So hier sind die geforderten Logs
Gruß Raven
PS: Kann ich eigendlich schon die erstellten Log-Dateien löschen?
AdwCleaner Log
AdwCleaner Logfile: Code:
# AdwCleaner v3.013 - Bericht erstellt am 26/11/2013 um 13:21:07
# Updated 24/11/2013 von Xplode
# Betriebssystem : Microsoft Windows XP Service Pack 3 (32 bits)
# Benutzername : Raven01 - RAVEN
# Gestartet von : C:\Dokumente und Einstellungen\Raven01\Desktop\adwcleaner.exe
# Option : Löschen
***** [ Dienste ] *****
***** [ Dateien / Ordner ] *****
Ordner Gelöscht : C:\Dokumente und Einstellungen\Raven01\Anwendungsdaten\CheckPoint\ZoneAlarm LTD Toolbar
Datei Gelöscht : C:\DOKUME~1\Raven01\LOKALE~1\Temp\Uninstall.exe
***** [ Verknüpfungen ] *****
***** [ Registrierungsdatenbank ] *****
Schlüssel Gelöscht : HKLM\SOFTWARE\MozillaPlugins\@checkpoint.com/FFApi
Schlüssel Gelöscht : HKCU\Software\OCS
Schlüssel Gelöscht : HKLM\Software\Uniblue
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ZoneAlarm LTD Toolbar
***** [ Browser ] *****
-\\ Internet Explorer v6.0.2900.5512
-\\ Mozilla Firefox v21.0 (de)
[ Datei : C:\Dokumente und Einstellungen\Raven01\Anwendungsdaten\Mozilla\Firefox\Profiles\b5zb5oph.default\prefs.js ]
*************************
AdwCleaner[R0].txt - [1272 octets] - [26/11/2013 13:19:45]
AdwCleaner[S0].txt - [1195 octets] - [26/11/2013 13:21:07]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1255 octets]########## --- --- ---
JRT Log
JRT Logfile: Code:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Microsoft Windows XP x86
Ran by Raven01 on 26.11.2013 at 15:11:33,00
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
~~~ Files
~~~ Folders
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 26.11.2013 at 15:13:38,46
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ --- --- ---
FRST Log
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 25-11-2013 01
Ran by Raven01 (administrator) on RAVEN on 26-11-2013 15:14:55
Running from C:\Dokumente und Einstellungen\Raven01\Desktop
Microsoft Windows XP Home Edition Service Pack 3 (X86) OS Language: German Standard
Internet Explorer Version 6
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(Avira Operations GmbH & Co. KG) C:\Programme\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Programme\Avira\AntiVir Desktop\avguard.exe
(AVM Berlin) C:\Programme\avmwlanstick\WLanNetService.exe
(Oracle Corporation) C:\Programme\Java\jre7\bin\jqs.exe
(NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe
(NVIDIA Corporation) C:\Programme\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Check Point Software Technologies, Ltd.) C:\Programme\CheckPoint\ZoneAlarm\ZAPrivacyService.exe
(Avira Operations GmbH & Co. KG) C:\Programme\Avira\AntiVir Desktop\avshadow.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.exe
() C:\Programme\Razer\DeathAdder\razerhid.exe
(Avira Operations GmbH & Co. KG) C:\Programme\Avira\AntiVir Desktop\avgnt.exe
() C:\Programme\Razer\DeathAdder\razertra.exe
(AVM Berlin) C:\Programme\avmwlanstick\WLanGUI.exe
(Razer Inc.) C:\Programme\Razer\DeathAdder\razerofa.exe
(Oracle Corporation) C:\Programme\Gemeinsame Dateien\Java\Java Update\jusched.exe
(TODO: <Company name>) C:\Programme\Razer\DeathAdder\vdDaemon.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [JMB36X IDE Setup] - C:\WINDOWS\RaidTool\xInsIDE.exe [36864 2007-03-20] ()
HKLM\...\Run: [36X Raid Configurer] - C:\WINDOWS\system32\xRaidSetup.exe [1953792 2007-05-25] (Gigabyte Technology Corp.)
HKLM\...\Run: [RTHDCPL] - C:\WINDOWS\RTHDCPL.exe [16380416 2007-07-05] (Realtek Semiconductor Corp.)
HKLM\...\Run: [Alcmtr] - C:\WINDOWS\Alcmtr.exe [69632 2005-05-03] (Realtek Semiconductor Corp.)
HKLM\...\Run: [DeathAdder] - C:\Programme\Razer\DeathAdder\razerhid.exe [248320 2011-02-19] ()
HKLM\...\Run: [ZoneAlarm] - C:\Programme\CheckPoint\ZoneAlarm\zatray.exe [73832 2013-10-25] (Check Point Software Technologies LTD)
HKLM\...\Run: [avgnt] - C:\Programme\Avira\AntiVir Desktop\avgnt.exe [683576 2013-11-25] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [NvCplDaemon] - RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [NvMediaCenter] - RunDLL32.exe NvMCTray.dll,NvTaskbarInit -login
HKLM\...\Run: [nwiz] - C:\Programme\NVIDIA Corporation\nview\nwiz.exe [1982312 2013-03-15] ()
HKLM\...\Run: [AVMWlanClient] - C:\Programme\avmwlanstick\WLanGUI.exe [2105344 2010-10-22] (AVM Berlin)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Programme\Gemeinsame Dateien\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKCU\...\Policies\Explorer: [NoDriveTypeAutoRun] 0x91000000
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
SearchScopes: HKLM - DefaultScope value is missing.
BHO: DivX Plus Web Player HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Programme\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKCU - &Adresse - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
Toolbar: HKCU - &Links - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
Toolbar: HKCU - No Name - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - No File
DPF: {74DBCB52-F298-4110-951D-AD2FF67BC8AB} hxxp://www.nvidia.com/content/DriverDownload/nforce/NvidiaSmartScan.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_17-windows-i586.cab
DPF: {CAFEEFAC-0017-0000-0017-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_17-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_17-windows-i586.cab
Handler: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler: ipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
Handler: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
ShellExecuteHooks: URL Exec Hook - {AEB6717E-7E19-11d0-97EE-00C04FD91972} - C:\WINDOWS\system32\shell32.dll [8502272 2008-04-14] (Microsoft Corporation)
FireFox:
========
FF ProfilePath: C:\Dokumente und Einstellungen\Raven01\Anwendungsdaten\Mozilla\Firefox\Profiles\b5zb5oph.default
FF SelectedSearchEngine: Wikipedia (de)
FF Homepage: www.google.de
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_9_900_152.dll ()
FF Plugin: @adobe.com/ShockwavePlayer - C:\WINDOWS\system32\Adobe\Director\np32dsw_1202122.dll (Adobe Systems, Inc.)
FF Plugin: @divx.com/DivX Browser Plugin,version=1.0.0 - C:\Programme\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Programme\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf - C:\Programme\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products Ltd.)
FF Plugin: @java.com/DTPlugin,version=10.45.2 - C:\Programme\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.45.2 - C:\Programme\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Programme\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Programme\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @videolan.org/vlc,version=1.1.11 - C:\Programme\VideoLAN\VLC\npvlc.dll No File
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Dokumente und Einstellungen\Raven01\Lokale Einstellungen\Anwendungsdaten\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF SearchPlugin: C:\Programme\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Programme\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Programme\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Programme\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: defaults - C:\Dokumente und Einstellungen\Raven01\Anwendungsdaten\Mozilla\Firefox\Profiles\b5zb5oph.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b}.xpi
FF Extension: Adblock Plus - C:\Dokumente und Einstellungen\Raven01\Anwendungsdaten\Mozilla\Firefox\Profiles\b5zb5oph.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF HKLM\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Programme\DivX\DivX Plus Web Player\firefox\DivXHTML5
FF Extension: DivX Plus Web Player HTML5 <video> - C:\Programme\DivX\DivX Plus Web Player\firefox\DivXHTML5
========================== Services (Whitelisted) =================
R2 AntiVirSchedulerService; C:\Programme\Avira\AntiVir Desktop\sched.exe [440376 2013-11-25] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Programme\Avira\AntiVir Desktop\avguard.exe [440376 2013-11-25] (Avira Operations GmbH & Co. KG)
R2 AVM WLAN Connection Service; C:\Programme\avmwlanstick\WlanNetService.exe [376832 2010-10-22] (AVM Berlin)
S4 gupdate; C:\Programme\Google\Update\GoogleUpdate.exe [116648 2012-07-09] (Google Inc.)
S4 gupdatem; C:\Programme\Google\Update\GoogleUpdate.exe [116648 2012-07-09] (Google Inc.)
S3 IDriverT; C:\Programme\Gemeinsame Dateien\InstallShield\Driver\1050\Intel 32\IDriverT.exe [73728 2004-10-22] (Macrovision Corporation)
S3 MozillaMaintenance; C:\Programme\Mozilla Maintenance Service\maintenanceservice.exe [117144 2013-06-16] (Mozilla Foundation)
S4 msvsmon80; C:\Programme\Microsoft Visual Studio 8\Common7\IDE\Remote Debugger\x86\msvsmon.exe [2799808 2005-09-23] (Microsoft Corporation)
R2 nvUpdatusService; C:\Programme\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [1266464 2013-03-15] (NVIDIA Corporation)
S3 odserv; C:\Programme\Gemeinsame Dateien\Microsoft Shared\OFFICE12\ODSERV.EXE [441136 2006-10-26] (Microsoft Corporation)
S3 ose; C:\Programme\Gemeinsame Dateien\Microsoft Shared\Source Engine\OSE.EXE [145184 2006-10-26] (Microsoft Corporation)
S3 Steam Client Service; C:\Programme\Gemeinsame Dateien\Steam\SteamService.exe [529744 2012-10-27] (Valve Corporation)
S2 vsmon; C:\Programme\CheckPoint\ZoneAlarm\vsmon.exe [2445816 2013-10-25] (Check Point Software Technologies LTD)
R2 ZAPrivacyService; C:\Programme\CheckPoint\ZoneAlarm\ZAPrivacyService.exe [50704 2013-10-15] (Check Point Software Technologies, Ltd.)
S3 CoordinatorServiceHost; "C:\Programme\SolidWorks Corp\SolidWorks\swScheduler\DTSCoordinatorService.exe" [x]
R2 JavaQuickStarterService; "C:\Programme\Java\jre7\bin\jqs.exe" -service -config "C:\Programme\Java\jre7\lib\deploy\jqs\jqs.conf"
==================== Drivers (Whitelisted) ====================
R2 AegisP; C:\Windows\System32\DRIVERS\AegisP.sys [21035 2010-09-25] (Meetinghouse Data Communications)
R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [281760 2010-10-25] ()
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [90400 2013-11-25] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [137208 2013-11-25] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-11-25] (Avira Operations GmbH & Co. KG)
S3 CCDECODE; C:\Windows\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation)
S3 CYUSB; C:\Windows\System32\Drivers\CYUSB.sys [38528 2009-08-10] (Cypress Semiconductor)
R3 danewFltr; C:\Windows\System32\drivers\danew.sys [11136 2009-04-21] (Razer (Asia-Pacific) Pte Ltd)
R3 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [232512 2011-10-20] (DT Soft Ltd)
R2 EAPPkt; C:\Windows\System32\DRIVERS\EAPPkt.sys [38144 2007-10-09] (Realtek)
S3 FWLANUSB; C:\Windows\System32\DRIVERS\fwlanusb.sys [265088 2010-10-22] (AVM GmbH)
S3 gdrv; C:\WINDOWS\gdrv.sys [15600 2010-09-25] (Windows (R) 2000 DDK provider)
S3 hidkmdf; C:\Windows\System32\DRIVERS\hidkmdf.sys [6656 2010-09-25] (Windows (R) Win 7 DDK provider)
R2 ithsgt; C:\Windows\System32\DRIVERS\ithsgt.sys [162432 2012-06-21] ()
R0 JRAID; C:\Windows\System32\DRIVERS\jraid.sys [48256 2007-06-13] (JMicron Technology Corp.)
R2 lilsgt; C:\Windows\System32\DRIVERS\lilsgt.sys [12032 2012-06-21] ()
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [25888 2010-10-25] ()
R3 mod7700; C:\Windows\System32\Drivers\mod7700.sys [473728 2007-04-18] (DiBcom)
R3 MODRC; C:\Windows\System32\DRIVERS\modrc.sys [13440 2007-02-06] (DiBcom S.A.)
S3 MPE; C:\Windows\System32\DRIVERS\MPE.sys [15232 2008-04-13] (Microsoft Corporation)
S3 NdisIP; C:\Windows\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation)
S3 RT73; C:\Windows\System32\DRIVERS\rt73.sys [232192 2005-08-02] (Ralink Technology, Corp.)
S3 RTL8187B; C:\Windows\System32\DRIVERS\wg111v3.sys [287232 2007-12-28] (Realtek Semiconductor Corporation )
S3 S6U12Scanner; C:\Windows\System32\drivers\usbscan.sys [15104 2008-04-13] (Microsoft Corporation)
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2013-06-18] (Avira GmbH)
R1 Vsdatant; C:\Windows\System32\vsdatant.sys [529128 2013-10-25] (Check Point Software Technologies LTD)
S3 cportclm; \??\C:\DOKUME~1\Raven01\LOKALE~1\Temp\cportclm.sys [x]
S3 cpudrv; \??\C:\Programme\SystemRequirementsLab\cpudrv.sys [x]
S4 IntelIde; No ImagePath
S3 L8042mou; system32\DRIVERS\L8042mou.Sys [x]
S3 LHidUsbK; System32\Drivers\LHidUsbK.Sys [x]
S3 LMouKE; system32\DRIVERS\LMouKE.Sys [x]
S3 motmodem; system32\DRIVERS\motmodem.sys [x]
U5 ScsiPort; C:\Windows\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
U5 Tcpip6; C:\Windows\System32\Drivers\Tcpip6.sys [225664 2008-04-13] (Microsoft Corporation)
S3 Wdf01000; System32\Drivers\wdf01000.sys [x]
U1 WS2IFSL;
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-11-26 15:14 - 2013-11-26 15:14 - 00034249 _____ C:\Dokumente und Einstellungen\Raven01\Desktop\FRST1.txt
2013-11-26 15:13 - 2013-11-26 15:13 - 00000583 _____ C:\Dokumente und Einstellungen\Raven01\Desktop\JRT.txt
2013-11-26 15:11 - 2013-11-26 15:11 - 00000000 ____D C:\WINDOWS\ERUNT
2013-11-26 14:58 - 2013-11-26 14:58 - 00001335 _____ C:\Dokumente und Einstellungen\Raven01\Desktop\AdwCleaner[S0].txt
2013-11-26 13:19 - 2013-11-26 13:21 - 00000000 ____D C:\AdwCleaner
2013-11-26 12:49 - 2013-11-26 12:49 - 01091882 _____ C:\Dokumente und Einstellungen\Raven01\Desktop\adwcleaner.exe
2013-11-26 12:49 - 2013-11-26 12:49 - 01034531 _____ (Thisisu) C:\Dokumente und Einstellungen\Raven01\Desktop\JRT.exe
2013-11-26 12:41 - 2013-11-26 12:41 - 04179293 _____ (Lavalys, Inc. ) C:\Dokumente und Einstellungen\Raven01\Desktop\everesthome220.exe
2013-11-26 11:48 - 2013-11-26 11:58 - 00000000 ____D C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Malwarebytes' Anti-Malware (portable)
2013-11-26 11:48 - 2013-11-26 11:48 - 00105176 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2013-11-26 11:47 - 2013-11-26 11:47 - 00047064 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2013-11-26 11:46 - 2013-11-26 11:58 - 00000000 ____D C:\Dokumente und Einstellungen\Raven01\Desktop\mbar
2013-11-26 11:44 - 2013-11-26 11:44 - 00016039 _____ C:\Dokumente und Einstellungen\Raven01\Desktop\Gmer Log.log
2013-11-26 11:30 - 2013-11-26 11:30 - 12576792 _____ (Malwarebytes Corp.) C:\Dokumente und Einstellungen\Raven01\Desktop\mbar-1.07.0.1007.exe
2013-11-26 11:30 - 2013-11-26 11:30 - 00377856 _____ C:\Dokumente und Einstellungen\Raven01\Desktop\gmer_2.1.19163.exe
2013-11-25 22:39 - 2013-11-25 22:39 - 00018186 _____ C:\Dokumente und Einstellungen\Raven01\Desktop\Addition.txt
2013-11-25 22:35 - 2013-11-26 15:14 - 00014862 _____ C:\Dokumente und Einstellungen\Raven01\Desktop\FRST.txt
2013-11-25 22:34 - 2013-11-25 22:34 - 01091605 _____ (Farbar) C:\Dokumente und Einstellungen\Raven01\Desktop\FRST.exe
2013-11-25 17:24 - 2013-11-25 17:24 - 00000000 ____D C:\FRST
2013-11-25 16:44 - 2013-11-25 16:44 - 00000930 _____ C:\Dokumente und Einstellungen\Raven01\Eigene Dateien\Ereignisse1.txt
2013-11-25 16:44 - 2013-11-25 16:44 - 00000930 _____ C:\Dokumente und Einstellungen\Raven01\Desktop\Ereignisse12.txt
2013-11-25 15:45 - 2013-11-25 15:45 - 00002744 _____ C:\Dokumente und Einstellungen\Raven01\Desktop\Ereignisse.txt
2013-11-25 15:41 - 2013-11-25 15:41 - 00915368 _____ (Oracle Corporation) C:\Dokumente und Einstellungen\Raven01\Desktop\jre-7u45-windows-i586-iftw.exe
2013-11-25 15:39 - 2013-11-25 15:39 - 00000000 ____D C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Java
2013-11-25 15:39 - 2013-10-08 07:50 - 00094632 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll
2013-11-25 15:39 - 2013-10-08 07:46 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe
2013-11-25 15:39 - 2013-10-08 07:46 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe
2013-11-25 15:39 - 2013-10-08 07:46 - 00174504 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe
2013-11-25 15:39 - 2013-10-08 07:29 - 00145408 _____ (Oracle Corporation) C:\WINDOWS\system32\javacpl.cpl
2013-11-25 15:38 - 2013-11-25 15:39 - 00004837 _____ C:\WINDOWS\system32\jupdate-1.7.0_45-b18.log
2013-11-25 15:15 - 2013-11-25 15:15 - 00915368 _____ (Oracle Corporation) C:\Dokumente und Einstellungen\Raven01\Desktop\jxpiinstall.exe
2013-11-25 14:46 - 2013-11-25 14:46 - 00000000 ___SD C:\Dokumente und Einstellungen\LocalService\UserData
2013-11-25 13:29 - 2013-11-25 13:29 - 00000000 ____D C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Check Point
2013-11-25 13:26 - 2013-11-25 13:26 - 02462704 _____ (Check Point Software Technologies LTD) C:\Dokumente und Einstellungen\Raven01\Desktop\zafwSetupWeb_120_104_000.exe
2013-11-25 12:45 - 2013-11-25 12:46 - 00016909 _____ C:\WINDOWS\setupapi.log
2013-11-25 12:43 - 2013-11-25 12:44 - 00000000 ____D C:\Dokumente und Einstellungen\Raven01\Desktop\dx9
2013-11-25 12:41 - 2013-11-25 12:43 - 100273008 _____ (Microsoft Corporation) C:\Dokumente und Einstellungen\Raven01\Desktop\directx_Jun2010redist.exe
2013-11-25 12:36 - 2013-11-25 12:36 - 00037984 _____ C:\Dokumente und Einstellungen\Raven01\Lokale Einstellungen\Anwendungsdaten\GDIPFONTCACHEV1.DAT
2013-11-25 11:35 - 2013-11-25 11:35 - 00169096 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2013-11-23 23:44 - 2013-11-23 23:45 - 00170342 _____ C:\Dokumente und Einstellungen\Raven01\Desktop\fatal error.bmp
2013-11-23 19:27 - 2013-11-23 19:27 - 00354816 _____ C:\Dokumente und Einstellungen\Raven01\Desktop\fmemstdde.exe
2013-11-23 18:19 - 2013-11-23 18:19 - 105869762 _____ C:\WINDOWS\system32\粼䜎唜6
2013-11-23 17:29 - 2013-11-25 13:46 - 00000000 ____D C:\Dokumente und Einstellungen\Raven01\Eigene Dateien\Giana Sisters - Twisted Dreams
2013-11-23 12:20 - 2013-11-23 12:20 - 105835460 _____ C:\WINDOWS\system32\闞귐唜6
2013-11-21 12:51 - 2013-11-21 12:51 - 00000000 ____D C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\FRITZ!WLAN
2013-11-21 12:25 - 2010-10-22 02:00 - 00480632 ____N (AVM Berlin) C:\WINDOWS\instwcli.dex
2013-11-21 12:22 - 2010-10-22 02:00 - 00074240 _____ (AVM Berlin) C:\WINDOWS\system32\fwlanci.org
2013-11-21 12:20 - 2013-11-21 12:51 - 00000000 ____D C:\Programme\avmwlanstick
2013-11-21 12:20 - 2013-11-21 12:20 - 00000000 ____D C:\Programme\AVM_update
2013-11-21 11:42 - 2005-08-02 23:00 - 00232192 _____ (Ralink Technology, Corp.) C:\WINDOWS\system32\Drivers\rt73.sys
2013-11-19 17:17 - 2013-11-19 17:17 - 105044098 _____ C:\WINDOWS\system32\ʨꊣ唜6
2013-11-16 19:41 - 2013-11-16 19:41 - 104637397 _____ C:\WINDOWS\system32\択筳唜6
2013-11-11 16:56 - 2013-11-11 16:56 - 103716811 _____ C:\WINDOWS\system32\퓧䫋唜6
2013-11-10 19:21 - 2013-11-10 19:21 - 103551423 _____ C:\WINDOWS\system32\ञ礎唜6
2013-11-08 00:23 - 2013-11-08 00:23 - 00012717 _____ C:\Dokumente und Einstellungen\Raven01\Desktop\Mappe2.xlsx
2013-11-07 18:17 - 2013-11-07 18:17 - 103000967 _____ C:\WINDOWS\system32\�骍唜6
2013-11-06 15:06 - 2013-11-06 15:06 - 102753054 _____ C:\WINDOWS\system32\넵瓖唜6
2013-11-05 01:43 - 2013-11-07 23:41 - 00012416 _____ C:\Dokumente und Einstellungen\Raven01\Desktop\Mappe1.xlsx
2013-11-01 13:04 - 2013-11-01 13:04 - 00000000 ____D C:\Dokumente und Einstellungen\Raven01\Lokale Einstellungen\Anwendungsdaten\Daedalic Entertainment
2013-11-01 11:49 - 2013-11-01 11:49 - 104493738 _____ C:\WINDOWS\system32\唜6
==================== One Month Modified Files and Folders =======
2013-11-26 15:14 - 2013-11-26 15:14 - 00034249 _____ C:\Dokumente und Einstellungen\Raven01\Desktop\FRST1.txt
2013-11-26 15:14 - 2013-11-25 22:35 - 00014862 _____ C:\Dokumente und Einstellungen\Raven01\Desktop\FRST.txt
2013-11-26 15:13 - 2013-11-26 15:13 - 00000583 _____ C:\Dokumente und Einstellungen\Raven01\Desktop\JRT.txt
2013-11-26 15:11 - 2013-11-26 15:11 - 00000000 ____D C:\WINDOWS\ERUNT
2013-11-26 14:58 - 2013-11-26 14:58 - 00001335 _____ C:\Dokumente und Einstellungen\Raven01\Desktop\AdwCleaner[S0].txt
2013-11-26 14:58 - 2013-07-14 21:18 - 00007246 _____ C:\WINDOWS\system32\nvAppTimestamps
2013-11-26 14:27 - 2013-06-17 20:33 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2013-11-26 13:29 - 2010-09-25 17:47 - 00451355 _____ C:\WINDOWS\WindowsUpdate.log
2013-11-26 13:23 - 2012-05-23 14:34 - 00000159 _____ C:\WINDOWS\wiadebug.log
2013-11-26 13:23 - 2012-05-23 14:34 - 00000050 _____ C:\WINDOWS\wiaservc.log
2013-11-26 13:23 - 2010-09-25 17:50 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2013-11-26 13:22 - 2010-09-25 17:51 - 00000190 ___SH C:\Dokumente und Einstellungen\Raven01\ntuser.ini
2013-11-26 13:22 - 2010-09-25 17:51 - 00000000 ____D C:\Dokumente und Einstellungen\Raven01
2013-11-26 13:22 - 2010-09-25 17:50 - 00032510 _____ C:\WINDOWS\SchedLgU.Txt
2013-11-26 13:21 - 2013-11-26 13:19 - 00000000 ____D C:\AdwCleaner
2013-11-26 13:21 - 2012-11-16 11:47 - 00000000 ____D C:\Dokumente und Einstellungen\Raven01\Anwendungsdaten\CheckPoint
2013-11-26 12:49 - 2013-11-26 12:49 - 01091882 _____ C:\Dokumente und Einstellungen\Raven01\Desktop\adwcleaner.exe
2013-11-26 12:49 - 2013-11-26 12:49 - 01034531 _____ (Thisisu) C:\Dokumente und Einstellungen\Raven01\Desktop\JRT.exe
2013-11-26 12:43 - 2010-09-25 18:38 - 00000000 ___RD C:\Programme
2013-11-26 12:43 - 2010-09-25 18:38 - 00000000 ___RD C:\Dokumente und Einstellungen\All Users\Startmenü\Programme
2013-11-26 12:41 - 2013-11-26 12:41 - 04179293 _____ (Lavalys, Inc. ) C:\Dokumente und Einstellungen\Raven01\Desktop\everesthome220.exe
2013-11-26 11:58 - 2013-11-26 11:48 - 00000000 ____D C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Malwarebytes' Anti-Malware (portable)
2013-11-26 11:58 - 2013-11-26 11:46 - 00000000 ____D C:\Dokumente und Einstellungen\Raven01\Desktop\mbar
2013-11-26 11:48 - 2013-11-26 11:48 - 00105176 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2013-11-26 11:47 - 2013-11-26 11:47 - 00047064 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2013-11-26 11:44 - 2013-11-26 11:44 - 00016039 _____ C:\Dokumente und Einstellungen\Raven01\Desktop\Gmer Log.log
2013-11-26 11:30 - 2013-11-26 11:30 - 12576792 _____ (Malwarebytes Corp.) C:\Dokumente und Einstellungen\Raven01\Desktop\mbar-1.07.0.1007.exe
2013-11-26 11:30 - 2013-11-26 11:30 - 00377856 _____ C:\Dokumente und Einstellungen\Raven01\Desktop\gmer_2.1.19163.exe
2013-11-25 22:39 - 2013-11-25 22:39 - 00018186 _____ C:\Dokumente und Einstellungen\Raven01\Desktop\Addition.txt
2013-11-25 22:34 - 2013-11-25 22:34 - 01091605 _____ (Farbar) C:\Dokumente und Einstellungen\Raven01\Desktop\FRST.exe
2013-11-25 17:24 - 2013-11-25 17:24 - 00000000 ____D C:\FRST
2013-11-25 16:59 - 2011-09-10 11:55 - 00000000 ____D C:\WINDOWS\SxsCaPendDel
2013-11-25 16:44 - 2013-11-25 16:44 - 00000930 _____ C:\Dokumente und Einstellungen\Raven01\Eigene Dateien\Ereignisse1.txt
2013-11-25 16:44 - 2013-11-25 16:44 - 00000930 _____ C:\Dokumente und Einstellungen\Raven01\Desktop\Ereignisse12.txt
2013-11-25 16:19 - 2010-09-25 21:24 - 00000000 ____D C:\WINDOWS\system32\NtmsData
2013-11-25 16:12 - 2011-01-03 17:43 - 00000000 ____D C:\Programme\LingoPad
2013-11-25 15:45 - 2013-11-25 15:45 - 00002744 _____ C:\Dokumente und Einstellungen\Raven01\Desktop\Ereignisse.txt
2013-11-25 15:41 - 2013-11-25 15:41 - 00915368 _____ (Oracle Corporation) C:\Dokumente und Einstellungen\Raven01\Desktop\jre-7u45-windows-i586-iftw.exe
2013-11-25 15:39 - 2013-11-25 15:39 - 00000000 ____D C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Java
2013-11-25 15:39 - 2013-11-25 15:38 - 00004837 _____ C:\WINDOWS\system32\jupdate-1.7.0_45-b18.log
2013-11-25 15:39 - 2013-06-24 21:31 - 00000000 ____D C:\Programme\Java
2013-11-25 15:38 - 2010-09-25 18:38 - 01214564 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2013-11-25 15:15 - 2013-11-25 15:15 - 00915368 _____ (Oracle Corporation) C:\Dokumente und Einstellungen\Raven01\Desktop\jxpiinstall.exe
2013-11-25 14:46 - 2013-11-25 14:46 - 00000000 ___SD C:\Dokumente und Einstellungen\LocalService\UserData
2013-11-25 14:46 - 2010-09-25 17:50 - 00000000 __SHD C:\Dokumente und Einstellungen\LocalService
2013-11-25 14:41 - 2010-09-25 17:46 - 00000000 ____D C:\WINDOWS\Registration
2013-11-25 13:46 - 2013-11-23 17:29 - 00000000 ____D C:\Dokumente und Einstellungen\Raven01\Eigene Dateien\Giana Sisters - Twisted Dreams
2013-11-25 13:31 - 2012-11-16 11:47 - 00417569 _____ C:\WINDOWS\system32\vsconfig.xml
2013-11-25 13:29 - 2013-11-25 13:29 - 00000000 ____D C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Check Point
2013-11-25 13:29 - 2013-06-24 08:47 - 00000519 _____ C:\Dokumente und Einstellungen\All Users\Desktop\ZoneAlarm Security.lnk
2013-11-25 13:26 - 2013-11-25 13:26 - 02462704 _____ (Check Point Software Technologies LTD) C:\Dokumente und Einstellungen\Raven01\Desktop\zafwSetupWeb_120_104_000.exe
2013-11-25 12:46 - 2013-11-25 12:45 - 00016909 _____ C:\WINDOWS\setupapi.log
2013-11-25 12:44 - 2013-11-25 12:43 - 00000000 ____D C:\Dokumente und Einstellungen\Raven01\Desktop\dx9
2013-11-25 12:44 - 2010-09-25 17:47 - 00000000 ____D C:\WINDOWS\system32\DirectX
2013-11-25 12:43 - 2013-11-25 12:41 - 100273008 _____ (Microsoft Corporation) C:\Dokumente und Einstellungen\Raven01\Desktop\directx_Jun2010redist.exe
2013-11-25 12:36 - 2013-11-25 12:36 - 00037984 _____ C:\Dokumente und Einstellungen\Raven01\Lokale Einstellungen\Anwendungsdaten\GDIPFONTCACHEV1.DAT
2013-11-25 12:12 - 2013-06-19 06:21 - 00137208 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys
2013-11-25 12:12 - 2013-06-19 06:21 - 00090400 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys
2013-11-25 12:12 - 2013-06-19 06:21 - 00037352 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avkmgr.sys
2013-11-25 11:35 - 2013-11-25 11:35 - 00169096 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2013-11-24 23:27 - 2011-05-15 12:40 - 00000000 ___SD C:\Dokumente und Einstellungen\Raven01\UserData
2013-11-24 12:40 - 2010-12-08 11:11 - 00000000 ____D C:\WINDOWS\Microsoft.NET
2013-11-23 23:45 - 2013-11-23 23:44 - 00170342 _____ C:\Dokumente und Einstellungen\Raven01\Desktop\fatal error.bmp
2013-11-23 19:27 - 2013-11-23 19:27 - 00354816 _____ C:\Dokumente und Einstellungen\Raven01\Desktop\fmemstdde.exe
2013-11-23 19:18 - 2010-09-25 18:38 - 00000000 ___RD C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart
2013-11-23 19:01 - 2013-03-27 19:09 - 00000000 ____D C:\Dokumente und Einstellungen\Raven01\Anwendungsdaten\Media Player Classic
2013-11-23 18:52 - 2011-03-06 17:21 - 00000000 ____D C:\Dokumente und Einstellungen\Raven01\Anwendungsdaten\WTablet
2013-11-23 18:52 - 2010-09-25 18:28 - 00000387 _____ C:\WINDOWS\RTacDbg.txt
2013-11-23 18:49 - 2010-09-25 21:47 - 00000000 ___RD C:\Dokumente und Einstellungen\Raven01\Desktop\Games
2013-11-23 18:41 - 2012-05-23 14:17 - 00000000 ____D C:\Dokumente und Einstellungen\Raven01\Anwendungsdaten\JustWrite Office
2013-11-23 18:26 - 2010-09-25 17:51 - 00000000 ___RD C:\Dokumente und Einstellungen\Raven01\Startmenü\Programme
2013-11-23 18:19 - 2013-11-23 18:19 - 105869762 _____ C:\WINDOWS\system32\粼䜎唜6
2013-11-23 17:59 - 2010-12-19 17:02 - 00000349 _____ C:\Dokumente und Einstellungen\All Users\Dokumente\PCLECHAL.INI
2013-11-23 17:56 - 2013-08-31 08:32 - 00000000 ____D C:\Programme\Gabest
2013-11-23 17:53 - 2012-01-28 15:46 - 00000000 ____D C:\Programme\JDownloader
2013-11-23 17:30 - 2012-01-18 10:49 - 00000000 ____D C:\Dokumente und Einstellungen\Raven01\Anwendungsdaten\uTorrent
2013-11-23 17:24 - 2010-12-08 11:14 - 00100816 _____ C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Anwendungsdaten\FontCache3.0.0.0.dat
2013-11-23 17:24 - 2010-12-08 11:13 - 00000000 ____D C:\WINDOWS\system32\XPSViewer
2013-11-23 12:20 - 2013-11-23 12:20 - 105835460 _____ C:\WINDOWS\system32\闞귐唜6
2013-11-22 13:15 - 2006-02-28 13:00 - 00013646 _____ C:\WINDOWS\system32\wpa.dbl
2013-11-21 12:51 - 2013-11-21 12:51 - 00000000 ____D C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\FRITZ!WLAN
2013-11-21 12:51 - 2013-11-21 12:20 - 00000000 ____D C:\Programme\avmwlanstick
2013-11-21 12:22 - 2010-09-25 17:54 - 00000000 ____D C:\WINDOWS\system32\ReinstallBackups
2013-11-21 12:20 - 2013-11-21 12:20 - 00000000 ____D C:\Programme\AVM_update
2013-11-20 22:59 - 2013-06-07 15:30 - 00000000 ____D C:\Dokumente und Einstellungen\Raven01\Desktop\Pics
2013-11-19 18:01 - 2012-05-27 13:19 - 00000000 ____D C:\Dokumente und Einstellungen\Raven01\Eigene Dateien\Ccleaner Reg.Save
2013-11-19 17:17 - 2013-11-19 17:17 - 105044098 _____ C:\WINDOWS\system32\ʨꊣ唜6
2013-11-19 16:27 - 2010-10-14 19:45 - 00000000 ____D C:\Dokumente und Einstellungen\Raven01\Anwendungsdaten\FileZilla
2013-11-16 19:41 - 2013-11-16 19:41 - 104637397 _____ C:\WINDOWS\system32\択筳唜6
2013-11-16 15:16 - 2010-09-25 19:36 - 00000211 ___SH C:\boot.ini
2013-11-16 15:16 - 2006-02-28 13:00 - 00000535 _____ C:\WINDOWS\win.ini
2013-11-16 15:16 - 2006-02-28 13:00 - 00000227 _____ C:\WINDOWS\system.ini
2013-11-16 13:49 - 2011-08-21 08:32 - 00000000 ____D C:\Dokumente und Einstellungen\Raven01\Lokale Einstellungen\Anwendungsdaten\Adobe
2013-11-16 13:48 - 2012-07-24 23:54 - 00692616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2013-11-16 13:48 - 2011-08-08 19:23 - 00071048 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2013-11-15 12:51 - 2012-11-02 13:34 - 00000000 ____D C:\Dokumente und Einstellungen\Raven01\Startmenü\Programme\Steam
2013-11-11 19:11 - 2010-09-25 21:45 - 00227840 _____ C:\Dokumente und Einstellungen\Raven01\Lokale Einstellungen\Anwendungsdaten\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-11-11 16:56 - 2013-11-11 16:56 - 103716811 _____ C:\WINDOWS\system32\퓧䫋唜6
2013-11-10 19:21 - 2013-11-10 19:21 - 103551423 _____ C:\WINDOWS\system32\ञ礎唜6
2013-11-08 00:23 - 2013-11-08 00:23 - 00012717 _____ C:\Dokumente und Einstellungen\Raven01\Desktop\Mappe2.xlsx
2013-11-07 23:41 - 2013-11-05 01:43 - 00012416 _____ C:\Dokumente und Einstellungen\Raven01\Desktop\Mappe1.xlsx
2013-11-07 18:17 - 2013-11-07 18:17 - 103000967 _____ C:\WINDOWS\system32\�骍唜6
2013-11-06 15:06 - 2013-11-06 15:06 - 102753054 _____ C:\WINDOWS\system32\넵瓖唜6
2013-11-01 13:04 - 2013-11-01 13:04 - 00000000 ____D C:\Dokumente und Einstellungen\Raven01\Lokale Einstellungen\Anwendungsdaten\Daedalic Entertainment
2013-11-01 11:49 - 2013-11-01 11:49 - 104493738 _____ C:\WINDOWS\system32\唜6
2013-10-27 10:15 - 2010-09-25 19:48 - 00001324 _____ C:\WINDOWS\system32\d3d9caps.dat
Some content of TEMP:
====================
C:\Dokumente und Einstellungen\Raven01\Lokale Einstellungen\Temp\avgnt.exe
C:\Dokumente und Einstellungen\Raven01\Lokale Einstellungen\Temp\jre-7u45-windows-i586-iftw.exe
C:\Dokumente und Einstellungen\Raven01\Lokale Einstellungen\Temp\Quarantine.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe
[2006-02-28 13:00] - [2008-04-14 06:52] - 1036800 ____A (Microsoft Corporation) 418045a93cd87a352098ab7dabe1b53e
C:\Windows\System32\winlogon.exe
[2006-02-28 13:00] - [2008-04-14 06:53] - 0513024 ____A (Microsoft Corporation) f09a527b422e25c478e38caa0e44417a
C:\Windows\System32\svchost.exe
[2006-02-28 13:00] - [2008-04-14 06:53] - 0014336 ____A (Microsoft Corporation) 4fbc75b74479c7a6f829e0ca19df3366
C:\Windows\System32\services.exe
[2006-02-28 13:00] - [2008-04-14 06:53] - 0109056 ____A (Microsoft Corporation) 4bb6a83640f1d1792ad21ce767b621c6
C:\Windows\System32\User32.dll
[2006-02-28 13:00] - [2008-04-14 06:52] - 0580096 ____A (Microsoft Corporation) b0050cc5340e3a0760dd8b417ff7aebd
C:\Windows\System32\userinit.exe
[2006-02-28 13:00] - [2008-04-14 06:53] - 0026624 ____A (Microsoft Corporation) 788f95312e26389d596c0fa55834e106
C:\Windows\System32\Drivers\volsnap.sys
[2006-02-28 13:00] - [2008-04-14 06:22] - 0053760 ____A (Microsoft Corporation) a5a712f4e880874a477af790b5186e1d
==================== End Of Log ============================ --- --- ---
--- --- ---
Addition Log
FRST Additions Logfile: Code:
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 25-11-2013 01
Ran by Raven01 at 2013-11-26 15:15:12
Running from C:\Dokumente und Einstellungen\Raven01\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Avira Desktop (Disabled - Up to date) {AD166499-45F9-482A-A743-FDD3350758C7}
FW: ZoneAlarm Free Firewall Firewall (Disabled) {829BDA32-94B3-44F4-8446-F8FCFF809F8B}
==================== Installed Programs ======================
µTorrent (HKCU Version: 3.3.2.30303)
7-Zip 4.65
Adobe AIR (Version: 2.7.0.19530)
Adobe Flash Player 11 ActiveX (Version: 11.9.900.117)
Adobe Flash Player 11 Plugin (Version: 11.9.900.152)
Adobe Shockwave Player 12.0 (Version: 12.0.2.122)
Ashampoo Burning Studio 2012 v.10.0.15 (Version: 10.0.15)
Avira Free Antivirus (Version: 14.0.1.749)
AVM FRITZ!WLAN
Beyond Good & Evil (Version: 1.01.000)
Borderlands 2
Breitbildfix (Version: 0.5.0)
CCleaner (Version: 3.17)
Combined Community Codec Pack 2013-03-02 (Version: 2013.03.02.0)
Compatibility Pack für 2007 Office System (Version: 12.0.6514.5001)
DAEMON Tools Lite (Version: 4.41.3.0173)
DivX-Setup (Version: 2.6.1.24)
Edna & Harvey: Harvey's New Eyes
Endless Space
Fable - The Lost Chapters
Fallout 3 (Version: 1.00.0000)
FileHippo.com Update Checker
FileZilla Client 3.2.7.1 (Version: 3.2.7.1)
FreeMind (Version: 0.9.0)
Gamers.IRC 5.25
Giana Sisters: Twisted Dreams
Gigabyte Raid Configurer (Version: 1.00.0000)
GIMP 2.6.11 (Version: 2.6.11)
GOG.com Gothic 2
Google Update Helper (Version: 1.3.21.165)
Gothic 2 Gold (Version: 2.0.0.8)
Gothic II Breitbildkamera-Patch (Version: 1.0)
High Definition Audio Driver Package - KB888111 (Version: 20040219.000000)
Hotfix für Windows XP (KB932716-v2) (Version: 2)
Java 7 Update 45 (Version: 7.0.450)
Java Auto Updater (Version: 2.1.9.8)
LingoPad 2.6 (Build 360) (Version: 2.6)
Malwarebytes Anti-Malware Version 1.75.0.1300 (Version: 1.75.0.1300)
Microsoft .NET Framework 2.0 Service Pack 2 (Version: 2.2.30729)
Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - DEU (Version: 2.2.30729)
Microsoft .NET Framework 3.0 Service Pack 2 (Version: 3.2.30729)
Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - DEU (Version: 3.2.30729)
Microsoft .NET Framework 3.5 Language Pack SP1 - DEU
Microsoft .NET Framework 3.5 Language Pack SP1 - deu (Version: 3.5.30729)
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319)
Microsoft Kernel-Mode Driver Framework Feature Pack 1.9
Microsoft Office 2003 Web Components (Version: 12.0.4518.1014)
Microsoft Office Excel MUI (German) 2007 (Version: 12.0.4518.1014)
Microsoft Office Home and Student 2007 (Version: 12.0.4518.1014)
Microsoft Office OneNote MUI (German) 2007 (Version: 12.0.4518.1014)
Microsoft Office PowerPoint MUI (German) 2007 (Version: 12.0.4518.1014)
Microsoft Office Proof (English) 2007 (Version: 12.0.4518.1014)
Microsoft Office Proof (French) 2007 (Version: 12.0.4518.1014)
Microsoft Office Proof (German) 2007 (Version: 12.0.4518.1014)
Microsoft Office Proof (Italian) 2007 (Version: 12.0.4518.1014)
Microsoft Office Proofing (German) 2007 (Version: 12.0.4518.1014)
Microsoft Office Shared MUI (German) 2007 (Version: 12.0.4518.1014)
Microsoft Office Word MUI (German) 2007 (Version: 12.0.4518.1014)
Microsoft Office Word Viewer 2003 (Version: 11.0.8173.0)
Microsoft Save as PDF or XPS Add-in for 2007 Microsoft Office programs (Version: 12.0.4518.1014)
Microsoft Software Update for Web Folders (German) 12 (Version: 12.0.4518.1014)
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.56336)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.59193)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Visual Studio 2005 Tools for Applications - ENU
Microsoft Visual Studio 2005 Tools for Applications - ENU (Version: 8.0.50727.146)
mIRC (Version: 7.22)
Mozilla Firefox 21.0 (x86 de) (Version: 21.0)
Mozilla Maintenance Service (Version: 21.0)
MSXML 4.0 SP2 Parser and SDK (Version: 4.20.9818.0)
MSXML 4.0 SP3 Parser (Version: 4.30.2100.0)
MSXML 6.0 Parser (KB925673) (Version: 6.00.3888.0)
MUSTEK 1200 CU v2.0a
NVIDIA Grafiktreiber 314.22 (Version: 314.22)
NVIDIA Install Application (Version: 2.1002.124.810)
NVIDIA nView 136.53 (Version: 136.53)
NVIDIA PhysX (Version: 9.13.0604)
NVIDIA PhysX-Systemsoftware 9.13.0604 (Version: 9.13.0604)
NVIDIA Systemsteuerung 314.22 (Version: 314.22)
NVIDIA Update 1.12.12 (Version: 1.12.12)
NVIDIA Update Components (Version: 1.12.12)
Overlord II (Version: 1.0)
PDF-XChange Viewer (Version: 2.0.57.0)
Pinnacle DistanTV Server (Version: 1.00.0079)
Pinnacle TVCenter Pro (Version: 4.94.1637)
Psychonauts
Rayman 2
Rayman 2: The Great Escape GOG Edition
Razer DeathAdder(TM) Mouse (Version: 3.02)
REALTEK GbE & FE Ethernet PCI-E NIC Driver (Version: 1.11.0000)
Realtek High Definition Audio Driver (Version: 5.10.0.5449)
SolidWorks 2010 SP02.1 (Version: 18.121.12)
Startscreen Patch (Version: 1.0)
Steam (Version: 1.0.0.0)
Sumpfis Textur Patch (Version: 1.0)
swMSM (Version: 12.0.0.1)
Syberia 2
Torchlight
Treasure Adventure Game (Version: 2.0.0.4)
Unepic (Version: 2.1.0.6)
Unity Web Player (HKCU Version: 2.6.1f3_31223)
VC80CRTRedist - 8.0.50727.6195 (Version: 1.2.0)
Venetica
WebFldrs XP (Version: 9.50.7523)
Windows Driver Package - Cypress (CYUSB) USB (06/05/2009 3.4.1.20) (Version: 06/05/2009 3.4.1.20)
Windows Driver Package - Razer (HidUsb) HIDClass (02/02/2007 1.0.5.0) (Version: 02/02/2007 1.0.5.0)
Windows Driver Package - Razer (HidUsb) HIDClass (04/04/2009 1.0.5.0) (Version: 04/04/2009 1.0.5.0)
Windows Imaging Component (Version: 3.0.0.0)
Windows Media Format 11 runtime
Windows Presentation Foundation (Version: 3.0.6920.0)
Windows XP Service Pack 3 (Version: 20080414.031514)
XML Paper Specification Shared Components Language Pack 1.0
XML Paper Specification Shared Components Pack 1.0
ZoneAlarm Firewall (Version: 12.0.104.000)
ZoneAlarm Free Firewall (Version: 12.0.104.000)
ZoneAlarm Security (Version: 12.0.104.000)
==================== Restore Points =========================
15-11-2013 12:09:55 Systemprüfpunkt
17-11-2013 12:22:45 Systemprüfpunkt
19-11-2013 10:29:15 Systemprüfpunkt
19-11-2013 16:25:21 DirectX wurde installiert
21-11-2013 10:42:42 Installed Belkin 54g USB Network Adapter
21-11-2013 11:19:39 Removed Belkin 54g USB Network Adapter
21-11-2013 11:26:06 Installed Belkin 54g USB Network Adapter
21-11-2013 11:27:21 Installation eines unsignierten Treibers
21-11-2013 11:49:12 Removed Belkin 54g USB Network Adapter
22-11-2013 13:23:28 Systemprüfpunkt
23-11-2013 16:23:17 Installed Windows KB954550-v5.
23-11-2013 16:23:27 Druckertreiber Microsoft XPS Document Writer installiert
23-11-2013 16:23:42 Druckertreiber Microsoft XPS Document Writer installiert
23-11-2013 16:26:01 Installed %1 %2.
23-11-2013 16:52:07 Removed PDF Split And Merge Basic
23-11-2013 17:41:15 Entfernt Wacom JustWrite Office
23-11-2013 17:41:21 Entfernt Wacom JustWrite Office
23-11-2013 18:17:56 Konfiguriert NETGEAR WG111v3 wireless USB 2.0 adapter
25-11-2013 11:44:59 DirectX wurde installiert
25-11-2013 14:38:38 Java 7 Update 45 wird installiert
==================== Hosts content: ==========================
2006-02-28 13:00 - 2006-02-28 13:00 - 00000820 ____A C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Scheduled Tasks (whitelisted) =============
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Programme\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Programme\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2013-06-19 06:21 - 2013-06-18 07:01 - 00397704 _____ () C:\Programme\Avira\AntiVir Desktop\sqlite3.dll
2009-08-23 18:58 - 2009-08-23 18:58 - 00094208 _____ () C:\Programme\FileZilla FTP Client\fzshellext.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vsmon => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"
==================== Faulty Device Manager Devices =============
Name: Realtek RTL8168/8111 PCI-E Gigabit Ethernet NIC
Description: Realtek RTL8168/8111 PCI-E Gigabit Ethernet NIC
Class Guid: {4D36E972-E325-11CE-BFC1-08002BE10318}
Manufacturer: Realtek Semiconductor Corp.
Service: RTLE8023xp
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: Beep
Description: Beep
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: Beep
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: Virtual HID Minidriver
Description: Virtual HID Minidriver
Class Guid: {6264E7E6-B95C-4033-908F-86E7AB9E2554}
Manufacturer: Razer
Service: VKbms
Problem: : Windows cannot initialize the device driver for this hardware. (Code 37)
Resolution: The driver returned failure from its DriverEntry routine. Uninstall the driver, and then click "Scan for hardware changes" to reinstall or upgrade the driver.
==================== Event log errors: =========================
Application errors:
==================
Error: (11/25/2013 00:46:28 PM) (Source: Application Error) (User: )
Description: Fehlgeschlagene Anwendung gsgameexe_dx9.exe, Version 0.0.0.0, fehlgeschlagenes Modul ntdll.dll, Version 5.1.2600.5512, Fehleradresse 0x0000120e.
Das medienspezifische Ereignis für [gsgameexe_dx9.exe!ws!] wird verarbeitet.
Error: (11/25/2013 00:41:29 PM) (Source: Application Error) (User: )
Description: Fehlgeschlagene Anwendung gsgameexe_dx9.exe, Version 0.0.0.0, fehlgeschlagenes Modul ntdll.dll, Version 5.1.2600.5512, Fehleradresse 0x0000120e.
Das medienspezifische Ereignis für [gsgameexe_dx9.exe!ws!] wird verarbeitet.
Error: (11/25/2013 00:37:09 PM) (Source: Application Error) (User: )
Description: Fehlgeschlagene Anwendung gsgameexe_dx9.exe, Version 0.0.0.0, fehlgeschlagenes Modul ntdll.dll, Version 5.1.2600.5512, Fehleradresse 0x0000120e.
Das medienspezifische Ereignis für [gsgameexe_dx9.exe!ws!] wird verarbeitet.
Error: (11/24/2013 00:19:11 PM) (Source: Application Error) (User: )
Description: Fehlgeschlagene Anwendung gsgameexe_dx9.exe, Version 0.0.0.0, fehlgeschlagenes Modul ntdll.dll, Version 5.1.2600.5512, Fehleradresse 0x0000120e.
Das medienspezifische Ereignis für [gsgameexe_dx9.exe!ws!] wird verarbeitet.
Error: (11/23/2013 11:44:37 PM) (Source: Application Error) (User: )
Description: Fehlgeschlagene Anwendung gsgameexe_dx9.exe, Version 0.0.0.0, fehlgeschlagenes Modul ntdll.dll, Version 5.1.2600.5512, Fehleradresse 0x0000120e.
Das medienspezifische Ereignis für [gsgameexe_dx9.exe!ws!] wird verarbeitet.
Error: (11/23/2013 07:26:51 PM) (Source: Application Error) (User: )
Description: Fehlgeschlagene Anwendung gsgameexe_dx9.exe, Version 0.0.0.0, fehlgeschlagenes Modul ntdll.dll, Version 5.1.2600.5512, Fehleradresse 0x0000120e.
Das medienspezifische Ereignis für [gsgameexe_dx9.exe!ws!] wird verarbeitet.
Error: (11/23/2013 07:03:12 PM) (Source: Application Error) (User: )
Description: Fehlgeschlagene Anwendung gsgameexe_dx9.exe, Version 0.0.0.0, fehlgeschlagenes Modul ntdll.dll, Version 5.1.2600.5512, Fehleradresse 0x0000120e.
Das medienspezifische Ereignis für [gsgameexe_dx9.exe!ws!] wird verarbeitet.
Error: (11/23/2013 06:22:12 PM) (Source: Application Error) (User: )
Description: Fehlgeschlagene Anwendung gsgameexe_dx9.exe, Version 0.0.0.0, fehlgeschlagenes Modul ntdll.dll, Version 5.1.2600.5512, Fehleradresse 0x0000120e.
Das medienspezifische Ereignis für [gsgameexe_dx9.exe!ws!] wird verarbeitet.
Error: (11/23/2013 05:49:16 PM) (Source: .NET Runtime Optimization Service) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Tried to start a service that wasn't the latest version of CLR Optimization service. Will shutdown
Error: (11/23/2013 05:45:27 PM) (Source: Application Error) (User: )
Description: Fehlgeschlagene Anwendung gsgameexe_dx9.exe, Version 0.0.0.0, fehlgeschlagenes Modul ntdll.dll, Version 5.1.2600.5512, Fehleradresse 0x0000120e.
Das medienspezifische Ereignis für [gsgameexe_dx9.exe!ws!] wird verarbeitet.
System errors:
=============
Error: (11/26/2013 11:41:03 AM) (Source: 0) (User: )
Description: \Device\Ide\IdePort0
Error: (11/26/2013 11:39:14 AM) (Source: 0) (User: )
Description: \Device\Ide\IdePort0
Error: (11/25/2013 04:59:52 PM) (Source: 0) (User: )
Description: 0xC0000001HarddiskVolume1
Error: (11/16/2013 02:16:20 PM) (Source: Service Control Manager) (User: )
Description: Dienst "TabletServicePen" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.
Error: (11/12/2013 06:01:35 PM) (Source: 0) (User: )
Description: 0xC000007Fpatterns.iniHarddiskVolume1
Error: (11/11/2013 05:48:18 PM) (Source: 0) (User: )
Description: \Device\Harddisk1\D
Error: (11/11/2013 05:47:58 PM) (Source: 0) (User: )
Description: \Device\Harddisk1\D
Error: (11/08/2013 08:03:50 PM) (Source: 0) (User: )
Description: \Device\Harddisk0\D
Microsoft Office Sessions:
=========================
Error: (06/09/2013 00:22:49 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.6514.5001. This session lasted 8110 seconds with 6480 seconds of active time. This session ended with a crash.
Error: (03/18/2013 07:41:21 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 3, Application Name: Microsoft Office PowerPoint, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.6514.5001. This session lasted 5 seconds with 0 seconds of active time. This session ended with a crash.
Error: (03/18/2013 07:40:44 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 3, Application Name: Microsoft Office PowerPoint, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.6514.5001. This session lasted 15 seconds with 0 seconds of active time. This session ended with a crash.
Error: (12/27/2012 04:15:50 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.6514.5001. This session lasted 10494 seconds with 6420 seconds of active time. This session ended with a crash.
Error: (01/06/2011 01:28:39 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 2627 seconds with 2400 seconds of active time. This session ended with a crash.
Error: (11/20/2010 03:34:14 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 18 seconds with 0 seconds of active time. This session ended with a crash.
==================== Memory info ===========================
Percentage of memory in use: 21%
Total physical RAM: 2046.42 MB
Available physical RAM: 1598.74 MB
Total Pagefile: 3939.32 MB
Available Pagefile: 3381.23 MB
Total Virtual: 2047.88 MB
Available Virtual: 1967.92 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:25 GB) (Free:2.37 GB) NTFS ==>[Drive with boot components (Windows XP)]
Drive d: (Spiele) (Fixed) (Total:80 GB) (Free:2.46 GB) NTFS
Drive e: (Spiele/Programme) (Fixed) (Total:80 GB) (Free:6.52 GB) NTFS
Drive f: (Daten) (Fixed) (Total:47.88 GB) (Free:0.32 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 233 GB) (Disk ID: 372A3729)
Partition 1: (Active) - (Size=25 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=208 GB) - (Type=OF Extended)
==================== End Of Log ============================ --- --- --- |