Entschuldigung dafür :)
hier die files
FRST Logfile:
FRST Logfile:
Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 21-01-2014
Ran by wEeFa (administrator) on THEBESTXD on 21-01-2014 13:43:31
Running from C:\Users\wEeFa\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Check Point Software Technologies LTD) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(Taiwan Shui Mu Chih Ching Technology Limited.) C:\Program Files (x86)\WinZipper\winzipersvc.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore64.exe
(Atheros) C:\Program Files (x86)\Atheros\Ath_CoexAgent.exe
(Atheros Commnucations) C:\Program Files (x86)\Atheros\Bluetooth Suite\AdminService.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(Trend Micro Inc.) C:\Program Files\Trend Micro\Titanium\TiMiniService.exe
(Intel(R) Corporation) C:\Program Files\Intel\TurboBoost\TurboBoost.exe
(Trend Micro Inc.) C:\Program Files\Trend Micro\Titanium\TiResumeSrv.exe
() C:\ExpressGateUtil\VAWinService.exe
(cake bake) C:\Program Files (x86)\WBDesktop.Updater.1.0.0.16.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Check Point Software Technologies, Ltd.) C:\Program Files (x86)\CheckPoint\ZoneAlarm\ZAPrivacyService.exe
(Pro Softnet Corporation) C:\ZoneAlarmBackup\ZABackup Service.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
() C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
(ASUS) C:\Program Files\P4G\BatteryLife.exe
() C:\Program Files (x86)\HomeTab\SystemSockets.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(ASUS) C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
(ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe
(ASUS) C:\Windows\AsScrPro.exe
() C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(ELAN Microelectronic Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Alcor Micro Corp.) C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Atheros Communications) C:\Program Files (x86)\Atheros\Bluetooth Suite\BtvStack.exe
(Atheros Commnucations) C:\Program Files (x86)\Atheros\Bluetooth Suite\AthBtTray.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
() C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
(ELAN Microelectronic Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
() C:\Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader_Engine.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Windows (R) Win 7 DDK provider) C:\Program Files\Fresco Logic Inc\Fresco Logic USB3.0 Host Controller\host\FLxHCIm.exe
(Virage Logic Corporation / Sonic Focus) C:\Program Files (x86)\ASUS\SonicMaster\SonicMasterTray.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ALi) C:\Windows\WebCam\S6000\S6000Mnt.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
() C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
() C:\ExpressGateUtil\VAWinAgent.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
(Check Point Software Technologies LTD) C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe
() C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.130\SSScheduler.exe
(Dropbox, Inc.) C:\Users\wEeFa\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Windows Net) C:\Users\wEeFa\AppData\Roaming\Windows Net Data\net.exe
(Pro Softnet Corp.) C:\ZoneAlarmBackup\ZABackupTray.exe
(Pro Softnet Corp.) C:\ZoneAlarmBackup\ZABackupBackground.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe
(CyberLink) C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [ASUS WebStorage] - C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe [1754448 2010-03-16] ()
HKLM\...\Run: [VizorHtmlDialog.exe] - C:\Program Files\Trend Micro\Titanium\UIFramework\VizorHtmlDialog.exe [1123664 2010-10-08] (Trend Micro Inc.)
HKLM\...\Run: [Trend Micro Client Framework] - C:\Program Files\Trend Micro\UniClient\UiFrmWrk\UIWatchDog.exe [192520 2010-10-12] (Trend Micro Inc.)
HKLM\...\Run: [Trend Micro Titanium] - C:\Program Files\Trend Micro\Titanium\VizorShortCut.exe [322384 2010-09-17] (Trend Micro Inc.)
HKLM\...\Run: [ETDWare] - C:\Program Files\Elantech\ETDCtrl.exe [649608 2010-06-10] (ELAN Microelectronic Corp.)
HKLM\...\Run: [AmIcoSinglun64] - C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [324096 2010-08-11] (Alcor Micro Corp.)
HKLM\...\Run: [RtHDVBg] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2186856 2010-11-30] (Realtek Semiconductor)
HKLM\...\Run: [AtherosBtStack] - C:\Program Files (x86)\Atheros\Bluetooth Suite\BtvStack.exe [613536 2010-11-26] (Atheros Communications)
HKLM\...\Run: [AthBtTray] - C:\Program Files (x86)\Atheros\Bluetooth Suite\AthBtTray.exe [379040 2010-11-26] (Atheros Commnucations)
HKLM\...\Run: [IntelTBRunOnce] - C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs [4156 2010-04-16] ()
HKLM\...\Run: [Setwallpaper] - c:\programdata\SetWallpaper.cmd
HKLM-x32\...\Run: [UpdateLBPShortCut] - C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [222504 2009-05-20] (CyberLink Corp.)
HKLM-x32\...\Run: [UpdateP2GoShortCut] - C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [222504 2009-05-20] (CyberLink Corp.)
HKLM-x32\...\Run: [FLxHCIm] - C:\Program Files\Fresco Logic Inc\Fresco Logic USB3.0 Host Controller\host\FLxHCIm.exe [37888 2010-11-20] (Windows (R) Win 7 DDK provider)
HKLM-x32\...\Run: [SonicMasterTray] - C:\Program Files (x86)\ASUS\SonicMaster\SonicMasterTray.exe [984400 2010-07-10] (Virage Logic Corporation / Sonic Focus)
HKLM-x32\...\Run: [S6000Mnt] - C:\Windows\SysWOW64\Rundll32.exe S6000Rmv.dll,WinMainRmv /StartStillMnt
HKLM-x32\...\Run: [ATKMEDIA] - C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624 2010-10-07] (ASUS)
HKLM-x32\...\Run: [HControlUser] - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM-x32\...\Run: [Wireless Console 3] - C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [1601536 2010-09-24] ()
HKLM-x32\...\Run: [VAWinAgent] - C:\ExpressGateUtil\VAWinAgent.exe [21504 2010-08-13] ()
HKLM-x32\...\Run: [RemoteControl10] - C:\Program Files (x86)\Cyberlink\PowerDVD10\PDVD10Serv.exe [87336 2010-02-03] (CyberLink Corp.)
HKLM-x32\...\Run: [UpdatePSTShortCut] - C:\Program Files (x86)\Cyberlink\DVD Suite\MUITransfer\MUIStartMenu.exe [222504 2010-11-17] (CyberLink Corp.)
HKLM-x32\...\Run: [ZoneAlarm] - C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe [73832 2013-10-25] (Check Point Software Technologies LTD)
HKLM-x32\...\Run: [DivXMediaServer] - C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [450560 2013-09-11] (DivX, LLC)
HKLM-x32\...\Run: [DivXUpdate] - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861968 2013-08-29] ()
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [mobilegeni daemon] - C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKCU\...\Run: [Pando Media Booster] - C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe [4288048 2013-03-28] ()
HKCU\...\Run: [KPeerNexonEU] - C:\Nexon\NEXON_EU_Downloader\nxEULauncher.exe [438272 2013-04-22] (NEXON Inc.)
HKCU\...\Run: [ZoneAlarm Backup Startup] - C:\ZoneAlarmBackup\ZABackupStartup.exe [177680 2010-03-11] (Pro Softnet Corporation)
HKCU\...\Run: [SUPERAntiSpyware] - C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [6563608 2014-01-15] (SUPERAntiSpyware)
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [226920 2010-12-24] (NVIDIA Corporation)
AppInit_DLLs-x32: c:\windows\syswow64\nvinit.dll => c:\windows\syswow64\nvinit.dll [192616 2010-12-24] (NVIDIA Corporation)
Startup: C:\Users\wEeFa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\wEeFa\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\wEeFa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\net.lnk
ShortcutTarget: net.lnk -> C:\Users\wEeFa\AppData\Roaming\Windows Net Data\net.exe (Windows Net)
Startup: C:\Users\wEeFa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ZoneAlarm Backup Tray.lnk
ShortcutTarget: ZoneAlarm Backup Tray.lnk -> C:\ZoneAlarmBackup\ZABackupReg2ini.exe (Pro Softnet Corp.)
Startup: C:\Users\wEeFa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\~Disabled ()
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://search.certified-toolbar.com?si=66920&tid=6787&ver=5.5&ts=1389358705752&tguid=66920-6787-1380615403075-CE7516AED078C686940EC3E605ABA0D1&st=chrome&q=
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:newtab
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.qvo6.com/?utm_source=b&utm_medium=ild&from=ild&uid=WDCXWD6400BPVT-80HXZT1_WD-WXE1E11HXL55HXL55&ts=1372840404
HKCU\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = hxxp://search.babylon.com/?babsrc=HP_ss_din2g&mntrId=F0D7E0B9A5450636&affID=119556&tsp=4929
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://search.certified-toolbar.com?si=66920&tid=6787&ver=5.5&ts=1389358705752&tguid=66920-6787-1380615403075-CE7516AED078C686940EC3E605ABA0D1&st=chrome&q=
HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://search.certified-toolbar.com?si=66920&tid=6787&ver=5.5&ts=1389358705752&tguid=66920-6787-1380615403075-CE7516AED078C686940EC3E605ABA0D1&st=chrome&q=
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.qvo6.com/?utm_source=b&utm_medium=ild&from=ild&uid=WDCXWD6400BPVT-80HXZT1_WD-WXE1E11HXL55HXL55&ts=1372840404
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://start.mysearchdial.com/?f=1&a=dnldstr0101&cd=2XzuyEtN2Y1L1Qzu0EtD0Bzy0AyDyEyDyCyD0FzztA0Ezz0AtN0D0Tzu0SyByEtCtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutDzytDtC0B&cr=193838055&ir=
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://search.certified-toolbar.com?si=66920&tid=6787&ver=5.5&ts=1389358705752&tguid=66920-6787-1380615403075-CE7516AED078C686940EC3E605ABA0D1&st=chrome&q=
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.qvo6.com/?utm_source=b&utm_medium=ild&from=ild&uid=WDCXWD6400BPVT-80HXZT1_WD-WXE1E11HXL55HXL55&ts=1372840404
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:newtab
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://search.certified-toolbar.com?si=66920&tid=6787&ver=5.5&ts=1389358705752&tguid=66920-6787-1380615403075-CE7516AED078C686940EC3E605ABA0D1&st=chrome&q=
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Bar = hxxp://search.certified-toolbar.com?si=66920&tid=6787&ver=5.5&ts=1389358705752&tguid=66920-6787-1380615403075-CE7516AED078C686940EC3E605ABA0D1&st=chrome&q=
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKLM - {77AA745B-F4F8-45DA-9B14-61D2D95054C8} URL =
SearchScopes: HKLM-x32 - DefaultScope {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.certified-toolbar.com?si=66920&st=bs&tid=6787&ver=5.5&ts=1389358705752&tguid=66920-6787-1380615403075-CE7516AED078C686940EC3E605ABA0D1&q={searchTerms}
SearchScopes: HKLM-x32 - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://search.certified-toolbar.com?si=66920&st=bs&tid=6787&ver=4.9&ts=1380578400000.000009&tguid=66920-6787-1380615403075-CE7516AED078C686940EC3E605ABA0D1&q={searchTerms}
SearchScopes: HKLM-x32 - {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ASUT
SearchScopes: HKLM-x32 - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.certified-toolbar.com?si=66920&st=bs&tid=6787&ver=5.5&ts=1389358705752&tguid=66920-6787-1380615403075-CE7516AED078C686940EC3E605ABA0D1&q={searchTerms}
SearchScopes: HKCU - DefaultScope {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.certified-toolbar.com?si=66920&st=bs&tid=6787&ver=5.5&ts=1389358705752&tguid=66920-6787-1380615403075-CE7516AED078C686940EC3E605ABA0D1&q={searchTerms}
SearchScopes: HKCU - bProtectorDefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - {58AC60BA-9EF3-474F-9512-137C2BA30EC7} URL = hxxp://search.certified-toolbar.com?si=66920&st=bs&tid=6787&ver=4.8&ts=1380578400000.000009&tguid=66920-6787-1380615403075-CE7516AED078C686940EC3E605ABA0D1&q={searchTerms}
SearchScopes: HKCU - {77AA745B-F4F8-45DA-9B14-61D2D95054C8} URL = hxxp://search.certified-toolbar.com?si=66920&st=bs&tid=6787&ver=5.5&ts=1389175874585&tguid=66920-6787-1380615403075-CE7516AED078C686940EC3E605ABA0D1&q={searchTerms}
SearchScopes: HKCU - {80777E09-40C7-4564-B602-01349C057595} URL = hxxp://search.certified-toolbar.com?si=66920&st=bs&tid=6787&ver=4.9&ts=1380578400000.000009&tguid=66920-6787-1380615403075-CE7516AED078C686940EC3E605ABA0D1&q={searchTerms}
SearchScopes: HKCU - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.certified-toolbar.com?si=66920&st=bs&tid=6787&ver=5.5&ts=1389358705752&tguid=66920-6787-1380615403075-CE7516AED078C686940EC3E605ABA0D1&q={searchTerms}
BHO: TmIEPlugInBHO Class - {1CA1377B-DC1D-4A52-9585-6E06050FAC53} - C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\TmIEPlg.dll (Trend Micro Inc.)
BHO: TubeBoxEngine - {31ad400d-1b06-4e33-a59a-90c2c140cba0} - C:\Windows\system32\mscoree.dll (Microsoft Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: HomeTab - {a25e7121-3dd8-41b3-855b-756c5bc45449} - C:\Program Files\HomeTab\IE\HomeTab.dll (Simply Tech LTD.)
BHO: TmBpIeBHO Class - {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} - C:\Program Files\Trend Micro\AMSP\Module\20002\6.5.1234\6.5.1234\TmBpIe64.dll (Trend Micro Inc.)
BHO-x32: Browser Guard - {02a0d829-4393-46fc-a37e-126263035883} - C:\Program Files (x86)\Browser Guard\browserguard.dll (Browser Guard)
BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.130\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO-x32: TmIEPlugInBHO Class - {1CA1377B-DC1D-4A52-9585-6E06050FAC53} - C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\TmIEPlg32.dll (Trend Micro Inc.)
BHO-x32: Zonealarm Helper Object - {2A841F7A-A014-4DA5-B6D9-8B913DFB7A8C} - C:\Program Files (x86)\Check Point Software Technologies LTD\zonealarm\1.8.22.0\bh\zonealarm.dll (Check Point Software Technologies LTD)
BHO-x32: TubeBoxEngine - {31ad400d-1b06-4e33-a59a-90c2c140cba0} - C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Atheros\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
BHO-x32: IMinent WebBooster (BHO) - {A09AB6EB-31B5-454C-97EC-9B294D92EE2A} - C:\Program Files (x86)\Iminent\Iminent.WebBooster.InternetExplorer.dll (Iminent)
BHO-x32: HomeTab - {a25e7121-3dd8-41b3-855b-756c5bc45449} - C:\Program Files (x86)\HomeTab\IE\HomeTab.dll (Simply Tech LTD.)
BHO-x32: TmBpIeBHO Class - {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} - C:\Program Files\Trend Micro\AMSP\Module\20002\6.5.1234\6.5.1234\TmBpIe32.dll (Trend Micro Inc.)
BHO-x32: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll No File
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: DealPly - {EF7BD87A-8024-11E2-F316-F3E56188709B} - C:\Program Files (x86)\DealPly\DealPlyIE.dll (DealPly)
BHO-x32: BonanzaDeals - {fe063412-bea4-4d76-8ed3-183be6220d17} - C:\Program Files (x86)\BonanzaDeals\BonanzaDealsIE.dll (BonanzaDeals)
Toolbar: HKLM - TubeBox - {ae07101b-46d4-4a98-af68-0333ea26e113} - C:\Windows\system32\mscoree.dll (Microsoft Corporation)
Toolbar: HKLM - HomeTab - {a25e7121-3dd8-41b3-855b-756c5bc45449} - C:\Program Files\HomeTab\IE\HomeTab.dll (Simply Tech LTD.)
Toolbar: HKLM-x32 - ZoneAlarm Security Toolbar - {438FAE3E-BDEF-44D3-AB8B-0C7C8350DF59} - C:\Program Files (x86)\Check Point Software Technologies LTD\zonealarm\1.8.22.0\zonealarmTlbr.dll (Check Point Software Technologies LTD)
Toolbar: HKLM-x32 - HomeTab - {a25e7121-3dd8-41b3-855b-756c5bc45449} - C:\Program Files (x86)\HomeTab\IE\HomeTab.dll (Simply Tech LTD.)
Toolbar: HKLM-x32 - TubeBox - {ae07101b-46d4-4a98-af68-0333ea26e113} - C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation)
Toolbar: HKCU - No Name - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - No File
Handler: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Program Files\Trend Micro\AMSP\Module\20002\6.5.1234\6.5.1234\TmBpIe64.dll (Trend Micro Inc.)
Handler: tmpx - {0E526CB5-7446-41D1-A403-19BFE95E8C23} - C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\TmIEPlg.dll (Trend Micro Inc.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Handler-x32: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Program Files\Trend Micro\AMSP\Module\20002\6.5.1234\6.5.1234\TmBpIe32.dll (Trend Micro Inc.)
Handler-x32: tmpx - {0E526CB5-7446-41D1-A403-19BFE95E8C23} - C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\TmIEPlg32.dll (Trend Micro Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF ProfilePath: C:\Users\wEeFa\AppData\Roaming\Mozilla\Firefox\Profiles\vzhiyztr.default
FF NewTab: about:home
FF DefaultSearchEngine: Web Search
FF SearchEngineOrder.1: Web Search
FF SelectedSearchEngine: Web Search
FF Homepage: about:home
FF Keyword.URL: hxxp://search.certified-toolbar.com?si=66920&tid=6787&ver=5.5&ts=1389358705752&tguid=66920-6787-1380615403075-CE7516AED078C686940EC3E605ABA0D1&st=chrome&q=
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll ()
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll ()
FF Plugin-x32: @checkpoint.com/FFApi - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\npFFApi.dll No File
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll (DivX, LLC)
FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @mcafee.com/McAfeeMssPlugin - C:\Program Files\McAfee Security Scan\3.8.130\npMcAfeeMss.dll (McAfee, Inc.)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin-x32: @tools.bdupdater.com/BonanzaDealsLive Update;version=3 - C:\Program Files (x86)\BonanzaDealsLive\Update\1.3.23.0\npGoogleUpdate3.dll (BonanzaDeals)
FF Plugin-x32: @tools.bdupdater.com/BonanzaDealsLive Update;version=9 - C:\Program Files (x86)\BonanzaDealsLive\Update\1.3.23.0\npGoogleUpdate3.dll (BonanzaDeals)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.2 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: ZEON/PDF,version=2.0 - C:\Program Files (x86)\Nuance\PDF Reader\bin\nppdf.dll (Zeon Corporation)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF SearchPlugin: C:\Users\wEeFa\AppData\Roaming\Mozilla\Firefox\Profiles\vzhiyztr.default\searchplugins\Web Search.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\Web Search.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: HomeTab - C:\Users\wEeFa\AppData\Roaming\Mozilla\Firefox\Profiles\vzhiyztr.default\Extensions\{ad7ef860-f366-4be1-8d12-4363b9356947} [2014-01-10]
FF Extension: No Name - C:\Users\wEeFa\AppData\Roaming\Mozilla\Firefox\profiles\extensions\extensions [2013-10-01]
FF Extension: No Name - C:\Users\wEeFa\AppData\Roaming\Mozilla\Firefox\profiles\extensions\searchplugins [2014-01-10]
FF Extension: FT Downloader - C:\Users\wEeFa\AppData\Roaming\Mozilla\Firefox\profiles\extensions\ftd@ftd.com.xpi [2013-06-26]
FF HKLM-x32\...\Firefox\Extensions: [{22C7F6C6-8D67-4534-92B5-529A0EC09405}] - C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\firefoxextension\
FF Extension: Trend Micro NSC Firefox Extension - C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\firefoxextension\ []
FF HKLM-x32\...\Firefox\Extensions: [{FFB96CC1-7EB3-449D-B827-DB661701C6BB}] - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker
FF HKCU\...\Firefox\Extensions: [lyrics@lyricsplus.net] - C:\Program Files (x86)\LyricsPlus\128.xpi
FF Extension: Lyrics Plus - C:\Program Files (x86)\LyricsPlus\128.xpi [2013-08-24]
FF HKCU\...\Firefox\Extensions: [lyrix@lyrixeeker.co] - C:\Program Files (x86)\LyriXeeker\128.xpi
FF Extension: LyricXeeker - C:\Program Files (x86)\LyriXeeker\128.xpi [2013-08-24]
Chrome:
=======
CHR HomePage: about:newtab?source=home
CHR RestoreOnStartup: "about:newtab?source=home"
CHR DefaultSearchKeyword: search.certified-toolbar.com
CHR DefaultSearchProvider: Web Search
CHR DefaultSearchURL: hxxp://search.certified-toolbar.com?si=66920&st=bs&tid=6787&ver=5.5&ts=1389358705752&tguid=66920-6787-1380615403075-CE7516AED078C686940EC3E605ABA0D1&q={searchTerms}
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.64\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.64\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.64\pdf.dll ()
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll No File
CHR Plugin: (Bing Bar) - C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2282.0\npwinext.dll No File
CHR Plugin: (Silverlight Plug-In) - C:\Program Files (x86)\Microsoft Silverlight\4.0.50401.0\npctrl.dll No File
CHR Plugin: (Zeon Plus) - C:\Program Files (x86)\Nuance\PDF Reader\bin\nppdf.dll (Zeon Corporation)
CHR Plugin: (Windows Live Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32.dll No File
CHR Extension: (Google Drive) - C:\Users\wEeFa\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-03-28]
CHR Extension: (HomeTab) - C:\Users\wEeFa\AppData\Local\Google\Chrome\User Data\Default\Extensions\bddpogknpjlgfpbboediomaiiaecfajn [2014-01-20]
CHR Extension: (YouTube) - C:\Users\wEeFa\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-03-28]
CHR Extension: (Google-Suche) - C:\Users\wEeFa\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-03-28]
CHR Extension: (Charlotte Ronson) - C:\Users\wEeFa\AppData\Local\Google\Chrome\User Data\Default\Extensions\obakimnhgahiedhcjlcnohielmendpen [2013-08-28]
CHR Extension: (MySearchDial) - C:\Users\wEeFa\AppData\Local\Google\Chrome\User Data\Default\Extensions\pflphaooapbgpeakohlggbpidpppgdff [2014-01-10]
CHR Extension: (Google Mail) - C:\Users\wEeFa\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-03-28]
CHR HKLM\...\Chrome\Extension: [pflphaooapbgpeakohlggbpidpppgdff] - C:\Users\wEeFa\AppData\Local\mysearchdial-speeddial.crx [2014-01-10]
CHR HKCU\...\Chrome\Extension: [amfclgbdpgndipgoegfpkkgobahigbcl] - C:\Users\wEeFa\AppData\Local\Smartbar/Application\0Extension.crx [2013-02-20]
CHR HKCU\...\Chrome\Extension: [pflphaooapbgpeakohlggbpidpppgdff] - C:\Users\wEeFa\AppData\Local\mysearchdial-speeddial.crx [2014-01-10]
CHR HKLM-x32\...\Chrome\Extension: [bddpogknpjlgfpbboediomaiiaecfajn] - C:\Program Files (x86)\HomeTab\chrome\HomeTab.crx [2013-10-01]
CHR HKLM-x32\...\Chrome\Extension: [cpbfnlppfjpopepenccdnpbeajakkcip] - C:\Program Files (x86)\LyricsPlus\128.crx [2013-08-21]
CHR HKLM-x32\...\Chrome\Extension: [epojlgbehpaeekopencdagbdamnkppci] - C:\Program Files (x86)\LyriXeeker\128.crx [2013-08-21]
CHR HKLM-x32\...\Chrome\Extension: [fjoijdanhaiflhibkljeklcghcmmfffh] - C:\Program Files (x86)\WebCakeLayers.crx [2013-08-24]
CHR HKLM-x32\...\Chrome\Extension: [kfepagcelbegkpkcjgfeecmlnmkedjin] - C:\Program Files (x86)\Browser Guard\browserguard.crx [2013-08-27]
CHR HKLM-x32\...\Chrome\Extension: [lgnbhdnimikkoodkogjlcllngimhlapp] - C:\Program Files (x86)\FTDownloader.com\FTDownloader10.crx [2013-08-27]
CHR HKLM-x32\...\Chrome\Extension: [pflphaooapbgpeakohlggbpidpppgdff] - C:\Users\wEeFa\AppData\Local\mysearchdial-speeddial.crx [2014-01-10]
==================== Services (Whitelisted) =================
R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [144152 2013-10-10] (SUPERAntiSpyware.com)
R2 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Atheros\Ath_CoexAgent.exe [151552 2010-05-24] (Atheros)
R2 AtherosSvc; C:\Program Files (x86)\Atheros\Bluetooth Suite\adminservice.exe [52896 2010-11-26] (Atheros Commnucations)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.130\McCHSvc.exe [288776 2013-09-06] (McAfee, Inc.)
S3 OverwolfUpdaterService; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [18360 2013-08-22] (Overwolf Ltd)
R3 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [247152 2009-04-17] ()
S4 SProtection; C:\Program Files (x86)\Common Files\Umbrella\umbrella.exe [2868544 2013-08-07] (Iminent)
S2 SystemStoreService; C:\Program Files (x86)\SoftwareUpdater\SystemStore.exe [296448 2013-10-01] ()
R2 TiMiniService; C:\Program Files\Trend Micro\Titanium\TiMiniService.exe [241488 2010-09-17] (Trend Micro Inc.)
R2 VideAceWindowsService; C:\ExpressGateUtil\VAWinService.exe [77312 2010-08-21] ()
R2 vsmon; C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe [2445816 2013-10-25] (Check Point Software Technologies LTD)
R2 WebCake Desktop Updater; C:\Program Files (x86)\WBDesktop.Updater.1.0.0.16.exe [51992 2013-08-24] (cake bake)
R2 winzipersvc; C:\Program Files (x86)\WinZipper\winzipersvc.exe [424104 2013-07-29] (Taiwan Shui Mu Chih Ching Technology Limited.)
R2 ZAPrivacyService; C:\Program Files (x86)\CheckPoint\ZoneAlarm\ZAPrivacyService.exe [50704 2013-10-15] (Check Point Software Technologies, Ltd.)
R2 ZoneAlarmBackup Service; C:\ZoneAlarmBackup\ZABackup Service.exe [149008 2010-03-11] (Pro Softnet Corporation)
S3 Amsp; "C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe" coreFrameworkHost.exe -m=rb -dt=60000 [x]
==================== Drivers (Whitelisted) ====================
R3 FLxHCIh; C:\Windows\System32\DRIVERS\FLxHCIh.sys [49664 2010-11-20] (Fresco Logic)
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( )
R0 KL1; C:\Windows\System32\DRIVERS\kl1.sys [458584 2012-11-15] (Kaspersky Lab ZAO)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [613720 2013-02-21] (Kaspersky Lab)
R3 S6000KNT; C:\Windows\System32\Drivers\S6000KNT.sys [190232 2010-08-05] (Windows (R) Win 7 DDK provider)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R2 tmactmon; C:\Windows\System32\DRIVERS\tmactmon.sys [90704 2010-09-17] (Trend Micro Inc.)
R2 tmcomm; C:\Windows\System32\DRIVERS\tmcomm.sys [144464 2010-09-17] (Trend Micro Inc.)
R2 tmevtmgr; C:\Windows\System32\DRIVERS\tmevtmgr.sys [67664 2010-09-17] (Trend Micro Inc.)
R1 tmtdi; C:\Windows\System32\DRIVERS\tmtdi.sys [105552 2010-09-17] (Trend Micro Inc.)
R2 TurboB; C:\Windows\System32\DRIVERS\TurboB.sys [13832 2010-04-17] ()
R1 Vsdatant; C:\Windows\System32\DRIVERS\vsdatant.sys [454168 2013-10-23] (Check Point Software Technologies LTD)
U5 klflt; C:\Windows\System32\Drivers\klflt.sys [89944 2013-02-21] (Kaspersky Lab)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-01-21 13:43 - 2014-01-21 13:43 - 00033433 _____ C:\Users\wEeFa\Downloads\FRST.txt
2014-01-21 13:42 - 2014-01-21 13:42 - 02077184 _____ (Farbar) C:\Users\wEeFa\Downloads\FRST64.exe
2014-01-21 13:42 - 2014-01-21 13:42 - 00000000 ____D C:\FRST
2014-01-21 13:40 - 2014-01-21 13:40 - 00000000 ____D C:\Users\wEeFa\Documents\My Received Files
2014-01-21 13:40 - 2014-01-21 13:40 - 00000000 ____D C:\Users\wEeFa\AppData\Roaming\MusicNet
2014-01-21 13:39 - 2014-01-21 13:39 - 01431792 _____ (iMesh Inc) C:\Users\wEeFa\Downloads\iMeshSetup-r1487-w-bf.exe
2014-01-21 13:37 - 2014-01-21 13:37 - 00000000 ___RD C:\Users\wEeFa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
2014-01-21 13:23 - 2014-01-21 13:23 - 00000000 ____D C:\ProgramData\BonanzaDealsLive
2014-01-15 11:47 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2014-01-15 11:47 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2014-01-15 11:47 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-01-15 11:47 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2014-01-15 11:47 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2014-01-15 11:47 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2014-01-15 11:47 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2014-01-15 11:47 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2014-01-15 11:47 - 2013-11-26 11:32 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-01-11 22:39 - 2014-01-11 22:39 - 00000000 ____D C:\Users\wEeFa\AppData\Local\Macromedia
2014-01-11 22:30 - 2014-01-11 22:30 - 00000000 ____D C:\Program Files\McAfee Security Scan
2014-01-11 21:47 - 2014-01-11 22:31 - 00000000 ____D C:\Program Files (x86)\McAfee Security Scan
2014-01-11 21:47 - 2014-01-11 21:47 - 00000000 ____D C:\ProgramData\McAfee Security Scan
2014-01-11 21:47 - 2014-01-11 21:47 - 00000000 ____D C:\ProgramData\McAfee
2014-01-11 21:46 - 2014-01-11 21:47 - 00000000 ____D C:\Users\wEeFa\AppData\Local\Adobe
2014-01-11 21:39 - 2014-01-11 21:39 - 00000000 ____D C:\SUPERDelete
2014-01-11 21:38 - 2014-01-21 13:38 - 00000510 _____ C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 3fc68906-a1f6-4524-bf37-b2e79e4d4890.job
2014-01-11 21:38 - 2014-01-21 02:00 - 00000510 _____ C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 877e95d4-62f3-4395-93ff-02086cfcfd72.job
2014-01-11 21:38 - 2014-01-11 21:38 - 00003586 _____ C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task 877e95d4-62f3-4395-93ff-02086cfcfd72
2014-01-11 21:38 - 2014-01-11 21:38 - 00003512 _____ C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task 3fc68906-a1f6-4524-bf37-b2e79e4d4890
2014-01-11 21:37 - 2014-01-15 11:41 - 00000000 ____D C:\Program Files\SUPERAntiSpyware
2014-01-11 21:37 - 2014-01-11 21:37 - 00000000 ____D C:\Users\wEeFa\AppData\Roaming\SUPERAntiSpyware.com
2014-01-11 21:37 - 2014-01-11 21:37 - 00000000 ____D C:\ProgramData\SUPERAntiSpyware.com
2014-01-11 21:36 - 2014-01-11 21:36 - 29118680 _____ (SUPERAntiSpyware) C:\Users\wEeFa\Downloads\SUPERAntiSpyware_5.7.1016.exe
2014-01-11 21:35 - 2014-01-11 21:35 - 00000000 ____D C:\Program Files (x86)\Trojancheck 6
2014-01-11 21:34 - 2014-01-11 21:35 - 01273071 _____ C:\Users\wEeFa\Downloads\tc6_install.exe
2014-01-10 14:05 - 2014-01-10 14:05 - 00001149 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-01-10 14:05 - 2014-01-10 14:05 - 00000000 ____D C:\Users\wEeFa\AppData\Local\Mozilla
2014-01-10 14:05 - 2014-01-10 14:05 - 00000000 ____D C:\ProgramData\Mozilla
2014-01-10 14:05 - 2014-01-10 14:05 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2014-01-10 14:04 - 2014-01-10 14:04 - 23867560 _____ (Mozilla) C:\Users\wEeFa\Downloads\Firefox_Setup_26.0.exe
2014-01-10 14:00 - 2014-01-21 02:22 - 00000000 ____D C:\Users\wEeFa\AppData\Local\genienext
2014-01-10 14:00 - 2014-01-16 10:14 - 00000000 ____D C:\Users\wEeFa\AppData\Roaming\newnext.me
2014-01-10 14:00 - 2014-01-10 14:00 - 00000000 ____D C:\Users\wEeFa\AppData\Local\cache
2014-01-10 14:00 - 2014-01-10 14:00 - 00000000 ____D C:\Users\wEeFa\.android
2014-01-10 14:00 - 2014-01-10 14:00 - 00000000 _____ C:\Users\wEeFa\daemonprocess.txt
2014-01-10 13:59 - 2014-01-21 02:14 - 00000000 ____D C:\Program Files (x86)\Mobogenie
2014-01-10 13:59 - 2014-01-10 14:03 - 00000000 ____D C:\Users\wEeFa\AppData\Roaming\systweak
2014-01-10 13:59 - 2014-01-10 13:59 - 24039048 _____ (Mozilla) C:\Users\wEeFa\Downloads\Firefox_Setup [1].exe
2014-01-10 13:59 - 2014-01-10 13:59 - 00366569 _____ C:\Users\wEeFa\AppData\Local\mysearchdial-speeddial.crx
2014-01-10 13:59 - 2013-12-27 18:10 - 00020312 _____ (Systweak Inc., (www.systweak.com)) C:\Windows\system32\roboot64.exe
2014-01-10 13:58 - 2014-01-10 13:58 - 00754944 _____ C:\Users\wEeFa\Downloads\Firefox_Setup.exe
2014-01-10 13:53 - 2014-01-10 13:53 - 00000000 ____D C:\Users\wEeFa\AppData\Roaming\Google
2014-01-09 11:01 - 2014-01-21 13:38 - 00000000 ___RD C:\Users\wEeFa\Dropbox
2014-01-06 11:40 - 2014-01-06 11:40 - 00000000 ____D C:\ProgramData\Oracle
2014-01-06 11:14 - 2013-10-08 07:50 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-01-06 11:14 - 2013-10-08 07:46 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-01-06 11:14 - 2013-10-08 07:46 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-01-06 11:14 - 2013-10-08 07:46 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-01-06 11:13 - 2014-01-06 11:14 - 00004886 _____ C:\Windows\SysWOW64\jupdate-1.7.0_45-b18.log
==================== One Month Modified Files and Folders =======
2014-01-21 13:44 - 2013-03-28 21:48 - 00000000 ____D C:\Users\wEeFa\AppData\Local\PMB Files
2014-01-21 13:43 - 2014-01-21 13:43 - 00033433 _____ C:\Users\wEeFa\Downloads\FRST.txt
2014-01-21 13:42 - 2014-01-21 13:42 - 02077184 _____ (Farbar) C:\Users\wEeFa\Downloads\FRST64.exe
2014-01-21 13:42 - 2014-01-21 13:42 - 00000000 ____D C:\FRST
2014-01-21 13:42 - 2013-07-15 11:50 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-01-21 13:42 - 2011-03-31 01:59 - 00001124 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-01-21 13:40 - 2014-01-21 13:40 - 00000000 ____D C:\Users\wEeFa\Documents\My Received Files
2014-01-21 13:40 - 2014-01-21 13:40 - 00000000 ____D C:\Users\wEeFa\AppData\Roaming\MusicNet
2014-01-21 13:39 - 2014-01-21 13:39 - 01431792 _____ (iMesh Inc) C:\Users\wEeFa\Downloads\iMeshSetup-r1487-w-bf.exe
2014-01-21 13:38 - 2014-01-11 21:38 - 00000510 _____ C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 3fc68906-a1f6-4524-bf37-b2e79e4d4890.job
2014-01-21 13:38 - 2014-01-09 11:01 - 00000000 ___RD C:\Users\wEeFa\Dropbox
2014-01-21 13:38 - 2013-09-24 17:48 - 00000000 ____D C:\Users\wEeFa\AppData\Roaming\Dropbox
2014-01-21 13:38 - 2013-08-28 12:59 - 00000000 ____D C:\ZoneAlarmBackup
2014-01-21 13:37 - 2014-01-21 13:37 - 00000000 ___RD C:\Users\wEeFa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
2014-01-21 13:37 - 2013-11-21 09:18 - 00000920 _____ C:\Windows\Tasks\BonanzaDealsLiveUpdateTaskMachineCore.job
2014-01-21 13:37 - 2013-08-01 12:16 - 00000378 _____ C:\Windows\Tasks\LyricXeeker Update.job
2014-01-21 13:37 - 2013-06-22 14:10 - 00000374 _____ C:\Windows\Tasks\Lyrics Plus Update.job
2014-01-21 13:37 - 2013-03-28 21:32 - 00045056 _____ C:\Windows\system32\acovcnt.exe
2014-01-21 13:37 - 2013-03-28 21:32 - 00000000 ___HD C:\ASUS.DAT
2014-01-21 13:37 - 2011-03-31 03:06 - 00000035 _____ C:\Users\Public\Documents\AtherosServiceConfig.ini
2014-01-21 13:37 - 2011-03-31 01:59 - 00001120 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-01-21 13:23 - 2014-01-21 13:23 - 00000000 ____D C:\ProgramData\BonanzaDealsLive
2014-01-21 13:23 - 2013-11-21 09:18 - 00000924 _____ C:\Windows\Tasks\BonanzaDealsLiveUpdateTaskMachineUA.job
2014-01-21 13:16 - 2013-08-01 12:16 - 00000286 _____ C:\Windows\Tasks\DSite.job
2014-01-21 12:41 - 2009-07-14 05:45 - 00010016 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-01-21 12:41 - 2009-07-14 05:45 - 00010016 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-01-21 12:38 - 2011-03-31 01:24 - 01404331 _____ C:\Windows\WindowsUpdate.log
2014-01-21 12:34 - 2013-10-02 16:05 - 00007155 _____ C:\Windows\setupact.log
2014-01-21 12:34 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2014-01-21 02:22 - 2014-01-10 14:00 - 00000000 ____D C:\Users\wEeFa\AppData\Local\genienext
2014-01-21 02:14 - 2014-01-10 13:59 - 00000000 ____D C:\Program Files (x86)\Mobogenie
2014-01-21 02:00 - 2014-01-11 21:38 - 00000510 _____ C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 877e95d4-62f3-4395-93ff-02086cfcfd72.job
2014-01-20 20:58 - 2013-03-29 13:15 - 00000000 ____D C:\Users\wEeFa\AppData\Roaming\TS3Client
2014-01-20 17:40 - 2013-04-15 20:55 - 00000000 ____D C:\Users\wEeFa\Downloads\Zahlungsbeleg - PayPal_files
2014-01-16 10:14 - 2014-01-10 14:00 - 00000000 ____D C:\Users\wEeFa\AppData\Roaming\newnext.me
2014-01-16 10:14 - 2013-11-22 10:21 - 00058468 _____ C:\Windows\PFRO.log
2014-01-16 09:57 - 2009-07-14 05:45 - 00317960 _____ C:\Windows\system32\FNTCACHE.DAT
2014-01-15 22:56 - 2013-08-24 18:18 - 00000000 ____D C:\Windows\system32\MRT
2014-01-15 22:55 - 2013-03-30 19:40 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-01-15 11:41 - 2014-01-11 21:37 - 00000000 ____D C:\Program Files\SUPERAntiSpyware
2014-01-13 17:41 - 2013-05-15 18:57 - 00000000 ____D C:\Users\wEeFa\AppData\Roaming\vlc
2014-01-13 12:25 - 2013-07-29 19:51 - 00000000 ____D C:\Program Files (x86)\WinZipper
2014-01-11 22:39 - 2014-01-11 22:39 - 00000000 ____D C:\Users\wEeFa\AppData\Local\Macromedia
2014-01-11 22:31 - 2014-01-11 21:47 - 00000000 ____D C:\Program Files (x86)\McAfee Security Scan
2014-01-11 22:30 - 2014-01-11 22:30 - 00000000 ____D C:\Program Files\McAfee Security Scan
2014-01-11 22:29 - 2011-03-31 03:07 - 00002642 _____ C:\Windows\system32\AutoRunFilter.ini
2014-01-11 22:28 - 2011-03-31 03:07 - 00001590 _____ C:\Windows\system32\ServiceFilter.ini
2014-01-11 22:26 - 2013-08-24 12:18 - 00000000 ____D C:\Program Files (x86)\LyricsPlus
2014-01-11 22:26 - 2013-07-03 10:49 - 00000000 ____D C:\Program Files (x86)\Guitar Pro 6
2014-01-11 21:47 - 2014-01-11 21:47 - 00000000 ____D C:\ProgramData\McAfee Security Scan
2014-01-11 21:47 - 2014-01-11 21:47 - 00000000 ____D C:\ProgramData\McAfee
2014-01-11 21:47 - 2014-01-11 21:46 - 00000000 ____D C:\Users\wEeFa\AppData\Local\Adobe
2014-01-11 21:47 - 2013-07-15 11:50 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-01-11 21:46 - 2013-07-15 11:50 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-01-11 21:46 - 2013-07-15 11:50 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-01-11 21:39 - 2014-01-11 21:39 - 00000000 ____D C:\SUPERDelete
2014-01-11 21:38 - 2014-01-11 21:38 - 00003586 _____ C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task 877e95d4-62f3-4395-93ff-02086cfcfd72
2014-01-11 21:38 - 2014-01-11 21:38 - 00003512 _____ C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task 3fc68906-a1f6-4524-bf37-b2e79e4d4890
2014-01-11 21:37 - 2014-01-11 21:37 - 00000000 ____D C:\Users\wEeFa\AppData\Roaming\SUPERAntiSpyware.com
2014-01-11 21:37 - 2014-01-11 21:37 - 00000000 ____D C:\ProgramData\SUPERAntiSpyware.com
2014-01-11 21:36 - 2014-01-11 21:36 - 29118680 _____ (SUPERAntiSpyware) C:\Users\wEeFa\Downloads\SUPERAntiSpyware_5.7.1016.exe
2014-01-11 21:35 - 2014-01-11 21:35 - 00000000 ____D C:\Program Files (x86)\Trojancheck 6
2014-01-11 21:35 - 2014-01-11 21:34 - 01273071 _____ C:\Users\wEeFa\Downloads\tc6_install.exe
2014-01-11 21:35 - 2013-04-05 19:47 - 00000000 ____D C:\Users\wEeFa\AppData\Local\CrashDumps
2014-01-11 11:13 - 2011-03-31 01:59 - 00000000 ____D C:\Program Files\Google
2014-01-11 11:13 - 2011-03-31 01:59 - 00000000 ____D C:\Program Files (x86)\Google
2014-01-10 22:18 - 2013-10-01 09:17 - 00000000 ____D C:\Program Files (x86)\HomeTab
2014-01-10 14:05 - 2014-01-10 14:05 - 00001149 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-01-10 14:05 - 2014-01-10 14:05 - 00000000 ____D C:\Users\wEeFa\AppData\Local\Mozilla
2014-01-10 14:05 - 2014-01-10 14:05 - 00000000 ____D C:\ProgramData\Mozilla
2014-01-10 14:05 - 2014-01-10 14:05 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2014-01-10 14:05 - 2013-05-18 08:55 - 00000000 ____D C:\Users\wEeFa\AppData\Roaming\Mozilla
2014-01-10 14:05 - 2013-03-28 22:45 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2014-01-10 14:04 - 2014-01-10 14:04 - 23867560 _____ (Mozilla) C:\Users\wEeFa\Downloads\Firefox_Setup_26.0.exe
2014-01-10 14:03 - 2014-01-10 13:59 - 00000000 ____D C:\Users\wEeFa\AppData\Roaming\systweak
2014-01-10 14:02 - 2013-11-21 09:18 - 00000000 ____D C:\Program Files (x86)\MyPC Backup
2014-01-10 14:02 - 2013-03-28 21:32 - 00000000 ___RD C:\Users\wEeFa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-01-10 14:00 - 2014-01-10 14:00 - 00000000 ____D C:\Users\wEeFa\AppData\Local\cache
2014-01-10 14:00 - 2014-01-10 14:00 - 00000000 ____D C:\Users\wEeFa\.android
2014-01-10 14:00 - 2014-01-10 14:00 - 00000000 _____ C:\Users\wEeFa\daemonprocess.txt
2014-01-10 14:00 - 2013-03-28 21:31 - 00000000 ____D C:\Users\wEeFa
2014-01-10 13:59 - 2014-01-10 13:59 - 24039048 _____ (Mozilla) C:\Users\wEeFa\Downloads\Firefox_Setup [1].exe
2014-01-10 13:59 - 2014-01-10 13:59 - 00366569 _____ C:\Users\wEeFa\AppData\Local\mysearchdial-speeddial.crx
2014-01-10 13:58 - 2014-01-10 13:58 - 00754944 _____ C:\Users\wEeFa\Downloads\Firefox_Setup.exe
2014-01-10 13:53 - 2014-01-10 13:53 - 00000000 ____D C:\Users\wEeFa\AppData\Roaming\Google
2014-01-10 13:53 - 2013-03-28 21:34 - 00000000 ____D C:\Users\wEeFa\AppData\Local\Google
2014-01-09 12:18 - 2013-10-01 09:41 - 00003658 _____ C:\Windows\System32\Tasks\Freemium1ClickMaint
2014-01-09 11:20 - 2013-03-28 21:48 - 00000000 ____D C:\ProgramData\PMB Files
2014-01-09 11:15 - 2013-09-24 17:49 - 00000000 ____D C:\Users\wEeFa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2014-01-09 10:55 - 2009-08-04 10:51 - 00697322 _____ C:\Windows\system32\perfh007.dat
2014-01-09 10:55 - 2009-08-04 10:51 - 00148328 _____ C:\Windows\system32\perfc007.dat
2014-01-09 10:55 - 2009-07-14 06:13 - 01614304 _____ C:\Windows\system32\PerfStringBackup.INI
2014-01-09 06:14 - 2013-10-01 09:17 - 00033864 _____ C:\Windows\Launcher.exe
2014-01-06 13:16 - 2013-08-01 13:16 - 00000095 _____ C:\Users\wEeFa\AppData\Roaming\WB.CFG
2014-01-06 11:40 - 2014-01-06 11:40 - 00000000 ____D C:\ProgramData\Oracle
2014-01-06 11:14 - 2014-01-06 11:13 - 00004886 _____ C:\Windows\SysWOW64\jupdate-1.7.0_45-b18.log
2014-01-06 11:14 - 2013-06-28 14:10 - 00000000 ____D C:\Program Files (x86)\Java
2013-12-27 18:10 - 2014-01-10 13:59 - 00020312 _____ (Systweak Inc., (www.systweak.com)) C:\Windows\system32\roboot64.exe
Some content of TEMP:
====================
C:\Users\wEeFa\AppData\Local\Temp\87853uninstall.exe
C:\Users\wEeFa\AppData\Local\Temp\BackupSetup.exe
C:\Users\wEeFa\AppData\Local\Temp\MySearchDial.exe
C:\Users\wEeFa\AppData\Local\Temp\Sqlite3.dll
C:\Users\wEeFa\AppData\Local\Temp\tbu230C.exe
C:\Users\wEeFa\AppData\Local\Temp\tbu2EA9.exe
C:\Users\wEeFa\AppData\Local\Temp\tbuC842.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-01-21 13:03
==================== End Of Log ============================
--- --- ---
--- --- ---
hier nochmal die andere datei :)
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 21-01-2014
Ran by wEeFa at 2014-01-21 13:44:12
Running from C:\Users\wEeFa\Downloads
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: ZoneAlarm Free Firewall Antivirus (Enabled - Up to date) {DE038A5B-9EDD-18A9-2361-FF7D98D43730}
AV: Trend Micro Titanium Internet Security (Disabled - Up to date) {68F968AC-2AA0-091D-848C-803E83E35902}
AS: Trend Micro Titanium Internet Security (Disabled - Up to date) {D3988948-0C9A-0693-BE3C-BB4CF86413BF}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: ZoneAlarm Free Firewall Anti-Spyware (Enabled - Up to date) {65626BBF-B8E7-1727-19D1-C40FE3537D8D}
FW: ZoneAlarm Free Firewall Firewall (Enabled) {E6380B7E-D4B2-19F1-083E-56486607704B}
==================== Installed Programs ======================
Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.170 - Adobe Systems Incorporated)
Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.170 - Adobe Systems Incorporated)
Alcor Micro USB Card Reader (x32 Version: 1.8.17.26026 - Alcor Micro Corp.)
Alcor Micro USB Card Reader (x32 Version: 1.8.17.26026 - Alcor Micro Corp.) Hidden
ASUS AI Recovery (x32 Version: 1.0.10 - ASUS)
ASUS FancyStart (x32 Version: 1.1.0 - ASUSTeK Computer Inc.)
ASUS LifeFrame3 (x32 Version: 3.0.21 - ASUS)
ASUS Live Update (x32 Version: 2.5.9 - ASUS)
ASUS Power4Gear Hybrid (Version: 1.1.43 - ASUS)
ASUS SmartLogon (x32 Version: 1.0.0009 - ASUS)
ASUS Splendid Video Enhancement Technology (x32 Version: 1.02.0031 - ASUS)
ASUS Video Magic (x32 Version: 6.0.4710 - CyberLink Corp.)
ASUS Video Magic (x32 Version: 6.0.4710 - CyberLink Corp.) Hidden
ASUS Virtual Camera (x32 Version: 1.0.20 - asus)
ASUS WebStorage (x32 Version: 2.0.46.1429 - eCareme Technologies, Inc.)
ASUS_Screensaver (x32 Version: - )
AsusVibe2.0 (x32 Version: 2.0.3.585 - ASUSTEK)
Atheros WLAN and Bluetooth Client Installation Program (x32 Version: 9.0 - Atheros)
ATK Package (x32 Version: 1.0.0007 - ASUS)
Bluetooth Win7 Suite (64) (Version: 7.2.0.45 - Atheros Communications)
Bonanza Deals (remove only) (x32 Version: 5.0.1.0 - Bonanza Deals) <==== ATTENTION
Bookworm Deluxe (x32 Version: - Oberon Media Inc.)
Browser Guard (x32 Version: - )
BrowserDefender (x32 Version: - Bit89 Inc) <==== ATTENTION
Bundled software uninstaller (x32 Version: - ) <==== ATTENTION
Codec Pack Packages (HKCU Version: - )
Complément Messenger (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Complemento Messenger (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Control ActiveX de Windows Live Mesh para conexiones remotas (x32 Version: 15.4.5722.2 - Microsoft Corporation)
Contrôle ActiveX Windows Live Mesh pour connexions à distance (x32 Version: 15.4.5722.2 - Microsoft Corporation)
Controlo ActiveX do Windows Live Mesh para Ligações Remotas (x32 Version: 15.4.5722.2 - Microsoft Corporation)
Cooking Dash (x32 Version: - Oberon Media Inc.)
CyberLink LabelPrint (x32 Version: 2.5.1908 - CyberLink Corp.)
CyberLink LabelPrint (x32 Version: 2.5.1908 - CyberLink Corp.) Hidden
CyberLink MediaEspresso (x32 Version: 6.0.1115_32476 - CyberLink Corp.)
CyberLink MediaEspresso (x32 Version: 6.0.1115_32476 - CyberLink Corp.) Hidden
CyberLink Power2Go (x32 Version: 6.1.3602c - CyberLink Corp.)
CyberLink Power2Go (x32 Version: 6.1.3602c - CyberLink Corp.) Hidden
CyberLink PowerDirector (x32 Version: 8.0.2609a - CyberLink Corp.)
CyberLink PowerDirector (x32 Version: 8.0.2609a - CyberLink Corp.) Hidden
CyberLink PowerDVD 10 (x32 Version: 10.0.2025 - CyberLink Corp.)
CyberLink PowerDVD 10 (x32 Version: 10.0.2025 - CyberLink Corp.) Hidden
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
DC-Bass Source 1.3.0 (x32 Version: - )
DealPly (remove only) (x32 Version: 4.8.6.1 - DealPly Technologies Ltd.) <==== ATTENTION
DirectVobSub 2.40.4209 (x32 Version: 2.40.4209 - MPC-HC Team)
DivX-Setup (x32 Version: 2.6.1.8 - DivX, LLC)
DomaIQ (x32 Version: - Tuguu SLU)
Dropbox (HKCU Version: 2.4.11 - Dropbox, Inc.)
ETDWare PS/2-x64 7.0.5.16_WHQL (Version: 7.0.5.16 - ELAN Microelectronics Corp.)
ExpressGate Cloud (x32 Version: 2.1.88.405 - Asus)
ExpressGate Cloud (x32 Version: 2.1.88.405 - Asus) Hidden
Fast Boot (Version: 1.0.8 - ASUS)
ffdshow v1.1.4399 [2012-03-22] (x32 Version: 1.1.4399.0 - )
Free System Utilities (x32 Version: 1.1.3.0 - Covus Freemium GmbH)
Free SystemUtilities (x32 Version: 1.1.3.0 - Covus Freemium GmbH) Hidden
Fresco Logic USB3.0 Host Controller (Version: 3.0.110.12 - Fresco Logic Inc.)
Galeria de Fotografias do Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galería fotográfica de Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galerie de photos Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Game Park Console (x32 Version: 6.2.1.1 - Oberon Media, Inc.)
Google Chrome (x32 Version: 26.0.1410.64 - Google Inc.)
Google Update Helper (x32 Version: 1.3.21.145 - Google Inc.) Hidden
Governor of Poker (x32 Version: - Oberon Media Inc.)
Guild Wars 2 (x32 Version: - NCsoft Corporation, Ltd.)
Guitar Pro 6 (x32 Version: - Arobas Music)
HomeTab 5.6 (x32 Version: 5.6 - HomeTab)
Hotel Dash Suite Success (x32 Version: - Oberon Media Inc.)
Image Converter (x32 Version: 1.0.0 - Image Converter)
Image Editor Packages (HKCU Version: - )
Iminent (x32 Version: 6.37.21.0 - Iminent) <==== ATTENTION
Iminent (x32 Version: 6.37.21.0 - Iminent) Hidden <==== ATTENTION
Intel(R) Control Center (x32 Version: 1.2.1.1007 - Intel Corporation)
Intel(R) Management Engine Components (x32 Version: 7.0.0.1144 - Intel Corporation)
Intel(R) Processor Graphics (x32 Version: 8.15.10.2253 - Intel Corporation)
Intel(R) Turbo Boost Technology Monitor (Version: 1.0.400.4 - Intel)
Java 7 Update 45 (x32 Version: 7.0.450 - Oracle)
Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Lagarith Lossless Codec (1.3.27) (x32 Version: - )
LAME v3.99.3 (for Windows) (x32 Version: - )
League of Legends (x32 Version: 1.3 - Riot Games)
Lyrics Plus (x32 Version: - Plus Add-on Software) <==== ATTENTION
LyricXeeker (x32 Version: - LyriXeeker Tech)
Mahjongg dimensions (x32 Version: - Oberon Media Inc.)
McAfee Security Scan Plus (Version: 3.8.130.10 - McAfee, Inc.)
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Messenger Companion (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Messenger 分享元件 (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Office 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Klick-und-Los 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Klick-und-Los 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Starter 2010 - Deutsch (x32 Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Silverlight (Version: 5.1.20913.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.59192 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation)
Mozilla Firefox 26.0 (x86 de) (x32 Version: 26.0 - Mozilla)
Mozilla Maintenance Service (x32 Version: 26.0 - Mozilla)
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSXML 4.0 SP3 Parser (KB2758694) (x32 Version: 4.30.2117.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB973685) (x32 Version: 4.30.2107.0 - Microsoft Corporation)
Nuance PDF Reader (x32 Version: 6.00.0041 - Nuance Communications, Inc.)
NVIDIA Control Panel 266.39 (Version: 266.39 - NVIDIA Corporation) Hidden
NVIDIA Graphics Driver 266.39 (Version: 266.39 - NVIDIA Corporation)
NVIDIA Install Application (Version: 2.265.36.0 - NVIDIA Corporation) Hidden
NVIDIA Optimus 1.0.11 (Version: 1.0.11 - NVIDIA Corporation) Hidden
NVIDIA Update Components (Version: 1.0.11 - NVIDIA Corporation) Hidden
OpenOffice 4.0.0 (x32 Version: 4.00.9702 - Apache Software Foundation)
OpenSource Flash Video Splitter 1.0.0.5 (x32 Version: 1.0.0.5 - )
Overwolf (x32 Version: 0.44.256 - Overwolf)
Overwolf.Setup.VC100CRTx64.Dist (Version: 1.0.0 - Overwolf)
Pando Media Booster (x32 Version: 2.6.0.9 - Pando Networks Inc.)
Plants vs Zombies (x32 Version: - Oberon Media Inc.)
Raccolta foto di Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Realtek Ethernet Controller Driver For Windows 7 (x32 Version: 7.21.531.2010 - Realtek)
Realtek High Definition Audio Driver (x32 Version: 6.0.1.6257 - Realtek Semiconductor Corp.)
SonicMaster (x32 Version: 1.00.0000 - Virage Logic, Corp.)
SUPERAntiSpyware (Version: 5.7.1016 - SUPERAntiSpyware.com)
syncables desktop SE (x32 Version: 5.5.746.11492 - syncables)
TeamSpeak 3 Client (Version: 3.0.10 - TeamSpeak Systems GmbH)
Trend Micro Titanium Internet Security (Version: 3.0 - Trend Micro Inc.)
Trend Micro Titanium Internet Security (Version: 3.00 - Trend Micro Inc.) Hidden
Trojancheck 6 (x32 Version: - Thomas Löffler)
TubeBox Smartbar (x32 Version: 1.6.1.864 - ReSoft Ltd.) <==== ATTENTION
Update for Image Editor (HKCU Version: - ) <==== ATTENTION
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (x32 Version: 3 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Extended (KB2468871) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Extended (KB2533523) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Extended (KB2600217) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Extended (KB2836939) (x32 Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Extended (KB2836939v3) (x32 Version: 3 - Microsoft Corporation)
USB2.0 2.0M UVC WebCam (x32 Version: 2.103.13.10 - ALi)
VAFPlayer (x32 Version: 1.6.8 - Tuguu SL)
VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden
VLC media player 2.0.2 (x32 Version: 2.0.2 - VideoLAN)
WebCake 3.00 (Version: 3.00 - WebCake LLC) <==== ATTENTION
Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Family Safety (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Fotogalerie (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4225.0 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Language Selector (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (x32 Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Mesh (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mesh ActiveX control for remote connections (x32 Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Mesh ActiveX Control for Remote Connections (x32 Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Messenger (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Messenger Companion Core (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live MIME IFilter (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Remote Client (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Client Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Service (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Service Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live 影像中心 (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live 程式集 (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Utils (x32 Version: - )
WinFlash (x32 Version: 2.31.1 - ASUS)
WinZipper (x32 Version: 1.4.8 - Taiwan Shui Mu Chih Ching Technology Limited.)
Wireless Console 3 (x32 Version: 3.0.19 - ASUS)
World of Goo (x32 Version: - Oberon Media Inc.)
Xvid Video Codec (x32 Version: 1.3.2 - Xvid Team)
ZoneAlarm Antivirus (x32 Version: 11.0.768.000 - Check Point Software Technologies Ltd.) Hidden
ZoneAlarm Backup Powered by IDrive version 1.0.5 March 14, 2013 (x32 Version: 1.0.5 - ProSoftnet Corp)
ZoneAlarm Firewall (x32 Version: 12.0.104.000 - Check Point Software Technologies Ltd.) Hidden
ZoneAlarm Free Firewall (x32 Version: 12.0.104.000 - Check Point)
ZoneAlarm LTD Toolbar (Version: - Check Point Software Technologies)
ZoneAlarm Security (x32 Version: 12.0.104.000 - Check Point Software Technologies Ltd.) Hidden
ZoneAlarm Security Toolbar (x32 Version: 1.8.22.0 - Check Point Software Technologies LTD) Hidden
Στοιχείο ελέγχου ActiveX του Windows Live Mesh για απομακρυσμένες συνδέσεις (x32 Version: 15.4.5722.2 - Microsoft Corporation)
Συλλογή φωτογραφιών του Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
גלריית התמונות של Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
מסייע Messenger (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
פקד ActiveX של Windows Live Mesh עבור חיבורים מרוחקים (x32 Version: 15.4.5722.2 - Microsoft Corporation)
適用遠端連線的 Windows Live Mesh ActiveX 控制項 (x32 Version: 15.4.5722.2 - Microsoft Corporation)
==================== Restore Points =========================
==================== Hosts content: ==========================
2009-07-14 03:34 - 2013-07-03 10:42 - 00000861 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {07958678-AA1C-423F-8D37-AD57F0B66FED} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-03-31] (Google Inc.)
Task: {119B5D8C-F03B-41BE-A5A7-A9B77547D7B9} - System32\Tasks\QtraxPlayer => C:\Program Files (x86)\Microsoft Silverlight\sllauncher.exe [2013-09-13] (Microsoft Corporation)
Task: {2E48AC10-6138-4131-86BC-674E24551C68} - System32\Tasks\Omiga Plus RunAsStdUser => C:\Program Files (x86)\Omiga Plus\omigaplus.exe
Task: {2F828D65-0E01-4D77-A4A7-C19E8C24E652} - System32\Tasks\ASUS Live Update => C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe [2007-11-30] ()
Task: {37083FEE-3DE9-49D1-A72E-D9ECBEE06B96} - System32\Tasks\BonanzaDealsLiveUpdateTaskMachineCore => C:\Program Files (x86)\BonanzaDealsLive\Update\BonanzaDealsLive.exe [2013-11-21] (BonanzaDeals) <==== ATTENTION
Task: {3BB3EA97-B8F2-472E-B88D-1D123747EA13} - System32\Tasks\ASUS P4G => C:\Program Files\P4G\BatteryLife.exe [2010-12-02] (ASUS)
Task: {3DD14583-FE5E-4222-BDE7-5116C4B9CDBB} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-03-31] (Google Inc.)
Task: {482BB77C-D903-4B42-BCEC-F6CDE95C6DB5} - \Lyrics Plus Update No Task File
Task: {4FAA756B-4D27-463E-A125-452078E250A8} - System32\Tasks\Software Updater => C:\Program Files (x86)\SoftwareUpdater\SoftwareUpdater.Bootstrapper.exe [2014-01-06] ()
Task: {6AFDAED7-898A-48F5-9A1C-850328BD354D} - System32\Tasks\BonanzaDealsLiveUpdateTaskMachineUA => C:\Program Files (x86)\BonanzaDealsLive\Update\BonanzaDealsLive.exe [2013-11-21] (BonanzaDeals) <==== ATTENTION
Task: {6DA3E765-B7AA-47A8-A89C-19CCE7AD0D30} - System32\Tasks\ProtectedSearch\Protected Search => C:\Program Files (x86)\HomeTab\ProtectedSearch.exe [2013-11-19] (Simplygen) <==== ATTENTION
Task: {73A6B062-F1A3-4BA5-B81D-CCA3B14FEE36} - \LyricXeeker Update No Task File
Task: {78106E07-CA43-499E-9599-0DAE76BEA7F6} - System32\Tasks\BonanzaDealsUpdate => C:\Program <==== ATTENTION
Task: {7AD546EF-4AB7-43EB-84F9-3571EEA2CDDC} - System32\Tasks\SystemSockets\SystemSockets => C:\Program Files (x86)\HomeTab\SystemSockets.exe [2014-01-09] ()
Task: {7B00198E-E06F-4E2F-8CCF-8CF5C48B55BC} - System32\Tasks\SUPERAntiSpyware Scheduled Task 3fc68906-a1f6-4524-bf37-b2e79e4d4890 => C:\Program Files\SUPERAntiSpyware\SASTask.exe [2013-11-07] (SUPERAdBlocker.com)
Task: {8A8732DA-99AA-4D85-BD10-6A7857712DC4} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-01-11] (Adobe Systems Incorporated)
Task: {8C7F8B87-EE42-4FC8-9506-E206A26E5F08} - System32\Tasks\DealPlyUpdate => C:\Program
Task: {8E261B83-61AC-4980-B87C-28A17FDBBC5B} - System32\Tasks\ATKOSD2 => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2010-08-17] (ASUS)
Task: {9517EC5A-0156-41CA-8634-B3B1FDF72E20} - System32\Tasks\Software Updater Ui => C:\Program Files (x86)\SoftwareUpdater\SoftwareUpdater.Ui.exe [2013-11-06] ()
Task: {A2D5AE1A-879C-416D-8B43-F0713D27F8C9} - System32\Tasks\DeviceDetector => C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe [2010-11-16] (CyberLink)
Task: {B2752739-3033-4181-89DB-08D83340D274} - System32\Tasks\Browser Updater\Browser Updater => Rundll32.exe "C:\Program Files (x86)\HomeTab\TBUpdater.dll",TBCheckForUpdate
Task: {B2958527-BCAD-4B5C-A9B2-47D28CF1E134} - System32\Tasks\SUPERAntiSpyware Scheduled Task 877e95d4-62f3-4395-93ff-02086cfcfd72 => C:\Program Files\SUPERAntiSpyware\SASTask.exe [2013-11-07] (SUPERAdBlocker.com)
Task: {BACE903F-47CE-4C4D-A337-F918C6168CAA} - \DSite No Task File
Task: {C7E53AED-DBBF-4888-8D89-5719B8230781} - System32\Tasks\BrowserDefendert => Sc.exe start BrowserDefendert
Task: {D4196861-8496-4288-AAFA-B6C81880A512} - System32\Tasks\Freemium1ClickMaint => C:\Users\wEeFa\Downloads\1Click.exe
Task: {DC5F66ED-C1DF-41D1-81FD-B7F0DD4CB9A6} - System32\Tasks\ACMON => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2010-08-02] (ASUS)
Task: {E443ED4F-A5BD-4C9A-9070-ECFBB75CAE2B} - System32\Tasks\Desk 365 RunAsStdUser => C:\Program Files (x86)\Desk 365\desk365.exe <==== ATTENTION
Task: {E5157BFE-8FF8-440D-A1D2-EED8FC76A71C} - System32\Tasks\ASUS SmartLogon Console Sensor => C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe [2009-07-31] (ASUS)
Task: {FABC60DE-2ADB-43D7-8D59-59FD00671AA0} - System32\Tasks\DealPly => C:\Users\wEeFa\AppData\Roaming\DealPly\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\BonanzaDealsLiveUpdateTaskMachineCore.job => C:\Program Files (x86)\BonanzaDealsLive\Update\BonanzaDealsLive.exe <==== ATTENTION
Task: C:\Windows\Tasks\BonanzaDealsLiveUpdateTaskMachineUA.job => C:\Program Files (x86)\BonanzaDealsLive\Update\BonanzaDealsLive.exe <==== ATTENTION
Task: C:\Windows\Tasks\DSite.job => C:\Users\wEeFa\AppData\Roaming\DSite\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\Lyrics Plus Update.job => C:\Program Files (x86)\LyricsPlus\LyricsPls.exe <==== ATTENTION
Task: C:\Windows\Tasks\LyricXeeker Update.job => C:\Program Files (x86)\LyriXeeker\LyriXupdate.exe
Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 3fc68906-a1f6-4524-bf37-b2e79e4d4890.job => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 877e95d4-62f3-4395-93ff-02086cfcfd72.job => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
==================== Loaded Modules (whitelisted) =============
2010-07-15 00:11 - 2010-07-15 00:11 - 00031360 _____ () C:\Program Files\P4G\DevMng.dll
2010-04-03 03:21 - 2008-10-01 07:08 - 00011264 _____ () C:\Program Files (x86)\ASUS\Splendid\GLCDdll.dll
2010-11-28 13:34 - 2010-11-28 13:34 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2013-07-29 19:51 - 2013-07-29 19:50 - 00612520 _____ () C:\Program Files (x86)\WinZipper\sqlite3.dll
2010-08-13 01:52 - 2010-08-13 01:52 - 00151552 _____ () C:\ExpressGateUtil\libexpat.dll
2010-08-13 01:52 - 2010-08-13 01:52 - 00057344 _____ () C:\ExpressGateUtil\netProfileDatabase.DLL
2009-11-02 22:20 - 2009-11-02 22:20 - 00619816 _____ () C:\Program Files (x86)\CyberLink\Power2Go\CLMediaLibrary.dll
2009-11-02 22:23 - 2009-11-02 22:23 - 00013096 _____ () C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvcPS.dll
2013-08-29 01:25 - 2013-08-29 01:25 - 00100688 _____ () C:\Program Files (x86)\DivX\DivX Update\DivXUpdateCheck.dll
2013-10-19 00:55 - 2013-10-19 00:55 - 25100288 _____ () C:\Users\wEeFa\AppData\Roaming\Dropbox\bin\libcef.dll
2011-03-31 02:50 - 2010-12-24 01:25 - 00004096 _____ () C:\Program Files (x86)\NVIDIA Corporation\CoProcManager\detoured.dll
2014-01-10 14:05 - 2013-12-05 20:36 - 03559024 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
2014-01-11 21:46 - 2014-01-11 21:46 - 16242056 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll
==================== Alternate Data Streams (whitelisted) =========
AlternateDataStreams: C:\ProgramData\Temp:AD022376
==================== Safe Mode (whitelisted) ===================
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vsmon => ""="Service"
==================== Faulty Device Manager Devices =============
Name: Atheros AR9002WB-1NG Wireless Network Adapter
Description: Atheros AR9002WB-1NG Wireless Network Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Atheros Communications Inc.
Service: athr
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
==================== Event log errors: =========================
Application errors:
==================
Error: (01/21/2014 01:34:41 PM) (Source: System Restore) (User: )
Description: Fehler beim Erstellen des Wiederherstellungspunkts (Prozess = C:\Windows\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation; Beschreibung = Geplanter Prüfpunkt; Fehler = 0x80070422).
Error: (01/20/2014 11:56:11 PM) (Source: Application Hang) (User: )
Description: Programm firefox.exe, Version 26.0.0.5087 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: 20f4
Startzeit: 01cf16304e96c030
Endzeit: 65
Anwendungspfad: C:\Program Files (x86)\Mozilla Firefox\firefox.exe
Berichts-ID: 0c06a599-8226-11e3-b22f-e0b9a54565f8
Error: (01/16/2014 10:32:52 AM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Error: (01/16/2014 10:13:46 AM) (Source: VSS) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "RegSetValueExW(0x00000130,SYSTEM\CurrentControlSet\Services\VSS\Diag\VssapiPublisher,0,REG_BINARY,000000000240E8B0.72)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070005, Zugriff verweigert
.
Vorgang:
Status der Generatoren abfragen
Asynchroner Vorgang wird ausgeführt
Kontext:
Aktueller Status: GatherWriterStatus
Error: (01/16/2014 10:13:46 AM) (Source: VSS) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "RegSetValueExW(0x00000130,SYSTEM\CurrentControlSet\Services\VSS\Diag\VssapiPublisher,0,REG_BINARY,000000000240E8B0.72)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070005, Zugriff verweigert
.
Vorgang:
Status der Generatoren abfragen
Asynchroner Vorgang wird ausgeführt
Kontext:
Aktueller Status: GatherWriterStatus
Error: (01/16/2014 10:13:46 AM) (Source: VSS) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "RegSetValueExW(0x00000130,SYSTEM\CurrentControlSet\Services\VSS\Diag\VssapiPublisher,0,REG_BINARY,000000000240F030.72)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070005, Zugriff verweigert
.
Vorgang:
Asynchroner Vorgang wird ausgeführt
Kontext:
Aktueller Status: DoSnapshotSet
Error: (01/16/2014 10:13:46 AM) (Source: VSS) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "RegSetValueExW(0x00000344,SYSTEM\CurrentControlSet\Services\VSS\Diag\SwProvider_{b5946137-7b9f-4925-af80-51abd60b20d5},0,REG_BINARY,000000000150DE80.72)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070005, Zugriff verweigert
.
Vorgang:
Asynchroner Vorgang wird ausgeführt
Kontext:
Aktueller Status: DoSnapshotSet
Error: (01/16/2014 10:13:46 AM) (Source: VSS) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "RegSetValueExW(0x00000344,SYSTEM\CurrentControlSet\Services\VSS\Diag\SwProvider_{b5946137-7b9f-4925-af80-51abd60b20d5},0,REG_BINARY,000000000150DE80.72)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070005, Zugriff verweigert
.
Vorgang:
Asynchroner Vorgang wird ausgeführt
Kontext:
Aktueller Status: DoSnapshotSet
Error: (01/16/2014 10:13:46 AM) (Source: VSS) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "RegSetValueExW(0x00000344,SYSTEM\CurrentControlSet\Services\VSS\Diag\SwProvider_{b5946137-7b9f-4925-af80-51abd60b20d5},0,REG_BINARY,000000000150DE80.72)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070005, Zugriff verweigert
.
Vorgang:
Asynchroner Vorgang wird ausgeführt
Kontext:
Aktueller Status: DoSnapshotSet
Error: (01/16/2014 10:13:44 AM) (Source: VSS) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "RegSetValueExW(0x00000344,SYSTEM\CurrentControlSet\Services\VSS\Diag\SwProvider_{b5946137-7b9f-4925-af80-51abd60b20d5},0,REG_BINARY,000000000150DE80.72)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070005, Zugriff verweigert
.
Vorgang:
Asynchroner Vorgang wird ausgeführt
Kontext:
Aktueller Status: DoSnapshotSet
System errors:
=============
Error: (01/21/2014 00:36:29 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Google Update Service (gupdate)" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (01/21/2014 00:36:29 PM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Google Update Service (gupdate) erreicht.
Error: (01/20/2014 07:23:32 PM) (Source: Schannel) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert: 10. Der interne Fehlerstatus lautet: 10.
Error: (01/20/2014 07:23:31 PM) (Source: Schannel) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert: 10. Der interne Fehlerstatus lautet: 10.
Error: (01/20/2014 07:23:21 PM) (Source: Schannel) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert: 10. Der interne Fehlerstatus lautet: 10.
Error: (01/20/2014 07:23:21 PM) (Source: Schannel) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert: 10. Der interne Fehlerstatus lautet: 10.
Error: (01/20/2014 01:55:17 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Google Update Service (gupdate)" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (01/20/2014 01:55:17 PM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Google Update Service (gupdate) erreicht.
Error: (01/17/2014 01:23:31 AM) (Source: Schannel) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert: 10. Der interne Fehlerstatus lautet: 10.
Error: (01/17/2014 01:23:30 AM) (Source: Schannel) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert: 10. Der interne Fehlerstatus lautet: 10.
Microsoft Office Sessions:
=========================
Error: (01/21/2014 01:34:41 PM) (Source: System Restore)(User: )
Description: C:\Windows\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreationGeplanter Prüfpunkt0x80070422
Error: (01/20/2014 11:56:11 PM) (Source: Application Hang)(User: )
Description: firefox.exe26.0.0.508720f401cf16304e96c03065C:\Program Files (x86)\Mozilla Firefox\firefox.exe0c06a599-8226-11e3-b22f-e0b9a54565f8
Error: (01/16/2014 10:32:52 AM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Users\wEeFa\Downloads\SoftonicDownloader_for_guitar-pro.exe
Error: (01/16/2014 10:13:46 AM) (Source: VSS)(User: )
Description: RegSetValueExW(0x00000130,SYSTEM\CurrentControlSet\Services\VSS\Diag\VssapiPublisher,0,REG_BINARY,000000000240E8B0.72)0x80070005, Zugriff verweigert
Vorgang:
Status der Generatoren abfragen
Asynchroner Vorgang wird ausgeführt
Kontext:
Aktueller Status: GatherWriterStatus
Error: (01/16/2014 10:13:46 AM) (Source: VSS)(User: )
Description: RegSetValueExW(0x00000130,SYSTEM\CurrentControlSet\Services\VSS\Diag\VssapiPublisher,0,REG_BINARY,000000000240E8B0.72)0x80070005, Zugriff verweigert
Vorgang:
Status der Generatoren abfragen
Asynchroner Vorgang wird ausgeführt
Kontext:
Aktueller Status: GatherWriterStatus
Error: (01/16/2014 10:13:46 AM) (Source: VSS)(User: )
Description: RegSetValueExW(0x00000130,SYSTEM\CurrentControlSet\Services\VSS\Diag\VssapiPublisher,0,REG_BINARY,000000000240F030.72)0x80070005, Zugriff verweigert
Vorgang:
Asynchroner Vorgang wird ausgeführt
Kontext:
Aktueller Status: DoSnapshotSet
Error: (01/16/2014 10:13:46 AM) (Source: VSS)(User: )
Description: RegSetValueExW(0x00000344,SYSTEM\CurrentControlSet\Services\VSS\Diag\SwProvider_{b5946137-7b9f-4925-af80-51abd60b20d5},0,REG_BINARY,000000000150DE80.72)0x80070005, Zugriff verweigert
Vorgang:
Asynchroner Vorgang wird ausgeführt
Kontext:
Aktueller Status: DoSnapshotSet
Error: (01/16/2014 10:13:46 AM) (Source: VSS)(User: )
Description: RegSetValueExW(0x00000344,SYSTEM\CurrentControlSet\Services\VSS\Diag\SwProvider_{b5946137-7b9f-4925-af80-51abd60b20d5},0,REG_BINARY,000000000150DE80.72)0x80070005, Zugriff verweigert
Vorgang:
Asynchroner Vorgang wird ausgeführt
Kontext:
Aktueller Status: DoSnapshotSet
Error: (01/16/2014 10:13:46 AM) (Source: VSS)(User: )
Description: RegSetValueExW(0x00000344,SYSTEM\CurrentControlSet\Services\VSS\Diag\SwProvider_{b5946137-7b9f-4925-af80-51abd60b20d5},0,REG_BINARY,000000000150DE80.72)0x80070005, Zugriff verweigert
Vorgang:
Asynchroner Vorgang wird ausgeführt
Kontext:
Aktueller Status: DoSnapshotSet
Error: (01/16/2014 10:13:44 AM) (Source: VSS)(User: )
Description: RegSetValueExW(0x00000344,SYSTEM\CurrentControlSet\Services\VSS\Diag\SwProvider_{b5946137-7b9f-4925-af80-51abd60b20d5},0,REG_BINARY,000000000150DE80.72)0x80070005, Zugriff verweigert
Vorgang:
Asynchroner Vorgang wird ausgeführt
Kontext:
Aktueller Status: DoSnapshotSet
CodeIntegrity Errors:
===================================
Date: 2013-08-28 14:07:29.681
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\install\instdrivers\kl1\x86\win8\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-28 14:07:29.679
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\install\instdrivers\kl1\x86\win8\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-28 14:07:29.662
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\install\instdrivers\kl1\x64\win8\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-28 14:07:29.660
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\install\instdrivers\kl1\x64\win8\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-28 14:07:24.039
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\install\instdrivers\kl1\x86\win8\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-28 14:07:24.035
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\install\instdrivers\kl1\x86\win8\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-28 14:07:22.185
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\install\instdrivers\kl1\x64\win8\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-28 14:07:22.182
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\CheckPoint\ZoneAlarm\avsys\install\instdrivers\kl1\x64\win8\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-25 20:11:37.301
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-25 19:39:52.835
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
==================== Memory info ===========================
Percentage of memory in use: 34%
Total physical RAM: 8103.08 MB
Available physical RAM: 5312.93 MB
Total Pagefile: 16204.34 MB
Available Pagefile: 13115.38 MB
Total Virtual: 8192 MB
Available Virtual: 8191.81 MB
==================== Drives ================================
Drive c: (OS) (Fixed) (Total:149.04 GB) (Free:85.23 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (Data) (Fixed) (Total:425.64 GB) (Free:402.48 GB) NTFS
Drive e: (DR) (CDROM) (Total:3.79 GB) (Free:0 GB) UDF
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 596 GB) (Disk ID: E0C5913D)
Partition 1: (Not Active) - (Size=21 GB) - (Type=1C)
Partition 2: (Active) - (Size=149 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=426 GB) - (Type=OF Extended)
==================== End Of Log ============================
Gruß David