Freedom71 | 20.07.2013 17:21 | Hallo schrauber,
Danke für Deine schnelle Reaktion. Ich hab den Scan durchgeführt, und hier sind die AUsgabedateien:
FRST.txt:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 19-07-2013
Ran by Jörg (administrator) on 20-07-2013 18:15:22
Running from C:\Users\Jörg\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(AMD) C:\Windows\system32\atiesrxx.exe
(Logitech Inc.) C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
(AMD) C:\Windows\system32\atieclxx.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe
(Protexis Inc.) c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Google Inc.) C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
(Dropbox, Inc.) C:\Users\Jörg\AppData\Roaming\Dropbox\bin\Dropbox.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
() C:\Windows\Samsung\PanelMgr\SSMMgr.exe
() C:\Windows\Samsung\PanelMgr\caller64.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Elements 11 Organizer\PhotoshopElementsFileAgent.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [JAVA] - C:\Windows\java.vbs [83 2010-11-17] ()
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11490408 2010-10-22] (Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [499608 2011-06-16] (Adobe Systems Incorporated)
HKCU\...\Run: [Sidebar] - C:\Program Files\Windows Sidebar\sidebar.exe [1475584 2010-11-20] (Microsoft Corporation)
HKCU\...\Run: [swg] - C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2013-06-02] (Google Inc.)
HKLM-x32\...\Run: [CLMLServer] - "C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe" [103720 2009-11-03] (CyberLink)
HKLM-x32\...\Run: [NUSB3MON] - "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" [113288 2010-11-17] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [StartCCC] - "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun [98304 2010-10-14] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [AVP] - "C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe" [356376 2013-06-02] (Kaspersky Lab ZAO)
HKLM-x32\...\Run: [Adobe ARM] - "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [958576 2013-05-11] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Samsung PanelMgr] - C:\Windows\Samsung\PanelMgr\ssmmgr.exe /autorun [614400 2009-09-11] ()
HKLM-x32\...\Run: [BCSSync] - "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices [91520 2010-03-13] (Microsoft Corporation)
HKU\Default\...\RunOnce: [HKCU] - C:\Windows\System32\oobe\info\HKCU.vbs [126 2009-11-12] ()
HKU\Default\...\RunOnce: [Screensaver] - C:\Windows\Web\Wallpaper\MEDION\start.vbs [129 2009-10-23] ()
HKU\Default User\...\RunOnce: [HKCU] - C:\Windows\System32\oobe\info\HKCU.vbs [126 2009-11-12] ()
HKU\Default User\...\RunOnce: [Screensaver] - C:\Windows\Web\Wallpaper\MEDION\start.vbs [129 2009-10-23] ()
Startup: C:\Users\Jörg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Jörg\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.babylon.com/?babsrc=HP_ss_din2g&mntrId=CA8F485D608AB638&affID=119357&tt=180613_ndt1&tsp=4921
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.aldi.com
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://www.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=CA8F485D608AB638&affID=119357&tt=180613_ndt1&tsp=4921
SearchScopes: HKCU - {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL =
BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
BHO: DVDVideoSoft WebPageAdjuster Class - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll (DVDVideoSoft Ltd.)
BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
BHO-x32: DVDVideoSoft WebPageAdjuster Class - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll (DVDVideoSoft Ltd.)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
DPF: HKLM-x32 {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} hxxp://download.microsoft.com/download/C/B/F/CBF23A2C-3E55-4664-BC5C-762780D79BA0/OGAControl.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
FireFox:
========
FF ProfilePath: C:\Users\Jörg\AppData\Roaming\Mozilla\Firefox\Path=C:\ProgramData\Kaspersky Lab\SafeBrowser\S-1-5-21-70867595-83286521-1987628882-1001\FireFox
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll ()
FF Plugin: @java.com/DTPlugin,version=10.21.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.21.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE - C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1202122.dll (Adobe Systems, Inc.)
FF Plugin-x32: @java.com/JavaPlugin - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF Plugin-x32: @microsoft.com/GENUINE - C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF HKLM-x32\...\Firefox\Extensions: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\url_advisor@kaspersky.com
FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\url_advisor@kaspersky.com
FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\virtual_keyboard@kaspersky.com
FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\virtual_keyboard@kaspersky.com
FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\content_blocker@kaspersky.com
FF Extension: Content Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\content_blocker@kaspersky.com
FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\anti_banner@kaspersky.com
FF Extension: Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\anti_banner@kaspersky.com
FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\online_banking@kaspersky.com
FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\online_banking@kaspersky.com
FF HKLM-x32\...\Firefox\Extensions: [{ACAA314B-EEBA-48e4-AD47-84E31C44796C}] C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff\
FF Extension: No Name - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff\
Chrome:
=======
CHR HomePage: hxxp://search.babylon.com/?babsrc=HP_ss_din2g&mntrId=CA8F485D608AB638&affID=119357&tt=180613_ndt1&tsp=4921
CHR RestoreOnStartup: "hxxp://search.babylon.com/?babsrc=HP_ss_din2g&mntrId=CA8F485D608AB638&affID=119357&tt=180613_ndt1&tsp=4921", "hxxp://www.delta-search.com/?babsrc=HP_ss&mntrId=CA8F485D608AB638&affID=119357&tt=180613_ndt1&tsp=4921"
CHR DefaultSearchURL: (Babylon) - hxxp://search.babylon.com/?q={searchTerms}&babsrc=SP_ss_din2g&mntrId=CA8F485D608AB638&affID=119357&tt=180613_ndt1&tsp=4921
CHR DefaultSuggestURL: (Babylon) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}sugkey={google:suggestAPIKeyParameter}
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.110\PepperFlash\pepflashplayer.dll No File
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.110\ppGoogleNaClPluginChrome.dll No File
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.110\pdf.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Java Deployment Toolkit 6.0.220.4) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll (Sun Microsystems, Inc.)
CHR Plugin: (Java(TM) Platform SE 6 U22) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll No File
CHR Plugin: (Windows Live Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (Shockwave for Director) - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1202122.dll (Adobe Systems, Inc.)
CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_202.dll No File
CHR Plugin: (Windows Activation Technologies) - C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll No File
CHR Extension: (Kaspersky URL Advisor) - C:\Users\JRG~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\13.0.1.4190_1
CHR Extension: (Safe Money) - C:\Users\JRG~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\hakdifolhalapjijoafobooafbilfakh\13.0.1.4190_0
CHR Extension: (Content Blocker) - C:\Users\JRG~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\hghkgaeecgjhjkannahfamoehjmkjail\13.0.1.4190_1
CHR Extension: (Virtual Keyboard) - C:\Users\JRG~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh\13.0.1.4292_1
CHR Extension: (DVDVideoSoft Browser Extension) - C:\Users\JRG~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.2.3.3_0
CHR Extension: (Anti-Banner) - C:\Users\JRG~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman\13.0.1.4190_0
CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\urladvisor.crx
CHR HKLM-x32\...\Chrome\Extension: [hakdifolhalapjijoafobooafbilfakh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\online_banking_chrome.crx
CHR HKLM-x32\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\content_blocker_chrome.crx
CHR HKLM-x32\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\virtkbd.crx
CHR HKLM-x32\...\Chrome\Extension: [pjldcfjmnllhmgjclecdnfampinooman] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\ab.crx
==================== Services (Whitelisted) =================
R2 AdobeActiveFileMonitor11.0; C:\Program Files (x86)\Adobe\Elements 11 Organizer\PhotoshopElementsFileAgent.exe [171600 2012-09-23] (Adobe Systems Incorporated)
R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe [356376 2013-06-02] (Kaspersky Lab ZAO)
==================== Drivers (Whitelisted) ====================
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458584 2012-06-19] (Kaspersky Lab ZAO)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [620128 2013-06-02] (Kaspersky Lab ZAO)
R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [28504 2012-08-02] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29016 2012-10-25] (Kaspersky Lab)
R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29528 2012-10-25] (Kaspersky Lab)
R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [54368 2013-06-19] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [178448 2013-06-02] (Kaspersky Lab ZAO)
R0 PxHlpa64; C:\Windows\System32\Drivers\PxHlpa64.sys [56336 2012-08-10] (Corel Corporation)
S3 Serial; C:\Windows\system32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)
S2 DgiVecp; \??\C:\Windows\system32\Drivers\DgiVecp.sys [x]
S3 iaStor; \SystemRoot\system32\DRIVERS\iaStor.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-07-20 18:14 - 2013-07-20 18:14 - 01779345 _____ (Farbar) C:\Users\Jörg\Downloads\FRST64.exe
2013-07-20 18:14 - 2013-07-20 18:14 - 00000000 ____D C:\FRST
2013-07-20 06:50 - 2013-07-20 06:50 - 00003488 _____ C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-PC-Jörg
2013-07-20 06:48 - 2013-07-20 18:04 - 00000112 _____ C:\Windows\setupact.log
2013-07-20 06:48 - 2013-07-20 06:48 - 00000000 _____ C:\Windows\setuperr.log
2013-07-19 22:38 - 2013-07-19 22:38 - 00000000 ____D C:\Program Files\Common Files\Adobe
2013-07-19 22:33 - 2013-07-19 22:33 - 00001896 _____ C:\Users\Public\Desktop\Adobe Photoshop Elements 11.lnk
2013-07-19 22:33 - 2012-08-10 03:01 - 00056336 ____N (Corel Corporation) C:\Windows\system32\Drivers\PxHlpa64.sys
2013-07-19 22:33 - 2012-04-24 03:01 - 00011376 ____N (Corel Corporation) C:\Windows\system32\Drivers\cdralw2k.sys
2013-07-19 22:33 - 2012-04-24 03:01 - 00010864 ____N (Corel Corporation) C:\Windows\system32\Drivers\cdr4_xp.sys
2013-07-19 22:17 - 2013-07-19 22:29 - 00000000 ____D C:\Users\Jörg\Downloads\Adobe Photoshop Elements 11
2013-07-19 21:37 - 2013-07-19 21:37 - 00001035 _____ C:\Users\Public\Desktop\Adobe Download Assistant.lnk
2013-07-19 21:37 - 2013-07-19 21:37 - 00000000 ____D C:\Users\Jörg\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
2013-07-19 21:37 - 2013-07-19 21:37 - 00000000 ____D C:\Program Files (x86)\Adobe Download Assistant
2013-07-19 21:31 - 2013-07-19 21:31 - 00000000 ____D C:\Users\Jörg\AppData\Roaming\No Company Name
2013-07-19 21:26 - 2013-07-19 21:26 - 02469824 _____ C:\Users\Jörg\Downloads\AdobeDownloadAssistant.exe
2013-07-19 20:47 - 2013-07-19 20:47 - 00000000 ____D C:\Users\Jörg\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
2013-07-19 19:24 - 2013-07-19 19:24 - 00000000 ____D C:\Users\Jörg\AppData\Roaming\Malwarebytes
2013-07-19 19:23 - 2013-07-19 19:23 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Jörg\Downloads\mbam-setup-1.75.0.1300.exe
2013-07-19 19:23 - 2013-07-19 19:23 - 00001109 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-07-19 19:23 - 2013-07-19 19:23 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-07-19 19:23 - 2013-07-19 19:23 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-07-19 19:23 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2013-07-19 19:15 - 2013-07-19 19:15 - 00099874 _____ C:\Users\Jörg\Downloads\Extras.Txt
2013-07-19 19:14 - 2013-07-19 19:14 - 00089814 _____ C:\Users\Jörg\Downloads\OTL.Txt
2013-07-19 19:05 - 2013-07-19 19:05 - 00602112 _____ (OldTimer Tools) C:\Users\Jörg\Downloads\OTL.exe
2013-07-18 21:12 - 2013-07-19 20:39 - 00000000 ____D C:\Windows\Minidump
2013-07-18 21:11 - 2013-07-19 22:39 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2013-07-18 20:54 - 2013-07-18 20:57 - 00000000 ____D C:\Users\Jörg\Downloads\software_adobe_photoshop_elements_10_win
2013-07-18 20:49 - 2013-07-18 20:51 - 1757875453 _____ C:\Users\Jörg\Downloads\software_adobe_photoshop_elements_10_win.zip
2013-07-16 20:49 - 2013-07-16 21:35 - 00000000 ____D C:\Users\Jörg\Documents\Fotografie
2013-07-14 13:52 - 2013-07-14 13:52 - 00003076 _____ C:\Windows\System32\Tasks\{302636FB-38B1-44A8-A2A4-0E6D6F40EA88}
2013-07-10 19:24 - 2013-06-12 01:43 - 14329856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-07-10 19:24 - 2013-06-12 01:43 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-07-10 19:24 - 2013-06-12 01:43 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-07-10 19:24 - 2013-06-12 01:43 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-07-10 19:24 - 2013-06-12 01:43 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-07-10 19:24 - 2013-06-12 01:43 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-07-10 19:24 - 2013-06-12 01:43 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-07-10 19:24 - 2013-06-12 01:42 - 13760512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-07-10 19:24 - 2013-06-12 01:42 - 02046976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-07-10 19:24 - 2013-06-12 01:42 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-07-10 19:24 - 2013-06-12 01:42 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-07-10 19:24 - 2013-06-12 01:42 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-07-10 19:24 - 2013-06-12 01:42 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-07-10 19:24 - 2013-06-12 01:26 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-07-10 19:24 - 2013-06-12 01:26 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-07-10 19:24 - 2013-06-12 01:26 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-07-10 19:24 - 2013-06-12 01:25 - 19238912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-07-10 19:24 - 2013-06-12 01:25 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-07-10 19:24 - 2013-06-12 01:25 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-07-10 19:24 - 2013-06-12 01:25 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-07-10 19:24 - 2013-06-12 01:25 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-07-10 19:24 - 2013-06-12 01:25 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-07-10 19:24 - 2013-06-12 01:25 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-07-10 19:24 - 2013-06-12 01:25 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-07-10 19:24 - 2013-06-12 01:25 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-07-10 19:24 - 2013-06-12 01:25 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-07-10 19:24 - 2013-06-12 01:25 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-07-10 19:24 - 2013-06-12 00:51 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-07-10 19:24 - 2013-06-12 00:50 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-07-10 19:24 - 2013-06-07 05:22 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-07-10 19:24 - 2013-06-07 04:37 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-07-10 18:15 - 2013-06-05 05:34 - 03153920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-07-10 18:15 - 2013-06-04 08:00 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2013-07-10 18:15 - 2013-06-04 06:53 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2013-07-10 18:15 - 2013-05-06 08:03 - 01887744 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2013-07-10 18:15 - 2013-05-06 06:56 - 01620480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2013-07-10 18:15 - 2013-04-10 01:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2013-07-10 18:15 - 2013-04-03 00:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2013-07-05 14:45 - 2013-07-05 14:45 - 00297594 _____ C:\Users\Jörg\Downloads\CtPdfRequest.aspx
2013-07-03 21:24 - 2013-07-03 21:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-06-30 23:32 - 2013-06-30 23:32 - 00000000 ____D C:\Users\JRG~1\AppData\Local\webkit
2013-06-30 23:30 - 2013-07-18 22:22 - 00000000 ____D C:\Users\Jörg\.gimp-2.8
2013-06-30 23:30 - 2013-06-30 23:30 - 00000896 _____ C:\Users\Jörg\Desktop\GIMP 2.lnk
2013-06-30 23:30 - 2013-06-30 23:30 - 00000000 ____D C:\Users\JRG~1\AppData\Local\gegl-0.2
2013-06-30 22:18 - 2013-06-30 22:19 - 00000000 ____D C:\Program Files\GIMP 2
2013-06-30 21:34 - 2013-06-30 21:35 - 29668472 _____ ( ) C:\Users\Jörg\Downloads\gimp-help-2-2.8.0-de-setup.exe
2013-06-30 21:32 - 2013-06-30 21:40 - 90139696 _____ (The GIMP Team ) C:\Users\Jörg\Downloads\gimp-2.8.6-setup.exe
2013-06-22 22:42 - 2013-07-19 16:42 - 00000005 _____ C:\Users\Jörg\AppData\Roaming\WBPU-TTL.DAT
2013-06-22 21:42 - 2013-07-20 07:42 - 00000284 _____ C:\Windows\Tasks\DSite.job
2013-06-22 21:42 - 2013-06-22 21:42 - 00003210 _____ C:\Windows\System32\Tasks\DSite
2013-06-22 21:42 - 2013-06-22 21:42 - 00000000 ____D C:\Users\Jörg\AppData\Roaming\Zip Opener Packages
2013-06-22 21:42 - 2013-06-22 21:42 - 00000000 ____D C:\Users\Jörg\AppData\Roaming\DSite
2013-06-22 21:41 - 2013-06-22 21:41 - 00793536 _____ C:\Users\Jörg\Downloads\ZipOpenerSetup.exe
2013-06-22 21:19 - 2013-06-22 21:19 - 00001144 _____ C:\Users\Public\Desktop\Switch Audiodatei-Konverter.lnk
2013-06-22 21:19 - 2013-06-22 21:19 - 00001114 _____ C:\Users\Public\Desktop\NCH Tone Generator.lnk
2013-06-22 21:18 - 2013-07-10 21:34 - 00000000 ____D C:\Windows\System32\Tasks\NCH Software
2013-06-22 21:18 - 2013-06-30 11:32 - 00000000 ____D C:\ProgramData\NCH Software
2013-06-22 21:18 - 2013-06-24 23:20 - 00000000 ____D C:\Users\Jörg\Documents\Mixpad Projects
2013-06-22 21:18 - 2013-06-22 21:30 - 00000000 ____D C:\Users\Jörg\AppData\Roaming\NCH Software
2013-06-22 21:18 - 2013-06-22 21:19 - 00000000 ____D C:\Program Files (x86)\NCH Software
2013-06-22 21:18 - 2013-06-22 21:18 - 00001140 _____ C:\Users\Public\Desktop\WavePad Audio-Editor.lnk
2013-06-22 21:18 - 2013-06-22 21:18 - 00001136 _____ C:\Users\Public\Desktop\MixPad Audiodatei-Mixer.lnk
2013-06-22 21:18 - 2013-06-22 21:18 - 00000000 ____D C:\Users\Jörg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NCH Software Produktpalette
2013-06-22 21:18 - 2013-06-22 21:18 - 00000000 ____D C:\Users\Jörg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Audioverwandte Programme
2013-06-22 21:17 - 2013-06-22 21:17 - 00939032 _____ (NCH Software) C:\Users\Jörg\Downloads\wpsetup.exe
==================== One Month Modified Files and Folders =======
2013-07-20 18:14 - 2013-07-20 18:14 - 01779345 _____ (Farbar) C:\Users\Jörg\Downloads\FRST64.exe
2013-07-20 18:14 - 2013-07-20 18:14 - 00000000 ____D C:\FRST
2013-07-20 18:11 - 2009-07-14 06:45 - 00010096 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-07-20 18:11 - 2009-07-14 06:45 - 00010096 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-07-20 18:07 - 2013-06-04 21:35 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-07-20 18:06 - 2013-06-02 16:48 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-07-20 18:04 - 2013-07-20 06:48 - 00000112 _____ C:\Windows\setupact.log
2013-07-20 18:04 - 2013-06-06 18:25 - 00000000 ___RD C:\Users\Jörg\Dropbox
2013-07-20 18:04 - 2013-06-06 18:22 - 00000000 ____D C:\Users\Jörg\AppData\Roaming\Dropbox
2013-07-20 18:04 - 2013-06-02 18:48 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2013-07-20 18:04 - 2013-06-02 16:48 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-07-20 18:04 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-07-20 07:58 - 2013-06-02 16:33 - 01097443 _____ C:\Windows\WindowsUpdate.log
2013-07-20 07:42 - 2013-06-22 21:42 - 00000284 _____ C:\Windows\Tasks\DSite.job
2013-07-20 06:50 - 2013-07-20 06:50 - 00003488 _____ C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-PC-Jörg
2013-07-20 06:49 - 2009-07-14 06:45 - 02065088 _____ C:\Windows\system32\FNTCACHE.DAT
2013-07-20 06:48 - 2013-07-20 06:48 - 00000000 _____ C:\Windows\setuperr.log
2013-07-19 22:39 - 2013-07-18 21:11 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2013-07-19 22:39 - 2013-06-02 16:53 - 00115600 _____ C:\Users\JRG~1\AppData\Local\GDIPFONTCACHEV1.DAT
2013-07-19 22:38 - 2013-07-19 22:38 - 00000000 ____D C:\Program Files\Common Files\Adobe
2013-07-19 22:37 - 2010-07-07 18:28 - 00000000 ____D C:\ProgramData\Adobe
2013-07-19 22:33 - 2013-07-19 22:33 - 00001896 _____ C:\Users\Public\Desktop\Adobe Photoshop Elements 11.lnk
2013-07-19 22:33 - 2010-07-07 18:28 - 00000000 ____D C:\Program Files (x86)\Adobe
2013-07-19 22:29 - 2013-07-19 22:17 - 00000000 ____D C:\Users\Jörg\Downloads\Adobe Photoshop Elements 11
2013-07-19 21:37 - 2013-07-19 21:37 - 00001035 _____ C:\Users\Public\Desktop\Adobe Download Assistant.lnk
2013-07-19 21:37 - 2013-07-19 21:37 - 00000000 ____D C:\Users\Jörg\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
2013-07-19 21:37 - 2013-07-19 21:37 - 00000000 ____D C:\Program Files (x86)\Adobe Download Assistant
2013-07-19 21:31 - 2013-07-19 21:31 - 00000000 ____D C:\Users\Jörg\AppData\Roaming\No Company Name
2013-07-19 21:26 - 2013-07-19 21:26 - 02469824 _____ C:\Users\Jörg\Downloads\AdobeDownloadAssistant.exe
2013-07-19 20:47 - 2013-07-19 20:47 - 00000000 ____D C:\Users\Jörg\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
2013-07-19 20:45 - 2013-06-02 17:12 - 00000000 ____D C:\Users\Jörg\AppData\Roaming\Adobe
2013-07-19 20:39 - 2013-07-18 21:12 - 00000000 ____D C:\Windows\Minidump
2013-07-19 20:39 - 2010-07-07 03:40 - 00000000 ____D C:\Windows\Panther
2013-07-19 19:24 - 2013-07-19 19:24 - 00000000 ____D C:\Users\Jörg\AppData\Roaming\Malwarebytes
2013-07-19 19:23 - 2013-07-19 19:23 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Jörg\Downloads\mbam-setup-1.75.0.1300.exe
2013-07-19 19:23 - 2013-07-19 19:23 - 00001109 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-07-19 19:23 - 2013-07-19 19:23 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-07-19 19:23 - 2013-07-19 19:23 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-07-19 19:15 - 2013-07-19 19:15 - 00099874 _____ C:\Users\Jörg\Downloads\Extras.Txt
2013-07-19 19:14 - 2013-07-19 19:14 - 00089814 _____ C:\Users\Jörg\Downloads\OTL.Txt
2013-07-19 19:05 - 2013-07-19 19:05 - 00602112 _____ (OldTimer Tools) C:\Users\Jörg\Downloads\OTL.exe
2013-07-19 16:42 - 2013-06-22 22:42 - 00000005 _____ C:\Users\Jörg\AppData\Roaming\WBPU-TTL.DAT
2013-07-18 22:22 - 2013-06-30 23:30 - 00000000 ____D C:\Users\Jörg\.gimp-2.8
2013-07-18 21:57 - 2013-06-03 22:31 - 00000000 ____D C:\Users\JRG~1\AppData\Local\Adobe
2013-07-18 20:57 - 2013-07-18 20:54 - 00000000 ____D C:\Users\Jörg\Downloads\software_adobe_photoshop_elements_10_win
2013-07-18 20:51 - 2013-07-18 20:49 - 1757875453 _____ C:\Users\Jörg\Downloads\software_adobe_photoshop_elements_10_win.zip
2013-07-16 21:35 - 2013-07-16 20:49 - 00000000 ____D C:\Users\Jörg\Documents\Fotografie
2013-07-15 21:01 - 2013-06-02 16:48 - 00004106 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-07-15 21:01 - 2013-06-02 16:48 - 00003854 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-07-15 15:01 - 2013-06-02 16:49 - 00000000 ____D C:\ProgramData\Partner
2013-07-14 15:07 - 2013-06-02 19:38 - 00000000 ____D C:\Users\Jörg\Documents\Verkäufe
2013-07-14 14:01 - 2013-06-02 17:12 - 00000000 ____D C:\Users\JRG~1\AppData\Local\Google
2013-07-14 13:54 - 2013-06-03 21:50 - 00000000 ____D C:\Users\Jörg\AppData\Roaming\Skype
2013-07-14 13:52 - 2013-07-14 13:52 - 00003076 _____ C:\Windows\System32\Tasks\{302636FB-38B1-44A8-A2A4-0E6D6F40EA88}
2013-07-14 13:52 - 2013-06-03 21:50 - 00000000 ___RD C:\Program Files (x86)\Skype
2013-07-14 13:52 - 2013-06-03 21:50 - 00000000 ____D C:\ProgramData\Skype
2013-07-13 11:36 - 2013-06-09 11:59 - 00000000 ____D C:\Users\Jörg\AppData\Roaming\Garmin
2013-07-13 11:24 - 2013-06-09 11:59 - 00000000 ____D C:\Program Files (x86)\Garmin
2013-07-13 11:21 - 2010-05-12 10:18 - 00654150 _____ C:\Windows\system32\perfh007.dat
2013-07-13 11:21 - 2010-05-12 10:18 - 00130022 _____ C:\Windows\system32\perfc007.dat
2013-07-13 11:21 - 2009-07-14 07:13 - 01498742 _____ C:\Windows\system32\PerfStringBackup.INI
2013-07-13 08:04 - 2013-06-02 16:48 - 00002187 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2013-07-10 21:34 - 2013-06-22 21:18 - 00000000 ____D C:\Windows\System32\Tasks\NCH Software
2013-07-10 21:20 - 2013-06-04 21:35 - 00692104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-07-10 21:20 - 2013-06-04 21:35 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-07-10 21:20 - 2013-06-04 21:35 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-07-10 21:05 - 2013-06-07 23:15 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-07-10 21:05 - 2013-06-07 23:15 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2013-07-10 21:04 - 2009-07-14 09:45 - 00000000 ____D C:\Program Files\Windows Journal
2013-07-10 21:04 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender
2013-07-10 21:04 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2013-07-10 19:41 - 2013-06-07 21:17 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-07-10 19:27 - 2010-07-07 17:49 - 78185248 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-07-05 14:45 - 2013-07-05 14:45 - 00297594 _____ C:\Users\Jörg\Downloads\CtPdfRequest.aspx
2013-07-05 13:40 - 2013-06-03 21:45 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-07-03 21:24 - 2013-07-03 21:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-06-30 23:32 - 2013-06-30 23:32 - 00000000 ____D C:\Users\JRG~1\AppData\Local\webkit
2013-06-30 23:30 - 2013-06-30 23:30 - 00000896 _____ C:\Users\Jörg\Desktop\GIMP 2.lnk
2013-06-30 23:30 - 2013-06-30 23:30 - 00000000 ____D C:\Users\JRG~1\AppData\Local\gegl-0.2
2013-06-30 23:30 - 2013-06-02 16:52 - 00000000 ____D C:\Users\Jörg
2013-06-30 22:19 - 2013-06-30 22:18 - 00000000 ____D C:\Program Files\GIMP 2
2013-06-30 21:40 - 2013-06-30 21:32 - 90139696 _____ (The GIMP Team ) C:\Users\Jörg\Downloads\gimp-2.8.6-setup.exe
2013-06-30 21:35 - 2013-06-30 21:34 - 29668472 _____ ( ) C:\Users\Jörg\Downloads\gimp-help-2-2.8.0-de-setup.exe
2013-06-30 12:49 - 2013-06-04 20:47 - 00000000 __SHD C:\Users\Jörg\AppData\Roaming\.#
2013-06-30 12:20 - 2013-06-11 20:48 - 00000000 ____D C:\Users\Jörg\AppData\Roaming\ALDI_SUED_Mah_Jong
2013-06-30 11:32 - 2013-06-22 21:18 - 00000000 ____D C:\ProgramData\NCH Software
2013-06-26 21:38 - 2013-06-03 18:42 - 00000000 ____D C:\Users\JRG~1\AppData\Local\Microsoft Games
2013-06-24 23:20 - 2013-06-22 21:18 - 00000000 ____D C:\Users\Jörg\Documents\Mixpad Projects
2013-06-23 19:06 - 2013-06-02 16:55 - 00009077 _____ C:\Windows\system32\lvcoinst.log
2013-06-22 21:42 - 2013-06-22 21:42 - 00003210 _____ C:\Windows\System32\Tasks\DSite
2013-06-22 21:42 - 2013-06-22 21:42 - 00000000 ____D C:\Users\Jörg\AppData\Roaming\Zip Opener Packages
2013-06-22 21:42 - 2013-06-22 21:42 - 00000000 ____D C:\Users\Jörg\AppData\Roaming\DSite
2013-06-22 21:41 - 2013-06-22 21:41 - 00793536 _____ C:\Users\Jörg\Downloads\ZipOpenerSetup.exe
2013-06-22 21:30 - 2013-06-22 21:18 - 00000000 ____D C:\Users\Jörg\AppData\Roaming\NCH Software
2013-06-22 21:19 - 2013-06-22 21:19 - 00001144 _____ C:\Users\Public\Desktop\Switch Audiodatei-Konverter.lnk
2013-06-22 21:19 - 2013-06-22 21:19 - 00001114 _____ C:\Users\Public\Desktop\NCH Tone Generator.lnk
2013-06-22 21:19 - 2013-06-22 21:18 - 00000000 ____D C:\Program Files (x86)\NCH Software
2013-06-22 21:18 - 2013-06-22 21:18 - 00001140 _____ C:\Users\Public\Desktop\WavePad Audio-Editor.lnk
2013-06-22 21:18 - 2013-06-22 21:18 - 00001136 _____ C:\Users\Public\Desktop\MixPad Audiodatei-Mixer.lnk
2013-06-22 21:18 - 2013-06-22 21:18 - 00000000 ____D C:\Users\Jörg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NCH Software Produktpalette
2013-06-22 21:18 - 2013-06-22 21:18 - 00000000 ____D C:\Users\Jörg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Audioverwandte Programme
2013-06-22 21:17 - 2013-06-22 21:17 - 00939032 _____ (NCH Software) C:\Users\Jörg\Downloads\wpsetup.exe
2013-06-20 17:52 - 2013-06-19 22:52 - 00000000 ____D C:\ProgramData\Garmin
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-07-13 19:54
==================== End Of Log ============================ --- --- ---
...und Addition.txt: Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 19-07-2013
Ran by Jörg at 2013-07-20 18:16:10
Running from C:\Users\Jörg\Downloads
Boot Mode: Normal
==========================================================
==================== Installed Programs =======================
Acrobat.com (x32 Version: 1.6.65)
Adobe AIR (x32 Version: 2.6.0.19140)
Adobe Community Help (x32 Version: 3.5.23)
Adobe Download Assistant (x32 Version: 1.2.6)
Adobe Flash Player 11 ActiveX (x32 Version: 11.7.700.224)
Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.94)
Adobe Photoshop Elements 11 (x32 Version: 11.0)
Adobe Reader XI (11.0.03) - Deutsch (x32 Version: 11.0.03)
Adobe Shockwave Player 12.0 (x32 Version: 12.0.2.122)
ALDI Bestellsoftware 4.12.2 (x32 Version: 4.12.2)
ALDI SÜD Mah Jong (x32)
Ashampoo Burning Studio (x32 Version: 9.23.0)
Ashampoo Photo Commander (x32 Version: 8.1.0)
Ashampoo Photo Optimizer (x32 Version: 3.12.0)
Ashampoo Snap (x32 Version: 3.4.0)
ATI Catalyst Install Manager (Version: 3.0.804.0)
Catalyst Control Center Graphics Previews Vista (x32 Version: 2010.1013.2133.36853)
Catalyst Control Center InstallProxy (x32 Version: 2010.1013.2133.36853)
Catalyst Control Center Localization All (x32 Version: 2010.1013.2133.36853)
CCC Help Danish (x32 Version: 2010.1013.2132.36853)
CCC Help Dutch (x32 Version: 2010.1013.2132.36853)
CCC Help English (x32 Version: 2010.1013.2132.36853)
CCC Help Finnish (x32 Version: 2010.1013.2132.36853)
CCC Help French (x32 Version: 2010.1013.2132.36853)
CCC Help German (x32 Version: 2010.1013.2132.36853)
CCC Help Italian (x32 Version: 2010.1013.2132.36853)
CCC Help Japanese (x32 Version: 2010.1013.2132.36853)
CCC Help Norwegian (x32 Version: 2010.1013.2132.36853)
CCC Help Spanish (x32 Version: 2010.1013.2132.36853)
CCC Help Swedish (x32 Version: 2010.1013.2132.36853)
ccc-core-static (x32 Version: 2010.1013.2133.36853)
ccc-utility64 (Version: 2010.1013.2133.36853)
CCleaner (Version: 4.02)
Control ActiveX de Windows Live Mesh para conexiones remotas (x32 Version: 15.4.5722.2)
Contrôle ActiveX Windows Live Mesh pour connexions à distance (x32 Version: 15.4.5722.2)
Controlo ActiveX do Windows Live Mesh para Ligações Remotas (x32 Version: 15.4.5722.2)
Corel Shell Extension - 64Bit (Version: 14.0)
CorelDRAW Essentials 4 - Content (x32 Version: 4.0)
CorelDRAW Essentials 4 - Draw (x32 Version: 4.0)
CorelDRAW Essentials 4 - Filters (x32 Version: 4.0)
CorelDRAW Essentials 4 - ICA (x32 Version: 4.0)
CorelDRAW Essentials 4 - IPM - No VBA (x32 Version: 4.0)
CorelDRAW Essentials 4 - Lang BR (x32 Version: 4.0)
CorelDRAW Essentials 4 - Lang DE (x32 Version: 4.0)
CorelDRAW Essentials 4 - Lang EN (x32 Version: 4.0)
CorelDRAW Essentials 4 - Lang ES (x32 Version: 4.0)
CorelDRAW Essentials 4 - Lang FR (x32 Version: 4.0)
CorelDRAW Essentials 4 - Lang IT (x32 Version: 4.0)
CorelDRAW Essentials 4 - Lang NL (x32 Version: 4.0)
CorelDRAW Essentials 4 - PHOTO-PAINT (x32 Version: 4.0)
CorelDRAW Essentials 4 - Windows Shell Extension (x32 Version: 1.1)
CorelDRAW Essentials 4 - Windows Shell Extension (x32)
CorelDRAW Essentials 4 (x32 Version: 4.0)
CorelDRAW Essentials 4 (x32)
CyberLink LabelPrint (x32 Version: 2.5.2515)
CyberLink Power2Go (x32 Version: 6.1.3602c)
CyberLink PowerDVD Copy (x32 Version: 1.5.1306)
D3DX10 (x32 Version: 15.4.2368.0902)
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (x32)
dows Driver Package - Garmin (grmnusb) GARMIN Devices (04/19/2012 2.3.1.0) (Version: 04/19/2012 2.3.1.0)
Dropbox (HKCU Version: 2.0.26)
Ease Audio Converter 5.27 (x32)
EasyGPS 4.92.0.0 (x32 Version: 4.92.0.0)
Elements 11 Organizer (x32 Version: 11.0)
Formant ActiveX programu Windows Live Mesh odpowiedzialny za obsługę połączeń zdalnych (x32 Version: 15.4.5722.2)
Fotogalerija Windows Live (x32 Version: 15.4.3502.0922)
Free YouTube to MP3 Converter version 3.12.2.430 (x32 Version: 3.12.2.430)
Galeria de Fotografias do Windows Live (x32 Version: 15.4.3502.0922)
Galería fotográfica de Windows Live (x32 Version: 15.4.3502.0922)
Galeria fotografii usługi Windows Live (x32 Version: 15.4.3502.0922)
Galerie de photos Windows Live (x32 Version: 15.4.3502.0922)
Garmin BaseCamp (x32 Version: 4.2.1)
Garmin USB Drivers (x32 Version: 2.3.1.0)
GIMP 2.8.6 (Version: 2.8.6)
Google Chrome (x32 Version: 28.0.1500.72)
Google Toolbar for Internet Explorer (x32 Version: 1.0.0)
Google Toolbar for Internet Explorer (x32 Version: 7.5.4209.2358)
Google Update Helper (x32 Version: 1.3.21.153)
Java 7 Update 21 (64-bit) (Version: 7.0.210)
Java Auto Updater (x32 Version: 2.0.2.4)
Java(TM) 6 Update 22 (64-bit) (Version: 6.0.220)
Java(TM) 6 Update 22 (x32 Version: 6.0.220)
Junk Mail filter update (x32 Version: 15.4.3502.0922)
Kaspersky Internet Security 2013 (x32 Version: 13.0.1.4190)
Kontrolnik Windows Live Mesh ActiveX za oddaljene povezave (x32 Version: 15.4.5722.2)
Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300)
Medion Home Cinema (x32 Version: 6.0.0000)
Mesh Runtime (x32 Version: 15.4.5722.2)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Office 2010 Service Pack 1 (SP1) (x32)
Microsoft Office Access MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Excel MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Groove MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office InfoPath MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Office 64-bit Components 2010 (Version: 14.0.6029.1000)
Microsoft Office OneNote MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Outlook MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office PowerPoint MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Professional Plus 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Proof (English) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Proof (French) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Proof (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Proof (Italian) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Proofing (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Publisher MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Shared 64-bit MUI (German) 2010 (Version: 14.0.6029.1000)
Microsoft Office Shared MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Word MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Silverlight (Version: 5.1.20513.0)
Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000)
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (Version: 8.0.50727.4053)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (Version: 10.0.30319)
MixPad Audiodatei-Mixer (x32)
Mozilla Firefox 22.0 (x86 de) (x32 Version: 22.0)
Mozilla Maintenance Service (x32 Version: 22.0)
MSVCRT (x32 Version: 15.4.2862.0708)
MSVCRT_amd64 (x32 Version: 15.4.2862.0708)
MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0)
NCH Tone Generator (x32 Version: 3.04)
PlayReady PC Runtime amd64 (Version: 1.3.0)
Poczta usługi Windows Live (x32 Version: 15.4.3502.0922)
Podstawowe programy Windows Live (x32 Version: 15.4.3502.0922)
Pošta Windows Live (x32 Version: 15.4.3502.0922)
PSE11 STI Installer (x32 Version: 11.0)
Raccolta foto di Windows Live (x32 Version: 15.4.3502.0922)
Realtek High Definition Audio Driver (x32 Version: 6.0.1.6225)
Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.30.0)
Samsung ML-2850 Series (x32)
Skype™ 6.6 (x32 Version: 6.6.106)
Spelling Dictionaries Support For Adobe Reader 9 (x32 Version: 9.0.0)
Switch Audiodatei-Konverter (x32 Version: 4.48)
swMSM (x32 Version: 12.0.0.1)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1)
Update for Microsoft Office 2010 (KB2553065) (x32)
Update for Microsoft Office 2010 (KB2553092) (x32)
Update for Microsoft Office 2010 (KB2553181) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2553267) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2553378) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2566458) (x32)
Update for Microsoft Office 2010 (KB2596964) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2598242) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2687503) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2687509) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2767886) 32-Bit Edition (x32)
Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition (x32)
Update for Microsoft Outlook 2010 (KB2597090) 32-Bit Edition (x32)
Update for Microsoft Outlook 2010 (KB2687623) 32-Bit Edition (x32)
Update for Microsoft Outlook Social Connector 2010 (KB2553406) 32-Bit Edition (x32)
Update for Microsoft PowerPoint 2010 (KB2598240) 32-Bit Edition (x32)
Update for Microsoft SharePoint Workspace 2010 (KB2589371) 32-Bit Edition (x32)
Update for Zip Opener (HKCU)
Uzak Bağlantılar İçin Windows Live Mesh ActiveX Denetimi (x32 Version: 15.4.5722.2)
Versandhelfer (x32 Version: 0.9.511)
WavePad Audio-Editor (x32 Version: 5.49)
Windows Live Communications Platform (x32 Version: 15.4.3502.0922)
Windows Live Essentials (x32 Version: 15.4.3502.0922)
Windows Live Fotogalerie (x32 Version: 15.4.3502.0922)
Windows Live Fotoğraf Galerisi (x32 Version: 15.4.3502.0922)
Windows Live Fotótár (x32 Version: 15.4.3502.0922)
Windows Live ID Sign-in Assistant (Version: 7.250.4225.0)
Windows Live Installer (x32 Version: 15.4.3502.0922)
Windows Live Language Selector (Version: 15.4.3502.0922)
Windows Live Mail (x32 Version: 15.4.3502.0922)
Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (x32 Version: 15.4.5722.2)
Windows Live Mesh (x32 Version: 15.4.3502.0922)
Windows Live Mesh ActiveX control for remote connections (x32 Version: 15.4.5722.2)
Windows Live Mesh ActiveX Control for Remote Connections (x32 Version: 15.4.5722.2)
Windows Live Mesh ActiveX-objekt til fjernforbindelser (x32 Version: 15.4.5722.2)
Windows Live Mesh ActiveX-vezérlő távoli kapcsolatokhoz (x32 Version: 15.4.5722.2)
Windows Live Messenger (x32 Version: 15.4.3502.0922)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Movie Maker (x32 Version: 15.4.3502.0922)
Windows Live Photo Common (x32 Version: 15.4.3502.0922)
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922)
Windows Live PIMT Platform (x32 Version: 15.4.3502.0922)
Windows Live Remote Client (Version: 15.4.5722.2)
Windows Live Remote Client Resources (Version: 15.4.5722.2)
Windows Live Remote Service (Version: 15.4.5722.2)
Windows Live Remote Service Resources (Version: 15.4.5722.2)
Windows Live SOXE (x32 Version: 15.4.3502.0922)
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922)
Windows Live Temel Parçalar (x32 Version: 15.4.3502.0922)
Windows Live UX Platform (x32 Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (x32 Version: 15.4.3502.0922)
Windows Live Writer (x32 Version: 15.4.3502.0922)
Windows Live Writer Resources (x32 Version: 15.4.3502.0922)
Windows Media Encoder 9 Series (x32 Version: 9.00.2980)
Windows Media Encoder 9 Series (x32)
Zip Opener Packages (HKCU)
Στοιχείο ελέγχου ActiveX του Windows Live Mesh για απομακρυσμένες συνδέσεις (x32 Version: 15.4.5722.2)
Συλλογή φωτογραφιών του Windows Live (x32 Version: 15.4.3502.0922)
==================== Restore Points =========================
10-07-2013 17:10:46 Windows-Sicherung
10-07-2013 17:12:31 Windows Update
14-07-2013 17:00:26 Windows-Sicherung
18-07-2013 18:58:49 Installed Adobe Photoshop Elements 10.
19-07-2013 19:28:08 Removed Adobe Photoshop Elements 10.
19-07-2013 20:31:17 Installed Adobe Photoshop Elements 11.
==================== Hosts content: ==========================
2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {09B92872-4C27-4852-BB36-1E90F2FCF205} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-05-24] (Piriform Ltd)
Task: {14F9A135-5AA8-4E09-ACD5-11D787B3B49C} - System32\Tasks\{302636FB-38B1-44A8-A2A4-0E6D6F40EA88} => c:\program files (x86)\mozilla firefox\firefox.exe [2013-07-03] (Mozilla Corporation)
Task: {4336733F-914D-4BEE-AAFF-B65A8B516235} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-07-10] (Adobe Systems Incorporated)
Task: {6021EB0C-2B8F-425B-8265-9964D70D8322} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => C:\Windows\system32\rundll32.exe [2009-07-14] (Microsoft Corporation)
Task: {686E3CEB-BF50-434A-B5DC-8BBAB906AC61} - System32\Tasks\Microsoft\Windows\WindowsBackup\Windows Backup Monitor => C:\Windows\system32\sdclt.exe [2010-11-20] (Microsoft Corporation)
Task: {99B81172-2A71-49FE-964C-2D3261002BFF} - System32\Tasks\DSite => C:\Users\JRG~1\AppData\Roaming\DSite\UPDATE~1\UPDATE~1.EXE [2013-06-22] ()
Task: {D20A4720-05F2-4344-8407-5C01986D148D} - System32\Tasks\AdobeAAMUpdater-1.0-PC-Jörg => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2011-06-16] (Adobe Systems Incorporated)
Task: {D98B09B0-611A-4665-801B-FE6C84AE6BBC} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task
Task: {E1B3D9B7-BC96-4C8A-87B1-E9D5D7090FC3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-02] (Google Inc.)
Task: {E63AD957-FC3D-4CEC-BFBE-669FC5D8DDA9} - System32\Tasks\NCH Software\MixPadReminder => C:\Program Files (x86)\NCH Software\MixPad\MixPad.exe [2013-05-03] (NCH Software)
Task: {E64FD092-6F6F-4E7A-9EC1-147CBD1299CC} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-02] (Google Inc.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\DSite.job => ?
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (07/13/2013 00:49:49 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: firefox.exe, Version: 22.0.0.4917, Zeitstempel: 0x51c06b1b
Name des fehlerhaften Moduls: xul.dll, Version: 22.0.0.4917, Zeitstempel: 0x51c06a5b
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00173668
ID des fehlerhaften Prozesses: 0xc3c
Startzeit der fehlerhaften Anwendung: 0xfirefox.exe0
Pfad der fehlerhaften Anwendung: firefox.exe1
Pfad des fehlerhaften Moduls: firefox.exe2
Berichtskennung: firefox.exe3
Error: (06/18/2013 01:37:19 AM) (Source: Windows Search Service) (User: )
Description: Der Index kann nicht initialisiert werden.
Details:
Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801)
Error: (06/18/2013 01:37:19 AM) (Source: Windows Search Service) (User: )
Description: Die Anwendung kann nicht initialisiert werden.
Kontext: Windows Anwendung
Details:
Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801)
Error: (06/18/2013 01:37:19 AM) (Source: Windows Search Service) (User: )
Description: Das Gatherer-Objekt kann nicht initialisiert werden.
Kontext: Windows Anwendung, SystemIndex Katalog
Details:
Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801)
Error: (06/18/2013 01:37:19 AM) (Source: Windows Search Service) (User: )
Description: Plug-In in <Search.TripoliIndexer> kann nicht initialisiert werden.
Kontext: Windows Anwendung, SystemIndex Katalog
Details:
Element nicht gefunden. (HRESULT : 0x80070490) (0x80070490)
Error: (06/18/2013 01:37:18 AM) (Source: Windows Search Service) (User: )
Description: Plug-In in <Search.JetPropStore> kann nicht initialisiert werden.
Kontext: Windows Anwendung, SystemIndex Katalog
Details:
Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801)
Error: (06/18/2013 01:37:18 AM) (Source: Windows Search Service) (User: )
Description: Die Eigenschaftenspeicherdaten können von Windows Search nicht geladen werden.
Kontext: Windows Anwendung, SystemIndex Katalog
Details:
Die Inhaltsindexdatenbank ist fehlerhaft. (HRESULT : 0xc0041800) (0xc0041800)
Error: (06/18/2013 01:37:18 AM) (Source: Windows Search Service) (User: )
Description: Windows Search wird aufgrund eines Problems bei der Indizierung The catalog is corrupt beendet.
Details:
Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801)
Error: (06/18/2013 01:37:18 AM) (Source: Windows Search Service) (User: )
Description: Vom Suchdienst wurden beschädigte Datendateien im Index {id=4700} erkannt. Vom Dienst wird versucht, dieses Problem durch Neuerstellung des Indexes automatisch zu beheben.
Details:
Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801)
Error: (06/18/2013 01:37:18 AM) (Source: Windows Search Service) (User: )
Description: Der Jet-Eigenschaftenspeicher kann von Windows Search nicht geöffnet werden.
Details:
0x%08x (0xc0041800 - Die Inhaltsindexdatenbank ist fehlerhaft. (HRESULT : 0xc0041800))
System errors:
=============
Error: (07/20/2013 06:04:39 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%-2140993535
Error: (07/20/2013 06:04:39 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler beendet:
%%-2140993535
Error: (07/20/2013 06:04:39 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%-2140993535
Error: (07/20/2013 06:04:39 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler beendet:
%%-2140993535
Error: (07/20/2013 06:04:39 PM) (Source: PNRPSvc) (User: )
Description: 0x80630801
Error: (07/20/2013 06:04:39 PM) (Source: PNRPSvc) (User: )
Description: 0x80630801
Error: (07/20/2013 06:04:28 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%-2140993535
Error: (07/20/2013 06:04:28 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler beendet:
%%-2140993535
Error: (07/20/2013 06:04:28 PM) (Source: PNRPSvc) (User: )
Description: 0x80630801
Error: (07/20/2013 06:04:08 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "DgiVecp" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Microsoft Office Sessions:
=========================
Error: (07/13/2013 00:49:49 PM) (Source: Application Error)(User: )
Description: firefox.exe22.0.0.491751c06b1bxul.dll22.0.0.491751c06a5bc000000500173668c3c01ce7fb4b2c1c86fC:\Program Files (x86)\Mozilla Firefox\firefox.exeC:\Program Files (x86)\Mozilla Firefox\xul.dllf05a0161-eba9-11e2-8b1d-6c626db75001
Error: (06/18/2013 01:37:19 AM) (Source: Windows Search Service)(User: )
Description:
Details:
Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801)
Error: (06/18/2013 01:37:19 AM) (Source: Windows Search Service)(User: )
Description: Kontext: Windows Anwendung
Details:
Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801)
Error: (06/18/2013 01:37:19 AM) (Source: Windows Search Service)(User: )
Description: Kontext: Windows Anwendung, SystemIndex Katalog
Details:
Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801)
Error: (06/18/2013 01:37:19 AM) (Source: Windows Search Service)(User: )
Description: Kontext: Windows Anwendung, SystemIndex Katalog
Details:
Element nicht gefunden. (HRESULT : 0x80070490) (0x80070490)
Search.TripoliIndexer
Error: (06/18/2013 01:37:18 AM) (Source: Windows Search Service)(User: )
Description: Kontext: Windows Anwendung, SystemIndex Katalog
Details:
Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801)
Search.JetPropStore
Error: (06/18/2013 01:37:18 AM) (Source: Windows Search Service)(User: )
Description: Kontext: Windows Anwendung, SystemIndex Katalog
Details:
Die Inhaltsindexdatenbank ist fehlerhaft. (HRESULT : 0xc0041800) (0xc0041800)
Error: (06/18/2013 01:37:18 AM) (Source: Windows Search Service)(User: )
Description:
Details:
Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801)
The catalog is corrupt
Error: (06/18/2013 01:37:18 AM) (Source: Windows Search Service)(User: )
Description:
Details:
Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801)
4700
Error: (06/18/2013 01:37:18 AM) (Source: Windows Search Service)(User: )
Description:
Details:
0x%08x (0xc0041800 - Die Inhaltsindexdatenbank ist fehlerhaft. (HRESULT : 0xc0041800))
CodeIntegrity Errors:
===================================
Date: 2013-07-19 22:02:18.443
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-07-19 22:02:18.443
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-07-19 22:02:18.433
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-07-19 22:02:18.413
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-07-19 22:02:18.413
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-07-19 22:02:18.413
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-07-19 19:48:00.087
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-07-19 19:48:00.087
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-07-19 19:48:00.087
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-07-19 19:35:24.986
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
==================== Memory info ===========================
Percentage of memory in use: 44%
Total physical RAM: 4095.29 MB
Available physical RAM: 2263.77 MB
Total Pagefile: 8188.76 MB
Available Pagefile: 5955.47 MB
Total Virtual: 8192 MB
Available Virtual: 8191.81 MB
==================== Drives ================================
Drive c: (Boot) (Fixed) (Total:1366.17 GB) (Free:1303.61 GB) NTFS (Disk=0 Partition=2)
Drive d: (Recover) (Fixed) (Total:30 GB) (Free:10.38 GB) NTFS (Disk=0 Partition=3)
Drive i: (Volume) (Fixed) (Total:1150 GB) (Free:921.82 GB) NTFS (Disk=1 Partition=1)
Drive j: (Volume) (Fixed) (Total:685.41 GB) (Free:622.24 GB) NTFS (Disk=1 Partition=2)
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 1397 GB) (Disk ID: 2BD2C32A)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=-732114714624) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=30 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=1 GB) - (Type=12)
========================================================
Disk: 1 (MBR Code: Windows XP) (Size: 1863 GB) (Disk ID: B377DBD9)
Partition 1: (Not Active) - (Size=-934583862272) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=685 GB) - (Type=07 NTFS)
==================== End Of Log ============================ Vielen Dank und Gruß,
Freedom71 |