Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Opera Problem. Unsichtbare Internetseite mit nervender Werbung

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 25.09.2014, 15:07   #16
Blitzi
 
Opera Problem. Unsichtbare Internetseite mit nervender Werbung - Standard

Opera Problem. Unsichtbare Internetseite mit nervender Werbung



Code:
ATTFilter
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 25-09-2014
Ran by Spieler at 2014-09-25 15:55:45 Run:1
Running from C:\Users\Spieler.HeikeHarder-HP\Downloads
Loaded Profile: Spieler (Available profiles: Heike Harder & Spieler & UpdatusUser & Gast)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
C:\Users\Heike Harder\Okozo_Installer.exe
C:\Config.Msi\2ba99e21.rbf
C:\Config.Msi\2ba99e22.rbf
C:\Config.Msi\2ba99e28.rbf
C:\Config.Msi\2ba99e29.rbf
C:\Config.Msi\2ba99e2a.rbf
C:\Config.Msi\2ba99e2b.rbf
C:\Config.Msi\2ba99e2c.rbf
C:\Config.Msi\2ba99e2e.rbf
C:\Config.Msi\2ba99e2f.rbf
C:\Config.Msi\2ba99e63.rbf
C:\Program Files\TermTutor\IE\TermTutorClientIE.dll
C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\FreeSoundRecorder\tbFree.dll
C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\FreeSoundRecorder\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.5.3\bin\PriceGongIE.dll
C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\Winload\ldrtbWin0.dll
C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\Winload\ldrtbWin2.dll
C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\Winload\ldrtbWinl.dll
C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\Winload\tbWin0.dll
C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\Winload\tbWin1.dll
C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\Winload\tbWin2.dll
C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\Winload\tbWinl.dll
C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\www.Freeware-download.com\tbwww..dll
C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\LookThisUp\LookThisUp.exe
C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\LookThisUp\LookThisUpUninstall.exe
C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Opera Software\Opera Stable\File System\000\t\00\00000000
C:\Windows\Installer\106863c3.msi
C:\Windows\Installer\afe633c.msi
C:\Windows\System32\config\systemprofile\AppData\LocalLow\FreeSoundRecorder\ldrtbFree.dll
C:\Windows\System32\config\systemprofile\AppData\LocalLow\FreeSoundRecorder\tbFree.dll
C:\Windows\System32\config\systemprofile\AppData\LocalLow\FreeSoundRecorder\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.5.3\bin\PriceGongIE.dll
C:\Windows\SysWOW64\config\systemprofile\AppData\LocalLow\FreeSoundRecorder\ldrtbFree.dll
C:\Windows\SysWOW64\config\systemprofile\AppData\LocalLow\FreeSoundRecorder\tbFree.dll
C:\Windows\SysWOW64\config\systemprofile\AppData\LocalLow\FreeSoundRecorder\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.5.3\bin\PriceGongIE.dll
EmptyTemp:
         
*****************

C:\Windows\system32\GroupPolicy\Machine => Moved successfully.
C:\Windows\system32\GroupPolicy\GPT.ini => Moved successfully.
"HKLM\SOFTWARE\Policies\Google" => Key deleted successfully.
C:\Users\Heike Harder\Okozo_Installer.exe => Moved successfully.
C:\Config.Msi\2ba99e21.rbf => Moved successfully.
C:\Config.Msi\2ba99e22.rbf => Moved successfully.
C:\Config.Msi\2ba99e28.rbf => Moved successfully.
C:\Config.Msi\2ba99e29.rbf => Moved successfully.
C:\Config.Msi\2ba99e2a.rbf => Moved successfully.
C:\Config.Msi\2ba99e2b.rbf => Moved successfully.
C:\Config.Msi\2ba99e2c.rbf => Moved successfully.
C:\Config.Msi\2ba99e2e.rbf => Moved successfully.
C:\Config.Msi\2ba99e2f.rbf => Moved successfully.
C:\Config.Msi\2ba99e63.rbf => Moved successfully.
C:\Program Files\TermTutor\IE\TermTutorClientIE.dll => Moved successfully.
C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\FreeSoundRecorder\tbFree.dll => Moved successfully.
C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\FreeSoundRecorder\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.5.3\bin\PriceGongIE.dll => Moved successfully.
C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\Winload\ldrtbWin0.dll => Moved successfully.
C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\Winload\ldrtbWin2.dll => Moved successfully.
C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\Winload\ldrtbWinl.dll => Moved successfully.
C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\Winload\tbWin0.dll => Moved successfully.
C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\Winload\tbWin1.dll => Moved successfully.
C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\Winload\tbWin2.dll => Moved successfully.
C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\Winload\tbWinl.dll => Moved successfully.
C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\www.Freeware-download.com\tbwww..dll => Moved successfully.
C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\LookThisUp\LookThisUp.exe => Moved successfully.
C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\LookThisUp\LookThisUpUninstall.exe => Moved successfully.
C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Opera Software\Opera Stable\File System\000\t\00\00000000 => Moved successfully.
C:\Windows\Installer\106863c3.msi => Moved successfully.
C:\Windows\Installer\afe633c.msi => Moved successfully.
"C:\Windows\System32\config\systemprofile\AppData\LocalLow\FreeSoundRecorder\ldrtbFree.dll" => File/Directory not found.
"C:\Windows\System32\config\systemprofile\AppData\LocalLow\FreeSoundRecorder\tbFree.dll" => File/Directory not found.
"C:\Windows\System32\config\systemprofile\AppData\LocalLow\FreeSoundRecorder\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.5.3\bin\PriceGongIE.dll" => File/Directory not found.
C:\Windows\SysWOW64\config\systemprofile\AppData\LocalLow\FreeSoundRecorder\ldrtbFree.dll => Moved successfully.
C:\Windows\SysWOW64\config\systemprofile\AppData\LocalLow\FreeSoundRecorder\tbFree.dll => Moved successfully.
C:\Windows\SysWOW64\config\systemprofile\AppData\LocalLow\FreeSoundRecorder\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.5.3\bin\PriceGongIE.dll => Moved successfully.
EmptyTemp: => Removed 1002.3 MB temporary data.


The system needed a reboot. 

==== End of Fixlog ====
         

Alt 25.09.2014, 18:10   #17
deeprybka
/// TB-Ausbilder
/// Anleitungs-Guru
 
Opera Problem. Unsichtbare Internetseite mit nervender Werbung - Standard

Opera Problem. Unsichtbare Internetseite mit nervender Werbung



Hi,

Schritt 1



Bitte starte FRST erneut, markiere auch die checkbox und drücke auf Scan.
Bitte poste mir den Inhalt der beiden Logs die erstellt werden.


Gibt es jetzt noch Probleme mit dem PC? Wenn ja, welche?
__________________

__________________

Alt 25.09.2014, 21:59   #18
Blitzi
 
Opera Problem. Unsichtbare Internetseite mit nervender Werbung - Standard

Opera Problem. Unsichtbare Internetseite mit nervender Werbung




FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 25-09-2014
Ran by Spieler (administrator) on HEIKEHARDER-HP on 25-09-2014 22:57:04
Running from C:\Users\Spieler.HeikeHarder-HP\Downloads
Loaded Profile: Spieler (Available profiles: Heike Harder & Spieler & UpdatusUser & Gast)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(ABBYY) C:\Program Files (x86)\Common Files\ABBYY\FineReader\10.00\Licensing\PE\NetworkLicenseServer.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
() C:\Program Files (x86)\CyberLink\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe
(CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSMonitorService.exe
(CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe
() C:\Program Files\COMPUTERBILD-Cloud\Data\Tools\mounter.exe
(SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50STB.EXE
(SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Acresso Corporation) C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe
(Akamai Technologies, Inc.) C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Akamai\netsession_win.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
() C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\M6 Processing\vm6.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Akamai Technologies, Inc.) C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Akamai\netsession_win.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
(Dropbox, Inc.) C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Dropbox\bin\Dropbox.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\VS7Debug\mdm.exe
(Microsoft Corporation) C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL.2\MSSQL\Binn\sqlservr.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(LULU Software) C:\Program Files (x86)\Soda PDF 2012\ConversionService.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(StarWind Software) C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe
(Microsoft Corporation) C:\Windows\System32\alg.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe
() C:\Program Files (x86)\Opera\24.0.1558.61\opera_crashreporter.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe
(Acresso Corporation) C:\ProgramData\FLEXnet\Connect\11\agent.exe
(TeamSpeak Systems GmbH) C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.61\opera.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe Version Cue CS2] => c:\Users\Heike Harder\Documents\Downloads\Creative Suite 2\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe [856064 2005-04-06] (Adobe Sytems Incorporated)
HKLM-x32\...\Run: [Aeria Ignite] => "C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe" silent
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [421736 2011-12-08] (Apple Inc.)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [751184 2014-08-05] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [164656 2014-08-27] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [ConvertAd] => C:\Users\Spieler.HeikeHarder-HP\AppData\Local\ConvertAd\ConvertAd.exe
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [3802448 2014-09-04] (LogMeIn Inc.)
HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1
HKU\S-1-5-21-2355925718-3238339638-3018866954-1007\...\Run: [DriverMax] => C:\Program Files (x86)\Innovative Solutions\DriverMax\drivermax.exe [9532824 2012-03-26] (Innovative Solutions)
HKU\S-1-5-21-2355925718-3238339638-3018866954-1007\...\Run: [DriverMax_RESTART] => C:\Program Files (x86)\Innovative Solutions\DriverMax\drivermax.exe [9532824 2012-03-26] (Innovative Solutions)
HKU\S-1-5-21-2355925718-3238339638-3018866954-1007\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [222496 2009-05-05] (Acresso Corporation)
HKU\S-1-5-21-2355925718-3238339638-3018866954-1007\...\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [55360 2013-08-19] (Raptr, Inc)
HKU\S-1-5-21-2355925718-3238339638-3018866954-1007\...\Run: [Akamai NetSession Interface] => C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Akamai\netsession_win.exe [4672920 2014-04-17] (Akamai Technologies, Inc.)
HKU\S-1-5-21-2355925718-3238339638-3018866954-1007\...\Run: [Klebezettel NG] => [X]
HKU\S-1-5-21-2355925718-3238339638-3018866954-1007\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\Overwolf.exe [39712 2014-09-21] (Overwolf LTD)
HKU\S-1-5-21-2355925718-3238339638-3018866954-1007\...\Run: [vm6] => C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\M6 Processing\vm6.exe [175424 2014-03-19] ()
HKU\S-1-5-21-2355925718-3238339638-3018866954-1007\...\MountPoints2: {ae8f9719-3d80-11e3-91bb-6c626d9ce7a5} - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL K:\VoiceClient.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma.lnk
ShortcutTarget: Adobe Gamma.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled ()
Startup: C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip ()
Startup: C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip ()
Startup: C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
ShellIconOverlayIdentifiers: CloudIcon_DOWNLOAD -> {C3DBFBE2-A521-4619-9F32-502318CB4EC2} => C:\Program Files\COMPUTERBILD-Cloud\ShellExt64.dll (CyberGhost SRL)
ShellIconOverlayIdentifiers: CloudIcon_ERROR -> {851C758E-C636-4045-B323-059931A3A331} => C:\Program Files\COMPUTERBILD-Cloud\ShellExt64.dll (CyberGhost SRL)
ShellIconOverlayIdentifiers: CloudIcon_INSYNC -> {580030D3-492E-45EA-A1C9-A0AC525BEB26} => C:\Program Files\COMPUTERBILD-Cloud\ShellExt64.dll (CyberGhost SRL)
ShellIconOverlayIdentifiers: CloudIcon_REFRESH -> {FEBF62C8-B6B3-43B7-BEC4-1A9CD61BDCD2} => C:\Program Files\COMPUTERBILD-Cloud\ShellExt64.dll (CyberGhost SRL)
ShellIconOverlayIdentifiers: CloudIcon_UPLOAD -> {EBED3602-8915-43F9-81F7-CAA6FC4F70D6} => C:\Program Files\COMPUTERBILD-Cloud\ShellExt64.dll (CyberGhost SRL)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM-x32 - Backup.Old.DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD22}
SearchScopes: HKCU - Backup.Old.DefaultScope {95B7759C-8C7F-4BF1-B163-73684A933233}
SearchScopes: HKCU - ToolbarSearchProviderProgress {96bd48dd-741b-41ae-ac4a-aff96ba00f7e}
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO-x32: RealPlayer Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
BHO-x32: PlusIEEventHelper Class -> {551A852F-39A6-44A7-9C13-AFBEC9185A9D} -> C:\Program Files (x86)\Nuance\PDF Viewer Plus\Bin\PlusIEContextMenu.dll (Zeon Corporation)
BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO-x32: Soda PDF 2012 Helper -> {ebe8b562-cba0-40d8-b920-af7cfe0c9d94} -> C:\Program Files (x86)\Soda PDF 2012\PDFIEHelper.dll (LULU Software)
Toolbar: HKLM - No Name - !!{D4027C7F-154A-4066-A1AD-4243D8127440} -  No File
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKLM-x32 - Soda PDF 2012 Toolbar - {a8c9d542-fd91-4834-a2e8-adb9ae692b8b} - C:\Program Files (x86)\Soda PDF 2012\PDFIEPlugin.dll (LULU Software)
Toolbar: HKLM-x32 - No Name - !!{D4027C7F-154A-4066-A1AD-4243D8127440} -  No File
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1

FireFox:
========
FF ProfilePath: C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Mozilla\Firefox\Profiles\6q039lkv.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll ()
FF Plugin: @java.com/DTPlugin,version=10.65.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.65.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @java.com/JavaPlugin -> C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nexon.net/NxGame -> C:\ProgramData\NexonUS\NGM\npNxGameUS.dll (Nexon)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin-x32: @real.com/nppl3260;version=15.0.4.53 -> c:\program files (x86)\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprjplug;version=15.0.4.53 -> c:\program files (x86)\real\realplayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpchromebrowserrecordext;version=15.0.4.53 -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprphtml5videoshim;version=15.0.4.53 -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpplugin;version=15.0.4.53 -> c:\program files (x86)\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Spieler.HeikeHarder-HP\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF user.js: detected! => C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Mozilla\Firefox\Profiles\6q039lkv.default\user.js
FF Extension: WEB.DE MailCheck - C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Mozilla\Firefox\Profiles\6q039lkv.default\Extensions\toolbar@web.de.xpi [2014-01-25]
FF HKLM-x32\...\Firefox\Extensions: [{97E22097-9A2F-45b1-8DAF-36AD648C7EF4}] - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext
FF Extension: RealPlayer Browser Record Plugin - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2012-05-11]
FF Extension: No Name - C:\Program Files (x86)\Better-Surf\ff [Not Found]
FF Extension: No Name - C:\Program Files (x86)\BetterSurf\BetterSurfPlus\ff [Not Found]
FF Extension: No Name - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff [Not Found]
FF Extension: No Name - C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha718\ff [Not Found]
FF Extension: No Name - C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha1479\ff [Not Found]
FF Extension: No Name - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha3700\ff [Not Found]
FF Extension: No Name - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha9390\ff [Not Found]
FF Extension: No Name - C:\Program Files (x86)\SuperLyrics\FF [Not Found]
FF Extension: No Name - C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta541\ff [Not Found]
FF Extension: No Name - C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha701\ff [Not Found]
FF Extension: No Name - C:\Program Files\Video downloader\Firefox [Not Found]
FF Extension: No Name - C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Mozilla\Firefox\Profiles\6q039lkv.default\extensions\4433da5b-eb52-495d-8865-b2a7468567f6@927544a3-fdfb-4485-a78b-21e1113eee35.com [Not Found]
FF Extension: No Name - C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Mozilla\Firefox\Profiles\6q039lkv.default\extensions\crossriderapp2258@crossrider.com [Not Found]
FF Extension: No Name - C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Mozilla\Firefox\Profiles\6q039lkv.default\extensions\e46480cf-7cf6-495e-af69-573053f52c72@b33ab36d-5952-49aa-adb2-a41b3dbe51a5.com [Not Found]
FF Extension: No Name - C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Mozilla\Firefox\Profiles\6q039lkv.default\extensions\ffxtlbr@babylon.com [Not Found]
FF Extension: No Name - C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Mozilla\Firefox\Profiles\6q039lkv.default\extensions\ffxtlbr@funmoods.com [Not Found]
FF Extension: No Name - C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Mozilla\Firefox\Profiles\6q039lkv.default\extensions\lightningnewtab@gmail.com.xpi [Not Found]
FF Extension: No Name - C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Mozilla\Firefox\Profiles\6q039lkv.default\extensions\toolbar_AVIRA-V7@apn.ask.com.xpi [Not Found]
FF Extension: No Name - C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Mozilla\Firefox\Profiles\6q039lkv.default\extensions\{17372c46-39f1-4c28-8f8c-b25d9b57d042} [Not Found]
FF Extension: No Name - C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Mozilla\Firefox\Profiles\6q039lkv.default\extensions\{5a95a9e0-59dd-4314-bd84-4d18ca83a0e2}.xpi [Not Found]
FF Extension: No Name - C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Mozilla\Firefox\Profiles\6q039lkv.default\extensions\{c2d64ff7-0ab8-4263-89c9-ea3b0f8f050c} [Not Found]
FF Extension: No Name - C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Mozilla\Firefox\Profiles\6q039lkv.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}.xpi [Not Found]
FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [Not Found]

Chrome: 
=======
CHR Profile: C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-06-24]
CHR Extension: (Google Drive) - C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-06-24]
CHR Extension: (YouTube) - C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-06-24]
CHR Extension: (Google Search) - C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-06-24]
CHR Extension: (Google Wallet) - C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-06-27]
CHR Extension: (Gmail) - C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-06-24]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 ABBYY.Licensing.FineReader.Professional.10.0; C:\Program Files (x86)\Common Files\ABBYY\FineReader\10.00\Licensing\PE\NetworkLicenseServer.exe [814344 2009-12-22] (ABBYY)
S3 Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [72704 2013-02-01] (Adobe Systems) [File not signed]
S4 AdobeActiveFileMonitor6.0; C:\Program Files (x86)\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe [124832 2007-09-11] ()
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [430160 2014-08-05] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [430160 2014-08-05] (Avira Operations GmbH & Co. KG)
R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1021520 2014-08-05] (Avira Operations GmbH & Co. KG)
R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [160048 2014-08-27] (Avira Operations GmbH & Co. KG)
S3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [245760 2010-01-25] (Brother Industries, Ltd.) [File not signed]
R2 CLHNServiceForPowerDVD; C:\Program Files (x86)\CyberLink\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe [83240 2011-08-24] ()
R2 CyberLink PowerDVD 11.0 Monitor Service; C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSMonitorService.exe [75048 2011-08-26] (CyberLink)
R2 CyberLink PowerDVD 11.0 Service; C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe [292136 2011-08-26] (CyberLink)
R2 DokanMounter; C:\Program Files\COMPUTERBILD-Cloud\Data\Tools\mounter.exe [14848 2012-02-15] () [File not signed]
S4 ezSharedSvc; C:\Windows\SysWOW64\ezSharedSvcHost.exe [514232 2010-04-23] (EasyBits Software AS) [File not signed]
S3 FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [654848 2011-01-27] (Macrovision Europe Ltd.) [File not signed]
S4 HPAuto; C:\Program Files\Hewlett-Packard\HP Auto\HPAuto.exe [681528 2010-08-06] (Hewlett-Packard)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [377616 2014-08-08] (LogMeIn, Inc.)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.)
R2 MSSQL$BWDATOOLSET; C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [29293408 2010-12-10] (Microsoft Corporation)
R2 MSSQL$SQLEXPRESS; C:\Program Files (x86)\Microsoft SQL Server\MSSQL.2\MSSQL\Binn\sqlservr.exe [29293408 2010-12-10] (Microsoft Corporation)
S3 OverwolfUpdater; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [998176 2014-09-21] (Overwolf LTD)
S4 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1119768 2010-09-28] (PDF Complete Inc)
R2 PDFProFiltSrvPP; C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe [144672 2010-03-09] (Nuance Communications, Inc.)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [247152 2010-08-19] ()
S3 Soda PDF 2012 Helper Service; C:\Program Files (x86)\Soda PDF 2012\HelperService.exe [827224 2012-01-27] (LULU Software)
R2 Soda PDF 2012 Service; C:\Program Files (x86)\Soda PDF 2012\ConversionService.exe [905560 2012-01-27] (LULU Software)
R2 StarWindServiceAE; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [370688 2009-12-23] (StarWind Software) [File not signed]
S2 ttsvc; "C:\Program Files (x86)\TermTutor\Service\ttsvc.exe" [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 athrusb; C:\Windows\System32\DRIVERS\athrxusb.sys [558592 2007-05-16] (Atheros Communications, Inc.)
R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [314016 2011-01-28] ()
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [117712 2014-06-17] (Avira Operations GmbH & Co. KG)
R1 avgtp; C:\Windows\system32\drivers\avgtpx64.sys [39768 2013-03-19] (AVG Technologies)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [130584 2014-06-17] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2014-06-17] (Avira Operations GmbH & Co. KG)
R2 Dokan; C:\Windows\system32\drivers\dokan.sys [120408 2012-02-15] (Windows (R) Win 7 DDK provider)
S3 GrabsterSeries.X64; C:\Windows\System32\DRIVERS\GrabsterSeries.X64.SYS [377152 2010-01-22] ()
S3 hid7906; C:\Windows\SysWOW64\drivers\hid7906.sys [34963 2007-12-12] (Compuware Corporation) [File not signed]
S3 hid8101; C:\Windows\SysWOW64\drivers\hid8101.sys [37024 2007-12-03] (Compuware Corporation) [File not signed]
S3 hid8103; C:\Windows\SysWOW64\drivers\hid8103.sys [34587 2007-11-28] (Compuware Corporation) [File not signed]
S3 iComp; C:\Windows\System32\DRIVERS\p2usbhum.sys [1794112 2009-12-09] (Conexant Systems Inc.)
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [43680 2011-01-28] ()
S3 RTL8192cu; C:\Windows\System32\DRIVERS\RTL8192cu.sys [748648 2010-08-12] (Realtek Semiconductor Corporation                           )
S3 Serial; C:\Windows\system32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [503352 2011-08-04] () [File not signed]
R1 ttnfd; C:\Windows\System32\drivers\ttnfd.sys [58232 2014-09-04] (Term Tutor)
S3 usbio; C:\Windows\System32\Drivers\dsiarhwprog_x64.sys [51600 2007-02-08] (Thesycon GmbH, Germany)
S3 ZD1211BU(ZyDAS); C:\Windows\System32\DRIVERS\zd1211Bu.sys [493440 2005-10-28] (ZyDAS Technology Corporation)
S3 ZDPSp50a64; C:\Windows\SysWOW64\Drivers\ZDPSp50a64.sys [31744 2005-03-18] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
R2 {329F96B6-DF1E-4328-BFDA-39EA953C1312}; C:\Program Files (x86)\CyberLink\PowerDVD11\Common\NavFilter\000.fcl [148976 2011-08-26] (CyberLink Corp.)
U3 akselwqy; C:\Windows\System32\Drivers\akselwqy.sys [0 ] (Advanced Micro Devices)
S3 connctfy; system32\DRIVERS\connctfy.sys [X]
S3 connctfyMP; system32\DRIVERS\connctfy.sys [X]
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
S3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X]
S1 toqvakfe; \??\C:\Windows\system32\drivers\toqvakfe.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-25 15:55 - 2014-09-25 15:55 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Downloads\FRST-OlderVersion
2014-09-24 11:22 - 2014-09-10 00:11 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-09-24 11:22 - 2014-09-09 23:47 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-09-24 11:01 - 2014-09-24 11:01 - 02347384 _____ (ESET) C:\Users\Spieler.HeikeHarder-HP\Downloads\esetsmartinstaller_deu.exe
2014-09-23 21:50 - 2014-09-23 21:51 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Desktop\Schutz und remove
2014-09-23 21:48 - 2014-09-23 21:50 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Desktop\speak
2014-09-23 21:48 - 2014-09-23 21:48 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Desktop\opera
2014-09-23 21:47 - 2014-09-23 21:47 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Desktop\sammlung minemap
2014-09-23 21:46 - 2014-09-23 21:49 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Desktop\Games
2014-09-23 17:26 - 2014-09-23 16:58 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-09-23 17:01 - 2014-09-23 17:28 - 00078237 _____ () C:\zoek-results.log
2014-09-23 16:58 - 2014-09-23 17:24 - 00000000 ____D () C:\zoek_backup
2014-09-23 16:58 - 2014-09-09 07:36 - 01290240 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\zoek.exe
2014-09-23 16:57 - 2014-09-23 16:57 - 04114148 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\zoek.zip
2014-09-23 16:20 - 2014-09-23 16:20 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Spieler.HeikeHarder-HP\Downloads\mbam-setup-2.0.2.1012 (3).exe
2014-09-23 15:03 - 2014-09-23 15:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2014-09-23 15:03 - 2014-09-23 15:03 - 00000000 ____D () C:\Program Files (x86)\LogMeIn Hamachi
2014-09-23 14:59 - 2014-09-25 15:57 - 00027322 _____ () C:\Windows\PFRO.log
2014-09-23 14:56 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-09-23 14:55 - 2014-09-23 17:01 - 00000000 ____D () C:\AdwCleaner
2014-09-23 14:55 - 2014-09-23 14:55 - 01373475 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\AdwCleaner_3.310.exe
2014-09-23 14:53 - 2014-09-23 14:53 - 00000000 ____D () C:\Program Files\TermTutor
2014-09-23 14:24 - 2014-09-23 14:24 - 00068480 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\Addition.txt
2014-09-23 14:22 - 2014-09-25 22:57 - 00030307 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\FRST.txt
2014-09-23 14:21 - 2014-09-25 22:57 - 00000000 ____D () C:\FRST
2014-09-23 14:21 - 2014-09-25 15:55 - 02108928 _____ (Farbar) C:\Users\Spieler.HeikeHarder-HP\Downloads\FRST64.exe
2014-09-23 13:15 - 2014-09-23 13:15 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Spieler.HeikeHarder-HP\Downloads\mbam-setup-2.0.2.1012 (2).exe
2014-09-23 13:15 - 2014-09-23 13:15 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Spieler.HeikeHarder-HP\Downloads\mbam-setup-2.0.2.1012 (1).exe
2014-09-21 21:35 - 2014-09-25 19:14 - 00000448 _____ () C:\Windows\setupact.log
2014-09-21 21:35 - 2014-09-21 21:35 - 00000000 _____ () C:\Windows\setuperr.log
2014-09-21 20:49 - 2014-09-21 20:49 - 00001245 _____ () C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk
2014-09-21 20:49 - 2014-09-21 20:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
2014-09-21 20:49 - 2014-09-21 20:49 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft
2014-09-21 20:48 - 2014-09-21 20:48 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\InetStat
2014-09-21 20:47 - 2014-09-25 15:55 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\LookThisUp
2014-09-21 20:47 - 2014-09-21 20:48 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\InetStat
2014-09-21 20:47 - 2014-09-21 20:47 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_webinstr_01009.Wdf
2014-09-21 20:41 - 2014-09-21 20:46 - 74675720 _____ (DVDVideoSoft Ltd. ) C:\Users\Spieler.HeikeHarder-HP\Downloads\FreeStudio.exe
2014-09-21 00:00 - 2014-09-21 20:00 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Documents\ArcheAge
2014-09-21 00:00 - 2014-09-21 00:00 - 00000000 ____D () C:\ArcheAge
2014-09-17 19:02 - 2014-09-17 19:03 - 03817601 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\powersaves3ds-software-121.zip
2014-09-11 03:15 - 2014-08-19 20:05 - 00374968 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-09-11 03:15 - 2014-08-19 19:39 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-09-11 03:15 - 2014-08-19 01:01 - 23591424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-09-11 03:15 - 2014-08-19 00:29 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-09-11 03:15 - 2014-08-19 00:29 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-09-11 03:15 - 2014-08-19 00:26 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-09-11 03:15 - 2014-08-19 00:20 - 02793984 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-09-11 03:15 - 2014-08-19 00:19 - 05833728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-09-11 03:15 - 2014-08-19 00:15 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-09-11 03:15 - 2014-08-19 00:15 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-09-11 03:15 - 2014-08-19 00:14 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-09-11 03:15 - 2014-08-19 00:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-09-11 03:15 - 2014-08-19 00:08 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-09-11 03:15 - 2014-08-19 00:08 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-09-11 03:15 - 2014-08-19 00:08 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-09-11 03:15 - 2014-08-19 00:05 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-09-11 03:15 - 2014-08-19 00:03 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-09-11 03:15 - 2014-08-19 00:03 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-09-11 03:15 - 2014-08-19 00:03 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-09-11 03:15 - 2014-08-18 23:57 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-09-11 03:15 - 2014-08-18 23:56 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-09-11 03:15 - 2014-08-18 23:51 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-09-11 03:15 - 2014-08-18 23:46 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-09-11 03:15 - 2014-08-18 23:45 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-09-11 03:15 - 2014-08-18 23:45 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-09-11 03:15 - 2014-08-18 23:44 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-09-11 03:15 - 2014-08-18 23:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-09-11 03:15 - 2014-08-18 23:42 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-09-11 03:15 - 2014-08-18 23:40 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-09-11 03:15 - 2014-08-18 23:39 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-09-11 03:15 - 2014-08-18 23:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-09-11 03:15 - 2014-08-18 23:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-09-11 03:15 - 2014-08-18 23:38 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-09-11 03:15 - 2014-08-18 23:37 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-09-11 03:15 - 2014-08-18 23:36 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-09-11 03:15 - 2014-08-18 23:35 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-09-11 03:15 - 2014-08-18 23:27 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-09-11 03:15 - 2014-08-18 23:25 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-09-11 03:15 - 2014-08-18 23:25 - 00707072 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-09-11 03:15 - 2014-08-18 23:23 - 02104832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-09-11 03:15 - 2014-08-18 23:23 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-09-11 03:15 - 2014-08-18 23:22 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-09-11 03:15 - 2014-08-18 23:19 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-09-11 03:15 - 2014-08-18 23:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-09-11 03:15 - 2014-08-18 23:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-09-11 03:15 - 2014-08-18 23:16 - 13588480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-09-11 03:15 - 2014-08-18 23:15 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-09-11 03:15 - 2014-08-18 23:15 - 02310656 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-09-11 03:15 - 2014-08-18 23:09 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-09-11 03:15 - 2014-08-18 23:08 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-09-11 03:15 - 2014-08-18 23:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-09-11 03:15 - 2014-08-18 22:55 - 01447424 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-09-11 03:15 - 2014-08-18 22:46 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-09-11 03:15 - 2014-08-18 22:38 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-09-11 03:15 - 2014-08-18 22:38 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-09-11 03:15 - 2014-08-18 22:36 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-09-11 03:02 - 2014-06-27 04:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2014-09-11 03:02 - 2014-06-27 03:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2014-09-10 09:39 - 2014-08-01 13:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2014-09-10 09:39 - 2014-08-01 13:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2014-09-10 08:34 - 2014-07-07 04:06 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-09-10 08:34 - 2014-07-07 04:06 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-09-10 08:34 - 2014-07-07 03:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-09-10 08:34 - 2014-07-07 03:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-09-10 08:34 - 2014-07-07 03:39 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-09-10 07:37 - 2014-06-24 05:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-09-10 07:37 - 2014-06-24 04:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-09-10 07:14 - 2014-09-05 04:10 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-09-10 07:14 - 2014-09-05 04:05 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-09-04 19:22 - 2014-09-04 19:22 - 00058232 _____ (Term Tutor) C:\Windows\system32\Drivers\ttnfd.sys
2014-08-28 23:19 - 2014-08-28 23:21 - 18599008 _____ (DVDVideoSoft Ltd. ) C:\Users\Spieler.HeikeHarder-HP\Downloads\Free3DVideoMaker.exe
2014-08-28 20:02 - 2014-09-09 21:23 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Documents\lp
2014-08-28 17:26 - 2001-11-01 21:00 - 02097152 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\Pokemon - Kristall-Edition (D).gbc
2014-08-28 17:03 - 2014-08-28 17:03 - 01050386 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\Pokemon Kristall (D).zip
2014-08-28 13:41 - 2014-08-28 13:41 - 00000945 _____ () C:\Users\Spieler.HeikeHarder-HP\Desktop\HyperCam 2.lnk
2014-08-28 13:41 - 2014-08-28 13:41 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HyperCam 2
2014-08-28 13:40 - 2014-08-28 13:41 - 03020528 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\HC2Setup-2.29.01 (1).exe
2014-08-27 23:47 - 2014-08-23 04:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-08-27 23:47 - 2014-08-23 03:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-08-27 23:47 - 2014-08-23 02:59 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-08-26 16:05 - 2014-08-26 16:05 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Downloads\Slot1D
2014-08-26 13:08 - 2014-08-26 13:17 - 27076650 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\0052.zip

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-25 22:57 - 2014-09-23 14:22 - 00030307 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\FRST.txt
2014-09-25 22:57 - 2014-09-23 14:21 - 00000000 ____D () C:\FRST
2014-09-25 20:30 - 2013-09-03 22:45 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\TS3Client
2014-09-25 20:25 - 2012-06-04 16:38 - 01281713 _____ () C:\Windows\WindowsUpdate.log
2014-09-25 19:58 - 2014-06-25 12:44 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Powersaves3DS
2014-09-25 19:19 - 2012-12-09 12:38 - 00000000 ____D () C:\Program Files (x86)\RIFT
2014-09-25 19:14 - 2014-09-21 21:35 - 00000448 _____ () C:\Windows\setupact.log
2014-09-25 17:29 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache
2014-09-25 16:22 - 2011-03-16 16:37 - 00000442 _____ () C:\Windows\system32\Drivers\etc\hosts.ics
2014-09-25 16:07 - 2009-07-14 06:45 - 00018512 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-09-25 16:07 - 2009-07-14 06:45 - 00018512 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-09-25 16:03 - 2011-01-27 20:36 - 00004120 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-09-25 16:03 - 2011-01-27 20:36 - 00003868 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-09-25 16:03 - 2011-01-27 20:36 - 00001122 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-09-25 16:03 - 2011-01-27 20:36 - 00001118 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-09-25 16:02 - 2014-06-24 16:10 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Local\LogMeIn Hamachi
2014-09-25 16:00 - 2014-07-13 14:54 - 00000000 ___RD () C:\Users\Spieler.HeikeHarder-HP\Dropbox
2014-09-25 16:00 - 2014-07-13 14:51 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Dropbox
2014-09-25 15:59 - 2014-01-29 20:26 - 00000008 __RSH () C:\ProgramData\ntuser.pol
2014-09-25 15:59 - 2012-12-09 23:08 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Overwolf
2014-09-25 15:58 - 2012-11-28 11:43 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Raptr
2014-09-25 15:58 - 2011-03-09 17:38 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\PDF Software
2014-09-25 15:57 - 2014-09-23 14:59 - 00027322 _____ () C:\Windows\PFRO.log
2014-09-25 15:57 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-09-25 15:55 - 2014-09-25 15:55 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Downloads\FRST-OlderVersion
2014-09-25 15:55 - 2014-09-23 14:21 - 02108928 _____ (Farbar) C:\Users\Spieler.HeikeHarder-HP\Downloads\FRST64.exe
2014-09-25 15:55 - 2014-09-21 20:47 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\LookThisUp
2014-09-25 15:55 - 2011-01-27 12:25 - 00000000 ____D () C:\Users\Heike Harder
2014-09-25 15:55 - 2009-07-14 05:20 - 00000000 ___HD () C:\Windows\system32\GroupPolicy
2014-09-24 18:45 - 2011-01-29 14:11 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\SoftGrid Client
2014-09-24 11:01 - 2014-09-24 11:01 - 02347384 _____ (ESET) C:\Users\Spieler.HeikeHarder-HP\Downloads\esetsmartinstaller_deu.exe
2014-09-23 21:51 - 2014-09-23 21:50 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Desktop\Schutz und remove
2014-09-23 21:50 - 2014-09-23 21:48 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Desktop\speak
2014-09-23 21:49 - 2014-09-23 21:46 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Desktop\Games
2014-09-23 21:48 - 2014-09-23 21:48 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Desktop\opera
2014-09-23 21:47 - 2014-09-23 21:47 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Desktop\sammlung minemap
2014-09-23 17:28 - 2014-09-23 17:01 - 00078237 _____ () C:\zoek-results.log
2014-09-23 17:24 - 2014-09-23 16:58 - 00000000 ____D () C:\zoek_backup
2014-09-23 17:18 - 2011-01-29 12:51 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP
2014-09-23 17:01 - 2014-09-23 14:55 - 00000000 ____D () C:\AdwCleaner
2014-09-23 16:58 - 2014-09-23 17:26 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-09-23 16:57 - 2014-09-23 16:57 - 04114148 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\zoek.zip
2014-09-23 16:20 - 2014-09-23 16:20 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Spieler.HeikeHarder-HP\Downloads\mbam-setup-2.0.2.1012 (3).exe
2014-09-23 15:03 - 2014-09-23 15:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2014-09-23 15:03 - 2014-09-23 15:03 - 00000000 ____D () C:\Program Files (x86)\LogMeIn Hamachi
2014-09-23 14:59 - 2012-04-12 13:23 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-09-23 14:55 - 2014-09-23 14:55 - 01373475 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\AdwCleaner_3.310.exe
2014-09-23 14:53 - 2014-09-23 14:53 - 00000000 ____D () C:\Program Files\TermTutor
2014-09-23 14:24 - 2014-09-23 14:24 - 00068480 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\Addition.txt
2014-09-23 13:15 - 2014-09-23 13:15 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Spieler.HeikeHarder-HP\Downloads\mbam-setup-2.0.2.1012 (2).exe
2014-09-23 13:15 - 2014-09-23 13:15 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Spieler.HeikeHarder-HP\Downloads\mbam-setup-2.0.2.1012 (1).exe
2014-09-22 20:13 - 2014-01-23 20:42 - 00000000 ____D () C:\Program Files (x86)\Overwolf
2014-09-21 21:39 - 2014-07-13 14:52 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2014-09-21 21:35 - 2014-09-21 21:35 - 00000000 _____ () C:\Windows\setuperr.log
2014-09-21 20:49 - 2014-09-21 20:49 - 00001245 _____ () C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk
2014-09-21 20:49 - 2014-09-21 20:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
2014-09-21 20:49 - 2014-09-21 20:49 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft
2014-09-21 20:49 - 2012-12-30 13:01 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\DVDVideoSoft
2014-09-21 20:48 - 2014-09-21 20:48 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\InetStat
2014-09-21 20:48 - 2014-09-21 20:47 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\InetStat
2014-09-21 20:47 - 2014-09-21 20:47 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_webinstr_01009.Wdf
2014-09-21 20:46 - 2014-09-21 20:41 - 74675720 _____ (DVDVideoSoft Ltd. ) C:\Users\Spieler.HeikeHarder-HP\Downloads\FreeStudio.exe
2014-09-21 20:42 - 2011-01-07 21:18 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-09-21 20:00 - 2014-09-21 00:00 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Documents\ArcheAge
2014-09-21 00:00 - 2014-09-21 00:00 - 00000000 ____D () C:\ArcheAge
2014-09-20 20:33 - 2014-07-03 12:03 - 00000000 ____D () C:\Program Files (x86)\Glyph
2014-09-20 19:55 - 2011-03-02 15:03 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\KlebezettelNG
2014-09-20 19:54 - 2011-04-18 11:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Klebezettel
2014-09-20 19:54 - 2011-01-27 20:05 - 00000000 ____D () C:\Program Files (x86)\Klebezettel NG
2014-09-17 19:05 - 2014-06-25 13:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Action Replay PowerSaves 3DS
2014-09-17 19:05 - 2014-06-25 13:55 - 00000000 ____D () C:\Program Files (x86)\Action Replay PowerSaves 3DS
2014-09-17 19:05 - 2014-06-25 12:35 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Desktop\powersave
2014-09-17 19:03 - 2014-09-17 19:02 - 03817601 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\powersaves3ds-software-121.zip
2014-09-17 10:31 - 2014-06-03 11:02 - 00003864 _____ () C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1387178156
2014-09-17 10:31 - 2011-01-27 12:58 - 00000000 ____D () C:\Program Files (x86)\Opera
2014-09-15 20:18 - 2014-08-06 12:01 - 00000000 ____D () C:\ProgramData\Package Cache
2014-09-15 20:18 - 2014-06-24 19:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2014-09-15 20:18 - 2014-06-24 19:23 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-09-14 21:12 - 2012-10-02 22:27 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\RIFT
2014-09-13 20:18 - 2012-04-12 13:23 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-09-13 20:18 - 2012-04-12 13:23 - 00003824 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-09-13 20:18 - 2011-05-23 10:55 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-09-12 18:43 - 2013-01-07 23:41 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\.minecraft
2014-09-12 05:35 - 2011-01-07 21:54 - 00799382 _____ () C:\Windows\system32\perfh007.dat
2014-09-12 05:35 - 2011-01-07 21:54 - 00188890 _____ () C:\Windows\system32\perfc007.dat
2014-09-12 05:35 - 2009-07-14 07:13 - 01903918 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-09-11 22:55 - 2014-06-24 16:06 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Desktop\pika
2014-09-11 07:41 - 2009-07-14 04:34 - 00000601 _____ () C:\Windows\win.ini
2014-09-11 03:13 - 2011-01-27 18:45 - 01877262 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-09-11 03:10 - 2013-08-16 09:04 - 00000000 ____D () C:\Windows\system32\MRT
2014-09-11 03:04 - 2011-01-31 19:17 - 101694776 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-09-11 03:02 - 2014-05-01 03:02 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-09-10 00:11 - 2014-09-24 11:22 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-09-09 23:47 - 2014-09-24 11:22 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-09-09 21:23 - 2014-08-28 20:02 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Documents\lp
2014-09-09 21:20 - 2014-08-21 22:58 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Desktop\uni
2014-09-09 07:36 - 2014-09-23 16:58 - 01290240 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\zoek.exe
2014-09-05 04:10 - 2014-09-10 07:14 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-09-05 04:05 - 2014-09-10 07:14 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-09-04 19:22 - 2014-09-04 19:22 - 00058232 _____ (Term Tutor) C:\Windows\system32\Drivers\ttnfd.sys
2014-09-01 12:56 - 2013-02-07 00:45 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Paint.NET
2014-08-31 11:35 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-08-30 13:37 - 2014-05-02 14:03 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Winamp
2014-08-28 23:21 - 2014-08-28 23:19 - 18599008 _____ (DVDVideoSoft Ltd. ) C:\Users\Spieler.HeikeHarder-HP\Downloads\Free3DVideoMaker.exe
2014-08-28 20:06 - 2012-12-30 13:05 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Documents\DVDVideoSoft
2014-08-28 17:03 - 2014-08-28 17:03 - 01050386 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\Pokemon Kristall (D).zip
2014-08-28 14:50 - 2014-01-31 17:26 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Downloads\emu
2014-08-28 13:41 - 2014-08-28 13:41 - 00000945 _____ () C:\Users\Spieler.HeikeHarder-HP\Desktop\HyperCam 2.lnk
2014-08-28 13:41 - 2014-08-28 13:41 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HyperCam 2
2014-08-28 13:41 - 2014-08-28 13:40 - 03020528 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\HC2Setup-2.29.01 (1).exe
2014-08-28 13:41 - 2011-03-31 16:43 - 00000000 ____D () C:\Program Files (x86)\HyCam2
2014-08-28 13:39 - 2014-08-18 16:36 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Solveig Multimedia
2014-08-28 03:20 - 2013-08-22 09:23 - 00505384 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-08-26 18:14 - 2014-07-20 21:55 - 00005284 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\desmume.ini
2014-08-26 17:52 - 2014-07-09 18:04 - 00000409 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\fishbotconfig.ini
2014-08-26 16:10 - 2014-07-20 21:55 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Downloads\States
2014-08-26 16:05 - 2014-08-26 16:05 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Downloads\Slot1D
2014-08-26 13:17 - 2014-08-26 13:08 - 27076650 _____ () C:\Users\Spieler.HeikeHarder-HP\Downloads\0052.zip
2014-08-26 13:17 - 2014-07-20 21:55 - 00000000 ____D () C:\Users\Spieler.HeikeHarder-HP\Downloads\Battery

Some content of TEMP:
====================
C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Temp\avgnt.exe
C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmppu4jdx.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-09-16 06:23

==================== End Of Log ============================
         
--- --- ---
__________________

Alt 25.09.2014, 22:00   #19
Blitzi
 
Opera Problem. Unsichtbare Internetseite mit nervender Werbung - Standard

Opera Problem. Unsichtbare Internetseite mit nervender Werbung



Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 25-09-2014
Ran by Spieler at 2014-09-25 22:58:00
Running from C:\Users\Spieler.HeikeHarder-HP\Downloads
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avira Desktop (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AS: Avira Desktop (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

 Restricted Area Savegame Editor V1.00 - V1.09 (HKLM-x32\...\ Restricted Area Savegame Editor V1.00 - V1.09) (Version:  - )
3RVX (HKLM-x32\...\{66BB5D8F-D9BD-4799-A9FA-5731B3B7839A}) (Version: 2.5 - matt.malensek.net)
7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
ABBYY FineReader 10 Professional Edition (HKLM-x32\...\{F1000000-0001-0000-0000-074957833700}) (Version: 10.501.159.70013 - ABBYY)
Action Replay DSi Code Manager (HKLM-x32\...\Action Replay DSi Code Manager_is1) (Version:  - )
Action Replay PowerSaves 3DS Version 1.21 (HKLM-x32\...\{CD24B06F-0A4D-410A-AEF2-DFE6A28AB4C0}_is1) (Version: 1.21 - Datel Design & Development)
ActiveCheck component for HP Active Support Library (x32 Version: 3.0.0.3 - Hewlett-Packard) Hidden
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.5.3.9130 - Adobe Systems Inc.)
Adobe AIR (x32 Version: 1.5.3.9130 - Adobe Systems Inc.) Hidden
Adobe Bridge 1.0 (x32 Version: 001.000.001 - Adobe Systems) Hidden
Adobe Common File Installer (x32 Version: 1.00.001 - Adobe System Incorporated) Hidden
Adobe Creative Suite 2 (HKLM-x32\...\{0134A1A1-C283-4A47-91A1-92F19F960372}) (Version:  - )
Adobe Digital Editions (HKLM-x32\...\Digital Editions) (Version:  - )
Adobe Flash Player 11 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 11.5.502.110 - Adobe Systems Incorporated)
Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.152 - Adobe Systems Incorporated)
Adobe Help Center 1.0 (x32 Version: 1.0.1 - Adobe Systems) Hidden
Adobe Illustrator CS2 (x32 Version: 12.000.000 - Adobe Systems Inc.) Hidden
Adobe InDesign CS2 (x32 Version: 004.000.000 - Adobe Systems Incorporated) Hidden
Adobe Photoshop CS2 (x32 Version: 9.0 - Adobe Systems, Inc.) Hidden
Adobe Photoshop Elements 6.0 (HKLM-x32\...\Adobe Photoshop Elements 6) (Version: 6.0 - Adobe Systems, Inc.)
Adobe Photoshop Elements 6.0 (x32 Version: 6.0 - Adobe Systems, Inc.) Hidden
Adobe Reader X (10.1.11) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AA1000000001}) (Version: 10.1.11 - Adobe Systems Incorporated)
Adobe Stock Photos 1.0 (x32 Version: 1.0.1 - Adobe Systems) Hidden
Adobe SVG Viewer 3.0 (HKLM-x32\...\Adobe SVG Viewer) (Version:  3.0 - Adobe Systems, Inc.)
Adobe Version Cue CS2 (x32 Version: 2.0 - Adobe Systems, Inc.) Hidden
Aeria Ignite (HKLM-x32\...\Aeria Ignite 1.12.2400) (Version: 1.12.2400 - Aeria Games & Entertainment)
Aeria Ignite (HKLM-x32\...\Aeria Ignite) (Version: 1.12.2400 - Aeria Games & Entertainment)
Aeria Ignite (x32 Version: 1.12.2400 - Aeria Games & Entertainment) Hidden
Agatha Christie - Peril at End House (x32 Version: 2.2.0.95 - WildTangent) Hidden
AION Free-To-Play (HKLM-x32\...\InstallShield_{6A9EF6CF-7630-4E33-AE22-7D70F3AF4B05}) (Version: 2.70.0000 - Gameforge)
AION Free-To-Play (x32 Version: 2.70.0000 - Gameforge) Hidden
Akamai NetSession Interface (HKCU\...\Akamai) (Version:  - Akamai Technologies, Inc)
Apple Application Support (HKLM-x32\...\{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}) (Version: 2.3.4 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Archeage (HKLM-x32\...\Glyph Archeage) (Version:  - Trion Worlds, Inc.)
Ashampoo Burning Studio Elements 10.0.9 (HKLM-x32\...\Ashampoo Burning Studio Elements_is1) (Version: 3.1.1 - Ashampoo GmbH & Co. KG)
Ashampoo Office 2008 (C:\Program Files (x86)\Ashampoo\Ashampoo Office 2008) (HKLM-x32\...\sm-un1.u32) (Version:  - SoftMaker Software GmbH)
Ashampoo Photo Commander 7.60 (HKLM-x32\...\Ashampoo Photo Commander 7_is1) (Version: 7.6.0 - ashampoo GmbH & Co. KG)
Audacity 2.0 (HKLM-x32\...\Audacity_is1) (Version:  - Audacity Team)
Audible Download Manager (HKLM-x32\...\AudibleDownloadManager) (Version: 6.6.0.10 - Audible, Inc.)
Autostart ok-s 2.0 (HKLM-x32\...\{83832C13-FE26-4058-9BEB-89C422F569B3}) (Version: 1.0 - Olaf Koch)
Avira (HKLM-x32\...\{70e83cd8-4bd5-4039-ab5a-6b94a8abb641}) (Version: 1.1.21.25162 - Avira Operations GmbH & Co. KG)
Avira (x32 Version: 1.1.21.25162 - Avira Operations GmbH & Co. KG) Hidden
Avira Free Antivirus (HKLM-x32\...\Avira AntiVir Desktop) (Version: 14.0.6.570 - Avira)
Bandisoft MPEG-1 Decoder (HKLM-x32\...\BandiMPEG1) (Version:  - )
Bejeweled 2 Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
BenVista PhotoZoom Classic 2.0 (HKCU\...\PhotoZoom Classic 2) (Version: 2.0 - BenVista Ltd)
BenVista PhotoZoom Express 3.0 (HKCU\...\PhotoZoom Express 3) (Version: 3.0 - BenVista Ltd)
Bing Rewards Client Installer (x32 Version: 16.0.345.0 - Microsoft Corporation) Hidden
Blasterball 3 (x32 Version: 2.2.0.95 - WildTangent) Hidden
Blender (HKLM\...\Blender) (Version: 2.71 - Blender Foundation)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Bounce Symphony (x32 Version: 2.2.0.95 - WildTangent) Hidden
Brother MFL-Pro Suite MFC-J6510DW (HKLM-x32\...\{17795164-3BC1-4D4F-8ADA-65C895EBFC9A}) (Version: 1.0.20.0 - Brother Industries, Ltd.)
Build-a-Lot - The Elizabethan Era (x32 Version: 2.2.0.95 - WildTangent) Hidden
Cake Mania (x32 Version: 2.2.0.95 - WildTangent) Hidden
CCEnhancer 3.2 (HKLM-x32\...\CCEnhancer) (Version: 3.2 - )
CCleaner (HKLM\...\CCleaner) (Version: 3.17 - Piriform)
Cheat Engine 6.2 (HKLM-x32\...\Cheat Engine 6.2_is1) (Version:  - Dark Byte)
Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
Compatibility Pack für 2007 Office System (HKLM-x32\...\{90120000-0020-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
COMPUTERBILD App-Center (HKLM-x32\...\{21295604-BBCA-4A3E-B1D1-1B8A746C4A52}) (Version: 1.0.23 - J3S)
COMPUTERBILD-Cloud (HKLM\...\COMPUTERBILD-Cloud_is1) (Version:  - CyberGhost S.R.L.)
Curse Client (HKCU\...\101a9f93b8f0bb6f) (Version: 5.1.1.792 - Curse)
CyberLink DVD Suite Deluxe (HKLM-x32\...\InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}) (Version: 7.0.3210 - CyberLink Corp.)
CyberLink DVD Suite Deluxe (x32 Version: 7.0.3210 - CyberLink Corp.) Hidden
CyberLink PowerDVD 11 (HKLM-x32\...\InstallShield_{F232C87C-6E92-4775-8210-DFE90B7777D9}) (Version: 11.0.2024.53 - CyberLink Corp.)
CyberLink PowerDVD 11 (x32 Version: 11.0.2024.53 - CyberLink Corp.) Hidden
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Defraggler (HKLM\...\Defraggler) (Version: 2.01 - Piriform)
DEUTSCHLAND SPIELT GAME CENTER (HKLM-x32\...\DSGPlayer) (Version: 1.0.1.46 - INTENIUM GmbH)
Die Jade-Münze (HKLM-x32\...\Die Jade-Münze) (Version: 1.0.0.0 - INTENIUM GmbH)
Diner Dash 2 Restaurant Rescue (x32 Version: 2.2.0.95 - WildTangent) Hidden
DomainInspect (HKLM-x32\...\DomainInspect) (Version:  - AntsSoft)
Dragon Age II (HKLM-x32\...\{4D565319-8B91-41cb-961C-0DDC86101AC5}) (Version: 1.00 - Electronic Arts, Inc.)
Dragon Age Toolset (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.01 - Electronic Arts, Inc.)
Dragon Age: Origins (HKLM-x32\...\{AEC81925-9C76-4707-84A9-40696C613ED3}) (Version: 1.04 - Electronic Arts, Inc.)
Drakensang - Am Fluss der Zeit (HKLM-x32\...\Drakensang_TRoT_is1) (Version:  - dtp)
Drakensang (Patch Version 1.1) (HKLM-x32\...\Drakensang_is1) (Version:  - dtp AG)
Drakensang 2 Savegame Editor (HKCU\...\Drakensang 2 Savegame Editor) (Version:  - Philipp Jardas)
Drakensang Savegame Editor (HKCU\...\Drakensang Savegame Editor) (Version:  - Philipp Jardas)
Dropbox (HKCU\...\Dropbox) (Version: 2.10.30 - Dropbox, Inc.)
DVD Menu Pack for HP MediaSmart Video (HKLM-x32\...\InstallShield_{FB4BB287-37F9-4E27-9C4D-2D3882E08EFF}) (Version: 4.2.4412 - Hewlett-Packard)
DVD Menu Pack for HP MediaSmart Video (x32 Version: 4.2.4412 - Hewlett-Packard) Hidden
DVD Video Soft Toolbar (HKLM-x32\...\dvdvideosofttoolbar) (Version: 1.0.0.12 - )
DVDVideoSoftTB Toolbar (HKLM-x32\...\DVDVideoSoftTB Toolbar) (Version: 6.9.0.16 - DVDVideoSoftTB)
EA Shared Game Component: Activation (HKLM-x32\...\com.ea.Activation.919CACB699904AC5D41B606703500DD39747C02D.1) (Version: 2.2.0.62 - Electronic Arts)
EA Shared Game Component: Activation (x32 Version: 2.2.0 - Electronic Arts) Hidden
Epson Easy Photo Print 2 (HKLM-x32\...\{A02D7029-C4EF-44C1-9FD4-C0D3CA518113}) (Version: 2.2.4.0 - SEIKO EPSON CORPORATION)
Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) (HKLM-x32\...\{B2D55EB8-32C5-4B43-9006-9E97DECBA178}) (Version: 1.00.0000 - SEIKO EPSON CORPORATION)
EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version:  - Seiko Epson Corporation)
EPSON SX430 Series Printer Uninstall (HKLM\...\EPSON SX430 Series) (Version:  - SEIKO EPSON Corporation)
EpsonNet Print (HKLM-x32\...\{3E31400D-274E-4647-916C-2CACC3741799}) (Version: 2.4j - SEIKO EPSON CORPORATION)
Farm Frenzy (x32 Version: 2.2.0.95 - WildTangent) Hidden
FATE (x32 Version: 2.2.0.95 - WildTangent) Hidden
Fotogalerie (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Fraps (remove only) (HKLM-x32\...\Fraps) (Version:  - )
Free 3GP Video Converter version 5.0.13.608 (HKLM-x32\...\Free 3GP Video Converter_is1) (Version: 5.0.13.608 - DVDVideoSoft Ltd.)
Free Audio CD to MP3 Converter version 1.3.12.1228 (HKLM-x32\...\Free Audio CD to MP3 Converter_is1) (Version: 1.3.12.1228 - DVDVideoSoft Ltd.)
Free Audio Converter version 5.0.21.1212 (HKLM-x32\...\Free Audio Converter_is1) (Version: 5.0.21.1212 - DVDVideoSoft Ltd.)
Free Studio version 2014 (HKLM-x32\...\Free Studio_is1) (Version: 6.3.9.906 - DVDVideoSoft Ltd.)
Free YouTube Download 3 version 3.0.6.715 (HKLM-x32\...\Free YouTube Download 3_is1) (Version:  - DVDVideoSoft Limited.)
Free YouTube to DVD Converter version 3.0.3.923 (HKLM-x32\...\Free YouTube to DVD Converter_is1) (Version:  - DVDVideoSoft Ltd.)
GameWiz32 (HKLM-x32\...\GameWiz32) (Version: 1.43 - Nico Ebert)
Geheimnis von Montezuma (HKLM-x32\...\Geheimnis von Montezuma) (Version: 0.0.0.0 - INTENIUM GmbH)
Geheimnis von Montezuma 2 (HKLM-x32\...\Geheimnis von Montezuma 2) (Version: 1.0.0.0 - INTENIUM GmbH)
Glitzerndes Troja (HKLM-x32\...\Glitzerndes Troja_is1) (Version:  - Contendo Media GmbH)
Glyph (HKLM-x32\...\Glyph) (Version:  - Trion Worlds, Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 37.0.2062.124 - Google Inc.)
Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.5111.1712 - Google Inc.)
Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden
Guild Wars 2 (HKLM-x32\...\Guild Wars 2) (Version:  - NCsoft Corporation, Ltd.)
Harvard Publisher 6.0 (HKLM-x32\...\Harvard Publisher 6.0) (Version:  - )
Harvard Publisher 6.0 Inhalts-CD-ROM (HKLM-x32\...\Harvard Publisher 6.0 Inhalts-CD-ROM) (Version:  - )
HP Auto (Version: 1.0.12494.3472 - Hewlett-Packard Company) Hidden
HP Client Services (Version: 1.0.12656.3472 - Hewlett-Packard) Hidden
HP Customer Experience Enhancements (x32 Version: 6.0.1.7 - Hewlett-Packard) Hidden
HP Game Console (x32 Version:  - WildTangent) Hidden
HP Games (HKLM-x32\...\WildTangent hp Master Uninstall) (Version: 1.0.1.5 - WildTangent)
HP MediaSmart DVD (HKLM-x32\...\InstallShield_{DCCAD079-F92C-44DA-B258-624FC6517A5A}) (Version: 4.2.4725 - Hewlett-Packard)
HP MediaSmart DVD (x32 Version: 4.2.4725 - Hewlett-Packard) Hidden
HP MediaSmart Music (HKLM-x32\...\InstallShield_{91A34181-9FAD-43AB-A35F-E7A8945B7E1C}) (Version: 4.2.4517 - Hewlett-Packard)
HP MediaSmart Music (x32 Version: 4.2.4517 - Hewlett-Packard) Hidden
HP MediaSmart Photo (HKLM-x32\...\InstallShield_{6DAF8CDC-9B04-413B-A0F2-BCC13CF8A5BF}) (Version: 4.2.4513 - Hewlett-Packard)
HP MediaSmart Photo (x32 Version: 4.2.4513 - Hewlett-Packard) Hidden
HP MediaSmart SmartMenu (HKLM\...\{A40F60B1-F1E1-452E-96A5-FF97F9A2D102}) (Version: 3.1.2.4 - Hewlett-Packard)
HP MediaSmart Video (HKLM-x32\...\InstallShield_{D12E3E7F-1B13-4933-A915-16C7DD37A095}) (Version: 4.2.4522 - Hewlett-Packard)
HP MediaSmart Video (x32 Version: 4.2.4522 - Hewlett-Packard) Hidden
HP Odometer (HKLM-x32\...\{B8AC1A89-FFD1-4F97-8051-E505A160F562}) (Version: 2.10.0000 - Hewlett-Packard)
HP Setup (HKLM-x32\...\{53469506-A37E-4314-A9D9-38724EC23A75}) (Version: 8.4.4400.3525 - Hewlett-Packard Company)
HP Setup Manager (HKLM-x32\...\{AE856388-AFAD-4753-81DF-D96B19D0A17C}) (Version: 1.0.12844.3519 - Hewlett-Packard Company)
HP Support Assistant (HKLM-x32\...\{B1A4A13D-4665-4ED3-9DFE-F845725FBBD8}) (Version: 5.1.8.12 - Hewlett-Packard Company)
HP Support Information (HKLM-x32\...\{7F2A11F4-EAE8-4325-83EC-E3E99F85169E}) (Version: 10.1.1000 - Hewlett-Packard)
HP Update (HKLM-x32\...\{DE77FE3F-A33D-499A-87AD-5FC406617B40}) (Version: 5.002.003.003 - Hewlett-Packard)
HP Vision Hardware Diagnostics (HKLM\...\{D79A02E9-6713-4335-9668-AAC7474C0C0E}) (Version: 2.1.6.0 - Hewlett-Packard)
HPAsset component for HP Active Support Library (x32 Version: 3.0.0.3 - Hewlett-Packard) Hidden
Hühner-Attacke (HKLM-x32\...\Hühner-Attacke) (Version: 0.0.0.0 - INTENIUM GmbH)
Hühner-Rache Deluxe Special (HKLM-x32\...\Hühner-Rache Deluxe Special) (Version:  - )
HyperCam 2 (HKLM-x32\...\HyperCam 2) (Version: 2.29.01 - Hyperionics Technology LLC)
Insaniquarium Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.0.0.1179 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 9.6.0.1014 - Intel Corporation)
Internet Turbo Engine (HKCU\...\{28583d9b-8f7d-474c-b990-7328c7428bae}) (Version: 10.197.20.13927 - ReSoft Ltd.)
iTunes (HKLM\...\{D66F0C3C-24F2-4463-9E2F-4381E5C40A26}) (Version: 10.5.2.11 - Apple Inc.)
Java 7 Update 65 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F06417065FF}) (Version: 7.0.650 - Oracle)
Java Auto Updater (x32 Version: 2.0.2.4 - Sun Microsystems, Inc.) Hidden
Java(TM) 6 Update 23 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83216022FF}) (Version: 6.0.230 - Oracle)
JDownloader 0.9 (HKLM-x32\...\5513-1208-7298-9440) (Version: 0.9 - AppWork GmbH)
Jewel Quest II (x32 Version: 2.2.0.95 - WildTangent) Hidden
Jewel Quest Solitaire (HKLM-x32\...\Jewel Quest Solitaire) (Version: 1.0.0.0 - INTENIUM GmbH)
Jewel Quest Solitaire (x32 Version: 2.2.0.95 - WildTangent) Hidden
Jewel Quest Solitaire II (HKLM-x32\...\Jewel Quest Solitaire II) (Version: 1.0.0.0 - INTENIUM GmbH)
Jewel Quest Solitaire III (HKLM-x32\...\Jewel Quest Solitaire III) (Version: 1.0.0.0 - INTENIUM GmbH)
John Deere Drive Green (x32 Version: 2.2.0.95 - WildTangent) Hidden
Junk Mail filter update (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Klebezettel NG (Version 2.9.14) (HKLM-x32\...\{4F81901F-3655-4340-8227-F687F69A3C79}}_is1) (Version:  - )
Land der Magie (HKLM-x32\...\Land der Magie) (Version: 1.0.0.0 - INTENIUM GmbH)
Legendary Demo (HKLM-x32\...\InstallShield_{A6755FD5-4CD1-44A7-8886-6C56FA0A9E21}) (Version: 1.00.0000 - Spark Unlimited)
Legendary Demo (x32 Version: 1.00.0000 - Spark Unlimited) Hidden
LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.236 - LogMeIn, Inc.)
LogMeIn Hamachi (x32 Version: 2.2.0.236 - LogMeIn, Inc.) Hidden
LookThisUp (HKLM\...\LookThisUp) (Version: 1.0.2 - LookThisUp)
M6 Processing 1.0 (HKCU\...\M6 Processing) (Version: 1.0 - Pysy Software S.L.)
Magelo Sync (uninstall only) (HKLM\...\Magelo Sync) (Version:  - )
MAGIX Filme auf DVD Download-Version (x32 Version: 9.0.1.2 - MAGIX AG) Hidden
MAGIX Video deluxe 16 Plus Sonderedition Download-Version (HKLM-x32\...\MAGIX_MSI_Videodeluxe16_plus) (Version: 9.0.5.10 - MAGIX AG)
MAGIX Video deluxe 16 Plus Sonderedition Download-Version (x32 Version: 9.0.5.10 - MAGIX AG) Hidden
MAGIX Video deluxe 17 Download-Version (x32 Version: 10.0.1.14 - MAGIX AG) Hidden
Mah Jong Quest (HKLM-x32\...\Mah Jong Quest) (Version: 0.0.0.0 - INTENIUM GmbH)
Mah Jong Quest II (HKLM-x32\...\Mah Jong Quest II) (Version: 0.0.0.0 - INTENIUM GmbH)
Mah Jong Quest III (HKLM-x32\...\Mah Jong Quest III) (Version: 0.0.0.0 - INTENIUM GmbH)
Mahjongg – Ancient Egypt (HKLM-x32\...\Mahjongg – Ancient Egypt) (Version: 1.0.0.0 - INTENIUM GmbH)
Mahjongg – Ancient Mayas (HKLM-x32\...\Mahjongg – Ancient Mayas) (Version: 0.0.0.0 - INTENIUM GmbH)
Mahjongg Artifacts (HKLM-x32\...\Mahjongg Artifacts) (Version: 0.0.0.0 - INTENIUM GmbH)
Mahjongg Artifacts 2 (HKLM-x32\...\Mahjongg Artifacts 2) (Version: 0.0.0.0 - INTENIUM GmbH)
Mahjongg Dimensions Deluxe: Tiles in Time (HKLM-x32\...\Mahjongg Dimensions Deluxe: Tiles in Time) (Version: 1.0.0.0 - INTENIUM GmbH)
McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.8.150.1 - McAfee, Inc.)
Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Klick-und-Los 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Klick-und-Los 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Live Add-in 1.5 (HKLM-x32\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation)
Microsoft Office Starter 2010 - Deutsch (HKLM-x32\...\{90140011-0066-0407-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office XP Professional (HKLM-x32\...\{91110407-6000-11D3-8CFE-0050048383C9}) (Version: 10.0.6626.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SkyDrive (HKCU\...\SkyDriveSetup.exe) (Version: 16.4.6013.0910 - Microsoft Corporation)
Microsoft SQL Server 2005 (HKLM-x32\...\Microsoft SQL Server 2005) (Version:  - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server 2005 Express Edition (BWDATOOLSET) (x32 Version: 9.4.5000.00 - Microsoft Corporation) Hidden
Microsoft SQL Server 2005 Express Edition (SQLEXPRESS) (x32 Version: 9.4.5000.00 - Microsoft Corporation) Hidden
Microsoft SQL Server 2005 Tools Express Edition (x32 Version: 9.4.5000.00 - Microsoft Corporation) Hidden
Microsoft SQL Server Native Client (HKLM\...\{9ACF3FDB-C8E6-444C-8C64-13A221F7BFFD}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft SQL Server Setup Support Files (English) (HKLM-x32\...\{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft SQL Server VSS Writer (HKLM\...\{B636C9B9-A3F2-4DCE-ADCC-72E095018385}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (HKLM\...\{B6E3757B-5E77-3915-866A-CCFC4B8D194C}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 (HKLM\...\{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}) (Version: 8.0.51011 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 (HKLM\...\{8338783A-0968-3B85-AFC7-BAAE0A63DC50}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM-x32\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Moorhuhn Schatzjäger 3 (HKLM-x32\...\Moorhuhn Schatzjäger 3) (Version: 1.00 - phenomedia publishing gmbh)
Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Movie Theme Pack for HP MediaSmart Video (HKLM-x32\...\InstallShield_{3023EBDA-BF1B-4831-B347-E5018555F26E}) (Version: 4.2.4412 - Hewlett-Packard)
Movie Theme Pack for HP MediaSmart Video (x32 Version: 4.2.4412 - Hewlett-Packard) Hidden
Mozilla Thunderbird (3.1.7) (HKLM-x32\...\Mozilla Thunderbird (3.1.7)) (Version: 3.1.7 (de) - Mozilla)
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden
MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2721691) (HKLM-x32\...\{355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}) (Version: 4.30.2114.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB973685) (HKLM-x32\...\{859DFA95-E4A6-48CD-B88E-A3E483E89B44}) (Version: 4.30.2107.0 - Microsoft Corporation)
Mystery Solitaire: Secret Island (HKLM-x32\...\Mystery Solitaire: Secret Island) (Version: 0.0.0.0 - INTENIUM GmbH)
NC Launcher (GameForge) (HKLM-x32\...\NCLauncher_GameForge) (Version:  - NCsoft)
Nexon Game Manager (HKLM-x32\...\{EA2DB6E0-72C5-4ef9-A3A0-E6705F4A6A9E}) (Version:  - )
No23 Recorder (HKLM-x32\...\{22B0E143-2B0B-435B-9F56-136A3D16065F}) (Version: 2.1.0.3 - No23)
Nuance PaperPort 12 (HKLM-x32\...\{6C0A559F-8583-4B5A-8B50-20BEE15D8E64}) (Version: 12.1.0000 - Nuance Communications, Inc.)
Nuance PDF Viewer Plus (HKLM-x32\...\{28656860-4728-433C-8AD4-D1A930437BC8}) (Version: 5.30.3290 - Nuance Communications, Inc)
NVIDIA 3D Vision Controller Driver (x32 Version: 270.61 - NVIDIA Corporation) Hidden
NVIDIA 3D Vision Controller-Treiber 310.90 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 310.90 - NVIDIA Corporation)
NVIDIA Grafiktreiber 310.90 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 310.90 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.18.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.18.0 - NVIDIA Corporation)
NVIDIA Install Application (Version: 2.1002.95.599 - NVIDIA Corporation) Hidden
NVIDIA PhysX (x32 Version: 9.12.1031 - NVIDIA Corporation) Hidden
NVIDIA PhysX-Systemsoftware 9.12.1031 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.1031 - NVIDIA Corporation)
NVIDIA Systemsteuerung 310.90 (Version: 310.90 - NVIDIA Corporation) Hidden
NVIDIA Update 1.11.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.11.3 - NVIDIA Corporation)
NVIDIA Update Components (Version: 1.11.3 - NVIDIA Corporation) Hidden
Office-Bibliothek (HKLM-x32\...\{5C81B189-5456-40C4-9313-7FE6FA6DD64C}) (Version: 5.00.3 - Bibliographisches Institut & F.A. Brockhaus AG)
OpenOffice.org 3.3 (HKLM-x32\...\{4286716B-1287-48E7-9078-3DC8248DBA96}) (Version: 3.3.9567 - OpenOffice.org)
Opera 12.16 (HKLM-x32\...\Opera 12.16.1860) (Version: 12.16.1860 - Opera Software ASA)
Opera Stable 24.0.1558.61 (HKLM-x32\...\Opera 24.0.1558.61) (Version: 24.0.1558.61 - Opera Software ASA)
Origin (HKLM-x32\...\Origin) (Version: 9.1.13.85 - Electronic Arts, Inc.)
Overwolf (HKLM-x32\...\Overwolf) (Version: 0.80.20.0 - Overwolf Ltd.)
Paint.NET v3.5.11 (HKLM\...\{72EF03F5-0507-4861-9A44-D99FD4C41418}) (Version: 3.61.0 - dotPDN LLC)
Pando Media Booster (HKLM-x32\...\{980A182F-E0A2-4A40-94C1-AE0C1235902E}) (Version: 2.6.0.8 - Pando Networks Inc.)
PaperPort Image Printer 64-bit (HKLM\...\{715CAACC-579B-4831-A5F4-A83A8DE3EFE2}) (Version: 1.00.0001 - Nuance Communications, Inc.)
PCSUITE ADVISOR (HKLM-x32\...\PCSUITE_ADVISOR_PRO_is1) (Version:  - Markement GmbH)
PDF Complete Special Edition (HKLM-x32\...\PDF Complete) (Version: 4.0.9 - PDF Complete, Inc)
PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.2.0 - Frank Heindörfer, Philip Chinery)
Penguins! (x32 Version: 2.2.0.95 - WildTangent) Hidden
Photo Gallery (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
PictureMover (HKLM-x32\...\{264FE20A-757B-492a-B0C3-4009E2997D8A}) (Version: 3.5.0.33 - Hewlett-Packard Company)
Pinball Escape (HKLM\...\UDK-4601a1a3-d3ca-4b8b-99ca-a569081d9943) (Version:  - Epic Games, Inc.)
Plants vs. Zombies (x32 Version: 2.2.0.95 - WildTangent) Hidden
PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation)
Polar Bowler (x32 Version: 2.2.0.95 - WildTangent) Hidden
Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.4329 - CyberLink Corp.)
PowerDirector (Version: 10.00.0000 - CyberLink Corp.) Hidden
Project64 1.6 (HKLM-x32\...\{9559F7CA-5E34-4237-A2D9-D856464AD727}) (Version: 1.6 - Project64)
QuickTime (HKLM-x32\...\{B67BAFBA-4C9F-48FA-9496-933E3B255044}) (Version: 7.74.80.86 - Apple Inc.)
Raptr (HKLM-x32\...\Raptr) (Version:  - )
RealNetworks - Microsoft Visual C++ 2008 Runtime (x32 Version: 9.0 - RealNetworks, Inc) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6602 - Realtek Semiconductor Corp.)
RealUpgrade 1.1 (x32 Version: 1.1.0 - RealNetworks, Inc.) Hidden
Recovery Manager (x32 Version: 5.5.3219 - CyberLink Corp.) Hidden
Restricted Area (HKLM-x32\...\Restricted Area_is1) (Version: Restricted Area - Master Creating)
Retter in der Not (HKLM-x32\...\Retter in der Not) (Version: 1.0.0.0 - INTENIUM GmbH)
Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
RIFT (HKCU\...\RIFT) (Version:  - Trion Worlds, Inc.)
RIFT Beta (HKCU\...\RIFT-Beta) (Version:  - Trion Worlds, Inc.)
Risen (HKLM-x32\...\{155F4A0E-76ED-45A2-91FB-FF2A2133C31A}) (Version: 1.00.0000 - Deep Silver)
Risen 2 - Dark Waters (HKLM-x32\...\Steam App 40390) (Version:  - )
Risen Hotfix 1.01 (HKLM-x32\...\{EE91E474-9298-47B8-817F-8E0042408998}) (Version: 1.01 - Deep Silver)
Ritter Arthur (HKLM-x32\...\Ritter Arthur) (Version: 1.0.0.0 - INTENIUM GmbH)
Scansoft PDF Professional (x32 Version:  - ) Hidden
Serif PhotoPlus X2 (HKLM-x32\...\{FC935397-C56E-4EE3-B9BC-1F7F3EA6CE41}) (Version: 12.0.3.013 - Serif (Europe) Ltd)
Shaiya-DE (HKLM-x32\...\Shaiya-DE) (Version:  - )
Skype™ 6.16 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.16.105 - Skype Technologies S.A.)
Slingo Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
Soda PDF 2012 (HKLM-x32\...\{A5EB5C60-5303-46C2-ABC8-860D94A8A973}) (Version: 2.0.33.2835 - LULU Software)
South Park™: The Stick of Truth™ (HKLM-x32\...\Steam App 213670) (Version:  - Obsidian Entertainment)
Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation)
Suite Specific (x32 Version: 2.0.0 - Adobe Systems, Incorporated) Hidden
TeamSpeak 3 Client (HKCU\...\TeamSpeak 3 Client) (Version: 3.0.12 - TeamSpeak Systems GmbH)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.15 - TeamSpeak Systems GmbH)
TeamViewer 9 (HKLM-x32\...\TeamViewer 9) (Version: 9.0.28223 - TeamViewer)
Term Tutor (HKLM-x32\...\TermTutor) (Version: 1.9.0.8 - Term Tutor) <==== ATTENTION
The Whispered World (HKLM-x32\...\{82225685-1513-4975-B624-155C10F3EE16}) (Version: 1.01 - Deep Silver)
The Witcher (HKLM-x32\...\{F138762F-5A1F-4CF0-A5E1-1588EF6088A4}) (Version: 1.00.0000 - CD Projekt Red)
TileSetMaker (HKLM-x32\...\TileSetMaker) (Version:  - )
Titan Quest (HKLM-x32\...\{412B69AF-C352-4F6F-A318-B92B3CB9ACC6}) (Version: 1.00.0000 - Iron Lore)
Titan Quest Immortal Throne (HKLM-x32\...\{B5C5C17E-FEF6-4062-8151-A427AE8AF9D7}) (Version: 1.00.0000 - Iron Lore)
Torchlight (HKLM-x32\...\{4F64A46D-67F7-4497-AEA2-313D4305A5F6}) (Version: 1.0.0 - JoWooD)
Torchlight (HKLM-x32\...\Runic Games Torchlight) (Version: 1.0.69.23 - )
TQ Defiler.NET (HKLM-x32\...\{F4CB0C1E-A88F-46D7-AC9A-03B349A8D64F}) (Version: 1.3.7 - Soul's Software)
TQVault 2.11 (HKLM-x32\...\TQVault_is1) (Version:  - bman654)
Treiber-Studio 2013 (HKLM\...\{7660521A-062D-41F5-AA5E-CBA0E0511131}) (Version: 8.0.519 - Publish Data)
Unity Web Player (HKCU\...\UnityWebPlayer) (Version:  - Unity Technologies ApS)
USB Audio/Video Driver (HKLM-x32\...\InstallShield_{015C057F-D7B9-4D82-B266-FBCF0178F382}) (Version: 1.00.0000 - )
USB Audio/Video Driver (x32 Version: 1.00.0000 - ) Hidden
USB Network Driver (HKLM-x32\...\{66ED8E01-C915-41F5-B33E-C5C31F27B885}) (Version: 2007.07.3 - )
Venetica (HKLM-x32\...\Venetica_is1) (Version:  - dtp)
Video Thumbnails Maker by Scorp (remove only) (HKLM-x32\...\Video Thumbnails Maker) (Version:  - )
ViGlance (HKLM-x32\...\ViGlance) (Version: 1001194 - Lee-Soft.com)
Vindictus (HKLM-x32\...\Vindictus) (Version:  - )
Virtual Audio Cable 4.10 (HKLM\...\Virtual Audio Cable 4.10) (Version:  - )
Virtual Villagers - The Secret City (x32 Version: 2.2.0.95 - WildTangent) Hidden
Vista Start Menu 3.36 (HKLM-x32\...\Vista Start Menu_is1) (Version: 3.36 - OrdinarySoft)
VLC media player 2.0.5 (HKLM-x32\...\VLC media player) (Version: 2.0.5 - VideoLAN)
VP3 Codec Version 3.2.6.1 (HKLM-x32\...\VP3 Codec Version 3.2.6.1) (Version:  - )
Wedding Dash (x32 Version: 2.2.0.95 - WildTangent) Hidden
Winamp (HKLM-x32\...\Winamp) (Version: 5.666  - Nullsoft, Inc)
Windows Live Communications Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Family Safety (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Family Safety (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Messenger (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live MIME IFilter (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live UX Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Writer (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Writer Resources (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Mobile-Gerätecenter (HKLM\...\{626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B}) (Version: 6.1.6965.0 - Microsoft Corporation)
Winload Toolbar (HKLM-x32\...\Winload Toolbar) (Version: 6.8.9.0 - Winload)
XLink Kai Evolution 7 (HKLM-x32\...\{F90592EC-5E58-4EE6-A333-EC05ED57ACF4}) (Version: 7.1.7.7 - Team XLink)
Zinio Reader 4 (HKLM-x32\...\ZinioReader4.9310D8F796442B71068C511E15D70529A702D19D.1) (Version: 4.0.3184 - Zinio LLC)
Zinio Reader 4 (x32 Version: 4.0.3184 - Zinio LLC) Hidden
Zuma Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-2355925718-3238339638-3018866954-1007_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2355925718-3238339638-3018866954-1007_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2355925718-3238339638-3018866954-1007_Classes\CLSID\{b24abb2f-a278-4d8e-953c-24d702c5cd73}\InprocServer32 -> C:\Windows\system32\dfshim.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2355925718-3238339638-3018866954-1007_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2355925718-3238339638-3018866954-1007_Classes\CLSID\{D45F043D-F17F-4e8a-8435-70971D9FA46D}\InprocServer32 -> C:\Program Files\Blender Foundation\Blender\BlendThumb64.dll ()
CustomCLSID: HKU\S-1-5-21-2355925718-3238339638-3018866954-1007_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2355925718-3238339638-3018866954-1007_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Spieler.HeikeHarder-HP\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\FileSyncApi64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2355925718-3238339638-3018866954-1007_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2355925718-3238339638-3018866954-1007_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2355925718-3238339638-3018866954-1007_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2355925718-3238339638-3018866954-1007_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2355925718-3238339638-3018866954-1007_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2355925718-3238339638-3018866954-1007_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2355925718-3238339638-3018866954-1007_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2355925718-3238339638-3018866954-1007_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)

==================== Restore Points  =========================

23-09-2014 12:50:43 Removed LPT System Updater Service
23-09-2014 15:02:02 zoek.exe restore point
25-09-2014 01:00:33 Windows Update

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {01A8FBEE-F847-42AC-BA4F-00A1898D52EA} - System32\Tasks\{A1B14BEA-175E-4E8C-BEE2-5DDA0F36CE9D} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] ()
Task: {07C3EB77-BAD1-4CE8-A8AC-7F7B2FC0B156} - System32\Tasks\ServicePlan => C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [2010-09-27] ()
Task: {099D38D9-347D-4927-A8D6-717739F0B2D9} - System32\Tasks\{7F6DEF33-A300-41FA-A541-DBEC7DD61924} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] ()
Task: {0BB09DF1-229E-407A-B1B9-3AC39272E7CB} - System32\Tasks\{2FE07B1C-ECD4-4699-B785-2C1187027CF6} => C:\Program Files (x86)\TQVault\TQVault.exe [2007-03-18] ()
Task: {10767F79-86BB-4CBE-A00F-FFEEAF2BB163} - System32\Tasks\{66C961E8-5007-4324-903F-35DBDB476678} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] ()
Task: {14001BFE-1F98-4D9A-A750-6AE835038689} - System32\Tasks\{E285D0AD-6380-4D20-A7E3-50700C93908A} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] ()
Task: {1CE42E40-BEA3-40D6-B42D-C54E78338C19} - System32\Tasks\{AC8529D0-457C-4858-B446-99E3F2D44A5F} => C:\Program Files\HyperCam 2\HyCam2.exe
Task: {1D253A63-D540-4C66-B6C6-563742BC0F6E} - System32\Tasks\{9CA9B3AA-1AD3-4D26-BB36-A9DA9005BE34} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] ()
Task: {1EDA99EA-7455-4F84-A4AD-D1CC2C972E15} - System32\Tasks\{A67E58E4-AE88-49A7-85A6-7453A92EB2A9} => C:\Program Files (x86)\Drakensang Online\thinclient.exe
Task: {228BDEE1-C8C3-4C7F-BEE3-91A0B6F66C2F} - System32\Tasks\{67DA8AEA-6354-42CE-B407-E33C42A282D5} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] ()
Task: {23B7FBBE-A7D5-4A34-AD46-060CC765D92E} - System32\Tasks\{7FD504B3-841B-408D-8619-E88E190DA8D6} => C:\Program Files (x86)\Divinity II - Ego Draconis\Divinity_II_Patch_1.03_GERMAN.exe
Task: {245A5C11-D036-4CE3-A206-3D0087FF869D} - System32\Tasks\{85FDF290-C320-404D-84B8-6779231A31E0} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] ()
Task: {2521C72D-ACF7-4E0D-9F18-A11B57FE74CC} - System32\Tasks\{68E7106A-FDBD-4F0D-8550-DF8A459AFE69} => C:\Program Files (x86)\ZyDAS Technology Corporation\ZyDAS_802.11g_Utility\ZDWlan.exe
Task: {2553768B-2AE4-48DF-A613-C7A4A494EE9C} - System32\Tasks\{9CA5AF8D-3F0F-42C7-BD91-D915420ACFE3} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] ()
Task: {29C47B50-5DFF-438F-99CB-706D6E748C95} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-01-27] (Google Inc.)
Task: {2D359077-ABF9-455A-A2BD-11A8CA7A3FAE} - System32\Tasks\{C9EE2AD4-524E-414F-A50C-DA6B832B5BF8} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] ()
Task: {32D184EF-A82C-44B6-9E6E-23488E1E6F81} - System32\Tasks\SidebarExecute => C:\Program Files (x86)\Windows Sidebar\sidebar.exe [2010-11-20] (Microsoft Corporation)
Task: {336613B4-A4E0-4242-B841-6A7B83C0D918} - System32\Tasks\{472CECA2-D1CA-452A-A9CD-2E5F66E02CBF} => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2014-09-04] (LogMeIn Inc.)
Task: {3DF64CDE-D27B-4C6D-BDBE-B77C15AE6721} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-2355925718-3238339638-3018866954-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2012-04-30] (RealNetworks, Inc.)
Task: {42D95011-430F-42F0-A494-B45A84D8E644} - System32\Tasks\{897D3095-7A62-409F-BEF5-A770BF0CF4DE} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] ()
Task: {49C78CDC-889A-45FC-B75C-6600F9966CAB} - System32\Tasks\{79015419-0F92-45C0-8EE4-4E179F736190} => C:\Program Files (x86)\ZyDAS Technology Corporation\ZyDAS_802.11g_Utility\ZDWlan.exe
Task: {50806D0A-2107-49B6-A98D-57965254570C} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21] (Adobe Systems Incorporated)
Task: {55C47305-75B5-48A0-908E-0D9AF695E449} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Tuneup => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2010-09-18] (Hewlett-Packard Company)
Task: {56506F83-9B43-4450-B403-9696BE10DBD9} - System32\Tasks\{0D8E4BFB-4760-4899-941A-A04A53FD3A39} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] ()
Task: {58C2BEB1-2B7A-4C4C-B1A1-AC302CE23429} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-01-27] (Google Inc.)
Task: {5A2C67D9-88D2-4AEC-B074-A4829C40D7C8} - System32\Tasks\{36C8FF93-8BD8-4E30-A5D6-ED25FFEC2812} => C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe [2014-08-10] (TeamSpeak Systems GmbH)
Task: {5D92F5D7-5F78-4E3B-AF91-2B41FEE2270B} - System32\Tasks\{4973F1FB-630E-40E2-9C70-88009C1BB43E} => C:\Program Files (x86)\Monte Cristo\Silverfall - Wächter der Elemente - Demo\SilverfallDemo.exe
Task: {5DF0F1DF-816A-4B0D-8969-D28DE8BE9CD6} - System32\Tasks\{1E96FC8D-8C2B-460C-9F54-28CBC2884878} => C:\Program Files (x86)\CyberLink\PowerDirector\PDR.exe
Task: {71B4D24B-817F-41DE-BE2E-C87686063F41} - System32\Tasks\{500EE935-E46A-4AA0-AD58-8D8A54253987} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] ()
Task: {74FB1AD8-296D-4FA7-B1F0-D01E746BCD72} - System32\Tasks\Adobe Reader and Acrobat Manager => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21] (Adobe Systems Incorporated)
Task: {7537B895-1433-4A0A-B8F3-77C5129BD106} - System32\Tasks\{CC601210-52A7-4E2E-8BE7-E2E5643F0396} => C:\Program Files\HyperCam 2\HyCam2.exe
Task: {8A6FC5E8-EF62-41F8-A8A5-3E3757027530} - System32\Tasks\{C58DA0D1-31F7-475E-BE33-B1F7592A93B5} => C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe [2014-08-10] (TeamSpeak Systems GmbH)
Task: {8AE13740-957F-4B2B-9781-03E7F8D6C839} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2014-09-21] (Overwolf LTD)
Task: {953B319A-52DE-4460-B15C-45ED8C6E5A27} - System32\Tasks\{7BDD7497-A7C0-4293-AC7A-CA49768B3715} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] ()
Task: {9A3001AE-0F9D-453E-BAFE-78FE333C8D39} - System32\Tasks\RMCreator => C:\Program Files (x86)\Hewlett-Packard\Recovery\Reminder.exe [2010-08-20] (CyberLink)
Task: {9EE58FF6-A4F8-4493-89EB-61F5B8006377} - System32\Tasks\{83F7BE8B-3672-4C01-806C-B8D7BADBA939} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] ()
Task: {9F7A8A39-9A36-4B20-989E-CFCE33B1E8F2} - System32\Tasks\{EDA016A9-6648-481B-BB50-DF45ED33DA31} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] ()
Task: {9F7CA800-2D8A-4033-A94A-9FC9B217E7A7} - System32\Tasks\{412675ED-C224-4FF8-8571-5445803EC050} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] ()
Task: {AB2859EC-7065-4D93-AE2D-344A32FF0098} - System32\Tasks\{088F98D3-4398-4748-B038-7915992C069D} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] ()
Task: {AC239D12-5FF9-4F16-8A55-EBEBEDA89C6D} - System32\Tasks\{AB9E4B60-D7D4-4489-A561-614D85309523} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] ()
Task: {ADC8DFD5-05B7-48C8-A7CC-B236983A1808} - System32\Tasks\{F779D376-AED6-4FEE-B8E4-143428962663} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] ()
Task: {B3279C17-9920-4EFF-98BD-52652976909F} - System32\Tasks\{8DB3F366-A097-4A5D-A000-0C16DFFE209E} => C:\Program Files (x86)\JoWooD\SpellForce Demo\SpellForced.exe
Task: {B63FF6D1-52A1-44F6-8079-FC59CAC150F7} - System32\Tasks\{19AA9B0E-513F-411F-8A36-5A48E0FDB28B} => C:\Program Files (x86)\ZyDAS Technology Corporation\ZyDAS_802.11g_Utility\ZDWlan.exe
Task: {BA15EECA-B7C6-4088-9C2A-6DD3302112CA} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup
Task: {BE152DD4-9412-404F-975A-AA8027D5757E} - System32\Tasks\{C14076FC-5996-456C-B87D-9D686938FE02} => C:\Program Files (x86)\Datel\WiFi MAX\WM.EXE
Task: {BF2F502A-C412-4289-B7B9-25BBA3E3FE9F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2010-09-18] (Hewlett-Packard Company)
Task: {C62C9580-EE55-4935-93AC-F8A8A80A7E06} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-2355925718-3238339638-3018866954-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2012-04-30] (RealNetworks, Inc.)
Task: {C9E22DA0-7805-4B28-B265-7F0002E168C2} - System32\Tasks\{FAE212E9-0CA9-4EF9-881B-FB56B5519A36} => C:\Program Files (x86)\TQVault\TQVault.exe [2007-03-18] ()
Task: {CB364AAC-8A72-4DD4-B732-AA4FB27DADC6} - System32\Tasks\{FD932190-4DCE-4EFB-8275-CCB6841E084C} => C:\Program Files (x86)\CyberLink\PowerDirector\PDR.exe
Task: {CD7FF6C1-E9D1-4FA5-9131-A6B5D93F3C3C} - System32\Tasks\{B26BBC9F-AC7C-4953-9FA7-CA011047A7F0} => C:\Program Files (x86)\CyberLink\PowerDirector\PDR.exe
Task: {D0E886EE-2AB7-4E36-BEDA-B15643EBDA63} - System32\Tasks\{7A4735AA-26B5-4F00-A23A-E669986102AD} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] ()
Task: {DC4A8E46-4BBC-43C4-B86A-962F9763E636} - System32\Tasks\{7DD8442C-43A1-46AA-8D56-18DE6AC9AA25} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] ()
Task: {DC8D724C-1FC6-4E88-BFA8-431DBC63E82E} - System32\Tasks\{F003A125-9256-4022-8C48-DEA75D2EC1F8} => C:\Program Files (x86)\ZyDAS Technology Corporation\ZyDAS_802.11g_Utility\ZDWlan.exe
Task: {EB112395-5E92-4203-9283-9439B69C0623} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-09-13] (Adobe Systems Incorporated)
Task: {F0265FC3-20B1-4069-B9C3-B431DE2697DA} - System32\Tasks\{17F06A71-0601-42A9-B5DB-F57D4063A6DE} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] ()
Task: {FDB3A3A8-567C-4150-A17A-4444C631180E} - System32\Tasks\{13F537D5-0AB6-4A55-9307-8A4EF1088C32} => C:\Program Files (x86)\Restricted Area\Starter.exe [2007-11-22] ()
Task: {FF4BB84B-A6E2-468C-98C1-4C751C1701FD} - System32\Tasks\Opera scheduled Autoupdate 1387178156 => C:\Program Files (x86)\Opera\launcher.exe [2014-09-12] (Opera Software)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) =============

2011-04-07 23:19 - 2012-12-29 10:40 - 00087480 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2013-04-05 20:06 - 2005-03-12 00:07 - 00087040 _____ () C:\Windows\System32\pdfcmnnt.dll
2011-09-22 15:16 - 2011-08-24 03:13 - 00083240 _____ () C:\Program Files (x86)\CyberLink\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe
2012-06-04 12:03 - 2012-02-15 17:05 - 00014848 _____ () C:\Program Files\COMPUTERBILD-Cloud\Data\Tools\mounter.exe
2014-03-19 19:34 - 2014-03-19 19:34 - 00175424 _____ () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\M6 Processing\vm6.exe
2012-04-20 16:30 - 2010-08-19 11:43 - 00247152 ____N () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
2014-09-17 10:31 - 2014-09-17 10:31 - 01372280 _____ () C:\Program Files (x86)\Opera\24.0.1558.61\opera_crashreporter.exe
2014-03-14 15:15 - 2014-03-14 15:15 - 00173568 _____ () C:\Program Files\TeamSpeak 3 Client\quazip.dll
2014-03-14 15:15 - 2014-03-14 15:15 - 01080832 _____ () C:\Program Files\TeamSpeak 3 Client\platforms\qwindows.dll
2014-03-14 15:15 - 2014-03-14 15:15 - 00833024 _____ () C:\Program Files\TeamSpeak 3 Client\sqldrivers\qsqlite.dll
2013-08-06 09:19 - 2014-08-10 13:36 - 00102344 _____ () C:\Program Files\TeamSpeak 3 Client\soundbackends\directsound_win64.dll
2013-08-06 09:19 - 2014-08-10 13:36 - 00108488 _____ () C:\Program Files\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win64.dll
2014-03-14 15:15 - 2014-03-14 15:15 - 00030208 _____ () C:\Program Files\TeamSpeak 3 Client\imageformats\qgif.dll
2014-03-14 15:15 - 2014-03-14 15:15 - 00233984 _____ () C:\Program Files\TeamSpeak 3 Client\imageformats\qjpeg.dll
2013-08-06 09:19 - 2014-08-10 13:36 - 00563656 _____ () C:\Program Files\TeamSpeak 3 Client\plugins\clientquery_plugin.dll
2013-09-09 15:49 - 2014-08-10 13:36 - 00579016 _____ () C:\Program Files\TeamSpeak 3 Client\plugins\teamspeak_control_plugin.dll
2014-03-14 15:15 - 2014-03-14 15:15 - 00159232 _____ () C:\Program Files\TeamSpeak 3 Client\accessible\qtaccessiblewidgets.dll
2011-09-22 15:16 - 2011-08-26 06:57 - 00260096 _____ () C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\sqlite3.dll
2014-09-25 15:58 - 2014-08-27 15:00 - 00052472 _____ () C:\Users\SPIELE~1.HEI\AppData\Local\Temp\avgnt.exe\Avira.OE.ExtApi.dll
2014-08-27 15:00 - 2014-08-27 15:00 - 00139056 _____ () C:\Program Files (x86)\Avira\My Avira\Avira.OE.NativeCore.dll
2014-09-25 15:59 - 2014-09-25 15:59 - 00043008 _____ () c:\users\spiele~1.hei\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmppu4jdx.dll
2013-08-23 21:01 - 2013-08-23 21:01 - 25100288 _____ () C:\Users\Spieler.HeikeHarder-HP\AppData\Roaming\Dropbox\bin\libcef.dll
2014-08-27 15:00 - 2014-08-27 15:00 - 00066864 _____ () C:\Program Files (x86)\Avira\My Avira\Avira.OE.AvConnectorNative.dll
2014-09-11 03:57 - 2014-09-11 03:57 - 00170496 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\03d9e855a8969bf00dd1bfeafa5d055e\IsdiInterop.ni.dll
2011-01-07 21:20 - 2010-03-04 06:08 - 00058880 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll
2014-09-17 10:31 - 2014-09-17 10:31 - 01378936 _____ () C:\Program Files (x86)\Opera\24.0.1558.61\libglesv2.dll
2014-09-17 10:31 - 2014-09-17 10:31 - 00182392 _____ () C:\Program Files (x86)\Opera\24.0.1558.61\libegl.dll
2014-09-17 10:31 - 2014-09-17 10:31 - 00974968 _____ () C:\Program Files (x86)\Opera\24.0.1558.61\ffmpegsumo.dll
2014-09-13 20:18 - 2014-09-13 20:18 - 16825520 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"

==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: BrStsMon00 => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN
MSCONFIG\startupreg: ControlCenter4 => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe /autorun
MSCONFIG\startupreg: IndexSearch => "C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe"
MSCONFIG\startupreg: PaperPort PTD => "C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe"
MSCONFIG\startupreg: PDF5 Registry Controller => C:\Program Files (x86)\Nuance\PDF Viewer Plus\RegistryController.exe
MSCONFIG\startupreg: PDFHook => C:\Program Files (x86)\Nuance\PDF Viewer Plus\pdfpro5hook.exe
MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
MSCONFIG\startupreg: SmartMenu => C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe /background
MSCONFIG\startupreg: TkBellExe => "c:\program files (x86)\real\realplayer\Update\realsched.exe" -osboot

========================= Accounts: ==========================

Administrator (S-1-5-21-2355925718-3238339638-3018866954-500 - Disabled - Status: Degraded)
Gast (S-1-5-21-2355925718-3238339638-3018866954-501 - Disabled - Status: Degraded) => C:\Users\Gast
Heike Harder (S-1-5-21-2355925718-3238339638-3018866954-1001 - Enabled - Status: OK) => C:\Users\Heike Harder
HomeGroupUser$ (S-1-5-21-2355925718-3238339638-3018866954-1013 - Enabled - Status: OK)
Spieler (S-1-5-21-2355925718-3238339638-3018866954-1007 - Enabled - Status: OK) => C:\Users\Spieler.HeikeHarder-HP
UpdatusUser (S-1-5-21-2355925718-3238339638-3018866954-1012 - Enabled - Status: OK) => C:\Users\UpdatusUser

==================== Faulty Device Manager Devices =============

Name: Teredo Tunneling Pseudo-Interface
Description: Microsoft-Teredo-Tunneling-Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (09/25/2014 03:58:23 PM) (Source: Adobe Version Cue CS2) (EventID: 3) (User: )
Description: VersionCueCS2Tray.exe: openVCService - OpenService() failed <1060>

Error: (09/25/2014 03:54:16 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (09/25/2014 03:30:47 PM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Nur zur Information.
(Patch task for {90140011-0066-0407-0000-0000000FF1CE}): DownloadLatest Failed:

Error: (09/25/2014 03:18:58 PM) (Source: Adobe Version Cue CS2) (EventID: 3) (User: )
Description: VersionCueCS2Tray.exe: openVCService - OpenService() failed <1060>

Error: (09/25/2014 08:20:40 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 2013

Error: (09/25/2014 08:20:40 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 2013

Error: (09/25/2014 08:20:40 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (09/25/2014 08:20:39 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1014

Error: (09/25/2014 08:20:39 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 1014

Error: (09/25/2014 08:20:39 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second


System errors:
=============
Error: (09/25/2014 07:21:04 PM) (Source: ipnathlp) (EventID: 31004) (User: )
Description: 0

Error: (09/25/2014 04:22:43 PM) (Source: ipnathlp) (EventID: 30013) (User: )
Description: 192.168.2.100192.168.137.0255.255.255.0

Error: (09/25/2014 04:02:35 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1069

Error: (09/25/2014 04:02:35 PM) (Source: Service Control Manager) (EventID: 7038) (User: )
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden: 
%%1330

Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC).

Error: (09/25/2014 04:00:39 PM) (Source: ipnathlp) (EventID: 30013) (User: )
Description: 192.168.2.100192.168.137.0255.255.255.0

Error: (09/25/2014 04:00:39 PM) (Source: ipnathlp) (EventID: 1233) (User: )
Description: 

Error: (09/25/2014 03:59:02 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Term Tutor Client Service" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%2

Error: (09/25/2014 03:51:25 PM) (Source: ipnathlp) (EventID: 30013) (User: )
Description: 192.168.2.100192.168.137.0255.255.255.0

Error: (09/25/2014 03:51:17 PM) (Source: ipnathlp) (EventID: 31004) (User: )
Description: 0

Error: (09/25/2014 03:51:15 PM) (Source: ipnathlp) (EventID: 30013) (User: )
Description: 192.168.2.100192.168.137.0255.255.255.0


Microsoft Office Sessions:
=========================
Error: (09/25/2014 03:58:23 PM) (Source: Adobe Version Cue CS2) (EventID: 3) (User: )
Description: VersionCueCS2Tray.exeopenVCService - OpenService() failed <1060>

Error: (09/25/2014 03:54:16 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\Spieler.HeikeHarder-HP\Downloads\esetsmartinstaller_deu.exe

Error: (09/25/2014 03:30:47 PM) (Source: CVHSVC) (EventID: 100) (User: )
Description: (Patch task for {90140011-0066-0407-0000-0000000FF1CE}): DownloadLatest Failed:

Error: (09/25/2014 03:18:58 PM) (Source: Adobe Version Cue CS2) (EventID: 3) (User: )
Description: VersionCueCS2Tray.exeopenVCService - OpenService() failed <1060>

Error: (09/25/2014 08:20:40 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 2013

Error: (09/25/2014 08:20:40 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 2013

Error: (09/25/2014 08:20:40 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (09/25/2014 08:20:39 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1014

Error: (09/25/2014 08:20:39 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 1014

Error: (09/25/2014 08:20:39 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second


CodeIntegrity Errors:
===================================
  Date: 2014-05-02 13:07:32.885
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\vrtaucbl.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2014-05-02 13:07:32.634
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\vrtaucbl.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i5 CPU 650 @ 3.20GHz
Percentage of memory in use: 33%
Total physical RAM: 8055.08 MB
Available physical RAM: 5334.19 MB
Total Pagefile: 16108.34 MB
Available Pagefile: 12657.23 MB
Total Virtual: 8192 MB
Available Virtual: 8191.84 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:1383.24 GB) (Free:412.61 GB) NTFS
Drive d: (HP_RECOVERY) (Fixed) (Total:13.92 GB) (Free:1.72 GB) NTFS ==>[System with boot components (obtained from reading drive)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 1397.3 GB) (Disk ID: B3DBC71D)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=1383.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=13.9 GB) - (Type=07 NTFS)

==================== End Of Log ============================
         

Alt 25.09.2014, 22:13   #20
deeprybka
/// TB-Ausbilder
/// Anleitungs-Guru
 
Opera Problem. Unsichtbare Internetseite mit nervender Werbung - Standard

Opera Problem. Unsichtbare Internetseite mit nervender Werbung



Noch Probleme?

__________________
Gruß
deeprybka

Lob, Kritik, Wünsche?

Spende fürs trojaner-board?
_______________________________________________
„Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer

Alt 26.09.2014, 09:50   #21
Blitzi
 
Opera Problem. Unsichtbare Internetseite mit nervender Werbung - Standard

Opera Problem. Unsichtbare Internetseite mit nervender Werbung



Nein ich bekomme keine Attacken davon mehr

Vielen Herzlichen Dank das du mir geholfen hast

Sollte ich mal wieder Probleme bekommen, werde ich mich melden.

Super Job gemacht und großartige Hilfe

Blitzi

Alt 26.09.2014, 19:00   #22
deeprybka
/// TB-Ausbilder
/// Anleitungs-Guru
 
Opera Problem. Unsichtbare Internetseite mit nervender Werbung - Standard

Opera Problem. Unsichtbare Internetseite mit nervender Werbung



Hi,

Code:
ATTFilter
Term Tutor
Java(TM) 6 Update 23
         
Das bitte noch deinstallieren.

Code:
ATTFilter
Adobe Flash Player 11 ActiveX
         
Diese Version ist auch veraltet. Schau mal auf der Update-Seite nach...

Flash-Link mit dem Internet Explorer aufrufen. Flash aktualisieren. Optionale Angebote ablehnen.


Cleanup:

Alle Logs gepostet? Ja! Dann lade Dir bitte DelFix herunter.
  • Schließe alle offenen Programme.
  • Starte die delfix.exe mit einem Doppelklick.
  • Setze vor jede Funktion ein Häkchen.
  • Klicke auf Start.

Hinweis: DelFix entfernt u.a. alle verwendeten Programme, die Quarantäne unserer Scanner, den Java-Cache und löscht sich abschließend selbst.
Starte Deinen Rechner abschließend neu. Sollten jetzt noch Programme aus unserer Bereinigung übrig sein, kannst Du diese bedenkenlos löschen.




>>clean<<
Wir haben es geschafft!
Die Logs sehen für mich im Moment sauber aus.

Wenn Du möchtest, kannst Du hier sagen, ob Du mit mir und meiner Hilfe zufrieden warst...und/oder das Forum mit einer kleinen Spende unterstützen.
Es bleibt mir nur noch, Dir unbeschwertes und sicheres Surfen zu wünschen und dass wir uns hier so bald nicht wiedersehen.

Wie kann ich mich in Zukunft besser schützen?

Tipps, Dos & Don'ts

Updates & Software
Sicherheitslücken in deren alten Versionen werden dazu ausgenutzt, um beim einfachen Besuch einer manipulierten Website per "Drive-by" Malware zu installieren.

Ich empfehle z.B. die Verwendung von Mozilla Firefox statt des Internet Explorers. Zudem lassen sich mit dem Firefox auch PDF-Dokumente öffnen.



Firewall, Antivirus & Co.
  • Aktiviere eine Firewall. Die in Windows integrierte genügt im Normalfall völlig.
  • Verwende ein Antivirusprogramm mit Echtzeitscanner und stets aktueller Signaturendatenbank. (Updatefunktion aktivieren!)
    Meine Empfehlungen:
    Kaspersky Antivirus
    Emsisoft Anti-Malware
    avast Free Antivirus
  • Zusätzlich kannst Du Deinen PC regelmäßig mit Malwarebytes Anti-Malware und ESET scannen.

    Optional:
  • NoScript verhindert das Ausführen von aktiven Inhalten (Java, JavaScript, Flash,...) für sämtliche Websites. Man kann aber nach dem Prinzip einer Whitelist festlegen, auf welchen Seiten Scripts erlaubt werden sollen.


Cracks, Downloads & Co.


Neben unbemerkten Drive-by Installationen wird Malware aber auch oft mehr oder weniger aktiv vom Benutzer selbst installiert.
Der Besuch dubioser Websites kann bereits Risiken bergen. Auch wenn der Virenscanner im Moment darin keine Bedrohung erkennt, muss das nichts bedeuten.
Illegale Cracks, Keygens und Serials sind ein ausgesprochen einfacher und beliebter Weg um Malware zu verbreiten.
Bei Dateien aus Peer-to-Peer- und Filesharingprogrammen oder von Filehostern kann man nie sicher sein, ob auch wirklich drin ist, was drauf steht. (Trojanisches Pferd^^)
  • Auch virustotal.com ist Dein Freund! Lade dubiose oder unbekannte Dateien hoch, bevor Du diese startest oder installierst.

Oft wird auch versucht, den Benutzer mit mehr oder weniger trickreichen Methoden zu verleiten, eine für ihn verhängnisvolle Handlung selbst auszuführen (Überbegriff Social Engineering).
  • Surfe daher mit Vorsicht und klicke mit Verstand.
  • Sei skeptisch bei unerwarteten E-Mails, insbesondere wenn sie Anhänge enthalten. Auch wenn sie auf den ersten Blick authentisch wirken, persönliche Daten von Dir enthalten oder vermeintlich von einem bekannten Absender stammen: Lieber nochmals in Ruhe überdenken oder nachfragen, anstatt einfach mal Links oder ausführbare Anhänge öffnen oder irgendwo Deine Daten eingeben.
  • Auch in sozialen Netzwerken oder über Instant Messaging Systeme können schädliche Links oder Dateien die Runde machen. Erhältst Du von einem Deiner Freunde eine Nachricht, die merkwürdig ist oder so sensationell interessant, dass man einfach draufklicken muss, dann hat bei ihm/ihr wahrscheinlich Neugier über Verstand gesiegt und Du solltest nicht denselben Fehler machen.

Nervige Adware (Werbung) und unnötige Toolbars werden auch meist durch den Benutzer selbst mitinstalliert.
  • Lade Software in erster Priorität immer direkt vom Hersteller herunter. Viele Softwareportale (z.B. Softonic) packen noch unnützes Zeug mit in die Installation. Alternativ dazu wähle ein sauberes Portal wie Filepony oder heise.
  • Wähle beim Installieren von Software immer die benutzerdefinierte Option und entferne den Haken bei allen optional angebotenen Toolbars oder sonstigen, fürs Programm, irrelevanten Ergänzungen.
  • Um Adware wieder los zu werden, empfiehlt sich zunächst die Deinstallation sowie die anschließende Resteentfernung mit Adwarecleaner .


Abschließend noch ein paar grundsätzliche Bemerkungen:
  • Erstelle regelmäßig Backups Deiner wichtigen Dateien oder des Systems.
  • Der Nutzen von Registry-Cleanern, Optimizern usw. zur Performancesteigerung ist umstritten. Ich empfehle deshalb, die Finger von der Registry zu lassen und lieber die windowseigene Datenträgerbereinigung zu verwenden.
__________________
Gruß
deeprybka

Lob, Kritik, Wünsche?

Spende fürs trojaner-board?
_______________________________________________
„Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer

Antwort

Themen zu Opera Problem. Unsichtbare Internetseite mit nervender Werbung
awesomehp, awesomehp entfernen, beenden, fehlercode 0x40000015, hintergrund, internet, internetseite, mobogenie, mobogenie entfernen, plötzlich, schließe, testversion, this device cannot start. (code10), unsichtbare, werbeblocker, win32/adware.bettersurf.g, win32/clientconnect.a, win32/conduit.searchprotect.i, win32/sweetim.f, win32/sweetim.l, win32/toolbar.babylon.h, win32/toolbar.conduit, win32/toolbar.conduit.b, win64/adware.vitruvian.b, win64/systweak.a



Ähnliche Themen: Opera Problem. Unsichtbare Internetseite mit nervender Werbung


  1. JollyWallet, Coupon Werbung und unsichtbare Links in Chrome
    Plagegeister aller Art und deren Bekämpfung - 05.08.2015 (19)
  2. Laptop wird immer langsamer, Werbung in Opera
    Plagegeister aller Art und deren Bekämpfung - 21.04.2015 (13)
  3. Werbung auf jeder Internetseite
    Plagegeister aller Art und deren Bekämpfung - 15.04.2015 (11)
  4. Mozilla firefox: viele Popups (Werbung, updates), related search sites bei jeder neu geöffneten Internetseite
    Log-Analyse und Auswertung - 16.01.2014 (10)
  5. tonproblem habe "unsichtbare ton werbung" seid 3tagen
    Plagegeister aller Art und deren Bekämpfung - 18.11.2013 (27)
  6. Plötzlich Werbung auf fast jeder Internetseite, z.B. bei google
    Log-Analyse und Auswertung - 12.07.2013 (19)
  7. Browser Problem (IE, Opera, Firefox)
    Log-Analyse und Auswertung - 08.03.2012 (6)
  8. Opera öffnet andere Seiten als aufgerufen / Werbung aus dem Nichts
    Log-Analyse und Auswertung - 08.02.2012 (31)
  9. HiJack-Problem... die falsche Internetseite öffnet sich
    Log-Analyse und Auswertung - 07.07.2008 (7)
  10. Nervender MSN Virus ...HILFE....
    Plagegeister aller Art und deren Bekämpfung - 31.03.2008 (2)
  11. nervender Trojaner und Dropper
    Log-Analyse und Auswertung - 05.05.2005 (1)
  12. nervender trojaner :(
    Plagegeister aller Art und deren Bekämpfung - 04.01.2005 (10)
  13. HILFE!! nervender Trojaner?!
    Log-Analyse und Auswertung - 01.12.2004 (2)
  14. nervender trojaner bagle al
    Plagegeister aller Art und deren Bekämpfung - 08.11.2004 (3)
  15. Nervender Trojaner!
    Plagegeister aller Art und deren Bekämpfung - 17.09.2004 (9)
  16. problem mit zonealarm & Opera
    Antiviren-, Firewall- und andere Schutzprogramme - 10.08.2003 (3)
  17. Opera/Java-Problem
    Alles rund um Windows - 26.03.2003 (9)

Zum Thema Opera Problem. Unsichtbare Internetseite mit nervender Werbung - Code: Alles auswählen Aufklappen ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 25-09-2014 Ran by Spieler at 2014-09-25 15:55:45 Run:1 Running from C:\Users\Spieler.HeikeHarder-HP\Downloads Loaded Profile: - Opera Problem. Unsichtbare Internetseite mit nervender Werbung...
Archiv
Du betrachtest: Opera Problem. Unsichtbare Internetseite mit nervender Werbung auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.