Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: HTML/Infected.WebPage.Gen2

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 05.10.2013, 23:39   #1
schnecksche
 
HTML/Infected.WebPage.Gen2 - Standard

HTML/Infected.WebPage.Gen2



Hallo zusammen,

habe einen Virus oder ähnliches gefunden: HTML/Infected.WebPage.Gen2

Habe daraufhin meine Festplatte neu formatiert. Der Fund kam nun von meiner externen Festplatte, auf der ich meine Daten gesichert habe.

Habe OTL ausgeführt, nur weiß ich nicht, ob die Festplatte auch gescannt wurde.

Anbei die logs.

Code:
ATTFilter
OTL logfile created on: 06.10.2013 00:14:48 - Run 2
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\Caro\Downloads
 Starter Edition  (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
1,99 Gb Total Physical Memory | 1,39 Gb Available Physical Memory | 69,84% Memory free
3,98 Gb Paging File | 3,06 Gb Available in Paging File | 76,88% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 215,79 Gb Total Space | 197,28 Gb Free Space | 91,42% Space Free | Partition Type: NTFS
Drive D: | 4,00 Gb Total Space | 2,66 Gb Free Space | 66,51% Space Free | Partition Type: FAT32
Drive E: | 931,32 Gb Total Space | 596,24 Gb Free Space | 64,02% Space Free | Partition Type: exFAT
 
Computer Name: CARO-PC | User Name: Caro | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
========== Processes (SafeList) ==========
 
PRC - C:\Users\Caro\Downloads\OTL.exe (OldTimer Tools)
PRC - C:\Programme\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG)
PRC - C:\Programme\Avira\AntiVir Desktop\avshadow.exe (Avira Operations GmbH & Co. KG)
PRC - C:\Programme\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
PRC - C:\Programme\Avira\AntiVir Desktop\avguard.exe (Avira Operations GmbH & Co. KG)
PRC - C:\Programme\Samsung\Kies\KiesTrayAgent.exe (Samsung Electronics Co., Ltd.)
PRC - C:\Programme\Samsung\Kies\Kies.exe (Samsung)
PRC - C:\Programme\Bluetooth Suite\BtvStack.exe (Atheros Communications)
PRC - C:\Programme\Bluetooth Suite\AthBtTray.exe (Atheros Commnucations)
PRC - C:\Programme\Bluetooth Suite\AdminService.exe (Atheros Commnucations)
PRC - C:\Programme\Launch Manager\LManager.exe (Dritek System Inc.)
PRC - C:\Programme\Launch Manager\dsiwmis.exe (Dritek System Inc.)
PRC - C:\Programme\Launch Manager\LMworker.exe (Dritek System Inc.)
PRC - C:\Programme\Acer\Updater\iUpdate.exe (Insyde Software Corp.)
PRC - C:\Windows\explorer.exe (Microsoft Corporation)
PRC - C:\Programme\Acer\Acer ePower Management\ePowerTray.exe (Acer Incorporated)
PRC - C:\Programme\Acer\Acer ePower Management\ePowerSvc.exe (Acer Incorporated)
PRC - C:\Programme\Acer\Acer ePower Management\ePowerEvent.exe (Acer Incorporated)
PRC - C:\Programme\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation)
PRC - C:\Programme\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation)
PRC - C:\Programme\EgisTec MyWinLocker\x86\mwlDaemon.exe (Egis Technology Inc.)
PRC - C:\Programme\EgisTec IPS\PmmUpdate.exe (Egis Technology Inc.)
PRC - C:\Programme\EgisTec IPS\EgisUpdate.exe (Egis Technology Inc.)
PRC - C:\Programme\Acer\Acer VCM\AcerVCM.exe (Acer Incorporated)
PRC - C:\Programme\Acer\Acer VCM\RS_Service.exe (Acer Incorporated)
PRC - C:\Programme\Acer\Acer Updater\UpdaterService.exe (Acer Group)
PRC - C:\Programme\Acer\Registration\GREGsvc.exe (Acer Incorporated)
PRC - C:\Programme\Acer\Android Manager\iSync.exe (Insyde Software Corp.)
PRC - C:\Programme\Windows Media Player\wmpnetwk.exe (Microsoft Corporation)
PRC - C:\Windows\System32\taskhost.exe (Microsoft Corporation)
 
 
========== Modules (No Company Name) ==========
 
MOD - C:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_de_b77a5c561934e089\mscorlib.resources.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\System.ServiceProcess.resources\2.0.0.0_de_b03f5f7f11d50a3a\System.ServiceProcess.resources.dll ()
MOD - C:\Windows\assembly\GAC_MSIL\System.Runtime.Remoting.resources\2.0.0.0_de_b77a5c561934e089\System.Runtime.Remoting.resources.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Core\1f18baac078c4552b764e9f9b7fb1fa0\System.Core.ni.dll ()
MOD - C:\Programme\Samsung\Kies\Theme\Kies.Theme.dll ()
MOD - C:\Programme\Samsung\Kies\Common\Kies.UI.dll ()
MOD - C:\Programme\Samsung\Kies\Common\Kies.Common.DeviceServiceLib.Interface.dll ()
MOD - C:\Programme\Samsung\Kies\MVVM\Kies.MVVM.dll ()
MOD - C:\Programme\Samsung\Kies\External\MediaModules\ASF_cSharpAPI.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorUtil\179228277a9bbba9fb2ebeee5b1a41a2\IAStorUtil.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\6b8b76b26be7d7f4c3d1cb644811a2ef\System.ServiceProcess.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\6728ef6a4c4b41eec6af6f48a7109457\System.Runtime.Remoting.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\b090f03193ffab4bc38d14316331ac67\PresentationFramework.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\46a97b15da5b620fbb606cb05b6573a3\System.Windows.Forms.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\fdeec42fa02f3d789c42be2e33b130eb\System.Drawing.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\b7075f4be49affb3dfc655917113dd02\PresentationCore.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\cd18fe55c106a2776b08ce297afe7f46\WindowsBase.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\3060dfcdecbeb8ee65077fb29b217c3d\System.Xml.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\f2060a0cf20f2536277761f4e517e906\System.Configuration.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System\500ddd904b1099f95552a81b54223b7f\System.ni.dll ()
MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\f58ab951b57c8526430486dcf7ee38fd\mscorlib.ni.dll ()
MOD - C:\Programme\Acer\Android Manager\DEU.dll ()
MOD - C:\Programme\Launch Manager\CdDirIo.dll ()
 
 
========== Services (SafeList) ==========
 
SRV - (AntiVirSchedulerService) -- C:\Programme\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG)
SRV - (AntiVirWebService) -- C:\Programme\Avira\AntiVir Desktop\avwebg7.exe (Avira Operations GmbH & Co. KG)
SRV - (AntiVirService) -- C:\Programme\Avira\AntiVir Desktop\avguard.exe (Avira Operations GmbH & Co. KG)
SRV - (AtherosSvc) -- C:\Programme\Bluetooth Suite\AdminService.exe (Atheros Commnucations)
SRV - (DsiWMIService) -- C:\Programme\Launch Manager\dsiwmis.exe (Dritek System Inc.)
SRV - (ePowerSvc) -- C:\Programme\Acer\Acer ePower Management\ePowerSvc.exe (Acer Incorporated)
SRV - (IAStorDataMgrSvc) -- C:\Programme\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation)
SRV - (MWLService) -- C:\Programme\EgisTec MyWinLocker\x86\MWLService.exe (Egis Technology Inc.)
SRV - (RS_Service) -- C:\Programme\Acer\Acer VCM\RS_Service.exe (Acer Incorporated)
SRV - (Updater Service) -- C:\Programme\Acer\Acer Updater\UpdaterService.exe (Acer Group)
SRV - (GREGService) -- C:\Programme\Acer\Registration\GREGsvc.exe (Acer Incorporated)
SRV - (WinDefend) -- C:\Programme\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV - (WMPNetworkSvc) -- C:\Programme\Windows Media Player\wmpnetwk.exe (Microsoft Corporation)
 
 
========== Driver Services (SafeList) ==========
 
DRV - (ssmdrv) -- C:\Windows\System32\drivers\ssmdrv.sys (Avira GmbH)
DRV - (avipbb) -- C:\Windows\System32\drivers\avipbb.sys (Avira Operations GmbH & Co. KG)
DRV - (avgntflt) -- C:\Windows\System32\drivers\avgntflt.sys (Avira Operations GmbH & Co. KG)
DRV - (avnetflt) -- C:\Windows\System32\drivers\avnetflt.sys (Avira Operations GmbH & Co. KG)
DRV - (avkmgr) -- C:\Windows\System32\drivers\avkmgr.sys (Avira Operations GmbH & Co. KG)
DRV - (BTATH_A2DP) -- C:\Windows\System32\drivers\btath_a2dp.sys (Atheros)
DRV - (BtFilter) -- C:\Windows\System32\drivers\btfilter.sys (Atheros)
DRV - (BTATH_HCRP) -- C:\Windows\System32\drivers\btath_hcrp.sys (Atheros)
DRV - (BTATH_RCP) -- C:\Windows\System32\drivers\btath_rcp.sys (Atheros)
DRV - (BTATH_LWFLT) -- C:\Windows\System32\drivers\btath_lwflt.sys (Atheros)
DRV - (ATHDFU) -- C:\Windows\System32\drivers\AthDfu.sys (Windows (R) Win 7 DDK provider)
DRV - (AthBTPort) -- C:\Windows\System32\drivers\btath_flt.sys (Atheros)
DRV - (BTATH_BUS) -- C:\Windows\System32\drivers\btath_bus.sys (Atheros)
DRV - (L1C) -- C:\Windows\System32\drivers\L1C62x86.sys (Atheros Communications, Inc.)
DRV - (athr) -- C:\Windows\System32\drivers\athr.sys (Atheros Communications, Inc.)
DRV - (EUCR) -- C:\Windows\System32\drivers\EUCR6SK.sys (ENE Technology Inc.)
DRV - (mwlPSDVDisk) -- C:\Windows\System32\drivers\mwlPSDVDisk.sys (Egis Technology Inc.)
DRV - (mwlPSDNServ) -- C:\Windows\System32\drivers\mwlPSDNserv.sys (Egis Technology Inc.)
DRV - (mwlPSDFilter) -- C:\Windows\System32\drivers\mwlPSDFilter.sys (Egis Technology Inc.)
 
 
========== Standard Registry (SafeList) ==========
 
 
========== Internet Explorer ==========
 
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer.msn.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://acer.msn.com
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&form=AARTDF&pc=MAAR&src=IE-SearchBox
 
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer.msn.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.google.de/
IE - HKCU\..\SearchScopes,DefaultScope = {774B50F9-F90F-403D-AEA2-6D977DF6BCC2}
IE - HKCU\..\SearchScopes\{774B50F9-F90F-403D-AEA2-6D977DF6BCC2}: "URL" = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
 
========== FireFox ==========
 
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.50401.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8117.0416: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
 
 
 
O1 HOSTS File: ([2009.06.10 23:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (CIESpeechBHO Class) - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Programme\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
O2 - BHO: (Windows Live Anmelde-Hilfsprogramm) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4 - HKLM..\Run: [Acer ePower Management] C:\Programme\Acer\Acer ePower Management\ePowerTray.exe (Acer Incorporated)
O4 - HKLM..\Run: [AndroidManager] C:\Programme\Acer\Android Manager\AML.exe ()
O4 - HKLM..\Run: [AthBtTray] C:\Program Files\Bluetooth Suite\AthBtTray.exe (Atheros Commnucations)
O4 - HKLM..\Run: [AtherosBtStack] C:\Program Files\Bluetooth Suite\BtvStack.exe (Atheros Communications)
O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
O4 - HKLM..\Run: [EgisTecPMMUpdate] C:\Program Files\EgisTec IPS\PmmUpdate.exe (Egis Technology Inc.)
O4 - HKLM..\Run: [EgisUpdate] C:\Program Files\EgisTec IPS\EgisUpdate.exe (Egis Technology Inc.)
O4 - HKLM..\Run: [IAStorIcon] C:\Programme\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation)
O4 - HKLM..\Run: [iPatchData] C:\Programme\Acer\Updater\iUpdate.exe (Insyde Software Corp.)
O4 - HKLM..\Run: [iSyncData] C:\Programme\Acer\Android Manager\iSync.exe (Insyde Software Corp.)
O4 - HKLM..\Run: [KiesTrayAgent] C:\Programme\Samsung\Kies\KiesTrayAgent.exe (Samsung Electronics Co., Ltd.)
O4 - HKLM..\Run: [LManager] C:\Programme\Launch Manager\LManager.exe (Dritek System Inc.)
O4 - HKLM..\Run: [mwlDaemon] C:\Programme\EgisTec MyWinLocker\x86\mwlDaemon.exe (Egis Technology Inc.)
O4 - HKLM..\Run: [SuiteTray] C:\Program Files\EgisTec MyWinLockerSuite\x86\SuiteTray.exe (Egis Technology Inc.)
O4 - HKCU..\Run: [KiesAirMessage] C:\Program Files\Samsung\Kies\KiesAirMessage.exe -startup File not found
O4 - HKCU..\Run: [KiesPreload] C:\Program Files\Samsung\Kies\Kies.exe (Samsung)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O9 - Extra Button: In Blog veröffentlichen - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Programme\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : In Windows Live Writer in Blog veröffentliche&n - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Programme\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Programme\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.178.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{3554765A-9542-43B4-A2AA-8C58BD01F508}: DhcpNameServer = 192.168.178.1
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Programme\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Programme\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Programme\Acer\Acer VCM\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Programme\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009.06.10 23:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
 
========== Files/Folders - Created Within 30 Days ==========
 
[2013.10.06 02:37:47 | 000,000,000 | ---D | C] -- C:\Windows\de-DE
[2013.10.06 02:37:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\XPSViewer
[2013.10.06 02:37:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\de-DE
[2013.10.06 02:37:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\0407
[2013.10.06 02:37:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\de
[2013.10.06 02:36:48 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\usbrpm.sys.mui
[2013.10.06 02:36:38 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\fvevol.sys.mui
[2013.10.06 02:36:24 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\nwifi.sys.mui
[2013.10.06 02:36:24 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\qwavedrv.sys.mui
[2013.10.06 02:36:13 | 000,033,280 | ---- | C] (Marvell) -- C:\Windows\System32\drivers\de-DE\yk62x86.sys.mui
[2013.10.06 02:36:13 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\volsnap.sys.mui
[2013.10.06 02:36:13 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\usbport.sys.mui
[2013.10.06 02:36:13 | 000,025,088 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\de-DE\e1y6032.sys.mui
[2013.10.06 02:36:13 | 000,025,088 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\de-DE\e1e6032.sys.mui
[2013.10.06 02:36:13 | 000,022,016 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\de-DE\E1G60I32.sys.mui
[2013.10.06 02:36:13 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\viac7.sys.mui
[2013.10.06 02:36:13 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\processr.sys.mui
[2013.10.06 02:36:13 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\intelppm.sys.mui
[2013.10.06 02:36:13 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\amdppm.sys.mui
[2013.10.06 02:36:13 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\amdk8.sys.mui
[2013.10.06 02:36:13 | 000,013,312 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\de-DE\e1q6032.sys.mui
[2013.10.06 02:36:13 | 000,013,312 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\de-DE\e1k6032.sys.mui
[2013.10.06 02:36:13 | 000,013,312 | ---- | C] (Broadcom Corporation) -- C:\Windows\System32\drivers\de-DE\k57nd60x.sys.mui
[2013.10.06 02:36:13 | 000,013,312 | ---- | C] (Broadcom Corporation) -- C:\Windows\System32\drivers\de-DE\b57nd60x.sys.mui
[2013.10.06 02:36:13 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\usbhub.sys.mui
[2013.10.06 02:36:13 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\serial.sys.mui
[2013.10.06 02:36:13 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ohci1394.sys.mui
[2013.10.06 02:36:13 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\1394ohci.sys.mui
[2013.10.06 02:36:13 | 000,011,776 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\de-DE\BrSerIb.sys.mui
[2013.10.06 02:36:13 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\i8042prt.sys.mui
[2013.10.06 02:36:13 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\acpi.sys.mui
[2013.10.06 02:36:13 | 000,010,752 | ---- | C] (Agere Systems) -- C:\Windows\System32\drivers\de-DE\ltmdmnt.sys.mui
[2013.10.06 02:36:13 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\battc.sys.mui
[2013.10.06 02:36:13 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\pci.sys.mui
[2013.10.06 02:36:13 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\bthport.sys.mui
[2013.10.06 02:36:13 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\IPMIDrv.sys.mui
[2013.10.06 02:36:13 | 000,006,144 | ---- | C] (Broadcom Corporation) -- C:\Windows\System32\drivers\de-DE\bcm4sbxp.sys.mui
[2013.10.06 02:36:13 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\sermouse.sys.mui
[2013.10.06 02:36:13 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\kbdclass.sys.mui
[2013.10.06 02:36:13 | 000,005,120 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\de-DE\e100b325.sys.mui
[2013.10.06 02:36:13 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\mouclass.sys.mui
[2013.10.06 02:36:13 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\wacompen.sys.mui
[2013.10.06 02:36:13 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\vhdmp.sys.mui
[2013.10.06 02:36:13 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\vdrvroot.sys.mui
[2013.10.06 02:36:13 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\tpm.sys.mui
[2013.10.06 02:36:13 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\isapnp.sys.mui
[2013.10.06 02:36:13 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\hdaudbus.sys.mui
[2013.10.06 02:36:13 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\parport.sys.mui
[2013.10.06 02:36:13 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ataport.sys.mui
[2013.10.06 02:36:13 | 000,003,584 | ---- | C] (ATI Technologies Inc.) -- C:\Windows\System32\drivers\de-DE\atikmdag.sys.mui
[2013.10.06 02:36:13 | 000,003,072 | ---- | C] (VIA Technologies, Inc.              ) -- C:\Windows\System32\drivers\de-DE\getn62.sys.mui
[2013.10.06 02:36:13 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\umbus.sys.mui
[2013.10.06 02:36:13 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\parvdm.sys.mui
[2013.10.06 02:36:13 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\mssmbios.sys.mui
[2013.10.06 02:36:13 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\mouhid.sys.mui
[2013.10.06 02:36:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\vwifibus.sys.mui
[2013.10.06 02:36:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\VIAAGP.SYS.mui
[2013.10.06 02:36:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ULIAGPKX.SYS.mui
[2013.10.06 02:36:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\UAGP35.SYS.mui
[2013.10.06 02:36:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\SISAGP.SYS.mui
[2013.10.06 02:36:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\NV_AGP.SYS.mui
[2013.10.06 02:36:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\MTConfig.sys.mui
[2013.10.06 02:36:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\kbdhid.sys.mui
[2013.10.06 02:36:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\GAGP30KX.SYS.mui
[2013.10.06 02:36:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\BTHUSB.SYS.mui
[2013.10.06 02:36:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\AMDAGP.SYS.mui
[2013.10.06 02:36:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\AGP440.sys.mui
[2013.10.06 02:36:13 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\wd.sys.mui
[2013.10.06 02:36:13 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\disk.sys.mui
[2013.10.06 02:36:13 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\cdrom.sys.mui
[2013.10.06 02:36:13 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\bthenum.sys.mui
[2013.10.06 02:36:13 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\amdide.sys.mui
[2013.10.06 02:36:09 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\mpio.sys.mui
[2013.10.06 02:36:09 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\afd.sys.mui
[2013.10.06 02:36:09 | 000,011,776 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\de-DE\BrSerId.sys.mui
[2013.10.06 02:36:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\msdsm.sys.mui
[2013.10.06 02:36:09 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\pcmcia.sys.mui
[2013.10.06 02:36:09 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\bthpan.sys.mui
[2013.10.06 02:36:09 | 000,004,096 | ---- | C] (SCM Microsystems, Inc.) -- C:\Windows\System32\drivers\de-DE\pscr.sys.mui
[2013.10.06 02:36:09 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\portcls.sys.mui
[2013.10.06 02:36:09 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\modem.sys.mui
[2013.10.06 02:36:09 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ipnat.sys.mui
[2013.10.06 02:36:09 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\HdAudio.sys.mui
[2013.10.06 02:36:09 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\serscan.sys.mui
[2013.10.06 02:36:09 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\rndismpx.sys.mui
[2013.10.06 02:36:09 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\rndismp6.sys.mui
[2013.10.06 02:36:09 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\hidbth.sys.mui
[2013.10.06 02:36:09 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\volmgrx.sys.mui
[2013.10.06 02:36:09 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\pnpmem.sys.mui
[2013.10.06 02:36:09 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\Dot4usb.sys.mui
[2013.10.06 02:36:09 | 000,002,560 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\de-DE\BrParwdm.sys.mui
[2013.10.06 02:36:05 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ntfs.sys.mui
[2013.10.06 02:36:05 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\tunnel.sys.mui
[2013.10.06 02:36:05 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\luafv.sys.mui
[2013.10.06 02:36:05 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\rdbss.sys.mui
[2013.10.06 02:36:05 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\srv.sys.mui
[2013.10.06 02:36:04 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ndisuio.sys.mui
[2013.10.06 02:36:04 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\partmgr.sys.mui
[2013.10.06 02:36:04 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\mountmgr.sys.mui
[2013.10.06 02:35:59 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ndiscap.sys.mui
[2013.10.06 02:35:59 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\RNDISMP.sys.mui
[2013.10.06 02:35:59 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\scfilter.sys.mui
[2013.10.06 02:35:55 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\http.sys.mui
[2013.10.06 02:35:55 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ndis.sys.mui
[2013.10.06 02:35:55 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\fltmgr.sys.mui
[2013.10.06 02:35:55 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\scsiport.sys.mui
[2013.10.06 02:35:55 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\wdf01000.sys.mui
[2013.10.06 02:35:50 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\tcpip.sys.mui
[2013.10.06 02:35:50 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\pacer.sys.mui
[2013.10.06 02:35:50 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ws2ifsl.sys.mui
[2013.10.06 02:35:46 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\bfe.dll.mui
[2013.10.06 02:30:25 | 000,000,000 | ---D | C] -- C:\Windows\NAPP_Dism_Log
[2013.10.05 23:49:13 | 000,000,000 | ---D | C] -- C:\Windows\pss
[2013.10.05 21:06:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyFree Codec
[2013.10.05 21:06:31 | 000,000,000 | ---D | C] -- C:\Program Files\MyFree Codec
[2013.10.05 21:03:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung
[2013.10.05 21:03:27 | 004,659,712 | ---- | C] (Dmitry Streblechenko) -- C:\Windows\System32\Redemption.dll
[2013.10.05 21:03:08 | 000,821,824 | ---- | C] (Devguru Co., Ltd.) -- C:\Windows\System32\dgderapi.dll
[2013.10.05 21:02:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Samsung
[2013.10.05 21:02:17 | 000,000,000 | ---D | C] -- C:\Program Files\Samsung
[2013.10.05 21:00:03 | 000,000,000 | ---D | C] -- C:\Users\Caro\AppData\Local\Downloaded Installations
[2013.10.05 20:57:24 | 000,000,000 | ---D | C] -- C:\Users\Caro\AppData\Roaming\Avira
[2013.10.05 20:50:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
[2013.10.05 20:50:28 | 000,028,520 | ---- | C] (Avira GmbH) -- C:\Windows\System32\drivers\ssmdrv.sys
[2013.10.05 20:50:24 | 000,137,208 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\System32\drivers\avipbb.sys
[2013.10.05 20:50:24 | 000,089,376 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\System32\drivers\avgntflt.sys
[2013.10.05 20:50:24 | 000,067,680 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\System32\drivers\avnetflt.sys
[2013.10.05 20:50:24 | 000,037,352 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\System32\drivers\avkmgr.sys
[2013.10.05 20:50:20 | 000,000,000 | ---D | C] -- C:\ProgramData\Avira
[2013.10.05 20:50:20 | 000,000,000 | ---D | C] -- C:\Program Files\Avira
[2013.10.05 20:48:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
[2013.10.05 20:29:35 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2013.10.05 20:22:02 | 000,826,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpcore.dll
[2013.10.05 20:20:25 | 000,000,000 | ---D | C] -- C:\Users\Caro\AppData\Roaming\Adobe
[2013.10.05 20:17:52 | 000,000,000 | ---D | C] -- C:\Users\Caro\AppData\Roaming\Macromedia
[2013.10.05 20:17:40 | 000,000,000 | ---D | C] -- C:\Users\Caro\AppData\Roaming\Intel Corporation
[2013.10.05 20:17:33 | 000,000,000 | ---D | C] -- C:\Users\Caro\AppData\Local\EgisTec IPS
[2013.10.05 20:17:08 | 000,000,000 | R--D | C] -- C:\Users\Caro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
[2013.10.05 20:17:08 | 000,000,000 | R--D | C] -- C:\Users\Caro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
[2013.10.05 20:17:07 | 000,000,000 | R--D | C] -- C:\Users\Caro\Searches
[2013.10.05 20:16:56 | 000,000,000 | ---D | C] -- C:\Users\Caro\AppData\Roaming\Identities
[2013.10.05 20:16:50 | 000,000,000 | R--D | C] -- C:\Users\Caro\Contacts
[2013.10.05 20:15:42 | 000,045,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wups2.dll
[2013.10.05 20:15:41 | 002,422,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wucltux.dll
[2013.10.05 20:15:32 | 000,000,000 | ---D | C] -- C:\Program Files\OEM
[2013.10.05 20:15:23 | 000,035,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wups.dll
[2013.10.05 20:15:22 | 000,577,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuapi.dll
[2013.10.05 20:15:22 | 000,088,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wudriver.dll
[2013.10.05 20:15:18 | 000,000,000 | ---D | C] -- C:\Program Files\Acer Accessory Store
[2013.10.05 20:15:05 | 000,171,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuwebv.dll
[2013.10.05 20:15:05 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuapp.exe
[2013.10.05 20:14:38 | 000,000,000 | ---D | C] -- C:\Users\Caro\AppData\Local\VirtualStore
[2013.10.05 20:14:37 | 000,000,000 | -HSD | C] -- C:\Users\Caro\Vorlagen
[2013.10.05 20:14:37 | 000,000,000 | -HSD | C] -- C:\Users\Caro\AppData\Local\Verlauf
[2013.10.05 20:14:37 | 000,000,000 | -HSD | C] -- C:\Users\Caro\AppData\Local\Temporary Internet Files
[2013.10.05 20:14:37 | 000,000,000 | -HSD | C] -- C:\Users\Caro\Startmenü
[2013.10.05 20:14:37 | 000,000,000 | -HSD | C] -- C:\Users\Caro\SendTo
[2013.10.05 20:14:37 | 000,000,000 | -HSD | C] -- C:\Users\Caro\Recent
[2013.10.05 20:14:37 | 000,000,000 | -HSD | C] -- C:\Users\Caro\Netzwerkumgebung
[2013.10.05 20:14:37 | 000,000,000 | -HSD | C] -- C:\Users\Caro\Lokale Einstellungen
[2013.10.05 20:14:37 | 000,000,000 | -HSD | C] -- C:\Users\Caro\Documents\Eigene Videos
[2013.10.05 20:14:37 | 000,000,000 | -HSD | C] -- C:\Users\Caro\Documents\Eigene Musik
[2013.10.05 20:14:37 | 000,000,000 | -HSD | C] -- C:\Users\Caro\Eigene Dateien
[2013.10.05 20:14:37 | 000,000,000 | -HSD | C] -- C:\Users\Caro\Documents\Eigene Bilder
[2013.10.05 20:14:37 | 000,000,000 | -HSD | C] -- C:\Users\Caro\Druckumgebung
[2013.10.05 20:14:37 | 000,000,000 | -HSD | C] -- C:\Users\Caro\Cookies
[2013.10.05 20:14:37 | 000,000,000 | -HSD | C] -- C:\Users\Caro\AppData\Local\Anwendungsdaten
[2013.10.05 20:14:37 | 000,000,000 | -HSD | C] -- C:\Users\Caro\Anwendungsdaten
[2013.10.05 20:14:36 | 000,000,000 | --SD | C] -- C:\Users\Caro\AppData\Roaming\Microsoft
[2013.10.05 20:14:36 | 000,000,000 | R--D | C] -- C:\Users\Caro\Videos
[2013.10.05 20:14:36 | 000,000,000 | R--D | C] -- C:\Users\Caro\Saved Games
[2013.10.05 20:14:36 | 000,000,000 | R--D | C] -- C:\Users\Caro\Pictures
[2013.10.05 20:14:36 | 000,000,000 | R--D | C] -- C:\Users\Caro\Music
[2013.10.05 20:14:36 | 000,000,000 | R--D | C] -- C:\Users\Caro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
[2013.10.05 20:14:36 | 000,000,000 | R--D | C] -- C:\Users\Caro\Links
[2013.10.05 20:14:36 | 000,000,000 | R--D | C] -- C:\Users\Caro\Favorites
[2013.10.05 20:14:36 | 000,000,000 | R--D | C] -- C:\Users\Caro\Downloads
[2013.10.05 20:14:36 | 000,000,000 | R--D | C] -- C:\Users\Caro\Documents
[2013.10.05 20:14:36 | 000,000,000 | R--D | C] -- C:\Users\Caro\Desktop
[2013.10.05 20:14:36 | 000,000,000 | R--D | C] -- C:\Users\Caro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
[2013.10.05 20:14:36 | 000,000,000 | -H-D | C] -- C:\Users\Caro\AppData
[2013.10.05 20:14:36 | 000,000,000 | ---D | C] -- C:\Users\Caro\AppData\Local\Temp
[2013.10.05 20:14:36 | 000,000,000 | ---D | C] -- C:\Users\Caro\AppData\Local\Microsoft
[2013.10.05 20:14:21 | 000,000,000 | -HSD | C] -- C:\ProgramData\Vorlagen
[2013.10.05 20:14:21 | 000,000,000 | -HSD | C] -- C:\ProgramData\Startmenü
[2013.10.05 20:14:21 | 000,000,000 | -HSD | C] -- C:\Recovery
[2013.10.05 20:14:21 | 000,000,000 | -HSD | C] -- C:\Programme
[2013.10.05 20:14:21 | 000,000,000 | -HSD | C] -- C:\Program Files\Gemeinsame Dateien
[2013.10.05 20:14:21 | 000,000,000 | -HSD | C] -- C:\ProgramData\Favoriten
[2013.10.05 20:14:21 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Videos
[2013.10.05 20:14:21 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Musik
[2013.10.05 20:14:21 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Bilder
[2013.10.05 20:14:21 | 000,000,000 | -HSD | C] -- C:\Dokumente und Einstellungen
[2013.10.05 20:14:21 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumente
[2013.10.05 20:14:21 | 000,000,000 | -HSD | C] -- C:\ProgramData\Anwendungsdaten
[2013.10.05 17:21:54 | 003,426,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_32.dll
[2013.10.05 17:21:48 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft SQL Server Compact Edition
[2013.10.05 17:20:42 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\microsoft
[2013.10.05 17:20:36 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Live SkyDrive
[2013.10.05 17:20:26 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
[2013.10.05 17:20:14 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Live
[2013.10.05 17:20:02 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH
[2013.10.05 17:18:37 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Windows Live
[2013.10.05 17:18:14 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office
[2013.10.05 17:15:30 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft
[2013.10.05 17:06:46 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BT Program
[2013.10.05 17:06:40 | 000,000,000 | ---D | C] -- C:\Program Files\Bluetooth Suite
[2013.10.05 17:04:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Crystal Eye webcam
[2013.10.05 17:04:47 | 000,000,000 | ---D | C] -- C:\Program Files\Acer Crystal Eye webcam
[2013.10.05 17:04:43 | 000,000,000 | ---D | C] -- C:\Program Files\Synaptics
[2013.10.05 16:57:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\Atheros_L1e
[2013.10.05 16:52:39 | 000,000,000 | ---D | C] -- C:\book
[2013.10.05 16:52:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AcerSystem
[2013.10.05 16:48:52 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2013.10.05 16:48:22 | 000,000,000 | ---D | C] -- C:\Windows\System32\Lang
[2013.10.05 16:48:21 | 001,006,104 | ---- | C] (Intel Corporation) -- C:\Windows\System32\igxpun.exe
[2013.10.05 16:45:45 | 000,000,000 | -HSD | C] -- C:\System Volume Information
 
========== Files - Modified Within 30 Days ==========
 
[2013.10.06 02:37:24 | 000,295,922 | ---- | M] () -- C:\Windows\System32\perfi007.dat
[2013.10.06 02:37:24 | 000,038,104 | ---- | M] () -- C:\Windows\System32\perfd007.dat
[2013.10.06 02:36:48 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\usbrpm.sys.mui
[2013.10.06 02:36:38 | 000,017,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\fvevol.sys.mui
[2013.10.06 02:36:29 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\UMDF\de-DE\WpdMtpDr.dll.mui
[2013.10.06 02:36:24 | 000,017,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\nwifi.sys.mui
[2013.10.06 02:36:24 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\qwavedrv.sys.mui
[2013.10.06 02:36:13 | 000,033,280 | ---- | M] (Marvell) -- C:\Windows\System32\drivers\de-DE\yk62x86.sys.mui
[2013.10.06 02:36:13 | 000,028,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\volsnap.sys.mui
[2013.10.06 02:36:13 | 000,025,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\usbport.sys.mui
[2013.10.06 02:36:13 | 000,025,088 | ---- | M] (Intel Corporation) -- C:\Windows\System32\drivers\de-DE\e1y6032.sys.mui
[2013.10.06 02:36:13 | 000,025,088 | ---- | M] (Intel Corporation) -- C:\Windows\System32\drivers\de-DE\e1e6032.sys.mui
[2013.10.06 02:36:13 | 000,022,016 | ---- | M] (Intel Corporation) -- C:\Windows\System32\drivers\de-DE\E1G60I32.sys.mui
[2013.10.06 02:36:13 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\viac7.sys.mui
[2013.10.06 02:36:13 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\processr.sys.mui
[2013.10.06 02:36:13 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\intelppm.sys.mui
[2013.10.06 02:36:13 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\amdppm.sys.mui
[2013.10.06 02:36:13 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\amdk8.sys.mui
[2013.10.06 02:36:13 | 000,013,312 | ---- | M] (Intel Corporation) -- C:\Windows\System32\drivers\de-DE\e1q6032.sys.mui
[2013.10.06 02:36:13 | 000,013,312 | ---- | M] (Intel Corporation) -- C:\Windows\System32\drivers\de-DE\e1k6032.sys.mui
[2013.10.06 02:36:13 | 000,013,312 | ---- | M] (Broadcom Corporation) -- C:\Windows\System32\drivers\de-DE\k57nd60x.sys.mui
[2013.10.06 02:36:13 | 000,013,312 | ---- | M] (Broadcom Corporation) -- C:\Windows\System32\drivers\de-DE\b57nd60x.sys.mui
[2013.10.06 02:36:13 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\usbhub.sys.mui
[2013.10.06 02:36:13 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\serial.sys.mui
[2013.10.06 02:36:13 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ohci1394.sys.mui
[2013.10.06 02:36:13 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\1394ohci.sys.mui
[2013.10.06 02:36:13 | 000,011,776 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\de-DE\BrSerIb.sys.mui
[2013.10.06 02:36:13 | 000,010,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\i8042prt.sys.mui
[2013.10.06 02:36:13 | 000,010,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\acpi.sys.mui
[2013.10.06 02:36:13 | 000,010,752 | ---- | M] (Agere Systems) -- C:\Windows\System32\drivers\de-DE\ltmdmnt.sys.mui
[2013.10.06 02:36:13 | 000,009,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\battc.sys.mui
[2013.10.06 02:36:13 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\pci.sys.mui
[2013.10.06 02:36:13 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\bthport.sys.mui
[2013.10.06 02:36:13 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\IPMIDrv.sys.mui
[2013.10.06 02:36:13 | 000,006,144 | ---- | M] (Broadcom Corporation) -- C:\Windows\System32\drivers\de-DE\bcm4sbxp.sys.mui
[2013.10.06 02:36:13 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\sermouse.sys.mui
[2013.10.06 02:36:13 | 000,005,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\kbdclass.sys.mui
[2013.10.06 02:36:13 | 000,005,120 | ---- | M] (Intel Corporation) -- C:\Windows\System32\drivers\de-DE\e100b325.sys.mui
[2013.10.06 02:36:13 | 000,004,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\mouclass.sys.mui
[2013.10.06 02:36:13 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\wacompen.sys.mui
[2013.10.06 02:36:13 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\vhdmp.sys.mui
[2013.10.06 02:36:13 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\vdrvroot.sys.mui
[2013.10.06 02:36:13 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\tpm.sys.mui
[2013.10.06 02:36:13 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\isapnp.sys.mui
[2013.10.06 02:36:13 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\hdaudbus.sys.mui
[2013.10.06 02:36:13 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\parport.sys.mui
[2013.10.06 02:36:13 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ataport.sys.mui
[2013.10.06 02:36:13 | 000,003,584 | ---- | M] (ATI Technologies Inc.) -- C:\Windows\System32\drivers\de-DE\atikmdag.sys.mui
[2013.10.06 02:36:13 | 000,003,072 | ---- | M] (VIA Technologies, Inc.              ) -- C:\Windows\System32\drivers\de-DE\getn62.sys.mui
[2013.10.06 02:36:13 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\umbus.sys.mui
[2013.10.06 02:36:13 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\parvdm.sys.mui
[2013.10.06 02:36:13 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\mssmbios.sys.mui
[2013.10.06 02:36:13 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\mouhid.sys.mui
[2013.10.06 02:36:13 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\vwifibus.sys.mui
[2013.10.06 02:36:13 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\VIAAGP.SYS.mui
[2013.10.06 02:36:13 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ULIAGPKX.SYS.mui
[2013.10.06 02:36:13 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\UAGP35.SYS.mui
[2013.10.06 02:36:13 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\SISAGP.SYS.mui
[2013.10.06 02:36:13 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\NV_AGP.SYS.mui
[2013.10.06 02:36:13 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\MTConfig.sys.mui
[2013.10.06 02:36:13 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\kbdhid.sys.mui
[2013.10.06 02:36:13 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\GAGP30KX.SYS.mui
[2013.10.06 02:36:13 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\BTHUSB.SYS.mui
[2013.10.06 02:36:13 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\AMDAGP.SYS.mui
[2013.10.06 02:36:13 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\AGP440.sys.mui
[2013.10.06 02:36:13 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\wd.sys.mui
[2013.10.06 02:36:13 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\disk.sys.mui
[2013.10.06 02:36:13 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\cdrom.sys.mui
[2013.10.06 02:36:13 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\bthenum.sys.mui
[2013.10.06 02:36:13 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\amdide.sys.mui
[2013.10.06 02:36:09 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\mpio.sys.mui
[2013.10.06 02:36:09 | 000,016,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\afd.sys.mui
[2013.10.06 02:36:09 | 000,011,776 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\de-DE\BrSerId.sys.mui
[2013.10.06 02:36:09 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\UMDF\de-DE\WUDFUsbccidDriver.dll.mui
[2013.10.06 02:36:09 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\msdsm.sys.mui
[2013.10.06 02:36:09 | 000,004,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\pcmcia.sys.mui
[2013.10.06 02:36:09 | 000,004,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\bthpan.sys.mui
[2013.10.06 02:36:09 | 000,004,096 | ---- | M] (SCM Microsystems, Inc.) -- C:\Windows\System32\drivers\de-DE\pscr.sys.mui
[2013.10.06 02:36:09 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\portcls.sys.mui
[2013.10.06 02:36:09 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\modem.sys.mui
[2013.10.06 02:36:09 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ipnat.sys.mui
[2013.10.06 02:36:09 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\HdAudio.sys.mui
[2013.10.06 02:36:09 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\serscan.sys.mui
[2013.10.06 02:36:09 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\rndismpx.sys.mui
[2013.10.06 02:36:09 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\rndismp6.sys.mui
[2013.10.06 02:36:09 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\hidbth.sys.mui
[2013.10.06 02:36:09 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\volmgrx.sys.mui
[2013.10.06 02:36:09 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\pnpmem.sys.mui
[2013.10.06 02:36:09 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\Dot4usb.sys.mui
[2013.10.06 02:36:09 | 000,002,560 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\de-DE\BrParwdm.sys.mui
[2013.10.06 02:36:05 | 000,072,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ntfs.sys.mui
[2013.10.06 02:36:05 | 000,009,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\tunnel.sys.mui
[2013.10.06 02:36:05 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\luafv.sys.mui
[2013.10.06 02:36:05 | 000,005,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\rdbss.sys.mui
[2013.10.06 02:36:05 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\srv.sys.mui
[2013.10.06 02:36:04 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ndisuio.sys.mui
[2013.10.06 02:36:04 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\partmgr.sys.mui
[2013.10.06 02:36:04 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\mountmgr.sys.mui
[2013.10.06 02:35:59 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ndiscap.sys.mui
[2013.10.06 02:35:59 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\RNDISMP.sys.mui
[2013.10.06 02:35:59 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\scfilter.sys.mui
[2013.10.06 02:35:55 | 000,044,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\http.sys.mui
[2013.10.06 02:35:55 | 000,041,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ndis.sys.mui
[2013.10.06 02:35:55 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\fltmgr.sys.mui
[2013.10.06 02:35:55 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\scsiport.sys.mui
[2013.10.06 02:35:55 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\wdf01000.sys.mui
[2013.10.06 02:35:50 | 000,051,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\tcpip.sys.mui
[2013.10.06 02:35:50 | 000,016,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\pacer.sys.mui
[2013.10.06 02:35:50 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\ws2ifsl.sys.mui
[2013.10.06 02:35:46 | 000,029,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\de-DE\bfe.dll.mui
[2013.10.06 02:30:25 | 000,011,453 | ---- | M] () -- C:\Windows\ChangeLang_Done.tag
[2013.10.06 00:16:47 | 000,009,696 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013.10.06 00:16:47 | 000,009,696 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013.10.06 00:13:39 | 000,643,866 | ---- | M] () -- C:\Windows\System32\perfh007.dat
[2013.10.06 00:13:39 | 000,607,190 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2013.10.06 00:13:39 | 000,126,394 | ---- | M] () -- C:\Windows\System32\perfc007.dat
[2013.10.06 00:13:39 | 000,103,568 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2013.10.06 00:09:08 | 000,000,035 | ---- | M] () -- C:\Users\Public\Documents\AtherosServiceConfig.ini
[2013.10.06 00:08:43 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013.10.06 00:08:35 | 1602,035,712 | -HS- | M] () -- C:\hiberfil.sys
[2013.10.05 20:50:39 | 000,002,020 | ---- | M] () -- C:\Users\Public\Desktop\Avira Control Center.lnk
[2013.10.05 18:01:36 | 000,048,637 | ---- | M] () -- C:\Windows\System32\license.rtf
[2013.10.05 17:07:59 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_btath_hcrp_01009.Wdf
[2013.10.05 17:06:57 | 000,246,804 | ---- | M] () -- C:\Windows\System32\drivers\AtherosBt.bin
[2013.10.05 17:04:53 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_SynTP_01009.Wdf
[2013.10.05 16:52:07 | 000,015,080 | ---- | M] () -- C:\Windows\System32\results.xml
[2013.10.05 16:51:12 | 000,257,880 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2013.10.05 16:49:35 | 000,000,003 | ---- | M] () -- C:\Windows\System32\PLD_Framework.cmd
[2013.09.30 11:01:31 | 000,028,520 | ---- | M] (Avira GmbH) -- C:\Windows\System32\drivers\ssmdrv.sys
[2013.09.30 11:01:13 | 000,137,208 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\System32\drivers\avipbb.sys
[2013.09.30 11:01:13 | 000,089,376 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\System32\drivers\avgntflt.sys
[2013.09.30 11:01:13 | 000,067,680 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\System32\drivers\avnetflt.sys
[2013.09.30 11:01:13 | 000,037,352 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\System32\drivers\avkmgr.sys
 
========== Files Created - No Company Name ==========
 
[2013.10.06 02:42:55 | 000,011,453 | ---- | C] () -- C:\Windows\ChangeLang_Done.tag
[2013.10.06 02:38:24 | 000,643,866 | ---- | C] () -- C:\Windows\System32\perfh007.dat
[2013.10.06 02:38:24 | 000,295,922 | ---- | C] () -- C:\Windows\System32\perfi007.dat
[2013.10.06 02:38:24 | 000,126,394 | ---- | C] () -- C:\Windows\System32\perfc007.dat
[2013.10.06 02:38:24 | 000,038,104 | ---- | C] () -- C:\Windows\System32\perfd007.dat
[2013.10.05 20:50:39 | 000,002,020 | ---- | C] () -- C:\Users\Public\Desktop\Avira Control Center.lnk
[2013.10.05 20:17:12 | 000,001,417 | ---- | C] () -- C:\Users\Caro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[2013.10.05 17:26:46 | 000,000,035 | ---- | C] () -- C:\Users\Public\Documents\AtherosServiceConfig.ini
[2013.10.05 17:18:16 | 000,002,435 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2010.lnk
[2013.10.05 17:07:59 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_btath_hcrp_01009.Wdf
[2013.10.05 17:04:53 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_SynTP_01009.Wdf
[2013.10.05 16:52:07 | 000,015,080 | ---- | C] () -- C:\Windows\System32\results.xml
[2013.10.05 16:49:35 | 000,000,003 | ---- | C] () -- C:\Windows\System32\PLD_Framework.cmd
[2013.10.05 16:45:46 | 1602,035,712 | -HS- | C] () -- C:\hiberfil.sys
[2013.07.18 14:32:38 | 000,030,568 | ---- | C] () -- C:\Windows\MusiccityDownload.exe
[2013.07.18 14:32:34 | 000,974,848 | ---- | C] () -- C:\Windows\System32\cis-2.4.dll
[2013.07.18 14:32:34 | 000,081,920 | ---- | C] () -- C:\Windows\System32\issacapi_bs-2.3.dll
[2013.07.18 14:32:34 | 000,065,536 | ---- | C] () -- C:\Windows\System32\issacapi_pe-2.3.dll
[2013.07.18 14:32:34 | 000,057,344 | ---- | C] () -- C:\Windows\System32\issacapi_se-2.3.dll
[2010.09.17 11:24:14 | 000,131,984 | ---- | C] () -- C:\ProgramData\FullRemove.exe
 
========== ZeroAccess Check ==========
 
[2009.07.14 06:42:31 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2010.07.27 16:03:24 | 012,867,584 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2009.07.14 03:15:20 | 000,605,696 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\system32\wbem\wbemess.dll -- [2009.07.14 03:16:17 | 000,342,528 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
 
========== LOP Check ==========
 
 
========== Purity Check ==========
 
 

< End of report >
         
Code:
ATTFilter
OTL Extras logfile created on: 06.10.2013 00:14:48 - Run 2
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\Caro\Downloads
 Starter Edition  (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
1,99 Gb Total Physical Memory | 1,39 Gb Available Physical Memory | 69,84% Memory free
3,98 Gb Paging File | 3,06 Gb Available in Paging File | 76,88% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 215,79 Gb Total Space | 197,28 Gb Free Space | 91,42% Space Free | Partition Type: NTFS
Drive D: | 4,00 Gb Total Space | 2,66 Gb Free Space | 66,51% Space Free | Partition Type: FAT32
Drive E: | 931,32 Gb Total Space | 596,24 Gb Free Space | 64,02% Space Free | Partition Type: exFAT
 
Computer Name: CARO-PC | User Name: Caro | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
========== Extra Registry (SafeList) ==========
 
 
========== File Associations ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
 
========== Shell Spawning ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 
========== Security Center Settings ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
 
========== Firewall Settings ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
 
========== Authorized Applications List ==========
 
 
========== Vista Active Open Ports Exception List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{5EE71D7E-A445-4E36-8AF4-48A9328E871E}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe | 
"{9463BC7C-1682-4488-94C8-AEE427C96118}" = lport=2869 | protocol=6 | dir=in | app=system | 
 
========== Vista Active Application Exception List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{20A5C867-274F-42F1-9D16-16A2D07B9D9D}" = dir=in | app=c:\program files\acer\acer vcm\vc.exe | 
"{5E01F3B9-64D3-4109-BAAD-3EBF41A7155B}" = dir=in | app=c:\program files\windows live\messenger\wlcsdk.exe | 
"{897534DB-ABA2-41E9-86B3-821842FB83E7}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe | 
"{99FDBDD0-1696-410A-AE1E-5DBC0CEEC3A7}" = protocol=17 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe | 
"{D6007FF0-E302-4277-94AD-6649D4AC5171}" = dir=in | app=c:\program files\acer\acer vcm\rs_service.exe | 
"{E75D8D9A-3B17-412E-9D76-DB76ADDF56C0}" = protocol=6 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe | 
"{E967D2F5-BE9F-4AF0-912C-1E3EC115B757}" = dir=in | app=c:\program files\windows live\sync\windowslivesync.exe | 
 
========== HKEY_LOCAL_MACHINE Uninstall List ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{047F790A-7A2A-4B6A-AD02-38092BA63DAC}" = Acer VCM
"{0D7CD0D9-4A88-4A63-8F91-3F4E8F371768}" = MyWinLocker
"{101A497C-7EF6-4001-834D-E5FA1C70FEFA}" = Bluetooth Win7 Suite
"{15D967B5-A4BE-42AE-9E84-64CD062B25AA}" = eSobi v2
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live-Uploadtool
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{287ECFA4-719A-2143-A09B-D6A12DE54E40}" = Acrobat.com
"{3108C217-BE83-42E4-AE9E-A56A2A92E549}" = Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver
"{3175E049-F9A9-4A3D-8F19-AC9FB04514D1}" = Windows Live Communications Platform
"{3DB0448D-AD82-4923-B305-D001E521A964}" = Acer ePower Management
"{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel(R) Rapid Storage Technology
"{51F026FA-5146-4232-A8BA-1364740BD053}" = Acer Crystal Eye webcam
"{523281E5-91DD-49F5-9D85-954148F7596A}" = AndroidInstaller
"{52B97218-98CB-4B8B-9283-D213C85E1AA4}" = Windows Live Anmelde-Assistent
"{586509F0-350D-48B5-B763-9CC2F8D96C4C}" = Windows Live Sync
"{58F4D244-314F-4D26-B5EF-C28AB32E22CB}_is1" = Acer GameZone Console
"{738BF5C3-AF7B-4BB0-B7EF-E505EFC756BE}" = MyWinLocker Suite
"{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies
"{7F811A54-5A09-4579-90E1-C93498E230D9}" = Acer eRecovery Management
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110300453}" = Spin & Win
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111199750}" = Cake Mania
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111307457}" = Galapago
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111355427}" = Poker Pop
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112662477}" = Merriam Websters Spell Jam
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11273477}" = Amazonia
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113786380}" = Heroes of Hellas
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113832110}" = Dream Day First Home
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11505173}" = Airport Mania First Flight
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11531173}" = Farm Frenzy 2
"{850C7BD3-9F3F-46AD-9396-E7985B38C55E}" = Windows Live Fotogalerie
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8E5233E1-7495-44FB-8DEB-4BE906D59619}" = Junk Mail filter update
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office 2010
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A7496F46-78AE-4DB2-BCF5-95F210FA6F96}" = Windows Live Movie Maker
"{AC76BA86-7AD7-FFFF-7B44-A91000000001}" = Adobe Reader 9.1 MUI
"{AED2DD42-9853-407E-A6BC-8A1D6B715909}" = Windows Live Messenger
"{C2695E83-CF1D-43D1-84FE-B3BEC561012A}" = Shredder
"{C4D738F7-996A-4C81-B8FA-C4E26D767E41}" = Windows Live Mail
"{CAFA57E8-8927-4912-AFCF-B0AA3837E989}" = Windows Live Essentials
"{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}" = SAMSUNG USB Driver for Mobile Phones
"{D2041A37-5FEC-49F0-AE5C-3F2FFDFAA4F4}" = Windows Live Call
"{E0A4805D-280A-4DD7-9E74-3A5F85E302A1}" = Windows Live Writer
"{E0B19DF7-B1C7-4937-82C4-0E4B1E346965}" = eBay Worldwide
"{EE171732-BEB4-4576-887D-CB62727F01CA}" = Acer Updater
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"3B29FD3CCF1F5B855DA0C521597413EBABE97DFB" = ENE USB Card Reader Driver
"Acer Registration" = Acer Registration
"Acer Screensaver" = Acer ScreenSaver
"Acer Welcome Center" = Welcome Center
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Avira AntiVir Desktop" = Avira Free Antivirus
"HDMI" = Intel(R) Graphics Media Accelerator Driver
"Identity Card" = Identity Card
"InstallShield_{15D967B5-A4BE-42AE-9E84-64CD062B25AA}" = eSobi v2
"InstallShield_{523281E5-91DD-49F5-9D85-954148F7596A}" = AndroidInstaller
"InstallShield_{738BF5C3-AF7B-4BB0-B7EF-E505EFC756BE}" = MyWinLocker Suite
"InstallShield_{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies
"LManager" = Launch Manager
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"WinLiveSuite_Wave3" = Windows Live Essentials
 
========== HKEY_CURRENT_USER Uninstall List ==========
 
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"MyFreeCodec" = MyFreeCodec
 
========== Last 20 Event Log Errors ==========
 
[ Application Events ]
Error - 05.10.2013 12:32:29 | Computer Name = Caro-PC | Source = SideBySide | ID = 16842815
Description = Fehler beim Generieren des Aktivierungskontextes für "c:\Program Files\Common
 Files\Adobe AIR\Versions\1.0\Adobe AIR.dll". Fehler in Manifest- oder Richtliniendatei
 "c:\Program Files\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll" in Zeile 3.
Der
 Wert "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" des "version"-Attributs
 im assemblyIdentity-Element ist ungültig.
 
Error - 05.10.2013 14:29:31 | Computer Name = Caro-PC | Source = Microsoft-Windows-RestartManager | ID = 10006
Description = Die Anwendung oder der Dienst "Bing Bar" konnte nicht heruntergefahren
 werden.
 
Error - 05.10.2013 14:29:31 | Computer Name = Caro-PC | Source = Microsoft-Windows-RestartManager | ID = 10006
Description = Die Anwendung oder der Dienst "Internet Explorer" konnte nicht heruntergefahren
 werden.
 
Error - 05.10.2013 14:49:04 | Computer Name = Caro-PC | Source = McLogEvent | ID = 5004
Description = 
 
Error - 05.10.2013 14:49:04 | Computer Name = Caro-PC | Source = McLogEvent | ID = 5022
Description = 
 
Error - 05.10.2013 14:49:04 | Computer Name = Caro-PC | Source = McLogEvent | ID = 5004
Description = 
 
Error - 05.10.2013 14:49:04 | Computer Name = Caro-PC | Source = McLogEvent | ID = 5022
Description = 
 
Error - 05.10.2013 17:32:56 | Computer Name = Caro-PC | Source = Application Hang | ID = 1002
Description = Programm OTL.exe, Version 3.2.69.0 kann nicht mehr unter Windows ausgeführt
 werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung,
 um nach weiteren Informationen zum Problem zu suchen.    Prozess-ID: 584    Startzeit: 
01cec211d13b3ba3    Endzeit: 15    Anwendungspfad: C:\Users\Caro\Downloads\OTL.exe    Berichts-ID:
   
 
[ System Events ]
Error - 05.10.2013 17:54:11 | Computer Name = Caro-PC | Source = DCOM | ID = 10005
Description = 
 
Error - 05.10.2013 17:54:11 | Computer Name = Caro-PC | Source = DCOM | ID = 10005
Description = 
 
Error - 05.10.2013 17:54:10 | Computer Name = Caro-PC | Source = Service Control Manager | ID = 7001
Description = Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location
 Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:   %%1068
 
Error - 05.10.2013 17:54:10 | Computer Name = Caro-PC | Source = Service Control Manager | ID = 7001
Description = Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location
 Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:   %%1068
 
Error - 05.10.2013 17:54:11 | Computer Name = Caro-PC | Source = Service Control Manager | ID = 7001
Description = Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location
 Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:   %%1068
 
Error - 05.10.2013 17:54:11 | Computer Name = Caro-PC | Source = Service Control Manager | ID = 7001
Description = Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location
 Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:   %%1068
 
Error - 05.10.2013 17:54:11 | Computer Name = Caro-PC | Source = Service Control Manager | ID = 7001
Description = Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location
 Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:   %%1068
 
Error - 05.10.2013 17:54:11 | Computer Name = Caro-PC | Source = Service Control Manager | ID = 7001
Description = Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location
 Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:   %%1068
 
Error - 05.10.2013 17:54:11 | Computer Name = Caro-PC | Source = Service Control Manager | ID = 7001
Description = Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location
 Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:   %%1068
 
Error - 05.10.2013 17:54:11 | Computer Name = Caro-PC | Source = Service Control Manager | ID = 7001
Description = Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location
 Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:   %%1068
 
 
< End of report >
         
Würde mich freuen, wenn mir jemand helfen könnte das Problem zu beheben. Hatte es vor wenigen Wochen einfach nur in Quarantäne geschoben, hatte dann bei den Websites allerdings einige Probleme (Suchmaschinen wurden verändert). Daher würde ich es gerne richtig "löschen". Danke im Voraus.

Alt 06.10.2013, 06:07   #2
schrauber
/// the machine
/// TB-Ausbilder
 

HTML/Infected.WebPage.Gen2 - Standard

HTML/Infected.WebPage.Gen2



Hi,

zeig bitte mal das Log des Antivirusprogrammes, wo der Fund gemacht wurde.
__________________

__________________

Alt 06.10.2013, 09:41   #3
schnecksche
 
HTML/Infected.WebPage.Gen2 - Standard

HTML/Infected.WebPage.Gen2



Code:
ATTFilter
Avira Free Antivirus
Erstellungsdatum der Reportdatei: Samstag, 5. Oktober 2013  21:31


Das Programm läuft als uneingeschränkte Vollversion.
Online-Dienste stehen zur Verfügung.

Lizenznehmer   : Avira Free Antivirus
Seriennummer   : 0000149996-ADJIE-0000001
Plattform      : Windows 7 Starter
Windowsversion : (plain)  [6.1.7600]
Boot Modus     : Normal gebootet
Benutzername   : Caro
Computername   : CARO-PC

Versionsinformationen:
BUILD.DAT      : 14.0.0.383           Bytes  30.09.2013 11:01:00
AVSCAN.EXE     : 14.0.0.383    968776 Bytes  30.09.2013 09:01:14
AVSCANRC.DLL   : 14.0.0.225     62024 Bytes  30.09.2013 09:01:14
LUKE.DLL       : 14.0.0.383     65096 Bytes  30.09.2013 09:01:30
AVSCPLR.DLL    : 14.0.0.383     92232 Bytes  30.09.2013 09:01:14
AVREG.DLL      : 14.0.0.383    250440 Bytes  30.09.2013 09:01:14
avlode.dll     : 14.0.0.383    512584 Bytes  30.09.2013 09:01:13
avlode.rdf     : 13.0.1.42      26846 Bytes  30.09.2013 09:01:13
VBASE000.VDF   : 7.11.70.0   66736640 Bytes  04.04.2013 09:01:31
VBASE001.VDF   : 7.11.74.226  2201600 Bytes  30.04.2013 09:01:31
VBASE002.VDF   : 7.11.80.60   2751488 Bytes  28.05.2013 09:01:31
VBASE003.VDF   : 7.11.85.214  2162688 Bytes  21.06.2013 09:01:31
VBASE004.VDF   : 7.11.91.176  3903488 Bytes  23.07.2013 09:01:31
VBASE005.VDF   : 7.11.98.186  6822912 Bytes  29.08.2013 09:01:31
VBASE006.VDF   : 7.11.103.230  2293248 Bytes  24.09.2013 09:01:31
VBASE007.VDF   : 7.11.103.231     2048 Bytes  24.09.2013 09:01:31
VBASE008.VDF   : 7.11.103.232     2048 Bytes  24.09.2013 09:01:31
VBASE009.VDF   : 7.11.103.233     2048 Bytes  24.09.2013 09:01:31
VBASE010.VDF   : 7.11.103.234     2048 Bytes  24.09.2013 09:01:31
VBASE011.VDF   : 7.11.103.235     2048 Bytes  24.09.2013 09:01:31
VBASE012.VDF   : 7.11.103.236     2048 Bytes  24.09.2013 09:01:31
VBASE013.VDF   : 7.11.103.237     2048 Bytes  24.09.2013 09:01:31
VBASE014.VDF   : 7.11.104.123   282112 Bytes  26.09.2013 09:01:31
VBASE015.VDF   : 7.11.104.237   359424 Bytes  28.09.2013 09:01:31
VBASE016.VDF   : 7.11.105.103   195072 Bytes  02.10.2013 18:52:36
VBASE017.VDF   : 7.11.105.104     2048 Bytes  02.10.2013 18:52:36
VBASE018.VDF   : 7.11.105.105     2048 Bytes  02.10.2013 18:52:36
VBASE019.VDF   : 7.11.105.106     2048 Bytes  02.10.2013 18:52:36
VBASE020.VDF   : 7.11.105.107     2048 Bytes  02.10.2013 18:52:36
VBASE021.VDF   : 7.11.105.108     2048 Bytes  02.10.2013 18:52:36
VBASE022.VDF   : 7.11.105.109     2048 Bytes  02.10.2013 18:52:37
VBASE023.VDF   : 7.11.105.110     2048 Bytes  02.10.2013 18:52:37
VBASE024.VDF   : 7.11.105.111     2048 Bytes  02.10.2013 18:52:37
VBASE025.VDF   : 7.11.105.112     2048 Bytes  02.10.2013 18:52:37
VBASE026.VDF   : 7.11.105.113     2048 Bytes  02.10.2013 18:52:38
VBASE027.VDF   : 7.11.105.114     2048 Bytes  02.10.2013 18:52:38
VBASE028.VDF   : 7.11.105.115     2048 Bytes  02.10.2013 18:52:38
VBASE029.VDF   : 7.11.105.116     2048 Bytes  02.10.2013 18:52:39
VBASE030.VDF   : 7.11.105.117     2048 Bytes  02.10.2013 18:52:39
VBASE031.VDF   : 7.11.105.228   541696 Bytes  05.10.2013 18:52:49
Engineversion  : 8.2.12.126
AEVDF.DLL      : 8.1.3.4       102774 Bytes  30.09.2013 09:01:12
AESCRIPT.DLL   : 8.1.4.154     512382 Bytes  05.10.2013 18:52:59
AESCN.DLL      : 8.1.10.4      131446 Bytes  30.09.2013 09:01:12
AESBX.DLL      : 8.2.16.26    1245560 Bytes  30.09.2013 09:01:12
AERDL.DLL      : 8.2.0.128     688504 Bytes  30.09.2013 09:01:12
AEPACK.DLL     : 8.3.2.30      749945 Bytes  05.10.2013 18:52:58
AEOFFICE.DLL   : 8.1.2.76      205181 Bytes  30.09.2013 09:01:12
AEHEUR.DLL     : 8.1.4.676    6201722 Bytes  05.10.2013 18:52:57
AEHELP.DLL     : 8.1.27.6      266617 Bytes  30.09.2013 09:01:12
AEGEN.DLL      : 8.1.7.14      446839 Bytes  30.09.2013 09:01:12
AEEXP.DLL      : 8.4.1.62      328055 Bytes  30.09.2013 09:01:12
AEEMU.DLL      : 8.1.3.2       393587 Bytes  30.09.2013 09:01:12
AECORE.DLL     : 8.1.32.0      201081 Bytes  30.09.2013 09:01:12
AEBB.DLL       : 8.1.1.4        53619 Bytes  30.09.2013 09:01:12
AVWINLL.DLL    : 14.0.0.225     23624 Bytes  30.09.2013 09:01:15
AVPREF.DLL     : 14.0.0.225     48712 Bytes  30.09.2013 09:01:14
AVREP.DLL      : 14.0.0.225    175688 Bytes  30.09.2013 09:01:14
AVARKT.DLL     : 14.0.0.225    257096 Bytes  30.09.2013 09:01:13
AVEVTLOG.DLL   : 14.0.0.383    165960 Bytes  30.09.2013 09:01:13
SQLITE3.DLL    : 3.7.0.1       394824 Bytes  30.09.2013 09:01:31
AVSMTP.DLL     : 14.0.0.225     60488 Bytes  30.09.2013 09:01:14
NETNT.DLL      : 14.0.0.225     13384 Bytes  30.09.2013 09:01:30
RCIMAGE.DLL    : 14.0.0.225   4786760 Bytes  30.09.2013 09:01:31
RCTEXT.DLL     : 14.0.0.225     67144 Bytes  30.09.2013 09:01:31

Konfiguration für den aktuellen Suchlauf:
Job Name..............................: ShlExt
Konfigurationsdatei...................: C:\Users\Caro\AppData\Local\Temp\394aabe3.avp
Protokollierung.......................: standard
Primäre Aktion........................: Interaktiv
Sekundäre Aktion......................: Ignorieren
Durchsuche Masterbootsektoren.........: ein
Durchsuche Bootsektoren...............: ein
Bootsektoren..........................: E:, 
Durchsuche aktive Programme...........: aus
Durchsuche Registrierung..............: aus
Suche nach Rootkits...................: aus
Integritätsprüfung von Systemdateien..: aus
Prüfe alle Dateien....................: Intelligente Dateiauswahl
Durchsuche Archive....................: ein
Rekursionstiefe einschränken..........: 20
Archiv Smart Extensions...............: ein
Makrovirenheuristik...................: ein
Dateiheuristik........................: erweitert

Beginn des Suchlaufs: Samstag, 5. Oktober 2013  21:31

Der Suchlauf über die ausgewählten Dateien wird begonnen:

Beginne mit der Suche in 'E:\' <k>
E:\Documents\Documents\Bewerbung - Jobs\Bosch_1\Bosch_1.mht
    [0] Archivtyp: MIME
    --> object
        [1] Archivtyp: MIME
      --> Users\Caroline\Documents\Bewerbung - Master\Jobs und Karriere - Studierende - Ihre Dissertation.mht
          [FUND]      Enthält Erkennungsmuster des HTML-Scriptvirus HTML/Infected.WebPage.Gen2
          [WARNUNG]   Infizierte Dateien in Archiven können nicht repariert werden

Beginne mit der Desinfektion:
E:\Documents\Documents\Bewerbung - Jobs\Bosch_1\Bosch_1.mht
  [FUND]      Enthält Erkennungsmuster des HTML-Scriptvirus HTML/Infected.WebPage.Gen2
  [WARNUNG]   Die Datei wurde ignoriert.


Ende des Suchlaufs: Samstag, 5. Oktober 2013  22:40
Benötigte Zeit: 32:24 Minute(n)

Der Suchlauf wurde abgebrochen!

   1590 Verzeichnisse wurden überprüft
 139181 Dateien wurden geprüft
      1 Viren bzw. unerwünschte Programme wurden gefunden
      0 Dateien wurden als verdächtig eingestuft
      0 Dateien wurden gelöscht
      0 Viren bzw. unerwünschte Programme wurden repariert
      0 Dateien wurden in die Quarantäne verschoben
      0 Dateien wurden umbenannt
      0 Dateien konnten nicht durchsucht werden
 139180 Dateien ohne Befall
   3182 Archive wurden durchsucht
      2 Warnungen
      0 Hinweise
         
Oh seh gerade, dass ich im März das gleiche Problem hatte...

http://www.trojaner-board.de/131882-...page-gen2.html

Der Virus hat sich dann mit Sicherheit auf meiner externen Festplatte versteckt oder?
__________________

Alt 06.10.2013, 16:40   #4
schrauber
/// the machine
/// TB-Ausbilder
 

HTML/Infected.WebPage.Gen2 - Standard

HTML/Infected.WebPage.Gen2



Zitat:
E:\Documents\Documents\Bewerbung - Jobs\Bosch_1\Bosch_1.mht
Lösch die Datei und gut is.
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 06.10.2013, 18:48   #5
schnecksche
 
HTML/Infected.WebPage.Gen2 - Standard

HTML/Infected.WebPage.Gen2



So einfach
Hab ich gemacht und starte nochmals Antivir Scan. Falls etwas auftaucht meld ich mich. Ansonsten viel Dank.


Alt 07.10.2013, 08:37   #6
schrauber
/// the machine
/// TB-Ausbilder
 

HTML/Infected.WebPage.Gen2 - Standard

HTML/Infected.WebPage.Gen2



jup
__________________
--> HTML/Infected.WebPage.Gen2

Antwort

Themen zu HTML/Infected.WebPage.Gen2
antivir, autorun, avg, avira, bho, defender, desktop, ebay, error, explorer, fehler, festplatte, firefox, flash player, install.exe, launch, logfile, opera, pmmupdate.exe, port, realtek, registry, richtlinie, rundll, security, software, svchost.exe, taskhost.exe, virus, windows



Ähnliche Themen: HTML/Infected.WebPage.Gen2


  1. HTML/Infected.WebPage.Gen2
    Plagegeister aller Art und deren Bekämpfung - 22.03.2013 (16)
  2. HTML/Infected.WebPage.Gen2 - removal
    Log-Analyse und Auswertung - 07.05.2012 (7)
  3. html/infected.webpage.gen2
    Log-Analyse und Auswertung - 30.04.2012 (3)
  4. HTML/Infected.WebPage.Gen2 Wie entfernen?
    Plagegeister aller Art und deren Bekämpfung - 21.03.2012 (45)
  5. HTML/Infected.WebPage.Gen2
    Plagegeister aller Art und deren Bekämpfung - 20.03.2012 (4)
  6. 'HTML/Infected.WebPage.Gen2
    Log-Analyse und Auswertung - 14.03.2012 (1)
  7. HTML/Infected.WebPage.Gen2
    Plagegeister aller Art und deren Bekämpfung - 25.02.2012 (8)
  8. Win XP: HTML/Infected.WebPage.Gen2
    Plagegeister aller Art und deren Bekämpfung - 19.02.2012 (1)
  9. 4 Funde u.a. HTML/Infected.WebPage.Gen2
    Plagegeister aller Art und deren Bekämpfung - 08.02.2012 (23)
  10. Virus HTML/Infected.WebPage.Gen2
    Plagegeister aller Art und deren Bekämpfung - 31.01.2012 (40)
  11. HTML/Infected.WebPage.Gen2
    Log-Analyse und Auswertung - 02.01.2012 (1)
  12. Virus HTML/Infected.WebPage.Gen2
    Log-Analyse und Auswertung - 30.06.2011 (13)
  13. Avira HTML/Infected.WebPage.Gen2
    Plagegeister aller Art und deren Bekämpfung - 04.05.2011 (3)
  14. HTML/Infected.WebPage.Gen2
    Plagegeister aller Art und deren Bekämpfung - 02.05.2011 (5)
  15. HTML/Infected.WebPage.Gen2
    Plagegeister aller Art und deren Bekämpfung - 30.10.2010 (7)
  16. Virenusbefall ? HTML/Rce.Gen und HTML/Infected.WebPage.Gen2
    Plagegeister aller Art und deren Bekämpfung - 22.09.2010 (4)
  17. HTML/Infected.WebPage.Gen2
    Plagegeister aller Art und deren Bekämpfung - 23.08.2010 (7)

Zum Thema HTML/Infected.WebPage.Gen2 - Hallo zusammen, habe einen Virus oder ähnliches gefunden: HTML/Infected.WebPage.Gen2 Habe daraufhin meine Festplatte neu formatiert. Der Fund kam nun von meiner externen Festplatte, auf der ich meine Daten gesichert habe. - HTML/Infected.WebPage.Gen2...
Archiv
Du betrachtest: HTML/Infected.WebPage.Gen2 auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.