Hallo Matthias,
Vielen Dank für deine Hilfe.
FRST Logfile:
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 05-01-2014
Ran by Burcin (administrator) on BURCIN-TOSH on 06-01-2014 14:42:09
Running from C:\Users\Burcin\Downloads
Microsoft Windows 7 Starter Service Pack 1 (X86) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(Wsys Co., Ltd.) C:\ProgramData\eSafe\eGdpSvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe
(TOSHIBA Corporation) C:\Windows\System32\TODDSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe
(Microsoft Corporation) C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\Teco.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\TecoService.exe
(Safer Networking Ltd.) C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Toshiba Europe GmbH) C:\Program Files\Toshiba TEMPRO\TemproTray.exe
(Sun Microsystems, Inc.) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(TOSHIBA) C:\Program Files\TOSHIBA\TOSHIBA Online Product Information\TOPI.exe
(Safer Networking Limited) C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
(Toshiba) C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIMonitor.exe
(Dropbox, Inc.) C:\Users\Burcin\AppData\Roaming\Dropbox\bin\Dropbox.exe
(PC Utilities Pro) C:\Program Files\Optimizer Pro\OptProReminder.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(TOSHIBA CORPORATION) C:\Program Files\TOSHIBA\ConfigFree\CFIWmxSvcs.exe
(TOSHIBA CORPORATION) C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
(Nero AG) C:\Program Files\Nero\Update\NASvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\ipmgui.exe
(Microsoft Corporation) C:\Windows\System32\wuauclt.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [] - [x]
HKLM\...\Run: [GfxServiceInstall] - C:\Windows\System32\GfxCUIServiceInstall.vbs [131 2011-12-13] ()
HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [11487848 2011-11-30] (Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2295080 2011-10-01] (Synaptics Incorporated)
HKLM\...\Run: [TPwrMain] - C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe [542640 2011-09-23] (TOSHIBA Corporation)
HKLM\...\Run: [TCrdMain] - C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [849280 2011-08-03] (TOSHIBA Corporation)
HKLM\...\Run: [Teco] - C:\Program Files\TOSHIBA\TECO\Teco.exe [1370032 2011-11-24] (TOSHIBA Corporation)
HKLM\...\Run: [TosSENotify] - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [612256 2011-06-10] (TOSHIBA Corporation)
HKLM\...\Run: [TosVolRegulator] - C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe [22840 2009-11-11] (TOSHIBA Corporation)
HKLM\...\Run: [TosNC] - C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe [469424 2011-06-28] (TOSHIBA Corporation)
HKLM\...\Run: [TosReelTimeMonitor] - C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe [32168 2011-06-28] (TOSHIBA Corporation)
HKLM\...\Run: [NBAgent] - C:\Program Files\Nero\Nero 10\Nero BackItUp\NBAgent.exe [1409424 2011-06-29] (Nero AG)
HKLM\...\Run: [Toshiba TEMPRO] - C:\Program Files\Toshiba TEMPRO\TemproTray.exe [1546720 2011-02-10] (Toshiba Europe GmbH)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [Toshiba Registration] - C:\Program Files\TOSHIBA\Registration\ToshibaReminder.exe [150992 2012-01-05] (Toshiba Europe GmbH)
HKLM\...\Run: [APSDaemon] - C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59280 2012-10-11] (Apple Inc.)
HKLM\...\Run: [QuickTime Task] - C:\Program Files\QuickTime\QTTask.exe [421888 2012-10-25] (Apple Inc.)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [252848 2012-07-03] (Sun Microsystems, Inc.)
HKLM\...\Run: [avgnt] - C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [684600 2014-01-06] (Avira Operations GmbH & Co. KG)
HKCU\...\Run: [TOPI.EXE] - C:\Program Files\TOSHIBA\TOSHIBA Online Product Information\TOPI.exe [846936 2011-05-16] (TOSHIBA)
HKCU\...\Run: [SpybotSD TeaTimer] - C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2144088 2009-01-26] (Safer Networking Limited)
HKCU\...\Run: [Optimizer Pro] - C:\Program Files\Optimizer Pro\OptProLauncher.exe [134648 2013-10-28] ()
MountPoints2: {13fea032-515f-11e3-bfdc-00266c11bf4e} - E:\autorun.exe
HKU\Default\...\Run: [TOPI.EXE] - C:\Program Files\TOSHIBA\TOSHIBA Online Product Information\TOPI.exe [ 2011-05-16] (TOSHIBA)
AppInit_DLLs: C:\Program Files\Optimizer Pro\OptProCrash.dll [4246344 2013-10-29] ()
Startup: C:\Users\Burcin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Burcin\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com/ig/redirectdomain?brand=TEUB&bmod=TEUB
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.nationzoom.com/web/?type=ds&ts=1385914956&from=tugs&uid=HitachiXHTS543232A7A384_120312E2M3121K01YAUSX&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.nationzoom.com/?type=hp&ts=1385914956&from=tugs&uid=HitachiXHTS543232A7A384_120312E2M3121K01YAUSX
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.nationzoom.com/?type=hp&ts=1385914956&from=tugs&uid=HitachiXHTS543232A7A384_120312E2M3121K01YAUSX
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.nationzoom.com/web/?type=ds&ts=1385914956&from=tugs&uid=HitachiXHTS543232A7A384_120312E2M3121K01YAUSX&q={searchTerms}
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe hxxp://www.nationzoom.com/?type=sc&ts=1385914956&from=tugs&uid=HitachiXHTS543232A7A384_120312E2M3121K01YAUSX
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.nationzoom.com/web/?type=ds&ts=1385914956&from=tugs&uid=HitachiXHTS543232A7A384_120312E2M3121K01YAUSX&q={searchTerms}
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.nationzoom.com/web/?type=ds&ts=1385914956&from=tugs&uid=HitachiXHTS543232A7A384_120312E2M3121K01YAUSX&q={searchTerms}
SearchScopes: HKLM - {765CFFF2-0B74-45A9-8A37-5ED964164578} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7TEUA;
SearchScopes: HKCU - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.nationzoom.com/web/?type=ds&ts=1385914956&from=tugs&uid=HitachiXHTS543232A7A384_120312E2M3121K01YAUSX&q={searchTerms}
SearchScopes: HKCU - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.nationzoom.com/web/?type=ds&ts=1385914956&from=tugs&uid=HitachiXHTS543232A7A384_120312E2M3121K01YAUSX&q={searchTerms}
SearchScopes: HKCU - {765CFFF2-0B74-45A9-8A37-5ED964164578} URL =
BHO: Re-markit - {1ad7fd01-f45b-4863-a047-8b2a3735b829} - C:\Program Files\Re-markit\135.dll ()
BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Winsock: Catalog9 01 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 02 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 03 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 04 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 05 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 06 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 07 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 08 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 19 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF ProfilePath: C:\Users\Burcin\AppData\Roaming\Mozilla\Firefox\Profiles\djznlw3d.default
FF user.js: detected! => C:\Users\Burcin\AppData\Roaming\Mozilla\Firefox\Profiles\djznlw3d.default\user.js
FF NewTab: hxxp://www.nationzoom.com/newtab/?type=nt&ts=1385914956&from=tugs&uid=HitachiXHTS543232A7A384_120312E2M3121K01YAUSX
FF DefaultSearchEngine: nationzoom
FF SelectedSearchEngine: nationzoom
FF Homepage: www.google.de
FF Plugin: @adobe.com/FlashPlayer - C:\windows\system32\Macromed\Flash\NPSWF32_11_9_900_152.dll ()
FF Plugin: @java.com/DTPlugin,version=10.13.2 - C:\windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.13.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\nationzoom.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF HKCU\...\Firefox\Extensions: [{5ce3e0cb-aa83-45cb-a7da-a2684f05b8f3}] - C:\Program Files\Re-markit\135.xpi
FF Extension: Re-markit - C:\Program Files\Re-markit\135.xpi
FF Extension: Re-markit - C:\Program Files\Re-markit\135.xpi
FF StartMenuInternet: FIREFOX.EXE - C:\Program Files\Mozilla Firefox\firefox.exe hxxp://www.nationzoom.com/?type=sc&ts=1385914956&from=tugs&uid=HitachiXHTS543232A7A384_120312E2M3121K01YAUSX
========================== Services (Whitelisted) =================
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [440376 2014-01-06] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [440376 2013-12-08] (Avira Operations GmbH & Co. KG)
S4 AntiVirWebService; C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [1011768 2014-01-06] (Avira Operations GmbH & Co. KG)
R2 ca82e1a5; C:\Program Files\Optimizer Pro\OptProCrashSvc.dll [189592 2013-12-01] ()
R2 cfWiMAXService; C:\Program Files\TOSHIBA\ConfigFree\CFIWmxSvcs.exe [186296 2011-06-07] (TOSHIBA CORPORATION)
R2 ConfigFree Service; C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe [47032 2011-06-07] (TOSHIBA CORPORATION)
R2 NAUpdate; C:\Program Files\Nero\Update\NASvc.exe [598312 2011-03-29] (Nero AG)
R2 SBSDWSCService; C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe [1153368 2009-01-26] (Safer Networking Ltd.)
S3 TemproMonitoringService; C:\Program Files\Toshiba TEMPRO\TemproSvc.exe [112080 2011-02-10] (Toshiba Europe GmbH)
S3 TMachInfo; C:\Program Files\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [57216 2011-07-12] (TOSHIBA Corporation)
R2 TOSHIBA eco Utility Service; C:\Program Files\TOSHIBA\TECO\TecoService.exe [210880 2011-11-24] (TOSHIBA Corporation)
R3 TOSHIBA HDD SSD Alert Service; C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [112552 2011-06-10] (TOSHIBA Corporation)
R2 WsysSvc; C:\ProgramData\eSafe\eGdpSvc.exe [658576 2013-12-01] (Wsys Co., Ltd.)
S2 McAfee SiteAdvisor Service; c:\PROGRA~1\mcafee\SITEAD~1\mcsacore.exe [x]
==================== Drivers (Whitelisted) ====================
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [90400 2014-01-06] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [135648 2014-01-06] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-12-08] (Avira Operations GmbH & Co. KG)
R3 PGEffect; C:\Windows\System32\DRIVERS\pgeffect.sys [33616 2011-02-09] (TOSHIBA Corporation)
R3 RTL8192Ce; C:\Windows\System32\DRIVERS\rtl8192Ce.sys [1035368 2011-04-22] (Realtek Semiconductor Corporation )
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2013-08-12] (Avira GmbH)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-01-06 14:38 - 2014-01-06 14:40 - 00024756 _____ C:\Users\Burcin\Downloads\Addition.txt
2014-01-06 14:33 - 2014-01-06 14:42 - 00016178 _____ C:\Users\Burcin\Downloads\FRST.txt
2014-01-06 14:31 - 2014-01-06 14:31 - 00000000 ____D C:\FRST
2014-01-06 14:30 - 2014-01-06 14:30 - 01064805 _____ (Farbar) C:\Users\Burcin\Downloads\FRST.exe
2014-01-06 14:25 - 2014-01-06 14:26 - 00001115 _____ C:\Users\Burcin\Desktop\Continue Zip Extractor Installation.lnk
2014-01-06 14:22 - 2014-01-06 14:23 - 00672936 _____ ( ) C:\Users\Burcin\Downloads\ZipExtractorSetup.exe
==================== One Month Modified Files and Folders =======
2014-01-06 14:42 - 2014-01-06 14:33 - 00016178 _____ C:\Users\Burcin\Downloads\FRST.txt
2014-01-06 14:40 - 2014-01-06 14:38 - 00024756 _____ C:\Users\Burcin\Downloads\Addition.txt
2014-01-06 14:35 - 2012-04-13 05:19 - 01159301 _____ C:\windows\WindowsUpdate.log
2014-01-06 14:34 - 2012-09-08 14:56 - 00000884 _____ C:\windows\Tasks\Adobe Flash Player Updater.job
2014-01-06 14:31 - 2014-01-06 14:31 - 00000000 ____D C:\FRST
2014-01-06 14:30 - 2014-01-06 14:30 - 01064805 _____ (Farbar) C:\Users\Burcin\Downloads\FRST.exe
2014-01-06 14:26 - 2014-01-06 14:25 - 00001115 _____ C:\Users\Burcin\Desktop\Continue Zip Extractor Installation.lnk
2014-01-06 14:23 - 2014-01-06 14:22 - 00672936 _____ ( ) C:\Users\Burcin\Downloads\ZipExtractorSetup.exe
2014-01-06 14:21 - 2009-07-14 05:34 - 00016160 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-01-06 14:21 - 2009-07-14 05:34 - 00016160 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-01-06 12:57 - 2013-12-01 17:23 - 00000000 ____D C:\Program Files\Optimizer Pro
2014-01-06 12:57 - 2013-08-20 16:36 - 00069240 _____ (Avira Operations GmbH & Co. KG) C:\windows\system32\Drivers\avnetflt.sys
2014-01-06 12:57 - 2013-08-12 20:05 - 00135648 _____ (Avira Operations GmbH & Co. KG) C:\windows\system32\Drivers\avipbb.sys
2014-01-06 12:57 - 2013-08-12 20:05 - 00090400 _____ (Avira Operations GmbH & Co. KG) C:\windows\system32\Drivers\avgntflt.sys
2014-01-06 12:51 - 2012-10-24 19:08 - 00000000 ___RD C:\Users\Burcin\Dropbox
2014-01-06 12:51 - 2012-10-24 19:01 - 00000000 ____D C:\Users\Burcin\AppData\Roaming\Dropbox
2014-01-06 12:50 - 2013-12-01 17:23 - 00000000 ____D C:\ProgramData\eSafe
2014-01-06 12:48 - 2013-12-01 17:22 - 00000362 _____ C:\windows\Tasks\Re-markit Update.job
2014-01-06 12:47 - 2010-11-20 22:48 - 00100440 _____ C:\windows\PFRO.log
2014-01-06 12:47 - 2009-07-14 05:53 - 00000006 ____H C:\windows\Tasks\SA.DAT
2014-01-06 12:47 - 2009-07-14 05:39 - 00061308 _____ C:\windows\setupact.log
2013-12-08 23:24 - 2012-09-15 11:15 - 00000000 ___RD C:\Users\Burcin\Uni
2013-12-08 21:59 - 2013-12-01 17:23 - 00000000 ____D C:\Program Files\MyPC Backup
2013-12-08 21:57 - 2012-01-05 02:07 - 00000000 ____D C:\Program Files\Google
2013-12-08 20:50 - 2013-08-12 20:05 - 00037352 _____ (Avira Operations GmbH & Co. KG) C:\windows\system32\Drivers\avkmgr.sys
Some content of TEMP:
====================
C:\Users\Burcin\AppData\Local\Temp\avgnt.exe
C:\Users\Burcin\AppData\Local\Temp\ICReinstall_ZipExtractorSetup.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\System32\svchost.exe
[2012-01-05 01:20] - [2011-03-01 09:05] - 0021504 ____A (Microsoft Corporation) ECDB182F885292145826C58252B53000
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-01-06 14:08
==================== End Of Log ============================ --- --- ---
--- --- ---
--- --- --- Code:
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 05-01-2014
Ran by Burcin at 2014-01-06 14:43:30
Running from C:\Users\Burcin\Downloads
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Avira Desktop (Enabled - Up to date) {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
AS: Avira Desktop (Enabled - Up to date) {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
Adobe Flash Player 11 ActiveX (Version: 11.9.900.152 - Adobe Systems Incorporated)
Adobe Flash Player 11 Plugin (Version: 11.9.900.152 - Adobe Systems Incorporated)
Adobe Reader X (10.1.8) MUI (Version: 10.1.8 - Adobe Systems Incorporated)
Apple Application Support (Version: 2.3 - Apple Inc.)
Apple Software Update (Version: 2.1.3.127 - Apple Inc.)
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (Version: 2.0.9.9 - Atheros Communications Inc.)
Avira Free Antivirus (Version: 14.0.2.286 - Avira)
Bejeweled 2 Deluxe (Version: 2.2.0.95 - WildTangent) Hidden
Bejeweled 3 (Version: 2.2.0.97 - WildTangent) Hidden
Chicken Invaders 3 - Revenge of the Yolk (Version: 2.2.0.95 - WildTangent) Hidden
Chuzzle Deluxe (Version: 2.2.0.95 - WildTangent) Hidden
Contrôle ActiveX Windows Live Mesh pour connexions à distance (Version: 15.4.5722.2 - Microsoft Corporation)
D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden
Diner Dash 2 Restaurant Rescue (Version: 2.2.0.95 - WildTangent) Hidden
Dropbox (Version: 2.0.22 - Dropbox, Inc.)
FATE (Version: 2.2.0.97 - WildTangent) Hidden
Final Drive: Nitro (Version: 2.2.0.95 - WildTangent) Hidden
Galerie de photos Windows Live (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
High-Definition Video Playback (Version: 7.3.10900.8.0 - Nero AG) Hidden
Insaniquarium Deluxe (Version: 2.2.0.97 - WildTangent) Hidden
Intel(R) Graphics Media Accelerator Driver (Version: 8.14.8.1064 - Intel Corporation)
Intel(R) Rapid Storage Technology (Version: 10.1.0.1008 - Intel Corporation)
Java 7 Update 13 (Version: 7.0.130 - Oracle)
Java Auto Updater (Version: 2.1.9.0 - Sun Microsystems, Inc.) Hidden
Junk Mail filter update (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Mesh Runtime (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6012.5000 - Microsoft Corporation) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (Version: - Microsoft) Hidden
Microsoft Office 2010 (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Excel MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Home and Student 2007 (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Home and Student 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Klick-und-Los 2010 (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Klick-und-Los 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Italian) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (German) 2007 (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (Version: - Microsoft) Hidden
Microsoft Office Shared MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Starter 2010 - Deutsch (Version: 14.0.5128.5002 - Microsoft Corporation)
Microsoft Office Word MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Primary Interoperability Assemblies 2005 (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Silverlight (Version: 5.1.20913.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (Version: 10.0.40219 - Microsoft Corporation)
Mozilla Firefox 25.0.1 (x86 de) (Version: 25.0.1 - Mozilla)
Mozilla Maintenance Service (Version: 25.0.1 - Mozilla)
MSVCRT (Version: 15.4.2862.0708 - Microsoft) Hidden
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0 - Microsoft Corporation)
Nero 10 Movie ThemePack Basic (Version: 10.6.10000.1.0 - Nero AG) Hidden
Nero BackItUp 10 (Version: 5.8.10900.8.100 - Nero AG)
Nero BackItUp 10 Help (CHM) (Version: 10.6.10700 - Nero AG) Hidden
Nero BurnRights 10 (Version: 4.4.10400.2.100 - Nero AG)
Nero BurnRights 10 Help (CHM) (Version: 10.6.10700 - Nero AG) Hidden
Nero Control Center 10 (Version: 10.6.12700.0.7 - Nero AG) Hidden
Nero ControlCenter 10 Help (CHM) (Version: 10.6.10800 - Nero AG) Hidden
Nero Core Components 10 (Version: 2.0.20000.9.12 - Nero AG) Hidden
Nero Express 10 (Version: 10.6.10700.5.100 - Nero AG)
Nero Express 10 Help (CHM) (Version: 10.6.10700 - Nero AG) Hidden
Nero InfoTool 10 (Version: 7.4.10300.1.100 - Nero AG)
Nero InfoTool 10 Help (CHM) (Version: 10.6.10700 - Nero AG) Hidden
Nero Kwik Media (Version: 1.6.15100.59.100 - Nero AG)
Nero Multimedia Suite 10 Essentials (Version: 10.6.10300 - Nero AG)
Nero RescueAgent 10 (Version: 3.6.10500.3.100 - Nero AG)
Nero RescueAgent 10 Help (CHM) (Version: 10.6.10800 - Nero AG) Hidden
Nero StartSmart 10 (Version: 10.6.10500.3.100 - Nero AG)
Nero StartSmart 10 Help (CHM) (Version: 10.6.10700 - Nero AG) Hidden
Nero Update (Version: 1.0.10900.31.0 - Nero AG)
NeroKwikMedia Help (CHM) (Version: 10.6.10900 - Nero AG) Hidden
Optimizer Pro v3.2 (Version: - PC Utilities Software Limited) <==== ATTENTION
Penguins! (Version: 2.2.0.95 - WildTangent) Hidden
Plants vs. Zombies - Game of the Year (Version: 2.2.0.95 - WildTangent) Hidden
PlayReady PC Runtime x86 (Version: 1.3.0 - Microsoft Corporation)
Polar Bowler (Version: 2.2.0.97 - WildTangent) Hidden
QuickTime (Version: 7.73.80.64 - Apple Inc.)
Raccolta foto di Windows Live (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Realtek High Definition Audio Driver (Version: 6.0.1.6516 - Realtek Semiconductor Corp.)
Realtek USB 2.0 Card Reader (Version: 6.1.7601.30130 - Realtek Semiconductor Corp.)
Realtek WLAN Driver (Version: 2.00.0016 - REALTEK Semiconductor Corp.)
Re-markit (Version: - Re-markit Software)
Slingo Deluxe (Version: 2.2.0.95 - WildTangent) Hidden
Spybot - Search & Destroy (Version: 1.6.2 - Safer Networking Limited)
Synaptics Pointing Device Driver (Version: 15.3.27.1 - Synaptics Incorporated)
TOSHIBA Assist (Version: 4.2.3.0 - TOSHIBA CORPORATION)
TOSHIBA Audio Enhancement (Version: 1.0.2.7 - TOSHIBA Corporation)
TOSHIBA Bulletin Board (Version: 2.1.17.32 - TOSHIBA Corporation)
TOSHIBA Bulletin Board (Version: 2.1.17.32 - TOSHIBA Corporation) Hidden
TOSHIBA ConfigFree (Version: 8.0.43 - TOSHIBA CORPORATION)
TOSHIBA Disc Creator (Version: 2.1.0.11 - TOSHIBA Corporation)
TOSHIBA eco Utility (Version: 1.3.9.0 - TOSHIBA Corporation)
TOSHIBA Hardware Setup (Version: 2.1.0.6 - TOSHIBA Corporation)
TOSHIBA HDD/SSD Alert (Version: 3.1.0.9 - TOSHIBA Corporation)
Toshiba Manuals (Version: 10.03 - TOSHIBA)
TOSHIBA Media Controller (Version: 1.0.87.4 - TOSHIBA CORPORATION)
TOSHIBA Online Product Information (Version: 4.01.0000 - TOSHIBA)
TOSHIBA Places Icon Utility (Version: 1.0.2.4 - TOSHIBA)
TOSHIBA Recovery Media Creator (Version: 2.1.5.5109a - TOSHIBA CORPORATION)
TOSHIBA Recovery Media Creator Reminder (Version: 1.1.0.0 - TOSHIBA)
TOSHIBA Recovery Media Creator Reminder (Version: 1.1.0.0 - TOSHIBA) Hidden
TOSHIBA ReelTime (Version: 1.7.21.32 - TOSHIBA Corporation)
TOSHIBA ReelTime (Version: 1.7.21.32 - TOSHIBA Corporation) Hidden
TOSHIBA Service Station (Version: 2.2.13 - TOSHIBA)
TOSHIBA Supervisor Password (Version: 2.1.0.2 - TOSHIBA Corporation)
TOSHIBA TEMPRO (Version: 3.35 - Toshiba Europe GmbH)
TOSHIBA Value Added Package (Version: 1.6.13 - TOSHIBA Corporation)
TOSHIBA Value Added Package (Version: 1.6.13 - TOSHIBA Corporation) Hidden
TOSHIBA Web Camera Application (Version: 2.0.3.29 - TOSHIBA Corporation)
TOSHIBA Web Camera Application (Version: 2.0.3.29 - TOSHIBA Corporation) Hidden
TOSHIBA Wireless LAN Indicator (Version: 1.0.5 - TOSHIBA CORPORATION)
Update for 2007 Microsoft Office System (KB967642) (Version: - Microsoft)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (Version: 3 - Microsoft Corporation)
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (Version: - Microsoft)
Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition (Version: - Microsoft)
Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (Version: - Microsoft)
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (Version: - Microsoft)
Update für Microsoft Office Excel 2007 Help (KB963678) (Version: - Microsoft)
Update für Microsoft Office Powerpoint 2007 Help (KB963669) (Version: - Microsoft)
Update für Microsoft Office Word 2007 Help (KB963665) (Version: - Microsoft)
Update Installer for WildTangent Games App (Version: - WildTangent) Hidden
Wedding Dash 2 - Rings Around the World (Version: 2.2.0.95 - WildTangent) Hidden
WildTangent Games (Version: 1.0.2.5 - WildTangent)
WildTangent Games App (Toshiba Games) (Version: 4.0.5.5 - WildTangent) Hidden
Windows Live (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Communications Platform (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Essentials (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Essentials (Version: 15.4.3538.0513 - Microsoft Corporation)
Windows Live Fotogalerie (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4232.0 - Microsoft Corporation) Hidden
Windows Live Installer (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mail (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Mesh (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mesh ActiveX Control for Remote Connections (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Messenger (Version: 15.4.3538.0513 - Microsoft Corporation) Hidden
Windows Live MIME IFilter (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Movie Maker (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Common (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Gallery (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live Remote Client (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Client Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Service (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Service Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live SOXE (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live Writer (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Writer Resources (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Wsys Control 16.2.1.3067 (Version: 16.2.1.3067 - Wsys Co., Ltd.) <==== ATTENTION
Zuma Deluxe (Version: 2.2.0.95 - WildTangent) Hidden
==================== Restore Points =========================
13-10-2013 21:51:38 Windows Update
15-10-2013 18:33:18 Windows Update
04-11-2013 10:37:31 Windows Update
08-11-2013 11:03:18 Windows Update
12-11-2013 10:49:34 Windows Update
15-11-2013 22:34:09 Windows Update
17-11-2013 20:32:20 Windows Update
21-11-2013 11:25:05 Windows Update
22-11-2013 19:53:00 Windows Update
26-11-2013 21:04:30 Windows Update
08-12-2013 20:49:09 Windows Update
==================== Hosts content: ==========================
2009-07-14 03:04 - 2009-06-10 22:39 - 00000824 ____A C:\windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {11F22D52-9BD4-4032-AA3E-6BABF162EDFD} - System32\Tasks\Re-markit Update => C:\Program Files\Re-markit\ReMarkit_up.exe [2013-12-01] () <==== ATTENTION
Task: {1704AE9C-773B-4436-BB5E-ED976B324236} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {265086EE-D365-42D8-BA33-D9995BD5D3C0} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-01] (Adobe Systems Incorporated)
Task: {398FF358-C584-4FB3-81BD-58FE2CD5D541} - System32\Tasks\ConfigFree Startup Programs => C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe [2011-10-24] (TOSHIBA CORPORATION)
Task: {F6610FFD-804B-4283-A394-4012A59DFF50} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\Re-markit Update.job => C:\Program Files\Re-markit\ReMarkit_up.exe <==== ATTENTION
==================== Loaded Modules (whitelisted) =============
2011-08-22 23:19 - 2011-08-22 23:19 - 11219328 _____ () C:\Program Files\TOSHIBA\FlashCards\BlackPng.dll
2010-03-03 22:14 - 2010-03-03 22:14 - 00016184 _____ () C:\Program Files\TOSHIBA\FlashCards\Hotkey\FnF10.dll
2010-03-03 22:14 - 2010-03-03 22:14 - 00016184 _____ () C:\Program Files\TOSHIBA\FlashCards\Hotkey\FnF11.dll
2011-11-24 21:18 - 2011-11-24 21:18 - 00542656 _____ () C:\Program Files\TOSHIBA\TECO\TecoPower.dll
2010-12-15 23:18 - 2010-12-15 23:18 - 00107936 _____ () C:\Program Files\TOSHIBA\TECO\MUIHelp.dll
2011-06-28 13:42 - 2011-06-28 13:42 - 03286448 _____ () C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll
2012-01-05 02:30 - 2011-04-21 10:59 - 00013184 _____ () C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\de\TosDILangPack.resources.dll
2012-01-05 02:30 - 2011-04-21 10:59 - 00063360 _____ () C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIInternal.XmlSerializers.dll
2013-03-13 21:48 - 2013-03-13 21:48 - 24978944 _____ () C:\Users\Burcin\AppData\Roaming\Dropbox\bin\libcef.dll
2011-06-10 05:05 - 2011-06-10 05:05 - 00079784 _____ () C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosIPCWraper.dll
2013-12-01 17:23 - 2013-12-01 17:23 - 00189592 _____ () C:\Program Files\Optimizer Pro\OptProCrashSvc.dll
2013-12-01 17:23 - 2013-10-29 14:08 - 04246344 _____ () C:\Program Files\Optimizer Pro\OptProCrash.dll
2013-08-12 20:05 - 2013-08-12 18:43 - 00394824 _____ () C:\Program Files\Avira\AntiVir Desktop\sqlite3.dll
==================== Alternate Data Streams (whitelisted) =========
AlternateDataStreams: C:\Users\Burcin\CBS_Summer_Shows_1.mp4:com.dropbox.attributes
==================== Safe Mode (whitelisted) ===================
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (01/06/2014 01:34:04 PM) (Source: Application Hang) (User: )
Description: Programm firefox.exe, Version 25.0.1.5064 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: 14e8
Startzeit: 01cf0ad5c3cb2071
Endzeit: 20170
Anwendungspfad: C:\Program Files\Mozilla Firefox\firefox.exe
Berichts-ID: 6d1bba12-76cd-11e3-8434-00266c11bf4e
Error: (01/06/2014 01:04:32 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: NDSTray.exe, Version: 8.0.0.60, Zeitstempel: 0x4ea4c865
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18247, Zeitstempel: 0x521ea91c
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00052df6
ID des fehlerhaften Prozesses: 0xbe8
Startzeit der fehlerhaften Anwendung: 0xNDSTray.exe0
Pfad der fehlerhaften Anwendung: NDSTray.exe1
Pfad des fehlerhaften Moduls: NDSTray.exe2
Berichtskennung: NDSTray.exe3
Error: (01/06/2014 00:59:45 PM) (Source: Windows Backup) (User: )
Description: Die Sicherung wurde aufgrund eines Fehlers beim Schreiben am Sicherungsspeicherort "D:\" nicht abgeschlossen. Fehler: "Der Sicherungsort wurde nicht gefunden oder ist ungültig. Überprüfen Sie die Sicherungseinstellungen und den Sicherungsort. (0x81000006)"
Error: (01/06/2014 00:48:01 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (12/08/2013 11:40:09 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: iexplore.exe, Version: 11.0.9600.16428, Zeitstempel: 0x525b664c
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18247, Zeitstempel: 0x521ea91c
Ausnahmecode: 0xc0000374
Fehleroffset: 0x000c3873
ID des fehlerhaften Prozesses: 0x1edc
Startzeit der fehlerhaften Anwendung: 0xiexplore.exe0
Pfad der fehlerhaften Anwendung: iexplore.exe1
Pfad des fehlerhaften Moduls: iexplore.exe2
Berichtskennung: iexplore.exe3
Error: (12/08/2013 11:28:41 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: iexplore.exe, Version: 11.0.9600.16428, Zeitstempel: 0x525b664c
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18247, Zeitstempel: 0x521ea91c
Ausnahmecode: 0xc0000374
Fehleroffset: 0x000c3873
ID des fehlerhaften Prozesses: 0x1224
Startzeit der fehlerhaften Anwendung: 0xiexplore.exe0
Pfad der fehlerhaften Anwendung: iexplore.exe1
Pfad des fehlerhaften Moduls: iexplore.exe2
Berichtskennung: iexplore.exe3
Error: (12/08/2013 11:27:53 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: iexplore.exe, Version: 11.0.9600.16428, Zeitstempel: 0x525b664c
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18247, Zeitstempel: 0x521ea91c
Ausnahmecode: 0xc0000374
Fehleroffset: 0x000c3873
ID des fehlerhaften Prozesses: 0xa3c
Startzeit der fehlerhaften Anwendung: 0xiexplore.exe0
Pfad der fehlerhaften Anwendung: iexplore.exe1
Pfad des fehlerhaften Moduls: iexplore.exe2
Berichtskennung: iexplore.exe3
Error: (12/08/2013 11:27:32 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: iexplore.exe, Version: 11.0.9600.16428, Zeitstempel: 0x525b664c
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18247, Zeitstempel: 0x521ea91c
Ausnahmecode: 0xc0000374
Fehleroffset: 0x000c3873
ID des fehlerhaften Prozesses: 0x122c
Startzeit der fehlerhaften Anwendung: 0xiexplore.exe0
Pfad der fehlerhaften Anwendung: iexplore.exe1
Pfad des fehlerhaften Moduls: iexplore.exe2
Berichtskennung: iexplore.exe3
Error: (12/08/2013 10:48:19 PM) (Source: Application Hang) (User: )
Description: Programm avscan.exe, Version 14.0.1.645 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: 7d8
Startzeit: 01cef45c3a94fbfb
Endzeit: 0
Anwendungspfad: C:\Program Files\Avira\AntiVir Desktop\avscan.exe
Berichts-ID: 653f4c37-6052-11e3-9583-00266c11bf4e
Error: (12/08/2013 09:58:01 PM) (Source: Application Hang) (User: )
Description: Programm iexplore.exe, Version 11.0.9600.16428 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: 4d0
Startzeit: 01cef4581a651726
Endzeit: 62
Anwendungspfad: C:\Program Files\Internet Explorer\iexplore.exe
Berichts-ID:
System errors:
=============
Error: (01/06/2014 01:01:06 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Windows Update" wurde nicht richtig gestartet.
Error: (01/06/2014 00:54:07 PM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Microsoft .NET Framework NGEN v4.0.30319_X86 erreicht.
Error: (01/06/2014 00:51:35 PM) (Source: Service Control Manager) (User: )
Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen:
cdrom
Error: (01/06/2014 00:47:55 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "McAfee SiteAdvisor Service" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (12/08/2013 09:59:21 PM) (Source: Service Control Manager) (User: )
Description: Dienst "Computer Backup (MyPC Backup)" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.
Error: (12/08/2013 09:45:41 PM) (Source: iaStor) (User: )
Description: Das Gerät \Device\Ide\iaStor0 hat innerhalb der Fehlerwartezeit nicht geantwortet.
Error: (12/08/2013 09:45:37 PM) (Source: iaStor) (User: )
Description: Das Gerät \Device\Ide\iaStor0 hat innerhalb der Fehlerwartezeit nicht geantwortet.
Error: (12/08/2013 09:45:33 PM) (Source: DCOM) (User: )
Description: {995C996E-D918-4A8C-A302-45719A6F4EA7}
Error: (12/08/2013 09:45:29 PM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst AeLookupSvc erreicht.
Error: (12/08/2013 09:12:48 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Windows Presentation Foundation-Schriftartcache 3.0.0.0" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Microsoft Office Sessions:
=========================
==================== Memory info ===========================
Percentage of memory in use: 69%
Total physical RAM: 1009.77 MB
Available physical RAM: 303.39 MB
Total Pagefile: 2523.26 MB
Available Pagefile: 1069.59 MB
Total Virtual: 2047.88 MB
Available Virtual: 1881.04 MB
==================== Drives ================================
Drive c: (TI30834800A) (Fixed) (Total:285.63 GB) (Free:242.64 GB) NTFS ==>[System with boot components (obtained from reading drive)]
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 298 GB) (Disk ID: EF0C5DB5)
Partition 1: (Active) - (Size=1 GB) - (Type=27)
Partition 2: (Not Active) - (Size=286 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=11 GB) - (Type=17)
==================== End Of Log ============================ |