|
Plagegeister aller Art und deren Bekämpfung: spyware und malwarebytes lassen sich nicht öffnenWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
30.05.2014, 00:57 | #16 | |
Ruhe in Frieden † 2019 | spyware und malwarebytes lassen sich nicht öffnen Das ist das alte FRST-Logfile Zitat:
Schritt 1 Lade Dir bitte Windows Repair - All in one von tweaking.com hier herunter und installiere es.
|
01.06.2014, 21:31 | #17 |
| spyware und malwarebytes lassen sich nicht öffnen Hab ich gemacht. Reicht der Repair Log? Jetzt läuft auch FRST wieder durch
__________________Code:
ATTFilter System Variables -------------------------------------------------------------------------------- OS: Windows 7 Home Premium OS Architecture: 64-bit OS Version: 6.1.7601 OS Service Pack: Service Pack 1 Computer Name: USER-PC Windows Drive: C:\ Windows Path: C:\Windows Current Profile: C:\Users\User Current Profile SID: S-1-5-21-2260964575-2753946872-1401531445-1001 Current Profile Classes: S-1-5-21-2260964575-2753946872-1401531445-1001_Classes Profiles Location: C:\Users Profiles Location 2: C:\Windows\ServiceProfiles Local Settings AppData: C:\Users\User\AppData\Local -------------------------------------------------------------------------------- System Information -------------------------------------------------------------------------------- System Up Time: 0 Days 00:06:20 Process Count: 74 Commit Total: 2,56 GB Commit Limit: 15,46 GB Commit Peak: 3,07 GB Handle Count: 20568 Kernel Total: 337,26 MB Kernel Paged: 271,18 MB Kernel Non Paged: 66,08 MB System Cache: 1,79 GB Thread Count: 967 -------------------------------------------------------------------------------- Memory Before Cleaning with CleanMem -------------------------------------------------------------------------------- Memory Total: 7,73 GB Memory Used: 2,27 GB(29,4138%) Memory Avail.: 5,46 GB -------------------------------------------------------------------------------- Cleaning Memory Before Starting Repairs... Memory After Cleaning with CleanMem -------------------------------------------------------------------------------- Memory Total: 7,73 GB Memory Used: 1,86 GB(24,08%) Memory Avail.: 5,87 GB -------------------------------------------------------------------------------- Starting Repairs... Start (01.06.2014 21:47:55) 01 - Reset Registry Permissions 01/03 HKEY_CURRENT_USER & Sub Keys Start (01.06.2014 21:48:02) Running Repair Under Current User Account Done (01.06.2014 21:48:13) 01 - Reset Registry Permissions 02/03 HKEY_LOCAL_MACHINE & Sub Keys Start (01.06.2014 21:48:13) Running Repair Under System Account Done (01.06.2014 21:54:35) 01 - Reset Registry Permissions 03/03 HKEY_CLASSES_ROOT & Sub Keys Start (01.06.2014 21:54:35) Running Repair Under System Account Done (01.06.2014 21:56:06) 03 - Reset Service Permissions Start (01.06.2014 21:56:07) Running Repair Under System Account Done (01.06.2014 21:56:15) 05 - Repair WMI Start (01.06.2014 21:56:15) Starting Security Center So We Can Export The Security Info. Exporting Antivirus Info... Bitdefender Antivirus Free Edition Exported. Exporting AntiSpyware Info... Windows Defender Exported. Bitdefender Antivirus Free Edition Exported. Exporting 3rd Party Firewall Info... No Firewall Products Reported. Running Repair Under Current User Account Done (01.06.2014 21:59:41) 06 - Repair Windows Firewall Start (01.06.2014 21:59:41) Running Repair Under Current User Account Running Repair Under System Account Done (01.06.2014 22:00:19) 07 - Repair Internet Explorer Start (01.06.2014 22:00:19) Running Repair Under Current User Account Running Repair Under System Account Done (01.06.2014 22:01:17) 08 - Repair MDAC/MS Jet Start (01.06.2014 22:01:17) Running Repair Under Current User Account Running Repair Under System Account Done (01.06.2014 22:01:47) 09 - Repair Hosts File Start (01.06.2014 22:01:47) Running Repair Under System Account Done (01.06.2014 22:01:50) 10 - Remove Policies Set By Infections Start (01.06.2014 22:01:50) Running Repair Under Current User Account Running Repair Under System Account Done (01.06.2014 22:01:55) 11 - Repair Start Menu Icons Removed By Infections Start (01.06.2014 22:01:55) Running Repair Under System Account Done (01.06.2014 22:01:57) 12 - Repair Icons Start (01.06.2014 22:01:57) Running Repair Under Current User Account Done (01.06.2014 22:02:00) 13 - Repair Winsock & DNS Cache Start (01.06.2014 22:02:00) Running Repair Under Current User Account Running Repair Under System Account Done (01.06.2014 22:02:28) 14 - Remove Temp Files Start (01.06.2014 22:02:28) Running Repair Under System Account Done (01.06.2014 22:02:31) 15 - Repair Proxy Settings Start (01.06.2014 22:02:31) Running Repair Under Current User Account Running Repair Under System Account Done (01.06.2014 22:02:36) 17 - Repair Windows Updates Start (01.06.2014 22:02:36) Running Repair Under Current User Account Running Repair Under System Account Done (01.06.2014 22:03:10) 18 - Repair CD/DVD Missing/Not Working Start (01.06.2014 22:03:10) iTunes was found, adding UpperFilters for iTunes Reg Key UpperFilters added?: True Done (01.06.2014 22:03:10) 19 - Repair Volume Shadow Copy Service Start (01.06.2014 22:03:10) Running Repair Under Current User Account Running Repair Under System Account Done (01.06.2014 22:03:27) 21 - Repair MSI (Windows Installer) Start (01.06.2014 22:03:27) Running Repair Under Current User Account Running Repair Under System Account Done (01.06.2014 22:03:40) 23.01 - Repair bat Association Start (01.06.2014 22:03:40) Running Repair Under Current User Account Running Repair Under System Account Done (01.06.2014 22:03:45) 23.02 - Repair cmd Association Start (01.06.2014 22:03:45) Running Repair Under Current User Account Running Repair Under System Account Done (01.06.2014 22:03:50) 23.03 - Repair com Association Start (01.06.2014 22:03:50) Running Repair Under Current User Account Running Repair Under System Account Done (01.06.2014 22:03:54) 23.04 - Repair Directory Association Start (01.06.2014 22:03:54) Running Repair Under Current User Account Running Repair Under System Account Done (01.06.2014 22:03:59) 23.05 - Repair Drive Association Start (01.06.2014 22:03:59) Running Repair Under Current User Account Running Repair Under System Account Done (01.06.2014 22:04:04) 23.06 - Repair exe Association Start (01.06.2014 22:04:04) Running Repair Under Current User Account Running Repair Under System Account Done (01.06.2014 22:04:09) 23.07 - Repair Folder Association Start (01.06.2014 22:04:09) Running Repair Under Current User Account Running Repair Under System Account Done (01.06.2014 22:04:13) 23.08 - Repair inf Association Start (01.06.2014 22:04:13) Running Repair Under Current User Account Running Repair Under System Account Done (01.06.2014 22:04:18) 23.09 - Repair lnk (Shortcuts) Association Start (01.06.2014 22:04:18) Running Repair Under Current User Account Running Repair Under System Account Done (01.06.2014 22:04:23) 23.10 - Repair msc Association Start (01.06.2014 22:04:23) Running Repair Under Current User Account Running Repair Under System Account Done (01.06.2014 22:04:28) 23.11 - Repair reg Association Start (01.06.2014 22:04:28) Running Repair Under Current User Account Running Repair Under System Account Done (01.06.2014 22:04:32) 23.12 - Repair scr Association Start (01.06.2014 22:04:32) Running Repair Under Current User Account Running Repair Under System Account Done (01.06.2014 22:04:37) 24 - Repair Windows Safe Mode Start (01.06.2014 22:04:37) Running Repair Under Current User Account Running Repair Under System Account Done (01.06.2014 22:04:42) 25 - Repair Print Spooler Start (01.06.2014 22:04:42) Running Repair Under Current User Account Running Repair Under System Account Done (01.06.2014 22:04:59) 26 - Restore Important Windows Services Start (01.06.2014 22:04:59) Running Repair Under Current User Account Running Repair Under System Account Done (01.06.2014 22:05:12) 27 - Set Windows Services To Default Startup Start (01.06.2014 22:05:12) Running Repair Under Current User Account Running Repair Under System Account Done (01.06.2014 22:05:25) Skipping Repair. Repair is for Windows v6.2 (Windows 8 & Newer) or higher. Current version: 6.1 Skipping Repair. Repair is for Windows v6.2 (Windows 8 & Newer) or higher. Current version: 6.1 Skipping Repair. Repair is for Windows v6.2 (Windows 8 & Newer) or higher. Current version: 6.1 Cleaning up empty logs... All Selected Repairs Done. Done (01.06.2014 22:05:25) Total Repair Time: 00:17:31 ...YOU MUST RESTART YOUR SYSTEM... Running Repair Under Current User Account FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 01-06-2014 01 Ran by User (administrator) on USER-PC on 01-06-2014 22:26:56 Running from C:\Users\User\Desktop Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 9 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Bitdefender) C:\Program Files\Bitdefender\Antivirus Free Edition\gzserv.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (G Data Software AG) C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe (Bitdefender) C:\Program Files\Bitdefender\Antivirus Free Edition\gziface.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe (Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe (Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe (Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\rusb3mon.exe () C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe (RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe () C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe (RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpdsvc.exe () C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKBap64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe (Microsoft Corporation) C:\Windows\System32\audiodg.exe (Google Inc.) C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [613024 2010-09-27] (Atheros Communications) HKLM\...\Run: [AthBtTray] => C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [379040 2010-09-27] (Atheros Commnucations) HKLM-x32\...\Run: [HDAudDeck] => C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2439072 2010-05-24] (VIA) HKLM-x32\...\Run: [NUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation) HKLM-x32\...\Run: [RUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\rusb3mon.exe [115048 2012-11-10] (Renesas Electronics Corporation) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-04-23] (Apple Inc.) HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [450560 2014-02-14] (DivX, LLC) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-12-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [DivXUpdate] => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861968 2014-01-10] () HKLM-x32\...\Run: [TkBellExe] => C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe [296520 2014-05-03] (RealNetworks, Inc.) HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-05-26] (Apple Inc.) HKLM-x32\...\Run: [GDFirewallTray] => C:\Program Files (x86)\G Data\InternetSecurity\Firewall\GDFirewallTray.exe HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,C:\Program Files (x86)\G Data\InternetSecurity\AVKTray\AVKTray.exe,c:\program files (x86)\g data\internetsecurity\avkkid\avkcks.exe Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-2260964575-2753946872-1401531445-1001\...\Run: [Google Update] => C:\Users\User\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2013-02-28] (Google Inc.) HKU\S-1-5-21-2260964575-2753946872-1401531445-1001\...\MountPoints2: {ead6e2a1-8037-11e2-b5c3-806e6f6e6963} - D:\ASRSetup.exe ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x2D0369294A15CE01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM - {438CB363-A94D-4AE3-8F99-E93393D46036} URL = hxxp://www.bing.com/?cc=de SearchScopes: HKLM - {6821768E-EC81-3874-994F-0883CF6C09DE} URL = BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files (x86)\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin64.dll (RealDownloader) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files (x86)\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader) BHO-x32: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\jm33fhkk.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1210150.dll (Adobe Systems, Inc.) FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll (DivX, LLC) FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @real.com/nppl3260;version=17.0.9.17 - c:\program files (x86)\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprndlchromebrowserrecordext;version=17.0.9 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprndlhtml5videoshim;version=17.0.9 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprndlpepperflashvideoshim;version=17.0.9 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprpplugin;version=17.0.9.17 - c:\program files (x86)\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer Cloud) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @TrendMicro.com/FFExtension - C:\Program Files\Trend Micro\Titanium\UIFramework\Toolbar\firefoxextension\components\npToolbarChrome.dll No File FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\User\AppData\Local\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\User\AppData\Local\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\User\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppl3260.dll (RealNetworks, Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nprpplugin.dll (RealPlayer Cloud) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2014-05-03] FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2014-05-03] FF HKLM-x32\...\Firefox\Extensions: [{53D8DD28-1C83-41F3-B171-C2ED5B3E5DE8}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\ FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\ [] Chrome: ======= CHR Extension: (RealPlayer Downloader) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\idhngdhcfkoamngbedgpaokgjbnpdiji [2014-05-03] CHR Extension: (Google Wallet) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-23] CHR HKLM-x32\...\Chrome\Extension: [idhngdhcfkoamngbedgpaokgjbnpdiji] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx [2014-04-06] ==================== Services (Whitelisted) ================= R2 AVKProxy; C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe [2244728 2014-02-12] (G Data Software AG) R2 ForceWare Intelligent Application Manager (IAM); C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe [496232 2010-01-21] () R3 GDScan; C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe [700024 2014-02-03] (G Data Software AG) R2 gzserv; C:\Program Files\Bitdefender\Antivirus Free Edition\gzserv.exe [69368 2013-10-23] (Bitdefender) R2 nSvcIp; C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe [209000 2010-01-21] () R2 RealNetworks Downloader Resolver Service; C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe [39568 2014-04-06] () R2 RealPlayer Cloud Service; c:\program files (x86)\real\realplayer\RPDS\Bin\rpdsvc.exe [1141848 2014-05-03] (RealNetworks, Inc.) R2 RealPlayerUpdateSvc; C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe [23552 2014-04-07] () S2 AVKService; "C:\Program Files (x86)\G Data\InternetSecurity\AVK\AVKService.exe" [X] S2 AVKWCtl; "C:\Program Files (x86)\G Data\InternetSecurity\AVK\AVKWCtlx64.exe" [X] S3 GDFwSvc; "C:\Program Files (x86)\G Data\InternetSecurity\Firewall\GDFwSvcx64.exe" [X] ==================== Drivers (Whitelisted) ==================== S3 Apowersoft_AudioDevice; C:\Windows\System32\drivers\Apowersoft_AudioDevice.sys [31920 2013-06-02] (Wondershare) R0 avc3; C:\Windows\System32\DRIVERS\avc3.sys [718840 2013-04-17] (BitDefender) U5 avchv; C:\Windows\System32\Drivers\avchv.sys [261056 2012-11-02] (BitDefender) R3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [593144 2013-04-17] (BitDefender) R1 bdfwfpf; C:\Program Files\Bitdefender\Antivirus Free Edition\bdfwfpf.sys [121928 2013-07-02] (Bitdefender SRL) R0 GDBehave; C:\Windows\System32\drivers\GDBehave.sys [57344 2014-05-29] (G Data Software AG) R3 GDKBFlt; C:\Windows\system32\drivers\GDKBFlt64.sys [22016 2014-05-29] (G Data Software AG) R1 GDMnIcpt; C:\Windows\system32\drivers\MiniIcpt.sys [135168 2014-05-29] (G Data Software AG) S3 GDPkIcpt; C:\Windows\system32\drivers\PktIcpt.sys [68608 2014-05-29] (G Data Software AG) R1 gdwfpcd; C:\Windows\System32\drivers\gdwfpcd64.sys [64000 2014-05-29] (G Data Software AG) R1 GRD; C:\Windows\system32\drivers\GRD.sys [106272 2014-05-29] (G Data Software) R1 gzflt; C:\Windows\System32\DRIVERS\gzflt.sys [148696 2013-04-22] (BitDefender LLC) R1 HookCentre; C:\Windows\system32\drivers\HookCentre.sys [65024 2014-05-29] (G Data Software AG) S3 L1C; C:\Windows\System32\DRIVERS\L1C60x64.sys [99440 2011-08-11] (Atheros Communications, Inc.) S3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [15416 2009-07-16] () S3 RTL85n64; C:\Windows\System32\DRIVERS\RTL85n64.sys [378368 2009-06-10] (Realtek) S3 rusb3hub; C:\Windows\System32\DRIVERS\rusb3hub.sys [104448 2012-11-10] (Renesas Electronics Corporation) S3 rusb3xhc; C:\Windows\System32\DRIVERS\rusb3xhc.sys [221184 2012-11-10] (Renesas Electronics Corporation) S3 SWDUMon; C:\Windows\System32\DRIVERS\SWDUMon.sys [16152 2013-03-21] () S3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2013-06-21] (Anchorfree Inc.) R0 trufos; C:\Windows\System32\DRIVERS\trufos.sys [382536 2013-05-28] (BitDefender S.R.L.) S3 VUSB3HUB; C:\Windows\System32\DRIVERS\ViaHub3.sys [137728 2011-02-25] (VIA Technologies, Inc.) S3 WinRing0_1_2_0; C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [14544 2010-11-01] (OpenLibSys.org) S3 xhcdrv; C:\Windows\System32\DRIVERS\xhcdrv.sys [195584 2011-02-25] (VIA Technologies, Inc.) S3 AsrCDDrv; \??\C:\Windows\SysWOW64\Drivers\AsrCDDrv.sys [X] S3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X] S3 NTIOLib_1_0_C; \??\D:\NTIOLib_X64.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-06-01 22:26 - 2014-06-01 22:26 - 00000000 ____D () C:\Users\User\Desktop\FRST-OlderVersion 2014-06-01 20:16 - 2014-06-01 20:16 - 00000000 ____D () C:\Users\User\Desktop\chris stick 2014-06-01 20:04 - 2014-06-01 20:09 - 1490072770 _____ () C:\Users\User\Downloads\Die.Schluempfe.German.AC3.HDRip.x264-FuN.mp4 2014-05-30 09:55 - 2014-06-01 22:05 - 00181064 _____ (Sysinternals) C:\Windows\PSEXESVC.EXE 2014-05-30 09:41 - 2014-05-30 09:41 - 00000207 _____ () C:\Windows\tweaking.com-regbackup-USER-PC-Microsoft-Windows-7-Home-Premium-(64-bit).dat 2014-05-30 09:40 - 2014-05-30 09:40 - 00000000 ____D () C:\RegBackup 2014-05-30 09:13 - 2014-05-30 09:13 - 00003288 ____N () C:\bootsqm.dat 2014-05-30 09:04 - 2014-05-30 09:04 - 00002171 _____ () C:\Users\User\Desktop\Tweaking.com - Windows Repair (All in One).lnk 2014-05-30 09:02 - 2014-05-30 09:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tweaking.com 2014-05-30 09:01 - 2014-05-30 09:01 - 00000000 ____D () C:\Program Files (x86)\Tweaking.com 2014-05-30 08:59 - 2014-05-30 08:59 - 05558808 _____ () C:\Users\User\Downloads\tweaking.com_windows_repair_aio_setup.exe 2014-05-29 23:47 - 2014-06-01 22:27 - 00017370 _____ () C:\Users\User\Desktop\FRST.txt 2014-05-29 23:44 - 2014-05-30 00:45 - 00000000 ____D () C:\Users\User\Desktop\Günni 2014-05-29 22:48 - 2014-05-29 22:48 - 00198293 _____ () C:\ProgramData\1401394777.bdinstall.bin 2014-05-29 22:41 - 2014-05-29 22:41 - 00002184 _____ () C:\Users\Public\Desktop\Bitdefender Antivirus Free Edition.lnk 2014-05-29 22:41 - 2014-05-29 22:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Antivirus Free Edition 2014-05-29 22:41 - 2013-04-17 14:59 - 00718840 _____ (BitDefender) C:\Windows\system32\Drivers\avc3.sys 2014-05-29 22:41 - 2013-04-17 14:59 - 00593144 _____ (BitDefender) C:\Windows\system32\Drivers\avckf.sys 2014-05-29 22:19 - 2014-05-29 22:41 - 00000000 ____D () C:\Program Files\Bitdefender 2014-05-29 22:19 - 2014-05-29 22:19 - 10447328 _____ () C:\Users\User\Downloads\Antivirus_Free_Edition_x64.exe 2014-05-29 22:19 - 2014-05-29 22:19 - 00162208 _____ () C:\Users\User\Downloads\Antivirus_Free_Edition21.exe 2014-05-29 22:19 - 2013-05-28 12:12 - 00382536 _____ (BitDefender S.R.L.) C:\Windows\system32\Drivers\trufos.sys 2014-05-29 22:19 - 2013-04-22 13:21 - 00148696 _____ (BitDefender LLC) C:\Windows\system32\Drivers\gzflt.sys 2014-05-29 22:05 - 2014-06-01 22:06 - 00003964 _____ () C:\Windows\PFRO.log 2014-05-29 22:00 - 2014-06-01 22:01 - 00035030 _____ () C:\Windows\IE11_main.log 2014-05-29 21:55 - 2014-05-29 21:55 - 00003246 _____ () C:\Windows\System32\Tasks\{4C50A497-FAD5-4083-A87B-7E404DEC9B2C} 2014-05-29 21:20 - 2014-05-29 21:20 - 00106272 _____ (G Data Software) C:\Windows\system32\Drivers\GRD.sys 2014-05-29 21:20 - 2014-05-29 21:20 - 00018160 _____ (G Data Software) C:\Windows\system32\Drivers\GdPhyMem.sys 2014-05-29 21:09 - 2014-05-29 21:09 - 00068608 _____ (G Data Software AG) C:\Windows\system32\Drivers\PktIcpt.sys 2014-05-29 21:08 - 2014-06-01 22:15 - 00003025 _____ () C:\Windows\setupact.log 2014-05-29 21:08 - 2014-05-29 21:08 - 00135168 _____ (G Data Software AG) C:\Windows\system32\Drivers\MiniIcpt.sys 2014-05-29 21:08 - 2014-05-29 21:08 - 00065024 _____ (G Data Software AG) C:\Windows\system32\Drivers\HookCentre.sys 2014-05-29 21:08 - 2014-05-29 21:08 - 00064000 _____ (G Data Software AG) C:\Windows\system32\Drivers\gdwfpcd64.sys 2014-05-29 21:08 - 2014-05-29 21:08 - 00057344 _____ (G Data Software AG) C:\Windows\system32\Drivers\GDBehave.sys 2014-05-29 21:08 - 2014-05-29 21:08 - 00022016 _____ (G Data Software AG) C:\Windows\system32\Drivers\GDKBFlt64.sys 2014-05-29 21:08 - 2014-05-29 21:08 - 00001962 _____ () C:\Windows\DPINST.LOG 2014-05-29 21:08 - 2014-05-29 21:08 - 00000779 _____ () C:\Users\User\AppData\Roaming\gdscan.log 2014-05-29 21:08 - 2014-05-29 21:08 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_GDKBFlt64_01007.Wdf 2014-05-29 21:08 - 2014-05-29 21:08 - 00000000 _____ () C:\Windows\setuperr.log 2014-05-29 21:08 - 2014-05-29 21:08 - 00000000 _____ () C:\Users\User\AppData\Roaming\gdfw.log 2014-05-29 21:07 - 2014-05-29 21:21 - 00000000 ____D () C:\ProgramData\G Data 2014-05-29 21:07 - 2014-05-29 21:07 - 00000000 ____D () C:\Program Files (x86)\G Data 2014-05-29 21:05 - 2014-05-29 21:06 - 446286080 _____ (G Data Software AG) C:\Users\User\Downloads\INT_R_FUL_2015_IS.exe 2014-05-29 20:07 - 2014-05-29 20:07 - 00003258 _____ () C:\Windows\System32\Tasks\{EC723CBD-3450-46D9-A7ED-B321FCBCADBF} 2014-05-29 19:41 - 2014-05-29 19:41 - 00000000 ____D () C:\Users\User\AppData\Roaming\VSRevoGroup 2014-05-29 00:45 - 2014-05-29 00:45 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\76743072.sys 2014-05-28 22:09 - 2014-05-28 22:09 - 00001791 _____ () C:\Users\Public\Desktop\iTunes.lnk 2014-05-28 22:09 - 2014-05-28 22:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2014-05-28 22:09 - 2014-05-28 22:09 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-05-28 22:09 - 2014-05-28 22:09 - 00000000 ____D () C:\Program Files\iTunes 2014-05-27 20:19 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll 2014-05-27 20:18 - 2014-05-27 20:25 - 00000000 ____D () C:\AdwCleaner 2014-05-27 20:18 - 2014-05-27 20:18 - 01327971 _____ () C:\Users\User\Downloads\adwcleaner_3.211.exe 2014-05-27 20:13 - 2014-05-27 20:13 - 00001276 _____ () C:\Users\User\Desktop\Revo Uninstaller.lnk 2014-05-27 20:13 - 2014-05-27 20:13 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group 2014-05-27 20:12 - 2014-05-27 20:12 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\User\Downloads\revosetup95.exe 2014-05-26 22:56 - 2014-05-29 20:17 - 00000000 ____D () C:\Windows\ELAMBKUP 2014-05-26 22:56 - 2014-05-29 20:17 - 00000000 ____D () C:\ProgramData\Kaspersky Lab 2014-05-26 22:26 - 2014-06-01 22:16 - 00003358 _____ () C:\Windows\System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-2260964575-2753946872-1401531445-1001 2014-05-26 12:20 - 2014-05-26 12:20 - 02066944 _____ (Farbar) C:\Users\User\Downloads\FRST64 (2).exe 2014-05-26 12:09 - 2014-05-27 20:35 - 00034526 _____ () C:\Users\User\Downloads\Addition.txt 2014-05-26 12:08 - 2014-05-26 12:08 - 02066944 _____ (Farbar) C:\Users\User\Downloads\FRST64 (1).exe 2014-05-26 11:52 - 2014-05-26 11:52 - 00003120 _____ () C:\Windows\System32\Tasks\{8E74CBC0-091A-4327-9374-2C4B5696C230} 2014-05-26 11:43 - 2014-06-01 22:26 - 02067456 _____ (Farbar) C:\Users\User\Desktop\FRST64.exe 2014-05-26 11:43 - 2014-06-01 22:26 - 00000000 ____D () C:\FRST 2014-05-26 11:43 - 2014-05-27 20:35 - 00062887 _____ () C:\Users\User\Downloads\FRST.txt 2014-05-26 11:39 - 2014-05-26 11:39 - 00388608 _____ (Trend Micro Inc.) C:\Users\User\Downloads\HijackThis.exe 2014-05-26 11:15 - 2014-05-26 11:15 - 01110476 _____ () C:\Users\User\Downloads\7z920.exe 2014-05-26 11:03 - 2014-05-26 11:03 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\User\Downloads\mbam-setup-2.0.2.1012.exe 2014-05-26 10:59 - 2014-05-26 10:59 - 29393568 _____ (SUPERAntiSpyware) C:\Users\User\Downloads\SUPERAntiSpyware_5.7.0.1018.exe 2014-05-26 10:52 - 2014-05-29 20:03 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware 2014-05-26 10:52 - 2014-05-26 10:52 - 19279808 _____ (SUPERAntiSpyware) C:\Users\User\Downloads\SUPERAntiSpyware.exe 2014-05-20 21:21 - 2014-05-20 21:21 - 00001313 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk 2014-05-20 21:21 - 2014-05-20 21:21 - 00000000 ____D () C:\Windows\de 2014-05-18 17:03 - 2014-05-20 10:50 - 00000000 ____D () C:\Users\User\AppData\Roaming\Nico Mak Computing 2014-05-18 17:02 - 2014-05-18 17:02 - 04892480 _____ (WinZip International LLC ) C:\Users\User\Downloads\wzmp_8.exe 2014-05-18 16:24 - 2014-05-18 16:24 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\User\Downloads\mbam-setup-2.0.1.1004.exe 2014-05-14 23:18 - 2014-05-29 20:07 - 00003336 _____ () C:\Windows\System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2260964575-2753946872-1401531445-1001 2014-05-14 23:06 - 2014-05-06 02:46 - 17847808 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-14 23:06 - 2014-05-06 02:21 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-14 23:06 - 2014-05-06 02:21 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-05-14 23:06 - 2014-05-06 01:32 - 12347392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-05-14 23:06 - 2014-05-06 01:14 - 02382848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-05-14 23:06 - 2014-05-06 01:14 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-05-14 05:56 - 2014-04-12 04:22 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2014-05-14 05:56 - 2014-04-12 04:22 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2014-05-14 05:56 - 2014-04-12 04:19 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-05-14 05:56 - 2014-04-12 04:19 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2014-05-14 05:56 - 2014-04-12 04:19 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2014-05-14 05:56 - 2014-04-12 04:19 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2014-05-14 05:56 - 2014-04-12 04:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2014-05-14 05:56 - 2014-04-12 04:12 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-05-14 05:56 - 2014-04-12 04:10 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-05-14 05:56 - 2014-03-25 04:43 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-05-14 05:56 - 2014-03-25 04:09 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2014-05-14 05:56 - 2014-03-04 11:47 - 05550016 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2014-05-14 05:56 - 2014-03-04 11:44 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-05-14 05:56 - 2014-03-04 11:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll 2014-05-14 05:56 - 2014-03-04 11:44 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2014-05-14 05:56 - 2014-03-04 11:44 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2014-05-14 05:56 - 2014-03-04 11:44 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2014-05-14 05:56 - 2014-03-04 11:44 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2014-05-14 05:56 - 2014-03-04 11:44 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2014-05-14 05:56 - 2014-03-04 11:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll 2014-05-14 05:56 - 2014-03-04 11:43 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2014-05-14 05:56 - 2014-03-04 11:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll 2014-05-14 05:56 - 2014-03-04 11:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll 2014-05-14 05:56 - 2014-03-04 11:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll 2014-05-14 05:56 - 2014-03-04 11:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll 2014-05-14 05:56 - 2014-03-04 11:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll 2014-05-14 05:56 - 2014-03-04 11:43 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2014-05-14 05:56 - 2014-03-04 11:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2014-05-14 05:56 - 2014-03-04 11:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2014-05-14 05:56 - 2014-03-04 11:17 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2014-05-14 05:56 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll 2014-05-14 05:56 - 2014-03-04 11:17 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2014-05-14 05:56 - 2014-03-04 11:17 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2014-05-14 05:56 - 2014-03-04 11:17 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2014-05-14 05:56 - 2014-03-04 11:17 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2014-05-14 05:56 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll 2014-05-14 05:56 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll 2014-05-14 05:56 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll 2014-05-14 05:56 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll 2014-05-14 05:56 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll 2014-05-14 05:56 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll 2014-05-14 05:56 - 2014-03-04 11:17 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2014-05-14 05:56 - 2014-03-04 11:16 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2014-05-11 11:29 - 2014-05-11 11:29 - 106954752 _____ () C:\Users\User\Downloads\6cd1f56ab245c1b66486787647799b92.part001.rar 2014-05-10 17:28 - 2014-05-10 17:28 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-05-10 12:04 - 2014-05-10 12:04 - 248108521 _____ () C:\Users\User\Downloads\abc-frau.ella.bdrip.xv.part6.rar 2014-05-10 11:53 - 2014-05-10 11:57 - 265289739 _____ () C:\Users\User\Downloads\abc-frau.ella.bdrip.xv.part4.rar 2014-05-10 11:53 - 2014-05-10 11:57 - 265289739 _____ () C:\Users\User\Downloads\abc-frau.ella.bdrip.xv.part3.rar 2014-05-10 11:53 - 2014-05-10 11:56 - 265289739 _____ () C:\Users\User\Downloads\abc-frau.ella.bdrip.xv.part5.rar 2014-05-10 11:53 - 2014-05-10 11:56 - 265289739 _____ () C:\Users\User\Downloads\abc-frau.ella.bdrip.xv.part2.rar 2014-05-10 11:53 - 2014-05-10 11:56 - 265289739 _____ () C:\Users\User\Downloads\abc-frau.ella.bdrip.xv.part1.rar 2014-05-08 23:51 - 2014-05-09 00:05 - 00000000 ____D () C:\Users\User\Documents\fletwerk 2014-05-08 23:46 - 2014-05-08 23:48 - 00000000 ____D () C:\Users\User\Documents\2014-05-08 lohnsteuerbescheinigung 2014-05-08 23:31 - 2014-05-08 23:31 - 00000000 ____D () C:\Users\User\Documents\2014-05-08 geburtsurkunde vivi 2014-05-08 23:28 - 2014-05-08 23:28 - 00000000 ____D () C:\Users\User\Documents\2014-05-08 ausweis-führerschein2 2014-05-08 23:25 - 2014-05-08 23:26 - 00000000 ____D () C:\Users\User\Documents\2014-05-08 ausweis-führerschein 2014-05-06 22:55 - 2012-11-23 11:16 - 00000000 ____D () C:\Users\User\Downloads\1998 - Oceans Of Time 2014-05-06 22:43 - 2014-05-06 22:54 - 82176579 _____ () C:\Users\User\Downloads\Axel Rudi Pell - Oceans Of Time (1998).rar 2014-05-06 22:34 - 2014-05-06 22:35 - 16618768 _____ (Philipp Schmieder Medien ) C:\Users\User\Downloads\clipgrab-3.4.3.exe 2014-05-06 22:26 - 2014-05-06 22:26 - 01235950 _____ (Medieval Software) C:\Users\User\Downloads\cuesplitter_setup_1_2.exe 2014-05-06 22:20 - 2014-05-06 22:20 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} 2014-05-06 22:20 - 2014-05-06 22:20 - 00000000 ____D () C:\Users\User\AppData\Local\TuneUp Software 2014-05-06 22:19 - 2014-05-06 22:26 - 00000000 ____D () C:\Users\User\AppData\Roaming\DVDVideoSoft 2014-05-06 22:18 - 2014-05-06 22:18 - 33692584 _____ (DVDVideoSoft Ltd. ) C:\Users\User\Downloads\FreeAudioConverter.exe 2014-05-06 22:06 - 2010-07-04 22:36 - 00000000 ____D () C:\Users\User\Downloads\1998 - Oceans Of Time 2014-05-06 21:27 - 2014-05-06 22:06 - 479000645 _____ () C:\Users\User\Downloads\ARP98OceOfTimeFLAC mediaboom.org.rar 2014-05-06 12:41 - 2014-05-06 12:45 - 00000000 ____D () C:\Users\User\Documents\2014-05-06 ausbildungsvertrag hornbach 2014-05-06 12:35 - 2014-05-06 12:44 - 00000000 ____D () C:\Users\User\Documents\2014-05-06 aushilfsvertragcua 2014-05-06 10:38 - 2014-05-06 10:39 - 61896982 _____ () C:\Users\User\Downloads\Die Gluecksbaerchis der Film [55] (1).avi 2014-05-06 10:38 - 2014-05-06 10:38 - 61896982 _____ () C:\Users\User\Downloads\Die Gluecksbaerchis der Film [55].avi 2014-05-06 10:37 - 2014-05-06 10:38 - 72282578 _____ () C:\Users\User\Downloads\Die Gluecksbaerchis der Film [45].avi 2014-05-06 10:35 - 2014-05-06 10:36 - 72215630 _____ () C:\Users\User\Downloads\Die Gluecksbaerchis der Film [35].avi 2014-05-06 10:18 - 2011-10-08 12:30 - 00000000 ____D () C:\Users\User\Downloads\Die Gluecksbaerchis - Abenteuer im Wunderland 2014-05-06 10:11 - 2014-05-06 10:16 - 74312964 _____ () C:\Users\User\Downloads\DGAiW.part8.rar 2014-05-06 10:04 - 2014-05-06 10:10 - 106896000 _____ () C:\Users\User\Downloads\DGAiW.part7.rar 2014-05-06 10:03 - 2014-05-06 10:10 - 106896000 _____ () C:\Users\User\Downloads\DGAiW.part6.rar 2014-05-06 00:51 - 2014-05-06 00:57 - 106896000 _____ () C:\Users\User\Downloads\DGAiW.part5.rar 2014-05-06 00:25 - 2014-05-06 00:36 - 106896000 _____ () C:\Users\User\Downloads\DGAiW.part4.rar 2014-05-06 00:13 - 2014-05-06 00:24 - 106896000 _____ () C:\Users\User\Downloads\DGAiW.part3.rar 2014-05-05 23:48 - 2014-05-05 23:54 - 106896000 _____ () C:\Users\User\Downloads\DGAiW.part1.rar 2014-05-05 23:47 - 2014-05-05 23:58 - 106896000 _____ () C:\Users\User\Downloads\DGAiW.part2.rar 2014-05-03 22:21 - 2014-05-03 22:21 - 00000000 ____D () C:\Users\User\AppData\Roaming\RealNetworks 2014-05-03 22:17 - 2014-05-03 22:17 - 00505416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll 2014-05-03 22:17 - 2014-05-03 22:17 - 00353864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll 2014-05-03 22:17 - 2014-05-03 22:17 - 00278600 _____ (Progressive Networks) C:\Windows\SysWOW64\pncrt.dll 2014-05-03 22:17 - 2014-05-03 22:17 - 00201800 _____ (RealNetworks, Inc.) C:\Windows\SysWOW64\rmoc3260.dll 2014-05-03 22:17 - 2014-05-03 22:17 - 00001136 _____ () C:\Users\Public\Desktop\RealPlayer Cloud.lnk 2014-05-03 22:17 - 2014-05-03 22:17 - 00000000 ____D () C:\ProgramData\RealNetworks 2014-05-03 22:17 - 2014-05-03 22:17 - 00000000 ____D () C:\Program Files (x86)\RealNetworks 2014-05-03 21:38 - 2009-09-19 08:33 - 00000000 ____D () C:\Users\User\Downloads\Gluecksbaerchis.Die.Reise.ins.Land.Scherze.-.Viel.German.2004.DVDRiP.XViD-GXBG 2014-05-03 21:33 - 2014-05-03 21:34 - 06112387 _____ () C:\Users\User\Downloads\gxbg-gdrilsv.part8.rar 2014-05-03 20:34 - 2014-05-03 20:51 - 104857600 _____ () C:\Users\User\Downloads\gxbg-gdrilsv.part7.rar 2014-05-03 20:01 - 2014-05-03 20:19 - 104857600 _____ () C:\Users\User\Downloads\gxbg-gdrilsv.part6.rar 2014-05-03 20:00 - 2014-05-03 20:06 - 104857600 _____ () C:\Users\User\Downloads\gxbg-gdrilsv.part4.rar 2014-05-03 15:21 - 2014-05-03 15:38 - 104857600 _____ () C:\Users\User\Downloads\gxbg-gdrilsv.part5.rar 2014-05-03 11:31 - 2014-05-03 11:41 - 104857600 _____ () C:\Users\User\Downloads\gxbg-gdrilsv.part3.rar 2014-05-03 11:04 - 2014-05-03 11:36 - 96229737 _____ () C:\Users\User\Downloads\01 - Das neue Baby.part2.rar 2014-05-02 23:25 - 2014-05-02 23:31 - 104857600 _____ () C:\Users\User\Downloads\gxbg-gdrilsv.part2.rar 2014-05-02 23:23 - 2014-05-02 23:50 - 104857600 _____ () C:\Users\User\Downloads\gxbg-gdrilsv.part1.rar 2014-05-02 23:20 - 2014-05-02 23:54 - 105000000 _____ () C:\Users\User\Downloads\01 - Das neue Baby.part1.rar ==================== One Month Modified Files and Folders ======= 2014-06-01 22:27 - 2014-05-29 23:47 - 00017370 _____ () C:\Users\User\Desktop\FRST.txt 2014-06-01 22:27 - 2012-03-13 11:15 - 00000000 ____D () C:\Users\User\AppData\Local\Temp 2014-06-01 22:26 - 2014-06-01 22:26 - 00000000 ____D () C:\Users\User\Desktop\FRST-OlderVersion 2014-06-01 22:26 - 2014-05-26 11:43 - 02067456 _____ (Farbar) C:\Users\User\Desktop\FRST64.exe 2014-06-01 22:26 - 2014-05-26 11:43 - 00000000 ____D () C:\FRST 2014-06-01 22:23 - 2009-07-14 06:45 - 00026464 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-06-01 22:23 - 2009-07-14 06:45 - 00026464 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-06-01 22:20 - 2011-05-07 01:46 - 01472530 _____ () C:\Windows\WindowsUpdate.log 2014-06-01 22:20 - 2010-11-21 08:50 - 00700548 _____ () C:\Windows\system32\perfh007.dat 2014-06-01 22:20 - 2010-11-21 08:50 - 00150098 _____ () C:\Windows\system32\perfc007.dat 2014-06-01 22:20 - 2009-07-14 07:13 - 01650208 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-06-01 22:19 - 2013-02-28 02:26 - 00001116 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2260964575-2753946872-1401531445-1001UA.job 2014-06-01 22:16 - 2014-05-26 22:26 - 00003358 _____ () C:\Windows\System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-2260964575-2753946872-1401531445-1001 2014-06-01 22:16 - 2013-07-19 15:22 - 00003222 _____ () C:\Windows\System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-2260964575-2753946872-1401531445-1001 2014-06-01 22:15 - 2014-05-29 21:08 - 00003025 _____ () C:\Windows\setupact.log 2014-06-01 22:15 - 2013-07-24 19:03 - 00001102 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-06-01 22:15 - 2011-06-25 22:53 - 00000035 _____ () C:\Users\Public\Documents\AtherosServiceConfig.ini 2014-06-01 22:15 - 2011-05-16 01:38 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-06-01 22:15 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-06-01 22:15 - 2009-07-14 06:45 - 00305472 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-06-01 22:06 - 2014-05-29 22:05 - 00003964 _____ () C:\Windows\PFRO.log 2014-06-01 22:05 - 2014-05-30 09:55 - 00181064 _____ (Sysinternals) C:\Windows\PSEXESVC.EXE 2014-06-01 22:01 - 2014-05-29 22:00 - 00035030 _____ () C:\Windows\IE11_main.log 2014-06-01 22:01 - 2009-07-14 04:34 - 00000439 _____ () C:\Windows\win.ini 2014-06-01 21:51 - 2013-04-03 15:38 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-06-01 21:33 - 2013-07-24 19:03 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-06-01 20:16 - 2014-06-01 20:16 - 00000000 ____D () C:\Users\User\Desktop\chris stick 2014-06-01 20:09 - 2014-06-01 20:04 - 1490072770 _____ () C:\Users\User\Downloads\Die.Schluempfe.German.AC3.HDRip.x264-FuN.mp4 2014-05-31 23:19 - 2013-02-28 02:26 - 00001064 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2260964575-2753946872-1401531445-1001Core.job 2014-05-31 21:49 - 2013-11-20 19:57 - 00000000 ____D () C:\Users\User\Desktop\Mandy Handy 2014-05-31 21:49 - 2013-02-27 11:57 - 00064792 _____ () C:\Users\User\AppData\Local\GDIPFONTCACHEV1.DAT 2014-05-30 10:10 - 2009-07-14 04:34 - 00000855 _____ () C:\Windows\system32\Drivers\etc\hosts_bak_740 2014-05-30 09:41 - 2014-05-30 09:41 - 00000207 _____ () C:\Windows\tweaking.com-regbackup-USER-PC-Microsoft-Windows-7-Home-Premium-(64-bit).dat 2014-05-30 09:40 - 2014-05-30 09:40 - 00000000 ____D () C:\RegBackup 2014-05-30 09:13 - 2014-05-30 09:13 - 00003288 ____N () C:\bootsqm.dat 2014-05-30 09:04 - 2014-05-30 09:04 - 00002171 _____ () C:\Users\User\Desktop\Tweaking.com - Windows Repair (All in One).lnk 2014-05-30 09:02 - 2014-05-30 09:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tweaking.com 2014-05-30 09:01 - 2014-05-30 09:01 - 00000000 ____D () C:\Program Files (x86)\Tweaking.com 2014-05-30 08:59 - 2014-05-30 08:59 - 05558808 _____ () C:\Users\User\Downloads\tweaking.com_windows_repair_aio_setup.exe 2014-05-30 00:45 - 2014-05-29 23:44 - 00000000 ____D () C:\Users\User\Desktop\Günni 2014-05-29 22:48 - 2014-05-29 22:48 - 00198293 _____ () C:\ProgramData\1401394777.bdinstall.bin 2014-05-29 22:41 - 2014-05-29 22:41 - 00002184 _____ () C:\Users\Public\Desktop\Bitdefender Antivirus Free Edition.lnk 2014-05-29 22:41 - 2014-05-29 22:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Antivirus Free Edition 2014-05-29 22:41 - 2014-05-29 22:19 - 00000000 ____D () C:\Program Files\Bitdefender 2014-05-29 22:20 - 2013-04-12 00:26 - 00000000 ____D () C:\Users\User\AppData\Roaming\QuickScan 2014-05-29 22:19 - 2014-05-29 22:19 - 10447328 _____ () C:\Users\User\Downloads\Antivirus_Free_Edition_x64.exe 2014-05-29 22:19 - 2014-05-29 22:19 - 00162208 _____ () C:\Users\User\Downloads\Antivirus_Free_Edition21.exe 2014-05-29 21:55 - 2014-05-29 21:55 - 00003246 _____ () C:\Windows\System32\Tasks\{4C50A497-FAD5-4083-A87B-7E404DEC9B2C} 2014-05-29 21:21 - 2014-05-29 21:07 - 00000000 ____D () C:\ProgramData\G Data 2014-05-29 21:20 - 2014-05-29 21:20 - 00106272 _____ (G Data Software) C:\Windows\system32\Drivers\GRD.sys 2014-05-29 21:20 - 2014-05-29 21:20 - 00018160 _____ (G Data Software) C:\Windows\system32\Drivers\GdPhyMem.sys 2014-05-29 21:09 - 2014-05-29 21:09 - 00068608 _____ (G Data Software AG) C:\Windows\system32\Drivers\PktIcpt.sys 2014-05-29 21:08 - 2014-05-29 21:08 - 00135168 _____ (G Data Software AG) C:\Windows\system32\Drivers\MiniIcpt.sys 2014-05-29 21:08 - 2014-05-29 21:08 - 00065024 _____ (G Data Software AG) C:\Windows\system32\Drivers\HookCentre.sys 2014-05-29 21:08 - 2014-05-29 21:08 - 00064000 _____ (G Data Software AG) C:\Windows\system32\Drivers\gdwfpcd64.sys 2014-05-29 21:08 - 2014-05-29 21:08 - 00057344 _____ (G Data Software AG) C:\Windows\system32\Drivers\GDBehave.sys 2014-05-29 21:08 - 2014-05-29 21:08 - 00022016 _____ (G Data Software AG) C:\Windows\system32\Drivers\GDKBFlt64.sys 2014-05-29 21:08 - 2014-05-29 21:08 - 00001962 _____ () C:\Windows\DPINST.LOG 2014-05-29 21:08 - 2014-05-29 21:08 - 00000779 _____ () C:\Users\User\AppData\Roaming\gdscan.log 2014-05-29 21:08 - 2014-05-29 21:08 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_GDKBFlt64_01007.Wdf 2014-05-29 21:08 - 2014-05-29 21:08 - 00000000 _____ () C:\Windows\setuperr.log 2014-05-29 21:08 - 2014-05-29 21:08 - 00000000 _____ () C:\Users\User\AppData\Roaming\gdfw.log 2014-05-29 21:07 - 2014-05-29 21:07 - 00000000 ____D () C:\Program Files (x86)\G Data 2014-05-29 21:06 - 2014-05-29 21:05 - 446286080 _____ (G Data Software AG) C:\Users\User\Downloads\INT_R_FUL_2015_IS.exe 2014-05-29 20:26 - 2013-02-27 14:41 - 00000000 ____D () C:\Users\User\AppData\Local\CrashDumps 2014-05-29 20:17 - 2014-05-26 22:56 - 00000000 ____D () C:\Windows\ELAMBKUP 2014-05-29 20:17 - 2014-05-26 22:56 - 00000000 ____D () C:\ProgramData\Kaspersky Lab 2014-05-29 20:17 - 2014-02-20 15:47 - 00000000 ____D () C:\Users\fbwuser.User-PC 2014-05-29 20:07 - 2014-05-29 20:07 - 00003258 _____ () C:\Windows\System32\Tasks\{EC723CBD-3450-46D9-A7ED-B321FCBCADBF} 2014-05-29 20:07 - 2014-05-14 23:18 - 00003336 _____ () C:\Windows\System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2260964575-2753946872-1401531445-1001 2014-05-29 20:07 - 2013-05-04 21:54 - 00003200 _____ () C:\Windows\System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-2260964575-2753946872-1401531445-1001 2014-05-29 20:03 - 2014-05-26 10:52 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware 2014-05-29 20:03 - 2013-12-13 15:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware 2014-05-29 19:41 - 2014-05-29 19:41 - 00000000 ____D () C:\Users\User\AppData\Roaming\VSRevoGroup 2014-05-29 19:41 - 2009-07-14 05:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup 2014-05-29 19:28 - 2013-03-08 14:17 - 00000000 ____D () C:\Users\User\AppData\Roaming\SoftGrid Client 2014-05-29 18:55 - 2013-03-13 12:43 - 00000000 ____D () C:\Users\User\Documents\Bewerbungen Mandy 2014-05-29 00:45 - 2014-05-29 00:45 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\76743072.sys 2014-05-28 22:09 - 2014-05-28 22:09 - 00001791 _____ () C:\Users\Public\Desktop\iTunes.lnk 2014-05-28 22:09 - 2014-05-28 22:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2014-05-28 22:09 - 2014-05-28 22:09 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-05-28 22:09 - 2014-05-28 22:09 - 00000000 ____D () C:\Program Files\iTunes 2014-05-28 22:09 - 2013-03-28 00:43 - 00000000 ____D () C:\Program Files\iPod 2014-05-28 22:09 - 2013-03-28 00:43 - 00000000 ____D () C:\Program Files (x86)\iTunes 2014-05-27 21:19 - 2013-02-27 15:14 - 00000000 ____D () C:\Program Files (x86)\Origin 2014-05-27 20:35 - 2014-05-26 12:09 - 00034526 _____ () C:\Users\User\Downloads\Addition.txt 2014-05-27 20:35 - 2014-05-26 11:43 - 00062887 _____ () C:\Users\User\Downloads\FRST.txt 2014-05-27 20:25 - 2014-05-27 20:18 - 00000000 ____D () C:\AdwCleaner 2014-05-27 20:25 - 2013-09-21 20:24 - 00000000 ____D () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AppsHat 2014-05-27 20:18 - 2014-05-27 20:18 - 01327971 _____ () C:\Users\User\Downloads\adwcleaner_3.211.exe 2014-05-27 20:13 - 2014-05-27 20:13 - 00001276 _____ () C:\Users\User\Desktop\Revo Uninstaller.lnk 2014-05-27 20:13 - 2014-05-27 20:13 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group 2014-05-27 20:12 - 2014-05-27 20:12 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\User\Downloads\revosetup95.exe 2014-05-26 12:20 - 2014-05-26 12:20 - 02066944 _____ (Farbar) C:\Users\User\Downloads\FRST64 (2).exe 2014-05-26 12:08 - 2014-05-26 12:08 - 02066944 _____ (Farbar) C:\Users\User\Downloads\FRST64 (1).exe 2014-05-26 11:52 - 2014-05-26 11:52 - 00003120 _____ () C:\Windows\System32\Tasks\{8E74CBC0-091A-4327-9374-2C4B5696C230} 2014-05-26 11:39 - 2014-05-26 11:39 - 00388608 _____ (Trend Micro Inc.) C:\Users\User\Downloads\HijackThis.exe 2014-05-26 11:15 - 2014-05-26 11:15 - 01110476 _____ () C:\Users\User\Downloads\7z920.exe 2014-05-26 11:03 - 2014-05-26 11:03 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\User\Downloads\mbam-setup-2.0.2.1012.exe 2014-05-26 10:59 - 2014-05-26 10:59 - 29393568 _____ (SUPERAntiSpyware) C:\Users\User\Downloads\SUPERAntiSpyware_5.7.0.1018.exe 2014-05-26 10:52 - 2014-05-26 10:52 - 19279808 _____ (SUPERAntiSpyware) C:\Users\User\Downloads\SUPERAntiSpyware.exe 2014-05-26 10:30 - 2013-04-26 11:18 - 00000000 ____D () C:\Users\User\AppData\Roaming\Applian FLV and Media Player 2014-05-26 10:30 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\registration 2014-05-26 10:30 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\AppCompat 2014-05-26 10:29 - 2013-05-04 21:53 - 00000000 ____D () C:\ProgramData\Real 2014-05-20 21:21 - 2014-05-20 21:21 - 00001313 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk 2014-05-20 21:21 - 2014-05-20 21:21 - 00000000 ____D () C:\Windows\de 2014-05-20 21:21 - 2013-09-26 12:10 - 00001382 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk 2014-05-20 21:20 - 2013-09-26 12:09 - 00000000 ____D () C:\Program Files (x86)\Windows Live 2014-05-20 16:45 - 2013-07-21 13:19 - 00022016 _____ () C:\Users\User\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2014-05-20 10:50 - 2014-05-18 17:03 - 00000000 ____D () C:\Users\User\AppData\Roaming\Nico Mak Computing 2014-05-19 10:00 - 2013-03-05 10:56 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2014-05-18 17:02 - 2014-05-18 17:02 - 04892480 _____ (WinZip International LLC ) C:\Users\User\Downloads\wzmp_8.exe 2014-05-18 16:41 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\L2Schemas 2014-05-18 16:24 - 2014-05-18 16:24 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\User\Downloads\mbam-setup-2.0.1.1004.exe 2014-05-18 16:24 - 2013-03-03 23:22 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-05-18 16:11 - 2013-03-27 15:20 - 00000000 ____D () C:\ProgramData\Apple Computer 2014-05-18 16:11 - 2013-03-27 15:19 - 00000000 ____D () C:\ProgramData\Apple 2014-05-16 16:22 - 2014-02-18 15:17 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-05-15 11:10 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache 2014-05-14 23:17 - 2012-03-13 11:15 - 00000000 ___RD () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-05-14 23:17 - 2012-03-13 11:15 - 00000000 ___RD () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-05-14 22:03 - 2013-09-07 03:50 - 00000000 ____D () C:\Windows\system32\MRT 2014-05-14 22:01 - 2013-02-28 12:16 - 93223848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-05-14 18:51 - 2014-03-12 03:51 - 17938608 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2014-05-14 18:51 - 2013-04-03 15:38 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-05-14 18:51 - 2013-04-03 15:38 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-05-14 18:51 - 2013-04-03 15:38 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-05-11 11:29 - 2014-05-11 11:29 - 106954752 _____ () C:\Users\User\Downloads\6cd1f56ab245c1b66486787647799b92.part001.rar 2014-05-10 17:28 - 2014-05-10 17:28 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-05-10 12:04 - 2014-05-10 12:04 - 248108521 _____ () C:\Users\User\Downloads\abc-frau.ella.bdrip.xv.part6.rar 2014-05-10 11:57 - 2014-05-10 11:53 - 265289739 _____ () C:\Users\User\Downloads\abc-frau.ella.bdrip.xv.part4.rar 2014-05-10 11:57 - 2014-05-10 11:53 - 265289739 _____ () C:\Users\User\Downloads\abc-frau.ella.bdrip.xv.part3.rar 2014-05-10 11:56 - 2014-05-10 11:53 - 265289739 _____ () C:\Users\User\Downloads\abc-frau.ella.bdrip.xv.part5.rar 2014-05-10 11:56 - 2014-05-10 11:53 - 265289739 _____ () C:\Users\User\Downloads\abc-frau.ella.bdrip.xv.part2.rar 2014-05-10 11:56 - 2014-05-10 11:53 - 265289739 _____ () C:\Users\User\Downloads\abc-frau.ella.bdrip.xv.part1.rar 2014-05-09 00:05 - 2014-05-08 23:51 - 00000000 ____D () C:\Users\User\Documents\fletwerk 2014-05-08 23:48 - 2014-05-08 23:46 - 00000000 ____D () C:\Users\User\Documents\2014-05-08 lohnsteuerbescheinigung 2014-05-08 23:31 - 2014-05-08 23:31 - 00000000 ____D () C:\Users\User\Documents\2014-05-08 geburtsurkunde vivi 2014-05-08 23:28 - 2014-05-08 23:28 - 00000000 ____D () C:\Users\User\Documents\2014-05-08 ausweis-führerschein2 2014-05-08 23:26 - 2014-05-08 23:25 - 00000000 ____D () C:\Users\User\Documents\2014-05-08 ausweis-führerschein 2014-05-07 23:14 - 2013-02-28 02:26 - 00004084 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2260964575-2753946872-1401531445-1001UA 2014-05-07 23:14 - 2013-02-28 02:26 - 00003688 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2260964575-2753946872-1401531445-1001Core 2014-05-06 22:54 - 2014-05-06 22:43 - 82176579 _____ () C:\Users\User\Downloads\Axel Rudi Pell - Oceans Of Time (1998).rar 2014-05-06 22:35 - 2014-05-06 22:34 - 16618768 _____ (Philipp Schmieder Medien ) C:\Users\User\Downloads\clipgrab-3.4.3.exe 2014-05-06 22:26 - 2014-05-06 22:26 - 01235950 _____ (Medieval Software) C:\Users\User\Downloads\cuesplitter_setup_1_2.exe 2014-05-06 22:26 - 2014-05-06 22:19 - 00000000 ____D () C:\Users\User\AppData\Roaming\DVDVideoSoft 2014-05-06 22:20 - 2014-05-06 22:20 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} 2014-05-06 22:20 - 2014-05-06 22:20 - 00000000 ____D () C:\Users\User\AppData\Local\TuneUp Software 2014-05-06 22:20 - 2013-04-03 16:27 - 00000000 ____D () C:\Users\User\AppData\Roaming\TuneUp Software 2014-05-06 22:20 - 2013-04-03 16:27 - 00000000 ____D () C:\ProgramData\TuneUp Software 2014-05-06 22:18 - 2014-05-06 22:18 - 33692584 _____ (DVDVideoSoft Ltd. ) C:\Users\User\Downloads\FreeAudioConverter.exe 2014-05-06 22:06 - 2014-05-06 21:27 - 479000645 _____ () C:\Users\User\Downloads\ARP98OceOfTimeFLAC mediaboom.org.rar 2014-05-06 17:28 - 2013-07-24 19:03 - 00004102 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-05-06 17:28 - 2013-07-24 19:03 - 00003850 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-05-06 12:45 - 2014-05-06 12:41 - 00000000 ____D () C:\Users\User\Documents\2014-05-06 ausbildungsvertrag hornbach 2014-05-06 12:44 - 2014-05-06 12:35 - 00000000 ____D () C:\Users\User\Documents\2014-05-06 aushilfsvertragcua 2014-05-06 10:39 - 2014-05-06 10:38 - 61896982 _____ () C:\Users\User\Downloads\Die Gluecksbaerchis der Film [55] (1).avi 2014-05-06 10:38 - 2014-05-06 10:38 - 61896982 _____ () C:\Users\User\Downloads\Die Gluecksbaerchis der Film [55].avi 2014-05-06 10:38 - 2014-05-06 10:37 - 72282578 _____ () C:\Users\User\Downloads\Die Gluecksbaerchis der Film [45].avi 2014-05-06 10:36 - 2014-05-06 10:35 - 72215630 _____ () C:\Users\User\Downloads\Die Gluecksbaerchis der Film [35].avi 2014-05-06 10:16 - 2014-05-06 10:11 - 74312964 _____ () C:\Users\User\Downloads\DGAiW.part8.rar 2014-05-06 10:10 - 2014-05-06 10:04 - 106896000 _____ () C:\Users\User\Downloads\DGAiW.part7.rar 2014-05-06 10:10 - 2014-05-06 10:03 - 106896000 _____ () C:\Users\User\Downloads\DGAiW.part6.rar 2014-05-06 02:46 - 2014-05-14 23:06 - 17847808 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-06 02:21 - 2014-05-14 23:06 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-06 02:21 - 2014-05-14 23:06 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-05-06 01:32 - 2014-05-14 23:06 - 12347392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-05-06 01:14 - 2014-05-14 23:06 - 02382848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-05-06 01:14 - 2014-05-14 23:06 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-05-06 00:57 - 2014-05-06 00:51 - 106896000 _____ () C:\Users\User\Downloads\DGAiW.part5.rar 2014-05-06 00:36 - 2014-05-06 00:25 - 106896000 _____ () C:\Users\User\Downloads\DGAiW.part4.rar 2014-05-06 00:24 - 2014-05-06 00:13 - 106896000 _____ () C:\Users\User\Downloads\DGAiW.part3.rar 2014-05-05 23:58 - 2014-05-05 23:47 - 106896000 _____ () C:\Users\User\Downloads\DGAiW.part2.rar 2014-05-05 23:54 - 2014-05-05 23:48 - 106896000 _____ () C:\Users\User\Downloads\DGAiW.part1.rar 2014-05-03 22:27 - 2013-05-04 21:54 - 00000000 ____D () C:\Users\User\AppData\Roaming\Real 2014-05-03 22:21 - 2014-05-03 22:21 - 00000000 ____D () C:\Users\User\AppData\Roaming\RealNetworks 2014-05-03 22:17 - 2014-05-03 22:17 - 00505416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll 2014-05-03 22:17 - 2014-05-03 22:17 - 00353864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll 2014-05-03 22:17 - 2014-05-03 22:17 - 00278600 _____ (Progressive Networks) C:\Windows\SysWOW64\pncrt.dll 2014-05-03 22:17 - 2014-05-03 22:17 - 00201800 _____ (RealNetworks, Inc.) C:\Windows\SysWOW64\rmoc3260.dll 2014-05-03 22:17 - 2014-05-03 22:17 - 00001136 _____ () C:\Users\Public\Desktop\RealPlayer Cloud.lnk 2014-05-03 22:17 - 2014-05-03 22:17 - 00000000 ____D () C:\ProgramData\RealNetworks 2014-05-03 22:17 - 2014-05-03 22:17 - 00000000 ____D () C:\Program Files (x86)\RealNetworks 2014-05-03 22:17 - 2013-05-04 21:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealNetworks 2014-05-03 22:17 - 2013-05-04 21:54 - 00000000 ____D () C:\Program Files (x86)\Real 2014-05-03 21:34 - 2014-05-03 21:33 - 06112387 _____ () C:\Users\User\Downloads\gxbg-gdrilsv.part8.rar 2014-05-03 20:51 - 2014-05-03 20:34 - 104857600 _____ () C:\Users\User\Downloads\gxbg-gdrilsv.part7.rar 2014-05-03 20:19 - 2014-05-03 20:01 - 104857600 _____ () C:\Users\User\Downloads\gxbg-gdrilsv.part6.rar 2014-05-03 20:06 - 2014-05-03 20:00 - 104857600 _____ () C:\Users\User\Downloads\gxbg-gdrilsv.part4.rar 2014-05-03 15:38 - 2014-05-03 15:21 - 104857600 _____ () C:\Users\User\Downloads\gxbg-gdrilsv.part5.rar 2014-05-03 11:41 - 2014-05-03 11:31 - 104857600 _____ () C:\Users\User\Downloads\gxbg-gdrilsv.part3.rar 2014-05-03 11:36 - 2014-05-03 11:04 - 96229737 _____ () C:\Users\User\Downloads\01 - Das neue Baby.part2.rar 2014-05-02 23:54 - 2014-05-02 23:20 - 105000000 _____ () C:\Users\User\Downloads\01 - Das neue Baby.part1.rar 2014-05-02 23:50 - 2014-05-02 23:23 - 104857600 _____ () C:\Users\User\Downloads\gxbg-gdrilsv.part1.rar 2014-05-02 23:31 - 2014-05-02 23:25 - 104857600 _____ () C:\Users\User\Downloads\gxbg-gdrilsv.part2.rar 2014-05-02 14:27 - 2013-08-27 21:26 - 00000000 ____D () C:\Users\User\Documents\VirtualDJ ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-05-29 12:52 ==================== End Of Log ============================ Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 01-06-2014 01 Ran by User at 2014-06-01 22:27:48 Running from C:\Users\User\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Bitdefender Antivirus Free Edition (Enabled - Up to date) {9B5F5313-CAF9-DD97-C460-E778420237B4} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Bitdefender Antivirus Free Edition (Enabled - Up to date) {203EB2F7-ECC3-D219-FED0-DC0A39857D09} ==================== Installed Programs ====================== 7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version: - ) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) AbiWord 2.9.4 (HKLM-x32\...\AbiWord2) (Version: 2.9.4 - AbiSource Developers) Activision(R) (x32 Version: 1.00.0000 - Activision) Hidden Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 4.0.0.1390 - Adobe Systems Incorporated) Adobe AIR (x32 Version: 4.0.0.1390 - Adobe Systems Incorporated) Hidden Adobe Flash Player 13 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 13.0.0.214 - Adobe Systems Incorporated) Adobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.214 - Adobe Systems Incorporated) Adobe Reader XI (11.0.07) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.07 - Adobe Systems Incorporated) Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.0.150 - Adobe Systems, Inc.) AMD APP SDK Runtime (Version: 2.4.650.9 - Advanced Micro Devices Inc.) Hidden AMD Catalyst Install Manager (HKLM\...\{9AFAAEAF-7256-793D-AE2B-B4B2C5B3A807}) (Version: 3.0.838.0 - Advanced Micro Devices, Inc.) AMD Drag and Drop Transcoding (Version: 2.00.0000 - ATI Technologies Inc.) Hidden Apple Application Support (HKLM-x32\...\{D9DAD0FF-495A-472B-9F10-BAE430A26682}) (Version: 3.0.3 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{787136D2-F0F8-4625-AA3F-72D7795AC842}) (Version: 7.1.1.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Applian FLV and Media Player 3.1.1.12 (HKLM-x32\...\Applian FLV and Media Player) (Version: 3.1.1.12 - Applian Technologies) aTube Catcher (HKLM-x32\...\aTube Catcher) (Version: 3.8.5187 - DsNET Corp) Avi to Mpeg 3.5 (HKLM-x32\...\{14BF164E-80A4-422E-BE43-39FB759666C2}_is1) (Version: 3.5 - Avi to Mpeg) Bitdefender Antivirus Free Edition (HKLM\...\BitDefender Gonzales) (Version: 1.0.21.1099 - Bitdefender) Bluetooth Win7 Suite (64) (HKLM\...\{230D1595-57DA-4933-8C4E-375797EBB7E1}) (Version: 7.2.0.34 - Atheros Communications) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) BRATZ - Rock Angelz (HKLM-x32\...\{651A4E2C-C0B2-4A1F-86BC-6820C38A1139}) (Version: 1.0 - ) Catalyst Control Center InstallProxy (x32 Version: 2011.0728.1756.30366 - Advanced Micro Devices, Inc.) Hidden CCleaner (HKLM\...\CCleaner) (Version: 4.05 - Piriform) CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.2.4291 - CDBurnerXP) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Die Sims™ 3 (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.67.2 - Electronic Arts) Die Sims™ 3 70er, 80er & 90er Accessoires (HKLM-x32\...\{E1868CAE-E3B9-4099-8C18-AA8944D336FD}) (Version: 17.0.77 - Electronic Arts) Die Sims™ 3 Design-Garten-Accessoires (HKLM-x32\...\{117B6BF6-82C3-420C-B284-9247C8568E53}) (Version: 7.3.2 - Electronic Arts) Die Sims™ 3 Diesel Accessoires (HKLM-x32\...\{1C9B6173-6DC9-4EEE-9EFC-6BA115CFBE43}) (Version: 14.0.48 - Electronic Arts) Die Sims™ 3 Einfach tierisch (HKLM-x32\...\{C12631C6-804D-4B32-B0DD-8A496462F106}) (Version: 10.0.96 - Electronic Arts) Die Sims™ 3 Gib Gas-Accessoires (HKLM-x32\...\{ED436EA8-4145-4703-AE5D-4D09DD24AF5A}) (Version: 5.0.44 - Electronic Arts) Die Sims™ 3 Inselparadies (HKLM-x32\...\{DB21639E-FE55-432C-BCA2-0C5249E3F79E}) (Version: 19.0.101 - Electronic Arts) Die Sims™ 3 Jahreszeiten (HKLM-x32\...\{3DE92282-CB49-434F-81BF-94E5B380E889}) (Version: 16.0.136 - Electronic Arts) Die Sims™ 3 Late Night (HKLM-x32\...\{45057FCE-5784-48BE-8176-D9D00AF56C3C}) (Version: 6.5.1 - Electronic Arts) Die Sims™ 3 Lebensfreude (HKLM-x32\...\{E6B88BD6-E4B2-4701-A648-B6DAC6E491CC}) (Version: 8.0.152 - Electronic Arts) Die Sims™ 3 Luxus-Accessoires (HKLM-x32\...\{71828142-5A24-4BD0-97E7-976DA08CE6CF}) (Version: 3.0.38 - Electronic Arts) Die Sims™ 3 Reiseabenteuer (HKLM-x32\...\{BA26FFA5-6D47-47DB-BE56-34C357B5F8CC}) (Version: 2.0.86 - Electronic Arts) Die Sims™ 3 Showtime (HKLM-x32\...\{3BBFD444-5FAB-49F6-98B1-A1954E831399}) (Version: 12.0.273 - Electronic Arts) Die Sims™ 3 Stadt-Accessoires (HKLM-x32\...\{7B11296A-F894-449C-8DF6-6AAAA7D4D118}) (Version: 9.0.73 - Electronic Arts) Die Sims™ 3 Traumkarrieren (HKLM-x32\...\{910F4A29-1134-49E0-AD8B-56E4A3152BD1}) (Version: 4.0.87 - Electronic Arts) Die Sims™ 3 Traumsuite-Accessoires (HKLM-x32\...\{08A25478-C5DD-4EA7-B168-3D687CA987FF}) (Version: 11.0.84 - Electronic Arts) Die Sims™ 3 Wildes Studentenleben (HKLM-x32\...\{F26DE8EF-F2CF-40DC-8CDA-CC0D82D11B36}) (Version: 18.0.126 - Electronic Arts) DivX-Setup (HKLM-x32\...\DivX Setup) (Version: 2.6.1.100 - DivX, LLC) Ein Königreich für ein Lama-Action Game (HKLM-x32\...\Emperors New Groove) (Version: - ) EPSON-Drucker-Software (HKLM\...\EPSON Printer and Utilities) (Version: - ) Express Burn (HKLM-x32\...\ExpressBurn) (Version: - NCH Software) Fotogalerie (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Fragen-Lern-CD 4.3 (HKLM-x32\...\de.3m5.wendel.flcd.FLCDB.FC622282278C06838B5CD08883589F2C8AB9EEDC.1) (Version: 4.3.5 - Wendel-Verlag GmbH) Fragen-Lern-CD 4.3 (x32 Version: 4.3.5 - Wendel-Verlag GmbH) Hidden Game Booster 3 (HKLM-x32\...\Game Booster_is1) (Version: 3.4 - IObit) Google Chrome (HKCU\...\Google Chrome) (Version: 35.0.1916.114 - Google Inc.) Google Earth Plug-in (HKLM-x32\...\{4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google) Google Update Helper (x32 Version: 1.3.24.7 - Google Inc.) Hidden Hugo Troll Race Version 1.0 (HKLM-x32\...\{6C7A36BE-140B-42EC-A674-5DE0BFC0ADB2}_is1) (Version: 1.0 - KreaMedia) Ice Age(TM) 4 - Voll Verschoben! Die arktischen Spiele demo (HKLM-x32\...\InstallShield_{F7A7D9B3-A142-4957-AC8E-530D1DE1A91A}) (Version: 1.00.0000 - Activision) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2266 - Intel Corporation) ITE Infrared Transceiver (HKLM-x32\...\{40580068-9B10-40B5-9548-536CE88AB23C}) (Version: 1.00.0000 - ITE) iTunes (HKLM\...\{5A68A656-979F-4168-8795-E2E368AA4DC2}) (Version: 11.2.2.3 - Apple Inc.) Laura geht in die Schule (HKLM-x32\...\Laura geht in die Schule) (Version: - ) Mein bester Freund - I love dogs (HKLM-x32\...\Mein bester Freund - I love dogs_is1) (Version: - ) Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Klick-und-Los 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Klick-und-Los 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden Microsoft Office Starter 2010 - Deutsch (HKLM-x32\...\{90140011-0066-0407-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.) Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Mozilla Firefox 29.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 29.0.1 (x86 de)) (Version: 29.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla) MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden MyFreeCodec (HKCU\...\MyFreeCodec) (Version: - ) NVIDIA 3D Vision Treiber 275.33 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 275.33 - NVIDIA Corporation) NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.10.57.35 - NVIDIA Corporation) NVIDIA ForceWare Network Access Manager (HKLM-x32\...\{7CFA46E3-CC2F-4355-82AE-6012DC3633FD}) (Version: 1.00.7325.0 - NVIDIA Corporation) NVIDIA Grafiktreiber 275.33 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 275.33 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.2.22.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.2.22.1 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.275.80.0 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.10.0514 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.10.0514 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.10.0514 - NVIDIA Corporation) NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.12.7533 - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 275.33 (Version: 275.33 - NVIDIA Corporation) Hidden NVIDIA Update 1.3.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.3.5 - NVIDIA Corporation) NVIDIA Update Components (Version: 1.3.5 - NVIDIA Corporation) Hidden OpenOffice.org 3.4.1 (HKLM-x32\...\{2303AEEA-0FA8-4AFD-80A9-8F86BA4B44D2}) (Version: 3.41.9593 - Apache Software Foundation) Origin (HKLM-x32\...\Origin) (Version: 9.1.15.109 - Electronic Arts, Inc.) Photo Gallery (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden PIF DESIGNER (HKLM-x32\...\{B90450DF-E781-46FD-B1F1-0C86DA40E443}) (Version: - ) Platform (x32 Version: 1.34 - VIA Technologies, Inc.) Hidden RealDownloader (x32 Version: 17.0.9 - RealNetworks, Inc.) Hidden RealNetworks - Microsoft Visual C++ 2008 Runtime (x32 Version: 9.0 - RealNetworks, Inc) Hidden RealNetworks - Microsoft Visual C++ 2010 Runtime (Version: 10.0 - RealNetworks, Inc) Hidden RealNetworks - Microsoft Visual C++ 2010 Runtime (x32 Version: 10.0 - RealNetworks, Inc) Hidden RealPlayer Cloud (HKLM-x32\...\RealPlayer 17.0) (Version: 17.0.9 - RealNetworks) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.37.1229.2010 - Realtek) RealUpgrade 1.1 (x32 Version: 1.1.0 - RealNetworks, Inc.) Hidden Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{17528CE4-C333-48FB-A9E4-D841E795CDCE}) (Version: 3.0.20.0 - Renesas Electronics Corporation) Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.0.34.0 - Renesas Electronics Corporation) Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.34.0 - Renesas Electronics Corporation) Hidden Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 3.0.20.0 - Renesas Electronics Corporation) Hidden Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.27.0 - SAMSUNG Electronics Co., Ltd.) SolveigMM Video Splitter (HKLM-x32\...\SolveigMM Video Splitter 3.6.1305.24) (Version: 3.6.1305.24 - Solveig Multimedia) StreamTransport version: 1.0.2.2171 (HKLM-x32\...\{FA0BBB87-91A1-4BFD-9005-EB058BBA0E14}_is1) (Version: - ) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Traumjob Babysitter (HKLM-x32\...\Traumjob Babysitter) (Version: - ) Tweaking.com - Windows Repair (All in One) (HKLM-x32\...\Tweaking.com - Windows Repair (All in One)) (Version: 2.7.2 - Tweaking.com) Unity Web Player (HKCU\...\UnityWebPlayer) (Version: - Unity Technologies ApS) UpdateService (x32 Version: 1.0.0 - RealNetworks, Inc.) Hidden VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden VIA Plattform-Geräte-Manager (HKLM-x32\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.34 - VIA Technologies, Inc.) Virtual DJ - Atomix Productions (HKLM-x32\...\Virtual DJ - Atomix Productions) (Version: - ) VirtualDJ Home FREE (HKLM-x32\...\{A6AC699F-8315-40CA-8F70-E917494978AB}) (Version: 7.4 - Atomix Productions) Wendy (HKLM-x32\...\{1B4E3046-4982-4436-8B6F-2EE4F63326C9}) (Version: 1.0.0 - Astragon) Win7codecs (HKLM-x32\...\{8C0CAA7A-3272-4991-A808-2C7559DE3409}) (Version: 4.1.1 - Shark007) Windows Live Communications Platform (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) Windows Live Essentials (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden WinRAR 4.00 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 4.00.0 - win.rar GmbH) Wizard101(DE) (HKCU\...\Wizard101(DE)_is1) (Version: - Gameforge 4D GmbH) WMV9/VC-1 Video Playback (Version: 1.00.0000 - ATI Technologies Inc.) Hidden ==================== Restore Points ========================= 28-05-2014 20:00:13 Windows Update 28-05-2014 22:49:41 Windows Update 29-05-2014 17:28:16 Windows Update 29-05-2014 19:59:31 Revo Uninstaller's restore point - G Data InternetSecurity 29-05-2014 20:00:10 Windows Update 29-05-2014 20:03:44 Revo Uninstaller's restore point - G Data InternetSecurity 30-05-2014 07:40:38 Tweaking.com - Windows Repair 01-06-2014 13:17:01 Windows-Sicherung 01-06-2014 15:59:41 Windows Update 01-06-2014 16:01:58 Windows Update 01-06-2014 20:00:15 Windows Update ==================== Hosts content: ========================== 2009-07-14 04:34 - 2014-06-01 22:01 - 00000855 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (whitelisted) ============= Task: {08AE53F2-E319-4763-959C-438C1ADCF093} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-08-21] (Piriform Ltd) Task: {16BD9AB9-0364-4C8C-B87E-EF426737EEA9} - System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-2260964575-2753946872-1401531445-1001 => C:\Program Files (x86)\RealNetworks\RealDownloader\realupgrade.exe [2014-04-07] (RealNetworks, Inc.) Task: {1CB00B1D-9840-41B1-8133-90449FF7F363} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-14] (Adobe Systems Incorporated) Task: {1FCA4F68-0F8D-424D-A4D1-E8E12275075A} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {202CD6C2-B6E4-47EE-8113-C3955217C154} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-12-21] (Adobe Systems Incorporated) Task: {3506D00A-1BAA-4437-8AEE-F6DC5EF4E37D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-07-24] (Google Inc.) Task: {36F35EA7-DE3A-4C98-A062-1E3D8D722BDC} - System32\Tasks\Google Updater and Installer => C:\Users\User\AppData\Local\Google\Update\GoogleUpdate.exe [2013-02-28] (Google Inc.) Task: {38383FD8-DC8D-4642-A39B-93961882C8F6} - System32\Tasks\{7D73784B-FC55-4BA1-930A-0E03F8CF140B} => C:\Program Files (x86)\iTunes\iTunes.exe [2014-05-26] (Apple Inc.) Task: {7FC54586-E0E0-487F-8E02-706A965540E2} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2260964575-2753946872-1401531445-1001UA => C:\Users\User\AppData\Local\Google\Update\GoogleUpdate.exe [2013-02-28] (Google Inc.) Task: {94C6EF07-1808-497C-AAA3-6ED3DF822C58} - System32\Tasks\{E235FD23-3A7E-4D34-BA01-A589044B5E63} => C:\Program Files (x86)\BoontyGames\Taxi Racer New York 2\NYT2.exe Task: {959922E7-C2E9-47AF-8408-7DC05A3280D9} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-07-24] (Google Inc.) Task: {9AF0EA1F-2F63-4990-8A32-C72DF1BFF160} - System32\Tasks\Game_Booster_AutoUpdate => C:\Program Files (x86)\IObit\Game Booster 3\AutoUpdate.exe [2013-06-09] () Task: {9C5EA9A6-90D9-4A45-8B97-2FE2A2CB9B70} - System32\Tasks\{8AA0076B-4DFB-4B33-9B49-A554F97997EA} => C:\Program Files (x86)\iTunes\iTunes.exe [2014-05-26] (Apple Inc.) Task: {B7D93733-C33D-483D-A435-870E496ECD30} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup Task: {B896FF88-A6B8-4753-9E06-07191072948A} - System32\Tasks\RealDownloaderDownloaderScheduledTaskS-1-5-21-2260964575-2753946872-1401531445-1001 => C:\Program Files (x86)\RealNetworks\RealDownloader\recordingmanager.exe [2014-04-06] (RealNetworks, Inc.) Task: {BCF88220-4C37-4281-8F13-567692CFBB08} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2260964575-2753946872-1401531445-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2014-04-07] (RealNetworks, Inc.) Task: {C1FC935A-0E07-41E5-B249-B41181DA1CBD} - System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-2260964575-2753946872-1401531445-1001 => C:\Program Files (x86)\RealNetworks\RealDownloader\realupgrade.exe [2014-04-07] (RealNetworks, Inc.) Task: {C9034D79-C32B-4125-B524-29706769856B} - System32\Tasks\Asrsetup => D:\ASRSetup.exe Task: {E059F788-ABB1-416E-93E9-F5873BF5A99E} - System32\Tasks\{8479F984-2E97-4890-9888-00CD11956EFD} => D:\Setup.EXE Task: {F9A870E7-117E-4F7C-A661-F5D83C845F19} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2260964575-2753946872-1401531445-1001Core => C:\Users\User\AppData\Local\Google\Update\GoogleUpdate.exe [2013-02-28] (Google Inc.) Task: {FA753629-B539-48DC-B692-108E6DEE576E} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-2260964575-2753946872-1401531445-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2014-04-07] (RealNetworks, Inc.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2260964575-2753946872-1401531445-1001Core.job => C:\Users\User\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2260964575-2753946872-1401531445-1001UA.job => C:\Users\User\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2014-05-29 22:41 - 2013-03-19 12:07 - 00696632 _____ () C:\Program Files\Bitdefender\Antivirus Free Edition\sqlite3.dll 2014-05-29 22:41 - 2013-09-03 14:29 - 00101328 _____ () C:\Program Files\Bitdefender\Antivirus Free Edition\BDMetrics.dll 2014-01-10 07:26 - 2014-01-10 07:26 - 01861968 _____ () C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe 2014-04-06 23:00 - 2014-04-06 23:00 - 00039568 _____ () C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe 2014-04-07 03:06 - 2014-04-07 03:06 - 00023552 _____ () C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe 2011-05-07 02:07 - 2010-01-21 01:53 - 00496232 _____ () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe 2011-05-07 02:07 - 2010-01-21 01:52 - 00076392 _____ () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nv_common.dll 2011-05-07 02:07 - 2010-01-21 01:53 - 00731752 _____ () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\SpecialCase.dll 2011-05-07 02:07 - 2010-01-21 01:53 - 00209000 _____ () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe 2014-04-23 16:05 - 2014-04-23 16:05 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2014-04-23 16:04 - 2014-04-23 16:04 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2014-01-10 07:28 - 2014-01-10 07:28 - 00100688 _____ () C:\Program Files (x86)\DivX\DivX Update\DivXUpdateCheck.dll 2014-05-03 22:17 - 2014-05-03 22:17 - 00859224 _____ () c:\program files (x86)\real\realplayer\RPDS\Plugins\cldplin.dll 2014-05-29 22:29 - 2014-05-14 01:40 - 00716616 _____ () C:\Users\User\AppData\Local\Google\Chrome\Application\35.0.1916.114\libglesv2.dll 2014-05-29 22:29 - 2014-05-14 01:40 - 00126280 _____ () C:\Users\User\AppData\Local\Google\Chrome\Application\35.0.1916.114\libegl.dll 2014-05-29 22:29 - 2014-05-14 01:40 - 04217672 _____ () C:\Users\User\AppData\Local\Google\Chrome\Application\35.0.1916.114\pdf.dll 2014-05-29 22:29 - 2014-05-14 01:40 - 00414536 _____ () C:\Users\User\AppData\Local\Google\Chrome\Application\35.0.1916.114\ppGoogleNaClPluginChrome.dll 2014-05-29 22:29 - 2014-05-14 01:40 - 01732424 _____ () C:\Users\User\AppData\Local\Google\Chrome\Application\35.0.1916.114\ffmpegsumo.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\Users\User\Downloads\ccsetup400.exe:BDU AlternateDataStreams: C:\Users\User\Downloads\FLVPlayerSetupStubMDV (1).exe:BDU AlternateDataStreams: C:\Users\User\Downloads\tweaking.com_windows_repair_aio_setup.exe:BDU ==================== Safe Mode (whitelisted) =================== ==================== EXE Association (whitelisted) ============= ==================== Disabled items from MSCONFIG ============== MSCONFIG\startupfolder: C:^Users^User^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.4.1.lnk => C:\Windows\pss\OpenOffice.org 3.4.1.lnk.Startup MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" MSCONFIG\startupreg: EPSON Stylus DX4800 Series => C:\Windows\system32\spool\DRIVERS\x64\3\E_FATIADE.EXE /F "C:\Windows\TEMP\E_SCBF5.tmp" /EF "HKLM" MSCONFIG\startupreg: FLV Player => C:\Users\User\AppData\Local\WebPlayer\FLV Player\WebPlayer.exe MSCONFIG\startupreg: Google Update => "C:\Users\User\AppData\Local\Google\Update\GoogleUpdate.exe" /c MSCONFIG\startupreg: iTunesHelper => "C:\Program Files (x86)\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: KiesPreload => C:\Program Files (x86)\Samsung\Kies\Kies.exe /preload MSCONFIG\startupreg: KiesTrayAgent => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (06/01/2014 10:07:55 PM) (Source: .NET Runtime Optimization Service) (EventID: 1103) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Tried to start a service that wasn't the latest version of CLR Optimization service. Will shutdown Error: (06/01/2014 10:07:53 PM) (Source: .NET Runtime Optimization Service) (EventID: 1103) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_64) - Tried to start a service that wasn't the latest version of CLR Optimization service. Will shutdown Error: (06/01/2014 09:57:50 PM) (Source: WinMgmt) (EventID: 4) (User: ) Description: 0x8004401eC:\WINDOWS\SYSTEM32\WBEM\DE-DE\AACLIENT.MFL Error: (06/01/2014 09:57:42 PM) (Source: WinMgmt) (EventID: 4) (User: ) Description: 0x8004401eC:\WINDOWS\SYSTEM32\WBEM\AACLIENT.MOF Error: (05/30/2014 10:42:40 AM) (Source: .NET Runtime Optimization Service) (EventID: 1103) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_64) - Tried to start a service that wasn't the latest version of CLR Optimization service. Will shutdown Error: (05/30/2014 10:24:21 AM) (Source: .NET Runtime Optimization Service) (EventID: 1103) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_64) - Tried to start a service that wasn't the latest version of CLR Optimization service. Will shutdown Error: (05/30/2014 10:06:29 AM) (Source: WinMgmt) (EventID: 4) (User: ) Description: 0x8004401eC:\WINDOWS\SYSTEM32\WBEM\DE-DE\AACLIENT.MFL Error: (05/30/2014 10:06:23 AM) (Source: WinMgmt) (EventID: 4) (User: ) Description: 0x8004401eC:\WINDOWS\SYSTEM32\WBEM\AACLIENT.MOF Error: (05/30/2014 09:15:31 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/30/2014 09:06:31 AM) (Source: VSS) (EventID: 8193) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "CoCreateInstance" ist ein unerwarteter Fehler aufgetreten. hr = 0x80040154, Klasse nicht registriert . Vorgang: VSS-Server wird instanziiert System errors: ============= Error: (06/01/2014 10:28:23 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "G Data Dateisystem Wächter" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (06/01/2014 10:28:23 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "G Data Dateisystem Wächter" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (06/01/2014 10:28:23 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "G Data Dateisystem Wächter" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (06/01/2014 10:28:23 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "G Data Dateisystem Wächter" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (06/01/2014 10:28:23 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "G Data Dateisystem Wächter" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (06/01/2014 10:28:23 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "G Data Dateisystem Wächter" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (06/01/2014 10:28:23 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "G Data Dateisystem Wächter" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (06/01/2014 10:28:23 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "G Data Dateisystem Wächter" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (06/01/2014 10:28:23 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "G Data Dateisystem Wächter" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (06/01/2014 10:28:23 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "G Data Dateisystem Wächter" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Microsoft Office Sessions: ========================= Error: (06/01/2014 10:07:55 PM) (Source: .NET Runtime Optimization Service) (EventID: 1103) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Tried to start a service that wasn't the latest version of CLR Optimization service. Will shutdown Error: (06/01/2014 10:07:53 PM) (Source: .NET Runtime Optimization Service) (EventID: 1103) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_64) - Tried to start a service that wasn't the latest version of CLR Optimization service. Will shutdown Error: (06/01/2014 09:57:50 PM) (Source: WinMgmt) (EventID: 4) (User: ) Description: 0x8004401eC:\WINDOWS\SYSTEM32\WBEM\DE-DE\AACLIENT.MFL Error: (06/01/2014 09:57:42 PM) (Source: WinMgmt) (EventID: 4) (User: ) Description: 0x8004401eC:\WINDOWS\SYSTEM32\WBEM\AACLIENT.MOF Error: (05/30/2014 10:42:40 AM) (Source: .NET Runtime Optimization Service) (EventID: 1103) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_64) - Tried to start a service that wasn't the latest version of CLR Optimization service. Will shutdown Error: (05/30/2014 10:24:21 AM) (Source: .NET Runtime Optimization Service) (EventID: 1103) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_64) - Tried to start a service that wasn't the latest version of CLR Optimization service. Will shutdown Error: (05/30/2014 10:06:29 AM) (Source: WinMgmt) (EventID: 4) (User: ) Description: 0x8004401eC:\WINDOWS\SYSTEM32\WBEM\DE-DE\AACLIENT.MFL Error: (05/30/2014 10:06:23 AM) (Source: WinMgmt) (EventID: 4) (User: ) Description: 0x8004401eC:\WINDOWS\SYSTEM32\WBEM\AACLIENT.MOF Error: (05/30/2014 09:15:31 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/30/2014 09:06:31 AM) (Source: VSS) (EventID: 8193) (User: ) Description: CoCreateInstance0x80040154, Klasse nicht registriert Vorgang: VSS-Server wird instanziiert ==================== Memory info =========================== Percentage of memory in use: 26% Total physical RAM: 7915.77 MB Available physical RAM: 5830.35 MB Total Pagefile: 15829.71 MB Available Pagefile: 13090.09 MB Total Virtual: 8192 MB Available Virtual: 8191.84 MB ==================== Drives ================================ Drive c: (Windows7) (Fixed) (Total:698.54 GB) (Free:459.26 GB) NTFS Drive d: (Sims3EP10) (CDROM) (Total:4.37 GB) (Free:0 GB) UDF ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 699 GB) (Disk ID: 3EAE5DE7) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=699 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
02.06.2014, 23:01 | #18 |
Ruhe in Frieden † 2019 | spyware und malwarebytes lassen sich nicht öffnen Das sieht gut aus,
__________________deinstalliere bitte Malwarebytes und Superantisypware, installiere sie neu und versuche ob sie nun gehen. Benutze für Malwarebytes bitte folgendes Tool mbam-clean.exe für SUPERAntiSpyware dieses Tool SASUNINST64.exe
__________________ |
03.06.2014, 18:57 | #19 |
| spyware und malwarebytes lassen sich nicht öffnen Danke, danke, danke Malwarebytes is super durchgelaufen und hat nichts gefunden. Superantispyware hatte diese Funde: Was war das nun? Hatte ich mir was eingefangen oder war es ein Windowsproblem? Code:
ATTFilter SUPERAntiSpyware Scan Log hxxp://www.superantispyware.com Generated 06/03/2014 at 07:53 PM Application Version : 5.7.1018 Core Rules Database Version : 10978 Trace Rules Database Version: 8790 Scan type : Quick Scan Total Scan Time : 00:05:00 Operating System Information Windows 7 Home Premium 64-bit, Service Pack 1 (Build 6.01.7601) UAC On - Limited User Memory items scanned : 648 Memory threats detected : 0 Registry items scanned : 64807 Registry threats detected : 0 File items scanned : 10863 File threats detected : 181 Adware.Tracking Cookie accounts.google.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.googleadservices.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .doubleclick.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] track.adform.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.googleadservices.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .webmasterplan.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .mediaplex.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .mediaplex.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] tracking.mlsat02.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .atdmt.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .serving-sys.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .serving-sys.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .stroeerdigitalmedia.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .imrworldwide.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.googleadservices.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adform.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .xiti.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .xiti.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adform.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad.zanox.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] adx.chip.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] track.effiliation.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] track.effiliation.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] track.effiliation.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] track.effiliation.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] track.effiliation.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] track.effiliation.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] track.effiliation.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] adx.chip.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ru4.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .smartadserver.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .atdmt.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .atdmt.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .advertising.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] marc-o-polo.media01.eu [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .at.atwola.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .tribalfusion.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .2o7.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] server.adformdsp.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .gostats.ru [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] smartmediasearcher.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] smartmediasearcher.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] smartmediasearcher.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] smartmediasearcher.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] smartmediasearcher.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] smartmediasearcher.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.etracker.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .vinsight.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .bs.serving-sys.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .webmasterplan.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adtech.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] track.adform.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] server.adform.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] commons.wikimedia.org [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.googleadservices.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .germanwings.112.2o7.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .smartadserver.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] onclickads.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ads.adsrvmedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ads.adsrvmedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ads.adsrvmedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ads.adsrvmedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ads.adsrvmedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .questionmarket.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .questionmarket.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ero-advertising.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ero-advertising.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ero-advertising.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .onclickads.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] onclickads.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] onclickads.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] tracker.junbi-tracker.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ero-advertising.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] onclickads.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .statcounter.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .zedo.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .zedo.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] js.herdermedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .herdermedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .legolas-media.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .legolas-media.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .tradedoubler.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .tradedoubler.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .tradetracker.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .tradetracker.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .tradedoubler.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ru4.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] adfarm1.adition.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .unrulymedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .unrulymedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .liveperson.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .liveperson.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ad6media.fr [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ad6media.fr [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .generaltracking.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .generaltracking.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .generaltracking.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .generaltracking.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .generaltracking.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .amazon-adsystem.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .amazon-adsystem.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ad.adnet.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad3.adfarm1.adition.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .mediaplex.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.googleadservices.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.googleadservices.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.googleadservices.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.googleadservices.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] server.adformdsp.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adformdsp.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .2o7.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ww251.smartadserver.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .smartadserver.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adtech.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adtech.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .nextag.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] eas.apm.emediate.eu [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] eas.apm.emediate.eu [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .fastclick.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] eas.apm.emediate.eu [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adtech.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .clickfuse.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .uk.at.atwola.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .clickfuse.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .nextag.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .media6degrees.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .media6degrees.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .media6degrees.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .webmasterplan.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .webmasterplan.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .webmasterplan.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adtech.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .casalemedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .casalemedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .casalemedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .casalemedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .casalemedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] c1.adform.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .advertising.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .webmasterplan.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .webmasterplan.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.usenext.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .smartadserver.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .webmasterplan.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .webmasterplan.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .webmasterplan.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad.zanox.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .zanox.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad-emea.doubleclick.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad-emea.doubleclick.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.googleadservices.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] accounts.youtube.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .doubleclick.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad2.adfarm1.adition.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .webmasterplan.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .webmasterplan.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .smartadserver.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .smartadserver.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] track.adform.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adform.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .serving-sys.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .serving-sys.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] accounts.google.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] accounts.google.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .atdmt.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad1.adfarm1.adition.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .uk.at.atwola.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adfarm1.adition.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad4.adfarm1.adition.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adfarm1.adition.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adfarm1.adition.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adfarm1.adition.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] |
03.06.2014, 22:26 | #20 | |
Ruhe in Frieden † 2019 | spyware und malwarebytes lassen sich nicht öffnen Hallo tweety665, die Funde sind Tracking cookies, die solltest du löschen. Zitat:
Sehr schön, wir sind fast fertig OK So wie ich es sehe, haben wir damit alles Schadhafte entfernt. Deine Logs sind sauber. Abschließend räumen wir noch etwas auf, führen Updates durch und dann bekommst du noch etwas Lesestoff von mir. Schritt 1 Falls Du Malwarebytes-Antimalware und den ESET-Onlinescan nicht mehr benötigst, kannst Du beide Programme einfach über die Programmdeinstallation deinstallieren. Ich empfehle Dir aber zumindest Malwarebytes zu behalten, und damit einmal die Woche einen Kontrollscan zu machen. Schritt 2 Downloade dir bitte delfix auf deinen Desktop.
Updates / Programme aktualisieren
Nun zum Schluss noch ein paar Tipps zur Absicherung deines Systems. Aktualität des Systems Es ist extrem wichtig, dass sowohl dein System als auch die darauf installierte sicherheitsrelevante Software (Flash Player, PDF-Reader und besonders Java, sofern vorhanden) aktuell sind.
Antivirensoftware
Zusätzlicher Schutz
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der Internet Explorer, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Systemleistung Lösche regelmäßig deine temporären Dateien. Ich empfehle hierzu die Datenträgerbereinigung von Windows. Windows Vista
Windows 7
Windows 8
Halte dich fern von jeglichen Registry Cleanern. Diese schaden deinem System mehr als dass sie es schneller machen. Verhaltensregeln zum sichereren Surfen
Nun bleibt mir nur noch dir viel Spass beim sicheren Surfen zu wünschen. Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind. Falls Du Lob oder Kritik abgeben möchtest, kannst Du das sehr gerne hier tun. Wenn Du etwas für das Forum und unsere Arbeit spenden möchtest, so kannst Du das hier tun. |
04.06.2014, 12:59 | #21 |
| spyware und malwarebytes lassen sich nicht öffnen Ich hab alles erledigt. Außer die automatischen Windows updates konnte ich nicht überprüfen. Ich kann die Systemsteuerung öffnen, auf System und Sicherheit gehen, aber sobald ich updates aktiviern/deaktivieren anklicke kommt nur n kreis und lädt und lädt. Mir ist auch aufgefallen, dass jetzt der Start des PCs lange dauert. Ich sehe sehr lange Zeit nur nen schwarzen Bildschirm, was ungewöhnlich is, bis dann mein desktophintergrund erscheint. erst nach einiger zeit kommen dann auch die icons. |
Themen zu spyware und malwarebytes lassen sich nicht öffnen |
antispyware, bli, blinkt, cd-rom-laufwerk, chip, einiger, erkennt, klicke, klicken, konnte, lädt, malwarebytes, nicht mehr, nicht öffnen, nichts, plötzlich, problem, programme, schädlinge, spiel, spinn, spinnt, spyware, super, verrückt, zugreifen, öffnen |