Schritt 1: Code:
# AdwCleaner v3.012 - Bericht erstellt am 20/11/2013 um 22:54:09
# Updated 11/11/2013 von Xplode
# Betriebssystem : Windows Vista (TM) Home Premium Service Pack 2 (32 bits)
# Benutzername : pc - DANNY
# Gestartet von : C:\Users\pc\Desktop\adwcleaner.exe
# Option : Löschen
***** [ Dienste ] *****
Dienst Gelöscht : APNMCP
[#] Dienst Gelöscht : Partner Service
***** [ Dateien / Ordner ] *****
Ordner Gelöscht : C:\ProgramData\apn
Ordner Gelöscht : C:\ProgramData\Ask
Ordner Gelöscht : C:\ProgramData\AskPartnerNetwork
Ordner Gelöscht : C:\ProgramData\Babylon
Ordner Gelöscht : C:\ProgramData\Partner
Ordner Gelöscht : C:\ProgramData\Tarma Installer
Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\myfree codec
Ordner Gelöscht : C:\Program Files\AskPartnerNetwork
Ordner Gelöscht : C:\Program Files\BabylonToolbar
Ordner Gelöscht : C:\Program Files\HappyLyrics
Ordner Gelöscht : C:\Program Files\Ilivid
Ordner Gelöscht : C:\Program Files\myfree codec
Ordner Gelöscht : C:\Program Files\Windows iLivid Toolbar
Ordner Gelöscht : C:\Users\pc\Qtrax
Ordner Gelöscht : C:\Users\pc\AppData\Local\Babylon
Ordner Gelöscht : C:\Users\pc\AppData\Local\Ilivid Player
Ordner Gelöscht : C:\Users\pc\AppData\Local\PackageAware
Ordner Gelöscht : C:\Users\pc\AppData\Local\Temp\apn
Ordner Gelöscht : C:\Users\pc\AppData\Local\Temp\BabylonToolbar
Ordner Gelöscht : C:\Users\pc\AppData\LocalLow\Bandoo
Ordner Gelöscht : C:\Users\pc\AppData\LocalLow\searchquband
Ordner Gelöscht : C:\Users\pc\AppData\LocalLow\Searchqutoolbar
Ordner Gelöscht : C:\Users\pc\AppData\Roaming\Bandoo
Ordner Gelöscht : C:\Users\pc\AppData\Roaming\Toolplugin
Ordner Gelöscht : C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\rmjxb7of.default\FCTB
Ordner Gelöscht : C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\jidjhchcblhlapbcpheibgdjkajekhbh
Ordner Gelöscht : C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\kpionmjnkbpcdpcflammlgllecmejgjj
Datei Gelöscht : C:\END
Datei Gelöscht : C:\Users\pc\AppData\Local\Temp\Searchqu.ini
Datei Gelöscht : C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\rmjxb7of.default\foxydeal.sqlite
Datei Gelöscht : C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\rmjxb7of.default\searchplugins\11-suche.xml
Datei Gelöscht : C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\rmjxb7of.default\searchplugins\Askcom.xml
Datei Gelöscht : C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\rmjxb7of.default\searchplugins\ask-search.xml
Datei Gelöscht : C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\rmjxb7of.default\searchplugins\Babylon.xml
Datei Gelöscht : C:\Program Files\Mozilla Firefox\searchplugins\Babylon.xml
Datei Gelöscht : C:\Program Files\Mozilla Firefox\searchplugins\Search the web.src
Datei Gelöscht : C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\rmjxb7of.default\searchplugins\search-the-web.xml
Datei Gelöscht : C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\rmjxb7of.default\searchplugins\Startsear.xml
Datei Gelöscht : C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\rmjxb7of.default\user.js
***** [ Verknüpfungen ] *****
***** [ Registrierungsdatenbank ] *****
Wert Gelöscht : HKCU\Software\Mozilla\Firefox\Extensions [happylyrics@hpyproductions.net]
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\babylon.com
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\BandooCore.EXE
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\DNSBHO.dll
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\kt_bho_dll.dll
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\WLXQuickTimeShellExt.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\BandooCore.BandooCore
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\BandooCore.BandooCore.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\BandooCore.ResourcesMngr
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\BandooCore.ResourcesMngr.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\BandooCore.SettingsMngr
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\BandooCore.SettingsMngr.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\BandooCore.StatisticMngr
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\BandooCore.StatisticMngr.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\bbylnApp.appCore
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\bbylnApp.appCore.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\DnsBHO.BHO
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\DnsBHO.BHO.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\kt_bho.KettleBho
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\kt_bho.KettleBho.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Prod.cap
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [ApnTbMon]
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{1301A8A5-3DFB-4731-A162-B357D00C9644}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{28A88B70-D874-4F73-BBBA-9B2B222FB7D6}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{AC662AF2-4601-4A68-84DF-A3FE83F1A5F9}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{00000001-4FEF-40D3-B3FA-E0531B897F98}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{27F69C85-64E1-43CE-98B5-3C9F22FB408E}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{5C3B5DAA-0AFF-4808-90FB-0F2F2D760E36}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{64697678-0000-0010-8000-00AA00389B71}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{B543EF05-9758-464E-9F37-4C28525B4A4C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{BB76A90B-2B4C-4378-8506-9A2B6E16943C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{C3AB94A4-BFD0-4BBA-A331-DE504F07D2DB}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{DFEFCDEE-CF1A-4FC8-89AF-189327213627}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{E46C8196-B634-44A1-AF6E-957C64278AB1}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{FD501041-8EBE-11CE-8183-00AA00577DA2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{FEFD3AF5-A346-4451-AA23-A3AD54915515}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{FFB9ADCB-8C79-4C29-81D3-74D46A93D370}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{06DE5702-44CF-4B79-B4EF-3DDF653358F5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{44B619BC-3D2B-4990-AA4F-9AA366921792}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{477F210A-2A86-4666-9C4B-1189634D2C84}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{4D5132DD-BB2B-4249-B5E0-D145A8C982E1}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{6F43FA77-C18F-4D0C-9C7E-958876FE2061}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{706D4A4B-184A-4434-B331-296B07493D2D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8BE10F21-185F-4CA0-B789-9921674C3993}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{94C0B25D-3359-4B10-B227-F96A77DB773F}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B0B75FBA-7288-4FD3-A9EB-7EE27FA65599}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B173667F-8395-4317-8DD6-45AD1FE00047}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B32672B3-F656-46E0-B584-FE61C0BB6037}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{BFE569F7-646C-4512-969B-9BE3E580D393}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C2434722-5C85-4CA0-BA69-1B67E7AB3D68}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C2996524-2187-441F-A398-CD6CB6B3D020}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DF948646-8BF4-450E-A059-CF8A4E0FE2BE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E047E227-5342-4D94-80F7-CFB154BF55BD}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E3F79BE9-24D4-4F4D-8C13-DF2C9899F82E}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E77EEF95-3E83-4BB8-9C0D-4A5163774997}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E96B49B0-E11F-48FC-984A-EEC29A4F57E1}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{FF871E51-2655-4D06-AED5-745962A96B32}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{841D5A49-E48D-413C-9C28-EB3D9081D705}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{86676E13-D6D8-4652-9FCF-F2047F1FB000}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A1B48071-416D-474E-A13B-BE5456E7FC31}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DFEFCDEE-CF1A-4FC8-89AF-189327213627}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{78F3A323-798E-4AEA-9A57-88F4B05FD5DD}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7AC3E13B-3BCA-4158-B330-F66DBB03C1B5}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{8F97BFF8-488B-4107-BCEE-B161AB4E4183}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{6087829B-114F-42A1-A72B-B4AEDCEA4E5B}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{8F97BFF8-488B-4107-BCEE-B161AB4E4183}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A1B48071-416D-474E-A13B-BE5456E7FC31}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{424624F4-C5DD-4E1D-BDD0-1E9C9B7799CC}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7F000001-DB8E-F89C-2FEC-49BF726F8C12}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9C8A3CA5-889E-4554-BEEC-EC0876E4E96A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9189560-573A-4FDE-B055-AE7B0F4CF080}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Schlüssel Gelöscht : HKCU\Software\AskPartnerNetwork
Schlüssel Gelöscht : HKCU\Software\ilivid
Schlüssel Gelöscht : HKCU\Software\Myfree Codec
Schlüssel Gelöscht : HKCU\Software\Softonic
Schlüssel Gelöscht : HKCU\Software\StartSearch
Schlüssel Gelöscht : HKCU\Software\vShare.tv
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Crossrider
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\HappyLyrics
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Plus-HD-1.6
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\searchqutoolbar
Schlüssel Gelöscht : HKLM\Software\AskPartnerNetwork
Schlüssel Gelöscht : HKLM\Software\Babylon
Schlüssel Gelöscht : HKLM\Software\Bandoo
Schlüssel Gelöscht : HKLM\Software\DataMngr
Schlüssel Gelöscht : HKLM\Software\DeviceVM
Schlüssel Gelöscht : HKLM\Software\Myfree Codec
Schlüssel Gelöscht : HKLM\Software\SearchquMediabarTb
Schlüssel Gelöscht : HKLM\Software\Tarma Installer
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\BabylonToolbar
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Searchqu 406 MediaBar
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\toolplugin
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{1AE46C09-2AB8-4EE5-88FB-08CD0FF7F2DF}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{79A765E1-C399-405B-85AF-466F52E918B0}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\BabylonToolbar
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\MyFreeCodec
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Plus-HD-1.6
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Searchqu 406 MediaBar
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\toolplugin
Schlüssel Gelöscht : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4
***** [ Browser ] *****
-\\ Internet Explorer v9.0.8112.16520
-\\ Mozilla Firefox v25.0.1 (de)
[ Datei : C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\rmjxb7of.default\prefs.js ]
Zeile gelöscht : user_pref("browser.babylon.HPOnNewTab", "search.babylon.com");
Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.aflt", "babclient");
Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.babExt", "");
Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.babTrack", "");
Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.hardId", "8673d2dd0000000000000025d36f35de");
Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.id", "8673d2dd0000000000000025d36f35de");
Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.instlDay", "15872");
Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.instlRef", "std");
Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.newTab", false);
Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.newTabUrl", "hxxp://search.babylon.com/?AF=100480&babsrc=NT_ss&mntrId=8673d2dd0000000000000025d36f35de");
Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.prdct", "BabylonToolbar");
Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.prtnrId", "babylon");
Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.smplGrp", "none");
Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.srcExt", "");
Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.tlbrId", "base");
Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.vrsn", "1.5.3.17");
Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.vrsnTs", "1.5.3.1722:01:34");
Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.vrsni", "1.5.3.17");
Zeile gelöscht : user_pref("extensions.a6c937ed6be664f729a60ce5789cc7f0953ba67122cae46e2b82195baea44e049com32002.32002.backgroundjs", "\n\n/*****************************************************************************[...]
Zeile gelöscht : user_pref("extensions.a6c937ed6be664f729a60ce5789cc7f0953ba67122cae46e2b82195baea44e049com32002.32002.plugins.plugin_13.name", "CrossriderAppUtils");
Zeile gelöscht : user_pref("extensions.a6c937ed6be664f729a60ce5789cc7f0953ba67122cae46e2b82195baea44e049com32002.32002.plugins.plugin_14.name", "CrossriderUtils");
Zeile gelöscht : user_pref("extensions.a6c937ed6be664f729a60ce5789cc7f0953ba67122cae46e2b82195baea44e049com32002.32002.plugins.plugin_78.name", "CrossriderInfo");
Zeile gelöscht : user_pref("extensions.crossrider.bic", "13f4ea2a13d46ac31319c0d13c973b1a");
Zeile gelöscht : user_pref("extensions.wajam.affiliate_id", "1401");
Zeile gelöscht : user_pref("extensions.wajam.firstrun", "false");
Zeile gelöscht : user_pref("extensions.wajam.log_send_info", "false");
Zeile gelöscht : user_pref("extensions.wajam.no_trace", "false");
Zeile gelöscht : user_pref("extensions.wajam.server_current_mapping_version", "0.21087");
Zeile gelöscht : user_pref("extensions.wajam.trace_log", "1374224100000 - onFlagInfoReceived - Same server mapping version, don't update\n1374224100000 - onFlagInfoReceived - Saving server mapping version\n13742241000[...]
Zeile gelöscht : user_pref("extensions.wajam.unique_id", "C6D4A0104ECC3CCF46FF4D18592B3613");
Zeile gelöscht : user_pref("extensions.wajam.user_current_mapping_version", "0");
Zeile gelöscht : user_pref("extensions.wajam.version", "1.26");
Zeile gelöscht : user_pref("extensions.wajam.website_version", "1.00274.0");
Zeile gelöscht : user_pref("extensions.wrc.SearchRules.ask.com.url", "^hxxp(s)?\\:\\/\\/(.+\\.)?ask\\.com\\/.*");
Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.AutoSearchEventData", "auto%20search");
Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.ClearCacheDate", 20);
Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.DisplayEULA", false);
Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.DnsCatchEventData", "dns%20catch");
Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.FirstLaunchShown", true);
Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.LoadLayoutDate.62781", 20);
Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.NewTabSearchEventData", "tab%20search");
Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.ShowRecommendedOptions", true);
Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.StateReportDate", "1384880451567");
Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.TopRightSearchEventData", "top%20right%20search");
Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.Uninstall", false);
Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.beforeInstallSaved", true);
Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.beforeinstall.homepage", "about%3Ahome");
Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.beforeinstall.search", "Search%20the%20web");
Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.customNewTab", true);
Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.helpUsImprove", true);
Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.hideOthers", false);
Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.processAddrBar", false);
Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.restoreSearch", false);
Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.searchHistory", true);
Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.session", "33D1B2D3C2E7759F3EDA116FE984BE60092B5A491BBE51EA55079E856D2130F36DDA2C45629ABF697807A8F6D2A758BC8104320523F9EBC390AAD06D8CE4BBDD");
Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.showFirstLaunchOptions", false);
Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.tb_lang", "en");
Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.tool_id", "62781");
Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.user_id", "83760612");
Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.user_key", "7c3f698c20a7b0480a8cb5fa365cddce56a85e61");
Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.user_layouts", "62781");
Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.user_lnames", "Gamers%20Unite%21%20Snag%20Bar");
Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.xml_service_url", "64e3a27980eeceb34248bc3e680b4e63");
Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.yahooSearch", true);
-\\ Google Chrome v31.0.1650.57
[ Datei : C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Gelöscht : homepage
Gelöscht : search_url
Gelöscht : keyword
*************************
AdwCleaner[R0].txt - [22631 octets] - [20/11/2013 22:52:05]
AdwCleaner[S0].txt - [22605 octets] - [20/11/2013 22:54:09]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [22666 octets] ########## Shritt 2: Code:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Windows Vista (TM) Home Premium x86
Ran by pc on 21.11.2013 at 6:30:03,17
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{B1A8EF24-77E2-41DC-BD5D-A86DF97AC341}
~~~ Files
Successfully deleted: [File] "C:\Users\pc\appdata\locallow\microsoft\silverlight\outofbrowser\index\portal.qtrax.com"
~~~ Folders
Successfully deleted: [Folder] "C:\Users\pc\appdata\locallow\datamngr"
Successfully deleted: [Folder] "C:\Users\pc\music\qtrax media library"
Successfully deleted: [Empty Folder] C:\Users\pc\appdata\local\{455209B0-C795-4521-A101-8BB285620378}
~~~ FireFox
Successfully deleted: [File] C:\user.js
Successfully deleted: [Folder] C:\Users\pc\AppData\Roaming\mozilla\firefox\profiles\rmjxb7of.default\extensions\6c937ed6-be66-4f72-9a60-ce5789cc7f09@53ba6712-2cae-46e2-b821-95baea44e049.com
Successfully deleted: [Folder] C:\Users\pc\AppData\Roaming\mozilla\firefox\profiles\rmjxb7of.default\extensions\staged
Emptied folder: C:\Users\pc\AppData\Roaming\mozilla\firefox\profiles\rmjxb7of.default\minidumps [248 files]
~~~ Chrome
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Policies\Google [Blacklisted Policy]
Successfully deleted: [Folder] C:\Users\pc\appdata\local\Google\Chrome\User Data\Default\Extensions\jidjhchcblhlapbcpheibgdjkajekhbh
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 21.11.2013 at 6:33:39,06
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Schritt 3:
FRST Logfile:
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 18-11-2013
Ran by pc (administrator) on DANNY on 21-11-2013 06:36:20
Running from C:\Users\pc\Downloads
Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) OS Language: German Standard
Internet Explorer Version 9
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\system32\SLsvc.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(ASUSTek Computer Inc.) C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\ASLDRSrv.exe
() C:\Program Files\ATKGFNEX\GFNEXSrv.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\system32\WLANExt.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
() C:\Program Files\ASUS\ASUS Live Update\ALU.exe
(ATK) C:\Program Files\ASUS\Splendid\ACMON.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\HControl.exe
(ASUSTeK) C:\Windows\System32\ACEngSvr.exe
(ASUS) C:\Program Files\ASUS\ASUS CopyProtect\aspg.exe
(ASUS) C:\Program Files\ASUS\SmartLogon\sensorsrv.exe
(ATK) C:\Program Files\P4G\BatteryLife.exe
() C:\Program Files\ASUS\Wireless Console 3\wcourier.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Teruten) C:\Windows\system32\FsUsbExService.Exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCui.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
(CyberLink) C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
() C:\Program Files\CyberLink\Shared files\RichVideo.exe
(TomTom) C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(ELAN Microelectronic Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(AlcorMicro Co., Ltd.) C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe
(ASUS) C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe
(ASUS) C:\Program Files\ASUS\ATK Media\DMedia.exe
(ASUS) C:\Windows\AsScrPro.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\ATKOSD.exe
(ASUSTek Computer Inc.) C:\Program Files\ASUS\ASUS Data Security Manager\ADSMTray.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\KBFiltr.exe
(CyberLink Corp.) C:\Program Files\CyberLink\PowerDVD9\PDVD9Serv.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\WDC.exe
(Sony Corporation) C:\Program Files\Sony\ReaderDesktop\appHelper\ReaderAppHelper.exe
(Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
(Hewlett-Packard) C:\Program Files\HP\HP Software Update\hpwuschd2.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\Samsung New PC Studio\NPSAgent.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Internet Services\iCloudServices.exe
(Samsung) C:\Program Files\Samsung\Kies\Kies.exe
(Samsung) C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
(Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
(TomTom) C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe
(Hewlett-Packard Co.) C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
(SRS Labs, Inc.) C:\Program Files\SRS Labs\SRS Premium Sound Control Panel\SRSPremiumPanel.exe
(Dropbox, Inc.) C:\Users\pc\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Microsoft Corporation) C:\Windows\ehome\ehmsas.exe
(Hewlett-Packard Co.) C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Hewlett-Packard Co.) C:\Program Files\HP\Digital Imaging\bin\hpqbam08.exe
(Hewlett-Packard) C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
(Microsoft Corporation.) C:\Program Files\Microsoft\BingBar\7.2.241.0\SeaPort.exe
(Microsoft Corporation) C:\Windows\system32\conime.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [Windows Defender] - C:\Program Files\Windows Defender\MSASCui.exe [1008184 2008-01-21] (Microsoft Corporation)
HKLM\...\Run: [DisableS3S4] - c:\DisableS3S4.cmd
HKLM\...\Run: [UpdateLBPShortCut] - C:\Program Files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [222504 2009-05-20] (CyberLink Corp.)
HKLM\...\Run: [CLMLServer] - C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe [104936 2008-07-19] (CyberLink)
HKLM\...\Run: [UpdateP2GoShortCut] - C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [218408 2008-12-04] (CyberLink Corp.)
HKLM\...\Run: [ETDWare] - C:\Program Files\Elantech\ETDCtrl.exe [497024 2009-07-30] (ELAN Microelectronic Corp.)
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [7612960 2009-07-10] (Realtek Semiconductor)
HKLM\...\Run: [AmIcoSinglun] - C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe [237568 2009-04-09] (AlcorMicro Co., Ltd.)
HKLM\...\Run: [HControlUser] - C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM\...\Run: [ATKOSD2] - C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe [8493624 2009-07-07] (ASUS)
HKLM\...\Run: [ATKMEDIA] - C:\Program Files\ASUS\ATK Media\DMedia.exe [170624 2009-08-20] (ASUS)
HKLM\...\Run: [ASUS Screen Saver Protector] - C:\Windows\AsScrPro.exe [3054136 2009-09-03] (ASUS)
HKLM\...\Run: [ASUS Camera ScreenSaver] - C:\Windows\AsScrProlog.exe [72248 2009-09-03] (ASUS)
HKLM\...\Run: [ADSMTray] - C:\Program Files\ASUS\ASUS Data Security Manager\ADSMTray.exe [272952 2009-06-24] (ASUSTek Computer Inc.)
HKLM\...\Run: [MDS_Menu] - C:\Program Files\CyberLink\MediaShowEspresso\MUITransfer\MUIStartMenu.exe [218408 2009-02-25] (CyberLink Corp.)
HKLM\...\Run: [UpdatePDRShortCut] - C:\Program Files\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe [218408 2008-12-04] (CyberLink Corp.)
HKLM\...\Run: [RemoteControl9] - C:\Program Files\CyberLink\PowerDVD9\PDVD9Serv.exe [87336 2009-04-28] (CyberLink Corp.)
HKLM\...\Run: [PDVD9LanguageShortcut] - C:\Program Files\CyberLink\PowerDVD9\Language\Language.exe [50472 2009-04-28] (CyberLink Corp.)
HKLM\...\Run: [UpdatePSTShortCut] - C:\Program Files\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe [210216 2009-08-15] (CyberLink Corp.)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [NvCplDaemon] - RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [NPSStartup] - [x]
HKLM\...\Run: [APSDaemon] - C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM\...\Run: [Reader Application Helper] - C:\Program Files\Sony\ReaderDesktop\appHelper\ReaderAppHelper.exe [898952 2012-11-08] (Sony Corporation)
HKLM\...\Run: [QuickTime Task] - C:\Program Files\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM\...\Run: [KiesTrayAgent] - C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [311152 2013-07-26] (Samsung Electronics Co., Ltd.)
HKLM\...\Run: [HP Software Update] - C:\Program Files\HP\HP Software Update\hpwuschd2.exe [49208 2011-10-28] (Hewlett-Packard)
HKLM\...\Run: [] - [x]
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\avastui.exe [3567800 2013-10-19] (AVAST Software)
HKLM\...\Run: [iTunesHelper] - C:\Program Files\iTunes\iTunesHelper.exe [152392 2013-11-02] (Apple Inc.)
HKCU\...\Run: [ehTray.exe] - C:\Windows\ehome\ehtray.exe [125952 2008-01-21] (Microsoft Corporation)
HKCU\...\Run: [AutoStartNPSAgent] - C:\Program Files\Samsung\Samsung New PC Studio\NPSAgent.exe [102400 2011-10-13] (Samsung Electronics Co., Ltd.)
HKCU\...\Run: [ApplePhotoStreams] - C:\Program Files\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [59720 2013-04-05] (Apple Inc.)
HKCU\...\Run: [swg] - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2009-09-03] (Google Inc.)
HKCU\...\Run: [MobileDocuments] - C:\Program Files\Common Files\Apple\Internet Services\ubd.exe
HKCU\...\Run: [Facebook Update] - C:\Users\pc\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2012-07-12] (Facebook Inc.)
HKCU\...\Run: [iCloudServices] - C:\Program Files\Common Files\Apple\Internet Services\iCloudServices.exe [59720 2013-04-05] (Apple Inc.)
HKCU\...\Run: [KiesPreload] - C:\Program Files\Samsung\Kies\Kies.exe [1564016 2013-07-26] (Samsung)
HKCU\...\Run: [KiesAirMessage] - C:\Program Files\Samsung\Kies\KiesAirMessage.exe -startup
HKCU\...\Run: [] - C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [844656 2013-07-26] (Samsung)
HKCU\...\Run: [WMPNSCFG] - C:\Program Files\Windows Media Player\wmpnscfg.exe [202240 2008-01-21] (Microsoft Corporation)
HKCU\...\Run: [Skype] - C:\Program Files\Skype\Phone\Skype.exe [20472992 2013-10-02] (Skype Technologies S.A.)
HKCU\...\Run: [TomTomHOME.exe] - C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe [248208 2013-07-02] (TomTom)
HKU\Default\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\Default User\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
Lsa: [Notification Packages] scecli C:\Program Files\ASUS\ASUS Data Security Manager\ASPWDFLT
Startup: C:\Users\pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\pc\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus.msn.com
HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.bing.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com/ig/redirectdomain?brand=ASUS&bmod=ASUS
SearchScopes: HKLM - DefaultScope value is missing.
BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
BHO: DivX Plus Web Player HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
BHO: No Name - {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\Microsoft\BingBar\7.2.241.0\BingExt.dll (Microsoft Corporation.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_BHO.dll (Hewlett-Packard Co.)
Toolbar: HKLM - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\Microsoft\BingBar\7.2.241.0\BingExt.dll (Microsoft Corporation.)
Toolbar: HKLM - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation)
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
FireFox:
========
FF ProfilePath: C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\rmjxb7of.default
FF NewTab: hxxp://suche.web.de/starthp?src=tb_newtab_ff,exp_nafs_treatment
FF DefaultSearchEngine: Ask Search
FF SearchEngineOrder.1: Ask Search
FF SelectedSearchEngine: Ask Search
FF Homepage: hxxp://www.google.com/firefox
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_11_9_900_152.dll ()
FF Plugin: @Apple.com/iTunes,version=1.0 - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin: @divx.com/DivX Browser Plugin,version=1.0.0 - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @google.com/npPicasa3,version=3.0.0 - C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.3 - C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin: @microsoft.com/WLPG,version=14.0.8117.0416 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @sony.com/ReaderDesktop - C:\Program Files\Sony\ReaderDesktop\npreaderdetectmoz.dll (Sony Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @veetle.com/veetleCorePlugin,version=0.9.18 - C:\Program Files\Veetle\plugins\npVeetle.dll (Veetle Inc)
FF Plugin: @veetle.com/veetlePlayerPlugin,version=0.9.18 - C:\Program Files\Veetle\Player\npvlc.dll (Veetle Inc)
FF Plugin: @videolan.org/vlc,version=2.1.0 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\pc\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF SearchPlugin: C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\rmjxb7of.default\searchplugins\englische-ergebnisse.xml
FF SearchPlugin: C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\rmjxb7of.default\searchplugins\gmx-suche.xml
FF SearchPlugin: C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\rmjxb7of.default\searchplugins\lastminute.xml
FF SearchPlugin: C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\rmjxb7of.default\searchplugins\search-the-web.xml
FF SearchPlugin: C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\rmjxb7of.default\searchplugins\webde-suche.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: ProxTube - Gesperrte YouTube Videos entsperren - C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\rmjxb7of.default\Extensions\ich@maltegoetz.de
FF Extension: ProxTube - Gesperrte YouTube Videos entsperren - C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\rmjxb7of.default\Extensions\{2541D29A-DB9E-4c1e-949A-31EFB4AEF4E7}
FF Extension: toolbar - C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\rmjxb7of.default\Extensions\toolbar@web.de.xpi
FF Extension: toolbar_ORJ-V7 - C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\rmjxb7of.default\Extensions\toolbar_ORJ-V7@apn.ask.com.xpi
FF Extension: stylish - C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\rmjxb7of.default\Extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi
FF Extension: No Name - C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\rmjxb7of.default\Extensions\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}.xpi
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0034-ABCDEFFEDCBA}
FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}
FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF HKLM\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF HKLM\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Program Files\DivX\DivX Plus Web Player\firefox\DivXHTML5
FF Extension: DivX Plus Web Player HTML5 <video> - C:\Program Files\DivX\DivX Plus Web Player\firefox\DivXHTML5
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF HKCU\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
Chrome:
=======
CHR Extension: (YouTube) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0
CHR Extension: (Google Search) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0
CHR Extension: (avast! Online Security) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.6_0
CHR Extension: (Skype Click to Call) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.9.0.9216_0
CHR Extension: (Chrome In-App Payments service) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_0
CHR Extension: (DivX Plus Web Player HTML5 \u003Cvideo\u003E) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0
CHR Extension: (Gmail) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0
CHR HKLM\...\Chrome\Extension: [ealchnonpofjocgofjpopjdoegbbkofj] - C:\Program Files\HappyLyrics\Chrome.crx
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx
CHR HKLM\...\Chrome\Extension: [nneajnkjbffgblleaoojgaacokifdkhm] - C:\Program Files\DivX\DivX Plus Web Player\chrome\DivXHTML5\DivXHTML5.crx
========================== Services (Whitelisted) =================
R2 ADSMService; C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe [225280 2008-03-31] (ASUSTek Computer Inc.)
R2 ASLDRService; C:\Program Files\ASUS\ATK Hotkey\ASLDRSrv.exe [84536 2009-06-16] (ASUS)
R2 ATKGFNEXSrv; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [94208 2007-08-08] ()
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2013-10-19] (AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [179088 2013-10-19] (AVAST Software)
R2 MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 RichVideo; C:\Program Files\CyberLink\Shared files\RichVideo.exe [247152 2009-01-21] ()
S2 Norton Internet Security; "C:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccSvcHst.exe" /s "Norton Internet Security" /m "C:\Program Files\Norton Internet Security\Engine\16.0.0.125\diMaster.dll" /prefetch:1
==================== Drivers (Whitelisted) ====================
S3 AmUStor; C:\Windows\System32\drivers\AmUStor.SYS [25600 2009-05-08] (Alcor Micro, Corp.)
R0 AsDsm; C:\Windows\System32\Drivers\AsDsm.sys [30264 2009-09-03] (ASUSTek Computer Inc)
R2 ASMMAP; C:\Program Files\ATKGFNEX\ASMMAP.sys [13880 2007-07-24] ()
R2 aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [35656 2013-10-19] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [26136 2013-10-19] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [70384 2013-10-19] (AVAST Software)
R0 aswNdis; C:\Windows\System32\DRIVERS\aswNdis.sys [12112 2013-09-25] (ALWIL Software)
R0 aswNdis2; C:\Windows\System32\Drivers\aswNdis2.sys [247192 2013-10-19] (AVAST Software)
R1 AswRdr; C:\Windows\system32\drivers\aswRdr.sys [54832 2013-10-19] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [49944 2013-10-19] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [774392 2013-10-19] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [403440 2013-11-09] (AVAST Software)
R1 aswTdi; C:\Windows\system32\drivers\aswTdi.sys [57672 2013-10-19] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [178304 2013-10-19] ()
R3 ETD; C:\Windows\System32\DRIVERS\ETD.sys [87040 2009-07-29] (ELAN Microelectronic Corp.)
R3 FsUsbExDisk; C:\Windows\system32\FsUsbExDisk.SYS [36608 2009-03-31] ()
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [13880 2008-11-03] ( )
R3 L1C; C:\Windows\System32\DRIVERS\L1C60x86.sys [50688 2009-07-27] (Atheros Communications, Inc.)
R0 lullaby; C:\Windows\System32\DRIVERS\lullaby.sys [15416 2009-06-18] (Windows (R) Win 7 DDK provider)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [22856 2013-04-04] (Malwarebytes Corporation)
R3 MTsensor; C:\Windows\System32\DRIVERS\ATKACPI.sys [14392 2008-12-24] (ATK0100)
R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1752704 2008-08-11] ()
S3 IpInIp; system32\DRIVERS\ipinip.sys [x]
S3 NAVENG; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20080829.024\NAVENG.SYS [x]
S3 NAVEX15; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20080829.024\NAVEX15.SYS [x]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [x]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [x]
S1 SRTSP; \??\C:\Windows\system32\drivers\NIS\1000000.07D\SRTSP.SYS [x]
S1 SRTSPX; \??\C:\Windows\system32\drivers\NIS\1000000.07D\SRTSPX.SYS [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-11-21 06:33 - 2013-11-21 06:33 - 00001987 _____ C:\Users\pc\Desktop\JRT.txt
2013-11-21 06:29 - 2013-11-21 06:29 - 00000000 ____D C:\Windows\ERUNT
2013-11-21 06:25 - 2013-11-21 06:25 - 01034531 _____ (Thisisu) C:\Users\pc\Desktop\JRT.exe
2013-11-20 22:52 - 2013-11-20 23:00 - 00000000 ____D C:\AdwCleaner
2013-11-20 22:49 - 2013-11-20 22:50 - 01085542 _____ C:\Users\pc\Desktop\adwcleaner.exe
2013-11-20 19:16 - 2013-11-20 21:11 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2013-11-20 19:16 - 2013-11-20 20:18 - 00105176 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2013-11-20 19:14 - 2013-11-20 20:17 - 00075992 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2013-11-20 19:13 - 2013-11-20 21:11 - 00000000 ____D C:\Users\pc\Desktop\mbar
2013-11-20 19:11 - 2013-11-20 19:11 - 12576792 _____ (Malwarebytes Corp.) C:\Users\pc\Desktop\mbar-1.07.0.1007.exe
2013-11-20 06:55 - 2013-11-20 06:55 - 00000000 ____D C:\Users\pc\Documents\Neuer Ordner
2013-11-20 06:42 - 2013-11-20 06:42 - 00027433 _____ C:\Users\pc\Downloads\Addition.txt
2013-11-20 06:40 - 2013-11-21 06:36 - 00025433 _____ C:\Users\pc\Downloads\FRST.txt
2013-11-20 06:40 - 2013-11-20 06:40 - 00000000 ____D C:\FRST
2013-11-20 06:37 - 2013-11-20 06:37 - 01957964 _____ (Farbar) C:\Users\pc\Downloads\FRST64.exe
2013-11-20 06:36 - 2013-11-20 06:36 - 00000514 _____ C:\Users\pc\Desktop\FRST - Verknüpfung.lnk
2013-11-20 06:35 - 2013-11-20 06:35 - 01090881 _____ (Farbar) C:\Users\pc\Downloads\FRST.exe
2013-11-19 20:09 - 2013-11-19 20:09 - 00000913 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-11-19 20:09 - 2013-11-19 20:09 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware
2013-11-19 20:09 - 2013-04-04 14:50 - 00022856 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2013-11-19 20:08 - 2013-11-19 20:08 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\pc\Downloads\mbam-setup-1.75.0.1300(1).exe
2013-11-19 06:16 - 2013-11-19 06:16 - 00160520 _____ C:\Windows\Minidump\Mini111913-01.dmp
2013-11-17 08:56 - 2013-11-17 08:56 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-11-16 23:08 - 2013-11-16 23:08 - 00160520 _____ C:\Windows\Minidump\Mini111613-01.dmp
2013-11-15 06:44 - 2013-10-13 11:42 - 12344832 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-11-15 06:44 - 2013-10-13 11:08 - 09739264 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-11-15 06:44 - 2013-10-13 10:48 - 01806848 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-11-15 06:44 - 2013-10-13 10:37 - 01104896 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-11-15 06:44 - 2013-10-13 10:35 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-11-15 06:44 - 2013-10-13 10:35 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-11-15 06:44 - 2013-10-13 10:33 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-11-15 06:44 - 2013-10-13 10:32 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-11-15 06:44 - 2013-10-13 10:30 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-11-15 06:44 - 2013-10-13 10:30 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-11-15 06:44 - 2013-10-13 10:29 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-11-15 06:44 - 2013-10-13 10:27 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-11-15 06:44 - 2013-10-13 10:27 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-11-15 06:44 - 2013-10-13 10:26 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-11-15 06:44 - 2013-10-13 10:25 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-11-15 06:44 - 2013-10-13 10:20 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-11-14 20:33 - 2013-11-14 20:34 - 00160520 _____ C:\Windows\Minidump\Mini111413-01.dmp
2013-11-14 19:08 - 2013-10-11 03:08 - 00444928 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2013-11-14 19:08 - 2013-10-11 03:07 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2013-11-14 19:08 - 2013-10-11 01:39 - 00218228 _____ C:\Windows\system32\WFP.TMF
2013-11-14 19:08 - 2013-10-03 13:45 - 00993792 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2013-11-14 19:08 - 2013-10-03 13:45 - 00297984 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2013-11-12 19:45 - 2013-11-12 19:45 - 00001671 _____ C:\Users\Public\Desktop\iTunes.lnk
2013-11-12 19:44 - 2013-11-12 19:45 - 00000000 ____D C:\ProgramData\188F1432-103A-4ffb-80F1-36B633C5C9E1
2013-11-12 19:44 - 2013-11-12 19:45 - 00000000 ____D C:\Program Files\iTunes
2013-11-12 19:44 - 2013-11-12 19:44 - 00000000 ____D C:\Program Files\iPod
2013-11-12 19:11 - 2013-11-12 19:12 - 00160520 _____ C:\Windows\Minidump\Mini111213-01.dmp
2013-11-10 10:21 - 2013-11-10 10:21 - 00160520 _____ C:\Windows\Minidump\Mini111013-04.dmp
2013-11-10 09:52 - 2013-11-10 09:52 - 00160520 _____ C:\Windows\Minidump\Mini111013-03.dmp
2013-11-10 09:25 - 2013-11-10 09:25 - 00160520 _____ C:\Windows\Minidump\Mini111013-02.dmp
2013-11-10 08:57 - 2013-11-10 08:57 - 00160520 _____ C:\Windows\Minidump\Mini111013-01.dmp
2013-11-08 10:01 - 2013-11-08 10:01 - 00160520 _____ C:\Windows\Minidump\Mini110813-01.dmp
2013-11-05 19:53 - 2013-11-05 19:53 - 00160520 _____ C:\Windows\Minidump\Mini110513-03.dmp
2013-11-05 19:07 - 2013-11-05 19:08 - 00160520 _____ C:\Windows\Minidump\Mini110513-02.dmp
2013-11-05 18:39 - 2013-11-05 18:39 - 00160520 _____ C:\Windows\Minidump\Mini110513-01.dmp
2013-11-03 10:42 - 2013-11-03 10:42 - 00160520 _____ C:\Windows\Minidump\Mini110313-01.dmp
2013-11-02 19:08 - 2013-11-04 15:26 - 00023288 _____ C:\Users\pc\Documents\Social case study report.odt
2013-11-01 02:29 - 2013-11-01 02:29 - 00160520 _____ C:\Windows\Minidump\Mini110113-01.dmp
2013-10-31 22:47 - 2013-10-31 22:48 - 00160520 _____ C:\Windows\Minidump\Mini103113-03.dmp
2013-10-31 19:53 - 2013-10-31 19:53 - 00160520 _____ C:\Windows\Minidump\Mini103113-02.dmp
2013-10-31 19:25 - 2013-10-31 19:25 - 00160520 _____ C:\Windows\Minidump\Mini103113-01.dmp
2013-10-29 17:19 - 2013-10-29 17:19 - 00160520 _____ C:\Windows\Minidump\Mini102913-02.dmp
2013-10-29 16:46 - 2013-10-29 16:46 - 00160520 _____ C:\Windows\Minidump\Mini102913-01.dmp
2013-10-27 09:26 - 2013-10-27 09:26 - 00160520 _____ C:\Windows\Minidump\Mini102713-02.dmp
2013-10-27 08:06 - 2013-10-27 08:06 - 00160520 _____ C:\Windows\Minidump\Mini102713-01.dmp
2013-10-26 22:48 - 2013-10-26 22:48 - 00000000 ____D C:\Users\pc\AppData\Roaming\OpenOffice
2013-10-26 22:44 - 2013-10-26 22:44 - 00000981 _____ C:\Users\Public\Desktop\OpenOffice 4.0.1.lnk
2013-10-26 22:43 - 2013-10-26 22:43 - 00000000 ____D C:\Program Files\OpenOffice 4
2013-10-26 22:38 - 2013-11-03 10:41 - 00017020 _____ C:\Users\pc\Documents\Ausgaben Boot.ods
2013-10-26 05:46 - 2013-10-26 05:48 - 163606685 _____ C:\Users\pc\Downloads\Apache_OpenOffice_4.0.1_Win_x86_install_de.exe
2013-10-25 18:45 - 2013-10-25 18:45 - 00570745 _____ C:\Users\pc\Downloads\DriverManagerv1.00.zip
2013-10-25 18:45 - 2013-10-25 18:45 - 00000993 _____ C:\Users\pc\Desktop\Driver Manager W2K-XP.lnk
2013-10-25 18:45 - 2013-10-25 18:45 - 00000000 ____D C:\Program Files\L5 Software Group
2013-10-25 06:29 - 2013-10-25 06:29 - 00000000 ____D C:\Users\pc\AppData\Roaming\Malwarebytes
2013-10-25 06:29 - 2013-10-25 06:29 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-10-25 06:28 - 2013-10-25 06:28 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\pc\Downloads\mbam-setup-1.75.0.1300.exe
2013-10-25 06:17 - 2013-10-25 06:17 - 04054000 _____ (LionSea Software ) C:\Users\pc\Downloads\setup.exe
2013-10-25 05:52 - 2013-10-25 05:52 - 00160520 _____ C:\Windows\Minidump\Mini102513-01.dmp
2013-10-22 15:36 - 2013-10-22 15:36 - 00160520 _____ C:\Windows\Minidump\Mini102213-02.dmp
2013-10-22 15:19 - 2013-10-22 15:19 - 00004237 _____ C:\Windows\system32\jupdate-1.7.0_45-b18.log
2013-10-22 15:19 - 2013-10-08 06:50 - 00094632 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2013-10-22 15:19 - 2013-10-08 06:46 - 00264616 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2013-10-22 15:19 - 2013-10-08 06:46 - 00175016 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2013-10-22 15:19 - 2013-10-08 06:46 - 00174504 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2013-10-22 15:05 - 2013-10-22 15:06 - 00160520 _____ C:\Windows\Minidump\Mini102213-01.dmp
==================== One Month Modified Files and Folders =======
2013-11-21 06:36 - 2013-11-20 06:40 - 00025433 _____ C:\Users\pc\Downloads\FRST.txt
2013-11-21 06:33 - 2013-11-21 06:33 - 00001987 _____ C:\Users\pc\Desktop\JRT.txt
2013-11-21 06:29 - 2013-11-21 06:29 - 00000000 ____D C:\Windows\ERUNT
2013-11-21 06:28 - 2009-09-03 08:02 - 00048354 _____ C:\ProgramData\nvModes.dat
2013-11-21 06:28 - 2009-09-03 08:02 - 00048354 _____ C:\ProgramData\nvModes.001
2013-11-21 06:25 - 2013-11-21 06:25 - 01034531 _____ (Thisisu) C:\Users\pc\Desktop\JRT.exe
2013-11-21 06:19 - 2011-09-12 15:11 - 00000000 ____D C:\Users\pc\AppData\Roaming\Skype
2013-11-21 06:12 - 2012-06-02 20:02 - 00001126 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2923644513-85853068-132639478-1000UA.job
2013-11-21 06:05 - 2011-09-11 09:51 - 00001098 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-11-21 05:57 - 2012-04-02 08:44 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-11-21 05:02 - 2006-11-02 13:47 - 00003616 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2013-11-21 05:02 - 2006-11-02 13:47 - 00003616 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2013-11-21 03:00 - 2009-09-03 06:59 - 01768590 _____ C:\Windows\WindowsUpdate.log
2013-11-20 23:05 - 2013-06-16 21:13 - 00000000 ___RD C:\Users\pc\Dropbox
2013-11-20 23:05 - 2013-06-16 21:01 - 00000000 ____D C:\Users\pc\AppData\Roaming\Dropbox
2013-11-20 23:04 - 2011-09-10 14:22 - 00000000 ____D C:\Users\pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASUS Video Magic
2013-11-20 23:03 - 2011-09-11 15:33 - 00000374 _____ C:\Windows\system32\Drivers\etc\hosts.ics
2013-11-20 23:02 - 2011-09-11 09:51 - 00001094 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-11-20 23:02 - 2006-11-02 14:01 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-11-20 23:01 - 2006-11-02 14:01 - 00032516 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-11-20 23:00 - 2013-11-20 22:52 - 00000000 ____D C:\AdwCleaner
2013-11-20 22:54 - 2011-09-10 14:22 - 00000000 ____D C:\Users\pc
2013-11-20 22:50 - 2013-11-20 22:49 - 01085542 _____ C:\Users\pc\Desktop\adwcleaner.exe
2013-11-20 21:11 - 2013-11-20 19:16 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2013-11-20 21:11 - 2013-11-20 19:13 - 00000000 ____D C:\Users\pc\Desktop\mbar
2013-11-20 20:18 - 2013-11-20 19:16 - 00105176 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2013-11-20 20:17 - 2013-11-20 19:14 - 00075992 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2013-11-20 19:11 - 2013-11-20 19:11 - 12576792 _____ (Malwarebytes Corp.) C:\Users\pc\Desktop\mbar-1.07.0.1007.exe
2013-11-20 06:55 - 2013-11-20 06:55 - 00000000 ____D C:\Users\pc\Documents\Neuer Ordner
2013-11-20 06:42 - 2013-11-20 06:42 - 00027433 _____ C:\Users\pc\Downloads\Addition.txt
2013-11-20 06:40 - 2013-11-20 06:40 - 00000000 ____D C:\FRST
2013-11-20 06:37 - 2013-11-20 06:37 - 01957964 _____ (Farbar) C:\Users\pc\Downloads\FRST64.exe
2013-11-20 06:36 - 2013-11-20 06:36 - 00000514 _____ C:\Users\pc\Desktop\FRST - Verknüpfung.lnk
2013-11-20 06:35 - 2013-11-20 06:35 - 01090881 _____ (Farbar) C:\Users\pc\Downloads\FRST.exe
2013-11-19 21:57 - 2011-11-30 10:15 - 00000000 ____D C:\Windows\Minidump
2013-11-19 21:57 - 2008-01-21 03:47 - 00286912 _____ C:\Windows\PFRO.log
2013-11-19 20:09 - 2013-11-19 20:09 - 00000913 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-11-19 20:09 - 2013-11-19 20:09 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware
2013-11-19 20:08 - 2013-11-19 20:08 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\pc\Downloads\mbam-setup-1.75.0.1300(1).exe
2013-11-19 18:12 - 2012-06-02 20:02 - 00001104 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2923644513-85853068-132639478-1000Core.job
2013-11-19 06:16 - 2013-11-19 06:16 - 00160520 _____ C:\Windows\Minidump\Mini111913-01.dmp
2013-11-19 06:16 - 2011-11-30 10:15 - 369651810 _____ C:\Windows\MEMORY.DMP
2013-11-18 18:57 - 2012-05-06 18:51 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2013-11-17 08:56 - 2013-11-17 08:56 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-11-16 23:08 - 2013-11-16 23:08 - 00160520 _____ C:\Windows\Minidump\Mini111613-01.dmp
2013-11-15 19:00 - 2012-04-02 08:44 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2013-11-15 19:00 - 2011-09-15 15:19 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2013-11-15 19:00 - 2011-09-11 08:25 - 00000000 ____D C:\Users\pc\AppData\Local\Adobe
2013-11-15 07:09 - 2006-11-02 12:18 - 00000000 ____D C:\Windows\rescache
2013-11-15 06:48 - 2006-11-02 12:18 - 00000000 ____D C:\Windows\system32\de-DE
2013-11-15 06:43 - 2013-07-15 07:08 - 00000000 ____D C:\Windows\system32\MRT
2013-11-15 06:40 - 2006-11-02 11:24 - 80340640 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2013-11-14 20:34 - 2013-11-14 20:33 - 00160520 _____ C:\Windows\Minidump\Mini111413-01.dmp
2013-11-12 19:45 - 2013-11-12 19:45 - 00001671 _____ C:\Users\Public\Desktop\iTunes.lnk
2013-11-12 19:45 - 2013-11-12 19:44 - 00000000 ____D C:\ProgramData\188F1432-103A-4ffb-80F1-36B633C5C9E1
2013-11-12 19:45 - 2013-11-12 19:44 - 00000000 ____D C:\Program Files\iTunes
2013-11-12 19:44 - 2013-11-12 19:44 - 00000000 ____D C:\Program Files\iPod
2013-11-12 19:44 - 2011-12-29 18:07 - 00000000 ____D C:\Program Files\Common Files\Apple
2013-11-12 19:12 - 2013-11-12 19:11 - 00160520 _____ C:\Windows\Minidump\Mini111213-01.dmp
2013-11-10 10:21 - 2013-11-10 10:21 - 00160520 _____ C:\Windows\Minidump\Mini111013-04.dmp
2013-11-10 09:52 - 2013-11-10 09:52 - 00160520 _____ C:\Windows\Minidump\Mini111013-03.dmp
2013-11-10 09:25 - 2013-11-10 09:25 - 00160520 _____ C:\Windows\Minidump\Mini111013-02.dmp
2013-11-10 08:57 - 2013-11-10 08:57 - 00160520 _____ C:\Windows\Minidump\Mini111013-01.dmp
2013-11-09 06:02 - 2013-09-24 14:55 - 00403440 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2013-11-08 10:01 - 2013-11-08 10:01 - 00160520 _____ C:\Windows\Minidump\Mini110813-01.dmp
2013-11-05 19:53 - 2013-11-05 19:53 - 00160520 _____ C:\Windows\Minidump\Mini110513-03.dmp
2013-11-05 19:08 - 2013-11-05 19:07 - 00160520 _____ C:\Windows\Minidump\Mini110513-02.dmp
2013-11-05 18:39 - 2013-11-05 18:39 - 00160520 _____ C:\Windows\Minidump\Mini110513-01.dmp
2013-11-04 15:26 - 2013-11-02 19:08 - 00023288 _____ C:\Users\pc\Documents\Social case study report.odt
2013-11-04 07:48 - 2013-06-16 21:13 - 00000917 _____ C:\Users\pc\Desktop\Dropbox.lnk
2013-11-04 07:48 - 2013-06-16 21:11 - 00000000 ____D C:\Users\pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2013-11-03 10:42 - 2013-11-03 10:42 - 00160520 _____ C:\Windows\Minidump\Mini110313-01.dmp
2013-11-03 10:41 - 2013-10-26 22:38 - 00017020 _____ C:\Users\pc\Documents\Ausgaben Boot.ods
2013-11-01 20:21 - 2006-11-02 13:52 - 00296011 _____ C:\Windows\setupact.log
2013-11-01 19:06 - 2006-11-02 11:33 - 01445546 _____ C:\Windows\system32\PerfStringBackup.INI
2013-11-01 02:29 - 2013-11-01 02:29 - 00160520 _____ C:\Windows\Minidump\Mini110113-01.dmp
2013-10-31 22:48 - 2013-10-31 22:47 - 00160520 _____ C:\Windows\Minidump\Mini103113-03.dmp
2013-10-31 19:53 - 2013-10-31 19:53 - 00160520 _____ C:\Windows\Minidump\Mini103113-02.dmp
2013-10-31 19:25 - 2013-10-31 19:25 - 00160520 _____ C:\Windows\Minidump\Mini103113-01.dmp
2013-10-31 05:28 - 2011-09-12 15:10 - 00000000 ___RD C:\Program Files\Skype
2013-10-31 05:28 - 2011-09-12 15:10 - 00000000 ____D C:\ProgramData\Skype
2013-10-29 17:19 - 2013-10-29 17:19 - 00160520 _____ C:\Windows\Minidump\Mini102913-02.dmp
2013-10-29 16:46 - 2013-10-29 16:46 - 00160520 _____ C:\Windows\Minidump\Mini102913-01.dmp
2013-10-27 09:26 - 2013-10-27 09:26 - 00160520 _____ C:\Windows\Minidump\Mini102713-02.dmp
2013-10-27 08:06 - 2013-10-27 08:06 - 00160520 _____ C:\Windows\Minidump\Mini102713-01.dmp
2013-10-27 07:37 - 2011-09-10 14:23 - 00112032 _____ C:\Users\pc\AppData\Local\GDIPFONTCACHEV1.DAT
2013-10-27 07:36 - 2006-11-02 13:47 - 00411080 _____ C:\Windows\system32\FNTCACHE.DAT
2013-10-26 22:48 - 2013-10-26 22:48 - 00000000 ____D C:\Users\pc\AppData\Roaming\OpenOffice
2013-10-26 22:44 - 2013-10-26 22:44 - 00000981 _____ C:\Users\Public\Desktop\OpenOffice 4.0.1.lnk
2013-10-26 22:43 - 2013-10-26 22:43 - 00000000 ____D C:\Program Files\OpenOffice 4
2013-10-26 22:43 - 2011-09-13 17:24 - 00000000 ____D C:\Program Files\OpenOffice.org 3
2013-10-26 05:48 - 2013-10-26 05:46 - 163606685 _____ C:\Users\pc\Downloads\Apache_OpenOffice_4.0.1_Win_x86_install_de.exe
2013-10-25 18:45 - 2013-10-25 18:45 - 00570745 _____ C:\Users\pc\Downloads\DriverManagerv1.00.zip
2013-10-25 18:45 - 2013-10-25 18:45 - 00000993 _____ C:\Users\pc\Desktop\Driver Manager W2K-XP.lnk
2013-10-25 18:45 - 2013-10-25 18:45 - 00000000 ____D C:\Program Files\L5 Software Group
2013-10-25 06:29 - 2013-10-25 06:29 - 00000000 ____D C:\Users\pc\AppData\Roaming\Malwarebytes
2013-10-25 06:29 - 2013-10-25 06:29 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-10-25 06:28 - 2013-10-25 06:28 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\pc\Downloads\mbam-setup-1.75.0.1300.exe
2013-10-25 06:17 - 2013-10-25 06:17 - 04054000 _____ (LionSea Software ) C:\Users\pc\Downloads\setup.exe
2013-10-25 05:52 - 2013-10-25 05:52 - 00160520 _____ C:\Windows\Minidump\Mini102513-01.dmp
2013-10-22 15:36 - 2013-10-22 15:36 - 00160520 _____ C:\Windows\Minidump\Mini102213-02.dmp
2013-10-22 15:20 - 2013-09-22 07:02 - 00000000 ____D C:\ProgramData\Oracle
2013-10-22 15:19 - 2013-10-22 15:19 - 00004237 _____ C:\Windows\system32\jupdate-1.7.0_45-b18.log
2013-10-22 15:19 - 2011-09-13 17:22 - 00000000 ____D C:\Program Files\Java
2013-10-22 15:06 - 2013-10-22 15:05 - 00160520 _____ C:\Windows\Minidump\Mini102213-01.dmp
Files to move or delete:
====================
C:\ProgramData\aspg.dat
Some content of TEMP:
====================
C:\Users\pc\AppData\Local\Temp\APNSetup.exe
C:\Users\pc\AppData\Local\Temp\ApnStub.exe
C:\Users\pc\AppData\Local\Temp\BandooV6.exe
C:\Users\pc\AppData\Local\Temp\chutil.dll
C:\Users\pc\AppData\Local\Temp\DivXSetup.exe
C:\Users\pc\AppData\Local\Temp\DSP.dll
C:\Users\pc\AppData\Local\Temp\FileSystemView.dll
C:\Users\pc\AppData\Local\Temp\FP_AX_MSI_INSTALLER.exe
C:\Users\pc\AppData\Local\Temp\installhelper.dll
C:\Users\pc\AppData\Local\Temp\jre-6u29-windows-i586-iftw-rv.exe
C:\Users\pc\AppData\Local\Temp\jre-6u31-windows-i586-iftw-rv.exe
C:\Users\pc\AppData\Local\Temp\jre-6u34-windows-i586-iftw.exe
C:\Users\pc\AppData\Local\Temp\jre-6u35-windows-i586-iftw.exe
C:\Users\pc\AppData\Local\Temp\jre-6u37-windows-i586-iftw.exe
C:\Users\pc\AppData\Local\Temp\jre-6u39-windows-i586-iftw.exe
C:\Users\pc\AppData\Local\Temp\jre-7u15-windows-i586-iftw.exe
C:\Users\pc\AppData\Local\Temp\jre-7u21-windows-i586-iftw.exe
C:\Users\pc\AppData\Local\Temp\jre-7u25-windows-i586-iftw.exe
C:\Users\pc\AppData\Local\Temp\jre-7u45-windows-i586-iftw.exe
C:\Users\pc\AppData\Local\Temp\msgC15D.exe
C:\Users\pc\AppData\Local\Temp\SkypeSetup.exe
C:\Users\pc\AppData\Local\Temp\SRAssetsHelper.dll
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-11-20 23:09
==================== End Of Log ============================ --- --- ---
--- --- ---
--- --- ---
Und additional,txt: Code:
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 18-11-2013
Ran by pc at 2013-11-21 06:43:17
Running from C:\Users\pc\Downloads
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: avast! Internet Security (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Internet Security (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Internet Security (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
==================== Installed Programs ======================
32 Bit HP CIO Components Installer (Version: 7.1.8)
Activation Assistant for the 2007 Microsoft Office suites
Activation Assistant for the 2007 Microsoft Office suites (Version: 1.0)
Adobe Flash Player 10 ActiveX (Version: 10.0.32.18)
Adobe Flash Player 11 Plugin (Version: 11.9.900.152)
Adobe Reader X (10.1.8) - Deutsch (Version: 10.1.8)
Air Cam (Version: 2.2.1)
Alcor Micro USB Card Reader (Version: 1.2.17.25001)
Apple Application Support (Version: 2.3.6)
Apple Mobile Device Support (Version: 7.0.0.117)
Apple Software Update (Version: 2.1.3.127)
ArcSoft Panorama Maker 6 (Version: 6.0.8.85)
Ask Toolbar (Version: 12.6.0.11)
ASUS AI Recovery (Version: 1.0.5)
ASUS CopyProtect (Version: 1.0.0015)
ASUS Data Security Manager (Version: 1.00.0013)
ASUS FancyStart (Version: 1.0.6)
ASUS LifeFrame3 (Version: 3.0.20)
ASUS Live Update (Version: 2.5.8)
ASUS MultiFrame (Version: 1.0.0019)
ASUS Power4Gear Hybrid (Version: 1.1.20)
ASUS SmartLogon (Version: 1.0.0007)
ASUS Splendid Video Enhancement Technology (Version: 1.02.0028)
ASUS Video Magic (Version: 6.0.3212)
ASUS Virtual Camera (Version: 1.0.18)
Asus_Camera_ScreenSaver (Version: 2.0.0009)
Atheros Client Installation Program (Version: 7.0)
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (Version: 1.0.0.22)
ATK Generic Function Service (Version: 1.00.0008)
ATK Hotkey (Version: 1.0.0052)
ATK Media (Version: 2.0.0006)
ATKOSD2 (Version: 7.0.0005)
avast! Internet Security (Version: 9.0.2006)
B110 (Version: 140.0.283.000)
Bing Bar (Version: 7.2.241.0)
Bonjour (Version: 3.0.0.10)
Bonjour-Druckdienste (Version: 2.0.2.0)
BufferChm (Version: 140.0.212.000)
Cisco EAP-FAST Module (Version: 2.2.10)
Cisco LEAP Module (Version: 1.0.16)
Cisco PEAP Module (Version: 1.1.3)
CyberLink LabelPrint (Version: 2.5.1720)
CyberLink MediaShow Espresso (Version: 5.0.0526)
CyberLink PhotoNow (Version: 1.1.6622)
CyberLink Power2Go (Version: 6.1.2713)
CyberLink PowerDirector (Version: 7.0.3131)
CyberLink PowerDVD 9 (Version: 9.0.1719)
Destinations (Version: 140.0.77.000)
DeviceDiscovery (Version: 140.0.212.000)
DivX-Setup (Version: 2.6.0.34)
Driver Manager v1.02
Dropbox (HKCU Version: 2.4.6)
ElsterFormular (Version: 14.1.11318)
ETDWare PS/2-x86 7.0.5.7_WHQL
Express Gate (Version: 1.2.13.16)
Facebook Video Calling 1.2.0.287 (Version: 1.2.287)
Google Chrome (Version: 31.0.1650.57)
Google Drive (Version: 1.12.5329.1887)
Google Earth Plug-in (Version: 7.1.1.1888)
Google Toolbar for Internet Explorer (Version: 1.0.0)
Google Toolbar for Internet Explorer (Version: 7.5.4601.54)
Google Update Helper (Version: 1.3.21.165)
GPBaseService2 (Version: 140.0.211.000)
Happy Lyrics
HP Customer Participation Program 14.0 (Version: 14.0)
HP Imaging Device Functions 14.0 (Version: 14.0)
HP Photosmart Wireless B110 All-In-One Driver Software 14.0 Rel. 7 (Version: 14.0)
HP Smart Web Printing 4.60 (Version: 4.60)
HP Solution Center 14.0 (Version: 14.0)
HP Update (Version: 5.005.000.001)
HPAppStudio (Version: 140.0.95.000)
HPDiagnosticAlert (Version: 1.00.0000)
HPPhotoGadget (Version: 140.0.524.000)
HPProductAssistant (Version: 140.0.212.000)
HPSSupply (Version: 140.0.211.000)
iCloud (Version: 2.1.2.8)
iTunes (Version: 11.1.3.8)
Java 7 Update 45 (Version: 7.0.450)
Java Auto Updater (Version: 2.1.9.8)
Junk Mail filter update (Version: 14.0.8117.416)
Logitech Harmony Remote Software 7 (Version: 7.7.0.0)
Malwarebytes Anti-Malware Version 1.75.0.1300 (Version: 1.75.0.1300)
MarketResearch (Version: 140.0.212.000)
Microsoft .NET Framework 3.5 Language Pack SP1 - DEU
Microsoft .NET Framework 3.5 Language Pack SP1 - deu (Version: 3.5.30729)
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30320)
Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30320)
Microsoft Application Error Reporting (Version: 12.0.6012.5000)
Microsoft Choice Guard (Version: 2.0.48.0)
Microsoft Office Live Add-in 1.3 (Version: 2.0.2313.0)
Microsoft Office Outlook Connector (Version: 12.0.6414.1000)
Microsoft Silverlight (Version: 5.1.20913.0)
Microsoft SQL Server 2005 Compact Edition [ENU] (Version: 3.1.0000)
Microsoft Sync Framework Runtime Native v1.0 (x86) (Version: 1.0.1215.0)
Microsoft Sync Framework Services Native v1.0 (x86) (Version: 1.0.1215.0)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.56336)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (Version: 10.0.40219)
Mozilla Firefox 25.0.1 (x86 de) (Version: 25.0.1)
Mozilla Maintenance Service (Version: 25.0.1)
MSVCRT (Version: 14.0.1468.721)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
Network (Version: 140.0.215.000)
Norton Internet Security (Version: 16.0.0.125)
NVIDIA Drivers (Version: 1.3)
OpenCPN 3.2.0 (Version: 3.2.0)
OpenOffice 4.0.1 (Version: 4.01.9714)
PC Connectivity Solution (Version: 8.15.0.0)
Picasa 3 (Version: 3.1)
PS_AIO_07_B110_SW_Min (Version: 140.0.142.000)
QuickTime (Version: 7.74.80.86)
QuickTransfer (Version: 140.0.98.000)
Reader for PC (Version: 2.0.01.11080)
Realtek High Definition Audio Driver (Version: 6.0.1.5892)
Remote Control USB Driver (Version: 2.3.2.317)
Safari (Version: 5.34.57.2)
Samsung Kies (Version: 2.5.3.13052_10)
SAMSUNG Mobile Composite Device Software
Samsung Mobile Modem Device Software
Samsung Mobile phone USB driver Software
Samsung New PC Studio (Version: 1.00.0000)
Samsung New PC Studio USB Driver Installer (Version: 1.00.0000)
Samsung Story Album Viewer (Version: 1.0.0.13054_1)
SAMSUNG USB Driver for Mobile Phones (Version: 1.5.27.0)
SamsungConnectivityCableDriver (Version: 6.83.6.2.1)
Scan (Version: 140.0.80.000)
Shop for HP Supplies (Version: 14.0)
Skype Click to Call (Version: 5.9.9216)
Skype™ 6.9 (Version: 6.9.106)
SmartWebPrinting (Version: 140.0.186.000)
SolutionCenter (Version: 140.0.214.000)
SRS Premium Sound Control Panel (Version: 1.07.0000)
Status (Version: 140.0.256.000)
TomTom HOME (Version: 2.9.6)
TomTom HOME Visual Studio Merge Modules (Version: 1.0.2)
Toolbox (Version: 140.0.428.000)
TrayApp (Version: 140.0.212.000)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (Version: 3)
USB 2.0 1.3M UVC WebCam
VC80CRTRedist - 8.0.50727.6195 (Version: 1.2.0)
Veetle TV (Version: 0.9.18)
VLC media player 2.1.0 (Version: 2.1.0)
WebReg (Version: 140.0.212.017)
Windows Live Call (Version: 14.0.8117.0416)
Windows Live Communications Platform (Version: 14.0.8117.416)
Windows Live Essentials (Version: 14.0.8117.0416)
Windows Live Essentials (Version: 14.0.8117.416)
Windows Live Family Safety (Version: 14.0.8118.427)
Windows Live Fotogalerie (Version: 14.0.8117.416)
Windows Live ID Sign-in Assistant (Version: 6.500.3165.0)
Windows Live Mail (Version: 14.0.8117.0416)
Windows Live Messenger (Version: 14.0.8117.0416)
Windows Live Movie Maker (Version: 14.0.8117.0416)
Windows Live Sync (Version: 14.0.8117.416)
Windows Live Writer (Version: 14.0.8117.0416)
Windows Live-Uploadtool (Version: 14.0.8014.1029)
Windows-Treiberpaket - Nokia pccsmcfd (10/12/2007 6.85.4.0) (Version: 10/12/2007 6.85.4.0)
WinFlash (Version: 2.27.0)
Wireless Console 3 (Version: 3.0.10)
==================== Restore Points =========================
==================== Hosts content: ==========================
2006-11-02 11:23 - 2006-09-18 22:41 - 00000761 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
::1 localhost
==================== Scheduled Tasks (whitelisted) =============
Task: {0294F224-BC47-410A-8FA9-5C1806505EAF} - System32\Tasks\ACMON => C:\Program Files\ASUS\Splendid\ACMON.exe [2009-07-23] (ATK)
Task: {19FC6774-B097-445C-9C03-6FA7C27592DF} - System32\Tasks\ASUS Live Update => C:\Program Files\ASUS\ASUS Live Update\ALU.exe [2007-11-30] ()
Task: {1CC81347-6204-4B83-900C-01E02F50F067} - System32\Tasks\Microsoft\Windows\MobilePC\TMM
Task: {25605508-C8D6-49D9-8BF3-996303195381} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2013-10-19] (AVAST Software)
Task: {3003CA83-5DFF-4AD7-B671-792F55A9073A} - System32\Tasks\Microsoft\Windows\MUI\Lpksetup => C:\Windows\System32\lpksetup.exe [2008-01-21] (Microsoft Corporation)
Task: {320124A7-D70F-41DE-A9D1-D5E8E19D5D91} - System32\Tasks\Microsoft\Windows\NetworkAccessProtection\NAPStatus UI
Task: {34A28438-1D23-4F0B-B2E9-5BFCD6397B81} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2011-09-11] (Google Inc.)
Task: {3BCDF251-CA5C-4045-A1FC-8FCEF9FBDC93} - System32\Tasks\Microsoft\Windows\Shell\CrawlStartPages
Task: {44980BEE-7809-44A9-AC24-D6E578A3B7DF} - System32\Tasks\Microsoft\Windows\RAC\RACAgent => C:\Windows\System32\RacAgent.exe [2008-01-21] (Microsoft Corporation)
Task: {691CBFE8-6E05-48E8-AE01-75F86EE01A9F} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {7C8E7573-118A-4A13-A47C-1DC91741619F} - System32\Tasks\ASUS P4G => C:\Program Files\P4G\BatteryLife.exe [2009-08-11] (ATK)
Task: {8BB92873-508A-4386-95B5-3C04C9C9F4C3} - System32\Tasks\ASUS SmartLogon Console Sensor => C:\Program Files\ASUS\SmartLogon\sensorsrv.exe [2009-05-18] (ASUS)
Task: {A5A36246-0614-40A6-BB01-DFD66F78607B} - System32\Tasks\ASPG => C:\Program Files\ASUS\ASUS CopyProtect\ASPG.exe [2009-06-29] (ASUS)
Task: {A6D2D14A-4299-4895-A3EB-C2384D223687} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2923644513-85853068-132639478-1000Core => C:\Users\pc\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-12] (Facebook Inc.)
Task: {A8B8B137-59F3-4132-AE4C-6350EE8B4567} - System32\Tasks\P4GIntlCtrl => C:\Program Files\P4G\IntlCtrl.exe [2009-08-11] (TODO: <Company name>)
Task: {B4AAC76F-5E23-4CD4-9F99-E47E2176A9BE} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-11-15] (Adobe Systems Incorporated)
Task: {D6110231-B376-416C-B95D-0356FBF451F6} - System32\Tasks\P4G Sidebar => C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-11] (Microsoft Corporation)
Task: {DAFA1C2B-B094-46F3-9115-EBC421AE75E5} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2923644513-85853068-132639478-1000UA => C:\Users\pc\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-12] (Facebook Inc.)
Task: {E395BD93-18C2-48C9-B6B2-97A3AAF108B8} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2011-09-11] (Google Inc.)
Task: {E5150B95-F9B4-4D5D-95A2-7EC1ACBA95F8} - System32\Tasks\Microsoft\Windows\Wireless\GatherWirelessInfo => C:\Windows\System32\gatherWirelessInfo.vbs [2008-01-21] ()
Task: {FE0828A6-D5C4-4C50-B280-C1E06F128C1E} - System32\Tasks\WC3 => C:\Program Files\ASUS\Wireless Console 3\wcourier.exe [2009-07-24] ()
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2923644513-85853068-132639478-1000Core.job => C:\Users\pc\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2923644513-85853068-132639478-1000UA.job => C:\Users\pc\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2013-11-20 23:00 - 2013-11-20 21:26 - 02147840 _____ () C:\Program Files\AVAST Software\Avast\defs\13112000\algo.dll
2008-10-01 07:02 - 2008-10-01 07:02 - 00009216 _____ () C:\Program Files\ASUS\Splendid\GLCDdll.dll
2009-05-05 18:00 - 2009-05-05 18:00 - 00012288 _____ () C:\Program Files\P4G\DevMng.dll
2009-08-06 18:46 - 2009-08-06 18:46 - 00024064 _____ () C:\Program Files\P4G\OvrClk.dll
2009-09-03 08:10 - 2007-03-10 00:16 - 00106496 _____ () C:\Program Files\ATKGFNEX\AGFNEX.dll
2011-11-01 23:26 - 2011-11-01 23:26 - 00087912 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2011-11-01 23:26 - 2011-11-01 23:26 - 01242472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2008-08-28 00:32 - 2008-08-28 00:32 - 00619816 _____ () C:\Program Files\CyberLink\Power2Go\CLMediaLibrary.dll
2008-06-09 17:55 - 2008-06-09 17:55 - 00013096 _____ () C:\Program Files\CyberLink\Power2Go\CLMLSvcPS.dll
2012-11-08 10:54 - 2012-11-08 10:54 - 00880640 _____ () C:\Program Files\Sony\ReaderDesktop\appHelper\fsk.dll
2012-11-08 10:55 - 2012-11-08 10:55 - 00039816 _____ () C:\Program Files\Sony\ReaderDesktop\appHelper\FskMediaPlayers.dll
2012-11-08 10:55 - 2012-11-08 10:55 - 00239496 _____ () C:\Program Files\Sony\ReaderDesktop\appHelper\Fskin.dll
2012-11-08 10:55 - 2012-11-08 10:55 - 00026504 _____ () C:\Program Files\Sony\ReaderDesktop\appHelper\FskinLocalize.dll
2012-10-23 21:58 - 2012-10-23 21:58 - 00798720 _____ () C:\Program Files\Sony\ReaderDesktop\appHelper\FskSecurity.dll
2012-11-08 10:55 - 2012-11-08 10:55 - 00124808 _____ () C:\Program Files\Sony\ReaderDesktop\appHelper\FskDocumentViewer.dll
2012-11-08 10:55 - 2012-11-08 10:55 - 00015752 _____ () C:\Program Files\Sony\ReaderDesktop\appHelper\FskPower.dll
2012-11-08 10:55 - 2012-11-08 10:55 - 00024456 _____ () C:\Program Files\Sony\ReaderDesktop\appHelper\FskNetInterface.dll
2012-11-08 10:55 - 2012-11-08 10:55 - 00016776 _____ () C:\Program Files\Sony\ReaderDesktop\appHelper\FskMobileMediaDevice.dll
2012-11-08 10:55 - 2012-11-08 10:55 - 00014728 _____ () C:\Program Files\Sony\ReaderDesktop\appHelper\FskTimeHardware.dll
2012-11-08 10:56 - 2012-11-08 10:56 - 00034184 _____ () C:\Program Files\Sony\ReaderDesktop\appHelper\ticket.dll
2012-11-08 10:55 - 2012-11-08 10:55 - 00018312 _____ () C:\Program Files\Sony\ReaderDesktop\appHelper\ebookDeviceNotifier.dll
2012-11-08 10:55 - 2012-11-08 10:55 - 00092040 _____ () C:\Program Files\Sony\ReaderDesktop\appHelper\ebookUsb.dll
2012-11-08 10:55 - 2012-11-08 10:55 - 00149384 _____ () C:\Program Files\Sony\ReaderDesktop\appHelper\readerAppHelper.dll
2012-11-08 10:56 - 2012-11-08 10:56 - 00178056 _____ () C:\Program Files\Sony\ReaderDesktop\appHelper\USBDetector.dll
2007-06-15 18:28 - 2007-06-15 18:28 - 00147456 _____ () C:\Program Files\ASUS\ASUS Data Security Manager\ShlExt\x86\OverlayIconShlExt.dll
2007-06-02 01:08 - 2007-06-02 01:08 - 00143360 _____ () C:\Program Files\ASUS\ASUS Data Security Manager\ShlExt\x86\OverlayIconShlExt1.dll
2013-10-19 04:20 - 2013-10-19 04:20 - 19336120 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2013-10-12 07:32 - 2013-10-12 07:32 - 01902592 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\Kies.UI\456f36c1b64f193dfb172c6575657cce\Kies.UI.ni.dll
2013-08-22 04:45 - 2013-08-22 04:45 - 00079360 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\Kies.MVVM\eacdf643c93bc68c33bef11d8ffc0f52\Kies.MVVM.ni.dll
2013-08-14 08:53 - 2013-08-14 08:53 - 00080896 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\ZipStore\1dd23f0d663e85fd7471859147b682e7\ZipStore.ni.dll
2013-08-22 04:45 - 2013-08-22 04:45 - 00188416 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\Kies.Common.DeviceS#\9e5ba5b19fc483d9c8b6c9d9bb0a81e2\Kies.Common.DeviceServiceLib.Interface.ni.dll
2013-10-12 07:32 - 2013-10-12 07:32 - 00366592 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\DevicePhoto\987308f059ce7655f497022b8696ce53\DevicePhoto.ni.dll
2013-10-12 07:32 - 2013-10-12 07:32 - 00300544 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\DeviceVideo\7592c0307e3c6471bb9d01b8eebbc396\DeviceVideo.ni.dll
2013-10-12 07:33 - 2013-10-12 07:33 - 00616448 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\DevicePodcast\0731e86849106298fa2b54fcab5f4201\DevicePodcast.ni.dll
2013-08-22 04:46 - 2013-08-22 04:46 - 00307200 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\DummyStorePlugin\2fa21c4337077fab62b71825733cb0f3\DummyStorePlugin.ni.dll
2013-08-22 04:46 - 2013-08-22 04:46 - 17281024 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\Kies.Theme\0d22a820531345f935972e91a04f31d8\Kies.Theme.ni.dll
2013-10-12 07:32 - 2013-10-12 07:32 - 00581632 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\Kies.Common.DeviceS#\cbc3d50f5b9a21fac7d8f1156301f0ae\Kies.Common.DeviceServiceLib.FileService.ni.dll
2013-08-22 04:45 - 2013-08-22 04:45 - 00046592 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\Kies.Common.DeviceS#\77329389675ee7adbedb681913f8d887\Kies.Common.DeviceServiceLib.FirmwareUpdate.FirmwareUpdateAgentHelper.ni.dll
2013-10-12 07:32 - 2013-10-12 07:32 - 00998912 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\DeviceCommonLib\1dc473cf6c547ef931803514f0db6471\DeviceCommonLib.ni.dll
2013-08-14 09:09 - 2013-08-14 09:09 - 00232960 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\ASF_cSharpAPI\c5efe841e2998c266e0f5e29bed04b55\ASF_cSharpAPI.ni.dll
2009-07-31 01:47 - 2009-07-31 01:47 - 00204800 _____ () C:\Program Files\asus\VirtualCamera\virtualCamera.ax
2013-08-23 20:01 - 2013-08-23 20:01 - 25100288 _____ () C:\Users\pc\AppData\Roaming\Dropbox\bin\libcef.dll
2013-11-17 08:56 - 2013-11-17 08:56 - 03363952 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
==================== Faulty Device Manager Devices =============
Name: Photosmart B110 series
Description: Photosmart B110 series
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: HP
Service:
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
==================== Event log errors: =========================
Application errors:
==================
System errors:
=============
Microsoft Office Sessions:
=========================
CodeIntegrity Errors:
===================================
Date: 2013-11-21 06:42:23.426
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-11-21 06:42:23.175
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-11-21 06:42:22.923
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-11-21 06:42:22.659
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-11-21 06:42:22.395
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-11-21 06:42:22.141
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-11-21 06:42:21.889
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-11-21 06:42:21.640
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-11-21 06:37:00.445
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-11-21 06:37:00.186
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
==================== Memory info ===========================
Percentage of memory in use: 51%
Total physical RAM: 3070.29 MB
Available physical RAM: 1474.27 MB
Total Pagefile: 6341.59 MB
Available Pagefile: 4754.55 MB
Total Virtual: 2047.88 MB
Available Virtual: 1903.51 MB
==================== Drives ================================
Drive c: (VistaOS) (Fixed) (Total:454.04 GB) (Free:375.33 GB) NTFS ==>[System with boot components (obtained from reading drive)]
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 466 GB) (Disk ID: 97646C29)
Partition 1: (Not Active) - (Size=12 GB) - (Type=1C)
Partition 2: (Active) - (Size=454 GB) - (Type=07 NTFS)
==================== End Of Log ============================ |