![]() |
|
Plagegeister aller Art und deren Bekämpfung: Spammails von meinem T-Online KontoWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
![]() | #1 |
![]() ![]() | ![]() Spammails von meinem T-Online Konto Hallo, von meinem T-Online Konto (genutzt mit Thunderbird) werden seit 5 Tagen Spam's verschickt. Ich habe das gleiche Problem wie in diesem Beitrag. http://www.trojaner-board.de/169934-...-postfach.html Mein PW habe ich schon geändert, dies hat aber nichts geholfen. Mein Avira hat nichts gefunden. Ich habe das Farbar's Recovery Scan Tool runtergeladen und folgendes Ergebnis brachte mir eine Untersuchung Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:20-08-2015 durchgeführt von manfred (Administrator) auf MANNIKR (20-08-2015 15:44:54) Gestartet von C:\Users\manfred\Downloads Geladene Profile: manfred & (Verfügbare Profile: manfred & Administrator) Platform: Windows 8.1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe () C:\Program Files\Digital Dynamic\Advanced Backup Manager\backupsvc5.exe (Genie9) C:\Program Files\Genie9\Genie Timeline\GenieTimelineService.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareService.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe (TomTom) C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\sua.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe (Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17709_none_fa7932f59afc2e40\TiWorker.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareTray.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe (Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Lavasoft) C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Farbar) C:\Users\manfred\Downloads\FRST64(1).exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [] => [X] HKLM\...\Run: [AdAwareTray] => C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareTray.exe [9549808 2015-06-24] () HKLM-x32\...\Run: [CLMLServer_For_P2G8] => c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111120 2012-06-08] (CyberLink) HKLM-x32\...\Run: [CLVirtualDrive] => c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [491120 2012-07-02] (CyberLink Corp.) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [782008 2015-07-24] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [Ad-Aware Browsing Protection] => C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe [559696 2013-09-27] (Lavasoft) HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [5624784 2013-07-25] (Safer-Networking Ltd.) HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2072928 2014-10-31] (Wondershare) HKLM-x32\...\Run: [LCWB] => C:\Program Files (x86)\LernenUndCo\LCWB.exe [3304448 2010-11-03] (GEKKO Software GmbH) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-06-08] (Oracle Corporation) Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001\...\Run: [Spybot-S&D Cleaning] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [3666224 2013-09-20] (Safer-Networking Ltd.) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8418584 2015-07-17] (Piriform Ltd) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001\...\Run: [TomTomHOME.exe] => C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe [248176 2015-04-30] (TomTom) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Spybot-S&D Cleaning] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [3666224 2013-09-20] (Safer-Networking Ltd.) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8418584 2015-07-17] (Piriform Ltd) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [TomTomHOME.exe] => C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe [248176 2015-04-30] (TomTom) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\...\Run: [Spybot-S&D Cleaning] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [3666224 2013-09-20] (Safer-Networking Ltd.) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8418584 2015-07-17] (Piriform Ltd) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\...\Run: [TomTomHOME.exe] => C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe [248176 2015-04-30] (TomTom) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3\...\Run: [Spybot-S&D Cleaning] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [3666224 2013-09-20] (Safer-Networking Ltd.) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8418584 2015-07-17] (Piriform Ltd) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3\...\Run: [TomTomHOME.exe] => C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe [248176 2015-04-30] (TomTom) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-4\...\Run: [Spybot-S&D Cleaning] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [3666224 2013-09-20] (Safer-Networking Ltd.) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-4\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8418584 2015-07-17] (Piriform Ltd) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-4\...\Run: [TomTomHOME.exe] => C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe [248176 2015-04-30] (TomTom) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-4\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-5\...\Run: [Spybot-S&D Cleaning] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [3666224 2013-09-20] (Safer-Networking Ltd.) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-5\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8418584 2015-07-17] (Piriform Ltd) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-5\...\Run: [TomTomHOME.exe] => C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe [248176 2015-04-30] (TomTom) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-5\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-6\...\Run: [Spybot-S&D Cleaning] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [3666224 2013-09-20] (Safer-Networking Ltd.) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-6\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8418584 2015-07-17] (Piriform Ltd) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-6\...\Run: [TomTomHOME.exe] => C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe [248176 2015-04-30] (TomTom) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-6\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-7\...\Run: [Spybot-S&D Cleaning] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [3666224 2013-09-20] (Safer-Networking Ltd.) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-7\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8418584 2015-07-17] (Piriform Ltd) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-7\...\Run: [TomTomHOME.exe] => C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe [248176 2015-04-30] (TomTom) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-7\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-8\...\Run: [Spybot-S&D Cleaning] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [3666224 2013-09-20] (Safer-Networking Ltd.) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-8\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8418584 2015-07-17] (Piriform Ltd) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-8\...\Run: [TomTomHOME.exe] => C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe [248176 2015-04-30] (TomTom) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-8\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-9\...\Run: [Spybot-S&D Cleaning] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [3666224 2013-09-20] (Safer-Networking Ltd.) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-9\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8418584 2015-07-17] (Piriform Ltd) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-9\...\Run: [TomTomHOME.exe] => C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe [248176 2015-04-30] (TomTom) HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-9\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.) HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Spybot-S&D Cleaning] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [3666224 2013-09-20] (Safer-Networking Ltd.) HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2014-10-29] (Microsoft Corporation) HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\...\Run: [Spybot-S&D Cleaning] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [3666224 2013-09-20] (Safer-Networking Ltd.) HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2014-10-29] (Microsoft Corporation) HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3\...\Run: [Spybot-S&D Cleaning] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [3666224 2013-09-20] (Safer-Networking Ltd.) HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2014-10-29] (Microsoft Corporation) HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-4\...\Run: [Spybot-S&D Cleaning] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [3666224 2013-09-20] (Safer-Networking Ltd.) HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-4\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2014-10-29] (Microsoft Corporation) HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-5\...\Run: [Spybot-S&D Cleaning] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [3666224 2013-09-20] (Safer-Networking Ltd.) HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-5\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2014-10-29] (Microsoft Corporation) HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-6\...\Run: [Spybot-S&D Cleaning] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [3666224 2013-09-20] (Safer-Networking Ltd.) HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-6\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2014-10-29] (Microsoft Corporation) HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-7\...\Run: [Spybot-S&D Cleaning] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [3666224 2013-09-20] (Safer-Networking Ltd.) HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-7\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2014-10-29] (Microsoft Corporation) HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-8\...\Run: [Spybot-S&D Cleaning] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [3666224 2013-09-20] (Safer-Networking Ltd.) HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-8\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2014-10-29] (Microsoft Corporation) HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-9\...\Run: [Spybot-S&D Cleaning] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [3666224 2013-09-20] (Safer-Networking Ltd.) HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-9\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2014-10-29] (Microsoft Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Secunia PSI Tray.lnk [2015-02-04] ShortcutTarget: Secunia PSI Tray.lnk -> C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (Secunia) ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => Keine Datei ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => Keine Datei ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => Keine Datei ShellIconOverlayIdentifiers: [0GenieTimeLine-BackedUp] -> {88A8B1ED-EFEA-4A15-8D88-FA0055DCB824} => C:\Program Files\Genie9\Genie Timeline\GSTimelineIconOverlay.gtl [2013-12-29] () ShellIconOverlayIdentifiers: [0GenieTimeLine-Excluded] -> {B77E8651-93B1-40CD-8ECF-6F33DAC805A0} => C:\Program Files\Genie9\Genie Timeline\GSTimelineIconOverlay.gtl [2013-12-29] () ShellIconOverlayIdentifiers: [0GenieTimeLine-Folder] -> {CEAF16CE-C11C-4081-BE29-DDE7F45A59DB} => C:\Program Files\Genie9\Genie Timeline\GSTimelineIconOverlay.gtl [2013-12-29] () ShellIconOverlayIdentifiers: [0GenieTimeLine-NotBackedUp] -> {88A8B1EE-EFEA-4A15-8D88-FA0055DCB824} => C:\Program Files\Genie9\Genie Timeline\GSTimelineIconOverlay.gtl [2013-12-29] () ShellIconOverlayIdentifiers: [0GenieTimeLine-Pending ] -> {88A8B1EF-EFEA-4A15-8D88-FA0055DCB824} => C:\Program Files\Genie9\Genie Timeline\GSTimelineIconOverlay.gtl [2013-12-29] () ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => Keine Datei ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => Keine Datei ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => Keine Datei ShellIconOverlayIdentifiers-x32: [0GenieTimeLine-BackedUp] -> {88A8B1ED-EFEA-4A15-8D88-FA0055DCB824} => C:\Program Files\Genie9\Genie Timeline\x86\GSTimelineIconOverlay.gtl [2013-12-29] () ShellIconOverlayIdentifiers-x32: [0GenieTimeLine-Excluded] -> {B77E8651-93B1-40CD-8ECF-6F33DAC805A0} => C:\Program Files\Genie9\Genie Timeline\x86\GSTimelineIconOverlay.gtl [2013-12-29] () ShellIconOverlayIdentifiers-x32: [0GenieTimeLine-Folder] -> {CEAF16CE-C11C-4081-BE29-DDE7F45A59DB} => C:\Program Files\Genie9\Genie Timeline\x86\GSTimelineIconOverlay.gtl [2013-12-29] () ShellIconOverlayIdentifiers-x32: [0GenieTimeLine-NotBackedUp] -> {88A8B1EE-EFEA-4A15-8D88-FA0055DCB824} => C:\Program Files\Genie9\Genie Timeline\x86\GSTimelineIconOverlay.gtl [2013-12-29] () ShellIconOverlayIdentifiers-x32: [0GenieTimeLine-Pending ] -> {88A8B1EF-EFEA-4A15-8D88-FA0055DCB824} => C:\Program Files\Genie9\Genie Timeline\x86\GSTimelineIconOverlay.gtl [2013-12-29] () ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt..) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = HKU\S-1-5-21-3207775961-1083249041-1324932386-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-4\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-5\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-6\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-7\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-8\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-9\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/CQDSK13/4 HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/CQDSK13/4 HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/CQDSK13/4 HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-4\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/CQDSK13/4 HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-5\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/CQDSK13/4 HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-6\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/CQDSK13/4 HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-7\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/CQDSK13/4 HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-8\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/CQDSK13/4 HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-9\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/CQDSK13/4 SearchScopes: HKLM -> DefaultScope {FA0A5588-F9A4-4D6F-81DD-49E60099D5C3} URL = hxxp://www.sm.de/?q={searchTerms} SearchScopes: HKLM -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-154345-12128-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} SearchScopes: HKLM -> {FA0A5588-F9A4-4D6F-81DD-49E60099D5C3} URL = hxxp://www.sm.de/?q={searchTerms} SearchScopes: HKLM -> {FA4E102D-4355-4CB0-A5EC-25326D99C11F} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM-x32 -> DefaultScope Wert fehlt SearchScopes: HKLM-x32 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-154345-12128-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} SearchScopes: HKLM-x32 -> {FA4E102D-4355-4CB0-A5EC-25326D99C11F} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001 -> {FA0A5588-F9A4-4D6F-81DD-49E60099D5C3} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001 -> {FA4E102D-4355-4CB0-A5EC-25326D99C11F} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> {FA0A5588-F9A4-4D6F-81DD-49E60099D5C3} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> {FA4E102D-4355-4CB0-A5EC-25326D99C11F} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2 -> {FA0A5588-F9A4-4D6F-81DD-49E60099D5C3} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2 -> {FA4E102D-4355-4CB0-A5EC-25326D99C11F} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3 -> {FA0A5588-F9A4-4D6F-81DD-49E60099D5C3} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3 -> {FA4E102D-4355-4CB0-A5EC-25326D99C11F} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-4 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-4 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-4 -> {FA0A5588-F9A4-4D6F-81DD-49E60099D5C3} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-4 -> {FA4E102D-4355-4CB0-A5EC-25326D99C11F} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-5 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-5 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-5 -> {FA0A5588-F9A4-4D6F-81DD-49E60099D5C3} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-5 -> {FA4E102D-4355-4CB0-A5EC-25326D99C11F} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-6 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-6 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-6 -> {FA0A5588-F9A4-4D6F-81DD-49E60099D5C3} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-6 -> {FA4E102D-4355-4CB0-A5EC-25326D99C11F} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-7 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-7 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-7 -> {FA0A5588-F9A4-4D6F-81DD-49E60099D5C3} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-7 -> {FA4E102D-4355-4CB0-A5EC-25326D99C11F} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-8 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-8 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-8 -> {FA0A5588-F9A4-4D6F-81DD-49E60099D5C3} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-8 -> {FA4E102D-4355-4CB0-A5EC-25326D99C11F} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-9 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-9 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-9 -> {FA0A5588-F9A4-4D6F-81DD-49E60099D5C3} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-9 -> {FA4E102D-4355-4CB0-A5EC-25326D99C11F} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> {FA0A5588-F9A4-4D6F-81DD-49E60099D5C3} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> {FA4E102D-4355-4CB0-A5EC-25326D99C11F} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2 -> {FA0A5588-F9A4-4D6F-81DD-49E60099D5C3} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2 -> {FA4E102D-4355-4CB0-A5EC-25326D99C11F} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3 -> {FA0A5588-F9A4-4D6F-81DD-49E60099D5C3} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3 -> {FA4E102D-4355-4CB0-A5EC-25326D99C11F} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-4 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-4 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-4 -> {FA0A5588-F9A4-4D6F-81DD-49E60099D5C3} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-4 -> {FA4E102D-4355-4CB0-A5EC-25326D99C11F} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-5 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-5 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-5 -> {FA0A5588-F9A4-4D6F-81DD-49E60099D5C3} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-5 -> {FA4E102D-4355-4CB0-A5EC-25326D99C11F} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-6 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-6 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-6 -> {FA0A5588-F9A4-4D6F-81DD-49E60099D5C3} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-6 -> {FA4E102D-4355-4CB0-A5EC-25326D99C11F} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-7 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-7 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-7 -> {FA0A5588-F9A4-4D6F-81DD-49E60099D5C3} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-7 -> {FA4E102D-4355-4CB0-A5EC-25326D99C11F} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-8 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-8 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-8 -> {FA0A5588-F9A4-4D6F-81DD-49E60099D5C3} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-8 -> {FA4E102D-4355-4CB0-A5EC-25326D99C11F} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-9 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-9 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-9 -> {FA0A5588-F9A4-4D6F-81DD-49E60099D5C3} URL = SearchScopes: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-9 -> {FA4E102D-4355-4CB0-A5EC-25326D99C11F} URL = BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28] (Hewlett-Packard) BHO: DVDVideoSoft IE Extension -> {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} -> C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll [2014-11-20] (DVDVideoSoft Ltd.) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll [2015-07-16] (Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-07-16] (Oracle Corporation) BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28] (Hewlett-Packard) BHO-x32: DVDVideoSoft IE Extension -> {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} -> C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll [2014-11-22] (DVDVideoSoft Ltd.) Toolbar: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001 -> Kein Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Keine Datei Toolbar: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> Kein Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Keine Datei Toolbar: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2 -> Kein Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Keine Datei Toolbar: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3 -> Kein Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Keine Datei Toolbar: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-4 -> Kein Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Keine Datei Toolbar: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-5 -> Kein Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Keine Datei Toolbar: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-6 -> Kein Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Keine Datei Toolbar: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-7 -> Kein Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Keine Datei Toolbar: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-8 -> Kein Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Keine Datei Toolbar: HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-9 -> Kein Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Keine Datei Toolbar: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> Kein Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Keine Datei Toolbar: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2 -> Kein Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Keine Datei Toolbar: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3 -> Kein Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Keine Datei Toolbar: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-4 -> Kein Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Keine Datei Toolbar: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-5 -> Kein Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Keine Datei Toolbar: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-6 -> Kein Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Keine Datei Toolbar: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-7 -> Kein Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Keine Datei Toolbar: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-8 -> Kein Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Keine Datei Toolbar: HKU\S-1-5-21-3207775961-1083249041-1324932386-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-9 -> Kein Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Keine Datei Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{FF587969-3200-4DD4-9438-7BA22D7F7E72}: [DhcpNameServer] 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\manfred\AppData\Roaming\Mozilla\Firefox\Profiles\9btfy9vr.default FF SearchEngineOrder.1: SuchMaschine FF SelectedSearchEngine: SuchMaschine FF Homepage: hxxp://www.klamm.de/ FF Keyword.URL: hxxp://www.sm.de/?q= FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_18_0_0_232.dll [2015-08-12] () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll [2015-08-12] () FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1217157.dll [2015-02-16] (Adobe Systems, Inc.) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-04-22] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-04-22] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-07-16] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-07-16] (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-16] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-16] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.1.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-07-03] (Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-3207775961-1083249041-1324932386-1001: hp.com/HPDetect -> C:\Users\manfred\AppData\Roaming\HewlettPackard\HPDetect\1.0.0.0\npHPDetect.dll [2012-08-30] (HP) FF Plugin HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0: hp.com/HPDetect -> C:\Users\manfred\AppData\Roaming\HewlettPackard\HPDetect\1.0.0.0\npHPDetect.dll [2012-08-30] (HP) FF Plugin HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2: hp.com/HPDetect -> C:\Users\manfred\AppData\Roaming\HewlettPackard\HPDetect\1.0.0.0\npHPDetect.dll [2012-08-30] (HP) FF Plugin HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3: hp.com/HPDetect -> C:\Users\manfred\AppData\Roaming\HewlettPackard\HPDetect\1.0.0.0\npHPDetect.dll [2012-08-30] (HP) FF Plugin HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-4: hp.com/HPDetect -> C:\Users\manfred\AppData\Roaming\HewlettPackard\HPDetect\1.0.0.0\npHPDetect.dll [2012-08-30] (HP) FF Plugin HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-5: hp.com/HPDetect -> C:\Users\manfred\AppData\Roaming\HewlettPackard\HPDetect\1.0.0.0\npHPDetect.dll [2012-08-30] (HP) FF Plugin HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-6: hp.com/HPDetect -> C:\Users\manfred\AppData\Roaming\HewlettPackard\HPDetect\1.0.0.0\npHPDetect.dll [2012-08-30] (HP) FF Plugin HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-7: hp.com/HPDetect -> C:\Users\manfred\AppData\Roaming\HewlettPackard\HPDetect\1.0.0.0\npHPDetect.dll [2012-08-30] (HP) FF Plugin HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-8: hp.com/HPDetect -> C:\Users\manfred\AppData\Roaming\HewlettPackard\HPDetect\1.0.0.0\npHPDetect.dll [2012-08-30] (HP) FF Plugin HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-9: hp.com/HPDetect -> C:\Users\manfred\AppData\Roaming\HewlettPackard\HPDetect\1.0.0.0\npHPDetect.dll [2012-08-30] (HP) FF SearchPlugin: C:\Users\manfred\AppData\Roaming\Mozilla\Firefox\Profiles\9btfy9vr.default\searchplugins\google-images.xml [2015-06-06] FF SearchPlugin: C:\Users\manfred\AppData\Roaming\Mozilla\Firefox\Profiles\9btfy9vr.default\searchplugins\google-maps.xml [2015-06-06] FF Extension: Avira Browser Safety - C:\Users\manfred\AppData\Roaming\Mozilla\Firefox\Profiles\9btfy9vr.default\Extensions\abs@avira.com [2015-08-13] FF Extension: Google Translator for Firefox - C:\Users\manfred\AppData\Roaming\Mozilla\Firefox\Profiles\9btfy9vr.default\Extensions\translator@zoli.bod.xpi [2015-07-19] FF Extension: Kein Name - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{B64D9B05-48E1-4CEB-BF58-E0643994E900}.xpi [2015-08-17] FF HKU\S-1-5-21-3207775961-1083249041-1324932386-1001\...\Firefox\Extensions: [{B64D9B05-48E1-4CEB-BF58-E0643994E900}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff FF Extension: DVDVideoSoft YouTube MP3 and Video Download - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff [2014-12-07] FF HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Firefox\Extensions: [{B64D9B05-48E1-4CEB-BF58-E0643994E900}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff FF HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\...\Firefox\Extensions: [{B64D9B05-48E1-4CEB-BF58-E0643994E900}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff FF HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3\...\Firefox\Extensions: [{B64D9B05-48E1-4CEB-BF58-E0643994E900}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff FF HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-4\...\Firefox\Extensions: [{B64D9B05-48E1-4CEB-BF58-E0643994E900}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff FF HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-5\...\Firefox\Extensions: [{B64D9B05-48E1-4CEB-BF58-E0643994E900}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff FF HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-6\...\Firefox\Extensions: [{B64D9B05-48E1-4CEB-BF58-E0643994E900}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff FF HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-7\...\Firefox\Extensions: [{B64D9B05-48E1-4CEB-BF58-E0643994E900}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff FF HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-8\...\Firefox\Extensions: [{B64D9B05-48E1-4CEB-BF58-E0643994E900}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff FF HKU\S-1-5-21-3207775961-1083249041-1324932386-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-9\...\Firefox\Extensions: [{B64D9B05-48E1-4CEB-BF58-E0643994E900}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff Chrome: ======= CHR Profile: C:\Users\manfred\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Docs) - C:\Users\manfred\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-02-06] CHR Extension: (Google Drive) - C:\Users\manfred\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-02-06] CHR Extension: (YouTube) - C:\Users\manfred\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-02-06] CHR Extension: (Google Search) - C:\Users\manfred\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-02-06] CHR Extension: (Google Wallet) - C:\Users\manfred\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-02-06] CHR Extension: (Gmail) - C:\Users\manfred\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-02-06] CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx Opera: ======= OPR Extension: (DVDVideoSoft) - C:\Users\manfred\AppData\Roaming\Opera Software\Opera Stable\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp [2014-06-30] ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S2 AntiVirMailService; C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe [887128 2015-07-24] (Avira Operations GmbH & Co. KG) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [461672 2015-07-24] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [461672 2015-07-24] (Avira Operations GmbH & Co. KG) S2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1213072 2015-07-24] (Avira Operations GmbH & Co. KG) R2 backupsvc5; C:\Program Files\Digital Dynamic\Advanced Backup Manager\backupsvc5.exe [1404928 2015-07-27] () [Datei ist nicht signiert] S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-29] (Microsoft Corporation) R2 GenieTimelineService; C:\Program Files\Genie9\Genie Timeline\GenieTimelineService.exe [678976 2013-12-29] (Genie9) R2 HPConnectedRemote; c:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe [35232 2012-08-29] (Hewlett-Packard) S2 HPRegistrationSvc; c:\Program Files (x86)\Hewlett-Packard\HP Registration Service\HPRegistrationService.exe [205216 2012-07-19] (Hewlett-Packard) R2 HPSLPSVC; C:\Users\manfred\AppData\Local\Temp\7zS7106\hpslpsvc64.dll [1039360 2013-07-19] (Hewlett-Packard Co.) [Datei ist nicht signiert] R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [Datei ist nicht signiert] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2014-04-22] (Intel Corporation) R2 LavasoftAdAwareService11; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareService.exe [716664 2015-06-24] () R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1871160 2015-06-18] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation) R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [246488 2013-08-01] (Realtek Semiconductor) R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [3921880 2013-10-15] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1042272 2013-09-20] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171416 2013-09-13] (Safer-Networking Ltd.) S2 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1363160 2014-11-28] (Secunia) R2 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [765144 2014-11-28] (Secunia) S3 w3logsvc; C:\Windows\system32\inetsrv\w3logsvc.dll [76800 2014-07-02] (Microsoft Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S5 3ware; C:\Windows\System32\drivers\3ware.sys [108896 2013-08-22] (LSI) R5 ACPI; C:\Windows\System32\drivers\ACPI.sys [533824 2014-10-07] (Microsoft Corporation) R5 acpiex; C:\Windows\System32\Drivers\acpiex.sys [79712 2013-08-22] (Microsoft Corporation) S5 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra) S5 agp440; C:\Windows\System32\drivers\agp440.sys [62304 2013-08-22] (Microsoft Corporation) S5 amdsata; C:\Windows\System32\drivers\amdsata.sys [79200 2013-08-22] (Advanced Micro Devices) S5 amdsbs; C:\Windows\System32\drivers\amdsbs.sys [259424 2013-08-22] (AMD Technologies Inc.) S5 amdxata; C:\Windows\System32\drivers\amdxata.sys [25952 2013-08-22] (Advanced Micro Devices) S3 Apowersoft_AudioDevice; C:\Windows\system32\drivers\Apowersoft_AudioDevice.sys [31920 2014-04-09] (Wondershare) S5 arcsas; C:\Windows\System32\drivers\arcsas.sys [114016 2013-08-22] (PMC-Sierra, Inc.) S5 atapi; C:\Windows\System32\drivers\atapi.sys [26464 2013-08-22] (Microsoft Corporation) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [137288 2015-07-24] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [148632 2015-07-24] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2013-11-25] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [43576 2015-03-03] (Avira Operations GmbH & Co. KG) S5 b06bdrv; C:\Windows\System32\drivers\bxvbda.sys [531296 2013-08-22] (Broadcom Corporation) R5 CLFS; C:\Windows\System32\drivers\CLFS.sys [377152 2015-03-04] (Microsoft Corporation) R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink) R5 CNG; C:\Windows\System32\Drivers\cng.sys [561928 2015-03-30] (Microsoft Corporation) R5 disk; C:\Windows\System32\drivers\disk.sys [100192 2013-08-22] (Microsoft Corporation) S5 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation) S5 EhStorClass; C:\Windows\System32\drivers\EhStorClass.sys [82784 2013-08-22] (Microsoft Corporation) S5 EhStorTcgDrv; C:\Windows\System32\drivers\EhStorTcgDrv.sys [114016 2013-08-22] (Microsoft Corporation) R5 FileInfo; C:\Windows\System32\drivers\fileinfo.sys [79192 2014-03-18] (Microsoft Corporation) R5 FltMgr; C:\Windows\System32\drivers\fltmgr.sys [354112 2014-08-26] (Microsoft Corporation) U5 Fs_Rec; C:\Windows\System32\Drivers\Fs_Rec.sys [30048 2013-08-22] (Microsoft Corporation) R5 fvevol; C:\Windows\System32\DRIVERS\fvevol.sys [589656 2014-04-08] (Microsoft Corporation) S5 gagp30kx; C:\Windows\System32\drivers\gagp30kx.sys [65888 2013-08-22] (Microsoft Corporation) R3 gzflt; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Antimalware Engine\3.0.98.0\gzflt.sys [155912 2015-01-22] (BitDefender LLC) S5 HpSAMD; C:\Windows\System32\drivers\HpSAMD.sys [64352 2013-08-22] (Hewlett-Packard Company) S5 hwpolicy; C:\Windows\System32\drivers\hwpolicy.sys [24416 2013-08-22] (Microsoft Corporation) S3 hwusbdev; C:\Windows\system32\DRIVERS\ewusbdev.sys [113792 2009-06-22] (Huawei Technologies Co., Ltd.) S5 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation) S5 iaStorV; C:\Windows\System32\drivers\iaStorV.sys [412000 2013-08-22] (Intel Corporation) S5 intelide; C:\Windows\System32\drivers\intelide.sys [18272 2013-08-22] (Microsoft Corporation) R5 intelpep; C:\Windows\System32\drivers\intelpep.sys [39744 2014-10-17] (Microsoft Corporation) S5 isapnp; C:\Windows\System32\drivers\isapnp.sys [21856 2013-08-22] (Microsoft Corporation) R5 KSecDD; C:\Windows\System32\Drivers\ksecdd.sys [100672 2014-10-29] (Microsoft Corporation) R5 KSecPkg; C:\Windows\System32\Drivers\ksecpkg.sys [178008 2015-06-28] (Microsoft Corporation) S5 LSI_SAS; C:\Windows\System32\drivers\lsi_sas.sys [109408 2013-08-22] (LSI Corporation) S5 LSI_SAS2; C:\Windows\System32\drivers\lsi_sas2.sys [93536 2013-08-22] (LSI Corporation) S5 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation) S5 LSI_SSS; C:\Windows\System32\drivers\lsi_sss.sys [82784 2013-08-22] (LSI Corporation) R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation) R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [113880 2015-08-20] (Malwarebytes Corporation) R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation) S5 megasas; C:\Windows\System32\drivers\megasas.sys [56672 2013-08-22] (LSI Corporation) S5 megasr; C:\Windows\System32\drivers\megasr.sys [575840 2013-08-22] (LSI Corporation, Inc.) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2014-04-22] (Intel Corporation) R5 mountmgr; C:\Windows\System32\drivers\mountmgr.sys [101720 2015-07-16] (Microsoft Corporation) R5 msisadrv; C:\Windows\System32\drivers\msisadrv.sys [17248 2013-08-22] (Microsoft Corporation) R5 Mup; C:\Windows\System32\Drivers\mup.sys [78688 2013-08-22] (Microsoft Corporation) S5 mvumis; C:\Windows\System32\drivers\mvumis.sys [63840 2013-08-22] (Marvell Semiconductor, Inc.) R5 NDIS; C:\Windows\System32\drivers\ndis.sys [1113944 2015-07-14] (Microsoft Corporation) S5 nvraid; C:\Windows\System32\drivers\nvraid.sys [150368 2013-08-22] (NVIDIA Corporation) S5 nvstor; C:\Windows\System32\drivers\nvstor.sys [168288 2013-08-22] (NVIDIA Corporation) S5 nv_agp; C:\Windows\System32\drivers\nv_agp.sys [124768 2013-08-22] (Microsoft Corporation) R5 partmgr; C:\Windows\System32\drivers\partmgr.sys [88896 2014-10-15] (Microsoft Corporation) R5 pci; C:\Windows\System32\drivers\pci.sys [280384 2014-07-24] (Microsoft Corporation) S5 pciide; C:\Windows\System32\drivers\pciide.sys [14688 2013-08-22] (Microsoft Corporation) S5 pcmcia; C:\Windows\System32\drivers\pcmcia.sys [114528 2013-08-22] (Microsoft Corporation) R5 pcw; C:\Windows\System32\drivers\pcw.sys [50016 2013-08-22] (Microsoft Corporation) R5 pdc; C:\Windows\System32\drivers\pdc.sys [86336 2014-10-17] (Microsoft Corporation) R3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2014-11-28] (Secunia) R5 rdyboost; C:\Windows\System32\drivers\rdyboost.sys [249688 2014-03-18] (Microsoft Corporation) S5 sbp2port; C:\Windows\System32\drivers\sbp2port.sys [107872 2013-08-22] (Microsoft Corporation) S5 SiSRaid2; C:\Windows\System32\drivers\SiSRaid2.sys [44896 2013-08-22] (Silicon Integrated Systems Corp.) S5 SiSRaid4; C:\Windows\System32\drivers\sisraid4.sys [81760 2013-08-22] (Silicon Integrated Systems) R5 spaceport; C:\Windows\System32\drivers\spaceport.sys [415040 2014-10-29] (Microsoft Corporation) S5 stexstor; C:\Windows\System32\drivers\stexstor.sys [31072 2013-08-22] (Promise Technology, Inc.) R5 storahci; C:\Windows\System32\drivers\storahci.sys [107872 2013-08-22] (Microsoft Corporation) S5 storflt; C:\Windows\System32\drivers\vmstorfl.sys [49944 2014-10-29] (Microsoft Corporation) S5 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2014-03-18] (Microsoft Corporation) S5 storvsc; C:\Windows\System32\drivers\storvsc.sys [45888 2013-08-22] (Microsoft Corporation) R5 Tcpip; C:\Windows\System32\drivers\tcpip.sys [2476376 2015-06-11] (Microsoft Corporation) S3 Trufos; C:\Windows\System32\DRIVERS\Trufos.sys [452040 2015-01-22] (BitDefender S.R.L.) S5 uagp35; C:\Windows\System32\drivers\uagp35.sys [64864 2013-08-22] (Microsoft Corporation) S5 uliagpkx; C:\Windows\System32\drivers\uliagpkx.sys [65888 2013-08-22] (Microsoft Corporation) R5 vdrvroot; C:\Windows\System32\drivers\vdrvroot.sys [37728 2013-08-22] (Microsoft Corporation) S5 viaide; C:\Windows\System32\drivers\viaide.sys [19808 2013-08-22] (VIA Technologies, Inc.) S5 vmbus; C:\Windows\System32\drivers\vmbus.sys [97048 2014-10-29] (Microsoft Corporation) R5 volmgr; C:\Windows\System32\drivers\volmgr.sys [73568 2013-08-22] (Microsoft Corporation) R5 volmgrx; C:\Windows\System32\drivers\volmgrx.sys [377696 2013-08-22] (Microsoft Corporation) R5 volsnap; C:\Windows\System32\drivers\volsnap.sys [310080 2014-06-19] (Microsoft Corporation) S5 vsmraid; C:\Windows\System32\drivers\vsmraid.sys [168800 2013-08-22] (VIA Technologies Inc.,Ltd) S5 VSTXRAID; C:\Windows\System32\drivers\vstxraid.sys [305504 2013-08-22] (VIA Corporation) R5 Wdf01000; C:\Windows\System32\drivers\Wdf01000.sys [839488 2013-08-22] (Microsoft Corporation) R5 WFPLWFS; C:\Windows\System32\DRIVERS\wfplwfs.sys [136512 2014-11-10] (Microsoft Corporation) R5 Wof; C:\Windows\System32\Drivers\Wof.sys [157016 2014-04-21] (Microsoft Corporation) S3 PCD5SRVC{C04018C0-BCD94BFA-05040000}; \??\J:\PC-DOC~1\PCD5SRVC_x64.pkms [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-08-20 15:42 - 2015-08-20 15:42 - 02173952 _____ (Farbar) C:\Users\manfred\Downloads\FRST64(1).exe 2015-08-19 10:35 - 2015-08-11 03:20 - 25191936 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2015-08-19 10:35 - 2015-08-11 02:20 - 19871232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2015-08-18 22:14 - 2015-08-18 22:14 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\3D9167C2.sys 2015-08-18 09:20 - 2013-08-22 15:25 - 00000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts.20150818-092003.backup 2015-08-18 09:12 - 2013-08-22 15:25 - 00000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts.20150818-091216.backup 2015-08-18 08:17 - 2015-08-18 08:17 - 00000000 ____D C:\Mozilla 2015-08-18 08:16 - 2015-08-18 08:16 - 00000000 ____D C:\Program Files\Common Files\AV 2015-08-18 08:16 - 2015-07-28 17:52 - 00821920 _____ (Safer-Networking Ltd. ) C:\Users\Public\Desktop\Post Win10 Spybot-install.exe 2015-08-18 08:10 - 2015-08-18 08:10 - 06609608 _____ (Piriform Ltd) C:\Users\manfred\Downloads\ccsetup508.exe 2015-08-17 10:19 - 2015-08-18 22:13 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2015-08-15 09:18 - 2015-08-16 00:18 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2015-08-14 09:11 - 2015-08-14 09:11 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\3A29582F.sys 2015-08-12 12:06 - 2015-07-30 16:04 - 00124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2015-08-12 12:06 - 2015-07-30 15:48 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-08-12 09:38 - 2015-07-29 01:24 - 00025776 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2015-08-12 09:38 - 2015-07-28 16:24 - 01148416 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2015-08-12 09:38 - 2015-07-28 16:24 - 01116160 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2015-08-12 09:38 - 2015-07-28 16:24 - 00774144 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2015-08-12 09:38 - 2015-07-28 16:24 - 00743424 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2015-08-12 09:38 - 2015-07-28 16:24 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2015-08-12 09:38 - 2015-07-28 16:24 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2015-08-12 09:38 - 2015-07-19 03:58 - 00136904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2015-08-12 09:38 - 2015-07-18 20:51 - 03704320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2015-08-12 09:38 - 2015-07-18 20:31 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll 2015-08-12 09:38 - 2015-07-18 20:31 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2015-08-12 09:38 - 2015-07-18 20:31 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe 2015-08-12 09:38 - 2015-07-18 20:29 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2015-08-12 09:38 - 2015-07-18 20:29 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll 2015-08-12 09:38 - 2015-07-18 20:29 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe 2015-08-12 09:38 - 2015-07-18 20:28 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll 2015-08-12 09:38 - 2015-07-18 20:12 - 02228736 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2015-08-12 09:38 - 2015-07-18 20:10 - 00891904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2015-08-12 09:38 - 2015-07-18 20:09 - 00721920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2015-08-12 09:38 - 2015-07-16 22:36 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2015-08-12 09:38 - 2015-07-16 22:36 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec 2015-08-12 09:38 - 2015-07-16 22:35 - 02885632 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2015-08-12 09:38 - 2015-07-16 22:26 - 05923328 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2015-08-12 09:38 - 2015-07-16 22:23 - 00615936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll 2015-08-12 09:38 - 2015-07-16 22:21 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2015-08-12 09:38 - 2015-07-16 21:53 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll 2015-08-12 09:38 - 2015-07-16 21:51 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2015-08-12 09:38 - 2015-07-16 21:50 - 00341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec 2015-08-12 09:38 - 2015-07-16 21:45 - 02279424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2015-08-12 09:38 - 2015-07-16 21:45 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll 2015-08-12 09:38 - 2015-07-16 21:41 - 00479232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieui.dll 2015-08-12 09:38 - 2015-07-16 21:39 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2015-08-12 09:38 - 2015-07-16 21:38 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll 2015-08-12 09:38 - 2015-07-16 21:36 - 00801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2015-08-12 09:38 - 2015-07-16 21:34 - 14451200 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2015-08-12 09:38 - 2015-07-16 21:32 - 02125824 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2015-08-12 09:38 - 2015-07-16 21:14 - 02880000 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2015-08-12 09:38 - 2015-07-16 21:13 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll 2015-08-12 09:38 - 2015-07-16 21:12 - 04520448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2015-08-12 09:38 - 2015-07-16 21:12 - 02427904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2015-08-12 09:38 - 2015-07-16 21:10 - 12856832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2015-08-12 09:38 - 2015-07-16 21:06 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2015-08-12 09:38 - 2015-07-16 21:01 - 01545728 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2015-08-12 09:38 - 2015-07-16 20:52 - 01048576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll 2015-08-12 09:38 - 2015-07-16 20:49 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2015-08-12 09:38 - 2015-07-16 20:42 - 01951232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2015-08-12 09:38 - 2015-07-16 20:38 - 01310720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2015-08-12 09:38 - 2015-07-16 20:37 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2015-08-12 09:38 - 2015-07-16 02:29 - 07458648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2015-08-12 09:38 - 2015-07-16 02:29 - 01735000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2015-08-12 09:38 - 2015-07-16 02:29 - 00101720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys 2015-08-12 09:38 - 2015-07-16 02:28 - 01499920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2015-08-12 09:38 - 2015-07-10 19:54 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll 2015-08-12 09:38 - 2015-07-02 00:19 - 00228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebClnt.dll 2015-08-12 09:38 - 2015-07-02 00:16 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll 2015-08-12 09:38 - 2015-07-01 23:37 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebClnt.dll 2015-08-12 09:38 - 2015-07-01 23:35 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\davclnt.dll 2015-08-12 09:38 - 2015-06-09 20:27 - 00411133 _____ C:\WINDOWS\system32\ApnDatabase.xml 2015-08-12 09:37 - 2015-07-29 16:37 - 01994752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2015-08-12 09:37 - 2015-07-29 16:30 - 01381888 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2015-08-12 09:37 - 2015-07-29 16:23 - 01559552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll 2015-08-12 09:37 - 2015-07-24 20:57 - 04177408 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2015-08-12 09:37 - 2015-07-24 20:57 - 00358912 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2015-08-12 09:37 - 2015-07-24 20:52 - 00044032 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2015-08-12 09:37 - 2015-07-24 19:27 - 00301568 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2015-08-12 09:37 - 2015-07-24 19:23 - 00035840 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2015-08-12 09:37 - 2015-07-14 23:59 - 01113944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2015-08-12 09:37 - 2015-07-14 23:59 - 00487256 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll 2015-08-12 09:37 - 2015-07-14 23:59 - 00393560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcfgx.dll 2015-08-12 09:37 - 2015-07-14 05:22 - 02529880 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2015-08-12 09:37 - 2015-07-14 05:21 - 01901776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2015-08-12 09:37 - 2015-07-13 21:46 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\csrsrv.dll 2015-08-12 09:37 - 2015-07-13 21:45 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\basesrv.dll 2015-08-12 09:37 - 2015-07-10 20:19 - 01101824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll 2015-08-12 09:37 - 2015-07-10 19:42 - 02345472 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2015-08-12 09:37 - 2015-07-10 19:14 - 00856064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll 2015-08-12 09:37 - 2015-07-10 19:13 - 07032320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2015-08-12 09:37 - 2015-07-10 18:47 - 01556992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll 2015-08-12 09:37 - 2015-07-10 18:31 - 06213120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2015-08-12 09:37 - 2015-07-09 19:13 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe 2015-08-12 09:37 - 2015-07-09 19:13 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe 2015-08-12 09:37 - 2015-07-09 18:30 - 00212992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\notepad.exe 2015-08-12 09:37 - 2015-07-07 11:40 - 00270168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys 2015-08-12 09:37 - 2015-07-07 11:40 - 00114520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys 2015-08-12 09:37 - 2015-07-07 11:40 - 00044560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys 2015-08-12 09:37 - 2015-06-12 19:03 - 18823680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2015-08-12 09:37 - 2015-06-12 18:36 - 15159296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2015-08-12 09:37 - 2015-06-11 22:12 - 02476376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2015-08-12 09:37 - 2015-06-11 22:12 - 00428888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2015-08-11 18:41 - 2015-08-11 18:41 - 00660960 _____ (Dropbox, Inc.) C:\Users\manfred\Downloads\DropboxInstaller(1).exe 2015-07-30 00:27 - 2015-08-04 15:35 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\53D43371.sys 2015-07-30 00:16 - 2015-07-30 00:27 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\473F2AE1.sys 2015-07-26 02:17 - 2015-07-26 08:08 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\3C9A4F0F.sys 2015-07-25 07:47 - 2015-07-26 02:17 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\6E0C7D01.sys 2015-07-24 12:47 - 2015-07-24 12:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2015-07-21 16:42 - 2015-07-21 16:42 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\767C5E40.sys 2015-07-21 16:17 - 2015-05-12 02:24 - 00536920 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcupdate_GenuineIntel.dll 2015-07-21 16:17 - 2015-05-01 03:13 - 06521800 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe 2015-07-21 16:17 - 2015-05-01 03:13 - 01488000 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2015-07-21 16:17 - 2015-05-01 03:13 - 00261376 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll 2015-07-21 16:17 - 2015-01-06 05:01 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndproxy.sys 2015-07-21 16:17 - 2015-01-06 04:59 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys 2015-07-21 16:17 - 2015-01-06 03:12 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascfg.dll 2015-07-21 16:17 - 2015-01-06 03:02 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rascfg.dll ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-08-20 15:44 - 2014-10-14 12:58 - 00064622 _____ C:\Users\manfred\Downloads\FRST.txt 2015-08-20 15:44 - 2014-10-14 12:58 - 00000000 ____D C:\FRST 2015-08-20 15:41 - 2014-04-10 17:02 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2015-08-20 15:39 - 2013-12-31 10:12 - 00003934 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{00B4722C-7113-4323-8329-460E0E599ADF} 2015-08-20 15:38 - 2013-11-22 08:49 - 00000000 ____D C:\ProgramData\Ad-Aware Browsing Protection 2015-08-20 15:36 - 2014-02-06 14:14 - 00001130 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2015-08-20 15:35 - 2014-04-21 12:39 - 00000000 __RDO C:\Users\manfred\OneDrive 2015-08-20 15:35 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sru 2015-08-20 04:52 - 2014-04-21 12:33 - 01912096 _____ C:\WINDOWS\WindowsUpdate.log 2015-08-19 17:10 - 2014-02-06 14:14 - 00001134 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2015-08-19 17:00 - 2013-11-24 13:39 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2015-08-19 16:47 - 2013-11-21 12:07 - 00003600 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3207775961-1083249041-1324932386-1001 2015-08-19 16:00 - 2014-06-30 21:09 - 00003850 _____ C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1391416707 2015-08-19 16:00 - 2014-02-03 10:38 - 00001025 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk 2015-08-19 16:00 - 2014-02-03 10:38 - 00000000 ____D C:\Program Files (x86)\Opera 2015-08-19 15:25 - 2013-11-21 12:56 - 00000952 _____ C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-3207775961-1083249041-1324932386-1001UA.job 2015-08-19 10:35 - 2012-07-26 09:59 - 00000000 ____D C:\WINDOWS\CbsTemp 2015-08-19 09:25 - 2013-11-21 12:56 - 00000930 _____ C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-3207775961-1083249041-1324932386-1001Core.job 2015-08-19 08:22 - 2013-11-25 14:03 - 00000000 ____D C:\Users\manfred\AppData\Roaming\vlc 2015-08-18 22:16 - 2015-02-04 16:40 - 00006980 _____ C:\WINDOWS\SecuniaPackage.log 2015-08-18 22:16 - 2013-11-25 14:03 - 00000972 _____ C:\Users\Public\Desktop\VLC media player.lnk 2015-08-18 22:14 - 2014-06-04 17:22 - 00002307 _____ C:\Users\Public\Desktop\Ad-Aware Antivirus.lnk 2015-08-18 22:13 - 2014-09-25 14:13 - 00022337 _____ C:\WINDOWS\setupact.log 2015-08-18 22:13 - 2014-05-14 09:46 - 00309992 _____ C:\WINDOWS\PFRO.log 2015-08-18 22:13 - 2013-11-21 12:19 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2015-08-18 22:13 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2015-08-18 08:23 - 2014-02-27 16:12 - 00000796 _____ C:\Users\Public\Desktop\CCleaner.lnk 2015-08-18 08:23 - 2014-02-27 16:12 - 00000000 ____D C:\Program Files\CCleaner 2015-08-18 08:19 - 2013-12-21 14:58 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2015-08-17 19:20 - 2014-07-12 16:14 - 02597888 ___SH C:\Users\manfred\Desktop\Thumbs.db 2015-08-17 18:40 - 2014-03-18 12:03 - 01980998 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2015-08-17 18:40 - 2014-03-18 11:25 - 00841326 _____ C:\WINDOWS\system32\perfh007.dat 2015-08-17 18:40 - 2014-03-18 11:25 - 00191558 _____ C:\WINDOWS\system32\perfc007.dat 2015-08-17 08:33 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppReadiness 2015-08-17 00:23 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI 2015-08-16 11:37 - 2013-11-29 23:06 - 00003174 _____ C:\WINDOWS\System32\Tasks\HPCeeScheduleFormanfred 2015-08-16 11:37 - 2013-11-29 23:06 - 00000356 _____ C:\WINDOWS\Tasks\HPCeeScheduleFormanfred.job 2015-08-16 10:01 - 2013-09-30 10:35 - 00000000 ____D C:\Users\manfred\Documents\Bandicam 2015-08-13 12:55 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\rescache 2015-08-13 11:11 - 2015-06-11 11:00 - 00028496 _____ C:\Users\manfred\Desktop\Spielpunkte.htm 2015-08-13 11:10 - 2015-06-11 11:00 - 00038221 _____ C:\Users\manfred\Desktop\Platz.htm 2015-08-13 00:26 - 2013-08-22 16:44 - 00398792 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2015-08-13 00:25 - 2013-12-22 09:22 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2015-08-13 00:25 - 2013-12-22 09:22 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2015-08-12 14:00 - 2014-12-11 18:31 - 00000000 ____D C:\WINDOWS\system32\appraiser 2015-08-12 14:00 - 2014-07-10 13:55 - 00000000 ___SD C:\WINDOWS\system32\CompatTel 2015-08-12 14:00 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-08-12 14:00 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-08-12 14:00 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Defender 2015-08-12 14:00 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2015-08-12 12:06 - 2013-12-22 09:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2015-08-12 12:04 - 2013-11-22 16:00 - 00000000 ____D C:\WINDOWS\system32\MRT 2015-08-12 12:01 - 2013-11-22 16:00 - 132483416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2015-08-12 11:59 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-08-12 11:59 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-08-12 09:00 - 2013-11-24 13:39 - 00003772 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2015-08-11 19:12 - 2014-02-06 14:14 - 00002157 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2015-08-11 18:07 - 2015-02-03 19:28 - 00001092 _____ C:\Users\manfred\Desktop\Advanced Backup Manager 2015.lnk 2015-08-10 15:15 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\tracing 2015-08-08 15:55 - 2014-12-11 20:02 - 00794088 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2015-08-08 15:55 - 2014-12-11 20:02 - 00179688 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2015-08-08 01:34 - 2013-11-22 21:44 - 00000052 _____ C:\WINDOWS\SysWOW64\DOErrors.log 2015-07-27 10:26 - 2015-02-03 19:28 - 00000886 _____ C:\Users\Default\Desktop\Advanced Backup Manager 2015.lnk 2015-07-27 10:26 - 2015-02-03 19:28 - 00000886 _____ C:\Users\Default User\Desktop\Advanced Backup Manager 2015.lnk 2015-07-27 10:26 - 2015-02-03 19:28 - 00000886 _____ C:\Users\Administrator\Desktop\Advanced Backup Manager 2015.lnk 2015-07-26 09:33 - 2015-04-12 07:53 - 00136192 ___SH C:\Users\manfred\Downloads\Thumbs.db 2015-07-26 02:23 - 2015-04-05 03:35 - 00000000 ___SD C:\WINDOWS\system32\GWX 2015-07-24 12:47 - 2015-05-05 13:45 - 00001984 _____ C:\Users\Public\Desktop\Avira Antivirus.lnk 2015-07-24 12:44 - 2013-11-21 12:10 - 00148632 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys 2015-07-24 12:44 - 2013-11-21 12:10 - 00137288 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2015-01-07 15:10 - 2015-01-07 15:10 - 0003584 _____ () C:\Users\manfred\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2013-11-21 11:58 - 2013-11-21 11:58 - 0000141 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.64.bc Einige Dateien in TEMP: ==================== C:\Users\manfred\AppData\Local\Temp\avgnt.exe ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2015-08-19 10:32 ==================== Ende von Ergebnis ============================ Irgendwie kann ich die addtion nicht dazu posten. Also mache ich es in einem Anwortbeitrag |
Themen zu Spammails von meinem T-Online Konto |
ad-aware, antivir, antivirus, avira, ccsetup, defender, desktop, dnsapi.dll, firefox, flash player, helper, home, homepage, mails, mozilla, mp3, problem, prozesse, realtek, registry, scan, services.exe, software, spam, spamm, svchost.exe, system, temp, win10, windows |