ESETSmartInstaller@High as downloader log:
all ok
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6920
# api_version=3.0.2
# EOSSerial=0f1032c2bd545c4a9a67f4b9ca68c4d6
# engine=16364
# end=stopped
# remove_checked=false
# archives_checked=true
# unwanted_checked=false
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2013-12-22 04:33:36
# local_time=2013-12-22 05:33:36 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# lang=1033
# osver=6.2.9200 NT
# compatibility_mode=5893 16776574 100 94 7215414 12611309 0 0
# scanned=134491
# found=0
# cleaned=0
# scan_time=17252
ESETSmartInstaller@High as downloader log:
all ok
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6920
# api_version=3.0.2
# EOSSerial=0f1032c2bd545c4a9a67f4b9ca68c4d6
# engine=16364
# end=stopped
# remove_checked=false
# archives_checked=true
# unwanted_checked=false
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2013-12-22 05:51:34
# local_time=2013-12-22 06:51:34 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# lang=1033
# osver=6.2.9200 NT
# compatibility_mode=5893 16776574 100 94 7220092 12615987 0 0
# scanned=135162
# found=0
# cleaned=0
# scan_time=4642
ESETSmartInstaller@High as downloader log:
all ok
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6920
# api_version=3.0.2
# EOSSerial=0f1032c2bd545c4a9a67f4b9ca68c4d6
# engine=16364
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=false
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2013-12-22 08:49:18
# local_time=2013-12-22 09:49:18 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# lang=1033
# osver=6.2.9200 NT
# compatibility_mode=5893 16776574 100 94 7230756 12626651 0 0
# scanned=213069
# found=0
# cleaned=0
# scan_time=10586
Results of screen317's Security Check version 0.99.77
x64 (UAC is enabled)
Internet Explorer 11
``````````````Antivirus/Firewall Check:``````````````
G Data InternetSecurity 2014
Windows Defender
Antivirus up to date!
`````````Anti-malware/Other Utilities Check:`````````
Malwarebytes Anti-Malware Version 1.75.0.1300
JavaScript Tooling
Java 7 Update 45
JavaScript Tooling
Visual Studio Extensions for Windows Library for JavaScript
Adobe Flash Player 11.9.900.170
Mozilla Firefox (26.0)
````````Process Check: objlist.exe by Laurent````````
Malwarebytes Anti-Malware mbamservice.exe
Malwarebytes Anti-Malware mbamgui.exe
Malwarebytes' Anti-Malware mbamscheduler.exe
G Data InternetSecurity Firewall GDFwSvcx64.exe
G Data InternetSecurity Firewall GDFirewallTray.exe
`````````````````System Health check`````````````````
Total Fragmentation on Drive C: %
````````````````````End of Log``````````````````````
FRST Logfile:
FRST Logfile:
FRST Logfile:
FRST Logfile:
Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 17-12-2013 02
Ran by ManiP_000 (administrator) on LAPI_MANUEL on 22-12-2013 22:08:31
Running from C:\Users\ManiP_000\Desktop
Windows 8.1 (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(G Data Software AG) C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe
(G Data Software AG) C:\Program Files (x86)\G Data\InternetSecurity\AVK\AVKWCtlx64.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Qualcomm Atheros Commnucations) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe
(G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe
(G Data Software AG) C:\Program Files (x86)\G Data\InternetSecurity\AVK\AVKService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Cisco Systems, Inc.) C:\Program Files (x86)\Cisco Systems\VPN Client\cvpnd.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe
(VMware, Inc.) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
(G Data Software AG) C:\Program Files (x86)\G Data\InternetSecurity\Firewall\GDFwSvcx64.exe
(G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKBap64.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
() C:\Program Files (x86)\Acer Incorporated\HID Monitor\HIDMonitor.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMTray.exe
(Atheros Communications) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
() C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Spotify Ltd) C:\Users\ManiP_000\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Dolby Laboratories Inc.) C:\Dolby PCEE4\pcee4.exe
(G Data Software AG) C:\Program Files (x86)\G Data\InternetSecurity\AVKTray\AVKTray.exe
(G Data Software AG) C:\Program Files (x86)\G Data\InternetSecurity\Firewall\GDFirewallTray.exe
(G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\GdBgInx64.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(CyberLink) C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Reader_6.3.9600.16422_x64__8wekyb3d8bbwe\glcnd.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20315_x64__8wekyb3d8bbwe\livecomm.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [HotKeysCmds] - "C:\WINDOWS\system32\hkcmd.exe"
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13449288 2013-03-26] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1278024 2013-03-08] (Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3016432 2013-03-07] (Synaptics Incorporated)
HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,c:\program files (x86)\g data\internetsecurity\avkkid\avkcks.exe
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer\Run: [BtvStack] - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [132224 2013-02-28] ( (Atheros Communications))
HKCU\...\Run: [AcerCloud] - C:\Program Files (x86)\Acer\Acer Cloud\acpanel_win.exe
HKCU\...\Run: [Spotify Web Helper] - C:\Users\ManiP_000\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1168896 2013-12-10] (Spotify Ltd)
MountPoints2: {c2a2dc89-45f5-11e3-be84-0c84dcb7343e} - "D:\LaunchU3.exe" -a
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.)
HKLM-x32\...\Run: [InstallValidator.exe.FA87EC44_C38F_4148_93A1_FF4A64A2B707] - C:\Program Files (x86)\National Instruments\Shared\NIUninstaller\InstallValidator.exe [265096 2013-06-19] ()
HKLM-x32\...\Run: [G Data AntiVirus Tray] - C:\Program Files (x86)\G Data\InternetSecurity\AVKTray\AVKTray.exe [1444472 2013-08-21] (G Data Software AG)
HKLM-x32\...\Run: [GDFirewallTray] - C:\Program Files (x86)\G Data\InternetSecurity\Firewall\GDFirewallTray.exe [1854928 2013-03-22] (G Data Software AG)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-11-02] (Apple Inc.)
AppInit_DLLs: [ ] ()
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Amazon Smart Search
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKLM - {50F34A9F-F1D3-4BAF-92A2-EB027738E3AE} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS
SearchScopes: HKLM - {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms}
SearchScopes: HKLM-x32 - {50F34A9F-F1D3-4BAF-92A2-EB027738E3AE} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS
SearchScopes: HKLM-x32 - {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms}
SearchScopes: HKCU - {50F34A9F-F1D3-4BAF-92A2-EB027738E3AE} URL =
SearchScopes: HKCU - {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms}
BHO: Plus-HD-2.5 - {11111111-1111-1111-1111-110311341138} - C:\Program Files (x86)\Plus-HD-2.5\Plus-HD-2.5-bho64.dll No File
BHO: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\IEPlugIn.dll (Qualcomm Atheros Commnucations)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: WinGuard - {e4bf64e4-237e-48e7-b43b-da6e1b60d81a} - C:\Program Files (x86)\WinGuard\winguard.dll (WinGuard)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
FireFox:
========
FF ProfilePath: C:\Users\ManiP_000\AppData\Roaming\Mozilla\Firefox\Profiles\ssdfn6c2.default
FF Homepage: hxxp://www.amazon.de/gp/bit/amazonserp/ref=bit_bds-p23_serp_ff_de_display?ie=UTF8&tagbase=bds-p23&tbrId=v1_abb-channel-23_1b76428ca8c441cfae2acac76b926796_39_1006_20131128_DE_ff_sp_
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\do-search.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: Amazon Browser Bar - C:\Users\ManiP_000\AppData\Roaming\Mozilla\Firefox\Profiles\ssdfn6c2.default\Extensions\abb@amazon.com
FF Extension: Adblock Plus - C:\Users\ManiP_000\AppData\Roaming\Mozilla\Firefox\Profiles\ssdfn6c2.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF HKLM-x32\...\Firefox\Extensions: [{b5c5f665-7989-464f-8ec3-30b9885084df}] - C:\Program Files (x86)\WinGuard\winguard.xpi
FF Extension: No Name - C:\Program Files (x86)\WinGuard\winguard.xpi
Chrome:
=======
CHR HomePage:
CHR Extension: (Plus-HD-2.5) - C:\Users\ManiP_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\iefogiieekeeeeaiklglonbockmhmkgd\1.25.75_0
CHR HKLM-x32\...\Chrome\Extension: [dieamnlmngcabkakacnbgggaecncjpea] - C:\Program Files (x86)\WinGuard\winguard.crx
==================== Services (Whitelisted) =================
R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [227968 2013-02-28] (Qualcomm Atheros Commnucations)
R2 AVKProxy; C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe [1970296 2013-08-26] (G Data Software AG)
R2 AVKService; C:\Program Files (x86)\G Data\InternetSecurity\AVK\AVKService.exe [635000 2013-08-21] (G Data Software AG)
R2 AVKWCtl; C:\Program Files (x86)\G Data\InternetSecurity\AVK\AVKWCtlx64.exe [2562208 2013-10-15] (G Data Software AG)
R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [660040 2013-01-18] (Acer Incorporated)
S3 fussvc; C:\Program Files (x86)\Windows Kits\8.1\App Certification Kit\fussvc.exe [142336 2013-08-22] (Microsoft Corporation)
R3 GDFwSvc; C:\Program Files (x86)\G Data\InternetSecurity\Firewall\GDFwSvcx64.exe [2942808 2013-10-17] (G Data Software AG)
R3 GDScan; C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe [695416 2013-08-22] (G Data Software AG)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128896 2013-02-18] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2013-02-18] (Intel Corporation)
R2 LMSvc; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [431656 2013-04-26] (Acer Incorporate)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
S3 Te.Service; C:\Program Files (x86)\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe [119808 2013-08-22] (Microsoft Corporation)
S3 VsEtwService120; C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe [87728 2013-10-04] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra)
S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows (R) Win 7 DDK provider)
S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2013-02-28] (Qualcomm Atheros)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [224768 2013-08-22] (Microsoft Corporation)
R3 CVPNDRVA; C:\WINDOWS\system32\Drivers\CVPNDRVA.sys [306536 2011-03-04] ()
R0 GDBehave; C:\Windows\System32\drivers\GDBehave.sys [60248 2013-11-17] (G Data Software AG)
R1 GDMnIcpt; C:\WINDOWS\system32\drivers\MiniIcpt.sys [130392 2013-11-17] (G Data Software AG)
R3 GDPkIcpt; C:\WINDOWS\system32\drivers\PktIcpt.sys [64856 2013-11-17] (G Data Software AG)
R1 gdwfpcd; C:\Windows\System32\drivers\gdwfpcd64.sys [68440 2013-11-17] (G Data Software AG)
R1 GRD; C:\WINDOWS\system32\drivers\GRD.sys [106272 2013-11-25] (G Data Software)
R1 HookCentre; C:\WINDOWS\system32\drivers\HookCentre.sys [65368 2013-11-17] (G Data Software AG)
S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation)
S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation)
S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation)
R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2013-11-11] (Microsoft Corporation)
R3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-01-10] (Acer Incorporated)
S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation)
S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation)
S3 QRDCIO; C:\Windows\System32\drivers\QRDCIO.sys [9728 2009-10-20] (QUANTA)
R3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [15704 2013-01-10] (Acer Incorporated)
S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924512 2013-08-22] (Microsoft Corporation)
R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [455240 2013-03-05] (RTS Corporation)
R3 SensorsSimulatorDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [230912 2013-08-22] (Microsoft Corporation)
S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2013-10-26] (Microsoft Corporation)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [31984 2013-03-07] (Synaptics Incorporated)
S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-10-05] (Microsoft Corporation)
S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation)
R0 vsock; C:\Windows\System32\drivers\vsock.sys [73296 2013-10-08] (VMware, Inc.)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-12-22 21:59 - 2013-12-22 21:59 - 00891200 _____ C:\Users\ManiP_000\Desktop\SecurityCheck.exe
2013-12-22 12:37 - 2013-12-22 12:37 - 02347384 _____ (ESET) C:\Users\ManiP_000\Desktop\esetsmartinstaller_enu.exe
2013-12-20 15:00 - 2013-12-20 15:06 - 00000000 ____D C:\Users\ManiP_000\AppData\Roaming\SpotifyController
2013-12-20 14:59 - 2013-12-20 14:59 - 08205497 _____ ( ) C:\Users\ManiP_000\Downloads\setupSpotifyController.exe
2013-12-20 13:24 - 2013-12-22 22:08 - 00017919 _____ C:\Users\ManiP_000\Desktop\FRST.txt
2013-12-20 13:17 - 2013-12-20 13:17 - 00001626 _____ C:\Users\ManiP_000\Desktop\JRT.txt
2013-12-20 13:11 - 2013-12-20 13:11 - 00000000 ____D C:\WINDOWS\ERUNT
2013-12-20 13:07 - 2013-12-20 13:07 - 00001218 _____ C:\Users\ManiP_000\Desktop\AdwCleaner[S1].txt
2013-12-20 12:54 - 2013-12-20 13:02 - 00000000 ____D C:\AdwCleaner
2013-12-20 12:52 - 2013-12-20 12:51 - 00042687 _____ C:\Users\ManiP_000\Desktop\Logs.zip
2013-12-20 12:13 - 2013-12-20 12:13 - 01110476 _____ C:\Users\ManiP_000\Downloads\7z920.exe
2013-12-20 12:13 - 2013-12-20 12:13 - 00000000 ____D C:\Program Files (x86)\7-Zip
2013-12-20 11:53 - 2013-12-20 11:53 - 01034531 _____ (Thisisu) C:\Users\ManiP_000\Desktop\JRT.exe
2013-12-20 11:51 - 2013-12-20 11:51 - 01226750 _____ C:\Users\ManiP_000\Desktop\adwcleaner.exe
2013-12-20 10:47 - 2013-12-20 10:47 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-12-19 14:22 - 2013-12-19 14:22 - 00001125 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-12-19 14:22 - 2013-12-19 14:22 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-12-19 14:22 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2013-12-19 14:21 - 2013-12-19 14:21 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\ManiP_000\Downloads\mbam-setup-1.75.0.1300(1).exe
2013-12-18 20:04 - 2013-12-18 20:04 - 00000000 ____D C:\Users\ManiP_000\AppData\Roaming\Malwarebytes
2013-12-18 20:04 - 2013-12-18 20:04 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-12-18 20:02 - 2013-12-18 20:03 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\ManiP_000\Downloads\mbam-setup-1.75.0.1300.exe
2013-12-17 22:02 - 2013-12-17 22:04 - 00037829 _____ C:\Users\ManiP_000\Downloads\Addition.txt
2013-12-17 21:59 - 2013-12-17 21:59 - 00000000 ____D C:\FRST
2013-12-17 21:58 - 2013-12-17 21:58 - 01928214 _____ (Farbar) C:\Users\ManiP_000\Desktop\FRST64.exe
2013-12-14 07:53 - 2013-11-12 00:41 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2013-12-14 07:53 - 2013-11-12 00:40 - 00249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2013-12-14 07:53 - 2013-11-12 00:27 - 00701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2013-12-14 07:53 - 2013-11-12 00:24 - 00840704 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2013-12-14 07:53 - 2013-11-11 03:48 - 00039768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2013-12-14 07:53 - 2013-11-09 12:55 - 00325464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2013-12-14 07:53 - 2013-11-09 07:37 - 01756160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2013-12-14 07:53 - 2013-11-09 06:56 - 01391104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2013-12-14 07:53 - 2013-11-08 11:26 - 00358896 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2013-12-14 07:53 - 2013-11-08 05:43 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2013-12-14 07:53 - 2013-11-08 05:28 - 13177344 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2013-12-14 07:53 - 2013-11-08 05:26 - 11674624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2013-12-14 07:53 - 2013-11-08 05:16 - 00225792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2013-12-14 07:53 - 2013-11-08 05:15 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2013-12-14 07:53 - 2013-11-08 05:07 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll
2013-12-14 07:53 - 2013-11-08 04:41 - 01302528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2013-12-14 07:53 - 2013-11-08 04:14 - 00922624 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2013-12-14 07:53 - 2013-11-05 15:19 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2013-12-14 07:53 - 2013-11-05 15:03 - 00637952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2013-12-14 07:53 - 2013-11-05 14:57 - 00479744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2013-12-14 07:53 - 2013-11-05 14:33 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2013-12-14 07:53 - 2013-11-05 14:32 - 00744448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2013-12-14 07:53 - 2013-11-04 18:13 - 01530200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2013-12-14 07:53 - 2013-11-04 18:13 - 00382808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2013-12-14 07:53 - 2013-11-04 14:07 - 01843712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll
2013-12-14 07:53 - 2013-11-04 12:50 - 02143744 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2013-12-14 07:53 - 2013-11-04 11:32 - 02570240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2013-12-14 07:53 - 2013-11-04 03:28 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Display.dll
2013-12-14 07:53 - 2013-11-04 02:30 - 01765376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2013-12-14 07:53 - 2013-11-01 12:39 - 00086872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2013-12-14 07:53 - 2013-11-01 07:08 - 00747008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcli.dll
2013-12-14 07:53 - 2013-11-01 06:57 - 00544768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcli.dll
2013-12-14 07:53 - 2013-10-31 01:58 - 00372568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2013-12-14 07:53 - 2013-10-31 01:42 - 07399256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2013-12-14 07:53 - 2013-10-31 01:33 - 01642016 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2013-12-14 07:53 - 2013-10-31 01:33 - 01506680 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2013-12-14 07:53 - 2013-10-31 01:33 - 01476184 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2013-12-14 07:53 - 2013-10-31 01:33 - 01345536 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2013-12-14 07:53 - 2013-10-26 02:54 - 00146776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\SerCx2.sys
2013-12-14 07:53 - 2013-10-24 10:31 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll
2013-12-14 07:53 - 2013-10-24 10:12 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredentialMigrationHandler.dll
2013-12-14 07:53 - 2013-10-17 12:21 - 02896896 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2013-12-14 07:53 - 2013-10-17 11:36 - 02266624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2013-12-14 07:53 - 2013-10-05 15:21 - 02140888 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2013-12-14 07:53 - 2013-10-05 15:21 - 00516496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2013-12-14 07:53 - 2013-10-05 13:05 - 01765384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2013-12-14 07:53 - 2013-10-05 13:05 - 00406400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2013-12-13 16:27 - 2013-12-13 16:27 - 00000000 ____D C:\Users\ManiP_000\AppData\Local\G DATA
2013-12-13 13:18 - 2013-12-13 13:18 - 00001799 _____ C:\Users\Public\Desktop\iTunes.lnk
2013-12-13 13:14 - 2013-12-13 13:14 - 00000000 ____D C:\Program Files\Bonjour
2013-12-13 13:14 - 2013-12-13 13:14 - 00000000 ____D C:\Program Files (x86)\Bonjour
2013-12-13 12:50 - 2013-12-13 12:50 - 00003210 _____ C:\WINDOWS\System32\Tasks\{05A18D02-A3BA-4910-A73F-80DDD48938E0}
2013-12-12 17:19 - 2013-11-23 05:34 - 00393216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2013-12-12 17:19 - 2013-11-23 05:13 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll
2013-12-12 17:19 - 2013-11-23 04:32 - 04105728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2013-12-12 17:19 - 2013-11-23 04:10 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
2013-12-12 17:18 - 2013-11-09 07:34 - 00615936 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2013-12-12 17:18 - 2013-11-09 07:34 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2013-12-12 17:18 - 2013-11-09 06:52 - 00240128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2013-12-11 20:35 - 2013-10-19 09:53 - 00075360 _____ (Microsoft Corporation) C:\WINDOWS\system32\imagehlp.dll
2013-12-11 20:35 - 2013-10-19 08:14 - 00070680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imagehlp.dll
2013-12-11 20:32 - 2013-10-15 09:54 - 00197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrrun.dll
2013-12-11 20:32 - 2013-10-15 09:03 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrrun.dll
2013-12-11 20:27 - 2013-11-26 12:54 - 23183360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2013-12-11 20:27 - 2013-11-26 11:11 - 17112576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2013-12-11 20:27 - 2013-11-26 10:41 - 02764288 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2013-12-11 20:27 - 2013-11-26 09:57 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2013-12-11 20:27 - 2013-11-26 09:38 - 02166784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2013-12-11 20:27 - 2013-11-26 09:35 - 05769216 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2013-12-11 20:27 - 2013-11-26 09:16 - 04243968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2013-12-11 20:27 - 2013-11-26 09:02 - 01995264 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2013-12-11 20:27 - 2013-11-26 08:48 - 12996608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2013-12-11 20:27 - 2013-11-26 08:32 - 01928192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2013-12-11 20:27 - 2013-11-26 08:26 - 11221504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2013-12-11 20:27 - 2013-11-26 08:07 - 02334208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2013-12-11 20:27 - 2013-11-26 07:40 - 01395200 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2013-12-11 20:27 - 2013-11-26 07:34 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2013-12-11 20:27 - 2013-11-26 07:34 - 00703488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2013-12-11 20:27 - 2013-11-26 07:33 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2013-12-11 20:27 - 2013-11-26 07:27 - 01157632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2013-12-11 19:44 - 2013-11-08 08:21 - 04191744 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2013-12-01 17:19 - 2013-12-01 17:21 - 00031232 _____ C:\Users\ManiP_000\Downloads\Teammaterial Shimano+Schwalbe 2014.xls
2013-11-28 18:17 - 2013-11-28 18:17 - 00129536 _____ C:\Users\Public\AlexaNSISPlugin.4852.dll
2013-11-27 19:36 - 2013-11-27 19:36 - 00000000 ____D C:\Users\ManiP_000\SyncFolder
2013-11-26 23:08 - 2013-11-26 23:08 - 00000000 ____D C:\WINDOWS\de
2013-11-26 23:07 - 2013-11-26 23:07 - 00000199 _____ C:\WINDOWS\DirectX.log
2013-11-26 23:07 - 2013-11-26 23:07 - 00000000 ____D C:\Program Files (x86)\Windows Live
2013-11-26 23:07 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_7.dll
2013-11-26 23:07 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_7.dll
2013-11-26 23:07 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_5.dll
2013-11-26 23:07 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_5.dll
2013-11-26 23:07 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_43.dll
2013-11-26 23:07 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_43.dll
2013-11-26 23:07 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_42.dll
2013-11-26 23:07 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_42.dll
2013-11-26 23:07 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_32.dll
2013-11-26 23:07 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_32.dll
2013-11-26 23:05 - 2013-11-26 23:10 - 00000000 ____D C:\Users\ManiP_000\AppData\Local\Windows Live
2013-11-26 23:02 - 2013-11-26 23:03 - 142602520 _____ (Microsoft Corporation) C:\Users\ManiP_000\Downloads\wlsetup-all_16.4.3508.0205.exe
2013-11-26 21:57 - 2013-11-26 21:59 - 00000000 ____D C:\Users\ManiP_000\.gimp-2.8
2013-11-26 21:57 - 2013-11-26 21:57 - 00000000 ____D C:\Users\ManiP_000\AppData\Local\gegl-0.2
2013-11-26 21:53 - 2013-11-26 21:54 - 00000000 ____D C:\Program Files\GIMP 2
2013-11-26 21:52 - 2013-12-13 11:20 - 00000898 _____ C:\WINDOWS\SysWOW64\InstallUtil.InstallLog
2013-11-26 21:52 - 2013-11-26 21:52 - 00000000 ____D C:\Program Files (x86)\WinGuard
2013-11-25 22:39 - 2013-11-25 22:39 - 00106272 _____ (G Data Software) C:\WINDOWS\system32\Drivers\GRD.sys
==================== One Month Modified Files and Folders =======
2013-12-22 22:09 - 2013-12-20 13:24 - 00017919 _____ C:\Users\ManiP_000\Desktop\FRST.txt
2013-12-22 22:04 - 2013-10-20 21:23 - 00003958 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{BB389CE9-7622-417A-9E64-C539EE795F17}
2013-12-22 22:00 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\sru
2013-12-22 21:59 - 2013-12-22 21:59 - 00891200 _____ C:\Users\ManiP_000\Desktop\SecurityCheck.exe
2013-12-22 21:56 - 2013-10-13 20:13 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2013-12-22 21:41 - 2013-10-20 10:25 - 01526217 _____ C:\WINDOWS\WindowsUpdate.log
2013-12-22 15:57 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2013-12-22 12:37 - 2013-12-22 12:37 - 02347384 _____ (ESET) C:\Users\ManiP_000\Desktop\esetsmartinstaller_enu.exe
2013-12-22 12:16 - 2013-10-20 10:35 - 00000000 __RDO C:\Users\ManiP_000\SkyDrive
2013-12-20 17:00 - 2013-10-13 11:23 - 00000000 ____D C:\Users\ManiP_000\AppData\Roaming\Spotify
2013-12-20 16:44 - 2013-10-13 09:55 - 00003596 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1090282576-1154135248-24423978-1001
2013-12-20 16:33 - 2013-11-12 09:14 - 00000000 ____D C:\ProgramData\VMware
2013-12-20 16:33 - 2013-08-22 15:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2013-12-20 16:32 - 2013-08-22 14:25 - 01048576 ___SH C:\WINDOWS\system32\config\BBI
2013-12-20 15:06 - 2013-12-20 15:00 - 00000000 ____D C:\Users\ManiP_000\AppData\Roaming\SpotifyController
2013-12-20 14:59 - 2013-12-20 14:59 - 08205497 _____ ( ) C:\Users\ManiP_000\Downloads\setupSpotifyController.exe
2013-12-20 13:57 - 2013-10-13 11:23 - 00000000 ____D C:\Users\ManiP_000\AppData\Local\Spotify
2013-12-20 13:17 - 2013-12-20 13:17 - 00001626 _____ C:\Users\ManiP_000\Desktop\JRT.txt
2013-12-20 13:11 - 2013-12-20 13:11 - 00000000 ____D C:\WINDOWS\ERUNT
2013-12-20 13:07 - 2013-12-20 13:07 - 00001218 _____ C:\Users\ManiP_000\Desktop\AdwCleaner[S1].txt
2013-12-20 13:02 - 2013-12-20 12:54 - 00000000 ____D C:\AdwCleaner
2013-12-20 12:59 - 2013-10-20 10:08 - 00000000 ____D C:\Users\ManiP_000
2013-12-20 12:55 - 2013-10-13 09:48 - 00001019 _____ C:\Users\ManiP_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-12-20 12:51 - 2013-12-20 12:52 - 00042687 _____ C:\Users\ManiP_000\Desktop\Logs.zip
2013-12-20 12:13 - 2013-12-20 12:13 - 01110476 _____ C:\Users\ManiP_000\Downloads\7z920.exe
2013-12-20 12:13 - 2013-12-20 12:13 - 00000000 ____D C:\Program Files (x86)\7-Zip
2013-12-20 11:53 - 2013-12-20 11:53 - 01034531 _____ (Thisisu) C:\Users\ManiP_000\Desktop\JRT.exe
2013-12-20 11:51 - 2013-12-20 11:51 - 01226750 _____ C:\Users\ManiP_000\Desktop\adwcleaner.exe
2013-12-20 11:37 - 2013-09-29 20:04 - 00393924 _____ C:\WINDOWS\PFRO.log
2013-12-20 11:25 - 2013-10-13 10:48 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-12-20 10:47 - 2013-12-20 10:47 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-12-19 14:22 - 2013-12-19 14:22 - 00001125 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-12-19 14:22 - 2013-12-19 14:22 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-12-19 14:21 - 2013-12-19 14:21 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\ManiP_000\Downloads\mbam-setup-1.75.0.1300(1).exe
2013-12-19 14:19 - 2013-09-30 05:14 - 01785036 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2013-12-19 14:19 - 2013-09-30 04:56 - 00768266 _____ C:\WINDOWS\system32\perfh007.dat
2013-12-19 14:19 - 2013-09-30 04:56 - 00160576 _____ C:\WINDOWS\system32\perfc007.dat
2013-12-19 14:17 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\NDF
2013-12-18 20:04 - 2013-12-18 20:04 - 00000000 ____D C:\Users\ManiP_000\AppData\Roaming\Malwarebytes
2013-12-18 20:04 - 2013-12-18 20:04 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-12-18 20:03 - 2013-12-18 20:02 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\ManiP_000\Downloads\mbam-setup-1.75.0.1300.exe
2013-12-18 15:09 - 2013-08-22 16:36 - 00000000 ___RD C:\WINDOWS\ToastData
2013-12-18 15:09 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\WinStore
2013-12-18 15:09 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\MediaViewer
2013-12-18 15:09 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\FileManager
2013-12-18 15:09 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\Camera
2013-12-17 22:04 - 2013-12-17 22:02 - 00037829 _____ C:\Users\ManiP_000\Downloads\Addition.txt
2013-12-17 21:59 - 2013-12-17 21:59 - 00000000 ____D C:\FRST
2013-12-17 21:58 - 2013-12-17 21:58 - 01928214 _____ (Farbar) C:\Users\ManiP_000\Desktop\FRST64.exe
2013-12-14 18:00 - 2013-10-13 12:36 - 00000000 ____D C:\WINDOWS\system32\MRT
2013-12-14 17:57 - 2013-10-13 12:36 - 90708896 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2013-12-13 16:27 - 2013-12-13 16:27 - 00000000 ____D C:\Users\ManiP_000\AppData\Local\G DATA
2013-12-13 14:01 - 2013-07-17 16:32 - 00000000 ____D C:\ProgramData\Norton
2013-12-13 13:18 - 2013-12-13 13:18 - 00001799 _____ C:\Users\Public\Desktop\iTunes.lnk
2013-12-13 13:17 - 2013-10-18 11:09 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2013-12-13 13:17 - 2013-10-18 11:09 - 00000000 ____D C:\Program Files\iTunes
2013-12-13 13:17 - 2013-10-18 11:09 - 00000000 ____D C:\Program Files\iPod
2013-12-13 13:17 - 2013-10-18 11:09 - 00000000 ____D C:\Program Files (x86)\iTunes
2013-12-13 13:14 - 2013-12-13 13:14 - 00000000 ____D C:\Program Files\Bonjour
2013-12-13 13:14 - 2013-12-13 13:14 - 00000000 ____D C:\Program Files (x86)\Bonjour
2013-12-13 13:05 - 2013-10-16 16:43 - 00000000 ____D C:\Users\ManiP_000\AppData\Local\clear.fi
2013-12-13 13:05 - 2013-07-03 13:14 - 00000000 ____D C:\ProgramData\Acer
2013-12-13 13:05 - 2013-07-03 13:14 - 00000000 ____D C:\Program Files (x86)\Acer
2013-12-13 12:50 - 2013-12-13 12:50 - 00003210 _____ C:\WINDOWS\System32\Tasks\{05A18D02-A3BA-4910-A73F-80DDD48938E0}
2013-12-13 12:47 - 2013-10-13 09:48 - 00000000 ___RD C:\Users\ManiP_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-12-13 11:53 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\tracing
2013-12-13 11:20 - 2013-11-26 21:52 - 00000898 _____ C:\WINDOWS\SysWOW64\InstallUtil.InstallLog
2013-12-13 10:44 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\rescache
2013-12-12 22:09 - 2013-08-22 15:44 - 00410112 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2013-12-12 17:54 - 2013-11-14 18:06 - 00000600 _____ C:\Users\ManiP_000\AppData\Local\PUTTY.RND
2013-12-12 17:19 - 2013-10-16 16:49 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-12-11 21:06 - 2013-10-13 20:13 - 00003772 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2013-12-04 01:05 - 2013-08-22 16:38 - 00693240 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2013-12-04 01:05 - 2013-08-22 16:38 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2013-12-03 12:26 - 2013-10-13 09:46 - 00000000 ____D C:\Users\ManiP_000\AppData\Local\Packages
2013-12-01 17:21 - 2013-12-01 17:19 - 00031232 _____ C:\Users\ManiP_000\Downloads\Teammaterial Shimano+Schwalbe 2014.xls
2013-11-28 18:20 - 2013-08-22 15:46 - 00298748 _____ C:\WINDOWS\setupact.log
2013-11-28 18:17 - 2013-11-28 18:17 - 00129536 _____ C:\Users\Public\AlexaNSISPlugin.4852.dll
2013-11-27 20:26 - 2013-10-13 20:10 - 00000000 ____D C:\Users\ManiP_000\AppData\Local\Adobe
2013-11-27 19:36 - 2013-11-27 19:36 - 00000000 ____D C:\Users\ManiP_000\SyncFolder
2013-11-26 23:10 - 2013-11-26 23:05 - 00000000 ____D C:\Users\ManiP_000\AppData\Local\Windows Live
2013-11-26 23:08 - 2013-11-26 23:08 - 00000000 ____D C:\WINDOWS\de
2013-11-26 23:07 - 2013-11-26 23:07 - 00000199 _____ C:\WINDOWS\DirectX.log
2013-11-26 23:07 - 2013-11-26 23:07 - 00000000 ____D C:\Program Files (x86)\Windows Live
2013-11-26 23:07 - 2013-10-28 22:10 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2013-11-26 23:03 - 2013-11-26 23:02 - 142602520 _____ (Microsoft Corporation) C:\Users\ManiP_000\Downloads\wlsetup-all_16.4.3508.0205.exe
2013-11-26 21:59 - 2013-11-26 21:57 - 00000000 ____D C:\Users\ManiP_000\.gimp-2.8
2013-11-26 21:57 - 2013-11-26 21:57 - 00000000 ____D C:\Users\ManiP_000\AppData\Local\gegl-0.2
2013-11-26 21:54 - 2013-11-26 21:53 - 00000000 ____D C:\Program Files\GIMP 2
2013-11-26 21:52 - 2013-11-26 21:52 - 00000000 ____D C:\Program Files (x86)\WinGuard
2013-11-26 12:54 - 2013-12-11 20:27 - 23183360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2013-11-26 11:11 - 2013-12-11 20:27 - 17112576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2013-11-26 10:41 - 2013-12-11 20:27 - 02764288 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2013-11-26 09:57 - 2013-12-11 20:27 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2013-11-26 09:38 - 2013-12-11 20:27 - 02166784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2013-11-26 09:35 - 2013-12-11 20:27 - 05769216 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2013-11-26 09:16 - 2013-12-11 20:27 - 04243968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2013-11-26 09:02 - 2013-12-11 20:27 - 01995264 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2013-11-26 08:48 - 2013-12-11 20:27 - 12996608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2013-11-26 08:32 - 2013-12-11 20:27 - 01928192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2013-11-26 08:26 - 2013-12-11 20:27 - 11221504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2013-11-26 08:07 - 2013-12-11 20:27 - 02334208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2013-11-26 07:40 - 2013-12-11 20:27 - 01395200 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2013-11-26 07:34 - 2013-12-11 20:27 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2013-11-26 07:34 - 2013-12-11 20:27 - 00703488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2013-11-26 07:33 - 2013-12-11 20:27 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2013-11-26 07:27 - 2013-12-11 20:27 - 01157632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2013-11-25 22:39 - 2013-11-25 22:39 - 00106272 _____ (G Data Software) C:\WINDOWS\system32\Drivers\GRD.sys
2013-11-23 05:34 - 2013-12-12 17:19 - 00393216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2013-11-23 05:13 - 2013-12-12 17:19 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll
2013-11-23 04:32 - 2013-12-12 17:19 - 04105728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2013-11-23 04:10 - 2013-12-12 17:19 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
Files to move or delete:
====================
C:\Users\Public\AlexaNSISPlugin.4852.dll
C:\Users\Public\AlexaNSISPlugin.6872.dll
C:\Users\Public\AlexaNSISPlugin.9484.dll
Some content of TEMP:
====================
C:\Users\ManiP_000\AppData\Local\Temp\AcerCloudSetup.exe
C:\Users\ManiP_000\AppData\Local\Temp\BackupSetup.exe
C:\Users\ManiP_000\AppData\Local\Temp\NativeUtilities-x86-0.dll
C:\Users\ManiP_000\AppData\Local\Temp\NativeUtilities0.dll
C:\Users\ManiP_000\AppData\Local\Temp\Quarantine.exe
C:\Users\ManiP_000\AppData\Local\Temp\SendMsg.dll
C:\Users\ManiP_000\AppData\Local\Temp\vpnclient_setup.exe
C:\Users\ManiP_000\AppData\Local\Temp\WdfCoInstaller01007.dll
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-12-20 12:45
==================== End Of Log ============================
--- --- ---
--- --- ---
--- --- ---
--- --- ---
Nein keine Probleme mehr!,
vielen vielen Dank
Aber können sie mir sagen wie ich daran gekommen bin?
Damit mir sowas nicht nochmal passiert.
Nein bisher keine Probleme mehr,
vielen vielen Dank,
Aber können sie mir sagen wie ich daran gekommen bin?
Damit mir sowas in zukunft nicht nochmal passiert.