Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Avast mit 2 Funden

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 05.10.2014, 11:59   #1
betti_W
 
Avast mit 2 Funden - Standard

Avast mit 2 Funden



Hallo,
ich habe gestern einen kompletten Scan mit Avast durchgeführt der 2 infizierte Dateien gefunden hat. Ich habe die Dateien in den Container verschoben.

Ich benutze einen Windows 7 Laptop, 32-Bit.

Ich kann die Log Datei bei Avast leider nicht finden.

Grüße, Bettina

Alt 05.10.2014, 12:13   #2
schrauber
/// the machine
/// TB-Ausbilder
 

Avast mit 2 Funden - Standard

Avast mit 2 Funden



hi,

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)

__________________

__________________

Alt 05.10.2014, 12:25   #3
betti_W
 
Avast mit 2 Funden - Standard

Avast mit 2 Funden



Hallo schrauber danke für die schnelle Antwort!

Hier die Datein:


FRST Logfile:

FRST Logfile:

FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 04-10-2014 01
Ran by max10 (administrator) on LAPTOP2 on 05-10-2014 12:19:53
Running from C:\Users\max10\Downloads
Loaded Profiles: max10 & _ocster_backup_ (Available profiles: max10 & _ocster_backup_)
Platform: Microsoft Windows 7 Home Premium  Service Pack 1 (X86) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(REINER SCT) C:\Windows\System32\cjpcsc.exe
(MAGIX AG) C:\Program Files\Common Files\MAGIX Services\Database\bin\FABS.exe
(Teruten) C:\Windows\System32\FsUsbExService.Exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nero AG) C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
() C:\Program Files\Ocster Backup\bin\backupService-ox.exe
(Protexis Inc.) C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
(Secunia) C:\Program Files\Secunia\PSI\psia.exe
(TuneUp Software) C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(X10) C:\Program Files\Common Files\X10\Common\X10nets.exe
() C:\Program Files\Ocster Backup\bin\oxHelper.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(TuneUp Software) C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesApp32.exe
(Wistron) C:\Program Files\Launch Manager\HotkeyApp.exe
(Wistron Corp.) C:\Program Files\Launch Manager\OSD.exe
(Wistron Corp.) C:\Program Files\Launch Manager\WButton.exe
(Wistron Corp.) C:\Program Files\Launch Manager\WisLMSvc.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVBg.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
() C:\Program Files\PC-Zeit\trap.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
() C:\Program Files\Ocster Backup\bin\backupClient-ox.exe
(Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
() C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
(Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
() C:\Program Files\Ocster Backup\bin\oxHelper.exe
(1&1 Internet AG) C:\Program Files\GMX\GMX SMS-Manager\SMSMngr.exe
(Deutsche Telekom AG, T-Com) C:\Program Files\T-Online\T-Online_Software_6\Info-Cockpit\InfoCockpit.exe
(OpenLimit SignCubes AG) C:\Program Files\AusweisApp\siqBootLoader.exe
(Corel, Inc.) C:\Program Files\Common Files\Corel\Corel PhotoDownloader\Corel Photo Downloader.exe
(Secunia) C:\Program Files\Secunia\PSI\psi_tray.exe
(Deutsche Telekom AG) C:\Program Files\Telekom\Mediencenter\MediencenterSoftware.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE
(Nero AG) C:\Program Files\Nero\Update\NASvc.exe
(Deutsche Telekom AG) C:\Program Files\T-Online\T-Online_Software_6\Basis-Software\Basis2\kernel.exe
(Deutsche Telekom AG) C:\Program Files\T-Online\T-Online_Software_6\Basis-Software\Basis2\sc_watch.exe
(Deutsche Telekom AG) C:\Program Files\T-Online\T-Online_Software_6\Basis-Software\Basis2\profilemgr.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\msiexec.exe
(Corel) C:\Program Files\Common Files\Corel\Standby\Standby.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [HotkeyApp] => C:\Program Files\Launch Manager\HotkeyApp.exe [200704 2009-12-14] (Wistron)
HKLM\...\Run: [LMgrVolOSD] => C:\Program Files\Launch Manager\OSD.exe [348960 2009-12-11] (Wistron Corp.)
HKLM\...\Run: [Wbutton] => C:\Program Files\Launch Manager\Wbutton.exe [413696 2010-01-13] (Wistron Corp.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1594664 2009-12-11] (Synaptics Incorporated)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [8522272 2010-03-02] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RtHDVBg.exe [678432 2010-03-02] (Realtek Semiconductor)
HKLM\...\Run: [pczeit] => C:\Program Files\PC-Zeit\trap.exe [32768 2001-03-21] ()
HKLM\...\Run: [Standby] => C:\Program Files\Common Files\Corel\Standby\Standby.exe [105632 2010-07-26] (Corel)
HKLM\...\Run: [Ocster Backup] => C:\Program Files\Ocster Backup\bin\backupClient-ox.exe [310040 2011-08-08] ()
HKLM\...\Run: [KiesTrayAgent] => C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [311616 2014-07-25] (Samsung Electronics Co., Ltd.)
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [332288 2010-12-17] ()
HKLM\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [41056 2013-05-08] (Adobe Systems Incorporated)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-10-04] (AVAST Software)
HKU\S-1-5-19\...\Run: [InfoCockpit] => C:\Program Files\T-Online\T-Online_Software_6\Info-Cockpit\IC_START.EXE [268800 2009-11-16] (Deutsche Telekom AG, T-Com)
HKU\S-1-5-20\...\Run: [InfoCockpit] => C:\Program Files\T-Online\T-Online_Software_6\Info-Cockpit\IC_START.EXE [268800 2009-11-16] (Deutsche Telekom AG, T-Com)
HKU\S-1-5-21-3927600971-491131981-4261967890-1000\...\Run: [InfoCockpit] => C:\Program Files\T-Online\T-Online_Software_6\Info-Cockpit\IC_START.EXE [268800 2009-11-16] (Deutsche Telekom AG, T-Com)
HKU\S-1-5-21-3927600971-491131981-4261967890-1000\...\Run: [GMX SMS-Manager] => C:\Program Files\GMX\GMX SMS-Manager\SMSMngr.exe [3539968 2007-07-19] (1&1 Internet AG)
HKU\S-1-5-21-3927600971-491131981-4261967890-1000\...\Run: [swg] => C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2010-10-31] (Google Inc.)
HKU\S-1-5-21-3927600971-491131981-4261967890-1000\...\Run: [AusweisApp] => C:\Program Files\AusweisApp\siqBootLoader.exe [2514368 2012-01-11] (OpenLimit SignCubes AG)
HKU\S-1-5-21-3927600971-491131981-4261967890-1000\...\Run: [] => C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [845120 2014-07-25] (Samsung)
HKU\S-1-5-21-3927600971-491131981-4261967890-1000\...\Run: [Corel Photo Downloader] => C:\Program Files\Common Files\Corel\Corel PhotoDownloader\Corel Photo Downloader.exe [526992 2010-07-28] (Corel, Inc.)
HKU\S-1-5-21-3927600971-491131981-4261967890-1000\...\MountPoints2: F - F:\AutoRun.exe
HKU\S-1-5-21-3927600971-491131981-4261967890-1000\...\MountPoints2: {319bc7b7-2ed2-11e4-a09c-00262df7622c} - F:\AutoRun.exe
HKU\S-1-5-21-3927600971-491131981-4261967890-1000\...\MountPoints2: {319bc7bb-2ed2-11e4-a09c-00262df7622c} - F:\AutoRun.exe
HKU\S-1-5-21-3927600971-491131981-4261967890-1000\...\MountPoints2: {895a6c54-5624-11df-8daf-00262df7622c} - F:\AutoRun.exe
HKU\S-1-5-21-3927600971-491131981-4261967890-1000\...\MountPoints2: {895a6c79-5624-11df-8daf-00262df7622c} - G:\AutoRun.exe
HKU\S-1-5-21-3927600971-491131981-4261967890-1000\...\MountPoints2: {f899e4a2-92a6-11df-b7ad-00262df7622c} - F:\AutoRun.exe
HKU\S-1-5-21-3927600971-491131981-4261967890-1000\...\MountPoints2: {f899e4a5-92a6-11df-b7ad-00262df7622c} - F:\AutoRun.exe
HKU\S-1-5-21-3927600971-491131981-4261967890-1001\...\Run: [msnmsgr] => C:\Program Files\Windows Live\Messenger\msnmsgr.exe [3883840 2009-07-26] (Microsoft Corporation)
HKU\S-1-5-21-3927600971-491131981-4261967890-1001\...\Run: [InfoCockpit] => C:\Program Files\T-Online\T-Online_Software_6\Info-Cockpit\IC_START.EXE [268800 2009-11-16] (Deutsche Telekom AG, T-Com)
HKU\S-1-5-21-3927600971-491131981-4261967890-1001\...\Run: [GMX SMS-Manager] => C:\Program Files\GMX\GMX SMS-Manager\SMSMngr.exe [3539968 2007-07-19] (1&1 Internet AG)
HKU\S-1-5-21-3927600971-491131981-4261967890-1001\...\Run: [Corel Photo Downloader] => C:\Program Files\Common Files\Corel\Corel PhotoDownloader\Corel Photo Downloader.exe [526992 2010-07-28] (Corel, Inc.)
HKU\S-1-5-21-3927600971-491131981-4261967890-1001\...\Run: [PC Suite Tray] => "C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
HKU\S-1-5-21-3927600971-491131981-4261967890-1001\...\Run: [swg] => C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2010-10-31] (Google Inc.)
HKU\S-1-5-21-3927600971-491131981-4261967890-1001\...\RunOnce: [Screensaver] => C:\Windows\Web\Wallpaper\MEDION\start.vbs [129 2009-10-23] ()
HKU\S-1-5-21-3927600971-491131981-4261967890-1001\...\MountPoints2: {648b6731-52e8-11df-a742-806e6f6e6963} - E:\.\windows\setup.exe .\windows
HKU\S-1-5-21-3927600971-491131981-4261967890-1001\...\MountPoints2: {895a6c54-5624-11df-8daf-00262df7622c} - F:\AutoRun.exe
HKU\S-1-5-21-3927600971-491131981-4261967890-1001\...\MountPoints2: {895a6c79-5624-11df-8daf-00262df7622c} - G:\AutoRun.exe
HKU\S-1-5-21-3927600971-491131981-4261967890-1001\...\MountPoints2: {f899e4a2-92a6-11df-b7ad-00262df7622c} - F:\AutoRun.exe
HKU\S-1-5-21-3927600971-491131981-4261967890-1001\...\MountPoints2: {f899e4a5-92a6-11df-b7ad-00262df7622c} - F:\AutoRun.exe
HKU\S-1-5-18\...\Run: [InfoCockpit] => C:\Program Files\T-Online\T-Online_Software_6\Info-Cockpit\IC_START.EXE [268800 2009-11-16] (Deutsche Telekom AG, T-Com)
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [280576 2013-04-06] (Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Secunia PSI Tray.lnk
ShortcutTarget: Secunia PSI Tray.lnk -> C:\Program Files\Secunia\PSI\psi_tray.exe (Secunia)
Startup: C:\Users\max10\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Mediencenter Assistent.lnk
ShortcutTarget: Mediencenter Assistent.lnk -> C:\Program Files\Telekom\Mediencenter\MediencenterSoftware.exe (Deutsche Telekom AG)
Startup: C:\Users\max10\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk
ShortcutTarget: OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk -> C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=AV01
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://medion.msn.com
HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.msn.com/?pc=AV01
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=AV01
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.msn.com/?pc=AV01
SearchScopes: HKLM - DefaultScope {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
SearchScopes: HKLM - {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
SearchScopes: HKCU - DefaultScope {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
SearchScopes: HKCU - {01A42449-8344-4478-AE8C-24B0331B1791} URL = hxxp://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=827316&p={searchTerms}
SearchScopes: HKCU - {0B174DB8-997B-415A-BD1C-B4B45B7B9134} URL = hxxp://suche.gmx.net/search/web/?su={searchTerms}&origin=searchplugin
SearchScopes: HKCU - {38A5A452-5E62-45E6-959C-FEF8B4FC4666} URL = hxxp://go.gmx.net/br/ie8_search_ebay/?q={searchTerms}
SearchScopes: HKCU - {3C8C779A-F937-4E5F-8B68-C9EB8C001FC6} URL = hxxp://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=827316&p={searchTerms}
SearchScopes: HKCU - {6134727C-C6D0-4F04-94FE-A4C402814A7A} URL = hxxp://go.gmx.net/br/ie8_search_amazon/?keywords={searchTerms}
SearchScopes: HKCU - {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
SearchScopes: HKCU - {877F60D6-4D1F-4489-9E7C-B44AF6C4A42F} URL = hxxp://go.gmx.net/br/ie8_search_web/?su={searchTerms}
SearchScopes: HKCU - {907C8DFD-6938-4698-A1B6-FD5DA56DDC6A} URL = hxxp://search.softonic.com/MOY00009/tb_v1?q={searchTerms}&SearchSource=4&cc=&mi=1cd741d600000000000000ff53f1001b&toi=16046&r=528
SearchScopes: HKCU - {AFBCB7E0-F91A-4951-9F31-58FEE57A25C4} URL = hxxp://nortonsafe.search.ask.com/web?q={SEARCHTERMS}&o=15527&prt=NIS&chn=retail&geo=DE&ver=20&locale=de_DE&tpr=111
SearchScopes: HKCU - {BE6D9C87-F1B9-4A4E-93A7-FE214093C84E} URL = hxxp://www.search.ask.com/web?tpid=FF3-V7&o=APN10977&pf=&p2=%5EB2Z%5Ezzz000%5EYY%5EDE&gct=&itbv=12.7.0.2316&apn_uid=3C1C2FA2-277A-4E59-8904-C6FAB8BBAF52&apn_ptnrs=%5EB2Z&apn_dtid=%5Ezzz000%5EYY%5EDE&apn_dbr=ie_10.0.9200.16736&doi=2013-12-07&trgb=IE&q={searchTerms}&psv=
SearchScopes: HKCU - {F7ADD860-1624-40D7-A0DB-C3A31254C283} URL = hxxp://suche.gmx.net/search/web/?su={searchTerms}&origin=searchplugin
BHO: GMX Konfiguration -> {17166733-40EA-4432-A85C-AE672FF0E236} -> C:\ProgramData\1und1InternetExplorerAddon\BHOXML.dll (1&1 Mail & Media GmbH)
BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO: Windows Live ID-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: AusweisApp 1.7.0.0 -> {C9EE92B7-EDD5-4ad9-8029-2EC6818E653A} -> C:\Program Files\AusweisApp\siqeCardClient.ols (OpenLimit SignCubes AG)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} -  No File
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - No Name - {C424171E-592A-415A-9EB1-DFD6D95D3530} -  No File
Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} -  No File
Toolbar: HKCU - No Name - {4646332D-5637-006A-76A7-7A786E7484D7} -  No File
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab
DPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} hxxp://trial.trymicrosoftoffice.com/trialoaa/buymsoffice_assets/framework/microsoft/wrc32.ocx
DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1

FireFox:
========
FF ProfilePath: C:\Users\max10\AppData\Roaming\Mozilla\Firefox\Profiles\9mlytnq4.default
FF SelectedSearchEngine: Yahoo!
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.3 -> C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin: @microsoft.com/OfficeLive,version=1.4 -> C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/VirtualEarth3D,version=4.0 -> C:\Program Files\Virtual Earth 3D\ ()
FF Plugin: @microsoft.com/WLPG,version=14.0.8081.0709 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @Nero.com/KM -> C:\PROGRA~1\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL (Nero AG)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF user.js: detected! => C:\Users\max10\AppData\Roaming\Mozilla\Firefox\Profiles\9mlytnq4.default\user.js
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin6.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin7.dll (Apple Inc.)
FF SearchPlugin: C:\Users\max10\AppData\Roaming\Mozilla\Firefox\Profiles\9mlytnq4.default\searchplugins\safesearch.xml
FF SearchPlugin: C:\Users\max10\AppData\Roaming\Mozilla\Firefox\Profiles\9mlytnq4.default\searchplugins\yahoo_ff.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: Firefox Old Version Update Hotfix - C:\Users\max10\AppData\Roaming\Mozilla\Firefox\Profiles\9mlytnq4.default\Extensions\firefox-hotfix@mozilla.org.xpi [2014-07-29]
FF Extension: Speed Test Analysis - C:\Users\max10\AppData\Roaming\Mozilla\Firefox\Profiles\9mlytnq4.default\Extensions\speedtestanalysis@SpeedAnalysis.com.xpi [2014-01-18]
FF Extension: COMPUTERBILD-Abzockschutz - C:\Users\max10\AppData\Roaming\Mozilla\Firefox\Profiles\9mlytnq4.default\Extensions\{d49175b3-3fd8-43b8-b28e-da5d47f3c398}.xpi [2013-10-13]
FF HKLM\...\Firefox\Extensions: [{4F3D26C8-9907-48ff-BC74-B8C572D317BF}] - C:\Program Files\AusweisApp\mozilla\eCardClientExt_FFxx_Win
FF Extension: AusweisApp - C:\Program Files\AusweisApp\mozilla\eCardClientExt_FFxx_Win [2012-03-09]
FF HKLM\...\Firefox\Extensions: [{4F0963A3-1658-4fde-9585-23A25CC288BF}] - C:\Program Files\AusweisApp\mozilla\eCardClientPIn_FFxx_Win
FF Extension: AusweisApp - C:\Program Files\AusweisApp\mozilla\eCardClientPIn_FFxx_Win [2012-03-09]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-10-04]

Chrome: 
=======
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\37.0.2062.124\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\37.0.2062.124\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\37.0.2062.124\pdf.dll ()
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Java Deployment Toolkit 6.0.180.7) - C:\Program Files\Java\jre6\bin\new_plugin\npdeploytk.dll (Sun Microsystems, Inc.)
CHR Plugin: (Java(TM) Platform SE 6 U18) - C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
CHR Plugin: (QuickTime Plug-in 7.5.5) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.5.5) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.5.5) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.5.5) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.5.5) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.5.5) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.5.5) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll (Apple Inc.)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~1\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (Google Earth Plugin) - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Picasa) - C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.135\npGoogleUpdate3.dll No File
CHR Plugin: (Microsoft Office Live Plug-in for Firefox) - C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
CHR Plugin: (Windows Live Photo Gallery) - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll No File
CHR CustomProfile: C:\Users\max10\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\max10\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-03-30]
CHR Extension: (Google Drive) - C:\Users\max10\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-03-30]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\max10\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-09-11]
CHR Extension: (YouTube) - C:\Users\max10\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-03-30]
CHR Extension: (Google-Suche) - C:\Users\max10\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-03-30]
CHR Extension: (avast! Online Security) - C:\Users\max10\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-10-04]
CHR Extension: (Google Wallet) - C:\Users\max10\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-28]
CHR Extension: (Google Mail) - C:\Users\max10\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-03-30]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-10-04]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-10-04] (AVAST Software)
R2 cjpcsc; C:\Windows\system32\cjpcsc.exe [512944 2012-02-29] (REINER SCT)
R2 Fabs; C:\Program Files\Common Files\MAGIX Services\Database\bin\FABS.exe [1155072 2009-02-03] (MAGIX AG) [File not signed]
S3 FirebirdServerMAGIXInstance; C:\Program Files\Common Files\MAGIX Services\Database\bin\fbserver.exe [3276800 2008-08-07] (MAGIX®) [File not signed]
R2 FsUsbExService; C:\Windows\system32\FsUsbExService.Exe [233472 2013-07-18] (Teruten) [File not signed]
R2 NAUpdate; C:\Program Files\Nero\Update\NASvc.exe [786256 2014-07-14] (Nero AG)
R2 ocster_backup; c:\Program Files\Ocster Backup\bin\backupService-ox.exe [18200 2011-08-08] ()
R2 Secunia PSI Agent; C:\Program Files\Secunia\PSI\PSIA.exe [993848 2011-04-19] (Secunia)
R2 TuneUp.UtilitiesSvc; C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe [1739576 2013-10-30] (TuneUp Software)
R3 WisLMSvc; C:\Program Files\Launch Manager\WisLMSvc.exe [118560 2009-10-22] (Wistron Corp.)
R2 x10nets; C:\Program Files\Common Files\X10\Common\X10nets.exe [20480 2009-11-07] (X10) [File not signed]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R3 Afc; C:\Windows\System32\drivers\Afc.sys [18688 2006-11-10] (Arcsoft, Inc.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24184 2014-10-04] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [67824 2014-10-04] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [81768 2014-10-04] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49944 2014-10-04] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [779536 2014-10-04] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [414520 2014-10-04] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [71944 2014-10-04] (AVAST Software)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [192352 2014-10-04] ()
R1 bizVSerial; C:\Windows\System32\drivers\bizVSerialNT.sys [14949 2007-05-31] (franson.biz) [File not signed]
S3 cjusb; C:\Windows\System32\DRIVERS\cjusb.sys [28144 2011-03-29] (REINER SCT)
R3 FsUsbExDisk; C:\Windows\system32\FsUsbExDisk.SYS [37344 2013-07-18] () [File not signed]
S3 mod7700; C:\Windows\System32\DRIVERS\mod7700.sys [621056 2008-11-08] (DiBcom SA)
S3 PSI; C:\Windows\System32\DRIVERS\psi_mf.sys [15544 2010-09-01] (Secunia)
R2 SSPORT; C:\Windows\system32\Drivers\SSPORT.sys [5120 2011-03-14] (Samsung Electronics) [File not signed]
R3 tap0901; C:\Windows\System32\DRIVERS\tap0901.sys [25984 2009-12-12] (The OpenVPN Project)
R3 TuneUpUtilitiesDrv; C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesDriver32.sys [12320 2013-09-18] (TuneUp Software)
R3 X10Hid; C:\Windows\System32\Drivers\x10hid.sys [13720 2009-05-13] (X10 Wireless Technology, Inc.)
R3 XUIF; C:\Windows\System32\Drivers\x10ufx2.sys [27160 2009-05-13] (X10 Wireless Technology, Inc.)
S3 pccsmcfd; system32\DRIVERS\pccsmcfd.sys [X]
S3 RtsUIR; system32\DRIVERS\Rts516xIR.sys [X]
S3 USBCCID; system32\DRIVERS\RtsUCcid.sys [X]

==================== NetSvcs (Whitelisted) ===================


(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-10-05 12:19 - 2014-10-05 12:20 - 00029603 _____ () C:\Users\max10\Downloads\FRST.txt
2014-10-05 12:19 - 2014-10-05 12:19 - 01100800 _____ (Farbar) C:\Users\max10\Downloads\FRST.exe
2014-10-05 12:19 - 2014-10-05 12:19 - 00000000 ____D () C:\FRST
2014-10-05 12:12 - 2014-10-05 12:12 - 00010170 _____ () C:\Windows\DPINST.LOG
2014-10-04 18:54 - 2014-10-04 18:54 - 00002123 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-10-04 18:54 - 2014-10-04 18:54 - 00000000 ____D () C:\Users\max10\AppData\Roaming\AVAST Software
2014-10-04 18:54 - 2014-10-04 18:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast
2014-10-04 18:53 - 2014-10-04 18:54 - 00414520 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2014-10-04 18:53 - 2014-10-04 18:53 - 00779536 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2014-10-04 18:53 - 2014-10-04 18:53 - 00276432 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-10-04 18:53 - 2014-10-04 18:53 - 00192352 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-10-04 18:53 - 2014-10-04 18:53 - 00081768 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-10-04 18:53 - 2014-10-04 18:53 - 00071944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2014-10-04 18:53 - 2014-10-04 18:53 - 00067824 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-10-04 18:53 - 2014-10-04 18:53 - 00049944 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-10-04 18:53 - 2014-10-04 18:53 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-10-04 18:53 - 2014-10-04 18:53 - 00024184 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-10-04 18:52 - 2014-10-04 18:52 - 00000000 ____D () C:\Program Files\AVAST Software
2014-10-04 18:46 - 2014-10-04 18:50 - 91906368 _____ (AVAST Software) C:\Users\max10\Downloads\avast_free_antivirus_setup_9_0_2021.exe
2014-10-04 18:35 - 2014-10-04 18:35 - 00011264 ___SH () C:\Users\max10\Thumbs.db
2014-10-04 18:29 - 2014-10-05 11:28 - 00003412 _____ () C:\Windows\PFRO.log
2014-10-04 18:08 - 2014-10-04 18:34 - 00110296 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-10-04 18:07 - 2014-10-04 18:07 - 00001064 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2014-10-04 18:07 - 2014-10-04 18:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2014-10-04 18:07 - 2014-10-04 18:07 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 
2014-10-04 18:07 - 2014-05-12 07:26 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-10-04 18:07 - 2014-05-12 07:25 - 00074456 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-10-04 18:07 - 2014-05-12 07:25 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-10-04 18:06 - 2014-10-04 18:07 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\max10\Downloads\mbam-setup-2.0.2.1012.exe
2014-10-04 17:58 - 2014-10-05 11:30 - 00000168 _____ () C:\Windows\setupact.log
2014-10-04 17:58 - 2014-10-04 17:58 - 00000000 _____ () C:\Windows\setuperr.log
2014-10-04 16:59 - 2014-10-04 18:52 - 00000000 ____D () C:\ProgramData\AVAST Software
2014-10-04 16:50 - 2014-10-04 16:50 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-10-02 10:55 - 2014-09-25 03:40 - 00519680 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2014-09-28 09:50 - 2014-08-19 19:39 - 00327872 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-09-28 09:50 - 2014-08-19 00:26 - 17455104 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-09-28 09:50 - 2014-08-19 00:08 - 04232704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-09-28 09:50 - 2014-08-18 23:57 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-09-28 09:50 - 2014-08-18 23:57 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-09-28 09:50 - 2014-08-18 23:46 - 00454656 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-09-28 09:50 - 2014-08-18 23:45 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-09-28 09:50 - 2014-08-18 23:44 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-09-28 09:50 - 2014-08-18 23:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-09-28 09:50 - 2014-08-18 23:42 - 02185728 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-09-28 09:50 - 2014-08-18 23:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-09-28 09:50 - 2014-08-18 23:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-09-28 09:50 - 2014-08-18 23:37 - 00440320 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-09-28 09:50 - 2014-08-18 23:36 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-09-28 09:50 - 2014-08-18 23:36 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-09-28 09:50 - 2014-08-18 23:35 - 00597504 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-09-28 09:50 - 2014-08-18 23:30 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-09-28 09:50 - 2014-08-18 23:27 - 00365056 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-09-28 09:50 - 2014-08-18 23:22 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-09-28 09:50 - 2014-08-18 23:19 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-09-28 09:50 - 2014-08-18 23:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-09-28 09:50 - 2014-08-18 23:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-09-28 09:50 - 2014-08-18 23:15 - 11769856 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-09-28 09:50 - 2014-08-18 23:09 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-09-28 09:50 - 2014-08-18 23:08 - 02014208 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-09-28 09:50 - 2014-08-18 23:08 - 00673792 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-09-28 09:50 - 2014-08-18 23:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-09-28 09:50 - 2014-08-18 22:46 - 01812992 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-09-28 09:50 - 2014-08-18 22:38 - 01190400 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-09-28 09:50 - 2014-08-18 22:36 - 00678400 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-09-28 09:49 - 2014-06-27 03:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2014-09-26 17:31 - 2014-09-26 17:31 - 00000000 ____D () C:\Users\max10\Documents\SelfMV
2014-09-26 17:30 - 2014-10-02 18:22 - 00001919 _____ () C:\Users\Public\Desktop\Samsung Kies 3.lnk
2014-09-26 17:29 - 2014-05-07 17:42 - 00144664 _____ (MAPILab Ltd. & Add-in Express Ltd.) C:\Windows\system32\secman.dll
2014-09-26 17:24 - 2014-06-16 08:01 - 00184192 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudmdm.sys
2014-09-26 17:24 - 2014-06-16 08:01 - 00089856 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudbus.sys
2014-09-23 20:40 - 2014-09-09 23:47 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-09-17 22:45 - 2014-09-17 22:48 - 00000000 ____D () C:\Users\max10\AppData\Local\Nero
2014-09-17 22:45 - 2014-09-17 22:46 - 00000000 ____D () C:\Users\max10\Documents\NeroVideo
2014-09-17 22:40 - 2014-09-17 22:40 - 00002889 _____ () C:\Users\Public\Desktop\Nero 2015.lnk
2014-09-17 22:28 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2014-09-17 22:27 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2014-09-17 22:26 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2014-09-17 22:25 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
2014-09-17 22:24 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
2014-09-17 22:23 - 2014-09-17 22:23 - 00000000 ____D () C:\ProgramData\Package Cache
2014-09-17 20:55 - 2014-09-17 21:49 - 970029056 _____ (Nero AG) C:\Users\max10\Downloads\Nero_Video2015-16.0.01200_trial.exe
2014-09-12 21:28 - 2014-08-23 03:46 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-09-12 21:28 - 2014-08-23 02:42 - 02352640 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-09-12 21:28 - 2014-07-07 03:40 - 01059840 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-09-12 21:28 - 2014-07-07 03:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-09-12 21:27 - 2014-09-05 03:52 - 00445952 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-09-12 21:27 - 2014-09-05 03:47 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-09-12 21:27 - 2014-08-01 13:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2014-09-12 21:27 - 2014-06-24 04:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-09-12 19:04 - 2014-09-12 19:04 - 00000104 _____ () C:\Users\max10\Downloads\scheduler (2).ics
2014-09-11 14:28 - 2014-05-14 18:23 - 01973728 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-09-11 14:28 - 2014-05-14 18:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2014-09-11 14:28 - 2014-05-14 18:23 - 00054240 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-09-11 14:28 - 2014-05-14 18:23 - 00045536 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2014-09-11 14:28 - 2014-05-14 18:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2014-09-11 14:28 - 2014-05-14 18:17 - 02425856 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2014-09-11 14:28 - 2014-05-14 18:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2014-09-11 14:26 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2014-09-11 14:26 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2014-09-10 20:50 - 2014-07-01 00:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll
2014-09-10 20:50 - 2014-03-09 23:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll
2014-09-10 20:49 - 2014-06-06 08:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2014-09-10 20:49 - 2014-03-09 23:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-10-05 12:20 - 2010-04-29 15:06 - 00001096 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-10-05 11:44 - 2009-07-14 06:34 - 00018704 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-10-05 11:44 - 2009-07-14 06:34 - 00018704 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-10-05 11:40 - 2010-04-28 18:23 - 01199323 _____ () C:\Windows\WindowsUpdate.log
2014-10-05 11:35 - 2012-03-09 21:03 - 00000000 ____D () C:\Users\max10\.ausweisapp
2014-10-05 11:32 - 2010-04-29 15:06 - 00001092 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-10-05 11:30 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-10-04 19:38 - 2011-09-13 19:55 - 00000000 ____D () C:\Program Files\GMX Toolbar
2014-10-04 19:38 - 2011-09-13 19:54 - 00001882 _____ () C:\Users\max10\Desktop\GMX.lnk
2014-10-04 19:38 - 2010-05-01 14:06 - 00001930 _____ () C:\Users\Public\Desktop\Bing Maps 3D.lnk
2014-10-04 18:42 - 2013-05-19 18:22 - 00000000 ____D () C:\ProgramData\Norton
2014-10-04 18:35 - 2010-04-28 18:23 - 00000000 ____D () C:\Users\max10
2014-10-04 18:07 - 2013-12-15 18:08 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-10-04 17:42 - 2011-05-01 15:42 - 00000000 ____D () C:\ProgramData\eBay
2014-10-04 17:41 - 2011-05-01 15:43 - 00001472 _____ () C:\InstallHelper.log
2014-10-04 17:40 - 2010-05-06 17:36 - 00000000 ____D () C:\Program Files\Deutsche Telekom
2014-10-04 17:39 - 2012-01-23 17:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2014-10-04 17:39 - 2010-03-02 07:17 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2014-10-04 17:38 - 2010-03-02 07:57 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HomeCinema
2014-10-04 17:38 - 2010-03-02 07:57 - 00000000 ____D () C:\Program Files\CyberLink
2014-10-04 17:23 - 2010-03-02 07:57 - 00000000 ____D () C:\ProgramData\CyberLink
2014-10-04 17:20 - 2010-03-02 09:30 - 00000000 ____D () C:\Program Files\ALDI Sued Foto Service
2014-10-04 17:19 - 2010-03-02 09:32 - 00000000 ____D () C:\Program Files\Aldi Sued Fotoservice
2014-10-04 17:19 - 2010-03-02 09:30 - 00000000 ____D () C:\ProgramData\ALDI Sued Foto Service
2014-10-04 17:18 - 2011-08-08 18:12 - 00000000 ____D () C:\Program Files\Nokia
2014-10-04 17:13 - 2011-09-25 17:55 - 00000000 ____D () C:\Program Files\COMPUTERBILD Security Inspector
2014-10-04 17:08 - 2010-12-04 13:02 - 00000000 ____D () C:\Users\max10\Documents\Freekalender2011
2014-10-04 17:05 - 2011-09-25 18:01 - 00000000 ____D () C:\Users\max10\AppData\Local\Abelssoft
2014-10-04 16:50 - 2011-07-23 21:14 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-10-02 11:47 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2014-10-02 11:12 - 2010-05-23 11:52 - 00000000 ____D () C:\Users\max10\Documents\Privat
2014-09-30 17:15 - 2010-04-28 20:50 - 00000000 ____D () C:\Users\max10\Tracing
2014-09-28 10:13 - 2012-01-05 17:30 - 00000021 _____ () C:\Users\max10\AppData\Local\mc.pixel.data
2014-09-28 10:10 - 2009-07-14 06:33 - 00480736 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-09-28 09:49 - 2013-09-21 03:03 - 00000000 ____D () C:\Windows\system32\MRT
2014-09-28 09:49 - 2010-03-02 07:45 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-09-28 09:31 - 2014-05-17 15:15 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-09-28 09:31 - 2010-03-02 08:25 - 98758480 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-09-28 09:31 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\de-DE
2014-09-28 09:26 - 2010-09-27 15:55 - 01594964 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-09-26 17:34 - 2013-01-05 16:57 - 00000000 ____D () C:\Users\max10\Documents\samsung
2014-09-26 17:30 - 2013-01-05 16:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung
2014-09-26 17:30 - 2011-04-08 16:04 - 00000000 ____D () C:\Users\max10\Documents\My PSP Files
2014-09-26 17:30 - 2011-04-08 16:04 - 00000000 ____D () C:\Users\max10\AppData\Local\Corel
2014-09-26 17:30 - 2010-05-09 11:42 - 00004704 ___SH () C:\ProgramData\KGyGaAvL.sys
2014-09-26 17:29 - 2013-01-05 16:58 - 00000000 ____D () C:\Users\max10\AppData\Roaming\Samsung
2014-09-26 17:29 - 2012-06-10 20:50 - 00000000 ____D () C:\Program Files\Samsung
2014-09-26 17:18 - 2013-01-05 16:57 - 00001952 _____ () C:\Users\Public\Desktop\Samsung Kies (Lite).lnk
2014-09-26 17:11 - 2010-04-29 15:10 - 00002125 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-09-26 17:10 - 2013-05-19 18:35 - 00000000 ____D () C:\Users\max10\AppData\Local\CrashDumps
2014-09-17 22:47 - 2011-01-09 20:54 - 00000000 ____D () C:\Users\max10\AppData\Roaming\Nero
2014-09-17 22:45 - 2011-01-09 19:56 - 00000000 ____D () C:\ProgramData\Nero
2014-09-17 22:41 - 2011-01-09 19:56 - 00000000 ____D () C:\Program Files\Common Files\Nero
2014-09-17 22:41 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Cursors
2014-09-17 22:40 - 2011-01-09 19:56 - 00000000 ____D () C:\Program Files\Nero
2014-09-17 22:37 - 2011-01-09 19:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero
2014-09-17 20:50 - 2011-04-08 16:19 - 00017920 _____ () C:\Users\max10\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-09-17 20:44 - 2013-12-07 17:52 - 00000000 ____D () C:\Users\max10\Documents\Audiodateien_Konvertiert
2014-09-15 09:06 - 2010-03-02 08:22 - 00231568 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe

Some content of TEMP:
====================
C:\Users\max10\AppData\Local\Temp\unwise.exe
C:\Users\max10\AppData\Local\Temp\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}_NIS_23517.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-05-03 17:53

==================== End Of Log ============================
         
--- --- ---

--- --- ---

--- --- ---

Additional:

Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 04-10-2014 01
Ran by max10 at 2014-10-05 12:21:16
Running from C:\Users\max10\Downloads
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

"Nero SoundTrax Help (Version: 4.0.11.0 - Nero AG) Hidden
7-Zip 9.20 (HKLM\...\7-Zip) (Version:  - )
Adobe AIR (HKLM\...\Adobe AIR) (Version: 3.2.0.2070 - Adobe Systems Incorporated)
Adobe AIR (Version: 3.2.0.2070 - Adobe Systems Incorporated) Hidden
Adobe Flash Player 10 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 10.0.42.34 - Adobe Systems Incorporated)
Adobe Flash Player 15 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 15.0.0.167 - Adobe Systems Incorporated)
Adobe Reader 9.5.5 - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-A95000000001}) (Version: 9.5.5 - Adobe Systems Incorporated)
Advertising Center (Version: 0.0.0.1 - Nero AG) Hidden
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 1.0.0.23 - Atheros Communications Inc.)
AusweisApp (HKLM\...\{62ED340C-678A-4841-8BD5-641410122538}) (Version: 1.7.0 - OpenLimit SignCubes AG)
avast! Free Antivirus (HKLM\...\Avast) (Version: 9.0.2021 - AVAST Software)
Bayern 3D (HKLM\...\Bayern 3D) (Version:  - )
Bing Maps 3D (HKLM\...\{2D87E961-577B-492B-AD54-1368680FB9A7}) (Version: 4.0.903.16005 - Microsoft Corporation)
CCleaner (HKLM\...\CCleaner) (Version: 3.10 - Piriform)
Cisco EAP-FAST Module (HKLM\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.)
Cisco LEAP Module (HKLM\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.)
Cisco PEAP Module (HKLM\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.)
Common Desktop Agent (Version: 1.53.0 - OEM) Hidden
Compatibility Pack für 2007 Office System (HKLM\...\{90120000-0020-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
ContentHD (Version: 1.00.0002 - Corel Corporation) Hidden
Contents (Version: 1.6.1.240 - Corel Corporation) Hidden
Corel PaintShop Photo Pro X3 (HKLM\...\_{DEAEB5DB-04FA-489D-94EF-8600898B93EE}) (Version: 1.6.1.241 - Corel Corporation)
Corel PaintShop Photo Pro X3 (Version: 1.00.0000 - Corel Corporation) Hidden
Corel PaintShop Photo Project Creator (HKLM\...\_{DFAEB5DB-04FA-489D-94EF-8600898B93EE}) (Version: 1.6.1.240 - Corel Corporation)
CorelDRAW Essentials 4 - Content (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Draw (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Filters (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - ICA (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - IPM - No VBA (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Lang BR (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Lang DE (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Lang EN (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Lang ES (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Lang FR (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Lang IT (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Lang NL (Version: 4.0 - Uw bedrijfsnaam) Hidden
CorelDRAW Essentials 4 - PHOTO-PAINT (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Windows Shell Extension (HKLM\...\_{CF0ADC18-6D8F-4353-8EAA-DF45456B7853}) (Version:  - Corel Corporation)
CorelDRAW Essentials 4 - Windows Shell Extension (Version: 1.1 - Corel Corporation) Hidden
CorelDRAW Essentials 4 (HKLM\...\_{C0237AA4-1BFB-46EA-860D-7B0EB365CA13}) (Version:  - Corel Corporation)
CorelDRAW Essentials 4 (Version: 4.0 - Corel Corporation) Hidden
cyberJack Base Components (HKLM\...\{FC338210-F594-11D3-BA24-00001C3AB4DF}) (Version: 6.10.0 - REINER SCT)
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{650DE870-ECA3-4E63-8D77-778512BE5D4C}) (Version:  - Microsoft)
DeviceIO (Version: 1.6.1.240 - Corel Corporation) Hidden
DHTML Editing Component (HKLM\...\{2EA870FA-585F-4187-903D-CB9FFD21E2E0}) (Version: 6.02.0001 - Microsoft Corporation)
DolbyFiles (Version: 2.0 - Nero AG) Hidden
Firebird SQL Server - MAGIX Edition (HKLM\...\{3E6F0CAD-EE38-42A5-9EEA-AE17A55BF2D4}) (Version: 2.1.23.0 - MAGIX AG)
FormatFactory 3.1.1 (HKLM\...\FormatFactory) (Version: 3.1.1 - Free Time)
GMX Internet Explorer Addon (HKLM\...\1&1 Mail & Media GmbH 1und1InternetExplorerAddon) (Version: 1.0.1.0 - 1&1 Mail & Media GmbH)
GMX SMS-Manager (HKLM\...\com.unitedinternet.ums.sms-mms-manager) (Version: 3.3 - 1 und 1 Internet AG)
GMX SMS-Manager (HKLM\...\GMX SMS-Manager) (Version:  - )
GMX SMS-Manager (Version: 3.3 - 1 und 1 Internet AG) Hidden
GMX Softwareaktualisierung (HKLM\...\1&1 Mail & Media GmbH 1und1Softwareaktualisierung) (Version: 2.0.1.5 - 1&1 Mail & Media GmbH)
Google Chrome (HKLM\...\Google Chrome) (Version: 37.0.2062.124 - Google Inc.)
Google Earth (HKLM\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Toolbar for Internet Explorer (HKLM\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.5111.1712 - Google Inc.)
Google Toolbar for Internet Explorer (Version: 1.0.0 - Google Inc.) Hidden
Google Update Helper (Version: 1.3.24.15 - Google Inc.) Hidden
HP Deskjet 1000 J110 series - Grundlegende Software für das Gerät (HKLM\...\{0A2063BC-CE17-420A-A629-D9D7AE6EC136}) (Version: 22.50.231.0 - Hewlett-Packard Co.)
HP Deskjet 1000 J110 series Hilfe (HKLM\...\{DDDFCC77-7F9C-45E9-B38E-721BA599BA0C}) (Version: 140.0.65.65 - Hewlett Packard)
HP Update (HKLM\...\{B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE}) (Version: 5.002.006.003 - Hewlett-Packard)
ICA (Version: 1.6.1.240 - Corel Corporation) Hidden
ICA (Version: 1.6.1.241 - Corel Corporation) Hidden
ImagXpress (Version: 7.0.74.0 - Nero AG) Hidden
Intel(R) Graphics Media Accelerator Driver (HKLM\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2092 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.0.0.1179 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 9.5.0.1037 - Intel Corporation)
Intel(R) TV Wizard (HKLM\...\TVWiz) (Version:  - Intel Corporation)
IPM_PSP_CL (Version: 1.00.0000 - Your Company Name) Hidden
IPM_PSP_COM (Version: 1.00.0000 - Your Company Name) Hidden
IPM_PSP_PRJ (Version: 1.00.0000 - Your Company Name) Hidden
IrfanView (remove only) (HKLM\...\IrfanView) (Version: 4.27 - Irfan Skiljan)
Java Auto Updater (Version: 2.0.1.2 - Sun Microsystems, Inc.) Hidden
Java(TM) 6 Update 18 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83216018FF}) (Version: 6.0.180 - Sun Microsystems, Inc.)
Junk Mail filter update (Version: 14.0.8089.726 - Microsoft Corporation) Hidden
Launch Manager V1.5.0.8 (HKLM\...\{D0846526-66DD-4DC9-A02C-98F9A2806812}) (Version: 1.5.0.8 - Wistron Corp.)
Letstrade (HKLM\...\{E0091C29-DEE8-4B24-BF65-8C35B5940D77}) (Version: 1.00.0001 - Buhl Data Service GmbH)
Malwarebytes Anti-Malware Version 2.0.2.1012 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation)
Mediencenter Assistent (HKLM\...\Mediencenter Software) (Version: 2.7.0.1451 - Telekom)
MEDION Fotos auf CD & DVD SE Sued (HKLM\...\MEDION Fotos auf CD & DVD SE Sued D) (Version: 8.0.3.4 - MAGIX AG)
Medion Home Cinema (HKLM\...\InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}) (Version: 8.0.1318 - CyberLink Corp.)
Medion Home Cinema (Version: 8.0.1318 - CyberLink Corp.) Hidden
Menu Templates - Starter Kit (Version: 9.0.4.0 - Nero AG) Hidden
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6012.5000 - Microsoft Corporation) Hidden
Microsoft Choice Guard (Version: 2.0.48.0 - Microsoft Corporation) Hidden
Microsoft Office Access MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Home and Student 2010 (HKLM\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Office Live Add-in 1.4 (HKLM\...\{AE3CF174-872C-46C6-B9F6-C0593F3BC7B8}) (Version: 2.0.3008.0 - Microsoft Corporation)
Microsoft Office OneNote MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint Viewer 2007 (German) (HKLM\...\{95120000-00AF-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Professional Edition 2003 (HKLM\...\{90110407-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation)
Microsoft Office Proof (English) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Italian) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Publisher MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Single Image 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Suite Activation Assistant (HKLM\...\{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}) (Version: 2.9 - Microsoft Corporation)
Microsoft Office Word MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [DEU] (HKLM\...\{BAC80EF3-E106-4AEA-8C57-F217F9BC7358}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Sync Framework Runtime Native v1.0 (x86) (HKLM\...\{8A74E887-8F0F-4017-AF53-CBA42211AAA5}) (Version: 1.0.1215.0 - Microsoft Corporation)
Microsoft Sync Framework Services Native v1.0 (x86) (HKLM\...\{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}) (Version: 1.0.1215.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM\...\{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual J# 2.0 Redistributable Package - SE (HKLM\...\Microsoft Visual J# 2.0 Redistributable Package - SE) (Version:  - Microsoft Corporation)
Microsoft Visual J# 2.0 Redistributable Package - SE (Version: 2.0.50728 - Microsoft Corporation) Hidden
Microsoft WSE 3.0 Runtime (HKLM\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.)
MLE (Version: 1.0.0.23 - Corel Corporation) Hidden
Movie Templates - Starter Kit (Version: 9.0.4.0 - Nero AG) Hidden
Mozilla Firefox 26.0 (x86 de) (HKLM\...\Mozilla Firefox 26.0 (x86 de)) (Version: 26.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 26.0 - Mozilla)
MSVC90_x86 (Version: 1.0.1.2 - Nokia) Hidden
MSVCRT (Version: 14.0.1468.721 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MyFreeCodec (HKCU\...\MyFreeCodec) (Version:  - )
Nero 9 (HKLM\...\{d35311bd-2643-4f3e-95f3-f058ab77162b}) (Version:  - Nero AG)
Nero Abstract Themes (Version: 16.0.10002 - Nero AG) Hidden
Nero Audio Pack 1 (Version: 11.0.11500.110.0 - Nero AG) Hidden
Nero Blu-ray Player (Version: 12.1.20081 - Nero AG) Hidden
Nero BurningROM (Version: 9.0.0.0 - Nero AG) Hidden
Nero BurnRights (Version: 2.99.6.100 - Nero AG) Hidden
Nero Cliparts (Version: 16.0.10002 - Nero AG) Hidden
Nero ControlCenter (Version: 11.2.0008 - Nero AG) Hidden
Nero ControlCenter (Version: 9.0.0.1 - Nero AG) Hidden
Nero Core Components (Version: 11.4.0012 - Nero AG) Hidden
Nero CoverDesigner (Version: 4.0.3.100 - Nero AG) Hidden
Nero CoverDesigner Help (Version: 4.0.0.0 - Nero AG) Hidden
Nero Disc Copy Gadget (Version: 1.53.0.0 - Nero AG) Hidden
Nero Disc Copy Gadget Help (Version: 2.0.0.0 - Nero AG) Hidden
Nero Disc Menus 1 (Version: 16.0.10002 - Nero AG) Hidden
Nero Disc Menus 2 (Version: 16.0.10002 - Nero AG) Hidden
Nero Disc Menus 3 (Version: 16.0.10002 - Nero AG) Hidden
Nero Disc Menus Basic (Version: 16.0.10002 - Nero AG) Hidden
Nero DiscSpeed (Version: 4.99.5.105 - Nero AG) Hidden
Nero DriveSpeed (Version: 3.99.5.105 - Nero AG) Hidden
Nero Effects Basic (Version: 16.0.10002 - Nero AG) Hidden
Nero Express (Version: 9.0.0.0 - Nero AG) Hidden
Nero Family and Events Themes (Version: 16.0.10002 - Nero AG) Hidden
Nero Football (Soccer) Themes (Version: 16.0.10002 - Nero AG) Hidden
Nero Holiday and Sports Themes (Version: 16.0.10002 - Nero AG) Hidden
Nero Image Samples (Version: 16.0.10002 - Nero AG) Hidden
Nero Info (HKLM\...\{B791E0AB-87A9-41A4-8D98-D13C2E37D928}) (Version: 16.0.1003 - Nero AG)
Nero InfoTool (Version: 5.99.5.105 - Nero AG) Hidden
Nero Installer (Version: 2.0.0.1 - Nero AG) Hidden
Nero Kwik Themes Basic (Version: 16.0.10002 - Nero AG) Hidden
Nero Launcher (Version: 16.0.8000 - Nero AG) Hidden
Nero Live (Version: 1.0.160.0 - Nero AG) Hidden
Nero Live Help (Version: 1.0.160.0 - Nero AG) Hidden
Nero MediaHome (Version: 1.26.5300 - Nero AG) Hidden
Nero PhotoSnap (Version: 1.53.2.0 - Nero AG) Hidden
Nero PhotoSnap Help (Version: 1.53.2.0 - Nero AG) Hidden
Nero PiP Effects 1 (Version: 16.0.10002 - Nero AG) Hidden
Nero PiP Effects Basic (Version: 16.0.10002 - Nero AG) Hidden
Nero Platinum Effects 12 (Version: 16.0.10002 - Nero AG) Hidden
Nero Recode (Version: 3.53.0.0 - Nero AG) Hidden
Nero Recode Help (Version: 3.53.0.0 - Nero AG) Hidden
Nero Rescue Agent (Version: 1.99.0.1 - Nero AG) Hidden
Nero RescueAgent Help (Version: 1.99.0.1 - Nero AG) Hidden
Nero Retro Film Themes (Version: 16.0.10002 - Nero AG) Hidden
Nero SharedVideoCodecs (Version: 1.0.16006 - Nero AG) Hidden
Nero ShowTime (Version: 4.99.0.0 - Nero AG) Hidden
Nero StartSmart (Version: 9.0.6.100 - Nero AG) Hidden
Nero StartSmart Help (Version: 9.0.0.0 - Nero AG) Hidden
Nero Update (Version: 11.0.13600.45.0 - Nero AG) Hidden
Nero Video (Version: 16.0.4000 - Nero AG) Hidden
Nero Video 2015 (HKLM\...\{CEF3C4E5-65FA-44C9-A592-CF0FB6C0CC5C}) (Version: 16.0.01200 - Nero AG)
Nero Video Samples (Version: 16.0.10002 - Nero AG) Hidden
Nero Video Transitions 1 (Version: 16.0.10002 - Nero AG) Hidden
Nero Vision (Version: 6.0.0.100 - Nero AG) Hidden
Nero Vision (Version: 6.0.3.100 - Nero AG) Hidden
Nero WaveEditor (Version: 5.0.10.0 - Nero AG) Hidden
Nero WaveEditor Help (Version: 5.0.10.0 - Nero AG) Hidden
NeroBurningROM (Version: 9.0.6.100 - Nero AG) Hidden
NeroExpress (Version: 9.0.6.100 - Nero AG) Hidden
neroxml (Version: 1.0.0 - Nero AG) Hidden
NewSign AM03127or03128 (HKLM\...\NewSign AM03127or03128) (Version:  - )
n-tv plus (HKLM\...\{4AB3F9D4-0020-4A93-A7EB-C931C09ABD29}) (Version: 7.3.3.0 - n-tv Nachrichtenfernsehen GmbH)
Ocster Backup Pro (HKLM\...\Ocster Backup) (Version: 6.21 - Ocster GmbH & Co. KG)
OGA Notifier 2.0.0048.0 (Version: 2.0.0048.0 - Microsoft Corporation) Hidden
Paint.NET v3.5.5 (HKLM\...\{F0E2B312-D7FD-4349-A9B6-E90B36DB1BD0}) (Version: 3.55.0 - dotPDN LLC)
PC-Zeit 2.01 (HKLM\...\PC-Zeit) (Version: 2.01 - BAxBEx Software)
PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.2.0 - Frank Heindörfer, Philip Chinery)
Picasa 3 (HKLM\...\Picasa 3) (Version: 3.9 - Google, Inc.)
PlayReady PC Runtime x86 (HKLM\...\{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}) (Version: 1.3.0 - Microsoft Corporation)
Prerequisite installer (Version: 16.0.0000 - Nero AG) Hidden
PSPH10Pro (Version: 1.00.0000 - Corel Corporation) Hidden
PSPPContent (Version: 1.00.0000 - Corel Corporation) Hidden
PSPPRO_DCRAW (Version: 13.0.0 - Corel Corporation) Hidden
PureHD (Version: 1.6.1.240 - Corel Corporation) Hidden
QuickTime (HKLM\...\{8DC42D05-680B-41B0-8878-6C14D24602DB}) (Version: 7.55.90.70 - Apple Inc.)
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6057 - Realtek Semiconductor Corp.)
Realtek USB 2.0 Card Reader (HKLM\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.7600.30101 - Realtek Semiconductor Corp.)
REALTEK Wireless LAN Driver (HKLM\...\{9D3D8C60-A55F-4fed-B2B9-173F09590E16}) (Version: 1.00.0145 - REALTEK Semiconductor Corp.)
Samsung Easy Printer Manager (HKLM\...\Samsung Easy Printer Manager) (Version: 1.02.06.05 - Samsung Electronics Co., Ltd.)
Samsung Kies (HKLM\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.5.1.12123_2 - Samsung Electronics Co., Ltd.)
Samsung Kies (Version: 2.5.1.12123_2 - Samsung Electronics Co., Ltd.) Hidden
Samsung Kies3 (HKLM\...\InstallShield_{88547073-C566-4895-9005-EBE98EA3F7C7}) (Version: 3.2.14083.17 - Samsung Electronics Co., Ltd.)
Samsung Kies3 (Version: 3.2.14083.17 - Samsung Electronics Co., Ltd.) Hidden
Samsung ML-2160 Series (HKLM\...\Samsung ML-2160 Series) (Version:  - Samsung Electronics Co., Ltd.)
Samsung Printer Live Update (HKLM\...\Samsung Printer Live Update) (Version:  - Samsung Electronics Co., Ltd.)
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.45.0 - SAMSUNG Electronics Co., Ltd.)
Secunia PSI (2.0.0.3003) (HKLM\...\Secunia PSI) (Version:  - )
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (Version:  - Microsoft) Hidden
Setup (Version: 1.6.1.240 - Corel Corporation) Hidden
Setup (Version: 1.6.1.241 - Corel Corporation) Hidden
Share (Version: 1.6.1.240 - Corel Corporation) Hidden
SoundTrax (Version: 4.0.11.0 - Nero AG) Hidden
STRATO HiDrive (HKLM\...\{3E00C574-B650-401D-A898-4581AAD6CC74}) (Version: 1.0.0 - STRATO AG)
Studie zur Verbesserung von HP Deskjet 1000 J110 series Produkten (HKLM\...\{6723E416-88C8-4451-BE53-AEE03DBA4DBA}) (Version: 22.50.231.0 - Hewlett-Packard Co.)
Surf & E-Mail-Stick (HKLM\...\Surf & E-Mail-Stick) (Version: 11.301.08.00.35 - Huawei Technologies Co.,Ltd)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 14.0.19.0 - Synaptics Incorporated)
T-Online 6.0 (HKLM\...\{B1275E23-717A-4D52-997A-1AD1E24BC7F3}) (Version:  - )
T-Online WLAN-Access Finder (HKLM\...\{295C31E5-3F91-498E-9623-DA24D2FA2B6A}) (Version:  - )
TuneUp Utilities 2014 (de-DE) (Version: 14.0.1000.169 - TuneUp Software) Hidden
TuneUp Utilities 2014 (HKLM\...\TuneUp Utilities) (Version: 14.0.1000.169 - TuneUp Software)
TuneUp Utilities 2014 (Version: 14.0.1000.169 - TuneUp Software) Hidden
TuneUp Utilities Language Pack (de-DE) (Version: 9.0.6010.8 - TuneUp Software) Hidden
Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{B4A38370-2ADB-46B0-A1B0-0C4A2F7DCA31}) (Version:  - Microsoft)
Update for Microsoft Excel 2010 (KB2889836) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{9179FC17-97A8-4D98-9E09-05720AF5D44E}) (Version:  - Microsoft)
Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{302A8FE3-EBF5-486C-A431-16A1CD914443}) (Version:  - Microsoft)
Update for Microsoft InfoPath 2010 (KB2817369) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{4EEA3D3E-989C-4DF4-AB0A-3042C0C12AA3}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DADF7E25-FFA4-4D02-BE84-1DAE62C18516}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{287A1E92-9E41-4BC1-8920-B3D0E9220800}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{9D69691D-823D-4C3E-9B12-563A3F520366}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2687502) 32-Bit Edition (HKLM\...\{90140000-001F-0409-0000-0000000FF1CE}_Office14.SingleImage_{7DE7DF97-82FE-4B3A-AB8D-1621F9CC464A}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{ECFE33A3-B8B7-439A-ADE4-59FBD29EF9B8}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{35698CB7-AAA2-4577-B505-DBFF504AEF23}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{5AA578BB-759C-40FD-9661-A737C0884541}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2825635) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{F1A20C69-9FE5-40FD-9CD5-84EABC2EF64A}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2837581) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{334FB202-28D7-4BA4-8BC9-4FE4AB233EA0}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2837606) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{B0D672F7-883E-4279-8E75-D97A5445AB46}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2878252) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{B0DB9F71-E0F7-4FE6-8925-35B860CAC0C4}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2881028) 32-Bit Edition (HKLM\...\{90140000-001F-0407-0000-0000000FF1CE}_Office14.SingleImage_{EAD7BEF9-B28C-425F-B2C5-538CB27EF013}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2881028) 32-Bit Edition (HKLM\...\{90140000-001F-040C-0000-0000000FF1CE}_Office14.SingleImage_{089DBFD7-8211-43B2-AAAE-5BDD8C23E3A8}) (Version:  - Microsoft)
Update for Microsoft OneNote 2010 (KB2837595) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{51CCA922-A0CC-47C4-8910-6936D97CAC2E}) (Version:  - Microsoft)
Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition (HKLM\...\{90140000-001A-0407-0000-0000000FF1CE}_Office14.SingleImage_{A0657506-69DC-44AE-8DC1-58E7C6F5B1C9}) (Version:  - Microsoft)
Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{2AB483F1-C86E-427A-83B4-23889B03512D}) (Version:  - Microsoft)
Update for Microsoft PowerPoint 2010 (KB2837579) 32-Bit Edition (HKLM\...\{90140000-0018-0407-0000-0000000FF1CE}_Office14.SingleImage_{40EC8FB1-5202-469D-9232-C28FB1C6FC64}) (Version:  - Microsoft)
Update for Microsoft PowerPoint 2010 (KB2837579) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{2BA40F82-F3A4-441C-BF1A-ED4C42FF4872}) (Version:  - Microsoft)
Update for Microsoft Visio 2010 (KB2880526) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{7B29D8B8-6A87-496C-A65E-B935E740448A}) (Version:  - Microsoft)
Update for Microsoft Visio Viewer 2010 (KB2837587) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{38CF30E4-3348-4BD1-A859-B630C355A56F}) (Version:  - Microsoft)
Update for Microsoft Word 2010 (KB2880529) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{B9B89E01-5B6B-4F73-BC34-B2C0D8ACB4CD}) (Version:  - Microsoft)
VIO (Version: 1.6.1.240 - Corel Corporation) Hidden
Windows Live Call (Version: 14.0.8064.0206 - Microsoft Corporation) Hidden
Windows Live Communications Platform (Version: 14.0.8064.206 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM\...\WinLiveSuite_Wave3) (Version: 14.0.8089.0726 - Microsoft Corporation)
Windows Live Essentials (Version: 14.0.8089.726 - Microsoft Corporation) Hidden
Windows Live Fotogalerie (Version: 14.0.8081.709 - Microsoft Corporation) Hidden
Windows Live ID-Anmelde-Assistent (HKLM\...\{10A44844-4465-456E-8C97-80BDD4F68845}) (Version: 6.500.3146.0 - Microsoft Corporation)
Windows Live Mail (Version: 14.0.8089.0726 - Microsoft Corporation) Hidden
Windows Live Messenger (Version: 14.0.8089.0726 - Microsoft Corporation) Hidden
Windows Live Movie Maker (Version: 14.0.8091.0730 - Microsoft Corporation) Hidden
Windows Live Sync (HKLM\...\{76618402-179D-4699-A66B-D351C59436BC}) (Version: 14.0.8089.726 - Microsoft Corporation)
Windows Live Writer (Version: 14.0.8089.0726 - Microsoft Corporation) Hidden
Windows Live-Uploadtool (HKLM\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)
Windows Media Encoder 9 Series (HKLM\...\Windows Media Encoder 9) (Version:  - )
Windows Media Encoder 9 Series (Version: 9.00.2980 - Microsoft Corporation) Hidden
X10 Hardware(TM) (HKLM\...\X10Hardware) (Version:  - )

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points  =========================

23-09-2014 18:40:39 Windows Update
26-09-2014 15:28:30 Installed Samsung Kies3
28-09-2014 07:22:51 Windows Update
02-10-2014 16:21:09 Installed Samsung Kies3
04-10-2014 13:49:32 Windows Update
04-10-2014 14:50:47 Windows Update
04-10-2014 15:07:50 Free-Jahreskalender 2011 wird entfernt
04-10-2014 15:08:21 Removed pdfforge Toolbar v9.7.
04-10-2014 15:10:36 Nokia Connectivity Cable Driver wird entfernt
04-10-2014 15:11:27 COMPUTERBILD-Abzockschutz wird entfernt
04-10-2014 15:13:40 COMPUTERBILD Security Inspector wird entfernt
04-10-2014 15:14:12 COMPUTERBILD-PC-Schnellstarter wird entfernt
04-10-2014 15:15:31 Entfernt PhotoImpression
04-10-2014 15:21:33 Konfiguriert PowerDVD
04-10-2014 15:23:38 Konfiguriert LabelPrint
04-10-2014 15:24:49 Konfiguriert YouCam
04-10-2014 15:27:30 Konfiguriert PowerDirector
04-10-2014 15:30:37 Konfiguriert MediaShow
04-10-2014 15:33:45 Konfiguriert PhotoNow
04-10-2014 15:34:49 Konfiguriert Power2Go
04-10-2014 15:36:20 Konfiguriert PowerDVD Copy
04-10-2014 15:37:27 Konfiguriert PowerProducer
04-10-2014 15:40:59 Turbo Lister 2 wurde entfernt.
04-10-2014 15:44:09 Windows Update
04-10-2014 16:52:02 avast! antivirus system restore point
05-10-2014 10:11:04 PC Connectivity Solution wird entfernt

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:04 - 2014-10-04 17:05 - 00000825 ____N C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {01C87EC4-050B-4E9C-9C66-A7D2DB16C85E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2010-04-29] (Google Inc.)
Task: {1D27FBBE-5459-4648-93A6-9681A0E130AB} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2010-04-29] (Google Inc.)
Task: {4020C619-E45F-4998-9530-9C28BD525FCE} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance => C:\Program Files\TuneUp Utilities 2010\OneClick.exe
Task: {41D0C06B-B601-47DB-A533-44AD35B62B60} - System32\Tasks\Adobe Reader and Acrobat Manager => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04] (Adobe Systems Incorporated)
Task: {5DE869E9-888B-4B8A-A098-6481EDBC6CF7} - System32\Tasks\{BCD0BCD2-8EF0-4CFA-8668-0D40799CA9F3} => C:\Users\max10\Downloads\avast_free_antivirus_setup_9.0.2021 (1).exe
Task: {6136787E-D532-440D-926B-25307504972A} - System32\Tasks\HPCustParticipation HP Deskjet 1000 J110 series => C:\Program Files\HP\HP Deskjet 1000 J110 series\Bin\HPCustPartic.exe [2010-11-16] (Hewlett-Packard Co.)
Task: {728C243B-842F-430D-89F3-109CF724279D} - System32\Tasks\Registration 1und1 Task => C:\Program Files\1und1Softwareaktualisierung\cdsupdclient.exe [2011-06-08] (1&1 Mail & Media GmbH)
Task: {B028C078-8744-45F9-8E93-583451C39F06} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 => C:\Program Files\TuneUp Utilities 2014\OneClick.exe [2013-10-30] (TuneUp Software)
Task: {B5B36376-79ED-4E5F-B042-990B476B6487} - System32\Tasks\{D373ABD3-07BA-4140-B261-BDF3214B63D9} => C:\Users\max10\Downloads\avast_free_antivirus_setup_9.0.2021 (1).exe
Task: {B74619E9-705F-48BC-AA4B-2A0663380846} - System32\Tasks\HP-Online-Aktualisierungsprogramm => C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [2010-06-09] (Hewlett-Packard)
Task: {C742DECC-C0F2-4897-AC20-32F3F8B5C0D0} - System32\Tasks\Nero\Nero Info => C:\Program Files\Common Files\Nero\Nero Info\NeroInfo.exe [2014-07-21] (Nero AG)
Task: {E22E65E3-0512-418A-84D2-13365CBBD080} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-10-04] (AVAST Software)
Task: {F4BF60C3-1578-4481-ADF2-28337E0A50E0} - System32\Tasks\1und1 Konfiguration => C:\ProgramData\1und1InternetExplorerAddon\ConfigTask.exe [2011-04-19] (1und1 Mail und Media GmbH)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) =============

2014-10-04 18:53 - 2014-10-04 18:53 - 00301152 _____ () C:\Program Files\AVAST Software\Avast\aswProperty.dll
2014-10-04 18:57 - 2014-10-04 18:57 - 02859008 _____ () C:\Program Files\AVAST Software\Avast\defs\14100400\algo.dll
2014-10-05 11:31 - 2014-10-05 11:31 - 02859008 _____ () C:\Program Files\AVAST Software\Avast\defs\14100500\algo.dll
2008-09-08 11:19 - 2008-09-08 11:19 - 00022723 _____ () C:\Windows\System32\cl31cl3.dll
2011-02-13 17:59 - 2001-10-28 17:42 - 00116224 _____ () C:\Windows\System32\pdfcmnnt.dll
2013-02-08 18:18 - 2011-04-25 13:25 - 00024064 _____ () C:\Windows\System32\ssj1mlm.dll
2012-03-09 20:32 - 2007-05-31 08:38 - 00167936 ____N () C:\Windows\system32\SerialXP.dll
2011-08-08 14:35 - 2011-08-08 14:35 - 00018200 _____ () c:\Program Files\Ocster Backup\bin\backupService-ox.exe
2011-08-08 14:35 - 2011-08-08 14:35 - 00072472 _____ () c:\Program Files\Ocster Backup\bin\backupServiceLib.dll
2011-08-08 14:35 - 2011-08-08 14:35 - 05558040 _____ () c:\Program Files\Ocster Backup\bin\backupCore.dll
2011-08-08 14:35 - 2011-08-08 14:35 - 00113432 _____ () c:\Program Files\Ocster Backup\bin\deemon.dll
2011-08-08 14:34 - 2011-08-08 14:34 - 01921304 _____ () c:\Program Files\Ocster Backup\bin\ox.dll
2011-08-08 14:34 - 2011-08-08 14:34 - 00135448 _____ () c:\Program Files\Ocster Backup\bin\netutil.dll
2011-08-08 14:34 - 2011-08-08 14:34 - 00037656 _____ () c:\Program Files\Ocster Backup\bin\lzmaUtil.dll
2011-06-29 16:07 - 2011-06-29 16:07 - 00040960 _____ () c:\Program Files\Ocster Backup\bin\lzma.dll
2011-08-08 14:34 - 2011-08-08 14:34 - 00301336 _____ () c:\Program Files\Ocster Backup\bin\twirl.dll
2011-06-26 01:23 - 2011-06-26 01:23 - 00061952 _____ () c:\Program Files\Ocster Backup\bin\zdll.dll
2011-08-08 14:34 - 2011-08-08 14:34 - 00245016 _____ () c:\Program Files\Ocster Backup\bin\tomb.dll
2011-08-08 14:35 - 2011-08-08 14:35 - 00076568 _____ () c:\Program Files\Ocster Backup\bin\scoolite.dll
2011-06-29 16:06 - 2011-06-29 16:06 - 00438784 _____ () c:\Program Files\Ocster Backup\bin\sqlite.dll
2013-10-30 11:46 - 2013-10-30 11:46 - 00501560 _____ () C:\Program Files\TuneUp Utilities 2014\avgreplibx.dll
2011-06-29 17:04 - 2011-06-29 17:04 - 00030720 _____ () c:\Program Files\Ocster Backup\bin\oxHelper.exe
2001-03-21 03:01 - 2001-03-21 03:01 - 00024576 ____N () C:\Program Files\PC-Zeit\PCZeitH.DLL
2001-03-21 03:01 - 2001-03-21 03:01 - 00032768 ____N () C:\Program Files\PC-Zeit\trap.exe
2011-08-08 14:35 - 2011-08-08 14:35 - 00310040 _____ () C:\Program Files\Ocster Backup\bin\backupClient-ox.exe
2011-08-08 14:35 - 2011-08-08 14:35 - 03109656 _____ () C:\Program Files\Ocster Backup\bin\backupClientLib.dll
2011-08-08 14:35 - 2011-08-08 14:35 - 00262424 _____ () C:\Program Files\Ocster Backup\bin\updateman.dll
2011-08-08 14:34 - 2011-08-08 14:34 - 00301336 _____ () C:\Program Files\Ocster Backup\bin\twirl.dll
2011-06-26 01:23 - 2011-06-26 01:23 - 00061952 _____ () C:\Program Files\Ocster Backup\bin\zdll.dll
2011-08-08 14:34 - 2011-08-08 14:34 - 00245016 _____ () C:\Program Files\Ocster Backup\bin\tomb.dll
2011-08-08 14:34 - 2011-08-08 14:34 - 01921304 _____ () C:\Program Files\Ocster Backup\bin\ox.dll
2011-08-08 14:35 - 2011-08-08 14:35 - 05558040 _____ () C:\Program Files\Ocster Backup\bin\backupCore.dll
2011-08-08 14:35 - 2011-08-08 14:35 - 00113432 _____ () C:\Program Files\Ocster Backup\bin\deemon.dll
2011-08-08 14:34 - 2011-08-08 14:34 - 00135448 _____ () C:\Program Files\Ocster Backup\bin\netutil.dll
2011-08-08 14:34 - 2011-08-08 14:34 - 00037656 _____ () C:\Program Files\Ocster Backup\bin\lzmaUtil.dll
2011-06-29 16:07 - 2011-06-29 16:07 - 00040960 _____ () C:\Program Files\Ocster Backup\bin\lzma.dll
2011-08-08 14:35 - 2011-08-08 14:35 - 00076568 _____ () C:\Program Files\Ocster Backup\bin\scoolite.dll
2011-06-29 16:06 - 2011-06-29 16:06 - 00438784 _____ () C:\Program Files\Ocster Backup\bin\sqlite.dll
2011-08-08 14:35 - 2011-08-08 14:35 - 00104216 _____ () C:\Program Files\Ocster Backup\bin\featback.dll
2010-12-17 19:12 - 2010-12-17 19:12 - 00332288 _____ () C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
2010-12-17 19:13 - 2010-12-17 19:13 - 00049664 _____ () C:\Program Files\Common Files\Common Desktop Agent\CDASrvPS.dll
2014-10-04 18:53 - 2014-10-04 18:53 - 19329904 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2010-05-06 17:35 - 2009-11-16 11:11 - 00318464 _____ () C:\Program Files\T-Online\T-Online_Software_6\Info-Cockpit\InfoCockpit.SkinManager.dll
2014-09-26 17:11 - 2014-09-23 06:06 - 01098056 _____ () C:\Program Files\Google\Chrome\Application\37.0.2062.124\libglesv2.dll
2014-09-26 17:11 - 2014-09-23 06:06 - 00174408 _____ () C:\Program Files\Google\Chrome\Application\37.0.2062.124\libegl.dll
2014-09-26 17:11 - 2014-09-23 06:07 - 08577864 _____ () C:\Program Files\Google\Chrome\Application\37.0.2062.124\pdf.dll
2014-09-26 17:11 - 2014-09-23 06:07 - 00331592 _____ () C:\Program Files\Google\Chrome\Application\37.0.2062.124\ppGoogleNaClPluginChrome.dll
2014-09-26 17:11 - 2014-09-23 06:06 - 01660232 _____ () C:\Program Files\Google\Chrome\Application\37.0.2062.124\ffmpegsumo.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)


========================= Accounts: ==========================

Administrator (S-1-5-21-3927600971-491131981-4261967890-500 - Administrator - Disabled)
Gast (S-1-5-21-3927600971-491131981-4261967890-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3927600971-491131981-4261967890-1004 - Limited - Enabled)
max10 (S-1-5-21-3927600971-491131981-4261967890-1000 - Administrator - Enabled) => C:\Users\max10
_ocster_backup_ (S-1-5-21-3927600971-491131981-4261967890-1001 - Administrator - Enabled) => C:\Users\_ocster_backup_

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (10/04/2014 06:52:03 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer".


Details:
AddLegacyDriverFiles: Unable to back up image of binary umbxhaqg.

System Error:
Das System kann die angegebene Datei nicht finden.
.

Error: (10/04/2014 06:52:01 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Abfragen nach der Schnittstelle "IVssWriterCallback" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070005, Zugriff verweigert
.
Die Ursache hierfür ist oft eine falsche Sicherheitseinstellung im Schreib- oder Anfrageprozess.


Vorgang:
   Generatordaten werden gesammelt

Kontext:
   Generatorklassen-ID: {e8132975-6f93-4464-a53e-1050253ae220}
   Generatorname: System Writer
   Generatorinstanz-ID: {201cc11c-63cf-4541-ae27-5db15bba7201}

Error: (10/04/2014 05:10:02 PM) (Source: MsiInstaller) (EventID: 10005) (User: laptop2)
Description: Produkt: Ask Toolbar -- Fehler 25001. Die folgenden Anwendungen sollten geschlossen werden, bevor Sie mit der Deinstallation fortfahren: 

Internet Explorer

Error: (10/04/2014 04:05:22 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: OUTLOOK.EXE, Version: 11.0.8326.0, Zeitstempel: 0x4c1c2372
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18247, Zeitstempel: 0x521ea91c
Ausnahmecode: 0xc0000374
Fehleroffset: 0x000c3873
ID des fehlerhaften Prozesses: 0x2584
Startzeit der fehlerhaften Anwendung: 0xOUTLOOK.EXE0
Pfad der fehlerhaften Anwendung: OUTLOOK.EXE1
Pfad des fehlerhaften Moduls: OUTLOOK.EXE2
Berichtskennung: OUTLOOK.EXE3

Error: (10/02/2014 10:45:00 AM) (Source: Application Error) (EventID: 1005) (User: )
Description: Aus einem der folgenden Gründe kann nicht auf die Datei "" zugegriffen werden:
Es besteht ein Problem mit der Netzwerkverbindung, dem Datenträger mit der gespeicherten Datei bzw. den auf dem Computer installierten
Speichertreibern, oder der Datenträger fehlt.
Das Programm Microsoft Office Outlook wurde wegen dieses Fehlers geschlossen.

Programm: Microsoft Office Outlook
Datei: 

Der Fehlerwert ist im Abschnitt "Zusätzliche Dateien" aufgelistet.
Benutzeraktion
1. Öffnen Sie die Datei erneut.
Diese Situation ist eventuell ein temporäres Problem, das selbstständig behoben wird, wenn das Programm erneut ausgeführt wird.
2.
Wenn Sie weiterhin nicht auf die Datei zugreifen können und
	- diese sich im Netzwerk befindet, 
dann sollte der Netzwerkadministrator überprüfen, dass kein Netzwerkproblem besteht und dass eine Verbindung mit dem Server hergestellt werden kann.
	- diese sich auf einem Wechseldatenträger, wie z. B. einer Diskette oder einer CD, befindet, überprüfen Sie, ob der Datenträger richtig in den Computer eingelegt ist.
3. Überprüfen und reparieren Sie das Dateisystem, indem Sie CHKDSK ausführen. Klicken Sie dazu im Menü "Start" auf "Ausführen", geben Sie CMD ein, und klicken Sie auf "OK". Geben Sie an der Eingabeaufforderung CHKDSK /F ein, und drücken Sie die EINGABETASTE.
4. Stellen Sie die Datei von einer Sicherungskopie wieder her, wenn das Problem weiterhin besteht.
5. Überprüfen Sie, ob andere Dateien auf demselben Datenträger geöffnet werden können. Falls dies nicht möglich ist, ist der Datenträger eventuell beschädigt. 
Wenden Sie sich an den Administrator oder den Hersteller der Computerhardware, um weitere Unterstützung zu erhalten, wenn es sich um eine Festplatte handelt.

Zusätzliche Daten
Fehlerwert: 00000000
Datenträgertyp: 0

Error: (10/02/2014 10:45:00 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: OUTLOOK.EXE, Version: 11.0.8326.0, Zeitstempel: 0x4c1c2372
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc0000096
Fehleroffset: 0x0059bfd9
ID des fehlerhaften Prozesses: 0xa68
Startzeit der fehlerhaften Anwendung: 0xOUTLOOK.EXE0
Pfad der fehlerhaften Anwendung: OUTLOOK.EXE1
Pfad des fehlerhaften Moduls: OUTLOOK.EXE2
Berichtskennung: OUTLOOK.EXE3

Error: (09/30/2014 05:18:12 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: OUTLOOK.EXE, Version: 11.0.8326.0, Zeitstempel: 0x4c1c2372
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc0000005
Fehleroffset: 0x5c6b7e68
ID des fehlerhaften Prozesses: 0x8dc
Startzeit der fehlerhaften Anwendung: 0xOUTLOOK.EXE0
Pfad der fehlerhaften Anwendung: OUTLOOK.EXE1
Pfad des fehlerhaften Moduls: OUTLOOK.EXE2
Berichtskennung: OUTLOOK.EXE3

Error: (09/30/2014 04:25:18 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: OUTLOOK.EXE, Version: 11.0.8326.0, Zeitstempel: 0x4c1c2372
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc0000005
Fehleroffset: 0x005a4349
ID des fehlerhaften Prozesses: 0x20d4
Startzeit der fehlerhaften Anwendung: 0xOUTLOOK.EXE0
Pfad der fehlerhaften Anwendung: OUTLOOK.EXE1
Pfad des fehlerhaften Moduls: OUTLOOK.EXE2
Berichtskennung: OUTLOOK.EXE3

Error: (09/26/2014 05:31:16 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm Corel Paint Shop Pro Photo.exe, Version 13.0.0.1 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: 2454

Startzeit: 01cfd99eb55fb2c5

Endzeit: 62

Anwendungspfad: C:\Program Files\Corel\Corel PaintShop Photo Pro\X3\PSPClassic\Corel Paint Shop Pro Photo.exe

Berichts-ID: 1fa175fd-4592-11e4-8f63-00262df7622c

Error: (09/26/2014 05:10:29 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: Kies.exe, Version: 1.0.0.1521, Zeitstempel: 0x526de865
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc0000005
Fehleroffset: 0x07e345fe
ID des fehlerhaften Prozesses: 0x11d8
Startzeit der fehlerhaften Anwendung: 0xKies.exe0
Pfad der fehlerhaften Anwendung: Kies.exe1
Pfad des fehlerhaften Moduls: Kies.exe2
Berichtskennung: Kies.exe3


System errors:
=============
Error: (10/05/2014 11:31:15 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Intel(R) Rapid Storage Technology" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1053

Error: (10/05/2014 11:31:15 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Intel(R) Rapid Storage Technology erreicht.

Error: (10/04/2014 05:59:52 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Windows Search" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1053

Error: (10/04/2014 05:59:52 PM) (Source: DCOM) (EventID: 10005) (User: )
Description: 1053WSearch{9E175B6D-F52A-11D8-B9A5-505054503030}

Error: (10/04/2014 05:59:50 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Windows Search erreicht.

Error: (10/04/2014 04:43:08 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}

Error: (09/28/2014 10:18:27 AM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Der Dienst "Windows Update" wurde nicht richtig gestartet.

Error: (09/26/2014 07:02:58 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Der Dienst "Intel(R) Management & Security Application User Notification Service" wurde nicht richtig gestartet.

Error: (09/26/2014 06:57:38 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Norton Internet Security CBE" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1053

Error: (09/26/2014 06:57:38 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Norton Internet Security CBE erreicht.


Microsoft Office Sessions:
=========================
Error: (10/04/2014 06:52:03 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: 
Details:
AddLegacyDriverFiles: Unable to back up image of binary umbxhaqg.

System Error:
Das System kann die angegebene Datei nicht finden.

Error: (10/04/2014 06:52:01 PM) (Source: VSS) (EventID: 8194) (User: )
Description: 0x80070005, Zugriff verweigert


Vorgang:
   Generatordaten werden gesammelt

Kontext:
   Generatorklassen-ID: {e8132975-6f93-4464-a53e-1050253ae220}
   Generatorname: System Writer
   Generatorinstanz-ID: {201cc11c-63cf-4541-ae27-5db15bba7201}

Error: (10/04/2014 05:10:02 PM) (Source: MsiInstaller) (EventID: 10005) (User: laptop2)
Description: Produkt: Ask Toolbar -- Fehler 25001. Die folgenden Anwendungen sollten geschlossen werden, bevor Sie mit der Deinstallation fortfahren: 

Internet Explorer	(NULL)(NULL)(NULL)(NULL)(NULL)

Error: (10/04/2014 04:05:22 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: OUTLOOK.EXE11.0.8326.04c1c2372ntdll.dll6.1.7601.18247521ea91cc0000374000c3873258401cfdfd91673d767C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXEC:\Windows\SYSTEM32\ntdll.dll7a7bdf97-4bcf-11e4-9fc0-00262df7622c

Error: (10/02/2014 10:45:00 AM) (Source: Application Error) (EventID: 1005) (User: )
Description: Microsoft Office Outlook000000000

Error: (10/02/2014 10:45:00 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: OUTLOOK.EXE11.0.8326.04c1c2372unknown0.0.0.000000000c00000960059bfd9a6801cfde1cc4ac3bfdC:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXEunknown64b54389-4a10-11e4-9fc0-00262df7622c

Error: (09/30/2014 05:18:12 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: OUTLOOK.EXE11.0.8326.04c1c2372unknown0.0.0.000000000c00000055c6b7e688dc01cfdcbd31502c07C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXEunknownfd6e04a6-48b4-11e4-9fc0-00262df7622c

Error: (09/30/2014 04:25:18 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: OUTLOOK.EXE11.0.8326.04c1c2372unknown0.0.0.000000000c0000005005a434920d401cfdb46a0a4274bC:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXEunknown9a0038fe-48ad-11e4-9fc0-00262df7622c

Error: (09/26/2014 05:31:16 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Corel Paint Shop Pro Photo.exe13.0.0.1245401cfd99eb55fb2c562C:\Program Files\Corel\Corel PaintShop Photo Pro\X3\PSPClassic\Corel Paint Shop Pro Photo.exe1fa175fd-4592-11e4-8f63-00262df7622c

Error: (09/26/2014 05:10:29 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Kies.exe1.0.0.1521526de865unknown0.0.0.000000000c000000507e345fe11d801cfcea7e2b58520C:\Program Files\Samsung\Kies\Kies.exeunknown3fc0bacb-458f-11e4-8f63-00262df7622c


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i3 CPU M 330 @ 2.13GHz
Percentage of memory in use: 48%
Total physical RAM: 3510.6 MB
Available physical RAM: 1809.51 MB
Total Pagefile: 7019.49 MB
Available Pagefile: 5036.46 MB
Total Virtual: 2047.88 MB
Available Virtual: 1905.63 MB

==================== Drives ================================

Drive c: (Boot) (Fixed) (Total:424.66 GB) (Free:340.98 GB) NTFS
Drive d: (Recover) (Fixed) (Total:40 GB) (Free:20.45 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: 50BFC7F2)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=424.7 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=40 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=1 GB) - (Type=12)

==================== End Of Log ============================
         
__________________

Alt 06.10.2014, 11:56   #4
schrauber
/// the machine
/// TB-Ausbilder
 

Avast mit 2 Funden - Standard

Avast mit 2 Funden



Schau mal bitte ob du in Avast nen Log oder ne Anzeige findest wo ich sehe, was gefunden wurde.
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Antwort

Themen zu Avast mit 2 Funden
2 infizierte dateien, avast, container, dateien, durchgeführt, fehlercode 0xc0000005, fehlercode 0xc0000096, fehlercode 0xc0000374, funde, gefunde, gestern, infizierte, infizierte dateien, komplette, kompletten, laptop, log, log datei, scan, windows, windows 7



Ähnliche Themen: Avast mit 2 Funden


  1. Komplette Adware und Toolbarverseuchung mit ca. 2000 Funden beim ersten Check...
    Log-Analyse und Auswertung - 01.08.2014 (18)
  2. Avast-Meldung: BSI Warnung (Identitätsdiebstahl) u. Virenfund v. Avast (HTML:Downloader-FG (Expl))
    Log-Analyse und Auswertung - 29.04.2014 (8)
  3. Win7 nach AntiVir Funden "TR/Crypt.zpack.Gen7" und "Adspy.Gen2" stark verlangsamt
    Log-Analyse und Auswertung - 13.04.2014 (28)
  4. Virenbefall mit bisher unbekannt vielen Funden
    Plagegeister aller Art und deren Bekämpfung - 14.01.2014 (19)
  5. Malwarebytes mit extrem vielen Funden
    Log-Analyse und Auswertung - 10.09.2013 (3)
  6. Firefox und IE funktionieren nach Kaspersky-Funden nicht mehr.
    Plagegeister aller Art und deren Bekämpfung - 30.11.2012 (37)
  7. Entdeckung von zwei Funden SecurityHijack und Trojaner
    Plagegeister aller Art und deren Bekämpfung - 18.10.2012 (2)
  8. Wichtig: Bitte alle Logs mit Funden posten
    Anleitungen, FAQs & Links - 06.10.2012 (4)
  9. malewarebytes scan mit vielen funden
    Log-Analyse und Auswertung - 19.05.2012 (20)
  10. Avast- kein Avast Internet Security-Programm Update möglich 29.02.2012
    Plagegeister aller Art und deren Bekämpfung - 05.03.2012 (3)
  11. OTL.exe mit diversen Funden - konfuse Situation
    Log-Analyse und Auswertung - 28.12.2011 (50)
  12. Probleme mit verschiedenen Funden
    Plagegeister aller Art und deren Bekämpfung - 25.10.2011 (30)
  13. AntiVir mit 35 Funden, Trojaner in C:\WINDOWS\system32\ *.dll
    Plagegeister aller Art und deren Bekämpfung - 05.10.2010 (25)
  14. mas.exe & a/b/c.exe entfernt, HJT clean, wie mit Funden von MWB Anti-Malware umgehen?
    Plagegeister aller Art und deren Bekämpfung - 11.08.2009 (12)
  15. escan mit wiederkehrenden funden?
    Log-Analyse und Auswertung - 30.09.2007 (6)

Zum Thema Avast mit 2 Funden - Hallo, ich habe gestern einen kompletten Scan mit Avast durchgeführt der 2 infizierte Dateien gefunden hat. Ich habe die Dateien in den Container verschoben. Ich benutze einen Windows 7 Laptop, - Avast mit 2 Funden...
Archiv
Du betrachtest: Avast mit 2 Funden auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.