Kat-syd26 | 30.03.2014 01:58 | FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-03-2014
Ran by Katrin (administrator) on KATRIN-94 on 29-03-2014 10:23:21
Running from C:\Users\Katrin\Downloads
Windows 7 Professional Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(Microsoft Corporation) C:\windows\system32\WLANExt.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Microsoft Corporation) C:\windows\SysWOW64\svchost.exe
() C:\ProgramData\DatacardService\HWDeviceService64.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
() C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\HelperService.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\ConversionService.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(TOSHIBA Corporation) C:\windows\system32\ThpSrv.exe
(TOSHIBA Corporation) C:\windows\system32\TODDSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Ericsson AB) C:\Program Files (x86)\TOSHIBA\Mobile Broadband Device\WMCore\mini_WMCore.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\TecoService.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Apoint.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(SRS Labs, Inc.) C:\Program Files\SRS Labs\SRS Control Panel\SRSPanel_64.exe
() C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TBatmgrTrayicon.exe
(TOSHIBA) C:\Program Files\TOSHIBA\Fingerprint Utility\BrowserAddin\TFPUPWDBank.exe
(TOSHIBA) C:\Program Files\TOSHIBA\Fingerprint Utility\TFPUTaskMonitor.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\Teco.exe
(TOSHIBA Corporation) C:\Windows\System32\ThpSrv.exe
(Toshiba Europe GmbH) C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe
(Spotify Ltd) C:\Users\Katrin\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
(Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe
(Huawei Technologies Co., Ltd.) C:\Users\Katrin\AppData\Roaming\Mobile Partner\ouc.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\TecoHook.exe
(Dropbox, Inc.) C:\Users\Katrin\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(TOSHIBA) C:\Program Files (x86)\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Creative Technology Ltd.) C:\Windows\V0700Mon.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\widimon\widimon.exe
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApMsgFwd.exe
(Intel Corporation) C:\windows\system32\igfxext.exe
(Intel Corporation) C:\windows\system32\igfxsrvc.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\HidFind.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Apntex.exe
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
(Avira Operations GmbH & Co. KG) C:\program files (x86)\avira\antivir desktop\ipmGui.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avcenter.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Adobe Systems, Inc.) C:\windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe
(Adobe Systems, Inc.) C:\windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [] - [X]
HKLM\...\Run: [Apoint] - C:\Program Files\Apoint2K\Apoint.exe [335736 2011-07-12] (Alps Electric Co., Ltd.)
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12452968 2012-03-14] (Realtek Semiconductor)
HKLM\...\Run: [SRS Premium Sound 3D] - C:\Program Files\SRS Labs\SRS Control Panel\SRSPanel_64.exe [2165120 2012-03-23] (SRS Labs, Inc.)
HKLM\...\Run: [TPwrMain] - C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [595840 2012-03-03] ()
HKLM\...\Run: [TCrdMain] - C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [989056 2012-03-17] (TOSHIBA Corporation)
HKLM\...\Run: [BatteryManager] - C:\Program Files\TOSHIBA\Power Saver\TBatmgrTrayIcon.EXE [286632 2011-11-25] (TOSHIBA Corporation)
HKLM\...\Run: [TFPUPWDBankService] - C:\Program Files\TOSHIBA\Fingerprint Utility\BrowserAddin\TFPUPWDBank.exe [976256 2012-03-17] (TOSHIBA)
HKLM\...\Run: [TFPUService] - C:\Program Files\TOSHIBA\Fingerprint Utility\TFPUTaskMonitor.exe [896384 2012-03-17] (TOSHIBA)
HKLM\...\Run: [Teco] - C:\Program Files\TOSHIBA\TECO\Teco.exe [1562032 2012-02-29] (TOSHIBA Corporation)
HKLM\...\Run: [TosWaitSrv] - C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [712096 2011-12-15] (TOSHIBA Corporation)
HKLM\...\Run: [ThpSrv] - C:\windows\system32\thpsrv /logon
HKLM\...\Run: [TosSENotify] - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [710560 2012-04-12] (TOSHIBA Corporation)
HKLM\...\Run: [TosVolRegulator] - C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe [24376 2009-11-12] (TOSHIBA Corporation)
HKLM\...\Run: [Toshiba TEMPRO] - C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe [1546720 2011-02-10] (Toshiba Europe GmbH)
HKLM\...\Run: [Toshiba Registration] - C:\Program Files\TOSHIBA\Registration\ToshibaReminder.exe [150992 2012-07-20] (Toshiba Europe GmbH)
HKLM\...\Run: [C:\windows\system32\V0700Ext.ax] - C:\windows\system32\RegSvr32.exe /s C:\windows\system32\V0700Ext.ax
HKLM-x32\...\Run: [NBAgent] - C:\Program Files (x86)\Nero\Nero 11\Nero BackItUp\NBAgent.exe [1492264 2011-11-18] (Nero AG)
HKLM-x32\...\Run: [ITSecMng] - C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe [80840 2011-04-02] (TOSHIBA CORPORATION)
HKLM-x32\...\Run: [USB3MON] - C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-02-27] (Intel Corporation)
HKLM-x32\...\Run: [TOSDCR] - C:\Program Files (x86)\TOSHIBA\PasswordUtility\TOSDCR.exe [169296 2007-08-29] ()
HKLM-x32\...\Run: [TSleepSrv] - C:\Program Files (x86)\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe [253312 2011-11-22] (TOSHIBA)
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [689744 2014-02-21] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-22] (Apple Inc.)
HKLM-x32\...\Run: [] - [X]
HKLM-x32\...\Run: [V0700Mon.exe] - C:\windows\V0700Mon.exe [28672 2011-08-22] (Creative Technology Ltd.)
HKLM-x32\...\Run: [C:\windows\SysWOW64\V0700Ext.ax] - C:\windows\system32\RegSvr32.exe /s C:\windows\SysWOW64\V0700Ext.ax
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-10-01] (Apple Inc.)
HKLM-x32\...\Run: [PDFPrint] - C:\Program Files (x86)\PDF24\pdf24.exe [189480 2014-02-06] (Geek Software GmbH)
Winlogon\Notify\igfxcui: C:\windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-841564128-3781387021-3100291230-1000\...\Run: [Spotify Web Helper] - C:\Users\Katrin\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1171968 2014-03-10] (Spotify Ltd)
HKU\S-1-5-21-841564128-3781387021-3100291230-1000\...\Run: [HW_OPENEYE_OUC_Mobile Partner] - C:\Program Files (x86)\Mobile Partner\UpdateDog\ouc.exe [110592 2009-07-28] (Huawei Technologies Co., Ltd.)
HKU\S-1-5-21-841564128-3781387021-3100291230-1000\...\MountPoints2: F - F:\AutoRun.exe
HKU\S-1-5-21-841564128-3781387021-3100291230-1000\...\MountPoints2: {0d0762e3-12d5-11e3-8084-028037ec0200} - F:\AutoRun.exe
HKU\S-1-5-21-841564128-3781387021-3100291230-1000\...\MountPoints2: {0d0762f8-12d5-11e3-8084-028037ec0200} - E:\AutoRun.exe
HKU\S-1-5-21-841564128-3781387021-3100291230-1000\...\MountPoints2: {60340257-1ed4-11e3-82dd-028037ec0200} - E:\AutoRun.exe
HKU\S-1-5-21-841564128-3781387021-3100291230-1000\...\MountPoints2: {60340265-1ed4-11e3-82dd-028037ec0200} - E:\AutoRun.exe
HKU\S-1-5-21-841564128-3781387021-3100291230-1000\...\MountPoints2: {f0e07065-191f-11e3-8265-028037ec0200} - E:\AutoRun.exe
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
Startup: C:\Users\Katrin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Katrin\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\Katrin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.4.1.lnk
ShortcutTarget: OpenOffice.org 3.4.1.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://toshiba13.msn.com
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xAA38639707E9CE01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE
HKCU\Software\Microsoft\Internet Explorer\Main,bProtector Start Page =
SearchScopes: HKLM - DefaultScope {9C015D74-8802-49F4-BF57-B54D1E87FCC7} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE9TR&src=IE9TR&pc=MATMJS;
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM - {9C015D74-8802-49F4-BF57-B54D1E87FCC7} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE9TR&src=IE9TR&pc=MATMJS;
SearchScopes: HKLM-x32 - DefaultScope {9C015D74-8802-49F4-BF57-B54D1E87FCC7} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE9TR&src=IE9TR&pc=MATMJS;
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - {9C015D74-8802-49F4-BF57-B54D1E87FCC7} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE9TR&src=IE9TR&pc=MATMJS;
SearchScopes: HKCU - DefaultScope {9C015D74-8802-49F4-BF57-B54D1E87FCC7} URL =
SearchScopes: HKCU - bProtectorDefaultScope {9C015D74-8802-49F4-BF57-B54D1E87FCC7}
SearchScopes: HKCU - {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL =
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO: TOSHIBA Media Controller Plug-in - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\x64\TOSHIBAMediaControllerIE.dll (<TOSHIBA>)
BHO: Hotspot Shield Class - {F9E4A054-E9B1-4BC3-83A3-76A1AE736170} - C:\Program Files (x86)\Hotspot Shield\HssIE\HssIE_64.dll No File
BHO-x32: TOSHIBA Fingerprint Utility Automatic Password Input - {030AC7B6-E7EC-40F1-8FB2-C0FD344DE0B9} - C:\Program Files\TOSHIBA\Fingerprint Utility\BrowserAddin\TFPUPWDBankBHO.dll (TOSHIBA)
BHO-x32: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GmbH)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO-x32: TOSHIBA Media Controller Plug-in - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll (<TOSHIBA>)
BHO-x32: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
Toolbar: HKLM-x32 - PDF Architect Toolbar - {25A3A431-30BB-47C8-AD6A-E1063801134F} - C:\Program Files (x86)\PDF Architect\PDFIEPlugin.dll (pdfforge GmbH)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 10.1.1.1
FireFox:
========
FF ProfilePath: C:\Users\Katrin\AppData\Roaming\Mozilla\Firefox\Profiles\1rs9kzhx.default
FF user.js: detected! => C:\Users\Katrin\AppData\Roaming\Mozilla\Firefox\Profiles\1rs9kzhx.default\user.js
FF NewTab: hxxp://www.delta-search.com/?affID=121562&tt=gc_&babsrc=NT_ss&mntrId=9807028037EC0200
FF SearchEngineOrder.1: Delta Search
FF SelectedSearchEngine: user_pref("browser.search.selectedEngine", "");
FF Homepage: hxxp://search.babylon.com/?affID=121562&tt=gc_&babsrc=HP_ss_din2g&mntrId=9807028037EC0200
FF NetworkProxy: "autoconfig_url", "data:text/javascript,function%20FindProxyForURL(url%2C%20host)%20%7Bif%20((url.indexOf('proxmate%3Dactive')%20!%3D%20-1%20%26%26%20url.indexOf('amazonaws.com')%20%3D%3D%20-1)%20%7C%7C%20(url.indexOf('proxmate%3Dus')%20!%3D%20-1)%20%7C%7C%20shExpMatch(url%2C%20'https%3A%2F%2Fwww.daisuki.net*')%20%7C%7C%20url.indexOf('southparkstudios.com')%20!%3D%20-1%20%7C%7C%20url.indexOf('discoverymedia.com')%20!%3D%20-1%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fgrooveshark.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fretro.grooveshark.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fhtml5.grooveshark.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Flisten.grooveshark.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fwww.grooveshark.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fwww.mtv.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fmedia.mtvnservices.com*')%20%7C%7C%20(url.indexOf('turntable.fm')%20!%3D%20-1%20%26%26%20url.indexOf('static.turntable.fm')%20%3D%3D%20-1%20%26%26%20url.indexOf('s3.amazonaws.com')%20%3D%3D%20-1%20%26%26%20url.indexOf('ping.chartbeat.net')%20%3D%3D%20-1)%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fwww.iheart.com*')%20%7C%7C%20url.indexOf('play.google.com')%20!%3D%20-1%20%7C%7C%20(url.indexOf('youtube.com%2Fvideoplayback')%20!%3D%20-1%20%26%26%20url.indexOf('%26gcr%3Dus')%20!%3D%20-1%20%26%26%20url.indexOf('%26ptchn')%20!%3D%20-1)%20%7C%7C%20url.indexOf('.brightcove.com')%20!%3D%20-1%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fsongza.com*')%20%7C%7C%20host%20%3D%3D%20's.hulu.com'%20%7C%7C%20url.indexOf('vevo.com')%20!%3D%20-1%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fwww.rdio.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fwww.crunchyroll.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fwww.funimation.com*')%20%7C%7C%20shExpMatch(url%2C%20'https%3A%2F%2Fsecure.funimation.com*')%20%7C%7C%20host%20%3D%3D%20'www.pandora.com')%20%7B%20return%20'PROXY%20ab-us15.personalitycores.com%3A8000%3B%20PROXY%20ab-us13.personalitycores.com%3A8000%3B%20PROXY%20ab-us03.personalitycores.com%3A8000%3B%20PROXY%20ab-us09.personalitycores.com%3A8000%3B%20PROXY%20ab-us08.personalitycores.com%3A8000%3B%20PROXY%20ab-us02.personalitycores.com%3A8000%3B%20PROXY%20ab-us10.personalitycores.com%3A8000%3B%20PROXY%20ab-us07.personalitycores.com%3A8000%3B%20PROXY%20ab-us01.personalitycores.com%3A8000%3B%20PROXY%20ab-us16.personalitycores.com%3A8000%3B%20PROXY%20ab-us12.personalitycores.com%3A8000%3B%20PROXY%20ab-us14.personalitycores.com%3A8000%3B%20PROXY%20ab-us17.personalitycores.com%3A8000%3B%20PROXY%20ab-us11.personalitycores.com%3A8000%3B%20PROXY%20ab-us18.personalitycores.com%3A8000'%3B%7D%20%20else%20%7B%20return%20'DIRECT'%3B%20%7D%7D"
FF NetworkProxy: "type", 2
FF Plugin: @adobe.com/FlashPlayer - C:\windows\system32\Macromed\Flash\NPSWF64_12_0_0_77.dll ()
FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf - C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf - C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf - C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/JavaPlugin - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @Nero.com/KM - C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL (Nero AG)
FF Plugin-x32: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf - C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf - C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF SearchPlugin: C:\Users\Katrin\AppData\Roaming\Mozilla\Firefox\Profiles\1rs9kzhx.default\searchplugins\babylon.xml
FF SearchPlugin: C:\Users\Katrin\AppData\Roaming\Mozilla\Firefox\Profiles\1rs9kzhx.default\searchplugins\BrowserDefender.xml
FF SearchPlugin: C:\Users\Katrin\AppData\Roaming\Mozilla\Firefox\Profiles\1rs9kzhx.default\searchplugins\delta.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: Delta Toolbar - C:\Users\Katrin\AppData\Roaming\Mozilla\Firefox\Profiles\1rs9kzhx.default\Extensions\ffxtlbr@delta.com [2013-05-31]
FF HKLM-x32\...\Firefox\Extensions: [{302BCF7B-E09E-4854-9F2F-8B2DA4EF70F9}] - C:\Program Files\TOSHIBA\Fingerprint Utility\BrowserAddin\FirefoxAddin
FF Extension: TOSHIBA Fingerprint Utility Automatic Password Input - C:\Program Files\TOSHIBA\Fingerprint Utility\BrowserAddin\FirefoxAddin [2012-11-20]
FF HKLM-x32\...\Firefox\Extensions: [{ACAA314B-EEBA-48e4-AD47-84E31C44796C}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff\
FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2013-05-28]
FF HKLM-x32\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt
FF Extension: PDF Architect Converter For Firefox - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt [2013-09-03]
FF HKCU\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2013-05-28]
==================== Services (Whitelisted) =================
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440400 2014-02-21] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440400 2014-02-21] (Avira Operations GmbH & Co. KG)
R2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [339456 2010-11-17] ()
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128280 2012-02-22] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2012-02-22] (Intel Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273168 2012-02-27] ()
R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-09] (pdfforge GmbH)
R2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-09] (pdfforge GmbH)
S3 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [112080 2011-02-10] (Toshiba Europe GmbH)
R2 WMCoreService; C:\Program Files (x86)\TOSHIBA\Mobile Broadband Device\WMCore\mini_WMCore.exe [655912 2011-11-19] (Ericsson AB)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [2669840 2012-02-27] (Intel® Corporation)
==================== Drivers (Whitelisted) ====================
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2014-02-21] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131576 2014-02-21] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-11-26] (Avira Operations GmbH & Co. KG)
R3 ecnssndis; C:\Windows\System32\Drivers\wwuss64.sys [26664 2011-10-06] (Ericsson AB)
R3 ecnssndisfltr; C:\Windows\System32\Drivers\wwussf64.sys [29736 2011-10-06] (Ericsson AB)
R3 Mbm3CBus; C:\Windows\System32\DRIVERS\Mbm3CBus.sys [419400 2011-10-06] (MCCI Corporation)
R3 Mbm3DevMt; C:\Windows\System32\DRIVERS\Mbm3DevMt.sys [430664 2011-10-06] (MCCI Corporation)
R3 Mbm3mdfl; C:\Windows\System32\DRIVERS\Mbm3mdfl.sys [19528 2011-10-06] (MCCI Corporation)
R3 Mbm3Mdm; C:\Windows\System32\DRIVERS\Mbm3Mdm.sys [483400 2011-10-06] (MCCI Corporation)
R3 t36wgps; C:\Windows\System32\DRIVERS\t36wgps64.sys [102440 2011-10-06] (Ericsson AB)
S3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2013-06-21] (Anchorfree Inc.)
S3 Tosrfcom; No ImagePath
S3 V0700Vid; C:\Windows\System32\DRIVERS\V0700Vid.sys [393920 2011-09-07] (Creative Technology Ltd.)
R3 WwanUsbServ; C:\Windows\System32\DRIVERS\WwanUsbMp64.sys [282152 2011-12-08] (Ericsson AB)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-03-29 10:23 - 2014-03-29 10:23 - 00026707 _____ () C:\Users\Katrin\Downloads\FRST.txt
2014-03-29 10:23 - 2014-03-29 10:23 - 00000000 ____D () C:\FRST
2014-03-29 10:22 - 2014-03-29 10:22 - 02157056 _____ (Farbar) C:\Users\Katrin\Downloads\FRST64.exe
2014-03-28 22:46 - 2014-03-28 22:46 - 00281120 _____ () C:\windows\Minidump\032814-19281-01.dmp
2014-03-28 22:14 - 2014-03-28 22:14 - 00281136 _____ () C:\windows\Minidump\032814-24351-01.dmp
2014-03-28 22:07 - 2014-03-28 22:08 - 00281120 _____ () C:\windows\Minidump\032814-18345-01.dmp
2014-03-28 22:00 - 2014-03-28 22:00 - 00281240 _____ () C:\windows\Minidump\032814-26005-01.dmp
2014-03-28 21:53 - 2014-03-28 22:46 - 575631700 _____ () C:\windows\MEMORY.DMP
2014-03-28 21:53 - 2014-03-28 22:46 - 00000000 ____D () C:\windows\Minidump
2014-03-28 21:53 - 2014-03-28 21:53 - 00284888 _____ () C:\windows\Minidump\032814-38142-01.dmp
2014-03-25 09:01 - 2014-03-25 09:01 - 00000000 ____D () C:\Users\Katrin\AppData\Local\Skype
2014-03-12 16:52 - 2014-03-01 17:05 - 23133696 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-03-12 16:52 - 2014-03-01 16:17 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-03-12 16:52 - 2014-03-01 16:16 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2014-03-12 16:52 - 2014-03-01 15:58 - 02765824 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-03-12 16:52 - 2014-03-01 15:52 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2014-03-12 16:52 - 2014-03-01 15:51 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2014-03-12 16:52 - 2014-03-01 15:42 - 00053760 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-03-12 16:52 - 2014-03-01 15:40 - 00033792 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2014-03-12 16:52 - 2014-03-01 15:37 - 00574976 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-03-12 16:52 - 2014-03-01 15:33 - 00139264 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-03-12 16:52 - 2014-03-01 15:33 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2014-03-12 16:52 - 2014-03-01 15:32 - 00708608 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2014-03-12 16:52 - 2014-03-01 15:30 - 17074688 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2014-03-12 16:52 - 2014-03-01 15:23 - 00940032 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2014-03-12 16:52 - 2014-03-01 15:17 - 00218624 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2014-03-12 16:52 - 2014-03-01 15:11 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2014-03-12 16:52 - 2014-03-01 15:02 - 00195584 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2014-03-12 16:52 - 2014-03-01 14:54 - 05768704 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-03-12 16:52 - 2014-03-01 14:52 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2014-03-12 16:52 - 2014-03-01 14:51 - 00051200 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2014-03-12 16:52 - 2014-03-01 14:47 - 02168320 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2014-03-12 16:52 - 2014-03-01 14:43 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2014-03-12 16:52 - 2014-03-01 14:43 - 00032768 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2014-03-12 16:52 - 2014-03-01 14:42 - 00627200 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-03-12 16:52 - 2014-03-01 14:40 - 00440832 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2014-03-12 16:52 - 2014-03-01 14:38 - 00112128 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2014-03-12 16:52 - 2014-03-01 14:37 - 00553472 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2014-03-12 16:52 - 2014-03-01 14:35 - 02041856 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-03-12 16:52 - 2014-03-01 14:18 - 13051904 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-03-12 16:52 - 2014-03-01 14:16 - 00164864 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2014-03-12 16:52 - 2014-03-01 14:14 - 04244480 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2014-03-12 16:52 - 2014-03-01 14:10 - 02334208 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-03-12 16:52 - 2014-03-01 14:03 - 00524288 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2014-03-12 16:52 - 2014-03-01 14:00 - 01964032 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2014-03-12 16:52 - 2014-03-01 13:57 - 11266048 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2014-03-12 16:52 - 2014-03-01 13:38 - 01393664 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-03-12 16:52 - 2014-03-01 13:32 - 01820160 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2014-03-12 16:52 - 2014-03-01 13:27 - 01156096 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2014-03-12 16:52 - 2014-03-01 13:25 - 00817664 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2014-03-12 16:52 - 2014-03-01 13:25 - 00703488 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2014-03-12 16:41 - 2014-02-07 12:23 - 03156480 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2014-03-12 16:41 - 2014-01-29 13:32 - 00484864 _____ (Microsoft Corporation) C:\windows\system32\wer.dll
2014-03-12 16:41 - 2014-01-29 13:06 - 00381440 _____ (Microsoft Corporation) C:\windows\SysWOW64\wer.dll
2014-03-12 16:41 - 2014-01-28 13:32 - 00228864 _____ (Microsoft Corporation) C:\windows\system32\wwansvc.dll
2014-03-12 16:36 - 2014-02-04 13:32 - 01424384 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecs.dll
2014-03-12 16:36 - 2014-02-04 13:32 - 00624128 _____ (Microsoft Corporation) C:\windows\system32\qedit.dll
2014-03-12 16:36 - 2014-02-04 13:04 - 01230336 _____ (Microsoft Corporation) C:\windows\SysWOW64\WindowsCodecs.dll
2014-03-12 16:36 - 2014-02-04 13:04 - 00509440 _____ (Microsoft Corporation) C:\windows\SysWOW64\qedit.dll
2014-03-10 20:09 - 2014-03-10 20:09 - 00127080 _____ (Spotify Ltd) C:\Users\Katrin\Downloads\SpotifySetup.exe
2014-03-02 11:04 - 2013-12-21 20:53 - 00548864 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-03-02 11:04 - 2013-12-21 19:56 - 00454656 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2014-02-27 14:26 - 2014-02-27 14:26 - 00018774 _____ () C:\windows\PFRO.log
2014-02-27 14:07 - 2013-05-10 16:56 - 14631424 _____ (Microsoft Corporation) C:\windows\system32\wmp.dll
2014-02-27 14:07 - 2013-05-10 16:56 - 12625920 _____ (Microsoft Corporation) C:\windows\system32\wmploc.DLL
2014-02-27 14:07 - 2013-05-10 15:56 - 12625408 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmploc.DLL
2014-02-27 14:07 - 2013-05-10 15:56 - 11410432 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmp.dll
2014-02-27 13:57 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\windows\system32\IEUDINIT.EXE
2014-02-27 13:49 - 2014-02-27 13:49 - 01228800 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 01051136 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00942592 _____ (Microsoft Corporation) C:\windows\system32\jsIntl.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00774144 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00645120 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsIntl.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00616104 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dat
2014-02-27 13:49 - 2014-02-27 13:49 - 00616104 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dat
2014-02-27 13:49 - 2014-02-27 13:49 - 00610304 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00453120 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00413696 _____ (Microsoft Corporation) C:\windows\system32\html.iec
2014-02-27 13:49 - 2014-02-27 13:49 - 00367104 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00337408 _____ (Microsoft Corporation) C:\windows\SysWOW64\html.iec
2014-02-27 13:49 - 2014-02-27 13:49 - 00296960 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00263376 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00247808 _____ (Microsoft Corporation) C:\windows\system32\msls31.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00244736 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00243200 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00238288 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00235520 _____ (Microsoft Corporation) C:\windows\system32\url.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00235008 _____ (Microsoft Corporation) C:\windows\system32\elshyph.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00233472 _____ (Microsoft Corporation) C:\windows\SysWOW64\url.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00208384 _____ (Microsoft Corporation) C:\windows\SysWOW64\webcheck.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00194048 _____ (Microsoft Corporation) C:\windows\SysWOW64\elshyph.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00182272 _____ (Microsoft Corporation) C:\windows\SysWOW64\msls31.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00167424 _____ (Microsoft Corporation) C:\windows\system32\iexpress.exe
2014-02-27 13:49 - 2014-02-27 13:49 - 00151552 _____ (Microsoft Corporation) C:\windows\SysWOW64\iexpress.exe
2014-02-27 13:49 - 2014-02-27 13:49 - 00147968 _____ (Microsoft Corporation) C:\windows\system32\occache.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00143872 _____ (Microsoft Corporation) C:\windows\system32\wextract.exe
2014-02-27 13:49 - 2014-02-27 13:49 - 00139264 _____ (Microsoft Corporation) C:\windows\SysWOW64\wextract.exe
2014-02-27 13:49 - 2014-02-27 13:49 - 00135680 _____ (Microsoft Corporation) C:\windows\system32\iepeers.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00131072 _____ (Microsoft Corporation) C:\windows\system32\IEAdvpack.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00127488 _____ (Microsoft Corporation) C:\windows\SysWOW64\occache.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00116736 _____ (Microsoft Corporation) C:\windows\SysWOW64\iepeers.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00111616 _____ (Microsoft Corporation) C:\windows\SysWOW64\IEAdvpack.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00105984 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00101376 _____ (Microsoft Corporation) C:\windows\system32\inseng.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00090112 _____ (Microsoft Corporation) C:\windows\system32\SetIEInstalledDate.exe
2014-02-27 13:49 - 2014-02-27 13:49 - 00086016 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesysprep.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00086016 _____ (Microsoft Corporation) C:\windows\system32\RegisterIEPKEYs.exe
2014-02-27 13:49 - 2014-02-27 13:49 - 00084992 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00083968 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00083456 _____ (Microsoft Corporation) C:\windows\SysWOW64\inseng.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00081408 _____ (Microsoft Corporation) C:\windows\system32\icardie.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00077312 _____ (Microsoft Corporation) C:\windows\system32\tdc.ocx
2014-02-27 13:49 - 2014-02-27 13:49 - 00074240 _____ (Microsoft Corporation) C:\windows\SysWOW64\SetIEInstalledDate.exe
2014-02-27 13:49 - 2014-02-27 13:49 - 00071680 _____ (Microsoft Corporation) C:\windows\SysWOW64\RegisterIEPKEYs.exe
2014-02-27 13:49 - 2014-02-27 13:49 - 00069632 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00069120 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardie.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00062464 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdc.ocx
2014-02-27 13:49 - 2014-02-27 13:49 - 00062464 _____ (Microsoft Corporation) C:\windows\system32\pngfilt.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00056832 _____ (Microsoft Corporation) C:\windows\SysWOW64\pngfilt.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00052224 _____ (Microsoft Corporation) C:\windows\system32\msfeedsbs.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00048640 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmler.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\mshtmler.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00048128 _____ (Microsoft Corporation) C:\windows\system32\imgutil.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedsbs.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00040448 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00036352 _____ (Microsoft Corporation) C:\windows\SysWOW64\imgutil.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00034816 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00030208 _____ (Microsoft Corporation) C:\windows\system32\licmgr10.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00024576 _____ (Microsoft Corporation) C:\windows\SysWOW64\licmgr10.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00013824 _____ (Microsoft Corporation) C:\windows\system32\mshta.exe
2014-02-27 13:49 - 2014-02-27 13:49 - 00013312 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshta.exe
2014-02-27 13:49 - 2014-02-27 13:49 - 00013312 _____ (Microsoft Corporation) C:\windows\system32\msfeedssync.exe
2014-02-27 13:49 - 2014-02-27 13:49 - 00012800 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedssync.exe
2014-02-27 13:47 - 2014-02-27 13:58 - 00010277 _____ () C:\windows\IE11_main.log
==================== One Month Modified Files and Folders =======
2014-03-29 10:23 - 2014-03-29 10:23 - 00026707 _____ () C:\Users\Katrin\Downloads\FRST.txt
2014-03-29 10:23 - 2014-03-29 10:23 - 00000000 ____D () C:\FRST
2014-03-29 10:22 - 2014-03-29 10:22 - 02157056 _____ (Farbar) C:\Users\Katrin\Downloads\FRST64.exe
2014-03-29 10:18 - 2012-07-20 12:41 - 00000830 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2014-03-29 10:18 - 2009-07-14 15:45 - 00027568 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-03-29 10:18 - 2009-07-14 15:45 - 00027568 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-03-29 10:14 - 2012-11-20 23:00 - 01486891 _____ () C:\windows\WindowsUpdate.log
2014-03-29 10:13 - 2013-07-11 08:17 - 00000000 ___RD () C:\Users\Katrin\Dropbox
2014-03-29 10:13 - 2013-07-11 08:14 - 00000000 ____D () C:\Users\Katrin\AppData\Roaming\Dropbox
2014-03-29 10:10 - 2014-01-22 21:30 - 00003483 _____ () C:\windows\setupact.log
2014-03-29 10:10 - 2012-11-20 23:00 - 00000828 _____ () C:\windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job
2014-03-29 10:10 - 2009-07-14 16:08 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-03-28 22:46 - 2014-03-28 22:46 - 00281120 _____ () C:\windows\Minidump\032814-19281-01.dmp
2014-03-28 22:46 - 2014-03-28 21:53 - 575631700 _____ () C:\windows\MEMORY.DMP
2014-03-28 22:46 - 2014-03-28 21:53 - 00000000 ____D () C:\windows\Minidump
2014-03-28 22:45 - 2009-07-14 16:08 - 00032632 _____ () C:\windows\Tasks\SCHEDLGU.TXT
2014-03-28 22:17 - 2013-01-20 01:11 - 00000000 ____D () C:\Users\Katrin
2014-03-28 22:14 - 2014-03-28 22:14 - 00281136 _____ () C:\windows\Minidump\032814-24351-01.dmp
2014-03-28 22:08 - 2014-03-28 22:07 - 00281120 _____ () C:\windows\Minidump\032814-18345-01.dmp
2014-03-28 22:00 - 2014-03-28 22:00 - 00281240 _____ () C:\windows\Minidump\032814-26005-01.dmp
2014-03-28 21:57 - 2011-02-11 20:56 - 00699666 _____ () C:\windows\system32\perfh007.dat
2014-03-28 21:57 - 2011-02-11 20:56 - 00149774 _____ () C:\windows\system32\perfc007.dat
2014-03-28 21:57 - 2009-07-14 16:13 - 01620612 _____ () C:\windows\system32\PerfStringBackup.INI
2014-03-28 21:53 - 2014-03-28 21:53 - 00284888 _____ () C:\windows\Minidump\032814-38142-01.dmp
2014-03-28 21:50 - 2013-01-21 01:12 - 00000000 ____D () C:\Users\Katrin\AppData\Roaming\Skype
2014-03-27 21:55 - 2013-01-28 02:43 - 00000000 ____D () C:\Users\Katrin\AppData\Roaming\Spotify
2014-03-27 21:01 - 2013-01-21 01:17 - 00000000 ____D () C:\Users\Katrin\Documents\Sonstiges
2014-03-27 13:33 - 2012-11-20 23:00 - 00000830 _____ () C:\windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job
2014-03-25 11:27 - 2013-01-28 02:44 - 00000000 ____D () C:\Users\Katrin\AppData\Local\Spotify
2014-03-25 09:01 - 2014-03-25 09:01 - 00000000 ____D () C:\Users\Katrin\AppData\Local\Skype
2014-03-25 09:01 - 2013-06-20 10:55 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-03-25 09:01 - 2012-07-20 12:54 - 00000000 ____D () C:\ProgramData\Skype
2014-03-15 23:35 - 2013-02-04 00:24 - 00000367 _____ () C:\Users\Katrin\AppData\Roaming\SpotifyRecorderSettings.ini
2014-03-13 09:21 - 2009-07-14 15:45 - 00295520 _____ () C:\windows\system32\FNTCACHE.DAT
2014-03-13 09:20 - 2013-06-20 10:55 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-03-13 09:20 - 2013-06-20 10:55 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-03-13 09:01 - 2012-07-20 12:41 - 00692616 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2014-03-13 09:01 - 2012-07-20 12:41 - 00071048 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-03-13 09:01 - 2012-07-20 12:41 - 00003768 _____ () C:\windows\System32\Tasks\Adobe Flash Player Updater
2014-03-10 20:52 - 2013-01-28 02:44 - 00001823 _____ () C:\Users\Katrin\Desktop\Spotify.lnk
2014-03-10 20:52 - 2013-01-28 02:44 - 00001809 _____ () C:\Users\Katrin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk
2014-03-10 20:09 - 2014-03-10 20:09 - 00127080 _____ (Spotify Ltd) C:\Users\Katrin\Downloads\SpotifySetup.exe
2014-03-06 22:37 - 2013-11-26 09:43 - 00000000 ____D () C:\Users\Katrin\Documents\Auslandsdokumente
2014-03-06 22:36 - 2013-09-06 00:20 - 00404480 ___SH () C:\Users\Katrin\Downloads\Thumbs.db
2014-03-05 21:58 - 2013-11-27 21:18 - 00000000 ____D () C:\Users\Katrin\Documents\Bewerbung
2014-03-03 15:38 - 2009-07-14 16:09 - 00000000 ____D () C:\windows\System32\Tasks\WPD
2014-03-02 11:08 - 2013-02-14 09:02 - 01594892 _____ () C:\windows\SysWOW64\PerfStringBackup.INI
2014-03-01 17:05 - 2014-03-12 16:52 - 23133696 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-03-01 16:17 - 2014-03-12 16:52 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-03-01 16:16 - 2014-03-12 16:52 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2014-03-01 15:58 - 2014-03-12 16:52 - 02765824 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-03-01 15:52 - 2014-03-12 16:52 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2014-03-01 15:51 - 2014-03-12 16:52 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2014-03-01 15:42 - 2014-03-12 16:52 - 00053760 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-03-01 15:40 - 2014-03-12 16:52 - 00033792 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2014-03-01 15:37 - 2014-03-12 16:52 - 00574976 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-03-01 15:33 - 2014-03-12 16:52 - 00139264 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-03-01 15:33 - 2014-03-12 16:52 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2014-03-01 15:32 - 2014-03-12 16:52 - 00708608 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2014-03-01 15:30 - 2014-03-12 16:52 - 17074688 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2014-03-01 15:23 - 2014-03-12 16:52 - 00940032 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2014-03-01 15:17 - 2014-03-12 16:52 - 00218624 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2014-03-01 15:11 - 2014-03-12 16:52 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2014-03-01 15:02 - 2014-03-12 16:52 - 00195584 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2014-03-01 14:54 - 2014-03-12 16:52 - 05768704 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-03-01 14:52 - 2014-03-12 16:52 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2014-03-01 14:51 - 2014-03-12 16:52 - 00051200 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2014-03-01 14:47 - 2014-03-12 16:52 - 02168320 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2014-03-01 14:43 - 2014-03-12 16:52 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2014-03-01 14:43 - 2014-03-12 16:52 - 00032768 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2014-03-01 14:42 - 2014-03-12 16:52 - 00627200 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-03-01 14:40 - 2014-03-12 16:52 - 00440832 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2014-03-01 14:38 - 2014-03-12 16:52 - 00112128 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2014-03-01 14:37 - 2014-03-12 16:52 - 00553472 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2014-03-01 14:35 - 2014-03-12 16:52 - 02041856 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-03-01 14:18 - 2014-03-12 16:52 - 13051904 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-03-01 14:16 - 2014-03-12 16:52 - 00164864 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2014-03-01 14:14 - 2014-03-12 16:52 - 04244480 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2014-03-01 14:10 - 2014-03-12 16:52 - 02334208 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-03-01 14:03 - 2014-03-12 16:52 - 00524288 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2014-03-01 14:00 - 2014-03-12 16:52 - 01964032 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2014-03-01 13:57 - 2014-03-12 16:52 - 11266048 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2014-03-01 13:38 - 2014-03-12 16:52 - 01393664 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-03-01 13:32 - 2014-03-12 16:52 - 01820160 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2014-03-01 13:27 - 2014-03-12 16:52 - 01156096 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2014-03-01 13:25 - 2014-03-12 16:52 - 00817664 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2014-03-01 13:25 - 2014-03-12 16:52 - 00703488 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2014-02-27 17:34 - 2013-01-20 01:20 - 00001432 _____ () C:\Users\Katrin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-02-27 14:29 - 2012-07-21 13:36 - 00000000 ____D () C:\windows\Panther
2014-02-27 14:26 - 2014-02-27 14:26 - 00018774 _____ () C:\windows\PFRO.log
2014-02-27 14:24 - 2009-07-14 14:20 - 00000000 ____D () C:\windows\PolicyDefinitions
2014-02-27 13:58 - 2014-02-27 13:47 - 00010277 _____ () C:\windows\IE11_main.log
2014-02-27 13:49 - 2014-02-27 13:49 - 01228800 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 01051136 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00942592 _____ (Microsoft Corporation) C:\windows\system32\jsIntl.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00774144 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00645120 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsIntl.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00616104 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dat
2014-02-27 13:49 - 2014-02-27 13:49 - 00616104 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dat
2014-02-27 13:49 - 2014-02-27 13:49 - 00610304 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00453120 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00413696 _____ (Microsoft Corporation) C:\windows\system32\html.iec
2014-02-27 13:49 - 2014-02-27 13:49 - 00367104 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00337408 _____ (Microsoft Corporation) C:\windows\SysWOW64\html.iec
2014-02-27 13:49 - 2014-02-27 13:49 - 00296960 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00263376 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00247808 _____ (Microsoft Corporation) C:\windows\system32\msls31.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00244736 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00243200 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00238288 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00235520 _____ (Microsoft Corporation) C:\windows\system32\url.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00235008 _____ (Microsoft Corporation) C:\windows\system32\elshyph.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00233472 _____ (Microsoft Corporation) C:\windows\SysWOW64\url.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00208384 _____ (Microsoft Corporation) C:\windows\SysWOW64\webcheck.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00194048 _____ (Microsoft Corporation) C:\windows\SysWOW64\elshyph.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00182272 _____ (Microsoft Corporation) C:\windows\SysWOW64\msls31.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00167424 _____ (Microsoft Corporation) C:\windows\system32\iexpress.exe
2014-02-27 13:49 - 2014-02-27 13:49 - 00151552 _____ (Microsoft Corporation) C:\windows\SysWOW64\iexpress.exe
2014-02-27 13:49 - 2014-02-27 13:49 - 00147968 _____ (Microsoft Corporation) C:\windows\system32\occache.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00143872 _____ (Microsoft Corporation) C:\windows\system32\wextract.exe
2014-02-27 13:49 - 2014-02-27 13:49 - 00139264 _____ (Microsoft Corporation) C:\windows\SysWOW64\wextract.exe
2014-02-27 13:49 - 2014-02-27 13:49 - 00135680 _____ (Microsoft Corporation) C:\windows\system32\iepeers.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00131072 _____ (Microsoft Corporation) C:\windows\system32\IEAdvpack.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00127488 _____ (Microsoft Corporation) C:\windows\SysWOW64\occache.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00116736 _____ (Microsoft Corporation) C:\windows\SysWOW64\iepeers.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00111616 _____ (Microsoft Corporation) C:\windows\SysWOW64\IEAdvpack.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00105984 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00101376 _____ (Microsoft Corporation) C:\windows\system32\inseng.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00090112 _____ (Microsoft Corporation) C:\windows\system32\SetIEInstalledDate.exe
2014-02-27 13:49 - 2014-02-27 13:49 - 00086016 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesysprep.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00086016 _____ (Microsoft Corporation) C:\windows\system32\RegisterIEPKEYs.exe
2014-02-27 13:49 - 2014-02-27 13:49 - 00084992 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00083968 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00083456 _____ (Microsoft Corporation) C:\windows\SysWOW64\inseng.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00081408 _____ (Microsoft Corporation) C:\windows\system32\icardie.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00077312 _____ (Microsoft Corporation) C:\windows\system32\tdc.ocx
2014-02-27 13:49 - 2014-02-27 13:49 - 00074240 _____ (Microsoft Corporation) C:\windows\SysWOW64\SetIEInstalledDate.exe
2014-02-27 13:49 - 2014-02-27 13:49 - 00071680 _____ (Microsoft Corporation) C:\windows\SysWOW64\RegisterIEPKEYs.exe
2014-02-27 13:49 - 2014-02-27 13:49 - 00069632 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00069120 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardie.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00062464 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdc.ocx
2014-02-27 13:49 - 2014-02-27 13:49 - 00062464 _____ (Microsoft Corporation) C:\windows\system32\pngfilt.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00056832 _____ (Microsoft Corporation) C:\windows\SysWOW64\pngfilt.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00052224 _____ (Microsoft Corporation) C:\windows\system32\msfeedsbs.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00048640 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmler.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\mshtmler.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00048128 _____ (Microsoft Corporation) C:\windows\system32\imgutil.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedsbs.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00040448 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00036352 _____ (Microsoft Corporation) C:\windows\SysWOW64\imgutil.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00034816 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00030208 _____ (Microsoft Corporation) C:\windows\system32\licmgr10.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00024576 _____ (Microsoft Corporation) C:\windows\SysWOW64\licmgr10.dll
2014-02-27 13:49 - 2014-02-27 13:49 - 00013824 _____ (Microsoft Corporation) C:\windows\system32\mshta.exe
2014-02-27 13:49 - 2014-02-27 13:49 - 00013312 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshta.exe
2014-02-27 13:49 - 2014-02-27 13:49 - 00013312 _____ (Microsoft Corporation) C:\windows\system32\msfeedssync.exe
2014-02-27 13:49 - 2014-02-27 13:49 - 00012800 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedssync.exe
2014-02-27 13:25 - 2013-01-20 01:51 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
Some content of TEMP:
====================
C:\Users\Katrin\AppData\Local\Temp\avgnt.exe
C:\Users\Katrin\AppData\Local\Temp\SkypeSetup.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-03-24 12:18
==================== End Of Log ============================ --- --- ---
--- --- --- Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-03-2014
Ran by Katrin at 2014-03-29 10:24:36
Running from C:\Users\Katrin\Downloads
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Avira Desktop (Enabled - Up to date) {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
AS: Avira Desktop (Enabled - Up to date) {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
64 Bit HP CIO Components Installer (Version: 6.2.2 - Hewlett-Packard) Hidden
7500_7600_7700_Help1 (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden
Adobe Flash Player 12 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 12.0.0.77 - Adobe Systems Incorporated)
Adobe Flash Player 12 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 12.0.0.77 - Adobe Systems Incorporated)
Adobe Reader X (10.1.5) MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}) (Version: 10.1.5 - Adobe Systems Incorporated)
ALPS Touch Pad Driver (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 7.106.303.214 - ALPS ELECTRIC CO., LTD.)
Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{2EF5D87E-B7BD-458F-8428-E4D0B8B4E65C}) (Version: 7.0.0.117 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Audacity 2.0.3 (HKLM-x32\...\Audacity_is1) (Version: 2.0.3 - Audacity Team)
AuthenTec WinBio FingerPrint Software (HKLM\...\{3CEE4431-D0DA-49AA-A78D-5D3B559446DF}) (Version: 3.2.3.1157 - AuthenTec, Inc.)
Avira Free Antivirus (HKLM-x32\...\Avira AntiVir Desktop) (Version: 14.0.3.350 - Avira)
BitGuard (HKLM-x32\...\{15D2D75C-9CB2-4efd-BAD7-B9B4CB4BC693}) (Version: - MediaTechSoft Inc.) <==== ATTENTION
Bluetooth Stack for Windows by Toshiba (HKLM\...\{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}) (Version: v9.00.03(T) - TOSHIBA CORPORATION)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
bpd_scan_Carrier (x32 Version: 3.00.0000 - Hewlett-Packard) Hidden
BPDSoftware (x32 Version: 140.0.000.000 - Hewlett-Packard) Hidden
BPDSoftware_Ini (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden
BufferChm (x32 Version: 140.0.213.000 - Hewlett-Packard) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 4.07 - Piriform)
Creative Live! Cam Chat HD (VF0700) (1.00.06.00) (HKLM\...\Creative VF0700) (Version: - Creative Technology Ltd.)
Delta toolbar (HKLM-x32\...\delta) (Version: 1.8.21.5 - Delta) <==== ATTENTION
Destinations (x32 Version: 130.0.0.0 - Hewlett-Packard) Hidden
DeviceDiscovery (x32 Version: 140.0.213.000 - Hewlett-Packard) Hidden
DocProc (x32 Version: 140.0.100.000 - Hewlett-Packard) Hidden
Dropbox (HKCU\...\Dropbox) (Version: 2.4.11 - Dropbox, Inc.)
Fax (x32 Version: 140.0.213.000 - Hewlett-Packard) Hidden
Free M4a to MP3 Converter 7.2 (HKLM-x32\...\Free M4a to MP3 Converter_is1) (Version: - ManiacTools.com)
Free YouTube to MP3 Converter version 3.12.2.430 (HKLM-x32\...\Free YouTube to MP3 Converter_is1) (Version: 3.12.2.430 - DVDVideoSoft Ltd.)
GIMP 2.8.2 (HKLM\...\GIMP-2_is1) (Version: 2.8.2 - The GIMP Team)
GPBaseService2 (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
High-Definition Video Playback (x32 Version: 11.1.10500.2.65 - Nero AG) Hidden
HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP)
HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP)
HP OfficeJet L7300/L7500/7600/7700 (HKLM\...\{9D6C64CC-EA60-47A6-9C97-82C38231EDAE}) (Version: 14.0 - HP)
HP Smart Web Printing 4.60 (HKLM\...\HP Smart Web Printing) (Version: 4.60 - HP)
HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP)
HP Update (HKLM-x32\...\{74DC0593-6BC6-4001-AD5F-D810AFB68D86}) (Version: 5.002.002.002 - Hewlett-Packard)
HPProductAssistant (x32 Version: 140.0.213.000 - Hewlett-Packard) Hidden
HPSSupply (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
Intel PROSet Wireless (Version: - ) Hidden
Intel(R) Manageability Engine Firmware Recovery Agent (HKLM-x32\...\{A6C48A9F-694A-4234-B3AA-62590B668927}) (Version: 1.0.0.35342 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.0.3.1427 - Intel Corporation)
Intel(R) Network Connections Drivers (HKLM\...\PROSet) (Version: 16.8 - Intel)
Intel(R) OpenCL CPU Runtime (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2712 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.0.0.1032 - Intel Corporation)
Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.4.220 - Intel Corporation)
Intel(R) WiDi (HKLM-x32\...\{7FCB8D5D-9396-4D17-8CFA-349D6D49CD32}) (Version: 3.0.13.0 - Intel Corporation)
Intel® PROSet/Wireless WiFi Software (HKLM\...\{E2D0B67F-8032-4E11-87C6-C8C721D331B3}) (Version: 15.01.0500.0875 - Intel Corporation)
Intel® Trusted Connect Service Client (HKLM\...\{09536BA1-E498-4CC3-B834-D884A67D7E34}) (Version: 1.23.605.1 - Intel Corporation)
iTunes (HKLM\...\{A535111D-95C8-487F-869E-CE4C239972D2}) (Version: 11.1.1.11 - Apple Inc.)
Java Auto Updater (x32 Version: 2.0.6.1 - Sun Microsystems, Inc.) Hidden
Java(TM) 6 Update 30 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83216030FF}) (Version: 6.0.300 - Oracle)
L7500 (x32 Version: 140.0.000.000 - Hewlett-Packard) Hidden
MarketResearch (x32 Version: 140.0.214.000 - Hewlett-Packard) Hidden
Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Office (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.6120.5004 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Mobile Partner (HKLM-x32\...\Mobile Partner) (Version: 16.002.03.04.511 - Huawei Technologies Co.,Ltd)
Motorola Mobile Drivers Installation 6.2.0 (HKLM\...\{8EC78F02-5C36-4C97-AAC4-95A3D742A285}) (Version: 6.2.0 - Motorola Inc.)
Mozilla Firefox 27.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 27.0.1 (x86 de)) (Version: 27.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 27.0.1 - Mozilla)
Mozilla Thunderbird 24.1.1 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 24.1.1 (x86 de)) (Version: 24.1.1 - Mozilla)
MPM (HKLM-x32\...\{B5A4C902-1636-48DB-8E38-F0DB102DDB59}) (Version: 1.00.0000 - Hewlett-Packard)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
Nero 11 Essentials (HKLM-x32\...\{F8635CF8-B797-4EFD-80BC-DE2D26C65D4F}) (Version: 11.0.00300 - Nero AG)
Nero 11 Kwik Themes Basic (x32 Version: 11.0.11200.12.0 - Nero AG) Hidden
Nero BackItUp 11 (x32 Version: 6.0.18000.19.100 - Nero AG) Hidden
Nero BackItUp 11 Help (CHM) (x32 Version: 11.0.10200 - Nero AG) Hidden
Nero Backup Drivers (HKLM\...\{D600D357-5CB9-4DE9-8FD4-14E208BD1970}) (Version: 1.0.11100.8.0 - Nero AG)
Nero BurnRights 11 (x32 Version: 5.0.10300.4.100 - Nero AG) Hidden
Nero BurnRights 11 Help (CHM) (x32 Version: 11.0.10100 - Nero AG) Hidden
Nero ControlCenter 11 (x32 Version: 11.0.12700.0.27 - Nero AG) Hidden
Nero ControlCenter 11 Help (CHM) (x32 Version: 11.0.10300 - Nero AG) Hidden
Nero Core Components 11 (x32 Version: 11.0.15500.1.16 - Nero AG) Hidden
Nero Express 11 (x32 Version: 11.0.11900.24.100 - Nero AG) Hidden
Nero Express 11 Help (CHM) (x32 Version: 11.0.10300 - Nero AG) Hidden
Nero Kwik Media (x32 Version: 1.10.24800.146.100 - Nero AG) Hidden
Nero Kwik Media Help (CHM) (x32 Version: 11.0.10200 - Nero AG) Hidden
Nero RescueAgent 11 (x32 Version: 4.0.10600.10.100 - Nero AG) Hidden
Nero RescueAgent 11 Help (CHM) (x32 Version: 11.0.10400 - Nero AG) Hidden
Nero Update (x32 Version: 11.0.11400.27.0 - Nero AG) Hidden
nero.prerequisites.msi (x32 Version: 11.0.20008 - Nero AG) Hidden
Network64 (Version: 140.0.215.000 - Hewlett-Packard) Hidden
OCR Software by I.R.I.S. 14.0 (HKLM\...\HPOCR) (Version: 14.0 - HP)
OpenOffice.org 3.4.1 (HKLM-x32\...\{2303AEEA-0FA8-4AFD-80A9-8F86BA4B44D2}) (Version: 3.41.9593 - Apache Software Foundation)
PDF Architect (HKLM-x32\...\{064A929A-4DE8-40CF-A901-BD40C14E4D25}) (Version: 1.1.83.9982 - pdfforge GmbH)
PDF24 Creator 6.3.2 (HKLM-x32\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: - PDF24.org)
PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.7.1 - pdfforge)
PDF-Viewer (HKLM\...\{A278382D-4F1B-4D47-9885-8523F7261E8D}_is1) (Version: 2.5.210.0 - Tracker Software Products Ltd)
phase-6 2.1.0.8 (HKLM-x32\...\phase-6) (Version: 2.1.0.8 - phase-6)
PL-2303 USB-to-Serial (HKLM-x32\...\{ECC3713C-08A4-40E3-95F1-7D0704F1CE5E}) (Version: 1.3.0 - Prolific Technology INC)
PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation)
ProductContext (x32 Version: 140.0.000.000 - Hewlett-Packard) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6591 - Realtek Semiconductor Corp.)
Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.1.28.0 - Renesas Electronics Corporation)
Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.1.28.0 - Renesas Electronics Corporation) Hidden
RICOH Media Driver v2.15.17.02 (HKLM-x32\...\{FE041B02-234C-4AAA-9511-80DF6482A458}) (Version: 2.15.17.02 - RICOH)
Scan (x32 Version: 140.0.167.000 - Hewlett-Packard) Hidden
Scan2PDF 1.6 (HKLM-x32\...\Scan2PDF_is1) (Version: - Koma-Code)
Scribus 1.4.2 (HKLM-x32\...\Scribus 1.4.2) (Version: 1.4.2 - The Scribus Team)
Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP)
Skype™ 6.14 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.14.104 - Skype Technologies S.A.)
SmartWebPrinting (x32 Version: 140.0.213.000 - Hewlett-Packard) Hidden
SolutionCenter (x32 Version: 140.0.214.000 - Hewlett-Packard) Hidden
Spotify (HKCU\...\Spotify) (Version: 0.9.7.16.g4b197456 - Spotify AB)
Spotify Recorder Version 1.4 (HKLM-x32\...\{7794C967-87CE-44BD-AAD4-F29C59C19D2C}_is1) (Version: 1.4 - Manuel Gottschlich)
SRS Premium Sound Control Panel (HKLM\...\{3007FF9F-5B2C-41FF-8BFC-08BF25DB2681}) (Version: 1.12.1800 - SRS Labs, Inc.)
Status (x32 Version: 140.0.256.000 - Hewlett-Packard) Hidden
Toolbox (x32 Version: 140.0.428.000 - Hewlett-Packard) Hidden
TOSHIBA Assist (HKLM-x32\...\{C2A276E3-154E-44DC-AAF1-FFDD7FD30E35}) (Version: 4.2.3.1 - TOSHIBA CORPORATION)
TOSHIBA Disc Creator (HKLM\...\{5DA0E02F-970B-424B-BF41-513A5018E4C0}) (Version: 2.1.0.11 for x64 - TOSHIBA Corporation)
TOSHIBA eco Utility (HKLM\...\{F5AFF327-9B52-4E96-B5A0-BD2488A8EEC9}) (Version: 1.3.21.64 - TOSHIBA Corporation)
TOSHIBA Fingerprint Utility (HKLM\...\{62BBF381-D208-4EF0-B502-6CB6E5B9A161}) (Version: 2.0.0.6409 - TOSHIBA Corporation)
TOSHIBA HDD Protection (HKLM\...\{94A90C69-71C1-470A-88F5-AA47ECC96B40}) (Version: 2.2.2.15 - TOSHIBA Corporation)
TOSHIBA HDD/SSD Alert (HKLM\...\{D4322448-B6AF-4316-B859-D8A0E84DCB38}) (Version: 3.1.64.14 - TOSHIBA Corporation)
TOSHIBA Manuals (HKLM-x32\...\{90FF4432-21B7-4AF6-BA6E-FB8C1FED9173}) (Version: 10.05 - TOSHIBA)
TOSHIBA Media Controller (HKLM-x32\...\{C7A4F26F-F9B0-41B2-8659-99181108CDE3}) (Version: 1.0.87.5 - TOSHIBA CORPORATION)
TOSHIBA Media Controller Plug-in (HKLM-x32\...\{F26FDF57-483E-42C8-A9C9-EEE1EDB256E0}) (Version: 1.0.7.7 - TOSHIBA CORPORATION)
TOSHIBA Mobile Broadband Device (HKLM-x32\...\{B7191DD7-E7B4-4658-9025-487916EC21C8}) (Version: 7.1.0.3 - TOSHIBA Corporation)
TOSHIBA PC Health Monitor (HKLM\...\{9DECD0F9-D3E8-48B0-A390-1CF09F54E3A4}) (Version: 1.7.17.64 - TOSHIBA Corporation)
TOSHIBA Recovery Media Creator (HKLM-x32\...\{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}) (Version: 2.1.7.52020010 - TOSHIBA CORPORATION)
TOSHIBA Recovery Media Creator Reminder (HKLM-x32\...\InstallShield_{773970F1-5EBA-4474-ADEE-1EA3B0A59492}) (Version: 1.1.0.0 - TOSHIBA)
TOSHIBA Recovery Media Creator Reminder (x32 Version: 1.1.0.0 - TOSHIBA) Hidden
TOSHIBA Resolution+ Plug-in for Windows Media Player (HKLM-x32\...\{6CB76C9D-80C2-4CB3-A4CD-D96B239E3F94}) (Version: 1.1.4.01 - TOSHIBA Corporation)
TOSHIBA Security Assist (HKLM-x32\...\{1E63ACB5-D45E-4856-8FC9-78F4B0D7BB80}) (Version: 2.0.9 - TOSHIBA)
TOSHIBA Service Station (HKLM-x32\...\{AC6569FA-6919-442A-8552-073BE69E247A}) (Version: 2.2.13 - TOSHIBA)
TOSHIBA Sleep Utility (HKLM-x32\...\{654F7484-88C5-46DC-AB32-C66BCB0E2102}) (Version: 1.4.0024.000101 - TOSHIBA Corporation)
TOSHIBA TEMPRO (HKLM-x32\...\{F082CB11-4794-4259-99A1-D91BA762AD15}) (Version: 3.35 - Toshiba Europe GmbH)
TOSHIBA Value Added Package (HKLM-x32\...\InstallShield_{066CFFF8-12BF-4390-A673-75F95EFF188E}) (Version: 1.6.0027.640202 - TOSHIBA Corporation)
TOSHIBA Value Added Package (Version: 1.6.0027.640202 - TOSHIBA Corporation) Hidden
TOSHIBA Value Added Package (x32 Version: 1.6.0027.640202 - TOSHIBA Corporation) Hidden
TOSHIBA Web Camera Application (HKLM-x32\...\InstallShield_{6F3C8901-EBD3-470D-87F8-AC210F6E5E02}) (Version: 2.0.3.33 - TOSHIBA Corporation)
TOSHIBA Web Camera Application (x32 Version: 2.0.3.33 - TOSHIBA Corporation) Hidden
TOSHIBA Wireless Display Monitor (HKLM-x32\...\{617773AE-ADBA-4479-BB04-65FE7758B35C}) (Version: 1.0.1 - TOSHIBA CORPORATION)
TOSHIBA Wireless Manager (HKLM-x32\...\{6A631D31-1FD6-46B5-9337-3485C3CBB002}) (Version: 7.1.0.2 - TOSHIBA Corporation)
TrayApp (x32 Version: 140.0.213.000 - Hewlett-Packard) Hidden
VLC media player 2.0.5 (HKLM\...\VLC media player) (Version: 2.0.5 - VideoLAN)
WAV To MP3 V2 (HKLM-x32\...\WAV To MP3_is1) (Version: - hxxp://www.WAVMP3.net)
WebReg (x32 Version: 140.0.213.017 - Hewlett-Packard) Hidden
welcome (x32 Version: 11.0.22500.0.0 - Nero AG) Hidden
Windows Live ID Sign-in Assistant (HKLM\...\{9B48B0AC-C813-4174-9042-476A887592C7}) (Version: 6.500.3165.0 - Microsoft Corporation)
XMind (HKLM-x32\...\XMind) (Version: 3.2.1 - XMind Ltd.)
==================== Restore Points =========================
02-03-2014 00:01:59 Windows Update
06-03-2014 20:07:38 Windows Update
12-03-2014 22:01:08 Windows Update
==================== Hosts content: ==========================
2009-07-14 13:34 - 2009-06-11 08:00 - 00000824 ____A C:\windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {370D87AB-0CFA-4427-8148-258B5B6A52A9} - System32\Tasks\BitGuard => Sc.exe start BitGuard <==== ATTENTION
Task: {43DC800D-29A8-425F-BDBB-7772010D627D} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-12-03] (Adobe Systems Incorporated)
Task: {45D6B79F-D295-42A5-A5C8-344132E3D5D7} - System32\Tasks\Motorola Device Manager Update => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe
Task: {4FA3A568-285C-4B10-8D0E-74C83B7D62E2} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-02] (Apple Inc.)
Task: {614DFC03-B2B7-4FCC-B6FF-53DE135D437B} - System32\Tasks\{9794731B-958F-456F-9D11-D0A4EF03A778} => C:\Program Files (x86)\phase-6\phase-6\phase-6.exe [2008-11-07] ()
Task: {68969689-B77F-470C-96AA-BAFB1B2744D9} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2011-11-26] (Intel Corporation)
Task: {7B184F26-811D-4EC0-B90A-3ACCEB3E138B} - System32\Tasks\{C5B733DD-DE62-4158-8542-C87A77BB8EB1} => C:\Program Files (x86)\phase-6\phase-6\phase-6.exe [2008-11-07] ()
Task: {97947C50-20B8-4A65-9FD1-7839FBB023E1} - System32\Tasks\EPUpdater => C:\Users\Katrin\AppData\Roaming\BabSolution\Shared\BabMaint.exe [2013-06-06] () <==== ATTENTION
Task: {99624EB5-2ED0-4C15-8510-90EDCB1703E6} - System32\Tasks\TOSHIBA Wireless Display Monitor => C:\Program Files (x86)\TOSHIBA\widimon\widimon.exe [2010-12-26] (TOSHIBA CORPORATION)
Task: {B82C92E9-43CD-4D36-8A5B-F2818FC15556} - System32\Tasks\{7692C81A-D327-41EC-8828-A84D5271BCB3} => C:\Program Files (x86)\phase-6\phase-6\phase-6.exe [2008-11-07] ()
Task: {B8A0E38F-4651-4CD2-8A39-6DC5067CA10F} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2011-11-26] (Intel Corporation)
Task: {BB550ACE-4FA5-4257-9AEA-CCB2AC367EDB} - System32\Tasks\HP-Online-Aktualisierungsprogramm => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [2009-11-19] (Hewlett-Packard)
Task: {C5B87BF3-3E52-4DA6-8CC4-A5B9B86E612F} - System32\Tasks\Motorola Device Manager Engine => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe
Task: {D42F4968-9A82-4D64-AC3D-3447381CD722} - System32\Tasks\Motorola Device Manager Initial Update => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe
Task: {FE175109-B71E-42BB-B64B-1427B4C13C69} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-03-13] (Adobe Systems Incorporated)
Task: {FE9BA7AF-FE21-4BDC-84DC-B54280473DDD} - System32\Tasks\{52486149-6A49-44FD-B49D-7E67156F7361} => C:\Program Files (x86)\phase-6\phase-6\phase-6.exe [2008-11-07] ()
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe
Task: C:\windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe
==================== Loaded Modules (whitelisted) =============
2010-11-17 00:38 - 2010-11-17 00:38 - 00339456 _____ () C:\ProgramData\DatacardService\HWDeviceService64.exe
2012-11-20 23:00 - 2012-02-22 07:29 - 00128280 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
2012-02-29 14:00 - 2012-02-29 14:00 - 00594368 _____ () C:\Program Files\TOSHIBA\TECO\TecoPower.dll
2012-03-17 05:25 - 2012-03-17 05:25 - 00476544 _____ () C:\Program Files\TOSHIBA\Fingerprint Utility\TFPUCommon.dll
2012-03-27 12:33 - 2012-03-27 12:33 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2012-03-03 11:08 - 2012-03-03 11:08 - 00595840 _____ () C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe
2011-08-23 10:19 - 2011-08-23 10:19 - 11204992 _____ () C:\Program Files\TOSHIBA\FlashCards\BlackPng.dll
2010-12-16 10:19 - 2010-12-16 10:19 - 00124320 _____ () C:\Program Files\TOSHIBA\TECO\MUIHelp.dll
2012-04-12 12:05 - 2012-04-12 12:05 - 00079784 _____ () C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosIPCWraper.dll
2013-01-20 01:47 - 2012-09-20 04:17 - 00397088 _____ () C:\Program Files (x86)\Avira\AntiVir Desktop\sqlite3.dll
2012-11-29 00:13 - 2012-11-29 00:13 - 00087952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2012-11-29 00:13 - 2012-11-29 00:13 - 01242512 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2012-11-20 23:18 - 2011-07-14 05:10 - 00065576 ____R () C:\Program Files (x86)\TOSHIBA\Mobile Broadband Device\WMCore\MBMDebug.dll
2012-03-17 05:28 - 2012-03-17 05:28 - 00372608 _____ () C:\Program Files\TOSHIBA\Fingerprint Utility\BrowserAddin\TFPUCommon.dll
2012-03-17 05:28 - 2012-03-17 05:28 - 00415104 _____ () C:\Program Files\TOSHIBA\Fingerprint Utility\BrowserAddin\TFPUBrowserAddinRc.dll
2013-10-19 10:55 - 2013-10-19 10:55 - 25100288 _____ () C:\Users\Katrin\AppData\Roaming\Dropbox\bin\libcef.dll
2012-08-11 02:51 - 2012-08-11 02:51 - 00985088 _____ () C:\Program Files (x86)\OpenOffice.org 3\program\libxml2.dll
2014-02-21 21:37 - 2014-02-21 21:37 - 03578992 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
2012-11-20 22:59 - 2012-02-22 07:09 - 01198872 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll
2014-03-13 09:01 - 2014-03-13 09:01 - 16276872 _____ () C:\windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll
==================== Alternate Data Streams (whitelisted) =========
AlternateDataStreams: C:\Users\Katrin\ForwardedMessage.eml:OECustomProperty
==================== Safe Mode (whitelisted) ===================
==================== Disabled items from MSCONFIG ==============
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (03/29/2014 10:10:36 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (03/28/2014 10:48:23 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (03/28/2014 10:40:41 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (03/28/2014 10:14:54 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: ZeroConfigService.exe, Version: 15.1.0.2, Zeitstempel: 0x4f4a262d
Name des fehlerhaften Moduls: MurocApi.dll, Version: 15.1.0.1, Zeitstempel: 0x4f4a2503
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000002084b
ID des fehlerhaften Prozesses: 0xac0
Startzeit der fehlerhaften Anwendung: 0xZeroConfigService.exe0
Pfad der fehlerhaften Anwendung: ZeroConfigService.exe1
Pfad des fehlerhaften Moduls: ZeroConfigService.exe2
Berichtskennung: ZeroConfigService.exe3
Error: (03/28/2014 10:14:39 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (03/28/2014 10:08:31 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (03/28/2014 10:00:42 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (03/28/2014 09:53:47 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (03/28/2014 07:19:20 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 11504871
Error: (03/28/2014 07:19:20 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 11504871
System errors:
=============
Error: (03/29/2014 00:01:16 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Computerbrowser" ist vom Dienst "Server" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1068
Error: (03/29/2014 00:01:16 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Computerbrowser" ist vom Dienst "Server" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1068
Error: (03/29/2014 00:01:16 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Computerbrowser" ist vom Dienst "Server" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1068
Error: (03/29/2014 00:00:32 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Computerbrowser" ist vom Dienst "Server" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1068
Error: (03/29/2014 00:00:32 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Computerbrowser" ist vom Dienst "Server" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1068
Error: (03/29/2014 00:00:32 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Computerbrowser" ist vom Dienst "Server" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1068
Error: (03/28/2014 11:58:24 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Computerbrowser" ist vom Dienst "Server" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1068
Error: (03/28/2014 11:58:24 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Computerbrowser" ist vom Dienst "Server" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1068
Error: (03/28/2014 11:58:24 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Computerbrowser" ist vom Dienst "Server" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1068
Error: (03/28/2014 11:56:10 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Computerbrowser" ist vom Dienst "Server" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1068
Microsoft Office Sessions:
=========================
Error: (03/29/2014 10:10:36 AM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (03/28/2014 10:48:23 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (03/28/2014 10:40:41 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (03/28/2014 10:14:54 PM) (Source: Application Error)(User: )
Description: ZeroConfigService.exe15.1.0.24f4a262dMurocApi.dll15.1.0.14f4a2503c0000005000000000002084bac001cf4a76e0ffd3e2C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exeC:\Program Files\Intel\WiFi\bin\MurocApi.dll2fae1397-b66a-11e3-a914-028037ec0200
Error: (03/28/2014 10:14:39 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (03/28/2014 10:08:31 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (03/28/2014 10:00:42 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (03/28/2014 09:53:47 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (03/28/2014 07:19:20 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 11504871
Error: (03/28/2014 07:19:20 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 11504871
CodeIntegrity Errors:
===================================
Date: 2013-10-05 18:10:03.574
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\CTAFX64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-10-01 01:49:16.076
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\CTAFX64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-10-01 01:04:19.854
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\CTAFX64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-10-01 00:32:02.517
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\CTAFX64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-10-01 00:31:42.408
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\CTAFX64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-09-28 18:06:15.491
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\CTAFX64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-09-28 17:47:13.479
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\CTAFX64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-09-28 17:47:13.206
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\CTAFX64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-09-28 17:45:44.336
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\CTAFX64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-09-24 21:58:37.579
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\CTAFX64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
==================== Memory info ===========================
Percentage of memory in use: 51%
Total physical RAM: 3990.17 MB
Available physical RAM: 1928.22 MB
Total Pagefile: 7978.52 MB
Available Pagefile: 5655.66 MB
Total Virtual: 8192 MB
Available Virtual: 8191.83 MB
==================== Drives ================================
Drive c: (TI30946900B) (Fixed) (Total:285.84 GB) (Free:173.02 GB) NTFS ==>[System with boot components (obtained from reading drive)]
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 298 GB) (Disk ID: FB8B41DC)
Partition: GPT Partition Type.
==================== End Of Log ============================ |