 ____D () C:\Windows\System32\Tasks\NCH Software 2014-02-18 22:52 - 2014-02-21 17:28 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\NCH Software 2014-02-18 22:52 - 2014-02-21 17:28 - 00000000 ____D () C:\ProgramData\NCH Software 2014-02-18 22:52 - 2014-02-18 22:52 - 00001194 _____ () C:\Users\Public\Desktop\PhotoStage Diashow-Ersteller.lnk 2014-02-18 22:52 - 2014-02-18 22:52 - 00001172 _____ () C:\Users\Public\Desktop\Express Burn.lnk 2014-02-18 22:52 - 2014-02-18 22:52 - 00001144 _____ () C:\Users\Public\Desktop\WavePad Audio-Editor.lnk 2014-02-18 22:52 - 2014-02-18 22:52 - 00001132 _____ () C:\Users\Public\Desktop\Prism Videodatei-Konverter.lnk 2014-02-18 22:52 - 2014-02-18 22:52 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Videoverwandte Programme 2014-02-18 22:52 - 2014-02-18 22:52 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NCH Software Produktpalette 2014-02-18 22:52 - 2014-02-18 22:52 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Audioverwandte Programme 2014-02-18 22:51 - 2014-02-21 17:28 - 00000000 ____D () C:\Program Files (x86)\NCH Software 2014-02-18 22:51 - 2014-02-18 22:51 - 00001160 _____ () C:\Users\Public\Desktop\VideoPad Video-Editor.lnk 2014-02-18 22:50 - 2014-02-18 22:50 - 05699096 _____ (NCH Software) C:\Users\Caveman\Downloads\vppsetup.exe 2014-02-18 20:14 - 2014-02-18 20:14 - 00000000 ____D () C:\Windows\de 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\nl 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\hu 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\fr 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\fi 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\en 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\el 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\da 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\cs 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\bg 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\sv 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\sl 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\sk 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\ru 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\ro 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\pl 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\it 2014-02-18 20:10 - 2014-02-18 20:10 - 00000000 ____D () C:\Windows\uk 2014-02-18 20:10 - 2014-02-18 20:10 - 00000000 ____D () C:\Windows\tr 2014-02-18 19:43 - 2014-02-18 19:43 - 00000000 ____D () C:\Program Files\Windows Live 2014-02-18 19:43 - 2013-02-05 22:06 - 00057840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fssfltr.sys 2014-02-18 19:37 - 2014-02-18 19:37 - 00000000 ___RD () C:\Users\Caveman\SkyDrive 2014-02-18 19:37 - 2014-02-18 19:37 - 00000000 ____D () C:\ProgramData\Microsoft SkyDrive 2014-02-18 19:37 - 2014-02-18 19:37 - 00000000 ____D () C:\Program Files (x86)\Microsoft SkyDrive 2014-02-18 19:27 - 2014-02-18 21:42 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Windows Live 2014-02-18 19:27 - 2014-02-18 19:27 - 01245168 _____ (Microsoft Corporation) C:\Users\Caveman\Downloads\windows-live-movie-maker_18116.exe 2014-02-18 18:54 - 2014-02-22 13:07 - 00001973 _____ () C:\Users\Caveman\Desktop\Sync Folder.lnk 2014-02-18 18:53 - 2014-02-21 18:08 - 00000000 ____D () C:\Program Files (x86)\MyPC Backup 2014-02-18 18:53 - 2014-02-21 18:06 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup 2014-02-18 18:53 - 2014-02-18 18:58 - 00000000 ____D () C:\Users\Caveman\AppData\Local\cache 2014-02-18 18:53 - 2014-02-18 18:53 - 00001091 _____ () C:\Users\Caveman\Desktop\MyPC Backup.lnk 2014-02-18 18:53 - 2014-02-18 18:53 - 00000000 ____D () C:\Users\Caveman\.android 2014-02-18 18:52 - 2014-02-21 17:28 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Mobogenie 2014-02-18 18:52 - 2014-02-18 18:52 - 00000000 _____ () C:\Users\Caveman\daemonprocess.txt 2014-02-18 18:49 - 2014-02-22 13:48 - 00000000 ____D () C:\Users\Caveman\AppData\Local\MovieMode 2014-02-18 18:47 - 2014-02-18 18:47 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\RealNetworks 2014-02-18 18:47 - 2014-02-18 18:47 - 00000000 ____D () C:\ProgramData\MovieMode 2014-02-18 18:46 - 2014-02-18 18:46 - 00001268 _____ () C:\Users\Public\Desktop\RealPlayer.lnk 2014-02-18 18:46 - 2014-02-18 18:46 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Real 2014-02-18 18:46 - 2014-02-18 18:46 - 00000000 ____D () C:\Program Files (x86)\RealNetworks 2014-02-18 18:45 - 2014-02-18 18:45 - 00000000 ____D () C:\ProgramData\RealNetworks 2014-02-18 18:44 - 2014-02-18 18:44 - 00272896 _____ (Progressive Networks) C:\Windows\SysWOW64\pncrt.dll 2014-02-18 18:44 - 2014-02-18 18:44 - 00201872 _____ (RealNetworks, Inc.) C:\Windows\SysWOW64\rmoc3260.dll 2014-02-18 18:44 - 2014-02-18 18:44 - 00006656 _____ (RealNetworks, Inc.) C:\Windows\SysWOW64\pndx5016.dll 2014-02-18 18:44 - 2014-02-18 18:44 - 00005632 _____ (RealNetworks, Inc.) C:\Windows\SysWOW64\pndx5032.dll 2014-02-18 18:43 - 2014-02-18 18:45 - 00000000 ____D () C:\Program Files (x86)\Real 2014-02-18 18:42 - 2014-02-18 18:51 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Real 2014-02-18 18:42 - 2014-02-18 18:45 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Google 2014-02-18 18:41 - 2014-02-19 14:30 - 00000000 ____D () C:\Program Files (x86)\Google 2014-02-18 18:41 - 2014-02-18 18:51 - 00000000 ____D () C:\ProgramData\Real 2014-02-18 16:20 - 2014-02-18 16:20 - 00347816 _____ (Microsoft Corporation) C:\Users\Caveman\Downloads\MicrosoftFixit.Codec.RNP.34316163822502393.7.1.Run.exe 2014-02-18 14:39 - 2014-02-18 14:51 - 00001229 _____ () C:\Users\Caveman\Desktop\Amazon Cloud Player.lnk 2014-02-18 14:38 - 2014-02-18 14:52 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Amazon Cloud Player 2014-02-18 14:38 - 2014-02-18 14:38 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon Cloud Player 2014-02-18 14:36 - 2014-02-18 14:37 - 36160080 _____ (Amazon) C:\Users\Caveman\Downloads\AmazonCloudPlayerInstaller_422.exe 2014-02-17 07:08 - 2014-02-17 07:08 - 00283288 _____ () C:\Windows\Minidump\021714-39390-01.dmp 2014-02-16 19:53 - 2014-02-17 06:43 - 00000000 ____D () C:\Users\Caveman\Desktop\Ausdrucken 2014-02-15 08:54 - 2014-02-20 12:08 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-14 01:44 - 2013-12-21 10:53 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-02-14 01:44 - 2013-12-21 09:56 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-02-14 01:43 - 2014-02-06 13:16 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-02-14 01:43 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-02-14 01:43 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-02-14 01:43 - 2014-02-06 12:12 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-02-14 01:43 - 2014-02-06 12:07 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-02-14 01:43 - 2014-02-06 12:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-02-14 01:43 - 2014-02-06 11:57 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-02-14 01:43 - 2014-02-06 11:56 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-02-14 01:43 - 2014-02-06 11:52 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-02-14 01:43 - 2014-02-06 11:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-02-14 01:43 - 2014-02-06 11:48 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-02-14 01:43 - 2014-02-06 11:48 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-02-14 01:43 - 2014-02-06 11:32 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-02-14 01:43 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-02-14 01:43 - 2014-02-06 11:17 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-02-14 01:43 - 2014-02-06 11:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-02-14 01:43 - 2014-02-06 11:00 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-02-14 01:43 - 2014-02-06 10:57 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-02-14 01:43 - 2014-02-06 10:57 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-02-14 01:43 - 2014-02-06 10:52 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-02-14 01:43 - 2014-02-06 10:52 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-02-14 01:43 - 2014-02-06 10:49 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-02-14 01:43 - 2014-02-06 10:47 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-02-14 01:43 - 2014-02-06 10:46 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-02-14 01:43 - 2014-02-06 10:25 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-02-14 01:43 - 2014-02-06 10:24 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-02-14 01:43 - 2014-02-06 10:13 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-02-14 01:43 - 2014-02-06 10:09 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-02-14 01:43 - 2014-02-06 09:55 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-02-14 01:43 - 2014-02-06 09:41 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-02-14 01:43 - 2014-02-06 09:40 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-02-14 01:43 - 2014-02-06 09:36 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-02-14 01:43 - 2014-02-06 09:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-02-14 01:42 - 2014-02-06 11:38 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-02-14 01:42 - 2014-02-06 11:11 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-02-14 01:42 - 2014-02-06 10:50 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-02-14 01:42 - 2014-02-06 10:25 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-02-14 01:42 - 2014-02-06 10:22 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-02-14 01:42 - 2014-02-06 10:03 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-02-13 23:37 - 2014-01-01 00:05 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls 2014-02-13 23:37 - 2014-01-01 00:04 - 00420008 _____ () C:\Windows\system32\locale.nls 2014-02-13 23:37 - 2013-12-06 03:30 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-02-13 23:37 - 2013-12-06 03:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-02-13 23:37 - 2013-12-06 03:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-02-13 23:37 - 2013-12-06 03:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-02-13 23:36 - 2013-12-25 00:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-02-13 23:36 - 2013-12-24 23:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-02-13 23:36 - 2013-12-04 03:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll 2014-02-13 23:36 - 2013-12-04 03:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll 2014-02-13 23:36 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll 2014-02-13 23:36 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll 2014-02-13 23:36 - 2013-12-04 03:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll 2014-02-13 23:36 - 2013-12-04 03:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe 2014-02-13 23:36 - 2013-12-04 03:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe 2014-02-13 23:36 - 2013-12-04 03:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe 2014-02-13 23:36 - 2013-12-04 03:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe 2014-02-13 23:36 - 2013-12-04 03:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll 2014-02-13 23:36 - 2013-12-04 03:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll 2014-02-13 23:36 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll 2014-02-13 23:36 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll 2014-02-13 23:36 - 2013-12-04 03:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll 2014-02-13 23:36 - 2013-12-04 02:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe 2014-02-13 23:36 - 2013-12-04 02:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe 2014-02-13 23:36 - 2013-12-04 02:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe 2014-02-13 23:36 - 2013-12-04 02:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe 2014-02-13 23:36 - 2013-11-26 09:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2014-02-13 23:36 - 2013-11-22 23:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2014-02-11 00:32 - 2014-02-11 00:32 - 01152656 _____ () C:\Windows\SysWOW64\MovieMode.48CA2AEFA22D.dll 2014-02-09 08:06 - 2014-02-18 18:17 - 00000000 ____D () C:\Users\Caveman\Desktop\Alte Firefox-Daten 2014-02-08 09:53 - 2014-02-08 09:53 - 00280208 _____ () C:\Windows\Minidump\020814-34445-01.dmp 2014-02-07 16:33 - 2014-02-07 16:33 - 00280808 _____ () C:\Windows\Minidump\020714-27924-01.dmp 2014-02-05 21:11 - 2014-02-05 21:13 - 126220554 _____ () C:\Users\Caveman\Downloads\E2010_PC_v4.zip 2014-02-02 15:10 - 2014-02-02 15:10 - 00283288 _____ () C:\Windows\Minidump\020214-24741-01.dmp 2014-01-31 20:34 - 2014-01-31 20:34 - 00283288 _____ () C:\Windows\Minidump\013114-24960-01.dmp 2014-01-29 15:02 - 2014-01-29 15:02 - 00262144 _____ () C:\Windows\Minidump\012914-63071-01.dmp 2014-01-26 18:53 - 2014-01-26 18:53 - 00280664 _____ () C:\Windows\Minidump\012614-31559-01.dmp 2014-01-23 14:52 - 2014-01-23 14:53 - 00281848 _____ () C:\Windows\Minidump\012314-65660-01.dmp ==================== One Month Modified Files and Folders ======= 2014-02-22 13:50 - 2014-02-19 22:28 - 00022637 _____ () C:\Users\Caveman\Desktop\FRST.txt 2014-02-22 13:50 - 2014-02-19 22:28 - 00000000 ____D () C:\FRST 2014-02-22 13:48 - 2014-02-18 18:49 - 00000000 ____D () C:\Users\Caveman\AppData\Local\MovieMode 2014-02-22 13:34 - 2014-02-22 13:34 - 00024720 _____ () C:\Users\Caveman\Desktop\Fixlog.zip 2014-02-22 13:26 - 2014-02-22 13:26 - 00000000 ____D () C:\Program Files (x86)\7-Zip 2014-02-22 13:25 - 2014-02-22 13:25 - 01110476 _____ () C:\Users\Caveman\Desktop\7z920.exe 2014-02-22 13:22 - 2012-05-22 21:54 - 01697311 _____ () C:\Windows\WindowsUpdate.log 2014-02-22 13:14 - 2009-07-14 05:45 - 00020992 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-02-22 13:14 - 2009-07-14 05:45 - 00020992 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-02-22 13:08 - 2013-01-26 08:32 - 00000000 ____D () C:\ProgramData\Origin 2014-02-22 13:07 - 2014-02-18 18:54 - 00001973 _____ () C:\Users\Caveman\Desktop\Sync Folder.lnk 2014-02-22 13:06 - 2014-02-22 13:06 - 00003358 _____ () C:\Windows\System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-3184525795-2871511248-3231849656-1000 2014-02-22 13:06 - 2014-02-20 11:34 - 00003228 _____ () C:\Windows\System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-3184525795-2871511248-3231849656-1000 2014-02-22 13:06 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-02-22 13:06 - 2009-07-14 05:51 - 00098496 _____ () C:\Windows\setupact.log 2014-02-22 13:05 - 2010-11-21 04:47 - 00023844 _____ () C:\Windows\PFRO.log 2014-02-22 13:03 - 2014-02-21 18:13 - 02154496 _____ (Farbar) C:\Users\Caveman\Desktop\FRST64.exe 2014-02-22 13:03 - 2014-02-21 18:13 - 00000000 ____D () C:\Users\Caveman\Desktop\FRST-OlderVersion 2014-02-22 13:00 - 2014-02-19 21:50 - 00000282 _____ () C:\Windows\Tasks\SpeedUpMyPC Maintenance.job 2014-02-22 12:59 - 2012-05-22 22:53 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-02-22 03:57 - 2013-12-22 08:10 - 00000000 ____D () C:\Program Files (x86)\Origin 2014-02-22 03:55 - 2009-07-14 06:32 - 00000000 ____D () C:\Windows\system32\FxsTmp 2014-02-21 18:08 - 2014-02-18 18:53 - 00000000 ____D () C:\Program Files (x86)\MyPC Backup 2014-02-21 18:07 - 2012-07-17 17:38 - 00000000 ____D () C:\Users\Caveman 2014-02-21 18:06 - 2014-02-18 18:53 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup 2014-02-21 18:06 - 2013-12-08 18:07 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Mozilla 2014-02-21 18:06 - 2013-11-28 13:46 - 00000000 ____D () C:\ProgramData\Netzmanager 2014-02-21 18:06 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF 2014-02-21 18:06 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\registration 2014-02-21 17:45 - 2014-02-21 17:45 - 00015815 _____ () C:\Users\Caveman\Desktop\JRT.txt 2014-02-21 17:36 - 2014-02-21 17:36 - 00000000 ____D () C:\Windows\ERUNT 2014-02-21 17:35 - 2014-02-21 17:34 - 01037734 _____ (Thisisu) C:\Users\Caveman\Desktop\JRT.exe 2014-02-21 17:29 - 2014-02-19 21:51 - 00000000 ____D () C:\ProgramData\WPM 2014-02-21 17:28 - 2014-02-19 22:10 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup 2014-02-21 17:28 - 2014-02-19 22:10 - 00000000 ____D () C:\Program Files (x86)\AnyProtectEx 2014-02-21 17:28 - 2014-02-18 22:52 - 00000000 ____D () C:\Windows\System32\Tasks\NCH Software 2014-02-21 17:28 - 2014-02-18 22:52 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\NCH Software 2014-02-21 17:28 - 2014-02-18 22:52 - 00000000 ____D () C:\ProgramData\NCH Software 2014-02-21 17:28 - 2014-02-18 22:51 - 00000000 ____D () C:\Program Files (x86)\NCH Software 2014-02-21 17:28 - 2014-02-18 18:52 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Mobogenie 2014-02-21 17:28 - 2012-07-17 17:42 - 00000000 ___RD () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-02-21 17:28 - 2012-05-22 21:58 - 00000000 ____D () C:\ProgramData\Sony Corporation 2014-02-21 17:16 - 2014-02-21 17:16 - 00036062 _____ () C:\Users\Caveman\Desktop\AdwCleaner[S0].txt 2014-02-21 17:09 - 2014-02-21 14:04 - 00000000 ____D () C:\AdwCleaner 2014-02-21 14:21 - 2014-02-20 12:29 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2014-02-21 14:21 - 2012-08-01 10:54 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\SoftGrid Client 2014-02-20 22:59 - 2014-02-20 22:52 - 17858952 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2014-02-20 22:59 - 2012-05-22 22:53 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-02-20 22:59 - 2012-05-22 22:53 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-02-20 22:59 - 2012-05-22 22:53 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-02-20 22:56 - 2014-02-20 12:28 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-02-20 22:56 - 2014-02-20 12:28 - 00000000 ____D () C:\Users\Caveman\Desktop\mbar 2014-02-20 14:50 - 2014-02-20 12:29 - 00119000 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-02-20 14:46 - 2012-07-17 17:41 - 00000000 ____D () C:\Windows\pss 2014-02-20 14:46 - 2012-05-22 22:28 - 00000000 ____D () C:\ProgramData\McAfee 2014-02-20 12:29 - 2014-02-20 12:29 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-02-20 12:26 - 2014-02-20 12:26 - 12589848 _____ (Malwarebytes Corp.) C:\Users\Caveman\Desktop\mbar-1.07.0.1009.exe 2014-02-20 12:24 - 2012-05-22 22:48 - 00697534 _____ () C:\Windows\system32\perfh007.dat 2014-02-20 12:24 - 2012-05-22 22:48 - 00148540 _____ () C:\Windows\system32\perfc007.dat 2014-02-20 12:24 - 2009-07-14 06:13 - 01614956 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-02-20 12:23 - 2014-02-20 12:23 - 00000000 ____D () C:\Program Files\McAfee 2014-02-20 12:11 - 2012-05-22 22:29 - 00000000 ____D () C:\Program Files\Common Files\McAfee 2014-02-20 12:08 - 2014-02-15 08:54 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-20 12:06 - 2014-01-15 10:01 - 00000000 ____D () C:\Users\Caveman\Documents\McAfee-Tresore 2014-02-20 11:36 - 2012-07-17 17:38 - 00069584 _____ () C:\Users\Caveman\AppData\Local\GDIPFONTCACHEV1.DAT 2014-02-20 03:09 - 2014-02-19 22:30 - 00044407 _____ () C:\Users\Caveman\Desktop\Addition.txt 2014-02-19 22:10 - 2014-02-19 22:10 - 00825208 _____ (AnyProtect.com) C:\Users\Caveman\AppData\Local\nsvE706.tmp 2014-02-19 22:10 - 2014-02-19 22:10 - 00001049 _____ () C:\Users\Caveman\Desktop\AnyProtect.lnk 2014-02-19 22:00 - 2014-02-19 22:00 - 00001104 _____ () C:\Users\Caveman\Desktop\Continue VuuPC Installation.lnk 2014-02-19 21:50 - 2014-02-19 21:50 - 00003238 _____ () C:\Windows\System32\Tasks\SpeedUpMyPC Maintenance 2014-02-19 21:50 - 2014-02-19 21:50 - 00002526 _____ () C:\Windows\System32\Tasks\SpeedUpMyPC Startup 2014-02-19 21:50 - 2014-02-19 21:50 - 00001169 _____ () C:\Users\Public\Desktop\SpeedUpMyPC.lnk 2014-02-19 21:50 - 2014-02-19 21:50 - 00001117 _____ () C:\Users\Public\Desktop\NewPlayer.lnk 2014-02-19 21:50 - 2014-02-19 21:49 - 00000000 ____D () C:\Program Files (x86)\NewPlayer 2014-02-19 21:50 - 2013-12-08 18:07 - 00001367 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-02-19 21:50 - 2012-07-17 17:42 - 00001653 _____ () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-02-19 21:49 - 2014-02-19 21:49 - 00001874 _____ () C:\Users\Caveman\Desktop\Configure VO Package.lnk 2014-02-19 21:49 - 2014-02-19 21:49 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\VOPackage 2014-02-19 21:32 - 2014-02-19 21:32 - 00342568 _____ () C:\Users\Caveman\Downloads\Player.exe 2014-02-19 21:29 - 2014-02-19 21:29 - 02278856 _____ () C:\Users\Caveman\Downloads\avira_pc_cleaner_de(1).exe 2014-02-19 21:29 - 2014-02-19 21:29 - 00002042 _____ () C:\Users\Caveman\Desktop\Entfernen des Avira PC Cleaners.lnk 2014-02-19 21:29 - 2014-02-19 21:29 - 00001986 _____ () C:\Users\Caveman\Desktop\Avira PC Cleaner.lnk 2014-02-19 21:29 - 2014-02-19 21:28 - 02278856 _____ () C:\Users\Caveman\Downloads\avira_pc_cleaner_de.exe 2014-02-19 14:40 - 2012-05-22 22:09 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-02-19 14:30 - 2014-02-18 18:41 - 00000000 ____D () C:\Program Files (x86)\Google 2014-02-19 06:49 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache 2014-02-19 00:27 - 2014-02-19 00:27 - 00000000 ____D () C:\Users\Caveman\Documents\VideoPad Projekte 2014-02-18 23:17 - 2014-02-18 23:17 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Deshaker 2014-02-18 22:52 - 2014-02-18 22:52 - 00001194 _____ () C:\Users\Public\Desktop\PhotoStage Diashow-Ersteller.lnk 2014-02-18 22:52 - 2014-02-18 22:52 - 00001172 _____ () C:\Users\Public\Desktop\Express Burn.lnk 2014-02-18 22:52 - 2014-02-18 22:52 - 00001144 _____ () C:\Users\Public\Desktop\WavePad Audio-Editor.lnk 2014-02-18 22:52 - 2014-02-18 22:52 - 00001132 _____ () C:\Users\Public\Desktop\Prism Videodatei-Konverter.lnk 2014-02-18 22:52 - 2014-02-18 22:52 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Videoverwandte Programme 2014-02-18 22:52 - 2014-02-18 22:52 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NCH Software Produktpalette 2014-02-18 22:52 - 2014-02-18 22:52 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Audioverwandte Programme 2014-02-18 22:51 - 2014-02-18 22:51 - 00001160 _____ () C:\Users\Public\Desktop\VideoPad Video-Editor.lnk 2014-02-18 22:50 - 2014-02-18 22:50 - 05699096 _____ (NCH Software) C:\Users\Caveman\Downloads\vppsetup.exe 2014-02-18 21:42 - 2014-02-18 19:27 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Windows Live 2014-02-18 20:14 - 2014-02-18 20:14 - 00000000 ____D () C:\Windows\de 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\nl 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\hu 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\fr 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\fi 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\en 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\el 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\da 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\cs 2014-02-18 20:12 - 2014-02-18 20:12 - 00000000 ____D () C:\Windows\bg 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\sv 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\sl 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\sk 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\ru 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\ro 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\pl 2014-02-18 20:11 - 2014-02-18 20:11 - 00000000 ____D () C:\Windows\it 2014-02-18 20:10 - 2014-02-18 20:10 - 00000000 ____D () C:\Windows\uk 2014-02-18 20:10 - 2014-02-18 20:10 - 00000000 ____D () C:\Windows\tr 2014-02-18 19:44 - 2012-05-23 00:09 - 00000000 ____D () C:\Program Files (x86)\Windows Live 2014-02-18 19:43 - 2014-02-18 19:43 - 00000000 ____D () C:\Program Files\Windows Live 2014-02-18 19:42 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2014-02-18 19:39 - 2012-05-22 23:25 - 00097761 _____ () C:\Windows\DirectX.log 2014-02-18 19:37 - 2014-02-18 19:37 - 00000000 ___RD () C:\Users\Caveman\SkyDrive 2014-02-18 19:37 - 2014-02-18 19:37 - 00000000 ____D () C:\ProgramData\Microsoft SkyDrive 2014-02-18 19:37 - 2014-02-18 19:37 - 00000000 ____D () C:\Program Files (x86)\Microsoft SkyDrive 2014-02-18 19:27 - 2014-02-18 19:27 - 01245168 _____ (Microsoft Corporation) C:\Users\Caveman\Downloads\windows-live-movie-maker_18116.exe 2014-02-18 18:58 - 2014-02-18 18:53 - 00000000 ____D () C:\Users\Caveman\AppData\Local\cache 2014-02-18 18:53 - 2014-02-18 18:53 - 00001091 _____ () C:\Users\Caveman\Desktop\MyPC Backup.lnk 2014-02-18 18:53 - 2014-02-18 18:53 - 00000000 ____D () C:\Users\Caveman\.android 2014-02-18 18:52 - 2014-02-18 18:52 - 00000000 _____ () C:\Users\Caveman\daemonprocess.txt 2014-02-18 18:51 - 2014-02-18 18:42 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Real 2014-02-18 18:51 - 2014-02-18 18:41 - 00000000 ____D () C:\ProgramData\Real 2014-02-18 18:47 - 2014-02-18 18:47 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\RealNetworks 2014-02-18 18:47 - 2014-02-18 18:47 - 00000000 ____D () C:\ProgramData\MovieMode 2014-02-18 18:46 - 2014-02-18 18:46 - 00001268 _____ () C:\Users\Public\Desktop\RealPlayer.lnk 2014-02-18 18:46 - 2014-02-18 18:46 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Real 2014-02-18 18:46 - 2014-02-18 18:46 - 00000000 ____D () C:\Program Files (x86)\RealNetworks 2014-02-18 18:45 - 2014-02-18 18:45 - 00000000 ____D () C:\ProgramData\RealNetworks 2014-02-18 18:45 - 2014-02-18 18:43 - 00000000 ____D () C:\Program Files (x86)\Real 2014-02-18 18:45 - 2014-02-18 18:42 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Google 2014-02-18 18:44 - 2014-02-18 18:44 - 00272896 _____ (Progressive Networks) C:\Windows\SysWOW64\pncrt.dll 2014-02-18 18:44 - 2014-02-18 18:44 - 00201872 _____ (RealNetworks, Inc.) C:\Windows\SysWOW64\rmoc3260.dll 2014-02-18 18:44 - 2014-02-18 18:44 - 00006656 _____ (RealNetworks, Inc.) C:\Windows\SysWOW64\pndx5016.dll 2014-02-18 18:44 - 2014-02-18 18:44 - 00005632 _____ (RealNetworks, Inc.) C:\Windows\SysWOW64\pndx5032.dll 2014-02-18 18:44 - 2003-03-18 19:14 - 00499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll 2014-02-18 18:44 - 2003-02-21 03:42 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll 2014-02-18 18:17 - 2014-02-09 08:06 - 00000000 ____D () C:\Users\Caveman\Desktop\Alte Firefox-Daten 2014-02-18 16:20 - 2014-02-18 16:20 - 00347816 _____ (Microsoft Corporation) C:\Users\Caveman\Downloads\MicrosoftFixit.Codec.RNP.34316163822502393.7.1.Run.exe 2014-02-18 15:08 - 2013-09-29 00:51 - 00000000 ____D () C:\Users\Caveman\Desktop\Projekt F 2014-02-18 14:52 - 2014-02-18 14:38 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Amazon Cloud Player 2014-02-18 14:51 - 2014-02-18 14:39 - 00001229 _____ () C:\Users\Caveman\Desktop\Amazon Cloud Player.lnk 2014-02-18 14:38 - 2014-02-18 14:38 - 00000000 ____D () C:\Users\Caveman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon Cloud Player 2014-02-18 14:37 - 2014-02-18 14:36 - 36160080 _____ (Amazon) C:\Users\Caveman\Downloads\AmazonCloudPlayerInstaller_422.exe 2014-02-18 03:05 - 2014-01-05 21:38 - 00000000 ____D () C:\Windows\system32\MRT 2014-02-18 03:01 - 2014-01-05 21:38 - 88567024 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-02-17 07:08 - 2014-02-17 07:08 - 00283288 _____ () C:\Windows\Minidump\021714-39390-01.dmp 2014-02-17 07:08 - 2014-01-09 15:14 - 525611570 _____ () C:\Windows\MEMORY.DMP 2014-02-17 07:08 - 2014-01-09 15:14 - 00000000 ____D () C:\Windows\Minidump 2014-02-17 06:43 - 2014-02-16 19:53 - 00000000 ____D () C:\Users\Caveman\Desktop\Ausdrucken 2014-02-16 18:29 - 2013-12-08 18:07 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-02-14 15:09 - 2012-07-17 17:43 - 00000000 ____D () C:\Users\Caveman\AppData\Local\Adobe 2014-02-14 15:01 - 2014-02-20 12:04 - 00000426 _____ () C:\AVScanner.ini 2014-02-14 01:58 - 2011-02-11 00:03 - 01592786 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-02-12 19:26 - 2013-06-25 06:32 - 00000000 ____D () C:\Users\Caveman\Desktop\KIT 2014-02-11 00:32 - 2014-02-11 00:32 - 01152656 _____ () C:\Windows\SysWOW64\MovieMode.48CA2AEFA22D.dll 2014-02-08 09:53 - 2014-02-08 09:53 - 00280208 _____ () C:\Windows\Minidump\020814-34445-01.dmp 2014-02-07 19:45 - 2013-07-31 00:58 - 00000000 ____D () C:\Users\Caveman\Desktop\AAAAAAAAAAA 2014-02-07 16:33 - 2014-02-07 16:33 - 00280808 _____ () C:\Windows\Minidump\020714-27924-01.dmp 2014-02-06 13:16 - 2014-02-14 01:43 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-02-06 12:30 - 2014-02-14 01:43 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-02-06 12:30 - 2014-02-14 01:43 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-02-06 12:12 - 2014-02-14 01:43 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-02-06 12:07 - 2014-02-14 01:43 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-02-06 12:06 - 2014-02-14 01:43 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-02-06 11:57 - 2014-02-14 01:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-02-06 11:56 - 2014-02-14 01:43 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-02-06 11:52 - 2014-02-14 01:43 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-02-06 11:49 - 2014-02-14 01:43 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-02-06 11:48 - 2014-02-14 01:43 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-02-06 11:48 - 2014-02-14 01:43 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-02-06 11:38 - 2014-02-14 01:42 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-02-06 11:32 - 2014-02-14 01:43 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-02-06 11:20 - 2014-02-14 01:43 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-02-06 11:17 - 2014-02-14 01:43 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-02-06 11:11 - 2014-02-14 01:42 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-02-06 11:01 - 2014-02-14 01:43 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-02-06 11:00 - 2014-02-14 01:43 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-02-06 10:57 - 2014-02-14 01:43 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-02-06 10:57 - 2014-02-14 01:43 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-02-06 10:52 - 2014-02-14 01:43 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-02-06 10:52 - 2014-02-14 01:43 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-02-06 10:50 - 2014-02-14 01:42 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-02-06 10:49 - 2014-02-14 01:43 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-02-06 10:47 - 2014-02-14 01:43 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-02-06 10:46 - 2014-02-14 01:43 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-02-06 10:25 - 2014-02-14 01:43 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-02-06 10:25 - 2014-02-14 01:42 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-02-06 10:24 - 2014-02-14 01:43 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-02-06 10:22 - 2014-02-14 01:42 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-02-06 10:13 - 2014-02-14 01:43 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-02-06 10:09 - 2014-02-14 01:43 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-02-06 10:03 - 2014-02-14 01:42 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-02-06 09:55 - 2014-02-14 01:43 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-02-06 09:41 - 2014-02-14 01:43 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-02-06 09:40 - 2014-02-14 01:43 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-02-06 09:36 - 2014-02-14 01:43 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-02-06 09:34 - 2014-02-14 01:43 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-02-05 21:13 - 2014-02-05 21:11 - 126220554 _____ () C:\Users\Caveman\Downloads\E2010_PC_v4.zip 2014-02-02 15:10 - 2014-02-02 15:10 - 00283288 _____ () C:\Windows\Minidump\020214-24741-01.dmp 2014-01-31 20:34 - 2014-01-31 20:34 - 00283288 _____ () C:\Windows\Minidump\013114-24960-01.dmp 2014-01-29 15:02 - 2014-01-29 15:02 - 00262144 _____ () C:\Windows\Minidump\012914-63071-01.dmp 2014-01-26 18:53 - 2014-01-26 18:53 - 00280664 _____ () C:\Windows\Minidump\012614-31559-01.dmp 2014-01-25 22:52 - 2009-07-14 06:08 - 00032640 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-01-23 14:53 - 2014-01-23 14:52 - 00281848 _____ () C:\Windows\Minidump\012314-65660-01.dmp 2014-01-23 08:31 - 2013-12-13 22:11 - 00000000 ____D () C:\Users\Caveman\Desktop\OK ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-02-19 06:27 ==================== End Of Log ============================ Additional Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 22-02-2014 01 Ran by Caveman at 2014-02-22 13:51:31 Running from C:\Users\Caveman\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== 7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version: - ) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 2.7.0.19460 - Adobe Systems Incorporated) Adobe AIR (x32 Version: 2.7.0.19460 - Adobe Systems Incorporated) Hidden Adobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.5.23 - Adobe Systems Incorporated.) Adobe Community Help (x32 Version: 3.5.23 - Adobe Systems Incorporated.) Hidden Adobe Flash Player 12 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 12.0.0.70 - Adobe Systems Incorporated) Adobe Flash Player 12 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 12.0.0.70 - Adobe Systems Incorporated) Adobe Photoshop Elements 10 (HKLM-x32\...\Adobe Photoshop Elements 10) (Version: 10.0 - Adobe Systems Incorporated) Adobe Photoshop Elements 10 (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden Adobe Reader X MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}) (Version: 10.0.0 - Adobe Systems Incorporated) Agatha Christie - Death on the Nile (x32 Version: 2.2.0.98 - WildTangent) Hidden Alfons Lernwelt (HKLM-x32\...\Alfons Lernwelt) (Version: - Bildungshaus Schulbuchverlage Westermann Schroedel Diesterweg Schöningh Winklers GmbH) Aloha TriPeaks (x32 Version: 2.2.0.98 - WildTangent) Hidden Amazon Cloud Player (HKCU\...\Amazon Amazon Cloud Player) (Version: 2.3.0.422 - Amazon Services LLC) AMD APP SDK Runtime (Version: 10.0.851.6 - Advanced Micro Devices Inc.) Hidden AMD Catalyst Install Manager (HKLM\...\{BC3B8C54-7E10-0A4D-F6CA-52616DB1E96F}) (Version: 3.0.859.0 - Advanced Micro Devices, Inc.) AnyProtect (HKLM-x32\...\AnyProtect) (Version: 1.0.0.0 - CMI Limited) Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{2EF5D87E-B7BD-458F-8428-E4D0B8B4E65C}) (Version: 7.0.0.117 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) ArcSoft Magic-i Visual Effects 2 (HKLM-x32\...\{61438020-DDD4-42FA-99A2-50225441980A}) (Version: 2.0.1.161 - ArcSoft) ArcSoft WebCam Companion 4 (HKLM-x32\...\{C793AD32-2BB8-4CC4-ABD3-A1469C21593C}) (Version: 4.0.21.457 - ArcSoft) awesomehp uninstaller (HKLM-x32\...\awesomehp uninstaller) (Version: - awesomehp) <==== ATTENTION Bejeweled 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden Benutzerhandbuch EPSON BX635FWD Series (HKLM-x32\...\EPSON BX635FWD Series Useg) (Version: - ) Bing Bar (HKLM-x32\...\{1E03DB52-D5CB-4338-A338-E526DD4D4DB1}) (Version: 7.0.610.0 - Microsoft Corporation) Blitzrechnen (HKLM-x32\...\Blitzrechnen) (Version: - ) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) BrowserSafeguard (HKCU\...\Browsersafeguard) (Version: - Browsersafeguard) <==== ATTENTION Build-a-lot 2 (x32 Version: 2.2.0.98 - WildTangent) Hidden Cake Mania (x32 Version: 2.2.0.98 - WildTangent) Hidden Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center (x32 Version: 2012.0203.1528.27522 - Ihr Firmenname) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2012.0203.1528.27522 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2012.0203.1528.27522 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2012.0203.1528.27522 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Profiles Mobile (x32 Version: 2012.0203.1528.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Standard (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Traditional (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Czech (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Danish (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Dutch (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help English (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Finnish (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help French (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help German (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Greek (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Hungarian (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Italian (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Japanese (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Korean (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Norwegian (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Polish (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Portuguese (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Russian (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Spanish (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Swedish (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Thai (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden CCC Help Turkish (x32 Version: 2012.0203.1527.27522 - Advanced Micro Devices, Inc.) Hidden ccc-utility64 (Version: 2012.0203.1528.27522 - Advanced Micro Devices, Inc.) Hidden Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden CyberLink PowerDVD (HKLM-x32\...\InstallShield_{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}) (Version: 9.0.5009.52 - CyberLink Corp.) CyberLink PowerDVD (x32 Version: 9.0.5009.52 - CyberLink Corp.) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden D-GISS 2013-2014 (HKLM-x32\...\{FFA79A68-E573-4291-916E-6E3467F52D90}) (Version: 18.0 - Universum Verlag GmbH, Wiesbaden) Digital Photo Navigator 1.5 (HKLM-x32\...\{CF9CD37C-E29A-11D5-AE3D-005004B8E30C}) (Version: - ) DMUninstaller (HKLM-x32\...\DMUninstaller) (Version: - ) <==== ATTENTION Dolby Home Theater v4 (HKLM-x32\...\{B26438B4-BF51-49C3-9567-7F14A5E40CB9}) (Version: 7.2.7000.6 - Dolby Laboratories Inc) Download Navigator (HKLM-x32\...\{E728441A-7820-4B1C-87C9-DE7BE37B2953}) (Version: 1.1.0 - SEIKO EPSON CORPORATION) Elements 10 Organizer (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden ElsterFormular (HKLM-x32\...\ElsterFormular) (Version: 14.4.20130909 - Landesfinanzdirektion Thüringen) EnhanceTronic (HKLM\...\EnhanceTronic) (Version: 2014.02.13.012613 - EnhanceTronic) EPSON BX635FWD Series Printer Uninstall (HKLM\...\EPSON BX635FWD Series) (Version: - SEIKO EPSON Corporation) Epson Event Manager (HKLM-x32\...\{FA9D303D-0FB2-49C7-9397-8E6B11EA892D}) (Version: 2.50.0001 - SEIKO EPSON CORPORATION) Epson FAX Utility (HKLM-x32\...\{0CBE6C93-CB2E-4378-91EE-12BE6D4E2E4A}) (Version: 1.20.00 - SEIKO EPSON CORPORATION) Epson PC-FAX Driver (HKLM-x32\...\EPSON PC-FAX Driver 2) (Version: - ) EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - Seiko Epson Corporation) EpsonNet Print (HKLM-x32\...\{3E31400D-274E-4647-916C-2CACC3741799}) (Version: 2.4j - SEIKO EPSON CORPORATION) Everio MediaBrowser (HKLM-x32\...\{5CA03ECF-B4A6-464B-9F5D-64D8B61B083F}) (Version: 2.01.202 - PIXELA) Evernote v. 4.5.2 (HKLM-x32\...\{8CE152BA-1D16-11E1-867D-984BE15F174E}) (Version: 4.5.2.5904 - Evernote Corp.) Express Burn (HKLM-x32\...\ExpressBurn) (Version: 4.69 - NCH Software) FDUx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden FIFA 13 (HKLM-x32\...\{A29E18C2-7AB1-4b6b-848C-5D5E2C85F0C0}) (Version: 1.0.0.0 - Electronic Arts) Filmlexikon 2011 (HKLM-x32\...\InstallShield_{A57B2FA6-F6B7-43A1-B294-3E775F353ED1}) (Version: 1.00.0000 - USM) Filmlexikon 2011 (x32 Version: 1.00.0000 - USM) Hidden Fishdom (TM) 2 (x32 Version: 2.2.0.98 - WildTangent) Hidden Fotogaléria (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Fotogalerie (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Fotogalerija (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Fotogalleri (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Fotogalleriet (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Fotoğraf Galerisi (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Fotótár (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Galeria de Fotografias (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Galeria fotografii (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Galerie de photos (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Galerie foto (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden HQ-Video-Profession-1.3 (HKLM-x32\...\HQ-Video-Profession-1.3) (Version: 1.34.1.29 - HQ-Video) IePluginService12.27.0.3326 (HKLM-x32\...\IePlugins) (Version: 12.27.0.3326 - Cherished Technololgy LIMITED) <==== ATTENTION Insaniquarium Deluxe (x32 Version: 2.2.0.97 - WildTangent) Hidden Intel PROSet Wireless (Version: - ) Hidden Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Display Audio Driver (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 6.14.00.3090 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.0.2.1410 - Intel Corporation) Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed (HKLM\...\{2C0E6BD4-65B1-4E82-B2AC-43EFFC8F100C}) (Version: 15.0.0.0083 - Intel Corporation) Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (HKLM\...\{F0932859-AA60-459E-B843-0BDECA34E2C7}) (Version: 2.0.0.0086 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.0.0.1032 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.3.214 - Intel Corporation) Intel(R) WiDi (HKLM-x32\...\{7FCB8D5D-9396-4D17-8CFA-349D6D49CD32}) (Version: 3.0.13.0 - Intel Corporation) Intel(R) Wireless Display (HKLM\...\{28EF7372-9087-4AC3-9B9F-D9751FCDF830}) (Version: - ) Intel® PROSet/Wireless WiFi-Software (HKLM\...\{DF7756DD-656A-45C3-BA71-74673E8259A9}) (Version: 15.00.0000.0708 - Intel Corporation) Intel® Trusted Connect Service Client (HKLM\...\{09536BA1-E498-4CC3-B834-D884A67D7E34}) (Version: 1.23.605.1 - Intel Corporation) iTunes (HKLM\...\{D601CEAD-2E4F-4BBB-85CC-C29A4CE6A3C0}) (Version: 11.1.3.8 - Apple Inc.) Java Auto Updater (x32 Version: 2.1.5.1 - Sun Microsystems, Inc.) Hidden Java(TM) 7 Update 1 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417001FF}) (Version: 7.0.10 - Oracle) Java(TM) 7 Update 1 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217001FF}) (Version: 7.0.10 - Oracle) Jewel Quest Solitaire 2 (x32 Version: 2.2.0.98 - WildTangent) Hidden Junk Mail filter update (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden KUx86 (x32 Version: 1.0.0 - Sony Corporation ) Hidden LEGO® Star Wars™: Die Komplette Saga (HKLM-x32\...\InstallShield_{D596980D-17BE-4425-B8F0-5640719AADE9}) (Version: 1.00.0000 - LucasArts) LEGO® Star Wars™: The Complete Saga (x32 Version: 1.00.0000 - LucasArts) Hidden Mahjongg Artifacts (x32 Version: 2.2.0.95 - WildTangent) Hidden Media Gallery (HKLM\...\{0EB7792D-EFA2-42AB-9A22-F33D9458E974}) (Version: 2.1.0.13300 - Sony Corporation) Media Go (HKLM-x32\...\{167A1F6A-9BF2-4B24-83DB-C6D659F680EA}) (Version: 2.0.317 - Sony) Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Client Profile DEU Language Pack (HKLM\...\Microsoft .NET Framework 4 Client Profile DEU Language Pack) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Extended DEU Language Pack (HKLM\...\Microsoft .NET Framework 4 Extended DEU Language Pack) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Klick-und-Los 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Klick-und-Los 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden Microsoft Office Starter 2010 - Deutsch (HKLM-x32\...\{90140011-0066-0407-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.20913.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.) Movie Maker (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Movie Mode (HKLM-x32\...\MovieMode) (Version: 2.6.63 - GenTechnologies Apps, LLC) Mozilla Firefox 27.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 27.0.1 (x86 de)) (Version: 27.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 27.0.1 - Mozilla) MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) MyPC Backup (HKLM\...\MyPC Backup) (Version: - JDi Backup Ltd) <==== ATTENTION Mystery of Mortlake Mansion (x32 Version: 2.2.0.98 - WildTangent) Hidden Mystery P.I. - The London Caper (x32 Version: 2.2.0.95 - WildTangent) Hidden Netzmanager (HKLM-x32\...\Netzmanager) (Version: 1.071 - Deutsche Telekom AG) Netzmanager (Version: 1.071 - Deutsche Telekom AG, Marmiko IT-Solutions GmbH) Hidden Netzwerkhandbuch EPSON BX635FWD Series (HKLM-x32\...\EPSON BX635FWD Series Netg) (Version: - ) NewPlayer (HKLM-x32\...\NewPlayer) (Version: v2.1.1.0 - TUGUU SL) <==== ATTENTION Origin (HKLM-x32\...\Origin) (Version: 9.0.10.69 - Electronic Arts, Inc.) Photo Common (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Photo Gallery (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden PhotoStage Diashow-Ersteller (HKLM-x32\...\PhotoStage) (Version: 2.29 - NCH Software) Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98 - WildTangent) Hidden PlayMemories Home (HKLM-x32\...\{E03CD71A-F595-49DF-9ADC-0CFC93B1B211}) (Version: 6.1.01.14210 - Sony Corporation) PlayStation(R)Network Downloader (HKLM-x32\...\{B6659DD8-00A7-4A24-BBFB-C1F6982E5D66}) (Version: 2.07.00849 - Sony Computer Entertainment Inc.) PlayStation(R)Store (HKLM-x32\...\{0E532C84-4275-41B3-9D81-D4A1A20D8EE7}) (Version: 4.5.15.13232 - Sony Computer Entertainment Inc.) Poczta usługi Windows Live (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Polar Bowler (x32 Version: 2.2.0.97 - WildTangent) Hidden Pošta Windows Live (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Prism Videodatei-Konverter (HKLM-x32\...\Prism) (Version: 2.09 - NCH Software) PSE10 STI Installer (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden PX Profile Update (x32 Version: 1.00.1. - AMD) Hidden PYV_x86 (x32 Version: 1.0.0 - Sony Corporation) Hidden Raccolta foto (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden RealDownloader (x32 Version: 1.3.3 - RealNetworks, Inc.) Hidden RealNetworks - Microsoft Visual C++ 2008 Runtime (x32 Version: 9.0 - RealNetworks, Inc) Hidden RealNetworks - Microsoft Visual C++ 2010 Runtime (x32 Version: 10.0 - RealNetworks, Inc) Hidden RealPlayer (HKLM-x32\...\RealPlayer 16.0) (Version: 16.0.3 - RealNetworks) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6573 - Realtek Semiconductor Corp.) RealUpgrade 1.1 (x32 Version: 1.1.0 - RealNetworks, Inc.) Hidden Remote Keyboard (x32 Version: 1.2.0.09270 - Sony Corporation) Hidden Remote Play with PlayStation(R)3 (x32 Version: 1.1.0.21090 - Sony Corporation) Hidden Skype™ 5.10 (HKLM-x32\...\{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}) (Version: 5.10.116 - Skype Technologies S.A.) SpeedUpMyPC (HKLM-x32\...\{E55B3271-7CA8-4D0C-AE06-69A24856E996}_is1) (Version: 6.0.1.1 - Uniblue Systems Limited) Sprachtrainer Fonts (HKLM-x32\...\{FBCF2ED3-AFB5-475E-BF9A-30BEAD366FBC}) (Version: 1.00.01 - Ernst Klett Verlag GmbH) SSLx64 (Version: 1.0.0 - Sony Corporation ) Hidden SSLx86 (x32 Version: 1.0.0 - Sony Corporation ) Hidden SupTab (HKLM-x32\...\SupTab) (Version: 1.1.1.0 - ) <==== ATTENTION Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.3.44.1 - Synaptics Incorporated) The Hidden Object Game Show (x32 Version: 2.2.0.97 - WildTangent) Hidden TrackID(TM) with BRAVIA (x32 Version: 1.2.0.09270 - Sony Corportaion) Hidden Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2468871) (Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2533523) (Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2600217) (Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2836939v3) (Version: 3 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2468871) (HKLM-x32\...\{8E34682C-8118-31F1-BC4C-98CD9675E1C2}.KB2468871) (Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2533523) (HKLM-x32\...\{8E34682C-8118-31F1-BC4C-98CD9675E1C2}.KB2533523) (Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2600217) (HKLM-x32\...\{8E34682C-8118-31F1-BC4C-98CD9675E1C2}.KB2600217) (Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2836939v3) (HKLM-x32\...\{8E34682C-8118-31F1-BC4C-98CD9675E1C2}.KB2836939v3) (Version: 3 - Microsoft Corporation) Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden VAIO - Microsoft Visual C++ 2010 SP1 Runtime 10.0.40219.325 (HKLM\...\{34EB42BE-F4D3-44C1-B28E-9740115DB72C}) (Version: 1.0.00.01300 - Sony Corporation) VAIO - PlayMemories Home Plug-in (HKLM\...\{886C0C18-F905-49B2-90BA-EFC0FEDF27C6}) (Version: 2.0.00.14200 - Sony Corporation) VAIO - Remote Play mit PlayStation®3 (HKLM-x32\...\{07441A52-E208-478A-92B7-5C337CA8C131}) (Version: 1.1.0.21090 - Sony Corporation) VAIO - Remote-Tastatur (HKLM-x32\...\{7396FB15-9AB4-4B78-BDD8-24A9C15D2C65}) (Version: 1.2.0.09270 - Sony Corporation) VAIO - Remote-Tastatur mit PlayStation®3 (HKLM-x32\...\{E682702C-609C-4017-99E7-3129C163955F}) (Version: 1.2.0.09210 - Sony Corporation) VAIO - TrackID™ mit BRAVIA (HKLM-x32\...\{2F41EF61-A066-4EBF-84F8-21C1B317A780}) (Version: 1.2.0.09270 - Sony Corporation) VAIO Care (HKLM\...\{471F7C0A-CA3A-4F4C-8346-DE36AD5E23D1}) (Version: 7.3.0.14170 - Sony Corporation) VAIO Control Center (HKLM-x32\...\{8E797841-A110-41FD-B17A-3ABC0641187A}) (Version: 5.2.0.14230 - Sony Corporation) VAIO Data Restore Tool (HKLM-x32\...\{57B955CE-B5D3-495D-AF1B-FAEE0540BFEF}) (Version: 1.9.0.13190 - Sony Corporation) VAIO Data Restore Tool (x32 Version: 1.9.0.13190 - Sony Corporation) Hidden VAIO Easy Connect (HKLM-x32\...\InstallShield_{7C80D30A-AC02-4E3F-B95D-29F0E4FF937B}) (Version: 1.1.2.01120 - Sony Corporation) VAIO Easy Connect (x32 Version: 1.1.2.01120 - Sony Corporation) Hidden VAIO Gate (HKLM-x32\...\{A7C30414-2382-4086-B0D6-01A88ABA21C3}) (Version: 2.4.1.09230 - Sony Corporation) VAIO Gate (x32 Version: 2.4.1.09230 - Sony Corporation) Hidden VAIO Gate Default (HKLM-x32\...\{B7546697-2A80-4256-A24B-1C33163F535B}) (Version: 2.5.2.02090 - Sony Corporation) VAIO Gesture Control (HKLM-x32\...\{692955F2-DE9F-4078-8FAA-858D6F3A1776}) (Version: 1.0.0.12300 - Sony Corporation) VAIO Gesture Control (x32 Version: 1.0.0.12300 - Sony Corporation) Hidden VAIO Improvement (HKLM-x32\...\{3A26D9BD-0F73-432D-B522-2BA18138F7EF}) (Version: 1.3.0.12280 - Sony Corporation) VAIO Improvement Validation (HKLM\...\{75C95C84-264F-4CC7-8A7E-346444E6C7C1}) (Version: 1.0.4.01190 - Sony Corporation) VAIO Sample Contents (HKLM-x32\...\{547C9EB4-4CA6-402F-9D1B-8BD30DC71E44}) (Version: 1.4.2.09010 - Sony Corporation) VAIO Smart Network (HKLM-x32\...\{0899D75A-C2FC-42EA-A702-5B9A5F24EAD5}) (Version: 3.11.0.13150 - Sony Corporation) VAIO Update (HKLM-x32\...\{5BEE8F1F-BD32-4553-8107-500439E43BD7}) (Version: 5.7.0.13130 - Sony Corporation) VAIO Update Merge Module x64 (Version: 5.7.13130 - Sony Corporation) Hidden VAIO*CPU-Lüfterdiagnose (HKLM-x32\...\{BCE6E3D7-B565-4E1B-AC77-F780666A35FB}) (Version: 1.1.0.09200 - Sony Corporation) VAIO-Handbuch (HKLM-x32\...\{C6E893E7-E5EA-4CD5-917C-5443E753FCBD}) (Version: 2.3.0.12300 - Sony Corporation) VAIO-Support für Übertragungen (HKLM-x32\...\{5DDAFB4B-C52E-468A-9E23-3B0CEEB671BF}) (Version: 1.7.0.02231 - Sony Corporation) Valokuvavalikoima (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden VCCx64 (Version: 1.0.0 - Sony Corporation) Hidden VCCx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden VHD (x32 Version: 1.0.0 - Microsoft) Hidden VideoPad Video-Editor (HKLM-x32\...\VideoPad) (Version: 3.25 - NCH Software) Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.98 - WildTangent) Hidden VIx64 (Version: 1.0.0 - Sony Corporation) Hidden VIx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden VMLx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden VO Package (HKLM-x32\...\VOPackage) (Version: 1.0.0.0 - ) VPMx64 (Version: 1.0.0 - Sony Corporation ) Hidden VSNx64 (Version: 1.0.0 - Sony Corporation) Hidden VSNx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden VSSTx64 (Version: 1.0.0 - Sony Corporation ) Hidden VSSTx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden VU5x64 (Version: 1.0.0 - Sony Corporation ) Hidden VU5x86 (x32 Version: 1.0.0 - Sony Corporation ) Hidden VWSTx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden WavePad Audio-Editor (HKLM-x32\...\WavePad) (Version: 5.71 - NCH Software) WildTangent Games App (x32 Version: 4.0.5.36 - WildTangent) Hidden WildTangent-Spiele (HKLM-x32\...\WildTangent sony Master Uninstall) (Version: 1.0.2.5 - WildTangent) Windows Live Communications Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation) Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Essentials (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Family Safety (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Family Safety (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Fotogalleri (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 16.4.3508.0205 - společnost Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 16.4.3508.0205 - Корпорація Майкрософт) Hidden Windows Live Messenger (x32 Version: 15.4.3538.0513 - Microsoft Corporation) Hidden Windows Live Messenger (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Messenger (x32 Version: 16.4.3508.0205 - společnost Microsoft Corporation) Hidden Windows Live Messenger (x32 Version: 16.4.3508.0205 - Корпорация Майкрософт) Hidden Windows Live Messenger (x32 Version: 16.4.3508.0205 - Корпорація Майкрософт) Hidden Windows Live MIME IFilter (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Temel Parçalar (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Writer (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Writer Resources (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Liven peruspaketti (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Liven sähköposti (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden WPM17.8.0.3325 (HKLM-x32\...\WPM) (Version: 17.8.0.3325 - Cherished Technololgy LIMITED) <==== ATTENTION Συλλογή φωτογραφιών (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Основи Windows Live (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Основные компоненты Windows Live (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Почта Windows Live (x32 Version: 16.4.3508.0205 - Корпорация Майкрософт) Hidden Фотоальбом (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Фотогалерия (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Фотографии (общедоступная версия) (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Фотоколекція (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden ==================== Restore Points ========================= 18-02-2014 18:28:03 Windows Live Essentials 18-02-2014 18:38:07 DirectX wurde installiert 18-02-2014 18:39:23 DirectX wurde installiert 18-02-2014 18:40:11 DirectX wurde installiert 18-02-2014 18:43:06 WLSetup 19-02-2014 13:31:38 Removed Skype™ 5.10 19-02-2014 13:39:24 Entfernt Découvertes 1 Sprachtrainer 19-02-2014 13:41:41 D-GISS 2013-2014 wird entfernt 19-02-2014 20:50:02 Uniblue SpeedUpMyPC installation 20-02-2014 10:51:16 Removed McAfee Online Backup 20-02-2014 13:43:26 Malwarebytes Anti-Rootkit Restore Point 21-02-2014 02:15:18 Windows Update 21-02-2014 13:18:01 Wiederherstellungsvorgang 21-02-2014 13:29:56 Windows Update 21-02-2014 16:25:05 Wiederherstellungsvorgang 21-02-2014 16:35:01 Windows Update 21-02-2014 17:03:32 Wiederherstellungsvorgang 21-02-2014 17:12:46 Windows Update ==================== Hosts content: ========================== 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {08E9D536-28C5-4F08-BD75-97694289D449} - System32\Tasks\HQ-Video-Profession-1.3-chromeinstaller => C:\Program Files (x86)\HQ-Video-Profession-1.3\HQ-Video-Profession-1.3-chromeinstaller.exe Task: {0B82AA9E-B80E-41C7-9AC7-E4ED7B0FC3AD} - System32\Tasks\Sony Corporation\VAIO Care\CRMReminder => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-01-31] (Sony Corporation) Task: {0C8BBA57-D804-48C5-B275-FBDB50F9568F} - System32\Tasks\Sony Corporation\VAIO Smart Network\VSN Logon Start => net Task: {1452FD56-6E57-43C8-9568-F8A566E0A8AC} - System32\Tasks\Sony Corporation\VAIO Improvement\VAIOImprovementMonitorSystem => C:\Program Files\Sony\VAIO Improvement\vim.exe [2011-12-27] (Sony Corporation) Task: {14E7506F-5AAB-4B43-B45E-2EFB49C83767} - System32\Tasks\Sony Corporation\VAIO Improvement\VAIOImprovementMonitorUser => C:\Program Files\Sony\VAIO Improvement\vim.exe [2011-12-27] (Sony Corporation) Task: {28BCF312-45DA-4A44-B3F8-DA906C630124} - System32\Tasks\Sony Corporation\VAIO Power Management\VPM Session Change => C:\Program Files\Sony\VAIO Power Management\SPMgr.exe [2012-01-10] (Sony Corporation) Task: {2CC8FB8F-8DAD-42F4-BD88-230BAD415B42} - System32\Tasks\NCH Software\WavePadSevenDays => C:\Program Files (x86)\NCH Software\WavePad\WavePad.exe [2014-02-12] (NCH Software) Task: {3D42CF96-562B-447B-A923-92B159477FEF} - \HQ-Video-Profession-1.3-codedownloader No Task File Task: {3F300AB2-E269-4D84-ABD4-1BB0B4D8B70A} - System32\Tasks\HQ-Video-Profession-1.3-firefoxinstaller => C:\Program Files (x86)\HQ-Video-Profession-1.3\HQ-Video-Profession-1.3-firefoxinstaller.exe Task: {4CEBDB7C-788E-4DA7-AAA0-2A9C5EE36567} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-3184525795-2871511248-3231849656-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2013-08-14] (RealNetworks, Inc.) Task: {54128DEB-5EA8-455E-9BF5-EBCF2E5A4EEB} - System32\Tasks\NCH Software\PhotoStageSevenDays => C:\Program Files (x86)\NCH Software\PhotoStage\PhotoStage.exe [2013-12-24] (NCH Software) Task: {57927F27-6946-4BC5-AEAD-81FBBF2D9E6D} - System32\Tasks\Sony Corporation\VAIO Improvement Validation\VAIO Improvement Validation => C:\Program Files\Sony\VAIO Improvement Validation\viv.exe [2011-01-20] (Sony Corporation) Task: {59EEFC92-7D3F-4B30-B3E9-37479561EB3A} - System32\Tasks\NCH Software\ExpressBurnSevenDays => C:\Program Files (x86)\NCH Software\ExpressBurn\ExpressBurn.exe [2013-10-23] (NCH Software) Task: {5EB9E72B-41AF-4BB0-A3D4-A5C3D8D19107} - System32\Tasks\Sony Corporation\VAIO Care\VCCheckIolo => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-01-31] (Sony Corporation) Task: {7026E15C-69B7-442E-A1AC-63CE687C20A9} - System32\Tasks\SpeedUpMyPC Startup => C:\Program Files (x86)\Uniblue\SpeedUpMyPC\speedupmypc.exe Task: {7AF8A414-4E36-42D1-9AF3-D6C72437841D} - System32\Tasks\Sony Corporation\VAIO Control Center\Level4Month => C:\Program Files (x86)\Sony\VAIO Control Center\WBCBatteryCare.exe [2012-02-23] (Sony Corporation) Task: {83ACB553-5C2E-4E77-98CF-28EF9FA346A9} - System32\Tasks\Sony Corporation\VAIO Gate\VAIO Gate => C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe [2011-09-23] (Sony Corporation) Task: {89568EE6-74D5-4E43-B78A-B530DA0539B3} - System32\Tasks\NCH Software\PrismSevenDays => C:\Program Files (x86)\NCH Software\Prism\Prism.exe [2014-02-01] (NCH Software) Task: {8D1936C2-6DAE-4B20-BCAA-6FCB5F9D2B02} - \HQ-Video-Profession-1.3-enabler No Task File Task: {8F6FA4C6-CBDC-43B8-9F08-E920BEFB9FDE} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {959E6E5E-A55E-4728-B6F8-9EFDF1978E28} - System32\Tasks\VHDInformationCheck => C:\Program Files (x86)\Sony\VAIO Recovery\plugins\InformationCheck.exe [2012-02-24] (Sony Corporation) Task: {9795C0C2-7442-4178-9448-F10D8390D16A} - System32\Tasks\Sony Corporation\VAIO Care\VCOneClick => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-01-31] (Sony Corporation) Task: {A03D22F5-4DBC-49F5-87C5-2E0B7039DE7D} - System32\Tasks\Sony Corporation\VAIO Care\AutoCheckMessage => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-01-31] (Sony Corporation) Task: {A267E964-24C6-400E-836D-2212EDD4F0D2} - System32\Tasks\Sony Corporation\VAIO Gesture Control\VCGULogonTask => C:\Program Files (x86)\Sony\VAIO Camera Gesture Utility\VCGU.exe [2011-12-27] (Sony Corporation) Task: {A2C701DC-6135-4EBD-90A5-5141DE500DBE} - System32\Tasks\Sony Corporation\VAIO Power Management\VPM Logon Start => C:\Program Files\Sony\VAIO Power Management\SPMgr.exe [2012-01-10] (Sony Corporation) Task: {A5D550C1-38A4-42F9-B676-F31F680573E0} - System32\Tasks\Sony Corporation\VAIO Gate\StartExecuteProxy => C:\Program Files\Sony\VAIO Gate\ExecutionProxy.exe [2011-09-23] (Sony Corporation) Task: {B5C7F99F-8D4D-43A5-A6F6-2C85B8FFB7B4} - System32\Tasks\Sony Corporation\VAIO Improvement\VAIOImprovementUploader => C:\Program Files\Sony\VAIO Improvement\viuploader.exe [2011-12-27] (Sony Corporation) Task: {B5E9722B-7215-4EF7-97BE-07195979FFDA} - System32\Tasks\Sony Corporation\VAIO Power Management\VPM Unlock => C:\Program Files\Sony\VAIO Power Management\SPMgr.exe [2012-01-10] (Sony Corporation) Task: {C8511B7D-34A2-4AC7-8972-E726BE7FF761} - System32\Tasks\Sony Corporation\VAIO Control Center\Level4Daily => C:\Program Files (x86)\Sony\VAIO Control Center\WBCBatteryCare.exe [2012-02-23] (Sony Corporation) Task: {C91256BB-683E-4083-B80C-3633C2362593} - System32\Tasks\Sony Corporation\VAIO Care\VCMetrics => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-01-31] (Sony Corporation) Task: {D57809F1-BA1D-4115-A1DF-DA2897EE75FB} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-3184525795-2871511248-3231849656-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2013-08-14] (RealNetworks, Inc.) Task: {D7CE3438-2BA1-4F06-92D3-8E49A3D08735} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-20] (Adobe Systems Incorporated) Task: {DBF9BC6E-C83E-40E5-B300-4CA3A54D685E} - \HQ-Video-Profession-1.3-updater No Task File Task: {DC3E83CD-5AD8-4255-9C36-2DADA92ED826} - System32\Tasks\SpeedUpMyPC Maintenance => C:\Program Files (x86)\Uniblue\SpeedUpMyPC\speedupmypc.exe Task: {F41BBD59-E1C6-4097-A746-6EBEF5935917} - System32\Tasks\Sony Corporation\VAIO Care\VAIO Care => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-01-31] (Sony Corporation) Task: {FAF8729C-5CE1-4F43-8FEF-C9AE178450D8} - System32\Tasks\Sony Corporation\VAIO Care\VAU => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-01-31] (Sony Corporation) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\SpeedUpMyPC Maintenance.job => C:\Program Files (x86)\Uniblue\SpeedUpMyPC\speedupmypc.exe ==================== Loaded Modules (whitelisted) ============= 2014-02-06 16:13 - 2014-02-06 16:13 - 01102336 _____ () C:\Program Files (x86)\MyPC Backup\x64\System.Data.SQLite.dll 2012-05-22 22:18 - 2012-02-23 03:11 - 00128280 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe 2010-10-19 08:31 - 2010-10-19 08:31 - 00205312 _____ () C:\Program Files\Netzmanager\NMInfraIS2\driver64\SoftplugLib.DLL 2013-08-14 15:19 - 2013-08-14 15:19 - 00039056 _____ () C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe 2014-02-19 15:27 - 2014-02-19 15:27 - 00061456 _____ () C:\Users\Caveman\AppData\Roaming\VOPackage\VOsrv.exe 2012-03-20 02:15 - 2012-03-19 08:38 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2014-02-18 14:38 - 2014-01-14 20:46 - 03140608 _____ () C:\Users\Caveman\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe 2014-02-06 16:19 - 2014-02-06 16:19 - 00012288 _____ () C:\Program Files (x86)\MyPC Backup\GetText.dll 2011-11-09 08:55 - 2011-11-09 08:55 - 00016384 _____ () c:\Program Files (x86)\ATI Technologies\ATI.ACE\Branding\Branding.dll 2012-02-03 15:21 - 2012-02-03 15:21 - 00369152 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll 2011-11-30 17:49 - 2011-11-30 17:49 - 00321024 _____ () C:\Program Files\Sony\VAIO Care\CRM\ManagedVAIORecoveryMedia.dll 2011-11-30 17:49 - 2011-11-30 17:49 - 00179712 _____ () C:\Program Files\Sony\VAIO Care\CRM\VAIORecovery.dll 2011-11-30 17:49 - 2011-11-30 17:49 - 00054784 _____ () C:\Program Files\Sony\VAIO Care\CRM\Logging.dll 2011-11-30 17:49 - 2011-11-30 17:49 - 00061440 _____ () C:\Program Files\Sony\VAIO Care\CRM\VAIOCommon.dll 2011-11-30 17:49 - 2011-11-30 17:49 - 00192000 _____ () C:\Program Files\Sony\VAIO Care\CRM\OsServices.dll 2011-11-30 17:49 - 2011-11-30 17:49 - 00037376 _____ () C:\Program Files\Sony\VAIO Care\CRM\PluginFactory.dll 2011-11-30 17:49 - 2011-11-30 17:49 - 02229760 _____ () C:\Program Files\Sony\VAIO Care\CRM\RecoveryPartitionManager.dll 2011-11-30 17:49 - 2011-11-30 17:49 - 00035840 _____ () C:\Program Files\Sony\VAIO Care\CRM\XMLTools.dll 2011-11-30 17:49 - 2011-11-30 17:49 - 00055296 _____ () C:\Program Files\Sony\VAIO Care\CRM\VAIOInstallAppsDrivers.dll 2011-11-30 17:49 - 2011-11-30 17:49 - 00137728 _____ () C:\Program Files\Sony\VAIO Care\CRM\InstallDB.dll 2011-11-30 17:49 - 2011-11-30 17:49 - 00134144 _____ () C:\Program Files\Sony\VAIO Care\CRM\InstallationTools.dll 2011-11-30 17:49 - 2011-11-30 17:49 - 00024064 _____ () C:\Program Files\Sony\VAIO Care\CRM\VAIOUtility.dll 2011-11-30 17:49 - 2011-11-30 17:49 - 00276992 _____ () C:\Program Files\Sony\VAIO Care\READ\RecoveryPartitionManagerREAD.dll 2013-09-13 19:51 - 2013-09-13 19:51 - 00087952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2013-09-13 19:51 - 2013-09-13 19:51 - 01242952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2012-05-22 22:44 - 2012-02-23 16:35 - 00021128 _____ () C:\Program Files (x86)\Sony\VAIO Control Center\VESBasePS.dll 2012-07-18 17:13 - 2004-09-09 16:13 - 00364544 ____N () C:\Program Files (x86)\PIXELA\Everio MediaBrowser\pxl_m17n_tool.dll 2014-02-15 08:54 - 2014-02-15 08:54 - 03578992 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll 2014-02-14 11:22 - 2014-02-14 11:22 - 00172032 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\b162055347700182d96325676dd591c4\IsdiInterop.ni.dll 2012-05-22 22:09 - 2011-11-29 19:00 - 00059392 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll 2012-05-22 22:17 - 2012-02-23 03:12 - 01198872 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll 2014-02-20 22:59 - 2014-02-20 22:59 - 16265096 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_70.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Driver" ==================== Disabled items from MSCONFIG ============== MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe" ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (02/22/2014 01:06:24 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/22/2014 01:06:18 PM) (Source: McLogEvent) (User: NT-AUTORITÄT) Description: MCSCAN32 Engine Initialisation failed. Engine returned error : 1 Error: (02/22/2014 00:55:09 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/22/2014 00:55:08 PM) (Source: McLogEvent) (User: NT-AUTORITÄT) Description: MCSCAN32 Engine Initialisation failed. Engine returned error : 1 Error: (02/22/2014 03:53:56 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/22/2014 03:53:51 AM) (Source: McLogEvent) (User: NT-AUTORITÄT) Description: MCSCAN32 Engine Initialisation failed. Engine returned error : 1 Error: (02/21/2014 06:08:16 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/21/2014 06:07:59 PM) (Source: McLogEvent) (User: NT-AUTORITÄT) Description: MCSCAN32 Engine Initialisation failed. Engine returned error : 1 System errors: ============= Error: (02/22/2014 01:07:23 PM) (Source: WMPNetworkSvc) (User: ) Description: WMPNetworkSvc0x80004005 Error: (02/22/2014 01:06:15 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Util EnhanceTronic" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (02/22/2014 01:06:15 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Update EnhanceTronic" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (02/22/2014 01:06:10 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Avira Browser-Schutz" ist von folgendem Dienst abhängig: AntiVirService. Dieser Dienst ist eventuell nicht installiert. Error: (02/22/2014 01:06:09 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "IePlugin Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (02/22/2014 01:05:13 PM) (Source: DCOM) (User: ) Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E} Error: (02/22/2014 00:56:02 PM) (Source: WMPNetworkSvc) (User: ) Description: WMPNetworkSvc0x80004005 Error: (02/22/2014 00:54:54 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Avira Browser-Schutz" ist von folgendem Dienst abhängig: AntiVirService. Dieser Dienst ist eventuell nicht installiert. Error: (02/22/2014 03:59:42 AM) (Source: DCOM) (User: ) Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E} Error: (02/22/2014 03:53:44 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Avira Browser-Schutz" ist von folgendem Dienst abhängig: AntiVirService. Dieser Dienst ist eventuell nicht installiert. Microsoft Office Sessions: ========================= Error: (02/22/2014 01:06:24 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/22/2014 01:06:18 PM) (Source: McLogEvent)(User: NT-AUTORITÄT) Description: 1 Error: (02/22/2014 00:55:09 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/22/2014 00:55:08 PM) (Source: McLogEvent)(User: NT-AUTORITÄT) Description: 1 Error: (02/22/2014 03:53:56 AM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/22/2014 03:53:51 AM) (Source: McLogEvent)(User: NT-AUTORITÄT) Description: 1 Error: (02/21/2014 06:08:16 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/21/2014 06:07:59 PM) (Source: McLogEvent)(User: NT-AUTORITÄT) Description: 1 ==================== Memory info =========================== Percentage of memory in use: 58% Total physical RAM: 3990.72 MB Available physical RAM: 1659.85 MB Total Pagefile: 7979.62 MB Available Pagefile: 4720.21 MB Total Virtual: 8192 MB Available Virtual: 8191.84 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:446.27 GB) (Free:291.48 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 466 GB) (Disk ID: F1B7C5B4) Partition: GPT Partition Type. ==================== End Of Log ============================ |
Themen zu Awesomehp ist auf meinem Computer |
anfrage, awesomehp, awesomehp entfernen, computer, erscheint, folge, folgendes, fragen, google, kleiner, live, mobogenie, mobogenie entfernen, movie, mögliche, nicht mehr, schutzprogramme, symbole, trojan.android.nsd, verändert, windows live, öffnen |