![]() |
Windows 7 64bit weißer bildschirm ? Guten abend leute... Ich bin nach ein bisschen suchen im www auf euch gestoßen ^^ und zwar habe ich folgendes Problem... Seit ein paar stunden sehe ich auf meinem rechner nur noch ein weißes Bild... Taskmanager kann ich auch nicht öffnen... Im Prinzip geht garnix... Ich habe hier ein bisschen rum gestöbert und habe einen ähnlichen fall gefunden mit dem Weißen Bildschirm... Das war der Thread wo man mit FRST64 und F8 arbeitet und notepad und soooo... Nur irgendwie hat mich der Thread nicht viel weitergebracht... Extrem schade... Nur würde ich mich freuen wenn sich einer mit mir befassen könnte.. Da ich nicht so das Genie bin in sachen Computer :( Ich habe auch schon drüber nachgedacht denn Rechner zu Formatieren nur sind da viel daten drauf um die es schade wäre wenn sie weg wären.... Ich hoffe danke euch schonmal im Vorraus... MfG Tobias |
!! Hinweis an Mitlesende !! Dieses Thema und die Anweisungen sind nur für diesen speziellen Fall gedacht. Sie könnten andere Computer schwer beschädigen. Öffnet bitte euer eigenes Thema. :hallo: Ich werde dir bei deinem Problem helfen. Die Bereinigung funktioniert nur, wenn du dich an die folgenden Regeln hälst: ![]() Regeln für die Bereinigung
Scan mit Farbar's Recovery Scan Tool
|
Fehlende Rückmeldung Dieses Thema wurde aus den Abos gelöscht. Somit bekomm ich keine Benachrichtigung über neue Antworten. PM an mich falls Du denoch weiter machen willst. Keine Logfiles einsenden, nur kurzer Hinweis, nachdem du deine Logfiles hier eingestellt hast. Hinweis: Das Verschwinden der Symptome bedeutet nicht, dass Dein Rechner schon sauber ist. Jeder andere bitte hier klicken und einen eigenen Thread erstellen |
Tut mir leid ich hatte noch nicht die zeit gefunden wäre echt cool wenn du heute ein bisschen zeit für mich hättest um das alles einmal schritt für schritt mit mir durch zu kauen.. Hier ist das was du verlangt hast :) hxxp://www.file-upload.net/download-7607260/FRST.txt.html |
Lesen hilft manchmal. Hier nochmal die Anleitung: ![]() Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
|
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 14-05-2013 Ran by SYSTEM on 15-05-2013 22:04:55 Running from H:\ Windows 7 Home Premium (X64) OS Language: German Standard Internet Explorer Version 9 Boot Mode: Recovery The current controlset is ControlSet001 ATTENTION!:=====> FRST is updated to run from normal or Safe mode to produce a full FRST.txt log and an extra Addition.txt log. ==================== Registry (Whitelisted) ================== HKLM\...\Run: [hpsysdrv] c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe [62768 2008-11-20] (Hewlett-Packard) HKLM\...\Run: [SmartMenu] C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe /background [568888 2010-01-18] () HKLM\...\Run: [Windows Mobile Device Center] %windir%\WindowsMobile\wmdc.exe [660360 2007-05-31] (Microsoft Corporation) HKLM-x32\...\Run: [PDF Complete] C:\Program Files (x86)\PDF Complete\pdfsty.exe [563736 2009-10-14] (PDF Complete Inc) HKLM-x32\...\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun [98304 2010-05-17] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [HP Software Update] c:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [54576 2008-12-08] (Hewlett-Packard) HKLM-x32\...\Run: [] [x] HKLM-x32\...\Run: [Easybits Recovery] C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe [61112 2010-04-25] (EasyBits Software AS) HKLM-x32\...\Run: [Microsoft Default Manager] "C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" -resume [439568 2010-05-10] (Microsoft Corporation) HKLM-x32\...\Run: [BrMfcWnd] C:\Program Files (x86)\Brother\Brmfcmon\BrMfcWnd.exe /AUTORUN [1159168 2009-05-26] (Brother Industries, Ltd.) HKLM-x32\...\Run: [ControlCenter3] C:\Program Files (x86)\Brother\ControlCenter3\brctrcen.exe /autorun [114688 2008-12-24] (Brother Industries, Ltd.) HKLM-x32\...\Run: [DivX Download Manager] "C:\Program Files (x86)\DivX\DivX Plus Web Player\DDmService.exe" start [63360 2010-12-08] (DivX, LLC) HKLM-x32\...\Run: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW [1230704 2011-01-10] () HKLM-x32\...\Run: [NokiaMServer] C:\Program Files (x86)\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup [x] HKLM-x32\...\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [843712 2012-01-02] (Adobe Systems Incorporated) HKLM-x32\...\Run: [SweetIM] C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe [114992 2011-06-02] (SweetIM Technologies Ltd.) HKLM-x32\...\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59720 2013-01-28] (Apple Inc.) HKLM-x32\...\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime [421888 2011-10-24] (Apple Inc.) HKLM-x32\...\Run: [AVMWlanClient] C:\Program Files (x86)\avmwlanstick\wlangui.exe [2105344 2010-10-21] (AVM Berlin) HKLM-x32\...\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [254696 2012-01-18] (Sun Microsystems, Inc.) HKLM-x32\...\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min [348664 2012-08-08] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [NPSStartup] [x] HKLM-x32\...\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" [152392 2013-02-20] (Apple Inc.) HKU\Default\...\Run: [HPAdvisorDock] C:\Program Files (x86)\Hewlett-Packard\HP Advisor\DOCK\HPAdvisorDock.exe [1715768 2010-09-28] (Hewlett-Packard) HKU\Default User\...\Run: [HPAdvisorDock] C:\Program Files (x86)\Hewlett-Packard\HP Advisor\DOCK\HPAdvisorDock.exe [1715768 2010-09-28] (Hewlett-Packard) HKU\Olga-Niko\...\Run: [msnmsgr] ~"C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background [3872080 2010-04-16] (Microsoft Corporation) HKU\Olga-Niko\...\Run: [] [x] HKU\Olga-Niko\...\Run: [NokiaOviSuite2] C:\Program Files (x86)\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe -tray [966712 2011-07-21] (Nokia) HKU\Olga-Niko\...\Run: [iCloudServices] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [59240 2011-11-11] (Apple Inc.) HKU\Olga-Niko\...\Run: [T-Online_Software_6\WLAN-Access Finder] C:\Program Files (x86)\T-Online\WLAN-Access Finder\ToWLaAcF.exe /StartMinimized [671796 2011-11-09] (Deutsche Telekom AG, Marmiko IT-Solutions GmbH) HKU\Olga-Niko\...\Run: [AutoStartNPSAgent] C:\Program Files (x86)\Samsung\Samsung New PC Studio\NPSAgent.exe [102400 2009-04-02] (Samsung Electronics Co., Ltd.) HKU\Olga-Niko\...\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun [18642024 2013-02-28] (Skype Technologies S.A.) HKU\Olga-Niko\...\Policies\system: [DisableLockWorkstation] 0 HKU\Olga-Niko\...\Policies\system: [DisableChangePassword] 0 HKU\Olga-Niko\...\Winlogon: [Shell] explorer.exe,C:\Users\Olga-Niko\AppData\Roaming\AltShell.dat [31232 2011-11-16] () <==== ATTENTION Startup: C:\ProgramData\Start Menu\Programs\Startup\Snapfish PictureMover.lnk ShortcutTarget: Snapfish PictureMover.lnk -> C:\Program Files (x86)\PictureMover\Bin\PictureMover.exe (Hewlett-Packard Company) Startup: C:\ProgramData\Start Menu\Programs\Startup\Speedport W 101 WLAN Manager.lnk ShortcutTarget: Speedport W 101 WLAN Manager.lnk -> C:\Program Files (x86)\Speedport W 101 Stick WLAN Manager\Speedport W 101 Stick.exe (Deutsche Telekom AG) Startup: C:\Users\Olga-Niko\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk ShortcutTarget: OpenOffice.org 3.2.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe () ==================== Services (Whitelisted) ================= S2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [86224 2012-05-01] (Avira Operations GmbH & Co. KG) S2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [110032 2012-05-01] (Avira Operations GmbH & Co. KG) S2 AVM WLAN Connection Service; C:\Program Files (x86)\avmwlanstick\WlanNetService.exe [376832 2010-10-21] (AVM Berlin) S2 BrowserProtect; C:\ProgramData\BrowserProtect\2.6.1249.132\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe [2787280 2013-03-22] () S2 ForceWare Intelligent Application Manager (IAM); C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe [496232 2010-03-04] () S2 Netzmanager Service; C:\Program Files\Netzmanager\NMInfraIS2\Netzmanager_Service.exe [2565632 2011-10-23] (Deutsche Telekom AG) S3 npggsvc; C:\Windows\SysWow64\GameMon.des [3889424 2011-08-01] (INCA Internet Co., Ltd.) S2 nSvcIp; C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe [209000 2010-03-04] () S2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [635416 2009-10-14] (PDF Complete Inc) S2 WinVNC4; C:\Program Files (x86)\RealVNC\VNC4\WinVNC4.exe [439632 2008-10-15] (RealVNC Ltd.) ==================== Drivers (Whitelisted) ==================== S3 avmeject; C:\Windows\System32\drivers\avmeject.sys [14120 2010-10-03] (AVM Berlin) S3 fwlanusb4; C:\Windows\System32\DRIVERS\fwlanusb4.sys [1293824 2010-10-03] (AVM GmbH) S3 libusb0; C:\Windows\SysWow64\drivers\libusb0.sys [16896 2007-03-20] (hxxp://libusb-win32.sourceforge.net) S3 NPPTNT2; C:\Windows\SysWow64\npptNT2.sys [4682 2005-01-01] (INCA Internet Co., Ltd.) S3 TelekomNM6; C:\Program Files\Netzmanager\NMInfraIS2\Driver\TelekomNM6.sys [45664 2010-09-16] (Deutsche Telekom AG AG, Marmiko IT-Solutions GmbH) S3 ZDCNDIS6a64; C:\Windows\system32\ZDCNDIS6a64.sys [41280 2007-11-06] (Printing Communications Assoc., Inc. (PCAUSA)) S3 ZY202_VS; C:\Windows\System32\DRIVERS\WlanGZG.sys [1041920 2007-11-06] (Atheros Communications, Inc.) S2 avgntflt; system32\DRIVERS\avgntflt.sys [x] S1 avipbb; system32\DRIVERS\avipbb.sys [x] S1 avkmgr; system32\DRIVERS\avkmgr.sys [x] S3 dump_wmimmc; \??\F:\WolfTeam-DE\GameGuard\dump_wmimmc.sys [x] S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [x] S3 TFsExDisk; \??\C:\Windows\System32\Drivers\TFsExDisk.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-05-15 22:04 - 2013-05-15 22:04 - 00000000 ____D C:\FRST 2013-05-15 10:27 - 2013-05-15 10:27 - 00262144 ____N C:\Windows\Minidump\051513-22042-01.dmp 2013-05-14 10:20 - 2013-05-14 10:20 - 00000000 ____D C:\Windows\SysWOW64\searchplugins 2013-05-14 10:20 - 2013-05-14 10:20 - 00000000 ____D C:\Windows\SysWOW64\Extensions 2013-05-14 07:56 - 2013-05-15 11:58 - 00000004 ____A C:\Users\Olga-Niko\AppData\Roaming\AltShell.ini 2013-05-14 05:58 - 2013-05-14 05:58 - 00006190 ____A C:\Users\Olga-Niko\Desktop\bewerbung.odt 2013-05-14 05:57 - 2013-05-14 06:00 - 00006414 ____A C:\Users\Olga-Niko\Desktop\Lebenslauf.odt 2013-05-14 05:18 - 2013-05-14 05:18 - 00006409 ____A C:\Users\Olga-Niko\Downloads\Lebenslauf.odt 2013-05-14 05:18 - 2013-05-14 05:18 - 00006409 ____A C:\Users\Olga-Niko\Downloads\Lebenslauf (1).odt 2013-05-05 13:11 - 2013-05-07 09:49 - 00000000 ____D C:\Users\Olga-Niko\Desktop\Neuer Ordner (2) 2013-05-05 04:10 - 2013-05-05 04:10 - 00000000 ____D C:\ProgramData\BrowserProtect 2013-05-05 04:09 - 2013-05-05 04:09 - 00001404 ____A C:\Users\Olga-Niko\Desktop\Free YouTube to MP3 Converter.lnk 2013-05-05 04:09 - 2013-05-05 04:09 - 00000000 ____D C:\Users\Olga-Niko\AppData\Roaming\OpenCandy 2013-05-05 04:09 - 2013-05-05 04:09 - 00000000 ____D C:\Users\Olga-Niko\AppData\Roaming\DVDVideoSoft 2013-05-05 04:09 - 2013-05-05 04:09 - 00000000 ____D C:\Users\Olga-Niko\AppData\Roaming\Delta 2013-05-05 04:09 - 2013-05-05 04:09 - 00000000 ____D C:\Users\Olga-Niko\AppData\Roaming\Babylon 2013-05-05 04:09 - 2013-05-05 04:09 - 00000000 ____D C:\ProgramData\Babylon 2013-05-05 04:09 - 2013-05-05 04:09 - 00000000 ____D C:\Program Files (x86)\DVDVideoSoft 2013-05-05 04:09 - 2013-05-05 04:09 - 00000000 ____D C:\Program Files (x86)\Delta 2013-05-05 04:08 - 2013-05-05 04:08 - 24944720 ____A (DVDVideoSoft Ltd. ) C:\Users\Olga-Niko\Downloads\FreeYouTubeToMP3Converter_3122426.exe 2013-05-05 03:30 - 2013-05-05 03:36 - 00000000 ____D C:\Users\Olga-Niko\Desktop\Neuer Ordner 2013-05-01 05:45 - 2013-02-21 02:30 - 01766912 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-05-01 05:45 - 2013-02-21 02:30 - 01129984 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-05-01 05:45 - 2013-02-21 02:29 - 14323200 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-05-01 05:45 - 2013-02-21 02:29 - 13761024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-05-01 05:45 - 2013-02-21 02:29 - 02877440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-05-01 05:45 - 2013-02-21 02:29 - 02046464 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-05-01 05:45 - 2013-02-21 02:29 - 00690688 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-05-01 05:45 - 2013-02-21 02:29 - 00493056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-05-01 05:45 - 2013-02-21 02:29 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-05-01 05:45 - 2013-02-21 02:29 - 00109056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-05-01 05:45 - 2013-02-21 02:29 - 00061440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-05-01 05:45 - 2013-02-21 02:29 - 00039424 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-05-01 05:45 - 2013-02-21 02:29 - 00033280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-05-01 05:45 - 2013-02-21 02:15 - 02240512 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll 2013-05-01 05:45 - 2013-02-21 02:15 - 00051712 ____A (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe 2013-05-01 05:45 - 2013-02-21 02:14 - 19230208 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2013-05-01 05:45 - 2013-02-21 02:14 - 15404544 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2013-05-01 05:45 - 2013-02-21 02:14 - 03958784 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll 2013-05-01 05:45 - 2013-02-21 02:14 - 02647040 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2013-05-01 05:45 - 2013-02-21 02:14 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2013-05-01 05:45 - 2013-02-21 02:14 - 00855552 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll 2013-05-01 05:45 - 2013-02-21 02:14 - 00603136 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll 2013-05-01 05:45 - 2013-02-21 02:14 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll 2013-05-01 05:45 - 2013-02-21 02:14 - 00136704 ____A (Microsoft Corporation) C:\Windows\System32\iesysprep.dll 2013-05-01 05:45 - 2013-02-21 02:14 - 00067072 ____A (Microsoft Corporation) C:\Windows\System32\iesetup.dll 2013-05-01 05:45 - 2013-02-21 02:14 - 00053248 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll 2013-05-01 05:45 - 2013-02-21 02:14 - 00039936 ____A (Microsoft Corporation) C:\Windows\System32\iernonce.dll 2013-05-01 05:45 - 2013-02-19 04:01 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-05-01 05:45 - 2013-02-19 03:42 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2013-05-01 05:45 - 2013-02-19 03:10 - 00071680 ____A (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-05-01 05:45 - 2013-02-19 02:51 - 00089600 ____A (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe 2013-04-30 04:41 - 2013-04-30 04:41 - 01509376 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl 2013-04-30 04:41 - 2013-04-30 04:41 - 01441280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-04-30 04:41 - 2013-04-30 04:41 - 01400416 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-04-30 04:41 - 2013-04-30 04:41 - 01400416 ____A (Microsoft Corporation) C:\Windows\System32\ieapfltr.dat 2013-04-30 04:41 - 2013-04-30 04:41 - 01054720 ____A (Microsoft Corporation) C:\Windows\System32\MsSpellCheckingFacility.exe 2013-04-30 04:41 - 2013-04-30 04:41 - 00905728 ____A (Microsoft Corporation) C:\Windows\System32\mshtmlmedia.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00762368 ____A (Microsoft Corporation) C:\Windows\System32\ieapfltr.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00719360 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00629248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00599552 ____A (Microsoft Corporation) C:\Windows\System32\vbscript.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00523264 ____A (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00452096 ____A (Microsoft Corporation) C:\Windows\System32\dxtmsft.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00441856 ____A (Microsoft Corporation) C:\Windows\System32\html.iec 2013-04-30 04:41 - 2013-04-30 04:41 - 00361984 ____A (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-04-30 04:41 - 2013-04-30 04:41 - 00357888 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00281600 ____A (Microsoft Corporation) C:\Windows\System32\dxtrans.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00270848 ____A (Microsoft Corporation) C:\Windows\System32\iedkcs32.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00247296 ____A (Microsoft Corporation) C:\Windows\System32\webcheck.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00242200 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00235008 ____A (Microsoft Corporation) C:\Windows\System32\url.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00232960 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00226816 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00226304 ____A (Microsoft Corporation) C:\Windows\System32\elshyph.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00216064 ____A (Microsoft Corporation) C:\Windows\System32\msls31.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00204800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00197120 ____A (Microsoft Corporation) C:\Windows\System32\msrating.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00185344 ____A (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00173568 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe 2013-04-30 04:41 - 2013-04-30 04:41 - 00167424 ____A (Microsoft Corporation) C:\Windows\System32\iexpress.exe 2013-04-30 04:41 - 2013-04-30 04:41 - 00163840 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00158720 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00150528 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-04-30 04:41 - 2013-04-30 04:41 - 00149504 ____A (Microsoft Corporation) C:\Windows\System32\occache.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00144896 ____A (Microsoft Corporation) C:\Windows\System32\wextract.exe 2013-04-30 04:41 - 2013-04-30 04:41 - 00138752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-04-30 04:41 - 2013-04-30 04:41 - 00137216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-04-30 04:41 - 2013-04-30 04:41 - 00136192 ____A (Microsoft Corporation) C:\Windows\System32\iepeers.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00135680 ____A (Microsoft Corporation) C:\Windows\System32\IEAdvpack.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00125440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00117248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00110592 ____A (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00102912 ____A (Microsoft Corporation) C:\Windows\System32\inseng.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00097280 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00092160 ____A (Microsoft Corporation) C:\Windows\System32\SetIEInstalledDate.exe 2013-04-30 04:41 - 2013-04-30 04:41 - 00082432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00081408 ____A (Microsoft Corporation) C:\Windows\System32\icardie.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00079872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00077312 ____A (Microsoft Corporation) C:\Windows\System32\tdc.ocx 2013-04-30 04:41 - 2013-04-30 04:41 - 00073728 ____A (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-04-30 04:41 - 2013-04-30 04:41 - 00069120 ____A (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00062976 ____A (Microsoft Corporation) C:\Windows\System32\pngfilt.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00061952 ____A (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-04-30 04:41 - 2013-04-30 04:41 - 00057344 ____A (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00052224 ____A (Microsoft Corporation) C:\Windows\System32\msfeedsbs.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00051200 ____A (Microsoft Corporation) C:\Windows\System32\imgutil.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00048640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00048640 ____A (Microsoft Corporation) C:\Windows\System32\mshtmler.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00041984 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00038400 ____A (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00027648 ____A (Microsoft Corporation) C:\Windows\System32\licmgr10.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00023040 ____A (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00013824 ____A (Microsoft Corporation) C:\Windows\System32\mshta.exe 2013-04-30 04:41 - 2013-04-30 04:41 - 00012800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-04-30 04:41 - 2013-04-30 04:41 - 00012800 ____A (Microsoft Corporation) C:\Windows\System32\msfeedssync.exe 2013-04-30 04:41 - 2013-04-30 04:41 - 00011776 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-04-30 04:40 - 2013-04-30 04:45 - 00009333 ____A C:\Windows\IE10_main.log 2013-04-24 09:01 - 2013-04-12 06:45 - 01656680 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ntfs.sys 2013-04-17 11:18 - 2013-04-17 11:18 - 00001785 ____A C:\Users\Public\Desktop\iTunes.lnk 2013-04-17 11:18 - 2012-08-21 03:01 - 00033240 ____A (GEAR Software Inc.) C:\Windows\System32\Drivers\GEARAspiWDM.sys 2013-04-17 11:17 - 2013-04-17 11:17 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2013-04-17 11:17 - 2013-04-17 11:17 - 00000000 ____D C:\Program Files\iTunes 2013-04-17 11:17 - 2013-04-17 11:17 - 00000000 ____D C:\Program Files\iPod 2013-04-17 11:11 - 2013-04-17 11:14 - 90130256 ____A (Apple Inc.) C:\Users\Olga-Niko\Downloads\iTunes64Setup.exe ==================== One Month Modified Files and Folders ======= 2013-05-15 22:04 - 2013-05-15 22:04 - 00000000 ____D C:\FRST 2013-05-15 11:58 - 2013-05-14 07:56 - 00000004 ____A C:\Users\Olga-Niko\AppData\Roaming\AltShell.ini 2013-05-15 11:58 - 2011-09-11 11:12 - 00001116 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-05-15 10:56 - 2009-07-13 20:45 - 00015792 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-05-15 10:56 - 2009-07-13 20:45 - 00015792 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-05-15 10:52 - 2010-12-01 16:12 - 01475093 ____A C:\Windows\WindowsUpdate.log 2013-05-15 10:48 - 2011-09-11 11:12 - 00001112 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-05-15 10:48 - 2011-01-03 14:14 - 00000000 ____D C:\Users\Olga-Niko\Tracing 2013-05-15 10:47 - 2009-07-13 21:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT 2013-05-15 10:47 - 2009-07-13 20:51 - 00169071 ____A C:\Windows\setupact.log 2013-05-15 10:27 - 2013-05-15 10:27 - 00262144 ____N C:\Windows\Minidump\051513-22042-01.dmp 2013-05-15 10:27 - 2011-09-09 10:49 - 00000000 ____D C:\Windows\Minidump 2013-05-14 10:20 - 2013-05-14 10:20 - 00000000 ____D C:\Windows\SysWOW64\searchplugins 2013-05-14 10:20 - 2013-05-14 10:20 - 00000000 ____D C:\Windows\SysWOW64\Extensions 2013-05-14 08:25 - 2012-09-11 10:26 - 00000000 ____D C:\Users\Olga-Niko\AppData\Roaming\Skype 2013-05-14 06:07 - 2012-02-07 07:47 - 00000348 ____A C:\Windows\Tasks\HPCeeScheduleForOlga-Niko.job 2013-05-14 06:03 - 2011-07-24 11:10 - 00000000 ____D C:\Users\Olga-Niko\AppData\Roaming\SoftGrid Client 2013-05-14 06:00 - 2013-05-14 05:57 - 00006414 ____A C:\Users\Olga-Niko\Desktop\Lebenslauf.odt 2013-05-14 05:58 - 2013-05-14 05:58 - 00006190 ____A C:\Users\Olga-Niko\Desktop\bewerbung.odt 2013-05-14 05:18 - 2013-05-14 05:18 - 00006409 ____A C:\Users\Olga-Niko\Downloads\Lebenslauf.odt 2013-05-14 05:18 - 2013-05-14 05:18 - 00006409 ____A C:\Users\Olga-Niko\Downloads\Lebenslauf (1).odt 2013-05-14 05:11 - 2011-01-04 06:30 - 00000052 ____A C:\Windows\SysWOW64\DOErrors.log 2013-05-14 05:10 - 2011-11-01 08:51 - 00000000 ____A C:\Windows\System32\HP_ActiveX_Patch_NOT_DETECTED.txt 2013-05-14 05:07 - 2010-12-01 16:37 - 00654602 ____A C:\Windows\System32\perfh007.dat 2013-05-14 05:07 - 2010-12-01 16:37 - 00130216 ____A C:\Windows\System32\perfc007.dat 2013-05-14 05:07 - 2009-07-13 21:13 - 01500294 ____A C:\Windows\System32\PerfStringBackup.INI 2013-05-14 05:02 - 2011-01-04 06:29 - 00000000 ____D C:\Users\Olga-Niko\AppData\Roaming\HpUpdate 2013-05-14 05:02 - 2011-01-04 06:29 - 00000000 ____D C:\Users\Olga-Niko\AppData\Roaming\HP Support Assistant 2013-05-12 00:49 - 2010-12-01 16:13 - 00000000 ____D C:\ProgramData\PDFC 2013-05-08 07:09 - 2011-04-21 08:29 - 00187226 ____A C:\Windows\DPINST.LOG 2013-05-08 07:09 - 2011-01-08 11:51 - 00000000 ____D C:\Users\Olga-Niko\AppData\Local\CrashDumps 2013-05-08 07:08 - 2010-12-01 16:12 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-05-07 09:49 - 2013-05-05 13:11 - 00000000 ____D C:\Users\Olga-Niko\Desktop\Neuer Ordner (2) 2013-05-06 11:45 - 2012-02-28 06:46 - 00000350 ____A C:\Windows\Tasks\HPCeeScheduleForOLGA-NIKO-HP$.job 2013-05-06 10:24 - 2011-01-03 10:35 - 00000000 ____D C:\Users\Olga-Niko\AppData\Local\VirtualStore 2013-05-05 12:49 - 2010-12-01 16:07 - 00355930 ____A C:\Windows\PFRO.log 2013-05-05 04:10 - 2013-05-05 04:10 - 00000000 ____D C:\ProgramData\BrowserProtect 2013-05-05 04:09 - 2013-05-05 04:09 - 00001404 ____A C:\Users\Olga-Niko\Desktop\Free YouTube to MP3 Converter.lnk 2013-05-05 04:09 - 2013-05-05 04:09 - 00000000 ____D C:\Users\Olga-Niko\AppData\Roaming\OpenCandy 2013-05-05 04:09 - 2013-05-05 04:09 - 00000000 ____D C:\Users\Olga-Niko\AppData\Roaming\DVDVideoSoft 2013-05-05 04:09 - 2013-05-05 04:09 - 00000000 ____D C:\Users\Olga-Niko\AppData\Roaming\Delta 2013-05-05 04:09 - 2013-05-05 04:09 - 00000000 ____D C:\Users\Olga-Niko\AppData\Roaming\Babylon 2013-05-05 04:09 - 2013-05-05 04:09 - 00000000 ____D C:\ProgramData\Babylon 2013-05-05 04:09 - 2013-05-05 04:09 - 00000000 ____D C:\Program Files (x86)\DVDVideoSoft 2013-05-05 04:09 - 2013-05-05 04:09 - 00000000 ____D C:\Program Files (x86)\Delta 2013-05-05 04:09 - 2011-02-06 11:06 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-05-05 04:08 - 2013-05-05 04:08 - 24944720 ____A (DVDVideoSoft Ltd. ) C:\Users\Olga-Niko\Downloads\FreeYouTubeToMP3Converter_3122426.exe 2013-05-05 03:36 - 2013-05-05 03:30 - 00000000 ____D C:\Users\Olga-Niko\Desktop\Neuer Ordner 2013-05-02 21:35 - 2013-02-17 09:44 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-05-02 21:35 - 2012-09-11 10:26 - 00000000 ____D C:\ProgramData\Skype 2013-05-02 07:28 - 2009-07-13 21:08 - 00032640 ____A C:\Windows\Tasks\SCHEDLGU.TXT 2013-04-30 08:33 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\rescache 2013-04-30 08:05 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-04-30 04:45 - 2013-04-30 04:40 - 00009333 ____A C:\Windows\IE10_main.log 2013-04-30 04:41 - 2013-04-30 04:41 - 01509376 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl 2013-04-30 04:41 - 2013-04-30 04:41 - 01441280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-04-30 04:41 - 2013-04-30 04:41 - 01400416 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-04-30 04:41 - 2013-04-30 04:41 - 01400416 ____A (Microsoft Corporation) C:\Windows\System32\ieapfltr.dat 2013-04-30 04:41 - 2013-04-30 04:41 - 01054720 ____A (Microsoft Corporation) C:\Windows\System32\MsSpellCheckingFacility.exe 2013-04-30 04:41 - 2013-04-30 04:41 - 00905728 ____A (Microsoft Corporation) C:\Windows\System32\mshtmlmedia.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00762368 ____A (Microsoft Corporation) C:\Windows\System32\ieapfltr.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00719360 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00629248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00599552 ____A (Microsoft Corporation) C:\Windows\System32\vbscript.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00523264 ____A (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00452096 ____A (Microsoft Corporation) C:\Windows\System32\dxtmsft.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00441856 ____A (Microsoft Corporation) C:\Windows\System32\html.iec 2013-04-30 04:41 - 2013-04-30 04:41 - 00361984 ____A (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-04-30 04:41 - 2013-04-30 04:41 - 00357888 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00281600 ____A (Microsoft Corporation) C:\Windows\System32\dxtrans.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00270848 ____A (Microsoft Corporation) C:\Windows\System32\iedkcs32.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00247296 ____A (Microsoft Corporation) C:\Windows\System32\webcheck.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00242200 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00235008 ____A (Microsoft Corporation) C:\Windows\System32\url.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00232960 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00226816 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00226304 ____A (Microsoft Corporation) C:\Windows\System32\elshyph.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00216064 ____A (Microsoft Corporation) C:\Windows\System32\msls31.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00204800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00197120 ____A (Microsoft Corporation) C:\Windows\System32\msrating.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00185344 ____A (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00173568 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe 2013-04-30 04:41 - 2013-04-30 04:41 - 00167424 ____A (Microsoft Corporation) C:\Windows\System32\iexpress.exe 2013-04-30 04:41 - 2013-04-30 04:41 - 00163840 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00158720 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00150528 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-04-30 04:41 - 2013-04-30 04:41 - 00149504 ____A (Microsoft Corporation) C:\Windows\System32\occache.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00144896 ____A (Microsoft Corporation) C:\Windows\System32\wextract.exe 2013-04-30 04:41 - 2013-04-30 04:41 - 00138752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-04-30 04:41 - 2013-04-30 04:41 - 00137216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-04-30 04:41 - 2013-04-30 04:41 - 00136192 ____A (Microsoft Corporation) C:\Windows\System32\iepeers.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00135680 ____A (Microsoft Corporation) C:\Windows\System32\IEAdvpack.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00125440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00117248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00110592 ____A (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00102912 ____A (Microsoft Corporation) C:\Windows\System32\inseng.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00097280 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00092160 ____A (Microsoft Corporation) C:\Windows\System32\SetIEInstalledDate.exe 2013-04-30 04:41 - 2013-04-30 04:41 - 00082432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00081408 ____A (Microsoft Corporation) C:\Windows\System32\icardie.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00079872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00077312 ____A (Microsoft Corporation) C:\Windows\System32\tdc.ocx 2013-04-30 04:41 - 2013-04-30 04:41 - 00073728 ____A (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-04-30 04:41 - 2013-04-30 04:41 - 00069120 ____A (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00062976 ____A (Microsoft Corporation) C:\Windows\System32\pngfilt.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00061952 ____A (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-04-30 04:41 - 2013-04-30 04:41 - 00057344 ____A (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00052224 ____A (Microsoft Corporation) C:\Windows\System32\msfeedsbs.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00051200 ____A (Microsoft Corporation) C:\Windows\System32\imgutil.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00048640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00048640 ____A (Microsoft Corporation) C:\Windows\System32\mshtmler.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00041984 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00038400 ____A (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00027648 ____A (Microsoft Corporation) C:\Windows\System32\licmgr10.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00023040 ____A (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-04-30 04:41 - 2013-04-30 04:41 - 00013824 ____A (Microsoft Corporation) C:\Windows\System32\mshta.exe 2013-04-30 04:41 - 2013-04-30 04:41 - 00012800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-04-30 04:41 - 2013-04-30 04:41 - 00012800 ____A (Microsoft Corporation) C:\Windows\System32\msfeedssync.exe 2013-04-30 04:41 - 2013-04-30 04:41 - 00011776 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-04-29 00:26 - 2011-10-16 02:46 - 00000000 ____D C:\Users\Olga-Niko\Desktop\Alles unwichtige 2013-04-18 08:58 - 2010-12-01 19:39 - 00285538 ____N C:\Windows\Minidump\041813-23322-01.dmp 2013-04-17 11:18 - 2013-04-17 11:18 - 00001785 ____A C:\Users\Public\Desktop\iTunes.lnk 2013-04-17 11:17 - 2013-04-17 11:17 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2013-04-17 11:17 - 2013-04-17 11:17 - 00000000 ____D C:\Program Files\iTunes 2013-04-17 11:17 - 2013-04-17 11:17 - 00000000 ____D C:\Program Files\iPod 2013-04-17 11:17 - 2011-07-05 06:43 - 00000000 ____D C:\Program Files (x86)\iTunes 2013-04-17 11:14 - 2013-04-17 11:11 - 90130256 ____A (Apple Inc.) C:\Users\Olga-Niko\Downloads\iTunes64Setup.exe Other Malware: =========== C:\Users\Olga-Niko\AppData\Roaming\AltShell.dat C:\Users\Olga-Niko\AppData\Roaming\AltShell.ini ==================== Known DLLs (Whitelisted) ================ ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit ==================== EXE ASSOCIATION ===================== HKLM\...\.exe: exefile => OK HKLM\...\exefile\DefaultIcon: %1 => OK HKLM\...\exefile\open\command: "%1" %* => OK ==================== Restore Points ========================= Restore point made on: 2013-04-24 10:35:21 Restore point made on: 2013-04-30 04:39:48 Restore point made on: 2013-05-01 05:45:06 Restore point made on: 2013-05-08 07:08:34 Restore point made on: 2013-05-15 11:24:33 ==================== Memory info =========================== Percentage of memory in use: 15% Total physical RAM: 6143.3 MB Available physical RAM: 5204.36 MB Total Pagefile: 6141.45 MB Available Pagefile: 5171.52 MB Total Virtual: 8192 MB Available Virtual: 8191.88 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:917.82 GB) (Free:819.48 GB) NTFS (Disk=0 Partition=2) Drive e: (HP_RECOVERY) (Fixed) (Total:13.6 GB) (Free:1.67 GB) NTFS (Disk=0 Partition=3) ==>[System with boot components (obtained from reading drive)] Drive h: (PHONE CARD) (Removable) (Total:7.43 GB) (Free:7.43 GB) FAT32 (Disk=2 Partition=1) Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS Drive y: (SYSTEM) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS (Disk=0 Partition=1) ==>[System with boot components (obtained from reading drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 932 GB) (Disk ID: 6D6010DD) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=918 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=14 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (Size: 7 GB) (Disk ID: 00000000) Partition 1: (Active) - (Size=7 GB) - (Type=0B) Last Boot: 2013-05-14 07:00 ==================== End Of Log ============================ |
Da muss man sich gar nicht wundern wo soviel Quark auf dem Rechner, dass da auch mal ein Schädling dabei ist. Wir fangen mal langsam an: Schritt 1: (Erinnerung: Antworte mir erst, wenn du alle Schritte abgearbeitet hast!) Fix mit FRST
Schritt 2: Normal booten. Schritt 3: AdwCleaner: Werbeprogramme suchen und löschen Downloade Dir bitte ![]()
Schritt 4: Scan mit Combofix
|
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 14-05-2013 Ran by SYSTEM at 2013-05-18 16:27:50 Run:1 Running from H:\ Boot Mode: Recovery ============================================== HKEY_USERS\Olga-Niko\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell => Value deleted successfully. C:\Users\Olga-Niko\AppData\Roaming\AltShell.dat => Moved successfully. BrowserProtect => Service deleted successfully. C:\ProgramData\BrowserProtect => Moved successfully. C:\Users\Olga-Niko\AppData\Roaming\AltShell.ini => Moved successfully. C:\ProgramData\BrowserProtect => File/Directory not found. C:\Users\Olga-Niko\Desktop\Free YouTube to MP3 Converter.lnk => Moved successfully. C:\Users\Olga-Niko\AppData\Roaming\OpenCandy => Moved successfully. C:\Users\Olga-Niko\AppData\Roaming\DVDVideoSoft => Moved successfully. C:\Users\Olga-Niko\AppData\Roaming\Delta => Moved successfully. C:\Users\Olga-Niko\AppData\Roaming\Babylon => Moved successfully. C:\ProgramData\Babylon => Moved successfully. C:\Program Files (x86)\DVDVideoSoft => Moved successfully. C:\Program Files (x86)\Delta => Moved successfully. ==== End of Fixlog ==== Hier schonmal der Fixlog Ich mache nun weiter mit dem Booten |
Nein du liest jetzt nochmal meine Regeln. |
Okay habe verstanden melde mich wenn alles soweit abgeschlossen ist... :( Sry Fixlog: Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 14-05-2013 Ran by SYSTEM at 2013-05-18 16:27:50 Run:1 Running from H:\ Boot Mode: Recovery ============================================== HKEY_USERS\Olga-Niko\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell => Value deleted successfully. C:\Users\Olga-Niko\AppData\Roaming\AltShell.dat => Moved successfully. BrowserProtect => Service deleted successfully. C:\ProgramData\BrowserProtect => Moved successfully. C:\Users\Olga-Niko\AppData\Roaming\AltShell.ini => Moved successfully. C:\ProgramData\BrowserProtect => File/Directory not found. C:\Users\Olga-Niko\Desktop\Free YouTube to MP3 Converter.lnk => Moved successfully. C:\Users\Olga-Niko\AppData\Roaming\OpenCandy => Moved successfully. C:\Users\Olga-Niko\AppData\Roaming\DVDVideoSoft => Moved successfully. C:\Users\Olga-Niko\AppData\Roaming\Delta => Moved successfully. C:\Users\Olga-Niko\AppData\Roaming\Babylon => Moved successfully. C:\ProgramData\Babylon => Moved successfully. C:\Program Files (x86)\DVDVideoSoft => Moved successfully. C:\Program Files (x86)\Delta => Moved successfully. ==== End of Fixlog ==== Adwcleaner:AdwCleaner Logfile: Code: # AdwCleaner v2.301 - Datei am 18/05/2013 um 16:34:34 erstellt Combofix: Combofix Logfile: Code: ComboFix 13-05-18.02 - Olga-Niko 18.05.2013 16:54:08.1.4 - x64 |
Okay dann weiter: Schritt 1: (Erinnerung: Antworte mir erst, wenn du alle Schritte abgearbeitet hast!) Deinstallation von Programmen
Schritt 2: AdwCleaner wiederholen Die vorliegende Version der Werbeprogramme ist ziemlich hartnäckig und kann von AdwCleaner erfahrungsgemäss nur bei zweimaliger Anwendung entfernt werden. Also wiederhole diesen Schritt bitte und poste auch das Logfile. Schritt 3: Nochmal Combofix mit Logfile. |
Ich hoffe du sprichst noch mit mir :( |
Wenn du alles abgearbeitet hast natürlich. |
So ich habe soweit alles was in der liste steht gelöscht bzw was ich so sehen konnte... Hier noch die logs..AdwCleaner Logfile: Code: # AdwCleaner v2.301 - Datei am 18/05/2013 um 19:44:52 erstellt Combofix Logfile: Code: ComboFix 13-05-18.03 - Olga-Niko 18.05.2013 20:06:13.2.4 - x64 Ich werde mich für heute erstmal auslogen zuviel pc für einen tag ich werde mich dann morgen nochmal zu wort melden hoffe das ist okay :) Aber ich danke dir JETZT schonmal für deine Hilfe.. ohne dich könnte ich denn sicher neu installieren...-.- MfG Tobias |
Schon viel besser :) Gut! :daumenhoc Soweit ich das sehe haben wir damit alles Schädliche entfernt. Um sicher sein zu können müssen jetzt noch ein paar Kontrollen machen und werden dann deinen Computer noch auf einen sicheren Stand bringen. Da diese Scans jetzt sehr lange dauern können bitte ich dich mir erst wieder zu schreiben, wenn du auch wirklich alles erledigt hast oder Probleme auftreten sollten. Schritt 1: Quick-Scan mit Malwarebytes Downloade Dir bitteSchritt 2: Hinweis: Der Scan kann sehr lange (einige Stunden) dauern! :kaffee: Schritt 3: Scan mit SecurityCheck Downloade Dir bitte ![]()
|
Alle Zeitangaben in WEZ +1. Es ist jetzt 09:37 Uhr. |
Copyright ©2000-2025, Trojaner-Board