Hallo Schrauber,
ja....wenn alles richtig ist.
danke für deine Mühe die du dir mit mir machst.
FRST Logfile:
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 14-11-2013
Ran by pc (administrator) on PC-PC on 15-11-2013 20:06:45
Running from C:\Users\pc\Desktop
Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) OS Language: German Standard
Internet Explorer Version 9
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(Emsisoft GmbH) C:\Program Files\Emsisoft Anti-Malware\a2service.exe
(Microsoft Corporation) C:\Windows\system32\SLsvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
() C:\ProgramData\DatacardService\DCService.exe
(Microsoft Corporation) C:\Windows\ehome\ehRecvr.exe
(Microsoft Corporation) C:\Windows\ehome\ehsched.exe
(ActMask Co.,Ltd - HTTP://WWW.ALL2PDF.COM) C:\Windows\system32\PrintCtrl.exe
(ActMask Co.,Ltd - hxxp://www.all2pdf.com) C:\Windows\system32\PrintDisp.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe
() C:\Program Files\Mobile Partner\Mobile Partner.exe
(Uniblue Systems Limited) C:\Program Files\Uniblue\RegistryBooster\rbmonitor.exe
(Microsoft) C:\Program Files\WashAndGo\WashAndGo.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Windows\system32\igfxsrvc.exe
(Realtek Semiconductor) C:\Windows\RtHDVCpl.exe
(ActMask Co.,Ltd - hxxp://www.all2pdf.com) C:\Windows\System32\PrintDisp.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Emsisoft GmbH) C:\Program Files\Emsisoft Anti-Malware\a2guard.exe
(Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe
(Microsoft Corporation) C:\Windows\ehome\ehmsas.exe
(Microsoft Corporation) C:\Windows\system32\conime.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
(Lunascape Corporation) C:\Program Files\Lunascape\Lunascape6\Luna.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] ()
HKLM\...\Run: [RtHDVCpl] - C:\Windows\RtHDVCpl.exe [6139904 2008-05-07] (Realtek Semiconductor)
HKLM\...\Run: [PrintDisp] - C:\Windows\System32\PrintDisp.exe [830464 2012-05-30] (ActMask Co.,Ltd - hxxp://www.all2pdf.com)
HKLM\...\Run: [avgnt] - C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [347192 2013-07-17] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [emsisoft anti-malware] - C:\Program Files\Emsisoft Anti-Malware\a2guard.exe [4329408 2013-09-30] (Emsisoft GmbH)
HKCU\...\Run: [Mobile Partner] - C:\Program Files\Mobile Partner\Mobile Partner.exe [114688 2009-05-25] ()
HKCU\...\Run: [ehTray.exe] - C:\Windows\ehome\ehtray.exe [125952 2008-01-21] (Microsoft Corporation)
HKCU\...\Run: [WMPNSCFG] - C:\Program Files\Windows Media Player\wmpnscfg.exe [202240 2008-01-21] (Microsoft Corporation)
HKU\Default\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {7C788BE1-99B0-40CD-B58C-788705E205E2} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSITDF&pc=MAMI&src=IE-SearchBox
SearchScopes: HKCU - DefaultScope {288575EA-507B-42CB-97BE-ACED08F1998A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=AVB3DF&pc=AVBR
SearchScopes: HKCU - ToolbarSearchProviderProgress {96bd48dd-741b-41ae-ac4a-aff96ba00f7e}
SearchScopes: HKCU - {288575EA-507B-42CB-97BE-ACED08F1998A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=AVB3DF&pc=AVBR
SearchScopes: HKCU - {7C788BE1-99B0-40CD-B58C-788705E205E2} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSITDF&pc=MAMI&src=IE-SearchBox
SearchScopes: HKCU - {B7B664DF-3AF9-4C8E-8148-F42BB7831D27} URL = hxxp://www.ask.com/web?o=15710&l=dis&q={searchTerms}
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Winsock: Catalog9 01 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 02 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 03 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 04 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 05 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 06 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 07 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 08 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 19 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Tcpip\Parameters: [DhcpNameServer] 193.189.244.225 193.189.244.206
Tcpip\..\Interfaces\{71B5F900-DE2A-46C9-B7E6-710EF36AF2A5}: [NameServer]132.252.3.10,132.252.1.7
========================== Services (Whitelisted) =================
R2 a2AntiMalware; C:\Program Files\Emsisoft Anti-Malware\a2service.exe [4153784 2013-09-30] (Emsisoft GmbH)
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [84024 2013-07-17] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [108088 2013-07-17] (Avira Operations GmbH & Co. KG)
S4 AntiVirWebService; C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [815160 2013-08-09] (Avira Operations GmbH & Co. KG)
R2 DCService.exe; C:\ProgramData\DatacardService\DCService.exe [229376 2010-05-08] ()
R2 Printer Control; C:\Windows\system32\PrintCtrl.exe [77824 2012-01-20] (ActMask Co.,Ltd - HTTP://WWW.ALL2PDF.COM)
S2 vToolbarUpdater13.0.0;
==================== Drivers (Whitelisted) ====================
R3 a2acc; C:\PROGRAM FILES\EMSISOFT ANTI-MALWARE\a2accx86.sys [57944 2013-08-24] (Emsisoft GmbH)
R1 A2DDA; C:\Program Files\Emsisoft Anti-Malware\a2ddax86.sys [22056 2013-03-28] (Emsisoft GmbH)
R1 a2injectiondriver; C:\Program Files\Emsisoft Anti-Malware\a2dix86.sys [38248 2013-09-30] (Emsisoft GmbH)
R1 a2util; C:\Program Files\Emsisoft Anti-Malware\a2util32.sys [14432 2013-03-28] (Emsisoft GmbH)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [88840 2013-08-22] (Avira Operations GmbH & Co. KG)
R1 avgtp; C:\Windows\system32\drivers\avgtpx86.sys [26984 2012-10-07] (AVG Technologies)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [136672 2013-07-29] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-03-06] (Avira Operations GmbH & Co. KG)
R3 cleanhlp; C:\Program Files\Emsisoft Anti-Malware\cleanhlp32.sys [50200 2013-08-19] (Emsisoft GmbH)
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2012-08-27] (Avira GmbH)
U5 AppMgmt; C:\Windows\system32\svchost.exe [21504 2008-01-21] (Microsoft Corporation)
S3 catchme; No ImagePath
S3 IpInIp; No ImagePath
S3 NwlnkFlt; No ImagePath
S3 NwlnkFwd; No ImagePath
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-11-15 20:06 - 2013-11-15 20:08 - 00008390 _____ C:\Users\pc\Desktop\FRST.txt
2013-11-15 20:04 - 2013-11-15 20:04 - 00000000 ____D C:\FRST
2013-11-15 20:01 - 2013-11-15 20:02 - 01090529 _____ (Farbar) C:\Users\pc\Desktop\FRST.exe
2013-11-14 17:42 - 2013-10-13 11:42 - 12344832 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-11-14 17:42 - 2013-10-13 11:08 - 09739264 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-11-14 17:42 - 2013-10-13 10:48 - 01806848 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-11-14 17:42 - 2013-10-13 10:37 - 01104896 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-11-14 17:42 - 2013-10-13 10:35 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-11-14 17:42 - 2013-10-13 10:35 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-11-14 17:42 - 2013-10-13 10:33 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-11-14 17:42 - 2013-10-13 10:32 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-11-14 17:42 - 2013-10-13 10:30 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-11-14 17:42 - 2013-10-13 10:30 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-11-14 17:42 - 2013-10-13 10:29 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-11-14 17:42 - 2013-10-13 10:27 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-11-14 17:42 - 2013-10-13 10:27 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-11-14 17:42 - 2013-10-13 10:26 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-11-14 17:42 - 2013-10-13 10:25 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-11-14 17:42 - 2013-10-13 10:20 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-11-14 16:15 - 2013-10-11 03:08 - 00444928 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2013-11-14 16:15 - 2013-10-11 03:07 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2013-11-14 16:15 - 2013-10-11 01:39 - 00218228 _____ C:\Windows\system32\WFP.TMF
2013-11-14 16:15 - 2013-10-03 13:45 - 00993792 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2013-11-14 16:15 - 2013-10-03 13:45 - 00297984 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2013-11-14 16:04 - 2013-11-15 20:03 - 00096927 _____ C:\Windows\WindowsUpdate.log
2013-11-14 15:59 - 2013-11-14 15:59 - 00276144 _____ C:\Windows\system32\FNTCACHE.DAT
2013-11-14 15:59 - 2013-11-14 15:59 - 00001360 _____ C:\Windows\PFRO.log
2013-11-14 07:54 - 2013-11-14 07:54 - 00060640 _____ C:\Users\pc\AppData\Local\GDIPFONTCACHEV1.DAT
2013-11-13 11:55 - 2013-11-13 11:55 - 00002397 _____ C:\Users\pc\Desktop\FSS.txt
2013-11-12 21:37 - 2013-11-12 21:37 - 00000000 ____D C:\Program Files\ESET
2013-11-12 19:05 - 2013-11-12 19:11 - 00000000 ____D C:\AdwCleaner
2013-11-12 17:03 - 2013-11-12 17:04 - 00586560 _____ C:\EamClean.log
2013-11-11 04:06 - 2013-11-11 04:06 - 00000858 _____ C:\Users\Public\Desktop\Emsisoft Anti-Malware.lnk
2013-11-11 04:05 - 2013-11-15 20:04 - 00000000 ____D C:\Program Files\Emsisoft Anti-Malware
2013-11-11 04:05 - 2013-11-11 04:05 - 00000000 ____D C:\Users\pc\Documents\Anti-Malware
2013-11-09 17:35 - 2013-11-09 17:35 - 103387443 _____ C:\Windows\system32\섶㋨–
2013-11-06 18:02 - 2013-11-12 14:17 - 00000000 ____D C:\Users\pc\AppData\Roaming\Skype
2013-11-06 18:02 - 2013-11-11 09:42 - 00000000 ____D C:\ProgramData\Skype
2013-11-06 07:22 - 2013-11-06 07:22 - 00001638 _____ C:\Users\pc\Desktop\AbAlarm.lnk
2013-10-29 09:29 - 2013-11-15 19:48 - 00000294 _____ C:\Windows\Tasks\RegistryBooster.job
2013-10-29 09:29 - 2013-11-15 19:47 - 00000326 _____ C:\Windows\Tasks\rbmonitor.job
2013-10-29 04:59 - 2013-10-29 04:59 - 00000000 ____D C:\Users\pc\AppData\Roaming\NevoSoft Games
2013-10-29 04:57 - 2013-11-12 19:37 - 00000000 ____D C:\Program Files\OXXOGames
2013-10-28 10:48 - 2013-11-13 17:18 - 00000000 ____D C:\Users\pc\Desktop\Neuer Ordner
2013-10-27 19:21 - 2013-10-27 19:21 - 00001862 _____ C:\Users\Public\Desktop\Adobe Reader X.lnk
2013-10-27 19:20 - 2013-10-27 19:20 - 00000000 ____D C:\Program Files\Adobe
2013-10-27 17:06 - 2013-11-15 05:24 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-10-27 17:06 - 2013-10-27 17:06 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2013-10-27 17:06 - 2013-10-27 17:06 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2013-10-27 12:30 - 2013-10-27 12:30 - 00000000 ____D C:\ProgramData\Oracle
2013-10-27 12:30 - 2013-10-27 12:30 - 00000000 ____D C:\Program Files\Common Files\Java
2013-10-27 12:30 - 2013-10-27 12:29 - 00264616 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2013-10-27 12:29 - 2013-10-27 12:29 - 00175016 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2013-10-27 12:29 - 2013-10-27 12:29 - 00174504 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2013-10-27 12:29 - 2013-10-27 12:29 - 00094632 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2013-10-24 09:44 - 2013-10-30 09:35 - 00000000 ____D C:\Users\pc\Documents\Meine Scans
2013-10-22 19:41 - 2013-10-22 19:41 - 00000212 _____ C:\Users\pc\Desktop\drucker.lnk
2013-10-17 18:48 - 2012-01-23 06:34 - 00905216 _____ (ActMask hxxp://www.all2pdf.com) C:\Windows\system32\SaveTo.dll
2013-10-17 18:48 - 2011-11-13 18:03 - 04067736 _____ (DynaForms GmbH) C:\Windows\system32\CPDF3.dll
==================== One Month Modified Files and Folders =======
2013-11-15 20:08 - 2013-11-15 20:06 - 00008390 _____ C:\Users\pc\Desktop\FRST.txt
2013-11-15 20:04 - 2013-11-15 20:04 - 00000000 ____D C:\FRST
2013-11-15 20:04 - 2013-11-11 04:05 - 00000000 ____D C:\Program Files\Emsisoft Anti-Malware
2013-11-15 20:03 - 2013-11-14 16:04 - 00096927 _____ C:\Windows\WindowsUpdate.log
2013-11-15 20:02 - 2013-11-15 20:01 - 01090529 _____ (Farbar) C:\Users\pc\Desktop\FRST.exe
2013-11-15 19:50 - 2012-06-07 22:26 - 00000332 _____ C:\Windows\Tasks\HP Photo Creations Communicator.job
2013-11-15 19:48 - 2013-10-29 09:29 - 00000294 _____ C:\Windows\Tasks\RegistryBooster.job
2013-11-15 19:48 - 2012-09-01 19:03 - 00000260 _____ C:\Windows\Tasks\AbelssoftPreloader.job
2013-11-15 19:47 - 2013-10-29 09:29 - 00000326 _____ C:\Windows\Tasks\rbmonitor.job
2013-11-15 19:47 - 2013-10-11 11:41 - 00000254 _____ C:\Windows\Tasks\WashAndGoNGBackground.job
2013-11-15 19:47 - 2012-08-17 10:27 - 00000270 _____ C:\Windows\Tasks\CheckDriveBackgroundGuard.job
2013-11-15 19:44 - 2006-11-02 14:01 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-11-15 19:44 - 2006-11-02 13:47 - 00003216 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2013-11-15 19:44 - 2006-11-02 13:47 - 00003216 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2013-11-15 19:44 - 2006-11-02 13:37 - 00000000 ___RD C:\Users\Public\Recorded TV
2013-11-15 05:48 - 2006-11-02 14:01 - 00032530 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-11-15 05:24 - 2013-10-27 17:06 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-11-14 18:08 - 2006-11-02 12:18 - 00000000 ____D C:\Windows\rescache
2013-11-14 17:48 - 2006-11-02 12:18 - 00000000 ____D C:\Windows\system32\de-DE
2013-11-14 17:33 - 2013-10-11 10:50 - 00000000 ____D C:\Windows\system32\MRT
2013-11-14 17:28 - 2006-11-02 11:24 - 80340640 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2013-11-14 16:04 - 2006-11-02 11:23 - 00000179 _____ C:\Windows\win.ini
2013-11-14 15:59 - 2013-11-14 15:59 - 00276144 _____ C:\Windows\system32\FNTCACHE.DAT
2013-11-14 15:59 - 2013-11-14 15:59 - 00001360 _____ C:\Windows\PFRO.log
2013-11-14 07:54 - 2013-11-14 07:54 - 00060640 _____ C:\Users\pc\AppData\Local\GDIPFONTCACHEV1.DAT
2013-11-14 07:18 - 2006-11-02 11:33 - 01559288 _____ C:\Windows\system32\PerfStringBackup.INI
2013-11-13 17:18 - 2013-10-28 10:48 - 00000000 ____D C:\Users\pc\Desktop\Neuer Ordner
2013-11-13 11:55 - 2013-11-13 11:55 - 00002397 _____ C:\Users\pc\Desktop\FSS.txt
2013-11-13 09:46 - 2011-02-25 14:47 - 00000000 ____D C:\Users\pc\AppData\Local\Google
2013-11-13 09:46 - 2011-02-25 14:47 - 00000000 ____D C:\Program Files\Google
2013-11-12 21:37 - 2013-11-12 21:37 - 00000000 ____D C:\Program Files\ESET
2013-11-12 21:20 - 2011-02-25 15:30 - 00000000 ____D C:\Users\pc\AppData\Local\Adobe
2013-11-12 19:37 - 2013-10-29 04:57 - 00000000 ____D C:\Program Files\OXXOGames
2013-11-12 19:11 - 2013-11-12 19:05 - 00000000 ____D C:\AdwCleaner
2013-11-12 19:11 - 2012-07-11 09:56 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-11-12 19:10 - 2011-09-16 13:45 - 00000000 ____D C:\ProgramData\Uniblue
2013-11-12 17:04 - 2013-11-12 17:03 - 00586560 _____ C:\EamClean.log
2013-11-12 14:17 - 2013-11-06 18:02 - 00000000 ____D C:\Users\pc\AppData\Roaming\Skype
2013-11-11 09:42 - 2013-11-06 18:02 - 00000000 ____D C:\ProgramData\Skype
2013-11-11 04:06 - 2013-11-11 04:06 - 00000858 _____ C:\Users\Public\Desktop\Emsisoft Anti-Malware.lnk
2013-11-11 04:05 - 2013-11-11 04:05 - 00000000 ____D C:\Users\pc\Documents\Anti-Malware
2013-11-09 17:44 - 2011-05-07 02:20 - 00000000 ____D C:\Users\pc\AppData\Roaming\Dropbox
2013-11-09 17:42 - 2011-05-07 02:25 - 00000000 ___RD C:\Users\pc\Dropbox
2013-11-09 17:35 - 2013-11-09 17:35 - 103387443 _____ C:\Windows\system32\섶㋨–
2013-11-06 07:22 - 2013-11-06 07:22 - 00001638 _____ C:\Users\pc\Desktop\AbAlarm.lnk
2013-11-03 20:30 - 2010-10-15 17:12 - 00000000 ____D C:\Users\pc
2013-11-02 08:14 - 2011-10-29 19:03 - 00000000 ____D C:\Windows\CleverPrint
2013-11-02 08:12 - 2011-07-08 16:12 - 00000000 ____D C:\Program Files\MailXXL.com Tools
2013-11-02 08:11 - 2011-07-08 10:51 - 01095982 _____ C:\ndsvc.log
2013-11-02 08:07 - 2012-08-16 09:16 - 00000000 ____D C:\Program Files\Panda Security
2013-10-31 20:33 - 2011-02-05 09:46 - 00000000 ____D C:\Users\pc\Desktop\diverse
2013-10-30 09:35 - 2013-10-24 09:44 - 00000000 ____D C:\Users\pc\Documents\Meine Scans
2013-10-29 04:59 - 2013-10-29 04:59 - 00000000 ____D C:\Users\pc\AppData\Roaming\NevoSoft Games
2013-10-28 23:09 - 2006-11-02 12:18 - 00000000 ___RD C:\Users\Public
2013-10-27 19:21 - 2013-10-27 19:21 - 00001862 _____ C:\Users\Public\Desktop\Adobe Reader X.lnk
2013-10-27 19:20 - 2013-10-27 19:20 - 00000000 ____D C:\Program Files\Adobe
2013-10-27 19:20 - 2011-06-29 19:12 - 00000000 ____D C:\Program Files\Common Files\Adobe
2013-10-27 19:20 - 2011-02-25 14:50 - 00000000 ____D C:\ProgramData\Adobe
2013-10-27 17:06 - 2013-10-27 17:06 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2013-10-27 17:06 - 2013-10-27 17:06 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2013-10-27 12:30 - 2013-10-27 12:30 - 00000000 ____D C:\ProgramData\Oracle
2013-10-27 12:30 - 2013-10-27 12:30 - 00000000 ____D C:\Program Files\Common Files\Java
2013-10-27 12:29 - 2013-10-27 12:30 - 00264616 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2013-10-27 12:29 - 2013-10-27 12:29 - 00175016 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2013-10-27 12:29 - 2013-10-27 12:29 - 00174504 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2013-10-27 12:29 - 2013-10-27 12:29 - 00094632 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2013-10-27 12:29 - 2011-07-02 15:35 - 00000000 ____D C:\Program Files\Java
2013-10-25 20:25 - 2012-07-22 08:55 - 00000000 ____D C:\Users\pc\AppData\Local\Paint.NET
2013-10-24 20:04 - 2011-05-07 02:21 - 00000000 ____D C:\Users\pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2013-10-22 19:41 - 2013-10-22 19:41 - 00000212 _____ C:\Users\pc\Desktop\drucker.lnk
2013-10-21 00:01 - 2011-05-07 02:25 - 00000920 _____ C:\Users\pc\Desktop\Dropbox.lnk
2013-10-20 23:22 - 2010-10-19 02:53 - 00000000 ____D C:\Users\pc\AppData\Local\Microsoft Games
2013-10-16 21:17 - 2011-04-04 20:27 - 00000000 ____D C:\Users\pc\AppData\Roaming\HpUpdate
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-11-15 19:52
==================== End Of Log ============================ --- --- ---
--- --- ---
--- --- ---
FRST Logfile:
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 14-11-2013
Ran by pc (administrator) on PC-PC on 15-11-2013 20:06:45
Running from C:\Users\pc\Desktop
Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) OS Language: German Standard
Internet Explorer Version 9
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(Emsisoft GmbH) C:\Program Files\Emsisoft Anti-Malware\a2service.exe
(Microsoft Corporation) C:\Windows\system32\SLsvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
() C:\ProgramData\DatacardService\DCService.exe
(Microsoft Corporation) C:\Windows\ehome\ehRecvr.exe
(Microsoft Corporation) C:\Windows\ehome\ehsched.exe
(ActMask Co.,Ltd - HTTP://WWW.ALL2PDF.COM) C:\Windows\system32\PrintCtrl.exe
(ActMask Co.,Ltd - hxxp://www.all2pdf.com) C:\Windows\system32\PrintDisp.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe
() C:\Program Files\Mobile Partner\Mobile Partner.exe
(Uniblue Systems Limited) C:\Program Files\Uniblue\RegistryBooster\rbmonitor.exe
(Microsoft) C:\Program Files\WashAndGo\WashAndGo.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Windows\system32\igfxsrvc.exe
(Realtek Semiconductor) C:\Windows\RtHDVCpl.exe
(ActMask Co.,Ltd - hxxp://www.all2pdf.com) C:\Windows\System32\PrintDisp.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Emsisoft GmbH) C:\Program Files\Emsisoft Anti-Malware\a2guard.exe
(Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe
(Microsoft Corporation) C:\Windows\ehome\ehmsas.exe
(Microsoft Corporation) C:\Windows\system32\conime.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
(Lunascape Corporation) C:\Program Files\Lunascape\Lunascape6\Luna.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] ()
HKLM\...\Run: [RtHDVCpl] - C:\Windows\RtHDVCpl.exe [6139904 2008-05-07] (Realtek Semiconductor)
HKLM\...\Run: [PrintDisp] - C:\Windows\System32\PrintDisp.exe [830464 2012-05-30] (ActMask Co.,Ltd - hxxp://www.all2pdf.com)
HKLM\...\Run: [avgnt] - C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [347192 2013-07-17] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [emsisoft anti-malware] - C:\Program Files\Emsisoft Anti-Malware\a2guard.exe [4329408 2013-09-30] (Emsisoft GmbH)
HKCU\...\Run: [Mobile Partner] - C:\Program Files\Mobile Partner\Mobile Partner.exe [114688 2009-05-25] ()
HKCU\...\Run: [ehTray.exe] - C:\Windows\ehome\ehtray.exe [125952 2008-01-21] (Microsoft Corporation)
HKCU\...\Run: [WMPNSCFG] - C:\Program Files\Windows Media Player\wmpnscfg.exe [202240 2008-01-21] (Microsoft Corporation)
HKU\Default\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {7C788BE1-99B0-40CD-B58C-788705E205E2} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSITDF&pc=MAMI&src=IE-SearchBox
SearchScopes: HKCU - DefaultScope {288575EA-507B-42CB-97BE-ACED08F1998A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=AVB3DF&pc=AVBR
SearchScopes: HKCU - ToolbarSearchProviderProgress {96bd48dd-741b-41ae-ac4a-aff96ba00f7e}
SearchScopes: HKCU - {288575EA-507B-42CB-97BE-ACED08F1998A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=AVB3DF&pc=AVBR
SearchScopes: HKCU - {7C788BE1-99B0-40CD-B58C-788705E205E2} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSITDF&pc=MAMI&src=IE-SearchBox
SearchScopes: HKCU - {B7B664DF-3AF9-4C8E-8148-F42BB7831D27} URL = hxxp://www.ask.com/web?o=15710&l=dis&q={searchTerms}
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Winsock: Catalog9 01 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 02 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 03 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 04 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 05 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 06 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 07 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 08 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 19 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Tcpip\Parameters: [DhcpNameServer] 193.189.244.225 193.189.244.206
Tcpip\..\Interfaces\{71B5F900-DE2A-46C9-B7E6-710EF36AF2A5}: [NameServer]132.252.3.10,132.252.1.7
========================== Services (Whitelisted) =================
R2 a2AntiMalware; C:\Program Files\Emsisoft Anti-Malware\a2service.exe [4153784 2013-09-30] (Emsisoft GmbH)
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [84024 2013-07-17] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [108088 2013-07-17] (Avira Operations GmbH & Co. KG)
S4 AntiVirWebService; C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [815160 2013-08-09] (Avira Operations GmbH & Co. KG)
R2 DCService.exe; C:\ProgramData\DatacardService\DCService.exe [229376 2010-05-08] ()
R2 Printer Control; C:\Windows\system32\PrintCtrl.exe [77824 2012-01-20] (ActMask Co.,Ltd - HTTP://WWW.ALL2PDF.COM)
S2 vToolbarUpdater13.0.0;
==================== Drivers (Whitelisted) ====================
R3 a2acc; C:\PROGRAM FILES\EMSISOFT ANTI-MALWARE\a2accx86.sys [57944 2013-08-24] (Emsisoft GmbH)
R1 A2DDA; C:\Program Files\Emsisoft Anti-Malware\a2ddax86.sys [22056 2013-03-28] (Emsisoft GmbH)
R1 a2injectiondriver; C:\Program Files\Emsisoft Anti-Malware\a2dix86.sys [38248 2013-09-30] (Emsisoft GmbH)
R1 a2util; C:\Program Files\Emsisoft Anti-Malware\a2util32.sys [14432 2013-03-28] (Emsisoft GmbH)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [88840 2013-08-22] (Avira Operations GmbH & Co. KG)
R1 avgtp; C:\Windows\system32\drivers\avgtpx86.sys [26984 2012-10-07] (AVG Technologies)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [136672 2013-07-29] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-03-06] (Avira Operations GmbH & Co. KG)
R3 cleanhlp; C:\Program Files\Emsisoft Anti-Malware\cleanhlp32.sys [50200 2013-08-19] (Emsisoft GmbH)
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2012-08-27] (Avira GmbH)
U5 AppMgmt; C:\Windows\system32\svchost.exe [21504 2008-01-21] (Microsoft Corporation)
S3 catchme; No ImagePath
S3 IpInIp; No ImagePath
S3 NwlnkFlt; No ImagePath
S3 NwlnkFwd; No ImagePath
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-11-15 20:06 - 2013-11-15 20:08 - 00008390 _____ C:\Users\pc\Desktop\FRST.txt
2013-11-15 20:04 - 2013-11-15 20:04 - 00000000 ____D C:\FRST
2013-11-15 20:01 - 2013-11-15 20:02 - 01090529 _____ (Farbar) C:\Users\pc\Desktop\FRST.exe
2013-11-14 17:42 - 2013-10-13 11:42 - 12344832 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-11-14 17:42 - 2013-10-13 11:08 - 09739264 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-11-14 17:42 - 2013-10-13 10:48 - 01806848 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-11-14 17:42 - 2013-10-13 10:37 - 01104896 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-11-14 17:42 - 2013-10-13 10:35 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-11-14 17:42 - 2013-10-13 10:35 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-11-14 17:42 - 2013-10-13 10:33 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-11-14 17:42 - 2013-10-13 10:32 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-11-14 17:42 - 2013-10-13 10:30 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-11-14 17:42 - 2013-10-13 10:30 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-11-14 17:42 - 2013-10-13 10:29 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-11-14 17:42 - 2013-10-13 10:27 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-11-14 17:42 - 2013-10-13 10:27 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-11-14 17:42 - 2013-10-13 10:26 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-11-14 17:42 - 2013-10-13 10:25 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-11-14 17:42 - 2013-10-13 10:20 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-11-14 16:15 - 2013-10-11 03:08 - 00444928 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2013-11-14 16:15 - 2013-10-11 03:07 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2013-11-14 16:15 - 2013-10-11 01:39 - 00218228 _____ C:\Windows\system32\WFP.TMF
2013-11-14 16:15 - 2013-10-03 13:45 - 00993792 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2013-11-14 16:15 - 2013-10-03 13:45 - 00297984 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2013-11-14 16:04 - 2013-11-15 20:03 - 00096927 _____ C:\Windows\WindowsUpdate.log
2013-11-14 15:59 - 2013-11-14 15:59 - 00276144 _____ C:\Windows\system32\FNTCACHE.DAT
2013-11-14 15:59 - 2013-11-14 15:59 - 00001360 _____ C:\Windows\PFRO.log
2013-11-14 07:54 - 2013-11-14 07:54 - 00060640 _____ C:\Users\pc\AppData\Local\GDIPFONTCACHEV1.DAT
2013-11-13 11:55 - 2013-11-13 11:55 - 00002397 _____ C:\Users\pc\Desktop\FSS.txt
2013-11-12 21:37 - 2013-11-12 21:37 - 00000000 ____D C:\Program Files\ESET
2013-11-12 19:05 - 2013-11-12 19:11 - 00000000 ____D C:\AdwCleaner
2013-11-12 17:03 - 2013-11-12 17:04 - 00586560 _____ C:\EamClean.log
2013-11-11 04:06 - 2013-11-11 04:06 - 00000858 _____ C:\Users\Public\Desktop\Emsisoft Anti-Malware.lnk
2013-11-11 04:05 - 2013-11-15 20:04 - 00000000 ____D C:\Program Files\Emsisoft Anti-Malware
2013-11-11 04:05 - 2013-11-11 04:05 - 00000000 ____D C:\Users\pc\Documents\Anti-Malware
2013-11-09 17:35 - 2013-11-09 17:35 - 103387443 _____ C:\Windows\system32\섶㋨–
2013-11-06 18:02 - 2013-11-12 14:17 - 00000000 ____D C:\Users\pc\AppData\Roaming\Skype
2013-11-06 18:02 - 2013-11-11 09:42 - 00000000 ____D C:\ProgramData\Skype
2013-11-06 07:22 - 2013-11-06 07:22 - 00001638 _____ C:\Users\pc\Desktop\AbAlarm.lnk
2013-10-29 09:29 - 2013-11-15 19:48 - 00000294 _____ C:\Windows\Tasks\RegistryBooster.job
2013-10-29 09:29 - 2013-11-15 19:47 - 00000326 _____ C:\Windows\Tasks\rbmonitor.job
2013-10-29 04:59 - 2013-10-29 04:59 - 00000000 ____D C:\Users\pc\AppData\Roaming\NevoSoft Games
2013-10-29 04:57 - 2013-11-12 19:37 - 00000000 ____D C:\Program Files\OXXOGames
2013-10-28 10:48 - 2013-11-13 17:18 - 00000000 ____D C:\Users\pc\Desktop\Neuer Ordner
2013-10-27 19:21 - 2013-10-27 19:21 - 00001862 _____ C:\Users\Public\Desktop\Adobe Reader X.lnk
2013-10-27 19:20 - 2013-10-27 19:20 - 00000000 ____D C:\Program Files\Adobe
2013-10-27 17:06 - 2013-11-15 05:24 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-10-27 17:06 - 2013-10-27 17:06 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2013-10-27 17:06 - 2013-10-27 17:06 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2013-10-27 12:30 - 2013-10-27 12:30 - 00000000 ____D C:\ProgramData\Oracle
2013-10-27 12:30 - 2013-10-27 12:30 - 00000000 ____D C:\Program Files\Common Files\Java
2013-10-27 12:30 - 2013-10-27 12:29 - 00264616 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2013-10-27 12:29 - 2013-10-27 12:29 - 00175016 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2013-10-27 12:29 - 2013-10-27 12:29 - 00174504 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2013-10-27 12:29 - 2013-10-27 12:29 - 00094632 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2013-10-24 09:44 - 2013-10-30 09:35 - 00000000 ____D C:\Users\pc\Documents\Meine Scans
2013-10-22 19:41 - 2013-10-22 19:41 - 00000212 _____ C:\Users\pc\Desktop\drucker.lnk
2013-10-17 18:48 - 2012-01-23 06:34 - 00905216 _____ (ActMask hxxp://www.all2pdf.com) C:\Windows\system32\SaveTo.dll
2013-10-17 18:48 - 2011-11-13 18:03 - 04067736 _____ (DynaForms GmbH) C:\Windows\system32\CPDF3.dll
==================== One Month Modified Files and Folders =======
2013-11-15 20:08 - 2013-11-15 20:06 - 00008390 _____ C:\Users\pc\Desktop\FRST.txt
2013-11-15 20:04 - 2013-11-15 20:04 - 00000000 ____D C:\FRST
2013-11-15 20:04 - 2013-11-11 04:05 - 00000000 ____D C:\Program Files\Emsisoft Anti-Malware
2013-11-15 20:03 - 2013-11-14 16:04 - 00096927 _____ C:\Windows\WindowsUpdate.log
2013-11-15 20:02 - 2013-11-15 20:01 - 01090529 _____ (Farbar) C:\Users\pc\Desktop\FRST.exe
2013-11-15 19:50 - 2012-06-07 22:26 - 00000332 _____ C:\Windows\Tasks\HP Photo Creations Communicator.job
2013-11-15 19:48 - 2013-10-29 09:29 - 00000294 _____ C:\Windows\Tasks\RegistryBooster.job
2013-11-15 19:48 - 2012-09-01 19:03 - 00000260 _____ C:\Windows\Tasks\AbelssoftPreloader.job
2013-11-15 19:47 - 2013-10-29 09:29 - 00000326 _____ C:\Windows\Tasks\rbmonitor.job
2013-11-15 19:47 - 2013-10-11 11:41 - 00000254 _____ C:\Windows\Tasks\WashAndGoNGBackground.job
2013-11-15 19:47 - 2012-08-17 10:27 - 00000270 _____ C:\Windows\Tasks\CheckDriveBackgroundGuard.job
2013-11-15 19:44 - 2006-11-02 14:01 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-11-15 19:44 - 2006-11-02 13:47 - 00003216 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2013-11-15 19:44 - 2006-11-02 13:47 - 00003216 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2013-11-15 19:44 - 2006-11-02 13:37 - 00000000 ___RD C:\Users\Public\Recorded TV
2013-11-15 05:48 - 2006-11-02 14:01 - 00032530 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-11-15 05:24 - 2013-10-27 17:06 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-11-14 18:08 - 2006-11-02 12:18 - 00000000 ____D C:\Windows\rescache
2013-11-14 17:48 - 2006-11-02 12:18 - 00000000 ____D C:\Windows\system32\de-DE
2013-11-14 17:33 - 2013-10-11 10:50 - 00000000 ____D C:\Windows\system32\MRT
2013-11-14 17:28 - 2006-11-02 11:24 - 80340640 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2013-11-14 16:04 - 2006-11-02 11:23 - 00000179 _____ C:\Windows\win.ini
2013-11-14 15:59 - 2013-11-14 15:59 - 00276144 _____ C:\Windows\system32\FNTCACHE.DAT
2013-11-14 15:59 - 2013-11-14 15:59 - 00001360 _____ C:\Windows\PFRO.log
2013-11-14 07:54 - 2013-11-14 07:54 - 00060640 _____ C:\Users\pc\AppData\Local\GDIPFONTCACHEV1.DAT
2013-11-14 07:18 - 2006-11-02 11:33 - 01559288 _____ C:\Windows\system32\PerfStringBackup.INI
2013-11-13 17:18 - 2013-10-28 10:48 - 00000000 ____D C:\Users\pc\Desktop\Neuer Ordner
2013-11-13 11:55 - 2013-11-13 11:55 - 00002397 _____ C:\Users\pc\Desktop\FSS.txt
2013-11-13 09:46 - 2011-02-25 14:47 - 00000000 ____D C:\Users\pc\AppData\Local\Google
2013-11-13 09:46 - 2011-02-25 14:47 - 00000000 ____D C:\Program Files\Google
2013-11-12 21:37 - 2013-11-12 21:37 - 00000000 ____D C:\Program Files\ESET
2013-11-12 21:20 - 2011-02-25 15:30 - 00000000 ____D C:\Users\pc\AppData\Local\Adobe
2013-11-12 19:37 - 2013-10-29 04:57 - 00000000 ____D C:\Program Files\OXXOGames
2013-11-12 19:11 - 2013-11-12 19:05 - 00000000 ____D C:\AdwCleaner
2013-11-12 19:11 - 2012-07-11 09:56 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-11-12 19:10 - 2011-09-16 13:45 - 00000000 ____D C:\ProgramData\Uniblue
2013-11-12 17:04 - 2013-11-12 17:03 - 00586560 _____ C:\EamClean.log
2013-11-12 14:17 - 2013-11-06 18:02 - 00000000 ____D C:\Users\pc\AppData\Roaming\Skype
2013-11-11 09:42 - 2013-11-06 18:02 - 00000000 ____D C:\ProgramData\Skype
2013-11-11 04:06 - 2013-11-11 04:06 - 00000858 _____ C:\Users\Public\Desktop\Emsisoft Anti-Malware.lnk
2013-11-11 04:05 - 2013-11-11 04:05 - 00000000 ____D C:\Users\pc\Documents\Anti-Malware
2013-11-09 17:44 - 2011-05-07 02:20 - 00000000 ____D C:\Users\pc\AppData\Roaming\Dropbox
2013-11-09 17:42 - 2011-05-07 02:25 - 00000000 ___RD C:\Users\pc\Dropbox
2013-11-09 17:35 - 2013-11-09 17:35 - 103387443 _____ C:\Windows\system32\섶㋨–
2013-11-06 07:22 - 2013-11-06 07:22 - 00001638 _____ C:\Users\pc\Desktop\AbAlarm.lnk
2013-11-03 20:30 - 2010-10-15 17:12 - 00000000 ____D C:\Users\pc
2013-11-02 08:14 - 2011-10-29 19:03 - 00000000 ____D C:\Windows\CleverPrint
2013-11-02 08:12 - 2011-07-08 16:12 - 00000000 ____D C:\Program Files\MailXXL.com Tools
2013-11-02 08:11 - 2011-07-08 10:51 - 01095982 _____ C:\ndsvc.log
2013-11-02 08:07 - 2012-08-16 09:16 - 00000000 ____D C:\Program Files\Panda Security
2013-10-31 20:33 - 2011-02-05 09:46 - 00000000 ____D C:\Users\pc\Desktop\diverse
2013-10-30 09:35 - 2013-10-24 09:44 - 00000000 ____D C:\Users\pc\Documents\Meine Scans
2013-10-29 04:59 - 2013-10-29 04:59 - 00000000 ____D C:\Users\pc\AppData\Roaming\NevoSoft Games
2013-10-28 23:09 - 2006-11-02 12:18 - 00000000 ___RD C:\Users\Public
2013-10-27 19:21 - 2013-10-27 19:21 - 00001862 _____ C:\Users\Public\Desktop\Adobe Reader X.lnk
2013-10-27 19:20 - 2013-10-27 19:20 - 00000000 ____D C:\Program Files\Adobe
2013-10-27 19:20 - 2011-06-29 19:12 - 00000000 ____D C:\Program Files\Common Files\Adobe
2013-10-27 19:20 - 2011-02-25 14:50 - 00000000 ____D C:\ProgramData\Adobe
2013-10-27 17:06 - 2013-10-27 17:06 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2013-10-27 17:06 - 2013-10-27 17:06 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2013-10-27 12:30 - 2013-10-27 12:30 - 00000000 ____D C:\ProgramData\Oracle
2013-10-27 12:30 - 2013-10-27 12:30 - 00000000 ____D C:\Program Files\Common Files\Java
2013-10-27 12:29 - 2013-10-27 12:30 - 00264616 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2013-10-27 12:29 - 2013-10-27 12:29 - 00175016 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2013-10-27 12:29 - 2013-10-27 12:29 - 00174504 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2013-10-27 12:29 - 2013-10-27 12:29 - 00094632 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2013-10-27 12:29 - 2011-07-02 15:35 - 00000000 ____D C:\Program Files\Java
2013-10-25 20:25 - 2012-07-22 08:55 - 00000000 ____D C:\Users\pc\AppData\Local\Paint.NET
2013-10-24 20:04 - 2011-05-07 02:21 - 00000000 ____D C:\Users\pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2013-10-22 19:41 - 2013-10-22 19:41 - 00000212 _____ C:\Users\pc\Desktop\drucker.lnk
2013-10-21 00:01 - 2011-05-07 02:25 - 00000920 _____ C:\Users\pc\Desktop\Dropbox.lnk
2013-10-20 23:22 - 2010-10-19 02:53 - 00000000 ____D C:\Users\pc\AppData\Local\Microsoft Games
2013-10-16 21:17 - 2011-04-04 20:27 - 00000000 ____D C:\Users\pc\AppData\Roaming\HpUpdate
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-11-15 19:52
==================== End Of Log ============================ --- --- ---
--- --- ---
--- --- ---
Das andere Ding kommt gleich noch.
lg Code:
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 14-11-2013
Ran by pc at 2013-11-15 20:09:22
Running from C:\Users\pc\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Emsisoft Anti-Malware (Enabled - Out of date) {8504DEEF-CC04-1F76-2137-F1A5F4A659DA}
AV: Avira Desktop (Enabled - Up to date) {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
AS: Avira Desktop (Enabled - Up to date) {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Emsisoft Anti-Malware (Enabled - Out of date) {3E653F0B-EA3E-10F8-1B87-CAD78F211367}
==================== Installed Programs ======================
32 Bit HP CIO Components Installer (Version: 1.0.0)
AbAlarm (Version: 6.2)
Adobe Flash Player 11 ActiveX (Version: 11.9.900.117)
Adobe Reader X (10.1.8) - Deutsch (Version: 10.1.8)
AIO_CDB_ProductContext (Version: 82.0.242.000)
AIO_CDB_Software (Version: 82.0.242.000)
AIO_Scan (Version: 82.0.173.000)
Atheros Client Installation Program (Version: 7.0)
Avira Free Antivirus (Version: 13.0.0.4052)
BufferChm (Version: 82.0.173.000)
Cisco EAP-FAST Module (Version: 2.1.6)
Cisco LEAP Module (Version: 1.0.12)
Cisco PEAP Module (Version: 1.0.13)
Copy (Version: 82.0.188.000)
CustomerResearchQFolder (Version: 1.00.0000)
Destinations (Version: 82.0.173.000)
DeviceManagementQFolder (Version: 1.00.0000)
DocProc (Version: 8.1.0.0)
DocProcQFolder (Version: 1.00.0000)
Dropbox (HKCU Version: 2.0.22)
Emsisoft Anti-Malware (Version: 8.1)
ESET Online Scanner v3
eSupportQFolder (Version: 1.00.0000)
F300 (Version: 82.0.242.000)
F300_Help (Version: 82.0.242.000)
F300Trb (Version: 82.0.242.000)
Fax (Version: 82.0.188.000)
Google Earth (Version: 6.2.2.6613)
HP Customer Participation Program 8.0 (Version: 8.0)
HP Imaging Device Functions 8.0 (Version: 8.0)
HP OCR Software 8.0 (Version: 8.0)
HP Photo Creations (Version: 1.0.0.7702)
HP Photosmart Essential (Version: 1.12.0.46)
HP Photosmart, Officejet, PSC and Deskjet All-In-One Driver Software 8.0.B (Version: 8.0)
HP Solution Center 8.0 (Version: 8.0)
HP Update (Version: 5.002.007.004)
HPProductAssistant (Version: 82.0.173.000)
HPSSupply (Version: 2.1.3.0000)
Intel(R) Graphics Media Accelerator Driver
Java 7 Update 45 (Version: 7.0.450)
Java Auto Updater (Version: 2.1.9.8)
Lunascape6 (All Users) (Version: 6.8.9.27075)
MarketResearch (Version: 82.0.174.000)
Microsoft .NET Framework 3.5 Language Pack SP1 - DEU
Microsoft .NET Framework 3.5 Language Pack SP1 - deu (Version: 3.5.30729)
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319)
Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.56336)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (Version: 10.0.40219)
Mobile Partner (Version: 11.302.09.04.382)
MSXML 4.0 SP2 (KB927978) (Version: 4.20.9841.0)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
MyKeyFinder (Version: 2012)
Paint.NET v3.5.10 (Version: 3.60.0)
Realtek 8169 8168 8101E 8102E Ethernet Driver (Version: 1.00.0000)
Realtek High Definition Audio Driver (Version: 6.0.1.5618)
Scan (Version: 8.1.0.0)
SolutionCenter (Version: 82.0.188.000)
Status (Version: 82.0.173.000)
Toolbox (Version: 82.0.173.000)
TrayApp (Version: 82.0.188.000)
Uniblue RegistryBooster (Version: 6.1.1.3)
UnloadSupport (Version: 1.00.0000)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2473228) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (Version: 3)
Update for Microsoft .NET Framework 4 Extended (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2600217) (Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2836939v3) (Version: 3)
Visual C++ 9.0 CRT (x86) WinSXS MSM (Version: 9.0)
WashAndGo (Version: 17.7)
WebReg (Version: 82.0.173.000)
YouTube Song Downloader (Version: 8.2)
==================== Restore Points =========================
13-11-2013 08:36:23 Removed Apple Software Update
13-11-2013 08:48:09 Removed Bonjour
13-11-2013 10:21:05 Removed Safari
13-11-2013 10:23:53 Removed Apple Application Support
13-11-2013 10:31:48 Removed Apple Application Support
14-11-2013 16:26:44 Windows Update
==================== Hosts content: ==========================
2006-11-02 11:23 - 2006-09-18 22:41 - 00000761 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
::1 localhost
==================== Scheduled Tasks (whitelisted) =============
Task: {0AD797DB-679C-4254-BF1F-187451269FBE} - System32\Tasks\RunAsStdUser Task => C:\Program Files\NetDrive\netdrive.exe
Task: {0B923855-EFEC-4D6E-BF2C-25DC4D5D10FF} - System32\Tasks\WebReg Deskjet F300 series => C:\Program Files\HP\Digital Imaging\bin\hpqwrg.exe [2006-12-10] (Hewlett-Packard Co.)
Task: {139DBA5E-5972-4876-81F7-3862E17F0935} - System32\Tasks\Microsoft\Windows\MUI\Lpksetup => C:\Windows\System32\lpksetup.exe [2008-01-21] (Microsoft Corporation)
Task: {1CC81347-6204-4B83-900C-01E02F50F067} - System32\Tasks\Microsoft\Windows\MobilePC\TMM
Task: {2A4342E7-3E82-45C5-A530-C547532D3E76} - System32\Tasks\Microsoft\Windows\WindowsCalendar\Reminders - pc => C:\Program Files\Windows Calendar\WinCal.exe [2009-04-11] (Microsoft Corporation)
Task: {2DE1ED62-3B3F-4610-86ED-E838057F6213} - System32\Tasks\Java Update Scheduler => C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-07-02] (Oracle Corporation)
Task: {320124A7-D70F-41DE-A9D1-D5E8E19D5D91} - System32\Tasks\Microsoft\Windows\NetworkAccessProtection\NAPStatus UI
Task: {3BCDF251-CA5C-4045-A1FC-8FCEF9FBDC93} - System32\Tasks\Microsoft\Windows\Shell\CrawlStartPages
Task: {44980BEE-7809-44A9-AC24-D6E578A3B7DF} - System32\Tasks\Microsoft\Windows\RAC\RACAgent => C:\Windows\System32\RacAgent.exe [2008-01-21] (Microsoft Corporation)
Task: {47CC68FF-DD27-4AC9-BD10-1206F7305F4A} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04] (Adobe Systems Incorporated)
Task: {51C71A63-7357-4492-80C2-B8A4B3E96899} - System32\Tasks\AbelssoftPreloader => C:\Program Files\WashAndGo\AbelssoftPreloader.exe [2012-09-24] (Microsoft)
Task: {5DF25F26-1DD4-42AF-A7D5-8AF413AA526D} - System32\Tasks\Microsoft\Windows Defender\MP Scheduled Signature Update => C:\Program Files\Windows Defender\MpCmdRun.exe [2008-01-21] (Microsoft Corporation)
Task: {724DD079-074D-48F7-84FC-129CAE9457D2} - System32\Tasks\rbmonitor => C:\Program Files\Uniblue\RegistryBooster\rbmonitor.exe [2013-08-21] (Uniblue Systems Limited)
Task: {75C473BC-8CAD-499B-8316-EFD367B24770} - System32\Tasks\WashAndGoNGBackground => C:\Program Files\WashAndGo\WashAndGo.exe [2012-09-24] (Microsoft)
Task: {793C7D04-E0F7-41B2-9376-BCB3BC77411B} - System32\Tasks\CheckDriveBackgroundGuard => C:\Program Files\CheckDrive\CheckDriveBackgroundGuard.exe
Task: {8CFE559A-52BC-433E-B3B9-E2296815C970} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-10-27] (Adobe Systems Incorporated)
Task: {99982336-9432-499D-A415-B1D0E9EE6E6A} - System32\Tasks\HP-Online-Aktualisierungsprogramm => C:\Program Files\HP\HP Software Update\hpwuSchd2.exe [2006-12-10] (Hewlett-Packard Co.)
Task: {A728AE6B-5AB8-4223-AD3E-E6341441A01C} - System32\Tasks\Microsoft\Windows\PLA\System\ConvertLogEntries => C:\Windows\System32\pla.dll [2008-01-21] (Microsoft Corporation)
Task: {A7F9AF08-9C24-4D9D-A77B-6C6A29823CB3} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\System32\browserchoice.exe [2010-02-12] (Microsoft Corporation)
Task: {CC5A7CB0-4962-4392-8465-2DA2116D2672} - System32\Tasks\RegistryBooster => C:\Program Files\Uniblue\RegistryBooster\registrybooster.exe [2013-08-21] (Uniblue Systems Limited)
Task: {DC45E898-AF81-4A07-ABC9-73FCDB16504C} - System32\Tasks\HP Photo Creations Communicator => C:\ProgramData\HP Photo Creations\MessageCheck.exe [2011-03-02] ()
Task: {E5150B95-F9B4-4D5D-95A2-7EC1ACBA95F8} - System32\Tasks\Microsoft\Windows\Wireless\GatherWirelessInfo => C:\Windows\System32\gatherWirelessInfo.vbs [2008-01-21] ()
Task: C:\Windows\Tasks\AbelssoftPreloader.job => C:\Program Files\WashAndGo\AbelssoftPreloader.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\CheckDriveBackgroundGuard.job => C:\Program Files\CheckDrive\CheckDriveBackgroundGuard.exe
Task: C:\Windows\Tasks\HP Photo Creations Communicator.job => C:\ProgramData\HP Photo Creations\MessageCheck.exe
Task: C:\Windows\Tasks\rbmonitor.job => C:\Program Files\Uniblue\RegistryBooster\rbmonitor.exe
Task: C:\Windows\Tasks\RegistryBooster.job => C:\Program Files\Uniblue\RegistryBooster\registrybooster.exe
Task: C:\Windows\Tasks\WashAndGoNGBackground.job => C:\Program Files\WashAndGo\WashAndGo.exe
Task: C:\Windows\Tasks\WebReg Deskjet F300 series.job => C:\Program Files\HP\Digital Imaging\bin\hpqwrg.exe
==================== Loaded Modules (whitelisted) =============
2011-06-27 15:24 - 2007-08-23 15:39 - 00014848 _____ () C:\Program Files\Mobile Partner\isaputrace.dll
2011-06-27 15:24 - 2009-12-10 10:51 - 00114688 _____ () C:\Program Files\Mobile Partner\DeviceMgrPlugin.dll
2011-06-27 15:24 - 2009-09-19 10:21 - 00139264 _____ () C:\Program Files\Mobile Partner\NetInfoPlugin.dll
2011-06-27 15:24 - 2009-06-18 09:48 - 00090112 _____ () C:\Program Files\Mobile Partner\DialUpPlugin.dll
2011-06-27 15:24 - 2009-06-18 09:54 - 00057344 _____ () C:\Program Files\Mobile Partner\ConfigFilePlugin.dll
2011-06-27 15:24 - 2009-12-10 10:40 - 00991232 _____ () C:\Program Files\Mobile Partner\NDISAPI.dll
2011-06-27 15:24 - 2009-05-23 10:02 - 00155648 _____ () C:\Program Files\Mobile Partner\DetectDev.dll
2011-06-27 15:24 - 2009-05-23 10:02 - 00557056 _____ () C:\Program Files\Mobile Partner\atcomm.dll
2011-06-27 15:24 - 2009-05-23 10:02 - 00061440 _____ () C:\Program Files\Mobile Partner\XCodec.dll
2011-06-27 15:24 - 2009-05-23 10:02 - 00061440 _____ () C:\Program Files\Mobile Partner\DeviceOperate.dll
2011-06-27 15:24 - 2009-06-18 09:56 - 00032768 _____ () C:\Program Files\Mobile Partner\NotifyServicePlugin.dll
2011-06-27 15:24 - 2009-12-10 10:52 - 00192512 _____ () C:\Program Files\Mobile Partner\DeviceMgrUIPlugin.dll
2011-06-27 15:24 - 2009-06-19 14:10 - 00143360 _____ () C:\Program Files\Mobile Partner\LocaleMgrPlugin.dll
2011-06-27 15:24 - 2007-07-31 14:50 - 00090112 _____ () C:\Program Files\Mobile Partner\FileManager.dll
2011-06-27 15:24 - 2009-06-19 14:10 - 00159744 _____ () C:\Program Files\Mobile Partner\SMSPlugin.dll
2013-10-27 12:29 - 2013-10-27 12:29 - 00201640 _____ () C:\Program Files\Java\jre7\bin\jp2iexp.dll
2013-10-27 12:29 - 2013-10-27 12:29 - 00016808 _____ () C:\Program Files\Java\jre7\bin\jp2native.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CleanHlp => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CleanHlp.sys => ""="Driver"
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (11/14/2013 04:00:06 PM) (Source: Windows Search Service) (User: )
Description: Die Anwendung kann nicht initialisiert werden.
Kontext: Windows Anwendung
Details:
Die Inhaltsindex-Metadaten können nicht gelesen werden. (0xc0041801)
Error: (11/14/2013 04:00:06 PM) (Source: Windows Search Service) (User: )
Description: Das Gatherer-Objekt kann nicht initialisiert werden.
Kontext: Windows Anwendung, SystemIndex Katalog
Details:
Die Inhaltsindex-Metadaten können nicht gelesen werden. (0xc0041801)
Error: (11/14/2013 04:00:06 PM) (Source: Windows Search Service) (User: )
Description: Plug-In in <Search.TripoliIndexer> kann nicht initialisiert werden.
Kontext: Windows Anwendung, SystemIndex Katalog
Details:
Element nicht gefunden. (0x80070490)
Error: (11/14/2013 04:00:05 PM) (Source: Windows Search Service) (User: )
Description: Plug-In in <Search.JetPropStore> kann nicht initialisiert werden.
Kontext: Windows Anwendung, SystemIndex Katalog
Details:
Die Inhaltsindex-Metadaten können nicht gelesen werden. (0xc0041801)
Error: (11/14/2013 04:00:05 PM) (Source: Windows Search Service) (User: )
Description: Die Eigenschaftenspeicherdaten können vom Windows-Suchdienst nicht geladen werden.
Kontext: Windows Anwendung, SystemIndex Katalog
Details:
0x%08x (0xc0041800 - Der Inhaltsindex kann nicht gelesen werden. )
Error: (11/14/2013 04:00:05 PM) (Source: Windows Search Service) (User: )
Description: Der Suchdienst hat beschädigte Datendateien im Index erkannt. Der Dienst versucht, dieses Problem durch Neuerstellung des Index automatisch zu beheben.
Details:
Die Inhaltsindex-Metadaten können nicht gelesen werden. (0xc0041801)
Error: (11/14/2013 04:00:04 PM) (Source: Windows Search Service) (User: )
Description: Der Jet-Eigenschaftenspeicher kann vom Windows-Suchdienst nicht geöffnet werden.
Details:
Der Inhaltsindex kann nicht gelesen werden. (0xc0041800)
Error: (11/14/2013 04:00:04 PM) (Source: ESENT) (User: )
Description: Windows (2112) Windows: Fehler -1811 (0xfffff8ed) beim Öffnen von Protokolldatei C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS.log.
System errors:
=============
Error: (11/15/2013 07:48:14 PM) (Source: Microsoft-Windows-LanguagePackSetup) (User: NT-AUTORITÄT)
Description: 0x80070032
Error: (11/15/2013 07:45:40 PM) (Source: Service Control Manager) (User: )
Description: vToolbarUpdater13.0.0%%3
Error: (11/15/2013 07:45:40 PM) (Source: Service Control Manager) (User: )
Description: Net.Tcp-ListeneradapterNet.Tcp-Portfreigabedienst%%1058
Error: (11/15/2013 07:45:40 PM) (Source: Service Control Manager) (User: )
Description: Net.Pipe-Listeneradapterwas
Error: (11/15/2013 07:45:40 PM) (Source: Service Control Manager) (User: )
Description: Net.Msmq-Listeneradaptermsmq
Error: (11/15/2013 05:15:53 AM) (Source: Microsoft-Windows-LanguagePackSetup) (User: NT-AUTORITÄT)
Description: 0x80070032
Error: (11/15/2013 05:12:31 AM) (Source: Service Control Manager) (User: )
Description: vToolbarUpdater13.0.0%%3
Error: (11/15/2013 05:12:31 AM) (Source: Service Control Manager) (User: )
Description: Net.Tcp-ListeneradapterNet.Tcp-Portfreigabedienst%%1058
Error: (11/15/2013 05:12:31 AM) (Source: Service Control Manager) (User: )
Description: Net.Pipe-Listeneradapterwas
Error: (11/15/2013 05:12:31 AM) (Source: Service Control Manager) (User: )
Description: Net.Msmq-Listeneradaptermsmq
Microsoft Office Sessions:
=========================
Error: (11/14/2013 04:00:06 PM) (Source: Windows Search Service)(User: )
Description: Kontext: Windows Anwendung
Details:
Die Inhaltsindex-Metadaten können nicht gelesen werden. (0xc0041801)
Error: (11/14/2013 04:00:06 PM) (Source: Windows Search Service)(User: )
Description: Kontext: Windows Anwendung, SystemIndex Katalog
Details:
Die Inhaltsindex-Metadaten können nicht gelesen werden. (0xc0041801)
Error: (11/14/2013 04:00:06 PM) (Source: Windows Search Service)(User: )
Description: Kontext: Windows Anwendung, SystemIndex Katalog
Details:
Element nicht gefunden. (0x80070490)
Search.TripoliIndexer
Error: (11/14/2013 04:00:05 PM) (Source: Windows Search Service)(User: )
Description: Kontext: Windows Anwendung, SystemIndex Katalog
Details:
Die Inhaltsindex-Metadaten können nicht gelesen werden. (0xc0041801)
Search.JetPropStore
Error: (11/14/2013 04:00:05 PM) (Source: Windows Search Service)(User: )
Description: Kontext: Windows Anwendung, SystemIndex Katalog
Details:
0x%08x (0xc0041800 - Der Inhaltsindex kann nicht gelesen werden. )
Error: (11/14/2013 04:00:05 PM) (Source: Windows Search Service)(User: )
Description:
Details:
Die Inhaltsindex-Metadaten können nicht gelesen werden. (0xc0041801)
Error: (11/14/2013 04:00:04 PM) (Source: Windows Search Service)(User: )
Description:
Details:
Der Inhaltsindex kann nicht gelesen werden. (0xc0041800)
Error: (11/14/2013 04:00:04 PM) (Source: ESENT)(User: )
Description: Windows2112Windows: C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS.log-1811 (0xfffff8ed)
CodeIntegrity Errors:
===================================
Date: 2012-10-20 17:13:05.162
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22713_none_b39feb737f8937a0\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-10-20 17:13:04.538
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22713_none_b39feb737f8937a0\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-10-20 17:13:03.883
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22713_none_b39feb737f8937a0\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-10-20 17:13:03.259
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22713_none_b39feb737f8937a0\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-10-20 17:13:02.635
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22713_none_b39feb737f8937a0\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-10-20 17:13:02.011
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22713_none_b39feb737f8937a0\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-10-20 17:13:01.324
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22636_none_b38d4a937f96be60\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-10-20 17:13:00.700
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22636_none_b38d4a937f96be60\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-10-20 17:13:00.061
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22636_none_b38d4a937f96be60\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-10-20 17:12:59.437
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22636_none_b38d4a937f96be60\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
==================== Memory info ===========================
Percentage of memory in use: 51%
Total physical RAM: 2038.64 MB
Available physical RAM: 997.35 MB
Total Pagefile: 4326.32 MB
Available Pagefile: 2293.53 MB
Total Virtual: 2047.88 MB
Available Virtual: 1911.21 MB
==================== Drives ================================
Drive c: (OS_Install) (Fixed) (Total:63.48 GB) (Free:33.84 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: (Mobile Partner) (CDROM) (Total:0.02 GB) (Free:0 GB) CDFS
Drive e: (Data) (Fixed) (Total:387.63 GB) (Free:359 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 466 GB) (Disk ID: 9AC9B968)
Partition 1: (Not Active) - (Size=15 GB) - (Type=27)
Partition 2: (Active) - (Size=63 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=388 GB) - (Type=07 NTFS)
==================== End Of Log ============================Additional scan result of Farbar Recovery Scan Tool (x86) Version: 14-11-2013
Ran by pc at 2013-11-15 20:09:22
Running from C:\Users\pc\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Emsisoft Anti-Malware (Enabled - Out of date) {8504DEEF-CC04-1F76-2137-F1A5F4A659DA}
AV: Avira Desktop (Enabled - Up to date) {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
AS: Avira Desktop (Enabled - Up to date) {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Emsisoft Anti-Malware (Enabled - Out of date) {3E653F0B-EA3E-10F8-1B87-CAD78F211367}
==================== Installed Programs ======================
32 Bit HP CIO Components Installer (Version: 1.0.0)
AbAlarm (Version: 6.2)
Adobe Flash Player 11 ActiveX (Version: 11.9.900.117)
Adobe Reader X (10.1.8) - Deutsch (Version: 10.1.8)
AIO_CDB_ProductContext (Version: 82.0.242.000)
AIO_CDB_Software (Version: 82.0.242.000)
AIO_Scan (Version: 82.0.173.000)
Atheros Client Installation Program (Version: 7.0)
Avira Free Antivirus (Version: 13.0.0.4052)
BufferChm (Version: 82.0.173.000)
Cisco EAP-FAST Module (Version: 2.1.6)
Cisco LEAP Module (Version: 1.0.12)
Cisco PEAP Module (Version: 1.0.13)
Copy (Version: 82.0.188.000)
CustomerResearchQFolder (Version: 1.00.0000)
Destinations (Version: 82.0.173.000)
DeviceManagementQFolder (Version: 1.00.0000)
DocProc (Version: 8.1.0.0)
DocProcQFolder (Version: 1.00.0000)
Dropbox (HKCU Version: 2.0.22)
Emsisoft Anti-Malware (Version: 8.1)
ESET Online Scanner v3
eSupportQFolder (Version: 1.00.0000)
F300 (Version: 82.0.242.000)
F300_Help (Version: 82.0.242.000)
F300Trb (Version: 82.0.242.000)
Fax (Version: 82.0.188.000)
Google Earth (Version: 6.2.2.6613)
HP Customer Participation Program 8.0 (Version: 8.0)
HP Imaging Device Functions 8.0 (Version: 8.0)
HP OCR Software 8.0 (Version: 8.0)
HP Photo Creations (Version: 1.0.0.7702)
HP Photosmart Essential (Version: 1.12.0.46)
HP Photosmart, Officejet, PSC and Deskjet All-In-One Driver Software 8.0.B (Version: 8.0)
HP Solution Center 8.0 (Version: 8.0)
HP Update (Version: 5.002.007.004)
HPProductAssistant (Version: 82.0.173.000)
HPSSupply (Version: 2.1.3.0000)
Intel(R) Graphics Media Accelerator Driver
Java 7 Update 45 (Version: 7.0.450)
Java Auto Updater (Version: 2.1.9.8)
Lunascape6 (All Users) (Version: 6.8.9.27075)
MarketResearch (Version: 82.0.174.000)
Microsoft .NET Framework 3.5 Language Pack SP1 - DEU
Microsoft .NET Framework 3.5 Language Pack SP1 - deu (Version: 3.5.30729)
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319)
Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.56336)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (Version: 10.0.40219)
Mobile Partner (Version: 11.302.09.04.382)
MSXML 4.0 SP2 (KB927978) (Version: 4.20.9841.0)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
MyKeyFinder (Version: 2012)
Paint.NET v3.5.10 (Version: 3.60.0)
Realtek 8169 8168 8101E 8102E Ethernet Driver (Version: 1.00.0000)
Realtek High Definition Audio Driver (Version: 6.0.1.5618)
Scan (Version: 8.1.0.0)
SolutionCenter (Version: 82.0.188.000)
Status (Version: 82.0.173.000)
Toolbox (Version: 82.0.173.000)
TrayApp (Version: 82.0.188.000)
Uniblue RegistryBooster (Version: 6.1.1.3)
UnloadSupport (Version: 1.00.0000)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2473228) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (Version: 3)
Update for Microsoft .NET Framework 4 Extended (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2600217) (Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2836939v3) (Version: 3)
Visual C++ 9.0 CRT (x86) WinSXS MSM (Version: 9.0)
WashAndGo (Version: 17.7)
WebReg (Version: 82.0.173.000)
YouTube Song Downloader (Version: 8.2)
==================== Restore Points =========================
13-11-2013 08:36:23 Removed Apple Software Update
13-11-2013 08:48:09 Removed Bonjour
13-11-2013 10:21:05 Removed Safari
13-11-2013 10:23:53 Removed Apple Application Support
13-11-2013 10:31:48 Removed Apple Application Support
14-11-2013 16:26:44 Windows Update
==================== Hosts content: ==========================
2006-11-02 11:23 - 2006-09-18 22:41 - 00000761 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
::1 localhost
==================== Scheduled Tasks (whitelisted) =============
Task: {0AD797DB-679C-4254-BF1F-187451269FBE} - System32\Tasks\RunAsStdUser Task => C:\Program Files\NetDrive\netdrive.exe
Task: {0B923855-EFEC-4D6E-BF2C-25DC4D5D10FF} - System32\Tasks\WebReg Deskjet F300 series => C:\Program Files\HP\Digital Imaging\bin\hpqwrg.exe [2006-12-10] (Hewlett-Packard Co.)
Task: {139DBA5E-5972-4876-81F7-3862E17F0935} - System32\Tasks\Microsoft\Windows\MUI\Lpksetup => C:\Windows\System32\lpksetup.exe [2008-01-21] (Microsoft Corporation)
Task: {1CC81347-6204-4B83-900C-01E02F50F067} - System32\Tasks\Microsoft\Windows\MobilePC\TMM
Task: {2A4342E7-3E82-45C5-A530-C547532D3E76} - System32\Tasks\Microsoft\Windows\WindowsCalendar\Reminders - pc => C:\Program Files\Windows Calendar\WinCal.exe [2009-04-11] (Microsoft Corporation)
Task: {2DE1ED62-3B3F-4610-86ED-E838057F6213} - System32\Tasks\Java Update Scheduler => C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-07-02] (Oracle Corporation)
Task: {320124A7-D70F-41DE-A9D1-D5E8E19D5D91} - System32\Tasks\Microsoft\Windows\NetworkAccessProtection\NAPStatus UI
Task: {3BCDF251-CA5C-4045-A1FC-8FCEF9FBDC93} - System32\Tasks\Microsoft\Windows\Shell\CrawlStartPages
Task: {44980BEE-7809-44A9-AC24-D6E578A3B7DF} - System32\Tasks\Microsoft\Windows\RAC\RACAgent => C:\Windows\System32\RacAgent.exe [2008-01-21] (Microsoft Corporation)
Task: {47CC68FF-DD27-4AC9-BD10-1206F7305F4A} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04] (Adobe Systems Incorporated)
Task: {51C71A63-7357-4492-80C2-B8A4B3E96899} - System32\Tasks\AbelssoftPreloader => C:\Program Files\WashAndGo\AbelssoftPreloader.exe [2012-09-24] (Microsoft)
Task: {5DF25F26-1DD4-42AF-A7D5-8AF413AA526D} - System32\Tasks\Microsoft\Windows Defender\MP Scheduled Signature Update => C:\Program Files\Windows Defender\MpCmdRun.exe [2008-01-21] (Microsoft Corporation)
Task: {724DD079-074D-48F7-84FC-129CAE9457D2} - System32\Tasks\rbmonitor => C:\Program Files\Uniblue\RegistryBooster\rbmonitor.exe [2013-08-21] (Uniblue Systems Limited)
Task: {75C473BC-8CAD-499B-8316-EFD367B24770} - System32\Tasks\WashAndGoNGBackground => C:\Program Files\WashAndGo\WashAndGo.exe [2012-09-24] (Microsoft)
Task: {793C7D04-E0F7-41B2-9376-BCB3BC77411B} - System32\Tasks\CheckDriveBackgroundGuard => C:\Program Files\CheckDrive\CheckDriveBackgroundGuard.exe
Task: {8CFE559A-52BC-433E-B3B9-E2296815C970} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-10-27] (Adobe Systems Incorporated)
Task: {99982336-9432-499D-A415-B1D0E9EE6E6A} - System32\Tasks\HP-Online-Aktualisierungsprogramm => C:\Program Files\HP\HP Software Update\hpwuSchd2.exe [2006-12-10] (Hewlett-Packard Co.)
Task: {A728AE6B-5AB8-4223-AD3E-E6341441A01C} - System32\Tasks\Microsoft\Windows\PLA\System\ConvertLogEntries => C:\Windows\System32\pla.dll [2008-01-21] (Microsoft Corporation)
Task: {A7F9AF08-9C24-4D9D-A77B-6C6A29823CB3} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\System32\browserchoice.exe [2010-02-12] (Microsoft Corporation)
Task: {CC5A7CB0-4962-4392-8465-2DA2116D2672} - System32\Tasks\RegistryBooster => C:\Program Files\Uniblue\RegistryBooster\registrybooster.exe [2013-08-21] (Uniblue Systems Limited)
Task: {DC45E898-AF81-4A07-ABC9-73FCDB16504C} - System32\Tasks\HP Photo Creations Communicator => C:\ProgramData\HP Photo Creations\MessageCheck.exe [2011-03-02] ()
Task: {E5150B95-F9B4-4D5D-95A2-7EC1ACBA95F8} - System32\Tasks\Microsoft\Windows\Wireless\GatherWirelessInfo => C:\Windows\System32\gatherWirelessInfo.vbs [2008-01-21] ()
Task: C:\Windows\Tasks\AbelssoftPreloader.job => C:\Program Files\WashAndGo\AbelssoftPreloader.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\CheckDriveBackgroundGuard.job => C:\Program Files\CheckDrive\CheckDriveBackgroundGuard.exe
Task: C:\Windows\Tasks\HP Photo Creations Communicator.job => C:\ProgramData\HP Photo Creations\MessageCheck.exe
Task: C:\Windows\Tasks\rbmonitor.job => C:\Program Files\Uniblue\RegistryBooster\rbmonitor.exe
Task: C:\Windows\Tasks\RegistryBooster.job => C:\Program Files\Uniblue\RegistryBooster\registrybooster.exe
Task: C:\Windows\Tasks\WashAndGoNGBackground.job => C:\Program Files\WashAndGo\WashAndGo.exe
Task: C:\Windows\Tasks\WebReg Deskjet F300 series.job => C:\Program Files\HP\Digital Imaging\bin\hpqwrg.exe
==================== Loaded Modules (whitelisted) =============
2011-06-27 15:24 - 2007-08-23 15:39 - 00014848 _____ () C:\Program Files\Mobile Partner\isaputrace.dll
2011-06-27 15:24 - 2009-12-10 10:51 - 00114688 _____ () C:\Program Files\Mobile Partner\DeviceMgrPlugin.dll
2011-06-27 15:24 - 2009-09-19 10:21 - 00139264 _____ () C:\Program Files\Mobile Partner\NetInfoPlugin.dll
2011-06-27 15:24 - 2009-06-18 09:48 - 00090112 _____ () C:\Program Files\Mobile Partner\DialUpPlugin.dll
2011-06-27 15:24 - 2009-06-18 09:54 - 00057344 _____ () C:\Program Files\Mobile Partner\ConfigFilePlugin.dll
2011-06-27 15:24 - 2009-12-10 10:40 - 00991232 _____ () C:\Program Files\Mobile Partner\NDISAPI.dll
2011-06-27 15:24 - 2009-05-23 10:02 - 00155648 _____ () C:\Program Files\Mobile Partner\DetectDev.dll
2011-06-27 15:24 - 2009-05-23 10:02 - 00557056 _____ () C:\Program Files\Mobile Partner\atcomm.dll
2011-06-27 15:24 - 2009-05-23 10:02 - 00061440 _____ () C:\Program Files\Mobile Partner\XCodec.dll
2011-06-27 15:24 - 2009-05-23 10:02 - 00061440 _____ () C:\Program Files\Mobile Partner\DeviceOperate.dll
2011-06-27 15:24 - 2009-06-18 09:56 - 00032768 _____ () C:\Program Files\Mobile Partner\NotifyServicePlugin.dll
2011-06-27 15:24 - 2009-12-10 10:52 - 00192512 _____ () C:\Program Files\Mobile Partner\DeviceMgrUIPlugin.dll
2011-06-27 15:24 - 2009-06-19 14:10 - 00143360 _____ () C:\Program Files\Mobile Partner\LocaleMgrPlugin.dll
2011-06-27 15:24 - 2007-07-31 14:50 - 00090112 _____ () C:\Program Files\Mobile Partner\FileManager.dll
2011-06-27 15:24 - 2009-06-19 14:10 - 00159744 _____ () C:\Program Files\Mobile Partner\SMSPlugin.dll
2013-10-27 12:29 - 2013-10-27 12:29 - 00201640 _____ () C:\Program Files\Java\jre7\bin\jp2iexp.dll
2013-10-27 12:29 - 2013-10-27 12:29 - 00016808 _____ () C:\Program Files\Java\jre7\bin\jp2native.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CleanHlp => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CleanHlp.sys => ""="Driver"
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (11/14/2013 04:00:06 PM) (Source: Windows Search Service) (User: )
Description: Die Anwendung kann nicht initialisiert werden.
Kontext: Windows Anwendung
Details:
Die Inhaltsindex-Metadaten können nicht gelesen werden. (0xc0041801)
Error: (11/14/2013 04:00:06 PM) (Source: Windows Search Service) (User: )
Description: Das Gatherer-Objekt kann nicht initialisiert werden.
Kontext: Windows Anwendung, SystemIndex Katalog
Details:
Die Inhaltsindex-Metadaten können nicht gelesen werden. (0xc0041801)
Error: (11/14/2013 04:00:06 PM) (Source: Windows Search Service) (User: )
Description: Plug-In in <Search.TripoliIndexer> kann nicht initialisiert werden.
Kontext: Windows Anwendung, SystemIndex Katalog
Details:
Element nicht gefunden. (0x80070490)
Error: (11/14/2013 04:00:05 PM) (Source: Windows Search Service) (User: )
Description: Plug-In in <Search.JetPropStore> kann nicht initialisiert werden.
Kontext: Windows Anwendung, SystemIndex Katalog
Details:
Die Inhaltsindex-Metadaten können nicht gelesen werden. (0xc0041801)
Error: (11/14/2013 04:00:05 PM) (Source: Windows Search Service) (User: )
Description: Die Eigenschaftenspeicherdaten können vom Windows-Suchdienst nicht geladen werden.
Kontext: Windows Anwendung, SystemIndex Katalog
Details:
0x%08x (0xc0041800 - Der Inhaltsindex kann nicht gelesen werden. )
Error: (11/14/2013 04:00:05 PM) (Source: Windows Search Service) (User: )
Description: Der Suchdienst hat beschädigte Datendateien im Index erkannt. Der Dienst versucht, dieses Problem durch Neuerstellung des Index automatisch zu beheben.
Details:
Die Inhaltsindex-Metadaten können nicht gelesen werden. (0xc0041801)
Error: (11/14/2013 04:00:04 PM) (Source: Windows Search Service) (User: )
Description: Der Jet-Eigenschaftenspeicher kann vom Windows-Suchdienst nicht geöffnet werden.
Details:
Der Inhaltsindex kann nicht gelesen werden. (0xc0041800)
Error: (11/14/2013 04:00:04 PM) (Source: ESENT) (User: )
Description: Windows (2112) Windows: Fehler -1811 (0xfffff8ed) beim Öffnen von Protokolldatei C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS.log.
System errors:
=============
Error: (11/15/2013 07:48:14 PM) (Source: Microsoft-Windows-LanguagePackSetup) (User: NT-AUTORITÄT)
Description: 0x80070032
Error: (11/15/2013 07:45:40 PM) (Source: Service Control Manager) (User: )
Description: vToolbarUpdater13.0.0%%3
Error: (11/15/2013 07:45:40 PM) (Source: Service Control Manager) (User: )
Description: Net.Tcp-ListeneradapterNet.Tcp-Portfreigabedienst%%1058
Error: (11/15/2013 07:45:40 PM) (Source: Service Control Manager) (User: )
Description: Net.Pipe-Listeneradapterwas
Error: (11/15/2013 07:45:40 PM) (Source: Service Control Manager) (User: )
Description: Net.Msmq-Listeneradaptermsmq
Error: (11/15/2013 05:15:53 AM) (Source: Microsoft-Windows-LanguagePackSetup) (User: NT-AUTORITÄT)
Description: 0x80070032
Error: (11/15/2013 05:12:31 AM) (Source: Service Control Manager) (User: )
Description: vToolbarUpdater13.0.0%%3
Error: (11/15/2013 05:12:31 AM) (Source: Service Control Manager) (User: )
Description: Net.Tcp-ListeneradapterNet.Tcp-Portfreigabedienst%%1058
Error: (11/15/2013 05:12:31 AM) (Source: Service Control Manager) (User: )
Description: Net.Pipe-Listeneradapterwas
Error: (11/15/2013 05:12:31 AM) (Source: Service Control Manager) (User: )
Description: Net.Msmq-Listeneradaptermsmq
Microsoft Office Sessions:
=========================
Error: (11/14/2013 04:00:06 PM) (Source: Windows Search Service)(User: )
Description: Kontext: Windows Anwendung
Details:
Die Inhaltsindex-Metadaten können nicht gelesen werden. (0xc0041801)
Error: (11/14/2013 04:00:06 PM) (Source: Windows Search Service)(User: )
Description: Kontext: Windows Anwendung, SystemIndex Katalog
Details:
Die Inhaltsindex-Metadaten können nicht gelesen werden. (0xc0041801)
Error: (11/14/2013 04:00:06 PM) (Source: Windows Search Service)(User: )
Description: Kontext: Windows Anwendung, SystemIndex Katalog
Details:
Element nicht gefunden. (0x80070490)
Search.TripoliIndexer
Error: (11/14/2013 04:00:05 PM) (Source: Windows Search Service)(User: )
Description: Kontext: Windows Anwendung, SystemIndex Katalog
Details:
Die Inhaltsindex-Metadaten können nicht gelesen werden. (0xc0041801)
Search.JetPropStore
Error: (11/14/2013 04:00:05 PM) (Source: Windows Search Service)(User: )
Description: Kontext: Windows Anwendung, SystemIndex Katalog
Details:
0x%08x (0xc0041800 - Der Inhaltsindex kann nicht gelesen werden. )
Error: (11/14/2013 04:00:05 PM) (Source: Windows Search Service)(User: )
Description:
Details:
Die Inhaltsindex-Metadaten können nicht gelesen werden. (0xc0041801)
Error: (11/14/2013 04:00:04 PM) (Source: Windows Search Service)(User: )
Description:
Details:
Der Inhaltsindex kann nicht gelesen werden. (0xc0041800)
Error: (11/14/2013 04:00:04 PM) (Source: ESENT)(User: )
Description: Windows2112Windows: C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS.log-1811 (0xfffff8ed)
CodeIntegrity Errors:
===================================
Date: 2012-10-20 17:13:05.162
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22713_none_b39feb737f8937a0\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-10-20 17:13:04.538
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22713_none_b39feb737f8937a0\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-10-20 17:13:03.883
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22713_none_b39feb737f8937a0\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-10-20 17:13:03.259
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22713_none_b39feb737f8937a0\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-10-20 17:13:02.635
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22713_none_b39feb737f8937a0\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-10-20 17:13:02.011
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22713_none_b39feb737f8937a0\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-10-20 17:13:01.324
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22636_none_b38d4a937f96be60\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-10-20 17:13:00.700
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22636_none_b38d4a937f96be60\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-10-20 17:13:00.061
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22636_none_b38d4a937f96be60\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-10-20 17:12:59.437
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22636_none_b38d4a937f96be60\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
==================== Memory info ===========================
Percentage of memory in use: 51%
Total physical RAM: 2038.64 MB
Available physical RAM: 997.35 MB
Total Pagefile: 4326.32 MB
Available Pagefile: 2293.53 MB
Total Virtual: 2047.88 MB
Available Virtual: 1911.21 MB
==================== Drives ================================
Drive c: (OS_Install) (Fixed) (Total:63.48 GB) (Free:33.84 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: (Mobile Partner) (CDROM) (Total:0.02 GB) (Free:0 GB) CDFS
Drive e: (Data) (Fixed) (Total:387.63 GB) (Free:359 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 466 GB) (Disk ID: 9AC9B968)
Partition 1: (Not Active) - (Size=15 GB) - (Type=27)
Partition 2: (Active) - (Size=63 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=388 GB) - (Type=07 NTFS)
==================== End Of Log ============================Additional scan result of Farbar Recovery Scan Tool (x86) Version: 14-11-2013
Ran by pc at 2013-11-15 20:09:22
Running from C:\Users\pc\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Emsisoft Anti-Malware (Enabled - Out of date) {8504DEEF-CC04-1F76-2137-F1A5F4A659DA}
AV: Avira Desktop (Enabled - Up to date) {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
AS: Avira Desktop (Enabled - Up to date) {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Emsisoft Anti-Malware (Enabled - Out of date) {3E653F0B-EA3E-10F8-1B87-CAD78F211367}
==================== Installed Programs ======================
32 Bit HP CIO Components Installer (Version: 1.0.0)
AbAlarm (Version: 6.2)
Adobe Flash Player 11 ActiveX (Version: 11.9.900.117)
Adobe Reader X (10.1.8) - Deutsch (Version: 10.1.8)
AIO_CDB_ProductContext (Version: 82.0.242.000)
AIO_CDB_Software (Version: 82.0.242.000)
AIO_Scan (Version: 82.0.173.000)
Atheros Client Installation Program (Version: 7.0)
Avira Free Antivirus (Version: 13.0.0.4052)
BufferChm (Version: 82.0.173.000)
Cisco EAP-FAST Module (Version: 2.1.6)
Cisco LEAP Module (Version: 1.0.12)
Cisco PEAP Module (Version: 1.0.13)
Copy (Version: 82.0.188.000)
CustomerResearchQFolder (Version: 1.00.0000)
Destinations (Version: 82.0.173.000)
DeviceManagementQFolder (Version: 1.00.0000)
DocProc (Version: 8.1.0.0)
DocProcQFolder (Version: 1.00.0000)
Dropbox (HKCU Version: 2.0.22)
Emsisoft Anti-Malware (Version: 8.1)
ESET Online Scanner v3
eSupportQFolder (Version: 1.00.0000)
F300 (Version: 82.0.242.000)
F300_Help (Version: 82.0.242.000)
F300Trb (Version: 82.0.242.000)
Fax (Version: 82.0.188.000)
Google Earth (Version: 6.2.2.6613)
HP Customer Participation Program 8.0 (Version: 8.0)
HP Imaging Device Functions 8.0 (Version: 8.0)
HP OCR Software 8.0 (Version: 8.0)
HP Photo Creations (Version: 1.0.0.7702)
HP Photosmart Essential (Version: 1.12.0.46)
HP Photosmart, Officejet, PSC and Deskjet All-In-One Driver Software 8.0.B (Version: 8.0)
HP Solution Center 8.0 (Version: 8.0)
HP Update (Version: 5.002.007.004)
HPProductAssistant (Version: 82.0.173.000)
HPSSupply (Version: 2.1.3.0000)
Intel(R) Graphics Media Accelerator Driver
Java 7 Update 45 (Version: 7.0.450)
Java Auto Updater (Version: 2.1.9.8)
Lunascape6 (All Users) (Version: 6.8.9.27075)
MarketResearch (Version: 82.0.174.000)
Microsoft .NET Framework 3.5 Language Pack SP1 - DEU
Microsoft .NET Framework 3.5 Language Pack SP1 - deu (Version: 3.5.30729)
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319)
Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.56336)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (Version: 10.0.40219)
Mobile Partner (Version: 11.302.09.04.382)
MSXML 4.0 SP2 (KB927978) (Version: 4.20.9841.0)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
MyKeyFinder (Version: 2012)
Paint.NET v3.5.10 (Version: 3.60.0)
Realtek 8169 8168 8101E 8102E Ethernet Driver (Version: 1.00.0000)
Realtek High Definition Audio Driver (Version: 6.0.1.5618)
Scan (Version: 8.1.0.0)
SolutionCenter (Version: 82.0.188.000)
Status (Version: 82.0.173.000)
Toolbox (Version: 82.0.173.000)
TrayApp (Version: 82.0.188.000)
Uniblue RegistryBooster (Version: 6.1.1.3)
UnloadSupport (Version: 1.00.0000)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2473228) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (Version: 3)
Update for Microsoft .NET Framework 4 Extended (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2600217) (Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2836939v3) (Version: 3)
Visual C++ 9.0 CRT (x86) WinSXS MSM (Version: 9.0)
WashAndGo (Version: 17.7)
WebReg (Version: 82.0.173.000)
YouTube Song Downloader (Version: 8.2)
==================== Restore Points =========================
13-11-2013 08:36:23 Removed Apple Software Update
13-11-2013 08:48:09 Removed Bonjour
13-11-2013 10:21:05 Removed Safari
13-11-2013 10:23:53 Removed Apple Application Support
13-11-2013 10:31:48 Removed Apple Application Support
14-11-2013 16:26:44 Windows Update
==================== Hosts content: ==========================
2006-11-02 11:23 - 2006-09-18 22:41 - 00000761 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
::1 localhost
==================== Scheduled Tasks (whitelisted) =============
Task: {0AD797DB-679C-4254-BF1F-187451269FBE} - System32\Tasks\RunAsStdUser Task => C:\Program Files\NetDrive\netdrive.exe
Task: {0B923855-EFEC-4D6E-BF2C-25DC4D5D10FF} - System32\Tasks\WebReg Deskjet F300 series => C:\Program Files\HP\Digital Imaging\bin\hpqwrg.exe [2006-12-10] (Hewlett-Packard Co.)
Task: {139DBA5E-5972-4876-81F7-3862E17F0935} - System32\Tasks\Microsoft\Windows\MUI\Lpksetup => C:\Windows\System32\lpksetup.exe [2008-01-21] (Microsoft Corporation)
Task: {1CC81347-6204-4B83-900C-01E02F50F067} - System32\Tasks\Microsoft\Windows\MobilePC\TMM
Task: {2A4342E7-3E82-45C5-A530-C547532D3E76} - System32\Tasks\Microsoft\Windows\WindowsCalendar\Reminders - pc => C:\Program Files\Windows Calendar\WinCal.exe [2009-04-11] (Microsoft Corporation)
Task: {2DE1ED62-3B3F-4610-86ED-E838057F6213} - System32\Tasks\Java Update Scheduler => C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-07-02] (Oracle Corporation)
Task: {320124A7-D70F-41DE-A9D1-D5E8E19D5D91} - System32\Tasks\Microsoft\Windows\NetworkAccessProtection\NAPStatus UI
Task: {3BCDF251-CA5C-4045-A1FC-8FCEF9FBDC93} - System32\Tasks\Microsoft\Windows\Shell\CrawlStartPages
Task: {44980BEE-7809-44A9-AC24-D6E578A3B7DF} - System32\Tasks\Microsoft\Windows\RAC\RACAgent => C:\Windows\System32\RacAgent.exe [2008-01-21] (Microsoft Corporation)
Task: {47CC68FF-DD27-4AC9-BD10-1206F7305F4A} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04] (Adobe Systems Incorporated)
Task: {51C71A63-7357-4492-80C2-B8A4B3E96899} - System32\Tasks\AbelssoftPreloader => C:\Program Files\WashAndGo\AbelssoftPreloader.exe [2012-09-24] (Microsoft)
Task: {5DF25F26-1DD4-42AF-A7D5-8AF413AA526D} - System32\Tasks\Microsoft\Windows Defender\MP Scheduled Signature Update => C:\Program Files\Windows Defender\MpCmdRun.exe [2008-01-21] (Microsoft Corporation)
Task: {724DD079-074D-48F7-84FC-129CAE9457D2} - System32\Tasks\rbmonitor => C:\Program Files\Uniblue\RegistryBooster\rbmonitor.exe [2013-08-21] (Uniblue Systems Limited)
Task: {75C473BC-8CAD-499B-8316-EFD367B24770} - System32\Tasks\WashAndGoNGBackground => C:\Program Files\WashAndGo\WashAndGo.exe [2012-09-24] (Microsoft)
Task: {793C7D04-E0F7-41B2-9376-BCB3BC77411B} - System32\Tasks\CheckDriveBackgroundGuard => C:\Program Files\CheckDrive\CheckDriveBackgroundGuard.exe
Task: {8CFE559A-52BC-433E-B3B9-E2296815C970} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-10-27] (Adobe Systems Incorporated)
Task: {99982336-9432-499D-A415-B1D0E9EE6E6A} - System32\Tasks\HP-Online-Aktualisierungsprogramm => C:\Program Files\HP\HP Software Update\hpwuSchd2.exe [2006-12-10] (Hewlett-Packard Co.)
Task: {A728AE6B-5AB8-4223-AD3E-E6341441A01C} - System32\Tasks\Microsoft\Windows\PLA\System\ConvertLogEntries => C:\Windows\System32\pla.dll [2008-01-21] (Microsoft Corporation)
Task: {A7F9AF08-9C24-4D9D-A77B-6C6A29823CB3} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\System32\browserchoice.exe [2010-02-12] (Microsoft Corporation)
Task: {CC5A7CB0-4962-4392-8465-2DA2116D2672} - System32\Tasks\RegistryBooster => C:\Program Files\Uniblue\RegistryBooster\registrybooster.exe [2013-08-21] (Uniblue Systems Limited)
Task: {DC45E898-AF81-4A07-ABC9-73FCDB16504C} - System32\Tasks\HP Photo Creations Communicator => C:\ProgramData\HP Photo Creations\MessageCheck.exe [2011-03-02] ()
Task: {E5150B95-F9B4-4D5D-95A2-7EC1ACBA95F8} - System32\Tasks\Microsoft\Windows\Wireless\GatherWirelessInfo => C:\Windows\System32\gatherWirelessInfo.vbs [2008-01-21] ()
Task: C:\Windows\Tasks\AbelssoftPreloader.job => C:\Program Files\WashAndGo\AbelssoftPreloader.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\CheckDriveBackgroundGuard.job => C:\Program Files\CheckDrive\CheckDriveBackgroundGuard.exe
Task: C:\Windows\Tasks\HP Photo Creations Communicator.job => C:\ProgramData\HP Photo Creations\MessageCheck.exe
Task: C:\Windows\Tasks\rbmonitor.job => C:\Program Files\Uniblue\RegistryBooster\rbmonitor.exe
Task: C:\Windows\Tasks\RegistryBooster.job => C:\Program Files\Uniblue\RegistryBooster\registrybooster.exe
Task: C:\Windows\Tasks\WashAndGoNGBackground.job => C:\Program Files\WashAndGo\WashAndGo.exe
Task: C:\Windows\Tasks\WebReg Deskjet F300 series.job => C:\Program Files\HP\Digital Imaging\bin\hpqwrg.exe
==================== Loaded Modules (whitelisted) =============
2011-06-27 15:24 - 2007-08-23 15:39 - 00014848 _____ () C:\Program Files\Mobile Partner\isaputrace.dll
2011-06-27 15:24 - 2009-12-10 10:51 - 00114688 _____ () C:\Program Files\Mobile Partner\DeviceMgrPlugin.dll
2011-06-27 15:24 - 2009-09-19 10:21 - 00139264 _____ () C:\Program Files\Mobile Partner\NetInfoPlugin.dll
2011-06-27 15:24 - 2009-06-18 09:48 - 00090112 _____ () C:\Program Files\Mobile Partner\DialUpPlugin.dll
2011-06-27 15:24 - 2009-06-18 09:54 - 00057344 _____ () C:\Program Files\Mobile Partner\ConfigFilePlugin.dll
2011-06-27 15:24 - 2009-12-10 10:40 - 00991232 _____ () C:\Program Files\Mobile Partner\NDISAPI.dll
2011-06-27 15:24 - 2009-05-23 10:02 - 00155648 _____ () C:\Program Files\Mobile Partner\DetectDev.dll
2011-06-27 15:24 - 2009-05-23 10:02 - 00557056 _____ () C:\Program Files\Mobile Partner\atcomm.dll
2011-06-27 15:24 - 2009-05-23 10:02 - 00061440 _____ () C:\Program Files\Mobile Partner\XCodec.dll
2011-06-27 15:24 - 2009-05-23 10:02 - 00061440 _____ () C:\Program Files\Mobile Partner\DeviceOperate.dll
2011-06-27 15:24 - 2009-06-18 09:56 - 00032768 _____ () C:\Program Files\Mobile Partner\NotifyServicePlugin.dll
2011-06-27 15:24 - 2009-12-10 10:52 - 00192512 _____ () C:\Program Files\Mobile Partner\DeviceMgrUIPlugin.dll
2011-06-27 15:24 - 2009-06-19 14:10 - 00143360 _____ () C:\Program Files\Mobile Partner\LocaleMgrPlugin.dll
2011-06-27 15:24 - 2007-07-31 14:50 - 00090112 _____ () C:\Program Files\Mobile Partner\FileManager.dll
2011-06-27 15:24 - 2009-06-19 14:10 - 00159744 _____ () C:\Program Files\Mobile Partner\SMSPlugin.dll
2013-10-27 12:29 - 2013-10-27 12:29 - 00201640 _____ () C:\Program Files\Java\jre7\bin\jp2iexp.dll
2013-10-27 12:29 - 2013-10-27 12:29 - 00016808 _____ () C:\Program Files\Java\jre7\bin\jp2native.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CleanHlp => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CleanHlp.sys => ""="Driver"
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (11/14/2013 04:00:06 PM) (Source: Windows Search Service) (User: )
Description: Die Anwendung kann nicht initialisiert werden.
Kontext: Windows Anwendung
Details:
Die Inhaltsindex-Metadaten können nicht gelesen werden. (0xc0041801)
Error: (11/14/2013 04:00:06 PM) (Source: Windows Search Service) (User: )
Description: Das Gatherer-Objekt kann nicht initialisiert werden.
Kontext: Windows Anwendung, SystemIndex Katalog
Details:
Die Inhaltsindex-Metadaten können nicht gelesen werden. (0xc0041801)
Error: (11/14/2013 04:00:06 PM) (Source: Windows Search Service) (User: )
Description: Plug-In in <Search.TripoliIndexer> kann nicht initialisiert werden.
Kontext: Windows Anwendung, SystemIndex Katalog
Details:
Element nicht gefunden. (0x80070490)
Error: (11/14/2013 04:00:05 PM) (Source: Windows Search Service) (User: )
Description: Plug-In in <Search.JetPropStore> kann nicht initialisiert werden.
Kontext: Windows Anwendung, SystemIndex Katalog
Details:
Die Inhaltsindex-Metadaten können nicht gelesen werden. (0xc0041801)
Error: (11/14/2013 04:00:05 PM) (Source: Windows Search Service) (User: )
Description: Die Eigenschaftenspeicherdaten können vom Windows-Suchdienst nicht geladen werden.
Kontext: Windows Anwendung, SystemIndex Katalog
Details:
0x%08x (0xc0041800 - Der Inhaltsindex kann nicht gelesen werden. )
Error: (11/14/2013 04:00:05 PM) (Source: Windows Search Service) (User: )
Description: Der Suchdienst hat beschädigte Datendateien im Index erkannt. Der Dienst versucht, dieses Problem durch Neuerstellung des Index automatisch zu beheben.
Details:
Die Inhaltsindex-Metadaten können nicht gelesen werden. (0xc0041801)
Error: (11/14/2013 04:00:04 PM) (Source: Windows Search Service) (User: )
Description: Der Jet-Eigenschaftenspeicher kann vom Windows-Suchdienst nicht geöffnet werden.
Details:
Der Inhaltsindex kann nicht gelesen werden. (0xc0041800)
Error: (11/14/2013 04:00:04 PM) (Source: ESENT) (User: )
Description: Windows (2112) Windows: Fehler -1811 (0xfffff8ed) beim Öffnen von Protokolldatei C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS.log.
System errors:
=============
Error: (11/15/2013 07:48:14 PM) (Source: Microsoft-Windows-LanguagePackSetup) (User: NT-AUTORITÄT)
Description: 0x80070032
Error: (11/15/2013 07:45:40 PM) (Source: Service Control Manager) (User: )
Description: vToolbarUpdater13.0.0%%3
Error: (11/15/2013 07:45:40 PM) (Source: Service Control Manager) (User: )
Description: Net.Tcp-ListeneradapterNet.Tcp-Portfreigabedienst%%1058
Error: (11/15/2013 07:45:40 PM) (Source: Service Control Manager) (User: )
Description: Net.Pipe-Listeneradapterwas
Error: (11/15/2013 07:45:40 PM) (Source: Service Control Manager) (User: )
Description: Net.Msmq-Listeneradaptermsmq
Error: (11/15/2013 05:15:53 AM) (Source: Microsoft-Windows-LanguagePackSetup) (User: NT-AUTORITÄT)
Description: 0x80070032
Error: (11/15/2013 05:12:31 AM) (Source: Service Control Manager) (User: )
Description: vToolbarUpdater13.0.0%%3
Error: (11/15/2013 05:12:31 AM) (Source: Service Control Manager) (User: )
Description: Net.Tcp-ListeneradapterNet.Tcp-Portfreigabedienst%%1058
Error: (11/15/2013 05:12:31 AM) (Source: Service Control Manager) (User: )
Description: Net.Pipe-Listeneradapterwas
Error: (11/15/2013 05:12:31 AM) (Source: Service Control Manager) (User: )
Description: Net.Msmq-Listeneradaptermsmq
Microsoft Office Sessions:
=========================
Error: (11/14/2013 04:00:06 PM) (Source: Windows Search Service)(User: )
Description: Kontext: Windows Anwendung
Details:
Die Inhaltsindex-Metadaten können nicht gelesen werden. (0xc0041801)
Error: (11/14/2013 04:00:06 PM) (Source: Windows Search Service)(User: )
Description: Kontext: Windows Anwendung, SystemIndex Katalog
Details:
Die Inhaltsindex-Metadaten können nicht gelesen werden. (0xc0041801)
Error: (11/14/2013 04:00:06 PM) (Source: Windows Search Service)(User: )
Description: Kontext: Windows Anwendung, SystemIndex Katalog
Details:
Element nicht gefunden. (0x80070490)
Search.TripoliIndexer
Error: (11/14/2013 04:00:05 PM) (Source: Windows Search Service)(User: )
Description: Kontext: Windows Anwendung, SystemIndex Katalog
Details:
Die Inhaltsindex-Metadaten können nicht gelesen werden. (0xc0041801)
Search.JetPropStore
Error: (11/14/2013 04:00:05 PM) (Source: Windows Search Service)(User: )
Description: Kontext: Windows Anwendung, SystemIndex Katalog
Details:
0x%08x (0xc0041800 - Der Inhaltsindex kann nicht gelesen werden. )
Error: (11/14/2013 04:00:05 PM) (Source: Windows Search Service)(User: )
Description:
Details:
Die Inhaltsindex-Metadaten können nicht gelesen werden. (0xc0041801)
Error: (11/14/2013 04:00:04 PM) (Source: Windows Search Service)(User: )
Description:
Details:
Der Inhaltsindex kann nicht gelesen werden. (0xc0041800)
Error: (11/14/2013 04:00:04 PM) (Source: ESENT)(User: )
Description: Windows2112Windows: C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS.log-1811 (0xfffff8ed)
CodeIntegrity Errors:
===================================
Date: 2012-10-20 17:13:05.162
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22713_none_b39feb737f8937a0\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-10-20 17:13:04.538
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22713_none_b39feb737f8937a0\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-10-20 17:13:03.883
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22713_none_b39feb737f8937a0\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-10-20 17:13:03.259
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22713_none_b39feb737f8937a0\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-10-20 17:13:02.635
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22713_none_b39feb737f8937a0\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-10-20 17:13:02.011
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22713_none_b39feb737f8937a0\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-10-20 17:13:01.324
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22636_none_b38d4a937f96be60\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-10-20 17:13:00.700
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22636_none_b38d4a937f96be60\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-10-20 17:13:00.061
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22636_none_b38d4a937f96be60\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-10-20 17:12:59.437
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.22636_none_b38d4a937f96be60\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
==================== Memory info ===========================
Percentage of memory in use: 51%
Total physical RAM: 2038.64 MB
Available physical RAM: 997.35 MB
Total Pagefile: 4326.32 MB
Available Pagefile: 2293.53 MB
Total Virtual: 2047.88 MB
Available Virtual: 1911.21 MB
==================== Drives ================================
Drive c: (OS_Install) (Fixed) (Total:63.48 GB) (Free:33.84 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: (Mobile Partner) (CDROM) (Total:0.02 GB) (Free:0 GB) CDFS
Drive e: (Data) (Fixed) (Total:387.63 GB) (Free:359 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 466 GB) (Disk ID: 9AC9B968)
Partition 1: (Not Active) - (Size=15 GB) - (Type=27)
Partition 2: (Active) - (Size=63 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=388 GB) - (Type=07 NTFS)
==================== End Of Log ============================ |