![]() |
|
Log-Analyse und Auswertung: Hohe CPU Auslastung / Langsame Internetverbindung bei betroffenem PC / google & youtube mit IE11 nicht mehr aufrufbarWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #1 |
| ![]() Hohe CPU Auslastung / Langsame Internetverbindung bei betroffenem PC / google & youtube mit IE11 nicht mehr aufrufbar Liebes Trojaner-Board-Team, seit einiger Zeit habe ich das Gefühl, dass mein PC (Windows 7 Home Premium, Service Pack 1, 64 Bit-Betriebssystem) langsam läuft. Es liegt oft eine CPU-Auslastung von 50% und mehr vor. Zudem erscheint mir die Internetverbindung an diesem Rechner sehr langsam zu sein. Bei einem anderen PC im gleichen Netzwerk erscheint mir die Geschwindigdkeit bzw. das Laden von Internetseiten deutlich schneller zu laufen. Vielleicht hat es auch nichts damit zu tun, aber Itunes bricht beim Update immer kurz vor Ende der Installation ab. Begründung: Unbekannter Fehler. Bei der empfohlenen manuellen Installation passiert das gleiche. Heute morgen ist mir dann aufgefallen, dass sich im Internetexplorer die Seiten von Google und Yahoo ("Die Navigation zur Webseite wurde abgebrochen") nicht mehr laden lassen. Im Firefox und in Opera ist dies kein Problem. Eure Anleitung "Für alle Hilfesuchenden" bin ich durchgegangen. Die Logfiles sind zu lang, um sie direkt in diesen Thread zu posten. (Fehlermeldung beim Erstellen) Daher befinden sie sich im Anhang. Vielen Dank & viele Grüße Sonja FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 25-08-2014 Ran by Neo (administrator) on NEO-VAIO on 27-08-2014 13:22:42 Running from C:\Users\Neo\Downloads\anti spy Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (AMD) C:\Windows\System32\atiesrxx.exe (Sophos Limited) C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SavService.exe (AMD) C:\Windows\System32\atieclxx.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe (Expert System S.p.A.) C:\Program Files (x86)\Duden\Duden-Rechtschreibprüfung\DKTray.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Sony Corporation) C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SHTtray.exe (Sophos Limited) C:\Program Files (x86)\Sophos\AutoUpdate\ALMon.exe (Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler64.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (Sony Corporation) C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe (Cisco Systems, Inc.) C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe (DATA BECKER GmbH & Co KG) C:\Program Files (x86)\Common Files\DATA BECKER Shared\DBService.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe () C:\ProgramData\MobileBrServ\mbbService.exe (pdfforge GmbH) C:\Program Files (x86)\PDF Architect\HelperService.exe (pdfforge GmbH) C:\Program Files (x86)\PDF Architect\ConversionService.exe (Protexis Inc.) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Sophos Limited) C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SAVAdminService.exe (Sophos Limited) C:\Program Files (x86)\Sophos\AutoUpdate\ALsvc.exe (Sophos Limited) C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Control\swc_service.exe (Sophos Limited) C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_service.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe (Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNService.exe (Check Point Software Technologies, Ltd.) C:\Program Files (x86)\CheckPoint\ZoneAlarm\ZAPrivacyService.exe (Bibliographisches Institut GmbH) C:\Program Files (x86)\Duden\Duden-Bibliothek\dudenbib.exe (Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe (Microsoft Corporation) C:\Windows\splwow64.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Event Service\VESMgrSub.exe (Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNClient.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe (Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMService.exe (Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMgr.exe (Sony Corporation) C:\Program Files\Sony\VAIO Update Common\VUAgent.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee Security Scan\3.0.285\SSScheduler.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE (Check Point Software Technologies Ltd.) C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe (Check Point Software Technologies Ltd.) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe (Opera Software) C:\Program Files (x86)\Opera\opera.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [7938080 2009-07-24] (Realtek Semiconductor) HKLM\...\Run: [IAAnotif] => C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2009-06-04] (Intel Corporation) HKLM-x32\...\Run: [SHTtray.exe] => C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SHTtray.exe [99624 2009-07-27] (Sony Corporation) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Sophos AutoUpdate Monitor] => C:\Program Files (x86)\Sophos\AutoUpdate\almon.exe [1617704 2014-05-21] (Sophos Limited) HKLM-x32\...\Run: [PDFPrint] => C:\Program Files (x86)\PDF24\pdf24.exe [191016 2014-05-14] (Geek Software GmbH) HKLM-x32\...\Run: [ZoneAlarm] => C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe [137352 2014-05-30] (Check Point Software Technologies Ltd.) HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-07-08] (Apple Inc.) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) Winlogon\Notify\VESWinlogon-x32: VESWinlogon.dll [X] HKU\.DEFAULT\...\Run: [Duden Korrektor SysTray] => C:\Program Files (x86)\Duden\Duden-Rechtschreibprüfung\DKTray.exe [332432 2011-07-06] (Expert System S.p.A.) HKU\S-1-5-21-2692801368-1878214995-1402500385-1000\...\Run: [Duden Korrektor SysTray] => C:\Program Files (x86)\Duden\Duden-Rechtschreibprüfung\DKTray.exe [332432 2011-07-06] (Expert System S.p.A.) HKU\S-1-5-21-2692801368-1878214995-1402500385-1000\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [59720 2013-11-20] (Apple Inc.) AppInit_DLLs: C:\PROGRA~2\Sophos\SOPHOS~1\sophos_detoured_x64.dll => C:\Program Files (x86)\Sophos\Sophos Anti-Virus\sophos_detoured_x64.dll [217160 2014-05-21] (Sophos Limited) AppInit_DLLs: ,C:\PROGRA~2\Sophos\SOPHOS~1\SOPHOS~2.DLL => C:\Program Files (x86)\Sophos\Sophos Anti-Virus\sophos_detoured_x64.dll [217160 2014-05-21] (Sophos Limited) AppInit_DLLs-x32: C:\PROGRA~2\Sophos\SOPHOS~1\sophos_detoured.dll => C:\Program Files (x86)\Sophos\Sophos Anti-Virus\sophos_detoured.dll [275352 2014-05-21] (Sophos Limited) AppInit_DLLs-x32: ,C:\PROGRA~2\Sophos\SOPHOS~1\SOPHOS~1.DLL => C:\Program Files (x86)\Sophos\Sophos Anti-Virus\sophos_detoured.dll [275352 2014-05-21] (Sophos Limited) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files (x86)\McAfee Security Scan\3.0.285\SSScheduler.exe (McAfee, Inc.) Startup: C:\Users\Neo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma.lnk ShortcutTarget: Adobe Gamma.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com/ie StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM-x32 - DefaultScope value is missing. SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?q={sear BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) BHO: DVDVideoSoft IE Extension -> {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} -> C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll (DVDVideoSoft Ltd.) BHO-x32: PDF Architect Helper -> {3A2D5EBA-F86D-4BD3-A177-019765996711} -> C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GmbH) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: DVDVideoSoft IE Extension -> {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} -> C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll (DVDVideoSoft Ltd.) Toolbar: HKLM-x32 - No Name - {ED0E8CA5-42FB-4B18-997B-769E0408E79D} - No File Toolbar: HKLM-x32 - PDF Architect Toolbar - {25A3A431-30BB-47C8-AD6A-E1063801134F} - C:\Program Files (x86)\PDF Architect\PDFIEPlugin.dll (pdfforge GmbH) Toolbar: HKCU - No Name - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - No File DPF: HKLM-x32 {85C86CCC-2158-4123-9C7D-785190CED875} https://lernboerse.arbeitsagentur.de/exklusiv/ilias/data/balihob/lm_data/httppath/dpLaunchPlugin.cab DPF: HKLM-x32 {DAF7E6E6-D53A-439A-B28D-12271406B8A9} hxxp://mobileapps.blackberry.com/devicesoftware/AxLoader.cab Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8050.1202.dll (Microsoft Corporation) Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8050.1202.dll (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Winsock: Catalog9 01 C:\Windows\SysWOW64\BGLsp.dll [82776] (BullGuard Ltd.) Winsock: Catalog9 02 C:\Windows\SysWOW64\BGLsp.dll [82776] (BullGuard Ltd.) Winsock: Catalog9 03 C:\Windows\SysWOW64\BGLsp.dll [82776] (BullGuard Ltd.) Winsock: Catalog9 04 C:\Windows\SysWOW64\BGLsp.dll [82776] (BullGuard Ltd.) Winsock: Catalog9 05 C:\Windows\SysWOW64\BGLsp.dll [82776] (BullGuard Ltd.) Winsock: Catalog9 06 C:\Windows\SysWOW64\BGLsp.dll [82776] (BullGuard Ltd.) Winsock: Catalog9 07 C:\Windows\SysWOW64\BGLsp.dll [82776] (BullGuard Ltd.) Winsock: Catalog9 08 C:\Windows\SysWOW64\BGLsp.dll [82776] (BullGuard Ltd.) Winsock: Catalog9 09 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll [126760] (Sophos Limited) Winsock: Catalog9 10 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll [126760] (Sophos Limited) Winsock: Catalog9 11 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll [126760] (Sophos Limited) Winsock: Catalog9 12 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll [126760] (Sophos Limited) Winsock: Catalog9 13 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll [126760] (Sophos Limited) Winsock: Catalog9 14 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll [126760] (Sophos Limited) Winsock: Catalog9 15 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll [126760] (Sophos Limited) Winsock: Catalog9 16 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll [126760] (Sophos Limited) Winsock: Catalog9 17 C:\Windows\SysWOW64\BGLsp.dll [82776] (BullGuard Ltd.) Winsock: Catalog9 18 C:\Windows\SysWOW64\BGLsp.dll [82776] (BullGuard Ltd.) Winsock: Catalog9 19 C:\Windows\SysWOW64\BGLsp.dll [82776] (BullGuard Ltd.) Winsock: Catalog9 31 C:\Windows\SysWOW64\BGLsp.dll [82776] (BullGuard Ltd.) Winsock: Catalog9 32 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll [126760] (Sophos Limited) Winsock: Catalog9-x64 01 C:\Windows\system32\BGLsp.dll [98648] (BullGuard Ltd.) Winsock: Catalog9-x64 02 C:\Windows\system32\BGLsp.dll [98648] (BullGuard Ltd.) Winsock: Catalog9-x64 03 C:\Windows\system32\BGLsp.dll [98648] (BullGuard Ltd.) Winsock: Catalog9-x64 04 C:\Windows\system32\BGLsp.dll [98648] (BullGuard Ltd.) Winsock: Catalog9-x64 05 C:\Windows\system32\BGLsp.dll [98648] (BullGuard Ltd.) Winsock: Catalog9-x64 06 C:\Windows\system32\BGLsp.dll [98648] (BullGuard Ltd.) Winsock: Catalog9-x64 07 C:\Windows\system32\BGLsp.dll [98648] (BullGuard Ltd.) Winsock: Catalog9-x64 08 C:\Windows\system32\BGLsp.dll [98648] (BullGuard Ltd.) Winsock: Catalog9-x64 09 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll [173864] (Sophos Limited) Winsock: Catalog9-x64 10 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll [173864] (Sophos Limited) Winsock: Catalog9-x64 11 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll [173864] (Sophos Limited) Winsock: Catalog9-x64 12 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll [173864] (Sophos Limited) Winsock: Catalog9-x64 13 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll [173864] (Sophos Limited) Winsock: Catalog9-x64 14 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll [173864] (Sophos Limited) Winsock: Catalog9-x64 15 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll [173864] (Sophos Limited) Winsock: Catalog9-x64 16 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll [173864] (Sophos Limited) Winsock: Catalog9-x64 17 C:\Windows\system32\BGLsp.dll [98648] (BullGuard Ltd.) Winsock: Catalog9-x64 18 C:\Windows\system32\BGLsp.dll [98648] (BullGuard Ltd.) Winsock: Catalog9-x64 19 C:\Windows\system32\BGLsp.dll [98648] (BullGuard Ltd.) Winsock: Catalog9-x64 31 C:\Windows\system32\BGLsp.dll [98648] (BullGuard Ltd.) Winsock: Catalog9-x64 32 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll [173864] (Sophos Limited) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\Neo\AppData\Roaming\Mozilla\Firefox\Profiles\ww9j94z1.default FF Homepage: www.google.com FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_179.dll () FF Plugin: @microsoft.com/GENUINE -> disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_179.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw.dll No File FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.) FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=1.1.9 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (the VideoLAN Team) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @protectdisc.com/NPPDLicenseHelper -> C:\Users\Neo\AppData\Roaming\ProtectDisc\License Helper v2\NPPDLicenseHelper.dll ( ) FF Plugin HKCU: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll () FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\np-mswmp.dll (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npdjvu.dll (Caminova, Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npLegitCheckPlugin.dll (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\NPOFF12.DLL (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: dp Launcher Plugin - C:\Users\Neo\AppData\Roaming\Mozilla\Firefox\Profiles\ww9j94z1.default\Extensions\dplauncher@digitalpublishing.de [2014-01-29] FF Extension: FireShot - C:\Users\Neo\AppData\Roaming\Mozilla\Firefox\Profiles\ww9j94z1.default\Extensions\{0b457cAA-602d-484a-8fe7-c1d894a011ba} [2014-08-14] FF Extension: Adblock Plus Pop-up Addon - C:\Users\Neo\AppData\Roaming\Mozilla\Firefox\Profiles\ww9j94z1.default\Extensions\adblockpopups@jessehakanen.net.xpi [2011-11-24] FF Extension: Element Hiding Helper for Adblock Plus - C:\Users\Neo\AppData\Roaming\Mozilla\Firefox\Profiles\ww9j94z1.default\Extensions\elemhidehelper@adblockplus.org.xpi [2011-11-24] FF Extension: Firefox 2 theme for Firefox 4+ - C:\Users\Neo\AppData\Roaming\Mozilla\Firefox\Profiles\ww9j94z1.default\Extensions\ffe_ff2ff4@game-point.net.xpi [2011-11-24] FF Extension: Ghostery - C:\Users\Neo\AppData\Roaming\Mozilla\Firefox\Profiles\ww9j94z1.default\Extensions\firefox@ghostery.com.xpi [2013-08-03] FF Extension: PlugIn-Checker - C:\Users\Neo\AppData\Roaming\Mozilla\Firefox\Profiles\ww9j94z1.default\Extensions\jid0-c1av474BVPIHcGJfBp3GkhlhAa4@jetpack.xpi [2014-01-29] FF Extension: Beef Taco (Targeted Advertising Cookie Opt-Out) - C:\Users\Neo\AppData\Roaming\Mozilla\Firefox\Profiles\ww9j94z1.default\Extensions\john@velvetcache.org.xpi [2014-01-03] FF Extension: UploadScreenshot.com Capture - C:\Users\Neo\AppData\Roaming\Mozilla\Firefox\Profiles\ww9j94z1.default\Extensions\uss-button@uploadscreenshot.com.xpi [2014-06-06] FF Extension: NoScript - C:\Users\Neo\AppData\Roaming\Mozilla\Firefox\Profiles\ww9j94z1.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2011-11-24] FF Extension: BetterPrivacy - C:\Users\Neo\AppData\Roaming\Mozilla\Firefox\Profiles\ww9j94z1.default\Extensions\{d40f5e7b-d2cf-4856-b441-cc613eeffbe3}.xpi [2011-11-24] FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\extensions\{8AA36F4F-6DC7-4c06-77AF-5035170634FE} [2014-05-14] FF HKLM-x32\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt FF Extension: PDF Architect Converter For Firefox - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt [2014-03-05] FF HKCU\...\Firefox\Extensions: [{B64D9B05-48E1-4CEB-BF58-E0643994E900}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff FF Extension: Download videos and MP3s from YouTube - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff [2014-07-16] FF HKCU\...\Thunderbird\Extensions: [{0E810812-F4BB-4309-942A-755587587A5E}] - C:\Program Files\BullGuard Ltd\BullGuard Spamfilter\Files32\Spamfilter\TbSpamfilter FF Extension: BullGuard Spamfilter - C:\Program Files\BullGuard Ltd\BullGuard Spamfilter\Files32\Spamfilter\TbSpamfilter [2012-04-17] Chrome: ======= CHR HomePage: Default -> hxxp://www.google.com/ CHR StartupUrls: Default -> "hxxp://www.google.de/" CHR Profile: C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (KPI Watchdog reporting and analytics) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\abkbcmodekcnbanhghjmieeghgglojop [2014-03-27] CHR Extension: (TopicHeads - SEO Browser) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahicambbikodcabkphhbidajdjfhakcm [2014-03-27] CHR Extension: (Angry Birds) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj [2014-03-27] CHR Extension: (Google Docs) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-01-28] CHR Extension: (Google Drive) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-01-28] CHR Extension: (Brushed) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfjgbcjfpbbfepcccpaffkjofcmglifg [2014-04-29] CHR Extension: (News Reader (von Google)) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhhcdlggicnjoobiphdkdgmblbknkjjp [2014-04-29] CHR Extension: (YouTube) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-01-28] CHR Extension: (Twitter for Chrome) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\cdoinklelehcpndgmcddkkdhibpoglnk [2014-03-16] CHR Extension: (Google-Suche) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-01-28] CHR Extension: (Web page captures from browser) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\fomlbefjpamblimccfdomfgpgokdljcg [2014-07-02] CHR Extension: (The QR Code Generator) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\gcmhlmapohffdglflokbgknlknnmogbb [2014-03-27] CHR Extension: (PracticalSEO) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjemmmpehaenpbhhliiojngekignfmkh [2014-03-27] CHR Extension: (Google Wallet) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-28] CHR Extension: (ClicData) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\noonihaagcfbicjbekglpimaebcjefbo [2014-03-27] CHR Extension: (Instagram for Chrome) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\opnbmdkdflhjiclaoiiifmheknpccalb [2014-03-16] CHR Extension: (Google Mail) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-01-28] CHR HKCU\...\Chrome\Extension: [nikpibnbobmbdbheedjfogjlikpgpnhp] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\DVDVideoSoftBrowserExtension.crx [2014-07-16] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.) S3 Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [72704 2014-03-16] (Adobe Systems) [File not signed] S3 BgRaSvc; C:\Program Files\BullGuard Ltd\BullGuard Spamfilter\Support\BgRaSvc.exe [161112 2011-06-29] (BullGuard Ltd.) S4 BsMailProxy; C:\Program Files\BullGuard Ltd\BullGuard Spamfilter\BsMailProxy\BsMailProxy.dll [261976 2012-04-17] (BullGuard Ltd.) S4 BsMain; C:\Program Files\BullGuard Ltd\BullGuard Spamfilter\BsMain.dll [269656 2012-05-25] (BullGuard Ltd.) S4 BsUpdate; C:\Program Files\BullGuard Ltd\BullGuard Spamfilter\BullGuardUpdate.exe [409944 2012-05-25] (BullGuard Ltd.) R2 CVPND; C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe [1529856 2011-03-04] (Cisco Systems, Inc.) R2 DBService; C:\Program Files (x86)\Common Files\DATA BECKER Shared\DBService.exe [2650112 2010-05-28] (DATA BECKER GmbH & Co KG) [File not signed] S4 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [73728 2004-10-22] (Macrovision Corporation) [File not signed] S3 McComponentHostService; C:\Program Files (x86)\McAfee Security Scan\3.0.285\McCHSvc.exe [234776 2012-09-05] (McAfee, Inc.) R2 Mobile Broadband HL Service; C:\ProgramData\MobileBrServ\mbbservice.exe [239184 2013-01-28] () R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH) R2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH) S4 Roxio UPnP Renderer 10; C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe [313840 2009-06-26] (Sonic Solutions) S4 Roxio Upnp Server 10; C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUpnpService10.exe [362992 2009-06-26] (Sonic Solutions) S4 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [189984 2009-07-24] (Realtek Semiconductor) R2 SAVAdminService; C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SAVAdminService.exe [288552 2014-05-21] (Sophos Limited) R2 SAVService; C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SavService.exe [205096 2014-05-21] (Sophos Limited) S3 SOHDBSvr; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDBSvr.exe [70952 2009-07-27] (Sony Corporation) S3 SOHPlMgr; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHPlMgr.exe [91432 2009-07-27] (Sony Corporation) R2 Sophos AutoUpdate Service; C:\Program Files (x86)\Sophos\AutoUpdate\ALsvc.exe [341800 2014-05-21] (Sophos Limited) R2 Sophos Web Control Service; C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Control\swc_service.exe [355624 2014-05-21] (Sophos Limited) R2 swi_service; C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_service.exe [3174696 2014-05-21] (Sophos Limited) S2 swi_update_64; C:\ProgramData\Sophos\Web Intelligence\swi_update_64.exe [2065704 2014-05-21] (Sophos Limited) S3 uCamMonitor; C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [104960 2008-09-18] (ArcSoft, Inc.) S3 VAIO Entertainment TV Device Arbitration Service; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzHardwareResourceManager\VzHardwareResourceManager\VzHardwareResourceManager.exe [69632 2009-07-23] (Sony Corporation) [File not signed] S3 VCFw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [642920 2009-07-22] (Sony Corporation) S3 Vcsw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe [313264 2009-07-23] (Sony Corporation) R2 vsmon; C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe [3592120 2014-05-30] (Check Point Software Technologies Ltd.) R2 VSNService; C:\Program Files\Sony\VAIO Smart Network\VSNService.exe [845312 2010-08-11] (Sony Corporation) [File not signed] S3 VzCdbSvc; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe [206336 2009-07-23] (Sony Corporation) [File not signed] R2 ZAPrivacyService; C:\Program Files (x86)\CheckPoint\ZoneAlarm\ZAPrivacyService.exe [90936 2014-05-29] (Check Point Software Technologies, Ltd.) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S3 androidusb; C:\Windows\System32\Drivers\androidusb.sys [32768 2010-04-29] (Google Inc) U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) R3 ArcSoftKsUFilter; C:\Windows\System32\DRIVERS\ArcSoftKsUFilter.sys [19968 2009-05-26] (ArcSoft, Inc.) S1 ASPI32; C:\Windows\SysWow64\Drivers\ASPI32.sys [25244 1999-09-10] (Adaptec) [File not signed] S3 AVerAF15DMBTH64; C:\Windows\System32\Drivers\AVerAF15DMBTH64.sys [592256 2009-07-27] (AVerMedia TECHNOLOGIES, Inc.) [File not signed] R3 CVPNDRVA; C:\Windows\system32\Drivers\CVPNDRVA.sys [306536 2011-03-04] () S3 igfx; C:\Windows\System32\DRIVERS\igdkmd64.sys [7345632 2009-08-05] (Intel Corporation) [File not signed] S3 IntcHdmiAddService; C:\Windows\System32\drivers\IntcHdmi.sys [139264 2009-08-05] (Intel(R) Corporation) [File not signed] R0 KL1; C:\Windows\System32\DRIVERS\kl1.sys [7717984 2014-04-30] (Kaspersky Lab ZAO) U5 klflt; C:\Windows\System32\Drivers\klflt.sys [92768 2014-04-30] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [490592 2014-04-30] (Kaspersky Lab ZAO) S3 pelmouse; C:\Windows\System32\DRIVERS\pelmouse.sys [35840 2006-12-20] (Primax Electronics Ltd.) S3 pelusblf; C:\Windows\System32\DRIVERS\pelusblf.sys [46080 2006-12-20] (Primax Electronics Ltd.) S3 RimVSerPort; C:\Windows\System32\DRIVERS\RimSerial_AMD64.sys [44032 2011-07-20] (Research in Motion Ltd) R2 risdptsk; C:\Windows\system32\DRIVERS\risdsn64.sys [76288 2009-07-31] (REDC) S3 s125bus; C:\Windows\System32\DRIVERS\s125bus.sys [108296 2007-04-24] (MCCI Corporation) S3 s125mdfl; C:\Windows\System32\DRIVERS\s125mdfl.sys [19720 2007-04-24] (MCCI Corporation) S3 s125mdm; C:\Windows\System32\DRIVERS\s125mdm.sys [144648 2007-04-24] (MCCI Corporation) S3 s125mgmt; C:\Windows\System32\DRIVERS\s125mgmt.sys [126216 2007-04-24] (MCCI Corporation) S3 s125obex; C:\Windows\System32\DRIVERS\s125obex.sys [123656 2007-04-24] (MCCI Corporation) R1 SAVOnAccess; C:\Windows\System32\DRIVERS\savonaccess.sys [158976 2014-05-21] (Sophos Limited) S3 sdcfilter; C:\Windows\System32\DRIVERS\sdcfilter.sys [38144 2014-05-21] (Sophos Limited) R3 seehcri; C:\Windows\System32\DRIVERS\seehcri.sys [34032 2010-05-22] (Sony Ericsson Mobile Communications) S4 SophosBootDriver; C:\Windows\System32\DRIVERS\SophosBootDriver.sys [27904 2014-05-21] (Sophos Limited) R1 Vsdatant; C:\Windows\System32\DRIVERS\vsdatant.sys [450968 2014-05-30] (Check Point Software Technologies Ltd.) S3 catchme; \??\C:\ComboFix\catchme.sys [X] S3 RimUsb; System32\Drivers\RimUsb_AMD64.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-08-27 13:22 - 2014-08-27 13:22 - 00000000 ____D () C:\FRST 2014-08-27 13:21 - 2014-08-27 13:21 - 00015993 _____ () C:\Users\Neo\Downloads\default (2).htm 2014-08-27 13:20 - 2014-08-27 13:20 - 00000000 _____ () C:\Users\Neo\defogger_reenable 2014-08-27 13:18 - 2014-08-27 13:22 - 00000000 ____D () C:\Users\Neo\Downloads\anti spy 2014-08-27 13:16 - 2014-08-27 13:16 - 00014854 _____ () C:\Users\Neo\Downloads\default (1).htm 2014-08-27 13:07 - 2014-08-27 13:07 - 00015994 _____ () C:\Users\Neo\Downloads\default.htm 2014-08-27 13:01 - 2014-08-27 13:01 - 00000000 __SHD () C:\Users\Neo\AppData\Local\EmieUserList 2014-08-27 13:01 - 2014-08-27 13:01 - 00000000 __SHD () C:\Users\Neo\AppData\Local\EmieSiteList 2014-08-27 12:19 - 2014-04-30 11:01 - 00490592 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klif.sys 2014-08-27 12:19 - 2014-04-30 11:01 - 00092768 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klflt.sys 2014-08-27 12:19 - 2014-04-30 11:00 - 07717984 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\kl1.sys 2014-08-27 12:11 - 2014-08-27 12:11 - 00002170 _____ () C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk 2014-08-27 12:11 - 2014-08-27 12:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus 2014-08-27 12:11 - 2014-08-27 12:11 - 00000000 ____D () C:\ProgramData\McAfee Security Scan 2014-08-27 12:11 - 2014-08-27 12:11 - 00000000 ____D () C:\Program Files (x86)\McAfee Security Scan 2014-08-25 16:40 - 2014-08-25 16:40 - 00000973 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BMWi Businessplan.lnk 2014-08-25 16:40 - 2014-08-25 16:40 - 00000961 _____ () C:\Users\Public\Desktop\BMWi Businessplan.lnk 2014-08-25 16:40 - 2014-08-25 16:40 - 00000000 ____D () C:\Users\Neo\AppData\Roaming\de.bmwi.businessplan 2014-08-25 16:40 - 2014-08-25 16:40 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia 2014-08-25 16:40 - 2014-08-25 16:40 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia 2014-08-25 16:40 - 2014-08-25 16:40 - 00000000 ____D () C:\Program Files (x86)\BMWi Businessplan 2014-08-21 12:58 - 2014-05-14 18:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2014-08-21 12:58 - 2014-05-14 18:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2014-08-21 12:58 - 2014-05-14 18:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2014-08-21 12:58 - 2014-05-14 18:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2014-08-21 12:58 - 2014-05-14 18:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2014-08-21 12:58 - 2014-05-14 18:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2014-08-21 12:58 - 2014-05-14 18:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2014-08-21 12:58 - 2014-05-14 18:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2014-08-21 12:58 - 2014-05-14 18:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2014-08-21 12:58 - 2014-05-14 18:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2014-08-21 12:57 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2014-08-21 12:57 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2014-08-21 12:57 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2014-08-21 12:57 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2014-08-20 15:14 - 2014-08-20 15:14 - 00148177 _____ () C:\Users\Neo\Downloads\FRITZ.Box Fon WLAN 7320 (UI) 100.05.20_01.01.70_0104.export 2014-08-20 09:30 - 2014-08-20 09:30 - 00000634 _____ () C:\Users\Neo\Desktop\lohmannh@lohmann-history-consulting.de.duck 2014-08-19 16:11 - 2014-08-19 16:11 - 00117709 _____ () C:\Users\Neo\Downloads\design1.t3d 2014-08-19 15:04 - 2014-08-19 15:04 - 02947636 _____ () C:\Users\Neo\Downloads\sunflower_typo3template.zip 2014-08-19 10:30 - 2014-08-19 10:30 - 00288351 _____ () C:\Users\Neo\Documents\bookmarks_19.08.14.html 2014-08-14 23:58 - 2014-07-01 00:24 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll 2014-08-14 23:58 - 2014-07-01 00:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardres.dll 2014-08-14 23:58 - 2014-03-09 23:48 - 01389208 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe 2014-08-14 23:58 - 2014-03-09 23:48 - 00171160 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll 2014-08-14 23:58 - 2014-03-09 23:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardagt.exe 2014-08-14 23:58 - 2014-03-09 23:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\infocardapi.dll 2014-08-14 23:57 - 2014-06-06 08:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe 2014-08-14 23:57 - 2014-06-06 08:12 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe 2014-08-14 10:08 - 2014-08-14 10:08 - 01058200 _____ (Adobe) C:\Users\Neo\Downloads\install_flashplayer14x32au_mssd_aaa_aih.exe 2014-08-14 09:40 - 2014-08-01 01:41 - 00348856 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-08-14 09:40 - 2014-08-01 01:16 - 00307384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-08-14 09:40 - 2014-07-25 16:52 - 23645696 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-08-14 09:40 - 2014-07-25 16:02 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-08-14 09:40 - 2014-07-25 16:01 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-08-14 09:40 - 2014-07-25 15:51 - 17524224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-08-14 09:40 - 2014-07-25 15:30 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-08-14 09:40 - 2014-07-25 15:28 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-08-14 09:40 - 2014-07-25 15:28 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-08-14 09:40 - 2014-07-25 15:25 - 02774528 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-08-14 09:40 - 2014-07-25 15:25 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-08-14 09:40 - 2014-07-25 15:11 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-08-14 09:40 - 2014-07-25 15:10 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-08-14 09:40 - 2014-07-25 15:04 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-08-14 09:40 - 2014-07-25 15:03 - 00598016 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-08-14 09:40 - 2014-07-25 15:00 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-08-14 09:40 - 2014-07-25 15:00 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-08-14 09:40 - 2014-07-25 14:59 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-08-14 09:40 - 2014-07-25 14:47 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-08-14 09:40 - 2014-07-25 14:40 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-08-14 09:40 - 2014-07-25 14:34 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-08-14 09:40 - 2014-07-25 14:34 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-08-14 09:40 - 2014-07-25 14:33 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-08-14 09:40 - 2014-07-25 14:30 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-08-14 09:40 - 2014-07-25 14:28 - 05824512 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-08-14 09:40 - 2014-07-25 14:28 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-08-14 09:40 - 2014-07-25 14:21 - 02184704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-08-14 09:40 - 2014-07-25 14:19 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-08-14 09:40 - 2014-07-25 14:18 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-08-14 09:40 - 2014-07-25 14:17 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-08-14 09:40 - 2014-07-25 14:17 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-08-14 09:40 - 2014-07-25 14:12 - 00438784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-08-14 09:40 - 2014-07-25 14:10 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-08-14 09:40 - 2014-07-25 14:10 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-08-14 09:40 - 2014-07-25 14:08 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-08-14 09:40 - 2014-07-25 14:06 - 04204032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-08-14 09:40 - 2014-07-25 13:52 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-08-14 09:40 - 2014-07-25 13:47 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-08-14 09:40 - 2014-07-25 13:43 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-08-14 09:40 - 2014-07-25 13:42 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-08-14 09:40 - 2014-07-25 13:39 - 02087936 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-08-14 09:40 - 2014-07-25 13:39 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-08-14 09:40 - 2014-07-25 13:36 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-08-14 09:40 - 2014-07-25 13:34 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-08-14 09:40 - 2014-07-25 13:29 - 00239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-08-14 09:40 - 2014-07-25 13:23 - 13547008 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-08-14 09:40 - 2014-07-25 13:13 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-08-14 09:40 - 2014-07-25 13:07 - 02001920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-08-14 09:40 - 2014-07-25 13:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-08-14 09:40 - 2014-07-25 13:03 - 11772928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-08-14 09:40 - 2014-07-25 12:52 - 02266624 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-08-14 09:40 - 2014-07-25 12:26 - 01431040 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-08-14 09:40 - 2014-07-25 12:17 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-08-14 09:40 - 2014-07-25 12:09 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-08-14 09:40 - 2014-07-25 12:05 - 01792512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-08-14 09:40 - 2014-07-25 12:00 - 01169920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-08-14 09:40 - 2014-07-16 05:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2014-08-14 09:40 - 2014-07-16 04:46 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2014-08-14 09:40 - 2014-06-25 04:05 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-08-14 09:40 - 2014-06-25 03:41 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2014-08-14 09:40 - 2014-06-16 04:10 - 00985536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2014-08-14 09:40 - 2014-06-03 12:02 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2014-08-14 09:40 - 2014-06-03 12:02 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2014-08-14 09:40 - 2014-06-03 12:02 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll 2014-08-14 09:40 - 2014-06-03 12:02 - 00112064 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2014-08-14 09:40 - 2014-06-03 11:29 - 02363392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2014-08-14 09:40 - 2014-06-03 11:29 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2014-08-14 09:40 - 2014-06-03 11:29 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll 2014-08-14 09:40 - 2014-01-09 04:22 - 05694464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2014-08-14 09:40 - 2014-01-04 00:44 - 06574592 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2014-08-14 09:38 - 2014-08-07 04:06 - 00529920 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-08-14 09:38 - 2014-08-07 04:01 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-08-14 09:38 - 2014-07-14 04:02 - 01216000 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2014-08-14 09:38 - 2014-07-14 03:40 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2014-08-13 14:28 - 2014-08-13 14:28 - 00000000 ____D () C:\Users\Neo\Desktop\bookmarks 2014-08-13 14:20 - 2014-08-19 15:10 - 00000000 __SHD () C:\Users\Neo\wc 2014-08-13 14:19 - 2014-08-13 14:22 - 00000000 ____D () C:\Users\Neo\AppData\Roaming\Cyberduck 2014-08-13 14:19 - 2014-08-13 14:19 - 00000000 __SHD () C:\Users\Neo\AppData\Roaming\wyUpdate AU 2014-08-13 14:17 - 2014-08-13 14:17 - 00001023 _____ () C:\Users\Public\Desktop\Cyberduck.lnk 2014-08-13 14:17 - 2014-08-13 14:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cyberduck 2014-08-13 14:15 - 2014-08-13 14:17 - 00000000 ____D () C:\Program Files (x86)\Cyberduck 2014-08-13 14:14 - 2014-08-13 14:15 - 16547632 _____ () C:\Users\Neo\Downloads\Cyberduck-Installer-4.5.1.exe 2014-08-13 11:40 - 2014-08-27 12:13 - 00000000 ____D () C:\Users\Neo\Desktop\G! 2014-08-12 10:09 - 2013-10-02 04:22 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys 2014-08-12 10:09 - 2013-10-02 04:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe 2014-08-12 10:09 - 2013-10-02 04:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll 2014-08-12 10:09 - 2013-10-02 03:48 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll 2014-08-12 10:09 - 2013-10-02 03:48 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll 2014-08-12 10:09 - 2013-10-02 03:29 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2014-08-12 10:09 - 2013-10-02 03:10 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll 2014-08-12 10:09 - 2013-10-02 02:15 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll 2014-08-12 10:09 - 2013-10-02 02:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll 2014-08-12 10:09 - 2013-10-02 02:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll 2014-08-12 10:09 - 2013-10-02 02:08 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe 2014-08-12 10:09 - 2013-10-02 02:01 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe 2014-08-12 10:09 - 2013-10-02 01:58 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2014-08-12 10:09 - 2013-10-02 01:31 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe 2014-08-12 10:09 - 2013-10-02 01:08 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll 2014-08-12 10:09 - 2013-10-02 00:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe 2014-08-12 10:08 - 2013-09-25 04:23 - 01030144 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll 2014-08-12 10:08 - 2013-09-25 03:57 - 00792576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll 2014-08-11 11:24 - 2014-08-11 11:24 - 00009139 _____ () C:\Users\Neo\Documents\Ausgaben_Rheinbahn_Stempeltickets.xlsx 2014-07-31 20:18 - 2014-07-31 20:18 - 00001783 _____ () C:\Users\Public\Desktop\iTunes.lnk 2014-07-31 20:18 - 2014-07-31 20:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2014-07-31 20:17 - 2014-07-31 20:18 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-07-31 20:17 - 2014-07-31 20:18 - 00000000 ____D () C:\Program Files\iTunes 2014-07-31 20:17 - 2014-07-31 20:18 - 00000000 ____D () C:\Program Files (x86)\iTunes 2014-07-31 20:17 - 2014-07-31 20:17 - 00000000 ____D () C:\Program Files\iPod ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-08-27 13:22 - 2014-08-27 13:22 - 00000000 ____D () C:\FRST 2014-08-27 13:22 - 2014-08-27 13:18 - 00000000 ____D () C:\Users\Neo\Downloads\anti spy 2014-08-27 13:21 - 2014-08-27 13:21 - 00015993 _____ () C:\Users\Neo\Downloads\default (2).htm 2014-08-27 13:20 - 2014-08-27 13:20 - 00000000 _____ () C:\Users\Neo\defogger_reenable 2014-08-27 13:20 - 2009-11-11 15:00 - 00000000 ____D () C:\Users\Neo 2014-08-27 13:18 - 2010-05-10 19:48 - 00001104 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-08-27 13:16 - 2014-08-27 13:16 - 00014854 _____ () C:\Users\Neo\Downloads\default (1).htm 2014-08-27 13:14 - 2009-12-17 02:10 - 00000000 ____D () C:\Users\Neo\Documents\!Wichtiges 2014-08-27 13:07 - 2014-08-27 13:07 - 00015994 _____ () C:\Users\Neo\Downloads\default.htm 2014-08-27 13:01 - 2014-08-27 13:01 - 00000000 __SHD () C:\Users\Neo\AppData\Local\EmieUserList 2014-08-27 13:01 - 2014-08-27 13:01 - 00000000 __SHD () C:\Users\Neo\AppData\Local\EmieSiteList 2014-08-27 12:51 - 2012-04-11 22:09 - 01667398 ____N () C:\Windows\WindowsUpdate.log 2014-08-27 12:37 - 2012-04-17 09:44 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-08-27 12:18 - 2010-05-10 19:48 - 00001100 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-08-27 12:13 - 2014-08-13 11:40 - 00000000 ____D () C:\Users\Neo\Desktop\G! 2014-08-27 12:13 - 2009-07-14 06:45 - 00018736 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-08-27 12:13 - 2009-07-14 06:45 - 00018736 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-08-27 12:11 - 2014-08-27 12:11 - 00002170 _____ () C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk 2014-08-27 12:11 - 2014-08-27 12:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus 2014-08-27 12:11 - 2014-08-27 12:11 - 00000000 ____D () C:\ProgramData\McAfee Security Scan 2014-08-27 12:11 - 2014-08-27 12:11 - 00000000 ____D () C:\Program Files (x86)\McAfee Security Scan 2014-08-27 12:11 - 2012-04-17 09:44 - 00699568 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-08-27 12:11 - 2012-04-17 09:44 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-08-27 12:11 - 2011-05-25 23:51 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-08-27 12:05 - 2014-05-28 09:38 - 00250648 _____ () C:\Users\Neo\AppData\Local\GDIPFONTCACHEV1.DAT 2014-08-27 12:05 - 2014-05-28 09:37 - 00762112 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-08-27 12:05 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-08-27 09:29 - 2009-09-07 06:48 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-08-26 16:20 - 2012-01-06 15:52 - 00000000 ____D () C:\Users\Neo\AppData\Roaming\Ahnenblatt 2014-08-26 14:39 - 2009-11-11 15:03 - 00003922 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{B3C80F3B-4214-40A1-A232-ACF4511EC442} 2014-08-26 11:22 - 2013-12-25 20:37 - 00000000 _____ () C:\Windows\system32\vireng.log 2014-08-25 18:28 - 2014-05-12 18:50 - 00000000 ____D () C:\Users\Neo\AppData\Local\F7549912-3EB1-475E-A125-2BAE861C18F7.aplzod 2014-08-25 16:40 - 2014-08-25 16:40 - 00000973 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BMWi Businessplan.lnk 2014-08-25 16:40 - 2014-08-25 16:40 - 00000961 _____ () C:\Users\Public\Desktop\BMWi Businessplan.lnk 2014-08-25 16:40 - 2014-08-25 16:40 - 00000000 ____D () C:\Users\Neo\AppData\Roaming\de.bmwi.businessplan 2014-08-25 16:40 - 2014-08-25 16:40 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia 2014-08-25 16:40 - 2014-08-25 16:40 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia 2014-08-25 16:40 - 2014-08-25 16:40 - 00000000 ____D () C:\Program Files (x86)\BMWi Businessplan 2014-08-25 16:40 - 2010-10-09 15:59 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-08-25 16:40 - 2009-09-07 06:28 - 00000000 ____D () C:\ProgramData\Adobe 2014-08-25 16:38 - 2009-11-11 15:23 - 00000000 ____D () C:\Users\Neo\AppData\Roaming\Adobe 2014-08-25 14:11 - 2012-06-10 19:40 - 00000000 ____D () C:\Users\Neo\Documents\Freizeit 2014-08-20 15:14 - 2014-08-20 15:14 - 00148177 _____ () C:\Users\Neo\Downloads\FRITZ.Box Fon WLAN 7320 (UI) 100.05.20_01.01.70_0104.export 2014-08-20 09:30 - 2014-08-20 09:30 - 00000634 _____ () C:\Users\Neo\Desktop\lohmannh@lohmann-history-consulting.de.duck 2014-08-19 16:11 - 2014-08-19 16:11 - 00117709 _____ () C:\Users\Neo\Downloads\design1.t3d 2014-08-19 15:10 - 2014-08-13 14:20 - 00000000 __SHD () C:\Users\Neo\wc 2014-08-19 15:04 - 2014-08-19 15:04 - 02947636 _____ () C:\Users\Neo\Downloads\sunflower_typo3template.zip 2014-08-19 10:33 - 2014-03-12 11:15 - 00000000 ____D () C:\Users\Neo\Documents\!Blog 2014-08-19 10:30 - 2014-08-19 10:30 - 00288351 _____ () C:\Users\Neo\Documents\bookmarks_19.08.14.html 2014-08-19 09:18 - 2009-07-14 19:58 - 00703192 _____ () C:\Windows\system32\perfh007.dat 2014-08-19 09:18 - 2009-07-14 19:58 - 00150800 _____ () C:\Windows\system32\perfc007.dat 2014-08-19 09:18 - 2009-07-14 07:13 - 01629284 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-08-15 13:14 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache 2014-08-15 09:29 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-08-15 00:19 - 2013-08-18 19:27 - 00000000 ____D () C:\Windows\system32\MRT 2014-08-15 00:04 - 2009-11-13 12:51 - 99218768 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-08-14 23:57 - 2014-05-06 22:18 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-08-14 20:25 - 2014-01-28 18:09 - 00002175 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-08-14 10:08 - 2014-08-14 10:08 - 01058200 _____ (Adobe) C:\Users\Neo\Downloads\install_flashplayer14x32au_mssd_aaa_aih.exe 2014-08-13 14:28 - 2014-08-13 14:28 - 00000000 ____D () C:\Users\Neo\Desktop\bookmarks 2014-08-13 14:22 - 2014-08-13 14:19 - 00000000 ____D () C:\Users\Neo\AppData\Roaming\Cyberduck 2014-08-13 14:19 - 2014-08-13 14:19 - 00000000 __SHD () C:\Users\Neo\AppData\Roaming\wyUpdate AU 2014-08-13 14:17 - 2014-08-13 14:17 - 00001023 _____ () C:\Users\Public\Desktop\Cyberduck.lnk 2014-08-13 14:17 - 2014-08-13 14:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cyberduck 2014-08-13 14:17 - 2014-08-13 14:15 - 00000000 ____D () C:\Program Files (x86)\Cyberduck 2014-08-13 14:15 - 2014-08-13 14:14 - 16547632 _____ () C:\Users\Neo\Downloads\Cyberduck-Installer-4.5.1.exe 2014-08-11 11:24 - 2014-08-11 11:24 - 00009139 _____ () C:\Users\Neo\Documents\Ausgaben_Rheinbahn_Stempeltickets.xlsx 2014-08-07 04:06 - 2014-08-14 09:38 - 00529920 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-08-07 04:01 - 2014-08-14 09:38 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-08-05 09:20 - 2009-11-11 16:02 - 00270496 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2014-08-02 07:47 - 2009-07-14 07:08 - 00032632 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-08-01 13:32 - 2013-03-16 16:22 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-08-01 13:32 - 2013-03-16 16:22 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-08-01 01:41 - 2014-08-14 09:40 - 00348856 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-08-01 01:16 - 2014-08-14 09:40 - 00307384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-07-31 21:40 - 2013-03-16 16:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2014-07-31 20:18 - 2014-07-31 20:18 - 00001783 _____ () C:\Users\Public\Desktop\iTunes.lnk 2014-07-31 20:18 - 2014-07-31 20:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2014-07-31 20:18 - 2014-07-31 20:17 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-07-31 20:18 - 2014-07-31 20:17 - 00000000 ____D () C:\Program Files\iTunes 2014-07-31 20:18 - 2014-07-31 20:17 - 00000000 ____D () C:\Program Files (x86)\iTunes 2014-07-31 20:17 - 2014-07-31 20:17 - 00000000 ____D () C:\Program Files\iPod ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-08-20 19:49 ==================== End Of Log ============================ --- --- --- --- --- --- Geändert von Nordland02 (27.08.2014 um 14:53 Uhr) |
Themen zu Hohe CPU Auslastung / Langsame Internetverbindung bei betroffenem PC / google & youtube mit IE11 nicht mehr aufrufbar |
abgebrochen, auslastung, cpu, cpu-auslastung, dvdvideosoft ltd., explorer, fehlermeldung, firefox, google, hohe cpu, home, installation, internetseite, internetverbindung, langsam, logfiles, netzwerk, nicht mehr, opera, rechner, seite, seiten, update, verbindung, windows, yahoo, youtube |