Daepilin | 24.12.2013 11:16 | Ich hoffe du meintest bei MBAM den Quickscan (hab ich jetzt durch die rote Farbe in Korrelation mit der Anleitung so gedacht):
MBAM: Code:
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
Datenbank Version: v2013.12.22.04
Windows 8 x64 NTFS
Internet Explorer 11.0.9600.16476
MartinPC :: MARTIN [Administrator]
24.12.2013 10:37:02
mbam-log-2013-12-24 (10-37-02).txt
Art des Suchlaufs: Quick-Scan
Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
Deaktivierte Suchlaufeinstellungen: P2P
Durchsuchte Objekte: 347317
Laufzeit: 7 Minute(n), 12 Sekunde(n)
Infizierte Speicherprozesse: 0
(Keine bösartigen Objekte gefunden)
Infizierte Speichermodule: 0
(Keine bösartigen Objekte gefunden)
Infizierte Registrierungsschlüssel: 0
(Keine bösartigen Objekte gefunden)
Infizierte Registrierungswerte: 0
(Keine bösartigen Objekte gefunden)
Infizierte Dateiobjekte der Registrierung: 0
(Keine bösartigen Objekte gefunden)
Infizierte Verzeichnisse: 0
(Keine bösartigen Objekte gefunden)
Infizierte Dateien: 0
(Keine bösartigen Objekte gefunden)
(Ende) ADWCleaner:
AdwCleaner Logfile: Code:
# AdwCleaner v3.016 - Bericht erstellt am 24/12/2013 um 10:51:04
# Aktualisiert 23/12/2013 von Xplode
# Betriebssystem : Windows 8.1 Pro with Media Center (64 bits)
# Benutzername : MartinPC - MARTIN
# Gestartet von : C:\Users\MartinPC\AppData\Local\Temp\OCS\Downloads\705f49176579a643660bff5ff6ae3956\ee8e33e956b0dc98c57df72e892819c6\AdwC3.015.exe
# Option : Löschen
***** [ Dienste ] *****
***** [ Dateien / Ordner ] *****
Ordner Gelöscht : C:\Users\MartinPC\AppData\Local\Temp\OCS
Ordner Gelöscht : C:\Users\MartinPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Browser Manager
Datei Gelöscht : C:\Users\MartinPC\AppData\Roaming\Microsoft\Windows\Start Menu\Startfenster.lnk
Datei Gelöscht : C:\Users\MartinPC\AppData\Roaming\Mozilla\Firefox\Profiles\hsjuvdqz.default\searchplugins\browsemngr.xml
Datei Gelöscht : C:\Users\MartinPC\AppData\Roaming\Mozilla\Firefox\Profiles\hsjuvdqz.default\searchplugins\winamp-search.xml
Datei Gelöscht : C:\Users\MartinPC\AppData\Roaming\Mozilla\Firefox\Profiles\hsjuvdqz.default\user.js
***** [ Verknüpfungen ] *****
***** [ Registrierungsdatenbank ] *****
Wert Gelöscht : HKCU\Software\Mozilla\Firefox\Extensions [{B64982B1-D112-42B5-B1E4-D3867C4533F8}]
Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\pgafcinpmmpklohkojmllohdhomoefph
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Prod.cap
Schlüssel Gelöscht : HKCU\Software\80d6d1b56ae443
Schlüssel Gelöscht : HKLM\SOFTWARE\80d6d1b56ae443
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEE6C367-6118-11DC-9C72-001320C79847}
Schlüssel Gelöscht : HKCU\Software\OCS
Schlüssel Gelöscht : HKCU\Software\Softonic
Schlüssel Gelöscht : HKLM\Software\DataMngr
Schlüssel Gelöscht : HKLM\Software\Classes\Installer\Features\9EE58E3C298524145B73CBBED3CAC4D3
Schlüssel Gelöscht : HKLM\Software\Classes\Installer\Features\EB6AF8AEEB922FA4392548F13812E50B
Schlüssel Gelöscht : HKLM\Software\Classes\Installer\Products\9EE58E3C298524145B73CBBED3CAC4D3
Schlüssel Gelöscht : HKLM\Software\Classes\Installer\Products\EB6AF8AEEB922FA4392548F13812E50B
***** [ Browser ] *****
-\\ Internet Explorer v11.0.9600.16384
-\\ Mozilla Firefox v27.0 (de)
[ Datei : C:\Users\MartinPC\AppData\Roaming\Mozilla\Firefox\Profiles\hsjuvdqz.default\prefs.js ]
Zeile gelöscht : user_pref("CT1139634.CTID", "CT1139634");
Zeile gelöscht : user_pref("CT1139634.CTPBaseServerUrl", "hxxp://services.conduit.com/");
Zeile gelöscht : user_pref("CT1139634.CommunityChanged", false);
Zeile gelöscht : user_pref("CT1139634.DialogsAlignMode", "LTR");
Zeile gelöscht : user_pref("CT1139634.EMailNotifierPollDate", "Mon Oct 22 2007 12:10:39 GMT+0200");
Zeile gelöscht : user_pref("CT1139634.EnableUsage", false);
Zeile gelöscht : user_pref("CT1139634.FeedPollDate128309732169668971", "Mon Oct 22 2007 12:14:53 GMT+0200");
Zeile gelöscht : user_pref("CT1139634.FirstTime", true);
Zeile gelöscht : user_pref("CT1139634.GroupingLastCheckTime", "0");
Zeile gelöscht : user_pref("CT1139634.Initialize", true);
Zeile gelöscht : user_pref("CT1139634.IsGrouping", false);
Zeile gelöscht : user_pref("CT1139634.IsMulticommunity", false);
Zeile gelöscht : user_pref("CT1139634.LanguagePackLastCheckTime", "Sat Oct 20 2007 14:40:12 GMT+0200");
Zeile gelöscht : user_pref("CT1139634.LanguagePackReloadInterval", "24");
Zeile gelöscht : user_pref("CT1139634.LastLogin", "Sun Oct 21 2007 12:56:49 GMT+0200");
Zeile gelöscht : user_pref("CT1139634.Locale", "de-de");
Zeile gelöscht : user_pref("CT1139634.LoginCache", "3");
Zeile gelöscht : user_pref("CT1139634.RadioIsPodcast", false);
Zeile gelöscht : user_pref("CT1139634.RadioLastCheckTime", "Sun Oct 21 2007 14:40:12 GMT+0200");
Zeile gelöscht : user_pref("CT1139634.RadioLastUpdateServer", "128363213581530000");
Zeile gelöscht : user_pref("CT1139634.RadioMediaType", "Media Player");
Zeile gelöscht : user_pref("CT1139634.RadioMenuSelectedID", "EBRadioMenu_CT1139634654294");
Zeile gelöscht : user_pref("CT1139634.RadioShrinked", "expanded");
Zeile gelöscht : user_pref("CT1139634.RadioStationName", "SWR3");
Zeile gelöscht : user_pref("CT1139634.RadioStationURL", "hxxp://lsd.newmedia.tiscali-business.com/bb/redirect.lsc?stream=swr3$livestream.wma&content=live&media=ms");
Zeile gelöscht : user_pref("CT1139634.SHRINK_TOOLBAR", 1);
Zeile gelöscht : user_pref("CT1139634.SearchBoxWidth", 100);
Zeile gelöscht : user_pref("CT1139634.Server", "hxxp://users.conduit.com");
Zeile gelöscht : user_pref("CT1139634.SettingsLastUpdate", "1191840558");
Zeile gelöscht : user_pref("CT1139634.ThirdPartyComponentsInterval", "24");
Zeile gelöscht : user_pref("CT1139634.ThirdPartyComponentsLastCheck", "Tue Aug 07 2007 18:52:37 GMT+0200");
Zeile gelöscht : user_pref("CT1139634.ThirdPartyComponentsLastUpdate", "1186499898");
Zeile gelöscht : user_pref("CT1139634.ToolbarAlignMode", "SYSTEM");
Zeile gelöscht : user_pref("CT1139634.ToolbarName", "worldofpiranha.de");
Zeile gelöscht : user_pref("CT1139634.UserID", "UN20070807185236078");
Zeile gelöscht : user_pref("CT1139634.VusualLastUpdateTime", "1191840558");
Zeile gelöscht : user_pref("CT1139634.WeatherNetwork", "");
Zeile gelöscht : user_pref("CT1139634.WeatherPollDate", "Mon Oct 22 2007 12:02:25 GMT+0200");
Zeile gelöscht : user_pref("CT1139634.WeatherUnit", "F");
Zeile gelöscht : user_pref("CT1273143.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy");
Zeile gelöscht : user_pref("CT1273143.AllowNonPrivacy", false);
Zeile gelöscht : user_pref("CT1273143.CTID", "CT1273143");
Zeile gelöscht : user_pref("CT1273143.CTPBaseServerUrl", "hxxp://services.conduit.com/");
Zeile gelöscht : user_pref("CT1273143.CommunitiesChangesLastCheckTime", "Wed Jul 09 2008 09:21:51 GMT+0200");
Zeile gelöscht : user_pref("CT1273143.CommunityChanged", false);
Zeile gelöscht : user_pref("CT1273143.DialogsAlignMode", "LTR");
Zeile gelöscht : user_pref("CT1273143.DownloadDomainsCheckInterval", "168");
Zeile gelöscht : user_pref("CT1273143.DownloadDomainsListLastCheckTime", "Wed Jul 09 2008 09:21:51 GMT+0200");
Zeile gelöscht : user_pref("CT1273143.DownloadDomainsListLastServerUpdateTime", "1201073583");
Zeile gelöscht : user_pref("CT1273143.EMailNotifierPollDate", "Wed Jul 09 2008 20:22:55 GMT+0200");
Zeile gelöscht : user_pref("CT1273143.EnableUsage", false);
Zeile gelöscht : user_pref("CT1273143.FeedPollDate128360633918207113", "Wed Jul 09 2008 20:22:05 GMT+0200");
Zeile gelöscht : user_pref("CT1273143.FirstTime", true);
Zeile gelöscht : user_pref("CT1273143.FirstTimeFF3", true);
Zeile gelöscht : user_pref("CT1273143.FixPageNotFoundErrors", false);
Zeile gelöscht : user_pref("CT1273143.Initialize", true);
Zeile gelöscht : user_pref("CT1273143.IsGrouping", false);
Zeile gelöscht : user_pref("CT1273143.IsMulticommunity", true);
Zeile gelöscht : user_pref("CT1273143.LanguagePackLastCheckTime", "Wed Jul 09 2008 09:21:52 GMT+0200");
Zeile gelöscht : user_pref("CT1273143.LanguagePackReloadInterval", "24");
Zeile gelöscht : user_pref("CT1273143.LastLogin", "Wed Jul 09 2008 09:21:51 GMT+0200");
Zeile gelöscht : user_pref("CT1273143.Locale", "de-de");
Zeile gelöscht : user_pref("CT1273143.LoginCache", "3");
Zeile gelöscht : user_pref("CT1273143.MCDetectTooltipHeight", "83");
Zeile gelöscht : user_pref("CT1273143.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1");
Zeile gelöscht : user_pref("CT1273143.MCDetectTooltipWidth", "295");
Zeile gelöscht : user_pref("CT1273143.RadioIsPodcast", false);
Zeile gelöscht : user_pref("CT1273143.RadioLastCheckTime", "Wed Jul 09 2008 09:22:05 GMT+0200");
Zeile gelöscht : user_pref("CT1273143.RadioLastUpdateIPServer", "3");
Zeile gelöscht : user_pref("CT1273143.RadioLastUpdateServer", "0");
Zeile gelöscht : user_pref("CT1273143.RadioMediaID", "8606");
Zeile gelöscht : user_pref("CT1273143.RadioMediaType", "Media Player");
Zeile gelöscht : user_pref("CT1273143.RadioMenuSelectedID", "EBRadioMenu_CT12731438606");
Zeile gelöscht : user_pref("CT1273143.RadioStationName", "Defjay%20Radio");
Zeile gelöscht : user_pref("CT1273143.RadioStationURL", "hxxp://www.defjay.de/listen_fw.asx");
Zeile gelöscht : user_pref("CT1273143.SHRINK_TOOLBAR", 1);
Zeile gelöscht : user_pref("CT1273143.Server", "hxxp://users.conduit.com");
Zeile gelöscht : user_pref("CT1273143.SettingsLastUpdate", "1213286296");
Zeile gelöscht : user_pref("CT1273143.ThirdPartyComponentsInterval", "24");
Zeile gelöscht : user_pref("CT1273143.ThirdPartyComponentsLastCheck", "Wed Jul 09 2008 09:21:50 GMT+0200");
Zeile gelöscht : user_pref("CT1273143.ThirdPartyComponentsLastUpdate", "1213286296");
Zeile gelöscht : user_pref("CT1273143.ToolbarAlignMode", "SYSTEM");
Zeile gelöscht : user_pref("CT1273143.ToolbarName", "OTR1");
Zeile gelöscht : user_pref("CT1273143.UserID", "UN20080709092147928");
Zeile gelöscht : user_pref("CT1273143.VusualLastUpdateTime", "1213122774");
Zeile gelöscht : user_pref("CT1273143.WeatherNetwork", "");
Zeile gelöscht : user_pref("CT1273143.WeatherPollDate", "Wed Jul 09 2008 20:02:09 GMT+0200");
Zeile gelöscht : user_pref("CT1273143.WeatherUnit", "C");
Zeile gelöscht : user_pref("browser.search.defaultengine", "Ask.com");
Zeile gelöscht : user_pref("browser.search.defaultenginename", "Ask.com");
Zeile gelöscht : user_pref("browser.search.order.1", "Ask.com");
Zeile gelöscht : user_pref("extensions.vshare@toolbar.install-event-fired", true);
Zeile gelöscht : user_pref("vshare.install.laststatreq", "1333065600000");
Zeile gelöscht : user_pref("winamp_toolbar.buttons.layout", "skins_btn_wa;plugins_btn_wa;media_btn_wa;shout_btn_wa;aim_go_away_default_btn;wa_aol_bg_5r;");
Zeile gelöscht : user_pref("winamp_toolbar.firsttime.showwindow", false);
Zeile gelöscht : user_pref("winamp_toolbar.install.lastTbVersion", "5.2.1.1");
Zeile gelöscht : user_pref("winamp_toolbar.metrics.activestampdate", "6");
Zeile gelöscht : user_pref("winamp_toolbar.metrics.activestampmonth", "7");
Zeile gelöscht : user_pref("winamp_toolbar.metrics.activestampyear", "2009");
Zeile gelöscht : user_pref("winamp_toolbar.metrics.originalDate", "29");
Zeile gelöscht : user_pref("winamp_toolbar.metrics.originalHours", "29");
Zeile gelöscht : user_pref("winamp_toolbar.metrics.originalMinutes", "29");
Zeile gelöscht : user_pref("winamp_toolbar.metrics.originalMonth", "9");
Zeile gelöscht : user_pref("winamp_toolbar.metrics.originalSeconds", "39");
Zeile gelöscht : user_pref("winamp_toolbar.metrics.originalYear", "2008");
Zeile gelöscht : user_pref("winamp_toolbar.search.focusnewtab", false);
Zeile gelöscht : user_pref("winamp_toolbar.search.newtab", false);
Zeile gelöscht : user_pref("winamp_toolbar.search.populateoncomplete", false);
Zeile gelöscht : user_pref("winamp_toolbar.search.savehistory", true);
Zeile gelöscht : user_pref("winamp_toolbar.search.searchtype", "web");
Zeile gelöscht : user_pref("winamp_toolbar.strbundle.msg", "Winamp Toolbar");
Zeile gelöscht : user_pref("winamp_toolbar.surf.date", "186");
Zeile gelöscht : user_pref("winamp_toolbar.surf.lastDate", "6");
Zeile gelöscht : user_pref("winamp_toolbar.surf.lastMonth", "7");
Zeile gelöscht : user_pref("winamp_toolbar.surf.lastYear", "2009");
Zeile gelöscht : user_pref("winamp_toolbar.surf.mURL", "");
Zeile gelöscht : user_pref("winamp_toolbar.surf.mURLh", "0");
Zeile gelöscht : user_pref("winamp_toolbar.surf.mURLw", "0");
Zeile gelöscht : user_pref("winamp_toolbar.surf.mURLx", "0");
Zeile gelöscht : user_pref("winamp_toolbar.surf.mURLy", "0");
Zeile gelöscht : user_pref("winamp_toolbar.surf.milestone", "-1");
Zeile gelöscht : user_pref("winamp_toolbar.surf.month", "3890");
Zeile gelöscht : user_pref("winamp_toolbar.surf.prevMonth", "23525");
Zeile gelöscht : user_pref("winamp_toolbar.surf.total", "279112");
Zeile gelöscht : user_pref("winamp_toolbar.surf.week", "3110");
Zeile gelöscht : user_pref("winamp_toolbar.surf.year", "171146");
Zeile gelöscht : user_pref("winamp_toolbar.upgrade.showwindow", false);
Zeile gelöscht : user_pref("winamp_toolbar.winamp.appversion", "20560");
Zeile gelöscht : user_pref("winamp_toolbar.winamp.title", "Lordi - Bring Back the balls to rock");
Zeile gelöscht : user_pref("winamp_toolbar.winamp.tracklength", "176");
Zeile gelöscht : user_pref("winamp_toolbar.winamp.tracktime", "-999998");
-\\ Google Chrome v31.0.1650.63
[ Datei : C:\Users\MartinPC\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Gelöscht : homepage
*************************
AdwCleaner[R0].txt - [12864 octets] - [24/12/2013 10:50:43]
AdwCleaner[S0].txt - [12691 octets] - [24/12/2013 10:51:04]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [12752 octets] ########## --- --- ---
JRT: Code:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Windows 8.1 Pro with Media Center x64
Ran by MartinPC on 24.12.2013 at 11:03:31,44
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-2504333501-68428025-1524359791-1001\Software\sweetim
~~~ Files
Successfully deleted: [File] "C:\Users\MartinPC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\user pinned\taskbar\startfenster.lnk"
~~~ Folders
~~~ FireFox
Emptied folder: C:\Users\MartinPC\AppData\Roaming\mozilla\firefox\profiles\hsjuvdqz.default\minidumps [10 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 24.12.2013 at 11:07:11,84
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ FRST:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 23-12-2013
Ran by MartinPC (administrator) on MARTIN on 24-12-2013 11:11:15
Running from C:\Users\MartinPC\Desktop
Windows 8.1 Pro with Media Center (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(CM & V) C:\Program Files (x86)\DVBViewer\DVBVservice.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Nero AG) C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
() C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler64.exe
() C:\Program Files (x86)\HTC\HTC Sync Manager\HTC Sync\adb.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(CMedia) C:\Program Files\ASUS Xonar DG Audio\Customapp\AsusAudioCenter.exe
() C:\Windows\SysWOW64\HsMgr.exe
() C:\Windows\System\HsMgr64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Spotify Ltd) C:\Users\MartinPC\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
(Dominik Reichl) C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe
(Dropbox, Inc.) C:\Users\MartinPC\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Pixel Tucker Pty Ltd) C:\Users\MartinPC\AppData\Local\Apps\2.0\6N99WKA1.B2K\WX8GY50Q.DH6\metr..tion_72b2aef66840e297_0001.0001_5ae01a62fa13a0b1\MetroTwit.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.EXE
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Spotify Ltd) C:\Users\MartinPC\AppData\Roaming\Spotify\spotify.exe
() C:\Users\MartinPC\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
() C:\Users\MartinPC\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
() C:\Users\MartinPC\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
() C:\Users\MartinPC\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
() C:\Users\MartinPC\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\WINWORD.EXE
(Microsoft Corporation) C:\Windows\splwow64.exe
(Microsoft Corporation) C:\Windows\System32\printfilterpipelinesvc.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [Cmaudio8788] - C:\Windows\syswow64\RunDll32.exe C:\Windows\Syswow64\cmicnfgp.dll,CMICtrlWnd
HKLM\...\Run: [Cmaudio8788GX] - C:\Windows\SysWOW64\HsMgr.exe [200704 2012-09-28] ()
HKLM\...\Run: [Cmaudio8788GX64] - C:\Windows\System\HsMgr64.exe [282112 2012-09-28] ()
HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe [1028384 2013-11-08] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] - C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [Logitech Download Assistant] - C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
HKLM-x32\...\Run: [AVP] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\runner_avp.exe [24504 2012-11-04] (Kaspersky Lab ZAO)
HKLM-x32\...\Run: [BCSSync] - C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM-x32\...\Run: [amd_dc_opt] - C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe [77824 2008-07-22] (AMD)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-08-16] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [KeePass 2 PreLoad] - C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe [2010624 2013-07-20] (Dominik Reichl)
HKCU\...\Run: [GoogleDriveSync] - C:\Program Files (x86)\Google\Drive\googledrivesync.exe [20203904 2013-12-06] (Google)
HKCU\...\Run: [Steam] - C:\Program Files (x86)\Steam\Steam.exe [1815464 2013-12-19] (Valve Corporation)
HKCU\...\Run: [DVBV Service Ctrl] - C:\Program Files (x86)\DVBViewer\DVBVCtrl.exe [87552 2012-04-11] (CM&V Hackbart)
HKCU\...\Run: [Pando Media Booster] - C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe [3093624 2012-11-08] ()
HKCU\...\Run: [Google Update] - C:\Users\MartinPC\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2012-11-13] (Google Inc.)
HKCU\...\Run: [Spotify Web Helper] - C:\Users\MartinPC\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1168896 2013-12-05] (Spotify Ltd)
HKCU\...\Run: [KeePass Password Safe 2] - C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe [2010624 2013-07-20] (Dominik Reichl)
MountPoints2: {3f160b12-4bd0-11e3-824f-806e6f6e6963} - "F:\Launch.exe"
AppInit_DLLs: C:\PROGRA~2\NVIDIA~1\3DVISI~1\NVSTIN~1.DLL [ ] ()
Startup: C:\Users\MartinPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma.lnk
ShortcutTarget: Adobe Gamma.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
Startup: C:\Users\MartinPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\MartinPC\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/
BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Microsoft Web Test Recorder 10.0 Helper - {876d9f09-c6d6-4324-a2cc-04dd9a4de12f} - C:\Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll (Microsoft Corporation)
BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
FireFox:
========
FF ProfilePath: C:\Users\MartinPC\AppData\Roaming\Mozilla\Firefox\Profiles\hsjuvdqz.default
FF Homepage: www.google.de
FF Keyword.URL: google.de
FF NetworkProxy: "backup.ftp", "www-proxy.t-online.de"
FF NetworkProxy: "backup.ftp_port", 80
FF NetworkProxy: "backup.gopher", "80.68.95.142"
FF NetworkProxy: "backup.gopher_port", 3128
FF NetworkProxy: "backup.socks", "www-proxy.t-online.de"
FF NetworkProxy: "backup.socks_port", 80
FF NetworkProxy: "backup.ssl", "www-proxy.t-online.de"
FF NetworkProxy: "backup.ssl_port", 80
FF NetworkProxy: "ftp", "www-proxy.t-online.de"
FF NetworkProxy: "ftp_port", 80
FF NetworkProxy: "gopher", "91.197.33.188"
FF NetworkProxy: "gopher_port", 3128
FF NetworkProxy: "http", "www-proxy.t-online.de"
FF NetworkProxy: "http_port", 80
FF NetworkProxy: "no_proxies_on", "localhost, 127.0.0.1, speedport.ip, fck-recorder.net, battle.net"
FF NetworkProxy: "share_proxy_settings", true
FF NetworkProxy: "socks", "www-proxy.t-online.de"
FF NetworkProxy: "socks_port", 80
FF NetworkProxy: "ssl", "www-proxy.t-online.de"
FF NetworkProxy: "ssl_port", 80
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll ()
FF Plugin: @java.com/DTPlugin,version=10.25.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\Microsoft Office\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.0.4 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB)
FF Plugin-x32: @esn/esnlaunch,version=2.1.7 - C:\Program Files (x86)\Battlelog Web Plugins\2.1.7\npesnlaunch.dll (ESN Social Software AB)
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\Microsoft Office\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\Microsoft Office\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\MartinPC\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\MartinPC\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @www.flatcast.com/FlatViewer 5.2 - C:\Program Files (x86)\Mozilla Firefox\plugins\NpFv530.dll (1 mal 1 Software GmbH)
FF Plugin HKCU: amazon.com/AmazonMP3DownloaderPlugin - C:\Program Files (x86)\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin101753.dll (Amazon.com, Inc.)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll ()
FF SearchPlugin: C:\Users\MartinPC\AppData\Roaming\Mozilla\Firefox\Profiles\hsjuvdqz.default\searchplugins\gamestar-suche.xml
FF SearchPlugin: C:\Users\MartinPC\AppData\Roaming\Mozilla\Firefox\Profiles\hsjuvdqz.default\searchplugins\kw-gs-suche.xml
FF SearchPlugin: C:\Users\MartinPC\AppData\Roaming\Mozilla\Firefox\Profiles\hsjuvdqz.default\searchplugins\searchplugins-backup
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: German Dictionary - C:\Users\MartinPC\AppData\Roaming\Mozilla\Firefox\Profiles\hsjuvdqz.default\Extensions\de-DE@dictionaries.addons.mozilla.org
FF Extension: KeeFox - C:\Users\MartinPC\AppData\Roaming\Mozilla\Firefox\Profiles\hsjuvdqz.default\Extensions\keefox@chris.tomlinson
FF Extension: Move Media Player - C:\Users\MartinPC\AppData\Roaming\Mozilla\Firefox\Profiles\hsjuvdqz.default\Extensions\moveplayer@movenetworks.com
FF Extension: Microsoft .NET Framework Assistant - C:\Users\MartinPC\AppData\Roaming\Mozilla\Firefox\Profiles\hsjuvdqz.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b}
FF Extension: Leet Key - C:\Users\MartinPC\AppData\Roaming\Mozilla\Firefox\Profiles\hsjuvdqz.default\Extensions\{3335F91D-2AEF-4097-B831-C96C60349822}
FF Extension: ChatZilla - C:\Users\MartinPC\AppData\Roaming\Mozilla\Firefox\Profiles\hsjuvdqz.default\Extensions\{59c81df5-4b7a-477b-912d-4e0fdf64e5f2}
FF Extension: Add-on Compatibility Reporter - C:\Users\MartinPC\AppData\Roaming\Mozilla\Firefox\Profiles\hsjuvdqz.default\Extensions\compatibility@addons.mozilla.org.xpi
FF Extension: Telekom YouTube Turbo - C:\Users\MartinPC\AppData\Roaming\Mozilla\Firefox\Profiles\hsjuvdqz.default\Extensions\info@maltegoetz.de.xpi
FF Extension: Better GSPB - C:\Users\MartinPC\AppData\Roaming\Mozilla\Firefox\Profiles\hsjuvdqz.default\Extensions\jid0-ipFubNWmlcA4e3UgP0h5Aim92fY@jetpack.xpi
FF Extension: Media Hint - C:\Users\MartinPC\AppData\Roaming\Mozilla\Firefox\Profiles\hsjuvdqz.default\Extensions\mediahint@jetpack.xpi
FF Extension: SmartVideo For YouTube - C:\Users\MartinPC\AppData\Roaming\Mozilla\Firefox\Profiles\hsjuvdqz.default\Extensions\mytube@ashishmishra.in.xpi
FF Extension: Test Pilot - C:\Users\MartinPC\AppData\Roaming\Mozilla\Firefox\Profiles\hsjuvdqz.default\Extensions\testpilot@labs.mozilla.com.xpi
FF Extension: NoScript - C:\Users\MartinPC\AppData\Roaming\Mozilla\Firefox\Profiles\hsjuvdqz.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi
FF Extension: DVDVideoSoft YouTube MP3 and Video Download - C:\Users\MartinPC\AppData\Roaming\Mozilla\Firefox\Profiles\hsjuvdqz.default\Extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}.xpi
FF Extension: Adblock Plus - C:\Users\MartinPC\AppData\Roaming\Mozilla\Firefox\Profiles\hsjuvdqz.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF HKLM-x32\...\Firefox\Extensions: - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\url_advisor@kaspersky.com
FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\url_advisor@kaspersky.com
FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\virtual_keyboard@kaspersky.com
FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\virtual_keyboard@kaspersky.com
FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\content_blocker@kaspersky.com
FF Extension: Content Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\content_blocker@kaspersky.com
FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\anti_banner@kaspersky.com
FF Extension: Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\anti_banner@kaspersky.com
FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\online_banking@kaspersky.com
FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\online_banking@kaspersky.com
Chrome:
=======
CHR HomePage: hxxp://www.google.com
CHR RestoreOnStartup: "https://www.fck-ticketshop.de/"
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\pdf.dll ()
CHR Plugin: (Kaspersky Anti-Virus) - C:\Users\MartinPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman\13.0.1.4190_0\plugin/npABPlugin.dll (Kaspersky Lab ZAO)
CHR Plugin: (Kaspersky Anti-Virus) - C:\Users\MartinPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\hakdifolhalapjijoafobooafbilfakh\13.0.1.4190_0\plugin/online_banking_npapi.dll (Kaspersky Lab ZAO)
CHR Plugin: (Kaspersky Anti-Virus) - C:\Users\MartinPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\13.0.1.4190_0\plugin/npUrlAdvisor.dll (Kaspersky Lab ZAO)
CHR Plugin: (Kaspersky Anti-Virus) - C:\Users\MartinPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh\13.0.1.4190_0\plugin/npVKPlugin.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL No File
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL No File
CHR Plugin: (AmazonMP3DownloaderPlugin) - C:\Program Files (x86)\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin101753.dll (Amazon.com, Inc.)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.124\npGoogleUpdate3.dll No File
CHR Plugin: (Silverlight Plug-In) - C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll No File
CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
CHR Plugin: (Pando Web Plugin) - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_4_402_287.dll No File
CHR Extension: (Google Drive) - C:\Users\MartinPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0
CHR Extension: (Sothink Flash Downloader for Chrome) - C:\Users\MartinPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\biceobciobbhhkplgocbaigojbnepcoi\1.0.24_0
CHR Extension: (YouTube) - C:\Users\MartinPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\Users\MartinPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (Kaspersky URL Advisor) - C:\Users\MartinPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\13.0.1.4190_0
CHR Extension: (Safe Money) - C:\Users\MartinPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\hakdifolhalapjijoafobooafbilfakh\13.0.1.4190_0
CHR Extension: (Virtual Keyboard) - C:\Users\MartinPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh\13.0.1.4292_0
CHR Extension: (Chrome In-App Payments service) - C:\Users\MartinPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0
CHR Extension: (Gmail) - C:\Users\MartinPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0
CHR Extension: (Anti-Banner) - C:\Users\MartinPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman\13.0.1.4190_0
CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\urladvisor.crx
CHR HKLM-x32\...\Chrome\Extension: [hakdifolhalapjijoafobooafbilfakh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\online_banking_chrome.crx
CHR HKLM-x32\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\content_blocker_chrome.crx
CHR HKLM-x32\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\virtkbd.crx
CHR HKLM-x32\...\Chrome\Extension: [pjldcfjmnllhmgjclecdnfampinooman] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\ab.crx
==================== Services (Whitelisted) =================
S3 Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [72704 2013-01-08] (Adobe Systems)
R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe [356128 2013-10-10] (Kaspersky Lab ZAO)
R2 DVBVRecorder; C:\Program Files (x86)\DVBViewer\DVBVservice.exe [861824 2012-11-04] (CM & V)
S3 fussvc; C:\Program Files (x86)\Windows Kits\8.0\App Certification Kit\fussvc.exe [139776 2012-07-25] (Microsoft Corporation)
R2 HTCMonitorService; C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe [87368 2012-12-12] (Nero AG)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15125280 2013-11-08] (NVIDIA Corporation)
R2 PassThru Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [167424 2012-12-07] ()
R2 PnkBstrA; C:\WINDOWS\SysWow64\PnkBstrA.exe [76888 2013-12-01] ()
S3 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1817560 2013-05-16] (Safer-Networking Ltd.)
S3 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1033688 2013-05-16] (Safer-Networking Ltd.)
S3 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2013-05-15] (Safer-Networking Ltd.)
S3 Te.Service; C:\Program Files (x86)\Windows Kits\8.0\Testing\Runtimes\TAEF\Wex.Services.exe [126976 2012-07-25] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra)
S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows (R) Win 7 DDK provider)
R3 cmudaxp; C:\Windows\system32\drivers\cmudaxp.sys [2733568 2012-09-28] (C-Media Inc)
S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation)
S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation)
S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation)
R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2013-11-11] (Microsoft Corporation)
S3 kbldfltr; C:\Windows\System32\drivers\kbldfltr.sys [22272 2013-09-30] (Microsoft Corporation)
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458336 2013-12-11] (Kaspersky Lab ZAO)
S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [29616 2012-07-27] (Kaspersky Lab)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [625760 2013-10-10] (Kaspersky Lab ZAO)
R1 KLIM6; C:\Windows\system32\DRIVERS\klim6.sys [30304 2013-12-11] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [29280 2013-10-10] (Kaspersky Lab ZAO)
R3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [29280 2013-10-10] (Kaspersky Lab ZAO)
R1 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [50448 2013-04-24] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [178448 2013-04-24] (Kaspersky Lab ZAO)
S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation)
R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation)
S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [39200 2013-09-28] (NVIDIA Corporation)
S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924512 2013-08-22] (Microsoft Corporation)
R3 SensorsSimulatorDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [230912 2013-08-22] (Microsoft Corporation)
S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2013-10-26] (Microsoft Corporation)
S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-11-12] (Microsoft Corporation)
R3 tbs6920; C:\Windows\system32\drivers\tbs6920.sys [472912 2011-12-21] (TBS Technologies, Inc.)
R3 tbs6920vhid; C:\Windows\system32\drivers\tbs6920vhid.sys [24528 2011-12-21] (Turbosight Ltd. www.tbsdtv.com)
S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation)
S3 VSPerfDrv110; C:\Program Files (x86)\Microsoft Visual Studio 11.0\Team Tools\Performance Tools\x64\VSPerfDrv110.sys [70264 2012-07-26] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation)
R3 xusb22; C:\Windows\System32\drivers\xusb22.sys [87040 2013-08-22] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-12-24 11:11 - 2013-12-24 11:11 - 00030116 _____ C:\Users\MartinPC\Desktop\FRST.txt
2013-12-24 11:11 - 2013-12-24 11:11 - 00000000 ____D C:\Users\MartinPC\Desktop\FRST-OlderVersion
2013-12-24 11:10 - 2013-12-24 11:11 - 01928604 _____ (Farbar) C:\Users\MartinPC\Desktop\FRST64.exe
2013-12-24 11:07 - 2013-12-24 11:07 - 00001108 _____ C:\Users\MartinPC\Desktop\JRT.txt
2013-12-24 11:03 - 2013-12-24 11:03 - 00000000 ____D C:\WINDOWS\ERUNT
2013-12-24 11:01 - 2013-12-24 11:01 - 01034531 _____ (Thisisu) C:\Users\MartinPC\Desktop\JRT.exe
2013-12-24 10:59 - 2013-12-24 10:59 - 00012833 _____ C:\Users\MartinPC\Desktop\AdwCleaner[S0].txt
2013-12-24 10:49 - 2013-12-24 10:51 - 00000000 ____D C:\AdwCleaner
2013-12-23 16:27 - 2013-12-23 16:29 - 00000000 ____D C:\Users\MartinPC\Desktop\Xmas-Gutschein
2013-12-23 16:27 - 2013-12-23 16:27 - 00000000 ____D C:\Users\MartinPC\Desktop\xmas_font
2013-12-22 21:50 - 2013-12-24 11:11 - 00000000 ____D C:\FRST
2013-12-22 21:50 - 2013-12-22 21:50 - 00000000 _____ C:\Users\MartinPC\defogger_reenable
2013-12-22 21:43 - 2013-12-22 21:43 - 00001139 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-12-22 21:43 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2013-12-22 21:41 - 2013-12-22 21:41 - 00377856 _____ C:\Users\MartinPC\Desktop\s9xth4k0.exe
2013-12-22 21:40 - 2013-12-22 21:40 - 00050477 _____ C:\Users\MartinPC\Desktop\Defogger.exe
2013-12-22 21:10 - 2013-12-22 21:10 - 00614784 _____ C:\Users\MartinPC\Desktop\adwcleaner-3-015.exe
2013-12-14 10:13 - 2013-11-12 00:41 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2013-12-14 10:13 - 2013-11-12 00:40 - 00249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2013-12-14 10:13 - 2013-11-12 00:27 - 00701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2013-12-14 10:13 - 2013-11-12 00:24 - 00840704 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2013-12-14 10:13 - 2013-11-11 03:48 - 00039768 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2013-12-14 10:13 - 2013-11-09 12:55 - 00325464 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2013-12-14 10:13 - 2013-11-09 07:37 - 01756160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2013-12-14 10:13 - 2013-11-09 06:56 - 01391104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2013-12-14 10:13 - 2013-11-08 11:26 - 00358896 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2013-12-14 10:13 - 2013-11-08 06:23 - 00449024 _____ (Microsoft Corporation) C:\WINDOWS\system32\appmgr.dll
2013-12-14 10:13 - 2013-11-08 05:43 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2013-12-14 10:13 - 2013-11-08 05:42 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appmgr.dll
2013-12-14 10:13 - 2013-11-08 05:28 - 13177344 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2013-12-14 10:13 - 2013-11-08 05:26 - 11674624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2013-12-14 10:13 - 2013-11-08 05:16 - 00225792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2013-12-14 10:13 - 2013-11-08 05:15 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2013-12-14 10:13 - 2013-11-08 05:07 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll
2013-12-14 10:13 - 2013-11-08 04:41 - 01302528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2013-12-14 10:13 - 2013-11-08 04:14 - 00922624 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2013-12-14 10:13 - 2013-11-05 15:19 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2013-12-14 10:13 - 2013-11-05 15:03 - 00637952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2013-12-14 10:13 - 2013-11-05 14:57 - 00479744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2013-12-14 10:13 - 2013-11-05 14:33 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2013-12-14 10:13 - 2013-11-05 14:32 - 00744448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2013-12-14 10:13 - 2013-11-04 18:13 - 01530200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2013-12-14 10:13 - 2013-11-04 18:13 - 00382808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2013-12-14 10:13 - 2013-11-04 14:07 - 01843712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll
2013-12-14 10:13 - 2013-11-04 12:50 - 02143744 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2013-12-14 10:13 - 2013-11-04 11:32 - 02570240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2013-12-14 10:13 - 2013-11-04 03:28 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Display.dll
2013-12-14 10:13 - 2013-11-04 02:30 - 01765376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2013-12-14 10:13 - 2013-11-01 12:39 - 00086872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2013-12-14 10:13 - 2013-11-01 07:08 - 00747008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcli.dll
2013-12-14 10:13 - 2013-11-01 06:57 - 00544768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcli.dll
2013-12-14 10:13 - 2013-10-31 01:58 - 00372568 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2013-12-14 10:13 - 2013-10-31 01:42 - 07399256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2013-12-14 10:13 - 2013-10-31 01:33 - 01642016 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2013-12-14 10:13 - 2013-10-31 01:33 - 01506680 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2013-12-14 10:13 - 2013-10-31 01:33 - 01476184 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2013-12-14 10:13 - 2013-10-31 01:33 - 01345536 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2013-12-14 10:13 - 2013-10-26 02:54 - 00146776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\SerCx2.sys
2013-12-14 10:13 - 2013-10-24 10:31 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll
2013-12-14 10:13 - 2013-10-24 10:12 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredentialMigrationHandler.dll
2013-12-14 10:13 - 2013-10-17 12:21 - 02896896 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2013-12-14 10:13 - 2013-10-17 11:36 - 02266624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2013-12-14 10:13 - 2013-10-05 15:21 - 02140888 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2013-12-14 10:13 - 2013-10-05 15:21 - 00516496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2013-12-14 10:13 - 2013-10-05 13:05 - 01765384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2013-12-14 10:13 - 2013-10-05 13:05 - 00406400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2013-12-12 22:48 - 2013-12-19 14:43 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-12-12 11:55 - 2013-12-04 01:05 - 00693240 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2013-12-12 11:55 - 2013-12-04 01:05 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2013-12-12 09:57 - 2013-11-26 12:54 - 23183360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2013-12-12 09:57 - 2013-11-26 11:11 - 17112576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2013-12-12 09:57 - 2013-11-26 10:41 - 02764288 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2013-12-12 09:57 - 2013-11-26 09:57 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2013-12-12 09:57 - 2013-11-26 09:38 - 02166784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2013-12-12 09:57 - 2013-11-26 09:35 - 05769216 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2013-12-12 09:57 - 2013-11-26 09:16 - 04243968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2013-12-12 09:57 - 2013-11-26 09:02 - 01995264 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2013-12-12 09:57 - 2013-11-26 08:48 - 12996608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2013-12-12 09:57 - 2013-11-26 08:32 - 01928192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2013-12-12 09:57 - 2013-11-26 08:26 - 11221504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2013-12-12 09:57 - 2013-11-26 08:07 - 02334208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2013-12-12 09:57 - 2013-11-26 07:40 - 01395200 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2013-12-12 09:57 - 2013-11-26 07:34 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2013-12-12 09:57 - 2013-11-26 07:34 - 00703488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2013-12-12 09:57 - 2013-11-26 07:33 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2013-12-12 09:57 - 2013-11-26 07:27 - 01157632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2013-12-12 09:57 - 2013-11-23 05:34 - 00393216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2013-12-12 09:57 - 2013-11-23 05:13 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll
2013-12-12 09:57 - 2013-11-23 04:32 - 04105728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2013-12-12 09:57 - 2013-11-23 04:10 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
2013-12-12 09:57 - 2013-11-09 07:34 - 00615936 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2013-12-12 09:57 - 2013-11-09 07:34 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2013-12-12 09:57 - 2013-11-09 06:52 - 00240128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2013-12-12 09:57 - 2013-11-08 08:21 - 04191744 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2013-12-12 09:57 - 2013-10-19 09:53 - 00075360 _____ (Microsoft Corporation) C:\WINDOWS\system32\imagehlp.dll
2013-12-12 09:57 - 2013-10-19 08:14 - 00070680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imagehlp.dll
2013-12-12 09:57 - 2013-10-15 09:54 - 00197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrrun.dll
2013-12-12 09:57 - 2013-10-15 09:03 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrrun.dll
2013-12-11 22:32 - 2013-12-11 22:32 - 00458336 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\kl1.sys
2013-12-11 22:32 - 2013-12-11 22:32 - 00030304 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\klim6.sys
2013-12-07 12:57 - 2013-12-20 11:18 - 00020480 _____ C:\Users\MartinPC\sqlitedbfile.db
2013-12-06 16:46 - 2013-12-06 16:46 - 00001182 _____ C:\Users\Public\Desktop\TeamViewer 8.lnk
2013-12-06 16:46 - 2013-12-06 16:46 - 00000000 ____D C:\Program Files (x86)\TeamViewer
2013-12-06 14:08 - 2013-12-06 14:08 - 00281688 _____ C:\WINDOWS\SysWOW64\PnkBstrB.exe
2013-12-02 20:59 - 2013-12-02 20:59 - 00281688 _____ C:\WINDOWS\SysWOW64\PnkBstrB.ex0
2013-12-01 23:01 - 2013-12-01 23:01 - 00000000 ____D C:\Users\MartinPC\AppData\Local\NVIDIA Corporation
2013-12-01 23:01 - 2013-11-08 21:47 - 01064224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2013-12-01 23:01 - 2013-11-08 21:47 - 00955168 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2013-11-29 18:30 - 2013-11-29 18:30 - 00000000 ____D C:\Users\MartinPC\.eclipse
2013-11-27 20:35 - 2013-11-27 20:35 - 00000000 ____D C:\ProgramData\Blizzard Entertainment
2013-11-27 20:34 - 2013-12-12 22:15 - 00000000 ____D C:\ProgramData\Battle.net
2013-11-24 15:07 - 2013-12-07 09:51 - 00000000 ____D C:\Users\MartinPC\AppData\Roaming\TeamViewer
==================== One Month Modified Files and Folders =======
2013-12-24 11:11 - 2013-12-24 11:11 - 00030116 _____ C:\Users\MartinPC\Desktop\FRST.txt
2013-12-24 11:11 - 2013-12-24 11:11 - 00000000 ____D C:\Users\MartinPC\Desktop\FRST-OlderVersion
2013-12-24 11:11 - 2013-12-24 11:10 - 01928604 _____ (Farbar) C:\Users\MartinPC\Desktop\FRST64.exe
2013-12-24 11:11 - 2013-12-22 21:50 - 00000000 ____D C:\FRST
2013-12-24 11:09 - 2012-11-09 13:40 - 00000000 ____D C:\Users\MartinPC\AppData\Roaming\Spotify
2013-12-24 11:09 - 2012-11-04 14:07 - 00003594 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2504333501-68428025-1524359791-1001
2013-12-24 11:08 - 2012-11-04 14:18 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2013-12-24 11:07 - 2013-12-24 11:07 - 00001108 _____ C:\Users\MartinPC\Desktop\JRT.txt
2013-12-24 11:05 - 2013-11-12 20:26 - 01481538 _____ C:\WINDOWS\WindowsUpdate.log
2013-12-24 11:03 - 2013-12-24 11:03 - 00000000 ____D C:\WINDOWS\ERUNT
2013-12-24 11:02 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\sru
2013-12-24 11:01 - 2013-12-24 11:01 - 01034531 _____ (Thisisu) C:\Users\MartinPC\Desktop\JRT.exe
2013-12-24 11:00 - 2013-11-12 20:55 - 00000000 ____D C:\Users\MartinPC\AppData\Local\Deployment
2013-12-24 11:00 - 2012-10-31 17:52 - 00000000 ____D C:\Users\MartinPC\Documents\Outlook-Dateien
2013-12-24 11:00 - 2012-10-31 17:39 - 00000000 ____D C:\Users\MartinPC\Documents\Outlook
2013-12-24 10:59 - 2013-12-24 10:59 - 00012833 _____ C:\Users\MartinPC\Desktop\AdwCleaner[S0].txt
2013-12-24 10:58 - 2013-09-30 05:14 - 01980934 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2013-12-24 10:58 - 2013-09-30 04:58 - 00841326 _____ C:\WINDOWS\system32\perfh007.dat
2013-12-24 10:58 - 2013-09-30 04:58 - 00191558 _____ C:\WINDOWS\system32\perfc007.dat
2013-12-24 10:53 - 2012-11-04 14:36 - 00000000 ____D C:\Users\MartinPC\AppData\Roaming\Dropbox
2013-12-24 10:52 - 2013-11-12 20:52 - 00000000 __RDO C:\Users\MartinPC\SkyDrive
2013-12-24 10:52 - 2013-11-12 20:26 - 00000000 ____D C:\ProgramData\NVIDIA
2013-12-24 10:52 - 2013-11-07 15:22 - 00000622 _____ C:\WINDOWS\Tasks\MATLAB R2013a Startup Accelerator.job
2013-12-24 10:52 - 2013-08-22 15:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2013-12-24 10:52 - 2013-01-02 12:02 - 00000000 ____D C:\Users\MartinPC\AppData\Local\HTC MediaHub
2013-12-24 10:52 - 2012-11-04 16:04 - 00000000 ____D C:\Program Files (x86)\Steam
2013-12-24 10:52 - 2012-11-04 14:40 - 00001124 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2013-12-24 10:51 - 2013-12-24 10:49 - 00000000 ____D C:\AdwCleaner
2013-12-24 10:51 - 2013-08-22 14:25 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2013-12-24 10:51 - 2012-11-04 14:27 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2013-12-24 10:47 - 2013-10-28 16:21 - 00000000 ____D C:\Users\MartinPC\AppData\Roaming\KeePass
2013-12-24 10:40 - 2012-11-13 13:05 - 00001146 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-2504333501-68428025-1524359791-1001UA.job
2013-12-24 10:38 - 2012-11-09 13:40 - 00000000 ____D C:\Users\MartinPC\AppData\Local\Spotify
2013-12-24 10:29 - 2013-08-24 16:29 - 00000000 ____D C:\WINDOWS\system32\MRT
2013-12-24 00:10 - 2013-11-12 20:28 - 00000000 ____D C:\Users\MartinPC
2013-12-23 23:16 - 2012-11-04 14:40 - 00001128 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2013-12-23 23:06 - 2013-08-22 11:32 - 00000000 ____D C:\Users\MartinPC\AppData\Local\Battle.net
2013-12-23 22:22 - 2013-08-22 15:44 - 00621432 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2013-12-23 16:29 - 2013-12-23 16:27 - 00000000 ____D C:\Users\MartinPC\Desktop\Xmas-Gutschein
2013-12-23 16:27 - 2013-12-23 16:27 - 00000000 ____D C:\Users\MartinPC\Desktop\xmas_font
2013-12-23 16:17 - 2013-09-29 20:05 - 00016682 _____ C:\WINDOWS\PFRO.log
2013-12-23 15:40 - 2012-11-13 13:05 - 00001094 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-2504333501-68428025-1524359791-1001Core.job
2013-12-23 12:28 - 2012-11-04 16:16 - 00000000 ____D C:\Program Files (x86)\Origin
2013-12-22 21:50 - 2013-12-22 21:50 - 00000000 _____ C:\Users\MartinPC\defogger_reenable
2013-12-22 21:43 - 2013-12-22 21:43 - 00001139 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-12-22 21:43 - 2013-06-22 11:12 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-12-22 21:41 - 2013-12-22 21:41 - 00377856 _____ C:\Users\MartinPC\Desktop\s9xth4k0.exe
2013-12-22 21:40 - 2013-12-22 21:40 - 00050477 _____ C:\Users\MartinPC\Desktop\Defogger.exe
2013-12-22 21:10 - 2013-12-22 21:10 - 00614784 _____ C:\Users\MartinPC\Desktop\adwcleaner-3-015.exe
2013-12-22 21:05 - 2013-01-03 12:36 - 90708896 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2013-12-22 10:37 - 2013-11-19 19:09 - 00033280 _____ C:\Users\MartinPC\Documents\MartinTerminplanung januar.xls
2013-12-21 22:39 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2013-12-21 01:11 - 2013-01-12 13:33 - 00000000 ____D C:\Users\MartinPC\AppData\Roaming\Skype
2013-12-20 13:43 - 2012-11-27 15:08 - 00000000 ____D C:\Users\MartinPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2013-12-20 11:18 - 2013-12-07 12:57 - 00020480 _____ C:\Users\MartinPC\sqlitedbfile.db
2013-12-20 10:14 - 2013-08-22 11:32 - 00000000 ____D C:\Program Files (x86)\Battle.net
2013-12-20 09:45 - 2012-11-04 14:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-12-19 19:45 - 2013-09-02 16:43 - 00000000 ____D C:\Program Files (x86)\Hearthstone
2013-12-19 14:43 - 2013-12-12 22:48 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-12-15 12:08 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\rescache
2013-12-15 11:25 - 2013-08-29 23:46 - 00000902 _____ C:\Users\MartinPC\Desktop\CookieClickerSave.txt
2013-12-15 00:23 - 2013-08-22 16:36 - 00000000 ___RD C:\WINDOWS\ToastData
2013-12-15 00:23 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\WinStore
2013-12-15 00:23 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\MediaViewer
2013-12-15 00:23 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\FileManager
2013-12-15 00:23 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\Camera
2013-12-12 22:15 - 2013-11-27 20:34 - 00000000 ____D C:\ProgramData\Battle.net
2013-12-12 11:55 - 2012-11-04 14:47 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-12-11 22:32 - 2013-12-11 22:32 - 00458336 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\kl1.sys
2013-12-11 22:32 - 2013-12-11 22:32 - 00030304 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\klim6.sys
2013-12-10 22:17 - 2012-11-04 14:40 - 00000000 ____D C:\Program Files (x86)\Google
2013-12-10 19:51 - 2012-11-04 14:27 - 00003772 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2013-12-09 23:18 - 2012-11-04 14:47 - 00000000 ____D C:\Users\MartinPC\AppData\Local\Microsoft Help
2013-12-07 09:51 - 2013-11-24 15:07 - 00000000 ____D C:\Users\MartinPC\AppData\Roaming\TeamViewer
2013-12-06 17:34 - 2012-10-31 19:06 - 00000000 ____D C:\Users\MartinPC\Documents\Visual Studio 2012
2013-12-06 17:01 - 2012-10-31 19:25 - 00000000 ____D C:\Diablo III
2013-12-06 16:46 - 2013-12-06 16:46 - 00001182 _____ C:\Users\Public\Desktop\TeamViewer 8.lnk
2013-12-06 16:46 - 2013-12-06 16:46 - 00000000 ____D C:\Program Files (x86)\TeamViewer
2013-12-06 14:08 - 2013-12-06 14:08 - 00281688 _____ C:\WINDOWS\SysWOW64\PnkBstrB.exe
2013-12-06 14:08 - 2013-08-17 14:25 - 00281688 _____ C:\WINDOWS\SysWOW64\PnkBstrB.xtr
2013-12-05 15:35 - 2012-11-13 13:05 - 00004098 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2504333501-68428025-1524359791-1001UA
2013-12-05 15:35 - 2012-11-13 13:05 - 00003718 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2504333501-68428025-1524359791-1001Core
2013-12-04 01:05 - 2013-12-12 11:55 - 00693240 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2013-12-04 01:05 - 2013-12-12 11:55 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2013-12-03 16:11 - 2012-11-04 14:40 - 00004100 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2013-12-03 16:11 - 2012-11-04 14:40 - 00003864 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2013-12-02 20:59 - 2013-12-02 20:59 - 00281688 _____ C:\WINDOWS\SysWOW64\PnkBstrB.ex0
2013-12-01 23:14 - 2013-08-17 14:25 - 00000000 ____D C:\Users\MartinPC\AppData\Local\PunkBuster
2013-12-01 23:14 - 2012-11-01 13:55 - 00000000 ____D C:\Users\MartinPC\Documents\my games
2013-12-01 23:08 - 2012-11-07 00:22 - 00076888 _____ C:\WINDOWS\SysWOW64\PnkBstrA.exe
2013-12-01 23:07 - 2012-11-04 16:56 - 00055229 _____ C:\WINDOWS\DirectX.log
2013-12-01 23:01 - 2013-12-01 23:01 - 00000000 ____D C:\Users\MartinPC\AppData\Local\NVIDIA Corporation
2013-12-01 23:00 - 2013-08-22 15:46 - 00330510 _____ C:\WINDOWS\setupact.log
2013-11-29 18:30 - 2013-11-29 18:30 - 00000000 ____D C:\Users\MartinPC\.eclipse
2013-11-29 18:29 - 2013-11-07 15:29 - 00000000 ____D C:\Users\MartinPC\AppData\Roaming\Subversion
2013-11-27 20:35 - 2013-11-27 20:35 - 00000000 ____D C:\ProgramData\Blizzard Entertainment
2013-11-27 15:47 - 2012-11-30 00:00 - 00000600 _____ C:\Users\MartinPC\AppData\Local\PUTTY.RND
2013-11-26 12:54 - 2013-12-12 09:57 - 23183360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2013-11-26 11:11 - 2013-12-12 09:57 - 17112576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2013-11-26 10:41 - 2013-12-12 09:57 - 02764288 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2013-11-26 09:57 - 2013-12-12 09:57 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2013-11-26 09:38 - 2013-12-12 09:57 - 02166784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2013-11-26 09:35 - 2013-12-12 09:57 - 05769216 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2013-11-26 09:16 - 2013-12-12 09:57 - 04243968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2013-11-26 09:02 - 2013-12-12 09:57 - 01995264 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2013-11-26 08:48 - 2013-12-12 09:57 - 12996608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2013-11-26 08:32 - 2013-12-12 09:57 - 01928192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2013-11-26 08:26 - 2013-12-12 09:57 - 11221504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2013-11-26 08:07 - 2013-12-12 09:57 - 02334208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2013-11-26 07:40 - 2013-12-12 09:57 - 01395200 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2013-11-26 07:34 - 2013-12-12 09:57 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2013-11-26 07:34 - 2013-12-12 09:57 - 00703488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2013-11-26 07:33 - 2013-12-12 09:57 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2013-11-26 07:27 - 2013-12-12 09:57 - 01157632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2013-11-24 19:15 - 2013-11-22 21:17 - 00000000 ____D C:\Users\MartinPC\.android
Some content of TEMP:
====================
C:\Users\MartinPC\AppData\Local\Temp\Quarantine.exe
C:\Users\MartinPC\AppData\Local\Temp\SkypeSetup.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-12-23 23:08
==================== End Of Log ============================ --- --- ---
Additions: Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 23-12-2013
Ran by MartinPC at 2013-12-24 11:14:24
Running from C:\Users\MartinPC\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Kaspersky Internet Security (Enabled - Up to date) {C3113FBF-4BCB-4461-D78D-6EDFEC9593E5}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Kaspersky Internet Security (Enabled - Up to date) {7870DE5B-6DF1-4BEF-ED3D-55AD9712D958}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Spybot - Search and Destroy (Disabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
FW: Kaspersky Internet Security (Enabled) {FB2ABE9A-01A4-4539-FCD2-C7EA1246D49E}
==================== Installed Programs ======================
Tools for .Net 3.5 - DEU Lang Pack (x32 Version: 3.11.50727)
Tools for .Net 3.5 (x32 Version: 3.11.50727)
µTorrent (x32 Version: 3.2.1.28086)
AC3Filter 2.5b (x32 Version: 2.5b)
ActivePerl 5.16.2 Build 1602 (64-bit) (Version: 5.16.1602)
Adobe AIR (x32 Version: 2.6.0.19140)
Adobe Bridge 1.0 (x32 Version: 001.000.001)
Adobe Common File Installer (x32 Version: 1.00.001)
Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.170)
Adobe Help Center 1.0 (x32 Version: 1.0.1)
Adobe Photoshop CS2 (x32 Version: 9.0)
Adobe Premiere Pro 2.0 (x32 Version: 2.000.000)
Adobe Reader XI (11.0.05) - Deutsch (x32 Version: 11.0.05)
Adobe Stock Photos 1.0 (x32 Version: 1.0.1)
Amazon MP3-Downloader 1.0.17 (x32 Version: 1.0.17)
AMD Catalyst Install Manager (Version: 8.0.903.0)
ANNO 2070 (x32 Version: 1.0.0.0)
Apple Application Support (x32 Version: 2.3.4)
Apple Mobile Device Support (Version: 6.1.0.13)
Apple Software Update (x32 Version: 2.1.3.127)
Assassin's Creed(R) III v1.06 (x32 Version: 1.06)
ASUS Xonar DG Audio (x32 Version: 1.00.0003)
Batman™: Arkham Origins (x32)
Battle.net (x32)
Battlefield 3™ (x32 Version: 1.4.0.0)
Battlelog Web Plugins (x32 Version: 2.1.7)
Beat Hazard (x32)
Blend for Visual Studio Add-in for Adobe FXG Import (x32 Version: 1.0.40218.0)
Blend for Visual Studio SDK for .NET 4.5 (x32 Version: 3.0.40218.0)
Blend for Visual Studio SDK for Silverlight 5 (x32 Version: 3.0.40218.0)
Bonjour (Version: 3.0.0.10)
calibre (x32 Version: 0.9.10)
Crysis 2 Maximum Edition (x32)
CrystalDiskInfo 5.0.5 (x32 Version: 5.0.5)
Cube World version 0.0.1 (x32 Version: 0.0.1)
Curse Client (HKCU Version: 5.1.1.792)
Dead Island (x32)
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (x32)
Devenv-Ressourcen für Microsoft Visual Studio 2012 (x32 Version: 11.0.50727)
Diablo III Beta (x32)
Dotfuscator and Analytics Community Edition (x32 Version: 5.5.4521.29298)
Dotfuscator and Analytics Community Edition Language Pack (x32 Version: 5.5.4521.29298)
Dropbox (HKCU Version: 2.0.22)
Dual-Core Optimizer (x32 Version: 1.1.4.0169)
DVBViewer Pro (x32 Version: 4.9.6.20)
DVBViewer Recording Service (x32 Version: 1.21.2)
Entity Framework Designer for Visual Studio 2012 - enu (x32 Version: 11.1.21009.00)
Entity Framework Designer für Visual Studio 2012 - DEU (x32 Version: 11.1.21009.00)
ESN Sonar (x32 Version: 0.70.4)
Far Cry® 3 (x32)
FIFA 13 (x32 Version: 1.6.0.0)
Flatcast Viewer Plugin 5.3.0.784 (x32)
foobar2000 v1.2.3 (x32 Version: 1.2.3)
Fraps (x32)
FTL: Faster Than Light (x32)
GeForce Experience NvStream Client Components (Version: 1.6.28)
GIMP 2.8.4 (Version: 2.8.4)
Git version 1.8.0-preview20121022 (x32 Version: 1.8.0-preview20121022)
Google Chrome (x32 Version: 31.0.1650.63)
Google Drive (x32 Version: 1.13.5782.599)
Google Earth Plug-in (x32 Version: 7.1.2.2041)
Google Update Helper (x32 Version: 1.3.22.3)
Grim Dawn (x32)
Guild Wars 2 (x32)
Half-Life 2 (x32)
Hearthstone (x32)
HTC Driver Installer (x32 Version: 4.0.1.001)
HTC Sync Manager (x32 Version: 1.1.77.0)
IPTInstaller (x32 Version: 4.0.8)
iTunes (Version: 11.0.5.5)
Java 7 Update 25 (64-bit) (Version: 7.0.250)
Java 7 Update 45 (x32 Version: 7.0.450)
Java Auto Updater (x32 Version: 2.1.9.8)
JavaScript Tooling (Version: 11.0.60315)
JavaScript Tooling (x32 Version: 11.0.60315)
JDownloader 2.0 (x32 Version: 2.0)
Kaspersky Internet Security 2013 (x32 Version: 13.0.1.4190)
KeePass Password Safe 2.23 (x32)
Kerbal Space Program (x32)
Kingdoms of Amalur: Reckoning (x32 Version: 1.0.0.0)
Kyocera Product Library (Version: 3.3.0728)
LAV Filters 0.52.0 (x32 Version: 0.52.0)
League of Legends (x32 Version: 1.3)
LocalESPC (x32 Version: 8.59.25584)
LocalESPCui for de-de (x32 Version: 8.59.25584)
Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300)
Mass Effect 2 (x32 Version: 1.02)
Mass Effect™ 3 (x32 Version: 1.05.0.0)
MATLAB R2013a Student Version (32-bit) (x32 Version: 8.1)
MetroTwit (HKCU Version: 1.1.0.3076)
Microsoft .NET Framework 4 Multi-Targeting Pack (x32 Version: 4.0.30319)
Microsoft .NET Framework 4.5 Multi-Targeting Pack (x32 Version: 4.5.50709)
Microsoft .NET Framework 4.5 SDK - DEU Lang Pack (x32 Version: 4.5.50709)
Microsoft .NET Framework 4.5 SDK (x32 Version: 4.5.50709)
Microsoft Expression Blend SDK for .NET 4 (x32 Version: 2.0.20525.0)
Microsoft Expression Blend SDK for Silverlight 4 (x32 Version: 2.0.20525.0)
Microsoft Games for Windows - LIVE Redistributable (x32 Version: 3.5.92.0)
Microsoft Games for Windows Marketplace (x32 Version: 3.5.50.0)
Microsoft Help Viewer 2.0 (x32 Version: 2.0.50727)
Microsoft Help Viewer 2.0 Language Pack - DEU (x32 Version: 2.0.50727)
Microsoft NuGet - Visual Studio 2012 (x32 Version: 2.0.30625.9003)
Microsoft Office Access MUI (German) 2010 (x32 Version: 14.0.7015.1000)
Microsoft Office Excel MUI (German) 2010 (x32 Version: 14.0.7015.1000)
Microsoft Office Groove MUI (German) 2010 (x32 Version: 14.0.7015.1000)
Microsoft Office InfoPath MUI (German) 2010 (x32 Version: 14.0.7015.1000)
Microsoft Office Office 64-bit Components 2010 (Version: 14.0.7015.1000)
Microsoft Office OneNote MUI (German) 2010 (x32 Version: 14.0.7015.1000)
Microsoft Office Outlook Connector (x32 Version: 14.0.6123.5001)
Microsoft Office Outlook MUI (German) 2010 (x32 Version: 14.0.7015.1000)
Microsoft Office PowerPoint MUI (German) 2010 (x32 Version: 14.0.7015.1000)
Microsoft Office Professional Plus 2010 (x32 Version: 14.0.7015.1000)
Microsoft Office Proof (English) 2010 (x32 Version: 14.0.7015.1000)
Microsoft Office Proof (French) 2010 (x32 Version: 14.0.7015.1000)
Microsoft Office Proof (German) 2010 (x32 Version: 14.0.7015.1000)
Microsoft Office Proof (Italian) 2010 (x32 Version: 14.0.7015.1000)
Microsoft Office Proofing (German) 2010 (x32 Version: 14.0.7015.1000)
Microsoft Office Publisher MUI (German) 2010 (x32 Version: 14.0.7015.1000)
Microsoft Office Shared 64-bit MUI (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office Shared MUI (German) 2010 (x32 Version: 14.0.7015.1000)
Microsoft Office Word MUI (German) 2010 (x32 Version: 14.0.7015.1000)
Microsoft Portable Library Multi-Targeting Pack (x32 Version: 11.0.60418.17931)
Microsoft Portable Library Multi-Targeting Pack Language Pack - deu (x32 Version: 11.0.50709.17929)
Microsoft Report Viewer Add-On for Visual Studio 2012 (x32 Version: 11.1.2802.16)
Microsoft Report Viewer Add-On für Visual Studio 2012 (x32 Version: 11.1.2802.16)
Microsoft Silverlight (Version: 5.1.20913.0)
Microsoft SQL Server 2012 Data-Tier App Framework (Version: 11.0.2316.0)
Microsoft SQL Server 2012 Data-Tier App Framework (x32 Version: 11.0.2316.0)
Microsoft SQL Server 2012 Express LocalDB (Version: 11.0.2100.60)
Microsoft SQL Server 2012 Management Objects (x32 Version: 11.0.2100.60)
Microsoft SQL Server 2012 Management Objects (x64) (Version: 11.0.2100.60)
Microsoft SQL Server 2012 Transact-SQL ScriptDom (Version: 11.0.2100.60)
Microsoft SQL Server 2012 T-SQL Language Service (x32 Version: 11.0.2100.60)
Microsoft SQL Server Compact 4.0 SP1 x64 DEU (Version: 4.0.8876.1)
Microsoft SQL Server System CLR Types (x32 Version: 10.50.1600.1)
Microsoft SQL Server System CLR Types (x64) (Version: 10.50.1600.1)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.50727.42)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (Version: 9.0.21022)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219)
Microsoft Visual C++ 2012 x64 Designtime - 11.0.50727 (Version: 11.0.50727)
Microsoft Visual C++ 2012 32bit Compilers - DEU Resources (x32 Version: 11.0.60610)
Microsoft Visual C++ 2012 Compilers - DEU Resources (x32 Version: 11.0.60610)
Microsoft Visual C++ 2012 Compilers (x32 Version: 11.0.60610)
Microsoft Visual C++ 2012 Core Libraries (x32 Version: 11.0.51106)
Microsoft Visual C++ 2012 Extended Libraries (x32 Version: 11.0.60610)
Microsoft Visual C++ 2012 Microsoft Foundation Class Libraries (x32 Version: 11.0.60610)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (x32 Version: 11.0.60610.1)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (x32 Version: 11.0.60610.1)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610)
Microsoft Visual C++ 2012 x64 Debug Runtime - 11.0.60610 (Version: 11.0.60610)
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610)
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610)
Microsoft Visual C++ 2012 x86 Debug Runtime - 11.0.60610 (x32 Version: 11.0.60610)
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610)
Microsoft Visual C++ 2012 x86-x64 Compilers (x32 Version: 11.0.60610)
Microsoft Visual Studio 2012 Devenv (x32 Version: 11.0.50727)
Microsoft Visual Studio 2012 IntelliTrace Core amd64 (Version: 11.0.60315)
Microsoft Visual Studio 2012 IntelliTrace Core x86 (x32 Version: 11.0.60315)
Microsoft Visual Studio 2012 IntelliTrace Front End x86 (x32 Version: 11.0.60315)
Microsoft Visual Studio 2012 IntelliTraceFrontEndLoc (x32 Version: 11.0.60315)
Microsoft Visual Studio 2012 IntelliTraceLoc (Version: 11.0.60315)
Microsoft Visual Studio 2012 IntelliTraceLoc (x32 Version: 11.0.60315)
Microsoft Visual Studio 2012 Shell (Minimum) (x32 Version: 11.0.50727)
Microsoft Visual Studio 2012 Shell (Minimum) Interop Assemblies (x32 Version: 11.0.50727)
Microsoft Visual Studio 2012 Shell-(Mindest)-Ressourcen (x32 Version: 11.0.50727)
Microsoft Visual Studio 2012 Tools für SQL Server Compact 4.0 SP1 DEU (x32 Version: 4.0.8876.1)
Microsoft Visual Studio 2012-Leistungserfassungstools - DEU (Version: 11.0.50727)
Microsoft Visual Studio 2012-Leistungserfassungstools (Version: 11.0.50727)
Microsoft Visual Studio 2012-Vorbereitung (x32 Version: 11.0.50727)
Microsoft Visual Studio Premium 2012 - DEU (x32 Version: 11.0.50727)
Microsoft Visual Studio Premium 2012 (x32 Version: 11.0.50727)
Microsoft Visual Studio Professional 2012 - DEU (x32 Version: 11.0.50727)
Microsoft Visual Studio Professional 2012 (x32 Version: 11.0.50727)
Microsoft Visual Studio Team Foundation Server 2012 Object Model (Version: 11.0.60610)
Microsoft Visual Studio Team Foundation Server 2012 Object Model Language Pack - DEU (Version: 11.0.60610)
Microsoft Visual Studio Team Foundation Server 2012 Storyboarding (Version: 11.0.50727)
Microsoft Visual Studio Team Foundation Server 2012 Storyboarding Language Pack - DEU (Version: 11.0.50727)
Microsoft Visual Studio Team Foundation Server 2012 Team Explorer (x32 Version: 11.0.50727)
Microsoft Visual Studio Team Foundation Server 2012 Team Explorer Language Pack - DEU (x32 Version: 11.0.50727)
Microsoft Visual Studio Ultimate 2012 - DEU (x32 Version: 11.0.50727)
Microsoft Visual Studio Ultimate 2012 (x32 Version: 11.0.50727)
Microsoft Visual Studio Ultimate 2012 (x32 Version: 11.0.50727.1)
Microsoft Visual Studio Ultimate 2012 XAML UI Designer Core (x32 Version: 11.0.50727)
Microsoft Visual Studio Ultimate 2012 XAML UI Designer deu Resources (x32 Version: 11.0.50727)
Microsoft Web Deploy dbSqlPackage Provider - DEU (x32 Version: 10.3.20225.0)
Microsoft XNA Framework Redistributable 3.1 (x32 Version: 3.1.10527.0)
Microsoft XNA Framework Redistributable 4.0 Refresh (x32 Version: 4.0.30901.0)
Microsoft-System-CLR-Typen für SQL Server 2012 (x32 Version: 11.0.2100.60)
Microsoft-System-CLR-Typen für SQL Server 2012 (x64) (Version: 11.0.2100.60)
MiKTeX 2.9 (Version: 2.9)
Mozilla Firefox 27.0 (x86 de) (x32 Version: 27.0)
Mozilla Maintenance Service (x32 Version: 27.0)
MSI Afterburner 2.3.1 (x32 Version: 2.3.1)
Music Manager (HKCU)
NC Launcher (GameForge) (x32)
Need for Speed: Hot Pursuit (x32)
Need for Speed™ SHIFT (x32 Version: 1.0.0.0)
Nexus Mod Manager (Version: 0.44.1)
NVIDIA 3D Vision Controller-Treiber 331.65 (Version: 331.65)
NVIDIA 3D Vision Treiber 331.65 (Version: 331.65)
NVIDIA GeForce Experience 1.7.1 (Version: 1.7.1)
NVIDIA Grafiktreiber 331.65 (Version: 331.65)
NVIDIA HD-Audiotreiber 1.3.26.4 (Version: 1.3.26.4)
NVIDIA Install Application (Version: 2.1002.140.952)
NVIDIA LED Visualizer 1.0 (Version: 1.0)
NVIDIA PhysX (x32 Version: 9.13.0725)
NVIDIA PhysX-Systemsoftware 9.13.0725 (Version: 9.13.0725)
NVIDIA ShadowPlay 9.3.21 (Version: 9.3.21)
NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.3165)
NVIDIA Systemsteuerung 331.65 (Version: 331.65)
NVIDIA Update 9.3.21 (Version: 9.3.21)
NVIDIA Update Components (Version: 9.3.21)
NVIDIA Virtual Audio 1.2.9 (Version: 1.2.9)
Open Broadcaster Software (x32)
OpenAL (x32)
Origin (x32 Version: 9.0.15.65)
Pando Media Booster (x32 Version: 2.6.0.8)
Poker Night 2 (x32)
Poker Night at the Inventory (x32)
Portal 2 - The Final Hours (x32)
Portal 2 (x32)
PreEmptive Analytics Client German Language Pack (x32 Version: 1.0.2180.1)
PreEmptive Analytics Visual Studio Components (x32 Version: 1.0.2180.1)
PunkBuster Services (x32 Version: 0.993)
puush (x32 Version: 1.0.0.0)
Python 2.7.5 (x32 Version: 2.7.5150)
Python 3.3.0 (64-bit) (Version: 3.3.150)
Qt Creator (HKCU Version: 2.6.2)
RAGE (x32)
Recuva (Version: 1.44)
RIFT (HKCU)
Rogue Legacy (x32)
Saints Row: The Third (x32)
Santa Rockstar Final (x32 Version: 1.30.0000)
Secure Download Manager (x32 Version: 3.1.0)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (x32)
SHIELD Streaming (Version: 1.6.53)
Skype™ 6.10 (x32 Version: 6.10.104)
Spotify (HKCU Version: 0.9.6.81.gd359a796)
Spybot - Search & Destroy (x32 Version: 2.1.19)
SSD Fresh (x32 Version: 2013)
Starbound (x32)
Steam (x32 Version: 1.0.0.0)
TBS 6920 DVBS/S2(support HID) Driver 1.0.5.1 for windows xp/vista/7
TeamSpeak 3 Client (Version: 3.0.10.1)
TeamViewer 8 (x32 Version: 8.0.22298)
TeXstudio 2.6.6 (x32 Version: 2.6.6)
The Binding of Isaac (x32)
The Elder Scrolls V: Skyrim (x32)
The Stanley Parable (x32)
Titan Quest (x32 Version: 1.00.0000)
Titan Quest Immortal Throne (x32 Version: 1.00.0000)
Tomb Raider (x32)
TQVault (x32 Version: 2.31.4)
Tukui Client (x32 Version: 2.1.5)
Tukui Client (x32 Version: 2.2.4)
Update for (KB2504637) (x32 Version: 1)
Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition (x32)
Update for Microsoft Filter Pack 2.0 (KB2810071) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2494150) (x32)
Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2825640) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2826026) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2850079) 32-Bit Edition (x32)
Update for Microsoft OneNote 2010 (KB2810072) 32-Bit Edition (x32)
Update for Microsoft PowerPoint 2010 (KB2553145) 32-Bit Edition (x32)
Update for Microsoft Visio Viewer 2010 (KB2810066) 32-Bit Edition (x32)
Update for Microsoft Visual Studio 2012 (KB2781514) (x32 Version: 11.0.50727)
Update for Microsoft Word 2010 (KB2837593) 32-Bit Edition (x32)
Uplay (x32 Version: 2.0)
Visual Studio 2012 Prerequisites - DEU Language Pack (Version: 11.0.50727)
Visual Studio 2012 Prerequisites (Version: 11.0.50727)
Visual Studio 2012 Update 3 (KB2707250) (x32 Version: 11.0.60610)
Visual Studio Extensions for Windows Library for JavaScript (x32 Version: 1.0.9201.20602)
VLC media player 2.0.4 (Version: 2.0.4)
WCF Data Services 5.0 (for OData v3) DEU Language Pack (x32 Version: 5.0.50628.0)
WCF Data Services 5.0 (for OData v3) Primary Components (x32 Version: 5.0.50628.0)
WCF Data Services Tools for Microsoft Visual Studio 2012 (x32 Version: 5.0.50710.0)
WCF Data Services Tools for Visual Studio 11 DEU Language Pack (x32 Version: 5.0.50710.0)
WCF RIA Services V1.0 SP2 (x32 Version: 4.1.61829.0)
Windows App Certification Kit Native Components (Version: 8.59.29736)
Windows App Certification Kit x64 (x32 Version: 8.59.29750)
Windows Runtime Intellisense Content - de-de (x32 Version: 8.59.25584)
Windows Software Development Kit (x32 Version: 8.59.25584)
Windows Software Development Kit DirectX x64 Remote (Version: 8.59.25584)
Windows Software Development Kit DirectX x86 Remote (x32 Version: 8.59.25584)
Windows Software Development Kit for Windows Store Apps (x32 Version: 8.59.25584)
Windows Software Development Kit for Windows Store Apps DirectX x64 Remote (Version: 8.59.25584)
Windows Software Development Kit for Windows Store Apps DirectX x86 Remote (x32 Version: 8.59.25584)
Windows XP Targeting with C++ (Version: 11.0.51106)
Windows XP Targeting with C++ (x32 Version: 11.0.51106)
WinRAR 4.20 (64-Bit) (Version: 4.20.0)
Xming 6.9.0.31 (x32 Version: 6.9.0.31)
==================== Restore Points =========================
23-12-2013 11:05:53 Geplanter Prüfpunkt
==================== Hosts content: ==========================
2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask
Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList
Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation)
Task: {3A4C7143-3E10-4409-BD0F-BC64A0D90EF9} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-11-04] (Google Inc.)
Task: {3B38E862-BA9C-487F-9C4E-9F022F10C87A} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2504333501-68428025-1524359791-1001UA => C:\Users\MartinPC\AppData\Local\Google\Update\GoogleUpdate.exe [2012-11-13] (Google Inc.)
Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\System32\tzsync.exe [2013-08-22] (Microsoft Corporation)
Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance
Task: {5C9C2481-0611-4589-B7C7-11ABC0BE4A38} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-11-04] (Google Inc.)
Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup
Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task
Task: {6E467853-537E-41D1-9916-5E755A4668CE} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-10] (Adobe Systems Incorporated)
Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask
Task: {77105341-D177-467C-8377-4EAC017F9798} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2504333501-68428025-1524359791-1001Core => C:\Users\MartinPC\AppData\Local\Google\Update\GoogleUpdate.exe [2012-11-13] (Google Inc.)
Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
Task: {7B410A3B-F2DB-4420-A82C-B733A7090CC6} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\System32\MRT.exe [2013-12-22] (Microsoft Corporation)
Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task
Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work
Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask
Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing
Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization
Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE
Task: {EBF501EC-D66F-439C-B597-352CACED2CC8} - System32\Tasks\MATLAB R2013a Startup Accelerator => C:\Program Files (x86)\MATLAB\R2013a Student\bin\win32\MATLABStartupAccelerator.exe [2013-01-16] ()
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-2504333501-68428025-1524359791-1001Core.job => C:\Users\MartinPC\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-2504333501-68428025-1524359791-1001UA.job => C:\Users\MartinPC\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\MATLAB R2013a Startup Accelerator.job => C:\Program Files (x86)\MATLAB\R2013a Student\bin\win32\MATLABStartupAccelerator.exe
==================== Loaded Modules (whitelisted) =============
2013-09-05 00:17 - 2013-09-05 00:17 - 04300456 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2013-04-21 20:44 - 2013-04-21 20:44 - 00087952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2013-04-21 20:44 - 2013-04-21 20:44 - 01242952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2012-11-04 17:52 - 2012-06-11 16:35 - 00599419 _____ () C:\Program Files (x86)\DVBViewer\sqlite3.dll
2012-12-27 16:24 - 2012-12-27 16:24 - 00025088 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\DbAccess.dll
2012-12-27 16:25 - 2012-12-27 16:25 - 00466856 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\sqlite3.dll
2012-12-27 16:25 - 2012-12-27 16:25 - 00044544 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\NAdvLog.dll
2012-12-27 16:25 - 2012-12-27 16:25 - 00036368 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\NFileCacheDBAccess.dll
2012-12-27 16:25 - 2012-12-27 16:25 - 00080400 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\ninstallerhelper.dll
2012-12-27 16:28 - 2012-12-27 16:28 - 00223744 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\DevConnMon.dll
2013-03-04 16:41 - 2012-09-28 02:10 - 00143360 ____N () C:\Program Files\ASUS Xonar DG Audio\Customapp\VmixP8.dll
2013-12-24 10:52 - 2013-12-24 10:52 - 00098816 _____ () C:\Users\MartinPC\AppData\Local\Temp\_MEI42842\win32api.pyd
2013-12-24 10:52 - 2013-12-24 10:52 - 00110080 _____ () C:\Users\MartinPC\AppData\Local\Temp\_MEI42842\pywintypes27.dll
2013-12-24 10:52 - 2013-12-24 10:52 - 00364544 _____ () C:\Users\MartinPC\AppData\Local\Temp\_MEI42842\pythoncom27.dll
2013-12-24 10:52 - 2013-12-24 10:52 - 00044032 _____ () C:\Users\MartinPC\AppData\Local\Temp\_MEI42842\_socket.pyd
2013-12-24 10:52 - 2013-12-24 10:52 - 01153024 _____ () C:\Users\MartinPC\AppData\Local\Temp\_MEI42842\_ssl.pyd
2013-12-24 10:52 - 2013-12-24 10:52 - 00320512 _____ () C:\Users\MartinPC\AppData\Local\Temp\_MEI42842\win32com.shell.shell.pyd
2013-12-24 10:52 - 2013-12-24 10:52 - 00711680 _____ () C:\Users\MartinPC\AppData\Local\Temp\_MEI42842\_hashlib.pyd
2013-12-24 10:52 - 2013-12-24 10:52 - 01175040 _____ () C:\Users\MartinPC\AppData\Local\Temp\_MEI42842\wx._core_.pyd
2013-12-24 10:52 - 2013-12-24 10:52 - 00805888 _____ () C:\Users\MartinPC\AppData\Local\Temp\_MEI42842\wx._gdi_.pyd
2013-12-24 10:52 - 2013-12-24 10:52 - 00811008 _____ () C:\Users\MartinPC\AppData\Local\Temp\_MEI42842\wx._windows_.pyd
2013-12-24 10:52 - 2013-12-24 10:52 - 01062400 _____ () C:\Users\MartinPC\AppData\Local\Temp\_MEI42842\wx._controls_.pyd
2013-12-24 10:52 - 2013-12-24 10:52 - 00735232 _____ () C:\Users\MartinPC\AppData\Local\Temp\_MEI42842\wx._misc_.pyd
2013-12-24 10:52 - 2013-12-24 10:52 - 00128512 _____ () C:\Users\MartinPC\AppData\Local\Temp\_MEI42842\_elementtree.pyd
2013-12-24 10:52 - 2013-12-24 10:52 - 00127488 _____ () C:\Users\MartinPC\AppData\Local\Temp\_MEI42842\pyexpat.pyd
2013-12-24 10:52 - 2013-12-24 10:52 - 00557056 _____ () C:\Users\MartinPC\AppData\Local\Temp\_MEI42842\pysqlite2._sqlite.pyd
2013-12-24 10:52 - 2013-12-24 10:52 - 00087040 _____ () C:\Users\MartinPC\AppData\Local\Temp\_MEI42842\_ctypes.pyd
2013-12-24 10:52 - 2013-12-24 10:52 - 00119808 _____ () C:\Users\MartinPC\AppData\Local\Temp\_MEI42842\win32file.pyd
2013-12-24 10:52 - 2013-12-24 10:52 - 00108544 _____ () C:\Users\MartinPC\AppData\Local\Temp\_MEI42842\win32security.pyd
2013-12-24 10:52 - 2013-12-24 10:52 - 00018432 _____ () C:\Users\MartinPC\AppData\Local\Temp\_MEI42842\win32event.pyd
2013-12-24 10:52 - 2013-12-24 10:52 - 00038912 _____ () C:\Users\MartinPC\AppData\Local\Temp\_MEI42842\win32inet.pyd
2013-12-24 10:52 - 2013-12-24 10:52 - 00122368 _____ () C:\Users\MartinPC\AppData\Local\Temp\_MEI42842\wx._wizard.pyd
2013-12-24 10:52 - 2013-12-24 10:52 - 00026624 _____ () C:\Users\MartinPC\AppData\Local\Temp\_MEI42842\_multiprocessing.pyd
2013-12-24 10:52 - 2013-12-24 10:52 - 00070656 _____ () C:\Users\MartinPC\AppData\Local\Temp\_MEI42842\wx._html2.pyd
2013-12-24 10:52 - 2013-12-24 10:52 - 00010240 _____ () C:\Users\MartinPC\AppData\Local\Temp\_MEI42842\select.pyd
2013-12-24 10:52 - 2013-12-24 10:52 - 00686080 _____ () C:\Users\MartinPC\AppData\Local\Temp\_MEI42842\unicodedata.pyd
2013-12-24 10:52 - 2013-12-24 10:52 - 00025600 _____ () C:\Users\MartinPC\AppData\Local\Temp\_MEI42842\win32pdh.pyd
2013-12-24 10:52 - 2013-12-24 10:52 - 00521680 _____ () C:\Users\MartinPC\AppData\Local\Temp\_MEI42842\windows._lib_cacheinvalidation.pyd
2013-12-24 10:52 - 2013-12-24 10:52 - 00011264 _____ () C:\Users\MartinPC\AppData\Local\Temp\_MEI42842\win32crypt.pyd
2013-12-24 10:52 - 2013-12-24 10:52 - 00024064 _____ () C:\Users\MartinPC\AppData\Local\Temp\_MEI42842\win32pipe.pyd
2013-12-24 10:52 - 2013-12-24 10:52 - 00035840 _____ () C:\Users\MartinPC\AppData\Local\Temp\_MEI42842\win32process.pyd
2013-12-24 10:52 - 2013-12-24 10:52 - 00017408 _____ () C:\Users\MartinPC\AppData\Local\Temp\_MEI42842\win32profile.pyd
2013-12-24 10:52 - 2013-12-24 10:52 - 00022528 _____ () C:\Users\MartinPC\AppData\Local\Temp\_MEI42842\win32ts.pyd
2013-12-14 10:05 - 2013-12-12 23:19 - 00142848 _____ () C:\Program Files (x86)\Steam\libavresample-1.dll
2013-12-14 10:05 - 2013-11-05 02:12 - 00890592 _____ () C:\Program Files (x86)\Steam\libavutil-52.dll
2013-12-14 10:05 - 2013-12-12 23:04 - 00716800 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2013-12-20 09:46 - 2013-12-19 23:50 - 01138088 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2013-12-14 10:05 - 2013-12-12 23:04 - 20625832 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll
2013-10-26 08:39 - 2013-06-15 00:49 - 01100800 _____ () C:\Program Files (x86)\Steam\bin\avcodec-53.dll
2013-10-26 08:39 - 2013-06-15 00:49 - 00124416 _____ () C:\Program Files (x86)\Steam\bin\avutil-51.dll
2013-10-26 08:39 - 2013-06-15 00:49 - 00192000 _____ () C:\Program Files (x86)\Steam\bin\avformat-53.dll
2013-03-13 21:48 - 2013-03-13 21:48 - 24978944 _____ () C:\Users\MartinPC\AppData\Roaming\Dropbox\bin\libcef.dll
2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files (x86)\Common Files\Microsoft Shared\office14\Cultures\office.odf
2013-02-14 15:46 - 2013-02-14 15:46 - 01044048 _____ () C:\Program Files (x86)\Microsoft Office\Office14\ADDINS\UmOutlookAddin.dll
2013-12-05 20:34 - 2013-12-05 20:34 - 36967424 _____ () C:\Users\MartinPC\AppData\Roaming\Spotify\Data\libcef.dll
2013-12-05 20:34 - 2013-12-05 20:34 - 00887808 _____ () C:\Users\MartinPC\AppData\Roaming\Spotify\Data\libglesv2.dll
2013-12-05 20:34 - 2013-12-05 20:34 - 00109568 _____ () C:\Users\MartinPC\AppData\Roaming\Spotify\Data\libegl.dll
2012-08-17 21:38 - 2012-08-17 21:38 - 00479160 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\dblite.dll
2012-12-06 19:09 - 2012-12-06 19:08 - 01310136 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\kpcengine.2.2.dll
2013-12-19 14:43 - 2013-12-19 14:43 - 03570288 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
==================== Alternate Data Streams (whitelisted) =========
AlternateDataStreams: C:\Users\MartinPC\SkyDrive:ms-properties
==================== Safe Mode (whitelisted) ===================
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
System errors:
=============
Microsoft Office Sessions:
=========================
==================== Memory info ===========================
Percentage of memory in use: 61%
Total physical RAM: 4093.09 MB
Available physical RAM: 1564.12 MB
Total Pagefile: 8189.09 MB
Available Pagefile: 5127.6 MB
Total Virtual: 131072 MB
Available Virtual: 131071.82 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:209.18 GB) (Free:76.29 GB) NTFS
Drive d: (Aufzeichnung) (Fixed) (Total:232.88 GB) (Free:107.08 GB) NTFS
Drive g: (Daten) (Fixed) (Total:931.17 GB) (Free:436.92 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 233 GB) (Disk ID: 000B3683)
Partition 1: (Not Active) - (Size=233 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: E8C1B425)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=931 GB) - (Type=07 NTFS)
========================================================
Disk: 2 (Size: 238 GB) (Disk ID: DD112866)
Partition 1: (Active) - (Size=209 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=29 GB) - (Type=05)
==================== End Of Log ============================ |