|
Plagegeister aller Art und deren Bekämpfung: Pc spinnt Browser lassen sich nicht öffnenWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
15.05.2014, 13:56 | #1 |
| Pc spinnt Browser lassen sich nicht öffnen Hallo Mein Pc spinnt, Internetbrowser lassen sich nicht immer öffnen, Wenn ich im Internet bin wird die Schrift sehr groß oder total klein. Die Systemwiederherstellung geht nicht. PC: Lenovo ThinkCentre Dual Core 2,2Ghz mit 2GB Arbeitsspeicher, Windows 7 Professional mit Service Pack 1 Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:14-05-2014 Ran by eigen (administrator) on EIGEN-PC on 15-05-2014 14:29:26 Running from C:\Users\eigen\Downloads Platform: Microsoft Windows 7 Professional Service Pack 1 (X86) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: hxxp://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: hxxp://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (Bitdefender) C:\Program Files\Bitdefender\Bitdefender\vsserv.exe () C:\Program Files\Ashampoo\Ashampoo HDD Control 2\AHDDC2_Service.exe (AVM Berlin) C:\Program Files\avmwlanstick\WLanNetService.exe (Realtek Semiconductor Corp.) C:\Program Files\REALTEK\USB Wireless LAN Utility\RtlService.exe (Secunia) C:\Program Files\Secunia\PSI\sua.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe (Client Connect LTD) C:\Program Files\SearchProtect\Main\bin\CltMngSvc.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender Safebox\safeboxservice.exe (Client Connect LTD) C:\Program Files\SearchProtect\SearchProtect\bin\cltmng.exe (AVM Berlin) C:\Program Files\avmwlanstick\WLanGUI.exe (Realtek Semiconductor Corp.) C:\Program Files\REALTEK\USB Wireless LAN Utility\RtWLan.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender\bdagent.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Ashampoo Development GmbH & Co. KG) C:\Program Files\Ashampoo\Ashampoo HDD Control 2\AHDDC2_Guard.exe (simplitec GmbH) C:\Program Files\simplitec\simplifast\ServiceProvider.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe (Client Connect LTD) C:\Program Files\SearchProtect\UI\bin\cltmngui.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender\bdapppassmgr.exe (Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe () C:\Users\eigen\AppData\Roaming\DRPSu\DrvUpdater.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [AVMWlanClient] => C:\Program Files\avmwlanstick\wlangui.exe [1904640 2009-05-07] (AVM Berlin) HKLM\...\Run: [Bdagent] => C:\Program Files\Bitdefender\Bitdefender\bdagent.exe [1845064 2014-03-25] (Bitdefender) HKLM\...\Run: [Ashampoo HDD-Control 2 Guard] => C:\Program Files\Ashampoo\Ashampoo HDD Control 2\AHDDC2_Guard.exe [3783592 2012-07-30] (Ashampoo Development GmbH & Co. KG) HKU\.DEFAULT\...\Run: [Bitdefender-Geldbörse-Agent] => C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe [482392 2014-03-19] (Bitdefender) HKU\.DEFAULT\...\Run: [Bitdefender-Geldbörse] => C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe [901096 2014-03-15] (Bitdefender) HKU\.DEFAULT\...\Run: [Bitdefender-Geldbörse-Anwendungs-Agent] => C:\Program Files\Bitdefender\Bitdefender\bdapppassmgr.exe [614232 2014-03-19] (Bitdefender) HKU\S-1-5-21-2847575353-1812513506-2368236192-1000\...\Run: [Bitdefender-Geldbörse-Agent] => C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe [482392 2014-03-19] (Bitdefender) HKU\S-1-5-21-2847575353-1812513506-2368236192-1000\...\Run: [Bitdefender-Geldbörse] => C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe [901096 2014-03-15] (Bitdefender) HKU\S-1-5-21-2847575353-1812513506-2368236192-1000\...\Run: [Bitdefender-Geldbörse-Anwendungs-Agent] => C:\Program Files\Bitdefender\Bitdefender\bdapppassmgr.exe [614232 2014-03-19] (Bitdefender) HKU\S-1-5-21-2847575353-1812513506-2368236192-1000\...\Run: [DrvUpdater] => C:\Users\eigen\AppData\Roaming\DRPSu\DrvUpdater.exe [195256 2012-12-23] () HKU\S-1-5-21-2847575353-1812513506-2368236192-1000\...\MountPoints2: {425613fe-c0bd-11e3-b8c3-806e6f6e6963} - D:\start.exe AppInit_DLLs: C:\PROGRA~1\SearchProtect\SearchProtect\bin\SPVC32Loader.dll => C:\Program Files\SearchProtect\SearchProtect\bin\SPVC32Loader.dll [171840 2014-05-03] (Client Connect LTD) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.trovi.com/?gd=&ctid=CT3325585&octid=EB_ORIGINAL_CTID&ISID=M8CEF7119-C441-47FF-B9DD-B1A3BCA19F7E&SearchSource=55&CUI=&UM=5&UP=SPDA12F7B6-9507-4EC9-A416-4ACA83FB2005&SSPV=&SSPV= HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.dell.com BHO: Bitdefender-Geldbörse - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender\pmbxie.dll (Bitdefender) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre8\bin\ssv.dll (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre8\bin\jp2ssv.dll (Oracle Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\eigen\AppData\Roaming\Mozilla\Firefox\Profiles\4d23aa7j.default FF Plugin: @adobe.com/AuthorwarePlayer - C:\Windows\system32\Macromed\AUTHORWA\np32asw.dll (Macromedia, Inc.) FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_13_0_0_182.dll () FF Plugin: @adobe.com/ShockwavePlayer - C:\Windows\system32\Adobe\Director\np32dsw_1210150.dll (Adobe Systems, Inc.) FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf - C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll No File FF Plugin: @java.com/DTPlugin,version=11.5.2 - C:\Program Files\Java\jre8\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.5.2 - C:\Program Files\Java\jre8\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @nullsoft.com/winampDetector;version=1 - C:\Program Files\Winamp Detect\npwachk.dll (Nullsoft, Inc.) FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: WOT - C:\Users\eigen\AppData\Roaming\Mozilla\Firefox\Profiles\4d23aa7j.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2014-04-10] FF Extension: Ghostery - C:\Users\eigen\AppData\Roaming\Mozilla\Firefox\Profiles\4d23aa7j.default\Extensions\firefox@ghostery.com.xpi [2014-04-10] FF HKLM\...\Firefox\Extensions: [ffpwdman@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender\ffpwdman\ FF Extension: Bitdefender Wallet - C:\Program Files\Bitdefender\Bitdefender\ffpwdman\ [] FF HKLM\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender\bdtbext FF Extension: bdToolbar - C:\Program Files\Bitdefender\Bitdefender\bdtbext [2014-04-10] Chrome: ======= CHR Extension: (Google Docs) - C:\Users\eigen\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-04-10] CHR Extension: (Google Drive) - C:\Users\eigen\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-04-10] CHR Extension: (YouTube) - C:\Users\eigen\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-04-10] CHR Extension: (Bitdefender Wallet) - C:\Users\eigen\AppData\Local\Google\Chrome\User Data\Default\Extensions\ccahoghmggldkcdjiebjkidpfongdfbl [2014-04-10] CHR Extension: (Google-Suche) - C:\Users\eigen\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-04-10] CHR Extension: (Google Wallet) - C:\Users\eigen\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-04-10] CHR Extension: (Google Mail) - C:\Users\eigen\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-04-10] CHR HKLM\...\Chrome\Extension: [ccahoghmggldkcdjiebjkidpfongdfbl] - C:\Program Files\Bitdefender\Bitdefender\pmbxcr.crx [2014-04-10] ========================== Services (Whitelisted) ================= R2 AHDDC2; C:\Program Files\Ashampoo\Ashampoo HDD Control 2\AHDDC2_Service.exe [1518504 2012-07-30] () R2 AVM WLAN Connection Service; C:\Program Files\avmwlanstick\WlanNetService.exe [368640 2009-05-07] (AVM Berlin) S4 BdDesktopParental; C:\Program Files\Bitdefender\Bitdefender\bdparentalservice.exe [69880 2014-03-15] (Bitdefender) R2 CltMngSvc; C:\Program Files\SearchProtect\Main\bin\CltMngSvc.exe [2496320 2014-05-03] (Client Connect LTD) R2 RealtekCU; C:\Program Files\REALTEK\USB Wireless LAN Utility\RtlService.exe [36864 2012-05-10] (Realtek Semiconductor Corp.) R2 SafeBox; C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe [81704 2013-07-08] (Bitdefender) S3 Secunia PSI Agent; C:\Program Files\Secunia\PSI\PSIA.exe [1229528 2013-12-06] (Secunia) R2 Secunia Update Agent; C:\Program Files\Secunia\PSI\sua.exe [662232 2013-12-06] (Secunia) R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe [54424 2014-03-15] (Bitdefender) R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender\vsserv.exe [1248712 2014-03-24] (Bitdefender) ==================== Drivers (Whitelisted) ==================== R0 avc3; C:\Windows\System32\DRIVERS\avc3.sys [778032 2013-12-02] (BitDefender) R3 avchv; C:\Windows\System32\DRIVERS\avchv.sys [242504 2012-11-02] (BitDefender) R3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [516936 2013-12-02] (BitDefender) S3 avmeject; C:\Windows\System32\drivers\avmeject.sys [4352 2009-05-07] (AVM Berlin) R1 BdfNdisf; c:\program files\common files\bitdefender\bitdefender firewall\bdfndisf6.sys [78144 2013-02-22] (BitDefender LLC) R1 bdfwfpf; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [90704 2011-11-14] (BitDefender LLC) S3 bdfwfpf_pc; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf_pc.sys [108008 2013-07-02] (Bitdefender SRL) S3 BDSandBox; C:\Windows\system32\drivers\bdsandbox.sys [66832 2013-11-04] (BitDefender SRL) R1 bdselfpr; C:\Program Files\Bitdefender\Bitdefender\bdselfpr.sys [135600 2013-07-26] (BitDefender LLC) R1 BDVEDISK; C:\Windows\System32\DRIVERS\bdvedisk.sys [72704 2012-04-17] (BitDefender) R3 fwlanusbn; C:\Windows\System32\DRIVERS\fwlanusbn.sys [440832 2009-05-07] (AVM GmbH) R0 gzflt; C:\Windows\System32\DRIVERS\gzflt.sys [165744 2013-08-23] (BitDefender LLC) R0 iusb3hcs; C:\Windows\System32\DRIVERS\iusb3hcs.sys [16880 2013-07-17] (Intel Corporation) S3 PSI; C:\Windows\System32\DRIVERS\psi_mf_x86.sys [16024 2013-12-06] (Secunia) R0 trufos; C:\Windows\System32\DRIVERS\trufos.sys [360376 2013-08-07] (BitDefender S.R.L.) S3 RTL8192cu; system32\DRIVERS\rtwlanu.sys [X] S3 RtlWlanu; system32\DRIVERS\rtwlanu.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-05-15 14:29 - 2014-05-15 14:29 - 00011894 _____ () C:\Users\eigen\Downloads\FRST.txt 2014-05-15 14:29 - 2014-05-15 14:29 - 00000000 ____D () C:\FRST 2014-05-15 14:28 - 2014-05-15 14:28 - 01056256 _____ (Farbar) C:\Users\eigen\Downloads\FRST.exe 2014-05-14 15:24 - 2014-05-06 05:25 - 17382912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-14 15:24 - 2014-05-06 05:07 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-14 15:24 - 2014-05-06 04:10 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-05-14 14:44 - 2014-05-15 14:10 - 00000392 _____ () C:\Windows\setupact.log 2014-05-14 14:44 - 2014-05-14 14:44 - 00000000 _____ () C:\Windows\setuperr.log 2014-05-14 14:43 - 2014-05-14 14:44 - 00295816 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-05-14 14:26 - 2014-05-14 14:27 - 15904896 _____ (simplitec GmbH ) C:\Users\eigen\Downloads\1_4_7_5_setup_simplitec_simplifast_Chip_2014.exe 2014-05-14 14:19 - 2014-05-15 14:10 - 00000378 _____ () C:\Windows\Tasks\simplitec Service Provider.job 2014-05-14 14:19 - 2014-05-15 08:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\simplitec 2014-05-14 14:19 - 2014-05-14 14:37 - 00000348 _____ () C:\Windows\Tasks\simplitec Power Suite.job 2014-05-14 14:19 - 2014-05-14 14:19 - 00002044 _____ () C:\Users\Public\Desktop\simplifast.lnk 2014-05-14 14:14 - 2014-05-14 14:14 - 00064024 _____ () C:\Users\eigen\AppData\Local\GDIPFONTCACHEV1.DAT 2014-05-14 13:30 - 2014-05-15 08:05 - 00000000 ____D () C:\Program Files\SearchProtect 2014-05-14 13:30 - 2014-05-14 13:30 - 00000000 ____D () C:\Users\eigen\AppData\Local\SearchProtect 2014-05-14 13:28 - 2014-05-14 13:28 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\TuneUp Software 2014-05-14 13:28 - 2014-05-14 13:28 - 00000000 ____D () C:\Users\eigen\AppData\Local\TuneUp Software 2014-05-14 13:26 - 2014-05-15 08:06 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} 2014-05-14 13:26 - 2014-05-14 13:33 - 00000000 ____D () C:\ProgramData\TuneUp Software 2014-05-14 13:25 - 2014-05-15 08:06 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake 2014-05-14 13:25 - 2014-05-15 08:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake 2014-05-14 13:25 - 2014-05-14 13:25 - 00001210 _____ () C:\Users\Public\Desktop\Freemake Music Box.lnk 2014-05-14 13:24 - 2014-05-15 08:06 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\OpenCandy 2014-05-14 13:24 - 2014-05-15 08:06 - 00000000 ____D () C:\Program Files\Freemake 2014-05-14 13:24 - 2014-05-14 13:25 - 00000000 ____D () C:\ProgramData\Freemake 2014-05-14 13:18 - 2014-05-14 13:18 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\MAGIX 2014-05-14 13:18 - 2014-05-14 13:18 - 00000000 ____D () C:\ProgramData\MAGIX 2014-05-14 13:17 - 2014-05-15 08:05 - 00000000 ____D () C:\ProgramData\simplitec 2014-05-14 13:17 - 2014-05-15 08:05 - 00000000 ____D () C:\Program Files\simplitec 2014-05-14 13:17 - 2013-08-23 12:19 - 00120200 _____ () C:\Windows\system32\DLLDEV32i.dll 2014-05-14 13:11 - 2014-05-15 14:10 - 00000266 _____ () C:\Windows\Tasks\AbelssoftPreloader.job 2014-05-14 13:11 - 2014-05-15 08:06 - 00000000 ____D () C:\Users\eigen\AppData\Local\Abelssoft 2014-05-14 13:11 - 2014-05-14 13:11 - 00000000 ____D () C:\Users\eigen\Documents\Abelssoft 2014-05-14 13:11 - 2014-05-14 13:11 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Abelssoft 2014-05-14 13:10 - 2014-05-15 08:06 - 00000000 ____D () C:\Program Files\WashAndGo 2014-05-14 13:10 - 2014-05-14 13:10 - 00000981 _____ () C:\Users\Public\Desktop\WashAndGo.lnk 2014-05-14 13:02 - 2014-05-09 09:06 - 00369664 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-05-14 13:02 - 2014-05-09 09:04 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-05-14 13:02 - 2014-04-12 04:15 - 00136640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2014-05-14 13:02 - 2014-04-12 04:15 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2014-05-14 13:02 - 2014-04-12 04:12 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2014-05-14 13:02 - 2014-04-12 04:12 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2014-05-14 13:02 - 2014-04-12 04:12 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2014-05-14 13:02 - 2014-04-12 04:11 - 01059840 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-05-14 13:02 - 2014-04-12 04:11 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2014-05-14 13:02 - 2014-03-25 04:09 - 12874240 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-05-14 13:02 - 2014-03-04 11:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe 2014-05-14 13:02 - 2014-03-04 11:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2014-05-14 13:02 - 2014-03-04 11:17 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00304128 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2014-05-14 13:02 - 2014-03-04 11:17 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2014-05-14 12:59 - 2014-05-14 14:38 - 00000000 ____D () C:\Users\eigen\AppData\Local\WEKA DVD Interface 2014-05-13 16:12 - 2014-05-15 08:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS Utility 2014-05-13 16:11 - 2014-05-13 16:11 - 00000000 ____D () C:\Program Files\ASUS 2014-05-13 11:54 - 2014-05-13 11:54 - 00000437 _____ () C:\Windows\system32\Drivers\etc\hosts.ics 2014-05-12 12:06 - 2014-05-12 12:06 - 00002102 _____ () C:\Users\Public\Desktop\REALTEK USB Wireless LAN Utility.lnk 2014-05-12 12:06 - 2014-05-12 12:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\REALTEK USB Wireless LAN Utility 2014-05-12 12:05 - 2014-05-15 08:05 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information 2014-05-12 12:05 - 2012-09-25 16:25 - 00405504 _____ (Realtek) C:\Windows\SwUSB.exe 2014-05-12 12:05 - 2012-09-20 10:00 - 00036864 _____ () C:\Windows\runSW.exe 2014-05-12 12:05 - 2012-06-18 18:21 - 00451072 _____ () C:\Windows\system32\ISSRemoveSP.exe 2014-05-12 12:05 - 2007-04-26 14:05 - 00100000 _____ () C:\Windows\system32\EAPPkt9x.VXD 2014-05-12 12:05 - 2001-09-26 11:03 - 00012981 _____ () C:\Windows\system32\REALPKT.VXD 2014-05-12 12:04 - 2014-05-12 12:04 - 00000000 ____D () C:\Program Files\REALTEK 2014-05-12 11:57 - 2014-05-12 11:58 - 13709432 _____ () C:\Users\eigen\Downloads\200mwatt.zip 2014-05-12 11:57 - 2014-05-12 11:57 - 04712927 _____ () C:\Users\eigen\Downloads\MWGUH_Vista.rar 2014-05-11 14:24 - 2014-05-11 14:24 - 00000000 ____D () C:\ProgramData\SeriousBit 2014-05-11 14:23 - 2013-11-25 09:28 - 00035712 _____ (SeriousBit) C:\Windows\system32\Drivers\nbdrv.sys 2014-05-11 14:21 - 2014-05-11 14:21 - 03438592 _____ (Softperfect Research ) C:\Users\eigen\Downloads\networx_setup_5.3(1).exe 2014-05-11 14:21 - 2014-05-11 14:21 - 03336192 _____ () C:\Users\eigen\Downloads\netspeedmonitor_2_5_4_0_x86_setup(2).msi 2014-05-11 14:21 - 2014-05-11 14:21 - 01911400 _____ (SoftPerfect Research ) C:\Users\eigen\Downloads\wifiguard_windows_setup(1).exe 2014-05-11 14:20 - 2014-05-11 14:20 - 04292736 _____ (SeriousBit ) C:\Users\eigen\Downloads\NetBalancerSetup-8.0.0(1).exe 2014-05-11 14:20 - 2014-05-11 14:20 - 03805800 _____ (Ilja Herlein ) C:\Users\eigen\Downloads\netsetman_setup_371.exe 2014-05-11 14:18 - 2014-05-11 14:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ekahau 2014-05-11 14:18 - 2014-05-11 14:26 - 00000000 ____D () C:\Program Files\Ekahau 2014-05-11 14:18 - 2014-05-11 14:19 - 00000000 ____D () C:\Users\eigen\Ekahau Site Survey 2014-05-11 14:17 - 2014-05-11 14:17 - 100885752 _____ (Ekahau) C:\Users\eigen\Downloads\EkahauHeatmapper-Setup.exe 2014-05-10 15:53 - 2014-05-10 15:53 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-05-09 16:48 - 2014-05-09 16:48 - 00001224 _____ () C:\Users\Public\Desktop\Xirrus Wi-Fi Inspector.lnk 2014-05-09 16:48 - 2014-05-09 16:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xirrus 2014-05-09 16:48 - 2014-05-09 16:48 - 00000000 ____D () C:\Program Files\Xirrus 2014-05-09 16:47 - 2014-05-09 16:47 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Xirrus 2014-05-09 16:32 - 2014-05-09 16:32 - 00002477 _____ () C:\Users\Public\Desktop\inSSIDer Home.lnk 2014-05-09 16:32 - 2014-05-09 16:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MetaGeek 2014-05-09 16:31 - 2014-05-09 16:31 - 04767744 _____ () C:\Users\eigen\Downloads\inSSIDer31-installer.msi 2014-05-09 16:12 - 2014-05-11 13:52 - 00000000 ____D () C:\Users\eigen\AppData\Local\MetaGeek,_LLC 2014-05-09 16:12 - 2014-05-09 16:12 - 00000037 ___SH () C:\Users\eigen\AppData\Local\70149b02515b3bb20dd492.47983420 2014-05-09 16:12 - 2014-05-09 16:12 - 00000000 ____D () C:\Users\eigen\AppData\Local\IsolatedStorage 2014-05-09 16:11 - 2014-05-09 16:32 - 00000000 ____D () C:\Program Files\MetaGeek 2014-05-09 16:11 - 2014-05-09 16:11 - 00002927 _____ () C:\Users\eigen\Desktop\inSSIDer Office.lnk 2014-05-09 16:11 - 2014-05-09 16:11 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MetaGeek 2014-05-09 16:04 - 2014-05-09 16:05 - 04292736 _____ (SeriousBit ) C:\Users\eigen\Downloads\NetBalancerSetup-8.0.0.exe 2014-05-09 16:03 - 2014-05-09 16:03 - 03438592 _____ (Softperfect Research ) C:\Users\eigen\Downloads\networx_setup_5.3.exe 2014-05-09 16:03 - 2014-05-09 16:03 - 03336192 _____ () C:\Users\eigen\Downloads\netspeedmonitor_2_5_4_0_x86_setup(1).msi 2014-05-09 15:58 - 2014-05-09 15:58 - 01911400 _____ (SoftPerfect Research ) C:\Users\eigen\Downloads\wifiguard_windows_setup.exe 2014-05-09 15:56 - 2014-05-09 15:56 - 22224144 _____ (Xirrus) C:\Users\eigen\Downloads\WiFiInspector-Setup-1.2.1.4.exe 2014-05-09 15:55 - 2014-05-09 15:55 - 06082560 _____ () C:\Users\eigen\Downloads\inSSIDerOffice(1).msi 2014-05-09 15:54 - 2014-05-09 15:54 - 06082560 _____ () C:\Users\eigen\Downloads\inSSIDerOffice.msi 2014-05-08 18:47 - 2009-05-07 02:01 - 00004352 ____R (AVM Berlin) C:\Windows\system32\Drivers\avmeject.sys 2014-05-08 18:41 - 2014-05-08 18:41 - 00000000 ____D () C:\Windows\AVM_Driver 2014-05-08 18:40 - 2014-05-08 18:40 - 00000000 ____D () C:\Users\eigen\AVM_Driver 2014-05-06 14:46 - 2014-05-15 08:06 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-05-05 16:58 - 2014-05-05 16:58 - 00000000 __SHD () C:\ProgramData\{32364CEA-7855-4A3C-B674-53D8E9B97936} 2014-04-29 12:02 - 2014-05-14 14:06 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NirSoft ProduKey 2014-04-29 12:02 - 2014-04-29 12:02 - 00000000 ____D () C:\Program Files\NirSoft 2014-04-27 14:11 - 2014-04-27 14:12 - 00000000 ___SD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.0.1 2014-04-27 14:11 - 2014-04-27 14:11 - 00001074 _____ () C:\Users\Public\Desktop\OpenOffice 4.0.1.lnk 2014-04-27 14:10 - 2014-04-27 14:10 - 00000000 ____D () C:\Program Files\OpenOffice 4 2014-04-27 14:07 - 2014-04-27 14:07 - 00000000 ____D () C:\Users\eigen\Desktop\OpenOffice 4.0.1 (de) Installation Files 2014-04-24 16:43 - 2014-04-24 16:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2014-04-24 16:43 - 2014-04-24 16:43 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-04-18 13:23 - 2014-04-18 14:00 - 1010827264 _____ () C:\Users\eigen\Downloads\ubuntu-14.04-desktop-amd64.iso 2014-04-18 12:44 - 2014-04-18 13:21 - 1017118720 _____ () C:\Users\eigen\Downloads\ubuntu-14.04-desktop-i386.iso 2014-04-18 11:52 - 2014-04-18 11:53 - 23181137 _____ () C:\Users\eigen\Downloads\torbrowser-install-3.5.4_de.exe 2014-04-17 11:21 - 2014-04-17 11:21 - 00264616 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-04-17 11:21 - 2014-04-17 11:21 - 00176040 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-04-17 11:21 - 2014-04-17 11:21 - 00176040 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-04-17 11:21 - 2014-04-17 11:21 - 00096680 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll 2014-04-17 11:21 - 2014-04-17 11:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-04-17 11:21 - 2014-04-17 11:21 - 00000000 ____D () C:\Program Files\Java 2014-04-17 11:17 - 2014-05-15 14:18 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-04-17 11:14 - 2014-04-17 11:14 - 00000000 __SHD () C:\Users\eigen\AppData\Local\EmieUserList 2014-04-17 11:14 - 2014-04-17 11:14 - 00000000 __SHD () C:\Users\eigen\AppData\Local\EmieSiteList 2014-04-17 11:11 - 2014-04-17 11:11 - 00001031 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Secunia PSI.lnk 2014-04-17 11:11 - 2014-04-17 11:11 - 00000000 ____D () C:\Users\eigen\AppData\Local\Secunia PSI 2014-04-17 11:11 - 2014-04-17 11:11 - 00000000 ____D () C:\Program Files\Secunia 2014-04-17 10:54 - 2014-04-17 10:55 - 05329480 _____ (Secunia) C:\Users\eigen\Downloads\PSISetup_3.0.0.9016.exe 2014-04-15 13:04 - 2014-04-29 11:26 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-04-15 13:04 - 2014-04-15 13:04 - 00001064 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-04-15 13:03 - 2014-04-15 13:03 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-04-15 13:03 - 2014-04-15 13:03 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 2014-04-15 13:03 - 2014-04-03 09:51 - 00073432 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-04-15 13:03 - 2014-04-03 09:51 - 00051416 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-04-15 13:03 - 2014-04-03 09:50 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-04-15 13:02 - 2014-04-15 13:03 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\eigen\Downloads\mbam-setup-2.0.1.1004.exe ==================== One Month Modified Files and Folders ======= 2014-05-15 14:29 - 2014-05-15 14:29 - 00011894 _____ () C:\Users\eigen\Downloads\FRST.txt 2014-05-15 14:29 - 2014-05-15 14:29 - 00000000 ____D () C:\FRST 2014-05-15 14:28 - 2014-05-15 14:28 - 01056256 _____ (Farbar) C:\Users\eigen\Downloads\FRST.exe 2014-05-15 14:18 - 2014-04-17 11:17 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-05-15 14:18 - 2014-04-10 16:37 - 01139646 _____ () C:\Windows\WindowsUpdate.log 2014-05-15 14:17 - 2009-07-14 06:34 - 00026512 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-05-15 14:17 - 2009-07-14 06:34 - 00026512 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-05-15 14:10 - 2014-05-14 14:44 - 00000392 _____ () C:\Windows\setupact.log 2014-05-15 14:10 - 2014-05-14 14:19 - 00000378 _____ () C:\Windows\Tasks\simplitec Service Provider.job 2014-05-15 14:10 - 2014-05-14 13:11 - 00000266 _____ () C:\Windows\Tasks\AbelssoftPreloader.job 2014-05-15 14:10 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-05-15 08:06 - 2014-05-14 13:26 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} 2014-05-15 08:06 - 2014-05-14 13:25 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake 2014-05-15 08:06 - 2014-05-14 13:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake 2014-05-15 08:06 - 2014-05-14 13:24 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\OpenCandy 2014-05-15 08:06 - 2014-05-14 13:24 - 00000000 ____D () C:\Program Files\Freemake 2014-05-15 08:06 - 2014-05-14 13:11 - 00000000 ____D () C:\Users\eigen\AppData\Local\Abelssoft 2014-05-15 08:06 - 2014-05-14 13:10 - 00000000 ____D () C:\Program Files\WashAndGo 2014-05-15 08:06 - 2014-05-13 16:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS Utility 2014-05-15 08:06 - 2014-05-06 14:46 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-05-15 08:06 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\wfp 2014-05-15 08:06 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\de-DE 2014-05-15 08:06 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\registration 2014-05-15 08:05 - 2014-05-14 14:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\simplitec 2014-05-15 08:05 - 2014-05-14 13:30 - 00000000 ____D () C:\Program Files\SearchProtect 2014-05-15 08:05 - 2014-05-14 13:17 - 00000000 ____D () C:\ProgramData\simplitec 2014-05-15 08:05 - 2014-05-14 13:17 - 00000000 ____D () C:\Program Files\simplitec 2014-05-15 08:05 - 2014-05-12 12:05 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information 2014-05-15 08:05 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET 2014-05-15 08:03 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\LogFiles 2014-05-14 15:29 - 2014-04-12 12:15 - 00000000 ____D () C:\Windows\system32\MRT 2014-05-14 15:26 - 2014-04-12 12:15 - 90547776 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-05-14 15:10 - 2014-04-10 18:55 - 00001096 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-05-14 14:44 - 2014-05-14 14:44 - 00000000 _____ () C:\Windows\setuperr.log 2014-05-14 14:44 - 2014-05-14 14:43 - 00295816 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-05-14 14:38 - 2014-05-14 12:59 - 00000000 ____D () C:\Users\eigen\AppData\Local\WEKA DVD Interface 2014-05-14 14:37 - 2014-05-14 14:19 - 00000348 _____ () C:\Windows\Tasks\simplitec Power Suite.job 2014-05-14 14:27 - 2014-05-14 14:26 - 15904896 _____ (simplitec GmbH ) C:\Users\eigen\Downloads\1_4_7_5_setup_simplitec_simplifast_Chip_2014.exe 2014-05-14 14:19 - 2014-05-14 14:19 - 00002044 _____ () C:\Users\Public\Desktop\simplifast.lnk 2014-05-14 14:14 - 2014-05-14 14:14 - 00064024 _____ () C:\Users\eigen\AppData\Local\GDIPFONTCACHEV1.DAT 2014-05-14 14:14 - 2014-04-10 17:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo 2014-05-14 14:14 - 2014-04-10 17:47 - 00000000 ____D () C:\Program Files\Ashampoo 2014-05-14 14:06 - 2014-04-29 12:02 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NirSoft ProduKey 2014-05-14 13:59 - 2014-04-10 18:55 - 00001044 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-05-14 13:33 - 2014-05-14 13:26 - 00000000 ____D () C:\ProgramData\TuneUp Software 2014-05-14 13:30 - 2014-05-14 13:30 - 00000000 ____D () C:\Users\eigen\AppData\Local\SearchProtect 2014-05-14 13:28 - 2014-05-14 13:28 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\TuneUp Software 2014-05-14 13:28 - 2014-05-14 13:28 - 00000000 ____D () C:\Users\eigen\AppData\Local\TuneUp Software 2014-05-14 13:25 - 2014-05-14 13:25 - 00001210 _____ () C:\Users\Public\Desktop\Freemake Music Box.lnk 2014-05-14 13:25 - 2014-05-14 13:24 - 00000000 ____D () C:\ProgramData\Freemake 2014-05-14 13:18 - 2014-05-14 13:18 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\MAGIX 2014-05-14 13:18 - 2014-05-14 13:18 - 00000000 ____D () C:\ProgramData\MAGIX 2014-05-14 13:11 - 2014-05-14 13:11 - 00000000 ____D () C:\Users\eigen\Documents\Abelssoft 2014-05-14 13:11 - 2014-05-14 13:11 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Abelssoft 2014-05-14 13:10 - 2014-05-14 13:10 - 00000981 _____ () C:\Users\Public\Desktop\WashAndGo.lnk 2014-05-13 16:11 - 2014-05-13 16:11 - 00000000 ____D () C:\Program Files\ASUS 2014-05-13 12:11 - 2009-07-14 04:04 - 00000411 _____ () C:\Windows\win.ini 2014-05-13 11:56 - 2010-11-20 23:01 - 01618320 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-05-13 11:54 - 2014-05-13 11:54 - 00000437 _____ () C:\Windows\system32\Drivers\etc\hosts.ics 2014-05-12 12:06 - 2014-05-12 12:06 - 00002102 _____ () C:\Users\Public\Desktop\REALTEK USB Wireless LAN Utility.lnk 2014-05-12 12:06 - 2014-05-12 12:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\REALTEK USB Wireless LAN Utility 2014-05-12 12:04 - 2014-05-12 12:04 - 00000000 ____D () C:\Program Files\REALTEK 2014-05-12 11:58 - 2014-05-12 11:57 - 13709432 _____ () C:\Users\eigen\Downloads\200mwatt.zip 2014-05-12 11:57 - 2014-05-12 11:57 - 04712927 _____ () C:\Users\eigen\Downloads\MWGUH_Vista.rar 2014-05-11 14:40 - 2014-04-10 17:15 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service 2014-05-11 14:26 - 2014-05-11 14:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ekahau 2014-05-11 14:26 - 2014-05-11 14:18 - 00000000 ____D () C:\Program Files\Ekahau 2014-05-11 14:24 - 2014-05-11 14:24 - 00000000 ____D () C:\ProgramData\SeriousBit 2014-05-11 14:21 - 2014-05-11 14:21 - 03438592 _____ (Softperfect Research ) C:\Users\eigen\Downloads\networx_setup_5.3(1).exe 2014-05-11 14:21 - 2014-05-11 14:21 - 03336192 _____ () C:\Users\eigen\Downloads\netspeedmonitor_2_5_4_0_x86_setup(2).msi 2014-05-11 14:21 - 2014-05-11 14:21 - 01911400 _____ (SoftPerfect Research ) C:\Users\eigen\Downloads\wifiguard_windows_setup(1).exe 2014-05-11 14:20 - 2014-05-11 14:20 - 04292736 _____ (SeriousBit ) C:\Users\eigen\Downloads\NetBalancerSetup-8.0.0(1).exe 2014-05-11 14:20 - 2014-05-11 14:20 - 03805800 _____ (Ilja Herlein ) C:\Users\eigen\Downloads\netsetman_setup_371.exe 2014-05-11 14:19 - 2014-05-11 14:18 - 00000000 ____D () C:\Users\eigen\Ekahau Site Survey 2014-05-11 14:17 - 2014-05-11 14:17 - 100885752 _____ (Ekahau) C:\Users\eigen\Downloads\EkahauHeatmapper-Setup.exe 2014-05-11 13:52 - 2014-05-09 16:12 - 00000000 ____D () C:\Users\eigen\AppData\Local\MetaGeek,_LLC 2014-05-10 15:53 - 2014-05-10 15:53 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-05-09 16:52 - 2014-04-10 16:43 - 00000000 ____D () C:\Users\eigen\AppData\Local\VirtualStore 2014-05-09 16:48 - 2014-05-09 16:48 - 00001224 _____ () C:\Users\Public\Desktop\Xirrus Wi-Fi Inspector.lnk 2014-05-09 16:48 - 2014-05-09 16:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xirrus 2014-05-09 16:48 - 2014-05-09 16:48 - 00000000 ____D () C:\Program Files\Xirrus 2014-05-09 16:47 - 2014-05-09 16:47 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Xirrus 2014-05-09 16:32 - 2014-05-09 16:32 - 00002477 _____ () C:\Users\Public\Desktop\inSSIDer Home.lnk 2014-05-09 16:32 - 2014-05-09 16:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MetaGeek 2014-05-09 16:32 - 2014-05-09 16:11 - 00000000 ____D () C:\Program Files\MetaGeek 2014-05-09 16:31 - 2014-05-09 16:31 - 04767744 _____ () C:\Users\eigen\Downloads\inSSIDer31-installer.msi 2014-05-09 16:12 - 2014-05-09 16:12 - 00000037 ___SH () C:\Users\eigen\AppData\Local\70149b02515b3bb20dd492.47983420 2014-05-09 16:12 - 2014-05-09 16:12 - 00000000 ____D () C:\Users\eigen\AppData\Local\IsolatedStorage 2014-05-09 16:11 - 2014-05-09 16:11 - 00002927 _____ () C:\Users\eigen\Desktop\inSSIDer Office.lnk 2014-05-09 16:11 - 2014-05-09 16:11 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MetaGeek 2014-05-09 16:05 - 2014-05-09 16:04 - 04292736 _____ (SeriousBit ) C:\Users\eigen\Downloads\NetBalancerSetup-8.0.0.exe 2014-05-09 16:03 - 2014-05-09 16:03 - 03438592 _____ (Softperfect Research ) C:\Users\eigen\Downloads\networx_setup_5.3.exe 2014-05-09 16:03 - 2014-05-09 16:03 - 03336192 _____ () C:\Users\eigen\Downloads\netspeedmonitor_2_5_4_0_x86_setup(1).msi 2014-05-09 15:58 - 2014-05-09 15:58 - 01911400 _____ (SoftPerfect Research ) C:\Users\eigen\Downloads\wifiguard_windows_setup.exe 2014-05-09 15:56 - 2014-05-09 15:56 - 22224144 _____ (Xirrus) C:\Users\eigen\Downloads\WiFiInspector-Setup-1.2.1.4.exe 2014-05-09 15:55 - 2014-05-09 15:55 - 06082560 _____ () C:\Users\eigen\Downloads\inSSIDerOffice(1).msi 2014-05-09 15:54 - 2014-05-09 15:54 - 06082560 _____ () C:\Users\eigen\Downloads\inSSIDerOffice.msi 2014-05-09 11:10 - 2014-04-10 19:04 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\IDM 2014-05-09 11:10 - 2014-04-10 19:04 - 00000000 ____D () C:\Program Files\Internet Download Manager 2014-05-09 11:09 - 2014-04-10 19:04 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\DMCache 2014-05-09 09:06 - 2014-05-14 13:02 - 00369664 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-05-09 09:04 - 2014-05-14 13:02 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-05-08 18:48 - 2014-04-10 16:45 - 00000000 ____D () C:\Program Files\avmwlanstick 2014-05-08 18:41 - 2014-05-08 18:41 - 00000000 ____D () C:\Windows\AVM_Driver 2014-05-08 18:40 - 2014-05-08 18:40 - 00000000 ____D () C:\Users\eigen\AVM_Driver 2014-05-06 05:25 - 2014-05-14 15:24 - 17382912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-06 05:07 - 2014-05-14 15:24 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-06 04:10 - 2014-05-14 15:24 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-05-05 16:58 - 2014-05-05 16:58 - 00000000 __SHD () C:\ProgramData\{32364CEA-7855-4A3C-B674-53D8E9B97936} 2014-05-02 15:58 - 2014-04-10 17:15 - 00001121 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2014-05-02 15:58 - 2014-04-10 17:15 - 00001109 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-04-30 12:09 - 2014-04-10 18:55 - 00002121 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-04-29 12:46 - 2014-04-10 17:47 - 00000000 ____D () C:\ProgramData\Ashampoo 2014-04-29 12:02 - 2014-04-29 12:02 - 00000000 ____D () C:\Program Files\NirSoft 2014-04-29 12:00 - 2014-04-10 19:04 - 00000000 ____D () C:\Users\eigen\Downloads\Compressed 2014-04-29 11:26 - 2014-04-15 13:04 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-04-27 14:12 - 2014-04-27 14:11 - 00000000 ___SD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.0.1 2014-04-27 14:11 - 2014-04-27 14:11 - 00001074 _____ () C:\Users\Public\Desktop\OpenOffice 4.0.1.lnk 2014-04-27 14:10 - 2014-04-27 14:10 - 00000000 ____D () C:\Program Files\OpenOffice 4 2014-04-27 14:07 - 2014-04-27 14:07 - 00000000 ____D () C:\Users\eigen\Desktop\OpenOffice 4.0.1 (de) Installation Files 2014-04-24 16:45 - 2014-04-10 19:17 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Winamp 2014-04-24 16:43 - 2014-04-24 16:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2014-04-24 16:43 - 2014-04-24 16:43 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-04-24 16:12 - 2014-04-11 02:34 - 00000000 ____D () C:\Windows\Panther 2014-04-21 10:14 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache 2014-04-18 15:12 - 2010-11-21 02:47 - 00000000 ____D () C:\Program Files\Windows Journal 2014-04-18 15:12 - 2010-11-21 02:38 - 00000000 ____D () C:\Windows\system32\winrm 2014-04-18 15:12 - 2010-11-21 02:38 - 00000000 ____D () C:\Windows\system32\slmgr 2014-04-18 15:12 - 2010-11-21 02:38 - 00000000 ____D () C:\Windows\DigitalLocker 2014-04-18 15:12 - 2009-07-14 06:52 - 00000000 ____D () C:\Program Files\Windows Sidebar 2014-04-18 15:12 - 2009-07-14 06:52 - 00000000 ____D () C:\Program Files\Windows Photo Viewer 2014-04-18 15:12 - 2009-07-14 06:52 - 00000000 ____D () C:\Program Files\Windows Defender 2014-04-18 15:12 - 2009-07-14 06:52 - 00000000 ____D () C:\Program Files\DVD Maker 2014-04-18 15:12 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\IME 2014-04-18 15:12 - 2009-07-14 04:37 - 00000000 ____D () C:\Program Files\Common Files\System 2014-04-18 15:11 - 2010-11-21 02:38 - 00000000 ____D () C:\Windows\system32\WCN 2014-04-18 15:11 - 2010-11-21 02:38 - 00000000 ____D () C:\Windows\system32\Printing_Admin_Scripts 2014-04-18 15:11 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\MUI 2014-04-18 15:11 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\com 2014-04-18 14:00 - 2014-04-18 13:23 - 1010827264 _____ () C:\Users\eigen\Downloads\ubuntu-14.04-desktop-amd64.iso 2014-04-18 13:21 - 2014-04-18 12:44 - 1017118720 _____ () C:\Users\eigen\Downloads\ubuntu-14.04-desktop-i386.iso 2014-04-18 11:53 - 2014-04-18 11:52 - 23181137 _____ () C:\Users\eigen\Downloads\torbrowser-install-3.5.4_de.exe 2014-04-17 11:22 - 2014-04-10 18:09 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe 2014-04-17 11:22 - 2014-04-10 18:09 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl 2014-04-17 11:21 - 2014-04-17 11:21 - 00264616 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-04-17 11:21 - 2014-04-17 11:21 - 00176040 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-04-17 11:21 - 2014-04-17 11:21 - 00176040 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-04-17 11:21 - 2014-04-17 11:21 - 00096680 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll 2014-04-17 11:21 - 2014-04-17 11:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-04-17 11:21 - 2014-04-17 11:21 - 00000000 ____D () C:\Program Files\Java 2014-04-17 11:14 - 2014-04-17 11:14 - 00000000 __SHD () C:\Users\eigen\AppData\Local\EmieUserList 2014-04-17 11:14 - 2014-04-17 11:14 - 00000000 __SHD () C:\Users\eigen\AppData\Local\EmieSiteList 2014-04-17 11:11 - 2014-04-17 11:11 - 00001031 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Secunia PSI.lnk 2014-04-17 11:11 - 2014-04-17 11:11 - 00000000 ____D () C:\Users\eigen\AppData\Local\Secunia PSI 2014-04-17 11:11 - 2014-04-17 11:11 - 00000000 ____D () C:\Program Files\Secunia 2014-04-17 10:55 - 2014-04-17 10:54 - 05329480 _____ (Secunia) C:\Users\eigen\Downloads\PSISetup_3.0.0.9016.exe 2014-04-15 13:04 - 2014-04-15 13:04 - 00001064 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-04-15 13:03 - 2014-04-15 13:03 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-04-15 13:03 - 2014-04-15 13:03 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 2014-04-15 13:03 - 2014-04-15 13:02 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\eigen\Downloads\mbam-setup-2.0.1.1004.exe Some content of TEMP: ==================== C:\Users\eigen\AppData\Local\Temp\DseShExt-x86.dll C:\Users\eigen\AppData\Local\Temp\FreemakeMusicBox_1.0.1.3.exe C:\Users\eigen\AppData\Local\Temp\nsbB292.exe C:\Users\eigen\AppData\Local\Temp\nsbD17.exe C:\Users\eigen\AppData\Local\Temp\nsgAF08.exe C:\Users\eigen\AppData\Local\Temp\nsl651.exe C:\Users\eigen\AppData\Local\Temp\nslB62B.exe C:\Users\eigen\AppData\Local\Temp\nsq97D.exe C:\Users\eigen\AppData\Local\Temp\SDShelEx-win32.dll C:\Users\eigen\AppData\Local\Temp\TUUUninstallHelper.exe C:\Users\eigen\AppData\Local\Temp\Update_Simplitec_PowerSuite_1.4.7.5de_DE.exe ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe => MD5 is legit C:\Windows\system32\winlogon.exe [2014-05-14 13:02] - [2014-03-04 11:17] - 0304128 ____A (Microsoft Corporation) 998507B046BA314CE8245364C686FA67 C:\Windows\system32\wininit.exe => MD5 is legit C:\Windows\system32\svchost.exe => MD5 is legit C:\Windows\system32\services.exe => MD5 is legit C:\Windows\system32\User32.dll => MD5 is legit C:\Windows\system32\userinit.exe => MD5 is legit C:\Windows\system32\rpcss.dll => MD5 is legit C:\Windows\system32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-05-12 20:20 ==================== End Of Log ============================ Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x86) Version:14-05-2014 Ran by eigen at 2014-05-15 14:30:25 Running from C:\Users\eigen\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Bitdefender Antivirus (Enabled - Up to date) {9A0813D8-CED6-F86B-072E-28D2AF25A83D} AS: Bitdefender Spyware-Schutz (Enabled - Up to date) {2169F23C-E8EC-F7E5-3D9E-13A0D4A2E280} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Bitdefender Firewall (Enabled) {A23392FD-84B9-F933-2C71-81E751F6EF46} ==================== Installed Programs ====================== 7-Zip 9.30 (HKLM\...\{23170F69-40C1-2701-0930-000001000000}) (Version: 9.30.00.0 - Igor Pavlov) Adobe Flash Player 13 ActiveX (HKLM\...\{8F9B1C8E-F50E-4139-8701-45016021E102}) (Version: 13.0.0.182 - Adobe Systems Incorporated) Adobe Flash Player 13 Plugin (HKLM\...\{28ADCCAD-3C23-44A1-A93F-47AA176F7AD7}) (Version: 13.0.0.182 - Adobe Systems Incorporated) Adobe Reader XI (11.0.06) - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.06 - Adobe Systems Incorporated) Adobe Shockwave Player + Authorware Web Player (HKLM\...\Adobe Shockwave Player + Authorware Web Player) (Version: v12.0.6.147 - Adobe Systems, Inc.) Adobe Shockwave Player 12.1 (HKLM\...\Adobe Shockwave Player) (Version: 12.1.0.150 - Adobe Systems, Inc.) Ashampoo HDD Control 2 v.2.1.0 (HKLM\...\{4209F371-A431-385E-2D7E-ACDA5DA3BA0B}_is1) (Version: 2.1.0 - Ashampoo GmbH & Co. KG) ASUS USB-N13 Manual (HKLM\...\{CEDBB2CE-BDD3-4079-A172-2F365119C925}) (Version: 1.00.0000 - ASUS) AVM FRITZ!WLAN (HKLM\...\AVMWLANCLI) (Version: - AVM Berlin) Bitdefender Total Security (HKLM\...\Bitdefender) (Version: 17.27.0.1146 - Bitdefender) DriverPack Solution Updater (HKCU\...\DRPSu Updater) (Version: 0.0.25 - DriverPack Solution) Freemake Music Box (HKLM\...\Freemake Music Box_is1) (Version: 1.0.1 - Ellora Assets Corporation) Google Chrome (HKLM\...\Google Chrome) (Version: 34.0.1847.131 - Google Inc.) Google Update Helper (Version: 1.3.24.7 - Google Inc.) Hidden inSSIDer Home (HKLM\...\{9E54E4AE-B67A-4925-8E92-0E1F9817FD73}) (Version: 3.1.2.1 - MetaGeek, LLC) inSSIDer Office (HKLM\...\{8C127DE3-EC36-4BA3-A6EE-6DC4A9B6C526}) (Version: 3.1.1.6 - MetaGeek, LLC) Intel(R) Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: 8.15.10.1930 - Intel Corporation) Intel(R) TV Wizard (HKLM\...\TVWiz) (Version: - Intel Corporation) ISO Workshop 4.5 (HKLM\...\ISO Workshop_is1) (Version: - Glorylogic) Java 8 Update 5 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218005FF}) (Version: 8.0.50 - Oracle Corporation) Lagarith Lossless Codec (1.3.27) (HKLM\...\{F59AC46C-10C3-4023-882C-4212A92283B3}_is1) (Version: - ) Malwarebytes Anti-Malware Version 2.0.1.1004 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.1.1004 - Malwarebytes Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM\...\{CA8A885F-E95B-3FC6-BB91-F4D9377C7686}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Mozilla Firefox 29.0.1 (x86 de) (HKLM\...\Mozilla Firefox 29.0.1 (x86 de)) (Version: 29.0.1 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 29.0 - Mozilla) NirSoft ProduKey (HKLM\...\NirSoft ProduKey) (Version: - ) OpenOffice 4.0.1 (HKLM\...\{0AEC308E-7EB3-47F7-BB59-F2C9C6166B27}) (Version: 4.01.9714 - Apache Software Foundation) REALTEK Wireless LAN Driver and Utility (HKLM\...\{9C049509-055C-4CFF-A116-1D12312225EB}) (Version: 1.00.0199 - REALTEK Semiconductor Corp.) Revo Uninstaller 1.95 (HKLM\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) SAM CoDeC Pack (HKLM\...\SAM CoDeC Pack) (Version: 5.30 - www.SamLab.ws) Search Protect (HKLM\...\SearchProtect) (Version: 2.13.1.47 - Client Connect LTD) <==== ATTENTION Secunia PSI (3.0.0.9016) (HKLM\...\Secunia PSI) (Version: 3.0.0.9016 - Secunia) simplifast (HKLM\...\simplitec POWER SUITE_is1) (Version: 1.4.7.5 - simplitec GmbH) Streamripper (Remove only) (HKLM\...\Streamripper) (Version: - ) swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Ut Video Codec Suite (HKLM\...\utvideo_is1) (Version: 13.3.0 - UMEZAWA Takeshi) WashAndGo (HKLM\...\WashAndGo_is1) (Version: 17.7 - Abelssoft) Winamp (HKLM\...\Winamp) (Version: 5.666 - Nullsoft, Inc) Winamp Erkennungs-Plug-in (HKCU\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc) x264vfw - H.264/MPEG-4 AVC codec (remove only) (HKLM\...\x264vfw) (Version: - ) Xirrus Wi-Fi Inspector (HKLM\...\{BBB21AB1-2C45-435D-A05A-B563072E7B9B}) (Version: 1.2.1.4 - Xirrus) Xvid MPEG-4 Video Codec (HKLM\...\Xvid_is1) (Version: - ) ==================== Restore Points ========================= 13-05-2014 09:44:05 Installiert ASUS USB-N13 WLAN Card Utilities & Driver 13-05-2014 10:01:36 Revo Uninstaller's restore point - ASUS USB-N13 WLAN Card Utilities & Driver 13-05-2014 10:06:06 Revo Uninstaller's restore point - ASUS USB-N13 WLAN Card Utilities & Driver 13-05-2014 10:10:23 Revo Uninstaller's restore point - ASUS USB-N13 WLAN Card Utilities & Driver 13-05-2014 14:10:57 Installiert ASUS USB-N13 Manual 14-05-2014 11:34:04 Revo Uninstaller's restore point - TuneUp Utilities 2014 14-05-2014 11:36:12 Revo Uninstaller's restore point - TuneUp Utilities 2014 14-05-2014 11:36:34 TuneUp Utilities 2014 wird entfernt 14-05-2014 11:37:05 TuneUp Utilities 2014 (de-DE) wird entfernt 14-05-2014 11:41:17 simplitec Power Suite: Autostart optimieren () 14-05-2014 11:41:38 simplitec Power Suite: Windows-Dienste optimieren () 14-05-2014 11:42:12 simplitec Power Suite: Internet-Tuning (Optimieren) 14-05-2014 11:56:14 Wiederherstellungsvorgang 14-05-2014 12:01:28 Revo Uninstaller's restore point - simplitec Power Suite 14-05-2014 12:12:15 Revo Uninstaller's restore point - CCleaner 14-05-2014 12:14:13 Revo Uninstaller's restore point - Ashampoo WinOptimizer 2014 v.1.0.0 14-05-2014 12:55:14 Wiederherstellungsvorgang 14-05-2014 13:24:36 Windows Update 14-05-2014 19:26:57 Wiederherstellungsvorgang ==================== Hosts content: ========================== 2009-07-14 04:04 - 2009-06-10 23:39 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {3B3C209D-8217-448A-BA70-737329CEF8D8} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-04-10] (Google Inc.) Task: {47569851-3577-486A-B489-C620C4EBC229} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-04-10] (Google Inc.) Task: {4B6B5AD3-6319-481A-977E-14B597B969E5} - System32\Tasks\simplitec Power Suite => C:\Program Files\simplitec\simplifast\PowerSuite.exe [2014-01-06] (simplitec GmbH) Task: {5DDEAB78-91C8-4D19-BEA3-E002FEDF853A} - System32\Tasks\AbelssoftPreloader => C:\Program Files\WashAndGo\AbelssoftPreloader.exe [2014-02-05] (Microsoft) Task: {6FB93CBC-B3F1-4CC5-985A-30B5768041C1} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-04-17] (Adobe Systems Incorporated) Task: {B6E96FF1-442C-47BA-A200-4D9F9CDE8323} - System32\Tasks\simplitec Service Provider => C:\Program Files\simplitec\simplifast\ServiceProvider.exe [2014-01-06] (simplitec GmbH) Task: C:\Windows\Tasks\AbelssoftPreloader.job => C:\Program Files\WashAndGo\AbelssoftPreloader.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\simplitec Power Suite.job => C:\Program Files\simplitec\simplifast\PowerSuite.exe Task: C:\Windows\Tasks\simplitec Service Provider.job => C:\Program Files\simplitec\simplifast\ServiceProvider.exe ==================== Loaded Modules (whitelisted) ============= 2014-04-10 17:06 - 2014-03-15 00:05 - 00204280 _____ () C:\Program Files\Bitdefender\Bitdefender\txmlutil.dll 2014-04-10 17:07 - 2014-03-27 19:17 - 00003072 _____ () C:\Program Files\Bitdefender\Bitdefender\UI\accessl.ui 2014-04-10 17:07 - 2011-11-14 19:17 - 00132176 _____ () C:\Program Files\Bitdefender\Bitdefender\bdfwcore.dll 2014-04-10 17:07 - 2014-03-27 19:17 - 00005120 _____ () C:\Program Files\Bitdefender\Bitdefender\UI\IMSecurityAL.ui 2014-04-10 17:06 - 2014-03-24 17:35 - 00668840 _____ () C:\Program Files\Bitdefender\Bitdefender\otengines_001_001\ashttpbr.mdl 2014-04-10 17:06 - 2014-03-24 17:35 - 00489120 _____ () C:\Program Files\Bitdefender\Bitdefender\otengines_001_001\ashttpdsp.mdl 2014-04-10 17:06 - 2014-03-24 17:35 - 02137584 _____ () C:\Program Files\Bitdefender\Bitdefender\otengines_001_001\ashttpph.mdl 2014-04-10 17:06 - 2014-03-24 17:35 - 01124088 _____ () C:\Program Files\Bitdefender\Bitdefender\otengines_001_001\ashttprbl.mdl 2014-04-10 17:47 - 2012-07-30 10:48 - 01518504 _____ () C:\Program Files\Ashampoo\Ashampoo HDD Control 2\AHDDC2_Service.exe 2014-04-10 17:07 - 2013-03-25 15:16 - 00919136 _____ () C:\Program Files\Bitdefender\Bitdefender SafeBox\System.Data.SQLite.dll 2014-05-12 12:05 - 2012-11-06 09:47 - 00114688 _____ () C:\Program Files\REALTEK\USB Wireless LAN Utility\EnumDevLib.dll 2014-04-10 17:06 - 2013-09-03 13:29 - 00095088 _____ () C:\Program Files\Bitdefender\Bitdefender\bdmetrics.dll 2014-05-14 14:19 - 2014-01-06 10:49 - 00085808 _____ () C:\Program Files\simplitec\simplifast\modules\common\asp_ipc32.dll 2014-05-14 14:19 - 2014-01-06 10:49 - 00009520 _____ () C:\Program Files\simplitec\simplifast\language\ServiceProvider_de.dll 2012-12-23 13:48 - 2012-12-23 13:48 - 00195256 ____R () C:\Users\eigen\AppData\Roaming\DRPSu\DrvUpdater.exe 2014-05-10 15:53 - 2014-05-10 15:53 - 03839088 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\Users\eigen\Downloads\1_4_7_5_setup_simplitec_simplifast_Chip_2014.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\ashampoo_file_wiper_1.0.0_13413.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\ccsetup412_slim.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\checkdrive2014.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\ChromeStandaloneSetup_34.0.1847.116.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\EkahauHeatmapper-Setup.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\Firefox_Setup_de28.0.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\FRST.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\hardinfo7pro_full_setup.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\idman619build2.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\jre-8-windows-i586.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\mbam-setup-2.0.1.1004.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\NetBalancerSetup-8.0.0(1).exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\NetBalancerSetup-8.0.0.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\netsetman_setup_371.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\networx_setup_5.3(1).exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\networx_setup_5.3.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\PSISetup_3.0.0.9016.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\revosetup95.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\startupstar_vb_de.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\streamripper-windows-installer-1.64.6.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\torbrowser-install-3.5.4_de.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\wifiguard_windows_setup(1).exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\wifiguard_windows_setup.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\WiFiInspector-Setup-1.2.1.4.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\winamp5666_full_de-de_b3516.exe:BDU ==================== Safe Mode (whitelisted) =================== ==================== EXE Association (whitelisted) ============= ==================== Disabled items from MSCONFIG ============== ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (05/15/2014 02:10:43 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/15/2014 01:10:55 PM) (Source: AHDDC2_Service.exe) (EventID: 0) (User: ) Description: Cannot terminate an externally created thread Error: (05/15/2014 01:10:29 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/15/2014 00:48:21 PM) (Source: AHDDC2_Service.exe) (EventID: 0) (User: ) Description: Cannot terminate an externally created thread Error: (05/15/2014 00:46:36 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/15/2014 00:42:51 PM) (Source: AHDDC2_Service.exe) (EventID: 0) (User: ) Description: Cannot terminate an externally created thread Error: (05/15/2014 00:38:54 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/14/2014 09:56:53 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/14/2014 09:46:19 PM) (Source: AHDDC2_Service.exe) (EventID: 0) (User: ) Description: Cannot terminate an externally created thread Error: (05/14/2014 09:32:03 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Microsoft Office Sessions: ========================= Error: (05/15/2014 02:10:43 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/15/2014 01:10:55 PM) (Source: AHDDC2_Service.exe) (EventID: 0) (User: ) Description: Cannot terminate an externally created thread Error: (05/15/2014 01:10:29 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/15/2014 00:48:21 PM) (Source: AHDDC2_Service.exe) (EventID: 0) (User: ) Description: Cannot terminate an externally created thread Error: (05/15/2014 00:46:36 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/15/2014 00:42:51 PM) (Source: AHDDC2_Service.exe) (EventID: 0) (User: ) Description: Cannot terminate an externally created thread Error: (05/15/2014 00:38:54 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/14/2014 09:56:53 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/14/2014 09:46:19 PM) (Source: AHDDC2_Service.exe) (EventID: 0) (User: ) Description: Cannot terminate an externally created thread Error: (05/14/2014 09:32:03 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 ==================== Memory info =========================== Percentage of memory in use: 52% Total physical RAM: 2038.24 MB Available physical RAM: 970.76 MB Total Pagefile: 4076.48 MB Available Pagefile: 2887.52 MB Total Virtual: 2047.88 MB Available Virtual: 1891.83 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:110.94 GB) (Free:85 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 149 GB) (Disk ID: 1669C708) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=111 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=38 GB) - (Type=05) ==================== End Of Log ============================ |
15.05.2014, 13:58 | #2 |
/// the machine /// TB-Ausbilder | Pc spinnt Browser lassen sich nicht öffnen hi,
__________________Adware & Co. deinstallieren
Solltest Du ein Programm nicht finden oder nicht deinstallieren können, mache bitte mit dem nächsten Schritt weiter: Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ |
16.05.2014, 14:27 | #3 |
| Pc spinnt Browser lassen sich nicht öffnen Hallo
__________________Hier die neuen Logfils: FRST Logfile: FRST Logfile: FRST Logfile: FRST Logfile: FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:15-05-2014 Ran by eigen (administrator) on EIGEN-PC on 16-05-2014 11:52:16 Running from C:\Users\eigen\Downloads Platform: Microsoft Windows 7 Professional Service Pack 1 (X86) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Bitdefender) C:\Program Files\Bitdefender\Bitdefender\vsserv.exe () C:\Program Files\Ashampoo\Ashampoo HDD Control 2\AHDDC2_Service.exe (AVM Berlin) C:\Program Files\avmwlanstick\WLanNetService.exe (Secunia) C:\Program Files\Secunia\PSI\sua.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender Safebox\safeboxservice.exe (AVM Berlin) C:\Program Files\avmwlanstick\WLanGUI.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender\bdagent.exe (Ashampoo Development GmbH & Co. KG) C:\Program Files\Ashampoo\Ashampoo HDD Control 2\AHDDC2_Guard.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe (Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender\bdapppassmgr.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [AVMWlanClient] => C:\Program Files\avmwlanstick\wlangui.exe [1904640 2009-05-07] (AVM Berlin) HKLM\...\Run: [Bdagent] => C:\Program Files\Bitdefender\Bitdefender\bdagent.exe [1845064 2014-03-25] (Bitdefender) HKLM\...\Run: [Ashampoo HDD-Control 2 Guard] => C:\Program Files\Ashampoo\Ashampoo HDD Control 2\AHDDC2_Guard.exe [3783592 2012-07-30] (Ashampoo Development GmbH & Co. KG) HKU\.DEFAULT\...\Run: [Bitdefender-Geldbörse-Agent] => C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe [482392 2014-03-19] (Bitdefender) HKU\.DEFAULT\...\Run: [Bitdefender-Geldbörse] => C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe [901096 2014-03-15] (Bitdefender) HKU\.DEFAULT\...\Run: [Bitdefender-Geldbörse-Anwendungs-Agent] => C:\Program Files\Bitdefender\Bitdefender\bdapppassmgr.exe [614232 2014-03-19] (Bitdefender) HKU\S-1-5-21-2847575353-1812513506-2368236192-1000\...\Run: [Bitdefender-Geldbörse-Agent] => C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe [482392 2014-03-19] (Bitdefender) HKU\S-1-5-21-2847575353-1812513506-2368236192-1000\...\Run: [Bitdefender-Geldbörse] => C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe [901096 2014-03-15] (Bitdefender) HKU\S-1-5-21-2847575353-1812513506-2368236192-1000\...\Run: [Bitdefender-Geldbörse-Anwendungs-Agent] => C:\Program Files\Bitdefender\Bitdefender\bdapppassmgr.exe [614232 2014-03-19] (Bitdefender) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.dell.com SearchScopes: HKLM - DefaultScope value is missing. BHO: Bitdefender-Geldbörse - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender\pmbxie.dll (Bitdefender) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre8\bin\ssv.dll (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre8\bin\jp2ssv.dll (Oracle Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\eigen\AppData\Roaming\Mozilla\Firefox\Profiles\4d23aa7j.default FF Plugin: @adobe.com/AuthorwarePlayer - C:\Windows\system32\Macromed\AUTHORWA\np32asw.dll (Macromedia, Inc.) FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_13_0_0_182.dll () FF Plugin: @adobe.com/ShockwavePlayer - C:\Windows\system32\Adobe\Director\np32dsw_1210150.dll (Adobe Systems, Inc.) FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf - C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll No File FF Plugin: @java.com/DTPlugin,version=11.5.2 - C:\Program Files\Java\jre8\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.5.2 - C:\Program Files\Java\jre8\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @nullsoft.com/winampDetector;version=1 - C:\Program Files\Winamp Detect\npwachk.dll (Nullsoft, Inc.) FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: WOT - C:\Users\eigen\AppData\Roaming\Mozilla\Firefox\Profiles\4d23aa7j.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2014-04-10] FF Extension: Ghostery - C:\Users\eigen\AppData\Roaming\Mozilla\Firefox\Profiles\4d23aa7j.default\Extensions\firefox@ghostery.com.xpi [2014-04-10] FF HKLM\...\Firefox\Extensions: [ffpwdman@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender\ffpwdman\ FF Extension: Bitdefender Wallet - C:\Program Files\Bitdefender\Bitdefender\ffpwdman\ [] FF HKLM\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender\bdtbext FF Extension: bdToolbar - C:\Program Files\Bitdefender\Bitdefender\bdtbext [2014-04-10] Chrome: ======= CHR HomePage: CHR Extension: (Google Docs) - C:\Users\eigen\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-04-10] CHR Extension: (Google Drive) - C:\Users\eigen\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-04-10] CHR Extension: (YouTube) - C:\Users\eigen\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-04-10] CHR Extension: (Bitdefender Wallet) - C:\Users\eigen\AppData\Local\Google\Chrome\User Data\Default\Extensions\ccahoghmggldkcdjiebjkidpfongdfbl [2014-04-10] CHR Extension: (Google-Suche) - C:\Users\eigen\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-04-10] CHR Extension: (Google Wallet) - C:\Users\eigen\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-04-10] CHR Extension: (Google Mail) - C:\Users\eigen\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-04-10] CHR HKLM\...\Chrome\Extension: [ccahoghmggldkcdjiebjkidpfongdfbl] - C:\Program Files\Bitdefender\Bitdefender\pmbxcr.crx [2014-04-10] ========================== Services (Whitelisted) ================= R2 AHDDC2; C:\Program Files\Ashampoo\Ashampoo HDD Control 2\AHDDC2_Service.exe [1518504 2012-07-30] () R2 AVM WLAN Connection Service; C:\Program Files\avmwlanstick\WlanNetService.exe [368640 2009-05-07] (AVM Berlin) S4 BdDesktopParental; C:\Program Files\Bitdefender\Bitdefender\bdparentalservice.exe [69880 2014-03-15] (Bitdefender) R2 SafeBox; C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe [81704 2013-07-08] (Bitdefender) S3 Secunia PSI Agent; C:\Program Files\Secunia\PSI\PSIA.exe [1229528 2013-12-06] (Secunia) R2 Secunia Update Agent; C:\Program Files\Secunia\PSI\sua.exe [662232 2013-12-06] (Secunia) R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe [54424 2014-03-15] (Bitdefender) R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender\vsserv.exe [1248712 2014-03-24] (Bitdefender) ==================== Drivers (Whitelisted) ==================== R0 avc3; C:\Windows\System32\DRIVERS\avc3.sys [778032 2013-12-02] (BitDefender) R3 avchv; C:\Windows\System32\DRIVERS\avchv.sys [242504 2012-11-02] (BitDefender) R3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [516936 2013-12-02] (BitDefender) S3 avmeject; C:\Windows\System32\drivers\avmeject.sys [4352 2009-05-07] (AVM Berlin) R1 BdfNdisf; c:\program files\common files\bitdefender\bitdefender firewall\bdfndisf6.sys [78144 2013-02-22] (BitDefender LLC) R1 bdfwfpf; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [90704 2011-11-14] (BitDefender LLC) S3 bdfwfpf_pc; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf_pc.sys [108008 2013-07-02] (Bitdefender SRL) S3 BDSandBox; C:\Windows\system32\drivers\bdsandbox.sys [66832 2013-11-04] (BitDefender SRL) R1 bdselfpr; C:\Program Files\Bitdefender\Bitdefender\bdselfpr.sys [135600 2013-07-26] (BitDefender LLC) R1 BDVEDISK; C:\Windows\System32\DRIVERS\bdvedisk.sys [72704 2012-04-17] (BitDefender) R3 fwlanusbn; C:\Windows\System32\DRIVERS\fwlanusbn.sys [440832 2009-05-07] (AVM GmbH) R0 gzflt; C:\Windows\System32\DRIVERS\gzflt.sys [165744 2013-08-23] (BitDefender LLC) R0 iusb3hcs; C:\Windows\System32\DRIVERS\iusb3hcs.sys [16880 2013-07-17] (Intel Corporation) S3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [107736 2014-05-16] (Malwarebytes Corporation) S3 PSI; C:\Windows\System32\DRIVERS\psi_mf_x86.sys [16024 2013-12-06] (Secunia) R0 trufos; C:\Windows\System32\DRIVERS\trufos.sys [360376 2013-08-07] (BitDefender S.R.L.) S3 RTL8192cu; system32\DRIVERS\rtwlanu.sys [X] S3 RtlWlanu; system32\DRIVERS\rtwlanu.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-05-16 11:51 - 2014-05-16 11:51 - 01056768 _____ (Farbar) C:\Users\eigen\Downloads\FRST.exe 2014-05-16 11:23 - 2014-05-16 11:23 - 00000000 ____D () C:\Users\eigen\Downloads\FRST-OlderVersion 2014-05-16 11:01 - 2014-05-16 11:01 - 00000625 _____ () C:\Users\eigen\Desktop\JRT.txt 2014-05-16 10:49 - 2014-05-16 10:49 - 01016261 _____ (Thisisu) C:\Users\eigen\Downloads\JRT.exe 2014-05-16 10:49 - 2014-05-16 10:49 - 00000000 ____D () C:\Windows\ERUNT 2014-05-16 10:47 - 2014-05-16 10:47 - 00001453 _____ () C:\Users\eigen\Downloads\AdwCleaner[S0].txt 2014-05-16 10:38 - 2014-05-16 10:44 - 00000000 ____D () C:\AdwCleaner 2014-05-16 10:38 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\system32\sqlite3.dll 2014-05-16 10:35 - 2014-05-16 10:35 - 01325827 _____ () C:\Users\eigen\Downloads\adwcleaner_3.208.exe 2014-05-16 10:34 - 2014-05-16 10:34 - 00001148 _____ () C:\12.txt 2014-05-16 10:19 - 2014-05-16 10:19 - 00001064 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-16 10:19 - 2014-05-16 10:19 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 2014-05-16 10:19 - 2014-04-03 09:51 - 00073432 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-05-16 10:19 - 2014-04-03 09:51 - 00051416 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-05-16 10:19 - 2014-04-03 09:50 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-05-16 10:18 - 2014-05-16 10:18 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\eigen\Downloads\mbam-setup-2.0.1.1004(1).exe 2014-05-16 09:57 - 2014-05-16 09:57 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\eigen\Downloads\revosetup95(1).exe 2014-05-15 15:12 - 2014-05-16 11:37 - 00030790 _____ () C:\Windows\PFRO.log 2014-05-15 14:42 - 2014-05-15 14:42 - 00001076 _____ () C:\Users\eigen\Desktop\EVEREST Home Edition.lnk 2014-05-15 14:42 - 2014-05-15 14:42 - 00000000 ____D () C:\Program Files\Lavalys 2014-05-15 14:41 - 2014-05-15 14:41 - 04179293 _____ (Lavalys, Inc. ) C:\Users\eigen\Downloads\everesthome220.exe 2014-05-15 14:30 - 2014-05-15 14:31 - 00018292 _____ () C:\Users\eigen\Downloads\Addition.txt 2014-05-15 14:29 - 2014-05-16 11:52 - 00010566 _____ () C:\Users\eigen\Downloads\FRST.txt 2014-05-15 14:29 - 2014-05-16 11:52 - 00000000 ____D () C:\FRST 2014-05-14 15:24 - 2014-05-06 05:25 - 17382912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-14 15:24 - 2014-05-06 05:07 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-14 15:24 - 2014-05-06 04:10 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-05-14 14:44 - 2014-05-16 11:38 - 00000616 _____ () C:\Windows\setupact.log 2014-05-14 14:44 - 2014-05-14 14:44 - 00000000 _____ () C:\Windows\setuperr.log 2014-05-14 14:43 - 2014-05-14 14:44 - 00295816 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-05-14 14:26 - 2014-05-14 14:27 - 15904896 _____ (simplitec GmbH ) C:\Users\eigen\Downloads\1_4_7_5_setup_simplitec_simplifast_Chip_2014.exe 2014-05-14 14:19 - 2014-05-16 11:38 - 00000378 _____ () C:\Windows\Tasks\simplitec Service Provider.job 2014-05-14 14:19 - 2014-05-14 14:37 - 00000348 _____ () C:\Windows\Tasks\simplitec Power Suite.job 2014-05-14 14:14 - 2014-05-14 14:14 - 00064024 _____ () C:\Users\eigen\AppData\Local\GDIPFONTCACHEV1.DAT 2014-05-14 13:28 - 2014-05-14 13:28 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\TuneUp Software 2014-05-14 13:28 - 2014-05-14 13:28 - 00000000 ____D () C:\Users\eigen\AppData\Local\TuneUp Software 2014-05-14 13:26 - 2014-05-15 08:06 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} 2014-05-14 13:26 - 2014-05-14 13:33 - 00000000 ____D () C:\ProgramData\TuneUp Software 2014-05-14 13:25 - 2014-05-15 08:06 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake 2014-05-14 13:25 - 2014-05-15 08:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake 2014-05-14 13:25 - 2014-05-14 13:25 - 00001210 _____ () C:\Users\Public\Desktop\Freemake Music Box.lnk 2014-05-14 13:24 - 2014-05-15 08:06 - 00000000 ____D () C:\Program Files\Freemake 2014-05-14 13:24 - 2014-05-14 13:25 - 00000000 ____D () C:\ProgramData\Freemake 2014-05-14 13:18 - 2014-05-14 13:18 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\MAGIX 2014-05-14 13:18 - 2014-05-14 13:18 - 00000000 ____D () C:\ProgramData\MAGIX 2014-05-14 13:17 - 2013-08-23 12:19 - 00120200 _____ () C:\Windows\system32\DLLDEV32i.dll 2014-05-14 13:11 - 2014-05-16 11:38 - 00000266 _____ () C:\Windows\Tasks\AbelssoftPreloader.job 2014-05-14 13:11 - 2014-05-15 08:06 - 00000000 ____D () C:\Users\eigen\AppData\Local\Abelssoft 2014-05-14 13:11 - 2014-05-14 13:11 - 00000000 ____D () C:\Users\eigen\Documents\Abelssoft 2014-05-14 13:11 - 2014-05-14 13:11 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Abelssoft 2014-05-14 13:10 - 2014-05-15 08:06 - 00000000 ____D () C:\Program Files\WashAndGo 2014-05-14 13:10 - 2014-05-14 13:10 - 00000981 _____ () C:\Users\Public\Desktop\WashAndGo.lnk 2014-05-14 13:02 - 2014-05-09 09:06 - 00369664 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-05-14 13:02 - 2014-05-09 09:04 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-05-14 13:02 - 2014-04-12 04:15 - 00136640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2014-05-14 13:02 - 2014-04-12 04:15 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2014-05-14 13:02 - 2014-04-12 04:12 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2014-05-14 13:02 - 2014-04-12 04:12 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2014-05-14 13:02 - 2014-04-12 04:12 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2014-05-14 13:02 - 2014-04-12 04:11 - 01059840 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-05-14 13:02 - 2014-04-12 04:11 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2014-05-14 13:02 - 2014-03-25 04:09 - 12874240 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-05-14 13:02 - 2014-03-04 11:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe 2014-05-14 13:02 - 2014-03-04 11:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2014-05-14 13:02 - 2014-03-04 11:17 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00304128 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2014-05-14 13:02 - 2014-03-04 11:17 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2014-05-14 12:59 - 2014-05-14 14:38 - 00000000 ____D () C:\Users\eigen\AppData\Local\WEKA DVD Interface 2014-05-13 11:54 - 2014-05-13 11:54 - 00000437 _____ () C:\Windows\system32\Drivers\etc\hosts.ics 2014-05-12 12:05 - 2012-06-18 18:21 - 00451072 _____ () C:\Windows\system32\ISSRemoveSP.exe 2014-05-12 12:05 - 2007-04-26 14:05 - 00100000 _____ () C:\Windows\system32\EAPPkt9x.VXD 2014-05-12 12:05 - 2001-09-26 11:03 - 00012981 _____ () C:\Windows\system32\REALPKT.VXD 2014-05-12 11:57 - 2014-05-12 11:58 - 13709432 _____ () C:\Users\eigen\Downloads\200mwatt.zip 2014-05-12 11:57 - 2014-05-12 11:57 - 04712927 _____ () C:\Users\eigen\Downloads\MWGUH_Vista.rar 2014-05-11 14:24 - 2014-05-11 14:24 - 00000000 ____D () C:\ProgramData\SeriousBit 2014-05-11 14:23 - 2013-11-25 09:28 - 00035712 _____ (SeriousBit) C:\Windows\system32\Drivers\nbdrv.sys 2014-05-11 14:21 - 2014-05-11 14:21 - 03438592 _____ (Softperfect Research ) C:\Users\eigen\Downloads\networx_setup_5.3(1).exe 2014-05-11 14:21 - 2014-05-11 14:21 - 03336192 _____ () C:\Users\eigen\Downloads\netspeedmonitor_2_5_4_0_x86_setup(2).msi 2014-05-11 14:21 - 2014-05-11 14:21 - 01911400 _____ (SoftPerfect Research ) C:\Users\eigen\Downloads\wifiguard_windows_setup(1).exe 2014-05-11 14:20 - 2014-05-11 14:20 - 04292736 _____ (SeriousBit ) C:\Users\eigen\Downloads\NetBalancerSetup-8.0.0(1).exe 2014-05-11 14:20 - 2014-05-11 14:20 - 03805800 _____ (Ilja Herlein ) C:\Users\eigen\Downloads\netsetman_setup_371.exe 2014-05-11 14:18 - 2014-05-11 14:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ekahau 2014-05-11 14:18 - 2014-05-11 14:26 - 00000000 ____D () C:\Program Files\Ekahau 2014-05-11 14:18 - 2014-05-11 14:19 - 00000000 ____D () C:\Users\eigen\Ekahau Site Survey 2014-05-11 14:17 - 2014-05-11 14:17 - 100885752 _____ (Ekahau) C:\Users\eigen\Downloads\EkahauHeatmapper-Setup.exe 2014-05-10 15:53 - 2014-05-10 15:53 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-05-09 16:48 - 2014-05-09 16:48 - 00001224 _____ () C:\Users\Public\Desktop\Xirrus Wi-Fi Inspector.lnk 2014-05-09 16:48 - 2014-05-09 16:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xirrus 2014-05-09 16:48 - 2014-05-09 16:48 - 00000000 ____D () C:\Program Files\Xirrus 2014-05-09 16:47 - 2014-05-09 16:47 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Xirrus 2014-05-09 16:32 - 2014-05-09 16:32 - 00002477 _____ () C:\Users\Public\Desktop\inSSIDer Home.lnk 2014-05-09 16:32 - 2014-05-09 16:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MetaGeek 2014-05-09 16:31 - 2014-05-09 16:31 - 04767744 _____ () C:\Users\eigen\Downloads\inSSIDer31-installer.msi 2014-05-09 16:12 - 2014-05-11 13:52 - 00000000 ____D () C:\Users\eigen\AppData\Local\MetaGeek,_LLC 2014-05-09 16:12 - 2014-05-09 16:12 - 00000037 ___SH () C:\Users\eigen\AppData\Local\70149b02515b3bb20dd492.47983420 2014-05-09 16:12 - 2014-05-09 16:12 - 00000000 ____D () C:\Users\eigen\AppData\Local\IsolatedStorage 2014-05-09 16:11 - 2014-05-09 16:32 - 00000000 ____D () C:\Program Files\MetaGeek 2014-05-09 16:11 - 2014-05-09 16:11 - 00002927 _____ () C:\Users\eigen\Desktop\inSSIDer Office.lnk 2014-05-09 16:11 - 2014-05-09 16:11 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MetaGeek 2014-05-09 16:04 - 2014-05-09 16:05 - 04292736 _____ (SeriousBit ) C:\Users\eigen\Downloads\NetBalancerSetup-8.0.0.exe 2014-05-09 16:03 - 2014-05-09 16:03 - 03438592 _____ (Softperfect Research ) C:\Users\eigen\Downloads\networx_setup_5.3.exe 2014-05-09 16:03 - 2014-05-09 16:03 - 03336192 _____ () C:\Users\eigen\Downloads\netspeedmonitor_2_5_4_0_x86_setup(1).msi 2014-05-09 15:58 - 2014-05-09 15:58 - 01911400 _____ (SoftPerfect Research ) C:\Users\eigen\Downloads\wifiguard_windows_setup.exe 2014-05-09 15:56 - 2014-05-09 15:56 - 22224144 _____ (Xirrus) C:\Users\eigen\Downloads\WiFiInspector-Setup-1.2.1.4.exe 2014-05-09 15:55 - 2014-05-09 15:55 - 06082560 _____ () C:\Users\eigen\Downloads\inSSIDerOffice(1).msi 2014-05-09 15:54 - 2014-05-09 15:54 - 06082560 _____ () C:\Users\eigen\Downloads\inSSIDerOffice.msi 2014-05-08 18:47 - 2009-05-07 02:01 - 00004352 ____R (AVM Berlin) C:\Windows\system32\Drivers\avmeject.sys 2014-05-08 18:41 - 2014-05-08 18:41 - 00000000 ____D () C:\Windows\AVM_Driver 2014-05-08 18:40 - 2014-05-08 18:40 - 00000000 ____D () C:\Users\eigen\AVM_Driver 2014-05-06 14:46 - 2014-05-15 08:06 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-05-05 16:58 - 2014-05-05 16:58 - 00000000 __SHD () C:\ProgramData\{32364CEA-7855-4A3C-B674-53D8E9B97936} 2014-04-29 12:02 - 2014-05-14 14:06 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NirSoft ProduKey 2014-04-29 12:02 - 2014-04-29 12:02 - 00000000 ____D () C:\Program Files\NirSoft 2014-04-27 14:11 - 2014-04-27 14:12 - 00000000 ___SD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.0.1 2014-04-27 14:11 - 2014-04-27 14:11 - 00001074 _____ () C:\Users\Public\Desktop\OpenOffice 4.0.1.lnk 2014-04-27 14:10 - 2014-04-27 14:10 - 00000000 ____D () C:\Program Files\OpenOffice 4 2014-04-27 14:07 - 2014-04-27 14:07 - 00000000 ____D () C:\Users\eigen\Desktop\OpenOffice 4.0.1 (de) Installation Files 2014-04-24 16:43 - 2014-04-24 16:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2014-04-24 16:43 - 2014-04-24 16:43 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-04-18 13:23 - 2014-04-18 14:00 - 1010827264 _____ () C:\Users\eigen\Downloads\ubuntu-14.04-desktop-amd64.iso 2014-04-18 12:44 - 2014-04-18 13:21 - 1017118720 _____ () C:\Users\eigen\Downloads\ubuntu-14.04-desktop-i386.iso 2014-04-18 11:52 - 2014-04-18 11:53 - 23181137 _____ () C:\Users\eigen\Downloads\torbrowser-install-3.5.4_de.exe 2014-04-17 11:21 - 2014-04-17 11:21 - 00264616 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-04-17 11:21 - 2014-04-17 11:21 - 00176040 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-04-17 11:21 - 2014-04-17 11:21 - 00176040 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-04-17 11:21 - 2014-04-17 11:21 - 00096680 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll 2014-04-17 11:21 - 2014-04-17 11:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-04-17 11:21 - 2014-04-17 11:21 - 00000000 ____D () C:\Program Files\Java 2014-04-17 11:17 - 2014-05-16 11:18 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-04-17 11:14 - 2014-04-17 11:14 - 00000000 __SHD () C:\Users\eigen\AppData\Local\EmieUserList 2014-04-17 11:14 - 2014-04-17 11:14 - 00000000 __SHD () C:\Users\eigen\AppData\Local\EmieSiteList 2014-04-17 11:11 - 2014-04-17 11:11 - 00001031 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Secunia PSI.lnk 2014-04-17 11:11 - 2014-04-17 11:11 - 00000000 ____D () C:\Users\eigen\AppData\Local\Secunia PSI 2014-04-17 11:11 - 2014-04-17 11:11 - 00000000 ____D () C:\Program Files\Secunia 2014-04-17 10:54 - 2014-04-17 10:55 - 05329480 _____ (Secunia) C:\Users\eigen\Downloads\PSISetup_3.0.0.9016.exe ==================== One Month Modified Files and Folders ======= 2014-05-16 11:52 - 2014-05-15 14:29 - 00010566 _____ () C:\Users\eigen\Downloads\FRST.txt 2014-05-16 11:52 - 2014-05-15 14:29 - 00000000 ____D () C:\FRST 2014-05-16 11:51 - 2014-05-16 11:51 - 01056768 _____ (Farbar) C:\Users\eigen\Downloads\FRST.exe 2014-05-16 11:45 - 2014-04-10 16:37 - 01190488 _____ () C:\Windows\WindowsUpdate.log 2014-05-16 11:45 - 2009-07-14 06:34 - 00026512 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-05-16 11:45 - 2009-07-14 06:34 - 00026512 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-05-16 11:38 - 2014-05-14 14:44 - 00000616 _____ () C:\Windows\setupact.log 2014-05-16 11:38 - 2014-05-14 14:19 - 00000378 _____ () C:\Windows\Tasks\simplitec Service Provider.job 2014-05-16 11:38 - 2014-05-14 13:11 - 00000266 _____ () C:\Windows\Tasks\AbelssoftPreloader.job 2014-05-16 11:38 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-05-16 11:37 - 2014-05-15 15:12 - 00030790 _____ () C:\Windows\PFRO.log 2014-05-16 11:23 - 2014-05-16 11:23 - 00000000 ____D () C:\Users\eigen\Downloads\FRST-OlderVersion 2014-05-16 11:18 - 2014-04-17 11:17 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-05-16 11:10 - 2014-04-10 18:55 - 00001096 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-05-16 11:01 - 2014-05-16 11:01 - 00000625 _____ () C:\Users\eigen\Desktop\JRT.txt 2014-05-16 10:49 - 2014-05-16 10:49 - 01016261 _____ (Thisisu) C:\Users\eigen\Downloads\JRT.exe 2014-05-16 10:49 - 2014-05-16 10:49 - 00000000 ____D () C:\Windows\ERUNT 2014-05-16 10:47 - 2014-05-16 10:47 - 00001453 _____ () C:\Users\eigen\Downloads\AdwCleaner[S0].txt 2014-05-16 10:44 - 2014-05-16 10:38 - 00000000 ____D () C:\AdwCleaner 2014-05-16 10:35 - 2014-05-16 10:35 - 01325827 _____ () C:\Users\eigen\Downloads\adwcleaner_3.208.exe 2014-05-16 10:34 - 2014-05-16 10:34 - 00001148 _____ () C:\12.txt 2014-05-16 10:32 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET 2014-05-16 10:20 - 2014-04-15 13:04 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-05-16 10:19 - 2014-05-16 10:19 - 00001064 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-16 10:19 - 2014-05-16 10:19 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 2014-05-16 10:18 - 2014-05-16 10:18 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\eigen\Downloads\mbam-setup-2.0.1.1004(1).exe 2014-05-16 10:16 - 2014-04-10 18:55 - 00002121 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-05-16 09:57 - 2014-05-16 09:57 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\eigen\Downloads\revosetup95(1).exe 2014-05-16 09:57 - 2014-04-10 17:53 - 00001226 _____ () C:\Users\eigen\Desktop\Revo Uninstaller.lnk 2014-05-16 09:57 - 2014-04-10 17:53 - 00000000 ____D () C:\Program Files\VS Revo Group 2014-05-15 15:16 - 2014-04-10 17:07 - 00000309 ____H () C:\bdr-cf01 2014-05-15 14:42 - 2014-05-15 14:42 - 00001076 _____ () C:\Users\eigen\Desktop\EVEREST Home Edition.lnk 2014-05-15 14:42 - 2014-05-15 14:42 - 00000000 ____D () C:\Program Files\Lavalys 2014-05-15 14:41 - 2014-05-15 14:41 - 04179293 _____ (Lavalys, Inc. ) C:\Users\eigen\Downloads\everesthome220.exe 2014-05-15 14:31 - 2014-05-15 14:30 - 00018292 _____ () C:\Users\eigen\Downloads\Addition.txt 2014-05-15 08:06 - 2014-05-14 13:26 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} 2014-05-15 08:06 - 2014-05-14 13:25 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake 2014-05-15 08:06 - 2014-05-14 13:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake 2014-05-15 08:06 - 2014-05-14 13:24 - 00000000 ____D () C:\Program Files\Freemake 2014-05-15 08:06 - 2014-05-14 13:11 - 00000000 ____D () C:\Users\eigen\AppData\Local\Abelssoft 2014-05-15 08:06 - 2014-05-14 13:10 - 00000000 ____D () C:\Program Files\WashAndGo 2014-05-15 08:06 - 2014-05-06 14:46 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-05-15 08:06 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\wfp 2014-05-15 08:06 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\de-DE 2014-05-15 08:06 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\registration 2014-05-15 08:03 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\LogFiles 2014-05-14 15:29 - 2014-04-12 12:15 - 00000000 ____D () C:\Windows\system32\MRT 2014-05-14 15:26 - 2014-04-12 12:15 - 90547776 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-05-14 14:44 - 2014-05-14 14:44 - 00000000 _____ () C:\Windows\setuperr.log 2014-05-14 14:44 - 2014-05-14 14:43 - 00295816 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-05-14 14:38 - 2014-05-14 12:59 - 00000000 ____D () C:\Users\eigen\AppData\Local\WEKA DVD Interface 2014-05-14 14:37 - 2014-05-14 14:19 - 00000348 _____ () C:\Windows\Tasks\simplitec Power Suite.job 2014-05-14 14:27 - 2014-05-14 14:26 - 15904896 _____ (simplitec GmbH ) C:\Users\eigen\Downloads\1_4_7_5_setup_simplitec_simplifast_Chip_2014.exe 2014-05-14 14:14 - 2014-05-14 14:14 - 00064024 _____ () C:\Users\eigen\AppData\Local\GDIPFONTCACHEV1.DAT 2014-05-14 14:14 - 2014-04-10 17:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo 2014-05-14 14:14 - 2014-04-10 17:47 - 00000000 ____D () C:\Program Files\Ashampoo 2014-05-14 14:06 - 2014-04-29 12:02 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NirSoft ProduKey 2014-05-14 13:59 - 2014-04-10 18:55 - 00001044 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-05-14 13:33 - 2014-05-14 13:26 - 00000000 ____D () C:\ProgramData\TuneUp Software 2014-05-14 13:28 - 2014-05-14 13:28 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\TuneUp Software 2014-05-14 13:28 - 2014-05-14 13:28 - 00000000 ____D () C:\Users\eigen\AppData\Local\TuneUp Software 2014-05-14 13:25 - 2014-05-14 13:25 - 00001210 _____ () C:\Users\Public\Desktop\Freemake Music Box.lnk 2014-05-14 13:25 - 2014-05-14 13:24 - 00000000 ____D () C:\ProgramData\Freemake 2014-05-14 13:18 - 2014-05-14 13:18 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\MAGIX 2014-05-14 13:18 - 2014-05-14 13:18 - 00000000 ____D () C:\ProgramData\MAGIX 2014-05-14 13:11 - 2014-05-14 13:11 - 00000000 ____D () C:\Users\eigen\Documents\Abelssoft 2014-05-14 13:11 - 2014-05-14 13:11 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Abelssoft 2014-05-14 13:10 - 2014-05-14 13:10 - 00000981 _____ () C:\Users\Public\Desktop\WashAndGo.lnk 2014-05-13 12:11 - 2009-07-14 04:04 - 00000411 _____ () C:\Windows\win.ini 2014-05-13 11:56 - 2010-11-20 23:01 - 01618320 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-05-13 11:54 - 2014-05-13 11:54 - 00000437 _____ () C:\Windows\system32\Drivers\etc\hosts.ics 2014-05-12 11:58 - 2014-05-12 11:57 - 13709432 _____ () C:\Users\eigen\Downloads\200mwatt.zip 2014-05-12 11:57 - 2014-05-12 11:57 - 04712927 _____ () C:\Users\eigen\Downloads\MWGUH_Vista.rar 2014-05-11 14:40 - 2014-04-10 17:15 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service 2014-05-11 14:26 - 2014-05-11 14:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ekahau 2014-05-11 14:26 - 2014-05-11 14:18 - 00000000 ____D () C:\Program Files\Ekahau 2014-05-11 14:24 - 2014-05-11 14:24 - 00000000 ____D () C:\ProgramData\SeriousBit 2014-05-11 14:21 - 2014-05-11 14:21 - 03438592 _____ (Softperfect Research ) C:\Users\eigen\Downloads\networx_setup_5.3(1).exe 2014-05-11 14:21 - 2014-05-11 14:21 - 03336192 _____ () C:\Users\eigen\Downloads\netspeedmonitor_2_5_4_0_x86_setup(2).msi 2014-05-11 14:21 - 2014-05-11 14:21 - 01911400 _____ (SoftPerfect Research ) C:\Users\eigen\Downloads\wifiguard_windows_setup(1).exe 2014-05-11 14:20 - 2014-05-11 14:20 - 04292736 _____ (SeriousBit ) C:\Users\eigen\Downloads\NetBalancerSetup-8.0.0(1).exe 2014-05-11 14:20 - 2014-05-11 14:20 - 03805800 _____ (Ilja Herlein ) C:\Users\eigen\Downloads\netsetman_setup_371.exe 2014-05-11 14:19 - 2014-05-11 14:18 - 00000000 ____D () C:\Users\eigen\Ekahau Site Survey 2014-05-11 14:17 - 2014-05-11 14:17 - 100885752 _____ (Ekahau) C:\Users\eigen\Downloads\EkahauHeatmapper-Setup.exe 2014-05-11 13:52 - 2014-05-09 16:12 - 00000000 ____D () C:\Users\eigen\AppData\Local\MetaGeek,_LLC 2014-05-10 15:53 - 2014-05-10 15:53 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-05-09 16:52 - 2014-04-10 16:43 - 00000000 ____D () C:\Users\eigen\AppData\Local\VirtualStore 2014-05-09 16:48 - 2014-05-09 16:48 - 00001224 _____ () C:\Users\Public\Desktop\Xirrus Wi-Fi Inspector.lnk 2014-05-09 16:48 - 2014-05-09 16:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xirrus 2014-05-09 16:48 - 2014-05-09 16:48 - 00000000 ____D () C:\Program Files\Xirrus 2014-05-09 16:47 - 2014-05-09 16:47 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Xirrus 2014-05-09 16:32 - 2014-05-09 16:32 - 00002477 _____ () C:\Users\Public\Desktop\inSSIDer Home.lnk 2014-05-09 16:32 - 2014-05-09 16:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MetaGeek 2014-05-09 16:32 - 2014-05-09 16:11 - 00000000 ____D () C:\Program Files\MetaGeek 2014-05-09 16:31 - 2014-05-09 16:31 - 04767744 _____ () C:\Users\eigen\Downloads\inSSIDer31-installer.msi 2014-05-09 16:12 - 2014-05-09 16:12 - 00000037 ___SH () C:\Users\eigen\AppData\Local\70149b02515b3bb20dd492.47983420 2014-05-09 16:12 - 2014-05-09 16:12 - 00000000 ____D () C:\Users\eigen\AppData\Local\IsolatedStorage 2014-05-09 16:11 - 2014-05-09 16:11 - 00002927 _____ () C:\Users\eigen\Desktop\inSSIDer Office.lnk 2014-05-09 16:11 - 2014-05-09 16:11 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MetaGeek 2014-05-09 16:05 - 2014-05-09 16:04 - 04292736 _____ (SeriousBit ) C:\Users\eigen\Downloads\NetBalancerSetup-8.0.0.exe 2014-05-09 16:03 - 2014-05-09 16:03 - 03438592 _____ (Softperfect Research ) C:\Users\eigen\Downloads\networx_setup_5.3.exe 2014-05-09 16:03 - 2014-05-09 16:03 - 03336192 _____ () C:\Users\eigen\Downloads\netspeedmonitor_2_5_4_0_x86_setup(1).msi 2014-05-09 15:58 - 2014-05-09 15:58 - 01911400 _____ (SoftPerfect Research ) C:\Users\eigen\Downloads\wifiguard_windows_setup.exe 2014-05-09 15:56 - 2014-05-09 15:56 - 22224144 _____ (Xirrus) C:\Users\eigen\Downloads\WiFiInspector-Setup-1.2.1.4.exe 2014-05-09 15:55 - 2014-05-09 15:55 - 06082560 _____ () C:\Users\eigen\Downloads\inSSIDerOffice(1).msi 2014-05-09 15:54 - 2014-05-09 15:54 - 06082560 _____ () C:\Users\eigen\Downloads\inSSIDerOffice.msi 2014-05-09 11:10 - 2014-04-10 19:04 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\IDM 2014-05-09 11:10 - 2014-04-10 19:04 - 00000000 ____D () C:\Program Files\Internet Download Manager 2014-05-09 11:09 - 2014-04-10 19:04 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\DMCache 2014-05-09 09:06 - 2014-05-14 13:02 - 00369664 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-05-09 09:04 - 2014-05-14 13:02 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-05-08 18:48 - 2014-04-10 16:45 - 00000000 ____D () C:\Program Files\avmwlanstick 2014-05-08 18:41 - 2014-05-08 18:41 - 00000000 ____D () C:\Windows\AVM_Driver 2014-05-08 18:40 - 2014-05-08 18:40 - 00000000 ____D () C:\Users\eigen\AVM_Driver 2014-05-06 05:25 - 2014-05-14 15:24 - 17382912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-06 05:07 - 2014-05-14 15:24 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-06 04:10 - 2014-05-14 15:24 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-05-05 16:58 - 2014-05-05 16:58 - 00000000 __SHD () C:\ProgramData\{32364CEA-7855-4A3C-B674-53D8E9B97936} 2014-05-02 15:58 - 2014-04-10 17:15 - 00001121 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2014-05-02 15:58 - 2014-04-10 17:15 - 00001109 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-04-29 12:46 - 2014-04-10 17:47 - 00000000 ____D () C:\ProgramData\Ashampoo 2014-04-29 12:02 - 2014-04-29 12:02 - 00000000 ____D () C:\Program Files\NirSoft 2014-04-29 12:00 - 2014-04-10 19:04 - 00000000 ____D () C:\Users\eigen\Downloads\Compressed 2014-04-27 14:12 - 2014-04-27 14:11 - 00000000 ___SD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.0.1 2014-04-27 14:11 - 2014-04-27 14:11 - 00001074 _____ () C:\Users\Public\Desktop\OpenOffice 4.0.1.lnk 2014-04-27 14:10 - 2014-04-27 14:10 - 00000000 ____D () C:\Program Files\OpenOffice 4 2014-04-27 14:07 - 2014-04-27 14:07 - 00000000 ____D () C:\Users\eigen\Desktop\OpenOffice 4.0.1 (de) Installation Files 2014-04-24 16:45 - 2014-04-10 19:17 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Winamp 2014-04-24 16:43 - 2014-04-24 16:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2014-04-24 16:43 - 2014-04-24 16:43 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-04-24 16:12 - 2014-04-11 02:34 - 00000000 ____D () C:\Windows\Panther 2014-04-21 10:14 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache 2014-04-18 15:12 - 2010-11-21 02:47 - 00000000 ____D () C:\Program Files\Windows Journal 2014-04-18 15:12 - 2010-11-21 02:38 - 00000000 ____D () C:\Windows\system32\winrm 2014-04-18 15:12 - 2010-11-21 02:38 - 00000000 ____D () C:\Windows\system32\slmgr 2014-04-18 15:12 - 2010-11-21 02:38 - 00000000 ____D () C:\Windows\DigitalLocker 2014-04-18 15:12 - 2009-07-14 06:52 - 00000000 ____D () C:\Program Files\Windows Sidebar 2014-04-18 15:12 - 2009-07-14 06:52 - 00000000 ____D () C:\Program Files\Windows Photo Viewer 2014-04-18 15:12 - 2009-07-14 06:52 - 00000000 ____D () C:\Program Files\Windows Defender 2014-04-18 15:12 - 2009-07-14 06:52 - 00000000 ____D () C:\Program Files\DVD Maker 2014-04-18 15:12 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\IME 2014-04-18 15:12 - 2009-07-14 04:37 - 00000000 ____D () C:\Program Files\Common Files\System 2014-04-18 15:11 - 2010-11-21 02:38 - 00000000 ____D () C:\Windows\system32\WCN 2014-04-18 15:11 - 2010-11-21 02:38 - 00000000 ____D () C:\Windows\system32\Printing_Admin_Scripts 2014-04-18 15:11 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\MUI 2014-04-18 15:11 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\com 2014-04-18 14:00 - 2014-04-18 13:23 - 1010827264 _____ () C:\Users\eigen\Downloads\ubuntu-14.04-desktop-amd64.iso 2014-04-18 13:21 - 2014-04-18 12:44 - 1017118720 _____ () C:\Users\eigen\Downloads\ubuntu-14.04-desktop-i386.iso 2014-04-18 11:53 - 2014-04-18 11:52 - 23181137 _____ () C:\Users\eigen\Downloads\torbrowser-install-3.5.4_de.exe 2014-04-17 11:22 - 2014-04-10 18:09 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe 2014-04-17 11:22 - 2014-04-10 18:09 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl 2014-04-17 11:21 - 2014-04-17 11:21 - 00264616 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-04-17 11:21 - 2014-04-17 11:21 - 00176040 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-04-17 11:21 - 2014-04-17 11:21 - 00176040 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-04-17 11:21 - 2014-04-17 11:21 - 00096680 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll 2014-04-17 11:21 - 2014-04-17 11:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-04-17 11:21 - 2014-04-17 11:21 - 00000000 ____D () C:\Program Files\Java 2014-04-17 11:14 - 2014-04-17 11:14 - 00000000 __SHD () C:\Users\eigen\AppData\Local\EmieUserList 2014-04-17 11:14 - 2014-04-17 11:14 - 00000000 __SHD () C:\Users\eigen\AppData\Local\EmieSiteList 2014-04-17 11:11 - 2014-04-17 11:11 - 00001031 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Secunia PSI.lnk 2014-04-17 11:11 - 2014-04-17 11:11 - 00000000 ____D () C:\Users\eigen\AppData\Local\Secunia PSI 2014-04-17 11:11 - 2014-04-17 11:11 - 00000000 ____D () C:\Program Files\Secunia 2014-04-17 10:55 - 2014-04-17 10:54 - 05329480 _____ (Secunia) C:\Users\eigen\Downloads\PSISetup_3.0.0.9016.exe Some content of TEMP: ==================== C:\Users\eigen\AppData\Local\Temp\DseShExt-x86.dll C:\Users\eigen\AppData\Local\Temp\FreemakeMusicBox_1.0.1.3.exe C:\Users\eigen\AppData\Local\Temp\nsbB292.exe C:\Users\eigen\AppData\Local\Temp\nsbD17.exe C:\Users\eigen\AppData\Local\Temp\nsgAF08.exe C:\Users\eigen\AppData\Local\Temp\nsl651.exe C:\Users\eigen\AppData\Local\Temp\nslB62B.exe C:\Users\eigen\AppData\Local\Temp\nsq97D.exe C:\Users\eigen\AppData\Local\Temp\Quarantine.exe C:\Users\eigen\AppData\Local\Temp\SDShelEx-win32.dll C:\Users\eigen\AppData\Local\Temp\TUUUninstallHelper.exe C:\Users\eigen\AppData\Local\Temp\Update_Simplitec_PowerSuite_1.4.7.5de_DE.exe ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe => MD5 is legit C:\Windows\system32\winlogon.exe [2014-05-14 13:02] - [2014-03-04 11:17] - 0304128 ____A (Microsoft Corporation) 998507B046BA314CE8245364C686FA67 C:\Windows\system32\wininit.exe => MD5 is legit C:\Windows\system32\svchost.exe => MD5 is legit C:\Windows\system32\services.exe => MD5 is legit C:\Windows\system32\User32.dll => MD5 is legit C:\Windows\system32\userinit.exe => MD5 is legit C:\Windows\system32\rpcss.dll => MD5 is legit C:\Windows\system32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-05-12 20:20 ==================== End Of Log ============================ --- --- --- --- --- --- --- --- --- --- --- --- --- --- --- Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x86) Version:15-05-2014 Ran by eigen at 2014-05-16 11:52:50 Running from C:\Users\eigen\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Bitdefender Antivirus (Enabled - Up to date) {9A0813D8-CED6-F86B-072E-28D2AF25A83D} AS: Bitdefender Spyware-Schutz (Enabled - Up to date) {2169F23C-E8EC-F7E5-3D9E-13A0D4A2E280} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Bitdefender Firewall (Enabled) {A23392FD-84B9-F933-2C71-81E751F6EF46} ==================== Installed Programs ====================== 7-Zip 9.30 (HKLM\...\{23170F69-40C1-2701-0930-000001000000}) (Version: 9.30.00.0 - Igor Pavlov) Adobe Flash Player 13 ActiveX (HKLM\...\{8F9B1C8E-F50E-4139-8701-45016021E102}) (Version: 13.0.0.182 - Adobe Systems Incorporated) Adobe Flash Player 13 Plugin (HKLM\...\{28ADCCAD-3C23-44A1-A93F-47AA176F7AD7}) (Version: 13.0.0.182 - Adobe Systems Incorporated) Adobe Reader XI (11.0.06) - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.06 - Adobe Systems Incorporated) Adobe Shockwave Player + Authorware Web Player (HKLM\...\Adobe Shockwave Player + Authorware Web Player) (Version: v12.0.6.147 - Adobe Systems, Inc.) Adobe Shockwave Player 12.1 (HKLM\...\Adobe Shockwave Player) (Version: 12.1.0.150 - Adobe Systems, Inc.) Ashampoo HDD Control 2 v.2.1.0 (HKLM\...\{4209F371-A431-385E-2D7E-ACDA5DA3BA0B}_is1) (Version: 2.1.0 - Ashampoo GmbH & Co. KG) AVM FRITZ!WLAN (HKLM\...\AVMWLANCLI) (Version: - AVM Berlin) Bitdefender Total Security (HKLM\...\Bitdefender) (Version: 17.27.0.1146 - Bitdefender) DriverPack Solution Updater (HKCU\...\DRPSu Updater) (Version: 0.0.25 - DriverPack Solution) EVEREST Home Edition v2.20 (HKLM\...\EVEREST Home Edition_is1) (Version: 2.20 - Lavalys Inc) Freemake Music Box (HKLM\...\Freemake Music Box_is1) (Version: 1.0.1 - Ellora Assets Corporation) Google Chrome (HKLM\...\Google Chrome) (Version: 34.0.1847.137 - Google Inc.) Google Update Helper (Version: 1.3.24.7 - Google Inc.) Hidden inSSIDer Home (HKLM\...\{9E54E4AE-B67A-4925-8E92-0E1F9817FD73}) (Version: 3.1.2.1 - MetaGeek, LLC) inSSIDer Office (HKLM\...\{8C127DE3-EC36-4BA3-A6EE-6DC4A9B6C526}) (Version: 3.1.1.6 - MetaGeek, LLC) Intel(R) Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: 8.15.10.1930 - Intel Corporation) Intel(R) TV Wizard (HKLM\...\TVWiz) (Version: - Intel Corporation) ISO Workshop 4.5 (HKLM\...\ISO Workshop_is1) (Version: - Glorylogic) Java 8 Update 5 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218005FF}) (Version: 8.0.50 - Oracle Corporation) Lagarith Lossless Codec (1.3.27) (HKLM\...\{F59AC46C-10C3-4023-882C-4212A92283B3}_is1) (Version: - ) Malwarebytes Anti-Malware Version 2.0.1.1004 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.1.1004 - Malwarebytes Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM\...\{CA8A885F-E95B-3FC6-BB91-F4D9377C7686}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Mozilla Firefox 29.0.1 (x86 de) (HKLM\...\Mozilla Firefox 29.0.1 (x86 de)) (Version: 29.0.1 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 29.0 - Mozilla) NirSoft ProduKey (HKLM\...\NirSoft ProduKey) (Version: - ) OpenOffice 4.0.1 (HKLM\...\{0AEC308E-7EB3-47F7-BB59-F2C9C6166B27}) (Version: 4.01.9714 - Apache Software Foundation) Revo Uninstaller 1.95 (HKLM\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) SAM CoDeC Pack (HKLM\...\SAM CoDeC Pack) (Version: 5.30 - www.SamLab.ws) Secunia PSI (3.0.0.9016) (HKLM\...\Secunia PSI) (Version: 3.0.0.9016 - Secunia) Streamripper (Remove only) (HKLM\...\Streamripper) (Version: - ) swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Ut Video Codec Suite (HKLM\...\utvideo_is1) (Version: 13.3.0 - UMEZAWA Takeshi) WashAndGo (HKLM\...\WashAndGo_is1) (Version: 17.7 - Abelssoft) Winamp (HKLM\...\Winamp) (Version: 5.666 - Nullsoft, Inc) Winamp Erkennungs-Plug-in (HKCU\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc) x264vfw - H.264/MPEG-4 AVC codec (remove only) (HKLM\...\x264vfw) (Version: - ) Xirrus Wi-Fi Inspector (HKLM\...\{BBB21AB1-2C45-435D-A05A-B563072E7B9B}) (Version: 1.2.1.4 - Xirrus) Xvid MPEG-4 Video Codec (HKLM\...\Xvid_is1) (Version: - ) ==================== Restore Points ========================= 14-05-2014 11:34:04 Revo Uninstaller's restore point - TuneUp Utilities 2014 14-05-2014 11:36:12 Revo Uninstaller's restore point - TuneUp Utilities 2014 14-05-2014 11:36:34 TuneUp Utilities 2014 wird entfernt 14-05-2014 11:37:05 TuneUp Utilities 2014 (de-DE) wird entfernt 14-05-2014 11:41:17 simplitec Power Suite: Autostart optimieren () 14-05-2014 11:41:38 simplitec Power Suite: Windows-Dienste optimieren () 14-05-2014 11:42:12 simplitec Power Suite: Internet-Tuning (Optimieren) 14-05-2014 11:56:14 Wiederherstellungsvorgang 14-05-2014 12:01:28 Revo Uninstaller's restore point - simplitec Power Suite 14-05-2014 12:12:15 Revo Uninstaller's restore point - CCleaner 14-05-2014 12:14:13 Revo Uninstaller's restore point - Ashampoo WinOptimizer 2014 v.1.0.0 14-05-2014 12:55:14 Wiederherstellungsvorgang 14-05-2014 13:24:36 Windows Update 14-05-2014 19:26:57 Wiederherstellungsvorgang 16-05-2014 08:11:29 Revo Uninstaller's restore point - Malwarebytes Anti-Malware Version 2.0.1.1004 16-05-2014 08:15:36 Revo Uninstaller's restore point - ASUS USB-N13 Manual 16-05-2014 08:15:54 Entfernt ASUS USB-N13 Manual 16-05-2014 09:12:45 Revo Uninstaller's restore point - simplifast 16-05-2014 09:13:20 Revo Uninstaller's restore point - simplifast 16-05-2014 09:30:10 Revo Uninstaller's restore point - REALTEK Wireless LAN Driver and Utility ==================== Hosts content: ========================== 2009-07-14 04:04 - 2009-06-10 23:39 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {3B3C209D-8217-448A-BA70-737329CEF8D8} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-04-10] (Google Inc.) Task: {47569851-3577-486A-B489-C620C4EBC229} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-04-10] (Google Inc.) Task: {4B6B5AD3-6319-481A-977E-14B597B969E5} - System32\Tasks\simplitec Power Suite => C:\Program Files\simplitec\simplifast\PowerSuite.exe Task: {5DDEAB78-91C8-4D19-BEA3-E002FEDF853A} - System32\Tasks\AbelssoftPreloader => C:\Program Files\WashAndGo\AbelssoftPreloader.exe [2014-02-05] (Microsoft) Task: {6FB93CBC-B3F1-4CC5-985A-30B5768041C1} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-04-17] (Adobe Systems Incorporated) Task: {B6E96FF1-442C-47BA-A200-4D9F9CDE8323} - System32\Tasks\simplitec Service Provider => C:\Program Files\simplitec\simplifast\ServiceProvider.exe Task: C:\Windows\Tasks\AbelssoftPreloader.job => C:\Program Files\WashAndGo\AbelssoftPreloader.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\simplitec Power Suite.job => C:\Program Files\simplitec\simplifast\PowerSuite.exe Task: C:\Windows\Tasks\simplitec Service Provider.job => C:\Program Files\simplitec\simplifast\ServiceProvider.exe ==================== Loaded Modules (whitelisted) ============= 2014-04-10 17:06 - 2014-03-15 00:05 - 00204280 _____ () C:\Program Files\Bitdefender\Bitdefender\txmlutil.dll 2014-04-10 17:07 - 2014-03-27 19:17 - 00003072 _____ () C:\Program Files\Bitdefender\Bitdefender\UI\accessl.ui 2014-04-10 17:07 - 2011-11-14 19:17 - 00132176 _____ () C:\Program Files\Bitdefender\Bitdefender\bdfwcore.dll 2014-04-10 17:07 - 2014-03-27 19:17 - 00005120 _____ () C:\Program Files\Bitdefender\Bitdefender\UI\IMSecurityAL.ui 2014-04-10 17:06 - 2014-03-24 17:35 - 00668840 _____ () C:\Program Files\Bitdefender\Bitdefender\otengines_001_001\ashttpbr.mdl 2014-04-10 17:06 - 2014-03-24 17:35 - 00489120 _____ () C:\Program Files\Bitdefender\Bitdefender\otengines_001_001\ashttpdsp.mdl 2014-04-10 17:06 - 2014-03-24 17:35 - 02137584 _____ () C:\Program Files\Bitdefender\Bitdefender\otengines_001_001\ashttpph.mdl 2014-04-10 17:06 - 2014-03-24 17:35 - 01124088 _____ () C:\Program Files\Bitdefender\Bitdefender\otengines_001_001\ashttprbl.mdl 2014-04-10 17:47 - 2012-07-30 10:48 - 01518504 _____ () C:\Program Files\Ashampoo\Ashampoo HDD Control 2\AHDDC2_Service.exe 2014-04-10 17:07 - 2013-03-25 15:16 - 00919136 _____ () C:\Program Files\Bitdefender\Bitdefender SafeBox\System.Data.SQLite.dll 2014-04-10 17:06 - 2013-09-03 13:29 - 00095088 _____ () C:\Program Files\Bitdefender\Bitdefender\bdmetrics.dll 2014-05-10 15:53 - 2014-05-10 15:53 - 03839088 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\Users\eigen\Downloads\1_4_7_5_setup_simplitec_simplifast_Chip_2014.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\adwcleaner_3.208.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\ashampoo_file_wiper_1.0.0_13413.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\ccsetup412_slim.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\checkdrive2014.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\ChromeStandaloneSetup_34.0.1847.116.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\EkahauHeatmapper-Setup.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\everesthome220.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\Firefox_Setup_de28.0.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\FRST.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\hardinfo7pro_full_setup.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\idman619build2.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\jre-8-windows-i586.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\JRT.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\mbam-setup-2.0.1.1004(1).exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\mbam-setup-2.0.1.1004.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\NetBalancerSetup-8.0.0(1).exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\NetBalancerSetup-8.0.0.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\netsetman_setup_371.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\networx_setup_5.3(1).exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\networx_setup_5.3.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\PSISetup_3.0.0.9016.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\revosetup95(1).exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\revosetup95.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\startupstar_vb_de.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\streamripper-windows-installer-1.64.6.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\torbrowser-install-3.5.4_de.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\wifiguard_windows_setup(1).exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\wifiguard_windows_setup.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\WiFiInspector-Setup-1.2.1.4.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\winamp5666_full_de-de_b3516.exe:BDU ==================== Safe Mode (whitelisted) =================== ==================== EXE Association (whitelisted) ============= ==================== Disabled items from MSCONFIG ============== ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (05/16/2014 11:48:00 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm FRST.exe, Version 15.5.2014.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 80c Startzeit: 01cf70eb67b2a599 Endzeit: 13 Anwendungspfad: C:\Users\eigen\Downloads\FRST.exe Berichts-ID: 078951ca-dcdf-11e3-9115-bc054302502b Error: (05/16/2014 11:38:32 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/16/2014 11:37:01 AM) (Source: AHDDC2_Service.exe) (EventID: 0) (User: ) Description: Cannot terminate an externally created thread System errors: ============= Microsoft Office Sessions: ========================= Error: (05/16/2014 11:48:00 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: FRST.exe15.5.2014.080c01cf70eb67b2a59913C:\Users\eigen\Downloads\FRST.exe078951ca-dcdf-11e3-9115-bc054302502b Error: (05/16/2014 11:38:32 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/16/2014 11:37:01 AM) (Source: AHDDC2_Service.exe) (EventID: 0) (User: ) Description: Cannot terminate an externally created thread ==================== Memory info =========================== Percentage of memory in use: 45% Total physical RAM: 2038.24 MB Available physical RAM: 1120.65 MB Total Pagefile: 4076.48 MB Available Pagefile: 3019.64 MB Total Virtual: 2047.88 MB Available Virtual: 1913.98 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:110.94 GB) (Free:84.73 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 149 GB) (Disk ID: 1669C708) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=111 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=38 GB) - (Type=05) ==================== End Of Log ============================ Code:
ATTFilter # AdwCleaner v3.208 - Bericht erstellt am 16/05/2014 um 10:44:08 # Aktualisiert 11/05/2014 von Xplode # Betriebssystem : Windows 7 Professional Service Pack 1 (32 bits) # Benutzername : eigen - EIGEN-PC # Gestartet von : C:\Users\eigen\Downloads\adwcleaner_3.208.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\ProgramData\simplitec Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\simplitec Ordner Gelöscht : C:\Program Files\simplitec Ordner Gelöscht : C:\Users\eigen\AppData\Local\SearchProtect ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Wert Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [DrvUpdater] Schlüssel Gelöscht : HKCU\Software\OCS Schlüssel Gelöscht : HKLM\Software\SearchProtect Schlüssel Gelöscht : HKLM\Software\simplitec ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.17041 -\\ Mozilla Firefox v29.0.1 (de) [ Datei : C:\Users\eigen\AppData\Roaming\Mozilla\Firefox\Profiles\4d23aa7j.default\prefs.js ] -\\ Google Chrome v34.0.1847.137 [ Datei : C:\Users\eigen\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R0].txt - [1392 octets] - [16/05/2014 10:38:23] AdwCleaner[S0].txt - [1313 octets] - [16/05/2014 10:44:08] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1373 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.4 (04.06.2014:1) OS: Windows 7 Professional x86 Ran by eigen on 16.05.2014 at 10:49:46,82 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys ~~~ Files ~~~ Folders ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 16.05.2014 at 11:01:51,77 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlauf Datum: 16.05.2014 Suchlauf-Zeit: 10:30:02 Logdatei: 12.txt Administrator: Ja Version: 2.00.1.1004 Malware Datenbank: v2014.05.16.07 Rootkit Datenbank: v2014.03.27.01 Lizenz: Kostenlos Malware Schutz: Deaktiviert Bösartiger Webseiten Schutz: Deaktiviert Chameleon: Deaktiviert Betriebssystem: Windows 7 Service Pack 1 CPU: x86 Dateisystem: NTFS Benutzer: eigen Suchlauf-Art: Bedrohungs-Suchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 227429 Verstrichene Zeit: 9 Min, 35 Sek Speicher: Aktiviert Autostart: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Shuriken: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (No malicious items detected) Module: 0 (No malicious items detected) Registrierungsschlüssel: 0 (No malicious items detected) Registrierungswerte: 0 (No malicious items detected) Registrierungsdaten: 0 (No malicious items detected) Ordner: 0 (No malicious items detected) Dateien: 0 (No malicious items detected) Physische Sektoren: 0 (No malicious items detected) (end) Wen ich mit Firefox eine Internetseite aufbauen will kommt meistens keine Rückmeldung, dann muss ich eine weile warten bis es wieder Funktioniert, so ist es auch bei div. Programmen. Oder lag es an der Malware? Habe ein Programm entdeckt welches ich nie Instaliert habe, es heißt Sam Codec Pack. Im Internet habe ich darüber nichts gefunden und selber aufgespielt habe ich mir es auch nicht? Das Programm habe ich mit Revo Uninstaller gelöscht Gruß |
17.05.2014, 13:40 | #4 |
/// the machine /// TB-Ausbilder | Pc spinnt Browser lassen sich nicht öffnenESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
18.05.2014, 14:41 | #5 |
| Pc spinnt Browser lassen sich nicht öffnen Hallo Esent Online Scaner habe ich gamacht sah aber anders aus als bei trojaner Board beschrieben, weiß nicht was ich falsch gemacht habe, werde ich nächste Tage wiederholen. log ist auch nicht zu finden. Security Check Code:
ATTFilter Results of screen317's Security Check version 0.99.82 Windows 7 Service Pack 1 x86 (UAC is enabled) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` Bitdefender Antivirus Antivirus up to date! `````````Anti-malware/Other Utilities Check:````````` Secunia PSI (3.0.0.9016) Java 8 Update 5 Java version out of Date! Adobe Flash Player 13.0.0.182 Adobe Reader XI Mozilla Firefox (29.0.1) Google Chrome 34.0.1847.131 Google Chrome 34.0.1847.137 ````````Process Check: objlist.exe by Laurent```````` Bitdefender Bitdefender bdagent.exe Bitdefender Bitdefender pmbxag.exe Bitdefender Bitdefender bdapppassmgr.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:15-05-2014 Ran by eigen (administrator) on EIGEN-PC on 18-05-2014 15:37:43 Running from C:\Users\eigen\Downloads Platform: Microsoft Windows 7 Professional Service Pack 1 (X86) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Bitdefender) C:\Program Files\Bitdefender\Bitdefender\vsserv.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe () C:\Program Files\Ashampoo\Ashampoo HDD Control 2\AHDDC2_Service.exe (AVM Berlin) C:\Program Files\avmwlanstick\WLanNetService.exe (Realtek Semiconductor Corp.) C:\Program Files\ASUS\USB-N13 WLAN Card Utilities\RtlService.exe (Secunia) C:\Program Files\Secunia\PSI\sua.exe (ASUSTeK Computer Inc.) C:\Program Files\ASUS\USB-N13 WLAN Card Utilities\RtWLan.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender Safebox\safeboxservice.exe (AVM Berlin) C:\Program Files\avmwlanstick\WLanGUI.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender\bdagent.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender\bdapppassmgr.exe (Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [AVMWlanClient] => C:\Program Files\avmwlanstick\wlangui.exe [1904640 2009-05-07] (AVM Berlin) HKLM\...\Run: [Bdagent] => C:\Program Files\Bitdefender\Bitdefender\bdagent.exe [1845064 2014-03-25] (Bitdefender) HKLM\...\Run: [Ashampoo HDD-Control 2 Guard] => C:\Program Files\Ashampoo\Ashampoo HDD Control 2\AHDDC2_Guard.exe [3783592 2012-07-30] (Ashampoo Development GmbH & Co. KG) HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-12-21] (Adobe Systems Incorporated) HKU\.DEFAULT\...\Run: [Bitdefender-Geldbörse-Agent] => C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe [482392 2014-03-19] (Bitdefender) HKU\.DEFAULT\...\Run: [Bitdefender-Geldbörse] => C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe [901096 2014-03-15] (Bitdefender) HKU\.DEFAULT\...\Run: [Bitdefender-Geldbörse-Anwendungs-Agent] => C:\Program Files\Bitdefender\Bitdefender\bdapppassmgr.exe [614232 2014-03-19] (Bitdefender) HKU\S-1-5-21-2847575353-1812513506-2368236192-1000\...\Run: [Bitdefender-Geldbörse-Agent] => C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe [482392 2014-03-19] (Bitdefender) HKU\S-1-5-21-2847575353-1812513506-2368236192-1000\...\Run: [Bitdefender-Geldbörse] => C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe [901096 2014-03-15] (Bitdefender) HKU\S-1-5-21-2847575353-1812513506-2368236192-1000\...\Run: [Bitdefender-Geldbörse-Anwendungs-Agent] => C:\Program Files\Bitdefender\Bitdefender\bdapppassmgr.exe [614232 2014-03-19] (Bitdefender) HKU\S-1-5-21-2847575353-1812513506-2368236192-1000\...\MountPoints2: {425613fe-c0bd-11e3-b8c3-806e6f6e6963} - D:\setup.exe ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.dell.com SearchScopes: HKLM - DefaultScope value is missing. BHO: Bitdefender-Geldbörse - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender\pmbxie.dll (Bitdefender) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre8\bin\ssv.dll (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre8\bin\jp2ssv.dll (Oracle Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\eigen\AppData\Roaming\Mozilla\Firefox\Profiles\4d23aa7j.default FF Plugin: @adobe.com/AuthorwarePlayer - C:\Windows\system32\Macromed\AUTHORWA\np32asw.dll (Macromedia, Inc.) FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_13_0_0_182.dll () FF Plugin: @adobe.com/ShockwavePlayer - C:\Windows\system32\Adobe\Director\np32dsw_1210150.dll (Adobe Systems, Inc.) FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf - C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll No File FF Plugin: @java.com/DTPlugin,version=11.5.2 - C:\Program Files\Java\jre8\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.5.2 - C:\Program Files\Java\jre8\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @nullsoft.com/winampDetector;version=1 - C:\Program Files\Winamp Detect\npwachk.dll (Nullsoft, Inc.) FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: WOT - C:\Users\eigen\AppData\Roaming\Mozilla\Firefox\Profiles\4d23aa7j.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2014-04-10] FF Extension: Ghostery - C:\Users\eigen\AppData\Roaming\Mozilla\Firefox\Profiles\4d23aa7j.default\Extensions\firefox@ghostery.com.xpi [2014-04-10] FF HKLM\...\Firefox\Extensions: [ffpwdman@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender\ffpwdman\ FF Extension: Bitdefender Wallet - C:\Program Files\Bitdefender\Bitdefender\ffpwdman\ [] FF HKLM\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender\bdtbext FF Extension: bdToolbar - C:\Program Files\Bitdefender\Bitdefender\bdtbext [2014-04-10] Chrome: ======= CHR HomePage: CHR Extension: (Google Docs) - C:\Users\eigen\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-04-10] CHR Extension: (Google Drive) - C:\Users\eigen\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-04-10] CHR Extension: (YouTube) - C:\Users\eigen\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-04-10] CHR Extension: (Bitdefender Wallet) - C:\Users\eigen\AppData\Local\Google\Chrome\User Data\Default\Extensions\ccahoghmggldkcdjiebjkidpfongdfbl [2014-04-10] CHR Extension: (Google-Suche) - C:\Users\eigen\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-04-10] CHR Extension: (Google Wallet) - C:\Users\eigen\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-04-10] CHR Extension: (Google Mail) - C:\Users\eigen\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-04-10] CHR HKLM\...\Chrome\Extension: [ccahoghmggldkcdjiebjkidpfongdfbl] - C:\Program Files\Bitdefender\Bitdefender\pmbxcr.crx [2014-04-10] ========================== Services (Whitelisted) ================= R2 AHDDC2; C:\Program Files\Ashampoo\Ashampoo HDD Control 2\AHDDC2_Service.exe [1518504 2012-07-30] () R2 AVM WLAN Connection Service; C:\Program Files\avmwlanstick\WlanNetService.exe [368640 2009-05-07] (AVM Berlin) S4 BdDesktopParental; C:\Program Files\Bitdefender\Bitdefender\bdparentalservice.exe [69880 2014-03-15] (Bitdefender) R2 Realtek11nCU; C:\Program Files\ASUS\USB-N13 WLAN Card Utilities\RtlService.exe [36864 2012-05-10] (Realtek Semiconductor Corp.) R2 SafeBox; C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe [81704 2013-07-08] (Bitdefender) S3 Secunia PSI Agent; C:\Program Files\Secunia\PSI\PSIA.exe [1229528 2013-12-06] (Secunia) R2 Secunia Update Agent; C:\Program Files\Secunia\PSI\sua.exe [662232 2013-12-06] (Secunia) R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe [54424 2014-03-15] (Bitdefender) R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender\vsserv.exe [1248712 2014-03-24] (Bitdefender) ==================== Drivers (Whitelisted) ==================== R0 avc3; C:\Windows\System32\DRIVERS\avc3.sys [778032 2013-12-02] (BitDefender) R3 avchv; C:\Windows\System32\DRIVERS\avchv.sys [242504 2012-11-02] (BitDefender) R3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [516936 2013-12-02] (BitDefender) S3 avmeject; C:\Windows\System32\drivers\avmeject.sys [4352 2009-05-07] (AVM Berlin) R1 BdfNdisf; c:\program files\common files\bitdefender\bitdefender firewall\bdfndisf6.sys [78144 2013-02-22] (BitDefender LLC) R1 bdfwfpf; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [90704 2011-11-14] (BitDefender LLC) S3 bdfwfpf_pc; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf_pc.sys [108008 2013-07-02] (Bitdefender SRL) S3 BDSandBox; C:\Windows\system32\drivers\bdsandbox.sys [66832 2013-11-04] (BitDefender SRL) R1 bdselfpr; C:\Program Files\Bitdefender\Bitdefender\bdselfpr.sys [135600 2013-07-26] (BitDefender LLC) R1 BDVEDISK; C:\Windows\System32\DRIVERS\bdvedisk.sys [72704 2012-04-17] (BitDefender) S3 fwlanusbn; C:\Windows\System32\DRIVERS\fwlanusbn.sys [440832 2009-05-07] (AVM GmbH) R0 gzflt; C:\Windows\System32\DRIVERS\gzflt.sys [165744 2013-08-23] (BitDefender LLC) R0 iusb3hcs; C:\Windows\System32\DRIVERS\iusb3hcs.sys [16880 2013-07-17] (Intel Corporation) S3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [107736 2014-05-16] (Malwarebytes Corporation) S3 PSI; C:\Windows\System32\DRIVERS\psi_mf_x86.sys [16024 2013-12-06] (Secunia) R3 RTL8192cu; C:\Windows\System32\DRIVERS\rtwlanu.sys [863336 2012-02-10] (Realtek Semiconductor Corporation ) S3 RtlWlanu; C:\Windows\System32\DRIVERS\rtwlanu.sys [863336 2012-02-10] (Realtek Semiconductor Corporation ) R0 trufos; C:\Windows\System32\DRIVERS\trufos.sys [360376 2013-08-07] (BitDefender S.R.L.) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-05-18 15:32 - 2014-05-18 15:32 - 00855379 _____ () C:\Users\eigen\Desktop\SecurityCheck.exe 2014-05-18 14:31 - 2014-05-18 14:31 - 00000000 ____D () C:\Program Files\ESET 2014-05-16 16:13 - 2014-05-18 13:08 - 00000000 ____D () C:\Users\eigen\AppData\Local\Freemake Music Box 2014-05-16 16:13 - 2014-05-16 16:13 - 00000000 ____D () C:\Users\eigen\Documents\Freemake 2014-05-16 16:05 - 2014-05-16 16:05 - 00002073 _____ () C:\Users\Public\Desktop\ASUS USB-N13 WLAN Control Center.lnk 2014-05-16 16:05 - 2014-05-16 16:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS Utility 2014-05-16 16:05 - 2014-05-16 16:05 - 00000000 ____D () C:\Program Files\Cisco 2014-05-16 16:03 - 2014-05-16 16:03 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information 2014-05-16 16:03 - 2014-05-16 16:03 - 00000000 ____D () C:\Program Files\ASUS 2014-05-16 16:03 - 2012-06-18 18:21 - 00188416 _____ (Realtek Semiconductor Corp. ) C:\Windows\system32\RTLExtUI.dll 2014-05-16 16:03 - 2012-02-10 10:36 - 00863336 ____R (Realtek Semiconductor Corporation ) C:\Windows\system32\Drivers\rtwlanu.sys 2014-05-16 16:03 - 2009-03-31 14:31 - 00380928 _____ (Realtek) C:\Windows\RtlUI2.exe 2014-05-16 16:03 - 2009-01-05 20:31 - 00000901 _____ () C:\Windows\RtlUI2.exe.manifest 2014-05-16 16:03 - 2008-07-01 12:31 - 00614400 _____ (Realtek Semiconductor Corp. ) C:\Windows\system32\Rtlihvs.dll 2014-05-16 11:54 - 2014-05-16 11:54 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\OpenOffice 2014-05-16 11:51 - 2014-05-16 11:51 - 01056768 _____ (Farbar) C:\Users\eigen\Downloads\FRST.exe 2014-05-16 11:23 - 2014-05-16 11:23 - 00000000 ____D () C:\Users\eigen\Downloads\FRST-OlderVersion 2014-05-16 11:01 - 2014-05-16 11:01 - 00000625 _____ () C:\Users\eigen\Desktop\JRT.txt 2014-05-16 10:49 - 2014-05-16 10:49 - 01016261 _____ (Thisisu) C:\Users\eigen\Downloads\JRT.exe 2014-05-16 10:49 - 2014-05-16 10:49 - 00000000 ____D () C:\Windows\ERUNT 2014-05-16 10:47 - 2014-05-16 10:47 - 00001453 _____ () C:\Users\eigen\Downloads\AdwCleaner[S0].txt 2014-05-16 10:38 - 2014-05-16 10:44 - 00000000 ____D () C:\AdwCleaner 2014-05-16 10:38 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\system32\sqlite3.dll 2014-05-16 10:35 - 2014-05-16 10:35 - 01325827 _____ () C:\Users\eigen\Downloads\adwcleaner_3.208.exe 2014-05-16 10:34 - 2014-05-16 10:34 - 00001148 _____ () C:\12.txt 2014-05-16 10:19 - 2014-05-16 10:19 - 00001064 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-16 10:19 - 2014-05-16 10:19 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 2014-05-16 10:19 - 2014-04-03 09:51 - 00073432 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-05-16 10:19 - 2014-04-03 09:51 - 00051416 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-05-16 10:19 - 2014-04-03 09:50 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-05-16 10:18 - 2014-05-16 10:18 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\eigen\Downloads\mbam-setup-2.0.1.1004(1).exe 2014-05-16 09:57 - 2014-05-16 09:57 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\eigen\Downloads\revosetup95(1).exe 2014-05-15 15:12 - 2014-05-16 16:07 - 00031118 _____ () C:\Windows\PFRO.log 2014-05-15 14:42 - 2014-05-15 14:42 - 00001076 _____ () C:\Users\eigen\Desktop\EVEREST Home Edition.lnk 2014-05-15 14:42 - 2014-05-15 14:42 - 00000000 ____D () C:\Program Files\Lavalys 2014-05-15 14:41 - 2014-05-15 14:41 - 04179293 _____ (Lavalys, Inc. ) C:\Users\eigen\Downloads\everesthome220.exe 2014-05-15 14:30 - 2014-05-16 11:53 - 00015177 _____ () C:\Users\eigen\Downloads\Addition.txt 2014-05-15 14:29 - 2014-05-18 15:38 - 00011273 _____ () C:\Users\eigen\Downloads\FRST.txt 2014-05-15 14:29 - 2014-05-18 15:37 - 00000000 ____D () C:\FRST 2014-05-14 15:24 - 2014-05-06 05:25 - 17382912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-14 15:24 - 2014-05-06 05:07 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-14 15:24 - 2014-05-06 04:10 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-05-14 14:44 - 2014-05-18 12:41 - 00000896 _____ () C:\Windows\setupact.log 2014-05-14 14:44 - 2014-05-14 14:44 - 00000000 _____ () C:\Windows\setuperr.log 2014-05-14 14:43 - 2014-05-14 14:44 - 00295816 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-05-14 14:26 - 2014-05-14 14:27 - 15904896 _____ (simplitec GmbH ) C:\Users\eigen\Downloads\1_4_7_5_setup_simplitec_simplifast_Chip_2014.exe 2014-05-14 14:19 - 2014-05-18 12:41 - 00000378 _____ () C:\Windows\Tasks\simplitec Service Provider.job 2014-05-14 14:19 - 2014-05-14 14:37 - 00000348 _____ () C:\Windows\Tasks\simplitec Power Suite.job 2014-05-14 14:14 - 2014-05-14 14:14 - 00064024 _____ () C:\Users\eigen\AppData\Local\GDIPFONTCACHEV1.DAT 2014-05-14 13:28 - 2014-05-14 13:28 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\TuneUp Software 2014-05-14 13:28 - 2014-05-14 13:28 - 00000000 ____D () C:\Users\eigen\AppData\Local\TuneUp Software 2014-05-14 13:26 - 2014-05-15 08:06 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} 2014-05-14 13:26 - 2014-05-14 13:33 - 00000000 ____D () C:\ProgramData\TuneUp Software 2014-05-14 13:25 - 2014-05-15 08:06 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake 2014-05-14 13:25 - 2014-05-15 08:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake 2014-05-14 13:25 - 2014-05-14 13:25 - 00001210 _____ () C:\Users\Public\Desktop\Freemake Music Box.lnk 2014-05-14 13:24 - 2014-05-16 16:13 - 00000000 ____D () C:\ProgramData\Freemake 2014-05-14 13:24 - 2014-05-15 08:06 - 00000000 ____D () C:\Program Files\Freemake 2014-05-14 13:18 - 2014-05-14 13:18 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\MAGIX 2014-05-14 13:18 - 2014-05-14 13:18 - 00000000 ____D () C:\ProgramData\MAGIX 2014-05-14 13:17 - 2013-08-23 12:19 - 00120200 _____ () C:\Windows\system32\DLLDEV32i.dll 2014-05-14 13:11 - 2014-05-18 12:41 - 00000266 _____ () C:\Windows\Tasks\AbelssoftPreloader.job 2014-05-14 13:11 - 2014-05-15 08:06 - 00000000 ____D () C:\Users\eigen\AppData\Local\Abelssoft 2014-05-14 13:11 - 2014-05-14 13:11 - 00000000 ____D () C:\Users\eigen\Documents\Abelssoft 2014-05-14 13:11 - 2014-05-14 13:11 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Abelssoft 2014-05-14 13:10 - 2014-05-15 08:06 - 00000000 ____D () C:\Program Files\WashAndGo 2014-05-14 13:10 - 2014-05-14 13:10 - 00000981 _____ () C:\Users\Public\Desktop\WashAndGo.lnk 2014-05-14 13:02 - 2014-05-09 09:06 - 00369664 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-05-14 13:02 - 2014-05-09 09:04 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-05-14 13:02 - 2014-04-12 04:15 - 00136640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2014-05-14 13:02 - 2014-04-12 04:15 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2014-05-14 13:02 - 2014-04-12 04:12 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2014-05-14 13:02 - 2014-04-12 04:12 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2014-05-14 13:02 - 2014-04-12 04:12 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2014-05-14 13:02 - 2014-04-12 04:11 - 01059840 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-05-14 13:02 - 2014-04-12 04:11 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2014-05-14 13:02 - 2014-03-25 04:09 - 12874240 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-05-14 13:02 - 2014-03-04 11:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe 2014-05-14 13:02 - 2014-03-04 11:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2014-05-14 13:02 - 2014-03-04 11:17 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00304128 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2014-05-14 13:02 - 2014-03-04 11:17 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll 2014-05-14 13:02 - 2014-03-04 11:17 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2014-05-14 12:59 - 2014-05-14 14:38 - 00000000 ____D () C:\Users\eigen\AppData\Local\WEKA DVD Interface 2014-05-13 11:54 - 2014-05-13 11:54 - 00000437 _____ () C:\Windows\system32\Drivers\etc\hosts.ics 2014-05-12 12:05 - 2012-06-18 18:21 - 00451072 _____ () C:\Windows\system32\ISSRemoveSP.exe 2014-05-12 12:05 - 2007-04-26 14:05 - 00100000 _____ () C:\Windows\system32\EAPPkt9x.VXD 2014-05-12 12:05 - 2001-09-26 11:03 - 00012981 _____ () C:\Windows\system32\REALPKT.VXD 2014-05-12 11:57 - 2014-05-12 11:58 - 13709432 _____ () C:\Users\eigen\Downloads\200mwatt.zip 2014-05-12 11:57 - 2014-05-12 11:57 - 04712927 _____ () C:\Users\eigen\Downloads\MWGUH_Vista.rar 2014-05-11 14:24 - 2014-05-11 14:24 - 00000000 ____D () C:\ProgramData\SeriousBit 2014-05-11 14:23 - 2013-11-25 09:28 - 00035712 _____ (SeriousBit) C:\Windows\system32\Drivers\nbdrv.sys 2014-05-11 14:21 - 2014-05-11 14:21 - 03438592 _____ (Softperfect Research ) C:\Users\eigen\Downloads\networx_setup_5.3(1).exe 2014-05-11 14:21 - 2014-05-11 14:21 - 03336192 _____ () C:\Users\eigen\Downloads\netspeedmonitor_2_5_4_0_x86_setup(2).msi 2014-05-11 14:21 - 2014-05-11 14:21 - 01911400 _____ (SoftPerfect Research ) C:\Users\eigen\Downloads\wifiguard_windows_setup(1).exe 2014-05-11 14:20 - 2014-05-11 14:20 - 04292736 _____ (SeriousBit ) C:\Users\eigen\Downloads\NetBalancerSetup-8.0.0(1).exe 2014-05-11 14:20 - 2014-05-11 14:20 - 03805800 _____ (Ilja Herlein ) C:\Users\eigen\Downloads\netsetman_setup_371.exe 2014-05-11 14:18 - 2014-05-11 14:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ekahau 2014-05-11 14:18 - 2014-05-11 14:26 - 00000000 ____D () C:\Program Files\Ekahau 2014-05-11 14:18 - 2014-05-11 14:19 - 00000000 ____D () C:\Users\eigen\Ekahau Site Survey 2014-05-11 14:17 - 2014-05-11 14:17 - 100885752 _____ (Ekahau) C:\Users\eigen\Downloads\EkahauHeatmapper-Setup.exe 2014-05-10 15:53 - 2014-05-10 15:53 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-05-09 16:48 - 2014-05-09 16:48 - 00001224 _____ () C:\Users\Public\Desktop\Xirrus Wi-Fi Inspector.lnk 2014-05-09 16:48 - 2014-05-09 16:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xirrus 2014-05-09 16:48 - 2014-05-09 16:48 - 00000000 ____D () C:\Program Files\Xirrus 2014-05-09 16:47 - 2014-05-09 16:47 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Xirrus 2014-05-09 16:32 - 2014-05-09 16:32 - 00002477 _____ () C:\Users\Public\Desktop\inSSIDer Home.lnk 2014-05-09 16:32 - 2014-05-09 16:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MetaGeek 2014-05-09 16:31 - 2014-05-09 16:31 - 04767744 _____ () C:\Users\eigen\Downloads\inSSIDer31-installer.msi 2014-05-09 16:12 - 2014-05-11 13:52 - 00000000 ____D () C:\Users\eigen\AppData\Local\MetaGeek,_LLC 2014-05-09 16:12 - 2014-05-09 16:12 - 00000037 ___SH () C:\Users\eigen\AppData\Local\70149b02515b3bb20dd492.47983420 2014-05-09 16:12 - 2014-05-09 16:12 - 00000000 ____D () C:\Users\eigen\AppData\Local\IsolatedStorage 2014-05-09 16:11 - 2014-05-09 16:32 - 00000000 ____D () C:\Program Files\MetaGeek 2014-05-09 16:11 - 2014-05-09 16:11 - 00002927 _____ () C:\Users\eigen\Desktop\inSSIDer Office.lnk 2014-05-09 16:11 - 2014-05-09 16:11 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MetaGeek 2014-05-09 16:04 - 2014-05-09 16:05 - 04292736 _____ (SeriousBit ) C:\Users\eigen\Downloads\NetBalancerSetup-8.0.0.exe 2014-05-09 16:03 - 2014-05-09 16:03 - 03438592 _____ (Softperfect Research ) C:\Users\eigen\Downloads\networx_setup_5.3.exe 2014-05-09 16:03 - 2014-05-09 16:03 - 03336192 _____ () C:\Users\eigen\Downloads\netspeedmonitor_2_5_4_0_x86_setup(1).msi 2014-05-09 15:58 - 2014-05-09 15:58 - 01911400 _____ (SoftPerfect Research ) C:\Users\eigen\Downloads\wifiguard_windows_setup.exe 2014-05-09 15:56 - 2014-05-09 15:56 - 22224144 _____ (Xirrus) C:\Users\eigen\Downloads\WiFiInspector-Setup-1.2.1.4.exe 2014-05-09 15:55 - 2014-05-09 15:55 - 06082560 _____ () C:\Users\eigen\Downloads\inSSIDerOffice(1).msi 2014-05-09 15:54 - 2014-05-09 15:54 - 06082560 _____ () C:\Users\eigen\Downloads\inSSIDerOffice.msi 2014-05-08 18:47 - 2009-05-07 02:01 - 00004352 ____R (AVM Berlin) C:\Windows\system32\Drivers\avmeject.sys 2014-05-08 18:41 - 2014-05-08 18:41 - 00000000 ____D () C:\Windows\AVM_Driver 2014-05-08 18:40 - 2014-05-08 18:40 - 00000000 ____D () C:\Users\eigen\AVM_Driver 2014-05-06 14:46 - 2014-05-15 08:06 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-05-05 16:58 - 2014-05-05 16:58 - 00000000 __SHD () C:\ProgramData\{32364CEA-7855-4A3C-B674-53D8E9B97936} 2014-04-29 12:02 - 2014-05-14 14:06 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NirSoft ProduKey 2014-04-29 12:02 - 2014-04-29 12:02 - 00000000 ____D () C:\Program Files\NirSoft 2014-04-27 14:11 - 2014-04-27 14:12 - 00000000 ___SD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.0.1 2014-04-27 14:11 - 2014-04-27 14:11 - 00001074 _____ () C:\Users\Public\Desktop\OpenOffice 4.0.1.lnk 2014-04-27 14:10 - 2014-04-27 14:10 - 00000000 ____D () C:\Program Files\OpenOffice 4 2014-04-27 14:07 - 2014-04-27 14:07 - 00000000 ____D () C:\Users\eigen\Desktop\OpenOffice 4.0.1 (de) Installation Files 2014-04-24 16:43 - 2014-04-24 16:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2014-04-24 16:43 - 2014-04-24 16:43 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-04-18 13:23 - 2014-04-18 14:00 - 1010827264 _____ () C:\Users\eigen\Downloads\ubuntu-14.04-desktop-amd64.iso 2014-04-18 12:44 - 2014-04-18 13:21 - 1017118720 _____ () C:\Users\eigen\Downloads\ubuntu-14.04-desktop-i386.iso 2014-04-18 11:52 - 2014-04-18 11:53 - 23181137 _____ () C:\Users\eigen\Downloads\torbrowser-install-3.5.4_de.exe ==================== One Month Modified Files and Folders ======= 2014-05-18 15:38 - 2014-05-15 14:29 - 00011273 _____ () C:\Users\eigen\Downloads\FRST.txt 2014-05-18 15:37 - 2014-05-15 14:29 - 00000000 ____D () C:\FRST 2014-05-18 15:32 - 2014-05-18 15:32 - 00855379 _____ () C:\Users\eigen\Desktop\SecurityCheck.exe 2014-05-18 15:18 - 2014-04-17 11:17 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-05-18 15:10 - 2014-04-10 18:55 - 00001096 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-05-18 14:31 - 2014-05-18 14:31 - 00000000 ____D () C:\Program Files\ESET 2014-05-18 14:31 - 2010-11-20 23:01 - 01618320 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-05-18 14:20 - 2014-04-13 16:56 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2014-05-18 13:08 - 2014-05-16 16:13 - 00000000 ____D () C:\Users\eigen\AppData\Local\Freemake Music Box 2014-05-18 12:51 - 2014-04-10 16:37 - 01259891 _____ () C:\Windows\WindowsUpdate.log 2014-05-18 12:48 - 2009-07-14 06:34 - 00026512 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-05-18 12:48 - 2009-07-14 06:34 - 00026512 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-05-18 12:41 - 2014-05-14 14:44 - 00000896 _____ () C:\Windows\setupact.log 2014-05-18 12:41 - 2014-05-14 14:19 - 00000378 _____ () C:\Windows\Tasks\simplitec Service Provider.job 2014-05-18 12:41 - 2014-05-14 13:11 - 00000266 _____ () C:\Windows\Tasks\AbelssoftPreloader.job 2014-05-18 12:41 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-05-16 16:13 - 2014-05-16 16:13 - 00000000 ____D () C:\Users\eigen\Documents\Freemake 2014-05-16 16:13 - 2014-05-14 13:24 - 00000000 ____D () C:\ProgramData\Freemake 2014-05-16 16:07 - 2014-05-15 15:12 - 00031118 _____ () C:\Windows\PFRO.log 2014-05-16 16:05 - 2014-05-16 16:05 - 00002073 _____ () C:\Users\Public\Desktop\ASUS USB-N13 WLAN Control Center.lnk 2014-05-16 16:05 - 2014-05-16 16:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS Utility 2014-05-16 16:05 - 2014-05-16 16:05 - 00000000 ____D () C:\Program Files\Cisco 2014-05-16 16:05 - 2009-07-14 04:04 - 00000589 _____ () C:\Windows\win.ini 2014-05-16 16:03 - 2014-05-16 16:03 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information 2014-05-16 16:03 - 2014-05-16 16:03 - 00000000 ____D () C:\Program Files\ASUS 2014-05-16 11:54 - 2014-05-16 11:54 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\OpenOffice 2014-05-16 11:53 - 2014-05-15 14:30 - 00015177 _____ () C:\Users\eigen\Downloads\Addition.txt 2014-05-16 11:51 - 2014-05-16 11:51 - 01056768 _____ (Farbar) C:\Users\eigen\Downloads\FRST.exe 2014-05-16 11:23 - 2014-05-16 11:23 - 00000000 ____D () C:\Users\eigen\Downloads\FRST-OlderVersion 2014-05-16 11:01 - 2014-05-16 11:01 - 00000625 _____ () C:\Users\eigen\Desktop\JRT.txt 2014-05-16 10:49 - 2014-05-16 10:49 - 01016261 _____ (Thisisu) C:\Users\eigen\Downloads\JRT.exe 2014-05-16 10:49 - 2014-05-16 10:49 - 00000000 ____D () C:\Windows\ERUNT 2014-05-16 10:47 - 2014-05-16 10:47 - 00001453 _____ () C:\Users\eigen\Downloads\AdwCleaner[S0].txt 2014-05-16 10:44 - 2014-05-16 10:38 - 00000000 ____D () C:\AdwCleaner 2014-05-16 10:35 - 2014-05-16 10:35 - 01325827 _____ () C:\Users\eigen\Downloads\adwcleaner_3.208.exe 2014-05-16 10:34 - 2014-05-16 10:34 - 00001148 _____ () C:\12.txt 2014-05-16 10:32 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET 2014-05-16 10:20 - 2014-04-15 13:04 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-05-16 10:19 - 2014-05-16 10:19 - 00001064 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-16 10:19 - 2014-05-16 10:19 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 2014-05-16 10:18 - 2014-05-16 10:18 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\eigen\Downloads\mbam-setup-2.0.1.1004(1).exe 2014-05-16 10:16 - 2014-04-10 18:55 - 00002121 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-05-16 09:57 - 2014-05-16 09:57 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\eigen\Downloads\revosetup95(1).exe 2014-05-16 09:57 - 2014-04-10 17:53 - 00001226 _____ () C:\Users\eigen\Desktop\Revo Uninstaller.lnk 2014-05-16 09:57 - 2014-04-10 17:53 - 00000000 ____D () C:\Program Files\VS Revo Group 2014-05-15 15:16 - 2014-04-10 17:07 - 00000309 ____H () C:\bdr-cf01 2014-05-15 14:42 - 2014-05-15 14:42 - 00001076 _____ () C:\Users\eigen\Desktop\EVEREST Home Edition.lnk 2014-05-15 14:42 - 2014-05-15 14:42 - 00000000 ____D () C:\Program Files\Lavalys 2014-05-15 14:41 - 2014-05-15 14:41 - 04179293 _____ (Lavalys, Inc. ) C:\Users\eigen\Downloads\everesthome220.exe 2014-05-15 08:06 - 2014-05-14 13:26 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} 2014-05-15 08:06 - 2014-05-14 13:25 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake 2014-05-15 08:06 - 2014-05-14 13:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake 2014-05-15 08:06 - 2014-05-14 13:24 - 00000000 ____D () C:\Program Files\Freemake 2014-05-15 08:06 - 2014-05-14 13:11 - 00000000 ____D () C:\Users\eigen\AppData\Local\Abelssoft 2014-05-15 08:06 - 2014-05-14 13:10 - 00000000 ____D () C:\Program Files\WashAndGo 2014-05-15 08:06 - 2014-05-06 14:46 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-05-15 08:06 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\wfp 2014-05-15 08:06 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\de-DE 2014-05-15 08:06 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\registration 2014-05-15 08:03 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\LogFiles 2014-05-14 15:29 - 2014-04-12 12:15 - 00000000 ____D () C:\Windows\system32\MRT 2014-05-14 15:26 - 2014-04-12 12:15 - 90547776 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-05-14 14:44 - 2014-05-14 14:44 - 00000000 _____ () C:\Windows\setuperr.log 2014-05-14 14:44 - 2014-05-14 14:43 - 00295816 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-05-14 14:38 - 2014-05-14 12:59 - 00000000 ____D () C:\Users\eigen\AppData\Local\WEKA DVD Interface 2014-05-14 14:37 - 2014-05-14 14:19 - 00000348 _____ () C:\Windows\Tasks\simplitec Power Suite.job 2014-05-14 14:27 - 2014-05-14 14:26 - 15904896 _____ (simplitec GmbH ) C:\Users\eigen\Downloads\1_4_7_5_setup_simplitec_simplifast_Chip_2014.exe 2014-05-14 14:14 - 2014-05-14 14:14 - 00064024 _____ () C:\Users\eigen\AppData\Local\GDIPFONTCACHEV1.DAT 2014-05-14 14:14 - 2014-04-10 17:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo 2014-05-14 14:14 - 2014-04-10 17:47 - 00000000 ____D () C:\Program Files\Ashampoo 2014-05-14 14:06 - 2014-04-29 12:02 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NirSoft ProduKey 2014-05-14 13:59 - 2014-04-10 18:55 - 00001044 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-05-14 13:33 - 2014-05-14 13:26 - 00000000 ____D () C:\ProgramData\TuneUp Software 2014-05-14 13:28 - 2014-05-14 13:28 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\TuneUp Software 2014-05-14 13:28 - 2014-05-14 13:28 - 00000000 ____D () C:\Users\eigen\AppData\Local\TuneUp Software 2014-05-14 13:25 - 2014-05-14 13:25 - 00001210 _____ () C:\Users\Public\Desktop\Freemake Music Box.lnk 2014-05-14 13:18 - 2014-05-14 13:18 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\MAGIX 2014-05-14 13:18 - 2014-05-14 13:18 - 00000000 ____D () C:\ProgramData\MAGIX 2014-05-14 13:11 - 2014-05-14 13:11 - 00000000 ____D () C:\Users\eigen\Documents\Abelssoft 2014-05-14 13:11 - 2014-05-14 13:11 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Abelssoft 2014-05-14 13:10 - 2014-05-14 13:10 - 00000981 _____ () C:\Users\Public\Desktop\WashAndGo.lnk 2014-05-13 11:54 - 2014-05-13 11:54 - 00000437 _____ () C:\Windows\system32\Drivers\etc\hosts.ics 2014-05-12 11:58 - 2014-05-12 11:57 - 13709432 _____ () C:\Users\eigen\Downloads\200mwatt.zip 2014-05-12 11:57 - 2014-05-12 11:57 - 04712927 _____ () C:\Users\eigen\Downloads\MWGUH_Vista.rar 2014-05-11 14:40 - 2014-04-10 17:15 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service 2014-05-11 14:26 - 2014-05-11 14:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ekahau 2014-05-11 14:26 - 2014-05-11 14:18 - 00000000 ____D () C:\Program Files\Ekahau 2014-05-11 14:24 - 2014-05-11 14:24 - 00000000 ____D () C:\ProgramData\SeriousBit 2014-05-11 14:21 - 2014-05-11 14:21 - 03438592 _____ (Softperfect Research ) C:\Users\eigen\Downloads\networx_setup_5.3(1).exe 2014-05-11 14:21 - 2014-05-11 14:21 - 03336192 _____ () C:\Users\eigen\Downloads\netspeedmonitor_2_5_4_0_x86_setup(2).msi 2014-05-11 14:21 - 2014-05-11 14:21 - 01911400 _____ (SoftPerfect Research ) C:\Users\eigen\Downloads\wifiguard_windows_setup(1).exe 2014-05-11 14:20 - 2014-05-11 14:20 - 04292736 _____ (SeriousBit ) C:\Users\eigen\Downloads\NetBalancerSetup-8.0.0(1).exe 2014-05-11 14:20 - 2014-05-11 14:20 - 03805800 _____ (Ilja Herlein ) C:\Users\eigen\Downloads\netsetman_setup_371.exe 2014-05-11 14:19 - 2014-05-11 14:18 - 00000000 ____D () C:\Users\eigen\Ekahau Site Survey 2014-05-11 14:17 - 2014-05-11 14:17 - 100885752 _____ (Ekahau) C:\Users\eigen\Downloads\EkahauHeatmapper-Setup.exe 2014-05-11 13:52 - 2014-05-09 16:12 - 00000000 ____D () C:\Users\eigen\AppData\Local\MetaGeek,_LLC 2014-05-10 15:53 - 2014-05-10 15:53 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-05-09 16:52 - 2014-04-10 16:43 - 00000000 ____D () C:\Users\eigen\AppData\Local\VirtualStore 2014-05-09 16:48 - 2014-05-09 16:48 - 00001224 _____ () C:\Users\Public\Desktop\Xirrus Wi-Fi Inspector.lnk 2014-05-09 16:48 - 2014-05-09 16:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xirrus 2014-05-09 16:48 - 2014-05-09 16:48 - 00000000 ____D () C:\Program Files\Xirrus 2014-05-09 16:47 - 2014-05-09 16:47 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Xirrus 2014-05-09 16:32 - 2014-05-09 16:32 - 00002477 _____ () C:\Users\Public\Desktop\inSSIDer Home.lnk 2014-05-09 16:32 - 2014-05-09 16:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MetaGeek 2014-05-09 16:32 - 2014-05-09 16:11 - 00000000 ____D () C:\Program Files\MetaGeek 2014-05-09 16:31 - 2014-05-09 16:31 - 04767744 _____ () C:\Users\eigen\Downloads\inSSIDer31-installer.msi 2014-05-09 16:12 - 2014-05-09 16:12 - 00000037 ___SH () C:\Users\eigen\AppData\Local\70149b02515b3bb20dd492.47983420 2014-05-09 16:12 - 2014-05-09 16:12 - 00000000 ____D () C:\Users\eigen\AppData\Local\IsolatedStorage 2014-05-09 16:11 - 2014-05-09 16:11 - 00002927 _____ () C:\Users\eigen\Desktop\inSSIDer Office.lnk 2014-05-09 16:11 - 2014-05-09 16:11 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MetaGeek 2014-05-09 16:05 - 2014-05-09 16:04 - 04292736 _____ (SeriousBit ) C:\Users\eigen\Downloads\NetBalancerSetup-8.0.0.exe 2014-05-09 16:03 - 2014-05-09 16:03 - 03438592 _____ (Softperfect Research ) C:\Users\eigen\Downloads\networx_setup_5.3.exe 2014-05-09 16:03 - 2014-05-09 16:03 - 03336192 _____ () C:\Users\eigen\Downloads\netspeedmonitor_2_5_4_0_x86_setup(1).msi 2014-05-09 15:58 - 2014-05-09 15:58 - 01911400 _____ (SoftPerfect Research ) C:\Users\eigen\Downloads\wifiguard_windows_setup.exe 2014-05-09 15:56 - 2014-05-09 15:56 - 22224144 _____ (Xirrus) C:\Users\eigen\Downloads\WiFiInspector-Setup-1.2.1.4.exe 2014-05-09 15:55 - 2014-05-09 15:55 - 06082560 _____ () C:\Users\eigen\Downloads\inSSIDerOffice(1).msi 2014-05-09 15:54 - 2014-05-09 15:54 - 06082560 _____ () C:\Users\eigen\Downloads\inSSIDerOffice.msi 2014-05-09 11:10 - 2014-04-10 19:04 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\IDM 2014-05-09 11:10 - 2014-04-10 19:04 - 00000000 ____D () C:\Program Files\Internet Download Manager 2014-05-09 11:09 - 2014-04-10 19:04 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\DMCache 2014-05-09 09:06 - 2014-05-14 13:02 - 00369664 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-05-09 09:04 - 2014-05-14 13:02 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-05-08 18:48 - 2014-04-10 16:45 - 00000000 ____D () C:\Program Files\avmwlanstick 2014-05-08 18:41 - 2014-05-08 18:41 - 00000000 ____D () C:\Windows\AVM_Driver 2014-05-08 18:40 - 2014-05-08 18:40 - 00000000 ____D () C:\Users\eigen\AVM_Driver 2014-05-06 05:25 - 2014-05-14 15:24 - 17382912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-06 05:07 - 2014-05-14 15:24 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-06 04:10 - 2014-05-14 15:24 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-05-05 16:58 - 2014-05-05 16:58 - 00000000 __SHD () C:\ProgramData\{32364CEA-7855-4A3C-B674-53D8E9B97936} 2014-05-02 15:58 - 2014-04-10 17:15 - 00001121 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2014-05-02 15:58 - 2014-04-10 17:15 - 00001109 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-04-29 12:46 - 2014-04-10 17:47 - 00000000 ____D () C:\ProgramData\Ashampoo 2014-04-29 12:02 - 2014-04-29 12:02 - 00000000 ____D () C:\Program Files\NirSoft 2014-04-29 12:00 - 2014-04-10 19:04 - 00000000 ____D () C:\Users\eigen\Downloads\Compressed 2014-04-27 14:12 - 2014-04-27 14:11 - 00000000 ___SD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.0.1 2014-04-27 14:11 - 2014-04-27 14:11 - 00001074 _____ () C:\Users\Public\Desktop\OpenOffice 4.0.1.lnk 2014-04-27 14:10 - 2014-04-27 14:10 - 00000000 ____D () C:\Program Files\OpenOffice 4 2014-04-27 14:07 - 2014-04-27 14:07 - 00000000 ____D () C:\Users\eigen\Desktop\OpenOffice 4.0.1 (de) Installation Files 2014-04-24 16:45 - 2014-04-10 19:17 - 00000000 ____D () C:\Users\eigen\AppData\Roaming\Winamp 2014-04-24 16:43 - 2014-04-24 16:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2014-04-24 16:43 - 2014-04-24 16:43 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-04-24 16:12 - 2014-04-11 02:34 - 00000000 ____D () C:\Windows\Panther 2014-04-21 10:14 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache 2014-04-18 15:12 - 2010-11-21 02:47 - 00000000 ____D () C:\Program Files\Windows Journal 2014-04-18 15:12 - 2010-11-21 02:38 - 00000000 ____D () C:\Windows\system32\winrm 2014-04-18 15:12 - 2010-11-21 02:38 - 00000000 ____D () C:\Windows\system32\slmgr 2014-04-18 15:12 - 2010-11-21 02:38 - 00000000 ____D () C:\Windows\DigitalLocker 2014-04-18 15:12 - 2009-07-14 06:52 - 00000000 ____D () C:\Program Files\Windows Sidebar 2014-04-18 15:12 - 2009-07-14 06:52 - 00000000 ____D () C:\Program Files\Windows Photo Viewer 2014-04-18 15:12 - 2009-07-14 06:52 - 00000000 ____D () C:\Program Files\Windows Defender 2014-04-18 15:12 - 2009-07-14 06:52 - 00000000 ____D () C:\Program Files\DVD Maker 2014-04-18 15:12 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\IME 2014-04-18 15:12 - 2009-07-14 04:37 - 00000000 ____D () C:\Program Files\Common Files\System 2014-04-18 15:11 - 2010-11-21 02:38 - 00000000 ____D () C:\Windows\system32\WCN 2014-04-18 15:11 - 2010-11-21 02:38 - 00000000 ____D () C:\Windows\system32\Printing_Admin_Scripts 2014-04-18 15:11 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\MUI 2014-04-18 15:11 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\com 2014-04-18 14:00 - 2014-04-18 13:23 - 1010827264 _____ () C:\Users\eigen\Downloads\ubuntu-14.04-desktop-amd64.iso 2014-04-18 13:21 - 2014-04-18 12:44 - 1017118720 _____ () C:\Users\eigen\Downloads\ubuntu-14.04-desktop-i386.iso 2014-04-18 11:53 - 2014-04-18 11:52 - 23181137 _____ () C:\Users\eigen\Downloads\torbrowser-install-3.5.4_de.exe Some content of TEMP: ==================== C:\Users\eigen\AppData\Local\Temp\DseShExt-x86.dll C:\Users\eigen\AppData\Local\Temp\FreemakeMusicBox_1.0.1.3.exe C:\Users\eigen\AppData\Local\Temp\nsbB292.exe C:\Users\eigen\AppData\Local\Temp\nsbD17.exe C:\Users\eigen\AppData\Local\Temp\nsgAF08.exe C:\Users\eigen\AppData\Local\Temp\nsl651.exe C:\Users\eigen\AppData\Local\Temp\nslB62B.exe C:\Users\eigen\AppData\Local\Temp\nsq97D.exe C:\Users\eigen\AppData\Local\Temp\Quarantine.exe C:\Users\eigen\AppData\Local\Temp\SDShelEx-win32.dll C:\Users\eigen\AppData\Local\Temp\TUUUninstallHelper.exe C:\Users\eigen\AppData\Local\Temp\Update_Simplitec_PowerSuite_1.4.7.5de_DE.exe ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe => MD5 is legit C:\Windows\system32\winlogon.exe [2014-05-14 13:02] - [2014-03-04 11:17] - 0304128 ____A (Microsoft Corporation) 998507B046BA314CE8245364C686FA67 C:\Windows\system32\wininit.exe => MD5 is legit C:\Windows\system32\svchost.exe => MD5 is legit C:\Windows\system32\services.exe => MD5 is legit C:\Windows\system32\User32.dll => MD5 is legit C:\Windows\system32\userinit.exe => MD5 is legit C:\Windows\system32\rpcss.dll => MD5 is legit C:\Windows\system32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-05-12 20:20 ==================== End Of Log ============================ --- --- --- --- --- --- Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x86) Version:15-05-2014 Ran by eigen at 2014-05-18 15:38:37 Running from C:\Users\eigen\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Bitdefender Antivirus (Enabled - Up to date) {9A0813D8-CED6-F86B-072E-28D2AF25A83D} AS: Bitdefender Spyware-Schutz (Enabled - Up to date) {2169F23C-E8EC-F7E5-3D9E-13A0D4A2E280} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Bitdefender Firewall (Enabled) {A23392FD-84B9-F933-2C71-81E751F6EF46} ==================== Installed Programs ====================== 7-Zip 9.30 (HKLM\...\{23170F69-40C1-2701-0930-000001000000}) (Version: 9.30.00.0 - Igor Pavlov) Adobe Flash Player 13 ActiveX (HKLM\...\{8F9B1C8E-F50E-4139-8701-45016021E102}) (Version: 13.0.0.182 - Adobe Systems Incorporated) Adobe Flash Player 13 Plugin (HKLM\...\{28ADCCAD-3C23-44A1-A93F-47AA176F7AD7}) (Version: 13.0.0.182 - Adobe Systems Incorporated) Adobe Reader XI (11.0.07) - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.07 - Adobe Systems Incorporated) Adobe Shockwave Player + Authorware Web Player (HKLM\...\Adobe Shockwave Player + Authorware Web Player) (Version: v12.0.6.147 - Adobe Systems, Inc.) Adobe Shockwave Player 12.1 (HKLM\...\Adobe Shockwave Player) (Version: 12.1.0.150 - Adobe Systems, Inc.) Ashampoo HDD Control 2 v.2.1.0 (HKLM\...\{4209F371-A431-385E-2D7E-ACDA5DA3BA0B}_is1) (Version: 2.1.0 - Ashampoo GmbH & Co. KG) ASUS USB-N13 WLAN Card Utilities & Driver (HKLM\...\{9C049499-055C-4a0c-A916-1D12314F45EB}) (Version: 1.0.0.7 - ASUS) AVM FRITZ!WLAN (HKLM\...\AVMWLANCLI) (Version: - AVM Berlin) Bitdefender Total Security (HKLM\...\Bitdefender) (Version: 17.27.0.1146 - Bitdefender) Cisco EAP-FAST Module (HKLM\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.) DriverPack Solution Updater (HKCU\...\DRPSu Updater) (Version: 0.0.25 - DriverPack Solution) EVEREST Home Edition v2.20 (HKLM\...\EVEREST Home Edition_is1) (Version: 2.20 - Lavalys Inc) Freemake Music Box (HKLM\...\Freemake Music Box_is1) (Version: 1.0.1 - Ellora Assets Corporation) Google Chrome (HKLM\...\Google Chrome) (Version: 34.0.1847.137 - Google Inc.) Google Update Helper (Version: 1.3.24.7 - Google Inc.) Hidden inSSIDer Home (HKLM\...\{9E54E4AE-B67A-4925-8E92-0E1F9817FD73}) (Version: 3.1.2.1 - MetaGeek, LLC) inSSIDer Office (HKLM\...\{8C127DE3-EC36-4BA3-A6EE-6DC4A9B6C526}) (Version: 3.1.1.6 - MetaGeek, LLC) Intel(R) Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: 8.15.10.1930 - Intel Corporation) Intel(R) TV Wizard (HKLM\...\TVWiz) (Version: - Intel Corporation) ISO Workshop 4.5 (HKLM\...\ISO Workshop_is1) (Version: - Glorylogic) Java 8 Update 5 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218005FF}) (Version: 8.0.50 - Oracle Corporation) Malwarebytes Anti-Malware Version 2.0.1.1004 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.1.1004 - Malwarebytes Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM\...\{CA8A885F-E95B-3FC6-BB91-F4D9377C7686}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Mozilla Firefox 29.0.1 (x86 de) (HKLM\...\Mozilla Firefox 29.0.1 (x86 de)) (Version: 29.0.1 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 29.0 - Mozilla) NirSoft ProduKey (HKLM\...\NirSoft ProduKey) (Version: - ) OpenOffice 4.0.1 (HKLM\...\{0AEC308E-7EB3-47F7-BB59-F2C9C6166B27}) (Version: 4.01.9714 - Apache Software Foundation) Revo Uninstaller 1.95 (HKLM\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) Secunia PSI (3.0.0.9016) (HKLM\...\Secunia PSI) (Version: 3.0.0.9016 - Secunia) Streamripper (Remove only) (HKLM\...\Streamripper) (Version: - ) swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden WashAndGo (HKLM\...\WashAndGo_is1) (Version: 17.7 - Abelssoft) Winamp (HKLM\...\Winamp) (Version: 5.666 - Nullsoft, Inc) Winamp Erkennungs-Plug-in (HKCU\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc) Xirrus Wi-Fi Inspector (HKLM\...\{BBB21AB1-2C45-435D-A05A-B563072E7B9B}) (Version: 1.2.1.4 - Xirrus) ==================== Restore Points ========================= 14-05-2014 12:55:14 Wiederherstellungsvorgang 14-05-2014 13:24:36 Windows Update 14-05-2014 19:26:57 Wiederherstellungsvorgang 16-05-2014 08:11:29 Revo Uninstaller's restore point - Malwarebytes Anti-Malware Version 2.0.1.1004 16-05-2014 08:15:36 Revo Uninstaller's restore point - ASUS USB-N13 Manual 16-05-2014 08:15:54 Entfernt ASUS USB-N13 Manual 16-05-2014 09:12:45 Revo Uninstaller's restore point - simplifast 16-05-2014 09:13:20 Revo Uninstaller's restore point - simplifast 16-05-2014 09:30:10 Revo Uninstaller's restore point - REALTEK Wireless LAN Driver and Utility 16-05-2014 13:16:52 Revo Uninstaller's restore point - SAM CoDeC Pack 16-05-2014 14:03:17 Installiert ASUS USB-N13 WLAN Card Utilities & Driver ==================== Hosts content: ========================== 2009-07-14 04:04 - 2009-06-10 23:39 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {3B3C209D-8217-448A-BA70-737329CEF8D8} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-04-10] (Google Inc.) Task: {47569851-3577-486A-B489-C620C4EBC229} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-04-10] (Google Inc.) Task: {4B6B5AD3-6319-481A-977E-14B597B969E5} - System32\Tasks\simplitec Power Suite => C:\Program Files\simplitec\simplifast\PowerSuite.exe Task: {5DDEAB78-91C8-4D19-BEA3-E002FEDF853A} - System32\Tasks\AbelssoftPreloader => C:\Program Files\WashAndGo\AbelssoftPreloader.exe [2014-02-05] (Microsoft) Task: {6FB93CBC-B3F1-4CC5-985A-30B5768041C1} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-04-17] (Adobe Systems Incorporated) Task: {B6E96FF1-442C-47BA-A200-4D9F9CDE8323} - System32\Tasks\simplitec Service Provider => C:\Program Files\simplitec\simplifast\ServiceProvider.exe Task: C:\Windows\Tasks\AbelssoftPreloader.job => C:\Program Files\WashAndGo\AbelssoftPreloader.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\simplitec Power Suite.job => C:\Program Files\simplitec\simplifast\PowerSuite.exe Task: C:\Windows\Tasks\simplitec Service Provider.job => C:\Program Files\simplitec\simplifast\ServiceProvider.exe ==================== Loaded Modules (whitelisted) ============= 2014-04-10 17:06 - 2014-03-15 00:05 - 00204280 _____ () C:\Program Files\Bitdefender\Bitdefender\txmlutil.dll 2014-04-10 17:07 - 2014-03-27 19:17 - 00003072 _____ () C:\Program Files\Bitdefender\Bitdefender\UI\accessl.ui 2014-04-10 17:07 - 2011-11-14 19:17 - 00132176 _____ () C:\Program Files\Bitdefender\Bitdefender\bdfwcore.dll 2014-04-10 17:07 - 2014-03-27 19:17 - 00005120 _____ () C:\Program Files\Bitdefender\Bitdefender\UI\IMSecurityAL.ui 2014-04-10 17:06 - 2014-03-24 17:35 - 00668840 _____ () C:\Program Files\Bitdefender\Bitdefender\otengines_001_001\ashttpbr.mdl 2014-04-10 17:06 - 2014-03-24 17:35 - 00489120 _____ () C:\Program Files\Bitdefender\Bitdefender\otengines_001_001\ashttpdsp.mdl 2014-04-10 17:06 - 2014-03-24 17:35 - 02137584 _____ () C:\Program Files\Bitdefender\Bitdefender\otengines_001_001\ashttpph.mdl 2014-04-10 17:06 - 2014-03-24 17:35 - 01124088 _____ () C:\Program Files\Bitdefender\Bitdefender\otengines_001_001\ashttprbl.mdl 2014-04-10 17:47 - 2012-07-30 10:48 - 01518504 _____ () C:\Program Files\Ashampoo\Ashampoo HDD Control 2\AHDDC2_Service.exe 2014-05-16 16:03 - 2012-08-28 16:54 - 00114688 _____ () C:\Program Files\ASUS\USB-N13 WLAN Card Utilities\EnumDevLib.dll 2014-04-10 17:07 - 2013-03-25 15:16 - 00919136 _____ () C:\Program Files\Bitdefender\Bitdefender SafeBox\System.Data.SQLite.dll 2014-04-10 17:06 - 2013-09-03 13:29 - 00095088 _____ () C:\Program Files\Bitdefender\Bitdefender\bdmetrics.dll 2014-05-10 15:53 - 2014-05-10 15:53 - 03839088 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\Users\eigen\Desktop\SecurityCheck.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\1_4_7_5_setup_simplitec_simplifast_Chip_2014.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\adwcleaner_3.208.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\ashampoo_file_wiper_1.0.0_13413.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\ccsetup412_slim.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\checkdrive2014.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\ChromeStandaloneSetup_34.0.1847.116.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\EkahauHeatmapper-Setup.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\everesthome220.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\Firefox_Setup_de28.0.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\FRST.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\hardinfo7pro_full_setup.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\idman619build2.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\jre-8-windows-i586.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\JRT.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\mbam-setup-2.0.1.1004(1).exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\mbam-setup-2.0.1.1004.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\NetBalancerSetup-8.0.0(1).exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\NetBalancerSetup-8.0.0.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\netsetman_setup_371.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\networx_setup_5.3(1).exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\networx_setup_5.3.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\PSISetup_3.0.0.9016.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\revosetup95(1).exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\revosetup95.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\startupstar_vb_de.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\streamripper-windows-installer-1.64.6.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\torbrowser-install-3.5.4_de.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\wifiguard_windows_setup(1).exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\wifiguard_windows_setup.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\WiFiInspector-Setup-1.2.1.4.exe:BDU AlternateDataStreams: C:\Users\eigen\Downloads\winamp5666_full_de-de_b3516.exe:BDU ==================== Safe Mode (whitelisted) =================== ==================== EXE Association (whitelisted) ============= ==================== Disabled items from MSCONFIG ============== ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (05/18/2014 02:19:23 PM) (Source: MsiInstaller) (EventID: 1024) (User: eigen-PC) Description: Produkt: Adobe Reader XI - Deutsch - Update "{AC76BA86-7AD7-0000-2550-7A8C40011007}" konnte nicht installiert werden. Fehlercode 1625. Windows Installer kann Protokolle erstellen, um bei der Problembehandlung betreffend der Installation von Softwarepaketen behilflich zu sein. Verwenden Sie folgenden Link, um Anweisungen zur Aktivierung der Protokollierungsunterstützung zu erhalten: hxxp://go.microsoft.com/fwlink/?LinkId=23127 Error: (05/18/2014 00:41:45 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/18/2014 10:57:18 AM) (Source: AHDDC2_Service.exe) (EventID: 0) (User: ) Description: Cannot terminate an externally created thread Error: (05/18/2014 09:42:18 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/17/2014 00:04:11 PM) (Source: AHDDC2_Service.exe) (EventID: 0) (User: ) Description: Cannot terminate an externally created thread Error: (05/17/2014 11:18:18 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/16/2014 04:08:35 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/16/2014 03:10:27 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/16/2014 11:48:00 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm FRST.exe, Version 15.5.2014.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 80c Startzeit: 01cf70eb67b2a599 Endzeit: 13 Anwendungspfad: C:\Users\eigen\Downloads\FRST.exe Berichts-ID: 078951ca-dcdf-11e3-9115-bc054302502b Error: (05/16/2014 11:38:32 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Microsoft Office Sessions: ========================= Error: (05/18/2014 02:19:23 PM) (Source: MsiInstaller) (EventID: 1024) (User: eigen-PC) Description: Adobe Reader XI - Deutsch{AC76BA86-7AD7-0000-2550-7A8C40011007}1625(NULL)(NULL)(NULL) Error: (05/18/2014 00:41:45 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/18/2014 10:57:18 AM) (Source: AHDDC2_Service.exe) (EventID: 0) (User: ) Description: Cannot terminate an externally created thread Error: (05/18/2014 09:42:18 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/17/2014 00:04:11 PM) (Source: AHDDC2_Service.exe) (EventID: 0) (User: ) Description: Cannot terminate an externally created thread Error: (05/17/2014 11:18:18 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/16/2014 04:08:35 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/16/2014 03:10:27 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/16/2014 11:48:00 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: FRST.exe15.5.2014.080c01cf70eb67b2a59913C:\Users\eigen\Downloads\FRST.exe078951ca-dcdf-11e3-9115-bc054302502b Error: (05/16/2014 11:38:32 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 ==================== Memory info =========================== Percentage of memory in use: 57% Total physical RAM: 2038.24 MB Available physical RAM: 864.09 MB Total Pagefile: 4076.48 MB Available Pagefile: 2896.23 MB Total Virtual: 2047.88 MB Available Virtual: 1910.65 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:110.94 GB) (Free:83.62 GB) NTFS Drive f: (USB DISK) (Removable) (Total:29.81 GB) (Free:15.41 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 149 GB) (Disk ID: 1669C708) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=111 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=38 GB) - (Type=05) ======================================================== Disk: 1 (MBR Code: Windows XP) (Size: 30 GB) (Disk ID: FC60AEAD) Partition 1: (Not Active) - (Size=30 GB) - (Type=0C) ==================== End Of Log ============================ |
19.05.2014, 09:44 | #6 |
/// the machine /// TB-Ausbilder | Pc spinnt Browser lassen sich nicht öffnen Noch Probleme?
__________________ --> Pc spinnt Browser lassen sich nicht öffnen |
20.05.2014, 12:37 | #7 |
| Pc spinnt Browser lassen sich nicht öffnen PC läuft viel Besser Danke für deine Hilfe |
21.05.2014, 07:51 | #8 |
/// the machine /// TB-Ausbilder | Pc spinnt Browser lassen sich nicht öffnen Fertig Die Reihenfolge ist hier entscheidend.
Falls Du Lob oder Kritik abgeben möchtest kannst Du das hier tun Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Pc spinnt Browser lassen sich nicht öffnen |
administrator, antivirus, association, asus, browser, ccsetup, defender, explorer, firefox, firewall, flash player, helper, installation, mozilla, nicht öffnen, realtek, registry, scan, secur, security, services.exe, software, stick, svchost.exe, temp, tv wizard, ups, usb, windows |