Hallo
Vielen Dank für die schnelle Antwort.
Habe jetzt das LOG-File mit Farbar's Recovery Scan Tool (FRST) erstellt
Füge die Logs jetzt ein.
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 24-04-2014
Ran by Garage Purtscheller (administrator) on PC01 on 24-04-2014 10:46:54
Running from C:\Dokumente und Einstellungen\Garage Purtscheller\Desktop\Farbar's recovery scan
Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: German Standard
Internet Explorer Version 8
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(Microsoft Corporation) C:\WINDOWS\system32\savedump.exe
(ESET) C:\Programme\ESET\ESET NOD32 Antivirus\egui.exe
() C:\Programme\Unlocker\UnlockerAssistant.exe
(Hewlett-Packard) C:\Programme\Hewlett-Packard\Toolbox\StatusClient\StatusClient.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.EXE
(BitTorrent Inc.) C:\Dokumente und Einstellungen\Garage Purtscheller\Anwendungsdaten\uTorrent\uTorrent.exe
() C:\Programme\Hewlett-Packard\Toolbox\jre\bin\javaw.exe
(Apple Inc.) C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(ESET) C:\Programme\ESET\ESET NOD32 Antivirus\ekrn.exe
(MAGIX AG) C:\Programme\Gemeinsame Dateien\MAGIX Services\Database\bin\FABS.exe
(Oracle Corporation) C:\Programme\Java\jre7\bin\jqs.exe
(NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe
(TeamViewer GmbH) C:\Programme\TeamViewer\Version8\TeamViewer_Service.exe
(Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
(TeamViewer GmbH) C:\Programme\TeamViewer\Version8\TeamViewer.exe
(TeamViewer GmbH) C:\Programme\TeamViewer\Version8\tv_w32.exe
(Google Inc.) C:\Dokumente und Einstellungen\Garage Purtscheller\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Dokumente und Einstellungen\Garage Purtscheller\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Dokumente und Einstellungen\Garage Purtscheller\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [egui] => C:\Programme\ESET\ESET NOD32 Antivirus\egui.exe [5110672 2013-09-12] (ESET)
HKLM\...\Run: [UnlockerAssistant] => C:\Programme\Unlocker\UnlockerAssistant.exe [17408 2010-07-04] ()
HKLM\...\Run: [TomcatStartup 2.5] => C:\Programme\Hewlett-Packard\Toolbox\hpbpsttp.exe [184320 2004-04-09] (Hewlett-Packard)
HKLM\...\Run: [StatusClient 2.6] => C:\Programme\Hewlett-Packard\Toolbox\StatusClient\StatusClient.exe [61440 2004-02-12] (Hewlett-Packard)
HKLM\...\Run: [RTHDCPL] => C:\WINDOWS\RTHDCPL.EXE [16864768 2008-09-30] (Realtek Semiconductor Corp.)
HKLM\...\Run: [QuickTime Task] => C:\Programme\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.)
HKLM\...\Run: [NvMediaCenter] => C:\WINDOWS\system32\NvMcTray.dll [108832 2013-03-22] (NVIDIA Corporation)
HKLM\...\Run: [NvCplDaemon] => C:\WINDOWS\system32\NvCpl.dll [15517984 2013-03-22] (NVIDIA Corporation)
HKLM\...\Run: [KernelFaultCheck] => %systemroot%\system32\dumprep 0 -k
HKLM\...\Run: [Alcmtr] => C:\WINDOWS\ALCMTR.EXE [57344 2008-06-19] (Realtek Semiconductor Corp.)
HKLM\...\Run: [Adobe ARM] => C:\Programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
Winlogon\Notify\WgaLogon: C:\WINDOWS\system32\WgaLogon.dll ()
HKU\.DEFAULT\...\RunOnce: [tscuninstall] - %systemroot%\system32\tscupgrd.exe
HKU\S-1-5-21-602162358-1482476501-1801674531-1004\...\Run: [uTorrent] => C:\Dokumente und Einstellungen\Garage Purtscheller\Anwendungsdaten\uTorrent\uTorrent.exe [1264984 2014-04-01] (BitTorrent Inc.)
HKU\S-1-5-21-602162358-1482476501-1801674531-1004\...\Run: [Google Update] => C:\Dokumente und Einstellungen\Garage Purtscheller\Lokale Einstellungen\Anwendungsdaten\Google\Update\GoogleUpdate.exe [136176 2011-11-18] (Google Inc.)
HKU\S-1-5-21-602162358-1482476501-1801674531-1004\...\Run: [HijackThis startup scan] => D:\Dokumente und Einstellungen\Garage Purtscheller\Eigene Dateien\Downloads\HijackThis.exe /startupscan
HKU\S-1-5-21-602162358-1482476501-1801674531-1004\...\MountPoints2: {5c928b8a-42f1-11e3-ba86-00248c08c45c} - F:\
HKU\S-1-5-21-602162358-1482476501-1801674531-1004\...\MountPoints2: {8610c1cc-4263-11e3-a856-c7383c5bd69f} - F:\
Startup: C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\simplicheck.lnk
ShortcutTarget: simplicheck.lnk -> C:\Programme\simplitec\simplicheck\simplicheck.exe (simplitec)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://ch.msn.com/default.aspx?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-ch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x3EF05B29FFD6CE01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.ch/
Toolbar: HKCU - &Adresse - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
Toolbar: HKCU - &Links - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation)
Toolbar: HKCU - No Name - {A13C2648-91D4-4BF3-BC6D-0079707C4389} - No File
Toolbar: HKCU - No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
Toolbar: HKCU - No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} hxxp://download.microsoft.com/download/C/B/F/CBF23A2C-3E55-4664-BC5C-762780D79BA0/OGAControl.cab
DPF: {1E3F1348-4370-4BBE-A67A-CC7ED824CA85} hxxp://download.microsoft.com/download/7/4/9/749b0dc5-2175-4d5b-a6dd-9c4bc923683e/Selfhelpcontrol.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_45-windows-i586.cab
DPF: {CAFEEFAC-0017-0000-0045-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_45-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_45-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
Handler: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler: ipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF ProfilePath: C:\Dokumente und Einstellungen\Garage Purtscheller\Anwendungsdaten\Mozilla\Firefox\Profiles\9sxx5jve.default
FF Homepage: https://shop.derendinger.ch/dch/?L=DE
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll ()
FF Plugin: @adobe.com/ShockwavePlayer - C:\WINDOWS\system32\Adobe\Director\np32dsw_1204144.dll (Adobe Systems, Inc.)
FF Plugin: @Apple.com/iTunes,version=1.0 - C:\Programme\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Programme\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @java.com/DTPlugin,version=10.5.1 - C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin - C:\Programme\Java\jre7\bin\new_plugin\npjp2.dll No File
FF Plugin: @java.com/JavaPlugin,version=10.45.2 - C:\Programme\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Programme\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Programme\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Programme\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.0.5 - C:\Programme\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: Adobe Reader - C:\Programme\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Dokumente und Einstellungen\Garage Purtscheller\Lokale Einstellungen\Anwendungsdaten\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Dokumente und Einstellungen\Garage Purtscheller\Lokale Einstellungen\Anwendungsdaten\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF SearchPlugin: C:\Programme\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Programme\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Programme\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Programme\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ []
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Programme\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird
FF Extension: ESET Smart Security Extension - C:\Programme\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2013-11-01]
Chrome:
=======
CHR Extension: (Adblock Plus) - C:\Dokumente und Einstellungen\Garage Purtscheller\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-03-12]
CHR Extension: (LastPass: Free Password Manager) - C:\Dokumente und Einstellungen\Garage Purtscheller\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2014-03-05]
CHR Extension: (Google Wallet) - C:\Dokumente und Einstellungen\Garage Purtscheller\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-23]
CHR Extension: (MySearchDial) - C:\Dokumente und Einstellungen\Garage Purtscheller\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\pflphaooapbgpeakohlggbpidpppgdff [2014-03-05]
CHR HKLM\...\Chrome\Extension: [hdokiejnpimakedhajhdlcegeplioahd] - C:\Programme\LastPass\lpchrome.crx [2012-03-29]
CHR HKLM\...\Chrome\Extension: [pflphaooapbgpeakohlggbpidpppgdff] - C:\DOKUME~1\GARAGE~1\LOKALE~1\ANWEND~1\mysearchdial-speeddial.crx [2013-07-16]
CHR HKCU\...\Chrome\Extension: [pflphaooapbgpeakohlggbpidpppgdff] - C:\DOKUME~1\GARAGE~1\LOKALE~1\ANWEND~1\mysearchdial-speeddial.crx [2013-07-16]
CHR StartMenuInternet: Google Chrome - C:\Dokumente und Einstellungen\Garage Purtscheller\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\Application\chrome.exe
========================== Services (Whitelisted) =================
S3 Adobe LM Service; C:\Programme\Gemeinsame Dateien\Adobe Systems Shared\Service\Adobelmsvc.exe [72704 2013-01-08] (Adobe Systems)
R2 Apple Mobile Device; C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\AppleMobileDeviceService.exe [55624 2013-09-07] (Apple Inc.)
S3 Bonjour Service; C:\Programme\Bonjour\mDNSResponder.exe [390504 2011-08-30] (Apple Inc.)
R2 ekrn; C:\Programme\ESET\ESET NOD32 Antivirus\ekrn.exe [1337752 2013-09-12] (ESET)
R2 Fabs; C:\Programme\Gemeinsame Dateien\MAGIX Services\Database\bin\FABS.exe [1858048 2012-01-23] (MAGIX AG)
S3 FirebirdServerMAGIXInstance; C:\Programme\Gemeinsame Dateien\MAGIX Services\Database\bin\fbserver.exe [2702848 2011-04-26] (MAGIX®)
S3 iPod Service; C:\Programme\iPod\bin\iPodService.exe [553288 2013-10-01] (Apple Inc.)
R2 JavaQuickStarterService; C:\Programme\Java\jre7\bin\jqs.exe [182696 2013-10-31] (Oracle Corporation)
S3 MozillaMaintenance; C:\Programme\Mozilla Maintenance Service\maintenanceservice.exe [119408 2014-03-31] (Mozilla Foundation)
S2 nvUpdatusService; C:\Programme\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [1259296 2013-03-23] (NVIDIA Corporation)
S3 ose; C:\Programme\Gemeinsame Dateien\Microsoft Shared\Source Engine\OSE.EXE [89136 2003-07-28] (Microsoft Corporation)
S3 RichVideo; C:\Programme\CyberLink\Shared Files\RichVideo.exe [167936 2005-08-08] ()
S3 ServiceLayer; C:\Programme\PC Connectivity Solution\ServiceLayer.exe [430592 2008-04-07] (Nokia.)
R2 TeamViewer8; C:\Programme\TeamViewer\Version8\TeamViewer_Service.exe [5093216 2014-02-07] (TeamViewer GmbH)
S3 WMPNetworkSvc; C:\Programme\Windows Media Player\WMPNetwk.exe [920576 2006-11-03] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
R3 airmacsxp; C:\WINDOWS\System32\DRIVERS\airmacsxp.sys [47744 2009-10-20] (Texas Instruments Inc)
S3 bdmako; C:\WINDOWS\System32\Drivers\bdmako.sys [35200 2009-12-18] (Windows (R) Win 7 DDK provider)
R1 eamon; C:\WINDOWS\System32\DRIVERS\eamon.sys [184664 2013-09-17] (ESET)
R1 ehdrv; C:\WINDOWS\System32\DRIVERS\ehdrv.sys [134248 2013-09-17] (ESET)
R1 epfwtdir; C:\WINDOWS\System32\DRIVERS\epfwtdir.sys [118768 2013-09-17] (ESET)
R3 L1e; C:\WINDOWS\System32\DRIVERS\l1e51x86.sys [39424 2009-08-05] (Atheros Communications, Inc.)
R3 MTsensor; C:\WINDOWS\System32\DRIVERS\ASACPI.sys [5810 2004-08-13] ()
R1 oxpar; C:\WINDOWS\System32\DRIVERS\oxpar.sys [80128 2007-01-24] (OEM)
S3 umpusbxp; C:\WINDOWS\System32\DRIVERS\umpusbxp.sys [76768 2004-11-02] (Texas Instruments)
S4 IntelIde; No ImagePath
U5 UnlockerDriver5; C:\Programme\Unlocker\UnlockerDriver5.sys [4096 2010-07-04] () <===== ATTENTION Necurs Rootkit?
U1 WS2IFSL;
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-04-24 10:42 - 2014-04-24 10:42 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042414-01.dmp
2014-04-24 09:30 - 2014-04-24 10:46 - 00000000 ____D () C:\Dokumente und Einstellungen\Garage Purtscheller\Desktop\Farbar's recovery scan
2014-04-24 09:27 - 2014-04-24 10:46 - 00000000 ____D () C:\FRST
2014-04-23 18:28 - 2014-04-23 18:28 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042314-12.dmp
2014-04-23 17:54 - 2014-04-23 17:55 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042314-11.dmp
2014-04-23 17:20 - 2014-04-23 17:20 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042314-10.dmp
2014-04-23 16:00 - 2014-04-23 16:00 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042314-09.dmp
2014-04-23 15:22 - 2014-04-23 15:22 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042314-08.dmp
2014-04-23 14:55 - 2014-04-23 14:55 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042314-07.dmp
2014-04-23 14:39 - 2014-04-23 14:39 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042314-06.dmp
2014-04-23 14:06 - 2014-04-23 14:06 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042314-05.dmp
2014-04-23 13:35 - 2014-04-23 13:35 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042314-04.dmp
2014-04-23 13:03 - 2014-04-23 13:03 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042314-03.dmp
2014-04-23 12:32 - 2014-04-23 12:32 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042314-02.dmp
2014-04-23 07:43 - 2014-04-23 07:43 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042314-01.dmp
2014-04-22 19:13 - 2014-04-22 19:13 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042214-15.dmp
2014-04-22 18:37 - 2014-04-22 18:37 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042214-14.dmp
2014-04-22 18:02 - 2014-04-22 18:02 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042214-13.dmp
2014-04-22 17:24 - 2014-04-22 17:24 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042214-12.dmp
2014-04-22 16:49 - 2014-04-22 16:49 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042214-11.dmp
2014-04-22 16:12 - 2014-04-22 16:12 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042214-10.dmp
2014-04-22 15:36 - 2014-04-22 15:36 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042214-09.dmp
2014-04-22 15:00 - 2014-04-22 15:00 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042214-08.dmp
2014-04-22 14:25 - 2014-04-22 14:25 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042214-07.dmp
2014-04-22 13:48 - 2014-04-22 13:48 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042214-06.dmp
2014-04-22 13:12 - 2014-04-22 13:12 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042214-05.dmp
2014-04-22 12:36 - 2014-04-22 12:37 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042214-04.dmp
2014-04-22 12:00 - 2014-04-22 12:00 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042214-03.dmp
2014-04-22 11:23 - 2014-04-22 11:23 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042214-02.dmp
2014-04-22 10:47 - 2014-04-22 10:47 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042214-01.dmp
2014-04-17 13:10 - 2014-04-17 13:10 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041714-03.dmp
2014-04-17 10:18 - 2014-04-17 10:18 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041714-02.dmp
2014-04-17 09:46 - 2014-04-17 09:46 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041714-01.dmp
2014-04-16 17:12 - 2014-04-16 17:13 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041614-04.dmp
2014-04-16 13:43 - 2014-04-16 13:43 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041614-03.dmp
2014-04-16 10:47 - 2014-04-16 10:47 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041614-02.dmp
2014-04-16 10:14 - 2014-04-16 10:14 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041614-01.dmp
2014-04-15 18:11 - 2014-04-15 18:11 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041514-02.dmp
2014-04-15 15:35 - 2014-04-15 15:35 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041514-01.dmp
2014-04-14 17:41 - 2014-04-14 17:41 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041414-02.dmp
2014-04-14 13:50 - 2014-04-14 13:50 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041414-01.dmp
2014-04-11 16:17 - 2014-04-11 16:17 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041114-05.dmp
2014-04-11 15:20 - 2014-04-11 15:20 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041114-04.dmp
2014-04-11 13:20 - 2014-04-11 13:20 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041114-03.dmp
2014-04-11 12:39 - 2014-04-11 12:39 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041114-02.dmp
2014-04-11 09:56 - 2014-04-11 09:56 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041114-01.dmp
2014-04-10 20:31 - 2014-04-10 20:31 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2922229$
2014-04-10 20:28 - 2014-04-10 20:29 - 00011522 _____ () C:\WINDOWS\KB2936068-IE8.log
2014-04-10 18:03 - 2014-04-10 18:04 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041014-06.dmp
2014-04-10 16:53 - 2014-04-10 16:53 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041014-05.dmp
2014-04-10 14:04 - 2014-04-10 14:04 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041014-04.dmp
2014-04-10 12:53 - 2014-04-10 12:53 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041014-03.dmp
2014-04-10 10:54 - 2014-04-10 10:54 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041014-02.dmp
2014-04-10 09:28 - 2014-04-10 09:28 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041014-01.dmp
2014-04-10 08:04 - 2014-04-10 20:31 - 00013076 _____ () C:\WINDOWS\KB2922229.log
2014-04-09 14:55 - 2014-04-09 14:56 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040914-01.dmp
2014-04-08 12:32 - 2014-04-08 12:32 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040814-01.dmp
2014-04-07 18:18 - 2014-04-07 18:18 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040714-06.dmp
2014-04-07 17:46 - 2014-04-07 17:46 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040714-05.dmp
2014-04-07 16:58 - 2014-04-07 16:58 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040714-04.dmp
2014-04-07 16:38 - 2014-04-07 16:38 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040714-03.dmp
2014-04-07 16:07 - 2014-04-07 16:07 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040714-02.dmp
2014-04-07 15:35 - 2014-04-07 15:35 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040714-01.dmp
2014-04-04 18:19 - 2014-04-04 18:19 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040414-02.dmp
2014-04-04 09:52 - 2014-04-04 09:52 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040414-01.dmp
2014-04-03 09:57 - 2014-04-03 09:57 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040314-01.dmp
2014-04-02 16:50 - 2014-04-02 16:51 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040214-03.dmp
2014-04-02 13:06 - 2014-04-02 13:06 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040214-02.dmp
2014-04-02 10:10 - 2014-04-02 10:11 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040214-01.dmp
2014-04-01 21:28 - 2014-04-01 21:28 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040114-04.dmp
2014-04-01 13:43 - 2014-04-01 13:43 - 00000000 ____D () C:\Programme\QuickTime
2014-04-01 13:43 - 2014-04-01 13:43 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\QuickTime
2014-04-01 13:38 - 2014-04-01 13:38 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_netaapl_01009.Wdf
2014-04-01 13:34 - 2014-04-01 13:34 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040114-03.dmp
2014-04-01 11:17 - 2014-04-01 11:17 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040114-02.dmp
2014-04-01 09:32 - 2014-04-01 09:32 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040114-01.dmp
2014-03-31 18:11 - 2014-03-31 18:11 - 00065536 _____ () C:\WINDOWS\Minidump\Mini033114-04.dmp
2014-03-31 15:59 - 2014-03-31 15:59 - 00065536 _____ () C:\WINDOWS\Minidump\Mini033114-03.dmp
2014-03-31 13:39 - 2014-03-31 13:39 - 00065536 _____ () C:\WINDOWS\Minidump\Mini033114-02.dmp
2014-03-31 12:16 - 2014-03-31 12:17 - 00000000 ____D () C:\Programme\Mozilla Firefox
2014-03-31 10:16 - 2014-03-31 10:16 - 00065536 _____ () C:\WINDOWS\Minidump\Mini033114-01.dmp
2014-03-28 18:30 - 2014-03-28 18:30 - 00065536 _____ () C:\WINDOWS\Minidump\Mini032814-01.dmp
2014-03-27 12:49 - 2014-03-27 12:49 - 00065536 _____ () C:\WINDOWS\Minidump\Mini032714-02.dmp
2014-03-27 10:00 - 2014-03-27 10:00 - 00065536 _____ () C:\WINDOWS\Minidump\Mini032714-01.dmp
2014-03-26 18:00 - 2014-03-26 18:00 - 00065536 _____ () C:\WINDOWS\Minidump\Mini032614-04.dmp
2014-03-26 17:37 - 2014-03-26 17:37 - 00065536 _____ () C:\WINDOWS\Minidump\Mini032614-03.dmp
2014-03-26 13:40 - 2014-03-26 13:40 - 00065536 _____ () C:\WINDOWS\Minidump\Mini032614-02.dmp
2014-03-26 10:32 - 2014-03-26 10:32 - 00065536 _____ () C:\WINDOWS\Minidump\Mini032614-01.dmp
2014-03-25 18:32 - 2014-03-25 18:32 - 00065536 _____ () C:\WINDOWS\Minidump\Mini032514-02.dmp
2014-03-25 11:56 - 2014-04-24 10:42 - 00000250 _____ () C:\WINDOWS\Tasks\Ende des Supports für Microsoft Windows XP – Benachrichtigung – Anmeldung.job
2014-03-25 11:56 - 2014-04-08 15:49 - 00000244 _____ () C:\WINDOWS\Tasks\Ende des Supports für Microsoft Windows XP – Monatliche Benachrichtigung.job
2014-03-25 11:56 - 2014-03-25 11:56 - 00065536 _____ () C:\WINDOWS\Minidump\Mini032514-01.dmp
2014-03-25 04:00 - 2014-03-25 04:00 - 00004268 _____ () C:\WINDOWS\KB2934207.log
2014-03-25 04:00 - 2014-03-25 04:00 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2934207$
==================== One Month Modified Files and Folders =======
2014-04-24 10:46 - 2014-04-24 09:30 - 00000000 ____D () C:\Dokumente und Einstellungen\Garage Purtscheller\Desktop\Farbar's recovery scan
2014-04-24 10:46 - 2014-04-24 09:27 - 00000000 ____D () C:\FRST
2014-04-24 10:44 - 2013-11-01 17:50 - 02079440 _____ () C:\WINDOWS\WindowsUpdate.log
2014-04-24 10:43 - 2013-11-05 17:26 - 00000159 _____ () C:\WINDOWS\wiadebug.log
2014-04-24 10:43 - 2013-11-05 17:26 - 00000050 _____ () C:\WINDOWS\wiaservc.log
2014-04-24 10:43 - 2013-11-01 11:58 - 00001407 _____ () C:\statusclient.log
2014-04-24 10:42 - 2014-04-24 10:42 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042414-01.dmp
2014-04-24 10:42 - 2014-03-25 11:56 - 00000250 _____ () C:\WINDOWS\Tasks\Ende des Supports für Microsoft Windows XP – Benachrichtigung – Anmeldung.job
2014-04-24 10:42 - 2013-11-01 13:09 - 2145386496 _____ () C:\WINDOWS\MEMORY.DMP
2014-04-24 10:42 - 2012-11-23 11:11 - 00000000 ____D () C:\WINDOWS\Minidump
2014-04-24 10:42 - 2011-11-21 12:45 - 00000000 ____D () C:\Dokumente und Einstellungen\Garage Purtscheller\Anwendungsdaten\uTorrent
2014-04-24 10:42 - 2009-03-13 15:50 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-04-24 09:46 - 2013-11-01 17:51 - 00032644 _____ () C:\WINDOWS\SchedLgU.Txt
2014-04-24 09:46 - 2009-03-13 15:51 - 00000300 ___SH () C:\Dokumente und Einstellungen\Garage Purtscheller\ntuser.ini
2014-04-24 09:24 - 2014-01-16 09:07 - 00001266 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-602162358-1482476501-1801674531-1004UA.job
2014-04-24 09:16 - 2014-02-04 15:44 - 00000884 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-04-23 18:28 - 2014-04-23 18:28 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042314-12.dmp
2014-04-23 17:55 - 2014-04-23 17:54 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042314-11.dmp
2014-04-23 17:20 - 2014-04-23 17:20 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042314-10.dmp
2014-04-23 16:00 - 2014-04-23 16:00 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042314-09.dmp
2014-04-23 15:22 - 2014-04-23 15:22 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042314-08.dmp
2014-04-23 14:55 - 2014-04-23 14:55 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042314-07.dmp
2014-04-23 14:39 - 2014-04-23 14:39 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042314-06.dmp
2014-04-23 14:06 - 2014-04-23 14:06 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042314-05.dmp
2014-04-23 13:35 - 2014-04-23 13:35 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042314-04.dmp
2014-04-23 13:03 - 2014-04-23 13:03 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042314-03.dmp
2014-04-23 12:32 - 2014-04-23 12:32 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042314-02.dmp
2014-04-23 09:38 - 2011-11-18 17:37 - 00000000 ____D () C:\EGIS-2
2014-04-23 09:34 - 2013-01-02 18:15 - 00000000 ____D () C:\WINDOWS\system32\LogFiles
2014-04-23 07:43 - 2014-04-23 07:43 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042314-01.dmp
2014-04-22 19:13 - 2014-04-22 19:13 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042214-15.dmp
2014-04-22 18:37 - 2014-04-22 18:37 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042214-14.dmp
2014-04-22 18:02 - 2014-04-22 18:02 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042214-13.dmp
2014-04-22 17:24 - 2014-04-22 17:24 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042214-12.dmp
2014-04-22 16:49 - 2014-04-22 16:49 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042214-11.dmp
2014-04-22 16:12 - 2014-04-22 16:12 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042214-10.dmp
2014-04-22 15:36 - 2014-04-22 15:36 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042214-09.dmp
2014-04-22 15:00 - 2014-04-22 15:00 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042214-08.dmp
2014-04-22 14:25 - 2014-04-22 14:25 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042214-07.dmp
2014-04-22 13:48 - 2014-04-22 13:48 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042214-06.dmp
2014-04-22 13:12 - 2014-04-22 13:12 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042214-05.dmp
2014-04-22 12:37 - 2014-04-22 12:36 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042214-04.dmp
2014-04-22 12:00 - 2014-04-22 12:00 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042214-03.dmp
2014-04-22 11:23 - 2014-04-22 11:23 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042214-02.dmp
2014-04-22 10:47 - 2014-04-22 10:47 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042214-01.dmp
2014-04-22 10:11 - 2013-10-30 21:22 - 00006176 _____ () C:\WINDOWS\system32\wpa.dbl
2014-04-17 14:59 - 2013-11-01 17:40 - 00000000 ____D () C:\WINDOWS\pss
2014-04-17 14:59 - 2009-03-13 22:36 - 00000211 ___SH () C:\boot.ini
2014-04-17 14:59 - 2009-03-13 21:37 - 00000000 ___RD () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart
2014-04-17 14:59 - 2008-04-14 14:00 - 00000603 _____ () C:\WINDOWS\win.ini
2014-04-17 14:59 - 2008-04-14 14:00 - 00000227 _____ () C:\WINDOWS\system.ini
2014-04-17 13:10 - 2014-04-17 13:10 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041714-03.dmp
2014-04-17 10:18 - 2014-04-17 10:18 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041714-02.dmp
2014-04-17 09:46 - 2014-04-17 09:46 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041714-01.dmp
2014-04-17 07:24 - 2014-01-16 09:07 - 00001214 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-602162358-1482476501-1801674531-1004Core.job
2014-04-16 18:17 - 2009-03-13 16:12 - 00347136 _____ () C:\Dokumente und Einstellungen\Garage Purtscheller\Desktop\Kundenregister3.xls
2014-04-16 17:52 - 2011-11-18 17:48 - 00000572 _____ () C:\Dokumente und Einstellungen\All Users\Desktop\EGIS-2.lnk
2014-04-16 17:13 - 2014-04-16 17:12 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041614-04.dmp
2014-04-16 13:43 - 2014-04-16 13:43 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041614-03.dmp
2014-04-16 10:47 - 2014-04-16 10:47 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041614-02.dmp
2014-04-16 10:14 - 2014-04-16 10:14 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041614-01.dmp
2014-04-15 18:11 - 2014-04-15 18:11 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041514-02.dmp
2014-04-15 15:35 - 2014-04-15 15:35 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041514-01.dmp
2014-04-15 15:08 - 2013-03-12 08:54 - 00000000 ____D () C:\Dokumente und Einstellungen\Garage Purtscheller\Anwendungsdaten\vlc
2014-04-15 15:07 - 2011-12-28 21:33 - 00000116 _____ () C:\WINDOWS\NeroDigital.ini
2014-04-15 15:07 - 2011-11-18 16:44 - 00061952 _____ () C:\Dokumente und Einstellungen\Garage Purtscheller\Lokale Einstellungen\Anwendungsdaten\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-04-14 17:41 - 2014-04-14 17:41 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041414-02.dmp
2014-04-14 13:50 - 2014-04-14 13:50 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041414-01.dmp
2014-04-14 08:29 - 2011-11-18 17:28 - 00002464 _____ () C:\Dokumente und Einstellungen\Garage Purtscheller\Desktop\Google Chrome.lnk
2014-04-11 16:17 - 2014-04-11 16:17 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041114-05.dmp
2014-04-11 15:46 - 2009-03-13 21:38 - 01225642 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-04-11 15:45 - 2014-03-14 14:51 - 00021281 _____ () C:\WINDOWS\setupapi.log
2014-04-11 15:44 - 2009-03-13 15:51 - 00000000 ___HD () C:\Dokumente und Einstellungen\Garage Purtscheller\Netzwerkumgebung
2014-04-11 15:20 - 2014-04-11 15:20 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041114-04.dmp
2014-04-11 13:20 - 2014-04-11 13:20 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041114-03.dmp
2014-04-11 12:39 - 2014-04-11 12:39 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041114-02.dmp
2014-04-11 09:56 - 2014-04-11 09:56 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041114-01.dmp
2014-04-10 20:31 - 2014-04-10 20:31 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2922229$
2014-04-10 20:31 - 2014-04-10 08:04 - 00013076 _____ () C:\WINDOWS\KB2922229.log
2014-04-10 20:31 - 2014-03-12 04:00 - 00039655 _____ () C:\WINDOWS\iis6.log
2014-04-10 20:31 - 2014-03-12 04:00 - 00037098 _____ () C:\WINDOWS\FaxSetup.log
2014-04-10 20:31 - 2014-03-12 04:00 - 00017736 _____ () C:\WINDOWS\ocgen.log
2014-04-10 20:31 - 2014-03-12 04:00 - 00016920 _____ () C:\WINDOWS\tsoc.log
2014-04-10 20:31 - 2014-03-12 04:00 - 00012214 _____ () C:\WINDOWS\comsetup.log
2014-04-10 20:31 - 2014-03-12 04:00 - 00011170 _____ () C:\WINDOWS\msmqinst.log
2014-04-10 20:31 - 2014-03-12 04:00 - 00007400 _____ () C:\WINDOWS\ntdtcsetup.log
2014-04-10 20:31 - 2014-03-12 04:00 - 00006498 _____ () C:\WINDOWS\netfxocm.log
2014-04-10 20:31 - 2014-03-12 04:00 - 00002550 _____ () C:\WINDOWS\MedCtrOC.log
2014-04-10 20:31 - 2014-03-12 04:00 - 00002052 _____ () C:\WINDOWS\ocmsn.log
2014-04-10 20:31 - 2014-03-12 04:00 - 00001866 _____ () C:\WINDOWS\tabletoc.log
2014-04-10 20:31 - 2014-03-12 04:00 - 00001854 _____ () C:\WINDOWS\msgsocm.log
2014-04-10 20:31 - 2014-03-12 04:00 - 00001374 _____ () C:\WINDOWS\imsins.log
2014-04-10 20:31 - 2013-07-18 09:36 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-04-10 20:29 - 2014-04-10 20:28 - 00011522 _____ () C:\WINDOWS\KB2936068-IE8.log
2014-04-10 20:29 - 2014-03-12 04:00 - 00001374 _____ () C:\WINDOWS\imsins.BAK
2014-04-10 20:29 - 2009-03-13 15:33 - 88028728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-04-10 20:28 - 2014-03-12 04:00 - 00005353 _____ () C:\WINDOWS\updspapi.log
2014-04-10 18:04 - 2014-04-10 18:03 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041014-06.dmp
2014-04-10 16:53 - 2014-04-10 16:53 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041014-05.dmp
2014-04-10 14:04 - 2014-04-10 14:04 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041014-04.dmp
2014-04-10 12:53 - 2014-04-10 12:53 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041014-03.dmp
2014-04-10 10:54 - 2014-04-10 10:54 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041014-02.dmp
2014-04-10 09:28 - 2014-04-10 09:28 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041014-01.dmp
2014-04-09 14:56 - 2014-04-09 14:55 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040914-01.dmp
2014-04-08 15:49 - 2014-03-25 11:56 - 00000244 _____ () C:\WINDOWS\Tasks\Ende des Supports für Microsoft Windows XP – Monatliche Benachrichtigung.job
2014-04-08 12:32 - 2014-04-08 12:32 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040814-01.dmp
2014-04-07 18:18 - 2014-04-07 18:18 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040714-06.dmp
2014-04-07 17:46 - 2014-04-07 17:46 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040714-05.dmp
2014-04-07 16:58 - 2014-04-07 16:58 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040714-04.dmp
2014-04-07 16:38 - 2014-04-07 16:38 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040714-03.dmp
2014-04-07 16:07 - 2014-04-07 16:07 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040714-02.dmp
2014-04-07 15:35 - 2014-04-07 15:35 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040714-01.dmp
2014-04-04 18:19 - 2014-04-04 18:19 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040414-02.dmp
2014-04-04 13:06 - 2014-03-11 17:35 - 00001026 _____ () C:\WINDOWS\wmsetup.log
2014-04-04 09:52 - 2014-04-04 09:52 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040414-01.dmp
2014-04-03 09:57 - 2014-04-03 09:57 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040314-01.dmp
2014-04-03 07:19 - 2009-03-13 21:38 - 00000000 ___RD () C:\Programme
2014-04-02 16:51 - 2014-04-02 16:50 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040214-03.dmp
2014-04-02 13:06 - 2014-04-02 13:06 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040214-02.dmp
2014-04-02 10:11 - 2014-04-02 10:10 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040214-01.dmp
2014-04-01 21:28 - 2014-04-01 21:28 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040114-04.dmp
2014-04-01 13:43 - 2014-04-01 13:43 - 00000000 ____D () C:\Programme\QuickTime
2014-04-01 13:43 - 2014-04-01 13:43 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\QuickTime
2014-04-01 13:43 - 2009-03-13 21:37 - 00000000 ___RD () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme
2014-04-01 13:38 - 2014-04-01 13:38 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_netaapl_01009.Wdf
2014-04-01 13:38 - 2014-03-12 04:00 - 00000824 _____ () C:\WINDOWS\setupact.log
2014-04-01 13:34 - 2014-04-01 13:34 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040114-03.dmp
2014-04-01 11:17 - 2014-04-01 11:17 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040114-02.dmp
2014-04-01 09:32 - 2014-04-01 09:32 - 00065536 _____ () C:\WINDOWS\Minidump\Mini040114-01.dmp
2014-03-31 18:11 - 2014-03-31 18:11 - 00065536 _____ () C:\WINDOWS\Minidump\Mini033114-04.dmp
2014-03-31 15:59 - 2014-03-31 15:59 - 00065536 _____ () C:\WINDOWS\Minidump\Mini033114-03.dmp
2014-03-31 15:59 - 2014-01-08 14:05 - 00000000 ____D () C:\Programme\Mozilla Maintenance Service
2014-03-31 13:39 - 2014-03-31 13:39 - 00065536 _____ () C:\WINDOWS\Minidump\Mini033114-02.dmp
2014-03-31 12:17 - 2014-03-31 12:16 - 00000000 ____D () C:\Programme\Mozilla Firefox
2014-03-31 10:16 - 2014-03-31 10:16 - 00065536 _____ () C:\WINDOWS\Minidump\Mini033114-01.dmp
2014-03-28 18:30 - 2014-03-28 18:30 - 00065536 _____ () C:\WINDOWS\Minidump\Mini032814-01.dmp
2014-03-27 12:49 - 2014-03-27 12:49 - 00065536 _____ () C:\WINDOWS\Minidump\Mini032714-02.dmp
2014-03-27 10:00 - 2014-03-27 10:00 - 00065536 _____ () C:\WINDOWS\Minidump\Mini032714-01.dmp
2014-03-26 18:00 - 2014-03-26 18:00 - 00065536 _____ () C:\WINDOWS\Minidump\Mini032614-04.dmp
2014-03-26 17:37 - 2014-03-26 17:37 - 00065536 _____ () C:\WINDOWS\Minidump\Mini032614-03.dmp
2014-03-26 13:40 - 2014-03-26 13:40 - 00065536 _____ () C:\WINDOWS\Minidump\Mini032614-02.dmp
2014-03-26 10:32 - 2014-03-26 10:32 - 00065536 _____ () C:\WINDOWS\Minidump\Mini032614-01.dmp
2014-03-25 18:32 - 2014-03-25 18:32 - 00065536 _____ () C:\WINDOWS\Minidump\Mini032514-02.dmp
2014-03-25 11:56 - 2014-03-25 11:56 - 00065536 _____ () C:\WINDOWS\Minidump\Mini032514-01.dmp
2014-03-25 04:00 - 2014-03-25 04:00 - 00004268 _____ () C:\WINDOWS\KB2934207.log
2014-03-25 04:00 - 2014-03-25 04:00 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2934207$
Some content of TEMP:
====================
C:\Dokumente und Einstellungen\Garage Purtscheller\Lokale Einstellungen\Temp\setu_.exe
==================== Bamital & volsnap Check =================
C:\WINDOWS\explorer.exe
[2008-04-14 14:00] - [2008-04-14 14:00] - 1036800 ____A (Microsoft Corporation) 418045a93cd87a352098ab7dabe1b53e
C:\WINDOWS\system32\winlogon.exe
[2008-04-14 14:00] - [2008-04-14 14:00] - 0513024 ____A (Microsoft Corporation) f09a527b422e25c478e38caa0e44417a
C:\WINDOWS\system32\svchost.exe
[2008-04-14 14:00] - [2008-04-14 14:00] - 0014336 ____A (Microsoft Corporation) 4fbc75b74479c7a6f829e0ca19df3366
C:\WINDOWS\system32\services.exe
[2008-04-14 14:00] - [2009-02-09 13:21] - 0111104 ____A (Microsoft Corporation) a3edbe9053889fb24ab22492472b39dc
C:\WINDOWS\system32\User32.dll
[2008-04-14 14:00] - [2008-04-14 14:00] - 0580096 ____A (Microsoft Corporation) b0050cc5340e3a0760dd8b417ff7aebd
C:\WINDOWS\system32\userinit.exe
[2008-04-14 14:00] - [2008-04-14 14:00] - 0026624 ____A (Microsoft Corporation) 788f95312e26389d596c0fa55834e106
C:\WINDOWS\system32\rpcss.dll
[2008-04-14 14:00] - [2009-02-09 12:51] - 0401408 ____A (Microsoft Corporation) 3127afbf2c1ed0ab14a1bbb7aaecb85b
ATTENTION ======> If the system is having audio adware rpcss.dll is patched. Google the MD5, if the MD5 is unique the file is infected.
C:\WINDOWS\system32\Drivers\volsnap.sys
[2008-04-14 14:00] - [2008-04-14 14:00] - 0053760 ____A (Microsoft Corporation) a5a712f4e880874a477af790b5186e1d
==================== End Of Log ============================ --- --- ---
--- --- ---
So und jetzt noch die Addition.txt Code:
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 24-04-2014
Ran by Garage Purtscheller at 2014-04-24 10:47:27
Running from C:\Dokumente und Einstellungen\Garage Purtscheller\Desktop\Farbar's recovery scan
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: ESET NOD32 Antivirus 7.0 (Disabled - Up to date) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
==================== Installed Programs ======================
µTorrent (HKCU\...\uTorrent) (Version: 3.4.1.30740 - BitTorrent Inc.)
7-Zip 9.20 (HKLM\...\7-Zip) (Version: - )
Adobe Bridge 1.0 (Version: 1.0.1.1 - Adobe Systems) Hidden
Adobe Common File Installer (Version: 1.00.002 - Adobe System Incorporated) Hidden
Adobe Flash Player 12 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 12.0.0.77 - Adobe Systems Incorporated)
Adobe Flash Player 12 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 12.0.0.77 - Adobe Systems Incorporated)
Adobe Help Center 2.0 (Version: 2.0.0 - Adobe Systems) Hidden
Adobe Photoshop CS2 (HKLM\...\Adobe Photoshop CS2 - {236BB7C4-4419-42FD-0407-1E257A25E34D}) (Version: 9.0 - Adobe Systems, Inc.)
Adobe Photoshop CS2 (Version: 9.0 - Adobe Systems, Inc.) Hidden
Adobe Premiere Pro 2.0 (HKLM\...\Adobe Premiere Pro 2.0) (Version: 2.000.000 - Adobe Systems, Inc.)
Adobe Premiere Pro 2.0 (Version: 2.000.000 - Adobe Systems, Inc.) Hidden
Adobe Reader XI (11.0.06) - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.06 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.0 (HKLM\...\Adobe Shockwave Player) (Version: 12.0.4.144 - Adobe Systems, Inc.)
Adobe Stock Photos 1.0 (Version: 1.0.1 - Adobe Systems) Hidden
Adobe Stock Photos 1.0 (Version: 1.0.2 - Adobe Systems) Hidden
Apple Application Support (HKLM\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{0592EF96-69D8-4E4B-9CC9-88F58EA86F01}) (Version: 7.0.0.117 - Apple Inc.)
Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Atheros Communications Inc.(R) AR8121/AR8113/AR8114 Gigabit/Fast Ethernet Driver (HKLM\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 1.0.0.30 - Atheros Communications Inc.)
Bonjour (HKLM\...\{79155F2B-9895-49D7-8612-D92580E0DE5B}) (Version: 3.0.0.10 - Apple Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 4.07 - Piriform)
Compatibility Pack für 2007 Office System (HKLM\...\{90120000-0020-0407-0000-0000000FF1CE}) (Version: 12.0.6514.5001 - Microsoft Corporation)
DVSE Updater (HKLM\...\{52167B0C-FB5D-43E7-BEC5-24EE6BEE2BA0}) (Version: 1.6.0.23257 - DVSE GmbH)
EGIS-2 (HKLM\...\EGIS-2) (Version: - )
ESA (HKLM\...\ESA) (Version: 1.0.0.63 - DVSE GmbH)
ESET NOD32 Antivirus (HKLM\...\{2EFFE18A-CAC2-471C-8DC3-CD5BC8D14C51}) (Version: 7.0.302.26 - ESET, spol s r. o.)
EurotaxGlass ERE Full CH (HKLM\...\{40BB58A6-9130-4F81-0001-CCE2581FE124}) (Version: 09.01.20 - EurotaxGlass's International AG)
Firebird SQL Server - MAGIX Edition (HKLM\...\{39AB2E37-1A55-4292-A5D3-971E9F70D0F8}) (Version: 2.1.32.0 - MAGIX AG)
Google Chrome (HKCU\...\Google Chrome) (Version: 34.0.1847.116 - Google Inc.)
Google Earth (HKLM\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Update Helper (Version: 1.3.21.165 - Google Inc.) Hidden
Helium (HKLM\...\{9A781940-AC41-4D5E-8E1E-76A04B916FB9}) (Version: 1.0.0 - ClockworkMod)
Hella Gutmann Portal 1.91 (HKLM\...\{D578BA50-9449-417E-912D-1735FD311FA7}) (Version: 1.91.0021 - Hella Gutmann Solutions)
Hella Gutmann TecDoc Interface 1.2 (HKLM\...\{BAF65595-558B-46A0-8AF2-4D2AA4E97411}) (Version: 1.2.0 - Tolerance A/S)
hp color LaserJet 2550 series (HKLM\...\{7ABD6243-A825-46AE-B1B4-B5AE845AA7A9}) (Version: 1.00.0000 - Hewlett-Packard)
HP Software Update (HKLM\...\{90B5E602-1867-449D-86FD-FC9DEA4434BF}) (Version: 2.0.38.20040107 - Hewlett-Packard)
iExplorer 2.2.1.3 (HKLM\...\{7FD8B0C1-CDDA-4B4D-A577-B2E3570EA3A3}_is1) (Version: - Macroplant, LLC)
iTunes (HKLM\...\{E05D82D8-FE70-4228-B073-B0C07FE27595}) (Version: 11.1.1.11 - Apple Inc.)
Java 7 Update 45 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83217045FF}) (Version: 7.0.450 - Oracle)
Java Auto Updater (Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
LastPass (uninstall only) (HKLM\...\LastPass) (Version: - LastPass)
MAGIX Speed burnR (MSI) (HKLM\...\MAGIX_{40D57CD4-BD8C-4FB8-9ACB-83525D0A2063}) (Version: 7.0.2.6 - MAGIX AG)
MAGIX Speed burnR (MSI) (Version: 7.0.2.6 - MAGIX AG) Hidden
MAGIX Video Pro X5 (HKLM\...\MAGIX_{9624820E-108F-4854-B5A9-24EDCC24CC93}) (Version: 12.0.10.28 - MAGIX AG)
MAGIX Video Pro X5 (Version: 12.0.10.28 - MAGIX AG) Hidden
MAGIX Video Pro X5 Update (Version: 12.0.13.2 - MAGIX AG) Hidden
Microsoft .NET Framework 2.0 Service Pack 2 (HKLM\...\{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}) (Version: 2.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 3.0 Service Pack 2 (HKLM\...\{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}) (Version: 3.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft Kernel-Mode Driver Framework Feature Pack 1.9 (Version: - Microsoft Corporation) Hidden
Microsoft Office Professional Edition 2003 (HKLM\...\{90110407-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.5614.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.10411.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Mozilla Firefox 28.0 (x86 de) (HKLM\...\Mozilla Firefox 28.0 (x86 de)) (Version: 28.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 28.0 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (HKLM\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
MyFreeCodec (HKCU\...\MyFreeCodec) (Version: - )
Nero OEM (HKLM\...\Nero - Burning Rom!UninstallKey) (Version: - )
NVIDIA Grafiktreiber 307.90 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 307.90 - NVIDIA Corporation)
NVIDIA Install Application (Version: 2.1002.118.757 - NVIDIA Corporation) Hidden
NVIDIA nView 136.53 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView) (Version: 136.53 - NVIDIA Corporation)
NVIDIA PhysX (HKLM\...\{DD1865F0-AD73-40FB-B23E-1822E02396FF}) (Version: 9.09.0203 - NVIDIA Corporation)
NVIDIA Systemsteuerung 307.90 (Version: 307.90 - NVIDIA Corporation) Hidden
NVIDIA Update 1.10.8 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.10.8 - NVIDIA Corporation)
NVIDIA Update Components (Version: 1.10.8 - NVIDIA Corporation) Hidden
PC Connectivity Solution (HKLM\...\{AC599724-5755-48C1-ABE7-ABB857652930}) (Version: 8.15.0.0 - Nokia)
Pinnacle VideoSpin (HKLM\...\{FEB15887-0932-4D2D-BB85-6AC03FBF1AA8}) (Version: 2.0.0.669 - Pinnacle Systems)
PowerDVD (HKLM\...\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}) (Version: 7.0.2414.0 - CyberLink Corporation)
PrintScreen (Version: 5.40.10.000 - Hewlett-Packard) Hidden
QuickTime 7 (HKLM\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.)
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 5.10.0.5713 - Realtek Semiconductor Corp.)
SAMSUNG Mobile Composite Device Software (HKLM\...\SAMSUNG Mobile Composite Device) (Version: - )
Samsung New PC Studio (HKLM\...\InstallShield_{F193FC0E-9E18-40FC-A974-509A1BDD240A}) (Version: 1.00.0000 - Samsung Electronics Co., Ltd.)
Samsung New PC Studio (Version: 1.00.0000 - Samsung Electronics Co., Ltd.) Hidden
Samsung New PC Studio USB Driver Installer (HKLM\...\InstallShield_{AF7E85DC-317C-47F5-810E-B82EE093A612}) (Version: 1.00.0000 - Samsung Electronics Co., Ltd.)
Samsung New PC Studio USB Driver Installer (Version: 1.00.0000 - Samsung Electronics Co., Ltd.) Hidden
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.16.0 - SAMSUNG Electronics Co., Ltd.)
SamsungConnectivityCableDriver (HKLM\...\{7E84FAC8-C518-40F9-9807-7455301D6D25}) (Version: 6.83.6.2.1 - Samsung)
Sicherheitsupdate für Windows Internet Explorer 8 (KB2888505) (HKLM\...\KB2888505-IE8) (Version: 1 - Microsoft Corporation)
Sicherheitsupdate für Windows Internet Explorer 8 (KB2898785) (HKLM\...\KB2898785-IE8) (Version: 1 - Microsoft Corporation)
Sicherheitsupdate für Windows Internet Explorer 8 (KB2909210) (HKLM\...\KB2909210-IE8) (Version: 1 - Microsoft Corporation)
Sicherheitsupdate für Windows Internet Explorer 8 (KB2909921) (HKLM\...\KB2909921-IE8) (Version: 1 - Microsoft Corporation)
Sicherheitsupdate für Windows Internet Explorer 8 (KB2925418) (HKLM\...\KB2925418-IE8) (Version: 1 - Microsoft Corporation)
Sicherheitsupdate für Windows Internet Explorer 8 (KB2936068) (HKLM\...\KB2936068-IE8) (Version: 1 - Microsoft Corporation)
Sicherheitsupdate für Windows XP (KB2862152) (HKLM\...\KB2862152) (Version: 1 - Microsoft Corporation)
Sicherheitsupdate für Windows XP (KB2868626) (HKLM\...\KB2868626) (Version: 1 - Microsoft Corporation)
Sicherheitsupdate für Windows XP (KB2876331) (HKLM\...\KB2876331) (Version: 1 - Microsoft Corporation)
Sicherheitsupdate für Windows XP (KB2892075) (HKLM\...\KB2892075) (Version: 1 - Microsoft Corporation)
Sicherheitsupdate für Windows XP (KB2893294) (HKLM\...\KB2893294) (Version: 1 - Microsoft Corporation)
Sicherheitsupdate für Windows XP (KB2893984) (HKLM\...\KB2893984) (Version: 1 - Microsoft Corporation)
Sicherheitsupdate für Windows XP (KB2898715) (HKLM\...\KB2898715) (Version: 1 - Microsoft Corporation)
Sicherheitsupdate für Windows XP (KB2900986) (HKLM\...\KB2900986) (Version: 1 - Microsoft Corporation)
Sicherheitsupdate für Windows XP (KB2914368) (HKLM\...\KB2914368) (Version: 1 - Microsoft Corporation)
Sicherheitsupdate für Windows XP (KB2916036) (HKLM\...\KB2916036) (Version: 1 - Microsoft Corporation)
Sicherheitsupdate für Windows XP (KB2922229) (HKLM\...\KB2922229) (Version: 1 - Microsoft Corporation)
Sicherheitsupdate für Windows XP (KB2929961) (HKLM\...\KB2929961) (Version: 1 - Microsoft Corporation)
Sicherheitsupdate für Windows XP (KB2930275) (HKLM\...\KB2930275) (Version: 1 - Microsoft Corporation)
simplitec simplicheck (HKLM\...\{183D780B-28F9-41BA-A2CB-605F324A5781}) (Version: 1.3.10.0 - simplitec GmbH)
swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
TeamViewer 8 (HKLM\...\TeamViewer 8) (Version: 8.0.26038 - TeamViewer)
Unlocker 1.9.2 (HKLM\...\Unlocker) (Version: 1.9.2 - Cedrick Collomb)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (HKLM\...\{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB963707) (Version: 1 - Microsoft Corporation)
Update für Windows XP (KB2904266) (HKLM\...\KB2904266) (Version: 1 - Microsoft Corporation)
Update für Windows XP (KB2934207) (HKLM\...\KB2934207) (Version: 1 - Microsoft Corporation)
VLC media player 2.0.5 (HKLM\...\VLC media player) (Version: 2.0.5 - VideoLAN)
WebFldrs XP (Version: 9.50.7523 - Microsoft Corporation) Hidden
Windows Genuine Advantage Validation Tool (KB892130) (HKLM\...\WGA) (Version: 1.7.0069.2 - Microsoft Corporation)
Windows Internet Explorer 8 (HKLM\...\ie8) (Version: 20090308.140743 - Microsoft Corporation)
Windows Media Format 11 runtime (HKLM\...\Windows Media Format Runtime) (Version: - )
Windows Media Player 11 (HKLM\...\Windows Media Player) (Version: - )
Windows-Treiberpaket - Nokia pccsmcfd (10/12/2007 6.85.4.0) (HKLM\...\3A5DEFA413DDE699DBA6EBE0A63534ACA524D30F) (Version: 10/12/2007 6.85.4.0 - Nokia)
WinRAR 5.00 (32-Bit) (HKLM\...\WinRAR archiver) (Version: 5.00.0 - win.rar GmbH)
xVideoServiceThief (HKLM\...\{64A2A800-1992-4933-87A0-EB05F95A67E0}) (Version: 2.5.1 - Xesc & Technology)
Your Uninstaller! 7 (HKLM\...\YU2010_is1) (Version: 7.5.2013.2 - URSoft, Inc.)
==================== Restore Points =========================
23-01-2014 10:16:15 Systemprüfpunkt
24-01-2014 10:53:33 Systemprüfpunkt
25-01-2014 11:39:59 Systemprüfpunkt
26-01-2014 12:47:26 Systemprüfpunkt
27-01-2014 13:30:05 Systemprüfpunkt
28-01-2014 14:25:40 Systemprüfpunkt
29-01-2014 15:39:19 Systemprüfpunkt
30-01-2014 15:41:35 Systemprüfpunkt
31-01-2014 12:55:06 Installed xVideoServiceThief
31-01-2014 15:20:06 Pinnacle VideoSpin wurde installiert.
01-02-2014 15:21:41 Systemprüfpunkt
02-02-2014 16:03:55 Systemprüfpunkt
03-02-2014 17:19:45 Systemprüfpunkt
04-02-2014 18:02:28 Systemprüfpunkt
05-02-2014 19:10:11 Systemprüfpunkt
06-02-2014 19:52:32 Systemprüfpunkt
07-02-2014 20:48:11 Systemprüfpunkt
08-02-2014 20:54:46 Systemprüfpunkt
09-02-2014 21:37:16 Systemprüfpunkt
10-02-2014 22:43:49 Systemprüfpunkt
11-02-2014 23:48:37 Systemprüfpunkt
12-02-2014 09:17:42 Software Distribution Service 3.0
13-02-2014 08:19:05 Software Distribution Service 3.0
14-02-2014 09:01:23 Systemprüfpunkt
15-02-2014 09:16:29 Systemprüfpunkt
16-02-2014 09:34:12 Systemprüfpunkt
17-02-2014 09:56:04 Systemprüfpunkt
18-02-2014 11:46:53 Systemprüfpunkt
19-02-2014 11:56:02 Systemprüfpunkt
20-02-2014 12:42:12 Systemprüfpunkt
21-02-2014 13:24:23 Systemprüfpunkt
22-02-2014 14:18:44 Systemprüfpunkt
23-02-2014 15:01:06 Systemprüfpunkt
24-02-2014 15:53:42 Systemprüfpunkt
25-02-2014 17:16:37 Systemprüfpunkt
26-02-2014 17:44:31 Systemprüfpunkt
27-02-2014 17:49:17 Systemprüfpunkt
28-02-2014 18:47:10 Systemprüfpunkt
01-03-2014 19:29:37 Systemprüfpunkt
02-03-2014 20:24:04 Systemprüfpunkt
03-03-2014 20:57:15 Systemprüfpunkt
04-03-2014 21:15:21 Systemprüfpunkt
05-03-2014 21:46:19 Systemprüfpunkt
06-03-2014 22:13:34 Systemprüfpunkt
07-03-2014 22:21:12 Systemprüfpunkt
10-03-2014 07:25:05 Systemprüfpunkt
11-03-2014 08:40:23 Systemprüfpunkt
12-03-2014 02:00:15 Software Distribution Service 3.0
13-03-2014 02:15:41 Systemprüfpunkt
14-03-2014 07:32:26 Systemprüfpunkt
15-03-2014 07:54:16 Systemprüfpunkt
17-03-2014 07:02:12 Systemprüfpunkt
18-03-2014 07:33:30 Systemprüfpunkt
19-03-2014 02:00:14 Software Distribution Service 3.0
20-03-2014 02:32:24 Systemprüfpunkt
21-03-2014 07:42:56 Systemprüfpunkt
22-03-2014 08:10:16 Systemprüfpunkt
24-03-2014 07:14:25 Systemprüfpunkt
25-03-2014 02:00:14 Software Distribution Service 3.0
26-03-2014 02:34:06 Systemprüfpunkt
27-03-2014 03:01:39 Systemprüfpunkt
28-03-2014 04:02:31 Systemprüfpunkt
31-03-2014 05:59:40 Systemprüfpunkt
01-04-2014 06:36:26 Systemprüfpunkt
02-04-2014 06:58:05 Systemprüfpunkt
03-04-2014 08:12:58 Systemprüfpunkt
04-04-2014 09:10:46 Systemprüfpunkt
05-04-2014 09:32:28 Systemprüfpunkt
07-04-2014 05:56:02 Systemprüfpunkt
08-04-2014 06:16:42 Systemprüfpunkt
09-04-2014 08:15:24 Systemprüfpunkt
10-04-2014 08:33:44 Systemprüfpunkt
10-04-2014 18:27:51 Software Distribution Service 3.0
14-04-2014 06:25:22 Systemprüfpunkt
15-04-2014 06:53:53 Systemprüfpunkt
16-04-2014 07:23:18 Systemprüfpunkt
17-04-2014 09:08:09 Systemprüfpunkt
23-04-2014 06:00:05 Systemprüfpunkt
==================== Hosts content: ==========================
2008-04-14 14:00 - 2013-10-31 21:52 - 00000867 _RASH C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1 localhost
127.0.0.1 mpa.one.microsoft.com
==================== Scheduled Tasks (whitelisted) =============
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\Ende des Supports für Microsoft Windows XP – Benachrichtigung – Anmeldung.job => C:\WINDOWS\system32\xp_eos.exe
Task: C:\WINDOWS\Tasks\Ende des Supports für Microsoft Windows XP – Monatliche Benachrichtigung.job => C:\WINDOWS\system32\xp_eos.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-602162358-1482476501-1801674531-1004Core.job => C:\Dokumente und Einstellungen\Garage Purtscheller\Lokale Einstellungen\Anwendungsdaten\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-602162358-1482476501-1801674531-1004UA.job => C:\Dokumente und Einstellungen\Garage Purtscheller\Lokale Einstellungen\Anwendungsdaten\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2013-11-01 11:31 - 2010-02-22 18:00 - 00190976 _____ () C:\WINDOWS\system32\WgaLogon.dll
2010-07-04 23:32 - 2010-07-04 23:32 - 00004608 _____ () C:\Programme\Unlocker\UnlockerHook.dll
2010-07-04 23:32 - 2010-07-04 23:32 - 00010752 _____ () C:\Programme\Unlocker\UnlockerCOM.dll
2001-07-31 12:17 - 2001-07-31 12:17 - 00094274 _____ () C:\WINDOWS\system32\HPBHealr.dll
2010-07-04 21:51 - 2010-07-04 21:51 - 00017408 _____ () C:\Programme\Unlocker\UnlockerAssistant.exe
2011-11-21 09:10 - 2011-11-21 09:10 - 00020572 _____ () C:\Programme\Hewlett-Packard\Toolbox\jre\bin\javaw.exe
2011-11-21 09:10 - 2011-11-21 09:10 - 00802901 _____ () C:\Programme\Hewlett-Packard\Toolbox\jre\bin\hotspot\jvm.dll
2011-11-21 09:10 - 2011-11-21 09:10 - 00028776 _____ () C:\Programme\Hewlett-Packard\Toolbox\jre\bin\hpi.dll
2011-11-21 09:10 - 2011-11-21 09:10 - 00053342 _____ () C:\Programme\Hewlett-Packard\Toolbox\jre\bin\verify.dll
2011-11-21 09:10 - 2011-11-21 09:10 - 00094308 _____ () C:\Programme\Hewlett-Packard\Toolbox\jre\bin\java.dll
2011-11-21 09:10 - 2011-11-21 09:10 - 00053349 _____ () C:\Programme\Hewlett-Packard\Toolbox\jre\bin\zip.dll
2011-11-21 09:10 - 2011-11-21 09:10 - 00032864 _____ () C:\Programme\Hewlett-Packard\Toolbox\jre\bin\net.dll
2011-11-21 09:10 - 2003-06-16 23:52 - 00074752 _____ () C:\WINDOWS\system32\jst.dll
2012-02-20 21:29 - 2012-02-20 21:29 - 00087912 _____ () C:\Programme\Gemeinsame Dateien\Apple\Apple Application Support\zlib1.dll
2012-02-20 21:28 - 2012-02-20 21:28 - 01242472 _____ () C:\Programme\Gemeinsame Dateien\Apple\Apple Application Support\libxml2.dll
2008-04-14 14:00 - 2008-04-14 14:00 - 00014336 _____ () C:\WINDOWS\system32\msdmo.dll
2014-04-14 08:29 - 2014-04-02 03:57 - 00065352 _____ () C:\Dokumente und Einstellungen\Garage Purtscheller\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\Application\34.0.1847.116\chrome_elf.dll
2014-04-14 08:29 - 2014-04-02 03:57 - 04081480 _____ () C:\Dokumente und Einstellungen\Garage Purtscheller\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\Application\34.0.1847.116\pdf.dll
2014-04-14 08:29 - 2014-04-02 03:58 - 00390472 _____ () C:\Dokumente und Einstellungen\Garage Purtscheller\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\Application\34.0.1847.116\ppGoogleNaClPluginChrome.dll
2014-04-14 08:29 - 2014-04-02 03:57 - 01647432 _____ () C:\Dokumente und Einstellungen\Garage Purtscheller\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\Application\34.0.1847.116\ffmpegsumo.dll
==================== Alternate Data Streams (whitelisted) =========
AlternateDataStreams: C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\TEMP:1CE11B51
==================== Safe Mode (whitelisted) ===================
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"
==================== Disabled items from MSCONFIG ==============
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (03/04/2014 11:20:18 AM) (Source: Application Hang) (User: )
Description: Stillstehende Anwendung OUTLOOK.EXE, Version 11.0.5510.0, Stillstandmodul hungapp, Version 0.0.0.0, Stillstandadresse 0x00000000.
Error: (03/04/2014 11:02:06 AM) (Source: Application Hang) (User: )
Description: Stillstehende Anwendung msimn.exe, Version 6.0.2900.5512, Stillstandmodul hungapp, Version 0.0.0.0, Stillstandadresse 0x00000000.
Error: (02/14/2014 05:35:33 PM) (Source: Application Hang) (User: )
Description: Stillstehende Anwendung iexplore.exe, Version 8.0.6001.18702, Stillstandmodul hungapp, Version 0.0.0.0, Stillstandadresse 0x00000000.
Error: (01/09/2014 00:10:00 PM) (Source: Application Hang) (User: )
Description: Stillstehende Anwendung firefox.exe, Version 26.0.0.5087, Stillstandmodul hungapp, Version 0.0.0.0, Stillstandadresse 0x00000000.
Error: (12/12/2013 04:02:51 AM) (Source: crypt32) (User: )
Description: Der automatische Aktualisierungsabruf der Drittanbieterstammlisten-Sequenznummer von <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> ist fehlgeschlagen mit dem Fehler: Dieser Vorgang wurde wegen Zeitüberschreitung zurückgegeben.
.
Error: (12/10/2013 00:21:45 PM) (Source: Application Hang) (User: )
Description: Stillstehende Anwendung ImageReady.exe, Version 9.0.0.211, Stillstandmodul hungapp, Version 0.0.0.0, Stillstandadresse 0x00000000.
Error: (11/02/2013 05:17:57 PM) (Source: MsiInstaller) (User: PC01)
Description: Die Windows Installer-Proxyinformationen sind nicht richtig registriert.
Error: (11/02/2013 05:02:06 PM) (Source: MsiInstaller) (User: PC01)
Description: Die Windows Installer-Proxyinformationen sind nicht richtig registriert.
Error: (11/02/2013 01:19:58 PM) (Source: .NET Runtime 2.0 Error Reporting) (User: )
Description: EventType clr20r3, P1 carbon.exe, P2 1.0.0.0, P3 52046aca, P4 system, P5 2.0.0.0, P6 506beeb6, P7 3ad0, P8 394, P9 clr20r30, P10 clr20r31.
Error: (11/02/2013 00:22:21 PM) (Source: nview_info) (User: )
Description: NVIEW : RUNDLL32: shared heap exhausted or damaged
System errors:
=============
Error: (04/24/2014 10:43:34 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1069
Error: (04/24/2014 10:43:34 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort
aufgrund des folgenden Fehlers anmelden:
%%1326
Vergewissern
Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der
Microsoft Management Console (MMC).
Error: (04/24/2014 09:55:36 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1069
Error: (04/24/2014 09:55:36 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort
aufgrund des folgenden Fehlers anmelden:
%%1326
Vergewissern
Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der
Microsoft Management Console (MMC).
Error: (04/24/2014 09:46:01 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1069
Error: (04/24/2014 09:46:01 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort
aufgrund des folgenden Fehlers anmelden:
%%1326
Vergewissern
Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der
Microsoft Management Console (MMC).
Error: (04/24/2014 09:39:04 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1069
Error: (04/24/2014 09:39:04 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort
aufgrund des folgenden Fehlers anmelden:
%%1326
Vergewissern
Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der
Microsoft Management Console (MMC).
Error: (04/24/2014 09:25:34 AM) (Source: WPDMTPDriver) (User: )
Description: MTP WPD Driver has failed to start. Error 0x8007001f.
Error: (04/24/2014 09:09:45 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1069
Microsoft Office Sessions:
=========================
Error: (03/04/2014 11:20:18 AM) (Source: Application Hang)(User: )
Description: OUTLOOK.EXE11.0.5510.0hungapp0.0.0.000000000
Error: (03/04/2014 11:02:06 AM) (Source: Application Hang)(User: )
Description: msimn.exe6.0.2900.5512hungapp0.0.0.000000000
Error: (02/14/2014 05:35:33 PM) (Source: Application Hang)(User: )
Description: iexplore.exe8.0.6001.18702hungapp0.0.0.000000000
Error: (01/09/2014 00:10:00 PM) (Source: Application Hang)(User: )
Description: firefox.exe26.0.0.5087hungapp0.0.0.000000000
Error: (12/12/2013 04:02:51 AM) (Source: crypt32)(User: )
Description: hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txtDieser Vorgang wurde wegen Zeitüberschreitung zurückgegeben.
Error: (12/10/2013 00:21:45 PM) (Source: Application Hang)(User: )
Description: ImageReady.exe9.0.0.211hungapp0.0.0.000000000
Error: (11/02/2013 05:17:57 PM) (Source: MsiInstaller)(User: PC01)
Description: (NULL)(NULL)(NULL)(NULL)
Error: (11/02/2013 05:02:06 PM) (Source: MsiInstaller)(User: PC01)
Description: (NULL)(NULL)(NULL)(NULL)
Error: (11/02/2013 01:19:58 PM) (Source: .NET Runtime 2.0 Error Reporting)(User: )
Description: clr20r3carbon.exe1.0.0.052046acasystem2.0.0.0506beeb63ad0394system.componentmodel.win32NIL
Error: (11/02/2013 00:22:21 PM) (Source: nview_info)(User: )
Description: NVIEW : RUNDLL32: shared heap exhausted or damaged
==================== Memory info ===========================
Percentage of memory in use: 38%
Total physical RAM: 2047.04 MB
Available physical RAM: 1259.36 MB
Total Pagefile: 3940.03 MB
Available Pagefile: 3289.58 MB
Total Virtual: 2047.88 MB
Available Virtual: 1957.71 MB
==================== Drives ================================
Drive c: (System) (Fixed) (Total:292.97 GB) (Free:210.27 GB) NTFS ==>[Drive with boot components (Windows XP)]
Drive d: (Daten) (Fixed) (Total:172.78 GB) (Free:122.06 GB) NTFS
Drive f: () (Removable) (Total:3.89 GB) (Free:3.89 GB) FAT32
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 466 GB) (Disk ID: FA8A9A40)
Partition 1: (Active) - (Size=293 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=173 GB) - (Type=OF Extended)
========================================================
Disk: 1 (Size: 4 GB) (Disk ID: E93F0B63)
Partition 1: (Not Active) - (Size=4 GB) - (Type=0B)
==================== End Of Log ============================ |