DexterWaffle | 30.07.2013 23:25 | Okay bist du bereit? :D hier kommts :)
JRT.txt Code:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 5.2.9 (07.30.2013:1)
OS: Windows 7 Home Premium x64
Ran by Angela on 30.07.2013 at 23:20:58,03
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\DisplayName
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\URL
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\appid\{bdb69379-802f-4eaf-b541-f8de92dd98db}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\appid\{c26644c4-2a12-4ca6-8f2e-0ede6cf018f3}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\appid\{d616a4a2-7b38-4dbc-9093-6fe7a4a21b17}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\clsid\{80922ee0-8a76-46ae-95d5-bd3c3fe0708d}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\interface\{10de7085-6a1e-4d41-a7bf-9af93e351401}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\interface\{1ad27395-1659-4dff-a319-2cfa243861a5}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\interface\{31e3bc75-2a09-4cff-9c92-8d0ed8d1dc0f}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\typelib\{e2343056-cc08-46ac-b898-bfc7acf4e755}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\babsolution
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\babylon
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\babylontoolbar
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\babylontoolbar
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\conduit
Failed to delete: [Registry Key] HKEY_CURRENT_USER\Software\datamngr
Failed to delete: [Registry Key] HKEY_LOCAL_MACHINE\Software\datamngr
Failed to delete: [Registry Key] HKEY_CURRENT_USER\Software\datamngr_toolbar
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\dealply
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\delta ltd
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\filescout
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\iminent
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\iminent
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\installcore
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\smartbar
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\sprotector
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\windows\currentversion\ext\settings\{df7770f7-832f-4bdf-b144-100eddd0c3ae}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\prod.cap
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\tracing\apnstub_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\tracing\apnstub_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\tracing\conduitinstaller_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\tracing\conduitinstaller_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\tracing\iminent_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\tracing\iminent_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\tracing\mybabylontb_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\tracing\mybabylontb_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\tracing\wajam_install_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\tracing\wajam_install_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\tracing\wajamupdater_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\tracing\wajamupdater_rasmancs
Failed to delete: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\datamngr
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\sp global
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\sprotector
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{64E31182-ECC8-414D-9151-D759981F3DA6}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{d43b3890-80c7-4010-a95d-1e77b5924dc3}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{64E31182-ECC8-414D-9151-D759981F3DA6}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{d43b3890-80c7-4010-a95d-1e77b5924dc3}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
~~~ Files
Successfully deleted: [File] "C:\end"
Successfully deleted: [File] C:\eula.1031.txt
Successfully deleted: [File] C:\install.res.1031.dll
Successfully deleted: [File] C:\Windows\syswow64\sho5ACC.tmp
~~~ Folders
Successfully deleted: [Folder] "C:\ProgramData\babylon"
Successfully deleted: [Folder] "C:\ProgramData\bettersoft"
Successfully deleted: [Folder] "C:\ProgramData\simplitec"
Successfully deleted: [Folder] "C:\Users\Angela\AppData\Roaming\file scout"
Successfully deleted: [Folder] "C:\Users\Angela\AppData\Roaming\opencandy"
Successfully deleted: [Folder] "C:\Users\Angela\AppData\Roaming\searchprotect"
Successfully deleted: [Folder] "C:\Users\Angela\AppData\Roaming\simplitec"
Successfully deleted: [Folder] "C:\Users\Angela\appdata\local\downloadguide"
Successfully deleted: [Folder] "C:\Users\Angela\appdata\locallow\babylontoolbar"
Successfully deleted: [Folder] "C:\Users\Angela\appdata\locallow\simplytech"
Successfully deleted: [Folder] "C:\Program Files (x86)\happylyrics"
Successfully deleted: [Folder] "C:\Program Files (x86)\optimizer pro"
Successfully deleted: [Folder] "C:\Program Files (x86)\websearch"
Successfully deleted: [Folder] "C:\Users\Angela\AppData\Roaming\microsoft\windows\start menu\programs\dealply"
~~~ FireFox
Failed to delete: [File] "C:\Program Files (x86)\Mozilla Firefox\searchplugins\babylon.xml"
Failed to delete: [File] "C:\Program Files (x86)\Mozilla Firefox\searchplugins\web search.xml"
Successfully deleted: [File] "C:\Program Files (x86)\Mozilla Firefox\searchplugins\babylon.xml"
Successfully deleted: [File] "C:\Program Files (x86)\Mozilla Firefox\searchplugins\web search.xml"
Successfully deleted: [File] C:\Users\Angela\AppData\Roaming\mozilla\firefox\profiles\rlj9tdax.default-1359464128613\searchplugins\babylon.xml
Successfully deleted: [File] C:\Users\Angela\AppData\Roaming\mozilla\firefox\profiles\rlj9tdax.default-1359464128613\searchplugins\browserprotect.xml
Successfully deleted: [File] C:\Users\Angela\AppData\Roaming\mozilla\firefox\profiles\rlj9tdax.default-1359464128613\searchplugins\delta.xml
Successfully deleted: [File] C:\Users\Angela\AppData\Roaming\mozilla\firefox\profiles\rlj9tdax.default-1359464128613\searchplugins\web search.xml
Successfully deleted: [File] C:\Users\Angela\AppData\Roaming\mozilla\firefox\profiles\rlj9tdax.default-1359464128613\searchplugins\websearch.xml
Successfully deleted: [Folder] "C:\Program Files (x86)\Mozilla Firefox\extensions\ffxtlbr@babylon.com"
Successfully deleted the following from C:\Users\Angela\AppData\Roaming\mozilla\firefox\profiles\rlj9tdax.default-1359464128613\prefs.js
user_pref("CT3290520_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\":1363963644608,\"isWithState\":\"\",\"timeFromStart\":0,\"timeFromPrev\":0}
user_pref("Smartbar.ConduitHomepagesList", "hxxp://search.conduit.com/?ctid=CT3290520&CUI=UN54777024228953254&UM=2&SearchSource=13");
user_pref("Smartbar.ConduitSearchEngineList", "Instagrille Customized Web Search");
user_pref("Smartbar.ConduitSearchUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3290520&SearchSource=2&CUI=UN54777024228953254&UM=2&q=");
user_pref("Smartbar.SearchFromAddressBarSavedUrl", "");
user_pref("Smartbar.keywordURLSelectedCTID", "CT3290520");
user_pref("aol_toolbar.default.homepage.check", false);
user_pref("aol_toolbar.default.search.check", false);
user_pref("avg.install.userHPSettings", "hxxp://www.delta-search.com/?affID=119556&babsrc=HP_ss&mntrId=9442C0F8DA37ED4D");
user_pref("avg.install.userSPSettings", "Delta Search");
user_pref("browser.newtab.url", "hxxp://search.certified-toolbar.com?si=46364&st=newtab&tid=3869&ver=3.7&ts=1375118390218.000005&tguid=46364-3869-1375118390218-3B79C97F8324686
user_pref("browser.search.defaultengine", "Web Search");
user_pref("browser.search.defaultenginename", "Web Search");
user_pref("browser.search.defaultthis.engineName", "Instagrille Customized Web Search");
user_pref("browser.search.defaulturl", "hxxp://websearch.searchannel.info/?pid=947&r=2013/07/10&hid=2623413732&lg=EN&cc=DE&unqvl=24&l=1&q=");
user_pref("browser.search.order.1", "Web Search");
user_pref("browser.search.selectedEngine", "Web Search");
user_pref("browser.search.selectedEngineS", "WebSearch");
user_pref("extensions.51dded1c366f5.scode", "if(window.self.location.protocol.indexOf('hxxp')>-1 && window.self==window.top){var script=document.createElement('script'script.t
user_pref("extensions.51dded3983872.scode", "(function(){try{if(window.opener&&window.self==window.top&&-1==document.cookie.indexOf(\"xcddsa\")&&-1==window.self.location.href.
user_pref("extensions.BabylonToolbar.prtkDS", 0);
user_pref("extensions.BabylonToolbar.prtkHmpg", 0);
user_pref("keyword.URL", "hxxp://search.certified-toolbar.com?si=46364&st=chrome&tid=3869&ver=3.7&ts=1375118390218.000005&tguid=46364-3869-1375118390218-3B79C97F8324686293E913
user_pref("smartBar.searchInNewTabOwner", "CT3290520");
user_pref("sweetim.toolbar.previous.browser.search.defaultenginename", "");
user_pref("sweetim.toolbar.previous.browser.search.selectedEngine", "");
user_pref("sweetim.toolbar.previous.browser.startup.homepage", "");
user_pref("sweetim.toolbar.previous.keyword.URL", "");
user_pref("sweetim.toolbar.scripts.1.domain-blacklist", "");
user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_DS", "");
user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_HP", "");
user_pref("sweetim.toolbar.searchguard.enable", "");
~~~ Chrome
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Google\Chrome\Extensions\gaiilaahiahdejapggenmdmafpmbipje
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Google\Chrome\Extensions\gaiilaahiahdejapggenmdmafpmbipje
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 30.07.2013 at 23:27:42,22
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ adwCleaner[S1].txt Code:
# AdwCleaner v2.306 - Datei am 30/07/2013 um 23:53:04 erstellt
# Aktualisiert am 19/07/2013 von Xplode
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits)
# Benutzer : Angela - ANGELA-HP
# Bootmodus : Normal
# Ausgeführt unter : C:\Users\Angela\Desktop\adwcleaner.exe
# Option [Löschen]
**** [Dienste] ****
Gestoppt & Gelöscht : SystemStoreService
***** [Dateien / Ordner] *****
Datei Gelöscht : C:\Users\Angela\AppData\Roaming\Mozilla\Firefox\Profiles\2v8nzwzx.default\bprotector_extensions.sqlite
Datei Gelöscht : C:\Users\Angela\AppData\Roaming\Mozilla\Firefox\Profiles\2v8nzwzx.default\searchplugins\Web Search.xml
Datei Gelöscht : C:\Users\Angela\AppData\Roaming\Mozilla\Firefox\Profiles\rlj9tdax.default-1359464128613\foxydeal.sqlite
Ordner Gelöscht : C:\Program Files (x86)\SoftwareUpdater
Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SearchNewTab
Ordner Gelöscht : C:\ProgramData\SearchNewTab
Ordner Gelöscht : C:\Users\Angela\AppData\Local\AddLyrics
Ordner Gelöscht : C:\Users\Angela\AppData\Roaming\Mozilla\Firefox\Profiles\2v8nzwzx.default\extensions\staged
***** [Registrierungsdatenbank] *****
Schlüssel Gelöscht : HKCU\Software\DataMngr
Schlüssel Gelöscht : HKCU\Software\DataMngr_Toolbar
Schlüssel Gelöscht : HKCU\Software\FoxyDeal
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{9C919D02-C295-83E3-BA77-FB7AAB6185F4}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9C919D02-C295-83E3-BA77-FB7AAB6185F4}
Schlüssel Gelöscht : HKCU\Software\522dadbb039ee10
Schlüssel Gelöscht : HKLM\Software\DataMngr
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftwareUpdater_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftwareUpdater_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\522dadbb039ee10
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{14F35FFC-522A-4DD1-A07E-6B8B65C6891E}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{9C919D02-C295-83E3-BA77-FB7AAB6185F4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CFD485F0-96BD-47CD-BB6D-CD7DDA95F102}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9C919D02-C295-83E3-BA77-FB7AAB6185F4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{C670DCAE-E392-AA32-6F42-143C7FC4BDFD}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{1231839B-064E-4788-B865-465A1B5266FD}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2DAC2231-CC35-482B-97C5-CED1D4185080}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{431532BD-0AE1-4ABC-BE8C-919F3D1332E2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{57C91446-8D81-4156-A70E-624551442DE9}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{7AD65FD1-79E0-406D-B03C-DD7C14726D69}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8DA8B89E-0C65-403B-8231-AB22ECFA0687}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{97DD820D-2E20-40AD-B01E-6730B2FCE630}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A928E66C-F501-4E66-9953-855C712F93B2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B0E28FA0-DF07-44B6-95CE-48BE26DB9266}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B177446D-54A4-4869-BABC-8566110B4BE0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E6B4EE8F-C38E-4994-BE28-229A3F92262C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{F05B12E1-ADE8-4485-B45B-898748B53C37}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{FCA8936E-403A-4487-A966-70F80F1D5A6A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D43B3890-80C7-4010-A95D-1E77B5924DC3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\OptimizerPro
Schlüssel Gelöscht : HKLM\SOFTWARE\Tarma Installer
Schlüssel Gelöscht : HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
***** [Internet Browser] *****
-\\ Internet Explorer v9.0.8112.16496
Ersetzt : [HKCU\Software\Microsoft\Internet Explorer\Search - Search Bar] = hxxp://search.certified-toolbar.com?si=46364&tid=3869&ver=3.7&ts=1375118390218&tguid=46364-3869-1375118390218-3B79C97F8324686293E9133A8564191E&st=chrome&q= --> hxxp://www.google.com
Ersetzt : [HKCU\Software\Microsoft\Internet Explorer\Search - Search Page] = hxxp://search.certified-toolbar.com?si=46364&tid=3869&ver=3.7&ts=1375118390218&tguid=46364-3869-1375118390218-3B79C97F8324686293E9133A8564191E&st=chrome&q= --> hxxp://www.google.com
Ersetzt : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - Search Bar] = hxxp://search.certified-toolbar.com?si=46364&tid=3869&ver=3.7&ts=1375118390218&tguid=46364-3869-1375118390218-3B79C97F8324686293E9133A8564191E&st=chrome&q= --> hxxp://www.google.com
Ersetzt : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - Search Page] = hxxp://search.certified-toolbar.com?si=46364&tid=3869&ver=3.7&ts=1375118390218&tguid=46364-3869-1375118390218-3B79C97F8324686293E9133A8564191E&st=chrome&q= --> hxxp://www.google.com
Ersetzt : [HKCU\Software\Microsoft\Internet Explorer\SearchUrl - (Default)] = hxxp://search.certified-toolbar.com?si=46364&st=bs&tid=3869&ver=3.7&ts=1375118390218&tguid=46364-3869-1375118390218-3B79C97F8324686293E9133A8564191E&q=%s --> hxxp://www.google.com
Ersetzt : [HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl - (Default)] = hxxp://search.certified-toolbar.com?si=46364&st=bs&tid=3869&ver=3.7&ts=1375118390218&tguid=46364-3869-1375118390218-3B79C97F8324686293E9133A8564191E&q=%s --> hxxp://www.google.com
-\\ Mozilla Firefox v22.0 (de)
Datei : C:\Users\Angela\AppData\Roaming\Mozilla\Firefox\Profiles\2v8nzwzx.default\prefs.js
Gelöscht : user_pref("browser.newtab.url", "hxxp://search.certified-toolbar.com?si=46364&st=newtab&tid=3869&ver[...]
Gelöscht : user_pref("browser.search.defaultenginename", "Web Search");
Gelöscht : user_pref("browser.search.order.1", "Web Search");
Gelöscht : user_pref("browser.search.selectedEngine", "Web Search");
Gelöscht : user_pref("browser.startup.homepage", "hxxp://search.certified-toolbar.com?si=46364&st=home&tid=3869[...]
Gelöscht : user_pref("extensions.BabylonToolbar.admin", false);
Gelöscht : user_pref("extensions.BabylonToolbar.aflt", "babsst");
Gelöscht : user_pref("extensions.BabylonToolbar.appId", "{BDB69379-802F-4eaf-B541-F8DE92DD98DB}");
Gelöscht : user_pref("extensions.BabylonToolbar.dfltLng", "en");
Gelöscht : user_pref("extensions.BabylonToolbar.excTlbr", false);
Gelöscht : user_pref("extensions.BabylonToolbar.id", "9442452a000000000000c0f8da37ed4d");
Gelöscht : user_pref("extensions.BabylonToolbar.instlDay", "15661");
Gelöscht : user_pref("extensions.BabylonToolbar.instlRef", "sst");
Gelöscht : user_pref("extensions.BabylonToolbar.prdct", "BabylonToolbar");
Gelöscht : user_pref("extensions.BabylonToolbar.prtnrId", "babylon");
Gelöscht : user_pref("extensions.BabylonToolbar.tlbrId", "tb9");
Gelöscht : user_pref("extensions.BabylonToolbar.tlbrSrchUrl", "hxxp://search.babylon.com/?babsrc=TB_def&mntrId=[...]
Gelöscht : user_pref("extensions.BabylonToolbar.vrsn", "1.8.3.8");
Gelöscht : user_pref("extensions.BabylonToolbar.vrsni", "1.8.3.8");
Gelöscht : user_pref("extensions.BabylonToolbar_i.newTab", true);
Gelöscht : user_pref("extensions.BabylonToolbar_i.newTabUrl", "hxxp://search.babylon.com/?affID=110824&tt=4612_[...]
Gelöscht : user_pref("extensions.BabylonToolbar_i.smplGrp", "none");
Gelöscht : user_pref("extensions.BabylonToolbar_i.vrsnTs", "1.8.3.814:08:38");
Gelöscht : user_pref("keyword.URL", "hxxp://search.certified-toolbar.com?si=46364&st=chrome&tid=3869&ver=3.7&ts[...]
Gelöscht : user_pref("browser.search.defaultengine", "Web Search");
Datei : C:\Users\Angela\AppData\Roaming\Mozilla\Firefox\Profiles\rlj9tdax.default-1359464128613\prefs.js
Gelöscht : user_pref("CT3290520_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\"[...]
Gelöscht : user_pref("extensions.51dded3983872.scode", "(function(){try{if(window.opener&&window.self==window.t[...]
-\\ Google Chrome v28.0.1500.72
Datei : C:\Users\Angela\AppData\Local\Google\Chrome\User Data\Default\Preferences
Gelöscht [l.2307] : homepage = "hxxp://search.certified-toolbar.com?si=46364&st=home&tid=3869&ver=3.7&ts=13751183902[...]
Gelöscht [l.2541] : urls_to_restore_on_startup = [ "hxxp://search.certified-toolbar.com?si=46364&st=home&tid=3869[...]
*************************
AdwCleaner[S1].txt - [14673 octets] - [30/07/2013 23:53:04]
########## EOF - C:\AdwCleaner[S1].txt - [14734 octets] ########## FRST.txt
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 30-07-2013 03
Ran by Angela (administrator) on 31-07-2013 00:01:24
Running from C:\Users\Angela\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 9
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\vsserv.exe
(AMD) C:\Windows\system32\atiesrxx.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\STacSV64.exe
(AMD) C:\Windows\system32\atieclxx.exe
(Adobe Systems Incorporated) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
(EasyBits Software AS) C:\Windows\SysWOW64\ezSharedSvcHost.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
(Nero AG) C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
() C:\Program Files (x86)\HTC\HTC Sync Manager\HTC Sync\adb.exe
() C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\bdagent.exe
(Spotify Ltd) C:\Users\Angela\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe
(Windows Net) C:\Users\Angela\AppData\Roaming\Windows Net Data\net.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
(Sun Microsystems, Inc.) C:\Program Files (x86)\Sun\StarOffice 8\program\soffice.exe
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin
(Sun Microsystems, Inc.) C:\Program Files (x86)\Sun\StarOffice 8\program\soffice.BIN
(CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Windows\SysWOW64\schtasks.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
(Hewlett-Packard Development Company L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpConnectionManager.exe
(Hewlett-Packard Development Company L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2480936 2010-12-17] (Synaptics Incorporated)
HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [525312 2011-01-25] (IDT, Inc.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [Bdagent] - C:\Program Files\Bitdefender\Bitdefender\bdagent.exe [1716832 2013-06-27] (Bitdefender)
HKLM\...\InprocServer32: [Default-cscui] <==== ATTENTION!
HKCU\...\Run: [Spotify Web Helper] - C:\Users\Angela\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1104384 2013-06-29] (Spotify Ltd)
HKCU\...\Run: [Bitdefender-Geldbörse-Agent] - C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe [520496 2013-06-19] (Bitdefender)
HKCU\...\Run: [Bitdefender-Geldbörse-Anwendungs-Agent] - C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe [609576 2013-06-19] (Bitdefender)
MountPoints2: G - G:\HTC_Sync_Manager_PC.exe
MountPoints2: H - H:\pushinst.exe
MountPoints2: {2dde3970-08d9-11e2-86b0-2c27d7d09113} - K:\HTC_Sync_Manager_PC.exe
MountPoints2: {ea519c41-e5e4-11e0-aae1-806e6f6e6963} - F:\install.EXE id= ver=1.0.0.0
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-04-07] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [283160 2011-01-12] (Intel Corporation)
HKLM-x32\...\Run: [Easybits Recovery] - C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe [61112 2011-03-16] (EasyBits Software AS)
HKLM-x32\...\Run: [HPConnectionManager] - C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe [103992 2011-09-13] (Hewlett-Packard Development Company L.P.)
HKLM-x32\...\Run: [] - [x]
HKLM-x32\...\Run: [HPOSD] - C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [379960 2011-08-19] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [HP Quick Launch] - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [578944 2012-03-05] (Hewlett-Packard Development Company, L.P.)
Startup: C:\Users\Angela\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\net.lnk
ShortcutTarget: net.lnk -> C:\Users\Angela\AppData\Roaming\Windows Net Data\net.exe (Windows Net)
Startup: C:\Users\Angela\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk
ShortcutTarget: OpenOffice.org 3.3.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()
Startup: C:\Users\Angela\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\StarOffice 8.lnk
ShortcutTarget: StarOffice 8.lnk -> C:\Program Files (x86)\Sun\StarOffice 8\program\quickstart.exe ()
==================== Internet (Whitelisted) ====================
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {64E31182-ECC8-414D-9151-D759981F3DA6} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-111076-19270-3/4?mpre=hxxp://shop.ebay.com/?_nkw={searchTerms}
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search
SearchScopes: HKLM-x32 - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-111076-19270-3/4?mpre=hxxp://shop.ebay.com/?_nkw={searchTerms}
SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=HPNTDF&pc=HPNTDF&src=IE-SearchBox
SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-111076-19270-3/4?mpre=hxxp://shop.ebay.com/?_nkw={searchTerms}
BHO: Bitdefender-Geldbörse - {09F58E74-42B4-4D70-BA26-35FC954E7A17} - C:\Program Files\Bitdefender\Bitdefender\pmbxie.dll (Bitdefender)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO-x32: siafe saVee - {01C210EE-0C55-C749-54F9-A7F889871F4C} - C:\ProgramData\siafe saVee\51dded1c367de.dll ()
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: Bitdefender-Geldbörse - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender\Antispam32\pmbxie.dll (Bitdefender)
BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
ShellExecuteHooks-x32: EasyBits ShellExecute Hook - {E54729E8-BB3D-4270-9D49-7389EA579090} - C:\Windows\SysWow64\EZUPBH~1.DLL [52920 2011-04-20] (EasyBits Software Corp.)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
FireFox:
========
FF ProfilePath: C:\Users\Angela\AppData\Roaming\Mozilla\Firefox\Profiles\rlj9tdax.default
FF Plugin: @java.com/JavaPlugin - C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\system32\Adobe\Director\np32dsw.dll No File
FF Plugin-x32: @Bitdefender.com/PasswordManager;version=17.8 - C:\Program Files\Bitdefender\Bitdefender\Antispam32\pmbxnp.dll (Bitdefender)
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/JavaPlugin - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\2\NP_wtapp.dll ()
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF HKLM\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] C:\Program Files\Bitdefender\Bitdefender\bdtbext
FF Extension: No Name - C:\Program Files\Bitdefender\Bitdefender\bdtbext
FF HKLM-x32\...\Firefox\Extensions: [ffpwdman@bitdefender.com] C:\Program Files\Bitdefender\Bitdefender\Antispam32\ffpwdman\
FF Extension: Bitdefender Wallet - C:\Program Files\Bitdefender\Bitdefender\Antispam32\ffpwdman\
FF HKLM-x32\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] C:\Program Files\Bitdefender\Bitdefender\bdtbext
FF Extension: No Name - C:\Program Files\Bitdefender\Bitdefender\bdtbext
FF HKCU\...\Firefox\Extensions: [addlyrics@addlyrics.net] C:\Program Files (x86)\AddLyrics\FF\
Chrome:
=======
CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding}
CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter}
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.72\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.72\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.72\pdf.dll ()
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Java Deployment Toolkit 6.0.240.7) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll (Sun Microsystems, Inc.)
CHR Plugin: (Java(TM) Platform SE 6 U24) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (Google Earth Plugin) - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
CHR Plugin: (Windows Live\u0099 Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (Bitdefender 2014) - C:\Program Files\Bitdefender\Bitdefender\Antispam32\pmbxnp.dll (Bitdefender)
CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll ()
CHR Plugin: (Shockwave for Director) - C:\Windows\system32\Adobe\Director\np32dsw.dll No File
CHR Extension: (Bitdefender Wallet) - C:\Users\Angela\AppData\Local\Google\Chrome\User Data\Default\Extensions\ccahoghmggldkcdjiebjkidpfongdfbl\17.9.4_0
CHR HKLM-x32\...\Chrome\Extension: [ccahoghmggldkcdjiebjkidpfongdfbl] - C:\Program Files\Bitdefender\Bitdefender\Antispam32\pmbxcr.crx
CHR StartMenuInternet: Google Chrome - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Services (Whitelisted) =================
S4 BdDesktopParental; C:\Program Files\Bitdefender\Bitdefender\bdparentalservice.exe [75584 2013-06-19] (Bitdefender)
R2 HTCMonitorService; C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe [87368 2013-01-29] (Nero AG)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 PassThru Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [167424 2012-12-07] ()
R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe [67320 2013-06-19] (Bitdefender)
R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender\vsserv.exe [1502080 2013-06-20] (Bitdefender)
==================== Drivers (Whitelisted) ====================
R0 avc3; C:\Windows\System32\DRIVERS\avc3.sys [718840 2013-04-17] (BitDefender)
R3 avchv; C:\Windows\System32\DRIVERS\avchv.sys [261056 2012-11-02] (BitDefender)
R3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [593144 2013-04-17] (BitDefender)
R1 BdfNdisf; c:\program files\common files\bitdefender\bitdefender firewall\bdfndisf6.sys [93600 2013-02-22] (BitDefender LLC)
R1 bdfwfpf; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [103504 2011-11-14] (BitDefender LLC)
S3 bdfwfpf_pc; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf_pc.sys [109056 2013-01-29] (BitDefender SRL)
S3 BDSandBox; C:\Windows\system32\drivers\bdsandbox.sys [82384 2012-11-12] (BitDefender SRL)
R0 gzflt; C:\Windows\System32\DRIVERS\gzflt.sys [147232 2012-10-04] (BitDefender LLC)
S3 HPMo4DE3; C:\Windows\System32\DRIVERS\HPMo4DE3.sys [25088 2011-03-09] (TPMX Electronics Ltd.)
S3 HPub4DE3; C:\Windows\System32\Drivers\HPub4DE3.sys [18432 2011-04-12] (TPMX Electronics Ltd.)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
S3 s0016bus; C:\Windows\System32\DRIVERS\s0016bus.sys [115240 2008-05-16] (MCCI Corporation)
R3 seehcri; C:\Windows\System32\DRIVERS\seehcri.sys [34032 2008-01-09] (Sony Ericsson Mobile Communications)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [564824 2013-03-24] (Duplex Secure Ltd.)
R0 trufos; C:\Windows\System32\DRIVERS\trufos.sys [383048 2013-01-28] (BitDefender S.R.L.)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-07-30 23:23 - 2013-07-30 23:58 - 00000000 ____D C:\Users\Angela\Desktop\antivirus
2013-07-30 23:21 - 2013-07-30 23:21 - 00666633 _____ C:\Users\Angela\Desktop\adwcleaner.exe
2013-07-30 23:20 - 2013-07-30 23:20 - 00562430 _____ (Oleg N. Scherbakov) C:\Users\Angela\Desktop\JRT.exe
2013-07-30 23:20 - 2013-07-30 23:20 - 00000000 ____D C:\Windows\ERUNT
2013-07-30 18:24 - 2013-07-30 18:24 - 00023361 _____ C:\Users\Angela\Desktop\Addition.txt
2013-07-30 18:23 - 2013-07-30 18:23 - 00000000 ____D C:\FRST
2013-07-30 18:21 - 2013-07-30 18:21 - 01781589 _____ (Farbar) C:\Users\Angela\Desktop\FRST64.exe
2013-07-30 17:27 - 2013-07-30 17:28 - 00000000 ____D C:\Windows\system32\MRT
2013-07-30 17:25 - 2013-07-30 17:25 - 00692104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-07-30 17:25 - 2013-07-30 17:25 - 00000000 ____D C:\Windows\system32\Macromed
2013-07-30 17:21 - 2013-06-24 00:57 - 78277128 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-07-30 16:33 - 2013-07-30 16:33 - 00001113 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-07-30 16:33 - 2013-07-30 16:33 - 00000000 ____D C:\Users\Angela\AppData\Roaming\Malwarebytes
2013-07-30 16:33 - 2013-07-30 16:33 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-07-30 16:33 - 2013-07-30 16:33 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-07-30 16:33 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2013-07-30 16:32 - 2013-07-30 16:32 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Angela\Downloads\mbam-setup-1.75.0.1300.exe
2013-07-30 16:26 - 2013-07-30 16:56 - 00013983 _____ C:\Users\Angela\Desktop\hijackthis.log
2013-07-30 16:18 - 2013-07-30 16:18 - 00000385 _____ C:\Users\Angela\AppData\Roaminguser_gensett.xml
2013-07-30 16:17 - 2013-07-30 16:17 - 00000385 _____ C:\Windows\system32\user_gensett.xml
2013-07-30 13:51 - 2013-07-30 13:51 - 00076944 _____ (BitDefender) C:\Windows\system32\Drivers\bdvedisk.sys
2013-07-30 13:24 - 2013-07-30 13:24 - 02538166 _____ C:\ProgramData\1375182585.bdinstall.bin
2013-07-30 13:21 - 2013-07-30 13:21 - 00000684 ____H C:\bdr-cf01
2013-07-30 13:20 - 2013-07-30 13:20 - 00002190 _____ C:\Users\Public\Desktop\Bitdefender Safepay.lnk
2013-07-30 13:20 - 2013-07-30 13:20 - 00002071 _____ C:\Users\Public\Desktop\Bitdefender Internet Security.lnk
2013-07-30 13:20 - 2013-07-30 13:20 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_avchv_01009.Wdf
2013-07-30 13:20 - 2013-07-30 13:20 - 00000000 ____D C:\ProgramData\BDLogging
2013-07-30 13:20 - 2013-04-17 14:59 - 00718840 _____ (BitDefender) C:\Windows\system32\Drivers\avc3.sys
2013-07-30 13:20 - 2013-04-17 14:59 - 00593144 _____ (BitDefender) C:\Windows\system32\Drivers\avckf.sys
2013-07-30 13:20 - 2013-02-22 19:46 - 00093600 _____ (BitDefender LLC) C:\Windows\system32\Drivers\BdfNdisf6.sys
2013-07-30 13:20 - 2012-11-12 18:11 - 00082384 _____ (BitDefender SRL) C:\Windows\system32\Drivers\bdsandbox.sys
2013-07-30 13:20 - 2012-11-02 14:17 - 00261056 _____ (BitDefender) C:\Windows\system32\Drivers\avchv.sys
2013-07-30 13:20 - 2007-04-11 11:11 - 00511328 _____ (Microsoft Corporation) C:\Windows\capicom.dll
2013-07-30 13:18 - 2013-07-30 13:21 - 00253404 ____H C:\bdr-ld01
2013-07-30 13:18 - 2013-07-30 13:21 - 00009216 ____H C:\bdr-ld01.mbr
2013-07-30 13:18 - 2013-07-30 13:18 - 00000000 ____D C:\Users\Angela\AppData\Roaming\Bitdefender
2013-07-30 13:18 - 2013-06-25 18:20 - 38518480 ____H C:\bdr-im01.gz
2013-07-30 13:18 - 2012-08-15 15:28 - 02510608 ____H C:\bdr-bz01
2013-07-30 13:14 - 2013-07-30 14:02 - 2864671604 _____ C:\Users\Angela\Desktop\foke.rar
2013-07-30 13:12 - 2013-07-30 13:12 - 00000000 ____D C:\Users\Angela\AppData\Roaming\QuickScan
2013-07-30 13:10 - 2013-07-30 13:22 - 00000000 ____D C:\ProgramData\Bitdefender
2013-07-30 13:10 - 2013-07-30 13:10 - 00000000 ____D C:\Program Files\Bitdefender
2013-07-30 13:10 - 2013-01-28 15:57 - 00383048 _____ (BitDefender S.R.L.) C:\Windows\system32\Drivers\trufos.sys
2013-07-30 13:10 - 2012-10-04 14:30 - 00147232 ____N (BitDefender LLC) C:\Windows\system32\Drivers\gzflt.sys
2013-07-30 13:07 - 2013-07-30 13:10 - 00000000 ____D C:\Program Files\Common Files\Bitdefender
2013-07-30 13:06 - 2013-07-30 13:06 - 05701712 _____ C:\Users\Angela\Downloads\bitdefender_14isecurity.exe
2013-07-30 11:17 - 2013-07-30 13:07 - 00000000 ____D C:\ProgramData\Avira
2013-07-30 11:07 - 2013-07-30 11:10 - 108422648 _____ C:\Users\Angela\Downloads\avira_free_antivirus884_de.exe
2013-07-30 10:54 - 2013-07-30 10:54 - 00388608 _____ (Trend Micro Inc.) C:\Users\Angela\Desktop\HiJackThis204.exe
2013-07-30 09:52 - 2013-07-30 12:03 - 00000000 ____D C:\Users\Angela\Desktop\foke
2013-07-29 19:21 - 2013-07-30 10:51 - 00000000 ____D C:\Users\Angela\AppData\Roaming\Windows Net Data
2013-07-29 19:20 - 2013-06-27 07:14 - 00031816 _____ C:\Windows\Launcher.exe
2013-07-29 19:18 - 2013-07-29 19:18 - 00000209 ____N C:\Users\Angela\Desktop\Amazon.url
2013-07-29 18:47 - 2013-07-29 18:47 - 00000000 ____D C:\Users\Angela\AppData\Local\Software Updater
2013-07-20 19:38 - 2013-07-28 20:25 - 00000336 _____ C:\Windows\Tasks\HPCeeScheduleForAngela.job
2013-07-20 19:38 - 2013-07-28 10:28 - 00003192 ____N C:\Windows\System32\Tasks\HPCeeScheduleForAngela
2013-07-12 03:04 - 2013-05-29 08:15 - 17829376 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-07-12 03:04 - 2013-05-29 07:50 - 10926080 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-07-12 03:04 - 2013-05-29 07:43 - 02312704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-07-12 03:04 - 2013-05-29 07:36 - 01346560 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-07-12 03:04 - 2013-05-29 07:35 - 01392128 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-07-12 03:04 - 2013-05-29 07:34 - 01494528 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-07-12 03:04 - 2013-05-29 07:33 - 00237056 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-07-12 03:04 - 2013-05-29 07:31 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-07-12 03:04 - 2013-05-29 07:29 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-07-12 03:04 - 2013-05-29 07:29 - 00599040 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-07-12 03:04 - 2013-05-29 07:29 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-07-12 03:04 - 2013-05-29 07:27 - 02147840 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-07-12 03:04 - 2013-05-29 07:27 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-07-12 03:04 - 2013-05-29 07:25 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-07-12 03:04 - 2013-05-29 07:25 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-07-12 03:04 - 2013-05-29 07:18 - 00248320 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-07-12 03:04 - 2013-05-29 03:56 - 12333568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-07-12 03:04 - 2013-05-29 03:50 - 01800704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-07-12 03:04 - 2013-05-29 03:48 - 09738752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-07-12 03:04 - 2013-05-29 03:41 - 01427968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2013-07-12 03:04 - 2013-05-29 03:41 - 01129472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-07-12 03:04 - 2013-05-29 03:41 - 01104384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-07-12 03:04 - 2013-05-29 03:40 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2013-07-12 03:04 - 2013-05-29 03:38 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-07-12 03:04 - 2013-05-29 03:37 - 00142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2013-07-12 03:04 - 2013-05-29 03:36 - 00420864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2013-07-12 03:04 - 2013-05-29 03:35 - 00717824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-07-12 03:04 - 2013-05-29 03:35 - 00607744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-07-12 03:04 - 2013-05-29 03:33 - 02382848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-07-12 03:04 - 2013-05-29 03:33 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-07-12 03:04 - 2013-05-29 03:33 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2013-07-12 03:04 - 2013-05-29 03:29 - 00176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-07-11 18:37 - 2013-06-04 08:00 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2013-07-11 18:37 - 2013-06-04 06:53 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2013-07-11 18:37 - 2013-05-06 08:03 - 01887744 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2013-07-11 18:37 - 2013-05-06 06:56 - 01620480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2013-07-11 18:36 - 2013-06-05 05:34 - 03153920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-07-11 18:36 - 2013-04-10 01:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2013-07-11 18:36 - 2013-04-03 00:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2013-07-11 17:05 - 2013-07-11 17:05 - 00000000 ____D C:\Users\Angela\Documents\Adobe
2013-07-11 17:01 - 2013-07-11 17:01 - 00000000 ____D C:\Users\Public\Documents\Adobe
2013-07-11 16:52 - 2013-07-11 16:52 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2013-07-11 16:52 - 2013-07-11 16:52 - 00000000 ____D C:\Program Files (x86)\My Company Name
2013-07-11 16:52 - 2011-11-03 03:01 - 00056208 ____N (Rovi Corporation) C:\Windows\system32\Drivers\PxHlpa64.sys
2013-07-11 16:52 - 2011-10-17 03:00 - 00010224 ____N (Sonic Solutions) C:\Windows\system32\Drivers\cdralw2k.sys
2013-07-11 16:52 - 2011-10-17 03:00 - 00010224 ____N (Sonic Solutions) C:\Windows\system32\Drivers\cdr4_xp.sys
2013-07-11 16:51 - 2013-07-11 16:51 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2013-07-11 16:51 - 2013-07-11 16:51 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2013-07-11 11:17 - 2013-07-12 13:26 - 00014657 _____ C:\Users\Angela\Documents\brufsleben; BABY!.odt
2013-07-11 01:24 - 2013-07-30 23:55 - 00000418 ____H C:\Windows\Tasks\schedule!3036567561.job
2013-07-11 01:24 - 2013-07-30 15:13 - 00000000 ____D C:\ProgramData\siafe saVee
2013-07-11 01:24 - 2013-07-11 01:24 - 00002712 _____ C:\Windows\System32\Tasks\schedule!3036567561
2013-07-11 01:24 - 2013-07-11 01:24 - 00000000 ____D C:\ProgramData\StarApp
2013-07-11 01:24 - 2013-07-11 01:24 - 00000000 ____D C:\Program Files (x86)\SafeSaver
2013-07-11 01:23 - 2013-07-11 01:24 - 00000000 ____D C:\ProgramData\InstallMate
2013-07-03 21:45 - 2013-07-03 21:45 - 00163000 ____H C:\Windows\SysWOW64\mlfcache.dat
2013-07-03 21:44 - 2013-07-03 21:44 - 00000000 ____D C:\Users\Angela\AppData\Roaming\HTC Sync
2013-07-03 21:44 - 2013-07-03 21:44 - 00000000 ____D C:\Users\Angela\AppData\Roaming\HTC
2013-07-03 21:44 - 2013-07-03 21:44 - 00000000 ____D C:\Users\Angela\AppData\Roaming\Apple Computer
2013-07-03 21:44 - 2013-07-03 21:44 - 00000000 ____D C:\Users\Angela\AppData\Local\Apple Computer
2013-07-03 21:44 - 2013-07-03 21:44 - 00000000 ____D C:\ProgramData\HTC
2013-07-03 21:43 - 2013-07-30 23:56 - 00000000 ____D C:\Users\Angela\AppData\Local\HTC MediaHub
2013-07-03 21:43 - 2013-07-03 21:44 - 00000000 ____D C:\Users\Angela\Documents\HTC
2013-07-03 21:43 - 2013-07-03 21:43 - 00002031 _____ C:\Users\Public\Desktop\HTC Sync Manager.lnk
2013-07-03 21:43 - 2013-07-03 21:43 - 00000000 ____D C:\ProgramData\Motorola
2013-07-03 21:42 - 2013-07-03 21:43 - 00000000 ____D C:\Program Files (x86)\HTC
2013-07-03 21:42 - 2013-07-03 21:42 - 00000000 ____D C:\Program Files (x86)\Spirent Communications
2013-07-03 21:41 - 2013-07-03 21:41 - 00000000 ____D C:\Users\Angela\AppData\Local\Downloaded Installations
2013-07-03 21:37 - 2013-07-03 21:40 - 117242240 _____ (HTC) C:\Users\Angela\Downloads\setup_2.0.61.0_htc.exe
2013-07-03 14:30 - 2013-06-27 14:52 - 00017892 ____N C:\Users\Angela\Desktop\Lebenslauf.odt
2013-07-03 14:30 - 2013-06-27 14:08 - 00001720 ____N C:\Users\Angela\Desktop\BOOTEX.LOG
2013-07-03 14:30 - 2013-06-26 16:21 - 00020510 _____ C:\Users\Angela\Desktop\versuch 101.odt
2013-07-03 14:30 - 2013-06-26 12:02 - 00020363 ____N C:\Users\Angela\Desktop\hoch komliziert!!.odt
2013-07-03 14:30 - 2013-06-26 11:39 - 00010908 ____N C:\Users\Angela\Desktop\BAFÖG.odt
2013-07-03 14:30 - 2013-06-25 15:29 - 00019696 ____N C:\Users\Angela\Desktop\Bewerbung.odt
146
==================== One Month Modified Files and Folders =======
2013-07-30 23:59 - 2011-09-23 17:14 - 01749279 _____ C:\Windows\WindowsUpdate.log
2013-07-30 23:58 - 2013-07-30 23:23 - 00000000 ____D C:\Users\Angela\Desktop\antivirus
2013-07-30 23:56 - 2013-07-03 21:43 - 00000000 ____D C:\Users\Angela\AppData\Local\HTC MediaHub
2013-07-30 23:56 - 2011-11-29 13:27 - 00000000 ____D C:\Users\Angela\AppData\Roaming\StarOffice8
2013-07-30 23:55 - 2013-07-11 01:24 - 00000418 ____H C:\Windows\Tasks\schedule!3036567561.job
2013-07-30 23:55 - 2012-12-20 00:44 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-07-30 23:55 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-07-30 23:55 - 2009-07-14 06:51 - 00200673 _____ C:\Windows\setupact.log
2013-07-30 23:32 - 2012-12-20 00:44 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-07-30 23:21 - 2013-07-30 23:21 - 00666633 _____ C:\Users\Angela\Desktop\adwcleaner.exe
2013-07-30 23:20 - 2013-07-30 23:20 - 00562430 _____ (Oleg N. Scherbakov) C:\Users\Angela\Desktop\JRT.exe
2013-07-30 23:20 - 2013-07-30 23:20 - 00000000 ____D C:\Windows\ERUNT
2013-07-30 18:24 - 2013-07-30 18:24 - 00023361 _____ C:\Users\Angela\Desktop\Addition.txt
2013-07-30 18:23 - 2013-07-30 18:23 - 00000000 ____D C:\FRST
2013-07-30 18:21 - 2013-07-30 18:21 - 01781589 _____ (Farbar) C:\Users\Angela\Desktop\FRST64.exe
2013-07-30 17:48 - 2009-07-14 06:45 - 00031472 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-07-30 17:48 - 2009-07-14 06:45 - 00031472 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-07-30 17:45 - 2012-12-13 19:04 - 00004172 _____ C:\Windows\System32\Tasks\Software Updater Ui
2013-07-30 17:45 - 2012-12-10 19:04 - 00004208 _____ C:\Windows\System32\Tasks\Software Updater
2013-07-30 17:28 - 2013-07-30 17:27 - 00000000 ____D C:\Windows\system32\MRT
2013-07-30 17:25 - 2013-07-30 17:25 - 00692104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-07-30 17:25 - 2013-07-30 17:25 - 00000000 ____D C:\Windows\system32\Macromed
2013-07-30 17:25 - 2011-09-23 17:28 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-07-30 16:56 - 2013-07-30 16:26 - 00013983 _____ C:\Users\Angela\Desktop\hijackthis.log
2013-07-30 16:42 - 2010-11-21 05:47 - 00364604 _____ C:\Windows\PFRO.log
2013-07-30 16:33 - 2013-07-30 16:33 - 00001113 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-07-30 16:33 - 2013-07-30 16:33 - 00000000 ____D C:\Users\Angela\AppData\Roaming\Malwarebytes
2013-07-30 16:33 - 2013-07-30 16:33 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-07-30 16:33 - 2013-07-30 16:33 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-07-30 16:32 - 2013-07-30 16:32 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Angela\Downloads\mbam-setup-1.75.0.1300.exe
2013-07-30 16:18 - 2013-07-30 16:18 - 00000385 _____ C:\Users\Angela\AppData\Roaminguser_gensett.xml
2013-07-30 16:17 - 2013-07-30 16:17 - 00000385 _____ C:\Windows\system32\user_gensett.xml
2013-07-30 16:10 - 2011-10-10 18:19 - 00000000 ____D C:\Users\Angela\AppData\Roaming\SoftGrid Client
2013-07-30 15:13 - 2013-07-11 01:24 - 00000000 ____D C:\ProgramData\siafe saVee
2013-07-30 14:02 - 2013-07-30 13:14 - 2864671604 _____ C:\Users\Angela\Desktop\foke.rar
2013-07-30 13:51 - 2013-07-30 13:51 - 00076944 _____ (BitDefender) C:\Windows\system32\Drivers\bdvedisk.sys
2013-07-30 13:24 - 2013-07-30 13:24 - 02538166 _____ C:\ProgramData\1375182585.bdinstall.bin
2013-07-30 13:22 - 2013-07-30 13:10 - 00000000 ____D C:\ProgramData\Bitdefender
2013-07-30 13:21 - 2013-07-30 13:21 - 00000684 ____H C:\bdr-cf01
2013-07-30 13:21 - 2013-07-30 13:18 - 00253404 ____H C:\bdr-ld01
2013-07-30 13:21 - 2013-07-30 13:18 - 00009216 ____H C:\bdr-ld01.mbr
2013-07-30 13:20 - 2013-07-30 13:20 - 00002190 _____ C:\Users\Public\Desktop\Bitdefender Safepay.lnk
2013-07-30 13:20 - 2013-07-30 13:20 - 00002071 _____ C:\Users\Public\Desktop\Bitdefender Internet Security.lnk
2013-07-30 13:20 - 2013-07-30 13:20 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_avchv_01009.Wdf
2013-07-30 13:20 - 2013-07-30 13:20 - 00000000 ____D C:\ProgramData\BDLogging
2013-07-30 13:18 - 2013-07-30 13:18 - 00000000 ____D C:\Users\Angela\AppData\Roaming\Bitdefender
2013-07-30 13:12 - 2013-07-30 13:12 - 00000000 ____D C:\Users\Angela\AppData\Roaming\QuickScan
2013-07-30 13:10 - 2013-07-30 13:10 - 00000000 ____D C:\Program Files\Bitdefender
2013-07-30 13:10 - 2013-07-30 13:07 - 00000000 ____D C:\Program Files\Common Files\Bitdefender
2013-07-30 13:08 - 2011-05-13 01:49 - 00000000 ____D C:\ProgramData\Norton
2013-07-30 13:07 - 2013-07-30 11:17 - 00000000 ____D C:\ProgramData\Avira
2013-07-30 13:06 - 2013-07-30 13:06 - 05701712 _____ C:\Users\Angela\Downloads\bitdefender_14isecurity.exe
2013-07-30 13:00 - 2012-09-06 21:45 - 00000000 ____D C:\Users\Angela\AppData\Local\CrashDumps
2013-07-30 12:53 - 2013-03-13 12:13 - 00000000 ____D C:\Program Files (x86)\Ubi Soft
2013-07-30 12:42 - 2013-03-23 14:35 - 00000000 ____D C:\ProgramData\MAGIX
2013-07-30 12:40 - 2013-03-28 16:40 - 00000000 ____D C:\Users\Angela\AppData\Roaming\uTorrent
2013-07-30 12:05 - 2011-04-20 09:54 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2013-07-30 12:04 - 2012-12-29 03:11 - 00000000 ____D C:\Users\Angela\AppData\Roaming\Skype
2013-07-30 12:04 - 2012-12-29 03:10 - 00000000 ____D C:\ProgramData\Skype
2013-07-30 12:03 - 2013-07-30 09:52 - 00000000 ____D C:\Users\Angela\Desktop\foke
2013-07-30 12:03 - 2013-03-24 13:59 - 00000000 ____D C:\Users\Angela\Documents\My Games
2013-07-30 11:10 - 2013-07-30 11:07 - 108422648 _____ C:\Users\Angela\Downloads\avira_free_antivirus884_de.exe
2013-07-30 10:54 - 2013-07-30 10:54 - 00388608 _____ (Trend Micro Inc.) C:\Users\Angela\Desktop\HiJackThis204.exe
2013-07-30 10:51 - 2013-07-29 19:21 - 00000000 ____D C:\Users\Angela\AppData\Roaming\Windows Net Data
2013-07-30 09:53 - 2012-11-08 20:58 - 00000000 ____D C:\Users\Angela\Documents\TubeBox
2013-07-30 01:58 - 2011-04-20 19:24 - 00654852 _____ C:\Windows\system32\perfh007.dat
2013-07-30 01:58 - 2011-04-20 19:24 - 00130434 _____ C:\Windows\system32\perfc007.dat
2013-07-30 01:58 - 2009-07-14 07:13 - 01522286 _____ C:\Windows\system32\PerfStringBackup.INI
2013-07-29 23:48 - 2012-12-22 20:48 - 00000000 ____D C:\Users\Angela\AppData\Roaming\.minecraft
2013-07-29 19:21 - 2011-09-23 17:15 - 00000000 ___RD C:\Users\Angela\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-07-29 19:18 - 2013-07-29 19:18 - 00000209 ____N C:\Users\Angela\Desktop\Amazon.url
2013-07-29 18:47 - 2013-07-29 18:47 - 00000000 ____D C:\Users\Angela\AppData\Local\Software Updater
2013-07-28 20:25 - 2013-07-20 19:38 - 00000336 _____ C:\Windows\Tasks\HPCeeScheduleForAngela.job
2013-07-28 10:28 - 2013-07-20 19:38 - 00003192 ____N C:\Windows\System32\Tasks\HPCeeScheduleForAngela
2013-07-28 10:27 - 2012-02-04 20:39 - 00000000 _____ C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2013-07-28 10:27 - 2011-10-02 21:22 - 00000052 _____ C:\Windows\SysWOW64\DOErrors.log
2013-07-15 10:32 - 2009-07-14 07:08 - 00032632 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-07-12 18:27 - 2012-12-20 00:44 - 00004106 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-07-12 18:27 - 2012-12-20 00:44 - 00003854 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-07-12 13:26 - 2013-07-11 11:17 - 00014657 _____ C:\Users\Angela\Documents\brufsleben; BABY!.odt
2013-07-12 13:23 - 2012-03-10 14:18 - 00000000 ____D C:\Users\Angela\AppData\Local\Adobe
2013-07-12 13:22 - 2009-07-14 06:45 - 00376888 _____ C:\Windows\system32\FNTCACHE.DAT
2013-07-12 13:21 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender
2013-07-12 13:21 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2013-07-11 17:05 - 2013-07-11 17:05 - 00000000 ____D C:\Users\Angela\Documents\Adobe
2013-07-11 17:01 - 2013-07-11 17:01 - 00000000 ____D C:\Users\Public\Documents\Adobe
2013-07-11 16:52 - 2013-07-11 16:52 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2013-07-11 16:52 - 2013-07-11 16:52 - 00000000 ____D C:\Program Files (x86)\My Company Name
2013-07-11 16:52 - 2011-09-23 17:19 - 00000000 ____D C:\Users\Angela\AppData\Roaming\Adobe
2013-07-11 16:52 - 2011-04-20 09:53 - 00000000 ____D C:\ProgramData\Adobe
2013-07-11 16:52 - 2011-04-20 09:53 - 00000000 ____D C:\Program Files (x86)\Adobe
2013-07-11 16:51 - 2013-07-11 16:51 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2013-07-11 16:51 - 2013-07-11 16:51 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2013-07-11 16:22 - 2013-04-29 21:25 - 00000000 ____D C:\Users\Angela\AppData\Roaming\Audacity
2013-07-11 01:24 - 2013-07-11 01:24 - 00002712 _____ C:\Windows\System32\Tasks\schedule!3036567561
2013-07-11 01:24 - 2013-07-11 01:24 - 00000000 ____D C:\ProgramData\StarApp
2013-07-11 01:24 - 2013-07-11 01:24 - 00000000 ____D C:\Program Files (x86)\SafeSaver
2013-07-11 01:24 - 2013-07-11 01:23 - 00000000 ____D C:\ProgramData\InstallMate
2013-07-10 23:34 - 2013-02-28 20:48 - 00000000 ____D C:\Users\Angela\AppData\Local\Microsoft Games
2013-07-08 22:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF
2013-07-07 19:27 - 2011-09-23 17:15 - 00000000 ____D C:\Users\Angela
2013-07-05 23:07 - 2012-12-31 15:54 - 00000000 ____D C:\Users\Angela\AppData\Roaming\Spotify
2013-07-05 20:32 - 2012-12-31 15:54 - 00000000 ____D C:\Users\Angela\AppData\Local\Spotify
2013-07-04 07:36 - 2012-09-02 07:26 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-07-03 21:45 - 2013-07-03 21:45 - 00163000 ____H C:\Windows\SysWOW64\mlfcache.dat
2013-07-03 21:44 - 2013-07-03 21:44 - 00000000 ____D C:\Users\Angela\AppData\Roaming\HTC Sync
2013-07-03 21:44 - 2013-07-03 21:44 - 00000000 ____D C:\Users\Angela\AppData\Roaming\HTC
2013-07-03 21:44 - 2013-07-03 21:44 - 00000000 ____D C:\Users\Angela\AppData\Roaming\Apple Computer
2013-07-03 21:44 - 2013-07-03 21:44 - 00000000 ____D C:\Users\Angela\AppData\Local\Apple Computer
2013-07-03 21:44 - 2013-07-03 21:44 - 00000000 ____D C:\ProgramData\HTC
2013-07-03 21:44 - 2013-07-03 21:43 - 00000000 ____D C:\Users\Angela\Documents\HTC
2013-07-03 21:44 - 2012-03-09 20:24 - 00104176 _____ C:\Users\Angela\AppData\Local\GDIPFONTCACHEV1.DAT
2013-07-03 21:43 - 2013-07-03 21:43 - 00002031 _____ C:\Users\Public\Desktop\HTC Sync Manager.lnk
2013-07-03 21:43 - 2013-07-03 21:43 - 00000000 ____D C:\ProgramData\Motorola
2013-07-03 21:43 - 2013-07-03 21:42 - 00000000 ____D C:\Program Files (x86)\HTC
2013-07-03 21:43 - 2011-05-13 01:39 - 00444026 _____ C:\Windows\DPINST.LOG
2013-07-03 21:42 - 2013-07-03 21:42 - 00000000 ____D C:\Program Files (x86)\Spirent Communications
2013-07-03 21:41 - 2013-07-03 21:41 - 00000000 ____D C:\Users\Angela\AppData\Local\Downloaded Installations
2013-07-03 21:40 - 2013-07-03 21:37 - 117242240 _____ (HTC) C:\Users\Angela\Downloads\setup_2.0.61.0_htc.exe
2013-07-03 21:37 - 2013-03-08 17:42 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-07-02 20:31 - 2013-03-13 12:31 - 00000000 ____D C:\Users\Angela\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-07-23 20:16
==================== End Of Log ============================ --- --- ---
--- --- ---
und damit du es oben nicht raussuchen musst hier noch
addition.txt Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 30-07-2013 03
Ran by Angela at 2013-07-30 18:24:18
Running from C:\Users\Angela\Desktop
Boot Mode: Normal
==========================================================
==================== Installed Programs =======================
Adobe AIR (x32 Version: 3.1.0.4880)
Adobe Flash Player 11 ActiveX (x32 Version: 11.8.800.94)
Adobe Help Manager (x32 Version: 4.0.244)
Adobe Reader X (10.1.4) MUI (x32 Version: 10.1.4)
Agatha Christie - Peril at End House (x32 Version: 2.2.0.95)
ATI Catalyst Install Manager (Version: 3.0.808.0)
Bejeweled 2 Deluxe (x32 Version: 2.2.0.95)
Big Rig Europe (x32 Version: 2.2.0.95)
bl (x32 Version: 1.0.0)
Blasterball 3 (x32 Version: 2.2.0.95)
Bounce Symphony (x32 Version: 2.2.0.95)
Cake Mania (x32 Version: 2.2.0.95)
Catalyst Control Center - Branding (x32 Version: 1.00.0000)
Catalyst Control Center Graphics Previews Common (x32 Version: 2011.0407.736.11742)
Catalyst Control Center InstallProxy (x32 Version: 2011.0407.736.11742)
Catalyst Control Center Localization All (x32 Version: 2011.0407.736.11742)
Catalyst Control Center Profiles Mobile (x32 Version: 2011.0407.736.11742)
CCC Help Chinese Standard (x32 Version: 2011.0407.0735.11742)
CCC Help Chinese Traditional (x32 Version: 2011.0407.0735.11742)
CCC Help Czech (x32 Version: 2011.0407.0735.11742)
CCC Help Danish (x32 Version: 2011.0407.0735.11742)
CCC Help Dutch (x32 Version: 2011.0407.0735.11742)
CCC Help English (x32 Version: 2011.0407.0735.11742)
CCC Help Finnish (x32 Version: 2011.0407.0735.11742)
CCC Help French (x32 Version: 2011.0407.0735.11742)
CCC Help German (x32 Version: 2011.0407.0735.11742)
CCC Help Greek (x32 Version: 2011.0407.0735.11742)
CCC Help Hungarian (x32 Version: 2011.0407.0735.11742)
CCC Help Italian (x32 Version: 2011.0407.0735.11742)
CCC Help Japanese (x32 Version: 2011.0407.0735.11742)
CCC Help Korean (x32 Version: 2011.0407.0735.11742)
CCC Help Norwegian (x32 Version: 2011.0407.0735.11742)
CCC Help Polish (x32 Version: 2011.0407.0735.11742)
CCC Help Portuguese (x32 Version: 2011.0407.0735.11742)
CCC Help Russian (x32 Version: 2011.0407.0735.11742)
CCC Help Spanish (x32 Version: 2011.0407.0735.11742)
CCC Help Swedish (x32 Version: 2011.0407.0735.11742)
CCC Help Thai (x32 Version: 2011.0407.0735.11742)
ccc-core-static (x32 Version: 2011.0407.736.11742)
ccc-utility64 (Version: 2011.0407.736.11742)
Chuzzle Deluxe (x32 Version: 2.2.0.95)
Crazy Chicken Kart 2 (x32 Version: 2.2.0.95)
CyberLink YouCam (x32 Version: 3.5.1.3922)
D3DX10 (x32 Version: 15.4.2368.0902)
defender Internet Security (Version: 17.13.0.551)
Diner Dash 2 Restaurant Rescue (x32 Version: 2.2.0.95)
Energy Star Digital Logo (x32 Version: 1.0.1)
ESU for Microsoft Windows 7 (x32 Version: 1.0.0)
Evernote v. 4.2.2 (x32 Version: 4.2.2.3979)
Farm Frenzy (x32 Version: 2.2.0.95)
FATE (x32 Version: 2.2.0.95)
Fishdom (x32 Version: 2.2.0.95)
Google Chrome (x32 Version: 28.0.1500.72)
Google Earth Plug-in (x32 Version: 7.1.1.1580)
Google Update Helper (x32 Version: 1.3.21.153)
Hewlett-Packard ACLM.NET v1.2.1.1 (x32 Version: 1.00.0000)
HP Auto (Version: 1.0.12935.3667)
HP Client Services (Version: 1.0.12656.3472)
HP Connection Manager (x32 Version: 4.1.25.1)
HP Customer Experience Enhancements (x32 Version: 6.0.1.7)
HP Documentation (x32 Version: 1.2.0.0)
HP Games (x32 Version: 1.0.2.4)
HP On Screen Display (x32 Version: 1.3.5)
HP Power Manager (x32 Version: 1.2.3)
HP Quick Launch (x32 Version: 2.7.2)
HP Setup (x32 Version: 8.6.4530.3651)
HP Setup Manager (x32 Version: 1.1.13253.3682)
HP Software Framework (x32 Version: 4.6.10.1)
HTC Driver Installer (x32 Version: 4.2.0.001)
HTC Sync Manager (x32 Version: 2.0.61.0)
IDT Audio (x32 Version: 1.0.6324.0)
Intel(R) Display Audio Driver (x32 Version: 6.14.00.3074)
Intel(R) Management Engine Components (x32 Version: 7.0.0.1144)
Intel(R) Rapid Storage Technology (x32 Version: 10.1.2.1004)
IPTInstaller (x32 Version: 4.0.8)
Java Auto Updater (x32 Version: 2.0.3.1)
Java(TM) 6 Update 22 (x32 Version: 6.0.220)
Java(TM) 6 Update 24 (64-bit) (Version: 6.0.240)
Java(TM) 6 Update 24 (x32 Version: 6.0.240)
Jewel Quest Solitaire (x32 Version: 2.2.0.95)
Junk Mail filter update (x32 Version: 15.4.3502.0922)
Mah Jong Medley (x32 Version: 2.2.0.95)
Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300)
Mesh Runtime (x32 Version: 15.4.5722.2)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Office 2010 (x32 Version: 14.0.4763.1000)
Microsoft Office Klick-und-Los 2010 (Version: 14.0.4763.1000)
Microsoft Office Klick-und-Los 2010 (x32 Version: 14.0.4763.1000)
Microsoft Office Starter 2010 - Deutsch (x32 Version: 14.0.5128.5002)
Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219)
Mozilla Firefox 22.0 (x86 de) (x32 Version: 22.0)
Mozilla Maintenance Service (x32 Version: 22.0)
MSVCRT (x32 Version: 15.4.2862.0708)
MSVCRT_amd64 (x32 Version: 15.4.2862.0708)
MSXML 4.0 SP3 Parser (KB2758694) (x32 Version: 4.30.2117.0)
MSXML 4.0 SP3 Parser (x32 Version: 4.30.2100.0)
Namco All-Stars PAC-MAN (x32 Version: 2.2.0.95)
OpenOffice.org 3.3 (x32 Version: 3.3.9567)
OptimizerPro (Version: 1.0)
Penguins! (x32 Version: 2.2.0.95)
ph (x32 Version: 1.0.0)
Polar Bowler (x32 Version: 2.2.0.95)
PX Profile Update (x32 Version: 1.00.1.)
Ralink RT5390 802.11b/g/n WiFi Adapter (x32 Version: 3.01.16.2)
Realtek Ethernet Controller Driver (x32 Version: 7.48.823.2011)
Realtek PCIE Card Reader (x32 Version: 6.1.7600.77)
Recovery Manager (x32 Version: 2.0.0)
SafeSaver 1.74 (x32)
Search Assistant WebSearch 1.74 (x32)
SearchNewTab (x32 Version: )
siafe saVee (x32 Version: )
Slingo Deluxe (x32 Version: 2.2.0.95)
Spotify (HKCU Version: 0.9.1.53.g876fa9df)
Synaptics Pointing Device Driver (Version: 15.2.4.4)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1)
Update Installer for WildTangent Games App (x32)
Virtual Villagers - The Secret City (x32 Version: 2.2.0.95)
Wedding Dash (x32 Version: 2.2.0.95)
WildTangent Games App (HP Games) (x32 Version: 4.0.5.31)
Windows Live Communications Platform (x32 Version: 15.4.3502.0922)
Windows Live Essentials (x32 Version: 15.4.3502.0922)
Windows Live Essentials (x32 Version: 15.4.3508.1109)
Windows Live Fotogalerie (x32 Version: 15.4.3502.0922)
Windows Live ID Sign-in Assistant (Version: 7.250.4225.0)
Windows Live Installer (x32 Version: 15.4.3502.0922)
Windows Live Language Selector (Version: 15.4.3508.1109)
Windows Live Mail (x32 Version: 15.4.3502.0922)
Windows Live Mesh (x32 Version: 15.4.3502.0922)
Windows Live Mesh ActiveX Control for Remote Connections (x32 Version: 15.4.5722.2)
Windows Live Mesh ActiveX control for remote connections (x32 Version: 15.4.5722.2)
Windows Live Messenger (x32 Version: 15.4.3502.0922)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Movie Maker (x32 Version: 15.4.3502.0922)
Windows Live Photo Common (x32 Version: 15.4.3502.0922)
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922)
Windows Live PIMT Platform (x32 Version: 15.4.3508.1109)
Windows Live Remote Client (Version: 15.4.5722.2)
Windows Live Remote Client Resources (Version: 15.4.5722.2)
Windows Live Remote Service (Version: 15.4.5722.2)
Windows Live Remote Service Resources (Version: 15.4.5722.2)
Windows Live SOXE (x32 Version: 15.4.3502.0922)
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922)
Windows Live UX Platform (x32 Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109)
Windows Live Writer (x32 Version: 15.4.3502.0922)
Windows Live Writer Resources (x32 Version: 15.4.3502.0922)
WinRAR 4.01 (64-Bit) (Version: 4.01.0)
Zuma Deluxe (x32 Version: 2.2.0.95)
==================== Restore Points =========================
==================== Hosts content: ==========================
2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {0274ACE8-41E7-4C93-B64A-86BA54465DCE} - System32\Tasks\{24A1664B-D462-4396-8E24-8DAF70DA5CCC} => c:\program files (x86)\mozilla firefox\firefox.exe [2013-07-03] (Mozilla Corporation)
Task: {1813ABD2-8A86-42EC-88A0-0D3304CA89D3} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: {1E3B7284-BB12-4066-ADC2-41FF2FA47B42} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task
Task: {1F5ED179-7DBF-4022-B9F5-8D7ED2433015} - System32\Tasks\HPCeeScheduleForAngela => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-13] (Hewlett-Packard)
Task: {27E829CD-1B24-422A-8C28-9177E89603A8} - System32\Tasks\Software Updater => C:\Program Files (x86)\SoftwareUpdater\SoftwareUpdater.Bootstrapper.exe [2013-07-08] ()
Task: {3756C8F0-9C20-4216-8604-52A151D7A0A5} - System32\Tasks\MirageAgent => C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2011-03-22] (CyberLink)
Task: {460969AE-2ED0-4F5A-A83A-F7AA08107C07} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-12-20] (Google Inc.)
Task: {5C1B7B23-0657-4DF5-B153-8B2FB90D2387} - System32\Tasks\AdobeFlashPlayerUpdate 2 => C:\Windows\SysWOW64\FlashPlayerUpdateService.exe [2013-05-28] (Adobe Systems Incorporated)
Task: {6379E89B-8AD3-4E31-A4CA-A72E1D72005E} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: {7576B1BA-F30E-4281-A893-CC9A03B4BCE9} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04] (Adobe Systems Incorporated)
Task: {7C5716DF-CC06-43CE-9658-B07D4F5A736E} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2013-04-01] (Hewlett-Packard Company)
Task: {8441E638-104E-4B12-B468-FF5199527673} - System32\Tasks\{FB4C9778-4D2A-4CC9-BB69-B300E7E31457} => c:\program files (x86)\mozilla firefox\firefox.exe [2013-07-03] (Mozilla Corporation)
Task: {9B573CDB-F004-43B9-BF04-D1854A77E54D} - System32\Tasks\ServicePlan => C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [2011-01-31] ()
Task: {9BB68C5E-15A6-429A-80B2-4130AD696246} - System32\Tasks\User_Feed_Synchronization-{2DC5E2FC-07F2-45AF-9B07-98B97C2DE353} => C:\Windows\system32\msfeedssync.exe [2011-05-13] (Microsoft Corporation)
Task: {A53FACD1-DDAB-4A00-8266-8282961F5567} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-12-20] (Google Inc.)
Task: {AB721E7C-DF79-4E75-8655-9AA7D593C5E9} - System32\Tasks\Software Updater Ui => C:\Program Files (x86)\SoftwareUpdater\SoftwareUpdater.Ui.exe [2013-07-12] ()
Task: {B81EE5DD-B942-4E57-860E-111771BC51C6} - System32\Tasks\DealPlyUpdate => C:\Program Files (x86)\DealPly\DealPlyUpdate.exe No File
Task: {DC3E94D3-18C1-4047-B746-1C5D06F32B98} - System32\Tasks\Registration => C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [2011-01-31] ()
Task: {E9135ACC-3BAB-4BB2-A664-1EEBDE792210} - System32\Tasks\schedule!3036567561 => C:\ProgramData\BetterSoft\OptimizerPro\OptimizerPro.exe No File
Task: {EC2B50E9-A546-475D-91E2-6B117C63AAC3} - System32\Tasks\User_Feed_Synchronization-{7D60E71F-9576-456D-9960-72FAC07E2415} => C:\Windows\system32\msfeedssync.exe [2011-05-13] (Microsoft Corporation)
Task: {F56770B2-0750-4C4D-87AD-95F1B7F13626} - System32\Tasks\AdobeFlashPlayerUpdate => C:\Windows\SysWOW64\FlashPlayerUpdateService.exe [2013-05-28] (Adobe Systems Incorporated)
Task: {F617F188-9C27-4037-B9B1-56620537B885} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2010-10-29] (Sun Microsystems, Inc.)
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\HPCeeScheduleForAngela.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\Windows\Tasks\schedule!3036567561.job => C:\ProgramData\BetterSoft\OptimizerPro\OptimizerPro.exe
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (07/30/2013 06:24:19 PM) (Source: VSS) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Erstellen der Schattenkopieanbieter-COM-Klasse mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
] ist ein Fehler aufgetreten.
Vorgang:
Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
Schattenkopien abfragen
Kontext:
Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
Snapshotkontext: 13
Snapshotkontext: 13
Ausführungskontext: Coordinator
Error: (07/30/2013 06:24:19 PM) (Source: VSS) (User: )
Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} und dem Namen "SW_PROV" kann nicht gestartet werden. [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
]
Vorgang:
Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
Schattenkopien abfragen
Kontext:
Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
Snapshotkontext: 13
Snapshotkontext: 13
Ausführungskontext: Coordinator
Error: (07/30/2013 05:41:27 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (07/30/2013 05:39:45 PM) (Source: ATIeRecord) (User: )
Description: ATI EEU failed to post message to CCC
Error: (07/30/2013 05:39:45 PM) (Source: ATIeRecord) (User: )
Description: ATI EEU failed to post message to CCC
Error: (07/30/2013 05:35:31 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (07/30/2013 05:32:57 PM) (Source: ATIeRecord) (User: )
Description: ATI EEU failed to post message to CCC
Error: (07/30/2013 05:27:51 PM) (Source: System Restore) (User: )
Description: Fehler beim Erstellen des Wiederherstellungspunkts (Prozess = C:\Windows\system32\svchost.exe -k netsvcs; Beschreibung = Windows Update; Fehler = 0x80042302).
Error: (07/30/2013 05:27:51 PM) (Source: VSS) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "GetProviderMgmtInterface" ist ein unerwarteter Fehler aufgetreten. hr = 0x8004230f, Unerwarteter Fehler beim Schattenkopieanbieter bei dem Versuch, den angegebenen Vorgang zu verarbeiten.
.
Error: (07/30/2013 05:27:51 PM) (Source: VSS) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Erstellen der Schattenkopieanbieter-COM-Klasse mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
] ist ein Fehler aufgetreten.
Vorgang:
Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
Anbieterverwaltungsschnittstelle wird abgerufen
Kontext:
Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
Klassen-ID: {00000000-0000-0000-0000-000000000000}
Snapshotkontext: -1
Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
System errors:
=============
Error: (07/30/2013 05:47:16 PM) (Source: WMPNetworkSvc) (User: )
Description: WMPNetworkSvc0x80070422
Error: (07/30/2013 05:41:40 PM) (Source: WMPNetworkSvc) (User: )
Description: WMPNetworkSvc0x80070422
Error: (07/30/2013 05:41:38 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Heimnetzgruppen-Anbieter" ist vom Dienst "Funktionssuchanbieter-Host" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1058
Error: (07/30/2013 05:35:49 PM) (Source: WMPNetworkSvc) (User: )
Description: WMPNetworkSvc0x80070422
Error: (07/30/2013 05:35:46 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Heimnetzgruppen-Anbieter" ist vom Dienst "Funktionssuchanbieter-Host" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1058
Error: (07/30/2013 05:33:00 PM) (Source: DCOM) (User: )
Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
Error: (07/30/2013 05:32:51 PM) (Source: WMPNetworkSvc) (User: )
Description: WMPNetworkSvc0x80070422
Error: (07/30/2013 05:32:50 PM) (Source: WMPNetworkSvc) (User: )
Description: WMPNetworkSvc0x80070422
Error: (07/30/2013 05:32:49 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Heimnetzgruppen-Anbieter" ist vom Dienst "Funktionssuchanbieter-Host" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1058
Error: (07/30/2013 04:44:47 PM) (Source: WMPNetworkSvc) (User: )
Description: WMPNetworkSvc0x80070422
Microsoft Office Sessions:
=========================
Error: (07/30/2013 06:24:19 PM) (Source: VSS)(User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
Vorgang:
Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
Schattenkopien abfragen
Kontext:
Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
Snapshotkontext: 13
Snapshotkontext: 13
Ausführungskontext: Coordinator
Error: (07/30/2013 06:24:19 PM) (Source: VSS)(User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}SW_PROV0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
Vorgang:
Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
Schattenkopien abfragen
Kontext:
Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
Snapshotkontext: 13
Snapshotkontext: 13
Ausführungskontext: Coordinator
Error: (07/30/2013 05:41:27 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (07/30/2013 05:39:45 PM) (Source: ATIeRecord)(User: )
Description:
Error: (07/30/2013 05:39:45 PM) (Source: ATIeRecord)(User: )
Description:
Error: (07/30/2013 05:35:31 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (07/30/2013 05:32:57 PM) (Source: ATIeRecord)(User: )
Description:
Error: (07/30/2013 05:27:51 PM) (Source: System Restore)(User: )
Description: C:\Windows\system32\svchost.exe -k netsvcsWindows Update0x80042302
Error: (07/30/2013 05:27:51 PM) (Source: VSS)(User: )
Description: GetProviderMgmtInterface0x8004230f, Unerwarteter Fehler beim Schattenkopieanbieter bei dem Versuch, den angegebenen Vorgang zu verarbeiten.
Error: (07/30/2013 05:27:51 PM) (Source: VSS)(User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
Vorgang:
Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
Anbieterverwaltungsschnittstelle wird abgerufen
Kontext:
Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
Klassen-ID: {00000000-0000-0000-0000-000000000000}
Snapshotkontext: -1
Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
==================== Memory info ===========================
Percentage of memory in use: 58%
Total physical RAM: 4043.86 MB
Available physical RAM: 1671.06 MB
Total Pagefile: 8085.9 MB
Available Pagefile: 5091.88 MB
Total Virtual: 8192 MB
Available Virtual: 8191.81 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:450.91 GB) (Free:347.47 GB) NTFS (Disk=0 Partition=2) ==>[System with boot components (obtained from reading drive)]
Drive d: (RECOVERY) (Fixed) (Total:14.55 GB) (Free:1.56 GB) NTFS (Disk=0 Partition=3) ==>[System with boot components (obtained from reading drive)]
Drive e: (HP_TOOLS) (Fixed) (Total:0.1 GB) (Free:0.09 GB) FAT32 (Disk=0 Partition=4)
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 5BAEE7E5)
Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=451 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=15 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=103 MB) - (Type=0C)
==================== End Of Log ============================ |