|
Plagegeister aller Art und deren Bekämpfung: Avast mit 2 FundenWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
05.10.2014, 10:59 | #1 |
| Avast mit 2 Funden Hallo, ich habe gestern einen kompletten Scan mit Avast durchgeführt der 2 infizierte Dateien gefunden hat. Ich habe die Dateien in den Container verschoben. Ich benutze einen Windows 7 Laptop, 32-Bit. Ich kann die Log Datei bei Avast leider nicht finden. Grüße, Bettina |
05.10.2014, 11:13 | #2 |
/// the machine /// TB-Ausbilder | Avast mit 2 Funden hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
05.10.2014, 11:25 | #3 |
| Avast mit 2 Funden Hallo schrauber danke für die schnelle Antwort!
__________________Hier die Datein: FRST Logfile: FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 04-10-2014 01 Ran by max10 (administrator) on LAPTOP2 on 05-10-2014 12:19:53 Running from C:\Users\max10\Downloads Loaded Profiles: max10 & _ocster_backup_ (Available profiles: max10 & _ocster_backup_) Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (REINER SCT) C:\Windows\System32\cjpcsc.exe (MAGIX AG) C:\Program Files\Common Files\MAGIX Services\Database\bin\FABS.exe (Teruten) C:\Windows\System32\FsUsbExService.Exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Nero AG) C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe () C:\Program Files\Ocster Backup\bin\backupService-ox.exe (Protexis Inc.) C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe (Secunia) C:\Program Files\Secunia\PSI\psia.exe (TuneUp Software) C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE (X10) C:\Program Files\Common Files\X10\Common\X10nets.exe () C:\Program Files\Ocster Backup\bin\oxHelper.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE (TuneUp Software) C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesApp32.exe (Wistron) C:\Program Files\Launch Manager\HotkeyApp.exe (Wistron Corp.) C:\Program Files\Launch Manager\OSD.exe (Wistron Corp.) C:\Program Files\Launch Manager\WButton.exe (Wistron Corp.) C:\Program Files\Launch Manager\WisLMSvc.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVBg.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe () C:\Program Files\PC-Zeit\trap.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe () C:\Program Files\Ocster Backup\bin\backupClient-ox.exe (Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\Kies\KiesTrayAgent.exe () C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe () C:\Program Files\Ocster Backup\bin\oxHelper.exe (1&1 Internet AG) C:\Program Files\GMX\GMX SMS-Manager\SMSMngr.exe (Deutsche Telekom AG, T-Com) C:\Program Files\T-Online\T-Online_Software_6\Info-Cockpit\InfoCockpit.exe (OpenLimit SignCubes AG) C:\Program Files\AusweisApp\siqBootLoader.exe (Corel, Inc.) C:\Program Files\Common Files\Corel\Corel PhotoDownloader\Corel Photo Downloader.exe (Secunia) C:\Program Files\Secunia\PSI\psi_tray.exe (Deutsche Telekom AG) C:\Program Files\Telekom\Mediencenter\MediencenterSoftware.exe (Microsoft Corporation) C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE (Nero AG) C:\Program Files\Nero\Update\NASvc.exe (Deutsche Telekom AG) C:\Program Files\T-Online\T-Online_Software_6\Basis-Software\Basis2\kernel.exe (Deutsche Telekom AG) C:\Program Files\T-Online\T-Online_Software_6\Basis-Software\Basis2\sc_watch.exe (Deutsche Telekom AG) C:\Program Files\T-Online\T-Online_Software_6\Basis-Software\Basis2\profilemgr.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\msiexec.exe (Corel) C:\Program Files\Common Files\Corel\Standby\Standby.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [HotkeyApp] => C:\Program Files\Launch Manager\HotkeyApp.exe [200704 2009-12-14] (Wistron) HKLM\...\Run: [LMgrVolOSD] => C:\Program Files\Launch Manager\OSD.exe [348960 2009-12-11] (Wistron Corp.) HKLM\...\Run: [Wbutton] => C:\Program Files\Launch Manager\Wbutton.exe [413696 2010-01-13] (Wistron Corp.) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1594664 2009-12-11] (Synaptics Incorporated) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [8522272 2010-03-02] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RtHDVBg.exe [678432 2010-03-02] (Realtek Semiconductor) HKLM\...\Run: [pczeit] => C:\Program Files\PC-Zeit\trap.exe [32768 2001-03-21] () HKLM\...\Run: [Standby] => C:\Program Files\Common Files\Corel\Standby\Standby.exe [105632 2010-07-26] (Corel) HKLM\...\Run: [Ocster Backup] => C:\Program Files\Ocster Backup\bin\backupClient-ox.exe [310040 2011-08-08] () HKLM\...\Run: [KiesTrayAgent] => C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [311616 2014-07-25] (Samsung Electronics Co., Ltd.) HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [332288 2010-12-17] () HKLM\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [41056 2013-05-08] (Adobe Systems Incorporated) HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-10-04] (AVAST Software) HKU\S-1-5-19\...\Run: [InfoCockpit] => C:\Program Files\T-Online\T-Online_Software_6\Info-Cockpit\IC_START.EXE [268800 2009-11-16] (Deutsche Telekom AG, T-Com) HKU\S-1-5-20\...\Run: [InfoCockpit] => C:\Program Files\T-Online\T-Online_Software_6\Info-Cockpit\IC_START.EXE [268800 2009-11-16] (Deutsche Telekom AG, T-Com) HKU\S-1-5-21-3927600971-491131981-4261967890-1000\...\Run: [InfoCockpit] => C:\Program Files\T-Online\T-Online_Software_6\Info-Cockpit\IC_START.EXE [268800 2009-11-16] (Deutsche Telekom AG, T-Com) HKU\S-1-5-21-3927600971-491131981-4261967890-1000\...\Run: [GMX SMS-Manager] => C:\Program Files\GMX\GMX SMS-Manager\SMSMngr.exe [3539968 2007-07-19] (1&1 Internet AG) HKU\S-1-5-21-3927600971-491131981-4261967890-1000\...\Run: [swg] => C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2010-10-31] (Google Inc.) HKU\S-1-5-21-3927600971-491131981-4261967890-1000\...\Run: [AusweisApp] => C:\Program Files\AusweisApp\siqBootLoader.exe [2514368 2012-01-11] (OpenLimit SignCubes AG) HKU\S-1-5-21-3927600971-491131981-4261967890-1000\...\Run: [] => C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [845120 2014-07-25] (Samsung) HKU\S-1-5-21-3927600971-491131981-4261967890-1000\...\Run: [Corel Photo Downloader] => C:\Program Files\Common Files\Corel\Corel PhotoDownloader\Corel Photo Downloader.exe [526992 2010-07-28] (Corel, Inc.) HKU\S-1-5-21-3927600971-491131981-4261967890-1000\...\MountPoints2: F - F:\AutoRun.exe HKU\S-1-5-21-3927600971-491131981-4261967890-1000\...\MountPoints2: {319bc7b7-2ed2-11e4-a09c-00262df7622c} - F:\AutoRun.exe HKU\S-1-5-21-3927600971-491131981-4261967890-1000\...\MountPoints2: {319bc7bb-2ed2-11e4-a09c-00262df7622c} - F:\AutoRun.exe HKU\S-1-5-21-3927600971-491131981-4261967890-1000\...\MountPoints2: {895a6c54-5624-11df-8daf-00262df7622c} - F:\AutoRun.exe HKU\S-1-5-21-3927600971-491131981-4261967890-1000\...\MountPoints2: {895a6c79-5624-11df-8daf-00262df7622c} - G:\AutoRun.exe HKU\S-1-5-21-3927600971-491131981-4261967890-1000\...\MountPoints2: {f899e4a2-92a6-11df-b7ad-00262df7622c} - F:\AutoRun.exe HKU\S-1-5-21-3927600971-491131981-4261967890-1000\...\MountPoints2: {f899e4a5-92a6-11df-b7ad-00262df7622c} - F:\AutoRun.exe HKU\S-1-5-21-3927600971-491131981-4261967890-1001\...\Run: [msnmsgr] => C:\Program Files\Windows Live\Messenger\msnmsgr.exe [3883840 2009-07-26] (Microsoft Corporation) HKU\S-1-5-21-3927600971-491131981-4261967890-1001\...\Run: [InfoCockpit] => C:\Program Files\T-Online\T-Online_Software_6\Info-Cockpit\IC_START.EXE [268800 2009-11-16] (Deutsche Telekom AG, T-Com) HKU\S-1-5-21-3927600971-491131981-4261967890-1001\...\Run: [GMX SMS-Manager] => C:\Program Files\GMX\GMX SMS-Manager\SMSMngr.exe [3539968 2007-07-19] (1&1 Internet AG) HKU\S-1-5-21-3927600971-491131981-4261967890-1001\...\Run: [Corel Photo Downloader] => C:\Program Files\Common Files\Corel\Corel PhotoDownloader\Corel Photo Downloader.exe [526992 2010-07-28] (Corel, Inc.) HKU\S-1-5-21-3927600971-491131981-4261967890-1001\...\Run: [PC Suite Tray] => "C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray HKU\S-1-5-21-3927600971-491131981-4261967890-1001\...\Run: [swg] => C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2010-10-31] (Google Inc.) HKU\S-1-5-21-3927600971-491131981-4261967890-1001\...\RunOnce: [Screensaver] => C:\Windows\Web\Wallpaper\MEDION\start.vbs [129 2009-10-23] () HKU\S-1-5-21-3927600971-491131981-4261967890-1001\...\MountPoints2: {648b6731-52e8-11df-a742-806e6f6e6963} - E:\.\windows\setup.exe .\windows HKU\S-1-5-21-3927600971-491131981-4261967890-1001\...\MountPoints2: {895a6c54-5624-11df-8daf-00262df7622c} - F:\AutoRun.exe HKU\S-1-5-21-3927600971-491131981-4261967890-1001\...\MountPoints2: {895a6c79-5624-11df-8daf-00262df7622c} - G:\AutoRun.exe HKU\S-1-5-21-3927600971-491131981-4261967890-1001\...\MountPoints2: {f899e4a2-92a6-11df-b7ad-00262df7622c} - F:\AutoRun.exe HKU\S-1-5-21-3927600971-491131981-4261967890-1001\...\MountPoints2: {f899e4a5-92a6-11df-b7ad-00262df7622c} - F:\AutoRun.exe HKU\S-1-5-18\...\Run: [InfoCockpit] => C:\Program Files\T-Online\T-Online_Software_6\Info-Cockpit\IC_START.EXE [268800 2009-11-16] (Deutsche Telekom AG, T-Com) HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [280576 2013-04-06] (Microsoft Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Secunia PSI Tray.lnk ShortcutTarget: Secunia PSI Tray.lnk -> C:\Program Files\Secunia\PSI\psi_tray.exe (Secunia) Startup: C:\Users\max10\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Mediencenter Assistent.lnk ShortcutTarget: Mediencenter Assistent.lnk -> C:\Program Files\Telekom\Mediencenter\MediencenterSoftware.exe (Deutsche Telekom AG) Startup: C:\Users\max10\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk ShortcutTarget: OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk -> C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=AV01 HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://medion.msn.com HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.msn.com/?pc=AV01 HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=AV01 HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01 HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.msn.com/?pc=AV01 SearchScopes: HKLM - DefaultScope {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01 SearchScopes: HKLM - {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01 SearchScopes: HKCU - DefaultScope {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01 SearchScopes: HKCU - {01A42449-8344-4478-AE8C-24B0331B1791} URL = hxxp://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=827316&p={searchTerms} SearchScopes: HKCU - {0B174DB8-997B-415A-BD1C-B4B45B7B9134} URL = hxxp://suche.gmx.net/search/web/?su={searchTerms}&origin=searchplugin SearchScopes: HKCU - {38A5A452-5E62-45E6-959C-FEF8B4FC4666} URL = hxxp://go.gmx.net/br/ie8_search_ebay/?q={searchTerms} SearchScopes: HKCU - {3C8C779A-F937-4E5F-8B68-C9EB8C001FC6} URL = hxxp://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=827316&p={searchTerms} SearchScopes: HKCU - {6134727C-C6D0-4F04-94FE-A4C402814A7A} URL = hxxp://go.gmx.net/br/ie8_search_amazon/?keywords={searchTerms} SearchScopes: HKCU - {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01 SearchScopes: HKCU - {877F60D6-4D1F-4489-9E7C-B44AF6C4A42F} URL = hxxp://go.gmx.net/br/ie8_search_web/?su={searchTerms} SearchScopes: HKCU - {907C8DFD-6938-4698-A1B6-FD5DA56DDC6A} URL = hxxp://search.softonic.com/MOY00009/tb_v1?q={searchTerms}&SearchSource=4&cc=&mi=1cd741d600000000000000ff53f1001b&toi=16046&r=528 SearchScopes: HKCU - {AFBCB7E0-F91A-4951-9F31-58FEE57A25C4} URL = hxxp://nortonsafe.search.ask.com/web?q={SEARCHTERMS}&o=15527&prt=NIS&chn=retail&geo=DE&ver=20&locale=de_DE&tpr=111 SearchScopes: HKCU - {BE6D9C87-F1B9-4A4E-93A7-FE214093C84E} URL = hxxp://www.search.ask.com/web?tpid=FF3-V7&o=APN10977&pf=&p2=%5EB2Z%5Ezzz000%5EYY%5EDE&gct=&itbv=12.7.0.2316&apn_uid=3C1C2FA2-277A-4E59-8904-C6FAB8BBAF52&apn_ptnrs=%5EB2Z&apn_dtid=%5Ezzz000%5EYY%5EDE&apn_dbr=ie_10.0.9200.16736&doi=2013-12-07&trgb=IE&q={searchTerms}&psv= SearchScopes: HKCU - {F7ADD860-1624-40D7-A0DB-C3A31254C283} URL = hxxp://suche.gmx.net/search/web/?su={searchTerms}&origin=searchplugin BHO: GMX Konfiguration -> {17166733-40EA-4432-A85C-AE672FF0E236} -> C:\ProgramData\1und1InternetExplorerAddon\BHOXML.dll (1&1 Mail & Media GmbH) BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO: Windows Live ID-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: AusweisApp 1.7.0.0 -> {C9EE92B7-EDD5-4ad9-8029-2EC6818E653A} -> C:\Program Files\AusweisApp\siqeCardClient.ols (OpenLimit SignCubes AG) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) Toolbar: HKCU - No Name - {C424171E-592A-415A-9EB1-DFD6D95D3530} - No File Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File Toolbar: HKCU - No Name - {4646332D-5637-006A-76A7-7A786E7484D7} - No File DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab DPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} hxxp://trial.trymicrosoftoffice.com/trialoaa/buymsoffice_assets/framework/microsoft/wrc32.ocx DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation) Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\max10\AppData\Roaming\Mozilla\Firefox\Profiles\9mlytnq4.default FF SelectedSearchEngine: Yahoo! FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32.dll () FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin: @microsoft.com/OfficeLive,version=1.3 -> C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin: @microsoft.com/OfficeLive,version=1.4 -> C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin: @microsoft.com/VirtualEarth3D,version=4.0 -> C:\Program Files\Virtual Earth 3D\ () FF Plugin: @microsoft.com/WLPG,version=14.0.8081.0709 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin: @Nero.com/KM -> C:\PROGRA~1\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL (Nero AG) FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF user.js: detected! => C:\Users\max10\AppData\Roaming\Mozilla\Firefox\Profiles\9mlytnq4.default\user.js FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin6.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin7.dll (Apple Inc.) FF SearchPlugin: C:\Users\max10\AppData\Roaming\Mozilla\Firefox\Profiles\9mlytnq4.default\searchplugins\safesearch.xml FF SearchPlugin: C:\Users\max10\AppData\Roaming\Mozilla\Firefox\Profiles\9mlytnq4.default\searchplugins\yahoo_ff.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Firefox Old Version Update Hotfix - C:\Users\max10\AppData\Roaming\Mozilla\Firefox\Profiles\9mlytnq4.default\Extensions\firefox-hotfix@mozilla.org.xpi [2014-07-29] FF Extension: Speed Test Analysis - C:\Users\max10\AppData\Roaming\Mozilla\Firefox\Profiles\9mlytnq4.default\Extensions\speedtestanalysis@SpeedAnalysis.com.xpi [2014-01-18] FF Extension: COMPUTERBILD-Abzockschutz - C:\Users\max10\AppData\Roaming\Mozilla\Firefox\Profiles\9mlytnq4.default\Extensions\{d49175b3-3fd8-43b8-b28e-da5d47f3c398}.xpi [2013-10-13] FF HKLM\...\Firefox\Extensions: [{4F3D26C8-9907-48ff-BC74-B8C572D317BF}] - C:\Program Files\AusweisApp\mozilla\eCardClientExt_FFxx_Win FF Extension: AusweisApp - C:\Program Files\AusweisApp\mozilla\eCardClientExt_FFxx_Win [2012-03-09] FF HKLM\...\Firefox\Extensions: [{4F0963A3-1658-4fde-9585-23A25CC288BF}] - C:\Program Files\AusweisApp\mozilla\eCardClientPIn_FFxx_Win FF Extension: AusweisApp - C:\Program Files\AusweisApp\mozilla\eCardClientPIn_FFxx_Win [2012-03-09] FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-10-04] Chrome: ======= CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\37.0.2062.124\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\37.0.2062.124\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\37.0.2062.124\pdf.dll () CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Java Deployment Toolkit 6.0.180.7) - C:\Program Files\Java\jre6\bin\new_plugin\npdeploytk.dll (Sun Microsystems, Inc.) CHR Plugin: (Java(TM) Platform SE 6 U18) - C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) CHR Plugin: (QuickTime Plug-in 7.5.5) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.5.5) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.5.5) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.5.5) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.5.5) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.5.5) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.5.5) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll (Apple Inc.) CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation) CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~1\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation) CHR Plugin: (Google Earth Plugin) - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google) CHR Plugin: (Picasa) - C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.) CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.135\npGoogleUpdate3.dll No File CHR Plugin: (Microsoft Office Live Plug-in for Firefox) - C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) CHR Plugin: (Windows Live Photo Gallery) - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32.dll () CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll No File CHR CustomProfile: C:\Users\max10\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Docs) - C:\Users\max10\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-03-30] CHR Extension: (Google Drive) - C:\Users\max10\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-03-30] CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\max10\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-09-11] CHR Extension: (YouTube) - C:\Users\max10\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-03-30] CHR Extension: (Google-Suche) - C:\Users\max10\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-03-30] CHR Extension: (avast! Online Security) - C:\Users\max10\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-10-04] CHR Extension: (Google Wallet) - C:\Users\max10\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-28] CHR Extension: (Google Mail) - C:\Users\max10\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-03-30] CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-10-04] ========================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-10-04] (AVAST Software) R2 cjpcsc; C:\Windows\system32\cjpcsc.exe [512944 2012-02-29] (REINER SCT) R2 Fabs; C:\Program Files\Common Files\MAGIX Services\Database\bin\FABS.exe [1155072 2009-02-03] (MAGIX AG) [File not signed] S3 FirebirdServerMAGIXInstance; C:\Program Files\Common Files\MAGIX Services\Database\bin\fbserver.exe [3276800 2008-08-07] (MAGIX®) [File not signed] R2 FsUsbExService; C:\Windows\system32\FsUsbExService.Exe [233472 2013-07-18] (Teruten) [File not signed] R2 NAUpdate; C:\Program Files\Nero\Update\NASvc.exe [786256 2014-07-14] (Nero AG) R2 ocster_backup; c:\Program Files\Ocster Backup\bin\backupService-ox.exe [18200 2011-08-08] () R2 Secunia PSI Agent; C:\Program Files\Secunia\PSI\PSIA.exe [993848 2011-04-19] (Secunia) R2 TuneUp.UtilitiesSvc; C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe [1739576 2013-10-30] (TuneUp Software) R3 WisLMSvc; C:\Program Files\Launch Manager\WisLMSvc.exe [118560 2009-10-22] (Wistron Corp.) R2 x10nets; C:\Program Files\Common Files\X10\Common\X10nets.exe [20480 2009-11-07] (X10) [File not signed] ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R3 Afc; C:\Windows\System32\drivers\Afc.sys [18688 2006-11-10] (Arcsoft, Inc.) R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24184 2014-10-04] () R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [67824 2014-10-04] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [81768 2014-10-04] (AVAST Software) R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49944 2014-10-04] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [779536 2014-10-04] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [414520 2014-10-04] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [71944 2014-10-04] (AVAST Software) R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [192352 2014-10-04] () R1 bizVSerial; C:\Windows\System32\drivers\bizVSerialNT.sys [14949 2007-05-31] (franson.biz) [File not signed] S3 cjusb; C:\Windows\System32\DRIVERS\cjusb.sys [28144 2011-03-29] (REINER SCT) R3 FsUsbExDisk; C:\Windows\system32\FsUsbExDisk.SYS [37344 2013-07-18] () [File not signed] S3 mod7700; C:\Windows\System32\DRIVERS\mod7700.sys [621056 2008-11-08] (DiBcom SA) S3 PSI; C:\Windows\System32\DRIVERS\psi_mf.sys [15544 2010-09-01] (Secunia) R2 SSPORT; C:\Windows\system32\Drivers\SSPORT.sys [5120 2011-03-14] (Samsung Electronics) [File not signed] R3 tap0901; C:\Windows\System32\DRIVERS\tap0901.sys [25984 2009-12-12] (The OpenVPN Project) R3 TuneUpUtilitiesDrv; C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesDriver32.sys [12320 2013-09-18] (TuneUp Software) R3 X10Hid; C:\Windows\System32\Drivers\x10hid.sys [13720 2009-05-13] (X10 Wireless Technology, Inc.) R3 XUIF; C:\Windows\System32\Drivers\x10ufx2.sys [27160 2009-05-13] (X10 Wireless Technology, Inc.) S3 pccsmcfd; system32\DRIVERS\pccsmcfd.sys [X] S3 RtsUIR; system32\DRIVERS\Rts516xIR.sys [X] S3 USBCCID; system32\DRIVERS\RtsUCcid.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-10-05 12:19 - 2014-10-05 12:20 - 00029603 _____ () C:\Users\max10\Downloads\FRST.txt 2014-10-05 12:19 - 2014-10-05 12:19 - 01100800 _____ (Farbar) C:\Users\max10\Downloads\FRST.exe 2014-10-05 12:19 - 2014-10-05 12:19 - 00000000 ____D () C:\FRST 2014-10-05 12:12 - 2014-10-05 12:12 - 00010170 _____ () C:\Windows\DPINST.LOG 2014-10-04 18:54 - 2014-10-04 18:54 - 00002123 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-10-04 18:54 - 2014-10-04 18:54 - 00000000 ____D () C:\Users\max10\AppData\Roaming\AVAST Software 2014-10-04 18:54 - 2014-10-04 18:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast 2014-10-04 18:53 - 2014-10-04 18:54 - 00414520 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys 2014-10-04 18:53 - 2014-10-04 18:53 - 00779536 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2014-10-04 18:53 - 2014-10-04 18:53 - 00276432 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2014-10-04 18:53 - 2014-10-04 18:53 - 00192352 _____ () C:\Windows\system32\Drivers\aswVmm.sys 2014-10-04 18:53 - 2014-10-04 18:53 - 00081768 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2014-10-04 18:53 - 2014-10-04 18:53 - 00071944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys 2014-10-04 18:53 - 2014-10-04 18:53 - 00067824 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2014-10-04 18:53 - 2014-10-04 18:53 - 00049944 _____ () C:\Windows\system32\Drivers\aswRvrt.sys 2014-10-04 18:53 - 2014-10-04 18:53 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-10-04 18:53 - 2014-10-04 18:53 - 00024184 _____ () C:\Windows\system32\Drivers\aswHwid.sys 2014-10-04 18:52 - 2014-10-04 18:52 - 00000000 ____D () C:\Program Files\AVAST Software 2014-10-04 18:46 - 2014-10-04 18:50 - 91906368 _____ (AVAST Software) C:\Users\max10\Downloads\avast_free_antivirus_setup_9_0_2021.exe 2014-10-04 18:35 - 2014-10-04 18:35 - 00011264 ___SH () C:\Users\max10\Thumbs.db 2014-10-04 18:29 - 2014-10-05 11:28 - 00003412 _____ () C:\Windows\PFRO.log 2014-10-04 18:08 - 2014-10-04 18:34 - 00110296 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-10-04 18:07 - 2014-10-04 18:07 - 00001064 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-10-04 18:07 - 2014-10-04 18:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-10-04 18:07 - 2014-10-04 18:07 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 2014-10-04 18:07 - 2014-05-12 07:26 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-10-04 18:07 - 2014-05-12 07:25 - 00074456 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-10-04 18:07 - 2014-05-12 07:25 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-10-04 18:06 - 2014-10-04 18:07 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\max10\Downloads\mbam-setup-2.0.2.1012.exe 2014-10-04 17:58 - 2014-10-05 11:30 - 00000168 _____ () C:\Windows\setupact.log 2014-10-04 17:58 - 2014-10-04 17:58 - 00000000 _____ () C:\Windows\setuperr.log 2014-10-04 16:59 - 2014-10-04 18:52 - 00000000 ____D () C:\ProgramData\AVAST Software 2014-10-04 16:50 - 2014-10-04 16:50 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe 2014-10-02 10:55 - 2014-09-25 03:40 - 00519680 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll 2014-09-28 09:50 - 2014-08-19 19:39 - 00327872 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-09-28 09:50 - 2014-08-19 00:26 - 17455104 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-09-28 09:50 - 2014-08-19 00:08 - 04232704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-09-28 09:50 - 2014-08-18 23:57 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-09-28 09:50 - 2014-08-18 23:57 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-09-28 09:50 - 2014-08-18 23:46 - 00454656 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-09-28 09:50 - 2014-08-18 23:45 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-09-28 09:50 - 2014-08-18 23:44 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-09-28 09:50 - 2014-08-18 23:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-09-28 09:50 - 2014-08-18 23:42 - 02185728 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-09-28 09:50 - 2014-08-18 23:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-09-28 09:50 - 2014-08-18 23:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-09-28 09:50 - 2014-08-18 23:37 - 00440320 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-09-28 09:50 - 2014-08-18 23:36 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-09-28 09:50 - 2014-08-18 23:36 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-09-28 09:50 - 2014-08-18 23:35 - 00597504 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-09-28 09:50 - 2014-08-18 23:30 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-09-28 09:50 - 2014-08-18 23:27 - 00365056 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-09-28 09:50 - 2014-08-18 23:22 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-09-28 09:50 - 2014-08-18 23:19 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-09-28 09:50 - 2014-08-18 23:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-09-28 09:50 - 2014-08-18 23:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-09-28 09:50 - 2014-08-18 23:15 - 11769856 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-09-28 09:50 - 2014-08-18 23:09 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-09-28 09:50 - 2014-08-18 23:08 - 02014208 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-09-28 09:50 - 2014-08-18 23:08 - 00673792 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-09-28 09:50 - 2014-08-18 23:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-09-28 09:50 - 2014-08-18 22:46 - 01812992 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-09-28 09:50 - 2014-08-18 22:38 - 01190400 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-09-28 09:50 - 2014-08-18 22:36 - 00678400 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-09-28 09:49 - 2014-06-27 03:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2014-09-26 17:31 - 2014-09-26 17:31 - 00000000 ____D () C:\Users\max10\Documents\SelfMV 2014-09-26 17:30 - 2014-10-02 18:22 - 00001919 _____ () C:\Users\Public\Desktop\Samsung Kies 3.lnk 2014-09-26 17:29 - 2014-05-07 17:42 - 00144664 _____ (MAPILab Ltd. & Add-in Express Ltd.) C:\Windows\system32\secman.dll 2014-09-26 17:24 - 2014-06-16 08:01 - 00184192 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudmdm.sys 2014-09-26 17:24 - 2014-06-16 08:01 - 00089856 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudbus.sys 2014-09-23 20:40 - 2014-09-09 23:47 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2014-09-17 22:45 - 2014-09-17 22:48 - 00000000 ____D () C:\Users\max10\AppData\Local\Nero 2014-09-17 22:45 - 2014-09-17 22:46 - 00000000 ____D () C:\Users\max10\Documents\NeroVideo 2014-09-17 22:40 - 2014-09-17 22:40 - 00002889 _____ () C:\Users\Public\Desktop\Nero 2015.lnk 2014-09-17 22:28 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2014-09-17 22:27 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2014-09-17 22:26 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2014-09-17 22:25 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2014-09-17 22:24 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2014-09-17 22:23 - 2014-09-17 22:23 - 00000000 ____D () C:\ProgramData\Package Cache 2014-09-17 20:55 - 2014-09-17 21:49 - 970029056 _____ (Nero AG) C:\Users\max10\Downloads\Nero_Video2015-16.0.01200_trial.exe 2014-09-12 21:28 - 2014-08-23 03:46 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-09-12 21:28 - 2014-08-23 02:42 - 02352640 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-09-12 21:28 - 2014-07-07 03:40 - 01059840 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-09-12 21:28 - 2014-07-07 03:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-09-12 21:27 - 2014-09-05 03:52 - 00445952 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-09-12 21:27 - 2014-09-05 03:47 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-09-12 21:27 - 2014-08-01 13:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll 2014-09-12 21:27 - 2014-06-24 04:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-09-12 19:04 - 2014-09-12 19:04 - 00000104 _____ () C:\Users\max10\Downloads\scheduler (2).ics 2014-09-11 14:28 - 2014-05-14 18:23 - 01973728 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2014-09-11 14:28 - 2014-05-14 18:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2014-09-11 14:28 - 2014-05-14 18:23 - 00054240 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2014-09-11 14:28 - 2014-05-14 18:23 - 00045536 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2014-09-11 14:28 - 2014-05-14 18:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2014-09-11 14:28 - 2014-05-14 18:17 - 02425856 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2014-09-11 14:28 - 2014-05-14 18:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2014-09-11 14:26 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2014-09-11 14:26 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2014-09-10 20:50 - 2014-07-01 00:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll 2014-09-10 20:50 - 2014-03-09 23:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll 2014-09-10 20:49 - 2014-06-06 08:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe 2014-09-10 20:49 - 2014-03-09 23:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-10-05 12:20 - 2010-04-29 15:06 - 00001096 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-10-05 11:44 - 2009-07-14 06:34 - 00018704 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-10-05 11:44 - 2009-07-14 06:34 - 00018704 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-10-05 11:40 - 2010-04-28 18:23 - 01199323 _____ () C:\Windows\WindowsUpdate.log 2014-10-05 11:35 - 2012-03-09 21:03 - 00000000 ____D () C:\Users\max10\.ausweisapp 2014-10-05 11:32 - 2010-04-29 15:06 - 00001092 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-10-05 11:30 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-10-04 19:38 - 2011-09-13 19:55 - 00000000 ____D () C:\Program Files\GMX Toolbar 2014-10-04 19:38 - 2011-09-13 19:54 - 00001882 _____ () C:\Users\max10\Desktop\GMX.lnk 2014-10-04 19:38 - 2010-05-01 14:06 - 00001930 _____ () C:\Users\Public\Desktop\Bing Maps 3D.lnk 2014-10-04 18:42 - 2013-05-19 18:22 - 00000000 ____D () C:\ProgramData\Norton 2014-10-04 18:35 - 2010-04-28 18:23 - 00000000 ____D () C:\Users\max10 2014-10-04 18:07 - 2013-12-15 18:08 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-10-04 17:42 - 2011-05-01 15:42 - 00000000 ____D () C:\ProgramData\eBay 2014-10-04 17:41 - 2011-05-01 15:43 - 00001472 _____ () C:\InstallHelper.log 2014-10-04 17:40 - 2010-05-06 17:36 - 00000000 ____D () C:\Program Files\Deutsche Telekom 2014-10-04 17:39 - 2012-01-23 17:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP 2014-10-04 17:39 - 2010-03-02 07:17 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information 2014-10-04 17:38 - 2010-03-02 07:57 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HomeCinema 2014-10-04 17:38 - 2010-03-02 07:57 - 00000000 ____D () C:\Program Files\CyberLink 2014-10-04 17:23 - 2010-03-02 07:57 - 00000000 ____D () C:\ProgramData\CyberLink 2014-10-04 17:20 - 2010-03-02 09:30 - 00000000 ____D () C:\Program Files\ALDI Sued Foto Service 2014-10-04 17:19 - 2010-03-02 09:32 - 00000000 ____D () C:\Program Files\Aldi Sued Fotoservice 2014-10-04 17:19 - 2010-03-02 09:30 - 00000000 ____D () C:\ProgramData\ALDI Sued Foto Service 2014-10-04 17:18 - 2011-08-08 18:12 - 00000000 ____D () C:\Program Files\Nokia 2014-10-04 17:13 - 2011-09-25 17:55 - 00000000 ____D () C:\Program Files\COMPUTERBILD Security Inspector 2014-10-04 17:08 - 2010-12-04 13:02 - 00000000 ____D () C:\Users\max10\Documents\Freekalender2011 2014-10-04 17:05 - 2011-09-25 18:01 - 00000000 ____D () C:\Users\max10\AppData\Local\Abelssoft 2014-10-04 16:50 - 2011-07-23 21:14 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl 2014-10-02 11:47 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET 2014-10-02 11:12 - 2010-05-23 11:52 - 00000000 ____D () C:\Users\max10\Documents\Privat 2014-09-30 17:15 - 2010-04-28 20:50 - 00000000 ____D () C:\Users\max10\Tracing 2014-09-28 10:13 - 2012-01-05 17:30 - 00000021 _____ () C:\Users\max10\AppData\Local\mc.pixel.data 2014-09-28 10:10 - 2009-07-14 06:33 - 00480736 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-09-28 09:49 - 2013-09-21 03:03 - 00000000 ____D () C:\Windows\system32\MRT 2014-09-28 09:49 - 2010-03-02 07:45 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-09-28 09:31 - 2014-05-17 15:15 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-09-28 09:31 - 2010-03-02 08:25 - 98758480 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-09-28 09:31 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\de-DE 2014-09-28 09:26 - 2010-09-27 15:55 - 01594964 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-09-26 17:34 - 2013-01-05 16:57 - 00000000 ____D () C:\Users\max10\Documents\samsung 2014-09-26 17:30 - 2013-01-05 16:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung 2014-09-26 17:30 - 2011-04-08 16:04 - 00000000 ____D () C:\Users\max10\Documents\My PSP Files 2014-09-26 17:30 - 2011-04-08 16:04 - 00000000 ____D () C:\Users\max10\AppData\Local\Corel 2014-09-26 17:30 - 2010-05-09 11:42 - 00004704 ___SH () C:\ProgramData\KGyGaAvL.sys 2014-09-26 17:29 - 2013-01-05 16:58 - 00000000 ____D () C:\Users\max10\AppData\Roaming\Samsung 2014-09-26 17:29 - 2012-06-10 20:50 - 00000000 ____D () C:\Program Files\Samsung 2014-09-26 17:18 - 2013-01-05 16:57 - 00001952 _____ () C:\Users\Public\Desktop\Samsung Kies (Lite).lnk 2014-09-26 17:11 - 2010-04-29 15:10 - 00002125 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-09-26 17:10 - 2013-05-19 18:35 - 00000000 ____D () C:\Users\max10\AppData\Local\CrashDumps 2014-09-17 22:47 - 2011-01-09 20:54 - 00000000 ____D () C:\Users\max10\AppData\Roaming\Nero 2014-09-17 22:45 - 2011-01-09 19:56 - 00000000 ____D () C:\ProgramData\Nero 2014-09-17 22:41 - 2011-01-09 19:56 - 00000000 ____D () C:\Program Files\Common Files\Nero 2014-09-17 22:41 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Cursors 2014-09-17 22:40 - 2011-01-09 19:56 - 00000000 ____D () C:\Program Files\Nero 2014-09-17 22:37 - 2011-01-09 19:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero 2014-09-17 20:50 - 2011-04-08 16:19 - 00017920 _____ () C:\Users\max10\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2014-09-17 20:44 - 2013-12-07 17:52 - 00000000 ____D () C:\Users\max10\Documents\Audiodateien_Konvertiert 2014-09-15 09:06 - 2010-03-02 08:22 - 00231568 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe Some content of TEMP: ==================== C:\Users\max10\AppData\Local\Temp\unwise.exe C:\Users\max10\AppData\Local\Temp\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}_NIS_23517.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\explorer.exe => File is digitally signed C:\Windows\system32\winlogon.exe => File is digitally signed C:\Windows\system32\wininit.exe => File is digitally signed C:\Windows\system32\svchost.exe => File is digitally signed C:\Windows\system32\services.exe => File is digitally signed C:\Windows\system32\User32.dll => File is digitally signed C:\Windows\system32\userinit.exe => File is digitally signed C:\Windows\system32\rpcss.dll => File is digitally signed C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-05-03 17:53 ==================== End Of Log ============================ --- --- --- --- --- --- Additional: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x86) Version: 04-10-2014 01 Ran by max10 at 2014-10-05 12:21:16 Running from C:\Users\max10\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) "Nero SoundTrax Help (Version: 4.0.11.0 - Nero AG) Hidden 7-Zip 9.20 (HKLM\...\7-Zip) (Version: - ) Adobe AIR (HKLM\...\Adobe AIR) (Version: 3.2.0.2070 - Adobe Systems Incorporated) Adobe AIR (Version: 3.2.0.2070 - Adobe Systems Incorporated) Hidden Adobe Flash Player 10 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 10.0.42.34 - Adobe Systems Incorporated) Adobe Flash Player 15 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 15.0.0.167 - Adobe Systems Incorporated) Adobe Reader 9.5.5 - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-A95000000001}) (Version: 9.5.5 - Adobe Systems Incorporated) Advertising Center (Version: 0.0.0.1 - Nero AG) Hidden Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 1.0.0.23 - Atheros Communications Inc.) AusweisApp (HKLM\...\{62ED340C-678A-4841-8BD5-641410122538}) (Version: 1.7.0 - OpenLimit SignCubes AG) avast! Free Antivirus (HKLM\...\Avast) (Version: 9.0.2021 - AVAST Software) Bayern 3D (HKLM\...\Bayern 3D) (Version: - ) Bing Maps 3D (HKLM\...\{2D87E961-577B-492B-AD54-1368680FB9A7}) (Version: 4.0.903.16005 - Microsoft Corporation) CCleaner (HKLM\...\CCleaner) (Version: 3.10 - Piriform) Cisco EAP-FAST Module (HKLM\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.) Common Desktop Agent (Version: 1.53.0 - OEM) Hidden Compatibility Pack für 2007 Office System (HKLM\...\{90120000-0020-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) ContentHD (Version: 1.00.0002 - Corel Corporation) Hidden Contents (Version: 1.6.1.240 - Corel Corporation) Hidden Corel PaintShop Photo Pro X3 (HKLM\...\_{DEAEB5DB-04FA-489D-94EF-8600898B93EE}) (Version: 1.6.1.241 - Corel Corporation) Corel PaintShop Photo Pro X3 (Version: 1.00.0000 - Corel Corporation) Hidden Corel PaintShop Photo Project Creator (HKLM\...\_{DFAEB5DB-04FA-489D-94EF-8600898B93EE}) (Version: 1.6.1.240 - Corel Corporation) CorelDRAW Essentials 4 - Content (Version: 4.0 - Corel Corporation) Hidden CorelDRAW Essentials 4 - Draw (Version: 4.0 - Corel Corporation) Hidden CorelDRAW Essentials 4 - Filters (Version: 4.0 - Corel Corporation) Hidden CorelDRAW Essentials 4 - ICA (Version: 4.0 - Corel Corporation) Hidden CorelDRAW Essentials 4 - IPM - No VBA (Version: 4.0 - Corel Corporation) Hidden CorelDRAW Essentials 4 - Lang BR (Version: 4.0 - Corel Corporation) Hidden CorelDRAW Essentials 4 - Lang DE (Version: 4.0 - Corel Corporation) Hidden CorelDRAW Essentials 4 - Lang EN (Version: 4.0 - Corel Corporation) Hidden CorelDRAW Essentials 4 - Lang ES (Version: 4.0 - Corel Corporation) Hidden CorelDRAW Essentials 4 - Lang FR (Version: 4.0 - Corel Corporation) Hidden CorelDRAW Essentials 4 - Lang IT (Version: 4.0 - Corel Corporation) Hidden CorelDRAW Essentials 4 - Lang NL (Version: 4.0 - Uw bedrijfsnaam) Hidden CorelDRAW Essentials 4 - PHOTO-PAINT (Version: 4.0 - Corel Corporation) Hidden CorelDRAW Essentials 4 - Windows Shell Extension (HKLM\...\_{CF0ADC18-6D8F-4353-8EAA-DF45456B7853}) (Version: - Corel Corporation) CorelDRAW Essentials 4 - Windows Shell Extension (Version: 1.1 - Corel Corporation) Hidden CorelDRAW Essentials 4 (HKLM\...\_{C0237AA4-1BFB-46EA-860D-7B0EB365CA13}) (Version: - Corel Corporation) CorelDRAW Essentials 4 (Version: 4.0 - Corel Corporation) Hidden cyberJack Base Components (HKLM\...\{FC338210-F594-11D3-BA24-00001C3AB4DF}) (Version: 6.10.0 - REINER SCT) Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{650DE870-ECA3-4E63-8D77-778512BE5D4C}) (Version: - Microsoft) DeviceIO (Version: 1.6.1.240 - Corel Corporation) Hidden DHTML Editing Component (HKLM\...\{2EA870FA-585F-4187-903D-CB9FFD21E2E0}) (Version: 6.02.0001 - Microsoft Corporation) DolbyFiles (Version: 2.0 - Nero AG) Hidden Firebird SQL Server - MAGIX Edition (HKLM\...\{3E6F0CAD-EE38-42A5-9EEA-AE17A55BF2D4}) (Version: 2.1.23.0 - MAGIX AG) FormatFactory 3.1.1 (HKLM\...\FormatFactory) (Version: 3.1.1 - Free Time) GMX Internet Explorer Addon (HKLM\...\1&1 Mail & Media GmbH 1und1InternetExplorerAddon) (Version: 1.0.1.0 - 1&1 Mail & Media GmbH) GMX SMS-Manager (HKLM\...\com.unitedinternet.ums.sms-mms-manager) (Version: 3.3 - 1 und 1 Internet AG) GMX SMS-Manager (HKLM\...\GMX SMS-Manager) (Version: - ) GMX SMS-Manager (Version: 3.3 - 1 und 1 Internet AG) Hidden GMX Softwareaktualisierung (HKLM\...\1&1 Mail & Media GmbH 1und1Softwareaktualisierung) (Version: 2.0.1.5 - 1&1 Mail & Media GmbH) Google Chrome (HKLM\...\Google Chrome) (Version: 37.0.2062.124 - Google Inc.) Google Earth (HKLM\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google) Google Toolbar for Internet Explorer (HKLM\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.5111.1712 - Google Inc.) Google Toolbar for Internet Explorer (Version: 1.0.0 - Google Inc.) Hidden Google Update Helper (Version: 1.3.24.15 - Google Inc.) Hidden HP Deskjet 1000 J110 series - Grundlegende Software für das Gerät (HKLM\...\{0A2063BC-CE17-420A-A629-D9D7AE6EC136}) (Version: 22.50.231.0 - Hewlett-Packard Co.) HP Deskjet 1000 J110 series Hilfe (HKLM\...\{DDDFCC77-7F9C-45E9-B38E-721BA599BA0C}) (Version: 140.0.65.65 - Hewlett Packard) HP Update (HKLM\...\{B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE}) (Version: 5.002.006.003 - Hewlett-Packard) ICA (Version: 1.6.1.240 - Corel Corporation) Hidden ICA (Version: 1.6.1.241 - Corel Corporation) Hidden ImagXpress (Version: 7.0.74.0 - Nero AG) Hidden Intel(R) Graphics Media Accelerator Driver (HKLM\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2092 - Intel Corporation) Intel(R) Management Engine Components (HKLM\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.0.0.1179 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 9.5.0.1037 - Intel Corporation) Intel(R) TV Wizard (HKLM\...\TVWiz) (Version: - Intel Corporation) IPM_PSP_CL (Version: 1.00.0000 - Your Company Name) Hidden IPM_PSP_COM (Version: 1.00.0000 - Your Company Name) Hidden IPM_PSP_PRJ (Version: 1.00.0000 - Your Company Name) Hidden IrfanView (remove only) (HKLM\...\IrfanView) (Version: 4.27 - Irfan Skiljan) Java Auto Updater (Version: 2.0.1.2 - Sun Microsystems, Inc.) Hidden Java(TM) 6 Update 18 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83216018FF}) (Version: 6.0.180 - Sun Microsystems, Inc.) Junk Mail filter update (Version: 14.0.8089.726 - Microsoft Corporation) Hidden Launch Manager V1.5.0.8 (HKLM\...\{D0846526-66DD-4DC9-A02C-98F9A2806812}) (Version: 1.5.0.8 - Wistron Corp.) Letstrade (HKLM\...\{E0091C29-DEE8-4B24-BF65-8C35B5940D77}) (Version: 1.00.0001 - Buhl Data Service GmbH) Malwarebytes Anti-Malware Version 2.0.2.1012 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation) Mediencenter Assistent (HKLM\...\Mediencenter Software) (Version: 2.7.0.1451 - Telekom) MEDION Fotos auf CD & DVD SE Sued (HKLM\...\MEDION Fotos auf CD & DVD SE Sued D) (Version: 8.0.3.4 - MAGIX AG) Medion Home Cinema (HKLM\...\InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}) (Version: 8.0.1318 - CyberLink Corp.) Medion Home Cinema (Version: 8.0.1318 - CyberLink Corp.) Hidden Menu Templates - Starter Kit (Version: 9.0.4.0 - Nero AG) Hidden Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6012.5000 - Microsoft Corporation) Hidden Microsoft Choice Guard (Version: 2.0.48.0 - Microsoft Corporation) Hidden Microsoft Office Access MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Excel MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Home and Student 2010 (HKLM\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Office Live Add-in 1.4 (HKLM\...\{AE3CF174-872C-46C6-B9F6-C0593F3BC7B8}) (Version: 2.0.3008.0 - Microsoft Corporation) Microsoft Office OneNote MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint Viewer 2007 (German) (HKLM\...\{95120000-00AF-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Professional Edition 2003 (HKLM\...\{90110407-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation) Microsoft Office Proof (English) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (French) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Italian) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proofing (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Publisher MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Single Image 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Suite Activation Assistant (HKLM\...\{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}) (Version: 2.9 - Microsoft Corporation) Microsoft Office Word MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [DEU] (HKLM\...\{BAC80EF3-E106-4AEA-8C57-F217F9BC7358}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Sync Framework Runtime Native v1.0 (x86) (HKLM\...\{8A74E887-8F0F-4017-AF53-CBA42211AAA5}) (Version: 1.0.1215.0 - Microsoft Corporation) Microsoft Sync Framework Services Native v1.0 (x86) (HKLM\...\{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}) (Version: 1.0.1215.0 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM\...\{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual J# 2.0 Redistributable Package - SE (HKLM\...\Microsoft Visual J# 2.0 Redistributable Package - SE) (Version: - Microsoft Corporation) Microsoft Visual J# 2.0 Redistributable Package - SE (Version: 2.0.50728 - Microsoft Corporation) Hidden Microsoft WSE 3.0 Runtime (HKLM\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.) MLE (Version: 1.0.0.23 - Corel Corporation) Hidden Movie Templates - Starter Kit (Version: 9.0.4.0 - Nero AG) Hidden Mozilla Firefox 26.0 (x86 de) (HKLM\...\Mozilla Firefox 26.0 (x86 de)) (Version: 26.0 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 26.0 - Mozilla) MSVC90_x86 (Version: 1.0.1.2 - Nokia) Hidden MSVCRT (Version: 14.0.1468.721 - Microsoft) Hidden MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MyFreeCodec (HKCU\...\MyFreeCodec) (Version: - ) Nero 9 (HKLM\...\{d35311bd-2643-4f3e-95f3-f058ab77162b}) (Version: - Nero AG) Nero Abstract Themes (Version: 16.0.10002 - Nero AG) Hidden Nero Audio Pack 1 (Version: 11.0.11500.110.0 - Nero AG) Hidden Nero Blu-ray Player (Version: 12.1.20081 - Nero AG) Hidden Nero BurningROM (Version: 9.0.0.0 - Nero AG) Hidden Nero BurnRights (Version: 2.99.6.100 - Nero AG) Hidden Nero Cliparts (Version: 16.0.10002 - Nero AG) Hidden Nero ControlCenter (Version: 11.2.0008 - Nero AG) Hidden Nero ControlCenter (Version: 9.0.0.1 - Nero AG) Hidden Nero Core Components (Version: 11.4.0012 - Nero AG) Hidden Nero CoverDesigner (Version: 4.0.3.100 - Nero AG) Hidden Nero CoverDesigner Help (Version: 4.0.0.0 - Nero AG) Hidden Nero Disc Copy Gadget (Version: 1.53.0.0 - Nero AG) Hidden Nero Disc Copy Gadget Help (Version: 2.0.0.0 - Nero AG) Hidden Nero Disc Menus 1 (Version: 16.0.10002 - Nero AG) Hidden Nero Disc Menus 2 (Version: 16.0.10002 - Nero AG) Hidden Nero Disc Menus 3 (Version: 16.0.10002 - Nero AG) Hidden Nero Disc Menus Basic (Version: 16.0.10002 - Nero AG) Hidden Nero DiscSpeed (Version: 4.99.5.105 - Nero AG) Hidden Nero DriveSpeed (Version: 3.99.5.105 - Nero AG) Hidden Nero Effects Basic (Version: 16.0.10002 - Nero AG) Hidden Nero Express (Version: 9.0.0.0 - Nero AG) Hidden Nero Family and Events Themes (Version: 16.0.10002 - Nero AG) Hidden Nero Football (Soccer) Themes (Version: 16.0.10002 - Nero AG) Hidden Nero Holiday and Sports Themes (Version: 16.0.10002 - Nero AG) Hidden Nero Image Samples (Version: 16.0.10002 - Nero AG) Hidden Nero Info (HKLM\...\{B791E0AB-87A9-41A4-8D98-D13C2E37D928}) (Version: 16.0.1003 - Nero AG) Nero InfoTool (Version: 5.99.5.105 - Nero AG) Hidden Nero Installer (Version: 2.0.0.1 - Nero AG) Hidden Nero Kwik Themes Basic (Version: 16.0.10002 - Nero AG) Hidden Nero Launcher (Version: 16.0.8000 - Nero AG) Hidden Nero Live (Version: 1.0.160.0 - Nero AG) Hidden Nero Live Help (Version: 1.0.160.0 - Nero AG) Hidden Nero MediaHome (Version: 1.26.5300 - Nero AG) Hidden Nero PhotoSnap (Version: 1.53.2.0 - Nero AG) Hidden Nero PhotoSnap Help (Version: 1.53.2.0 - Nero AG) Hidden Nero PiP Effects 1 (Version: 16.0.10002 - Nero AG) Hidden Nero PiP Effects Basic (Version: 16.0.10002 - Nero AG) Hidden Nero Platinum Effects 12 (Version: 16.0.10002 - Nero AG) Hidden Nero Recode (Version: 3.53.0.0 - Nero AG) Hidden Nero Recode Help (Version: 3.53.0.0 - Nero AG) Hidden Nero Rescue Agent (Version: 1.99.0.1 - Nero AG) Hidden Nero RescueAgent Help (Version: 1.99.0.1 - Nero AG) Hidden Nero Retro Film Themes (Version: 16.0.10002 - Nero AG) Hidden Nero SharedVideoCodecs (Version: 1.0.16006 - Nero AG) Hidden Nero ShowTime (Version: 4.99.0.0 - Nero AG) Hidden Nero StartSmart (Version: 9.0.6.100 - Nero AG) Hidden Nero StartSmart Help (Version: 9.0.0.0 - Nero AG) Hidden Nero Update (Version: 11.0.13600.45.0 - Nero AG) Hidden Nero Video (Version: 16.0.4000 - Nero AG) Hidden Nero Video 2015 (HKLM\...\{CEF3C4E5-65FA-44C9-A592-CF0FB6C0CC5C}) (Version: 16.0.01200 - Nero AG) Nero Video Samples (Version: 16.0.10002 - Nero AG) Hidden Nero Video Transitions 1 (Version: 16.0.10002 - Nero AG) Hidden Nero Vision (Version: 6.0.0.100 - Nero AG) Hidden Nero Vision (Version: 6.0.3.100 - Nero AG) Hidden Nero WaveEditor (Version: 5.0.10.0 - Nero AG) Hidden Nero WaveEditor Help (Version: 5.0.10.0 - Nero AG) Hidden NeroBurningROM (Version: 9.0.6.100 - Nero AG) Hidden NeroExpress (Version: 9.0.6.100 - Nero AG) Hidden neroxml (Version: 1.0.0 - Nero AG) Hidden NewSign AM03127or03128 (HKLM\...\NewSign AM03127or03128) (Version: - ) n-tv plus (HKLM\...\{4AB3F9D4-0020-4A93-A7EB-C931C09ABD29}) (Version: 7.3.3.0 - n-tv Nachrichtenfernsehen GmbH) Ocster Backup Pro (HKLM\...\Ocster Backup) (Version: 6.21 - Ocster GmbH & Co. KG) OGA Notifier 2.0.0048.0 (Version: 2.0.0048.0 - Microsoft Corporation) Hidden Paint.NET v3.5.5 (HKLM\...\{F0E2B312-D7FD-4349-A9B6-E90B36DB1BD0}) (Version: 3.55.0 - dotPDN LLC) PC-Zeit 2.01 (HKLM\...\PC-Zeit) (Version: 2.01 - BAxBEx Software) PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.2.0 - Frank Heindörfer, Philip Chinery) Picasa 3 (HKLM\...\Picasa 3) (Version: 3.9 - Google, Inc.) PlayReady PC Runtime x86 (HKLM\...\{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}) (Version: 1.3.0 - Microsoft Corporation) Prerequisite installer (Version: 16.0.0000 - Nero AG) Hidden PSPH10Pro (Version: 1.00.0000 - Corel Corporation) Hidden PSPPContent (Version: 1.00.0000 - Corel Corporation) Hidden PSPPRO_DCRAW (Version: 13.0.0 - Corel Corporation) Hidden PureHD (Version: 1.6.1.240 - Corel Corporation) Hidden QuickTime (HKLM\...\{8DC42D05-680B-41B0-8878-6C14D24602DB}) (Version: 7.55.90.70 - Apple Inc.) Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6057 - Realtek Semiconductor Corp.) Realtek USB 2.0 Card Reader (HKLM\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.7600.30101 - Realtek Semiconductor Corp.) REALTEK Wireless LAN Driver (HKLM\...\{9D3D8C60-A55F-4fed-B2B9-173F09590E16}) (Version: 1.00.0145 - REALTEK Semiconductor Corp.) Samsung Easy Printer Manager (HKLM\...\Samsung Easy Printer Manager) (Version: 1.02.06.05 - Samsung Electronics Co., Ltd.) Samsung Kies (HKLM\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.5.1.12123_2 - Samsung Electronics Co., Ltd.) Samsung Kies (Version: 2.5.1.12123_2 - Samsung Electronics Co., Ltd.) Hidden Samsung Kies3 (HKLM\...\InstallShield_{88547073-C566-4895-9005-EBE98EA3F7C7}) (Version: 3.2.14083.17 - Samsung Electronics Co., Ltd.) Samsung Kies3 (Version: 3.2.14083.17 - Samsung Electronics Co., Ltd.) Hidden Samsung ML-2160 Series (HKLM\...\Samsung ML-2160 Series) (Version: - Samsung Electronics Co., Ltd.) Samsung Printer Live Update (HKLM\...\Samsung Printer Live Update) (Version: - Samsung Electronics Co., Ltd.) SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.45.0 - SAMSUNG Electronics Co., Ltd.) Secunia PSI (2.0.0.3003) (HKLM\...\Secunia PSI) (Version: - ) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (Version: - Microsoft) Hidden Setup (Version: 1.6.1.240 - Corel Corporation) Hidden Setup (Version: 1.6.1.241 - Corel Corporation) Hidden Share (Version: 1.6.1.240 - Corel Corporation) Hidden SoundTrax (Version: 4.0.11.0 - Nero AG) Hidden STRATO HiDrive (HKLM\...\{3E00C574-B650-401D-A898-4581AAD6CC74}) (Version: 1.0.0 - STRATO AG) Studie zur Verbesserung von HP Deskjet 1000 J110 series Produkten (HKLM\...\{6723E416-88C8-4451-BE53-AEE03DBA4DBA}) (Version: 22.50.231.0 - Hewlett-Packard Co.) Surf & E-Mail-Stick (HKLM\...\Surf & E-Mail-Stick) (Version: 11.301.08.00.35 - Huawei Technologies Co.,Ltd) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 14.0.19.0 - Synaptics Incorporated) T-Online 6.0 (HKLM\...\{B1275E23-717A-4D52-997A-1AD1E24BC7F3}) (Version: - ) T-Online WLAN-Access Finder (HKLM\...\{295C31E5-3F91-498E-9623-DA24D2FA2B6A}) (Version: - ) TuneUp Utilities 2014 (de-DE) (Version: 14.0.1000.169 - TuneUp Software) Hidden TuneUp Utilities 2014 (HKLM\...\TuneUp Utilities) (Version: 14.0.1000.169 - TuneUp Software) TuneUp Utilities 2014 (Version: 14.0.1000.169 - TuneUp Software) Hidden TuneUp Utilities Language Pack (de-DE) (Version: 9.0.6010.8 - TuneUp Software) Hidden Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{B4A38370-2ADB-46B0-A1B0-0C4A2F7DCA31}) (Version: - Microsoft) Update for Microsoft Excel 2010 (KB2889836) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{9179FC17-97A8-4D98-9E09-05720AF5D44E}) (Version: - Microsoft) Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{302A8FE3-EBF5-486C-A431-16A1CD914443}) (Version: - Microsoft) Update for Microsoft InfoPath 2010 (KB2817369) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{4EEA3D3E-989C-4DF4-AB0A-3042C0C12AA3}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DADF7E25-FFA4-4D02-BE84-1DAE62C18516}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{287A1E92-9E41-4BC1-8920-B3D0E9220800}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{9D69691D-823D-4C3E-9B12-563A3F520366}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2687502) 32-Bit Edition (HKLM\...\{90140000-001F-0409-0000-0000000FF1CE}_Office14.SingleImage_{7DE7DF97-82FE-4B3A-AB8D-1621F9CC464A}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{ECFE33A3-B8B7-439A-ADE4-59FBD29EF9B8}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{35698CB7-AAA2-4577-B505-DBFF504AEF23}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{5AA578BB-759C-40FD-9661-A737C0884541}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2825635) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{F1A20C69-9FE5-40FD-9CD5-84EABC2EF64A}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2837581) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{334FB202-28D7-4BA4-8BC9-4FE4AB233EA0}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2837606) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{B0D672F7-883E-4279-8E75-D97A5445AB46}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2878252) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{B0DB9F71-E0F7-4FE6-8925-35B860CAC0C4}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2881028) 32-Bit Edition (HKLM\...\{90140000-001F-0407-0000-0000000FF1CE}_Office14.SingleImage_{EAD7BEF9-B28C-425F-B2C5-538CB27EF013}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2881028) 32-Bit Edition (HKLM\...\{90140000-001F-040C-0000-0000000FF1CE}_Office14.SingleImage_{089DBFD7-8211-43B2-AAAE-5BDD8C23E3A8}) (Version: - Microsoft) Update for Microsoft OneNote 2010 (KB2837595) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{51CCA922-A0CC-47C4-8910-6936D97CAC2E}) (Version: - Microsoft) Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition (HKLM\...\{90140000-001A-0407-0000-0000000FF1CE}_Office14.SingleImage_{A0657506-69DC-44AE-8DC1-58E7C6F5B1C9}) (Version: - Microsoft) Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{2AB483F1-C86E-427A-83B4-23889B03512D}) (Version: - Microsoft) Update for Microsoft PowerPoint 2010 (KB2837579) 32-Bit Edition (HKLM\...\{90140000-0018-0407-0000-0000000FF1CE}_Office14.SingleImage_{40EC8FB1-5202-469D-9232-C28FB1C6FC64}) (Version: - Microsoft) Update for Microsoft PowerPoint 2010 (KB2837579) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{2BA40F82-F3A4-441C-BF1A-ED4C42FF4872}) (Version: - Microsoft) Update for Microsoft Visio 2010 (KB2880526) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{7B29D8B8-6A87-496C-A65E-B935E740448A}) (Version: - Microsoft) Update for Microsoft Visio Viewer 2010 (KB2837587) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{38CF30E4-3348-4BD1-A859-B630C355A56F}) (Version: - Microsoft) Update for Microsoft Word 2010 (KB2880529) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{B9B89E01-5B6B-4F73-BC34-B2C0D8ACB4CD}) (Version: - Microsoft) VIO (Version: 1.6.1.240 - Corel Corporation) Hidden Windows Live Call (Version: 14.0.8064.0206 - Microsoft Corporation) Hidden Windows Live Communications Platform (Version: 14.0.8064.206 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM\...\WinLiveSuite_Wave3) (Version: 14.0.8089.0726 - Microsoft Corporation) Windows Live Essentials (Version: 14.0.8089.726 - Microsoft Corporation) Hidden Windows Live Fotogalerie (Version: 14.0.8081.709 - Microsoft Corporation) Hidden Windows Live ID-Anmelde-Assistent (HKLM\...\{10A44844-4465-456E-8C97-80BDD4F68845}) (Version: 6.500.3146.0 - Microsoft Corporation) Windows Live Mail (Version: 14.0.8089.0726 - Microsoft Corporation) Hidden Windows Live Messenger (Version: 14.0.8089.0726 - Microsoft Corporation) Hidden Windows Live Movie Maker (Version: 14.0.8091.0730 - Microsoft Corporation) Hidden Windows Live Sync (HKLM\...\{76618402-179D-4699-A66B-D351C59436BC}) (Version: 14.0.8089.726 - Microsoft Corporation) Windows Live Writer (Version: 14.0.8089.0726 - Microsoft Corporation) Hidden Windows Live-Uploadtool (HKLM\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation) Windows Media Encoder 9 Series (HKLM\...\Windows Media Encoder 9) (Version: - ) Windows Media Encoder 9 Series (Version: 9.00.2980 - Microsoft Corporation) Hidden X10 Hardware(TM) (HKLM\...\X10Hardware) (Version: - ) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 23-09-2014 18:40:39 Windows Update 26-09-2014 15:28:30 Installed Samsung Kies3 28-09-2014 07:22:51 Windows Update 02-10-2014 16:21:09 Installed Samsung Kies3 04-10-2014 13:49:32 Windows Update 04-10-2014 14:50:47 Windows Update 04-10-2014 15:07:50 Free-Jahreskalender 2011 wird entfernt 04-10-2014 15:08:21 Removed pdfforge Toolbar v9.7. 04-10-2014 15:10:36 Nokia Connectivity Cable Driver wird entfernt 04-10-2014 15:11:27 COMPUTERBILD-Abzockschutz wird entfernt 04-10-2014 15:13:40 COMPUTERBILD Security Inspector wird entfernt 04-10-2014 15:14:12 COMPUTERBILD-PC-Schnellstarter wird entfernt 04-10-2014 15:15:31 Entfernt PhotoImpression 04-10-2014 15:21:33 Konfiguriert PowerDVD 04-10-2014 15:23:38 Konfiguriert LabelPrint 04-10-2014 15:24:49 Konfiguriert YouCam 04-10-2014 15:27:30 Konfiguriert PowerDirector 04-10-2014 15:30:37 Konfiguriert MediaShow 04-10-2014 15:33:45 Konfiguriert PhotoNow 04-10-2014 15:34:49 Konfiguriert Power2Go 04-10-2014 15:36:20 Konfiguriert PowerDVD Copy 04-10-2014 15:37:27 Konfiguriert PowerProducer 04-10-2014 15:40:59 Turbo Lister 2 wurde entfernt. 04-10-2014 15:44:09 Windows Update 04-10-2014 16:52:02 avast! antivirus system restore point 05-10-2014 10:11:04 PC Connectivity Solution wird entfernt ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:04 - 2014-10-04 17:05 - 00000825 ____N C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {01C87EC4-050B-4E9C-9C66-A7D2DB16C85E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2010-04-29] (Google Inc.) Task: {1D27FBBE-5459-4648-93A6-9681A0E130AB} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2010-04-29] (Google Inc.) Task: {4020C619-E45F-4998-9530-9C28BD525FCE} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance => C:\Program Files\TuneUp Utilities 2010\OneClick.exe Task: {41D0C06B-B601-47DB-A533-44AD35B62B60} - System32\Tasks\Adobe Reader and Acrobat Manager => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04] (Adobe Systems Incorporated) Task: {5DE869E9-888B-4B8A-A098-6481EDBC6CF7} - System32\Tasks\{BCD0BCD2-8EF0-4CFA-8668-0D40799CA9F3} => C:\Users\max10\Downloads\avast_free_antivirus_setup_9.0.2021 (1).exe Task: {6136787E-D532-440D-926B-25307504972A} - System32\Tasks\HPCustParticipation HP Deskjet 1000 J110 series => C:\Program Files\HP\HP Deskjet 1000 J110 series\Bin\HPCustPartic.exe [2010-11-16] (Hewlett-Packard Co.) Task: {728C243B-842F-430D-89F3-109CF724279D} - System32\Tasks\Registration 1und1 Task => C:\Program Files\1und1Softwareaktualisierung\cdsupdclient.exe [2011-06-08] (1&1 Mail & Media GmbH) Task: {B028C078-8744-45F9-8E93-583451C39F06} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 => C:\Program Files\TuneUp Utilities 2014\OneClick.exe [2013-10-30] (TuneUp Software) Task: {B5B36376-79ED-4E5F-B042-990B476B6487} - System32\Tasks\{D373ABD3-07BA-4140-B261-BDF3214B63D9} => C:\Users\max10\Downloads\avast_free_antivirus_setup_9.0.2021 (1).exe Task: {B74619E9-705F-48BC-AA4B-2A0663380846} - System32\Tasks\HP-Online-Aktualisierungsprogramm => C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [2010-06-09] (Hewlett-Packard) Task: {C742DECC-C0F2-4897-AC20-32F3F8B5C0D0} - System32\Tasks\Nero\Nero Info => C:\Program Files\Common Files\Nero\Nero Info\NeroInfo.exe [2014-07-21] (Nero AG) Task: {E22E65E3-0512-418A-84D2-13365CBBD080} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-10-04] (AVAST Software) Task: {F4BF60C3-1578-4481-ADF2-28337E0A50E0} - System32\Tasks\1und1 Konfiguration => C:\ProgramData\1und1InternetExplorerAddon\ConfigTask.exe [2011-04-19] (1und1 Mail und Media GmbH) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2014-10-04 18:53 - 2014-10-04 18:53 - 00301152 _____ () C:\Program Files\AVAST Software\Avast\aswProperty.dll 2014-10-04 18:57 - 2014-10-04 18:57 - 02859008 _____ () C:\Program Files\AVAST Software\Avast\defs\14100400\algo.dll 2014-10-05 11:31 - 2014-10-05 11:31 - 02859008 _____ () C:\Program Files\AVAST Software\Avast\defs\14100500\algo.dll 2008-09-08 11:19 - 2008-09-08 11:19 - 00022723 _____ () C:\Windows\System32\cl31cl3.dll 2011-02-13 17:59 - 2001-10-28 17:42 - 00116224 _____ () C:\Windows\System32\pdfcmnnt.dll 2013-02-08 18:18 - 2011-04-25 13:25 - 00024064 _____ () C:\Windows\System32\ssj1mlm.dll 2012-03-09 20:32 - 2007-05-31 08:38 - 00167936 ____N () C:\Windows\system32\SerialXP.dll 2011-08-08 14:35 - 2011-08-08 14:35 - 00018200 _____ () c:\Program Files\Ocster Backup\bin\backupService-ox.exe 2011-08-08 14:35 - 2011-08-08 14:35 - 00072472 _____ () c:\Program Files\Ocster Backup\bin\backupServiceLib.dll 2011-08-08 14:35 - 2011-08-08 14:35 - 05558040 _____ () c:\Program Files\Ocster Backup\bin\backupCore.dll 2011-08-08 14:35 - 2011-08-08 14:35 - 00113432 _____ () c:\Program Files\Ocster Backup\bin\deemon.dll 2011-08-08 14:34 - 2011-08-08 14:34 - 01921304 _____ () c:\Program Files\Ocster Backup\bin\ox.dll 2011-08-08 14:34 - 2011-08-08 14:34 - 00135448 _____ () c:\Program Files\Ocster Backup\bin\netutil.dll 2011-08-08 14:34 - 2011-08-08 14:34 - 00037656 _____ () c:\Program Files\Ocster Backup\bin\lzmaUtil.dll 2011-06-29 16:07 - 2011-06-29 16:07 - 00040960 _____ () c:\Program Files\Ocster Backup\bin\lzma.dll 2011-08-08 14:34 - 2011-08-08 14:34 - 00301336 _____ () c:\Program Files\Ocster Backup\bin\twirl.dll 2011-06-26 01:23 - 2011-06-26 01:23 - 00061952 _____ () c:\Program Files\Ocster Backup\bin\zdll.dll 2011-08-08 14:34 - 2011-08-08 14:34 - 00245016 _____ () c:\Program Files\Ocster Backup\bin\tomb.dll 2011-08-08 14:35 - 2011-08-08 14:35 - 00076568 _____ () c:\Program Files\Ocster Backup\bin\scoolite.dll 2011-06-29 16:06 - 2011-06-29 16:06 - 00438784 _____ () c:\Program Files\Ocster Backup\bin\sqlite.dll 2013-10-30 11:46 - 2013-10-30 11:46 - 00501560 _____ () C:\Program Files\TuneUp Utilities 2014\avgreplibx.dll 2011-06-29 17:04 - 2011-06-29 17:04 - 00030720 _____ () c:\Program Files\Ocster Backup\bin\oxHelper.exe 2001-03-21 03:01 - 2001-03-21 03:01 - 00024576 ____N () C:\Program Files\PC-Zeit\PCZeitH.DLL 2001-03-21 03:01 - 2001-03-21 03:01 - 00032768 ____N () C:\Program Files\PC-Zeit\trap.exe 2011-08-08 14:35 - 2011-08-08 14:35 - 00310040 _____ () C:\Program Files\Ocster Backup\bin\backupClient-ox.exe 2011-08-08 14:35 - 2011-08-08 14:35 - 03109656 _____ () C:\Program Files\Ocster Backup\bin\backupClientLib.dll 2011-08-08 14:35 - 2011-08-08 14:35 - 00262424 _____ () C:\Program Files\Ocster Backup\bin\updateman.dll 2011-08-08 14:34 - 2011-08-08 14:34 - 00301336 _____ () C:\Program Files\Ocster Backup\bin\twirl.dll 2011-06-26 01:23 - 2011-06-26 01:23 - 00061952 _____ () C:\Program Files\Ocster Backup\bin\zdll.dll 2011-08-08 14:34 - 2011-08-08 14:34 - 00245016 _____ () C:\Program Files\Ocster Backup\bin\tomb.dll 2011-08-08 14:34 - 2011-08-08 14:34 - 01921304 _____ () C:\Program Files\Ocster Backup\bin\ox.dll 2011-08-08 14:35 - 2011-08-08 14:35 - 05558040 _____ () C:\Program Files\Ocster Backup\bin\backupCore.dll 2011-08-08 14:35 - 2011-08-08 14:35 - 00113432 _____ () C:\Program Files\Ocster Backup\bin\deemon.dll 2011-08-08 14:34 - 2011-08-08 14:34 - 00135448 _____ () C:\Program Files\Ocster Backup\bin\netutil.dll 2011-08-08 14:34 - 2011-08-08 14:34 - 00037656 _____ () C:\Program Files\Ocster Backup\bin\lzmaUtil.dll 2011-06-29 16:07 - 2011-06-29 16:07 - 00040960 _____ () C:\Program Files\Ocster Backup\bin\lzma.dll 2011-08-08 14:35 - 2011-08-08 14:35 - 00076568 _____ () C:\Program Files\Ocster Backup\bin\scoolite.dll 2011-06-29 16:06 - 2011-06-29 16:06 - 00438784 _____ () C:\Program Files\Ocster Backup\bin\sqlite.dll 2011-08-08 14:35 - 2011-08-08 14:35 - 00104216 _____ () C:\Program Files\Ocster Backup\bin\featback.dll 2010-12-17 19:12 - 2010-12-17 19:12 - 00332288 _____ () C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe 2010-12-17 19:13 - 2010-12-17 19:13 - 00049664 _____ () C:\Program Files\Common Files\Common Desktop Agent\CDASrvPS.dll 2014-10-04 18:53 - 2014-10-04 18:53 - 19329904 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2010-05-06 17:35 - 2009-11-16 11:11 - 00318464 _____ () C:\Program Files\T-Online\T-Online_Software_6\Info-Cockpit\InfoCockpit.SkinManager.dll 2014-09-26 17:11 - 2014-09-23 06:06 - 01098056 _____ () C:\Program Files\Google\Chrome\Application\37.0.2062.124\libglesv2.dll 2014-09-26 17:11 - 2014-09-23 06:06 - 00174408 _____ () C:\Program Files\Google\Chrome\Application\37.0.2062.124\libegl.dll 2014-09-26 17:11 - 2014-09-23 06:07 - 08577864 _____ () C:\Program Files\Google\Chrome\Application\37.0.2062.124\pdf.dll 2014-09-26 17:11 - 2014-09-23 06:07 - 00331592 _____ () C:\Program Files\Google\Chrome\Application\37.0.2062.124\ppGoogleNaClPluginChrome.dll 2014-09-26 17:11 - 2014-09-23 06:06 - 01660232 _____ () C:\Program Files\Google\Chrome\Application\37.0.2062.124\ffmpegsumo.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) ========================= Accounts: ========================== Administrator (S-1-5-21-3927600971-491131981-4261967890-500 - Administrator - Disabled) Gast (S-1-5-21-3927600971-491131981-4261967890-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3927600971-491131981-4261967890-1004 - Limited - Enabled) max10 (S-1-5-21-3927600971-491131981-4261967890-1000 - Administrator - Enabled) => C:\Users\max10 _ocster_backup_ (S-1-5-21-3927600971-491131981-4261967890-1001 - Administrator - Enabled) => C:\Users\_ocster_backup_ ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (10/04/2014 06:52:03 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary umbxhaqg. System Error: Das System kann die angegebene Datei nicht finden. . Error: (10/04/2014 06:52:01 PM) (Source: VSS) (EventID: 8194) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Abfragen nach der Schnittstelle "IVssWriterCallback" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070005, Zugriff verweigert . Die Ursache hierfür ist oft eine falsche Sicherheitseinstellung im Schreib- oder Anfrageprozess. Vorgang: Generatordaten werden gesammelt Kontext: Generatorklassen-ID: {e8132975-6f93-4464-a53e-1050253ae220} Generatorname: System Writer Generatorinstanz-ID: {201cc11c-63cf-4541-ae27-5db15bba7201} Error: (10/04/2014 05:10:02 PM) (Source: MsiInstaller) (EventID: 10005) (User: laptop2) Description: Produkt: Ask Toolbar -- Fehler 25001. Die folgenden Anwendungen sollten geschlossen werden, bevor Sie mit der Deinstallation fortfahren: Internet Explorer Error: (10/04/2014 04:05:22 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: OUTLOOK.EXE, Version: 11.0.8326.0, Zeitstempel: 0x4c1c2372 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18247, Zeitstempel: 0x521ea91c Ausnahmecode: 0xc0000374 Fehleroffset: 0x000c3873 ID des fehlerhaften Prozesses: 0x2584 Startzeit der fehlerhaften Anwendung: 0xOUTLOOK.EXE0 Pfad der fehlerhaften Anwendung: OUTLOOK.EXE1 Pfad des fehlerhaften Moduls: OUTLOOK.EXE2 Berichtskennung: OUTLOOK.EXE3 Error: (10/02/2014 10:45:00 AM) (Source: Application Error) (EventID: 1005) (User: ) Description: Aus einem der folgenden Gründe kann nicht auf die Datei "" zugegriffen werden: Es besteht ein Problem mit der Netzwerkverbindung, dem Datenträger mit der gespeicherten Datei bzw. den auf dem Computer installierten Speichertreibern, oder der Datenträger fehlt. Das Programm Microsoft Office Outlook wurde wegen dieses Fehlers geschlossen. Programm: Microsoft Office Outlook Datei: Der Fehlerwert ist im Abschnitt "Zusätzliche Dateien" aufgelistet. Benutzeraktion 1. Öffnen Sie die Datei erneut. Diese Situation ist eventuell ein temporäres Problem, das selbstständig behoben wird, wenn das Programm erneut ausgeführt wird. 2. Wenn Sie weiterhin nicht auf die Datei zugreifen können und - diese sich im Netzwerk befindet, dann sollte der Netzwerkadministrator überprüfen, dass kein Netzwerkproblem besteht und dass eine Verbindung mit dem Server hergestellt werden kann. - diese sich auf einem Wechseldatenträger, wie z. B. einer Diskette oder einer CD, befindet, überprüfen Sie, ob der Datenträger richtig in den Computer eingelegt ist. 3. Überprüfen und reparieren Sie das Dateisystem, indem Sie CHKDSK ausführen. Klicken Sie dazu im Menü "Start" auf "Ausführen", geben Sie CMD ein, und klicken Sie auf "OK". Geben Sie an der Eingabeaufforderung CHKDSK /F ein, und drücken Sie die EINGABETASTE. 4. Stellen Sie die Datei von einer Sicherungskopie wieder her, wenn das Problem weiterhin besteht. 5. Überprüfen Sie, ob andere Dateien auf demselben Datenträger geöffnet werden können. Falls dies nicht möglich ist, ist der Datenträger eventuell beschädigt. Wenden Sie sich an den Administrator oder den Hersteller der Computerhardware, um weitere Unterstützung zu erhalten, wenn es sich um eine Festplatte handelt. Zusätzliche Daten Fehlerwert: 00000000 Datenträgertyp: 0 Error: (10/02/2014 10:45:00 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: OUTLOOK.EXE, Version: 11.0.8326.0, Zeitstempel: 0x4c1c2372 Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000096 Fehleroffset: 0x0059bfd9 ID des fehlerhaften Prozesses: 0xa68 Startzeit der fehlerhaften Anwendung: 0xOUTLOOK.EXE0 Pfad der fehlerhaften Anwendung: OUTLOOK.EXE1 Pfad des fehlerhaften Moduls: OUTLOOK.EXE2 Berichtskennung: OUTLOOK.EXE3 Error: (09/30/2014 05:18:12 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: OUTLOOK.EXE, Version: 11.0.8326.0, Zeitstempel: 0x4c1c2372 Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x5c6b7e68 ID des fehlerhaften Prozesses: 0x8dc Startzeit der fehlerhaften Anwendung: 0xOUTLOOK.EXE0 Pfad der fehlerhaften Anwendung: OUTLOOK.EXE1 Pfad des fehlerhaften Moduls: OUTLOOK.EXE2 Berichtskennung: OUTLOOK.EXE3 Error: (09/30/2014 04:25:18 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: OUTLOOK.EXE, Version: 11.0.8326.0, Zeitstempel: 0x4c1c2372 Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x005a4349 ID des fehlerhaften Prozesses: 0x20d4 Startzeit der fehlerhaften Anwendung: 0xOUTLOOK.EXE0 Pfad der fehlerhaften Anwendung: OUTLOOK.EXE1 Pfad des fehlerhaften Moduls: OUTLOOK.EXE2 Berichtskennung: OUTLOOK.EXE3 Error: (09/26/2014 05:31:16 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm Corel Paint Shop Pro Photo.exe, Version 13.0.0.1 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 2454 Startzeit: 01cfd99eb55fb2c5 Endzeit: 62 Anwendungspfad: C:\Program Files\Corel\Corel PaintShop Photo Pro\X3\PSPClassic\Corel Paint Shop Pro Photo.exe Berichts-ID: 1fa175fd-4592-11e4-8f63-00262df7622c Error: (09/26/2014 05:10:29 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: Kies.exe, Version: 1.0.0.1521, Zeitstempel: 0x526de865 Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x07e345fe ID des fehlerhaften Prozesses: 0x11d8 Startzeit der fehlerhaften Anwendung: 0xKies.exe0 Pfad der fehlerhaften Anwendung: Kies.exe1 Pfad des fehlerhaften Moduls: Kies.exe2 Berichtskennung: Kies.exe3 System errors: ============= Error: (10/05/2014 11:31:15 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Intel(R) Rapid Storage Technology" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (10/05/2014 11:31:15 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Intel(R) Rapid Storage Technology erreicht. Error: (10/04/2014 05:59:52 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Windows Search" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (10/04/2014 05:59:52 PM) (Source: DCOM) (EventID: 10005) (User: ) Description: 1053WSearch{9E175B6D-F52A-11D8-B9A5-505054503030} Error: (10/04/2014 05:59:50 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Windows Search erreicht. Error: (10/04/2014 04:43:08 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} Error: (09/28/2014 10:18:27 AM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Der Dienst "Windows Update" wurde nicht richtig gestartet. Error: (09/26/2014 07:02:58 PM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Der Dienst "Intel(R) Management & Security Application User Notification Service" wurde nicht richtig gestartet. Error: (09/26/2014 06:57:38 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Norton Internet Security CBE" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (09/26/2014 06:57:38 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Norton Internet Security CBE erreicht. Microsoft Office Sessions: ========================= Error: (10/04/2014 06:52:03 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Details: AddLegacyDriverFiles: Unable to back up image of binary umbxhaqg. System Error: Das System kann die angegebene Datei nicht finden. Error: (10/04/2014 06:52:01 PM) (Source: VSS) (EventID: 8194) (User: ) Description: 0x80070005, Zugriff verweigert Vorgang: Generatordaten werden gesammelt Kontext: Generatorklassen-ID: {e8132975-6f93-4464-a53e-1050253ae220} Generatorname: System Writer Generatorinstanz-ID: {201cc11c-63cf-4541-ae27-5db15bba7201} Error: (10/04/2014 05:10:02 PM) (Source: MsiInstaller) (EventID: 10005) (User: laptop2) Description: Produkt: Ask Toolbar -- Fehler 25001. Die folgenden Anwendungen sollten geschlossen werden, bevor Sie mit der Deinstallation fortfahren: Internet Explorer (NULL)(NULL)(NULL)(NULL)(NULL) Error: (10/04/2014 04:05:22 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: OUTLOOK.EXE11.0.8326.04c1c2372ntdll.dll6.1.7601.18247521ea91cc0000374000c3873258401cfdfd91673d767C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXEC:\Windows\SYSTEM32\ntdll.dll7a7bdf97-4bcf-11e4-9fc0-00262df7622c Error: (10/02/2014 10:45:00 AM) (Source: Application Error) (EventID: 1005) (User: ) Description: Microsoft Office Outlook000000000 Error: (10/02/2014 10:45:00 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: OUTLOOK.EXE11.0.8326.04c1c2372unknown0.0.0.000000000c00000960059bfd9a6801cfde1cc4ac3bfdC:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXEunknown64b54389-4a10-11e4-9fc0-00262df7622c Error: (09/30/2014 05:18:12 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: OUTLOOK.EXE11.0.8326.04c1c2372unknown0.0.0.000000000c00000055c6b7e688dc01cfdcbd31502c07C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXEunknownfd6e04a6-48b4-11e4-9fc0-00262df7622c Error: (09/30/2014 04:25:18 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: OUTLOOK.EXE11.0.8326.04c1c2372unknown0.0.0.000000000c0000005005a434920d401cfdb46a0a4274bC:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXEunknown9a0038fe-48ad-11e4-9fc0-00262df7622c Error: (09/26/2014 05:31:16 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Corel Paint Shop Pro Photo.exe13.0.0.1245401cfd99eb55fb2c562C:\Program Files\Corel\Corel PaintShop Photo Pro\X3\PSPClassic\Corel Paint Shop Pro Photo.exe1fa175fd-4592-11e4-8f63-00262df7622c Error: (09/26/2014 05:10:29 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Kies.exe1.0.0.1521526de865unknown0.0.0.000000000c000000507e345fe11d801cfcea7e2b58520C:\Program Files\Samsung\Kies\Kies.exeunknown3fc0bacb-458f-11e4-8f63-00262df7622c ==================== Memory info =========================== Processor: Intel(R) Core(TM) i3 CPU M 330 @ 2.13GHz Percentage of memory in use: 48% Total physical RAM: 3510.6 MB Available physical RAM: 1809.51 MB Total Pagefile: 7019.49 MB Available Pagefile: 5036.46 MB Total Virtual: 2047.88 MB Available Virtual: 1905.63 MB ==================== Drives ================================ Drive c: (Boot) (Fixed) (Total:424.66 GB) (Free:340.98 GB) NTFS Drive d: (Recover) (Fixed) (Total:40 GB) (Free:20.45 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 465.8 GB) (Disk ID: 50BFC7F2) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=424.7 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=40 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=1 GB) - (Type=12) ==================== End Of Log ============================ |
06.10.2014, 10:56 | #4 |
/// the machine /// TB-Ausbilder | Avast mit 2 Funden Schau mal bitte ob du in Avast nen Log oder ne Anzeige findest wo ich sehe, was gefunden wurde.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Avast mit 2 Funden |
2 infizierte dateien, avast, container, dateien, durchgeführt, fehlercode 0xc0000005, fehlercode 0xc0000096, fehlercode 0xc0000374, funde, gefunde, gestern, infizierte, infizierte dateien, komplette, kompletten, laptop, log, log datei, scan, windows, windows 7 |