Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: lollipop werde ich nicht los, trotz Einsatz aller angeblich so tollen Antiviernprogramme postiver Erkennung unter "Schrauber "

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML

Antwort
Alt 19.11.2014, 14:35   #16
schrauber
/// the machine
/// TB-Ausbilder
 

lollipop werde ich nicht los, trotz Einsatz aller angeblich so tollen Antiviernprogramme postiver Erkennung unter "Schrauber " - Standard

lollipop werde ich nicht los, trotz Einsatz aller angeblich so tollen Antiviernprogramme postiver Erkennung unter "Schrauber "



Zitat:
vielen Dank schlechte Verbindung, Geduld erforderlich von meiner Seite. Explorer nach Sicherheitsupdate Änderungen ohne Lollipop. freundliche Grüsse Günther
what?

Heisst das Probleme sind weg oder wie?
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 19.11.2014, 20:15   #17
ggoettling
 
lollipop werde ich nicht los, trotz Einsatz aller angeblich so tollen Antiviernprogramme postiver Erkennung unter "Schrauber " - Standard

lollipop werde ich nicht los, trotz Einsatz aller angeblich so tollen Antiviernprogramme postiver Erkennung unter "Schrauber "



Hallo Schrauber windows Explorer lollipop weg , aber bei Fifefox
noch voll da mit Werbung und "Empfehlungen" freundliche Gruesse
Guenther scheint ausschliesslich ein Browserproblem zu sein
__________________


Alt 20.11.2014, 16:35   #18
schrauber
/// the machine
/// TB-Ausbilder
 

lollipop werde ich nicht los, trotz Einsatz aller angeblich so tollen Antiviernprogramme postiver Erkennung unter "Schrauber " - Standard

lollipop werde ich nicht los, trotz Einsatz aller angeblich so tollen Antiviernprogramme postiver Erkennung unter "Schrauber "



Revo Uninstaller - Download - Filepony
damit Firefox deinstallieren, keine Daten behalten, Reste entfernen lassen, neu installieren.

Dann:
https://support.mozilla.org/de/kb/fi...einfach-loesen


Jetzt bitte ein frisches FRST log. Problem noch da?
__________________
__________________

Alt 21.11.2014, 11:46   #19
ggoettling
 
lollipop werde ich nicht los, trotz Einsatz aller angeblich so tollen Antiviernprogramme postiver Erkennung unter "Schrauber " - Standard

lollipop werde ich nicht los, trotz Einsatz aller angeblich so tollen Antiviernprogramme postiver Erkennung unter "Schrauber "



Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 20-11-2014
Ran by schingels at 2014-11-21 10:52:09
Running from D:\Users\Downloads
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: McAfee Anti-Virus und Anti-Spyware (Enabled - Up to date) {ADA629C7-7F48-5689-624A-3B76997E0892}
AS: McAfee Anti-Virus und Anti-Spyware (Enabled - Up to date) {16C7C823-5972-5907-58FA-0004E2F9422F}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: McAfee Firewall (Enabled) {959DA8E2-3527-57D1-4915-924367AD4FE9}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

1&1 Surf-Stick (HKLM-x32\...\{A9E5EDA7-2E6C-49E7-924B-A32B89C24A04}) (Version: 1.0.0.2 - )
1&1 Upload-Manager (HKLM-x32\...\1&1 Upload-Manager) (Version: 2.0.676 - 1&1 Internet AG)
Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.223 - Adobe Systems Incorporated)
Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.223 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.09) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.09 - Adobe Systems Incorporated)
ALF-BanCo 5 (HKLM-x32\...\Alf-BanCo5_is1) (Version: 5.3.5 - ALF AG)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Ashampoo Burning Studio 2012 v10.0.15 (HKLM-x32\...\Ashampoo Burning Studio 2012_is1) (Version: 10.0.15 - Ashampoo GmbH & Co. KG)
Ashampoo Internet Accelerator 3 v.3.30 (HKLM-x32\...\{4209F371-C803-200D-89A4-5479B6569259}_is1) (Version: 3.3.0 - Ashampoo GmbH & Co. KG)
Ashampoo Photo Commander 9 v.9.4.3 (HKLM-x32\...\Ashampoo Photo Commander 9_is1) (Version: 9.4.3 - Ashampoo GmbH & Co. KG)
Ashampoo Photo Optimizer 4 v.4.0.3 (HKLM-x32\...\Ashampoo Photo Optimizer 4_is1) (Version: 4.0.3 - Ashampoo GmbH & Co. KG)
Ashampoo WinOptimizer 11 v.11.00.41 (HKLM-x32\...\{4209F371-8D72-8119-66FA-897D2D41E27F}_is1) (Version: 11.00.41 - Ashampoo GmbH & Co. KG)
Ashampoo WinOptimizer 2014 v.1.0.0 (HKLM-x32\...\{4209F371-99CD-68CB-1C29-9910F8F9BD96}_is1) (Version: 1.0.0 - Ashampoo GmbH & Co. KG)
ASUS LifeFrame3 (HKLM-x32\...\{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}) (Version: 3.0.22 - ASUS)
ASUS Power4Gear Hybrid (HKLM\...\{33B98264-A889-4913-A0CA-C364A75032B3}) (Version: 1.1.45 - ASUS)
ASUS SmartLogon (HKLM-x32\...\{64452561-169F-4A36-A2FF-B5E118EC65F5}) (Version: 1.0.0011 - ASUS)
ASUS Splendid Video Enhancement Technology (HKLM-x32\...\{0969AF05-4FF6-4C00-9406-43599238DE0D}) (Version: 1.02.0031 - ASUS)
ASUS USB Charger Plus (HKLM-x32\...\{AECA3622-E634-4A55-A696-70A511CBE06E}) (Version: 2.0.0 - AsusTek Computer Inc.)
ASUS Virtual Camera (HKLM-x32\...\{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}) (Version: 1.0.21 - asus)
AVG PC TuneUp 2015 (de-DE) (x32 Version: 15.0.1001.185 - AVG Technologies) Hidden
AVG PC TuneUp 2015 (HKLM-x32\...\AVG PC TuneUp) (Version: 15.0.1001.185 - AVG Technologies)
AVG PC TuneUp 2015 (x32 Version: 15.0.1001.185 - AVG Technologies) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 3.22 - Piriform)
COMPUTERBILD-Abzockschutz (HKLM-x32\...\{2664E454-FECE-42E9-A7EF-6B5EB62AC67B}) (Version: 1.0.58 - J3S)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
ETDWare PS/2-X64 8.0.5.1_WHQL (HKLM\...\Elantech) (Version: 8.0.5.1 - ELAN Microelectronic Corp.)
Fast Boot (HKLM\...\{13F4A7F3-EABC-4261-AF6B-1317777F0755}) (Version: 1.0.9 - ASUS)
FileViewPro (HKLM\...\FileViewPro_is1) (Version: 4.0 - Solvusoft Corporation)
Free PDF to Word Doc Converter v1.1 (HKLM-x32\...\Free PDF to Word Doc Converter_is1) (Version: 1.1 - www.hellopdf.com)
Galeria de Fotografias do Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galería fotográfica de Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galerie de photos Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Google Update Helper (x32 Version: 1.3.21.153 - Google Inc.) Hidden
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.3347 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.1.2.1004 - Intel Corporation)
Intel(R) Turbo Boost Technology Monitor 2.0 (HKLM\...\{B77EFA0B-9BD3-4122-9F9A-15A963B5EA24}) (Version: 2.1.23.0 - Intel)
IObit Uninstaller (HKLM-x32\...\IObitUninstall) (Version: 4.0.4.30 - IObit)
iTunes (HKLM\...\{1CF5754A-545B-4360-BFDE-2847BC728DFC}) (Version: 11.2.0.115 - Apple Inc.)
Java 7 Update 67 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F06417067FF}) (Version: 7.0.670 - Oracle)
Java 7 Update 67 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217067FF}) (Version: 7.0.670 - Oracle)
Java 8 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation)
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
McAfee Internet Security (HKLM-x32\...\MSC) (Version: 12.8.992 - McAfee, Inc.)
McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.8.150.1 - McAfee, Inc.)
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Office 365 - de-de (HKLM\...\O365HomePremRetail - de-de) (Version: 15.0.4659.1001 - Microsoft Corporation)
Microsoft Office Klick-und-Los 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Starter 2010 - Deutsch (HKLM-x32\...\{90140011-0066-0407-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-733679015-3351541572-3055150241-1001\...\OneDriveSetup.exe) (Version: 17.3.1229.0918 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Mobile Partner (HKLM-x32\...\Mobile Partner) (Version: 21.005.15.02.382 - Huawei Technologies Co.,Ltd)
Mozilla Firefox 33.0.3 (x86 de) (HKLM-x32\...\Mozilla Firefox 33.0.3 (x86 de)) (Version: 33.0.3 - Mozilla)
Mozilla Firefox 33.1.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 33.1.1 (x86 de)) (Version: 33.1.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 33.0.3 - Mozilla)
NVIDIA 3D Vision Treiber 314.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 314.22 - NVIDIA Corporation)
NVIDIA Grafiktreiber 314.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 314.22 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.23.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.23.1 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.12.1031 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.1031 - NVIDIA Corporation)
NVIDIA Update 1.12.12 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.12.12 - NVIDIA Corporation)
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4659.1001 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4659.1001 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4659.1001 - Microsoft Corporation) Hidden
Paragon Backup and Recovery™ 2014 Free (HKLM\...\{C268B5E1-A5DA-11DF-A289-005056C00008}) (Version: 90.00.0003 - Paragon Software)
Raccolta foto di Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6370 - Realtek Semiconductor Corp.)
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
Ship Simulator Extremes (HKLM-x32\...\ShipSimExtremes) (Version:  - )
System Requirements Lab (HKLM-x32\...\SystemRequirementsLab) (Version:  - )
TapinRadio 1.60.1 (HKU\S-1-5-21-733679015-3351541572-3055150241-1001\...\TapinRadio_is1) (Version:  - Raimersoft)
TomTom HOME (HKLM-x32\...\{7A2BB1C8-903D-4585-9F3B-CADD67D07D37}) (Version: 2.9.8 - Ihr Firmenname)
TomTom HOME Visual Studio Merge Modules (HKLM-x32\...\{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}) (Version: 1.0.2 - TomTom International B.V.)
TuneUp Utilities Language Pack (de-DE) (x32 Version: 13.0.4000.245 - TuneUp Software) Hidden
VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden
VLC media player 2.1.3 (HKLM-x32\...\VLC media player) (Version: 2.1.3 - VideoLAN)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3508.1109 - Microsoft Corporation)
Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (HKLM-x32\...\{C32CE55C-12BA-4951-8797-0967FDEF556F}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Mesh ActiveX control for remote connections (HKLM-x32\...\{C5398A89-516C-4DAF-BA07-EE7949090E56}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{C63A1E60-B6A4-440B-89A5-1FC6E4AC1C94}) (Version: 15.4.5722.2 - Microsoft Corporation)
WinRAR 4.01 (32-Bit) (HKLM-x32\...\WinRAR archiver) (Version: 4.01.0 - win.rar GmbH)
WinRAR 5.11 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH)
Wireless Console 3 (HKLM-x32\...\{8150221C-8F7E-4997-AD4E-AFDEE7F4B410}) (Version: 3.0.21 - ASUS)
Wise Care 365 3.21 (HKLM-x32\...\Wise Care 365_is1) (Version: 3.21 - WiseCleaner.com, Inc.)
Wise Care 365 version 2.03 (HKLM-x32\...\{E864A1C8-EEE1-47D0-A7F8-00CC86D26D5E}_is1) (Version: 2.9.3 - WiseCleaner.com, Inc.)
WISO Steuer-Sparbuch 2013 (HKU\S-1-5-21-733679015-3351541572-3055150241-1001\...\{D6CC2FAF-F827-4091-96A1-D32CC9B69C79}) (Version: 20.02.8171 - Buhl Data Service GmbH)
WISO Steuer-Sparbuch 2014 (HKLM-x32\...\{2D3BBBB5-C1F2-44B2-B754-4A47C2F8EF5F}) (Version: 21.00.8480 - Buhl Data Service GmbH)
Συλλογή φωτογραφιών του Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Основные компоненты Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Почта Windows Live (x32 Version: 15.4.3502.0922 - Корпорация Майкрософт) Hidden
Фотоальбом Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
גלריית התמונות של Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
بريد Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
معرض صور Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-733679015-3351541572-3055150241-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\schingels\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-733679015-3351541572-3055150241-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\schingels\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-733679015-3351541572-3055150241-1001_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\schingels\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-733679015-3351541572-3055150241-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\schingels\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-733679015-3351541572-3055150241-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\schingels\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\amd64\FileSyncApi64.dll (Microsoft Corporation)

==================== Restore Points  =========================

14-11-2014 08:31:31 IObit Uninstaller restore point
20-11-2014 02:00:14 Windows Update
20-11-2014 17:20:32 Revo Uninstaller's restore point - Mozilla Firefox 33.1 (x86 de)
21-11-2014 06:12:55 McAfee  Vulnerability Scanner

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {021F5962-CFBB-4D7B-866A-6007A3ED7044} - System32\Tasks\ASUS SmartLogon Console Sensor => C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe [2010-11-15] (ASUS)
Task: {12599037-6BE6-40AE-ACD3-38C3324BB643} - System32\Tasks\{1953C392-23DC-4B98-AD0E-127D828D83ED} => Firefox.exe 
Task: {237B1A2F-C0D2-4EBF-93D6-FAC026DE1728} - System32\Tasks\Wise Turbo Checker => C:\Program Files (x86)\Wise\Wise Care 365\WiseTurbo.exe [2014-07-07] (WiseCleaner.COM)
Task: {28CBFA2D-3602-448E-92B6-8C212C21C46C} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2014-09-25] (Microsoft Corporation)
Task: {2C815E4E-327C-4F85-A0A7-01C02411528E} - System32\Tasks\SpyHunter4Startup => C:\Program Files\Enigma Software Group\SpyHunter\Spyhunter4.exe
Task: {40BF27A8-9327-4AB7-AF0D-5FF03176D93D} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2012-08-22] (Piriform Ltd)
Task: {4B9F2ABF-4563-4802-A703-F115A4E2E3C0} - System32\Tasks\{9E32BAA2-B2F8-4BD8-9432-33043FBD0A96} => C:\Program Files\McAfee.com\Agent\mcagent.exe [2014-04-25] (McAfee, Inc.)
Task: {502C0A29-99A7-4AE1-8868-A42D3C395C9C} - System32\Tasks\Driver Booster SkipUAC (schingels) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
Task: {567A3220-700B-417E-A7D4-D4411046E048} - System32\Tasks\{84DD6ED7-F7B5-48B4-98D6-2A9A25D7C8E8} => Firefox.exe 
Task: {71438C46-60DC-49A5-9AD5-630F103ABDA8} - System32\Tasks\Microsoft\Windows\RestartManager\{8CD67240-5EA8-4dbc-B9C5-76C5AFC5BD01} => C:\Windows\system32\rmclient.exe [2009-07-14] (Microsoft Corporation)
Task: {73B543E7-7F4A-4EE1-8644-A434A97105D7} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2014-09-25] (Microsoft Corporation)
Task: {846DC964-CCE9-4F45-9914-7B92BED3E225} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {9096B9AA-D865-4850-9E99-BF4CFC1D4E66} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-08-21] (Adobe Systems Incorporated)
Task: {9258562A-395D-4448-A80C-30B588206B71} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-10-07] (Oracle Corporation)
Task: {94D79261-968E-4D91-90C2-BA2BB058D3CA} - System32\Tasks\Abelssoft\Updater scan => C:\Program Files (x86)\CHIP Updater\CHIPUpdater.exe
Task: {963B6A25-005D-452D-9B23-8EDEF0F920CA} - System32\Tasks\RunAsStdUser Task for VeohWebPlayer => C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\veohwebplayer.exe
Task: {9BE4943D-1225-4F33-86BC-AD4EAC3B1659} - System32\Tasks\{D618E339-78DC-4056-AE3D-3870DD7D936B} => D:\Users\Downloads\DAVSRV.EXE [2011-11-21] (1&1 Internet AG)
Task: {A08D041D-720C-4255-B41E-AEEAE6E38820} - System32\Tasks\Microsoft Office 15 Sync Maintenance for schingels-PC-schingels schingels-PC => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2014-09-16] (Microsoft Corporation)
Task: {A301327C-9C30-4237-A79A-22BC22EA3E8B} - System32\Tasks\Wise Care 365 => C:\Program Files (x86)\Wise\Wise Care 365\WiseTray.exe [2014-07-18] (WiseCleaner.com)
Task: {A520D054-C138-488D-B603-C134313F10CE} - System32\Tasks\{4C385B33-91AE-40F5-891A-8231887D2EF0} => Firefox.exe 
Task: {ABAA8D8C-81F4-4B65-BDA8-6408D8CB56C8} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe
Task: {B4639BAA-57B3-489A-8A8D-0045600A6723} - System32\Tasks\{4565DE98-4314-48CE-B670-D1CA4F40EB2F} => D:\Users\Downloads\DAVSRV.EXE [2011-11-21] (1&1 Internet AG)
Task: {BA62A6F4-7E91-49F6-997A-6F856A4D75BC} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-11-12] (Adobe Systems Incorporated)
Task: {BE89B061-6535-46E1-BED2-443CF0A7EC8B} - System32\Tasks\{2E0A5BC6-3A1C-4594-A5D9-03B1D54913D7} => D:\Users\Backup Handy\Mobile Partner\Mobile Partner.exe [2014-09-27] ()
Task: {C3D8D876-B1FC-457C-8A98-BAF968F8A828} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 => C:\Program Files (x86)\AVG\AVG PC TuneUp\OneClick.exe [2014-10-17] (AVG Technologies)
Task: {C5ED3241-CC04-4E85-B37D-1B2B693650E5} - System32\Tasks\ACMON => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2010-08-02] (ASUS)
Task: {CFEAFC92-97D9-4C33-99B3-C10168CD7245} - System32\Tasks\Uninstaller_SkipUac_schingels => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [2014-11-11] (IObit)
Task: {D152B3E6-095E-41D0-A4E5-CC2999012C57} - System32\Tasks\Apple Diagnostics => C:\Program Files (x86)\Common Files\Apple\Internet Services\EReporter.exe
Task: {D1B8D3EE-3FD3-4163-86CA-B3803A600D9C} - System32\Tasks\ASUS P4G => C:\Program Files\P4G\BatteryLife.exe [2011-06-01] (ASUS)
Task: {D406C7FA-24A7-47DC-9F42-A33FAF13EEAC} - System32\Tasks\AdvancedDriverUpdaterRunAtStartup => C:\Program Files (x86)\Advanced Driver Updater\adu.exe
Task: {E48CE7A2-11BF-465B-9EF4-4C3797CAD2AF} - System32\Tasks\{C6602E39-CEE7-453F-8873-21F65A16150A} => Firefox.exe 
Task: {E7CCAB70-1251-4BEB-AD08-8ABAD64020A0} - System32\Tasks\{B0E86049-C9E4-4FB7-81CD-7112024A96B8} => C:\Users\schingels\Desktop\Downloads\World-of-Warcraft-Setup-deDE.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\Wise Care 365.job => C:\Program Files (x86)\Wise\Wise Care 365\WiseTray.exe
Task: C:\Windows\Tasks\Wise Turbo Checker.job => C:\Program Files (x86)\Wise\Wise Care 365\WiseTurbo.exe

==================== Loaded Modules (whitelisted) =============

2012-10-07 21:09 - 2013-03-15 05:16 - 00086304 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2014-03-21 04:30 - 2014-05-20 08:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
2011-03-14 16:27 - 2011-03-14 16:27 - 00346976 _____ () C:\ProgramData\DatacardService\HWDeviceService64.exe
2014-09-27 18:44 - 2014-09-27 18:43 - 00239968 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\ouc.exe
2014-10-17 12:34 - 2014-10-17 12:34 - 00699704 _____ () C:\Program Files (x86)\AVG\AVG PC TuneUp\avgrepliba.dll
2014-10-17 12:34 - 2014-10-17 12:34 - 00835896 _____ () C:\Program Files (x86)\AVG\AVG PC TuneUp\tulnga.dll
2011-06-20 15:01 - 2011-03-26 08:29 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2014-07-09 08:22 - 2014-07-02 09:13 - 01427736 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\mshaktuell.exe
2010-11-30 00:04 - 2010-11-30 00:04 - 00403968 _____ () C:\Program Files\Intel\TurboBoost\de\SignalIslandUi.resources.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00514048 _____ () D:\Users\Backup Handy\Mobile Partner\Mobile Partner.exe
2014-09-27 18:44 - 2014-09-27 18:43 - 00011362 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\mingwm10.dll
2014-09-27 18:44 - 2014-09-27 18:43 - 00043008 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\libgcc_s_dw2-1.dll
2014-09-27 18:44 - 2014-09-27 18:43 - 02415104 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\QtCore4.dll
2014-09-27 18:44 - 2014-09-27 18:43 - 01148416 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\QtNetwork4.dll
2014-09-27 18:44 - 2014-09-27 18:43 - 00383488 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\QueryStrategy.dll
2014-09-27 18:44 - 2014-09-27 18:43 - 00398336 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\QtXml4.dll
2014-10-09 09:52 - 2014-10-09 09:52 - 00081056 _____ () C:\Users\schingels\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\LoggingPlatform.dll
2014-10-09 09:52 - 2014-10-09 09:52 - 00081056 _____ () C:\Users\schingels\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\LoggingPlatform.DLL
2014-07-09 08:16 - 2014-07-02 09:13 - 09789208 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\wgui14.dll
2014-07-09 08:17 - 2014-07-02 09:13 - 00035608 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\rsdcom48.dll
2014-07-09 08:17 - 2014-07-02 09:13 - 00309016 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\rscorewinapi48.dll
2014-07-09 08:17 - 2014-07-02 09:13 - 00322840 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\rsguiwinapi48.dll
2014-07-09 08:16 - 2014-07-02 09:14 - 03880216 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\wcore14.dll
2014-07-09 08:17 - 2014-07-02 09:13 - 00136472 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\rsodbc48.dll
2014-07-09 08:16 - 2014-07-02 09:13 - 02738456 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\wfvie14.dll
2014-07-09 08:16 - 2014-07-02 09:13 - 02116376 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\wsteu14.dll
2014-07-09 08:16 - 2014-07-02 09:13 - 01932568 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\wreli14.dll
2014-07-09 08:16 - 2014-07-02 09:13 - 04326168 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\wauff14.dll
2014-07-09 08:16 - 2014-02-11 10:53 - 01043456 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\clucene-core.dll
2014-07-09 08:16 - 2014-02-11 10:53 - 00094720 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\clucene-shared.dll
2014-07-09 08:16 - 2014-02-11 10:53 - 00250368 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\clucene-contribs-lib.dll
2014-07-09 08:16 - 2014-07-02 09:13 - 01564952 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\wmain14.dll
2014-07-09 08:16 - 2014-07-02 09:13 - 05291288 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\wbae114.dll
2014-07-09 08:16 - 2014-07-02 09:13 - 01698584 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\wbae214.dll
2014-07-09 08:16 - 2014-07-02 09:13 - 01809688 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\wbae314.dll
2014-07-09 08:16 - 2014-07-02 09:13 - 01627928 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\wbae414.dll
2014-07-09 08:16 - 2014-07-02 09:13 - 01117976 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\whau114.dll
2014-07-09 08:16 - 2014-07-02 09:13 - 01341208 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\whau214.dll
2014-07-09 08:16 - 2014-07-02 09:13 - 01309464 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\wwerb14.dll
2014-07-09 08:16 - 2014-07-09 08:44 - 07340824 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\wkont14.dll
2014-07-09 08:16 - 2014-07-02 09:13 - 01286936 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\wimp14.dll
2014-07-09 08:16 - 2014-07-02 09:13 - 01331480 _____ () C:\Program Files (x86)\WISO\Steuersoftware 2014\wfabu14.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00427008 _____ () D:\Users\Backup Handy\Mobile Partner\core.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00264192 _____ () D:\Users\Backup Handy\Mobile Partner\sdk.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00011362 _____ () D:\Users\Backup Handy\Mobile Partner\mingwm10.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00043008 _____ () D:\Users\Backup Handy\Mobile Partner\libgcc_s_dw2-1.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 02415104 _____ () D:\Users\Backup Handy\Mobile Partner\QtCore4.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 09515520 _____ () D:\Users\Backup Handy\Mobile Partner\QtGui4.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00382464 _____ () D:\Users\Backup Handy\Mobile Partner\Proxy.DLL
2014-09-27 18:43 - 2014-09-27 18:43 - 00218112 _____ () D:\Users\Backup Handy\Mobile Partner\Common.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00135168 _____ () D:\Users\Backup Handy\Mobile Partner\Trace.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00545280 _____ () D:\Users\Backup Handy\Mobile Partner\PluginContainer.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00238080 _____ () D:\Users\Backup Handy\Mobile Partner\AtCodec.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00301056 _____ () D:\Users\Backup Handy\Mobile Partner\DeviceSrvPlugin.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00237568 _____ () D:\Users\Backup Handy\Mobile Partner\NetSrvPlugin.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00133120 _____ () D:\Users\Backup Handy\Mobile Partner\OSDialup.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00159744 _____ () D:\Users\Backup Handy\Mobile Partner\XCodec.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00157184 _____ () D:\Users\Backup Handy\Mobile Partner\DataServicePlugin.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00176128 _____ () D:\Users\Backup Handy\Mobile Partner\CallSrvPlugin.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00264704 _____ () D:\Users\Backup Handy\Mobile Partner\AddrBookSrvPlugin.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00217600 _____ () D:\Users\Backup Handy\Mobile Partner\SmsSrvPlugin.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00142336 _____ () D:\Users\Backup Handy\Mobile Partner\USSDSrvPlugin.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00156672 _____ () D:\Users\Backup Handy\Mobile Partner\STKSrvPlugin.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00338432 _____ () D:\Users\Backup Handy\Mobile Partner\DeviceAppPlugin.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00065536 _____ () D:\Users\Backup Handy\Mobile Partner\OSPowerMgr.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00114688 _____ () D:\Users\Backup Handy\Mobile Partner\Win7Support.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 01078272 _____ () D:\Users\Backup Handy\Mobile Partner\AddrBookPlugin.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00670720 _____ () D:\Users\Backup Handy\Mobile Partner\SmsAppPlugin.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00550400 _____ () D:\Users\Backup Handy\Mobile Partner\CallAppPlugin.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00547840 _____ () D:\Users\Backup Handy\Mobile Partner\CallLogSrvPlugin.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00158720 _____ () D:\Users\Backup Handy\Mobile Partner\NetConnectSrvPlugin.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00211968 _____ () D:\Users\Backup Handy\Mobile Partner\DialUpPlugin.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00101376 _____ () D:\Users\Backup Handy\Mobile Partner\OSAdapt.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00180224 _____ () D:\Users\Backup Handy\Mobile Partner\NDISPlugin.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00131072 _____ () D:\Users\Backup Handy\Mobile Partner\OSNDIS.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 01101824 _____ () D:\Users\Backup Handy\Mobile Partner\NDISAPI.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00278528 _____ () D:\Users\Backup Handy\Mobile Partner\NetInfoSrvPlugin.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00062976 _____ () D:\Users\Backup Handy\Mobile Partner\OSCall.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00538624 _____ () D:\Users\Backup Handy\Mobile Partner\DeviceMgrUIPlugin.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00398336 _____ () D:\Users\Backup Handy\Mobile Partner\QtXml4.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00184832 _____ () D:\Users\Backup Handy\Mobile Partner\XFramePlugin.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00123392 _____ () D:\Users\Backup Handy\Mobile Partner\ATR2SMgr.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00307200 _____ () D:\Users\Backup Handy\Mobile Partner\StatusBarMgrPlugin.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00117760 _____ () D:\Users\Backup Handy\Mobile Partner\LayoutPlugin.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00441856 _____ () D:\Users\Backup Handy\Mobile Partner\DialupUIPlugin.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00093184 _____ () D:\Users\Backup Handy\Mobile Partner\NotifyServicePlugin.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00333824 _____ () D:\Users\Backup Handy\Mobile Partner\NetConnectPlugin.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00295424 _____ () D:\Users\Backup Handy\Mobile Partner\MenuMgrPlugin.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00391168 _____ () D:\Users\Backup Handy\Mobile Partner\USSDUIPlugin.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00484352 _____ () D:\Users\Backup Handy\Mobile Partner\NetInfoUIExPlugin.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00823808 _____ () D:\Users\Backup Handy\Mobile Partner\SMSUIPlugin.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00771072 _____ () D:\Users\Backup Handy\Mobile Partner\AddrBookUIPlugin.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00209408 _____ () D:\Users\Backup Handy\Mobile Partner\ToolBarMgrPlugin.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00263168 _____ () D:\Users\Backup Handy\Mobile Partner\LiveUpdateInterface.DLL
2014-09-27 18:43 - 2014-09-27 18:43 - 01148416 _____ () D:\Users\Backup Handy\Mobile Partner\QtNetwork4.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00082944 _____ () D:\Users\Backup Handy\Mobile Partner\plugins\imageformats\qgif4.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00081920 _____ () D:\Users\Backup Handy\Mobile Partner\plugins\imageformats\qico4.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00192000 _____ () D:\Users\Backup Handy\Mobile Partner\plugins\imageformats\qjpeg4.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00350720 _____ () D:\Users\Backup Handy\Mobile Partner\plugins\imageformats\qmng4.dll
2014-09-27 18:43 - 2014-09-27 18:43 - 00370176 _____ () D:\Users\Backup Handy\Mobile Partner\plugins\imageformats\qtiff4.dll
2014-10-17 09:21 - 2014-10-17 09:21 - 00169472 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\9b1cac8d98bd69d3e56a26ff2f96f266\IsdiInterop.ni.dll
2011-11-23 15:22 - 2011-01-13 02:56 - 00058880 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll
2014-09-27 08:32 - 2014-09-27 08:32 - 00316576 _____ () C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\AppVIsvStream32.dll
2014-11-21 09:58 - 2014-11-14 03:42 - 03649648 _____ () D:\Bildschirmarbeitsplatz\mozjs.dll
2014-11-12 15:00 - 2014-11-12 15:32 - 16840880 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_223.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\ProgramData\Temp:373E1720

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Driver"

==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

MSCONFIG\startupreg: ASUS Screen Saver Protector => C:\Windows\AsScrPro.exe
MSCONFIG\startupreg: ATKMEDIA => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
MSCONFIG\startupreg: ATKOSD2 => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
MSCONFIG\startupreg: CLMLServer => "C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
MSCONFIG\startupreg: DivXUpdate => "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
MSCONFIG\startupreg: HControlUser => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
MSCONFIG\startupreg: RtHDVCpl => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
MSCONFIG\startupreg: UpdateLBPShortCut => "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
MSCONFIG\startupreg: UpdateP2GoShortCut => "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
MSCONFIG\startupreg: Wireless Console 3 => C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe

========================= Accounts: ==========================

Administrator (S-1-5-21-733679015-3351541572-3055150241-500 - Administrator - Disabled)
Gast (S-1-5-21-733679015-3351541572-3055150241-501 - Limited - Enabled)
HomeGroupUser$ (S-1-5-21-733679015-3351541572-3055150241-1006 - Limited - Enabled)
schingels (S-1-5-21-733679015-3351541572-3055150241-1001 - Administrator - Enabled) => C:\Users\schingels
UpdatusUser (S-1-5-21-733679015-3351541572-3055150241-1005 - Limited - Enabled) => C:\Users\UpdatusUser

==================== Faulty Device Manager Devices =============

Name: Netzwerkcontroller
Description: Netzwerkcontroller
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: USB2.0-CRW
Description: USB2.0-CRW
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: USB2.0 0.3M UVC WebCam
Description: USB-Videogerät
Class Guid: {6bdd1fc6-810f-11d0-bec7-08002be2092f}
Manufacturer: Microsoft
Service: usbvideo
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: =========================

Application errors:
==================
Error: (11/20/2014 00:00:51 PM) (Source: Microsoft Office 15) (EventID: 2011) (User: )
Description: Office Subscription licensing exception: Error Code: 0x803D0006; CorrelationId: {D101440E-1D16-4C0B-98E5-FD189C96CD23}

Error: (11/20/2014 11:30:39 AM) (Source: Microsoft Office 15) (EventID: 2011) (User: )
Description: Office Subscription licensing exception: Error Code: 0x803D0006; CorrelationId: {AEFB2FB5-481F-45F7-A11C-8271DBD855C7}

Error: (11/17/2014 08:11:44 PM) (Source: Microsoft Office 15) (EventID: 2011) (User: )
Description: Office Subscription licensing exception: Error Code: 0x803D0010; CorrelationId: {395AF718-CD46-475F-8C27-2319E04250F6}

Error: (11/17/2014 08:11:44 PM) (Source: Microsoft Office 15) (EventID: 2011) (User: )
Description: Office Subscription licensing exception: Error Code: 0x803D0010; CorrelationId: {395AF718-CD46-475F-8C27-2319E04250F6}

Error: (11/17/2014 09:47:27 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm iac3.exe, Version 3.2.0.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: 3ac

Startzeit: 01d0023f9d683db4

Endzeit: 11

Anwendungspfad: D:\Users\Downloads\Ashampoo Internet Accelerator 3\iac3.exe

Berichts-ID: 47b84435-6e36-11e4-9afa-001e101f2c0e

Error: (11/16/2014 07:21:00 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: qcshm.exe, Version: 12.8.707.0, Zeitstempel: 0x51f8912a
Name des fehlerhaften Moduls: qcshm.exe, Version: 12.8.707.0, Zeitstempel: 0x51f8912a
Ausnahmecode: 0x40000015
Fehleroffset: 0x00000000000513ad
ID des fehlerhaften Prozesses: 0xd5c
Startzeit der fehlerhaften Anwendung: 0xqcshm.exe0
Pfad der fehlerhaften Anwendung: qcshm.exe1
Pfad des fehlerhaften Moduls: qcshm.exe2
Berichtskennung: qcshm.exe3

Error: (11/16/2014 07:17:22 PM) (Source: Windows Search Service) (EventID: 7010) (User: )
Description: Der Index kann nicht initialisiert werden.


Details:
	Der Inhaltsindexkatalog ist fehlerhaft.  (HRESULT : 0xc0041801) (0xc0041801)

Error: (11/16/2014 07:17:22 PM) (Source: Windows Search Service) (EventID: 3058) (User: )
Description: Die Anwendung kann nicht initialisiert werden.

Kontext: Windows Anwendung


Details:
	Der Inhaltsindexkatalog ist fehlerhaft.  (HRESULT : 0xc0041801) (0xc0041801)

Error: (11/16/2014 07:17:22 PM) (Source: Windows Search Service) (EventID: 3028) (User: )
Description: Das Gatherer-Objekt kann nicht initialisiert werden.

Kontext: Windows Anwendung, SystemIndex Katalog


Details:
	Der Inhaltsindexkatalog ist fehlerhaft.  (HRESULT : 0xc0041801) (0xc0041801)

Error: (11/16/2014 07:17:22 PM) (Source: Windows Search Service) (EventID: 3029) (User: )
Description: Plug-In in <Search.TripoliIndexer> kann nicht initialisiert werden.

Kontext: Windows Anwendung, SystemIndex Katalog


Details:
	Element nicht gefunden.  (HRESULT : 0x80070490) (0x80070490)


System errors:
=============
Error: (11/21/2014 10:50:00 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "DNS-Client" wurde mit folgendem Fehler beendet: 
%%2

Error: (11/21/2014 10:49:58 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "DNS-Client" wurde mit folgendem Fehler beendet: 
%%2

Error: (11/21/2014 10:49:58 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "DNS-Client" wurde mit folgendem Fehler beendet: 
%%2

Error: (11/21/2014 10:49:58 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "DNS-Client" wurde mit folgendem Fehler beendet: 
%%2

Error: (11/21/2014 10:49:58 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "DNS-Client" wurde mit folgendem Fehler beendet: 
%%2

Error: (11/21/2014 10:49:58 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "DNS-Client" wurde mit folgendem Fehler beendet: 
%%2

Error: (11/21/2014 10:49:58 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "DNS-Client" wurde mit folgendem Fehler beendet: 
%%2

Error: (11/21/2014 10:49:58 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "DNS-Client" wurde mit folgendem Fehler beendet: 
%%2

Error: (11/21/2014 10:49:58 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "DNS-Client" wurde mit folgendem Fehler beendet: 
%%2

Error: (11/21/2014 10:49:58 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "DNS-Client" wurde mit folgendem Fehler beendet: 
%%2


Microsoft Office Sessions:
=========================
Error: (11/20/2014 00:00:51 PM) (Source: Microsoft Office 15) (EventID: 2011) (User: )
Description: Office Subscription licensing exception: Error Code: 0x803D0006; CorrelationId: {D101440E-1D16-4C0B-98E5-FD189C96CD23}

Error: (11/20/2014 11:30:39 AM) (Source: Microsoft Office 15) (EventID: 2011) (User: )
Description: Office Subscription licensing exception: Error Code: 0x803D0006; CorrelationId: {AEFB2FB5-481F-45F7-A11C-8271DBD855C7}

Error: (11/17/2014 08:11:44 PM) (Source: Microsoft Office 15) (EventID: 2011) (User: )
Description: Office Subscription licensing exception: Error Code: 0x803D0010; CorrelationId: {395AF718-CD46-475F-8C27-2319E04250F6}

Error: (11/17/2014 08:11:44 PM) (Source: Microsoft Office 15) (EventID: 2011) (User: )
Description: Office Subscription licensing exception: Error Code: 0x803D0010; CorrelationId: {395AF718-CD46-475F-8C27-2319E04250F6}

Error: (11/17/2014 09:47:27 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: iac3.exe3.2.0.03ac01d0023f9d683db411D:\Users\Downloads\Ashampoo Internet Accelerator 3\iac3.exe47b84435-6e36-11e4-9afa-001e101f2c0e

Error: (11/16/2014 07:21:00 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: qcshm.exe12.8.707.051f8912aqcshm.exe12.8.707.051f8912a4000001500000000000513add5c01d001ca0d5d5531c:\PROGRA~1\mcafee\mqs\qcshm.exec:\PROGRA~1\mcafee\mqs\qcshm.exe5084737b-6dbd-11e4-9afa-001e101f2c0e

Error: (11/16/2014 07:17:22 PM) (Source: Windows Search Service) (EventID: 7010) (User: )
Description: 
Details:
	Der Inhaltsindexkatalog ist fehlerhaft.  (HRESULT : 0xc0041801) (0xc0041801)

Error: (11/16/2014 07:17:22 PM) (Source: Windows Search Service) (EventID: 3058) (User: )
Description: Kontext: Windows Anwendung


Details:
	Der Inhaltsindexkatalog ist fehlerhaft.  (HRESULT : 0xc0041801) (0xc0041801)

Error: (11/16/2014 07:17:22 PM) (Source: Windows Search Service) (EventID: 3028) (User: )
Description: Kontext: Windows Anwendung, SystemIndex Katalog


Details:
	Der Inhaltsindexkatalog ist fehlerhaft.  (HRESULT : 0xc0041801) (0xc0041801)

Error: (11/16/2014 07:17:22 PM) (Source: Windows Search Service) (EventID: 3029) (User: )
Description: Kontext: Windows Anwendung, SystemIndex Katalog


Details:
	Element nicht gefunden.  (HRESULT : 0x80070490) (0x80070490)
Search.TripoliIndexer


CodeIntegrity Errors:
===================================
  Date: 2014-11-20 21:57:42.067
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Alle geladene Programme\Program Files\Program Files\Common Files\McAfee\VSCore\mfeelamk.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-11-20 21:57:42.065
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Alle geladene Programme\Program Files\Program Files\Common Files\McAfee\VSCore\mfeelamk.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-11-20 21:57:42.062
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Alle geladene Programme\Program Files\Program Files\Common Files\McAfee\VSCore\mfeelamk.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-11-20 21:57:42.009
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Alle geladene Programme\Program Files\Program Files\Common Files\McAfee\VSCore\mfeelamk.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-11-20 21:53:07.261
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Alle geladene Programme\Program Files\Common Files\Mcafee\VSCore\mfeelamk.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-11-20 21:53:07.259
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Alle geladene Programme\Program Files\Common Files\Mcafee\VSCore\mfeelamk.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-11-20 21:53:07.257
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Alle geladene Programme\Program Files\Common Files\Mcafee\VSCore\mfeelamk.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-11-20 21:53:07.202
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Alle geladene Programme\Program Files\Common Files\Mcafee\VSCore\mfeelamk.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-11-14 17:27:47.323
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Alle geladene Programme\Program Files\Program Files\Common Files\McAfee\VSCore\mfeelamk.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-11-14 17:27:47.320
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Alle geladene Programme\Program Files\Program Files\Common Files\McAfee\VSCore\mfeelamk.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i7-2670QM CPU @ 2.20GHz
Percentage of memory in use: 35%
Total physical RAM: 8100.97 MB
Available physical RAM: 5227.41 MB
Total Pagefile: 16200.13 MB
Available Pagefile: 13150.63 MB
Total Virtual: 8192 MB
Available Virtual: 8191.84 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:300.41 GB) (Free:241.22 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: (DATA) (Fixed) (Total:215.5 GB) (Free:182.02 GB) NTFS
Drive e: (CHIP) (CDROM) (Total:1.73 GB) (Free:0 GB) UDF
Drive f: (Mobile Partner) (CDROM) (Total:0.03 GB) (Free:0 GB) CDFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 698.6 GB) (Disk ID: AE14F3C6)
Partition 1: (Not Active) - (Size=25 GB) - (Type=1C)
Partition 2: (Active) - (Size=300.4 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=215.5 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=157.7 GB) - (Type=BC)

==================== End Of Log ============================
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 20-11-2014
Ran by schingels (administrator) on SCHINGELS-PC on 21-11-2014 10:51:35
Running from D:\Users\Downloads
Loaded Profile: schingels (Available profiles: schingels & UpdatusUser)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
() C:\ProgramData\DatacardService\HWDeviceService64.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
() C:\ProgramData\Mobile Partner\OnlineUpdate\ouc.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(TomTom) C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
(AVG Technologies) C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(McAfee, Inc.) C:\Program Files\McAfee\MSC\McAPExe.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(AVG Technologies) C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesApp64.exe
(WiseCleaner.com) C:\Program Files (x86)\Wise\Wise Care 365\WiseTray.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
(Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Microsoft Corporation) C:\Users\schingels\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Alf - AG) D:\Users\Hallingstrasse\ALFBanCo5\AlfReminder5.exe
(Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
() C:\Program Files (x86)\WISO\Steuersoftware 2014\mshaktuell.exe
(Intel® Corporation) C:\Program Files\Intel\TurboBoost\SignalIslandUi.exe
() D:\Users\Backup Handy\Mobile Partner\Mobile Partner.exe
(Microsoft Corporation) C:\Windows\System32\alg.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(ASUS) C:\Windows\AsScrPro.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe
(Intel(R) Corporation) C:\Program Files\Intel\TurboBoost\TurboBoost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(IObit) C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\csisyncclient.exe
(Mozilla Corporation) D:\Bildschirmarbeitsplatz\firefox.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [IntelTBRunOnce] => wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs"
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2587944 2010-12-31] (ELAN Microelectronics Corp.)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2213992 2011-05-12] (Realtek Semiconductor)
HKLM-x32\...\Run: [ASUSPRP] => C:\Program Files (x86)\ASUS\APRP\APRP.EXE [2018032 2011-04-13] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [UIExec] => D:\Benutzer\1&1 Surf-Stick\UIExec.exe [139088 2010-09-30] ()
HKLM-x32\...\Run: [mcui_exe] => C:\Program Files\McAfee.com\Agent\mcagent.exe [537992 2014-04-25] (McAfee, Inc.)
HKLM-x32\...\Run: [ASUS Screen Saver Protector] => C:\Windows\AsScrPro.exe [3058304 2014-01-22] (ASUS)
HKLM-x32\...\Run: [COMPUTERBILD-Abzockschutz] => C:\Program Files (x86)\COMPUTERBILD-Abzockschutz\bin\COMPUTERBILD-Abzockschutz.exe [537664 2014-06-19] (J3S GmbH)
HKLM-x32\...\Run: [mcpltui_exe] => C:\Program Files\McAfee.com\Agent\mcagent.exe [537992 2014-04-25] (McAfee, Inc.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKU\S-1-5-21-733679015-3351541572-3055150241-1001\...\Run: [1&1_1&1 Upload-Manager] => D:\Users\Downloads\DAVSRV.EXE [989264 2011-11-21] (1&1 Internet AG)
HKU\S-1-5-21-733679015-3351541572-3055150241-1001\...\Run: [SkyDrive] => C:\Users\schingels\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe [277672 2014-10-09] (Microsoft Corporation)
HKU\S-1-5-21-733679015-3351541572-3055150241-1001\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKU\S-1-5-21-733679015-3351541572-3055150241-1001\...\Policies\Explorer: [NoControlPanel] 0
HKU\S-1-5-21-733679015-3351541572-3055150241-1001\...\Policies\Explorer: [NoDrives] 0x00000000
HKU\S-1-5-21-733679015-3351541572-3055150241-1001\...\MountPoints2: {e8ee4c17-46ef-11e4-bbab-001e101f82a7} - F:\AutoRun.exe
HKU\S-1-5-21-733679015-3351541572-3055150241-1001\...\MountPoints2: {e8ee4c2f-46ef-11e4-bbab-001e101f82a7} - F:\AutoRun.exe
HKU\S-1-5-21-733679015-3351541572-3055150241-1001\...\MountPoints2: {e8ee4cab-46ef-11e4-bbab-001e101f82a7} - F:\AutoRun.exe
HKU\S-1-5-21-733679015-3351541572-3055150241-1001\...\MountPoints2: {f205f158-458a-11e4-9adb-5404a67455a1} - F:\AutoRun.exe
HKU\S-1-5-21-733679015-3351541572-3055150241-1001\...\MountPoints2: {f205f176-458a-11e4-9adb-5404a67455a1} - F:\AutoRun.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ALF-BanCo 5 Reminder.lnk
ShortcutTarget: ALF-BanCo 5 Reminder.lnk -> D:\Users\Hallingstrasse\ALFBanCo5\AlfReminder5.exe (Alf - AG)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WISO Mein Steuer-Sparbuch heute.lnk
ShortcutTarget: WISO Mein Steuer-Sparbuch heute.lnk -> C:\Program Files (x86)\WISO\Steuersoftware 2014\mshaktuell.exe ()
Startup: C:\Users\schingels\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Intel(R) Turbo Boost Technology Monitor 2.0.lnk
ShortcutTarget: Intel(R) Turbo Boost Technology Monitor 2.0.lnk -> C:\Program Files\Intel\TurboBoost\SignalIslandUi.exe (Intel® Corporation)
Startup: C:\Users\schingels\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\WISO Mein Steuer-Sparbuch heute.lnk
ShortcutTarget: WISO Mein Steuer-Sparbuch heute.lnk -> C:\WISO\Steuersoftware 2013\mshaktuell.exe ()
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  No File

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

ProxyEnable: [.DEFAULT] => Internet Explorer proxy is enabled.
ProxyServer: [.DEFAULT] => http=127.0.0.1:8897;https=127.0.0.1:8897;ftp=localhost:8123;socks=localhost:8123
HKU\S-1-5-21-733679015-3351541572-3055150241-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/
HKU\S-1-5-21-733679015-3351541572-3055150241-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x55244F9E94E0CE01
HKU\S-1-5-21-733679015-3351541572-3055150241-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKU\.DEFAULT -> {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL = 
SearchScopes: HKU\.DEFAULT -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = 
SearchScopes: HKU\S-1-5-21-733679015-3351541572-3055150241-1001 -> DefaultScope {AE4D481E-A7DF-46AB-B716-E2C57980ECE9} URL = hxxp://de.search.yahoo.com/search?fr=mcafee&type=A011DE843&p={SearchTerms}
SearchScopes: HKU\S-1-5-21-733679015-3351541572-3055150241-1001 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = https://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-733679015-3351541572-3055150241-1001 -> {8C6C6B5A-5D45-4A7C-8C98-1B520D0A59BD} URL = https://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=242154&p={searchTerms}
SearchScopes: HKU\S-1-5-21-733679015-3351541572-3055150241-1001 -> {AE4D481E-A7DF-46AB-B716-E2C57980ECE9} URL = hxxp://de.search.yahoo.com/search?fr=mcafee&type=A011DE843&p={SearchTerms}
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll (IObit)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: McAfee SiteAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} ->  No File
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM-x32 - COMPUTERBILD-Abzockschutz - {353e2a48-6254-4bd3-88f4-3b51a0ca7870} - C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation)
Toolbar: HKU\S-1-5-21-733679015-3351541572-3055150241-1001 -> Steganos Password Manager Toolbar - {9C65D12D-CF9D-454D-8049-61965D8C6FFF} -  No File
DPF: HKLM {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
DPF: HKLM-x32 {1E54D648-B804-468d-BC78-4AFFED8E262F} hxxp://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} -  No File
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} -  No File
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\McAfee\MSC\McSnIePl64.dll (McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\MSC\McSnIePl.dll (McAfee, Inc.)
Tcpip\..\Interfaces\{18635B9F-3EC8-4E9F-ADBE-EE60B251079C}: [NameServer] 193.189.244.225 193.189.244.206
Tcpip\..\Interfaces\{D94CFAFC-2545-4C5E-8871-4214E8A4994F}: [NameServer] 193.189.244.225 193.189.244.206
Tcpip\..\Interfaces\{E071EBF2-D3EB-4FB6-BDD2-6F1420F55AEE}: [NameServer] 193.189.244.225 193.189.244.206

FireFox:
========
FF ProfilePath: C:\Users\schingels\AppData\Roaming\Mozilla\Firefox\Profiles\02ma4vj8.default-1416561192914
FF SelectedSearchEngine: Sichere Suche
FF Homepage: hxxp://www.nok21.de/wp-admin/edit.php
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_223.dll ()
FF Plugin: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_223.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL ()
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin-x32: @videolan.org/vlc,version=2.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\McSiteAdvisor.xml
FF Extension: Widget context - C:\Users\schingels\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\{140A2D0E-85CC-4ed3-9BA5-8FA35DA7FABA}.xpi [2013-12-15]
FF Extension: No Name - C:\Users\schingels\AppData\Roaming\Mozilla\Firefox\Profiles\02ma4vj8.default-1416561192914\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-11-21]
FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} [2014-11-10]
FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} [2014-11-10]
FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA} [2014-11-10]
FF HKLM-x32\...\Firefox\Extensions: [{00F0643E-B367-4779-B45D-7046EBA37A88}] - C:\Program Files (x86)\Steganos Privacy Suite 15\spmplugin3
FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\anti_banner@kaspersky.com
FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\online_banking@kaspersky.com
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor
FF Extension: No Name - C:\Program Files (x86)\McAfee\SiteAdvisor [2014-11-13]
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2014-11-13]
FF HKU\S-1-5-21-733679015-3351541572-3055150241-1001\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: No Name - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]
FF StartMenuInternet: FIREFOX.EXE - D:\Bildschirmarbeitsplatz\firefox.exe

Chrome: 
=======
CHR Profile: C:\Users\schingels\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (No Name) - C:\Users\schingels\AppData\Local\Google\Chrome\User Data\Default\Extensions\pigkdicgnehbfjnaopalgpelkbkcnbfa [2014-01-03]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx []
CHR HKLM-x32\...\Chrome\Extension: [hakdifolhalapjijoafobooafbilfakh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\online_banking_chrome.crx []
CHR HKLM-x32\...\Chrome\Extension: [pjldcfjmnllhmgjclecdnfampinooman] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\ab.crx []

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2436280 2014-09-25] (Microsoft Corporation)
S2 Dnscache; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S2 Dnscache; C:\Windows\SysWOW64\svchost.exe [20992 2009-07-14] (Microsoft Corporation)
R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [346976 2011-03-14] ()
S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2283296 2014-11-11] (IObit)
S2 McAfee SiteAdvisor Service; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [201304 2012-08-31] (McAfee, Inc.)
R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [178528 2014-04-25] (McAfee, Inc.)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.)
R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McNaiAnn; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
S3 McODS; C:\Program Files\McAfee\VirusScan\mcods.exe [603424 2014-09-04] (McAfee, Inc.)
R2 mcpltsvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McProxy; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1041192 2014-08-20] (McAfee, Inc.)
R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [219752 2014-06-20] (McAfee, Inc.)
R2 mfevtp; C:\Windows\system32\mfevtps.exe [189912 2014-06-20] (McAfee, Inc.)
S2 Mobile Partner. RunOuc; D:\Users\Backup Handy\Mobile Partner\UpdateDog\ouc.exe [239968 2014-09-27] ()
R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [2589496 2014-10-17] (AVG Technologies)
S4 UI Assistant Service; D:\Benutzer\1&1 Surf-Stick\AssistantServices.exe [253264 2010-09-30] ()
R2 UxTuneUp; C:\Windows\System32\uxtuneup.dll [42808 2014-10-17] (AVG Technologies)
R2 UxTuneUp; C:\Windows\SysWOW64\uxtuneup.dll [35640 2014-10-17] (AVG Technologies)
S2 WiseBootAssistant; C:\Program Files (x86)\Wise\Wise Care 365\BootTime.exe [580232 2014-07-07] (WiseCleaner.com)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R0 53413803; C:\Windows\System32\DRIVERS\53413803.sys [460888 2013-10-13] (Kaspersky Lab ZAO)
S1 9152490drv; C:\Windows\System32\DRIVERS\9152490drv.sys [556632 2013-10-13] (Kaspersky Lab)
S3 BioNTDrv; C:\Program Files\Paragon Software\Backup and Recovery 2014 Free\program\BioNTDrv.SYS [18696 2014-05-19] (Paragon Software Group)
R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [72128 2014-06-20] (McAfee, Inc.)
S3 esgiguard; No ImagePath
S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2014-11-07] ()
S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.)
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( )
R3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [181704 2014-06-20] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [313544 2014-06-20] (McAfee, Inc.)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [523792 2014-06-20] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [786296 2014-06-20] (McAfee, Inc.)
R3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [445512 2014-08-20] (McAfee, Inc.)
S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [96592 2014-08-20] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [348552 2014-06-20] (McAfee, Inc.)
R1 nvkflt; C:\Windows\System32\DRIVERS\nvkflt.sys [284448 2013-03-15] (NVIDIA Corporation)
S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [27520 2007-05-14] (Research In Motion Limited)
S3 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)
R1 SLEE_18_DRIVER; C:\Windows\Sleen1864.sys [109144 2014-07-29] (Softwareentwicklung Remus - ArchiCrypt - )
R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys [14112 2014-09-09] (TuneUp Software)
R1 ui11rdr; C:\Windows\System32\DRIVERS\ui11rdr.sys [199752 2011-11-21] (1&1 Internet AG)
R1 UimBus; C:\Windows\System32\DRIVERS\UimBus.sys [102664 2014-05-19] ()
R1 Uim_DEVIM; C:\Windows\System32\DRIVERS\uim_devim.sys [25992 2014-05-19] ()
R1 Uim_IM; C:\Windows\System32\DRIVERS\uim_im.sys [700296 2014-05-19] ()
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2012-12-13] (Apple, Inc.) [File not signed]
S3 athr; system32\DRIVERS\athrx.sys [X]
U3 DfSdkS; No ImagePath
S0 kl1; system32\DRIVERS\kl1.sys [X]
S3 RSUSBVSTOR; System32\Drivers\RtsUVStor.sys [X]
U2 TMAgent; No ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-21 10:13 - 2014-11-21 10:13 - 00000000 ____D () C:\Users\schingels\Desktop\Alte Firefox-Daten
2014-11-21 09:58 - 2014-11-21 09:58 - 00000683 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-11-21 07:24 - 2014-11-21 07:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
2014-11-20 21:20 - 2014-11-21 09:58 - 00000683 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-11-20 21:20 - 2014-11-20 21:20 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-11-20 21:11 - 2014-11-21 07:19 - 00000112 _____ () C:\Windows\setupact.log
2014-11-20 21:11 - 2014-11-20 21:11 - 00000542 _____ () C:\Windows\PFRO.log
2014-11-20 21:11 - 2014-11-20 21:11 - 00000000 _____ () C:\Windows\setuperr.log
2014-11-20 06:58 - 2014-11-20 06:58 - 00001226 _____ () C:\Users\Public\Desktop\Ein-Klick-Optimierung (WO11).lnk
2014-11-19 10:19 - 2014-11-11 04:08 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-11-19 10:19 - 2014-11-11 04:08 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2014-11-19 10:19 - 2014-11-11 03:44 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-11-19 10:19 - 2014-11-11 03:44 - 00186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
2014-11-17 18:40 - 2014-10-21 08:16 - 00001226 _____ () C:\Users\schingels\Desktop\Ein-Klick-Optimierung (WO11).lnk
2014-11-17 10:51 - 2014-11-21 10:49 - 00192967 _____ () C:\Windows\WindowsUpdate.log
2014-11-17 10:50 - 2014-11-17 10:50 - 00002992 _____ () C:\Windows\System32\Tasks\{2E0A5BC6-3A1C-4594-A5D9-03B1D54913D7}
2014-11-17 09:25 - 2014-10-17 12:34 - 00042808 _____ (AVG Technologies) C:\Windows\system32\uxtuneup.dll
2014-11-17 09:25 - 2014-10-17 12:34 - 00035640 _____ (AVG Technologies) C:\Windows\SysWOW64\uxtuneup.dll
2014-11-16 19:31 - 2014-11-16 19:31 - 00113432 _____ () C:\Users\schingels\AppData\Local\GDIPFONTCACHEV1.DAT
2014-11-16 19:14 - 2014-11-16 19:15 - 00442360 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-11-16 18:59 - 2014-11-16 18:59 - 00002972 _____ () C:\Windows\System32\Tasks\{9E32BAA2-B2F8-4BD8-9432-33043FBD0A96}
2014-11-14 17:24 - 2014-11-14 17:24 - 00002982 _____ () C:\Windows\System32\Tasks\{4C385B33-91AE-40F5-891A-8231887D2EF0}
2014-11-14 09:36 - 2014-11-14 09:36 - 00001892 _____ () C:\Users\schingels\Desktop\JRT.txt
2014-11-14 09:33 - 2014-11-14 09:33 - 00000000 ____D () C:\Windows\ERUNT
2014-11-14 08:41 - 2014-11-14 08:41 - 00002762 _____ () C:\Windows\System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013
2014-11-13 22:06 - 2013-09-23 13:49 - 00197704 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\HipShieldK.sys
2014-11-13 21:30 - 2014-11-21 07:24 - 00001806 _____ () C:\Users\Public\Desktop\McAfee Internet Security.lnk
2014-11-13 21:29 - 2014-11-20 03:16 - 00000000 ____D () C:\Program Files (x86)\McAfee
2014-11-13 21:29 - 2014-11-13 21:29 - 00000000 ____D () C:\Program Files\McAfee.com
2014-11-13 21:29 - 2014-11-13 21:29 - 00000000 ____D () C:\Program Files (x86)\McAfee.com
2014-11-13 21:29 - 2014-06-20 10:38 - 00072128 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\cfwids.sys
2014-11-13 21:29 - 2014-06-20 10:23 - 00523792 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mfefirek.sys
2014-11-13 21:29 - 2014-06-20 10:21 - 00313544 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mfeavfk.sys
2014-11-13 16:09 - 2014-11-13 16:09 - 00002227 _____ () C:\Users\Public\Desktop\AVG 1-Klick-Wartung.lnk
2014-11-13 16:09 - 2014-11-13 16:09 - 00002215 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC TuneUp 2015.lnk
2014-11-13 16:09 - 2014-11-13 16:09 - 00002203 _____ () C:\Users\Public\Desktop\AVG PC TuneUp 2015.lnk
2014-11-13 16:09 - 2014-11-13 16:09 - 00000000 ____D () C:\Users\schingels\AppData\Roaming\AVG
2014-11-13 16:09 - 2014-11-13 16:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC TuneUp 2015
2014-11-13 16:09 - 2014-11-13 16:09 - 00000000 ____D () C:\Program Files (x86)\AVG
2014-11-13 16:09 - 2014-10-17 12:34 - 00040248 _____ (AVG Technologies) C:\Windows\system32\TURegOpt.exe
2014-11-13 16:09 - 2014-10-17 12:34 - 00029496 _____ (AVG Technologies) C:\Windows\system32\authuitu.dll
2014-11-13 16:09 - 2014-10-17 12:34 - 00025400 _____ (AVG Technologies) C:\Windows\SysWOW64\authuitu.dll
2014-11-13 16:08 - 2014-11-13 16:08 - 00000000 ____D () C:\Users\schingels\AppData\Local\Avg
2014-11-13 16:05 - 2014-11-14 08:57 - 00000000 ____D () C:\ProgramData\AVG
2014-11-13 14:00 - 2014-11-13 14:00 - 00002982 _____ () C:\Windows\System32\Tasks\{84DD6ED7-F7B5-48B4-98D6-2A9A25D7C8E8}
2014-11-13 13:50 - 2014-11-13 13:50 - 00002982 _____ () C:\Windows\System32\Tasks\{1953C392-23DC-4B98-AD0E-127D828D83ED}
2014-11-13 11:00 - 2014-11-13 11:00 - 00000000 ____D () C:\Windows\System32\Tasks\Apple
2014-11-13 10:19 - 2014-11-13 10:19 - 00000000 __SHD () C:\Users\schingels\AppData\Local\EmieBrowserModeList
2014-11-13 08:55 - 2014-11-13 08:55 - 00098686 _____ () C:\ProgramData\1415864349.bdinstall.bin
2014-11-13 08:39 - 2014-11-13 08:39 - 00037852 _____ () C:\ProgramData\1415864347.bdinstall.bin
2014-11-13 00:54 - 2014-11-13 00:54 - 00000000 ____D () C:\ProgramData\bdch
2014-11-12 21:02 - 2014-11-12 21:02 - 00000000 ____D () C:\Windows\Tasks\ImCleanDisabled
2014-11-12 18:45 - 2014-11-13 09:40 - 00000000 ____D () C:\Users\schingels\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Moo0
2014-11-12 18:45 - 2014-11-13 09:40 - 00000000 ____D () C:\Program Files (x86)\Moo0
2014-11-12 18:09 - 2014-11-12 18:09 - 00319912 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-11-12 18:09 - 2014-11-12 18:09 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-11-12 18:09 - 2014-11-12 18:09 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-11-12 18:09 - 2014-11-12 18:09 - 00111016 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2014-11-12 18:09 - 2014-11-12 18:09 - 00000000 ____D () C:\Program Files\Java
2014-11-12 09:19 - 2014-06-04 15:17 - 00034080 _____ (IObit) C:\Windows\system32\SmartDefragBootTime.exe
2014-11-12 09:18 - 2014-06-04 15:17 - 00128288 _____ (IObit) C:\Windows\system32\IObitSmartDefragExtension.dll
2014-11-12 09:16 - 2014-11-12 15:09 - 00002862 _____ () C:\Windows\System32\Tasks\Driver Booster SkipUAC (schingels)
2014-11-12 07:18 - 2014-11-07 20:49 - 00388272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-11-12 07:18 - 2014-11-07 20:23 - 00341168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-11-12 07:18 - 2014-11-06 05:04 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-11-12 07:18 - 2014-11-06 05:03 - 25110016 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-11-12 07:18 - 2014-11-06 05:03 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-11-12 07:18 - 2014-11-06 04:47 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-11-12 07:18 - 2014-11-06 04:46 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-11-12 07:18 - 2014-11-06 04:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-11-12 07:18 - 2014-11-06 04:44 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-11-12 07:18 - 2014-11-06 04:43 - 02884096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-11-12 07:18 - 2014-11-06 04:36 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-11-12 07:18 - 2014-11-06 04:35 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-11-12 07:18 - 2014-11-06 04:31 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-11-12 07:18 - 2014-11-06 04:30 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-11-12 07:18 - 2014-11-06 04:30 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-11-12 07:18 - 2014-11-06 04:29 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-11-12 07:18 - 2014-11-06 04:28 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-11-12 07:18 - 2014-11-06 04:23 - 06040064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-11-12 07:18 - 2014-11-06 04:20 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-11-12 07:18 - 2014-11-06 04:16 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-11-12 07:18 - 2014-11-06 04:13 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-11-12 07:18 - 2014-11-06 04:13 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-11-12 07:18 - 2014-11-06 04:12 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-11-12 07:18 - 2014-11-06 04:10 - 19781632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-11-12 07:18 - 2014-11-06 04:10 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-11-12 07:18 - 2014-11-06 04:07 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-11-12 07:18 - 2014-11-06 04:05 - 02277376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-11-12 07:18 - 2014-11-06 04:04 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-11-12 07:18 - 2014-11-06 04:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-11-12 07:18 - 2014-11-06 04:02 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-11-12 07:18 - 2014-11-06 04:00 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-11-12 07:18 - 2014-11-06 04:00 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-11-12 07:18 - 2014-11-06 03:59 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-11-12 07:18 - 2014-11-06 03:58 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-11-12 07:18 - 2014-11-06 03:57 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-11-12 07:18 - 2014-11-06 03:48 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-11-12 07:18 - 2014-11-06 03:42 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-11-12 07:18 - 2014-11-06 03:41 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-11-12 07:18 - 2014-11-06 03:41 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-11-12 07:18 - 2014-11-06 03:39 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-11-12 07:18 - 2014-11-06 03:38 - 02124288 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-11-12 07:18 - 2014-11-06 03:37 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-11-12 07:18 - 2014-11-06 03:36 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-11-12 07:18 - 2014-11-06 03:34 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-11-12 07:18 - 2014-11-06 03:30 - 14390272 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-11-12 07:18 - 2014-11-06 03:22 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-11-12 07:18 - 2014-11-06 03:21 - 04298240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-11-12 07:18 - 2014-11-06 03:21 - 02051072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-11-12 07:18 - 2014-11-06 03:20 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-11-12 07:18 - 2014-11-06 03:17 - 02365440 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-11-12 07:18 - 2014-11-06 03:04 - 01550336 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-11-12 07:18 - 2014-11-06 03:03 - 12819456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-11-12 07:18 - 2014-11-06 02:53 - 00799232 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-11-12 07:18 - 2014-11-06 02:52 - 01892864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-11-12 07:18 - 2014-11-06 02:48 - 01310208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-11-12 07:18 - 2014-11-06 02:47 - 00708096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-11-12 07:18 - 2014-11-05 18:56 - 00304640 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-11-12 07:18 - 2014-11-05 18:56 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-11-12 07:18 - 2014-11-05 18:52 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-11-12 07:18 - 2014-10-14 03:16 - 00155064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-11-12 07:18 - 2014-10-14 03:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2014-11-12 07:18 - 2014-10-14 03:12 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-11-12 07:18 - 2014-10-14 03:09 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2014-11-12 07:18 - 2014-10-14 03:07 - 00681984 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2014-11-12 07:18 - 2014-10-14 02:50 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-11-12 07:18 - 2014-10-14 02:49 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-11-12 07:18 - 2014-10-14 02:47 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2014-11-12 07:18 - 2014-10-14 02:46 - 00681984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2014-11-12 07:17 - 2014-10-25 02:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-11-12 07:17 - 2014-10-25 02:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2014-11-12 07:17 - 2014-10-14 03:13 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-11-12 07:17 - 2014-10-14 02:50 - 02363904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-11-12 07:17 - 2014-10-10 01:57 - 03198976 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-11-12 07:17 - 2014-10-03 03:12 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2014-11-12 07:17 - 2014-10-03 03:11 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2014-11-12 07:17 - 2014-10-03 03:11 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2014-11-12 07:17 - 2014-10-03 03:11 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2014-11-12 07:17 - 2014-10-03 03:11 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2014-11-12 07:17 - 2014-10-03 02:44 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2014-11-12 07:17 - 2014-10-03 02:44 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2014-11-12 07:17 - 2014-10-03 02:44 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2014-11-12 07:17 - 2014-09-19 10:42 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-11-12 07:17 - 2014-09-19 10:42 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-11-12 07:17 - 2014-09-19 10:42 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-11-12 07:17 - 2014-09-19 10:42 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-11-12 07:17 - 2014-09-19 10:42 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-11-12 07:17 - 2014-09-19 10:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-11-12 07:17 - 2014-09-19 10:23 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-11-12 07:17 - 2014-09-19 10:23 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-11-12 07:17 - 2014-09-19 10:23 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-11-12 07:17 - 2014-09-19 10:23 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-11-12 07:17 - 2014-09-19 10:23 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-11-12 07:17 - 2014-09-19 10:23 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-11-12 07:17 - 2014-08-21 07:43 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-11-12 07:17 - 2014-08-21 07:40 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-11-12 07:17 - 2014-08-21 07:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-11-12 07:17 - 2014-08-21 07:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-11-12 07:17 - 2014-08-12 03:02 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2014-11-12 07:17 - 2014-08-12 02:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL
2014-11-12 07:16 - 2014-10-18 03:05 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-11-12 07:16 - 2014-10-18 02:33 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2014-11-11 18:23 - 2014-11-11 19:27 - 00000000 ____D () C:\Program Files (x86)\Kaspersky Lab
2014-11-11 09:20 - 2014-11-17 13:16 - 00000000 ____D () C:\ProgramData\ProductData
2014-11-11 09:20 - 2014-11-13 13:12 - 00000000 ____D () C:\Program Files (x86)\IObit
2014-11-11 09:20 - 2014-11-12 09:16 - 00000000 ____D () C:\Users\schingels\AppData\Roaming\IObit
2014-11-11 09:20 - 2014-11-12 09:16 - 00000000 ____D () C:\ProgramData\IObit
2014-11-11 09:20 - 2014-11-11 09:20 - 00002894 _____ () C:\Windows\System32\Tasks\Uninstaller_SkipUac_schingels
2014-11-11 09:20 - 2014-11-11 09:20 - 00001254 _____ () C:\Users\schingels\AppData\Roaming\Microsoft\Windows\Start Menu\Uninstall Programs.lnk
2014-11-11 09:20 - 2014-11-11 09:20 - 00001230 _____ () C:\Users\Public\Desktop\IObit Uninstaller.lnk
2014-11-11 09:20 - 2014-11-11 09:20 - 00000000 ____D () C:\Users\schingels\AppData\Roaming\ProductData
2014-11-11 09:18 - 2014-11-11 09:18 - 00210757 _____ () C:\ProgramData\1415693093.bdinstall.bin
2014-11-11 09:04 - 2014-11-14 08:56 - 00000000 ____D () C:\Users\schingels\AppData\Roaming\QuickScan
2014-11-10 16:00 - 2014-11-21 09:00 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-11-10 15:00 - 2014-11-10 15:00 - 00000000 ____D () C:\Program Files (x86)\Google
2014-11-09 16:47 - 2014-11-11 00:20 - 00000000 ____D () C:\ProgramData\Package Cache
2014-11-09 16:47 - 2014-11-09 16:47 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-11-09 16:45 - 2014-11-09 16:45 - 00000000 ____D () C:\Users\schingels\AppData\Roaming\Avira
2014-11-09 16:25 - 2014-11-11 00:20 - 00000000 ____D () C:\Users\schingels\AppData\Local\Tempf7eddb6ee0afd360be7fc7f5e70ab6ce
2014-11-09 16:25 - 2014-11-11 00:20 - 00000000 ____D () C:\Users\schingels\AppData\Local\Temp991f313088b215d209d2d97e3c209801
2014-11-09 16:25 - 2014-11-11 00:20 - 00000000 ____D () C:\Users\schingels\AppData\Local\Temp1270dc5f1665619a7e9941f8e54ac8ef
2014-11-07 10:44 - 2014-11-07 10:44 - 00003350 _____ () C:\Windows\System32\Tasks\SpyHunter4Startup
2014-11-07 10:44 - 2014-11-07 10:44 - 00000000 ____D () C:\Users\schingels\AppData\Roaming\Enigma Software Group
2014-11-07 10:44 - 2014-11-07 10:44 - 00000000 ____D () C:\sh4ldr
2014-11-07 09:12 - 2014-11-07 10:44 - 00022704 _____ () C:\Windows\system32\Drivers\EsgScanner.sys
2014-11-07 09:12 - 2014-11-07 10:43 - 00000000 ____D () C:\Windows\ACF5FE1B377240688B872D2A6EFD0A05.TMP
2014-11-07 08:28 - 2014-11-07 08:28 - 00000000 ____D () C:\Users\schingels\AppData\Local\Tempad3126ee63524b68efcd1700a6640da9
2014-11-07 08:28 - 2014-11-07 08:28 - 00000000 ____D () C:\Users\schingels\AppData\Local\Temp68d1ed6af116173792cd0c0fe2aaeb86
2014-11-06 07:53 - 2014-11-21 10:51 - 00000000 ____D () C:\FRST
2014-11-05 10:16 - 2014-11-05 10:16 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-11-04 06:32 - 2014-09-05 03:11 - 06584320 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-11-04 06:32 - 2014-09-05 02:52 - 05703168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2014-11-02 09:37 - 2013-10-02 03:22 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2014-11-02 09:37 - 2013-10-02 03:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-11-02 09:37 - 2013-10-02 03:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-11-02 09:37 - 2013-10-02 02:48 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2014-11-02 09:37 - 2013-10-02 02:48 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2014-11-02 09:37 - 2013-10-02 02:29 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2014-11-02 09:37 - 2013-10-02 02:10 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-11-02 09:37 - 2013-10-02 01:15 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2014-11-02 09:37 - 2013-10-02 01:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll
2014-11-02 09:37 - 2013-10-02 01:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2014-11-02 09:37 - 2013-10-02 01:08 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2014-11-02 09:37 - 2013-10-02 01:01 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2014-11-02 09:37 - 2013-10-02 00:58 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2014-11-02 09:37 - 2013-10-02 00:31 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2014-11-02 09:37 - 2013-10-02 00:08 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2014-11-02 09:37 - 2013-10-01 23:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2014-10-31 21:24 - 2014-10-31 21:24 - 00000904 _____ () C:\Users\schingels\Desktop\TapinRadio.lnk
2014-10-31 21:24 - 2014-10-31 21:24 - 00000000 ____D () C:\Users\schingels\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TapinRadio

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-21 07:32 - 2014-08-28 11:17 - 00005168 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for schingels-PC-schingels schingels-PC
2014-11-21 07:27 - 2009-07-14 05:45 - 00009696 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-11-21 07:27 - 2009-07-14 05:45 - 00009696 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-11-21 07:22 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-11-21 07:20 - 2013-09-10 17:03 - 00002056 _____ () C:\Users\Public\Desktop\Wise Care 365.lnk
2014-11-21 07:19 - 2013-09-10 18:00 - 00000430 _____ () C:\Windows\Tasks\Wise Care 365.job
2014-11-21 07:19 - 2013-09-10 17:57 - 00000000 ____D () C:\Users\schingels\AppData\Roaming\Wise Care 365
2014-11-21 07:19 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-11-21 07:18 - 2011-11-23 15:28 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-11-20 06:58 - 2014-10-21 08:16 - 00000974 _____ () C:\Users\Public\Desktop\Ashampoo WinOptimizer 11.lnk
2014-11-20 06:58 - 2013-09-10 16:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
2014-11-20 06:58 - 2013-09-10 16:44 - 00000000 ____D () C:\ProgramData\ashampoo
2014-11-18 17:00 - 2013-03-10 18:16 - 00000000 ____D () C:\Users\schingels\AppData\Local\Deployment
2014-11-17 20:10 - 2014-01-22 08:02 - 00003064 _____ () C:\Windows\System32\Tasks\ACMON
2014-11-17 13:16 - 2014-02-18 15:03 - 00000000 ____D () C:\Users\schingels\Documents\Mein Steuer-Sparbuch Heute
2014-11-17 10:40 - 2014-04-10 16:26 - 00000000 ____D () C:\Users\schingels\Documents\Recover Keys Online Store-Dateien
2014-11-17 10:40 - 2014-01-04 16:38 - 00000000 ____D () C:\Users\schingels\Documents\Sparkasse Westholstein (22250020) - SEPA Überweisung-Dateien
2014-11-16 19:10 - 2014-06-23 17:20 - 00002942 _____ () C:\Windows\System32\Tasks\{D618E339-78DC-4056-AE3D-3870DD7D936B}
2014-11-16 19:10 - 2014-06-23 17:19 - 00002942 _____ () C:\Windows\System32\Tasks\{4565DE98-4314-48CE-B670-D1CA4F40EB2F}
2014-11-16 09:51 - 2011-02-19 05:24 - 00730014 _____ () C:\Windows\system32\perfh007.dat
2014-11-16 09:51 - 2011-02-19 05:24 - 00159592 _____ () C:\Windows\system32\perfc007.dat
2014-11-16 09:51 - 2009-07-14 06:13 - 01690812 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-11-14 18:14 - 2013-10-14 18:28 - 00000000 ____D () C:\ProgramData\McAfee
2014-11-14 09:18 - 2014-01-21 20:01 - 00000000 ____D () C:\AdwCleaner
2014-11-14 07:35 - 2013-10-14 19:23 - 00000000 ____D () C:\Program Files\Common Files\McAfee
2014-11-13 21:30 - 2013-10-14 19:23 - 00000000 ____D () C:\Program Files\McAfee
2014-11-13 16:34 - 2013-12-22 15:36 - 00000000 ____D () C:\Program Files\stinger
2014-11-13 16:08 - 2013-09-10 17:58 - 00000000 ____D () C:\Program Files (x86)\TuneUp Utilities 2013
2014-11-13 13:12 - 2014-07-30 13:47 - 00000000 __SHD () C:\Nsi.pending
2014-11-13 10:13 - 2013-12-27 17:39 - 00000000 ____D () C:\Users\schingels\AppData\Roaming\Steganos
2014-11-13 09:16 - 2011-04-13 03:47 - 00000000 ____D () C:\Program Files (x86)\ASUS
2014-11-13 09:06 - 2014-08-28 07:29 - 00000000 ____D () C:\ProgramData\AVAST Software
2014-11-13 08:15 - 2014-06-24 09:31 - 00000000 ____D () C:\Users\schingels\AppData\Local\620966BE-20EC-402D-ADC7-17A075A3742B.aplzod
2014-11-12 22:30 - 2011-11-23 15:31 - 00000000 ____D () C:\Program Files (x86)\Realtek
2014-11-12 22:30 - 2011-11-23 15:22 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-11-12 21:19 - 2011-11-23 15:45 - 00004140 _____ () C:\Windows\system32\AutoRunFilter.ini
2014-11-12 20:43 - 2013-04-02 19:22 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-11-12 16:58 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-11-12 15:32 - 2013-04-02 19:22 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-11-12 15:32 - 2012-05-27 21:29 - 00000000 ____D () C:\Users\schingels\AppData\Local\Adobe
2014-11-12 15:32 - 2012-04-02 17:26 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-11-12 15:32 - 2011-12-25 20:29 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-11-12 15:20 - 2012-05-27 21:28 - 00000000 ____D () C:\ProgramData\Adobe
2014-11-12 15:07 - 2011-11-23 15:45 - 00002660 _____ () C:\Windows\system32\ServiceFilter.ini
2014-11-12 14:47 - 2014-10-17 08:27 - 04918960 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2014-11-12 14:43 - 2014-05-01 05:25 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-11-12 08:45 - 2009-07-29 07:03 - 00000000 ____D () C:\Windows\Panther
2014-11-12 07:43 - 2013-07-19 23:02 - 00000000 ____D () C:\Windows\system32\MRT
2014-11-12 07:36 - 2011-12-16 00:45 - 103374192 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-11-11 19:27 - 2014-01-21 17:53 - 00000000 ____D () C:\Program Files\Enigma Software Group
2014-11-11 18:48 - 2013-09-10 16:51 - 00000000 ____D () C:\Program Files (x86)\COMPUTERBILD-Abzockschutz
2014-11-11 18:33 - 2013-10-11 18:16 - 00000000 ____D () C:\ProgramData\Apple
2014-11-11 18:33 - 2013-10-11 18:16 - 00000000 ____D () C:\Program Files\Common Files\Apple
2014-11-11 18:26 - 2012-02-26 23:04 - 00000000 ____D () C:\Users\schingels\AppData\Roaming\DVDVideoSoft
2014-11-11 18:23 - 2012-09-03 19:25 - 00000000 ____D () C:\ProgramData\Kaspersky Lab
2014-11-11 18:18 - 2011-11-23 15:41 - 00000000 ____D () C:\Program Files (x86)\Renesas Electronics
2014-11-11 17:55 - 2011-12-15 19:45 - 00000000 ___HD () C:\ASUS.DAT
2014-11-11 17:55 - 2011-11-23 15:50 - 00000000 ____D () C:\Program Files (x86)\CyberLink
2014-11-11 17:55 - 2011-11-23 15:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS Utility
2014-11-11 17:52 - 2011-11-23 15:50 - 00000000 ____D () C:\ProgramData\CyberLink
2014-11-11 09:30 - 2013-10-21 19:34 - 00000000 ____D () C:\Program Files (x86)\concept design
2014-11-11 09:22 - 2013-10-11 18:18 - 00000000 ____D () C:\Users\schingels\AppData\Roaming\Apple Computer
2014-11-11 00:20 - 2013-10-23 19:04 - 00000000 ____D () C:\ProgramData\McAfee Security Scan
2014-11-11 00:20 - 2011-11-23 15:44 - 00000000 ____D () C:\ProgramData\P4G
2014-11-11 00:20 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\registration
2014-11-10 15:36 - 2011-12-15 19:44 - 00000000 ____D () C:\Users\schingels
2014-11-09 16:47 - 2013-10-13 19:33 - 00000000 ____D () C:\ProgramData\Avira
2014-11-07 07:05 - 2014-10-21 10:03 - 00003156 _____ () C:\Windows\System32\Tasks\AdvancedDriverUpdaterRunAtStartup
2014-11-04 08:08 - 2009-07-14 06:32 - 00000000 ____D () C:\Windows\system32\FxsTmp
2014-11-03 10:59 - 2012-05-01 12:44 - 00000000 ____D () C:\Users\schingels\AppData\Local\Windows Live
2014-11-02 10:03 - 2012-10-07 21:13 - 00000000 ____D () C:\Windows\SysWOW64\NV
2014-11-02 10:03 - 2012-10-07 21:13 - 00000000 ____D () C:\Windows\system32\NV
2014-11-02 10:02 - 2009-07-14 04:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2014-11-01 09:56 - 2009-07-14 06:08 - 00032640 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-10-31 13:22 - 2014-03-11 17:30 - 00000000 ____D () C:\Users\schingels\AppData\Roaming\ALFBanCo5
2014-10-31 13:22 - 2014-03-11 17:30 - 00000000 ____D () C:\ProgramData\AlfBanCo5
2014-10-31 05:06 - 2014-08-22 05:17 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-10-31 05:06 - 2014-08-22 05:17 - 00000000 ____D () C:\Program Files (x86)\Java
2014-10-27 08:57 - 2014-08-22 14:46 - 00000000 ____D () C:\Users\schingels\AppData\Roaming\Steganos VPN
2014-10-24 08:05 - 2014-01-29 17:09 - 00000000 ____D () C:\Users\schingels\AppData\Local\Microsoft Help
2014-10-24 08:05 - 2013-09-11 08:16 - 00003704 _____ () C:\Windows\System32\Tasks\Java Update Scheduler
2014-10-24 06:39 - 2013-11-01 20:51 - 00000000 ____D () C:\ProgramData\Oracle
2014-10-24 06:39 - 2013-11-01 20:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-10-24 05:55 - 2013-09-10 17:48 - 00000000 ____D () C:\Program Files\Microsoft Office 15
2014-10-22 06:20 - 2013-10-11 18:17 - 00000000 ____D () C:\Users\schingels\AppData\Local\Apple

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2013-10-31 00:16
:applaus::dankeschoen::taenzer:
         
Vielen Dank ich bin erlöst, das war hart. Ich habe einige Zeit gebraucht, da man im Urlaub mit einem Tschibo Stick eine schwache Verbindung hat. 1 und 1 Stick ist noch viel schlimmer. Freundliche Grüsse Günther und viel Erfolg im Aussendienst. Mich habt Ihr erstmal an der Backe . Ihr seit toll. man weiss nie was kommt und es werden immer Löcher gesucht, den Kunden zu attackieren. Ich habe Lollipop. seit ich Firefox, seit ich bei Chip neu geladen habe. diesmal war ich direkt bei firefox Modzilla, und das würde ich jetzt immer beibehalten.

Alt 22.11.2014, 08:55   #20
schrauber
/// the machine
/// TB-Ausbilder
 

lollipop werde ich nicht los, trotz Einsatz aller angeblich so tollen Antiviernprogramme postiver Erkennung unter "Schrauber " - Standard

lollipop werde ich nicht los, trotz Einsatz aller angeblich so tollen Antiviernprogramme postiver Erkennung unter "Schrauber "



Fertig

Die Reihenfolge ist hier entscheidend.
  1. Falls Defogger benutzt wurde: Defogger nochmal starten und auf re-enable klicken.
  2. Falls Combofix benutzt wurde: (Alternativ in uninstall.exe umbenennen und starten)
    • Windowstaste + R > Combofix /Uninstall (eingeben) > OK
    • Alternative: Combofix.exe in uninstall.exe umbenennen und starten
    • Combofix wird jetzt starten, sich evtl updaten und dann alle Reste von sich selbst entfernen.
  3. Downloade Dir bitte auf jeden Fall DelFix Download DelFix auf deinen Desktop:
    • Schließe alle offenen Programme.
    • Starte die delfix.exe mit einem Doppelklick.
    • Setze vor jede Funktion ein Häkchen.
    • Klicke auf Start.
    • Hinweis: DelFix entfernt u. a. alle verwendeten Programme, die Quarantäne unserer Scanner, den Java-Cache und löscht sich abschließend selbst.
    • Starte deinen Rechner abschließend neu.
  4. Sollten jetzt noch Programme aus unserer Bereinigung übrig sein kannst du sie bedenkenlos löschen.



Falls Du Lob oder Kritik abgeben möchtest kannst Du das hier tun

Hier noch ein paar Tipps zur Absicherung deines Systems.


Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
  • Bitte überprüfe ob dein System Windows Updates automatisch herunter lädt
  • Windows Updates
    • Windows XP: Start --> Systemsteuerung --> Doppelklick auf Automatische Updates
    • Windows Vista / 7: Start --> Systemsteuerung --> System und Sicherheit --> Automatische Updates aktivieren oder deaktivieren
  • Gehe sicher das die automatischen Updates aktiviert sind.
  • Software Updates
    Installierte Software kann ebenfalls Sicherheitslücken haben, welche Malware nutzen kann, um dein System zu infizieren.
    Um deine Installierte Software up to date zu halten, empfehle ich dir Secunia Online Software.


Anti- Viren Software
  • Gehe sicher immer eine Anti Viren Software installiert zu haben und das diese auch up to date ist. Es ist nämlich nutzlos wenn diese out of date sind.


Zusätzlicher Schutz
  • MalwareBytes Anti Malware
    Dies ist eines der besten Anti-Malware Tools auf dem Markt. Es ist ein On- Demond Scan Tool welches viele aktuelle Malware erkennt und auch entfernt.
    Update das Tool und lass es einmal in der Woche laufen. Die Kaufversion biete zudem noch einen Hintergrundwächter.
    Ein Tutorial zur Verwendung findest Du hier.
  • WinPatrol
    Diese Software macht einen Snapshot deines Systems und warnt dich vor eventuellen Änderungen. Downloade dir die Freeware Version von hier.


Sicheres Browsen
  • SpywareBlaster
    Eine kurze Einführung findest du Hier
  • MVPs hosts file
    Ein Tutorial findest Du hier. Leider habe ich bis jetzt kein deutschsprachiges gefunden.
  • WOT (Web of trust)
    Dieses AddOn warnt Dich bevor Du eine als schädlich gemeldete Seite besuchst.


Alternative Browser

Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
  • Opera
  • Mozilla Firefox.
    • Hinweis: Für diesen Browser habe ich hier ein paar nützliche Add Ons
    • NoScript
      Dieses AddOn blockt JavaScript, Java and Flash und andere Plugins. Sie werden nur dann ausgeführt wenn Du es bestätigst.
    • AdblockPlus
      Dieses AddOn blockt die meisten Werbung von selbst. Ein Rechtsklick auf den Banner um diesen zu AdBlockPlus hinzu zu fügen reicht und dieser wird nicht mehr geladen.
      Es spart ausserdem Downloadkapazität.

Performance
Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC
Halte dich fern von jedlichen Registry Cleanern.
Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links
Miekemoes Blogspot ( MVP )
Bill Castner ( MVP )



Don'ts
  • Klicke nicht auf alles nur weil es Dich dazu auffordert und schön bunt ist.
  • verwende keine peer to peer oder Filesharing Software (Emule, uTorrent,..)
  • Lass die Finger von Cracks, Keygens, Serials oder anderer illegaler Software.
  • Öffne keine Anhänge von Dir nicht bekannten Emails. Achte vor allem auf die Dateiendung wie zb deinFoto.jpg.exe
Nun bleibt mir nur noch dir viel Spass beim sicheren Surfen zu wünschen.

Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.

__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 23.11.2014, 20:37   #21
ggoettling
 
lollipop werde ich nicht los, trotz Einsatz aller angeblich so tollen Antiviernprogramme postiver Erkennung unter "Schrauber " - Standard

lollipop werde ich nicht los, trotz Einsatz aller angeblich so tollen Antiviernprogramme postiver Erkennung unter "Schrauber "



Hallo Schrauber danke, ich werde alle Vorschläge abarbeiten und umsetzen ud hoffe, dass ich in Zukunft mehr Glück habe. fg Günther Göttling

Alt 24.11.2014, 18:04   #22
schrauber
/// the machine
/// TB-Ausbilder
 

lollipop werde ich nicht los, trotz Einsatz aller angeblich so tollen Antiviernprogramme postiver Erkennung unter "Schrauber " - Standard

lollipop werde ich nicht los, trotz Einsatz aller angeblich so tollen Antiviernprogramme postiver Erkennung unter "Schrauber "



Gern Geschehen
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Antwort

Themen zu lollipop werde ich nicht los, trotz Einsatz aller angeblich so tollen Antiviernprogramme postiver Erkennung unter "Schrauber "
antivier, erkennung, fehlercode 0x40000015, fehlercode 0x80000003, fehlercode 0x80070490, fehlercode 22, fehlercode 28, fehlercode windows, internetseite, lollipop network entfernen, loszuwerden, snap.do entfernen, spyhunter entfernen, this device is disabled. (code 22), änderung




Ähnliche Themen: lollipop werde ich nicht los, trotz Einsatz aller angeblich so tollen Antiviernprogramme postiver Erkennung unter "Schrauber "


  1. Ordner läst sich trotz "Unlocker" nicht Löschen
    Alles rund um Windows - 18.10.2015 (16)
  2. Tägliche "Erkennung interaktiver Dienste" und "automatische Abmeldung" bei web.de
    Log-Analyse und Auswertung - 12.02.2015 (41)
  3. Problem beim Öffnen aller Programme ("Ungültiges Bild -..*.dll."st entweder..")
    Log-Analyse und Auswertung - 09.02.2015 (11)
  4. Herzlichen Dank "Schrauber" - "Problem mit der Gruppenrichtlinie" blockiert" gelöst
    Lob, Kritik und Wünsche - 11.12.2014 (0)
  5. Bundesregierung: Trojaner-Einsatz des BND ist "Verschlusssache Geheim"
    Nachrichten - 23.07.2014 (0)
  6. Fehlermeldung "Erkennung inaktiver Dienste" anbei Antimalwarebyte Scan
    Log-Analyse und Auswertung - 15.12.2013 (11)
  7. Infektion "Internet Security Pro"/ "wmdefender.exe" unter Vista; Keine Erkennung mit MBAM
    Log-Analyse und Auswertung - 22.08.2013 (19)
  8. "Redirect-Virus" unter Windows 8 / "document has moved redirecting..."
    Plagegeister aller Art und deren Bekämpfung - 23.01.2013 (11)
  9. Erkennung der Datei AESCRIPT.DLL als "TR/Spy.463227" ist Fehlalarm
    Nachrichten - 27.10.2011 (0)
  10. Werde den fake-Virenscanner "Antivirus Soft" nicht los
    Plagegeister aller Art und deren Bekämpfung - 19.05.2010 (3)
  11. Habe "TrojanDownloader:Win32/Renos.jm" auf Rechner.Trotz Programme nicht löschbar
    Plagegeister aller Art und deren Bekämpfung - 17.02.2010 (31)
  12. antivir & internet funktioniert nicht mehr trotz scheinbarer "bereinigung"
    Plagegeister aller Art und deren Bekämpfung - 22.09.2009 (5)
  13. "RECYCLER konnte nicht gefunden werde" - kann nicht auf C: zugreifen
    Plagegeister aller Art und deren Bekämpfung - 16.03.2009 (10)
  14. Versteckte Datei "kdzqj.exe" in System32 und Reg-Eintrag "System" unter Winlogon
    Plagegeister aller Art und deren Bekämpfung - 25.03.2008 (22)
  15. Trojaner trotz "Zugriff verweigern" nach antiVIR-Erkennung?
    Log-Analyse und Auswertung - 21.09.2007 (4)
  16. "about:blank" krieg ich trotz eurer beschreibung nicht los! help!
    Log-Analyse und Auswertung - 24.11.2004 (42)
  17. Werde "Trojan.Win32.StartPage.ix" nicht mehr los!!!
    Log-Analyse und Auswertung - 23.06.2004 (2)

Zum Thema lollipop werde ich nicht los, trotz Einsatz aller angeblich so tollen Antiviernprogramme postiver Erkennung unter "Schrauber " - Zitat: vielen Dank schlechte Verbindung, Geduld erforderlich von meiner Seite. Explorer nach Sicherheitsupdate Änderungen ohne Lollipop. freundliche Grüsse Günther what? Heisst das Probleme sind weg oder wie? - lollipop werde ich nicht los, trotz Einsatz aller angeblich so tollen Antiviernprogramme postiver Erkennung unter "Schrauber "...
Archiv
Du betrachtest: lollipop werde ich nicht los, trotz Einsatz aller angeblich so tollen Antiviernprogramme postiver Erkennung unter "Schrauber " auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.