ok, sorry meine aufmerksamkeit scheint nachzulassen.
hier der FRST-Scan
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 04-02-2014
Ran by Jan (administrator) on THINKTAB on 04-02-2014 21:34:01
Running from C:\Users\Jan\Desktop
Windows 7 Professional Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(Lenovo.) C:\Windows\System32\ibmpmsvc.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tphkload.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\TPHKSVC.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\btwdins.exe
(Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
() C:\ProgramData\DatacardService\HWDeviceService64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\CamMute.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\micmute.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\VIRTSCRL\lvvsst.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
() C:\ProgramData\Mobile Partner\OnlineUpdate\ouc.exe
(Protexis Inc.) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
() F:\Tobit Radio.fx\Server\rfx-server.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Conexant Systems, Inc.) C:\Windows\SysWOW64\SASrv.exe
(Ulead Systems, Inc.) C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(X-Rite Inc.) C:\Program Files (x86)\X-Rite\Devices\Services\xritedeviced.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(X-Rite Inc.) C:\Program Files (x86)\X-Rite\Devices\Services\i1Display\i1DisplayDeviceService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(UPEK Inc.) C:\Program Files\ThinkVantage Fingerprint Software\upeksvr.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Secunia) C:\Program Files (x86)\Secunia\PSI\sua.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\VIRTSCRL\virtscrl.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
(Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe
(Lenovo.) C:\Windows\System32\TpShocks.exe
() C:\Program Files\CONEXANT\ForteConfig\fmapp.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\TpKnrres.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\AutoLock\ALCKRESI.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Akamai Technologies, Inc.) C:\Users\Jan\AppData\Local\Akamai\netsession_win.exe
(Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\BTTray.exe
(Akamai Technologies, Inc.) C:\Users\Jan\AppData\Local\Akamai\netsession_win.exe
(Ricoh co.,Ltd.) C:\Program Files (x86)\Integrated Camera Driver\X64\RCIMGDIR.exe
() C:\Program Files (x86)\X-Rite\PANTONE Color Calibrator\Color Calibrator Tray.exe
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(Avanquest Software ) C:\Program Files (x86)\Digital Line Detect\DLG.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
(Logitech, Inc.) C:\Program Files\Logitech\SetPoint\SetPoint.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
(X-Rite Inc.) C:\Program Files (x86)\X-Rite\Devices\Lib\xritelegacyd.exe
(Secunia) C:\Program Files (x86)\Secunia\PSI\psi_tray.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\acrotray.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\ZOOM\TpScrex.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\TPONSCR.exe
() C:\Program Files\Logitech\SetPoint\x86\SetPoint32.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tpnumlkd.exe
(Logitech, Inc.) C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.exe
(Lenovo Group Limited) C:\Program Files (x86)\ThinkPad\Utilities\SCHTASK.EXE
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
(Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
(Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Lenovo Group Limited) C:\Program Files (x86)\Lenovo\System Update\SUService.exe
(Lenovo Group Limited) C:\Program Files (x86)\Common Files\Lenovo\tvt_reg_monitor_svc.exe
(Symantec Corporation) C:\Program Files (x86)\Symantec\VIP Access Client\VIPAppService.exe
() C:\Program Files (x86)\Lenovo\Message Center Plus\MCPLaunch.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Microsoft Corporation) C:\Windows\System32\UI0Detect.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [TpShocks] - C:\Windows\system32\TpShocks.exe [380776 2010-12-09] (Lenovo.)
HKLM\...\Run: [ForteConfig] - C:\Program Files\Conexant\ForteConfig\fmapp.exe [49056 2010-10-26] ()
HKLM\...\Run: [LENOVO.TPKNRRES] - C:\Program Files\Lenovo\Communications Utility\TPKNRRES.exe [41320 2011-04-04] (Lenovo Group Limited)
HKLM\...\Run: [ALCKRESI.EXE] - C:\Program Files\Lenovo\AutoLock\ALCKRESI.EXE [281448 2011-02-28] (Lenovo Group Limited)
HKLM\...\Run: [Kernel and Hardware Abstraction Layer] - C:\Windows\KHALMNPR.EXE [130576 2009-06-17] (Logitech, Inc.)
HKLM\...\Run: [SmartAudio] - C:\Program Files\CONEXANT\SAII\SAIICpl.exe [316032 2010-12-14] (Conexant systems, Inc.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [444904 2012-09-20] (Adobe Systems Incorporated)
HKLM\...\Run: [nwiz] - C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2747680 2013-11-15] ()
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2963184 2013-04-24] (Synaptics Incorporated)
HKLM-x32\...\Run: [RotateImage] - C:\Program Files (x86)\Integrated Camera Driver\X64\RCIMGDIR.exe [55808 2008-10-30] (Ricoh co.,Ltd.)
HKLM-x32\...\Run: [NUSB3MON] - C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [IMSS] - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [112152 2011-01-17] (Intel Corporation)
HKLM-x32\...\Run: [PWMTRV] - rundll32 C:\PROGRA~2\ThinkPad\UTILIT~1\PWMTR64V.DLL,PwrMgrBkGndMonitor
HKLM-x32\...\Run: [X-Rite Legacy Device] - C:\Program Files (x86)\X-Rite\Devices\Lib\xritelegacyd.exe [105984 2010-09-28] (X-Rite Inc.)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Lenovo Registration] - C:\Program Files (x86)\Lenovo Registration\LenovoReg.exe [4309184 2011-02-09] (Lenovo, Inc.)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-01-20] (Apple Inc.)
HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [49208 2011-05-10] (Hewlett-Packard)
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [684600 2013-12-18] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [SwitchBoard] - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] - C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1075296 2013-04-25] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] - [X]
HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [41336 2013-12-18] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [840568 2013-12-18] (Adobe Systems Inc.)
HKLM-x32\...\Run: [QuickTime Task] - C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-01-20] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.)
Winlogon\Notify\psfus: C:\Program Files\ThinkVantage Fingerprint Software\psqlpwd.dll (UPEK Inc.)
HKU\.DEFAULT\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [18642024 2013-02-28] (Skype Technologies S.A.)
HKU\S-1-5-21-2530740734-657176599-3957329625-1001\...\Run: [Akamai NetSession Interface] - C:\Users\Jan\AppData\Local\Akamai\netsession_win.exe [4489472 2013-06-05] (Akamai Technologies, Inc.)
HKU\S-1-5-21-2530740734-657176599-3957329625-1001\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)
Lsa: [Notification Packages] scecli C:\Program Files\ThinkVantage Fingerprint Software\psqlpwd.dll
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com/welcome/thinkpad
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Symantec VIP Access Add-On - {C63CD127-A1CB-4D49-A4F7-D6F88A917BE6} - C:\Program Files (x86)\Symantec\VIP Access Client\64bit\VIPAddOnForIE64.dll (Symantec Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Symantec VIP Access Add-On - {C63CD127-A1CB-4D49-A4F7-D6F88A917BE6} - C:\Program Files (x86)\Symantec\VIP Access Client\VIPAddOnForIE.dll (Symantec Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: SmartSelect Class - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{6EF977DF-533C-486F-9BED-5F2007576149}: [NameServer]193.189.244.225 193.189.244.206
FireFox:
========
FF ProfilePath: C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\zkbbcznn.default
FF Homepage: hxxp://www.ecosia.org/
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_43.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll (Adobe Systems)
FF Plugin: adobe.com/AdobeExManDetect - C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\Win64Plugin\npAdobeExManDetectX64.dll (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_43.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: Adobe Acrobat - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems)
FF Plugin-x32: adobe.com/AdobeExManDetect - C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll (Adobe Systems)
FF SearchPlugin: C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\zkbbcznn.default\searchplugins\englische-ergebnisse.xml
FF SearchPlugin: C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\zkbbcznn.default\searchplugins\gmx-suche.xml
FF SearchPlugin: C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\zkbbcznn.default\searchplugins\lastminute.xml
FF SearchPlugin: C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\zkbbcznn.default\searchplugins\myspace-music.xml
FF SearchPlugin: C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\zkbbcznn.default\searchplugins\webde-suche.xml
FF SearchPlugin: C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\zkbbcznn.default\searchplugins\youtube.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: WOT - C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\zkbbcznn.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2014-01-31]
FF Extension: Element Hiding Helper for Adblock Plus - C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\zkbbcznn.default\Extensions\elemhidehelper@adblockplus.org.xpi [2011-10-28]
FF Extension: WEB.DE MailCheck - C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\zkbbcznn.default\Extensions\toolbar@web.de.xpi [2011-12-20]
FF Extension: NoScript - C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\zkbbcznn.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2014-01-30]
FF Extension: Ecosia - The search engine that plants trees - C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\zkbbcznn.default\Extensions\{d04b0b40-3dab-4f0b-97a6-04ec3eddbfb0}.xpi [2013-08-27]
FF Extension: Adblock Plus - C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\zkbbcznn.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2011-10-28]
FF Extension: BetterPrivacy - C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\zkbbcznn.default\Extensions\{d40f5e7b-d2cf-4856-b441-cc613eeffbe3}.xpi [2013-07-08]
FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} [2013-12-21]
FF HKLM-x32\...\Firefox\Extensions: [VIP1X@verisign.com] - C:\Program Files (x86)\Symantec\VIP Access Client\
FF Extension: Symantec VIP Access Add-On - C:\Program Files (x86)\Symantec\VIP Access Client\ []
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: Adobe Acrobat - Create PDF - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2012-10-23]
FF HKLM-x32\...\Firefox\Extensions: [VIP2X@verisign.com] - C:\Program Files (x86)\Symantec\VIP Access Client\
FF Extension: Symantec VIP Access Add-On - C:\Program Files (x86)\Symantec\VIP Access Client\ []
==================== Services (Whitelisted) =================
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440376 2013-12-18] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440376 2013-11-19] (Avira Operations GmbH & Co. KG)
S3 DozeSvc; C:\Program Files (x86)\ThinkPad\Utilities\DZSVC64.EXE [320576 2012-03-15] (Lenovo.)
R2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [346976 2011-03-14] ()
R2 i1 Display Service; C:\Program Files (x86)\X-Rite\Devices\Services\i1Display\i1DisplayDeviceService.exe [163328 2010-09-28] (X-Rite Inc.)
R2 Lenovo.VIRTSCRLSVC; C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe [93032 2010-04-07] (Lenovo Group Limited)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
S2 Mobile Partner. RunOuc; C:\Program Files (x86)\Mobile Partner\UpdateDog\ouc.exe [239968 2011-12-23] ()
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [272688 2012-06-25] ()
S3 OpenVPNService; C:\Program Files (x86)\FH-Aachen OpenVPN\bin\openvpnserv.exe [38926 2011-05-20] ()
R2 Radio.fx; F:\Tobit Radio.fx\Server\rfx-server.exe [3673944 2011-11-18] ()
S2 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1229528 2013-12-06] (Secunia)
R2 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [662232 2013-12-06] (Secunia)
R2 ThinkVantage Registry Monitor Service; C:\Program Files (x86)\Common Files\Lenovo\tvt_reg_monitor_svc.exe [1028096 2010-12-11] (Lenovo Group Limited)
S3 TVT Backup Service; C:\Program Files (x86)\Lenovo\Rescue and Recovery\rrservice.exe [1475896 2010-12-11] (Lenovo Group Limited)
R2 VIPAppService; C:\Program Files (x86)\Symantec\VIP Access Client\VIPAppService.exe [84080 2012-04-18] (Symantec Corporation)
R2 xritedeviced; C:\Program Files (x86)\X-Rite\Devices\Services\xritedeviced.exe [142848 2010-09-28] (X-Rite Inc.)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3325232 2012-06-25] (Intel® Corporation)
==================== Drivers (Whitelisted) ====================
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2013-12-18] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131576 2013-12-18] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-11-19] (Avira Operations GmbH & Co. KG)
S3 grmobileavs; C:\Windows\System32\Drivers\grmobileavs.sys [358480 2011-04-11] (Native Instruments GmbH)
S3 grmobileavs_x64; C:\Windows\System32\Drivers\grmobileavs_x64.sys [45072 2008-12-09] (Native Instruments GmbH)
S3 grmobileusb_x64; C:\Windows\System32\Drivers\grmobileusb_x64.sys [234000 2008-12-09] (Native Instruments GmbH)
R3 LenovoRd; C:\Windows\System32\Drivers\LenovoRd.sys [118016 2009-05-11] (Lenovo)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R1 nvkflt; C:\Windows\System32\DRIVERS\nvkflt.sys [284448 2013-11-15] (NVIDIA Corporation)
S3 pmxdrv; C:\Windows\system32\drivers\pmxdrv.sys [31152 2011-07-26] ()
R3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2013-12-06] (Secunia)
R1 Serial; C:\Windows\System32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)
R2 smihlp; C:\Program Files\ThinkVantage Fingerprint Software\smihlp.sys [13840 2009-03-13] (UPEK Inc.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [381440 2014-01-09] (Duplex Secure Ltd.)
R3 TVTI2C; C:\Windows\System32\DRIVERS\Tvti2c.sys [41536 2009-09-24] (Lenovo (United States) Inc.)
U3 autzqxi1; C:\Windows\System32\Drivers\autzqxi1.sys [0 ] (Advanced Micro Devices)
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
U5 ew_hwusbdev; C:\Windows\System32\Drivers\ew_hwusbdev.sys [117248 2011-12-23] (Huawei Technologies Co., Ltd.)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-02-04 21:34 - 2014-02-04 21:34 - 00025019 _____ () C:\Users\Jan\Desktop\FRST.txt
2014-02-04 21:31 - 2014-02-04 21:32 - 02080256 _____ (Farbar) C:\Users\Jan\Desktop\FRST64.exe
2014-02-04 21:10 - 2014-02-04 21:10 - 00003732 _____ () C:\Users\Jan\Desktop\JRT.txt
2014-02-04 21:05 - 2014-02-04 21:05 - 00000000 ____D () C:\Windows\ERUNT
2014-02-04 20:53 - 2014-02-04 20:56 - 00000000 ____D () C:\AdwCleaner
2014-02-04 20:47 - 2014-02-04 20:47 - 01037530 _____ (Thisisu) C:\Users\Jan\Desktop\JRT.exe
2014-02-04 20:46 - 2014-02-04 20:46 - 01166132 _____ () C:\Users\Jan\Desktop\adwcleaner.exe
2014-02-04 19:46 - 2014-02-04 19:58 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2014-02-04 19:46 - 2014-02-04 19:46 - 00119000 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-02-04 19:42 - 2014-02-04 19:45 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-02-04 19:38 - 2014-02-04 19:58 - 00000000 ____D () C:\Users\Jan\Desktop\mbar
2014-02-04 19:06 - 2014-02-04 19:06 - 12589848 _____ (Malwarebytes Corp.) C:\Users\Jan\Desktop\mbar-1.07.0.1009.exe
2014-02-04 12:41 - 2014-02-04 12:41 - 00000378 _____ () C:\Users\Jan\Desktop\Ereignisse.txt
2014-02-04 12:32 - 2014-02-04 12:32 - 00041398 _____ () C:\ComboFix.txt
2014-02-04 12:07 - 2014-02-04 12:32 - 00000000 ____D () C:\Qoobox
2014-02-04 12:07 - 2011-06-26 07:45 - 00256000 _____ () C:\Windows\PEV.exe
2014-02-04 12:07 - 2010-11-07 18:20 - 00208896 _____ () C:\Windows\MBR.exe
2014-02-04 12:07 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2014-02-04 12:07 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2014-02-04 12:07 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2014-02-04 12:07 - 2000-08-31 01:00 - 00098816 _____ () C:\Windows\sed.exe
2014-02-04 12:07 - 2000-08-31 01:00 - 00080412 _____ () C:\Windows\grep.exe
2014-02-04 12:07 - 2000-08-31 01:00 - 00068096 _____ () C:\Windows\zip.exe
2014-02-04 12:06 - 2014-02-04 12:27 - 00000000 ____D () C:\Windows\erdnt
2014-02-04 12:01 - 2014-02-04 12:02 - 05179684 ____R (Swearware) C:\Users\Jan\Desktop\ComboFix.exe
2014-02-04 00:04 - 2014-02-04 00:04 - 00002630 _____ () C:\Users\Jan_2\Documents\zertifikatexportdatei.pfx
2014-02-03 17:16 - 2014-02-03 17:16 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\WinRAR
2014-02-03 15:34 - 2014-02-03 15:35 - 130658432 _____ () C:\Users\Jan_2\Desktop\avira_free_antivirus_de.exe
2014-02-03 13:01 - 2014-02-03 13:01 - 00034015 _____ () C:\Users\Jan_2\Desktop\Addition.txt
2014-02-03 13:00 - 2014-02-04 21:34 - 00000000 ____D () C:\FRST
2014-02-03 13:00 - 2014-02-03 13:01 - 00063366 _____ () C:\Users\Jan_2\Desktop\FRST.txt
2014-02-03 12:59 - 2014-02-03 12:59 - 02080256 _____ (Farbar) C:\Users\Jan_2\Desktop\FRST64.exe
2014-02-03 11:47 - 2014-02-03 11:47 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\Malwarebytes
2014-02-02 20:48 - 2014-02-02 20:48 - 00000000 ____D () C:\Users\Jan\AppData\Roaming\Malwarebytes
2014-02-02 20:47 - 2014-02-02 20:47 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-02-02 20:47 - 2014-02-02 20:47 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-02-02 20:47 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-02-02 18:36 - 2014-02-02 18:36 - 00000000 ____D () C:\Users\Jan\AppData\Local\Apps\2.0
2014-02-02 18:15 - 2014-02-04 14:17 - 00119954 _____ () C:\Windows\PFRO.log
2014-02-02 18:03 - 2014-02-02 18:49 - 01598708 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-02-02 18:01 - 2012-08-23 15:13 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2014-02-02 18:01 - 2012-08-23 15:10 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2014-02-02 18:01 - 2012-08-23 15:08 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbGD.sys
2014-02-02 18:01 - 2012-08-23 15:07 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2014-02-02 18:01 - 2012-08-23 14:47 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll
2014-02-02 18:01 - 2012-08-23 14:46 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2014-02-02 18:01 - 2012-08-23 14:41 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-02-02 18:01 - 2012-08-23 14:40 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-02-02 18:01 - 2012-08-23 14:24 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll
2014-02-02 18:01 - 2012-08-23 14:20 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2014-02-02 18:01 - 2012-08-23 14:18 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2014-02-02 18:01 - 2012-08-23 14:17 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2014-02-02 18:01 - 2012-08-23 14:06 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-02-02 18:01 - 2012-08-23 13:52 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2014-02-02 18:01 - 2012-08-23 12:20 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2014-02-02 18:01 - 2012-08-23 12:15 - 00269312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2014-02-02 18:01 - 2012-08-23 12:14 - 00384000 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2014-02-02 18:01 - 2012-08-23 12:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpendp_winip.dll
2014-02-02 18:01 - 2012-08-23 11:54 - 00322560 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
2014-02-02 18:01 - 2012-08-23 11:51 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp_winip.dll
2014-02-02 18:01 - 2012-08-23 11:39 - 01048064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2014-02-02 18:01 - 2012-08-23 11:22 - 01123840 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2014-02-02 18:01 - 2012-08-23 10:51 - 03174912 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-02-02 18:01 - 2012-08-23 09:19 - 04916224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2014-02-02 18:01 - 2012-08-23 09:13 - 05773824 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-02-02 17:59 - 2014-02-02 17:59 - 00000000 ____D () C:\Program Files\AuthenTec
2014-02-02 17:51 - 2012-05-04 12:00 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2014-02-02 17:51 - 2012-05-04 10:59 - 00514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2014-02-01 22:32 - 2014-02-01 22:32 - 00000921 _____ () C:\Users\Jan_2\Desktop\gsg_tuts - Verknüpfung.lnk
2014-02-01 22:30 - 2014-02-01 22:29 - 00001004 _____ () C:\Users\Jan_2\Desktop\hochstuhl - Verknüpfung.lnk
2014-02-01 22:21 - 2014-02-01 22:21 - 00000000 ____D () C:\Users\Jan_2\Documents\Ulead Burn.Now
2014-02-01 22:21 - 2014-02-01 22:21 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\Ulead Systems
2014-02-01 22:20 - 2014-02-01 22:21 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\Corel
2014-02-01 22:20 - 2014-02-01 22:20 - 00000000 ____D () C:\Users\Jan_2\Corel
2014-02-01 17:11 - 2014-02-01 17:11 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\Thunderbird
2014-02-01 17:11 - 2014-02-01 17:11 - 00000000 ____D () C:\Users\Jan_2\AppData\Local\Thunderbird
2014-02-01 16:23 - 2014-02-01 16:23 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\HpUpdate
2014-02-01 10:05 - 2014-02-01 10:08 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\SolidWorks
2014-02-01 10:03 - 2014-02-01 10:03 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\NVIDIA
2014-02-01 08:46 - 2014-02-01 08:46 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\Tobit
2014-02-01 08:32 - 2014-02-01 08:32 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-01-31 22:50 - 2014-01-31 22:50 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\PwrMgr
2014-01-31 22:40 - 2014-01-31 22:42 - 00000000 ____D () C:\ProgramData\Oracle
2014-01-31 22:39 - 2014-01-31 22:39 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-01-31 22:39 - 2014-01-31 22:39 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-01-31 22:39 - 2014-01-31 22:39 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-01-31 22:39 - 2014-01-31 22:39 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-01-31 20:52 - 2014-01-31 20:52 - 00000000 ____D () C:\Users\Jan_2\AppData\Local\Macromedia
2014-01-31 15:39 - 2014-01-31 15:39 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\Mozilla
2014-01-31 15:39 - 2014-01-31 15:39 - 00000000 ____D () C:\Users\Jan_2\AppData\Local\Mozilla
2014-01-31 15:36 - 2014-01-31 15:36 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\Avira
2014-01-31 15:31 - 2014-02-03 09:56 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\X-Rite
2014-01-31 15:31 - 2014-01-31 15:31 - 00140216 _____ () C:\Users\Jan_2\AppData\Local\GDIPFONTCACHEV1.DAT
2014-01-31 15:31 - 2014-01-31 15:31 - 00001432 _____ () C:\Users\Jan_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-01-31 15:31 - 2014-01-31 15:31 - 00000000 ___RD () C:\Users\Jan_2\Virtual Machines
2014-01-31 15:31 - 2014-01-31 15:31 - 00000000 ___RD () C:\Users\Jan_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-01-31 15:31 - 2014-01-31 15:31 - 00000000 ___RD () C:\Users\Jan_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-01-31 15:31 - 2014-01-31 15:31 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\Logitech
2014-01-31 15:31 - 2014-01-31 15:31 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\Leadertech
2014-01-31 15:31 - 2014-01-31 15:31 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\Adobe
2014-01-31 15:31 - 2014-01-31 15:31 - 00000000 ____D () C:\Users\Jan_2\AppData\Local\Lenovo
2014-01-31 15:31 - 2014-01-31 15:31 - 00000000 ____D () C:\Users\Jan_2\AppData\Local\Adobe
2014-01-31 15:30 - 2014-02-01 22:20 - 00000000 ____D () C:\Users\Jan_2
2014-01-31 15:30 - 2014-02-01 22:11 - 00000000 ____D () C:\Users\Jan_2\AppData\Local\Apple Computer
2014-01-31 15:30 - 2014-02-01 08:46 - 00000000 ____D () C:\Users\Jan_2\AppData\Local\VirtualStore
2014-01-31 15:30 - 2014-02-01 08:39 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\Apple Computer
2014-01-31 15:30 - 2014-01-31 15:30 - 00000020 ___SH () C:\Users\Jan_2\ntuser.ini
2014-01-31 15:30 - 2014-01-31 15:30 - 00000000 _SHDL () C:\Users\Jan_2\Vorlagen
2014-01-31 15:30 - 2014-01-31 15:30 - 00000000 _SHDL () C:\Users\Jan_2\Startmenü
2014-01-31 15:30 - 2014-01-31 15:30 - 00000000 _SHDL () C:\Users\Jan_2\Netzwerkumgebung
2014-01-31 15:30 - 2014-01-31 15:30 - 00000000 _SHDL () C:\Users\Jan_2\Lokale Einstellungen
2014-01-31 15:30 - 2014-01-31 15:30 - 00000000 _SHDL () C:\Users\Jan_2\Eigene Dateien
2014-01-31 15:30 - 2014-01-31 15:30 - 00000000 _SHDL () C:\Users\Jan_2\Druckumgebung
2014-01-31 15:30 - 2014-01-31 15:30 - 00000000 _SHDL () C:\Users\Jan_2\Documents\Eigene Musik
2014-01-31 15:30 - 2014-01-31 15:30 - 00000000 _SHDL () C:\Users\Jan_2\Documents\Eigene Bilder
2014-01-31 15:30 - 2014-01-31 15:30 - 00000000 _SHDL () C:\Users\Jan_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-01-31 15:30 - 2014-01-31 15:30 - 00000000 _SHDL () C:\Users\Jan_2\AppData\Local\Verlauf
2014-01-31 15:30 - 2014-01-31 15:30 - 00000000 _SHDL () C:\Users\Jan_2\AppData\Local\Anwendungsdaten
2014-01-31 15:30 - 2014-01-31 15:30 - 00000000 _SHDL () C:\Users\Jan_2\Anwendungsdaten
2014-01-31 15:30 - 2014-01-31 15:30 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\Intel
2014-01-31 15:30 - 2012-03-17 15:03 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\Macromedia
2014-01-31 15:30 - 2011-11-01 00:32 - 00000000 ____D () C:\Users\Jan_2\AppData\Local\Microsoft Help
2014-01-31 15:30 - 2009-07-14 05:54 - 00000000 ___RD () C:\Users\Jan_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-01-31 15:30 - 2009-07-14 05:49 - 00000000 ___RD () C:\Users\Jan_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-01-31 11:37 - 2014-02-04 20:58 - 00003624 _____ () C:\Windows\setupact.log
2014-01-31 11:37 - 2014-01-31 11:37 - 00000000 _____ () C:\Windows\setuperr.log
2014-01-31 08:20 - 2014-01-31 08:20 - 02434048 _____ () C:\Users\Jan\Desktop\msxml.msi
2014-01-31 01:00 - 2014-01-31 01:00 - 00000000 ____D () C:\Program Files\iTunes
2014-01-31 01:00 - 2014-01-31 01:00 - 00000000 ____D () C:\Program Files\iPod
2014-01-31 00:59 - 2014-01-31 00:59 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Apple Computer
2014-01-31 00:59 - 2014-01-31 00:59 - 00000000 ____D () C:\Users\Default\AppData\Local\Apple Computer
2014-01-31 00:59 - 2014-01-31 00:59 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Apple Computer
2014-01-31 00:59 - 2014-01-31 00:59 - 00000000 ____D () C:\Users\Default User\AppData\Local\Apple Computer
2014-01-30 23:28 - 2014-01-30 23:28 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-01-30 23:21 - 2014-01-30 23:21 - 00000000 ____D () C:\Users\Jan\AppData\Local\Secunia PSI
2014-01-30 23:21 - 2014-01-30 23:21 - 00000000 ____D () C:\Program Files (x86)\Secunia
2014-01-30 22:56 - 2014-01-30 22:56 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Jan\Desktop\mbam-setup-1.75.0.1300.exe
2014-01-30 22:43 - 2014-01-30 22:45 - 90578216 _____ (AVAST Software) C:\Users\Jan\Desktop\avast_free_antivirus_setup.exe
2014-01-30 21:53 - 2014-01-30 21:53 - 05329480 _____ (Secunia) C:\Users\Jan\Desktop\PSISetup_3.0.0.9016.exe
2014-01-29 23:02 - 2014-01-29 23:02 - 13031424 _____ (Intel Corporation) C:\Windows\system32\ig4icd64.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 12617216 _____ (Intel Corporation) C:\Windows\system32\igdumd64.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 11176448 _____ (Intel Corporation) C:\Windows\SysWOW64\igd10umd32.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 11049472 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumd32.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 10812928 _____ (Intel Corporation) C:\Windows\SysWOW64\ig4icd32.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 05904856 _____ (Intel Corporation) C:\Windows\system32\GfxUI.exe
2014-01-29 23:02 - 2014-01-29 23:02 - 05363200 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys
2014-01-29 23:02 - 2014-01-29 23:02 - 03511296 _____ (Intel Corporation) C:\Windows\system32\igfxcmjit64.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 03121152 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmjit32.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 01040384 _____ (Intel Corporation) C:\Windows\system32\igfxcmrt64.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 00931840 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmrt32.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 00575488 _____ (Intel Corporation) C:\Windows\system32\igfx11cmrt64.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 00542720 _____ (Intel Corporation) C:\Windows\SysWOW64\igfx11cmrt32.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 00515544 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe
2014-01-29 23:02 - 2014-01-29 23:02 - 00442880 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 00442328 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe
2014-01-29 23:02 - 2014-01-29 23:02 - 00440320 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00439808 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00439808 _____ (Intel Corporation) C:\Windows\system32\igfxresn.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00439296 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00439296 _____ (Intel Corporation) C:\Windows\system32\igfxrrom.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrhrv.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00438272 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00438272 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00438272 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00437248 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00437248 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00435712 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00435712 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00432128 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00431104 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00429056 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00428544 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00410624 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 00399832 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe
2014-01-29 23:02 - 2014-01-29 23:02 - 00384512 _____ (Intel Corporation) C:\Windows\system32\igfxpph.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 00330752 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxdv32.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 00286208 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00279000 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe
2014-01-29 23:02 - 2014-01-29 23:02 - 00254936 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe
2014-01-29 23:02 - 2014-01-29 23:02 - 00223664 _____ () C:\Windows\system32\Gfxres.th-TH.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00210106 _____ () C:\Windows\system32\Gfxres.el-GR.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00194245 _____ () C:\Windows\system32\Gfxres.ru-RU.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00185816 _____ (Intel Corporation) C:\Windows\system32\difx64.exe
2014-01-29 23:02 - 2014-01-29 23:02 - 00175104 _____ (Intel Corporation) C:\Windows\system32\gfxSrvc.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 00171992 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe
2014-01-29 23:02 - 2014-01-29 23:02 - 00166170 _____ () C:\Windows\system32\Gfxres.ar-SA.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00163421 _____ () C:\Windows\system32\Gfxres.ja-JP.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00159008 _____ () C:\Windows\system32\Gfxres.he-IL.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00149682 _____ () C:\Windows\system32\Gfxres.it-IT.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00148042 _____ () C:\Windows\system32\Gfxres.ko-KR.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00147393 _____ () C:\Windows\system32\Gfxres.de-DE.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00147288 _____ () C:\Windows\system32\Gfxres.es-ES.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00146004 _____ () C:\Windows\system32\Gfxres.ro-RO.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00145491 _____ () C:\Windows\system32\Gfxres.fr-FR.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00144645 _____ () C:\Windows\system32\Gfxres.tr-TR.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00144260 _____ () C:\Windows\system32\Gfxres.pt-BR.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00144020 _____ () C:\Windows\system32\Gfxres.nl-NL.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00143932 _____ () C:\Windows\system32\Gfxres.hu-HU.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00142882 _____ () C:\Windows\system32\Gfxres.sv-SE.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00142877 _____ () C:\Windows\system32\Gfxres.pt-PT.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00142717 _____ () C:\Windows\system32\Gfxres.pl-PL.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00142336 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 00142289 _____ () C:\Windows\system32\Gfxres.cs-CZ.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00142008 _____ () C:\Windows\system32\Gfxres.fi-FI.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00141838 _____ () C:\Windows\system32\Gfxres.sk-SK.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00141049 _____ () C:\Windows\system32\Gfxres.hr-HR.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00137889 _____ () C:\Windows\system32\Gfxres.sl-SI.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00137784 _____ () C:\Windows\system32\Gfxres.nb-NO.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00137141 _____ () C:\Windows\system32\Gfxres.da-DK.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00132623 _____ () C:\Windows\system32\Gfxres.en-US.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00126976 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl
2014-01-29 23:02 - 2014-01-29 23:02 - 00126300 _____ () C:\Windows\system32\Gfxres.zh-TW.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00124650 _____ () C:\Windows\system32\Gfxres.zh-CN.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00116224 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v3347.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 00098304 _____ () C:\Windows\system32\igdde64.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 00077312 _____ () C:\Windows\SysWOW64\igdde32.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 00025088 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxexps32.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 00017058 _____ () C:\Windows\system32\iglhxs64.vp
2014-01-29 23:02 - 2014-01-29 23:02 - 00009728 _____ ( ) C:\Windows\system32\IGFXDEVLib.dll
2014-01-23 14:59 - 2012-12-07 15:53 - 00000085 _____ () C:\Users\Jan\Desktop\Drehbank.txt
2014-01-20 15:22 - 2014-01-20 15:22 - 00000016 _____ () C:\Users\Jan\Desktop\pay.txt
2014-01-15 09:21 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2014-01-15 09:21 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2014-01-15 09:21 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-01-15 09:21 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2014-01-15 09:21 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2014-01-15 09:21 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2014-01-15 09:21 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2014-01-15 09:20 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2014-01-15 09:20 - 2013-11-26 11:32 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-01-09 13:47 - 2014-01-09 13:47 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite
==================== One Month Modified Files and Folders =======
2014-02-04 21:34 - 2014-02-04 21:34 - 00025019 _____ () C:\Users\Jan\Desktop\FRST.txt
2014-02-04 21:34 - 2014-02-03 13:00 - 00000000 ____D () C:\FRST
2014-02-04 21:32 - 2014-02-04 21:31 - 02080256 _____ (Farbar) C:\Users\Jan\Desktop\FRST64.exe
2014-02-04 21:17 - 2012-04-05 08:18 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-02-04 21:10 - 2014-02-04 21:10 - 00003732 _____ () C:\Users\Jan\Desktop\JRT.txt
2014-02-04 21:06 - 2009-07-14 05:45 - 00031072 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-02-04 21:06 - 2009-07-14 05:45 - 00031072 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-02-04 21:05 - 2014-02-04 21:05 - 00000000 ____D () C:\Windows\ERUNT
2014-02-04 21:03 - 2011-07-26 20:38 - 00701576 _____ () C:\Windows\system32\perfh007.dat
2014-02-04 21:03 - 2011-07-26 20:38 - 00150444 _____ () C:\Windows\system32\perfc007.dat
2014-02-04 21:03 - 2009-07-14 06:13 - 01620684 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-02-04 20:59 - 2012-07-07 22:34 - 01267610 _____ () C:\Windows\WindowsUpdate.log
2014-02-04 20:58 - 2014-01-31 11:37 - 00003624 _____ () C:\Windows\setupact.log
2014-02-04 20:58 - 2011-10-28 10:19 - 00000466 _____ () C:\Windows\Tasks\SystemToolsDailyTest.job
2014-02-04 20:58 - 2011-07-26 11:06 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-02-04 20:58 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-02-04 20:56 - 2014-02-04 20:53 - 00000000 ____D () C:\AdwCleaner
2014-02-04 20:47 - 2014-02-04 20:47 - 01037530 _____ (Thisisu) C:\Users\Jan\Desktop\JRT.exe
2014-02-04 20:46 - 2014-02-04 20:46 - 01166132 _____ () C:\Users\Jan\Desktop\adwcleaner.exe
2014-02-04 19:58 - 2014-02-04 19:46 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2014-02-04 19:58 - 2014-02-04 19:38 - 00000000 ____D () C:\Users\Jan\Desktop\mbar
2014-02-04 19:46 - 2014-02-04 19:46 - 00119000 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-02-04 19:45 - 2014-02-04 19:42 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-02-04 19:06 - 2014-02-04 19:06 - 12589848 _____ (Malwarebytes Corp.) C:\Users\Jan\Desktop\mbar-1.07.0.1009.exe
2014-02-04 19:02 - 2011-10-28 10:19 - 00003488 _____ () C:\Windows\System32\Tasks\SystemToolsDailyTest
2014-02-04 19:02 - 2011-10-28 10:19 - 00003448 _____ () C:\Windows\System32\Tasks\PCDEventLauncher
2014-02-04 14:17 - 2014-02-02 18:15 - 00119954 _____ () C:\Windows\PFRO.log
2014-02-04 14:17 - 2009-07-14 05:45 - 05638464 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-02-04 12:41 - 2014-02-04 12:41 - 00000378 _____ () C:\Users\Jan\Desktop\Ereignisse.txt
2014-02-04 12:32 - 2014-02-04 12:32 - 00041398 _____ () C:\ComboFix.txt
2014-02-04 12:32 - 2014-02-04 12:07 - 00000000 ____D () C:\Qoobox
2014-02-04 12:32 - 2011-10-28 10:21 - 00128144 _____ () C:\Users\Jan\AppData\Local\GDIPFONTCACHEV1.DAT
2014-02-04 12:32 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Default
2014-02-04 12:27 - 2014-02-04 12:06 - 00000000 ____D () C:\Windows\erdnt
2014-02-04 12:16 - 2009-07-14 03:34 - 00000215 _____ () C:\Windows\system.ini
2014-02-04 12:02 - 2014-02-04 12:01 - 05179684 ____R (Swearware) C:\Users\Jan\Desktop\ComboFix.exe
2014-02-04 09:56 - 2011-11-24 17:36 - 00000000 ____D () C:\Windows\SolidWorks
2014-02-04 09:55 - 2011-11-24 17:41 - 00000000 ____D () C:\ProgramData\SolidWorks
2014-02-04 09:55 - 2011-10-29 19:30 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-02-04 09:53 - 2011-11-24 17:41 - 00000000 ____D () C:\Program Files\SolidWorks Corp
2014-02-04 09:49 - 2011-10-29 00:35 - 00000000 ____D () C:\Program Files\MAXON
2014-02-04 09:49 - 2011-10-29 00:28 - 00000000 ____D () C:\Users\Jan\AppData\Roaming\MAXON
2014-02-04 09:45 - 2011-10-28 20:43 - 00000000 ____D () C:\Users\Jan\AppData\Local\Adobe
2014-02-04 00:04 - 2014-02-04 00:04 - 00002630 _____ () C:\Users\Jan_2\Documents\zertifikatexportdatei.pfx
2014-02-03 17:16 - 2014-02-03 17:16 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\WinRAR
2014-02-03 15:35 - 2014-02-03 15:34 - 130658432 _____ () C:\Users\Jan_2\Desktop\avira_free_antivirus_de.exe
2014-02-03 13:01 - 2014-02-03 13:01 - 00034015 _____ () C:\Users\Jan_2\Desktop\Addition.txt
2014-02-03 13:01 - 2014-02-03 13:00 - 00063366 _____ () C:\Users\Jan_2\Desktop\FRST.txt
2014-02-03 12:59 - 2014-02-03 12:59 - 02080256 _____ (Farbar) C:\Users\Jan_2\Desktop\FRST64.exe
2014-02-03 11:47 - 2014-02-03 11:47 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\Malwarebytes
2014-02-03 09:56 - 2014-01-31 15:31 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\X-Rite
2014-02-02 20:48 - 2014-02-02 20:48 - 00000000 ____D () C:\Users\Jan\AppData\Roaming\Malwarebytes
2014-02-02 20:47 - 2014-02-02 20:47 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-02-02 20:47 - 2014-02-02 20:47 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-02-02 19:28 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-02-02 18:49 - 2014-02-02 18:03 - 01598708 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-02-02 18:36 - 2014-02-02 18:36 - 00000000 ____D () C:\Users\Jan\AppData\Local\Apps\2.0
2014-02-02 18:16 - 2011-07-26 11:08 - 00000000 ____D () C:\Windows\SysWOW64\NV
2014-02-02 18:16 - 2011-07-26 11:08 - 00000000 ____D () C:\Windows\system32\NV
2014-02-02 18:15 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-02-02 18:02 - 2011-07-26 10:56 - 00000000 ____D () C:\Program Files\Common Files\Intel
2014-02-02 18:00 - 2011-07-26 11:06 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-02-02 17:59 - 2014-02-02 17:59 - 00000000 ____D () C:\Program Files\AuthenTec
2014-02-02 17:59 - 2011-07-26 11:05 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-02-02 17:59 - 2009-07-14 06:32 - 00000000 ____D () C:\Windows\system32\WinBioPlugIns
2014-02-02 17:16 - 2011-07-26 11:18 - 00000000 ____D () C:\ProgramData\PCDr
2014-02-01 22:32 - 2014-02-01 22:32 - 00000921 _____ () C:\Users\Jan_2\Desktop\gsg_tuts - Verknüpfung.lnk
2014-02-01 22:29 - 2014-02-01 22:30 - 00001004 _____ () C:\Users\Jan_2\Desktop\hochstuhl - Verknüpfung.lnk
2014-02-01 22:21 - 2014-02-01 22:21 - 00000000 ____D () C:\Users\Jan_2\Documents\Ulead Burn.Now
2014-02-01 22:21 - 2014-02-01 22:21 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\Ulead Systems
2014-02-01 22:21 - 2014-02-01 22:20 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\Corel
2014-02-01 22:20 - 2014-02-01 22:20 - 00000000 ____D () C:\Users\Jan_2\Corel
2014-02-01 22:20 - 2014-01-31 15:30 - 00000000 ____D () C:\Users\Jan_2
2014-02-01 22:20 - 2011-11-20 10:58 - 00000900 ___SH () C:\ProgramData\KGyGaAvL.sys
2014-02-01 22:11 - 2014-01-31 15:30 - 00000000 ____D () C:\Users\Jan_2\AppData\Local\Apple Computer
2014-02-01 21:46 - 2012-07-03 09:29 - 00000000 ____D () C:\Users\Jan\AppData\Roaming\com.adobe.dmp.contentviewer
2014-02-01 17:11 - 2014-02-01 17:11 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\Thunderbird
2014-02-01 17:11 - 2014-02-01 17:11 - 00000000 ____D () C:\Users\Jan_2\AppData\Local\Thunderbird
2014-02-01 16:23 - 2014-02-01 16:23 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\HpUpdate
2014-02-01 10:08 - 2014-02-01 10:05 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\SolidWorks
2014-02-01 10:03 - 2014-02-01 10:03 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\NVIDIA
2014-02-01 08:46 - 2014-02-01 08:46 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\Tobit
2014-02-01 08:46 - 2014-01-31 15:30 - 00000000 ____D () C:\Users\Jan_2\AppData\Local\VirtualStore
2014-02-01 08:39 - 2014-01-31 15:30 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\Apple Computer
2014-02-01 08:32 - 2014-02-01 08:32 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-01-31 22:52 - 2011-10-30 12:19 - 00005291 _____ () C:\ProgramData\hpzinstall.log
2014-01-31 22:50 - 2014-01-31 22:50 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\PwrMgr
2014-01-31 22:42 - 2014-01-31 22:40 - 00000000 ____D () C:\ProgramData\Oracle
2014-01-31 22:39 - 2014-01-31 22:39 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-01-31 22:39 - 2014-01-31 22:39 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-01-31 22:39 - 2014-01-31 22:39 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-01-31 22:39 - 2014-01-31 22:39 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-01-31 22:39 - 2011-10-30 22:26 - 00000000 ____D () C:\Program Files (x86)\Java
2014-01-31 20:52 - 2014-01-31 20:52 - 00000000 ____D () C:\Users\Jan_2\AppData\Local\Macromedia
2014-01-31 15:39 - 2014-01-31 15:39 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\Mozilla
2014-01-31 15:39 - 2014-01-31 15:39 - 00000000 ____D () C:\Users\Jan_2\AppData\Local\Mozilla
2014-01-31 15:36 - 2014-01-31 15:36 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\Avira
2014-01-31 15:31 - 2014-01-31 15:31 - 00140216 _____ () C:\Users\Jan_2\AppData\Local\GDIPFONTCACHEV1.DAT
2014-01-31 15:31 - 2014-01-31 15:31 - 00001432 _____ () C:\Users\Jan_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-01-31 15:31 - 2014-01-31 15:31 - 00000000 ___RD () C:\Users\Jan_2\Virtual Machines
2014-01-31 15:31 - 2014-01-31 15:31 - 00000000 ___RD () C:\Users\Jan_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-01-31 15:31 - 2014-01-31 15:31 - 00000000 ___RD () C:\Users\Jan_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-01-31 15:31 - 2014-01-31 15:31 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\Logitech
2014-01-31 15:31 - 2014-01-31 15:31 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\Leadertech
2014-01-31 15:31 - 2014-01-31 15:31 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\Adobe
2014-01-31 15:31 - 2014-01-31 15:31 - 00000000 ____D () C:\Users\Jan_2\AppData\Local\Lenovo
2014-01-31 15:31 - 2014-01-31 15:31 - 00000000 ____D () C:\Users\Jan_2\AppData\Local\Adobe
2014-01-31 15:30 - 2014-01-31 15:30 - 00000020 ___SH () C:\Users\Jan_2\ntuser.ini
2014-01-31 15:30 - 2014-01-31 15:30 - 00000000 _SHDL () C:\Users\Jan_2\Vorlagen
2014-01-31 15:30 - 2014-01-31 15:30 - 00000000 _SHDL () C:\Users\Jan_2\Startmenü
2014-01-31 15:30 - 2014-01-31 15:30 - 00000000 _SHDL () C:\Users\Jan_2\Netzwerkumgebung
2014-01-31 15:30 - 2014-01-31 15:30 - 00000000 _SHDL () C:\Users\Jan_2\Lokale Einstellungen
2014-01-31 15:30 - 2014-01-31 15:30 - 00000000 _SHDL () C:\Users\Jan_2\Eigene Dateien
2014-01-31 15:30 - 2014-01-31 15:30 - 00000000 _SHDL () C:\Users\Jan_2\Druckumgebung
2014-01-31 15:30 - 2014-01-31 15:30 - 00000000 _SHDL () C:\Users\Jan_2\Documents\Eigene Musik
2014-01-31 15:30 - 2014-01-31 15:30 - 00000000 _SHDL () C:\Users\Jan_2\Documents\Eigene Bilder
2014-01-31 15:30 - 2014-01-31 15:30 - 00000000 _SHDL () C:\Users\Jan_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-01-31 15:30 - 2014-01-31 15:30 - 00000000 _SHDL () C:\Users\Jan_2\AppData\Local\Verlauf
2014-01-31 15:30 - 2014-01-31 15:30 - 00000000 _SHDL () C:\Users\Jan_2\AppData\Local\Anwendungsdaten
2014-01-31 15:30 - 2014-01-31 15:30 - 00000000 _SHDL () C:\Users\Jan_2\Anwendungsdaten
2014-01-31 15:30 - 2014-01-31 15:30 - 00000000 ____D () C:\Users\Jan_2\AppData\Roaming\Intel
2014-01-31 11:37 - 2014-01-31 11:37 - 00000000 _____ () C:\Windows\setuperr.log
2014-01-31 11:35 - 2011-11-22 23:37 - 00000000 ____D () C:\Program Files\CCleaner
2014-01-31 08:20 - 2014-01-31 08:20 - 02434048 _____ () C:\Users\Jan\Desktop\msxml.msi
2014-01-31 01:00 - 2014-01-31 01:00 - 00000000 ____D () C:\Program Files\iTunes
2014-01-31 01:00 - 2014-01-31 01:00 - 00000000 ____D () C:\Program Files\iPod
2014-01-31 01:00 - 2012-01-21 22:03 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-01-31 00:59 - 2014-01-31 00:59 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Apple Computer
2014-01-31 00:59 - 2014-01-31 00:59 - 00000000 ____D () C:\Users\Default\AppData\Local\Apple Computer
2014-01-31 00:59 - 2014-01-31 00:59 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Apple Computer
2014-01-31 00:59 - 2014-01-31 00:59 - 00000000 ____D () C:\Users\Default User\AppData\Local\Apple Computer
2014-01-30 23:28 - 2014-01-30 23:28 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-01-30 23:28 - 2011-10-30 11:58 - 00000000 ____D () C:\ProgramData\Skype
2014-01-30 23:26 - 2012-04-05 08:18 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-01-30 23:26 - 2012-04-05 08:18 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-01-30 23:26 - 2011-10-28 13:26 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-01-30 23:25 - 2011-11-02 16:33 - 00000000 ____D () C:\ProgramData\Apple
2014-01-30 23:21 - 2014-01-30 23:21 - 00000000 ____D () C:\Users\Jan\AppData\Local\Secunia PSI
2014-01-30 23:21 - 2014-01-30 23:21 - 00000000 ____D () C:\Program Files (x86)\Secunia
2014-01-30 22:56 - 2014-01-30 22:56 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Jan\Desktop\mbam-setup-1.75.0.1300.exe
2014-01-30 22:45 - 2014-01-30 22:43 - 90578216 _____ (AVAST Software) C:\Users\Jan\Desktop\avast_free_antivirus_setup.exe
2014-01-30 21:53 - 2014-01-30 21:53 - 05329480 _____ (Secunia) C:\Users\Jan\Desktop\PSISetup_3.0.0.9016.exe
2014-01-30 20:52 - 2011-07-26 11:11 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-01-29 23:02 - 2014-01-29 23:02 - 13031424 _____ (Intel Corporation) C:\Windows\system32\ig4icd64.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 12617216 _____ (Intel Corporation) C:\Windows\system32\igdumd64.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 11176448 _____ (Intel Corporation) C:\Windows\SysWOW64\igd10umd32.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 11049472 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumd32.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 10812928 _____ (Intel Corporation) C:\Windows\SysWOW64\ig4icd32.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 05904856 _____ (Intel Corporation) C:\Windows\system32\GfxUI.exe
2014-01-29 23:02 - 2014-01-29 23:02 - 05363200 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys
2014-01-29 23:02 - 2014-01-29 23:02 - 03511296 _____ (Intel Corporation) C:\Windows\system32\igfxcmjit64.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 03121152 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmjit32.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 01040384 _____ (Intel Corporation) C:\Windows\system32\igfxcmrt64.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 00931840 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmrt32.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 00575488 _____ (Intel Corporation) C:\Windows\system32\igfx11cmrt64.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 00542720 _____ (Intel Corporation) C:\Windows\SysWOW64\igfx11cmrt32.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 00515544 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe
2014-01-29 23:02 - 2014-01-29 23:02 - 00442880 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 00442328 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe
2014-01-29 23:02 - 2014-01-29 23:02 - 00440320 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00439808 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00439808 _____ (Intel Corporation) C:\Windows\system32\igfxresn.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00439296 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00439296 _____ (Intel Corporation) C:\Windows\system32\igfxrrom.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrhrv.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00438272 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00438272 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00438272 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00437248 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00437248 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00435712 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00435712 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00432128 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00431104 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00429056 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00428544 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00410624 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 00399832 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe
2014-01-29 23:02 - 2014-01-29 23:02 - 00384512 _____ (Intel Corporation) C:\Windows\system32\igfxpph.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 00330752 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxdv32.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 00286208 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc
2014-01-29 23:02 - 2014-01-29 23:02 - 00279000 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe
2014-01-29 23:02 - 2014-01-29 23:02 - 00254936 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe
2014-01-29 23:02 - 2014-01-29 23:02 - 00223664 _____ () C:\Windows\system32\Gfxres.th-TH.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00210106 _____ () C:\Windows\system32\Gfxres.el-GR.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00194245 _____ () C:\Windows\system32\Gfxres.ru-RU.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00185816 _____ (Intel Corporation) C:\Windows\system32\difx64.exe
2014-01-29 23:02 - 2014-01-29 23:02 - 00175104 _____ (Intel Corporation) C:\Windows\system32\gfxSrvc.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 00171992 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe
2014-01-29 23:02 - 2014-01-29 23:02 - 00166170 _____ () C:\Windows\system32\Gfxres.ar-SA.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00163421 _____ () C:\Windows\system32\Gfxres.ja-JP.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00159008 _____ () C:\Windows\system32\Gfxres.he-IL.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00149682 _____ () C:\Windows\system32\Gfxres.it-IT.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00148042 _____ () C:\Windows\system32\Gfxres.ko-KR.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00147393 _____ () C:\Windows\system32\Gfxres.de-DE.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00147288 _____ () C:\Windows\system32\Gfxres.es-ES.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00146004 _____ () C:\Windows\system32\Gfxres.ro-RO.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00145491 _____ () C:\Windows\system32\Gfxres.fr-FR.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00144645 _____ () C:\Windows\system32\Gfxres.tr-TR.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00144260 _____ () C:\Windows\system32\Gfxres.pt-BR.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00144020 _____ () C:\Windows\system32\Gfxres.nl-NL.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00143932 _____ () C:\Windows\system32\Gfxres.hu-HU.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00142882 _____ () C:\Windows\system32\Gfxres.sv-SE.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00142877 _____ () C:\Windows\system32\Gfxres.pt-PT.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00142717 _____ () C:\Windows\system32\Gfxres.pl-PL.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00142336 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 00142289 _____ () C:\Windows\system32\Gfxres.cs-CZ.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00142008 _____ () C:\Windows\system32\Gfxres.fi-FI.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00141838 _____ () C:\Windows\system32\Gfxres.sk-SK.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00141049 _____ () C:\Windows\system32\Gfxres.hr-HR.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00137889 _____ () C:\Windows\system32\Gfxres.sl-SI.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00137784 _____ () C:\Windows\system32\Gfxres.nb-NO.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00137141 _____ () C:\Windows\system32\Gfxres.da-DK.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00132623 _____ () C:\Windows\system32\Gfxres.en-US.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00126976 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl
2014-01-29 23:02 - 2014-01-29 23:02 - 00126300 _____ () C:\Windows\system32\Gfxres.zh-TW.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00124650 _____ () C:\Windows\system32\Gfxres.zh-CN.resources
2014-01-29 23:02 - 2014-01-29 23:02 - 00116224 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v3347.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 00098304 _____ () C:\Windows\system32\igdde64.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 00077312 _____ () C:\Windows\SysWOW64\igdde32.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 00025088 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxexps32.dll
2014-01-29 23:02 - 2014-01-29 23:02 - 00017058 _____ () C:\Windows\system32\iglhxs64.vp
2014-01-29 23:02 - 2014-01-29 23:02 - 00009728 _____ ( ) C:\Windows\system32\IGFXDEVLib.dll
2014-01-29 23:02 - 2012-09-28 10:51 - 09007616 _____ (Intel Corporation) C:\Windows\system32\igfxress.dll
2014-01-29 23:02 - 2011-12-03 15:03 - 00028672 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll
2014-01-29 23:02 - 2011-07-26 11:05 - 12859392 _____ (Intel Corporation) C:\Windows\system32\igd10umd64.dll
2014-01-29 23:02 - 2011-07-26 11:05 - 00110592 _____ (Intel Corporation) C:\Windows\system32\hccutils.dll
2014-01-29 23:02 - 2011-07-26 11:05 - 00064000 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll
2014-01-26 19:58 - 2012-10-23 22:27 - 00000000 ____D () C:\Program Files\Common Files\Adobe
2014-01-20 15:22 - 2014-01-20 15:22 - 00000016 _____ () C:\Users\Jan\Desktop\pay.txt
2014-01-17 09:55 - 2011-11-25 15:48 - 00000000 ____D () C:\Users\Jan\AppData\Local\TempSWSicherungsverzeichnis
2014-01-16 19:47 - 2011-11-24 17:36 - 00000000 ____D () C:\Users\Jan\AppData\Roaming\SolidWorks
2014-01-16 10:35 - 2013-08-24 08:38 - 00000000 ____D () C:\Windows\system32\MRT
2014-01-16 10:33 - 2011-10-28 13:26 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-01-14 09:43 - 2011-10-28 10:19 - 00000528 _____ () C:\Windows\Tasks\PCDoctorBackgroundMonitorTask.job
2014-01-13 10:51 - 2011-10-28 10:19 - 00004228 _____ () C:\Windows\System32\Tasks\PCDoctorBackgroundMonitorTask
2014-01-09 13:54 - 2011-10-29 00:20 - 00000000 ____D () C:\Users\Jan\AppData\Roaming\DAEMON Tools Lite
2014-01-09 13:47 - 2014-01-09 13:47 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite
2014-01-09 13:47 - 2011-10-29 00:23 - 00381440 _____ (Duplex Secure Ltd.) C:\Windows\system32\Drivers\sptd.sys
2014-01-09 11:30 - 2011-10-30 11:58 - 00000000 ____D () C:\Users\Jan\AppData\Roaming\Skype
Some content of TEMP:
====================
C:\Users\Jan\AppData\Local\Temp\avgnt.exe
C:\Users\Jan\AppData\Local\Temp\Quarantine.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-01-29 18:20
==================== End Of Log ============================ --- --- ---
--- --- ---
die addition.txt
FRST Additions Logfile: Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 04-02-2014
Ran by Jan at 2014-02-04 22:07:18
Running from C:\Users\Jan\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Avira Desktop (Enabled - Up to date) {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
AS: Avira Desktop (Enabled - Up to date) {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
64 Bit HP CIO Components Installer (Version: 7.2.4 - Hewlett-Packard) Hidden
64 Bit HP CIO Components Installer (Version: 7.2.8 - Hewlett-Packard) Hidden
7-Zip 9.20 (x32 Version: - )
Adobe Acrobat X Pro - English, Français, Deutsch (x32 Version: 10.1.9 - Adobe Systems)
Adobe AIR (x32 Version: 4.0.0.1390 - Adobe Systems Incorporated)
Adobe AIR (x32 Version: 4.0.0.1390 - Adobe Systems Incorporated) Hidden
Adobe Creative Suite 6 Design Standard (x32 Version: 6 - Adobe Systems Incorporated)
Adobe Flash Player 12 ActiveX (x32 Version: 12.0.0.38 - Adobe Systems Incorporated)
Adobe Flash Player 12 Plugin (x32 Version: 12.0.0.43 - Adobe Systems Incorporated)
Adobe Help Manager (x32 Version: 4.0.244 - Adobe Systems Incorporated)
Adobe Help Manager (x32 Version: 4.0.244 - Adobe Systems Incorporated) Hidden
Adobe® Content Viewer (x32 Version: 3.4.0 - Adobe Systems Incorporated)
Adobe® Content Viewer (x32 Version: 3.4.0 - Adobe Systems Incorporated) Hidden
Akamai NetSession Interface (HKCU Version: - Akamai Technologies, Inc)
Anzeige am Bildschirm (Version: 6.22.00 - )
Apple Application Support (x32 Version: 3.0 - Apple Inc.)
Apple Mobile Device Support (Version: 7.1.0.32 - Apple Inc.)
Apple Software Update (x32 Version: 2.1.3.127 - Apple Inc.)
Audacity 2.0.5 (x32 Version: 2.0.5 - Audacity Team)
Avira Free Antivirus (x32 Version: 14.0.2.286 - Avira)
Bonjour (Version: 3.0.0.10 - Apple Inc.)
Broadcom InConcert Maestro (Version: 1.0.1.1500 - Broadcom Corporation)
BufferChm (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
Burn.Now 4.5 (x32 Version: 4.5.0 - Corel Corporation) Hidden
CCleaner (Version: 4.10 - Piriform)
CDDRV_Installer (Version: 4.60 - Logitech) Hidden
Conexant 20672 SmartAudio HD (Version: 8.32.23.2 - Conexant)
Copy (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
Corel Burn.Now Lenovo Edition (x32 Version: 4.5.0 - Corel Corporation)
Corel DVD MovieFactory 7 (x32 Version: 7.0.0 - Corel Corporation) Hidden
Corel DVD MovieFactory Lenovo Edition (x32 Version: 7.0.0 - Corel Corporation)
Corel WinDVD (x32 Version: 10.0.5.828 - Corel Inc.)
Coupon Printer for Windows (x32 Version: 5.0.0.0 - Coupons.com Incorporated) <==== ATTENTION
Create Recovery Media (x32 Version: 1.20.0.00 - Lenovo Group Limited)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
DAEMON Tools Lite (x32 Version: 4.48.1.0347 - Disc Soft Ltd)
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (x32 Version: - Microsoft)
Destinations (x32 Version: 140.0.77.000 - Hewlett-Packard) Hidden
DeviceDiscovery (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
Dienstprogramm "ThinkPad UltraNav" (x32 Version: 2.13.0 - Lenovo)
Direct DiscRecorder (x32 Version: 1.00.0000 - Corel Corporation) Hidden
Disable AMT Profile Synchronization Pop-up for Windows XP/Vista/7 (Version: 1.00 - )
DJ_AIO_06_F2400_SW_Min (x32 Version: 140.0.690.000 - Hewlett-Packard) Hidden
Dropbox (HKCU Version: 2.0.22 - Dropbox, Inc.)
Energie-Manager (x32 Version: 6.07 - )
erLT (x32 Version: 1.20.0137 - Logitech, Inc.) Hidden
F2400 (x32 Version: 140.0.690.000 - Hewlett-Packard) Hidden
FH-Aachen OpenVPN 2.2.0 (x32 Version: 2.2.0 - )
GPBaseService2 (x32 Version: 140.0.211.000 - Hewlett-Packard) Hidden
Hewlett-Packard ACLM.NET v1.1.0.0 (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden
HP Customer Participation Program 14.0 (Version: 14.0 - HP)
HP Deskjet F2400 All-in-One Driver Software 14.0 Rel. 6 (Version: 14.0 - HP)
HP Imaging Device Functions 14.0 (Version: 14.0 - HP)
HP LaserJet P2050 Series 6.0 (Version: 6.0 - HP)
HP Product Detection (x32 Version: 11.14.0001 - HP)
HP Solution Center 14.0 (Version: 14.0 - HP)
HP Update (x32 Version: 5.003.001.001 - Hewlett-Packard)
HPDiagnosticAlert (x32 Version: 1.00.0000 - Microsoft) Hidden
hppFonts (x32 Version: 001.001.00061 - Hewlett-Packard) Hidden
HPPhotoGadget (x32 Version: 140.0.524.000 - Hewlett-Packard) Hidden
hppQFolderP2050 (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden
HPProductAssistant (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
Integrated Camera Driver Installer Package Ver.1.1.0.1147 (x32 Version: 1.1.0.1147 - RICOH)
Integrated Camera TWAIN (x32 Version: 1.0.11.1223 - Chicony Electronics Co.,Ltd.)
Intel PROSet Wireless (Version: - ) Hidden
Intel(R) Control Center (x32 Version: 1.2.1.1007 - Intel Corporation)
Intel(R) Identity Protection Technology 1.1.2.0 (x32 Version: 1.1.2.0 - Intel Corporation)
Intel(R) Management Engine Components (x32 Version: 7.0.0.1144 - Intel Corporation)
Intel(R) Processor Graphics (x32 Version: 9.17.10.3347 - Intel Corporation)
Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed (Version: 15.2.0.0284 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (x32 Version: 2.0.0.37149 - Intel Corporation)
Intel® PROSet/Wireless WiFi-Software (Version: 15.02.0000.1258 - Intel Corporation)
iTunes (Version: 11.1.4.62 - Apple Inc.)
Java 7 Update 51 (x32 Version: 7.0.510 - Oracle)
Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
KhalInstallWrapper (Version: 2.00.0000 - Logitech) Hidden
LAME v3.99.3 (for Windows) (x32 Version: - )
Lenovo Auto Scroll Utility (Version: 1.00 - )
Lenovo Patch Utility (x32 Version: 1.3.0.007 - Lenovo Group Limited)
Lenovo Patch Utility 64 bit (Version: 1.3.0.007 - Lenovo Group Limited)
Lenovo Power Management Driver (Version: 1.67.04.04 - )
Lenovo Registration (x32 Version: 1.0.2 - Lenovo Inc.)
Lenovo System Interface Driver (Version: 1.05 - )
Lenovo ThinkVantage Toolbox (Version: 6.0.5849.23 - PC-Doctor, Inc.)
Lenovo User Guide (x32 Version: 1.0.0008.00 - Ihr Firmenname)
Lenovo Warranty Information (x32 Version: 1.0.0005.00 - Lenovo)
Lenovo Welcome (x32 Version: 2.02.003.0 - Lenovo)
Logitech SetPoint (x32 Version: 4.80 - Logitech)
Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300 - Malwarebytes Corporation)
MarketResearch (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Message Center Plus (x32 Version: 2.0.0012.00 - Lenovo Group Limited)
Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (Deutsch) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Office 2003 Web Components (x32 Version: 12.0.6213.1000 - Microsoft Corporation)
Microsoft Office Access MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Home and Student 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Office Office 64-bit Components 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Italian) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Publisher MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Single Image 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Silverlight (Version: 5.1.20913.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (x32 Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 8.0 Support DLLs (x32 Version: 1.0.0 - McNeel & Associates)
Microsoft Visual Studio 2005 Remote Debugger Light (x64) - ENU (Version: - Microsoft Corporation)
Microsoft Visual Studio 2005 Remote Debugger Light (x64) - ENU (Version: 8.0.52572 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2005 Tools for Applications - ENU (x32 Version: - Microsoft Corporation)
Microsoft Visual Studio 2005 Tools for Applications - ENU (x32 Version: 8.0.50727.146 - Microsoft Corporation) Hidden
Microsoft_VC80_ATL_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_ATL_x86_x64 (Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_CRT_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_CRT_x86_x64 (Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_MFC_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_MFC_x86_x64 (Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_MFCLOC_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC80_MFCLOC_x86_x64 (Version: 80.50727.4053 - Adobe) Hidden
Microsoft_VC90_ATL_x86 (x32 Version: 1.00.0000 - Adobe) Hidden
Microsoft_VC90_ATL_x86_x64 (Version: 1.00.0000 - Adobe) Hidden
Microsoft_VC90_CRT_x86 (x32 Version: 1.00.0000 - Adobe) Hidden
Microsoft_VC90_CRT_x86_x64 (Version: 1.00.0000 - Adobe) Hidden
Microsoft_VC90_MFC_x86 (x32 Version: 1.00.0000 - Adobe) Hidden
Microsoft_VC90_MFC_x86_x64 (Version: 1.00.0000 - Adobe) Hidden
Microsoft_VC90_MFCLOC_x86 (x32 Version: 1.00.0000 - Adobe) Hidden
Microsoft_VC90_MFCLOC_x86_x64 (Version: 1.00.0000 - Adobe) Hidden
Mobile Partner (x32 Version: 21.005.15.02.382 - Huawei Technologies Co.,Ltd)
Mozilla Firefox 26.0 (x86 de) (x32 Version: 26.0 - Mozilla)
Mozilla Maintenance Service (x32 Version: 26.0 - Mozilla)
Mozilla Thunderbird 24.2.0 (x86 de) (x32 Version: 24.2.0 - Mozilla)
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0 - Microsoft Corporation)
NVIDIA 3D Vision Treiber 312.69 (Version: 312.69 - NVIDIA Corporation)
NVIDIA Grafiktreiber 312.69 (Version: 312.69 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.2.23.3 (Version: 1.2.23.3 - NVIDIA Corporation)
NVIDIA Install Application (Version: 2.1002.124.810 - NVIDIA Corporation) Hidden
NVIDIA nView 140.75 (Version: 140.75 - NVIDIA Corporation)
NVIDIA Optimus 1.11.3 (Version: 1.11.3 - NVIDIA Corporation) Hidden
NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.1269 - NVIDIA Corporation) Hidden
NVIDIA Systemsteuerung 312.69 (Version: 312.69 - NVIDIA Corporation) Hidden
NVIDIA Update Components (Version: 1.11.3 - NVIDIA Corporation) Hidden
PANTONE Color Calibrator 1.0 (x32 Version: - X-Rite)
PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden
QuickTime (x32 Version: 7.74.80.86 - Apple Inc.)
RapidBoot (x32 Version: 1.00 - Lenovo)
RapidBoot (x32 Version: 1.00 - Lenovo) Hidden
Registry Patch to Enable Maximum Power Saving on WiFi Adapters for Windows 7 (Version: 1.00 - )
Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.32.0 - Renesas Electronics Corporation)
Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.32.0 - Renesas Electronics Corporation) Hidden
Rescue and Recovery (x32 Version: 4.31.0010.00 - Lenovo Group Limited)
Rhinoceros 4.0 SR9 (x32 Version: 4.0.60309 - Robert McNeel & Associates)
Rhinoceros 4.0 Trainingsmaterial - Stufe 1 (x32 Version: 4.0.0.0 - Robert McNeel & Associates)
RICOH_Media_Driver_v2.13.18.02 (x32 Version: 2.13.18.02 - RICOH)
SAMSUNG USB Driver for Mobile Phones (Version: 1.4.8.0 - SAMSUNG Electronics Co., Ltd.)
Scan (x32 Version: 140.0.80.000 - Hewlett-Packard) Hidden
Secunia PSI (3.0.0.9016) (x32 Version: 3.0.0.9016 - Secunia)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (x32 Version: - Microsoft) Hidden
Skype™ 6.3 (x32 Version: 6.3.105 - Skype Technologies S.A.)
SolutionCenter (x32 Version: 140.0.213.000 - Hewlett-Packard) Hidden
Status (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
System Requirements Lab for Intel (x32 Version: 4.5.11.0 - Husdawg, LLC)
System Update (x32 Version: 4.00.0042 - Lenovo)
TBBackup 2 (Freiversion) (x32 Version: 2 - Priotecs IT GmbH)
ThinkPad Bluetooth with Enhanced Data Rate Software (Version: 6.4.0.1500 - Broadcom Corporation)
ThinkPad FullScreen Magnifier (Version: 2.22 - )
ThinkPad Modem Adapter (Version: 7.80.5.0 - Conexant Systems)
ThinkPad UltraNav Driver (Version: 16.2.19.7 - )
ThinkVantage AutoLock (Version: 1.01 - Lenovo)
ThinkVantage Communications Utility (Version: 2.06 - Lenovo)
ThinkVantage Fingerprint Software (Version: 5.9.4.6882 - UPEK Inc.)
ThinkVantage System für aktiven Festplattenschutz (Version: 1.73 - Lenovo)
Toolbox (x32 Version: 140.0.428.000 - Hewlett-Packard) Hidden
TrayApp (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Filter Pack 2.0 (KB2810071) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Office 2010 (KB2494150) (x32 Version: - Microsoft)
Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Office 2010 (KB2826026) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Office 2010 (KB2850079) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft OneNote 2010 (KB2810072) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft PowerPoint 2010 (KB2553145) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Visio Viewer 2010 (KB2810066) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Word 2010 (KB2837593) 32-Bit Edition (x32 Version: - Microsoft)
VIP Access (x32 Version: 2.0.5.13 - VeriSign)
WDR RadioRecorder (x32 Version: - Tobit.Software)
WebReg (x32 Version: 140.0.212.017 - Hewlett-Packard) Hidden
Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Essentials (x32 Version: 15.4.3538.0513 - Microsoft Corporation)
Windows Live Fotogalerie (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4232.0 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Language Selector (Version: 15.4.3538.0513 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mesh (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mesh ActiveX control for remote connections (x32 Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Messenger (x32 Version: 15.4.3538.0513 - Microsoft Corporation) Hidden
Windows Live MIME IFilter (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live Remote Client (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Client Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Service (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Service Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows-Treiberpaket - Intel (e1cexpress) Net (12/21/2010 11.8.84.0) (Version: 12/21/2010 11.8.84.0 - Intel)
Windows-Treiberpaket - Intel (MEIx64) System (10/19/2010 7.0.0.1144) (Version: 10/19/2010 7.0.0.1144 - Intel)
Windows-Treiberpaket - Intel System (09/10/2010 9.2.0.1011) (Version: 09/10/2010 9.2.0.1011 - Intel)
Windows-Treiberpaket - Intel System (10/04/2010 9.2.0.1015) (Version: 10/04/2010 9.2.0.1015 - Intel)
Windows-Treiberpaket - Intel USB (09/16/2010 9.2.0.1013) (Version: 09/16/2010 9.2.0.1013 - Intel)
Windows-Treiberpaket - Lenovo (LenovoRd) SmartCardReader (05/11/2009 4.1.0.1) (Version: 05/11/2009 4.1.0.1 - Lenovo)
Windows-Treiberpaket - Lenovo 1.61.00.11 (11/11/2010 1.61.00.11) (Version: 11/11/2010 1.61.00.11 - Lenovo)
Windows-Treiberpaket - Synaptics (SynTP) Mouse (03/24/2011 15.2.19.0) (Version: 03/24/2011 15.2.19.0 - Synaptics)
WinRAR 4.20 (64-Bit) (Version: 4.20.0 - win.rar GmbH)
X-Rite Device i1Display Service (x32 Version: 1.0 - X-Rite Inc.)
X-Rite Device Manager (x32 Version: 1.0 - X-Rite Inc.)
==================== Restore Points =========================
04-02-2014 18:32:30 Geplanter Prüfpunkt
==================== Hosts content: ==========================
2009-07-14 03:34 - 2014-02-04 12:16 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Scheduled Tasks (whitelisted) =============
Task: {060C3AD0-BE04-4C4A-B4B6-0232E0E35709} - System32\Tasks\AdobeAAMUpdater-1.0-THINKTAB-Jan => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-09-20] (Adobe Systems Incorporated)
Task: {283F6E79-AC37-42DB-AD8A-DEF4BD5166E8} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-01-21] (Piriform Ltd)
Task: {473D21BD-AB26-45A5-8F8A-A84DDB3A65D6} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup
Task: {495DFA0E-749C-4AC7-8335-17D9E1FB1B24} - System32\Tasks\PCDEventLauncher => C:\Program Files\PC-Doctor\sessionchecker.exe [2011-06-27] (PC-Doctor, Inc.)
Task: {6A68F955-486F-40CF-8D13-CF66BFB5662B} - System32\Tasks\SystemToolsDailyTest => C:\Program Files\PC-Doctor\uaclauncher.exe [2011-06-27] (PC-Doctor, Inc.)
Task: {6E40E2EA-585A-4FBA-9284-D1BECFF20063} - System32\Tasks\PCDoctorBackgroundMonitorTask => C:\Program Files\PC-Doctor\uaclauncher.exe [2011-06-27] (PC-Doctor, Inc.)
Task: {86431351-3E4D-401E-B08C-07C6E0A8D8AB} - System32\Tasks\MCP => C:\Program Files (x86)\LENOVO\Message Center Plus\MCPLaunch.exe [2009-05-27] ()
Task: {B37428C7-08EF-4B73-95F1-26901D8D407A} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-01-30] (Adobe Systems Incorporated)
Task: {BE96179C-B259-4741-955E-DE6A99E20F2D} - System32\Tasks\TVT\UpdateRnR => %TVTCOMMON%\Scheduler\tvtsetsched.exe
Task: {C3B8229F-FB15-46E7-B2E9-C40C184CE06F} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {CA891CE8-218D-4BD0-A431-4A0C472219A0} - System32\Tasks\TVT\LaunchRnR => %RR%\rrcmd.exe
Task: {DF5D9378-F94D-423D-B027-C24360F19250} - System32\Tasks\{29939777-D779-4E8F-AA51-7EA6F8408E65} => C:\Program Files\Adobe\Adobe Photoshop CS6 (64 Bit)\Photoshop.exe [2013-10-27] (Adobe Systems, Incorporated)
Task: {E6D95D09-7C0B-4E80-94D7-3AC9379125CA} - System32\Tasks\TVT\ChangePWD => %RR%\rrcmd.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\PCDoctorBackgroundMonitorTask.job => C:\Program Files\PC-Doctor\uaclauncher.exe
Task: C:\Windows\Tasks\SystemToolsDailyTest.job => C:\Program Files\PC-Doctor\uaclauncher.exe
==================== Loaded Modules (whitelisted) =============
2012-10-26 19:42 - 2013-10-29 01:53 - 00087328 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2010-12-18 14:50 - 2010-12-18 14:50 - 00173856 ____N () C:\Program Files\ThinkPad\Bluetooth Software\btkeyind.dll
2011-07-26 11:05 - 2011-03-06 12:07 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2012-01-03 12:13 - 2009-07-20 12:35 - 00018960 ____N () C:\Program Files\Logitech\SetPoint\khalwrapper.dll
2011-07-26 11:08 - 2012-03-15 05:07 - 00103936 ____N () C:\Program Files (x86)\ThinkPad\Utilities\GR\PWMRT64V.DLL
2012-10-16 12:44 - 2012-09-19 18:17 - 00397088 _____ () C:\Program Files (x86)\Avira\AntiVir Desktop\sqlite3.dll
2014-01-20 13:17 - 2014-01-20 13:17 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2014-01-20 13:16 - 2014-01-20 13:16 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2011-12-23 22:13 - 2011-12-23 22:12 - 00011362 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\mingwm10.dll
2011-12-23 22:13 - 2011-12-23 22:12 - 00043008 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\libgcc_s_dw2-1.dll
2011-12-23 22:13 - 2011-12-23 22:12 - 02415104 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\QtCore4.dll
2011-12-23 22:13 - 2011-12-23 22:12 - 01148416 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\QtNetwork4.dll
2011-12-23 22:13 - 2011-12-23 22:12 - 00383488 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\QueryStrategy.dll
2011-12-23 22:13 - 2011-12-23 22:12 - 00398336 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\QtXml4.dll
2011-07-26 11:09 - 2010-04-06 08:05 - 02085888 ____N () C:\Program Files\Lenovo\AutoLock\cv210.dll
2011-07-26 11:09 - 2010-04-06 08:04 - 02201088 ____N () C:\Program Files\Lenovo\AutoLock\cxcore210.dll
2011-07-26 11:10 - 2010-12-15 21:53 - 00898560 ____N () C:\Program Files (x86)\X-Rite\PANTONE Color Calibrator\libxml2.dll
2011-07-26 11:10 - 2010-12-15 21:53 - 00073728 ____N () C:\Program Files (x86)\X-Rite\PANTONE Color Calibrator\zlib1.dll
2011-07-26 11:10 - 2010-12-15 21:53 - 03449344 ____N () C:\Program Files (x86)\X-Rite\PANTONE Color Calibrator\CxF2_VC90MD_2.1.dll
2011-07-26 11:10 - 2010-12-15 21:54 - 07390720 ____N () C:\Program Files (x86)\X-Rite\PANTONE Color Calibrator\QtGui4.dll
2011-07-26 11:10 - 2010-12-15 21:54 - 02012160 ____N () C:\Program Files (x86)\X-Rite\PANTONE Color Calibrator\QtCore4.dll
2013-12-18 19:43 - 2013-12-18 19:43 - 00019968 _____ () C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Locale\de_DE\acrotray.deu
2013-12-21 14:24 - 2013-12-21 14:24 - 03559024 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
System errors:
=============
Microsoft Office Sessions:
=========================
CodeIntegrity Errors:
===================================
Date: 2014-02-04 12:12:25.920
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume4\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2014-02-04 12:12:25.873
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume4\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2014-02-01 22:21:19.505
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume4\Windows\System32\cryptnet.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-02-01 22:21:19.455
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume4\Windows\System32\cryptnet.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-02-01 22:21:19.415
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume4\Windows\System32\cryptnet.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-02-01 22:21:19.325
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume4\Windows\System32\cryptnet.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-02-01 22:21:19.265
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume4\Windows\System32\cryptnet.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-02-01 22:21:19.175
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume4\Windows\System32\cryptnet.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-02-01 22:21:19.125
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume4\Windows\System32\cryptnet.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-02-01 22:21:19.075
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume4\Windows\System32\cryptnet.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
==================== Memory info ===========================
Percentage of memory in use: 32%
Total physical RAM: 8075.23 MB
Available physical RAM: 5439.33 MB
Total Pagefile: 16148.65 MB
Available Pagefile: 13270.87 MB
Total Virtual: 8192 MB
Available Virtual: 8191.82 MB
==================== Drives ================================
Drive c: (Windows7_OS) (Fixed) (Total:73.36 GB) (Free:16.22 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive f: () (Fixed) (Total:149.59 GB) (Free:82.66 GB) NTFS
Drive g: (Volume) (Fixed) (Total:148.5 GB) (Free:144.05 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 298 GB) (Disk ID: B7FFDD9F)
Partition 1: (Active) - (Size=150 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=148 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (Size: 75 GB) (Disk ID: 91692295)
Partition 1: (Active) - (Size=1 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=73 GB) - (Type=07 NTFS)
==================== End Of Log ============================ --- --- --- |