Kathihanna | 15.08.2013 09:56 | FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 14-08-2013 01
Ran by Das K (ATTENTION: The logged in user is not administrator) on 15-08-2013 10:49:34
Running from C:\Users\Das K\Desktop
Microsoft Windows 7 Ultimate (X86) OS Language: English(US)
Internet Explorer Version 8
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_TouchUser.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_TabletUser.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Dell Inc.) C:\Windows\System32\WLTRAY.EXE
(Creative Technology Ltd.) C:\Windows\OEM02Mon.exe
(Creative Technology Ltd.) C:\Program Files\Dell\Dell Webcam Manager\DellWMgr.exe
(IDT, Inc.) C:\Program Files\SigmaTel\C-Major Audio\WDM\sttray.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\Apoint.exe
(Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat 9.0\Acrobat\acrobat_sl.exe
(Adobe Systems Inc.) C:\Program Files\Adobe\Acrobat 9.0\Acrobat\acrotray.exe
(Intel Corporation) C:\Windows\system32\igfxsrvc.exe
() C:\Program Files\Join Air\UIExec.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(4G Systems GmbH & Co. KG) C:\Windows\starter4g.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
() C:\Program Files\RocketDock\RocketDock.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
(Dropbox, Inc.) C:\Users\Das K\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\HidFind.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\Apntex.exe
(Skype Technologies) C:\Program Files\Skype\Plugin Manager\skypePM.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [Broadcom Wireless Manager UI] - C:\Windows\system32\WLTRAY.exe [3444736 2007-12-08] (Dell Inc.)
HKLM\...\Run: [OEM02Mon.exe] - C:\Windows\OEM02Mon.exe [36864 2007-05-10] (Creative Technology Ltd.)
HKLM\...\Run: [DELL Webcam Manager] - C:\Program Files\Dell\Dell Webcam Manager\DellWMgr.exe [118784 2007-07-27] (Creative Technology Ltd.)
HKLM\...\Run: [SigmatelSysTrayApp] - C:\Program Files\SigmaTel\C-Major Audio\WDM\sttray.exe [405504 2008-02-15] (IDT, Inc.)
HKLM\...\Run: [Apoint] - C:\Program Files\DellTPad\Apoint.exe [288040 2010-04-05] (Alps Electric Co., Ltd.)
HKLM\...\Run: [AdobeCS4ServiceManager] - C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [611712 2008-08-14] (Adobe Systems Incorporated)
HKLM\...\Run: [Adobe Acrobat Speed Launcher] - C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe [37232 2008-06-12] (Adobe Systems Incorporated)
HKLM\...\Run: [] - [x]
HKLM\...\Run: [Acrobat Assistant 8.0] - C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe [640376 2008-06-11] (Adobe Systems Inc.)
HKLM\...\Run: [Adobe_ID0ENQBO] - C:\PROGRA~1\COMMON~1\Adobe\ADOBEV~1\Server\bin\VERSIO~2.EXE [378224 2008-08-15] (Adobe Systems Incorporated)
HKLM\...\Run: [UIExec] - C:\Program Files\Join Air\UIExec.exe [138072 2010-04-27] ()
HKLM\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\avastUI.exe [4858968 2013-05-09] (AVAST Software)
HKLM\...\Run: [CorelDRAW Graphics Suite 11b] - D:\Languages\DE\Programs\Registration.exe /title="CorelDRAW Graphics Suite 12" /date=020212 serial=DR12CER-7773401-DBQ lang=DE [x]
HKLM\...\Run: [starter4g] - C:\Windows\starter4g.exe [160424 2010-04-30] (4G Systems GmbH & Co. KG)
HKLM\...\Run: [APSDaemon] - C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59280 2012-10-11] (Apple Inc.)
HKLM\...\Run: [QuickTime Task] - C:\Program Files\QuickTime\QTTask.exe [421888 2012-10-25] (Apple Inc.)
HKLM\...\Run: [avgnt] - C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [345144 2013-07-02] (Avira Operations GmbH & Co. KG)
HKLM\...\RunOnce: [aswAhAScr.dll] - "C:\Program Files\AVAST Software\Avast\aswRegSvr.exe" "C:\Program Files\AVAST Software\Avast\AhAScr.dll" [51880 2013-05-09] (AVAST Software)
HKLM\...\RunOnce: [aswasOutExt.dll] - "C:\Program Files\AVAST Software\Avast\aswRegSvr.exe" "C:\Program Files\AVAST Software\Avast\asOutExt.dll" [51880 2013-05-09] (AVAST Software)
HKLM\...\RunOnce: [Malwarebytes Anti-Malware] - C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent [532040 2013-04-04] (Malwarebytes Corporation)
HKLM\...\Runonce: [Del5117628] - cmd.exe /Q /D /c del "C:\Users\Admin\AppData\Local\Temp\0.del" [x]
HKLM\...\Runonce: [Del5307154] - cmd.exe /Q /D /c del "C:\Users\Admin\AppData\Local\Temp\0.del" [x]
HKLM\...\Runonce: [Del5408835] - cmd.exe /Q /D /c del "C:\Users\Admin\AppData\Local\Temp\0.del" [x]
HKCU\...\Run: [RocketDock] - C:\Program Files\RocketDock\RocketDock.exe [495616 2007-09-02] ()
HKCU\...\Run: [Skype] - C:\Program Files\Skype\Phone\Skype.exe [14944136 2010-12-03] (Skype Technologies S.A.)
HKCU\...\Run: [AdobeBridge] - [x]
HKCU\...\Run: [Sony Ericsson PC Suite] - "C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SEPCSuite.exe" /systray /nologon [x]
HKCU\...\Run: [GameXN GO] - "C:\ProgramData\GameXN\GameXNGO.exe" /startup [x]
MountPoints2: G - G:\LaunchU3.exe -a
MountPoints2: {5738ff41-eb43-11e0-b9e4-001fe2d9cd68} - G:\HPLauncher.exe
MountPoints2: {6e158a99-6e4f-11e0-959a-001fe2d9cd68} - G:\autorun.exe
MountPoints2: {db250262-bd17-11e0-8a94-002268b744bb} - I:\HPLauncher.exe
Startup: C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CNET TechTracker.lnk
ShortcutTarget: CNET TechTracker.lnk -> C:\Users\Das K\AppData\Roaming\CBS Interactive\CNET TechTracker\TechTracker.exe (No File)
Startup: C:\Users\Das K\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Das K\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.qvo6.com/?utm_source=b&utm_medium=cor&from=cor&uid=WDCXWD3200BEVT-75ZCT1_WD-WXE708DR9189R9189&ts=1376504890
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.qvo6.com/?utm_source=b&utm_medium=cor&from=cor&uid=WDCXWD3200BEVT-75ZCT1_WD-WXE708DR9189R9189&ts=1376504890
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe hxxp://www.qvo6.com/?utm_source=b&utm_medium=cor&from=cor&uid=WDCXWD3200BEVT-75ZCT1_WD-WXE708DR9189R9189&ts=1376504890
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://search.qvo6.com/web/?utm_source=b&utm_medium=cor&from=cor&uid=WDCXWD3200BEVT-75ZCT1_WD-WXE708DR9189R9189&ts=1376504890
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://i.search.metacrawler.com/results.php?f=4&q={searchTerms}&a=ironmc2&cd=2XzuyEtN2Y1L1QzutDtDtBtByCzz0ByByEyE0B0BtCtBtByEtN0D0Tzu0CyDzytBtN1L2XzutBtFtBtFyEtFyBtAtCtN1L1Czu&cr=778950369&ir=
SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://search.qvo6.com/web/?utm_source=b&utm_medium=cor&from=cor&uid=WDCXWD3200BEVT-75ZCT1_WD-WXE708DR9189R9189&ts=1376504890
SearchScopes: HKCU - DefaultScope {97757FB6-6BAB-4FE2-A9E1-9183E4DD8B5C} URL = hxxp://www.google.de/search?q={searchTerms}
SearchScopes: HKCU - {97757FB6-6BAB-4FE2-A9E1-9183E4DD8B5C} URL = hxxp://www.google.de/search?q={searchTerms}
BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.)
BHO: LyricXeeker - {13335f44-0a13-4f05-ac0e-50c6fed838ea} - C:\Program Files\LyriXeeker\126.dll (LyricXeeker)
BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO: DealPly Shopping - {9cf699ca-2174-4ed8-bec1-ba82095edce0} - C:\Program Files\DealPly\DealPlyIE.dll (DealPly)
BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO: Skype Plug-In - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO: metacrawler Helper Object - {D4EF7D75-52C9-4BCE-B6DC-0976EFAB4B0B} - C:\Program Files\metaCrawler\1.8.19.0\bh\metacrawler.dll (Info Space)
BHO: SmartSelect Class - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKLM - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKLM - avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Toolbar: HKLM - Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.)
Toolbar: HKLM - metacrawler Toolbar - {7EACAC38-B7F6-4514-9DC1-3428A7964ABD} - C:\Program Files\metaCrawler\1.8.19.0\metacrawlerTlbr.dll (Info Space)
Toolbar: HKCU -No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
Toolbar: HKCU -Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
DPF: {62789780-B744-11D0-986B-00609731A21D} hxxp://www.gisonweb.it/provincia.milano/progetto/advscriptscfm/mgaxctrl.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
FireFox:
========
FF ProfilePath: C:\Users\Das K\AppData\Roaming\Mozilla\Firefox\Profiles\ld092i1t.default
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @tools.dpliveupdate.com/DealPlyLive Update;version=3 - C:\Program Files\DealPlyLive\Update\1.3.23.0\npGoogleUpdate3.dll (DealPly Technologies Ltd)
FF Plugin: @tools.dpliveupdate.com/DealPlyLive Update;version=9 - C:\Program Files\DealPlyLive\Update\1.3.23.0\npGoogleUpdate3.dll (DealPly Technologies Ltd)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @wacom.com/wacom-plugin,version=1.1.0.10 - C:\Program Files\TabletPlugins\npwacom.dll (Wacom, Inc.)
FF Plugin: @wacom.com/wtPlugin,version=2.0.0.1 - C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll (Wacom)
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\wikipedia-de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\yahoo-de.xml
FF Extension: Default - C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF StartMenuInternet: FIREFOX.EXE - C:\Program Files\Mozilla Firefox\firefox.exe hxxp://www.qvo6.com/?utm_source=b&utm_medium=cor&from=cor&uid=WDCXWD3200BEVT-75ZCT1_WD-WXE708DR9189R9189&ts=1376504890
Chrome:
=======
CHR HomePage: hxxp://www.google.com/
CHR RestoreOnStartup: "hxxp://www.google.com/"
CHR DefaultSearchURL: (Google) - {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?client=chrome&hl={language}&q={searchTerms}
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\24.0.1312.52\gcswf32.dll No File
CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
CHR Plugin: (QuickTime Plug-in 7.6.2) - C:\Program Files\QuickTime\plugins\npqtplugin.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.2) - C:\Program Files\QuickTime\plugins\npqtplugin2.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.2) - C:\Program Files\QuickTime\plugins\npqtplugin3.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.2) - C:\Program Files\QuickTime\plugins\npqtplugin4.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.2) - C:\Program Files\QuickTime\plugins\npqtplugin5.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.2) - C:\Program Files\QuickTime\plugins\npqtplugin6.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.2) - C:\Program Files\QuickTime\plugins\npqtplugin7.dll (Apple Inc.)
CHR Plugin: (Chrome NaCl) - C:\Program Files\Google\Chrome\Application\24.0.1312.52\ppGoogleNaClPluginChrome.dll No File
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\24.0.1312.52\pdf.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Google Earth Plugin) - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll No File
CHR Plugin: (Default Plug-in) - default_plugin No File
CHR Extension: (avast! WebRep) - C:\Users\DASK~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\7.0.1426_0
CHR HKLM\...\Chrome\Extension: [eooncjejnppfjjklapaamhcdmjbilmde] - C:\Users\Admin\AppData\Roaming\BabSolution\CR\Delta.crx
CHR HKLM\...\Chrome\Extension: [epojlgbehpaeekopencdagbdamnkppci] - C:\Program Files\LyriXeeker\126.crx
========================== Services (Whitelisted) =================
S3 Adobe Version Cue CS4; C:\Program Files\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe [284016 2008-08-15] (Adobe Systems Incorporated)
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [84024 2013-07-02] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [108088 2013-07-02] (Avira Operations GmbH & Co. KG)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808 2013-05-09] (AVAST Software)
R2 BackupService; C:\Users\Das K\AppData\Roaming\HP SimpleSave Application\uUACTokenSvc.exe [83512 2010-07-01] (ArcSoft, Inc.)
R2 BrowserDefendert; C:\ProgramData\BrowserDefender\2.6.1519.190\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe [2847696 2013-07-26] ()
S2 dealplylive; C:\Program Files\DealPlyLive\Update\DealPlyLive.exe [148000 2013-08-14] (DealPly Technologies Ltd)
S3 dealplylivem; C:\Program Files\DealPlyLive\Update\DealPlyLive.exe [148000 2013-08-14] (DealPly Technologies Ltd)
R2 DeviceManager; C:\Program Files\Common Files\DeviceHelper\DeviceManager.exe [40960 2008-11-21] ()
R2 lmhosts; C:\Windows\system32\svchost.exe [20992 2009-07-14] (Microsoft Corporation)
R2 MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 NlaSvc; C:\Windows\System32\svchost.exe [20992 2009-07-14] (Microsoft Corporation)
R2 nsi; C:\Windows\system32\svchost.exe [20992 2009-07-14] (Microsoft Corporation)
R2 STacSV; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_24288096a5cd99f6\STacSV.exe [102400 2008-02-15] (IDT, Inc.)
R2 UI Assistant Service; C:\Program Files\Join Air\AssistantServices.exe [247152 2010-04-27] ()
R2 wltrysvc; C:\Windows\System32\bcmwltry.exe [2506752 2007-12-08] (Dell Inc.)
R2 WsysSvc; C:\ProgramData\eSafe\eGdpSvc.exe [303168 2013-08-14] (Wsys Co., Ltd.)
R2 WTGService; C:\Program Files\XSManager\WTGService.exe [329168 2010-04-12] ()
R2 XS Stick Service; C:\Windows\service4g.exe [145064 2010-04-30] (4G Systems GmbH & Co. KG)
==================== Drivers (Whitelisted) ====================
R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [29816 2013-05-09] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [66336 2013-05-09] (AVAST Software)
R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [61680 2013-05-09] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [49376 2013-05-09] ()
R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [770344 2013-06-29] (AVAST Software)
R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [369584 2013-06-29] (AVAST Software)
R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [56080 2013-05-09] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [175176 2013-06-29] ()
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [84744 2013-03-30] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [135136 2013-03-30] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-03-30] (Avira Operations GmbH & Co. KG)
S3 cmnsusbser; C:\Windows\System32\DRIVERS\cmnsusbser.sys [103424 2012-11-08] (Mobile Connector)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [22856 2013-04-04] (Malwarebytes Corporation)
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2013-02-14] (Avira GmbH)
R3 yukonw7; C:\Windows\System32\DRIVERS\yk62x86.sys [315392 2009-09-28] ()
S3 BCM42RLY; system32\drivers\BCM42RLY.sys [x]
S3 vpnva; system32\DRIVERS\vpnva.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-08-14 20:35 - 2013-08-14 20:35 - 00000000 ____D C:\FRST
2013-08-14 20:28 - 2013-08-15 10:45 - 00000000 ____D C:\ProgramData\eSafe
2013-08-14 20:28 - 2013-08-14 20:28 - 00000000 ____D C:\Users\Admin\AppData\Roaming\eIntaller
2013-08-14 20:16 - 2013-08-14 20:16 - 00000000 ____D C:\Users\Admin\AppData\Local\Babylon
2013-08-14 16:51 - 2013-08-14 16:51 - 00000000 ____D C:\Users\Admin\Qtrax
2013-08-14 16:50 - 2013-08-14 16:50 - 00000000 ____D C:\Users\Das K\AppData\Roaming\Malwarebytes
2013-08-14 16:48 - 2013-08-15 10:48 - 00000292 _____ C:\Windows\Tasks\MetaCrawler.job
2013-08-14 16:48 - 2013-08-14 16:48 - 00000000 ____D C:\Users\Das K\AppData\Roaming\DSite
2013-08-14 16:48 - 2013-08-14 16:48 - 00000000 ____D C:\Users\Admin\AppData\Roaming\MetaCrawler
2013-08-14 16:48 - 2013-08-14 16:48 - 00000000 ____D C:\Program Files\metaCrawler
2013-08-14 16:47 - 2013-08-15 10:48 - 00000888 _____ C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineCore.job
2013-08-14 16:47 - 2013-08-14 22:52 - 00000892 _____ C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineUA.job
2013-08-14 16:47 - 2013-08-14 16:47 - 00002330 _____ C:\Users\Admin\Desktop\Qtrax Player.lnk
2013-08-14 16:47 - 2013-08-14 16:47 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-08-14 16:46 - 2013-08-15 10:48 - 00000354 _____ C:\Windows\Tasks\LyricXeeker Update.job
2013-08-14 16:46 - 2013-08-15 10:46 - 00000290 _____ C:\Windows\Tasks\Dealply.job
2013-08-14 16:46 - 2013-08-14 16:46 - 00000000 ____D C:\Users\Admin\AppData\Roaming\Dealply
2013-08-14 16:46 - 2013-08-14 16:46 - 00000000 ____D C:\Users\Admin\AppData\Local\DealPlyLive
2013-08-14 16:46 - 2013-08-14 16:46 - 00000000 ____D C:\ProgramData\DealPlyLive
2013-08-14 16:46 - 2013-08-14 16:46 - 00000000 ____D C:\ProgramData\BrowserDefender
2013-08-14 16:46 - 2013-08-14 16:46 - 00000000 ____D C:\Program Files\LyriXeeker
2013-08-14 16:46 - 2013-08-14 16:46 - 00000000 ____D C:\Program Files\DealPlyLive
2013-08-14 16:46 - 2013-08-14 16:46 - 00000000 ____D C:\Program Files\DealPly
2013-08-14 16:44 - 2013-08-14 20:17 - 00000000 ____D C:\Users\Admin\AppData\Roaming\Babylon
2013-08-14 16:44 - 2013-08-14 16:46 - 00000000 ____D C:\ProgramData\Yahoo! Companion
2013-08-14 16:44 - 2013-08-14 16:44 - 00000000 ____D C:\Users\Admin\AppData\Roaming\Yahoo!
2013-08-14 16:44 - 2013-08-14 16:44 - 00000000 ____D C:\Users\Admin\AppData\Roaming\BabSolution
2013-08-14 16:44 - 2013-08-14 16:44 - 00000000 ____D C:\ProgramData\Yahoo!
2013-08-14 16:44 - 2013-08-14 16:44 - 00000000 ____D C:\ProgramData\Babylon
2013-08-14 16:44 - 2013-08-14 16:44 - 00000000 ____D C:\Program Files\Yahoo!
2013-08-14 16:44 - 2013-08-14 16:44 - 00000000 ____D C:\Program Files\OpenIt
2013-08-14 16:43 - 2013-08-14 16:47 - 00000286 _____ C:\Windows\Tasks\DSite.job
2013-08-14 16:43 - 2013-08-14 16:43 - 00000000 ____D C:\Users\Admin\AppData\Roaming\DSite
2013-08-14 15:23 - 2013-08-14 15:23 - 00001074 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-08-14 15:23 - 2013-08-14 15:23 - 00000000 ____D C:\Users\Admin\AppData\Roaming\Malwarebytes
2013-08-14 15:23 - 2013-08-14 15:23 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-08-14 15:23 - 2013-08-14 15:23 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware
2013-08-14 15:23 - 2013-04-04 14:50 - 00022856 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2013-08-13 20:00 - 2013-08-13 20:29 - 00000000 ____D C:\Users\Das K\Desktop\Technik der LA Vorlesung
2013-08-13 17:37 - 2013-08-13 17:37 - 00000000 ____D C:\Users\Das K\Desktop\Muster WGWD
2013-08-13 17:07 - 2013-08-13 17:08 - 00000000 ____D C:\Users\Das K\Desktop\Technik der LA 1.Sem
2013-08-11 18:30 - 2013-08-13 20:55 - 00000000 ____D C:\Users\Das K\Desktop\Technik der LA
2013-08-11 17:38 - 2013-08-14 22:45 - 53184015 _____ C:\Users\Das K\Desktop\Technik_der_LA_Grundlage.vwx
2013-08-09 14:35 - 2013-08-13 02:51 - 00000000 ____D C:\Users\Das K\Desktop\Rezension
2013-08-06 13:55 - 2013-08-06 13:55 - 00000000 ____D C:\Users\Das K\Desktop\max house, starlight hotel
==================== One Month Modified Files and Folders =======
2013-08-15 10:49 - 2011-01-03 20:21 - 00000000 ____D C:\Users\Das K\AppData\Roaming\skypePM
2013-08-15 10:48 - 2013-08-14 16:48 - 00000292 _____ C:\Windows\Tasks\MetaCrawler.job
2013-08-15 10:48 - 2013-08-14 16:47 - 00000888 _____ C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineCore.job
2013-08-15 10:48 - 2013-08-14 16:46 - 00000354 _____ C:\Windows\Tasks\LyricXeeker Update.job
2013-08-15 10:48 - 2011-10-23 20:02 - 00000000 ____D C:\Users\Das K\AppData\Roaming\Dropbox
2013-08-15 10:48 - 2011-07-23 20:00 - 00001092 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-08-15 10:48 - 2011-01-03 20:19 - 00000000 ____D C:\Users\Das K\AppData\Roaming\Skype
2013-08-15 10:46 - 2013-08-14 16:46 - 00000290 _____ C:\Windows\Tasks\Dealply.job
2013-08-15 10:45 - 2013-08-14 20:28 - 00000000 ____D C:\ProgramData\eSafe
2013-08-15 10:45 - 2009-07-14 06:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-08-15 10:45 - 2009-07-14 06:39 - 00133912 _____ C:\Windows\setupact.log
2013-08-14 22:54 - 2011-01-02 23:46 - 01849314 _____ C:\Windows\WindowsUpdate.log
2013-08-14 22:52 - 2013-08-14 16:47 - 00000892 _____ C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineUA.job
2013-08-14 22:45 - 2013-08-11 17:38 - 53184015 _____ C:\Users\Das K\Desktop\Technik_der_LA_Grundlage.vwx
2013-08-14 22:24 - 2011-07-23 20:00 - 00001096 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-08-14 21:17 - 2009-07-14 06:34 - 00014016 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-08-14 21:17 - 2009-07-14 06:34 - 00014016 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-08-14 20:35 - 2013-08-14 20:35 - 00000000 ____D C:\FRST
2013-08-14 20:33 - 2013-08-15 10:49 - 01068807 _____ (Farbar) C:\Users\Das K\Desktop\FRST.exe
2013-08-14 20:28 - 2013-08-14 20:28 - 00000000 ____D C:\Users\Admin\AppData\Roaming\eIntaller
2013-08-14 20:24 - 2013-01-21 20:16 - 00000000 ___RD C:\Users\Das K\Dropbox
2013-08-14 20:17 - 2013-08-14 16:44 - 00000000 ____D C:\Users\Admin\AppData\Roaming\Babylon
2013-08-14 20:16 - 2013-08-14 20:16 - 00000000 ____D C:\Users\Admin\AppData\Local\Babylon
2013-08-14 16:51 - 2013-08-14 16:51 - 00000000 ____D C:\Users\Admin\Qtrax
2013-08-14 16:51 - 2011-01-04 00:38 - 00000000 ____D C:\Users\Admin
2013-08-14 16:50 - 2013-08-14 16:50 - 00000000 ____D C:\Users\Das K\AppData\Roaming\Malwarebytes
2013-08-14 16:48 - 2013-08-14 16:48 - 00000000 ____D C:\Users\Das K\AppData\Roaming\DSite
2013-08-14 16:48 - 2013-08-14 16:48 - 00000000 ____D C:\Users\Admin\AppData\Roaming\MetaCrawler
2013-08-14 16:48 - 2013-08-14 16:48 - 00000000 ____D C:\Program Files\metaCrawler
2013-08-14 16:47 - 2013-08-14 16:47 - 00002330 _____ C:\Users\Admin\Desktop\Qtrax Player.lnk
2013-08-14 16:47 - 2013-08-14 16:47 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-08-14 16:47 - 2013-08-14 16:43 - 00000286 _____ C:\Windows\Tasks\DSite.job
2013-08-14 16:46 - 2013-08-14 16:46 - 00000000 ____D C:\Users\Admin\AppData\Roaming\Dealply
2013-08-14 16:46 - 2013-08-14 16:46 - 00000000 ____D C:\Users\Admin\AppData\Local\DealPlyLive
2013-08-14 16:46 - 2013-08-14 16:46 - 00000000 ____D C:\ProgramData\DealPlyLive
2013-08-14 16:46 - 2013-08-14 16:46 - 00000000 ____D C:\ProgramData\BrowserDefender
2013-08-14 16:46 - 2013-08-14 16:46 - 00000000 ____D C:\Program Files\LyriXeeker
2013-08-14 16:46 - 2013-08-14 16:46 - 00000000 ____D C:\Program Files\DealPlyLive
2013-08-14 16:46 - 2013-08-14 16:46 - 00000000 ____D C:\Program Files\DealPly
2013-08-14 16:46 - 2013-08-14 16:44 - 00000000 ____D C:\ProgramData\Yahoo! Companion
2013-08-14 16:46 - 2011-07-23 20:00 - 00000000 ____D C:\Users\Admin\AppData\Local\Google
2013-08-14 16:44 - 2013-08-14 16:44 - 00000000 ____D C:\Users\Admin\AppData\Roaming\Yahoo!
2013-08-14 16:44 - 2013-08-14 16:44 - 00000000 ____D C:\Users\Admin\AppData\Roaming\BabSolution
2013-08-14 16:44 - 2013-08-14 16:44 - 00000000 ____D C:\ProgramData\Yahoo!
2013-08-14 16:44 - 2013-08-14 16:44 - 00000000 ____D C:\ProgramData\Babylon
2013-08-14 16:44 - 2013-08-14 16:44 - 00000000 ____D C:\Program Files\Yahoo!
2013-08-14 16:44 - 2013-08-14 16:44 - 00000000 ____D C:\Program Files\OpenIt
2013-08-14 16:43 - 2013-08-14 16:43 - 00000000 ____D C:\Users\Admin\AppData\Roaming\DSite
2013-08-14 15:23 - 2013-08-14 15:23 - 00001074 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-08-14 15:23 - 2013-08-14 15:23 - 00000000 ____D C:\Users\Admin\AppData\Roaming\Malwarebytes
2013-08-14 15:23 - 2013-08-14 15:23 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-08-14 15:23 - 2013-08-14 15:23 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware
2013-08-13 20:55 - 2013-08-11 18:30 - 00000000 ____D C:\Users\Das K\Desktop\Technik der LA
2013-08-13 20:29 - 2013-08-13 20:00 - 00000000 ____D C:\Users\Das K\Desktop\Technik der LA Vorlesung
2013-08-13 17:37 - 2013-08-13 17:37 - 00000000 ____D C:\Users\Das K\Desktop\Muster WGWD
2013-08-13 17:08 - 2013-08-13 17:07 - 00000000 ____D C:\Users\Das K\Desktop\Technik der LA 1.Sem
2013-08-13 02:51 - 2013-08-09 14:35 - 00000000 ____D C:\Users\Das K\Desktop\Rezension
2013-08-11 17:30 - 2013-01-21 20:06 - 00000287 _____ C:\Users\DASK~1\AppData\Local\VersionChecker_18.xml
2013-08-09 14:37 - 2011-01-04 02:26 - 00000000 ___RD C:\Users\Das K\Desktop\obsoletes
2013-08-06 13:55 - 2013-08-06 13:55 - 00000000 ____D C:\Users\Das K\Desktop\max house, starlight hotel
2013-07-29 09:24 - 2011-07-23 20:00 - 00000000 ____D C:\Program Files\Google
2013-07-25 17:41 - 2011-01-09 10:59 - 00000000 ___RD C:\Users\Das K\Desktop\katalin latham
Files to move or delete:
====================
C:\Users\Das K\FreeYouTubeToMP3Converter.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
==================== End Of Log ============================ --- --- ---
--- --- --- Code:
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 14-08-2013 01
Ran by Das K at 2013-08-15 10:51:16
Running from C:\Users\Das K\Desktop
Boot Mode: Normal
==========================================================
==================== Installed Programs =======================
Update for Microsoft Office 2007 (KB2508958)
7-Zip 9.20
Acrobat.com (Version: 0.0.0)
Acrobat.com (Version: 1.2.443)
Adobe Acrobat 9 Pro - English, Français, Deutsch (Version: 9.0.0)
Adobe AIR (Version: 3.4.0.2540)
Adobe Anchor Service CS4 (Version: 2.0)
Adobe Asset Services CS4 (Version: 4)
Adobe Bridge CS4 (Version: 3)
Adobe CMaps CS4 (Version: 2.0)
Adobe Color - Photoshop Specific CS4 (Version: 2.0)
Adobe Color EU Recommended Settings CS4 (Version: 2.0)
Adobe Color JA Extra Settings CS4 (Version: 2.0)
Adobe Color NA Extra Settings CS4 (Version: 2.0)
Adobe Color Video Profiles CS CS4 (Version: 2.0)
Adobe Creative Suite 4 Design Standard (Version: 4.0)
Adobe CSI CS4 (Version: 1)
Adobe Default Language CS4 (Version: 2.0)
Adobe Device Central CS4 (Version: 2)
Adobe Drive CS4 (Version: 1)
Adobe ExtendScript Toolkit CS4 (Version: 3.0.0)
Adobe Extension Manager CS4 (Version: 2.0)
Adobe Flash Player 10 ActiveX (Version: 10.0.2.54)
Adobe Flash Player 10 ActiveX (Version: 10.1.102.64)
Adobe Flash Player 10 Plugin (Version: 10.0.2.54)
Adobe Fonts All (Version: 2.0)
Adobe Illustrator CS4 (Version: 14.0)
Adobe InDesign CS4 (Version: 6.0)
Adobe InDesign CS4 Application Feature Set Files (Roman) (Version: 6.0)
Adobe InDesign CS4 Common Base Files (Version: 6.0)
Adobe InDesign CS4 Icon Handler (Version: 6.0)
Adobe Linguistics CS4 (Version: 4.0.0)
Adobe Media Player (Version: 0.0.0)
Adobe Media Player (Version: 1.1)
Adobe Output Module (Version: 2.0)
Adobe PDF Library Files CS4 (Version: 9.0)
Adobe Photoshop CS4 (Version: 11.0)
Adobe Photoshop CS4 Support (Version: 11.0)
Adobe Search for Help (Version: 1.0)
Adobe Service Manager Extension (Version: 1.0)
Adobe Setup (Version: 2.0)
Adobe SGM CS4 (Version: 3.0)
Adobe SING CS4 (Version: 2.0)
Adobe Type Support CS4 (Version: 9.0)
Adobe Update Manager CS4 (Version: 6.0.0)
Adobe Version Cue CS4 Server (Version: 4.0)
Adobe WinSoft Linguistics Plugin (Version: 1.1)
Adobe XMP Panels CS4 (Version: 2.0)
AdobeColorCommonSetCMYK (Version: 2.0)
AdobeColorCommonSetRGB (Version: 2.0)
Advanced Audio FX Engine
Advanced Video FX Engine
Apple Application Support (Version: 2.3)
Avanquest update (Version: 1.31)
avast! Free Antivirus (Version: 8.0.1489.0)
Avira Free Antivirus (Version: 13.0.0.3885)
Bamboo (Version: 5.2.5-5)
BrowserDefender
calibre (Version: 0.9.20)
Connect (Version: 1.0.0.1)
DealPly (remove only) (Version: 4.8.7.3)
Dell Driver Download Manager (HKCU Version: 2.1.0.0)
Dell Touchpad (Version: 7.1007.115.102)
Dell Webcam Center
Dell Webcam Manager
Dell Wireless WLAN Karte (Version: 4.170.25.12)
Delta Chrome Toolbar
Dropbox (HKCU Version: 2.0.22)
Free YouTube to MP3 Converter version 3.10.7.804
GameXN GO
Google Earth (Version: 7.1.1.1888)
Google Update Helper (Version: 1.3.21.153)
GPL Ghostscript 9.00
Intel(R) Graphics Media Accelerator Driver (Version: 8.15.10.1930)
Intel(R) TV Wizard
Join Air (Version: 1.0.0.2)
kuler (Version: 2.0)
Laptop Integrated Webcam Driver (1.04.01.1011)
LyricXeeker
Malwarebytes Anti-Malware Version 1.75.0.1300 (Version: 1.75.0.1300)
Marvell Miniport Driver (Version: 10.22.6.3)
metaCrawler
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office Access MUI (German) 2007 (Version: 12.0.6425.1000)
Microsoft Office Enterprise 2007 (Version: 12.0.6425.1000)
Microsoft Office Excel MUI (German) 2007 (Version: 12.0.6425.1000)
Microsoft Office Groove MUI (German) 2007 (Version: 12.0.6425.1000)
Microsoft Office InfoPath MUI (German) 2007 (Version: 12.0.6425.1000)
Microsoft Office OneNote MUI (German) 2007 (Version: 12.0.6425.1000)
Microsoft Office Outlook MUI (German) 2007 (Version: 12.0.6425.1000)
Microsoft Office PowerPoint MUI (German) 2007 (Version: 12.0.6425.1000)
Microsoft Office Proof (English) 2007 (Version: 12.0.6425.1000)
Microsoft Office Proof (French) 2007 (Version: 12.0.6425.1000)
Microsoft Office Proof (German) 2007 (Version: 12.0.6425.1000)
Microsoft Office Proof (Italian) 2007 (Version: 12.0.6425.1000)
Microsoft Office Proofing (German) 2007 (Version: 12.0.4518.1014)
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
Microsoft Office Publisher MUI (German) 2007 (Version: 12.0.6425.1000)
Microsoft Office Shared MUI (German) 2007 (Version: 12.0.6425.1000)
Microsoft Office Word MUI (German) 2007 (Version: 12.0.6425.1000)
Microsoft Silverlight (Version: 5.1.20513.0)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 Redistributable - KB2467175 (Version: 8.0.51011)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.56336)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.59193)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (Version: 9.0.30729.5570)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (Version: 10.0.40219)
Mozilla Firefox 19.0.2 (x86 de) (Version: 19.0.2)
Mozilla Maintenance Service (Version: 19.0.2)
One Touch X200 MODEM
Open It! (Version: 1.1.1)
PDF Blender
PDF Settings CS4 (Version: 9.0)
PDFCreator (Version: 1.1.0)
Photoshop Camera Raw (Version: 5.0)
QuickTime (Version: 7.73.80.64)
RICOH R5C83x/84x Flash Media Controller Driver Ver.3.51.01 (Version: 3.51.01)
RocketDock 1.3.5
SigmaTel Audio (Version: 5.10.5210.0)
Skype Toolbars (Version: 5.0.4137)
Skype™ 5.0 (Version: 5.0.156)
Suite Shared Configuration CS4 (Version: 1.0)
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft Office OneNote 2007 (KB980729)
Update for Microsoft Office Outlook 2007 (KB2509470)
Update for Outlook 2007 Junk Email Filter (KB2522999)
Update for Zip Opener
Update für Microsoft Office Excel 2007 Help (KB963678)
Update für Microsoft Office Outlook 2007 Help (KB963677)
Update für Microsoft Office Powerpoint 2007 Help (KB963669)
Update für Microsoft Office Word 2007 Help (KB963665)
VLC media player 1.1.5 (Version: 1.1.5)
WebTablet FB Plugin (Version: 2.0.0.1)
WebTablet IE Plugin (Version: 1.1.0.12)
WebTablet Netscape Plugin (Version: 1.1.0.10)
Wsys Control 1.0.0.2598 (Version: 1.0.0.2598)
XSManager (Version: 3.0)
Yahoo! Software Update
Yahoo! Toolbar
==================== Restore Points =========================
Could not list Restore Points.
==================== Hosts content: ==========================
2009-07-14 04:04 - 2009-06-10 23:39 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: C:\Windows\Tasks\Dealply.job => ?
Task: C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineCore.job => ?
Task: C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineUA.job => ?
Task: C:\Windows\Tasks\DSite.job => ?
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => ?
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => ?
Task: C:\Windows\Tasks\LyricXeeker Update.job => ?
Task: C:\Windows\Tasks\MetaCrawler.job => ?
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (08/14/2013 08:12:42 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: IEXPLORE.EXE, Version: 8.0.7600.16766, Zeitstempel: 0x4d65d5c3
Name des fehlerhaften Moduls: mshtml.dll, Version: 8.0.7600.16766, Zeitstempel: 0x4d65eb0f
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0024beb9
ID des fehlerhaften Prozesses: 0x11b8
Startzeit der fehlerhaften Anwendung: 0xIEXPLORE.EXE0
Pfad der fehlerhaften Anwendung: IEXPLORE.EXE1
Pfad des fehlerhaften Moduls: IEXPLORE.EXE2
Berichtskennung: IEXPLORE.EXE3
Error: (08/14/2013 08:03:50 PM) (Source: EventSystem) (User: )
Description: 80070005{AA44355E-6911-4447-BA5D-6720480579AF}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000}
Error: (08/14/2013 04:46:39 PM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: Fehler beim Extrahieren der Drittanbieterstammliste aus der automatischen Aktualisierungs-CAB-Datei bei <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>. Fehler: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.
.
Error: (08/14/2013 04:45:51 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: IEXPLORE.EXE, Version: 8.0.7600.16766, Zeitstempel: 0x4d65d5c3
Name des fehlerhaften Moduls: mshtml.dll, Version: 8.0.7600.16766, Zeitstempel: 0x4d65eb0f
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0024beb9
ID des fehlerhaften Prozesses: 0x132c
Startzeit der fehlerhaften Anwendung: 0xIEXPLORE.EXE0
Pfad der fehlerhaften Anwendung: IEXPLORE.EXE1
Pfad des fehlerhaften Moduls: IEXPLORE.EXE2
Berichtskennung: IEXPLORE.EXE3
Error: (08/13/2013 11:05:18 PM) (Source: EventSystem) (User: )
Description: 80070005EventSystem.EventSubscription{AA44355E-6911-4447-BA5D-6720480579AF}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000}wltrynt SENS Logon Spy Subscription
Error: (08/13/2013 06:31:52 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: VECTOR~2.EXE, Version: 18.0.2.0, Zeitstempel: 0x50ee8922
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7600.16695, Zeitstempel: 0x4cc7ab44
Ausnahmecode: 0xc0150010
Fehleroffset: 0x000817ff
ID des fehlerhaften Prozesses: 0x1580
Startzeit der fehlerhaften Anwendung: 0xVECTOR~2.EXE0
Pfad der fehlerhaften Anwendung: VECTOR~2.EXE1
Pfad des fehlerhaften Moduls: VECTOR~2.EXE2
Berichtskennung: VECTOR~2.EXE3
Error: (08/13/2013 06:22:18 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: VECTOR~2.EXE, Version: 18.0.2.0, Zeitstempel: 0x50ee8922
Name des fehlerhaften Moduls: ig4icd32.dll, Version: 8.14.10.1930, Zeitstempel: 0x4aba6fc2
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0006208e
ID des fehlerhaften Prozesses: 0x1580
Startzeit der fehlerhaften Anwendung: 0xVECTOR~2.EXE0
Pfad der fehlerhaften Anwendung: VECTOR~2.EXE1
Pfad des fehlerhaften Moduls: VECTOR~2.EXE2
Berichtskennung: VECTOR~2.EXE3
Error: (08/13/2013 05:26:00 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: VECTOR~2.EXE, Version: 18.0.2.0, Zeitstempel: 0x50ee8922
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7600.16695, Zeitstempel: 0x4cc7ab44
Ausnahmecode: 0xc0150010
Fehleroffset: 0x000817ff
ID des fehlerhaften Prozesses: 0x44c
Startzeit der fehlerhaften Anwendung: 0xVECTOR~2.EXE0
Pfad der fehlerhaften Anwendung: VECTOR~2.EXE1
Pfad des fehlerhaften Moduls: VECTOR~2.EXE2
Berichtskennung: VECTOR~2.EXE3
Error: (08/13/2013 05:25:45 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: VECTOR~2.EXE, Version: 18.0.2.0, Zeitstempel: 0x50ee8922
Name des fehlerhaften Moduls: ig4icd32.dll, Version: 8.14.10.1930, Zeitstempel: 0x4aba6fc2
Ausnahmecode: 0xc0000005
Fehleroffset: 0x001038b7
ID des fehlerhaften Prozesses: 0x44c
Startzeit der fehlerhaften Anwendung: 0xVECTOR~2.EXE0
Pfad der fehlerhaften Anwendung: VECTOR~2.EXE1
Pfad des fehlerhaften Moduls: VECTOR~2.EXE2
Berichtskennung: VECTOR~2.EXE3
Error: (08/13/2013 05:24:44 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: VECTOR~2.EXE, Version: 18.0.2.0, Zeitstempel: 0x50ee8922
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7600.16695, Zeitstempel: 0x4cc7ab44
Ausnahmecode: 0xc0150010
Fehleroffset: 0x000817ff
ID des fehlerhaften Prozesses: 0xf84
Startzeit der fehlerhaften Anwendung: 0xVECTOR~2.EXE0
Pfad der fehlerhaften Anwendung: VECTOR~2.EXE1
Pfad des fehlerhaften Moduls: VECTOR~2.EXE2
Berichtskennung: VECTOR~2.EXE3
System errors:
=============
Error: (08/15/2013 10:48:36 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "BCM42RLY" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (08/15/2013 10:48:35 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "BCM42RLY" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (08/15/2013 10:48:03 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "BCM42RLY" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (08/15/2013 10:48:03 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "BCM42RLY" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (08/15/2013 10:47:14 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "BCM42RLY" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (08/15/2013 10:47:13 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "BCM42RLY" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (08/15/2013 10:46:52 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Wsys Service" wurde nicht richtig gestartet.
Error: (08/14/2013 09:13:17 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "BCM42RLY" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (08/14/2013 09:13:13 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "BCM42RLY" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (08/14/2013 09:13:12 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "BCM42RLY" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Microsoft Office Sessions:
=========================
Error: (05/22/2013 03:59:20 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6550.5004, Microsoft Office Version: 12.0.6425.1000. This session lasted 3802 seconds with 2040 seconds of active time. This session ended with a crash.
==================== Memory info ===========================
Percentage of memory in use: 44%
Total physical RAM: 3062.04 MB
Available physical RAM: 1686.01 MB
Total Pagefile: 6122.36 MB
Available Pagefile: 4543.05 MB
Total Virtual: 2047.88 MB
Available Virtual: 1900.6 MB
==================== Drives ================================
Drive c: (Windows) (Fixed) (Total:50.68 GB) (Free:11.26 GB) NTFS
Drive d: (Programme) (Fixed) (Total:97.75 GB) (Free:30.55 GB) NTFS
Drive e: (Daten) (Fixed) (Total:149.55 GB) (Free:47.36 GB) NTFS
Drive f: (Neu) (CDROM) (Total:4.11 GB) (Free:0 GB) CDFS
Drive g: (MARGO) (Removable) (Total:14.7 GB) (Free:6.17 GB) FAT32
==================== MBR & Partition Table ==================
==================== End Of Log ============================ |