|
Log-Analyse und Auswertung: lollipop werde ich nicht los, trotz Einsatz aller angeblich so tollen Antiviernprogramme postiver Erkennung unter "Schrauber "Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
19.11.2014, 14:35 | #16 | |
/// the machine /// TB-Ausbilder | lollipop werde ich nicht los, trotz Einsatz aller angeblich so tollen Antiviernprogramme postiver Erkennung unter "Schrauber "Zitat:
Heisst das Probleme sind weg oder wie?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
19.11.2014, 20:15 | #17 |
| lollipop werde ich nicht los, trotz Einsatz aller angeblich so tollen Antiviernprogramme postiver Erkennung unter "Schrauber " Hallo Schrauber windows Explorer lollipop weg , aber bei Fifefox
__________________noch voll da mit Werbung und "Empfehlungen" freundliche Gruesse Guenther scheint ausschliesslich ein Browserproblem zu sein |
20.11.2014, 16:35 | #18 |
/// the machine /// TB-Ausbilder | lollipop werde ich nicht los, trotz Einsatz aller angeblich so tollen Antiviernprogramme postiver Erkennung unter "Schrauber " Revo Uninstaller - Download - Filepony
__________________damit Firefox deinstallieren, keine Daten behalten, Reste entfernen lassen, neu installieren. Dann: https://support.mozilla.org/de/kb/fi...einfach-loesen Jetzt bitte ein frisches FRST log. Problem noch da?
__________________ |
21.11.2014, 11:46 | #19 |
| lollipop werde ich nicht los, trotz Einsatz aller angeblich so tollen Antiviernprogramme postiver Erkennung unter "Schrauber "Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 20-11-2014 Ran by schingels at 2014-11-21 10:52:09 Running from D:\Users\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: McAfee Anti-Virus und Anti-Spyware (Enabled - Up to date) {ADA629C7-7F48-5689-624A-3B76997E0892} AS: McAfee Anti-Virus und Anti-Spyware (Enabled - Up to date) {16C7C823-5972-5907-58FA-0004E2F9422F} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: McAfee Firewall (Enabled) {959DA8E2-3527-57D1-4915-924367AD4FE9} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 1&1 Surf-Stick (HKLM-x32\...\{A9E5EDA7-2E6C-49E7-924B-A32B89C24A04}) (Version: 1.0.0.2 - ) 1&1 Upload-Manager (HKLM-x32\...\1&1 Upload-Manager) (Version: 2.0.676 - 1&1 Internet AG) Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.223 - Adobe Systems Incorporated) Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.223 - Adobe Systems Incorporated) Adobe Reader XI (11.0.09) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.09 - Adobe Systems Incorporated) ALF-BanCo 5 (HKLM-x32\...\Alf-BanCo5_is1) (Version: 5.3.5 - ALF AG) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Ashampoo Burning Studio 2012 v10.0.15 (HKLM-x32\...\Ashampoo Burning Studio 2012_is1) (Version: 10.0.15 - Ashampoo GmbH & Co. KG) Ashampoo Internet Accelerator 3 v.3.30 (HKLM-x32\...\{4209F371-C803-200D-89A4-5479B6569259}_is1) (Version: 3.3.0 - Ashampoo GmbH & Co. KG) Ashampoo Photo Commander 9 v.9.4.3 (HKLM-x32\...\Ashampoo Photo Commander 9_is1) (Version: 9.4.3 - Ashampoo GmbH & Co. KG) Ashampoo Photo Optimizer 4 v.4.0.3 (HKLM-x32\...\Ashampoo Photo Optimizer 4_is1) (Version: 4.0.3 - Ashampoo GmbH & Co. KG) Ashampoo WinOptimizer 11 v.11.00.41 (HKLM-x32\...\{4209F371-8D72-8119-66FA-897D2D41E27F}_is1) (Version: 11.00.41 - Ashampoo GmbH & Co. KG) Ashampoo WinOptimizer 2014 v.1.0.0 (HKLM-x32\...\{4209F371-99CD-68CB-1C29-9910F8F9BD96}_is1) (Version: 1.0.0 - Ashampoo GmbH & Co. KG) ASUS LifeFrame3 (HKLM-x32\...\{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}) (Version: 3.0.22 - ASUS) ASUS Power4Gear Hybrid (HKLM\...\{33B98264-A889-4913-A0CA-C364A75032B3}) (Version: 1.1.45 - ASUS) ASUS SmartLogon (HKLM-x32\...\{64452561-169F-4A36-A2FF-B5E118EC65F5}) (Version: 1.0.0011 - ASUS) ASUS Splendid Video Enhancement Technology (HKLM-x32\...\{0969AF05-4FF6-4C00-9406-43599238DE0D}) (Version: 1.02.0031 - ASUS) ASUS USB Charger Plus (HKLM-x32\...\{AECA3622-E634-4A55-A696-70A511CBE06E}) (Version: 2.0.0 - AsusTek Computer Inc.) ASUS Virtual Camera (HKLM-x32\...\{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}) (Version: 1.0.21 - asus) AVG PC TuneUp 2015 (de-DE) (x32 Version: 15.0.1001.185 - AVG Technologies) Hidden AVG PC TuneUp 2015 (HKLM-x32\...\AVG PC TuneUp) (Version: 15.0.1001.185 - AVG Technologies) AVG PC TuneUp 2015 (x32 Version: 15.0.1001.185 - AVG Technologies) Hidden CCleaner (HKLM\...\CCleaner) (Version: 3.22 - Piriform) COMPUTERBILD-Abzockschutz (HKLM-x32\...\{2664E454-FECE-42E9-A7EF-6B5EB62AC67B}) (Version: 1.0.58 - J3S) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden ETDWare PS/2-X64 8.0.5.1_WHQL (HKLM\...\Elantech) (Version: 8.0.5.1 - ELAN Microelectronic Corp.) Fast Boot (HKLM\...\{13F4A7F3-EABC-4261-AF6B-1317777F0755}) (Version: 1.0.9 - ASUS) FileViewPro (HKLM\...\FileViewPro_is1) (Version: 4.0 - Solvusoft Corporation) Free PDF to Word Doc Converter v1.1 (HKLM-x32\...\Free PDF to Word Doc Converter_is1) (Version: 1.1 - www.hellopdf.com) Galeria de Fotografias do Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galería fotográfica de Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galerie de photos Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Google Update Helper (x32 Version: 1.3.21.153 - Google Inc.) Hidden Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.3347 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.1.2.1004 - Intel Corporation) Intel(R) Turbo Boost Technology Monitor 2.0 (HKLM\...\{B77EFA0B-9BD3-4122-9F9A-15A963B5EA24}) (Version: 2.1.23.0 - Intel) IObit Uninstaller (HKLM-x32\...\IObitUninstall) (Version: 4.0.4.30 - IObit) iTunes (HKLM\...\{1CF5754A-545B-4360-BFDE-2847BC728DFC}) (Version: 11.2.0.115 - Apple Inc.) Java 7 Update 67 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F06417067FF}) (Version: 7.0.670 - Oracle) Java 7 Update 67 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217067FF}) (Version: 7.0.670 - Oracle) Java 8 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation) Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden McAfee Internet Security (HKLM-x32\...\MSC) (Version: 12.8.992 - McAfee, Inc.) McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.8.150.1 - McAfee, Inc.) Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft Office 365 - de-de (HKLM\...\O365HomePremRetail - de-de) (Version: 15.0.4659.1001 - Microsoft Corporation) Microsoft Office Klick-und-Los 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Starter 2010 - Deutsch (HKLM-x32\...\{90140011-0066-0407-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-733679015-3351541572-3055150241-1001\...\OneDriveSetup.exe) (Version: 17.3.1229.0918 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Mobile Partner (HKLM-x32\...\Mobile Partner) (Version: 21.005.15.02.382 - Huawei Technologies Co.,Ltd) Mozilla Firefox 33.0.3 (x86 de) (HKLM-x32\...\Mozilla Firefox 33.0.3 (x86 de)) (Version: 33.0.3 - Mozilla) Mozilla Firefox 33.1.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 33.1.1 (x86 de)) (Version: 33.1.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 33.0.3 - Mozilla) NVIDIA 3D Vision Treiber 314.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 314.22 - NVIDIA Corporation) NVIDIA Grafiktreiber 314.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 314.22 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.23.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.23.1 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.12.1031 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.1031 - NVIDIA Corporation) NVIDIA Update 1.12.12 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.12.12 - NVIDIA Corporation) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4659.1001 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4659.1001 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4659.1001 - Microsoft Corporation) Hidden Paragon Backup and Recovery™ 2014 Free (HKLM\...\{C268B5E1-A5DA-11DF-A289-005056C00008}) (Version: 90.00.0003 - Paragon Software) Raccolta foto di Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6370 - Realtek Semiconductor Corp.) Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee) Ship Simulator Extremes (HKLM-x32\...\ShipSimExtremes) (Version: - ) System Requirements Lab (HKLM-x32\...\SystemRequirementsLab) (Version: - ) TapinRadio 1.60.1 (HKU\S-1-5-21-733679015-3351541572-3055150241-1001\...\TapinRadio_is1) (Version: - Raimersoft) TomTom HOME (HKLM-x32\...\{7A2BB1C8-903D-4585-9F3B-CADD67D07D37}) (Version: 2.9.8 - Ihr Firmenname) TomTom HOME Visual Studio Merge Modules (HKLM-x32\...\{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}) (Version: 1.0.2 - TomTom International B.V.) TuneUp Utilities Language Pack (de-DE) (x32 Version: 13.0.4000.245 - TuneUp Software) Hidden VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden VLC media player 2.1.3 (HKLM-x32\...\VLC media player) (Version: 2.1.3 - VideoLAN) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3508.1109 - Microsoft Corporation) Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (HKLM-x32\...\{C32CE55C-12BA-4951-8797-0967FDEF556F}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX control for remote connections (HKLM-x32\...\{C5398A89-516C-4DAF-BA07-EE7949090E56}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{C63A1E60-B6A4-440B-89A5-1FC6E4AC1C94}) (Version: 15.4.5722.2 - Microsoft Corporation) WinRAR 4.01 (32-Bit) (HKLM-x32\...\WinRAR archiver) (Version: 4.01.0 - win.rar GmbH) WinRAR 5.11 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH) Wireless Console 3 (HKLM-x32\...\{8150221C-8F7E-4997-AD4E-AFDEE7F4B410}) (Version: 3.0.21 - ASUS) Wise Care 365 3.21 (HKLM-x32\...\Wise Care 365_is1) (Version: 3.21 - WiseCleaner.com, Inc.) Wise Care 365 version 2.03 (HKLM-x32\...\{E864A1C8-EEE1-47D0-A7F8-00CC86D26D5E}_is1) (Version: 2.9.3 - WiseCleaner.com, Inc.) WISO Steuer-Sparbuch 2013 (HKU\S-1-5-21-733679015-3351541572-3055150241-1001\...\{D6CC2FAF-F827-4091-96A1-D32CC9B69C79}) (Version: 20.02.8171 - Buhl Data Service GmbH) WISO Steuer-Sparbuch 2014 (HKLM-x32\...\{2D3BBBB5-C1F2-44B2-B754-4A47C2F8EF5F}) (Version: 21.00.8480 - Buhl Data Service GmbH) Συλλογή φωτογραφιών του Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Основные компоненты Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Почта Windows Live (x32 Version: 15.4.3502.0922 - Корпорация Майкрософт) Hidden Фотоальбом Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden גלריית התמונות של Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden بريد Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden معرض صور Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-733679015-3351541572-3055150241-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\schingels\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-733679015-3351541572-3055150241-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\schingels\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-733679015-3351541572-3055150241-1001_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\schingels\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-733679015-3351541572-3055150241-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\schingels\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-733679015-3351541572-3055150241-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\schingels\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\amd64\FileSyncApi64.dll (Microsoft Corporation) ==================== Restore Points ========================= 14-11-2014 08:31:31 IObit Uninstaller restore point 20-11-2014 02:00:14 Windows Update 20-11-2014 17:20:32 Revo Uninstaller's restore point - Mozilla Firefox 33.1 (x86 de) 21-11-2014 06:12:55 McAfee Vulnerability Scanner ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {021F5962-CFBB-4D7B-866A-6007A3ED7044} - System32\Tasks\ASUS SmartLogon Console Sensor => C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe [2010-11-15] (ASUS) Task: {12599037-6BE6-40AE-ACD3-38C3324BB643} - System32\Tasks\{1953C392-23DC-4B98-AD0E-127D828D83ED} => Firefox.exe Task: {237B1A2F-C0D2-4EBF-93D6-FAC026DE1728} - System32\Tasks\Wise Turbo Checker => C:\Program Files (x86)\Wise\Wise Care 365\WiseTurbo.exe [2014-07-07] (WiseCleaner.COM) Task: {28CBFA2D-3602-448E-92B6-8C212C21C46C} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2014-09-25] (Microsoft Corporation) Task: {2C815E4E-327C-4F85-A0A7-01C02411528E} - System32\Tasks\SpyHunter4Startup => C:\Program Files\Enigma Software Group\SpyHunter\Spyhunter4.exe Task: {40BF27A8-9327-4AB7-AF0D-5FF03176D93D} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2012-08-22] (Piriform Ltd) Task: {4B9F2ABF-4563-4802-A703-F115A4E2E3C0} - System32\Tasks\{9E32BAA2-B2F8-4BD8-9432-33043FBD0A96} => C:\Program Files\McAfee.com\Agent\mcagent.exe [2014-04-25] (McAfee, Inc.) Task: {502C0A29-99A7-4AE1-8868-A42D3C395C9C} - System32\Tasks\Driver Booster SkipUAC (schingels) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe Task: {567A3220-700B-417E-A7D4-D4411046E048} - System32\Tasks\{84DD6ED7-F7B5-48B4-98D6-2A9A25D7C8E8} => Firefox.exe Task: {71438C46-60DC-49A5-9AD5-630F103ABDA8} - System32\Tasks\Microsoft\Windows\RestartManager\{8CD67240-5EA8-4dbc-B9C5-76C5AFC5BD01} => C:\Windows\system32\rmclient.exe [2009-07-14] (Microsoft Corporation) Task: {73B543E7-7F4A-4EE1-8644-A434A97105D7} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2014-09-25] (Microsoft Corporation) Task: {846DC964-CCE9-4F45-9914-7B92BED3E225} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc Task: {9096B9AA-D865-4850-9E99-BF4CFC1D4E66} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-08-21] (Adobe Systems Incorporated) Task: {9258562A-395D-4448-A80C-30B588206B71} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-10-07] (Oracle Corporation) Task: {94D79261-968E-4D91-90C2-BA2BB058D3CA} - System32\Tasks\Abelssoft\Updater scan => C:\Program Files (x86)\CHIP Updater\CHIPUpdater.exe Task: {963B6A25-005D-452D-9B23-8EDEF0F920CA} - System32\Tasks\RunAsStdUser Task for VeohWebPlayer => C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\veohwebplayer.exe Task: {9BE4943D-1225-4F33-86BC-AD4EAC3B1659} - System32\Tasks\{D618E339-78DC-4056-AE3D-3870DD7D936B} => D:\Users\Downloads\DAVSRV.EXE [2011-11-21] (1&1 Internet AG) Task: {A08D041D-720C-4255-B41E-AEEAE6E38820} - System32\Tasks\Microsoft Office 15 Sync Maintenance for schingels-PC-schingels schingels-PC => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2014-09-16] (Microsoft Corporation) Task: {A301327C-9C30-4237-A79A-22BC22EA3E8B} - System32\Tasks\Wise Care 365 => C:\Program Files (x86)\Wise\Wise Care 365\WiseTray.exe [2014-07-18] (WiseCleaner.com) Task: {A520D054-C138-488D-B603-C134313F10CE} - System32\Tasks\{4C385B33-91AE-40F5-891A-8231887D2EF0} => Firefox.exe Task: {ABAA8D8C-81F4-4B65-BDA8-6408D8CB56C8} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe Task: {B4639BAA-57B3-489A-8A8D-0045600A6723} - System32\Tasks\{4565DE98-4314-48CE-B670-D1CA4F40EB2F} => D:\Users\Downloads\DAVSRV.EXE [2011-11-21] (1&1 Internet AG) Task: {BA62A6F4-7E91-49F6-997A-6F856A4D75BC} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-11-12] (Adobe Systems Incorporated) Task: {BE89B061-6535-46E1-BED2-443CF0A7EC8B} - System32\Tasks\{2E0A5BC6-3A1C-4594-A5D9-03B1D54913D7} => D:\Users\Backup Handy\Mobile Partner\Mobile Partner.exe [2014-09-27] () Task: {C3D8D876-B1FC-457C-8A98-BAF968F8A828} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 => C:\Program Files (x86)\AVG\AVG PC TuneUp\OneClick.exe [2014-10-17] (AVG Technologies) Task: {C5ED3241-CC04-4E85-B37D-1B2B693650E5} - System32\Tasks\ACMON => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2010-08-02] (ASUS) Task: {CFEAFC92-97D9-4C33-99B3-C10168CD7245} - System32\Tasks\Uninstaller_SkipUac_schingels => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [2014-11-11] (IObit) Task: {D152B3E6-095E-41D0-A4E5-CC2999012C57} - System32\Tasks\Apple Diagnostics => C:\Program Files (x86)\Common Files\Apple\Internet Services\EReporter.exe Task: {D1B8D3EE-3FD3-4163-86CA-B3803A600D9C} - System32\Tasks\ASUS P4G => C:\Program Files\P4G\BatteryLife.exe [2011-06-01] (ASUS) Task: {D406C7FA-24A7-47DC-9F42-A33FAF13EEAC} - System32\Tasks\AdvancedDriverUpdaterRunAtStartup => C:\Program Files (x86)\Advanced Driver Updater\adu.exe Task: {E48CE7A2-11BF-465B-9EF4-4C3797CAD2AF} - System32\Tasks\{C6602E39-CEE7-453F-8873-21F65A16150A} => Firefox.exe Task: {E7CCAB70-1251-4BEB-AD08-8ABAD64020A0} - System32\Tasks\{B0E86049-C9E4-4FB7-81CD-7112024A96B8} => C:\Users\schingels\Desktop\Downloads\World-of-Warcraft-Setup-deDE.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\Wise Care 365.job => C:\Program Files (x86)\Wise\Wise Care 365\WiseTray.exe Task: C:\Windows\Tasks\Wise Turbo Checker.job => C:\Program Files (x86)\Wise\Wise Care 365\WiseTurbo.exe ==================== Loaded Modules (whitelisted) ============= 2012-10-07 21:09 - 2013-03-15 05:16 - 00086304 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2014-03-21 04:30 - 2014-05-20 08:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2011-03-14 16:27 - 2011-03-14 16:27 - 00346976 _____ () C:\ProgramData\DatacardService\HWDeviceService64.exe 2014-09-27 18:44 - 2014-09-27 18:43 - 00239968 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\ouc.exe 2014-10-17 12:34 - 2014-10-17 12:34 - 00699704 _____ () C:\Program Files (x86)\AVG\AVG PC TuneUp\avgrepliba.dll 2014-10-17 12:34 - 2014-10-17 12:34 - 00835896 _____ () C:\Program Files (x86)\AVG\AVG PC TuneUp\tulnga.dll 2011-06-20 15:01 - 2011-03-26 08:29 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2014-07-09 08:22 - 2014-07-02 09:13 - 01427736 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\mshaktuell.exe 2010-11-30 00:04 - 2010-11-30 00:04 - 00403968 _____ () C:\Program Files\Intel\TurboBoost\de\SignalIslandUi.resources.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00514048 _____ () D:\Users\Backup Handy\Mobile Partner\Mobile Partner.exe 2014-09-27 18:44 - 2014-09-27 18:43 - 00011362 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\mingwm10.dll 2014-09-27 18:44 - 2014-09-27 18:43 - 00043008 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\libgcc_s_dw2-1.dll 2014-09-27 18:44 - 2014-09-27 18:43 - 02415104 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\QtCore4.dll 2014-09-27 18:44 - 2014-09-27 18:43 - 01148416 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\QtNetwork4.dll 2014-09-27 18:44 - 2014-09-27 18:43 - 00383488 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\QueryStrategy.dll 2014-09-27 18:44 - 2014-09-27 18:43 - 00398336 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\QtXml4.dll 2014-10-09 09:52 - 2014-10-09 09:52 - 00081056 _____ () C:\Users\schingels\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\LoggingPlatform.dll 2014-10-09 09:52 - 2014-10-09 09:52 - 00081056 _____ () C:\Users\schingels\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\LoggingPlatform.DLL 2014-07-09 08:16 - 2014-07-02 09:13 - 09789208 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\wgui14.dll 2014-07-09 08:17 - 2014-07-02 09:13 - 00035608 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\rsdcom48.dll 2014-07-09 08:17 - 2014-07-02 09:13 - 00309016 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\rscorewinapi48.dll 2014-07-09 08:17 - 2014-07-02 09:13 - 00322840 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\rsguiwinapi48.dll 2014-07-09 08:16 - 2014-07-02 09:14 - 03880216 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\wcore14.dll 2014-07-09 08:17 - 2014-07-02 09:13 - 00136472 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\rsodbc48.dll 2014-07-09 08:16 - 2014-07-02 09:13 - 02738456 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\wfvie14.dll 2014-07-09 08:16 - 2014-07-02 09:13 - 02116376 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\wsteu14.dll 2014-07-09 08:16 - 2014-07-02 09:13 - 01932568 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\wreli14.dll 2014-07-09 08:16 - 2014-07-02 09:13 - 04326168 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\wauff14.dll 2014-07-09 08:16 - 2014-02-11 10:53 - 01043456 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\clucene-core.dll 2014-07-09 08:16 - 2014-02-11 10:53 - 00094720 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\clucene-shared.dll 2014-07-09 08:16 - 2014-02-11 10:53 - 00250368 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\clucene-contribs-lib.dll 2014-07-09 08:16 - 2014-07-02 09:13 - 01564952 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\wmain14.dll 2014-07-09 08:16 - 2014-07-02 09:13 - 05291288 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\wbae114.dll 2014-07-09 08:16 - 2014-07-02 09:13 - 01698584 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\wbae214.dll 2014-07-09 08:16 - 2014-07-02 09:13 - 01809688 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\wbae314.dll 2014-07-09 08:16 - 2014-07-02 09:13 - 01627928 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\wbae414.dll 2014-07-09 08:16 - 2014-07-02 09:13 - 01117976 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\whau114.dll 2014-07-09 08:16 - 2014-07-02 09:13 - 01341208 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\whau214.dll 2014-07-09 08:16 - 2014-07-02 09:13 - 01309464 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\wwerb14.dll 2014-07-09 08:16 - 2014-07-09 08:44 - 07340824 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\wkont14.dll 2014-07-09 08:16 - 2014-07-02 09:13 - 01286936 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\wimp14.dll 2014-07-09 08:16 - 2014-07-02 09:13 - 01331480 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\wfabu14.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00427008 _____ () D:\Users\Backup Handy\Mobile Partner\core.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00264192 _____ () D:\Users\Backup Handy\Mobile Partner\sdk.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00011362 _____ () D:\Users\Backup Handy\Mobile Partner\mingwm10.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00043008 _____ () D:\Users\Backup Handy\Mobile Partner\libgcc_s_dw2-1.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 02415104 _____ () D:\Users\Backup Handy\Mobile Partner\QtCore4.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 09515520 _____ () D:\Users\Backup Handy\Mobile Partner\QtGui4.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00382464 _____ () D:\Users\Backup Handy\Mobile Partner\Proxy.DLL 2014-09-27 18:43 - 2014-09-27 18:43 - 00218112 _____ () D:\Users\Backup Handy\Mobile Partner\Common.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00135168 _____ () D:\Users\Backup Handy\Mobile Partner\Trace.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00545280 _____ () D:\Users\Backup Handy\Mobile Partner\PluginContainer.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00238080 _____ () D:\Users\Backup Handy\Mobile Partner\AtCodec.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00301056 _____ () D:\Users\Backup Handy\Mobile Partner\DeviceSrvPlugin.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00237568 _____ () D:\Users\Backup Handy\Mobile Partner\NetSrvPlugin.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00133120 _____ () D:\Users\Backup Handy\Mobile Partner\OSDialup.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00159744 _____ () D:\Users\Backup Handy\Mobile Partner\XCodec.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00157184 _____ () D:\Users\Backup Handy\Mobile Partner\DataServicePlugin.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00176128 _____ () D:\Users\Backup Handy\Mobile Partner\CallSrvPlugin.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00264704 _____ () D:\Users\Backup Handy\Mobile Partner\AddrBookSrvPlugin.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00217600 _____ () D:\Users\Backup Handy\Mobile Partner\SmsSrvPlugin.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00142336 _____ () D:\Users\Backup Handy\Mobile Partner\USSDSrvPlugin.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00156672 _____ () D:\Users\Backup Handy\Mobile Partner\STKSrvPlugin.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00338432 _____ () D:\Users\Backup Handy\Mobile Partner\DeviceAppPlugin.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00065536 _____ () D:\Users\Backup Handy\Mobile Partner\OSPowerMgr.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00114688 _____ () D:\Users\Backup Handy\Mobile Partner\Win7Support.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 01078272 _____ () D:\Users\Backup Handy\Mobile Partner\AddrBookPlugin.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00670720 _____ () D:\Users\Backup Handy\Mobile Partner\SmsAppPlugin.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00550400 _____ () D:\Users\Backup Handy\Mobile Partner\CallAppPlugin.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00547840 _____ () D:\Users\Backup Handy\Mobile Partner\CallLogSrvPlugin.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00158720 _____ () D:\Users\Backup Handy\Mobile Partner\NetConnectSrvPlugin.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00211968 _____ () D:\Users\Backup Handy\Mobile Partner\DialUpPlugin.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00101376 _____ () D:\Users\Backup Handy\Mobile Partner\OSAdapt.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00180224 _____ () D:\Users\Backup Handy\Mobile Partner\NDISPlugin.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00131072 _____ () D:\Users\Backup Handy\Mobile Partner\OSNDIS.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 01101824 _____ () D:\Users\Backup Handy\Mobile Partner\NDISAPI.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00278528 _____ () D:\Users\Backup Handy\Mobile Partner\NetInfoSrvPlugin.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00062976 _____ () D:\Users\Backup Handy\Mobile Partner\OSCall.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00538624 _____ () D:\Users\Backup Handy\Mobile Partner\DeviceMgrUIPlugin.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00398336 _____ () D:\Users\Backup Handy\Mobile Partner\QtXml4.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00184832 _____ () D:\Users\Backup Handy\Mobile Partner\XFramePlugin.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00123392 _____ () D:\Users\Backup Handy\Mobile Partner\ATR2SMgr.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00307200 _____ () D:\Users\Backup Handy\Mobile Partner\StatusBarMgrPlugin.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00117760 _____ () D:\Users\Backup Handy\Mobile Partner\LayoutPlugin.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00441856 _____ () D:\Users\Backup Handy\Mobile Partner\DialupUIPlugin.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00093184 _____ () D:\Users\Backup Handy\Mobile Partner\NotifyServicePlugin.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00333824 _____ () D:\Users\Backup Handy\Mobile Partner\NetConnectPlugin.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00295424 _____ () D:\Users\Backup Handy\Mobile Partner\MenuMgrPlugin.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00391168 _____ () D:\Users\Backup Handy\Mobile Partner\USSDUIPlugin.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00484352 _____ () D:\Users\Backup Handy\Mobile Partner\NetInfoUIExPlugin.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00823808 _____ () D:\Users\Backup Handy\Mobile Partner\SMSUIPlugin.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00771072 _____ () D:\Users\Backup Handy\Mobile Partner\AddrBookUIPlugin.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00209408 _____ () D:\Users\Backup Handy\Mobile Partner\ToolBarMgrPlugin.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00263168 _____ () D:\Users\Backup Handy\Mobile Partner\LiveUpdateInterface.DLL 2014-09-27 18:43 - 2014-09-27 18:43 - 01148416 _____ () D:\Users\Backup Handy\Mobile Partner\QtNetwork4.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00082944 _____ () D:\Users\Backup Handy\Mobile Partner\plugins\imageformats\qgif4.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00081920 _____ () D:\Users\Backup Handy\Mobile Partner\plugins\imageformats\qico4.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00192000 _____ () D:\Users\Backup Handy\Mobile Partner\plugins\imageformats\qjpeg4.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00350720 _____ () D:\Users\Backup Handy\Mobile Partner\plugins\imageformats\qmng4.dll 2014-09-27 18:43 - 2014-09-27 18:43 - 00370176 _____ () D:\Users\Backup Handy\Mobile Partner\plugins\imageformats\qtiff4.dll 2014-10-17 09:21 - 2014-10-17 09:21 - 00169472 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\9b1cac8d98bd69d3e56a26ff2f96f266\IsdiInterop.ni.dll 2011-11-23 15:22 - 2011-01-13 02:56 - 00058880 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll 2014-09-27 08:32 - 2014-09-27 08:32 - 00316576 _____ () C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\AppVIsvStream32.dll 2014-11-21 09:58 - 2014-11-14 03:42 - 03649648 _____ () D:\Bildschirmarbeitsplatz\mozjs.dll 2014-11-12 15:00 - 2014-11-12 15:32 - 16840880 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_223.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\ProgramData\Temp:373E1720 ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Driver" ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) MSCONFIG\startupreg: ASUS Screen Saver Protector => C:\Windows\AsScrPro.exe MSCONFIG\startupreg: ATKMEDIA => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe MSCONFIG\startupreg: ATKOSD2 => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe MSCONFIG\startupreg: CLMLServer => "C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe" MSCONFIG\startupreg: DivXUpdate => "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW MSCONFIG\startupreg: HControlUser => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe MSCONFIG\startupreg: RtHDVCpl => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s MSCONFIG\startupreg: UpdateLBPShortCut => "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5" MSCONFIG\startupreg: UpdateP2GoShortCut => "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0" MSCONFIG\startupreg: Wireless Console 3 => C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe ========================= Accounts: ========================== Administrator (S-1-5-21-733679015-3351541572-3055150241-500 - Administrator - Disabled) Gast (S-1-5-21-733679015-3351541572-3055150241-501 - Limited - Enabled) HomeGroupUser$ (S-1-5-21-733679015-3351541572-3055150241-1006 - Limited - Enabled) schingels (S-1-5-21-733679015-3351541572-3055150241-1001 - Administrator - Enabled) => C:\Users\schingels UpdatusUser (S-1-5-21-733679015-3351541572-3055150241-1005 - Limited - Enabled) => C:\Users\UpdatusUser ==================== Faulty Device Manager Devices ============= Name: Netzwerkcontroller Description: Netzwerkcontroller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: USB2.0-CRW Description: USB2.0-CRW Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: USB2.0 0.3M UVC WebCam Description: USB-Videogerät Class Guid: {6bdd1fc6-810f-11d0-bec7-08002be2092f} Manufacturer: Microsoft Service: usbvideo Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (11/20/2014 00:00:51 PM) (Source: Microsoft Office 15) (EventID: 2011) (User: ) Description: Office Subscription licensing exception: Error Code: 0x803D0006; CorrelationId: {D101440E-1D16-4C0B-98E5-FD189C96CD23} Error: (11/20/2014 11:30:39 AM) (Source: Microsoft Office 15) (EventID: 2011) (User: ) Description: Office Subscription licensing exception: Error Code: 0x803D0006; CorrelationId: {AEFB2FB5-481F-45F7-A11C-8271DBD855C7} Error: (11/17/2014 08:11:44 PM) (Source: Microsoft Office 15) (EventID: 2011) (User: ) Description: Office Subscription licensing exception: Error Code: 0x803D0010; CorrelationId: {395AF718-CD46-475F-8C27-2319E04250F6} Error: (11/17/2014 08:11:44 PM) (Source: Microsoft Office 15) (EventID: 2011) (User: ) Description: Office Subscription licensing exception: Error Code: 0x803D0010; CorrelationId: {395AF718-CD46-475F-8C27-2319E04250F6} Error: (11/17/2014 09:47:27 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm iac3.exe, Version 3.2.0.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 3ac Startzeit: 01d0023f9d683db4 Endzeit: 11 Anwendungspfad: D:\Users\Downloads\Ashampoo Internet Accelerator 3\iac3.exe Berichts-ID: 47b84435-6e36-11e4-9afa-001e101f2c0e Error: (11/16/2014 07:21:00 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: qcshm.exe, Version: 12.8.707.0, Zeitstempel: 0x51f8912a Name des fehlerhaften Moduls: qcshm.exe, Version: 12.8.707.0, Zeitstempel: 0x51f8912a Ausnahmecode: 0x40000015 Fehleroffset: 0x00000000000513ad ID des fehlerhaften Prozesses: 0xd5c Startzeit der fehlerhaften Anwendung: 0xqcshm.exe0 Pfad der fehlerhaften Anwendung: qcshm.exe1 Pfad des fehlerhaften Moduls: qcshm.exe2 Berichtskennung: qcshm.exe3 Error: (11/16/2014 07:17:22 PM) (Source: Windows Search Service) (EventID: 7010) (User: ) Description: Der Index kann nicht initialisiert werden. Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (11/16/2014 07:17:22 PM) (Source: Windows Search Service) (EventID: 3058) (User: ) Description: Die Anwendung kann nicht initialisiert werden. Kontext: Windows Anwendung Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (11/16/2014 07:17:22 PM) (Source: Windows Search Service) (EventID: 3028) (User: ) Description: Das Gatherer-Objekt kann nicht initialisiert werden. Kontext: Windows Anwendung, SystemIndex Katalog Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (11/16/2014 07:17:22 PM) (Source: Windows Search Service) (EventID: 3029) (User: ) Description: Plug-In in <Search.TripoliIndexer> kann nicht initialisiert werden. Kontext: Windows Anwendung, SystemIndex Katalog Details: Element nicht gefunden. (HRESULT : 0x80070490) (0x80070490) System errors: ============= Error: (11/21/2014 10:50:00 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "DNS-Client" wurde mit folgendem Fehler beendet: %%2 Error: (11/21/2014 10:49:58 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "DNS-Client" wurde mit folgendem Fehler beendet: %%2 Error: (11/21/2014 10:49:58 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "DNS-Client" wurde mit folgendem Fehler beendet: %%2 Error: (11/21/2014 10:49:58 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "DNS-Client" wurde mit folgendem Fehler beendet: %%2 Error: (11/21/2014 10:49:58 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "DNS-Client" wurde mit folgendem Fehler beendet: %%2 Error: (11/21/2014 10:49:58 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "DNS-Client" wurde mit folgendem Fehler beendet: %%2 Error: (11/21/2014 10:49:58 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "DNS-Client" wurde mit folgendem Fehler beendet: %%2 Error: (11/21/2014 10:49:58 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "DNS-Client" wurde mit folgendem Fehler beendet: %%2 Error: (11/21/2014 10:49:58 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "DNS-Client" wurde mit folgendem Fehler beendet: %%2 Error: (11/21/2014 10:49:58 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "DNS-Client" wurde mit folgendem Fehler beendet: %%2 Microsoft Office Sessions: ========================= Error: (11/20/2014 00:00:51 PM) (Source: Microsoft Office 15) (EventID: 2011) (User: ) Description: Office Subscription licensing exception: Error Code: 0x803D0006; CorrelationId: {D101440E-1D16-4C0B-98E5-FD189C96CD23} Error: (11/20/2014 11:30:39 AM) (Source: Microsoft Office 15) (EventID: 2011) (User: ) Description: Office Subscription licensing exception: Error Code: 0x803D0006; CorrelationId: {AEFB2FB5-481F-45F7-A11C-8271DBD855C7} Error: (11/17/2014 08:11:44 PM) (Source: Microsoft Office 15) (EventID: 2011) (User: ) Description: Office Subscription licensing exception: Error Code: 0x803D0010; CorrelationId: {395AF718-CD46-475F-8C27-2319E04250F6} Error: (11/17/2014 08:11:44 PM) (Source: Microsoft Office 15) (EventID: 2011) (User: ) Description: Office Subscription licensing exception: Error Code: 0x803D0010; CorrelationId: {395AF718-CD46-475F-8C27-2319E04250F6} Error: (11/17/2014 09:47:27 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: iac3.exe3.2.0.03ac01d0023f9d683db411D:\Users\Downloads\Ashampoo Internet Accelerator 3\iac3.exe47b84435-6e36-11e4-9afa-001e101f2c0e Error: (11/16/2014 07:21:00 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: qcshm.exe12.8.707.051f8912aqcshm.exe12.8.707.051f8912a4000001500000000000513add5c01d001ca0d5d5531c:\PROGRA~1\mcafee\mqs\qcshm.exec:\PROGRA~1\mcafee\mqs\qcshm.exe5084737b-6dbd-11e4-9afa-001e101f2c0e Error: (11/16/2014 07:17:22 PM) (Source: Windows Search Service) (EventID: 7010) (User: ) Description: Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (11/16/2014 07:17:22 PM) (Source: Windows Search Service) (EventID: 3058) (User: ) Description: Kontext: Windows Anwendung Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (11/16/2014 07:17:22 PM) (Source: Windows Search Service) (EventID: 3028) (User: ) Description: Kontext: Windows Anwendung, SystemIndex Katalog Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (11/16/2014 07:17:22 PM) (Source: Windows Search Service) (EventID: 3029) (User: ) Description: Kontext: Windows Anwendung, SystemIndex Katalog Details: Element nicht gefunden. (HRESULT : 0x80070490) (0x80070490) Search.TripoliIndexer CodeIntegrity Errors: =================================== Date: 2014-11-20 21:57:42.067 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Alle geladene Programme\Program Files\Program Files\Common Files\McAfee\VSCore\mfeelamk.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-11-20 21:57:42.065 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Alle geladene Programme\Program Files\Program Files\Common Files\McAfee\VSCore\mfeelamk.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-11-20 21:57:42.062 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Alle geladene Programme\Program Files\Program Files\Common Files\McAfee\VSCore\mfeelamk.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-11-20 21:57:42.009 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Alle geladene Programme\Program Files\Program Files\Common Files\McAfee\VSCore\mfeelamk.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-11-20 21:53:07.261 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Alle geladene Programme\Program Files\Common Files\Mcafee\VSCore\mfeelamk.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-11-20 21:53:07.259 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Alle geladene Programme\Program Files\Common Files\Mcafee\VSCore\mfeelamk.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-11-20 21:53:07.257 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Alle geladene Programme\Program Files\Common Files\Mcafee\VSCore\mfeelamk.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-11-20 21:53:07.202 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Alle geladene Programme\Program Files\Common Files\Mcafee\VSCore\mfeelamk.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-11-14 17:27:47.323 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Alle geladene Programme\Program Files\Program Files\Common Files\McAfee\VSCore\mfeelamk.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-11-14 17:27:47.320 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Alle geladene Programme\Program Files\Program Files\Common Files\McAfee\VSCore\mfeelamk.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i7-2670QM CPU @ 2.20GHz Percentage of memory in use: 35% Total physical RAM: 8100.97 MB Available physical RAM: 5227.41 MB Total Pagefile: 16200.13 MB Available Pagefile: 13150.63 MB Total Virtual: 8192 MB Available Virtual: 8191.84 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:300.41 GB) (Free:241.22 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: (DATA) (Fixed) (Total:215.5 GB) (Free:182.02 GB) NTFS Drive e: (CHIP) (CDROM) (Total:1.73 GB) (Free:0 GB) UDF Drive f: (Mobile Partner) (CDROM) (Total:0.03 GB) (Free:0 GB) CDFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 698.6 GB) (Disk ID: AE14F3C6) Partition 1: (Not Active) - (Size=25 GB) - (Type=1C) Partition 2: (Active) - (Size=300.4 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=215.5 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=157.7 GB) - (Type=BC) ==================== End Of Log ============================ |
22.11.2014, 08:55 | #20 |
/// the machine /// TB-Ausbilder | lollipop werde ich nicht los, trotz Einsatz aller angeblich so tollen Antiviernprogramme postiver Erkennung unter "Schrauber " Fertig Die Reihenfolge ist hier entscheidend.
Falls Du Lob oder Kritik abgeben möchtest kannst Du das hier tun Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
23.11.2014, 20:37 | #21 |
| lollipop werde ich nicht los, trotz Einsatz aller angeblich so tollen Antiviernprogramme postiver Erkennung unter "Schrauber " Hallo Schrauber danke, ich werde alle Vorschläge abarbeiten und umsetzen ud hoffe, dass ich in Zukunft mehr Glück habe. fg Günther Göttling |
24.11.2014, 18:04 | #22 |
/// the machine /// TB-Ausbilder | lollipop werde ich nicht los, trotz Einsatz aller angeblich so tollen Antiviernprogramme postiver Erkennung unter "Schrauber " Gern Geschehen
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu lollipop werde ich nicht los, trotz Einsatz aller angeblich so tollen Antiviernprogramme postiver Erkennung unter "Schrauber " |
antivier, erkennung, fehlercode 0x40000015, fehlercode 0x80000003, fehlercode 0x80070490, fehlercode 22, fehlercode 28, fehlercode windows, internetseite, lollipop network entfernen, loszuwerden, snap.do entfernen, spyhunter entfernen, this device is disabled. (code 22), änderung |