FRST
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 08-08-2013
Ran by Luca (administrator) on 08-08-2013 00:29:09
Running from C:\Users\Luca\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(AVM Berlin) C:\Program Files (x86)\avmwlanstick\WlanNetService.exe
(DeviceVM, Inc.) C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files\Microsoft LifeCam\MSCamS64.exe
(Symantec Corporation) C:\Program Files (x86)\Norton PC Checkup 3.0\SymcPCCULaunchSvc.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesApp64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(
ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\EPU\EPU.exe
(DeviceVM, Inc.) C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe
(AVM Berlin) C:\Program Files (x86)\avmwlanstick\WLanGUI.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Sun Microsystems, Inc.) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Microsoft Corporation) C:\Windows\sysWOW64\wbem\wmiprvse.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesApp64.exe
(
ASUSTeK Computer Inc.) C:\Program Files\ASUS\GPU Boost Driver\GpuBoostServer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Media Finder) C:\Program Files (x86)\Media Finder\Media Finder.exe
(
ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\EPU\EPU.exe
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
(DeviceVM, Inc.) C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe
(AVM Berlin) C:\Program Files (x86)\avmwlanstick\WLanGUI.exe
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Sun Microsystems, Inc.) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avcenter.exe
(Simply Super Software) C:\Program Files (x86)\Trojan Remover\Rmvtrjan.exe
(Simply Super Software) C:\Program Files (x86)\Trojan Remover\Rmvtrjan.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6548112 2012-06-12] (Realtek Semiconductor)
HKCU\...\Run: [msnmsgr] - C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe [4280184 2012-03-08] (Microsoft Corporation)
HKCU\...\Run: [Google Update] - C:\Users\Luca\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2012-09-15] (Google Inc.)
HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [19875432 2013-06-21] (Skype Technologies S.A.)
HKCU\...\Run: [GoogleDriveSync] - C:\Program Files (x86)\Google\Drive\googledrivesync.exe [19676256 2013-06-06] (Google)
HKCU\...\Run: [NTRedirect] - C:\Users\Luca\AppData\Roaming\BabSolution\Shared\NTRedirect.dll [121856 2013-07-18] () <===== ATTENTION
HKCU\...\Run: [Media Finder] - C:\Program Files (x86)\Media Finder\Media Finder.exe [9177600 2013-02-27] (Media Finder)
HKLM-x32\...\Run: [Six Engine] - C:\Program Files (x86)\ASUS\EPU\EPU.exe [5309056 2010-06-14] (
ASUSTeK Computer Inc.)
HKLM-x32\...\Run: [BCU] - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe [411864 2010-03-05] (DeviceVM, Inc.)
HKLM-x32\...\Run: [AVMWlanClient] - C:\Program Files (x86)\avmwlanstick\wlangui.exe [2105344 2010-10-22] (AVM Berlin)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-01-28] (Apple Inc.)
HKLM-x32\...\Run: [LifeCam] - C:\Program Files (x86)\Microsoft LifeCam\LifeExp.exe [119152 2010-05-20] (Microsoft Corporation)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-02-20] (Apple Inc.)
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [345144 2013-06-27] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [252848 2012-07-03] (Sun Microsystems, Inc.)
HKLM-x32\...\Run: [NetworkSaver] - C:\Windows\Temp\temp17.exe [1221269 2012-10-02] (Microsoft Corporation)
HKLM-x32\...\Run: [TrojanScanner] - C:\Program Files (x86)\Trojan Remover\Trjscan.exe [1655568 2013-07-19] (Simply Super Software)
HKU\UpdatusUser\...\Run: [Steam] - C:\Program Files (x86)\Steam\Steam.exe [1635752 2013-05-04] (Valve Corporation)
HKU\UpdatusUser\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [19875432 2013-06-21] (Skype Technologies S.A.)
HKU\UpdatusUser\...\Run: [msnmsgr] - C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe [4280184 2012-03-08] (Microsoft Corporation)
HKU\UpdatusUser\...\Run: [swg] - "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [x]
HKU\UpdatusUser\...\Run: [DriverBoost] - C:\Program Files (x86)\DriverBoost\DriverBoost\DriverBoost.exe /applicationMode:systemTray /showWelcome:false [x]
AppInit_DLLs: [0 ] ()
Startup: C:\Users\Luca\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.4.1.lnk
ShortcutTarget: OpenOffice.org 3.4.1.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.qvo6.com/?utm_source=b&utm_medium=amt&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WCAYUJH4695446954&ts=1375905593
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.qvo6.com/?utm_source=b&utm_medium=amt&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WCAYUJH4695446954&ts=1375905593
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.qvo6.com/?utm_source=b&utm_medium=amt&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WCAYUJH4695446954&ts=1375905593
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.qvo6.com/?utm_source=b&utm_medium=amt&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WCAYUJH4695446954&ts=1375905593
URLSearchHook: SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch64.dll (DeviceVM, Inc.)
URLSearchHook: (No Name) - {40c3cc16-7269-4b32-9531-17f2950fb06f} - No File
URLSearchHook: (No Name) - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - No File
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://search.qvo6.com/web/?utm_source=b&utm_medium=amt&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WCAYUJH4695446954&ts=1375905593
SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://search.qvo6.com/web/?utm_source=b&utm_medium=amt&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WCAYUJH4695446954&ts=1375905593
SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&appid=392&systemid=406&sr=0&q={searchTerms}
SearchScopes: HKLM-x32 - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://search.qvo6.com/web/?utm_source=b&utm_medium=amt&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WCAYUJH4695446954&ts=1375905593
SearchScopes: HKLM-x32 - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://search.qvo6.com/web/?utm_source=b&utm_medium=amt&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WCAYUJH4695446954&ts=1375905593
SearchScopes: HKLM-x32 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&appid=392&systemid=406&sr=0&q={searchTerms}
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://www1.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=C259001C4AFAB2EF&affID=121564&tsp=4958
SearchScopes: HKCU - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://search.qvo6.com/web/?utm_source=b&utm_medium=amt&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WCAYUJH4695446954&ts=1375905593
SearchScopes: HKCU - {400C787A-D626-4b41-9DAF-605A9EE34767} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=EGMB
SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&appid=392&systemid=406&sr=0&q={searchTerms}
SearchScopes: HKCU - {AFBCB7E0-F91A-4951-9F31-58FEE57A25C4} URL = hxxp://int.search-results.com/web?q={SEARCHTERMS}&o=15527&l=dis&prt=NIS&chn=retail&geo=DE&ver=19
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~3\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: DVDVideoSoftTB Toolbar - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files (x86)\DVDVideoSoftTB\prxtbDVDV.dll (Conduit Ltd.)
BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - No Name - !{10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - No File
Toolbar: HKLM - No Name - !{872b5b88-9db5-4310-bdd0-ac189557e5f5} - No File
Toolbar: HKLM - No Name - !{98889811-442D-49dd-99D7-DC866BE87DBC} - No File
Toolbar: HKLM-x32 - No Name - {DFEFCDEE-CF1A-4FC8-88AD-129872198372} - No File
Toolbar: HKLM-x32 - No Name - !{10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - No File
Toolbar: HKLM-x32 - No Name - !{872b5b88-9db5-4310-bdd0-ac189557e5f5} - No File
Toolbar: HKLM-x32 - No Name - !{98889811-442D-49dd-99D7-DC866BE87DBC} - No File
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
FireFox:
========
FF ProfilePath: C:\Users\Luca\AppData\Roaming\Mozilla\Firefox\Profiles\slcibg4f.default
FF user.js: detected! => C:\Users\Luca\AppData\Roaming\Mozilla\Firefox\Profiles\slcibg4f.default\user.js
FF SelectedSearchEngine: user_pref("browser.search.selectedEngine", "");
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB)
FF Plugin-x32: @esn/esnlaunch,version=1.122.0 - C:\Program Files (x86)\Battlelog Web Plugins\1.122.0\npesnlaunch.dll No File
FF Plugin-x32: @esn/esnlaunch,version=1.140.0 - C:\Program Files (x86)\Battlelog Web Plugins\1.140.0\npesnlaunch.dll (ESN Social Software AB)
FF Plugin-x32: @esn/esnlaunch,version=2.1.2 - C:\Program Files (x86)\Battlelog Web Plugins\2.1.2\npesnlaunch.dll (ESN Social Software AB)
FF Plugin-x32: @java.com/DTPlugin,version=10.17.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.17.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.2 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Luca\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Luca\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Luca\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF SearchPlugin: C:\Users\Luca\AppData\Roaming\Mozilla\Firefox\Profiles\slcibg4f.default\searchplugins\babylon.xml
FF SearchPlugin: C:\Users\Luca\AppData\Roaming\Mozilla\Firefox\Profiles\slcibg4f.default\searchplugins\browsemngr.xml
FF SearchPlugin: C:\Users\Luca\AppData\Roaming\Mozilla\Firefox\Profiles\slcibg4f.default\searchplugins\delta.xml
FF SearchPlugin: C:\Users\Luca\AppData\Roaming\Mozilla\Firefox\Profiles\slcibg4f.default\searchplugins\safesearch.xml
FF SearchPlugin: C:\Users\Luca\AppData\Roaming\Mozilla\Firefox\Profiles\slcibg4f.default\searchplugins\sweetim.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\qvo6.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\Search_Results.xml
FF Extension: No Name - C:\Users\Luca\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
FF Extension: ProxTube - Gesperrte YouTube Videos entsperren - C:\Users\Luca\AppData\Roaming\Mozilla\Firefox\Profiles\slcibg4f.default\Extensions\ich@maltegoetz.de
FF Extension: firebug - C:\Users\Luca\AppData\Roaming\Mozilla\Firefox\Profiles\slcibg4f.default\Extensions\firebug@software.joehewitt.com.xpi
FF Extension: pagehacker-nico - C:\Users\Luca\AppData\Roaming\Mozilla\Firefox\Profiles\slcibg4f.default\Extensions\pagehacker-nico@nc.xpi
FF Extension: No Name - C:\Users\Luca\AppData\Roaming\Mozilla\Firefox\Profiles\slcibg4f.default\Extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi
FF Extension: No Name - C:\Users\Luca\AppData\Roaming\Mozilla\Firefox\Profiles\slcibg4f.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF Extension: QuickStores-Toolbar - C:\Program Files (x86)\Mozilla Firefox\extensions\quickstores@quickstores.de
FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF HKLM-x32\...\Firefox\Extensions: [{ACAA314B-EEBA-48e4-AD47-84E31C44796C}] C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff\
FF StartMenuInternet: FIREFOX.EXE - C:\Program Files (x86)\Mozilla Firefox\firefox.exe hxxp://www.qvo6.com/?utm_source=b&utm_medium=amt&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WCAYUJH4695446954&ts=1375905593
Chrome:
=======
CHR Extension: (Google Drive) - C:\Users\Luca\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0
CHR Extension: (YouTube) - C:\Users\Luca\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\Users\Luca\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (Delta Toolbar) - C:\Users\Luca\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde\1.4_0
CHR Extension: (AdBlock) - C:\Users\Luca\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.2_0
CHR Extension: (Gmail) - C:\Users\Luca\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1
CHR HKLM-x32\...\Chrome\Extension: [dednnpigldgdbpgcdpfppmlcnnbjciel] - C:\Users\Luca\AppData\Roaming\Media Finder\Extensions\gencrawler_gc.crx
CHR HKLM-x32\...\Chrome\Extension: [eooncjejnppfjjklapaamhcdmjbilmde] - C:\Users\Luca\AppData\Roaming\BabSolution\CR\Delta.crx
CHR HKLM-x32\...\Chrome\Extension: [jcdgjdiieiljkfkdcloehkohchhpekkn] - C:\Users\Luca\AppData\Local\Google\Chrome\User Data\Default\External Extensions\{EEE6C373-6118-11DC-9C72-001320C79847}\SweetFB.crx
CHR HKLM-x32\...\Chrome\Extension: [lpmkgpnbiojfaoklbkpfneikocaobfai] - C:\Users\Luca\AppData\Roaming\Media Finder\Extensions\mf_plugin_gc.crx
CHR StartMenuInternet: Google Chrome - C:\Users\Luca\AppData\Local\Google\Chrome\Application\chrome.exe hxxp://www.qvo6.com/?utm_source=b&utm_medium=amt&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WCAYUJH4695446954&ts=1375905593
==================== Services (Whitelisted) =================
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-06-27] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-06-27] (Avira Operations GmbH & Co. KG)
R2 AVM WLAN Connection Service; C:\Program Files (x86)\avmwlanstick\WlanNetService.exe [376832 2010-10-22] (AVM Berlin)
R2 Norton PC Checkup Application Launcher; C:\Program Files (x86)\Norton PC Checkup 3.0\SymcPCCULaunchSvc.exe [132056 2012-07-17] (Symantec Corporation)
R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2012-07-02] ()
R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe [2402080 2013-01-28] (TuneUp Software)
==================== Drivers (Whitelisted) ====================
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2009-08-04] ()
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2009-08-04] ()
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [100712 2013-03-28] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [130016 2013-03-28] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-03-28] (Avira Operations GmbH & Co. KG)
S3 avmeject; C:\Windows\System32\drivers\avmeject.sys [14120 2010-10-22] (AVM Berlin)
R2 cpuz135; C:\Windows\system32\drivers\cpuz135_x64.sys [21992 2011-09-21] (CPUID)
R3 fwlanusbn; C:\Windows\System32\DRIVERS\fwlanusbn.sys [714368 2010-10-22] (AVM GmbH)
R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [15416 2009-07-17] ()
R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys [11880 2012-11-16] (TuneUp Software)
S3 ALSysIO; \??\C:\Users\Luca\AppData\Local\Temp\ALSysIO64.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-08-08 00:28 - 2013-08-08 00:28 - 01790059 _____ (Farbar) C:\Users\Luca\Downloads\FRST64.exe
2013-08-08 00:28 - 2013-08-08 00:28 - 00000000 ____D C:\FRST
2013-08-07 23:26 - 2013-08-07 23:26 - 00001916 _____ C:\Users\Luca\Documents\Ereignisse.txt
2013-08-07 23:19 - 2013-08-07 23:35 - 00012405 _____ C:\Users\Luca\Downloads\hijackthis.log
2013-08-07 23:14 - 2013-08-07 23:14 - 00388608 _____ (Trend Micro Inc.) C:\Users\Luca\Downloads\HiJackThis204.exe
2013-08-07 22:39 - 2013-08-07 22:39 - 00000000 ____D C:\Users\Luca2\Documents\Simply Super Software
2013-08-07 22:38 - 2013-08-07 22:38 - 00000000 ____D C:\Users\Luca\Documents\Simply Super Software
2013-08-07 22:38 - 2013-08-07 22:38 - 00000000 ____D C:\Users\Luca\AppData\Roaming\Simply Super Software
2013-08-07 22:38 - 2013-08-07 22:38 - 00000000 ____D C:\ProgramData\Simply Super Software
2013-08-07 22:38 - 2013-08-07 22:38 - 00000000 ____D C:\Program Files (x86)\Trojan Remover
2013-08-07 22:37 - 2013-08-07 22:37 - 23334896 _____ (Simply Super Software ) C:\Users\Luca2\Documents\trjsetup_688.exe
2013-08-07 22:28 - 2013-08-07 22:28 - 00000000 ____D C:\Users\Luca2\AppData\Roaming\TuneUp Software
2013-08-07 22:25 - 2013-08-07 22:25 - 00000000 ____D C:\Users\Luca2\AppData\Roaming\Iminent
2013-08-07 22:25 - 2013-08-07 22:25 - 00000000 ____D C:\Users\Luca\AppData\Local\{862A652C-6E0E-41CE-AEF9-BF56E32F8984}
2013-08-07 22:24 - 2013-08-07 22:24 - 00092560 _____ C:\Users\Luca2\AppData\Local\GDIPFONTCACHEV1.DAT
2013-08-07 22:24 - 2013-08-07 22:24 - 00000000 ____D C:\Users\Luca2\AppData\Roaming\Avira
2013-08-07 22:22 - 2013-08-07 22:22 - 00000000 ____D C:\Users\Luca2\AppData\LocalGoogle
2013-08-07 22:18 - 2013-08-07 22:18 - 00266320 _____ C:\Windows\Minidump\080713-37034-01.dmp
2013-08-07 22:14 - 2013-08-07 22:14 - 00002209 _____ C:\Users\Public\Desktop\TuneUp 1-Klick-Wartung.lnk
2013-08-07 22:14 - 2013-08-07 22:14 - 00002189 _____ C:\Users\Public\Desktop\TuneUp Utilities 2013.lnk
2013-08-07 22:14 - 2013-01-28 14:19 - 00035104 _____ (TuneUp Software) C:\Windows\system32\TURegOpt.exe
2013-08-07 22:14 - 2013-01-28 14:19 - 00026400 _____ (TuneUp Software) C:\Windows\system32\authuitu.dll
2013-08-07 22:14 - 2013-01-28 14:19 - 00021792 _____ (TuneUp Software) C:\Windows\SysWOW64\authuitu.dll
2013-08-07 22:13 - 2013-08-07 22:14 - 00000000 ____D C:\Program Files (x86)\TuneUp Utilities 2013
2013-08-07 22:12 - 2013-08-07 22:13 - 28211040 _____ (TuneUp Software) C:\Users\Luca\Downloads\TuneUpUtilities2013_de-DE.exe
2013-08-07 22:07 - 2013-08-07 22:07 - 00000839 _____ C:\Users\Public\Desktop\Total Uninstall 6.lnk
2013-08-07 22:07 - 2013-08-07 22:07 - 00000000 ____D C:\ProgramData\Martau
2013-08-07 22:07 - 2013-08-07 22:07 - 00000000 ____D C:\Program Files\Total Uninstall 6
2013-08-07 22:05 - 2013-08-07 22:06 - 17165208 _____ (Gavrila Martau ) C:\Users\Luca\Downloads\Total-Uninstall_6.3.2.exe
2013-08-07 22:04 - 2013-08-07 22:04 - 00003086 _____ C:\Windows\System32\Tasks\{E5C07BA9-CB2C-4E82-A26A-F708F0B9EC8C}
2013-08-07 22:02 - 2013-08-07 22:27 - 00000866 _____ C:\Windows\SysWOW64\InstallUtil.InstallLog
2013-08-07 22:01 - 2013-08-07 22:32 - 00000000 ____D C:\ProgramData\eSafe
2013-08-07 22:01 - 2013-08-07 22:30 - 00000000 ____D C:\Users\Luca\AppData\Local\SwvUpdater
2013-08-07 21:59 - 2013-08-07 22:53 - 00000000 ____D C:\Users\Luca\AppData\Roaming\Media Finder
2013-08-07 21:59 - 2013-08-07 22:32 - 00000000 ____D C:\Program Files (x86)\Media Finder
2013-08-07 21:59 - 2013-08-07 21:59 - 00000000 ____D C:\Users\Luca\Desktop\Download
2013-08-07 21:59 - 2013-08-07 21:59 - 00000000 ____D C:\Users\Luca\AppData\Roaming\eIntaller
2013-08-07 21:58 - 2013-08-07 21:58 - 03766352 _____ ( ) C:\Users\Luca\Downloads\andrea_sawatzki_playboy_fotos.exe
2013-08-06 23:42 - 2013-08-06 23:43 - 00000000 ____D C:\Users\Luca\AppData\Local\{8D3764CA-1238-47A9-BAD8-F8083837B38B}
2013-08-05 23:45 - 2013-08-05 23:45 - 00000000 ____D C:\Users\Luca\AppData\Local\{3122E906-3786-4510-89C1-3BC69DB16833}
2013-08-05 13:22 - 2013-08-05 13:22 - 00000000 ____D C:\Users\Luca\AppData\Local\{278359CD-9A53-41AF-9CA9-14F32F1A5F07}
2013-08-04 13:13 - 2013-08-04 13:13 - 00000000 ____D C:\Users\Luca\AppData\Local\{460BD1AB-6387-4DE1-A1B5-53A48D161847}
2013-08-03 14:29 - 2013-08-03 14:29 - 00000000 ____D C:\Users\Luca\AppData\Local\{FC4C353D-1FE3-4FBD-BD3D-72B69FE9762C}
2013-08-02 13:46 - 2013-08-02 13:46 - 00000000 ____D C:\Users\Luca\AppData\Local\{93120E12-8566-4DA7-BA99-ABB15E64346D}
2013-08-01 15:03 - 2013-08-01 15:03 - 00000000 ____D C:\Users\Luca\AppData\Local\{AE44457A-53E9-4C72-80F8-DEB866928C40}
2013-07-31 14:31 - 2013-07-31 12:29 - 00120782 _____ C:\Users\Luca\Downloads\Dateien
2013-07-31 14:29 - 2013-07-31 14:29 - 00068531 _____ C:\Users\Luca\Downloads\Dateien.zip
2013-07-31 13:40 - 2013-07-31 13:40 - 00000000 ____D C:\Users\Luca\AppData\Local\{0570B918-AB6D-4693-A9A1-E3C0F7F2E5C9}
2013-07-30 00:40 - 2013-07-30 00:41 - 00003382 _____ C:\Windows\System32\Tasks\EPUpdater
2013-07-30 00:40 - 2013-07-30 00:41 - 00000000 ____D C:\Users\Luca\AppData\Roaming\BabSolution
2013-07-30 00:39 - 2013-07-30 00:39 - 00000000 __SHD C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}
2013-07-30 00:39 - 2013-07-30 00:39 - 00000000 ____D C:\Program Files (x86)\DVDVideoSoft
2013-07-30 00:38 - 2013-07-30 00:38 - 01211408 _____ (DVDVideoSoft Ltd. ) C:\Users\Luca\Downloads\FreeYouTubeDownload-3.2.9.725.exe
2013-07-29 23:29 - 2013-07-30 00:33 - 579389815 _____ C:\Users\Luca\Downloads\20130430-RMA-DOR-UCL_1SDE.mkv
2013-07-29 22:35 - 2013-07-29 22:35 - 00000000 ____D C:\Users\Luca\AppData\Local\{78B685BA-5286-48E3-AD72-1E0001F51160}
2013-07-28 17:44 - 2013-07-28 17:44 - 00006418 _____ C:\Users\Luca\AppData\Local\recently-used.xbel
2013-07-28 14:36 - 2013-07-28 14:36 - 00000000 ____D C:\Users\Luca\AppData\Local\{2A2322E0-F60F-40C7-AA5D-8D368A883623}
2013-07-27 22:33 - 2013-07-27 22:33 - 03058326 _____ C:\Users\Luca\Downloads\lewa lol.bmp
2013-07-27 11:44 - 2013-07-27 11:44 - 00000000 ____D C:\Users\Luca\AppData\Local\{91D5690D-A641-4CCE-88F7-775AD12BF540}
2013-07-26 01:51 - 2013-07-26 01:51 - 00000000 ____D C:\Users\Luca\AppData\Local\{882DE679-3E91-4635-9BEB-B1B0C2CF2C3C}
2013-07-25 10:16 - 2013-07-25 10:16 - 00000000 ____D C:\Users\Luca\AppData\Local\{E0002C65-C4D6-4DD7-8A29-42FFCA8F3269}
2013-07-25 00:53 - 2013-07-25 00:55 - 00000000 ____D C:\Windows\system32\MRT
2013-07-24 14:11 - 2013-07-24 14:12 - 00000000 ____D C:\Users\Luca\AppData\Local\{47179DCF-8BCE-4951-BE96-8649E6D5332E}
2013-07-24 12:25 - 2013-07-24 12:25 - 00000000 ____D C:\Users\Luca\AppData\Local\{10596AC9-0A17-4A3A-B8C1-A847520CFC0D}
2013-07-22 22:23 - 2013-07-22 22:23 - 00000000 ____D C:\Users\Luca\AppData\Local\{3E724D6B-DDD7-4E49-99C4-A23F3BD2AD7F}
2013-07-21 18:57 - 2013-07-21 18:57 - 00000000 ____D C:\Users\Luca\AppData\Local\{03141D74-B0DF-4C89-9D4F-40E3EEAFDD8F}
2013-07-20 21:16 - 2013-07-22 23:46 - 00000000 ____D C:\Users\Luca\AppData\Local\NVIDIA
2013-07-20 21:15 - 2013-07-20 21:15 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies
2013-07-20 21:01 - 2013-07-20 21:02 - 229594432 _____ (NVIDIA Corporation) C:\Users\Luca\Downloads\320.49-desktop-win8-win7-winvista-64bit-international-whql.exe
2013-07-20 20:57 - 2013-07-20 20:58 - 00000000 ____D C:\Users\Luca\AppData\Local\{84CED2FB-72FE-42A5-9E26-3260FBAEB1F7}
2013-07-20 20:55 - 2013-07-20 20:55 - 00459672 _____ C:\Windows\Minidump\072013-25459-01.dmp
2013-07-20 12:18 - 2013-07-20 12:18 - 00000000 ____D C:\Users\Luca\AppData\Local\{B6A3C697-A3F4-4518-887B-08599680E28E}
2013-07-20 00:08 - 2013-07-20 00:08 - 01067456 _____ (Solid State Networks) C:\Users\Luca\Downloads\install_flashplayer11x32au_mssd_aaa_aih.exe
2013-07-19 23:12 - 2013-07-19 23:12 - 00000000 ____D C:\Users\Luca\AppData\Local\{1BB353F5-388A-4C81-91CA-7B05D4C94848}
2013-07-18 12:56 - 2013-07-18 12:56 - 00000000 ____D C:\Users\Luca\AppData\Local\{34F5687B-50B3-417C-8D54-ABAF7AD04F22}
2013-07-17 16:01 - 2013-07-17 16:01 - 00000000 ____D C:\Users\Luca\AppData\Local\{8803C679-F501-4EE0-AE7F-85E8FE896DDB}
2013-07-16 13:37 - 2013-07-16 13:37 - 00000000 ____D C:\Users\Luca\AppData\Local\{73AB66A2-E624-419B-991F-DB5E6C4CB05D}
2013-07-15 16:03 - 2013-07-15 16:04 - 00000000 ____D C:\Users\Luca\AppData\Local\{AAC89D24-D800-4485-A043-7B632F979BCD}
2013-07-14 14:30 - 2013-07-14 14:30 - 00000000 ____D C:\Users\Luca\AppData\Local\{E55AB6AA-5A56-48B2-B830-D201298F0EDD}
2013-07-13 15:05 - 2013-07-13 15:05 - 00000000 ____D C:\Users\Luca\burn notice papa
2013-07-13 14:37 - 2013-07-13 14:37 - 00000000 ____D C:\Users\Luca\AppData\Local\{DB44CC03-B83F-4750-B2C4-E43B1DA3FAAC}
2013-07-13 02:41 - 2013-06-12 01:43 - 14329856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-07-13 02:41 - 2013-06-12 01:43 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-07-13 02:41 - 2013-06-12 01:43 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-07-13 02:41 - 2013-06-12 01:43 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-07-13 02:41 - 2013-06-12 01:43 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-07-13 02:41 - 2013-06-12 01:43 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-07-13 02:41 - 2013-06-12 01:43 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-07-13 02:41 - 2013-06-12 01:42 - 13760512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-07-13 02:41 - 2013-06-12 01:42 - 02046976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-07-13 02:41 - 2013-06-12 01:42 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-07-13 02:41 - 2013-06-12 01:42 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-07-13 02:41 - 2013-06-12 01:42 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-07-13 02:41 - 2013-06-12 01:42 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-07-13 02:41 - 2013-06-12 01:26 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-07-13 02:41 - 2013-06-12 01:26 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-07-13 02:41 - 2013-06-12 01:26 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-07-13 02:41 - 2013-06-12 01:25 - 19238912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-07-13 02:41 - 2013-06-12 01:25 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-07-13 02:41 - 2013-06-12 01:25 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-07-13 02:41 - 2013-06-12 01:25 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-07-13 02:41 - 2013-06-12 01:25 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-07-13 02:41 - 2013-06-12 01:25 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-07-13 02:41 - 2013-06-12 01:25 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-07-13 02:41 - 2013-06-12 01:25 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-07-13 02:41 - 2013-06-12 01:25 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-07-13 02:41 - 2013-06-12 01:25 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-07-13 02:41 - 2013-06-12 01:25 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-07-13 02:41 - 2013-06-07 05:22 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-07-13 02:41 - 2013-06-07 04:37 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-07-12 17:45 - 2013-06-05 05:34 - 03153920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-07-12 17:45 - 2013-06-04 08:00 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2013-07-12 17:45 - 2013-06-04 06:53 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2013-07-12 17:45 - 2013-05-06 08:03 - 01887744 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2013-07-12 17:45 - 2013-05-06 06:56 - 01620480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2013-07-12 17:44 - 2013-04-10 01:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2013-07-12 17:44 - 2013-04-03 00:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2013-07-12 17:40 - 2013-07-12 17:41 - 00000000 ____D C:\Users\Luca\AppData\Local\{27517FDC-2B7A-4DA6-B870-6AF8AE3D5647}
2013-07-11 15:32 - 2013-07-11 15:50 - 00028652 _____ C:\Users\Luca\Documents\lateingfs6.odt
2013-07-11 15:16 - 2013-07-11 15:16 - 02607613 _____ C:\Users\Luca\Documents\lateingfs5.odg
2013-07-11 13:39 - 2013-07-11 13:39 - 00020388 _____ C:\Users\Luca\Documents\lateingfs4.odt
2013-07-11 12:45 - 2013-07-11 12:45 - 00000000 ____D C:\Users\Luca\AppData\Local\{7DEB2652-BA87-4DAE-862D-E68C64FBEE3A}
2013-07-10 21:17 - 2013-07-11 14:47 - 00012167 _____ C:\Users\Luca\Documents\Lateingfs3.odt
2013-07-10 17:10 - 2013-07-10 17:10 - 00008569 _____ C:\Users\Luca\Documents\latein gfs 2.odt
2013-07-10 16:50 - 2013-07-11 22:28 - 00013732 _____ C:\Users\Luca\Documents\lateingfs1.odt
2013-07-09 19:39 - 2013-07-09 19:40 - 00617472 _____ C:\Users\Luca\Downloads\Eisschmelze in der Antarktis klaus geh nach haus.ppt
2013-07-09 18:59 - 2013-07-09 18:59 - 00613888 _____ C:\Users\Luca\Downloads\Eisschmelze in der Antarktis gay.ppt
2013-07-09 17:16 - 2013-07-09 19:48 - 03792896 _____ C:\Users\Luca\Downloads\Eisschmelze in der Antarktis.ppt
150
==================== One Month Modified Files and Folders =======
2013-08-08 00:29 - 2012-03-24 16:57 - 00000000 ____D C:\Users\Luca\AppData\Roaming\Skype
2013-08-08 00:28 - 2013-08-08 00:28 - 01790059 _____ (Farbar) C:\Users\Luca\Downloads\FRST64.exe
2013-08-08 00:28 - 2013-08-08 00:28 - 00000000 ____D C:\FRST
2013-08-08 00:04 - 2012-09-26 15:38 - 00001116 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-371220827-3999380640-590344112-1000UA.job
2013-08-07 23:56 - 2013-05-09 22:40 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-08-07 23:47 - 2012-04-06 20:31 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-08-07 23:35 - 2013-08-07 23:19 - 00012405 _____ C:\Users\Luca\Downloads\hijackthis.log
2013-08-07 23:26 - 2013-08-07 23:26 - 00001916 _____ C:\Users\Luca\Documents\Ereignisse.txt
2013-08-07 23:15 - 2012-03-24 15:04 - 00000000 ____D C:\Users\Luca\AppData\Local\VirtualStore
2013-08-07 23:14 - 2013-08-07 23:14 - 00388608 _____ (Trend Micro Inc.) C:\Users\Luca\Downloads\HiJackThis204.exe
2013-08-07 22:53 - 2013-08-07 21:59 - 00000000 ____D C:\Users\Luca\AppData\Roaming\Media Finder
2013-08-07 22:53 - 2013-05-09 22:41 - 00000000 ___SD C:\Users\Luca\Google Drive
2013-08-07 22:53 - 2012-07-31 13:50 - 00000000 ____D C:\Users\Luca\Tracing
2013-08-07 22:53 - 2009-07-14 06:45 - 00021856 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-08-07 22:53 - 2009-07-14 06:45 - 00021856 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-08-07 22:51 - 2013-05-09 22:40 - 00001102 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-08-07 22:45 - 2012-03-24 15:44 - 00000000 ____D C:\ProgramData\NVIDIA
2013-08-07 22:45 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-08-07 22:45 - 2009-07-14 06:51 - 00085123 _____ C:\Windows\setupact.log
2013-08-07 22:44 - 2012-03-24 22:00 - 02004389 _____ C:\Windows\WindowsUpdate.log
2013-08-07 22:44 - 2010-11-21 05:47 - 01515472 _____ C:\Windows\PFRO.log
2013-08-07 22:39 - 2013-08-07 22:39 - 00000000 ____D C:\Users\Luca2\Documents\Simply Super Software
2013-08-07 22:38 - 2013-08-07 22:38 - 00000000 ____D C:\Users\Luca\Documents\Simply Super Software
2013-08-07 22:38 - 2013-08-07 22:38 - 00000000 ____D C:\Users\Luca\AppData\Roaming\Simply Super Software
2013-08-07 22:38 - 2013-08-07 22:38 - 00000000 ____D C:\ProgramData\Simply Super Software
2013-08-07 22:38 - 2013-08-07 22:38 - 00000000 ____D C:\Program Files (x86)\Trojan Remover
2013-08-07 22:37 - 2013-08-07 22:37 - 23334896 _____ (Simply Super Software ) C:\Users\Luca2\Documents\trjsetup_688.exe
2013-08-07 22:32 - 2013-08-07 22:01 - 00000000 ____D C:\ProgramData\eSafe
2013-08-07 22:32 - 2013-08-07 21:59 - 00000000 ____D C:\Program Files (x86)\Media Finder
2013-08-07 22:30 - 2013-08-07 22:01 - 00000000 ____D C:\Users\Luca\AppData\Local\SwvUpdater
2013-08-07 22:28 - 2013-08-07 22:28 - 00000000 ____D C:\Users\Luca2\AppData\Roaming\TuneUp Software
2013-08-07 22:27 - 2013-08-07 22:02 - 00000866 _____ C:\Windows\SysWOW64\InstallUtil.InstallLog
2013-08-07 22:25 - 2013-08-07 22:25 - 00000000 ____D C:\Users\Luca2\AppData\Roaming\Iminent
2013-08-07 22:25 - 2013-08-07 22:25 - 00000000 ____D C:\Users\Luca\AppData\Local\{862A652C-6E0E-41CE-AEF9-BF56E32F8984}
2013-08-07 22:24 - 2013-08-07 22:24 - 00092560 _____ C:\Users\Luca2\AppData\Local\GDIPFONTCACHEV1.DAT
2013-08-07 22:24 - 2013-08-07 22:24 - 00000000 ____D C:\Users\Luca2\AppData\Roaming\Avira
2013-08-07 22:22 - 2013-08-07 22:22 - 00000000 ____D C:\Users\Luca2\AppData\LocalGoogle
2013-08-07 22:19 - 2012-03-24 15:48 - 00092560 _____ C:\Users\Luca\AppData\Local\GDIPFONTCACHEV1.DAT
2013-08-07 22:18 - 2013-08-07 22:18 - 00266320 _____ C:\Windows\Minidump\080713-37034-01.dmp
2013-08-07 22:18 - 2012-12-03 16:34 - 00000000 ____D C:\Windows\Minidump
2013-08-07 22:18 - 2009-07-14 06:45 - 00371592 _____ C:\Windows\system32\FNTCACHE.DAT
2013-08-07 22:17 - 2012-12-03 16:34 - 559094962 _____ C:\Windows\MEMORY.DMP
2013-08-07 22:14 - 2013-08-07 22:14 - 00002209 _____ C:\Users\Public\Desktop\TuneUp 1-Klick-Wartung.lnk
2013-08-07 22:14 - 2013-08-07 22:14 - 00002189 _____ C:\Users\Public\Desktop\TuneUp Utilities 2013.lnk
2013-08-07 22:14 - 2013-08-07 22:13 - 00000000 ____D C:\Program Files (x86)\TuneUp Utilities 2013
2013-08-07 22:13 - 2013-08-07 22:12 - 28211040 _____ (TuneUp Software) C:\Users\Luca\Downloads\TuneUpUtilities2013_de-DE.exe
2013-08-07 22:07 - 2013-08-07 22:07 - 00000839 _____ C:\Users\Public\Desktop\Total Uninstall 6.lnk
2013-08-07 22:07 - 2013-08-07 22:07 - 00000000 ____D C:\ProgramData\Martau
2013-08-07 22:07 - 2013-08-07 22:07 - 00000000 ____D C:\Program Files\Total Uninstall 6
2013-08-07 22:07 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system
2013-08-07 22:06 - 2013-08-07 22:05 - 17165208 _____ (Gavrila Martau ) C:\Users\Luca\Downloads\Total-Uninstall_6.3.2.exe
2013-08-07 22:04 - 2013-08-07 22:04 - 00003086 _____ C:\Windows\System32\Tasks\{E5C07BA9-CB2C-4E82-A26A-F708F0B9EC8C}
2013-08-07 22:00 - 2012-06-07 17:31 - 00001385 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2013-08-07 22:00 - 2012-03-24 16:48 - 00002559 _____ C:\Users\Luca\Desktop\Google Chrome.lnk
2013-08-07 22:00 - 2012-03-24 15:04 - 00001671 _____ C:\Users\Luca\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-08-07 21:59 - 2013-08-07 21:59 - 00000000 ____D C:\Users\Luca\Desktop\Download
2013-08-07 21:59 - 2013-08-07 21:59 - 00000000 ____D C:\Users\Luca\AppData\Roaming\eIntaller
2013-08-07 21:58 - 2013-08-07 21:58 - 03766352 _____ ( ) C:\Users\Luca\Downloads\andrea_sawatzki_playboy_fotos.exe
2013-08-07 21:06 - 2012-03-25 20:36 - 00000000 ____D C:\Users\Luca\Documents\FIFA 12
2013-08-07 18:38 - 2012-09-11 17:16 - 00000000 ____D C:\Users\Luca\Documents\FIFA 13
2013-08-07 15:04 - 2012-09-26 15:38 - 00001064 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-371220827-3999380640-590344112-1000Core.job
2013-08-07 14:48 - 2012-03-24 19:30 - 00000000 ____D C:\Users\Luca\AppData\Local\CrashDumps
2013-08-07 14:47 - 2012-03-25 11:44 - 00000000 ____D C:\Program Files (x86)\Origin
2013-08-06 23:43 - 2013-08-06 23:42 - 00000000 ____D C:\Users\Luca\AppData\Local\{8D3764CA-1238-47A9-BAD8-F8083837B38B}
2013-08-05 23:45 - 2013-08-05 23:45 - 00000000 ____D C:\Users\Luca\AppData\Local\{3122E906-3786-4510-89C1-3BC69DB16833}
2013-08-05 13:22 - 2013-08-05 13:22 - 00000000 ____D C:\Users\Luca\AppData\Local\{278359CD-9A53-41AF-9CA9-14F32F1A5F07}
2013-08-04 14:50 - 2012-05-04 16:03 - 00000000 ____D C:\Users\Luca\AppData\Roaming\vlc
2013-08-04 13:13 - 2013-08-04 13:13 - 00000000 ____D C:\Users\Luca\AppData\Local\{460BD1AB-6387-4DE1-A1B5-53A48D161847}
2013-08-03 14:29 - 2013-08-03 14:29 - 00000000 ____D C:\Users\Luca\AppData\Local\{FC4C353D-1FE3-4FBD-BD3D-72B69FE9762C}
2013-08-02 13:46 - 2013-08-02 13:46 - 00000000 ____D C:\Users\Luca\AppData\Local\{93120E12-8566-4DA7-BA99-ABB15E64346D}
2013-08-01 15:03 - 2013-08-01 15:03 - 00000000 ____D C:\Users\Luca\AppData\Local\{AE44457A-53E9-4C72-80F8-DEB866928C40}
2013-07-31 14:29 - 2013-07-31 14:29 - 00068531 _____ C:\Users\Luca\Downloads\Dateien.zip
2013-07-31 13:40 - 2013-07-31 13:40 - 00000000 ____D C:\Users\Luca\AppData\Local\{0570B918-AB6D-4693-A9A1-E3C0F7F2E5C9}
2013-07-31 12:29 - 2013-07-31 14:31 - 00120782 _____ C:\Users\Luca\Downloads\Dateien
2013-07-30 13:24 - 2012-03-25 11:45 - 00000000 ____D C:\Users\Luca\AppData\Local\Origin
2013-07-30 13:24 - 2012-03-25 11:44 - 00000000 ____D C:\Users\Luca\AppData\Roaming\Origin
2013-07-30 00:41 - 2013-07-30 00:40 - 00003382 _____ C:\Windows\System32\Tasks\EPUpdater
2013-07-30 00:41 - 2013-07-30 00:40 - 00000000 ____D C:\Users\Luca\AppData\Roaming\BabSolution
2013-07-30 00:39 - 2013-07-30 00:39 - 00000000 __SHD C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}
2013-07-30 00:39 - 2013-07-30 00:39 - 00000000 ____D C:\Program Files (x86)\DVDVideoSoft
2013-07-30 00:39 - 2012-06-26 14:27 - 00000000 ____D C:\Users\Luca\AppData\Roaming\TuneUp Software
2013-07-30 00:39 - 2012-06-26 14:27 - 00000000 ____D C:\ProgramData\TuneUp Software
2013-07-30 00:39 - 2012-06-26 14:26 - 00000000 ____D C:\Users\Luca\AppData\Roaming\OpenCandy
2013-07-30 00:39 - 2012-03-31 13:54 - 00000000 ____D C:\Users\Luca\AppData\Roaming\DVDVideoSoft
2013-07-30 00:38 - 2013-07-30 00:38 - 01211408 _____ (DVDVideoSoft Ltd. ) C:\Users\Luca\Downloads\FreeYouTubeDownload-3.2.9.725.exe
2013-07-30 00:33 - 2013-07-29 23:29 - 579389815 _____ C:\Users\Luca\Downloads\20130430-RMA-DOR-UCL_1SDE.mkv
2013-07-29 22:35 - 2013-07-29 22:35 - 00000000 ____D C:\Users\Luca\AppData\Local\{78B685BA-5286-48E3-AD72-1E0001F51160}
2013-07-28 17:45 - 2012-07-05 14:51 - 00000000 ____D C:\Users\Luca\.gimp-2.6
2013-07-28 17:44 - 2013-07-28 17:44 - 00006418 _____ C:\Users\Luca\AppData\Local\recently-used.xbel
2013-07-28 14:36 - 2013-07-28 14:36 - 00000000 ____D C:\Users\Luca\AppData\Local\{2A2322E0-F60F-40C7-AA5D-8D368A883623}
2013-07-27 22:33 - 2013-07-27 22:33 - 03058326 _____ C:\Users\Luca\Downloads\lewa lol.bmp
2013-07-27 11:47 - 2012-04-21 10:31 - 00000000 ____D C:\Users\Luca\AppData\Local\Adobe
2013-07-27 11:46 - 2012-04-06 20:31 - 00692104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-07-27 11:46 - 2012-04-06 20:31 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-07-27 11:46 - 2012-03-24 16:45 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-07-27 11:44 - 2013-07-27 11:44 - 00000000 ____D C:\Users\Luca\AppData\Local\{91D5690D-A641-4CCE-88F7-775AD12BF540}
2013-07-26 01:51 - 2013-07-26 01:51 - 00000000 ____D C:\Users\Luca\AppData\Local\{882DE679-3E91-4635-9BEB-B1B0C2CF2C3C}
2013-07-25 10:16 - 2013-07-25 10:16 - 00000000 ____D C:\Users\Luca\AppData\Local\{E0002C65-C4D6-4DD7-8A29-42FFCA8F3269}
2013-07-25 00:55 - 2013-07-25 00:53 - 00000000 ____D C:\Windows\system32\MRT
2013-07-24 15:53 - 2012-10-08 06:09 - 00000000 ____D C:\Users\Luca2
2013-07-24 15:53 - 2012-03-25 11:45 - 00000000 ____D C:\ProgramData\Origin
2013-07-24 15:53 - 2012-03-24 15:54 - 00000000 ____D C:\ProgramData\DeviceVm
2013-07-24 15:53 - 2012-03-24 15:43 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2013-07-24 15:53 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\security
2013-07-24 15:53 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\AppCompat
2013-07-24 15:52 - 2012-03-24 15:44 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2013-07-24 15:52 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\registration
2013-07-24 15:51 - 2013-03-06 22:13 - 00000000 ____D C:\Program Files (x86)\Java
2013-07-24 14:54 - 2012-03-24 15:04 - 00000000 ____D C:\Users\Luca
2013-07-24 14:12 - 2013-07-24 14:11 - 00000000 ____D C:\Users\Luca\AppData\Local\{47179DCF-8BCE-4951-BE96-8649E6D5332E}
2013-07-24 12:25 - 2013-07-24 12:25 - 00000000 ____D C:\Users\Luca\AppData\Local\{10596AC9-0A17-4A3A-B8C1-A847520CFC0D}
2013-07-22 23:46 - 2013-07-20 21:16 - 00000000 ____D C:\Users\Luca\AppData\Local\NVIDIA
2013-07-22 23:46 - 2012-03-24 15:43 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2013-07-22 22:23 - 2013-07-22 22:23 - 00000000 ____D C:\Users\Luca\AppData\Local\{3E724D6B-DDD7-4E49-99C4-A23F3BD2AD7F}
2013-07-21 18:57 - 2013-07-21 18:57 - 00000000 ____D C:\Users\Luca\AppData\Local\{03141D74-B0DF-4C89-9D4F-40E3EEAFDD8F}
2013-07-20 21:15 - 2013-07-20 21:15 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies
2013-07-20 21:02 - 2013-07-20 21:01 - 229594432 _____ (NVIDIA Corporation) C:\Users\Luca\Downloads\320.49-desktop-win8-win7-winvista-64bit-international-whql.exe
2013-07-20 20:58 - 2013-07-20 20:57 - 00000000 ____D C:\Users\Luca\AppData\Local\{84CED2FB-72FE-42A5-9E26-3260FBAEB1F7}
2013-07-20 20:55 - 2013-07-20 20:55 - 00459672 _____ C:\Windows\Minidump\072013-25459-01.dmp
2013-07-20 12:18 - 2013-07-20 12:18 - 00000000 ____D C:\Users\Luca\AppData\Local\{B6A3C697-A3F4-4518-887B-08599680E28E}
2013-07-20 00:08 - 2013-07-20 00:08 - 01067456 _____ (Solid State Networks) C:\Users\Luca\Downloads\install_flashplayer11x32au_mssd_aaa_aih.exe
2013-07-19 23:12 - 2013-07-19 23:12 - 00000000 ____D C:\Users\Luca\AppData\Local\{1BB353F5-388A-4C81-91CA-7B05D4C94848}
2013-07-18 12:56 - 2013-07-18 12:56 - 00000000 ____D C:\Users\Luca\AppData\Local\{34F5687B-50B3-417C-8D54-ABAF7AD04F22}
2013-07-17 16:01 - 2013-07-17 16:01 - 00000000 ____D C:\Users\Luca\AppData\Local\{8803C679-F501-4EE0-AE7F-85E8FE896DDB}
2013-07-16 13:37 - 2013-07-16 13:37 - 00000000 ____D C:\Users\Luca\AppData\Local\{73AB66A2-E624-419B-991F-DB5E6C4CB05D}
2013-07-15 16:04 - 2013-07-15 16:03 - 00000000 ____D C:\Users\Luca\AppData\Local\{AAC89D24-D800-4485-A043-7B632F979BCD}
2013-07-14 21:28 - 2012-07-05 14:08 - 00000000 ____D C:\Users\Luca\Downloads\TS!
2013-07-14 16:17 - 2012-11-21 21:08 - 00000000 ___RD C:\Program Files (x86)\Skype
2013-07-14 16:17 - 2012-03-25 21:37 - 00000000 ____D C:\ProgramData\Skype
2013-07-14 14:30 - 2013-07-14 14:30 - 00000000 ____D C:\Users\Luca\AppData\Local\{E55AB6AA-5A56-48B2-B830-D201298F0EDD}
2013-07-13 15:05 - 2013-07-13 15:05 - 00000000 ____D C:\Users\Luca\burn notice papa
2013-07-13 14:59 - 2012-09-26 15:38 - 00004084 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-371220827-3999380640-590344112-1000UA
2013-07-13 14:59 - 2012-09-26 15:38 - 00003688 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-371220827-3999380640-590344112-1000Core
2013-07-13 14:51 - 2013-05-09 22:40 - 00004102 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-07-13 14:51 - 2013-05-09 22:40 - 00003850 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-07-13 14:37 - 2013-07-13 14:37 - 00000000 ____D C:\Users\Luca\AppData\Local\{DB44CC03-B83F-4750-B2C4-E43B1DA3FAAC}
2013-07-13 14:35 - 2011-04-12 09:55 - 00000000 ____D C:\Program Files\Windows Journal
2013-07-13 14:35 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender
2013-07-13 14:35 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2013-07-13 14:34 - 2013-03-13 23:44 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-07-13 14:34 - 2013-03-13 23:44 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2013-07-13 02:46 - 2012-05-19 10:52 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-07-12 17:41 - 2013-07-12 17:40 - 00000000 ____D C:\Users\Luca\AppData\Local\{27517FDC-2B7A-4DA6-B870-6AF8AE3D5647}
2013-07-11 22:28 - 2013-07-10 16:50 - 00013732 _____ C:\Users\Luca\Documents\lateingfs1.odt
2013-07-11 15:50 - 2013-07-11 15:32 - 00028652 _____ C:\Users\Luca\Documents\lateingfs6.odt
2013-07-11 15:16 - 2013-07-11 15:16 - 02607613 _____ C:\Users\Luca\Documents\lateingfs5.odg
2013-07-11 14:47 - 2013-07-10 21:17 - 00012167 _____ C:\Users\Luca\Documents\Lateingfs3.odt
2013-07-11 13:39 - 2013-07-11 13:39 - 00020388 _____ C:\Users\Luca\Documents\lateingfs4.odt
2013-07-11 12:45 - 2013-07-11 12:45 - 00000000 ____D C:\Users\Luca\AppData\Local\{7DEB2652-BA87-4DAE-862D-E68C64FBEE3A}
2013-07-10 17:10 - 2013-07-10 17:10 - 00008569 _____ C:\Users\Luca\Documents\latein gfs 2.odt
2013-07-09 19:50 - 2011-04-12 09:43 - 01625154 _____ C:\Windows\system32\perfh007.dat
2013-07-09 19:50 - 2011-04-12 09:43 - 00455570 _____ C:\Windows\system32\perfc007.dat
2013-07-09 19:50 - 2009-07-14 07:13 - 00006280 _____ C:\Windows\system32\PerfStringBackup.INI
2013-07-09 19:48 - 2013-07-09 17:16 - 03792896 _____ C:\Users\Luca\Downloads\Eisschmelze in der Antarktis.ppt
2013-07-09 19:40 - 2013-07-09 19:39 - 00617472 _____ C:\Users\Luca\Downloads\Eisschmelze in der Antarktis klaus geh nach haus.ppt
2013-07-09 18:59 - 2013-07-09 18:59 - 00613888 _____ C:\Users\Luca\Downloads\Eisschmelze in der Antarktis gay.ppt
Files to move or delete:
====================
C:\Users\Luca\AppData\Roaming\BabSolution\Shared\NTRedirect.dll
C:\Users\Luca\fifa13.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-08-02 14:37
==================== End Of Log ============================ --- --- ---
[/CODE] ADDITION Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 08-08-2013
Ran by Luca at 2013-08-08 00:32:28
Running from C:\Users\Luca\Downloads
Boot Mode: Normal
==========================================================
==================== Installed Programs =======================
Adobe Flash Player 11 ActiveX (x32 Version: 11.7.700.224)
Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.94)
Adobe Reader X (10.1.7) - Deutsch (x32 Version: 10.1.7)
Apple Application Support (x32 Version: 2.3.3)
Apple Mobile Device Support (Version: 6.1.0.13)
Apple Software Update (x32 Version: 2.1.3.127)
ArtMoney SE v7.38 (x32 Version: 7.38)
Asmedia ASM104x USB 3.0 Host Controller Driver (x32 Version: 1.10.0.0)
ASUS nVidia Driver (x32 Version: 1.00.0000)
ATI Catalyst Install Manager (Version: 3.0.762.0)
Auto Clicker - Image Recognizer (x32 Version: 3.0)
Avira Free Antivirus (x32 Version: 13.0.0.3885)
AVM FRITZ!WLAN (x32)
Battlefield 3™ (x32 Version: 1.0.0.0)
Battlelog Web Plugins (x32 Version: 2.1.2)
Bonjour (Version: 3.0.0.10)
Browser Configuration Utility (x32 Version: 1.0.12.1)
Call of Duty: Black Ops - Multiplayer (x32)
Call of Duty: Modern Warfare 3 - Multiplayer (x32)
Camtasia Studio 7 (x32 Version: 7.0.1)
Canon MX420 series MP Drivers
Cheat Engine 6.2 (x32)
Core Temp 1.0 RC3 (Version: 1.0)
D3DX10 (x32 Version: 15.4.2368.0902)
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (x32)
Delta Chrome Toolbar (x32)
Die*Sims™*3 (x32 Version: 1.0.631)
Driver Genius Professional Edition (x32 Version: 11.0)
DVDVideoSoftTB Toolbar (x32 Version: 6.8.10.401)
EPU (x32 Version: 1.02.21)
ESN Sonar (x32 Version: 0.70.4)
FIFA 12 (x32 Version: 1.4.0.0)
FIFA 13 (x32 Version: 1.1.0.0)
FIFA 13 Demo (x32 Version: 1.0.0.0)
Fraps (remove only) (x32)
Free MP4 Video Converter version 5.0.23.320 (x32 Version: 5.0.23.320)
Free YouTube Download version 3.2.9.725 (x32 Version: 3.2.9.725)
Free YouTube to MP3 Converter version 3.12.1.320 (x32 Version: 3.12.1.320)
FUT 13 Autobuyer (x32)
GIMP 2.6.12 (Version: 2.6.12)
Google Chrome (HKCU Version: 28.0.1500.95)
Google Drive (x32 Version: 1.10.4769.632)
Google Update Helper (x32 Version: 1.3.21.153)
GPU Boost Driver (x32 Version: 1.01.15)
ID CPU-Z 1.60.1
iTunes (Version: 11.0.2.26)
Java 7 Update 17 (x32 Version: 7.0.170)
Java Auto Updater (x32 Version: 2.1.9.0)
JavaFX 2.1.1 (x32 Version: 2.1.1)
Logitech Gaming Software (x32 Version: 4.40)
Microsoft .NET Framework 4.5 (Version: 4.5.50709)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Corporation (Version: 9.1.0.0)
Microsoft Corporation (x32 Version: 9.1.0.0)
Microsoft LifeCam (Version: 3.22.270.0)
Microsoft Office 2010 Service Pack 1 (SP1) (x32)
Microsoft Office Access MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Excel MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Home and Business 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Office 64-bit Components 2010 (Version: 14.0.6029.1000)
Microsoft Office OneNote MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Outlook MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office PowerPoint MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Proof (English) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Proof (French) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Proof (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Proof (Italian) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Proofing (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Publisher MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Shared 64-bit MUI (German) 2010 (Version: 14.0.6029.1000)
Microsoft Office Shared MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Single Image 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Word MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Silverlight (Version: 5.1.20513.0)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219)
Microsoft WSE 3.0 Runtime (x32 Version: 3.0.5305.0)
Mozilla Firefox 22.0 (x86 de) (x32 Version: 22.0)
Mozilla Maintenance Service (x32 Version: 22.0)
MSVCRT (x32 Version: 15.4.2862.0708)
Need for Speed™ The Run (x32 Version: 1.1.0.0)
Norton PC Checkup (x32 Version: 3.0.2.122.0)
NVIDIA 3D Vision Controller Driver (x32 Version: 267.67)
NVIDIA 3D Vision Controller-Treiber 314.22 (Version: 314.22)
NVIDIA 3D Vision Treiber 314.22 (Version: 314.22)
NVIDIA Grafiktreiber 314.22 (Version: 314.22)
NVIDIA HD-Audiotreiber 1.3.23.1 (Version: 1.3.23.1)
NVIDIA Install Application (Version: 2.1002.115.743)
NVIDIA PhysX (x32 Version: 9.12.1031)
NVIDIA PhysX-Systemsoftware 9.12.1031 (Version: 9.12.1031)
NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.1422)
NVIDIA Systemsteuerung 314.22 (Version: 314.22)
NVIDIA Update 1.12.12 (Version: 1.12.12)
NVIDIA Update Components (Version: 1.12.12)
OpenOffice.org 3.4.1 (x32 Version: 3.41.9593)
Opera 11.64 (x32 Version: 11.64.1403)
Origin (x32 Version: 9.1.3.2637)
PunkBuster Services (x32 Version: 0.993)
Realtek Ethernet Controller Driver (x32 Version: 7.41.216.2011)
Realtek High Definition Audio Driver (x32 Version: 6.0.1.6662)
Skype™ 6.5 (x32 Version: 6.5.158)
SopCast 3.5.0 (x32 Version: 3.5.0)
Steam (x32 Version: 1.0.0.0)
TeamSpeak 3 Client (Version: 3.0.10.1)
Toolbar Cleaner 1.0 (x32)
Total Uninstall 6.3.2 (Version: 6.3.2)
Trojan Remover 6.8.8 (x32 Version: 6.8.8)
TuneUp Utilities 2013 (x32 Version: 13.0.3020.2)
TuneUp Utilities Language Pack (de-DE) (x32 Version: 13.0.3020.2)
Unity Web Player (HKCU Version: )
Unlocker 1.9.1 (x32 Version: 1.9.1)
Unlocker 1.9.1-x64 (Version: 1.9.1)
Update for Microsoft .NET Framework 4.5 (KB2750147) (x32 Version: 1)
Update for Microsoft .NET Framework 4.5 (KB2805221) (x32 Version: 1)
Update for Microsoft .NET Framework 4.5 (KB2805226) (x32 Version: 1)
Update for Microsoft Office 2010 (KB2553065) (x32)
Update for Microsoft Office 2010 (KB2553181) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2553267) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2553270) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2553378) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2566458) (x32)
Update for Microsoft Office 2010 (KB2596964) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2598242) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2687503) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2687509) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2767886) 32-Bit Edition (x32)
Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition (x32)
Update for Microsoft Outlook 2010 (KB2597090) 32-Bit Edition (x32)
Update for Microsoft Outlook 2010 (KB2687623) 32-Bit Edition (x32)
Update for Microsoft Outlook Social Connector 2010 (KB2553406) 32-Bit Edition (x32)
Update for Microsoft PowerPoint 2010 (KB2598240) 32-Bit Edition (x32)
Update for Microsoft SharePoint Workspace 2010 (KB2589371) 32-Bit Edition (x32)
VLC media player 2.0.2 (x32 Version: 2.0.2)
Windows Live Communications Platform (x32 Version: 15.4.3502.0922)
Windows Live Essentials (x32 Version: 15.4.3502.0922)
Windows Live Essentials (x32 Version: 15.4.3555.0308)
Windows Live ID Sign-in Assistant (Version: 7.250.4232.0)
Windows Live Installer (x32 Version: 15.4.3502.0922)
Windows Live Language Selector (Version: 15.4.3555.0308)
Windows Live Messenger (x32 Version: 15.4.3538.0513)
Windows Live Photo Common (x32 Version: 15.4.3502.0922)
Windows Live PIMT Platform (x32 Version: 15.4.3508.1109)
Windows Live SOXE (x32 Version: 15.4.3502.0922)
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922)
Windows Live UX Platform (x32 Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109)
WinRAR 4.11 (64-Bit) (Version: 4.11.0)
XSplit (x32 Version: 1.1.1210.3101)
==================== Restore Points =========================
20-07-2013 11:01:09 Geplanter Prüfpunkt
20-07-2013 19:03:44 Installed Java 7 Update 25
24-07-2013 22:52:01 Windows Update
29-07-2013 22:42:39 TuneUp Utilities 2013 wird entfernt
29-07-2013 22:43:52 TuneUp Utilities Language Pack (de-DE) wird entfernt
07-08-2013 20:13:26 TuneUp Utilities 2013 wird installiert
07-08-2013 21:08:29 Windows Modules Installer
==================== Hosts content: ==========================
2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {0F8D0CBB-A621-4AAF-A519-36D4D320B136} - System32\Tasks\EPUpdater => C:\Users\Luca\AppData\Roaming\BABSOL~1\Shared\BabMaint.exe [2013-06-06] ()
Task: {39EEC0E9-529E-4F4E-A3D1-466DF731A17D} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-371220827-3999380640-590344112-1000UA => C:\Users\Luca\AppData\Local\Google\Update\GoogleUpdate.exe [2012-09-15] (Google Inc.)
Task: {3CDCBDC6-5DA7-489F-AB56-D4D3873205CB} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-371220827-3999380640-590344112-1000Core => C:\Users\Luca\AppData\Local\Google\Update\GoogleUpdate.exe [2012-09-15] (Google Inc.)
Task: {582B329C-4125-4E89-912E-990ABF9BF038} - System32\Tasks\{DC8E7B1F-580F-4ADC-B2A0-977A6998638B} => c:\users\luca\appdata\local\google\chrome\application\chrome.exe [2013-07-25] (Google Inc.)
Task: {597F5B77-7B7C-450B-BFFC-658424DD1C62} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task
Task: {828E9610-A545-4528-8F93-8FF3F95C5F9C} - System32\Tasks\{86817ADB-B280-43E8-87D7-B4DA196982DF} => c:\users\luca\appdata\local\google\chrome\application\chrome.exe [2013-07-25] (Google Inc.)
Task: {89DEC8EC-A41E-4975-9A78-6FEF0EEC8723} - System32\Tasks\{B1B94142-CBA0-49E9-85F7-1D661E982A58} => c:\users\luca\appdata\local\google\chrome\application\chrome.exe [2013-07-25] (Google Inc.)
Task: {8F53F305-ECF2-49C3-AFBE-A550FBEF0C90} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-05-09] (Google Inc.)
Task: {9B9B81D9-BF5E-4107-A0C2-D39CACEC8FAB} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-07-27] (Adobe Systems Incorporated)
Task: {A79F62F7-2094-4737-82E8-E4F103C98B45} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {C208ADE0-67BA-40A8-A354-3069C30B7345} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-05-09] (Google Inc.)
Task: {E757F720-CE26-449B-8360-80D2E7C62025} - System32\Tasks\Desk 365 RunAsStdUser => C:\Program Files (x86)\Desk 365\desk365.exe No File
Task: {FB7D8ECC-B9FF-438E-BD47-C56DE095B0E7} - System32\Tasks\ASUS\Gpu Boost Driver => C:\Program Files\ASUS\GPU Boost Driver\GpuBoostServer.exe [2010-03-27] (
ASUSTeK Computer Inc.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-371220827-3999380640-590344112-1000Core.job => C:\Users\Luca\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-371220827-3999380640-590344112-1000UA.job => C:\Users\Luca\AppData\Local\Google\Update\GoogleUpdate.exe
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (08/07/2013 10:46:00 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/07/2013 10:41:48 PM) (Source: Application Hang) (User: )
Description: Programm Trjscan.exe, Version 6.8.8.1326 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: 11e8
Startzeit: 01ce93ae2b422adc
Endzeit: 13949
Anwendungspfad: C:\Program Files (x86)\Trojan Remover\Trjscan.exe
Berichts-ID: bb7ccada-ffa1-11e2-847e-001c4afab2ef
Error: (08/07/2013 10:25:09 PM) (Source: Iminent) (User: )
Description: Unexpected exception.
System.ServiceModel.AddressAlreadyInUseException: There is already a listener on IP endpoint 0.0.0.0:808. This could happen if there is another application already listening on this endpoint or if you have multiple service endpoints in your service host with the same IP endpoint but with incompatible binding configurations. ---> System.Net.Sockets.SocketException: Normalerweise darf jede Socketadresse (Protokoll, Netzwerkadresse oder Anschluss) nur jeweils einmal verwendet werden
at System.Net.Sockets.Socket.DoBind(EndPoint endPointSnapshot, SocketAddress socketAddress)
at System.Net.Sockets.Socket.Bind(EndPoint localEP)
at System.ServiceModel.Channels.SocketConnectionListener.Listen()
--- End of inner exception stack trace ---
at System.ServiceModel.Channels.SocketConnectionListener.Listen()
at System.ServiceModel.Channels.BufferedConnectionListener.Listen()
at System.ServiceModel.Channels.ExclusiveTcpTransportManager.OnOpen()
at System.ServiceModel.Channels.TransportManager.Open(TransportChannelListener channelListener)
at System.ServiceModel.Channels.TransportManagerContainer.Open(SelectTransportManagersCallback selectTransportManagerCallback)
at System.ServiceModel.Channels.TransportChannelListener.OnOpen(TimeSpan timeout)
at System.ServiceModel.Channels.ConnectionOrientedTransportChannelListener.OnOpen(TimeSpan timeout)
at System.ServiceModel.Channels.TcpChannelListener`2.OnOpen(TimeSpan timeout)
at System.ServiceModel.Channels.CommunicationObject.Open(TimeSpan timeout)
at System.ServiceModel.Dispatcher.ChannelDispatcher.OnOpen(TimeSpan timeout)
at System.ServiceModel.Channels.CommunicationObject.Open(TimeSpan timeout)
at System.ServiceModel.ServiceHostBase.OnOpen(TimeSpan timeout)
at System.ServiceModel.Channels.CommunicationObject.Open(TimeSpan timeout)
at Iminent.Mediator.Communication.MediatorServiceController.StartServer()
at Iminent.Mediator.Server.App.OnStartup(StartupEventArgs e)
at System.Windows.Application.<.ctor>b__1(Object unused)
at System.Windows.Threading.ExceptionWrapper.InternalRealCall(Delegate callback, Object args, Int32 numArgs)
at MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(Object source, Delegate method, Object args, Int32 numArgs, Delegate catchHandler)
Error: (08/07/2013 10:23:20 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/07/2013 10:03:30 PM) (Source: Application Hang) (User: )
Description: Programm desk365.exe, Version 1.12.16.7354 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: a4c
Startzeit: 01ce93a8d97ff153
Endzeit: 11
Anwendungspfad: C:\Program Files (x86)\Desk 365\desk365.exe
Berichts-ID: 698c7bc5-ff9c-11e2-9c7c-001c4afab2ef
Error: (08/07/2013 02:47:55 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: fifa13.exe, Version: 1.8.0.0, Zeitstempel: 0x02af0040
Name des fehlerhaften Moduls: fifa13.exe, Version: 1.8.0.0, Zeitstempel: 0x02af0040
Ausnahmecode: 0xc0000005
Fehleroffset: 0x025a228e
ID des fehlerhaften Prozesses: 0xcd4
Startzeit der fehlerhaften Anwendung: 0xfifa13.exe0
Pfad der fehlerhaften Anwendung: fifa13.exe1
Pfad des fehlerhaften Moduls: fifa13.exe2
Berichtskennung: fifa13.exe3
Error: (08/07/2013 02:09:03 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/07/2013 02:33:06 AM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Native.XSplitBroadcaster.exe,type="win32",version="1.0.0.0"1".
Die abhängige Assemblierung "Native.XSplitBroadcaster.exe,type="win32",version="1.0.0.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".
Error: (08/06/2013 11:42:22 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/06/2013 09:19:31 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
System errors:
=============
Error: (08/07/2013 10:48:09 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1069
Error: (08/07/2013 10:48:09 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden:
%%1330
Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC).
Error: (08/07/2013 10:46:41 PM) (Source: DCOM) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)
Error: (08/07/2013 10:25:31 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1069
Error: (08/07/2013 10:25:31 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden:
%%1330
Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC).
Error: (08/07/2013 10:23:46 PM) (Source: DCOM) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)
Error: (08/07/2013 10:22:44 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Wsys Service" wurde nicht richtig gestartet.
Error: (08/07/2013 10:21:16 PM) (Source: EventLog) (User: )
Description: Das System wurde zuvor am 07.08.2013 um 22:19:52 unerwartet heruntergefahren.
Error: (08/07/2013 10:18:31 PM) (Source: BugCheck) (User: )
Description: 0x0000007a (0xfffff6fc5000aa30, 0xffffffffc000009c, 0x000000001906f880, 0xfffff8a001546fdc)C:\Windows\MEMORY.DMP080713-37034-01
Error: (08/07/2013 10:18:19 PM) (Source: EventLog) (User: )
Description: Das System wurde zuvor am 07.08.2013 um 22:16:42 unerwartet heruntergefahren.
Microsoft Office Sessions:
=========================
Error: (08/07/2013 10:46:00 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/07/2013 10:41:48 PM) (Source: Application Hang)(User: )
Description: Trjscan.exe6.8.8.132611e801ce93ae2b422adc13949C:\Program Files (x86)\Trojan Remover\Trjscan.exebb7ccada-ffa1-11e2-847e-001c4afab2ef
Error: (08/07/2013 10:25:09 PM) (Source: Iminent)(User: )
Description: Unexpected exception.
System.ServiceModel.AddressAlreadyInUseException: There is already a listener on IP endpoint 0.0.0.0:808. This could happen if there is another application already listening on this endpoint or if you have multiple service endpoints in your service host with the same IP endpoint but with incompatible binding configurations. ---> System.Net.Sockets.SocketException: Normalerweise darf jede Socketadresse (Protokoll, Netzwerkadresse oder Anschluss) nur jeweils einmal verwendet werden
at System.Net.Sockets.Socket.DoBind(EndPoint endPointSnapshot, SocketAddress socketAddress)
at System.Net.Sockets.Socket.Bind(EndPoint localEP)
at System.ServiceModel.Channels.SocketConnectionListener.Listen()
--- End of inner exception stack trace ---
at System.ServiceModel.Channels.SocketConnectionListener.Listen()
at System.ServiceModel.Channels.BufferedConnectionListener.Listen()
at System.ServiceModel.Channels.ExclusiveTcpTransportManager.OnOpen()
at System.ServiceModel.Channels.TransportManager.Open(TransportChannelListener channelListener)
at System.ServiceModel.Channels.TransportManagerContainer.Open(SelectTransportManagersCallback selectTransportManagerCallback)
at System.ServiceModel.Channels.TransportChannelListener.OnOpen(TimeSpan timeout)
at System.ServiceModel.Channels.ConnectionOrientedTransportChannelListener.OnOpen(TimeSpan timeout)
at System.ServiceModel.Channels.TcpChannelListener`2.OnOpen(TimeSpan timeout)
at System.ServiceModel.Channels.CommunicationObject.Open(TimeSpan timeout)
at System.ServiceModel.Dispatcher.ChannelDispatcher.OnOpen(TimeSpan timeout)
at System.ServiceModel.Channels.CommunicationObject.Open(TimeSpan timeout)
at System.ServiceModel.ServiceHostBase.OnOpen(TimeSpan timeout)
at System.ServiceModel.Channels.CommunicationObject.Open(TimeSpan timeout)
at Iminent.Mediator.Communication.MediatorServiceController.StartServer()
at Iminent.Mediator.Server.App.OnStartup(StartupEventArgs e)
at System.Windows.Application.<.ctor>b__1(Object unused)
at System.Windows.Threading.ExceptionWrapper.InternalRealCall(Delegate callback, Object args, Int32 numArgs)
at MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(Object source, Delegate method, Object args, Int32 numArgs, Delegate catchHandler)
Error: (08/07/2013 10:23:20 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/07/2013 10:03:30 PM) (Source: Application Hang)(User: )
Description: desk365.exe1.12.16.7354a4c01ce93a8d97ff15311C:\Program Files (x86)\Desk 365\desk365.exe698c7bc5-ff9c-11e2-9c7c-001c4afab2ef
Error: (08/07/2013 02:47:55 PM) (Source: Application Error)(User: )
Description: fifa13.exe1.8.0.002af0040fifa13.exe1.8.0.002af0040c0000005025a228ecd401ce936c53003fcdC:\Program Files (x86)\Origin Games\FIFA 13\Game\fifa13.exeC:\Program Files (x86)\Origin Games\FIFA 13\Game\fifa13.exe9443f13b-ff5f-11e2-9c7c-001c4afab2ef
Error: (08/07/2013 02:09:03 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/07/2013 02:33:06 AM) (Source: SideBySide)(User: )
Description: Native.XSplitBroadcaster.exe,type="win32",version="1.0.0.0"C:\Program Files (x86)\SplitMediaLabs\XSplit\XSplitBroadcasterSrc.exe
Error: (08/06/2013 11:42:22 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/06/2013 09:19:31 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
CodeIntegrity Errors:
===================================
Date: 2012-05-20 18:53:02.311
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Unlocker\UnlockerDriver5.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2012-05-20 18:53:02.301
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Unlocker\UnlockerDriver5.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2012-05-20 18:53:02.290
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Unlocker\UnlockerDriver5.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2012-05-20 18:53:02.278
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Unlocker\UnlockerDriver5.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2012-05-20 18:51:57.582
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Unlocker\UnlockerDriver5.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2012-05-20 18:51:57.572
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Unlocker\UnlockerDriver5.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2012-05-20 18:51:57.561
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Unlocker\UnlockerDriver5.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2012-05-20 18:51:57.551
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Unlocker\UnlockerDriver5.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2012-05-20 18:51:47.023
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Unlocker\UnlockerDriver5.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2012-05-20 18:51:47.012
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Unlocker\UnlockerDriver5.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
==================== Memory info ===========================
Percentage of memory in use: 54%
Total physical RAM: 4079.05 MB
Available physical RAM: 1876.15 MB
Total Pagefile: 8156.29 MB
Available Pagefile: 5727.77 MB
Total Virtual: 8192 MB
Available Virtual: 8191.83 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:465.66 GB) (Free:182.04 GB) NTFS (Disk=0 Partition=2)
Drive d: (25 Jun 2013) (CDROM) (Total:4.37 GB) (Free:0 GB) UDF
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 7E68B8CD)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=466 GB) - (Type=07 NTFS)
==================== End Of Log ============================ |