|
Log-Analyse und Auswertung: Windows 7 Home Premium (64 Bit) - Desktop wir nach Neustart gelöscht, Dateien gehen verloren;Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
29.03.2014, 11:14 | #1 |
| Windows 7 Home Premium (64 Bit) - Desktop wir nach Neustart gelöscht, Dateien gehen verloren; Hallo erstmal, ich bin neu hier und bin nicht gerade ein Profi in Sachen Pcs ^^ Nach jedem Hochfahren meines Computers fehlen auf dem Desktop Verknüpfungen als auch Ordner die ich erstellt habe. So sind auch verschiedene Dateien auf der Festplatte verschwunden, und nach dem Hochfahren kommt immer diese Fehlermeldung: " Problem beim Starten von C:\Users\TEMP\Appdata\Local\Conduit\BackgroundContainer\Backgroundcontainer.dll Das angegebene Modul wurde nicht gefunden." Ich habe mit Malewarebytes schon einen quickscan vollendet und zwei Bedrohungen entfernt, das Problem ist immer noch da. Ich wäre sehr dankbar wenn mir jemand helfen könnte |
29.03.2014, 11:21 | #2 |
/// TB-Ausbilder /// Anleitungs-Guru | Windows 7 Home Premium (64 Bit) - Desktop wir nach Neustart gelöscht, Dateien gehen verloren; Schauen wir mal genauer nach...
__________________Bitte auch das Log von MBAM posten... Mein Name ist Jürgen und ich werde Dir bei Deinem Problem behilflich sein. Zusammen schaffen wir das...
Hinweise: Ich kann Dir niemals eine Garantie geben, dass wir alle schädlichen Dateien finden werden. Eine Formatierung ist meist der schnellere und immer der sicherste Weg, aber auch nur bei wirklicher Malware empfehlenswert. Adware & Co. können wir sehr gut entfernen. Solltest Du Dich für eine Bereinigung entscheiden, arbeite solange mit, bis Dir jemand vom Team sagt, dass Du clean bist. Bitte beachte, dass alle meine Antworten zuerst von einem Ausbilder freigegeben werden müssen, bevor ich diese hier posten darf. Das dauert dann zwar ein paar Stunden länger, garantiert aber, dass Du kompetente Hilfe und geprüfte Antworten bekommst. Siehe hier... Ich bedanke mich für Deine Geduld! Schritt 1 (Scan mit FRST) Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
Lesestoff Posten in CODE-Tags: So gehts... Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert uns massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu groß für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ |
29.03.2014, 11:41 | #3 |
| Windows 7 Home Premium (64 Bit) - Desktop wir nach Neustart gelöscht, Dateien gehen verloren; Ein großes Dankeschön! =)
__________________Hier zuerst FRST.txt FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-03-2014 Ran by Eddie-The-Beast (administrator) on EDDIETHEBEAST on 29-03-2014 11:31:09 Running from C:\Users\TEMP.EddieTheBeast\Downloads Windows 7 Home Premium (X64) OS Language: German Standard Internet Explorer Version 8 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgrsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgcsrva.exe (AMD) C:\Windows\system32\atiesrxx.exe (AMD) C:\Windows\system32\atieclxx.exe (Microsoft Corporation) C:\Windows\SYSTEM32\WISPTIS.EXE (Spigot, Inc.) C:\Program Files (x86)\Application Updater\ApplicationUpdater.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe (Max Secure Software) C:\Program Files (x86)\Max Spyware Detector\MaxMerger.exe (Max Secure Software) C:\Program Files\Max Spyware Detector\MaxWatchDogService.exe (Microsoft Corporation) C:\Windows\system32\mqsvc.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Max Secure Software) C:\Program Files\Max Spyware Detector\MaxActMon.exe (Max Secure Software) C:\Program Files\Max Spyware Detector\MaxDBServer.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corporation) C:\Windows\System32\snmp.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe (TomTom) C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe (SpeedBit Ltd.) C:\Program Files (x86)\SpeedBit Video Accelerator\VideoAcceleratorService.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE () C:\Windows\System32\atwtusb.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgnsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgemca.exe () C:\Windows\system32\atwtusb.exe (Conduit) C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler64.exe (Microsoft Corporation) C:\Windows\SYSTEM32\WISPTIS.EXE (IObit) C:\Program Files (x86)\IObit\Game Booster\gbtray.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Microsoft Corporation) C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe (Logitech Inc.) C:\Program Files\Logitech\Gaming Software\LWEMon.exe (Max Secure Software) C:\Program Files\Max Spyware Detector\MaxSDTray.exe (Max Secure Software) C:\Program Files\Max Spyware Detector\MaxUSBProc.exe (McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.141\SSScheduler.exe () C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe (Ask) C:\Program Files (x86)\Ask.com\Updater\Updater.exe (PowerISO Computing, Inc.) C:\Program Files (x86)\POWERISO\PWRISOVM.EXE (Nullsoft, Inc.) C:\Program Files (x86)\Winamp\winampa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgui.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Spigot, Inc.) C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\SeaPort.exe (AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe (AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM64.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [9636384 2009-11-25] (Realtek Semiconductor) HKLM\...\Run: [] - [X] HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [444904 2012-09-20] (Adobe Systems Incorporated) HKLM\...\Run: [XboxStat] - C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [825184 2009-09-30] (Microsoft Corporation) HKLM\...\Run: [Start WingMan Profiler] - C:\Program Files\Logitech\Gaming Software\LWEMon.exe [190536 2010-06-15] (Logitech Inc.) HKLM\...\Run: [SDActiveMonitor] - C:\Program Files\Max Spyware Detector\MaxSDTray.exe [2252256 2013-06-14] (Max Secure Software) HKLM\...\Run: [SDAutoScan] - [X] HKLM\...\Run: [MaxUSBProc] - C:\Program Files\Max Spyware Detector\MaxUSBProc.exe [602080 2013-06-14] (Max Secure Software) HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [34672 2008-06-12] (Adobe Systems Incorporated) HKLM-x32\...\Run: [ATICustomerCare] - C:\Program Files (x86)\ATI\ATICustomerCare\ATICustomerCare.exe [311296 2010-05-04] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [DivXUpdate] - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1230704 2011-03-21] () HKLM-x32\...\Run: [QuickTime Task] - C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2010-11-29] (Apple Inc.) HKLM-x32\...\Run: [ApnUpdater] - C:\Program Files (x86)\Ask.com\Updater\Updater.exe [1648264 2013-04-25] (Ask) HKLM-x32\...\Run: [AdobeCS4ServiceManager] - C:\Program Files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [611712 2008-08-14] (Adobe Systems Incorporated) HKLM-x32\...\Run: [PWRISOVM.EXE] - C:\Program Files (x86)\PowerISO\PWRISOVM.EXE [307200 2011-06-15] (PowerISO Computing, Inc.) HKLM-x32\...\Run: [AdobeCS5.5ServiceManager] - C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe [1523360 2011-01-12] (Adobe Systems Incorporated) HKLM-x32\...\Run: [SwitchBoard] - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642808 2012-12-19] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [WinampAgent] - C:\Program Files (x86)\Winamp\winampa.exe [74752 2011-10-26] (Nullsoft, Inc.) HKLM-x32\...\Run: [AVG_UI] - C:\Program Files (x86)\AVG\AVG2014\avgui.exe [4971024 2014-03-19] (AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [] - [X] HKLM-x32\...\Run: [SearchSettings] - C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe [1393984 2014-03-17] (Spigot, Inc.) HKU\S-1-5-21-2158434394-2343193655-1295655042-1001\...\Run: [HydraVisionDesktopManager] - C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [393216 2010-09-30] (AMD) AppInit_DLLs: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll => C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC64Loader.dll [1355040 2014-03-03] (Conduit) AppInit_DLLs-x32: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC32Loader.dll => C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC32Loader.dll [1050912 2014-03-03] (Conduit) Startup: C:\Users\Gast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.4.1.lnk ShortcutTarget: OpenOffice.org 3.4.1.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe () ==================== Internet (Whitelisted) ==================== URLSearchHook: HKLM-x32 - Uptodown EN Toolbar - {40f5f417-32bb-4296-9446-c1e0094e7d82} - C:\Program Files (x86)\Uptodown_EN\prxtbUpt0.dll (Conduit Ltd.) URLSearchHook: HKLM-x32 - ytbyclick Toolbar - {d4f1c433-f9c3-49f2-8645-37dbeca19e90} - C:\Program Files (x86)\ytbyclick\prxtbytb2.dll (Conduit Ltd.) URLSearchHook: HKCU - YTD Toolbar - {F3FEE66E-E034-436a-86E4-9690573BEE8A} - C:\Program Files (x86)\YTD Toolbar\IE\8.9\ytdToolbarIE64.dll (Spigot, Inc.) URLSearchHook: HKCU - YTD Toolbar - {F3FEE66E-E034-436a-86E4-9690573BEE8A} - C:\Program Files (x86)\YTD Toolbar\IE\8.9\ytdToolbarIE.dll (Spigot, Inc.) StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM-x32 - DefaultScope {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3078318 SearchScopes: HKLM-x32 - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3078318 BHO: Bing Bar Helper - {1dad3af3-ef2f-4f64-ac4b-11789189fcb6} - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\amd64\BingExt.dll (Microsoft Corporation.) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.141\McAfeeMSS_IE.dll (McAfee, Inc.) BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO-x32: Bing Bar Helper - {1dad3af3-ef2f-4f64-ac4b-11789189fcb6} - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingExt.dll (Microsoft Corporation.) BHO-x32: SBCONVERT Class - {3017FB3E-9A77-4396-88C5-0EC9548FB42F} - C:\Program Files (x86)\SpeedBit Video Downloader\Toolbar\tbcore3.dll () BHO-x32: DivX Plus Web Player HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC) BHO-x32: SearchPredictObj Class - {389943B0-C3A2-4E69-82CB-8596A84CB3DC} - C:\Program Files (x86)\SearchPredict\SearchPredict.dll (Speedbit Ltd.) BHO-x32: Uptodown EN Toolbar - {40f5f417-32bb-4296-9446-c1e0094e7d82} - C:\Program Files (x86)\Uptodown_EN\prxtbUpt0.dll (Conduit Ltd.) BHO-x32: DivX HiQ - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC) BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll (Microsoft Corporation) BHO-x32: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask) BHO-x32: ytbyclick Toolbar - {d4f1c433-f9c3-49f2-8645-37dbeca19e90} - C:\Program Files (x86)\ytbyclick\prxtbytb2.dll (Conduit Ltd.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) BHO-x32: Google Gears Helper - {E0FEFE40-FBF9-42AE-BA58-794CA7E3FB53} - C:\Program Files (x86)\Google\Google Gears\Internet Explorer\0.5.36.0\gears.dll (Google Inc.) BHO-x32: YTD Toolbar - {F3FEE66E-E034-436a-86E4-9690573BEE8A} - C:\Program Files (x86)\YTD Toolbar\IE\8.9\ytdToolbarIE.dll (Spigot, Inc.) BHO-x32: GrabberObj Class - {FF7C3CF0-4B15-11D1-ABED-709549C10000} - C:\Program Files (x86)\SpeedBit Video Downloader\Toolbar\Grabber.dll (Speedbit Ltd.) Toolbar: HKLM - DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll () Toolbar: HKLM - YTD Toolbar - {F3FEE66E-E034-436a-86E4-9690573BEE8A} - C:\Program Files (x86)\YTD Toolbar\IE\8.9\ytdToolbarIE64.dll (Spigot, Inc.) Toolbar: HKLM - Bing Bar - {eec0f710-38b5-4aba-99bf-ec87564a4e13} - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\amd64\BingExt.dll (Microsoft Corporation.) Toolbar: HKLM-x32 - DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll () Toolbar: HKLM-x32 - SpeedBit Video Downloader - {0329E7D6-6F54-462D-93F6-F5C3118BADF2} - C:\Program Files (x86)\SpeedBit Video Downloader\Toolbar\tbcore3.dll () Toolbar: HKLM-x32 - Uptodown EN Toolbar - {40f5f417-32bb-4296-9446-c1e0094e7d82} - C:\Program Files (x86)\Uptodown_EN\prxtbUpt0.dll (Conduit Ltd.) Toolbar: HKLM-x32 - Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask) Toolbar: HKLM-x32 - ytbyclick Toolbar - {d4f1c433-f9c3-49f2-8645-37dbeca19e90} - C:\Program Files (x86)\ytbyclick\prxtbytb2.dll (Conduit Ltd.) Toolbar: HKLM-x32 - YTD Toolbar - {F3FEE66E-E034-436a-86E4-9690573BEE8A} - C:\Program Files (x86)\YTD Toolbar\IE\8.9\ytdToolbarIE.dll (Spigot, Inc.) Toolbar: HKLM-x32 - Bing Bar - {eec0f710-38b5-4aba-99bf-ec87564a4e13} - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingExt.dll (Microsoft Corporation.) DPF: HKLM-x32 {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Winsock: Catalog9 01 C:\Program Files (x86)\SpeedBit Video Accelerator\SBLSP.dll [168136] (SpeedBit) Winsock: Catalog9 02 C:\Program Files (x86)\SpeedBit Video Accelerator\SBLSP.dll [168136] (SpeedBit) Winsock: Catalog9 03 C:\Program Files (x86)\SpeedBit Video Accelerator\SBLSP.dll [168136] (SpeedBit) Winsock: Catalog9 04 C:\Program Files (x86)\SpeedBit Video Accelerator\SBLSP.dll [168136] (SpeedBit) Winsock: Catalog9 05 C:\Program Files (x86)\SpeedBit Video Accelerator\SBLSP.dll [168136] (SpeedBit) Winsock: Catalog9 06 C:\Program Files (x86)\SpeedBit Video Accelerator\SBLSP.dll [168136] (SpeedBit) Winsock: Catalog9 07 C:\Program Files (x86)\SpeedBit Video Accelerator\SBLSP.dll [168136] (SpeedBit) Winsock: Catalog9 08 C:\Program Files (x86)\SpeedBit Video Accelerator\SBLSP.dll [168136] (SpeedBit) Winsock: Catalog9 09 C:\Program Files (x86)\SpeedBit Video Accelerator\SBLSP.dll [168136] (SpeedBit) Winsock: Catalog9 10 C:\Program Files (x86)\SpeedBit Video Accelerator\SBLSP.dll [168136] (SpeedBit) Winsock: Catalog9 21 C:\Program Files (x86)\SpeedBit Video Accelerator\SBLSP.dll [168136] (SpeedBit) Winsock: Catalog9-x64 01 C:\Program Files (x86)\Common Files\PC Tools\Lsp\PCTLsp64.dll [448984] (PC Tools Research Pty Ltd.) Winsock: Catalog9-x64 02 C:\Program Files (x86)\Common Files\PC Tools\Lsp\PCTLsp64.dll [448984] (PC Tools Research Pty Ltd.) Winsock: Catalog9-x64 03 C:\Program Files (x86)\Common Files\PC Tools\Lsp\PCTLsp64.dll [448984] (PC Tools Research Pty Ltd.) Winsock: Catalog9-x64 04 C:\Program Files (x86)\Common Files\PC Tools\Lsp\PCTLsp64.dll [448984] (PC Tools Research Pty Ltd.) Winsock: Catalog9-x64 05 C:\Program Files (x86)\Common Files\PC Tools\Lsp\PCTLsp64.dll [448984] (PC Tools Research Pty Ltd.) Winsock: Catalog9-x64 06 C:\Program Files (x86)\Common Files\PC Tools\Lsp\PCTLsp64.dll [448984] (PC Tools Research Pty Ltd.) Winsock: Catalog9-x64 17 C:\Program Files (x86)\Common Files\PC Tools\Lsp\PCTLsp64.dll [448984] (PC Tools Research Pty Ltd.) Tcpip\Parameters: [DhcpNameServer] 10.0.0.138 FireFox: ======== FF ProfilePath: C:\Users\TEMP.EddieTheBeast\AppData\Roaming\Mozilla\Firefox\Profiles\wwzdkq4m.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_77.dll () FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll (Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll () FF Plugin-x32: @divx.com/DivX Browser Plugin,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC) FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=1.122.0 - C:\Program Files (x86)\Battlelog Web Plugins\1.122.0\npesnlaunch.dll No File FF Plugin-x32: @esn/esnlaunch,version=2.1.2 - C:\Program Files (x86)\Battlelog Web Plugins\2.1.2\npesnlaunch.dll No File FF Plugin-x32: @esn/npbattlelog,version=2.3.2 - C:\Program Files (x86)\Battlelog Web Plugins\2.3.2\npbattlelog.dll (EA Digital Illusions CE AB) FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @java.com/JavaPlugin - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF Plugin-x32: @mcafee.com/McAfeeMssPlugin - C:\Program Files\McAfee Security Scan\3.8.141\npMcAfeeMss.dll (McAfee, Inc.) FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @thrixxx.com/WebLaunch - C:\Program Files (x86)\thriXXX\WebLaunch\Binaries\npWebLaunch.dll No File FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll (Sun Microsystems, Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin6.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin7.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npwachk.dll (Nullsoft, Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npWebLaunch.dll ( ) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\avg-secure-search.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF HKLM-x32\...\Firefox\Extensions: [searchpredict@speedbit.com] - C:\Program Files (x86)\SearchPredict\PRFireFox FF Extension: SearchPredict - C:\Program Files (x86)\SearchPredict\PRFireFox [2011-05-07] FF HKLM-x32\...\Firefox\Extensions: [{0329E7D6-6F54-462D-93F6-F5C3118BADF2}] - C:\Program Files (x86)\SpeedBit Video Downloader\SPFireFox FF Extension: SpeedBit Video Downloader - C:\Program Files (x86)\SpeedBit Video Downloader\SPFireFox [2011-05-07] FF HKLM-x32\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\html5video FF Extension: DivX Plus Web Player HTML5 <video> - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\html5video [2011-06-12] FF HKLM-x32\...\Firefox\Extensions: [{6904342A-8307-11DF-A508-4AE2DFD72085}] - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\wpa FF Extension: DivX HiQ - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\wpa [2011-06-12] FF HKLM-x32\...\Firefox\Extensions: [{000a9d1c-beef-4f90-9363-039d445309b8}] - C:\Program Files (x86)\Google\Google Gears\Firefox\ FF Extension: Google Gears - C:\Program Files (x86)\Google\Google Gears\Firefox\ [] FF HKLM-x32\...\Thunderbird\Extensions: [te_7.0@nokia.com] - C:\Program Files (x86)\Nokia\Nokia Suite\Connectors\Thunderbird Connector\ThunderbirdExtension_7.0 FF Extension: Thunderbird Address Book Synchronisation Extension - C:\Program Files (x86)\Nokia\Nokia Suite\Connectors\Thunderbird Connector\ThunderbirdExtension_7.0 [2011-11-25] ==================== Services (Whitelisted) ================= R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe [3782672 2014-02-23] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe [348008 2013-09-24] (AVG Technologies CZ, s.r.o.) R2 CltMngSvc; C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe [2454816 2014-03-03] (Conduit) R2 MaxMerger; C:\Program Files (x86)\Max Spyware Detector\MaxMerger.exe [305120 2013-06-14] (Max Secure Software) R2 MaxWatchDogService; C:\Program Files\Max Spyware Detector\MaxWatchDogService.exe [862688 2013-06-14] (Max Secure Software) S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.141\McCHSvc.exe [289256 2014-01-16] (McAfee, Inc.) R2 MSMQ; C:\Windows\system32\mqsvc.exe [9216 2009-07-14] (Microsoft Corporation) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2012-04-12] () S3 sdAuxService; C:\Program Files (x86)\PC Tools Security\pctsAuxs.exe [366840 2010-03-15] (PC Tools) S3 sdCoreService; C:\Program Files (x86)\PC Tools Security\pctsSvc.exe [1150936 2010-11-19] (PC Tools) R2 SNMP; C:\Windows\System32\snmp.exe [49664 2009-07-14] (Microsoft Corporation) R2 SNMP; C:\Windows\SysWOW64\snmp.exe [47616 2009-07-14] (Microsoft Corporation) R2 VideoAcceleratorService; C:\Program Files (x86)\SpeedBit Video Accelerator\VideoAcceleratorService.exe [265928 2011-05-07] (SpeedBit Ltd.) R2 WTService; C:\Windows\System32\atwtusb.exe [664296 2009-11-04] () S3 aspnet_state; %SystemRoot%\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [X] S2 CPUCooLServer; "C:\Program Files (x86)\CPUCooL\CooLSrv.exe" [X] ==================== Drivers (Whitelisted) ==================== S3 andnetadb; C:\Windows\System32\Drivers\lgandnetadb.sys [31744 2012-07-03] (Google Inc) S3 AndNetDiag; C:\Windows\System32\DRIVERS\lgandnetdiag64.sys [29184 2012-07-03] (LG Electronics Inc.) S3 ANDNetModem; C:\Windows\System32\DRIVERS\lgandnetmodem64.sys [36352 2012-07-03] (LG Electronics Inc.) S3 andnetndis; C:\Windows\System32\DRIVERS\lgandnetndis64.sys [93184 2012-07-04] (LG Electronics Inc.) S3 ATITool; C:\Windows\System32\DRIVERS\ATITool64.sys [30720 2006-11-10] () R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [150808 2013-11-25] (AVG Technologies CZ, s.r.o.) R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [243480 2013-11-25] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [196376 2013-11-25] (AVG Technologies CZ, s.r.o.) R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [212280 2013-10-31] (AVG Technologies CZ, s.r.o.) R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [294712 2013-10-31] (AVG Technologies CZ, s.r.o.) R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [123704 2013-10-01] (AVG Technologies CZ, s.r.o.) R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [31544 2013-09-10] (AVG Technologies CZ, s.r.o.) R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [251192 2013-08-01] (AVG Technologies CZ, s.r.o.) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [254528 2011-03-04] (DT Soft Ltd) R0 MaxMgr; C:\Windows\System32\drivers\MaxMgr.sys [84448 2013-06-14] (Max Secure Software) R0 MaxProc64; C:\Windows\System32\drivers\MaxProc64.sys [79840 2013-06-14] (Max Secure Software) R0 MaxProtector64; C:\Windows\System32\drivers\MaxProtector64.sys [91616 2013-06-14] (Max Secure Software) R3 moufiltr; C:\Windows\System32\DRIVERS\moufiltr.sys [7680 2009-03-08] (Windows (R) Codename Longhorn DDK provider) R3 MQAC; C:\Windows\System32\drivers\mqac.sys [189440 2009-07-14] (Microsoft Corporation) R1 ntiopnp; C:\Windows\System32\Drivers\ntiopnp.sys [19544 2010-11-11] () R0 PCTCore; C:\Windows\System32\drivers\PCTCore64.sys [257232 2010-11-25] (PC Tools) R0 pctDS; C:\Windows\System32\drivers\pctDS64.sys [452872 2010-06-29] (PC Tools) R0 SDActMon; C:\Windows\System32\drivers\SDActMon.sys [144864 2013-06-14] (Max Secure Software) R3 vhidmini; C:\Windows\System32\DRIVERS\walvhid.sys [7552 2009-08-26] (Windows (R) Win 7 DDK provider) S0x01000000 papycpu2; \SystemRoot\System32\DRIVERS\papycpu2.sys [X] S0x01000000 papyjoy; \SystemRoot\System32\DRIVERS\papyjoy.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-03-29 11:31 - 2014-03-29 11:31 - 00027079 _____ () C:\Users\TEMP.EddieTheBeast\Downloads\FRST.txt 2014-03-29 11:31 - 2014-03-29 11:31 - 00000000 ____D () C:\FRST 2014-03-29 11:30 - 2014-03-29 11:30 - 02157056 _____ (Farbar) C:\Users\TEMP.EddieTheBeast\Downloads\FRST64.exe 2014-03-29 11:08 - 2014-03-29 11:08 - 00000000 ____D () C:\Users\TEMP.EddieTheBeast\AppData\Roaming\Malwarebytes 2014-03-29 10:53 - 2014-03-29 10:53 - 00000000 ____D () C:\Users\TEMP.EddieTheBeast\AppData\Local\Macromedia 2014-03-29 10:51 - 2014-03-29 10:51 - 00069184 _____ () C:\Users\TEMP.EddieTheBeast\AppData\Local\GDIPFONTCACHEV1.DAT 2014-03-29 10:50 - 2014-03-29 10:50 - 00000000 ____D () C:\Users\TEMP.EddieTheBeast\AppData\Roaming\Mozilla 2014-03-29 10:50 - 2014-03-29 10:50 - 00000000 ____D () C:\Users\TEMP.EddieTheBeast\AppData\Roaming\AVG2014 2014-03-29 10:50 - 2014-03-29 10:50 - 00000000 ____D () C:\Users\TEMP.EddieTheBeast\AppData\Roaming\ATI 2014-03-29 10:50 - 2014-03-29 10:50 - 00000000 ____D () C:\Users\TEMP.EddieTheBeast\AppData\Local\Mozilla 2014-03-29 10:50 - 2014-03-29 10:50 - 00000000 ____D () C:\Users\TEMP.EddieTheBeast\AppData\Local\ATI 2014-03-29 10:49 - 2014-03-29 10:53 - 00000000 ____D () C:\Users\TEMP.EddieTheBeast\AppData\Roaming\Adobe 2014-03-29 10:49 - 2014-03-29 10:49 - 00001450 _____ () C:\Users\TEMP.EddieTheBeast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-03-29 10:49 - 2014-03-29 10:49 - 00001416 _____ () C:\Users\TEMP.EddieTheBeast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk 2014-03-29 10:49 - 2014-03-29 10:49 - 00000000 ___RD () C:\Users\TEMP.EddieTheBeast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-03-29 10:49 - 2014-03-29 10:49 - 00000000 ___RD () C:\Users\TEMP.EddieTheBeast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-03-29 10:49 - 2014-03-29 10:49 - 00000000 ____D () C:\Users\TEMP.EddieTheBeast\AppData\Local\Avg2014 2014-03-29 10:49 - 2014-03-29 10:49 - 00000000 ____D () C:\Users\TEMP.EddieTheBeast\AppData\Local\Adobe 2014-03-29 10:48 - 2014-03-29 10:49 - 00000000 ____D () C:\Users\TEMP.EddieTheBeast 2014-03-29 10:48 - 2014-03-29 10:48 - 00000020 ___SH () C:\Users\TEMP.EddieTheBeast\ntuser.ini 2014-03-29 10:48 - 2014-03-29 10:48 - 00000000 _SHDL () C:\Users\TEMP.EddieTheBeast\Vorlagen 2014-03-29 10:48 - 2014-03-29 10:48 - 00000000 _SHDL () C:\Users\TEMP.EddieTheBeast\Startmenü 2014-03-29 10:48 - 2014-03-29 10:48 - 00000000 _SHDL () C:\Users\TEMP.EddieTheBeast\Netzwerkumgebung 2014-03-29 10:48 - 2014-03-29 10:48 - 00000000 _SHDL () C:\Users\TEMP.EddieTheBeast\Lokale Einstellungen 2014-03-29 10:48 - 2014-03-29 10:48 - 00000000 _SHDL () C:\Users\TEMP.EddieTheBeast\Eigene Dateien 2014-03-29 10:48 - 2014-03-29 10:48 - 00000000 _SHDL () C:\Users\TEMP.EddieTheBeast\Druckumgebung 2014-03-29 10:48 - 2014-03-29 10:48 - 00000000 _SHDL () C:\Users\TEMP.EddieTheBeast\Documents\Eigene Musik 2014-03-29 10:48 - 2014-03-29 10:48 - 00000000 _SHDL () C:\Users\TEMP.EddieTheBeast\Documents\Eigene Bilder 2014-03-29 10:48 - 2014-03-29 10:48 - 00000000 _SHDL () C:\Users\TEMP.EddieTheBeast\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-03-29 10:48 - 2014-03-29 10:48 - 00000000 _SHDL () C:\Users\TEMP.EddieTheBeast\AppData\Local\Verlauf 2014-03-29 10:48 - 2014-03-29 10:48 - 00000000 _SHDL () C:\Users\TEMP.EddieTheBeast\AppData\Local\Anwendungsdaten 2014-03-29 10:48 - 2014-03-29 10:48 - 00000000 _SHDL () C:\Users\TEMP.EddieTheBeast\Anwendungsdaten 2014-03-29 10:48 - 2012-12-12 09:01 - 00000000 ____D () C:\Users\TEMP.EddieTheBeast\AppData\Roaming\TuneUp Software 2014-03-29 10:48 - 2012-01-19 17:54 - 00000000 ____D () C:\Users\TEMP.EddieTheBeast\AppData\Roaming\Macromedia 2014-03-29 10:48 - 2009-07-14 05:54 - 00000000 ___RD () C:\Users\TEMP.EddieTheBeast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-03-29 10:48 - 2009-07-14 05:49 - 00000000 ___RD () C:\Users\TEMP.EddieTheBeast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-03-29 10:39 - 2014-03-29 10:39 - 00001354 _____ () C:\Windows\PFRO.log 2014-03-29 10:39 - 2014-03-29 10:39 - 00000056 _____ () C:\Windows\setupact.log 2014-03-29 10:39 - 2014-03-29 10:39 - 00000000 _____ () C:\Windows\setuperr.log 2014-03-24 14:03 - 2014-03-24 14:03 - 00002792 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC 2014-03-24 14:03 - 2014-03-24 14:03 - 00000829 _____ () C:\Users\Public\Desktop\CCleaner.lnk 2014-03-24 14:03 - 2014-03-24 14:03 - 00000000 ____D () C:\Program Files\CCleaner 2014-03-24 14:02 - 2014-03-24 14:02 - 00001120 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-03-24 13:52 - 2014-03-24 13:52 - 00000000 ____D () C:\Windows\SysWOW64\SearchProtect 2014-03-20 21:58 - 2014-03-20 21:58 - 00000000 ____D () C:\Program Files (x86)\YTD Toolbar 2014-03-20 21:58 - 2014-03-20 21:58 - 00000000 ____D () C:\Program Files (x86)\Application Updater 2014-03-19 15:39 - 2014-03-19 15:39 - 00003064 _____ () C:\Windows\System32\Tasks\{4D261881-9FAB-49E6-ABC5-410D8848B3EC} 2014-03-19 14:53 - 2014-03-19 14:53 - 00000000 ____D () C:\Program Files (x86)\SearchProtect 2014-03-11 20:31 - 2014-03-11 20:31 - 05777288 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2014-03-10 13:47 - 2014-03-10 13:47 - 00000000 ____D () C:\Windows\C5C1C0F0D62F4DBF81D4D7EF397C228B.TMP 2014-03-10 13:46 - 2014-03-10 13:46 - 00002180 _____ () C:\Users\Public\Desktop\Handball Challenge Trainingscamp.lnk 2014-03-10 13:46 - 2014-03-10 13:46 - 00000000 ____D () C:\Program Files (x86)\NeutronGames 2014-03-05 23:11 - 2014-03-05 23:11 - 00037947 _____ () C:\VF.xcf 2014-03-02 23:22 - 2014-03-02 23:22 - 08347136 _____ (Nokia Corporation and/or its subsidiary(-ies)) C:\QtGui4.dll 2014-03-02 23:22 - 2014-03-02 23:22 - 02520576 _____ (Nokia Corporation and/or its subsidiary(-ies)) C:\QtCore4.dll 2014-03-02 23:22 - 2014-03-02 23:22 - 00374096 _____ () C:\OCLiveUpdate.exe 2014-03-02 23:22 - 2014-03-02 23:22 - 00098128 _____ (Mobile Leader Co.,Ltd.) C:\ExeMgr.exe 2014-03-02 23:22 - 2014-03-02 23:22 - 00000000 ____D () C:\Locale 2014-03-02 23:22 - 2014-03-02 23:22 - 00000000 ____D () C:\imageformats 2014-03-02 23:18 - 2014-03-02 23:22 - 00075009 _____ () C:\LiveUpdate.xml 2014-03-02 23:18 - 2014-03-02 23:22 - 00000000 ____D () C:\Update ==================== One Month Modified Files and Folders ======= 2014-03-29 11:31 - 2014-03-29 11:31 - 00027079 _____ () C:\Users\TEMP.EddieTheBeast\Downloads\FRST.txt 2014-03-29 11:31 - 2014-03-29 11:31 - 00000000 ____D () C:\FRST 2014-03-29 11:31 - 2012-04-07 10:17 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-03-29 11:30 - 2014-03-29 11:30 - 02157056 _____ (Farbar) C:\Users\TEMP.EddieTheBeast\Downloads\FRST64.exe 2014-03-29 11:12 - 2011-12-04 00:21 - 00001166 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2158434394-2343193655-1295655042-1001UA.job 2014-03-29 11:08 - 2014-03-29 11:08 - 00000000 ____D () C:\Users\TEMP.EddieTheBeast\AppData\Roaming\Malwarebytes 2014-03-29 11:05 - 2011-12-28 21:43 - 00001128 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-03-29 10:53 - 2014-03-29 10:53 - 00000000 ____D () C:\Users\TEMP.EddieTheBeast\AppData\Local\Macromedia 2014-03-29 10:53 - 2014-03-29 10:49 - 00000000 ____D () C:\Users\TEMP.EddieTheBeast\AppData\Roaming\Adobe 2014-03-29 10:51 - 2014-03-29 10:51 - 00069184 _____ () C:\Users\TEMP.EddieTheBeast\AppData\Local\GDIPFONTCACHEV1.DAT 2014-03-29 10:50 - 2014-03-29 10:50 - 00000000 ____D () C:\Users\TEMP.EddieTheBeast\AppData\Roaming\Mozilla 2014-03-29 10:50 - 2014-03-29 10:50 - 00000000 ____D () C:\Users\TEMP.EddieTheBeast\AppData\Roaming\AVG2014 2014-03-29 10:50 - 2014-03-29 10:50 - 00000000 ____D () C:\Users\TEMP.EddieTheBeast\AppData\Roaming\ATI 2014-03-29 10:50 - 2014-03-29 10:50 - 00000000 ____D () C:\Users\TEMP.EddieTheBeast\AppData\Local\Mozilla 2014-03-29 10:50 - 2014-03-29 10:50 - 00000000 ____D () C:\Users\TEMP.EddieTheBeast\AppData\Local\ATI 2014-03-29 10:49 - 2014-03-29 10:49 - 00001450 _____ () C:\Users\TEMP.EddieTheBeast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-03-29 10:49 - 2014-03-29 10:49 - 00001416 _____ () C:\Users\TEMP.EddieTheBeast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk 2014-03-29 10:49 - 2014-03-29 10:49 - 00000000 ___RD () C:\Users\TEMP.EddieTheBeast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-03-29 10:49 - 2014-03-29 10:49 - 00000000 ___RD () C:\Users\TEMP.EddieTheBeast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-03-29 10:49 - 2014-03-29 10:49 - 00000000 ____D () C:\Users\TEMP.EddieTheBeast\AppData\Local\Avg2014 2014-03-29 10:49 - 2014-03-29 10:49 - 00000000 ____D () C:\Users\TEMP.EddieTheBeast\AppData\Local\Adobe 2014-03-29 10:49 - 2014-03-29 10:48 - 00000000 ____D () C:\Users\TEMP.EddieTheBeast 2014-03-29 10:49 - 2011-12-28 21:43 - 00001124 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-03-29 10:48 - 2014-03-29 10:48 - 00000020 ___SH () C:\Users\TEMP.EddieTheBeast\ntuser.ini 2014-03-29 10:48 - 2014-03-29 10:48 - 00000000 _SHDL () C:\Users\TEMP.EddieTheBeast\Vorlagen 2014-03-29 10:48 - 2014-03-29 10:48 - 00000000 _SHDL () C:\Users\TEMP.EddieTheBeast\Startmenü 2014-03-29 10:48 - 2014-03-29 10:48 - 00000000 _SHDL () C:\Users\TEMP.EddieTheBeast\Netzwerkumgebung 2014-03-29 10:48 - 2014-03-29 10:48 - 00000000 _SHDL () C:\Users\TEMP.EddieTheBeast\Lokale Einstellungen 2014-03-29 10:48 - 2014-03-29 10:48 - 00000000 _SHDL () C:\Users\TEMP.EddieTheBeast\Eigene Dateien 2014-03-29 10:48 - 2014-03-29 10:48 - 00000000 _SHDL () C:\Users\TEMP.EddieTheBeast\Druckumgebung 2014-03-29 10:48 - 2014-03-29 10:48 - 00000000 _SHDL () C:\Users\TEMP.EddieTheBeast\Documents\Eigene Musik 2014-03-29 10:48 - 2014-03-29 10:48 - 00000000 _SHDL () C:\Users\TEMP.EddieTheBeast\Documents\Eigene Bilder 2014-03-29 10:48 - 2014-03-29 10:48 - 00000000 _SHDL () C:\Users\TEMP.EddieTheBeast\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-03-29 10:48 - 2014-03-29 10:48 - 00000000 _SHDL () C:\Users\TEMP.EddieTheBeast\AppData\Local\Verlauf 2014-03-29 10:48 - 2014-03-29 10:48 - 00000000 _SHDL () C:\Users\TEMP.EddieTheBeast\AppData\Local\Anwendungsdaten 2014-03-29 10:48 - 2014-03-29 10:48 - 00000000 _SHDL () C:\Users\TEMP.EddieTheBeast\Anwendungsdaten 2014-03-29 10:47 - 2009-07-14 05:45 - 00014240 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-03-29 10:47 - 2009-07-14 05:45 - 00014240 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-03-29 10:43 - 2010-10-11 08:58 - 01081990 _____ () C:\Windows\WindowsUpdate.log 2014-03-29 10:40 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\tracing 2014-03-29 10:40 - 2009-07-14 03:34 - 00000518 _____ () C:\Windows\win.ini 2014-03-29 10:39 - 2014-03-29 10:39 - 00001354 _____ () C:\Windows\PFRO.log 2014-03-29 10:39 - 2014-03-29 10:39 - 00000056 _____ () C:\Windows\setupact.log 2014-03-29 10:39 - 2014-03-29 10:39 - 00000000 _____ () C:\Windows\setuperr.log 2014-03-29 10:39 - 2011-08-09 14:02 - 00065536 _____ () C:\Windows\system32\Ikeext.etl 2014-03-29 10:39 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-03-29 10:33 - 2013-12-24 03:16 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-03-29 09:02 - 2011-02-02 16:37 - 00000000 ____D () C:\ProgramData\MFAData 2014-03-27 22:12 - 2011-12-04 00:21 - 00001114 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2158434394-2343193655-1295655042-1001Core.job 2014-03-24 18:14 - 2011-07-21 21:17 - 00000000 ____D () C:\Program Files (x86)\DiRT 3 2014-03-24 14:12 - 2012-03-27 20:49 - 00000000 ____D () C:\Users\Eddie-The-Beast\Downloads\Crash Test Dummies - Mmm Mmm Mmm Mmm FLAC [320kbps] @vAin4us 2014-03-24 14:12 - 2011-08-20 23:06 - 00000000 ____D () C:\Users\Eddie-The-Beast\musik 2014-03-24 14:12 - 2011-06-23 21:24 - 00000000 ____D () C:\Users\Eddie-The-Beast\Downloads\rld-bc21 2014-03-24 14:10 - 2013-02-18 15:27 - 00524288 ___SH () C:\Users\Eddie-The-Beast\Downloads\Thumbs.db 2014-03-24 14:06 - 2011-04-22 18:21 - 00000000 ____D () C:\Windows\Minidump 2014-03-24 14:06 - 2011-02-05 23:12 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-03-24 14:06 - 2010-10-11 09:54 - 00000000 ____D () C:\Windows\Panther 2014-03-24 14:03 - 2014-03-24 14:03 - 00002792 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC 2014-03-24 14:03 - 2014-03-24 14:03 - 00000829 _____ () C:\Users\Public\Desktop\CCleaner.lnk 2014-03-24 14:03 - 2014-03-24 14:03 - 00000000 ____D () C:\Program Files\CCleaner 2014-03-24 14:02 - 2014-03-24 14:02 - 00001120 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-03-24 14:02 - 2011-03-12 16:45 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-03-24 13:52 - 2014-03-24 13:52 - 00000000 ____D () C:\Windows\SysWOW64\SearchProtect 2014-03-24 13:44 - 2009-07-14 05:45 - 04873272 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-03-24 09:31 - 2014-02-02 09:55 - 00000988 _____ () C:\Users\Public\Desktop\AVG 2014.lnk 2014-03-20 21:58 - 2014-03-20 21:58 - 00000000 ____D () C:\Program Files (x86)\YTD Toolbar 2014-03-20 21:58 - 2014-03-20 21:58 - 00000000 ____D () C:\Program Files (x86)\Application Updater 2014-03-19 15:40 - 2011-04-05 20:30 - 00000000 ____D () C:\Program Files (x86)\Activision Value 2014-03-19 15:39 - 2014-03-19 15:39 - 00003064 _____ () C:\Windows\System32\Tasks\{4D261881-9FAB-49E6-ABC5-410D8848B3EC} 2014-03-19 14:53 - 2014-03-19 14:53 - 00000000 ____D () C:\Program Files (x86)\SearchProtect 2014-03-19 14:38 - 2011-04-27 11:24 - 00103736 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2014-03-19 14:38 - 2011-04-27 11:24 - 00103736 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0 2014-03-11 20:31 - 2014-03-11 20:31 - 05777288 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2014-03-11 20:31 - 2012-04-07 10:17 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-03-11 20:31 - 2012-04-07 10:17 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-03-11 20:31 - 2011-05-16 11:35 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-03-10 13:47 - 2014-03-10 13:47 - 00000000 ____D () C:\Windows\C5C1C0F0D62F4DBF81D4D7EF397C228B.TMP 2014-03-10 13:46 - 2014-03-10 13:46 - 00002180 _____ () C:\Users\Public\Desktop\Handball Challenge Trainingscamp.lnk 2014-03-10 13:46 - 2014-03-10 13:46 - 00000000 ____D () C:\Program Files (x86)\NeutronGames 2014-03-05 23:11 - 2014-03-05 23:11 - 00037947 _____ () C:\VF.xcf 2014-03-02 23:22 - 2014-03-02 23:22 - 08347136 _____ (Nokia Corporation and/or its subsidiary(-ies)) C:\QtGui4.dll 2014-03-02 23:22 - 2014-03-02 23:22 - 02520576 _____ (Nokia Corporation and/or its subsidiary(-ies)) C:\QtCore4.dll 2014-03-02 23:22 - 2014-03-02 23:22 - 00374096 _____ () C:\OCLiveUpdate.exe 2014-03-02 23:22 - 2014-03-02 23:22 - 00098128 _____ (Mobile Leader Co.,Ltd.) C:\ExeMgr.exe 2014-03-02 23:22 - 2014-03-02 23:22 - 00000000 ____D () C:\Locale 2014-03-02 23:22 - 2014-03-02 23:22 - 00000000 ____D () C:\imageformats 2014-03-02 23:22 - 2014-03-02 23:18 - 00075009 _____ () C:\LiveUpdate.xml 2014-03-02 23:22 - 2014-03-02 23:18 - 00000000 ____D () C:\Update 2014-03-02 22:15 - 2013-06-23 19:58 - 00000000 ____D () C:\Program Files\Max Spyware Detector 2014-02-27 22:16 - 2013-10-20 19:09 - 00001982 _____ () C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk Files to move or delete: ==================== C:\Users\Eddie-The-Beast\AppData\Roaming\skype.ini Some content of TEMP: ==================== C:\Users\Eddie-The-Beast\AppData\Local\Temp\CmdLineExt03.dll C:\Users\Eddie-The-Beast\AppData\Local\Temp\jre-7u25-windows-i586-iftw.exe C:\Users\Eddie-The-Beast\AppData\Local\Temp\NEventMessages.dll C:\Users\Eddie-The-Beast\AppData\Local\Temp\NOSEventMessages.dll C:\Users\Eddie-The-Beast\AppData\Local\Temp\setup.exe C:\Users\TEMP.EddieTheBeast\AppData\Local\Temp\SPSetup.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-03-21 01:42 ==================== End Of Log ============================ --- --- --- Und hier Addition.txt Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-03-2014 Ran by Eddie-The-Beast at 2014-03-29 11:32:38 Running from C:\Users\TEMP.EddieTheBeast\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: AVG AntiVirus Free Edition 2014 (Enabled - Up to date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9} AV: Spyware Doctor with AntiVirus (Disabled - Up to date) {2F668A56-D5E0-2DF1-A0AE-CB1284F42AB2} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spyware Doctor (Disabled - Out of date) {94076BB2-F3DA-227F-9A1E-F060FF73600F} AS: AVG AntiVirus Free Edition 2014 (Enabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664} ==================== Installed Programs ====================== 18 Wheels of Steel: Haulin' (HKLM-x32\...\18 Wheels of Steel: Haulin') (Version: - ValuSoft) Acrobat.com (HKLM-x32\...\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.1.377 - Adobe Systems Incorporated) Acrobat.com (x32 Version: 0.0.0 - Adobe Systems Incorporated) Hidden Adobe After Effects CS4 (HKLM-x32\...\Adobe_3dcb365ab9e01871fb8c6f27b0ea079) (Version: 9 - Adobe Systems Incorporated) Adobe After Effects CS4 (x32 Version: 9 - Adobe Systems Incorporated) Hidden Adobe After Effects CS4 Presets (x32 Version: 9 - Adobe Systems Incorporated) Hidden Adobe After Effects CS5.5 (HKLM-x32\...\{E82097B9-A3B8-404A-9A92-AC16A8AC9576}) (Version: 10.5 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 2.5.1.17730 - Adobe Systems Inc.) Adobe AIR (x32 Version: 2.5.1.17730 - Adobe Systems Inc.) Hidden Adobe Anchor Service CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Anchor Service x64 CS4 (Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Bridge CS4 (x32 Version: 3 - Adobe Systems Incorporated) Hidden Adobe CMaps CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe CMaps x64 CS4 (Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Color - Photoshop Specific CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Color EU Extra Settings CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Color JA Extra Settings CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Color NA Recommended Settings CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Color Video Profiles AE CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Color Video Profiles CS CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.4.980 - Adobe Systems Incorporated.) Adobe Community Help (x32 Version: 3.4.980 - Adobe Systems Incorporated.) Hidden Adobe CSI CS4 (x32 Version: 1 - Adobe Systems Incorporated) Hidden Adobe CSI CS4 x64 (Version: 1 - Adobe Systems Incorporated) Hidden Adobe Default Language CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Device Central CS4 (x32 Version: 2 - Adobe Systems Incorporated) Hidden Adobe Drive CS4 (x32 Version: 1 - Adobe Systems Incorporated) Hidden Adobe Drive CS4 x64 (Version: 1 - Adobe Systems Incorporated) Hidden Adobe Dynamiclink Support (x32 Version: 1 - Adobe Systems Incorporated) Hidden Adobe ExtendScript Toolkit CS4 (x32 Version: 3.0.0 - Adobe Systems Incorporated) Hidden Adobe Extension Manager CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Flash Player 12 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 12.0.0.77 - Adobe Systems Incorporated) Adobe Flash Player 12 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 12.0.0.77 - Adobe Systems Incorporated) Adobe Fonts All (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Fonts All x64 (Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Linguistics CS4 (x32 Version: 4.0.0 - Adobe Systems Incorporated) Hidden Adobe Linguistics CS4 x64 (Version: 4.0.0 - Adobe Systems Incorporated) Hidden Adobe Media Encoder CS4 (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden Adobe Media Encoder CS4 Additional Exporter (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden Adobe Media Player (HKLM-x32\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.1 - Adobe Systems Incorporated) Adobe Media Player (x32 Version: 0.0.0 - Adobe Systems Incorporated) Hidden Adobe MotionPicture Color Files CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Output Module (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe PDF Library Files CS4 (x32 Version: 9.0 - Adobe Systems Incorporated) Hidden Adobe PDF Library Files x64 CS4 (Version: 9.0 - Adobe Systems Incorporated) Hidden Adobe Photoshop CS4 (64 Bit) (Version: 11.0 - Adobe Systems Incorporated) Hidden Adobe Photoshop CS4 (HKLM-x32\...\Adobe_faf656ef605427ee2f42989c3ad31b8) (Version: 11.0 - Adobe Systems Incorporated) Adobe Photoshop CS4 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden Adobe Photoshop CS4 Support (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden Adobe Reader 9 (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-A90000000001}) (Version: 9.0.0 - Adobe Systems Incorporated) Adobe Search for Help (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden Adobe Service Manager Extension (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden Adobe Setup (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Story (HKLM-x32\...\com.adobe.AdobeStory.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.0.571 - Adobe Systems Incorporated) Adobe Story (x32 Version: 1.0.571 - Adobe Systems Incorporated) Hidden Adobe Type Support CS4 (x32 Version: 9.0 - Adobe Systems Incorporated) Hidden Adobe Type Support x64 CS4 (Version: 9.0 - Adobe Systems Incorporated) Hidden Adobe Update Manager CS4 (x32 Version: 6.0.0 - Adobe Systems Incorporated) Hidden Adobe WinSoft Linguistics Plugin (x32 Version: 1.1 - Adobe Systems Incorporated) Hidden Adobe WinSoft Linguistics Plugin x64 (Version: 1.1 - Adobe Systems Incorporated) Hidden Adobe XMP Panels CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden AdobeColorCommonSetCMYK (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden AdobeColorCommonSetRGB (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Aiseesoft Total Video Converter 6.1.20 (HKLM-x32\...\Aiseesoft Total Video Converter_is1) (Version: - ) AMD Accelerated Video Transcoding (Version: 12.5.100.21219 - Advanced Micro Devices, Inc.) Hidden AMD APP SDK Runtime (Version: 10.0.1084.4 - Advanced Micro Devices Inc.) Hidden AMD Catalyst Install Manager (HKLM\...\{53A19094-2C04-A9B9-7309-3E92152D4845}) (Version: 8.0.903.0 - Advanced Micro Devices, Inc.) AMD Drag and Drop Transcoding (Version: 2.00.0000 - ATI Technologies Inc.) Hidden AMD Media Foundation Decoders (Version: 1.0.71219.1540 - Advanced Micro Devices, Inc.) Hidden Any Video Converter Professional 3.3.2 (HKLM-x32\...\Any Video Converter Professional_is1) (Version: - Any-Video-Converter.com) Apple Application Support (HKLM-x32\...\{EE6097DD-05F4-4178-9719-D3170BF098E8}) (Version: 1.4.1 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Ask Toolbar (HKLM-x32\...\{86D4B82A-ABED-442A-BE86-96357B70F4FE}) (Version: 1.15.25.0 - Ask.com) <==== ATTENTION Ask Toolbar Updater (HKCU\...\{79A765E1-C399-405B-85AF-466F52E918B0}) (Version: 1.2.6.44892 - Ask.com) <==== ATTENTION ATI AVIVO64 Codecs (Version: 11.6.0.50930 - ATI Technologies Inc.) Hidden ATI Catalyst Registration (x32 Version: 3.00.0000 - ATI Technologies Inc.) Hidden ATI Problem Report Wizard (Version: 3.0.795.0 - ATI Technologies) Hidden ATITool Overclocking Utility (HKLM-x32\...\ATITool) (Version: 0.26 - ) Autodesk SketchBook Designer 2012 - Deutsch (HKLM\...\Autodesk SketchBook Designer 2012 - Deutsch) (Version: 2.00.0000 - Autodesk) Autodesk SketchBook Designer 2012 - Deutsch (Version: 2.00.0000 - Autodesk) Hidden Autodesk SketchBook Designer 2012 - German (Version: 2.00.0000 - Autodesk) Hidden Autodesk SketchBook Designer for AutoCAD 2012 - Deutsch (HKLM\...\Autodesk SketchBook Designer for AutoCAD 2012 - Deutsch) (Version: 2.00.0000 - Autodesk) Autodesk SketchBook Designer for AutoCAD 2012 - Deutsch (Version: 2.00.0000 - Autodesk) Hidden Autodesk SketchBook Designer for AutoCAD 2012 - German (Version: 2.00.0000 - Autodesk) Hidden Autodesk SketchBookPro 2010 (HKLM-x32\...\{F8236DB8-CF1E-476B-A718-0ADBDBD97863}) (Version: 4.00.0000 - Autodesk) Autodesk SketchBookPro 2011 (HKLM-x32\...\{F0B27584-72DD-4CED-A329-57C7F91586C0}) (Version: 5.00.0000 - Autodesk) AVG 2014 (HKLM\...\AVG) (Version: 2014.0.4354 - AVG Technologies) AVG 2014 (Version: 14.0.3722 - AVG Technologies) Hidden AVG 2014 (Version: 14.0.4354 - AVG Technologies) Hidden Battlefield 2(TM) (HKLM-x32\...\{04858915-9F49-4B2A-AED4-DC49A7DE6A7B}) (Version: - ) Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.0.0.0 - Electronic Arts) Battlefield Play4Free (HKLM-x32\...\{87686C21-8A15-4b4d-A3F1-11141D9BE094}) (Version: - EA Digital illusions) Battlefield: Bad Company 2 (HKLM-x32\...\Steam App 24960) (Version: - DICE) Battlefield: Bad Company™ 2 (HKLM-x32\...\{3AC8457C-0385-4BEA-A959-E095F05D6D67}) (Version: 1.0.0.0 - Electronic Arts) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.3.2 - EA Digital Illusions CE AB) Battlestations: Pacific (HKLM-x32\...\{BBAB6D5D-1DD4-4D46-B5D9-121DCAB17DEC}) (Version: 1.00.0000 - Eidos plc) BF3 Settings Editor (HKLM\...\{5866DD36-8055-475B-A5C3-82C04091D14E}) (Version: 2.3 - Realmware) Bing Bar (HKLM-x32\...\{3365E735-48A6-4194-9988-CE59AC5AE503}) (Version: 7.3.132.0 - Microsoft Corporation) Burnout(TM) Paradise The Ultimate Box (HKLM-x32\...\{9A996B6A-846E-4A89-B9C4-17546B7BE49F}) (Version: 1.0.0.0 - Electronic Arts) Call of Duty: Black Ops - Multiplayer (HKLM-x32\...\Steam App 42710) (Version: - Treyarch) Call of Duty: Black Ops (HKLM-x32\...\Steam App 42700) (Version: - Treyarch) Call of Duty: Modern Warfare 2 - Multiplayer (HKLM-x32\...\Steam App 10190) (Version: - Infinity Ward) Call of Duty: Modern Warfare 2 - Multiplayer AlterIWnet Client (HKLM-x32\...\Call of Duty: Modern Warfare 2 - Multiplayer Alt~861BAD8E_is1) (Version: Call of Duty: Modern Warfare 2 - Multiplayer AlterIWnet Client - ) Call of Duty: Modern Warfare 2 (HKLM-x32\...\Steam App 10180) (Version: - Infinity Ward) Call of Duty: Modern Warfare 3 - Dedicated Server (HKLM-x32\...\Steam App 42750) (Version: - Infinity Ward - Sledgehammer Games) Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center (x32 Version: 2012.1219.1521.27485 - Ihr Firmenname) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2011.0308.2325.42017 - ATI) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2012.1219.1521.27485 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2012.1219.1521.27485 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2012.1219.1521.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Standard (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Traditional (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Czech (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Danish (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Dutch (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help English (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Finnish (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help French (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help German (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Greek (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Hungarian (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Italian (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Japanese (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Korean (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Norwegian (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Polish (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Portuguese (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Russian (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Spanish (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Swedish (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Thai (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Turkish (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden ccc-utility64 (Version: 2012.1219.1521.27485 - Advanced Micro Devices, Inc.) Hidden CCleaner (HKLM\...\CCleaner) (Version: 4.11 - Piriform) City Car Driving 1.2.5 (HKLM-x32\...\{CC457F3D-5CDE-4CE8-9685-90A4EDE81374}_is1) (Version: - Forward Development) Connect (x32 Version: 1.0.0.1 - Adobe Systems Incorporated) Hidden ConvertHelper 2.2 (HKLM-x32\...\{27CC6AB1-E72B-4179-AF1A-EAE507EBAF51}_is1) (Version: - DownloadHelper) Counter-Strike 1.6 (HKLM-x32\...\{9ABFB92D-93DA-49EE-8ABF-F8195DE45CA9}) (Version: 1.6 - ) Counter-Strike 1.6 (HKLM-x32\...\Counter-Strike 1.6) (Version: - ) CPU-Control (HKLM-x32\...\CPU-Control_is1) (Version: - Koma-Code) CPUCooL (remove only) (HKLM-x32\...\CPUCooL) (Version: - ) Cracked Steam (HKLM\...\6F64DF2E-3B8E-41DB-89E4-75BD3F370CDE_is1) (Version: 17.03.2012 - Anti-Valve Software) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.40.2.0131 - DT Soft Ltd) DAEMON Tools Toolbar (HKLM-x32\...\DAEMON Tools Toolbar) (Version: 1.1.4.0024 - DT Soft Ltd) <==== ATTENTION Dead Rising 2 (HKLM-x32\...\GFWL_{4343080E-91B7-4388-AB4D-FB1000008200}) (Version: 1.0.0000.130 - Capcom) Dead Rising 2 (x32 Version: 1.0.0000.130 - Capcom) Hidden Defraggler (HKLM\...\Defraggler) (Version: 2.08 - Piriform) DiRT (HKLM-x32\...\{57B89E30-0BBA-4F20-9F2C-8E8CDE1CEDB6}) (Version: 1.00.0000 - Codemasters) Dirt 2 (HKLM-x32\...\Dirt 2_is1) (Version: Dirt 2 - Ultra) DiRT 3 (HKLM-x32\...\DiRT 3_is1) (Version: 1.0 - R.G. Extenders) Driver Detective (HKLM-x32\...\{4640FDE1-B83A-4376-84ED-86F86BEE2D41}) (Version: 8.0.1 - PC Drivers HeadQuarters) DVD Flick 1.3.0.7 (HKLM-x32\...\DVD Flick_is1) (Version: 1.3.0.7 - Dennis Meuwissen) EA Network Play System (HKLM-x32\...\Network Play System) (Version: - ) ESN Sonar (HKLM-x32\...\ESN Sonar-0.70.4) (Version: 0.70.4 - ESN Social Software AB) FIFA 12 (c) EA version 1 (HKLM-x32\...\FIFA 12 (c) EA_is1) (Version: 1 - ) Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - ) Free Audio CD Burner version 1.4.7 (HKLM-x32\...\Free Audio CD Burner_is1) (Version: - DVDVideoSoft Limited.) Free YouTube Download version 2.10.31 (HKLM-x32\...\Free YouTube Download_is1) (Version: - DVDVideoSoft Limited.) Free YouTube to MP3 Converter version 3.11.32.918 (HKLM-x32\...\Free YouTube to MP3 Converter_is1) (Version: 3.11.32.918 - DVDVideoSoft Ltd.) FreeArc 0.666 (HKLM-x32\...\FreeArc) (Version: 0.666 - Bulat Ziganshin) Game Booster 3 (HKLM-x32\...\Game Booster_is1) (Version: 3.1 - IObit) GIMP 2.6.12 (HKLM-x32\...\WinGimp-2.0_is1) (Version: 2.6.12 - The GIMP Team) Google Earth Plug-in (HKLM-x32\...\{4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google) Google Gears (HKLM-x32\...\{2FA41EBB-3F5A-35C3-85D6-51EC72A11FBD}) (Version: 0.5.3600 - Google) Google Update Helper (x32 Version: 1.3.22.5 - Google Inc.) Hidden Grand Theft Auto IV (HKLM-x32\...\{579BA58C-F33D-4970-9953-B94B43768AC3}) (Version: 1.00.0000 - Rockstar Games) Grand Theft Auto IV (x32 Version: 1.0.0013.131 - Rockstar Games Inc.) Hidden GRID (HKLM-x32\...\{5A0B7BA5-4682-4273-81C2-69B17E649103}) (Version: 1.00.0000 - Codemasters) GRID 2 (c) Codemasters version 1 (HKLM-x32\...\R1JJRDI=_is1) (Version: 1 - ) GTA IV Vehicle Mod Installer v1.2 (HKLM-x32\...\GTA IV Vehicle Mod Installer v1.2_is1) (Version: - MobileD2) GTA San Andreas (HKLM-x32\...\{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}) (Version: 1.00.00001 - Rockstar Games) Guitar Hero III (HKLM-x32\...\{0CE1A6C0-F3F7-49E6-8F9D-2431F9827441}) (Version: 1.00.0000 - Aspyr) Handball Challenge Trainingscamp (HKLM-x32\...\{AC5B2524-34DD-4B66-B294-69DF1B865869}_is1) (Version: - Neutron Games GmbH) Hitman Absolution (HKLM-x32\...\{95030349-3623-4920-89BF-8BEC5EF311C5}_is1) (Version: 1.0433.1 - Square Enix) Hitman Blood Money (HKLM-x32\...\{A804B134-F03D-4EFD-9BC0-DCD257AA1B22}) (Version: 1.00.0000 - Eidos) HydraVision (x32 Version: 4.2.180.0 - ATI Technologies Inc.) Hidden Inkscape 0.48.1 (HKLM-x32\...\Inkscape) (Version: 0.48.1 - ) Instalación de DivX (HKLM-x32\...\DivX Setup.divx.com) (Version: 2.5.0.11 - DivX, LLC) Java(TM) 6 Update 22 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83216022FF}) (Version: 6.0.220 - Oracle) Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden kuler (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden LG PC Suite (HKLM-x32\...\LG PC Suite) (Version: 5.3.01.20130729 - LG Electronics) LG United Mobile Drivers (HKLM-x32\...\{5DB849D6-9392-4FB7-9ABB-87ED433152E5}) (Version: 3.8.1 - LG Electronics) Logitech Gaming Software 5.10 (HKLM\...\{1444D2EE-C7AD-44A8-844F-2634B49353D1}) (Version: 5.10.127 - Logitech) MacroKey Manager (HKLM-x32\...\InstallShield_{66A4349A-AA55-43E5-A781-62867A701A90}) (Version: - ) MacroKey Manager (Version: 1.00.0000 - Ihr Firmenname) Hidden Mafia II DLC Joe's Adventures (HKLM-x32\...\Mafia II_is1) (Version: - ) Malwarebytes Anti-Malware Version 1.75.0.1300 (HKLM-x32\...\Malwarebytes' Anti-Malware_is1) (Version: 1.75.0.1300 - Malwarebytes Corporation) Max Payne 3 (HKLM-x32\...\{1AA94747-3BF6-4237-9E1A-7B3067738FE1}) (Version: 1.0.0.0 - Rockstar Games) Max Spyware Detector (HKLM\...\Max Spyware Detector 2011) (Version: 19.0.2.044 - Max Secure Software) McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.8.141.11 - McAfee, Inc.) Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden Messenger Companion (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Microsoft .NET Framework 1.1 (HKLM-x32\...\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: 1.1.4322 - Microsoft) Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Client Profile DEU Language Pack (HKLM\...\Microsoft .NET Framework 4 Client Profile DEU Language Pack) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Flight Simulator X (HKLM-x32\...\InstallShield_{9527A496-5DF9-412A-ADC7-168BA5379CA6}) (Version: 10.0.61355.0 - Microsoft Game Studios) Microsoft Flight Simulator X (x32 Version: 10.0.61355.0 - Microsoft Game Studios) Hidden Microsoft Flight Simulator X Service Pack 1 (HKLM-x32\...\SP1_9527A496-5DF9-412A-ADC7-168BA5379CA6) (Version: 10.0.61355.0 - Microsoft Game Studios) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{F2508213-9989-4E85-A078-72BE483917EF}) (Version: 3.5.88.0 - Microsoft Corporation) Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation) Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Klick-und-Los 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Klick-und-Los 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden Microsoft Office Starter 2010 - Deutsch (HKLM-x32\...\{90140011-0066-0407-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft PowerPoint Viewer (HKLM-x32\...\{95140000-00AF-0407-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 4.1.10329.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM-x32\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{B3B750C0-8C22-439D-B7CE-67F3ED99CC2B}) (Version: 1.20.146.0 - Microsoft) Microsoft_VC100_CRT_SP1_x64 (Version: 10.0.40219.1 - Nokia) Hidden Microsoft_VC100_CRT_SP1_x86 (x32 Version: 10.0.40219.1 - Nokia) Hidden Microsoft_VC80_CRT_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden Microsoft_VC80_CRT_x86_x64 (Version: 8.0.50727.4053 - Adobe) Hidden Microsoft_VC80_MFC_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden Microsoft_VC80_MFC_x86_x64 (Version: 8.0.50727.4053 - Adobe) Hidden Microsoft_VC80_MFCLOC_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden Microsoft_VC80_MFCLOC_x86_x64 (Version: 80.50727.4053 - Adobe) Hidden Microsoft_VC90_ATL_x86 (x32 Version: 1.00.0000 - Adobe) Hidden Microsoft_VC90_ATL_x86_x64 (Version: 1.00.0000 - Adobe) Hidden Microsoft_VC90_CRT_x86 (x32 Version: 1.00.0000 - Adobe) Hidden Microsoft_VC90_CRT_x86_x64 (Version: 1.00.0000 - Adobe) Hidden Microsoft_VC90_MFC_x86 (x32 Version: 1.00.0000 - Adobe) Hidden Microsoft_VC90_MFC_x86_x64 (Version: 1.00.0000 - Adobe) Hidden Microsoft_VC90_MFCLOC_x86 (x32 Version: 1.00.0000 - Adobe) Hidden Mirror's Edge™ (HKLM-x32\...\{AEDBD563-24BB-4EE3-8366-A654DAC2D988}) (Version: 1.0.0.0 - Electronic Arts) MotioninJoy ds3 driver version 0.5.0002 (HKLM\...\{330DAC67-5B62-452A-A0E4-6B4A5923940F}_is1) (Version: 0.5.0002 - www.motioninjoy.com) MotioninJoy ds3 vibration driver version 0.100 (HKLM-x32\...\{330DAC67-5B62-452A-A0E4-6B4A5923940F}_is1) (Version: - www.motioninjoy.com) MOTORM4X (HKLM-x32\...\MOTORM4X) (Version: 1.0.821.1 - ) Mozilla Firefox 26.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 26.0 (x86 de)) (Version: 26.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 26.0 - Mozilla) MSVC80_x64_v2 (Version: 1.0.3.0 - Nokia) Hidden MSVC80_x86_v2 (x32 Version: 1.0.3.0 - Nokia) Hidden MSVC90_x64 (Version: 1.0.1.2 - Nokia) Hidden MSVC90_x86 (x32 Version: 1.0.1.2 - Nokia) Hidden MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT Redists (Version: 1.0 - Sony Creative Software Inc.) Hidden MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation) MyTomTom 3.2.0.1116 (HKLM-x32\...\MyTomTom) (Version: 3.2.0.1116 - TomTom) NASCAR® Racing 2003 Season (HKLM-x32\...\{ACC2E059-40E9-4464-B18D-C9BDD9A02CED}) (Version: - Sierra Entertainment) Need for Speed™ Carbon (HKLM-x32\...\{259C0ABB-A3B2-4D70-008F-BF7EE491B70B}) (Version: - ) Need for Speed™ ProStreet (HKLM-x32\...\{CC419DDC-E0F0-4013-B25A-6FA036516F0D}) (Version: 1.0.1.0 - Electronic Arts) Nero BurnLite 10 (HKLM-x32\...\{842BEE12-CCCB-43F4-ABAF-CBA6DFE2583D}) (Version: 10.0.10600 - Nero AG) Nero BurnLite 10 (HKLM-x32\...\{AB627AF2-9C7E-4DBD-816B-3B2646B81E89}) (Version: 10.0.10500.5.100 - Nero AG) Nero Control Center 10 (x32 Version: 10.0.13100.3.1 - Nero AG) Hidden Nero ControlCenter 10 Help (CHM) (x32 Version: 1.0.10700 - Nero AG) Hidden Nero Core Components 10 (x32 Version: 2.0.15100.0.1 - Nero AG) Hidden Nero Update (HKLM-x32\...\{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}) (Version: 1.0.0018 - Nero AG) Nokia Connectivity Cable Driver (HKLM-x32\...\{AF88496B-4BBA-4922-97E9-2582D3A28358}) (Version: 7.1.48.0 - Nokia) Nokia Suite (HKLM-x32\...\Nokia Suite) (Version: 3.2.100.0 - Nokia) Nokia Suite (x32 Version: 3.2.100.0 - Nokia) Hidden NVIDIA PhysX (HKLM-x32\...\{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}) (Version: 9.10.0513 - NVIDIA Corporation) Off-Road Drive (HKLM-x32\...\Off-Road Drive_is1) (Version: - ) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) openCanvas4.5.09e Plus (HKLM-x32\...\{A2E23800-051D-4F35-8169-85F5739A04C5}) (Version: 4.50.9000 - System Product Corp.) OpenOffice.org 3.4.1 (HKLM-x32\...\{2303AEEA-0FA8-4AFD-80A9-8F86BA4B44D2}) (Version: 3.41.9593 - Apache Software Foundation) Operation Flashpoint: Dragon Rising (HKLM-x32\...\Steam App 12830) (Version: - Codemasters) Origin (HKLM-x32\...\Origin) (Version: 9.0.15.65 - Electronic Arts, Inc.) PC Connectivity Solution (HKLM-x32\...\{55EB7967-5BB1-4EA2-8AFF-B2F9E487E553}) (Version: 11.5.13.0 - Nokia) PDF Settings CS4 (x32 Version: 9.0 - Adobe Systems Incorporated) Hidden Photoshop Camera Raw (x32 Version: 5.0 - Adobe Systems Incorporated) Hidden Photoshop Camera Raw_x64 (Version: 5.0 - Adobe Systems Incorporated) Hidden Pixel Bender Toolkit (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden PlayClaw 1.8 build 760 (HKLM-x32\...\PlayClaw 1.8 build 760) (Version: - ) Postal 2 (HKLM-x32\...\Postal 2) (Version: - ) PowerISO (HKLM-x32\...\PowerISO) (Version: 4.8 - PowerISO Computing, Inc.) Pro Evolution Soccer 2012 (HKLM-x32\...\{E737A098-F161-4B6F-AF22-86AAE34F6FBD}) (Version: 1.00.0000 - KONAMI) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.) QuickTime (HKLM-x32\...\{57752979-A1C9-4C02-856B-FBB27AC4E02C}) (Version: 7.69.80.9 - Apple Inc.) Race Driver 3 (HKLM-x32\...\{0297C87B-CC40-446F-865A-031B4FC0CF22}) (Version: 1.00.0000 - Codemasters) Rapture3D 2.4.11 Game (HKLM-x32\...\{D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1) (Version: - Blue Ripple Sound) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5989 - Realtek Semiconductor Corp.) rFactor (remove only) (HKLM-x32\...\rFactor) (Version: - ) Rigs of Rods 0.38.67 (HKLM-x32\...\Rigs of Rods 0.38.67) (Version: 0.38.67 - Rigs of Rods Team) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.0.1 - Rockstar Games) RouterControl 2.0 (HKLM-x32\...\RouterControl) (Version: - ) Safari (HKLM-x32\...\{C779648B-410E-4BBA-B75B-5815BCEFE71D}) (Version: 5.34.57.2 - Apple Inc.) San Andreas Mod Installer (HKLM-x32\...\San Andreas Mod Installer1.1) (Version: 1.1 - cpmusick) Search Protect (HKLM-x32\...\SearchProtect) (Version: 2.11.11.7 - Conduit) <==== ATTENTION Shader 3 Mod for Flight Simulator X (HKLM-x32\...\{B813B812-CBAA-4BC0-95A5-4D07C8B215BD}) (Version: 1.5.0 - Bojote) ShaunWhiteSnowboarding (HKLM-x32\...\{2E52FB79-7F60-4AD7-B946-5ED18B4F274E}) (Version: 1.00 - Ubisoft) SHIFT 2 UNLEASHED™ (HKLM-x32\...\{E8C37E27-5205-4C8A-BECB-B00533045AAE}) (Version: 1.0.2.0 - Electronic Arts) Silent Hunter 4 Wolves of the Pacific (HKLM-x32\...\{0D005F09-A5F4-473B-A901-5735C6AF5628}) (Version: 1.03.0000 - Ubisoft) Skype™ 5.3 (HKLM-x32\...\{5335DADB-34BA-4AE8-A519-648D78498846}) (Version: 5.3.116 - Skype Technologies S.A.) Soldier of Fortune II - Double Helix (HKLM-x32\...\Soldier of Fortune II - Double Helix) (Version: - ) Soldier of Fortune Payback (HKLM-x32\...\{11BFB898-71E5-488A-A8FF-0E462667FB72}) (Version: 1.0.4 - Activision Value) SpeedBit Video Downloader (HKLM-x32\...\SpeedBit Video Downloader) (Version: 1153(build_439) - SpeedBit Ltd.) Spider-Man 3 (TM) (HKLM-x32\...\InstallShield_{990166FA-1ACB-4AA7-B592-4D370C7CDD1A}) (Version: 1.00.0000 - Activision) Spider-Man 3(TM) (x32 Version: 1.00.0000 - Activision) Hidden Spyware Doctor with AntiVirus 8.0 (HKLM-x32\...\Spyware Doctor) (Version: 8.0 - PC Tools) Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) SteelSeries Xai Laser Mouse (HKLM-x32\...\{77E57197-30EC-444F-B1B8-A99AA2A45794}) (Version: 1.4.2 - SteelSeries) Stockcar Sim Series (HKLM-x32\...\Stockcar Sim Series) (Version: - ) Stockcar Sim Series 2012 (HKLM-x32\...\Stockcar Sim Series 2012) (Version: - ) Street Legal Racing Redline (HKLM-x32\...\Street Legal Racing Redline) (Version: - ) Suite Shared Configuration CS4 (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden TeamViewer 9 (HKLM-x32\...\TeamViewer 9) (Version: 9.0.25790 - TeamViewer) The Lord of the Rings FREE Trial (x32 Version: 1.00.0000 - ATI Technologies Inc.) Hidden thriXXX 3DSexVilla2-111.001 (HKLM-x32\...\3DSexVilla2-111.001) (Version: - ) thriXXX Hentai3D2-113.001 (HKLM-x32\...\Hentai3D2-113.001) (Version: - ) thriXXX WebLaunch (HKLM-x32\...\thriXXX WebLaunch) (Version: 1.0 - thriXXX) TomTom HOME (HKLM-x32\...\{EC5F4C1B-F838-4CB7-8561-8F809296428B}) (Version: 2.9.5 - Ihr Firmenname) TomTom HOME Visual Studio Merge Modules (HKLM-x32\...\{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}) (Version: 1.0.2 - TomTom International B.V.) True Crime® New York City (HKLM-x32\...\{C920EFB6-59DB-472D-B445-21821477AD17}) (Version: 1.00.0000 - Aspyr Media, Inc.) TubeBox! (HKLM-x32\...\{24F5BFDD-18E0-41F6-8A68-A22C742FC4A1}) (Version: 3.4.6 - Jens Lorek) Tunatic (HKLM-x32\...\Tunatic) (Version: - ) UberStrike HD version 4.3.7 (HKLM-x32\...\{37FC691D-93E6-4FF1-A056-A40C4F99AAA7}_is1) (Version: 4.3.7 - Cmune Ltd.) Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT) Unified Remote (HKLM-x32\...\{0E04AD66-9C5A-46DF-836B-29BD26194820}) (Version: 2.8.1.0 - Unified Remote) Uninstall 1.0.0.1 (HKLM-x32\...\Uninstall_is1) (Version: - ) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2468871) (Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2473228) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2473228) (Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2533523) (Version: 1 - Microsoft Corporation) Uptodown EN Toolbar (HKLM-x32\...\Uptodown_EN Toolbar) (Version: 6.3.3.3 - Uptodown EN) VC80CRTRedist - 8.0.50727.4053 (x32 Version: 1.1.0 - DivX, Inc) Hidden Vegas Movie Studio HD Platinum 10.0 (HKLM-x32\...\{40AE01BE-A290-4FFB-8DAB-C624C17DC87E}) (Version: 10.0.179 - Sony) Vegas Pro 10.0 (64-bit) (HKLM\...\{C71D49C0-11F5-11E0-B8FB-0013D3D69929}) (Version: 10.0.470 - Sony) Visual Studio 2008 x64 Redistributables (HKLM-x32\...\{FCDBEA60-79F0-4FAE-BBA8-55A26C609A49}) (Version: 10.0.0.2 - AVG Technologies) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) Visual Studio C++ 10.0 Runtime (HKLM-x32\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.) VLC media player 1.1.8 (HKLM-x32\...\VLC media player) (Version: 1.1.8 - VideoLAN) Winamp (HKLM-x32\...\Winamp) (Version: 5.622 - Nullsoft, Inc) Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation) Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Family Safety (Version: 15.4.3555.0308 - Microsoft Corporation) Hidden Windows Live Fotogalerie (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4232.0 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Language Selector (Version: 15.4.3555.0308 - Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Mesh (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Mesh ActiveX control for remote connections (HKLM-x32\...\{C5398A89-516C-4DAF-BA07-EE7949090E56}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Messenger (x32 Version: 15.4.3538.0513 - Microsoft Corporation) Hidden Windows Live Messenger Companion Core (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live MIME IFilter (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live Remote Client (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Client Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Service (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Service Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Sync (HKLM-x32\...\{586509F0-350D-48B5-B763-9CC2F8D96C4C}) (Version: 14.0.8117.416 - Microsoft Corporation) Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows-Treiberpaket - Nokia pccsmcfd (08/22/2008 7.0.0.0) (HKLM\...\FCEC33AD40CEA5E0FC4CEE6E42041A0DA189652D) (Version: 08/22/2008 7.0.0.0 - Nokia) WinRAR (HKLM-x32\...\WinRAR archiver) (Version: - ) YouTube Downloader 3.5 (HKLM-x32\...\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}) (Version: - BienneSoft) ytbyclick Toolbar (HKLM-x32\...\ytbyclick Toolbar) (Version: 6.13.3.505 - ytbyclick) YTD Toolbar v8.9 (HKLM-x32\...\{DA36FB9E-9020-47E6-9BDE-B33A6E36F0F4}) (Version: 8.9 - Spigot, Inc.) ==================== Restore Points ========================= 09-03-2014 10:11:24 Installed AVG 2014 21-03-2014 00:46:37 Geplanter Prüfpunkt 29-03-2014 01:27:27 Geplanter Prüfpunkt ==================== Hosts content: ========================== 2012-01-19 17:30 - 2013-01-03 09:47 - 00000734 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (whitelisted) ============= Task: {0605285F-FFBE-4513-BE47-81D14C60015B} - System32\Tasks\Game_Booster_Startup => C:\Program Files (x86)\IObit\Game Booster\gbtray.exe [2011-10-28] (IObit) Task: {249054E7-D442-4CB0-AB1D-1898BD42D996} - System32\Tasks\Scheduled Update for Ask Toolbar => C:\Program Files (x86)\Ask.com\UpdateTask.exe [2013-04-25] () <==== ATTENTION Task: {31AE2431-191D-4A52-B9AD-8E0DBE288D8C} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2158434394-2343193655-1295655042-1001UA => C:\Users\TEMP.EddieTheBeast\AppData\Local\Google\Update\GoogleUpdate.exe Task: {4956E9E9-D982-476D-8322-1E58A1823B93} - System32\Tasks\BackgroundContainer Startup Task => Rundll32.exe "C:\Users\TEMP\AppData\Local\Conduit\BackgroundContainer\BackgroundContainer.dll",DllRun <==== ATTENTION Task: {56C6A944-63D1-4746-9924-88D9E395D114} - System32\Tasks\{9FC53E8B-5ECF-49D1-BBB0-111047D34DF9} => C:\Program Files (x86)\Skype\\Phone\Skype.exe [2011-05-26] (Skype Technologies S.A.) Task: {5C631D37-D87C-4B0C-9BC1-12CA0D7924AE} - System32\Tasks\Microsoft\Windows\TabletPC\InputPersonalization => C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe [2009-07-14] (Microsoft Corporation) Task: {A73EB1A1-37D9-4D33-8A57-3651C2F18E71} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {AB011C6A-2235-4BC4-B8F6-00605DA9C4D3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-12-28] (Google Inc.) Task: {BD9EFC48-88F0-4CDD-ADA2-723A02EA78D5} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-02-20] (Piriform Ltd) Task: {C6565EFA-8037-4BBF-AAC3-AF9D64BE7D57} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2158434394-2343193655-1295655042-1001Core => C:\Users\TEMP.EddieTheBeast\AppData\Local\Google\Update\GoogleUpdate.exe Task: {CC600182-9189-435D-A788-0568B782CB33} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-12-28] (Google Inc.) Task: {E0174ECB-6AF0-4D9E-B5A1-0ED40FE7CB44} - System32\Tasks\{E23008F9-FF81-4606-9912-725EF36366BC} => C:\Program Files (x86)\Skype\\Phone\Skype.exe [2011-05-26] (Skype Technologies S.A.) Task: {E01C088F-E017-4BCB-BFAE-B90A6FA3FCDF} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-03-11] (Adobe Systems Incorporated) Task: {EF199B96-CFD8-42D3-805E-0C10E6AC36EC} - System32\Tasks\AdobeAAMUpdater-1.0-EddieTheBeast-Eddie-The-Beast => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-09-20] (Adobe Systems Incorporated) Task: {FBE3BFF2-B243-4CE7-B654-489F7EC4F844} - System32\Tasks\{28BBF576-0460-446B-AF6C-9DC445C0A2AE} => E:\setup.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2158434394-2343193655-1295655042-1001Core.job => C:\Users\TEMP.EddieTheBeast\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2158434394-2343193655-1295655042-1001UA.job => C:\Users\TEMP.EddieTheBeast\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2011-04-28 15:17 - 2012-04-12 10:52 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2009-11-04 11:46 - 2009-11-04 11:46 - 00664296 _____ () C:\Windows\System32\atwtusb.exe 2009-11-04 11:46 - 2009-11-04 11:46 - 00664296 _____ () C:\Windows\system32\atwtusb.exe 2011-03-21 19:56 - 2011-03-21 19:56 - 01230704 _____ () C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe 2011-04-03 18:56 - 2011-02-22 16:01 - 00345088 _____ () C:\Program Files (x86)\IObit\Game Booster\madExcept_.bpl 2011-04-03 18:56 - 2011-02-22 16:01 - 00177152 _____ () C:\Program Files (x86)\IObit\Game Booster\madBasic_.bpl 2011-04-03 18:56 - 2011-02-22 16:01 - 00044544 _____ () C:\Program Files (x86)\IObit\Game Booster\madDisAsm_.bpl 2011-04-03 18:56 - 2011-08-26 13:56 - 00516440 _____ () C:\Program Files (x86)\IObit\Game Booster\sqlite3.dll 2011-03-21 19:57 - 2011-03-21 19:57 - 00096112 _____ () C:\Program Files (x86)\DivX\DivX Update\DivXUpdateCheck.dll 2013-12-24 03:16 - 2013-12-24 03:16 - 03559024 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll 2014-03-11 20:31 - 2014-03-11 20:31 - 16276872 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\ProgramData\TEMP:661DFA1C AlternateDataStreams: C:\ProgramData\TEMP:DFC5A2B2 ==================== Safe Mode (whitelisted) =================== ==================== Disabled items from MSCONFIG ============== MSCONFIG\startupfolder: C:^Users^Eddie-The-Beast^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^CPUCooL.lnk => C:\Windows\pss\CPUCooL.lnk.Startup MSCONFIG\startupfolder: C:^Users^Eddie-The-Beast^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.4.1.lnk => C:\Windows\pss\OpenOffice.org 3.4.1.lnk.Startup MSCONFIG\startupreg: java checksys => %TEMP%\rtpmp.exe MSCONFIG\startupreg: MacroKeyManager => WTMKM.exe MSCONFIG\startupreg: windows updater => %TEMP%\gaspci.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (03/29/2014 10:51:34 AM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest. Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest. Error: (03/29/2014 10:51:29 AM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest. Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest. Error: (03/29/2014 10:50:06 AM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest. Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest. Error: (03/29/2014 10:50:05 AM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest. Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest. Error: (03/29/2014 10:48:57 AM) (Source: Microsoft-Windows-User Profiles Service) (User: EddieTheBeast) Description: Das lokale Benutzerprofil wurde nicht gefunden. Sie werden mit einem temporären Benutzerprofil angemeldet. Änderungen, die Sie am Benutzerprofil vornehmen, gehen bei der Abmeldung verloren. Error: (03/29/2014 10:48:57 AM) (Source: Microsoft-Windows-User Profiles Service) (User: EddieTheBeast) Description: Dieses Benutzerprofil wurde gesichert. Bei der nächsten Anmeldung dieses Benutzers wird automatisch versucht, dieses gesicherte Profil zu verwenden. Error: (03/29/2014 02:27:28 AM) (Source: VSS) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "ConvertStringSidToSid(S-1-5-21-2158434394-2343193655-1295655042-1001.bak)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070539, Die Struktur der Sicherheitskennung ist unzulässig. . Vorgang: OnIdentify-Ereignis Generatordaten werden gesammelt Kontext: Ausführungskontext: Shadow Copy Optimization Writer Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f} Generatorname: Shadow Copy Optimization Writer Generatorinstanz-ID: {05286519-7457-4764-860c-cbfcd35dc406} Error: (03/26/2014 02:48:31 PM) (Source: CVHSVC) (User: ) Description: Nur zur Information. (Patch task for {90140011-0066-0407-0000-0000000FF1CE}): DownloadLatest Failed: Zurzeit sind keine aktiven Netzwerkverbindungen verfügbar. Der Vorgang wird von BITS wiederholt, sobald der Adapter über eine Verbindung verfügt. Error: (03/24/2014 09:07:12 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest. Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest. Error: (03/24/2014 09:07:06 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest. Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest. System errors: ============= Error: (03/29/2014 10:40:31 AM) (Source: Service Control Manager) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: papycpu2 papyjoy Error: (03/29/2014 10:40:07 AM) (Source: SNMP) (User: ) Description: Beim Zugreifen auf den Registrierungsschlüssel SYSTEM\CurrentControlSet\Services\SNMP\Parameters\TrapConfiguration ist ein Fehler aufgetreten. Error: (03/29/2014 10:39:58 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "CPUCooLServer Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (03/29/2014 10:39:06 AM) (Source: Application Popup) (User: ) Description: Aufgrund der Inkompatibilität mit diesem System wurde \SystemRoot\SysWow64\DRIVERS\papyjoy.sys nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten. Error: (03/29/2014 10:39:06 AM) (Source: Application Popup) (User: ) Description: Aufgrund der Inkompatibilität mit diesem System wurde \SystemRoot\SysWow64\DRIVERS\papycpu2.sys nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten. Error: (03/29/2014 10:37:46 AM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst avgwd erreicht. Error: (03/24/2014 10:47:04 PM) (Source: bowser) (User: ) Description: Der Hauptsuchdienst erhielt eine Serverankündigung vom Computer "OFI3-PC", der der Hauptsuchdienst der Domäne für den NetBT_Tcpip_{2C982D74-E3B9-4B5E-8C4F-CF96A16A89FA}-Transport zu sein scheint. Der Hauptsuchdienst wurde beendet oder es wird eine Auswahl erzwungen. Error: (03/24/2014 01:51:37 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Windows Search" wurde nicht richtig gestartet. Error: (03/24/2014 01:45:26 PM) (Source: Service Control Manager) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: papycpu2 papyjoy Error: (03/24/2014 01:44:49 PM) (Source: SNMP) (User: ) Description: Beim Zugreifen auf den Registrierungsschlüssel SYSTEM\CurrentControlSet\Services\SNMP\Parameters\TrapConfiguration ist ein Fehler aufgetreten. Microsoft Office Sessions: ========================= Error: (03/29/2014 10:51:34 AM) (Source: SideBySide)(User: ) Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifestC:\Program Files (x86)\LG Electronics\LG PC Suite\LGPCSuite.exe Error: (03/29/2014 10:51:29 AM) (Source: SideBySide)(User: ) Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifestC:\Program Files (x86)\LG Electronics\LG PC Suite\LGPCSuite.exe Error: (03/29/2014 10:50:06 AM) (Source: SideBySide)(User: ) Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifestC:\Program Files (x86)\LG Electronics\LG PC Suite\LGPCSuite.exe Error: (03/29/2014 10:50:05 AM) (Source: SideBySide)(User: ) Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifestC:\Program Files (x86)\LG Electronics\LG PC Suite\LGPCSuite.exe Error: (03/29/2014 10:48:57 AM) (Source: Microsoft-Windows-User Profiles Service)(User: EddieTheBeast) Description: Error: (03/29/2014 10:48:57 AM) (Source: Microsoft-Windows-User Profiles Service)(User: EddieTheBeast) Description: Error: (03/29/2014 02:27:28 AM) (Source: VSS)(User: ) Description: ConvertStringSidToSid(S-1-5-21-2158434394-2343193655-1295655042-1001.bak)0x80070539, Die Struktur der Sicherheitskennung ist unzulässig. Vorgang: OnIdentify-Ereignis Generatordaten werden gesammelt Kontext: Ausführungskontext: Shadow Copy Optimization Writer Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f} Generatorname: Shadow Copy Optimization Writer Generatorinstanz-ID: {05286519-7457-4764-860c-cbfcd35dc406} Error: (03/26/2014 02:48:31 PM) (Source: CVHSVC)(User: ) Description: (Patch task for {90140011-0066-0407-0000-0000000FF1CE}): DownloadLatest Failed: Zurzeit sind keine aktiven Netzwerkverbindungen verfügbar. Der Vorgang wird von BITS wiederholt, sobald der Adapter über eine Verbindung verfügt. Error: (03/24/2014 09:07:12 PM) (Source: SideBySide)(User: ) Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifestC:\Program Files (x86)\LG Electronics\LG PC Suite\LGPCSuite.exe Error: (03/24/2014 09:07:06 PM) (Source: SideBySide)(User: ) Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifestC:\Program Files (x86)\LG Electronics\LG PC Suite\LGPCSuite.exe CodeIntegrity Errors: =================================== Date: 2014-03-29 10:39:27.236 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ATITool64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-03-29 10:39:27.205 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ATITool64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-03-24 13:43:44.552 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ATITool64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-03-24 13:43:44.520 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ATITool64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-02-02 09:17:01.622 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ATITool64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-02-02 09:17:01.590 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ATITool64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-02-02 00:36:48.412 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ATITool64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-02-02 00:36:48.381 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ATITool64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-01-31 11:39:17.949 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ATITool64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-01-31 11:39:17.918 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ATITool64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. ==================== Memory info =========================== Percentage of memory in use: 42% Total physical RAM: 6071.12 MB Available physical RAM: 3486.79 MB Total Pagefile: 12140.38 MB Available Pagefile: 9167.53 MB Total Virtual: 8192 MB Available Virtual: 8191.78 MB ==================== Drives ================================ Drive c: (Windows) (Fixed) (Total:930.97 GB) (Free:202.82 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 8EB5432D) Partition 1: (Active) - (Size=552 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=931 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
29.03.2014, 14:01 | #4 |
/// TB-Ausbilder /// Anleitungs-Guru | Windows 7 Home Premium (64 Bit) - Desktop wir nach Neustart gelöscht, Dateien gehen verloren; Hallo, Code:
ATTFilter Cracked Steam Supportstopp Lesestoff: Support-Stop bis alle illegale Software entfernt wurde.Cracks und Keygens Den Kopierschutz von Software zu umgehen ist nach geltendem Recht illegal. Die Logfiles deuten stark darauf hin, dass du nicht legal erworbene Software einsetzt. Zudem sind Cracks und Patches aus dubioser Quelle sehr oft mit Schädlingen versehen, womit man sich also fast vorsätzlich infiziert. Wir haben uns hier auf dem Board darauf geeinigt, dass wir an dieser Stelle nicht weiter bereinigen, da wir ein solches Vorgehen nicht unterstützen. Hinzu kommt, dass wir dich in unserer Anleitung und auch in diesem Wichtig-Thema unmissverständlich darauf hingewiesen haben, wie wir damit umgehen werden. Saubere, gute Software hat seinen Preis und die Softwarefirmen leben von diesen Einnahmen. Unsere Hilfe beschränkt sich daher nur auf das Neuaufsetzen und Absichern deines Systems. Fragen dazu beantworten wir dir aber weiterhin gerne und zwar in unserem Forum. Auf Deinem Rechner ist noch mehr verbogen: Dein Benutzerprofil scheint nur temporär zu sein- daher löschen sich die Desktopverknüpfungen und Dateien - und es fehlt der Service Pack1. Daher würde ich an Deiner Stelle sowieso neu installieren. Geht schneller und danach passt wieder alles...
__________________ Gruß deeprybka Lob, Kritik, Wünsche? Spende fürs trojaner-board? _______________________________________________ „Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer |
31.03.2014, 14:19 | #5 |
/// TB-Ausbilder /// Anleitungs-Guru | Windows 7 Home Premium (64 Bit) - Desktop wir nach Neustart gelöscht, Dateien gehen verloren; Hi, ich hab schon länger keine Antwort mehr von Dir erhalten. Hinweis: Sollte ich die nächsten 24h keine Nachricht von Dir bekommen, lösche ich das Thema aus meinen Abos und werde daher über Änderungen oder Beiträge nicht weiter informiert.
__________________ Gruß deeprybka Lob, Kritik, Wünsche? Spende fürs trojaner-board? _______________________________________________ „Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer |
Themen zu Windows 7 Home Premium (64 Bit) - Desktop wir nach Neustart gelöscht, Dateien gehen verloren; |
appdata, beim starten, dateien, desktop, desktop dateien gelöscht backgroundcontainer.dll, entfernt, erstellt, fehlermeldung, festplatte, gelöscht, gen, hochfahren, home, modul, neu, neustart, ordner, pcs, problem, profi, starten, temp, verschiedene, verschwunden, windows, windows 7 |