sorry das es so lange gedauert hat, da ist es.
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 10-11-2013 01
Ran by Julia (administrator) on PC-JULIA on 12-11-2013 18:55:36
Running from C:\Users\Julia\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\windows\system32\nvvsvc.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Diskeeper Corporation) C:\Program Files\Diskeeper Corporation\ExpressCache\ExpressCache.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
() C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\windows\SysWOW64\irstrtsv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\FrameworkService.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\VsTskMgr.exe
(McAfee, Inc.) C:\windows\system32\mfevtps.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\mfeann.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
() C:\Program Files (x86)\Samsung\Easy Settings\SamsungDeviceConfiguration.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
(Microsoft Corporation) C:\windows\system32\WLANExt.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\naPrdMgr.exe
(Enigma Software Group USA, LLC.) C:\Program Files\Enigma Software Group\SpyHunter\Spyhunter4.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(DT Soft Ltd) C:\Program Files (x86)\DAEMON Tools Lite\daemon.exe
(Acresso Corporation) C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe
(Audible, Inc.) C:\Program Files (x86)\Audible\Bin\AudibleDownloadHelper.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.130\SSScheduler.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\UdaterUI.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\McTray.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PDF Viewer Plus\pdfPro5Hook.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\BrYNSvc.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\SHSTAT.EXE
(Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe
(Samsung Electronics CO., LTD.) C:\Program Files (x86)\Samsung\Easy Software Manager\SWMAgent.exe
(Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Easy Settings\dmhkcore.exe
(Samsung Electronics) C:\Program Files (x86)\Samsung\Easy Settings\EasySpeedUpManager.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Easy Settings\SmartSetting.exe
(CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Easy Settings\MovieColorEnhancer.exe
(Intel Corporation) C:\windows\system32\igfxext.exe
(Intel Corporation) C:\windows\system32\igfxsrvc.exe
(Samsung Electronics CO., LTD.) C:\Program Files\Samsung\Easy Support Center\SamoyedAgent.exe
(SEC) C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\WCScheduler.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\Media+Player10\Media+Player10Serv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\BleServicesCtrl.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Intel Corporation) C:\windows\system32\hkcmd.exe
(Intel Corporation) C:\windows\system32\igfxtray.exe
(Intel Corporation) C:\windows\system32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe [500208 2010-03-06] (Adobe Systems Incorporated)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\daemon.exe [691656 2009-04-23] (DT Soft Ltd)
HKCU\...\Run: [ISUSPM] - C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [222496 2009-05-05] (Acresso Corporation)
HKLM-x32\...\Run: [McAfeeUpdaterUI] - C:\Program Files (x86)\McAfee\Common Framework\UdaterUI.exe [333376 2011-11-15] (McAfee, Inc.)
HKLM-x32\...\Run: [ShStatEXE] - C:\Program Files (x86)\McAfee\VirusScan Enterprise\shstat.exe [215656 2012-08-14] (McAfee, Inc.)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM-x32\...\Run: [AdobeCS5ServiceManager] - C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SwitchBoard] - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-10-23] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [IndexSearch] - C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe [46368 2010-03-09] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PaperPort PTD] - C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe [29984 2010-03-09] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PPort12reminder] - C:\ProgramData\ScanSoft\PaperPort\12\Config\Ereg\Ereg.ini [319 2013-11-11] ()
HKLM-x32\...\Run: [PDFHook] - C:\Program Files (x86)\Nuance\PDF Viewer Plus\pdfPro5Hook.exe [636192 2010-03-05] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PDF5 Registry Controller] - C:\Program Files (x86)\Nuance\PDF Viewer Plus\RegistryController.exe [62752 2010-03-05] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [ControlCenter4] - C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [143360 2012-09-06] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [BrStsMon00] - C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [3076096 2012-06-06] (Brother Industries, Ltd.)
AppInit_DLLs: C:\Windows\System32\nvinitx.dll [260928 2012-02-25] (NVIDIA Corporation)
AppInit_DLLs-x32: c:\Windows\SysWOW64\nvinit.dll [215360 2012-02-25] (NVIDIA Corporation)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Sign In
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Google
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20120926181436.dll (McAfee, Inc.)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: ContributeBHO Class - {074C1DC5-9320-4A9A-947D-C042949C6216} - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll (Adobe Systems, Inc.)
BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.130\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO-x32: PlusIEEventHelper Class - {551A852F-39A6-44A7-9C13-AFBEC9185A9D} - C:\Program Files (x86)\Nuance\PDF Viewer Plus\bin\PlusIEContextMenu.dll (Zeon Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20120926181436.dll (McAfee, Inc.)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM-x32 - Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll (Adobe Systems, Inc.)
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Tcpip\Parameters: [DhcpNameServer] 172.16.39.2
FireFox:
========
FF ProfilePath: C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\dkyjasyh.default
FF Homepage: hxxp://www.google.de/
FF Plugin: @adobe.com/FlashPlayer - C:\windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @mcafee.com/McAfeeMssPlugin - C:\Program Files\McAfee Security Scan\3.8.130\npMcAfeeMss.dll (McAfee, Inc.)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5 - C:\ProgramData\Visan\plugins\npRLSecurePluginLayer.dll (RocketLife, LLP)
FF Plugin-x32: @videolan.org/vlc,version=2.0.5 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: FreeHDSport.TV - C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\dkyjasyh.default\Extensions\freehdsport@freehdsport.tv
FF Extension: Block site - C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\dkyjasyh.default\Extensions\{dd3d7613-0246-469d-bc65-2a3cc1668adc}
FF Extension: adblockpopups - C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\dkyjasyh.default\Extensions\adblockpopups@jessehakanen.net.xpi
FF Extension: noscript - C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\dkyjasyh.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi
FF Extension: No Name - C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\dkyjasyh.default\Extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}.xpi
FF HKLM-x32\...\Firefox\Extensions: [{D19CA586-DD6C-4a0a-96F8-14644F340D60}] - C:\Program Files (x86)\Common Files\McAfee\SystemCore
FF Extension: IDS_SS_NAME - C:\Program Files (x86)\Common Files\McAfee\SystemCore
FF HKLM-x32\...\Firefox\Extensions: [{01A8CA0A-4C96-465b-A49B-65C46FAD54F9}] - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\FirefoxPlugin\{01A8CA0A-4C96-465b-A49B-65C46FAD54F9}
FF Extension: Adobe Contribute Toolbar - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\FirefoxPlugin\{01A8CA0A-4C96-465b-A49B-65C46FAD54F9}
Chrome:
=======
Error reading preferences. Please check "preferences" file for possible corruption. <======= ATTENTION
==================== Services (Whitelisted) =================
R2 ExpressCache; C:\Program Files\Diskeeper Corporation\ExpressCache\ExpressCache.exe [79664 2012-02-11] (Diskeeper Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128280 2012-02-08] ()
R2 irstrtsv; C:\windows\SysWOW64\irstrtsv.exe [193536 2012-02-06] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2012-02-08] (Intel Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 McAfeeFramework; C:\Program Files (x86)\McAfee\Common Framework\FrameworkService.exe [132672 2011-11-15] (McAfee, Inc.)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.130\McCHSvc.exe [288776 2013-09-06] (McAfee, Inc.)
R2 McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [201864 2012-09-26] (McAfee, Inc.)
R2 McTaskManager; C:\Program Files (x86)\McAfee\VirusScan Enterprise\VsTskMgr.exe [210056 2012-08-14] (McAfee, Inc.)
R2 mfevtp; C:\windows\system32\mfevtps.exe [170440 2012-09-26] (McAfee, Inc.)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273168 2011-12-08] ()
R2 PDFProFiltSrvPP; C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe [144672 2010-03-09] (Nuance Communications, Inc.)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [244904 2009-12-01] ()
R2 SamsungDeviceConfigurationWinService; C:\Program Files (x86)\Samsung\Easy Settings\SamsungDeviceConfiguration.exe [31624 2012-02-13] ()
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [594704 2011-12-08] (Intel® Corporation)
S3 GameConsoleService; "C:\Program Files (x86)\WildGames\Game Console - WildGames\GameConsoleService.exe" [x]
==================== Drivers (Whitelisted) ====================
S3 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [482936 2012-01-08] (Symantec Corporation)
S3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [138360 2012-01-08] (Symantec Corporation)
R1 excfs; C:\Windows\System32\DRIVERS\excfs.sys [23344 2012-02-11] (Diskeeper Corporation)
R0 excsd; C:\Windows\System32\DRIVERS\excsd.sys [92976 2012-02-11] (Diskeeper Corporation)
R3 irstrtdv; C:\Windows\System32\DRIVERS\irstrtdv.sys [26504 2012-02-07] (Intel Corporation)
R3 MBAMProtector; C:\windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [160952 2012-09-26] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [274880 2012-09-26] (McAfee, Inc.)
U3 mfeavfk01; No ImagePath
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [665768 2012-09-26] (McAfee, Inc.)
S3 mferkdet; C:\Windows\System32\drivers\mferkdet.sys [101200 2012-09-26] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [303464 2012-09-26] (McAfee, Inc.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [871408 2012-10-17] ()
U3 aw7u865j; C:\Windows\System32\Drivers\aw7u865j.sys [0 ] (Microsoft Corporation)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27648 2011-03-01] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-11-12 18:55 - 2013-11-12 18:55 - 01957590 _____ (Farbar) C:\Users\Julia\Downloads\FRST64.exe
2013-11-12 18:54 - 2013-11-12 18:54 - 01090275 _____ (Farbar) C:\Users\Julia\Downloads\FRST.exe
2013-11-12 08:13 - 2013-11-12 08:13 - 00000000 ___SH C:\DkHyperbootSync
2013-11-08 08:19 - 2013-11-08 08:19 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-11-05 22:38 - 2013-11-05 22:39 - 00262046 _____ C:\windows\msxml4-KB2758694-enu.LOG
2013-11-05 22:30 - 2013-11-05 22:30 - 00891167 _____ C:\Users\Julia\Downloads\SecurityCheck.exe
2013-11-05 22:28 - 2013-11-05 22:28 - 02347384 _____ (ESET) C:\Users\Julia\Downloads\esetsmartinstaller_enu.exe
2013-11-03 20:41 - 2013-11-03 20:41 - 00002068 _____ C:\Users\Julia\Desktop\JRT.txt
2013-11-03 20:30 - 2013-11-03 20:30 - 00000000 ____D C:\windows\ERUNT
2013-11-03 20:29 - 2013-11-03 20:29 - 00007033 _____ C:\Users\Julia\Desktop\AdwCleaner[S0].txt
2013-11-03 20:25 - 2013-11-03 20:25 - 01033335 _____ (Thisisu) C:\Users\Julia\Downloads\JRT.exe
2013-11-03 20:23 - 2013-11-03 20:23 - 00001139 _____ C:\Users\Julia\Desktop\Continue Zip Extractor Installation.lnk
2013-11-03 20:21 - 2013-11-03 20:22 - 00752096 _____ C:\Users\Julia\Downloads\ZipExtractorSetup.exe
2013-11-03 20:11 - 2013-11-03 20:11 - 00000000 ___RD C:\Users\Julia\AppData\Roaming\Brother
2013-11-03 20:06 - 2013-11-03 20:28 - 00000000 ____D C:\AdwCleaner
2013-11-03 20:06 - 2013-11-03 20:05 - 01060070 _____ C:\Users\Julia\Downloads\adwcleaner-3.010.exe
2013-11-03 19:58 - 2013-11-03 19:59 - 00000000 ____D C:\Users\Julia\AppData\Roaming\ControlCenter4
2013-11-03 19:58 - 2013-11-03 19:58 - 00000000 ____D C:\Users\Julia\AppData\Roaming\FLEXnet
2013-11-03 17:47 - 2013-11-03 17:47 - 00002144 _____ C:\Users\Public\Desktop\Brother Creative Center.lnk
2013-11-03 17:46 - 2013-11-03 17:46 - 00000260 _____ C:\windows\Brpfx04a.ini
2013-11-03 17:46 - 2013-11-03 17:46 - 00000064 _____ C:\windows\brpcfx.ini
2013-11-03 17:43 - 2013-11-03 17:44 - 00002944 _____ C:\windows\BRPARAM.INI
2013-11-03 17:41 - 2013-11-03 17:41 - 00000066 _____ C:\windows\Brfaxrx.ini
2013-11-03 17:41 - 2013-11-03 17:41 - 00000000 ____D C:\Users\Public\Documents\BrFaxRx
2013-11-03 17:41 - 2013-11-03 17:41 - 00000000 ____D C:\ProgramData\ControlCenter4
2013-11-03 17:41 - 2013-11-03 17:41 - 00000000 ____D C:\Program Files (x86)\ControlCenter4
2013-11-03 17:41 - 2013-11-03 17:41 - 00000000 ____D C:\Program Files (x86)\Browny02
2013-11-03 17:41 - 2013-11-03 17:41 - 00000000 ____D C:\Brother
2013-11-03 17:41 - 2012-07-31 08:39 - 01439744 _____ (Brother Industries, Ltd.) C:\windows\system32\BrWi209d.dll
2013-11-03 17:41 - 2012-07-05 12:32 - 00084480 ____R (Brother Industries, Ltd.) C:\windows\system32\BrNetSti.dll
2013-11-03 17:41 - 2012-03-19 05:09 - 00316928 ____R (brother) C:\windows\system32\NSSRH64.dll
2013-11-03 17:41 - 2010-09-23 09:14 - 00058880 ____R (Brother Industries,Ltd.) C:\windows\system32\BrWiaNCp.dll
2013-11-03 17:41 - 2010-09-23 09:13 - 00051712 ____R (Brother Industries,Ltd) C:\windows\system32\Brnsplg.dll
2013-11-03 17:41 - 2010-04-01 11:27 - 00278528 _____ (Brother Industries, Ltd.) C:\windows\system32\BrJDec.dll
2013-11-03 17:41 - 2010-03-16 00:04 - 00143360 ____R C:\windows\system32\BrSNMP64.dll
2013-11-03 17:41 - 2009-12-08 16:19 - 00290304 ____N (Brother Industries, Ltd.) C:\windows\system32\BrfxDA5c.dll
2013-11-03 17:41 - 2003-11-28 18:57 - 00000000 _____ C:\windows\brdfxspd.dat
2013-11-03 17:40 - 2013-11-03 17:41 - 00000000 ____D C:\Program Files (x86)\Brother
2013-11-03 17:40 - 2012-09-10 16:31 - 00245760 ____N (brother) C:\windows\SysWOW64\NSSearch.dll
2013-11-03 17:40 - 2012-07-09 17:19 - 00005120 ____N (Brother Industries Ltd.) C:\windows\SysWOW64\BrDctF2S.dll
2013-11-03 17:40 - 2012-06-05 07:59 - 00025299 _____ (Brother Industries, Ltd) C:\windows\SysWOW64\BRLM03A.DLL
2013-11-03 17:40 - 2010-05-20 06:33 - 00103792 _____ (Brother Industries Ltd) C:\windows\SysWOW64\BRRBI100.EXE
2013-11-03 17:40 - 2010-03-15 19:45 - 00073728 ____N (Brother Industries Ltd.) C:\windows\SysWOW64\BrDctF2.dll
2013-11-03 17:40 - 2010-03-15 17:20 - 00050176 _____ (Brother Industries Ltd.) C:\windows\SysWOW64\BRPRTINK.DLL
2013-11-03 17:40 - 2010-02-05 03:42 - 00180224 _____ (Brother Industries, Ltd.) C:\windows\SysWOW64\BROSNMP.DLL
2013-11-03 17:40 - 2007-12-13 22:16 - 00005632 ____N (Brother Industries Ltd.) C:\windows\SysWOW64\BrDctF2L.dll
2013-11-03 17:40 - 2005-01-17 08:10 - 00045056 _____ C:\windows\SysWOW64\BRTCPCON.DLL
2013-11-03 17:40 - 2004-08-09 08:00 - 00000114 _____ C:\windows\SysWOW64\BRLMW03A.INI
2013-11-03 17:40 - 2004-08-09 07:42 - 00077824 _____ (Brother Industries, Ltd.) C:\windows\SysWOW64\BRLMW03A.DLL
2013-11-03 17:28 - 2013-11-03 17:28 - 00000000 ____D C:\Users\Julia\AppData\Roaming\InstallShield
2013-11-03 17:27 - 2013-11-03 17:27 - 00000000 ____D C:\Program Files\Nuance
2013-11-03 17:26 - 2013-11-03 17:26 - 00000000 ____D C:\ProgramData\zeon
2013-11-03 17:25 - 2013-11-03 17:25 - 00000000 ____D C:\Users\Julia\AppData\Roaming\Nuance
2013-11-03 17:25 - 2013-11-03 17:25 - 00000000 ____D C:\ProgramData\ScanSoft
2013-11-03 17:23 - 2013-11-03 20:02 - 00000000 ____D C:\ProgramData\Nuance
2013-11-03 17:23 - 2013-11-03 17:26 - 00000000 ____D C:\Program Files (x86)\Nuance
2013-11-03 17:23 - 2013-11-03 17:23 - 00000000 ____D C:\Users\Julia\Documents\MeineWebSeiten
2013-11-03 17:23 - 2013-11-03 17:23 - 00000000 ____D C:\ProgramData\FLEXnet
2013-11-03 17:20 - 2013-11-03 17:20 - 00000000 ____D C:\Program Files (x86)\MSXML 4.0
2013-11-03 17:19 - 2013-11-03 17:43 - 00000000 ____D C:\ProgramData\Brother
2013-11-01 21:58 - 2013-11-01 21:58 - 00025662 _____ C:\ComboFix.txt
2013-11-01 21:46 - 2011-06-26 07:45 - 00256000 _____ C:\windows\PEV.exe
2013-11-01 21:46 - 2010-11-07 18:20 - 00208896 _____ C:\windows\MBR.exe
2013-11-01 21:46 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\windows\NIRCMD.exe
2013-11-01 21:46 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\windows\SWREG.exe
2013-11-01 21:46 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\windows\SWSC.exe
2013-11-01 21:46 - 2000-08-31 01:00 - 00098816 _____ C:\windows\sed.exe
2013-11-01 21:46 - 2000-08-31 01:00 - 00080412 _____ C:\windows\grep.exe
2013-11-01 21:46 - 2000-08-31 01:00 - 00068096 _____ C:\windows\zip.exe
2013-11-01 21:45 - 2013-11-01 21:59 - 00000000 ____D C:\Qoobox
2013-11-01 21:45 - 2013-11-01 21:57 - 00000000 ____D C:\windows\erdnt
2013-11-01 21:44 - 2013-11-01 21:44 - 05143186 ____R (Swearware) C:\Users\Julia\Downloads\ComboFix.exe
2013-11-01 17:48 - 2013-11-01 17:48 - 00009216 ___SH C:\Users\Julia\Documents\Thumbs.db
2013-11-01 07:11 - 2013-11-01 07:12 - 00026965 _____ C:\Users\Julia\Downloads\Addition.txt
2013-11-01 07:09 - 2013-11-01 07:09 - 00000000 ____D C:\FRST
2013-11-01 06:57 - 2013-11-11 08:44 - 00000728 _____ C:\windows\setupact.log
2013-11-01 06:57 - 2013-11-03 19:58 - 00006286 _____ C:\windows\PFRO.log
2013-11-01 06:57 - 2013-11-01 06:57 - 00000000 _____ C:\windows\setuperr.log
2013-10-31 22:14 - 2013-10-31 22:14 - 00000000 ____D C:\ProgramData\Oracle
2013-10-31 22:13 - 2013-10-31 22:13 - 00096168 _____ (Oracle Corporation) C:\windows\SysWOW64\WindowsAccessBridge-32.dll
2013-10-31 22:13 - 2013-10-31 22:12 - 00264616 _____ (Oracle Corporation) C:\windows\SysWOW64\javaws.exe
2013-10-31 22:13 - 2013-10-31 22:12 - 00175016 _____ (Oracle Corporation) C:\windows\SysWOW64\javaw.exe
2013-10-31 22:13 - 2013-10-31 22:12 - 00174504 _____ (Oracle Corporation) C:\windows\SysWOW64\java.exe
2013-10-31 22:12 - 2013-10-31 22:12 - 00000000 ____D C:\Program Files (x86)\Java
2013-10-31 22:11 - 2013-10-31 22:10 - 00915368 _____ (Oracle Corporation) C:\Users\Julia\Downloads\jxpiinstall.exe
2013-10-31 21:18 - 2013-10-31 21:18 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Julia\Downloads\mbam-setup-1.75.0.1300.exe
2013-10-31 21:18 - 2013-10-31 21:18 - 00001113 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-10-31 21:18 - 2013-10-31 21:18 - 00000000 ____D C:\Users\Julia\AppData\Roaming\Malwarebytes
2013-10-31 21:18 - 2013-10-31 21:18 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-10-31 21:18 - 2013-10-31 21:18 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-10-31 21:18 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbam.sys
2013-10-31 21:07 - 2013-10-31 21:07 - 00003326 _____ C:\windows\System32\Tasks\SpyHunter4Startup
2013-10-31 21:07 - 2013-10-31 21:07 - 00000000 ____D C:\Users\Julia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter
2013-10-31 21:07 - 2013-10-31 21:07 - 00000000 ____D C:\sh4ldr
2013-10-31 21:07 - 2013-10-31 21:07 - 00000000 ____D C:\Program Files\Enigma Software Group
2013-10-31 21:07 - 2013-10-31 21:07 - 00000000 _____ C:\autoexec.bat
2013-10-31 21:06 - 2013-10-31 22:24 - 00000000 ____D C:\windows\72AAF4551E54475BB0AB5413C78D0E63.TMP
2013-10-27 12:39 - 2013-10-27 12:39 - 00001783 _____ C:\Users\Public\Desktop\iTunes.lnk
2013-10-27 12:38 - 2013-10-27 12:39 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2013-10-27 12:38 - 2013-10-27 12:39 - 00000000 ____D C:\Program Files\iTunes
2013-10-27 12:38 - 2013-10-27 12:39 - 00000000 ____D C:\Program Files (x86)\iTunes
2013-10-27 12:38 - 2013-10-27 12:38 - 00000000 ____D C:\Program Files\iPod
2013-10-27 12:31 - 2013-10-27 12:31 - 00000000 ____H C:\windows\system32\Drivers\Msft_Kernel_netaapl64_01009.Wdf
2013-10-24 09:27 - 2013-10-24 09:28 - 15318168 _____ C:\Users\Julia\Downloads\pd68-win-ip4700-2_33a-ea24.exe
2013-10-24 09:24 - 2013-10-24 09:24 - 15283536 _____ C:\Users\Julia\Downloads\PIXMAiP47002.30.exe
2013-10-24 09:21 - 2013-10-24 09:21 - 01345792 _____ C:\Users\Julia\Downloads\Canon-PIXMA-iP4700-Treiber-Setup.exe
2013-10-22 19:30 - 2013-10-22 19:30 - 00000000 ____D C:\Users\Julia\AppData\Local\Google
2013-10-20 15:59 - 2013-10-20 15:59 - 05368984 _____ C:\Users\Julia\Downloads\mypr-win-3_1_0-ea11_2.exe
2013-10-20 14:16 - 2013-10-20 14:16 - 00000000 ___HD C:\ProgramData\CanonBJ
2013-10-20 14:14 - 2010-04-24 04:00 - 00336896 _____ (CANON INC.) C:\windows\system32\CNMLMA1.DLL
2013-10-18 16:50 - 2013-10-18 16:50 - 00000000 ____D C:\Program Files\McAfee Security Scan
2013-10-16 11:29 - 2013-10-16 11:29 - 00000000 ____D C:\Users\Julia\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
2013-10-15 13:55 - 2013-10-27 15:54 - 00000000 ____D C:\Users\Julia\Documents\Uni
==================== One Month Modified Files and Folders =======
2013-11-12 18:55 - 2013-11-12 18:55 - 01957590 _____ (Farbar) C:\Users\Julia\Downloads\FRST64.exe
2013-11-12 18:54 - 2013-11-12 18:54 - 01090275 _____ (Farbar) C:\Users\Julia\Downloads\FRST.exe
2013-11-12 18:51 - 2012-10-02 19:04 - 00000884 _____ C:\windows\Tasks\Adobe Flash Player Updater.job
2013-11-12 18:51 - 2012-04-12 10:41 - 00000326 _____ C:\windows\Tasks\Xerox PhotoCafe Communicator.job
2013-11-12 18:51 - 2012-04-12 10:16 - 00000830 _____ C:\windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job
2013-11-12 08:13 - 2013-11-12 08:13 - 00000000 ___SH C:\DkHyperbootSync
2013-11-11 18:13 - 2009-07-14 05:45 - 00020992 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-11-11 18:13 - 2009-07-14 05:45 - 00020992 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-11-11 08:48 - 2012-04-13 01:09 - 00654400 _____ C:\windows\system32\perfh007.dat
2013-11-11 08:48 - 2012-04-13 01:09 - 00130240 _____ C:\windows\system32\perfc007.dat
2013-11-11 08:48 - 2009-07-14 06:13 - 01498742 _____ C:\windows\system32\PerfStringBackup.INI
2013-11-11 08:46 - 2012-04-12 10:16 - 00000828 _____ C:\windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job
2013-11-11 08:44 - 2013-11-01 06:57 - 00000728 _____ C:\windows\setupact.log
2013-11-11 08:44 - 2012-10-02 19:00 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-11-11 08:44 - 2009-07-14 06:08 - 00000006 ____H C:\windows\Tasks\SA.DAT
2013-11-11 08:28 - 2012-04-13 02:11 - 01613787 _____ C:\windows\WindowsUpdate.log
2013-11-10 17:36 - 2013-01-12 22:47 - 00000000 ____D C:\QUARANTINE
2013-11-08 08:19 - 2013-11-08 08:19 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-11-07 12:09 - 2012-10-12 16:38 - 00000000 ____D C:\Users\Julia\AppData\Local\CrashDumps
2013-11-05 22:39 - 2013-11-05 22:38 - 00262046 _____ C:\windows\msxml4-KB2758694-enu.LOG
2013-11-05 22:30 - 2013-11-05 22:30 - 00891167 _____ C:\Users\Julia\Downloads\SecurityCheck.exe
2013-11-05 22:28 - 2013-11-05 22:28 - 02347384 _____ (ESET) C:\Users\Julia\Downloads\esetsmartinstaller_enu.exe
2013-11-05 20:22 - 2013-08-15 18:07 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2013-11-03 20:41 - 2013-11-03 20:41 - 00002068 _____ C:\Users\Julia\Desktop\JRT.txt
2013-11-03 20:30 - 2013-11-03 20:30 - 00000000 ____D C:\windows\ERUNT
2013-11-03 20:29 - 2013-11-03 20:29 - 00007033 _____ C:\Users\Julia\Desktop\AdwCleaner[S0].txt
2013-11-03 20:28 - 2013-11-03 20:06 - 00000000 ____D C:\AdwCleaner
2013-11-03 20:25 - 2013-11-03 20:25 - 01033335 _____ (Thisisu) C:\Users\Julia\Downloads\JRT.exe
2013-11-03 20:23 - 2013-11-03 20:23 - 00001139 _____ C:\Users\Julia\Desktop\Continue Zip Extractor Installation.lnk
2013-11-03 20:22 - 2013-11-03 20:21 - 00752096 _____ C:\Users\Julia\Downloads\ZipExtractorSetup.exe
2013-11-03 20:11 - 2013-11-03 20:11 - 00000000 ___RD C:\Users\Julia\AppData\Roaming\Brother
2013-11-03 20:05 - 2013-11-03 20:06 - 01060070 _____ C:\Users\Julia\Downloads\adwcleaner-3.010.exe
2013-11-03 20:02 - 2013-11-03 17:23 - 00000000 ____D C:\ProgramData\Nuance
2013-11-03 19:59 - 2013-11-03 19:58 - 00000000 ____D C:\Users\Julia\AppData\Roaming\ControlCenter4
2013-11-03 19:59 - 2012-09-24 19:42 - 00123296 _____ C:\Users\Julia\AppData\Local\GDIPFONTCACHEV1.DAT
2013-11-03 19:58 - 2013-11-03 19:58 - 00000000 ____D C:\Users\Julia\AppData\Roaming\FLEXnet
2013-11-03 19:58 - 2013-11-01 06:57 - 00006286 _____ C:\windows\PFRO.log
2013-11-03 19:58 - 2009-07-14 05:45 - 05003328 _____ C:\windows\system32\FNTCACHE.DAT
2013-11-03 17:47 - 2013-11-03 17:47 - 00002144 _____ C:\Users\Public\Desktop\Brother Creative Center.lnk
2013-11-03 17:46 - 2013-11-03 17:46 - 00000260 _____ C:\windows\Brpfx04a.ini
2013-11-03 17:46 - 2013-11-03 17:46 - 00000064 _____ C:\windows\brpcfx.ini
2013-11-03 17:44 - 2013-11-03 17:43 - 00002944 _____ C:\windows\BRPARAM.INI
2013-11-03 17:43 - 2013-11-03 17:19 - 00000000 ____D C:\ProgramData\Brother
2013-11-03 17:41 - 2013-11-03 17:41 - 00000066 _____ C:\windows\Brfaxrx.ini
2013-11-03 17:41 - 2013-11-03 17:41 - 00000000 ____D C:\Users\Public\Documents\BrFaxRx
2013-11-03 17:41 - 2013-11-03 17:41 - 00000000 ____D C:\ProgramData\ControlCenter4
2013-11-03 17:41 - 2013-11-03 17:41 - 00000000 ____D C:\Program Files (x86)\ControlCenter4
2013-11-03 17:41 - 2013-11-03 17:41 - 00000000 ____D C:\Program Files (x86)\Browny02
2013-11-03 17:41 - 2013-11-03 17:41 - 00000000 ____D C:\Brother
2013-11-03 17:41 - 2013-11-03 17:40 - 00000000 ____D C:\Program Files (x86)\Brother
2013-11-03 17:39 - 2012-04-12 10:15 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2013-11-03 17:28 - 2013-11-03 17:28 - 00000000 ____D C:\Users\Julia\AppData\Roaming\InstallShield
2013-11-03 17:27 - 2013-11-03 17:27 - 00000000 ____D C:\Program Files\Nuance
2013-11-03 17:26 - 2013-11-03 17:26 - 00000000 ____D C:\ProgramData\zeon
2013-11-03 17:26 - 2013-11-03 17:23 - 00000000 ____D C:\Program Files (x86)\Nuance
2013-11-03 17:25 - 2013-11-03 17:25 - 00000000 ____D C:\Users\Julia\AppData\Roaming\Nuance
2013-11-03 17:25 - 2013-11-03 17:25 - 00000000 ____D C:\ProgramData\ScanSoft
2013-11-03 17:23 - 2013-11-03 17:23 - 00000000 ____D C:\Users\Julia\Documents\MeineWebSeiten
2013-11-03 17:23 - 2013-11-03 17:23 - 00000000 ____D C:\ProgramData\FLEXnet
2013-11-03 17:20 - 2013-11-03 17:20 - 00000000 ____D C:\Program Files (x86)\MSXML 4.0
2013-11-01 21:59 - 2013-11-01 21:45 - 00000000 ____D C:\Qoobox
2013-11-01 21:59 - 2009-07-14 04:20 - 00000000 __RHD C:\Users\Default
2013-11-01 21:58 - 2013-11-01 21:58 - 00025662 _____ C:\ComboFix.txt
2013-11-01 21:57 - 2013-11-01 21:45 - 00000000 ____D C:\windows\erdnt
2013-11-01 21:56 - 2009-07-14 03:34 - 00000215 _____ C:\windows\system.ini
2013-11-01 21:44 - 2013-11-01 21:44 - 05143186 ____R (Swearware) C:\Users\Julia\Downloads\ComboFix.exe
2013-11-01 17:48 - 2013-11-01 17:48 - 00009216 ___SH C:\Users\Julia\Documents\Thumbs.db
2013-11-01 07:12 - 2013-11-01 07:11 - 00026965 _____ C:\Users\Julia\Downloads\Addition.txt
2013-11-01 07:09 - 2013-11-01 07:09 - 00000000 ____D C:\FRST
2013-11-01 06:57 - 2013-11-01 06:57 - 00000000 _____ C:\windows\setuperr.log
2013-11-01 06:56 - 2012-10-11 14:44 - 00000000 ____D C:\Program Files (x86)\vGrabber-software
2013-10-31 22:24 - 2013-10-31 21:06 - 00000000 ____D C:\windows\72AAF4551E54475BB0AB5413C78D0E63.TMP
2013-10-31 22:14 - 2013-10-31 22:14 - 00000000 ____D C:\ProgramData\Oracle
2013-10-31 22:13 - 2013-10-31 22:13 - 00096168 _____ (Oracle Corporation) C:\windows\SysWOW64\WindowsAccessBridge-32.dll
2013-10-31 22:12 - 2013-10-31 22:13 - 00264616 _____ (Oracle Corporation) C:\windows\SysWOW64\javaws.exe
2013-10-31 22:12 - 2013-10-31 22:13 - 00175016 _____ (Oracle Corporation) C:\windows\SysWOW64\javaw.exe
2013-10-31 22:12 - 2013-10-31 22:13 - 00174504 _____ (Oracle Corporation) C:\windows\SysWOW64\java.exe
2013-10-31 22:12 - 2013-10-31 22:12 - 00000000 ____D C:\Program Files (x86)\Java
2013-10-31 22:10 - 2013-10-31 22:11 - 00915368 _____ (Oracle Corporation) C:\Users\Julia\Downloads\jxpiinstall.exe
2013-10-31 21:18 - 2013-10-31 21:18 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Julia\Downloads\mbam-setup-1.75.0.1300.exe
2013-10-31 21:18 - 2013-10-31 21:18 - 00001113 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-10-31 21:18 - 2013-10-31 21:18 - 00000000 ____D C:\Users\Julia\AppData\Roaming\Malwarebytes
2013-10-31 21:18 - 2013-10-31 21:18 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-10-31 21:18 - 2013-10-31 21:18 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-10-31 21:07 - 2013-10-31 21:07 - 00003326 _____ C:\windows\System32\Tasks\SpyHunter4Startup
2013-10-31 21:07 - 2013-10-31 21:07 - 00000000 ____D C:\Users\Julia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter
2013-10-31 21:07 - 2013-10-31 21:07 - 00000000 ____D C:\sh4ldr
2013-10-31 21:07 - 2013-10-31 21:07 - 00000000 ____D C:\Program Files\Enigma Software Group
2013-10-31 21:07 - 2013-10-31 21:07 - 00000000 _____ C:\autoexec.bat
2013-10-31 20:58 - 2013-10-10 15:40 - 00000000 ____D C:\Users\Julia\Downloads\backups
2013-10-31 20:58 - 2013-10-10 15:37 - 00013738 _____ C:\Users\Julia\Downloads\hijackthis.log
2013-10-27 15:54 - 2013-10-15 13:55 - 00000000 ____D C:\Users\Julia\Documents\Uni
2013-10-27 15:19 - 2011-02-11 20:57 - 00000000 ____D C:\windows\Panther
2013-10-27 12:39 - 2013-10-27 12:39 - 00001783 _____ C:\Users\Public\Desktop\iTunes.lnk
2013-10-27 12:39 - 2013-10-27 12:38 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2013-10-27 12:39 - 2013-10-27 12:38 - 00000000 ____D C:\Program Files\iTunes
2013-10-27 12:39 - 2013-10-27 12:38 - 00000000 ____D C:\Program Files (x86)\iTunes
2013-10-27 12:38 - 2013-10-27 12:38 - 00000000 ____D C:\Program Files\iPod
2013-10-27 12:31 - 2013-10-27 12:31 - 00000000 ____H C:\windows\system32\Drivers\Msft_Kernel_netaapl64_01009.Wdf
2013-10-24 09:28 - 2013-10-24 09:27 - 15318168 _____ C:\Users\Julia\Downloads\pd68-win-ip4700-2_33a-ea24.exe
2013-10-24 09:24 - 2013-10-24 09:24 - 15283536 _____ C:\Users\Julia\Downloads\PIXMAiP47002.30.exe
2013-10-24 09:21 - 2013-10-24 09:21 - 01345792 _____ C:\Users\Julia\Downloads\Canon-PIXMA-iP4700-Treiber-Setup.exe
2013-10-22 19:30 - 2013-10-22 19:30 - 00000000 ____D C:\Users\Julia\AppData\Local\Google
2013-10-20 16:00 - 2009-07-14 06:32 - 00000000 ____D C:\windows\system32\FxsTmp
2013-10-20 15:59 - 2013-10-20 15:59 - 05368984 _____ C:\Users\Julia\Downloads\mypr-win-3_1_0-ea11_2.exe
2013-10-20 14:16 - 2013-10-20 14:16 - 00000000 ___HD C:\ProgramData\CanonBJ
2013-10-18 16:50 - 2013-10-18 16:50 - 00000000 ____D C:\Program Files\McAfee Security Scan
2013-10-18 16:50 - 2013-02-03 21:49 - 00001931 _____ C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
2013-10-16 11:29 - 2013-10-16 11:29 - 00000000 ____D C:\Users\Julia\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
2013-10-14 19:06 - 2009-07-14 04:20 - 00000000 ____D C:\windows\rescache
Some content of TEMP:
====================
C:\Users\Julia\AppData\Local\Temp\ICReinstall_ZipExtractorSetup.exe
C:\Users\Julia\AppData\Local\Temp\Quarantine.exe
C:\Users\Julia\AppData\Local\Temp\_isDB17.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-11-10 15:38
==================== End Of Log ============================ --- --- ---
--- --- ---
hi, sorry das es so lange gedauert hat, hier ist es:
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 10-11-2013 01
Ran by Julia (administrator) on PC-JULIA on 12-11-2013 18:55:36
Running from C:\Users\Julia\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\windows\system32\nvvsvc.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Diskeeper Corporation) C:\Program Files\Diskeeper Corporation\ExpressCache\ExpressCache.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
() C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\windows\SysWOW64\irstrtsv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\FrameworkService.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\VsTskMgr.exe
(McAfee, Inc.) C:\windows\system32\mfevtps.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\mfeann.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
() C:\Program Files (x86)\Samsung\Easy Settings\SamsungDeviceConfiguration.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
(Microsoft Corporation) C:\windows\system32\WLANExt.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\naPrdMgr.exe
(Enigma Software Group USA, LLC.) C:\Program Files\Enigma Software Group\SpyHunter\Spyhunter4.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(DT Soft Ltd) C:\Program Files (x86)\DAEMON Tools Lite\daemon.exe
(Acresso Corporation) C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe
(Audible, Inc.) C:\Program Files (x86)\Audible\Bin\AudibleDownloadHelper.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.130\SSScheduler.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\UdaterUI.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\McTray.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PDF Viewer Plus\pdfPro5Hook.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\BrYNSvc.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\SHSTAT.EXE
(Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe
(Samsung Electronics CO., LTD.) C:\Program Files (x86)\Samsung\Easy Software Manager\SWMAgent.exe
(Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Easy Settings\dmhkcore.exe
(Samsung Electronics) C:\Program Files (x86)\Samsung\Easy Settings\EasySpeedUpManager.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Easy Settings\SmartSetting.exe
(CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Easy Settings\MovieColorEnhancer.exe
(Intel Corporation) C:\windows\system32\igfxext.exe
(Intel Corporation) C:\windows\system32\igfxsrvc.exe
(Samsung Electronics CO., LTD.) C:\Program Files\Samsung\Easy Support Center\SamoyedAgent.exe
(SEC) C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\WCScheduler.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\Media+Player10\Media+Player10Serv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\BleServicesCtrl.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Intel Corporation) C:\windows\system32\hkcmd.exe
(Intel Corporation) C:\windows\system32\igfxtray.exe
(Intel Corporation) C:\windows\system32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe [500208 2010-03-06] (Adobe Systems Incorporated)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\daemon.exe [691656 2009-04-23] (DT Soft Ltd)
HKCU\...\Run: [ISUSPM] - C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [222496 2009-05-05] (Acresso Corporation)
HKLM-x32\...\Run: [McAfeeUpdaterUI] - C:\Program Files (x86)\McAfee\Common Framework\UdaterUI.exe [333376 2011-11-15] (McAfee, Inc.)
HKLM-x32\...\Run: [ShStatEXE] - C:\Program Files (x86)\McAfee\VirusScan Enterprise\shstat.exe [215656 2012-08-14] (McAfee, Inc.)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM-x32\...\Run: [AdobeCS5ServiceManager] - C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SwitchBoard] - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-10-23] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [IndexSearch] - C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe [46368 2010-03-09] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PaperPort PTD] - C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe [29984 2010-03-09] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PPort12reminder] - C:\ProgramData\ScanSoft\PaperPort\12\Config\Ereg\Ereg.ini [319 2013-11-11] ()
HKLM-x32\...\Run: [PDFHook] - C:\Program Files (x86)\Nuance\PDF Viewer Plus\pdfPro5Hook.exe [636192 2010-03-05] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PDF5 Registry Controller] - C:\Program Files (x86)\Nuance\PDF Viewer Plus\RegistryController.exe [62752 2010-03-05] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [ControlCenter4] - C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [143360 2012-09-06] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [BrStsMon00] - C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [3076096 2012-06-06] (Brother Industries, Ltd.)
AppInit_DLLs: C:\Windows\System32\nvinitx.dll [260928 2012-02-25] (NVIDIA Corporation)
AppInit_DLLs-x32: c:\Windows\SysWOW64\nvinit.dll [215360 2012-02-25] (NVIDIA Corporation)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Sign In
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Google
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20120926181436.dll (McAfee, Inc.)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: ContributeBHO Class - {074C1DC5-9320-4A9A-947D-C042949C6216} - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll (Adobe Systems, Inc.)
BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.130\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO-x32: PlusIEEventHelper Class - {551A852F-39A6-44A7-9C13-AFBEC9185A9D} - C:\Program Files (x86)\Nuance\PDF Viewer Plus\bin\PlusIEContextMenu.dll (Zeon Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20120926181436.dll (McAfee, Inc.)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM-x32 - Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll (Adobe Systems, Inc.)
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Tcpip\Parameters: [DhcpNameServer] 172.16.39.2
FireFox:
========
FF ProfilePath: C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\dkyjasyh.default
FF Homepage: hxxp://www.google.de/
FF Plugin: @adobe.com/FlashPlayer - C:\windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @mcafee.com/McAfeeMssPlugin - C:\Program Files\McAfee Security Scan\3.8.130\npMcAfeeMss.dll (McAfee, Inc.)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5 - C:\ProgramData\Visan\plugins\npRLSecurePluginLayer.dll (RocketLife, LLP)
FF Plugin-x32: @videolan.org/vlc,version=2.0.5 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: FreeHDSport.TV - C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\dkyjasyh.default\Extensions\freehdsport@freehdsport.tv
FF Extension: Block site - C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\dkyjasyh.default\Extensions\{dd3d7613-0246-469d-bc65-2a3cc1668adc}
FF Extension: adblockpopups - C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\dkyjasyh.default\Extensions\adblockpopups@jessehakanen.net.xpi
FF Extension: noscript - C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\dkyjasyh.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi
FF Extension: No Name - C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\dkyjasyh.default\Extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}.xpi
FF HKLM-x32\...\Firefox\Extensions: [{D19CA586-DD6C-4a0a-96F8-14644F340D60}] - C:\Program Files (x86)\Common Files\McAfee\SystemCore
FF Extension: IDS_SS_NAME - C:\Program Files (x86)\Common Files\McAfee\SystemCore
FF HKLM-x32\...\Firefox\Extensions: [{01A8CA0A-4C96-465b-A49B-65C46FAD54F9}] - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\FirefoxPlugin\{01A8CA0A-4C96-465b-A49B-65C46FAD54F9}
FF Extension: Adobe Contribute Toolbar - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\FirefoxPlugin\{01A8CA0A-4C96-465b-A49B-65C46FAD54F9}
Chrome:
=======
Error reading preferences. Please check "preferences" file for possible corruption. <======= ATTENTION
==================== Services (Whitelisted) =================
R2 ExpressCache; C:\Program Files\Diskeeper Corporation\ExpressCache\ExpressCache.exe [79664 2012-02-11] (Diskeeper Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128280 2012-02-08] ()
R2 irstrtsv; C:\windows\SysWOW64\irstrtsv.exe [193536 2012-02-06] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2012-02-08] (Intel Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 McAfeeFramework; C:\Program Files (x86)\McAfee\Common Framework\FrameworkService.exe [132672 2011-11-15] (McAfee, Inc.)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.130\McCHSvc.exe [288776 2013-09-06] (McAfee, Inc.)
R2 McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [201864 2012-09-26] (McAfee, Inc.)
R2 McTaskManager; C:\Program Files (x86)\McAfee\VirusScan Enterprise\VsTskMgr.exe [210056 2012-08-14] (McAfee, Inc.)
R2 mfevtp; C:\windows\system32\mfevtps.exe [170440 2012-09-26] (McAfee, Inc.)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273168 2011-12-08] ()
R2 PDFProFiltSrvPP; C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe [144672 2010-03-09] (Nuance Communications, Inc.)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [244904 2009-12-01] ()
R2 SamsungDeviceConfigurationWinService; C:\Program Files (x86)\Samsung\Easy Settings\SamsungDeviceConfiguration.exe [31624 2012-02-13] ()
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [594704 2011-12-08] (Intel® Corporation)
S3 GameConsoleService; "C:\Program Files (x86)\WildGames\Game Console - WildGames\GameConsoleService.exe" [x]
==================== Drivers (Whitelisted) ====================
S3 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [482936 2012-01-08] (Symantec Corporation)
S3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [138360 2012-01-08] (Symantec Corporation)
R1 excfs; C:\Windows\System32\DRIVERS\excfs.sys [23344 2012-02-11] (Diskeeper Corporation)
R0 excsd; C:\Windows\System32\DRIVERS\excsd.sys [92976 2012-02-11] (Diskeeper Corporation)
R3 irstrtdv; C:\Windows\System32\DRIVERS\irstrtdv.sys [26504 2012-02-07] (Intel Corporation)
R3 MBAMProtector; C:\windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [160952 2012-09-26] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [274880 2012-09-26] (McAfee, Inc.)
U3 mfeavfk01; No ImagePath
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [665768 2012-09-26] (McAfee, Inc.)
S3 mferkdet; C:\Windows\System32\drivers\mferkdet.sys [101200 2012-09-26] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [303464 2012-09-26] (McAfee, Inc.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [871408 2012-10-17] ()
U3 aw7u865j; C:\Windows\System32\Drivers\aw7u865j.sys [0 ] (Microsoft Corporation)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27648 2011-03-01] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-11-12 18:55 - 2013-11-12 18:55 - 01957590 _____ (Farbar) C:\Users\Julia\Downloads\FRST64.exe
2013-11-12 18:54 - 2013-11-12 18:54 - 01090275 _____ (Farbar) C:\Users\Julia\Downloads\FRST.exe
2013-11-12 08:13 - 2013-11-12 08:13 - 00000000 ___SH C:\DkHyperbootSync
2013-11-08 08:19 - 2013-11-08 08:19 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-11-05 22:38 - 2013-11-05 22:39 - 00262046 _____ C:\windows\msxml4-KB2758694-enu.LOG
2013-11-05 22:30 - 2013-11-05 22:30 - 00891167 _____ C:\Users\Julia\Downloads\SecurityCheck.exe
2013-11-05 22:28 - 2013-11-05 22:28 - 02347384 _____ (ESET) C:\Users\Julia\Downloads\esetsmartinstaller_enu.exe
2013-11-03 20:41 - 2013-11-03 20:41 - 00002068 _____ C:\Users\Julia\Desktop\JRT.txt
2013-11-03 20:30 - 2013-11-03 20:30 - 00000000 ____D C:\windows\ERUNT
2013-11-03 20:29 - 2013-11-03 20:29 - 00007033 _____ C:\Users\Julia\Desktop\AdwCleaner[S0].txt
2013-11-03 20:25 - 2013-11-03 20:25 - 01033335 _____ (Thisisu) C:\Users\Julia\Downloads\JRT.exe
2013-11-03 20:23 - 2013-11-03 20:23 - 00001139 _____ C:\Users\Julia\Desktop\Continue Zip Extractor Installation.lnk
2013-11-03 20:21 - 2013-11-03 20:22 - 00752096 _____ C:\Users\Julia\Downloads\ZipExtractorSetup.exe
2013-11-03 20:11 - 2013-11-03 20:11 - 00000000 ___RD C:\Users\Julia\AppData\Roaming\Brother
2013-11-03 20:06 - 2013-11-03 20:28 - 00000000 ____D C:\AdwCleaner
2013-11-03 20:06 - 2013-11-03 20:05 - 01060070 _____ C:\Users\Julia\Downloads\adwcleaner-3.010.exe
2013-11-03 19:58 - 2013-11-03 19:59 - 00000000 ____D C:\Users\Julia\AppData\Roaming\ControlCenter4
2013-11-03 19:58 - 2013-11-03 19:58 - 00000000 ____D C:\Users\Julia\AppData\Roaming\FLEXnet
2013-11-03 17:47 - 2013-11-03 17:47 - 00002144 _____ C:\Users\Public\Desktop\Brother Creative Center.lnk
2013-11-03 17:46 - 2013-11-03 17:46 - 00000260 _____ C:\windows\Brpfx04a.ini
2013-11-03 17:46 - 2013-11-03 17:46 - 00000064 _____ C:\windows\brpcfx.ini
2013-11-03 17:43 - 2013-11-03 17:44 - 00002944 _____ C:\windows\BRPARAM.INI
2013-11-03 17:41 - 2013-11-03 17:41 - 00000066 _____ C:\windows\Brfaxrx.ini
2013-11-03 17:41 - 2013-11-03 17:41 - 00000000 ____D C:\Users\Public\Documents\BrFaxRx
2013-11-03 17:41 - 2013-11-03 17:41 - 00000000 ____D C:\ProgramData\ControlCenter4
2013-11-03 17:41 - 2013-11-03 17:41 - 00000000 ____D C:\Program Files (x86)\ControlCenter4
2013-11-03 17:41 - 2013-11-03 17:41 - 00000000 ____D C:\Program Files (x86)\Browny02
2013-11-03 17:41 - 2013-11-03 17:41 - 00000000 ____D C:\Brother
2013-11-03 17:41 - 2012-07-31 08:39 - 01439744 _____ (Brother Industries, Ltd.) C:\windows\system32\BrWi209d.dll
2013-11-03 17:41 - 2012-07-05 12:32 - 00084480 ____R (Brother Industries, Ltd.) C:\windows\system32\BrNetSti.dll
2013-11-03 17:41 - 2012-03-19 05:09 - 00316928 ____R (brother) C:\windows\system32\NSSRH64.dll
2013-11-03 17:41 - 2010-09-23 09:14 - 00058880 ____R (Brother Industries,Ltd.) C:\windows\system32\BrWiaNCp.dll
2013-11-03 17:41 - 2010-09-23 09:13 - 00051712 ____R (Brother Industries,Ltd) C:\windows\system32\Brnsplg.dll
2013-11-03 17:41 - 2010-04-01 11:27 - 00278528 _____ (Brother Industries, Ltd.) C:\windows\system32\BrJDec.dll
2013-11-03 17:41 - 2010-03-16 00:04 - 00143360 ____R C:\windows\system32\BrSNMP64.dll
2013-11-03 17:41 - 2009-12-08 16:19 - 00290304 ____N (Brother Industries, Ltd.) C:\windows\system32\BrfxDA5c.dll
2013-11-03 17:41 - 2003-11-28 18:57 - 00000000 _____ C:\windows\brdfxspd.dat
2013-11-03 17:40 - 2013-11-03 17:41 - 00000000 ____D C:\Program Files (x86)\Brother
2013-11-03 17:40 - 2012-09-10 16:31 - 00245760 ____N (brother) C:\windows\SysWOW64\NSSearch.dll
2013-11-03 17:40 - 2012-07-09 17:19 - 00005120 ____N (Brother Industries Ltd.) C:\windows\SysWOW64\BrDctF2S.dll
2013-11-03 17:40 - 2012-06-05 07:59 - 00025299 _____ (Brother Industries, Ltd) C:\windows\SysWOW64\BRLM03A.DLL
2013-11-03 17:40 - 2010-05-20 06:33 - 00103792 _____ (Brother Industries Ltd) C:\windows\SysWOW64\BRRBI100.EXE
2013-11-03 17:40 - 2010-03-15 19:45 - 00073728 ____N (Brother Industries Ltd.) C:\windows\SysWOW64\BrDctF2.dll
2013-11-03 17:40 - 2010-03-15 17:20 - 00050176 _____ (Brother Industries Ltd.) C:\windows\SysWOW64\BRPRTINK.DLL
2013-11-03 17:40 - 2010-02-05 03:42 - 00180224 _____ (Brother Industries, Ltd.) C:\windows\SysWOW64\BROSNMP.DLL
2013-11-03 17:40 - 2007-12-13 22:16 - 00005632 ____N (Brother Industries Ltd.) C:\windows\SysWOW64\BrDctF2L.dll
2013-11-03 17:40 - 2005-01-17 08:10 - 00045056 _____ C:\windows\SysWOW64\BRTCPCON.DLL
2013-11-03 17:40 - 2004-08-09 08:00 - 00000114 _____ C:\windows\SysWOW64\BRLMW03A.INI
2013-11-03 17:40 - 2004-08-09 07:42 - 00077824 _____ (Brother Industries, Ltd.) C:\windows\SysWOW64\BRLMW03A.DLL
2013-11-03 17:28 - 2013-11-03 17:28 - 00000000 ____D C:\Users\Julia\AppData\Roaming\InstallShield
2013-11-03 17:27 - 2013-11-03 17:27 - 00000000 ____D C:\Program Files\Nuance
2013-11-03 17:26 - 2013-11-03 17:26 - 00000000 ____D C:\ProgramData\zeon
2013-11-03 17:25 - 2013-11-03 17:25 - 00000000 ____D C:\Users\Julia\AppData\Roaming\Nuance
2013-11-03 17:25 - 2013-11-03 17:25 - 00000000 ____D C:\ProgramData\ScanSoft
2013-11-03 17:23 - 2013-11-03 20:02 - 00000000 ____D C:\ProgramData\Nuance
2013-11-03 17:23 - 2013-11-03 17:26 - 00000000 ____D C:\Program Files (x86)\Nuance
2013-11-03 17:23 - 2013-11-03 17:23 - 00000000 ____D C:\Users\Julia\Documents\MeineWebSeiten
2013-11-03 17:23 - 2013-11-03 17:23 - 00000000 ____D C:\ProgramData\FLEXnet
2013-11-03 17:20 - 2013-11-03 17:20 - 00000000 ____D C:\Program Files (x86)\MSXML 4.0
2013-11-03 17:19 - 2013-11-03 17:43 - 00000000 ____D C:\ProgramData\Brother
2013-11-01 21:58 - 2013-11-01 21:58 - 00025662 _____ C:\ComboFix.txt
2013-11-01 21:46 - 2011-06-26 07:45 - 00256000 _____ C:\windows\PEV.exe
2013-11-01 21:46 - 2010-11-07 18:20 - 00208896 _____ C:\windows\MBR.exe
2013-11-01 21:46 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\windows\NIRCMD.exe
2013-11-01 21:46 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\windows\SWREG.exe
2013-11-01 21:46 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\windows\SWSC.exe
2013-11-01 21:46 - 2000-08-31 01:00 - 00098816 _____ C:\windows\sed.exe
2013-11-01 21:46 - 2000-08-31 01:00 - 00080412 _____ C:\windows\grep.exe
2013-11-01 21:46 - 2000-08-31 01:00 - 00068096 _____ C:\windows\zip.exe
2013-11-01 21:45 - 2013-11-01 21:59 - 00000000 ____D C:\Qoobox
2013-11-01 21:45 - 2013-11-01 21:57 - 00000000 ____D C:\windows\erdnt
2013-11-01 21:44 - 2013-11-01 21:44 - 05143186 ____R (Swearware) C:\Users\Julia\Downloads\ComboFix.exe
2013-11-01 17:48 - 2013-11-01 17:48 - 00009216 ___SH C:\Users\Julia\Documents\Thumbs.db
2013-11-01 07:11 - 2013-11-01 07:12 - 00026965 _____ C:\Users\Julia\Downloads\Addition.txt
2013-11-01 07:09 - 2013-11-01 07:09 - 00000000 ____D C:\FRST
2013-11-01 06:57 - 2013-11-11 08:44 - 00000728 _____ C:\windows\setupact.log
2013-11-01 06:57 - 2013-11-03 19:58 - 00006286 _____ C:\windows\PFRO.log
2013-11-01 06:57 - 2013-11-01 06:57 - 00000000 _____ C:\windows\setuperr.log
2013-10-31 22:14 - 2013-10-31 22:14 - 00000000 ____D C:\ProgramData\Oracle
2013-10-31 22:13 - 2013-10-31 22:13 - 00096168 _____ (Oracle Corporation) C:\windows\SysWOW64\WindowsAccessBridge-32.dll
2013-10-31 22:13 - 2013-10-31 22:12 - 00264616 _____ (Oracle Corporation) C:\windows\SysWOW64\javaws.exe
2013-10-31 22:13 - 2013-10-31 22:12 - 00175016 _____ (Oracle Corporation) C:\windows\SysWOW64\javaw.exe
2013-10-31 22:13 - 2013-10-31 22:12 - 00174504 _____ (Oracle Corporation) C:\windows\SysWOW64\java.exe
2013-10-31 22:12 - 2013-10-31 22:12 - 00000000 ____D C:\Program Files (x86)\Java
2013-10-31 22:11 - 2013-10-31 22:10 - 00915368 _____ (Oracle Corporation) C:\Users\Julia\Downloads\jxpiinstall.exe
2013-10-31 21:18 - 2013-10-31 21:18 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Julia\Downloads\mbam-setup-1.75.0.1300.exe
2013-10-31 21:18 - 2013-10-31 21:18 - 00001113 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-10-31 21:18 - 2013-10-31 21:18 - 00000000 ____D C:\Users\Julia\AppData\Roaming\Malwarebytes
2013-10-31 21:18 - 2013-10-31 21:18 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-10-31 21:18 - 2013-10-31 21:18 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-10-31 21:18 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbam.sys
2013-10-31 21:07 - 2013-10-31 21:07 - 00003326 _____ C:\windows\System32\Tasks\SpyHunter4Startup
2013-10-31 21:07 - 2013-10-31 21:07 - 00000000 ____D C:\Users\Julia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter
2013-10-31 21:07 - 2013-10-31 21:07 - 00000000 ____D C:\sh4ldr
2013-10-31 21:07 - 2013-10-31 21:07 - 00000000 ____D C:\Program Files\Enigma Software Group
2013-10-31 21:07 - 2013-10-31 21:07 - 00000000 _____ C:\autoexec.bat
2013-10-31 21:06 - 2013-10-31 22:24 - 00000000 ____D C:\windows\72AAF4551E54475BB0AB5413C78D0E63.TMP
2013-10-27 12:39 - 2013-10-27 12:39 - 00001783 _____ C:\Users\Public\Desktop\iTunes.lnk
2013-10-27 12:38 - 2013-10-27 12:39 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2013-10-27 12:38 - 2013-10-27 12:39 - 00000000 ____D C:\Program Files\iTunes
2013-10-27 12:38 - 2013-10-27 12:39 - 00000000 ____D C:\Program Files (x86)\iTunes
2013-10-27 12:38 - 2013-10-27 12:38 - 00000000 ____D C:\Program Files\iPod
2013-10-27 12:31 - 2013-10-27 12:31 - 00000000 ____H C:\windows\system32\Drivers\Msft_Kernel_netaapl64_01009.Wdf
2013-10-24 09:27 - 2013-10-24 09:28 - 15318168 _____ C:\Users\Julia\Downloads\pd68-win-ip4700-2_33a-ea24.exe
2013-10-24 09:24 - 2013-10-24 09:24 - 15283536 _____ C:\Users\Julia\Downloads\PIXMAiP47002.30.exe
2013-10-24 09:21 - 2013-10-24 09:21 - 01345792 _____ C:\Users\Julia\Downloads\Canon-PIXMA-iP4700-Treiber-Setup.exe
2013-10-22 19:30 - 2013-10-22 19:30 - 00000000 ____D C:\Users\Julia\AppData\Local\Google
2013-10-20 15:59 - 2013-10-20 15:59 - 05368984 _____ C:\Users\Julia\Downloads\mypr-win-3_1_0-ea11_2.exe
2013-10-20 14:16 - 2013-10-20 14:16 - 00000000 ___HD C:\ProgramData\CanonBJ
2013-10-20 14:14 - 2010-04-24 04:00 - 00336896 _____ (CANON INC.) C:\windows\system32\CNMLMA1.DLL
2013-10-18 16:50 - 2013-10-18 16:50 - 00000000 ____D C:\Program Files\McAfee Security Scan
2013-10-16 11:29 - 2013-10-16 11:29 - 00000000 ____D C:\Users\Julia\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
2013-10-15 13:55 - 2013-10-27 15:54 - 00000000 ____D C:\Users\Julia\Documents\Uni
==================== One Month Modified Files and Folders =======
2013-11-12 18:55 - 2013-11-12 18:55 - 01957590 _____ (Farbar) C:\Users\Julia\Downloads\FRST64.exe
2013-11-12 18:54 - 2013-11-12 18:54 - 01090275 _____ (Farbar) C:\Users\Julia\Downloads\FRST.exe
2013-11-12 18:51 - 2012-10-02 19:04 - 00000884 _____ C:\windows\Tasks\Adobe Flash Player Updater.job
2013-11-12 18:51 - 2012-04-12 10:41 - 00000326 _____ C:\windows\Tasks\Xerox PhotoCafe Communicator.job
2013-11-12 18:51 - 2012-04-12 10:16 - 00000830 _____ C:\windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job
2013-11-12 08:13 - 2013-11-12 08:13 - 00000000 ___SH C:\DkHyperbootSync
2013-11-11 18:13 - 2009-07-14 05:45 - 00020992 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-11-11 18:13 - 2009-07-14 05:45 - 00020992 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-11-11 08:48 - 2012-04-13 01:09 - 00654400 _____ C:\windows\system32\perfh007.dat
2013-11-11 08:48 - 2012-04-13 01:09 - 00130240 _____ C:\windows\system32\perfc007.dat
2013-11-11 08:48 - 2009-07-14 06:13 - 01498742 _____ C:\windows\system32\PerfStringBackup.INI
2013-11-11 08:46 - 2012-04-12 10:16 - 00000828 _____ C:\windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job
2013-11-11 08:44 - 2013-11-01 06:57 - 00000728 _____ C:\windows\setupact.log
2013-11-11 08:44 - 2012-10-02 19:00 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-11-11 08:44 - 2009-07-14 06:08 - 00000006 ____H C:\windows\Tasks\SA.DAT
2013-11-11 08:28 - 2012-04-13 02:11 - 01613787 _____ C:\windows\WindowsUpdate.log
2013-11-10 17:36 - 2013-01-12 22:47 - 00000000 ____D C:\QUARANTINE
2013-11-08 08:19 - 2013-11-08 08:19 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-11-07 12:09 - 2012-10-12 16:38 - 00000000 ____D C:\Users\Julia\AppData\Local\CrashDumps
2013-11-05 22:39 - 2013-11-05 22:38 - 00262046 _____ C:\windows\msxml4-KB2758694-enu.LOG
2013-11-05 22:30 - 2013-11-05 22:30 - 00891167 _____ C:\Users\Julia\Downloads\SecurityCheck.exe
2013-11-05 22:28 - 2013-11-05 22:28 - 02347384 _____ (ESET) C:\Users\Julia\Downloads\esetsmartinstaller_enu.exe
2013-11-05 20:22 - 2013-08-15 18:07 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2013-11-03 20:41 - 2013-11-03 20:41 - 00002068 _____ C:\Users\Julia\Desktop\JRT.txt
2013-11-03 20:30 - 2013-11-03 20:30 - 00000000 ____D C:\windows\ERUNT
2013-11-03 20:29 - 2013-11-03 20:29 - 00007033 _____ C:\Users\Julia\Desktop\AdwCleaner[S0].txt
2013-11-03 20:28 - 2013-11-03 20:06 - 00000000 ____D C:\AdwCleaner
2013-11-03 20:25 - 2013-11-03 20:25 - 01033335 _____ (Thisisu) C:\Users\Julia\Downloads\JRT.exe
2013-11-03 20:23 - 2013-11-03 20:23 - 00001139 _____ C:\Users\Julia\Desktop\Continue Zip Extractor Installation.lnk
2013-11-03 20:22 - 2013-11-03 20:21 - 00752096 _____ C:\Users\Julia\Downloads\ZipExtractorSetup.exe
2013-11-03 20:11 - 2013-11-03 20:11 - 00000000 ___RD C:\Users\Julia\AppData\Roaming\Brother
2013-11-03 20:05 - 2013-11-03 20:06 - 01060070 _____ C:\Users\Julia\Downloads\adwcleaner-3.010.exe
2013-11-03 20:02 - 2013-11-03 17:23 - 00000000 ____D C:\ProgramData\Nuance
2013-11-03 19:59 - 2013-11-03 19:58 - 00000000 ____D C:\Users\Julia\AppData\Roaming\ControlCenter4
2013-11-03 19:59 - 2012-09-24 19:42 - 00123296 _____ C:\Users\Julia\AppData\Local\GDIPFONTCACHEV1.DAT
2013-11-03 19:58 - 2013-11-03 19:58 - 00000000 ____D C:\Users\Julia\AppData\Roaming\FLEXnet
2013-11-03 19:58 - 2013-11-01 06:57 - 00006286 _____ C:\windows\PFRO.log
2013-11-03 19:58 - 2009-07-14 05:45 - 05003328 _____ C:\windows\system32\FNTCACHE.DAT
2013-11-03 17:47 - 2013-11-03 17:47 - 00002144 _____ C:\Users\Public\Desktop\Brother Creative Center.lnk
2013-11-03 17:46 - 2013-11-03 17:46 - 00000260 _____ C:\windows\Brpfx04a.ini
2013-11-03 17:46 - 2013-11-03 17:46 - 00000064 _____ C:\windows\brpcfx.ini
2013-11-03 17:44 - 2013-11-03 17:43 - 00002944 _____ C:\windows\BRPARAM.INI
2013-11-03 17:43 - 2013-11-03 17:19 - 00000000 ____D C:\ProgramData\Brother
2013-11-03 17:41 - 2013-11-03 17:41 - 00000066 _____ C:\windows\Brfaxrx.ini
2013-11-03 17:41 - 2013-11-03 17:41 - 00000000 ____D C:\Users\Public\Documents\BrFaxRx
2013-11-03 17:41 - 2013-11-03 17:41 - 00000000 ____D C:\ProgramData\ControlCenter4
2013-11-03 17:41 - 2013-11-03 17:41 - 00000000 ____D C:\Program Files (x86)\ControlCenter4
2013-11-03 17:41 - 2013-11-03 17:41 - 00000000 ____D C:\Program Files (x86)\Browny02
2013-11-03 17:41 - 2013-11-03 17:41 - 00000000 ____D C:\Brother
2013-11-03 17:41 - 2013-11-03 17:40 - 00000000 ____D C:\Program Files (x86)\Brother
2013-11-03 17:39 - 2012-04-12 10:15 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2013-11-03 17:28 - 2013-11-03 17:28 - 00000000 ____D C:\Users\Julia\AppData\Roaming\InstallShield
2013-11-03 17:27 - 2013-11-03 17:27 - 00000000 ____D C:\Program Files\Nuance
2013-11-03 17:26 - 2013-11-03 17:26 - 00000000 ____D C:\ProgramData\zeon
2013-11-03 17:26 - 2013-11-03 17:23 - 00000000 ____D C:\Program Files (x86)\Nuance
2013-11-03 17:25 - 2013-11-03 17:25 - 00000000 ____D C:\Users\Julia\AppData\Roaming\Nuance
2013-11-03 17:25 - 2013-11-03 17:25 - 00000000 ____D C:\ProgramData\ScanSoft
2013-11-03 17:23 - 2013-11-03 17:23 - 00000000 ____D C:\Users\Julia\Documents\MeineWebSeiten
2013-11-03 17:23 - 2013-11-03 17:23 - 00000000 ____D C:\ProgramData\FLEXnet
2013-11-03 17:20 - 2013-11-03 17:20 - 00000000 ____D C:\Program Files (x86)\MSXML 4.0
2013-11-01 21:59 - 2013-11-01 21:45 - 00000000 ____D C:\Qoobox
2013-11-01 21:59 - 2009-07-14 04:20 - 00000000 __RHD C:\Users\Default
2013-11-01 21:58 - 2013-11-01 21:58 - 00025662 _____ C:\ComboFix.txt
2013-11-01 21:57 - 2013-11-01 21:45 - 00000000 ____D C:\windows\erdnt
2013-11-01 21:56 - 2009-07-14 03:34 - 00000215 _____ C:\windows\system.ini
2013-11-01 21:44 - 2013-11-01 21:44 - 05143186 ____R (Swearware) C:\Users\Julia\Downloads\ComboFix.exe
2013-11-01 17:48 - 2013-11-01 17:48 - 00009216 ___SH C:\Users\Julia\Documents\Thumbs.db
2013-11-01 07:12 - 2013-11-01 07:11 - 00026965 _____ C:\Users\Julia\Downloads\Addition.txt
2013-11-01 07:09 - 2013-11-01 07:09 - 00000000 ____D C:\FRST
2013-11-01 06:57 - 2013-11-01 06:57 - 00000000 _____ C:\windows\setuperr.log
2013-11-01 06:56 - 2012-10-11 14:44 - 00000000 ____D C:\Program Files (x86)\vGrabber-software
2013-10-31 22:24 - 2013-10-31 21:06 - 00000000 ____D C:\windows\72AAF4551E54475BB0AB5413C78D0E63.TMP
2013-10-31 22:14 - 2013-10-31 22:14 - 00000000 ____D C:\ProgramData\Oracle
2013-10-31 22:13 - 2013-10-31 22:13 - 00096168 _____ (Oracle Corporation) C:\windows\SysWOW64\WindowsAccessBridge-32.dll
2013-10-31 22:12 - 2013-10-31 22:13 - 00264616 _____ (Oracle Corporation) C:\windows\SysWOW64\javaws.exe
2013-10-31 22:12 - 2013-10-31 22:13 - 00175016 _____ (Oracle Corporation) C:\windows\SysWOW64\javaw.exe
2013-10-31 22:12 - 2013-10-31 22:13 - 00174504 _____ (Oracle Corporation) C:\windows\SysWOW64\java.exe
2013-10-31 22:12 - 2013-10-31 22:12 - 00000000 ____D C:\Program Files (x86)\Java
2013-10-31 22:10 - 2013-10-31 22:11 - 00915368 _____ (Oracle Corporation) C:\Users\Julia\Downloads\jxpiinstall.exe
2013-10-31 21:18 - 2013-10-31 21:18 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Julia\Downloads\mbam-setup-1.75.0.1300.exe
2013-10-31 21:18 - 2013-10-31 21:18 - 00001113 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-10-31 21:18 - 2013-10-31 21:18 - 00000000 ____D C:\Users\Julia\AppData\Roaming\Malwarebytes
2013-10-31 21:18 - 2013-10-31 21:18 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-10-31 21:18 - 2013-10-31 21:18 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-10-31 21:07 - 2013-10-31 21:07 - 00003326 _____ C:\windows\System32\Tasks\SpyHunter4Startup
2013-10-31 21:07 - 2013-10-31 21:07 - 00000000 ____D C:\Users\Julia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter
2013-10-31 21:07 - 2013-10-31 21:07 - 00000000 ____D C:\sh4ldr
2013-10-31 21:07 - 2013-10-31 21:07 - 00000000 ____D C:\Program Files\Enigma Software Group
2013-10-31 21:07 - 2013-10-31 21:07 - 00000000 _____ C:\autoexec.bat
2013-10-31 20:58 - 2013-10-10 15:40 - 00000000 ____D C:\Users\Julia\Downloads\backups
2013-10-31 20:58 - 2013-10-10 15:37 - 00013738 _____ C:\Users\Julia\Downloads\hijackthis.log
2013-10-27 15:54 - 2013-10-15 13:55 - 00000000 ____D C:\Users\Julia\Documents\Uni
2013-10-27 15:19 - 2011-02-11 20:57 - 00000000 ____D C:\windows\Panther
2013-10-27 12:39 - 2013-10-27 12:39 - 00001783 _____ C:\Users\Public\Desktop\iTunes.lnk
2013-10-27 12:39 - 2013-10-27 12:38 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2013-10-27 12:39 - 2013-10-27 12:38 - 00000000 ____D C:\Program Files\iTunes
2013-10-27 12:39 - 2013-10-27 12:38 - 00000000 ____D C:\Program Files (x86)\iTunes
2013-10-27 12:38 - 2013-10-27 12:38 - 00000000 ____D C:\Program Files\iPod
2013-10-27 12:31 - 2013-10-27 12:31 - 00000000 ____H C:\windows\system32\Drivers\Msft_Kernel_netaapl64_01009.Wdf
2013-10-24 09:28 - 2013-10-24 09:27 - 15318168 _____ C:\Users\Julia\Downloads\pd68-win-ip4700-2_33a-ea24.exe
2013-10-24 09:24 - 2013-10-24 09:24 - 15283536 _____ C:\Users\Julia\Downloads\PIXMAiP47002.30.exe
2013-10-24 09:21 - 2013-10-24 09:21 - 01345792 _____ C:\Users\Julia\Downloads\Canon-PIXMA-iP4700-Treiber-Setup.exe
2013-10-22 19:30 - 2013-10-22 19:30 - 00000000 ____D C:\Users\Julia\AppData\Local\Google
2013-10-20 16:00 - 2009-07-14 06:32 - 00000000 ____D C:\windows\system32\FxsTmp
2013-10-20 15:59 - 2013-10-20 15:59 - 05368984 _____ C:\Users\Julia\Downloads\mypr-win-3_1_0-ea11_2.exe
2013-10-20 14:16 - 2013-10-20 14:16 - 00000000 ___HD C:\ProgramData\CanonBJ
2013-10-18 16:50 - 2013-10-18 16:50 - 00000000 ____D C:\Program Files\McAfee Security Scan
2013-10-18 16:50 - 2013-02-03 21:49 - 00001931 _____ C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
2013-10-16 11:29 - 2013-10-16 11:29 - 00000000 ____D C:\Users\Julia\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
2013-10-14 19:06 - 2009-07-14 04:20 - 00000000 ____D C:\windows\rescache
Some content of TEMP:
====================
C:\Users\Julia\AppData\Local\Temp\ICReinstall_ZipExtractorSetup.exe
C:\Users\Julia\AppData\Local\Temp\Quarantine.exe
C:\Users\Julia\AppData\Local\Temp\_isDB17.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-11-10 15:38
==================== End Of Log ============================ --- --- ---
--- --- --- |