hallo Cosinus!
Vielen Dank für die rasche Antwort und die gute Anleitung:
Hier die Logs:
Avira: Code:
Exportierte Ereignisse:
30.01.2014 23:08 [System-Scanner] Malware gefunden
Die Datei 'C:\Users\Mel13\AppData\Local\Microsoft\Windows\Temporary Internet
Files\Low\Content.IE5\5K6K9EF5\install[1].htm'
enthielt einen Virus oder unerwünschtes Programm 'HTML/Framer.EB.16' [virus].
Durchgeführte Aktion(en):
Die Datei wurde ins Quarantäneverzeichnis unter dem Namen '5d8f5f6f.qua'
verschoben!
30.01.2014 22:58 [Echtzeit-Scanner] Malware gefunden
In der Datei 'C:\Users\Mel13\AppData\Local\Microsoft\Windows\Temporary
Internet Files\Low\Content.IE5\5K6K9EF5\install[1].htm'
wurde ein Virus oder unerwünschtes Programm 'HTML/Framer.EB.16' [virus]
gefunden.
Ausgeführte Aktion: Übergeben an Scanner
30.01.2014 22:58 [Echtzeit-Scanner] Malware gefunden
In der Datei 'C:\Users\Mel13\AppData\Local\Microsoft\Windows\Temporary
Internet Files\Low\Content.IE5\5K6K9EF5\install[1].htm'
wurde ein Virus oder unerwünschtes Programm 'HTML/Framer.EB.16' [virus]
gefunden.
Ausgeführte Aktion: Zugriff verweigern Hier das FRST-Log:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 01-02-2014 03
Ran by Mel13 (administrator) on Mel13-PC on 02-02-2014 11:03:15
Running from C:\Users\Mel13\Desktop
Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Corporation) C:\Windows\System32\wisptis.exe
(Microsoft Corporation) C:\Windows\System32\wisptis.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Protexis Inc.) C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
(Secunia) C:\Program Files\Secunia\PSI\psia.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe
(TomTom) C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(CyberLink) C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Hewlett-Packard) C:\Program Files\HP\HP Software Update\hpwuschd2.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Google Inc.) C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
(TomTom) C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe
(Hewlett-Packard Co.) C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.130\SSScheduler.exe
(Secunia) C:\Program Files\Secunia\PSI\psi_tray.exe
(Dropbox, Inc.) C:\Users\Mel13\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\Version8\TeamViewer.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\Version8\tv_w32.exe
(Hewlett-Packard Co.) C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe
(Secunia) C:\Program Files\Secunia\PSI\sua.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Hewlett-Packard Co.) C:\Program Files\HP\Digital Imaging\bin\hpqbam08.exe
(Hewlett-Packard) C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ink\InputPersonalization.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Google Inc.) C:\Program Files\Google\Google Toolbar\GoogleToolbarUser_32.exe
(Hewlett-Packard Co.) C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_clipbook.exe
(Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil32_12_0_0_38_ActiveX.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avcenter.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [CLMLServer] - C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe [103720 2009-06-03] (CyberLink)
HKLM\...\Run: [StartCCC] - C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2010-01-08] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [8120864 2009-12-03] (Realtek Semiconductor)
HKLM\...\Run: [hpqSRMon] - C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe [150528 2008-07-22] (Hewlett-Packard)
HKLM\...\Run: [WinampAgent] - "C:\Program Files\Winamp\winampa.exe"
HKLM\...\Run: [HP Software Update] - C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [49208 2011-05-10] (Hewlett-Packard)
HKLM\...\Run: [avgnt] - C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [684600 2013-12-17] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM\...\Run: [APSDaemon] - C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-01-20] (Apple Inc.)
HKLM\...\Run: [QuickTime Task] - C:\Program Files\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM\...\Run: [iTunesHelper] - C:\Program Files\iTunes\iTunesHelper.exe [152392 2014-01-20] (Apple Inc.)
HKU\S-1-5-21-3901490645-406144103-3339631894-1000\...\Run: [swg] - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2010-03-19] (Google Inc.)
HKU\S-1-5-21-3901490645-406144103-3339631894-1000\...\Run: [Skype] - C:\Program Files\Skype\Phone\Skype.exe [20584608 2013-11-14] (Skype Technologies S.A.)
HKU\S-1-5-21-3901490645-406144103-3339631894-1000\...\Run: [TomTomHOME.exe] - C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe [248208 2013-08-27] (TomTom)
HKU\S-1-5-21-3901490645-406144103-3339631894-1000\...\MountPoints2: {49bcc9b5-1f18-11e0-9c24-1c4bd63fdf8b} - I:\CD_Start.exe
Startup: C:\Users\Mel13\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Mel13\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\Mel13\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk
ShortcutTarget: OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk -> C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.vol.at/
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://dsl-start.computerbild.de/
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.vol.at/
SearchScopes: HKCU - {1B36411C-4EA8-4A24-AAFE-156CC8FFF251} URL = hxxp://websearch.ask.com/custom/java/redirect?client=ie&tb=ORJ&o=100000026&src=kw&q={searchTerms}&locale=&apn_ptnrs=U3&apn_dtid=OSJ000
BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.130\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO: No Name - {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - No Name - {00000000-0000-0000-0000-000000000000} - No File
Toolbar: HKCU - No Name - {71576546-354D-41C9-AAE8-31F2EC22BF0D} - No File
DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} hxxp://download.microsoft.com/download/C/B/F/CBF23A2C-3E55-4664-BC5C-762780D79BA0/OGAControl.cab
DPF: {17492023-C23A-453E-A040-C7C580BBF700} hxxp://download.microsoft.com/download/C/0/C/C0CBBA88-A6F2-48D9-9B0E-1719D1177202/LegitCheckControl.cab
DPF: {1E3F1348-4370-4BBE-A67A-CC7ED824CA85} hxxp://download.microsoft.com/download/7/4/9/749b0dc5-2175-4d5b-a6dd-9c4bc923683e/Selfhelpcontrol.cab
DPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} hxxp://trial.trymicrosoftoffice.com/trialoaa/buymsoffice_assets/framework//microsoft/wrc32.ocx
DPF: {CAFEEFAC-0017-0000-0009-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_09-windows-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll (Microsoft Corporation)
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Winsock: Catalog5 10 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138 10.0.0.138
========================== Services (Whitelisted) =================
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [440376 2013-12-17] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [440376 2013-11-19] (Avira Operations GmbH & Co. KG)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.130\McCHSvc.exe [235216 2013-09-06] (McAfee, Inc.)
R2 Secunia PSI Agent; C:\Program Files\Secunia\PSI\PSIA.exe [1228504 2013-07-03] (Secunia)
R2 Secunia Update Agent; C:\Program Files\Secunia\PSI\sua.exe [660184 2013-07-03] (Secunia)
==================== Drivers (Whitelisted) ====================
R0 amdide; C:\Windows\System32\DRIVERS\amdide.sys [11832 2009-07-07] (Advanced Micro Devices Inc.)
R3 amdkmdag; C:\Windows\System32\DRIVERS\atipmdag.sys [5191168 2010-01-09] (ATI Technologies Inc.)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [90400 2013-12-17] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [135648 2013-12-17] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-10-01] (Avira Operations GmbH & Co. KG)
R3 PSI; C:\Windows\System32\DRIVERS\psi_mf_x86.sys [16024 2013-07-03] (Secunia)
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2013-02-23] (Avira GmbH)
S3 uxddrv; \??\I:\DIAGNOSE\WSTGER32\2PART\uxddrv86.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-02-02 11:03 - 2014-02-02 11:03 - 00011661 _____ () C:\Users\Mel13\Desktop\FRST.txt
2014-02-02 11:02 - 2014-02-02 11:03 - 00000000 ____D () C:\FRST
2014-02-02 11:02 - 2014-02-02 11:02 - 01137152 _____ (Farbar) C:\Users\Mel13\Desktop\FRST.exe
2014-02-01 20:05 - 2014-02-01 20:05 - 00001757 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-02-01 20:03 - 2014-02-01 20:05 - 00000000 ____D () C:\ProgramData\188F1432-103A-4ffb-80F1-36B633C5C9E1
2014-02-01 20:03 - 2014-02-01 20:05 - 00000000 ____D () C:\Program Files\iTunes
2014-02-01 20:03 - 2014-02-01 20:03 - 00000000 ____D () C:\Program Files\iPod
2014-02-01 20:02 - 2014-02-01 20:02 - 00000000 ____D () C:\Program Files\Apple Software Update
2014-02-01 20:00 - 2014-02-01 20:00 - 00000000 ____D () C:\Program Files\Bonjour
2014-02-01 19:59 - 2014-02-01 20:03 - 00000000 ____D () C:\Program Files\Common Files\Apple
2014-01-30 23:11 - 2014-02-02 10:26 - 00000000 ___RD () C:\Users\Mel13\Dropbox
2014-01-30 23:11 - 2014-01-30 23:11 - 00001045 _____ () C:\Users\Mel13\Desktop\Dropbox.lnk
2014-01-30 23:08 - 2014-01-30 23:11 - 00000000 ____D () C:\Users\Mel13\AppData\Roaming\DropboxMaster
2014-01-30 23:08 - 2014-01-30 23:08 - 00000000 ____D () C:\Users\Mel13\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2014-01-30 23:04 - 2014-02-02 10:27 - 00000000 ____D () C:\Users\Mel13\AppData\Roaming\Dropbox
2014-01-20 23:02 - 2014-01-20 23:02 - 00000000 ____D () C:\Program Files\Auran
2014-01-15 17:58 - 2013-11-27 02:14 - 00258560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2014-01-15 17:58 - 2013-11-27 02:13 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2014-01-15 17:58 - 2013-11-27 02:13 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2014-01-15 17:58 - 2013-11-27 02:13 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2014-01-15 17:58 - 2013-11-27 02:13 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2014-01-15 17:58 - 2013-11-27 02:13 - 00006016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2014-01-15 17:58 - 2013-11-26 12:11 - 00240576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2014-01-15 17:58 - 2013-11-26 11:10 - 02349056 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
==================== One Month Modified Files and Folders =======
2014-02-02 11:03 - 2014-02-02 11:03 - 00011661 _____ () C:\Users\Mel13\Desktop\FRST.txt
2014-02-02 11:03 - 2014-02-02 11:02 - 00000000 ____D () C:\FRST
2014-02-02 11:02 - 2014-02-02 11:02 - 01137152 _____ (Farbar) C:\Users\Mel13\Desktop\FRST.exe
2014-02-02 10:58 - 2010-03-19 19:35 - 00001098 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-02-02 10:47 - 2013-08-08 15:48 - 00000000 ____D () C:\Users\Mel13\AppData\Roaming\Skype
2014-02-02 10:33 - 2009-07-14 05:34 - 00010096 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-02-02 10:33 - 2009-07-14 05:34 - 00010096 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-02-02 10:29 - 2010-03-18 21:53 - 02016862 _____ () C:\Windows\WindowsUpdate.log
2014-02-02 10:27 - 2014-01-30 23:04 - 00000000 ____D () C:\Users\Mel13\AppData\Roaming\Dropbox
2014-02-02 10:26 - 2014-01-30 23:11 - 00000000 ___RD () C:\Users\Mel13\Dropbox
2014-02-02 10:24 - 2012-07-12 08:47 - 00039834 _____ () C:\Windows\setupact.log
2014-02-02 10:24 - 2010-03-19 19:35 - 00001094 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-02-02 10:24 - 2009-07-14 05:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-02-02 00:05 - 2013-01-06 20:17 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-02-01 20:57 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\NDF
2014-02-01 20:05 - 2014-02-01 20:05 - 00001757 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-02-01 20:05 - 2014-02-01 20:03 - 00000000 ____D () C:\ProgramData\188F1432-103A-4ffb-80F1-36B633C5C9E1
2014-02-01 20:05 - 2014-02-01 20:03 - 00000000 ____D () C:\Program Files\iTunes
2014-02-01 20:03 - 2014-02-01 20:03 - 00000000 ____D () C:\Program Files\iPod
2014-02-01 20:03 - 2014-02-01 19:59 - 00000000 ____D () C:\Program Files\Common Files\Apple
2014-02-01 20:02 - 2014-02-01 20:02 - 00000000 ____D () C:\Program Files\Apple Software Update
2014-02-01 20:00 - 2014-02-01 20:00 - 00000000 ____D () C:\Program Files\Bonjour
2014-02-01 19:59 - 2011-02-18 12:59 - 00000000 ____D () C:\ProgramData\Apple
2014-01-30 23:11 - 2014-01-30 23:11 - 00001045 _____ () C:\Users\Mel13\Desktop\Dropbox.lnk
2014-01-30 23:11 - 2014-01-30 23:08 - 00000000 ____D () C:\Users\Mel13\AppData\Roaming\DropboxMaster
2014-01-30 23:11 - 2010-03-18 21:54 - 00000000 ____D () C:\Users\Mel13
2014-01-30 23:08 - 2014-01-30 23:08 - 00000000 ____D () C:\Users\Mel13\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2014-01-20 23:02 - 2014-01-20 23:02 - 00000000 ____D () C:\Program Files\Auran
2014-01-20 22:51 - 2012-07-12 08:43 - 00029936 _____ () C:\Windows\PFRO.log
2014-01-20 16:59 - 2013-01-06 20:17 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-01-20 16:59 - 2011-07-19 12:31 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-01-16 11:04 - 2009-07-14 05:33 - 00435800 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-01-15 23:27 - 2010-01-28 14:03 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-01-15 23:26 - 2013-08-14 22:25 - 00000000 ____D () C:\Windows\system32\MRT
2014-01-15 23:26 - 2009-07-14 03:04 - 00000534 _____ () C:\Windows\win.ini
2014-01-15 23:24 - 2010-01-26 15:42 - 83425928 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
Some content of TEMP:
====================
C:\Users\Mel13\AppData\Local\Temp\APNStub.exe
C:\Users\Mel13\AppData\Local\Temp\avgnt.exe
C:\Users\Mel13\AppData\Local\Temp\contentDATs.exe
C:\Users\Mel13\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp9znhmk.dll
C:\Users\Mel13\AppData\Local\Temp\install_flashplayer11x32ax_gtbp_mssa_aih.exe
C:\Users\Mel13\AppData\Local\Temp\jre-1.6.0_20-windows-i586-iftw.exe_90744722.exe
C:\Users\Mel13\AppData\Local\Temp\jre-6u20-windows-i586-jinstall_uac.exe
C:\Users\Mel13\AppData\Local\Temp\jre-6u24-windows-i586-iftw-rv.exe
C:\Users\Mel13\AppData\Local\Temp\jre-6u31-windows-i586-iftw-rv.exe
C:\Users\Mel13\AppData\Local\Temp\jre-7u7-windows-i586-iftw.exe
C:\Users\Mel13\AppData\Local\Temp\jre-7u9-windows-i586-iftw.exe
C:\Users\Mel13\AppData\Local\Temp\Myashampoo.exe
C:\Users\Mel13\AppData\Local\Temp\NEW13CF.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\NEW181E.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\NEW20BC.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\NEW2261.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\NEW26E6.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\NEW4980.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\NEW4BAD.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\NEW4F77.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\NEW5831.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\NEW5A95.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\NEW5DC4.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\NEW5E95.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\NEW6108.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\NEW6238.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\NEW6EFA.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\NEW799E.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\NEW8429.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\NEW8C95.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\NEW93CA.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\NEW996D.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\NEW9A62.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\NEWAFF2.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\NEWB646.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\NEWBBC9.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\NEWC0FE.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\NEWC319.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\NEWCC47.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\NEWDAD5.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\NEWE0D.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\NEWE965.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\NEWEDDA.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\NEWF152.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\NEWF541.tmp.exe
C:\Users\Mel13\AppData\Local\Temp\nsdD9BC.tmp.ConduitEngineEmbbed.exe
C:\Users\Mel13\AppData\Local\Temp\Quarantine.exe
C:\Users\Mel13\AppData\Local\Temp\SearchWithGoogleUpdate.exe
C:\Users\Mel13\AppData\Local\Temp\SecurityScan_Release.exe
C:\Users\Mel13\AppData\Local\Temp\setup.exe
C:\Users\Mel13\AppData\Local\Temp\tbMyA0.dll
C:\Users\Mel13\AppData\Local\Temp\unwise.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\system32\winlogon.exe => MD5 is legit
C:\Windows\system32\wininit.exe => MD5 is legit
C:\Windows\system32\svchost.exe => MD5 is legit
C:\Windows\system32\services.exe => MD5 is legit
C:\Windows\system32\User32.dll => MD5 is legit
C:\Windows\system32\userinit.exe => MD5 is legit
C:\Windows\system32\rpcss.dll => MD5 is legit
C:\Windows\system32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-01-29 21:19
==================== End Of Log ============================ --- --- ---
Und das Addition-File: Code:
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 01-02-2014 03
Ran by Mel13 at 2014-02-02 11:03:41
Running from C:\Users\Mel13\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Avira Desktop (Enabled - Up to date) {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
AS: Avira Desktop (Enabled - Up to date) {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
Update for Microsoft Office 2007 (KB2508958) (Version: - Microsoft)
32 Bit HP CIO Components Installer (Version: 7.1.8 - Hewlett-Packard) Hidden
Adobe Flash Player 12 ActiveX (Version: 12.0.0.38 - Adobe Systems Incorporated)
Adobe Flash Player 12 Plugin (Version: 12.0.0.43 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.05) - Deutsch (Version: 11.0.05 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.0 (Version: 12.0.7.148 - Adobe Systems, Inc.)
AMD USB Filter Driver (Version: 1.0.13.88 - Advanced Micro Devices, Inc.) Hidden
Apple Application Support (Version: 3.0 - Apple Inc.)
Apple Software Update (Version: 2.1.3.127 - Apple Inc.)
Ashampoo Burning Studio 6 FREE v.6.80 (Version: 6.8.0 - ashampoo GmbH & Co. KG)
ATI Catalyst Install Manager (Version: 3.0.758.0 - ATI Technologies, Inc.)
Avira Free Antivirus (Version: 14.0.2.286 - Avira)
Bonjour (Version: 3.0.0.10 - Apple Inc.)
BufferChm (Version: 130.0.331.000 - Hewlett-Packard) Hidden
C5300 (Version: 130.0.365.000 - Hewlett-Packard) Hidden
Catalyst Control Center Core Implementation (Version: 2010.0108.1837.33337 - ATI) Hidden
Catalyst Control Center Graphics Full Existing (Version: 2010.0108.1837.33337 - ATI) Hidden
Catalyst Control Center Graphics Full New (Version: 2010.0108.1837.33337 - ATI) Hidden
Catalyst Control Center Graphics Light (Version: 2010.0108.1837.33337 - ATI) Hidden
Catalyst Control Center Graphics Previews Vista (Version: 2010.0108.1837.33337 - ATI) Hidden
Catalyst Control Center InstallProxy (Version: 2010.0108.1837.33337 - ATI Technologies, Inc.) Hidden
Catalyst Control Center Localization All (Version: 2010.0108.1837.33337 - ATI) Hidden
CCC Help Danish (Version: 2010.0108.1836.33337 - ATI) Hidden
CCC Help Dutch (Version: 2010.0108.1836.33337 - ATI) Hidden
CCC Help English (Version: 2010.0108.1836.33337 - ATI) Hidden
CCC Help Finnish (Version: 2010.0108.1836.33337 - ATI) Hidden
CCC Help French (Version: 2010.0108.1836.33337 - ATI) Hidden
CCC Help German (Version: 2010.0108.1836.33337 - ATI) Hidden
CCC Help Italian (Version: 2010.0108.1836.33337 - ATI) Hidden
CCC Help Japanese (Version: 2010.0108.1836.33337 - ATI) Hidden
CCC Help Norwegian (Version: 2010.0108.1836.33337 - ATI) Hidden
CCC Help Spanish (Version: 2010.0108.1836.33337 - ATI) Hidden
CCC Help Swedish (Version: 2010.0108.1836.33337 - ATI) Hidden
ccc-core-static (Version: 2010.0108.1837.33337 - Ihr Firmenname) Hidden
ccc-utility (Version: 2010.0108.1837.33337 - ATI) Hidden
Compatibility Pack für 2007 Office System (Version: 12.0.6612.1000 - Microsoft Corporation)
CorelDRAW Essentials 4 - Content (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Draw (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Extra Content (Version: - Corel Corporation)
CorelDRAW Essentials 4 - Extra Content (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Filters (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - ICA (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - IPM - No VBA (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Lang BR (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Lang DE (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Lang EN (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Lang ES (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Lang FR (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Lang IT (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Lang NL (Version: 4.0 - Uw bedrijfsnaam) Hidden
CorelDRAW Essentials 4 - PHOTO-PAINT (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 (Version: - Corel Corporation)
CorelDRAW Essentials 4 (Version: 4.0 - Corel Corporation) Hidden
CyberLink LabelPrint (Version: 2.5.1916 - CyberLink Corp.)
CyberLink LabelPrint (Version: 2.5.1916 - CyberLink Corp.) Hidden
CyberLink Power2Go (Version: 6.1.3213 - CyberLink Corp.)
CyberLink Power2Go (Version: 6.1.3213 - CyberLink Corp.) Hidden
CyberLink PowerDVD Copy (Version: 1.0.6720 - CyberLink Corp.)
Destinations (Version: 130.0.0.0 - Hewlett-Packard) Hidden
DeviceDiscovery (Version: 130.0.465.000 - Hewlett-Packard) Hidden
Direkt Foto System 3.x (Version: - )
Dropbox (HKCU Version: 2.6.2 - Dropbox, Inc.)
Google Toolbar for Internet Explorer (Version: 1.0.0 - Google Inc.) Hidden
Google Toolbar for Internet Explorer (Version: 7.5.4805.320 - Google Inc.)
Google Update Helper (Version: 1.3.22.3 - Google Inc.) Hidden
GPBaseService2 (Version: 130.0.371.000 - Hewlett-Packard) Hidden
HappyFoto-Designer (Version: - )
HP Customer Participation Program 13.0 (Version: 13.0 - HP)
HP Imaging Device Functions 13.0 (Version: 13.0 - HP)
HP Photosmart C5300 All-In-One Driver Software 13.0 Rel. 4 (Version: 13.0 - HP)
HP Photosmart Essential 3.5 (Version: 3.5 - HP)
HP Smart Web Printing 4.51 (Version: 4.51 - HP)
HP Solution Center 13.0 (Version: 13.0 - HP)
HP Update (Version: 5.003.001.001 - Hewlett-Packard)
HPPhotoGadget (Version: 130.0.282.000 - Hewlett-Packard) Hidden
HPPhotoSmartDiscLabel_PaperLabel (Version: 2.04.0000 - Hewlett-Packard) Hidden
HPPhotoSmartDiscLabel_PrintOnDisc (Version: 2.04.0000 - Hewlett-Packard) Hidden
HPPhotoSmartDiscLabelContent1 (Version: 2.04.0000 - Hewlett-Packard) Hidden
hpphotosmartdisclabelplugin (Version: 2.04.0000 - Hewlett-Packard) Hidden
HPPhotosmartEssential (Version: 2.04.0000 - Hewlett-Packard) Hidden
HPProductAssistant (Version: 130.0.371.000 - Hewlett-Packard) Hidden
HPSSupply (Version: 130.0.371.000 - Hewlett-Packard) Hidden
iTunes (Version: 11.1.4.62 - Apple Inc.)
Junk Mail filter update (Version: 14.0.8089.726 - Microsoft Corporation) Hidden
Licensing Service Install (Version: 2.0.1.181 - Protexis Inc.)
Malwarebytes Anti-Malware Version 1.75.0.1300 (Version: 1.75.0.1300 - Malwarebytes Corporation)
MarketResearch (Version: 130.0.374.000 - Hewlett-Packard) Hidden
McAfee Security Scan Plus (Version: 3.8.130.10 - McAfee, Inc.)
MEDION Fotos auf CD & DVD SE Hofer (Version: 8.0.3.4 - MAGIX AG)
Microsoft .NET Framework 1.1 (Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6012.5000 - Microsoft Corporation) Hidden
Microsoft Choice Guard (Version: 2.0.48.0 - Microsoft Corporation) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (Version: - Microsoft) Hidden
Microsoft Office Excel MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office File Validation Add-In (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Home and Student 2007 (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Home and Student 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Live Add-in 1.5 (Version: 2.0.4024.1 - Microsoft Corporation)
Microsoft Office OneNote MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint Viewer 2007 (German) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Professional Edition 2003 (Version: 11.0.8173.0 - Microsoft Corporation)
Microsoft Office Proof (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Italian) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (German) 2007 (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (Version: - Microsoft) Hidden
Microsoft Office Shared MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Suite Activation Assistant (Version: 2.9 - Microsoft Corporation)
Microsoft Office Word MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Silverlight (Version: 5.1.20913.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [DEU] (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Sync Framework Runtime Native v1.0 (x86) (Version: 1.0.1215.0 - Microsoft Corporation)
Microsoft Sync Framework Services Native v1.0 (x86) (Version: 1.0.1215.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Works (Version: 9.7.0621 - Microsoft Corporation)
MSVCRT (Version: 14.0.1468.721 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (Version: 4.30.2117.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (Version: 4.30.2100.0 - Microsoft Corporation)
OGA Notifier 2.0.0048.0 (Version: 2.0.0048.0 - Microsoft Corporation) Hidden
PS_AIO_04_C5300_Software_Min (Version: 130.0.365.000 - Hewlett-Packard) Hidden
QuickTime (Version: 7.74.80.86 - Apple Inc.)
Realtek High Definition Audio Driver (Version: 6.0.1.5995 - Realtek Semiconductor Corp.)
Scan (Version: 13.0.0.0 - Hewlett-Packard) Hidden
Secunia PSI (3.0.0.7011) (Version: 3.0.0.7011 - Secunia)
Shop for HP Supplies (Version: 13.0 - HP)
Skype™ 6.11 (Version: 6.11.102 - Skype Technologies S.A.)
SmartWebPrinting (Version: 130.0.457.000 - Hewlett-Packard) Hidden
SolutionCenter (Version: 130.0.373.000 - Hewlett-Packard) Hidden
Spelling Dictionaries Support For Adobe Reader 9 (Version: 9.0.0 - Adobe Systems Incorporated)
Status (Version: 130.0.469.000 - Hewlett-Packard) Hidden
swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
TeamViewer 8 (Version: 8.0.22298 - TeamViewer)
TomTom HOME (Version: 2.9.7 - Ihr Firmenname)
TomTom HOME Visual Studio Merge Modules (Version: 1.0.2 - TomTom International B.V.)
Toolbox (Version: 130.0.648.000 - Hewlett-Packard) Hidden
TrayApp (Version: 130.0.422.000 - Hewlett-Packard) Hidden
UnloadSupport (Version: 11.0.0 - Hewlett-Packard) Hidden
Update for 2007 Microsoft Office System (KB967642) (Version: - Microsoft)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (Version: 3 - Microsoft Corporation)
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (Version: - Microsoft)
Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition (Version: - Microsoft)
Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (Version: - Microsoft)
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (Version: - Microsoft)
Update für Microsoft Office Excel 2007 Help (KB963678) (Version: - Microsoft)
Update für Microsoft Office Powerpoint 2007 Help (KB963669) (Version: - Microsoft)
Update für Microsoft Office Word 2007 Help (KB963665) (Version: - Microsoft)
WebReg (Version: 130.0.132.017 - Hewlett-Packard) Hidden
Winamp Erkennungs-Plug-in (HKCU Version: 1.0.0.1 - Nullsoft, Inc)
Windows 7 Codec Pack 2.7.0 (Version: - Windows 7 Codec Pack)
Windows Live Call (Version: 14.0.8064.0206 - Microsoft Corporation) Hidden
Windows Live Communications Platform (Version: 14.0.8064.206 - Microsoft Corporation) Hidden
Windows Live Essentials (Version: 14.0.8089.0726 - Microsoft Corporation)
Windows Live Essentials (Version: 14.0.8089.726 - Microsoft Corporation) Hidden
Windows Live Fotogalerie (Version: 14.0.8081.709 - Microsoft Corporation) Hidden
Windows Live ID-Anmelde-Assistent (Version: 6.500.3146.0 - Microsoft Corporation)
Windows Live Mail (Version: 14.0.8089.0726 - Microsoft Corporation) Hidden
Windows Live Messenger (Version: 14.0.8089.0726 - Microsoft Corporation) Hidden
Windows Live Movie Maker (Version: 14.0.8091.0730 - Microsoft Corporation) Hidden
Windows Live Sync (Version: 14.0.8089.726 - Microsoft Corporation)
Windows Live Writer (Version: 14.0.8089.0726 - Microsoft Corporation) Hidden
Windows Live-Uploadtool (Version: 14.0.8014.1029 - Microsoft Corporation)
==================== Restore Points =========================
28-01-2014 18:56:57 Geplanter Prüfpunkt
30-01-2014 21:52:51 Removed iTunes
01-02-2014 17:30:23 Installed iTunes
01-02-2014 17:50:47 Installed iTunes
01-02-2014 18:20:53 Removed Apple Software Update
01-02-2014 18:24:54 Removed Apple Mobile Device Support
01-02-2014 18:26:53 Removed Bonjour
01-02-2014 18:28:04 Removed Apple Application Support
01-02-2014 19:02:16 Installed iTunes
==================== Hosts content: ==========================
2009-07-14 03:04 - 2009-06-10 22:39 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {04420BF0-1CDB-4801-AA26-077DFFFC6E4D} - System32\Tasks\{6299A3AA-A4C0-413A-9150-630FAEFD9843} => C:\Program Files\BlueSky Interactive\PTP\PTP.exe
Task: {1CEC82F3-5154-4F0D-AD7F-E5655E01B5A5} - System32\Tasks\{1094DBBF-15C9-46FC-B660-A65862CA6CB7} => C:\Program Files\BlueSky Interactive\PTP\PTP.exe
Task: {37EA2B94-2B8C-46D7-B048-72F7F4A48596} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-01-20] (Adobe Systems Incorporated)
Task: {6273EA5E-8A7F-437C-BF0B-73161031D65B} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {90148C18-6A6B-4AE6-A265-5FEEC60A27A0} - System32\Tasks\{A77E4681-96EB-4F27-8FD9-29AF7732C5A9} => C:\Program Files\BlueSky Interactive\PTP\PTP.exe
Task: {C441CA23-63F3-4062-93FC-BD5F046D205A} - System32\Tasks\Microsoft\Windows\TabletPC\InputPersonalization => C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe [2009-07-14] (Microsoft Corporation)
Task: {D54BFFB3-AC0D-4E79-8CDE-1E8876C36DF4} - System32\Tasks\{84488BBA-FD19-477B-B59B-6BF77CD6F950} => C:\Program Files\BlueSky Interactive\PTP\PTP.exe
Task: {E6CC6F5B-5F90-4AFF-8A90-3B72F768F89D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2010-03-19] (Google Inc.)
Task: {E8127AD9-EFE3-4B23-AB7A-CAB12ADE594B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2010-03-19] (Google Inc.)
Task: {EADF5C64-41D2-4679-A881-BFC572CA17B8} - System32\Tasks\{606F8433-28CA-4069-BCA2-094F3B6B0658} => C:\Program Files\BlueSky Interactive\PTP\PTP.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2009-06-03 20:59 - 2009-06-03 20:59 - 00619816 ____N () C:\Program Files\CyberLink\Power2Go\CLMediaLibrary.dll
2009-06-03 20:59 - 2009-06-03 20:59 - 00013096 ____N () C:\Program Files\CyberLink\Power2Go\CLMLSvcPS.dll
2014-02-02 10:25 - 2014-02-02 10:25 - 00041984 _____ () c:\users\Mel13\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp9znhmk.dll
2013-10-19 00:55 - 2013-10-19 00:55 - 25100288 _____ () C:\Users\Mel13\AppData\Roaming\Dropbox\bin\libcef.dll
2010-02-02 10:33 - 2010-02-02 10:33 - 00270336 _____ () C:\Windows\assembly\GAC_MSIL\CLI.Aspect.CrossDisplay.Graphics.Dashboard\1.0.0.0__90ba9c70f846762e\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll
2013-02-23 18:49 - 2013-02-23 18:44 - 00397704 _____ () C:\program files\avira\antivir desktop\sqlite3.dll
==================== Alternate Data Streams (whitelisted) =========
AlternateDataStreams: C:\Users\Mel13\Documents\Brief.eml:OECustomProperty
AlternateDataStreams: C:\Users\Mel13\Documents\Re_ Beerdigung von Frau Angelika Vögel.eml:OECustomProperty
AlternateDataStreams: C:\Users\Mel13\Documents\Willkommen beim Avira Kundenkonto.eml:OECustomProperty
==================== Safe Mode (whitelisted) ===================
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BsScanner => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\BsScanner => ""="Service"
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (02/01/2014 08:01:41 PM) (Source: MsiInstaller) (User: Mel13-PC)
Description: Product: Apple Mobile Device Support -- Error 1923. Service 'Apple Mobile Device' (Apple Mobile Device) could not be installed. Verify that you have sufficient privileges to install system services.
Error: (02/01/2014 08:01:41 PM) (Source: MsiInstaller) (User: Mel13-PC)
Description: Produkt: iTunes -- Service 'Apple Mobile Device' (Apple Mobile Device) could not be installed. Verify that you have sufficient privileges to install system services.
Error: (02/01/2014 07:14:09 PM) (Source: MsiInstaller) (User: Mel13-PC)
Description: Produkt: iTunes -- Fehler 1920. Dienst "Apple Mobile Device" (Apple Mobile Device) konnte nicht gestartet werden. Überprüfen Sie, ob Sie ausreichende Berechtigungen zum Starten von Systemdiensten besitzen.
Error: (02/01/2014 07:10:59 PM) (Source: MsiInstaller) (User: Mel13-PC)
Description: Produkt: iTunes -- Fehler 1920. Dienst "Apple Mobile Device" (Apple Mobile Device) konnte nicht gestartet werden. Überprüfen Sie, ob Sie ausreichende Berechtigungen zum Starten von Systemdiensten besitzen.
Error: (02/01/2014 06:56:33 PM) (Source: MsiInstaller) (User: Mel13-PC)
Description: Produkt: iTunes -- Fehler 1920. Dienst "Apple Mobile Device" (Apple Mobile Device) konnte nicht gestartet werden. Überprüfen Sie, ob Sie ausreichende Berechtigungen zum Starten von Systemdiensten besitzen.
Error: (02/01/2014 02:38:00 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "assemblyIdentity1". Fehler in Manifest- oder Richtliniendatei "assemblyIdentity2" in Zeile assemblyIdentity3.
Der Wert "*" des "language"-Attributs im assemblyIdentity-Element ist ungültig.
Error: (01/31/2014 08:46:30 PM) (Source: MsiInstaller) (User: NT-AUTORITÄT)
Description: Produkt: Adobe Reader XI (11.0.06) - Deutsch - Update "Adobe Reader XI (11.0.05)" konnte nicht installiert werden. Fehlercode 1638. Windows Installer kann Protokolle erstellen, um bei der Problembehandlung betreffend der Installation von Softwarepaketen behilflich zu sein. Verwenden Sie folgenden Link, um Anweisungen zur Aktivierung der Protokollierungsunterstützung zu erhalten: hxxp://go.microsoft.com/fwlink/?LinkId=23127
Error: (01/31/2014 08:46:30 PM) (Source: MsiInstaller) (User: NT-AUTORITÄT)
Description: Produkt: Adobe Reader XI (11.0.06) - Deutsch - Update "Adobe Reader XI (11.0.03)" konnte nicht installiert werden. Fehlercode 1638. Windows Installer kann Protokolle erstellen, um bei der Problembehandlung betreffend der Installation von Softwarepaketen behilflich zu sein. Verwenden Sie folgenden Link, um Anweisungen zur Aktivierung der Protokollierungsunterstützung zu erhalten: hxxp://go.microsoft.com/fwlink/?LinkId=23127
Error: (01/31/2014 08:46:30 PM) (Source: MsiInstaller) (User: NT-AUTORITÄT)
Description: Produkt: Adobe Reader XI (11.0.06) - Deutsch - Update "Adobe Reader XI (11.0.04)" konnte nicht installiert werden. Fehlercode 1638. Windows Installer kann Protokolle erstellen, um bei der Problembehandlung betreffend der Installation von Softwarepaketen behilflich zu sein. Verwenden Sie folgenden Link, um Anweisungen zur Aktivierung der Protokollierungsunterstützung zu erhalten: hxxp://go.microsoft.com/fwlink/?LinkId=23127
Error: (01/31/2014 08:46:30 PM) (Source: MsiInstaller) (User: NT-AUTORITÄT)
Description: Produkt: Adobe Reader XI (11.0.06) - Deutsch - Update "Adobe Reader XI (11.0.01)" konnte nicht installiert werden. Fehlercode 1638. Windows Installer kann Protokolle erstellen, um bei der Problembehandlung betreffend der Installation von Softwarepaketen behilflich zu sein. Verwenden Sie folgenden Link, um Anweisungen zur Aktivierung der Protokollierungsunterstützung zu erhalten: hxxp://go.microsoft.com/fwlink/?LinkId=23127
System errors:
=============
Error: (02/02/2014 11:02:44 AM) (Source: NetBT) (User: )
Description: Der Name "WORKGROUP :1d" konnte nicht auf der Schnittstelle mit IP-Adresse 10.0.0.8
registriert werden. Der Computer mit IP-Adresse 10.0.0.7 hat nicht
zugelassen, dass dieser Computer diesen Namen verwendet.
Error: (02/02/2014 10:59:01 AM) (Source: NetBT) (User: )
Description: Der Name "WORKGROUP :1d" konnte nicht auf der Schnittstelle mit IP-Adresse 10.0.0.8
registriert werden. Der Computer mit IP-Adresse 10.0.0.7 hat nicht
zugelassen, dass dieser Computer diesen Namen verwendet.
Error: (02/02/2014 10:58:10 AM) (Source: NetBT) (User: )
Description: Der Name "WORKGROUP :1d" konnte nicht auf der Schnittstelle mit IP-Adresse 10.0.0.8
registriert werden. Der Computer mit IP-Adresse 10.0.0.7 hat nicht
zugelassen, dass dieser Computer diesen Namen verwendet.
Error: (02/02/2014 10:26:50 AM) (Source: NetBT) (User: )
Description: Ein doppelter Name wurde im TCP-Netzwerk entdeckt. Die IP-Adresse des Computers,
der die Meldung gesendet hat, steht in den Daten. Verwenden Sie NBTSTAT -n an
der Eingabeaufforderung, um den doppelten Namen zu bestimmen.
Error: (02/02/2014 10:26:50 AM) (Source: NetBT) (User: )
Description: Ein doppelter Name wurde im TCP-Netzwerk entdeckt. Die IP-Adresse des Computers,
der die Meldung gesendet hat, steht in den Daten. Verwenden Sie NBTSTAT -n an
der Eingabeaufforderung, um den doppelten Namen zu bestimmen.
Error: (02/02/2014 10:26:50 AM) (Source: NetBT) (User: )
Description: Ein doppelter Name wurde im TCP-Netzwerk entdeckt. Die IP-Adresse des Computers,
der die Meldung gesendet hat, steht in den Daten. Verwenden Sie NBTSTAT -n an
der Eingabeaufforderung, um den doppelten Namen zu bestimmen.
Error: (02/02/2014 10:26:50 AM) (Source: NetBT) (User: )
Description: Ein doppelter Name wurde im TCP-Netzwerk entdeckt. Die IP-Adresse des Computers,
der die Meldung gesendet hat, steht in den Daten. Verwenden Sie NBTSTAT -n an
der Eingabeaufforderung, um den doppelten Namen zu bestimmen.
Error: (02/02/2014 10:25:18 AM) (Source: NetBT) (User: )
Description: Der Name "Mel13-PC :20" konnte nicht auf der Schnittstelle mit IP-Adresse 10.0.0.8
registriert werden. Der Computer mit IP-Adresse 10.0.0.7 hat nicht
zugelassen, dass dieser Computer diesen Namen verwendet.
Error: (02/02/2014 10:25:18 AM) (Source: NetBT) (User: )
Description: Der Name "Mel13-PC :0" konnte nicht auf der Schnittstelle mit IP-Adresse 10.0.0.8
registriert werden. Der Computer mit IP-Adresse 10.0.0.7 hat nicht
zugelassen, dass dieser Computer diesen Namen verwendet.
Error: (02/02/2014 10:25:18 AM) (Source: Server) (User: )
Description: Aufgrund eines doppelten Netzwerknamens konnte zu der Transportschicht \Device\NetBT_Tcpip_{5AEF7DDD-F616-4994-9D6F-12CA27FD53DE} vom Serverdienst nicht gebunden werden. Der Serverdienst konnte nicht gestartet werden.
Microsoft Office Sessions:
=========================
==================== Memory info ===========================
Percentage of memory in use: 39%
Total physical RAM: 3326.3 MB
Available physical RAM: 2006.39 MB
Total Pagefile: 6650.9 MB
Available Pagefile: 4747.37 MB
Total Virtual: 2047.88 MB
Available Virtual: 1895.55 MB
==================== Drives ================================
Drive c: (Boot) (Fixed) (Total:1376.16 GB) (Free:1321.92 GB) NTFS
Drive d: (Recover) (Fixed) (Total:20 GB) (Free:11.59 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 1397 GB) (Disk ID: 97BE5B6A)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=-721379393536) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=20 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=1 GB) - (Type=12)
==================== End Of Log ============================ :dankeschoen: |