|
Log-Analyse und Auswertung: Bildschirm hängt fest, hochladen dauert ewigWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
07.06.2014, 07:51 | #16 |
| Bildschirm hängt fest, hochladen dauert ewig Sorry, das ich mich jetzt erst wieder melde, war leider krank frst habe ich wieder runter geladen, bekam dann aber beim öffnen die Nachricht, dass es nicht auf meinem rechner laufen würde, deshalb sollte ich das frst64 nehmen.. FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 06-06-2014 Ran by User (administrator) on USER-PC on 07-06-2014 08:41:05 Running from C:\Users\User\Desktop Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgrsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgcsrva.exe (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe () C:\Program Files (x86)\Ashampoo\Ashampoo HDD Control 2\AHDDC2_Service.exe () C:\Program Files (x86)\ALDITALKVerbindungsassistent\ALDITALKVerbindungsassistent_Service.exe (Advanced Micro Devices) C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgfws.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe (Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe (Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe (Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe (Ashampoo Development GmbH & Co. KG) C:\Program Files (x86)\Ashampoo\Ashampoo HDD Control 2\AHDDC2_Guard.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgui.exe (SEIKO EPSON CORPORATION) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgnsa.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler64.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgemca.exe (CyberLink) C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE () C:\Program Files (x86)\ALDITALKVerbindungsassistent\ALDITALKVerbindungsassistent_Launcher.exe () C:\Program Files (x86)\ALDITALKVerbindungsassistent\ALDITALKVerbindungsassistent.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2294568 2010-09-03] (Synaptics Incorporated) HKLM\...\Run: [UpdatePRCShortCut] => C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe [222504 2009-05-13] (CyberLink Corp.) HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [9744800 2013-11-18] (Lenovo (Beijing) Limited) HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [5399456 2013-11-18] (Lenovo(beijing) Limited) HKLM\...\Run: [Lenovo EE Boot Optimizer] => C:\Program Files (x86)\Lenovo\Boot Optimizer\PopWnd.exe [114688 2013-11-18] (Lenovo) HKLM\...\Run: [InstallerLauncher] => "C:\Program Files\Common Files\Bitdefender\SetupInformation\{6F57816A-791A-4159-A75F-CFD0C7EA4FBF}\setuplauncher.exe" /run:"C:\Program Files\Common Files\Bitdefender\SetupInformation\{6F57816A-791A-4159-A75F-CFD0C7EA4FBF}\Installer.exe" HKLM\...\Run: [Ashampoo HDD-Control 2 Guard] => C:\Program Files (x86)\Ashampoo\Ashampoo HDD Control 2\AHDDC2_Guard.exe [3783592 2012-07-30] (Ashampoo Development GmbH & Co. KG) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2010-11-29] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [UpdatePRCShortCut] => C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe [222504 2009-05-13] (CyberLink Corp.) HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\AVG2014\avgui.exe [5181456 2014-05-13] (AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1058912 2012-04-02] (SEIKO EPSON CORPORATION) HKU\.DEFAULT\...\Run: [Bitdefender-Geldbörse-Agent] => "C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe" HKU\.DEFAULT\...\Run: [Bitdefender-Geldbörse] => "C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe" --hidden --nowizard HKU\.DEFAULT\...\Run: [Bitdefender-Geldbörse-Anwendungs-Agent] => "C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe" HKU\.DEFAULT\...\RunOnce: [SPReview] - C:\windows\System32\SPReview\SPReview.exe [301568 2013-11-27] (Microsoft Corporation) HKU\S-1-5-21-769514679-1109052257-2407649337-1001\...\MountPoints2: I - I:\AutoRun.exe HKU\S-1-5-21-769514679-1109052257-2407649337-1001\...\MountPoints2: {08ec65ea-bad7-11e3-a293-74de2b03ec9f} - E:\AutoRun.exe HKU\S-1-5-21-769514679-1109052257-2407649337-1001\...\MountPoints2: {0faace18-85ea-11e3-8173-b870f43d656a} - I:\AutoRun.exe ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.web.de/ HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKLM\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com/ HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com/ StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=dvd_14_13_ff&cd=2XzuyEtN2Y1L1Qzu0BzzyBtD0FyEtA0DyCyDyC0AtD0C0FyDtN0D0Tzu0SzztCzztN1L2XzutBtFtCzztFtBtFtDtN1L1CzutCyEtDtAtDyD1V1RtN1L1G1B1V1N2Y1L1Qzu2StC0B0EtDzyyCyBtDtGtBtD0FtCtG0BtC0A0DtGzy0FzyyDtGtBtB0EzyyD0C0FyCtA0CyCtA2QtN1M1F1B2Z1V1N2Y1L1Qzu2StAtBzyyDyD0AtCyDtG0FzztCtBtGyEyCyDtCtG0F0A0C0DtGyE0E0DyCtCtB0C0A0B0CyByD2Q&cr=678683539&ir= SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=dvd_14_13_ff&cd=2XzuyEtN2Y1L1Qzu0BzzyBtD0FyEtA0DyCyDyC0AtD0C0FyDtN0D0Tzu0SzztCzztN1L2XzutBtFtCzztFtBtFtDtN1L1CzutCyEtDtAtDyD1V1RtN1L1G1B1V1N2Y1L1Qzu2StC0B0EtDzyyCyBtDtGtBtD0FtCtG0BtC0A0DtGzy0FzyyDtGtBtB0EzyyD0C0FyCtA0CyCtA2QtN1M1F1B2Z1V1N2Y1L1Qzu2StAtBzyyDyD0AtCyDtG0FzztCtBtGyEyCyDtCtG0F0A0C0DtGyE0E0DyCtCtB0C0A0B0CyByD2Q&cr=678683539&ir= SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search BHO: PlusVid - {11111111-1111-1111-1111-110511701120} - No File BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: PlusVid - {11111111-1111-1111-1111-110511701120} - No File BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION) DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab Tcpip\..\Interfaces\{B182B39E-9E87-44B1-AE16-35FABBFACFDF}: [NameServer]212.23.115.132 212.23.115.148 FireFox: ======== FF ProfilePath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\fqv36ojr.default FF SearchEngineOrder.1: Google FF Homepage: Web.de FF Plugin: @adobe.com/FlashPlayer - C:\windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll () FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @staging.google.com/globalUpdate Update;version=10 - C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll No File FF Plugin-x32: @staging.google.com/globalUpdate Update;version=4 - C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll No File FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF user.js: detected! => C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\fqv36ojr.default\user.js FF SearchPlugin: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\fqv36ojr.default\searchplugins\11-suche.xml FF SearchPlugin: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\fqv36ojr.default\searchplugins\englische-ergebnisse.xml FF SearchPlugin: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\fqv36ojr.default\searchplugins\gmx-suche.xml FF SearchPlugin: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\fqv36ojr.default\searchplugins\webde-suche.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: WEB.DE MailCheck - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\fqv36ojr.default\Extensions\toolbar@web.de.xpi [2014-04-14] FF HKCU\...\Firefox\Extensions: [{B64D9B05-48E1-4CEB-BF58-E0643994E900}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff\ Chrome: ======= CHR HomePage: chrome://newtab CHR RestoreOnStartup: "hxxp://www.giga.de/software/" ==================== Services (Whitelisted) ================= R2 AHDDC2; C:\Program Files (x86)\Ashampoo\Ashampoo HDD Control 2\AHDDC2_Service.exe [1518504 2012-07-30] () R2 ALDITALKVerbindungsassistent_Service; C:\Program Files (x86)\ALDITALKVerbindungsassistent\ALDITALKVerbindungsassistent_Service.exe [358968 2013-11-22] () R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [354304 2010-11-29] (Advanced Micro Devices, Inc.) R2 AMD Reservation Manager; C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe [194496 2010-06-17] (Advanced Micro Devices) R2 avgfws; C:\Program Files (x86)\AVG\AVG2014\avgfws.exe [1473792 2014-05-13] (AVG Technologies CZ, s.r.o.) R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe [3644432 2014-05-13] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe [292424 2014-05-13] (AVG Technologies CZ, s.r.o.) S3 DfSdkS; C:\Program Files (x86)\Ashampoo\Ashampoo HDD Control 2\DfsdkS64.exe [544768 2009-08-24] (mst software GmbH, Germany) R2 EpsonScanSvc; C:\windows\system32\EscSvc64.exe [135824 2011-12-12] (Seiko Epson Corporation) S2 globalUpdate; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /svc [X] S3 globalUpdatem; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /medsvc [X] ==================== Drivers (Whitelisted) ==================== U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) S3 aswTap; C:\Windows\System32\DRIVERS\aswTap.sys [44640 2013-11-22] (The OpenVPN Project) R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [152344 2014-05-13] (AVG Technologies CZ, s.r.o.) R1 Avgfwfd; C:\Windows\System32\DRIVERS\avgfwd6a.sys [57144 2013-09-26] (AVG Technologies CZ, s.r.o.) R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [236312 2014-05-13] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [191768 2014-05-13] (AVG Technologies CZ, s.r.o.) R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [235800 2014-05-13] (AVG Technologies CZ, s.r.o.) R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [323352 2014-05-13] (AVG Technologies CZ, s.r.o.) R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [130328 2014-05-13] (AVG Technologies CZ, s.r.o.) R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [31512 2014-05-13] (AVG Technologies CZ, s.r.o.) R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [273176 2014-05-13] (AVG Technologies CZ, s.r.o.) R3 hwdatacard; C:\Windows\SysWOW64\DRIVERS\ewusbmdm.sys [115328 2008-07-24] (Huawei Technologies Co., Ltd.) U5 TMUSB; C:\Windows\System32\DRIVERS\TMUSB64.SYS [63096 2012-12-05] (Seiko Epson Corporation) S3 usbrndis6; C:\Windows\System32\DRIVERS\usb80236.sys [19968 2013-02-12] (Microsoft Corporation) S3 catchme; \??\C:\ComboFix\catchme.sys [X] U2 CLKMSVC10_3A60B698; U2 CLKMSVC10_C3B3B687; U2 DriverService; U2 IAStorDataMgrSvc; U2 idealife Update Service; U3 IGRS; U2 IviRegMgr; U2 nvUpdatusService; U2 Oasis2Service; U2 PCCarerServic; U2 ReadyComm.DirectRouter; U2 RichVideo; U2 RtLedService; U2 SoftwareService; U2 Stereo Service; ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-06-07 08:41 - 2014-06-07 08:41 - 00016566 _____ () C:\Users\User\Desktop\FRST.txt 2014-06-07 08:40 - 2014-06-07 08:41 - 00000000 ____D () C:\FRST 2014-06-07 08:40 - 2014-06-07 08:40 - 02072576 _____ (Farbar) C:\Users\User\Desktop\FRST64.exe 2014-06-06 06:17 - 2014-06-06 06:17 - 00000000 ____D () C:\Users\User\AppData\Local\Adobe 2014-06-05 14:03 - 2014-01-09 04:22 - 05694464 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstscax.dll 2014-06-05 14:03 - 2014-01-04 00:44 - 06574592 _____ (Microsoft Corporation) C:\windows\system32\mstscax.dll 2014-06-05 00:43 - 2013-10-02 04:22 - 00056832 _____ (Microsoft Corporation) C:\windows\system32\Drivers\TsUsbFlt.sys 2014-06-05 00:43 - 2013-10-02 04:11 - 00013824 _____ (Microsoft Corporation) C:\windows\system32\TsUsbRedirectionGroupPolicyControl.exe 2014-06-05 00:43 - 2013-10-02 04:08 - 00012800 _____ (Microsoft Corporation) C:\windows\system32\TsUsbRedirectionGroupPolicyExtension.dll 2014-06-05 00:43 - 2013-10-02 03:48 - 00056832 _____ (Microsoft Corporation) C:\windows\system32\MsRdpWebAccess.dll 2014-06-05 00:43 - 2013-10-02 03:48 - 00018944 _____ (Microsoft Corporation) C:\windows\system32\wksprtPS.dll 2014-06-05 00:43 - 2013-10-02 03:29 - 00062976 _____ (Microsoft Corporation) C:\windows\system32\tsgqec.dll 2014-06-05 00:43 - 2013-10-02 03:10 - 00044544 _____ (Microsoft Corporation) C:\windows\system32\TsUsbGDCoInstaller.dll 2014-06-05 00:43 - 2013-10-02 02:15 - 01057280 _____ (Microsoft Corporation) C:\windows\system32\rdvidcrl.dll 2014-06-05 00:43 - 2013-10-02 02:14 - 00050176 _____ (Microsoft Corporation) C:\windows\SysWOW64\MsRdpWebAccess.dll 2014-06-05 00:43 - 2013-10-02 02:14 - 00017920 _____ (Microsoft Corporation) C:\windows\SysWOW64\wksprtPS.dll 2014-06-05 00:43 - 2013-10-02 02:08 - 00083968 _____ (Microsoft Corporation) C:\windows\system32\TSWbPrxy.exe 2014-06-05 00:43 - 2013-10-02 02:01 - 00420864 _____ (Microsoft Corporation) C:\windows\system32\wksprt.exe 2014-06-05 00:43 - 2013-10-02 01:58 - 00053248 _____ (Microsoft Corporation) C:\windows\SysWOW64\tsgqec.dll 2014-06-05 00:43 - 2013-10-02 01:31 - 01147392 _____ (Microsoft Corporation) C:\windows\system32\mstsc.exe 2014-06-05 00:43 - 2013-10-02 01:08 - 00855552 _____ (Microsoft Corporation) C:\windows\SysWOW64\rdvidcrl.dll 2014-06-05 00:43 - 2013-10-02 00:34 - 01068544 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstsc.exe 2014-06-05 00:42 - 2012-08-23 16:13 - 00243200 _____ (Microsoft Corporation) C:\windows\system32\rdpudd.dll 2014-06-05 00:42 - 2012-08-23 16:10 - 00019456 _____ (Microsoft Corporation) C:\windows\system32\Drivers\rdpvideominiport.sys 2014-06-05 00:42 - 2012-08-23 15:24 - 00015360 _____ (Microsoft Corporation) C:\windows\system32\RdpGroupPolicyExtension.dll 2014-06-05 00:42 - 2012-08-23 13:12 - 00192000 _____ (Microsoft Corporation) C:\windows\SysWOW64\rdpendp_winip.dll 2014-06-05 00:42 - 2012-08-23 12:51 - 00228864 _____ (Microsoft Corporation) C:\windows\system32\rdpendp_winip.dll 2014-06-05 00:42 - 2012-08-23 11:51 - 03174912 _____ (Microsoft Corporation) C:\windows\system32\rdpcorets.dll 2014-06-05 00:40 - 2013-09-25 04:23 - 01030144 _____ (Microsoft Corporation) C:\windows\system32\TSWorkspace.dll 2014-06-05 00:40 - 2013-09-25 03:57 - 00792576 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSWorkspace.dll 2014-06-05 00:40 - 2012-05-04 13:00 - 00366592 _____ (Microsoft Corporation) C:\windows\system32\qdvd.dll 2014-06-05 00:40 - 2012-05-04 11:59 - 00514560 _____ (Microsoft Corporation) C:\windows\SysWOW64\qdvd.dll 2014-06-05 00:01 - 2014-06-05 00:01 - 00000000 ____D () C:\Program Files (x86)\MSECache 2014-06-03 20:27 - 2014-06-03 20:28 - 00003112 _____ () C:\windows\System32\Tasks\{AD7A21E0-E72E-4823-B642-1E2D16B4ABBC} 2014-06-03 08:54 - 2014-06-05 08:39 - 00000000 ____D () C:\Users\User\Desktop\Stall Erftstadt 2014-06-03 08:50 - 2014-06-05 00:08 - 00000000 ____D () C:\Users\User\Desktop\stall 2014-06-03 08:42 - 2014-06-04 07:50 - 00001466 _____ () C:\windows\Tasks\167cb669-2408-4e73-a7b0-926eb9db8f9d-5.job 2014-06-03 08:42 - 2014-06-03 20:10 - 00004508 _____ () C:\windows\System32\Tasks\167cb669-2408-4e73-a7b0-926eb9db8f9d-5 2014-06-03 08:41 - 2014-06-04 07:50 - 00001362 _____ () C:\windows\Tasks\167cb669-2408-4e73-a7b0-926eb9db8f9d-1.job 2014-06-03 08:41 - 2014-06-04 07:50 - 00001344 _____ () C:\windows\Tasks\167cb669-2408-4e73-a7b0-926eb9db8f9d-2.job 2014-06-03 08:41 - 2014-06-04 07:50 - 00000290 _____ () C:\windows\Tasks\System Speedup_UPDATES.job 2014-06-03 08:41 - 2014-06-04 07:50 - 00000282 _____ () C:\windows\Tasks\System Speedup_DEFAULT.job 2014-06-03 08:41 - 2014-06-03 20:10 - 00004404 _____ () C:\windows\System32\Tasks\167cb669-2408-4e73-a7b0-926eb9db8f9d-1 2014-06-03 08:41 - 2014-06-03 20:10 - 00004386 _____ () C:\windows\System32\Tasks\167cb669-2408-4e73-a7b0-926eb9db8f9d-2 2014-06-03 08:41 - 2014-06-03 20:10 - 00003958 _____ () C:\windows\System32\Tasks\globalUpdateUpdateTaskMachineUA 2014-06-03 08:41 - 2014-06-03 20:10 - 00003030 _____ () C:\windows\System32\Tasks\System Speedup_UPDATES 2014-06-03 08:41 - 2014-06-03 20:10 - 00002874 _____ () C:\windows\System32\Tasks\System Speedup_DEFAULT 2014-06-03 08:40 - 2014-06-04 07:50 - 00003440 _____ () C:\windows\Tasks\167cb669-2408-4e73-a7b0-926eb9db8f9d-3.job 2014-06-03 08:40 - 2014-06-04 07:50 - 00002186 _____ () C:\windows\Tasks\167cb669-2408-4e73-a7b0-926eb9db8f9d-4.job 2014-06-03 08:40 - 2014-06-04 07:50 - 00000948 _____ () C:\windows\Tasks\globalUpdateUpdateTaskMachineUA.job 2014-06-03 08:40 - 2014-06-04 07:50 - 00000944 _____ () C:\windows\Tasks\globalUpdateUpdateTaskMachineCore.job 2014-06-03 08:40 - 2014-06-03 20:10 - 00006482 _____ () C:\windows\System32\Tasks\167cb669-2408-4e73-a7b0-926eb9db8f9d-3 2014-06-03 08:40 - 2014-06-03 20:10 - 00005228 _____ () C:\windows\System32\Tasks\167cb669-2408-4e73-a7b0-926eb9db8f9d-4 2014-06-03 08:40 - 2014-06-03 20:10 - 00003704 _____ () C:\windows\System32\Tasks\globalUpdateUpdateTaskMachineCore 2014-06-03 08:40 - 2014-06-03 08:58 - 00000000 ____D () C:\Users\User\AppData\Roaming\systweak 2014-06-03 08:40 - 2014-06-03 08:42 - 00000000 ____D () C:\Users\User\AppData\Roaming\System Speedup 2014-06-03 08:40 - 2014-06-03 08:40 - 00000000 ____D () C:\Users\User\AppData\Local\globalUpdate 2014-06-03 08:40 - 2014-06-03 08:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Speedup 2014-06-03 08:40 - 2013-12-13 17:53 - 00019544 _____ (System Speedup) C:\windows\system32\roboot64.exe 2014-05-31 09:25 - 2014-05-31 09:25 - 00000000 ____D () C:\Program Files (x86)\ESET 2014-05-30 23:30 - 2014-05-30 23:30 - 00000000 ____D () C:\Program Files\suprasavings 2014-05-30 23:27 - 2014-05-30 23:30 - 00000000 ____D () C:\Program Files\003 2014-05-30 08:29 - 2014-05-30 08:29 - 00000000 ____H () C:\windows\system32\Drivers\Msft_Kernel_ldiagio_uefi_01009.Wdf 2014-05-30 08:29 - 2014-05-30 08:29 - 00000000 ____D () C:\SWTOOLS 2014-05-29 18:59 - 2014-05-29 18:59 - 00000000 __SHD () C:\Users\User\AppData\Local\EmieUserList 2014-05-29 18:59 - 2014-05-29 18:59 - 00000000 __SHD () C:\Users\User\AppData\Local\EmieSiteList 2014-05-27 20:51 - 2014-05-27 21:14 - 00000000 ___SD () C:\32788R22FWJFW 2014-05-27 20:48 - 2014-05-27 20:48 - 00000000 ____D () C:\Users\Default\AppData\Local\temp 2014-05-27 20:48 - 2014-05-27 20:48 - 00000000 ____D () C:\Users\Default User\AppData\Local\temp 2014-05-27 20:48 - 2014-05-27 20:48 - 00000000 ____D () C:\Users\_pcsuite_backup_\AppData\Local\temp 2014-05-26 20:59 - 2014-05-26 21:02 - 00036048 _____ () C:\Users\User\Downloads\Addition.txt 2014-05-26 20:57 - 2014-05-26 21:02 - 00036908 _____ () C:\Users\User\Downloads\FRST.txt 2014-05-26 20:56 - 2014-05-26 20:56 - 07830845 _____ (FreeDownloadManager.ORG ) C:\Users\User\Downloads\fdminst-3.9.4.1470.exe 2014-05-26 20:52 - 2014-05-26 20:52 - 02066944 _____ (Farbar) C:\Users\User\Downloads\FRST64.exe 2014-05-23 17:24 - 2014-06-03 20:10 - 00003032 _____ () C:\windows\System32\Tasks\{0C28A62E-8130-4E75-AD5E-792F88984A0E} 2014-05-23 17:07 - 2014-05-23 17:08 - 00000000 ____D () C:\Users\User\AppData\Roaming\Temp 2014-05-23 17:05 - 2014-06-03 20:10 - 00003032 _____ () C:\windows\System32\Tasks\{E3A71512-3D4C-47E7-A903-F9423DA8B658} 2014-05-22 19:08 - 2014-06-07 08:22 - 00000000 ____D () C:\Users\User\AppData\Local\Windows Live 2014-05-18 08:49 - 2014-05-18 08:49 - 00017978 _____ () C:\Users\User\Downloads\Ideen Innenausbau Vorzelt.htm 2014-05-18 08:49 - 2014-05-18 08:49 - 00000000 ____D () C:\Users\User\Downloads\Ideen Innenausbau Vorzelt-Dateien 2014-05-15 06:48 - 2014-06-03 20:10 - 00002964 _____ () C:\windows\System32\Tasks\{E7EC90D4-9B09-46E3-9C2C-8717417F45D0} 2014-05-14 20:29 - 2014-05-06 06:40 - 23544320 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll 2014-05-14 20:29 - 2014-05-06 06:17 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb 2014-05-14 20:29 - 2014-05-06 05:25 - 17382912 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll 2014-05-14 20:29 - 2014-05-06 05:07 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb 2014-05-14 20:29 - 2014-05-06 05:00 - 00084992 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll 2014-05-14 20:29 - 2014-05-06 04:10 - 00069632 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll 2014-05-14 19:50 - 2014-05-09 08:14 - 00477184 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll 2014-05-14 19:50 - 2014-05-09 08:11 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll 2014-05-14 19:50 - 2014-03-25 04:43 - 14175744 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll 2014-05-14 19:50 - 2014-03-25 04:09 - 12874240 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll 2014-05-14 19:48 - 2014-04-12 04:22 - 00155072 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys 2014-05-14 19:48 - 2014-04-12 04:22 - 00095680 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecdd.sys 2014-05-14 19:48 - 2014-04-12 04:19 - 01460736 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll 2014-05-14 19:48 - 2014-04-12 04:19 - 00136192 _____ (Microsoft Corporation) C:\windows\system32\sspicli.dll 2014-05-14 19:48 - 2014-04-12 04:19 - 00031232 _____ (Microsoft Corporation) C:\windows\system32\lsass.exe 2014-05-14 19:48 - 2014-04-12 04:19 - 00029184 _____ (Microsoft Corporation) C:\windows\system32\sspisrv.dll 2014-05-14 19:48 - 2014-04-12 04:19 - 00028160 _____ (Microsoft Corporation) C:\windows\system32\secur32.dll 2014-05-14 19:48 - 2014-04-12 04:12 - 00022016 _____ (Microsoft Corporation) C:\windows\SysWOW64\secur32.dll 2014-05-14 19:48 - 2014-04-12 04:10 - 00096768 _____ (Microsoft Corporation) C:\windows\SysWOW64\sspicli.dll 2014-05-14 19:48 - 2014-03-04 11:47 - 05550016 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe 2014-05-14 19:48 - 2014-03-04 11:44 - 00728064 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll 2014-05-14 19:48 - 2014-03-04 11:44 - 00722944 _____ (Microsoft Corporation) C:\windows\system32\objsel.dll 2014-05-14 19:48 - 2014-03-04 11:44 - 00424960 _____ (Microsoft Corporation) C:\windows\system32\KernelBase.dll 2014-05-14 19:48 - 2014-03-04 11:44 - 00340992 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll 2014-05-14 19:48 - 2014-03-04 11:44 - 00314880 _____ (Microsoft Corporation) C:\windows\system32\msv1_0.dll 2014-05-14 19:48 - 2014-03-04 11:44 - 00210944 _____ (Microsoft Corporation) C:\windows\system32\wdigest.dll 2014-05-14 19:48 - 2014-03-04 11:44 - 00086528 _____ (Microsoft Corporation) C:\windows\system32\TSpkg.dll 2014-05-14 19:48 - 2014-03-04 11:44 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\wincredprovider.dll 2014-05-14 19:48 - 2014-03-04 11:43 - 00455168 _____ (Microsoft Corporation) C:\windows\system32\winlogon.exe 2014-05-14 19:48 - 2014-03-04 11:43 - 00057344 _____ (Microsoft Corporation) C:\windows\system32\cngprovider.dll 2014-05-14 19:48 - 2014-03-04 11:43 - 00056832 _____ (Microsoft Corporation) C:\windows\system32\adprovider.dll 2014-05-14 19:48 - 2014-03-04 11:43 - 00053760 _____ (Microsoft Corporation) C:\windows\system32\capiprovider.dll 2014-05-14 19:48 - 2014-03-04 11:43 - 00052736 _____ (Microsoft Corporation) C:\windows\system32\dpapiprovider.dll 2014-05-14 19:48 - 2014-03-04 11:43 - 00044544 _____ (Microsoft Corporation) C:\windows\system32\dimsroam.dll 2014-05-14 19:48 - 2014-03-04 11:43 - 00022016 _____ (Microsoft Corporation) C:\windows\system32\credssp.dll 2014-05-14 19:48 - 2014-03-04 11:20 - 03969984 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntkrnlpa.exe 2014-05-14 19:48 - 2014-03-04 11:20 - 03914176 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntoskrnl.exe 2014-05-14 19:48 - 2014-03-04 11:17 - 00550912 _____ (Microsoft Corporation) C:\windows\SysWOW64\kerberos.dll 2014-05-14 19:48 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\windows\SysWOW64\objsel.dll 2014-05-14 19:48 - 2014-03-04 11:17 - 00259584 _____ (Microsoft Corporation) C:\windows\SysWOW64\msv1_0.dll 2014-05-14 19:48 - 2014-03-04 11:17 - 00247808 _____ (Microsoft Corporation) C:\windows\SysWOW64\schannel.dll 2014-05-14 19:48 - 2014-03-04 11:17 - 00172032 _____ (Microsoft Corporation) C:\windows\SysWOW64\wdigest.dll 2014-05-14 19:48 - 2014-03-04 11:17 - 00065536 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSpkg.dll 2014-05-14 19:48 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\windows\SysWOW64\cngprovider.dll 2014-05-14 19:48 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\windows\SysWOW64\adprovider.dll 2014-05-14 19:48 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\windows\SysWOW64\capiprovider.dll 2014-05-14 19:48 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\windows\SysWOW64\dpapiprovider.dll 2014-05-14 19:48 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\windows\SysWOW64\dimsroam.dll 2014-05-14 19:48 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\windows\SysWOW64\wincredprovider.dll 2014-05-14 19:48 - 2014-03-04 11:17 - 00017408 _____ (Microsoft Corporation) C:\windows\SysWOW64\credssp.dll 2014-05-14 19:48 - 2014-03-04 11:16 - 00274944 _____ (Microsoft Corporation) C:\windows\SysWOW64\KernelBase.dll 2014-05-13 14:20 - 2014-05-13 14:20 - 00273176 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgtdia.sys 2014-05-13 14:20 - 2014-05-13 14:20 - 00235800 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgldx64.sys 2014-05-13 14:06 - 2014-05-13 14:06 - 00323352 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgloga.sys 2014-05-13 14:05 - 2014-05-13 14:05 - 00191768 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgidsha.sys 2014-05-13 14:05 - 2014-05-13 14:05 - 00152344 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgdiska.sys 2014-05-13 14:05 - 2014-05-13 14:05 - 00130328 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgmfx64.sys 2014-05-13 14:04 - 2014-05-13 14:04 - 00236312 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgidsdrivera.sys 2014-05-13 14:04 - 2014-05-13 14:04 - 00031512 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgrkx64.sys 2014-05-10 19:12 - 2014-05-10 19:12 - 00002212 _____ () C:\Users\Public\Desktop\Google Earth.lnk 2014-05-10 19:12 - 2014-05-10 19:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth 2014-05-10 19:10 - 2014-06-07 08:16 - 00001106 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-05-10 19:10 - 2014-06-07 08:08 - 00001102 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-05-10 19:10 - 2014-05-10 19:11 - 00000000 ____D () C:\Program Files (x86)\Google 2014-05-10 19:10 - 2014-05-10 19:10 - 00004102 _____ () C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-05-10 19:10 - 2014-05-10 19:10 - 00003850 _____ () C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-05-10 19:07 - 2014-05-10 19:07 - 00629584 _____ (Chip Digital GmbH) C:\Users\User\Downloads\AnyBurn - CHIP-Downloader.exe 2014-05-10 19:06 - 2014-05-10 19:06 - 02090704 _____ (SharpNight Co,Ltd ) C:\Users\User\Downloads\7data-ar.exe 2014-05-10 19:00 - 2014-05-10 19:01 - 08267997 _____ () C:\Users\User\Downloads\gsmartcontrol-0.8.7.exe 2014-05-10 16:35 - 2014-05-11 08:31 - 00918672 _____ (Google Inc.) C:\Users\User\Downloads\GoogleEarthSetup.exe ==================== One Month Modified Files and Folders ======= 2014-06-07 08:41 - 2014-06-07 08:41 - 00016566 _____ () C:\Users\User\Desktop\FRST.txt 2014-06-07 08:41 - 2014-06-07 08:40 - 00000000 ____D () C:\FRST 2014-06-07 08:41 - 2013-11-18 15:00 - 00000000 ____D () C:\Users\User\AppData\Local\Temp 2014-06-07 08:40 - 2014-06-07 08:40 - 02072576 _____ (Farbar) C:\Users\User\Desktop\FRST64.exe 2014-06-07 08:36 - 2013-11-18 14:11 - 01576686 _____ () C:\windows\WindowsUpdate.log 2014-06-07 08:24 - 2013-11-18 21:26 - 00699552 _____ () C:\windows\system32\perfh007.dat 2014-06-07 08:24 - 2013-11-18 21:26 - 00149660 _____ () C:\windows\system32\perfc007.dat 2014-06-07 08:24 - 2009-07-14 07:13 - 01620152 _____ () C:\windows\system32\PerfStringBackup.INI 2014-06-07 08:23 - 2013-11-22 20:30 - 00000000 ____D () C:\Users\User\AppData\Roaming\ALDITALKVerbindungsassistent 2014-06-07 08:23 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Public\Libraries 2014-06-07 08:22 - 2014-05-22 19:08 - 00000000 ____D () C:\Users\User\AppData\Local\Windows Live 2014-06-07 08:18 - 2009-07-14 06:45 - 00013424 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-06-07 08:18 - 2009-07-14 06:45 - 00013424 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-06-07 08:16 - 2014-05-10 19:10 - 00001106 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-06-07 08:16 - 2013-11-25 07:06 - 00000884 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job 2014-06-07 08:14 - 2014-01-19 14:03 - 00000000 ____D () C:\ProgramData\MFAData 2014-06-07 08:08 - 2014-05-10 19:10 - 00001102 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-06-07 08:08 - 2013-11-18 14:59 - 00561632 _____ () C:\windows\system32\fastboot.set 2014-06-07 08:08 - 2009-07-14 07:08 - 00000006 ____H () C:\windows\Tasks\SA.DAT 2014-06-06 07:04 - 2013-12-20 23:18 - 00000000 ____D () C:\Users\User\Documents\Annabell 2014-06-06 06:17 - 2014-06-06 06:17 - 00000000 ____D () C:\Users\User\AppData\Local\Adobe 2014-06-05 08:39 - 2014-06-03 08:54 - 00000000 ____D () C:\Users\User\Desktop\Stall Erftstadt 2014-06-05 00:48 - 2009-07-14 07:09 - 00000000 ____D () C:\windows\System32\Tasks\WPD 2014-06-05 00:48 - 2009-07-14 05:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2014-06-05 00:45 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\PolicyDefinitions 2014-06-05 00:33 - 2013-11-25 07:06 - 00003822 _____ () C:\windows\System32\Tasks\Adobe Flash Player Updater 2014-06-05 00:32 - 2013-11-25 07:06 - 00692400 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe 2014-06-05 00:32 - 2013-11-25 07:06 - 00070832 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-06-05 00:08 - 2014-06-03 08:50 - 00000000 ____D () C:\Users\User\Desktop\stall 2014-06-05 00:02 - 2013-12-18 15:33 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office 2014-06-05 00:01 - 2014-06-05 00:01 - 00000000 ____D () C:\Program Files (x86)\MSECache 2014-06-04 20:10 - 2014-02-09 22:02 - 00000000 ____D () C:\Users\User\Desktop\Konverter 2014-06-04 07:50 - 2014-06-03 08:42 - 00001466 _____ () C:\windows\Tasks\167cb669-2408-4e73-a7b0-926eb9db8f9d-5.job 2014-06-04 07:50 - 2014-06-03 08:41 - 00001362 _____ () C:\windows\Tasks\167cb669-2408-4e73-a7b0-926eb9db8f9d-1.job 2014-06-04 07:50 - 2014-06-03 08:41 - 00001344 _____ () C:\windows\Tasks\167cb669-2408-4e73-a7b0-926eb9db8f9d-2.job 2014-06-04 07:50 - 2014-06-03 08:41 - 00000290 _____ () C:\windows\Tasks\System Speedup_UPDATES.job 2014-06-04 07:50 - 2014-06-03 08:41 - 00000282 _____ () C:\windows\Tasks\System Speedup_DEFAULT.job 2014-06-04 07:50 - 2014-06-03 08:40 - 00003440 _____ () C:\windows\Tasks\167cb669-2408-4e73-a7b0-926eb9db8f9d-3.job 2014-06-04 07:50 - 2014-06-03 08:40 - 00002186 _____ () C:\windows\Tasks\167cb669-2408-4e73-a7b0-926eb9db8f9d-4.job 2014-06-04 07:50 - 2014-06-03 08:40 - 00000948 _____ () C:\windows\Tasks\globalUpdateUpdateTaskMachineUA.job 2014-06-04 07:50 - 2014-06-03 08:40 - 00000944 _____ () C:\windows\Tasks\globalUpdateUpdateTaskMachineCore.job 2014-06-04 07:50 - 2014-03-16 11:54 - 00000420 _____ () C:\windows\Tasks\One-Click Optimizer.job 2014-06-03 20:28 - 2014-06-03 20:27 - 00003112 _____ () C:\windows\System32\Tasks\{AD7A21E0-E72E-4823-B642-1E2D16B4ABBC} 2014-06-03 20:10 - 2014-06-03 08:42 - 00004508 _____ () C:\windows\System32\Tasks\167cb669-2408-4e73-a7b0-926eb9db8f9d-5 2014-06-03 20:10 - 2014-06-03 08:41 - 00004404 _____ () C:\windows\System32\Tasks\167cb669-2408-4e73-a7b0-926eb9db8f9d-1 2014-06-03 20:10 - 2014-06-03 08:41 - 00004386 _____ () C:\windows\System32\Tasks\167cb669-2408-4e73-a7b0-926eb9db8f9d-2 2014-06-03 20:10 - 2014-06-03 08:41 - 00003958 _____ () C:\windows\System32\Tasks\globalUpdateUpdateTaskMachineUA 2014-06-03 20:10 - 2014-06-03 08:41 - 00003030 _____ () C:\windows\System32\Tasks\System Speedup_UPDATES 2014-06-03 20:10 - 2014-06-03 08:41 - 00002874 _____ () C:\windows\System32\Tasks\System Speedup_DEFAULT 2014-06-03 20:10 - 2014-06-03 08:40 - 00006482 _____ () C:\windows\System32\Tasks\167cb669-2408-4e73-a7b0-926eb9db8f9d-3 2014-06-03 20:10 - 2014-06-03 08:40 - 00005228 _____ () C:\windows\System32\Tasks\167cb669-2408-4e73-a7b0-926eb9db8f9d-4 2014-06-03 20:10 - 2014-06-03 08:40 - 00003704 _____ () C:\windows\System32\Tasks\globalUpdateUpdateTaskMachineCore 2014-06-03 20:10 - 2014-05-23 17:24 - 00003032 _____ () C:\windows\System32\Tasks\{0C28A62E-8130-4E75-AD5E-792F88984A0E} 2014-06-03 20:10 - 2014-05-23 17:05 - 00003032 _____ () C:\windows\System32\Tasks\{E3A71512-3D4C-47E7-A903-F9423DA8B658} 2014-06-03 20:10 - 2014-05-15 06:48 - 00002964 _____ () C:\windows\System32\Tasks\{E7EC90D4-9B09-46E3-9C2C-8717417F45D0} 2014-06-03 20:10 - 2014-04-01 16:37 - 00003128 _____ () C:\windows\System32\Tasks\{C952ADDC-39D5-4CBB-B33D-DDBB8452EAE5} 2014-06-03 20:10 - 2014-03-17 14:29 - 00003048 _____ () C:\windows\System32\Tasks\{2EDD31B8-2238-4AD4-8019-D928FEF199F4} 2014-06-03 20:10 - 2014-03-16 11:54 - 00003242 _____ () C:\windows\System32\Tasks\One-Click Optimizer 2014-06-03 20:10 - 2014-02-12 18:18 - 00003134 _____ () C:\windows\System32\Tasks\System Speedup 2014-06-03 20:10 - 2014-01-19 14:07 - 00003232 _____ () C:\windows\System32\Tasks\SidebarExecute 2014-06-03 20:10 - 2013-12-18 14:43 - 00003128 _____ () C:\windows\System32\Tasks\{6610DB64-5724-4496-8C4A-777125BE37D4} 2014-06-03 20:10 - 2013-11-30 08:15 - 00002964 _____ () C:\windows\System32\Tasks\{236E1664-5506-4B0C-92B8-00370A6EFE56} 2014-06-03 20:10 - 2013-11-30 06:58 - 00003032 _____ () C:\windows\System32\Tasks\{F5A4EA52-F3E2-4D2A-A1E4-537D1066816B} 2014-06-03 20:10 - 2013-11-23 02:09 - 00003534 _____ () C:\windows\System32\Tasks\CreateChoiceProcessTask 2014-06-03 08:58 - 2014-06-03 08:40 - 00000000 ____D () C:\Users\User\AppData\Roaming\systweak 2014-06-03 08:42 - 2014-06-03 08:40 - 00000000 ____D () C:\Users\User\AppData\Roaming\System Speedup 2014-06-03 08:40 - 2014-06-03 08:40 - 00000000 ____D () C:\Users\User\AppData\Local\globalUpdate 2014-06-03 08:40 - 2014-06-03 08:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Speedup 2014-05-31 09:25 - 2014-05-31 09:25 - 00000000 ____D () C:\Program Files (x86)\ESET 2014-05-30 23:30 - 2014-05-30 23:30 - 00000000 ____D () C:\Program Files\suprasavings 2014-05-30 23:30 - 2014-05-30 23:27 - 00000000 ____D () C:\Program Files\003 2014-05-30 08:30 - 2014-01-13 20:09 - 00000000 ____D () C:\ProgramData\Lenovo 2014-05-30 08:29 - 2014-05-30 08:29 - 00000000 ____H () C:\windows\system32\Drivers\Msft_Kernel_ldiagio_uefi_01009.Wdf 2014-05-30 08:29 - 2014-05-30 08:29 - 00000000 ____D () C:\SWTOOLS 2014-05-29 23:38 - 2014-01-19 15:18 - 00000000 ____D () C:\Users\User\AppData\Roaming\DVDVideoSoft 2014-05-29 23:11 - 2014-03-29 02:45 - 00122584 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\MBAMSwissArmy.sys 2014-05-29 22:37 - 2014-02-20 22:48 - 00000000 ____D () C:\AdwCleaner 2014-05-29 18:59 - 2014-05-29 18:59 - 00000000 __SHD () C:\Users\User\AppData\Local\EmieUserList 2014-05-29 18:59 - 2014-05-29 18:59 - 00000000 __SHD () C:\Users\User\AppData\Local\EmieSiteList 2014-05-29 18:18 - 2014-04-07 14:08 - 00000000 ____D () C:\Users\User\Documents\Youcam 2014-05-29 16:51 - 2014-03-29 02:44 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-05-29 11:31 - 2014-03-29 02:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-27 21:14 - 2014-05-27 20:51 - 00000000 ___SD () C:\32788R22FWJFW 2014-05-27 20:48 - 2014-05-27 20:48 - 00000000 ____D () C:\Users\Default\AppData\Local\temp 2014-05-27 20:48 - 2014-05-27 20:48 - 00000000 ____D () C:\Users\Default User\AppData\Local\temp 2014-05-27 20:48 - 2014-05-27 20:48 - 00000000 ____D () C:\Users\_pcsuite_backup_\AppData\Local\temp 2014-05-26 21:02 - 2014-05-26 20:59 - 00036048 _____ () C:\Users\User\Downloads\Addition.txt 2014-05-26 21:02 - 2014-05-26 20:57 - 00036908 _____ () C:\Users\User\Downloads\FRST.txt 2014-05-26 20:56 - 2014-05-26 20:56 - 07830845 _____ (FreeDownloadManager.ORG ) C:\Users\User\Downloads\fdminst-3.9.4.1470.exe 2014-05-26 20:52 - 2014-05-26 20:52 - 02066944 _____ (Farbar) C:\Users\User\Downloads\FRST64.exe 2014-05-24 08:43 - 2013-11-23 08:13 - 03586704 _____ () C:\windows\system32\PsBoot.log 2014-05-24 08:43 - 2013-11-23 08:13 - 00905986 _____ () C:\windows\system32\defragLog.log 2014-05-23 17:44 - 2014-03-18 10:33 - 00000000 ____D () C:\Users\User\AppData\Local\Abelssoft 2014-05-23 17:44 - 2013-11-18 15:00 - 00000000 ____D () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo 2014-05-23 17:44 - 2009-07-29 09:23 - 00000000 ___RD () C:\Users\Public\Recorded TV 2014-05-23 17:44 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\registration 2014-05-23 17:08 - 2014-05-23 17:07 - 00000000 ____D () C:\Users\User\AppData\Roaming\Temp 2014-05-22 13:13 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\system32\NDF 2014-05-22 12:28 - 2009-07-14 06:45 - 00460208 _____ () C:\windows\system32\FNTCACHE.DAT 2014-05-22 11:40 - 2014-03-31 12:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2014-05-22 11:40 - 2014-01-19 14:07 - 00000981 _____ () C:\Users\Public\Desktop\AVG 2014.lnk 2014-05-19 09:54 - 2013-12-29 23:16 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2014-05-18 08:49 - 2014-05-18 08:49 - 00017978 _____ () C:\Users\User\Downloads\Ideen Innenausbau Vorzelt.htm 2014-05-18 08:49 - 2014-05-18 08:49 - 00000000 ____D () C:\Users\User\Downloads\Ideen Innenausbau Vorzelt-Dateien 2014-05-14 21:44 - 2013-11-18 15:02 - 00000000 ___RD () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-05-14 21:44 - 2013-11-18 15:02 - 00000000 ___RD () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-05-14 21:39 - 2014-05-06 20:50 - 00000000 ___SD () C:\windows\system32\CompatTel 2014-05-14 20:32 - 2013-12-18 15:33 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-05-14 20:25 - 2013-11-22 22:48 - 00000000 ____D () C:\windows\system32\MRT 2014-05-13 14:20 - 2014-05-13 14:20 - 00273176 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgtdia.sys 2014-05-13 14:20 - 2014-05-13 14:20 - 00235800 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgldx64.sys 2014-05-13 14:06 - 2014-05-13 14:06 - 00323352 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgloga.sys 2014-05-13 14:05 - 2014-05-13 14:05 - 00191768 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgidsha.sys 2014-05-13 14:05 - 2014-05-13 14:05 - 00152344 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgdiska.sys 2014-05-13 14:05 - 2014-05-13 14:05 - 00130328 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgmfx64.sys 2014-05-13 14:04 - 2014-05-13 14:04 - 00236312 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgidsdrivera.sys 2014-05-13 14:04 - 2014-05-13 14:04 - 00031512 _____ (AVG Technologies CZ, s.r.o.) C:\windows\system32\Drivers\avgrkx64.sys 2014-05-12 07:26 - 2014-03-29 02:44 - 00091352 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbamchameleon.sys 2014-05-12 07:26 - 2014-03-29 02:44 - 00063704 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mwac.sys 2014-05-12 07:25 - 2014-02-20 16:49 - 00025816 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbam.sys 2014-05-11 08:31 - 2014-05-10 16:35 - 00918672 _____ (Google Inc.) C:\Users\User\Downloads\GoogleEarthSetup.exe 2014-05-10 19:12 - 2014-05-10 19:12 - 00002212 _____ () C:\Users\Public\Desktop\Google Earth.lnk 2014-05-10 19:12 - 2014-05-10 19:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth 2014-05-10 19:12 - 2013-11-29 21:47 - 00000000 ____D () C:\Users\User\AppData\Local\Google 2014-05-10 19:11 - 2014-05-10 19:10 - 00000000 ____D () C:\Program Files (x86)\Google 2014-05-10 19:10 - 2014-05-10 19:10 - 00004102 _____ () C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-05-10 19:10 - 2014-05-10 19:10 - 00003850 _____ () C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-05-10 19:07 - 2014-05-10 19:07 - 00629584 _____ (Chip Digital GmbH) C:\Users\User\Downloads\AnyBurn - CHIP-Downloader.exe 2014-05-10 19:06 - 2014-05-10 19:06 - 02090704 _____ (SharpNight Co,Ltd ) C:\Users\User\Downloads\7data-ar.exe 2014-05-10 19:01 - 2014-05-10 19:00 - 08267997 _____ () C:\Users\User\Downloads\gsmartcontrol-0.8.7.exe 2014-05-10 00:17 - 2014-02-15 02:55 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-05-09 08:14 - 2014-05-14 19:50 - 00477184 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll 2014-05-09 08:11 - 2014-05-14 19:50 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-04-25 22:08 ==================== End Of Log ============================ Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 06-06-2014 Ran by User at 2014-06-07 08:42:57 Running from C:\Users\User\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: AVG Internet Security 2014 (Disabled - Up to date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: AVG Internet Security 2014 (Disabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664} FW: AVG Internet Security 2014 (Enabled) {36AFA1E1-4CDC-7EF8-11EE-C77C3581ABA2} ==================== Installed Programs ====================== Adobe Flash Player 13 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 13.0.0.214 - Adobe Systems Incorporated) Adobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.214 - Adobe Systems Incorporated) Adobe Reader XI (11.0.07) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.07 - Adobe Systems Incorporated) ALDI TALK Verbindungsassistent (HKLM-x32\...\ALDITALKVerbindungsassistent) (Version: - ALDI TALK Verbindungsassistent) Amazon Kindle (HKCU\...\Amazon Kindle) (Version: - Amazon) AMD Fuel (Version: 2010.1129.1139.20817 - Ihr Firmenname) Hidden Ashampoo HDD Control 2 v.2.1.0 (HKLM-x32\...\{4209F371-A431-385E-2D7E-ACDA5DA3BA0B}_is1) (Version: 2.1.0 - Ashampoo GmbH & Co. KG) Ashampoo WinOptimizer 2014 v.1.0.0 (HKLM-x32\...\{4209F371-99CD-68CB-1C29-9910F8F9BD96}_is1) (Version: 1.0.0 - Ashampoo GmbH & Co. KG) Atheros Client Installation Program (HKLM-x32\...\{D3694B69-6F8C-42D3-8A0A-EB2AB528C02C}) (Version: 7.0 - Atheros) Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 1.0.0.33 - Atheros Communications Inc.) ATI AVIVO64 Codecs (Version: 11.6.0.51129 - ATI Technologies Inc.) Hidden ATI Catalyst Install Manager (HKLM\...\{9AEE3659-C7CE-D3E7-8161-0D616D9EB260}) (Version: 3.0.800.0 - ATI Technologies, Inc.) AVG 2014 (HKLM\...\AVG) (Version: 2014.0.4592 - AVG Technologies) AVG 2014 (Version: 14.0.3955 - AVG Technologies) Hidden AVG 2014 (Version: 14.0.4592 - AVG Technologies) Hidden Benutzerhandbuch (x32 Version: 1.0.0.6 - Lenovo) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2010.1129.1139.20817 - ATI) Hidden Catalyst Control Center InstallProxy (x32 Version: 2010.1129.1139.20817 - ATI Technologies, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2010.1129.1139.20817 - ATI) Hidden Catalyst Control Center Profiles Mobile (x32 Version: 2010.1129.1139.20817 - ATI) Hidden CCC Help Chinese Standard (x32 Version: 2010.1129.1138.20817 - ATI) Hidden CCC Help Chinese Traditional (x32 Version: 2010.1129.1138.20817 - ATI) Hidden CCC Help Czech (x32 Version: 2010.1129.1138.20817 - ATI) Hidden CCC Help Danish (x32 Version: 2010.1129.1138.20817 - ATI) Hidden CCC Help Dutch (x32 Version: 2010.1129.1138.20817 - ATI) Hidden CCC Help English (x32 Version: 2010.1129.1138.20817 - ATI) Hidden CCC Help Finnish (x32 Version: 2010.1129.1138.20817 - ATI) Hidden CCC Help French (x32 Version: 2010.1129.1138.20817 - ATI) Hidden CCC Help German (x32 Version: 2010.1129.1138.20817 - ATI) Hidden CCC Help Greek (x32 Version: 2010.1129.1138.20817 - ATI) Hidden CCC Help Hungarian (x32 Version: 2010.1129.1138.20817 - ATI) Hidden CCC Help Italian (x32 Version: 2010.1129.1138.20817 - ATI) Hidden CCC Help Japanese (x32 Version: 2010.1129.1138.20817 - ATI) Hidden CCC Help Korean (x32 Version: 2010.1129.1138.20817 - ATI) Hidden CCC Help Norwegian (x32 Version: 2010.1129.1138.20817 - ATI) Hidden CCC Help Polish (x32 Version: 2010.1129.1138.20817 - ATI) Hidden CCC Help Portuguese (x32 Version: 2010.1129.1138.20817 - ATI) Hidden CCC Help Russian (x32 Version: 2010.1129.1138.20817 - ATI) Hidden CCC Help Spanish (x32 Version: 2010.1129.1138.20817 - ATI) Hidden CCC Help Swedish (x32 Version: 2010.1129.1138.20817 - ATI) Hidden CCC Help Thai (x32 Version: 2010.1129.1138.20817 - ATI) Hidden ccc-core-static (x32 Version: 2010.1129.1139.20817 - Ihr Firmenname) Hidden ccc-utility64 (Version: 2010.1129.1139.20817 - ATI) Hidden Compatibility Pack für 2007 Office System (HKLM-x32\...\{90120000-0020-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.46.0.50 - Conexant) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{349F73CA-653A-43A6-AE77-970B07D6EDA0}) (Version: - Microsoft) Energy Management (HKLM-x32\...\InstallShield_{D0956C11-0F60-43FE-99AD-524E833471BB}) (Version: 6.0.1.5 - Lenovo) Energy Management (x32 Version: 6.0.1.5 - Lenovo) Hidden EPSON Attach To Email (HKLM-x32\...\InstallShield_{20C45B32-5AB6-46A4-94EF-58950CAF05E5}) (Version: 1.01.0000 - SEIKO EPSON) EPSON Attach To Email (x32 Version: 1.01.0000 - SEIKO EPSON) Hidden Epson Benutzerhandbuch WF-2510 Series (HKLM-x32\...\WF-2510 Series Useg) (Version: - ) Epson Connect Guide (HKLM-x32\...\Epson Connect Guide) (Version: - ) Epson Easy Photo Print 2 (HKLM-x32\...\{02A312B5-1542-47B6-BFE9-F51358C39E86}) (Version: 2.4.0.0 - SEIKO EPSON CORPORATION) Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) (HKLM-x32\...\{B2D55EB8-32C5-4B43-9006-9E97DECBA178}) (Version: 1.00.0000 - SEIKO EPSON CORPORATION2) Epson Event Manager (HKLM-x32\...\{8F01524C-0676-4CC1-B4AE-64753C723391}) (Version: 3.01.0005 - Seiko Epson Corporation) Epson FAX Utility (HKLM-x32\...\{0CBE6C93-CB2E-4378-91EE-12BE6D4E2E4A}) (Version: 1.31.00 - SEIKO EPSON CORPORATION) EPSON File Manager (HKLM-x32\...\{D02F30FB-0BC4-419A-9B9C-ADC610029B50}) (Version: 1.3.2.0 - ) Epson Netzwerkhandbuch WF-2510 Series (HKLM-x32\...\WF-2510 Series Netg) (Version: - ) Epson PC-FAX Driver (HKLM-x32\...\EPSON PC-FAX Driver 2) (Version: - ) EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - Seiko Epson Corporation) EPSON Scan Assistant (HKLM-x32\...\{2A88F1BF-7041-4E42-84B1-6B4ACB83AC64}) (Version: 1.10.00 - ) EpsonNet Config V4 (HKLM-x32\...\{08013FB5-DF8B-4D29-9B5E-B3DE88EBA6CA}) (Version: 4.1.1 - SEIKO EPSON CORPORATION) EpsonNet Print (HKLM-x32\...\{3E31400D-274E-4647-916C-2CACC3741799}) (Version: 2.5.00 - SEIKO EPSON CORPORATION) ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version: - ) Free Audio Converter version 5.0.32.1230 (HKLM-x32\...\Free Audio Converter_is1) (Version: 5.0.32.1230 - DVDVideoSoft Ltd.) Free MP3 Converter (HKLM-x32\...\Free MP3 Converter_is1) (Version: - EIPC) Free YouTube to MP3 Converter version 3.12.32.327 (HKLM-x32\...\Free YouTube to MP3 Converter_is1) (Version: 3.12.32.327 - DVDVideoSoft Ltd.) Google Earth (HKLM-x32\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google) Google Update Helper (x32 Version: 1.3.25.0 - Google Inc.) Hidden Java 7 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217051FF}) (Version: 7.0.510 - Oracle) Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Lenovo DirectShare (HKLM-x32\...\InstallShield_{B2164CCB-C002-4B80-8550-7535D80DF237}) (Version: 1.0.1.38 - ArcSoft) Lenovo DirectShare (x32 Version: 1.0.1.38 - ArcSoft) Hidden Lenovo EE Boot Optimizer (HKLM\...\Lenovo EE Boot Optimizer) (Version: 0.0.1.5 - Lenovo) Lenovo OneKey Recovery (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 7.0.1628 - CyberLink Corp.) Lenovo OneKey Recovery (Version: 7.0.1628 - CyberLink Corp.) Hidden Lenovo PowerDVD 10 (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.2318.52 - CyberLink Corp.) Lenovo PowerDVD 10 (x32 Version: 10.0.2318.52 - CyberLink Corp.) Hidden Lenovo YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 3.1.3603 - CyberLink Corp.) Lenovo YouCam (x32 Version: 3.1.3603 - CyberLink Corp.) Hidden Malwarebytes Anti-Malware Version 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation) Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Office Access MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Excel MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Office 64-bit Components 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office OneNote MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Professional 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Office Proof (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (French) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Italian) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proofing (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Publisher MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Shared 64-bit MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Single Image 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Word MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{4FFA2088-8317-3B14-93CD-4C699DB37843}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Mozilla Firefox 29.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 29.0.1 (x86 de)) (Version: 29.0.1 - Mozilla) MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden OpenOffice 4.0.1 (HKLM-x32\...\{0AEC308E-7EB3-47F7-BB59-F2C9C6166B27}) (Version: 4.01.9714 - Apache Software Foundation) PowerXpressHybrid (x32 Version: 1.00.0000 - ATI) Hidden Realtek USB 2.0 Reader Driver (HKLM-x32\...\{62BBB2F0-E220-4821-A564-730807D2C34D}) (Version: 6.1.7600.10003 - Realtek Semiconductor Corp.) SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.34.0 - SAMSUNG Electronics Co., Ltd.) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (x32 Version: - Microsoft) Hidden suprasavings (HKLM\...\suprasavings) (Version: 2.0.1 - suprasavings) <==== ATTENTION Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.1.12.0 - Synaptics Incorporated) Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{B4A38370-2ADB-46B0-A1B0-0C4A2F7DCA31}) (Version: - Microsoft) Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{302A8FE3-EBF5-486C-A431-16A1CD914443}) (Version: - Microsoft) Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{302A8FE3-EBF5-486C-A431-16A1CD914443}) (Version: - Microsoft) Update for Microsoft InfoPath 2010 (KB2817369) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{4EEA3D3E-989C-4DF4-AB0A-3042C0C12AA3}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DADF7E25-FFA4-4D02-BE84-1DAE62C18516}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{287A1E92-9E41-4BC1-8920-B3D0E9220800}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{9D69691D-823D-4C3E-9B12-563A3F520366}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{ECFE33A3-B8B7-439A-ADE4-59FBD29EF9B8}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{ECFE33A3-B8B7-439A-ADE4-59FBD29EF9B8}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{35698CB7-AAA2-4577-B505-DBFF504AEF23}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{5AA578BB-759C-40FD-9661-A737C0884541}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2825635) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{F1A20C69-9FE5-40FD-9CD5-84EABC2EF64A}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2850079) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0407-0000-0000000FF1CE}_Office14.SingleImage_{C70D2038-A2C4-4A99-87DE-5272BB44F0CE}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2850079) 32-Bit Edition (HKLM-x32\...\{90140000-001F-040C-0000-0000000FF1CE}_Office14.SingleImage_{82F87E28-B18E-46D6-A399-E2F19CF5949B}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2850079) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0410-0000-0000000FF1CE}_Office14.SingleImage_{4B93560B-F33D-4A67-A224-F5E1C329BD22}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2878225) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{EFF5EBA3-40AD-4859-85E7-3C1CF4F297EB}) (Version: - Microsoft) Update for Microsoft OneNote 2010 (KB2837595) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{51CCA922-A0CC-47C4-8910-6936D97CAC2E}) (Version: - Microsoft) Update for Microsoft OneNote 2010 (KB2837595) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{51CCA922-A0CC-47C4-8910-6936D97CAC2E}) (Version: - Microsoft) Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition (HKLM-x32\...\{90140000-001A-0407-0000-0000000FF1CE}_Office14.SingleImage_{A0657506-69DC-44AE-8DC1-58E7C6F5B1C9}) (Version: - Microsoft) Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{2AB483F1-C86E-427A-83B4-23889B03512D}) (Version: - Microsoft) Update for Microsoft PowerPoint 2010 (KB2837579) 32-Bit Edition (HKLM-x32\...\{90140000-0018-0407-0000-0000000FF1CE}_Office14.SingleImage_{40EC8FB1-5202-469D-9232-C28FB1C6FC64}) (Version: - Microsoft) Update for Microsoft PowerPoint 2010 (KB2837579) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{2BA40F82-F3A4-441C-BF1A-ED4C42FF4872}) (Version: - Microsoft) Update for Microsoft SharePoint Workspace 2010 (KB2760601) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{F9F5A080-AF38-4966-9A6B-C43DCA465035}) (Version: - Microsoft) Update for Microsoft Visio 2010 (KB2880526) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{7B29D8B8-6A87-496C-A65E-B935E740448A}) (Version: - Microsoft) Update for Microsoft Visio Viewer 2010 (KB2837587) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{38CF30E4-3348-4BD1-A859-B630C355A56F}) (Version: - Microsoft) UserGuide (HKLM-x32\...\InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}) (Version: 1.0.0.6 - Lenovo) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3502.0922 - Microsoft Corporation) Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Fotogalerie (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4225.0 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Language Selector (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Mesh (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX control for remote connections (HKLM-x32\...\{C5398A89-516C-4DAF-BA07-EE7949090E56}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Messenger (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live MIME IFilter (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Remote Client (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Client Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Service (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Service Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows-Treiberpaket - Lenovo (ACPIVPC) System (12/02/2010 6.1.0.1) (HKLM\...\EA12B1FB53CE4E387C31A85236C41EF559B5E392) (Version: 12/02/2010 6.1.0.1 - Lenovo) WMV9/VC-1 Video Playback (Version: 1.00.0000 - ATI Technologies Inc.) Hidden ==================== Restore Points ========================= 27-05-2014 18:29:04 ComboFix created restore point 04-06-2014 22:01:18 Compatibility Pack für 2007 Office System wird installiert 04-06-2014 22:36:13 Installed Microsoft Fix it 50123 04-06-2014 22:40:46 Windows Update 05-06-2014 21:47:05 Windows Update ==================== Hosts content: ========================== 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {1BA0C68A-B30E-419F-B156-489E8B56992C} - System32\Tasks\167cb669-2408-4e73-a7b0-926eb9db8f9d-3 => C:\Program Files (x86)\PlusVid\167cb669-2408-4e73-a7b0-926eb9db8f9d-3.exe Task: {24A64AE9-196E-44EB-A038-9E108B54E013} - System32\Tasks\167cb669-2408-4e73-a7b0-926eb9db8f9d-5 => C:\Program Files (x86)\PlusVid\167cb669-2408-4e73-a7b0-926eb9db8f9d-5.exe Task: {27F4D992-7D67-4BFC-A758-02C3E550768A} - System32\Tasks\{236E1664-5506-4B0C-92B8-00370A6EFE56} => Firefox.exe Task: {280D4595-05B8-4330-A375-5E6F7FF5A1EF} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-10] (Google Inc.) Task: {34FBFD8E-7777-49B5-B9F9-7D26648722B1} - System32\Tasks\One-Click Optimizer => C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 2014\WO2014.exe [2013-12-18] (Ashampoo Development GmbH & Co. KG) Task: {35FA6C9D-A751-47F6-9543-B3F69F5B1C92} - \MySearchDial No Task File <==== ATTENTION Task: {4B196891-62EB-43EA-9123-25F43831EA47} - System32\Tasks\167cb669-2408-4e73-a7b0-926eb9db8f9d-2 => C:\Program Files (x86)\PlusVid\167cb669-2408-4e73-a7b0-926eb9db8f9d-2.exe Task: {4DB0305C-7485-41C3-97A1-50861330F205} - System32\Tasks\{0C28A62E-8130-4E75-AD5E-792F88984A0E} => C:\Program Files (x86)\ALDITALKVerbindungsassistent\ALDITALKVerbindungsassistent.exe [2013-11-22] () Task: {6B5EF4BE-B91E-4BF1-8D49-A6F70D1BCBA9} - System32\Tasks\MirageAgent => C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [2010-12-05] (CyberLink) Task: {74AD6751-565E-4AEA-96AE-0C7231D1C45F} - System32\Tasks\System Speedup => C:\Program Files (x86)\System Speedup\SystemSpeedup.exe Task: {782A712A-AB00-401A-816A-04D0BD85220D} - System32\Tasks\167cb669-2408-4e73-a7b0-926eb9db8f9d-4 => C:\Program Files (x86)\PlusVid\167cb669-2408-4e73-a7b0-926eb9db8f9d-4.exe Task: {8D6504AF-2D29-4A3E-A719-E28CE7630394} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-06-05] (Adobe Systems Incorporated) Task: {92C11FF2-93F5-4C00-B258-3806BF022982} - System32\Tasks\System Speedup_UPDATES => C:\Program Files (x86)\System Speedup\SystemSpeedup.exe Task: {996C4271-7685-4C67-8F9E-E33E280B1E28} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION Task: {9D9E50B7-44B5-43A8-8081-7A889008081D} - System32\Tasks\{F5A4EA52-F3E2-4D2A-A1E4-537D1066816B} => C:\Program Files (x86)\ALDITALKVerbindungsassistent\ALDITALKVerbindungsassistent.exe [2013-11-22] () Task: {B8808CBF-C29E-4D04-A903-41AA55456195} - System32\Tasks\167cb669-2408-4e73-a7b0-926eb9db8f9d-1 => C:\Program Files (x86)\PlusVid\PlusVid-codedownloader.exe Task: {C034590B-9EAD-4187-BA73-27BD91445E7A} - System32\Tasks\Games\UpdateCheck_S-1-5-21-769514679-1109052257-2407649337-1001 Task: {C7502942-74F3-47D7-8EBA-538188FA65BD} - System32\Tasks\{E3A71512-3D4C-47E7-A903-F9423DA8B658} => C:\Program Files (x86)\ALDITALKVerbindungsassistent\ALDITALKVerbindungsassistent.exe [2013-11-22] () Task: {C7A7F46F-BC35-49EE-B2F7-69116715912A} - System32\Tasks\{E7EC90D4-9B09-46E3-9C2C-8717417F45D0} => Firefox.exe Task: {CA9B69B1-2119-4F2E-8C06-88C95B57BB48} - System32\Tasks\System Speedup_DEFAULT => C:\Program Files (x86)\System Speedup\SystemSpeedup.exe Task: {D0015260-D497-474C-8688-22138C71DAD8} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-10] (Google Inc.) Task: {D3582BBA-CA96-4C45-91F7-E22F147DD837} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION Task: {F77D689F-F513-4A0F-9F6B-6DA986902247} - \RegClean Pro No Task File <==== ATTENTION Task: C:\windows\Tasks\167cb669-2408-4e73-a7b0-926eb9db8f9d-1.job => C:\Program Files (x86)\PlusVid\PlusVid-codedownloader.exe Task: C:\windows\Tasks\167cb669-2408-4e73-a7b0-926eb9db8f9d-2.job => C:\Program Files (x86)\PlusVid\167cb669-2408-4e73-a7b0-926eb9db8f9d-2.exe Task: C:\windows\Tasks\167cb669-2408-4e73-a7b0-926eb9db8f9d-3.job => C:\Program Files (x86)\PlusVid\167cb669-2408-4e73-a7b0-926eb9db8f9d-3.exe Task: C:\windows\Tasks\167cb669-2408-4e73-a7b0-926eb9db8f9d-4.job => C:\Program Files (x86)\PlusVid\167cb669-2408-4e73-a7b0-926eb9db8f9d-4.exe Task: C:\windows\Tasks\167cb669-2408-4e73-a7b0-926eb9db8f9d-5.job => C:\Program Files (x86)\PlusVid\167cb669-2408-4e73-a7b0-926eb9db8f9d-5.exe Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION Task: C:\windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\windows\Tasks\One-Click Optimizer.job => C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 2014\WO2014.exe Task: C:\windows\Tasks\System Speedup_DEFAULT.job => C:\Program Files (x86)\System Speedup\SystemSpeedup.exe Task: C:\windows\Tasks\System Speedup_UPDATES.job => C:\Program Files (x86)\System Speedup\SystemSpeedup.exe ==================== Loaded Modules (whitelisted) ============= 2014-03-16 12:49 - 2012-07-30 10:48 - 01518504 _____ () C:\Program Files (x86)\Ashampoo\Ashampoo HDD Control 2\AHDDC2_Service.exe 2013-11-22 20:30 - 2013-11-22 20:30 - 00358968 _____ () C:\Program Files (x86)\ALDITALKVerbindungsassistent\ALDITALKVerbindungsassistent_Service.exe 2010-11-29 13:50 - 2010-11-29 13:50 - 00079872 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Services.dll 2010-11-29 13:50 - 2010-11-29 13:50 - 00073728 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll 2008-12-20 05:20 - 2013-11-18 14:57 - 00054088 _____ () C:\Program Files (x86)\Lenovo\Energy Management\HookLib.dll 2008-12-20 05:20 - 2013-11-18 14:57 - 00054088 _____ () C:\Program Files (x86)\Lenovo\Energy Management\kbdhook.dll 2013-11-22 20:30 - 2013-11-22 20:30 - 00510520 _____ () C:\Program Files (x86)\ALDITALKVerbindungsassistent\ALDITALKVerbindungsassistent_Launcher.exe 2013-11-22 20:30 - 2013-11-22 20:30 - 01792568 _____ () C:\Program Files (x86)\ALDITALKVerbindungsassistent\ALDITALKVerbindungsassistent.exe 2013-11-22 20:30 - 2013-11-22 20:30 - 00102400 _____ () C:\Program Files (x86)\ALDITALKVerbindungsassistent\WtgDatabase.dll 2013-11-22 20:30 - 2013-11-22 20:30 - 00106496 _____ () C:\Program Files (x86)\ALDITALKVerbindungsassistent\WtgUtil.dll 2013-11-22 20:30 - 2013-11-22 20:30 - 00090112 _____ () C:\Program Files (x86)\ALDITALKVerbindungsassistent\WtgPorts.dll 2013-11-22 20:30 - 2013-11-22 20:30 - 00200704 _____ () C:\Program Files (x86)\ALDITALKVerbindungsassistent\WtgDetection.dll 2013-11-22 20:30 - 2013-11-22 20:30 - 00086016 _____ () C:\Program Files (x86)\ALDITALKVerbindungsassistent\WtgDialup.dll 2013-11-22 20:30 - 2013-11-22 20:30 - 00012288 _____ () C:\Program Files (x86)\ALDITALKVerbindungsassistent\WTGDebugs.dll 2013-11-22 20:30 - 2013-11-22 20:30 - 00073728 _____ () C:\Program Files (x86)\ALDITALKVerbindungsassistent\WtgDriverInstall.dll 2013-11-22 20:30 - 2013-11-22 20:30 - 00569344 _____ () C:\Program Files (x86)\ALDITALKVerbindungsassistent\WtgCore.dll 2013-11-22 20:30 - 2013-11-22 20:30 - 00139264 _____ () C:\Program Files (x86)\ALDITALKVerbindungsassistent\WtgBluetooth.dll 2013-11-22 20:30 - 2013-11-22 20:30 - 00204800 _____ () C:\Program Files (x86)\ALDITALKVerbindungsassistent\LiveBoxCM.dll 2013-11-22 20:30 - 2013-11-22 20:30 - 00823296 _____ () C:\Program Files (x86)\ALDITALKVerbindungsassistent\LIBEAY32.dll 2013-11-22 20:30 - 2013-11-22 20:30 - 00126976 _____ () C:\Program Files (x86)\ALDITALKVerbindungsassistent\WtgWiFi.dll 2013-11-22 20:30 - 2013-11-22 20:30 - 00614400 _____ () C:\Program Files (x86)\ALDITALKVerbindungsassistent\WTGXMLUtil.dll 2013-11-22 20:30 - 2013-11-22 20:30 - 00303104 _____ () C:\Program Files (x86)\ALDITALKVerbindungsassistent\WTGSMSPCClient.Dll 2014-02-15 02:55 - 2014-05-10 00:17 - 03839088 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll 2014-05-13 21:18 - 2014-06-05 00:32 - 16361136 _____ () C:\windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys => ""="Driver" ==================== EXE Association (whitelisted) ============= ==================== Disabled items from MSCONFIG ============== ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (06/07/2014 08:29:09 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: wmpnetwk.exe, Version: 12.0.7601.17514, Zeitstempel: 0x4ce7ae7f Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7601.18409, Zeitstempel: 0x5315a05a Ausnahmecode: 0x0000046b Fehleroffset: 0x000000000000940d ID des fehlerhaften Prozesses: 0x9f4 Startzeit der fehlerhaften Anwendung: 0xwmpnetwk.exe0 Pfad der fehlerhaften Anwendung: wmpnetwk.exe1 Pfad des fehlerhaften Moduls: wmpnetwk.exe2 Berichtskennung: wmpnetwk.exe3 Error: (06/07/2014 08:28:51 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm wmplayer.exe, Version 12.0.7601.18150 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 860 Startzeit: 01cf82175febeea1 Endzeit: 57 Anwendungspfad: C:\Program Files (x86)\Windows Media Player\wmplayer.exe Berichts-ID: Error: (06/07/2014 08:28:39 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm firefox.exe, Version 29.0.1.5239 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: bdc Startzeit: 01cf8218e11686b7 Endzeit: 375 Anwendungspfad: C:\Program Files (x86)\Mozilla Firefox\firefox.exe Berichts-ID: Error: (06/07/2014 08:28:24 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm Explorer.EXE, Version 6.1.7601.17567 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 764 Startzeit: 01cf8216ded3a31f Endzeit: 52 Anwendungspfad: C:\windows\Explorer.EXE Berichts-ID: aa3f324b-ee0c-11e3-abec-b870f43d656a Error: (06/06/2014 07:05:22 AM) (Source: AHDDC2_Service.exe) (EventID: 0) (User: ) Description: Cannot terminate an externally created thread Error: (06/05/2014 11:49:14 PM) (Source: AHDDC2_Service.exe) (EventID: 0) (User: ) Description: Cannot terminate an externally created thread Error: (06/05/2014 00:45:57 AM) (Source: AHDDC2_Service.exe) (EventID: 0) (User: ) Description: Cannot terminate an externally created thread Error: (06/04/2014 08:09:07 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (06/04/2014 08:49:47 AM) (Source: AHDDC2_Service.exe) (EventID: 0) (User: ) Description: Cannot terminate an externally created thread Error: (06/04/2014 01:03:47 AM) (Source: AHDDC2_Service.exe) (EventID: 0) (User: ) Description: Cannot terminate an externally created thread System errors: ============= Error: (06/07/2014 08:29:27 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Windows Media Player-Netzwerkfreigabedienst" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts. Error: (06/07/2014 08:11:59 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "globalUpdate Update Service (globalUpdate)" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (06/06/2014 05:28:10 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "globalUpdate Update Service (globalUpdate)" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (06/05/2014 00:49:53 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "globalUpdate Update Service (globalUpdate)" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (06/04/2014 08:10:47 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "globalUpdate Update Service (globalUpdate)" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (06/04/2014 07:53:26 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "globalUpdate Update Service (globalUpdate)" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (06/03/2014 07:34:14 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "globalUpdate Update Service (globalUpdate)" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (06/02/2014 08:48:23 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst ShellHWDetection erreicht. Error: (06/01/2014 02:12:34 PM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst avgwd erreicht. Error: (05/31/2014 07:38:11 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Das System wurde zuvor am 31.05.2014 um 11:34:45 unerwartet heruntergefahren. Microsoft Office Sessions: ========================= Error: (06/07/2014 08:29:09 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: wmpnetwk.exe12.0.7601.175144ce7ae7fKERNELBASE.dll6.1.7601.184095315a05a0000046b000000000000940d9f401cf821766810e7dC:\Program Files\Windows Media Player\wmpnetwk.exeC:\windows\system32\KERNELBASE.dll081fa34e-ee0d-11e3-abec-b870f43d656a Error: (06/07/2014 08:28:51 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: wmplayer.exe12.0.7601.1815086001cf82175febeea157C:\Program Files (x86)\Windows Media Player\wmplayer.exe Error: (06/07/2014 08:28:39 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: firefox.exe29.0.1.5239bdc01cf8218e11686b7375C:\Program Files (x86)\Mozilla Firefox\firefox.exe Error: (06/07/2014 08:28:24 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Explorer.EXE6.1.7601.1756776401cf8216ded3a31f52C:\windows\Explorer.EXEaa3f324b-ee0c-11e3-abec-b870f43d656a Error: (06/06/2014 07:05:22 AM) (Source: AHDDC2_Service.exe) (EventID: 0) (User: ) Description: Cannot terminate an externally created thread Error: (06/05/2014 11:49:14 PM) (Source: AHDDC2_Service.exe) (EventID: 0) (User: ) Description: Cannot terminate an externally created thread Error: (06/05/2014 00:45:57 AM) (Source: AHDDC2_Service.exe) (EventID: 0) (User: ) Description: Cannot terminate an externally created thread Error: (06/04/2014 08:09:07 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\$RECYCLE.BIN\S-1-5-21-769514679-1109052257-2407649337-1001\$REMXTTR.exe Error: (06/04/2014 08:49:47 AM) (Source: AHDDC2_Service.exe) (EventID: 0) (User: ) Description: Cannot terminate an externally created thread Error: (06/04/2014 01:03:47 AM) (Source: AHDDC2_Service.exe) (EventID: 0) (User: ) Description: Cannot terminate an externally created thread CodeIntegrity Errors: =================================== Date: 2014-02-17 16:15:18.762 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-02-17 16:15:17.972 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. ==================== Memory info =========================== Percentage of memory in use: 25% Total physical RAM: 5738.9 MB Available physical RAM: 4288.13 MB Total Pagefile: 11475.98 MB Available Pagefile: 9959.97 MB Total Virtual: 8192 MB Available Virtual: 8191.84 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:254.14 GB) (Free:200.64 GB) NTFS Drive d: (LENOVO) (Fixed) (Total:29 GB) (Free:26.65 GB) NTFS Drive i: (MEDION) (CDROM) (Total:0.01 GB) (Free:0 GB) CDFS Drive j: () (Removable) (Total:7.41 GB) (Free:5.85 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298 GB) (Disk ID: F761340D) Partition 1: (Active) - (Size=200 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=254 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=29 GB) - (Type=OF Extended) Partition 4: (Not Active) - (Size=15 GB) - (Type=12) ======================================================== Disk: 1 (Size: 7 GB) (Disk ID: 2E4C9AAE) Partition 1: (Active) - (Size=7 GB) - (Type=0B) ==================== End Of Log ============================ Und wenn mein Lapi wieder mal fehlerfrei laufen sollte, was ist deiner Meinung nach der beste Schutz um solche Probleme zu vermeiden? vielen lieben DANk und schöne Pfingsten Annabell |
07.06.2014, 18:57 | #17 |
/// the machine /// TB-Ausbilder | Bildschirm hängt fest, hochladen dauert ewig Bitte öffne Process Explorer vorher mal, damit du schauen kannst welcher Prozess es ist, sonst kommen wir nit weiter.
__________________Ja, kann auch Hardware sein, klar.
__________________ |
08.06.2014, 09:16 | #18 |
| Bildschirm hängt fest, hochladen dauert ewig guten Morgen,
__________________also ich lassen den Process explorer laufen, klicke in der cpu history spalte die einzelnen Felder an, dann öffnet sich ein fenster mit dem jeweiligen namen des process in welchem weitere reiter ( service, tread, tcp/ip, security, enviroment usw.) zu öffnen sind. klicke ich hier auf cpu graph öffnet sich die fenster/ tabelle in denen links 4 kl. fenster und rechts 4 fenster mit linien öffnen, aber keine grafik etc. die ich anklicken kann.... aber: wenn ich im hauptfenster vom pe rechts neben dem fernglassymbol so leicht schräg unter unter dem help-reiter mit der maus auf das fenster mit der laufenden grafik komme eröffnet sich darunter ein kl. text cpu z.b. 83,36%, darunter steht dann 56,79% Alditalk Verbindungsassistent.exe:7646 (habe hier auf dem campingplatz den Stick als Internetverbindung dran! / zu Haus über w-lan aber ja auch diese probeme...) doch wenn ich auf dem Prozess weiter unter gucke steht bei Aldi Talk in der Spalte vom CPU nichts... ???? |
08.06.2014, 10:06 | #19 |
/// the machine /// TB-Ausbilder | Bildschirm hängt fest, hochladen dauert ewig EInfach nur den Prozess mit der Auslastung anklicken, und zwar vorne auf das Pluszeichen. Dann den Screenshot machen. Damit wir die Prozesse darunter sehen.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Bildschirm hängt fest, hochladen dauert ewig |
ander, andere, angel, arten, aufrufen, bildschirm, dauert, dauert ewig, dokumente, fenster, grundsätzliche, hochladen, hängt, inter, interne, internet, laptop, laptops, miteinander, ohne internet, probleme, seite, seiten, starte, starten, ähnliches |