|  | 
| 
 | |||||||
| Log-Analyse und Auswertung: Virus: Avira kann nicht geupdated werden/ verbraucht sehr viel CPUWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. | 
|  | 
|  08.02.2014, 14:18 | #16 | 
| /// the machine /// TB-Ausbilder         |   Virus: Avira kann nicht geupdated werden/ verbraucht sehr viel CPU Kannste mir davon nen Screenshot machen?  
				__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! | 
|  11.02.2014, 22:31 | #17 | 
|   |   Virus: Avira kann nicht geupdated werden/ verbraucht sehr viel CPU Bitteschön __________________   | 
|  12.02.2014, 18:24 | #18 | 
| /// the machine /// TB-Ausbilder         |   Virus: Avira kann nicht geupdated werden/ verbraucht sehr viel CPU Du startest mit Revo ja den Photoshop Uninstaller, dann kommt die Meldung. WEnn Du das aber abbricht sollte dir Revo anbieten das Teil selbst zu deinstallieren bzw alle Reste zu entfernen. __________________ 
				__________________ | 
|  12.02.2014, 19:29 | #19 | 
|   |   Virus: Avira kann nicht geupdated werden/ verbraucht sehr viel CPU Ja das stimmt. Er macht dann noch so einen Scan und listet ganz viele Sachen auf, die er löschen möchte. Für mich sah das aber so aus als würde er auch ganz andere Dateien von anderen Programmen löschen wollen. Somit habe ich das dann auch abgebrochen. :/  | 
|  13.02.2014, 21:35 | #20 | 
| /// the machine /// TB-Ausbilder         |   Virus: Avira kann nicht geupdated werden/ verbraucht sehr viel CPU Lass ihn das mal suchen und mache nen Screenshot davon    
				__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! | 
|  02.03.2014, 17:21 | #21 | 
|   |   Virus: Avira kann nicht geupdated werden/ verbraucht sehr viel CPU Ist eine lange Liste  | 
|  03.03.2014, 14:18 | #22 | 
| /// the machine /// TB-Ausbilder         |   Virus: Avira kann nicht geupdated werden/ verbraucht sehr viel CPU Wenn die Suche auf Moderat steht kannste das alles löschen lassen.  
				__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! | 
|  08.03.2014, 12:44 | #23 | 
|   |   Virus: Avira kann nicht geupdated werden/ verbraucht sehr viel CPU Naja... hab das jetzt gemacht, aber mein Vlc-Player und mein CCleaner sind schon mal nicht mehr aufzufinden und vieles anderes musste ich erstmal wieder als standart Programm festlegen. Aber sonst ist alles gut Na toll... jetzt nach dem Neustart geht gar nichts mehr. Nicht mal mehr das SnippingTool Der Microsoft Security Client hat auch den Error Code 0x80073b01 Bei iTunes kommt nicht korrekt installiert und reparieren kann es das auch nicht usw | 
|  08.03.2014, 13:15 | #24 | 
|   |   Virus: Avira kann nicht geupdated werden/ verbraucht sehr viel CPU WIndows Updates gehen auch nicht mehr  | 
|  09.03.2014, 07:41 | #25 | 
| /// the machine /// TB-Ausbilder         |   Virus: Avira kann nicht geupdated werden/ verbraucht sehr viel CPU Downloade dir bitte Windows Repair (All In One) von hier. 
 Bitte ein frisches FRST log, und: Downloade dir bitte  Farbar Service Scanner 
 Poste bitte den Inhalt hier. 
				__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! | 
|  09.03.2014, 13:32 | #26 | ||
|   |   Virus: Avira kann nicht geupdated werden/ verbraucht sehr viel CPU Das nimmt nie ein Ende oder?^^ FRST Logfile: FRST Logfile: Code: 
  ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 08-03-2014 01
Ran by Emilio (administrator) on EMILIOS-HP-PC on 09-03-2014 13:15:25
Running from C:\Users\Emilio\Desktop\FRST-OlderVersion
Windows 7 Professional Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: Downloading Farbar Recovery Scan Tool 
Download link for 64-Bit Version: Downloading Farbar Recovery Scan Tool 
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: FRST Tutorial - How to use Farbar Recovery Scan Tool - Geeks to Go Forums
==================== Processes (Whitelisted) =================
(Microsoft Corporation) c:\Program Files\Microsoft Security Client\MsMpEng.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler64.exe
(Intel Corporation) C:\Windows\system32\IProsetMonitor.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
(PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe
(Secunia) C:\Program Files (x86)\Secunia\PSI\PSIA.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
(Microsoft Corporation) c:\Program Files\Microsoft Security Client\NisSrv.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Spotify Ltd) C:\Users\Emilio\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
(Secunia) C:\Program Files (x86)\Secunia\PSI\psi_tray.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Dropbox, Inc.) C:\Users\Emilio\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Microsoft Corporation) c:\Program Files\Microsoft Security Client\MpCmdRun.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
HKLM\...\Run: [HPSYSDRV] - C:\Program Files (x86)\Hewlett-Packard\HP Odometer\HPSYSDRV.EXE [62768 2008-11-20] (Hewlett-Packard)
HKLM\...\Run: [CanonMyPrinter] - C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
HKLM\...\Run: [MSC] - c:\Program Files\Microsoft Security Client\msseces.exe [1266912 2013-10-23] (Microsoft Corporation)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-02-21] (Apple Inc.)
HKLM-x32\...\Run: [Avira Systray] - C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [172624 2014-02-24] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [689744 2014-02-25] (Avira Operations GmbH & Co. KG)
HKLM\...\RunOnce: [NCPluginUpdater] - "C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe" Update [21720 2014-02-25] (Hewlett-Packard)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3513785353-2090306979-4278820556-1000\...\Run: [Spotify Web Helper] - C:\Users\Emilio\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1171968 2014-02-02] (Spotify Ltd)
Startup: C:\Users\Emilio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Emilio\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Sign In
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Upgrade to Google Chrome
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE9TR&src=IE9TR&pc=CMDTDFJS
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE9TR&src=IE9TR&pc=CMDTDFJS
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE9TR&src=IE9TR&pc=CMDTDFJS
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?q={sear
BHO: Avira SearchFree Toolbar - {41564952-412D-5637-4300-7A786E7484D7} - "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport_x64.dll" No File
BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
Toolbar: HKLM - Avira SearchFree Toolbar - {41564952-412D-5637-4300-7A786E7484D7} - "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport_x64.dll" No File
Toolbar: HKLM-x32 - No Name - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} -  No File
Toolbar: HKLM-x32 - No Name - {41564952-412D-5637-4300-7A786E7484D7} -  No File
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Winsock: Catalog5-x64 07 C:\Program Files\Bonjour\mdnsNSP.dll File Not found ()
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Chrome: 
=======
CHR HomePage: 
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\pdf.dll ()
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll No File
CHR Plugin: (Intel® Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
CHR Plugin: (Intel® Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
CHR Extension: (Google Docs) - C:\Users\Emilio\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-03-16]
CHR Extension: (Google Drive) - C:\Users\Emilio\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-03-16]
CHR Extension: (WOT) - C:\Users\Emilio\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp [2014-02-02]
CHR Extension: (YouTube) - C:\Users\Emilio\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-03-16]
CHR Extension: (Adblock Plus) - C:\Users\Emilio\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2013-03-17]
CHR Extension: (Google-Suche) - C:\Users\Emilio\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-03-16]
CHR Extension: (Youtube Video Downloader) - C:\Users\Emilio\AppData\Local\Google\Chrome\User Data\Default\Extensions\dpbkobkodledeibpmilbmnpfolihcnla [2013-06-08]
CHR Extension: (Avira Browser Safety) - C:\Users\Emilio\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2014-03-08]
CHR Extension: (Youtube Series Downloader) - C:\Users\Emilio\AppData\Local\Google\Chrome\User Data\Default\Extensions\jghmjoeoeedipbgbgofflfgcfpineanf [2013-06-08]
CHR Extension: (SmallringFX DarkBlue Theme) - C:\Users\Emilio\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbfijmgohofmpjlcgmjplbpmkpchdhpk [2013-03-16]
CHR Extension: (V-bates) - C:\Users\Emilio\AppData\Local\Google\Chrome\User Data\Default\Extensions\khldgopgjjapmbkgflpoclebjjmkmbnk [2013-06-26]
CHR Extension: (Download Youtube as mp3) - C:\Users\Emilio\AppData\Local\Google\Chrome\User Data\Default\Extensions\mepapnoaejebkkpkpacihjlfekoggahp [2013-10-05]
CHR Extension: (Privacy Palette) - C:\Users\Emilio\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjkcflkplhgpebknipkekjggglimnone [2013-03-17]
CHR Extension: (Google Wallet) - C:\Users\Emilio\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-06]
CHR Extension: (Google Mail) - C:\Users\Emilio\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-03-16]
CHR HKLM-x32\...\Chrome\Extension: [ajadlheagenmmedmhaoafgkdenfilcme] - C:\Program Files (x86)\BetterSurf\BetterSurfPlusV1\ch\BetterSurfPlusV1.crx [2013-03-16]
CHR HKLM-x32\...\Chrome\Extension: [ieghcpafofcpcjmacgknimjbimfcdfoc] - C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta804\ch\VideoPlayerV3beta804.crx [2013-03-16]
CHR HKLM-x32\...\Chrome\Extension: [iiahmooinmkibiblfkgkcckfabbkmojp] - C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha246\ch\WebexpEnhancedV1alpha246.crx [2013-03-16]
CHR HKLM-x32\...\Chrome\Extension: [pcoohmdcpejoeggdnihdfhohjgdbllgm] - C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7C\CRX\ToolbarCR.crx [2013-03-16]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Services (Whitelisted) =================
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440400 2014-02-25] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440400 2014-02-25] (Avira Operations GmbH & Co. KG)
R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1017424 2014-02-25] (Avira Operations GmbH & Co. KG)
R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [117328 2014-02-24] (Avira Operations GmbH & Co. KG)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2012-02-21] (Intel Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2013-10-23] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [348376 2013-10-23] (Microsoft Corporation)
R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1134624 2012-07-18] (PDF Complete Inc)
R2 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1223704 2013-02-07] (Secunia)
S2 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [660504 2013-02-07] (Secunia)
S2 AERTFilters; C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE [X]
S2 Bonjour Service; "C:\Program Files\Bonjour\mDNSResponder.exe" [X]
S2 Intel(R) Capability Licensing Service Interface; "c:\Program Files\Intel\iCLS Client\HeciServer.exe" [X]
S3 osppsvc; "C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE" [X]
S2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [X]
==================== Drivers (Whitelisted) ====================
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2014-02-25] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131576 2014-02-25] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2014-02-25] (Avira Operations GmbH & Co. KG)
S3 IFCoEMP; C:\Windows\system32\drivers\ifM60x64.sys [348944 2011-06-15] (Intel(R) Corporation)
S3 IFCoEVB; C:\Windows\system32\drivers\ifP60X64.sys [70928 2011-06-15] (Intel(R) Corporation)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [248240 2013-09-27] (Microsoft Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [134944 2013-09-27] (Microsoft Corporation)
R3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2013-02-07] (Secunia)
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-03-09 11:38 - 2014-03-09 11:59 - 00181064 _____ (Sysinternals) C:\Windows\PSEXESVC.EXE
2014-03-09 11:27 - 2014-03-09 11:27 - 00000000 ____D () C:\Program Files\Windows Sidebar
2014-03-09 11:27 - 2014-03-09 11:27 - 00000000 ____D () C:\Program Files\Windows Portable Devices
2014-03-09 11:27 - 2014-03-09 11:27 - 00000000 ____D () C:\Program Files\Windows Photo Viewer
2014-03-09 11:27 - 2014-03-09 11:27 - 00000000 ____D () C:\Program Files\Windows NT
2014-03-09 11:27 - 2014-03-09 11:27 - 00000000 ____D () C:\Program Files\Windows Journal
2014-03-09 11:27 - 2014-03-09 11:27 - 00000000 ____D () C:\Program Files\Windows Defender
2014-03-09 11:27 - 2014-03-09 11:27 - 00000000 ____D () C:\Program Files\Reference Assemblies
2014-03-09 11:27 - 2014-03-09 11:27 - 00000000 ____D () C:\Program Files\MSBuild
2014-03-09 11:27 - 2014-03-09 11:27 - 00000000 ____D () C:\Program Files\DVD Maker
2014-03-09 11:27 - 2014-03-09 11:27 - 00000000 ____D () C:\Program Files\Common Files\System
2014-03-09 11:27 - 2014-03-09 11:27 - 00000000 ____D () C:\Program Files\Common Files\Services
2014-03-09 11:27 - 2014-03-09 11:27 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2014-03-09 11:05 - 2014-03-09 11:05 - 00003408 _____ () C:\bootsqm.dat
2014-03-09 10:55 - 2014-03-09 10:56 - 00000000 ____D () C:\Users\Emilio\Desktop\Tweaking.com - Windows Repair
2014-03-09 10:53 - 2014-03-09 10:53 - 03098210 _____ () C:\Users\Emilio\Downloads\tweaking.com_windows_repair_aio.zip
2014-03-08 13:25 - 2014-03-08 13:25 - 00000000 ____D () C:\Users\Emilio\AppData\Roaming\Avira
2014-03-08 13:24 - 2014-02-25 11:41 - 00131576 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2014-03-08 13:24 - 2014-02-25 11:41 - 00108440 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2014-03-08 13:24 - 2014-02-25 11:41 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2014-03-08 13:22 - 2014-03-08 13:24 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-03-08 13:22 - 2014-03-08 13:22 - 04051872 _____ (Avira Operations GmbH & Co. KG) C:\Users\Emilio\Downloads\avira_de_av___ws.exe
2014-03-08 13:22 - 2014-03-08 13:22 - 00001139 _____ () C:\Users\Public\Desktop\Avira.lnk
2014-03-08 13:22 - 2014-03-08 13:22 - 00000000 ____D () C:\ProgramData\Package Cache
2014-03-08 13:13 - 2014-03-08 13:13 - 00110415 _____ () C:\Users\Emilio\Desktop\10008378_637721742948409_1319656406_n.zip
2014-03-08 13:12 - 2014-03-08 13:12 - 00000000 ____D () C:\Users\Emilio\AppData\Local\WinZip
2014-03-08 12:55 - 2014-03-08 19:01 - 00004242 _____ () C:\Windows\IE9_main.log
2014-03-08 12:51 - 2014-03-08 12:51 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-03-08 12:51 - 2014-03-08 12:51 - 00000000 ____D () C:\Program Files\iTunes
2014-03-07 20:28 - 2014-03-07 20:28 - 00002151 _____ () C:\Users\Public\Desktop\WinZip.lnk
2014-03-07 20:28 - 2014-03-07 20:28 - 00000000 ____D () C:\Program Files\WinZip
2014-03-07 20:23 - 2014-03-07 20:23 - 46956032 _____ () C:\Users\Emilio\Downloads\wz180gev-64.msi
2014-03-02 18:47 - 2014-03-02 18:47 - 01064488 _____ (BillP Studios) C:\Users\Emilio\Downloads\wpsetup.exe
2014-03-02 17:49 - 2014-03-02 18:35 - 141656540 _____ () C:\Users\Emilio\Downloads\TS-DBDEN.part5.rar
2014-03-02 17:19 - 2014-03-08 12:51 - 00001785 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-03-02 17:19 - 2014-03-08 12:51 - 00000000 ____D () C:\Program Files\iPod
2014-03-02 17:19 - 2014-03-02 17:19 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-03-02 17:17 - 2014-03-02 17:17 - 00944308 _____ () C:\Users\Emilio\Desktop\Screenshots.zip
2014-03-02 17:14 - 2014-03-02 17:15 - 00000000 ____D () C:\Users\Emilio\Desktop\Neuer Ordner (3)
2014-02-16 20:49 - 2014-02-16 20:49 - 00198742 _____ () C:\Users\Emilio\Downloads\extension_1_0_0_10.crx
2014-02-15 00:52 - 2014-02-06 13:16 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-02-15 00:52 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-02-15 00:52 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-02-15 00:52 - 2014-02-06 12:12 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-02-15 00:52 - 2014-02-06 12:07 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-02-15 00:52 - 2014-02-06 12:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-02-15 00:52 - 2014-02-06 11:57 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-02-15 00:52 - 2014-02-06 11:56 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-02-15 00:52 - 2014-02-06 11:52 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-02-15 00:52 - 2014-02-06 11:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-02-15 00:52 - 2014-02-06 11:48 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-02-15 00:52 - 2014-02-06 11:48 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-02-15 00:52 - 2014-02-06 11:38 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-02-15 00:52 - 2014-02-06 11:32 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-02-15 00:52 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-02-15 00:52 - 2014-02-06 11:17 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-02-15 00:52 - 2014-02-06 11:11 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-02-15 00:52 - 2014-02-06 11:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-02-15 00:52 - 2014-02-06 11:00 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-02-15 00:52 - 2014-02-06 10:57 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-02-15 00:52 - 2014-02-06 10:57 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-02-15 00:52 - 2014-02-06 10:52 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-02-15 00:52 - 2014-02-06 10:52 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-02-15 00:52 - 2014-02-06 10:50 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-02-15 00:52 - 2014-02-06 10:49 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-02-15 00:52 - 2014-02-06 10:47 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-02-15 00:52 - 2014-02-06 10:46 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-02-15 00:52 - 2014-02-06 10:25 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-02-15 00:52 - 2014-02-06 10:25 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-02-15 00:52 - 2014-02-06 10:24 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-02-15 00:52 - 2014-02-06 10:22 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-02-15 00:52 - 2014-02-06 10:13 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-02-15 00:52 - 2014-02-06 10:09 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-02-15 00:52 - 2014-02-06 10:03 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-02-15 00:52 - 2014-02-06 09:55 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-02-15 00:52 - 2014-02-06 09:41 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-02-15 00:52 - 2014-02-06 09:40 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-02-15 00:52 - 2014-02-06 09:36 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-02-15 00:52 - 2014-02-06 09:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-02-15 00:52 - 2013-12-21 10:53 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-02-15 00:52 - 2013-12-21 09:56 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-02-14 23:26 - 2014-02-14 23:38 - 305247075 _____ () C:\Users\Emilio\Downloads\Texture Pack by DvizehEdits.rar
2014-02-14 14:21 - 2014-02-14 14:21 - 00006124 _____ () C:\Users\Emilio\Downloads\circo.zip
2014-02-14 14:17 - 2014-02-14 14:17 - 00013475 _____ () C:\Users\Emilio\Downloads\dotboundary.zip
2014-02-14 14:11 - 2014-01-01 00:05 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls
2014-02-14 14:11 - 2014-01-01 00:04 - 00420008 _____ () C:\Windows\system32\locale.nls
2014-02-14 14:11 - 2013-12-25 00:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-02-14 14:11 - 2013-12-24 23:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-02-14 14:11 - 2013-12-06 03:30 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-02-14 14:11 - 2013-12-06 03:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-02-14 14:11 - 2013-12-06 03:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-02-14 14:11 - 2013-12-06 03:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-02-14 14:11 - 2013-12-04 03:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2014-02-14 14:11 - 2013-12-04 03:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2014-02-14 14:11 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2014-02-14 14:11 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2014-02-14 14:11 - 2013-12-04 03:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2014-02-14 14:11 - 2013-12-04 03:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2014-02-14 14:11 - 2013-12-04 03:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2014-02-14 14:11 - 2013-12-04 03:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2014-02-14 14:11 - 2013-12-04 03:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2014-02-14 14:11 - 2013-12-04 03:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll
2014-02-14 14:11 - 2013-12-04 03:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll
2014-02-14 14:11 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll
2014-02-14 14:11 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll
2014-02-14 14:11 - 2013-12-04 03:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll
2014-02-14 14:11 - 2013-12-04 02:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe
2014-02-14 14:11 - 2013-12-04 02:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe
2014-02-14 14:11 - 2013-12-04 02:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe
2014-02-14 14:11 - 2013-12-04 02:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2014-02-14 14:11 - 2013-11-26 09:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2014-02-14 14:11 - 2013-11-22 23:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2014-02-13 00:12 - 2014-02-13 00:12 - 05330264 _____ (Apple Inc.) C:\Users\Emilio\Downloads\WindowsMigrationAssistantSetup.exe
2014-02-13 00:12 - 2014-02-13 00:12 - 05330264 _____ (Apple Inc.) C:\Users\Emilio\Downloads\WindowsMigrationAssistantSetup (1).exe
2014-02-07 20:27 - 2014-02-07 20:27 - 00003274 _____ () C:\Windows\System32\Tasks\{49FC3A0D-8090-4E54-9355-7E03E799FA7C}
2014-02-07 19:12 - 2014-02-07 19:12 - 00001270 _____ () C:\Users\Emilio\Desktop\Revo Uninstaller.lnk
2014-02-07 19:12 - 2014-02-07 19:12 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group
2014-02-07 12:08 - 2014-02-07 23:50 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird
2014-02-07 11:04 - 2014-03-09 12:33 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-02-07 11:04 - 2014-03-02 16:34 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-02-07 11:04 - 2014-03-02 16:34 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-02-07 11:04 - 2014-03-02 16:34 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
==================== One Month Modified Files and Folders =======
2014-03-09 13:15 - 2014-02-02 15:07 - 00000000 ____D () C:\FRST
2014-03-09 13:15 - 2014-01-26 15:39 - 00000000 ____D () C:\Users\Emilio\Desktop\FRST-OlderVersion
2014-03-09 13:08 - 2013-03-16 15:05 - 00001110 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-03-09 13:08 - 2013-03-16 15:05 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-03-09 13:08 - 2013-01-03 04:47 - 00000000 ____D () C:\ProgramData\PDFC
2014-03-09 12:33 - 2014-02-07 11:04 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-03-09 12:07 - 2013-03-16 23:01 - 01356628 _____ () C:\Windows\WindowsUpdate.log
2014-03-09 12:07 - 2009-07-14 05:45 - 00016768 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-03-09 12:07 - 2009-07-14 05:45 - 00016768 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-03-09 12:06 - 2013-03-16 14:14 - 00061240 _____ () C:\Users\Emilio\AppData\Local\GDIPFONTCACHEV1.DAT
2014-03-09 12:06 - 2013-01-03 04:19 - 00686006 _____ () C:\Windows\system32\perfh007.dat
2014-03-09 12:06 - 2013-01-03 04:19 - 00145580 _____ () C:\Windows\system32\perfc007.dat
2014-03-09 12:06 - 2009-07-14 06:13 - 01622164 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-03-09 12:05 - 2013-03-16 20:31 - 00000000 ___RD () C:\Users\Emilio\Dropbox
2014-03-09 12:05 - 2013-03-16 20:19 - 00000000 ____D () C:\Users\Emilio\AppData\Roaming\Dropbox
2014-03-09 12:01 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-03-09 12:00 - 2014-02-01 22:14 - 00249880 _____ () C:\Windows\PFRO.log
2014-03-09 12:00 - 2014-02-01 22:14 - 00001064 _____ () C:\Windows\setupact.log
2014-03-09 12:00 - 2009-07-14 05:45 - 00285824 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-03-09 11:59 - 2014-03-09 11:38 - 00181064 _____ (Sysinternals) C:\Windows\PSEXESVC.EXE
2014-03-09 11:58 - 2009-07-14 03:34 - 00000439 _____ () C:\Windows\win.ini
2014-03-09 11:36 - 2013-04-01 23:26 - 00000000 ____D () C:\Users\Emilio\AppData\Roaming\Spotify
2014-03-09 11:27 - 2014-03-09 11:27 - 00000000 ____D () C:\Program Files\Windows Sidebar
2014-03-09 11:27 - 2014-03-09 11:27 - 00000000 ____D () C:\Program Files\Windows Portable Devices
2014-03-09 11:27 - 2014-03-09 11:27 - 00000000 ____D () C:\Program Files\Windows Photo Viewer
2014-03-09 11:27 - 2014-03-09 11:27 - 00000000 ____D () C:\Program Files\Windows NT
2014-03-09 11:27 - 2014-03-09 11:27 - 00000000 ____D () C:\Program Files\Windows Journal
2014-03-09 11:27 - 2014-03-09 11:27 - 00000000 ____D () C:\Program Files\Windows Defender
2014-03-09 11:27 - 2014-03-09 11:27 - 00000000 ____D () C:\Program Files\Reference Assemblies
2014-03-09 11:27 - 2014-03-09 11:27 - 00000000 ____D () C:\Program Files\MSBuild
2014-03-09 11:27 - 2014-03-09 11:27 - 00000000 ____D () C:\Program Files\DVD Maker
2014-03-09 11:27 - 2014-03-09 11:27 - 00000000 ____D () C:\Program Files\Common Files\System
2014-03-09 11:27 - 2014-03-09 11:27 - 00000000 ____D () C:\Program Files\Common Files\Services
2014-03-09 11:27 - 2014-03-09 11:27 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2014-03-09 11:05 - 2014-03-09 11:05 - 00003408 _____ () C:\bootsqm.dat
2014-03-09 10:56 - 2014-03-09 10:55 - 00000000 ____D () C:\Users\Emilio\Desktop\Tweaking.com - Windows Repair
2014-03-09 10:53 - 2014-03-09 10:53 - 03098210 _____ () C:\Users\Emilio\Downloads\tweaking.com_windows_repair_aio.zip
2014-03-08 19:01 - 2014-03-08 12:55 - 00004242 _____ () C:\Windows\IE9_main.log
2014-03-08 18:15 - 2013-03-16 17:30 - 00000000 ____D () C:\Users\Emilio\AppData\Local\PMB Files
2014-03-08 18:15 - 2013-03-16 17:29 - 00000000 ____D () C:\ProgramData\PMB Files
2014-03-08 13:45 - 2013-04-05 20:27 - 00000000 ____D () C:\Users\Emilio\AppData\Roaming\Skype
2014-03-08 13:25 - 2014-03-08 13:25 - 00000000 ____D () C:\Users\Emilio\AppData\Roaming\Avira
2014-03-08 13:24 - 2014-03-08 13:22 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-03-08 13:24 - 2014-01-03 12:21 - 00000000 ____D () C:\ProgramData\Avira
2014-03-08 13:22 - 2014-03-08 13:22 - 04051872 _____ (Avira Operations GmbH & Co. KG) C:\Users\Emilio\Downloads\avira_de_av___ws.exe
2014-03-08 13:22 - 2014-03-08 13:22 - 00001139 _____ () C:\Users\Public\Desktop\Avira.lnk
2014-03-08 13:22 - 2014-03-08 13:22 - 00000000 ____D () C:\ProgramData\Package Cache
2014-03-08 13:13 - 2014-03-08 13:13 - 00110415 _____ () C:\Users\Emilio\Desktop\10008378_637721742948409_1319656406_n.zip
2014-03-08 13:12 - 2014-03-08 13:12 - 00000000 ____D () C:\Users\Emilio\AppData\Local\WinZip
2014-03-08 13:12 - 2013-01-03 04:47 - 00000000 ____D () C:\ProgramData\WinZip
2014-03-08 12:51 - 2014-03-08 12:51 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-03-08 12:51 - 2014-03-08 12:51 - 00000000 ____D () C:\Program Files\iTunes
2014-03-08 12:51 - 2014-03-02 17:19 - 00001785 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-03-08 12:51 - 2014-03-02 17:19 - 00000000 ____D () C:\Program Files\iPod
2014-03-08 12:40 - 2013-03-16 14:11 - 00003954 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{F6BA0110-D05B-4941-A2AC-C1C89CCDA816}
2014-03-08 12:31 - 2013-01-03 04:47 - 00000000 ____D () C:\Program Files\Bonjour
2014-03-07 22:22 - 2013-09-13 16:00 - 00003192 _____ () C:\Windows\System32\Tasks\HPCeeScheduleForEmilio
2014-03-07 22:22 - 2013-09-13 16:00 - 00000336 _____ () C:\Windows\Tasks\HPCeeScheduleForEmilio.job
2014-03-07 20:28 - 2014-03-07 20:28 - 00002151 _____ () C:\Users\Public\Desktop\WinZip.lnk
2014-03-07 20:28 - 2014-03-07 20:28 - 00000000 ____D () C:\Program Files\WinZip
2014-03-07 20:28 - 2013-03-16 14:10 - 00000000 ____D () C:\Users\Emilio
2014-03-07 20:23 - 2014-03-07 20:23 - 46956032 _____ () C:\Users\Emilio\Downloads\wz180gev-64.msi
2014-03-07 19:59 - 2013-01-03 04:40 - 00000000 ____D () C:\Program Files\Intel
2014-03-06 15:15 - 2011-02-11 21:29 - 01595508 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-03-06 12:14 - 2013-04-01 23:27 - 00000000 ____D () C:\Users\Emilio\AppData\Local\Spotify
2014-03-02 19:06 - 2013-03-25 01:44 - 00000052 _____ () C:\Windows\SysWOW64\DOErrors.log
2014-03-02 19:06 - 2013-03-25 01:44 - 00000000 _____ () C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2014-03-02 18:47 - 2014-03-02 18:47 - 01064488 _____ (BillP Studios) C:\Users\Emilio\Downloads\wpsetup.exe
2014-03-02 18:47 - 2014-02-02 15:42 - 00000000 ____D () C:\ProgramData\InstallMate
2014-03-02 18:35 - 2014-03-02 17:49 - 141656540 _____ () C:\Users\Emilio\Downloads\TS-DBDEN.part5.rar
2014-03-02 18:14 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-03-02 17:19 - 2014-03-02 17:19 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-03-02 17:17 - 2014-03-02 17:17 - 00944308 _____ () C:\Users\Emilio\Desktop\Screenshots.zip
2014-03-02 17:15 - 2014-03-02 17:14 - 00000000 ____D () C:\Users\Emilio\Desktop\Neuer Ordner (3)
2014-03-02 16:37 - 2014-02-01 20:58 - 00012292 ____H () C:\Users\Emilio\.DS_Store
2014-03-02 16:34 - 2014-02-07 11:04 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-03-02 16:34 - 2014-02-07 11:04 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-03-02 16:34 - 2014-02-07 11:04 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-02-25 11:41 - 2014-03-08 13:24 - 00131576 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2014-02-25 11:41 - 2014-03-08 13:24 - 00108440 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2014-02-25 11:41 - 2014-03-08 13:24 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2014-02-16 21:32 - 2013-08-17 15:42 - 00000000 ____D () C:\Windows\system32\MRT
2014-02-16 21:31 - 2013-03-29 15:05 - 88567024 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-02-16 20:49 - 2014-02-16 20:49 - 00198742 _____ () C:\Users\Emilio\Downloads\extension_1_0_0_10.crx
2014-02-15 13:00 - 2013-03-16 15:05 - 00004106 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-02-15 13:00 - 2013-03-16 15:05 - 00003854 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-02-14 23:38 - 2014-02-14 23:26 - 305247075 _____ () C:\Users\Emilio\Downloads\Texture Pack by DvizehEdits.rar
2014-02-14 14:21 - 2014-02-14 14:21 - 00006124 _____ () C:\Users\Emilio\Downloads\circo.zip
2014-02-14 14:21 - 2013-03-16 14:51 - 00000000 ____D () C:\Users\Emilio\AppData\Roaming\SoftGrid Client
2014-02-14 14:17 - 2014-02-14 14:17 - 00013475 _____ () C:\Users\Emilio\Downloads\dotboundary.zip
2014-02-13 00:12 - 2014-02-13 00:12 - 05330264 _____ (Apple Inc.) C:\Users\Emilio\Downloads\WindowsMigrationAssistantSetup.exe
2014-02-13 00:12 - 2014-02-13 00:12 - 05330264 _____ (Apple Inc.) C:\Users\Emilio\Downloads\WindowsMigrationAssistantSetup (1).exe
2014-02-10 21:40 - 2009-07-14 06:32 - 00000000 ____D () C:\Windows\system32\FxsTmp
2014-02-10 21:35 - 2013-03-21 23:07 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-02-07 23:50 - 2014-02-07 12:08 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird
2014-02-07 20:27 - 2014-02-07 20:27 - 00003274 _____ () C:\Windows\System32\Tasks\{49FC3A0D-8090-4E54-9355-7E03E799FA7C}
2014-02-07 19:12 - 2014-02-07 19:12 - 00001270 _____ () C:\Users\Emilio\Desktop\Revo Uninstaller.lnk
2014-02-07 19:12 - 2014-02-07 19:12 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group
Some content of TEMP:
====================
C:\Users\Emilio\AppData\Local\Temp\avgnt.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-03-02 18:07
==================== End Of Log ============================
         --- --- --- Zitat: 
 Zitat: 
 | 
|  10.03.2014, 12:59 | #27 | 
| /// the machine /// TB-Ausbilder         |   Virus: Avira kann nicht geupdated werden/ verbraucht sehr viel CPU Doch jetzt   Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code: 
  ATTFilter CHR HKLM-x32\...\Chrome\Extension: [pcoohmdcpejoeggdnihdfhohjgdbllgm] - C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7C\CRX\ToolbarCR.crx [2013-03-16]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
         Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet). 
 Fertig  Die Reihenfolge ist hier entscheidend. 
 Falls Du Lob oder Kritik abgeben möchtest kannst Du das hier tun  Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist. 
 Anti- Viren Software 
 Zusätzlicher Schutz 
 Sicheres Browsen 
 Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden. 
 Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts 
 Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann. 
				__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! | 
|  10.03.2014, 14:58 | #28 | |
|   |   Virus: Avira kann nicht geupdated werden/ verbraucht sehr viel CPU Danke, aber ein Microsoft Security Essentials funktioniert trotzdem immer noch nicht :/ Zitat: 
 | 
|  11.03.2014, 09:45 | #29 | 
| /// the machine /// TB-Ausbilder         |   Virus: Avira kann nicht geupdated werden/ verbraucht sehr viel CPU Was genau kommt an Fehlermeldung?  
				__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! | 
|  11.03.2014, 10:57 | #30 | 
|   |   Virus: Avira kann nicht geupdated werden/ verbraucht sehr viel CPU wenn ich den öffnen will kommt:  | 
|  | 
| Themen zu Virus: Avira kann nicht geupdated werden/ verbraucht sehr viel CPU | 
| administrator, adware.vplayer, adware/adware.gen, canon, nicht installiert, pup.bprotector, pup.optional.babylontoolbar.a, pup.optional.bprotector.a, pup.optional.datamngr.a, pup.optional.delta, pup.optional.delta.a, pup.optional.filescout.a, pup.optional.iminent, pup.optional.iminent.a, pup.optional.softwareupdater, pup.optional.sweetpacks.a, pup.optional.vbateshelper.a, pup.optional.videodownloader.a, pup.optional.webexp, pup.software.updater, zugriff verweigert |