Leere Werbeeinbendung über ganze Browserseite (FF) Hallo,
ich habe (wie offenbar auch einige andere User) seit einiger Zeit das Problem, dass ich im Mozilla Firefox trotz aktiviertem AdBlockPlus so weiße Werbepop-ups eingeblendet bekomme.
Das Problem hatte ich vor einigen Monaten schon einmal, wie es damals aber wieder weggegangen ist, weiß ich leider nicht. Hier mal ein Bild, wie das ganze aussieht: http://i219.photobucket.com/albums/c...inblendung.jpg
Das Problem tritt auch nicht immer und gleich stark auf. Nach ein paar Mal wegklicken habe ich zum Teil auch den ganzen Tag dann Ruhe. Ach ja, ich benutze Avast als Antivirenprogramm.
Leider habe ich nicht so wahnsinnig viel Ahnung von Registryeinträgen und diesen Log-files, daher bitte ich um etwas Nachsicht, sollte ich mich komplett dumm anstellen.
Wie für den ersten Post gewünscht, habe ich die Scans laufen lassen und poste anschließend die Log-Files. Das Programm GMER hat leider nicht funktioniert und zum Freeze geführt, daher habe ich es weggelassen. Dafür habe ich noch einen Log von den auf meinem System installierten Programmen dabei.
AdwCleaner-Logfile: Code:
# AdwCleaner v3.006 - Bericht erstellt am 04/10/2013 um 16:01:25
# Updated 01/10/2013 von Xplode
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits)
# Benutzername : Antje - ANTJE-PC
# Gestartet von : D:\Eigene Dateien\Downloads\adwcleaner_3.0.0.6.exe
# Option : Suchen
***** [ Dienste ] *****
Dienst Gefunden : SearchAnonymizer
***** [ Dateien / Ordner ] *****
Datei Gefunden : C:\Users\Antje\AppData\Roaming\Mozilla\Firefox\Profiles\l5dkq34g.default\Extensions\om@offermosquito.com.xpi
Datei Gefunden : C:\Users\Antje\AppData\Roaming\Mozilla\Firefox\Profiles\l5dkq34g.default\user.js
Datei Gefunden : C:\Windows\System32\roboot64.exe
Ordner Gefunden : C:\Users\Antje\AppData\Roaming\Mozilla\Firefox\Profiles\l5dkq34g.default\Extensions\firejump@firejump.net
Ordner Gefunden C:\Program Files (x86)\kikin
Ordner Gefunden C:\ProgramData\boost_interprocess
Ordner Gefunden C:\Users\Antje\AppData\Local\Temp\OCS
Ordner Gefunden C:\Users\Antje\AppData\Roaming\Common\LuaRT
Ordner Gefunden C:\Users\Antje\AppData\Roaming\DataMgr
Ordner Gefunden C:\Users\Antje\AppData\Roaming\DesktopIconForAmazon
Ordner Gefunden C:\Users\Antje\AppData\Roaming\Intermediate
Ordner Gefunden C:\Users\Antje\AppData\Roaming\kikin
Ordner Gefunden C:\Users\Antje\AppData\Roaming\Mozilla\Firefox\Profiles\l5dkq34g.default\jetpack
Ordner Gefunden C:\Users\Antje\AppData\Roaming\OCS
Ordner Gefunden C:\Users\Antje\AppData\Roaming\PerformerSoft
Ordner Gefunden C:\Users\Antje\AppData\Roaming\SCheck
Ordner Gefunden C:\Users\Antje\AppData\Roaming\SSync
***** [ Verknüpfungen ] *****
***** [ Registrierungsdatenbank ] *****
Schlüssel Gefunden : HKCU\Software\httogroup
Schlüssel Gefunden : HKCU\Software\Iminent
Schlüssel Gefunden : HKCU\Software\InstallCore
Schlüssel Gefunden : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Schlüssel Gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E601996F-E400-41CA-804B-CD6373A7EEE2}
Schlüssel Gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Schlüssel Gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E601996F-E400-41CA-804B-CD6373A7EEE2}
Schlüssel Gefunden : HKCU\Software\OCS
Schlüssel Gefunden : HKCU\Software\Softonic
Schlüssel Gefunden : [x64] HKCU\Software\httogroup
Schlüssel Gefunden : [x64] HKCU\Software\Iminent
Schlüssel Gefunden : [x64] HKCU\Software\InstallCore
Schlüssel Gefunden : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Schlüssel Gefunden : [x64] HKCU\Software\OCS
Schlüssel Gefunden : [x64] HKCU\Software\Softonic
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{E601996F-E400-41CA-804B-CD6373A7EEE2}
Schlüssel Gefunden : HKLM\Software\Iminent
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker_RASAPI32
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker_RASMANCS
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_absolute-uninstaller_RASAPI32
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_absolute-uninstaller_RASMANCS
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_freemium-tubebox_RASAPI32
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_freemium-tubebox_RASMANCS
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_freepdf_RASAPI32
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_freepdf_RASMANCS
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_free-youtube-download_RASAPI32
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_free-youtube-download_RASMANCS
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_gpl-ghostscript_RASAPI32
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_gpl-ghostscript_RASMANCS
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_kmplayer_RASAPI32
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_kmplayer_RASMANCS
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_uninstall-tool_RASAPI32
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_uninstall-tool_RASMANCS
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E601996F-E400-41CA-804B-CD6373A7EEE2}
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{D85FFE92-BF14-4E9B-BCCD-E5C16069E65F}_is1
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{E4A71A41-BCC8-480a-9E69-0DA29CBA7ECA}
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DesktopIconAmazon
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchAnonymizer
Wert Gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [DataMgr]
Wert Gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Intermediate]
Wert Gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [scheck]
Wert Gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [ssync]
Wert Gefunden : HKCU\Software\Mozilla\Firefox\Extensions [firejump@firejump.net]
***** [ Browser ] *****
-\\ Internet Explorer v10.0.9200.16686
-\\ Mozilla Firefox v24.0 (de)
[ Datei : C:\Users\Antje\AppData\Roaming\Mozilla\Firefox\Profiles\l5dkq34g.default\prefs.js ]
Zeile gefunden : user_pref("extensions.wrc.SearchRules.ask.com.style", ".WRCN {display:none} #yui-main .tsrc_vnru .title + .WRCN, #yui-main #teoma-results .title + .WRCN {display:inline !important; background: url(\"I[...]
Zeile gefunden : user_pref("extensions.wrc.SearchRules.ask.com.url", "^hxxp(s)?\\:\\/\\/(.+\\.)?ask\\.com\\/.*");
Zeile gefunden : user_pref("extensions.wrc.SearchRules.rambler.ru.style", ".WRCN {display:none} .search-results .title + .WRCN {display:inline !important; background: url(\"IMAGE\") right no-repeat}");
Zeile gefunden : user_pref("iminent.webbooster.scripts.sslminibar.SOFTONICREFRESHRATE", "140000");
Zeile gefunden : user_pref("om.config", "{\"active\":true,\"name\":\"twde\",\"id\":25,\"dispId\":\"CH-25\",\"aboutLink\":\"\",\"trackingGeneral\":true,\"gaAccount\":\"UA-39484183-1\",\"gaDomain\":\"offermosquito.com\"[...]
*************************
AdwCleaner[R0].txt - [6826 octets] - [04/10/2013 16:01:25]
########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [6886 octets] ########## FRST-Logfile:
FRST Logfile:
FRST Logfile:
FRST Logfile:
FRST Logfile:
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 02-10-2013
Ran by Antje (administrator) on ANTJE-PC on 04-10-2013 16:21:28
Running from D:\Eigene Dateien\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Apple Computer, Inc.) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(SRS Labs, Inc.) C:\Program Files\SRS Labs\SRS Control Panel\srspanel_64.exe
(CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
() C:\Program Files (x86)\Freemium\SystemStore\Freemium.SystemStore.WindowsService.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Easy Display Manager\dmhkcore.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Easy Display Manager\WifiManager.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(SEC) C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\WCScheduler.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Movie Color Enhancer\MovieColorEnhancer.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11780712 2011-02-27] (Realtek Semiconductor)
HKLM\...\Run: [IntelTBRunOnce] - C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs [4526 2010-10-08] ()
HKLM\...\Run: [Ocs_SM] - C:\Users\Antje\AppData\Roaming\OCS\SM\SearchAnonymizer.exe [106496 2011-10-29] (OCS)
HKLM\...\Run: [ETDCtrl] - C:\Program Files\Elantech\ETDCtrl.exe [2817872 2012-04-25] (ELAN Microelectronics Corp.)
MountPoints2: F - F:\AutoRun.exe
MountPoints2: {10496727-ed6d-11e2-94f8-e8113277de48} - F:\AutoRun.exe
MountPoints2: {89c42090-3b06-11e1-947f-e8113277de48} - F:\AutoRun.exe
MountPoints2: {89c42095-3b06-11e1-947f-e8113277de48} - F:\AutoRun.exe
MountPoints2: {db54fdb9-4f59-11e2-b098-e8113277de48} - F:\AutoRun.exe
MountPoints2: {dde777fc-0149-11e1-9301-e8113277de48} - G:\pushinst.exe
HKLM-x32\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\avastUI.exe [4858968 2013-08-30] (AVAST Software)
HKLM-x32\...\Run: [] - [x]
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://wisersearch.com/?channel=de
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://samsung.msn.com
SearchScopes: HKLM-x32 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=SMSTDF&pc=MASM&src=IE-SearchBox
SearchScopes: HKCU - DefaultScope {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxp://wisersearch.com/search.php?channel=de&q={searchTerms}
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - {2395252F-4D25-41BC-B9FC-17BDA0BDCAE4} URL = hxxp://de.wikipedia.org.anonymize-me.de/?to=64652E77696B6970656469612E6F7267&st={searchTerms}&clid=d7c637e7-ad03-4ac9-bdde-36bd64188ef1&pid=murb&mode=bounce&k=1
SearchScopes: HKCU - {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxp://wisersearch.com/search.php?channel=de&q={searchTerms}
BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files (x86)\McAfee Security Scan\3.0.318\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Samsung BHO Class - {AA609D72-8482-4076-8991-8CDAE5B93BCB} - C:\Program Files\Samsung AnyWeb Print\W2PBrowser.dll ()
BHO-x32: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: kikin Plugin - {E601996F-E400-41CA-804B-CD6373A7EEE2} - C:\Program Files (x86)\kikin\ie_kikin.dll (kikin)
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKLM-x32 - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Toolbar: HKCU - No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - No File
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF ProfilePath: C:\Users\Antje\AppData\Roaming\Mozilla\Firefox\Profiles\l5dkq34g.default
FF user.js: detected! => C:\Users\Antje\AppData\Roaming\Mozilla\Firefox\Profiles\l5dkq34g.default\user.js
FF Homepage: hxxp://natronundsoda.net/forum/index.php
FF Keyword.URL: hxxp://wisersearch.com/search.php?channel=de&q=
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_168.dll ()
FF Plugin: @java.com/DTPlugin,version=10.40.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.40.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_168.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.40.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.40.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @mcafee.com/McAfeeMssPlugin - C:\Program Files (x86)\McAfee Security Scan\3.0.318\npMcAfeeMss.dll (McAfee, Inc.)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: FireJump - C:\Users\Antje\AppData\Roaming\Mozilla\Firefox\Profiles\l5dkq34g.default\Extensions\firejump@firejump.net
FF Extension: firefox - C:\Users\Antje\AppData\Roaming\Mozilla\Firefox\Profiles\l5dkq34g.default\Extensions\firefox@ghostery.com.xpi
FF Extension: No Name - C:\Users\Antje\AppData\Roaming\Mozilla\Firefox\Profiles\l5dkq34g.default\Extensions\firejump_1027.zip
FF Extension: No Name - C:\Users\Antje\AppData\Roaming\Mozilla\Firefox\Profiles\l5dkq34g.default\Extensions\firejump_1028.zip
FF Extension: om - C:\Users\Antje\AppData\Roaming\Mozilla\Firefox\Profiles\l5dkq34g.default\Extensions\om@offermosquito.com.xpi
FF Extension: toolbar - C:\Users\Antje\AppData\Roaming\Mozilla\Firefox\Profiles\l5dkq34g.default\Extensions\toolbar@web.de.xpi
FF Extension: No Name - C:\Users\Antje\AppData\Roaming\Mozilla\Firefox\Profiles\l5dkq34g.default\Extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}.xpi
FF Extension: No Name - C:\Users\Antje\AppData\Roaming\Mozilla\Firefox\Profiles\l5dkq34g.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0039-ABCDEFFEDCBA}
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF HKCU\...\Firefox\Extensions: [firejump@firejump.net] - C:\Users\Antje\AppData\Roaming\Mozilla\Firefox\Profiles\l5dkq34g.default\extensions\firejump@firejump.net
FF Extension: FireJump - C:\Users\Antje\AppData\Roaming\Mozilla\Firefox\Profiles\l5dkq34g.default\extensions\firejump@firejump.net
==================== Services (Whitelisted) =================
S3 Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [69632 2011-10-25] (Adobe Systems)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808 2013-08-30] (AVAST Software)
S3 McComponentHostService; C:\Program Files (x86)\McAfee Security Scan\3.0.318\McCHSvc.exe [235216 2013-02-05] (McAfee, Inc.)
R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2804568 2010-06-01] (Symantec Corporation)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [244904 2009-12-01] ()
S2 SearchAnonymizer; C:\Users\Antje\AppData\Roaming\OCS\SM\SearchAnonymizerHelper.exe [40960 2011-10-29] ()
R2 SystemStore; C:\Program Files (x86)\Freemium\SystemStore\Freemium.SystemStore.WindowsService.exe [50176 2012-05-21] ()
==================== Drivers (Whitelisted) ====================
R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [33400 2013-08-30] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [80816 2013-08-30] (AVAST Software)
R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [72016 2013-08-30] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65336 2013-08-30] ()
R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [1030952 2013-08-30] (AVAST Software)
R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [378944 2013-08-30] (AVAST Software)
R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [64288 2013-08-30] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [204880 2013-08-30] ()
S3 avmeject; C:\Windows\System32\drivers\avmeject.sys [14120 2010-10-22] (AVM Berlin)
S3 FWLANUSB; C:\Windows\System32\DRIVERS\fwlanusb.sys [460800 2010-10-22] (AVM GmbH)
S3 rtport; C:\Windows\SysWOW64\drivers\rtport.sys [15144 2011-08-13] (Windows (R) 2003 DDK 3790 provider)
S3 rtport; C:\Windows\SysWOW64\drivers\rtport.sys [15144 2011-08-13] (Windows (R) 2003 DDK 3790 provider)
S3 ALSysIO; \??\C:\Users\Antje\AppData\Local\Temp\ALSysIO64.sys [x]
U5 ewusbnet; C:\Windows\System32\Drivers\ewusbnet.sys [246224 2009-12-07] (Huawei Technologies Co., Ltd.)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-10-04 16:21 - 2013-10-04 16:21 - 00000000 ____D C:\FRST
2013-10-04 16:20 - 2013-10-04 16:20 - 00000000 _____ C:\Users\Antje\defogger_reenable
2013-10-04 16:01 - 2013-10-04 16:01 - 00000000 ____D C:\AdwCleaner
2013-10-04 14:56 - 2013-10-04 16:08 - 00000112 _____ C:\Windows\setupact.log
2013-10-04 14:56 - 2013-10-04 14:56 - 00000000 _____ C:\Windows\setuperr.log
2013-10-04 12:27 - 2013-10-04 12:28 - 00000000 ____D C:\Users\Antje\AppData\Local\{84931292-E772-428D-A259-058DCAB0F72C}
2013-10-04 09:59 - 2013-08-05 04:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys
2013-10-04 00:09 - 2013-10-04 00:09 - 00000000 ____D C:\Users\Antje\AppData\Local\{BD3C7F25-763A-4740-9E20-72C66019968A}
2013-10-03 12:27 - 2013-10-03 12:27 - 00000000 ____D C:\Users\Antje\AppData\Roaming\Malwarebytes
2013-10-03 12:26 - 2013-10-03 12:26 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-10-03 12:26 - 2013-10-03 12:26 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-10-03 12:26 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2013-10-03 12:08 - 2013-10-03 12:09 - 00000000 ____D C:\Users\Antje\AppData\Local\{FB4FC272-2C84-4C38-94CE-EFB459D21333}
2013-10-02 17:45 - 2013-10-02 17:45 - 00000000 ____D C:\Users\Antje\AppData\Local\{155D79B8-E9B2-4371-AE91-040A37EA4CC2}
2013-10-01 13:35 - 2013-10-01 13:36 - 00000000 ____D C:\Users\Antje\AppData\Local\{F86DEA38-73A5-46AA-8426-B43B4C251A25}
2013-09-30 16:41 - 2013-09-30 16:41 - 00000000 ____D C:\Users\Antje\AppData\Local\{3DFE8E22-4F29-402D-9173-B27F63D84923}
2013-09-29 11:44 - 2013-09-29 11:44 - 00000000 ____D C:\Users\Antje\AppData\Local\{1DF2BCAC-0C2A-4FD3-8E78-58821D00E3A4}
2013-09-28 18:14 - 2013-09-28 18:14 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2013-09-28 18:14 - 2013-09-28 18:14 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2013-09-28 18:10 - 2013-09-28 18:15 - 00000000 ____D C:\ProgramData\Oracle
2013-09-28 18:10 - 2013-09-28 18:09 - 00312744 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2013-09-28 18:09 - 2013-09-28 18:09 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2013-09-28 18:09 - 2013-09-28 18:09 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2013-09-28 18:09 - 2013-09-28 18:09 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2013-09-28 18:09 - 2013-09-28 18:09 - 00000000 ____D C:\Program Files\Java
2013-09-28 17:49 - 2013-09-28 17:49 - 00000000 ____D C:\Users\Antje\AppData\Local\{FD942799-5BB2-4FE2-B0D1-849F8E776DF2}
2013-09-27 18:11 - 2013-09-27 18:12 - 00000000 ____D C:\Users\Antje\AppData\Local\{FD5CD87E-856F-42F5-824F-FDDF4CF55BA1}
2013-09-27 18:08 - 2013-09-27 18:08 - 00000000 ____D C:\Users\Antje\AppData\Roaming\Snz
2013-09-27 17:49 - 2013-09-27 17:49 - 00000000 ____D C:\Users\Antje\AppData\Local\{BB0AC18E-1297-46CB-86AF-8ABFCBE9704B}
2013-09-26 18:54 - 2013-09-26 18:54 - 00000000 ____D C:\Users\Antje\AppData\Local\{C360FED8-DA05-4C9A-B9DA-1E4779FED5B5}
2013-09-25 17:17 - 2013-09-25 17:17 - 00000000 ____D C:\Users\Antje\AppData\Local\{4A8B7385-4C4D-4B83-874D-4282D0121ECE}
2013-09-24 11:35 - 2013-09-24 11:35 - 00000000 ____D C:\Users\Antje\AppData\Local\{E274E6DF-626B-45F8-8B89-224CC42BF448}
2013-09-23 23:34 - 2013-09-23 23:35 - 00000000 ____D C:\Users\Antje\AppData\Local\{5706A135-24EB-40DE-827B-B57514263348}
2013-09-23 14:25 - 2013-09-23 14:27 - 00000000 ____D C:\Users\Antje\AppData\Roaming\PerformerSoft
2013-09-23 14:25 - 2013-06-19 14:58 - 00019456 _____ (PerformerSoft LLC) C:\Windows\system32\roboot64.exe
2013-09-23 11:34 - 2013-09-23 11:34 - 00000000 ____D C:\Users\Antje\AppData\Local\{F3AA54FC-7F1D-4891-B942-0F3A4117EFF7}
2013-09-22 23:02 - 2013-09-22 23:02 - 00000000 ____D C:\Users\Antje\AppData\Local\{AFD0089E-4D22-480A-BBE7-C891E09CCB69}
2013-09-21 19:43 - 2013-09-21 19:44 - 00000000 ____D C:\Users\Antje\AppData\Local\{D7B9139E-E31D-4D34-9808-94903A438A69}
2013-09-20 17:54 - 2013-09-20 17:54 - 00000000 ____D C:\Users\Antje\AppData\Local\{6E6214EC-2553-4BDF-AB86-5301C4D1EDBA}
2013-09-19 20:16 - 2013-09-19 20:16 - 00001189 _____ C:\Users\Public\Desktop\ElsterFormular.lnk
2013-09-19 20:16 - 2013-09-19 20:16 - 00000000 ____D C:\Users\Antje\AppData\Roaming\elsterformular
2013-09-19 20:16 - 2013-09-19 20:16 - 00000000 ____D C:\ProgramData\elsterformular
2013-09-19 20:14 - 2013-09-19 20:14 - 00000000 ____D C:\Program Files (x86)\ElsterFormular
2013-09-19 17:36 - 2013-09-19 17:36 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-09-19 16:34 - 2013-09-19 16:35 - 00000000 ____D C:\Users\Antje\AppData\Local\{4A45C413-FF24-4202-A727-B9228B05AA7A}
2013-09-18 16:47 - 2013-09-18 16:47 - 00000000 ____D C:\Users\Antje\AppData\Local\{42BCF608-CF1D-46C5-B990-3D67CC3C673A}
2013-09-17 22:48 - 2013-09-17 22:48 - 00000000 ____D C:\Users\Antje\AppData\Local\{57F18674-253E-418A-BA85-4373CE7E0FDC}
2013-09-17 10:48 - 2013-09-17 10:48 - 00000000 ____D C:\Users\Antje\AppData\Local\{85C67C3A-CC79-4E32-AAA0-9B8D3C1CE433}
2013-09-16 13:18 - 2013-09-16 13:21 - 00000000 ____D C:\Users\Antje\AppData\Local\{BCADF39B-B524-4E2B-AF1C-3A92E44BBE1C}
2013-09-15 23:16 - 2013-09-15 23:16 - 00000000 ____D C:\Users\Antje\AppData\Local\{B4000FC6-0B4B-499A-A00F-EEED74E00A00}
2013-09-15 11:14 - 2013-09-15 11:16 - 00000000 ____D C:\Users\Antje\AppData\Local\{30E996A5-0745-4420-B3C5-5EEB68A8B720}
2013-09-14 20:37 - 2013-09-14 20:38 - 00000000 ____D C:\Users\Antje\AppData\Local\{F4F162E8-3708-44F0-B752-1AC18EAAEEAB}
2013-09-13 23:06 - 2013-08-10 07:22 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-09-13 23:06 - 2013-08-10 07:22 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-09-13 23:06 - 2013-08-10 07:22 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-09-13 23:06 - 2013-08-10 07:21 - 19246592 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-09-13 23:06 - 2013-08-10 07:21 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-09-13 23:06 - 2013-08-10 07:21 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-09-13 23:06 - 2013-08-10 07:20 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-09-13 23:06 - 2013-08-10 07:20 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-09-13 23:06 - 2013-08-10 07:20 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-09-13 23:06 - 2013-08-10 07:20 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-09-13 23:06 - 2013-08-10 07:20 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-09-13 23:06 - 2013-08-10 07:20 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-09-13 23:06 - 2013-08-10 07:20 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-09-13 23:06 - 2013-08-10 07:20 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-09-13 23:06 - 2013-08-10 05:59 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-09-13 23:06 - 2013-08-10 05:59 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-09-13 23:06 - 2013-08-10 05:58 - 14332928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-09-13 23:06 - 2013-08-10 05:58 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-09-13 23:06 - 2013-08-10 05:58 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-09-13 23:06 - 2013-08-10 05:58 - 02048000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-09-13 23:06 - 2013-08-10 05:58 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-09-13 23:06 - 2013-08-10 05:58 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-09-13 23:06 - 2013-08-10 05:58 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-09-13 23:06 - 2013-08-10 05:58 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-09-13 23:06 - 2013-08-10 05:58 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-09-13 23:06 - 2013-08-10 05:58 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-09-13 23:06 - 2013-08-10 05:58 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-09-13 23:06 - 2013-08-10 05:17 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-09-13 23:06 - 2013-08-10 05:07 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-09-13 23:06 - 2013-08-10 04:27 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-09-13 23:06 - 2013-08-10 04:17 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-09-13 19:09 - 2013-09-13 19:10 - 00000000 ____D C:\Users\Antje\AppData\Local\{D35ACF40-D583-462B-B855-67A4020E675B}
2013-09-12 17:46 - 2013-08-08 03:20 - 03155456 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-09-12 17:46 - 2013-08-02 04:23 - 05550528 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2013-09-12 17:46 - 2013-08-02 04:15 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2013-09-12 17:46 - 2013-08-02 04:15 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2013-09-12 17:46 - 2013-08-02 04:15 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2013-09-12 17:46 - 2013-08-02 04:15 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2013-09-12 17:46 - 2013-08-02 04:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2013-09-12 17:46 - 2013-08-02 04:14 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2013-09-12 17:46 - 2013-08-02 04:13 - 01161216 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2013-09-12 17:46 - 2013-08-02 04:13 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2013-09-12 17:46 - 2013-08-02 04:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2013-09-12 17:46 - 2013-08-02 04:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2013-09-12 17:46 - 2013-08-02 04:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 04:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 03:59 - 03968960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2013-09-12 17:46 - 2013-08-02 03:59 - 03913664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2013-09-12 17:46 - 2013-08-02 03:51 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2013-09-12 17:46 - 2013-08-02 03:50 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2013-09-12 17:46 - 2013-08-02 03:50 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2013-09-12 17:46 - 2013-08-02 03:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2013-09-12 17:46 - 2013-08-02 03:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2013-09-12 17:46 - 2013-08-02 03:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 03:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 03:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2013-09-12 17:46 - 2013-08-02 02:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2013-09-12 17:46 - 2013-08-02 02:45 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2013-09-12 17:46 - 2013-08-02 02:45 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2013-09-12 17:46 - 2013-08-02 02:45 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2013-09-12 17:46 - 2013-08-02 02:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2013-09-12 17:46 - 2013-08-02 02:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 02:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 02:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2013-09-12 17:46 - 2013-08-02 02:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2013-09-12 17:45 - 2013-07-26 04:24 - 14172672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2013-09-12 17:45 - 2013-07-26 04:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2013-09-12 17:45 - 2013-07-26 03:55 - 12872704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2013-09-12 17:45 - 2013-07-26 03:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
2013-09-12 17:29 - 2013-09-12 17:30 - 00000000 ____D C:\Users\Antje\AppData\Local\{246DEBBB-FDD8-4DE1-92EB-61029234A750}
2013-09-11 18:30 - 2013-09-11 18:32 - 00000000 ____D C:\Users\Antje\AppData\Local\{222B4BCD-D586-40C9-BC66-4093CA953772}
2013-09-10 22:54 - 2013-09-10 22:54 - 00000000 ____D C:\Users\Antje\AppData\Local\{0904AEDC-D134-4901-9F0F-20F2C2ECA1BC}
2013-09-10 10:54 - 2013-09-10 10:54 - 00000000 ____D C:\Users\Antje\AppData\Local\{E2C980FF-5989-4256-85C5-4418E40BA14B}
2013-09-09 22:53 - 2013-09-09 22:53 - 00000000 ____D C:\Users\Antje\AppData\Local\{A81033D2-EC78-438C-88CF-8DBD0726C788}
2013-09-09 20:27 - 2013-09-09 20:27 - 00000000 ____D C:\Program Files (x86)\MF Shutdown Manager
2013-09-09 10:53 - 2013-09-09 10:53 - 00000000 ____D C:\Users\Antje\AppData\Local\{7F734889-6D38-49A9-9700-4A913C6146FA}
2013-09-08 22:53 - 2013-09-08 22:53 - 00000000 ____D C:\Users\Antje\AppData\Local\{DE48CC7B-27F4-46B4-817F-66089D21AA89}
2013-09-08 10:52 - 2013-09-08 10:53 - 00000000 ____D C:\Users\Antje\AppData\Local\{7CA069D8-2119-4C4C-AF1E-01B37AACEC24}
2013-09-07 15:02 - 2013-09-07 15:02 - 00000000 ____D C:\Users\Antje\AppData\Local\{118575C1-7D35-4B56-A5D5-E4165393F761}
2013-09-06 22:34 - 2013-09-06 22:35 - 00000000 ____D C:\Users\Antje\AppData\Local\{FD8DA5DE-63A9-4A49-AE08-8874A76E4859}
2013-09-06 10:33 - 2013-09-06 10:34 - 00000000 ____D C:\Users\Antje\AppData\Local\{61AC4E6B-455B-4E94-8BAF-D7B3DBC0D760}
2013-09-05 13:58 - 2013-09-05 14:00 - 00000000 ____D C:\Users\Antje\AppData\Local\{BD751EDA-AE3D-4205-B343-20B0C239706C}
2013-09-04 15:15 - 2013-09-04 15:15 - 00000000 ____D C:\Users\Antje\AppData\Local\{27C0253A-F608-4E83-B735-275DAC135319}
==================== One Month Modified Files and Folders =======
2013-10-04 16:21 - 2013-10-04 16:21 - 00000000 ____D C:\FRST
2013-10-04 16:20 - 2013-10-04 16:20 - 00000000 _____ C:\Users\Antje\defogger_reenable
2013-10-04 16:20 - 2011-09-02 13:17 - 00000000 ____D C:\Users\Antje
2013-10-04 16:16 - 2009-07-14 06:45 - 00014144 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-10-04 16:16 - 2009-07-14 06:45 - 00014144 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-10-04 16:12 - 2011-03-18 00:55 - 02079759 _____ C:\Windows\WindowsUpdate.log
2013-10-04 16:08 - 2013-10-04 14:56 - 00000112 _____ C:\Windows\setupact.log
2013-10-04 16:08 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-10-04 16:07 - 2013-08-12 12:59 - 00000000 ____D C:\Windows\pss
2013-10-04 16:01 - 2013-10-04 16:01 - 00000000 ____D C:\AdwCleaner
2013-10-04 15:52 - 2012-04-02 20:23 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-10-04 15:47 - 2011-09-02 14:19 - 00000000 ___RD C:\Users\Antje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-10-04 14:57 - 2012-07-05 20:42 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2013-10-04 14:56 - 2013-10-04 14:56 - 00000000 _____ C:\Windows\setuperr.log
2013-10-04 13:16 - 2011-09-02 19:18 - 00000000 ____D C:\Users\Antje\AppData\Roaming\Winamp
2013-10-04 12:28 - 2013-10-04 12:27 - 00000000 ____D C:\Users\Antje\AppData\Local\{84931292-E772-428D-A259-058DCAB0F72C}
2013-10-04 10:20 - 2011-03-18 08:18 - 00654166 _____ C:\Windows\system32\perfh007.dat
2013-10-04 10:20 - 2011-03-18 08:18 - 00130006 _____ C:\Windows\system32\perfc007.dat
2013-10-04 10:20 - 2009-07-14 07:13 - 01519874 _____ C:\Windows\system32\PerfStringBackup.INI
2013-10-04 01:10 - 2011-10-26 13:16 - 00000000 ____D C:\Users\Antje\AppData\Roaming\ICQ
2013-10-04 00:09 - 2013-10-04 00:09 - 00000000 ____D C:\Users\Antje\AppData\Local\{BD3C7F25-763A-4740-9E20-72C66019968A}
2013-10-03 14:52 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache
2013-10-03 12:27 - 2013-10-03 12:27 - 00000000 ____D C:\Users\Antje\AppData\Roaming\Malwarebytes
2013-10-03 12:26 - 2013-10-03 12:26 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-10-03 12:26 - 2013-10-03 12:26 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-10-03 12:09 - 2013-10-03 12:08 - 00000000 ____D C:\Users\Antje\AppData\Local\{FB4FC272-2C84-4C38-94CE-EFB459D21333}
2013-10-02 17:45 - 2013-10-02 17:45 - 00000000 ____D C:\Users\Antje\AppData\Local\{155D79B8-E9B2-4371-AE91-040A37EA4CC2}
2013-10-01 13:36 - 2013-10-01 13:35 - 00000000 ____D C:\Users\Antje\AppData\Local\{F86DEA38-73A5-46AA-8426-B43B4C251A25}
2013-09-30 17:12 - 2011-09-02 20:28 - 00000000 ____D C:\Users\Antje\Tracing
2013-09-30 17:11 - 2011-09-03 15:27 - 00000000 ___DC C:\Users\Antje\AppData\Local\MigWiz
2013-09-30 17:11 - 2009-08-02 04:27 - 00000000 ____D C:\Windows\Panther
2013-09-30 16:41 - 2013-09-30 16:41 - 00000000 ____D C:\Users\Antje\AppData\Local\{3DFE8E22-4F29-402D-9173-B27F63D84923}
2013-09-29 11:44 - 2013-09-29 11:44 - 00000000 ____D C:\Users\Antje\AppData\Local\{1DF2BCAC-0C2A-4FD3-8E78-58821D00E3A4}
2013-09-28 18:16 - 2013-04-12 22:00 - 00000000 ____D C:\Users\Antje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2013-09-28 18:15 - 2013-09-28 18:10 - 00000000 ____D C:\ProgramData\Oracle
2013-09-28 18:15 - 2011-09-02 19:12 - 00000000 ____D C:\Program Files\WinRAR
2013-09-28 18:14 - 2013-09-28 18:14 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2013-09-28 18:14 - 2013-09-28 18:14 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2013-09-28 18:14 - 2013-07-03 21:25 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2013-09-28 18:14 - 2013-07-03 21:25 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2013-09-28 18:14 - 2012-06-13 21:01 - 00868264 _____ (Oracle Corporation) C:\Windows\SysWOW64\npdeployJava1.dll
2013-09-28 18:14 - 2012-06-13 21:00 - 00000000 ____D C:\Program Files (x86)\Java
2013-09-28 18:14 - 2012-01-15 22:31 - 00790440 _____ (Oracle Corporation) C:\Windows\SysWOW64\deployJava1.dll
2013-09-28 18:09 - 2013-09-28 18:10 - 00312744 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2013-09-28 18:09 - 2013-09-28 18:09 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2013-09-28 18:09 - 2013-09-28 18:09 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2013-09-28 18:09 - 2013-09-28 18:09 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2013-09-28 18:09 - 2013-09-28 18:09 - 00000000 ____D C:\Program Files\Java
2013-09-28 18:09 - 2012-06-14 19:51 - 01095080 _____ (Oracle Corporation) C:\Windows\system32\npDeployJava1.dll
2013-09-28 18:09 - 2012-06-14 19:51 - 00973736 _____ (Oracle Corporation) C:\Windows\system32\deployJava1.dll
2013-09-28 17:49 - 2013-09-28 17:49 - 00000000 ____D C:\Users\Antje\AppData\Local\{FD942799-5BB2-4FE2-B0D1-849F8E776DF2}
2013-09-27 22:07 - 2011-09-02 15:09 - 00000000 ____D C:\Users\Antje\AppData\Roaming\Adobe
2013-09-27 18:12 - 2013-09-27 18:11 - 00000000 ____D C:\Users\Antje\AppData\Local\{FD5CD87E-856F-42F5-824F-FDDF4CF55BA1}
2013-09-27 18:09 - 2013-08-01 23:04 - 00000000 ____D C:\Users\Antje\AppData\Roaming\Intermediate
2013-09-27 18:08 - 2013-09-27 18:08 - 00000000 ____D C:\Users\Antje\AppData\Roaming\Snz
2013-09-27 18:03 - 2012-05-04 22:13 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-09-27 17:49 - 2013-09-27 17:49 - 00000000 ____D C:\Users\Antje\AppData\Local\{BB0AC18E-1297-46CB-86AF-8ABFCBE9704B}
2013-09-26 18:54 - 2013-09-26 18:54 - 00000000 ____D C:\Users\Antje\AppData\Local\{C360FED8-DA05-4C9A-B9DA-1E4779FED5B5}
2013-09-25 23:46 - 2011-03-18 00:51 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2013-09-25 17:17 - 2013-09-25 17:17 - 00000000 ____D C:\Users\Antje\AppData\Local\{4A8B7385-4C4D-4B83-874D-4282D0121ECE}
2013-09-24 11:35 - 2013-09-24 11:35 - 00000000 ____D C:\Users\Antje\AppData\Local\{E274E6DF-626B-45F8-8B89-224CC42BF448}
2013-09-23 23:35 - 2013-09-23 23:34 - 00000000 ____D C:\Users\Antje\AppData\Local\{5706A135-24EB-40DE-827B-B57514263348}
2013-09-23 14:27 - 2013-09-23 14:25 - 00000000 ____D C:\Users\Antje\AppData\Roaming\PerformerSoft
2013-09-23 11:34 - 2013-09-23 11:34 - 00000000 ____D C:\Users\Antje\AppData\Local\{F3AA54FC-7F1D-4891-B942-0F3A4117EFF7}
2013-09-22 23:02 - 2013-09-22 23:02 - 00000000 ____D C:\Users\Antje\AppData\Local\{AFD0089E-4D22-480A-BBE7-C891E09CCB69}
2013-09-21 19:44 - 2013-09-21 19:43 - 00000000 ____D C:\Users\Antje\AppData\Local\{D7B9139E-E31D-4D34-9808-94903A438A69}
2013-09-20 17:59 - 2012-04-02 20:23 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-09-20 17:59 - 2012-04-02 20:23 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-09-20 17:59 - 2011-09-02 20:24 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-09-20 17:54 - 2013-09-20 17:54 - 00000000 ____D C:\Users\Antje\AppData\Local\{6E6214EC-2553-4BDF-AB86-5301C4D1EDBA}
2013-09-19 21:08 - 2011-09-02 17:27 - 00000000 ____D C:\Users\Antje\AppData\Local\Mozilla
2013-09-19 20:16 - 2013-09-19 20:16 - 00001189 _____ C:\Users\Public\Desktop\ElsterFormular.lnk
2013-09-19 20:16 - 2013-09-19 20:16 - 00000000 ____D C:\Users\Antje\AppData\Roaming\elsterformular
2013-09-19 20:16 - 2013-09-19 20:16 - 00000000 ____D C:\ProgramData\elsterformular
2013-09-19 20:14 - 2013-09-19 20:14 - 00000000 ____D C:\Program Files (x86)\ElsterFormular
2013-09-19 17:36 - 2013-09-19 17:36 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-09-19 16:35 - 2013-09-19 16:34 - 00000000 ____D C:\Users\Antje\AppData\Local\{4A45C413-FF24-4202-A727-B9228B05AA7A}
2013-09-18 16:47 - 2013-09-18 16:47 - 00000000 ____D C:\Users\Antje\AppData\Local\{42BCF608-CF1D-46C5-B990-3D67CC3C673A}
2013-09-17 22:48 - 2013-09-17 22:48 - 00000000 ____D C:\Users\Antje\AppData\Local\{57F18674-253E-418A-BA85-4373CE7E0FDC}
2013-09-17 10:48 - 2013-09-17 10:48 - 00000000 ____D C:\Users\Antje\AppData\Local\{85C67C3A-CC79-4E32-AAA0-9B8D3C1CE433}
2013-09-16 13:21 - 2013-09-16 13:18 - 00000000 ____D C:\Users\Antje\AppData\Local\{BCADF39B-B524-4E2B-AF1C-3A92E44BBE1C}
2013-09-15 23:16 - 2013-09-15 23:16 - 00000000 ____D C:\Users\Antje\AppData\Local\{B4000FC6-0B4B-499A-A00F-EEED74E00A00}
2013-09-15 11:16 - 2013-09-15 11:14 - 00000000 ____D C:\Users\Antje\AppData\Local\{30E996A5-0745-4420-B3C5-5EEB68A8B720}
2013-09-14 20:38 - 2013-09-14 20:37 - 00000000 ____D C:\Users\Antje\AppData\Local\{F4F162E8-3708-44F0-B752-1AC18EAAEEAB}
2013-09-14 20:23 - 2011-09-02 14:19 - 00000000 ___RD C:\Users\Antje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2013-09-14 20:21 - 2009-07-14 06:45 - 02843368 _____ C:\Windows\system32\FNTCACHE.DAT
2013-09-13 19:23 - 2013-08-14 22:48 - 00000000 ____D C:\Windows\system32\MRT
2013-09-13 19:19 - 2011-09-03 15:33 - 79143768 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-09-13 19:10 - 2013-09-13 19:09 - 00000000 ____D C:\Users\Antje\AppData\Local\{D35ACF40-D583-462B-B855-67A4020E675B}
2013-09-12 17:30 - 2013-09-12 17:29 - 00000000 ____D C:\Users\Antje\AppData\Local\{246DEBBB-FDD8-4DE1-92EB-61029234A750}
2013-09-11 18:32 - 2013-09-11 18:30 - 00000000 ____D C:\Users\Antje\AppData\Local\{222B4BCD-D586-40C9-BC66-4093CA953772}
2013-09-10 22:54 - 2013-09-10 22:54 - 00000000 ____D C:\Users\Antje\AppData\Local\{0904AEDC-D134-4901-9F0F-20F2C2ECA1BC}
2013-09-10 10:54 - 2013-09-10 10:54 - 00000000 ____D C:\Users\Antje\AppData\Local\{E2C980FF-5989-4256-85C5-4418E40BA14B}
2013-09-09 22:53 - 2013-09-09 22:53 - 00000000 ____D C:\Users\Antje\AppData\Local\{A81033D2-EC78-438C-88CF-8DBD0726C788}
2013-09-09 20:27 - 2013-09-09 20:27 - 00000000 ____D C:\Program Files (x86)\MF Shutdown Manager
2013-09-09 10:53 - 2013-09-09 10:53 - 00000000 ____D C:\Users\Antje\AppData\Local\{7F734889-6D38-49A9-9700-4A913C6146FA}
2013-09-08 22:53 - 2013-09-08 22:53 - 00000000 ____D C:\Users\Antje\AppData\Local\{DE48CC7B-27F4-46B4-817F-66089D21AA89}
2013-09-08 10:53 - 2013-09-08 10:52 - 00000000 ____D C:\Users\Antje\AppData\Local\{7CA069D8-2119-4C4C-AF1E-01B37AACEC24}
2013-09-07 15:02 - 2013-09-07 15:02 - 00000000 ____D C:\Users\Antje\AppData\Local\{118575C1-7D35-4B56-A5D5-E4165393F761}
2013-09-06 22:35 - 2013-09-06 22:34 - 00000000 ____D C:\Users\Antje\AppData\Local\{FD8DA5DE-63A9-4A49-AE08-8874A76E4859}
2013-09-06 10:34 - 2013-09-06 10:33 - 00000000 ____D C:\Users\Antje\AppData\Local\{61AC4E6B-455B-4E94-8BAF-D7B3DBC0D760}
2013-09-05 14:00 - 2013-09-05 13:58 - 00000000 ____D C:\Users\Antje\AppData\Local\{BD751EDA-AE3D-4205-B343-20B0C239706C}
2013-09-05 00:00 - 2013-04-02 00:30 - 00000000 ____D C:\Users\Antje\AppData\Local\Audible
2013-09-04 15:15 - 2013-09-04 15:15 - 00000000 ____D C:\Users\Antje\AppData\Local\{27C0253A-F608-4E83-B735-275DAC135319}
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-10-01 14:42
==================== End Of Log ============================ --- --- ---
--- --- ---
--- --- ---
--- --- ---
--- --- ---
--- --- ---
Addition-Logfile: Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 02-10-2013
Ran by Antje at 2013-10-04 16:22:51
Running from D:\Eigene Dateien\Downloads
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: avast! Antivirus (Enabled - Up to date) {2B2D1395-420B-D5C9-657E-930FE358FC3C}
AS: avast! Antivirus (Enabled - Up to date) {904CF271-6431-DA47-5FCE-A87D98DFB681}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
„Windows Live Essentials“ (x32 Version: 15.4.3502.0922)
„Windows Live Mail“ (x32 Version: 15.4.3502.0922)
„Windows Live Mesh ActiveX“ nuotolinių ryšių valdiklis (x32 Version: 15.4.5722.2)
„Windows Live Messenger“ (x32 Version: 15.4.3538.0513)
„Windows Live“ fotogalerija (x32 Version: 15.4.3502.0922)
64 Bit HP CIO Components Installer (Version: 6.2.1)
ActiveX контрола на Windows Live Mesh за отдалечени връзки (x32 Version: 15.4.5722.2)
ActiveX-kontroll för fjärranslutningar för Windows Live Mesh (x32 Version: 15.4.5722.2)
Adobe Acrobat 8 Professional - English, Français, Deutsch (x32 Version: 8.1.0)
Adobe After Effects CS3 Presets (x32 Version: 8)
Adobe Anchor Service CS3 (x32 Version: 1.0)
Adobe Asset Services CS3 (x32 Version: 3)
Adobe Bridge CS3 (x32 Version: 2)
Adobe Bridge Start Meeting (x32 Version: 1.0)
Adobe BridgeTalk Plugin CS3 (x32 Version: 1.0)
Adobe Camera Raw 4.0 (x32 Version: 4.0)
Adobe CMaps (x32 Version: 1.0)
Adobe Color - Photoshop Specific (x32 Version: 1.0)
Adobe Color Common Settings (x32 Version: 1.0.1)
Adobe Color EU Recommended Settings (x32 Version: 1.0)
Adobe Color JA Extra Settings (x32 Version: 1.0)
Adobe Color NA Extra Settings (x32 Version: 1.0)
Adobe Creative Suite 3 Master Collection (x32 Version: 1.0)
Adobe Creative Suite 3 Master Collection hinzufügen oder entfernen (x32 Version: 1.0)
Adobe Default Language CS3 (x32 Version: 1.0)
Adobe Device Central CS3 (x32 Version: 1.0)
Adobe Digital Editions 2.0 (x32 Version: 2.0)
Adobe Dreamweaver CS3 (x32 Version: 9)
Adobe ExtendScript Toolkit 2 (x32 Version: 2.0.2)
Adobe Extension Manager CS3 (x32 Version: 1.8)
Adobe Flash Player 11 ActiveX (x32 Version: 11.8.800.175)
Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.168)
Adobe Fonts All (x32 Version: 1.0)
Adobe Help Viewer CS3 (x32 Version: 1)
Adobe Illustrator CS3 (x32 Version: 13.0)
Adobe InDesign CS3 (x32 Version: 5.0)
Adobe InDesign CS3 Icon Handler (x32 Version: 5.0)
Adobe Linguistics CS3 (x32 Version: 3.0.0)
Adobe MotionPicture Color Files (x32 Version: 1.0)
Adobe PDF Library Files (x32 Version: 8.0)
Adobe Photoshop 7.0 (x32 Version: 7.0)
Adobe Photoshop CS3 (x32 Version: 10)
Adobe Reader XI (11.0.04) - Deutsch (x32 Version: 11.0.04)
Adobe Setup (x32 Version: 1.0)
Adobe SING CS3 (x32 Version: 0.1)
Adobe Stock Photos CS3 (x32 Version: 1.5)
Adobe Type Support (x32 Version: 1.0)
Adobe Update Manager CS3 (x32 Version: 5.1.0)
Adobe Version Cue CS3 Client (x32 Version: 3)
Adobe Video Profiles (x32 Version: 1.0)
Adobe WAS CS3 (x32 Version: 1.0)
Adobe WinSoft Linguistics Plugin (x32 Version: 1.0)
Adobe XMP DVA Panels CS3 (x32 Version: 1.0)
Adobe XMP Panels CS3 (x32 Version: 1.0)
AHV content for Acrobat and Flash (x32 Version: 1)
Amazon Kindle (HKCU)
Ashampoo Burning Studio 2013 v.11.0.6 (x32 Version: 11.0.6)
Atheros Client Installation Program (x32 Version: 9.0)
Audible Download Manager (x32 Version: 6.6.0.15)
AudibleManager (x32 Version: 1995783406.48.56.3542250)
avast! Free Antivirus (x32 Version: 8.0.1497.0)
BatteryLifeExtender (x32 Version: 1.0.11)
Bing Bar (x32 Version: 7.0.610.0)
Broadcom 802.11 Network Adapter (Version: 5.60.48.55)
calibre 64bit (Version: 0.9.27)
Compatibility Pack for the 2007 Office system (x32 Version: 12.0.6612.1000)
Control ActiveX de Windows Live Mesh para conexiones remotas (x32 Version: 15.4.5722.2)
Control ActiveX Windows Live Mesh pentru conexiuni la distanță (x32 Version: 15.4.5722.2)
Controle ActiveX do Windows Live Mesh para Conexões Remotas (x32 Version: 15.4.5722.2)
Contrôle ActiveX Windows Live Mesh pour connexions à distance (x32 Version: 15.4.5722.2)
Controlo ActiveX do Windows Live Mesh para Ligações Remotas (x32 Version: 15.4.5722.2)
CyberLink Media Suite (x32 Version: 8.0.2227)
CyberLink Media+ Player10 (x32 Version: 10.0.1110.00)
CyberLink MediaShow (x32 Version: 5.0.1130a)
CyberLink Power2Go (x32 Version: 6.1.3802)
CyberLink PowerDirector (x32 Version: 8.0.3306)
CyberLink YouCam (x32 Version: 3.1.3509)
D3DX10 (x32 Version: 15.4.2368.0902)
Desktop Icon für Amazon (Version: 1.0.1 (de))
DirSync UNICODE 2.93 (x32)
Dropbox (HKCU Version: 1.6.16)
Easy Content Share (x32 Version: 1.0)
Easy Display Manager (x32 Version: 3.2)
Easy Migration (x32 Version: 1.0.0.5)
Easy Network Manager (x32 Version: 4.4.7)
Easy SpeedUp Manager (x32 Version: 2.1.1.1)
EasyBatteryManager (x32 Version: 4.0.0.4)
EasyFileShare (x32 Version: 1.0.12)
ElsterFormular (x32 Version: 14.4.20130909)
ETDWare PS/2-X64 10.7.14.12_WHQL (Version: 10.7.14.12)
Fast Start (x32 Version: 2.2.0.1)
FireJump 1.0 (x32)
Formant ActiveX programu Windows Live Mesh odpowiedzialny za obsługę połączeń zdalnych (x32 Version: 15.4.5722.2)
FormatFactory 2.90 (x32 Version: 2.90)
Fotogalerija Windows Live (x32 Version: 15.4.3502.0922)
Free WMA to MP3 Converter 1.16 (x32)
Galeria de Fotografias do Windows Live (x32 Version: 15.4.3502.0922)
Galería fotográfica de Windows Live (x32 Version: 15.4.3502.0922)
Galeria fotografii usługi Windows Live (x32 Version: 15.4.3502.0922)
Galerie de photos Windows Live (x32 Version: 15.4.3502.0922)
Galerie foto Windows Live (x32 Version: 15.4.3502.0922)
ICQ 7.6 Build #5620 Banner Remover 1.0 (x32)
ICQ7.6 (x32 Version: 7.6)
Intel PROSet Wireless
Intel(R) Management Engine Components (x32 Version: 7.0.0.1144)
Intel(R) PROSet/Wireless WiFi Software (Version: 14.0.2000)
Intel(R) Rapid Storage Technology (x32 Version: 10.0.0.1046)
Java 7 Update 40 (64-bit) (Version: 7.0.400)
Java 7 Update 40 (x32 Version: 7.0.400)
Java Auto Updater (x32 Version: 2.1.9.8)
Java(TM) 6 Update 39 (x32 Version: 6.0.390)
Junk Mail filter update (x32 Version: 15.4.3502.0922)
kikin plugin 2.11 (x32 Version: 2.11)
Kontrola Windows Live Mesh ActiveX za daljinske veze (x32 Version: 15.4.5722.2)
Kontrolnik Windows Live Mesh ActiveX za oddaljene povezave (x32 Version: 15.4.5722.2)
Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300)
McAfee Security Scan Plus (x32 Version: 3.0.318.3)
Mesh Runtime (x32 Version: 15.4.5722.2)
MF Shutdown Manager 2.1.0 (x32 Version: 2.1.0)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Office File Validation Add-In (x32 Version: 14.0.5130.5003)
Microsoft Office Live Add-in 1.5 (x32 Version: 2.0.4024.1)
Microsoft Office Professional Edition 2003 (x32 Version: 11.0.8173.0)
Microsoft Silverlight (Version: 5.1.20513.0)
Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161)
Movie Color Enhancer (x32 Version: 1.0)
Mozilla Firefox 24.0 (x86 de) (x32 Version: 24.0)
Mozilla Maintenance Service (x32 Version: 24.0)
MSVCRT (x32 Version: 15.4.2862.0708)
MSVCRT_amd64 (x32 Version: 15.4.2862.0708)
Norton Online Backup (x32 Version: 2.1.17869)
NVIDIA Grafiktreiber 267.54 (Version: 267.54)
NVIDIA HD-Audiotreiber 1.3.18.0 (Version: 1.3.18.0)
NVIDIA Install Application (Version: 2.1002.109.718)
NVIDIA Systemsteuerung 267.54 (Version: 267.54)
Ovládací prvek ActiveX platformy Windows Live Mesh pro vzdálená připojení (x32 Version: 15.4.5722.2)
Ovládací prvok ActiveX programu Windows Live Mesh pre vzdialené pripojenia (x32 Version: 15.4.5722.2)
PDF Settings (x32 Version: 1.0)
PhoneShare (x32 Version: 9.1.4)
Poczta usługi Windows Live (x32 Version: 15.4.3502.0922)
Podstawowe programy Windows Live (x32 Version: 15.4.3502.0922)
Pošta Windows Live (x32 Version: 15.4.3502.0922)
Raccolta foto di Windows Live (x32 Version: 15.4.3502.0922)
Realtek Ethernet Controller Driver (x32 Version: 7.40.126.2011)
Realtek High Definition Audio Driver (x32 Version: 6.0.1.6318)
RedMon - Redirection Port Monitor
Samsung AnyWeb Print (x32 Version: 2.0.67.1)
Samsung Printer Live Update (x32)
Samsung Recovery Solution 5 (x32 Version: 5.0.1.0)
Samsung Support Center 1.0 (x32 Version: 1.1.38)
Samsung Universal Print Driver (x32 Version: 2.02.05.00:27)
Samsung Universal Scan Driver (x32 Version: 1.2.5.0)
Samsung Update Plus (x32 Version: 3.0.1.17)
SearchAnonymizer (Version: 1.0.1 (de))
SISShortcut (x32 Version: 1.00.000)
Skype™ 5.10 (x32 Version: 5.10.116)
SRS Premium Sound Control Panel (Version: 1.11.1300)
Surf & E-Mail-Stick (x32 Version: 16.001.06.02.35)
The KMPlayer (remove only) (x32)
TubeBox (x32 Version: 3.6)
Überwachungstool für die Intel® Turbo-Boost-Technik 2.0 (Version: 2.0.82.0)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1)
User Guide (x32 Version: 1.0)
Uzak Bağlantılar İçin Windows Live Mesh ActiveX Denetimi (x32 Version: 15.4.5722.2)
Winamp (x32 Version: 5.621 )
Winamp Erkennungs-Plug-in (HKCU Version: 1.0.0.1)
Windows Live Communications Platform (x32 Version: 15.4.3502.0922)
Windows Live Essentials (x32 Version: 15.4.3502.0922)
Windows Live Essentials (x32 Version: 15.4.3555.0308)
Windows Live fotoattēlu galerija (x32 Version: 15.4.3502.0922)
Windows Live Fotogaléria (x32 Version: 15.4.3502.0922)
Windows Live Fotogalerie (x32 Version: 15.4.3502.0922)
Windows Live Foto-galerija (x32 Version: 15.4.3502.0922)
Windows Live Fotogalleri (x32 Version: 15.4.3502.0922)
Windows Live Fotoğraf Galerisi (x32 Version: 15.4.3502.0922)
Windows Live Fotótár (x32 Version: 15.4.3502.0922)
Windows Live Galeria de Fotos (x32 Version: 15.4.3502.0922)
Windows Live Galerija fotografija (x32 Version: 15.4.3502.0922)
Windows Live ID Sign-in Assistant (Version: 7.250.4232.0)
Windows Live Installer (x32 Version: 15.4.3502.0922)
Windows Live Language Selector (Version: 15.4.3555.0308)
Windows Live Mail (x32 Version: 15.4.3502.0922)
Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (x32 Version: 15.4.5722.2)
Windows Live Mesh (x32 Version: 15.4.3502.0922)
Windows Live Mesh ActiveX Control for Remote Connections (x32 Version: 15.4.5722.2)
Windows Live Mesh ActiveX control for remote connections (x32 Version: 15.4.5722.2)
Windows Live Mesh ActiveX kontrola za daljinske veze (x32 Version: 15.4.5722.2)
Windows Live Mesh ActiveX vadīkla attālajiem savienojumiem (x32 Version: 15.4.5722.2)
Windows Live Mesh ActiveX-kontroll for eksterne tilkoblinger (x32 Version: 15.4.5722.2)
Windows Live Mesh ActiveX-objekt til fjernforbindelser (x32 Version: 15.4.5722.2)
Windows Live Mesh ActiveX-vezérlő távoli kapcsolatokhoz (x32 Version: 15.4.5722.2)
Windows Live Meshin etäyhteyksien ActiveX-komponentti (x32 Version: 15.4.5722.2)
Windows Live Messenger (x32 Version: 15.4.3538.0513)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Movie Maker (x32 Version: 15.4.3502.0922)
Windows Live Photo Common (x32 Version: 15.4.3502.0922)
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922)
Windows Live PIMT Platform (x32 Version: 15.4.3508.1109)
Windows Live Pošta (x32 Version: 15.4.3502.0922)
Windows Live Remote Client (Version: 15.4.5722.2)
Windows Live Remote Client Resources (Version: 15.4.5722.2)
Windows Live Remote Service (Version: 15.4.5722.2)
Windows Live Remote Service Resources (Version: 15.4.5722.2)
Windows Live SOXE (x32 Version: 15.4.3502.0922)
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922)
Windows Live Temel Parçalar (x32 Version: 15.4.3502.0922)
Windows Live UX Platform (x32 Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109)
Windows Live Writer (x32 Version: 15.4.3502.0922)
Windows Live Writer Resources (x32 Version: 15.4.3502.0922)
Windows Live 메일 (x32 Version: 15.4.3502.0922)
Windows Live 사진 갤러리 (x32 Version: 15.4.3502.0922)
Windows Live 필수 패키지 (x32 Version: 15.4.3502.0922)
Windows Live 影像中心 (x32 Version: 15.4.3502.0922)
Windows Live 照片库 (x32 Version: 15.4.3502.0922)
Windows Live 程式集 (x32 Version: 15.4.3502.0922)
Windows Live 软件包 (x32 Version: 15.4.3502.0922)
Windows Liven asennustyökalu (x32 Version: 15.4.3502.0922)
Windows Liven sähköposti (x32 Version: 15.4.3502.0922)
Windows Liven valokuvavalikoima (x32 Version: 15.4.3502.0922)
Windows Media Player Firefox Plugin (x32 Version: 1.0.0.8)
WinRAR 5.00 (64-bit) (Version: 5.00.0)
WordCaptureX Pro (x32 Version: 4.0.0)
Στοιχείο ελέγχου ActiveX του Windows Live Mesh για απομακρυσμένες συνδέσεις (x32 Version: 15.4.5722.2)
Συλλογή φωτογραφιών του Windows Live (x32 Version: 15.4.3502.0922)
Основные компоненты Windows Live (x32 Version: 15.4.3502.0922)
Почта Windows Live (x32 Version: 15.4.3502.0922)
Фотоальбом Windows Live (x32 Version: 15.4.3502.0922)
Фотогалерия на Windows Live (x32 Version: 15.4.3502.0922)
Элемент управления Windows Live Mesh ActiveX для удаленных подключений (x32 Version: 15.4.5722.2)
גלריית התמונות של Windows Live (x32 Version: 15.4.3502.0922)
פקד ActiveX של Windows Live Mesh עבור חיבורים מרוחקים (x32 Version: 15.4.5722.2)
بريد Windows Live (x32 Version: 15.4.3502.0922)
عنصر تحكم ActiveX الخاص بـ Windows Live Mesh للاتصالات البعيدة (x32 Version: 15.4.5722.2)
معرض صور Windows Live (x32 Version: 15.4.3502.0922)
ตัวควบคุม ActiveX ใน Windows Live Mesh สำหรับการเชื่อมต่อระยะไกล (ไทย) (x32 Version: 15.4.5722.2)
원격 연결을 위한 Windows Live Mesh ActiveX 컨트롤 (x32 Version: 15.4.5722.2)
用于远程连接的 Windows Live Mesh ActiveX 控件(简体中文) (x32 Version: 15.4.5722.2)
適用遠端連線的 Windows Live Mesh ActiveX 控制項 (x32 Version: 15.4.5722.2)
==================== Restore Points =========================
23-09-2013 16:15:25 Installiert Anno 1701 Demo
24-09-2013 15:23:44 Windows Update
25-09-2013 21:45:58 Entfernt Anno 1701 Demo
27-09-2013 16:12:30 Windows Update
28-09-2013 16:08:14 Installed Java 7 Update 40 (64-bit)
28-09-2013 16:13:08 Installed Java 7 Update 40
01-10-2013 11:48:00 Windows Update
04-10-2013 07:59:46 Windows Update
==================== Hosts content: ==========================
2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {0EAFD584-9675-4985-ADF7-BC9F45104A8A} - System32\Tasks\EasyBatteryManager => C:\Program Files (x86)\Samsung\EasyBatteryManager\EasyBatteryMgr4.exe [2010-07-20] (SAMSUNG Electronics co., LTD.)
Task: {225DEAF4-C48B-42FD-A94F-D191AACC4CD9} - System32\Tasks\WifiManager => C:\Program Files (x86)\Samsung\Easy Display Manager\WifiManager.exe [2011-01-04] (Samsung Electronics Co., Ltd.)
Task: {32C59580-8411-4434-AF66-8D29DA4AAF25} - System32\Tasks\SRS Premium Sound => C:\Program Files\SRS Labs\SRS Control Panel\srspanel_64.exe [2011-02-24] (SRS Labs, Inc.)
Task: {33080E17-6FE9-4083-9480-846D7B52935E} - System32\Tasks\SamsungSupportCenter => C:\Program Files (x86)\Samsung\Samsung Support Center\SSCKbdHk.exe [2011-09-04] (SAMSUNG Electronics)
Task: {3F161AF8-516F-4BBC-86BA-CCC92A903301} - System32\Tasks\MFSM-Tasks\Wochentlich_1_shutdown_1378751376.stask => C:\Program Files (x86)\MF Shutdown Manager\MFSM.exe [2011-05-31] (Alan Alshozi)
Task: {3F830B4D-83C1-40A7-925A-1C8D5CFEE934} - System32\Tasks\advSRS5 => C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\WCScheduler.exe [2011-02-14] (SEC)
Task: {4F94A0B4-B548-4164-AE96-18B6A020E3F5} - System32\Tasks\SmartRestarter => C:\Program Files\Samsung\SamsungFastStart\SmartRestarter.exe [2010-08-05] (Samsung Electronics Co., Ltd.)
Task: {5475C502-0484-44F8-994E-0193DAE2F4E1} - System32\Tasks\MirageAgent => C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2010-11-10] (CyberLink)
Task: {61ACC99B-FADC-430F-A13B-1A2543881EC1} - System32\Tasks\SUPBackground => C:\Program Files (x86)\Samsung\Samsung Update Plus\SUPBackground.exe [2011-12-20] (Samsung Electronics)
Task: {A9088378-A70F-4BDF-81E3-A8EB12C0C5C0} - System32\Tasks\MovieColorEnhancer => C:\Program Files (x86)\Samsung\Movie Color Enhancer\MovieColorEnhancer.exe [2010-11-29] (Samsung Electronics Co., Ltd.)
Task: {B03A3706-B97D-4AEE-8EE6-2114D3F3B5B1} - System32\Tasks\EasyDisplayMgr => C:\Program Files (x86)\Samsung\Easy Display Manager\dmhkcore.exe [2010-12-23] (Samsung Electronics Co., Ltd.)
Task: {C6C1798F-BAAC-4936-87D5-8C3C210EC387} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2013-08-30] (AVAST Software)
Task: {CC317B12-3E56-4F56-8587-9BCA809DA214} - System32\Tasks\Microsoft\Windows\MUI\Lpksetup => C:\Windows\System32\lpksetup.exe [2010-11-20] (Microsoft Corporation)
Task: {D34D9EB1-156B-4703-89E9-9E90A163A4AF} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-09-20] (Adobe Systems Incorporated)
Task: {D3CA7303-5202-4FDA-A643-07AF751C9A80} - System32\Tasks\BatteryLifeExtender => C:\Program Files (x86)\Samsung\BatteryLifeExtender\BatteryLifeExtender.exe [2010-12-18] (Samsung Electronics. Co. Ltd.)
Task: {D641BC3F-5ED3-4177-AE67-040B4B06FA00} - System32\Tasks\EasySpeedUpManager => C:\Program Files (x86)\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe [2010-02-10] (Samsung Electronics Co., Ltd.)
Task: {E09A5F71-580F-4178-B362-A07307414851} - System32\Tasks\MFSM-Tasks\Wochentlich_1_hibernate_1378751339.stask => C:\Program Files (x86)\MF Shutdown Manager\MFSM.exe [2011-05-31] (Alan Alshozi)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
==================== Loaded Modules (whitelisted) =============
2013-10-04 14:32 - 2013-10-04 11:57 - 02104832 _____ () C:\Program Files\AVAST Software\Avast\defs\13100400\algo.dll
2012-05-21 15:42 - 2012-05-21 15:42 - 00020480 _____ () C:\Program Files (x86)\Freemium\SystemStore\Freemium.SystemStore.Infrastructure.dll
2011-03-18 01:06 - 2006-08-12 05:48 - 00049152 _____ () C:\Program Files (x86)\Samsung\Easy Display Manager\HookDllPS2.dll
2011-03-18 01:14 - 2010-05-07 16:22 - 01636864 _____ () C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\Resdll.dll
2013-09-19 17:36 - 2013-09-19 17:36 - 03279768 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
2011-03-18 01:07 - 2010-07-05 12:42 - 00203776 _____ () C:\Program Files (x86)\Samsung\Movie Color Enhancer\WinCRT.dll
==================== Alternate Data Streams (whitelisted) =========
AlternateDataStreams: C:\ProgramData\Temp:31D9EFCC
==================== Safe Mode (whitelisted) ===================
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (10/04/2013 00:23:22 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Error: (10/04/2013 00:22:22 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Error: (10/04/2013 00:22:03 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Error: (10/04/2013 00:22:03 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Error: (10/04/2013 00:22:03 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Error: (10/04/2013 00:22:03 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Error: (10/04/2013 00:22:03 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Error: (10/04/2013 00:22:03 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Error: (10/04/2013 00:22:03 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Error: (10/03/2013 00:25:14 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
System errors:
=============
Error: (10/04/2013 04:09:08 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "SearchAnonymizer" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (10/04/2013 04:09:08 PM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst SearchAnonymizer erreicht.
Error: (10/04/2013 02:57:23 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "SearchAnonymizer" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (10/04/2013 02:57:23 PM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst SearchAnonymizer erreicht.
Error: (10/04/2013 09:50:24 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "System Store" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (10/04/2013 09:50:24 AM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst System Store erreicht.
Error: (10/04/2013 09:49:47 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "SearchAnonymizer" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (10/04/2013 09:49:47 AM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst SearchAnonymizer erreicht.
Error: (10/03/2013 03:27:35 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "SearchAnonymizer" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (10/03/2013 03:27:35 PM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst SearchAnonymizer erreicht.
Microsoft Office Sessions:
=========================
Error: (10/04/2013 00:23:22 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestD:\$RECYCLE.BIN\S-1-5-21-336442205-827502387-1674173946-1000\$RWACKTN.exe
Error: (10/04/2013 00:22:22 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestD:\Eigene Dateien\Downloads\SoftonicDownloader_fuer_kmplayer.exe
Error: (10/04/2013 00:22:03 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestD:\$RECYCLE.BIN\S-1-5-21-336442205-827502387-1674173946-1000\$RCBGG81.exe
Error: (10/04/2013 00:22:03 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestD:\$RECYCLE.BIN\S-1-5-21-336442205-827502387-1674173946-1000\$RI22BIR.exe
Error: (10/04/2013 00:22:03 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestD:\$RECYCLE.BIN\S-1-5-21-336442205-827502387-1674173946-1000\$R96IK74.exe
Error: (10/04/2013 00:22:03 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestD:\$RECYCLE.BIN\S-1-5-21-336442205-827502387-1674173946-1000\$R0IK7XO.exe
Error: (10/04/2013 00:22:03 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestD:\$RECYCLE.BIN\S-1-5-21-336442205-827502387-1674173946-1000\$RH0XT9D.exe
Error: (10/04/2013 00:22:03 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestD:\$RECYCLE.BIN\S-1-5-21-336442205-827502387-1674173946-1000\$RMM2YHR.exe
Error: (10/04/2013 00:22:03 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestD:\$RECYCLE.BIN\S-1-5-21-336442205-827502387-1674173946-1000\$RBTZNEB.exe
Error: (10/03/2013 00:25:14 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestD:\Eigene Dateien\Downloads\SoftonicDownloader_fuer_freemium-tubebox.exe
==================== Memory info ===========================
Percentage of memory in use: 28%
Total physical RAM: 6123.55 MB
Available physical RAM: 4408.82 MB
Total Pagefile: 12245.28 MB
Available Pagefile: 10408.26 MB
Total Virtual: 8192 MB
Available Virtual: 8191.82 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:230 GB) (Free:166.38 GB) NTFS
Drive d: () (Fixed) (Total:342.72 GB) (Free:217.24 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 596 GB) (Disk ID: AECDB9E2)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=230 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=343 GB) - (Type=OF Extended)
Partition 4: (Not Active) - (Size=23 GB) - (Type=27)
==================== End Of Log ============================ und der Log mit den Programmen: Code:
ActiveX контрола на Windows Live Mesh за отдалечени връзки Microsoft Corporation 03.09.2011 5,37 MB 15.4.5722.2
ActiveX-kontroll för fjärranslutningar för Windows Live Mesh Microsoft Corporation 03.09.2011 5,37 MB 15.4.5722.2
Adobe Color Common Settings Adobe Systems Incorporated 14.09.2011 9,19 MB 1.0.1
Adobe Creative Suite 3 Master Collection hinzufügen oder entfernen Adobe Systems Incorporated 25.10.2011 3,25 GB 1.0
Adobe Digital Editions 2.0 Adobe Systems Incorporated 25.12.2012 15,3 MB 2.0
Adobe ExtendScript Toolkit 2 Adobe Systems Incorporated 14.09.2011 16,4 MB 2.0.2
Adobe Flash Player 11 ActiveX Adobe Systems Incorporated 20.09.2013 6,00 MB 11.8.800.175
Adobe Flash Player 11 Plugin Adobe Systems Incorporated 10.09.2013 6,00 MB 11.8.800.168
Adobe Photoshop 7.0 Adobe Systems, Inc. 25.10.2011 7.0
Adobe Reader XI (11.0.04) - Deutsch Adobe Systems Incorporated 13.09.2013 134 MB 11.0.04
Amazon Kindle Amazon 25.12.2012
Ashampoo Burning Studio 2013 v.11.0.6 Ashampoo GmbH & Co. KG 23.04.2013 192 MB 11.0.6
Atheros Client Installation Program Atheros 18.03.2011 9.0
Audible Download Manager Audible, Inc. 02.04.2013 6.6.0.15
AudibleManager Audible, Inc. 02.04.2013 1995783406.48.56.3542250
avast! Free Antivirus AVAST Software 03.09.2013 8.0.1497.0
BatteryLifeExtender Samsung 18.03.2011 31,4 MB 1.0.11
Bing Bar Microsoft Corporation 18.03.2011 24,4 MB 7.0.610.0
Broadcom 802.11 Network Adapter Broadcom Corporation 18.03.2011 5.60.48.55
calibre 64bit Kovid Goyal 18.04.2013 163 MB 0.9.27
Compatibility Pack for the 2007 Office system Microsoft Corporation 13.09.2013 178 MB 12.0.6612.1000
Control ActiveX de Windows Live Mesh para conexiones remotas Microsoft Corporation 03.09.2011 5,37 MB 15.4.5722.2
Control ActiveX Windows Live Mesh pentru conexiuni la distanță Microsoft Corporation 03.09.2011 5,37 MB 15.4.5722.2
Controle ActiveX do Windows Live Mesh para Conexões Remotas Microsoft Corporation 03.09.2011 5,37 MB 15.4.5722.2
Controlo ActiveX do Windows Live Mesh para Ligações Remotas Microsoft Corporation 03.09.2011 5,38 MB 15.4.5722.2
Contrôle ActiveX Windows Live Mesh pour connexions à distance Microsoft Corporation 03.09.2011 5,37 MB 15.4.5722.2
CyberLink Media Suite CyberLink Corp. 18.03.2011 37,1 MB 8.0.2227
CyberLink Media+ Player10 CyberLink Corp. 18.03.2011 103 MB 10.0.1110.00
CyberLink MediaShow CyberLink Corp. 18.03.2011 381 MB 5.0.1130a
CyberLink Power2Go CyberLink Corp. 18.03.2011 108 MB 6.1.3802
CyberLink PowerDirector CyberLink Corp. 18.03.2011 287 MB 8.0.3306
CyberLink YouCam CyberLink Corp. 02.09.2011 134 MB 3.1.3509
Desktop Icon für Amazon 02.09.2011 1.0.1 (de)
DirSync UNICODE 2.93 Stephen Kalisch 03.09.2011
Dropbox Dropbox, Inc. 03.02.2013 1.6.16
Easy Content Share Samsung Electronics Co., LTD 18.03.2011 12,4 MB 1.0
Easy Display Manager Samsung Electronics Co., Ltd. 18.03.2011 3.2
Easy Migration Samsung Electronics Co., Ltd. 18.03.2011 1.0.0.5
Easy Network Manager Samsung 18.03.2011 37,4 MB 4.4.7
Easy SpeedUp Manager Samsung Electronics Co.,Ltd. 18.03.2011 2.1.1.1
EasyBatteryManager Samsung 18.03.2011 4.0.0.4
EasyFileShare Samsung 18.03.2011 31,1 MB 1.0.12
ElsterFormular Landesfinanzdirektion Thüringen 19.09.2013 190 MB 14.4.20130909
ETDWare PS/2-X64 10.7.14.12_WHQL ELAN Microelectronic Corp. 24.08.2012 10.7.14.12
Fast Start SAMSUNG 18.03.2011 2.2.0.1
FireJump 1.0 02.09.2011 701 KB
Formant ActiveX programu Windows Live Mesh odpowiedzialny za obsługę połączeń zdalnych Microsoft Corporation 03.09.2011 5,37 MB 15.4.5722.2
FormatFactory 2.90 Free Time 25.03.2012 2.90
Free WMA to MP3 Converter 1.16 Jodix Technologies Ltd. 15.03.2012
Free YouTube Download version 3.1.27.508 DVDVideoSoft Ltd. 12.05.2012 82,1 MB 3.1.27.508
Free YouTube to MP3 Converter version 3.11.37.1212 DVDVideoSoft Ltd. 25.01.2013 72,8 MB 3.11.37.1212
ICQ 7.6 Build #5620 Banner Remover 1.0 murb.com 29.10.2011 2,77 MB
ICQ7.6 ICQ 29.10.2011 7.6
Intel(R) Management Engine Components Intel Corporation 18.03.2011 7.0.0.1144
Intel(R) PROSet/Wireless WiFi Software Intel Corporation 18.03.2011 25,5 MB 14.0.2000
Intel(R) Rapid Storage Technology Intel Corporation 28.09.2013 10.0.0.1046
Java 7 Update 40 Oracle 28.09.2013 118 MB 7.0.400
Java 7 Update 40 (64-bit) Oracle 28.09.2013 118 MB 7.0.400
Java(TM) 6 Update 39 Oracle 01.03.2013 97,8 MB 6.0.390
kikin plugin 2.11 kikin 26.10.2011 2.11
Kontrola Windows Live Mesh ActiveX za daljinske veze Microsoft Corporation 03.09.2011 5,37 MB 15.4.5722.2
Kontrolnik Windows Live Mesh ActiveX za oddaljene povezave Microsoft Corporation 03.09.2011 5,37 MB 15.4.5722.2
Malwarebytes Anti-Malware Version 1.75.0.1300 Malwarebytes Corporation 03.10.2013 19,2 MB 1.75.0.1300
McAfee Security Scan Plus McAfee, Inc. 03.08.2013 10,2 MB 3.0.318.3
MF Shutdown Manager 2.1.0 Alan Alshozi 09.09.2013 2,52 MB 2.1.0
Microsoft .NET Framework 4 Client Profile Microsoft Corporation 01.08.2013 38,8 MB 4.0.30319
Microsoft .NET Framework 4 Client Profile DEU Language Pack Microsoft Corporation 01.08.2013 2,93 MB 4.0.30319
Microsoft Office File Validation Add-In Microsoft Corporation 14.09.2011 7,95 MB 14.0.5130.5003
Microsoft Office Live Add-in 1.5 Microsoft Corporation 17.04.2012 508 KB 2.0.4024.1
Microsoft Office Professional Edition 2003 Microsoft Corporation 13.09.2013 1,44 GB 11.0.8173.0
Microsoft Silverlight Microsoft Corporation 14.07.2013 149 MB 5.1.20513.0
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 18.03.2011 1,69 MB 3.1.0000
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 03.09.2011 300 KB 8.0.59193
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 Microsoft Corporation 18.03.2011 788 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 03.09.2011 788 KB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 18.03.2011 596 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Corporation 18.03.2011 596 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 03.09.2011 600 KB 9.0.30729.6161
Movie Color Enhancer Samsung Electronics Co., Ltd. 18.03.2011 1.0
Mozilla Firefox 24.0 (x86 de) Mozilla 19.09.2013 47,7 MB 24.0
Mozilla Maintenance Service Mozilla 19.09.2013 336 KB 24.0
Norton Online Backup Symantec Corporation 18.03.2011 6,19 MB 2.1.17869
NVIDIA Grafiktreiber 267.54 NVIDIA Corporation 05.09.2011 267.54
NVIDIA HD-Audiotreiber 1.3.18.0 NVIDIA Corporation 25.04.2013 1.3.18.0
Ovládací prvek ActiveX platformy Windows Live Mesh pro vzdálená připojení Microsoft Corporation 03.09.2011 5,37 MB 15.4.5722.2
Ovládací prvok ActiveX programu Windows Live Mesh pre vzdialené pripojenia Microsoft Corporation 03.09.2011 5,37 MB 15.4.5722.2
PhoneShare Samsung 02.09.2011 9,13 MB 9.1.4
Realtek Ethernet Controller Driver Realtek 18.03.2011 7.40.126.2011
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 18.03.2011 6.0.1.6318
RedMon - Redirection Port Monitor 25.10.2011
Samsung AnyWeb Print Samsung Electronics Co., Ltd. 18.03.2011 2.0.67.1
Samsung Printer Live Update Samsung Electronics Co., Ltd. 18.03.2011
Samsung Recovery Solution 5 Samsung 18.03.2011 5.0.1.0
Samsung Support Center 1.0 Samsung 14.09.2011 83,8 MB 1.1.38
Samsung Universal Print Driver Samsung Electronics Co., Ltd. 18.03.2011 2.02.05.00:27
Samsung Universal Scan Driver Samsung Electronics Co., Ltd. 18.03.2011 1.2.5.0
Samsung Update Plus Samsung Electronics Co., Ltd. 22.12.2011 3.0.1.17
SearchAnonymizer 02.09.2011 1.0.1 (de)
SISShortcut Samsung 18.03.2011 1.00.000
Skype™ 5.10 Skype Technologies S.A. 14.09.2012 19,3 MB 5.10.116
SRS Premium Sound Control Panel SRS Labs, Inc. 18.03.2011 2,65 MB 1.11.1300
Surf & E-Mail-Stick Huawei Technologies Co.,Ltd 10.01.2012 16.001.06.02.35
The KMPlayer (remove only) 02.09.2011
TubeBox Freemium 04.08.2012 13,1 MB 3.6
Uninstall Tool CrystalIdea Software, Inc. 02.04.2013 2.9.5
User Guide 18.03.2011 1.0
Uzak Bağlantılar İçin Windows Live Mesh ActiveX Denetimi Microsoft Corporation 03.09.2011 5,37 MB 15.4.5722.2
Winamp Nullsoft, Inc 02.09.2011 5.621
Winamp Erkennungs-Plug-in Nullsoft, Inc 02.09.2011 75,0 KB 1.0.0.1
Windows Live Essentials Microsoft Corporation 13.04.2012 15.4.3555.0308
Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen Microsoft Corporation 03.09.2011 5,37 MB 15.4.5722.2
Windows Live Mesh ActiveX Control for Remote Connections Microsoft Corporation 03.09.2011 5,37 MB 15.4.5722.2
Windows Live Mesh ActiveX control for remote connections Microsoft Corporation 03.09.2011 5,57 MB 15.4.5722.2
Windows Live Mesh ActiveX kontrola za daljinske veze Microsoft Corporation 03.09.2011 5,37 MB 15.4.5722.2
Windows Live Mesh ActiveX vadīkla attālajiem savienojumiem Microsoft Corporation 03.09.2011 5,37 MB 15.4.5722.2
Windows Live Mesh ActiveX-kontroll for eksterne tilkoblinger Microsoft Corporation 03.09.2011 5,37 MB 15.4.5722.2
Windows Live Mesh ActiveX-objekt til fjernforbindelser Microsoft Corporation 03.09.2011 5,37 MB 15.4.5722.2
Windows Live Mesh ActiveX-vezérlő távoli kapcsolatokhoz Microsoft Corporation 03.09.2011 5,38 MB 15.4.5722.2
Windows Live Meshin etäyhteyksien ActiveX-komponentti Microsoft Corporation 03.09.2011 5,37 MB 15.4.5722.2
Windows Media Player Firefox Plugin Microsoft Corp 26.02.2012 296 KB 1.0.0.8
WinRAR 5.00 (64-bit) win.rar GmbH 28.09.2013 5.00.0
WordCaptureX Pro Deskperience 02.09.2011 2,93 MB 4.0.0
Überwachungstool für die Intel® Turbo-Boost-Technik 2.0 Intel 02.09.2011 27,5 MB 2.0.82.0
Στοιχείο ελέγχου ActiveX του Windows Live Mesh για απομακρυσμένες συνδέσεις Microsoft Corporation 03.09.2011 5,38 MB 15.4.5722.2
Элемент управления Windows Live Mesh ActiveX для удаленных подключений Microsoft Corporation 03.09.2011 5,37 MB 15.4.5722.2
פקד ActiveX של Windows Live Mesh עבור חיבורים מרוחקים Microsoft Corporation 03.09.2011 5,37 MB 15.4.5722.2
عنصر تحكم ActiveX الخاص بـ Windows Live Mesh للاتصالات البعيدة Microsoft Corporation 03.09.2011 5,37 MB 15.4.5722.2
ตัวควบคุม ActiveX ใน Windows Live Mesh สำหรับการเชื่อมต่อระยะไกล (ไทย) Microsoft Corporation 03.09.2011 5,37 MB 15.4.5722.2
„Windows Live Mesh ActiveX“ nuotolinių ryšių valdiklis Microsoft Corporation 03.09.2011 5,37 MB 15.4.5722.2
用于远程连接的 Windows Live Mesh ActiveX 控件(简体中文) Microsoft Corporation 03.09.2011 5,37 MB 15.4.5722.2
適用遠端連線的 Windows Live Mesh ActiveX 控制項 Microsoft Corporation 03.09.2011 5,56 MB 15.4.5722.2
원격 연결을 위한 Windows Live Mesh ActiveX 컨트롤 Microsoft Corporation 03.09.2011 5,37 MB 15.4.5722.2 Malwarebytes Antimalware hab ich auch laufen lassen und da hab ich jetzt keine Funde mehr.
Außerdem habe ich noch einige mir unbekannte Prozesse laufen, wo auch Google keine Infos gegenen hat, vielleicht kann mir da hier noch jemand kurz Auskunft geben:
AppData/Roaming/Ssync.ssync.exe
AppData/Roaming/Scheck.scheck.exe
AppData/Roaming/DataMgr.datamgr.exe
Ich würde mich freuen, wenn sich jemand des Problems annehmen könnte und mich da idiotensicher durchlotsen würde.
Herzlichen Dank schonmal
Viele Grüße
Cao |