Okay, danke.
Da nicht alles gleichzeitig geht, fang ich erst mal mit FRST an:
FRST Logfile:
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 24-09-2013
Ran by Lumen (administrator) on LUMEN-HP on 24-09-2013 16:48:54
Running from C:\Users\Lumen\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(AMD) C:\windows\system32\atiesrxx.exe
(IDT, Inc.) C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe
(AMD) C:\windows\system32\atieclxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\windows\system32\WLANExt.exe
(Andrea Electronics Corporation) C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Common Files\Nuance\dgnsvc.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
(PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe
(Protexis Inc.) c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(Spotify Ltd) C:\Users\Lumen\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe
(Flexera Software LLC.) C:\ProgramData\FLEXnet\Connect\11\agent.exe
() C:\Program Files (x86)\Infinite Mind LC\eyeQ\ARLaunch.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Flexera Software LLC.) C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Efficient Software) C:\Program Files (x86)\Efficient Sticky Notes\EfficientStickyNotes.exe
() C:\Users\Lumen\AppData\Local\Lollipop\Lollipop.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
(Windows Net) C:\Users\Lumen\AppData\Roaming\Windows Net Data\net.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Apache Software Foundation) C:\Program Files (x86)\OpenOffice 4\program\swriter.exe
(Apache Software Foundation) C:\Program Files (x86)\OpenOffice 4\program\soffice.exe
(Apache Software Foundation) C:\Program Files (x86)\OpenOffice 4\program\soffice.bin
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
(Hewlett-Packard Development Company L.P.) C:\Program Files (x86)\Hewlett-Packard\Shared\hpCaslNotification.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2074408 2010-02-26] (Synaptics Incorporated)
HKLM\...\Run: [HPWirelessAssistant] - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe [363064 2010-04-05] (Hewlett-Packard)
HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [487424 2010-03-17] (IDT, Inc.)
HKCU\...\Run: [LightScribe Control Panel] - C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2363392 2010-02-22] (Hewlett-Packard Company)
HKCU\...\Run: [Spotify Web Helper] - C:\Users\Lumen\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1140736 2013-09-24] (Spotify Ltd)
HKCU\...\Run: [ISUSPM] - C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [2068856 2011-10-12] (Flexera Software LLC.)
MountPoints2: {c9c39246-0a7a-11e3-8739-cc52af181ffa} - D:\autorun.exe
HKLM-x32\...\Run: [QLBController] - C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe [256056 2010-03-01] (Hewlett-Packard Company)
HKLM-x32\...\Run: [PDF Complete] - C:\Program Files (x86)\PDF Complete\pdfsty.exe [563736 2010-03-07] (PDF Complete Inc)
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2010-08-05] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [NortonOnlineBackupReminder] - C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NOBuActivation.exe [3331944 2009-12-03] (Symantec Corporation)
HKLM-x32\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\avastUI.exe [4858968 2013-05-09] (AVAST Software)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SDTray] - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [5624784 2013-07-25] (Safer-Networking Ltd.)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM-x32\...\Run: [EfficientStickyNotes] - [x]
HKLM-x32\...\Run: [ISUSPM] - C:\ProgramData\FLEXnet\Connect\11\\isuspm.exe [2068856 2011-10-12] (Flexera Software LLC.)
HKLM-x32\...\Run: [DNS7reminder] - C:\ProgramData\Nuance\NaturallySpeaking12\Ereg.ini [323 2013-09-24] ()
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-09-17] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
Startup: C:\Users\Lumen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Efficient Sticky Notes.lnk
ShortcutTarget: Efficient Sticky Notes.lnk -> C:\Program Files (x86)\Efficient Sticky Notes\EfficientStickyNotes.exe (Efficient Software)
Startup: C:\Users\Lumen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\lollipop.lnk
ShortcutTarget: lollipop.lnk -> C:\Users\Lumen\AppData\Local\Lollipop\Lollipop.exe ()
Startup: C:\Users\Lumen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\net.lnk
ShortcutTarget: net.lnk -> C:\Users\Lumen\AppData\Roaming\Windows Net Data\net.exe (Windows Net)
BootExecute: autocheck autochk * sdnclean64.exe
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.certified-toolbar.com?si=66920&st=home&tid=6787&ver=4.4&ts=1379973600000.000009&tguid=66920-6787-1380028506710-1F1A1DF73B94184F792495FA9E650441
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://search.certified-toolbar.com?si=66920&st=chrome&tid=6787&ver=4.4&ts=1379973600000.000009&tguid=66920-6787-1380028506710-1F1A1DF73B94184F792495FA9E650441&q=
HKCU\Software\Microsoft\Internet Explorer\Main,Start Default_Page_URL = hxxp://search.certified-toolbar.com?si=66920&st=home&tid=6787&ver=4.4&ts=1379973600000.000009&tguid=66920-6787-1380028506710-1F1A1DF73B94184F792495FA9E650441
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://search.certified-toolbar.com?si=66920&st=chrome&tid=6787&ver=4.4&ts=1379973600000.000009&tguid=66920-6787-1380028506710-1F1A1DF73B94184F792495FA9E650441&q=
HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://search.certified-toolbar.com?si=66920&st=chrome&tid=6787&ver=4.4&ts=1379973600000.000009&tguid=66920-6787-1380028506710-1F1A1DF73B94184F792495FA9E650441&q=
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://search.certified-toolbar.com?si=66920&st=chrome&tid=6787&ver=4.4&ts=1379973600000.000009&tguid=66920-6787-1380028506710-1F1A1DF73B94184F792495FA9E650441&q=
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.certified-toolbar.com?si=66920&st=home&tid=6787&ver=4.4&ts=1379973600000.000009&tguid=66920-6787-1380028506710-1F1A1DF73B94184F792495FA9E650441
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://search.certified-toolbar.com?si=66920&st=chrome&tid=6787&ver=4.4&ts=1379973600000.000009&tguid=66920-6787-1380028506710-1F1A1DF73B94184F792495FA9E650441&q=
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Default_Page_URL = hxxp://search.certified-toolbar.com?si=66920&st=home&tid=6787&ver=4.4&ts=1379973600000.000009&tguid=66920-6787-1380028506710-1F1A1DF73B94184F792495FA9E650441
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Bar = hxxp://search.certified-toolbar.com?si=66920&st=chrome&tid=6787&ver=4.4&ts=1379973600000.000009&tguid=66920-6787-1380028506710-1F1A1DF73B94184F792495FA9E650441&q=
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - URL hxxp://search.certified-toolbar.com?si=66920&st=bs&tid=6787&ver=4.4&ts=1379973600000.000009&tguid=66920-6787-1380028506710-1F1A1DF73B94184F792495FA9E650441&q={searchTerms}
SearchScopes: HKLM-x32 - SuggestionsURL_JSON hxxp://api.widdit.com/suggestions/?format=ffplugin&ua=ie&src=addon&si=66920&gid=66920-6787-1380028506710-1F1A1DF73B94184F792495FA9E650441&dbCode=1&command={searchTerms}
SearchScopes: HKLM-x32 - TopResultURLFallback hxxp://search.certified-toolbar.com?si=66920&st=bs&tid=6787&ver=4.4&ts=1379973600000.000009&tguid=66920-6787-1380028506710-1F1A1DF73B94184F792495FA9E650441&q={searchTerms}
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL =
SearchScopes: HKCU - DefaultScope {E38EE736-8F53-4DE1-A867-0E35AD8808F8} URL = hxxp://search.certified-toolbar.com?si=66920&st=bs&tid=6787&ver=4.4&ts=1379973600000.000009&tguid=66920-6787-1380028506710-1F1A1DF73B94184F792495FA9E650441&q={searchTerms}
SearchScopes: HKCU - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=vc_trans_8140&type=horus
SearchScopes: HKCU - {E38EE736-8F53-4DE1-A867-0E35AD8808F8} URL = hxxp://search.certified-toolbar.com?si=66920&st=bs&tid=6787&ver=4.4&ts=1379973600000.000009&tguid=66920-6787-1380028506710-1F1A1DF73B94184F792495FA9E650441&q={searchTerms}
BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: Dragon NaturallySpeaking Rich Internet Application Support - Extension - {73A89C60-CF59-4EC7-9215-9B7EF05ECEA4} - C:\Program Files (x86)\Nuance\NaturallySpeaking12\Program\ieShim.dll (Nuance Communications, Inc.)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
Toolbar: HKLM-x32 - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
FireFox:
========
FF ProfilePath: C:\Users\Lumen\AppData\Roaming\Mozilla\Firefox\Profiles\4lo6os0q.default
FF NewTab: hxxp://search.certified-toolbar.com?si=66920&st=newtab&tid=6787&ver=4.4&ts=1379973600000.000009&tguid=66920-6787-1380028506710-1F1A1DF73B94184F792495FA9E650441
FF DefaultSearchEngine: Web Search
FF SearchEngineOrder.1: Web Search
FF SelectedSearchEngine: Web Search
FF Homepage: hxxp://search.certified-toolbar.com?si=66920&st=home&tid=6787&ver=4.4&ts=1379973600000.000009&tguid=66920-6787-1380028506710-1F1A1DF73B94184F792495FA9E650441
FF Keyword.URL: hxxp://search.certified-toolbar.com?si=66920&st=chrome&tid=6787&ver=4.4&ts=1379973600000.000009&tguid=66920-6787-1380028506710-1F1A1DF73B94184F792495FA9E650441&q=
FF NetworkProxy: "backup.ftp", "152.168.0.3"
FF NetworkProxy: "backup.ftp_port", 443
FF NetworkProxy: "backup.socks", "152.168.0.3"
FF NetworkProxy: "backup.socks_port", 443
FF NetworkProxy: "backup.ssl", "152.168.0.3"
FF NetworkProxy: "backup.ssl_port", 443
FF NetworkProxy: "ftp", "152.168.0.3"
FF NetworkProxy: "ftp_port", 3128
FF NetworkProxy: "http", "152.168.0.3"
FF NetworkProxy: "http_port", 3128
FF NetworkProxy: "share_proxy_settings", true
FF NetworkProxy: "socks", "152.168.0.3"
FF NetworkProxy: "socks_port", 3128
FF NetworkProxy: "ssl", "152.168.0.3"
FF NetworkProxy: "ssl_port", 3128
FF NetworkProxy: "type", 4
FF Plugin: @adobe.com/FlashPlayer - C:\windows\system32\Macromed\Flash\NPSWF64_11_8_800_168.dll ()
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @adobe.com/FlashPlayer - C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_168.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.40.2 - C:\windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.40.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\4.0.50401.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.0.2 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.0.8 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin-x32: nuance.com/DragonRIAPlugin - C:\PROGRA~2\Nuance\NATURA~1\Program\npDgnRia.dll (Nuance Communications Inc.)
FF SearchPlugin: C:\Users\Lumen\AppData\Roaming\Mozilla\Firefox\Profiles\4lo6os0q.default\searchplugins\Web Search.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\Web Search.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: No Name - C:\Users\Lumen\AppData\Roaming\Mozilla\Firefox\Profiles\4lo6os0q.default\Extensions\124
FF Extension: pricealarm - C:\Users\Lumen\AppData\Roaming\Mozilla\Firefox\Profiles\4lo6os0q.default\Extensions\EFGLQA@78ETGYN-0W7FN789T87.COM
FF Extension: elemhidehelper - C:\Users\Lumen\AppData\Roaming\Mozilla\Firefox\Profiles\4lo6os0q.default\Extensions\elemhidehelper@adblockplus.org.xpi
FF Extension: No Name - C:\Users\Lumen\AppData\Roaming\Mozilla\Firefox\Profiles\4lo6os0q.default\Extensions\{1e9a63ef-84ec-49a4-8d6f-2dd9524e90d0}.xpi
FF Extension: No Name - C:\Users\Lumen\AppData\Roaming\Mozilla\Firefox\Profiles\4lo6os0q.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF Extension: No Name - C:\Users\Lumen\AppData\Roaming\Mozilla\Firefox\Profiles\4lo6os0q.default\Extensions\{fe272bd1-5f76-4ea4-8501-a05d35d823fc}.xpi
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF HKLM-x32\...\Firefox\Extensions: [jid0-lmZNVK7a82O8cufhdfB9dUDfA2w@jetpack] - C:\Program Files (x86)\Nuance\NaturallySpeaking12\Program\ffShim.xpi
FF Extension: No Name - C:\Program Files (x86)\Nuance\NaturallySpeaking12\Program\ffShim.xpi
FF HKCU\...\Firefox\Extensions: [{9309FA47-1B48-4768-AFA4-9E0556F5DC81}] - C:\Program Files (x86)\LyricsPal\125.xpi
Chrome:
=======
CHR Extension: () - C:\Users\Lumen\AppData\Local\Google\Chrome\User Data\Default\Extensions\fmlgoencnlndpglbocajlimaikjohmab\background.html
CHR Extension: (Helper extension) - C:\Users\Lumen\AppData\Local\Google\Chrome\User Data\Default\Extensions\nchpfiddbhbdnagofhkjlaiaejmkdcla\2.0_0
CHR HKLM-x32\...\Chrome\Extension: [mikhcaiakabeeokmenglcdebplfdjicn] - C:\Program Files (x86)\Nuance\NaturallySpeaking12\Program\chromeShim.crx
CHR HKLM-x32\...\Chrome\Extension: [mmiopbgcekanlhpjkonogoljpfmhpkhf] - C:\Program Files (x86)\LyricsPal\125.crx
==================== Services (Whitelisted) =================
R2 AESTFilters; C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe [89600 2009-03-03] (Andrea Electronics Corporation)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808 2013-05-09] (AVAST Software)
R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe [264248 2010-03-01] (Hewlett-Packard Company)
R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [635416 2010-03-07] (PDF Complete Inc)
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1817560 2013-05-16] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1033688 2013-05-16] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2013-05-15] (Safer-Networking Ltd.)
R2 STacSV; C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe [244736 2010-03-17] (IDT, Inc.)
==================== Drivers (Whitelisted) ====================
R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [33400 2013-05-09] (AVAST Software)
R2 aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [80816 2013-05-09] (AVAST Software)
R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [72016 2013-05-09] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65336 2013-05-09] ()
R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [1030952 2013-07-22] (AVAST Software)
R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [378944 2013-07-22] (AVAST Software)
R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [64288 2013-05-09] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [189936 2013-07-22] ()
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2013-08-21] (DT Soft Ltd)
R3 rtsuvc; C:\Windows\System32\DRIVERS\rtsuvc.sys [96384 2010-05-21] (Realtek Semiconductor Corp.)
S3 btwaudio; system32\drivers\btwaudio.sys [x]
S3 btwavdt; system32\DRIVERS\btwavdt.sys [x]
S3 btwl2cap; system32\DRIVERS\btwl2cap.sys [x]
S3 btwrchid; system32\DRIVERS\btwrchid.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-09-24 16:48 - 2013-09-24 16:48 - 00000000 ____D C:\FRST
2013-09-24 16:47 - 2013-09-24 16:47 - 01955802 _____ (Farbar) C:\Users\Lumen\Downloads\FRST64.exe
2013-09-24 16:44 - 2013-09-24 16:44 - 00000107 ____H C:\Users\Lumen\Desktop\.~lock.die nächsten schritte.odt#
2013-09-24 16:42 - 2013-09-24 16:42 - 00000354 _____ C:\windows\PFRO.log
2013-09-24 16:42 - 2013-09-24 16:42 - 00000056 _____ C:\windows\setupact.log
2013-09-24 16:42 - 2013-09-24 16:42 - 00000000 _____ C:\windows\setuperr.log
2013-09-24 16:40 - 2013-09-24 16:40 - 00000472 _____ C:\Users\Lumen\Desktop\defogger_disable.log
2013-09-24 16:40 - 2013-09-24 16:40 - 00000168 _____ C:\Users\Lumen\defogger_reenable
2013-09-24 16:39 - 2013-09-24 16:39 - 00025837 _____ C:\Users\Lumen\Desktop\die nächsten schritte.odt
2013-09-24 16:39 - 2013-09-24 16:39 - 00000344 _____ C:\Users\Lumen\Downloads\defogger_enable.log
2013-09-24 16:37 - 2013-09-24 16:37 - 00000472 _____ C:\Users\Lumen\Downloads\defogger_disable.log
2013-09-24 16:36 - 2013-09-24 16:37 - 00050477 _____ C:\Users\Lumen\Desktop\Defogger.exe
2013-09-24 15:48 - 2013-09-24 15:48 - 01871595 _____ C:\Users\Lumen\Downloads\Gedaecht.exe
2013-09-24 15:46 - 2013-09-24 15:46 - 00000000 ____D C:\Users\Lumen\AppData\Roaming\Windows Net Data
2013-09-24 15:15 - 2013-08-13 08:38 - 00032328 _____ C:\windows\Launcher.exe
2013-09-24 15:12 - 2013-09-24 15:47 - 00000000 ____D C:\Users\Lumen\AppData\Local\DownloadGuide
2013-09-24 15:07 - 2013-09-24 15:07 - 00478600 _____ C:\Users\Lumen\Downloads\Gedaecht-Downloader.exe
2013-09-24 13:32 - 2013-09-24 13:33 - 23003252 _____ C:\Users\Lumen\Downloads\vlc-2.0.8-win32(1).exe
2013-09-24 13:32 - 2013-09-24 13:32 - 00000000 ____D C:\ProgramData\Oracle
2013-09-24 13:32 - 2013-09-24 13:31 - 00264616 _____ (Oracle Corporation) C:\windows\SysWOW64\javaws.exe
2013-09-24 13:31 - 2013-09-24 13:31 - 00175016 _____ (Oracle Corporation) C:\windows\SysWOW64\javaw.exe
2013-09-24 13:31 - 2013-09-24 13:31 - 00175016 _____ (Oracle Corporation) C:\windows\SysWOW64\java.exe
2013-09-24 13:31 - 2013-09-24 13:31 - 00096168 _____ (Oracle Corporation) C:\windows\SysWOW64\WindowsAccessBridge-32.dll
2013-09-24 13:31 - 2013-09-24 13:31 - 00000000 ____D C:\Program Files (x86)\Java
2013-09-24 13:17 - 2013-09-24 13:18 - 29036456 _____ (Oracle Corporation) C:\Users\Lumen\Downloads\jre-7u40-windows-i586.exe
2013-09-23 20:07 - 2013-09-23 20:07 - 00001783 _____ C:\Users\Public\Desktop\iTunes.lnk
2013-09-23 20:06 - 2013-09-23 20:07 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2013-09-23 20:06 - 2013-09-23 20:07 - 00000000 ____D C:\Program Files\iTunes
2013-09-23 20:06 - 2013-09-23 20:07 - 00000000 ____D C:\Program Files (x86)\iTunes
2013-09-23 20:06 - 2013-09-23 20:06 - 00000000 ____D C:\Program Files\iPod
2013-09-22 20:37 - 2013-09-22 20:37 - 00002999 _____ C:\Users\Lumen\Desktop\Gubernator.lnk
2013-09-22 20:37 - 2013-09-22 20:37 - 00000000 ____D C:\Users\Lumen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Gubernator
2013-09-22 20:36 - 2013-09-22 20:37 - 00000000 ____D C:\Program Files (x86)\Gubernator
2013-09-19 14:35 - 2013-09-19 14:36 - 02246526 _____ ( ) C:\Users\Lumen\Downloads\EfficientStickyNotes-Setup(1).exe.part
2013-09-19 14:33 - 2013-09-19 14:34 - 03415256 _____ (Piriform Ltd) C:\Users\Lumen\Downloads\ccsetup405_slim_4.05.exe
2013-09-19 14:24 - 2013-09-19 14:36 - 26540781 _____ C:\Users\Lumen\Downloads\SkypeSetupFull_6.7.102(1).exe.part
2013-09-18 07:20 - 2013-09-18 07:20 - 00881664 _____ C:\Users\Lumen\Downloads\LicensingServiceInstaller.msi
2013-09-17 09:05 - 2013-09-17 09:05 - 00000000 ____D C:\Users\Lumen\AppData\Roaming\Nuance
2013-09-17 08:39 - 2013-09-17 08:39 - 00000000 ____D C:\Users\Lumen\AppData\Roaming\FLEXnet
2013-09-17 08:37 - 2013-09-17 08:37 - 00002799 _____ C:\Users\Public\Desktop\Dragon NaturallySpeaking 12.0.lnk
2013-09-17 08:34 - 2013-09-17 08:34 - 00000000 ____D C:\ProgramData\Nuance
2013-09-17 08:34 - 2013-09-17 08:34 - 00000000 ____D C:\ProgramData\Macrovision
2013-09-17 08:34 - 2013-09-17 08:34 - 00000000 ____D C:\ProgramData\FLEXnet
2013-09-17 08:34 - 2013-09-17 08:34 - 00000000 ____D C:\Program Files (x86)\Nuance
2013-09-17 08:30 - 2013-09-19 08:16 - 01589710 _____ C:\windows\SysWOW64\PerfStringBackup.INI
2013-09-17 08:27 - 2013-09-17 08:27 - 00000000 ____D C:\Program Files (x86)\MSXML 4.0
2013-09-13 19:29 - 2013-08-10 07:22 - 02241024 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2013-09-13 19:29 - 2013-08-10 07:22 - 01365504 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2013-09-13 19:29 - 2013-08-10 07:22 - 00051712 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2013-09-13 19:29 - 2013-08-10 07:21 - 19246592 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2013-09-13 19:29 - 2013-08-10 07:21 - 00603136 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2013-09-13 19:29 - 2013-08-10 07:21 - 00053248 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2013-09-13 19:29 - 2013-08-10 07:20 - 15404544 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2013-09-13 19:29 - 2013-08-10 07:20 - 03959296 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2013-09-13 19:29 - 2013-08-10 07:20 - 02647040 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2013-09-13 19:29 - 2013-08-10 07:20 - 00855552 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2013-09-13 19:29 - 2013-08-10 07:20 - 00526336 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2013-09-13 19:29 - 2013-08-10 07:20 - 00136704 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll
2013-09-13 19:29 - 2013-08-10 07:20 - 00067072 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2013-09-13 19:29 - 2013-08-10 07:20 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2013-09-13 19:29 - 2013-08-10 05:59 - 01767936 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2013-09-13 19:29 - 2013-08-10 05:59 - 01141248 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2013-09-13 19:29 - 2013-08-10 05:58 - 14332928 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2013-09-13 19:29 - 2013-08-10 05:58 - 13761024 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2013-09-13 19:29 - 2013-08-10 05:58 - 02876928 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2013-09-13 19:29 - 2013-08-10 05:58 - 02048000 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2013-09-13 19:29 - 2013-08-10 05:58 - 00690688 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2013-09-13 19:29 - 2013-08-10 05:58 - 00493056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2013-09-13 19:29 - 2013-08-10 05:58 - 00391168 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2013-09-13 19:29 - 2013-08-10 05:58 - 00109056 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesysprep.dll
2013-09-13 19:29 - 2013-08-10 05:58 - 00061440 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2013-09-13 19:29 - 2013-08-10 05:58 - 00039424 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2013-09-13 19:29 - 2013-08-10 05:58 - 00033280 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2013-09-13 19:29 - 2013-08-10 05:17 - 02706432 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2013-09-13 19:29 - 2013-08-10 05:07 - 02706432 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2013-09-13 19:29 - 2013-08-10 04:27 - 00089600 _____ (Microsoft Corporation) C:\windows\system32\RegisterIEPKEYs.exe
2013-09-13 19:29 - 2013-08-10 04:17 - 00071680 _____ (Microsoft Corporation) C:\windows\SysWOW64\RegisterIEPKEYs.exe
2013-09-13 08:31 - 2013-08-08 03:20 - 03155456 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2013-09-13 08:31 - 2013-08-02 04:23 - 05550528 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2013-09-13 08:31 - 2013-08-02 04:15 - 01732032 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll
2013-09-13 08:31 - 2013-08-02 04:15 - 00362496 _____ (Microsoft Corporation) C:\windows\system32\wow64win.dll
2013-09-13 08:31 - 2013-08-02 04:15 - 00243712 _____ (Microsoft Corporation) C:\windows\system32\wow64.dll
2013-09-13 08:31 - 2013-08-02 04:15 - 00013312 _____ (Microsoft Corporation) C:\windows\system32\wow64cpu.dll
2013-09-13 08:31 - 2013-08-02 04:14 - 00215040 _____ (Microsoft Corporation) C:\windows\system32\winsrv.dll
2013-09-13 08:31 - 2013-08-02 04:14 - 00016384 _____ (Microsoft Corporation) C:\windows\system32\ntvdm64.dll
2013-09-13 08:31 - 2013-08-02 04:13 - 01161216 _____ (Microsoft Corporation) C:\windows\system32\kernel32.dll
2013-09-13 08:31 - 2013-08-02 04:13 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\KernelBase.dll
2013-09-13 08:31 - 2013-08-02 04:12 - 00043520 _____ (Microsoft Corporation) C:\windows\system32\csrsrv.dll
2013-09-13 08:31 - 2013-08-02 04:12 - 00006656 _____ (Microsoft Corporation) C:\windows\system32\apisetschema.dll
2013-09-13 08:31 - 2013-08-02 04:12 - 00006144 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 04:12 - 00005120 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 03:59 - 03968960 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntkrnlpa.exe
2013-09-13 08:31 - 2013-08-02 03:59 - 03913664 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntoskrnl.exe
2013-09-13 08:31 - 2013-08-02 03:51 - 01292192 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll
2013-09-13 08:31 - 2013-08-02 03:50 - 01114112 _____ (Microsoft Corporation) C:\windows\SysWOW64\kernel32.dll
2013-09-13 08:31 - 2013-08-02 03:50 - 00274944 _____ (Microsoft Corporation) C:\windows\SysWOW64\KernelBase.dll
2013-09-13 08:31 - 2013-08-02 03:50 - 00005120 _____ (Microsoft Corporation) C:\windows\SysWOW64\wow32.dll
2013-09-13 08:31 - 2013-08-02 03:48 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\apisetschema.dll
2013-09-13 08:31 - 2013-08-02 03:48 - 00005120 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 03:48 - 00004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 03:09 - 00338432 _____ (Microsoft Corporation) C:\windows\system32\conhost.exe
2013-09-13 08:31 - 2013-08-02 02:59 - 00112640 _____ (Microsoft Corporation) C:\windows\system32\smss.exe
2013-09-13 08:31 - 2013-08-02 02:45 - 00025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\setup16.exe
2013-09-13 08:31 - 2013-08-02 02:45 - 00014336 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntvdm64.dll
2013-09-13 08:31 - 2013-08-02 02:45 - 00007680 _____ (Microsoft Corporation) C:\windows\SysWOW64\instnm.exe
2013-09-13 08:31 - 2013-08-02 02:45 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\user.exe
2013-09-13 08:31 - 2013-08-02 02:43 - 00006144 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 02:43 - 00004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 02:43 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2013-09-13 08:31 - 2013-08-02 02:43 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2013-09-13 08:30 - 2013-07-26 04:24 - 14172672 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll
2013-09-13 08:30 - 2013-07-26 04:24 - 00197120 _____ (Microsoft Corporation) C:\windows\system32\shdocvw.dll
2013-09-13 08:30 - 2013-07-26 03:55 - 12872704 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll
2013-09-13 08:30 - 2013-07-26 03:55 - 00180224 _____ (Microsoft Corporation) C:\windows\SysWOW64\shdocvw.dll
2013-09-11 23:13 - 2013-09-24 16:41 - 00000000 ____D C:\Users\Lumen\Documents\EfficientPIM AutoBackup
2013-09-11 16:10 - 2013-09-24 16:41 - 01851392 _____ C:\Users\Lumen\Documents\MyStickyNotes.esnx
2013-09-11 16:10 - 2013-09-18 07:35 - 00000000 ____D C:\Users\Lumen\AppData\Roaming\Efficient Sticky Notes
2013-09-11 16:10 - 2013-09-11 16:10 - 00001077 _____ C:\Users\Lumen\Desktop\Efficient Sticky Notes.lnk
2013-09-11 16:10 - 2013-09-11 16:10 - 00000000 ____D C:\Program Files (x86)\Efficient Sticky Notes
2013-09-11 15:58 - 2013-09-11 15:59 - 05853925 _____ ( ) C:\Users\Lumen\Downloads\EfficientStickyNotes-Setup.exe
2013-09-08 13:56 - 2013-09-08 13:56 - 00000000 ____D C:\Users\Lumen\AppData\Roaming\WinRAR
2013-09-08 13:56 - 2013-09-08 13:56 - 00000000 ____D C:\Users\Lumen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2013-09-08 13:55 - 2013-09-08 13:56 - 00000000 ____D C:\Program Files (x86)\WinRAR
2013-09-08 13:53 - 2013-09-08 13:53 - 01865912 _____ C:\Users\Lumen\Downloads\wrar500d.exe
2013-09-08 11:19 - 2013-09-08 11:19 - 00001151 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2013-09-08 11:19 - 2013-09-08 11:19 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-09-06 20:42 - 2013-09-06 21:07 - 00000000 ____D C:\Users\Lumen\AppData\Roaming\Apple Computer
2013-09-06 20:42 - 2013-09-06 20:42 - 00000000 ____D C:\Users\Lumen\AppData\Local\Apple Computer
2013-09-06 20:41 - 2012-08-21 13:01 - 00033240 _____ (GEAR Software Inc.) C:\windows\system32\Drivers\GEARAspiWDM.sys
2013-09-06 20:40 - 2013-09-23 20:06 - 00000000 ____D C:\ProgramData\Apple Computer
2013-09-06 20:33 - 2013-09-06 20:33 - 00000000 ____D C:\windows\System32\Tasks\Apple
2013-09-06 20:33 - 2013-09-06 20:33 - 00000000 ____D C:\Users\Lumen\AppData\Local\Apple
2013-09-06 20:32 - 2013-09-06 20:32 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2013-09-06 20:31 - 2013-09-06 20:31 - 00000000 ____D C:\Program Files\Common Files\Apple
2013-09-06 20:30 - 2013-09-06 20:30 - 00000000 ____D C:\Program Files\Bonjour
2013-09-06 20:30 - 2013-09-06 20:30 - 00000000 ____D C:\Program Files (x86)\Bonjour
2013-09-06 20:28 - 2013-09-06 20:32 - 00000000 ____D C:\ProgramData\Apple
2013-09-06 20:24 - 2013-09-06 20:25 - 90889040 _____ (Apple Inc.) C:\Users\Lumen\Downloads\iTunes64Setup.exe
2013-09-06 20:22 - 2013-09-06 20:22 - 89082704 _____ (Apple Inc.) C:\Users\Lumen\Downloads\iTunesSetup.exe
2013-09-04 15:17 - 2013-09-04 15:17 - 00002038 _____ C:\Users\Lumen\Desktop\eyeQ.lnk
2013-09-04 15:17 - 2013-09-04 15:17 - 00000000 ____D C:\Users\Lumen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\eyeQ
2013-09-04 15:17 - 2013-09-04 15:17 - 00000000 ____D C:\Program Files (x86)\Infinite Mind LC
2013-09-04 15:17 - 2002-02-21 14:57 - 00000068 _____ C:\windows\eyeQ Screen Saver.ini
2013-09-04 15:17 - 2002-02-20 14:22 - 04141056 _____ C:\windows\eyeQ Screen Saver.scr
2013-09-04 15:16 - 2006-11-08 08:21 - 00000000 ____D C:\Users\Lumen\Desktop\Infinite Mind - eyeQ V3.3 [ISO]
2013-09-04 15:12 - 2013-09-04 15:12 - 00001383 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2013-09-04 15:11 - 2013-09-04 15:12 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
2013-09-04 15:11 - 2009-01-25 13:14 - 00017272 _____ (Safer Networking Limited) C:\windows\system32\sdnclean64.exe
2013-09-04 13:40 - 2013-09-04 13:59 - 37672592 _____ (Safer-Networking Ltd. ) C:\Users\Lumen\Downloads\spybotsd-2.1.21-SR2.exe
2013-09-04 11:09 - 2013-09-04 12:11 - 23003252 _____ C:\Users\Lumen\Downloads\vlc-2.0.8-win32.exe
2013-09-04 11:08 - 2013-09-04 11:46 - 31714216 _____ (Oracle Corporation) C:\Users\Lumen\Downloads\jre-7u25-windows-i586.exe
2013-08-28 23:42 - 2013-08-28 23:42 - 00000000 ____D C:\Users\Lumen\AppData\Roaming\lingDIALOG
2013-08-28 23:42 - 2013-08-28 23:42 - 00000000 ____D C:\Users\Lumen\.pknowledge
2013-08-28 23:41 - 2013-08-28 23:41 - 00000000 ____D C:\Users\Lumen\AppData\Roaming\conkeror.mozdev.org
2013-08-28 23:41 - 2013-08-28 23:41 - 00000000 ____D C:\Users\Lumen\AppData\Local\conkeror.mozdev.org
2013-08-25 23:05 - 2013-08-25 23:05 - 00000000 ____D C:\Users\Lumen\AppData\Roaming\com.vilango.birkenbihlsprachen.standalone.4098D6077932D7E96A46C8B37530CA6753B141F8.1
2013-08-25 18:48 - 2013-08-25 18:48 - 00000000 ____D C:\Program Files (x86)\WEVOSYS
2013-08-25 18:47 - 2013-08-25 18:47 - 00002388 _____ C:\Users\Public\Desktop\Grammatiktrainer 6.0 Italienisch.lnk
2013-08-25 18:46 - 2013-08-25 18:46 - 00000000 ____D C:\Program Files (x86)\Langenscheidt
2013-08-25 18:45 - 2013-08-25 18:45 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2013-08-25 18:45 - 2013-08-25 18:45 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2013-08-25 18:45 - 2013-08-25 18:45 - 00000000 ____D C:\Program Files (x86)\BirkenbihlSprachen
==================== One Month Modified Files and Folders =======
2013-09-24 16:48 - 2013-09-24 16:48 - 00000000 ____D C:\FRST
2013-09-24 16:47 - 2013-09-24 16:47 - 01955802 _____ (Farbar) C:\Users\Lumen\Downloads\FRST64.exe
2013-09-24 16:47 - 2013-08-21 20:13 - 00001966 _____ C:\Users\Lumen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lollipop.lnk
2013-09-24 16:47 - 2013-07-21 23:45 - 01104702 _____ C:\windows\WindowsUpdate.log
2013-09-24 16:44 - 2013-09-24 16:44 - 00000107 ____H C:\Users\Lumen\Desktop\.~lock.die nächsten schritte.odt#
2013-09-24 16:42 - 2013-09-24 16:42 - 00000354 _____ C:\windows\PFRO.log
2013-09-24 16:42 - 2013-09-24 16:42 - 00000056 _____ C:\windows\setupact.log
2013-09-24 16:42 - 2013-09-24 16:42 - 00000000 _____ C:\windows\setuperr.log
2013-09-24 16:42 - 2009-07-14 07:08 - 00000006 ____H C:\windows\Tasks\SA.DAT
2013-09-24 16:41 - 2013-09-11 23:13 - 00000000 ____D C:\Users\Lumen\Documents\EfficientPIM AutoBackup
2013-09-24 16:41 - 2013-09-11 16:10 - 01851392 _____ C:\Users\Lumen\Documents\MyStickyNotes.esnx
2013-09-24 16:40 - 2013-09-24 16:40 - 00000472 _____ C:\Users\Lumen\Desktop\defogger_disable.log
2013-09-24 16:40 - 2013-09-24 16:40 - 00000168 _____ C:\Users\Lumen\defogger_reenable
2013-09-24 16:40 - 2013-07-21 23:48 - 00000000 ____D C:\Users\Lumen
2013-09-24 16:39 - 2013-09-24 16:39 - 00025837 _____ C:\Users\Lumen\Desktop\die nächsten schritte.odt
2013-09-24 16:39 - 2013-09-24 16:39 - 00000344 _____ C:\Users\Lumen\Downloads\defogger_enable.log
2013-09-24 16:37 - 2013-09-24 16:37 - 00000472 _____ C:\Users\Lumen\Downloads\defogger_disable.log
2013-09-24 16:37 - 2013-09-24 16:36 - 00050477 _____ C:\Users\Lumen\Desktop\Defogger.exe
2013-09-24 16:34 - 2013-08-21 20:12 - 00000000 ____D C:\Users\Lumen\AppData\Roaming\DAEMON Tools Lite
2013-09-24 16:31 - 2013-07-22 17:39 - 00000884 _____ C:\windows\Tasks\Adobe Flash Player Updater.job
2013-09-24 16:06 - 2010-12-09 00:48 - 00000000 ____D C:\Program Files (x86)\Hewlett-Packard
2013-09-24 15:48 - 2013-09-24 15:48 - 01871595 _____ C:\Users\Lumen\Downloads\Gedaecht.exe
2013-09-24 15:47 - 2013-09-24 15:12 - 00000000 ____D C:\Users\Lumen\AppData\Local\DownloadGuide
2013-09-24 15:46 - 2013-09-24 15:46 - 00000000 ____D C:\Users\Lumen\AppData\Roaming\Windows Net Data
2013-09-24 15:46 - 2013-07-22 00:04 - 00000000 ___RD C:\Users\Lumen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-09-24 15:17 - 2013-08-08 19:43 - 00000000 ____D C:\Users\Lumen\AppData\Roaming\Spotify
2013-09-24 15:07 - 2013-09-24 15:07 - 00478600 _____ C:\Users\Lumen\Downloads\Gedaecht-Downloader.exe
2013-09-24 13:57 - 2013-07-22 17:28 - 00001070 _____ C:\Users\Public\Desktop\VLC media player.lnk
2013-09-24 13:33 - 2013-09-24 13:32 - 23003252 _____ C:\Users\Lumen\Downloads\vlc-2.0.8-win32(1).exe
2013-09-24 13:32 - 2013-09-24 13:32 - 00000000 ____D C:\ProgramData\Oracle
2013-09-24 13:31 - 2013-09-24 13:32 - 00264616 _____ (Oracle Corporation) C:\windows\SysWOW64\javaws.exe
2013-09-24 13:31 - 2013-09-24 13:31 - 00175016 _____ (Oracle Corporation) C:\windows\SysWOW64\javaw.exe
2013-09-24 13:31 - 2013-09-24 13:31 - 00175016 _____ (Oracle Corporation) C:\windows\SysWOW64\java.exe
2013-09-24 13:31 - 2013-09-24 13:31 - 00096168 _____ (Oracle Corporation) C:\windows\SysWOW64\WindowsAccessBridge-32.dll
2013-09-24 13:31 - 2013-09-24 13:31 - 00000000 ____D C:\Program Files (x86)\Java
2013-09-24 13:31 - 2013-07-29 11:02 - 00868264 _____ (Oracle Corporation) C:\windows\SysWOW64\npDeployJava1.dll
2013-09-24 13:31 - 2013-07-29 11:02 - 00790440 _____ (Oracle Corporation) C:\windows\SysWOW64\deployJava1.dll
2013-09-24 13:18 - 2013-09-24 13:17 - 29036456 _____ (Oracle Corporation) C:\Users\Lumen\Downloads\jre-7u40-windows-i586.exe
2013-09-24 09:03 - 2009-07-14 06:45 - 00019760 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-09-24 09:03 - 2009-07-14 06:45 - 00019760 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-09-24 00:39 - 2013-08-03 11:54 - 00000000 ____D C:\Users\Lumen\AppData\Roaming\Skype
2013-09-23 20:07 - 2013-09-23 20:07 - 00001783 _____ C:\Users\Public\Desktop\iTunes.lnk
2013-09-23 20:07 - 2013-09-23 20:06 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2013-09-23 20:07 - 2013-09-23 20:06 - 00000000 ____D C:\Program Files\iTunes
2013-09-23 20:07 - 2013-09-23 20:06 - 00000000 ____D C:\Program Files (x86)\iTunes
2013-09-23 20:06 - 2013-09-23 20:06 - 00000000 ____D C:\Program Files\iPod
2013-09-23 20:06 - 2013-09-06 20:40 - 00000000 ____D C:\ProgramData\Apple Computer
2013-09-23 20:02 - 2013-08-08 19:45 - 00000000 ____D C:\Users\Lumen\AppData\Local\Spotify
2013-09-23 19:45 - 2013-08-21 20:13 - 00000000 ____D C:\Users\Lumen\AppData\Local\Lollipop
2013-09-23 12:06 - 2013-07-22 00:03 - 00003186 _____ C:\windows\System32\Tasks\HPCeeScheduleForLumen
2013-09-23 12:06 - 2013-07-22 00:03 - 00000332 _____ C:\windows\Tasks\HPCeeScheduleForLumen.job
2013-09-23 11:10 - 2010-12-09 00:59 - 00000000 ____D C:\ProgramData\PDFC
2013-09-22 20:37 - 2013-09-22 20:37 - 00002999 _____ C:\Users\Lumen\Desktop\Gubernator.lnk
2013-09-22 20:37 - 2013-09-22 20:37 - 00000000 ____D C:\Users\Lumen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Gubernator
2013-09-22 20:37 - 2013-09-22 20:36 - 00000000 ____D C:\Program Files (x86)\Gubernator
2013-09-22 19:52 - 2013-07-28 18:24 - 00000052 _____ C:\windows\SysWOW64\DOErrors.log
2013-09-21 08:25 - 2013-07-22 17:25 - 00004182 _____ C:\windows\System32\Tasks\avast! Emergency Update
2013-09-20 10:48 - 2010-12-09 00:40 - 00696884 _____ C:\windows\system32\perfh007.dat
2013-09-20 10:48 - 2010-12-09 00:40 - 00148148 _____ C:\windows\system32\perfc007.dat
2013-09-20 10:48 - 2009-07-14 07:13 - 01612544 _____ C:\windows\system32\PerfStringBackup.INI
2013-09-20 08:59 - 2013-07-22 00:03 - 00003708 _____ C:\windows\System32\Tasks\Registration
2013-09-19 14:36 - 2013-09-19 14:35 - 02246526 _____ ( ) C:\Users\Lumen\Downloads\EfficientStickyNotes-Setup(1).exe.part
2013-09-19 14:36 - 2013-09-19 14:24 - 26540781 _____ C:\Users\Lumen\Downloads\SkypeSetupFull_6.7.102(1).exe.part
2013-09-19 14:34 - 2013-09-19 14:33 - 03415256 _____ (Piriform Ltd) C:\Users\Lumen\Downloads\ccsetup405_slim_4.05.exe
2013-09-19 08:16 - 2013-09-17 08:30 - 01589710 _____ C:\windows\SysWOW64\PerfStringBackup.INI
2013-09-18 07:35 - 2013-09-11 16:10 - 00000000 ____D C:\Users\Lumen\AppData\Roaming\Efficient Sticky Notes
2013-09-18 07:35 - 2009-07-14 05:20 - 00000000 ____D C:\windows\registration
2013-09-18 07:20 - 2013-09-18 07:20 - 00881664 _____ C:\Users\Lumen\Downloads\LicensingServiceInstaller.msi
2013-09-17 21:23 - 2013-07-26 09:20 - 00000000 ____D C:\Users\Lumen\AppData\Roaming\vlc
2013-09-17 09:05 - 2013-09-17 09:05 - 00000000 ____D C:\Users\Lumen\AppData\Roaming\Nuance
2013-09-17 08:39 - 2013-09-17 08:39 - 00000000 ____D C:\Users\Lumen\AppData\Roaming\FLEXnet
2013-09-17 08:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\Speech
2013-09-17 08:37 - 2013-09-17 08:37 - 00002799 _____ C:\Users\Public\Desktop\Dragon NaturallySpeaking 12.0.lnk
2013-09-17 08:34 - 2013-09-17 08:34 - 00000000 ____D C:\ProgramData\Nuance
2013-09-17 08:34 - 2013-09-17 08:34 - 00000000 ____D C:\ProgramData\Macrovision
2013-09-17 08:34 - 2013-09-17 08:34 - 00000000 ____D C:\ProgramData\FLEXnet
2013-09-17 08:34 - 2013-09-17 08:34 - 00000000 ____D C:\Program Files (x86)\Nuance
2013-09-17 08:27 - 2013-09-17 08:27 - 00000000 ____D C:\Program Files (x86)\MSXML 4.0
2013-09-17 07:10 - 2013-07-21 23:49 - 00000000 ____D C:\Users\Lumen\AppData\Roaming\hpqLog
2013-09-16 08:43 - 2009-07-27 17:04 - 00000000 ____D C:\windows\Panther
2013-09-15 17:07 - 2013-07-22 08:44 - 00000000 ____D C:\windows\rescache
2013-09-14 17:23 - 2013-07-22 00:04 - 00000000 ___RD C:\Users\Lumen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2013-09-14 17:15 - 2009-07-14 06:45 - 00296496 _____ C:\windows\system32\FNTCACHE.DAT
2013-09-11 18:31 - 2013-07-22 17:39 - 00692616 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2013-09-11 18:31 - 2013-07-22 17:39 - 00071048 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-09-11 18:31 - 2013-07-22 17:39 - 00003822 _____ C:\windows\System32\Tasks\Adobe Flash Player Updater
2013-09-11 16:10 - 2013-09-11 16:10 - 00001077 _____ C:\Users\Lumen\Desktop\Efficient Sticky Notes.lnk
2013-09-11 16:10 - 2013-09-11 16:10 - 00000000 ____D C:\Program Files (x86)\Efficient Sticky Notes
2013-09-11 15:59 - 2013-09-11 15:58 - 05853925 _____ ( ) C:\Users\Lumen\Downloads\EfficientStickyNotes-Setup.exe
2013-09-11 15:29 - 2013-07-22 17:25 - 00000000 ____D C:\Users\Lumen\AppData\Local\Google
2013-09-08 13:56 - 2013-09-08 13:56 - 00000000 ____D C:\Users\Lumen\AppData\Roaming\WinRAR
2013-09-08 13:56 - 2013-09-08 13:56 - 00000000 ____D C:\Users\Lumen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2013-09-08 13:56 - 2013-09-08 13:55 - 00000000 ____D C:\Program Files (x86)\WinRAR
2013-09-08 13:54 - 2013-07-21 23:54 - 00000000 ____D C:\ProgramData\WinZip
2013-09-08 13:53 - 2013-09-08 13:53 - 01865912 _____ C:\Users\Lumen\Downloads\wrar500d.exe
2013-09-08 11:19 - 2013-09-08 11:19 - 00001151 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2013-09-08 11:19 - 2013-09-08 11:19 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-09-08 11:19 - 2013-08-17 11:00 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-09-06 21:07 - 2013-09-06 20:42 - 00000000 ____D C:\Users\Lumen\AppData\Roaming\Apple Computer
2013-09-06 20:42 - 2013-09-06 20:42 - 00000000 ____D C:\Users\Lumen\AppData\Local\Apple Computer
2013-09-06 20:33 - 2013-09-06 20:33 - 00000000 ____D C:\windows\System32\Tasks\Apple
2013-09-06 20:33 - 2013-09-06 20:33 - 00000000 ____D C:\Users\Lumen\AppData\Local\Apple
2013-09-06 20:32 - 2013-09-06 20:32 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2013-09-06 20:32 - 2013-09-06 20:28 - 00000000 ____D C:\ProgramData\Apple
2013-09-06 20:31 - 2013-09-06 20:31 - 00000000 ____D C:\Program Files\Common Files\Apple
2013-09-06 20:30 - 2013-09-06 20:30 - 00000000 ____D C:\Program Files\Bonjour
2013-09-06 20:30 - 2013-09-06 20:30 - 00000000 ____D C:\Program Files (x86)\Bonjour
2013-09-06 20:25 - 2013-09-06 20:24 - 90889040 _____ (Apple Inc.) C:\Users\Lumen\Downloads\iTunes64Setup.exe
2013-09-06 20:22 - 2013-09-06 20:22 - 89082704 _____ (Apple Inc.) C:\Users\Lumen\Downloads\iTunesSetup.exe
2013-09-04 15:17 - 2013-09-04 15:17 - 00002038 _____ C:\Users\Lumen\Desktop\eyeQ.lnk
2013-09-04 15:17 - 2013-09-04 15:17 - 00000000 ____D C:\Users\Lumen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\eyeQ
2013-09-04 15:17 - 2013-09-04 15:17 - 00000000 ____D C:\Program Files (x86)\Infinite Mind LC
2013-09-04 15:17 - 2010-12-09 00:59 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2013-09-04 15:12 - 2013-09-04 15:12 - 00001383 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2013-09-04 15:12 - 2013-09-04 15:11 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
2013-09-04 13:59 - 2013-09-04 13:40 - 37672592 _____ (Safer-Networking Ltd. ) C:\Users\Lumen\Downloads\spybotsd-2.1.21-SR2.exe
2013-09-04 12:11 - 2013-09-04 11:09 - 23003252 _____ C:\Users\Lumen\Downloads\vlc-2.0.8-win32.exe
2013-09-04 11:46 - 2013-09-04 11:08 - 31714216 _____ (Oracle Corporation) C:\Users\Lumen\Downloads\jre-7u25-windows-i586.exe
2013-09-04 11:09 - 2013-08-12 21:55 - 00000000 ____D C:\Program Files (x86)\Adobe
2013-09-04 11:07 - 2013-08-12 21:54 - 00000000 ____D C:\Users\Lumen\AppData\Local\Adobe
2013-08-29 19:19 - 2013-07-21 23:51 - 00000000 ____D C:\Users\Lumen\AppData\Local\VirtualStore
2013-08-29 18:46 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\NDF
2013-08-28 23:42 - 2013-08-28 23:42 - 00000000 ____D C:\Users\Lumen\AppData\Roaming\lingDIALOG
2013-08-28 23:42 - 2013-08-28 23:42 - 00000000 ____D C:\Users\Lumen\.pknowledge
2013-08-28 23:41 - 2013-08-28 23:41 - 00000000 ____D C:\Users\Lumen\AppData\Roaming\conkeror.mozdev.org
2013-08-28 23:41 - 2013-08-28 23:41 - 00000000 ____D C:\Users\Lumen\AppData\Local\conkeror.mozdev.org
2013-08-25 23:05 - 2013-08-25 23:05 - 00000000 ____D C:\Users\Lumen\AppData\Roaming\com.vilango.birkenbihlsprachen.standalone.4098D6077932D7E96A46C8B37530CA6753B141F8.1
2013-08-25 18:48 - 2013-08-25 18:48 - 00000000 ____D C:\Program Files (x86)\WEVOSYS
2013-08-25 18:47 - 2013-08-25 18:47 - 00002388 _____ C:\Users\Public\Desktop\Grammatiktrainer 6.0 Italienisch.lnk
2013-08-25 18:46 - 2013-08-25 18:46 - 00000000 ____D C:\Program Files (x86)\Langenscheidt
2013-08-25 18:45 - 2013-08-25 18:45 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2013-08-25 18:45 - 2013-08-25 18:45 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2013-08-25 18:45 - 2013-08-25 18:45 - 00000000 ____D C:\Program Files (x86)\BirkenbihlSprachen
2013-08-25 18:45 - 2013-08-12 21:55 - 00000000 ____D C:\ProgramData\Adobe
2013-08-25 18:45 - 2013-07-22 00:06 - 00000000 ____D C:\Users\Lumen\AppData\Roaming\Adobe
Some content of TEMP:
====================
C:\Users\Lumen\AppData\Local\Temp\apptorun.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-09-21 11:42
==================== End Of Log ============================ --- --- ---
--- --- ---
--- --- ---
[/CODE] Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 24-09-2013
Ran by Lumen at 2013-09-24 16:49:49
Running from C:\Users\Lumen\Downloads
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: avast! Antivirus (Enabled - Up to date) {2B2D1395-420B-D5C9-657E-930FE358FC3C}
AS: avast! Antivirus (Enabled - Up to date) {904CF271-6431-DA47-5FCE-A87D98DFB681}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Spybot - Search and Destroy (Enabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
==================== Installed Programs ======================
ActiveCheck component for HP Active Support Library (x32 Version: 3.0.0.3)
Adobe AIR (x32 Version: 3.8.0.1430)
Adobe Flash Player 10 ActiveX (x32 Version: 10.0.32.18)
Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.168)
Adobe Reader XI (11.0.04) - Deutsch (x32 Version: 11.0.04)
Apple Application Support (x32 Version: 2.3.6)
Apple Mobile Device Support (Version: 7.0.0.117)
Apple Software Update (x32 Version: 2.1.3.127)
ATI Catalyst Install Manager (Version: 3.0.778.0)
avast! Free Antivirus (x32 Version: 8.0.1489.0)
Birkenbihl Sprachen (x32 Version: 255)
Birkenbihl Sprachen (x32 Version: 3719)
Bonjour (Version: 3.0.0.10)
Broadcom 802.11 Wireless LAN Adapter (Version: 5.60.350.6)
Bundled software uninstaller (x32)
Catalyst Control Center - Branding (x32 Version: 1.00.0000)
Catalyst Control Center InstallProxy (x32 Version: 2010.0805.358.5180)
Catalyst Control Center Localization All (x32 Version: 2010.0805.358.5180)
CCC Help Chinese Standard (x32 Version: 2010.0805.0357.5180)
CCC Help Chinese Traditional (x32 Version: 2010.0805.0357.5180)
CCC Help Czech (x32 Version: 2010.0805.0357.5180)
CCC Help Danish (x32 Version: 2010.0805.0357.5180)
CCC Help Dutch (x32 Version: 2010.0805.0357.5180)
CCC Help English (x32 Version: 2010.0805.0357.5180)
CCC Help Finnish (x32 Version: 2010.0805.0357.5180)
CCC Help French (x32 Version: 2010.0805.0357.5180)
CCC Help German (x32 Version: 2010.0805.0357.5180)
CCC Help Greek (x32 Version: 2010.0805.0357.5180)
CCC Help Hungarian (x32 Version: 2010.0805.0357.5180)
CCC Help Italian (x32 Version: 2010.0805.0357.5180)
CCC Help Japanese (x32 Version: 2010.0805.0357.5180)
CCC Help Korean (x32 Version: 2010.0805.0357.5180)
CCC Help Norwegian (x32 Version: 2010.0805.0357.5180)
CCC Help Polish (x32 Version: 2010.0805.0357.5180)
CCC Help Portuguese (x32 Version: 2010.0805.0357.5180)
CCC Help Russian (x32 Version: 2010.0805.0357.5180)
CCC Help Spanish (x32 Version: 2010.0805.0357.5180)
CCC Help Swedish (x32 Version: 2010.0805.0357.5180)
CCC Help Thai (x32 Version: 2010.0805.0357.5180)
CCC Help Turkish (x32 Version: 2010.0805.0357.5180)
ccc-core-static (x32 Version: 2010.0805.358.5180)
ccc-utility64 (Version: 2010.0805.358.5180)
CCleaner (Version: 4.04)
Corel Home Office - CS Templates (x32 Version: 5.6.5)
Corel Home Office - CT Templates (x32 Version: 5.6.5)
Corel Home Office - IPM (x32 Version: 5.6.5)
Corel Home Office - JP Templates (x32 Version: 5.6.5)
Corel Home Office - KR Templates (x32 Version: 5.6.5)
Corel Home Office - Launcher (x32 Version: 5.6.5)
Corel Home Office - Templates RU (x32 Version: 5.6.5)
Corel Home Office - Templates1 (x32 Version: 5.6.5)
Corel Home Office (x32 Version: 5.0.87.621)
Corel Home Office (x32 Version: 5.6.5)
DAEMON Tools Lite (x32 Version: 4.47.1.0333)
Dragon NaturallySpeaking 12 (x32 Version: 12.50.000)
Efficient Sticky Notes 3.0 (x32)
ESET Online Scanner v3 (x32)
eyeQ (x32)
Formosus Graecus 2011 (x32)
Gubernator (x32 Version: 3.5.1.21)
HP Customer Experience Enhancements (x32 Version: 6.0.1.7)
HP Documentation (x32 Version: 1.5.0.0)
HP ESU for Microsoft Windows 7 (x32 Version: 1.1.6.1)
HP HotKey Support (Version: 3.5.15.1)
HP Setup (x32 Version: 8.5.4371.3505)
HP SoftPaq Download Manager (x32 Version: 3.0.5.0)
HP Software Framework (x32 Version: 4.0.51.1)
HP Software Setup (x32 Version: 7.0.1.6)
HP Support Assistant (x32 Version: 5.0.14.2)
HP Web Camera (Version: 1.0.0)
HP Webcam (x32 Version: 1.0.19.6)
HP Webcam Driver (x32 Version: 6.1.7600.0049)
HP Wireless Assistant (Version: 4.0.6.0)
HPAsset component for HP Active Support Library (x32 Version: 3.0.2.2)
IDT Audio (x32 Version: 1.0.6275.0)
iTunes (Version: 11.1.0.126)
Java 7 Update 40 (x32 Version: 7.0.400)
Java Auto Updater (x32 Version: 2.1.9.8)
Langenscheidt Grammatiktrainer 6.0 Italienisch (x32 Version: 01.00.00.00)
LANGMaster eduExplorer (x32)
LightScribe System Software (x32 Version: 1.18.12.1)
lingDIALOG (x32 Version: 3.0908)
Lollipop (HKCU)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319)
Microsoft Office 2010 (x32 Version: 14.0.4763.1000)
Microsoft Silverlight (x32 Version: 4.0.50401.0)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.56336)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161)
Mozilla Firefox 23.0.1 (x86 de) (x32 Version: 23.0.1)
Mozilla Maintenance Service (x32 Version: 23.0.1)
MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0)
MSXML 4.0 SP2 Parser and SDK (x32 Version: 4.20.9818.0)
Norton Online Backup (x32 Version: 2.0.0.34)
OpenOffice 4.0.0 (x32 Version: 4.00.9702)
PDF Complete Special Edition (x32 Version: 3.5.117)
phase-6 2.3.3 (x32 Version: 2.3.3)
Realtek Ethernet Controller All-In-One Windows Driver (x32 Version: 1.12.0011)
Skype™ 6.7 (x32 Version: 6.7.102)
Spotify (HKCU Version: 0.9.4.169.gc0399df6)
Spybot - Search & Destroy (x32 Version: 2.1.21)
Synaptics Pointing Device Driver (Version: 15.0.10.0)
TUGZip 3.5 (x32)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2468871) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2600217) (x32 Version: 1)
VLC media player 2.0.8 (x32 Version: 2.0.8)
Windows 7 Default Setting (x32 Version: 1.0.1.7)
Windows Live ID Sign-in Assistant (Version: 6.500.3165.0)
Windows Utils (x32)
WinRAR 5.00 (32-Bit) (x32 Version: 5.00.0)
==================== Restore Points =========================
19-09-2013 06:04:36 Windows Update
20-09-2013 05:06:49 Windows Update
20-09-2013 17:18:35 Windows Update
20-09-2013 20:17:29 Windows Update
21-09-2013 16:42:30 Windows Update
22-09-2013 18:36:18 Gubernator wird installiert
23-09-2013 09:03:59 Windows Update
23-09-2013 22:40:09 Windows Update
24-09-2013 11:30:15 Installed Java 7 Update 40
24-09-2013 14:04:19 Removed Doomi
24-09-2013 14:05:57 Removed Energy Star Digital Logo
==================== Hosts content: ==========================
2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {19BFF5F5-F2DD-4A1B-8AC2-DB11D901ECBB} - System32\Tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTask => C:\Windows\system32\Wat\WatAdminSvc.exe [2013-08-01] (Microsoft Corporation)
Task: {270743F3-38D0-47EC-AF96-A7D99CBD2103} - System32\Tasks\HPCeeScheduleForLumen => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-14] (Hewlett-Packard)
Task: {31B4F2FD-03B2-4E57-88DB-93F2A58807BB} - System32\Tasks\Registration => C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [2010-09-07] ()
Task: {50B7317A-1DCE-44B0-954A-DFE5DBF7B6E0} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2010-07-01] (Hewlett-Packard Company)
Task: {6414D8EB-58BC-40DF-8D3A-505145620AF0} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {79DFB233-304D-4DC1-8E1E-9D719CD58AB9} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HPSAObjUtilTask => C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\UtilTask.exe [2013-09-17] (Microsoft)
Task: {8DA0D896-2F33-42B9-86B1-2390DDAB6028} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Tuneup => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2010-07-01] (Hewlett-Packard Company)
Task: {AB1BB49C-2762-4709-AD47-A2AFBCDC38F9} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe
Task: {AC865678-4448-4BA6-A564-59ACB113865E} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe
Task: {E0AC2427-CB26-49A3-AAFF-0443D3BE7748} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2013-05-09] (AVAST Software)
Task: {E6090D6E-7AFB-4F66-9EC1-D5685D6B3BA2} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-07-22] (Piriform Ltd)
Task: {E9571EC5-8E90-4495-80A4-1342878433C9} - System32\Tasks\Microsoft\Windows\MUI\Lpksetup => C:\windows\System32\lpksetup.exe [2010-11-20] (Microsoft Corporation)
Task: {EC776B10-F7E3-43AE-8AD9-7A4976D9DC49} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-09-11] (Adobe Systems Incorporated)
Task: {FAE79293-9F52-463D-8386-97C90CEB7E30} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\HPCeeScheduleForLumen.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Loaded Modules (whitelisted) =============
2013-07-21 23:55 - 2010-03-17 14:48 - 00644608 ____N (IDT, Inc.) C:\windows\system32\stapi64.dll
2010-12-09 01:04 - 2010-12-09 01:04 - 00067128 _____ (Hewlett-Packard Development Company L.P.) C:\windows\assembly\GAC_MSIL\CaslShared\3.5.1.1__9c6f83d5b7f3d097\CaslShared.dll
2010-12-09 01:04 - 2010-12-09 01:04 - 00086072 _____ (Hewlett-Packard Development Company L.P.) C:\windows\assembly\GAC_MSIL\hpcasl\3.5.1.1__9c6f83d5b7f3d097\hpcasl.dll
2010-07-13 01:47 - 2010-07-13 01:47 - 00015416 _____ ( ) C:\Program Files (x86)\Hewlett-Packard\Shared\Interop.HPQWMIEXLib.dll
2009-01-20 22:51 - 2009-01-20 22:51 - 00007168 _____ ( ) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atixclib.dll
2010-04-13 01:59 - 2010-04-13 01:59 - 00098304 ____R () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Branding\Branding.dll
2010-08-05 12:57 - 2010-08-05 12:57 - 00270336 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll
2010-04-05 21:11 - 2010-04-05 21:11 - 00030264 _____ () C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_LogicLayer.dll
2010-04-05 21:12 - 2010-04-05 21:12 - 00052280 _____ () C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HardwareAccess.dll
2010-04-05 21:12 - 2010-04-05 21:12 - 00028216 _____ (Root-Project) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\LocalizeExtension.dll
2010-12-09 00:54 - 2010-12-09 00:54 - 00237112 _____ (Hewlett-Packard Development Company, L.P.) C:\windows\assembly\GAC_MSIL\hpCASLLibrary\3.0.1.1__67b8d1b5179ba5f8\hpCASLLibrary.dll
2010-04-05 21:12 - 2010-04-05 21:12 - 00267832 _____ () C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPCommon.XmlSerializers.dll
2013-09-13 08:31 - 2013-08-02 03:51 - 01292192 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll
2013-09-13 08:31 - 2013-08-02 03:50 - 01114112 _____ (Microsoft Corporation) C:\windows\syswow64\KERNEL32.dll
2013-09-13 08:31 - 2013-08-02 03:50 - 00274944 _____ (Microsoft Corporation) C:\windows\syswow64\KERNELBASE.dll
2010-02-22 21:19 - 2010-02-22 21:19 - 02121728 _____ () C:\Program Files (x86)\Common Files\LightScribe\QtCore4.dll
2013-07-25 11:45 - 2010-11-20 14:08 - 00833024 _____ (Microsoft Corporation) C:\windows\syswow64\USER32.dll
2013-07-25 11:44 - 2010-11-20 14:08 - 00311296 _____ (Microsoft Corporation) C:\windows\syswow64\GDI32.dll
2009-07-14 01:25 - 2009-07-14 03:11 - 00025600 _____ (Microsoft Corporation) C:\windows\syswow64\LPK.dll
2013-07-22 17:32 - 2012-11-22 06:45 - 00626688 _____ (Microsoft Corporation) C:\windows\syswow64\USP10.dll
2013-07-22 17:25 - 2011-12-16 09:52 - 00690688 _____ (Microsoft Corporation) C:\windows\syswow64\msvcrt.dll
2013-07-25 11:45 - 2010-11-20 14:18 - 00640512 _____ (Microsoft Corporation) C:\windows\syswow64\ADVAPI32.dll
2009-07-14 01:11 - 2009-07-14 03:16 - 00092160 _____ (Microsoft Corporation) C:\windows\SysWOW64\sechost.dll
2013-08-15 16:14 - 2013-07-09 06:52 - 00663552 _____ (Microsoft Corporation) C:\windows\syswow64\RPCRT4.dll
2013-07-22 17:34 - 2012-06-02 06:34 - 00096768 _____ (Microsoft Corporation) C:\windows\syswow64\SspiCli.dll
2009-07-14 01:12 - 2009-07-14 03:15 - 00036864 _____ (Microsoft Corporation) C:\windows\syswow64\CRYPTBASE.dll
2013-07-25 11:45 - 2010-11-20 14:20 - 01414144 _____ (Microsoft Corporation) C:\windows\syswow64\ole32.dll
2013-07-25 11:44 - 2010-11-20 14:21 - 00206848 _____ (Microsoft Corporation) C:\windows\syswow64\WS2_32.dll
2009-07-14 01:12 - 2009-07-14 03:16 - 00008704 _____ (Microsoft Corporation) C:\windows\syswow64\NSI.dll
2010-02-22 21:19 - 2010-02-22 21:19 - 07745536 _____ () C:\Program Files (x86)\Common Files\LightScribe\QtGui4.dll
2013-07-25 11:45 - 2010-11-20 14:18 - 00485888 _____ (Microsoft Corporation) C:\windows\syswow64\comdlg32.dll
2013-07-25 11:45 - 2010-11-20 14:21 - 00350208 _____ (Microsoft Corporation) C:\windows\syswow64\SHLWAPI.dll
2013-09-13 08:30 - 2013-07-26 03:55 - 12872704 _____ (Microsoft Corporation) C:\windows\syswow64\SHELL32.dll
2013-07-22 17:25 - 2011-08-27 06:26 - 00571904 _____ (Microsoft Corporation) C:\windows\syswow64\OLEAUT32.dll
2013-07-25 11:42 - 2010-11-20 14:08 - 00119808 _____ (Microsoft Corporation) C:\windows\syswow64\IMM32.dll
2009-07-14 01:28 - 2009-07-14 03:15 - 00828928 _____ (Microsoft Corporation) C:\windows\syswow64\MSCTF.dll
2010-02-22 21:19 - 2010-02-22 21:19 - 00135168 _____ () C:\Program Files (x86)\Common Files\LightScribe\plugins\imageformats\qjpeg4.dll
2013-08-15 16:14 - 2013-07-09 06:46 - 01166848 _____ (Microsoft Corporation) C:\windows\syswow64\CRYPT32.dll
2013-07-25 11:44 - 2010-11-20 14:19 - 00034304 _____ (Microsoft Corporation) C:\windows\syswow64\MSASN1.dll
2013-09-13 19:29 - 2013-08-10 05:59 - 01767936 _____ (Microsoft Corporation) C:\windows\syswow64\WININET.dll
2009-07-14 01:15 - 2009-07-14 03:09 - 00002048 _____ (Microsoft Corporation) C:\windows\syswow64\normaliz.DLL
2013-09-13 19:29 - 2013-08-10 05:58 - 02048000 _____ (Microsoft Corporation) C:\windows\syswow64\iertutil.dll
2013-07-22 17:34 - 2012-06-02 06:34 - 00096768 _____ (Microsoft Corporation) C:\windows\syswow64\SSPICLI.DLL
2013-07-25 11:45 - 2010-11-20 14:18 - 00485888 _____ (Microsoft Corporation) C:\windows\syswow64\COMDLG32.dll
2013-09-13 19:29 - 2013-08-10 05:59 - 01141248 _____ (Microsoft Corporation) C:\windows\syswow64\urlmon.dll
2009-07-14 01:44 - 2009-07-14 03:15 - 00522240 _____ (Microsoft Corporation) C:\windows\syswow64\CLBCatQ.DLL
2013-07-25 11:45 - 2010-11-20 14:21 - 01667584 _____ (Microsoft Corporation) C:\windows\syswow64\SETUPAPI.dll
2013-07-22 17:26 - 2011-05-24 12:39 - 00145920 _____ (Microsoft Corporation) C:\windows\syswow64\CFGMGR32.dll
2013-07-22 17:26 - 2011-05-24 12:40 - 00064512 _____ (Microsoft Corporation) C:\windows\syswow64\DEVOBJ.dll
2013-07-25 11:45 - 2010-11-20 14:21 - 00269824 _____ (Microsoft Corporation) C:\windows\syswow64\WLDAP32.dll
2009-07-14 01:15 - 2009-07-14 03:16 - 00006144 _____ (Microsoft Corporation) C:\windows\syswow64\PSAPI.DLL
2013-09-13 08:31 - 2013-08-02 03:50 - 01114112 _____ (Microsoft Corporation) C:\windows\syswow64\kernel32.dll
2013-07-25 11:45 - 2010-11-20 14:21 - 00350208 _____ (Microsoft Corporation) C:\windows\syswow64\shlwapi.DLL
2013-08-15 16:14 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\windows\syswow64\WINTRUST.dll
2013-07-25 11:45 - 2010-11-20 14:08 - 00833024 _____ (Microsoft Corporation) C:\windows\syswow64\user32.dll
2013-07-22 17:25 - 2011-08-27 06:26 - 00571904 _____ (Microsoft Corporation) C:\windows\syswow64\oleaut32.dll
2013-07-25 11:42 - 2010-11-20 14:08 - 00119808 _____ (Microsoft Corporation) C:\windows\syswow64\imm32.dll
2013-09-13 08:30 - 2013-07-26 03:55 - 12872704 _____ (Microsoft Corporation) C:\windows\syswow64\shell32.dll
2013-09-13 19:29 - 2013-08-10 05:59 - 01767936 _____ (Microsoft Corporation) C:\windows\syswow64\wininet.dll
2013-09-11 16:10 - 2011-02-01 08:22 - 02777088 _____ (Firebird Project) C:\Program Files (x86)\Efficient Sticky Notes\gds32.dll
2013-09-13 19:29 - 2013-08-10 05:58 - 14332928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-09-13 19:29 - 2013-08-10 05:58 - 02876928 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2013-08-15 16:14 - 2013-07-09 06:46 - 01166848 _____ (Microsoft Corporation) C:\windows\syswow64\crypt32.dll
2013-08-15 16:14 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\windows\syswow64\wintrust.dll
2009-07-14 01:15 - 2009-07-14 03:16 - 00006144 _____ (Microsoft Corporation) C:\windows\syswow64\psapi.dll
2013-07-25 11:44 - 2010-11-20 14:21 - 00206848 _____ (Microsoft Corporation) C:\windows\syswow64\ws2_32.dll
2013-07-23 10:25 - 2012-03-01 07:33 - 00159232 _____ (Microsoft Corporation) C:\windows\syswow64\IMAGEHLP.DLL
2013-09-04 15:11 - 2013-05-16 10:55 - 00113496 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl
2013-09-04 15:11 - 2013-05-16 10:55 - 03643800 _____ (Project JEDI) C:\Program Files (x86)\Spybot - Search & Destroy 2\Jcl150.bpl
2013-09-04 15:11 - 2013-05-16 10:55 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl
2009-07-14 01:33 - 2009-07-14 03:17 - 00249680 _____ (Microsoft Corporation) C:\windows\SysWOW64\bcryptprimitives.dll
2013-09-13 19:29 - 2013-08-10 05:58 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-04-21 21:44 - 2013-04-21 21:44 - 00053648 _____ (Open Source Software community project) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\pthreadVC2.dll
2013-04-21 21:44 - 2013-04-21 21:44 - 00087952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2013-04-21 21:44 - 2013-04-21 21:44 - 01242952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2013-07-22 17:34 - 2012-06-02 06:40 - 00225280 _____ (Microsoft Corporation) C:\windows\SysWOW64\schannel.dll
2013-07-11 13:33 - 2013-07-11 13:33 - 00988160 _____ () C:\Program Files (x86)\OpenOffice 4\program\libxml2.dll
2013-07-10 22:08 - 2013-07-10 22:08 - 00180224 _____ (The cURL library, hxxp://curl.haxx.se/) C:\Program Files (x86)\OpenOffice 4\program\libcurl.dll
2013-07-10 22:08 - 2013-07-10 22:08 - 00170496 _____ () C:\Program Files (x86)\OpenOffice 4\program\libxslt.dll
2013-09-08 11:19 - 2013-08-14 19:55 - 03551640 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
2013-09-13 19:29 - 2013-08-10 05:59 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-09-11 18:31 - 2013-09-11 18:31 - 16177544 _____ () C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_168.dll
2013-07-25 11:45 - 2010-11-20 14:08 - 00833024 _____ (Microsoft Corporation) C:\windows\syswow64\user32.DLL
==================== Alternate Data Streams (whitelisted) =========
AlternateDataStreams: C:\ProgramData\TEMP:0FF263E8
==================== Safe Mode (whitelisted) ===================
==================== Faulty Device Manager Devices =============
Name: Bluetooth-Peripheriegerät
Description: Bluetooth-Peripheriegerät
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Bluetooth-Peripheriegerät
Description: Bluetooth-Peripheriegerät
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Bluetooth-Peripheriegerät
Description: Bluetooth-Peripheriegerät
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (09/24/2013 00:41:04 AM) (Source: MsiInstaller) (User: NT-AUTORITÄT)
Description: Product: MSXML 4.0 SP2 (KB973688) -- Error 1935. An error occured during the installation of assembly component {7B2B4EA5-1028-B7E6-A06B-D6B9ABF34537}. HRESULT: 0x80070BC9. assembly interface: IAssemblyCacheItem, function: Commit, assembly name: Microsoft.MSXML2,type="win32",version="4.20.9876.0",publicKeyToken="6bd6b9abf345378f",processorArchitecture="x86"
Error: (09/23/2013 09:35:58 PM) (Source: MsiInstaller) (User: Lumen-HP)
Description: Produkt: Gubernator -- Fehler 1706. Für das Produkt Gubernator wurde kein gültiger Quellcode gefunden. Windows Installer kann nicht fortfahren.
Error: (09/23/2013 11:05:47 AM) (Source: MsiInstaller) (User: NT-AUTORITÄT)
Description: Product: MSXML 4.0 SP2 (KB973688) -- Error 1935. An error occured during the installation of assembly component {7B2B4EA5-1028-B7E6-A06B-D6B9ABF34537}. HRESULT: 0x80070BC9. assembly interface: IAssemblyCacheItem, function: Commit, assembly name: Microsoft.MSXML2,type="win32",version="4.20.9876.0",publicKeyToken="6bd6b9abf345378f",processorArchitecture="x86"
Error: (09/22/2013 09:09:41 PM) (Source: Windows Backup) (User: )
Description: Die Sicherung war nicht erfolgreich. Fehler: "Fehler beim Bestimmen des Bibliothekenspeicherorts eines der in die Scherung eingeschlossenen Benutzer durch die Windows-Sicherung. (0x81000031)"
Error: (09/21/2013 06:43:20 PM) (Source: MsiInstaller) (User: NT-AUTORITÄT)
Description: Product: MSXML 4.0 SP2 (KB973688) -- Error 1935. An error occured during the installation of assembly component {7B2B4EA5-1028-B7E6-A06B-D6B9ABF34537}. HRESULT: 0x80070BC9. assembly interface: IAssemblyCacheItem, function: Commit, assembly name: Microsoft.MSXML2,type="win32",version="4.20.9876.0",publicKeyToken="6bd6b9abf345378f",processorArchitecture="x86"
Error: (09/21/2013 05:56:44 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 2247
Error: (09/21/2013 05:56:44 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 2247
Error: (09/21/2013 05:56:44 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (09/21/2013 11:44:36 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 8705
Error: (09/21/2013 11:44:36 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 8705
System errors:
=============
Error: (09/24/2013 04:43:00 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Spybot-S&D 2 Scanner Service" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (09/24/2013 04:43:00 PM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Spybot-S&D 2 Scanner Service erreicht.
Error: (09/24/2013 04:40:20 PM) (Source: DCOM) (User: )
Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF}
Error: (09/24/2013 09:01:40 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070002 fehlgeschlagen: Update für Windows 7 für x64-basierte Systeme (KB2853952)
Error: (09/24/2013 00:41:06 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Update für Microsoft XML Core Services 4.0 Service Pack 2 für x64-basierte Systeme (KB973688)
Error: (09/24/2013 00:40:27 AM) (Source: DCOM) (User: )
Description: {995C996E-D918-4A8C-A302-45719A6F4EA7}
Error: (09/24/2013 00:39:39 AM) (Source: DCOM) (User: )
Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF}
Error: (09/23/2013 09:42:01 PM) (Source: bowser) (User: )
Description: Der Hauptsuchdienst erhielt eine Serverankündigung vom Computer "ENRICOIIIREBORN",
der der Hauptsuchdienst der Domäne für den NetBT_Tcpip_{2BDB74F2-D059-42C1-8D78-472BE2266B51}-Transport zu sein scheint.
Der Hauptsuchdienst wurde beendet oder es wird eine Auswahl erzwungen.
Error: (09/23/2013 08:04:08 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Apple Mobile Device" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 60000 Millisekunden durchgeführt: Neustart des Diensts.
Error: (09/23/2013 07:18:09 PM) (Source: bowser) (User: )
Description: Der Hauptsuchdienst erhielt eine Serverankündigung vom Computer "ENRICOIIIREBORN",
der der Hauptsuchdienst der Domäne für den NetBT_Tcpip_{2BDB74F2-D059-42C1-8D78-472BE2266B51}-Transport zu sein scheint.
Der Hauptsuchdienst wurde beendet oder es wird eine Auswahl erzwungen.
Microsoft Office Sessions:
=========================
Error: (09/24/2013 00:41:04 AM) (Source: MsiInstaller)(User: NT-AUTORITÄT)
Description: Product: MSXML 4.0 SP2 (KB973688) -- Error 1935. An error occured during the installation of assembly component {7B2B4EA5-1028-B7E6-A06B-D6B9ABF34537}. HRESULT: 0x80070BC9. assembly interface: IAssemblyCacheItem, function: Commit, assembly name: Microsoft.MSXML2,type="win32",version="4.20.9876.0",publicKeyToken="6bd6b9abf345378f",processorArchitecture="x86"(NULL)(NULL)(NULL)(NULL)(NULL)
Error: (09/23/2013 09:35:58 PM) (Source: MsiInstaller)(User: Lumen-HP)
Description: Produkt: Gubernator -- Fehler 1706. Für das Produkt Gubernator wurde kein gültiger Quellcode gefunden. Windows Installer kann nicht fortfahren.(NULL)(NULL)(NULL)(NULL)(NULL)
Error: (09/23/2013 11:05:47 AM) (Source: MsiInstaller)(User: NT-AUTORITÄT)
Description: Product: MSXML 4.0 SP2 (KB973688) -- Error 1935. An error occured during the installation of assembly component {7B2B4EA5-1028-B7E6-A06B-D6B9ABF34537}. HRESULT: 0x80070BC9. assembly interface: IAssemblyCacheItem, function: Commit, assembly name: Microsoft.MSXML2,type="win32",version="4.20.9876.0",publicKeyToken="6bd6b9abf345378f",processorArchitecture="x86"(NULL)(NULL)(NULL)(NULL)(NULL)
Error: (09/22/2013 09:09:41 PM) (Source: Windows Backup)(User: )
Description: Fehler beim Bestimmen des Bibliothekenspeicherorts eines der in die Scherung eingeschlossenen Benutzer durch die Windows-Sicherung. (0x81000031)
Error: (09/21/2013 06:43:20 PM) (Source: MsiInstaller)(User: NT-AUTORITÄT)
Description: Product: MSXML 4.0 SP2 (KB973688) -- Error 1935. An error occured during the installation of assembly component {7B2B4EA5-1028-B7E6-A06B-D6B9ABF34537}. HRESULT: 0x80070BC9. assembly interface: IAssemblyCacheItem, function: Commit, assembly name: Microsoft.MSXML2,type="win32",version="4.20.9876.0",publicKeyToken="6bd6b9abf345378f",processorArchitecture="x86"(NULL)(NULL)(NULL)(NULL)(NULL)
Error: (09/21/2013 05:56:44 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 2247
Error: (09/21/2013 05:56:44 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 2247
Error: (09/21/2013 05:56:44 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (09/21/2013 11:44:36 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 8705
Error: (09/21/2013 11:44:36 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 8705
==================== Memory info ===========================
Percentage of memory in use: 48%
Total physical RAM: 3833.56 MB
Available physical RAM: 1964.17 MB
Total Pagefile: 7665.31 MB
Available Pagefile: 5386.96 MB
Total Virtual: 8192 MB
Available Virtual: 8191.81 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:280.79 GB) (Free:210.31 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive e: (HP_TOOLS) (Fixed) (Total:1.99 GB) (Free:0.02 GB) FAT32
Drive g: () (Removable) (Total:0.92 GB) (Free:0.74 GB) FAT
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298 GB) (Disk ID: 01A1A129)
Partition 1: (Active) - (Size=300 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=281 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=15 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=2 GB) - (Type=0C)
========================================================
Disk: 1 (Size: 945 MB) (Disk ID: 00000000)
Partition 1: (Not Active) - (Size=945 MB) - (Type=06)
==================== End Of Log ============================
|