argonaut-1 | 22.08.2013 19:51 | Hallo, Cosinus,
anbei die Logfiles gemäß Anweisung:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 21-08-2013 02
Ran by Adi (administrator) on 22-08-2013 20:40:52
Running from D:\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(Microsoft Corporation) C:\Windows\system32\WLANExt.exe
(BandRich Inc.) C:\Program Files (x86)\o2 Verbindungsmanager\BRService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(DTS, Inc) C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(FUJITSU LIMITED) C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Apoint.exe
(FUJITSU LIMITED) C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe
(FUJITSU LIMITED) C:\Program Files\Fujitsu\PSUtility\TrayManager.exe
(FUJITSU LIMITED) C:\Program Files\Fujitsu\Application Panel\QuickTouch.exe
(FUJITSU LIMITED) C:\Program Files\Fujitsu\Application Panel\BtnHnd.exe
(Microsoft Corporation) C:\Windows\WindowsMobile\wmdc.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Garmin Ltd or its subsidiaries) C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(FUJITSU LIMITED) C:\Program Files (x86)\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe
(Fujitsu Technology Solutions) C:\Fujitsu\Programs\DeskUpdate\DeskUpdateNotifier.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe
(Citrix Systems, Inc.) C:\Program Files (x86)\Citrix\ICA Client\concentr.exe
(Bandoo Media, inc) C:\Program Files (x86)\Windows Searchqu Toolbar\Datamngr\datamngrUI.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
() C:\Program Files (x86)\HTC\HTC Sync 3.0\htcUPCTLoader.exe
(Citrix Systems, Inc.) C:\Program Files (x86)\Citrix\Receiver\Receiver.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Citrix Systems, Inc.) C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe
(Citrix Systems, Inc.) C:\Program Files (x86)\Citrix\SelfServicePlugin\SelfServicePlugin.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe
() C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe
(pdfforge GbR) C:\Program Files (x86)\PDF Architect\HelperService.exe
(pdfforge GbR) C:\Program Files (x86)\PDF Architect\ConversionService.exe
(FUJITSU LIMITED) C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe
(FUJITSU LIMITED) C:\Program Files\Fujitsu\PSUtility\PSUService.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Skype Technologies S.A.) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApMsgFwd.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\HidFind.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Apntex.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe
(FUJITSU LIMITED) C:\Program Files\Fujitsu\Plugfree NETWORK\PFNAutoCon.exe
(FUJITSU LIMITED) C:\Program Files\Fujitsu\Plugfree NETWORK\PFNetDm.EXE
(FUJITSU LIMITED) C:\Program Files\Fujitsu\Plugfree NETWORK\PFNTray.EXE
(Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
(Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
(Microsoft Corporation) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
(Microsoft Corporation) C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Adobe Systems Incorporated) C:\Windows\system32\Macromed\Flash\FlashUtil64_11_8_800_94_ActiveX.exe
(Microsoft Corporation) C:\Windows\System32\MsSpellCheckingFacility.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13374568 2011-12-13] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_DTS] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2277992 2011-11-15] (Realtek Semiconductor)
HKLM\...\Run: [Apoint] - C:\Program Files\Apoint2K\Apoint.exe [589176 2011-12-20] (Alps Electric Co., Ltd.)
HKLM\...\Run: [BTMTrayAgent] - C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll [11406608 2011-12-20] (Intel Corporation)
HKLM\...\Run: [LoadFUJ02E3] - C:\Program Files\Fujitsu\FUJ02E3\fuj02e3.exe [76104 2011-11-24] (FUJITSU LIMITED)
HKLM\...\Run: [PSUTility] - C:\Program Files\Fujitsu\PSUtility\TrayManager.exe [205168 2011-10-03] (FUJITSU LIMITED)
HKLM\...\Run: [LoadFujitsuQuickTouch] - C:\Program Files\Fujitsu\Application Panel\QuickTouch.exe [158024 2011-10-01] (FUJITSU LIMITED)
HKLM\...\Run: [LoadBtnHnd] - C:\Program Files\Fujitsu\Application Panel\BtnHnd.exe [23368 2011-10-01] (FUJITSU LIMITED)
HKLM\...\Run: [Windows Mobile Device Center] - C:\Windows\WindowsMobile\wmdc.exe [660360 2007-05-31] (Microsoft Corporation)
HKCU\...\Run: [GarminExpressTrayApp] - C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [1093464 2013-07-22] (Garmin Ltd or its subsidiaries)
HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd)
HKCU\...\CurrentVersion\Windows: [Load] C:\Users\Adi\LOCALS~1\Temp\msfkmt.cmd <===== ATTENTION!
MountPoints2: {3448ea80-fc3b-11e2-ba70-685d432c5145} - F:\SETUP.EXE
MountPoints2: {dfcc1b23-f2c5-11e1-905a-685d432c5141} - F:\AUTORUN_o2Surfstick.exe /EjectCDROM
HKLM-x32\...\Run: [USB3MON] - C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-02-06] (Intel Corporation)
HKLM-x32\...\Run: [IndicatorUtility] - C:\Program Files (x86)\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe [48752 2010-09-30] (FUJITSU LIMITED)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [DeskUpdateNotifier] - c:\Fujitsu\Programs\DeskUpdate\DeskUpdateNotifier.exe [101728 2013-05-17] (Fujitsu Technology Solutions)
HKLM-x32\...\Run: [YouCam Service] - C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe [255208 2012-03-21] (CyberLink Corp.)
HKLM-x32\...\Run: [ConnectionCenter] - C:\Program Files (x86)\Citrix\ICA Client\concentr.exe [380088 2012-07-27] (Citrix Systems, Inc.)
HKLM-x32\...\Run: [DATAMNGR] - C:\PROGRA~2\WIA6EB~1\Datamngr\DATAMN~1.EXE [1890744 2012-09-02] (Bandoo Media, inc)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation)
HKLM-x32\...\Run: [HTC Sync Loader] - C:\Program Files (x86)\HTC\HTC Sync 3.0\htcUPCTLoader.exe [651264 2012-04-17] ()
HKU\Adi-Admin\...\CurrentVersion\Windows: [Load] C:\Users\Adi-Admin\LOCALS~1\Temp\msfkmt.cmd <===== ATTENTION
AppInit_DLLs: C:\PROGRA~2\WIA6EB~1\Datamngr\x64\datamngr.dll C:\PROGRA~2\WIA6EB~1\Datamngr\x64\IEBHO.dll [1528760 2012-09-02] (Bandoo Media, inc)
Startup: C:\Users\Adi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Mozilla Thunderbird.lnk
ShortcutTarget: Mozilla Thunderbird.lnk -> C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe (Mozilla Corporation)
Startup: C:\Users\Adi-Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\LaunchCenter.lnk
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files\Fujitsu\LaunchCenter\lcStarter.exe (Fujitsu Technology Solutions)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WISO Mein Steuer-Sparbuch heute.lnk
ShortcutTarget: WISO Mein Steuer-Sparbuch heute.lnk -> C:\Program Files (x86)\WISO\Steuersoftware 2013\mshaktuell.exe ()
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\LaunchCenter.lnk
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files\Fujitsu\LaunchCenter\lcStarter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\newreminderdialog.lnk
ShortcutTarget: newreminderdialog.lnk -> C:\Program Files\Fujitsu\FujitsuRecovery\NewReminderDialog.exe (Fujitsu Technology Solutions)
Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\LaunchCenter.lnk
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files\Fujitsu\LaunchCenter\lcStarter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\newreminderdialog.lnk
ShortcutTarget: newreminderdialog.lnk -> C:\Program Files\Fujitsu\FujitsuRecovery\NewReminderDialog.exe (Fujitsu Technology Solutions)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.web.de/
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.qvo6.com/?utm_source=b&utm_medium=cor&from=cor&uid=WDCXWD7500BPVT-16HXZT3_WD-WXE1CC12125921259&ts=1375605402
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.google.com/ig/redirectdomain?brand=FTSH&bmod=FTSH;
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.qvo6.com/?utm_source=b&utm_medium=cor&from=cor&uid=WDCXWD7500BPVT-16HXZT3_WD-WXE1CC12125921259&ts=1375605402
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.qvo6.com/?utm_source=b&utm_medium=cor&from=cor&uid=WDCXWD7500BPVT-16HXZT3_WD-WXE1CC12125921259&ts=1375605402
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.qvo6.com/?utm_source=b&utm_medium=cor&from=cor&uid=WDCXWD7500BPVT-16HXZT3_WD-WXE1CC12125921259&ts=1375605402
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.qvo6.com/?utm_source=b&utm_medium=cor&from=cor&uid=WDCXWD7500BPVT-16HXZT3_WD-WXE1CC12125921259&ts=1375605402
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://search.qvo6.com/web/?utm_source=b&utm_medium=cor&from=cor&uid=WDCXWD7500BPVT-16HXZT3_WD-WXE1CC12125921259&ts=1375605402
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://search.qvo6.com/web/?utm_source=b&utm_medium=cor&from=cor&uid=WDCXWD7500BPVT-16HXZT3_WD-WXE1CC12125921259&ts=1375605402
SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2413} URL = hxxp://dts.search-results.com/sr?src=ieb&appid=0&systemid=413&sr=0&q={searchTerms}
SearchScopes: HKLM-x32 - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://search.qvo6.com/web/?utm_source=b&utm_medium=cor&from=cor&uid=WDCXWD7500BPVT-16HXZT3_WD-WXE1CC12125921259&ts=1375605402
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://search.qvo6.com/web/?utm_source=b&utm_medium=cor&from=cor&uid=WDCXWD7500BPVT-16HXZT3_WD-WXE1CC12125921259&ts=1375605402
SearchScopes: HKLM-x32 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2413} URL = hxxp://dts.search-results.com/sr?src=ieb&appid=0&systemid=413&sr=0&q={searchTerms}
SearchScopes: HKCU - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://search.qvo6.com/web/?utm_source=b&utm_medium=cor&from=cor&uid=WDCXWD7500BPVT-16HXZT3_WD-WXE1CC12125921259&ts=1375605402
SearchScopes: HKCU - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://search.qvo6.com/web/?utm_source=b&utm_medium=cor&from=cor&uid=WDCXWD7500BPVT-16HXZT3_WD-WXE1CC12125921259&ts=1375605402
SearchScopes: HKCU - {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL =
SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2413} URL = hxxp://dts.search-results.com/sr?src=ieb&appid=0&systemid=413&sr=0&q={searchTerms}
SearchScopes: HKCU - {B80C2155-B0F7-4C7B-B384-4348BADE5669} URL =
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: DataMngr - {9D717F81-9148-4f12-8568-69135F087DB0} - C:\PROGRA~2\WIA6EB~1\Datamngr\x64\BROWSE~1.DLL (Bandoo Media, inc)
BHO: Skype add-on for Internet Explorer - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
BHO-x32: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GbR)
BHO-x32: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll (Symantec Corporation)
BHO-x32: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\IPS\IPSBHO.DLL (Symantec Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Searchqu Toolbar - {99079a25-328f-4bd4-be04-00955acaa0a7} - C:\PROGRA~2\WIA6EB~1\Datamngr\ToolBar\searchqudtx.dll ()
BHO-x32: DataMngr - {9D717F81-9148-4f12-8568-69135F087DB0} - C:\PROGRA~2\WIA6EB~1\Datamngr\BROWSE~1.DLL (Bandoo Media, inc)
BHO-x32: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM-x32 - Searchqu Toolbar - {99079a25-328f-4bd4-be04-00955acaa0a7} - C:\PROGRA~2\WIA6EB~1\Datamngr\ToolBar\searchqudtx.dll ()
Toolbar: HKLM-x32 - PDF Architect Toolbar - {25A3A431-30BB-47C8-AD6A-E1063801134F} - C:\Program Files (x86)\PDF Architect\PDFIEPlugin.dll (pdfforge GbR)
Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll (Symantec Corporation)
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
DPF: HKLM {AA570693-00E2-4907-B6F1-60A1199B030C} https://juniper.net/dana-cached/sc/JuniperSetupClient64.cab
DPF: HKLM {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
DPF: HKLM-x32 {F27237D7-93C8-44C2-AC6E-D6057B9A918F} https://juniper.net/dana-cached/sc/JuniperSetupClient.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Filter: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File
Filter: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File
Filter: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File
Filter: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File
Filter: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File
Filter: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File
Filter: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File
Filter: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File
Filter: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File
Filter: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File
Filter: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File
Filter: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File
Filter: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File
Filter: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File
Filter: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File
Filter: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File
Filter-x32: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter-x32: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Tcpip\Parameters: [DhcpNameServer] 83.169.184.161 192.168.0.1
FireFox:
========
FF ProfilePath: C:\Users\Adi\AppData\Roaming\Mozilla\Firefox\Profiles\y983ieqh.default
FF user.js: detected! => C:\Users\Adi\AppData\Roaming\Mozilla\Firefox\Profiles\y983ieqh.default\user.js
FF SelectedSearchEngine: qvo6
FF Homepage: hxxp://www.web.de/
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_224.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll ()
FF Plugin-x32: @Citrix.com/npican - C:\Program Files (x86)\Citrix\ICA Client\npicaN.dll (Citrix Systems, Inc.)
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.52 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\Adi\AppData\Roaming\Mozilla\Firefox\Profiles\y983ieqh.default\searchplugins\11-suche.xml
FF SearchPlugin: C:\Users\Adi\AppData\Roaming\Mozilla\Firefox\Profiles\y983ieqh.default\searchplugins\englische-ergebnisse.xml
FF SearchPlugin: C:\Users\Adi\AppData\Roaming\Mozilla\Firefox\Profiles\y983ieqh.default\searchplugins\gmx-suche.xml
FF SearchPlugin: C:\Users\Adi\AppData\Roaming\Mozilla\Firefox\Profiles\y983ieqh.default\searchplugins\lastminute.xml
FF SearchPlugin: C:\Users\Adi\AppData\Roaming\Mozilla\Firefox\Profiles\y983ieqh.default\searchplugins\Search_Results.xml
FF SearchPlugin: C:\Users\Adi\AppData\Roaming\Mozilla\Firefox\Profiles\y983ieqh.default\searchplugins\webde-suche.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\qvo6.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\Search_Results.xml
FF Extension: No Name - C:\Users\Adi\AppData\Roaming\Mozilla\Extensions\{1FD91A9C-410C-4090-BBCC-55D3450EF433}
FF Extension: Garmin Communicator - C:\Users\Adi\AppData\Roaming\Mozilla\Firefox\Profiles\y983ieqh.default\Extensions\{195A3098-0BD5-4e90-AE22-BA1C540AFD1E}
FF Extension: Searchqu Toolbar - C:\Users\Adi\AppData\Roaming\Mozilla\Firefox\Profiles\y983ieqh.default\Extensions\{99079a25-328f-4bd4-be04-00955acaa0a7}
FF Extension: adblockpopups - C:\Users\Adi\AppData\Roaming\Mozilla\Firefox\Profiles\y983ieqh.default\Extensions\adblockpopups@jessehakanen.net.xpi
FF Extension: elemhidehelper - C:\Users\Adi\AppData\Roaming\Mozilla\Firefox\Profiles\y983ieqh.default\Extensions\elemhidehelper@adblockplus.org.xpi
FF Extension: toolbar - C:\Users\Adi\AppData\Roaming\Mozilla\Firefox\Profiles\y983ieqh.default\Extensions\toolbar@web.de.xpi
FF Extension: No Name - C:\Users\Adi\AppData\Roaming\Mozilla\Firefox\Profiles\y983ieqh.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\extensions\{1FD91A9C-410C-4090-BBCC-55D3450EF433}
FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF HKLM-x32\...\Firefox\Extensions: [{BBDA0591-3099-440a-AA10-41764D9DB4DB}] C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.4.0.40\IPSFFPlgn\
FF Extension: Norton Vulnerability Protection - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.4.0.40\IPSFFPlgn\
FF HKLM-x32\...\Firefox\Extensions: [{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}] C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.4.0.40\coFFPlgn\
FF Extension: Norton Toolbar - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.4.0.40\coFFPlgn\
FF HKLM-x32\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt
FF Extension: PDF Architect Converter For Firefox - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt
==================== Services (Whitelisted) =================
R2 BandLuxe_Service; C:\Program Files (x86)\o2 Verbindungsmanager\BRService.exe [116960 2009-06-14] (BandRich Inc.)
R2 DTSAudioSvc; C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe [225280 2011-08-05] (DTS, Inc)
R2 FUJ02E3Service; C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe [76104 2011-11-24] (FUJITSU LIMITED)
S2 Garmin Core Update Service; C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [219480 2013-07-22] (Garmin Ltd or its subsidiaries)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2011-12-16] (Intel Corporation)
S2 KMService; C:\Windows\SysWow64\srvany.exe [8192 2003-04-18] ()
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273168 2012-02-26] ()
R2 NIS; C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe [144368 2013-05-20] (Symantec Corporation)
R2 PassThru Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [87040 2012-03-23] ()
R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1324104 2013-01-09] (pdfforge GbR)
R2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [795208 2013-01-09] (pdfforge GbR)
R2 PFNService; C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe [2213376 2011-12-22] (FUJITSU LIMITED)
R2 PowerSavingUtilityService; C:\Program Files\Fujitsu\PSUtility\PSUService.exe [63856 2011-10-03] (FUJITSU LIMITED)
S3 Samsung UPD Service2; C:\Windows\System32\SUPDSvc2.exe [158208 2012-04-06] (Samsung Electronics)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [2669840 2012-02-26] (Intel® Corporation)
==================== Drivers (Whitelisted) ====================
R1 BHDrvx64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.4.0.40\Definitions\BASHDefs\20130715.001\BHDrvx64.sys [1393240 2013-05-20] (Symantec Corporation)
R1 BHDrvx64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.4.0.40\Definitions\BASHDefs\20130715.001\BHDrvx64.sys [1393240 2013-05-20] (Symantec Corporation)
S3 br3gmdm; C:\Windows\System32\DRIVERS\br3gmdm.sys [119296 2008-12-23] (BandRich Inc.)
R1 ccSet_NIS; C:\Windows\system32\drivers\NISx64\1404000.028\ccSetx64.sys [169048 2013-04-15] (Symantec Corporation)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2013-08-03] (DT Soft Ltd)
R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484512 2012-08-30] (Symantec Corporation)
R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484512 2012-08-30] (Symantec Corporation)
R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [138912 2013-05-31] (Symantec Corporation)
R0 FBIOSDRV; C:\Windows\System32\Drivers\FBIOSDRV.sys [21104 2009-06-24] (FUJITSU LIMITED)
R3 FUJ02B1; C:\Windows\system32\drivers\FUJ02B1.sys [7808 2006-11-01] (FUJITSU LIMITED)
R3 FUJ02E3; C:\Windows\system32\drivers\FUJ02E3.sys [7296 2006-11-01] (FUJITSU LIMITED)
R1 IDSVia64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.4.0.40\Definitions\IPSDefs\20130821.003\IDSvia64.sys [520280 2013-08-21] (Symantec Corporation)
R1 IDSVia64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.4.0.40\Definitions\IPSDefs\20130821.003\IDSvia64.sys [520280 2013-08-21] (Symantec Corporation)
R3 NAVENG; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.4.0.40\Definitions\VirusDefs\20130822.002\ENG64.SYS [126040 2013-07-27] (Symantec Corporation)
R3 NAVENG; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.4.0.40\Definitions\VirusDefs\20130822.002\ENG64.SYS [126040 2013-07-27] (Symantec Corporation)
R3 NAVEX15; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.4.0.40\Definitions\VirusDefs\20130822.002\EX64.SYS [2098776 2013-07-27] (Symantec Corporation)
R3 NAVEX15; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.4.0.40\Definitions\VirusDefs\20130822.002\EX64.SYS [2098776 2013-07-27] (Symantec Corporation)
R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1812608 2011-12-28] ()
R1 SRTSP; C:\Windows\System32\Drivers\NISx64\1404000.028\SRTSP64.SYS [796760 2013-05-15] (Symantec Corporation)
R1 SRTSPX; C:\Windows\system32\drivers\NISx64\1404000.028\SRTSPX64.SYS [36952 2013-03-04] (Symantec Corporation)
R0 SymDS; C:\Windows\System32\drivers\NISx64\1404000.028\SYMDS64.SYS [493656 2013-05-20] (Symantec Corporation)
R0 SymEFA; C:\Windows\System32\drivers\NISx64\1404000.028\SYMEFA64.SYS [1139800 2013-05-22] (Symantec Corporation)
R3 SymEvent; C:\WINDOWS\system32\Drivers\SYMEVENT64x86.SYS [177312 2013-07-28] (Symantec Corporation)
R1 SymIRON; C:\Windows\system32\drivers\NISx64\1404000.028\Ironx64.SYS [224416 2013-03-04] (Symantec Corporation)
R1 SymNetS; C:\Windows\System32\Drivers\NISx64\1404000.028\SYMNETS.SYS [433752 2013-04-24] (Symantec Corporation)
S3 U6000ALL; C:\Windows\System32\DRIVERS\U6000ALL.sys [276480 2007-07-13] ()
S2 ASPI32; No ImagePath
S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-08-19 13:01 - 2013-08-19 13:01 - 00000000 ____D C:\Program Files\Enigma Software Group
2013-08-19 13:01 - 2013-08-19 13:01 - 00000000 _____ C:\autoexec.bat
2013-08-19 13:00 - 2013-08-19 14:22 - 00000000 ____D C:\Windows\67E1227ED5534A6A96CD40CCBBC705D8.TMP
2013-08-19 12:33 - 2013-08-19 12:46 - 00000000 ____D C:\Users\Adi\AppData\Local\NPE
2013-08-18 11:10 - 2013-08-18 11:10 - 00000000 ____D C:\Program Files (x86)\Microtek
2013-08-18 11:09 - 2013-08-18 11:09 - 00000000 ____D C:\ScanWizard 5 v6.32
2013-08-18 10:09 - 2013-08-18 10:09 - 00000492 _____ C:\Windows\MAXLINK.INI
2013-08-18 10:08 - 2013-08-18 10:09 - 00000000 ____D C:\Program Files (x86)\ABBYY FineReader 4.0 Sprint
2013-08-18 10:07 - 1996-07-18 14:26 - 00022528 _____ (Adaptec) C:\Windows\SysWOW64\WNASPI32.DLL
2013-08-18 10:06 - 1998-01-23 12:20 - 00305664 _____ (InstallShield Software Corporation ) C:\Windows\IsUn0407.exe
2013-08-18 00:04 - 2013-08-18 00:04 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-08-17 23:57 - 2013-08-18 09:54 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2013-08-17 19:08 - 2013-08-18 17:14 - 00000000 ___SD C:\Users\Adi\Documents\Meine Datenquellen
2013-08-17 14:29 - 2013-08-17 14:29 - 00000000 ____D C:\Users\Adi\Desktop\Adobe Application Manager 6.2
2013-08-17 13:56 - 2013-08-17 13:56 - 00000915 _____ C:\Windows\system32\Drivers\etc\hosts.txt
2013-08-17 13:40 - 2013-08-17 14:24 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2013-08-17 13:29 - 2013-07-26 07:13 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-08-17 13:29 - 2013-07-26 07:13 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-08-17 13:29 - 2013-07-26 07:13 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-08-17 13:29 - 2013-07-26 07:12 - 19239424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-08-17 13:29 - 2013-07-26 07:12 - 15405056 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-08-17 13:29 - 2013-07-26 07:12 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-08-17 13:29 - 2013-07-26 07:12 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-08-17 13:29 - 2013-07-26 07:12 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-08-17 13:29 - 2013-07-26 07:12 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-08-17 13:29 - 2013-07-26 07:12 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-08-17 13:29 - 2013-07-26 07:12 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-08-17 13:29 - 2013-07-26 07:12 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-08-17 13:29 - 2013-07-26 07:12 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-08-17 13:29 - 2013-07-26 07:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-08-17 13:29 - 2013-07-26 05:35 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-08-17 13:29 - 2013-07-26 05:13 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-08-17 13:29 - 2013-07-26 05:13 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-08-17 13:29 - 2013-07-26 05:12 - 14329344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-08-17 13:29 - 2013-07-26 05:12 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-08-17 13:29 - 2013-07-26 05:12 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-08-17 13:29 - 2013-07-26 05:12 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-08-17 13:29 - 2013-07-26 05:12 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-08-17 13:29 - 2013-07-26 05:12 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-08-17 13:29 - 2013-07-26 05:12 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-08-17 13:29 - 2013-07-26 05:12 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-08-17 13:29 - 2013-07-26 05:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-08-17 13:29 - 2013-07-26 05:11 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-08-17 13:29 - 2013-07-26 05:11 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-08-17 13:29 - 2013-07-26 04:49 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-08-17 13:29 - 2013-07-26 04:39 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-08-17 13:29 - 2013-07-26 03:59 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-08-17 13:06 - 2013-08-17 13:07 - 00259498 _____ C:\Windows\msxml4-KB2758694-enu.LOG
2013-08-16 23:10 - 2013-07-19 03:58 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2013-08-16 23:10 - 2013-07-19 03:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2013-08-16 23:10 - 2013-07-09 07:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2013-08-16 23:10 - 2013-07-09 07:46 - 01472512 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2013-08-16 23:10 - 2013-07-09 07:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2013-08-16 23:10 - 2013-07-09 07:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2013-08-16 23:10 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2013-08-16 23:10 - 2013-07-09 06:46 - 01166848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2013-08-16 23:10 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2013-08-16 23:10 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2013-08-16 23:09 - 2013-07-25 11:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2013-08-16 23:09 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2013-08-16 23:09 - 2013-07-09 07:51 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2013-08-16 23:09 - 2013-07-09 06:52 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2013-08-16 23:09 - 2013-07-06 08:03 - 01910208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-08-16 23:09 - 2013-06-15 06:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2013-08-16 23:03 - 2013-08-16 23:03 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2013-08-16 23:03 - 2013-08-16 23:03 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2013-08-04 12:13 - 2013-08-04 12:13 - 00000000 ____D C:\Users\Adi\Documents\My Photos
2013-08-04 12:09 - 2013-08-04 12:09 - 00000000 ____D C:\Users\Adi\AppData\Roaming\HTC.388BC06ACDAB6261375BCE37FBA2E023C0D7EE34.1
2013-08-04 11:59 - 2013-08-22 11:15 - 00000000 ____D C:\Users\Adi\AppData\Local\Htc
2013-08-04 11:58 - 2013-08-04 11:59 - 00000000 ____D C:\Users\Adi\AppData\Roaming\HTC
2013-08-04 11:58 - 2013-08-04 11:58 - 00003606 _____ C:\Windows\System32\Tasks\Launch HTC Sync Loader
2013-08-04 11:58 - 2013-08-04 11:58 - 00001088 _____ C:\Users\Public\Desktop\HTC Sync.lnk
2013-08-04 11:41 - 2013-08-04 11:41 - 00000000 ____D C:\Users\Adi\AppData\Local\Downloaded Installations
2013-08-04 11:40 - 2013-08-04 11:40 - 00000000 ____D C:\Program Files (x86)\Spirent Communications
2013-08-04 11:39 - 2013-08-04 11:58 - 00000000 ____D C:\Program Files (x86)\HTC
2013-08-04 11:39 - 2013-08-04 11:39 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2013-08-04 11:39 - 2013-08-04 11:39 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2013-08-04 11:18 - 2013-08-04 11:18 - 160600984 _____ (HTC Corporation ) C:\Users\Adi\Downloads\htc-sync [1].exe
2013-08-04 10:37 - 2013-08-04 11:32 - 00000000 ____D C:\ProgramData\eSafe
2013-08-04 10:36 - 2013-08-04 10:36 - 00000000 ____D C:\Users\Adi\AppData\Roaming\eIntaller
2013-08-03 15:00 - 2013-08-03 15:00 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2013-08-03 14:59 - 2013-08-22 11:12 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-08-03 14:59 - 2013-08-03 14:59 - 00000000 ____D C:\Users\Adi\AppData\Local\Microsoft Help
2013-08-03 14:56 - 2003-04-18 19:06 - 00008192 _____ C:\Windows\SysWOW64\srvany.exe
2013-08-03 14:54 - 2013-08-03 14:54 - 00001960 _____ C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2013-08-03 14:53 - 2013-08-03 14:54 - 00000000 ____D C:\Users\Adi\AppData\Roaming\DAEMON Tools Lite
2013-08-03 14:53 - 2013-08-03 14:53 - 00283200 _____ (DT Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys
2013-08-03 14:53 - 2013-08-03 14:53 - 00000000 ____D C:\Program Files (x86)\DAEMON Tools Lite
2013-08-03 14:52 - 2013-08-03 14:54 - 00000000 ____D C:\ProgramData\DAEMON Tools Lite
2013-07-31 21:06 - 2013-07-31 21:05 - 00263592 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2013-07-31 21:05 - 2013-07-31 21:05 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2013-07-31 21:05 - 2013-07-31 21:05 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2013-07-31 21:05 - 2013-07-31 21:05 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2013-07-31 21:05 - 2013-07-31 21:05 - 00000000 ____D C:\Program Files (x86)\Java
2013-07-28 15:15 - 2013-07-28 15:15 - 00001664 _____ C:\Users\Public\Desktop\Recuva.lnk
2013-07-28 15:05 - 2013-07-28 15:05 - 00000000 ____D C:\Windows\System32\Tasks\Norton Internet Security
2013-07-28 15:02 - 2013-07-28 15:02 - 00000000 ____D C:\Users\Adi\Documents\Symantec
2013-07-28 14:46 - 2013-07-28 14:46 - 00000000 ____D C:\Users\Adi\Downloads\Rettung
2013-07-28 13:34 - 2013-07-28 13:34 - 00000000 ____D C:\Users\Public\Downloads\Norton
2013-07-28 13:21 - 2013-07-28 13:21 - 01474560 _____ C:\Users\Adi\Downloads\cluster 8186.ARJ
2013-07-28 13:21 - 2013-07-28 13:21 - 01474560 _____ C:\Users\Adi\Downloads\cluster 56305.BMP
2013-07-28 13:20 - 2013-07-28 13:21 - 01474560 _____ C:\Users\Adi\Downloads\cluster 53454.XLS
2013-07-28 13:20 - 2013-07-28 13:20 - 01474560 _____ C:\Users\Adi\Downloads\cluster 51779.EXE
2013-07-28 13:20 - 2013-07-28 13:20 - 01474560 _____ C:\Users\Adi\Downloads\cluster 48268.TIF
2013-07-28 13:20 - 2013-07-28 13:20 - 01474560 _____ C:\Users\Adi\Downloads\cluster 48.XLS
2013-07-28 13:20 - 2013-07-28 13:20 - 01474560 _____ C:\Users\Adi\Downloads\cluster 45713.XLS
2013-07-28 13:18 - 2013-07-28 13:18 - 01474560 _____ C:\Users\Adi\Downloads\cluster 39041.XLS
2013-07-28 13:17 - 2013-07-28 13:17 - 01474560 _____ C:\Users\Adi\Downloads\cluster 21833.XLS
2013-07-28 13:17 - 2013-07-28 13:17 - 01474560 _____ C:\Users\Adi\Downloads\cluster 18021.TIF
==================== One Month Modified Files and Folders =======
2013-08-22 20:28 - 2012-08-29 21:19 - 01375063 _____ C:\Windows\WindowsUpdate.log
2013-08-22 20:25 - 2012-12-21 14:12 - 00001100 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-08-22 20:19 - 2009-07-14 06:45 - 00016752 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-08-22 20:19 - 2009-07-14 06:45 - 00016752 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-08-22 20:18 - 2012-12-21 14:12 - 00001104 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-08-22 11:21 - 2012-09-02 00:04 - 00000000 ____D C:\Users\Adi\AppData\Roaming\Adobe
2013-08-22 11:21 - 2012-08-29 21:26 - 00000000 ____D C:\Program Files (x86)\Adobe
2013-08-22 11:20 - 2012-08-29 21:26 - 00000000 ____D C:\ProgramData\Adobe
2013-08-22 11:15 - 2013-08-04 11:59 - 00000000 ____D C:\Users\Adi\AppData\Local\Htc
2013-08-22 11:15 - 2012-08-29 21:29 - 00000000 ____D C:\Users\Adi\Documents\Youcam
2013-08-22 11:15 - 2012-08-29 21:20 - 00112816 _____ C:\Users\Adi\AppData\Local\GDIPFONTCACHEV1.DAT
2013-08-22 11:14 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-08-22 11:14 - 2009-07-14 06:51 - 00105074 _____ C:\Windows\setupact.log
2013-08-22 11:13 - 2010-11-21 05:47 - 00065926 _____ C:\Windows\PFRO.log
2013-08-22 11:13 - 2009-07-14 06:45 - 05055712 _____ C:\Windows\system32\FNTCACHE.DAT
2013-08-22 11:12 - 2013-08-03 14:59 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-08-22 11:10 - 2010-11-21 09:16 - 00000000 ____D C:\Windows\ShellNew
2013-08-22 11:10 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\MSBuild
2013-08-22 11:10 - 2009-07-14 04:34 - 00000387 _____ C:\Windows\win.ini
2013-08-22 11:09 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2013-08-21 22:00 - 2012-01-06 19:54 - 00696870 _____ C:\Windows\system32\perfh007.dat
2013-08-21 22:00 - 2012-01-06 19:54 - 00148134 _____ C:\Windows\system32\perfc007.dat
2013-08-21 22:00 - 2009-07-14 07:13 - 01612484 _____ C:\Windows\system32\PerfStringBackup.INI
2013-08-19 16:56 - 2012-09-09 22:08 - 00000072 _____ C:\Users\Public\LMDebug.log
2013-08-19 14:22 - 2013-08-19 13:00 - 00000000 ____D C:\Windows\67E1227ED5534A6A96CD40CCBBC705D8.TMP
2013-08-19 14:22 - 2012-09-16 22:23 - 00000000 ____D C:\Users\Adi\AppData\Local\CrashDumps
2013-08-19 13:56 - 2013-08-19 13:56 - 00000000 ____D C:\FRST
2013-08-19 13:01 - 2013-08-19 13:01 - 00000000 ____D C:\Program Files\Enigma Software Group
2013-08-19 13:01 - 2013-08-19 13:01 - 00000000 _____ C:\autoexec.bat
2013-08-19 12:46 - 2013-08-19 12:33 - 00000000 ____D C:\Users\Adi\AppData\Local\NPE
2013-08-19 12:33 - 2012-03-02 20:53 - 00000000 ____D C:\ProgramData\Norton
2013-08-19 12:30 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF
2013-08-19 12:13 - 2012-09-04 19:04 - 00000000 ____D C:\Users\Adi\AppData\Local\Adobe
2013-08-18 17:14 - 2013-08-17 19:08 - 00000000 ___SD C:\Users\Adi\Documents\Meine Datenquellen
2013-08-18 11:25 - 2012-03-02 20:29 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2013-08-18 11:10 - 2013-08-18 11:10 - 00000000 ____D C:\Program Files (x86)\Microtek
2013-08-18 11:09 - 2013-08-18 11:09 - 00000000 ____D C:\ScanWizard 5 v6.32
2013-08-18 10:43 - 2012-08-30 21:16 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-08-18 10:09 - 2013-08-18 10:09 - 00000492 _____ C:\Windows\MAXLINK.INI
2013-08-18 10:09 - 2013-08-18 10:08 - 00000000 ____D C:\Program Files (x86)\ABBYY FineReader 4.0 Sprint
2013-08-18 09:54 - 2013-08-17 23:57 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2013-08-18 00:04 - 2013-08-18 00:04 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-08-17 18:12 - 2012-08-29 21:20 - 00000000 ____D C:\Program Files (x86)\Google
2013-08-17 14:29 - 2013-08-17 14:29 - 00000000 ____D C:\Users\Adi\Desktop\Adobe Application Manager 6.2
2013-08-17 14:24 - 2013-08-17 13:40 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2013-08-17 13:56 - 2013-08-17 13:56 - 00000915 _____ C:\Windows\system32\Drivers\etc\hosts.txt
2013-08-17 13:07 - 2013-08-17 13:06 - 00259498 _____ C:\Windows\msxml4-KB2758694-enu.LOG
2013-08-16 23:03 - 2013-08-16 23:03 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2013-08-16 23:03 - 2013-08-16 23:03 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2013-08-04 12:13 - 2013-08-04 12:13 - 00000000 ____D C:\Users\Adi\Documents\My Photos
2013-08-04 12:09 - 2013-08-04 12:09 - 00000000 ____D C:\Users\Adi\AppData\Roaming\HTC.388BC06ACDAB6261375BCE37FBA2E023C0D7EE34.1
2013-08-04 11:59 - 2013-08-04 11:58 - 00000000 ____D C:\Users\Adi\AppData\Roaming\HTC
2013-08-04 11:58 - 2013-08-04 11:58 - 00003606 _____ C:\Windows\System32\Tasks\Launch HTC Sync Loader
2013-08-04 11:58 - 2013-08-04 11:58 - 00001088 _____ C:\Users\Public\Desktop\HTC Sync.lnk
2013-08-04 11:58 - 2013-08-04 11:39 - 00000000 ____D C:\Program Files (x86)\HTC
2013-08-04 11:41 - 2013-08-04 11:41 - 00000000 ____D C:\Users\Adi\AppData\Local\Downloaded Installations
2013-08-04 11:40 - 2013-08-04 11:40 - 00000000 ____D C:\Program Files (x86)\Spirent Communications
2013-08-04 11:40 - 2012-03-02 20:32 - 00041686 _____ C:\Windows\DPINST.LOG
2013-08-04 11:39 - 2013-08-04 11:39 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2013-08-04 11:39 - 2013-08-04 11:39 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2013-08-04 11:39 - 2012-08-30 20:57 - 00000000 ____D C:\Program Files (x86)\MSXML 4.0
2013-08-04 11:32 - 2013-08-04 10:37 - 00000000 ____D C:\ProgramData\eSafe
2013-08-04 11:18 - 2013-08-04 11:18 - 160600984 _____ (HTC Corporation ) C:\Users\Adi\Downloads\htc-sync [1].exe
2013-08-04 10:37 - 2012-09-16 16:03 - 00001649 _____ C:\Users\Adi\Desktop\Internet Explorer (64-bit).lnk
2013-08-04 10:37 - 2012-08-30 21:16 - 00001397 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2013-08-04 10:37 - 2012-08-29 21:20 - 00001683 _____ C:\Users\Adi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-08-04 10:36 - 2013-08-04 10:36 - 00000000 ____D C:\Users\Adi\AppData\Roaming\eIntaller
2013-08-04 10:25 - 2013-06-10 21:19 - 00001894 _____ C:\Users\Public\Desktop\Garmin Express.lnk
2013-08-04 10:25 - 2013-06-10 21:19 - 00000000 ____D C:\ProgramData\Package Cache
2013-08-04 10:25 - 2012-12-21 22:21 - 00000000 ____D C:\ProgramData\Garmin
2013-08-04 10:24 - 2012-03-02 20:43 - 01590378 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2013-08-03 15:00 - 2013-08-03 15:00 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2013-08-03 14:59 - 2013-08-03 14:59 - 00000000 ____D C:\Users\Adi\AppData\Local\Microsoft Help
2013-08-03 14:54 - 2013-08-03 14:54 - 00001960 _____ C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2013-08-03 14:54 - 2013-08-03 14:53 - 00000000 ____D C:\Users\Adi\AppData\Roaming\DAEMON Tools Lite
2013-08-03 14:54 - 2013-08-03 14:52 - 00000000 ____D C:\ProgramData\DAEMON Tools Lite
2013-08-03 14:53 - 2013-08-03 14:53 - 00283200 _____ (DT Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys
2013-08-03 14:53 - 2013-08-03 14:53 - 00000000 ____D C:\Program Files (x86)\DAEMON Tools Lite
2013-07-31 21:05 - 2013-07-31 21:06 - 00263592 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2013-07-31 21:05 - 2013-07-31 21:05 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2013-07-31 21:05 - 2013-07-31 21:05 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2013-07-31 21:05 - 2013-07-31 21:05 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2013-07-31 21:05 - 2013-07-31 21:05 - 00000000 ____D C:\Program Files (x86)\Java
2013-07-31 21:05 - 2012-09-10 08:39 - 00867240 _____ (Oracle Corporation) C:\Windows\SysWOW64\npDeployJava1.dll
2013-07-31 21:05 - 2012-09-10 08:39 - 00789416 _____ (Oracle Corporation) C:\Windows\SysWOW64\deployJava1.dll
2013-07-28 15:42 - 2012-08-29 21:20 - 00000000 ____D C:\Users\Adi
2013-07-28 15:18 - 2012-09-16 15:37 - 00000000 ____D C:\Program Files\Recuva
2013-07-28 15:15 - 2013-07-28 15:15 - 00001664 _____ C:\Users\Public\Desktop\Recuva.lnk
2013-07-28 15:05 - 2013-07-28 15:05 - 00000000 ____D C:\Windows\System32\Tasks\Norton Internet Security
2013-07-28 15:02 - 2013-07-28 15:02 - 00000000 ____D C:\Users\Adi\Documents\Symantec
2013-07-28 14:58 - 2012-10-17 18:54 - 00002507 _____ C:\Users\Public\Desktop\Norton Internet Security.lnk
2013-07-28 14:58 - 2012-03-02 20:53 - 00003234 _____ C:\Windows\System32\Tasks\Norton WSC Integration
2013-07-28 14:58 - 2012-03-02 20:53 - 00000000 ____D C:\Windows\system32\Drivers\NISx64
2013-07-28 14:46 - 2013-07-28 14:46 - 00000000 ____D C:\Users\Adi\Downloads\Rettung
2013-07-28 14:44 - 2012-03-02 20:53 - 00177312 _____ (Symantec Corporation) C:\Windows\system32\Drivers\SYMEVENT64x86.SYS
2013-07-28 14:44 - 2012-03-02 20:53 - 00007631 _____ C:\Windows\system32\Drivers\SYMEVENT64x86.CAT
2013-07-28 13:34 - 2013-07-28 13:34 - 00000000 ____D C:\Users\Public\Downloads\Norton
2013-07-28 13:21 - 2013-07-28 13:21 - 01474560 _____ C:\Users\Adi\Downloads\cluster 8186.ARJ
2013-07-28 13:21 - 2013-07-28 13:21 - 01474560 _____ C:\Users\Adi\Downloads\cluster 56305.BMP
2013-07-28 13:21 - 2013-07-28 13:20 - 01474560 _____ C:\Users\Adi\Downloads\cluster 53454.XLS
2013-07-28 13:20 - 2013-07-28 13:20 - 01474560 _____ C:\Users\Adi\Downloads\cluster 51779.EXE
2013-07-28 13:20 - 2013-07-28 13:20 - 01474560 _____ C:\Users\Adi\Downloads\cluster 48268.TIF
2013-07-28 13:20 - 2013-07-28 13:20 - 01474560 _____ C:\Users\Adi\Downloads\cluster 48.XLS
2013-07-28 13:20 - 2013-07-28 13:20 - 01474560 _____ C:\Users\Adi\Downloads\cluster 45713.XLS
2013-07-28 13:18 - 2013-07-28 13:18 - 01474560 _____ C:\Users\Adi\Downloads\cluster 39041.XLS
2013-07-28 13:17 - 2013-07-28 13:17 - 01474560 _____ C:\Users\Adi\Downloads\cluster 21833.XLS
2013-07-28 13:17 - 2013-07-28 13:17 - 01474560 _____ C:\Users\Adi\Downloads\cluster 18021.TIF
2013-07-26 07:13 - 2013-08-17 13:29 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-07-26 07:13 - 2013-08-17 13:29 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-07-26 07:13 - 2013-08-17 13:29 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-07-26 07:12 - 2013-08-17 13:29 - 19239424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-07-26 07:12 - 2013-08-17 13:29 - 15405056 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-07-26 07:12 - 2013-08-17 13:29 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-07-26 07:12 - 2013-08-17 13:29 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-07-26 07:12 - 2013-08-17 13:29 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-07-26 07:12 - 2013-08-17 13:29 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-07-26 07:12 - 2013-08-17 13:29 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-07-26 07:12 - 2013-08-17 13:29 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-07-26 07:12 - 2013-08-17 13:29 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-07-26 07:12 - 2013-08-17 13:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-07-26 07:12 - 2013-08-17 13:29 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-07-26 05:35 - 2013-08-17 13:29 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-07-26 05:13 - 2013-08-17 13:29 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-07-26 05:13 - 2013-08-17 13:29 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-07-26 05:12 - 2013-08-17 13:29 - 14329344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-07-26 05:12 - 2013-08-17 13:29 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-07-26 05:12 - 2013-08-17 13:29 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-07-26 05:12 - 2013-08-17 13:29 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-07-26 05:12 - 2013-08-17 13:29 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-07-26 05:12 - 2013-08-17 13:29 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-07-26 05:12 - 2013-08-17 13:29 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-07-26 05:12 - 2013-08-17 13:29 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-07-26 05:12 - 2013-08-17 13:29 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-07-26 05:11 - 2013-08-17 13:29 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-07-26 05:11 - 2013-08-17 13:29 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-07-26 04:49 - 2013-08-17 13:29 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-07-26 04:39 - 2013-08-17 13:29 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-07-26 03:59 - 2013-08-17 13:29 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-07-25 11:25 - 2013-08-16 23:09 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2013-07-25 10:57 - 2013-08-16 23:09 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2013-07-24 19:12 - 2012-09-16 15:51 - 00000000 ____D C:\Users\Adi\AppData\Roaming\Skype
2013-07-24 19:10 - 2012-09-16 15:51 - 00000000 ____D C:\ProgramData\Skype
2013-07-24 19:09 - 2012-09-16 15:51 - 00002517 _____ C:\Users\Public\Desktop\Skype.lnk
2013-07-24 19:09 - 2012-09-16 15:51 - 00000000 ___RD C:\Program Files (x86)\Skype
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-01-07 22:46
Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 21-08-2013 02
Ran by Adi at 2013-08-22 20:41:23
Running from D:\Downloads
Boot Mode: Normal
==========================================================
==================== Installed Programs =======================
ABBYY FineReader 4.0 Sprint (x32)
Adobe AIR (x32 Version: 3.2.0.2070)
Adobe Flash Player 11 ActiveX (x32 Version: 11.8.800.94)
Adobe Flash Player 11 Plugin (x32 Version: 11.7.700.224)
Adobe Reader X (10.1.7) - Deutsch (x32 Version: 10.1.7)
ALPS Touch Pad Driver
Amazon Kindle (HKCU)
ArcSoft MediaImpression 2 (x32 Version: 2.0.53.1090)
Citrix Authentication Manager (x32 Version: 3.0.0.47031)
Citrix Receiver (DV) (x32 Version: 13.3.0.55)
Citrix Receiver (HDX Flash-Umleitung) (x32 Version: 13.3.0.55)
Citrix Receiver (USB) (x32 Version: 13.3.0.55)
Citrix Receiver (x32 Version: 13.3.0.55)
Citrix Receiver Inside (x32 Version: 3.3.0.17208)
Citrix Receiver Updater (x32 Version: 3.3.0.17207)
Citrix Receiver(Aero) (x32 Version: 13.3.0.55)
Control ActiveX de Windows Live Mesh para conexiones remotas (x32 Version: 15.4.5722.2)
Contrôle ActiveX Windows Live Mesh pour connexions à distance (x32 Version: 15.4.5722.2)
CyberLink YouCam 5 (x32 Version: 5.0.1521)
D3DX10 (x32 Version: 15.4.2368.0902)
DAEMON Tools Lite (x32 Version: 4.47.1.0333)
DeskUpdate (x32 Version: 4.14.0122)
Drv (x32 Version: 1.00.0000)
e PDF to Word Converter 5.1.0.383 (Version: 5.1.0.383)
Elevated Installer (x32 Version: 2.2.17)
ElsterFormular (x32 Version: 14.3.11574)
ExtractNow (x32)
EZ Grabber (x32 Version: 1.00.0000)
FJ Camera (x32 Version: 5.8.52032.0_WHQL)
Free FLV Converter V 7.4.0 (x32 Version: 7.4.0.0)
Fujitsu Hotkey Utility (x32 Version: 3.70.0.0)
Fujitsu MobilityCenter Extension Utility (Version: 3.01.00.002)
Fujitsu MobilityCenter Extension Utility (x32 Version: 3.01.00.002)
Fujitsu System Extension Utility (Version: 3.4.4.0)
Fujitsu System Extension Utility (x32 Version: 3.4.4.0)
Garmin City Navigator Europe (Unicode) NT 2013.30 Update (x32 Version: 16.30.0.0)
Garmin Communicator Plugin x64 (Version: 4.0.3)
Garmin Express (x32 Version: 2.2.17)
Garmin Express Tray (x32 Version: 2.2.17)
Garmin Update Service (x32 Version: 2.2.17)
GIMP 2.8.2 (Version: 2.8.2)
Google Earth Plug-in (x32 Version: 7.1.1.1888)
Google Update Helper (x32 Version: 1.3.21.153)
High-Definition Video Playback (x32 Version: 7.3.10900.8.0)
HTC BMP USB Driver (x32 Version: 1.0.5375)
HTC Driver Installer (x32 Version: 3.0.0.021)
HTC Sync (x32 Version: 3.2.20)
Intel PROSet Wireless
Intel(R) Management Engine Components (x32 Version: 8.0.0.1351)
Intel(R) OpenCL CPU Runtime (x32)
Intel(R) Processor Graphics (x32 Version: 8.15.10.2696)
Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed (Version: 15.1.0.0096)
Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (Version: 2.0.0.0086)
Intel(R) USB 3.0 eXtensible Host Controller Driver (x32 Version: 1.0.3.214)
Intel® PROSet/Wireless WiFi-Software (Version: 15.01.0000.0830)
Intel® Trusted Connect Service Client (Version: 1.23.216.0)
Java 7 Update 25 (x32 Version: 7.0.250)
Java Auto Updater (x32 Version: 2.1.9.5)
Juniper Citrix Services Client (HKCU Version: 7.3.0.25741)
Juniper Networks, Inc. Setup Client (HKCU Version: 7.3.6.37319)
Juniper Networks, Inc. Setup Client 64-bit Activex Control (Version: 2.1.1.1)
Juniper Networks, Inc. Setup Client Activex Control (x32 Version: 2.1.1.1)
Junk Mail filter update (x32 Version: 15.4.3502.0922)
LIFEBOOK Application Panel (Version: 8.3.2.0)
LIFEBOOK Application Panel (x32 Version: 8.3.2.0)
Mesh Runtime (x32 Version: 15.4.5722.2)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Office 2010 (x32 Version: 14.0.4763.1000)
Microsoft Silverlight (Version: 5.1.20513.0)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 (x32 Version: 9.0.30411)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft_VC80_CRT_x86 (x32 Version: 8.0.50727.4053)
Microsoft_VC90_CRT_x86 (x32 Version: 1.00.0000)
Mozilla Firefox 23.0.1 (x86 de) (x32 Version: 23.0.1)
Mozilla Maintenance Service (x32 Version: 23.0.1)
Mozilla Thunderbird 17.0.8 (x86 de) (x32 Version: 17.0.8)
MSVCRT (x32 Version: 15.4.2862.0708)
MSVCRT_amd64 (x32 Version: 15.4.2862.0708)
MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0)
MSXML 4.0 SP3 Parser (KB2758694) (x32 Version: 4.30.2117.0)
MSXML 4.0 SP3 Parser (x32 Version: 4.30.2100.0)
Nero 10 Movie ThemePack Basic (x32 Version: 10.6.10000.1.0)
Nero BurnRights 10 (x32 Version: 4.4.10400.2.100)
Nero BurnRights 10 Help (CHM) (x32 Version: 10.6.10700)
Nero Control Center 10 (x32 Version: 10.6.12700.0.7)
Nero ControlCenter 10 Help (CHM) (x32 Version: 10.6.10800)
Nero Core Components 10 (x32 Version: 2.0.20000.9.12)
Nero CoverDesigner 10 (x32 Version: 5.6.10600.4.100)
Nero CoverDesigner 10 Help (CHM) (x32 Version: 10.6.10700)
Nero InfoTool 10 (x32 Version: 7.4.10300.1.100)
Nero InfoTool 10 Help (CHM) (x32 Version: 10.6.10700)
Nero Kwik Media (x32 Version: 1.6.14900.57.100)
Nero Multimedia Suite 10 Essentials (x32 Version: 10.6.10200)
Nero StartSmart 10 (x32 Version: 10.6.10400.2.100)
Nero StartSmart 10 Help (CHM) (x32 Version: 10.6.10700)
Nero Update (x32 Version: 1.0.10900.31.0)
NeroKwikMedia Help (CHM) (x32 Version: 10.6.10900)
Norton Internet Security (x32 Version: 20.4.0.40)
o2 Verbindungsmanager (x32 Version: 1.10.0006)
Online Plug-in (x32 Version: 13.3.0.55)
OpenOffice.org 3.4 (x32 Version: 3.4.9590)
PC Inspector File Recovery (x32 Version: 4.0)
PC Inspector smart recovery (x32 Version: 4.50)
PDF Architect (x32 Version: 1.0.52.8917)
PDF To Excel Converter V2.0 (x32)
PDFCreator (x32 Version: 1.6.2)
pdfforge Images2PDF 0.9.2.546 (Version: 0.9.2.546)
PhotoScape (x32)
Plugfree NETWORK (Version: 6.2.0.1)
Plugfree NETWORK (Version: 6.2.001)
Power Saving Utility (x32 Version: 32.01.10.038)
Realtek High Definition Audio Driver (x32 Version: 6.0.1.6526)
Realtek USB 2.0 Card Reader (x32 Version: 6.1.7601.30129)
Recuva (Version: 1.47)
Samsung Universal Print Driver (x32 Version: 2.03.06.00)
Self-Service Plug-in (x32 Version: 3.3.0.27839)
Skype Click to Call (x32 Version: 6.3.11079)
Skype™ 6.6 (x32 Version: 6.6.106)
TeamViewer 8 (x32 Version: 8.0.16642)
Update 4.0.3 for Microsoft .NET Framework 4 Client Profile (KB2600211) (x32 Version: 1)
Update 4.0.3 for Microsoft .NET Framework 4 Extended (KB2600211) (x32 Version: 1)
Windows Live (x32 Version: 15.4.3502.0922)
Windows Live Communications Platform (x32 Version: 15.4.3502.0922)
Windows Live Essentials (x32 Version: 15.4.3502.0922)
Windows Live Essentials (x32 Version: 15.4.3508.1109)
Windows Live ID Sign-in Assistant (Version: 7.250.4225.0)
Windows Live Installer (x32 Version: 15.4.3502.0922)
Windows Live Language Selector (Version: 15.4.3508.1109)
Windows Live Mail (x32 Version: 15.4.3502.0922)
Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (x32 Version: 15.4.5722.2)
Windows Live Mesh (x32 Version: 15.4.3502.0922)
Windows Live Mesh ActiveX Control for Remote Connections (x32 Version: 15.4.5722.2)
Windows Live Mesh ActiveX control for remote connections (x32 Version: 15.4.5722.2)
Windows Live Messenger (x32 Version: 15.4.3502.0922)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Photo Common (x32 Version: 15.4.3502.0922)
Windows Live PIMT Platform (x32 Version: 15.4.3508.1109)
Windows Live Remote Client (Version: 15.4.5722.2)
Windows Live Remote Client Resources (Version: 15.4.5722.2)
Windows Live Remote Service (Version: 15.4.5722.2)
Windows Live Remote Service Resources (Version: 15.4.5722.2)
Windows Live SOXE (x32 Version: 15.4.3502.0922)
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922)
Windows Live UX Platform (x32 Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109)
Windows Live Writer (x32 Version: 15.4.3502.0922)
Windows Live Writer Resources (x32 Version: 15.4.3502.0922)
Windows Media Player Firefox Plugin (x32 Version: 1.0.0.8)
Windows Mobile Device Center Driver Update (Version: 6.1.6965.0)
Windows Mobile-Gerätecenter (Version: 6.1.6965.0)
Windows Searchqu Toolbar (x32 Version: 4.1.0.3114)
Wise Registry Cleaner 7.71 (x32 Version: 7.71)
WISO Steuer-Sparbuch 2012 (x32 Version: 19.00.7303)
WISO Steuer-Sparbuch 2013 (x32 Version: 20.00.8137)
==================== Restore Points =========================
19-08-2013 10:41:31 Norton_Power_Eraser_20130819124128989
19-08-2013 11:01:06 Installed SpyHunter
19-08-2013 12:21:45 Removed SpyHunter
22-08-2013 09:07:28 Microsoft Visual C++ 2005 Redistributable (x64) wird entfernt
22-08-2013 09:07:58 Removed Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
22-08-2013 09:08:29 Removed Microsoft Office Professional Plus 2010
22-08-2013 09:17:06 Removed MSXML 4.0 SP3 Parser (KB2758694)
==================== Hosts content: ==========================
2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {309DB2C9-D83F-48C1-B215-1AEED59F442A} - System32\Tasks\Launch HTC Sync Loader => C:\Program Files (x86)\HTC\HTC Sync 3.0\htcUPCTLoader.exe [2012-04-17] ()
Task: {8DAAE6DC-593D-4304-AC5F-34C6C337B617} - System32\Tasks\Norton WSC Integration => C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\WSCStub.exe [2013-06-03] (Symantec Corporation)
Task: {9E877C2F-8011-4BAE-BF06-5E391A297AD9} - System32\Tasks\Norton Internet Security\Norton Error Analyzer => C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\SymErr.exe [2013-06-03] (Symantec Corporation)
Task: {CD325184-FA75-4168-8EB8-4CEF9666A340} - System32\Tasks\Norton Internet Security\Norton Error Processor => C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\SymErr.exe [2013-06-03] (Symantec Corporation)
Task: {E9E59FA7-207F-45E4-9C41-2F5CE7B26737} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-12-21] (Google Inc.)
Task: {EDEA69A9-C40F-48D9-92EF-52A5E249D2B3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-12-21] (Google Inc.)
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (08/22/2013 11:16:36 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/22/2013 11:11:59 AM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: mscorsvw.exe, Version: 4.0.30319.1, Zeitstempel: 0x4ba21f5d
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.17725, Zeitstempel: 0x4ec4aa8e
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000009970a
ID des fehlerhaften Prozesses: 0x1a54
Startzeit der fehlerhaften Anwendung: 0xmscorsvw.exe0
Pfad der fehlerhaften Anwendung: mscorsvw.exe1
Pfad des fehlerhaften Moduls: mscorsvw.exe2
Berichtskennung: mscorsvw.exe3
Error: (08/22/2013 11:11:58 AM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: conhost.exe, Version: 6.1.7601.17965, Zeitstempel: 0x506da98f
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.17725, Zeitstempel: 0x4ec4aa8e
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000009970a
ID des fehlerhaften Prozesses: 0x5a4
Startzeit der fehlerhaften Anwendung: 0xconhost.exe0
Pfad der fehlerhaften Anwendung: conhost.exe1
Pfad des fehlerhaften Moduls: conhost.exe2
Berichtskennung: conhost.exe3
Error: (08/22/2013 11:11:38 AM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: conhost.exe, Version: 6.1.7601.17965, Zeitstempel: 0x506da98f
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.17725, Zeitstempel: 0x4ec4aa8e
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000009970a
ID des fehlerhaften Prozesses: 0x1930
Startzeit der fehlerhaften Anwendung: 0xconhost.exe0
Pfad der fehlerhaften Anwendung: conhost.exe1
Pfad des fehlerhaften Moduls: conhost.exe2
Berichtskennung: conhost.exe3
Error: (08/22/2013 10:56:48 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/21/2013 09:56:56 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/19/2013 03:45:59 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/19/2013 02:22:27 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: rundll32.exe_inetcpl.cpl, Version: 6.1.7600.16385, Zeitstempel: 0x4a5bc9e0
Name des fehlerhaften Moduls: IEBHO.dll, Version: 1.0.0.1, Zeitstempel: 0x50433ff4
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000087558
ID des fehlerhaften Prozesses: 0x183c
Startzeit der fehlerhaften Anwendung: 0xrundll32.exe_inetcpl.cpl0
Pfad der fehlerhaften Anwendung: rundll32.exe_inetcpl.cpl1
Pfad des fehlerhaften Moduls: rundll32.exe_inetcpl.cpl2
Berichtskennung: rundll32.exe_inetcpl.cpl3
Error: (08/19/2013 02:15:37 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: SearchProtocolHost.exe, Version: 7.0.7601.17610, Zeitstempel: 0x4dc0d006
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.17725, Zeitstempel: 0x4ec4aa8e
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000009970a
ID des fehlerhaften Prozesses: 0x13a4
Startzeit der fehlerhaften Anwendung: 0xSearchProtocolHost.exe0
Pfad der fehlerhaften Anwendung: SearchProtocolHost.exe1
Pfad des fehlerhaften Moduls: SearchProtocolHost.exe2
Berichtskennung: SearchProtocolHost.exe3
Error: (08/19/2013 02:15:37 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: cmd.exe, Version: 6.1.7601.17514, Zeitstempel: 0x4ce798e5
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.17725, Zeitstempel: 0x4ec4aa8e
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000009970a
ID des fehlerhaften Prozesses: 0x1b6c
Startzeit der fehlerhaften Anwendung: 0xcmd.exe0
Pfad der fehlerhaften Anwendung: cmd.exe1
Pfad des fehlerhaften Moduls: cmd.exe2
Berichtskennung: cmd.exe3
System errors:
=============
Error: (08/22/2013 11:15:08 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Intel(R) Capability Licensing Service Interface" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (08/22/2013 11:15:08 AM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Intel(R) Capability Licensing Service Interface erreicht.
Error: (08/22/2013 11:14:36 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Garmin Core Update Service" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (08/22/2013 11:14:36 AM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Garmin Core Update Service erreicht.
Error: (08/22/2013 11:14:04 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "ASPI32" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (08/22/2013 10:56:27 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "ASPI32" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (08/21/2013 09:56:48 PM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst ZeroConfigService erreicht.
Error: (08/21/2013 09:55:55 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "ASPI32" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (08/19/2013 03:44:21 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "ASPI32" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (08/19/2013 00:45:06 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "ASPI32" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Microsoft Office Sessions:
=========================
Error: (08/22/2013 11:16:36 AM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/22/2013 11:11:59 AM) (Source: Application Error)(User: )
Description: mscorsvw.exe4.0.30319.14ba21f5dntdll.dll6.1.7601.177254ec4aa8ec0000005000000000009970a1a5401ce9f17a7fd9ccfC:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exeC:\Windows\SYSTEM32\ntdll.dlle5ac8910-0b0a-11e3-bebb-685d432c5145
Error: (08/22/2013 11:11:58 AM) (Source: Application Error)(User: )
Description: conhost.exe6.1.7601.17965506da98fntdll.dll6.1.7601.177254ec4aa8ec0000005000000000009970a5a401ce9f17a7ccd86aC:\Windows\system32\conhost.exeC:\Windows\SYSTEM32\ntdll.dlle57d1c6b-0b0a-11e3-bebb-685d432c5145
Error: (08/22/2013 11:11:38 AM) (Source: Application Error)(User: )
Description: conhost.exe6.1.7601.17965506da98fntdll.dll6.1.7601.177254ec4aa8ec0000005000000000009970a193001ce9f179b8a6980C:\Windows\system32\conhost.exeC:\Windows\SYSTEM32\ntdll.dlld94079e1-0b0a-11e3-bebb-685d432c5145
Error: (08/22/2013 10:56:48 AM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/21/2013 09:56:56 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/19/2013 03:45:59 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/19/2013 02:22:27 PM) (Source: Application Error)(User: )
Description: rundll32.exe_inetcpl.cpl6.1.7600.163854a5bc9e0IEBHO.dll1.0.0.150433ff4c00000050000000000087558183c01ce9cd6c2d10a19C:\Windows\system32\rundll32.exeC:\PROGRA~2\WIA6EB~1\Datamngr\x64\IEBHO.dll01f34d05-08ca-11e3-be08-685d432c5145
Error: (08/19/2013 02:15:37 PM) (Source: Application Error)(User: )
Description: SearchProtocolHost.exe7.0.7601.176104dc0d006ntdll.dll6.1.7601.177254ec4aa8ec0000005000000000009970a13a401ce9cd5cf53cab4C:\Windows\system32\SearchProtocolHost.exeC:\Windows\SYSTEM32\ntdll.dll0e208325-08c9-11e3-be08-685d432c5145
Error: (08/19/2013 02:15:37 PM) (Source: Application Error)(User: )
Description: cmd.exe6.1.7601.175144ce798e5ntdll.dll6.1.7601.177254ec4aa8ec0000005000000000009970a1b6c01ce9cd5cf693716C:\Windows\system32\cmd.exeC:\Windows\SYSTEM32\ntdll.dll0e205c15-08c9-11e3-be08-685d432c5145
CodeIntegrity Errors:
===================================
Date: 2013-08-22 11:16:21.003
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\sxs.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-22 10:56:39.557
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\sxs.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-21 22:10:27.132
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\sxs.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-21 21:55:56.206
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\sxs.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-19 17:51:28.385
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\sxs.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-19 17:41:33.275
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\sxs.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-19 17:21:17.499
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\sxs.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-19 17:00:35.086
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\sxs.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-19 16:55:12.276
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\sxs.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-19 15:44:55.320
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\sxs.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
==================== Memory info ===========================
Percentage of memory in use: 55%
Total physical RAM: 3958.37 MB
Available physical RAM: 1764.14 MB
Total Pagefile: 7914.93 MB
Available Pagefile: 5143.57 MB
Total Virtual: 8192 MB
Available Virtual: 8191.86 MB
==================== Drives ================================
Drive c: (System) (Fixed) (Total:80 GB) (Free:11.85 GB) NTFS
Drive d: (Daten) (Fixed) (Total:499.11 GB) (Free:443.93 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 699 GB) (Disk ID: B8755606)
Partition 1: (Active) - (Size=2 GB) - (Type=27)
Partition 2: (Not Active) - (Size=697 GB) - (Type=OF Extended)
==================== End Of Log ============================ --- --- ---
==================== End Of Log ============================
Argonaut-1 |