problemchild | 29.03.2014 23:19 | Hallo Schrauber,
hier die Protokolle: Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlauf Datum: 29.03.2014
Suchlauf-Zeit: 20:57:24
Logdatei: mbam.txt
Administrator: Ja
Version: 2.00.0.1000
Malware Datenbank: v2014.03.29.04
Rootkit Datenbank: v2014.03.27.01
Lizenz: Kostenlos
Malware Schutz: Deaktiviert
Bösartiger Webseiten Schutz: Deaktiviert
Chameleon: Deaktiviert
Betriebssystem: Windows 7 Service Pack 1
CPU: x86
Dateisystem: NTFS
Benutzer: nightchild
Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 231926
Verstrichene Zeit: 2 Std, 18 Min, 46 Sek
Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Aktiviert
Shuriken: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(No malicious items detected)
Module: 0
(No malicious items detected)
Registrierungsschlüssel: 0
(No malicious items detected)
Registrierungswerte: 0
(No malicious items detected)
Registrierungsdaten: 0
(No malicious items detected)
Ordner: 25
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\es-ES, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\da-DK, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\de-DE, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\el-GR, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\fi-FI, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\fr-FR, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\hu-HU, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\it-IT, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\ja-JP, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\nl-NL, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\pl-PL, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\pt-BR, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\pt-PT, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\ru-RU, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\sk-SK, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\sl-SI, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\sv-SE, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\tr-TR, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\vi-VN, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\zh-CN, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\zh-TW, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Users\nightchild\AppData\Roaming\DVDVideoSoft\FreeYouTubeToMP3Converter, In Quarantäne, [0df3dc24f20e44bc53243a1de51d11ef],
PUP.Optional.DVDVideoSoft.A, C:\Users\nightchild\AppData\Roaming\DVDVideoSoft\FreeYouTubeToMP3Converter\History, In Quarantäne, [0df3dc24f20e44bc53243a1de51d11ef],
PUP.Optional.DVDVideoSoft.A, C:\Users\nightchild\AppData\Roaming\DVDVideoSoft\FreeYouTubeToMP3Converter\Themes, In Quarantäne, [0df3dc24f20e44bc53243a1de51d11ef],
Dateien: 126
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\DVDVideoSoft.DVSiTunes.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\DVDVideoSoft.DVSVideoDownloader.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\DVDVideoSoft.MediaTagsEditor.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\DVDVideoSoft.Presets.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\DVDVideoSoft.Resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\DVDVideoSoft.TaskbarManager.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\DVDVideoSoft.TroubleShooter.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\DVDVideoSoft.VideoFileToIPOD.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\DVDVideoSoft.YouTubeResources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\DVDVideoSoft.YTConverterAppExt.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\FreeYouTubeToMP3Converter.exe, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\FreeYouTubeToMP3Converter.xml, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\FreeYouTubeToMP3ConverterProfile.xml, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\FreeYouTubeToMP3ConverterProfileD.xml, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\Newtonsoft.Json.Net20.Merged.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\taglib-sharp.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\ytgroovlc.exe, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\es-ES\DVDVideoSoft.AppFx.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\es-ES\DVDVideoSoft.DialogForms.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\es-ES\DVDVideoSoft.Resources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\es-ES\DVDVideoSoft.YouTubeResources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\es-ES\FreeYouTubeToMP3Converter.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\da-DK\DVDVideoSoft.AppFx.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\da-DK\DVDVideoSoft.DialogForms.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\da-DK\DVDVideoSoft.Resources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\da-DK\DVDVideoSoft.YouTubeResources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\da-DK\FreeYouTubeToMP3Converter.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\de-DE\DVDVideoSoft.AppFx.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\de-DE\DVDVideoSoft.DialogForms.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\de-DE\DVDVideoSoft.Resources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\de-DE\DVDVideoSoft.YouTubeResources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\de-DE\FreeYouTubeToMP3Converter.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\el-GR\DVDVideoSoft.AppFx.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\el-GR\DVDVideoSoft.DialogForms.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\el-GR\DVDVideoSoft.Resources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\el-GR\DVDVideoSoft.YouTubeResources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\el-GR\FreeYouTubeToMP3Converter.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\fi-FI\DVDVideoSoft.AppFx.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\fi-FI\DVDVideoSoft.DialogForms.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\fi-FI\DVDVideoSoft.Resources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\fi-FI\DVDVideoSoft.YouTubeResources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\fi-FI\FreeYouTubeToMP3Converter.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\fr-FR\DVDVideoSoft.AppFx.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\fr-FR\DVDVideoSoft.DialogForms.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\fr-FR\DVDVideoSoft.Resources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\fr-FR\DVDVideoSoft.YouTubeResources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\fr-FR\FreeYouTubeToMP3Converter.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\hu-HU\DVDVideoSoft.AppFx.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\hu-HU\DVDVideoSoft.DialogForms.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\hu-HU\DVDVideoSoft.Resources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\hu-HU\DVDVideoSoft.YouTubeResources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\hu-HU\FreeYouTubeToMP3Converter.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\it-IT\DVDVideoSoft.AppFx.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\it-IT\DVDVideoSoft.DialogForms.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\it-IT\DVDVideoSoft.Resources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\it-IT\DVDVideoSoft.YouTubeResources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\it-IT\FreeYouTubeToMP3Converter.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\ja-JP\DVDVideoSoft.AppFx.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\ja-JP\DVDVideoSoft.DialogForms.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\ja-JP\DVDVideoSoft.Resources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\ja-JP\DVDVideoSoft.YouTubeResources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\ja-JP\FreeYouTubeToMP3Converter.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\nl-NL\DVDVideoSoft.AppFx.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\nl-NL\DVDVideoSoft.DialogForms.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\nl-NL\DVDVideoSoft.Resources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\nl-NL\DVDVideoSoft.YouTubeResources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\nl-NL\FreeYouTubeToMP3Converter.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\pl-PL\DVDVideoSoft.AppFx.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\pl-PL\DVDVideoSoft.DialogForms.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\pl-PL\DVDVideoSoft.Resources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\pl-PL\DVDVideoSoft.YouTubeResources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\pl-PL\FreeYouTubeToMP3Converter.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\pt-BR\DVDVideoSoft.AppFx.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\pt-BR\DVDVideoSoft.DialogForms.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\pt-BR\DVDVideoSoft.Resources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\pt-BR\DVDVideoSoft.YouTubeResources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\pt-BR\FreeYouTubeToMP3Converter.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\pt-PT\DVDVideoSoft.AppFx.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\pt-PT\DVDVideoSoft.DialogForms.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\pt-PT\DVDVideoSoft.Resources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\pt-PT\DVDVideoSoft.YouTubeResources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\pt-PT\FreeYouTubeToMP3Converter.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\ru-RU\DVDVideoSoft.AppFx.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\ru-RU\DVDVideoSoft.DialogForms.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\ru-RU\DVDVideoSoft.Resources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\ru-RU\DVDVideoSoft.YouTubeResources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\ru-RU\FreeYouTubeToMP3Converter.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\sk-SK\DVDVideoSoft.AppFx.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\sk-SK\DVDVideoSoft.DialogForms.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\sk-SK\DVDVideoSoft.Resources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\sk-SK\DVDVideoSoft.YouTubeResources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\sk-SK\FreeYouTubeToMP3Converter.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\sl-SI\DVDVideoSoft.AppFx.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\sl-SI\DVDVideoSoft.DialogForms.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\sl-SI\DVDVideoSoft.Resources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\sl-SI\DVDVideoSoft.YouTubeResources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\sl-SI\FreeYouTubeToMP3Converter.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\sv-SE\DVDVideoSoft.AppFx.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\sv-SE\DVDVideoSoft.DialogForms.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\sv-SE\DVDVideoSoft.Resources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\sv-SE\DVDVideoSoft.YouTubeResources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\sv-SE\FreeYouTubeToMP3Converter.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\tr-TR\DVDVideoSoft.AppFx.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\tr-TR\DVDVideoSoft.DialogForms.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\tr-TR\DVDVideoSoft.Resources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\tr-TR\DVDVideoSoft.YouTubeResources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\tr-TR\FreeYouTubeToMP3Converter.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\vi-VN\DVDVideoSoft.AppFx.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\vi-VN\DVDVideoSoft.DialogForms.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\vi-VN\DVDVideoSoft.Resources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\vi-VN\DVDVideoSoft.YouTubeResources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\vi-VN\FreeYouTubeToMP3Converter.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\zh-CN\DVDVideoSoft.AppFx.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\zh-CN\DVDVideoSoft.DialogForms.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\zh-CN\DVDVideoSoft.Resources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\zh-CN\DVDVideoSoft.YouTubeResources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\zh-CN\FreeYouTubeToMP3Converter.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\zh-TW\DVDVideoSoft.AppFx.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\zh-TW\DVDVideoSoft.DialogForms.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\zh-TW\DVDVideoSoft.Resources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\zh-TW\DVDVideoSoft.YouTubeResources.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\zh-TW\FreeYouTubeToMP3Converter.resources.dll, In Quarantäne, [09f71ce446ba8c74d99cb6a1a2607888],
PUP.Optional.DVDVideoSoft.A, C:\Users\nightchild\AppData\Roaming\DVDVideoSoft\FreeYouTubeToMP3Converter\FreeYouTubeToMP3ConverterProfile.xml, In Quarantäne, [0df3dc24f20e44bc53243a1de51d11ef],
PUP.Optional.DVDVideoSoft.A, C:\Users\nightchild\AppData\Roaming\DVDVideoSoft\FreeYouTubeToMP3Converter\History\History.xml, In Quarantäne, [0df3dc24f20e44bc53243a1de51d11ef],
PUP.Optional.DVDVideoSoft.A, C:\Users\nightchild\AppData\Roaming\DVDVideoSoft\FreeYouTubeToMP3Converter\History\History_tmp.xml, In Quarantäne, [0df3dc24f20e44bc53243a1de51d11ef],
PUP.Optional.DVDVideoSoft.A, C:\Users\nightchild\AppData\Roaming\DVDVideoSoft\FreeYouTubeToMP3Converter\History\Lynyrd Skynyrd-Free bird(1).png, In Quarantäne, [0df3dc24f20e44bc53243a1de51d11ef],
Physische Sektoren: 0
(No malicious items detected)
(end) Code:
# AdwCleaner v3.022 - Bericht erstellt am 29/03/2014 um 21:39:13
# Aktualisiert 13/03/2014 von Xplode
# Betriebssystem : Windows 7 Starter Service Pack 1 (32 bits)
# Benutzername : nightchild - NIGHTCHILD-PC
# Gestartet von : C:\Users\nightchild\Desktop\adwcleaner.exe
# Option : Löschen
***** [ Dienste ] *****
***** [ Dateien / Ordner ] *****
Ordner Gelöscht : C:\Program Files\Common Files\Plasmoo
Datei Gelöscht : C:\Users\nightchild\AppData\Roaming\Mozilla\Firefox\Profiles\0aj5mbj8.default\searchplugins\ask-search.xml
***** [ Verknüpfungen ] *****
***** [ Registrierungsdatenbank ] *****
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\ICQ\ICQToolBar
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\NCTAudioCDGrabber2.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_badges_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_badges_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_music-editor-free_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_music-editor-free_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_winrar_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_winrar_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{5EB0259D-AB79-4AE6-A6E6-24FFE21C3DA4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{CADAF6BE-BF50-4669-8BFD-C27BD4E6181B}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2BEF239C-752E-4001-8048-F256E0D8CD93}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{49C00A51-6E59-41FE-B3FA-2D2157FAD67B}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{6DFF5DBA-AE3A-46DB-B301-ECFFC6DB2982}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DE34CD67-F1C8-4001-9A23-B8A68F63F377}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{0C58B7D1-D415-492B-A149-E976156BD3B8}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Schlüssel Gelöscht : HKCU\Software\Softonic
Schlüssel Gelöscht : HKCU\Software\YahooPartnerToolbar
Schlüssel Gelöscht : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4
***** [ Browser ] *****
-\\ Internet Explorer v10.0.9200.16843
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
-\\ Mozilla Firefox v27.0.1 (de)
[ Datei : C:\Users\nightchild\AppData\Roaming\Mozilla\Firefox\Profiles\0aj5mbj8.default\prefs.js ]
*************************
AdwCleaner[R0].txt - [3345 octets] - [29/03/2014 21:34:23]
AdwCleaner[S0].txt - [3248 octets] - [29/03/2014 21:39:13]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [3308 octets] ########## Code:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.3 (03.23.2014:1)
OS: Windows 7 Starter x86
Ran by nightchild on 29.03.2014 at 22:18:37,66
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
~~~ Files
Successfully deleted: [File] C:\windows\system32\sho2E4.tmp
Successfully deleted: [File] C:\windows\system32\sho9165.tmp
~~~ Folders
Successfully deleted: [Folder] "C:\ProgramData\apn"
Successfully deleted: [Empty Folder] C:\Users\nightchild\appdata\local\{521B71AA-3AC0-409D-8494-4775208ABB97}
Successfully deleted: [Empty Folder] C:\Users\nightchild\appdata\local\{54C4BE78-A1E3-4C23-97D3-F786917F4198}
Successfully deleted: [Empty Folder] C:\Users\nightchild\appdata\local\{6E2E368D-07C2-4261-8699-C506C485E228}
Successfully deleted: [Empty Folder] C:\Users\nightchild\appdata\local\{87D25FC0-AD61-4365-8032-1BF6078C7988}
Successfully deleted: [Empty Folder] C:\Users\nightchild\appdata\local\{C2CB48DF-17B2-42FF-A30E-A25EAA479143}
Successfully deleted: [Empty Folder] C:\Users\nightchild\appdata\local\{C5EF80A2-3B07-43EB-953A-2CDC31C53854}
Successfully deleted: [Empty Folder] C:\Users\nightchild\appdata\local\{D6F6D8B0-95EE-45B8-9A38-5FD9B4A03A2C}
Successfully deleted: [Empty Folder] C:\Users\nightchild\appdata\local\{EE8B5BD4-6A3A-4FF5-9A63-44FA6E1C1262}
Successfully deleted: [Empty Folder] C:\Users\nightchild\appdata\local\{F1341FC4-9B6C-484E-B0F9-1DC8A10D1B13}
Successfully deleted: [Empty Folder] C:\Users\nightchild\appdata\local\{FA54688D-4C1D-422E-973B-7D998715C7AC}
~~~ FireFox
Emptied folder: C:\Users\nightchild\AppData\Roaming\mozilla\firefox\profiles\0aj5mbj8.default\minidumps [128 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 29.03.2014 at 22:28:29,46
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 13-03-2014 01
Ran by nightchild (administrator) on NIGHTCHILD-PC on 29-03-2014 22:35:48
Running from C:\Users\nightchild\Desktop
Microsoft Windows 7 Starter Service Pack 1 (X86) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(ABBYY) C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
() C:\Program Files\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\windows\system32\igfxsrvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Boingo Wireless, Inc.) C:\Program Files\Boingo\Boingo Wi-Fi\Boingo Wi-Fi.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
() C:\Program Files\Join Air\UIExec.exe
(Brother Industries, Ltd.) C:\Program Files\Browny02\Brother\BrStMonW.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
() C:\Windows\System32\AsusService.exe
(SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50ST7.EXE
(ASUS) C:\Program Files\EeePC\CapsHook\CapsHook.exe
(ASUSTeK Computer Inc.) C:\Program Files\EeePC\SHE\SuperHybridEngine.exe
(ASUSTeK Computer Inc.) C:\Program Files\EeePC\HotkeyService\HotKeyMon.exe
(ASUSTeK Computer Inc.) C:\Program Files\EeePC\HotkeyService\HotkeyService.exe
(SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE
(Microsoft Corporation) C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe
() C:\Program Files\Join Air\AssistantServices.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
() C:\Program Files\Verbindungsassistent\WTGService.exe
() C:\windows\system32\atwtusb.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
() C:\windows\system32\atwtusb.exe
(Microsoft Corporation) C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(Brother Industries, Ltd.) C:\Program Files\Browny02\BrYNSvc.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\windows\system32\wuauclt.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [IAAnotif] - C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2009-06-05] (Intel Corporation)
HKLM\...\Run: [HotkeyMon] - C:\Program Files\EeePC\HotkeyService\HotKeyMon.exe [100328 2009-09-11] (ASUSTeK Computer Inc.)
HKLM\...\Run: [HotkeyService] - C:\Program Files\EeePC\HotkeyService\HotkeyService.exe [1242544 2010-06-04] (ASUSTeK Computer Inc.)
HKLM\...\Run: [SuperHybridEngine] - C:\Program Files\EeePC\SHE\SuperHybridEngine.exe [412600 2010-06-09] (ASUSTeK Computer Inc.)
HKLM\...\Run: [CapsHook] - C:\Program Files\EeePC\CapsHook\CapsHook.exe [445344 2010-05-29] (ASUS)
HKLM\...\Run: [Eee Docking] - C:\Program Files\ASUS\Eee Docking\Eee Docking.exe [415920 2010-03-30] ()
HKLM\...\Run: [ASUS WebStorage] - C:\Program Files\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe [1754448 2010-03-16] ()
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [9177632 2010-06-22] (Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1594664 2010-04-13] (Synaptics Incorporated)
HKLM\...\Run: [Boingo Wi-Fi] - C:\Program Files\Boingo\Boingo Wi-Fi\Boingo.lnk [2429 2011-05-04] ()
HKLM\...\Run: [ASUSPRP] - C:\Program Files\ASUS\APRP\APRP.EXE [2018032 2010-06-24] (ASUSTek Computer Inc.)
HKLM\...\Run: [SynAsusAcpi] - C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe [83240 2010-04-13] (Synaptics Incorporated)
HKLM\...\Run: [avgnt] - C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [689744 2014-02-22] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [UIExec] - C:\Program Files\Join Air\UIExec.exe [132608 2009-08-31] ()
HKLM\...\Run: [BrStsMon00] - C:\Program Files\Browny02\Brother\BrStMonW.exe [2621440 2010-06-10] (Brother Industries, Ltd.)
HKLM\...\Run: [Logitech Download Assistant] - C:\Windows\System32\LogiLDA.dll [1425208 2012-09-20] (Logitech, Inc.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://eeepc.asus.com
SearchScopes: HKLM - DefaultScope value is missing.
BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
FireFox:
========
FF ProfilePath: C:\Users\nightchild\AppData\Roaming\Mozilla\Firefox\Profiles\0aj5mbj8.default
FF SearchEngineOrder.1: Ask Search
FF SelectedSearchEngine: user_pref("browser.search.selectedEngine", "");
FF Homepage: about:newtab
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer - C:\windows\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll ()
FF Plugin: @adobe.com/ShockwavePlayer - C:\windows\system32\Adobe\Director\np32dsw_1209149.dll (Adobe Systems, Inc.)
FF Plugin: @java.com/DTPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=16.4.3505.0912 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: Drag & DropZones - C:\Users\nightchild\AppData\Roaming\Mozilla\Firefox\Profiles\0aj5mbj8.default\Extensions\dendzones@captaincaveman.nl.xpi [2011-10-17]
FF Extension: Dict.cc Translation - C:\Users\nightchild\AppData\Roaming\Mozilla\Firefox\Profiles\0aj5mbj8.default\Extensions\searchdictcc@roughael.xpi [2011-10-17]
FF Extension: DVDVideoSoft YouTube MP3 and Video Download - C:\Users\nightchild\AppData\Roaming\Mozilla\Firefox\Profiles\0aj5mbj8.default\Extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}.xpi [2012-11-21]
FF Extension: Adblock Edge - C:\Users\nightchild\AppData\Roaming\Mozilla\Firefox\Profiles\0aj5mbj8.default\Extensions\{fe272bd1-5f76-4ea4-8501-a05d35d823fc}.xpi [2014-03-29]
========================== Services (Whitelisted) =================
R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY)
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [440400 2014-02-22] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [440400 2014-02-22] (Avira Operations GmbH & Co. KG)
R2 AsusService; C:\Windows\System32\AsusService.exe [219136 2009-08-19] ()
R3 BrYNSvc; C:\Program Files\Browny02\BrYNSvc.exe [245760 2010-01-25] (Brother Industries, Ltd.)
R2 EPSON_EB_RPCV4_04; C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50ST7.EXE [156160 2012-03-07] (SEIKO EPSON CORPORATION)
R2 EPSON_PM_RPCV4_04; C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE [125440 2012-03-07] (SEIKO EPSON CORPORATION)
R2 UI Assistant Service; C:\Program Files\Join Air\AssistantServices.exe [241664 2009-08-31] ()
R2 WTGService; C:\Program Files\Verbindungsassistent\WTGService.exe [329168 2010-02-23] ()
R2 WTService; C:\windows\system32\atwtusb.exe [853504 2011-07-19] ()
==================== Drivers (Whitelisted) ====================
R1 AsUpIO; C:\windows\System32\drivers\AsUpIO.sys [11520 2010-06-21] ()
R2 avgntflt; C:\windows\System32\DRIVERS\avgntflt.sys [90400 2013-12-19] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\windows\System32\DRIVERS\avipbb.sys [135648 2013-12-19] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\windows\System32\DRIVERS\avkmgr.sys [37352 2013-11-19] (Avira Operations GmbH & Co. KG)
S3 ewsercd; C:\windows\System32\DRIVERS\ewsercd.sys [100224 2011-05-10] (Huawei Technologies Co., Ltd.)
S3 hwusbfake; C:\windows\System32\DRIVERS\ewusbfake.sys [103040 2011-05-10] (Huawei Technologies Co., Ltd.)
R3 kbfiltr; C:\windows\System32\DRIVERS\kbfiltr.sys [13880 2010-04-13] ( )
R3 moufiltr; C:\windows\System32\DRIVERS\moufiltr.sys [6144 2009-03-08] (Windows (R) Codename Longhorn DDK provider)
R1 ssmdrv; C:\windows\System32\DRIVERS\ssmdrv.sys [28520 2012-08-27] (Avira GmbH)
R3 vhidmini; C:\windows\System32\DRIVERS\walvhid.sys [6144 2009-08-20] (Windows (R) Win 7 DDK provider)
U5 AppMgmt; C:\windows\system32\svchost.exe [20992 2009-07-14] (Microsoft Corporation)
S3 btwaudio; system32\drivers\btwaudio.sys [X]
S3 btwavdt; \SystemRoot\system32\DRIVERS\btwavdt.sys [X]
S3 btwl2cap; system32\DRIVERS\btwl2cap.sys [X]
S3 btwrchid; \SystemRoot\system32\DRIVERS\btwrchid.sys [X]
S3 catchme; \??\C:\Users\NIGHTC~1\AppData\Local\Temp\catchme.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2030-01-01 12:19 - 2010-11-20 13:40 - 00383786 __RSH () C:\bootmgr
2014-03-29 22:28 - 2014-03-29 22:28 - 00002053 _____ () C:\Users\nightchild\Desktop\JRT.txt
2014-03-29 22:18 - 2014-03-29 22:18 - 00000000 ____D () C:\windows\ERUNT
2014-03-29 22:05 - 2014-03-29 22:05 - 01038974 _____ (Thisisu) C:\Users\nightchild\Desktop\JRT.exe
2014-03-29 21:44 - 2014-03-29 21:44 - 00003388 _____ () C:\Users\nightchild\Desktop\AdwCleaner[S0].txt
2014-03-29 21:34 - 2014-03-29 21:39 - 00000000 ____D () C:\AdwCleaner
2014-03-29 21:26 - 2014-03-29 21:26 - 01950720 _____ () C:\Users\nightchild\Desktop\adwcleaner.exe
2014-03-29 21:20 - 2014-03-29 21:20 - 00028258 _____ () C:\Users\nightchild\Desktop\mbam.txt.txt
2014-03-29 18:34 - 2014-03-29 21:12 - 00107736 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\MBAMSwissArmy.sys
2014-03-29 18:33 - 2014-03-29 18:33 - 00001064 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-03-29 18:33 - 2014-03-29 18:33 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2014-03-29 18:33 - 2014-03-05 09:26 - 00073432 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbamchameleon.sys
2014-03-29 18:33 - 2014-03-05 09:26 - 00051416 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mwac.sys
2014-03-29 18:33 - 2014-03-05 09:26 - 00023256 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbam.sys
2014-03-29 07:24 - 2014-03-29 07:23 - 00700980 _____ () C:\Users\nightchild\Desktop\adblock_edge-2.0.7-sm+an+tb+fx-windows.xpi
2014-03-28 10:14 - 2014-03-28 10:14 - 00012716 _____ () C:\Users\nightchild\Desktop\ComboFix.txt
2014-03-28 09:41 - 2011-06-26 07:45 - 00256000 _____ () C:\windows\PEV.exe
2014-03-28 09:41 - 2010-11-07 18:20 - 00208896 _____ () C:\windows\MBR.exe
2014-03-28 09:41 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\windows\NIRCMD.exe
2014-03-28 09:41 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\windows\SWREG.exe
2014-03-28 09:41 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\windows\SWSC.exe
2014-03-28 09:41 - 2000-08-31 01:00 - 00098816 _____ () C:\windows\sed.exe
2014-03-28 09:41 - 2000-08-31 01:00 - 00080412 _____ () C:\windows\grep.exe
2014-03-28 09:41 - 2000-08-31 01:00 - 00068096 _____ () C:\windows\zip.exe
2014-03-28 09:40 - 2014-03-28 10:14 - 00000000 ____D () C:\Qoobox
2014-03-28 09:39 - 2014-03-28 10:09 - 00000000 ____D () C:\windows\erdnt
2014-03-28 09:24 - 2014-03-28 09:24 - 05192353 ____R (Swearware) C:\Users\nightchild\Desktop\ComboFix.exe
2014-03-27 09:33 - 2014-03-27 11:45 - 00002779 _____ () C:\Users\nightchild\Desktop\decide with dice.txt
2014-03-27 08:10 - 2014-03-29 22:36 - 00012320 _____ () C:\Users\nightchild\Desktop\FRST.txt
2014-03-27 07:58 - 2014-03-27 07:58 - 01145856 _____ (Farbar) C:\Users\nightchild\Desktop\FRST.exe
2014-03-26 12:17 - 2014-03-26 12:17 - 00380416 _____ () C:\Users\nightchild\Desktop\Gmer-19357.exe
2014-03-26 11:53 - 2014-03-27 08:14 - 00026134 _____ () C:\Users\nightchild\Desktop\Addition.txt
2014-03-26 11:50 - 2014-03-29 22:35 - 00000000 ____D () C:\FRST
2014-03-26 11:45 - 2014-03-26 11:46 - 00000482 _____ () C:\Users\nightchild\Desktop\defogger_disable.log
2014-03-26 11:45 - 2014-03-26 11:45 - 00000000 _____ () C:\Users\nightchild\defogger_reenable
2014-03-26 11:44 - 2014-03-26 11:44 - 00050477 _____ () C:\Users\nightchild\Desktop\Defogger.exe
2014-03-20 14:26 - 2014-03-20 17:55 - 00000000 ____D () C:\Program Files\Mozilla Thunderbird
2014-03-15 14:54 - 2014-02-23 07:54 - 00042496 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2014-03-15 14:54 - 2014-02-23 07:53 - 02877952 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-03-15 14:54 - 2014-02-23 07:53 - 00690688 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2014-03-15 14:54 - 2014-02-23 07:53 - 00493056 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-03-15 14:54 - 2014-02-23 07:53 - 00391168 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-03-15 14:54 - 2014-02-23 07:53 - 00163840 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2014-03-15 14:54 - 2014-02-23 07:53 - 00109056 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll
2014-03-15 14:54 - 2014-02-23 07:53 - 00061440 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2014-03-15 14:54 - 2014-02-23 07:53 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-03-15 14:54 - 2014-02-23 07:53 - 00033280 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2014-03-15 14:54 - 2014-02-23 07:31 - 02706432 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-03-15 14:54 - 2014-02-23 06:35 - 00071680 _____ (Microsoft Corporation) C:\windows\system32\RegisterIEPKEYs.exe
2014-03-15 14:53 - 2014-02-23 07:54 - 01767936 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-03-15 14:53 - 2014-02-23 07:54 - 01140736 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-03-15 14:53 - 2014-02-23 07:53 - 14358016 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-03-15 14:53 - 2014-02-23 07:53 - 13761024 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-03-15 14:53 - 2014-02-23 07:53 - 02049024 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-03-13 08:31 - 2014-02-07 02:07 - 02349056 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2014-03-13 08:31 - 2014-02-04 03:04 - 01230336 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecs.dll
2014-03-13 08:31 - 2014-02-04 03:04 - 00509440 _____ (Microsoft Corporation) C:\windows\system32\qedit.dll
2014-03-13 08:31 - 2014-01-29 03:06 - 00381440 _____ (Microsoft Corporation) C:\windows\system32\wer.dll
2014-03-13 08:31 - 2014-01-28 03:07 - 00185344 _____ (Microsoft Corporation) C:\windows\system32\wwansvc.dll
2014-03-04 00:14 - 2014-03-17 21:33 - 00003520 _____ () C:\Users\nightchild\Desktop\Urlaubsplanung 2014.txt
2014-03-02 19:09 - 2014-03-29 21:46 - 00000000 ____D () C:\Users\nightchild\Desktop\Desktop Ablage
==================== One Month Modified Files and Folders =======
2030-01-01 12:19 - 2009-07-14 05:57 - 00029696 ___SH () C:\windows\system32\config\BCD-Template.LOG
2030-01-01 12:19 - 2009-07-14 05:52 - 00032768 _____ () C:\windows\system32\config\BCD-Template
2014-03-29 22:36 - 2014-03-27 08:10 - 00012320 _____ () C:\Users\nightchild\Desktop\FRST.txt
2014-03-29 22:35 - 2014-03-26 11:50 - 00000000 ____D () C:\FRST
2014-03-29 22:28 - 2014-03-29 22:28 - 00002053 _____ () C:\Users\nightchild\Desktop\JRT.txt
2014-03-29 22:18 - 2014-03-29 22:18 - 00000000 ____D () C:\windows\ERUNT
2014-03-29 22:16 - 2011-05-05 02:32 - 01447760 _____ () C:\windows\WindowsUpdate.log
2014-03-29 22:05 - 2014-03-29 22:05 - 01038974 _____ (Thisisu) C:\Users\nightchild\Desktop\JRT.exe
2014-03-29 21:51 - 2009-07-14 05:34 - 00009696 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-03-29 21:51 - 2009-07-14 05:34 - 00009696 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-03-29 21:46 - 2014-03-02 19:09 - 00000000 ____D () C:\Users\nightchild\Desktop\Desktop Ablage
2014-03-29 21:44 - 2014-03-29 21:44 - 00003388 _____ () C:\Users\nightchild\Desktop\AdwCleaner[S0].txt
2014-03-29 21:42 - 2009-07-14 03:04 - 00000418 _____ () C:\windows\win.ini
2014-03-29 21:41 - 2011-05-10 19:59 - 00338236 _____ () C:\windows\PFRO.log
2014-03-29 21:41 - 2009-07-14 05:53 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-03-29 21:41 - 2009-07-14 05:39 - 00104188 _____ () C:\windows\setupact.log
2014-03-29 21:39 - 2014-03-29 21:34 - 00000000 ____D () C:\AdwCleaner
2014-03-29 21:26 - 2014-03-29 21:26 - 01950720 _____ () C:\Users\nightchild\Desktop\adwcleaner.exe
2014-03-29 21:20 - 2014-03-29 21:20 - 00028258 _____ () C:\Users\nightchild\Desktop\mbam.txt.txt
2014-03-29 21:12 - 2014-03-29 18:34 - 00107736 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\MBAMSwissArmy.sys
2014-03-29 20:57 - 2014-02-20 15:46 - 00000000 ____D () C:\Program Files\DVDVideoSoft
2014-03-29 20:57 - 2011-10-19 23:24 - 00000000 ____D () C:\Users\nightchild\AppData\Roaming\DVDVideoSoft
2014-03-29 18:33 - 2014-03-29 18:33 - 00001064 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-03-29 18:33 - 2014-03-29 18:33 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2014-03-29 18:33 - 2012-11-14 00:33 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-03-29 18:33 - 2012-01-17 07:05 - 00000000 ____D () C:\Users\nightchild\Desktop\progs n games
2014-03-29 08:43 - 2013-12-10 15:29 - 00317848 _____ () C:\windows\IE11_main.log
2014-03-29 08:40 - 2014-02-10 20:17 - 00021363 _____ () C:\Users\nightchild\Desktop\Urlaub 2014.odt
2014-03-29 07:23 - 2014-03-29 07:24 - 00700980 _____ () C:\Users\nightchild\Desktop\adblock_edge-2.0.7-sm+an+tb+fx-windows.xpi
2014-03-28 16:00 - 2014-02-15 10:16 - 00000884 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2014-03-28 15:51 - 2011-08-02 21:45 - 00000000 ____D () C:\Users\nightchild\AppData\Roaming\vlc
2014-03-28 15:04 - 2012-03-14 16:22 - 00000000 ____D () C:\Users\nightchild\Documents\Scribble Papers
2014-03-28 10:14 - 2014-03-28 10:14 - 00012716 _____ () C:\Users\nightchild\Desktop\ComboFix.txt
2014-03-28 10:14 - 2014-03-28 09:40 - 00000000 ____D () C:\Qoobox
2014-03-28 10:14 - 2009-07-14 03:37 - 00000000 ___RD () C:\Users\Public
2014-03-28 10:09 - 2014-03-28 09:39 - 00000000 ____D () C:\windows\erdnt
2014-03-28 10:07 - 2009-07-14 03:04 - 00000215 _____ () C:\windows\system.ini
2014-03-28 10:04 - 2011-05-04 11:35 - 00000000 ____D () C:\Users\nightchild
2014-03-28 09:24 - 2014-03-28 09:24 - 05192353 ____R (Swearware) C:\Users\nightchild\Desktop\ComboFix.exe
2014-03-27 11:45 - 2014-03-27 09:33 - 00002779 _____ () C:\Users\nightchild\Desktop\decide with dice.txt
2014-03-27 08:14 - 2014-03-26 11:53 - 00026134 _____ () C:\Users\nightchild\Desktop\Addition.txt
2014-03-27 07:58 - 2014-03-27 07:58 - 01145856 _____ (Farbar) C:\Users\nightchild\Desktop\FRST.exe
2014-03-26 13:53 - 2012-04-25 10:54 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-03-26 12:17 - 2014-03-26 12:17 - 00380416 _____ () C:\Users\nightchild\Desktop\Gmer-19357.exe
2014-03-26 11:46 - 2014-03-26 11:45 - 00000482 _____ () C:\Users\nightchild\Desktop\defogger_disable.log
2014-03-26 11:45 - 2014-03-26 11:45 - 00000000 _____ () C:\Users\nightchild\defogger_reenable
2014-03-26 11:44 - 2014-03-26 11:44 - 00050477 _____ () C:\Users\nightchild\Desktop\Defogger.exe
2014-03-20 17:55 - 2014-03-20 14:26 - 00000000 ____D () C:\Program Files\Mozilla Thunderbird
2014-03-18 19:44 - 2013-08-17 22:38 - 00000000 ____D () C:\windows\system32\MRT
2014-03-18 19:37 - 2009-07-25 08:50 - 01622236 _____ () C:\windows\system32\PerfStringBackup.INI
2014-03-18 19:33 - 2011-05-21 07:51 - 87350280 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2014-03-17 21:33 - 2014-03-04 00:14 - 00003520 _____ () C:\Users\nightchild\Desktop\Urlaubsplanung 2014.txt
2014-03-15 16:41 - 2012-01-17 07:06 - 00000000 ___RD () C:\Users\nightchild\Desktop\aktuelle ablage
2014-03-15 15:15 - 2009-07-14 05:33 - 00325536 _____ () C:\windows\system32\FNTCACHE.DAT
2014-03-15 15:13 - 2010-06-24 17:29 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-03-13 09:10 - 2011-05-31 09:03 - 00000000 ___RD () C:\Users\nightchild\Desktop\meins
2014-03-12 12:35 - 2013-10-28 15:23 - 00029548 _____ () C:\Users\nightchild\Desktop\skript in bearbeitung.odt
2014-03-12 10:59 - 2013-10-20 12:11 - 00000000 ____D () C:\Program Files\OXXOGames
2014-03-11 20:14 - 2013-05-08 21:29 - 00692616 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerApp.exe
2014-03-11 20:14 - 2013-05-08 21:29 - 00071048 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerCPLApp.cpl
2014-03-05 21:12 - 2012-11-24 22:58 - 00000000 ___RD () C:\Program Files\Skype
2014-03-05 21:12 - 2010-06-24 17:21 - 00000000 ____D () C:\ProgramData\Skype
2014-03-05 09:26 - 2014-03-29 18:33 - 00073432 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbamchameleon.sys
2014-03-05 09:26 - 2014-03-29 18:33 - 00051416 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mwac.sys
2014-03-05 09:26 - 2014-03-29 18:33 - 00023256 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbam.sys
2014-03-04 16:10 - 2009-07-14 03:37 - 00000000 ____D () C:\windows\Microsoft.NET
Some content of TEMP:
====================
C:\Users\nightchild\AppData\Local\temp\avgnt.exe
C:\Users\nightchild\AppData\Local\temp\Quarantine.exe
==================== Bamital & volsnap Check =================
C:\windows\explorer.exe => MD5 is legit
C:\windows\system32\winlogon.exe => MD5 is legit
C:\windows\system32\wininit.exe => MD5 is legit
C:\windows\system32\svchost.exe => MD5 is legit
C:\windows\system32\services.exe => MD5 is legit
C:\windows\system32\User32.dll => MD5 is legit
C:\windows\system32\userinit.exe => MD5 is legit
C:\windows\system32\rpcss.dll => MD5 is legit
C:\windows\system32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-03-20 18:27
==================== End Of Log ============================ --- --- ---
--- --- --- Code:
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 13-03-2014 01
Ran by nightchild at 2014-03-29 22:39:28
Running from C:\Users\nightchild\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Avira Desktop (Disabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AS: Avira Desktop (Disabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
32 Bit HP CIO Components Installer (Version: 1.1.0 - Hewlett-Packard) Hidden
ABBYY FineReader 9.0 Sprint (HKLM\...\ABBYY FineReader 9.0 Sprint) (Version: 9.01.513.58212 - ABBYY)
ABBYY FineReader 9.0 Sprint (Version: 9.01.513.58212 - ABBYY) Hidden
Acrobat.com (HKLM\...\{287ECFA4-719A-2143-A09B-D6A12DE54E40}) (Version: 1.6.65 - Adobe Systems Incorporated)
Adobe AIR (HKLM\...\Adobe AIR) (Version: 1.5.3.9130 - Adobe Systems Inc.)
Adobe AIR (Version: 1.5.3.9130 - Adobe Systems Inc.) Hidden
Adobe Flash Player 12 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 12.0.0.77 - Adobe Systems Incorporated)
Adobe Flash Player 12 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 12.0.0.77 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.06) - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.06 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.0 (HKLM\...\Adobe Shockwave Player) (Version: 12.0.9.149 - Adobe Systems, Inc.)
Angry Birds (HKLM\...\{910D3FB9-E341-4DD9-B52A-3B3C0C340AF6}) (Version: 1.5.3 - Rovio)
ASUS VIBE (HKLM\...\ASUS VIBE) (Version: 1.0.187 - Ecareme, Inc.)
ASUS WebStorage (HKLM\...\ASUS WebStorage) (Version: 2.0.46.1429 - eCareme Technologies, Inc.)
ASUSUpdate for Eee PC (HKLM\...\{587178E7-B1DF-494E-9838-FA4DD36E873C}) (Version: 1.04.01 - ASUSTeK Computer Inc.)
Atheros Client Installation Program (HKLM\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 7.0 - Atheros)
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 1.0.0.10 - Atheros Communications Inc.)
Audacity 1.3.13 (Unicode) (HKLM\...\Audacity 1.3 Beta (Unicode)_is1) (Version: - Audacity Team)
Avira Free Antivirus (HKLM\...\Avira AntiVir Desktop) (Version: 14.0.3.350 - Avira)
Benutzerhandbuch - Grundlagen EPSON SX230 Series (HKLM\...\EPSON SX230 Series Bog) (Version: - )
Benutzerhandbuch EPSON SX230 Series (HKLM\...\EPSON SX230 Series Useg) (Version: - )
Boingo Wi-Fi (HKLM\...\{84C2B80B-64A2-4B22-93EC-F30C3D6BF7D8}) (Version: 1.7.0048 - Boingo Wireless, Inc.)
CapsHook (HKLM\...\{4B5092B6-F231-4D18-83BC-2618B729CA45}) (Version: 1.0.0.5 - AsusTek Computer)
CCleaner (HKLM\...\CCleaner) (Version: 4.10 - Piriform)
D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden
Dr Kawashima (HKCU\...\BrainGame) (Version: 1.0 - )
ebi.BookReader3J (HKLM\...\{F3D2DEDC-4732-4188-8A3A-1A3FFBD4D6C8}) (Version: 3.75.14 - eBOOK Initiative Japan Co., Ltd.)
E-Cam (HKLM\...\{185AFA7A-F63E-450B-94AA-011CAC18090E}) (Version: 2.0.2.5 - )
Eee Docking 3.7.0 (HKLM\...\Eee Docking_is1) (Version: 3.7.0 - ASUSTek Computer Inc.)
EeeSplendid (HKLM\...\{6333FC29-BFE5-4024-AC78-958A1A7555D1}) (Version: 5.1.2.0011 - ASUS)
EeeSplendid (Version: 5.1.2.0011 - ASUS) Hidden
Epson Easy Photo Print 2 (HKLM\...\{A02D7029-C4EF-44C1-9FD4-C0D3CA518113}) (Version: 2.2.4.0 - SEIKO EPSON CORPORATION)
Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) (HKLM\...\{B2D55EB8-32C5-4B43-9006-9E97DECBA178}) (Version: 1.00.0000 - SEIKO EPSON CORPORATION)
Epson Event Manager (HKLM\...\{8ED43F7E-A8F6-4898-AF11-B6158F2EDF94}) (Version: 2.50.0000 - SEIKO EPSON CORPORATION)
EPSON Scan (HKLM\...\EPSON Scanner) (Version: - Seiko Epson Corporation)
EPSON SX230 Series Printer Uninstall (HKLM\...\EPSON SX230 Series) (Version: - SEIKO EPSON Corporation)
FontResizer (HKLM\...\InstallShield_{17780F99-A9DF-450B-81B3-6781B20A17A8}) (Version: 1.01.0011 - ASUSTek)
FontResizer (Version: 1.01.0011 - ASUSTek) Hidden
Fotogalerie (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Free Notes & Office Ink (HKLM\...\{556F2137-B772-43BB-9A45-E0275234DD16}) (Version: - )
Free YouTube to MP3 Converter version 3.12.23.219 (HKLM\...\Free YouTube to MP3 Converter_is1) (Version: 3.12.23.219 - DVDVideoSoft Ltd.)
Game Park Console (HKLM\...\{D44AA979-47C2-4BC0-A860-09A54224EA44}_is1) (Version: 6.2.0.3 - Oberon Media, Inc.)
Google SketchUp 8 (HKLM\...\{5E2ABE05-B7AD-4D77-8A19-BDA0E4302190}) (Version: 3.0.11762 - Google, Inc.)
HL-2130 (HKLM\...\{E2A97415-BD97-4867-B906-05E39E9EE51F}) (Version: 1.0.7.0 - Brother Industries, Ltd.)
Hotkey Service (HKLM\...\{71C0E38E-09F2-4386-9977-404D4F6640CD}) (Version: 1.27 - AsusTek Computer)
ICQ7.5 (HKLM\...\{7578ADEA-D65F-4C89-A249-B1C88B6FFC20}) (Version: 7.5 - ICQ)
Intel(R) Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: 8.14.10.2117 - Intel Corporation)
Intel® Matrix Storage Manager (HKLM\...\{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}) (Version: - Intel Corporation)
Java 7 Update 51 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83217025FF}) (Version: 7.0.510 - Oracle)
Java Auto Updater (Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
Join Air (HKLM\...\{A9E5EDA7-2E6C-49E7-924B-A32B89C24A04}) (Version: 1.0.0.1 - ZTE Corporation)
Junk Mail filter update (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
LiveUpdate (HKLM\...\{38E5A3B1-ADF1-47E0-8024-76310A30EB36}) (Version: 1.21 - Asus)
LocaleMe (HKLM\...\{F58C1D44-4AC9-48E8-9049-7A6CDFCB415C}) (Version: 1.3 - ASUS)
Malwarebytes Anti-Malware Version 2.00.0.1000 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.00.0.1000 - Malwarebytes Corporation)
Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6012.5000 - Microsoft Corporation) Hidden
Microsoft Office 2010 (HKLM\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Klick-und-Los 2010 (HKLM\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Klick-und-Los 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Starter 2010 - Deutsch (HKLM\...\{90140011-0066-0407-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Movie Maker (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Mozilla Firefox 27.0.1 (x86 de) (HKLM\...\Mozilla Firefox 27.0.1 (x86 de)) (Version: 27.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 24.4.0 - Mozilla)
Mozilla Thunderbird 24.4.0 (x86 de) (HKLM\...\Mozilla Thunderbird 24.4.0 (x86 de)) (Version: 24.4.0 - Mozilla)
MSVCRT (Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT110 (Version: 16.4.1108.0727 - Microsoft) Hidden
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2721691) (HKLM\...\{355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}) (Version: 4.30.2114.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB973685) (HKLM\...\{859DFA95-E4A6-48CD-B88E-A3E483E89B44}) (Version: 4.30.2107.0 - Microsoft Corporation)
Music Editor Free (HKLM\...\Music Editor Free) (Version: - FAE Inc.)
OpenOffice.org 3.3 (HKLM\...\{4286716B-1287-48E7-9078-3DC8248DBA96}) (Version: 3.3.9567 - OpenOffice.org)
Photo Gallery (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Ralink RT2860 Wireless LAN Card (HKLM\...\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309B0}) (Version: 1.2.0.1 - Ralink)
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6098 - Realtek Semiconductor Corp.)
Scribble Papers 2.7.1 (HKLM\...\Scribble Papers_is1) (Version: - Jens Hoetger)
Skype™ 6.11 (HKLM\...\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}) (Version: 6.11.102 - Skype Technologies S.A.)
Super Hybrid Engine (HKLM\...\{88F08F98-12BC-4613-81A2-8F9B88CFC73E}) (Version: 2.16 - AsusTek Computer)
swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 14.0.16.0 - Synaptics Incorporated)
Times Reader (HKLM\...\com.nyt.timesreader.78C54164786ADE80CB31E1C5D95607D0938C987A.1) (Version: 2.055 - The New York Times Company)
Times Reader (Version: 2.055 - The New York Times Company) Hidden
USB Tablet Manager (HKLM\...\RmTablet) (Version: 4.13 - )
Verbindungsassistent (HKLM\...\Verbindungsassistent) (Version: 2.1 - Verbindungsassistent)
VLC media player 1.1.9 (HKLM\...\VLC media player) (Version: 1.1.9 - VideoLAN)
Winamp (HKLM\...\Winamp) (Version: 5.5 - Nullsoft, Inc)
Windows Driver Package - Broadcom Bluetooth (07/17/2009 6.2.0.9403) (HKLM\...\B41C7C96D83162A676DA7365ADEFD6C1AF62A4EE) (Version: 07/17/2009 6.2.0.9403 - Broadcom)
Windows Driver Package - Broadcom Bluetooth (07/29/2009 6.1.7100.0) (HKLM\...\B5C82F3814F82FB37F1513B3185399BD88892B08) (Version: 07/29/2009 6.1.7100.0 - Broadcom)
Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) (HKLM\...\BF20603967CFDCB2BBF91950E8A56DFBC5C833FE) (Version: 07/28/2009 6.2.0.9800 - Broadcom)
Windows Live Communications Platform (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation)
Windows Live Essentials (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Family Safety (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden
Windows Live Installer (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Mail (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Messenger (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live MIME IFilter (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Photo Common (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live SOXE (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Sync (HKLM\...\{76618402-179D-4699-A66B-D351C59436BC}) (Version: 14.0.8089.726 - Microsoft Corporation)
Windows Live UX Platform (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Writer (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Writer Resources (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
WinRAR 4.01 (32-Bit) (HKLM\...\WinRAR archiver) (Version: 4.01.0 - win.rar GmbH)
==================== Restore Points =========================
15-03-2014 13:42:32 Windows Update
18-03-2014 18:31:55 Windows Update
19-03-2014 10:36:31 Windows Update
20-03-2014 11:39:51 Windows Update
21-03-2014 12:51:21 Windows Update
23-03-2014 21:36:42 Windows Update
27-03-2014 06:08:28 Windows Update
27-03-2014 11:08:00 Windows Update
28-03-2014 08:20:14 Windows Update
28-03-2014 14:55:32 Windows Update
29-03-2014 05:24:07 Windows Update
29-03-2014 07:41:14 Windows Update
==================== Hosts content: ==========================
2009-07-14 03:04 - 2014-03-28 10:06 - 00000027 ____A C:\windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Scheduled Tasks (whitelisted) =============
Task: {4AD27068-9E63-4C6B-A346-E7D22DEF7D83} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-01-21] (Piriform Ltd)
Task: {9F9D803D-C390-454C-9242-C861996635EA} - System32\Tasks\Adobe Flash Player Updater => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-03-11] (Adobe Systems Incorporated)
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
==================== Loaded Modules (whitelisted) =============
2012-11-14 13:49 - 2012-09-19 18:17 - 00397088 _____ () C:\Program Files\Avira\AntiVir Desktop\sqlite3.dll
2010-03-16 02:48 - 2010-03-16 02:48 - 01754448 _____ () C:\Program Files\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe
2013-06-09 11:13 - 2009-08-31 09:43 - 00132608 _____ () C:\Program Files\Join Air\UIExec.exe
2013-06-22 11:34 - 2009-02-27 15:38 - 00139264 ____R () C:\Program Files\Brother\BrUtilities\BrLogAPI.dll
2010-06-24 17:12 - 2009-08-19 01:35 - 00219136 _____ () C:\Windows\System32\AsusService.exe
2013-06-09 11:13 - 2009-08-31 09:43 - 00241664 _____ () C:\Program Files\Join Air\AssistantServices.exe
2011-05-10 09:42 - 2010-02-23 10:01 - 00329168 ____N () C:\Program Files\Verbindungsassistent\WTGService.exe
2012-01-30 21:07 - 2011-07-19 13:57 - 00853504 _____ () C:\windows\system32\atwtusb.exe
2010-03-16 02:48 - 2010-03-16 02:48 - 00148816 _____ () C:\Program Files\ASUS\ASUS WebStorage\EcaremeDLL.dll
2010-06-24 17:31 - 2010-06-24 17:31 - 00030032 _____ () C:\windows\assembly\GAC_MSIL\SqliteShared\1.0.3726.20828__0d0f4b69e50e559b\SqliteShared.dll
2010-06-24 17:31 - 2010-06-24 17:31 - 00839680 _____ () C:\windows\assembly\GAC_32\System.Data.SQLite\1.0.60.0__db937bc2d44ff139\System.Data.SQLite.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
==================== Disabled items from MSCONFIG ==============
MSCONFIG\Services: AdobeARMservice => 2
MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3
MSCONFIG\Services: SkypeUpdate => 2
MSCONFIG\Services: WTGService => 2
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: AtwtusbIcon => AtwtusbIcon.exe
MSCONFIG\startupreg: EEventManager => "C:\Program Files\Epson Software\Event Manager\EEventManager.exe"
MSCONFIG\startupreg: EPSON SX230 Series => C:\windows\system32\spool\DRIVERS\W32X86\3\E_FATIHKE.EXE /FU "C:\Users\NIGHTC~1\AppData\Local\Temp\E_S38F5.tmp" /EF "HKCU"
MSCONFIG\startupreg: LiveUpdate => AsusSender.exe C:\Program Files\Asus\LiveUpdate\LiveUpdate.exe auto
MSCONFIG\startupreg: msnmsgr => "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
MSCONFIG\startupreg: Speech Recognition => "C:\windows\Speech\Common\sapisvr.exe" -SpeechUX -Startup
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
MSCONFIG\startupreg: WinampAgent => "C:\Program Files\Winamp\winampa.exe"
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
System errors:
=============
Microsoft Office Sessions:
=========================
==================== Memory info ===========================
Percentage of memory in use: 65%
Total physical RAM: 1014.18 MB
Available physical RAM: 350.13 MB
Total Pagefile: 2038.18 MB
Available Pagefile: 1057.08 MB
Total Virtual: 2047.88 MB
Available Virtual: 1919.14 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:100 GB) (Free:44.85 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: () (Fixed) (Total:117.87 GB) (Free:111.39 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 233 GB) (Disk ID: 29133921)
Partition 1: (Active) - (Size=100 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=15 GB) - (Type=1B)
Partition 3: (Not Active) - (Size=118 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=20 MB) - (Type=EF)
==================== End Of Log ============================
Fleißige Grüße, :sleepy: :lach:
problemchild |