|
Plagegeister aller Art und deren Bekämpfung: Opera Problem. Unsichtbare Internetseite mit nervender WerbungWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
25.09.2014, 15:07 | #16 |
| Opera Problem. Unsichtbare Internetseite mit nervender WerbungCode:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 25-09-2014 Ran by Spieler at 2014-09-25 15:55:45 Run:1 Running from C:\Users\Spieler.HeikeHarder-HP\Downloads Loaded Profile: Spieler (Available profiles: Heike Harder & Spieler & UpdatusUser & Gast) Boot Mode: Normal ============================================== Content of fixlist: ***************** GroupPolicy: Group Policy on Chrome detected <======= ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION C:\Users\Heike Harder\Okozo_Installer.exe C:\Config.Msi\2ba99e21.rbf C:\Config.Msi\2ba99e22.rbf C:\Config.Msi\2ba99e28.rbf C:\Config.Msi\2ba99e29.rbf C:\Config.Msi\2ba99e2a.rbf C:\Config.Msi\2ba99e2b.rbf C:\Config.Msi\2ba99e2c.rbf C:\Config.Msi\2ba99e2e.rbf C:\Config.Msi\2ba99e2f.rbf C:\Config.Msi\2ba99e63.rbf C:\Program Files\TermTutor\IE\TermTutorClientIE.dll C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\FreeSoundRecorder\tbFree.dll C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\FreeSoundRecorder\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.5.3\bin\PriceGongIE.dll C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\Winload\ldrtbWin0.dll C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\Winload\ldrtbWin2.dll C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\Winload\ldrtbWinl.dll C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\Winload\tbWin0.dll C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\Winload\tbWin1.dll C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\Winload\tbWin2.dll C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\Winload\tbWinl.dll C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\www.Freeware-download.com\tbwww..dll C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\LookThisUp\LookThisUp.exe C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\LookThisUp\LookThisUpUninstall.exe C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Opera Software\Opera Stable\File System\000\t\00\00000000 C:\Windows\Installer\106863c3.msi C:\Windows\Installer\afe633c.msi C:\Windows\System32\config\systemprofile\AppData\LocalLow\FreeSoundRecorder\ldrtbFree.dll C:\Windows\System32\config\systemprofile\AppData\LocalLow\FreeSoundRecorder\tbFree.dll C:\Windows\System32\config\systemprofile\AppData\LocalLow\FreeSoundRecorder\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.5.3\bin\PriceGongIE.dll C:\Windows\SysWOW64\config\systemprofile\AppData\LocalLow\FreeSoundRecorder\ldrtbFree.dll C:\Windows\SysWOW64\config\systemprofile\AppData\LocalLow\FreeSoundRecorder\tbFree.dll C:\Windows\SysWOW64\config\systemprofile\AppData\LocalLow\FreeSoundRecorder\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.5.3\bin\PriceGongIE.dll EmptyTemp: ***************** C:\Windows\system32\GroupPolicy\Machine => Moved successfully. C:\Windows\system32\GroupPolicy\GPT.ini => Moved successfully. "HKLM\SOFTWARE\Policies\Google" => Key deleted successfully. C:\Users\Heike Harder\Okozo_Installer.exe => Moved successfully. C:\Config.Msi\2ba99e21.rbf => Moved successfully. C:\Config.Msi\2ba99e22.rbf => Moved successfully. C:\Config.Msi\2ba99e28.rbf => Moved successfully. C:\Config.Msi\2ba99e29.rbf => Moved successfully. C:\Config.Msi\2ba99e2a.rbf => Moved successfully. C:\Config.Msi\2ba99e2b.rbf => Moved successfully. C:\Config.Msi\2ba99e2c.rbf => Moved successfully. C:\Config.Msi\2ba99e2e.rbf => Moved successfully. C:\Config.Msi\2ba99e2f.rbf => Moved successfully. C:\Config.Msi\2ba99e63.rbf => Moved successfully. C:\Program Files\TermTutor\IE\TermTutorClientIE.dll => Moved successfully. C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\FreeSoundRecorder\tbFree.dll => Moved successfully. C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\FreeSoundRecorder\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.5.3\bin\PriceGongIE.dll => Moved successfully. C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\Winload\ldrtbWin0.dll => Moved successfully. C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\Winload\ldrtbWin2.dll => Moved successfully. C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\Winload\ldrtbWinl.dll => Moved successfully. C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\Winload\tbWin0.dll => Moved successfully. C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\Winload\tbWin1.dll => Moved successfully. C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\Winload\tbWin2.dll => Moved successfully. C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\Winload\tbWinl.dll => Moved successfully. C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\www.Freeware-download.com\tbwww..dll => Moved successfully. C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\LookThisUp\LookThisUp.exe => Moved successfully. C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\LookThisUp\LookThisUpUninstall.exe => Moved successfully. C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Opera Software\Opera Stable\File System\000\t\00\00000000 => Moved successfully. C:\Windows\Installer\106863c3.msi => Moved successfully. C:\Windows\Installer\afe633c.msi => Moved successfully. "C:\Windows\System32\config\systemprofile\AppData\LocalLow\FreeSoundRecorder\ldrtbFree.dll" => File/Directory not found. "C:\Windows\System32\config\systemprofile\AppData\LocalLow\FreeSoundRecorder\tbFree.dll" => File/Directory not found. "C:\Windows\System32\config\systemprofile\AppData\LocalLow\FreeSoundRecorder\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.5.3\bin\PriceGongIE.dll" => File/Directory not found. C:\Windows\SysWOW64\config\systemprofile\AppData\LocalLow\FreeSoundRecorder\ldrtbFree.dll => Moved successfully. C:\Windows\SysWOW64\config\systemprofile\AppData\LocalLow\FreeSoundRecorder\tbFree.dll => Moved successfully. C:\Windows\SysWOW64\config\systemprofile\AppData\LocalLow\FreeSoundRecorder\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.5.3\bin\PriceGongIE.dll => Moved successfully. EmptyTemp: => Removed 1002.3 MB temporary data. The system needed a reboot. ==== End of Fixlog ==== |
25.09.2014, 18:10 | #17 |
/// TB-Ausbilder /// Anleitungs-Guru | Opera Problem. Unsichtbare Internetseite mit nervender Werbung Hi,
__________________Schritt 1 Bitte starte FRST erneut, markiere auch die checkbox und drücke auf Scan. Bitte poste mir den Inhalt der beiden Logs die erstellt werden. Gibt es jetzt noch Probleme mit dem PC? Wenn ja, welche?
__________________ |
25.09.2014, 21:59 | #18 |
| Opera Problem. Unsichtbare Internetseite mit nervender WerbungFRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 25-09-2014 Ran by Spieler (administrator) on HEIKEHARDER-HP on 25-09-2014 22:57:04 Running from C:\Users\Spieler.HeikeHarder-HP\Downloads Loaded Profile: Spieler (Available profiles: Heike Harder & Spieler & UpdatusUser & Gast) Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (ABBYY) C:\Program Files (x86)\Common Files\ABBYY\FineReader\10.00\Licensing\PE\NetworkLicenseServer.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe () C:\Program Files (x86)\CyberLink\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe (CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSMonitorService.exe (CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe () C:\Program Files\COMPUTERBILD-Cloud\Data\Tools\mounter.exe (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50STB.EXE (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Acresso Corporation) C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe (Akamai Technologies, Inc.) C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Akamai\netsession_win.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\M6 Processing\vm6.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Akamai Technologies, Inc.) C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Akamai\netsession_win.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe (Dropbox, Inc.) C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Dropbox\bin\Dropbox.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\VS7Debug\mdm.exe (Microsoft Corporation) C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL.2\MSSQL\Binn\sqlservr.exe (Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (LULU Software) C:\Program Files (x86)\Soda PDF 2012\ConversionService.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (StarWind Software) C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe (Microsoft Corporation) C:\Windows\System32\alg.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe () C:\Program Files (x86)\Opera\24.0.1558.61\opera_crashreporter.exe (Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe (Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe (Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe (Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe (Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe (Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe (Acresso Corporation) C:\ProgramData\FLEXnet\Connect\11\agent.exe (TeamSpeak Systems GmbH) C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe (Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe (Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe Version Cue CS2] => c:\Users\Heike Harder\Documents\Downloads\Creative Suite 2\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe [856064 2005-04-06] (Adobe Sytems Incorporated) HKLM-x32\...\Run: [Aeria Ignite] => "C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe" silent HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.) HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.) HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [421736 2011-12-08] (Apple Inc.) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [751184 2014-08-05] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [164656 2014-08-27] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [ConvertAd] => C:\Users\Spieler.HeikeHarder-HP\AppData\Local\ConvertAd\ConvertAd.exe HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [3802448 2014-09-04] (LogMeIn Inc.) HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1 HKU\S-1-5-21-2355925718-3238339638-3018866954-1007\...\Run: [DriverMax] => C:\Program Files (x86)\Innovative Solutions\DriverMax\drivermax.exe [9532824 2012-03-26] (Innovative Solutions) HKU\S-1-5-21-2355925718-3238339638-3018866954-1007\...\Run: [DriverMax_RESTART] => C:\Program Files (x86)\Innovative Solutions\DriverMax\drivermax.exe [9532824 2012-03-26] (Innovative Solutions) HKU\S-1-5-21-2355925718-3238339638-3018866954-1007\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [222496 2009-05-05] (Acresso Corporation) HKU\S-1-5-21-2355925718-3238339638-3018866954-1007\...\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [55360 2013-08-19] (Raptr, Inc) HKU\S-1-5-21-2355925718-3238339638-3018866954-1007\...\Run: [Akamai NetSession Interface] => C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Akamai\netsession_win.exe [4672920 2014-04-17] (Akamai Technologies, Inc.) HKU\S-1-5-21-2355925718-3238339638-3018866954-1007\...\Run: [Klebezettel NG] => [X] HKU\S-1-5-21-2355925718-3238339638-3018866954-1007\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\Overwolf.exe [39712 2014-09-21] (Overwolf LTD) HKU\S-1-5-21-2355925718-3238339638-3018866954-1007\...\Run: [vm6] => C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\M6 Processing\vm6.exe [175424 2014-03-19] () HKU\S-1-5-21-2355925718-3238339638-3018866954-1007\...\MountPoints2: {ae8f9719-3d80-11e3-91bb-6c626d9ce7a5} - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL K:\VoiceClient.exe Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma.lnk ShortcutTarget: Adobe Gamma.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled () Startup: C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip () Startup: C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) Startup: C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip () Startup: C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ShellIconOverlayIdentifiers: CloudIcon_DOWNLOAD -> {C3DBFBE2-A521-4619-9F32-502318CB4EC2} => C:\Program Files\COMPUTERBILD-Cloud\ShellExt64.dll (CyberGhost SRL) ShellIconOverlayIdentifiers: CloudIcon_ERROR -> {851C758E-C636-4045-B323-059931A3A331} => C:\Program Files\COMPUTERBILD-Cloud\ShellExt64.dll (CyberGhost SRL) ShellIconOverlayIdentifiers: CloudIcon_INSYNC -> {580030D3-492E-45EA-A1C9-A0AC525BEB26} => C:\Program Files\COMPUTERBILD-Cloud\ShellExt64.dll (CyberGhost SRL) ShellIconOverlayIdentifiers: CloudIcon_REFRESH -> {FEBF62C8-B6B3-43B7-BEC4-1A9CD61BDCD2} => C:\Program Files\COMPUTERBILD-Cloud\ShellExt64.dll (CyberGhost SRL) ShellIconOverlayIdentifiers: CloudIcon_UPLOAD -> {EBED3602-8915-43F9-81F7-CAA6FC4F70D6} => C:\Program Files\COMPUTERBILD-Cloud\ShellExt64.dll (CyberGhost SRL) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM-x32 - Backup.Old.DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD22} SearchScopes: HKCU - Backup.Old.DefaultScope {95B7759C-8C7F-4BF1-B163-73684A933233} SearchScopes: HKCU - ToolbarSearchProviderProgress {96bd48dd-741b-41ae-ac4a-aff96ba00f7e} BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (McAfee, Inc.) BHO-x32: RealPlayer Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer) BHO-x32: PlusIEEventHelper Class -> {551A852F-39A6-44A7-9C13-AFBEC9185A9D} -> C:\Program Files (x86)\Nuance\PDF Viewer Plus\Bin\PlusIEContextMenu.dll (Zeon Corporation) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) BHO-x32: Soda PDF 2012 Helper -> {ebe8b562-cba0-40d8-b920-af7cfe0c9d94} -> C:\Program Files (x86)\Soda PDF 2012\PDFIEHelper.dll (LULU Software) Toolbar: HKLM - No Name - !!{D4027C7F-154A-4066-A1AD-4243D8127440} - No File Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) Toolbar: HKLM-x32 - Soda PDF 2012 Toolbar - {a8c9d542-fd91-4834-a2e8-adb9ae692b8b} - C:\Program Files (x86)\Soda PDF 2012\PDFIEPlugin.dll (LULU Software) Toolbar: HKLM-x32 - No Name - !!{D4027C7F-154A-4066-A1AD-4243D8127440} - No File Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Mozilla\Firefox\Profiles\6q039lkv.default FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll () FF Plugin: @java.com/DTPlugin,version=10.65.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.65.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @java.com/JavaPlugin -> C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @nexon.net/NxGame -> C:\ProgramData\NexonUS\NGM\npNxGameUS.dll (Nexon) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin-x32: @real.com/nppl3260;version=15.0.4.53 -> c:\program files (x86)\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprjplug;version=15.0.4.53 -> c:\program files (x86)\real\realplayer\Netscape6\nprjplug.dll (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprpchromebrowserrecordext;version=15.0.4.53 -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprphtml5videoshim;version=15.0.4.53 -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprpplugin;version=15.0.4.53 -> c:\program files (x86)\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.0.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Plugin HKCU: pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF user.js: detected! => C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Mozilla\Firefox\Profiles\6q039lkv.default\user.js FF Extension: WEB.DE MailCheck - C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Mozilla\Firefox\Profiles\6q039lkv.default\Extensions\toolbar@web.de.xpi [2014-01-25] FF HKLM-x32\...\Firefox\Extensions: [{97E22097-9A2F-45b1-8DAF-36AD648C7EF4}] - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext FF Extension: RealPlayer Browser Record Plugin - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2012-05-11] FF Extension: No Name - C:\Program Files (x86)\Better-Surf\ff [Not Found] FF Extension: No Name - C:\Program Files (x86)\BetterSurf\BetterSurfPlus\ff [Not Found] FF Extension: No Name - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff [Not Found] FF Extension: No Name - C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha718\ff [Not Found] FF Extension: No Name - C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha1479\ff [Not Found] FF Extension: No Name - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha3700\ff [Not Found] FF Extension: No Name - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha9390\ff [Not Found] FF Extension: No Name - C:\Program Files (x86)\SuperLyrics\FF [Not Found] FF Extension: No Name - C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta541\ff [Not Found] FF Extension: No Name - C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha701\ff [Not Found] FF Extension: No Name - C:\Program Files\Video downloader\Firefox [Not Found] FF Extension: No Name - C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Mozilla\Firefox\Profiles\6q039lkv.default\extensions\4433da5b-eb52-495d-8865-b2a7468567f6@927544a3-fdfb-4485-a78b-21e1113eee35.com [Not Found] FF Extension: No Name - C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Mozilla\Firefox\Profiles\6q039lkv.default\extensions\crossriderapp2258@crossrider.com [Not Found] FF Extension: No Name - C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Mozilla\Firefox\Profiles\6q039lkv.default\extensions\e46480cf-7cf6-495e-af69-573053f52c72@b33ab36d-5952-49aa-adb2-a41b3dbe51a5.com [Not Found] FF Extension: No Name - C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Mozilla\Firefox\Profiles\6q039lkv.default\extensions\ffxtlbr@babylon.com [Not Found] FF Extension: No Name - C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Mozilla\Firefox\Profiles\6q039lkv.default\extensions\ffxtlbr@funmoods.com [Not Found] FF Extension: No Name - C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Mozilla\Firefox\Profiles\6q039lkv.default\extensions\lightningnewtab@gmail.com.xpi [Not Found] FF Extension: No Name - C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Mozilla\Firefox\Profiles\6q039lkv.default\extensions\toolbar_AVIRA-V7@apn.ask.com.xpi [Not Found] FF Extension: No Name - C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Mozilla\Firefox\Profiles\6q039lkv.default\extensions\{17372c46-39f1-4c28-8f8c-b25d9b57d042} [Not Found] FF Extension: No Name - C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Mozilla\Firefox\Profiles\6q039lkv.default\extensions\{5a95a9e0-59dd-4314-bd84-4d18ca83a0e2}.xpi [Not Found] FF Extension: No Name - C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Mozilla\Firefox\Profiles\6q039lkv.default\extensions\{c2d64ff7-0ab8-4263-89c9-ea3b0f8f050c} [Not Found] FF Extension: No Name - C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Mozilla\Firefox\Profiles\6q039lkv.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}.xpi [Not Found] FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [Not Found] Chrome: ======= CHR Profile: C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Docs) - C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-06-24] CHR Extension: (Google Drive) - C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-06-24] CHR Extension: (YouTube) - C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-06-24] CHR Extension: (Google Search) - C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-06-24] CHR Extension: (Google Wallet) - C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-06-27] CHR Extension: (Gmail) - C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-06-24] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 ABBYY.Licensing.FineReader.Professional.10.0; C:\Program Files (x86)\Common Files\ABBYY\FineReader\10.00\Licensing\PE\NetworkLicenseServer.exe [814344 2009-12-22] (ABBYY) S3 Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [72704 2013-02-01] (Adobe Systems) [File not signed] S4 AdobeActiveFileMonitor6.0; C:\Program Files (x86)\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe [124832 2007-09-11] () R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [430160 2014-08-05] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [430160 2014-08-05] (Avira Operations GmbH & Co. KG) R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1021520 2014-08-05] (Avira Operations GmbH & Co. KG) R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [160048 2014-08-27] (Avira Operations GmbH & Co. KG) S3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [245760 2010-01-25] (Brother Industries, Ltd.) [File not signed] R2 CLHNServiceForPowerDVD; C:\Program Files (x86)\CyberLink\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe [83240 2011-08-24] () R2 CyberLink PowerDVD 11.0 Monitor Service; C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSMonitorService.exe [75048 2011-08-26] (CyberLink) R2 CyberLink PowerDVD 11.0 Service; C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe [292136 2011-08-26] (CyberLink) R2 DokanMounter; C:\Program Files\COMPUTERBILD-Cloud\Data\Tools\mounter.exe [14848 2012-02-15] () [File not signed] S4 ezSharedSvc; C:\Windows\SysWOW64\ezSharedSvcHost.exe [514232 2010-04-23] (EasyBits Software AS) [File not signed] S3 FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [654848 2011-01-27] (Macrovision Europe Ltd.) [File not signed] S4 HPAuto; C:\Program Files\Hewlett-Packard\HP Auto\HPAuto.exe [681528 2010-08-06] (Hewlett-Packard) S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed] R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [377616 2014-08-08] (LogMeIn, Inc.) S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.) R2 MSSQL$BWDATOOLSET; C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [29293408 2010-12-10] (Microsoft Corporation) R2 MSSQL$SQLEXPRESS; C:\Program Files (x86)\Microsoft SQL Server\MSSQL.2\MSSQL\Binn\sqlservr.exe [29293408 2010-12-10] (Microsoft Corporation) S3 OverwolfUpdater; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [998176 2014-09-21] (Overwolf LTD) S4 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1119768 2010-09-28] (PDF Complete Inc) R2 PDFProFiltSrvPP; C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe [144672 2010-03-09] (Nuance Communications, Inc.) R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [247152 2010-08-19] () S3 Soda PDF 2012 Helper Service; C:\Program Files (x86)\Soda PDF 2012\HelperService.exe [827224 2012-01-27] (LULU Software) R2 Soda PDF 2012 Service; C:\Program Files (x86)\Soda PDF 2012\ConversionService.exe [905560 2012-01-27] (LULU Software) R2 StarWindServiceAE; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [370688 2009-12-23] (StarWind Software) [File not signed] S2 ttsvc; "C:\Program Files (x86)\TermTutor\Service\ttsvc.exe" [X] ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S3 athrusb; C:\Windows\System32\DRIVERS\athrxusb.sys [558592 2007-05-16] (Atheros Communications, Inc.) R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [314016 2011-01-28] () R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [117712 2014-06-17] (Avira Operations GmbH & Co. KG) R1 avgtp; C:\Windows\system32\drivers\avgtpx64.sys [39768 2013-03-19] (AVG Technologies) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [130584 2014-06-17] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2014-06-17] (Avira Operations GmbH & Co. KG) R2 Dokan; C:\Windows\system32\drivers\dokan.sys [120408 2012-02-15] (Windows (R) Win 7 DDK provider) S3 GrabsterSeries.X64; C:\Windows\System32\DRIVERS\GrabsterSeries.X64.SYS [377152 2010-01-22] () S3 hid7906; C:\Windows\SysWOW64\drivers\hid7906.sys [34963 2007-12-12] (Compuware Corporation) [File not signed] S3 hid8101; C:\Windows\SysWOW64\drivers\hid8101.sys [37024 2007-12-03] (Compuware Corporation) [File not signed] S3 hid8103; C:\Windows\SysWOW64\drivers\hid8103.sys [34587 2007-11-28] (Compuware Corporation) [File not signed] S3 iComp; C:\Windows\System32\DRIVERS\p2usbhum.sys [1794112 2009-12-09] (Conexant Systems Inc.) R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [43680 2011-01-28] () S3 RTL8192cu; C:\Windows\System32\DRIVERS\RTL8192cu.sys [748648 2010-08-12] (Realtek Semiconductor Corporation ) S3 Serial; C:\Windows\system32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) R0 sptd; C:\Windows\System32\Drivers\sptd.sys [503352 2011-08-04] () [File not signed] R1 ttnfd; C:\Windows\System32\drivers\ttnfd.sys [58232 2014-09-04] (Term Tutor) S3 usbio; C:\Windows\System32\Drivers\dsiarhwprog_x64.sys [51600 2007-02-08] (Thesycon GmbH, Germany) S3 ZD1211BU(ZyDAS); C:\Windows\System32\DRIVERS\zd1211Bu.sys [493440 2005-10-28] (ZyDAS Technology Corporation) S3 ZDPSp50a64; C:\Windows\SysWOW64\Drivers\ZDPSp50a64.sys [31744 2005-03-18] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed] R2 {329F96B6-DF1E-4328-BFDA-39EA953C1312}; C:\Program Files (x86)\CyberLink\PowerDVD11\Common\NavFilter\000.fcl [148976 2011-08-26] (CyberLink Corp.) U3 akselwqy; C:\Windows\System32\Drivers\akselwqy.sys [0 ] (Advanced Micro Devices) S3 connctfy; system32\DRIVERS\connctfy.sys [X] S3 connctfyMP; system32\DRIVERS\connctfy.sys [X] S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] S3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X] S1 toqvakfe; \??\C:\Windows\system32\drivers\toqvakfe.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-09-25 15:55 - 2014-09-25 15:55 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Downloads\FRST-OlderVersion 2014-09-24 11:22 - 2014-09-10 00:11 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2014-09-24 11:22 - 2014-09-09 23:47 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2014-09-24 11:01 - 2014-09-24 11:01 - 02347384 _____ (ESET) C:\Users\Spieler.HeikeHarder-HP\Downloads\esetsmartinstaller_deu.exe 2014-09-23 21:50 - 2014-09-23 21:51 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Desktop\Schutz und remove 2014-09-23 21:48 - 2014-09-23 21:50 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Desktop\speak 2014-09-23 21:48 - 2014-09-23 21:48 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Desktop\opera 2014-09-23 21:47 - 2014-09-23 21:47 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Desktop\sammlung minemap 2014-09-23 21:46 - 2014-09-23 21:49 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Desktop\Games 2014-09-23 17:26 - 2014-09-23 16:58 - 00024064 _____ () C:\Windows\zoek-delete.exe 2014-09-23 17:01 - 2014-09-23 17:28 - 00078237 _____ () C:\zoek-results.log 2014-09-23 16:58 - 2014-09-23 17:24 - 00000000 ____D () C:\zoek_backup 2014-09-23 16:58 - 2014-09-09 07:36 - 01290240 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\zoek.exe 2014-09-23 16:57 - 2014-09-23 16:57 - 04114148 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\zoek.zip 2014-09-23 16:20 - 2014-09-23 16:20 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Spieler.HeikeHarder-HP\Downloads\mbam-setup-2.0.2.1012 (3).exe 2014-09-23 15:03 - 2014-09-23 15:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi 2014-09-23 15:03 - 2014-09-23 15:03 - 00000000 ____D () C:\Program Files (x86)\LogMeIn Hamachi 2014-09-23 14:59 - 2014-09-25 15:57 - 00027322 _____ () C:\Windows\PFRO.log 2014-09-23 14:56 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll 2014-09-23 14:55 - 2014-09-23 17:01 - 00000000 ____D () C:\AdwCleaner 2014-09-23 14:55 - 2014-09-23 14:55 - 01373475 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\AdwCleaner_3.310.exe 2014-09-23 14:53 - 2014-09-23 14:53 - 00000000 ____D () C:\Program Files\TermTutor 2014-09-23 14:24 - 2014-09-23 14:24 - 00068480 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\Addition.txt 2014-09-23 14:22 - 2014-09-25 22:57 - 00030307 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\FRST.txt 2014-09-23 14:21 - 2014-09-25 22:57 - 00000000 ____D () C:\FRST 2014-09-23 14:21 - 2014-09-25 15:55 - 02108928 _____ (Farbar) C:\Users\Spieler.HeikeHarder-HP\Downloads\FRST64.exe 2014-09-23 13:15 - 2014-09-23 13:15 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Spieler.HeikeHarder-HP\Downloads\mbam-setup-2.0.2.1012 (2).exe 2014-09-23 13:15 - 2014-09-23 13:15 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Spieler.HeikeHarder-HP\Downloads\mbam-setup-2.0.2.1012 (1).exe 2014-09-21 21:35 - 2014-09-25 19:14 - 00000448 _____ () C:\Windows\setupact.log 2014-09-21 21:35 - 2014-09-21 21:35 - 00000000 _____ () C:\Windows\setuperr.log 2014-09-21 20:49 - 2014-09-21 20:49 - 00001245 _____ () C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk 2014-09-21 20:49 - 2014-09-21 20:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft 2014-09-21 20:49 - 2014-09-21 20:49 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft 2014-09-21 20:48 - 2014-09-21 20:48 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\InetStat 2014-09-21 20:47 - 2014-09-25 15:55 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\LookThisUp 2014-09-21 20:47 - 2014-09-21 20:48 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\InetStat 2014-09-21 20:47 - 2014-09-21 20:47 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_webinstr_01009.Wdf 2014-09-21 20:41 - 2014-09-21 20:46 - 74675720 _____ (DVDVideoSoft Ltd. ) C:\Users\Spieler.HeikeHarder-HP\Downloads\FreeStudio.exe 2014-09-21 00:00 - 2014-09-21 20:00 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Documents\ArcheAge 2014-09-21 00:00 - 2014-09-21 00:00 - 00000000 ____D () C:\ArcheAge 2014-09-17 19:02 - 2014-09-17 19:03 - 03817601 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\powersaves3ds-software-121.zip 2014-09-11 03:15 - 2014-08-19 20:05 - 00374968 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-09-11 03:15 - 2014-08-19 19:39 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-09-11 03:15 - 2014-08-19 01:01 - 23591424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-09-11 03:15 - 2014-08-19 00:29 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-09-11 03:15 - 2014-08-19 00:29 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-09-11 03:15 - 2014-08-19 00:26 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-09-11 03:15 - 2014-08-19 00:20 - 02793984 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-09-11 03:15 - 2014-08-19 00:19 - 05833728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-09-11 03:15 - 2014-08-19 00:15 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-09-11 03:15 - 2014-08-19 00:15 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-09-11 03:15 - 2014-08-19 00:14 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-09-11 03:15 - 2014-08-19 00:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-09-11 03:15 - 2014-08-19 00:08 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-09-11 03:15 - 2014-08-19 00:08 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-09-11 03:15 - 2014-08-19 00:08 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-09-11 03:15 - 2014-08-19 00:05 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-09-11 03:15 - 2014-08-19 00:03 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-09-11 03:15 - 2014-08-19 00:03 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-09-11 03:15 - 2014-08-19 00:03 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-09-11 03:15 - 2014-08-18 23:57 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-09-11 03:15 - 2014-08-18 23:56 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-09-11 03:15 - 2014-08-18 23:51 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-09-11 03:15 - 2014-08-18 23:46 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-09-11 03:15 - 2014-08-18 23:45 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-09-11 03:15 - 2014-08-18 23:45 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-09-11 03:15 - 2014-08-18 23:44 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-09-11 03:15 - 2014-08-18 23:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-09-11 03:15 - 2014-08-18 23:42 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-09-11 03:15 - 2014-08-18 23:40 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-09-11 03:15 - 2014-08-18 23:39 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-09-11 03:15 - 2014-08-18 23:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-09-11 03:15 - 2014-08-18 23:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-09-11 03:15 - 2014-08-18 23:38 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-09-11 03:15 - 2014-08-18 23:37 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-09-11 03:15 - 2014-08-18 23:36 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-09-11 03:15 - 2014-08-18 23:35 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-09-11 03:15 - 2014-08-18 23:27 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-09-11 03:15 - 2014-08-18 23:25 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-09-11 03:15 - 2014-08-18 23:25 - 00707072 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-09-11 03:15 - 2014-08-18 23:23 - 02104832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-09-11 03:15 - 2014-08-18 23:23 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-09-11 03:15 - 2014-08-18 23:22 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-09-11 03:15 - 2014-08-18 23:19 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-09-11 03:15 - 2014-08-18 23:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-09-11 03:15 - 2014-08-18 23:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-09-11 03:15 - 2014-08-18 23:16 - 13588480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-09-11 03:15 - 2014-08-18 23:15 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-09-11 03:15 - 2014-08-18 23:15 - 02310656 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-09-11 03:15 - 2014-08-18 23:09 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-09-11 03:15 - 2014-08-18 23:08 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-09-11 03:15 - 2014-08-18 23:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-09-11 03:15 - 2014-08-18 22:55 - 01447424 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-09-11 03:15 - 2014-08-18 22:46 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-09-11 03:15 - 2014-08-18 22:38 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-09-11 03:15 - 2014-08-18 22:38 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-09-11 03:15 - 2014-08-18 22:36 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-09-11 03:02 - 2014-06-27 04:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2014-09-11 03:02 - 2014-06-27 03:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2014-09-10 09:39 - 2014-08-01 13:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll 2014-09-10 09:39 - 2014-08-01 13:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll 2014-09-10 08:34 - 2014-07-07 04:06 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-09-10 08:34 - 2014-07-07 04:06 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-09-10 08:34 - 2014-07-07 03:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2014-09-10 08:34 - 2014-07-07 03:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-09-10 08:34 - 2014-07-07 03:39 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-09-10 07:37 - 2014-06-24 05:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-09-10 07:37 - 2014-06-24 04:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-09-10 07:14 - 2014-09-05 04:10 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-09-10 07:14 - 2014-09-05 04:05 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-09-04 19:22 - 2014-09-04 19:22 - 00058232 _____ (Term Tutor) C:\Windows\system32\Drivers\ttnfd.sys 2014-08-28 23:19 - 2014-08-28 23:21 - 18599008 _____ (DVDVideoSoft Ltd. ) C:\Users\Spieler.HeikeHarder-HP\Downloads\Free3DVideoMaker.exe 2014-08-28 20:02 - 2014-09-09 21:23 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Documents\lp 2014-08-28 17:26 - 2001-11-01 21:00 - 02097152 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\Pokemon - Kristall-Edition (D).gbc 2014-08-28 17:03 - 2014-08-28 17:03 - 01050386 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\Pokemon Kristall (D).zip 2014-08-28 13:41 - 2014-08-28 13:41 - 00000945 _____ () C:\Users\Spieler.HeikeHarder-HP\Desktop\HyperCam 2.lnk 2014-08-28 13:41 - 2014-08-28 13:41 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HyperCam 2 2014-08-28 13:40 - 2014-08-28 13:41 - 03020528 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\HC2Setup-2.29.01 (1).exe 2014-08-27 23:47 - 2014-08-23 04:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-08-27 23:47 - 2014-08-23 03:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2014-08-27 23:47 - 2014-08-23 02:59 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-08-26 16:05 - 2014-08-26 16:05 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Downloads\Slot1D 2014-08-26 13:08 - 2014-08-26 13:17 - 27076650 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\0052.zip ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-09-25 22:57 - 2014-09-23 14:22 - 00030307 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\FRST.txt 2014-09-25 22:57 - 2014-09-23 14:21 - 00000000 ____D () C:\FRST 2014-09-25 20:30 - 2013-09-03 22:45 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\TS3Client 2014-09-25 20:25 - 2012-06-04 16:38 - 01281713 _____ () C:\Windows\WindowsUpdate.log 2014-09-25 19:58 - 2014-06-25 12:44 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Powersaves3DS 2014-09-25 19:19 - 2012-12-09 12:38 - 00000000 ____D () C:\Program Files (x86)\RIFT 2014-09-25 19:14 - 2014-09-21 21:35 - 00000448 _____ () C:\Windows\setupact.log 2014-09-25 17:29 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache 2014-09-25 16:22 - 2011-03-16 16:37 - 00000442 _____ () C:\Windows\system32\Drivers\etc\hosts.ics 2014-09-25 16:07 - 2009-07-14 06:45 - 00018512 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-09-25 16:07 - 2009-07-14 06:45 - 00018512 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-09-25 16:03 - 2011-01-27 20:36 - 00004120 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-09-25 16:03 - 2011-01-27 20:36 - 00003868 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-09-25 16:03 - 2011-01-27 20:36 - 00001122 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-09-25 16:03 - 2011-01-27 20:36 - 00001118 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-09-25 16:02 - 2014-06-24 16:10 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Local\LogMeIn Hamachi 2014-09-25 16:00 - 2014-07-13 14:54 - 00000000 ___RD () C:\Users\Spieler.HeikeHarder-HP\Dropbox 2014-09-25 16:00 - 2014-07-13 14:51 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Dropbox 2014-09-25 15:59 - 2014-01-29 20:26 - 00000008 __RSH () C:\ProgramData\ntuser.pol 2014-09-25 15:59 - 2012-12-09 23:08 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Overwolf 2014-09-25 15:58 - 2012-11-28 11:43 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Raptr 2014-09-25 15:58 - 2011-03-09 17:38 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\PDF Software 2014-09-25 15:57 - 2014-09-23 14:59 - 00027322 _____ () C:\Windows\PFRO.log 2014-09-25 15:57 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-09-25 15:55 - 2014-09-25 15:55 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Downloads\FRST-OlderVersion 2014-09-25 15:55 - 2014-09-23 14:21 - 02108928 _____ (Farbar) C:\Users\Spieler.HeikeHarder-HP\Downloads\FRST64.exe 2014-09-25 15:55 - 2014-09-21 20:47 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\LookThisUp 2014-09-25 15:55 - 2011-01-27 12:25 - 00000000 ____D () C:\Users\Heike Harder 2014-09-25 15:55 - 2009-07-14 05:20 - 00000000 ___HD () C:\Windows\system32\GroupPolicy 2014-09-24 18:45 - 2011-01-29 14:11 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\SoftGrid Client 2014-09-24 11:01 - 2014-09-24 11:01 - 02347384 _____ (ESET) C:\Users\Spieler.HeikeHarder-HP\Downloads\esetsmartinstaller_deu.exe 2014-09-23 21:51 - 2014-09-23 21:50 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Desktop\Schutz und remove 2014-09-23 21:50 - 2014-09-23 21:48 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Desktop\speak 2014-09-23 21:49 - 2014-09-23 21:46 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Desktop\Games 2014-09-23 21:48 - 2014-09-23 21:48 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Desktop\opera 2014-09-23 21:47 - 2014-09-23 21:47 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Desktop\sammlung minemap 2014-09-23 17:28 - 2014-09-23 17:01 - 00078237 _____ () C:\zoek-results.log 2014-09-23 17:24 - 2014-09-23 16:58 - 00000000 ____D () C:\zoek_backup 2014-09-23 17:18 - 2011-01-29 12:51 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP 2014-09-23 17:01 - 2014-09-23 14:55 - 00000000 ____D () C:\AdwCleaner 2014-09-23 16:58 - 2014-09-23 17:26 - 00024064 _____ () C:\Windows\zoek-delete.exe 2014-09-23 16:57 - 2014-09-23 16:57 - 04114148 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\zoek.zip 2014-09-23 16:20 - 2014-09-23 16:20 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Spieler.HeikeHarder-HP\Downloads\mbam-setup-2.0.2.1012 (3).exe 2014-09-23 15:03 - 2014-09-23 15:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi 2014-09-23 15:03 - 2014-09-23 15:03 - 00000000 ____D () C:\Program Files (x86)\LogMeIn Hamachi 2014-09-23 14:59 - 2012-04-12 13:23 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-09-23 14:55 - 2014-09-23 14:55 - 01373475 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\AdwCleaner_3.310.exe 2014-09-23 14:53 - 2014-09-23 14:53 - 00000000 ____D () C:\Program Files\TermTutor 2014-09-23 14:24 - 2014-09-23 14:24 - 00068480 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\Addition.txt 2014-09-23 13:15 - 2014-09-23 13:15 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Spieler.HeikeHarder-HP\Downloads\mbam-setup-2.0.2.1012 (2).exe 2014-09-23 13:15 - 2014-09-23 13:15 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Spieler.HeikeHarder-HP\Downloads\mbam-setup-2.0.2.1012 (1).exe 2014-09-22 20:13 - 2014-01-23 20:42 - 00000000 ____D () C:\Program Files (x86)\Overwolf 2014-09-21 21:39 - 2014-07-13 14:52 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2014-09-21 21:35 - 2014-09-21 21:35 - 00000000 _____ () C:\Windows\setuperr.log 2014-09-21 20:49 - 2014-09-21 20:49 - 00001245 _____ () C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk 2014-09-21 20:49 - 2014-09-21 20:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft 2014-09-21 20:49 - 2014-09-21 20:49 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft 2014-09-21 20:49 - 2012-12-30 13:01 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\DVDVideoSoft 2014-09-21 20:48 - 2014-09-21 20:48 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\InetStat 2014-09-21 20:48 - 2014-09-21 20:47 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\InetStat 2014-09-21 20:47 - 2014-09-21 20:47 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_webinstr_01009.Wdf 2014-09-21 20:46 - 2014-09-21 20:41 - 74675720 _____ (DVDVideoSoft Ltd. ) C:\Users\Spieler.HeikeHarder-HP\Downloads\FreeStudio.exe 2014-09-21 20:42 - 2011-01-07 21:18 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-09-21 20:00 - 2014-09-21 00:00 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Documents\ArcheAge 2014-09-21 00:00 - 2014-09-21 00:00 - 00000000 ____D () C:\ArcheAge 2014-09-20 20:33 - 2014-07-03 12:03 - 00000000 ____D () C:\Program Files (x86)\Glyph 2014-09-20 19:55 - 2011-03-02 15:03 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\KlebezettelNG 2014-09-20 19:54 - 2011-04-18 11:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Klebezettel 2014-09-20 19:54 - 2011-01-27 20:05 - 00000000 ____D () C:\Program Files (x86)\Klebezettel NG 2014-09-17 19:05 - 2014-06-25 13:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Action Replay PowerSaves 3DS 2014-09-17 19:05 - 2014-06-25 13:55 - 00000000 ____D () C:\Program Files (x86)\Action Replay PowerSaves 3DS 2014-09-17 19:05 - 2014-06-25 12:35 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Desktop\powersave 2014-09-17 19:03 - 2014-09-17 19:02 - 03817601 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\powersaves3ds-software-121.zip 2014-09-17 10:31 - 2014-06-03 11:02 - 00003864 _____ () C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1387178156 2014-09-17 10:31 - 2011-01-27 12:58 - 00000000 ____D () C:\Program Files (x86)\Opera 2014-09-15 20:18 - 2014-08-06 12:01 - 00000000 ____D () C:\ProgramData\Package Cache 2014-09-15 20:18 - 2014-06-24 19:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2014-09-15 20:18 - 2014-06-24 19:23 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-09-14 21:12 - 2012-10-02 22:27 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\RIFT 2014-09-13 20:18 - 2012-04-12 13:23 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-09-13 20:18 - 2012-04-12 13:23 - 00003824 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-09-13 20:18 - 2011-05-23 10:55 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-09-12 18:43 - 2013-01-07 23:41 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\.minecraft 2014-09-12 05:35 - 2011-01-07 21:54 - 00799382 _____ () C:\Windows\system32\perfh007.dat 2014-09-12 05:35 - 2011-01-07 21:54 - 00188890 _____ () C:\Windows\system32\perfc007.dat 2014-09-12 05:35 - 2009-07-14 07:13 - 01903918 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-09-11 22:55 - 2014-06-24 16:06 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Desktop\pika 2014-09-11 07:41 - 2009-07-14 04:34 - 00000601 _____ () C:\Windows\win.ini 2014-09-11 03:13 - 2011-01-27 18:45 - 01877262 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-09-11 03:10 - 2013-08-16 09:04 - 00000000 ____D () C:\Windows\system32\MRT 2014-09-11 03:04 - 2011-01-31 19:17 - 101694776 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-09-11 03:02 - 2014-05-01 03:02 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-09-10 00:11 - 2014-09-24 11:22 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2014-09-09 23:47 - 2014-09-24 11:22 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2014-09-09 21:23 - 2014-08-28 20:02 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Documents\lp 2014-09-09 21:20 - 2014-08-21 22:58 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Desktop\uni 2014-09-09 07:36 - 2014-09-23 16:58 - 01290240 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\zoek.exe 2014-09-05 04:10 - 2014-09-10 07:14 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-09-05 04:05 - 2014-09-10 07:14 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-09-04 19:22 - 2014-09-04 19:22 - 00058232 _____ (Term Tutor) C:\Windows\system32\Drivers\ttnfd.sys 2014-09-01 12:56 - 2013-02-07 00:45 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Paint.NET 2014-08-31 11:35 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF 2014-08-30 13:37 - 2014-05-02 14:03 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Winamp 2014-08-28 23:21 - 2014-08-28 23:19 - 18599008 _____ (DVDVideoSoft Ltd. ) C:\Users\Spieler.HeikeHarder-HP\Downloads\Free3DVideoMaker.exe 2014-08-28 20:06 - 2012-12-30 13:05 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Documents\DVDVideoSoft 2014-08-28 17:03 - 2014-08-28 17:03 - 01050386 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\Pokemon Kristall (D).zip 2014-08-28 14:50 - 2014-01-31 17:26 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Downloads\emu 2014-08-28 13:41 - 2014-08-28 13:41 - 00000945 _____ () C:\Users\Spieler.HeikeHarder-HP\Desktop\HyperCam 2.lnk 2014-08-28 13:41 - 2014-08-28 13:41 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HyperCam 2 2014-08-28 13:41 - 2014-08-28 13:40 - 03020528 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\HC2Setup-2.29.01 (1).exe 2014-08-28 13:41 - 2011-03-31 16:43 - 00000000 ____D () C:\Program Files (x86)\HyCam2 2014-08-28 13:39 - 2014-08-18 16:36 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Solveig Multimedia 2014-08-28 03:20 - 2013-08-22 09:23 - 00505384 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-08-26 18:14 - 2014-07-20 21:55 - 00005284 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\desmume.ini 2014-08-26 17:52 - 2014-07-09 18:04 - 00000409 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\fishbotconfig.ini 2014-08-26 16:10 - 2014-07-20 21:55 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Downloads\States 2014-08-26 16:05 - 2014-08-26 16:05 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Downloads\Slot1D 2014-08-26 13:17 - 2014-08-26 13:08 - 27076650 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\0052.zip 2014-08-26 13:17 - 2014-07-20 21:55 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Downloads\Battery Some content of TEMP: ==================== C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Temp\avgnt.exe C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmppu4jdx.dll ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-09-16 06:23 ==================== End Of Log ============================ |
25.09.2014, 22:00 | #19 |
| Opera Problem. Unsichtbare Internetseite mit nervender WerbungCode:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 25-09-2014 Ran by Spieler at 2014-09-25 22:58:00 Running from C:\Users\Spieler.HeikeHarder-HP\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Avira Desktop (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AS: Avira Desktop (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Restricted Area Savegame Editor V1.00 - V1.09 (HKLM-x32\...\ Restricted Area Savegame Editor V1.00 - V1.09) (Version: - ) 3RVX (HKLM-x32\...\{66BB5D8F-D9BD-4799-A9FA-5731B3B7839A}) (Version: 2.5 - matt.malensek.net) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) ABBYY FineReader 10 Professional Edition (HKLM-x32\...\{F1000000-0001-0000-0000-074957833700}) (Version: 10.501.159.70013 - ABBYY) Action Replay DSi Code Manager (HKLM-x32\...\Action Replay DSi Code Manager_is1) (Version: - ) Action Replay PowerSaves 3DS Version 1.21 (HKLM-x32\...\{CD24B06F-0A4D-410A-AEF2-DFE6A28AB4C0}_is1) (Version: 1.21 - Datel Design & Development) ActiveCheck component for HP Active Support Library (x32 Version: 3.0.0.3 - Hewlett-Packard) Hidden Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.5.3.9130 - Adobe Systems Inc.) Adobe AIR (x32 Version: 1.5.3.9130 - Adobe Systems Inc.) Hidden Adobe Bridge 1.0 (x32 Version: 001.000.001 - Adobe Systems) Hidden Adobe Common File Installer (x32 Version: 1.00.001 - Adobe System Incorporated) Hidden Adobe Creative Suite 2 (HKLM-x32\...\{0134A1A1-C283-4A47-91A1-92F19F960372}) (Version: - ) Adobe Digital Editions (HKLM-x32\...\Digital Editions) (Version: - ) Adobe Flash Player 11 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 11.5.502.110 - Adobe Systems Incorporated) Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.152 - Adobe Systems Incorporated) Adobe Help Center 1.0 (x32 Version: 1.0.1 - Adobe Systems) Hidden Adobe Illustrator CS2 (x32 Version: 12.000.000 - Adobe Systems Inc.) Hidden Adobe InDesign CS2 (x32 Version: 004.000.000 - Adobe Systems Incorporated) Hidden Adobe Photoshop CS2 (x32 Version: 9.0 - Adobe Systems, Inc.) Hidden Adobe Photoshop Elements 6.0 (HKLM-x32\...\Adobe Photoshop Elements 6) (Version: 6.0 - Adobe Systems, Inc.) Adobe Photoshop Elements 6.0 (x32 Version: 6.0 - Adobe Systems, Inc.) Hidden Adobe Reader X (10.1.11) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AA1000000001}) (Version: 10.1.11 - Adobe Systems Incorporated) Adobe Stock Photos 1.0 (x32 Version: 1.0.1 - Adobe Systems) Hidden Adobe SVG Viewer 3.0 (HKLM-x32\...\Adobe SVG Viewer) (Version: 3.0 - Adobe Systems, Inc.) Adobe Version Cue CS2 (x32 Version: 2.0 - Adobe Systems, Inc.) Hidden Aeria Ignite (HKLM-x32\...\Aeria Ignite 1.12.2400) (Version: 1.12.2400 - Aeria Games & Entertainment) Aeria Ignite (HKLM-x32\...\Aeria Ignite) (Version: 1.12.2400 - Aeria Games & Entertainment) Aeria Ignite (x32 Version: 1.12.2400 - Aeria Games & Entertainment) Hidden Agatha Christie - Peril at End House (x32 Version: 2.2.0.95 - WildTangent) Hidden AION Free-To-Play (HKLM-x32\...\InstallShield_{6A9EF6CF-7630-4E33-AE22-7D70F3AF4B05}) (Version: 2.70.0000 - Gameforge) AION Free-To-Play (x32 Version: 2.70.0000 - Gameforge) Hidden Akamai NetSession Interface (HKCU\...\Akamai) (Version: - Akamai Technologies, Inc) Apple Application Support (HKLM-x32\...\{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}) (Version: 2.3.4 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Archeage (HKLM-x32\...\Glyph Archeage) (Version: - Trion Worlds, Inc.) Ashampoo Burning Studio Elements 10.0.9 (HKLM-x32\...\Ashampoo Burning Studio Elements_is1) (Version: 3.1.1 - Ashampoo GmbH & Co. KG) Ashampoo Office 2008 (C:\Program Files (x86)\Ashampoo\Ashampoo Office 2008) (HKLM-x32\...\sm-un1.u32) (Version: - SoftMaker Software GmbH) Ashampoo Photo Commander 7.60 (HKLM-x32\...\Ashampoo Photo Commander 7_is1) (Version: 7.6.0 - ashampoo GmbH & Co. KG) Audacity 2.0 (HKLM-x32\...\Audacity_is1) (Version: - Audacity Team) Audible Download Manager (HKLM-x32\...\AudibleDownloadManager) (Version: 6.6.0.10 - Audible, Inc.) Autostart ok-s 2.0 (HKLM-x32\...\{83832C13-FE26-4058-9BEB-89C422F569B3}) (Version: 1.0 - Olaf Koch) Avira (HKLM-x32\...\{70e83cd8-4bd5-4039-ab5a-6b94a8abb641}) (Version: 1.1.21.25162 - Avira Operations GmbH & Co. KG) Avira (x32 Version: 1.1.21.25162 - Avira Operations GmbH & Co. KG) Hidden Avira Free Antivirus (HKLM-x32\...\Avira AntiVir Desktop) (Version: 14.0.6.570 - Avira) Bandisoft MPEG-1 Decoder (HKLM-x32\...\BandiMPEG1) (Version: - ) Bejeweled 2 Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden BenVista PhotoZoom Classic 2.0 (HKCU\...\PhotoZoom Classic 2) (Version: 2.0 - BenVista Ltd) BenVista PhotoZoom Express 3.0 (HKCU\...\PhotoZoom Express 3) (Version: 3.0 - BenVista Ltd) Bing Rewards Client Installer (x32 Version: 16.0.345.0 - Microsoft Corporation) Hidden Blasterball 3 (x32 Version: 2.2.0.95 - WildTangent) Hidden Blender (HKLM\...\Blender) (Version: 2.71 - Blender Foundation) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Bounce Symphony (x32 Version: 2.2.0.95 - WildTangent) Hidden Brother MFL-Pro Suite MFC-J6510DW (HKLM-x32\...\{17795164-3BC1-4D4F-8ADA-65C895EBFC9A}) (Version: 1.0.20.0 - Brother Industries, Ltd.) Build-a-Lot - The Elizabethan Era (x32 Version: 2.2.0.95 - WildTangent) Hidden Cake Mania (x32 Version: 2.2.0.95 - WildTangent) Hidden CCEnhancer 3.2 (HKLM-x32\...\CCEnhancer) (Version: 3.2 - ) CCleaner (HKLM\...\CCleaner) (Version: 3.17 - Piriform) Cheat Engine 6.2 (HKLM-x32\...\Cheat Engine 6.2_is1) (Version: - Dark Byte) Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden Compatibility Pack für 2007 Office System (HKLM-x32\...\{90120000-0020-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) COMPUTERBILD App-Center (HKLM-x32\...\{21295604-BBCA-4A3E-B1D1-1B8A746C4A52}) (Version: 1.0.23 - J3S) COMPUTERBILD-Cloud (HKLM\...\COMPUTERBILD-Cloud_is1) (Version: - CyberGhost S.R.L.) Curse Client (HKCU\...\101a9f93b8f0bb6f) (Version: 5.1.1.792 - Curse) CyberLink DVD Suite Deluxe (HKLM-x32\...\InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}) (Version: 7.0.3210 - CyberLink Corp.) CyberLink DVD Suite Deluxe (x32 Version: 7.0.3210 - CyberLink Corp.) Hidden CyberLink PowerDVD 11 (HKLM-x32\...\InstallShield_{F232C87C-6E92-4775-8210-DFE90B7777D9}) (Version: 11.0.2024.53 - CyberLink Corp.) CyberLink PowerDVD 11 (x32 Version: 11.0.2024.53 - CyberLink Corp.) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Defraggler (HKLM\...\Defraggler) (Version: 2.01 - Piriform) DEUTSCHLAND SPIELT GAME CENTER (HKLM-x32\...\DSGPlayer) (Version: 1.0.1.46 - INTENIUM GmbH) Die Jade-Münze (HKLM-x32\...\Die Jade-Münze) (Version: 1.0.0.0 - INTENIUM GmbH) Diner Dash 2 Restaurant Rescue (x32 Version: 2.2.0.95 - WildTangent) Hidden DomainInspect (HKLM-x32\...\DomainInspect) (Version: - AntsSoft) Dragon Age II (HKLM-x32\...\{4D565319-8B91-41cb-961C-0DDC86101AC5}) (Version: 1.00 - Electronic Arts, Inc.) Dragon Age Toolset (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.01 - Electronic Arts, Inc.) Dragon Age: Origins (HKLM-x32\...\{AEC81925-9C76-4707-84A9-40696C613ED3}) (Version: 1.04 - Electronic Arts, Inc.) Drakensang - Am Fluss der Zeit (HKLM-x32\...\Drakensang_TRoT_is1) (Version: - dtp) Drakensang (Patch Version 1.1) (HKLM-x32\...\Drakensang_is1) (Version: - dtp AG) Drakensang 2 Savegame Editor (HKCU\...\Drakensang 2 Savegame Editor) (Version: - Philipp Jardas) Drakensang Savegame Editor (HKCU\...\Drakensang Savegame Editor) (Version: - Philipp Jardas) Dropbox (HKCU\...\Dropbox) (Version: 2.10.30 - Dropbox, Inc.) DVD Menu Pack for HP MediaSmart Video (HKLM-x32\...\InstallShield_{FB4BB287-37F9-4E27-9C4D-2D3882E08EFF}) (Version: 4.2.4412 - Hewlett-Packard) DVD Menu Pack for HP MediaSmart Video (x32 Version: 4.2.4412 - Hewlett-Packard) Hidden DVD Video Soft Toolbar (HKLM-x32\...\dvdvideosofttoolbar) (Version: 1.0.0.12 - ) DVDVideoSoftTB Toolbar (HKLM-x32\...\DVDVideoSoftTB Toolbar) (Version: 6.9.0.16 - DVDVideoSoftTB) EA Shared Game Component: Activation (HKLM-x32\...\com.ea.Activation.919CACB699904AC5D41B606703500DD39747C02D.1) (Version: 2.2.0.62 - Electronic Arts) EA Shared Game Component: Activation (x32 Version: 2.2.0 - Electronic Arts) Hidden Epson Easy Photo Print 2 (HKLM-x32\...\{A02D7029-C4EF-44C1-9FD4-C0D3CA518113}) (Version: 2.2.4.0 - SEIKO EPSON CORPORATION) Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) (HKLM-x32\...\{B2D55EB8-32C5-4B43-9006-9E97DECBA178}) (Version: 1.00.0000 - SEIKO EPSON CORPORATION) EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - Seiko Epson Corporation) EPSON SX430 Series Printer Uninstall (HKLM\...\EPSON SX430 Series) (Version: - SEIKO EPSON Corporation) EpsonNet Print (HKLM-x32\...\{3E31400D-274E-4647-916C-2CACC3741799}) (Version: 2.4j - SEIKO EPSON CORPORATION) Farm Frenzy (x32 Version: 2.2.0.95 - WildTangent) Hidden FATE (x32 Version: 2.2.0.95 - WildTangent) Hidden Fotogalerie (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - ) Free 3GP Video Converter version 5.0.13.608 (HKLM-x32\...\Free 3GP Video Converter_is1) (Version: 5.0.13.608 - DVDVideoSoft Ltd.) Free Audio CD to MP3 Converter version 1.3.12.1228 (HKLM-x32\...\Free Audio CD to MP3 Converter_is1) (Version: 1.3.12.1228 - DVDVideoSoft Ltd.) Free Audio Converter version 5.0.21.1212 (HKLM-x32\...\Free Audio Converter_is1) (Version: 5.0.21.1212 - DVDVideoSoft Ltd.) Free Studio version 2014 (HKLM-x32\...\Free Studio_is1) (Version: 6.3.9.906 - DVDVideoSoft Ltd.) Free YouTube Download 3 version 3.0.6.715 (HKLM-x32\...\Free YouTube Download 3_is1) (Version: - DVDVideoSoft Limited.) Free YouTube to DVD Converter version 3.0.3.923 (HKLM-x32\...\Free YouTube to DVD Converter_is1) (Version: - DVDVideoSoft Ltd.) GameWiz32 (HKLM-x32\...\GameWiz32) (Version: 1.43 - Nico Ebert) Geheimnis von Montezuma (HKLM-x32\...\Geheimnis von Montezuma) (Version: 0.0.0.0 - INTENIUM GmbH) Geheimnis von Montezuma 2 (HKLM-x32\...\Geheimnis von Montezuma 2) (Version: 1.0.0.0 - INTENIUM GmbH) Glitzerndes Troja (HKLM-x32\...\Glitzerndes Troja_is1) (Version: - Contendo Media GmbH) Glyph (HKLM-x32\...\Glyph) (Version: - Trion Worlds, Inc.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 37.0.2062.124 - Google Inc.) Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.5111.1712 - Google Inc.) Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden Guild Wars 2 (HKLM-x32\...\Guild Wars 2) (Version: - NCsoft Corporation, Ltd.) Harvard Publisher 6.0 (HKLM-x32\...\Harvard Publisher 6.0) (Version: - ) Harvard Publisher 6.0 Inhalts-CD-ROM (HKLM-x32\...\Harvard Publisher 6.0 Inhalts-CD-ROM) (Version: - ) HP Auto (Version: 1.0.12494.3472 - Hewlett-Packard Company) Hidden HP Client Services (Version: 1.0.12656.3472 - Hewlett-Packard) Hidden HP Customer Experience Enhancements (x32 Version: 6.0.1.7 - Hewlett-Packard) Hidden HP Game Console (x32 Version: - WildTangent) Hidden HP Games (HKLM-x32\...\WildTangent hp Master Uninstall) (Version: 1.0.1.5 - WildTangent) HP MediaSmart DVD (HKLM-x32\...\InstallShield_{DCCAD079-F92C-44DA-B258-624FC6517A5A}) (Version: 4.2.4725 - Hewlett-Packard) HP MediaSmart DVD (x32 Version: 4.2.4725 - Hewlett-Packard) Hidden HP MediaSmart Music (HKLM-x32\...\InstallShield_{91A34181-9FAD-43AB-A35F-E7A8945B7E1C}) (Version: 4.2.4517 - Hewlett-Packard) HP MediaSmart Music (x32 Version: 4.2.4517 - Hewlett-Packard) Hidden HP MediaSmart Photo (HKLM-x32\...\InstallShield_{6DAF8CDC-9B04-413B-A0F2-BCC13CF8A5BF}) (Version: 4.2.4513 - Hewlett-Packard) HP MediaSmart Photo (x32 Version: 4.2.4513 - Hewlett-Packard) Hidden HP MediaSmart SmartMenu (HKLM\...\{A40F60B1-F1E1-452E-96A5-FF97F9A2D102}) (Version: 3.1.2.4 - Hewlett-Packard) HP MediaSmart Video (HKLM-x32\...\InstallShield_{D12E3E7F-1B13-4933-A915-16C7DD37A095}) (Version: 4.2.4522 - Hewlett-Packard) HP MediaSmart Video (x32 Version: 4.2.4522 - Hewlett-Packard) Hidden HP Odometer (HKLM-x32\...\{B8AC1A89-FFD1-4F97-8051-E505A160F562}) (Version: 2.10.0000 - Hewlett-Packard) HP Setup (HKLM-x32\...\{53469506-A37E-4314-A9D9-38724EC23A75}) (Version: 8.4.4400.3525 - Hewlett-Packard Company) HP Setup Manager (HKLM-x32\...\{AE856388-AFAD-4753-81DF-D96B19D0A17C}) (Version: 1.0.12844.3519 - Hewlett-Packard Company) HP Support Assistant (HKLM-x32\...\{B1A4A13D-4665-4ED3-9DFE-F845725FBBD8}) (Version: 5.1.8.12 - Hewlett-Packard Company) HP Support Information (HKLM-x32\...\{7F2A11F4-EAE8-4325-83EC-E3E99F85169E}) (Version: 10.1.1000 - Hewlett-Packard) HP Update (HKLM-x32\...\{DE77FE3F-A33D-499A-87AD-5FC406617B40}) (Version: 5.002.003.003 - Hewlett-Packard) HP Vision Hardware Diagnostics (HKLM\...\{D79A02E9-6713-4335-9668-AAC7474C0C0E}) (Version: 2.1.6.0 - Hewlett-Packard) HPAsset component for HP Active Support Library (x32 Version: 3.0.0.3 - Hewlett-Packard) Hidden Hühner-Attacke (HKLM-x32\...\Hühner-Attacke) (Version: 0.0.0.0 - INTENIUM GmbH) Hühner-Rache Deluxe Special (HKLM-x32\...\Hühner-Rache Deluxe Special) (Version: - ) HyperCam 2 (HKLM-x32\...\HyperCam 2) (Version: 2.29.01 - Hyperionics Technology LLC) Insaniquarium Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.0.0.1179 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 9.6.0.1014 - Intel Corporation) Internet Turbo Engine (HKCU\...\{28583d9b-8f7d-474c-b990-7328c7428bae}) (Version: 10.197.20.13927 - ReSoft Ltd.) iTunes (HKLM\...\{D66F0C3C-24F2-4463-9E2F-4381E5C40A26}) (Version: 10.5.2.11 - Apple Inc.) Java 7 Update 65 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F06417065FF}) (Version: 7.0.650 - Oracle) Java Auto Updater (x32 Version: 2.0.2.4 - Sun Microsystems, Inc.) Hidden Java(TM) 6 Update 23 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83216022FF}) (Version: 6.0.230 - Oracle) JDownloader 0.9 (HKLM-x32\...\5513-1208-7298-9440) (Version: 0.9 - AppWork GmbH) Jewel Quest II (x32 Version: 2.2.0.95 - WildTangent) Hidden Jewel Quest Solitaire (HKLM-x32\...\Jewel Quest Solitaire) (Version: 1.0.0.0 - INTENIUM GmbH) Jewel Quest Solitaire (x32 Version: 2.2.0.95 - WildTangent) Hidden Jewel Quest Solitaire II (HKLM-x32\...\Jewel Quest Solitaire II) (Version: 1.0.0.0 - INTENIUM GmbH) Jewel Quest Solitaire III (HKLM-x32\...\Jewel Quest Solitaire III) (Version: 1.0.0.0 - INTENIUM GmbH) John Deere Drive Green (x32 Version: 2.2.0.95 - WildTangent) Hidden Junk Mail filter update (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Klebezettel NG (Version 2.9.14) (HKLM-x32\...\{4F81901F-3655-4340-8227-F687F69A3C79}}_is1) (Version: - ) Land der Magie (HKLM-x32\...\Land der Magie) (Version: 1.0.0.0 - INTENIUM GmbH) Legendary Demo (HKLM-x32\...\InstallShield_{A6755FD5-4CD1-44A7-8886-6C56FA0A9E21}) (Version: 1.00.0000 - Spark Unlimited) Legendary Demo (x32 Version: 1.00.0000 - Spark Unlimited) Hidden LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.236 - LogMeIn, Inc.) LogMeIn Hamachi (x32 Version: 2.2.0.236 - LogMeIn, Inc.) Hidden LookThisUp (HKLM\...\LookThisUp) (Version: 1.0.2 - LookThisUp) M6 Processing 1.0 (HKCU\...\M6 Processing) (Version: 1.0 - Pysy Software S.L.) Magelo Sync (uninstall only) (HKLM\...\Magelo Sync) (Version: - ) MAGIX Filme auf DVD Download-Version (x32 Version: 9.0.1.2 - MAGIX AG) Hidden MAGIX Video deluxe 16 Plus Sonderedition Download-Version (HKLM-x32\...\MAGIX_MSI_Videodeluxe16_plus) (Version: 9.0.5.10 - MAGIX AG) MAGIX Video deluxe 16 Plus Sonderedition Download-Version (x32 Version: 9.0.5.10 - MAGIX AG) Hidden MAGIX Video deluxe 17 Download-Version (x32 Version: 10.0.1.14 - MAGIX AG) Hidden Mah Jong Quest (HKLM-x32\...\Mah Jong Quest) (Version: 0.0.0.0 - INTENIUM GmbH) Mah Jong Quest II (HKLM-x32\...\Mah Jong Quest II) (Version: 0.0.0.0 - INTENIUM GmbH) Mah Jong Quest III (HKLM-x32\...\Mah Jong Quest III) (Version: 0.0.0.0 - INTENIUM GmbH) Mahjongg – Ancient Egypt (HKLM-x32\...\Mahjongg – Ancient Egypt) (Version: 1.0.0.0 - INTENIUM GmbH) Mahjongg – Ancient Mayas (HKLM-x32\...\Mahjongg – Ancient Mayas) (Version: 0.0.0.0 - INTENIUM GmbH) Mahjongg Artifacts (HKLM-x32\...\Mahjongg Artifacts) (Version: 0.0.0.0 - INTENIUM GmbH) Mahjongg Artifacts 2 (HKLM-x32\...\Mahjongg Artifacts 2) (Version: 0.0.0.0 - INTENIUM GmbH) Mahjongg Dimensions Deluxe: Tiles in Time (HKLM-x32\...\Mahjongg Dimensions Deluxe: Tiles in Time) (Version: 1.0.0.0 - INTENIUM GmbH) McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.8.150.1 - McAfee, Inc.) Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Klick-und-Los 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Klick-und-Los 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden Microsoft Office Live Add-in 1.5 (HKLM-x32\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation) Microsoft Office Starter 2010 - Deutsch (HKLM-x32\...\{90140011-0066-0407-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office XP Professional (HKLM-x32\...\{91110407-6000-11D3-8CFE-0050048383C9}) (Version: 10.0.6626.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft SkyDrive (HKCU\...\SkyDriveSetup.exe) (Version: 16.4.6013.0910 - Microsoft Corporation) Microsoft SQL Server 2005 (HKLM-x32\...\Microsoft SQL Server 2005) (Version: - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft SQL Server 2005 Express Edition (BWDATOOLSET) (x32 Version: 9.4.5000.00 - Microsoft Corporation) Hidden Microsoft SQL Server 2005 Express Edition (SQLEXPRESS) (x32 Version: 9.4.5000.00 - Microsoft Corporation) Hidden Microsoft SQL Server 2005 Tools Express Edition (x32 Version: 9.4.5000.00 - Microsoft Corporation) Hidden Microsoft SQL Server Native Client (HKLM\...\{9ACF3FDB-C8E6-444C-8C64-13A221F7BFFD}) (Version: 9.00.5000.00 - Microsoft Corporation) Microsoft SQL Server Setup Support Files (English) (HKLM-x32\...\{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}) (Version: 9.00.5000.00 - Microsoft Corporation) Microsoft SQL Server VSS Writer (HKLM\...\{B636C9B9-A3F2-4DCE-ADCC-72E095018385}) (Version: 9.00.5000.00 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (HKLM\...\{B6E3757B-5E77-3915-866A-CCFC4B8D194C}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 (HKLM\...\{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}) (Version: 8.0.51011 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 (HKLM\...\{8338783A-0968-3B85-AFC7-BAAE0A63DC50}) (Version: 9.0.30729.5570 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM-x32\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Moorhuhn Schatzjäger 3 (HKLM-x32\...\Moorhuhn Schatzjäger 3) (Version: 1.00 - phenomedia publishing gmbh) Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Movie Theme Pack for HP MediaSmart Video (HKLM-x32\...\InstallShield_{3023EBDA-BF1B-4831-B347-E5018555F26E}) (Version: 4.2.4412 - Hewlett-Packard) Movie Theme Pack for HP MediaSmart Video (x32 Version: 4.2.4412 - Hewlett-Packard) Hidden Mozilla Thunderbird (3.1.7) (HKLM-x32\...\Mozilla Thunderbird (3.1.7)) (Version: 3.1.7 (de) - Mozilla) MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2721691) (HKLM-x32\...\{355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}) (Version: 4.30.2114.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB973685) (HKLM-x32\...\{859DFA95-E4A6-48CD-B88E-A3E483E89B44}) (Version: 4.30.2107.0 - Microsoft Corporation) Mystery Solitaire: Secret Island (HKLM-x32\...\Mystery Solitaire: Secret Island) (Version: 0.0.0.0 - INTENIUM GmbH) NC Launcher (GameForge) (HKLM-x32\...\NCLauncher_GameForge) (Version: - NCsoft) Nexon Game Manager (HKLM-x32\...\{EA2DB6E0-72C5-4ef9-A3A0-E6705F4A6A9E}) (Version: - ) No23 Recorder (HKLM-x32\...\{22B0E143-2B0B-435B-9F56-136A3D16065F}) (Version: 2.1.0.3 - No23) Nuance PaperPort 12 (HKLM-x32\...\{6C0A559F-8583-4B5A-8B50-20BEE15D8E64}) (Version: 12.1.0000 - Nuance Communications, Inc.) Nuance PDF Viewer Plus (HKLM-x32\...\{28656860-4728-433C-8AD4-D1A930437BC8}) (Version: 5.30.3290 - Nuance Communications, Inc) NVIDIA 3D Vision Controller Driver (x32 Version: 270.61 - NVIDIA Corporation) Hidden NVIDIA 3D Vision Controller-Treiber 310.90 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 310.90 - NVIDIA Corporation) NVIDIA Grafiktreiber 310.90 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 310.90 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.18.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.18.0 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.95.599 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.12.1031 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.12.1031 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.1031 - NVIDIA Corporation) NVIDIA Systemsteuerung 310.90 (Version: 310.90 - NVIDIA Corporation) Hidden NVIDIA Update 1.11.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.11.3 - NVIDIA Corporation) NVIDIA Update Components (Version: 1.11.3 - NVIDIA Corporation) Hidden Office-Bibliothek (HKLM-x32\...\{5C81B189-5456-40C4-9313-7FE6FA6DD64C}) (Version: 5.00.3 - Bibliographisches Institut & F.A. Brockhaus AG) OpenOffice.org 3.3 (HKLM-x32\...\{4286716B-1287-48E7-9078-3DC8248DBA96}) (Version: 3.3.9567 - OpenOffice.org) Opera 12.16 (HKLM-x32\...\Opera 12.16.1860) (Version: 12.16.1860 - Opera Software ASA) Opera Stable 24.0.1558.61 (HKLM-x32\...\Opera 24.0.1558.61) (Version: 24.0.1558.61 - Opera Software ASA) Origin (HKLM-x32\...\Origin) (Version: 9.1.13.85 - Electronic Arts, Inc.) Overwolf (HKLM-x32\...\Overwolf) (Version: 0.80.20.0 - Overwolf Ltd.) Paint.NET v3.5.11 (HKLM\...\{72EF03F5-0507-4861-9A44-D99FD4C41418}) (Version: 3.61.0 - dotPDN LLC) Pando Media Booster (HKLM-x32\...\{980A182F-E0A2-4A40-94C1-AE0C1235902E}) (Version: 2.6.0.8 - Pando Networks Inc.) PaperPort Image Printer 64-bit (HKLM\...\{715CAACC-579B-4831-A5F4-A83A8DE3EFE2}) (Version: 1.00.0001 - Nuance Communications, Inc.) PCSUITE ADVISOR (HKLM-x32\...\PCSUITE_ADVISOR_PRO_is1) (Version: - Markement GmbH) PDF Complete Special Edition (HKLM-x32\...\PDF Complete) (Version: 4.0.9 - PDF Complete, Inc) PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.2.0 - Frank Heindörfer, Philip Chinery) Penguins! (x32 Version: 2.2.0.95 - WildTangent) Hidden Photo Gallery (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden PictureMover (HKLM-x32\...\{264FE20A-757B-492a-B0C3-4009E2997D8A}) (Version: 3.5.0.33 - Hewlett-Packard Company) Pinball Escape (HKLM\...\UDK-4601a1a3-d3ca-4b8b-99ca-a569081d9943) (Version: - Epic Games, Inc.) Plants vs. Zombies (x32 Version: 2.2.0.95 - WildTangent) Hidden PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation) Polar Bowler (x32 Version: 2.2.0.95 - WildTangent) Hidden Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.4329 - CyberLink Corp.) PowerDirector (Version: 10.00.0000 - CyberLink Corp.) Hidden Project64 1.6 (HKLM-x32\...\{9559F7CA-5E34-4237-A2D9-D856464AD727}) (Version: 1.6 - Project64) QuickTime (HKLM-x32\...\{B67BAFBA-4C9F-48FA-9496-933E3B255044}) (Version: 7.74.80.86 - Apple Inc.) Raptr (HKLM-x32\...\Raptr) (Version: - ) RealNetworks - Microsoft Visual C++ 2008 Runtime (x32 Version: 9.0 - RealNetworks, Inc) Hidden Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6602 - Realtek Semiconductor Corp.) RealUpgrade 1.1 (x32 Version: 1.1.0 - RealNetworks, Inc.) Hidden Recovery Manager (x32 Version: 5.5.3219 - CyberLink Corp.) Hidden Restricted Area (HKLM-x32\...\Restricted Area_is1) (Version: Restricted Area - Master Creating) Retter in der Not (HKLM-x32\...\Retter in der Not) (Version: 1.0.0.0 - INTENIUM GmbH) Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) RIFT (HKCU\...\RIFT) (Version: - Trion Worlds, Inc.) RIFT Beta (HKCU\...\RIFT-Beta) (Version: - Trion Worlds, Inc.) Risen (HKLM-x32\...\{155F4A0E-76ED-45A2-91FB-FF2A2133C31A}) (Version: 1.00.0000 - Deep Silver) Risen 2 - Dark Waters (HKLM-x32\...\Steam App 40390) (Version: - ) Risen Hotfix 1.01 (HKLM-x32\...\{EE91E474-9298-47B8-817F-8E0042408998}) (Version: 1.01 - Deep Silver) Ritter Arthur (HKLM-x32\...\Ritter Arthur) (Version: 1.0.0.0 - INTENIUM GmbH) Scansoft PDF Professional (x32 Version: - ) Hidden Serif PhotoPlus X2 (HKLM-x32\...\{FC935397-C56E-4EE3-B9BC-1F7F3EA6CE41}) (Version: 12.0.3.013 - Serif (Europe) Ltd) Shaiya-DE (HKLM-x32\...\Shaiya-DE) (Version: - ) Skype™ 6.16 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.16.105 - Skype Technologies S.A.) Slingo Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden Soda PDF 2012 (HKLM-x32\...\{A5EB5C60-5303-46C2-ABC8-860D94A8A973}) (Version: 2.0.33.2835 - LULU Software) South Park™: The Stick of Truth™ (HKLM-x32\...\Steam App 213670) (Version: - Obsidian Entertainment) Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) Suite Specific (x32 Version: 2.0.0 - Adobe Systems, Incorporated) Hidden TeamSpeak 3 Client (HKCU\...\TeamSpeak 3 Client) (Version: 3.0.12 - TeamSpeak Systems GmbH) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.15 - TeamSpeak Systems GmbH) TeamViewer 9 (HKLM-x32\...\TeamViewer 9) (Version: 9.0.28223 - TeamViewer) Term Tutor (HKLM-x32\...\TermTutor) (Version: 1.9.0.8 - Term Tutor) <==== ATTENTION The Whispered World (HKLM-x32\...\{82225685-1513-4975-B624-155C10F3EE16}) (Version: 1.01 - Deep Silver) The Witcher (HKLM-x32\...\{F138762F-5A1F-4CF0-A5E1-1588EF6088A4}) (Version: 1.00.0000 - CD Projekt Red) TileSetMaker (HKLM-x32\...\TileSetMaker) (Version: - ) Titan Quest (HKLM-x32\...\{412B69AF-C352-4F6F-A318-B92B3CB9ACC6}) (Version: 1.00.0000 - Iron Lore) Titan Quest Immortal Throne (HKLM-x32\...\{B5C5C17E-FEF6-4062-8151-A427AE8AF9D7}) (Version: 1.00.0000 - Iron Lore) Torchlight (HKLM-x32\...\{4F64A46D-67F7-4497-AEA2-313D4305A5F6}) (Version: 1.0.0 - JoWooD) Torchlight (HKLM-x32\...\Runic Games Torchlight) (Version: 1.0.69.23 - ) TQ Defiler.NET (HKLM-x32\...\{F4CB0C1E-A88F-46D7-AC9A-03B349A8D64F}) (Version: 1.3.7 - Soul's Software) TQVault 2.11 (HKLM-x32\...\TQVault_is1) (Version: - bman654) Treiber-Studio 2013 (HKLM\...\{7660521A-062D-41F5-AA5E-CBA0E0511131}) (Version: 8.0.519 - Publish Data) Unity Web Player (HKCU\...\UnityWebPlayer) (Version: - Unity Technologies ApS) USB Audio/Video Driver (HKLM-x32\...\InstallShield_{015C057F-D7B9-4D82-B266-FBCF0178F382}) (Version: 1.00.0000 - ) USB Audio/Video Driver (x32 Version: 1.00.0000 - ) Hidden USB Network Driver (HKLM-x32\...\{66ED8E01-C915-41F5-B33E-C5C31F27B885}) (Version: 2007.07.3 - ) Venetica (HKLM-x32\...\Venetica_is1) (Version: - dtp) Video Thumbnails Maker by Scorp (remove only) (HKLM-x32\...\Video Thumbnails Maker) (Version: - ) ViGlance (HKLM-x32\...\ViGlance) (Version: 1001194 - Lee-Soft.com) Vindictus (HKLM-x32\...\Vindictus) (Version: - ) Virtual Audio Cable 4.10 (HKLM\...\Virtual Audio Cable 4.10) (Version: - ) Virtual Villagers - The Secret City (x32 Version: 2.2.0.95 - WildTangent) Hidden Vista Start Menu 3.36 (HKLM-x32\...\Vista Start Menu_is1) (Version: 3.36 - OrdinarySoft) VLC media player 2.0.5 (HKLM-x32\...\VLC media player) (Version: 2.0.5 - VideoLAN) VP3 Codec Version 3.2.6.1 (HKLM-x32\...\VP3 Codec Version 3.2.6.1) (Version: - ) Wedding Dash (x32 Version: 2.2.0.95 - WildTangent) Hidden Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc) Windows Live Communications Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation) Windows Live Essentials (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live Family Safety (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live Family Safety (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live Messenger (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live MIME IFilter (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live Writer (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live Writer Resources (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Mobile-Gerätecenter (HKLM\...\{626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B}) (Version: 6.1.6965.0 - Microsoft Corporation) Winload Toolbar (HKLM-x32\...\Winload Toolbar) (Version: 6.8.9.0 - Winload) XLink Kai Evolution 7 (HKLM-x32\...\{F90592EC-5E58-4EE6-A333-EC05ED57ACF4}) (Version: 7.1.7.7 - Team XLink) Zinio Reader 4 (HKLM-x32\...\ZinioReader4.9310D8F796442B71068C511E15D70529A702D19D.1) (Version: 4.0.3184 - Zinio LLC) Zinio Reader 4 (x32 Version: 4.0.3184 - Zinio LLC) Hidden Zuma Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-2355925718-3238339638-3018866954-1007_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2355925718-3238339638-3018866954-1007_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2355925718-3238339638-3018866954-1007_Classes\CLSID\{b24abb2f-a278-4d8e-953c-24d702c5cd73}\InprocServer32 -> C:\Windows\system32\dfshim.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2355925718-3238339638-3018866954-1007_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2355925718-3238339638-3018866954-1007_Classes\CLSID\{D45F043D-F17F-4e8a-8435-70971D9FA46D}\InprocServer32 -> C:\Program Files\Blender Foundation\Blender\BlendThumb64.dll () CustomCLSID: HKU\S-1-5-21-2355925718-3238339638-3018866954-1007_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2355925718-3238339638-3018866954-1007_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\FileSyncApi64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2355925718-3238339638-3018866954-1007_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2355925718-3238339638-3018866954-1007_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2355925718-3238339638-3018866954-1007_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2355925718-3238339638-3018866954-1007_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2355925718-3238339638-3018866954-1007_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2355925718-3238339638-3018866954-1007_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2355925718-3238339638-3018866954-1007_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2355925718-3238339638-3018866954-1007_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) ==================== Restore Points ========================= 23-09-2014 12:50:43 Removed LPT System Updater Service 23-09-2014 15:02:02 zoek.exe restore point 25-09-2014 01:00:33 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {01A8FBEE-F847-42AC-BA4F-00A1898D52EA} - System32\Tasks\{A1B14BEA-175E-4E8C-BEE2-5DDA0F36CE9D} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] () Task: {07C3EB77-BAD1-4CE8-A8AC-7F7B2FC0B156} - System32\Tasks\ServicePlan => C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [2010-09-27] () Task: {099D38D9-347D-4927-A8D6-717739F0B2D9} - System32\Tasks\{7F6DEF33-A300-41FA-A541-DBEC7DD61924} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] () Task: {0BB09DF1-229E-407A-B1B9-3AC39272E7CB} - System32\Tasks\{2FE07B1C-ECD4-4699-B785-2C1187027CF6} => C:\Program Files (x86)\TQVault\TQVault.exe [2007-03-18] () Task: {10767F79-86BB-4CBE-A00F-FFEEAF2BB163} - System32\Tasks\{66C961E8-5007-4324-903F-35DBDB476678} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] () Task: {14001BFE-1F98-4D9A-A750-6AE835038689} - System32\Tasks\{E285D0AD-6380-4D20-A7E3-50700C93908A} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] () Task: {1CE42E40-BEA3-40D6-B42D-C54E78338C19} - System32\Tasks\{AC8529D0-457C-4858-B446-99E3F2D44A5F} => C:\Program Files\HyperCam 2\HyCam2.exe Task: {1D253A63-D540-4C66-B6C6-563742BC0F6E} - System32\Tasks\{9CA9B3AA-1AD3-4D26-BB36-A9DA9005BE34} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] () Task: {1EDA99EA-7455-4F84-A4AD-D1CC2C972E15} - System32\Tasks\{A67E58E4-AE88-49A7-85A6-7453A92EB2A9} => C:\Program Files (x86)\Drakensang Online\thinclient.exe Task: {228BDEE1-C8C3-4C7F-BEE3-91A0B6F66C2F} - System32\Tasks\{67DA8AEA-6354-42CE-B407-E33C42A282D5} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] () Task: {23B7FBBE-A7D5-4A34-AD46-060CC765D92E} - System32\Tasks\{7FD504B3-841B-408D-8619-E88E190DA8D6} => C:\Program Files (x86)\Divinity II - Ego Draconis\Divinity_II_Patch_1.03_GERMAN.exe Task: {245A5C11-D036-4CE3-A206-3D0087FF869D} - System32\Tasks\{85FDF290-C320-404D-84B8-6779231A31E0} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] () Task: {2521C72D-ACF7-4E0D-9F18-A11B57FE74CC} - System32\Tasks\{68E7106A-FDBD-4F0D-8550-DF8A459AFE69} => C:\Program Files (x86)\ZyDAS Technology Corporation\ZyDAS_802.11g_Utility\ZDWlan.exe Task: {2553768B-2AE4-48DF-A613-C7A4A494EE9C} - System32\Tasks\{9CA5AF8D-3F0F-42C7-BD91-D915420ACFE3} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] () Task: {29C47B50-5DFF-438F-99CB-706D6E748C95} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-01-27] (Google Inc.) Task: {2D359077-ABF9-455A-A2BD-11A8CA7A3FAE} - System32\Tasks\{C9EE2AD4-524E-414F-A50C-DA6B832B5BF8} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] () Task: {32D184EF-A82C-44B6-9E6E-23488E1E6F81} - System32\Tasks\SidebarExecute => C:\Program Files (x86)\Windows Sidebar\sidebar.exe [2010-11-20] (Microsoft Corporation) Task: {336613B4-A4E0-4242-B841-6A7B83C0D918} - System32\Tasks\{472CECA2-D1CA-452A-A9CD-2E5F66E02CBF} => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2014-09-04] (LogMeIn Inc.) Task: {3DF64CDE-D27B-4C6D-BDBE-B77C15AE6721} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-2355925718-3238339638-3018866954-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2012-04-30] (RealNetworks, Inc.) Task: {42D95011-430F-42F0-A494-B45A84D8E644} - System32\Tasks\{897D3095-7A62-409F-BEF5-A770BF0CF4DE} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] () Task: {49C78CDC-889A-45FC-B75C-6600F9966CAB} - System32\Tasks\{79015419-0F92-45C0-8EE4-4E179F736190} => C:\Program Files (x86)\ZyDAS Technology Corporation\ZyDAS_802.11g_Utility\ZDWlan.exe Task: {50806D0A-2107-49B6-A98D-57965254570C} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21] (Adobe Systems Incorporated) Task: {55C47305-75B5-48A0-908E-0D9AF695E449} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Tuneup => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2010-09-18] (Hewlett-Packard Company) Task: {56506F83-9B43-4450-B403-9696BE10DBD9} - System32\Tasks\{0D8E4BFB-4760-4899-941A-A04A53FD3A39} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] () Task: {58C2BEB1-2B7A-4C4C-B1A1-AC302CE23429} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-01-27] (Google Inc.) Task: {5A2C67D9-88D2-4AEC-B074-A4829C40D7C8} - System32\Tasks\{36C8FF93-8BD8-4E30-A5D6-ED25FFEC2812} => C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe [2014-08-10] (TeamSpeak Systems GmbH) Task: {5D92F5D7-5F78-4E3B-AF91-2B41FEE2270B} - System32\Tasks\{4973F1FB-630E-40E2-9C70-88009C1BB43E} => C:\Program Files (x86)\Monte Cristo\Silverfall - Wächter der Elemente - Demo\SilverfallDemo.exe Task: {5DF0F1DF-816A-4B0D-8969-D28DE8BE9CD6} - System32\Tasks\{1E96FC8D-8C2B-460C-9F54-28CBC2884878} => C:\Program Files (x86)\CyberLink\PowerDirector\PDR.exe Task: {71B4D24B-817F-41DE-BE2E-C87686063F41} - System32\Tasks\{500EE935-E46A-4AA0-AD58-8D8A54253987} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] () Task: {74FB1AD8-296D-4FA7-B1F0-D01E746BCD72} - System32\Tasks\Adobe Reader and Acrobat Manager => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21] (Adobe Systems Incorporated) Task: {7537B895-1433-4A0A-B8F3-77C5129BD106} - System32\Tasks\{CC601210-52A7-4E2E-8BE7-E2E5643F0396} => C:\Program Files\HyperCam 2\HyCam2.exe Task: {8A6FC5E8-EF62-41F8-A8A5-3E3757027530} - System32\Tasks\{C58DA0D1-31F7-475E-BE33-B1F7592A93B5} => C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe [2014-08-10] (TeamSpeak Systems GmbH) Task: {8AE13740-957F-4B2B-9781-03E7F8D6C839} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2014-09-21] (Overwolf LTD) Task: {953B319A-52DE-4460-B15C-45ED8C6E5A27} - System32\Tasks\{7BDD7497-A7C0-4293-AC7A-CA49768B3715} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] () Task: {9A3001AE-0F9D-453E-BAFE-78FE333C8D39} - System32\Tasks\RMCreator => C:\Program Files (x86)\Hewlett-Packard\Recovery\Reminder.exe [2010-08-20] (CyberLink) Task: {9EE58FF6-A4F8-4493-89EB-61F5B8006377} - System32\Tasks\{83F7BE8B-3672-4C01-806C-B8D7BADBA939} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] () Task: {9F7A8A39-9A36-4B20-989E-CFCE33B1E8F2} - System32\Tasks\{EDA016A9-6648-481B-BB50-DF45ED33DA31} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] () Task: {9F7CA800-2D8A-4033-A94A-9FC9B217E7A7} - System32\Tasks\{412675ED-C224-4FF8-8571-5445803EC050} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] () Task: {AB2859EC-7065-4D93-AE2D-344A32FF0098} - System32\Tasks\{088F98D3-4398-4748-B038-7915992C069D} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] () Task: {AC239D12-5FF9-4F16-8A55-EBEBEDA89C6D} - System32\Tasks\{AB9E4B60-D7D4-4489-A561-614D85309523} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] () Task: {ADC8DFD5-05B7-48C8-A7CC-B236983A1808} - System32\Tasks\{F779D376-AED6-4FEE-B8E4-143428962663} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] () Task: {B3279C17-9920-4EFF-98BD-52652976909F} - System32\Tasks\{8DB3F366-A097-4A5D-A000-0C16DFFE209E} => C:\Program Files (x86)\JoWooD\SpellForce Demo\SpellForced.exe Task: {B63FF6D1-52A1-44F6-8079-FC59CAC150F7} - System32\Tasks\{19AA9B0E-513F-411F-8A36-5A48E0FDB28B} => C:\Program Files (x86)\ZyDAS Technology Corporation\ZyDAS_802.11g_Utility\ZDWlan.exe Task: {BA15EECA-B7C6-4088-9C2A-6DD3302112CA} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup Task: {BE152DD4-9412-404F-975A-AA8027D5757E} - System32\Tasks\{C14076FC-5996-456C-B87D-9D686938FE02} => C:\Program Files (x86)\Datel\WiFi MAX\WM.EXE Task: {BF2F502A-C412-4289-B7B9-25BBA3E3FE9F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2010-09-18] (Hewlett-Packard Company) Task: {C62C9580-EE55-4935-93AC-F8A8A80A7E06} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-2355925718-3238339638-3018866954-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2012-04-30] (RealNetworks, Inc.) Task: {C9E22DA0-7805-4B28-B265-7F0002E168C2} - System32\Tasks\{FAE212E9-0CA9-4EF9-881B-FB56B5519A36} => C:\Program Files (x86)\TQVault\TQVault.exe [2007-03-18] () Task: {CB364AAC-8A72-4DD4-B732-AA4FB27DADC6} - System32\Tasks\{FD932190-4DCE-4EFB-8275-CCB6841E084C} => C:\Program Files (x86)\CyberLink\PowerDirector\PDR.exe Task: {CD7FF6C1-E9D1-4FA5-9131-A6B5D93F3C3C} - System32\Tasks\{B26BBC9F-AC7C-4953-9FA7-CA011047A7F0} => C:\Program Files (x86)\CyberLink\PowerDirector\PDR.exe Task: {D0E886EE-2AB7-4E36-BEDA-B15643EBDA63} - System32\Tasks\{7A4735AA-26B5-4F00-A23A-E669986102AD} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] () Task: {DC4A8E46-4BBC-43C4-B86A-962F9763E636} - System32\Tasks\{7DD8442C-43A1-46AA-8D56-18DE6AC9AA25} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] () Task: {DC8D724C-1FC6-4E88-BFA8-431DBC63E82E} - System32\Tasks\{F003A125-9256-4022-8C48-DEA75D2EC1F8} => C:\Program Files (x86)\ZyDAS Technology Corporation\ZyDAS_802.11g_Utility\ZDWlan.exe Task: {EB112395-5E92-4203-9283-9439B69C0623} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-09-13] (Adobe Systems Incorporated) Task: {F0265FC3-20B1-4069-B9C3-B431DE2697DA} - System32\Tasks\{17F06A71-0601-42A9-B5DB-F57D4063A6DE} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] () Task: {FDB3A3A8-567C-4150-A17A-4444C631180E} - System32\Tasks\{13F537D5-0AB6-4A55-9307-8A4EF1088C32} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] () Task: {FF4BB84B-A6E2-468C-98C1-4C751C1701FD} - System32\Tasks\Opera scheduled Autoupdate 1387178156 => C:\Program Files (x86)\Opera\launcher.exe [2014-09-12] (Opera Software) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2011-04-07 23:19 - 2012-12-29 10:40 - 00087480 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2013-04-05 20:06 - 2005-03-12 00:07 - 00087040 _____ () C:\Windows\System32\pdfcmnnt.dll 2011-09-22 15:16 - 2011-08-24 03:13 - 00083240 _____ () C:\Program Files (x86)\CyberLink\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe 2012-06-04 12:03 - 2012-02-15 17:05 - 00014848 _____ () C:\Program Files\COMPUTERBILD-Cloud\Data\Tools\mounter.exe 2014-03-19 19:34 - 2014-03-19 19:34 - 00175424 _____ () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\M6 Processing\vm6.exe 2012-04-20 16:30 - 2010-08-19 11:43 - 00247152 ____N () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe 2014-09-17 10:31 - 2014-09-17 10:31 - 01372280 _____ () C:\Program Files (x86)\Opera\24.0.1558.61\opera_crashreporter.exe 2014-03-14 15:15 - 2014-03-14 15:15 - 00173568 _____ () C:\Program Files\TeamSpeak 3 Client\quazip.dll 2014-03-14 15:15 - 2014-03-14 15:15 - 01080832 _____ () C:\Program Files\TeamSpeak 3 Client\platforms\qwindows.dll 2014-03-14 15:15 - 2014-03-14 15:15 - 00833024 _____ () C:\Program Files\TeamSpeak 3 Client\sqldrivers\qsqlite.dll 2013-08-06 09:19 - 2014-08-10 13:36 - 00102344 _____ () C:\Program Files\TeamSpeak 3 Client\soundbackends\directsound_win64.dll 2013-08-06 09:19 - 2014-08-10 13:36 - 00108488 _____ () C:\Program Files\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win64.dll 2014-03-14 15:15 - 2014-03-14 15:15 - 00030208 _____ () C:\Program Files\TeamSpeak 3 Client\imageformats\qgif.dll 2014-03-14 15:15 - 2014-03-14 15:15 - 00233984 _____ () C:\Program Files\TeamSpeak 3 Client\imageformats\qjpeg.dll 2013-08-06 09:19 - 2014-08-10 13:36 - 00563656 _____ () C:\Program Files\TeamSpeak 3 Client\plugins\clientquery_plugin.dll 2013-09-09 15:49 - 2014-08-10 13:36 - 00579016 _____ () C:\Program Files\TeamSpeak 3 Client\plugins\teamspeak_control_plugin.dll 2014-03-14 15:15 - 2014-03-14 15:15 - 00159232 _____ () C:\Program Files\TeamSpeak 3 Client\accessible\qtaccessiblewidgets.dll 2011-09-22 15:16 - 2011-08-26 06:57 - 00260096 _____ () C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\sqlite3.dll 2014-09-25 15:58 - 2014-08-27 15:00 - 00052472 _____ () C:\Users\SPIELE~1.HEI\AppData\Local\Temp\avgnt.exe\Avira.OE.ExtApi.dll 2014-08-27 15:00 - 2014-08-27 15:00 - 00139056 _____ () C:\Program Files (x86)\Avira\My Avira\Avira.OE.NativeCore.dll 2014-09-25 15:59 - 2014-09-25 15:59 - 00043008 _____ () c:\users\spiele~1.hei\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmppu4jdx.dll 2013-08-23 21:01 - 2013-08-23 21:01 - 25100288 _____ () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Dropbox\bin\libcef.dll 2014-08-27 15:00 - 2014-08-27 15:00 - 00066864 _____ () C:\Program Files (x86)\Avira\My Avira\Avira.OE.AvConnectorNative.dll 2014-09-11 03:57 - 2014-09-11 03:57 - 00170496 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\03d9e855a8969bf00dd1bfeafa5d055e\IsdiInterop.ni.dll 2011-01-07 21:20 - 2010-03-04 06:08 - 00058880 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll 2014-09-17 10:31 - 2014-09-17 10:31 - 01378936 _____ () C:\Program Files (x86)\Opera\24.0.1558.61\libglesv2.dll 2014-09-17 10:31 - 2014-09-17 10:31 - 00182392 _____ () C:\Program Files (x86)\Opera\24.0.1558.61\libegl.dll 2014-09-17 10:31 - 2014-09-17 10:31 - 00974968 _____ () C:\Program Files (x86)\Opera\24.0.1558.61\ffmpegsumo.dll 2014-09-13 20:18 - 2014-09-13 20:18 - 16825520 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service" ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: BrStsMon00 => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN MSCONFIG\startupreg: ControlCenter4 => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe /autorun MSCONFIG\startupreg: IndexSearch => "C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe" MSCONFIG\startupreg: PaperPort PTD => "C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe" MSCONFIG\startupreg: PDF5 Registry Controller => C:\Program Files (x86)\Nuance\PDF Viewer Plus\RegistryController.exe MSCONFIG\startupreg: PDFHook => C:\Program Files (x86)\Nuance\PDF Viewer Plus\pdfpro5hook.exe MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun MSCONFIG\startupreg: SmartMenu => C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe /background MSCONFIG\startupreg: TkBellExe => "c:\program files (x86)\real\realplayer\Update\realsched.exe" -osboot ========================= Accounts: ========================== Administrator (S-1-5-21-2355925718-3238339638-3018866954-500 - Disabled - Status: Degraded) Gast (S-1-5-21-2355925718-3238339638-3018866954-501 - Disabled - Status: Degraded) => C:\Users\Gast Heike Harder (S-1-5-21-2355925718-3238339638-3018866954-1001 - Enabled - Status: OK) => C:\Users\Heike Harder HomeGroupUser$ (S-1-5-21-2355925718-3238339638-3018866954-1013 - Enabled - Status: OK) Spieler (S-1-5-21-2355925718-3238339638-3018866954-1007 - Enabled - Status: OK) => C:\Users\Spieler.HeikeHarder-HP UpdatusUser (S-1-5-21-2355925718-3238339638-3018866954-1012 - Enabled - Status: OK) => C:\Users\UpdatusUser ==================== Faulty Device Manager Devices ============= Name: Teredo Tunneling Pseudo-Interface Description: Microsoft-Teredo-Tunneling-Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (09/25/2014 03:58:23 PM) (Source: Adobe Version Cue CS2) (EventID: 3) (User: ) Description: VersionCueCS2Tray.exe: openVCService - OpenService() failed <1060> Error: (09/25/2014 03:54:16 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (09/25/2014 03:30:47 PM) (Source: CVHSVC) (EventID: 100) (User: ) Description: Nur zur Information. (Patch task for {90140011-0066-0407-0000-0000000FF1CE}): DownloadLatest Failed: Error: (09/25/2014 03:18:58 PM) (Source: Adobe Version Cue CS2) (EventID: 3) (User: ) Description: VersionCueCS2Tray.exe: openVCService - OpenService() failed <1060> Error: (09/25/2014 08:20:40 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 2013 Error: (09/25/2014 08:20:40 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 2013 Error: (09/25/2014 08:20:40 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (09/25/2014 08:20:39 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 1014 Error: (09/25/2014 08:20:39 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 1014 Error: (09/25/2014 08:20:39 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second System errors: ============= Error: (09/25/2014 07:21:04 PM) (Source: ipnathlp) (EventID: 31004) (User: ) Description: 0 Error: (09/25/2014 04:22:43 PM) (Source: ipnathlp) (EventID: 30013) (User: ) Description: 192.168.2.100192.168.137.0255.255.255.0 Error: (09/25/2014 04:02:35 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet: %%1069 Error: (09/25/2014 04:02:35 PM) (Source: Service Control Manager) (EventID: 7038) (User: ) Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden: %%1330 Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC). Error: (09/25/2014 04:00:39 PM) (Source: ipnathlp) (EventID: 30013) (User: ) Description: 192.168.2.100192.168.137.0255.255.255.0 Error: (09/25/2014 04:00:39 PM) (Source: ipnathlp) (EventID: 1233) (User: ) Description: Error: (09/25/2014 03:59:02 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Term Tutor Client Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (09/25/2014 03:51:25 PM) (Source: ipnathlp) (EventID: 30013) (User: ) Description: 192.168.2.100192.168.137.0255.255.255.0 Error: (09/25/2014 03:51:17 PM) (Source: ipnathlp) (EventID: 31004) (User: ) Description: 0 Error: (09/25/2014 03:51:15 PM) (Source: ipnathlp) (EventID: 30013) (User: ) Description: 192.168.2.100192.168.137.0255.255.255.0 Microsoft Office Sessions: ========================= Error: (09/25/2014 03:58:23 PM) (Source: Adobe Version Cue CS2) (EventID: 3) (User: ) Description: VersionCueCS2Tray.exeopenVCService - OpenService() failed <1060> Error: (09/25/2014 03:54:16 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\Spieler.HeikeHarder-HP\Downloads\esetsmartinstaller_deu.exe Error: (09/25/2014 03:30:47 PM) (Source: CVHSVC) (EventID: 100) (User: ) Description: (Patch task for {90140011-0066-0407-0000-0000000FF1CE}): DownloadLatest Failed: Error: (09/25/2014 03:18:58 PM) (Source: Adobe Version Cue CS2) (EventID: 3) (User: ) Description: VersionCueCS2Tray.exeopenVCService - OpenService() failed <1060> Error: (09/25/2014 08:20:40 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 2013 Error: (09/25/2014 08:20:40 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 2013 Error: (09/25/2014 08:20:40 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (09/25/2014 08:20:39 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 1014 Error: (09/25/2014 08:20:39 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 1014 Error: (09/25/2014 08:20:39 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second CodeIntegrity Errors: =================================== Date: 2014-05-02 13:07:32.885 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\vrtaucbl.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-05-02 13:07:32.634 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\vrtaucbl.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5 CPU 650 @ 3.20GHz Percentage of memory in use: 33% Total physical RAM: 8055.08 MB Available physical RAM: 5334.19 MB Total Pagefile: 16108.34 MB Available Pagefile: 12657.23 MB Total Virtual: 8192 MB Available Virtual: 8191.84 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:1383.24 GB) (Free:412.61 GB) NTFS Drive d: (HP_RECOVERY) (Fixed) (Total:13.92 GB) (Free:1.72 GB) NTFS ==>[System with boot components (obtained from reading drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 1397.3 GB) (Disk ID: B3DBC71D) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=1383.2 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=13.9 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
25.09.2014, 22:13 | #20 |
/// TB-Ausbilder /// Anleitungs-Guru | Opera Problem. Unsichtbare Internetseite mit nervender Werbung Noch Probleme?
__________________ Gruß deeprybka Lob, Kritik, Wünsche? Spende fürs trojaner-board? _______________________________________________ „Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer |
26.09.2014, 09:50 | #21 |
| Opera Problem. Unsichtbare Internetseite mit nervender Werbung Nein ich bekomme keine Attacken davon mehr Vielen Herzlichen Dank das du mir geholfen hast Sollte ich mal wieder Probleme bekommen, werde ich mich melden. Super Job gemacht und großartige Hilfe Blitzi |
26.09.2014, 19:00 | #22 |
/// TB-Ausbilder /// Anleitungs-Guru | Opera Problem. Unsichtbare Internetseite mit nervender Werbung Hi, Code:
ATTFilter Term Tutor Java(TM) 6 Update 23 Code:
ATTFilter Adobe Flash Player 11 ActiveX Flash-Link mit dem Internet Explorer aufrufen. Flash aktualisieren. Optionale Angebote ablehnen. Cleanup: Alle Logs gepostet? Ja! Dann lade Dir bitte DelFix herunter.
Hinweis: DelFix entfernt u.a. alle verwendeten Programme, die Quarantäne unserer Scanner, den Java-Cache und löscht sich abschließend selbst. Starte Deinen Rechner abschließend neu. Sollten jetzt noch Programme aus unserer Bereinigung übrig sein, kannst Du diese bedenkenlos löschen. >>clean<< Wir haben es geschafft! Die Logs sehen für mich im Moment sauber aus. Wenn Du möchtest, kannst Du hier sagen, ob Du mit mir und meiner Hilfe zufrieden warst...und/oder das Forum mit einer kleinen Spende unterstützen. Es bleibt mir nur noch, Dir unbeschwertes und sicheres Surfen zu wünschen und dass wir uns hier so bald nicht wiedersehen. Wie kann ich mich in Zukunft besser schützen? Tipps, Dos & Don'ts Updates & Software
Sicherheitslücken in deren alten Versionen werden dazu ausgenutzt, um beim einfachen Besuch einer manipulierten Website per "Drive-by" Malware zu installieren. Ich empfehle z.B. die Verwendung von Mozilla Firefox statt des Internet Explorers. Zudem lassen sich mit dem Firefox auch PDF-Dokumente öffnen. Firewall, Antivirus & Co.
Cracks, Downloads & Co. Neben unbemerkten Drive-by Installationen wird Malware aber auch oft mehr oder weniger aktiv vom Benutzer selbst installiert. Der Besuch dubioser Websites kann bereits Risiken bergen. Auch wenn der Virenscanner im Moment darin keine Bedrohung erkennt, muss das nichts bedeuten. Illegale Cracks, Keygens und Serials sind ein ausgesprochen einfacher und beliebter Weg um Malware zu verbreiten. Bei Dateien aus Peer-to-Peer- und Filesharingprogrammen oder von Filehostern kann man nie sicher sein, ob auch wirklich drin ist, was drauf steht. (Trojanisches Pferd^^)
Oft wird auch versucht, den Benutzer mit mehr oder weniger trickreichen Methoden zu verleiten, eine für ihn verhängnisvolle Handlung selbst auszuführen (Überbegriff Social Engineering).
Nervige Adware (Werbung) und unnötige Toolbars werden auch meist durch den Benutzer selbst mitinstalliert.
Abschließend noch ein paar grundsätzliche Bemerkungen:
__________________ Gruß deeprybka Lob, Kritik, Wünsche? Spende fürs trojaner-board? _______________________________________________ „Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer |
Themen zu Opera Problem. Unsichtbare Internetseite mit nervender Werbung |
awesomehp, awesomehp entfernen, beenden, fehlercode 0x40000015, hintergrund, internet, internetseite, mobogenie, mobogenie entfernen, plötzlich, schließe, testversion, this device cannot start. (code10), unsichtbare, werbeblocker, win32/adware.bettersurf.g, win32/clientconnect.a, win32/conduit.searchprotect.i, win32/sweetim.f, win32/sweetim.l, win32/toolbar.babylon.h, win32/toolbar.conduit, win32/toolbar.conduit.b, win64/adware.vitruvian.b, win64/systweak.a |