|
Plagegeister aller Art und deren Bekämpfung: Programme brechen ab wenn ich Pfeiltasten mehrfach betätigeWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
24.10.2014, 20:35 | #1 |
| Programme brechen ab wenn ich Pfeiltasten mehrfach betätige Wenn ich z.B. einen Text editiere und dafür die Pfeiltasten nutze, um an eine bestimmte Stelle zu gelangen, bricht jedes Programm ab. Besonders auffällig ist das in Firefox. Ist das ein Virus? Was muss ich tun? Mein virenprogramm mcafee findest keine malware. |
24.10.2014, 21:55 | #2 |
/// TB-Ausbilder | Programme brechen ab wenn ich Pfeiltasten mehrfach betätigeMein Name ist Matthias und ich werde dir bei der Bereinigung deines Computers helfen. Bitte beachte folgende Hinweise:
Bitte arbeite alle Schritte in der vorgegebenen Reihefolge nacheinander ab und poste alle Logdateien in CODE-Tags: So funktioniert es: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert deinem Helfer massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu groß für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
Danke für deine Mitarbeit! Wir schauen einfach mal nach, ob Malware auf dem Rechner ist: Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
|
27.10.2014, 10:12 | #3 |
/// TB-Ausbilder | Programme brechen ab wenn ich Pfeiltasten mehrfach betätige Fehlende Rückmeldung
__________________Dieses Thema wurde aus den Abos gelöscht. Somit bekomme ich keine Benachrichtigung über neue Antworten. PM an mich falls Du denoch weiter machen willst. Hinweis: Das Verschwinden der Symptome bedeutet nicht, dass Dein Rechner schon sauber ist. Jeder andere bitte hier klicken und einen eigenen Thread erstellen! |
27.10.2014, 19:57 | #4 |
| Programme brechen ab wenn ich Pfeiltasten mehrfach betätige Sorry war übers Wochenende im Urlaub. Bin weiterhin sehr an Hilfe interessiert. Danke. Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x86) Version: 27-10-2014 01 Ran by Kalle at 2014-10-27 19:52:32 Running from C:\Users\Kalle\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: McAfee Anti-Virus und Anti-Spyware (Enabled - Up to date) {ADA629C7-7F48-5689-624A-3B76997E0892} AS: McAfee Anti-Virus und Anti-Spyware (Enabled - Up to date) {16C7C823-5972-5907-58FA-0004E2F9422F} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: McAfee Firewall (Enabled) {959DA8E2-3527-57D1-4915-924367AD4FE9} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 32 Bit HP CIO Components Installer (Version: 6.1.1 - Hewlett-Packard) Hidden 4500_G510nz_Help (Version: 000.0.439.000 - Hewlett-Packard) Hidden 4500G510nz (Version: 000.0.439.000 - Hewlett-Packard) Hidden 4500G510nz_Software_Min (Version: 000.0.423.000 - Hewlett-Packard) Hidden 7-Zip 9.20 (HKLM\...\7-Zip) (Version: - ) Adobe AIR (HKLM\...\Adobe AIR) (Version: 3.2.0.2070 - Adobe Systems Incorporated) Adobe Flash Player 11 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 11.4.402.287 - Adobe Systems Incorporated) Adobe Flash Player 12 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 12.0.0.44 - Adobe Systems Incorporated) Adobe Photoshop 6.0 (HKLM\...\Adobe Photoshop 6.0) (Version: 6.0 - Adobe Systems, Inc.) Adobe Photoshop Elements 8.0 (HKLM\...\Adobe Photoshop Elements 8.0) (Version: 8.0 - Adobe Systems Incorporated) Adobe Reader X (10.1.12) - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-AA1000000001}) (Version: 10.1.12 - Adobe Systems Incorporated) Adobe Shockwave Player (HKLM\...\Adobe Shockwave Player) (Version: 11 - Adobe Systems, Inc.) Adobe SVG Viewer (HKLM\...\Adobe SVG Viewer) (Version: 1.0 - Adobe Systems, Inc.) Advanced Audio FX Engine (HKLM\...\Advanced Audio FX Engine) (Version: - ) Advanced Video FX Engine (HKLM\...\Advanced Video FX Engine) (Version: - ) Apple Application Support (HKLM\...\{78002155-F025-4070-85B3-7C0453561701}) (Version: 3.0.6 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{C0CC75CD-F5B7-46AD-B016-17C0F5171718}) (Version: 8.0.0.23 - Apple Inc.) Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Benutzerhandbuch (HKLM\...\{5CD29180-A95E-11D3-A4EB-00C04F7BDB2C}) (Version: - ) Bonjour (HKLM\...\{79155F2B-9895-49D7-8612-D92580E0DE5B}) (Version: 3.0.0.10 - Apple Inc.) Broadcom Management Programs (HKLM\...\{C99C0593-3B48-41D9-B42F-6E035B320449}) (Version: 10.15.03 - Broadcom Corporation) Browser 7 der Telekom 31.0.20 (x86 de) (HKLM\...\Browser 7 der Telekom 31.0.20 (x86 de)) (Version: 31.0.20 - Deutsche Telekom AG) Browser 7 Maintenance Service (HKLM\...\Browser7MaintenanceService) (Version: 31.0.20 - Deutsche Telekom AG) Browser Address Error Redirector (HKLM\...\{62230596-37E5-4618-A329-0D21F529A86F}) (Version: 1.00.0000 - Dell) BufferChm (Version: 130.0.331.000 - Hewlett-Packard) Hidden CDDRV_Installer (Version: 4.60 - Logitech) Hidden Conexant HDA D330 MDC V.92 Modem (HKLM\...\CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2C06&SUBSYS_14F1000F) (Version: - ) Dell Handbuch zum Einstieg (HKLM\...\{FD023F61-65E9-465C-B558-7C64EB2B97E6}) (Version: 1.00.0000 - Dell Inc.) Dell Support Center (Support Software) (HKLM\...\{E3BFEE55-39E2-4BE0-B966-89FE583822C1}) (Version: 2.2.09085 - Dell) Dell Touchpad (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 7.1.101.8 - Alps Electric) Dell Webcam Center (HKLM\...\Dell Webcam Center) (Version: - ) Dell Webcam Manager (HKLM\...\Dell Webcam Manager) (Version: - ) Destinations (Version: 130.0.0.0 - Hewlett-Packard) Hidden DeviceDiscovery (Version: 130.0.372.000 - Hewlett-Packard) Hidden devolo dLAN Cockpit (HKLM\...\dlancockpit) (Version: 1.0 - devolo AG) DHTML Editing Component (HKLM\...\{2EA870FA-585F-4187-903D-CB9FFD21E2E0}) (Version: 6.02.0001 - Microsoft Corporation) Digital Line Detect (HKLM\...\{E646DCF0-5A68-11D5-B229-002078017FBF}) (Version: 1.21 - BVRP Software, Inc) dLAN Cockpit (Version: 1.19.07 - devolo AG) Hidden DocMgr (Version: 130.0.000.000 - Ihr Firmenname) Hidden DocProc (Version: 13.0.0.0 - Hewlett-Packard) Hidden ElsterFormular (HKLM\...\ElsterFormular) (Version: 14.1.20130301 - Landesfinanzdirektion Thüringen) Eumex 504PC USB (HKLM\...\{4300EF0D-2041-4179-AFFF-21E01160740F}) (Version: 1.44 - Telekom) Facebook Video Calling 1.2.0.287 (HKLM\...\{B92C5909-1D37-4C51-8397-A28BB28E5DC3}) (Version: 1.2.287 - Skype Limited) Fax (Version: 130.0.418.000 - Hewlett-Packard) Hidden FireJump (HKLM\...\{D85FFE92-BF14-4E9B-BCCD-E5C16069E65F}_is1) (Version: 1.0.2.5 - FireJump.net) Google Gears (HKLM\...\{2FA41EBB-3F5A-35C3-85D6-51EC72A11FBD}) (Version: 0.5.3600 - Google) Google Update Helper (Version: 1.3.25.5 - Google Inc.) Hidden Google Updater (HKLM\...\Google Updater) (Version: 2.4.2432.1652 - Google Inc.) GPBaseService2 (Version: 130.0.371.000 - Hewlett-Packard) Hidden HP Customer Participation Program 13.0 (HKLM\...\HPExtendedCapabilities) (Version: 13.0 - HP) HP Document Manager 2.0 (HKLM\...\HP Document Manager) (Version: 2.0 - HP) HP Imaging Device Functions 13.0 (HKLM\...\HP Imaging Device Functions) (Version: 13.0 - HP) HP Officejet 4500 G510n-z (HKLM\...\{7E0E61CC-1C99-429D-BEA7-C4DD5B898D2A}) (Version: 13.0 - HP) HP Smart Web Printing 4.5 (HKLM\...\HP Smart Web Printing) (Version: 4.5 - HP) HP Solution Center 13.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 13.0 - HP) HP Update (HKLM\...\{7059BDA7-E1DB-442C-B7A1-6144596720A4}) (Version: 4.000.011.006 - Hewlett-Packard) HPProductAssistant (Version: 130.0.371.000 - Hewlett-Packard) Hidden HPSSupply (Version: 130.0.371.000 - Hewlett-Packard) Hidden IBM Lotus Symphony (HKLM\...\{294f69aa-9abb-4211-ace2-cb18379c2742}) (Version: 3.0.10289 - IBM) iCloud (HKLM\...\{79BD66B2-4DAE-4C3B-B08E-DC72E507C163}) (Version: 2.1.3.25 - Apple Inc.) IE7Pro (HKLM\...\IE7Pro) (Version: 2.4.8 - IE7Pro Team) Inkscape 0.48.4 (HKLM\...\Inkscape) (Version: 0.48.4 - ) InterActual Player (HKLM\...\InterActual Player) (Version: - ) Internet Explorer (Version: 9 - Microsoft Corporation) Hidden iTunes (HKLM\...\{F32DC846-4457-40A8-BECA-BCC0E960BC53}) (Version: 11.4.0.18 - Apple Inc.) KhalInstallWrapper (Version: 4.60.122 - Logitech) Hidden Laptop Integrated Webcam Driver (1.04.01.1011) (HKLM\...\Creative OEM002) (Version: - ) Live! Cam Avatar (HKLM\...\{1D5E29AD-39A9-4D0A-A8B6-46A6FCD8C995}) (Version: 1.0 - Creative) Logitech Desktop Messenger (HKLM\...\{900B1197-53F5-4F46-A882-2CFFFE2EEDCB}) (Version: 2.52.18 - Logitech, Inc.) Logitech SetPoint (HKLM\...\{F29B21BD-CAA6-445F-8EF7-A7E2B9D8B14E}) (Version: 4.60 - Logitech) MarketResearch (Version: 130.0.374.000 - Hewlett-Packard) Hidden McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.8.150.1 - McAfee, Inc.) McAfee SecurityCenter (HKLM\...\MSC) (Version: 12.8.988 - McAfee, Inc.) McAfee SiteAdvisor (HKLM\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 3.7.143 - McAfee, Inc.) MediaDirect (HKLM\...\{9C6978E8-B6D0-4AB7-A7A0-D81A74FBF745}) (Version: 4.7 - Dell) Microsoft .NET Framework 1.1 (HKLM\...\Microsoft .NET Framework 1.1 (1033)) (Version: - ) Microsoft .NET Framework 1.1 German Language Pack (HKLM\...\{E78BFA60-5393-4C38-82AB-E8019E464EB4}) (Version: 1.1.4322 - Microsoft) Microsoft .NET Framework 1.1 Security Update (KB2656353) (HKLM\...\M2656353) (Version: - ) Microsoft .NET Framework 1.1 Security Update (KB2656370) (HKLM\...\M2656370) (Version: - ) Microsoft .NET Framework 1.1 Security Update (KB979906) (HKLM\...\M979906) (Version: - ) Microsoft .NET Framework 3.5 Language Pack SP1 - DEU (HKLM\...\Microsoft .NET Framework 3.5 Language Pack SP1 - deu) (Version: - Microsoft Corporation) Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft Office Home and Student 2010 (HKLM\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Office Klick-und-Los 2010 (HKLM\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Works (HKLM\...\{4EA2F95F-A537-4d17-9E7F-6B3FF8D9BBE3}) (Version: 08.05.0822 - Microsoft Corporation) MobileMe Control Panel (HKLM\...\{710BF966-43C8-4216-A8EC-BC4E169FF7C1}) (Version: 3.1.8.0 - Apple Inc.) Modem-Diagnose-Tool (HKLM\...\{F63A3748-B93D-4360-9AD4-B064481A5C7B}) (Version: 1.0.20.0 - Dell) Mozilla Firefox 32.0.3 (x86 de) (HKLM\...\Mozilla Firefox 32.0.3 (x86 de)) (Version: 32.0.3 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 32.0.2 - Mozilla) Mozilla Thunderbird 17.0.7 (x86 de) (HKLM\...\Mozilla Thunderbird 17.0.7 (x86 de)) (Version: 17.0.7 - Mozilla) MSVCRT (Version: 14.0.1468.721 - Microsoft) Hidden MSXML 4.0 SP2 (KB936181) (HKLM\...\{C04E32E0-0416-434D-AFB9-6969D703A9EF}) (Version: 4.20.9848.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB941833) (HKLM\...\{C523D256-313D-4866-B36A-F3DE528246EF}) (Version: 4.20.9849.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MyTomTom 3.2.0.1220 (HKLM\...\MyTomTom) (Version: 3.2.0.1220 - TomTom) NetWaiting (HKLM\...\{3F92ABBB-6BBF-11D5-B229-002078017FBF}) (Version: 2.5.44 - BVRP Software, Inc) Network (Version: 130.0.550.000 - Hewlett-Packard) Hidden NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.3 - NVIDIA Corporation) OpenOffice.org 3.4.1 (HKLM\...\{2303AEEA-0FA8-4AFD-80A9-8F86BA4B44D2}) (Version: 3.41.9593 - Apache Software Foundation) OutlookAddinSetup (HKLM\...\{9BDEF074-020E-458D-ADC5-8FF68E0C9B56}) (Version: 1.0.0 - CyberLink) PDF Architect (HKLM\...\{064A929A-4DE8-40CF-A901-BD40C14E4D25}) (Version: 1.1.83.9982 - pdfforge GmbH) PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.7.0 - pdfforge) Phase 5 HTML-Editor (HKLM\...\{20B1B020-DEAE-48D1-9960-D4C3185D758B}) (Version: 5.6.2.3 - Systemberatung Schommer) QuickSet (HKLM\...\{7F0C4457-8E64-491B-8D7B-991504365D1E}) (Version: 8.0.13 - Dell Inc.) QuickShare (HKLM\...\{F1D49A81-DFD1-4580-B7B3-B5990F64C0EC}) (Version: 1.6.1.696 - Linkury Inc.) <==== ATTENTION QuickTime 7 (HKLM\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.) RealPlayer (HKLM\...\RealPlayer 6.0) (Version: - RealNetworks) Roxio Creator Audio (HKLM\...\{83FFCFC7-88C6-41c6-8752-958A45325C82}) (Version: 3.3.0 - Roxio) Roxio Creator BDAV Plugin (HKLM\...\{880AF49C-34F7-4285-A8AD-8F7A3D1C33DC}) (Version: 3.3.0 - Roxio) Roxio Creator Copy (HKLM\...\{619CDD8A-14B6-43a1-AB6C-0F4EE48CE048}) (Version: 3.3.0 - Roxio) Roxio Creator Data (HKLM\...\{0D397393-9B50-4c52-84D5-77E344289F87}) (Version: 3.3.0 - Roxio) Roxio Creator DE (HKLM\...\{C8B0680B-CDAE-4809-9F91-387B6DE00F7C}) (Version: 3.3.0 - Roxio) Roxio Creator Tools (HKLM\...\{0394CDC8-FABD-4ed8-B104-03393876DFDF}) (Version: 3.3.0 - Roxio) Roxio Express Labeler (HKLM\...\{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}) (Version: 2.1.0 - Roxio) Roxio MyDVD DE (HKLM\...\{D639085F-4B6E-4105-9F37-A0DBB023E2FB}) (Version: 9.0.116 - Roxio, Inc.) Roxio Update Manager (HKLM\...\{30465B6C-B53F-49A1-9EBA-A3F187AD502E}) (Version: 3.0.0 - Roxio) Scan (Version: 13.0.0.0 - Hewlett-Packard) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) Shared C Run-time for x86 (Version: 10.0.0 - McAfee) Hidden Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 13.0 - HP) SLOW-PCfighter (HKLM\...\SLOW-PCfighter) (Version: 1.6.21 - SPAMfighter ApS.) SLOW-PCfighter (Version: 1.6.21 - SPAMfighter ApS) Hidden SmartWebPrinting (Version: 130.0.373.000 - Hewlett-Packard) Hidden SolutionCenter (Version: 130.0.373.000 - Hewlett-Packard) Hidden Sonic Activation Module (Version: 1.0 - Sonic Solutions) Hidden Spelling Dictionaries Support For Adobe Reader 8 (HKLM\...\{AC76BA86-7AD7-5464-3428-800000000003}) (Version: 8.0.0 - Adobe Systems) Status (Version: 130.0.373.000 - Hewlett-Packard) Hidden SweetIM for Messenger 3.7 (HKLM\...\{A0C9DF2B-89B5-4483-8983-18A68200F1B4}) (Version: 3.7.0007 - SweetIM Technologies Ltd.) <==== ATTENTION Sweetpacks Bundle Uninstaller (HKLM\...\Sweetpacks Bundle Uninstaller) (Version: 1.0.0.0 - SweetPacks LTD) <==== ATTENTION TomTom HOME (HKLM\...\{99072AB4-D795-44D5-9D65-E3C9F8322C97}) (Version: 2.9.7 - Ihr Firmenname) TomTom HOME Visual Studio Merge Modules (HKLM\...\{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}) (Version: 1.0.2 - TomTom International B.V.) T-Online 6.0 (HKLM\...\{B1275E23-717A-4D52-997A-1AD1E24BC7F3}) (Version: - ) T-Online eMail Center Desktop-Startsymbole 1.0 (HKLM\...\T-Online eMail Center Desktop-Startsymbole) (Version: 1.0 - Deutsche Telekom AG) T-Online WLAN-Access Finder (HKLM\...\{295C31E5-3F91-498E-9623-DA24D2FA2B6A}) (Version: - ) Toolbox (Version: 130.0.648.000 - Hewlett-Packard) Hidden TrayApp (Version: 130.0.376.000 - Hewlett-Packard) Hidden TuneUp Utilities 2014 (de-DE) (Version: 14.0.1000.340 - TuneUp Software) Hidden TuneUp Utilities 2014 (HKLM\...\TuneUp Utilities) (Version: 14.0.1000.340 - TuneUp Software) TuneUp Utilities 2014 (Version: 14.0.1000.340 - TuneUp Software) Hidden TuneUp Utilities Language Pack (de-DE) (Version: 9.0.4030.5 - TuneUp Software) Hidden Ulead Data-Add 2.0 (HKLM\...\{AD8E6D29-95EC-494E-8AF5-566E784819A6}) (Version: 2.0 - ) Ulead FilmBrennerei 2.5 Suite (HKLM\...\{C7D89BBE-D4B3-49E8-B185-7966B5345866}) (Version: 2.5 - Ulead Systems, Inc.) Videoload Manager 1.0.1514 (HKLM\...\Videoload Manager) (Version: 1.0.1514 - T-Online) Visual Studio C++ 10.0 Runtime (HKLM\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.) VoiceOver Kit (HKLM\...\{6B4AD1A9-E73A-4184-9D6B-072F8A3C5EBA}) (Version: 1.42.128.0 - Apple Inc.) WebReg (Version: 130.0.132.017 - Hewlett-Packard) Hidden WIDCOMM Bluetooth Software 6.0.1.3100 (HKLM\...\{A13E07E1-A423-44FB-9DEE-B24C75C1BAF2}) (Version: 6.0.1.3100 - Dell) Windows Live Anmelde-Assistent (HKLM\...\{52B97218-98CB-4B8B-9283-D213C85E1AA4}) (Version: 5.000.818.5 - Microsoft Corporation) Windows Live Essentials (HKLM\...\WinLiveSuite_Wave3) (Version: 14.0.8089.0726 - Microsoft Corporation) Windows Live-Uploadtool (HKLM\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation) Windows Media Encoder 9-Reihe (HKLM\...\Windows Media Encoder 9) (Version: - ) Windows Media Encoder 9-Reihe (Version: 9.00.3374 - Microsoft Corporation) Hidden Windows Media Player Firefox Plugin (HKLM\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp) WinRAR 5.10 (32-Bit) (HKLM\...\WinRAR archiver) (Version: 5.10.0 - win.rar GmbH) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-2678578687-1867372224-1644441770-1000_Classes\CLSID\{53DEC138-A51E-11D2-861E-00C04FA35C89}\InprocServer32 -> C:\Program Files\IBM\Lotus\Symphony\framework\rcp\eclipse\plugins\com.ibm.rcp.swt.browser.dom.ie_6.2.1.20101013-2236\os\win32\x86\tlogpsdll.dll () CustomCLSID: HKU\S-1-5-21-2678578687-1867372224-1644441770-1000_Classes\CLSID\{c805e21b-9a8e-4499-91db-7b97342ade9f}\localserver32 -> C:\Program Files\IBM\Lotus\Symphony\framework\rcp\eclipse\plugins\com.ibm.rcp.swt.browser.dom.ie_6.2.1.20101013-2236\os\win32\x86\IEOOP.exe (IBM) ==================== Restore Points ========================= 19-10-2014 16:28:05 TuneUp Utilities 2014 wird installiert 19-10-2014 18:13:37 Wiederherstellungspunkt vor Fehlerhafte Patchregistrierungsschlüssel 19-10-2014 18:34:48 Installed Microsoft Fix it 50981 19-10-2014 19:04:04 Windows Update 19-10-2014 20:48:09 Windows Update 20-10-2014 06:22:45 Windows Update 20-10-2014 15:37:35 Windows Update 22-10-2014 08:38:59 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2006-11-02 11:23 - 2006-09-18 22:41 - 00000761 ____N C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ::1 localhost ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {004850D6-F728-4BD2-AF4C-54DEFC42BB75} - \{56E24FF8-4135-427B-9E05-431057398553} No Task File <==== ATTENTION Task: {155723BA-60E2-4354-93AF-84EAC8D3C2D8} - System32\Tasks\Microsoft\Windows\Wireless\GatherWirelessInfo => C:\Windows\system32\gatherWirelessInfo.vbs [2008-01-05] () Task: {2DE18FE4-6467-484F-8431-206702EC5546} - System32\Tasks\Microsoft\Windows\RAC\RACAgent => C:\Windows\system32\RacAgent.exe [2008-01-19] (Microsoft Corporation) Task: {2E5B7D97-F14C-4CFF-864E-620AABA892D1} - System32\Tasks\Microsoft\Windows\Shell\CrawlStartPages Task: {301E1D62-C04E-4361-A6E0-A72974565B7E} - System32\Tasks\Microsoft\Windows\NetworkAccessProtection\NAPStatus UI Task: {4D72741E-769C-45DB-8604-CB8EBDADAA29} - System32\Tasks\Microsoft\Windows\MobilePC\TMM Task: {5167F616-E04A-41E3-B18B-9A00A34E016C} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 => C:\Program Files\TuneUp Utilities 2014\OneClick.exe [2014-07-16] (TuneUp Software) Task: {605D3533-DB2B-478F-B288-3BCA1BDF81E6} - System32\Tasks\Registration Trigger IBM Lotus Symphony Task => C:\Program Files\IBM\Lotus\Symphony\framework\rcp\rcplauncher.exe [2010-10-14] () Task: {654A6766-38A3-4141-A600-29FA4DC996D2} - \SLOW-PCfighter-Kalle-Scheduled No Task File <==== ATTENTION Task: {725D1405-C8E2-4966-99BE-925C22252692} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {76316636-C085-4206-816E-E3CB93B59564} - System32\Tasks\Microsoft\Windows\TabletPC\InputPersonalization => C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe [2008-01-19] (Microsoft Corporation) Task: {93BF262C-8591-4898-AEC4-8240918283AB} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-18] (Google Inc.) Task: {9F7AB2A6-DE18-4465-A123-9B7B552178BF} - System32\Tasks\Microsoft\Windows\Tcpip\WSHReset => C:\Windows\system32\netsh.exe [2006-11-02] (Microsoft Corporation) Task: {A87DC5D7-B657-48EF-8AD2-DC3C47CA3169} - System32\Tasks\GoogleUpdateTaskMachineCore1cf888053f06389 => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-18] (Google Inc.) Task: {AC5075B4-11A9-4273-B3A7-EDD6A61E2F44} - System32\Tasks\Microsoft\Windows Defender\MP Scheduled Signature Update => c:\program files\windows defender\MpCmdRun.exe [2008-01-19] (Microsoft Corporation) Task: {AD9BD689-0A4B-47BB-92DC-10E85D2787CD} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup Task: {B0CD0217-7243-4258-9869-F25D7E08F436} - System32\Tasks\Google Software Updater => C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2012-08-21] (Google) Task: {BF42E2D6-5857-4AE1-998E-D936BF06CE06} - \SLOW-PCfighter-Kalle-Notification No Task File <==== ATTENTION Task: {E8ACA7F8-8360-4B51-9721-EB52D4DE58C8} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance => C:\Program Files\TuneUp Utilities 2010\OneClick.exe Task: {FB3A725B-AFCE-46BC-8688-66892F028716} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-09] (Adobe Systems Incorporated) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\Google Software Updater.job => C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cf888053f06389.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\SLOW-PCfighter-Kalle-Notification.job => C:\Program Files\Fighters\SLOW-PCfighter\Sync.exe Task: C:\Windows\Tasks\SLOW-PCfighter-Kalle-Scheduled.job => C:\Program Files\Fighters\SLOW-PCfighter\SLOW-PCfighter.exe Task: C:\Windows\Tasks\User_Feed_Synchronization-{83313977-7B5F-4391-96D9-BDD7A9EFEE74}.job => C:\Windows\system32\msfeedssync.exe ==================== Loaded Modules (whitelisted) ============= 2010-07-19 19:57 - 2010-07-19 19:57 - 02231616 _____ () C:\Program Files\devolo\dlan\devolonetsvc.exe 2014-07-16 09:24 - 2014-07-16 09:24 - 00585528 _____ () C:\Program Files\TuneUp Utilities 2014\avgreplibx.dll 2007-12-05 21:10 - 2005-07-20 13:34 - 00700497 _____ () C:\Program Files\T-Online\T-Online_Software_6\Notifier\libcurl.dll 2007-12-05 21:10 - 2004-04-16 16:45 - 00143360 _____ () C:\Program Files\T-Online\T-Online_Software_6\Notifier\libexpat.dll 2007-12-05 21:10 - 2014-07-09 07:48 - 00143360 _____ () C:\PROGRAM FILES\T-ONLINE\T-ONLINE_SOFTWARE_6\EMAIL\LIBEXPAT.dll 2008-10-01 16:51 - 2009-02-13 12:44 - 00117264 _____ () c:\Program Files\McAfee\SiteAdvisor\apengine.dll 2008-10-01 16:51 - 2009-02-13 12:44 - 00071696 _____ () c:\Program Files\McAfee\SiteAdvisor\mcfrmwk.dll 2008-10-01 16:51 - 2009-02-13 12:44 - 00207376 _____ () c:\Program Files\McAfee\SiteAdvisor\cntscan.dll 2014-09-24 20:02 - 2014-09-24 20:03 - 03715184 _____ () C:\Program Files\MOZILLA FIREFOX 4.0 BETA 7\mozjs.dll 2014-02-09 17:41 - 2014-02-09 17:41 - 16287624 _____ () C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_44.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\ProgramData\TEMP:05EE1EEF AlternateDataStreams: C:\Users\Kalle\Desktop\madforshirts:Roxio EMC Stream ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Driver" ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Gamma Loader.exe.lnk => C:\Windows\pss\Adobe Gamma Loader.exe.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Gamma Loader.lnk => C:\Windows\pss\Adobe Gamma Loader.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^BTTray.lnk => C:\Windows\pss\BTTray.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^CAPIControl.lnk => C:\Windows\pss\CAPIControl.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Digital Line Detect.lnk => C:\Windows\pss\Digital Line Detect.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk => C:\Windows\pss\HP Digital Imaging Monitor.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Logitech Desktop Messenger.lnk => C:\Windows\pss\Logitech Desktop Messenger.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Logitech SetPoint.lnk => C:\Windows\pss\Logitech SetPoint.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^QuickSet.lnk => C:\Windows\pss\QuickSet.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^web'n'walk Manager.lnk => C:\Windows\pss\web'n'walk Manager.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^WinZip Quick Pick.lnk => C:\Windows\pss\WinZip Quick Pick.lnk.CommonStartup MSCONFIG\startupfolder: C:^Users^Kalle^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^FIFA 11-Registrierung.lnk => C:\Windows\pss\FIFA 11-Registrierung.lnk.Startup MSCONFIG\startupfolder: C:^Users^Kalle^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.4.1.lnk => C:\Windows\pss\OpenOffice.org 3.4.1.lnk.Startup MSCONFIG\startupreg: Adobe ARM => "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: Adobe ARM1 => "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: Adobe ARM2 => "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: Adobe Photo Downloader => "C:\Program Files\Adobe\Photoshop Elements 5.0\apdproxy.exe" MSCONFIG\startupreg: Adobe Reader Speed Launcher => MSCONFIG\startupreg: Apoint => C:\Program Files\DellTPad\Apoint.exe MSCONFIG\startupreg: AppleSyncNotifier => OTIFIER.EXE MSCONFIG\startupreg: APSDaemon => "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" MSCONFIG\startupreg: APSDaemon1 => "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" MSCONFIG\startupreg: APSDaemon2 => "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" MSCONFIG\startupreg: APSDaemon3 => "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" MSCONFIG\startupreg: APSDaemon4 => "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" MSCONFIG\startupreg: BCSSync => "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices MSCONFIG\startupreg: Browser Infrastructure Helper => C:\Users\Kalle\AppData\Local\Smartbar\Application\QuickShare.exe startup MSCONFIG\startupreg: CommonToolkitTray => C:\Program Files\Fighters\Tray\FightersTray.exe MSCONFIG\startupreg: CommonToolkitTray1 => C:\Program Files\Fighters\Tray\FightersTray.exe MSCONFIG\startupreg: DELL Webcam Manager => "C:\Program Files\Dell\Dell Webcam Manager\DellWMgr.exe" /s MSCONFIG\startupreg: dellsupportcenter => "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P dellsupportcenter MSCONFIG\startupreg: dscactivate => "C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe" MSCONFIG\startupreg: EA Core => MSCONFIG\startupreg: ECenter => C:\Dell\E-Center\EULALauncher.exe MSCONFIG\startupreg: EdujLozwo => regsvr32.exe "C:\ProgramData\EdujLozwo\EdujLozwo.dat" MSCONFIG\startupreg: Facebook Update => "C:\Users\Kalle\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver MSCONFIG\startupreg: FlashGet 3 => "C:\Program Files\FlashGet Network\FlashGet 3\FlashGet3.exe" -minimize MSCONFIG\startupreg: HP Software Update => C:\Program Files\HP\HP Software Update\HPWuSchd2.exe MSCONFIG\startupreg: hp Update 2100C => C:\sj644\hpupdate.exe MSCONFIG\startupreg: hp Update 2100C1 => C:\sj644\hpupdate.exe MSCONFIG\startupreg: IjciHimu => regsvr32.exe "C:\ProgramData\IjciHimu\IjciHimu.dat" MSCONFIG\startupreg: ISUSScheduler => "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start MSCONFIG\startupreg: iTunesHelper => "C:\Program Files\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: iTunesHelper1 => "C:\Program Files\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: iTunesHelper2 => "C:\Program Files\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: iTunesHelper3 => "C:\Program Files\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: iTunesHelper4 => "C:\Program Files\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: Kernel and Hardware Abstraction Layer => KHALMNPR.EXE MSCONFIG\startupreg: lxdjamon => "C:\Program Files\Lexmark 1400 Series\lxdjamon.exe" MSCONFIG\startupreg: LXDJCATS => TRY@16 MSCONFIG\startupreg: lxdjmon.exe => MSCONFIG\startupreg: mcui_exe => "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey MSCONFIG\startupreg: MobileConnect => MSCONFIG\startupreg: My Web Search Bar Search Scope Monitor => MSCONFIG\startupreg: MyTomTomSA.exe => "C:\Program Files\MyTomTom 3\MyTomTomSA.exe" MSCONFIG\startupreg: MyWebSearch Email Plugin => MSCONFIG\startupreg: NvCplDaemon => RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup MSCONFIG\startupreg: NVHotkey => rundll32.exe C:\Windows\system32\nvHotkey.dll,Start MSCONFIG\startupreg: NvMediaCenter => RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit MSCONFIG\startupreg: NvSvc => RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart MSCONFIG\startupreg: OEM02Mon.exe => C:\Windows\OEM02Mon.exe MSCONFIG\startupreg: PCMService => "C:\Program Files\Dell\MediaDirect\PCMService.exe" MSCONFIG\startupreg: QuickTime Task => "C:\Program Files\QuickTime\QTTask.exe" -atboottime MSCONFIG\startupreg: QuickTime Task1 => "C:\Program Files\QuickTime\QTTask.exe" -atboottime MSCONFIG\startupreg: QuickTime Task2 => "C:\Program Files\QuickTime\QTTask.exe" -atboottime MSCONFIG\startupreg: QuickTime Task3 => "C:\Program Files\QuickTime\QTTask.exe" -atboottime MSCONFIG\startupreg: RoxWatchTray => "C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe" MSCONFIG\startupreg: Sidebar => C:\Program Files\windows sidebar\sidebar.exe /autoRun MSCONFIG\startupreg: SigmatelSysTrayApp => C:\Program Files\SigmaTel\C-Major Audio\WDM\sttray.exe MSCONFIG\startupreg: SunJavaUpdateSched => "c:\Program Files\Java\jre1.6.0\bin\jusched.exe" MSCONFIG\startupreg: SweetIM => C:\Program Files\SweetIM\Messenger\SweetIM.exe MSCONFIG\startupreg: SymphonyPreLoad => "C:\Program Files\IBM\Lotus\Symphony\framework\shared\eclipse\plugins\com.ibm.symphony.standard.launcher.win32.x86_3.0.0.20101015-2340\IBM Lotus Symphony" -nogui -nosplash MSCONFIG\startupreg: SymphonyPreLoad1 => "C:\Program Files\IBM\Lotus\Symphony\framework\shared\eclipse\plugins\com.ibm.symphony.standard.launcher.win32.x86_3.0.0.20101015-2340\IBM Lotus Symphony" -nogui -nosplash MSCONFIG\startupreg: SymphonyPreLoad2 => "C:\Program Files\IBM\Lotus\Symphony\framework\shared\eclipse\plugins\com.ibm.symphony.standard.launcher.win32.x86_3.0.0.20101015-2340\IBM Lotus Symphony" -nogui -nosplash MSCONFIG\startupreg: SymphonyPreLoad3 => "C:\Program Files\IBM\Lotus\Symphony\framework\shared\eclipse\plugins\com.ibm.symphony.standard.launcher.win32.x86_3.0.0.20101015-2340\IBM Lotus Symphony" -nogui -nosplash MSCONFIG\startupreg: SymphonyPreLoad4 => "C:\Program Files\IBM\Lotus\Symphony\framework\shared\eclipse\plugins\com.ibm.symphony.standard.launcher.win32.x86_3.0.0.20101015-2340\IBM Lotus Symphony" -nogui -nosplash MSCONFIG\startupreg: SymphonyPreLoad5 => "C:\Program Files\IBM\Lotus\Symphony\framework\shared\eclipse\plugins\com.ibm.symphony.standard.launcher.win32.x86_3.0.0.20101015-2340\IBM Lotus Symphony" -nogui -nosplash MSCONFIG\startupreg: TkBellExe => "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot MSCONFIG\startupreg: TomTomHOME.exe => "C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe" MSCONFIG\startupreg: UpduqTapce => regsvr32.exe "C:\ProgramData\UpduqTapce\UpduqTapce.dat" MSCONFIG\startupreg: UpduqTapce1 => regsvr32.exe "C:\ProgramData\UpduqTapce\UpduqTapce.dat" MSCONFIG\startupreg: USIUDF_Eject_Monitor => C:\Program Files\Common Files\Ulead Systems\DVD\USISrv.exe MSCONFIG\startupreg: VFPROguard => C:\Program Files\Fighters\VIRUSfighter\vfprotray.exe MSCONFIG\startupreg: WMPNSCFG => C:\Program Files\Windows Media Player\WMPNSCFG.exe MSCONFIG\startupreg: {25CE57B2-D575-9E23-E3D7-63D76500A3EA} => "C:\Users\Kalle\AppData\Roaming\Qudeu\utzo.exe" MSCONFIG\startupreg: {25CE57B2-D575-9E23-E3D7-63D76500A3EA}1 => "C:\Users\Kalle\AppData\Roaming\Qudeu\utzo.exe" MSCONFIG\startupreg: {25CE57B2-D575-9E23-E3D7-63D76500A3EA}2 => "C:\Users\Kalle\AppData\Roaming\Qudeu\utzo.exe" MSCONFIG\startupreg: {25CE57B2-D575-9E23-E3D7-63D76500A3EA}3 => "C:\Users\Kalle\AppData\Roaming\Qudeu\utzo.exe" ========================= Accounts: ========================== Administrator (S-1-5-21-2678578687-1867372224-1644441770-500 - Administrator - Disabled) ASPNET (S-1-5-21-2678578687-1867372224-1644441770-1002 - Limited - Enabled) Gast (S-1-5-21-2678578687-1867372224-1644441770-501 - Limited - Disabled) Kalle (S-1-5-21-2678578687-1867372224-1644441770-1000 - Administrator - Enabled) => C:\Users\Kalle ==================== Faulty Device Manager Devices ============= Name: Microsoft-ISATAP-Adapter #4 Description: Microsoft-ISATAP-Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: isatap.{09C1C38C-0A5E-45BE-A322-38858C00BC45} Description: Microsoft-ISATAP-Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: isatap.{09C1C38C-0A5E-45BE-A322-38858C00BC45} Description: Microsoft-ISATAP-Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: Officejet 4500 G510n-z Description: Officejet 4500 G510n-z Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318} Manufacturer: HP Service: Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (10/23/2014 08:02:35 PM) (Source: Windows Backup) (EventID: 4103) (User: ) Description: Die Dateisicherung ist aufgrund eines Fehlers beim Schreiben in das Sicherungsziel F:\ fehlgeschlagen. Fehler: Der Sicherungsort wurde nicht gefunden oder ist ungültig. Überprüfen Sie die Sicherungseinstellungen und die Hardwarekonfiguration. (0x81000006) Error: (10/21/2014 09:00:11 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Fehlerhafte Anwendung McSvHost.exe, Version 3.8.703.0, Zeitstempel 0x51f7de31, fehlerhaftes Modul unknown, Version 0.0.0.0, Zeitstempel 0x00000000, Ausnahmecode 0xc0000005, Fehleroffset 0x00650074, Prozess-ID 0x9dc, Anwendungsstartzeit McSvHost.exe0. Error: (10/20/2014 09:24:45 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Fehlerhafte Anwendung plugin-container.exe, Version 32.0.3.5379, Zeitstempel 0x54224e6b, fehlerhaftes Modul mozalloc.dll, Version 32.0.3.5379, Zeitstempel 0x54221b67, Ausnahmecode 0x80000003, Fehleroffset 0x0000141b, Prozess-ID 0x123c, Anwendungsstartzeit plugin-container.exe0. Error: (10/20/2014 07:34:14 AM) (Source: Perflib) (EventID: 1008) (User: ) Description: PNRPsvcC:\Windows\system32\pnrpperf.dll4 Error: (10/20/2014 07:34:13 AM) (Source: Perflib) (EventID: 1010) (User: ) Description: EmdCacheC:\Windows\system32\emdmgmt.dll4 Error: (10/19/2014 10:42:21 PM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - 1>Failed to compile: mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089 . Error code = 0x80070003 Error: (10/19/2014 07:13:36 PM) (Source: VSS) (EventID: 8194) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Abfragen nach der Schnittstelle "IVssWriterCallback" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070005. Die Ursache hierfür ist oft eine falsche Sicherheitseinstellung im Schreib- oder Anfrageprozess. Vorgang: Generatordaten werden gesammelt Kontext: Generatorklassen-ID: {e8132975-6f93-4464-a53e-1050253ae220} Generatorname: System Writer Generatorinstanz-ID: {7323622e-ccb1-44c3-af46-86c977692385} Error: (10/19/2014 03:57:35 PM) (Source: Windows Search Service) (EventID: 3013) (User: ) Description: Eintrag <C:\PROGRAMDATA\MICROSOFT\WINDOWS\START MENU\PROGRAMS\MCAFEE\MCAFEE SECURITYCENTER.LNK> in der Hash-Zuordnung kann nicht aktualisiert werden. Kontext: Anwendung, SystemIndex Katalog Details: Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f) Error: (10/19/2014 03:57:35 PM) (Source: Windows Search Service) (EventID: 3013) (User: ) Description: Eintrag <C:\PROGRAMDATA\MICROSOFT\WINDOWS\START MENU\PROGRAMS\MCAFEE\MCAFEE SECURITYCENTER.LNK> in der Hash-Zuordnung kann nicht aktualisiert werden. Kontext: Anwendung, SystemIndex Katalog Details: Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f) Error: (10/19/2014 03:57:22 PM) (Source: Windows Search Service) (EventID: 3013) (User: ) Description: Eintrag <C:\PROGRAMDATA\MICROSOFT\WINDOWS\START MENU\PROGRAMS\MCAFEE\MCAFEE SECURITYCENTER.LNK> in der Hash-Zuordnung kann nicht aktualisiert werden. Kontext: Anwendung, SystemIndex Katalog Details: Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f) System errors: ============= Error: (10/27/2014 04:43:47 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: McAfee Anti-Spam Service%%1053 Error: (10/27/2014 04:43:47 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: 30000McAfee Anti-Spam Service Error: (10/27/2014 04:43:46 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: McAfee Proxy Service%%1053 Error: (10/27/2014 04:43:46 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: 30000McAfee Proxy Service Error: (10/27/2014 04:43:46 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: McAfee Personal Firewall Service%%1053 Error: (10/27/2014 04:43:46 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: 30000McAfee Personal Firewall Service Error: (10/27/2014 04:43:45 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: McAfee Home Network%%1053 Error: (10/27/2014 04:43:45 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: 30000McAfee Home Network Error: (10/27/2014 04:43:33 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: McAfee Proxy Service%%1053 Error: (10/27/2014 04:43:33 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: 30000McAfee Proxy Service Microsoft Office Sessions: ========================= Error: (10/23/2014 08:02:35 PM) (Source: Windows Backup) (EventID: 4103) (User: ) Description: F:\Der Sicherungsort wurde nicht gefunden oder ist ungültig. Überprüfen Sie die Sicherungseinstellungen und die Hardwarekonfiguration. (0x81000006) Error: (10/21/2014 09:00:11 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: McSvHost.exe3.8.703.051f7de31unknown0.0.0.000000000c0000005006500749dc01cfed0345a28991 Error: (10/20/2014 09:24:45 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: plugin-container.exe32.0.3.537954224e6bmozalloc.dll32.0.3.537954221b67800000030000141b123c01cfeca28edc4c2f Error: (10/20/2014 07:34:14 AM) (Source: Perflib) (EventID: 1008) (User: ) Description: PNRPsvcC:\Windows\system32\pnrpperf.dll4 Error: (10/20/2014 07:34:13 AM) (Source: Perflib) (EventID: 1010) (User: ) Description: EmdCacheC:\Windows\system32\emdmgmt.dll4 Error: (10/19/2014 10:42:21 PM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - 1>Failed to compile: mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089 . Error code = 0x80070003 mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089 Error: (10/19/2014 07:13:36 PM) (Source: VSS) (EventID: 8194) (User: ) Description: 0x80070005 Vorgang: Generatordaten werden gesammelt Kontext: Generatorklassen-ID: {e8132975-6f93-4464-a53e-1050253ae220} Generatorname: System Writer Generatorinstanz-ID: {7323622e-ccb1-44c3-af46-86c977692385} Error: (10/19/2014 03:57:35 PM) (Source: Windows Search Service) (EventID: 3013) (User: ) Description: Kontext: Anwendung, SystemIndex Katalog Details: Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f) C:\PROGRAMDATA\MICROSOFT\WINDOWS\START MENU\PROGRAMS\MCAFEE\MCAFEE SECURITYCENTER.LNK Error: (10/19/2014 03:57:35 PM) (Source: Windows Search Service) (EventID: 3013) (User: ) Description: Kontext: Anwendung, SystemIndex Katalog Details: Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f) C:\PROGRAMDATA\MICROSOFT\WINDOWS\START MENU\PROGRAMS\MCAFEE\MCAFEE SECURITYCENTER.LNK Error: (10/19/2014 03:57:22 PM) (Source: Windows Search Service) (EventID: 3013) (User: ) Description: Kontext: Anwendung, SystemIndex Katalog Details: Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f) C:\PROGRAMDATA\MICROSOFT\WINDOWS\START MENU\PROGRAMS\MCAFEE\MCAFEE SECURITYCENTER.LNK ==================== Memory info =========================== Processor: Intel(R) Core(TM)2 Duo CPU T7500 @ 2.20GHz Percentage of memory in use: 68% Total physical RAM: 3069.31 MB Available physical RAM: 973.56 MB Total Pagefile: 6337.66 MB Available Pagefile: 4446.89 MB Total Virtual: 2047.88 MB Available Virtual: 1889.07 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:136.44 GB) (Free:2.3 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: (RECOVERY) (Fixed) (Total:10 GB) (Free:4.32 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 149.1 GB) (Disk ID: 18000000) Partition 1: (Not Active) - (Size=110 MB) - (Type=DE) Partition 2: (Not Active) - (Size=10 GB) - (Type=07 NTFS) Partition 3: (Active) - (Size=136.4 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=2.5 GB) - (Type=OF Extended) Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 27-10-2014 01 Ran by Kalle (administrator) on KALLE-PC on 27-10-2014 19:49:15 Running from C:\Users\Kalle\Downloads Loaded Profile: Kalle (Available profiles: Kalle) Platform: Microsoft® Windows Vista™ Business Service Pack 2 (X86) OS Language: Deutsch (Deutschland) Internet Explorer Version 9 Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Microsoft Corporation) C:\Windows\System32\SLsvc.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Lexmark International, Inc.) C:\Windows\System32\LEXBCES.EXE (Lexmark International, Inc.) C:\Windows\System32\LEXPPS.EXE () C:\Program Files\devolo\dlan\devolonetsvc.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe (Microsoft Corporation) C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe (SupportSoft, Inc.) C:\Program Files\Dell Support Center\bin\sprtsvc.exe (SigmaTel, Inc.) C:\Windows\System32\stacsv.exe (TuneUp Software) C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe (Ulead Systems, Inc.) C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (Conexant Systems, Inc.) C:\Windows\System32\drivers\XAudio.exe (McAfee, Inc.) C:\Program Files\McAfee\MSC\McAPExe.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Corporation) C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe (TuneUp Software) C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesApp32.exe (McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (Google Inc.) C:\Program Files\Google\Update\1.3.25.5\GoogleCrashHandler.exe (Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe (Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe (Deutsche Telekom AG) C:\Program Files\T-Online\T-Online_Software_6\Basis-Software\Basis2\kernel.exe (Deutsche Telekom AG) C:\Program Files\T-Online\T-Online_Software_6\Basis-Software\Basis2\sc_watch.exe (Deutsche Telekom AG) C:\Program Files\T-Online\T-Online_Software_6\Basis-Software\Basis2\profilemgr.exe (fun communications GmbH, hxxp://www.fun.de) C:\Program Files\T-Online\T-Online_Software_6\Notifier\Notifier.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ink\InputPersonalization.exe (Deutsche Telekom AG, www.t-online.de) C:\Program Files\T-Online\T-Online_Software_6\eMail\Mail.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe (McAfee, Inc.) C:\Program Files\McAfee\SiteAdvisor\McSACore.exe (Microsoft Corporation) C:\Windows\System32\sdclt.exe (McAfee, Inc.) C:\Program Files\McAfee\VirusScan\mcods.exe (Deutsche Telekom AG, Marmiko IT-Solutions GmbH) C:\Program Files\Common Files\Marmiko Shared\MInfraIS\MInfraIS.exe (Mozilla Corporation) C:\Program Files\MOZILLA FIREFOX 4.0 BETA 7\firefox.exe (Deutsche Telekom AG, www.t-online.de) C:\Program Files\T-Online\T-Online_Software_6\eMail\Mail.exe (Mozilla Corporation) C:\Program Files\MOZILLA FIREFOX 4.0 BETA 7\plugin-container.exe (Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe (Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe (Microsoft Corporation) C:\Windows\System32\conime.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [] => [X] HKLM\...\Run: [mcui_exe] => C:\Program Files\McAfee.com\Agent\mcagent.exe [517392 2014-04-25] (McAfee, Inc.) HKLM\...\Run: [mcpltui_exe] => C:\Program Files\McAfee.com\Agent\mcagent.exe [517392 2014-04-25] (McAfee, Inc.) HKLM\...\Run: [Kernel and Hardware Abstraction Layer] => KHALMNPR.EXE (the data entry has 65 more characters). HKLM\...\Run: [SigmatelSysTrayApp] => C:\Program Files\SigmaTel\C-Major Audio\WDM\sttray.exe [405504 2007-06-27] (SigmaTel, Inc.) HKLM\...\Policies\Explorer: [NoControlPanel] 0 HKLM\...\Policies\Explorer: [NoFolderOptions] 0 HKU\S-1-5-19\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter HKU\S-1-5-19\...\Run: [InfoCockpit] => C:\Program Files\T-Online\T-Online_Software_6\Info-Cockpit\IC_START.EXE [176128 2007-07-30] (Deutsche Telekom AG, T-Com) HKU\S-1-5-20\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter HKU\S-1-5-20\...\Run: [InfoCockpit] => C:\Program Files\T-Online\T-Online_Software_6\Info-Cockpit\IC_START.EXE [176128 2007-07-30] (Deutsche Telekom AG, T-Com) HKU\S-1-5-21-2678578687-1867372224-1644441770-1000\...\Run: [swg] => C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [68856 2007-11-30] (Google Inc.) HKU\S-1-5-21-2678578687-1867372224-1644441770-1000\...\Run: [SymphonyPreLoad] => "C:\Program Files\IBM\Lotus\Symphony\framework\shared\eclipse\plugins\com.ibm.symphony.standard.launcher.win32.x86_3.0.0.20101015-2340\IBM Lotus Symphony" -nogui -nosplash HKU\S-1-5-21-2678578687-1867372224-1644441770-1000\...\RunOnce: [{25CE57B2-D575-9E23-E3D7-63D76500A3EA}] => C:\Users\Kalle\AppData\Roaming\Qudeu\utzo.exe [409088 2011-08-03] (CallingID Ltd.) HKU\S-1-5-21-2678578687-1867372224-1644441770-1000\...\Policies\Explorer: [TaskbarNoNotification] 0 HKU\S-1-5-21-2678578687-1867372224-1644441770-1000\...\Policies\Explorer: [HideSCAHealth] 0 HKU\S-1-5-21-2678578687-1867372224-1644441770-1000\...\Policies\Explorer: [NoFolderOptions] 0 HKU\S-1-5-21-2678578687-1867372224-1644441770-1000\...\Policies\Explorer: [NoControlPanel] 0 HKU\S-1-5-21-2678578687-1867372224-1644441770-1000\...\Winlogon: [Shell] C:\Windows\Explorer.exe [2926592 2009-04-11] (Microsoft Corporation) <==== ATTENTION HKU\S-1-5-18\...\Run: [InfoCockpit] => C:\Program Files\T-Online\T-Online_Software_6\Info-Cockpit\IC_START.EXE [176128 2007-07-30] (Deutsche Telekom AG, T-Com) IFEO\AcroRd32.exe: [Debugger] "C:\Program Files\TuneUp Utilities 2014\TUAutoReactivator32.exe" IFEO\connect.exe: [Debugger] "C:\Program Files\TuneUp Utilities 2014\TUAutoReactivator32.exe" IFEO\fluxdvd.exe: [Debugger] "C:\Program Files\TuneUp Utilities 2014\TUAutoReactivator32.exe" IFEO\fluxdvdcustomclientuninst.exe: [Debugger] "C:\Program Files\TuneUp Utilities 2014\TUAutoReactivator32.exe" IFEO\googleupdater.exe: [Debugger] "C:\Program Files\TuneUp Utilities 2014\TUAutoReactivator32.exe" IFEO\images2pdf.exe: [Debugger] "C:\Program Files\TuneUp Utilities 2014\TUAutoReactivator32.exe" IFEO\infotool.exe: [Debugger] "C:\Program Files\TuneUp Utilities 2014\TUAutoReactivator32.exe" IFEO\isuspm.exe: [Debugger] "C:\Program Files\TuneUp Utilities 2014\TUAutoReactivator32.exe" IFEO\itunes.exe: [Debugger] "C:\Program Files\TuneUp Utilities 2014\TUAutoReactivator32.exe" IFEO\mydvd9.exe: [Debugger] "C:\Program Files\TuneUp Utilities 2014\TUAutoReactivator32.exe" IFEO\pdf architect.exe: [Debugger] "C:\Program Files\TuneUp Utilities 2014\TUAutoReactivator32.exe" IFEO\photoshop elements 8.0.exe: [Debugger] "C:\Program Files\TuneUp Utilities 2014\TUAutoReactivator32.exe" IFEO\photoshopelementseditor.exe: [Debugger] "C:\Program Files\TuneUp Utilities 2014\TUAutoReactivator32.exe" IFEO\photoshopelementsorganizer.exe: [Debugger] "C:\Program Files\TuneUp Utilities 2014\TUAutoReactivator32.exe" IFEO\setpoint.exe: [Debugger] "C:\Program Files\TuneUp Utilities 2014\TUAutoReactivator32.exe" IFEO\sftdde.exe: [Debugger] "C:\Program Files\TuneUp Utilities 2014\TUAutoReactivator32.exe" IFEO\symphony.exe: [Debugger] "C:\Program Files\TuneUp Utilities 2014\TUAutoReactivator32.exe" IFEO\tomtomhome.exe: [Debugger] "C:\Program Files\TuneUp Utilities 2014\TUAutoReactivator32.exe" IFEO\videowave9.exe: [Debugger] "C:\Program Files\TuneUp Utilities 2014\TUAutoReactivator32.exe" Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.) BootExecute: autocheck autochk * sdnclean.exe ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Start Default_Page_URL = hxxp://search.certified-toolbar.com?si=46364&st=home&tid=3869&ver=3.6&ts=1372415817380&tguid=46364-3869-1372415817380-189F1DBE452EAB14891037BE21B16BB7 URLSearchHook: HKCU - (No Name) - {7e111a5c-3d11-4f56-9463-5310c3c69025} - No File SearchScopes: HKLM - DefaultScope {EEE6C360-6118-11DC-9C72-001320C79847} URL = hxxp://search.certified-toolbar.com?si=46364&st=bs&tid=3869&ver=3.6&ts=1372415817380&tguid=46364-3869-1372415817380-189F1DBE452EAB14891037BE21B16BB7&q={searchTerms} SearchScopes: HKLM - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://search.searchcompletion.com?si=10195&bs=true&q={searchTerms} SearchScopes: HKLM - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.certified-toolbar.com?si=46364&st=bs&tid=3869&ver=3.2&ts=1372415817380&tguid=46364-3869-1372415817380-189F1DBE452EAB14891037BE21B16BB7&q={searchTerms} SearchScopes: HKLM - {EEE6C360-6118-11DC-9C72-001320C79847} URL = hxxp://search.certified-toolbar.com?si=46364&st=bs&tid=3869&ver=3.6&ts=1372415817380&tguid=46364-3869-1372415817380-189F1DBE452EAB14891037BE21B16BB7&q={searchTerms} SearchScopes: HKCU - DefaultScope {9C3C9C5F-6823-47AA-A92A-833F62E59B73} URL = https://de.search.yahoo.com/search?fr=mcafee&type=B011DE105D20140801&p={SearchTerms} SearchScopes: HKCU - {05C72334-11F3-4e9f-8740-98128F52EFB9} URL = hxxp://google.ie7pro.com/search?q={searchTerms}&ie={inputEncoding}&oe={outputEncoding} SearchScopes: HKCU - {1B61F7C6-18C1-4D01-88B1-0DA411882AF9} URL = hxxp://www.amazon.de/gp/search?ie=UTF8&keywords={searchTerms}&tag=interactivemesuche-21&index=blended&linkCode=ur2&camp=1638&creative=6742 SearchScopes: HKCU - {31CF9EBE-5755-4a1d-AC25-2834D952D9B4} URL = hxxp://search.pdfcreator-toolbar.org/search?p=Q&ts=ne&w={searchTerms}&csrc=search-field SearchScopes: HKCU - {3584DA0D-E427-41D1-AF3C-496A73F89C95} URL = hxxp://rover.ebay.com/rover/1/707-1403-27640-2/4?mpre=hxxp://search.ebay.de/search/search.dll?shortcut=4&query={searchTerms} SearchScopes: HKCU - {49F15F04-82EA-4918-B44B-023CA29D66B8} URL = hxxp://suche.t-online.de/fast-cgi/tsc?mandant=toi&device=html&portallanguage=de&userlanguage=de&dia=suche&context=internet-tab&tpc=internet&ptl=std&classification=internet-tab_internet_std&q={searchTerms}&br=ie7-toi SearchScopes: HKCU - {91B659A6-592F-45BF-BDFC-7321516F8C2E} URL = hxxp://www.wetter.com/suche/?search={searchTerms}&search_type_weather=1&search_type_site=1 SearchScopes: HKCU - {9C3C9C5F-6823-47AA-A92A-833F62E59B73} URL = https://de.search.yahoo.com/search?fr=mcafee&type=B011DE105D20140801&p={SearchTerms} SearchScopes: HKCU - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.certified-toolbar.com?si=46364&st=bs&tid=3869&ver=3.2&ts=1372415817380&tguid=46364-3869-1372415817380-189F1DBE452EAB14891037BE21B16BB7&q={searchTerms} SearchScopes: HKCU - {B58B015E-63D2-4BB0-9F3E-E2E3415498E0} URL = hxxp://search.certified-toolbar.com?si=46364&st=bs&tid=3869&ver=3.6&ts=1372415817380&tguid=46364-3869-1372415817380-189F1DBE452EAB14891037BE21B16BB7&q={searchTerms} SearchScopes: HKCU - {CFF4DB9B-135F-47c0-9269-B4C6572FD61A} URL = hxxp://mystart.incredimail.com/german/?search={searchTerms}&loc=search_box SearchScopes: HKCU - {D6CF3DEF-EF36-451E-99EB-14CE750F8482} URL = hxxp://suche.t-online.de/fast-cgi/tsc?mandant=toi&device=html&portallanguage=de&userlanguage=de&dia=suche&context=wiki-tab&tpc=internet&ptl=std&classification=wiki-tab_internet_std&q={searchTerms}&br=ie7-toi BHO: IE7Pro BHO -> {00011268-E188-40DF-A514-835FCD78B1BF} -> C:\Program Files\IEPro\iepro.dll (IE7Pro.com) BHO: HP Print Enhancer -> {0347C33E-8762-4905-BF09-768834316C61} -> C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.) BHO: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (McAfee, Inc.) BHO: Download Manager Browser Helper Object -> {19C8E43B-07B3-49CB-BFFC-6777B593E6F8} -> C:\Program Files\Common Files\fluxDVD\Download Manager\XEBDLHelper.dll (Protect Software GmbH) BHO: PDF Architect Helper -> {3A2D5EBA-F86D-4BD3-A177-019765996711} -> C:\Program Files\PDF Architect\PDFIEHelper.dll (pdfforge GmbH) BHO: Windows Live Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO: McAfee SiteAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: CBrowserHelperObject Object -> {CA6319C0-31B7-401E-A518-A07C3DB8F777} -> C:\Program Files\Dell\BAE\BAE.dll (Dell Inc.) BHO: Google Gears Helper -> {E0FEFE40-FBF9-42AE-BA58-794CA7E3FB53} -> C:\Program Files\Google\Google Gears\Internet Explorer\0.5.36.0\gears.dll (Google Inc.) BHO: HP Smart BHO Class -> {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} -> C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.) Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Toolbar: HKLM - QuickShare Widget - {ae07101b-46d4-4a98-af68-0333ea26e113} - C:\Windows\system32\mscoree.dll (Microsoft Corporation) Toolbar: HKLM - PDF Architect Toolbar - {25A3A431-30BB-47C8-AD6A-E1063801134F} - C:\Program Files\PDF Architect\PDFIEPlugin.dll (pdfforge GmbH) Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File Toolbar: HKCU - No Name - {31CF9EBE-5755-4A1D-AC25-2834D952D9B4} - No File Toolbar: HKCU - No Name - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - No File DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab Handler: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll (Logitech Inc.) Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Handler: fluxhttp\0x00000007 - {8E2D00A0-82C6-4821-90BC-07F290841BB6} - C:\Program Files\Common Files\fluxDVD\Lib\XEB\xebnavigation.ax () Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation) Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll (Microsoft Corporation) Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation) Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\McAfee\MSC\McSnIePl.dll (McAfee, Inc.) Winsock: Catalog5 08 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\Kalle\AppData\Roaming\Mozilla\Firefox\Profiles\6rbqw43b.default-1413039020970 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_44.dll () FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) FF Plugin: @Apple.com/iTunes,version=1.0 -> C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin: @fluxdvd.com/NPAPIX -> C:\Program Files\Common Files\fluxDVD\APIX\NPAPIX.dll () FF Plugin: @fluxdvd.com/NPFluxBrowserHelper -> C:\Program Files\Common Files\fluxDVD\BrowserIntegration\NPFluxBrowserHelper.dll () FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL () FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: @pack.google.com/Google Updater;version=14 -> C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll (Google) FF Plugin: @protectdisc.com/NPMPDRM -> C:\Program Files\Common Files\mpDRM\NPMPDRM.dll () FF Plugin: @protectdisc.com/NPWMDRMWrapper -> C:\Program Files\Common Files\mpDRM\NPWMDRMWrapper.dll () FF Plugin: @real.com/nppl3260;version=6.0.12.69 -> C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll No File FF Plugin: @real.com/nprjplug;version=1.0.3.69 -> C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll No File FF Plugin: @real.com/nprpjplug;version=6.0.12.69 -> C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll No File FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\Kalle\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll No File FF user.js: detected! => C:\Users\Kalle\AppData\Roaming\Mozilla\Firefox\Profiles\6rbqw43b.default-1413039020970\user.js FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np32dsw.dll (Adobe Systems, Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPAPIX.dll () FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll (Sun Microsystems, Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPFluxBrowserHelper.dll () FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPMPDRM.dll () FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin6.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin7.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPWMDRMWrapper.dll () FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\McSiteAdvisor.xml FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\Web Search.xml FF Extension: Adblock Plus - C:\Users\Kalle\AppData\Roaming\Mozilla\Firefox\Profiles\6rbqw43b.default-1413039020970\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-10-19] FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} [2010-11-19] FF HKLM\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\Program Files\Real\RealPlayer\browserrecord FF HKLM\...\Firefox\Extensions: [{400F0BDB-6C49-43A4-BE1F-76D7327A604D}] - C:\Program Files\Common Files\fluxDVD\Download Manager\Mozilla FF Extension: fluxDVD Download Manager - C:\Program Files\Common Files\fluxDVD\Download Manager\Mozilla [2009-04-12] FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2009-05-29] FF HKLM\...\Firefox\Extensions: [{000a9d1c-beef-4f90-9363-039d445309b8}] - C:\Program Files\Google\Google Gears\Firefox FF Extension: Google Gears - C:\Program Files\Google\Google Gears\Firefox [2010-09-11] FF HKLM\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Extension: HP Smart Web Printing - C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2011-04-01] FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\SiteAdvisor FF Extension: McAfee SiteAdvisor - C:\Program Files\McAfee\SiteAdvisor [2008-10-01] FF HKLM\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files\PDF Architect\FFPDFArchitectExt FF Extension: PDF Architect Converter For Firefox - C:\Program Files\PDF Architect\FFPDFArchitectExt [2013-06-28] FF HKLM\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2007-11-30] FF HKCU\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF HKCU\...\Firefox\Extensions: [firejump@firejump.net] - C:\Users\Kalle\AppData\Roaming\Mozilla\Firefox\Profiles\30b5nal8.default\extensions\firejump@firejump.net FF HKCU\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04] FF StartMenuInternet: FIREFOX.EXE - C:\PROGRAM FILES\MOZILLA FIREFOX 4.0 BETA 7\firefox.exe Chrome: ======= CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\27.0.1453.116\PepperFlash\pepflashplayer.dll No File CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32_11_4_402_287.dll No File CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\27.0.1453.116\ppGoogleNaClPluginChrome.dll No File CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\27.0.1453.116\pdf.dll No File CHR Plugin: (McAfee SiteAdvisor) - C:\Users\Kalle\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.41.123.2_0\McChPlg.dll No File CHR Plugin: (McAfee SiteAdvisor) - C:\Program Files\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.) CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Java Deployment Toolkit 6.0.240.7) - C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll (Sun Microsystems, Inc.) CHR Plugin: (Java(TM) Platform SE 6 U24) - C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) CHR Plugin: (QuickTime Plug-in 7.7.2) - C:\Program Files\QuickTime\plugins\npqtplugin.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.7.2) - C:\Program Files\QuickTime\plugins\npqtplugin2.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.7.2) - C:\Program Files\QuickTime\plugins\npqtplugin3.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.7.2) - C:\Program Files\QuickTime\plugins\npqtplugin4.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.7.2) - C:\Program Files\QuickTime\plugins\npqtplugin5.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.7.2) - C:\Program Files\QuickTime\plugins\npqtplugin6.dll No File CHR Plugin: (QuickTime Plug-in 7.7.2) - C:\Program Files\QuickTime\plugins\npqtplugin7.dll No File CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation) CHR Plugin: (Active Process Information eXchange) - C:\Program Files\Common Files\fluxDVD\APIX\NPAPIX.dll () CHR Plugin: (fluxDVD) - C:\Program Files\Common Files\fluxDVD\BrowserIntegration\NPFluxBrowserHelper.dll () CHR Plugin: (NPMPDRM License Acquisition Plugin) - C:\Program Files\Common Files\mpDRM\NPMPDRM.dll () CHR Plugin: (WMMPDRM License Acquisition Wrapper) - C:\Program Files\Common Files\mpDRM\NPWMDRMWrapper.dll () CHR Plugin: (Google Updater) - C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll (Google) CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll No File CHR Plugin: (RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) ) - C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll No File CHR Plugin: (RealPlayer Version Plugin) - C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll No File CHR Plugin: (RealJukebox NS Plugin) - C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll No File CHR Plugin: (iTunes Application Detector) - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll () CHR Plugin: (Facebook Video Calling Plugin) - C:\Users\Kalle\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll No File CHR Plugin: (Shockwave for Director) - C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll No File CHR Plugin: (Windows Presentation Foundation) - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) CHR Plugin: (McAfee SecurityCenter) - c:\progra~1\mcafee\msc\npmcsn~1.dll () CHR Profile: C:\Users\Kalle\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (QuickShare Widget) - C:\Users\Kalle\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl [2013-06-28] CHR Extension: (HomeTab) - C:\Users\Kalle\AppData\Local\Google\Chrome\User Data\Default\Extensions\fgibjgmnimooanbagcfpnkmngejcojaf [2013-06-28] CHR Extension: (SiteAdvisor) - C:\Users\Kalle\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2012-10-28] CHR Extension: (Plus-HD-2.4) - C:\Users\Kalle\AppData\Local\Google\Chrome\User Data\Default\Extensions\hojmbfiljpkaijkdifoaacbpallpfkkf [2013-06-28] CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files\McAfee\SiteAdvisor\McChPlg.crx [2011-03-21] CHR HKCU\...\Chrome\Extension: [amfclgbdpgndipgoegfpkkgobahigbcl] - C:\Users\Kalle\AppData\Local\Smartbar/Application\0Extension.crx [2011-03-21] ========================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S2 0039731414424628mcinstcleanup; C:\Windows\TEMP\003973~1.EXE [836168 2014-03-13] (McAfee, Inc.) S4 AdobeActiveFileMonitor8.0; C:\Program Files\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe [169312 2009-10-09] (Adobe Systems Incorporated) S3 Browser7Maintenance; C:\Program Files\Browser 7 Maintenance Service\maintenanceservice.exe [118584 2014-09-04] (Deutsche Telekom AG) S4 ContentMgrService; C:\Program Files\Videoload Manager\ContentManager.exe [508928 2008-03-12] (ACE GmbH) [File not signed] R2 DevoloNetworkService; C:\Program Files\devolo\dlan\devolonetsvc.exe [2231616 2010-07-19] () R2 HomeNetSvc; C:\Program Files\Common Files\Mcafee\Platform\McSvcHost\McSvHost.exe [281560 2013-07-30] (McAfee, Inc.) R3 hpqcxs08; C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll [248832 2009-05-21] (Hewlett-Packard Co.) [File not signed] R2 hpqddsvc; C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll [133120 2009-05-21] (Hewlett-Packard Co.) [File not signed] R2 HPSLPSVC; C:\Program Files\HP\Digital Imaging\bin\HPSLPSVC32.DLL [694784 2009-09-08] (Hewlett-Packard Co.) [File not signed] S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [73728 2004-10-22] (Macrovision Corporation) [File not signed] S3 LBTServ; C:\Program Files\Common Files\Logitech\Bluetooth\LBTServ.exe [121360 2008-05-02] (Logitech, Inc.) R2 LexBceS; C:\Windows\System32\LEXBCES.EXE [300544 2002-03-08] (Lexmark International, Inc.) [File not signed] R2 McAfee SiteAdvisor Service; C:\Program Files\McAfee\SiteAdvisor\McSACore.exe [133696 2014-09-23] (McAfee, Inc.) R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [145568 2014-04-25] (McAfee, Inc.) S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [235696 2014-04-09] (McAfee, Inc.) R2 McMPFSvc; C:\Program Files\Common Files\Mcafee\Platform\McSvcHost\McSvHost.exe [281560 2013-07-30] (McAfee, Inc.) R2 McNaiAnn; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [281560 2013-07-30] (McAfee, Inc.) R3 McODS; C:\Program Files\McAfee\VirusScan\mcods.exe [472072 2014-06-12] (McAfee, Inc.) R2 mcpltsvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [281560 2013-07-30] (McAfee, Inc.) R2 McProxy; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [281560 2013-07-30] (McAfee, Inc.) R2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [655936 2014-07-24] (McAfee, Inc.) R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [169800 2014-06-20] (McAfee, Inc.) R2 mfevtp; C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe [179600 2014-06-20] (McAfee, Inc.) R2 MSK80Service; C:\Program Files\Common Files\Mcafee\Platform\McSvcHost\McSvHost.exe [281560 2013-07-30] (McAfee, Inc.) R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [44544 2008-12-03] (Hewlett-Packard) [File not signed] S4 PDF Architect Helper Service; C:\Program Files\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH) S4 PDF Architect Service; C:\Program Files\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH) R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [53760 2008-12-03] (Hewlett-Packard) [File not signed] S4 RoxMediaDB9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe [880640 2006-11-05] (Sonic Solutions) [File not signed] S4 RoxWatch9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe [159744 2006-11-05] (Sonic Solutions) [File not signed] R2 sprtsvc_dellsupportcenter; C:\Program Files\Dell Support Center\bin\sprtsvc.exe [201968 2008-08-13] (SupportSoft, Inc.) R2 STacSV; C:\Windows\system32\STacSV.exe [94208 2007-06-27] (SigmaTel, Inc.) S4 stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [73728 2006-09-14] (MicroVision Development, Inc.) [File not signed] S3 SXDS10; C:\Program Files\Common Files\soft Xpansion\sxds10.exe [234096 2013-06-28] (soft Xpansion) R2 TuneUp.UtilitiesSvc; C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe [1781048 2014-07-16] (TuneUp Software) R2 UleadBurningHelper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [49152 2004-03-13] (Ulead Systems, Inc.) [File not signed] ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S3 AF15BDA; C:\Windows\System32\drivers\AF15BDA.sys [283776 2006-11-20] (AfaTech ) R2 CAPI20; C:\Windows\System32\Drivers\CAPI20.SYS [976100 2005-12-07] (DeTeWe Berlin) [File not signed] R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [62832 2014-06-20] (McAfee, Inc.) R2 DETEWECP; C:\Windows\System32\drivers\detewecp.sys [37312 2006-05-11] (DeTeWe Systems GmbH) [File not signed] S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [147912 2013-09-23] (McAfee, Inc.) S2 LVEzLoader; C:\Windows\System32\Drivers\LVEzLD06.sys [15360 2005-05-19] (Animation Technologies Inc.) [File not signed] S3 MBAMSwissArmy; C:\Windows\system32\drivers\mbamswissarmy.sys [40776 2013-11-26] (Malwarebytes Corporation) R3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [135968 2014-06-20] (McAfee, Inc.) R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [238176 2014-06-20] (McAfee, Inc.) S3 mfebopk; C:\Windows\System32\drivers\mfebopk.sys [67816 2014-06-20] (McAfee, Inc.) R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [369248 2014-06-20] (McAfee, Inc.) R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [576048 2014-06-20] (McAfee, Inc.) R3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [349192 2014-07-24] (McAfee, Inc.) S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [81296 2014-07-24] (McAfee, Inc.) R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [217224 2014-06-20] (McAfee, Inc.) S3 MTOnlPktAlyX; C:\Program Files\T-Online\T-Online_Software_6\Basis-Software\Basis1\MTOnlPktAlyX.SYS [19200 2010-08-27] (Deutsche Telekom AG AG, Marmiko IT-Solutions GmbH) [File not signed] R2 NPF_devolo; C:\Windows\system32\drivers\npf_devolo.sys [35840 2010-06-10] (CACE Technologies) [File not signed] R3 STHDA; C:\Windows\System32\drivers\stwrt.sys [326656 2007-06-27] (SigmaTel, Inc.) R3 TuneUpUtilitiesDrv; C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesDriver32.sys [12320 2014-06-23] (TuneUp Software) R3 ULCDRHlp; C:\Windows\System32\Drivers\ULCDRHlp.sys [27232 2004-06-04] (Ulead Systems, Inc.) [File not signed] S3 ulisa; C:\Windows\System32\Drivers\ulisa.sys [34841 2005-10-10] (DeTeWe Berlin) [File not signed] S3 USBAAPL; C:\Windows\System32\Drivers\usbaapl.sys [45056 2012-12-13] (Apple, Inc.) [File not signed] R1 USIUDF; C:\Windows\System32\Drivers\USIUDF.sys [292288 2004-05-29] (Ulead Systems, Inc.) [File not signed] S3 xnacc; C:\Windows\System32\DRIVERS\xnacc.sys [521216 2008-01-19] (Microsoft Corporation) S4 blbdrive; \SystemRoot\system32\drivers\blbdrive.sys [X] S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [X] S3 IpInIp; system32\DRIVERS\ipinip.sys [X] S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X] S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-10-27 19:49 - 2014-10-27 19:51 - 00035765 _____ () C:\Users\Kalle\Downloads\FRST.txt 2014-10-27 19:47 - 2014-10-27 19:49 - 00000000 ____D () C:\FRST 2014-10-27 19:46 - 2014-10-27 19:46 - 01104896 _____ (Farbar) C:\Users\Kalle\Downloads\FRST.exe 2014-10-27 16:46 - 2014-10-27 16:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee 2014-10-24 09:06 - 2014-10-27 16:34 - 00000000 ____D () C:\Program Files\Browser 7 Maintenance Service 2014-10-24 09:06 - 2014-10-24 09:14 - 00000000 ____D () C:\Users\Kalle\AppData\Roaming\Deutsche Telekom AG 2014-10-24 09:06 - 2014-10-24 09:08 - 00001029 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Browser 7 der Telekom.lnk 2014-10-24 09:06 - 2014-10-24 09:08 - 00001017 _____ () C:\Users\Public\Desktop\Browser 7 der Telekom.lnk 2014-10-24 09:06 - 2014-10-24 09:06 - 00000000 ____D () C:\Users\Kalle\AppData\Local\Deutsche Telekom AG 2014-10-24 09:06 - 2014-10-24 09:06 - 00000000 ____D () C:\ProgramData\Telekom-Browser 7 2014-10-24 09:05 - 2014-10-24 09:05 - 00000000 ____D () C:\Program Files\Deutsche Telekom AG 2014-10-24 09:04 - 2014-10-24 09:05 - 00362592 _____ (Deutsche Telekom AG) C:\Users\Kalle\Downloads\browser7_setup.exe 2014-10-20 07:24 - 2014-10-20 07:35 - 00000000 ____D () C:\Windows\system32\MRT 2014-10-20 07:21 - 2013-10-03 13:45 - 00993792 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2014-10-20 07:21 - 2013-05-02 05:04 - 00443904 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2014-10-20 07:21 - 2013-05-02 05:03 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\printcom.dll 2014-10-19 23:00 - 2014-06-26 23:17 - 00619664 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe 2014-10-19 23:00 - 2014-06-26 23:17 - 00099480 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll 2014-10-19 23:00 - 2014-06-26 23:17 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll 2014-10-19 23:00 - 2014-06-06 05:28 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe 2014-10-19 22:58 - 2014-06-15 23:18 - 01131664 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll 2014-10-19 22:58 - 2014-06-13 19:22 - 00156824 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll 2014-10-19 22:58 - 2014-06-13 19:22 - 00081560 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll 2014-10-19 22:46 - 2014-09-09 07:24 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2014-10-19 22:31 - 2014-08-23 02:03 - 00297984 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-10-19 22:15 - 2014-10-19 22:15 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER 2014-10-19 22:10 - 2014-09-28 00:29 - 02054656 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-10-19 21:47 - 2014-09-19 23:53 - 12364288 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-10-19 21:47 - 2014-09-19 23:44 - 01810432 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-10-19 21:47 - 2014-09-19 23:41 - 09739776 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-10-19 21:47 - 2014-09-19 23:39 - 01138688 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-10-19 21:47 - 2014-09-19 23:38 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-10-19 21:47 - 2014-09-19 23:37 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-10-19 21:47 - 2014-09-19 23:36 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-10-19 21:47 - 2014-09-19 23:36 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-10-19 21:47 - 2014-09-19 23:36 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-10-19 21:47 - 2014-09-19 23:35 - 01802752 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-10-19 21:47 - 2014-09-19 23:35 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-10-19 21:47 - 2014-09-19 23:35 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-10-19 21:47 - 2014-09-19 23:35 - 00421376 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-10-19 21:47 - 2014-09-19 23:35 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-10-19 21:47 - 2014-09-19 23:34 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-10-19 21:47 - 2014-09-19 23:34 - 00353792 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-10-19 21:47 - 2014-09-19 23:34 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-10-19 21:47 - 2014-09-19 23:34 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-10-19 21:47 - 2014-09-19 23:34 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-10-19 21:47 - 2014-09-19 23:34 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-10-19 21:47 - 2014-09-19 23:33 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-10-19 21:47 - 2014-06-14 01:44 - 00638400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2014-10-19 21:47 - 2014-06-14 01:33 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2014-10-19 21:47 - 2013-07-10 10:47 - 00783360 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2014-10-19 21:47 - 2012-11-20 05:22 - 00204288 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2014-10-19 21:47 - 2012-06-29 17:01 - 00467968 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll 2014-10-19 21:46 - 2014-04-05 03:42 - 00905664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-10-19 21:46 - 2014-02-06 02:56 - 00894464 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2014-10-19 21:46 - 2013-10-30 03:12 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\SysFxUI.dll 2014-10-19 21:46 - 2013-10-30 02:43 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2014-10-19 21:46 - 2013-10-30 01:43 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2014-10-19 21:46 - 2013-03-03 20:07 - 01082232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2014-10-19 21:46 - 2012-11-02 11:18 - 00376320 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll 2014-10-19 21:46 - 2012-11-02 09:26 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\dpnsvr.exe 2014-10-19 21:46 - 2012-09-25 17:19 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll 2014-10-19 21:45 - 2014-05-30 07:53 - 00273408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2014-10-19 21:45 - 2012-11-08 04:48 - 01314816 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll 2014-10-19 21:45 - 2012-08-21 12:47 - 00224640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys 2014-10-19 21:44 - 2013-06-29 03:07 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-10-19 21:44 - 2013-06-29 03:07 - 00197632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-10-19 21:44 - 2013-06-29 03:07 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-10-19 21:44 - 2013-06-29 03:06 - 00006016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-10-19 21:44 - 2011-05-05 14:54 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-10-19 21:44 - 2011-05-05 14:54 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2014-10-19 21:39 - 2012-11-22 04:54 - 00353280 _____ (Microsoft Corporation) C:\Windows\system32\shlwapi.dll 2014-10-19 21:36 - 2013-08-02 05:09 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2014-10-19 21:36 - 2013-04-24 05:00 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll 2014-10-19 21:36 - 2013-04-24 02:46 - 00812544 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe 2014-10-19 21:35 - 2014-06-06 09:59 - 00506880 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-10-19 21:35 - 2013-10-11 03:08 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2014-10-19 21:35 - 2013-10-11 03:08 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2014-10-19 21:35 - 2013-10-11 03:08 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wshcon.dll 2014-10-19 21:35 - 2013-10-11 01:35 - 00155648 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2014-10-19 21:35 - 2013-10-11 01:35 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2014-10-19 21:33 - 2013-10-22 08:19 - 00158208 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2014-10-19 21:33 - 2013-10-11 03:08 - 00444928 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2014-10-19 21:33 - 2013-10-11 03:07 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2014-10-19 21:33 - 2013-10-11 01:39 - 00218228 _____ () C:\Windows\system32\WFP.TMF 2014-10-19 21:33 - 2013-07-16 05:35 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll 2014-10-19 21:33 - 2013-07-09 13:10 - 01205168 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2014-10-19 21:33 - 2013-07-08 05:55 - 03603904 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe 2014-10-19 21:33 - 2013-07-08 05:55 - 03551680 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2014-10-19 21:33 - 2013-06-27 00:01 - 00527064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys 2014-10-19 21:33 - 2013-06-04 05:16 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2014-10-19 21:33 - 2013-06-04 02:49 - 00293376 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2014-10-19 21:33 - 2013-03-09 04:45 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2014-10-19 21:33 - 2013-03-09 02:28 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2014-10-19 21:33 - 2013-03-08 04:52 - 02067968 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2014-10-19 21:32 - 2013-07-04 05:21 - 00532480 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll 2014-10-19 20:19 - 2014-09-05 00:27 - 00143360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys 2014-10-19 20:18 - 2014-09-16 17:56 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll 2014-10-19 20:16 - 2012-06-02 15:57 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf 2014-10-19 20:15 - 2012-07-26 04:39 - 00047720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys 2014-10-19 20:15 - 2012-07-26 04:21 - 00196608 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe 2014-10-19 20:15 - 2012-07-26 04:20 - 00613888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll 2014-10-19 20:15 - 2012-07-26 04:20 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll 2014-10-19 20:15 - 2012-07-26 04:20 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll 2014-10-19 20:15 - 2012-07-26 04:20 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll 2014-10-19 20:15 - 2012-07-26 03:46 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll 2014-10-19 20:15 - 2012-07-26 03:33 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys 2014-10-19 20:15 - 2012-07-26 03:32 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys 2014-10-19 20:15 - 2009-07-14 13:12 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\winusb.dll 2014-10-19 20:03 - 2014-06-02 11:31 - 02263552 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2014-10-19 20:03 - 2014-06-02 11:31 - 00332800 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll 2014-10-19 20:03 - 2014-06-02 11:30 - 01993728 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2014-10-19 20:03 - 2014-06-02 11:30 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2014-10-19 20:03 - 2014-06-02 09:56 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2014-10-19 20:03 - 2013-08-27 03:47 - 01029120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll 2014-10-19 20:03 - 2013-08-27 03:47 - 00219648 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll 2014-10-19 20:03 - 2013-08-27 03:47 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll 2014-10-19 20:03 - 2013-08-27 03:47 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll 2014-10-19 20:03 - 2013-08-27 02:52 - 01172480 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-10-19 20:03 - 2013-08-27 02:50 - 00486400 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2014-10-19 20:03 - 2013-08-27 02:32 - 00683008 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2014-10-19 20:03 - 2013-08-27 02:28 - 01069056 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2014-10-19 20:03 - 2013-08-27 02:28 - 00798208 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2014-10-19 20:03 - 2013-07-20 11:44 - 00102608 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2014-10-19 20:03 - 2013-06-15 14:22 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\icaapi.dll 2014-10-19 20:03 - 2013-06-15 12:23 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2014-10-19 20:03 - 2012-05-11 16:57 - 00623616 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2014-10-19 19:45 - 2014-03-10 02:22 - 01401344 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2014-10-19 19:45 - 2014-03-10 02:22 - 01248768 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-10-19 19:45 - 2013-03-08 04:53 - 00376320 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2014-10-19 19:43 - 2014-04-26 17:01 - 00502784 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll 2014-10-19 19:43 - 2014-03-25 14:26 - 11587584 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-10-19 19:43 - 2013-07-08 05:20 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2014-10-19 19:43 - 2013-07-08 05:16 - 00133120 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2014-10-19 19:43 - 2013-07-08 05:16 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2014-10-19 19:43 - 2013-07-03 03:33 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbscan.sys 2014-10-19 19:43 - 2013-07-03 03:10 - 00025472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys 2014-10-19 19:43 - 2013-04-17 13:30 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll 2014-10-19 19:42 - 2014-01-30 08:46 - 00876032 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2014-10-19 19:42 - 2013-02-12 02:57 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023x.sys 2014-10-19 19:42 - 2013-02-12 02:57 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys 2014-10-19 19:42 - 2012-06-04 16:26 - 00440704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2014-10-19 19:42 - 2012-06-02 01:04 - 00278528 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2014-10-19 19:34 - 2014-10-19 19:34 - 01059840 _____ () C:\Users\Kalle\Downloads\MicrosoftFixit50981.msi 2014-10-19 19:11 - 2014-10-19 19:11 - 00347816 _____ (Microsoft Corporation) C:\Users\Kalle\Downloads\MicrosoftFixit.wu.MATSKB.Run.exe 2014-10-19 17:30 - 2014-10-19 17:30 - 00001879 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014.lnk 2014-10-19 17:30 - 2014-10-19 17:30 - 00001871 _____ () C:\Users\Public\Desktop\TuneUp 1-Klick-Wartung.lnk 2014-10-19 17:30 - 2014-10-19 17:30 - 00001867 _____ () C:\Users\Public\Desktop\TuneUp Utilities 2014.lnk 2014-10-19 17:30 - 2014-10-19 17:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014 2014-10-19 17:30 - 2014-07-16 09:24 - 00036664 _____ (TuneUp Software) C:\Windows\system32\TURegOpt.exe 2014-10-19 17:30 - 2014-07-16 09:24 - 00025400 _____ (TuneUp Software) C:\Windows\system32\authuitu.dll 2014-10-19 17:29 - 2014-10-19 17:30 - 00000000 ____D () C:\Program Files\TuneUp Utilities 2014 2014-10-19 17:29 - 2014-10-19 17:29 - 00000000 ____D () C:\Users\Kalle\AppData\Local\TuneUp Software 2014-10-19 17:27 - 2014-10-19 17:27 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} 2014-10-19 17:26 - 2014-10-19 17:27 - 28598072 _____ (TuneUp Software) C:\Users\Kalle\Downloads\TuneUpUtilities2014_de-DE.exe 2014-10-19 17:06 - 2014-10-20 07:19 - 00000000 ____D () C:\ProgramData\ParetoLogic 2014-10-19 17:06 - 2014-10-19 17:06 - 00000000 ____D () C:\Users\Kalle\AppData\Roaming\ParetoLogic 2014-10-19 17:06 - 2014-10-19 17:06 - 00000000 ____D () C:\Users\Kalle\AppData\Roaming\DriverCure 2014-10-19 17:05 - 2014-10-19 17:05 - 05249448 _____ (ParetoLogic Inc.) C:\Users\Kalle\Downloads\ParetoLogic PC Health Advisor_de.exe 2014-10-16 12:51 - 2014-10-16 12:51 - 00012845 _____ () C:\Users\Kalle\Documents\Adressen 5c.xlsx 2014-10-10 23:01 - 2014-10-10 23:01 - 04991400 _____ (Adobe Systems Inc.) C:\Users\Kalle\Downloads\Shockwave_Installer_Slim.exe 2014-10-08 14:48 - 2014-10-08 15:09 - 00000000 ____D () C:\Users\Kalle\Desktop\madforpet 2014-09-27 14:35 - 2014-09-27 14:35 - 00002052 _____ () C:\Windows\epplauncher.mif 2014-09-27 14:34 - 2014-09-27 14:35 - 11473216 _____ (Microsoft Corporation) C:\Users\Kalle\Downloads\mseinstall.exe ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-10-27 19:48 - 2006-11-02 13:47 - 00003568 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 2014-10-27 19:48 - 2006-11-02 13:47 - 00003568 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 2014-10-27 19:42 - 2010-01-14 23:14 - 00001098 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-10-27 16:46 - 2011-10-04 11:14 - 00001753 _____ () C:\Users\Public\Desktop\McAfee Security Center.lnk 2014-10-27 16:42 - 2013-04-12 00:56 - 02069404 _____ () C:\Windows\WindowsUpdate.log 2014-10-27 16:41 - 2006-11-02 11:33 - 01595846 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-10-27 16:36 - 2011-04-24 08:00 - 01189051 _____ () C:\Users\Kalle\seditor.launcher.log 2014-10-27 16:36 - 2010-03-21 18:29 - 00062989 _____ () C:\ProgramData\nvModes.dat 2014-10-27 16:35 - 2014-06-15 10:58 - 00001094 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cf888053f06389.job 2014-10-27 16:35 - 2012-04-11 16:06 - 00000384 _____ () C:\Windows\Tasks\SLOW-PCfighter-Kalle-Notification.job 2014-10-27 16:35 - 2010-03-21 18:29 - 00062989 _____ () C:\ProgramData\nvModes.001 2014-10-27 16:35 - 2006-11-02 14:01 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-10-24 09:55 - 2007-11-30 17:38 - 00000012 _____ () C:\Windows\bthservsdp.dat 2014-10-24 09:55 - 2006-11-02 14:01 - 00032538 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-10-23 17:32 - 2014-01-08 17:25 - 00197117 _____ () C:\Users\Kalle\Desktop\madforshirts 2014.ods 2014-10-23 17:13 - 2013-04-03 13:00 - 00216290 _____ () C:\Windows\PFRO.log 2014-10-21 08:47 - 2009-03-24 14:53 - 00001052 _____ () C:\Windows\Tasks\Google Software Updater.job 2014-10-20 19:55 - 2006-11-02 13:37 - 00000000 ____D () C:\Windows\system32\FxsTmp 2014-10-20 16:56 - 2006-11-02 12:18 - 00000000 ____D () C:\Windows\Microsoft.NET 2014-10-20 16:44 - 2006-11-02 12:18 - 00000000 ____D () C:\Windows\system32\de-DE 2014-10-20 12:15 - 2007-12-05 22:37 - 00048536 _____ () C:\Users\Kalle\AppData\Roaming\wklnhst.dat 2014-10-20 10:34 - 2010-11-07 16:05 - 00000000 ____D () C:\Users\Kalle\Documents\Lisa 2014-10-20 08:08 - 2006-11-02 12:18 - 00000000 ____D () C:\Windows\rescache 2014-10-20 07:35 - 2014-09-20 23:18 - 00000000 ____D () C:\Windows\system32\MpEngineStore 2014-10-20 02:20 - 2006-11-02 13:47 - 00521880 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-10-20 02:16 - 2006-11-02 13:37 - 00000000 ____D () C:\Windows\system32\XPSViewer 2014-10-19 22:57 - 2008-06-13 20:37 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-10-19 21:02 - 2006-11-02 16:39 - 00000000 ____D () C:\Windows\system32\Drivers\de-DE 2014-10-19 21:02 - 2006-11-02 13:37 - 00000000 ____D () C:\Program Files\Windows Journal 2014-10-19 20:29 - 2011-05-29 11:41 - 00000000 ____D () C:\Program Files\Microsoft Application Virtualization Client 2014-10-19 18:53 - 2011-10-11 19:46 - 00000000 ____D () C:\madforpet 2014-10-19 18:49 - 2011-07-31 10:16 - 00000000 ____D () C:\Users\Kalle\madforpet 2014-10-19 18:41 - 2012-11-23 12:10 - 00000000 ____D () C:\Users\Kalle\Documents\My Scans 2014-10-19 18:39 - 2007-12-06 22:23 - 00000000 ____D () C:\Users\Kalle\Desktop\madforshirts 2014-10-19 18:13 - 2009-04-12 09:01 - 00000000 ____D () C:\Users\Kalle\Pictures-1 2014-10-19 17:40 - 2008-06-13 20:37 - 00000000 ____D () C:\Users\Kalle\AppData\Local\Microsoft Help 2014-10-19 17:39 - 2014-09-13 10:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2014-10-19 17:39 - 2013-10-14 18:28 - 00000000 ____D () C:\Users\Kalle\AppData\Local\Downloaded Installations 2014-10-19 17:33 - 2010-03-13 19:10 - 00000000 ____D () C:\ProgramData\TuneUp Software 2014-10-19 17:29 - 2010-03-13 19:11 - 00000000 ____D () C:\Users\Kalle\AppData\Roaming\TuneUp Software 2014-10-18 11:20 - 2013-06-30 17:12 - 00002617 _____ () C:\Users\Kalle\Desktop\Microsoft Word 2010.lnk 2014-10-11 14:38 - 2012-07-26 21:12 - 00000000 ____D () C:\Program Files\phase5 2014-10-10 23:19 - 2007-11-30 17:46 - 00000000 ____D () C:\Program Files\Java 2014-10-10 23:13 - 2014-09-24 20:02 - 00000000 ____D () C:\Program Files\MOZILLA FIREFOX 4.0 BETA 7 2014-10-08 17:22 - 2012-09-01 20:13 - 00207195 _____ () C:\Windows\hpwins28.dat 2014-10-08 17:22 - 2011-04-01 17:41 - 00006874 _____ () C:\ProgramData\hpzinstall.log 2014-10-03 09:03 - 2006-11-02 11:24 - 100290944 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe 2014-09-29 13:30 - 2014-09-17 21:55 - 00000000 ____D () C:\Users\Kalle\AppData\Roaming\Urfaib ZeroAccess: C:\Windows\Installer\{08d2c7ad-6d59-ed43-6ee8-5ab262973388} ZeroAccess: C:\Users\Kalle\AppData\Local\{08d2c7ad-6d59-ed43-6ee8-5ab262973388} Files to move or delete: ==================== C:\Users\Kalle\AppData\Roaming\AltShell.ini ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\explorer.exe => File is digitally signed C:\Windows\system32\winlogon.exe => File is digitally signed C:\Windows\system32\wininit.exe => File is digitally signed C:\Windows\system32\svchost.exe => File is digitally signed C:\Windows\system32\services.exe => File is digitally signed C:\Windows\system32\User32.dll => File is digitally signed C:\Windows\system32\userinit.exe => File is digitally signed C:\Windows\system32\rpcss.dll => File is digitally signed C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-10-27 16:43 |
Themen zu Programme brechen ab wenn ich Pfeiltasten mehrfach betätige |
besonders, bestimmte, fehlercode 0x81000006, fehlercode 22, fehlercode 31, fehlercode windows, ist das ein virus?, pfeiltasten, programm, programme, quickshare entfernen, spyhunter entfernen, sweetim for messenger 3.7 entfernen, sweetpacks bundle uninstaller entfernen, tastatur, this device is disabled. (code 22), virenprogramm, virus? |