haiflosse | 06.04.2014 12:05 | Danke für die Antwort.
Es trat beim IE auf. Komischerweise zuletzt jetzt nicht.
Hier die Dateien:
malwarebyte Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlauf Datum: 06.04.2014
Suchlauf-Zeit: 12:21:04
Logdatei: mbam.txt
Administrator: Ja
Version: 2.00.1.1004
Malware Datenbank: v2014.04.06.04
Rootkit Datenbank: v2014.03.27.01
Lizenz: Kostenlos
Malware Schutz: Deaktiviert
Bösartiger Webseiten Schutz: Deaktiviert
Chameleon: Deaktiviert
Betriebssystem: Windows 8.1
CPU: x64
Dateisystem: NTFS
Benutzer: Reinhard
Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 260807
Verstrichene Zeit: 41 Min, 30 Sek
Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Aktiviert
Shuriken: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 1
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\PriceMeterLiveUpdate.exe, 2696, Löschen bei Neustart, [649cf010758b2cd439d792cf6b973dc3]
Module: 1
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdate.dll, Löschen bei Neustart, [9967d7292bd524dca52cd883df23827e],
Registrierungsschlüssel: 74
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\CLASSES\PriceMeterLiveUpdate.OneClickCtrl.9, In Quarantäne, [df21fa06f30d6e92947fd78a53af7b85],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\CLASSES\PriceMeterLiveUpdate.OneClickProcessLauncherMachine, In Quarantäne, [52ae97694cb443bd72a1b4ad1ae8c739],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\CLASSES\PriceMeterLiveUpdate.OneClickProcessLauncherMachine.1.0, In Quarantäne, [857b06fa6c94a957df34db8628daef11],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\CLASSES\PriceMeterLiveUpdate.Update3WebControl.3, In Quarantäne, [c9377a8649b7de229d75154cfb0756aa],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\CLASSES\PriceMeterLiveUpdateUpdate.CoCreateAsync, In Quarantäne, [c937916f03fd956b41d2e87961a118e8],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\CLASSES\PriceMeterLiveUpdateUpdate.CoCreateAsync.1.0, In Quarantäne, [34cce11f5aa602fe26ed7de4eb170000],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\CLASSES\PriceMeterLiveUpdateUpdate.CoreClass, In Quarantäne, [738d8a76ac5416ea9e75f46de31f6d93],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\CLASSES\PriceMeterLiveUpdateUpdate.CoreClass.1, In Quarantäne, [ca36e31dd42cad53b261b5aca062956b],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\CLASSES\PriceMeterLiveUpdateUpdate.CoreMachineClass, In Quarantäne, [28d8ca368a7641bfe52e2d3408fa20e0],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\CLASSES\PriceMeterLiveUpdateUpdate.CoreMachineClass.1, In Quarantäne, [d72950b02cd420e0ac6762ff09f9fa06],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\CLASSES\PriceMeterLiveUpdateUpdate.CredentialDialogMachine, In Quarantäne, [e020b54b9b6549b761b20f52966c817f],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\CLASSES\PriceMeterLiveUpdateUpdate.CredentialDialogMachine.1.0, In Quarantäne, [6e92b54b55ab6b95060dc49d19e9cc34],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\CLASSES\PriceMeterLiveUpdateUpdate.OnDemandCOMClassMachine, In Quarantäne, [1be56799c040d62a7d964d1414eee818],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\CLASSES\PriceMeterLiveUpdateUpdate.OnDemandCOMClassMachine.1.0, In Quarantäne, [9769926ea957b54b34df263be31fa25e],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\CLASSES\PriceMeterLiveUpdateUpdate.OnDemandCOMClassMachineFallback, In Quarantäne, [e31d08f826da4cb4d043a1c0ed156e92],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\CLASSES\PriceMeterLiveUpdateUpdate.OnDemandCOMClassMachineFallback.1.0, In Quarantäne, [ef1148b8fb051ae6e52e2f32ce34ec14],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\CLASSES\PriceMeterLiveUpdateUpdate.OnDemandCOMClassSvc, In Quarantäne, [7789817f0df38779f221e978ea184bb5],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\CLASSES\PriceMeterLiveUpdateUpdate.OnDemandCOMClassSvc.1.0, In Quarantäne, [78889b654cb48c741ff491d06b971de3],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\CLASSES\PriceMeterLiveUpdateUpdate.ProcessLauncher, In Quarantäne, [649c926e25dbed137d9649189a68bf41],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\CLASSES\PriceMeterLiveUpdateUpdate.ProcessLauncher.1.0, In Quarantäne, [e61a2bd546bac040a86b1a47c53d06fa],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\CLASSES\PriceMeterLiveUpdateUpdate.Update3COMClassService, In Quarantäne, [30d05ca4ef114ab6898ab3ae9b67e719],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\CLASSES\PriceMeterLiveUpdateUpdate.Update3COMClassService.1.0, In Quarantäne, [3ec2d72933cdbf41908364fd639f2ad6],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\CLASSES\PriceMeterLiveUpdateUpdate.Update3WebMachine, In Quarantäne, [f30d17e9a15f8b7528ebc89945bd867a],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\CLASSES\PriceMeterLiveUpdateUpdate.Update3WebMachine.1.0, In Quarantäne, [6d93916ff80807f9bd56ce9361a1728e],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\CLASSES\PriceMeterLiveUpdateUpdate.Update3WebMachineFallback, In Quarantäne, [6a96dd23a35d4eb28b886ff237cbf20e],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\CLASSES\PriceMeterLiveUpdateUpdate.Update3WebMachineFallback.1.0, In Quarantäne, [a957f20e53ad58a8d93a3928d42ee719],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\CLASSES\PriceMeterLiveUpdateUpdate.Update3WebSvc, In Quarantäne, [f10f26da35cb9c6418fb065bef1340c0],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\CLASSES\PriceMeterLiveUpdateUpdate.Update3WebSvc.1.0, In Quarantäne, [16eada26de2211ef4cc794cd4cb6f709],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PriceMeterLiveUpdate.OneClickCtrl.9, In Quarantäne, [30d0768a04fc817f977c89d8dc2652ae],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PriceMeterLiveUpdate.OneClickProcessLauncherMachine, In Quarantäne, [bb458a76b848738dc25149188b778a76],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PriceMeterLiveUpdate.OneClickProcessLauncherMachine.1.0, In Quarantäne, [0ff1b848a45cce328390f66b748e05fb],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PriceMeterLiveUpdate.Update3WebControl.3, In Quarantäne, [10f0639d2bd552ae8a8871f035cde11f],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PriceMeterLiveUpdateUpdate.CoCreateAsync, In Quarantäne, [bd43c43cc838ac54e92a402170926c94],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PriceMeterLiveUpdateUpdate.CoCreateAsync.1.0, In Quarantäne, [e917c93700009f613fd4a3bee71b37c9],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PriceMeterLiveUpdateUpdate.CoreClass, In Quarantäne, [32cee0206997d52b0112d58cdc264eb2],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PriceMeterLiveUpdateUpdate.CoreClass.1, In Quarantäne, [0ff108f83fc102fec64d560b2cd64db3],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PriceMeterLiveUpdateUpdate.CoreMachineClass, In Quarantäne, [01ff42bed22e2cd41201e77a26dc8b75],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PriceMeterLiveUpdateUpdate.CoreMachineClass.1, In Quarantäne, [42beca36a85841bfb06392cfce34b050],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PriceMeterLiveUpdateUpdate.CredentialDialogMachine, In Quarantäne, [8b75b947f20e4bb547cc233ef60cd22e],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PriceMeterLiveUpdateUpdate.CredentialDialogMachine.1.0, In Quarantäne, [1fe1b64a827e70908093d19018ea8779],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PriceMeterLiveUpdateUpdate.OnDemandCOMClassMachine, In Quarantäne, [2bd5a957d52b11ef6ea564fd7c8601ff],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PriceMeterLiveUpdateUpdate.OnDemandCOMClassMachine.1.0, In Quarantäne, [0cf4c937ee1201ff36dd63fe0ef4b050],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PriceMeterLiveUpdateUpdate.OnDemandCOMClassMachineFallback, In Quarantäne, [9b6501ff26dae818a76c93cee81ab34d],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PriceMeterLiveUpdateUpdate.OnDemandCOMClassMachineFallback.1.0, In Quarantäne, [c33dbb45956bbe4251c265fc976b41bf],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PriceMeterLiveUpdateUpdate.OnDemandCOMClassSvc, In Quarantäne, [966aa65a60a0c53b0a09f26f09f917e9],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PriceMeterLiveUpdateUpdate.OnDemandCOMClassSvc.1.0, In Quarantäne, [8e72837db749ac5453c0bfa2ca386799],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PriceMeterLiveUpdateUpdate.ProcessLauncher, In Quarantäne, [966a22de837da55b59ba421fe220f907],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PriceMeterLiveUpdateUpdate.ProcessLauncher.1.0, In Quarantäne, [54ac46bafe02a15f9281e978e31f16ea],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PriceMeterLiveUpdateUpdate.Update3COMClassService, In Quarantäne, [18e897696e92669aa0737ee345bd6997],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PriceMeterLiveUpdateUpdate.Update3COMClassService.1.0, In Quarantäne, [7e82976946ba0ff11ff49ac7a55de818],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PriceMeterLiveUpdateUpdate.Update3WebMachine, In Quarantäne, [629e3cc4d12f53adf71c0b5605fd0000],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PriceMeterLiveUpdateUpdate.Update3WebMachine.1.0, In Quarantäne, [1de37d83bd43fc04cf44e9782dd5f907],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PriceMeterLiveUpdateUpdate.Update3WebMachineFallback, In Quarantäne, [857b22dec04018e88a892c35be4426da],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PriceMeterLiveUpdateUpdate.Update3WebMachineFallback.1.0, In Quarantäne, [a759ee1210f0728ee132cf92c43e5aa6],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PriceMeterLiveUpdateUpdate.Update3WebSvc, In Quarantäne, [f60a06fa649c629e59ba303129d904fc],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PriceMeterLiveUpdateUpdate.Update3WebSvc.1.0, In Quarantäne, [2ed2e11fa45c8779df34ec75788a5ca4],
PUP.Optional.ConduitSearchProtect, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\CltMngSvc, In Quarantäne, [d9271fe1b34d5ba5a139d2af1be8bc44],
PUP.Optional.PriceMeter.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\pricemeterliveUpdate, In Quarantäne, [649cf010758b2cd439d792cf6b973dc3],
PUP.Optional.PriceMeter.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\pricemeterliveUpdatem, In Quarantäne, [649cf010758b2cd439d792cf6b973dc3],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\PRICEMETERLIVEUPDATE.EXE, In Quarantäne, [649cf010758b2cd439d792cf6b973dc3],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\PRICEMETERLIVEUPDATE.EXE, In Quarantäne, [649cf010758b2cd439d792cf6b973dc3],
PUP.Optional.1ClickDownload.A, HKU\S-1-5-21-2957572582-3131979646-2208594502-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\1ClickDownload, In Quarantäne, [3ac6af5143bd718f90a6077fea199967],
PUP.Optional.PriceMeter.A, HKU\S-1-5-21-2957572582-3131979646-2208594502-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\PriceMeter, In Quarantäne, [7b856c94f50b43bd79a194cdc141d729],
PUP.Optional.InstallCore.A, HKU\S-1-5-21-2957572582-3131979646-2208594502-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE\1I1T1Q1S, In Quarantäne, [67997a86af51e41c7f204d21b44ec43c],
PUP.Optional.InstallCore.A, HKU\S-1-5-21-2957572582-3131979646-2208594502-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE, In Quarantäne, [9868e71912ee2ed26974eb9909faa65a],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{89449F37-4AB2-46ED-A566-BB3A7797701B}, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{89449F37-4AB2-46ED-A566-BB3A7797701B}, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{89449F37-4AB2-46ED-A566-BB3A7797701B}, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{F509ADC2-B40E-470F-A7B7-45191486B5CB}, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{F509ADC2-B40E-470F-A7B7-45191486B5CB}, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{F509ADC2-B40E-470F-A7B7-45191486B5CB}, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{4211E851-747F-4470-923D-6EF683EE79CA}, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{74930D00-2198-46FE-B6BC-FEEC60C666C9}, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, HKU\S-1-5-21-2957572582-3131979646-2208594502-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Price Meter, In Quarantäne, [5ba5df2157a939c7ffd5acaff1112dd3],
Registrierungswerte: 1
PUP.Optional.InstallCore.A, HKU\S-1-5-21-2957572582-3131979646-2208594502-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE|tb, 0R2Y1I1P1N0J1U1C, In Quarantäne, [9868e71912ee2ed26974eb9909faa65a]
Registrierungsdaten: 2
PUP.Optional.Conduit.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINDOWS|AppInit_DLLs, C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll, Gut: (), Schlecht: (C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll),Ersetzt,[1ee2817f9769ad53b524b066e12044bc]
PUP.Optional.Conduit.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINDOWS|AppInit_DLLs, C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC32Loader.dll, Gut: (), Schlecht: (C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC32Loader.dll),Ersetzt,[dc24c53b7789699740991303d928649c]
Ordner: 34
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\Main, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\Main\Logs, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\Main\rep, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\SearchProtect, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\SearchProtect\bin, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\SearchProtect\rep, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\bin, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\bubble, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\libs, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\protection, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\protectionDS, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\settings, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\uninstall, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\rep, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.OpenCandy, C:\Users\Reinhard\AppData\Roaming\OpenCandy, In Quarantäne, [0ef26c94996752aedfb9b79d54aee917],
PUP.Optional.OpenCandy, C:\Users\Reinhard\AppData\Roaming\OpenCandy\365E42FAD1EA40F7B7C48C0E4F934031, In Quarantäne, [0ef26c94996752aedfb9b79d54aee917],
PUP.Optional.OpenCandy, C:\Users\Reinhard\AppData\Roaming\OpenCandy\733795EDF6984C629D3EF2F41950F86B, In Quarantäne, [0ef26c94996752aedfb9b79d54aee917],
PUP.Optional.OpenCandy, C:\Users\Reinhard\AppData\Roaming\OpenCandy\8627FFA743CF47ECBA78CF1B5B1D9584, In Quarantäne, [0ef26c94996752aedfb9b79d54aee917],
PUP.Optional.OpenCandy, C:\Users\Reinhard\AppData\Roaming\OpenCandy\ACA4671757E34B53B2BB13751D6D9EEE, In Quarantäne, [0ef26c94996752aedfb9b79d54aee917],
PUP.Optional.PriceMeter.A, C:\Users\Reinhard\AppData\Roaming\PriceMeterUpdater, In Quarantäne, [2dd321df15eb0af618b80259738f728e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate, Löschen bei Neustart, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\CrashReports, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update, Löschen bei Neustart, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0, Löschen bei Neustart, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\Download, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\Install, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\Offline, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\Offline\{B73B8F58-7E31-471F-BF71-2310F27B59A5}, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Users\Reinhard\AppData\Local\PriceMeter, In Quarantäne, [5ba5df2157a939c7ffd5acaff1112dd3],
PUP.Optional.PriceMeter.A, C:\Users\Reinhard\AppData\Local\PriceMeter\TEMP, In Quarantäne, [5ba5df2157a939c7ffd5acaff1112dd3],
Dateien: 157
PUP.Optional.Conduit.A, C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC64Loader.dll, In Quarantäne, [1ee2817f9769ad53b524b066e12044bc],
PUP.Optional.Conduit.A, C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC32Loader.dll, In Quarantäne, [dc24c53b7789699740991303d928649c],
PUP.Optional.OpenCandy.A, C:\Users\Reinhard\AppData\Roaming\OpenCandy\365E42FAD1EA40F7B7C48C0E4F934031\Setupsft_chr_p1v7.exe, In Quarantäne, [817f6a968c74679979de10fa61a3dc24],
PUP.Optional.Conduit.A, C:\Users\Reinhard\AppData\Roaming\OpenCandy\ACA4671757E34B53B2BB13751D6D9EEE\SSStub_SearchProtect_p1v0.exe, In Quarantäne, [5da3fb057b85e51b91841df8877aee12],
PUP.Optional.Conduit.A, C:\$Recycle.Bin\S-1-5-21-2957572582-3131979646-2208594502-1001\$R06W8G1.exe, In Quarantäne, [7b85f50bba46a75957827d9954ade020],
PUP.Optional.Conduit.A, C:\$Recycle.Bin\S-1-5-21-2957572582-3131979646-2208594502-1001\$R1O4BVE.dll, In Quarantäne, [5ba55aa60bf5c33d96432aec80810af6],
PUP.Optional.SearchProtect.A, C:\Users\Reinhard\AppData\Local\Temp\nsd635F.tmp\SPtool.dll, In Quarantäne, [30d0d42cd52b0bf532b732ef44bde11f],
PUP.Optional.SearchProtect.A, C:\Users\Reinhard\AppData\Local\Temp\nsfCC33.tmp\SPtool.dll, In Quarantäne, [27d9a65af10f1de32cbd42dfc1404fb1],
PUP.Optional.SearchProtect.A, C:\Users\Reinhard\AppData\Local\Temp\nsw87C4.tmp\SPtool.dll, In Quarantäne, [f40c0ef280804bb533b61d04ed1405fb],
PUP.Optional.RegCleanPro, C:\Users\Reinhard\Downloads\rcpsetupmarm1_marm10at_monsa.exe, In Quarantäne, [07f9718f1be58779ccbd8ca8a75928d8],
PUP.Optional.Bundlore, C:\Users\Reinhard\Downloads\setup.exe, In Quarantäne, [e31ddb25837d7f813ca96a860df6768a],
PUP.Optional.PriceMeter.A, C:\Users\Reinhard\AppData\Local\PriceMeter\pricemeterd.exe, In Quarantäne, [af51a35d4bb5df21d40ff272b150a25e],
PUP.Optional.PriceMeter.A, C:\Windows\Tasks\PriceMeterLiveUpdateUpdateTaskMachineCore.job, In Quarantäne, [b9479f61788851af8292174a837f2bd5],
PUP.Optional.PriceMeter.A, C:\Windows\Tasks\PriceMeterLiveUpdateUpdateTaskMachineUA.job, In Quarantäne, [629e768ab8480bf5db398cd5d72b3fc1],
PUP.Optional.PCPerformer.A, C:\Windows\System32\roboot64.exe, In Quarantäne, [718f33cdef1112eeff5867013cc6748c],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\EULA.txt, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\Main\rep\SystemRepository.dat, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\SearchProtect\bin\cltmng.exe, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPTool64.exe, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC32.dll, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC64.dll, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\bin\cltmngui.exe, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\settings.html, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\style.css, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\bubble\bubble.css, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\bubble\bubble.html, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\bubble\bubble.js, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\bubble\defaults.js, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\btnClose.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\info-icon.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\Apply-default.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\Apply-onclick.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\Apply-Rollover.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\bg-with-logo.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\bg.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\bgNotif.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\bgSettings.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\bgSettingsDS.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\bgUninstall.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\btnBlue.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\btnSilver.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\checkbox.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\checkbox_checked.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\checkbox_def.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\close-win-def.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\close-win-over-click.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\gray-bg.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\hez-def.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\hez-selected.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\hez.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\icon-win.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\menu-rollover.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\menu-selected.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\radio-button-def.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\radio-button-selected.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\radio-button.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\radio-button2.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\Settings-icon.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\text-field.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\v.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\x.png, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\libs\defaults.js, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\libs\dialogUtils.js, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\libs\jquery.1.7.1.min.js, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\libs\json2.min.js, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\libs\main.js, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\libs\SPDialogAPI.js, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\protection\defaults.js, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\protection\protection.css, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\protection\protection.html, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\protection\protection.js, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\protectionDS\defaults.js, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\protectionDS\protectionDS.css, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\protectionDS\protectionDS.html, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\protectionDS\protectionDS.js, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\settings\defaults.js, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\settings\settings.css, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\settings\settings.html, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\settings\settings.js, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\uninstall\defaults.js, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\uninstall\uninstall.css, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\uninstall\uninstall.html, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.SearchProtect.A, C:\Program Files (x86)\SearchProtect\UI\dialogs\uninstall\uninstall.js, In Quarantäne, [e91787791ee2ca367998e4abf2119070],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\PriceMeterLiveUpdate.exe, Löschen bei Neustart, [649cf010758b2cd439d792cf6b973dc3],
PUP.Optional.OpenCandy, C:\Users\Reinhard\AppData\Roaming\OpenCandy\733795EDF6984C629D3EF2F41950F86B\Trial-14.0.1000.89_de-DE_1004727_AT-2.exe, In Quarantäne, [0ef26c94996752aedfb9b79d54aee917],
PUP.Optional.OpenCandy, C:\Users\Reinhard\AppData\Roaming\OpenCandy\8627FFA743CF47ECBA78CF1B5B1D9584\Trial-14.0.1000.89_de-DE_1004726_AT-1.exe, In Quarantäne, [0ef26c94996752aedfb9b79d54aee917],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_de.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_el.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_en-GB.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_en.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_es-419.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_es.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_et.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_fa.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_fi.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_fil.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_fr.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_gu.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_hi.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_hr.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_hu.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_id.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_it.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_iw.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_ja.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_kn.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_ko.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_lt.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_lv.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_ml.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_mr.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_ms.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_nl.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_no.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_pl.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_pt-BR.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_pt-PT.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_ro.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdate.dll, Löschen bei Neustart, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_am.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_ar.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_bg.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_bn.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_ca.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_cs.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_sk.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_sl.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_sr.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_sv.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_sw.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_ta.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_te.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_th.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_tr.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_uk.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_ur.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_vi.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_zh-CN.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_zh-TW.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\npGoogleUpdate3.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\PriceMeterLiveUpdate.exe, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\PriceMeterLiveUpdateBroker.exe, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\PriceMeterLiveUpdateHandler.exe, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\PriceMeterLiveUpdateHelper.msi, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\PriceMeterLiveUpdateOnDemand.exe, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\psmachine.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\psuser.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_da.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_is.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\goopdateres_ru.dll, In Quarantäne, [9967d7292bd524dca52cd883df23827e],
PUP.Optional.PriceMeter.A, C:\Users\Reinhard\AppData\Local\PriceMeter\icon.ico, In Quarantäne, [5ba5df2157a939c7ffd5acaff1112dd3],
PUP.Optional.PriceMeter.A, C:\Users\Reinhard\AppData\Local\PriceMeter\PriceMeterUpdateVer.exe, In Quarantäne, [5ba5df2157a939c7ffd5acaff1112dd3],
PUP.Optional.PriceMeter.A, C:\Users\Reinhard\AppData\Local\PriceMeter\uninst.exe, In Quarantäne, [5ba5df2157a939c7ffd5acaff1112dd3],
PUP.Optional.PriceMeter.A, C:\Users\Reinhard\AppData\Local\PriceMeter\TEMP\cfg.dat, In Quarantäne, [5ba5df2157a939c7ffd5acaff1112dd3],
PUP.Optional.PriceMeter.A, C:\Users\Reinhard\AppData\Local\PriceMeter\TEMP\chunk_0_V1.0.5.8.dat, In Quarantäne, [5ba5df2157a939c7ffd5acaff1112dd3],
PUP.Optional.PriceMeter.A, C:\Users\Reinhard\AppData\Local\PriceMeter\TEMP\chunk_1_V1.0.5.8.dat, In Quarantäne, [5ba5df2157a939c7ffd5acaff1112dd3],
PUP.Optional.PriceMeter.A, C:\Users\Reinhard\AppData\Local\PriceMeter\TEMP\chunk_2_V1.0.5.8.dat, In Quarantäne, [5ba5df2157a939c7ffd5acaff1112dd3],
Physische Sektoren: 0
(No malicious items detected)
(end) adwcleaner Code:
# AdwCleaner v3.023 - Bericht erstellt am 06/04/2014 um 12:42:11
# Aktualisiert 01/04/2014 von Xplode
# Betriebssystem : Windows 8.1 (64 bits)
# Benutzername : Reinhard - REINI
# Gestartet von : C:\Users\Reinhard\Downloads\x\adwcleaner.exe
# Option : Löschen
***** [ Dienste ] *****
***** [ Dateien / Ordner ] *****
Ordner Gelöscht : C:\Program Files (x86)\Mobogenie
Ordner Gelöscht : C:\Users\Reinhard\AppData\Local\Mobogenie
Ordner Gelöscht : C:\Users\Reinhard\AppData\Local\SearchProtect
Ordner Gelöscht : C:\Users\Reinhard\AppData\LocalLow\iac
Ordner Gelöscht : C:\Users\Reinhard\AppData\LocalLow\Softonic
Ordner Gelöscht : C:\Users\Reinhard\AppData\Roaming\Systweak
Ordner Gelöscht : C:\Users\Reinhard\Documents\Mobogenie
Datei Gelöscht : C:\END
Datei Gelöscht : C:\Users\Public\Desktop\eBay.lnk
Datei Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk
***** [ Verknüpfungen ] *****
***** [ Registrierungsdatenbank ] *****
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Schlüssel Gelöscht : HKLM\SOFTWARE\MozillaPlugins\@VideoDownloadConverter_ScriptHelper.com/Plugin
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{7ABBFE1C-E485-44AA-8F36-353751B4124D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A86782D8-7B41-452F-A217-1854F72DBA54}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2D6F0AC3-0C2E-4E07-8FDA-11268AB51211}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{17B10E59-09E1-4C39-A738-6774D7AB7778}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{1AD2049E-E483-4425-8555-8E0775ACB631}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{23119123-0854-469D-807A-171568457991}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{2D73F2D0-2FAB-458E-977D-2F9050E0ED60}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{2D9083CE-8758-4704-BA57-3C891D7452BD}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{3E9469AF-E866-4476-B767-810630F1F6E7}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{47700C35-9E3E-4DAD-934C-0CE28A87237C}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{716E443D-7CAA-44F1-866B-F45D00E712CC}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{72063D77-7590-4DA9-A7F8-F5ECAF3632C4}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{7FC87AC5-FA93-476E-A32C-A941229DED0B}
Schlüssel Gelöscht : HKCU\Software\powerpack
Schlüssel Gelöscht : HKCU\Software\VideoDownloadConverter_4z
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\VideoDownloadConverter_4z
Schlüssel Gelöscht : HKLM\Software\systweak
Schlüssel Gelöscht : HKLM\Software\VideoDownloadConverter_4z
***** [ Browser ] *****
-\\ Internet Explorer v11.0.9600.16518
-\\ Google Chrome v33.0.1750.154
[ Datei : C:\Users\Reinhard\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [3960 octets] - [06/04/2014 12:34:27]
AdwCleaner[R1].txt - [4020 octets] - [06/04/2014 12:41:26]
AdwCleaner[S0].txt - [3673 octets] - [06/04/2014 12:42:11]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [3733 octets] ########## junkware Code:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 8.1 x64
Ran by Reinhard on 06.04.2014 at 12:56:22,86
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{2860E113-7188-4BC6-B98D-73F205CCB570}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{995F4BA9-CC4A-41A0-B361-FA996141DF9F}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{cf6e4b1c-dbde-457e-9cef-ab8ecac8a5e8}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{995F4BA9-CC4A-41A0-B361-FA996141DF9F}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{cf6e4b1c-dbde-457e-9cef-ab8ecac8a5e8}
~~~ Files
~~~ Folders
Successfully deleted: [Folder] "C:\Program Files (x86)\radiorage_4jei"
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 06.04.2014 at 12:59:28,04
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ frst
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-03-2014
Ran by Reinhard (administrator) on REINI on 06-04-2014 12:59:58
Running from C:\Users\Reinhard\Downloads\x
Windows 8.1 (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(Hewlett-Packard Company) C:\WINDOWS\system32\Hpservice.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Microsoft Corporation) C:\WINDOWS\system32\WLANExt.exe
(Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Hewlett-Packard Development Company, L.P.) c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler64.exe
(Microsoft Corporation) C:\Windows\System32\skydrive.exe
(Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\Power2Go8\Power2GoExpress8.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe
(Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerSt.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
(CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe
(CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Reader_6.3.9654.17044_x64__8wekyb3d8bbwe\glcnd.exe
(Microsoft Corporation) C:\WINDOWS\SysWOW64\notepad.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7188552 2013-05-28] (Realtek Semiconductor)
HKLM\...\Run: [Logitech Download Assistant] - C:\Windows\System32\LogiLDA.dll [3933496 2012-09-20] (Logitech, Inc.)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2771184 2014-03-16] (Synaptics Incorporated)
HKLM-x32\...\Run: [YouCam Service] - C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe [267224 2013-05-22] (CyberLink Corp.)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-11-02] (Apple Inc.)
HKLM-x32\...\Run: [AccelerometerSysTrayApplet] - C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe [77088 2013-07-24] (Hewlett-Packard Company)
HKLM-x32\...\Run: [HPMessageService] - C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe [1045304 2013-10-08] (Hewlett-Packard Development Company, L.P.)
HKLM\...\RunOnce: [NCPluginUpdater] - "C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe" Update [21720 2014-03-25] (Hewlett-Packard)
Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2957572582-3131979646-2208594502-1001\...\Run: [Power2GoExpress8] - C:\Program Files (x86)\CyberLink\Power2Go8\Power2GoExpress8.exe [1713416 2013-08-05] (CyberLink Corp.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://google.at/
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPNOT13/4
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPNOT13/4
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPNOT13/4
SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPNTDFJS
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPNTDFJS
SearchScopes: HKLM - {995F4BA9-CC4A-41A0-B361-FA996141DF9F} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-154345-12128-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}
SearchScopes: HKLM-x32 - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-154345-12128-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}
SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPNTDFJS
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPNTDFJS
SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-154345-12128-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}
Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
Tcpip\Parameters: [DhcpNameServer] 192.168.0.138
Chrome:
=======
CHR Extension: (Google Docs) - C:\Users\Reinhard\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-03-30]
CHR Extension: (Google Drive) - C:\Users\Reinhard\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-03-30]
CHR Extension: (YouTube) - C:\Users\Reinhard\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-03-30]
CHR Extension: (Google-Suche) - C:\Users\Reinhard\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-03-30]
CHR Extension: (Google Wallet) - C:\Users\Reinhard\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-03-30]
CHR Extension: (Google Mail) - C:\Users\Reinhard\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-03-30]
==================== Services (Whitelisted) =================
R2 CyberLink PowerDVD 12 Media Server Monitor Service; C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe [77576 2013-09-05] (CyberLink)
R2 CyberLink PowerDVD 12 Media Server Service; C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe [298760 2013-09-05] (CyberLink)
R2 HPWMISVC; c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe [1039160 2013-10-08] (Hewlett-Packard Development Company, L.P.)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-22] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2014-03-16] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2014-03-16] (Intel Corporation)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [245832 2013-05-17] (Realtek Semiconductor)
R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2100024 2013-08-30] (TuneUp Software)
S3 w3logsvc; C:\Windows\system32\inetsrv\w3logsvc.dll [76800 2013-12-06] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [348392 2013-10-31] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2013-10-31] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra)
S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows (R) Win 7 DDK provider)
R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [91712 2013-03-05] (CyberLink)
S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation)
S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation)
S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation)
R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2013-11-11] (Microsoft Corporation)
S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2014-03-16] (Intel Corporation)
R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation)
S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation)
S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924512 2013-08-22] (Microsoft Corporation)
R3 RTWlanE; C:\Windows\system32\DRIVERS\rtwlane.sys [3068120 2014-03-16] (Realtek Semiconductor Corporation )
S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2013-10-26] (Microsoft Corporation)
S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [29424 2013-04-24] (Synaptics Incorporated)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2014-03-16] (Synaptics Incorporated)
S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-12-06] (Microsoft Corporation)
R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [14112 2013-08-21] (TuneUp Software)
S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124760 2013-10-31] (Microsoft Corporation)
R3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [20800 2012-08-31] (Hewlett-Packard Development Company, L.P.)
S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-04-06 12:59 - 2014-04-06 12:59 - 00001420 _____ () C:\Users\Reinhard\Desktop\JRT.txt
2014-04-06 12:56 - 2014-04-06 12:56 - 00000000 ____D () C:\WINDOWS\ERUNT
2014-04-06 12:32 - 2014-04-06 12:42 - 00000000 ____D () C:\AdwCleaner
2014-04-06 11:35 - 2014-04-06 12:26 - 00119512 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2014-04-06 11:34 - 2014-04-06 11:38 - 00001125 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-04-06 11:34 - 2014-04-06 11:38 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-04-06 11:34 - 2014-04-06 11:34 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-04-06 11:34 - 2014-04-03 09:51 - 00088280 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2014-04-06 11:34 - 2014-04-03 09:51 - 00063192 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2014-04-06 11:34 - 2014-04-03 09:50 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2014-04-06 11:23 - 2014-04-06 12:42 - 00056028 _____ () C:\WINDOWS\PFRO.log
2014-04-06 11:11 - 2014-04-06 11:11 - 00001291 _____ () C:\Users\Reinhard\Desktop\Revo Uninstaller.lnk
2014-04-06 11:11 - 2014-04-06 11:11 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group
2014-04-06 00:21 - 2014-04-06 12:59 - 00000000 ____D () C:\Users\Reinhard\Downloads\x
2014-04-06 00:21 - 2014-04-06 12:59 - 00000000 ____D () C:\FRST
2014-04-05 13:56 - 2014-04-05 13:56 - 00000797 _____ () C:\WINDOWS\setupact.log
2014-04-05 13:56 - 2014-04-05 13:56 - 00000000 _____ () C:\WINDOWS\setuperr.log
2014-04-05 13:56 - 2014-03-26 23:41 - 00962240 _____ (Microsoft Corporation) C:\Users\Reinhard\Downloads\Setup.X86.de-DE_HomeBusinessRetail_dbdc6420-583a-4e42-bb54-98cc01bd7a44_TX_DB_.exe
2014-04-04 19:46 - 2014-04-06 12:40 - 00151819 _____ () C:\WINDOWS\WindowsUpdate.log
2014-04-04 19:19 - 2014-04-04 19:20 - 20480104 _____ (Milewski Fahrzeugtechnik) C:\Users\Reinhard\Downloads\VCDS-MFT-12122-setup.exe
2014-04-04 19:12 - 2014-04-04 19:12 - 00000000 ____D () C:\Users\Default\AppData\Roaming\hpqLog
2014-04-04 19:12 - 2014-04-04 19:12 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\hpqLog
2014-03-30 18:52 - 2014-03-30 18:52 - 00002770 _____ () C:\WINDOWS\System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013
2014-03-30 17:34 - 2014-04-06 12:45 - 00002202 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-03-29 15:11 - 2014-03-30 18:11 - 00000078 _____ () C:\Users\Reinhard\AppData\Roaming\WB.CFG
2014-03-26 20:35 - 2014-02-22 14:16 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2014-03-26 20:35 - 2014-02-22 13:24 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2014-03-21 23:10 - 2014-03-21 23:10 - 00003304 _____ () C:\WINDOWS\System32\Tasks\pricemeterdownloader
2014-03-21 23:10 - 2014-03-21 23:10 - 00001559 _____ () C:\Users\Public\Desktop\Free YouTube to MP3 Converter.lnk
2014-03-21 23:10 - 2014-03-21 23:10 - 00001266 _____ () C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk
2014-03-21 23:10 - 2014-03-21 23:10 - 00000000 ____D () C:\Users\Reinhard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PriceMeter
2014-03-21 23:10 - 2014-03-21 23:10 - 00000000 ____D () C:\Users\Reinhard\AppData\Local\PriceMeterLiveUpdate
2014-03-21 23:10 - 2014-03-21 23:10 - 00000000 ____D () C:\ProgramData\PriceMeterLiveUpdate
2014-03-21 23:10 - 2014-03-21 23:10 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft
2014-03-21 23:09 - 2014-03-21 23:09 - 00000000 ____D () C:\ProgramData\Real
2014-03-21 22:37 - 2013-08-30 10:51 - 00040760 _____ (TuneUp Software) C:\WINDOWS\system32\TURegOpt.exe
2014-03-21 22:37 - 2013-08-30 10:51 - 00029496 _____ (TuneUp Software) C:\WINDOWS\system32\authuitu.dll
2014-03-21 22:37 - 2013-08-30 10:51 - 00025400 _____ (TuneUp Software) C:\WINDOWS\SysWOW64\authuitu.dll
2014-03-21 22:36 - 2014-03-21 22:37 - 00000000 ____D () C:\Program Files (x86)\TuneUp Utilities 2014
2014-03-21 22:30 - 2014-03-21 22:31 - 32734976 _____ (DVDVideoSoft Ltd. ) C:\Users\Reinhard\Desktop\FreeYouTubeDownload_3.2.30.319.exe
2014-03-19 17:52 - 2014-01-08 03:46 - 00325464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2014-03-19 17:52 - 2014-01-08 03:41 - 01530712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2014-03-19 17:52 - 2014-01-08 03:41 - 00382808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2014-03-19 17:52 - 2014-01-04 17:54 - 00138240 _____ () C:\WINDOWS\system32\OEMLicense.dll
2014-03-19 17:52 - 2014-01-04 17:08 - 00103936 _____ () C:\WINDOWS\SysWOW64\OEMLicense.dll
2014-03-19 17:52 - 2014-01-04 16:08 - 00206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSClient.dll
2014-03-19 17:52 - 2014-01-04 15:53 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSClient.dll
2014-03-19 17:52 - 2014-01-03 01:54 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll
2014-03-19 17:52 - 2014-01-03 01:48 - 00336896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsGdiConverter.dll
2014-03-19 17:52 - 2014-01-01 03:55 - 01720560 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2014-03-19 17:52 - 2014-01-01 03:52 - 00481944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2014-03-19 17:52 - 2014-01-01 02:56 - 01472048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2014-03-19 17:52 - 2014-01-01 02:55 - 00381168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2014-03-19 17:52 - 2014-01-01 01:59 - 00802816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2014-03-19 17:52 - 2014-01-01 01:57 - 01214976 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2014-03-19 17:52 - 2014-01-01 01:56 - 00960512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2014-03-19 17:52 - 2013-12-31 01:34 - 00218112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sti.dll
2014-03-19 17:52 - 2013-12-31 01:33 - 00770560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2014-03-19 17:52 - 2013-12-31 01:32 - 00303616 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti.dll
2014-03-19 17:52 - 2013-12-31 01:31 - 00947712 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2014-03-19 17:52 - 2013-12-31 01:31 - 00914944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2014-03-19 17:52 - 2013-12-27 17:09 - 00419160 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2014-03-19 17:52 - 2013-12-27 10:57 - 00842752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2014-03-19 17:52 - 2013-12-27 10:57 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2014-03-19 17:52 - 2013-12-27 10:23 - 00749056 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2014-03-19 17:52 - 2013-12-27 09:03 - 00630272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsSpellCheckingFacility.dll
2014-03-19 17:52 - 2013-12-27 09:03 - 00478208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2014-03-19 17:52 - 2013-12-27 08:37 - 00588800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2014-03-19 17:52 - 2013-12-21 09:21 - 00376320 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnrpsvc.dll
2014-03-19 17:52 - 2013-12-17 09:21 - 00408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2014-03-19 17:52 - 2013-12-14 08:31 - 13949440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2014-03-19 17:52 - 2013-12-14 08:19 - 18576384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2014-03-19 17:52 - 2013-12-13 12:54 - 00131160 _____ (Microsoft Corporation) C:\WINDOWS\system32\easinvoker.exe
2014-03-19 17:52 - 2013-12-13 08:36 - 00178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2014-03-19 17:52 - 2013-12-13 07:32 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\easwrt.dll
2014-03-19 17:52 - 2013-12-09 10:05 - 21199256 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2014-03-19 17:52 - 2013-12-09 06:51 - 18643560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2014-03-16 19:31 - 2014-03-16 19:31 - 00000000 ____D () C:\Users\Reinhard\AppData\Local\Downloaded Installations
2014-03-16 19:27 - 2014-03-16 19:27 - 00003166 _____ () C:\WINDOWS\System32\Tasks\CLVDLauncher
2014-03-16 19:27 - 2014-03-16 19:27 - 00003166 _____ () C:\WINDOWS\System32\Tasks\CLMLSvc_P2G8
2014-03-16 19:27 - 2013-03-05 13:01 - 00091712 _____ (CyberLink) C:\WINDOWS\system32\Drivers\CLVirtualDrive.sys
2014-03-16 18:45 - 2014-03-16 18:45 - 00830680 _____ (Realtek ) C:\WINDOWS\system32\Drivers\Rt630x64.sys
2014-03-16 18:45 - 2014-03-16 18:45 - 00074456 _____ (Realtek Semiconductor Corporation) C:\WINDOWS\system32\RtNicProp64.dll
2014-03-16 18:41 - 2014-04-06 12:44 - 00003172 _____ () C:\WINDOWS\System32\Tasks\HPCeeScheduleForReinhard
2014-03-16 18:41 - 2014-04-06 12:44 - 00000356 _____ () C:\WINDOWS\Tasks\HPCeeScheduleForReinhard.job
2014-03-16 18:40 - 2014-03-16 18:41 - 00000902 _____ () C:\WINDOWS\SysWOW64\InstallUtil.InstallLog
2014-03-16 18:20 - 2014-03-16 18:20 - 00000000 __SHD () C:\found.001
2014-03-16 17:45 - 2014-03-16 17:45 - 00000000 ____D () C:\Program Files (x86)\Cisco
2014-03-16 17:39 - 2014-03-16 17:38 - 00099288 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\TeeDriverx64.sys
2014-03-16 17:29 - 2014-03-16 17:29 - 00000000 ____D () C:\Intel
2014-03-16 17:26 - 2014-03-16 17:26 - 00000000 ____D () C:\Users\Reinhard\Intel
2014-03-16 17:22 - 2014-03-16 17:22 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2014-03-16 17:22 - 2014-03-16 17:22 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
2014-03-16 17:06 - 2014-03-16 16:43 - 00524016 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\SynTP.sys
2014-03-16 17:06 - 2014-03-16 16:43 - 00421616 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPCo19.dll
2014-03-16 17:06 - 2014-03-16 16:43 - 00251632 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPAPI.dll
2014-03-16 17:06 - 2014-03-16 16:43 - 00169712 _____ (Synaptics Incorporated) C:\WINDOWS\SysWOW64\SynTPCom.dll
2014-03-16 17:01 - 2014-03-16 16:41 - 00722160 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynCOM.dll
2014-03-16 17:01 - 2014-03-16 16:41 - 00400112 _____ (Synaptics Incorporated) C:\WINDOWS\SysWOW64\SynCom.dll
2014-03-16 16:56 - 2014-03-16 16:40 - 00034544 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\Smb_driver_Intel.sys
2014-03-16 15:44 - 2013-10-31 02:29 - 00236888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys
2014-03-16 15:44 - 2013-10-31 02:29 - 00124760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys
2014-03-16 15:44 - 2013-10-31 02:28 - 00035856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys
2014-03-16 14:44 - 2014-03-31 19:52 - 00000052 _____ () C:\WINDOWS\SysWOW64\DOErrors.log
2014-03-16 14:43 - 2014-03-31 19:51 - 00000000 _____ () C:\WINDOWS\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2014-03-16 14:29 - 2014-04-06 12:44 - 00000000 __RDO () C:\Users\Reinhard\SkyDrive
2014-03-13 19:18 - 2014-03-01 08:05 - 23133696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-03-13 19:18 - 2014-03-01 06:30 - 17074688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-03-13 19:18 - 2013-12-20 12:18 - 01643584 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2014-03-13 19:18 - 2013-12-20 12:18 - 01507704 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2014-03-13 19:17 - 2014-03-01 06:58 - 02765824 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2014-03-13 19:17 - 2014-03-01 06:17 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2014-03-13 19:17 - 2014-03-01 05:54 - 05768704 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2014-03-13 19:17 - 2014-03-01 05:47 - 02168320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2014-03-13 19:17 - 2014-03-01 05:42 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2014-03-13 19:17 - 2014-03-01 05:18 - 13051904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2014-03-13 19:17 - 2014-03-01 05:14 - 04244480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2014-03-13 19:17 - 2014-03-01 05:10 - 02334208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2014-03-13 19:17 - 2014-03-01 05:03 - 00524288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2014-03-13 19:17 - 2014-03-01 04:57 - 11266048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2014-03-13 19:17 - 2014-03-01 04:38 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2014-03-13 19:17 - 2014-03-01 04:32 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2014-03-13 19:17 - 2014-03-01 04:27 - 01156096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2014-03-13 19:17 - 2014-03-01 04:25 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2014-03-13 19:17 - 2014-03-01 04:25 - 00703488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2014-03-13 19:17 - 2014-02-11 05:04 - 04189184 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2014-03-13 19:17 - 2014-02-11 04:43 - 00488448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qedit.dll
2014-03-13 19:17 - 2014-02-11 04:04 - 00586240 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll
2014-03-13 19:17 - 2014-01-31 18:15 - 00311640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys
2014-03-13 19:17 - 2014-01-31 18:07 - 00233920 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2014-03-13 19:17 - 2014-01-31 18:06 - 02133208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2014-03-13 19:17 - 2014-01-31 15:47 - 02143960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2014-03-13 19:17 - 2014-01-31 11:06 - 00716288 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll
2014-03-13 19:17 - 2014-01-29 11:55 - 01287064 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2014-03-13 19:17 - 2014-01-29 10:53 - 00458616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2014-03-13 19:17 - 2014-01-29 10:53 - 00407024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2014-03-13 19:17 - 2014-01-29 10:49 - 01928144 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2014-03-13 19:17 - 2014-01-29 10:47 - 02543960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2014-03-13 19:17 - 2014-01-29 09:44 - 01371824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2014-03-13 19:17 - 2014-01-29 09:44 - 00408480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2014-03-13 19:17 - 2014-01-29 09:44 - 00369280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2014-03-13 19:17 - 2014-01-29 08:41 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpencom.dll
2014-03-13 19:17 - 2014-01-29 02:36 - 00249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll
2014-03-13 19:17 - 2014-01-27 21:07 - 04175360 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
2014-03-13 19:17 - 2014-01-27 21:06 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2014-03-13 19:17 - 2014-01-27 21:04 - 00160256 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2014-03-13 19:17 - 2014-01-27 20:52 - 01036288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2014-03-13 19:17 - 2014-01-27 20:23 - 02873344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll
2014-03-13 19:17 - 2014-01-27 20:21 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2014-03-13 19:17 - 2014-01-27 20:20 - 00138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2014-03-13 19:17 - 2014-01-27 20:15 - 01057280 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll
2014-03-13 19:17 - 2014-01-27 19:43 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll
2014-03-13 19:17 - 2014-01-27 19:18 - 01486848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbghelp.dll
2014-03-13 19:17 - 2014-01-27 19:00 - 01238016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbghelp.dll
2014-03-13 19:17 - 2014-01-27 17:58 - 05770752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2014-03-13 19:17 - 2014-01-27 17:50 - 06640640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2014-03-13 19:17 - 2014-01-27 13:45 - 00386722 _____ () C:\WINDOWS\system32\ApnDatabase.xml
2014-03-13 19:17 - 2014-01-18 01:04 - 00764864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2014-03-13 19:17 - 2014-01-17 23:54 - 00669352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2014-03-13 19:17 - 2013-12-21 16:51 - 06353960 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2014-03-13 19:17 - 2013-12-21 10:54 - 00447488 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcomapi.dll
2014-03-09 16:41 - 2014-03-16 14:29 - 00000000 __RDO () C:\Users\Reinhard\SkyDrive (2).old
2014-03-08 23:00 - 2014-03-08 23:00 - 00000000 ____D () C:\Users\Reinhard\AppData\Local\MediaServer
==================== One Month Modified Files and Folders =======
2014-04-06 13:00 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2014-04-06 12:59 - 2014-04-06 12:59 - 00001420 _____ () C:\Users\Reinhard\Desktop\JRT.txt
2014-04-06 12:59 - 2014-04-06 00:21 - 00000000 ____D () C:\Users\Reinhard\Downloads\x
2014-04-06 12:59 - 2014-04-06 00:21 - 00000000 ____D () C:\FRST
2014-04-06 12:56 - 2014-04-06 12:56 - 00000000 ____D () C:\WINDOWS\ERUNT
2014-04-06 12:48 - 2013-11-30 01:07 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2957572582-3131979646-2208594502-1001
2014-04-06 12:47 - 2013-09-30 06:14 - 00958356 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-04-06 12:45 - 2014-03-30 17:34 - 00002202 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-04-06 12:44 - 2014-03-16 18:41 - 00003172 _____ () C:\WINDOWS\System32\Tasks\HPCeeScheduleForReinhard
2014-04-06 12:44 - 2014-03-16 18:41 - 00000356 _____ () C:\WINDOWS\Tasks\HPCeeScheduleForReinhard.job
2014-04-06 12:44 - 2014-03-16 14:29 - 00000000 __RDO () C:\Users\Reinhard\SkyDrive
2014-04-06 12:44 - 2013-12-01 20:23 - 00001122 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-04-06 12:44 - 2013-11-30 01:01 - 00000000 ____D () C:\Users\Reinhard\Documents\Youcam
2014-04-06 12:42 - 2014-04-06 12:32 - 00000000 ____D () C:\AdwCleaner
2014-04-06 12:42 - 2014-04-06 11:23 - 00056028 _____ () C:\WINDOWS\PFRO.log
2014-04-06 12:42 - 2013-08-22 16:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-04-06 12:40 - 2014-04-04 19:46 - 00151819 _____ () C:\WINDOWS\WindowsUpdate.log
2014-04-06 12:38 - 2013-12-01 20:23 - 00001126 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-04-06 12:26 - 2014-04-06 11:35 - 00119512 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2014-04-06 12:21 - 2013-08-22 15:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2014-04-06 11:38 - 2014-04-06 11:34 - 00001125 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-04-06 11:38 - 2014-04-06 11:34 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-04-06 11:34 - 2014-04-06 11:34 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-04-06 11:11 - 2014-04-06 11:11 - 00001291 _____ () C:\Users\Reinhard\Desktop\Revo Uninstaller.lnk
2014-04-06 11:11 - 2014-04-06 11:11 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group
2014-04-06 10:44 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2014-04-06 10:36 - 2013-12-07 22:31 - 00003930 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{093857C0-2892-421C-BE1B-874AD13A024F}
2014-04-05 13:59 - 2013-12-06 21:59 - 00000000 ____D () C:\Users\Reinhard
2014-04-05 13:56 - 2014-04-05 13:56 - 00000797 _____ () C:\WINDOWS\setupact.log
2014-04-05 13:56 - 2014-04-05 13:56 - 00000000 _____ () C:\WINDOWS\setuperr.log
2014-04-04 19:20 - 2014-04-04 19:19 - 20480104 _____ (Milewski Fahrzeugtechnik) C:\Users\Reinhard\Downloads\VCDS-MFT-12122-setup.exe
2014-04-04 19:12 - 2014-04-04 19:12 - 00000000 ____D () C:\Users\Default\AppData\Roaming\hpqLog
2014-04-04 19:12 - 2014-04-04 19:12 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\hpqLog
2014-04-03 09:51 - 2014-04-06 11:34 - 00088280 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2014-04-03 09:51 - 2014-04-06 11:34 - 00063192 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2014-04-03 09:50 - 2014-04-06 11:34 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2014-04-01 17:43 - 2013-07-22 11:02 - 00000000 ____D () C:\Program Files (x86)\Hewlett-Packard
2014-03-31 19:52 - 2014-03-16 14:44 - 00000052 _____ () C:\WINDOWS\SysWOW64\DOErrors.log
2014-03-31 19:52 - 2013-07-22 11:05 - 00000000 ____D () C:\ProgramData\Hewlett-Packard
2014-03-31 19:51 - 2014-03-16 14:43 - 00000000 _____ () C:\WINDOWS\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2014-03-31 19:51 - 2012-08-04 02:02 - 00000000 ____D () C:\SWSetup
2014-03-30 18:52 - 2014-03-30 18:52 - 00002770 _____ () C:\WINDOWS\System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013
2014-03-30 18:11 - 2014-03-29 15:11 - 00000078 _____ () C:\Users\Reinhard\AppData\Roaming\WB.CFG
2014-03-30 17:34 - 2013-12-01 20:23 - 00000000 ____D () C:\Users\Reinhard\AppData\Local\Google
2014-03-30 17:34 - 2013-12-01 20:23 - 00000000 ____D () C:\Program Files (x86)\Google
2014-03-29 05:20 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\NDF
2014-03-29 05:13 - 2013-11-30 00:59 - 00000000 ___RD () C:\Users\Reinhard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-03-29 05:13 - 2013-11-30 00:59 - 00000000 ___RD () C:\Users\Reinhard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-03-29 05:09 - 2013-08-22 17:36 - 00000000 ___RD () C:\WINDOWS\ToastData
2014-03-26 23:41 - 2014-04-05 13:56 - 00962240 _____ (Microsoft Corporation) C:\Users\Reinhard\Downloads\Setup.X86.de-DE_HomeBusinessRetail_dbdc6420-583a-4e42-bb54-98cc01bd7a44_TX_DB_.exe
2014-03-21 23:10 - 2014-03-21 23:10 - 00003304 _____ () C:\WINDOWS\System32\Tasks\pricemeterdownloader
2014-03-21 23:10 - 2014-03-21 23:10 - 00001559 _____ () C:\Users\Public\Desktop\Free YouTube to MP3 Converter.lnk
2014-03-21 23:10 - 2014-03-21 23:10 - 00001266 _____ () C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk
2014-03-21 23:10 - 2014-03-21 23:10 - 00000000 ____D () C:\Users\Reinhard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PriceMeter
2014-03-21 23:10 - 2014-03-21 23:10 - 00000000 ____D () C:\Users\Reinhard\AppData\Local\PriceMeterLiveUpdate
2014-03-21 23:10 - 2014-03-21 23:10 - 00000000 ____D () C:\ProgramData\PriceMeterLiveUpdate
2014-03-21 23:10 - 2014-03-21 23:10 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft
2014-03-21 23:10 - 2013-12-01 23:48 - 00000000 ____D () C:\Users\Reinhard\AppData\Roaming\DVDVideoSoft
2014-03-21 23:09 - 2014-03-21 23:09 - 00000000 ____D () C:\ProgramData\Real
2014-03-21 22:37 - 2014-03-21 22:36 - 00000000 ____D () C:\Program Files (x86)\TuneUp Utilities 2014
2014-03-21 22:36 - 2013-12-01 23:50 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2014-03-21 22:31 - 2014-03-21 22:30 - 32734976 _____ (DVDVideoSoft Ltd. ) C:\Users\Reinhard\Desktop\FreeYouTubeDownload_3.2.30.319.exe
2014-03-19 21:02 - 2013-12-01 17:25 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-03-19 21:00 - 2013-12-01 17:25 - 90015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-03-16 19:36 - 2013-11-30 01:43 - 00000000 ____D () C:\Users\Reinhard\AppData\Roaming\CyberLink
2014-03-16 19:31 - 2014-03-16 19:31 - 00000000 ____D () C:\Users\Reinhard\AppData\Local\Downloaded Installations
2014-03-16 19:28 - 2013-11-30 14:20 - 00000000 ____D () C:\Users\Reinhard\AppData\Roaming\hpqlog
2014-03-16 19:27 - 2014-03-16 19:27 - 00003166 _____ () C:\WINDOWS\System32\Tasks\CLVDLauncher
2014-03-16 19:27 - 2014-03-16 19:27 - 00003166 _____ () C:\WINDOWS\System32\Tasks\CLMLSvc_P2G8
2014-03-16 19:25 - 2013-09-08 00:13 - 00000000 ____D () C:\Program Files (x86)\CyberLink
2014-03-16 19:09 - 2013-11-30 01:01 - 00000000 ____D () C:\Users\Reinhard\AppData\Local\CyberLink
2014-03-16 19:09 - 2013-09-08 00:20 - 00000000 ____D () C:\Users\Public\CyberLink
2014-03-16 19:07 - 2013-09-08 00:15 - 00000000 ____D () C:\ProgramData\CyberLink
2014-03-16 18:45 - 2014-03-16 18:45 - 00830680 _____ (Realtek ) C:\WINDOWS\system32\Drivers\Rt630x64.sys
2014-03-16 18:45 - 2014-03-16 18:45 - 00074456 _____ (Realtek Semiconductor Corporation) C:\WINDOWS\system32\RtNicProp64.dll
2014-03-16 18:45 - 2013-09-07 23:56 - 00000000 ____D () C:\Program Files (x86)\Realtek
2014-03-16 18:41 - 2014-03-16 18:40 - 00000902 _____ () C:\WINDOWS\SysWOW64\InstallUtil.InstallLog
2014-03-16 18:41 - 2013-11-30 00:58 - 00000000 ____D () C:\Users\Reinhard\AppData\Local\Hewlett-Packard
2014-03-16 18:26 - 2013-09-30 05:56 - 00859222 _____ () C:\WINDOWS\system32\perfh007.dat
2014-03-16 18:26 - 2013-09-30 05:56 - 00004556 _____ () C:\WINDOWS\system32\perfc007.dat
2014-03-16 18:22 - 2013-08-22 16:44 - 00344840 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-03-16 18:20 - 2014-03-16 18:20 - 00000000 __SHD () C:\found.001
2014-03-16 18:16 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-03-16 18:16 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-03-16 18:16 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files\Windows Defender
2014-03-16 18:16 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2014-03-16 17:45 - 2014-03-16 17:45 - 00000000 ____D () C:\Program Files (x86)\Cisco
2014-03-16 17:44 - 2013-09-08 00:02 - 03068120 _____ (Realtek Semiconductor Corporation ) C:\WINDOWS\system32\Drivers\rtwlane.sys
2014-03-16 17:40 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2014-03-16 17:38 - 2014-03-16 17:39 - 00099288 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\TeeDriverx64.sys
2014-03-16 17:38 - 2013-09-07 23:56 - 00016344 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\IntelMEFWVer.dll
2014-03-16 17:29 - 2014-03-16 17:29 - 00000000 ____D () C:\Intel
2014-03-16 17:29 - 2013-09-07 23:53 - 00053248 _____ (Windows XP Bundled build C-Centric Single User) C:\WINDOWS\SysWOW64\CSVer.dll
2014-03-16 17:26 - 2014-03-16 17:26 - 00000000 ____D () C:\Users\Reinhard\Intel
2014-03-16 17:26 - 2013-12-06 21:54 - 00000000 ____D () C:\Program Files\Intel
2014-03-16 17:22 - 2014-03-16 17:22 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2014-03-16 17:22 - 2014-03-16 17:22 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
2014-03-16 16:43 - 2014-03-16 17:06 - 00524016 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\SynTP.sys
2014-03-16 16:43 - 2014-03-16 17:06 - 00421616 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPCo19.dll
2014-03-16 16:43 - 2014-03-16 17:06 - 00251632 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPAPI.dll
2014-03-16 16:43 - 2014-03-16 17:06 - 00169712 _____ (Synaptics Incorporated) C:\WINDOWS\SysWOW64\SynTPCom.dll
2014-03-16 16:41 - 2014-03-16 17:01 - 00722160 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynCOM.dll
2014-03-16 16:41 - 2014-03-16 17:01 - 00400112 _____ (Synaptics Incorporated) C:\WINDOWS\SysWOW64\SynCom.dll
2014-03-16 16:40 - 2014-03-16 16:56 - 00034544 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\Smb_driver_Intel.sys
2014-03-16 14:29 - 2014-03-09 16:41 - 00000000 __RDO () C:\Users\Reinhard\SkyDrive (2).old
2014-03-09 16:41 - 2013-12-06 22:22 - 00000000 __RDO () C:\Users\Reinhard\SkyDrive.old
2014-03-08 23:00 - 2014-03-08 23:00 - 00000000 ____D () C:\Users\Reinhard\AppData\Local\MediaServer
Some content of TEMP:
====================
C:\Users\Reinhard\AppData\Local\Temp\Quarantine.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys
[2014-03-13 19:17] - [2014-01-31 18:15] - 0311640 ____A (Microsoft Corporation) C85C075DE5B6D0FE116043054DE8EE02
LastRegBack: 2014-04-06 12:15
==================== End Of Log ============================ --- --- ---
Danke für eine weitere Hilfe |