|
Plagegeister aller Art und deren Bekämpfung: Ich kann bestimmte Internetseiten nicht mehr öffnen z.B. ebay, amazon... - es gibt keine Fehlermeldung!Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
08.03.2014, 20:30 | #1 |
| Ich kann bestimmte Internetseiten nicht mehr öffnen z.B. ebay, amazon... - es gibt keine Fehlermeldung! Hallo zusammen! ich brauche Eure Hilfe. Es besteht folgendes Problem: Ich kann ein paar Internetseiten (ebay, amazon etc) neuerdings nicht mehr öffnen. Wenn ich die gewünschte Seite aufrufen möchte, kommt folgende Meldung (Ups! Google Chrome konnte keine Verbindung zu www.ebay.de herstellen). Ich weiß nicht mehr weiter. Hoffentlich könnt ihr mir helfen? Ich wäre euch super dankbar, da es so echt kein Zustand ist... Für Eure Hilfe schon mal vielen Dank. |
08.03.2014, 21:15 | #2 |
/// the machine /// TB-Ausbilder | Ich kann bestimmte Internetseiten nicht mehr öffnen z.B. ebay, amazon... - es gibt keine Fehlermeldung! hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
08.03.2014, 21:37 | #3 |
| Ich kann bestimmte Internetseiten nicht mehr öffnen z.B. ebay, amazon... - es gibt keine Fehlermeldung! hallo,
__________________also als erstes FRST.txt: [COLOR="Blue"] FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 08-03-2014 01 Ran by V5-573G (administrator) on MILAN on 08-03-2014 21:24:11 Running from C:\Users\V5-573G\Downloads Windows 8.1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: Downloading Farbar Recovery Scan Tool Download link for 64-Bit Version: Downloading Farbar Recovery Scan Tool Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: FRST Tutorial - How to use Farbar Recovery Scan Tool - Geeks to Go Forums ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Qualcomm Atheros Commnucations) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Acer Incorporated) C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Microsoft Corporation) C:\WINDOWS\system32\dashost.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan 2.0\kss.exe (Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe (McAfee, Inc.) C:\Program Files\McAfee\AppStats\MfeASUM.exe (McAfee, Inc.) C:\windows\system32\mfevtps.exe (Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe (McAfee, Inc.) C:\Program Files\McAfee\MSC\McAPExe.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe () C:\Program Files (x86)\Acer Incorporated\HID Monitor\HIDMonitor.exe (Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe (Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMTray.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Microsoft Corporation) C:\Windows\System32\skydrive.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Atheros Communications) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe (Dolby Laboratories Inc.) C:\Dolby PCEE4\pcee4.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan 2.0\kss.exe (Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE (McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelinesvc.exe (CyberLink) C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe (WildTangent) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe (Intel Corporation) C:\WINDOWS\system32\igfxext.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe (Nero AG) c:\Program Files (x86)\Nero\Update\NASvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Reader_6.3.9600.16422_x64__8wekyb3d8bbwe\glcnd.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20413_x64__8wekyb3d8bbwe\LiveComm.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13538376 2013-05-13] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1307720 2013-04-24] (Realtek Semiconductor) HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3016432 2013-03-07] (Synaptics Incorporated) HKLM\...\Run: [Logitech Download Assistant] - C:\Windows\System32\LogiLDA.dll [3933496 2012-09-20] (Logitech, Inc.) HKLM-x32\...\Run: [mcpltui_exe] - C:\Program Files\McAfee.com\Agent\mcagent.exe [537512 2013-09-24] (McAfee, Inc.) HKLM-x32\...\Run: [Norton Online Backup] - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [2994880 2012-08-15] (Symantec Corporation) HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-02-21] (Apple Inc.) HKLM-x32\...\Run: [Avira Systray] - C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [172624 2014-02-24] (Avira Operations GmbH & Co. KG) Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer\Run: [BtvStack] - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [132224 2013-02-28] ( (Atheros Communications)) HKU\S-1-5-21-1255564938-2326567129-3581081882-1001\...\RunOnce: [WAB Migrate] - C:\Program Files\Windows Mail\wab.exe [516608 2013-08-22] (Microsoft Corporation) HKU\S-1-5-21-1255564938-2326567129-3581081882-1002\...\Run: [KSS] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan 2.0\kss.exe [202328 2012-12-07] (Kaspersky Lab ZAO) AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [168616 2013-09-05] (NVIDIA Corporation) AppInit_DLLs: ,C:\WINDOWS\system32\nvinitx.dll => C:\WINDOWS\system32\nvinitx.dll [168616 2013-09-05] (NVIDIA Corporation) AppInit_DLLs-x32: C:\WINDOWS\SysWOW64\nvinit.dll => C:\WINDOWS\SysWOW64\nvinit.dll [141336 2013-09-05] (NVIDIA Corporation) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Google HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN Deutschland: Aktuelle Nachrichten, Outlook.com Email und Skype Login. SearchScopes: HKLM - DefaultScope {DB9E446F-8F27-460D-A719-33FE13FC296F} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS SearchScopes: HKLM - {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms} SearchScopes: HKLM - {DB9E446F-8F27-460D-A719-33FE13FC296F} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS SearchScopes: HKLM-x32 - DefaultScope {DB9E446F-8F27-460D-A719-33FE13FC296F} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS SearchScopes: HKLM-x32 - {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms} SearchScopes: HKLM-x32 - {DB9E446F-8F27-460D-A719-33FE13FC296F} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS SearchScopes: HKCU - DefaultScope {DB9E446F-8F27-460D-A719-33FE13FC296F} URL = SearchScopes: HKCU - {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms} SearchScopes: HKCU - {DB9E446F-8F27-460D-A719-33FE13FC296F} URL = BHO: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\IEPlugIn.dll (Qualcomm Atheros Commnucations) BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) BHO-x32: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files\mcafee\msc\McSnIePl64.dll (McAfee, Inc.) Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files (x86)\McAfee\msc\McSnIePl.dll (McAfee, Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Chrome: ======= CHR HomePage: hxxp://www.google.de/ CHR Extension: (Google Docs) - C:\Users\V5-573G\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-01-11] CHR Extension: (Google Drive) - C:\Users\V5-573G\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-01-11] CHR Extension: (YouTube) - C:\Users\V5-573G\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-01-11] CHR Extension: (Google-Suche) - C:\Users\V5-573G\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-01-11] CHR Extension: (Google Kalender) - C:\Users\V5-573G\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2014-01-11] CHR Extension: (No Name) - C:\Users\V5-573G\AppData\Local\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef [2014-01-11] CHR Extension: (SiteAdvisor) - C:\Users\V5-573G\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2014-01-11] CHR Extension: (Click&Clean) - C:\Users\V5-573G\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghgabhipcejejjmhhchfonmamedcbeod [2014-02-04] CHR Extension: (Google Kalender (von Google)) - C:\Users\V5-573G\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmbgaklkmjakoegficnlkhebmhkjfich [2014-01-11] CHR Extension: (Streamus™ (Beta!)) - C:\Users\V5-573G\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbnkffmindojffecdhbbmekbmkkfpmjd [2014-01-31] CHR Extension: (Google Mail-Checker) - C:\Users\V5-573G\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2014-01-11] CHR Extension: (Internetradio) - C:\Users\V5-573G\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpkodmmncpmecaandemchjamhamhjnep [2014-01-31] CHR Extension: (Google Wallet) - C:\Users\V5-573G\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-11] CHR Extension: (Click&Clean App) - C:\Users\V5-573G\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdabfienifkbhoihedcgeogidfmibmhp [2014-01-11] CHR Extension: (Google Mail) - C:\Users\V5-573G\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-01-11] ==================== Services (Whitelisted) ================= R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [227968 2013-02-28] (Qualcomm Atheros Commnucations) S2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [117328 2014-02-24] (Avira Operations GmbH & Co. KG) R2 CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2615368 2013-02-19] (Acer Incorporated) R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [660040 2013-01-18] (Acer Incorporated) R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [227904 2013-12-28] (WildTangent) R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-03-20] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-03-20] (Intel Corporation) R2 KSS; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan 2.0\kss.exe [202328 2012-12-07] (Kaspersky Lab ZAO) R2 LMSvc; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [431656 2013-04-26] (Acer Incorporate) R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe [123384 2014-01-22] (McAfee, Inc.) R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [178048 2013-11-28] (McAfee, Inc.) S3 McAWFwk; C:\Program Files\Common Files\mcafee\actwiz\McAWFwk.exe [334760 2012-12-21] (McAfee, Inc.) R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 McNaiAnn; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) S3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [602944 2013-08-02] (McAfee, Inc.) S4 McOobeSv2; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 mcpltsvc; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 McProxy; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 MfeASUM; C:\Program Files\McAfee\AppStats\MfeASUM.exe [335216 2013-11-21] (McAfee, Inc.) R2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1025232 2013-11-26] (McAfee, Inc.) R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [219272 2013-11-04] (McAfee, Inc.) R2 mfevtp; C:\windows\system32\mfevtps.exe [182752 2013-11-04] (McAfee, Inc.) R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [3943104 2012-08-15] (Symantec Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra) S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows (R) Win 7 DDK provider) R3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2013-02-28] (Qualcomm Atheros) R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [224768 2013-08-22] (Microsoft Corporation) R1 ccSet_NARA; C:\Windows\system32\drivers\NARAx64\0401000.00E\ccSetx64.sys [168608 2012-05-26] (Symantec Corporation) R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [70112 2013-11-04] (McAfee, Inc.) S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.) S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation) S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation) S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation) R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2013-11-11] (Microsoft Corporation) R3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-01-10] (Acer Incorporated) S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-03-20] (Intel Corporation) R2 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [179792 2013-11-04] (McAfee, Inc.) R1 MfeASKM; C:\Program Files\McAfee\AppStats\MfeASKM.sys [31408 2013-11-21] (McAfee, Inc.) R2 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [311120 2013-11-04] (McAfee, Inc.) S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [69344 2013-11-04] (McAfee, Inc.) R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [519576 2013-11-04] (McAfee, Inc.) R2 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [782360 2013-11-04] (McAfee, Inc.) R3 mfencbdc; C:\Windows\system32\DRIVERS\mfencbdc.sys [411944 2013-11-26] (McAfee, Inc.) S3 mfencrk; C:\Windows\system32\DRIVERS\mfencrk.sys [96112 2013-11-26] (McAfee, Inc.) R2 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [343696 2013-11-04] (McAfee, Inc.) R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation) S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation) S3 QRDCIO; C:\Windows\System32\drivers\QRDCIO.sys [9728 2009-10-20] (QUANTA) R3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [15704 2013-01-10] (Acer Incorporated) S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924512 2013-08-22] (Microsoft Corporation) R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [455240 2013-03-05] (RTS Corporation) S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2013-10-26] (Microsoft Corporation) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [31984 2013-03-07] (Synaptics Incorporated) S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-11-14] (Microsoft Corporation) S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-03-08 21:21 - 2014-03-08 21:24 - 00025972 _____ () C:\Users\V5-573G\Downloads\Addition.txt 2014-03-08 21:20 - 2014-03-08 21:24 - 00019967 _____ () C:\Users\V5-573G\Downloads\FRST.txt 2014-03-08 21:20 - 2014-03-08 21:24 - 00000000 ____D () C:\FRST 2014-03-08 21:17 - 2014-03-08 21:18 - 02156544 _____ (Farbar) C:\Users\V5-573G\Downloads\FRST64.exe 2014-03-08 20:01 - 2014-03-08 20:01 - 00001129 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-03-08 20:01 - 2014-03-08 20:01 - 00000000 ____D () C:\Users\V5-573G\AppData\Roaming\Malwarebytes 2014-03-08 20:01 - 2014-03-08 20:01 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-03-08 20:01 - 2014-03-08 20:01 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-03-08 20:01 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2014-03-08 20:00 - 2014-03-08 20:00 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\V5-573G\Downloads\mbam-setup-1.75.0.1300.exe 2014-03-08 19:48 - 2014-03-08 19:48 - 04375224 _____ (F-Secure Corporation) C:\Users\V5-573G\Downloads\F-SecureOnlineScanner.exe 2014-03-08 19:36 - 2014-03-08 19:36 - 00001324 _____ () C:\Users\V5-573G\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kaspersky Security Scan.lnk 2014-03-08 19:36 - 2014-03-08 19:35 - 00001097 _____ () C:\Users\V5-573G\Desktop\Kaspersky Security Scan.lnk 2014-03-08 19:35 - 2014-03-08 19:35 - 00000000 ____D () C:\ProgramData\Kaspersky Lab 2014-03-08 19:35 - 2014-03-08 19:35 - 00000000 ____D () C:\Program Files (x86)\Kaspersky Lab 2014-03-08 19:32 - 2014-03-08 19:32 - 00185944 _____ (Лаборатория Касперского) C:\Users\V5-573G\Downloads\kss12.0.1.117abRU_EN_DE_FR_ES_IT_JA_PT_ZH_5623.exe 2014-03-08 19:30 - 2014-03-08 19:30 - 00000000 ____D () C:\Users\V5-573G\AppData\Roaming\QuickScan 2014-03-08 19:00 - 2014-03-08 19:00 - 04051872 _____ (Avira Operations GmbH & Co. KG) C:\Users\V5-573G\Downloads\avira_de_av___ws.exe 2014-03-08 18:54 - 2014-03-08 18:54 - 00001157 _____ () C:\Users\Public\Desktop\Avira.lnk 2014-03-08 18:05 - 2014-03-08 18:05 - 00000000 ____D () C:\Users\V5-573G\Documents\PC Speed Maximizer 2014-03-08 18:03 - 2014-03-08 18:03 - 00000000 ____D () C:\ProgramData\Avira 2014-03-08 18:03 - 2014-03-08 18:03 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-03-08 18:02 - 2014-03-08 18:54 - 00000000 ____D () C:\ProgramData\Package Cache 2014-03-08 18:00 - 2014-03-08 18:42 - 00000000 ____D () C:\ProgramData\MFAData 2014-03-08 18:00 - 2014-03-08 18:00 - 00000000 ____D () C:\Users\V5-573G\AppData\Local\MFAData 2014-03-08 18:00 - 2014-03-08 18:00 - 00000000 ____D () C:\Users\V5-573G\AppData\Local\Cyberlink 2014-03-08 18:00 - 2014-03-08 18:00 - 00000000 ____D () C:\Users\V5-573G\AppData\Local\Avg2014 2014-03-08 17:45 - 2014-03-08 18:42 - 00000000 ____D () C:\ProgramData\CDB 2014-03-08 17:42 - 2014-03-08 18:42 - 00000000 ____D () C:\Program Files (x86)\SupTab 2014-03-08 17:42 - 2014-03-08 18:24 - 00000000 ____D () C:\ProgramData\WPM 2014-03-08 17:41 - 2014-03-08 18:22 - 00000000 ____D () C:\Users\V5-573G\AppData\Roaming\systweak 2014-03-08 17:41 - 2014-03-08 18:22 - 00000000 ____D () C:\Users\V5-573G\AppData\Roaming\sweet-page 2014-03-02 18:14 - 2014-03-08 18:42 - 00000000 ____D () C:\Users\V5-573G\Desktop\Programme 2014-03-02 17:46 - 2014-03-02 17:48 - 00000000 ____D () C:\Users\V5-573G\Desktop\Samsung Note 3 2014-03-02 17:45 - 2014-03-02 17:45 - 00000000 ____D () C:\Users\Public\Documents\NativeFus_Log 2014-03-02 17:42 - 2014-03-02 17:45 - 00000000 ____D () C:\Users\V5-573G\AppData\Roaming\Samsung 2014-03-02 17:42 - 2014-03-02 17:45 - 00000000 ____D () C:\Program Files (x86)\Samsung 2014-03-02 17:42 - 2014-03-02 17:42 - 00000000 ____D () C:\Users\V5-573G\Documents\SelfMV 2014-03-02 17:42 - 2014-03-02 17:42 - 00000000 ____D () C:\Users\V5-573G\Documents\samsung 2014-03-02 17:42 - 2014-03-02 17:42 - 00000000 ____D () C:\ProgramData\Samsung 2014-03-02 17:09 - 2014-03-03 18:59 - 00000000 ____D () C:\ProgramData\TuneUp Software 2014-03-02 17:09 - 2014-03-02 17:09 - 00000000 ____D () C:\Users\V5-573G\AppData\Roaming\TuneUp Software 2014-03-02 17:07 - 2014-03-08 18:42 - 00000000 ____D () C:\Program Files\FreeFileSync 2014-03-02 17:07 - 2014-03-02 17:11 - 00000000 ____D () C:\Users\V5-573G\AppData\Roaming\FreeFileSync 2014-03-02 17:04 - 2014-03-02 17:04 - 00000000 ____D () C:\Users\V5-573G\AppData\Roaming\OpenOffice 2014-03-02 14:53 - 2014-03-02 14:53 - 00000000 ____D () C:\Program Files (x86)\OpenOffice 4 2014-03-02 14:51 - 2014-03-08 18:44 - 00000000 ____D () C:\b8e75ef9fc48cff92b 2014-03-02 14:51 - 2014-03-08 18:42 - 00000000 ____D () C:\Users\V5-573G\Desktop\OpenOffice 4.0.1 (de) Installation Files 2014-03-02 14:43 - 2014-03-02 14:50 - 163606685 _____ () C:\Users\V5-573G\Downloads\Apache_OpenOffice_4.0.1_Win_x86_install_de.exe 2014-03-02 12:19 - 2014-03-02 12:19 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-03-02 12:19 - 2014-03-02 12:19 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-03-02 12:17 - 2014-03-02 12:18 - 13079688 _____ (Microsoft Corporation) C:\Users\V5-573G\Downloads\Silverlight_x64.exe 2014-03-01 09:53 - 2014-03-01 10:39 - 00000000 ____D () C:\Users\V5-573G\AppData\Roaming\Apple Computer 2014-03-01 09:53 - 2014-03-01 09:53 - 00001799 _____ () C:\Users\Public\Desktop\iTunes.lnk 2014-03-01 09:53 - 2014-03-01 09:53 - 00000000 ____D () C:\Users\V5-573G\AppData\Local\Apple Computer 2014-03-01 09:53 - 2012-08-21 13:01 - 00033240 _____ (GEAR Software Inc.) C:\WINDOWS\system32\Drivers\GEARAspiWDM.sys 2014-03-01 09:52 - 2014-03-01 09:53 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-03-01 09:52 - 2014-03-01 09:53 - 00000000 ____D () C:\Program Files\iTunes 2014-03-01 09:52 - 2014-03-01 09:53 - 00000000 ____D () C:\Program Files (x86)\iTunes 2014-03-01 09:52 - 2014-03-01 09:52 - 00000000 ____D () C:\Users\V5-573G\AppData\Local\Apple 2014-03-01 09:52 - 2014-03-01 09:52 - 00000000 ____D () C:\ProgramData\Apple Computer 2014-03-01 09:52 - 2014-03-01 09:52 - 00000000 ____D () C:\Program Files\iPod 2014-03-01 09:52 - 2014-03-01 09:52 - 00000000 ____D () C:\Program Files (x86)\Apple Software Update 2014-03-01 09:51 - 2014-03-01 09:52 - 00000000 ____D () C:\ProgramData\Apple 2014-03-01 09:51 - 2014-03-01 09:51 - 00000000 ____D () C:\Program Files\Common Files\Apple 2014-03-01 09:51 - 2014-03-01 09:51 - 00000000 ____D () C:\Program Files\Bonjour 2014-03-01 09:51 - 2014-03-01 09:51 - 00000000 ____D () C:\Program Files (x86)\Bonjour 2014-03-01 09:43 - 2014-03-01 09:48 - 148885840 _____ (Apple Inc.) C:\Users\V5-573G\Downloads\iTunes64Setup.exe 2014-03-01 09:10 - 2014-03-01 09:10 - 00000000 ____D () C:\Users\V5-573G\AppData\Roaming\WindSolutions 2014-03-01 08:49 - 2014-03-01 08:49 - 00000000 ____D () C:\ProgramData\WindSolutions 2014-03-01 08:48 - 2014-03-01 08:49 - 08671996 _____ () C:\Users\V5-573G\Downloads\CopyTransManagerDEv0.995.zip 2014-03-01 08:37 - 2014-03-01 09:50 - 00000000 ____D () C:\Users\V5-573G\AppData\Roaming\MediaMonkey 2014-03-01 08:37 - 2014-03-01 08:37 - 00001063 _____ () C:\Users\Public\Desktop\MediaMonkey.lnk 2014-03-01 08:37 - 2014-03-01 08:37 - 00000000 ____D () C:\Users\V5-573G\AppData\Local\MediaMonkey 2014-03-01 08:37 - 2014-03-01 08:37 - 00000000 ____D () C:\ProgramData\MediaMonkey 2014-03-01 08:37 - 2014-03-01 08:37 - 00000000 ____D () C:\Program Files (x86)\MediaMonkey 2014-03-01 08:25 - 2014-03-01 08:26 - 15170864 _____ (Ventis Media Inc. ) C:\Users\V5-573G\Downloads\MediaMonkey_4.1.0.1691.exe 2014-03-01 07:19 - 2014-03-01 07:19 - 00000000 ____D () C:\WINDOWS\LastGood.Tmp 2014-02-16 21:05 - 2013-12-09 01:19 - 00570880 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdrm.dll 2014-02-16 21:05 - 2013-12-09 00:55 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdrm.dll 2014-02-16 21:04 - 2014-01-09 09:25 - 02804224 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2014-02-16 21:04 - 2014-01-09 08:59 - 01020928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll 2014-02-16 21:04 - 2014-01-09 08:59 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll 2014-02-16 21:04 - 2014-01-09 08:49 - 00919040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2014-02-16 21:04 - 2014-01-09 08:44 - 00720384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll 2014-02-16 21:04 - 2014-01-09 08:43 - 00121344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveShell.dll 2014-02-16 21:04 - 2014-01-09 08:29 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SkyDriveShell.dll 2014-02-16 21:04 - 2014-01-09 08:28 - 04217344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll 2014-02-16 21:04 - 2014-01-09 08:28 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll 2014-02-16 21:04 - 2014-01-09 08:18 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe 2014-02-16 21:04 - 2014-01-07 08:03 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.exe 2014-02-16 21:04 - 2014-01-07 06:59 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcaui.exe 2014-02-16 21:04 - 2014-01-04 21:50 - 01462216 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll 2014-02-16 21:04 - 2014-01-04 20:22 - 01202888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll 2014-02-16 21:04 - 2014-01-04 15:30 - 13209088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2014-02-16 21:04 - 2014-01-04 15:23 - 11702272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2014-02-16 21:04 - 2014-01-04 14:42 - 01105408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2014-02-16 21:04 - 2014-01-04 14:40 - 07416832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2014-02-16 21:04 - 2014-01-04 14:36 - 00830976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll 2014-02-16 21:04 - 2014-01-04 14:28 - 04961792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2014-02-16 21:04 - 2013-12-21 03:10 - 00009701 _____ () C:\WINDOWS\SysWOW64\connectedsearch-results.searchconnector-ms 2014-02-16 21:04 - 2013-12-21 03:10 - 00009701 _____ () C:\WINDOWS\system32\connectedsearch-results.searchconnector-ms 2014-02-16 21:04 - 2013-12-20 11:10 - 01113040 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2014-02-16 21:04 - 2013-12-20 07:13 - 00835584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2014-02-16 17:56 - 2013-12-09 01:34 - 01227264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2014-02-16 17:56 - 2013-12-09 01:04 - 00980480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll 2014-02-16 17:56 - 2013-11-27 16:34 - 03210528 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll 2014-02-16 17:56 - 2013-11-27 16:27 - 00809872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2014-02-16 17:56 - 2013-11-27 15:00 - 00663680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2014-02-16 17:56 - 2013-11-27 14:47 - 02804528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll 2014-02-16 17:56 - 2013-11-27 13:02 - 00142848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ipnat.sys 2014-02-16 17:56 - 2013-11-27 11:54 - 00461824 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll 2014-02-16 17:56 - 2013-11-27 11:24 - 00306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\msieftp.dll 2014-02-16 17:56 - 2013-11-27 11:08 - 00336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsGdiConverter.dll 2014-02-16 17:56 - 2013-11-27 10:46 - 00273920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msieftp.dll 2014-02-16 17:56 - 2013-11-27 10:41 - 00136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll 2014-02-16 17:56 - 2013-11-27 10:17 - 00263168 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2014-02-16 17:56 - 2013-11-27 10:10 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll 2014-02-16 17:56 - 2013-11-27 09:58 - 01503232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2014-02-16 17:56 - 2013-11-27 09:56 - 00218112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.dll 2014-02-16 17:56 - 2013-11-27 05:01 - 00385614 _____ () C:\WINDOWS\system32\ApnDatabase.xml 2014-02-16 17:56 - 2013-11-26 14:22 - 01928144 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll 2014-02-16 17:56 - 2013-11-26 14:20 - 02131120 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2014-02-16 17:56 - 2013-11-26 14:20 - 01399176 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2014-02-16 17:56 - 2013-11-26 14:20 - 01374384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2014-02-16 17:56 - 2013-11-26 12:50 - 01371312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll 2014-02-16 17:56 - 2013-11-26 12:44 - 02142936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2014-02-16 17:56 - 2013-11-26 12:44 - 01204968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll 2014-02-16 17:56 - 2013-11-26 11:13 - 04191232 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2014-02-16 17:56 - 2013-11-26 10:21 - 18577920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2014-02-16 17:56 - 2013-11-26 09:28 - 13925888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2014-02-16 17:56 - 2013-11-25 02:45 - 00142680 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS 2014-02-16 17:56 - 2013-11-25 02:32 - 01119064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2014-02-16 17:56 - 2013-11-25 00:30 - 00513536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll 2014-02-16 17:56 - 2013-11-25 00:28 - 00589824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll 2014-02-16 17:56 - 2013-11-23 13:47 - 00032088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll 2014-02-16 17:56 - 2013-11-23 12:49 - 21196664 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2014-02-16 17:56 - 2013-11-23 09:19 - 18642504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2014-02-16 17:56 - 2013-11-23 08:13 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\bi.dll 2014-02-16 17:56 - 2013-11-23 08:13 - 00019456 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BtaMPM.sys 2014-02-16 17:56 - 2013-11-23 08:08 - 00403456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2014-02-16 17:56 - 2013-11-23 05:50 - 00282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll 2014-02-16 17:56 - 2013-11-23 04:57 - 00637952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe 2014-02-16 17:56 - 2013-11-23 04:48 - 00479744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe 2014-02-16 17:56 - 2013-11-23 04:25 - 00744448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll 2014-02-16 17:56 - 2013-11-23 04:25 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll 2014-02-16 17:56 - 2013-11-23 04:19 - 02617344 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2014-02-16 17:56 - 2013-11-23 04:15 - 02295808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll 2014-02-16 17:56 - 2013-11-21 07:58 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceregistration.dll 2014-02-16 17:56 - 2013-11-21 07:26 - 01415680 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2014-02-16 17:56 - 2013-11-16 06:11 - 00764856 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2014-02-16 17:56 - 2013-11-15 19:19 - 00669344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll 2014-02-16 17:56 - 2013-11-15 15:59 - 00470016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll 2014-02-16 17:56 - 2013-11-15 15:25 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll 2014-02-16 17:56 - 2013-11-15 15:08 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll 2014-02-16 17:56 - 2013-11-15 14:24 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2014-02-16 17:56 - 2013-11-05 21:12 - 02551128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2014-02-16 17:56 - 2013-10-31 01:29 - 00745336 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll 2014-02-16 17:56 - 2013-10-31 00:41 - 00552624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll 2014-02-16 17:54 - 2014-02-06 13:16 - 23170048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-02-16 17:54 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2014-02-16 17:54 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollectorres.dll 2014-02-16 17:54 - 2014-02-06 12:12 - 02765824 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2014-02-16 17:54 - 2014-02-06 12:07 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll 2014-02-16 17:54 - 2014-02-06 12:06 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll 2014-02-16 17:54 - 2014-02-06 11:57 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2014-02-16 17:54 - 2014-02-06 11:56 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll 2014-02-16 17:54 - 2014-02-06 11:49 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe 2014-02-16 17:54 - 2014-02-06 11:48 - 00708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2014-02-16 17:54 - 2014-02-06 11:48 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe 2014-02-16 17:54 - 2014-02-06 11:38 - 17103872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2014-02-16 17:54 - 2014-02-06 11:32 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2014-02-16 17:54 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2014-02-16 17:54 - 2014-02-06 11:17 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll 2014-02-16 17:54 - 2014-02-06 11:11 - 05768704 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2014-02-16 17:54 - 2014-02-06 11:01 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll 2014-02-16 17:54 - 2014-02-06 11:00 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll 2014-02-16 17:54 - 2014-02-06 10:57 - 02168320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2014-02-16 17:54 - 2014-02-06 10:57 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2014-02-16 17:54 - 2014-02-06 10:52 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll 2014-02-16 17:54 - 2014-02-06 10:52 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll 2014-02-16 17:54 - 2014-02-06 10:50 - 02041856 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2014-02-16 17:54 - 2014-02-06 10:47 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe 2014-02-16 17:54 - 2014-02-06 10:46 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2014-02-16 17:54 - 2014-02-06 10:25 - 04244480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2014-02-16 17:54 - 2014-02-06 10:25 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll 2014-02-16 17:54 - 2014-02-06 10:24 - 02334208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2014-02-16 17:54 - 2014-02-06 10:22 - 13051392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2014-02-16 17:54 - 2014-02-06 10:13 - 00524288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2014-02-16 17:54 - 2014-02-06 10:09 - 01964032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2014-02-16 17:54 - 2014-02-06 10:03 - 11266048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2014-02-16 17:54 - 2014-02-06 09:55 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2014-02-16 17:54 - 2014-02-06 09:41 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2014-02-16 17:54 - 2014-02-06 09:40 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2014-02-16 17:54 - 2014-02-06 09:36 - 01156096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2014-02-16 17:54 - 2014-02-06 09:34 - 00703488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2014-02-16 17:54 - 2014-01-07 06:00 - 02397184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll 2014-02-16 17:54 - 2014-01-07 05:30 - 02071552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll 2014-02-16 17:54 - 2013-12-09 01:27 - 02152448 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2014-02-16 17:54 - 2013-12-09 00:54 - 01317376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll 2014-02-16 17:54 - 2013-11-21 07:42 - 04604416 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll 2014-02-16 17:54 - 2013-11-21 06:44 - 03936256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll 2014-02-16 17:53 - 2013-12-24 04:16 - 01530712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2014-02-16 17:53 - 2013-12-09 03:57 - 00548864 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2014-02-16 17:53 - 2013-12-09 02:51 - 00454656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll ==================== One Month Modified Files and Folders ======= 2014-03-08 21:24 - 2014-03-08 21:21 - 00025972 _____ () C:\Users\V5-573G\Downloads\Addition.txt 2014-03-08 21:24 - 2014-03-08 21:20 - 00019967 _____ () C:\Users\V5-573G\Downloads\FRST.txt 2014-03-08 21:24 - 2014-03-08 21:20 - 00000000 ____D () C:\FRST 2014-03-08 21:21 - 2014-01-11 23:02 - 00001122 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-03-08 21:19 - 2014-01-11 19:45 - 01761538 _____ () C:\WINDOWS\WindowsUpdate.log 2014-03-08 21:18 - 2014-03-08 21:17 - 02156544 _____ (Farbar) C:\Users\V5-573G\Downloads\FRST64.exe 2014-03-08 21:13 - 2014-01-11 22:20 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1255564938-2326567129-3581081882-1002 2014-03-08 21:11 - 2013-11-14 08:27 - 01776918 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-03-08 21:11 - 2013-11-14 08:11 - 00765582 _____ () C:\WINDOWS\system32\perfh007.dat 2014-03-08 21:11 - 2013-11-14 08:11 - 00159366 _____ () C:\WINDOWS\system32\perfc007.dat 2014-03-08 21:09 - 2014-01-11 23:06 - 00002199 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-03-08 21:09 - 2014-01-11 23:02 - 00001118 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-03-08 21:09 - 2014-01-11 19:59 - 00000000 __RDO () C:\Users\V5-573G\SkyDrive 2014-03-08 21:06 - 2013-11-13 23:18 - 00005540 _____ () C:\WINDOWS\PFRO.log 2014-03-08 21:06 - 2013-08-22 15:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-03-08 21:06 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI 2014-03-08 21:00 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sru 2014-03-08 20:01 - 2014-03-08 20:01 - 00001129 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-03-08 20:01 - 2014-03-08 20:01 - 00000000 ____D () C:\Users\V5-573G\AppData\Roaming\Malwarebytes 2014-03-08 20:01 - 2014-03-08 20:01 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-03-08 20:01 - 2014-03-08 20:01 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-03-08 20:00 - 2014-03-08 20:00 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\V5-573G\Downloads\mbam-setup-1.75.0.1300.exe 2014-03-08 19:48 - 2014-03-08 19:48 - 04375224 _____ (F-Secure Corporation) C:\Users\V5-573G\Downloads\F-SecureOnlineScanner.exe 2014-03-08 19:36 - 2014-03-08 19:36 - 00001324 _____ () C:\Users\V5-573G\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kaspersky Security Scan.lnk 2014-03-08 19:35 - 2014-03-08 19:36 - 00001097 _____ () C:\Users\V5-573G\Desktop\Kaspersky Security Scan.lnk 2014-03-08 19:35 - 2014-03-08 19:35 - 00000000 ____D () C:\ProgramData\Kaspersky Lab 2014-03-08 19:35 - 2014-03-08 19:35 - 00000000 ____D () C:\Program Files (x86)\Kaspersky Lab 2014-03-08 19:32 - 2014-03-08 19:32 - 00185944 _____ (Лаборатория Касперского) C:\Users\V5-573G\Downloads\kss12.0.1.117abRU_EN_DE_FR_ES_IT_JA_PT_ZH_5623.exe 2014-03-08 19:30 - 2014-03-08 19:30 - 00000000 ____D () C:\Users\V5-573G\AppData\Roaming\QuickScan 2014-03-08 19:00 - 2014-03-08 19:00 - 04051872 _____ (Avira Operations GmbH & Co. KG) C:\Users\V5-573G\Downloads\avira_de_av___ws.exe 2014-03-08 18:54 - 2014-03-08 18:54 - 00001157 _____ () C:\Users\Public\Desktop\Avira.lnk 2014-03-08 18:54 - 2014-03-08 18:02 - 00000000 ____D () C:\ProgramData\Package Cache 2014-03-08 18:53 - 2013-08-22 15:46 - 00337067 _____ () C:\WINDOWS\setupact.log 2014-03-08 18:53 - 2013-05-13 07:51 - 00000000 ____D () C:\ProgramData\McAfee 2014-03-08 18:45 - 2014-01-11 19:28 - 00000000 ____D () C:\Users\V5-573G 2014-03-08 18:44 - 2014-03-02 14:51 - 00000000 ____D () C:\b8e75ef9fc48cff92b 2014-03-08 18:42 - 2014-03-08 18:00 - 00000000 ____D () C:\ProgramData\MFAData 2014-03-08 18:42 - 2014-03-08 17:45 - 00000000 ____D () C:\ProgramData\CDB 2014-03-08 18:42 - 2014-03-08 17:42 - 00000000 ____D () C:\Program Files (x86)\SupTab 2014-03-08 18:42 - 2014-03-02 18:14 - 00000000 ____D () C:\Users\V5-573G\Desktop\Programme 2014-03-08 18:42 - 2014-03-02 17:07 - 00000000 ____D () C:\Program Files\FreeFileSync 2014-03-08 18:42 - 2014-03-02 14:51 - 00000000 ____D () C:\Users\V5-573G\Desktop\OpenOffice 4.0.1 (de) Installation Files 2014-03-08 18:42 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Defender 2014-03-08 18:42 - 2013-05-13 07:51 - 00000000 ____D () C:\Program Files (x86)\mcafee.com 2014-03-08 18:42 - 2012-07-26 09:12 - 00000000 ___HD () C:\WINDOWS\ELAMBKUP 2014-03-08 18:35 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\registration 2014-03-08 18:35 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\system32\Sysprep 2014-03-08 18:35 - 2013-05-13 07:51 - 00000000 ____D () C:\Program Files\mcafee 2014-03-08 18:34 - 2013-05-13 07:51 - 00000000 ____D () C:\Program Files\mcafee.com 2014-03-08 18:34 - 2013-05-13 07:51 - 00000000 ____D () C:\Program Files\Common Files\mcafee 2014-03-08 18:34 - 2013-05-13 07:51 - 00000000 ____D () C:\Program Files (x86)\McAfee 2014-03-08 18:24 - 2014-03-08 17:42 - 00000000 ____D () C:\ProgramData\WPM 2014-03-08 18:22 - 2014-03-08 17:41 - 00000000 ____D () C:\Users\V5-573G\AppData\Roaming\systweak 2014-03-08 18:22 - 2014-03-08 17:41 - 00000000 ____D () C:\Users\V5-573G\AppData\Roaming\sweet-page 2014-03-08 18:05 - 2014-03-08 18:05 - 00000000 ____D () C:\Users\V5-573G\Documents\PC Speed Maximizer 2014-03-08 18:03 - 2014-03-08 18:03 - 00000000 ____D () C:\ProgramData\Avira 2014-03-08 18:03 - 2014-03-08 18:03 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-03-08 18:01 - 2013-09-17 17:34 - 00000000 ____D () C:\ProgramData\CyberLink 2014-03-08 18:00 - 2014-03-08 18:00 - 00000000 ____D () C:\Users\V5-573G\AppData\Local\MFAData 2014-03-08 18:00 - 2014-03-08 18:00 - 00000000 ____D () C:\Users\V5-573G\AppData\Local\Cyberlink 2014-03-08 18:00 - 2014-03-08 18:00 - 00000000 ____D () C:\Users\V5-573G\AppData\Local\Avg2014 2014-03-08 12:19 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM 2014-03-08 12:11 - 2012-07-26 06:37 - 00000000 ____D () C:\Users\Default.migrated 2014-03-08 10:31 - 2014-01-11 19:58 - 00000000 ____D () C:\Users\V5-573G\Documents\Bluetooth Folder 2014-03-07 21:28 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\AppReadiness 2014-03-03 18:59 - 2014-03-02 17:09 - 00000000 ____D () C:\ProgramData\TuneUp Software 2014-03-02 18:01 - 2013-11-15 01:08 - 00000000 ____D () C:\Users\V5-573G\AppData\Local\VirtualStore 2014-03-02 17:48 - 2014-03-02 17:46 - 00000000 ____D () C:\Users\V5-573G\Desktop\Samsung Note 3 2014-03-02 17:45 - 2014-03-02 17:45 - 00000000 ____D () C:\Users\Public\Documents\NativeFus_Log 2014-03-02 17:45 - 2014-03-02 17:42 - 00000000 ____D () C:\Users\V5-573G\AppData\Roaming\Samsung 2014-03-02 17:45 - 2014-03-02 17:42 - 00000000 ____D () C:\Program Files (x86)\Samsung 2014-03-02 17:42 - 2014-03-02 17:42 - 00000000 ____D () C:\Users\V5-573G\Documents\SelfMV 2014-03-02 17:42 - 2014-03-02 17:42 - 00000000 ____D () C:\Users\V5-573G\Documents\samsung 2014-03-02 17:42 - 2014-03-02 17:42 - 00000000 ____D () C:\ProgramData\Samsung 2014-03-02 17:11 - 2014-03-02 17:07 - 00000000 ____D () C:\Users\V5-573G\AppData\Roaming\FreeFileSync 2014-03-02 17:09 - 2014-03-02 17:09 - 00000000 ____D () C:\Users\V5-573G\AppData\Roaming\TuneUp Software 2014-03-02 17:04 - 2014-03-02 17:04 - 00000000 ____D () C:\Users\V5-573G\AppData\Roaming\OpenOffice 2014-03-02 14:53 - 2014-03-02 14:53 - 00000000 ____D () C:\Program Files (x86)\OpenOffice 4 2014-03-02 14:50 - 2014-03-02 14:43 - 163606685 _____ () C:\Users\V5-573G\Downloads\Apache_OpenOffice_4.0.1_Win_x86_install_de.exe 2014-03-02 12:19 - 2014-03-02 12:19 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-03-02 12:19 - 2014-03-02 12:19 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-03-02 12:18 - 2014-03-02 12:17 - 13079688 _____ (Microsoft Corporation) C:\Users\V5-573G\Downloads\Silverlight_x64.exe 2014-03-01 10:39 - 2014-03-01 09:53 - 00000000 ____D () C:\Users\V5-573G\AppData\Roaming\Apple Computer 2014-03-01 09:53 - 2014-03-01 09:53 - 00001799 _____ () C:\Users\Public\Desktop\iTunes.lnk 2014-03-01 09:53 - 2014-03-01 09:53 - 00000000 ____D () C:\Users\V5-573G\AppData\Local\Apple Computer 2014-03-01 09:53 - 2014-03-01 09:52 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-03-01 09:53 - 2014-03-01 09:52 - 00000000 ____D () C:\Program Files\iTunes 2014-03-01 09:53 - 2014-03-01 09:52 - 00000000 ____D () C:\Program Files (x86)\iTunes 2014-03-01 09:52 - 2014-03-01 09:52 - 00000000 ____D () C:\Users\V5-573G\AppData\Local\Apple 2014-03-01 09:52 - 2014-03-01 09:52 - 00000000 ____D () C:\ProgramData\Apple Computer 2014-03-01 09:52 - 2014-03-01 09:52 - 00000000 ____D () C:\Program Files\iPod 2014-03-01 09:52 - 2014-03-01 09:52 - 00000000 ____D () C:\Program Files (x86)\Apple Software Update 2014-03-01 09:52 - 2014-03-01 09:51 - 00000000 ____D () C:\ProgramData\Apple 2014-03-01 09:51 - 2014-03-01 09:51 - 00000000 ____D () C:\Program Files\Common Files\Apple 2014-03-01 09:51 - 2014-03-01 09:51 - 00000000 ____D () C:\Program Files\Bonjour 2014-03-01 09:51 - 2014-03-01 09:51 - 00000000 ____D () C:\Program Files (x86)\Bonjour 2014-03-01 09:50 - 2014-03-01 08:37 - 00000000 ____D () C:\Users\V5-573G\AppData\Roaming\MediaMonkey 2014-03-01 09:48 - 2014-03-01 09:43 - 148885840 _____ (Apple Inc.) C:\Users\V5-573G\Downloads\iTunes64Setup.exe 2014-03-01 09:10 - 2014-03-01 09:10 - 00000000 ____D () C:\Users\V5-573G\AppData\Roaming\WindSolutions 2014-03-01 08:49 - 2014-03-01 08:49 - 00000000 ____D () C:\ProgramData\WindSolutions 2014-03-01 08:49 - 2014-03-01 08:48 - 08671996 _____ () C:\Users\V5-573G\Downloads\CopyTransManagerDEv0.995.zip 2014-03-01 08:49 - 2013-11-01 16:23 - 08921872 _____ (WindSolutions) C:\Users\V5-573G\Desktop\CopyTransManager.exe 2014-03-01 08:37 - 2014-03-01 08:37 - 00001063 _____ () C:\Users\Public\Desktop\MediaMonkey.lnk 2014-03-01 08:37 - 2014-03-01 08:37 - 00000000 ____D () C:\Users\V5-573G\AppData\Local\MediaMonkey 2014-03-01 08:37 - 2014-03-01 08:37 - 00000000 ____D () C:\ProgramData\MediaMonkey 2014-03-01 08:37 - 2014-03-01 08:37 - 00000000 ____D () C:\Program Files (x86)\MediaMonkey 2014-03-01 08:26 - 2014-03-01 08:25 - 15170864 _____ (Ventis Media Inc. ) C:\Users\V5-573G\Downloads\MediaMonkey_4.1.0.1691.exe 2014-03-01 07:19 - 2014-03-01 07:19 - 00000000 ____D () C:\WINDOWS\LastGood.Tmp 2014-02-26 16:02 - 2014-01-12 10:46 - 00000000 ____D () C:\Users\V5-573G\Desktop\Uschi 2014-02-21 21:37 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\rescache 2014-02-21 19:48 - 2013-11-15 01:10 - 00000000 ___RD () C:\Users\V5-573G\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-02-21 19:48 - 2013-11-15 01:10 - 00000000 ___RD () C:\Users\V5-573G\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-02-21 19:20 - 2013-08-22 15:44 - 00335992 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-02-21 19:17 - 2013-08-22 16:36 - 00000000 ___RD () C:\WINDOWS\ToastData 2014-02-21 19:17 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\MediaViewer 2014-02-21 19:17 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\FileManager 2014-02-21 19:17 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\Camera 2014-02-21 19:17 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\Dism 2014-02-21 19:17 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\system32\Dism 2014-02-21 19:16 - 2014-01-11 23:02 - 00004094 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2014-02-21 19:16 - 2014-01-11 23:02 - 00003858 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2014-02-17 22:00 - 2013-08-22 16:38 - 00693240 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2014-02-17 22:00 - 2013-08-22 16:38 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2014-02-16 21:17 - 2013-11-25 15:54 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-02-16 21:16 - 2013-11-25 15:54 - 88567024 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2014-02-06 13:16 - 2014-02-16 17:54 - 23170048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-02-06 12:30 - 2014-02-16 17:54 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2014-02-06 12:30 - 2014-02-16 17:54 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollectorres.dll 2014-02-06 12:12 - 2014-02-16 17:54 - 02765824 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2014-02-06 12:07 - 2014-02-16 17:54 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll 2014-02-06 12:06 - 2014-02-16 17:54 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll 2014-02-06 11:57 - 2014-02-16 17:54 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2014-02-06 11:56 - 2014-02-16 17:54 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll 2014-02-06 11:49 - 2014-02-16 17:54 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe 2014-02-06 11:48 - 2014-02-16 17:54 - 00708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2014-02-06 11:48 - 2014-02-16 17:54 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe 2014-02-06 11:38 - 2014-02-16 17:54 - 17103872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2014-02-06 11:32 - 2014-02-16 17:54 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2014-02-06 11:20 - 2014-02-16 17:54 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2014-02-06 11:17 - 2014-02-16 17:54 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll 2014-02-06 11:11 - 2014-02-16 17:54 - 05768704 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2014-02-06 11:01 - 2014-02-16 17:54 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll 2014-02-06 11:00 - 2014-02-16 17:54 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll 2014-02-06 10:57 - 2014-02-16 17:54 - 02168320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2014-02-06 10:57 - 2014-02-16 17:54 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2014-02-06 10:52 - 2014-02-16 17:54 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll 2014-02-06 10:52 - 2014-02-16 17:54 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll 2014-02-06 10:50 - 2014-02-16 17:54 - 02041856 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2014-02-06 10:47 - 2014-02-16 17:54 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe 2014-02-06 10:46 - 2014-02-16 17:54 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2014-02-06 10:25 - 2014-02-16 17:54 - 04244480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2014-02-06 10:25 - 2014-02-16 17:54 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll 2014-02-06 10:24 - 2014-02-16 17:54 - 02334208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2014-02-06 10:22 - 2014-02-16 17:54 - 13051392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2014-02-06 10:13 - 2014-02-16 17:54 - 00524288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2014-02-06 10:09 - 2014-02-16 17:54 - 01964032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2014-02-06 10:03 - 2014-02-16 17:54 - 11266048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2014-02-06 09:55 - 2014-02-16 17:54 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2014-02-06 09:41 - 2014-02-16 17:54 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2014-02-06 09:40 - 2014-02-16 17:54 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2014-02-06 09:36 - 2014-02-16 17:54 - 01156096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2014-02-06 09:34 - 2014-02-16 17:54 - 00703488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-03-08 19:15 ==================== End Of Log ============================ und als zweites Addition.txt:FRST Additions Logfile: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 08-03-2014 01 Ran by V5-573G at 2014-03-08 21:24:33 Running from C:\Users\V5-573G\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: McAfee Anti-Virus und Anti-Spyware (Disabled - Up to date) {ADA629C7-7F48-5689-624A-3B76997E0892} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: McAfee Anti-Virus und Anti-Spyware (Disabled - Out of date) {16C7C823-5972-5907-58FA-0004E2F9422F} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: McAfee Firewall (Disabled) {959DA8E2-3527-57D1-4915-924367AD4FE9} ==================== Installed Programs ====================== clear.fi SDK - Video 2 (x32 Version: 2.1.2606 - CyberLink Corp.) Hidden clear.fi SDK- Movie 2 (x32 Version: 2.1.2606 - CyberLink Corp.) Hidden Acer Launch Manager (HKLM\...\{C18D55BD-1EC6-466D-B763-8EEDDDA9100E}) (Version: 8.00.3004 - Acer Incorporated) Acer Power Management (HKLM\...\{91F52DE4-B789-42B0-9311-A349F10E5479}) (Version: 7.00.3012 - Acer Incorporated) Acer Recovery Management (HKLM\...\{07F2005A-8CAC-4A4B-83A2-DA98A722CA61}) (Version: 6.00.3016 - Acer Incorporated) Acer USB Charge Manager (HKLM\...\{07E867C5-0C48-40FF-A013-DDAF4565AD47}) (Version: 2.00.3004 - Acer Incorporated) AcerCloud Docs (HKLM-x32\...\{CA4FE8B0-298C-4E5D-A486-F33B126D6A0A}) (Version: 1.01.2008 - Acer Incorporated) AcerCloud Portal (HKLM-x32\...\{A5AD0B17-F34D-49BE-A157-C8B3D52ACD13}) (Version: 2.02.2021 - Acer Incorporated) Apple Application Support (HKLM-x32\...\{AAC5D43E-816D-4C2D-8E51-55FFF35BE301}) (Version: 3.0.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{787136D2-F0F8-4625-AA3F-72D7795AC842}) (Version: 7.1.1.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Avira (HKLM-x32\...\{7b05af00-d234-4cf0-8cc3-1fcb21da2374}) (Version: 1.0.5168.20630 - Avira Operations GmbH & Co. KG) Avira (x32 Version: 1.0.5168.20630 - Avira Operations GmbH & Co. KG) Hidden Bejeweled 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) clear.fi Media (HKLM-x32\...\{E9AF1707-3F3A-49E2-8345-4F2D629D0876}) (Version: 2.02.2012 - Acer Incorporated) clear.fi Photo (HKLM-x32\...\{B5AD89F2-03D3-4206-8487-018298007DD0}) (Version: 2.02.2016 - Acer Incorporated) CyberLink MediaEspresso 6.5 (HKLM-x32\...\InstallShield_{E3739848-5329-48E3-8D28-5BBD6E8BE384}) (Version: 6.5.3729_45993 - CyberLink Corp.) CyberLink MediaEspresso 6.5 (x32 Version: 6.5.3729_45993 - CyberLink Corp.) Hidden Delicious: Emily's Childhood Memories Premium Edition (x32 Version: 3.0.2.32 - WildTangent) Hidden Dolby Home Theater v4 (HKLM-x32\...\{B26438B4-BF51-49C3-9567-7F14A5E40CB9}) (Version: 7.2.8000.17 - Dolby Laboratories Inc) ElsterFormular (HKLM-x32\...\ElsterFormular) (Version: 15.0.20140114 - Landesfinanzdirektion Thüringen) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 33.0.1750.117 - Google Inc.) Google Update Helper (x32 Version: 1.3.22.5 - Google Inc.) Hidden Google+ Auto Backup (HKLM-x32\...\{A50DE037-B5C0-4C8A-8049-B0C576B313D1}) (Version: 1.0.21.81 - Google) Governor of Poker 2 Premium Edition (x32 Version: 2.2.0.110 - WildTangent) Hidden HID Monitor (HKLM-x32\...\{31923C55-8208-4D0A-8AD6-3AE099A1A741}) (Version: 1.1.5 - Acer Incorporated) Identity Card (HKLM-x32\...\{3D9CB654-99AD-4301-89C6-0D12A790767C}) (Version: 2.00.3006 - Acer Incorporated) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.0.1428 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3379 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.5.0.1066 - Intel Corporation) Intel(R) Rapid Storage Technology (Version: 12.5.0.1066 - Intel Corporation) Hidden Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 3.0.0.63463 - Intel Corporation) Intel® Trusted Connect Service Client (Version: 1.27.798.1 - Intel Corporation) Hidden iTunes (HKLM\...\{B8BA155B-1E75-405F-9CB4-8A99615D09DC}) (Version: 11.1.5.5 - Apple Inc.) Jewel Match 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden John Deere Drive Green (x32 Version: 2.2.0.95 - WildTangent) Hidden Kaspersky Security Scan (HKLM-x32\...\InstallWIX_{56009CA3-423B-41F8-884A-E5B049534F15}) (Version: 12.0.1.340 - Kaspersky Lab) Kaspersky Security Scan (x32 Version: 12.0.1.340 - Kaspersky Lab) Hidden Live Updater (HKLM-x32\...\{EE26E302-876A-48D9-9058-3129E5B99999}) (Version: 2.00.3010 - Acer Incorporated) Magic Academy (x32 Version: 2.2.0.98 - WildTangent) Hidden Malwarebytes Anti-Malware Version 1.75.0.1300 (HKLM-x32\...\Malwarebytes' Anti-Malware_is1) (Version: 1.75.0.1300 - Malwarebytes Corporation) McAfee Internet Security Suite (HKLM-x32\...\MSC) (Version: 12.8.903 - McAfee, Inc.) MediaMonkey 4.1 (HKLM-x32\...\MediaMonkey_is1) (Version: 4.1 - Ventis Media Inc.) Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4454.1510 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.20913.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual Studio 2005 Tools for Office Runtime (x32 Version: 8.0.60940.0 - Microsoft Corporation) Hidden Nero BackItUp (x32 Version: 12.5.5000 - Nero AG) Hidden Nero BackItUp 12 Essentials OEM.a01 (HKLM-x32\...\{4CA8F973-6377-4ABF-9ED5-CC2323B3C000}) (Version: 12.5.00500 - Nero AG) Nero BackItUp Help (CHM) (x32 Version: 12.0.10000 - Nero AG) Hidden Nero ControlCenter (x32 Version: 11.0.15600 - Nero AG) Hidden Nero ControlCenter Help (CHM) (x32 Version: 12.0.7000 - Nero AG) Hidden Nero Core Components (x32 Version: 11.0.20200 - Nero AG) Hidden Nero Launcher (x32 Version: 12.2.7000 - Nero AG) Hidden Nero RescueAgent (x32 Version: 12.0.3001 - Nero AG) Hidden Nero RescueAgent Help (CHM) (x32 Version: 12.0.7000 - Nero AG) Hidden Nero Update (x32 Version: 11.0.11800.31.0 - Nero AG) Hidden Norton Online Backup (HKLM-x32\...\{40A66DF6-22D3-44B5-A7D3-83B118A2C0DC}) (Version: 2.2.3.51r2 - Symantec Corporation) Norton Online Backup ARA (x32 Version: 4.1.0.14 - Symantec Corporation) Hidden NVIDIA Grafiktreiber 327.02 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 327.02 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.133.889 - NVIDIA Corporation) Hidden NVIDIA Optimus 1.14.17 (Version: 1.14.17 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.12.1031 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.12.1031 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.1031 - NVIDIA Corporation) NVIDIA Systemsteuerung 327.02 (Version: 327.02 - NVIDIA Corporation) Hidden NVIDIA Update 1.14.17 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.14.17 - NVIDIA Corporation) NVIDIA Update Components (Version: 1.14.17 - NVIDIA Corporation) Hidden Office Addin (HKLM-x32\...\{6D2BBE1D-E600-4695-BA37-0B0E605542CC}) (Version: 2.02.2008 - Acer) Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.) Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98 - WildTangent) Hidden Prerequisite installer (x32 Version: 12.0.0003 - Nero AG) Hidden Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.0.222 - Qualcomm Atheros Communications) Qualcomm Atheros WLAN and Bluetooth Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 11.43 - Qualcomm Atheros) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.14.327.2013 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6909 - Realtek Semiconductor Corp.) Realtek PCIE Card Reader (HKLM-x32\...\{C9661090-C134-46E8-90B2-76D72355C2A6}) (Version: 6.2.9200.21222 - Realtek Semiconductor Corp.) Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee) Spielkanäle (HKLM-x32\...\WildTangentGameProvider-acer-genres) (Version: 8.1.0.17 - WildTangent, Inc.) Spielkanäle (HKLM-x32\...\WildTangentGameProvider-acer-main) (Version: 8.1.0.17 - WildTangent, Inc.) Spotify (HKLM-x32\...\Spotify) (Version: 0.8.4.99.ga249b5f1 - Spotify AB) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 16.3.12.31 - Synaptics Incorporated) Tales of Lagoona (x32 Version: 2.2.0.110 - WildTangent) Hidden Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden Visual Studio 2005 Tools for Office Second Edition Runtime (HKLM-x32\...\Microsoft Visual Studio 2005 Tools for Office Runtime) (Version: - Microsoft Corporation) Visual Studio Tools for the Office system 3.0 Runtime (HKLM-x32\...\Visual Studio Tools for the Office system 3.0 Runtime) (Version: - Microsoft Corporation) Visual Studio Tools for the Office system 3.0 Runtime (x32 Version: 9.0.30729 - Microsoft Corporation) Hidden Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258) (HKLM-x32\...\{8FB53850-246A-3507-8ADE-0060093FFEA6}.KB949258) (Version: 1 - Microsoft Corporation) WildTangent Games (HKLM-x32\...\WildTangent wildgames Master Uninstall) (Version: 1.0.4.0 - WildTangent) WildTangent Games App (x32 Version: 4.0.11.2 - WildTangent) Hidden ==================== Restore Points ========================= 16-02-2014 16:54:16 Windows Update 21-02-2014 19:31:51 Windows Update 01-03-2014 07:29:41 Geplanter Prüfpunkt 02-03-2014 13:51:48 Installed Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 08-03-2014 10:50:44 TuneUp Utilities 2014 wird entfernt 08-03-2014 17:31:48 Wiederherstellungsvorgang ==================== Hosts content: ========================== 2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList Task: {1808DB35-31B1-45F6-A5B7-93F0E9D30179} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-11] (Google Inc.) Task: {1CF33A71-ED76-4BAE-9D86-CA3B5BA2A719} - System32\Tasks\ALU => C:\Program Files (x86)\Acer\Live Updater\updater.exe [2013-03-13] () Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate Task: {2ED6F8E5-595F-4AA0-B6D3-A7D17B44E2E3} - System32\Tasks\ALUAgent => C:\Program Files (x86)\Acer\Live Updater\liveupdater_agent.exe [2013-01-22] () Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation) Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation) Task: {445AB3A9-9A52-41FD-B769-B3CB533992C7} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2014-02-16] (Microsoft Corporation) Task: {45788018-7A97-44BF-B245-78A0D0D5A404} - System32\Tasks\Launch Manager => C:\Program Files\Acer\Acer Launch Manager\LMLauncher.exe [2013-04-26] (Acer Incorporate) Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task Task: {72AA2B51-7B41-483E-89FD-4EFF915F8478} - System32\Tasks\DeviceDetector => C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe [2013-02-08] (CyberLink) Task: {73599FD0-D749-4F46-BD7A-095C218932FF} - System32\Tasks\Dolby Selector => C:\Dolby PCEE4\pcee4.exe [2012-08-31] (Dolby Laboratories Inc.) Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask Task: {99597E95-9228-4247-AC91-155E06A1F83E} - System32\Tasks\HIDMonitor => C:\Program Files\Acer Incorporated\HID Monitor\HIDMonitor.exe Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing Task: {D9E42400-10A0-4361-B517-526548EFFBD2} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTray.exe [2013-01-18] (Acer Incorporated) Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE Task: {EE220AF2-6DDC-46B9-9898-C535961A9E9C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-11] (Google Inc.) Task: {F9B879CA-02AD-4F61-9DD5-D039E1FC544F} - System32\Tasks\Recovery Management\Notification => C:\Program Files\Acer\Acer Recovery Management\Notification\Notification.exe [2013-01-23] (Acer Incorporated) Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ==================== Loaded Modules (whitelisted) ============= 2013-09-05 02:36 - 2013-09-05 02:36 - 00013088 _____ () C:\Program Files\NVIDIA Corporation\CoProcManager\detoured.dll 2012-08-23 13:02 - 2012-08-23 13:02 - 00030640 _____ () C:\Program Files (x86)\Acer Incorporated\HID Monitor\HIDMonitor.exe 2013-02-28 17:05 - 2013-02-28 17:05 - 00011264 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\ActivateDesktopDebugger\ActivateDesktopDebugger.dll 2013-02-28 17:02 - 2013-02-28 17:02 - 00086016 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\Map\MAP.dll 2013-02-28 17:06 - 2013-02-28 17:06 - 00012928 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe 2014-02-12 20:58 - 2014-02-12 20:58 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2014-02-12 20:58 - 2014-02-12 20:58 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2013-01-04 15:19 - 2013-01-04 15:19 - 00035336 _____ () C:\Program Files (x86)\Acer Incorporated\HID Monitor\ElanTPAPI.dll 2014-02-22 10:23 - 2014-02-20 02:02 - 00051016 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\chrome_elf.dll 2013-09-17 17:34 - 2013-02-20 21:58 - 00089672 _____ () C:\Program Files (x86)\Acer\clear.fi plug-in\Clearfishellext.dll 2014-02-22 10:23 - 2014-02-20 02:02 - 00716616 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\libglesv2.dll 2014-02-22 10:23 - 2014-02-20 02:02 - 00100168 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\libegl.dll 2012-12-07 15:15 - 2012-12-07 15:15 - 02126264 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan 2.0\QtCore4.dll 2012-12-07 15:15 - 2012-12-07 15:15 - 07422392 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan 2.0\QtGui4.dll 2012-12-07 15:15 - 2012-12-07 15:15 - 02453944 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan 2.0\QtDeclarative4.dll 2012-12-07 15:15 - 2012-12-07 15:15 - 01270200 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan 2.0\QtScript4.dll 2012-12-07 15:15 - 2012-12-07 15:15 - 00192952 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan 2.0\QtSql4.dll 2012-12-07 15:15 - 2012-12-07 15:15 - 00795064 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan 2.0\QtNetwork4.dll 2013-09-05 02:36 - 2013-09-05 02:36 - 00013088 _____ () C:\Program Files (x86)\NVIDIA Corporation\CoProcManager\detoured.dll 2014-02-22 10:23 - 2014-02-20 02:03 - 04060488 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\pdf.dll 2014-02-22 10:23 - 2014-02-20 02:03 - 00394568 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\ppGoogleNaClPluginChrome.dll 2014-02-22 10:23 - 2014-02-20 02:02 - 01647432 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\ffmpegsumo.dll 2013-09-17 16:52 - 2013-03-20 08:47 - 01199576 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2014-02-22 10:23 - 2014-02-20 02:03 - 13632840 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\Users\V5-573G\SkyDrive:ms-properties ==================== Safe Mode (whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Driver" ==================== Disabled items from MSCONFIG ============== ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (03/08/2014 09:24:38 PM) (Source: AVLogEvent) (User: NT-AUTORITÄT) Description: Content is missing. Error Code:a7f42014 Error: (03/08/2014 09:23:38 PM) (Source: AVLogEvent) (User: NT-AUTORITÄT) Description: Content is missing. Error Code:a7f42014 Error: (03/08/2014 09:22:38 PM) (Source: AVLogEvent) (User: NT-AUTORITÄT) Description: Content is missing. Error Code:a7f42014 Error: (03/08/2014 09:21:38 PM) (Source: AVLogEvent) (User: NT-AUTORITÄT) Description: Content is missing. Error Code:a7f42014 Error: (03/08/2014 09:20:38 PM) (Source: AVLogEvent) (User: NT-AUTORITÄT) Description: Content is missing. Error Code:a7f42014 Error: (03/08/2014 09:19:40 PM) (Source: AVLogEvent) (User: NT-AUTORITÄT) Description: Content is missing. Error Code:a7f42014 Error: (03/08/2014 09:19:38 PM) (Source: AVLogEvent) (User: NT-AUTORITÄT) Description: Content is missing. Error Code:a7f42014 Error: (03/08/2014 09:19:38 PM) (Source: AVLogEvent) (User: NT-AUTORITÄT) Description: Content is missing. Error Code:a7f42014 Error: (03/08/2014 09:18:38 PM) (Source: AVLogEvent) (User: NT-AUTORITÄT) Description: Content is missing. Error Code:a7f42014 Error: (03/08/2014 09:17:38 PM) (Source: AVLogEvent) (User: NT-AUTORITÄT) Description: Content is missing. Error Code:a7f42014 System errors: ============= Error: (03/08/2014 09:07:41 PM) (Source: Service Control Manager) (User: ) Description: Dienst "Avira Service Host" wurde unerwartet beendet. Dies ist bereits 3 Mal passiert. Error: (03/08/2014 09:07:29 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Avira Service Host" wurde unerwartet beendet. Dies ist bereits 2 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts. Error: (03/08/2014 09:07:18 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Avira Service Host" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts. Error: (03/08/2014 09:06:51 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "McAfee Inc. mfeapfk" wurde aufgrund folgenden Fehlers nicht gestartet: %%1243 Error: (03/08/2014 09:05:48 PM) (Source: DCOM) (User: MILAN) Description: {9BA05972-F6A8-11CF-A442-00A0C90A8F39} Error: (03/08/2014 08:05:43 PM) (Source: Microsoft-Windows-DNS-Client) (User: NT-AUTORITÄT) Description: Fehler beim Lesen der Datei für lokale Hosts. Error: (03/08/2014 07:54:28 PM) (Source: Schannel) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 40. Der Windows-SChannel-Fehlerstatus lautet: 252. Error: (03/08/2014 06:46:20 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Windows Search" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts. Error: (03/08/2014 06:45:00 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "McAfee Inc. mfeapfk" wurde aufgrund folgenden Fehlers nicht gestartet: %%1243 Error: (03/08/2014 00:12:16 PM) (Source: DCOM) (User: MILAN) Description: {209500FC-6B45-4693-8871-6296C4843751} Microsoft Office Sessions: ========================= Error: (03/08/2014 09:24:38 PM) (Source: AVLogEvent)(User: NT-AUTORITÄT) Description: a7f42014 Error: (03/08/2014 09:23:38 PM) (Source: AVLogEvent)(User: NT-AUTORITÄT) Description: a7f42014 Error: (03/08/2014 09:22:38 PM) (Source: AVLogEvent)(User: NT-AUTORITÄT) Description: a7f42014 Error: (03/08/2014 09:21:38 PM) (Source: AVLogEvent)(User: NT-AUTORITÄT) Description: a7f42014 Error: (03/08/2014 09:20:38 PM) (Source: AVLogEvent)(User: NT-AUTORITÄT) Description: a7f42014 Error: (03/08/2014 09:19:40 PM) (Source: AVLogEvent)(User: NT-AUTORITÄT) Description: a7f42014 Error: (03/08/2014 09:19:38 PM) (Source: AVLogEvent)(User: NT-AUTORITÄT) Description: a7f42014 Error: (03/08/2014 09:19:38 PM) (Source: AVLogEvent)(User: NT-AUTORITÄT) Description: a7f42014 Error: (03/08/2014 09:18:38 PM) (Source: AVLogEvent)(User: NT-AUTORITÄT) Description: a7f42014 Error: (03/08/2014 09:17:38 PM) (Source: AVLogEvent)(User: NT-AUTORITÄT) Description: a7f42014 ==================== Memory info =========================== Percentage of memory in use: 24% Total physical RAM: 8072.27 MB Available physical RAM: 6096.45 MB Total Pagefile: 24456.27 MB Available Pagefile: 22265.15 MB Total Virtual: 131072 MB Available Virtual: 131071.79 MB ==================== Drives ================================ Drive c: (Acer) (Fixed) (Total:914.86 GB) (Free:605.62 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 932 GB) (Disk ID: 52951BFB) Partition: GPT Partition Type. ==================== End Of Log ============================ |
09.03.2014, 18:42 | #4 |
/// the machine /// TB-Ausbilder | Ich kann bestimmte Internetseiten nicht mehr öffnen z.B. ebay, amazon... - es gibt keine Fehlermeldung! Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
09.03.2014, 21:05 | #5 |
| Ich kann bestimmte Internetseiten nicht mehr öffnen z.B. ebay, amazon... - es gibt keine Fehlermeldung! Hallo, Malwarebytes Anti-Malware : Malwarebytes Anti-Malware 1.75.0.1300 Malwarebytes : Free Anti-Malware Datenbank Version: v2014.03.09.07 Windows 8 x64 NTFS Internet Explorer 11.0.9600.16518 V5-573G :: MILAN [Administrator] 09.03.2014 19:34:01 mbam-log-2014-03-09 (19-34-01).txt Art des Suchlaufs: Vollständiger Suchlauf (C:\|) Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 522249 Laufzeit: 1 Stunde(n), 3 Minute(n), 49 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 0 (Keine bösartigen Objekte gefunden) (Ende) AdwCleaner:AdwCleaner Logfile: Code:
ATTFilter # AdwCleaner v3.020 - Bericht erstellt am 09/03/2014 um 20:46:09 # Aktualisiert 27/02/2014 von Xplode # Betriebssystem : Windows 8.1 (64 bits) # Benutzername : V5-573G - MILAN # Gestartet von : C:\Users\V5-573G\Desktop\adwcleaner.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\ProgramData\boost_interprocess Ordner Gelöscht : C:\ProgramData\WPM Ordner Gelöscht : C:\Program Files (x86)\SupTab Ordner Gelöscht : C:\Users\V5-573G\AppData\Roaming\Systweak Ordner Gelöscht : C:\Users\V5-573G\Documents\PC Speed Maximizer Datei Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.16518 -\\ Mozilla Firefox v27.0.1 (de) [ Datei : C:\Users\V5-573G\AppData\Roaming\Mozilla\Firefox\Profiles\9j5cj0ao.default\prefs.js ] ************************* AdwCleaner[R0].txt - [1122 octets] - [09/03/2014 20:44:34] AdwCleaner[S0].txt - [1054 octets] - [09/03/2014 20:46:09] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1114 octets] ########## Junkware Removal Tool :JRT Logfile: Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.2 (02.20.2014:1) OS: Windows 8.1 x64 Ran by V5-573G on 09.03.2014 at 20:57:11,44 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\pc speed maximizer Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{3004627E-F8E9-4E8B-909D-316753CBA923} Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-21-1255564938-2326567129-3581081882-1002\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\\Start Page ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{09C554C3-109B-483C-A06B-F14172F1A947} Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921} Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D} Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800} Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\escort.dll Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\escortapp.dll Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\escorteng.dll Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\escortlbr.dll Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\esrv.exe Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921} Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800} Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\dsiteproducts Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\installcore Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\mysearchdial Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\pc speed maximizer Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\installcore Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\esrv.mysearchdialesrvc Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\esrv.mysearchdialesrvc.1 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\mysearchdial.mysearchdialappcore Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\mysearchdial.mysearchdialappcore.1 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\mysearchdial.mysearchdialdskbnd Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\mysearchdial.mysearchdialdskbnd.1 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\mysearchdial.mysearchdialhlpr Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\mysearchdial.mysearchdialhlpr.1 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\mysearchdial Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\openit open it! Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8} ~~~ Files Successfully deleted: [File] "C:\Users\Public\Desktop\open it!.lnk" ~~~ Folders Failed to delete: [Folder] "C:\ProgramData\boost_interprocess" Successfully deleted: [Folder] "C:\Users\V5-573G\AppData\Roaming\mysearchdial" Successfully deleted: [Folder] "C:\Users\V5-573G\AppData\Roaming\pc speed maximizer" Successfully deleted: [Folder] "C:\Program Files (x86)\mysearchdial" Successfully deleted: [Folder] "C:\Program Files (x86)\openit" Failed to delete: [Folder] "C:\Program Files (x86)\pc speed maximizer" Successfully deleted: [Folder] "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\open it!" ~~~ FireFox Successfully deleted: [File] C:\Users\V5-573G\AppData\Roaming\mozilla\firefox\profiles\9j5cj0ao.default\user.js Successfully deleted: [File] C:\Users\V5-573G\AppData\Roaming\mozilla\firefox\profiles\9j5cj0ao.default\searchplugins\mysearchdial.xml Successfully deleted: [Folder] C:\Users\V5-573G\AppData\Roaming\mozilla\firefox\profiles\9j5cj0ao.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8} Successfully deleted the following from C:\Users\V5-573G\AppData\Roaming\mozilla\firefox\profiles\9j5cj0ao.default\prefs.js user_pref("browser.search.defaultenginename", "Mysearchdial"); user_pref("browser.search.order.1", "Mysearchdial"); user_pref("browser.search.selectedEngine", "Mysearchdial"); user_pref("extensions.mysearchdial.AL", 2); user_pref("extensions.mysearchdial.aflt", "dsites_14_10_ff"); user_pref("extensions.mysearchdial.appId", "{CA5CAA63-B27C-4963-9BEC-CB16A36D56F8}"); user_pref("extensions.mysearchdial.cd", "2XzuyEtN2Y1L1Qzu0AyE0D0BtAtDtDyC0BtB0E0A0Czy0DzztN0D0Tzu0SyBzyzytN1L2XzutBtFtCzztFtBtFtDtN1L1CzutCyEtDtAtDyD1V1TtN1L1G1B1V1N2Y1L1Qzu2S user_pref("extensions.mysearchdial.cntry", "DE"); user_pref("extensions.mysearchdial.cr", "799056659"); user_pref("extensions.mysearchdial.dfltLng", ""); user_pref("extensions.mysearchdial.dfltSrch", true); user_pref("extensions.mysearchdial.dnsErr", true); user_pref("extensions.mysearchdial.dpkLst", "3654782829,1334533236,1121012847,231756876,1895130307,603719297,4288797614,3754950497,426401714,3046281807,752626116,1657571787,32 user_pref("extensions.mysearchdial.excTlbr", false); user_pref("extensions.mysearchdial.hdrMd5", "D700C8B343C8E4DEFD52558D8FB69ADF"); user_pref("extensions.mysearchdial.hmpg", true); user_pref("extensions.mysearchdial.hmpgUrl", "hxxp://start.mysearchdial.com/?f=1&a=dsites_14_10_ff&cd=2XzuyEtN2Y1L1Qzu0AyE0D0BtAtDtDyC0BtB0E0A0Czy0DzztN0D0Tzu0SyBzyzytN1L2Xzut user_pref("extensions.mysearchdial.id", "A4DB3006B2EAC9D8"); user_pref("extensions.mysearchdial.instlDay", "16138"); user_pref("extensions.mysearchdial.instlRef", "140305_a"); user_pref("extensions.mysearchdial.lastB", "hxxp://start.mysearchdial.com/?f=1&a=dsites_14_10_ff&cd=2XzuyEtN2Y1L1Qzu0AyE0D0BtAtDtDyC0BtB0E0A0Czy0DzztN0D0Tzu0SyBzyzytN1L2XzutBt user_pref("extensions.mysearchdial.lastVrsnTs", "1.8.29.020:50:33"); user_pref("extensions.mysearchdial.newTabUrl", "hxxp://start.mysearchdial.com/?f=2&a=dsites_14_10_ff&cd=2XzuyEtN2Y1L1Qzu0AyE0D0BtAtDtDyC0BtB0E0A0Czy0DzztN0D0Tzu0SyBzyzytN1L2Xz user_pref("extensions.mysearchdial.pnu_base", "{\"newVrsn\":\"90\",\"lastVrsn\":\"90\",\"vrsnLoad\":\"\",\"showMsg\":\"false\",\"showSilent\":\"false\",\"msgTs\":0,\"lstMsgTs\ user_pref("extensions.mysearchdial.prdct", "mysearchdial"); user_pref("extensions.mysearchdial.prtnrId", "mysearchdial"); user_pref("extensions.mysearchdial.sg", "none"); user_pref("extensions.mysearchdial.srchPrvdr", "Mysearchdial"); user_pref("extensions.mysearchdial.tlbrId", "base"); user_pref("extensions.mysearchdial.tlbrSrchUrl", "hxxp://start.mysearchdial.com/?f=3&a=dsites_14_10_ff&cd=2XzuyEtN2Y1L1Qzu0AyE0D0BtAtDtDyC0BtB0E0A0Czy0DzztN0D0Tzu0SyBzyzytN1L2 user_pref("extensions.mysearchdial.vrsn", "1.8.29.0"); user_pref("extensions.mysearchdial.vrsni", "1.8.29.0"); user_pref("extensions.mysearchdial_i.newTab", false); user_pref("extensions.mysearchdial_i.smplGrp", "none"); user_pref("extensions.mysearchdial_i.vrsnTs", "1.8.29.020:50:33"); ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 09.03.2014 at 21:01:03,96 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
10.03.2014, 17:02 | #6 |
/// the machine /// TB-Ausbilder | Ich kann bestimmte Internetseiten nicht mehr öffnen z.B. ebay, amazon... - es gibt keine Fehlermeldung!ESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ --> Ich kann bestimmte Internetseiten nicht mehr öffnen z.B. ebay, amazon... - es gibt keine Fehlermeldung! |
Themen zu Ich kann bestimmte Internetseiten nicht mehr öffnen z.B. ebay, amazon... - es gibt keine Fehlermeldung! |
amazon, aufrufen, bestimmte, brauche, ebay, fehlermeldung, folge, folgendes, google, hallo zusammen, herstellen, interne, internetseite, internetseiten, keine verbindung, konnte, meldung, nicht mehr, problem, seite, seiten, super, ups, verbindung, zusammen, öffnen |