Trojaner-Board

Trojaner-Board (https://www.trojaner-board.de/)
-   Log-Analyse und Auswertung (https://www.trojaner-board.de/log-analyse-auswertung/)
-   -   iolorgdf32 program not found / iminent (https://www.trojaner-board.de/140932-iolorgdf32-program-not-found-iminent.html)

miki60 03.09.2013 12:54

iolorgdf32 program not found / iminent
 
Guten Tag!
kann mir bitte jemand helfen?
ich hab hier einen Rechner mit Windows8 , der langsam startet und vor Windows im DOS-Fenster? die Meldung bringt:
iolorgdf32 program not found skipping Autocheck
unter Programme war auch etwas von Iminent und WebCake zu sehen, die habe ich schon deinstalliert
beim gmer--scan gabs 2 Fehlermeldungen
Der Prozeß kann nicht auf Date izugreifen, da ein anderer Prozeß usw.
und etwas von ntuser.dat
anbei die üblichen logs:

Code:

defogger_disable by jpshortstuff (23.02.10.1)
Log created at 13:24 on 03/09/2013 (karsten)
Checking for autostart values...
HKCU\~\Run values retrieved.
HKLM\~\Run values retrieved.
Checking for services/drivers...
-=E.O.F=-

Code:

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 03-09-2013 01
Ran by karsten (administrator) on KCW on 03-09-2013 13:26:09
Running from C:\Users\karsten\Downloads
Windows 8 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(AMD) C:\Windows\system32\atiesrxx.exe
(AMD) C:\Windows\system32\atieclxx.exe
(IvoSoft) C:\Program Files\Classic Shell\ClassicShellService.exe
(Microsoft Corporation) C:\Windows\system32\WLANExt.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Microsoft Corporation) C:\Windows\system32\dashost.exe
(Hewlett-Packard Company) C:\Program Files (x86)\HP\HPBDSService\HPBDSService.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\FrameworkService.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\VsTskMgr.exe
(McAfee, Inc.) C:\Windows\system32\mfevtps.exe
(pdfforge GbR) C:\Program Files (x86)\PDF Architect\HelperService.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\mfeann.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\naPrdMgr.exe
(Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Iminent) C:\Program Files (x86)\Common Files\Umbrella\umbrella.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe
(cake bake) C:\Program Files (x86)\WBDesktop.Updater.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
(Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\VmbService.exe
(Microsoft Corporation) C:\Windows\SysWOW64\DllHost.exe
(IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler64.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkClient.EXE
(Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
() C:\Program Files\Sony\VAIO Care\VCPerfService.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe
(Sony Corporation) C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe
(Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE
(McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\UdaterUI.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\McTray.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\SHSTAT.EXE
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
() C:\Program Files\Sony\VAIO Care\listener.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VUAgent.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Improvement\vim.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Improvement\vim.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCSystemTray.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCService.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCAgent.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1215632 2012-08-22] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1215632 2012-08-22] (Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2916152 2012-08-24] (Synaptics Incorporated)
HKLM\...\Run: [BTMTrayAgent] - C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [11582848 2012-09-30] (Motorola Solutions, Inc.)
HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,C:\Windows\skipmetrosuite.exe,
HKLM\...\Policies\Explorer: [NoActiveDesktopChanges] 1
HKLM\...\Policies\Explorer: [NoActiveDesktop] 1
MountPoints2: {00cf490d-0260-11e3-beaf-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence
MountPoints2: {59609a28-0e49-11e3-beb9-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence
MountPoints2: {59609a55-0e49-11e3-beb9-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence
MountPoints2: {7d2e3252-00c6-11e3-beac-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence
MountPoints2: {abadd295-147f-11e3-bec3-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence
MountPoints2: {b09a22dd-f766-11e2-bea9-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence
MountPoints2: {b09a231c-f766-11e2-bea9-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence
MountPoints2: {b09a23ab-f766-11e2-bea9-5453edb62022} - "E:\AutoRun.exe"
MountPoints2: {b09a23d0-f766-11e2-bea9-5453edb62022} - "E:\AutoRun.exe"
MountPoints2: {b09a2413-f766-11e2-bea9-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence
MountPoints2: {d1225ae4-dfb3-11e2-be99-5453edb62022} - "E:\Autorun.exe"
HKLM-x32\...\Run: [Dolby Home Theater v4] - C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [508256 2012-04-23] (Dolby Laboratories Inc.)
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642216 2012-08-06] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [ISBMgr.exe] - C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe [68776 2012-08-18] (Sony Corporation)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - c:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [37960 2013-05-10] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Intel AppUp(SM) center] - C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [152896 2012-06-25] (Intel Corporation)
HKLM-x32\...\Run: [McAfeeUpdaterUI] - C:\Program Files (x86)\McAfee\Common Framework\udaterui.exe [333376 2011-11-15] (McAfee, Inc.)
HKLM-x32\...\Run: [ShStatEXE] - C:\Program Files (x86)\McAfee\VirusScan Enterprise\SHSTAT.EXE [215656 2012-08-14] (McAfee, Inc.)
HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [49208 2010-06-09] (Hewlett-Packard)
HKLM-x32\...\Run: [] -  [x]
HKLM-x32\...\Run: [Iminent] - C:\Program Files (x86)\Iminent\Iminent.exe [1074736 2013-06-18] (Iminent)
HKLM-x32\...\Run: [IminentMessenger] - C:\Program Files (x86)\Iminent\Iminent.Messengers.exe [884784 2013-06-18] (Iminent)
HKLM-x32\...\Run: [MobileBroadband] - C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\MobileBroadband.exe [76288 2013-02-05] (Vodafone)
AppInit_DLLs:    [0 ] ()
AppInit_DLLs-x32:    [0 ] ()
BootExecute: autocheck autochk * autocheck iolorgdf32 C:\Users\karsten\AppData\Roaming\iolo\

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.searchnu.com/406?appid=427
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://sony13.msn.com
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://vaioportal.sony.eu
SearchScopes: HKLM - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=427&systemid=406&apn_uid=3800099316804469&apn_dtid=BND406&o=APN10645&apn_ptnrs=AG6&q={searchTerms}
SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=427&systemid=406&apn_uid=3800099316804469&apn_dtid=BND406&o=APN10645&apn_ptnrs=AG6&q={searchTerms}
SearchScopes: HKLM-x32 - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=427&systemid=406&apn_uid=3800099316804469&apn_dtid=BND406&o=APN10645&apn_ptnrs=AG6&q={searchTerms}
SearchScopes: HKLM-x32 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=427&systemid=406&apn_uid=3800099316804469&apn_dtid=BND406&o=APN10645&apn_ptnrs=AG6&q={searchTerms}
SearchScopes: HKCU - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=427&systemid=406&apn_uid=3800099316804469&apn_dtid=BND406&o=APN10645&apn_ptnrs=AG6&q={searchTerms}
SearchScopes: HKCU - {0BB430DC-AB51-4C14-89C3-3102CA91B8B8} URL = hxxp://rover.ebay.com/rover/1/707-37276-16609-27/4?mpre=hxxp://shop.ebay.de/?oemInLn=ieSrch-Q312&_nkw={searchTerms}
SearchScopes: HKCU - {80E04FE9-5834-4F5E-BCA3-AF9A0D2EF1A3} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASEJS
SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=427&systemid=406&apn_uid=3800099316804469&apn_dtid=BND406&o=APN10645&apn_ptnrs=AG6&q={searchTerms}
SearchScopes: HKCU - {F15FE3CB-E081-40DC-8B46-1C33E78FE0A4} URL = hxxp://search.zonealarm.com/search?src=sp&tbid=Solo&Lan=&q={searchTerms}&gu=ea9e5e931c8f46d0b5fc7ff027f2c9cd&tu=11Ih0008I1B0001&sku=&tstsId=&ver=&&r=0
BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20130307163200.dll (McAfee, Inc.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: ClassicIE9BHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIE9DLL_64.dll (IvoSoft)
BHO-x32: Plus-HD-2.6 - {11111111-1111-1111-1111-110311341140} - C:\Program Files (x86)\Plus-HD-2.6\Plus-HD-2.6-bho.dll (Plus HD)
BHO-x32: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GbR)
BHO-x32: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20130307163200.dll (McAfee, Inc.)
BHO-x32: LyricsContainer - {81fae1f7-9dec-456b-a40b-ad4ffb541561} - C:\Program Files (x86)\LyricsContainer\130.dll (LyricsContainer)
BHO-x32: IMinent WebBooster (BHO) - {A09AB6EB-31B5-454C-97EC-9B294D92EE2A} - C:\Program Files (x86)\Iminent\Iminent.WebBooster.InternetExplorer.dll (Iminent)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: ClassicIE9BHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIE9DLL_32.dll (IvoSoft)
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
Toolbar: HKLM-x32 - PDF Architect Toolbar - {25A3A431-30BB-47C8-AD6A-E1063801134F} - C:\Program Files (x86)\PDF Architect\PDFIEPlugin.dll (pdfforge GbR)
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)
Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} -  No File
Tcpip\Parameters: [DhcpNameServer] 192.168.13.13
Tcpip\..\Interfaces\{8E0C755B-CB0B-4BC6-BC3B-A4081D5AE527}: [NameServer]139.7.30.125,139.7.30.126

FireFox:
========
FF ProfilePath: C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default
FF user.js: detected! => C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\user.js
FF DefaultSearchEngine: Search Results
FF SearchEngineOrder.1: Search Results
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.google.com/
FF Keyword.URL: hxxp://dts.search-results.com/sr?src=ffb&gct=ds&appid=427&systemid=406&apn_dtid=BND406&apn_ptnrs=AG6&apn_uid=3800099316804469&o=APN10645&q=
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll ()
FF Plugin: @java.com/DTPlugin,version=10.5.0 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.5.0 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.5.0 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.5.0 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.6 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\1\NP_wtapp.dll ()
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\searchplugins\Search_Results.xml
FF SearchPlugin: C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\searchplugins\zonealarm.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: No Name - C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\Extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com
FF Extension: No Name - C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\Extensions\staged
FF Extension: firefox - C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\Extensions\firefox@ghostery.com.xpi
FF Extension: jid1-u9RbFp9JcoEGGw - C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\Extensions\jid1-u9RbFp9JcoEGGw@jetpack.xpi
FF Extension: webbooster - C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\Extensions\webbooster@iminent.com.xpi
FF Extension: No Name - C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF HKLM-x32\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt
FF Extension: PDF Architect Converter For Firefox - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt
FF HKLM-x32\...\Firefox\Extensions: [{D19CA586-DD6C-4a0a-96F8-14644F340D60}] C:\Program Files (x86)\Common Files\McAfee\SystemCore
FF Extension: IDS_SS_NAME - C:\Program Files (x86)\Common Files\McAfee\SystemCore
FF HKLM-x32\...\Firefox\Extensions: [ff-bmboc@bytemobile.com] C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Optimization Client\addon\
FF Extension: Bytemobile Optimization Client - C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Optimization Client\addon\
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] C:\Program Files\McAfee\MSK
FF HKCU\...\Firefox\Extensions: [{12ff8c0f-2b0e-4b07-a1cc-4b7ea21c58f2}] C:\Program Files (x86)\LyricsContainer\130.xpi
FF Extension: No Name - C:\Program Files (x86)\LyricsContainer\130.xpi

==================== Services (Whitelisted) =================

R2 ClassicShellService; C:\Program Files\Classic Shell\ClassicShellService.exe [68608 2012-12-29] (IvoSoft)
R2 HP DS Service; C:\Program Files (x86)\HP\HPBDSService\HPBDSService.exe [13824 2010-10-27] (Hewlett-Packard Company)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128896 2012-07-25] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-25] (Intel Corporation)
R2 McAfeeFramework; C:\Program Files (x86)\McAfee\Common Framework\FrameworkService.exe [132672 2011-11-15] (McAfee, Inc.)
R2 McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [201864 2013-03-07] (McAfee, Inc.)
R2 McTaskManager; C:\Program Files (x86)\McAfee\VirusScan Enterprise\VsTskMgr.exe [210056 2012-08-14] (McAfee, Inc.)
S4 mfeicfcoreocp; C:\Program Files\McAfeeEx\MOCP\core\mfeicfcore.exe [5619000 2012-06-20] (McAfee, Inc.)
R2 mfevtp; C:\Windows\system32\mfevtps.exe [170440 2013-03-07] (McAfee, Inc.)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [272176 2012-07-18] ()
S3 NetworkSupport; C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkSupport.exe [623784 2012-08-18] (Sony Corporation)
R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1324104 2013-01-09] (pdfforge GbR)
S2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [795208 2013-01-09] (pdfforge GbR)
R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [474208 2012-07-27] (Sony Corporation)
R2 SampleCollector; C:\Program Files\Sony\VAIO Care\VCPerfService.exe [156672 2012-08-06] ()
R2 SProtection; C:\Program Files (x86)\Common Files\Umbrella\umbrella.exe [2864448 2013-08-11] (Iminent)
S3 VCFw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [972000 2012-08-08] (Sony Corporation)
R3 VUAgent; C:\Program Files\Sony\VAIO Update\VUAgent.exe [1359408 2013-03-26] (Sony Corporation)
R2 WebCake Desktop Updater; C:\Program Files (x86)\WBDesktop.Updater.exe [51992 2013-08-11] (cake bake)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16048 2013-07-02] (Microsoft Corporation)
S2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [2699568 2012-07-18] (Intel® Corporation)
S2 McOobeSv2; "C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [x]

==================== Drivers (Whitelisted) ====================

R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [35496 2012-08-22] (Advanced Micro Devices, Inc.)
R0 BMLoad; C:\Windows\System32\drivers\BMLoad.sys [16552 2013-09-03] (Bytemobile, Inc.)
S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation)
S3 btmaux; C:\Windows\system32\DRIVERS\btmaux.sys [132480 2012-10-01] (Motorola Solutions, Inc.)
S3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1337216 2012-10-01] (Motorola Solutions, Inc.)
R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink)
S3 ewusbnet; C:\Windows\system32\DRIVERS\ewusbnet.sys [451072 2013-01-30] (Huawei Technologies Co., Ltd.)
S3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [160952 2013-03-07] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [274880 2013-03-07] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [665768 2013-03-07] (McAfee, Inc.)
S3 mferkdet; C:\Windows\System32\drivers\mferkdet.sys [101200 2013-03-07] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [303464 2013-03-07] (McAfee, Inc.)
R3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew00.sys [4273192 2012-08-07] (Intel Corporation)
R3 rimssne; C:\Windows\System32\drivers\rimssne64.sys [103424 2012-08-23] (REDC)
R3 risdsnxc; C:\Windows\System32\drivers\risdsnxc64.sys [104960 2012-08-23] (REDC)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [43832 2012-08-24] (Synaptics Incorporated)
R3 SOWS; C:\Windows\System32\drivers\sows.sys [24280 2012-06-11] (Sony Corporation)
R1 tcpipBM; C:\Windows\system32\drivers\tcpipBM.sys [39592 2013-09-03] (Bytemobile, Inc.)
R1 tcpipBM; C:\Windows\system32\drivers\tcpipBM.sys [39592 2013-09-03] (Bytemobile, Inc.)
S3 usb3Hub; C:\Windows\System32\drivers\usb3Hub.sys [48096 2012-08-09] (Windows (R) Win 7 DDK provider)
S3 XHCIPort; C:\Windows\System32\drivers\XHCIPort.sys [188384 2012-08-09] (Windows (R) Win 7 DDK provider)
S3 hwusbfake; \SystemRoot\system32\DRIVERS\ewusbfake.sys [x]
U3 mfeavfk01; No ImagePath

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-09-03 13:24 - 2013-09-03 13:24 - 00377856 _____ C:\Users\karsten\Downloads\gmer_2.1.19163.exe
2013-09-03 13:24 - 2013-09-03 13:24 - 00000476 _____ C:\Users\karsten\Downloads\defogger_disable.log
2013-09-03 13:24 - 2013-09-03 13:24 - 00000000 _____ C:\Users\karsten\defogger_reenable
2013-09-03 13:23 - 2013-09-03 13:23 - 01950474 _____ (Farbar) C:\Users\karsten\Downloads\FRST64.exe
2013-09-03 13:23 - 2013-09-03 13:23 - 00050477 _____ C:\Users\karsten\Downloads\Defogger.exe
2013-09-03 11:59 - 2013-01-30 11:26 - 00451072 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbnet.sys
2013-09-03 11:59 - 2013-01-30 11:26 - 00225920 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbmdm.sys
2013-09-03 11:58 - 2013-09-03 11:58 - 00039592 _____ (Bytemobile, Inc.) C:\Windows\system32\Drivers\tcpipBM.sys
2013-09-03 11:58 - 2013-09-03 11:58 - 00016552 _____ (Bytemobile, Inc.) C:\Windows\system32\Drivers\BMLoad.sys
2013-09-03 11:58 - 2013-09-03 11:58 - 00002156 _____ C:\Users\Public\Desktop\Vodafone Mobile Broadband.lnk
2013-09-03 11:58 - 2013-09-03 11:58 - 00000000 ____D C:\Program Files (x86)\Vodafone
2013-08-28 12:34 - 2013-09-01 12:13 - 00000000 ____D C:\Program Files (x86)\LyricsContainer
2013-08-26 21:46 - 2013-08-26 21:46 - 00000512 _____ C:\Users\karsten\Desktop\Lokaler Datenträger (C) - Verknüpfung.lnk
2013-08-22 23:10 - 2013-08-22 23:10 - 00000000 ____D C:\Program Files (x86)\Betcat
2013-08-14 08:34 - 2013-07-26 07:13 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-08-14 08:34 - 2013-07-26 07:13 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-08-14 08:34 - 2013-07-26 07:13 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll
2013-08-14 08:34 - 2013-07-26 07:13 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll
2013-08-14 08:34 - 2013-07-26 07:13 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-08-14 08:34 - 2013-07-26 07:12 - 19239424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-08-14 08:34 - 2013-07-26 07:12 - 15405056 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-08-14 08:34 - 2013-07-26 07:12 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-08-14 08:34 - 2013-07-26 07:12 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-08-14 08:34 - 2013-07-26 07:12 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-08-14 08:34 - 2013-07-26 07:12 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-08-14 08:34 - 2013-07-26 07:12 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-08-14 08:34 - 2013-07-26 07:12 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-08-14 08:34 - 2013-07-26 07:12 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-08-14 08:34 - 2013-07-26 07:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-08-14 08:34 - 2013-07-26 05:35 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-08-14 08:34 - 2013-07-26 05:13 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-08-14 08:34 - 2013-07-26 05:13 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-08-14 08:34 - 2013-07-26 05:13 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll
2013-08-14 08:34 - 2013-07-26 05:12 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-08-14 08:34 - 2013-07-26 05:12 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-08-14 08:34 - 2013-07-26 05:12 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-08-14 08:34 - 2013-07-26 05:12 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-08-14 08:34 - 2013-07-26 05:12 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-08-14 08:34 - 2013-07-26 05:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-08-14 08:34 - 2013-07-26 05:11 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-08-14 08:34 - 2013-07-26 05:11 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-08-14 08:34 - 2013-07-26 04:49 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-08-14 08:34 - 2013-07-26 02:54 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll
2013-08-14 08:33 - 2013-07-26 05:12 - 14329344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-08-14 08:33 - 2013-07-26 05:12 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-08-14 08:25 - 2013-07-02 02:44 - 00036288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys
2013-08-14 08:25 - 2013-07-02 00:08 - 00247216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys
2013-08-14 08:25 - 2013-05-24 01:02 - 01314816 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2013-08-14 08:24 - 2013-07-09 08:07 - 02233168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-08-14 08:24 - 2013-05-24 00:25 - 00694272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2013-08-14 08:21 - 2013-07-13 08:18 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2013-08-14 08:21 - 2013-07-13 08:16 - 01889280 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2013-08-14 08:21 - 2013-07-13 08:16 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2013-08-14 08:21 - 2013-07-13 08:15 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\apprepapi.dll
2013-08-14 08:21 - 2013-07-13 08:15 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\apprepsync.dll
2013-08-14 08:21 - 2013-07-13 06:24 - 00261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2013-08-14 08:21 - 2013-07-13 06:23 - 01568256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2013-08-14 08:21 - 2013-07-13 06:23 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepapi.dll
2013-08-14 08:21 - 2013-07-13 06:23 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepsync.dll
2013-08-12 20:32 - 2013-08-12 20:32 - 00002172 _____ C:\Users\Public\Desktop\Google Earth.lnk
2013-08-12 20:22 - 2013-08-22 15:18 - 00000000 ____D C:\Windows\system32\MRT
2013-08-11 13:22 - 2013-08-11 13:22 - 00000000 ____D C:\Users\karsten\AppData\Roaming\FLEXnet
2013-08-11 13:19 - 2013-08-11 13:19 - 00000000 ____D C:\Neuer Ordner
2013-08-11 13:18 - 2013-09-03 11:37 - 00000000 ____D C:\Users\karsten\AppData\Roaming\Betcat
2013-08-11 13:18 - 2013-08-11 13:18 - 00051992 _____ (cake bake) C:\Program Files (x86)\WBDesktop.Updater.exe
2013-08-09 09:35 - 2013-01-30 11:26 - 01490656 _____ (Microsoft Corporation) C:\Windows\system32\wdfcoinstaller01007.dll
2013-08-09 09:35 - 2013-01-30 11:26 - 00117248 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_hwusbdev.sys
2013-08-09 09:35 - 2013-01-30 11:26 - 00090112 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jubusenum.sys
2013-08-09 09:34 - 2013-08-09 09:34 - 00000000 ____D C:\Users\karsten\AppData\Local\Downloaded Installations
2013-08-09 09:34 - 2013-08-09 09:34 - 00000000 ____D C:\ProgramData\Macrovision
2013-08-08 12:05 - 2013-09-03 11:58 - 00000000 ____D C:\ProgramData\Vodafone
2013-08-08 11:15 - 2013-08-09 09:43 - 00000000 ____D C:\Users\karsten\AppData\Roaming\Vodafone
2013-08-08 11:14 - 2013-08-08 11:14 - 00008464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SpOrder.dll
2013-08-08 11:14 - 2013-08-08 11:14 - 00000000 ____D C:\ProgramData\FLEXnet
2013-08-08 11:13 - 2013-08-08 11:13 - 00000000 ____D C:\Users\karsten\AppData\Local\{86DD38A2-C8BD-404A-A1BD-907F6B69C913}

==================== One Month Modified Files and Folders =======

2013-09-03 13:25 - 2013-09-03 13:25 - 00000000 ____D C:\FRST
2013-09-03 13:24 - 2013-09-03 13:24 - 00377856 _____ C:\Users\karsten\Downloads\gmer_2.1.19163.exe
2013-09-03 13:24 - 2013-09-03 13:24 - 00000476 _____ C:\Users\karsten\Downloads\defogger_disable.log
2013-09-03 13:24 - 2013-09-03 13:24 - 00000000 _____ C:\Users\karsten\defogger_reenable
2013-09-03 13:24 - 2013-03-07 15:43 - 00000000 ____D C:\Users\karsten
2013-09-03 13:23 - 2013-09-03 13:23 - 01950474 _____ (Farbar) C:\Users\karsten\Downloads\FRST64.exe
2013-09-03 13:23 - 2013-09-03 13:23 - 00050477 _____ C:\Users\karsten\Downloads\Defogger.exe
2013-09-03 13:21 - 2013-06-22 20:11 - 00001120 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-09-03 13:13 - 2013-03-07 15:50 - 00003594 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-288095589-429832609-4039349632-1001
2013-09-03 13:13 - 2012-11-16 17:15 - 01756881 _____ C:\Windows\WindowsUpdate.log
2013-09-03 13:11 - 2013-06-29 11:31 - 00003582 _____ C:\Windows\System32\Tasks\FinishInstall igdhbblpcellaljokkpfhcjlagemhgjl
2013-09-03 13:11 - 2013-06-29 11:31 - 00000000 ____D C:\Users\karsten\AppData\Roaming\igdhbblpcellaljokkpfhcjlagemhgjl
2013-09-03 13:09 - 2013-06-29 11:30 - 00000420 _____ C:\Windows\Tasks\LyricsContainer Update.job
2013-09-03 13:06 - 2013-06-22 20:11 - 00001116 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-09-03 13:06 - 2013-05-29 17:41 - 00001210 _____ C:\Windows\Tasks\Plus-HD-2.6-codedownloader.job
2013-09-03 13:06 - 2013-05-29 17:41 - 00001206 _____ C:\Windows\Tasks\Plus-HD-2.6-updater.job
2013-09-03 13:06 - 2013-05-29 17:41 - 00001110 _____ C:\Windows\Tasks\Plus-HD-2.6-enabler.job
2013-09-03 13:06 - 2013-05-29 17:39 - 00001842 _____ C:\Windows\Tasks\Plus-HD-2.6-firefoxinstaller.job
2013-09-03 13:04 - 2012-07-26 09:22 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-09-03 12:34 - 2012-11-16 16:53 - 00000000 ____D C:\ProgramData\Sony Corporation
2013-09-03 12:34 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\sru
2013-09-03 12:17 - 2012-11-16 16:47 - 00753134 _____ C:\Windows\system32\perfh007.dat
2013-09-03 12:17 - 2012-11-16 16:47 - 00155826 _____ C:\Windows\system32\perfc007.dat
2013-09-03 12:17 - 2012-07-26 09:28 - 01745416 _____ C:\Windows\system32\PerfStringBackup.INI
2013-09-03 12:03 - 2012-07-26 09:21 - 00054721 _____ C:\Windows\setupact.log
2013-09-03 11:58 - 2013-09-03 11:58 - 00039592 _____ (Bytemobile, Inc.) C:\Windows\system32\Drivers\tcpipBM.sys
2013-09-03 11:58 - 2013-09-03 11:58 - 00016552 _____ (Bytemobile, Inc.) C:\Windows\system32\Drivers\BMLoad.sys
2013-09-03 11:58 - 2013-09-03 11:58 - 00002156 _____ C:\Users\Public\Desktop\Vodafone Mobile Broadband.lnk
2013-09-03 11:58 - 2013-09-03 11:58 - 00000000 ____D C:\Program Files (x86)\Vodafone
2013-09-03 11:58 - 2013-08-08 12:05 - 00000000 ____D C:\ProgramData\Vodafone
2013-09-03 11:52 - 2013-03-07 17:02 - 00000000 ____D C:\Original
2013-09-03 11:40 - 2013-06-26 20:02 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-09-03 11:37 - 2013-08-11 13:18 - 00000000 ____D C:\Users\karsten\AppData\Roaming\Betcat
2013-09-02 16:05 - 2012-07-26 07:26 - 00262144 ___SH C:\Windows\system32\config\BBI
2013-09-01 23:00 - 2013-06-13 21:50 - 00000000 ____D C:\Users\karsten\AppData\Roaming\Thunderbird
2013-09-01 12:20 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\AUInstallAgent
2013-09-01 12:13 - 2013-08-28 12:34 - 00000000 ____D C:\Program Files (x86)\LyricsContainer
2013-09-01 12:13 - 2012-08-03 04:22 - 00017196 _____ C:\Windows\PFRO.log
2013-08-28 22:07 - 2013-03-08 12:57 - 00000000 ____D C:\World ARC 2009_2013
2013-08-28 12:34 - 2013-06-29 11:30 - 00003064 _____ C:\Windows\System32\Tasks\LyricsContainer Update
2013-08-26 21:46 - 2013-08-26 21:46 - 00000512 _____ C:\Users\karsten\Desktop\Lokaler Datenträger (C) - Verknüpfung.lnk
2013-08-26 21:17 - 2013-05-29 17:47 - 00000000 ____D C:\Users\karsten\AppData\Roaming\vlc
2013-08-22 23:10 - 2013-08-22 23:10 - 00000000 ____D C:\Program Files (x86)\Betcat
2013-08-22 15:40 - 2013-06-26 20:02 - 00003772 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-08-22 15:18 - 2013-08-12 20:22 - 00000000 ____D C:\Windows\system32\MRT
2013-08-22 15:16 - 2013-03-18 10:14 - 78161360 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-08-15 03:07 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\rescache
2013-08-14 08:47 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files\Windows Defender
2013-08-14 08:47 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2013-08-12 20:32 - 2013-08-12 20:32 - 00002172 _____ C:\Users\Public\Desktop\Google Earth.lnk
2013-08-12 20:31 - 2013-06-22 20:11 - 00000000 ____D C:\Program Files (x86)\Google
2013-08-11 13:22 - 2013-08-11 13:22 - 00000000 ____D C:\Users\karsten\AppData\Roaming\FLEXnet
2013-08-11 13:19 - 2013-08-11 13:19 - 00000000 ____D C:\Neuer Ordner
2013-08-11 13:18 - 2013-08-11 13:18 - 00051992 _____ (cake bake) C:\Program Files (x86)\WBDesktop.Updater.exe
2013-08-11 10:35 - 2013-03-18 20:07 - 00068904 _____ C:\Users\karsten\AppData\Local\GDIPFONTCACHEV1.DAT
2013-08-09 09:43 - 2013-08-08 11:15 - 00000000 ____D C:\Users\karsten\AppData\Roaming\Vodafone
2013-08-09 09:38 - 2013-07-27 16:15 - 00305704 _____ C:\Windows\system32\FNTCACHE.DAT
2013-08-09 09:34 - 2013-08-09 09:34 - 00000000 ____D C:\Users\karsten\AppData\Local\Downloaded Installations
2013-08-09 09:34 - 2013-08-09 09:34 - 00000000 ____D C:\ProgramData\Macrovision
2013-08-08 11:14 - 2013-08-08 11:14 - 00008464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SpOrder.dll
2013-08-08 11:14 - 2013-08-08 11:14 - 00000000 ____D C:\ProgramData\FLEXnet
2013-08-08 11:13 - 2013-08-08 11:13 - 00000000 ____D C:\Users\karsten\AppData\Local\{86DD38A2-C8BD-404A-A1BD-907F6B69C913}

Files to move or delete:
====================
C:\Users\karsten\AppData\Local\Temp\BundleSweetIMSetup.exe
C:\Users\karsten\AppData\Local\Temp\DataCard_Setup64.exe
C:\Users\karsten\AppData\Local\Temp\fp_pl_pfs_installer-1.exe
C:\Users\karsten\AppData\Local\Temp\fp_pl_pfs_installer.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssa_aih.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssa_aih_1.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(1).exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(1)_1.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(1)_2.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(2).exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(2)_1.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(2)_2.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(2)_3.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_1.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_10.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_11.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_12.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_13.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_14.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_2.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_3.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_4.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_5.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_6.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_7.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_8.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_9.exe
C:\Users\karsten\AppData\Local\Temp\is-9VOOK.exe
C:\Users\karsten\AppData\Local\Temp\LyricsContainertmp.exe
C:\Users\karsten\AppData\Local\Temp\MybabylonTB.exe
C:\Users\karsten\AppData\Local\Temp\propsys.dll
C:\Users\karsten\AppData\Local\Temp\ResetDevice.exe
C:\Users\karsten\AppData\Local\Temp\Setup.exe
C:\Users\karsten\AppData\Local\Temp\SpOrder.dll
C:\Users\karsten\AppData\Local\Temp\zatbSetup_110_000_064.exe
C:\Users\karsten\AppData\Local\Temp\{CE15D1B6-19B6-4D4D-8F43-CF5D2C3356FF}\nailite.dll
C:\Users\karsten\AppData\Local\Temp\{A2041102-6384-4EC4-BFEB-DA2EC1518A1B}\InstallFlashPlayer.exe
C:\Users\karsten\AppData\Local\Temp\{72CF18AF-048E-49A2-91BF-424F426C7F59}\InstallFlashPlayer.exe
C:\Users\karsten\AppData\Local\Temp\{67C1E091-8FC4-4816-A3DE-EDD4C5CD8F12}\InstallFlashPlayer.exe
C:\Users\karsten\AppData\Local\Temp\UTPSDLL\GdiPlus.dll
C:\Users\karsten\AppData\Local\Temp\UTPSDLL\mfc71.dll
C:\Users\karsten\AppData\Local\Temp\UTPSDLL\MFC71u.dll
C:\Users\karsten\AppData\Local\Temp\UTPSDLL\msvcp71.dll
C:\Users\karsten\AppData\Local\Temp\UTPSDLL\msvcr71.dll
C:\Users\karsten\AppData\Local\Temp\Temp1_SkipMetroSuite.zip\Windows 8 x64\SkipMetroSuiteUI.exe
C:\Users\karsten\AppData\Local\Temp\SDIAG_fedc0537-1c1f-46e2-962d-3cb9d2c09fe9\NetworkDiagnosticSnapIn.dll
C:\Users\karsten\AppData\Local\Temp\nsy12BA.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsy12BA.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsy12BA.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsy12BA.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsy12BA.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsx5231.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsx5231.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsx5231.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsx5231.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsx5231.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nswFCC8.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nswFCC8.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nswFCC8.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nswFCC8.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nswFCC8.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsvF02F.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsvF02F.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsvF02F.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsvF02F.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsvF02F.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsuFAC8.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsuFAC8.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsuFAC8.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsuFAC8.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsuFAC8.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsu37DC.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsu37DC.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsu37DC.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsu37DC.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsu37DC.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsrFA7B.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsrFA7B.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsrFA7B.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsrFA7B.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsrFA7B.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsr79.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsr79.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsr79.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsr79.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsr79.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsqB2AC.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsqB2AC.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsqB2AC.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsqB2AC.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsqB2AC.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsp2E7D.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsp2E7D.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsp2E7D.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsp2E7D.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsp2E7D.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\textreplace.dll
C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsn90.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsn90.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsn90.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsn90.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsn90.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsl6ED3.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsl6ED3.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsl6ED3.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsl6ED3.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsl6ED3.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsj95BD.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsj95BD.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsj95BD.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsj95BD.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsj95BD.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsj19E1.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsj19E1.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsj19E1.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsj19E1.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsj19E1.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsg3404.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsg3404.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsg3404.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsg3404.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsg3404.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsg28A4.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsg28A4.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsg28A4.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsg28A4.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsg28A4.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsaF1CA.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsaF1CA.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsaF1CA.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsaF1CA.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsaF1CA.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\mcbrwsr2.dll
C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\McInstallerStartup.dll
C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\McInstallerUtil.dll
C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\mcuicnt.exe
C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\OcpStartup.dll
C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\Ocp_LD.dll
C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\OCP_UI.dll
C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\UnInstallOcp.exe
C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\UnMfp.exe
C:\Users\karsten\AppData\Local\Temp\MozUpdater\updater.exe
C:\Users\karsten\AppData\Local\Temp\dlm8D05.tmp\123freesolitaire-v90-setup.exe
C:\Users\karsten\AppData\Local\Temp\._msige61\GoogleEarth.exe
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemyext.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\earthps.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\geplugin.exe
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\ge_expat.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\googleearth_free.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\icudt.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGAttrs.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGCore.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGExportCommon.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGGfx.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGMath.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGOpt.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGSg.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGUtils.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\Leap.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\msvcp100.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\msvcr100.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\npgeplugin.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\plugin_ax.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\QtCore4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\QtGui4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\QtNetwork4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\QtWebKit4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\imageformats\qgif4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\imageformats\qjpeg4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\optimizations\IGOptExtension.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\D3DCompiler_43.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\d3dx9_43.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\IGAttrs.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\IGGfx.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\IGSg.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\libEGL.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\libGLESv2.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogl\IGAttrs.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogl\IGGfx.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogl\IGSg.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemyext.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\earthflashsol.exe
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\earthps.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\ge_expat.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\googleearth.exe
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\googleearth_free.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\gpsbabel.exe
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\icudt.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGAttrs.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGCore.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGExportCommon.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGGfx.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGMath.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGOpt.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGSg.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGUtils.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\Leap.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\msvcp100.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\msvcr100.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\QtCore4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\QtGui4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\QtNetwork4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\QtWebKit4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\Plugins\npgeinprocessplugin.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\imageformats\qgif4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\imageformats\qjpeg4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\optimizations\IGOptExtension.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\D3DCompiler_43.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\d3dx9_43.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\IGAttrs.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\IGGfx.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\IGSg.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\libEGL.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\libGLESv2.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogl\IGAttrs.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogl\IGGfx.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogl\IGSg.dll

==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-09-01 13:13

==================== End Of Log ============================

danke schonmal im voraus für die Bemühungen...

miki60 03.09.2013 12:55

und hier noch der Rest:
Code:

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 03-09-2013 01
Ran by karsten at 2013-09-03 13:26:54
Running from C:\Users\karsten\Downloads
Boot Mode: Normal
==========================================================


==================== Installed Programs =======================

 
123 Free Solitaire v9.0 (x32)
64 Bit HP CIO Components Installer (Version: 8.2.1)
Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.94)
Adobe Reader X (10.1.7) MUI (x32 Version: 10.1.7)
Agatha Christie - Death on the Nile (x32 Version: 2.2.0.98)
Aloha TriPeaks (x32 Version: 2.2.0.98)
AMD APP SDK Runtime (Version: 10.0.938.2)
AMD Catalyst Install Manager (Version: 8.0.881.0)
Bejeweled 3 (x32 Version: 2.2.0.98)
Build-a-lot: On Vacation (x32 Version: 2.2.0.110)
Catalyst Control Center - Branding (x32 Version: 1.00.0000)
Catalyst Control Center (x32 Version: 2012.0806.1156.19437)
Catalyst Control Center Graphics Previews Common (x32 Version: 2012.0806.1156.19437)
Catalyst Control Center InstallProxy (x32 Version: 2012.0806.1156.19437)
Catalyst Control Center Localization All (x32 Version: 2012.0806.1156.19437)
Catalyst Control Center Profiles Mobile (x32 Version: 2012.0806.1156.19437)
CCC Help Chinese Standard (x32 Version: 2012.0806.1155.19437)
CCC Help Chinese Traditional (x32 Version: 2012.0806.1155.19437)
CCC Help Czech (x32 Version: 2012.0806.1155.19437)
CCC Help Danish (x32 Version: 2012.0806.1155.19437)
CCC Help Dutch (x32 Version: 2012.0806.1155.19437)
CCC Help English (x32 Version: 2012.0806.1155.19437)
CCC Help Finnish (x32 Version: 2012.0806.1155.19437)
CCC Help French (x32 Version: 2012.0806.1155.19437)
CCC Help German (x32 Version: 2012.0806.1155.19437)
CCC Help Greek (x32 Version: 2012.0806.1155.19437)
CCC Help Hungarian (x32 Version: 2012.0806.1155.19437)
CCC Help Italian (x32 Version: 2012.0806.1155.19437)
CCC Help Japanese (x32 Version: 2012.0806.1155.19437)
CCC Help Korean (x32 Version: 2012.0806.1155.19437)
CCC Help Norwegian (x32 Version: 2012.0806.1155.19437)
CCC Help Polish (x32 Version: 2012.0806.1155.19437)
CCC Help Portuguese (x32 Version: 2012.0806.1155.19437)
CCC Help Russian (x32 Version: 2012.0806.1155.19437)
CCC Help Spanish (x32 Version: 2012.0806.1155.19437)
CCC Help Swedish (x32 Version: 2012.0806.1155.19437)
CCC Help Thai (x32 Version: 2012.0806.1155.19437)
CCC Help Turkish (x32 Version: 2012.0806.1155.19437)
ccc-utility64 (Version: 2012.0806.1156.19437)
Chronicles of Albian (x32 Version: 2.2.0.110)
Chuzzle Deluxe (x32 Version: 2.2.0.95)
Classic Shell (Version: 3.6.5)
Compatibility Pack für 2007 Office System (x32 Version: 12.0.6021.5000)
Cradle Of Egypt Collector's Edition (x32 Version: 2.2.0.110)
CyberLink Power2Go 8 (x32 Version: 8.0.0.1923)
CyberLink PowerDVD (x32 Version: 9.0.5601.52)
Dolby Home Theater v4 (x32 Version: 7.2.8000.13)
el PROSet Wireless
FATE (x32 Version: 2.2.0.97)
FDUx86 (x32 Version: 1.0.0)
Google Earth (x32 Version: 7.1.1.1888)
Google Update Helper (x32 Version: 1.3.21.153)
Heroes of Hellas 3: Athens (x32 Version: 2.2.0.110)
HP LaserJet 100 color MFP M175 (x32)
HP LJ100 M175 HP Scan (x32 Version: 1.0.302.0)
HP Update (x32 Version: 5.002.006.003)
hpbDSService (x32 Version: 001.001.05133)
hpbM175DSService (x32 Version: 001.001.05133)
HPLaserJet100ColorMFPM175_HelpLearnCenter_SI (x32 Version: 1.00.0000)
HPLJUT (x32 Version: 1.00.0012)
hppLaserJetService (x32 Version: 002.015.00602)
hppM175LaserJetService (x32 Version: 001.014.00480)
Iminent (x32 Version: 6.25.21.0)
InstanceFinder (x32 Version: 1.00.0001)
Intel AppUp(SM) center (x32 Version: 03.05.11)
Intel(R) Display Audio Driver (x32 Version: 6.14.00.3097)
Intel(R) Management Engine Components (x32 Version: 8.1.0.1252)
Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed (Version: 15.5.0.0344)
Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (Version: 2.6.1210.0278)
Intel(R) Rapid Storage Technology (x32 Version: 11.5.3.1004)
Intel(R) WiDi (Version: 3.5.34.0)
Intel® PROSet/Wireless WiFi-Software (Version: 15.05.1000.1411)
Intel® Trusted Connect Service Client (Version: 1.24.388.1)
IrfanView (remove only) (x32 Version: 4.36)
Java Auto Updater (x32 Version: 2.1.6.0)
Java(TM) 7 Update 5 (64-bit) (Version: 7.0.50)
Java(TM) 7 Update 5 (x32 Version: 7.0.50)
KUx86 (x32 Version: 1.0.0)
Luxor HD (x32 Version: 2.2.0.110)
LyricsContainer (x32)
Mahjongg Artifacts (x32 Version: 2.2.0.110)
McAfee Agent (x32 Version: 4.6.0.2292)
McAfee VirusScan Enterprise (x32 Version: 8.8.02004)
Microsoft Office Professional Edition 2003 (x32 Version: 11.0.8173.0)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219)
Mozilla Firefox 22.0 (x86 de) (x32 Version: 22.0)
Mozilla Maintenance Service (x32 Version: 22.0)
Mystery of Mortlake Mansion (x32 Version: 2.2.0.98)
Mystery P.I. - The London Caper (x32 Version: 2.2.0.95)
NauticTools (HKCU Version: - Version 1.2)
PDF Architect (x32 Version: 1.0.52.8917)
PDFCreator (x32 Version: 1.6.2)
Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98)
Plus-HD-2.6 (x32 Version: 1.27.153.5)
Polar Bowler (x32 Version: 2.2.0.97)
PX Profile Update (x32 Version: 1.00.1.)
Realtek High Definition Audio Driver (x32 Version: 6.0.1.6705)
Restore (x32 Version: 1.0.0)
Shared C Run-time for x64 (Version: 10.0.0)
SSLx64 (Version: 1.0.0)
SSLx86 (x32 Version: 1.0.0)
Synaptics Pointing Device Driver (Version: 16.2.10.5)
ToolboxProxy (x32 Version: 1.00.0001)
Ugrib RC1 (x32 Version: Release Candidate 0.2.4)
Update Installer for WildTangent Games App (x32)
VAIO - Xperia Link (x32 Version: 1.0.0.08170)
VAIO Care (Version: 8.0.0.08150)
VAIO Control Center (x32 Version: 6.0.0.08200)
VAIO Data Restore Tool (x32 Version: 1.10.0.07270)
VAIO Easy Connect (x32 Version: 1.2.0.08150)
VAIO Gate (x32 Version: 3.0.0.08140)
VAIO Gate Default (x32 Version: 3.0.0.08060)
VAIO Gesture Control (x32 Version: 2.0.0.08240)
VAIO Image Optimizer (x32 Version: 3.0.00.08170)
VAIO Improvement (x32 Version: 2.0.0.08090)
VAIO Media Server Settings (Version: 1.0.0.08240)
VAIO Movie Creator Template Data (x32 Version: 4.0.00.08170)
VAIO Update (x32 Version: 6.2.1.03260)
VAIO*CPU-Lüfterdiagnose (x32 Version: 1.1.0.09200)
VAIO-Handbuch (x32 Version: 3.0.0.08100)
VAIO-Support für Übertragungen (x32 Version: 1.8.0.08212)
VCCx64 (Version: 1.0.0)
VCCx86 (x32 Version: 1.0.0)
VGClientX64 (Version: 1.0.0)
VHD (x32 Version: 1.0.0)
Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.98)
VIx64 (Version: 1.0.0)
VIx86 (x32 Version: 1.0.0)
VLC media player 2.0.6 (x32 Version: 2.0.6)
VMLx86 (x32 Version: 1.0.0)
Vodafone Mobile Broadband (x32 Version: 10.3.401.43721)
VPMx64 (Version: 1.0.0)
VSSTx64 (Version: 1.0.0)
VSSTx86 (x32 Version: 1.0.0)
VU5x64 (Version: 1.0.0)
VU5x86 (x32 Version: 1.0.0)
VUx64 (Version: 1.0.0)
VUx86 (x32 Version: 1.0.0)
VWSTx86 (x32 Version: 1.0.0)
WetterWelt GRIB-View 2.7.1 (x32 Version: 2.7.1)
WildTangent Games App (x32 Version: 4.0.8.7)
WildTangent-Spiele (x32 Version: 1.0.3.0)
XperiaLinkx86 (x32 Version: 1.0.0)

==================== Restore Points  =========================

17-07-2013 05:33:50 Windows Update
08-08-2013 09:14:06 Installed Vodafone Mobile Connect Lite.
12-08-2013 18:18:53 Windows Update
22-08-2013 13:09:09 Windows Update
03-09-2013 09:57:21 Installed Vodafone Mobile Broadband.

==================== Hosts content: ==========================

2012-07-26 07:26 - 2012-07-26 07:26 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

Task: {023E4CF9-7E5D-4C7C-B0A5-C179B53574B6} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-22] (Google Inc.)
Task: {10D85952-E3F6-47A1-96CF-5E1C2D874EA6} - System32\Tasks\Microsoft\Windows\SystemRestore\SR => C:\Windows\system32\srtasks.exe [2012-07-26] (Microsoft Corporation)
Task: {13A2AC02-B682-48CC-9155-2E2673580117} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Critical
Task: {17644F17-DC4C-4AC8-9444-7AAA52EB5CDC} - System32\Tasks\Microsoft\Windows\NetCfg\BindingWorkItemQueueHandler
Task: {1AAFF332-5C62-4558-9991-DAA649C4C9C5} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => C:\Windows\System32\sysmain.dll [2013-05-04] (Microsoft Corporation)
Task: {1DB7C2F1-876C-4F24-AD17-8428211113F9} - System32\Tasks\Microsoft\Windows\MemoryDiagnostic\ProcessMemoryDiagnosticEvents
Task: {214B24F4-FEB4-4C59-AF1F-70136065199C} - System32\Tasks\Microsoft\Windows\Shell\IndexerAutomaticMaintenance
Task: {21647303-9D50-4997-8D9D-DC0045A0F868} - System32\Tasks\Plus-HD-2.6-updater => C:\Program Files (x86)\Plus-HD-2.6\Plus-HD-2.6-updater.exe [2013-05-29] (Plus HD)
Task: {221959ED-8B7F-4501-8143-018D8B0CDE7C} - System32\Tasks\Sony Corporation\VAIO Control Center\Level4Month => C:\Program Files (x86)\Sony\VAIO Control Center\WBCBatteryCare.exe [2012-08-18] (Sony Corporation)
Task: {23700E5C-0E77-499D-908A-415D5C6252F4} - System32\Tasks\Microsoft\Windows\Plug and Play\Device Install Group Policy
Task: {23A5D8BE-9196-40EB-BD89-794398B2B073} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => C:\Windows\System32\WSClient.dll [2012-09-20] (Microsoft Corporation)
Task: {23CB3632-C37A-4203-99CB-FFAD2A440F5C} - System32\Tasks\Sony Corporation\VAIO Update\VAIO Update Self Repair => C:\Program Files\Sony\VAIO Update\VUSR.exe [2013-03-26] (Sony Corporation)
Task: {2837012F-A4E7-4103-8AAD-514F889ED283} - System32\Tasks\Sony Corporation\VAIO Control Center\Level4Daily => C:\Program Files (x86)\Sony\VAIO Control Center\WBCBatteryCare.exe [2012-08-18] (Sony Corporation)
Task: {2C6B9EA8-7F5A-4ABA-BF96-8D352D02A743} - System32\Tasks\Microsoft\Windows\Device Setup\Metadata Refresh
Task: {2E030FA7-3D7C-4E1D-8CFE-56ADB26FD402} - System32\Tasks\Microsoft\Windows\PI\Sqm-Tasks
Task: {2F54CA99-F1FD-4A31-B945-F631D51B7A6E} - System32\Tasks\LyricsContainer Update => C:\Program Files (x86)\LyricsContainer\LrcsCtrUpdr.exe [2013-08-27] ()
Task: {3054485A-F517-4E95-9977-4DD827B1E9B3} - System32\Tasks\Microsoft\Windows\WS\Badge Update
Task: {31C63B03-2599-4079-B85B-5315CC9C230C} - System32\Tasks\Sony Corporation\VAIO Update\Launch Application => C:\Program Files\SONY\VAIO Update\ShellExeProxy.exe [2013-03-26] (Sony Corporation)
Task: {33B86844-8B4D-45E7-8B39-C2F27E4D64A9} - System32\Tasks\Microsoft\Windows\WindowsUpdate\AUFirmwareInstall
Task: {378401BA-A703-444A-A79C-3C47AD2DC5B6} - System32\Tasks\Microsoft\Windows\TaskScheduler\Maintenance Configurator
Task: {3AE164E7-30CD-40BC-9422-3EC7A5618965} - System32\Tasks\Microsoft\Windows\WS\WSTask
Task: {3C490ABD-D849-41AF-9AC4-87DD759B0996} - System32\Tasks\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem
Task: {4073C1B3-6E16-4AA8-B7F3-C6A6D35D5071} - System32\Tasks\Microsoft\Windows\TPM\Tpm-Maintenance
Task: {41A4C1B3-67E7-444E-A372-DD6E2FAB7A91} - System32\Tasks\HPLJCustParticipation => C:\Program Files (x86)\HP\HPLJUT\HPLJUTSCH.exe [2010-09-22] (Hewlett Packard)
Task: {44B3F1B8-5943-4072-8D8C-A9484676AC44} - System32\Tasks\Microsoft\Windows\Live\Roaming\SynchronizeWithStorage
Task: {483A8F5C-5D26-44B5-B49E-AF6741D1BBEB} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => C:\Windows\System32\MbaeParserTask.exe [2013-06-01] (Microsoft Corporation)
Task: {4A82F081-627F-4A23-AB59-2F6EDE20829B} - System32\Tasks\Sony Corporation\VAIO Update\VAIO Update => C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe [2013-03-26] (Sony Corporation)
Task: {4B0889FE-2C8D-4026-B150-AE813821F8C5} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-08-22] (Adobe Systems Incorporated)
Task: {4B952129-9AE9-41A3-BE2B-8AD2E06F66B6} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskLogon
Task: {5755E746-D7ED-4C20-A472-66C11834CDE4} - System32\Tasks\Microsoft\Windows\TaskScheduler\Manual Maintenance
Task: {57B72E25-8831-43A4-90B6-7AC05C417D31} - System32\Tasks\Sony Corporation\VAIO Care\VCMetrics => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-08-15] (Sony Corporation)
Task: {5A2F90F9-7EA4-4B01-A50B-2DECD9DA1CF7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-22] (Google Inc.)
Task: {5C4EFB77-EFA6-45DF-A373-D795C0725BFF} - System32\Tasks\Microsoft\Windows\Plug and Play\Device Install Reboot Required
Task: {627441F3-8526-4B62-BF9A-1A3EA414E71A} - System32\Tasks\Microsoft\Windows\SpacePort\SpaceAgentTask => C:\Windows\system32\SpaceAgent.exe [2012-07-26] (Microsoft Corporation)
Task: {696A9E94-F777-4551-9AC4-44B75EAA1E98} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start => start wuauserv
Task: {6B6C211D-9C1C-462F-B17D-B47CFD6F31A8} - System32\Tasks\Sony Corporation\VAIO Care\VCOneClick => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-08-15] (Sony Corporation)
Task: {6E0144A5-A1DF-4177-9246-08CA2A6F81D2} - System32\Tasks\Sony Corporation\VAIO Care\VCCheckIolo => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-08-15] (Sony Corporation)
Task: {6E9DE125-5583-4031-B572-FEE48F25CFFF} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyMonitor => C:\Windows\System32\wpcmon.exe [2012-09-20] (Microsoft Corporation)
Task: {6FDDEA7C-6310-428D-AEB2-54FFC72811EF} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319
Task: {71FFCD13-EC41-4DC1-9EA3-737EE5412AB3} - System32\Tasks\Sony Corporation\VAIO Improvement\VAIOImprovementMonitorUser => C:\Program Files\Sony\VAIO Improvement\vim.exe [2013-04-03] (Sony Corporation)
Task: {74096F94-B654-4DB0-96F5-3C3408B92FE3} - System32\Tasks\Microsoft\Windows\PI\Secure-Boot-Update
Task: {78E701AE-060A-4192-888B-DF90B3BE6C9E} - System32\Tasks\Microsoft\Windows\Servicing\StartComponentCleanup
Task: {7D9A9A1C-499C-40A6-8F8A-5BCC4CC9A87C} - System32\Tasks\Microsoft\Windows\TaskScheduler\Regular Maintenance
Task: {8050837A-06F9-461A-BC1D-03904273E144} - System32\Tasks\Plus-HD-2.6-codedownloader => C:\Program Files (x86)\Plus-HD-2.6\Plus-HD-2.6-codedownloader.exe [2013-05-29] (Plus HD)
Task: {845CB020-68B5-4C6B-9876-7BEC7B3E27AC} - System32\Tasks\Microsoft\Windows\TaskScheduler\Idle Maintenance
Task: {853E4B20-10B0-49F7-913F-B6EC6C6853C5} - System32\Tasks\CLVDLauncher => C:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe [2012-07-24] (CyberLink Corp.)
Task: {859753A3-E7EC-407A-A9B5-F58D0FCC559D} - System32\Tasks\Sony Corporation\VAIO Gate\VAIO Gate => C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe [2012-08-14] (Sony Corporation)
Task: {866EC86A-E93E-4EAC-8A90-E106ECC0E03F} - System32\Tasks\Sony Corporation\VAIO Gesture Control\VCGULogonTask => C:\Program Files (x86)\Sony\VAIO Camera Gesture Utility\VCGU.exe [2012-08-04] (Sony Corporation)
Task: {87354DAA-66DF-4B41-9346-15958D96E1D2} - System32\Tasks\Microsoft\Windows\FileHistory\File History (maintenance mode)
Task: {921A1D4E-32FB-46D7-B6C0-6F467884074D} - System32\Tasks\Microsoft\Windows\WS\Sync Licenses
Task: {9479EF8E-11D4-41B3-9783-CC65070D592D} - System32\Tasks\Microsoft\Windows\Time Synchronization\ForceSynchronizeTime
Task: {94DCF254-64FB-4C4E-8E12-5F4055C10C2A} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64
Task: {95719DCA-B5A7-460A-9FB4-BBF670E8AFE7} - System32\Tasks\Sony Corporation\VAIO Care\CRMReminder => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-08-15] (Sony Corporation)
Task: {989A7C6D-BE82-4C3C-AF96-6116039E336B} - System32\Tasks\Microsoft\Windows\MemoryDiagnostic\RunFullMemoryDiagnostic
Task: {9B40F921-C356-4711-B413-4632805A4BE5} - System32\Tasks\Sony Corporation\VAIO Care\VCSelfHeal => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-08-15] (Sony Corporation)
Task: {9F835B87-97AE-4706-B34C-ADB49026C960} - System32\Tasks\CLMLSvc_P2G8 => C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2012-06-08] (CyberLink)
Task: {A72208BF-7A49-4FB8-B684-252375F3443A} - System32\Tasks\Microsoft\Windows\WS\License Validation => C:\Windows\System32\WSClient.dll [2012-09-20] (Microsoft Corporation)
Task: {A7900DED-2F24-4BE8-9429-5CD51CC022EF} - System32\Tasks\Microsoft\Windows\WindowsUpdate\AUScheduledInstall
Task: {A800277E-E202-4492-AD38-3312641CBC04} - System32\Tasks\Microsoft\Windows\Live\Roaming\MaintenanceTask
Task: {AB62FA47-2C99-44B1-A5D0-D4161423BE43} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyRefresh
Task: {AC6259DE-AC59-459E-849E-6ADFFD1ADE63} - System32\Tasks\Microsoft\Windows\Shell\CreateObjectTask
Task: {AEB0B5BD-B9E5-458A-898A-E559BD9EB51B} - System32\Tasks\Microsoft\Windows\SettingSync\BackgroundUploadTask
Task: {AF549BD8-337C-4BF7-8681-36A182E30507} - System32\Tasks\Microsoft\Windows\Chkdsk\ProactiveScan
Task: {B1898C78-62E9-469F-BEC7-D6DAEF28C5C2} - System32\Tasks\Sony Corporation\VAIO Improvement\VAIOImprovementUploader => C:\Program Files\Sony\VAIO Improvement\viuploader.exe [2012-08-09] (Sony Corporation)
Task: {BC76AEF7-2CF0-4EB6-B65B-A8803E0B5E12} - System32\Tasks\Microsoft\Windows\AppID\SmartScreenSpecific
Task: {C1996E6E-916A-4138-99E1-88AB1884B592} - System32\Tasks\VHDInformationCheck => C:\Program Files (x86)\Sony\VAIO Recovery\plugins\InformationCheck.exe [2012-07-31] (Sony Corporation)
Task: {C1ACCD1E-4385-4FB2-B5E4-7F2A57A626A2} - System32\Tasks\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan
Task: {C463FD1E-31C7-4C20-AB65-08E514CA152D} - System32\Tasks\Microsoft\Windows\IME\SQM data sender
Task: {C6A88F2D-53D2-4805-9D69-443738A1847C} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => C:\Windows\System32\Windows.Storage.ApplicationData.dll [2012-07-26] (Microsoft Corporation)
Task: {C8AF63BA-FB02-4D2F-B828-E52850538096} - System32\Tasks\Sony Corporation\VAIO Improvement\VAIOImprovementMonitorSystem => C:\Program Files\Sony\VAIO Improvement\vim.exe [2013-04-03] (Sony Corporation)
Task: {CA11EEAD-A399-4CBC-86EB-3E661B23E127} - System32\Tasks\FinishInstall igdhbblpcellaljokkpfhcjlagemhgjl => C:\Users\karsten\AppData\Roaming\igdhbblpcellaljokkpfhcjlagemhgjl\MinibarChrome.exe [2013-06-29] (Sien SA)
Task: {CD1054FF-8005-4904-8B9C-436EAB1E2021} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskNetwork
Task: {CD6EF970-6A99-4178-9D15-6D5AF49BE844} - System32\Tasks\Microsoft\Windows\WindowsUpdate\AUSessionConnect
Task: {DBCF6E1B-CE0A-441E-B7A5-219C8BE50C65} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Critical
Task: {DCF75693-6164-4140-B500-F0E7E822D7DB} - System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-288095589-429832609-4039349632-1001
Task: {DECE5921-598D-454B-9A04-B2DE95EFC1B3} - System32\Tasks\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan for Crash Recovery
Task: {E4DFE66F-E089-4CC3-A70F-957223D565F4} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask
Task: {E8DAA09B-DF2A-4951-9134-6FA9587793F9} - System32\Tasks\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers => C:\Windows\System32\drvinst.exe [2012-09-20] (Microsoft Corporation)
Task: {EA136565-3B05-4121-91A4-A7B9D7D2D224} - System32\Tasks\Plus-HD-2.6-enabler => C:\Program Files (x86)\Plus-HD-2.6\Plus-HD-2.6-enabler.exe [2013-05-29] (Plus HD)
Task: {EAD237E7-D276-4257-9F16-51DF41548733} - System32\Tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime => start w32time task_started
Task: {EBF06DEC-4228-4813-AC0C-62821AE4E330} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => C:\Windows\System32\Startupscan.dll [2012-07-26] (Microsoft Corporation)
Task: {ED0C1F69-C3A2-41EA-B8C3-3F0D83A1F6C0} - System32\Tasks\Microsoft\Windows\Customer Experience Improvement Program\BthSQM
Task: {F829B406-50AB-4166-8C48-25C9D7EFEFF6} - System32\Tasks\Sony Corporation\VAIO Control Center\NetworkSetting\NetworkSetting Logon Start => C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkClient No File
Task: {FCB2FC52-58C6-4EC5-925E-9BD74D3F50F7} - System32\Tasks\Plus-HD-2.6-firefoxinstaller => C:\Program Files (x86)\Plus-HD-2.6\Plus-HD-2.6-firefoxinstaller.exe [2013-05-29] (Plus HD)
Task: {FF9D39B9-B349-41AC-AE22-A06EE3BE0F1F} - System32\Tasks\Sony Corporation\VAIO Care\VAIO Care => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-08-15] (Sony Corporation)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\LyricsContainer Update.job => C:\Program Files (x86)\LyricsContainer\LrcsCtrUpdr.exe
Task: C:\Windows\Tasks\Plus-HD-2.6-codedownloader.job => C:\Program Files (x86)\Plus-HD-2.6\Plus-HD-2.6-codedownloader.exe
Task: C:\Windows\Tasks\Plus-HD-2.6-enabler.job => C:\Program Files (x86)\Plus-HD-2.6\Plus-HD-2.6-enabler.exe
Task: C:\Windows\Tasks\Plus-HD-2.6-firefoxinstaller.job => C:\Program Files (x86)\Plus-HD-2.6\Plus-HD-2.6-firefoxinstaller.exe
Task: C:\Windows\Tasks\Plus-HD-2.6-updater.job => C:\Program Files (x86)\Plus-HD-2.6\Plus-HD-2.6-updater.exe

==================== Loaded Modules (whitelisted) =============

2013-04-12 16:15 - 2012-09-20 08:30 - 01743872 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\combase.dll
2013-05-09 22:48 - 2012-10-11 07:45 - 00590848 _____ (Microsoft Corporation) C:\Windows\system32\SHCORE.dll
2012-07-26 01:55 - 2012-07-26 05:07 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\WINMMBASE.dll
2012-12-29 10:56 - 2012-12-29 10:56 - 01989632 _____ (IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenuDLL.dll
2012-07-26 01:55 - 2012-07-26 05:07 - 00180224 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\WINMMBASE.dll
2013-05-09 22:48 - 2012-10-11 07:45 - 00590848 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\SHCORE.DLL
2011-06-11 02:15 - 2011-06-11 02:15 - 05601616 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\mfc100u.dll
2011-06-11 02:15 - 2011-06-11 02:15 - 00829264 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\MSVCR100.dll
2011-06-11 02:15 - 2011-06-11 02:15 - 00608080 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\MSVCP100.dll
2011-06-11 02:15 - 2011-06-11 02:15 - 00064336 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\MFC100DEU.DLL
2012-11-16 17:20 - 2012-08-09 11:06 - 00157352 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Improvement\viaggregator.dll
2013-05-09 22:48 - 2012-10-11 07:45 - 00590848 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\shcore.dll
2013-04-12 16:15 - 2012-09-20 08:33 - 00699392 _____ (Microsoft Corporation) C:\Windows\System32\twinapi.dll
2013-04-12 16:16 - 2012-09-20 08:30 - 02219008 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\D3D10Warp.dll
2012-11-16 17:48 - 2012-08-14 19:54 - 00031400 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Gate\TapTrigger.dll
2013-06-28 18:14 - 2013-03-26 15:15 - 00030784 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Update\VUAgentPS64.dll
2012-07-26 16:22 - 2012-07-26 16:22 - 05606856 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\mfc110u.dll
2012-08-17 18:25 - 2012-08-17 18:25 - 00828872 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\MSVCR110.dll
2012-08-17 18:25 - 2012-08-17 18:25 - 00661448 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\MSVCP110.dll
2013-05-09 22:48 - 2012-10-11 07:45 - 00590848 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\SHCORE.dll
2012-11-16 17:00 - 2012-08-22 13:01 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2012-11-16 17:00 - 2012-08-22 13:01 - 03643024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll
2012-08-23 18:25 - 2012-08-22 15:20 - 00110592 _____ (Intel Corporation) C:\Windows\System32\hccutils.DLL
2012-08-23 18:25 - 2012-08-22 16:17 - 00062976 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll
2012-08-23 18:25 - 2012-08-22 16:12 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrDEU.lrc
2013-05-09 22:48 - 2012-10-11 07:45 - 00590848 _____ (Microsoft Corporation) C:\Windows\System32\SHCORE.dll
2012-08-23 18:25 - 2012-08-22 16:14 - 09007616 _____ (Intel Corporation) C:\Windows\System32\igfxress.dll
2012-08-23 18:25 - 2012-08-22 15:05 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2012-08-24 00:36 - 2012-08-24 04:16 - 01046328 _____ (Synaptics Incorporated) C:\Windows\system32\SynCOM.dll
2012-08-24 00:36 - 2012-08-24 04:27 - 00228664 _____ (Synaptics Incorporated) C:\Windows\SYSTEM32\SynTPAPI.dll
2013-07-13 18:09 - 2013-04-23 00:08 - 09808440 _____ (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clr.dll
2012-07-25 22:13 - 2012-07-12 04:01 - 00856016 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\MSVCR110_CLR0400.dll
2013-07-21 14:38 - 2013-07-21 14:38 - 22589440 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\mscorlib\ab0a8fc3d086a3aaf942f366a12a9185\mscorlib.ni.dll
2013-06-28 07:42 - 2013-04-02 00:06 - 01237024 _____ (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clrjit.dll
2013-08-14 16:31 - 2013-08-14 16:31 - 13227520 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System\84008211017a9909ffd971633716ffc5\System.ni.dll
2013-08-14 16:31 - 2013-08-14 16:31 - 05458432 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\WindowsBase\2c9293b1f1b691c2b1c5ae92d581532d\WindowsBase.ni.dll
2013-08-14 16:31 - 2013-08-14 16:31 - 14784000 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\PresentationCore\ccb0cf23d8607c241d292c922aaa9061\PresentationCore.ni.dll
2013-08-14 16:32 - 2013-08-14 16:32 - 24338944 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\Presentatio5ae0f00f#\5ae84452122e5ba9f9157164ec4e1452\PresentationFramework.ni.dll
2013-08-14 16:33 - 2013-08-14 16:33 - 02561024 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Xaml\a26ad1493f4f8621e90811cb38ad22e2\System.Xaml.ni.dll
2012-04-23 09:47 - 2012-04-23 09:47 - 01080160 _____ (Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\pcee4c.dll
2013-06-28 07:43 - 2013-04-02 00:06 - 02123320 _____ (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\WPF\wpfgfx_v0400.dll
2012-07-25 22:13 - 2012-07-12 04:01 - 01079792 _____ (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\WPF\PresentationNative_v0400.dll
2013-08-14 16:32 - 2013-08-14 16:32 - 01259008 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Configuration\196905ff422a58f4cb735f4156b1ecaa\System.Configuration.ni.dll
2013-08-14 16:31 - 2013-08-14 16:31 - 10137600 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Core\a51eab8159bbe5f0cd2713f383468750\System.Core.ni.dll
2012-04-23 09:47 - 2012-04-23 09:47 - 00039776 _____ (Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\Dolby.Interop.dll
2013-04-09 03:08 - 2012-08-31 02:52 - 00994312 _____ (Microsoft Corporation) C:\Windows\Microsoft.Net\assembly\GAC_MSIL\mscorlib.resources\v4.0_4.0.0.0_de_b77a5c561934e089\mscorlib.resources.dll
2012-11-16 17:00 - 2012-08-22 12:26 - 00123784 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2013-08-14 16:33 - 2013-08-14 16:33 - 10137088 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Xml\17fa9b078e78b857f6c5f5a8081220ae\System.Xml.ni.dll
2012-04-23 09:47 - 2012-04-23 09:47 - 00019808 _____ (Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\de\pcee4c.resources.dll
2013-08-14 16:32 - 2013-08-14 16:32 - 02268672 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Drawing\810a79f22ac4d44804984e417c380706\System.Drawing.ni.dll
2013-08-14 16:33 - 2013-08-14 16:33 - 16835072 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Windows.Forms\91baa8291ae5873141b15f66d05888a4\System.Windows.Forms.ni.dll
2013-08-14 16:32 - 2013-08-14 16:32 - 01001984 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Runt73a1fc9d#\77f6ab0fdc009b7ca96cc0c7d228da06\System.Runtime.Remoting.ni.dll
2013-08-27 09:25 - 2013-08-27 09:25 - 17587712 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Web\ac7d2512165632de8b398ff62ac8070c\System.Web.ni.dll
2011-10-17 17:48 - 2011-10-17 17:48 - 00045056 _____ (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\DEM.Graphics.I0601.dll
2011-10-17 17:48 - 2011-10-17 17:48 - 00016384 _____ (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\DEM.Foundation.dll
2012-08-23 18:25 - 2012-08-22 14:48 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIDEMGY.dll
2011-10-18 23:08 - 2011-10-18 23:08 - 00007168 _____ ( ) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atixclib.dll
2012-08-06 12:54 - 2012-08-06 12:54 - 00369664 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll
2012-08-23 18:25 - 2012-08-22 14:48 - 01111040 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SYSTEM32\aticfx64.dll
2012-08-23 18:25 - 2012-08-22 14:58 - 00103936 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SYSTEM32\atiu9p64.dll
2012-07-25 22:22 - 2012-08-22 16:08 - 08281600 _____ (Intel Corporation) C:\Windows\SYSTEM32\igdumd64.dll
2012-08-23 18:25 - 2012-08-22 14:59 - 06676480 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SYSTEM32\atiumd64.dll
2013-08-14 16:32 - 2013-08-14 16:32 - 00567296 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\Presentatioaec034ca#\9fb849115fa37e6b107e1d9799ad83da\PresentationFramework.Aero2.ni.dll
2013-04-09 03:08 - 2012-08-31 02:52 - 00283192 _____ (Microsoft Corporation) C:\Windows\Microsoft.Net\assembly\GAC_MSIL\PresentationFramework.resources\v4.0_4.0.0.0_de_31bf3856ad364e35\PresentationFramework.resources.dll
2013-04-09 03:08 - 2012-08-31 02:52 - 00257024 _____ (Microsoft Corporation) C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System.resources\v4.0_4.0.0.0_de_b77a5c561934e089\System.resources.dll
2013-04-09 03:08 - 2012-08-31 02:52 - 00124456 _____ (Microsoft Corporation) C:\Windows\Microsoft.Net\assembly\GAC_MSIL\PresentationCore.resources\v4.0_4.0.0.0_de_31bf3856ad364e35\PresentationCore.resources.dll
2012-07-25 22:13 - 2012-07-12 04:02 - 00024584 _____ (Microsoft Corporation) C:\Windows\Microsoft.Net\assembly\GAC_MSIL\PresentationFramework-SystemXml\v4.0_4.0.0.0__b77a5c561934e089\PresentationFramework-SystemXml.dll
2013-08-14 08:25 - 2013-07-23 00:09 - 00103568 _____ (Microsoft Corporation) C:\Windows\Microsoft.Net\assembly\GAC_MSIL\WindowsFormsIntegration\v4.0_4.0.0.0__31bf3856ad364e35\WindowsFormsIntegration.dll
2013-05-09 22:48 - 2012-10-11 07:46 - 01395712 _____ (Microsoft Corporation) C:\Windows\System32\Windows.UI.Immersive.dll
2013-06-15 10:25 - 2013-05-04 08:57 - 00389120 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\Bcp47Langs.dll
2013-06-15 10:25 - 2013-05-04 08:58 - 10116096 _____ (Microsoft Corporation) C:\Windows\System32\twinui.dll
2012-07-26 01:33 - 2012-07-26 05:07 - 00069632 _____ (Microsoft Corporation) C:\Windows\System32\windows.immersiveshell.serviceprovider.dll
2012-07-26 01:54 - 2012-07-26 05:05 - 00171008 _____ (Microsoft Corporation) C:\Windows\System32\IDStore.dll
2013-05-24 21:25 - 2013-04-09 06:51 - 00456704 _____ (Microsoft Corporation) C:\Windows\System32\wpncore.dll
2012-07-26 04:06 - 2012-07-26 05:07 - 00119296 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\sppc.dll
2012-08-23 18:25 - 2012-08-22 15:02 - 00129536 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SYSTEM32\atiuxp64.dll
2012-07-25 22:22 - 2012-08-22 15:35 - 08505856 _____ (Intel Corporation) C:\Windows\SYSTEM32\igd10umd64.dll
2012-08-23 18:25 - 2012-08-22 14:50 - 07052288 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SYSTEM32\atidxx64.dll
2012-07-26 02:05 - 2012-07-26 05:05 - 00192000 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\dcomp.dll
2012-07-26 01:31 - 2012-07-26 05:08 - 00343552 _____ (Microsoft Corporation) C:\Windows\System32\wlidprov.dll
2012-07-26 01:24 - 2012-07-26 05:05 - 00186368 _____ (Microsoft Corporation) C:\Windows\System32\InputSwitch.dll
2012-07-26 02:04 - 2012-07-26 05:07 - 00046592 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\windows.globalization.fontgroups.dll
2012-07-26 01:22 - 2012-07-26 05:06 - 00601600 _____ (Microsoft Corporation) C:\Windows\System32\MrmCoreR.dll
2013-04-09 03:05 - 2013-02-02 10:23 - 00293376 _____ (Microsoft Corporation) C:\Windows\System32\Windows.Networking.Connectivity.dll
2012-07-26 04:09 - 2012-07-26 05:07 - 00044544 _____ (Microsoft Corporation) C:\Windows\System32\qmgrprxy.dll
2012-07-26 03:37 - 2012-07-26 05:06 - 00024576 _____ (Microsoft Corporation) C:\Windows\System32\NcaApi.dll
2012-07-26 01:33 - 2012-07-26 05:06 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\NetworkStatus.dll
2012-07-26 01:54 - 2012-07-26 05:05 - 00101888 _____ (Microsoft Corporation) C:\Windows\System32\BluetoothApis.dll
2012-07-26 02:04 - 2012-07-26 05:06 - 00223744 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\netjoin.dll
2013-08-14 08:21 - 2013-07-13 08:15 - 00124416 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\apprepapi.dll
2012-07-26 04:19 - 2012-07-26 05:06 - 00023040 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\pcacli.dll
2012-07-26 02:10 - 2012-07-26 05:05 - 00013824 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\DPAPI.dll
2013-05-09 22:49 - 2013-03-02 04:45 - 00951808 _____ (Microsoft Corporation) C:\Windows\System32\Windows.Globalization.dll
2013-08-14 08:34 - 2013-07-26 07:12 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\JScript9.dll
2012-07-26 03:56 - 2012-07-26 05:07 - 00593408 _____ (Microsoft Corporation) C:\Windows\system32\VBScript.dll
2012-07-26 04:22 - 2012-07-26 04:22 - 00003072 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\LZ32.dll
2012-07-26 04:09 - 2012-07-26 05:05 - 00014848 _____ (Microsoft Corporation) C:\Windows\System32\bitsprx7.dll
2012-07-26 04:09 - 2012-07-26 05:05 - 00033280 _____ (Microsoft Corporation) C:\Windows\System32\bitsprx5.dll
2012-07-26 04:09 - 2012-07-26 05:05 - 00013824 _____ (Microsoft Corporation) C:\Windows\System32\bitsprx3.dll
2012-07-26 04:09 - 2012-07-26 05:05 - 00013312 _____ (Microsoft Corporation) C:\Windows\System32\bitsprx2.dll
2012-07-26 04:09 - 2012-07-26 05:05 - 00013312 _____ (Microsoft Corporation) C:\Windows\System32\bitsprx6.dll
2012-12-29 10:56 - 2012-12-29 10:56 - 00741888 _____ (IvoSoft) C:\Program Files\Classic Shell\ClassicExplorer64.dll
2012-07-26 02:35 - 2012-07-26 05:07 - 04243456 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbon.dll
2012-07-26 04:33 - 2012-07-26 04:33 - 00629760 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\UIRibbonRes.dll
2012-07-26 04:09 - 2012-07-26 05:05 - 00124928 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\CHARTV.dll
2012-07-26 02:12 - 2012-07-26 06:55 - 01326784 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\webservices.dll
2012-07-26 02:08 - 2012-07-26 05:06 - 00205312 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\NTASN1.dll
2013-04-08 13:31 - 2012-11-26 06:20 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll
2012-07-26 01:55 - 2012-07-26 05:07 - 01161216 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\UIAutomationCore.DLL
2012-11-16 17:48 - 2012-08-14 19:54 - 00064168 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Gate\VAIOGateShellExt.dll
2012-07-26 02:59 - 2012-07-26 05:05 - 00465408 _____ (Microsoft Corporation) C:\Windows\System32\dlnashext.dll
2013-04-12 16:16 - 2012-09-20 08:33 - 01304064 _____ (Microsoft Corporation) C:\Windows\System32\Windows.Media.Streaming.dll
2013-05-09 22:49 - 2013-03-02 04:44 - 00049152 _____ (Microsoft Corporation) C:\Windows\System32\DevDispItemProvider.dll
2013-06-15 10:25 - 2013-05-04 08:59 - 00760320 _____ (Microsoft Corporation) C:\Windows\System32\wuapi.dll
2012-07-26 02:06 - 2012-07-26 05:05 - 00136192 _____ (Microsoft Corporation) C:\Windows\System32\Cabinet.dll
2013-05-09 22:49 - 2013-03-02 04:45 - 00043520 _____ (Microsoft Corporation) C:\Windows\System32\wups.dll
2013-04-11 15:17 - 2013-03-26 15:16 - 00017984 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Update\InternetWrapperPS.dll
2012-07-26 01:54 - 2012-07-26 05:05 - 00101888 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\BluetoothApis.dll
2012-11-16 18:36 - 2012-11-16 18:36 - 00294592 _____ (Sony Corporation) C:\Windows\Microsoft.Net\assembly\GAC_64\VAIOCareToolkit\v4.0_8.0.0.8080__6b746f706d1a5a7d\VAIOCareToolkit.dll
2013-08-17 14:58 - 2013-08-17 14:58 - 01441280 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Compba577418#\c2723f87e98dfed97b1553785a84e535\System.ComponentModel.Composition.ni.dll
2012-08-15 19:26 - 2012-08-15 19:26 - 00130752 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\de-DE\VCSystemTray.resources.dll
2013-08-14 16:32 - 2013-08-14 16:32 - 26674688 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel\95a5ee0a1e8324986bd4ed61dd78b494\System.ServiceModel.ni.dll
2013-06-28 07:42 - 2012-08-31 02:52 - 00043072 _____ (Microsoft Corporation) C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System.ComponentModel.Composition.resources\v4.0_4.0.0.0_de_b77a5c561934e089\System.ComponentModel.Composition.resources.dll
2013-08-17 14:58 - 2013-08-17 14:58 - 00155136 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\SMDiagnostics\54bae9cf68d2f949a1c60152c2970a50\SMDiagnostics.ni.dll
2013-08-14 16:32 - 2013-08-14 16:32 - 03602944 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Runteb92aa12#\48b764fe44c1af86ea4052b7d4b08a47\System.Runtime.Serialization.ni.dll
2013-08-17 14:58 - 2013-08-17 14:58 - 01044992 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Servd1dec626#\5b64cfcf08e1e5fed1a239bacd3373c9\System.ServiceModel.Internals.ni.dll
2013-08-17 14:58 - 2013-08-17 14:58 - 03880960 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.IdentityModel\9ca25e2d4861cc899594aa78052c05f5\System.IdentityModel.ni.dll
2013-08-14 16:32 - 2013-08-14 16:32 - 00900096 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Transactions\9cf122c79464512c4d9e53a147b6d6c0\System.Transactions.ni.dll
2012-07-25 22:12 - 2012-07-12 04:01 - 00288216 _____ (Microsoft Corporation) C:\Windows\Microsoft.Net\assembly\GAC_64\System.Transactions\v4.0_4.0.0.0__b77a5c561934e089\System.Transactions.dll
2012-08-08 21:48 - 2012-08-08 21:48 - 00037056 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\IntelMonitor\IntelMonitorBL.dll
2012-08-08 21:48 - 2012-08-08 21:48 - 00032960 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\CommonPlugin\CommonPluginBL.dll
2012-08-08 21:48 - 2012-08-08 21:48 - 00239808 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Libraries\VAIOCare.Utilities.dll
2012-08-08 21:48 - 2012-08-08 21:48 - 00025280 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\MetricsPhilatelist\MetricsPhilatelistBL.dll
2012-08-08 21:59 - 2012-08-08 21:59 - 00025280 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\Notification\NotificationBL.dll
2012-08-08 21:59 - 2012-08-08 21:59 - 00010944 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\Notification\NotificationAPI.dll
2012-08-08 21:59 - 2012-08-08 21:59 - 00431808 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\Notification\NotificationPL.dll
2012-08-08 21:48 - 2012-08-08 21:48 - 00018112 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\LaunchBrowser\LaunchBrowserBL.dll
2012-05-21 17:44 - 2012-05-21 17:44 - 00081920 _____ (Microsoft) C:\Program Files\Sony\VAIO Care\Libraries\Microsoft.WindowsAPICodePack.dll
2012-08-08 21:48 - 2012-08-08 21:48 - 00016576 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\SystemSupport\SystemSupportBL.dll
2012-08-08 21:48 - 2012-08-08 21:48 - 00098496 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\NetworkDiagnostics\NetworkDiagnosticsBL.dll
2012-08-08 21:48 - 2012-08-08 21:48 - 00019136 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\NetworkDiagnostics\NetworkDiagnosticsAPI.dll
2012-08-08 21:48 - 2012-08-08 21:48 - 00169664 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\AboutVAIOHub\AboutVAIOHubPL.dll
2012-08-08 21:48 - 2012-08-08 21:48 - 00382656 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\SoftwareHub\SoftwareHubPL.dll
2012-08-08 21:48 - 2012-08-08 21:48 - 00029376 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\SelfHeal\SelfHealBL.dll
2012-08-08 21:48 - 2012-08-08 21:48 - 00012992 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\SelfHeal\SelfHealAPI.dll
2012-08-08 21:59 - 2012-08-08 21:59 - 00036544 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Libraries\SelfHeal.dll
2012-08-08 21:48 - 2012-08-08 21:48 - 00089792 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\AdvancedTools\AdvancedToolsBL.dll
2012-08-08 21:48 - 2012-08-08 21:48 - 00016576 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\AdvancedTools\AdvancedToolsAPI.dll
2012-08-08 21:48 - 2012-08-08 21:48 - 00028352 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Libraries\IoloToolOpt.dll
2012-08-08 21:48 - 2012-08-08 21:48 - 00033472 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\ContactAndSupport\ContactAndSupportBL.dll
2012-08-08 21:48 - 2012-08-08 21:48 - 00015040 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\ContactAndSupport\ContactAndSupportAPI.dll
2012-08-08 21:48 - 2012-08-08 21:48 - 00033984 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\History\HistoryBL.dll
2012-08-08 21:48 - 2012-08-08 21:48 - 00011968 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\History\HistoryAPI.dll
2012-08-08 21:48 - 2012-08-08 21:48 - 00023744 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\BatteryCheck\BatteryCheckBL.dll
2012-08-08 21:59 - 2012-08-08 21:59 - 00179392 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\OneClickCare\OneClickCareBL.dll
2012-08-08 21:59 - 2012-08-08 21:59 - 00033472 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\OneClickCare\OneClickCareAPI.dll
2012-08-08 21:48 - 2012-08-08 21:48 - 00050880 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\Message\MessageBL.dll
2012-08-08 21:48 - 2012-08-08 21:48 - 00026304 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\DownloadManager\DownloadManagerBL.dll
2012-08-08 21:48 - 2012-08-08 21:48 - 00043712 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\Solve\SolveBL.dll
2012-08-08 21:48 - 2012-08-08 21:48 - 00017600 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\Solve\SolveAPI.dll
2012-08-08 21:48 - 2012-08-08 21:48 - 00017600 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\GenericVAIOCareReminders\GenericVAIOCareRemindersBL.dll
2012-08-08 21:48 - 2012-08-08 21:48 - 00014528 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\UploadManager\UploadManagerBL.dll
2012-08-08 21:48 - 2012-08-08 21:48 - 00017600 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\VAIOCareUpdateCommon\VAIOCareUpdateCommonBL.dll
2012-08-08 21:48 - 2012-08-08 21:48 - 00034496 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Care\Plugins\VAIOCareUpdate\VAIOCareUpdateBL.dll
2012-11-16 17:15 - 2012-06-12 18:40 - 00130184 ____N (Sony Corporation) C:\Program Files\Common Files\Sony Shared\Sony Utilities\SnyUtils.dll
2013-04-09 03:08 - 2012-08-31 02:52 - 00121944 _____ (Microsoft Corporation) C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System.Runtime.Serialization.resources\v4.0_4.0.0.0_de_b77a5c561934e089\System.Runtime.Serialization.resources.dll
2013-07-04 20:29 - 2013-07-04 20:29 - 03285912 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
2013-07-17 07:24 - 2013-06-01 11:20 - 01527808 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\MFCORE.dll
2013-04-14 21:31 - 2012-10-17 06:32 - 00677888 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\mfnetcore.dll
2012-11-16 17:15 - 2012-06-12 18:40 - 00104584 ____N (Sony Corporation) C:\Program Files (x86)\Common Files\Sony Shared\Sony Utilities\SnyUtils.dll
2012-11-16 17:47 - 2012-06-08 05:34 - 00627216 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll
2013-04-12 16:14 - 2012-09-20 08:12 - 09374208 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.dll
2012-06-08 12:34 - 2012-06-08 12:34 - 00016400 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll

==================== Alternate Data Streams (whitelisted) ==========



==================== Faulty Device Manager Devices =============

Name: Intel(R) Centrino(R) Wireless Bluetooth(R) 4.0 + High Speed Adapter
Description: Intel(R) Centrino(R) Wireless Bluetooth(R) 4.0 + High Speed Adapter
Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974}
Manufacturer: Intel Corporation
Service: BTHUSB
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: =========================

Application errors:
==================
Error: (09/03/2013 01:22:08 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifest.

Error: (09/03/2013 01:22:08 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifest.

Error: (09/03/2013 01:08:24 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: Explorer.EXE, Version: 6.2.9200.16628, Zeitstempel: 0x51a94434
Name des fehlerhaften Moduls: SHELL32.dll, Version: 6.2.9200.16550, Zeitstempel: 0x5136a2c8
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000004af9
ID des fehlerhaften Prozesses: 0x520
Startzeit der fehlerhaften Anwendung: 0xExplorer.EXE0
Pfad der fehlerhaften Anwendung: Explorer.EXE1
Pfad des fehlerhaften Moduls: Explorer.EXE2
Berichtskennung: Explorer.EXE3
Vollständiger Name des fehlerhaften Pakets: Explorer.EXE4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Explorer.EXE5

Error: (09/03/2013 01:08:07 PM) (Source: MobileBroadband) (User: )
Description: StartUp:DisplayAndLogError: PhonebookVpnEtries: RAS error

 PID=4568

Error: (09/03/2013 01:06:49 PM) (Source: VSS) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\MSSearch Service Writer,...)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070002, Das System kann die angegebene Datei nicht finden.
.


Vorgang:
  Generator wird initialisiert

Kontext:
  Generatorklassen-ID: {cd3f2362-8bef-46c7-9181-d62844cdc0b2}
  Generatorname: MSSearch Service Writer
  Generatorinstanz-ID: {29caafcf-25b7-458a-ac52-8c7f21352347}

Error: (09/03/2013 01:06:46 PM) (Source: VSS) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\BITS Writer,...)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070002, Das System kann die angegebene Datei nicht finden.
.


Vorgang:
  Generator wird initialisiert

Kontext:
  Generatorklassen-ID: {4969d978-be47-48b0-b100-f328f07ac1e0}
  Generatorname: BITS Writer
  Generatorinstanz-ID: {1710e215-b541-4d0a-bfd3-45f7bae94be0}

Error: (09/03/2013 00:33:46 PM) (Source: VSS) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\Shadow Copy Optimization Writer,...)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070002, Das System kann die angegebene Datei nicht finden.
.


Vorgang:
  Generator wird initialisiert

Kontext:
  Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
  Generatorname: Shadow Copy Optimization Writer
  Generatorinstanz-ID: {46b212bf-4cfa-4497-abcf-8aaabcaf5e6d}

Error: (09/03/2013 00:33:46 PM) (Source: VSS) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\ASR Writer,...)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070002, Das System kann die angegebene Datei nicht finden.
.


Vorgang:
  Generator wird initialisiert

Kontext:
  Generatorklassen-ID: {be000cbe-11fe-4426-9c58-531aa6355fc4}
  Generatorname: ASR Writer
  Generatorinstanz-ID: {7a3c4585-ada6-4417-b451-553935d28aed}

Error: (09/03/2013 00:33:46 PM) (Source: VSS) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\COM+ REGDB Writer,...)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070002, Das System kann die angegebene Datei nicht finden.
.


Vorgang:
  Generator wird initialisiert

Kontext:
  Generatorklassen-ID: {542da469-d3e1-473c-9f4f-7847f01fc64f}
  Generatorname: COM+ REGDB Writer
  Generatorinstanz-ID: {d61a2c94-2c67-4f92-9785-a36ac10daf53}

Error: (09/03/2013 00:33:46 PM) (Source: VSS) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\SwProvider_{b5946137-7b9f-4925-af80-51abd60b20d5},...)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070002, Das System kann die angegebene Datei nicht finden.
.


Vorgang:
  Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
  Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
  Schattenkopien abfragen

Kontext:
  Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
  Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
  Snapshotkontext: 13
  Snapshotkontext: 13
  Ausführungskontext: Coordinator


System errors:
=============
Error: (09/03/2013 01:04:47 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Intel(R) PROSet/Wireless Zero Configuration Service" wurde mit folgendem Fehler beendet:
%%2147770990

Error: (09/03/2013 01:04:33 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "PDF Architect Service" wurde mit folgendem Fehler beendet:
%%2147500037

Error: (09/03/2013 01:04:31 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "McAfee OOBE Service2" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2

Error: (09/03/2013 00:35:03 PM) (Source: DCOM) (User: NT-AUTORITÄT)
Description: {78FD0120-D39C-45D8-A9BE-2B802B3C23E5}

Error: (09/03/2013 00:35:03 PM) (Source: DCOM) (User: NT-AUTORITÄT)
Description: {78FD0120-D39C-45D8-A9BE-2B802B3C23E5}

Error: (09/03/2013 00:15:23 PM) (Source: Service Control Manager) (User: )
Description: Dienst "Intel(R) PROSet/Wireless Zero Configuration Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (09/03/2013 00:13:38 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "PDF Architect Service" wurde mit folgendem Fehler beendet:
%%2147500037

Error: (09/03/2013 00:13:35 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "McAfee OOBE Service2" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2

Error: (09/03/2013 00:12:34 PM) (Source: DCOM) (User: NT-AUTORITÄT)
Description: {78FD0120-D39C-45D8-A9BE-2B802B3C23E5}

Error: (09/03/2013 00:12:34 PM) (Source: DCOM) (User: NT-AUTORITÄT)
Description: {78FD0120-D39C-45D8-A9BE-2B802B3C23E5}


Microsoft Office Sessions:
=========================
Error: (09/03/2013 01:22:08 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifestC:\Users\karsten\Downloads\SoftonicDownloader_fuer_vlc-media-player.exe

Error: (09/03/2013 01:22:08 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifestC:\Users\karsten\Downloads\SoftonicDownloader_for_vlc-media-player.exe

Error: (09/03/2013 01:08:24 PM) (Source: Application Error)(User: )
Description: Explorer.EXE6.2.9200.1662851a94434SHELL32.dll6.2.9200.165505136a2c8c00000050000000000004af952001cea895aaf5845eC:\Windows\Explorer.EXEC:\Windows\system32\SHELL32.dll2639ceaf-1489-11e3-bec5-5453edb62022

Error: (09/03/2013 01:08:07 PM) (Source: MobileBroadband)(User: )
Description: StartUp:DisplayAndLogError: PhonebookVpnEtries: RAS error

 PID=4568

Error: (09/03/2013 01:06:49 PM) (Source: VSS)(User: )
Description: RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\MSSearch Service Writer,...)0x80070002, Das System kann die angegebene Datei nicht finden.


Vorgang:
  Generator wird initialisiert

Kontext:
  Generatorklassen-ID: {cd3f2362-8bef-46c7-9181-d62844cdc0b2}
  Generatorname: MSSearch Service Writer
  Generatorinstanz-ID: {29caafcf-25b7-458a-ac52-8c7f21352347}

Error: (09/03/2013 01:06:46 PM) (Source: VSS)(User: )
Description: RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\BITS Writer,...)0x80070002, Das System kann die angegebene Datei nicht finden.


Vorgang:
  Generator wird initialisiert

Kontext:
  Generatorklassen-ID: {4969d978-be47-48b0-b100-f328f07ac1e0}
  Generatorname: BITS Writer
  Generatorinstanz-ID: {1710e215-b541-4d0a-bfd3-45f7bae94be0}

Error: (09/03/2013 00:33:46 PM) (Source: VSS)(User: )
Description: RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\Shadow Copy Optimization Writer,...)0x80070002, Das System kann die angegebene Datei nicht finden.


Vorgang:
  Generator wird initialisiert

Kontext:
  Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
  Generatorname: Shadow Copy Optimization Writer
  Generatorinstanz-ID: {46b212bf-4cfa-4497-abcf-8aaabcaf5e6d}

Error: (09/03/2013 00:33:46 PM) (Source: VSS)(User: )
Description: RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\ASR Writer,...)0x80070002, Das System kann die angegebene Datei nicht finden.


Vorgang:
  Generator wird initialisiert

Kontext:
  Generatorklassen-ID: {be000cbe-11fe-4426-9c58-531aa6355fc4}
  Generatorname: ASR Writer
  Generatorinstanz-ID: {7a3c4585-ada6-4417-b451-553935d28aed}

Error: (09/03/2013 00:33:46 PM) (Source: VSS)(User: )
Description: RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\COM+ REGDB Writer,...)0x80070002, Das System kann die angegebene Datei nicht finden.


Vorgang:
  Generator wird initialisiert

Kontext:
  Generatorklassen-ID: {542da469-d3e1-473c-9f4f-7847f01fc64f}
  Generatorname: COM+ REGDB Writer
  Generatorinstanz-ID: {d61a2c94-2c67-4f92-9785-a36ac10daf53}

Error: (09/03/2013 00:33:46 PM) (Source: VSS)(User: )
Description: RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\SwProvider_{b5946137-7b9f-4925-af80-51abd60b20d5},...)0x80070002, Das System kann die angegebene Datei nicht finden.


Vorgang:
  Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
  Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
  Schattenkopien abfragen

Kontext:
  Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
  Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
  Snapshotkontext: 13
  Snapshotkontext: 13
  Ausführungskontext: Coordinator


==================== Memory info ===========================

Percentage of memory in use: 27%
Total physical RAM: 6016.39 MB
Available physical RAM: 4380.46 MB
Total Pagefile: 6976.39 MB
Available Pagefile: 4920.11 MB
Total Virtual: 8192 MB
Available Virtual: 8191.77 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:667.67 GB) (Free:457.61 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 699 GB) (Disk ID: FACBF894)

Partition: GPT Partition Type
==================== End Of Log ============================

Code:

GMER 2.1.19163 - hxxp://www.gmer.net
Rootkit scan 2013-09-03 13:35:40
Windows 6.2.9200  x64 \Device\Harddisk0\DR0 -> \Device\00000038 WDC_WD7500BPVT-55HXZT3 rev.01.01A01 698,64GB
Running: gmer_2.1.19163.exe; Driver: C:\Users\karsten\AppData\Local\Temp\pxloqpow.sys


---- User code sections - GMER 2.1 ----

.text  C:\Windows\system32\wbem\wmiprvse.exe[3932] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 306            000007ffa804177a 4 bytes [04, A8, FF, 07]
.text  C:\Windows\system32\wbem\wmiprvse.exe[3932] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 314            000007ffa8041782 4 bytes [04, A8, FF, 07]
.text  C:\Windows\system32\wbem\wmiprvse.exe[3932] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 690                      000007ff9ffa1532 4 bytes [FA, 9F, FF, 07]
.text  C:\Windows\system32\wbem\wmiprvse.exe[3932] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 698                      000007ff9ffa153a 4 bytes [FA, 9F, FF, 07]
.text  C:\Windows\system32\wbem\wmiprvse.exe[3932] C:\Windows\SYSTEM32\MSIMG32.dll!TransparentBlt + 246                    000007ff9ffa165a 4 bytes [FA, 9F, FF, 07]
.text  C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe[3684] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 690              000007ff9ffa1532 4 bytes [FA, 9F, FF, 07]
.text  C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe[3684] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 698              000007ff9ffa153a 4 bytes [FA, 9F, FF, 07]
.text  C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe[3684] C:\Windows\SYSTEM32\MSIMG32.dll!TransparentBlt + 246            000007ff9ffa165a 4 bytes [FA, 9F, FF, 07]
.text  C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe[4284] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 690              000007ff9ffa1532 4 bytes [FA, 9F, FF, 07]
.text  C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe[4284] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 698              000007ff9ffa153a 4 bytes [FA, 9F, FF, 07]
.text  C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe[4284] C:\Windows\SYSTEM32\MSIMG32.dll!TransparentBlt + 246            000007ff9ffa165a 4 bytes [FA, 9F, FF, 07]
.text  C:\Windows\System32\igfxpers.exe[4168] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 306                  000007ffa804177a 4 bytes [04, A8, FF, 07]
.text  C:\Windows\System32\igfxpers.exe[4168] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 314                  000007ffa8041782 4 bytes [04, A8, FF, 07]
.text  C:\Program Files\Synaptics\SynTP\SynTPEnh.exe[476] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 306      000007ffa804177a 4 bytes [04, A8, FF, 07]
.text  C:\Program Files\Synaptics\SynTP\SynTPEnh.exe[476] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 314      000007ffa8041782 4 bytes [04, A8, FF, 07]
.text  C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE[3660] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 306  000007ffa804177a 4 bytes [04, A8, FF, 07]
.text  C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE[3660] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 314  000007ffa8041782 4 bytes [04, A8, FF, 07]

---- Threads - GMER 2.1 ----

Thread  C:\Windows\system32\csrss.exe [688:700]                                                                              fffff960008715e8

---- Disk sectors - GMER 2.1 ----

Disk    \Device\Harddisk0\DR0                                                                                                unknown MBR code

---- EOF - GMER 2.1 ----


aharonov 03.09.2013 13:04

Hallo,

mal ein bisschen aufräumen..


Schritt 1
  • Gehe in die Systemsteuerung und öffne Programme und Funktionen.
  • Suche und deinstalliere dort der Reihe nach folgende Einträge:
    • Iminent
    • LyricsContainer
    • Plus-HD-2.6
  • Schliesse das Fenster wieder und führe einen Neustart durch, wenn das gefordert wurde.



Schritt 2

Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).



Schritt 3

Starte noch einmal FRST.
  • Setze bei Optional Scan den Haken bei Addition.txt und drücke Scan.
  • Wenn der Scan abgeschlossen ist, werden zwei neue Logfiles FRST.txt und Addition.txt erstellt und auf dem Desktop gespeichert.
  • Poste den Inhalt dieser beiden Logfiles bitte hier in deinen Thread.

miki60 03.09.2013 13:24

Code:

# AdwCleaner v3.002 - Bericht erstellt am 03/09/2013 um 14:16:20
# Updated 01/09/2013 von Xplode
# Betriebssystem : Windows 8  (64 bits)
# Benutzername : karsten - KCW
# Gestartet von : C:\Original\iminentremoval\adwcleaner.exe
# Option : Löschen

***** [ Dienste ] *****

[#] Dienst Gelöscht : WebCake Desktop Updater

***** [ Dateien / Ordner ] *****

Ordner Gelöscht : C:\ProgramData\Browser Manager
Ordner Gelöscht : C:\ProgramData\IBUpdaterService
Ordner Gelöscht : C:\ProgramData\Tarma Installer
Ordner Gelöscht : C:\Program Files (x86)\Betcat
Ordner Gelöscht : C:\Users\karsten\AppData\Roaming\Betcat
Ordner Gelöscht : C:\Users\karsten\AppData\Roaming\pdfforge
Ordner Gelöscht : C:\Users\karsten\AppData\Roaming\PerformerSoft
Ordner Gelöscht : C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\jetpack
Datei Gelöscht : C:\Windows\System32\roboot64.exe
Datei Gelöscht : C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\searchplugins\Search_Results.xml
Datei Gelöscht : C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\searchplugins\zonealarm.xml
Datei Gelöscht : C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\user.js

***** [ Verknüpfungen ] *****


***** [ Registrierungsdatenbank ] *****

Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\ScriptHost.Tool
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\ScriptHost.Tool.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\WebCakeIEClient.Api
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\WebCakeIEClient.Api.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\WebCakeIEClient.Layers
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\WebCakeIEClient.Layers.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{19D2F415-D58B-46BC-9390-C03DCBC21EB2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{2CE4D4CF-B278-4126-AD1E-B622DA2E8339}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{377E5D4D-77E5-476A-8716-7E70A9272DA0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{6E45F3E8-2683-4824-A6BE-08108022FB36}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{9F0F16DD-4E76-4049-A9B1-7A91E48F0323}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{AF6B0594-6008-4327-93E5-608AD710A6FA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{DF84E609-C3A4-49CB-A160-61767DAF8899}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{F4288797-CB12-49CE-9DF8-7CDFA1143BEA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{FB684D26-01F4-4D9D-87CB-F486BEBA56DC}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0AFD55C8-ADF8-4A33-A6E1-DEDB7A36AEB4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2CE4D4CF-B278-4126-AD1E-B622DA2E8339}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{7D86A08B-0A8F-4BE0-B693-F05E6947E780}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DF84E609-C3A4-49CB-A160-61767DAF8899}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{212C2C4F-C845-4FBC-9561-C833A13D8DCE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{3C5D1D57-16C8-473C-A552-37B8D88596FE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{4A115D8A-6A7B-4C72-92B1-2E2D01F36979}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{99DF8440-814E-497F-BDDD-FB93E9E9DF96}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{EFDF368C-8DD9-4E05-87CD-16AA5CB03CB8}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AF6B0594-6008-4327-93E5-608AD710A6FA}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A40DC6C5-79D0-4CA8-A185-8FF989AF1115}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{377E5D4D-77E5-476A-8716-7E70A9272DA0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{83CAD530-387D-40FD-82EA-B9E863D92A9B}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{25A3A431-30BB-47C8-AD6A-E1063801134F}]
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Schlüssel Gelöscht : HKCU\Software\ilivid
Schlüssel Gelöscht : HKCU\Software\Iminent
Schlüssel Gelöscht : HKCU\Software\Softonic
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Crossrider
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\LyricsContainer
Schlüssel Gelöscht : HKLM\Software\DataMngr
Schlüssel Gelöscht : HKLM\Software\iLividSRTB
Schlüssel Gelöscht : HKLM\Software\Iminent
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Tarma Installer

***** [ Browser ] *****

-\\ Internet Explorer v10.0.9200.16660

Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]

-\\ Mozilla Firefox v22.0 (de)

[ Datei : C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\prefs.js ]

Zeile gelöscht : user_pref("browser.search.defaultenginename", "Search Results");
Zeile gelöscht : user_pref("browser.search.order.1", "Search Results");
Zeile gelöscht : user_pref("extensions.crossrider.bic", "13ef0f9a12e10a0ddd6853b28a739a3b");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.minibar.SOFTONICREFRESHRATE", "140000");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.sslminibar.SOFTONICREFRESHRATE", "140000");
Zeile gelöscht : user_pref("keyword.URL", "hxxp://dts.search-results.com/sr?src=ffb&gct=ds&appid=427&systemid=406&apn_dtid=BND406&apn_ptnrs=AG6&apn_uid=3800099316804469&o=APN10645&q=");

*************************

AdwCleaner[R0].txt - [11861 octets] - [03/09/2013 14:14:16]
AdwCleaner[S0].txt - [11490 octets] - [03/09/2013 14:16:20]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [11551 octets] ##########

das geht ja wieder fix hier....

FRST Logfile:

FRST Logfile:
Code:

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 03-09-2013 01
Ran by karsten (administrator) on KCW on 03-09-2013 14:21:21
Running from C:\Users\karsten\Downloads
Windows 8 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(AMD) C:\Windows\system32\atiesrxx.exe
(AMD) C:\Windows\system32\atieclxx.exe
(IvoSoft) C:\Program Files\Classic Shell\ClassicShellService.exe
(Microsoft Corporation) C:\Windows\system32\WLANExt.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Microsoft Corporation) C:\Windows\system32\dashost.exe
(Hewlett-Packard Company) C:\Program Files (x86)\HP\HPBDSService\HPBDSService.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\FrameworkService.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\VsTskMgr.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\naPrdMgr.exe
(McAfee, Inc.) C:\Windows\system32\mfevtps.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\mfeann.exe
(pdfforge GbR) C:\Program Files (x86)\PDF Architect\HelperService.exe
(Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
(Microsoft Corporation) C:\Windows\SysWOW64\DllHost.exe
(Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\VmbService.exe
(IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler64.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkClient.EXE
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe
(Sony Corporation) C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe
(Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE
(McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\UdaterUI.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\MobileBroadband.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\McTray.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\SHSTAT.EXE
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VUAgent.exe
(Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
() C:\Program Files\Sony\VAIO Care\VCPerfService.exe
() C:\Program Files\Sony\VAIO Care\listener.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1215632 2012-08-22] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1215632 2012-08-22] (Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2916152 2012-08-24] (Synaptics Incorporated)
HKLM\...\Run: [BTMTrayAgent] - C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [11582848 2012-09-30] (Motorola Solutions, Inc.)
HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,C:\Windows\skipmetrosuite.exe,
HKLM\...\Policies\Explorer: [NoActiveDesktopChanges] 1
HKLM\...\Policies\Explorer: [NoActiveDesktop] 1
MountPoints2: {00cf490d-0260-11e3-beaf-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence
MountPoints2: {59609a28-0e49-11e3-beb9-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence
MountPoints2: {59609a55-0e49-11e3-beb9-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence
MountPoints2: {7d2e3252-00c6-11e3-beac-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence
MountPoints2: {abadd295-147f-11e3-bec3-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence
MountPoints2: {b09a22dd-f766-11e2-bea9-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence
MountPoints2: {b09a231c-f766-11e2-bea9-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence
MountPoints2: {b09a23ab-f766-11e2-bea9-5453edb62022} - "E:\AutoRun.exe"
MountPoints2: {b09a23d0-f766-11e2-bea9-5453edb62022} - "E:\AutoRun.exe"
MountPoints2: {b09a2413-f766-11e2-bea9-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence
MountPoints2: {d1225ae4-dfb3-11e2-be99-5453edb62022} - "E:\Autorun.exe"
HKLM-x32\...\Run: [Dolby Home Theater v4] - C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [508256 2012-04-23] (Dolby Laboratories Inc.)
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642216 2012-08-06] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [ISBMgr.exe] - C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe [68776 2012-08-18] (Sony Corporation)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - c:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [37960 2013-05-10] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Intel AppUp(SM) center] - C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [152896 2012-06-25] (Intel Corporation)
HKLM-x32\...\Run: [McAfeeUpdaterUI] - C:\Program Files (x86)\McAfee\Common Framework\udaterui.exe [333376 2011-11-15] (McAfee, Inc.)
HKLM-x32\...\Run: [ShStatEXE] - C:\Program Files (x86)\McAfee\VirusScan Enterprise\SHSTAT.EXE [215656 2012-08-14] (McAfee, Inc.)
HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [49208 2010-06-09] (Hewlett-Packard)
HKLM-x32\...\Run: [] -  [x]
HKLM-x32\...\Run: [MobileBroadband] - C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\MobileBroadband.exe [76288 2013-02-05] (Vodafone)
AppInit_DLLs:    [0 ] ()
AppInit_DLLs-x32:    [0 ] ()
BootExecute: autocheck autochk * autocheck iolorgdf32 C:\Users\karsten\AppData\Roaming\iolo\

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://sony13.msn.com
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://vaioportal.sony.eu
SearchScopes: HKLM - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL =
SearchScopes: HKCU - {0BB430DC-AB51-4C14-89C3-3102CA91B8B8} URL = hxxp://rover.ebay.com/rover/1/707-37276-16609-27/4?mpre=hxxp://shop.ebay.de/?oemInLn=ieSrch-Q312&_nkw={searchTerms}
SearchScopes: HKCU - {80E04FE9-5834-4F5E-BCA3-AF9A0D2EF1A3} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASEJS
SearchScopes: HKCU - {F15FE3CB-E081-40DC-8B46-1C33E78FE0A4} URL = hxxp://search.zonealarm.com/search?src=sp&tbid=Solo&Lan=&q={searchTerms}&gu=ea9e5e931c8f46d0b5fc7ff027f2c9cd&tu=11Ih0008I1B0001&sku=&tstsId=&ver=&&r=0
BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20130307163200.dll (McAfee, Inc.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: ClassicIE9BHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIE9DLL_64.dll (IvoSoft)
BHO-x32: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GbR)
BHO-x32: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20130307163200.dll (McAfee, Inc.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: ClassicIE9BHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIE9DLL_32.dll (IvoSoft)
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)
Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} -  No File
Tcpip\..\Interfaces\{8E0C755B-CB0B-4BC6-BC3B-A4081D5AE527}: [NameServer]139.7.30.125,139.7.30.126

FireFox:
========
FF ProfilePath: C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.google.com/
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll ()
FF Plugin: @java.com/DTPlugin,version=10.5.0 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.5.0 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.5.0 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.5.0 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.6 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\1\NP_wtapp.dll ()
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: firefox - C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\Extensions\firefox@ghostery.com.xpi
FF Extension: jid1-u9RbFp9JcoEGGw - C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\Extensions\jid1-u9RbFp9JcoEGGw@jetpack.xpi
FF Extension: No Name - C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF HKLM-x32\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt
FF Extension: PDF Architect Converter For Firefox - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt
FF HKLM-x32\...\Firefox\Extensions: [{D19CA586-DD6C-4a0a-96F8-14644F340D60}] C:\Program Files (x86)\Common Files\McAfee\SystemCore
FF Extension: IDS_SS_NAME - C:\Program Files (x86)\Common Files\McAfee\SystemCore
FF HKLM-x32\...\Firefox\Extensions: [ff-bmboc@bytemobile.com] C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Optimization Client\addon\
FF Extension: Bytemobile Optimization Client - C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Optimization Client\addon\
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] C:\Program Files\McAfee\MSK

==================== Services (Whitelisted) =================

R2 ClassicShellService; C:\Program Files\Classic Shell\ClassicShellService.exe [68608 2012-12-29] (IvoSoft)
R2 HP DS Service; C:\Program Files (x86)\HP\HPBDSService\HPBDSService.exe [13824 2010-10-27] (Hewlett-Packard Company)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128896 2012-07-25] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-25] (Intel Corporation)
R2 McAfeeFramework; C:\Program Files (x86)\McAfee\Common Framework\FrameworkService.exe [132672 2011-11-15] (McAfee, Inc.)
R2 McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [201864 2013-03-07] (McAfee, Inc.)
R2 McTaskManager; C:\Program Files (x86)\McAfee\VirusScan Enterprise\VsTskMgr.exe [210056 2012-08-14] (McAfee, Inc.)
S4 mfeicfcoreocp; C:\Program Files\McAfeeEx\MOCP\core\mfeicfcore.exe [5619000 2012-06-20] (McAfee, Inc.)
R2 mfevtp; C:\Windows\system32\mfevtps.exe [170440 2013-03-07] (McAfee, Inc.)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [272176 2012-07-18] ()
S3 NetworkSupport; C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkSupport.exe [623784 2012-08-18] (Sony Corporation)
R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1324104 2013-01-09] (pdfforge GbR)
S2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [795208 2013-01-09] (pdfforge GbR)
R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [474208 2012-07-27] (Sony Corporation)
R2 SampleCollector; C:\Program Files\Sony\VAIO Care\VCPerfService.exe [156672 2012-08-06] ()
S3 VCFw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [972000 2012-08-08] (Sony Corporation)
R3 VUAgent; C:\Program Files\Sony\VAIO Update\VUAgent.exe [1359408 2013-03-26] (Sony Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16048 2013-07-02] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [2699568 2012-07-18] (Intel® Corporation)
S2 McOobeSv2; "C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [x]

==================== Drivers (Whitelisted) ====================

R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [35496 2012-08-22] (Advanced Micro Devices, Inc.)
R0 BMLoad; C:\Windows\System32\drivers\BMLoad.sys [16552 2013-09-03] (Bytemobile, Inc.)
S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation)
S3 btmaux; C:\Windows\system32\DRIVERS\btmaux.sys [132480 2012-10-01] (Motorola Solutions, Inc.)
S3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1337216 2012-10-01] (Motorola Solutions, Inc.)
R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink)
S3 ewusbnet; C:\Windows\system32\DRIVERS\ewusbnet.sys [451072 2013-01-30] (Huawei Technologies Co., Ltd.)
S3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [160952 2013-03-07] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [274880 2013-03-07] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [665768 2013-03-07] (McAfee, Inc.)
S3 mferkdet; C:\Windows\System32\drivers\mferkdet.sys [101200 2013-03-07] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [303464 2013-03-07] (McAfee, Inc.)
R3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew00.sys [4273192 2012-08-07] (Intel Corporation)
R3 rimssne; C:\Windows\System32\drivers\rimssne64.sys [103424 2012-08-23] (REDC)
R3 risdsnxc; C:\Windows\System32\drivers\risdsnxc64.sys [104960 2012-08-23] (REDC)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [43832 2012-08-24] (Synaptics Incorporated)
R3 SOWS; C:\Windows\System32\drivers\sows.sys [24280 2012-06-11] (Sony Corporation)
R1 tcpipBM; C:\Windows\system32\drivers\tcpipBM.sys [39592 2013-09-03] (Bytemobile, Inc.)
R1 tcpipBM; C:\Windows\system32\drivers\tcpipBM.sys [39592 2013-09-03] (Bytemobile, Inc.)
S3 usb3Hub; C:\Windows\System32\drivers\usb3Hub.sys [48096 2012-08-09] (Windows (R) Win 7 DDK provider)
S3 XHCIPort; C:\Windows\System32\drivers\XHCIPort.sys [188384 2012-08-09] (Windows (R) Win 7 DDK provider)
S3 hwusbfake; \SystemRoot\system32\DRIVERS\ewusbfake.sys [x]
U3 mfeavfk01; No ImagePath

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-09-03 14:09 - 2013-09-03 14:09 - 01037134 _____ C:\Users\karsten\Downloads\adwcleaner.exe
2013-09-03 14:05 - 2013-09-03 14:06 - 00284408 _____ C:\Windows\Minidump\090313-21781-01.dmp
2013-09-03 13:29 - 2013-09-03 13:29 - 00284408 _____ C:\Windows\Minidump\090313-24031-01.dmp
2013-09-03 13:26 - 2013-09-03 13:27 - 00059544 _____ C:\Users\karsten\Downloads\Addition.txt
2013-09-03 13:25 - 2013-09-03 13:25 - 00000000 ____D C:\FRST
2013-09-03 13:24 - 2013-09-03 13:24 - 00377856 _____ C:\Users\karsten\Downloads\gmer_2.1.19163.exe
2013-09-03 13:24 - 2013-09-03 13:24 - 00000476 _____ C:\Users\karsten\Downloads\defogger_disable.log
2013-09-03 13:24 - 2013-09-03 13:24 - 00000000 _____ C:\Users\karsten\defogger_reenable
2013-09-03 13:23 - 2013-09-03 13:23 - 01950474 _____ (Farbar) C:\Users\karsten\Downloads\FRST64.exe
2013-09-03 13:23 - 2013-09-03 13:23 - 00050477 _____ C:\Users\karsten\Downloads\Defogger.exe
2013-09-03 11:59 - 2013-01-30 11:26 - 00451072 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbnet.sys
2013-09-03 11:59 - 2013-01-30 11:26 - 00225920 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbmdm.sys
2013-09-03 11:58 - 2013-09-03 11:58 - 00039592 _____ (Bytemobile, Inc.) C:\Windows\system32\Drivers\tcpipBM.sys
2013-09-03 11:58 - 2013-09-03 11:58 - 00016552 _____ (Bytemobile, Inc.) C:\Windows\system32\Drivers\BMLoad.sys
2013-09-03 11:58 - 2013-09-03 11:58 - 00002156 _____ C:\Users\Public\Desktop\Vodafone Mobile Broadband.lnk
2013-09-03 11:58 - 2013-09-03 11:58 - 00000000 ____D C:\Program Files (x86)\Vodafone
2013-08-26 21:46 - 2013-08-26 21:46 - 00000512 _____ C:\Users\karsten\Desktop\Lokaler Datenträger (C) - Verknüpfung.lnk
2013-08-14 08:34 - 2013-07-26 07:13 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-08-14 08:34 - 2013-07-26 07:13 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-08-14 08:34 - 2013-07-26 07:13 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll
2013-08-14 08:34 - 2013-07-26 07:13 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll
2013-08-14 08:34 - 2013-07-26 07:13 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-08-14 08:34 - 2013-07-26 07:12 - 19239424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-08-14 08:34 - 2013-07-26 07:12 - 15405056 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-08-14 08:34 - 2013-07-26 07:12 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-08-14 08:34 - 2013-07-26 07:12 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-08-14 08:34 - 2013-07-26 07:12 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-08-14 08:34 - 2013-07-26 07:12 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-08-14 08:34 - 2013-07-26 07:12 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-08-14 08:34 - 2013-07-26 07:12 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-08-14 08:34 - 2013-07-26 07:12 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-08-14 08:34 - 2013-07-26 07:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-08-14 08:34 - 2013-07-26 05:35 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-08-14 08:34 - 2013-07-26 05:13 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-08-14 08:34 - 2013-07-26 05:13 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-08-14 08:34 - 2013-07-26 05:13 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll
2013-08-14 08:34 - 2013-07-26 05:12 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-08-14 08:34 - 2013-07-26 05:12 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-08-14 08:34 - 2013-07-26 05:12 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-08-14 08:34 - 2013-07-26 05:12 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-08-14 08:34 - 2013-07-26 05:12 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-08-14 08:34 - 2013-07-26 05:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-08-14 08:34 - 2013-07-26 05:11 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-08-14 08:34 - 2013-07-26 05:11 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-08-14 08:34 - 2013-07-26 04:49 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-08-14 08:34 - 2013-07-26 02:54 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll
2013-08-14 08:33 - 2013-07-26 05:12 - 14329344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-08-14 08:33 - 2013-07-26 05:12 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-08-14 08:25 - 2013-07-02 02:44 - 00036288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys
2013-08-14 08:25 - 2013-07-02 00:08 - 00247216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys
2013-08-14 08:25 - 2013-05-24 01:02 - 01314816 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2013-08-14 08:24 - 2013-07-09 08:07 - 02233168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-08-14 08:24 - 2013-05-24 00:25 - 00694272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2013-08-14 08:21 - 2013-07-13 08:18 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2013-08-14 08:21 - 2013-07-13 08:16 - 01889280 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2013-08-14 08:21 - 2013-07-13 08:16 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2013-08-14 08:21 - 2013-07-13 08:15 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\apprepapi.dll
2013-08-14 08:21 - 2013-07-13 08:15 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\apprepsync.dll
2013-08-14 08:21 - 2013-07-13 06:24 - 00261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2013-08-14 08:21 - 2013-07-13 06:23 - 01568256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2013-08-14 08:21 - 2013-07-13 06:23 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepapi.dll
2013-08-14 08:21 - 2013-07-13 06:23 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepsync.dll
2013-08-12 20:32 - 2013-08-12 20:32 - 00002172 _____ C:\Users\Public\Desktop\Google Earth.lnk
2013-08-12 20:22 - 2013-08-22 15:18 - 00000000 ____D C:\Windows\system32\MRT
2013-08-11 13:22 - 2013-08-11 13:22 - 00000000 ____D C:\Users\karsten\AppData\Roaming\FLEXnet
2013-08-11 13:19 - 2013-08-11 13:19 - 00000000 ____D C:\Neuer Ordner
2013-08-11 13:18 - 2013-08-11 13:18 - 00051992 _____ (cake bake) C:\Program Files (x86)\WBDesktop.Updater.exe
2013-08-09 09:35 - 2013-01-30 11:26 - 01490656 _____ (Microsoft Corporation) C:\Windows\system32\wdfcoinstaller01007.dll
2013-08-09 09:35 - 2013-01-30 11:26 - 00117248 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_hwusbdev.sys
2013-08-09 09:35 - 2013-01-30 11:26 - 00090112 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jubusenum.sys
2013-08-09 09:34 - 2013-08-09 09:34 - 00000000 ____D C:\Users\karsten\AppData\Local\Downloaded Installations
2013-08-09 09:34 - 2013-08-09 09:34 - 00000000 ____D C:\ProgramData\Macrovision
2013-08-08 12:05 - 2013-09-03 11:58 - 00000000 ____D C:\ProgramData\Vodafone
2013-08-08 11:15 - 2013-08-09 09:43 - 00000000 ____D C:\Users\karsten\AppData\Roaming\Vodafone
2013-08-08 11:14 - 2013-08-08 11:14 - 00008464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SpOrder.dll
2013-08-08 11:14 - 2013-08-08 11:14 - 00000000 ____D C:\ProgramData\FLEXnet
2013-08-08 11:13 - 2013-08-08 11:13 - 00000000 ____D C:\Users\karsten\AppData\Local\{86DD38A2-C8BD-404A-A1BD-907F6B69C913}

==================== One Month Modified Files and Folders =======

2013-09-03 14:21 - 2013-06-22 20:11 - 00001120 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-09-03 14:17 - 2013-06-22 20:11 - 00001116 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-09-03 14:17 - 2012-07-26 09:22 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-09-03 14:16 - 2013-09-03 14:14 - 00000000 ____D C:\AdwCleaner
2013-09-03 14:11 - 2012-08-03 04:22 - 00018420 _____ C:\Windows\PFRO.log
2013-09-03 14:10 - 2013-06-29 11:31 - 00000898 _____ C:\Windows\SysWOW64\InstallUtil.InstallLog
2013-09-03 14:09 - 2013-09-03 14:09 - 01037134 _____ C:\Users\karsten\Downloads\adwcleaner.exe
2013-09-03 14:06 - 2013-09-03 14:05 - 00284408 _____ C:\Windows\Minidump\090313-21781-01.dmp
2013-09-03 14:05 - 2013-04-24 02:09 - 00000000 ____D C:\Windows\Minidump
2013-09-03 14:05 - 2013-04-24 02:08 - 531305500 _____ C:\Windows\MEMORY.DMP
2013-09-03 14:02 - 2013-03-07 15:50 - 00003596 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-288095589-429832609-4039349632-1001
2013-09-03 14:00 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\sru
2013-09-03 13:40 - 2013-06-26 20:02 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-09-03 13:37 - 2012-11-16 17:15 - 01772588 _____ C:\Windows\WindowsUpdate.log
2013-09-03 13:35 - 2013-06-29 11:31 - 00000000 ____D C:\Users\karsten\AppData\Roaming\igdhbblpcellaljokkpfhcjlagemhgjl
2013-09-03 13:29 - 2013-09-03 13:29 - 00284408 _____ C:\Windows\Minidump\090313-24031-01.dmp
2013-09-03 13:29 - 2013-03-07 15:43 - 00000000 ____D C:\Users\karsten
2013-09-03 13:27 - 2013-09-03 13:26 - 00059544 _____ C:\Users\karsten\Downloads\Addition.txt
2013-09-03 13:26 - 2013-03-07 17:02 - 00000000 ____D C:\Original
2013-09-03 13:25 - 2013-09-03 13:25 - 00000000 ____D C:\FRST
2013-09-03 13:24 - 2013-09-03 13:24 - 00377856 _____ C:\Users\karsten\Downloads\gmer_2.1.19163.exe
2013-09-03 13:24 - 2013-09-03 13:24 - 00000476 _____ C:\Users\karsten\Downloads\defogger_disable.log
2013-09-03 13:24 - 2013-09-03 13:24 - 00000000 _____ C:\Users\karsten\defogger_reenable
2013-09-03 13:23 - 2013-09-03 13:23 - 01950474 _____ (Farbar) C:\Users\karsten\Downloads\FRST64.exe
2013-09-03 13:23 - 2013-09-03 13:23 - 00050477 _____ C:\Users\karsten\Downloads\Defogger.exe
2013-09-03 12:34 - 2012-11-16 16:53 - 00000000 ____D C:\ProgramData\Sony Corporation
2013-09-03 12:17 - 2012-11-16 16:47 - 00753134 _____ C:\Windows\system32\perfh007.dat
2013-09-03 12:17 - 2012-11-16 16:47 - 00155826 _____ C:\Windows\system32\perfc007.dat
2013-09-03 12:17 - 2012-07-26 09:28 - 01745416 _____ C:\Windows\system32\PerfStringBackup.INI
2013-09-03 12:03 - 2012-07-26 09:21 - 00054721 _____ C:\Windows\setupact.log
2013-09-03 11:58 - 2013-09-03 11:58 - 00039592 _____ (Bytemobile, Inc.) C:\Windows\system32\Drivers\tcpipBM.sys
2013-09-03 11:58 - 2013-09-03 11:58 - 00016552 _____ (Bytemobile, Inc.) C:\Windows\system32\Drivers\BMLoad.sys
2013-09-03 11:58 - 2013-09-03 11:58 - 00002156 _____ C:\Users\Public\Desktop\Vodafone Mobile Broadband.lnk
2013-09-03 11:58 - 2013-09-03 11:58 - 00000000 ____D C:\Program Files (x86)\Vodafone
2013-09-03 11:58 - 2013-08-08 12:05 - 00000000 ____D C:\ProgramData\Vodafone
2013-09-02 16:05 - 2012-07-26 07:26 - 00262144 ___SH C:\Windows\system32\config\BBI
2013-09-01 23:00 - 2013-06-13 21:50 - 00000000 ____D C:\Users\karsten\AppData\Roaming\Thunderbird
2013-09-01 12:20 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\AUInstallAgent
2013-08-28 22:07 - 2013-03-08 12:57 - 00000000 ____D C:\World ARC 2009_2013
2013-08-26 21:46 - 2013-08-26 21:46 - 00000512 _____ C:\Users\karsten\Desktop\Lokaler Datenträger (C) - Verknüpfung.lnk
2013-08-26 21:17 - 2013-05-29 17:47 - 00000000 ____D C:\Users\karsten\AppData\Roaming\vlc
2013-08-22 15:40 - 2013-06-26 20:02 - 00003772 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-08-22 15:18 - 2013-08-12 20:22 - 00000000 ____D C:\Windows\system32\MRT
2013-08-22 15:16 - 2013-03-18 10:14 - 78161360 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-08-15 03:07 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\rescache
2013-08-14 08:47 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files\Windows Defender
2013-08-14 08:47 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2013-08-12 20:32 - 2013-08-12 20:32 - 00002172 _____ C:\Users\Public\Desktop\Google Earth.lnk
2013-08-12 20:31 - 2013-06-22 20:11 - 00000000 ____D C:\Program Files (x86)\Google
2013-08-11 13:22 - 2013-08-11 13:22 - 00000000 ____D C:\Users\karsten\AppData\Roaming\FLEXnet
2013-08-11 13:19 - 2013-08-11 13:19 - 00000000 ____D C:\Neuer Ordner
2013-08-11 13:18 - 2013-08-11 13:18 - 00051992 _____ (cake bake) C:\Program Files (x86)\WBDesktop.Updater.exe
2013-08-11 10:35 - 2013-03-18 20:07 - 00068904 _____ C:\Users\karsten\AppData\Local\GDIPFONTCACHEV1.DAT
2013-08-09 09:43 - 2013-08-08 11:15 - 00000000 ____D C:\Users\karsten\AppData\Roaming\Vodafone
2013-08-09 09:38 - 2013-07-27 16:15 - 00305704 _____ C:\Windows\system32\FNTCACHE.DAT
2013-08-09 09:34 - 2013-08-09 09:34 - 00000000 ____D C:\Users\karsten\AppData\Local\Downloaded Installations
2013-08-09 09:34 - 2013-08-09 09:34 - 00000000 ____D C:\ProgramData\Macrovision
2013-08-08 11:14 - 2013-08-08 11:14 - 00008464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SpOrder.dll
2013-08-08 11:14 - 2013-08-08 11:14 - 00000000 ____D C:\ProgramData\FLEXnet
2013-08-08 11:13 - 2013-08-08 11:13 - 00000000 ____D C:\Users\karsten\AppData\Local\{86DD38A2-C8BD-404A-A1BD-907F6B69C913}

Files to move or delete:
====================
C:\Users\karsten\AppData\Local\Temp\BundleSweetIMSetup.exe
C:\Users\karsten\AppData\Local\Temp\DataCard_Setup64.exe
C:\Users\karsten\AppData\Local\Temp\fp_pl_pfs_installer-1.exe
C:\Users\karsten\AppData\Local\Temp\fp_pl_pfs_installer.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssa_aih.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssa_aih_1.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(1).exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(1)_1.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(1)_2.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(2).exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(2)_1.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(2)_2.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(2)_3.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_1.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_10.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_11.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_12.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_13.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_14.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_2.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_3.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_4.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_5.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_6.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_7.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_8.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_9.exe
C:\Users\karsten\AppData\Local\Temp\is-9VOOK.exe
C:\Users\karsten\AppData\Local\Temp\LyricsContainertmp.exe
C:\Users\karsten\AppData\Local\Temp\MybabylonTB.exe
C:\Users\karsten\AppData\Local\Temp\propsys.dll
C:\Users\karsten\AppData\Local\Temp\Quarantine.exe
C:\Users\karsten\AppData\Local\Temp\ResetDevice.exe
C:\Users\karsten\AppData\Local\Temp\Setup.exe
C:\Users\karsten\AppData\Local\Temp\SpOrder.dll
C:\Users\karsten\AppData\Local\Temp\zatbSetup_110_000_064.exe
C:\Users\karsten\AppData\Local\Temp\{CE15D1B6-19B6-4D4D-8F43-CF5D2C3356FF}\nailite.dll
C:\Users\karsten\AppData\Local\Temp\{A2041102-6384-4EC4-BFEB-DA2EC1518A1B}\InstallFlashPlayer.exe
C:\Users\karsten\AppData\Local\Temp\{72CF18AF-048E-49A2-91BF-424F426C7F59}\InstallFlashPlayer.exe
C:\Users\karsten\AppData\Local\Temp\{67C1E091-8FC4-4816-A3DE-EDD4C5CD8F12}\InstallFlashPlayer.exe
C:\Users\karsten\AppData\Local\Temp\UTPSDLL\GdiPlus.dll
C:\Users\karsten\AppData\Local\Temp\UTPSDLL\mfc71.dll
C:\Users\karsten\AppData\Local\Temp\UTPSDLL\MFC71u.dll
C:\Users\karsten\AppData\Local\Temp\UTPSDLL\msvcp71.dll
C:\Users\karsten\AppData\Local\Temp\UTPSDLL\msvcr71.dll
C:\Users\karsten\AppData\Local\Temp\Temp1_SkipMetroSuite.zip\Windows 8 x64\SkipMetroSuiteUI.exe
C:\Users\karsten\AppData\Local\Temp\SDIAG_fedc0537-1c1f-46e2-962d-3cb9d2c09fe9\NetworkDiagnosticSnapIn.dll
C:\Users\karsten\AppData\Local\Temp\nsy12BA.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsy12BA.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsy12BA.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsy12BA.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsy12BA.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsx5231.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsx5231.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsx5231.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsx5231.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsx5231.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nswFCC8.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nswFCC8.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nswFCC8.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nswFCC8.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nswFCC8.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsvF02F.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsvF02F.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsvF02F.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsvF02F.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsvF02F.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsuFAC8.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsuFAC8.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsuFAC8.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsuFAC8.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsuFAC8.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsu37DC.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsu37DC.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsu37DC.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsu37DC.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsu37DC.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsrFA7B.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsrFA7B.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsrFA7B.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsrFA7B.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsrFA7B.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsr79.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsr79.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsr79.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsr79.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsr79.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsqB2AC.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsqB2AC.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsqB2AC.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsqB2AC.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsqB2AC.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsp2E7D.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsp2E7D.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsp2E7D.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsp2E7D.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsp2E7D.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\textreplace.dll
C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsn90.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsn90.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsn90.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsn90.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsn90.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsl6ED3.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsl6ED3.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsl6ED3.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsl6ED3.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsl6ED3.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsj95BD.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsj95BD.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsj95BD.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsj95BD.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsj95BD.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsj19E1.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsj19E1.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsj19E1.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsj19E1.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsj19E1.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsg3404.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsg3404.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsg3404.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsg3404.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsg3404.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsg28A4.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsg28A4.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsg28A4.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsg28A4.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsg28A4.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsaF1CA.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsaF1CA.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsaF1CA.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsaF1CA.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsaF1CA.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\mcbrwsr2.dll
C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\McInstallerStartup.dll
C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\McInstallerUtil.dll
C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\mcuicnt.exe
C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\OcpStartup.dll
C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\Ocp_LD.dll
C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\OCP_UI.dll
C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\UnInstallOcp.exe
C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\UnMfp.exe
C:\Users\karsten\AppData\Local\Temp\MozUpdater\updater.exe
C:\Users\karsten\AppData\Local\Temp\dlm8D05.tmp\123freesolitaire-v90-setup.exe
C:\Users\karsten\AppData\Local\Temp\._msige61\GoogleEarth.exe
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemyext.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\earthps.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\geplugin.exe
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\ge_expat.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\googleearth_free.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\icudt.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGAttrs.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGCore.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGExportCommon.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGGfx.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGMath.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGOpt.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGSg.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGUtils.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\Leap.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\msvcp100.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\msvcr100.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\npgeplugin.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\plugin_ax.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\QtCore4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\QtGui4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\QtNetwork4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\QtWebKit4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\imageformats\qgif4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\imageformats\qjpeg4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\optimizations\IGOptExtension.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\D3DCompiler_43.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\d3dx9_43.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\IGAttrs.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\IGGfx.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\IGSg.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\libEGL.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\libGLESv2.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogl\IGAttrs.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogl\IGGfx.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogl\IGSg.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemyext.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\earthflashsol.exe
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\earthps.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\ge_expat.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\googleearth.exe
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\googleearth_free.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\gpsbabel.exe
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\icudt.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGAttrs.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGCore.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGExportCommon.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGGfx.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGMath.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGOpt.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGSg.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGUtils.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\Leap.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\msvcp100.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\msvcr100.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\QtCore4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\QtGui4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\QtNetwork4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\QtWebKit4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\Plugins\npgeinprocessplugin.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\imageformats\qgif4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\imageformats\qjpeg4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\optimizations\IGOptExtension.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\D3DCompiler_43.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\d3dx9_43.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\IGAttrs.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\IGGfx.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\IGSg.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\libEGL.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\libGLESv2.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogl\IGAttrs.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogl\IGGfx.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogl\IGSg.dll

==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-09-01 13:13

==================== End Of Log ============================

--- --- ---

--- --- ---

miki60 03.09.2013 13:25

Code:

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 03-09-2013 01
Ran by karsten at 2013-09-03 14:22:57
Running from C:\Users\karsten\Downloads
Boot Mode: Normal
==========================================================


==================== Installed Programs =======================

 
123 Free Solitaire v9.0 (x32)
64 Bit HP CIO Components Installer (Version: 8.2.1)
Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.94)
Adobe Reader X (10.1.7) MUI (x32 Version: 10.1.7)
Agatha Christie - Death on the Nile (x32 Version: 2.2.0.98)
Aloha TriPeaks (x32 Version: 2.2.0.98)
AMD APP SDK Runtime (Version: 10.0.938.2)
AMD Catalyst Install Manager (Version: 8.0.881.0)
Bejeweled 3 (x32 Version: 2.2.0.98)
Build-a-lot: On Vacation (x32 Version: 2.2.0.110)
Catalyst Control Center - Branding (x32 Version: 1.00.0000)
Catalyst Control Center (x32 Version: 2012.0806.1156.19437)
Catalyst Control Center Graphics Previews Common (x32 Version: 2012.0806.1156.19437)
Catalyst Control Center InstallProxy (x32 Version: 2012.0806.1156.19437)
Catalyst Control Center Localization All (x32 Version: 2012.0806.1156.19437)
Catalyst Control Center Profiles Mobile (x32 Version: 2012.0806.1156.19437)
CCC Help Chinese Standard (x32 Version: 2012.0806.1155.19437)
CCC Help Chinese Traditional (x32 Version: 2012.0806.1155.19437)
CCC Help Czech (x32 Version: 2012.0806.1155.19437)
CCC Help Danish (x32 Version: 2012.0806.1155.19437)
CCC Help Dutch (x32 Version: 2012.0806.1155.19437)
CCC Help English (x32 Version: 2012.0806.1155.19437)
CCC Help Finnish (x32 Version: 2012.0806.1155.19437)
CCC Help French (x32 Version: 2012.0806.1155.19437)
CCC Help German (x32 Version: 2012.0806.1155.19437)
CCC Help Greek (x32 Version: 2012.0806.1155.19437)
CCC Help Hungarian (x32 Version: 2012.0806.1155.19437)
CCC Help Italian (x32 Version: 2012.0806.1155.19437)
CCC Help Japanese (x32 Version: 2012.0806.1155.19437)
CCC Help Korean (x32 Version: 2012.0806.1155.19437)
CCC Help Norwegian (x32 Version: 2012.0806.1155.19437)
CCC Help Polish (x32 Version: 2012.0806.1155.19437)
CCC Help Portuguese (x32 Version: 2012.0806.1155.19437)
CCC Help Russian (x32 Version: 2012.0806.1155.19437)
CCC Help Spanish (x32 Version: 2012.0806.1155.19437)
CCC Help Swedish (x32 Version: 2012.0806.1155.19437)
CCC Help Thai (x32 Version: 2012.0806.1155.19437)
CCC Help Turkish (x32 Version: 2012.0806.1155.19437)
ccc-utility64 (Version: 2012.0806.1156.19437)
Chronicles of Albian (x32 Version: 2.2.0.110)
Chuzzle Deluxe (x32 Version: 2.2.0.95)
Classic Shell (Version: 3.6.5)
Compatibility Pack für 2007 Office System (x32 Version: 12.0.6021.5000)
Cradle Of Egypt Collector's Edition (x32 Version: 2.2.0.110)
CyberLink Power2Go 8 (x32 Version: 8.0.0.1923)
CyberLink PowerDVD (x32 Version: 9.0.5601.52)
Dolby Home Theater v4 (x32 Version: 7.2.8000.13)
el PROSet Wireless
FATE (x32 Version: 2.2.0.97)
FDUx86 (x32 Version: 1.0.0)
Google Earth (x32 Version: 7.1.1.1888)
Google Update Helper (x32 Version: 1.3.21.153)
Heroes of Hellas 3: Athens (x32 Version: 2.2.0.110)
HP LaserJet 100 color MFP M175 (x32)
HP LJ100 M175 HP Scan (x32 Version: 1.0.302.0)
HP Update (x32 Version: 5.002.006.003)
hpbDSService (x32 Version: 001.001.05133)
hpbM175DSService (x32 Version: 001.001.05133)
HPLaserJet100ColorMFPM175_HelpLearnCenter_SI (x32 Version: 1.00.0000)
HPLJUT (x32 Version: 1.00.0012)
hppLaserJetService (x32 Version: 002.015.00602)
hppM175LaserJetService (x32 Version: 001.014.00480)
InstanceFinder (x32 Version: 1.00.0001)
Intel AppUp(SM) center (x32 Version: 03.05.11)
Intel(R) Display Audio Driver (x32 Version: 6.14.00.3097)
Intel(R) Management Engine Components (x32 Version: 8.1.0.1252)
Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed (Version: 15.5.0.0344)
Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (Version: 2.6.1210.0278)
Intel(R) Rapid Storage Technology (x32 Version: 11.5.3.1004)
Intel(R) WiDi (Version: 3.5.34.0)
Intel® PROSet/Wireless WiFi-Software (Version: 15.05.1000.1411)
Intel® Trusted Connect Service Client (Version: 1.24.388.1)
IrfanView (remove only) (x32 Version: 4.36)
Java Auto Updater (x32 Version: 2.1.6.0)
Java(TM) 7 Update 5 (64-bit) (Version: 7.0.50)
Java(TM) 7 Update 5 (x32 Version: 7.0.50)
KUx86 (x32 Version: 1.0.0)
Luxor HD (x32 Version: 2.2.0.110)
Mahjongg Artifacts (x32 Version: 2.2.0.110)
McAfee Agent (x32 Version: 4.6.0.2292)
McAfee VirusScan Enterprise (x32 Version: 8.8.02004)
Microsoft Office Professional Edition 2003 (x32 Version: 11.0.8173.0)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219)
Mozilla Firefox 22.0 (x86 de) (x32 Version: 22.0)
Mozilla Maintenance Service (x32 Version: 22.0)
Mystery of Mortlake Mansion (x32 Version: 2.2.0.98)
Mystery P.I. - The London Caper (x32 Version: 2.2.0.95)
NauticTools (HKCU Version: - Version 1.2)
PDF Architect (x32 Version: 1.0.52.8917)
PDFCreator (x32 Version: 1.6.2)
Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98)
Polar Bowler (x32 Version: 2.2.0.97)
PX Profile Update (x32 Version: 1.00.1.)
Realtek High Definition Audio Driver (x32 Version: 6.0.1.6705)
Restore (x32 Version: 1.0.0)
Shared C Run-time for x64 (Version: 10.0.0)
SSLx64 (Version: 1.0.0)
SSLx86 (x32 Version: 1.0.0)
Synaptics Pointing Device Driver (Version: 16.2.10.5)
ToolboxProxy (x32 Version: 1.00.0001)
Ugrib RC1 (x32 Version: Release Candidate 0.2.4)
Update Installer for WildTangent Games App (x32)
VAIO - Xperia Link (x32 Version: 1.0.0.08170)
VAIO Care (Version: 8.0.0.08150)
VAIO Control Center (x32 Version: 6.0.0.08200)
VAIO Data Restore Tool (x32 Version: 1.10.0.07270)
VAIO Easy Connect (x32 Version: 1.2.0.08150)
VAIO Gate (x32 Version: 3.0.0.08140)
VAIO Gate Default (x32 Version: 3.0.0.08060)
VAIO Gesture Control (x32 Version: 2.0.0.08240)
VAIO Image Optimizer (x32 Version: 3.0.00.08170)
VAIO Improvement (x32 Version: 2.0.0.08090)
VAIO Media Server Settings (Version: 1.0.0.08240)
VAIO Movie Creator Template Data (x32 Version: 4.0.00.08170)
VAIO Update (x32 Version: 6.2.1.03260)
VAIO*CPU-Lüfterdiagnose (x32 Version: 1.1.0.09200)
VAIO-Handbuch (x32 Version: 3.0.0.08100)
VAIO-Support für Übertragungen (x32 Version: 1.8.0.08212)
VCCx64 (Version: 1.0.0)
VCCx86 (x32 Version: 1.0.0)
VGClientX64 (Version: 1.0.0)
VHD (x32 Version: 1.0.0)
Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.98)
VIx64 (Version: 1.0.0)
VIx86 (x32 Version: 1.0.0)
VLC media player 2.0.6 (x32 Version: 2.0.6)
VMLx86 (x32 Version: 1.0.0)
Vodafone Mobile Broadband (x32 Version: 10.3.401.43721)
VPMx64 (Version: 1.0.0)
VSSTx64 (Version: 1.0.0)
VSSTx86 (x32 Version: 1.0.0)
VU5x64 (Version: 1.0.0)
VU5x86 (x32 Version: 1.0.0)
VUx64 (Version: 1.0.0)
VUx86 (x32 Version: 1.0.0)
VWSTx86 (x32 Version: 1.0.0)
WetterWelt GRIB-View 2.7.1 (x32 Version: 2.7.1)
WildTangent Games App (x32 Version: 4.0.8.7)
WildTangent-Spiele (x32 Version: 1.0.3.0)
XperiaLinkx86 (x32 Version: 1.0.0)

==================== Restore Points  =========================

17-07-2013 05:33:50 Windows Update
08-08-2013 09:14:06 Installed Vodafone Mobile Connect Lite.
12-08-2013 18:18:53 Windows Update
22-08-2013 13:09:09 Windows Update
03-09-2013 09:57:21 Installed Vodafone Mobile Broadband.

==================== Hosts content: ==========================

2012-07-26 07:26 - 2012-07-26 07:26 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

Task: {023E4CF9-7E5D-4C7C-B0A5-C179B53574B6} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-22] (Google Inc.)
Task: {10D85952-E3F6-47A1-96CF-5E1C2D874EA6} - System32\Tasks\Microsoft\Windows\SystemRestore\SR => C:\Windows\system32\srtasks.exe [2012-07-26] (Microsoft Corporation)
Task: {13A2AC02-B682-48CC-9155-2E2673580117} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Critical
Task: {17644F17-DC4C-4AC8-9444-7AAA52EB5CDC} - System32\Tasks\Microsoft\Windows\NetCfg\BindingWorkItemQueueHandler
Task: {1AAFF332-5C62-4558-9991-DAA649C4C9C5} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => C:\Windows\System32\sysmain.dll [2013-05-04] (Microsoft Corporation)
Task: {1DB7C2F1-876C-4F24-AD17-8428211113F9} - System32\Tasks\Microsoft\Windows\MemoryDiagnostic\ProcessMemoryDiagnosticEvents
Task: {214B24F4-FEB4-4C59-AF1F-70136065199C} - System32\Tasks\Microsoft\Windows\Shell\IndexerAutomaticMaintenance
Task: {221959ED-8B7F-4501-8143-018D8B0CDE7C} - System32\Tasks\Sony Corporation\VAIO Control Center\Level4Month => C:\Program Files (x86)\Sony\VAIO Control Center\WBCBatteryCare.exe [2012-08-18] (Sony Corporation)
Task: {23700E5C-0E77-499D-908A-415D5C6252F4} - System32\Tasks\Microsoft\Windows\Plug and Play\Device Install Group Policy
Task: {23A5D8BE-9196-40EB-BD89-794398B2B073} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => C:\Windows\System32\WSClient.dll [2012-09-20] (Microsoft Corporation)
Task: {23CB3632-C37A-4203-99CB-FFAD2A440F5C} - System32\Tasks\Sony Corporation\VAIO Update\VAIO Update Self Repair => C:\Program Files\Sony\VAIO Update\VUSR.exe [2013-03-26] (Sony Corporation)
Task: {2837012F-A4E7-4103-8AAD-514F889ED283} - System32\Tasks\Sony Corporation\VAIO Control Center\Level4Daily => C:\Program Files (x86)\Sony\VAIO Control Center\WBCBatteryCare.exe [2012-08-18] (Sony Corporation)
Task: {2C6B9EA8-7F5A-4ABA-BF96-8D352D02A743} - System32\Tasks\Microsoft\Windows\Device Setup\Metadata Refresh
Task: {2E030FA7-3D7C-4E1D-8CFE-56ADB26FD402} - System32\Tasks\Microsoft\Windows\PI\Sqm-Tasks
Task: {3054485A-F517-4E95-9977-4DD827B1E9B3} - System32\Tasks\Microsoft\Windows\WS\Badge Update
Task: {31C63B03-2599-4079-B85B-5315CC9C230C} - System32\Tasks\Sony Corporation\VAIO Update\Launch Application => C:\Program Files\SONY\VAIO Update\ShellExeProxy.exe [2013-03-26] (Sony Corporation)
Task: {33B86844-8B4D-45E7-8B39-C2F27E4D64A9} - System32\Tasks\Microsoft\Windows\WindowsUpdate\AUFirmwareInstall
Task: {378401BA-A703-444A-A79C-3C47AD2DC5B6} - System32\Tasks\Microsoft\Windows\TaskScheduler\Maintenance Configurator
Task: {3AE164E7-30CD-40BC-9422-3EC7A5618965} - System32\Tasks\Microsoft\Windows\WS\WSTask
Task: {3C490ABD-D849-41AF-9AC4-87DD759B0996} - System32\Tasks\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem
Task: {4073C1B3-6E16-4AA8-B7F3-C6A6D35D5071} - System32\Tasks\Microsoft\Windows\TPM\Tpm-Maintenance
Task: {41A4C1B3-67E7-444E-A372-DD6E2FAB7A91} - System32\Tasks\HPLJCustParticipation => C:\Program Files (x86)\HP\HPLJUT\HPLJUTSCH.exe [2010-09-22] (Hewlett Packard)
Task: {44B3F1B8-5943-4072-8D8C-A9484676AC44} - System32\Tasks\Microsoft\Windows\Live\Roaming\SynchronizeWithStorage
Task: {483A8F5C-5D26-44B5-B49E-AF6741D1BBEB} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => C:\Windows\System32\MbaeParserTask.exe [2013-06-01] (Microsoft Corporation)
Task: {4B0889FE-2C8D-4026-B150-AE813821F8C5} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-08-22] (Adobe Systems Incorporated)
Task: {4B952129-9AE9-41A3-BE2B-8AD2E06F66B6} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskLogon
Task: {5755E746-D7ED-4C20-A472-66C11834CDE4} - System32\Tasks\Microsoft\Windows\TaskScheduler\Manual Maintenance
Task: {57B72E25-8831-43A4-90B6-7AC05C417D31} - System32\Tasks\Sony Corporation\VAIO Care\VCMetrics => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-08-15] (Sony Corporation)
Task: {5A2F90F9-7EA4-4B01-A50B-2DECD9DA1CF7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-22] (Google Inc.)
Task: {5C4EFB77-EFA6-45DF-A373-D795C0725BFF} - System32\Tasks\Microsoft\Windows\Plug and Play\Device Install Reboot Required
Task: {627441F3-8526-4B62-BF9A-1A3EA414E71A} - System32\Tasks\Microsoft\Windows\SpacePort\SpaceAgentTask => C:\Windows\system32\SpaceAgent.exe [2012-07-26] (Microsoft Corporation)
Task: {696A9E94-F777-4551-9AC4-44B75EAA1E98} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start => start wuauserv
Task: {6B6C211D-9C1C-462F-B17D-B47CFD6F31A8} - System32\Tasks\Sony Corporation\VAIO Care\VCOneClick => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-08-15] (Sony Corporation)
Task: {6E0144A5-A1DF-4177-9246-08CA2A6F81D2} - System32\Tasks\Sony Corporation\VAIO Care\VCCheckIolo => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-08-15] (Sony Corporation)
Task: {6E9DE125-5583-4031-B572-FEE48F25CFFF} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyMonitor => C:\Windows\System32\wpcmon.exe [2012-09-20] (Microsoft Corporation)
Task: {6FDDEA7C-6310-428D-AEB2-54FFC72811EF} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319
Task: {71FFCD13-EC41-4DC1-9EA3-737EE5412AB3} - System32\Tasks\Sony Corporation\VAIO Improvement\VAIOImprovementMonitorUser => C:\Program Files\Sony\VAIO Improvement\vim.exe [2013-04-03] (Sony Corporation)
Task: {74096F94-B654-4DB0-96F5-3C3408B92FE3} - System32\Tasks\Microsoft\Windows\PI\Secure-Boot-Update
Task: {78E701AE-060A-4192-888B-DF90B3BE6C9E} - System32\Tasks\Microsoft\Windows\Servicing\StartComponentCleanup
Task: {7D9A9A1C-499C-40A6-8F8A-5BCC4CC9A87C} - System32\Tasks\Microsoft\Windows\TaskScheduler\Regular Maintenance
Task: {845CB020-68B5-4C6B-9876-7BEC7B3E27AC} - System32\Tasks\Microsoft\Windows\TaskScheduler\Idle Maintenance
Task: {853E4B20-10B0-49F7-913F-B6EC6C6853C5} - System32\Tasks\CLVDLauncher => C:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe [2012-07-24] (CyberLink Corp.)
Task: {859753A3-E7EC-407A-A9B5-F58D0FCC559D} - System32\Tasks\Sony Corporation\VAIO Gate\VAIO Gate => C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe [2012-08-14] (Sony Corporation)
Task: {866EC86A-E93E-4EAC-8A90-E106ECC0E03F} - System32\Tasks\Sony Corporation\VAIO Gesture Control\VCGULogonTask => C:\Program Files (x86)\Sony\VAIO Camera Gesture Utility\VCGU.exe [2012-08-04] (Sony Corporation)
Task: {87354DAA-66DF-4B41-9346-15958D96E1D2} - System32\Tasks\Microsoft\Windows\FileHistory\File History (maintenance mode)
Task: {921A1D4E-32FB-46D7-B6C0-6F467884074D} - System32\Tasks\Microsoft\Windows\WS\Sync Licenses
Task: {9479EF8E-11D4-41B3-9783-CC65070D592D} - System32\Tasks\Microsoft\Windows\Time Synchronization\ForceSynchronizeTime
Task: {94DCF254-64FB-4C4E-8E12-5F4055C10C2A} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64
Task: {95719DCA-B5A7-460A-9FB4-BBF670E8AFE7} - System32\Tasks\Sony Corporation\VAIO Care\CRMReminder => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-08-15] (Sony Corporation)
Task: {989A7C6D-BE82-4C3C-AF96-6116039E336B} - System32\Tasks\Microsoft\Windows\MemoryDiagnostic\RunFullMemoryDiagnostic
Task: {9B40F921-C356-4711-B413-4632805A4BE5} - System32\Tasks\Sony Corporation\VAIO Care\VCSelfHeal => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-08-15] (Sony Corporation)
Task: {9F835B87-97AE-4706-B34C-ADB49026C960} - System32\Tasks\CLMLSvc_P2G8 => C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2012-06-08] (CyberLink)
Task: {A72208BF-7A49-4FB8-B684-252375F3443A} - System32\Tasks\Microsoft\Windows\WS\License Validation => C:\Windows\System32\WSClient.dll [2012-09-20] (Microsoft Corporation)
Task: {A7900DED-2F24-4BE8-9429-5CD51CC022EF} - System32\Tasks\Microsoft\Windows\WindowsUpdate\AUScheduledInstall
Task: {A800277E-E202-4492-AD38-3312641CBC04} - System32\Tasks\Microsoft\Windows\Live\Roaming\MaintenanceTask
Task: {AB62FA47-2C99-44B1-A5D0-D4161423BE43} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyRefresh
Task: {AC6259DE-AC59-459E-849E-6ADFFD1ADE63} - System32\Tasks\Microsoft\Windows\Shell\CreateObjectTask
Task: {AEB0B5BD-B9E5-458A-898A-E559BD9EB51B} - System32\Tasks\Microsoft\Windows\SettingSync\BackgroundUploadTask
Task: {AF549BD8-337C-4BF7-8681-36A182E30507} - System32\Tasks\Microsoft\Windows\Chkdsk\ProactiveScan
Task: {B1898C78-62E9-469F-BEC7-D6DAEF28C5C2} - System32\Tasks\Sony Corporation\VAIO Improvement\VAIOImprovementUploader => C:\Program Files\Sony\VAIO Improvement\viuploader.exe [2012-08-09] (Sony Corporation)
Task: {B8206BB2-12DC-4B2E-88F5-5DA033BA808C} - System32\Tasks\Sony Corporation\VAIO Update\VAIO Update => C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe [2013-03-26] (Sony Corporation)
Task: {BC76AEF7-2CF0-4EB6-B65B-A8803E0B5E12} - System32\Tasks\Microsoft\Windows\AppID\SmartScreenSpecific
Task: {C1996E6E-916A-4138-99E1-88AB1884B592} - System32\Tasks\VHDInformationCheck => C:\Program Files (x86)\Sony\VAIO Recovery\plugins\InformationCheck.exe [2012-07-31] (Sony Corporation)
Task: {C1ACCD1E-4385-4FB2-B5E4-7F2A57A626A2} - System32\Tasks\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan
Task: {C463FD1E-31C7-4C20-AB65-08E514CA152D} - System32\Tasks\Microsoft\Windows\IME\SQM data sender
Task: {C6A88F2D-53D2-4805-9D69-443738A1847C} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => C:\Windows\System32\Windows.Storage.ApplicationData.dll [2012-07-26] (Microsoft Corporation)
Task: {C8AF63BA-FB02-4D2F-B828-E52850538096} - System32\Tasks\Sony Corporation\VAIO Improvement\VAIOImprovementMonitorSystem => C:\Program Files\Sony\VAIO Improvement\vim.exe [2013-04-03] (Sony Corporation)
Task: {CD1054FF-8005-4904-8B9C-436EAB1E2021} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskNetwork
Task: {CD6EF970-6A99-4178-9D15-6D5AF49BE844} - System32\Tasks\Microsoft\Windows\WindowsUpdate\AUSessionConnect
Task: {DBCF6E1B-CE0A-441E-B7A5-219C8BE50C65} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Critical
Task: {DCF75693-6164-4140-B500-F0E7E822D7DB} - System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-288095589-429832609-4039349632-1001
Task: {DECE5921-598D-454B-9A04-B2DE95EFC1B3} - System32\Tasks\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan for Crash Recovery
Task: {E4DFE66F-E089-4CC3-A70F-957223D565F4} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask
Task: {E8DAA09B-DF2A-4951-9134-6FA9587793F9} - System32\Tasks\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers => C:\Windows\System32\drvinst.exe [2012-09-20] (Microsoft Corporation)
Task: {EAD237E7-D276-4257-9F16-51DF41548733} - System32\Tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime => start w32time task_started
Task: {EBF06DEC-4228-4813-AC0C-62821AE4E330} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => C:\Windows\System32\Startupscan.dll [2012-07-26] (Microsoft Corporation)
Task: {ED0C1F69-C3A2-41EA-B8C3-3F0D83A1F6C0} - System32\Tasks\Microsoft\Windows\Customer Experience Improvement Program\BthSQM
Task: {F829B406-50AB-4166-8C48-25C9D7EFEFF6} - System32\Tasks\Sony Corporation\VAIO Control Center\NetworkSetting\NetworkSetting Logon Start => C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkClient No File
Task: {FF9D39B9-B349-41AC-AE22-A06EE3BE0F1F} - System32\Tasks\Sony Corporation\VAIO Care\VAIO Care => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2012-08-15] (Sony Corporation)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) =============

2013-04-12 16:15 - 2012-09-20 08:30 - 01743872 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\combase.dll
2013-05-09 22:48 - 2012-10-11 07:45 - 00590848 _____ (Microsoft Corporation) C:\Windows\system32\SHCORE.dll
2012-07-26 01:55 - 2012-07-26 05:07 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\WINMMBASE.dll
2012-12-29 10:56 - 2012-12-29 10:56 - 01989632 _____ (IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenuDLL.dll
2012-07-26 01:55 - 2012-07-26 05:07 - 00180224 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\WINMMBASE.dll
2013-05-09 22:48 - 2012-10-11 07:45 - 00590848 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\SHCORE.DLL
2011-06-11 02:15 - 2011-06-11 02:15 - 05601616 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\mfc100u.dll
2011-06-11 02:15 - 2011-06-11 02:15 - 00829264 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\MSVCR100.dll
2011-06-11 02:15 - 2011-06-11 02:15 - 00608080 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\MSVCP100.dll
2011-06-11 02:15 - 2011-06-11 02:15 - 00064336 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\MFC100DEU.DLL
2012-11-16 17:20 - 2012-08-09 11:06 - 00157352 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Improvement\viaggregator.dll
2013-05-09 22:48 - 2012-10-11 07:45 - 00590848 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\shcore.dll
2013-04-12 16:15 - 2012-09-20 08:33 - 00699392 _____ (Microsoft Corporation) C:\Windows\System32\twinapi.dll
2013-04-12 16:16 - 2012-09-20 08:30 - 02219008 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\D3D10Warp.dll
2012-11-16 17:48 - 2012-08-14 19:54 - 00031400 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Gate\TapTrigger.dll
2013-05-09 22:48 - 2012-10-11 07:45 - 00590848 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\SHCORE.dll
2013-05-09 22:48 - 2012-10-11 07:46 - 01395712 _____ (Microsoft Corporation) C:\Windows\System32\Windows.UI.Immersive.dll
2013-06-15 10:25 - 2013-05-04 08:57 - 00389120 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\Bcp47Langs.dll
2013-06-15 10:25 - 2013-05-04 08:58 - 10116096 _____ (Microsoft Corporation) C:\Windows\System32\twinui.dll
2012-07-26 01:33 - 2012-07-26 05:07 - 00069632 _____ (Microsoft Corporation) C:\Windows\System32\windows.immersiveshell.serviceprovider.dll
2012-07-26 01:54 - 2012-07-26 05:05 - 00171008 _____ (Microsoft Corporation) C:\Windows\System32\IDStore.dll
2013-05-24 21:25 - 2013-04-09 06:51 - 00456704 _____ (Microsoft Corporation) C:\Windows\System32\wpncore.dll
2012-07-26 04:06 - 2012-07-26 05:07 - 00119296 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\sppc.dll
2012-08-23 18:25 - 2012-08-22 14:48 - 01111040 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SYSTEM32\aticfx64.dll
2012-08-23 18:25 - 2012-08-22 15:02 - 00129536 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SYSTEM32\atiuxp64.dll
2012-07-25 22:22 - 2012-08-22 15:35 - 08505856 _____ (Intel Corporation) C:\Windows\SYSTEM32\igd10umd64.dll
2012-08-23 18:25 - 2012-08-22 14:50 - 07052288 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SYSTEM32\atidxx64.dll
2012-07-26 02:05 - 2012-07-26 05:05 - 00192000 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\dcomp.dll
2012-07-26 01:31 - 2012-07-26 05:08 - 00343552 _____ (Microsoft Corporation) C:\Windows\System32\wlidprov.dll
2012-07-26 01:24 - 2012-07-26 05:05 - 00186368 _____ (Microsoft Corporation) C:\Windows\System32\InputSwitch.dll
2012-07-26 01:55 - 2012-07-26 05:07 - 01161216 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\UIAutomationCore.dll
2012-07-26 02:04 - 2012-07-26 05:07 - 00046592 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\windows.globalization.fontgroups.dll
2013-04-09 03:05 - 2013-02-02 10:23 - 00293376 _____ (Microsoft Corporation) C:\Windows\System32\Windows.Networking.Connectivity.dll
2012-07-26 01:22 - 2012-07-26 05:06 - 00601600 _____ (Microsoft Corporation) C:\Windows\System32\MrmCoreR.dll
2012-07-26 03:37 - 2012-07-26 05:06 - 00024576 _____ (Microsoft Corporation) C:\Windows\System32\NcaApi.dll
2012-07-26 01:33 - 2012-07-26 05:06 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\NetworkStatus.dll
2012-12-29 10:56 - 2012-12-29 10:56 - 00741888 _____ (IvoSoft) C:\Program Files\Classic Shell\ClassicExplorer64.dll
2012-07-26 01:54 - 2012-07-26 05:05 - 00101888 _____ (Microsoft Corporation) C:\Windows\System32\BluetoothApis.dll
2013-04-12 16:15 - 2012-09-20 08:33 - 00866304 _____ (Microsoft Corporation) C:\Windows\System32\WinTypes.dll
2012-07-26 04:09 - 2012-07-26 05:07 - 00044544 _____ (Microsoft Corporation) C:\Windows\System32\qmgrprxy.dll
2012-07-26 04:09 - 2012-07-26 05:05 - 00014848 _____ (Microsoft Corporation) C:\Windows\System32\bitsprx7.dll
2012-07-26 04:09 - 2012-07-26 05:05 - 00033280 _____ (Microsoft Corporation) C:\Windows\System32\bitsprx5.dll
2012-07-26 04:09 - 2012-07-26 05:05 - 00013824 _____ (Microsoft Corporation) C:\Windows\System32\bitsprx3.dll
2012-07-26 04:09 - 2012-07-26 05:05 - 00013312 _____ (Microsoft Corporation) C:\Windows\System32\bitsprx2.dll
2013-08-14 08:21 - 2013-07-13 08:15 - 00124416 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\apprepapi.dll
2012-07-26 04:19 - 2012-07-26 05:06 - 00023040 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\pcacli.dll
2012-07-26 02:12 - 2012-07-26 06:55 - 01326784 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\webservices.dll
2013-05-09 22:49 - 2013-03-02 04:45 - 00951808 _____ (Microsoft Corporation) C:\Windows\System32\Windows.Globalization.dll
2012-07-26 04:09 - 2012-07-26 05:05 - 00013312 _____ (Microsoft Corporation) C:\Windows\System32\bitsprx6.dll
2013-08-14 08:34 - 2013-07-26 07:12 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\JScript9.dll
2012-07-26 03:56 - 2012-07-26 05:07 - 00593408 _____ (Microsoft Corporation) C:\Windows\system32\VBScript.dll
2012-07-26 04:22 - 2012-07-26 04:22 - 00003072 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\LZ32.dll
2012-07-26 02:35 - 2012-07-26 05:07 - 04243456 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbon.dll
2012-07-26 04:33 - 2012-07-26 04:33 - 00629760 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\UIRibbonRes.dll
2012-07-26 02:59 - 2012-07-26 05:05 - 00465408 _____ (Microsoft Corporation) C:\Windows\System32\dlnashext.dll
2013-04-12 16:16 - 2012-09-20 08:33 - 01304064 _____ (Microsoft Corporation) C:\Windows\System32\Windows.Media.Streaming.dll
2013-05-09 22:49 - 2013-03-02 04:44 - 00049152 _____ (Microsoft Corporation) C:\Windows\System32\DevDispItemProvider.dll
2012-08-23 18:25 - 2012-08-22 16:17 - 00062976 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll
2012-08-23 18:25 - 2012-08-22 16:12 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrDEU.lrc
2012-07-26 02:10 - 2012-07-26 05:05 - 00013824 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\DPAPI.dll
2012-07-26 16:22 - 2012-07-26 16:22 - 05606856 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\mfc110u.dll
2012-08-17 18:25 - 2012-08-17 18:25 - 00828872 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\MSVCR110.dll
2012-08-17 18:25 - 2012-08-17 18:25 - 00661448 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\MSVCP110.dll
2012-11-16 17:00 - 2012-08-22 13:01 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2012-11-16 17:00 - 2012-08-22 13:01 - 03643024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll
2012-08-23 18:25 - 2012-08-22 15:20 - 00110592 _____ (Intel Corporation) C:\Windows\System32\hccutils.DLL
2013-05-09 22:48 - 2012-10-11 07:45 - 00590848 _____ (Microsoft Corporation) C:\Windows\System32\SHCORE.dll
2012-08-23 18:25 - 2012-08-22 16:14 - 09007616 _____ (Intel Corporation) C:\Windows\System32\igfxress.dll
2012-08-23 18:25 - 2012-08-22 15:05 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2012-08-24 00:36 - 2012-08-24 04:16 - 01046328 _____ (Synaptics Incorporated) C:\Windows\system32\SynCOM.dll
2012-08-24 00:36 - 2012-08-24 04:27 - 00228664 _____ (Synaptics Incorporated) C:\Windows\SYSTEM32\SynTPAPI.dll
2013-05-09 22:48 - 2012-10-11 07:45 - 00590848 _____ (Microsoft Corporation) C:\Windows\system32\SHCORE.DLL
2013-06-15 10:25 - 2013-05-04 08:57 - 00389120 _____ (Microsoft Corporation) C:\Windows\System32\Bcp47Langs.dll
2013-07-13 18:09 - 2013-04-23 00:08 - 09808440 _____ (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clr.dll
2012-07-25 22:13 - 2012-07-12 04:01 - 00856016 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\MSVCR110_CLR0400.dll
2013-07-21 14:38 - 2013-07-21 14:38 - 22589440 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\mscorlib\ab0a8fc3d086a3aaf942f366a12a9185\mscorlib.ni.dll
2013-06-28 07:42 - 2013-04-02 00:06 - 01237024 _____ (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clrjit.dll
2013-08-14 16:31 - 2013-08-14 16:31 - 13227520 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System\84008211017a9909ffd971633716ffc5\System.ni.dll
2013-08-14 16:31 - 2013-08-14 16:31 - 05458432 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\WindowsBase\2c9293b1f1b691c2b1c5ae92d581532d\WindowsBase.ni.dll
2013-08-14 16:31 - 2013-08-14 16:31 - 14784000 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\PresentationCore\ccb0cf23d8607c241d292c922aaa9061\PresentationCore.ni.dll
2013-08-14 16:32 - 2013-08-14 16:32 - 24338944 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\Presentatio5ae0f00f#\5ae84452122e5ba9f9157164ec4e1452\PresentationFramework.ni.dll
2013-08-14 16:33 - 2013-08-14 16:33 - 02561024 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Xaml\a26ad1493f4f8621e90811cb38ad22e2\System.Xaml.ni.dll
2012-04-23 09:47 - 2012-04-23 09:47 - 01080160 _____ (Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\pcee4c.dll
2013-06-28 07:43 - 2013-04-02 00:06 - 02123320 _____ (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\WPF\wpfgfx_v0400.dll
2012-07-25 22:13 - 2012-07-12 04:01 - 01079792 _____ (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\WPF\PresentationNative_v0400.dll
2013-08-14 16:32 - 2013-08-14 16:32 - 01259008 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Configuration\196905ff422a58f4cb735f4156b1ecaa\System.Configuration.ni.dll
2013-08-14 16:31 - 2013-08-14 16:31 - 10137600 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Core\a51eab8159bbe5f0cd2713f383468750\System.Core.ni.dll
2012-04-23 09:47 - 2012-04-23 09:47 - 00039776 _____ (Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\Dolby.Interop.dll
2013-04-09 03:08 - 2012-08-31 02:52 - 00994312 _____ (Microsoft Corporation) C:\Windows\Microsoft.Net\assembly\GAC_MSIL\mscorlib.resources\v4.0_4.0.0.0_de_b77a5c561934e089\mscorlib.resources.dll
2012-11-16 17:00 - 2012-08-22 12:26 - 00123784 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2013-08-14 16:33 - 2013-08-14 16:33 - 10137088 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Xml\17fa9b078e78b857f6c5f5a8081220ae\System.Xml.ni.dll
2012-04-23 09:47 - 2012-04-23 09:47 - 00019808 _____ (Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\de\pcee4c.resources.dll
2013-08-14 16:32 - 2013-08-14 16:32 - 02268672 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Drawing\810a79f22ac4d44804984e417c380706\System.Drawing.ni.dll
2013-08-14 16:33 - 2013-08-14 16:33 - 16835072 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Windows.Forms\91baa8291ae5873141b15f66d05888a4\System.Windows.Forms.ni.dll
2013-08-14 16:32 - 2013-08-14 16:32 - 01001984 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Runt73a1fc9d#\77f6ab0fdc009b7ca96cc0c7d228da06\System.Runtime.Remoting.ni.dll
2013-08-27 09:25 - 2013-08-27 09:25 - 17587712 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Web\ac7d2512165632de8b398ff62ac8070c\System.Web.ni.dll
2011-10-17 17:48 - 2011-10-17 17:48 - 00045056 _____ (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\DEM.Graphics.I0601.dll
2011-10-17 17:48 - 2011-10-17 17:48 - 00016384 _____ (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\DEM.Foundation.dll
2012-08-23 18:25 - 2012-08-22 14:48 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIDEMGY.dll
2011-10-18 23:08 - 2011-10-18 23:08 - 00007168 _____ ( ) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atixclib.dll
2012-08-06 12:54 - 2012-08-06 12:54 - 00369664 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll
2012-08-23 18:25 - 2012-08-22 14:58 - 00103936 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SYSTEM32\atiu9p64.dll
2012-07-25 22:22 - 2012-08-22 16:08 - 08281600 _____ (Intel Corporation) C:\Windows\SYSTEM32\igdumd64.dll
2012-08-23 18:25 - 2012-08-22 14:59 - 06676480 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SYSTEM32\atiumd64.dll
2013-08-14 16:32 - 2013-08-14 16:32 - 00567296 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v4.0.30319_64\Presentatioaec034ca#\9fb849115fa37e6b107e1d9799ad83da\PresentationFramework.Aero2.ni.dll
2013-04-09 03:08 - 2012-08-31 02:52 - 00283192 _____ (Microsoft Corporation) C:\Windows\Microsoft.Net\assembly\GAC_MSIL\PresentationFramework.resources\v4.0_4.0.0.0_de_31bf3856ad364e35\PresentationFramework.resources.dll
2013-04-09 03:08 - 2012-08-31 02:52 - 00257024 _____ (Microsoft Corporation) C:\Windows\Microsoft.Net\assembly\GAC_MSIL\System.resources\v4.0_4.0.0.0_de_b77a5c561934e089\System.resources.dll
2013-04-09 03:08 - 2012-08-31 02:52 - 00124456 _____ (Microsoft Corporation) C:\Windows\Microsoft.Net\assembly\GAC_MSIL\PresentationCore.resources\v4.0_4.0.0.0_de_31bf3856ad364e35\PresentationCore.resources.dll
2012-07-25 22:13 - 2012-07-12 04:02 - 00024584 _____ (Microsoft Corporation) C:\Windows\Microsoft.Net\assembly\GAC_MSIL\PresentationFramework-SystemXml\v4.0_4.0.0.0__b77a5c561934e089\PresentationFramework-SystemXml.dll
2013-08-14 08:25 - 2013-07-23 00:09 - 00103568 _____ (Microsoft Corporation) C:\Windows\Microsoft.Net\assembly\GAC_MSIL\WindowsFormsIntegration\v4.0_4.0.0.0__31bf3856ad364e35\WindowsFormsIntegration.dll
2013-06-28 18:14 - 2013-03-26 15:15 - 00030784 _____ (Sony Corporation) C:\Program Files\Sony\VAIO Update\VUAgentPS64.dll
2013-07-04 20:29 - 2013-07-04 20:29 - 03285912 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
2012-11-16 17:15 - 2012-06-12 18:40 - 00104584 ____N (Sony Corporation) C:\Program Files (x86)\Common Files\Sony Shared\Sony Utilities\SnyUtils.dll
2013-04-12 16:15 - 2012-09-20 07:53 - 00311296 _____ (Microsoft Corporation) C:\Windows\AppPatch\AcLayers.DLL
2013-07-13 17:56 - 2013-04-23 00:08 - 05940888 _____ (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll
2013-07-21 14:43 - 2013-07-21 14:43 - 11500032 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\d1ce70bf6cbab6ab838cbd8b50e902c1\mscorlib.ni.dll
2013-08-14 16:30 - 2013-08-14 16:30 - 07988736 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v2.0.50727_32\System\1b46657236c1f942f9dbaf6aac73bb49\System.ni.dll
2013-08-15 03:02 - 2013-08-15 03:02 - 00078848 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\MobileBroadband\ce6f5948000cdb21c7a67e2b6fcd9e16\MobileBroadband.ni.exe
2013-08-15 03:02 - 2013-08-15 03:02 - 01114624 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.View.Shared\1a66c0d17350f657c3e976ced4d60169\Vodafone.View.Shared.ni.dll
2013-08-15 03:02 - 2013-08-15 03:02 - 00100864 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.LogEngine\f3300d76a16fc56b86ec27d16a37873b\Vodafone.LogEngine.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 01531904 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Platform\a83ebfa9cf44b21b153f18ec1e39f25e\Vodafone.Platform.ni.dll
2013-08-15 03:02 - 2013-08-15 03:02 - 00656384 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Data\10092f15a13c4e6bd35e5d89ab5e2a68\Vodafone.Data.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 02188800 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\MobileBroadbandReso#\09637daed98c4dbf02856d278f6e3384\MobileBroadbandResources.ni.dll
2013-08-15 03:02 - 2013-08-15 03:02 - 00193536 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Base.Contr#\1135e1a559e4064bb2abd3a72dc3ba1d\Vodafone.Base.Contracts.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 00372224 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.DataAccess#\fda2366f9d0f5287dec774dbd556ab78\Vodafone.DataAccessor.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 00398336 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.CommonDial#\27ce9ce570b5ce8aabeb91fbe3a4c831\Vodafone.CommonDialogs.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 00918016 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Applicatio#\9df0ebb91a62917a792e20e0aa67254c\Vodafone.ApplicationHost.Impl.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 00118784 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Common\f7a47a4b1a5ea2918ea9eb6d5b145262\Vodafone.Common.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 00081920 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Core.CoreI#\48cbb831a2a6be1430f975c1913e8680\Vodafone.Core.CoreInstanceProvider.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 00046592 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Base.Facto#\3bc78c5bf029902e6ceff1641d164955\Vodafone.Base.Factory.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 00143360 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.DeviceAcce#\2580cece680218abcd2bc674a1b200da\Vodafone.DeviceAccess.Factory.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 00354304 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.ReportingM#\d2a521df834e163745eca78c7041c75c\Vodafone.ReportingManager.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 00168448 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Core.Contr#\2a04bc85172a2e76b8b5359f28747a21\Vodafone.Core.Contracts.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 01626112 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.BusinessLo#\a566c3122923a452e35c9dfe7dcc9f74\Vodafone.BusinessLogic.ni.dll
2013-08-14 16:30 - 2013-08-14 16:30 - 01593344 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\7e4447d26cd9083018bd28ddd60a0248\System.Drawing.ni.dll
2013-08-14 16:30 - 2013-08-14 16:30 - 12436480 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\6b49661877ca78101ebc697b9a6a95fd\System.Windows.Forms.ni.dll
2013-08-15 03:02 - 2013-08-15 03:02 - 00112128 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Contracts.#\a5b95c86a810a1e110fcc5bba13306df\Vodafone.Contracts.View.ni.dll
2013-08-09 09:35 - 2013-08-09 09:35 - 00088064 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Contracts.#\edeb435e45eefbc8bfb92476094639d3\Vodafone.Contracts.Common.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 00105984 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.DeviceAcce#\5cd43ec1a163d57bab1c1d53beef896a\Vodafone.DeviceAccess.Contracts.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 00154624 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Contracts.#\085c1f964a0b02b616373e5f9f9add87\Vodafone.Contracts.Model.ni.dll
2013-08-09 09:36 - 2013-08-09 09:36 - 00036864 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Contracts.#\6bdfac76631d8d7b7c91ec9b5007d9cd\Vodafone.Contracts.Presenter.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 00041984 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.InstancePr#\5221c0530f0a167a2d6438e6618fef46\Vodafone.InstanceProvider.Impl.ni.dll
2013-08-09 09:36 - 2013-08-09 09:36 - 00025088 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.View.Manag#\364832e521e7d2d0420953cf3c2c5b11\Vodafone.View.ManagedToolTip.ni.dll
2013-08-09 09:36 - 2013-08-09 09:36 - 00019968 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.MobileBroa#\74a2149f1047ca31ac2da7fadebc8d04\Vodafone.MobileBroadband.CallbackHandler.ni.dll
2013-08-09 09:36 - 2013-08-09 09:36 - 00083456 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.VmbApi.Con#\28c43fca58f3ce323cc95574fc27dd5c\Vodafone.VmbApi.Contracts.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 00382976 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Base.Win32\4ac9f8d922e1d210ba572cca222d0f4b\Vodafone.Base.Win32.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 00167936 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Mondrian\6f4dd62eb381b860483517799f027b9c\Vodafone.Mondrian.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 00193536 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.SmsContact#\1f76c25af5016d47be422b2cf1389966\Vodafone.SmsContactManager.ni.dll
2013-08-09 09:36 - 2013-08-09 09:36 - 00119808 _____ ( ) C:\Windows\assembly\NativeImages_v2.0.50727_32\Interop.Shell32\95af9f2a19dc76ea15313a2970c27e0e\Interop.Shell32.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 00080896 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.SmsProfile#\532b129a73884b43fadd53c6464b1e7a\Vodafone.SmsProfileManager.ni.dll
2013-08-09 09:36 - 2013-08-09 09:36 - 00038912 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Contracts.#\844a77214648f7ae4784eb3b48d29f18\Vodafone.Contracts.Adapter.ni.dll
2013-08-09 09:43 - 2013-08-09 09:43 - 00046592 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Core.Inter#\f725cfe5240124b7b53df4bfae8b1bc7\Vodafone.Core.Interfaces.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 00716800 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.View.Secon#\8519b025a197cb474937685333a28293\Vodafone.View.SecondaryWindows.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 00094208 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Core.Remot#\74b1025e6dfe8e5c88062a1d76630453\Vodafone.Core.Remoting.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 00030720 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.OutlookCon#\32ff43a3fee1a4497fbb32ea670fdf8b\Vodafone.OutlookConnector.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 00192512 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Model.Conn#\3d0ad852bc3fed8c5bef9f89e5ed6d14\Vodafone.Model.Connection.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 00058880 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.SettingsMa#\0d4b25274d100759e194c55542a5221a\Vodafone.SettingsManager.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 00052736 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.UpdateMana#\b5709431d365f1534c226bcc1b6b76bd\Vodafone.UpdateManager.ni.dll
2013-08-15 03:02 - 2013-08-15 03:02 - 00212992 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\7aed1bbbe803ad02342add324c61b80c\System.ServiceProcess.ni.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00151552 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Base.Win32.dll
2012-07-25 22:25 - 2012-07-06 04:01 - 00479232 _____ (Microsoft Corporation) C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6910_none_d089c358442de345\msvcm80.dll
2013-04-08 13:14 - 2012-10-09 04:23 - 00364656 _____ (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 00167936 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Vpn\eb6d11a81f43a6bed9184132ae405f9d\Vodafone.Vpn.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 00343040 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.DeviceAcce#\28a757c59813248320c13031f4cfb17f\Vodafone.DeviceAccess.Internals.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 00617472 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Base.Inter#\e46e8a503d063a16865c06e101b42839\Vodafone.Base.Internals.ni.dll
2013-08-09 09:43 - 2013-08-09 09:43 - 00015360 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.Base.Inter#\083f1d3bac2995b77674a2a992e72679\Vodafone.Base.Interfaces.ni.dll
2013-08-09 09:43 - 2013-08-09 09:43 - 00018944 _____ (Vodafone) C:\Windows\assembly\NativeImages_v2.0.50727_32\Vodafone.DeviceAcce#\75288fb21c14a31d66667e5c89ca0276\Vodafone.DeviceAccess.Interfaces.ni.dll
2013-08-09 09:43 - 2013-08-09 09:43 - 00054272 _____ ( ) C:\Windows\assembly\NativeImages_v2.0.50727_32\Interop.NETWORKLIST\d47dc87eda221e98120224b2810b0a71\Interop.NETWORKLIST.ni.dll
2013-04-09 03:03 - 2012-09-14 00:04 - 00315392 _____ (Microsoft Corporation) C:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_de_b77a5c561934e089\mscorlib.resources.dll
2013-08-15 03:02 - 2013-08-15 03:02 - 00978432 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\67ca465023d310bef5d3285a39444f14\System.Configuration.ni.dll
2013-08-14 16:30 - 2013-08-14 16:30 - 05464064 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\fc5d4ada42ed8e9a30b64912f5dc9767\System.Xml.ni.dll
2013-08-15 03:02 - 2013-08-15 03:02 - 00687104 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Security\3a0e58d57c135f0ecbcef20c32c15ed1\System.Security.ni.dll
2013-08-15 03:02 - 2013-08-15 03:02 - 01051136 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\3866f7a0829a76e958174f2d89bae9a8\System.Management.ni.dll
2012-08-22 03:30 - 2012-08-03 23:31 - 00032848 _____ (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v2.0.50727\wminet_utils.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00131072 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\de-DE\MobileBroadbandResources.resources.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00006656 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Plugins\Vodafone.Plugin.MobileConnectionProfileView.dll
2013-08-09 09:44 - 2013-08-09 09:44 - 00070144 _____ ( ) C:\Windows\assembly\NativeImages_v2.0.50727_32\Interop.VpnApiLib\bc54a5be13c58f763a0353fb7045ed49\Interop.VpnApiLib.ni.dll
2013-08-09 09:44 - 2013-08-09 09:44 - 00031744 _____ ( ) C:\Windows\assembly\NativeImages_v2.0.50727_32\Interop.FCCOMINTDLL#\c51c790efa9daf4cbac273855da88dc4\Interop.FCCOMINTDLLLib.ni.dll
2013-08-09 09:44 - 2013-08-09 09:44 - 00022528 _____ ( ) C:\Windows\assembly\NativeImages_v2.0.50727_32\Interop.INSTALLERCO#\f3636bc145b4f621eae597628b308f06\Interop.INSTALLERCONTROLLib.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 02104320 _____ (SpringSource) C:\Windows\assembly\NativeImages_v2.0.50727_32\Spring.Core\78cfbc7fe66d0157b94b1d8eb37de1a4\Spring.Core.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 00047104 _____ (hxxp://netcommon.sf.net) C:\Windows\assembly\NativeImages_v2.0.50727_32\Common.Logging\722b2103972f0e7f145bc747f12c323e\Common.Logging.ni.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00231936 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Model.Gui.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 07140352 _____ (Infragistics Inc.) C:\Windows\assembly\NativeImages_v2.0.50727_32\Infragistics2.Win.U#\0ef93cf588054907bdd995f4f6ef3335\Infragistics2.Win.UltraWinToolbars.v9.2.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 00871424 _____ (Infragistics Inc.) C:\Windows\assembly\NativeImages_v2.0.50727_32\Infragistics2.Share#\2041dc1668cc21600ab8295d31d23620\Infragistics2.Shared.v9.2.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 11055104 _____ (Infragistics Inc.) C:\Windows\assembly\NativeImages_v2.0.50727_32\Infragistics2.Win.v#\a5e1f58c8c98d30348517ed9523a39b1\Infragistics2.Win.v9.2.ni.dll
2013-02-05 14:54 - 2013-02-05 14:54 - 00186880 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.AdvancedView.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00050176 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.StandardView.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00013824 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.TitleBar.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00061952 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Model.Status.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00009216 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Model.TaskBar.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00008704 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Model.Notification.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00010752 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Model.AlwaysBestConnected.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00016896 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Model.Options.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00032256 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Model.Shortcut.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00012288 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Model.Branding.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00023552 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Model.Usage.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00012288 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Model.SecondaryWindows.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00017408 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Model.Progressbar.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00060416 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.Device.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00013312 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Model.VsraPushingUpdates.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00010240 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Model.Prepay.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00005632 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Model.ManagedToolTip.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00030208 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.Commands.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00031744 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.Usage.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00134144 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.Connection.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00031744 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.Notification.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00064000 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.Status.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00026624 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.PreferredConnection.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00028672 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.Prepay.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00043520 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.Shortcut.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00013312 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.ShortcutBar.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00010240 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.Branding.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00007168 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.Messaging.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00011776 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.VsraPushingUpdates.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00037888 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.AbcHelp.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00013312 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.Wizard.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00019968 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.WhatsNew.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00011776 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.Decorator.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00095232 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.Options.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00279552 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.DeviceAccess.Dali.dll
2013-01-30 10:54 - 2013-01-30 10:54 - 00027136 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Dali.Contracts.dll
2013-01-23 14:57 - 2013-01-23 14:57 - 00605696 _____ (Vodafone Group) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Dali.Vbdsdk.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00012288 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.Model.DialUp.dll
2013-08-09 09:35 - 2013-08-09 09:35 - 00025600 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v2.0.50727_32\Accessibility\92229fdcf8b5abcc414baf6141f94495\Accessibility.ni.dll
2012-08-22 03:30 - 2012-08-03 23:30 - 00573008 _____ (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v2.0.50727\diasymreader.dll
2013-02-05 14:53 - 2013-02-05 14:53 - 00028672 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Vodafone.View.Taskbar.dll
2013-01-30 10:54 - 2013-01-30 10:54 - 00542720 _____ (Microsoft) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Microsoft.WindowsAPICodePack.Shell.dll
2013-01-30 10:54 - 2013-01-30 10:54 - 00105984 _____ (Microsoft) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\Microsoft.WindowsAPICodePack.dll
2013-08-15 03:02 - 2013-08-15 03:02 - 00771584 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\32e2f21d9b8c5614c650bb881d06e415\System.Runtime.Remoting.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 02297856 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Core\2d6e4ef61450818b934cfda112164249\System.Core.ni.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 01304064 _____ (Infragistics Inc.) C:\Windows\assembly\NativeImages_v2.0.50727_32\Infragistics2.Win.U#\1acac7cedd6bff5bc8b2838e48e2b697\Infragistics2.Win.UltraWinEditors.v9.2.ni.dll
2013-08-14 16:30 - 2013-08-14 16:30 - 03350016 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\56543ab218fc1a48a39941558fe7d736\WindowsBase.ni.dll
2013-08-14 16:30 - 2013-08-14 16:30 - 12240384 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\e160ec0c386568c802eff15bf297996b\PresentationCore.ni.dll
2013-07-13 18:11 - 2013-04-20 00:05 - 01737888 _____ (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\wpfgfx_v0300.dll
2013-08-14 16:30 - 2013-08-14 16:30 - 06657024 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data\25006a263912bf62c8bb0eb4e0b589ea\System.Data.ni.dll
2012-08-22 03:30 - 2012-08-03 23:32 - 02972672 _____ (Microsoft Corporation) C:\Windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
2013-08-15 03:02 - 2013-08-15 03:02 - 00627200 _____ (Microsoft Corporation) C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Transactions\cf49a998b717bce1bce9a417376fd6ab\System.Transactions.ni.dll
2012-08-22 03:30 - 2012-08-03 23:32 - 00261632 _____ (Microsoft Corporation) C:\Windows\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll
2013-08-15 03:03 - 2013-08-15 03:03 - 03348992 _____ (Infragistics Inc.) C:\Windows\assembly\NativeImages_v2.0.50727_32\Infragistics2.Win.M#\9bf70338008cd29b95c857976e627277\Infragistics2.Win.Misc.v9.2.ni.dll
2013-08-09 09:44 - 2013-08-09 09:44 - 00218624 _____ ( ) C:\Windows\assembly\NativeImages_v2.0.50727_32\Interop.FNCClient11#\f714e33dce9c26133eb7261dba7c3a55\Interop.FNCClient11Lib.ni.dll
2012-07-26 02:08 - 2012-07-26 05:06 - 00205312 _____ (Microsoft Corporation) C:\Windows\SYSTEM32\NTASN1.dll
2012-11-16 17:47 - 2012-06-08 05:34 - 00627216 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll
2013-04-12 16:14 - 2012-09-20 08:12 - 09374208 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.dll
2012-06-08 12:34 - 2012-06-08 12:34 - 00016400 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll

==================== Alternate Data Streams (whitelisted) ==========



==================== Faulty Device Manager Devices =============

Name: Intel(R) Centrino(R) Wireless Bluetooth(R) 4.0 + High Speed Adapter
Description: Intel(R) Centrino(R) Wireless Bluetooth(R) 4.0 + High Speed Adapter
Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974}
Manufacturer: Intel Corporation
Service: BTHUSB
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: =========================

Application errors:
==================
Error: (09/03/2013 02:22:07 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: Explorer.EXE, Version: 6.2.9200.16628, Zeitstempel: 0x51a94434
Name des fehlerhaften Moduls: SHELL32.dll, Version: 6.2.9200.16550, Zeitstempel: 0x5136a2c8
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000004af9
ID des fehlerhaften Prozesses: 0xec8
Startzeit der fehlerhaften Anwendung: 0xExplorer.EXE0
Pfad der fehlerhaften Anwendung: Explorer.EXE1
Pfad des fehlerhaften Moduls: Explorer.EXE2
Berichtskennung: Explorer.EXE3
Vollständiger Name des fehlerhaften Pakets: Explorer.EXE4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Explorer.EXE5

Error: (09/03/2013 02:06:28 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: ZeroConfigService.exe, Version: 15.5.0.2, Zeitstempel: 0x50070789
Name des fehlerhaften Moduls: MurocApi.dll, Version: 15.5.0.1, Zeitstempel: 0x500706ce
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000026390
ID des fehlerhaften Prozesses: 0xa64
Startzeit der fehlerhaften Anwendung: 0xZeroConfigService.exe0
Pfad der fehlerhaften Anwendung: ZeroConfigService.exe1
Pfad des fehlerhaften Moduls: ZeroConfigService.exe2
Berichtskennung: ZeroConfigService.exe3
Vollständiger Name des fehlerhaften Pakets: ZeroConfigService.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: ZeroConfigService.exe5

Error: (09/03/2013 01:22:08 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifest.

Error: (09/03/2013 01:22:08 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifest.

Error: (09/03/2013 01:08:24 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: Explorer.EXE, Version: 6.2.9200.16628, Zeitstempel: 0x51a94434
Name des fehlerhaften Moduls: SHELL32.dll, Version: 6.2.9200.16550, Zeitstempel: 0x5136a2c8
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000004af9
ID des fehlerhaften Prozesses: 0x520
Startzeit der fehlerhaften Anwendung: 0xExplorer.EXE0
Pfad der fehlerhaften Anwendung: Explorer.EXE1
Pfad des fehlerhaften Moduls: Explorer.EXE2
Berichtskennung: Explorer.EXE3
Vollständiger Name des fehlerhaften Pakets: Explorer.EXE4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Explorer.EXE5

Error: (09/03/2013 01:08:07 PM) (Source: MobileBroadband) (User: )
Description: StartUp:DisplayAndLogError: PhonebookVpnEtries: RAS error

 PID=4568

Error: (09/03/2013 01:06:49 PM) (Source: VSS) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\MSSearch Service Writer,...)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070002, Das System kann die angegebene Datei nicht finden.
.


Vorgang:
  Generator wird initialisiert

Kontext:
  Generatorklassen-ID: {cd3f2362-8bef-46c7-9181-d62844cdc0b2}
  Generatorname: MSSearch Service Writer
  Generatorinstanz-ID: {29caafcf-25b7-458a-ac52-8c7f21352347}

Error: (09/03/2013 01:06:46 PM) (Source: VSS) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\BITS Writer,...)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070002, Das System kann die angegebene Datei nicht finden.
.


Vorgang:
  Generator wird initialisiert

Kontext:
  Generatorklassen-ID: {4969d978-be47-48b0-b100-f328f07ac1e0}
  Generatorname: BITS Writer
  Generatorinstanz-ID: {1710e215-b541-4d0a-bfd3-45f7bae94be0}

Error: (09/03/2013 00:33:46 PM) (Source: VSS) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\Shadow Copy Optimization Writer,...)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070002, Das System kann die angegebene Datei nicht finden.
.


Vorgang:
  Generator wird initialisiert

Kontext:
  Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
  Generatorname: Shadow Copy Optimization Writer
  Generatorinstanz-ID: {46b212bf-4cfa-4497-abcf-8aaabcaf5e6d}

Error: (09/03/2013 00:33:46 PM) (Source: VSS) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\ASR Writer,...)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070002, Das System kann die angegebene Datei nicht finden.
.


Vorgang:
  Generator wird initialisiert

Kontext:
  Generatorklassen-ID: {be000cbe-11fe-4426-9c58-531aa6355fc4}
  Generatorname: ASR Writer
  Generatorinstanz-ID: {7a3c4585-ada6-4417-b451-553935d28aed}


System errors:
=============
Error: (09/03/2013 02:17:21 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "PDF Architect Service" wurde mit folgendem Fehler beendet:
%%2147500037

Error: (09/03/2013 02:17:19 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "McAfee OOBE Service2" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2

Error: (09/03/2013 02:16:34 PM) (Source: DCOM) (User: NT-AUTORITÄT)
Description: {78FD0120-D39C-45D8-A9BE-2B802B3C23E5}

Error: (09/03/2013 02:16:34 PM) (Source: DCOM) (User: NT-AUTORITÄT)
Description: {78FD0120-D39C-45D8-A9BE-2B802B3C23E5}

Error: (09/03/2013 02:12:14 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "PDF Architect Service" wurde mit folgendem Fehler beendet:
%%2147500037

Error: (09/03/2013 02:12:14 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "McAfee OOBE Service2" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2

Error: (09/03/2013 02:11:07 PM) (Source: DCOM) (User: NT-AUTORITÄT)
Description: {78FD0120-D39C-45D8-A9BE-2B802B3C23E5}

Error: (09/03/2013 02:11:07 PM) (Source: DCOM) (User: NT-AUTORITÄT)
Description: {78FD0120-D39C-45D8-A9BE-2B802B3C23E5}

Error: (09/03/2013 02:06:52 PM) (Source: Service Control Manager) (User: )
Description: Dienst "Intel(R) PROSet/Wireless Zero Configuration Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (09/03/2013 02:06:07 PM) (Source: BugCheck) (User: )
Description: 0x00000124 (0x0000000000000000, 0xfffffa800682a028, 0x00000000fe200000, 0x0000000000041136)C:\Windows\MEMORY.DMP090313-21781-01


Microsoft Office Sessions:
=========================
Error: (09/03/2013 02:22:07 PM) (Source: Application Error)(User: )
Description: Explorer.EXE6.2.9200.1662851a94434SHELL32.dll6.2.9200.165505136a2c8c00000050000000000004af9ec801cea89f93623c8aC:\Windows\Explorer.EXEC:\Windows\system32\SHELL32.dll728b2bf0-1493-11e3-bec9-5453edb62022

Error: (09/03/2013 02:06:28 PM) (Source: Application Error)(User: )
Description: ZeroConfigService.exe15.5.0.250070789MurocApi.dll15.5.0.1500706cec00000050000000000026390a6401cea89df77577e8C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exeC:\Program Files\Intel\WiFi\bin\MurocApi.dll42c4a11d-1491-11e3-bec7-5453edb62022

Error: (09/03/2013 01:22:08 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifestC:\Users\karsten\Downloads\SoftonicDownloader_fuer_vlc-media-player.exe

Error: (09/03/2013 01:22:08 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifestC:\Users\karsten\Downloads\SoftonicDownloader_for_vlc-media-player.exe

Error: (09/03/2013 01:08:24 PM) (Source: Application Error)(User: )
Description: Explorer.EXE6.2.9200.1662851a94434SHELL32.dll6.2.9200.165505136a2c8c00000050000000000004af952001cea895aaf5845eC:\Windows\Explorer.EXEC:\Windows\system32\SHELL32.dll2639ceaf-1489-11e3-bec5-5453edb62022

Error: (09/03/2013 01:08:07 PM) (Source: MobileBroadband)(User: )
Description: StartUp:DisplayAndLogError: PhonebookVpnEtries: RAS error

 PID=4568

Error: (09/03/2013 01:06:49 PM) (Source: VSS)(User: )
Description: RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\MSSearch Service Writer,...)0x80070002, Das System kann die angegebene Datei nicht finden.


Vorgang:
  Generator wird initialisiert

Kontext:
  Generatorklassen-ID: {cd3f2362-8bef-46c7-9181-d62844cdc0b2}
  Generatorname: MSSearch Service Writer
  Generatorinstanz-ID: {29caafcf-25b7-458a-ac52-8c7f21352347}

Error: (09/03/2013 01:06:46 PM) (Source: VSS)(User: )
Description: RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\BITS Writer,...)0x80070002, Das System kann die angegebene Datei nicht finden.


Vorgang:
  Generator wird initialisiert

Kontext:
  Generatorklassen-ID: {4969d978-be47-48b0-b100-f328f07ac1e0}
  Generatorname: BITS Writer
  Generatorinstanz-ID: {1710e215-b541-4d0a-bfd3-45f7bae94be0}

Error: (09/03/2013 00:33:46 PM) (Source: VSS)(User: )
Description: RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\Shadow Copy Optimization Writer,...)0x80070002, Das System kann die angegebene Datei nicht finden.


Vorgang:
  Generator wird initialisiert

Kontext:
  Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
  Generatorname: Shadow Copy Optimization Writer
  Generatorinstanz-ID: {46b212bf-4cfa-4497-abcf-8aaabcaf5e6d}

Error: (09/03/2013 00:33:46 PM) (Source: VSS)(User: )
Description: RegCreateKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag\ASR Writer,...)0x80070002, Das System kann die angegebene Datei nicht finden.


Vorgang:
  Generator wird initialisiert

Kontext:
  Generatorklassen-ID: {be000cbe-11fe-4426-9c58-531aa6355fc4}
  Generatorname: ASR Writer
  Generatorinstanz-ID: {7a3c4585-ada6-4417-b451-553935d28aed}


==================== Memory info ===========================

Percentage of memory in use: 23%
Total physical RAM: 6016.39 MB
Available physical RAM: 4619.09 MB
Total Pagefile: 12160.39 MB
Available Pagefile: 10357.41 MB
Total Virtual: 8192 MB
Available Virtual: 8191.83 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:667.67 GB) (Free:452.63 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 699 GB) (Disk ID: FACBF894)

Partition: GPT Partition Type
==================== End Of Log ============================

iolor.. am Anfang kommt immer noch...

aharonov 03.09.2013 13:37

Ja das iolor-Zeugs haben wir auch noch nicht bearbeitet, sondern zuerst mal aufgeräumt. :)
Ist es nach diesem Fix verschwunden?


Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:

BootExecute: autocheck autochk * autocheck iolorgdf32 C:\Users\karsten\AppData\Roaming\iolo\
HKLM-x32\...\Run: [] -  [x]
2013-08-11 13:18 - 2013-08-11 13:18 - 00051992 _____ (cake bake) C:\Program Files (x86)\WBDesktop.Updater.exe


Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.


miki60 03.09.2013 13:45

Code:

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 03-09-2013 01
Ran by karsten at 2013-09-03 14:40:45 Run:1
Running from C:\Users\karsten\Downloads
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
BootExecute: autocheck autochk * autocheck iolorgdf32 C:\Users\karsten\AppData\Roaming\iolo\
HKLM-x32\...\Run: [] -  [x]
2013-08-11 13:18 - 2013-08-11 13:18 - 00051992 _____ (cake bake) C:\Program Files (x86)\WBDesktop.Updater.exe
*****************

HKLM\System\CurrentControlSet\Control\Session Manager\\BootExecute => Value was restored successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => Value deleted successfully.
C:\Program Files (x86)\WBDesktop.Updater.exe => Moved successfully.

==== End of Fixlog ====

iolo.. kommt immer noch, ich starte nochmal neu...

so iolo... ist nun auch weg
beim nächsten Firefoxstart kam ein Tab mit:
resource://firefox-at-ghostery-dot-com/ghostery/data/walkthrough.html
komisch, oder?

aharonov 03.09.2013 13:49

Starte noch einmal FRST.
  • Ändere keine der Voreinstellungen und drücke auf Scan.
  • Wenn der Scan abgeschlossen ist, werden ein neues Logfile FRST.txt erstellt und auf dem Desktop gespeichert.
  • Poste den Inhalt dieses Logfiles bitte hier in deinen Thread.

miki60 03.09.2013 13:51

..das geht ja fix hier, Schlag auf Schlag..

FRST Logfile:
Code:

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 03-09-2013 01
Ran by karsten (administrator) on KCW on 03-09-2013 14:50:08
Running from C:\Users\karsten\Downloads
Windows 8 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(AMD) C:\Windows\system32\atiesrxx.exe
(IvoSoft) C:\Program Files\Classic Shell\ClassicShellService.exe
(Microsoft Corporation) C:\Windows\system32\WLANExt.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Microsoft Corporation) C:\Windows\system32\dashost.exe
(Hewlett-Packard Company) C:\Program Files (x86)\HP\HPBDSService\HPBDSService.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\FrameworkService.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\VsTskMgr.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\naPrdMgr.exe
(McAfee, Inc.) C:\Windows\system32\mfevtps.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\mfeann.exe
(pdfforge GbR) C:\Program Files (x86)\PDF Architect\HelperService.exe
(Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
(Microsoft Corporation) C:\Windows\SysWOW64\DllHost.exe
(Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\VmbService.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler64.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VUAgent.exe
(Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
() C:\Program Files\Sony\VAIO Care\VCPerfService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Improvement\vim.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCService.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCAgent.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe
(IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe
() C:\Program Files\Sony\VAIO Care\listener.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkClient.EXE
(AMD) C:\Windows\system32\atieclxx.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe
(Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE
(Sony Corporation) C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\UdaterUI.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\MobileBroadband.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\McTray.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\SHSTAT.EXE
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Improvement\vim.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCSystemTray.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1215632 2012-08-22] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1215632 2012-08-22] (Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2916152 2012-08-24] (Synaptics Incorporated)
HKLM\...\Run: [BTMTrayAgent] - C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [11582848 2012-09-30] (Motorola Solutions, Inc.)
HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,C:\Windows\skipmetrosuite.exe,
HKLM\...\Policies\Explorer: [NoActiveDesktopChanges] 1
HKLM\...\Policies\Explorer: [NoActiveDesktop] 1
MountPoints2: {00cf490d-0260-11e3-beaf-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence
MountPoints2: {59609a28-0e49-11e3-beb9-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence
MountPoints2: {59609a55-0e49-11e3-beb9-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence
MountPoints2: {7d2e3252-00c6-11e3-beac-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence
MountPoints2: {abadd295-147f-11e3-bec3-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence
MountPoints2: {b09a22dd-f766-11e2-bea9-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence
MountPoints2: {b09a231c-f766-11e2-bea9-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence
MountPoints2: {b09a23ab-f766-11e2-bea9-5453edb62022} - "E:\AutoRun.exe"
MountPoints2: {b09a23d0-f766-11e2-bea9-5453edb62022} - "E:\AutoRun.exe"
MountPoints2: {b09a2413-f766-11e2-bea9-5453edb62022} - "E:\setup_vmc_lite.exe" /checkApplicationPresence
MountPoints2: {d1225ae4-dfb3-11e2-be99-5453edb62022} - "E:\Autorun.exe"
HKLM-x32\...\Run: [Dolby Home Theater v4] - C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [508256 2012-04-23] (Dolby Laboratories Inc.)
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642216 2012-08-06] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [ISBMgr.exe] - C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe [68776 2012-08-18] (Sony Corporation)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - c:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [37960 2013-05-10] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Intel AppUp(SM) center] - C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [152896 2012-06-25] (Intel Corporation)
HKLM-x32\...\Run: [McAfeeUpdaterUI] - C:\Program Files (x86)\McAfee\Common Framework\udaterui.exe [333376 2011-11-15] (McAfee, Inc.)
HKLM-x32\...\Run: [ShStatEXE] - C:\Program Files (x86)\McAfee\VirusScan Enterprise\SHSTAT.EXE [215656 2012-08-14] (McAfee, Inc.)
HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [49208 2010-06-09] (Hewlett-Packard)
HKLM-x32\...\Run: [MobileBroadband] - C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\MobileBroadband.exe [76288 2013-02-05] (Vodafone)
AppInit_DLLs:    [0 ] ()
AppInit_DLLs-x32:    [0 ] ()

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://sony13.msn.com
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://vaioportal.sony.eu
SearchScopes: HKLM - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL =
SearchScopes: HKCU - {0BB430DC-AB51-4C14-89C3-3102CA91B8B8} URL = hxxp://rover.ebay.com/rover/1/707-37276-16609-27/4?mpre=hxxp://shop.ebay.de/?oemInLn=ieSrch-Q312&_nkw={searchTerms}
SearchScopes: HKCU - {80E04FE9-5834-4F5E-BCA3-AF9A0D2EF1A3} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASEJS
SearchScopes: HKCU - {F15FE3CB-E081-40DC-8B46-1C33E78FE0A4} URL = hxxp://search.zonealarm.com/search?src=sp&tbid=Solo&Lan=&q={searchTerms}&gu=ea9e5e931c8f46d0b5fc7ff027f2c9cd&tu=11Ih0008I1B0001&sku=&tstsId=&ver=&&r=0
BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20130307163200.dll (McAfee, Inc.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: ClassicIE9BHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIE9DLL_64.dll (IvoSoft)
BHO-x32: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GbR)
BHO-x32: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20130307163200.dll (McAfee, Inc.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: ClassicIE9BHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIE9DLL_32.dll (IvoSoft)
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)
Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} -  No File
Tcpip\Parameters: [DhcpNameServer] 192.168.13.13
Tcpip\..\Interfaces\{8E0C755B-CB0B-4BC6-BC3B-A4081D5AE527}: [NameServer]139.7.30.125,139.7.30.126

FireFox:
========
FF ProfilePath: C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.google.com/
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll ()
FF Plugin: @java.com/DTPlugin,version=10.5.0 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.5.0 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.5.0 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.5.0 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.6 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: firefox - C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\Extensions\firefox@ghostery.com.xpi
FF Extension: jid1-u9RbFp9JcoEGGw - C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\Extensions\jid1-u9RbFp9JcoEGGw@jetpack.xpi
FF Extension: No Name - C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF HKLM-x32\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt
FF Extension: PDF Architect Converter For Firefox - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt
FF HKLM-x32\...\Firefox\Extensions: [{D19CA586-DD6C-4a0a-96F8-14644F340D60}] C:\Program Files (x86)\Common Files\McAfee\SystemCore
FF Extension: IDS_SS_NAME - C:\Program Files (x86)\Common Files\McAfee\SystemCore
FF HKLM-x32\...\Firefox\Extensions: [ff-bmboc@bytemobile.com] C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Optimization Client\addon\
FF Extension: Bytemobile Optimization Client - C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Optimization Client\addon\
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] C:\Program Files\McAfee\MSK

==================== Services (Whitelisted) =================

R2 ClassicShellService; C:\Program Files\Classic Shell\ClassicShellService.exe [68608 2012-12-29] (IvoSoft)
R2 HP DS Service; C:\Program Files (x86)\HP\HPBDSService\HPBDSService.exe [13824 2010-10-27] (Hewlett-Packard Company)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128896 2012-07-25] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-25] (Intel Corporation)
R2 McAfeeFramework; C:\Program Files (x86)\McAfee\Common Framework\FrameworkService.exe [132672 2011-11-15] (McAfee, Inc.)
R2 McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [201864 2013-03-07] (McAfee, Inc.)
R2 McTaskManager; C:\Program Files (x86)\McAfee\VirusScan Enterprise\VsTskMgr.exe [210056 2012-08-14] (McAfee, Inc.)
S4 mfeicfcoreocp; C:\Program Files\McAfeeEx\MOCP\core\mfeicfcore.exe [5619000 2012-06-20] (McAfee, Inc.)
R2 mfevtp; C:\Windows\system32\mfevtps.exe [170440 2013-03-07] (McAfee, Inc.)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [272176 2012-07-18] ()
S3 NetworkSupport; C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkSupport.exe [623784 2012-08-18] (Sony Corporation)
R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1324104 2013-01-09] (pdfforge GbR)
S2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [795208 2013-01-09] (pdfforge GbR)
R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [474208 2012-07-27] (Sony Corporation)
R2 SampleCollector; C:\Program Files\Sony\VAIO Care\VCPerfService.exe [156672 2012-08-06] ()
S3 VCFw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [972000 2012-08-08] (Sony Corporation)
R3 VUAgent; C:\Program Files\Sony\VAIO Update\VUAgent.exe [1359408 2013-03-26] (Sony Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16048 2013-07-02] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [2699568 2012-07-18] (Intel® Corporation)
S2 McOobeSv2; "C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [x]

==================== Drivers (Whitelisted) ====================

R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [35496 2012-08-22] (Advanced Micro Devices, Inc.)
R0 BMLoad; C:\Windows\System32\drivers\BMLoad.sys [16552 2013-09-03] (Bytemobile, Inc.)
S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation)
S3 btmaux; C:\Windows\system32\DRIVERS\btmaux.sys [132480 2012-10-01] (Motorola Solutions, Inc.)
S3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1337216 2012-10-01] (Motorola Solutions, Inc.)
R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink)
S3 ewusbnet; C:\Windows\system32\DRIVERS\ewusbnet.sys [451072 2013-01-30] (Huawei Technologies Co., Ltd.)
S3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [160952 2013-03-07] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [274880 2013-03-07] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [665768 2013-03-07] (McAfee, Inc.)
S3 mferkdet; C:\Windows\System32\drivers\mferkdet.sys [101200 2013-03-07] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [303464 2013-03-07] (McAfee, Inc.)
R3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew00.sys [4273192 2012-08-07] (Intel Corporation)
R3 rimssne; C:\Windows\System32\drivers\rimssne64.sys [103424 2012-08-23] (REDC)
R3 risdsnxc; C:\Windows\System32\drivers\risdsnxc64.sys [104960 2012-08-23] (REDC)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [43832 2012-08-24] (Synaptics Incorporated)
R3 SOWS; C:\Windows\System32\drivers\sows.sys [24280 2012-06-11] (Sony Corporation)
R1 tcpipBM; C:\Windows\system32\drivers\tcpipBM.sys [39592 2013-09-03] (Bytemobile, Inc.)
R1 tcpipBM; C:\Windows\system32\drivers\tcpipBM.sys [39592 2013-09-03] (Bytemobile, Inc.)
S3 usb3Hub; C:\Windows\System32\drivers\usb3Hub.sys [48096 2012-08-09] (Windows (R) Win 7 DDK provider)
S3 XHCIPort; C:\Windows\System32\drivers\XHCIPort.sys [188384 2012-08-09] (Windows (R) Win 7 DDK provider)
S3 hwusbfake; \SystemRoot\system32\DRIVERS\ewusbfake.sys [x]
U3 mfeavfk01; No ImagePath

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-09-03 14:23 - 2013-09-03 14:23 - 00052726 _____ C:\Users\karsten\Downloads\FRST2.txt
2013-09-03 14:14 - 2013-09-03 14:16 - 00000000 ____D C:\AdwCleaner
2013-09-03 14:09 - 2013-09-03 14:09 - 01037134 _____ C:\Users\karsten\Downloads\adwcleaner.exe
2013-09-03 14:05 - 2013-09-03 14:06 - 00284408 _____ C:\Windows\Minidump\090313-21781-01.dmp
2013-09-03 13:29 - 2013-09-03 13:29 - 00284408 _____ C:\Windows\Minidump\090313-24031-01.dmp
2013-09-03 13:26 - 2013-09-03 14:23 - 00071563 _____ C:\Users\karsten\Downloads\Addition2.txt
2013-09-03 13:25 - 2013-09-03 13:25 - 00000000 ____D C:\FRST
2013-09-03 13:24 - 2013-09-03 13:24 - 00377856 _____ C:\Users\karsten\Downloads\gmer_2.1.19163.exe
2013-09-03 13:24 - 2013-09-03 13:24 - 00000476 _____ C:\Users\karsten\Downloads\defogger_disable.log
2013-09-03 13:24 - 2013-09-03 13:24 - 00000000 _____ C:\Users\karsten\defogger_reenable
2013-09-03 13:23 - 2013-09-03 13:23 - 01950474 _____ (Farbar) C:\Users\karsten\Downloads\FRST64.exe
2013-09-03 13:23 - 2013-09-03 13:23 - 00050477 _____ C:\Users\karsten\Downloads\Defogger.exe
2013-09-03 11:59 - 2013-01-30 11:26 - 00451072 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbnet.sys
2013-09-03 11:59 - 2013-01-30 11:26 - 00225920 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbmdm.sys
2013-09-03 11:58 - 2013-09-03 11:58 - 00039592 _____ (Bytemobile, Inc.) C:\Windows\system32\Drivers\tcpipBM.sys
2013-09-03 11:58 - 2013-09-03 11:58 - 00016552 _____ (Bytemobile, Inc.) C:\Windows\system32\Drivers\BMLoad.sys
2013-09-03 11:58 - 2013-09-03 11:58 - 00002156 _____ C:\Users\Public\Desktop\Vodafone Mobile Broadband.lnk
2013-09-03 11:58 - 2013-09-03 11:58 - 00000000 ____D C:\Program Files (x86)\Vodafone
2013-08-26 21:46 - 2013-08-26 21:46 - 00000512 _____ C:\Users\karsten\Desktop\Lokaler Datenträger (C) - Verknüpfung.lnk
2013-08-14 08:34 - 2013-07-26 07:13 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-08-14 08:34 - 2013-07-26 07:13 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-08-14 08:34 - 2013-07-26 07:13 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll
2013-08-14 08:34 - 2013-07-26 07:13 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll
2013-08-14 08:34 - 2013-07-26 07:13 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-08-14 08:34 - 2013-07-26 07:12 - 19239424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-08-14 08:34 - 2013-07-26 07:12 - 15405056 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-08-14 08:34 - 2013-07-26 07:12 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-08-14 08:34 - 2013-07-26 07:12 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-08-14 08:34 - 2013-07-26 07:12 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-08-14 08:34 - 2013-07-26 07:12 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-08-14 08:34 - 2013-07-26 07:12 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-08-14 08:34 - 2013-07-26 07:12 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-08-14 08:34 - 2013-07-26 07:12 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-08-14 08:34 - 2013-07-26 07:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-08-14 08:34 - 2013-07-26 05:35 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-08-14 08:34 - 2013-07-26 05:13 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-08-14 08:34 - 2013-07-26 05:13 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-08-14 08:34 - 2013-07-26 05:13 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll
2013-08-14 08:34 - 2013-07-26 05:12 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-08-14 08:34 - 2013-07-26 05:12 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-08-14 08:34 - 2013-07-26 05:12 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-08-14 08:34 - 2013-07-26 05:12 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-08-14 08:34 - 2013-07-26 05:12 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-08-14 08:34 - 2013-07-26 05:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-08-14 08:34 - 2013-07-26 05:11 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-08-14 08:34 - 2013-07-26 05:11 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-08-14 08:34 - 2013-07-26 04:49 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-08-14 08:34 - 2013-07-26 02:54 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll
2013-08-14 08:33 - 2013-07-26 05:12 - 14329344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-08-14 08:33 - 2013-07-26 05:12 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-08-14 08:25 - 2013-07-02 02:44 - 00036288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys
2013-08-14 08:25 - 2013-07-02 00:08 - 00247216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys
2013-08-14 08:25 - 2013-05-24 01:02 - 01314816 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2013-08-14 08:24 - 2013-07-09 08:07 - 02233168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-08-14 08:24 - 2013-05-24 00:25 - 00694272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2013-08-14 08:21 - 2013-07-13 08:18 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2013-08-14 08:21 - 2013-07-13 08:16 - 01889280 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2013-08-14 08:21 - 2013-07-13 08:16 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2013-08-14 08:21 - 2013-07-13 08:15 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\apprepapi.dll
2013-08-14 08:21 - 2013-07-13 08:15 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\apprepsync.dll
2013-08-14 08:21 - 2013-07-13 06:24 - 00261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2013-08-14 08:21 - 2013-07-13 06:23 - 01568256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2013-08-14 08:21 - 2013-07-13 06:23 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepapi.dll
2013-08-14 08:21 - 2013-07-13 06:23 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepsync.dll
2013-08-12 20:32 - 2013-08-12 20:32 - 00002172 _____ C:\Users\Public\Desktop\Google Earth.lnk
2013-08-12 20:22 - 2013-08-22 15:18 - 00000000 ____D C:\Windows\system32\MRT
2013-08-11 13:22 - 2013-08-11 13:22 - 00000000 ____D C:\Users\karsten\AppData\Roaming\FLEXnet
2013-08-11 13:19 - 2013-08-11 13:19 - 00000000 ____D C:\Neuer Ordner
2013-08-09 09:35 - 2013-01-30 11:26 - 01490656 _____ (Microsoft Corporation) C:\Windows\system32\wdfcoinstaller01007.dll
2013-08-09 09:35 - 2013-01-30 11:26 - 00117248 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_hwusbdev.sys
2013-08-09 09:35 - 2013-01-30 11:26 - 00090112 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jubusenum.sys
2013-08-09 09:34 - 2013-08-09 09:34 - 00000000 ____D C:\Users\karsten\AppData\Local\Downloaded Installations
2013-08-09 09:34 - 2013-08-09 09:34 - 00000000 ____D C:\ProgramData\Macrovision
2013-08-08 12:05 - 2013-09-03 11:58 - 00000000 ____D C:\ProgramData\Vodafone
2013-08-08 11:15 - 2013-08-09 09:43 - 00000000 ____D C:\Users\karsten\AppData\Roaming\Vodafone
2013-08-08 11:14 - 2013-08-08 11:14 - 00008464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SpOrder.dll
2013-08-08 11:14 - 2013-08-08 11:14 - 00000000 ____D C:\ProgramData\FLEXnet
2013-08-08 11:13 - 2013-08-08 11:13 - 00000000 ____D C:\Users\karsten\AppData\Local\{86DD38A2-C8BD-404A-A1BD-907F6B69C913}

==================== One Month Modified Files and Folders =======

2013-09-03 14:48 - 2013-03-07 15:50 - 00003594 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-288095589-429832609-4039349632-1001
2013-09-03 14:43 - 2013-06-22 20:11 - 00001116 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-09-03 14:40 - 2013-06-26 20:02 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-09-03 14:34 - 2012-11-16 17:56 - 00000000 ____D C:\Program Files (x86)\WildGames
2013-09-03 14:34 - 2012-11-16 17:54 - 00000000 ____D C:\ProgramData\WildTangent
2013-09-03 14:33 - 2013-06-13 19:29 - 00000000 ____D C:\Users\karsten\AppData\Roaming\WildTangent
2013-09-03 14:24 - 2012-11-16 17:15 - 01788440 _____ C:\Windows\WindowsUpdate.log
2013-09-03 14:23 - 2013-09-03 14:23 - 00052726 _____ C:\Users\karsten\Downloads\FRST2.txt
2013-09-03 14:23 - 2013-09-03 13:26 - 00071563 _____ C:\Users\karsten\Downloads\Addition2.txt
2013-09-03 14:21 - 2013-06-22 20:11 - 00001120 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-09-03 14:17 - 2012-07-26 09:22 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-09-03 14:16 - 2013-09-03 14:14 - 00000000 ____D C:\AdwCleaner
2013-09-03 14:11 - 2012-08-03 04:22 - 00018420 _____ C:\Windows\PFRO.log
2013-09-03 14:10 - 2013-06-29 11:31 - 00000898 _____ C:\Windows\SysWOW64\InstallUtil.InstallLog
2013-09-03 14:09 - 2013-09-03 14:09 - 01037134 _____ C:\Users\karsten\Downloads\adwcleaner.exe
2013-09-03 14:06 - 2013-09-03 14:05 - 00284408 _____ C:\Windows\Minidump\090313-21781-01.dmp
2013-09-03 14:05 - 2013-04-24 02:09 - 00000000 ____D C:\Windows\Minidump
2013-09-03 14:05 - 2013-04-24 02:08 - 531305500 _____ C:\Windows\MEMORY.DMP
2013-09-03 14:00 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\sru
2013-09-03 13:35 - 2013-06-29 11:31 - 00000000 ____D C:\Users\karsten\AppData\Roaming\igdhbblpcellaljokkpfhcjlagemhgjl
2013-09-03 13:29 - 2013-09-03 13:29 - 00284408 _____ C:\Windows\Minidump\090313-24031-01.dmp
2013-09-03 13:29 - 2013-03-07 15:43 - 00000000 ____D C:\Users\karsten
2013-09-03 13:26 - 2013-03-07 17:02 - 00000000 ____D C:\Original
2013-09-03 13:25 - 2013-09-03 13:25 - 00000000 ____D C:\FRST
2013-09-03 13:24 - 2013-09-03 13:24 - 00377856 _____ C:\Users\karsten\Downloads\gmer_2.1.19163.exe
2013-09-03 13:24 - 2013-09-03 13:24 - 00000476 _____ C:\Users\karsten\Downloads\defogger_disable.log
2013-09-03 13:24 - 2013-09-03 13:24 - 00000000 _____ C:\Users\karsten\defogger_reenable
2013-09-03 13:23 - 2013-09-03 13:23 - 01950474 _____ (Farbar) C:\Users\karsten\Downloads\FRST64.exe
2013-09-03 13:23 - 2013-09-03 13:23 - 00050477 _____ C:\Users\karsten\Downloads\Defogger.exe
2013-09-03 12:34 - 2012-11-16 16:53 - 00000000 ____D C:\ProgramData\Sony Corporation
2013-09-03 12:17 - 2012-11-16 16:47 - 00753134 _____ C:\Windows\system32\perfh007.dat
2013-09-03 12:17 - 2012-11-16 16:47 - 00155826 _____ C:\Windows\system32\perfc007.dat
2013-09-03 12:17 - 2012-07-26 09:28 - 01745416 _____ C:\Windows\system32\PerfStringBackup.INI
2013-09-03 12:03 - 2012-07-26 09:21 - 00054721 _____ C:\Windows\setupact.log
2013-09-03 11:58 - 2013-09-03 11:58 - 00039592 _____ (Bytemobile, Inc.) C:\Windows\system32\Drivers\tcpipBM.sys
2013-09-03 11:58 - 2013-09-03 11:58 - 00016552 _____ (Bytemobile, Inc.) C:\Windows\system32\Drivers\BMLoad.sys
2013-09-03 11:58 - 2013-09-03 11:58 - 00002156 _____ C:\Users\Public\Desktop\Vodafone Mobile Broadband.lnk
2013-09-03 11:58 - 2013-09-03 11:58 - 00000000 ____D C:\Program Files (x86)\Vodafone
2013-09-03 11:58 - 2013-08-08 12:05 - 00000000 ____D C:\ProgramData\Vodafone
2013-09-02 16:05 - 2012-07-26 07:26 - 00262144 ___SH C:\Windows\system32\config\BBI
2013-09-01 23:00 - 2013-06-13 21:50 - 00000000 ____D C:\Users\karsten\AppData\Roaming\Thunderbird
2013-09-01 12:20 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\AUInstallAgent
2013-08-28 22:07 - 2013-03-08 12:57 - 00000000 ____D C:\World ARC 2009_2013
2013-08-26 21:46 - 2013-08-26 21:46 - 00000512 _____ C:\Users\karsten\Desktop\Lokaler Datenträger (C) - Verknüpfung.lnk
2013-08-26 21:17 - 2013-05-29 17:47 - 00000000 ____D C:\Users\karsten\AppData\Roaming\vlc
2013-08-22 15:40 - 2013-06-26 20:02 - 00003772 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-08-22 15:18 - 2013-08-12 20:22 - 00000000 ____D C:\Windows\system32\MRT
2013-08-22 15:16 - 2013-03-18 10:14 - 78161360 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-08-15 03:07 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\rescache
2013-08-14 08:47 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files\Windows Defender
2013-08-14 08:47 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2013-08-12 20:32 - 2013-08-12 20:32 - 00002172 _____ C:\Users\Public\Desktop\Google Earth.lnk
2013-08-12 20:31 - 2013-06-22 20:11 - 00000000 ____D C:\Program Files (x86)\Google
2013-08-11 13:22 - 2013-08-11 13:22 - 00000000 ____D C:\Users\karsten\AppData\Roaming\FLEXnet
2013-08-11 13:19 - 2013-08-11 13:19 - 00000000 ____D C:\Neuer Ordner
2013-08-11 10:35 - 2013-03-18 20:07 - 00068904 _____ C:\Users\karsten\AppData\Local\GDIPFONTCACHEV1.DAT
2013-08-09 09:43 - 2013-08-08 11:15 - 00000000 ____D C:\Users\karsten\AppData\Roaming\Vodafone
2013-08-09 09:38 - 2013-07-27 16:15 - 00305704 _____ C:\Windows\system32\FNTCACHE.DAT
2013-08-09 09:34 - 2013-08-09 09:34 - 00000000 ____D C:\Users\karsten\AppData\Local\Downloaded Installations
2013-08-09 09:34 - 2013-08-09 09:34 - 00000000 ____D C:\ProgramData\Macrovision
2013-08-08 11:14 - 2013-08-08 11:14 - 00008464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SpOrder.dll
2013-08-08 11:14 - 2013-08-08 11:14 - 00000000 ____D C:\ProgramData\FLEXnet
2013-08-08 11:13 - 2013-08-08 11:13 - 00000000 ____D C:\Users\karsten\AppData\Local\{86DD38A2-C8BD-404A-A1BD-907F6B69C913}

Files to move or delete:
====================
C:\Users\karsten\AppData\Local\Temp\BundleSweetIMSetup.exe
C:\Users\karsten\AppData\Local\Temp\DataCard_Setup64.exe
C:\Users\karsten\AppData\Local\Temp\fp_pl_pfs_installer-1.exe
C:\Users\karsten\AppData\Local\Temp\fp_pl_pfs_installer.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssa_aih.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssa_aih_1.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(1).exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(1)_1.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(1)_2.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(2).exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(2)_1.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(2)_2.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih(2)_3.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_1.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_10.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_11.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_12.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_13.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_14.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_2.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_3.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_4.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_5.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_6.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_7.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_8.exe
C:\Users\karsten\AppData\Local\Temp\install_flashplayer11x32_mssd_aih_9.exe
C:\Users\karsten\AppData\Local\Temp\is-9VOOK.exe
C:\Users\karsten\AppData\Local\Temp\LyricsContainertmp.exe
C:\Users\karsten\AppData\Local\Temp\MybabylonTB.exe
C:\Users\karsten\AppData\Local\Temp\propsys.dll
C:\Users\karsten\AppData\Local\Temp\Quarantine.exe
C:\Users\karsten\AppData\Local\Temp\ResetDevice.exe
C:\Users\karsten\AppData\Local\Temp\Setup.exe
C:\Users\karsten\AppData\Local\Temp\SpOrder.dll
C:\Users\karsten\AppData\Local\Temp\zatbSetup_110_000_064.exe
C:\Users\karsten\AppData\Local\Temp\~nsu.tmp\Au_.exe
C:\Users\karsten\AppData\Local\Temp\{CE15D1B6-19B6-4D4D-8F43-CF5D2C3356FF}\nailite.dll
C:\Users\karsten\AppData\Local\Temp\{A2041102-6384-4EC4-BFEB-DA2EC1518A1B}\InstallFlashPlayer.exe
C:\Users\karsten\AppData\Local\Temp\{72CF18AF-048E-49A2-91BF-424F426C7F59}\InstallFlashPlayer.exe
C:\Users\karsten\AppData\Local\Temp\{67C1E091-8FC4-4816-A3DE-EDD4C5CD8F12}\InstallFlashPlayer.exe
C:\Users\karsten\AppData\Local\Temp\UTPSDLL\GdiPlus.dll
C:\Users\karsten\AppData\Local\Temp\UTPSDLL\mfc71.dll
C:\Users\karsten\AppData\Local\Temp\UTPSDLL\MFC71u.dll
C:\Users\karsten\AppData\Local\Temp\UTPSDLL\msvcp71.dll
C:\Users\karsten\AppData\Local\Temp\UTPSDLL\msvcr71.dll
C:\Users\karsten\AppData\Local\Temp\uninstaller-WTA-f9420c9b-db40-456f-abef-79528e0adff2\Uninstaller.exe
C:\Users\karsten\AppData\Local\Temp\uninstaller-WTA-f5498a76-bb70-4428-aa15-52ddca6673de\Uninstaller.exe
C:\Users\karsten\AppData\Local\Temp\uninstaller-WTA-e47cd7a6-94bf-4105-9fad-63543a3ca07f\Uninstaller.exe
C:\Users\karsten\AppData\Local\Temp\uninstaller-WTA-d232afc7-9bba-46fa-a024-7693c5e98197\Uninstaller.exe
C:\Users\karsten\AppData\Local\Temp\uninstaller-WTA-c779992d-5d1a-4eb7-ac6f-ca2082d11e5e\Uninstaller.exe
C:\Users\karsten\AppData\Local\Temp\uninstaller-WTA-948308ea-093f-4582-9061-d61f377036e5\Uninstaller.exe
C:\Users\karsten\AppData\Local\Temp\uninstaller-WTA-8717515e-328e-4e6a-9baa-dc6cdd8253d7\Uninstaller.exe
C:\Users\karsten\AppData\Local\Temp\uninstaller-WTA-7d39a6d6-04bd-422d-aaaa-920bc10a29c0\Uninstaller.exe
C:\Users\karsten\AppData\Local\Temp\uninstaller-WTA-708d7ab0-5bb4-48dd-a60a-9b96fafaee8b\Uninstaller.exe
C:\Users\karsten\AppData\Local\Temp\uninstaller-WTA-4c580cb4-6a3f-4d45-97fc-e1dede2e1858\Uninstaller.exe
C:\Users\karsten\AppData\Local\Temp\uninstaller-WTA-45be10c2-64b7-4e22-aad5-56c1b1b94801\Uninstaller.exe
C:\Users\karsten\AppData\Local\Temp\uninstaller-WTA-41cc1944-3d7e-4725-b1bc-d895a7da5299\Uninstaller.exe
C:\Users\karsten\AppData\Local\Temp\uninstaller-WTA-1f1012f5-a6a0-4604-95b2-b8775bbd1537\Uninstaller.exe
C:\Users\karsten\AppData\Local\Temp\uninstaller-WTA-1e34201a-9db6-4558-adcc-41034d5022ad\Uninstaller.exe
C:\Users\karsten\AppData\Local\Temp\uninstaller-WTA-0caa35cb-5eb0-496f-9af7-5954e5cc925c\Uninstaller.exe
C:\Users\karsten\AppData\Local\Temp\uninstaller-WTA-065084a8-897a-4c38-875c-291c23e4123c\Uninstaller.exe
C:\Users\karsten\AppData\Local\Temp\Temp1_SkipMetroSuite.zip\Windows 8 x64\SkipMetroSuiteUI.exe
C:\Users\karsten\AppData\Local\Temp\SDIAG_fedc0537-1c1f-46e2-962d-3cb9d2c09fe9\NetworkDiagnosticSnapIn.dll
C:\Users\karsten\AppData\Local\Temp\nsy12BA.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsy12BA.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsy12BA.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsy12BA.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsy12BA.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsx5231.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsx5231.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsx5231.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsx5231.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsx5231.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nswFCC8.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nswFCC8.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nswFCC8.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nswFCC8.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nswFCC8.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsvF02F.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsvF02F.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsvF02F.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsvF02F.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsvF02F.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsuFAC8.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsuFAC8.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsuFAC8.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsuFAC8.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsuFAC8.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsu37DC.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsu37DC.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsu37DC.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsu37DC.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsu37DC.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsrFA7B.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsrFA7B.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsrFA7B.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsrFA7B.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsrFA7B.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsr79.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsr79.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsr79.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsr79.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsr79.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsqB2AC.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsqB2AC.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsqB2AC.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsqB2AC.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsqB2AC.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsp2E7D.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsp2E7D.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsp2E7D.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsp2E7D.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsp2E7D.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\textreplace.dll
C:\Users\karsten\AppData\Local\Temp\nso836E.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsn90.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsn90.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsn90.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsn90.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsn90.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsl6ED3.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsl6ED3.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsl6ED3.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsl6ED3.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsl6ED3.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsj95BD.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsj95BD.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsj95BD.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsj95BD.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsj95BD.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsj19E1.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsj19E1.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsj19E1.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsj19E1.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsj19E1.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsg3404.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsg3404.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsg3404.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsg3404.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsg3404.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsg28A4.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsg28A4.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsg28A4.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsg28A4.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsg28A4.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsaF1CA.tmp\FindProcDLL.dll
C:\Users\karsten\AppData\Local\Temp\nsaF1CA.tmp\newadvsplash.dll
C:\Users\karsten\AppData\Local\Temp\nsaF1CA.tmp\registry.dll
C:\Users\karsten\AppData\Local\Temp\nsaF1CA.tmp\System.dll
C:\Users\karsten\AppData\Local\Temp\nsaF1CA.tmp\UserInfo.dll
C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\mcbrwsr2.dll
C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\McInstallerStartup.dll
C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\McInstallerUtil.dll
C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\mcuicnt.exe
C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\OcpStartup.dll
C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\Ocp_LD.dll
C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\OCP_UI.dll
C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\UnInstallOcp.exe
C:\Users\karsten\AppData\Local\Temp\nsaECD.tmp\UnMfp.exe
C:\Users\karsten\AppData\Local\Temp\MozUpdater\updater.exe
C:\Users\karsten\AppData\Local\Temp\dlm8D05.tmp\123freesolitaire-v90-setup.exe
C:\Users\karsten\AppData\Local\Temp\._msige61\GoogleEarth.exe
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemyext.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\earthps.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\geplugin.exe
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\ge_expat.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\googleearth_free.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\icudt.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGAttrs.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGCore.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGExportCommon.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGGfx.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGMath.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGOpt.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGSg.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGUtils.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\Leap.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\msvcp100.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\msvcr100.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\npgeplugin.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\plugin_ax.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\QtCore4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\QtGui4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\QtNetwork4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\QtWebKit4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\imageformats\qgif4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\imageformats\qjpeg4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\optimizations\IGOptExtension.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\D3DCompiler_43.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\d3dx9_43.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\IGAttrs.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\IGGfx.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\IGSg.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\libEGL.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\libGLESv2.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogl\IGAttrs.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogl\IGGfx.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogl\IGSg.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemyext.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\earthflashsol.exe
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\earthps.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\ge_expat.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\googleearth.exe
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\googleearth_free.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\gpsbabel.exe
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\icudt.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGAttrs.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGCore.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGExportCommon.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGGfx.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGMath.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGOpt.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGSg.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGUtils.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\Leap.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\msvcp100.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\msvcr100.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\QtCore4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\QtGui4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\QtNetwork4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\QtWebKit4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\Plugins\npgeinprocessplugin.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\imageformats\qgif4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\imageformats\qjpeg4.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\optimizations\IGOptExtension.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\D3DCompiler_43.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\d3dx9_43.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\IGAttrs.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\IGGfx.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\IGSg.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\libEGL.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\libGLESv2.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogl\IGAttrs.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogl\IGGfx.dll
C:\Users\karsten\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogl\IGSg.dll

==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-09-01 13:13

==================== End Of Log ============================

--- --- ---

aharonov 03.09.2013 13:58

Ist nach diesen Schritten alles in Ordnung oder bestehen noch weitere Probleme?


Schritt 1

Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:

FF Extension: firefox - C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\Extensions\firefox@ghostery.com.xpi

Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.




Schritt 2


ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset


miki60 03.09.2013 14:03

geht los...
Code:

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 03-09-2013 01
Ran by karsten at 2013-09-03 15:02:40 Run:2
Running from C:\Users\karsten\Downloads
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
FF Extension: firefox - C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\Extensions\firefox@ghostery.com.xpi
*****************

C:\Users\karsten\AppData\Roaming\Mozilla\Firefox\Profiles\gf92nubw.default\Extensions\firefox@ghostery.com.xpi => Moved successfully.

==== End of Fixlog ====

eset schmeiß ich gleich an..

aharonov 03.09.2013 14:04

Ok. Der ESET-Scan könnte etwas länger dauern - das ist normal.

miki60 03.09.2013 14:38

ESET läuft und hat was gefunden:
probably variant of WIN32/Adware.Yontoo.A.application
der Haken remove ist abgewählt..
soll ich den ESET wie angegeben unter 4-5 deinstallieren oder brauchen wir den nochmal?

aharonov 03.09.2013 14:39

Poste dann das ESET-Log, wenn der Scan durch ist. Dieser Fund ist schon mal harmlos.
Wir brauchen ESET danach nicht mehr. Poste zuerst (!) das Log und deinstalliere ihn danach.

miki60 03.09.2013 15:50

ESET ist erst bei 90%
wird wohl erst morgen früh weitergehen
aber schönen Dank schonmal...


Alle Zeitangaben in WEZ +1. Es ist jetzt 01:08 Uhr.

Copyright ©2000-2025, Trojaner-Board


Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55