static.icmapp.com, WIN 8 (64 bit) Hallo,
ich hab mir auch diese Adware eingefangen. FRST hab ich durchgeführt. Jetzt weiß ich nicht,
ob ich einfach so weitermachen soll, wie bei anderen Threads beschrieben, deshalb erstmal
die Ergebnisse: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 16-12-2013 02
Ran by Ute (administrator) on UTESPC on 16-12-2013 21:27:10
Running from C:\Users\Ute\Desktop
Windows 8 Pro N (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\HelperService.exe
(Sophos Limited) C:\Program Files (x86)\Sophos\AutoUpdate\ALsvc.exe
(Star Finanz - Software Entwicklung und Vertriebs GmbH) C:\Program Files (x86)\StarMoney 8.0\ouservice\StarMoneyOnlineUpdate.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\ConversionService.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Sophos Limited) C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Control\swc_service.exe
(Sophos Limited) C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SavService.exe
(Sophos Limited) C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SAVAdminService.exe
(Sophos Limited) C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_service.exe
(Samsung) C:\Program Files (x86)\Samsung\Kies\Kies.exe
(Samsung) C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
() C:\Windows\Samsung\PanelMgr\SSMMgr.exe
(Sophos Limited) C:\Program Files (x86)\Sophos\AutoUpdate\ALMon.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
() C:\Windows\Samsung\PanelMgr\caller64.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe
(Microsoft Corporation) C:\Windows\splwow64.exe
==================== Registry (Whitelisted) ==================
HKCU\...\Run: [KiesPreload] - C:\Program Files (x86)\Samsung\Kies\Kies.exe [1564528 2013-10-28] (Samsung)
HKCU\...\Run: [KiesAirMessage] - C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup
HKCU\...\Run: [] - C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [845168 2013-10-28] (Samsung)
HKLM-x32\...\Run: [Samsung PanelMgr] - C:\Windows\Samsung\PanelMgr\SSMMgr.exe [688128 2011-08-01] ()
HKLM-x32\...\Run: [Sophos AutoUpdate Monitor] - C:\Program Files (x86)\Sophos\AutoUpdate\ALMon.exe [900160 2013-10-16] (Sophos Limited)
HKLM-x32\...\Run: [KiesTrayAgent] - C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [311152 2013-10-28] (Samsung Electronics Co., Ltd.)
AppInit_DLLs: C:\Program Files (x86)\Sophos\Sophos Anti-Virus\sophos_detoured_x64.dll [218256 2013-10-16] (Sophos Limited)
AppInit_DLLs-x32: C:\PROGRA~2\Sophos\SOPHOS~1\SOPHOS~1.DLL [221840 2013-10-16] (Sophos Limited)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://t.de.msn.com/
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x15FEFA665EE8CE01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://www.searchgol.com/?q={searchTerms}&babsrc=SP_ss&mntrId=A6831C3E842C188E&affID=119357&tsp=5020
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Plus-HD-2.3 - {11111111-1111-1111-1111-110311341126} - C:\Program Files (x86)\Plus-HD-2.3\Plus-HD-2.3-bho.dll (Plus HD)
BHO-x32: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GmbH)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
Toolbar: HKLM-x32 - PDF Architect Toolbar - {25A3A431-30BB-47C8-AD6A-E1063801134F} - C:\Program Files (x86)\PDF Architect\PDFIEPlugin.dll (pdfforge GmbH)
Winsock: Catalog9 01 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll [87616] (Sophos Limited)
Winsock: Catalog9 02 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll [87616] (Sophos Limited)
Winsock: Catalog9 03 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll [87616] (Sophos Limited)
Winsock: Catalog9 04 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll [87616] (Sophos Limited)
Winsock: Catalog9 05 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll [87616] (Sophos Limited)
Winsock: Catalog9 06 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll [87616] (Sophos Limited)
Winsock: Catalog9 07 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll [87616] (Sophos Limited)
Winsock: Catalog9 08 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll [87616] (Sophos Limited)
Winsock: Catalog9 20 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll [87616] (Sophos Limited)
Winsock: Catalog9-x64 01 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll [127040] (Sophos Limited)
Winsock: Catalog9-x64 02 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll [127040] (Sophos Limited)
Winsock: Catalog9-x64 03 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll [127040] (Sophos Limited)
Winsock: Catalog9-x64 04 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll [127040] (Sophos Limited)
Winsock: Catalog9-x64 05 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll [127040] (Sophos Limited)
Winsock: Catalog9-x64 06 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll [127040] (Sophos Limited)
Winsock: Catalog9-x64 07 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll [127040] (Sophos Limited)
Winsock: Catalog9-x64 08 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll [127040] (Sophos Limited)
Winsock: Catalog9-x64 20 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll [127040] (Sophos Limited)
Tcpip\..\Interfaces\{028FA9F4-24F0-4DA5-950D-A80695208D50}: [NameServer]192.168.178.1
FireFox:
========
FF ProfilePath: C:\Users\Ute\AppData\Roaming\Mozilla\Firefox\Profiles\mloo309d.default
FF user.js: detected! => C:\Users\Ute\AppData\Roaming\Mozilla\Firefox\Profiles\mloo309d.default\user.js
FF DefaultSearchEngine: Amazon
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll ()
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll ()
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF SearchPlugin: C:\Users\Ute\AppData\Roaming\Mozilla\Firefox\Profiles\mloo309d.default\searchplugins\daemon-search.xml
FF SearchPlugin: C:\Users\Ute\AppData\Roaming\Mozilla\Firefox\Profiles\mloo309d.default\searchplugins\SweetIM Search.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: Plus-HD-2.3 - C:\Users\Ute\AppData\Roaming\Mozilla\Firefox\Profiles\mloo309d.default\Extensions\7125a285-7e68-47aa-9d72-e81874f4d47e@d3fcdb92-135d-4a8a-8cf6-11e3b57c5fda.com
FF Extension: FRITZ!Box AddOn - C:\Users\Ute\AppData\Roaming\Mozilla\Firefox\Profiles\mloo309d.default\Extensions\fb_add_on@avm.de
FF Extension: Molecular Viewer Plugin - C:\Users\Ute\AppData\Roaming\Mozilla\Firefox\Profiles\mloo309d.default\Extensions\npcml@scarletline.com
FF Extension: Adblock Plus - C:\Users\Ute\AppData\Roaming\Mozilla\Firefox\Profiles\mloo309d.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF HKLM-x32\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt
FF Extension: PDF Architect Converter For Firefox - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt
Chrome:
=======
Error reading preferences. Please check "preferences" file for possible corruption. <======= ATTENTION
CHR Extension: (Plus-HD-2.3) - C:\Users\Ute\AppData\Local\Google\Chrome\User Data\Default\Extensions\omfoidjpeklpjhlhabhcomekbkclkbec\1.23.17_0
==================== Services (Whitelisted) =================
R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH)
R2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH)
R2 SAVAdminService; C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SAVAdminService.exe [216640 2013-10-16] (Sophos Limited)
R2 SAVService; C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SavService.exe [139840 2013-10-16] (Sophos Limited)
R2 Sophos AutoUpdate Service; C:\Program Files (x86)\Sophos\AutoUpdate\ALsvc.exe [232512 2013-10-16] (Sophos Limited)
R2 Sophos Web Control Service; C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Control\swc_service.exe [357400 2013-10-16] (Sophos Limited)
R2 StarMoney 8.0 OnlineUpdate; C:\Program Files (x86)\StarMoney 8.0\ouservice\StarMoneyOnlineUpdate.exe [699680 2012-12-21] (Star Finanz - Software Entwicklung und Vertriebs GmbH)
R2 swi_service; C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_service.exe [2869824 2013-10-16] (Sophos Limited)
S2 swi_update_64; C:\ProgramData\Sophos\Web Intelligence\swi_update_64.exe [1998400 2013-10-16] (Sophos Limited)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [15440 2012-07-26] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation)
R1 SAVOnAccess; C:\Windows\System32\DRIVERS\savonaccess.sys [144672 2013-10-16] (Sophos Limited)
S3 sdcfilter; C:\Windows\system32\DRIVERS\sdcfilter.sys [36640 2013-10-16] (Sophos Limited)
S4 SophosBootDriver; C:\Windows\system32\DRIVERS\SophosBootDriver.sys [25608 2010-03-02] (Sophos Plc)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-12-16 21:27 - 2013-12-16 21:27 - 00010924 _____ C:\Users\Ute\Desktop\FRST.txt
2013-12-16 21:27 - 2013-12-16 21:27 - 00000000 ____D C:\FRST
2013-12-16 21:20 - 2013-12-16 21:20 - 01927940 _____ (Farbar) C:\Users\Ute\Desktop\FRST64.exe
2013-12-15 16:13 - 2013-12-15 16:13 - 00000117 _____ C:\Windows\system32\netcfg-650036094.txt
2013-12-15 15:33 - 2013-12-15 15:33 - 00000117 _____ C:\Windows\system32\netcfg-647627969.txt
2013-12-15 15:25 - 2013-12-15 15:25 - 00000117 _____ C:\Windows\system32\netcfg-647128016.txt
2013-12-14 20:18 - 2013-12-14 20:18 - 00000117 _____ C:\Windows\system32\netcfg-578324922.txt
2013-12-14 20:13 - 2013-12-14 20:13 - 00000117 _____ C:\Windows\system32\netcfg-578020954.txt
2013-12-14 20:12 - 2013-12-14 20:12 - 00000117 _____ C:\Windows\system32\netcfg-577966454.txt
2013-12-14 16:46 - 2013-12-14 16:46 - 00000117 _____ C:\Windows\system32\netcfg-565654719.txt
2013-12-14 13:07 - 2013-12-14 13:07 - 00000117 _____ C:\Windows\system32\netcfg-552470360.txt
2013-12-14 12:50 - 2013-12-14 12:50 - 00000117 _____ C:\Windows\system32\netcfg-551497860.txt
2013-12-14 12:50 - 2013-12-14 12:50 - 00000117 _____ C:\Windows\system32\netcfg-551478954.txt
2013-12-11 19:36 - 2013-12-14 12:56 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2013-12-09 20:48 - 2013-12-09 20:48 - 00000117 _____ C:\Windows\system32\netcfg-148135391.txt
2013-12-09 20:35 - 2013-12-09 20:35 - 00000117 _____ C:\Windows\system32\netcfg-147392172.txt
2013-12-09 20:35 - 2013-12-09 20:35 - 00000117 _____ C:\Windows\system32\netcfg-147368750.txt
2013-12-08 19:09 - 2013-12-08 19:09 - 00000117 _____ C:\Windows\system32\netcfg-55800172.txt
2013-12-07 21:15 - 2013-12-07 21:15 - 00000117 _____ C:\Windows\system32\netcfg--22984171.txt
2013-12-05 18:26 - 2013-12-05 18:26 - 00000117 _____ C:\Windows\system32\netcfg--205948000.txt
2013-12-05 18:26 - 2013-12-05 18:26 - 00000117 _____ C:\Windows\system32\netcfg--205923781.txt
2013-12-05 18:24 - 2013-12-05 18:24 - 00000117 _____ C:\Windows\system32\netcfg--206053812.txt
2013-12-05 18:20 - 2013-12-05 18:20 - 00000117 _____ C:\Windows\system32\netcfg--206265812.txt
2013-12-05 18:20 - 2013-12-05 18:20 - 00000117 _____ C:\Windows\system32\netcfg--206264156.txt
2013-12-05 18:00 - 2013-12-05 18:00 - 00000117 _____ C:\Windows\system32\netcfg--207467218.txt
2013-12-05 18:00 - 2013-12-05 18:00 - 00000117 _____ C:\Windows\system32\netcfg--207465437.txt
2013-12-05 17:58 - 2013-12-05 17:58 - 00000117 _____ C:\Windows\system32\netcfg--207628796.txt
2013-12-05 17:58 - 2013-12-05 17:58 - 00000117 _____ C:\Windows\system32\netcfg--207627015.txt
2013-12-05 17:55 - 2013-12-05 17:55 - 00000117 _____ C:\Windows\system32\netcfg--207798468.txt
2013-12-03 17:44 - 2013-12-03 17:44 - 00000117 _____ C:\Windows\system32\netcfg--381272406.txt
2013-12-03 17:37 - 2013-12-03 17:37 - 00000117 _____ C:\Windows\system32\netcfg--381683109.txt
2013-12-03 17:37 - 2013-12-03 17:37 - 00000117 _____ C:\Windows\system32\netcfg--381674156.txt
2013-12-03 17:31 - 2013-12-03 17:31 - 00000117 _____ C:\Windows\system32\netcfg--382036625.txt
2013-12-03 17:31 - 2013-12-03 17:31 - 00000117 _____ C:\Windows\system32\netcfg--382034843.txt
2013-12-03 17:25 - 2013-12-03 17:25 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_WinUsb_01007.Wdf
2013-12-01 13:40 - 2013-12-01 13:40 - 00000117 _____ C:\Windows\system32\netcfg--568691640.txt
2013-12-01 13:39 - 2013-12-01 13:39 - 00000117 _____ C:\Windows\system32\netcfg--568738140.txt
2013-12-01 13:32 - 2013-12-01 13:32 - 00000117 _____ C:\Windows\system32\netcfg--569170109.txt
2013-12-01 13:32 - 2013-12-01 13:32 - 00000117 _____ C:\Windows\system32\netcfg--569168343.txt
2013-12-01 13:26 - 2013-12-01 13:26 - 00000117 _____ C:\Windows\system32\netcfg--569510375.txt
2013-12-01 13:26 - 2013-12-01 13:26 - 00000117 _____ C:\Windows\system32\netcfg--569508578.txt
2013-12-01 12:56 - 2013-12-01 12:56 - 00000117 _____ C:\Windows\system32\netcfg--571325156.txt
2013-12-01 12:52 - 2013-12-01 12:52 - 00000117 _____ C:\Windows\system32\netcfg--571576218.txt
2013-12-01 12:49 - 2013-12-01 12:49 - 00000117 _____ C:\Windows\system32\netcfg--571761109.txt
2013-12-01 12:49 - 2013-12-01 12:49 - 00000117 _____ C:\Windows\system32\netcfg--571756828.txt
2013-12-01 12:36 - 2013-12-01 12:36 - 00000117 _____ C:\Windows\system32\netcfg--572545203.txt
2013-12-01 12:36 - 2013-12-01 12:36 - 00000117 _____ C:\Windows\system32\netcfg--572535828.txt
2013-12-01 12:32 - 2013-12-01 12:32 - 00000117 _____ C:\Windows\system32\netcfg--572779625.txt
2013-12-01 12:32 - 2013-12-01 12:32 - 00000117 _____ C:\Windows\system32\netcfg--572768078.txt
2013-12-01 12:32 - 2013-12-01 12:32 - 00000117 _____ C:\Windows\system32\netcfg--572766281.txt
2013-12-01 12:32 - 2013-12-01 12:32 - 00000117 _____ C:\Windows\system32\netcfg--572742578.txt
2013-12-01 12:32 - 2013-12-01 12:32 - 00000117 _____ C:\Windows\system32\netcfg--572740781.txt
2013-12-01 12:31 - 2013-12-01 12:31 - 00000117 _____ C:\Windows\system32\netcfg--572800125.txt
2013-12-01 12:26 - 2013-12-01 12:26 - 00000117 _____ C:\Windows\system32\netcfg--573126125.txt
2013-12-01 12:26 - 2013-12-01 12:26 - 00000117 _____ C:\Windows\system32\netcfg--573124578.txt
2013-12-01 12:24 - 2013-12-01 12:24 - 00000117 _____ C:\Windows\system32\netcfg--573257500.txt
2013-12-01 12:24 - 2013-12-01 12:24 - 00000117 _____ C:\Windows\system32\netcfg--573255734.txt
2013-12-01 12:06 - 2013-12-01 12:06 - 00000117 _____ C:\Windows\system32\netcfg--574313359.txt
2013-11-30 11:41 - 2013-11-30 11:41 - 00000117 _____ C:\Windows\system32\netcfg--662222953.txt
2013-11-30 11:38 - 2013-11-30 11:38 - 00000117 _____ C:\Windows\system32\netcfg--662416046.txt
2013-11-30 11:38 - 2013-11-30 11:38 - 00000117 _____ C:\Windows\system32\netcfg--662398718.txt
2013-11-30 11:30 - 2013-11-30 11:30 - 00000117 _____ C:\Windows\system32\netcfg--662899609.txt
2013-11-30 11:30 - 2013-11-30 11:30 - 00000117 _____ C:\Windows\system32\netcfg--662886109.txt
2013-11-30 11:27 - 2013-11-30 11:27 - 00000117 _____ C:\Windows\system32\netcfg--663063718.txt
2013-11-30 11:27 - 2013-11-30 11:27 - 00000117 _____ C:\Windows\system32\netcfg--663061984.txt
2013-11-30 11:27 - 2013-11-30 11:27 - 00000117 _____ C:\Windows\system32\netcfg--663054546.txt
2013-11-30 11:27 - 2013-11-30 11:27 - 00000117 _____ C:\Windows\system32\netcfg--663039765.txt
2013-11-30 10:33 - 2013-11-30 10:33 - 00000117 _____ C:\Windows\system32\netcfg--666309421.txt
2013-11-30 10:30 - 2013-11-30 10:30 - 00000117 _____ C:\Windows\system32\netcfg--666500546.txt
2013-11-30 10:30 - 2013-11-30 10:30 - 00000117 _____ C:\Windows\system32\netcfg--666498765.txt
2013-11-30 10:30 - 2013-11-30 10:30 - 00000117 _____ C:\Windows\system32\netcfg--666463546.txt
2013-11-27 21:35 - 2013-11-27 21:35 - 00000117 _____ C:\Windows\system32\netcfg--885781578.txt
2013-11-27 21:35 - 2013-11-27 21:35 - 00000117 _____ C:\Windows\system32\netcfg--885779859.txt
2013-11-27 21:21 - 2013-11-27 21:21 - 00000117 _____ C:\Windows\system32\netcfg--886580437.txt
2013-11-25 19:59 - 2013-11-25 19:59 - 00000117 _____ C:\Windows\system32\netcfg--1064321750.txt
2013-11-24 22:48 - 2013-11-24 22:48 - 00000117 _____ C:\Windows\system32\netcfg--1140586078.txt
2013-11-24 22:35 - 2013-11-24 22:47 - 00007589 _____ C:\Users\Ute\AppData\Roaming\SmarThruOptions.xml
2013-11-24 22:35 - 2013-11-24 22:35 - 00000000 ____D C:\Users\Ute\AppData\Roaming\SmarThru4
2013-11-24 22:35 - 2005-11-30 17:42 - 01693696 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\LTCLR13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 01402368 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltdlg13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 01009664 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\Ltwvc13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00935088 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\LTR13N.DLL
2013-11-24 22:35 - 2005-11-30 17:42 - 00747008 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltocx13n.ocx
2013-11-24 22:35 - 2005-11-30 17:42 - 00536752 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\LTRVW13N.OCX
2013-11-24 22:35 - 2005-11-30 17:42 - 00470720 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\LTRPR13n.DLL
2013-11-24 22:35 - 2005-11-30 17:42 - 00446464 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltkrn13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00445440 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltimg13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00427008 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\LFCMP13s.DLL
2013-11-24 22:35 - 2005-11-30 17:42 - 00408576 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\LFCMP13n.DLL
2013-11-24 22:35 - 2005-11-30 17:42 - 00313008 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\LTRIO13N.DLL
2013-11-24 22:35 - 2005-11-30 17:42 - 00275456 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\LFJ2K13s.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00271360 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\LFJ2K13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00269312 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\LTDIS13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00212480 _____ (Eastman Kodak) C:\Windows\SysWOW64\PCDLIB32.DLL
2013-11-24 22:35 - 2005-11-30 17:42 - 00206848 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltefx13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00185856 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\Lfpng13s.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00181760 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\Lfpng13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00172032 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lftif13s.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00158720 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\Ltpnt13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00146976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Mfcoleui.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00144384 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltfil13n.DLL
2013-11-24 22:35 - 2005-11-30 17:42 - 00132096 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lftif13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00131584 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfjbg13s.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00114176 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\LTOCR13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00114176 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lffax13s.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00111104 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfpsd13s.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00108032 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\LTTLB13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00095232 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltpdg13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00090112 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfjbg13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00081920 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfeps13s.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00073728 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lffax13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00070656 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfbmp13s.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00069632 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltbar13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00068096 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfiff13s.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00065536 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfpcx13s.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00065536 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfani13s.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00065024 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfclp13s.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00062976 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\LFPNM13s.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00060928 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfimg13s.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00060416 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfitg13s.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00059904 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfpcd13s.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00059392 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfmsp13s.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00058880 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfavi13s.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00055808 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfpsd13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00051200 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltlst13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00047616 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfeps13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00044032 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lttwn13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00032256 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lttmb13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00031744 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfclp13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00031232 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\LFPNM13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00030208 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfbmp13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00027648 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfiff13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00026624 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfpcx13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00025600 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfani13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00020992 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfimg13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00019968 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfpcd13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00019968 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfitg13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00018944 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfmsp13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00018944 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfavi13n.dll
2013-11-24 22:35 - 2005-11-30 17:42 - 00000422 _____ C:\Windows\SysWOW64\ltocx13.lic
2013-11-24 22:34 - 2013-11-24 22:35 - 00000162 _____ C:\Windows\setup.log
2013-11-24 22:34 - 2013-11-24 22:34 - 00000131 _____ C:\Windows\Readiris.ini
2013-11-24 22:34 - 2013-11-24 22:34 - 00000000 ____D C:\Program Files (x86)\Readiris
2013-11-24 22:34 - 1997-05-26 14:55 - 00023040 _____ C:\Windows\SysWOW64\irisco32.dll
2013-11-24 22:33 - 2013-11-24 22:35 - 00000000 ____D C:\Program Files (x86)\SmarThru 4
2013-11-24 22:33 - 2013-11-24 22:33 - 00000828 _____ C:\Users\Public\Desktop\SmarThru 4.lnk
2013-11-24 22:20 - 2013-11-24 22:20 - 00000750 _____ C:\SamsungPrinter_Update.log
2013-11-24 22:09 - 2013-11-24 22:09 - 00000117 _____ C:\Windows\system32\netcfg--1142937531.txt
2013-11-24 21:53 - 2013-11-24 21:53 - 00000117 _____ C:\Windows\system32\netcfg--1143865796.txt
2013-11-24 21:47 - 2013-11-24 21:47 - 00000117 _____ C:\Windows\system32\netcfg--1144217031.txt
2013-11-24 21:18 - 2013-12-15 20:35 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-11-24 21:18 - 2013-12-10 19:35 - 00003772 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-11-24 21:13 - 2013-11-24 21:13 - 00000117 _____ C:\Windows\system32\netcfg--1146291218.txt
2013-11-24 12:24 - 2013-11-24 12:24 - 00000117 _____ C:\Windows\system32\netcfg--1178017046.txt
2013-11-23 16:01 - 2013-11-23 16:01 - 00000000 ____D C:\Users\Ute\AppData\Local\Sophos
2013-11-23 15:48 - 2013-11-23 15:48 - 00000117 _____ C:\Windows\system32\netcfg--1252162109.txt
2013-11-23 15:48 - 2013-11-23 15:48 - 00000117 _____ C:\Windows\system32\netcfg--1252160734.txt
2013-11-22 19:44 - 2013-11-22 19:44 - 00000117 _____ C:\Windows\system32\netcfg--1324406062.txt
2013-11-21 15:09 - 2013-11-21 15:09 - 00000117 _____ C:\Windows\system32\netcfg--1427321687.txt
2013-11-21 15:00 - 2013-11-21 15:00 - 00000117 _____ C:\Windows\system32\netcfg--1427847843.txt
2013-11-21 15:00 - 2013-11-21 15:00 - 00000117 _____ C:\Windows\system32\netcfg--1427837093.txt
2013-11-21 14:53 - 2013-11-21 14:53 - 00000117 _____ C:\Windows\system32\netcfg--1428275390.txt
2013-11-21 14:52 - 2013-11-21 14:52 - 00000117 _____ C:\Windows\system32\netcfg--1428317375.txt
2013-11-20 19:24 - 2013-11-20 19:24 - 00000117 _____ C:\Windows\system32\netcfg--1498366375.txt
2013-11-20 19:18 - 2013-11-20 19:18 - 00000117 _____ C:\Windows\system32\netcfg--1498732640.txt
2013-11-19 20:20 - 2013-11-19 20:20 - 00000117 _____ C:\Windows\system32\netcfg--1581446765.txt
2013-11-19 20:12 - 2013-11-19 20:12 - 00000117 _____ C:\Windows\system32\netcfg--1581926421.txt
2013-11-19 20:12 - 2013-11-19 20:12 - 00000117 _____ C:\Windows\system32\netcfg--1581915265.txt
2013-11-19 20:11 - 2013-11-19 20:11 - 00000117 _____ C:\Windows\system32\netcfg--1581928171.txt
2013-11-19 19:59 - 2013-11-19 19:59 - 00000117 _____ C:\Windows\system32\netcfg--1582691687.txt
2013-11-19 19:59 - 2013-11-19 19:59 - 00000117 _____ C:\Windows\system32\netcfg--1582691656.txt
2013-11-19 19:59 - 2013-11-19 19:59 - 00000117 _____ C:\Windows\system32\netcfg--1582651390.txt
2013-11-19 19:59 - 2013-11-19 19:59 - 00000117 _____ C:\Windows\system32\netcfg--1582649562.txt
2013-11-19 19:31 - 2013-11-19 19:31 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-11-18 20:00 - 2013-11-18 20:00 - 00000117 _____ C:\Windows\system32\netcfg--1668983718.txt
2013-11-18 19:56 - 2013-11-18 19:56 - 00000117 _____ C:\Windows\system32\netcfg--1669226953.txt
2013-11-18 19:29 - 2013-11-18 19:29 - 00000117 _____ C:\Windows\system32\netcfg--1670890656.txt
2013-11-18 19:21 - 2013-11-18 19:21 - 00000117 _____ C:\Windows\system32\netcfg--1671348625.txt
2013-11-18 18:58 - 2013-11-18 18:58 - 00000117 _____ C:\Windows\system32\netcfg--1672756015.txt
2013-11-18 18:58 - 2013-11-18 18:58 - 00000117 _____ C:\Windows\system32\netcfg--1672755984.txt
2013-11-18 18:21 - 2013-11-18 18:21 - 00000117 _____ C:\Windows\system32\netcfg--1674982046.txt
2013-11-17 20:16 - 2013-11-17 20:16 - 00000117 _____ C:\Windows\system32\netcfg--1754448453.txt
2013-11-17 19:30 - 2013-11-17 19:30 - 00000117 _____ C:\Windows\system32\netcfg--1757234296.txt
2013-11-17 19:28 - 2013-11-17 19:28 - 00000117 _____ C:\Windows\system32\netcfg--1757325046.txt
2013-11-17 12:11 - 2013-11-17 12:11 - 00000117 _____ C:\Windows\system32\netcfg--1783553937.txt
2013-11-17 12:10 - 2013-11-17 12:10 - 00000117 _____ C:\Windows\system32\netcfg--1783588156.txt
2013-11-16 09:50 - 2013-11-16 09:50 - 00000117 _____ C:\Windows\system32\netcfg--1878419734.txt
==================== One Month Modified Files and Folders =======
2013-12-16 21:27 - 2013-12-16 21:27 - 00010924 _____ C:\Users\Ute\Desktop\FRST.txt
2013-12-16 21:27 - 2013-12-16 21:27 - 00000000 ____D C:\FRST
2013-12-16 21:21 - 2013-08-17 17:46 - 02063644 _____ C:\Windows\WindowsUpdate.log
2013-12-16 21:20 - 2013-12-16 21:20 - 01927940 _____ (Farbar) C:\Users\Ute\Desktop\FRST64.exe
2013-12-16 21:02 - 2013-09-07 10:53 - 00000000 ____D C:\Program Files (x86)\StarMoney 8.0
2013-12-16 21:01 - 2013-09-29 10:44 - 00001208 _____ C:\Windows\Tasks\Plus-HD-2.3-codedownloader.job
2013-12-16 21:01 - 2013-09-29 10:44 - 00001204 _____ C:\Windows\Tasks\Plus-HD-2.3-updater.job
2013-12-16 21:01 - 2013-09-29 10:44 - 00001108 _____ C:\Windows\Tasks\Plus-HD-2.3-enabler.job
2013-12-16 21:01 - 2013-09-29 10:43 - 00001916 _____ C:\Windows\Tasks\Plus-HD-2.3-chromeinstaller.job
2013-12-16 21:01 - 2013-09-29 10:43 - 00001840 _____ C:\Windows\Tasks\Plus-HD-2.3-firefoxinstaller.job
2013-12-16 21:00 - 2012-07-26 09:13 - 00000000 ____D C:\Windows\system32\sru
2013-12-15 20:35 - 2013-11-24 21:18 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-12-15 16:13 - 2013-12-15 16:13 - 00000117 _____ C:\Windows\system32\netcfg-650036094.txt
2013-12-15 15:33 - 2013-12-15 15:33 - 00000117 _____ C:\Windows\system32\netcfg-647627969.txt
2013-12-15 15:25 - 2013-12-15 15:25 - 00000117 _____ C:\Windows\system32\netcfg-647128016.txt
2013-12-14 20:18 - 2013-12-14 20:18 - 00000117 _____ C:\Windows\system32\netcfg-578324922.txt
2013-12-14 20:13 - 2013-12-14 20:13 - 00000117 _____ C:\Windows\system32\netcfg-578020954.txt
2013-12-14 20:12 - 2013-12-14 20:12 - 00000117 _____ C:\Windows\system32\netcfg-577966454.txt
2013-12-14 16:46 - 2013-12-14 16:46 - 00000117 _____ C:\Windows\system32\netcfg-565654719.txt
2013-12-14 13:07 - 2013-12-14 13:07 - 00000117 _____ C:\Windows\system32\netcfg-552470360.txt
2013-12-14 12:56 - 2013-12-11 19:36 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2013-12-14 12:50 - 2013-12-14 12:50 - 00000117 _____ C:\Windows\system32\netcfg-551497860.txt
2013-12-14 12:50 - 2013-12-14 12:50 - 00000117 _____ C:\Windows\system32\netcfg-551478954.txt
2013-12-10 19:35 - 2013-11-24 21:18 - 00003772 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-12-09 20:48 - 2013-12-09 20:48 - 00000117 _____ C:\Windows\system32\netcfg-148135391.txt
2013-12-09 20:35 - 2013-12-09 20:35 - 00000117 _____ C:\Windows\system32\netcfg-147392172.txt
2013-12-09 20:35 - 2013-12-09 20:35 - 00000117 _____ C:\Windows\system32\netcfg-147368750.txt
2013-12-08 19:09 - 2013-12-08 19:09 - 00000117 _____ C:\Windows\system32\netcfg-55800172.txt
2013-12-07 21:18 - 2012-07-26 11:24 - 00746048 _____ C:\Windows\system32\perfh007.dat
2013-12-07 21:18 - 2012-07-26 11:24 - 00151906 _____ C:\Windows\system32\perfc007.dat
2013-12-07 21:18 - 2012-07-26 08:27 - 01734214 _____ C:\Windows\system32\PerfStringBackup.INI
2013-12-07 21:15 - 2013-12-07 21:15 - 00000117 _____ C:\Windows\system32\netcfg--22984171.txt
2013-12-05 18:26 - 2013-12-05 18:26 - 00000117 _____ C:\Windows\system32\netcfg--205948000.txt
2013-12-05 18:26 - 2013-12-05 18:26 - 00000117 _____ C:\Windows\system32\netcfg--205923781.txt
2013-12-05 18:24 - 2013-12-05 18:24 - 00000117 _____ C:\Windows\system32\netcfg--206053812.txt
2013-12-05 18:20 - 2013-12-05 18:20 - 00000117 _____ C:\Windows\system32\netcfg--206265812.txt
2013-12-05 18:20 - 2013-12-05 18:20 - 00000117 _____ C:\Windows\system32\netcfg--206264156.txt
2013-12-05 18:00 - 2013-12-05 18:00 - 00000117 _____ C:\Windows\system32\netcfg--207467218.txt
2013-12-05 18:00 - 2013-12-05 18:00 - 00000117 _____ C:\Windows\system32\netcfg--207465437.txt
2013-12-05 17:58 - 2013-12-05 17:58 - 00000117 _____ C:\Windows\system32\netcfg--207628796.txt
2013-12-05 17:58 - 2013-12-05 17:58 - 00000117 _____ C:\Windows\system32\netcfg--207627015.txt
2013-12-05 17:55 - 2013-12-05 17:55 - 00000117 _____ C:\Windows\system32\netcfg--207798468.txt
2013-12-03 17:44 - 2013-12-03 17:44 - 00000117 _____ C:\Windows\system32\netcfg--381272406.txt
2013-12-03 17:37 - 2013-12-03 17:37 - 00000117 _____ C:\Windows\system32\netcfg--381683109.txt
2013-12-03 17:37 - 2013-12-03 17:37 - 00000117 _____ C:\Windows\system32\netcfg--381674156.txt
2013-12-03 17:31 - 2013-12-03 17:31 - 00000117 _____ C:\Windows\system32\netcfg--382036625.txt
2013-12-03 17:31 - 2013-12-03 17:31 - 00000117 _____ C:\Windows\system32\netcfg--382034843.txt
2013-12-03 17:28 - 2012-07-26 08:21 - 00029209 _____ C:\Windows\setupact.log
2013-12-03 17:25 - 2013-12-03 17:25 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_WinUsb_01007.Wdf
2013-12-01 13:40 - 2013-12-01 13:40 - 00000117 _____ C:\Windows\system32\netcfg--568691640.txt
2013-12-01 13:39 - 2013-12-01 13:39 - 00000117 _____ C:\Windows\system32\netcfg--568738140.txt
2013-12-01 13:32 - 2013-12-01 13:32 - 00000117 _____ C:\Windows\system32\netcfg--569170109.txt
2013-12-01 13:32 - 2013-12-01 13:32 - 00000117 _____ C:\Windows\system32\netcfg--569168343.txt
2013-12-01 13:26 - 2013-12-01 13:26 - 00000117 _____ C:\Windows\system32\netcfg--569510375.txt
2013-12-01 13:26 - 2013-12-01 13:26 - 00000117 _____ C:\Windows\system32\netcfg--569508578.txt
2013-12-01 12:56 - 2013-12-01 12:56 - 00000117 _____ C:\Windows\system32\netcfg--571325156.txt
2013-12-01 12:52 - 2013-12-01 12:52 - 00000117 _____ C:\Windows\system32\netcfg--571576218.txt
2013-12-01 12:49 - 2013-12-01 12:49 - 00000117 _____ C:\Windows\system32\netcfg--571761109.txt
2013-12-01 12:49 - 2013-12-01 12:49 - 00000117 _____ C:\Windows\system32\netcfg--571756828.txt
2013-12-01 12:36 - 2013-12-01 12:36 - 00000117 _____ C:\Windows\system32\netcfg--572545203.txt
2013-12-01 12:36 - 2013-12-01 12:36 - 00000117 _____ C:\Windows\system32\netcfg--572535828.txt
2013-12-01 12:32 - 2013-12-01 12:32 - 00000117 _____ C:\Windows\system32\netcfg--572779625.txt
2013-12-01 12:32 - 2013-12-01 12:32 - 00000117 _____ C:\Windows\system32\netcfg--572768078.txt
2013-12-01 12:32 - 2013-12-01 12:32 - 00000117 _____ C:\Windows\system32\netcfg--572766281.txt
2013-12-01 12:32 - 2013-12-01 12:32 - 00000117 _____ C:\Windows\system32\netcfg--572742578.txt
2013-12-01 12:32 - 2013-12-01 12:32 - 00000117 _____ C:\Windows\system32\netcfg--572740781.txt
2013-12-01 12:31 - 2013-12-01 12:31 - 00000117 _____ C:\Windows\system32\netcfg--572800125.txt
2013-12-01 12:26 - 2013-12-01 12:26 - 00000117 _____ C:\Windows\system32\netcfg--573126125.txt
2013-12-01 12:26 - 2013-12-01 12:26 - 00000117 _____ C:\Windows\system32\netcfg--573124578.txt
2013-12-01 12:24 - 2013-12-01 12:24 - 00000117 _____ C:\Windows\system32\netcfg--573257500.txt
2013-12-01 12:24 - 2013-12-01 12:24 - 00000117 _____ C:\Windows\system32\netcfg--573255734.txt
2013-12-01 12:06 - 2013-12-01 12:06 - 00000117 _____ C:\Windows\system32\netcfg--574313359.txt
2013-11-30 11:41 - 2013-11-30 11:41 - 00000117 _____ C:\Windows\system32\netcfg--662222953.txt
2013-11-30 11:38 - 2013-11-30 11:38 - 00000117 _____ C:\Windows\system32\netcfg--662416046.txt
2013-11-30 11:38 - 2013-11-30 11:38 - 00000117 _____ C:\Windows\system32\netcfg--662398718.txt
2013-11-30 11:30 - 2013-11-30 11:30 - 00000117 _____ C:\Windows\system32\netcfg--662899609.txt
2013-11-30 11:30 - 2013-11-30 11:30 - 00000117 _____ C:\Windows\system32\netcfg--662886109.txt
2013-11-30 11:27 - 2013-11-30 11:27 - 00000117 _____ C:\Windows\system32\netcfg--663063718.txt
2013-11-30 11:27 - 2013-11-30 11:27 - 00000117 _____ C:\Windows\system32\netcfg--663061984.txt
2013-11-30 11:27 - 2013-11-30 11:27 - 00000117 _____ C:\Windows\system32\netcfg--663054546.txt
2013-11-30 11:27 - 2013-11-30 11:27 - 00000117 _____ C:\Windows\system32\netcfg--663039765.txt
2013-11-30 10:33 - 2013-11-30 10:33 - 00000117 _____ C:\Windows\system32\netcfg--666309421.txt
2013-11-30 10:30 - 2013-11-30 10:30 - 00000117 _____ C:\Windows\system32\netcfg--666500546.txt
2013-11-30 10:30 - 2013-11-30 10:30 - 00000117 _____ C:\Windows\system32\netcfg--666498765.txt
2013-11-30 10:30 - 2013-11-30 10:30 - 00000117 _____ C:\Windows\system32\netcfg--666463546.txt
2013-11-27 21:35 - 2013-11-27 21:35 - 00000117 _____ C:\Windows\system32\netcfg--885781578.txt
2013-11-27 21:35 - 2013-11-27 21:35 - 00000117 _____ C:\Windows\system32\netcfg--885779859.txt
2013-11-27 21:21 - 2013-11-27 21:21 - 00000117 _____ C:\Windows\system32\netcfg--886580437.txt
2013-11-25 19:59 - 2013-11-25 19:59 - 00000117 _____ C:\Windows\system32\netcfg--1064321750.txt
2013-11-24 22:48 - 2013-11-24 22:48 - 00000117 _____ C:\Windows\system32\netcfg--1140586078.txt
2013-11-24 22:47 - 2013-11-24 22:35 - 00007589 _____ C:\Users\Ute\AppData\Roaming\SmarThruOptions.xml
2013-11-24 22:47 - 2013-10-19 11:22 - 00000000 ____D C:\Users\Ute\AppData\Roaming\Samsung
2013-11-24 22:35 - 2013-11-24 22:35 - 00000000 ____D C:\Users\Ute\AppData\Roaming\SmarThru4
2013-11-24 22:35 - 2013-11-24 22:34 - 00000162 _____ C:\Windows\setup.log
2013-11-24 22:35 - 2013-11-24 22:33 - 00000000 ____D C:\Program Files (x86)\SmarThru 4
2013-11-24 22:34 - 2013-11-24 22:34 - 00000131 _____ C:\Windows\Readiris.ini
2013-11-24 22:34 - 2013-11-24 22:34 - 00000000 ____D C:\Program Files (x86)\Readiris
2013-11-24 22:34 - 2013-09-07 10:53 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2013-11-24 22:33 - 2013-11-24 22:33 - 00000828 _____ C:\Users\Public\Desktop\SmarThru 4.lnk
2013-11-24 22:20 - 2013-11-24 22:20 - 00000750 _____ C:\SamsungPrinter_Update.log
2013-11-24 22:09 - 2013-11-24 22:09 - 00000117 _____ C:\Windows\system32\netcfg--1142937531.txt
2013-11-24 21:53 - 2013-11-24 21:53 - 00000117 _____ C:\Windows\system32\netcfg--1143865796.txt
2013-11-24 21:47 - 2013-11-24 21:47 - 00000117 _____ C:\Windows\system32\netcfg--1144217031.txt
2013-11-24 21:18 - 2013-11-01 11:46 - 00000000 ____D C:\Users\Ute\AppData\Local\Adobe
2013-11-24 21:13 - 2013-11-24 21:13 - 00000117 _____ C:\Windows\system32\netcfg--1146291218.txt
2013-11-24 12:24 - 2013-11-24 12:24 - 00000117 _____ C:\Windows\system32\netcfg--1178017046.txt
2013-11-23 16:01 - 2013-11-23 16:01 - 00000000 ____D C:\Users\Ute\AppData\Local\Sophos
2013-11-23 15:48 - 2013-11-23 15:48 - 00000117 _____ C:\Windows\system32\netcfg--1252162109.txt
2013-11-23 15:48 - 2013-11-23 15:48 - 00000117 _____ C:\Windows\system32\netcfg--1252160734.txt
2013-11-22 19:44 - 2013-11-22 19:44 - 00000117 _____ C:\Windows\system32\netcfg--1324406062.txt
2013-11-21 15:09 - 2013-11-21 15:09 - 00000117 _____ C:\Windows\system32\netcfg--1427321687.txt
2013-11-21 15:00 - 2013-11-21 15:00 - 00000117 _____ C:\Windows\system32\netcfg--1427847843.txt
2013-11-21 15:00 - 2013-11-21 15:00 - 00000117 _____ C:\Windows\system32\netcfg--1427837093.txt
2013-11-21 14:53 - 2013-11-21 14:53 - 00000117 _____ C:\Windows\system32\netcfg--1428275390.txt
2013-11-21 14:52 - 2013-11-21 14:52 - 00000117 _____ C:\Windows\system32\netcfg--1428317375.txt
2013-11-21 14:52 - 2013-10-28 19:50 - 00000000 _____ C:\Windows\system32\vireng.log
2013-11-20 19:24 - 2013-11-20 19:24 - 00000117 _____ C:\Windows\system32\netcfg--1498366375.txt
2013-11-20 19:18 - 2013-11-20 19:18 - 00000117 _____ C:\Windows\system32\netcfg--1498732640.txt
2013-11-19 20:20 - 2013-11-19 20:20 - 00000117 _____ C:\Windows\system32\netcfg--1581446765.txt
2013-11-19 20:12 - 2013-11-19 20:12 - 00000117 _____ C:\Windows\system32\netcfg--1581926421.txt
2013-11-19 20:12 - 2013-11-19 20:12 - 00000117 _____ C:\Windows\system32\netcfg--1581915265.txt
2013-11-19 20:11 - 2013-11-19 20:11 - 00000117 _____ C:\Windows\system32\netcfg--1581928171.txt
2013-11-19 19:59 - 2013-11-19 19:59 - 00000117 _____ C:\Windows\system32\netcfg--1582691687.txt
2013-11-19 19:59 - 2013-11-19 19:59 - 00000117 _____ C:\Windows\system32\netcfg--1582691656.txt
2013-11-19 19:59 - 2013-11-19 19:59 - 00000117 _____ C:\Windows\system32\netcfg--1582651390.txt
2013-11-19 19:59 - 2013-11-19 19:59 - 00000117 _____ C:\Windows\system32\netcfg--1582649562.txt
2013-11-19 19:31 - 2013-11-19 19:31 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-11-18 20:00 - 2013-11-18 20:00 - 00000117 _____ C:\Windows\system32\netcfg--1668983718.txt
2013-11-18 19:56 - 2013-11-18 19:56 - 00000117 _____ C:\Windows\system32\netcfg--1669226953.txt
2013-11-18 19:29 - 2013-11-18 19:29 - 00000117 _____ C:\Windows\system32\netcfg--1670890656.txt
2013-11-18 19:21 - 2013-11-18 19:21 - 00000117 _____ C:\Windows\system32\netcfg--1671348625.txt
2013-11-18 18:58 - 2013-11-18 18:58 - 00000117 _____ C:\Windows\system32\netcfg--1672756015.txt
2013-11-18 18:58 - 2013-11-18 18:58 - 00000117 _____ C:\Windows\system32\netcfg--1672755984.txt
2013-11-18 18:21 - 2013-11-18 18:21 - 00000117 _____ C:\Windows\system32\netcfg--1674982046.txt
2013-11-17 20:16 - 2013-11-17 20:16 - 00000117 _____ C:\Windows\system32\netcfg--1754448453.txt
2013-11-17 19:30 - 2013-11-17 19:30 - 00000117 _____ C:\Windows\system32\netcfg--1757234296.txt
2013-11-17 19:28 - 2013-11-17 19:28 - 00000117 _____ C:\Windows\system32\netcfg--1757325046.txt
2013-11-17 12:11 - 2013-11-17 12:11 - 00000117 _____ C:\Windows\system32\netcfg--1783553937.txt
2013-11-17 12:10 - 2013-11-17 12:10 - 00000117 _____ C:\Windows\system32\netcfg--1783588156.txt
2013-11-16 09:50 - 2013-11-16 09:50 - 00000117 _____ C:\Windows\system32\netcfg--1878419734.txt
Files to move or delete:
====================
C:\Users\Public\AlexaNSISPlugin.3308.dll
Some content of TEMP:
====================
C:\Users\Ute\AppData\Local\Temp\BackupSetup.exe
C:\Users\Ute\AppData\Local\Temp\Foxit Updater.exe
C:\Users\Ute\AppData\Local\Temp\fp_pl_pfs_installer-1.exe
C:\Users\Ute\AppData\Local\Temp\fp_pl_pfs_installer.exe
C:\Users\Ute\AppData\Local\Temp\ICReinstall_ZipOpenerSetup.exe
C:\Users\Ute\AppData\Local\Temp\ose00000.exe
C:\Users\Ute\AppData\Local\Temp\uninst1.exe
C:\Users\Ute\AppData\Local\Temp\vcredist_x64.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-12-09 20:46
==================== End Of Log ============================ Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 16-12-2013 02
Ran by Ute at 2013-12-16 21:27:48
Running from C:\Users\Ute\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Sophos Anti-Virus (Enabled - Up to date) {65FBD860-96D8-75EF-C7ED-7BE27E6C498A}
AV: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Sophos Anti-Virus (Enabled - Up to date) {DE9A3984-B0E2-7A61-FD5D-409005EB0337}
==================== Installed Programs ======================
Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.170)
Definition update for Microsoft Office 2010 (KB982726) (x32)
Foxit Reader (x32 Version: 5.3.1.606)
Google Update Helper (x32 Version: 1.3.23.0)
Microsoft Office 2010 Service Pack 1 (SP1) (x32)
Microsoft Office Access MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Excel MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Office 64-bit Components 2010 (Version: 14.0.6029.1000)
Microsoft Office OneNote MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Outlook MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office PowerPoint MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Professional 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Proof (English) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Proof (French) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Proof (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Proof (Italian) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Proofing (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Publisher MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Shared 64-bit MUI (German) 2010 (Version: 14.0.6029.1000)
Microsoft Office Shared MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Single Image 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Word MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
MozBackup 1.5.1 (x32)
Mozilla Firefox 25.0.1 (x86 de) (x32 Version: 25.0.1)
Mozilla Maintenance Service (x32 Version: 24.2.0)
Mozilla Thunderbird 24.2.0 (x86 de) (x32 Version: 24.2.0)
MyFreeCodec (HKCU)
PDF Architect (x32 Version: 1.1.83.9982)
PDFCreator (x32 Version: 1.7.1)
Plus-HD-2.3 (x32 Version: 1.27.153.8) <==== ATTENTION
Readiris Pro 9 (x32)
Samsung Kies (x32 Version: 2.6.0.13091_9)
Samsung SCX-4x21 Series (x32)
Samsung Story Album Viewer (x32 Version: 1.0.0.13054_1)
SAMSUNG USB Driver for Mobile Phones (Version: 1.5.27.0)
Secure Download Manager (x32 Version: 3.1.10)
SmarThru 4 (x32)
Sophos Anti-Virus (x32 Version: 10.0.11)
Sophos AutoUpdate (x32 Version: 2.7.4.317)
StarMoney (x32 Version: 3.0.6.28)
StarMoney 8.0 (x32 Version: 8.0)
==================== Restore Points =========================
24-11-2013 21:33:40 Installiert SmarThru 4
08-12-2013 13:50:21 Geplanter Prüfpunkt
15-12-2013 19:10:20 Geplanter Prüfpunkt
==================== Hosts content: ==========================
2012-07-26 06:26 - 2012-07-26 06:26 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {0C09377F-A0C5-4BFA-B414-320AB95351BD} - System32\Tasks\Plus-HD-2.3-chromeinstaller => C:\Program Files (x86)\Plus-HD-2.3\Plus-HD-2.3-chromeinstaller.exe [2013-09-29] (Plus HD) <==== ATTENTION
Task: {2F9AAADC-A510-4E9C-A0D0-F61409025892} - System32\Tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector => Rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
Task: {313BA456-E34F-431C-9CD7-C8444DCE07A1} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask
Task: {37C893E8-CA77-4905-8D4F-802BB879DDAB} - System32\Tasks\Microsoft\Windows\Autochk\Proxy => Rundll32.exe /d acproxy.dll,PerformAutochkOperations
Task: {49857301-7A72-4742-AACA-9EFE39F17929} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-10] (Adobe Systems Incorporated)
Task: {514F6EBA-9D7F-4601-806A-098C01F13756} - System32\Tasks\Plus-HD-2.3-updater => C:\Program Files (x86)\Plus-HD-2.3\Plus-HD-2.3-updater.exe [2013-09-29] (Plus HD) <==== ATTENTION
Task: {82542C6A-03EA-4A88-820C-74D98D625D3C} - System32\Tasks\Plus-HD-2.3-firefoxinstaller => C:\Program Files (x86)\Plus-HD-2.3\Plus-HD-2.3-firefoxinstaller.exe [2013-09-29] (Plus HD) <==== ATTENTION
Task: {8D5DF7C0-EE7A-4D28-9337-4B8174946E41} - System32\Tasks\Plus-HD-2.3-codedownloader => C:\Program Files (x86)\Plus-HD-2.3\Plus-HD-2.3-codedownloader.exe [2013-09-29] (Plus HD) <==== ATTENTION
Task: {97113878-87C2-41BE-B055-44641D44BCD9} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
Task: {A5A73D76-A23E-463B-9CEA-0A2BC9ED3FF2} - System32\Tasks\Plus-HD-2.3-enabler => C:\Program Files (x86)\Plus-HD-2.3\Plus-HD-2.3-enabler.exe [2013-09-29] (Plus HD) <==== ATTENTION
Task: {A63BB025-A33E-4E0E-B254-C53FFAA513F8} - System32\Tasks\Advanced System Protector => C:\Program Files (x86)\RegClean Pro\SystweakASP.exe <==== ATTENTION
Task: {A801E018-1A9D-492F-83DB-F1F386493BDF} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList
Task: {C09AAABB-69EE-4FEB-9F1C-7D3BC8080F00} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
Task: {C6D8B276-1088-418D-8D2F-BF43706553CC} - System32\Tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange => Rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
Task: {D3E9112C-95EE-409F-A3B6-6F2DB18687C8} - System32\Tasks\Microsoft\Windows\Servicing\StartComponentCleanup => C:\Windows\System32\Dism.exe [2012-07-26] (Microsoft Corporation)
Task: {D964CEF0-DC7A-4F24-836C-A7E3EFB827D9} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing
Task: {F9C11CB3-6B94-42C0-8BC7-E95097599407} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe aepdu.dll,AePduRunUpdate
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\Plus-HD-2.3-chromeinstaller.job => C:\Program Files (x86)\Plus-HD-2.3\Plus-HD-2.3-chromeinstaller.exe <==== ATTENTION
Task: C:\Windows\Tasks\Plus-HD-2.3-codedownloader.job => C:\Program Files (x86)\Plus-HD-2.3\Plus-HD-2.3-codedownloader.exe <==== ATTENTION
Task: C:\Windows\Tasks\Plus-HD-2.3-enabler.job => C:\Program Files (x86)\Plus-HD-2.3\Plus-HD-2.3-enabler.exe <==== ATTENTION
Task: C:\Windows\Tasks\Plus-HD-2.3-firefoxinstaller.job => C:\Program Files (x86)\Plus-HD-2.3\Plus-HD-2.3-firefoxinstaller.exe <==== ATTENTION
Task: C:\Windows\Tasks\Plus-HD-2.3-updater.job => C:\Program Files (x86)\Plus-HD-2.3\Plus-HD-2.3-updater.exe <==== ATTENTION
==================== Loaded Modules (whitelisted) =============
2013-09-07 10:54 - 2011-01-13 09:44 - 00232800 _____ () C:\Program Files (x86)\StarMoney 8.0\ouservice\PATCHW32.dll
2013-12-11 19:37 - 2013-12-11 19:37 - 03017840 _____ () C:\Program Files (x86)\Mozilla Thunderbird\mozjs.dll
2013-12-11 19:37 - 2013-12-11 19:37 - 00158832 _____ () C:\Program Files (x86)\Mozilla Thunderbird\NSLDAP32V60.dll
2013-12-11 19:37 - 2013-12-11 19:37 - 00023152 _____ () C:\Program Files (x86)\Mozilla Thunderbird\NSLDAPPR32V60.dll
2013-11-19 19:31 - 2013-11-19 19:31 - 03363952 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SAVService => ""="service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SAVService => ""="service"
==================== Faulty Device Manager Devices =============
Name: High Definition Audio-Gerät
Description: High Definition Audio-Gerät
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: HdAudAddService
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
Name: Qualcomm Atheros AR5BWB222-Funknetzwerkadapter
Description: Qualcomm Atheros AR5BWB222-Funknetzwerkadapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Qualcomm Atheros Communications Inc.
Service: athr
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
Name: PCI-Kommunikationscontroller (einfach)
Description: PCI-Kommunikationscontroller (einfach)
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: SM-Bus-Controller
Description: SM-Bus-Controller
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: 3D-Videocontroller
Description: 3D-Videocontroller
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (12/15/2013 03:33:01 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: ALMon.exe, Version: 3.45.111.317, Zeitstempel: 0x4ff70377
Name des fehlerhaften Moduls: combase.dll, Version: 6.2.9200.16384, Zeitstempel: 0x50108858
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0001334c
ID des fehlerhaften Prozesses: 0x1324
Startzeit der fehlerhaften Anwendung: 0xALMon.exe0
Pfad der fehlerhaften Anwendung: ALMon.exe1
Pfad des fehlerhaften Moduls: ALMon.exe2
Berichtskennung: ALMon.exe3
Vollständiger Name des fehlerhaften Pakets: ALMon.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: ALMon.exe5
Error: (11/18/2013 07:14:22 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: ALMon.exe, Version: 3.45.111.317, Zeitstempel: 0x4ff70377
Name des fehlerhaften Moduls: combase.dll, Version: 6.2.9200.16384, Zeitstempel: 0x50108858
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0001334c
ID des fehlerhaften Prozesses: 0x15e4
Startzeit der fehlerhaften Anwendung: 0xALMon.exe0
Pfad der fehlerhaften Anwendung: ALMon.exe1
Pfad des fehlerhaften Moduls: ALMon.exe2
Berichtskennung: ALMon.exe3
Vollständiger Name des fehlerhaften Pakets: ALMon.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: ALMon.exe5
Error: (10/27/2013 08:50:04 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: ALMon.exe, Version: 3.45.111.317, Zeitstempel: 0x4ff70377
Name des fehlerhaften Moduls: combase.dll, Version: 6.2.9200.16384, Zeitstempel: 0x50108858
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0001334c
ID des fehlerhaften Prozesses: 0x1070
Startzeit der fehlerhaften Anwendung: 0xALMon.exe0
Pfad der fehlerhaften Anwendung: ALMon.exe1
Pfad des fehlerhaften Moduls: ALMon.exe2
Berichtskennung: ALMon.exe3
Vollständiger Name des fehlerhaften Pakets: ALMon.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: ALMon.exe5
Error: (10/19/2013 11:57:53 AM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: IEXPLORE.EXE, Version: 10.0.9200.16384, Zeitstempel: 0x50107ee0
Name des fehlerhaften Moduls: Plus-HD-2.3-bho.dll_unloaded, Version: 0.0.0.0, Zeitstempel: 0x51b5cf67
Ausnahmecode: 0xc0000005
Fehleroffset: 0x034d0ef1
ID des fehlerhaften Prozesses: 0x300
Startzeit der fehlerhaften Anwendung: 0xIEXPLORE.EXE0
Pfad der fehlerhaften Anwendung: IEXPLORE.EXE1
Pfad des fehlerhaften Moduls: IEXPLORE.EXE2
Berichtskennung: IEXPLORE.EXE3
Vollständiger Name des fehlerhaften Pakets: IEXPLORE.EXE4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: IEXPLORE.EXE5
Error: (09/30/2013 05:39:05 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: SMConfigInstaller.exe, Version: 3.0.4506.6387, Zeitstempel: 0x4fee6b50
Name des fehlerhaften Moduls: bitguard.dll, Version: 2.6.1694.246, Zeitstempel: 0x52402c3e
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0017966f
ID des fehlerhaften Prozesses: 0x728
Startzeit der fehlerhaften Anwendung: 0xSMConfigInstaller.exe0
Pfad der fehlerhaften Anwendung: SMConfigInstaller.exe1
Pfad des fehlerhaften Moduls: SMConfigInstaller.exe2
Berichtskennung: SMConfigInstaller.exe3
Vollständiger Name des fehlerhaften Pakets: SMConfigInstaller.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: SMConfigInstaller.exe5
Error: (09/29/2013 10:52:21 AM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: SMConfigInstaller.exe, Version: 3.0.4506.6387, Zeitstempel: 0x4fee6b50
Name des fehlerhaften Moduls: bitguard.dll, Version: 2.6.1694.246, Zeitstempel: 0x52402c3e
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0017966f
ID des fehlerhaften Prozesses: 0x90c
Startzeit der fehlerhaften Anwendung: 0xSMConfigInstaller.exe0
Pfad der fehlerhaften Anwendung: SMConfigInstaller.exe1
Pfad des fehlerhaften Moduls: SMConfigInstaller.exe2
Berichtskennung: SMConfigInstaller.exe3
Vollständiger Name des fehlerhaften Pakets: SMConfigInstaller.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: SMConfigInstaller.exe5
Error: (09/29/2013 10:50:39 AM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: SMConfigInstaller.exe, Version: 3.0.4506.6387, Zeitstempel: 0x4fee6b50
Name des fehlerhaften Moduls: bitguard.dll, Version: 2.6.1694.246, Zeitstempel: 0x52402c3e
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0017966f
ID des fehlerhaften Prozesses: 0x121c
Startzeit der fehlerhaften Anwendung: 0xSMConfigInstaller.exe0
Pfad der fehlerhaften Anwendung: SMConfigInstaller.exe1
Pfad des fehlerhaften Moduls: SMConfigInstaller.exe2
Berichtskennung: SMConfigInstaller.exe3
Vollständiger Name des fehlerhaften Pakets: SMConfigInstaller.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: SMConfigInstaller.exe5
Error: (09/07/2013 09:38:05 AM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16384_none_893961408605e985.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16384_none_893961408605e985.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16384_none_893961408605e985.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16384_none_893961408605e985.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16384_none_418c2a697189c07f.manifest.
Error: (08/24/2013 04:05:56 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC90.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.30729.1"1".
Die abhängige Assemblierung "Microsoft.VC90.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.30729.1"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".
Error: (08/20/2013 07:33:58 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC90.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.30729.1"1".
Die abhängige Assemblierung "Microsoft.VC90.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.30729.1"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".
System errors:
=============
Error: (12/14/2013 08:12:20 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Erkennung interaktiver Dienste" wurde mit folgendem Fehler beendet:
%%1
Error: (11/24/2013 00:24:24 PM) (Source: DCOM) (User: NT-AUTORITÄT)
Description: {995C996E-D918-4A8C-A302-45719A6F4EA7}
Error: (11/24/2013 00:24:24 PM) (Source: DCOM) (User: NT-AUTORITÄT)
Description: {995C996E-D918-4A8C-A302-45719A6F4EA7}
Error: (11/22/2013 08:38:58 PM) (Source: DCOM) (User: UtesPC)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}
Error: (11/22/2013 08:38:58 PM) (Source: DCOM) (User: UtesPC)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}
Error: (11/22/2013 08:38:54 PM) (Source: DCOM) (User: UtesPC)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}
Error: (11/22/2013 08:38:54 PM) (Source: DCOM) (User: UtesPC)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}
Error: (11/22/2013 08:38:54 PM) (Source: DCOM) (User: UtesPC)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}
Error: (11/22/2013 08:38:54 PM) (Source: DCOM) (User: UtesPC)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}
Error: (11/18/2013 07:08:18 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Erkennung interaktiver Dienste" wurde mit folgendem Fehler beendet:
%%1
Microsoft Office Sessions:
=========================
Error: (12/15/2013 03:33:01 PM) (Source: Application Error)(User: )
Description: ALMon.exe3.45.111.3174ff70377combase.dll6.2.9200.1638450108858c00000050001334c132401cef8fd84e2ee39C:\Program Files (x86)\Sophos\AutoUpdate\ALMon.exeC:\Windows\SYSTEM32\combase.dllcc8fb411-6595-11e3-b31a-1c3e842c188e
Error: (11/18/2013 07:14:22 PM) (Source: Application Error)(User: )
Description: ALMon.exe3.45.111.3174ff70377combase.dll6.2.9200.1638450108858c00000050001334c15e401cee4863f0b5941C:\Program Files (x86)\Sophos\AutoUpdate\ALMon.exeC:\Windows\SYSTEM32\combase.dll3f33e83a-507d-11e3-b31a-1c3e842c188e
Error: (10/27/2013 08:50:04 PM) (Source: Application Error)(User: )
Description: ALMon.exe3.45.111.3174ff70377combase.dll6.2.9200.1638450108858c00000050001334c107001ced34c34e6b72cC:\Program Files (x86)\Sophos\AutoUpdate\ALMon.exeC:\Windows\SYSTEM32\combase.dllf87dbce7-3f40-11e3-b31a-1c3e842c188e
Error: (10/19/2013 11:57:53 AM) (Source: Application Error)(User: )
Description: IEXPLORE.EXE10.0.9200.1638450107ee0Plus-HD-2.3-bho.dll_unloaded0.0.0.051b5cf67c0000005034d0ef130001ceccb93ea2714bC:\Program Files (x86)\Internet Explorer\IEXPLORE.EXEPlus-HD-2.3-bho.dll4ce4d1c0-38ad-11e3-b31a-1c3e842c188e
Error: (09/30/2013 05:39:05 PM) (Source: Application Error)(User: )
Description: SMConfigInstaller.exe3.0.4506.63874fee6b50bitguard.dll2.6.1694.24652402c3ec00000050017966f72801cebdfb93375828C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMConfigInstaller.exec:\progra~3\bitguard\261694~1.246\{c16c1~1\bitguard.dlld16ca277-29ee-11e3-b316-1c3e842c188e
Error: (09/29/2013 10:52:21 AM) (Source: Application Error)(User: )
Description: SMConfigInstaller.exe3.0.4506.63874fee6b50bitguard.dll2.6.1694.24652402c3ec00000050017966f90c01cebcf9979e9b78C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMConfigInstaller.exec:\progra~3\bitguard\261694~1.246\{c16c1~1\bitguard.dlld567c45f-28ec-11e3-b316-1c3e842c188e
Error: (09/29/2013 10:50:39 AM) (Source: Application Error)(User: )
Description: SMConfigInstaller.exe3.0.4506.63874fee6b50bitguard.dll2.6.1694.24652402c3ec00000050017966f121c01cebcf95a96cafdC:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMConfigInstaller.exec:\progra~3\bitguard\261694~1.246\{c16c1~1\bitguard.dll987ef133-28ec-11e3-b316-1c3e842c188e
Error: (09/07/2013 09:38:05 AM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16384_none_893961408605e985.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16384_none_418c2a697189c07f.manifest\\IXI\ixi_d\download\SoftonicDownloader_fuer_tinycad.exe
Error: (08/24/2013 04:05:56 PM) (Source: SideBySide)(User: )
Description: Microsoft.VC90.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.30729.1"c:\program files (x86)\microsoft office\Office14\SETLANG.EXE
Error: (08/20/2013 07:33:58 PM) (Source: SideBySide)(User: )
Description: Microsoft.VC90.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.30729.1"C:\Program Files (x86)\Microsoft Office\Office14\SETLANG.EXE
==================== Memory info ===========================
Percentage of memory in use: 32%
Total physical RAM: 7848.36 MB
Available physical RAM: 5332.06 MB
Total Pagefile: 9000.36 MB
Available Pagefile: 6408.52 MB
Total Virtual: 8192 MB
Available Virtual: 8191.77 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:492.06 GB) (Free:453.27 GB) NTFS
Drive d: (Daten) (Fixed) (Total:341.46 GB) (Free:305.11 GB) NTFS
Drive f: (Volume) (Fixed) (Total:97.66 GB) (Free:81.96 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 3854F0CC)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=341 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=98 GB) - (Type=OF Extended)
Partition 4: (Not Active) - (Size=492 GB) - (Type=07 NTFS)
==================== End Of Log ============================ Vielen Dank für die Hilfe
Ute |