henrik1997 | 09.09.2013 16:14 | Das weiß ich selber nicht, hatte mir ein Programm bei chip runtergeladen und dabei wurde das mit installiert.
Fixlog: Code:
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 09-09-2013
Ran by test at 2013-09-09 16:53:08 Run:5
Running from C:\Users\test\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Unlock: C:\Users\test\AppData\Local\Temp
Folder: C:\Users\test\AppData\Roaming\Adobe
*****************
"C:\Users\test\AppData\Local\Temp" => File/Directory unlocked successfully.
========================= Folder: C:\Users\test\AppData\Roaming\Adobe ========================
2012-02-08 18:38 - 2012-02-08 18:38 - 0000000 ____D () C:\Users\test\AppData\Roaming\Adobe\Acrobat
2011-07-07 14:09 - 2013-03-23 11:13 - 0000000 ____D () C:\Users\test\AppData\Roaming\Adobe\Flash Player
2012-02-08 18:38 - 2012-02-08 18:38 - 0000000 ____D () C:\Users\test\AppData\Roaming\Adobe\Headlights
2012-02-08 18:38 - 2012-02-08 18:38 - 0000000 ____D () C:\Users\test\AppData\Roaming\Adobe\Linguistics
2012-02-08 18:38 - 2012-02-08 18:38 - 0000000 ____D () C:\Users\test\AppData\Roaming\Adobe\LogTransport2
2011-08-12 18:01 - 2013-09-08 22:41 - 0000000 ____D () C:\Users\test\AppData\Roaming\Adobe\plugs
2011-08-12 18:01 - 2013-09-08 22:41 - 0000000 ____D () C:\Users\test\AppData\Roaming\Adobe\shed
2012-02-08 18:38 - 2013-04-06 10:57 - 0000000 ____D () C:\Users\test\AppData\Roaming\Adobe\Acrobat\10.0
2011-07-07 14:09 - 2011-07-07 14:09 - 0000000 ____D () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache
2013-03-23 11:13 - 2013-03-23 11:13 - 0000000 ____D () C:\Users\test\AppData\Roaming\Adobe\Flash Player\NativeCache
2012-02-08 18:38 - 2012-02-08 18:38 - 0000000 ____D () C:\Users\test\AppData\Roaming\Adobe\Linguistics\Dictionaries
2012-02-08 18:39 - 2012-02-08 18:39 - 0000000 ____D () C:\Users\test\AppData\Roaming\Adobe\Acrobat\10.0\Collab
2012-02-08 18:39 - 2012-02-08 18:39 - 0000000 ____D () C:\Users\test\AppData\Roaming\Adobe\Acrobat\10.0\Forms
2012-02-08 18:39 - 2013-08-15 22:18 - 0000000 ____D () C:\Users\test\AppData\Roaming\Adobe\Acrobat\10.0\JSCache
2012-02-08 18:39 - 2013-05-28 15:24 - 0000000 ____D () C:\Users\test\AppData\Roaming\Adobe\Acrobat\10.0\Security
2013-04-06 10:57 - 2013-04-06 10:57 - 0000000 ____D () C:\Users\test\AppData\Roaming\Adobe\Acrobat\10.0\ServicesRdr
2011-07-07 14:09 - 2012-07-23 13:10 - 0000000 ____D () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY
2012-02-08 18:39 - 2012-02-08 18:39 - 0000000 ____D () C:\Users\test\AppData\Roaming\Adobe\Acrobat\10.0\Security\CRLCache
2012-03-10 18:06 - 2012-03-10 18:28 - 0000148 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\1846548181EAE8A4BB86AFC74FD021D9A0F6DFA6.heu
2012-03-10 18:06 - 2012-03-10 18:06 - 0541380 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\1846548181EAE8A4BB86AFC74FD021D9A0F6DFA6.swz
2011-07-09 21:53 - 2012-02-06 19:26 - 0000149 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\1C04C61346A1FA3139A37D860ED92632AA13DECF.heu
2011-07-09 21:53 - 2011-07-09 21:53 - 0565987 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\1C04C61346A1FA3139A37D860ED92632AA13DECF.swz
2011-11-29 22:36 - 2013-09-01 09:53 - 0000149 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\381814F6F5270FFBB27E244D6138BC023AF911D5.heu
2011-11-29 22:36 - 2011-11-29 22:36 - 0157002 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\381814F6F5270FFBB27E244D6138BC023AF911D5.swz
2011-11-29 22:36 - 2012-09-11 22:17 - 0000149 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\440AE73B017A477382DEFF7C0DBE4896FED21079.heu
2011-11-29 22:36 - 2011-11-29 22:36 - 0054532 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\440AE73B017A477382DEFF7C0DBE4896FED21079.swz
2012-01-12 16:49 - 2012-07-01 18:36 - 0000149 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\49280E749D7318EA369BC7E61369C34AD2D22859.heu
2012-01-12 16:49 - 2012-01-12 16:49 - 0054428 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\49280E749D7318EA369BC7E61369C34AD2D22859.swz
2012-02-11 21:54 - 2012-04-08 00:26 - 0000148 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\4BAE91DBAEF0CEEC0FCE5505D96DDEA865EDBFC1.heu
2012-02-11 21:54 - 2012-02-11 21:54 - 0482555 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\4BAE91DBAEF0CEEC0FCE5505D96DDEA865EDBFC1.swz
2011-11-29 22:36 - 2012-09-11 22:17 - 0000149 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\6344DCC80A9A6A3676DCEA0C92C8C45EFD2F3220.heu
2011-11-29 22:36 - 2011-11-29 22:36 - 0319300 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\6344DCC80A9A6A3676DCEA0C92C8C45EFD2F3220.swz
2011-11-29 22:36 - 2013-09-01 09:53 - 0000149 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\6DDB94AE3365798230849FA0F931AC132FE417D1.heu
2011-11-29 22:36 - 2011-11-29 22:36 - 0131925 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\6DDB94AE3365798230849FA0F931AC132FE417D1.swz
2011-07-12 16:00 - 2013-08-29 19:33 - 0000148 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\7421C71F94DB4F028E7528B2D278F3FE4DC21273.heu
2011-07-12 16:00 - 2011-07-12 16:00 - 0156308 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\7421C71F94DB4F028E7528B2D278F3FE4DC21273.swz
2012-01-12 16:49 - 2012-07-01 18:36 - 0000149 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\76C30565F803F2587F156A8344E4091992D31B27.heu
2012-01-12 16:49 - 2012-01-12 16:49 - 0322027 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\76C30565F803F2587F156A8344E4091992D31B27.swz
2012-02-11 21:54 - 2012-04-08 00:26 - 0000148 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\84D36BDF5E2577BFB0B8CE6A12A8646BB1AADDDD.heu
2012-02-11 21:54 - 2012-02-11 21:54 - 0054416 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\84D36BDF5E2577BFB0B8CE6A12A8646BB1AADDDD.swz
2011-11-29 22:36 - 2013-09-01 09:53 - 0000149 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\871F12AF0853C06E4EB80A1CCAB295CEADBB817A.heu
2011-11-29 22:36 - 2011-11-29 22:36 - 0627102 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\871F12AF0853C06E4EB80A1CCAB295CEADBB817A.swz
2011-12-16 20:52 - 2012-07-01 18:36 - 0000149 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\8F903698240FE799F61EEDA8595181137B996156.heu
2011-12-16 20:52 - 2011-12-16 20:52 - 0186404 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\8F903698240FE799F61EEDA8595181137B996156.swz
2012-01-12 16:49 - 2012-07-01 18:36 - 0000149 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\9A7DEE2B537712BEF484CBD9E4DDBF88C78F436C.heu
2012-01-12 16:49 - 2012-01-12 16:49 - 0465633 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\9A7DEE2B537712BEF484CBD9E4DDBF88C78F436C.swz
2012-01-12 16:49 - 2012-07-01 18:36 - 0000149 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\9F67B1C289A5B5DB7B32844AF679E758541D101B.heu
2012-01-12 16:49 - 2012-01-12 16:49 - 0325305 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\9F67B1C289A5B5DB7B32844AF679E758541D101B.swz
2012-02-11 21:53 - 2012-04-08 00:26 - 0000148 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\ABD49354324081CEBB8F60184CF5FEE81F0F9298.heu
2012-02-11 21:53 - 2012-02-11 21:53 - 0327044 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\ABD49354324081CEBB8F60184CF5FEE81F0F9298.swz
2012-07-23 13:10 - 2012-07-23 13:10 - 0000148 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\AF07B46903A6C5D87A24725CB7D50DE352A0383C.heu
2012-07-23 13:10 - 2012-07-23 13:10 - 0537658 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\AF07B46903A6C5D87A24725CB7D50DE352A0383C.swz
2012-01-12 16:49 - 2012-07-01 18:36 - 0000149 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\B63185FCA5D2BDBB568593F2BF232E87E5A20A7E.heu
2012-01-12 16:49 - 2012-01-12 16:49 - 0141201 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\B63185FCA5D2BDBB568593F2BF232E87E5A20A7E.swz
2011-07-09 21:53 - 2012-07-23 13:10 - 0000008 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\cacheSize.txt
2012-01-12 16:49 - 2012-07-01 18:36 - 0000149 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\D1680A46DD686B3B0CC9EC01D8C584666A78E145.heu
2012-01-12 16:49 - 2012-01-12 16:49 - 0132728 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\D1680A46DD686B3B0CC9EC01D8C584666A78E145.swz
2012-02-11 21:54 - 2012-04-08 00:26 - 0000148 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\D888AEE0CE49F58A35C32EB138EDD00F0D6B9FAE.heu
2012-02-11 21:54 - 2012-02-11 21:54 - 0322020 ____A () C:\Users\test\AppData\Roaming\Adobe\Flash Player\AssetCache\73S4Y8SY\D888AEE0CE49F58A35C32EB138EDD00F0D6B9FAE.swz
2012-02-08 19:07 - 2013-07-05 16:31 - 0000036 ____A () C:\Users\test\AppData\Roaming\Adobe\Acrobat\10.0\TMDocs.sav
2012-02-08 19:07 - 2013-07-05 16:31 - 0000054 ____A () C:\Users\test\AppData\Roaming\Adobe\Acrobat\10.0\TMGrpPrm.sav
2013-04-06 10:57 - 2013-04-06 10:57 - 0586012 ____A () C:\Users\test\AppData\Roaming\Adobe\Acrobat\10.0\ServicesRdr\com_2E_adobe_2E_acrobat_2E_services_2E_cfg_5F_10_2E_1_2E_5_2E_2.cfg
2013-04-06 10:57 - 2013-04-06 10:57 - 1346203 ____A () C:\Users\test\AppData\Roaming\Adobe\Acrobat\10.0\ServicesRdr\com_2E_adobe_2E_acrobat_2E_services_2E_DEXShare_5F_10_2E_1_2E_5_2E_2.spi
2012-02-08 18:39 - 2012-02-08 18:39 - 0005399 ____A () C:\Users\test\AppData\Roaming\Adobe\Acrobat\10.0\Security\addressbook.acrodata
2012-05-04 14:50 - 2013-05-28 19:54 - 0010240 ____A () C:\Users\test\AppData\Roaming\Adobe\Acrobat\10.0\Security\services_rdr.dat
2012-05-04 14:50 - 2013-05-28 15:24 - 0024152 ____A () C:\Users\test\AppData\Roaming\Adobe\Acrobat\10.0\Security\services_rdri.dat
2012-05-04 14:50 - 2013-05-28 15:24 - 0000264 ____A () C:\Users\test\AppData\Roaming\Adobe\Acrobat\10.0\Security\services_rdrk.dat
2012-02-08 18:39 - 2013-08-15 22:04 - 0000898 ____A () C:\Users\test\AppData\Roaming\Adobe\Acrobat\10.0\Security\CRLCache\48B76449F3D5FEFA1133AA805E420F0FCA643651.crl
2012-02-08 18:39 - 2013-08-15 22:04 - 0037213 ____A () C:\Users\test\AppData\Roaming\Adobe\Acrobat\10.0\Security\CRLCache\A9B8213768ADC68AF64FCC6409E8BE414726687F.crl
2012-02-08 19:07 - 2012-02-08 19:07 - 0000022 ____A () C:\Users\test\AppData\Roaming\Adobe\Acrobat\10.0\JSCache\GlobData
2013-08-15 22:18 - 2013-08-15 22:18 - 0000024 ____A () C:\Users\test\AppData\Roaming\Adobe\Acrobat\10.0\JSCache\GlobSettings
====== End of Folder: ======
==== End of Fixlog ====
Url VirusTotal: https://www.virustotal.com/de/file/fe98eca7f4d662851c15aad9dfc323cae9967dcdd7981980e3033c066a895830/analysis/1378738449/
Systemlook: Code:
SystemLook 30.07.11 by jpshortstuff
Log created at 17:05 on 09/09/2013 by test
Administrator - Elevation successful
========== filefind ==========
Searching for "*esasnative64*"
No files found.
========== regfind ==========
Searching for "esasnative64"
No data found.
Searching for " "
[HKEY_CURRENT_USER\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]
"C:\Program Files (x86)\Common Files\DVDVideoSoft\FreeStudioManager.exe"="FreeStudioManager "
[HKEY_LOCAL_MACHINE\HARDWARE\DEVICEMAP\Scsi\Scsi Port 3\Scsi Bus 1\Target Id 1\Logical Unit Id 0]
"SerialNumber"=" Z2A528XV"
[HKEY_LOCAL_MACHINE\HARDWARE\DEVICEMAP\Scsi\Scsi Port 3\Scsi Bus 1\Target Id 1\Logical Unit Id 0]
"Identifier"="ST3500413AS JC45"
[HKEY_LOCAL_MACHINE\SOFTWARE\DivX\Install\ASPEncoder]
"Description"="
<h3>Das Kernstück Ihres HD-Videoerlebnisses</h3>
<p>Der Codec, der die Videowelt revolutioniert hat, wurde weiter optimiert. Wir bezeichnen diese Version als „Pro“, da sie zudem fantastische fortschrittliche Encoding-Einstellungen bietet, mit denen Sie mit Drittanbietersoftware hochwertige DivX-Video generieren können, die auf jedem beliebigen DivX Certified®-Gerät wiedergegeben werden können.</p>
<h3>Gute Gründe für den DivX Codec</h3>
<ul>
<li>Erstellen Sie mit Drittanbietersoftware oder mit dem DivX Converter hochwertige, stark komprimierte DivX-Videos.</li>
<li>Wir garantieren, dass Ihre Videos abgesehen von Deinem PC auch auf DivX Certified-DVD-Playern, Mobiltelefonen, Spielekonsolen uvm. abgespielt werden können.</li>
<li>Optimieren Sie Ihre Videos mit den fortschrittlichen Encoding-Einstellungen, um hochwertigere Dateien zu erhalten.</li>
</ul>"
[HKEY_LOCAL_MACHINE\SOFTWARE\DivX\Install\Converter]
"Description"="
<p>Die erste benutzerfreundliche Software für die Erstellung von hochwertigen DivX HEVC*-Videos</p>
<ul>
<li>Erstelle DivX-Videos und schaue Sie Dir auf jedem Computer und auf mehr als 1 Milliarde</li>
<li>Drehe Deine Videos, kombiniere Deine Videos, füge mehrere Untertitel und Audio hinzu</li>
<li>Nutze benutzerdefinierte Voreinstellungen und führe Batch-Encoding aus</li>
</ul>
<br/>
<p><i>*DivX HEVC-Plugin erforderlich</i></p>
"
[HKEY_LOCAL_MACHINE\SOFTWARE\DivX\Install\Player]
"Description"="
<p>Hochwertige Wiedergabe von DivX-, DivX Plus- und den neuen DivX HEVC*-Videos</p>
<ul>
<li>Optimiert für die Wiedergabe der gängigsten Formate im Internet – AVI, DIVX, MKV, MP4</li>
<li>Mit dem integrierten DivX Media Server können Videos zu Geräten gestreamt werden, wie z. B. PS3 und Xbox</li>
<li>Problemlose Wiedergabe des FF/RW-Formats, Kapiteln, Unterstützung mehrerer Untertitel und Tonspuren</li>
</ul>
<br/>
<p><i>*DivX HEVC-Plugin erforderlich</i></p>
"
[HKEY_LOCAL_MACHINE\SOFTWARE\DivX\Install\Setup\BundleGroups\divx.com]
"BundleGroupDescription"="
<p>Eine All-in-One-Lösung zum Wiedergeben, Erstellen und Streamen von hochwertigen DivX HEVC-Videos bis zu 1080p HD. DivX 10 bietet die neuste Videotechnologie kostenlos an. Das beste DivX Video-Erlebnis erhältst Du, <i>wenn Du alle Komponenten installierst.</i></p>
<ul>
<li>Neue DivX HEVC-Profile für die Erstellung von HEVC-Videos </li>
<li>Optimierte Wiedergabe von DivX- (MPEG), DivX Plus- (H.264), DivX HEVC (H.265)*-Videos</li>
<li>Effizientes HEVC-Streaming in Deinem Browser</li>
<li>Streame MKVs auf DLNA-Geräte, wie z. B. PS3 und XBOX</li>
</ul>
<br/>
<p><a href="hxxp://go.divx.com/WhatsNew/de" target="_blank">Erfahre, was bei dieser Version noch neu ist</a></p>
<br/>
<p><i>*DivX HEVC-Plugin erforderlich</i></p>
"
[HKEY_LOCAL_MACHINE\SOFTWARE\DivX\Install\Setup\InstallGroups\FiltersAndCodecs]
"Description"="
<p>Mit dem DivX® Codec Pack kannst Du DivX®-Videos mit Deinen Lieblingsanwendungen abspielen und erstellen.</p>
<ul>
<li>DivX- und DivX-Videos auf jedem beliebigen Media-Player abspielen (wie beispielsweise Windows Media Player, QuickTime, Media Player Classic)</li>
<li>Ausgabe von AVI-Videos mit Deiner Lieblingsbearbeitungssoftware (z. B. Sony Vegas, Virtual Dub)</li>
<li>Konvertieren in DivX und MKV mithilfe von DivX Converter und Tools von Drittanbietern – unbegrenzt und kostenlos</li>
</ul>
"
[HKEY_LOCAL_MACHINE\SOFTWARE\DivX\Install\Setup\InstallGroups\SharedLibraries]
"Description"="
<ul>
<li>Das DivX VOD-Plug-in sorgt für besseres Erlebnis für Kunden, die Filme von DivX VOD - Shops beziehen.</li>
</ul>
"
[HKEY_LOCAL_MACHINE\SOFTWARE\DivX\Install\WebPlayer]
"Description"="
<p>Effizientes, hochwertiges MKV-Streaming in Deinem Browser mit DivX HEVC-Video</p>
<ul>
<li>Problemlose Videowiedergabe mit DivX Plus Streaming™ und DivX HEVC</li>
<li>Adaptives und progressives Streaming der gängigsten Formate im Internet – AVI, DIVX, MKV, MP4, MOV</li>
<li>Die Funktionen umfassen eine problemlose Wiedergabe des FF/RW-Formats, Kapiteln, sowie Unterstützung mehrerer Untertitel und Tonspuren</li>
<li>Weniger CPU- und Akkuverbrauch mit H.264-DXVA-Hardwarebeschleunigung</li>
</ul>
<br/>
<p><i>*DivX HEVC-Plugin erforderlich</i></p>
"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WSMAN\Plugin\Microsoft.PowerShell]
"ConfigXML"=" <PlugInConfiguration xmlns="hxxp://schemas.microsoft.com/wbem/wsman/1/config/PluginConfiguration" Name="microsoft.powershell" Filename="%windir%\system32\pwrshplugin.dll" SDKVersion="1" XmlRenderingType="text" > <InitializationParameters> <Param Name="PSVersion" Value="2.0"/> </InitializationParameters> <Resources> <Resource ResourceUri="hxxp://schemas.microsoft.com/powershell/microsoft.powershell" SupportsOptions="true" ExactMatch="true"> <Security xmlns="hxxp://schemas.microsoft.com/wbem/wsman/1/config/PluginConfiguration" Uri="hxxp://schemas.microsoft.com/powershell/microsoft.powershell" ExactMatch="true" Sddl="O:NSG:BAD:P(A;;GA;;;BA)S:P(AU;FA;GA;;;WD)(AU;SA;GXGW;;;WD)"/> <Capability Type="Shell"/> </Resource> </Res
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\WSMAN\Plugin\Microsoft.PowerShell32]
"ConfigXML"="<PlugInConfiguration xmlns="hxxp://schemas.microsoft.com/wbem/wsman/1/config/PluginConfiguration" Name="microsoft.powershell32" Filename="%windir%\system32\pwrshplugin.dll" SDKVersion="1" XmlRenderingType="text" Architecture="32" > <InitializationParameters> <Param Name="PSVersion" Value="2.0"/> </InitializationParameters> <Resources> <Resource ResourceUri="hxxp://schemas.microsoft.com/powershell/microsoft.powershell32" SupportsOptions="true" ExactMatch="true"> <Security xmlns="hxxp://schemas.microsoft.com/wbem/wsman/1/config/PluginConfiguration" Uri="hxxp://schemas.microsoft.com/powershell/microsoft.powershell32" ExactMatch="true" Sddl="O:NSG:BAD:P(A;;GA;;;BA)S:P(AU;FA;GA;;;WD)(AU;SA;GXGW;;;WD)"/>
[HKEY_USERS\S-1-5-21-2645030327-2621767628-3974223011-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]
"C:\Program Files (x86)\Common Files\DVDVideoSoft\FreeStudioManager.exe"="FreeStudioManager "
[HKEY_USERS\S-1-5-21-2645030327-2621767628-3974223011-1000_Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]
"C:\Program Files (x86)\Common Files\DVDVideoSoft\FreeStudioManager.exe"="FreeStudioManager "
-= EOF =-
FRST:
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 09-09-2013
Ran by test (administrator) on TEST-PC on 09-09-2013 17:09:34
Running from C:\Users\test\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(AVM Berlin) C:\Program Files (x86)\avmwlanstick\WlanNetService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(AVM Berlin) C:\Program Files (x86)\avmwlanstick\WLanGUI.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Sun Microsystems, Inc.) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Policies\Explorer: [NoActiveDesktop] 1
HKLM\...\Policies\Explorer: [NoActiveDesktopChanges] 1
HKCU\...\Run: [] - C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
MountPoints2: {0808c6c7-a67b-11e0-805b-806e6f6e6963} - D:\autorun.exe
HKLM-x32\...\Run: [AVMWlanClient] - C:\Program Files (x86)\avmwlanstick\wlangui.exe [2105344 2010-10-22] (AVM Berlin)
HKLM-x32\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\avastUI.exe [4858968 2013-05-09] (AVAST Software)
HKLM-x32\...\Run: [DivXMediaServer] - C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [450560 2013-08-21] (DivX, LLC)
HKLM-x32\...\Run: [DivXUpdate] - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861968 2013-08-29] ()
BootExecute: autocheck autochk * esasnative64
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
SearchScopes: HKCU - {606DB28E-2A29-45DE-8510-340389812730} URL = hxxp://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=382950&p={searchTerms}
BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO-x32: No Name - {41564952-412D-5637-00A7-7A786E7484D7} - No File
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
Toolbar: HKLM-x32 - No Name - {41564952-412D-5637-00A7-7A786E7484D7} - No File
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKLM-x32 - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Toolbar: HKLM-x32 - No Name - {EA582743-9076-4178-9AA6-7393FDF4D5CE} - No File
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKCU - No Name - {51A86BB3-6602-4C85-92A5-130EE4864F13} - No File
Toolbar: HKCU - No Name - {C95A4E8E-816D-4655-8C79-D736DA1ADB6D} - No File
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - No File
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll ()
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll (DivX, LLC)
FF Plugin-x32: @java.com/DTPlugin,version=1.6.0_35 - C:\Windows\SysWOW64\npdeployJava1.dll (Sun Microsystems, Inc.)
FF Plugin-x32: @java.com/JavaPlugin - C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @ngm.nexoneu.com/NxGame - C:\ProgramData\NexonEU\NGM\npNxGameeu.dll (Nexon)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
Chrome:
=======
CHR Extension: (DVDVideoSoft Browser Extension) - C:\Users\test\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.0_0
CHR Extension: (Chrome In-App Payments service) - C:\Users\test\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0
CHR HKLM-x32\...\Chrome\Extension: [naipdapbimiiikbbgjcpbgmfhnlbagpj] - C:\Users\test\AppData\Local\Temp\naipdapbimiiikbbgjcpbgmfhnlbagpj.crx
==================== Services (Whitelisted) =================
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808 2013-05-09] (AVAST Software)
R2 AVM WLAN Connection Service; C:\Program Files (x86)\avmwlanstick\WlanNetService.exe [376832 2010-10-22] (AVM Berlin)
S2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
S3 npggsvc; C:\Windows\SysWow64\GameMon.des [3969336 2012-04-05] (INCA Internet Co., Ltd.)
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1817560 2013-05-16] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1033688 2013-05-16] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2013-05-15] (Safer-Networking Ltd.)
==================== Drivers (Whitelisted) ====================
R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [33400 2013-05-09] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [80816 2013-05-09] (AVAST Software)
R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [72016 2013-05-09] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65336 2013-05-09] ()
R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [1030952 2013-08-30] (AVAST Software)
R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [378944 2013-08-30] (AVAST Software)
R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [64288 2013-05-09] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [189936 2013-08-30] ()
R3 FWLANUSB; C:\Windows\System32\DRIVERS\fwlanusb.sys [460800 2010-10-22] (AVM GmbH)
R1 HssDRV6; C:\Windows\System32\DRIVERS\hssdrv6.sys [41704 2012-08-01] (AnchorFree Inc.)
S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [15416 2009-07-16] ()
S3 NPPTNT2; C:\Windows\SysWow64\npptNT2.sys [4682 2004-12-31] (INCA Internet Co., Ltd.)
S3 dump_wmimmc; \??\C:\Spiele\ShotOnline\GameGuard\dump_wmimmc.sys [x]
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [x]
S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x]
S3 NPPTNT2; \??\C:\Windows\system32\npptNT2.sys [x]
S3 X6va007; \??\C:\Users\test\AppData\Local\Temp\007AA64.tmp [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-09-09 17:05 - 2013-09-09 17:08 - 00016452 _____ C:\Users\test\Downloads\SystemLook.txt
2013-09-09 17:04 - 2013-09-09 17:04 - 00165376 _____ C:\Users\test\Downloads\SystemLook_x64.exe
2013-09-09 00:30 - 2013-09-09 00:35 - 00000000 ____D C:\Users\test\Desktop\Neuer Ordner
2013-09-09 00:28 - 2013-09-09 00:28 - 00040541 _____ C:\Users\test\Desktop\FRST.txt
2013-09-09 00:27 - 2013-09-09 00:28 - 00025798 _____ C:\Users\test\Desktop\Addition.txt
2013-09-08 22:41 - 2013-09-08 22:41 - 02347384 _____ (ESET) C:\Users\test\Downloads\esetsmartinstaller_enu.exe
2013-09-08 22:34 - 2013-09-08 22:34 - 00000000 ____D C:\Users\test\AppData\Roaming\Malwarebytes
2013-09-08 22:33 - 2013-09-08 22:33 - 00001166 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-09-08 22:33 - 2013-09-08 22:33 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-09-08 22:33 - 2013-09-08 22:33 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-09-08 22:33 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2013-09-08 22:32 - 2013-09-08 22:32 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\test\Downloads\mbam-setup-1.75.0.1300 (4).exe
2013-09-08 22:21 - 2013-09-08 22:21 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\test\Downloads\mbam-setup-1.75.0.1300 (3).exe
2013-09-08 22:05 - 2013-09-08 22:05 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\test\Downloads\mbam-setup-1.75.0.1300 (2).exe
2013-09-08 22:04 - 2013-09-08 22:04 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\test\Downloads\mbam-setup-1.75.0.1300 (1).exe
2013-09-08 22:03 - 2013-09-08 22:03 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\test\Downloads\mbam-setup-1.75.0.1300.exe
2013-09-08 21:51 - 2013-09-08 21:51 - 00000000 ____D C:\FRST
2013-09-08 19:43 - 2013-09-08 19:43 - 00001004 _____ C:\Users\test\Documents\Spielsysteme.txt
2013-09-08 19:30 - 2013-09-08 19:30 - 15707838 _____ C:\Users\test\Downloads\Spielsysteme im Vergleich_Reger.pptx
2013-09-08 17:51 - 2013-09-08 17:53 - 00000000 ____D C:\AdwCleaner
2013-09-08 17:51 - 2013-09-08 17:50 - 01037278 _____ C:\Users\test\Desktop\adwcleaner.exe
2013-09-08 17:50 - 2013-09-08 17:50 - 01037278 _____ C:\Users\test\Downloads\adwcleaner.exe
2013-09-08 17:14 - 2013-09-08 17:15 - 00024321 _____ C:\Users\test\Downloads\Addition.txt
2013-09-08 17:13 - 2013-09-08 17:13 - 00000000 ____D C:\Users\test\Desktop\FRST
2013-09-08 10:45 - 2013-09-09 16:37 - 00003284 _____ C:\Windows\PFRO.log
2013-09-08 10:45 - 2013-09-09 16:37 - 00000392 _____ C:\Windows\setupact.log
2013-09-08 10:45 - 2013-09-08 10:45 - 00000000 _____ C:\Windows\setuperr.log
2013-09-08 10:43 - 2013-09-08 10:43 - 00633672 _____ (Woodtale Technology Inc) C:\Users\test\Downloads\iSafedl (1).exe
2013-09-08 10:38 - 2013-09-08 10:38 - 00000000 ____D C:\Users\test\AppData\Roaming\eCyber
2013-09-08 10:37 - 2013-09-08 15:10 - 00000000 ____D C:\Users\test\AppData\Roaming\iSafe
2013-09-08 10:37 - 2013-09-08 10:37 - 00633672 _____ (Woodtale Technology Inc) C:\Users\test\Downloads\iSafedl.exe
2013-09-08 10:28 - 2013-09-08 10:28 - 00000000 ____D C:\Users\test\AppData\Roaming\Avira
2013-09-08 09:48 - 2013-09-08 09:49 - 37672592 _____ (Safer-Networking Ltd. ) C:\Users\test\Downloads\spybotsd-2.1.21-SR2 (1).exe
2013-09-07 11:14 - 2013-09-08 10:33 - 00000000 ____D C:\Users\test\AppData\Local\Freemium
2013-09-07 10:56 - 2013-09-07 10:56 - 00000000 ____D C:\Users\test\AppData\Local\avgchrome
2013-09-07 10:54 - 2013-09-08 10:33 - 00000000 ____D C:\Users\test\AppData\Roaming\LavFilters
2013-09-07 10:54 - 2013-09-08 10:33 - 00000000 ____D C:\Users\test\AppData\Roaming\CDXReader
2013-09-07 10:54 - 2013-09-07 11:14 - 00000000 ____D C:\Program Files (x86)\DSP-worx
2013-09-07 10:38 - 2013-08-13 08:38 - 00032328 _____ C:\Windows\Launcher.exe
2013-09-07 10:36 - 2013-09-08 10:33 - 00000000 ____D C:\ProgramData\Package Cache
2013-09-07 10:36 - 2013-09-08 10:33 - 00000000 ____D C:\ProgramData\FreeSystemUtilities
2013-09-07 10:36 - 2013-09-08 10:31 - 00000000 ____D C:\Program Files (x86)\Covus Freemium
2013-09-07 10:36 - 2013-09-07 10:41 - 00001656 _____ C:\Windows\system32\ASOROSet.bin
2013-09-07 10:36 - 2013-09-07 10:36 - 00002563 _____ C:\Users\Public\Desktop\Free System Utilities.lnk
2013-09-07 10:34 - 2013-09-07 10:34 - 00444408 _____ C:\Users\test\Downloads\free-system-utilities-DE.exe
2013-08-31 10:33 - 2013-09-07 10:37 - 00000000 ____D C:\Windows\system32\config\RCCBakup
2013-08-31 10:26 - 2013-09-08 10:33 - 00000000 ____D C:\Program Files (x86)\Ashampoo
2013-08-31 10:19 - 2013-09-01 08:57 - 00000000 ____D C:\Program Files (x86)\Amazon
2013-08-31 10:19 - 2013-08-31 10:19 - 00129536 _____ C:\Users\Public\AlexaNSISPlugin.3832.dll
2013-08-30 23:30 - 2013-09-05 15:47 - 00002236 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2013-08-30 23:27 - 2013-09-09 16:41 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-08-30 23:27 - 2013-09-09 16:39 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2013-08-30 23:27 - 2013-09-09 16:37 - 00001102 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-08-30 23:27 - 2013-09-01 16:59 - 00001922 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2013-08-30 23:27 - 2013-09-01 16:59 - 00000000 _____ C:\Windows\SysWOW64\config.nt
2013-08-30 23:27 - 2013-08-30 23:36 - 00004102 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-08-30 23:27 - 2013-08-30 23:35 - 00003850 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-08-30 23:27 - 2013-08-30 23:27 - 01030952 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2013-08-30 23:27 - 2013-08-30 23:27 - 00378944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2013-08-30 23:27 - 2013-08-30 23:27 - 00189936 _____ C:\Windows\system32\Drivers\aswVmm.sys
2013-08-30 23:27 - 2013-08-30 23:27 - 00000175 _____ C:\Windows\system32\Drivers\aswVmm.sys.sum
2013-08-30 23:27 - 2013-08-30 23:27 - 00000175 _____ C:\Windows\system32\Drivers\aswSP.sys.sum
2013-08-30 23:27 - 2013-08-30 23:27 - 00000175 _____ C:\Windows\system32\Drivers\aswSnx.sys.sum
2013-08-30 23:27 - 2013-05-09 10:59 - 00080816 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2013-08-30 23:27 - 2013-05-09 10:59 - 00072016 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2013-08-30 23:27 - 2013-05-09 10:59 - 00065336 _____ C:\Windows\system32\Drivers\aswRvrt.sys
2013-08-30 23:27 - 2013-05-09 10:59 - 00064288 _____ (AVAST Software) C:\Windows\system32\Drivers\aswTdi.sys
2013-08-30 23:27 - 2013-05-09 10:59 - 00033400 _____ (AVAST Software) C:\Windows\system32\Drivers\aswFsBlk.sys
2013-08-30 23:27 - 2013-05-09 10:58 - 00287840 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2013-08-30 23:26 - 2013-08-30 23:26 - 00000000 ____D C:\ProgramData\AVAST Software
2013-08-30 23:26 - 2013-08-30 23:26 - 00000000 ____D C:\Program Files\AVAST Software
2013-08-30 23:26 - 2013-05-09 10:58 - 00041664 _____ (AVAST Software) C:\Windows\avastSS.scr
2013-08-26 11:13 - 2013-08-26 11:13 - 00354656 _____ (DivX, Inc.) C:\Windows\SysWOW64\DivXControlPanelApplet.cpl
2013-08-25 12:34 - 2013-08-25 12:34 - 00502874 _____ C:\Program Files\usb.ids
2013-08-24 10:30 - 2013-08-24 10:51 - 00000000 ____D C:\Users\test\Desktop\Günther Backup
2013-08-14 23:31 - 2013-07-26 07:13 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-08-14 23:31 - 2013-07-26 07:13 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-08-14 23:31 - 2013-07-26 07:13 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-08-14 23:31 - 2013-07-26 07:12 - 19239424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-08-14 23:31 - 2013-07-26 07:12 - 15405056 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-08-14 23:31 - 2013-07-26 07:12 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-08-14 23:31 - 2013-07-26 07:12 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-08-14 23:31 - 2013-07-26 07:12 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-08-14 23:31 - 2013-07-26 07:12 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-08-14 23:31 - 2013-07-26 07:12 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-08-14 23:31 - 2013-07-26 07:12 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-08-14 23:31 - 2013-07-26 07:12 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-08-14 23:31 - 2013-07-26 07:12 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-08-14 23:31 - 2013-07-26 07:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-08-14 23:31 - 2013-07-26 05:35 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-08-14 23:31 - 2013-07-26 05:13 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-08-14 23:31 - 2013-07-26 05:13 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-08-14 23:31 - 2013-07-26 05:12 - 14329344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-08-14 23:31 - 2013-07-26 05:12 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-08-14 23:31 - 2013-07-26 05:12 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-08-14 23:31 - 2013-07-26 05:12 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-08-14 23:31 - 2013-07-26 05:12 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-08-14 23:31 - 2013-07-26 05:12 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-08-14 23:31 - 2013-07-26 05:12 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-08-14 23:31 - 2013-07-26 05:12 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-08-14 23:31 - 2013-07-26 05:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-08-14 23:31 - 2013-07-26 05:11 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-08-14 23:31 - 2013-07-26 05:11 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-08-14 23:31 - 2013-07-26 04:49 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-08-14 23:31 - 2013-07-26 04:39 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-08-14 23:31 - 2013-07-26 03:59 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-08-14 23:24 - 2013-08-14 23:26 - 00000000 ____D C:\Windows\system32\MRT
2013-08-14 20:27 - 2013-07-09 07:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2013-08-14 20:27 - 2013-07-09 07:46 - 01472512 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2013-08-14 20:27 - 2013-07-09 07:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2013-08-14 20:27 - 2013-07-09 07:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2013-08-14 20:27 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2013-08-14 20:27 - 2013-07-09 06:46 - 01166848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2013-08-14 20:27 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2013-08-14 20:27 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2013-08-14 20:26 - 2013-07-25 11:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2013-08-14 20:26 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2013-08-14 20:26 - 2013-07-19 03:58 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2013-08-14 20:26 - 2013-07-19 03:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2013-08-14 20:26 - 2013-07-09 08:03 - 05550528 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2013-08-14 20:26 - 2013-07-09 07:54 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2013-08-14 20:26 - 2013-07-09 07:53 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2013-08-14 20:26 - 2013-07-09 07:51 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2013-08-14 20:26 - 2013-07-09 07:03 - 03968960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2013-08-14 20:26 - 2013-07-09 07:03 - 03913664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2013-08-14 20:26 - 2013-07-09 06:53 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2013-08-14 20:26 - 2013-07-09 06:52 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2013-08-14 20:26 - 2013-07-09 06:52 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2013-08-14 20:26 - 2013-07-09 04:49 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2013-08-14 20:26 - 2013-07-09 04:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2013-08-14 20:26 - 2013-07-09 04:49 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2013-08-14 20:26 - 2013-07-09 04:49 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2013-08-14 20:26 - 2013-07-06 08:03 - 01910208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-08-14 20:26 - 2013-06-15 06:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2013-08-10 20:44 - 2013-08-10 20:44 - 00000000 ____D C:\ProgramData\APN
2013-08-10 20:42 - 2013-08-31 10:17 - 00000000 ____D C:\ProgramData\Avira
2013-08-10 20:42 - 2013-08-10 20:42 - 00000000 ____D C:\Program Files (x86)\Avira
2013-08-10 18:46 - 2013-08-11 09:36 - 00000000 ____D C:\Windows\8AE3CFB678B24F55A7BE618FCFF43A03.TMP
==================== One Month Modified Files and Folders =======
2013-09-09 17:09 - 2013-09-09 17:09 - 01948948 _____ (Farbar) C:\Users\test\Downloads\FRST64.exe
2013-09-09 17:08 - 2013-09-09 17:05 - 00016452 _____ C:\Users\test\Downloads\SystemLook.txt
2013-09-09 17:04 - 2013-09-09 17:04 - 00165376 _____ C:\Users\test\Downloads\SystemLook_x64.exe
2013-09-09 17:03 - 2012-09-08 08:40 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-09-09 17:02 - 2011-07-04 16:26 - 01381714 _____ C:\Windows\WindowsUpdate.log
2013-09-09 16:46 - 2009-07-14 06:45 - 00021856 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-09-09 16:46 - 2009-07-14 06:45 - 00021856 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-09-09 16:41 - 2013-08-30 23:27 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-09-09 16:39 - 2013-08-30 23:27 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2013-09-09 16:37 - 2013-09-08 10:45 - 00003284 _____ C:\Windows\PFRO.log
2013-09-09 16:37 - 2013-09-08 10:45 - 00000392 _____ C:\Windows\setupact.log
2013-09-09 16:37 - 2013-08-30 23:27 - 00001102 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-09-09 16:37 - 2011-07-04 16:36 - 00000000 ____D C:\ProgramData\NVIDIA
2013-09-09 16:37 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-09-09 00:35 - 2013-09-09 00:30 - 00000000 ____D C:\Users\test\Desktop\Neuer Ordner
2013-09-09 00:28 - 2013-09-09 00:28 - 00040541 _____ C:\Users\test\Desktop\FRST.txt
2013-09-09 00:28 - 2013-09-09 00:27 - 00025798 _____ C:\Users\test\Desktop\Addition.txt
2013-09-08 22:44 - 2011-04-12 09:43 - 00664618 _____ C:\Windows\system32\perfh007.dat
2013-09-08 22:44 - 2011-04-12 09:43 - 00134786 _____ C:\Windows\system32\perfc007.dat
2013-09-08 22:44 - 2009-07-14 07:13 - 01527614 _____ C:\Windows\system32\PerfStringBackup.INI
2013-09-08 22:41 - 2013-09-08 22:41 - 02347384 _____ (ESET) C:\Users\test\Downloads\esetsmartinstaller_enu.exe
2013-09-08 22:34 - 2013-09-08 22:34 - 00000000 ____D C:\Users\test\AppData\Roaming\Malwarebytes
2013-09-08 22:33 - 2013-09-08 22:33 - 00001166 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-09-08 22:33 - 2013-09-08 22:33 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-09-08 22:33 - 2013-09-08 22:33 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-09-08 22:32 - 2013-09-08 22:32 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\test\Downloads\mbam-setup-1.75.0.1300 (4).exe
2013-09-08 22:21 - 2013-09-08 22:21 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\test\Downloads\mbam-setup-1.75.0.1300 (3).exe
2013-09-08 22:05 - 2013-09-08 22:05 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\test\Downloads\mbam-setup-1.75.0.1300 (2).exe
2013-09-08 22:04 - 2013-09-08 22:04 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\test\Downloads\mbam-setup-1.75.0.1300 (1).exe
2013-09-08 22:03 - 2013-09-08 22:03 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\test\Downloads\mbam-setup-1.75.0.1300.exe
2013-09-08 21:53 - 2011-07-07 14:15 - 00000000 ____D C:\Users\test\AppData\Roaming\Skype
2013-09-08 21:51 - 2013-09-08 21:51 - 00000000 ____D C:\FRST
2013-09-08 21:48 - 2011-07-07 11:59 - 00000000 ____D C:\Users\test\AppData\Local\PMB Files
2013-09-08 21:48 - 2011-07-07 11:59 - 00000000 ____D C:\ProgramData\PMB Files
2013-09-08 19:43 - 2013-09-08 19:43 - 00001004 _____ C:\Users\test\Documents\Spielsysteme.txt
2013-09-08 19:30 - 2013-09-08 19:30 - 15707838 _____ C:\Users\test\Downloads\Spielsysteme im Vergleich_Reger.pptx
2013-09-08 17:53 - 2013-09-08 17:51 - 00000000 ____D C:\AdwCleaner
2013-09-08 17:50 - 2013-09-08 17:51 - 01037278 _____ C:\Users\test\Desktop\adwcleaner.exe
2013-09-08 17:50 - 2013-09-08 17:50 - 01037278 _____ C:\Users\test\Downloads\adwcleaner.exe
2013-09-08 17:15 - 2013-09-08 17:14 - 00024321 _____ C:\Users\test\Downloads\Addition.txt
2013-09-08 17:13 - 2013-09-08 17:13 - 00000000 ____D C:\Users\test\Desktop\FRST
2013-09-08 15:10 - 2013-09-08 10:37 - 00000000 ____D C:\Users\test\AppData\Roaming\iSafe
2013-09-08 10:45 - 2013-09-08 10:45 - 00000000 _____ C:\Windows\setuperr.log
2013-09-08 10:43 - 2013-09-08 10:43 - 00633672 _____ (Woodtale Technology Inc) C:\Users\test\Downloads\iSafedl (1).exe
2013-09-08 10:38 - 2013-09-08 10:38 - 00000000 ____D C:\Users\test\AppData\Roaming\eCyber
2013-09-08 10:37 - 2013-09-08 10:37 - 00633672 _____ (Woodtale Technology Inc) C:\Users\test\Downloads\iSafedl.exe
2013-09-08 10:34 - 2011-07-07 14:26 - 00064152 _____ C:\Users\test\AppData\Local\GDIPFONTCACHEV1.DAT
2013-09-08 10:34 - 2011-07-04 16:26 - 00000000 ____D C:\Users\test
2013-09-08 10:33 - 2013-09-07 11:14 - 00000000 ____D C:\Users\test\AppData\Local\Freemium
2013-09-08 10:33 - 2013-09-07 10:54 - 00000000 ____D C:\Users\test\AppData\Roaming\LavFilters
2013-09-08 10:33 - 2013-09-07 10:54 - 00000000 ____D C:\Users\test\AppData\Roaming\CDXReader
2013-09-08 10:33 - 2013-09-07 10:36 - 00000000 ____D C:\ProgramData\Package Cache
2013-09-08 10:33 - 2013-09-07 10:36 - 00000000 ____D C:\ProgramData\FreeSystemUtilities
2013-09-08 10:33 - 2013-08-31 10:26 - 00000000 ____D C:\Program Files (x86)\Ashampoo
2013-09-08 10:33 - 2013-08-02 19:44 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking
2013-09-08 10:33 - 2013-08-02 19:43 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
2013-09-08 10:33 - 2013-05-26 17:10 - 00000000 ____D C:\Program Files\Panzar
2013-09-08 10:33 - 2013-04-05 14:09 - 00000000 ____D C:\Program Files (x86)\GameforgeLive
2013-09-08 10:33 - 2013-03-25 21:07 - 00000000 ____D C:\Program Files (x86)\DivX
2013-09-08 10:33 - 2013-03-25 21:06 - 00000000 ____D C:\ProgramData\DivX
2013-09-08 10:33 - 2012-01-14 16:31 - 00000000 ___HD C:\Users\test\Documents\Runes of Magic
2013-09-08 10:33 - 2011-07-07 14:15 - 00000000 ____D C:\Program Files (x86)\Google
2013-09-08 10:32 - 2012-10-20 20:31 - 00000000 ____D C:\Windows\Minidump
2013-09-08 10:32 - 2011-07-13 12:32 - 00000000 ____D C:\Users\test\Desktop\Henrik dateien
2013-09-08 10:32 - 2011-07-07 14:16 - 00000000 ____D C:\Users\test\AppData\Local\Google
2013-09-08 10:32 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\registration
2013-09-08 10:31 - 2013-09-07 10:36 - 00000000 ____D C:\Program Files (x86)\Covus Freemium
2013-09-08 10:31 - 2011-07-07 14:16 - 00000000 ____D C:\Program Files\Google
2013-09-08 10:28 - 2013-09-08 10:28 - 00000000 ____D C:\Users\test\AppData\Roaming\Avira
2013-09-08 10:11 - 2011-07-07 14:09 - 00000000 ____D C:\Users\test\AppData\Roaming\Macromedia
2013-09-08 09:49 - 2013-09-08 09:48 - 37672592 _____ (Safer-Networking Ltd. ) C:\Users\test\Downloads\spybotsd-2.1.21-SR2 (1).exe
2013-09-07 11:14 - 2013-09-07 10:54 - 00000000 ____D C:\Program Files (x86)\DSP-worx
2013-09-07 11:11 - 2009-07-14 06:45 - 00305504 _____ C:\Windows\system32\FNTCACHE.DAT
2013-09-07 10:56 - 2013-09-07 10:56 - 00000000 ____D C:\Users\test\AppData\Local\avgchrome
2013-09-07 10:42 - 2009-07-14 04:34 - 61341696 _____ C:\Windows\system32\config\SOFTWARE.bak
2013-09-07 10:42 - 2009-07-14 04:34 - 18874368 _____ C:\Windows\system32\config\SYSTEM.bak
2013-09-07 10:42 - 2009-07-14 04:34 - 00262144 _____ C:\Windows\system32\config\SECURITY.bak
2013-09-07 10:41 - 2013-09-07 10:36 - 00001656 _____ C:\Windows\system32\ASOROSet.bin
2013-09-07 10:38 - 2009-07-14 04:34 - 00262144 _____ C:\Windows\system32\config\SAM.bak
2013-09-07 10:37 - 2013-08-31 10:33 - 00000000 ____D C:\Windows\system32\config\RCCBakup
2013-09-07 10:36 - 2013-09-07 10:36 - 00002563 _____ C:\Users\Public\Desktop\Free System Utilities.lnk
2013-09-07 10:34 - 2013-09-07 10:34 - 00444408 _____ C:\Users\test\Downloads\free-system-utilities-DE.exe
2013-09-07 10:28 - 2013-04-06 00:57 - 00000859 _____ C:\Windows\client.config.ini
2013-09-05 15:47 - 2013-08-30 23:30 - 00002236 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2013-09-03 15:59 - 2009-07-14 07:08 - 00032632 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-09-01 17:30 - 2013-08-02 23:37 - 00001124 _____ C:\Users\Public\Desktop\Gameforge Live.lnk
2013-09-01 17:08 - 2011-07-04 16:26 - 00000000 ___RD C:\Users\test\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-09-01 16:59 - 2013-08-30 23:27 - 00001922 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2013-09-01 16:59 - 2013-08-30 23:27 - 00000000 _____ C:\Windows\SysWOW64\config.nt
2013-09-01 08:57 - 2013-08-31 10:19 - 00000000 ____D C:\Program Files (x86)\Amazon
2013-08-31 10:36 - 2011-07-04 23:19 - 00000000 ____D C:\Windows\Panther
2013-08-31 10:19 - 2013-08-31 10:19 - 00129536 _____ C:\Users\Public\AlexaNSISPlugin.3832.dll
2013-08-31 10:17 - 2013-08-10 20:42 - 00000000 ____D C:\ProgramData\Avira
2013-08-30 23:36 - 2013-08-30 23:27 - 00004102 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-08-30 23:35 - 2013-08-30 23:27 - 00003850 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-08-30 23:27 - 2013-08-30 23:27 - 01030952 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2013-08-30 23:27 - 2013-08-30 23:27 - 00378944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2013-08-30 23:27 - 2013-08-30 23:27 - 00189936 _____ C:\Windows\system32\Drivers\aswVmm.sys
2013-08-30 23:27 - 2013-08-30 23:27 - 00000175 _____ C:\Windows\system32\Drivers\aswVmm.sys.sum
2013-08-30 23:27 - 2013-08-30 23:27 - 00000175 _____ C:\Windows\system32\Drivers\aswSP.sys.sum
2013-08-30 23:27 - 2013-08-30 23:27 - 00000175 _____ C:\Windows\system32\Drivers\aswSnx.sys.sum
2013-08-30 23:26 - 2013-08-30 23:26 - 00000000 ____D C:\ProgramData\AVAST Software
2013-08-30 23:26 - 2013-08-30 23:26 - 00000000 ____D C:\Program Files\AVAST Software
2013-08-26 11:13 - 2013-08-26 11:13 - 00354656 _____ (DivX, Inc.) C:\Windows\SysWOW64\DivXControlPanelApplet.cpl
2013-08-25 12:40 - 2011-07-07 11:50 - 00000000 ____D C:\Users\test\AppData\Roaming\TS3Client
2013-08-25 12:34 - 2013-08-25 12:34 - 00502874 _____ C:\Program Files\usb.ids
2013-08-25 12:34 - 2011-08-27 08:52 - 00000000 _____ C:\Program Files\update.ini
2013-08-25 12:34 - 2011-07-07 11:49 - 00000000 ____D C:\Program Files\translations
2013-08-25 12:34 - 2011-07-07 11:49 - 00000000 ____D C:\Program Files\styles
2013-08-25 12:34 - 2011-07-07 11:49 - 00000000 ____D C:\Program Files\soundbackends
2013-08-25 12:34 - 2011-07-07 11:49 - 00000000 ____D C:\Program Files\plugins
2013-08-25 12:34 - 2011-06-08 14:56 - 13771752 _____ (TeamSpeak Systems GmbH) C:\Program Files\ts3client_win64.exe
2013-08-25 12:34 - 2011-06-08 14:56 - 00499176 _____ (TeamSpeak Systems GmbH) C:\Program Files\update.exe
2013-08-25 12:34 - 2011-06-08 14:56 - 00230376 _____ (TeamSpeak Systems GmbH) C:\Program Files\package_inst.exe
2013-08-25 12:33 - 2011-07-07 11:49 - 00000000 ____D C:\Program Files\imageformats
2013-08-25 12:33 - 2011-07-07 11:49 - 00000000 ____D C:\Program Files\accessible
2013-08-24 10:51 - 2013-08-24 10:30 - 00000000 ____D C:\Users\test\Desktop\Günther Backup
2013-08-21 14:03 - 2012-09-08 08:40 - 00692104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-08-21 14:03 - 2012-09-08 08:40 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-08-21 14:03 - 2011-07-07 20:22 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-08-18 23:12 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache
2013-08-14 23:26 - 2013-08-14 23:24 - 00000000 ____D C:\Windows\system32\MRT
2013-08-14 23:24 - 2011-07-11 21:48 - 78161360 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-08-13 08:38 - 2013-09-07 10:38 - 00032328 _____ C:\Windows\Launcher.exe
2013-08-11 09:36 - 2013-08-10 18:46 - 00000000 ____D C:\Windows\8AE3CFB678B24F55A7BE618FCFF43A03.TMP
2013-08-10 20:44 - 2013-08-10 20:44 - 00000000 ____D C:\ProgramData\APN
2013-08-10 20:42 - 2013-08-10 20:42 - 00000000 ____D C:\Program Files (x86)\Avira
2013-08-10 12:16 - 2013-07-17 11:48 - 00000000 ____D C:\Users\test\AppData\Roaming\Opera Software
2013-08-10 12:16 - 2012-06-17 11:10 - 00000000 ____D C:\Program Files (x86)\Opera
Files to move or delete:
====================
C:\Users\Public\AlexaNSISPlugin.3832.dll
C:\Users\test\AppData\Local\Temp\Quarantine.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-09-08 11:56
==================== End Of Log ============================ --- --- ---
--- --- ---
Addition : Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 09-09-2013
Ran by test at 2013-09-09 17:10:16
Running from C:\Users\test\Downloads
Boot Mode: Normal
==========================================================
==================== Installed Programs =======================
7-Zip 9.20 (x32)
7-Zip 9.20 (x64 edition) (Version: 9.20.00.0)
Adobe Flash Player 11 ActiveX (x32 Version: 11.8.800.94)
Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.94)
Adobe Reader X (10.1.7) - Deutsch (x32 Version: 10.1.7)
Age of Conan: Hyborian Adventures (x32)
AoC Patch 1.1c by Omega (x32 Version: 1.1.3)
Apple Application Support (x32 Version: 2.2.2)
Apple Mobile Device Support (Version: 6.0.0.59)
Apple Software Update (x32 Version: 2.1.3.127)
avast! Free Antivirus (x32 Version: 8.0.1489.0)
AVM FRITZ!WLAN (x32)
Bonjour (Version: 3.0.0.10)
D3DX10 (x32 Version: 15.4.2368.0902)
DivX-Setup (x32 Version: 2.6.1.8)
Dota 2 (x32)
EEC Patch 2.1b by Omega (x32 Version: 1.0.0)
Forged By Chaos (x32)
Fotogalerie (x32 Version: 16.4.3505.0912)
Free System Utilities (x32 Version: 1.1.0.149)
Free SystemUtilities (x32 Version: 1.1.0.149)
Free YouTube to MP3 Converter version 3.11.35.1031 (x32 Version: 3.11.35.1031)
Gameforge Live 1.7.0 "Legend" (x32 Version: 1.7.0)
Google Chrome (x32 Version: 29.0.1547.66)
Google Toolbar for Internet Explorer (x32 Version: 1.0.0)
Google Toolbar for Internet Explorer (x32 Version: 7.5.4413.1752)
Google Update Helper (x32 Version: 1.3.21.153)
iTunes (Version: 10.7.0.21)
Java Auto Updater (x32 Version: 2.0.7.1)
Java(TM) 6 Update 35 (x32 Version: 6.0.350)
League of Legends (x32 Version: 1.02.0000)
Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300)
Microsoft .NET Framework 1.1 (x32 Version: 1.1.4322)
Microsoft .NET Framework 1.1 (x32)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Silverlight (Version: 5.1.20513.0)
Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219)
Movie Maker (x32 Version: 16.4.3505.0912)
MSVCRT (x32 Version: 15.4.2862.0708)
MSVCRT110 (x32 Version: 16.4.1108.0727)
MSVCRT110_amd64 (Version: 16.4.1109.0912)
MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0)
Nexon Game Manager (x32)
NVIDIA 3D Vision Controller Driver (x32 Version: 280.19)
NVIDIA 3D Vision Controller-Treiber 280.19 (Version: 280.19)
NVIDIA 3D Vision Treiber 311.06 (Version: 311.06)
NVIDIA Grafiktreiber 311.06 (Version: 311.06)
NVIDIA HD-Audiotreiber 1.2.23.3 (Version: 1.2.23.3)
NVIDIA Install Application (Version: 2.1002.108.688)
NVIDIA PhysX (x32 Version: 9.10.0514)
NVIDIA PhysX-Systemsoftware 9.10.0514 (Version: 9.10.0514)
NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.1106)
NVIDIA Systemsteuerung 311.06 (Version: 311.06)
NVIDIA Update 1.11.3 (Version: 1.11.3)
NVIDIA Update Components (Version: 1.11.3)
OpenOffice.org 3.3 (x32 Version: 3.3.9567)
Opera Stable 15.0.1147.141 (x32 Version: 15.0.1147.141)
Pando Media Booster (x32 Version: 2.3.6.0)
Panzar (x32 Version: 1.0)
Photo Gallery (x32 Version: 16.4.3505.0912)
QuickTime (x32 Version: 7.72.80.56)
rosoft .NET Framework 4 Client Profile (Version: 4.0.30320)
Runes of Magic (x32 Version: 5.0.5.2592)
ShotOnline (x32 Version: 1.0)
Skype Click to Call (x32 Version: 5.9.9216)
Skype™ 6.6 (x32 Version: 6.6.106)
Spybot - Search & Destroy (x32 Version: 2.1.21)
Steam (x32 Version: 1.0.0.0)
System Requirements Lab (x32)
Team Fortress 2 (x32)
TeamSpeak 3 Client (Version: 3.0.11.1)
TeamViewer 8 (x32 Version: 8.0.17396)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1)
VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0)
Windows Live Communications Platform (x32 Version: 16.4.3505.0912)
Windows Live Essentials (x32 Version: 16.4.3505.0912)
Windows Live ID Sign-in Assistant (Version: 7.250.4311.0)
Windows Live Installer (x32 Version: 16.4.3505.0912)
Windows Live Photo Common (x32 Version: 16.4.3505.0912)
Windows Live PIMT Platform (x32 Version: 16.4.3505.0912)
Windows Live SOXE (x32 Version: 16.4.3505.0912)
Windows Live SOXE Definitions (x32 Version: 16.4.3505.0912)
Windows Live UX Platform (x32 Version: 16.4.3505.0912)
Windows Live UX Platform Language Pack (x32 Version: 16.4.3505.0912)
==================== Restore Points =========================
01-09-2013 14:49:25 Wiederherstellungsvorgang
03-09-2013 14:05:00 Windows Update
06-09-2013 14:43:10 Windows Update
07-09-2013 08:35:19 RegClean Pro Sa, Sep 07, 13 10:35
07-09-2013 08:35:32 Free System Utilities
08-09-2013 07:56:57 Wiederherstellungsvorgang
==================== Hosts content: ==========================
2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {044A6734-E90E-4F8F-B357-B2DC8AB3B5EC} - System32\Tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime => Sc.exe start w32time task_started
Task: {138CBD4D-1194-4A70-B3FC-5D86D6BBAE0C} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe
Task: {14D4277B-EE64-45A4-9810-B567265C78CB} - System32\Tasks\Google Updater and Installer => C:\Users\test\AppData\Local\Google\Update\GoogleUpdate.exe
Task: {14FDA12B-B08C-4CB6-BBC6-B83470AF42D1} - System32\Tasks\SmartDefrag_Startup => C:\Program Files (x86)\IObit\Smart Defrag 2\SmartDefrag.exe
Task: {1AC01104-A6D1-4EAE-AD5F-2415F7B812DE} - \Software Updater No Task File
Task: {2BCF74CC-86F5-40A2-B114-F70D4B07A2AF} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2013-05-09] (AVAST Software)
Task: {34EC0EBF-C80A-4D6C-B72A-100E625BC350} - System32\Tasks\{5265C104-E78F-4D1E-AF0E-E4078EACCB71} => C:\Program Files (x86)\Skype\\Phone\Skype.exe [2013-06-21] (Skype Technologies S.A.)
Task: {404C1CAE-6DAC-405D-8004-61358DEF84FF} - \DSite No Task File
Task: {413744C1-8658-45D7-95CB-F4F1551716FA} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04] (Adobe Systems Incorporated)
Task: {43D5B31F-37A1-4C6A-955F-675B0829C250} - \Software Updater Ui No Task File
Task: {4E0744F9-4BCC-44B8-9682-D6A6CBCAEF57} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-08-30] (Google Inc.)
Task: {68F3A92C-4D7D-4425-A752-D211D98C071B} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe
Task: {9A626B14-246A-471D-A86D-2FE1BCBDB608} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-08-21] (Adobe Systems Incorporated)
Task: {B49E5CB7-6A61-41F8-80D6-F55465EFE601} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-08-30] (Google Inc.)
Task: {C1ACE91F-3393-4701-8CDB-D25D96CAADAA} - System32\Tasks\{16D66D41-E27A-483F-BD47-4D374B567D28} => C:\Program Files (x86)\Steam\Steam.exe [2013-03-26] (Valve Corporation)
Task: {C817DCAE-0B55-41CC-9F98-9ADBE32651CC} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task
Task: {CE09775D-4CC6-4312-808B-575D67BE89C0} - \Advanced System Protector_startup No Task File
Task: {CE49E1E0-57F5-41F6-9F4A-9E3D4F7CCABA} - System32\Tasks\{0852D436-A8DD-49E8-835F-5A0B7BD1CA60} => C:\Program Files (x86)\Skype\\Phone\Skype.exe [2013-06-21] (Skype Technologies S.A.)
Task: {DDC7EA78-C350-4BEB-A7F8-EFA349D1E2A9} - \Freemium1ClickMaint No Task File
Task: {E68955A5-3AD6-43A6-8C58-03C456F5D9BE} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2012-01-18] (Sun Microsystems, Inc.)
Task: {E6BEA77D-977E-44E0-93FA-214448E1972E} - System32\Tasks\Game_Booster_Startup => C:\Program Files\Game Booster 3\gbtray.exe
Task: {EBA43CEA-5176-4C02-9968-AD6F73790378} - System32\Tasks\{BDC1257A-6E1F-459D-89D1-4A886738613D} => C:\Riot Games\League of Legends\lol.launcher.exe [2011-04-28] ()
Task: {F1CAE351-1C2B-4FCE-A70B-BFBD68E51031} - System32\Tasks\Microsoft\Windows Defender\MP Scheduled Scan => c:\program files\windows defender\MpCmdRun.exe [2009-07-14] (Microsoft Corporation)
Task: {FC585867-1C00-4FED-9404-A14A25BF0A1D} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {FF32BE75-EAC7-475C-B59A-B17AF4B3972D} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2013-09-05 15:47 - 2013-09-02 22:35 - 09962960 _____ (The ICU Project) C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.66\icudt.dll
2013-09-05 15:47 - 2013-09-02 22:35 - 00709584 _____ () C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.66\libglesv2.dll
2013-09-05 15:47 - 2013-09-02 22:35 - 00099792 _____ () C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.66\libegl.dll
2013-09-05 15:47 - 2013-09-02 22:35 - 04053456 _____ () C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.66\pdf.dll
2013-09-05 15:47 - 2013-09-02 22:35 - 00410576 _____ () C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.66\ppGoogleNaClPluginChrome.dll
2013-09-05 15:47 - 2013-09-02 22:35 - 01604560 _____ () C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.66\ffmpegsumo.dll
2013-09-05 15:47 - 2013-09-02 22:35 - 13599184 _____ () C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.66\PepperFlash\pepflashplayer.dll
==================== Alternate Data Streams (whitelisted) ==========
AlternateDataStreams: C:\ProgramData\TEMP:DFC5A2B2
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (09/09/2013 04:37:35 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (09/09/2013 00:25:19 AM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Error: (09/08/2013 10:41:50 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Error: (09/08/2013 10:41:47 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Error: (09/08/2013 10:01:15 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (09/08/2013 09:54:35 PM) (Source: Application Hang) (User: )
Description: Programm FRST64.exe, Version 3.3.8.1 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: 144c
Startzeit: 01ceacccd7bf7e00
Endzeit: 60000
Anwendungspfad: C:\Users\test\Downloads\FRST64.exe
Berichts-ID: 45a2a001-18c0-11e3-8e17-00040ec28c97
Error: (09/08/2013 07:52:02 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (09/08/2013 05:56:07 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (09/08/2013 05:38:23 PM) (Source: MsiInstaller) (User: test-PC)
Description: Produkt: Avira SearchFree Toolbar plus Web Protection -- Fehler 25001. Die folgenden Anwendungen sollten geschlossen werden, bevor Sie mit der Deinstallation fortfahren:
Google Chrome
Error: (09/08/2013 05:38:23 PM) (Source: MsiInstaller) (User: test-PC)
Description: Produkt: Avira SearchFree Toolbar plus Web Protection -- Fehler 25001. Die folgenden Anwendungen sollten geschlossen werden, bevor Sie mit der Deinstallation fortfahren:
Google Chrome
System errors:
=============
Error: (09/09/2013 04:39:40 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1069
Error: (09/09/2013 04:39:40 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden:
%%1330
Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC).
Error: (09/08/2013 10:03:15 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1069
Error: (09/08/2013 10:03:15 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden:
%%1330
Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC).
Error: (09/08/2013 10:00:10 PM) (Source: EventLog) (User: )
Description: Das System wurde zuvor am 08.09.2013 um 21:58:37 unerwartet heruntergefahren.
Error: (09/08/2013 07:54:04 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1069
Error: (09/08/2013 07:54:04 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden:
%%1330
Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC).
Error: (09/08/2013 05:58:18 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1069
Error: (09/08/2013 05:58:18 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden:
%%1330
Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC).
Error: (09/08/2013 05:55:27 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Spybot-S&D 2 Scanner Service" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Microsoft Office Sessions:
=========================
Error: (09/09/2013 04:37:35 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (09/09/2013 00:25:19 AM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Program Files (x86)\ESET\ESET Online Scanner\ESETSmartInstaller.exe
Error: (09/08/2013 10:41:50 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\test\Downloads\esetsmartinstaller_enu.exe
Error: (09/08/2013 10:41:47 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\test\Downloads\esetsmartinstaller_enu.exe
Error: (09/08/2013 10:01:15 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (09/08/2013 09:54:35 PM) (Source: Application Hang)(User: )
Description: FRST64.exe3.3.8.1144c01ceacccd7bf7e0060000C:\Users\test\Downloads\FRST64.exe45a2a001-18c0-11e3-8e17-00040ec28c97
Error: (09/08/2013 07:52:02 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (09/08/2013 05:56:07 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (09/08/2013 05:38:23 PM) (Source: MsiInstaller)(User: test-PC)
Description: Produkt: Avira SearchFree Toolbar plus Web Protection -- Fehler 25001. Die folgenden Anwendungen sollten geschlossen werden, bevor Sie mit der Deinstallation fortfahren:
Google Chrome(NULL)(NULL)(NULL)(NULL)(NULL)
Error: (09/08/2013 05:38:23 PM) (Source: MsiInstaller)(User: test-PC)
Description: Produkt: Avira SearchFree Toolbar plus Web Protection -- Fehler 25001. Die folgenden Anwendungen sollten geschlossen werden, bevor Sie mit der Deinstallation fortfahren:
Google Chrome(NULL)(NULL)(NULL)(NULL)(NULL)
==================== Memory info ===========================
Percentage of memory in use: 39%
Total physical RAM: 4095.23 MB
Available physical RAM: 2466 MB
Total Pagefile: 8188.64 MB
Available Pagefile: 6479.07 MB
Total Virtual: 8192 MB
Available Virtual: 8191.82 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:465.66 GB) (Free:335.68 GB) NTFS
Drive d: (EEARTH) (CDROM) (Total:0.55 GB) (Free:0 GB) CDFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 955B108D)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=466 GB) - (Type=07 NTFS)
==================== End Of Log ============================ |