'Tschuldigung für das Missverständnis, dachte zu große Logs sollen immer in ein Archiv gepackt werden.
Addition.txt Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 24-09-2013
Ran by Acer at 2013-09-25 14:36:41
Running from C:\Users\Acer\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: McAfee Anti-Virus und Anti-Spyware (Enabled - Up to date) {ADA629C7-7F48-5689-624A-3B76997E0892}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: McAfee Anti-Virus und Anti-Spyware (Enabled - Up to date) {16C7C823-5972-5907-58FA-0004E2F9422F}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: McAfee Firewall (Enabled) {959DA8E2-3527-57D1-4915-924367AD4FE9}
==================== Installed Programs ======================
clear.fi SDK - Video 2 (x32 Version: 2.1.2606)
clear.fi SDK- Movie 2 (x32 Version: 2.1.2606)
µTorrent (HKCU Version: 3.3.1.30017)
7-Zip 9.20 (x64 edition) (Version: 9.20.00.0)
Acer Device Fast-lane (Version: 1.00.3011)
Acer Instant Update Service (Version: 1.00.3015)
Acer Launch Manager (Version: 8.00.3003)
Acer Power Management (Version: 7.00.3013)
Acer Recovery Management (Version: 6.00.3016)
Acer USB Charge Manager (Version: 2.00.3003)
AcerCloud Docs (x32 Version: 1.01.2008)
AcerCloud Portal (x32 Version: 2.02.2021)
Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.168)
Awesomenauts (x32)
Bastion (x32)
Battlefield 3™ (x32 Version: 1.6.0.0)
Battlelog Web Plugins (x32 Version: 2.1.7)
Bejeweled 3 (x32 Version: 2.2.0.98)
Burnout Paradise: The Ultimate Box (x32)
CDisplayEx 1.9.12
clear.fi Media (x32 Version: 2.02.2012)
clear.fi Photo (x32 Version: 2.02.2016)
CyberLink MediaEspresso 6.5 (x32 Version: 6.5.3729_45993)
Delicious: Emily's Childhood Memories Premium Edition (x32 Version: 3.0.2.32)
Dolby Home Theater v4 (x32 Version: 7.2.8000.17)
eBay Worldwide (x32 Version: 2.4.0105)
ESN Sonar (x32 Version: 0.70.4)
ETDWare PS/2-X64 11.6.19.204_WHQL (Version: 11.6.19.204)
foobar2000 v1.2.9 (x32 Version: 1.2.9)
Google Chrome (x32 Version: 29.0.1547.76)
Google Update Helper (x32 Version: 1.3.21.153)
Governor of Poker 2 Premium Edition (x32 Version: 2.2.0.110)
Identity Card (x32 Version: 2.00.3006)
Intel(R) Management Engine Components (x32 Version: 9.0.0.1310)
Intel(R) Processor Graphics (x32 Version: 9.18.10.3071)
Intel(R) Rapid Storage Technology (Version: 12.0.0.1083)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (x32 Version: 3.0.0.63463)
Intel® Trusted Connect Service Client (Version: 1.27.757.1)
IPFilter Updater (HKCU Version: 1.0.0.7)
Jewel Match 3 (x32 Version: 2.2.0.98)
John Deere Drive Green (x32 Version: 2.2.0.95)
Just Cause 1.00.0000 (x32 Version: 1.00.0000)
KCP-0.5.4.0 (x32 Version: 0.5.4.0)
Last.fm Scrobbler 2.1.36 (x32)
League of Legends (x32 Version: 3.0.1)
LIMBO (x32)
Live Updater (x32 Version: 2.00.3010)
Magic Academy (x32 Version: 2.2.0.98)
Magicka (x32)
Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300)
Mark of the Ninja (x32)
McAfee Internet Security Suite (x32 Version: 12.8.750)
Microsoft Office (x32 Version: 15.0.4454.1510)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.59192)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219)
Microsoft Visual Studio 2005 Tools for Office Runtime (x32 Version: 8.0.60940.0)
Microsoft XNA Framework Redistributable 3.1 (x32 Version: 3.1.10527.0)
mIRC (x32 Version: 7.32)
Mozilla Firefox 23.0.1 (x86 de) (x32 Version: 23.0.1)
Mozilla Maintenance Service (x32 Version: 23.0.1)
Nero BackItUp (x32 Version: 12.5.5000)
Nero BackItUp 12 Essentials OEM.a01 (x32 Version: 12.5.00500)
Nero BackItUp Help (CHM) (x32 Version: 12.0.10000)
Nero ControlCenter (x32 Version: 11.0.15600)
Nero ControlCenter Help (CHM) (x32 Version: 12.0.7000)
Nero Core Components (x32 Version: 11.0.20200)
Nero Launcher (x32 Version: 12.2.7000)
Nero RescueAgent (x32 Version: 12.0.3001)
Nero RescueAgent Help (CHM) (x32 Version: 12.0.7000)
Nero Update (x32 Version: 11.0.11800.31.0)
Norton Online Backup (x32 Version: 2.2.3.51r2)
Norton Online Backup ARA (x32 Version: 4.1.0.14)
NVIDIA Grafiktreiber 311.30 (Version: 311.30)
NVIDIA Install Application (Version: 2.1002.109.706)
NVIDIA Optimus 1.11.3 (Version: 1.11.3)
NVIDIA PhysX (x32 Version: 9.12.1031)
NVIDIA PhysX-Systemsoftware 9.12.1031 (Version: 9.12.1031)
NVIDIA Systemsteuerung 311.30 (Version: 311.30)
NVIDIA Update 1.11.3 (Version: 1.11.3)
NVIDIA Update Components (Version: 1.11.3)
Office Addin (x32 Version: 2.02.2008)
Origin (x32 Version: 9.3.2.2730)
Pando Media Booster (x32 Version: 2.6.0.7)
Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98)
Portal (x32)
Prerequisite installer (x32 Version: 12.0.0003)
PunkBuster Services (x32 Version: 0.991)
Qualcomm Atheros Bluetooth Suite (64) (Version: 8.0.0.220)
Qualcomm Atheros WiFi Driver Installation (x32 Version: 11.39)
Realtek High Definition Audio Driver (x32 Version: 6.0.1.6865)
Realtek PCIE Card Reader (x32 Version: 6.2.9200.28130)
Shared C Run-time for x64 (Version: 10.0.0)
Spotify (x32 Version: 0.8.4.99.ga249b5f1)
StarCraft II (x32 Version: 2.0.11.26825)
Steam (x32 Version: 1.0.0.0)
Tales of Lagoona (x32 Version: 2.2.0.110)
Unity Web Player (HKCU Version: )
Visual Studio 2005 Tools for Office Second Edition Runtime (x32)
Visual Studio Tools for the Office system 3.0 Runtime (x32 Version: 9.0.30729)
Visual Studio Tools for the Office system 3.0 Runtime (x32)
Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258) (x32 Version: 1)
War Thunder (x32)
WildTangent Games (x32 Version: 1.0.4.0)
World of Tanks (x32)
XBMC (HKCU)
X-Chat 2.8.6-2 (x32 Version: 2.8.6-2)
==================== Restore Points =========================
15-09-2013 01:40:32 DirectX wurde installiert
17-09-2013 21:19:12 DirectX wurde installiert
19-09-2013 15:13:33 DirectX wurde installiert
24-09-2013 18:12:09 Windows Update
==================== Hosts content: ==========================
2012-07-26 07:26 - 2012-07-26 07:26 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {2D0FDF4F-C71C-4DF3-8F30-BA8FFF39C544} - System32\Tasks\ALUAgent => C:\Program Files (x86)\Acer\Live Updater\liveupdater_agent.exe [2013-01-22] ()
Task: {2DCD1F17-3299-45E9-8414-B22B76EA46A6} - System32\Tasks\ALU => C:\Program Files (x86)\Acer\Live Updater\updater.exe [2013-03-13] ()
Task: {30EF0F5B-2AE5-469C-839C-8A3935E92F1F} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-09-10] (Google Inc.)
Task: {3A600470-DBFB-4654-9443-A548A42751F1} - System32\Tasks\DeviceDetector => C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe [2013-02-08] (CyberLink)
Task: {53758748-482A-4E4D-9CCB-E471079404DE} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-09-10] (Google Inc.)
Task: {5A7C88F4-292F-4C0B-8416-4AD6B42F5400} - System32\Tasks\iuBrowserIEAgent => C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe [2013-02-08] ()
Task: {9008523A-7CA0-4FD3-A403-E2DF74BBEA54} - System32\Tasks\Launch Manager => C:\Program Files\Acer\Acer Launch Manager\LMLauncher.exe [2013-03-15] (Acer Incorporate)
Task: {900B74C0-60C1-4287-A325-D8E0D493EF8D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-09-13] (Adobe Systems Incorporated)
Task: {A92368CB-B715-44E6-8AFF-B02810564117} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTray.exe [2013-03-15] (Acer Incorporated)
Task: {A9CDDC0E-36CA-48B0-B4F6-DBD7A6F6573C} - System32\Tasks\Microsoft\Windows\Setup\Pre-staged GDR Notification => C:\Windows\system32\NotificationUI.exe [2013-08-16] (Microsoft Corporation)
Task: {C72188BA-68E2-4240-AFC5-5C79612691D2} - System32\Tasks\iuEmailOutlookAgent => C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe [2013-02-08] ()
Task: {F0070297-8E8F-46BE-B838-8C106361842F} - System32\Tasks\Dolby Selector => C:\Dolby PCEE4\pcee4.exe [2012-08-31] (Dolby Laboratories Inc.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2013-04-25 12:47 - 2013-02-21 00:55 - 01110024 _____ (NVIDIA Corporation) C:\Windows\SYSTEM32\nvumdshimx.dll
2013-04-25 12:47 - 2013-02-21 00:55 - 00245872 _____ (NVIDIA Corporation) C:\Windows\SYSTEM32\nvinitx.dll
2013-04-25 12:47 - 2013-02-21 00:55 - 02832720 _____ (NVIDIA Corporation) C:\Windows\SYSTEM32\nvapi64.dll
2013-04-25 12:48 - 2013-02-20 21:24 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2013-04-01 12:05 - 2013-03-20 06:27 - 00442880 _____ (Intel Corporation) C:\Windows\system32\igfxrDEU.lrc
2013-04-25 12:48 - 2013-02-20 21:24 - 01002272 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2012-08-31 19:22 - 2012-08-31 19:22 - 01080560 _____ (Dolby Laboratories Inc.) C:\Dolby PCEE4\pcee4c.dll
2012-08-31 19:22 - 2012-08-31 19:22 - 00040688 _____ (Dolby Laboratories Inc.) C:\Dolby PCEE4\Dolby.Interop.dll
2013-04-25 12:52 - 2012-08-31 13:17 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2012-08-31 19:21 - 2012-08-31 19:21 - 00020208 _____ (Dolby Laboratories Inc.) C:\Dolby PCEE4\de\pcee4c.resources.dll
2013-04-01 11:12 - 2013-01-02 08:55 - 00175008 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4406.1205_x64__8wekyb3d8bbwe\ModernShared\ErrorReporting\ErrorReporting.dll
2013-01-25 00:09 - 2013-01-25 00:09 - 00011264 _____ () C:\Program Files (x86)\Bluetooth Suite\Modules\ActivateDesktopDebugger\ActivateDesktopDebugger.dll
2013-01-25 00:05 - 2013-01-25 00:05 - 00084992 _____ () C:\Program Files (x86)\Bluetooth Suite\Modules\Map\MAP.dll
2013-04-25 12:52 - 2010-11-03 12:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2013-04-25 12:52 - 2013-03-11 09:07 - 03687496 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll
2013-02-08 23:24 - 2013-02-08 23:24 - 00026184 _____ ( ) C:\Program Files\Acer\Acer Instant Service\InstantUpdate\Interop.NETWORKLIST.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Driver"
==================== Faulty Device Manager Devices =============
Name: Bluetooth USB Module
Description: Bluetooth USB Module
Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974}
Manufacturer: Qualcomm Atheros Communications
Service: BTHUSB
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
==================== Event log errors: =========================
Application errors:
==================
Error: (09/25/2013 02:36:25 PM) (Source: AVLogEvent) (User: NT-AUTORITÄT)
Description: Content is missing.
Error Code:a7f42014
Error: (09/25/2013 02:35:23 PM) (Source: AVLogEvent) (User: NT-AUTORITÄT)
Description: Content is missing.
Error Code:a7f42014
Error: (09/25/2013 02:34:21 PM) (Source: AVLogEvent) (User: NT-AUTORITÄT)
Description: Content is missing.
Error Code:a7f42014
Error: (09/25/2013 02:33:23 PM) (Source: AVLogEvent) (User: NT-AUTORITÄT)
Description: Content is missing.
Error Code:a7f42014
Error: (09/25/2013 02:33:21 PM) (Source: AVLogEvent) (User: NT-AUTORITÄT)
Description: Content is missing.
Error Code:a7f42014
Error: (09/25/2013 02:33:19 PM) (Source: AVLogEvent) (User: NT-AUTORITÄT)
Description: Content is missing.
Error Code:a7f42014
Error: (09/25/2013 02:32:00 PM) (Source: AVLogEvent) (User: NT-AUTORITÄT)
Description: Content is missing.
Error Code:a7f42014
Error: (09/25/2013 02:30:59 PM) (Source: AVLogEvent) (User: NT-AUTORITÄT)
Description: Content is missing.
Error Code:a7f42014
Error: (09/25/2013 02:30:59 PM) (Source: AVLogEvent) (User: NT-AUTORITÄT)
Description: Content is missing.
Error Code:a7f42014
Error: (09/25/2013 02:30:49 PM) (Source: AVLogEvent) (User: NT-AUTORITÄT)
Description: Content is missing.
Error Code:a7f42014
System errors:
=============
Error: (09/25/2013 02:35:00 PM) (Source: DCOM) (User: NT-AUTORITÄT)
Description: {4EB61BAC-A3B6-4760-9581-655041EF4D69}
Error: (09/25/2013 02:33:00 PM) (Source: Service Control Manager) (User: )
Description: Dienst "Google Update-Dienst (gupdate)" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.
Error: (09/25/2013 05:26:42 AM) (Source: DCOM) (User: A)
Description: 1084ShellHWDetectionNicht verfügbar{DD522ACC-F821-461A-A407-50B198B896DC}
Error: (09/25/2013 05:26:34 AM) (Source: DCOM) (User: NT-AUTORITÄT)
Description: 1084McNaiAnnNicht verfügbar{C90134D2-4AE9-407A-919A-4A2EF09C6C51}
Error: (09/25/2013 05:26:34 AM) (Source: DCOM) (User: NT-AUTORITÄT)
Description: 1084McNaiAnnNicht verfügbar{C90134D2-4AE9-407A-919A-4A2EF09C6C51}
Error: (09/25/2013 05:26:34 AM) (Source: DCOM) (User: NT-AUTORITÄT)
Description: 1084McNaiAnnNicht verfügbar{DC7EF8E1-824F-4110-AB43-1604DA9B4F40}
Error: (09/25/2013 05:26:34 AM) (Source: DCOM) (User: NT-AUTORITÄT)
Description: 1084McNaiAnnNicht verfügbar{DC7EF8E1-824F-4110-AB43-1604DA9B4F40}
Error: (09/25/2013 05:26:34 AM) (Source: DCOM) (User: NT-AUTORITÄT)
Description: 1084McNaiAnnNicht verfügbar{DC7EF8E1-824F-4110-AB43-1604DA9B4F40}
Error: (09/25/2013 05:26:34 AM) (Source: DCOM) (User: NT-AUTORITÄT)
Description: 1084McNaiAnnNicht verfügbar{DC7EF8E1-824F-4110-AB43-1604DA9B4F40}
Error: (09/25/2013 05:26:33 AM) (Source: DCOM) (User: NT-AUTORITÄT)
Description: 1084McNaiAnnNicht verfügbar{395633B1-EED9-4DFC-B67F-9788B51C9F06}
Microsoft Office Sessions:
=========================
Error: (09/25/2013 02:36:25 PM) (Source: AVLogEvent)(User: NT-AUTORITÄT)
Description: a7f42014
Error: (09/25/2013 02:35:23 PM) (Source: AVLogEvent)(User: NT-AUTORITÄT)
Description: a7f42014
Error: (09/25/2013 02:34:21 PM) (Source: AVLogEvent)(User: NT-AUTORITÄT)
Description: a7f42014
Error: (09/25/2013 02:33:23 PM) (Source: AVLogEvent)(User: NT-AUTORITÄT)
Description: a7f42014
Error: (09/25/2013 02:33:21 PM) (Source: AVLogEvent)(User: NT-AUTORITÄT)
Description: a7f42014
Error: (09/25/2013 02:33:19 PM) (Source: AVLogEvent)(User: NT-AUTORITÄT)
Description: a7f42014
Error: (09/25/2013 02:32:00 PM) (Source: AVLogEvent)(User: NT-AUTORITÄT)
Description: a7f42014
Error: (09/25/2013 02:30:59 PM) (Source: AVLogEvent)(User: NT-AUTORITÄT)
Description: a7f42014
Error: (09/25/2013 02:30:59 PM) (Source: AVLogEvent)(User: NT-AUTORITÄT)
Description: a7f42014
Error: (09/25/2013 02:30:49 PM) (Source: AVLogEvent)(User: NT-AUTORITÄT)
Description: a7f42014
==================== Memory info ===========================
Percentage of memory in use: 18%
Total physical RAM: 7848.27 MB
Available physical RAM: 6400.09 MB
Total Pagefile: 9064.27 MB
Available Pagefile: 7514.52 MB
Total Virtual: 8192 MB
Available Virtual: 8191.77 MB
==================== Drives ================================
Drive c: (Acer) (Fixed) (Total:913.7 GB) (Free:743.86 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 932 GB) (Disk ID: E21D949A)
Partition: GPT Partition Type
==================== End Of Log ============================ GMER.txt Code:
GMER 2.1.19163 - hxxp://www.gmer.net
Rootkit scan 2013-09-25 14:54:13
Windows 6.2.9200 x64 \Device\Harddisk0\DR0 -> \Device\0000003d TOSHIBA_MQ01ABD100 rev.AX003J 931,51GB
Running: opn38eb2.exe; Driver: C:\Users\Acer\AppData\Local\Temp\uglorpow.sys
---- User code sections - GMER 2.1 ----
.text C:\Windows\system32\dwm.exe[712] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 690 000007fee8041532 4 bytes [04, E8, FE, 07]
.text C:\Windows\system32\dwm.exe[712] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 698 000007fee804153a 4 bytes [04, E8, FE, 07]
.text C:\Windows\system32\dwm.exe[712] C:\Windows\SYSTEM32\MSIMG32.dll!TransparentBlt + 246 000007fee804165a 4 bytes [04, E8, FE, 07]
.text C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe[1124] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 690 000007fee8041532 4 bytes [04, E8, FE, 07]
.text C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe[1124] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 698 000007fee804153a 4 bytes [04, E8, FE, 07]
.text C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe[1124] C:\Windows\SYSTEM32\MSIMG32.dll!TransparentBlt + 246 000007fee804165a 4 bytes [04, E8, FE, 07]
.text C:\Windows\system32\nvvsvc.exe[1132] C:\Windows\system32\MSIMG32.dll!GradientFill + 690 000007fee8041532 4 bytes [04, E8, FE, 07]
.text C:\Windows\system32\nvvsvc.exe[1132] C:\Windows\system32\MSIMG32.dll!GradientFill + 698 000007fee804153a 4 bytes [04, E8, FE, 07]
.text C:\Windows\system32\nvvsvc.exe[1132] C:\Windows\system32\MSIMG32.dll!TransparentBlt + 246 000007fee804165a 4 bytes [04, E8, FE, 07]
.text C:\Windows\system32\nvvsvc.exe[1132] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 306 000007feec23177a 4 bytes [23, EC, FE, 07]
.text C:\Windows\system32\nvvsvc.exe[1132] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 314 000007feec231782 4 bytes [23, EC, FE, 07]
.text C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe[1836] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 690 000007fee8041532 4 bytes [04, E8, FE, 07]
.text C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe[1836] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 698 000007fee804153a 4 bytes [04, E8, FE, 07]
.text C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe[1836] C:\Windows\SYSTEM32\MSIMG32.dll!TransparentBlt + 246 000007fee804165a 4 bytes [04, E8, FE, 07]
.text C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe[1272] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 306 000007feec23177a 4 bytes [23, EC, FE, 07]
.text C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe[1272] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 314 000007feec231782 4 bytes [23, EC, FE, 07]
.text C:\windows\system32\mfevtps.exe[796] C:\Windows\system32\psapi.dll!GetProcessImageFileNameA + 306 000007feec23177a 4 bytes [23, EC, FE, 07]
.text C:\windows\system32\mfevtps.exe[796] C:\Windows\system32\psapi.dll!GetProcessImageFileNameA + 314 000007feec231782 4 bytes [23, EC, FE, 07]
.text C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe[2096] C:\Windows\SYSTEM32\WSOCK32.dll!recvfrom + 742 000007fee3521b32 4 bytes [52, E3, FE, 07]
.text C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe[2096] C:\Windows\SYSTEM32\WSOCK32.dll!recvfrom + 750 000007fee3521b3a 4 bytes [52, E3, FE, 07]
.text C:\Windows\system32\taskhostex.exe[2188] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 690 000007fee8041532 4 bytes [04, E8, FE, 07]
.text C:\Windows\system32\taskhostex.exe[2188] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 698 000007fee804153a 4 bytes [04, E8, FE, 07]
.text C:\Windows\system32\taskhostex.exe[2188] C:\Windows\SYSTEM32\MSIMG32.dll!TransparentBlt + 246 000007fee804165a 4 bytes [04, E8, FE, 07]
.text C:\Program Files\Elantech\ETDCtrl.exe[2196] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 690 000007fee8041532 4 bytes [04, E8, FE, 07]
.text C:\Program Files\Elantech\ETDCtrl.exe[2196] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 698 000007fee804153a 4 bytes [04, E8, FE, 07]
.text C:\Program Files\Elantech\ETDCtrl.exe[2196] C:\Windows\SYSTEM32\MSIMG32.dll!TransparentBlt + 246 000007fee804165a 4 bytes [04, E8, FE, 07]
.text C:\Windows\Explorer.EXE[2284] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 690 000007fee8041532 4 bytes [04, E8, FE, 07]
.text C:\Windows\Explorer.EXE[2284] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 698 000007fee804153a 4 bytes [04, E8, FE, 07]
.text C:\Windows\Explorer.EXE[2284] C:\Windows\SYSTEM32\MSIMG32.dll!TransparentBlt + 246 000007fee804165a 4 bytes [04, E8, FE, 07]
.text C:\Windows\Explorer.EXE[2284] C:\Windows\system32\psapi.dll!GetProcessImageFileNameA + 306 000007feec23177a 4 bytes [23, EC, FE, 07]
.text C:\Windows\Explorer.EXE[2284] C:\Windows\system32\psapi.dll!GetProcessImageFileNameA + 314 000007feec231782 4 bytes [23, EC, FE, 07]
.text C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe[2596] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 306 000007feec23177a 4 bytes [23, EC, FE, 07]
.text C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe[2596] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 314 000007feec231782 4 bytes [23, EC, FE, 07]
.text C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe[2692] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 306 000007feec23177a 4 bytes [23, EC, FE, 07]
.text C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe[2692] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 314 000007feec231782 4 bytes [23, EC, FE, 07]
.text C:\Program Files\Elantech\ETDTouch.exe[2824] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 690 000007fee8041532 4 bytes [04, E8, FE, 07]
.text C:\Program Files\Elantech\ETDTouch.exe[2824] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 698 000007fee804153a 4 bytes [04, E8, FE, 07]
.text C:\Program Files\Elantech\ETDTouch.exe[2824] C:\Windows\SYSTEM32\MSIMG32.dll!TransparentBlt + 246 000007fee804165a 4 bytes [04, E8, FE, 07]
.text C:\Program Files\Elantech\ETDCtrlHelper.exe[3404] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 690 000007fee8041532 4 bytes [04, E8, FE, 07]
.text C:\Program Files\Elantech\ETDCtrlHelper.exe[3404] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 698 000007fee804153a 4 bytes [04, E8, FE, 07]
.text C:\Program Files\Elantech\ETDCtrlHelper.exe[3404] C:\Windows\SYSTEM32\MSIMG32.dll!TransparentBlt + 246 000007fee804165a 4 bytes [04, E8, FE, 07]
.text C:\Program Files\NVIDIA Corporation\Display\nvtray.exe[1084] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 690 000007fee8041532 4 bytes [04, E8, FE, 07]
.text C:\Program Files\NVIDIA Corporation\Display\nvtray.exe[1084] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 698 000007fee804153a 4 bytes [04, E8, FE, 07]
.text C:\Program Files\NVIDIA Corporation\Display\nvtray.exe[1084] C:\Windows\SYSTEM32\MSIMG32.dll!TransparentBlt + 246 000007fee804165a 4 bytes [04, E8, FE, 07]
.text C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe[4164] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 306 000007feec23177a 4 bytes [23, EC, FE, 07]
.text C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe[4164] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 314 000007feec231782 4 bytes [23, EC, FE, 07]
.text C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe[4328] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 690 000007fee8041532 4 bytes [04, E8, FE, 07]
.text C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe[4328] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 698 000007fee804153a 4 bytes [04, E8, FE, 07]
.text C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe[4328] C:\Windows\SYSTEM32\MSIMG32.dll!TransparentBlt + 246 000007fee804165a 4 bytes [04, E8, FE, 07]
.text C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe[4328] C:\Windows\SYSTEM32\WSOCK32.dll!recvfrom + 742 000007fee3521b32 4 bytes [52, E3, FE, 07]
.text C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe[4328] C:\Windows\SYSTEM32\WSOCK32.dll!recvfrom + 750 000007fee3521b3a 4 bytes [52, E3, FE, 07]
.text C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe[4372] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 690 000007fee8041532 4 bytes [04, E8, FE, 07]
.text C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe[4372] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 698 000007fee804153a 4 bytes [04, E8, FE, 07]
.text C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe[4372] C:\Windows\SYSTEM32\MSIMG32.dll!TransparentBlt + 246 000007fee804165a 4 bytes [04, E8, FE, 07]
.text C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe[4084] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 690 000007fee8041532 4 bytes [04, E8, FE, 07]
.text C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe[4084] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 698 000007fee804153a 4 bytes [04, E8, FE, 07]
.text C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe[4084] C:\Windows\SYSTEM32\MSIMG32.dll!TransparentBlt + 246 000007fee804165a 4 bytes [04, E8, FE, 07]
.text C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe[4588] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 690 000007fee8041532 4 bytes [04, E8, FE, 07]
.text C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe[4588] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 698 000007fee804153a 4 bytes [04, E8, FE, 07]
.text C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe[4588] C:\Windows\SYSTEM32\MSIMG32.dll!TransparentBlt + 246 000007fee804165a 4 bytes [04, E8, FE, 07]
.text C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe[4648] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 690 000007fee8041532 4 bytes [04, E8, FE, 07]
.text C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe[4648] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 698 000007fee804153a 4 bytes [04, E8, FE, 07]
.text C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe[4648] C:\Windows\SYSTEM32\MSIMG32.dll!TransparentBlt + 246 000007fee804165a 4 bytes [04, E8, FE, 07]
.text C:\Windows\System32\StikyNot.exe[5116] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 690 000007fee8041532 4 bytes [04, E8, FE, 07]
.text C:\Windows\System32\StikyNot.exe[5116] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 698 000007fee804153a 4 bytes [04, E8, FE, 07]
.text C:\Windows\System32\StikyNot.exe[5116] C:\Windows\SYSTEM32\MSIMG32.dll!TransparentBlt + 246 000007fee804165a 4 bytes [04, E8, FE, 07]
---- Threads - GMER 2.1 ----
Thread C:\Windows\system32\csrss.exe [800:836] fffff9600097f5e8
---- Disk sectors - GMER 2.1 ----
Disk \Device\Harddisk0\DR0 unknown MBR code
---- EOF - GMER 2.1 ---- FRST.txt (1.Teil) Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 24-09-2013
Ran by Acer (administrator) on A on 25-09-2013 14:44:15
Running from C:\Users\Acer\Desktop
Windows 8 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Qualcomm Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
(McAfee, Inc.) C:\Program Files\McAfee\MSC\McAPExe.exe
(McAfee, Inc.) C:\Program Files\McAfee\AppStats\MfeASUM.exe
(McAfee, Inc.) C:\windows\system32\mfevtps.exe
(Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDTouch.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler64.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
(Dolby Laboratories Inc.) C:\Dolby PCEE4\pcee4.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4406.1205_x64__8wekyb3d8bbwe\LiveComm.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMTray.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Microsoft Corporation) C:\Windows\System32\StikyNot.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe
() C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
(Intel Corporation) C:\Windows\system32\igfxext.exe
(Intel Corporation) C:\Windows\system32\igfxsrvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe
(CyberLink) C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe
() C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe
() C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nero AG) c:\Program Files (x86)\Nero\Update\NASvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] ()
HKLM\...\Run: [ETDCtrl] - C:\Program Files\Elantech\ETDCtrl.exe [2876304 2013-01-18] (ELAN Microelectronics Corp.)
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13427784 2013-03-18] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1278024 2013-03-08] (Realtek Semiconductor)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer\Run: [BtvStack] - C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [131712 2013-01-25] ( (Atheros Communications))
HKCU\...\Run: [RESTART_STICKY_NOTES] - C:\Windows\System32\StikyNot.exe [405504 2012-07-26] (Microsoft Corporation)
HKLM-x32\...\Run: [mcui_exe] - C:\Program Files\McAfee.com\Agent\mcagent.exe [537512 2013-08-06] (McAfee, Inc.)
HKLM-x32\...\Run: [Norton Online Backup] - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [2994880 2012-08-15] (Symantec Corporation)
HKLM-x32\...\Run: [mcpltui_exe] - C:\Program Files\McAfee.com\Agent\mcagent.exe [537512 2013-08-06] (McAfee, Inc.)
HKU\Default\...\RunOnce: [RegAutoPlay] - C:\Program Files (x86)\Acer\clear.fi Media\RegAutoplay.exe [1845832 2013-02-20] (Acer Incorporated)
HKU\Default User\...\RunOnce: [RegAutoPlay] - C:\Program Files (x86)\Acer\clear.fi Media\RegAutoplay.exe [1845832 2013-02-20] (Acer Incorporated)
AppInit_DLLs: C:\Windows\system32\nvinitx.dll [245872 2013-02-21] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll [201576 2013-02-21] (NVIDIA Corporation)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://acer13.msn.com
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer13.msn.com
SearchScopes: HKLM - DefaultScope {27CE3F6D-DDE1-4985-9601-8D2BE3BFCC01} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS
SearchScopes: HKLM - {27CE3F6D-DDE1-4985-9601-8D2BE3BFCC01} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS
SearchScopes: HKLM - {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms}
SearchScopes: HKLM-x32 - DefaultScope {27CE3F6D-DDE1-4985-9601-8D2BE3BFCC01} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS
SearchScopes: HKLM-x32 - {27CE3F6D-DDE1-4985-9601-8D2BE3BFCC01} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS
SearchScopes: HKLM-x32 - {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms}
SearchScopes: HKCU - DefaultScope {27CE3F6D-DDE1-4985-9601-8D2BE3BFCC01} URL =
SearchScopes: HKCU - {27CE3F6D-DDE1-4985-9601-8D2BE3BFCC01} URL =
SearchScopes: HKCU - {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms}
BHO: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Qualcomm Atheros Commnucations)
BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
BHO-x32: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files\mcafee\msc\McSnIePl64.dll (McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files (x86)\McAfee\msc\McSnIePl.dll (McAfee, Inc.)
FireFox:
========
FF ProfilePath: C:\Users\Acer\AppData\Roaming\Mozilla\Firefox\Profiles\fbfxe0yy.default
FF Homepage: chrome://ubufox/locale/ubufox.properties
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_168.dll ()
FF Plugin: @mcafee.com/MSC,version=10 - c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL ()
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_168.dll ()
FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB)
FF Plugin-x32: @esn/esnlaunch,version=2.1.7 - C:\Program Files (x86)\Battlelog Web Plugins\2.1.7\npesnlaunch.dll (ESN Social Software AB)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.0.72 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @mcafee.com/MSC,version=10 - c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL ()
FF Plugin-x32: @mcafee.com/SAFFPlugin - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Acer\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF SearchPlugin: C:\Users\Acer\AppData\Roaming\Mozilla\Firefox\Profiles\fbfxe0yy.default\searchplugins\anidb.xml
FF SearchPlugin: C:\Users\Acer\AppData\Roaming\Mozilla\Firefox\Profiles\fbfxe0yy.default\searchplugins\myanimelistnet.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: WOT - C:\Users\Acer\AppData\Roaming\Mozilla\Firefox\Profiles\fbfxe0yy.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}
FF Extension: DownloadHelper - C:\Users\Acer\AppData\Roaming\Mozilla\Firefox\Profiles\fbfxe0yy.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
FF Extension: client - C:\Users\Acer\AppData\Roaming\Mozilla\Firefox\Profiles\fbfxe0yy.default\Extensions\client@anonymox.net.xpi
FF Extension: No Name - C:\Users\Acer\AppData\Roaming\Mozilla\Firefox\Profiles\fbfxe0yy.default\Extensions\{fe272bd1-5f76-4ea4-8501-a05d35d823fc}.xpi
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor
FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK
Chrome:
=======
CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter}
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\pdf.dll ()
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
CHR Plugin: ( "name": "",) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
CHR Plugin: ( "name": "",) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
CHR Plugin: (McAfee SiteAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.)
CHR Plugin: (McAfee SecurityCenter) - c:\progra~2\mcafee\msc\npmcsn~1.dll ()
CHR Extension: (Google Docs) - C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_1
CHR Extension: (Google Drive) - C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_1
CHR Extension: (YouTube) - C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_1
CHR Extension: (Google Search) - C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1
CHR Extension: (SiteAdvisor) - C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.6.2.1341_1
CHR Extension: (Chrome In-App Payments service) - C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_0
CHR Extension: (Gmail) - C:\Users\Acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_2
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx
==================== Services (Whitelisted) =================
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [227456 2013-01-25] (Qualcomm Atheros Commnucations)
R2 CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2615368 2013-02-19] (Acer Incorporated)
S3 DeviceFastLaneService; C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe [469648 2012-11-16] (Acer Incorporated)
R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [662088 2013-03-15] (Acer Incorporated)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [100752 2013-01-18] (ELAN Microelectronics Corp.)
R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [803872 2012-12-10] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [167736 2013-01-30] (Intel Corporation)
R2 LMSvc; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [431656 2013-03-15] (Acer Incorporate)
S2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 McAfee SiteAdvisor Service; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [201304 2012-08-31] (McAfee, Inc.)
R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [178048 2013-08-06] (McAfee, Inc.)
S3 McAWFwk; c:\PROGRA~1\mcafee\msc\mcawfwk.exe [332080 2012-01-26] (McAfee, Inc.)
R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McNaiAnn; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
S3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [602944 2013-08-02] (McAfee, Inc.)
S2 McOobeSv; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [201304 2012-08-31] (McAfee, Inc.)
R2 mcpltsvc; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McProxy; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 MfeASUM; C:\Program Files\McAfee\AppStats\MfeASUM.exe [335216 2013-09-15] (McAfee, Inc.)
R2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1017016 2013-08-05] (McAfee, Inc.)
R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [219272 2013-08-07] (McAfee, Inc.)
R2 mfevtp; C:\windows\system32\mfevtps.exe [182752 2013-08-07] (McAfee, Inc.)
R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [3943104 2012-08-15] (Symantec Corporation)
R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-09-15] ()
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16048 2013-07-02] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
S3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [5139968 2012-06-02] (Broadcom Corporation)
S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2013-01-24] (Qualcomm Atheros)
S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation)
R1 ccSet_NARA; C:\Windows\system32\drivers\NARAx64\0401000.00E\ccSetx64.sys [168608 2012-05-26] (Symantec Corporation)
R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [70112 2013-08-07] (McAfee, Inc.)
S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197264 2012-05-28] (McAfee, Inc.)
R3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-01-10] (Acer Incorporated)
S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [179664 2013-08-07] (McAfee, Inc.)
R1 MfeASKM; C:\Program Files\McAfee\AppStats\MfeASKM.sys [31408 2013-09-15] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [310224 2013-08-07] (McAfee, Inc.)
S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [69264 2013-08-07] (McAfee, Inc.)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [519064 2013-08-07] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [776168 2013-08-07] (McAfee, Inc.)
R3 mfencbdc; C:\Windows\system32\DRIVERS\mfencbdc.sys [377040 2013-07-09] (McAfee, Inc.)
S3 mfencrk; C:\Windows\system32\DRIVERS\mfencrk.sys [95984 2013-07-09] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [343568 2013-08-07] (McAfee, Inc.)
R3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [15704 2013-01-10] (Acer Incorporated)
S3 cpuz135; \??\C:\Users\Acer\AppData\Local\Temp\cpuz135\cpuz135_x64.sys [x] |