Trojaner-Board

Trojaner-Board (https://www.trojaner-board.de/)
-   Log-Analyse und Auswertung (https://www.trojaner-board.de/log-analyse-auswertung/)
-   -   Schon wieder PUP.. (https://www.trojaner-board.de/141350-schon-pup.html)

Chrissi-10 11.09.2013 14:14

Schon wieder PUP..
 
Hallo,
Ich habe wiedermal ein Problem.

Nachdem ich vom Urlaub kam, lies ich wieder MBAB durchlaufen und siehe da, es hat sich schon wieder der PuP Virus / Trojaner / adware eingeschlichen.

Da habe ich mal 3 Fragen:

Zum einen, Wie kann ich mich vor diesem Schützen, bzw wodurch (Programm, Inet Seiten..) kommt dieser Virus auf meinen PC?

Wie kann ich diesen endgültig entfernen?

Ist dieser Virus/Trojaner oder diese Adware schlimm?

Ich hoffe mir kann wieder einer helfen, falls nochmals Logs benötigt werden, nur sagen :)

Vielen Dank euch schonmal!
FG

schrauber 11.09.2013 14:17

hi,

zwig mal das Log von Malwarebytes mit den Funden. PUP ist nicht schlimm, is nur Adware oder so Toolbar-Kram.

Chrissi-10 20.09.2013 17:11

Hallo Schrauber,
Sorry für diese späte Antwort. Nachdem ich diese entfernt hatte, waren sie wieder verschwunden. Allerdings tauchten sie nun wieder auf.

Code:

Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Datenbank Version: v2013.09.14.03

Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 10.0.9200.16686
alex-chris :: MELTDOWN [limitiert]

19.09.2013 19:34:04
MBAM-log-2013-09-20 (06-56-19).txt

Art des Suchlaufs: Vollständiger Suchlauf (C:\|E:\|)
Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
Deaktivierte Suchlaufeinstellungen: P2P
Durchsuchte Objekte: 432944
Laufzeit: 1 Stunde(n), 50 Minute(n),

Infizierte Speicherprozesse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Speichermodule: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungsschlüssel: 1
HKCR\AppID\{BDB69379-802F-4eaf-B541-F8DE92DD98DB} (PUP.Optional.BabylonToolBar.A) -> Keine Aktion durchgeführt.

Infizierte Registrierungswerte: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateiobjekte der Registrierung: 0
(Keine bösartigen Objekte gefunden)

Infizierte Verzeichnisse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateien: 3
C:\Users\alex-chris\AppData\Local\Temp\O48A1IQs.exe.part (PUP.Optional.OpenCandy) -> Keine Aktion durchgeführt.
C:\Users\alex-chris\Downloads\FreeYouTubeDownload(1).exe (PUP.Optional.OpenCandy) -> Keine Aktion durchgeführt.
C:\Users\alex-chris\Downloads\FreeYouTubeToMP3Converter(2).exe (PUP.Optional.OpenCandy) -> Keine Aktion durchgeführt.

(Ende)

Was ist das und wie kann ich sie endgültig entfernen? Kommen leider immer wieder..

Bitte nochmals um Hifle,
mfg Chrissi

schrauber 20.09.2013 21:02

hi,

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)


Chrissi-10 24.09.2013 16:42

Hallo,

Frst Log:


FRST Logfile:
Code:

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 24-09-2013
Ran by alex-chris (ATTENTION: The logged in user is not administrator) on MELTDOWN on 24-09-2013 15:34:14
Running from C:\Users\alex-chris\Downloads
Microsoft Windows 7 Home Premium  Service Pack 1 (X86) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal

==================== Processes (Whitelisted) ===================

(Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(shbox.de) C:\Program Files\FreePDF_XP\fpassist.exe
(Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(LogMeIn Inc.) C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe
(GARMIN Corp.) C:\Program Files\Garmin\gStart.exe
(Samsung) C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.0.285\SSScheduler.exe
(Panasonic Corporation) C:\Program Files\Common Files\Panasonic\PHOTOfunSTUDIO AutoStart\AutoStartupService.exe
(TuneUp Software) C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesApp32.exe
(Mozilla Corporation) C:\Users\alex-chris\AppData\Local\Mozilla Firefox\firefox.exe
(Farbar) C:\Users\alex-chris\Downloads\FRST(2).exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [NvCplDaemon] - RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [NvMediaCenter] - RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1434920 2009-02-27] (Synaptics Incorporated)
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [6609440 2008-10-31] (Realtek Semiconductor)
HKLM\...\Run: [Skytel] - C:\Program Files\Realtek\Audio\HDA\Skytel.exe [1833504 2008-10-31] (Realtek Semiconductor Corp.)
HKLM\...\Run: [AppleSyncNotifier] - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe [58656 2011-04-20] (Apple Inc.)
HKLM\...\Run: [FreePDF Assistant] - C:\Program Files\FreePDF_XP\fpassist.exe [385024 2009-09-05] (shbox.de)
HKLM\...\Run: [] - [x]
HKLM\...\Run: [KiesTrayAgent] - C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [310640 2013-03-28] (Samsung Electronics Co., Ltd.)
HKLM\...\Run: [APSDaemon] - C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-01-28] (Apple Inc.)
HKLM\...\Run: [avgnt] - C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [347192 2013-09-09] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [LogMeIn Hamachi Ui] - C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe [2255184 2013-06-28] (LogMeIn Inc.)
HKLM\...\RunOnce: [Malwarebytes Anti-Malware] - C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent [532040 2013-04-04] (Malwarebytes Corporation)
HKCU\...\Run: [ehTray.exe] - C:\Windows\ehome\ehTray.exe [144384 2010-11-20] (Microsoft Corporation)
HKCU\...\Run: [ISUSPM] - C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [218032 2006-09-11] (Macrovision Corporation)
HKCU\...\Run: [gStart] - C:\Program Files\Garmin\gStart.exe [1891416 2008-08-13] (GARMIN Corp.)
HKCU\...\Run: [KiesPDLR] - C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [1106288 2013-03-28] (Samsung)
HKCU\...\Run: [] - C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [1106288 2013-03-28] (Samsung)
HKCU\...\Run: [SUPERAntiSpyware] - C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [4760816 2013-07-24] (SUPERAntiSpyware.com)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.aldi.com/
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/
URLSearchHook: MHURLSearchHook Class - {1C4AB6A5-595F-4e86-B15F-F93CCE2BBD48} - C:\Program Files\Family Toolbar\tbhelper.dll ()
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {BE28C22E-F666-424d-B5FD-125C4AFEE34E} URL = hxxp://search.myheritage.com?orig=ds&q={searchTerms}
SearchScopes: HKCU - {66922AD9-4473-48A1-90A4-9BA05015D1B3} URL = hxxp://www.bing.com/search?FORM=WLETDF&PC=WLEM&q={searchTerms}&src=IE-SearchBox
SearchScopes: HKCU - {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.de/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7MEDC_de
SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2414} URL = hxxp://dts.search.ask.com/sr?src=ieb&gct=ds&appid=135&systemid=414&v=n9195-106&apn_uid=3174209155334003&apn_dtid=BND414&o=APN10649&apn_ptnrs=AGA&q={searchTerms}
SearchScopes: HKCU - {CF739809-1C6C-47C0-85B9-569DBB141420} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=DVS2&o=1586&src=kw&q={searchTerms}&locale=de_DE&apn_ptnrs=^AAA&apn_dtid=^YYYYYY^YY^DE&apn_uid=d1ff6a53-a4db-465c-a313-8c65c556887b&apn_sauid=60F0A1E2-C065-4525-8AB3-1DBC4A62C6DE
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: billiger.de Sparberater - {92A6EE5B-5AE3-4159-9134-938BCA95B753} - C:\Program Files\billigerde\Internet Explorer\billigerde.dll (solute gmbh)
BHO: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MIF5BA~1\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} -  No File
Toolbar: HKCU -Ask Toolbar - {3041D03E-FD4B-44E0-B742-2D9B88305F98} -  No File
Toolbar: HKCU - No Name - {872B5B88-9DB5-4310-BDD0-AC189557E5F5} -  No File
Toolbar: HKCU - No Name - {E9911EC6-1BCC-40B0-9993-E0EEA7F6953F} -  No File
Toolbar: HKCU -Family Toolbar - {FD2FD708-1F6F-4B68-B141-C5778F0C19BB} -  No File
Toolbar: HKCU - No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} -  No File
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll (Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
ShellExecuteHooks:  - {AEB6717E-7E19-11d0-97EE-00C04FD91972} -  No File [ ]
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [113024 2011-07-19] (SuperAdBlocker.com)
Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Winsock: Catalog9 01 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 02 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 03 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 04 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 05 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 06 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 07 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 08 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 19 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1

FireFox:
========
FF ProfilePath: C:\Users\alex-chris\AppData\Roaming\Mozilla\Firefox\Profiles\9bml876o.default
FF NetworkProxy: "no_proxies_on", "localhost, 127.0.0.1, stealthy.co"
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_11_8_800_168.dll ()
FF Plugin: @Apple.com/iTunes,version=1.0 - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @java.com/DTPlugin,version=10.10.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.10.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MIF5BA~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\MIF5BA~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=16.4.3505.0912 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @pack.google.com/Google Updater;version=14 - C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll (Google)
FF Plugin: @pandonetworks.com/PandoWebPlugin - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin: @tools.google.com/Google Update;version=8 - C:\Program Files\Google\Update\1.2.183.39\npGoogleOneClick8.dll (Google Inc.)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\alex-chris\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Extension: ProxTube - Gesperrte YouTube Videos entsperren - C:\Users\alex-chris\AppData\Roaming\Mozilla\Firefox\Profiles\9bml876o.default\Extensions\ich@maltegoetz.de
FF Extension: Flagfox - C:\Users\alex-chris\AppData\Roaming\Mozilla\Firefox\Profiles\9bml876o.default\Extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}
FF Extension: WOT - C:\Users\alex-chris\AppData\Roaming\Mozilla\Firefox\Profiles\9bml876o.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}
FF Extension: exif_viewer - C:\Users\alex-chris\AppData\Roaming\Mozilla\Firefox\Profiles\9bml876o.default\Extensions\exif_viewer@mozilla.doslash.org.xpi
FF Extension: extension - C:\Users\alex-chris\AppData\Roaming\Mozilla\Firefox\Profiles\9bml876o.default\Extensions\extension@ciuvo.com.xpi
FF Extension: stealthyextension - C:\Users\alex-chris\AppData\Roaming\Mozilla\Firefox\Profiles\9bml876o.default\Extensions\stealthyextension@gmail.com.xpi
FF Extension: No Name - C:\Users\alex-chris\AppData\Roaming\Mozilla\Firefox\Profiles\9bml876o.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi
FF Extension: No Name - C:\Users\alex-chris\AppData\Roaming\Mozilla\Firefox\Profiles\9bml876o.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF Extension: No Name - C:\Users\alex-chris\AppData\Roaming\Mozilla\Firefox\Profiles\9bml876o.default\Extensions\{d40f5e7b-d2cf-4856-b441-cc613eeffbe3}.xpi
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF HKCU\...\Thunderbird\Extensions: [{0E810812-F4BB-4309-942A-755587587A5E}] - C:\Program Files\BullGuard Ltd\BullGuard\antispam\tbspamfilter
FF HKCU\...\Thunderbird\Extensions: [{380AE6CB-09B9-4373-B360-D01C2462A6E7}] - C:\Program Files\BullGuard Ltd\BullGuard\backup\thunderbirdbkplugin
FF StartMenuInternet: FIREFOX.EXE - C:\Users\alex-chris\AppData\Local\Mozilla Firefox\firefox.exe

========================== Services (Whitelisted) =================

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [116608 2012-07-11] (SUPERAntiSpyware.com)
R2 AntiVirFirewallService; C:\Program Files\Avira\AntiVir Desktop\avfwsvc.exe [655928 2013-09-09] (Avira Operations GmbH & Co. KG)
R2 AntiVirMailService; C:\Program Files\Avira\AntiVir Desktop\avmailc.exe [622648 2013-09-09] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [84024 2013-09-09] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [108088 2013-09-09] (Avira Operations GmbH & Co. KG)
R2 AntiVirWebService; C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [815160 2013-09-09] (Avira Operations GmbH & Co. KG)
R2 AVM IGD CTRL Service; C:\Program Files\FRITZ!DSL\IGDCTRL.EXE [81920 2005-11-21] (AVM Berlin)
R2 CDMA Device Service; C:\Program Files\Samsung\USB Drivers\26_VIA_driver2\x86\VIAService.exe [63488 2011-08-02] ()
S3 de_serv; C:\Program Files\Common Files\AVM\de_serv.exe [315392 2005-11-21] (AVM Berlin)
S4 gupdate1c9c82bc62aea60; C:\Program Files\Google\Update\GoogleUpdate.exe [133104 2009-04-28] (Google Inc.)
R2 Hamachi2Svc; C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [1440080 2013-06-28] (LogMeIn Inc.)
R2 lmhosts; C:\Windows\system32\svchost.exe [20992 2009-07-14] (Microsoft Corporation)
R2 MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 NlaSvc; C:\Windows\System32\svchost.exe [20992 2009-07-14] (Microsoft Corporation)
R2 nsi; C:\Windows\system32\svchost.exe [20992 2009-07-14] (Microsoft Corporation)
S4 ProtexisLicensing; C:\Windows\system32\PSIService.exe [177704 2007-06-05] ()
R2 resetWinService; C:\Program Files\Realtek Semiconductor Corp\Realtek USB 2.0 Card Reader\reset.exe [70656 2008-10-29] ()
R2 RichVideo; C:\Program Files\Cyberlink\Shared files\RichVideo.exe [247152 2009-02-25] ()
S3 WPFFontCache_v0400; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [x]

==================== Drivers (Whitelisted) ====================

R3 Afc; C:\Windows\System32\drivers\Afc.sys [11776 2005-02-23] (Arcsoft, Inc.)
R3 avfwim; C:\Windows\System32\DRIVERS\avfwim.sys [92448 2013-02-12] (Avira GmbH)
R1 avfwot; C:\Windows\System32\DRIVERS\avfwot.sys [113024 2013-02-12] (Avira GmbH)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [88840 2013-09-09] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [136672 2013-09-09] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-03-21] (Avira Operations GmbH & Co. KG)
R0 CLFS; C:\Windows\System32\CLFS.sys [249408 2009-07-14] (Microsoft Corporation)
R3 FsUsbExDisk; C:\Windows\system32\FsUsbExDisk.SYS [37344 2013-03-20] ()
R3 hamachi; C:\Windows\System32\DRIVERS\hamachi.sys [25280 2011-09-18] (LogMeIn, Inc.)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [22856 2013-04-04] (Malwarebytes Corporation)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1799808 2008-12-29] ()
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2012-10-09] (Avira GmbH)
R3 TuneUpUtilitiesDrv; C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesDriver32.sys [10064 2010-11-29] (TuneUp Software)
R3 WINIO; C:\Windows\system32\WinIo.sys [9336 2007-01-04] (hxxp://www.internals.com)
S3 dgderdrv; System32\drivers\dgderdrv.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-09-24 15:33 - 2013-09-24 15:33 - 00000000 ____D C:\FRST
2013-09-24 15:32 - 2013-09-24 15:32 - 01088653 _____ (Farbar) C:\Users\alex-chris\Downloads\FRST(2).exe
2013-09-24 15:30 - 2013-09-24 15:30 - 97531747 _____ C:\Windows\system32\蒗⎗ᵌn
2013-09-20 21:40 - 2013-09-20 21:40 - 10285040 _____ (Malwarebytes Corporation                                    ) C:\Users\alex-chris\Downloads\mbam-setup-1.75.0.1300(14).exe
2013-09-20 21:39 - 2013-09-20 21:39 - 10285040 _____ (Malwarebytes Corporation                                    ) C:\Users\alex-chris\Downloads\mbam-setup-1.75.0.1300(13).exe
2013-09-18 20:08 - 2013-09-18 20:08 - 10285040 _____ (Malwarebytes Corporation                                    ) C:\Users\alex-chris\Downloads\mbam-setup-1.75.0.1300(12).exe
2013-09-17 20:20 - 2013-09-17 20:20 - 00619431 _____ C:\Users\alex-chris\Downloads\SET 4 TECH SHEETS.ZIP
2013-09-17 19:38 - 2013-09-17 19:38 - 00838593 _____ C:\Users\alex-chris\Downloads\SET 1 TECH SHEETS.ZIP
2013-09-17 19:38 - 2013-09-17 19:38 - 00632268 _____ C:\Users\alex-chris\Downloads\SET 5 TECH SHEETS.ZIP
2013-09-17 18:50 - 2013-09-18 18:45 - 00000000 ____D C:\Users\alex-chris\AppData\Local\Mozilla Firefox
2013-09-15 20:52 - 2013-09-15 20:52 - 01128384 _____ (Koyote-Lab Inc) C:\Users\alex-chris\Downloads\FreeVideoConverterSetup-r135-n-bf.exe
2013-09-15 20:52 - 2013-09-15 20:52 - 00000000 ____D C:\ProgramData\Datamngr
2013-09-15 18:18 - 2013-09-15 18:18 - 00000000 ____D C:\Users\alex-chris\Desktop\20130901
2013-09-15 13:33 - 2013-09-22 12:55 - 00000000 ____D C:\Urlaub2013
2013-09-14 18:19 - 2013-09-14 18:19 - 00001226 _____ C:\Users\alex-chris\Desktop\TeamSpeak 3 Client.lnk
2013-09-14 18:17 - 2013-09-14 18:17 - 30010384 _____ (TeamSpeak Systems GmbH) C:\Users\alex-chris\Downloads\TeamSpeak3-Client-win32-3.0.12.exe
2013-09-14 11:23 - 2013-09-14 11:23 - 10285040 _____ (Malwarebytes Corporation                                    ) C:\Users\alex-chris\Downloads\mbam-setup-1.75.0.1300(11).exe
2013-09-11 21:04 - 2013-09-22 22:18 - 00000000 ____D C:\Users\alex-chris\Documents\USA-2013
2013-09-11 05:55 - 2013-08-10 05:59 - 01767936 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-09-11 05:55 - 2013-08-10 05:59 - 01141248 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-09-11 05:55 - 2013-08-10 05:59 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-09-11 05:55 - 2013-08-10 05:58 - 14332928 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-09-11 05:55 - 2013-08-10 05:58 - 13761024 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-09-11 05:55 - 2013-08-10 05:58 - 02876928 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-09-11 05:55 - 2013-08-10 05:58 - 02048000 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-09-11 05:55 - 2013-08-10 05:58 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-09-11 05:55 - 2013-08-10 05:58 - 00493056 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-09-11 05:55 - 2013-08-10 05:58 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-09-11 05:55 - 2013-08-10 05:58 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-09-11 05:55 - 2013-08-10 05:58 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-09-11 05:55 - 2013-08-10 05:58 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-09-11 05:55 - 2013-08-10 05:58 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-09-11 05:55 - 2013-08-10 05:07 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-09-11 05:55 - 2013-08-10 04:17 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-09-11 04:18 - 2013-08-08 03:03 - 02348544 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-09-11 04:18 - 2013-08-05 03:56 - 00133056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys
2013-09-11 04:18 - 2013-08-02 03:50 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2013-09-11 04:18 - 2013-08-02 03:49 - 00868352 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2013-09-11 04:18 - 2013-08-02 03:49 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2013-09-11 04:18 - 2013-08-02 03:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-09-11 04:18 - 2013-08-02 03:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-09-11 04:18 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-09-11 04:18 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-09-11 04:18 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-09-11 04:18 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-09-11 04:18 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-09-11 04:18 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-09-11 04:18 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-09-11 04:18 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-09-11 04:18 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-09-11 04:18 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-09-11 04:18 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-09-11 04:18 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-09-11 04:18 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-09-11 04:18 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-09-11 04:18 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-09-11 04:18 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-09-11 04:18 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-09-11 04:18 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-09-11 04:18 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-09-11 04:18 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-09-11 04:18 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-09-11 04:18 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-09-11 04:18 - 2013-08-02 02:52 - 00271360 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2013-09-11 04:18 - 2013-08-02 02:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-09-11 04:18 - 2013-08-02 02:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-09-11 04:18 - 2013-08-02 02:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-09-11 04:18 - 2013-08-02 02:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-09-11 04:18 - 2013-07-26 03:55 - 12872704 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2013-09-11 04:18 - 2013-07-26 03:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2013-09-10 05:53 - 2013-09-10 05:53 - 10285040 _____ (Malwarebytes Corporation                                    ) C:\Users\alex-chris\Downloads\mbam-setup-1.75.0.1300(10).exe
2013-09-09 18:00 - 2013-09-09 19:59 - 96772628 _____ C:\Windows\system32\樚眦ᵌf
2013-09-09 05:04 - 2013-09-09 05:04 - 10285040 _____ (Malwarebytes Corporation                                    ) C:\Users\alex-chris\Downloads\mbam-setup-1.75.0.1300(9).exe

==================== One Month Modified Files and Folders =======

2013-09-24 15:34 - 2011-06-23 00:29 - 01993902 _____ C:\Windows\WindowsUpdate.log
2013-09-24 15:33 - 2013-09-24 15:33 - 00000000 ____D C:\FRST
2013-09-24 15:32 - 2013-09-24 15:32 - 01088653 _____ (Farbar) C:\Users\alex-chris\Downloads\FRST(2).exe
2013-09-24 15:30 - 2013-09-24 15:30 - 97531747 _____ C:\Windows\system32\蒗⎗ᵌn
2013-09-24 15:30 - 2011-09-18 13:19 - 00000000 ____D C:\Users\alex-chris\AppData\Local\LogMeIn Hamachi
2013-09-24 15:29 - 2009-07-14 06:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-09-24 15:29 - 2009-07-14 06:39 - 26792032 _____ C:\Windows\setupact.log
2013-09-23 21:23 - 2012-10-11 19:27 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-09-23 17:13 - 2011-06-22 23:12 - 00010048 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-09-23 17:13 - 2011-06-22 23:12 - 00010048 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-09-22 22:18 - 2013-09-11 21:04 - 00000000 ____D C:\Users\alex-chris\Documents\USA-2013
2013-09-22 20:02 - 2011-06-15 11:18 - 00000000 ____D C:\Users\alex-chris\AppData\Roaming\TS3Client
2013-09-22 12:55 - 2013-09-15 13:33 - 00000000 ____D C:\Urlaub2013
2013-09-22 12:55 - 2009-03-06 05:16 - 00001052 _____ C:\Windows\Tasks\Google Software Updater.job
2013-09-21 17:32 - 2011-06-23 00:06 - 00253602 _____ C:\Windows\PFRO.log
2013-09-21 10:25 - 2013-03-06 20:21 - 00000000 ____D C:\Users\alex-chris\Avira
2013-09-20 21:41 - 2013-06-08 15:32 - 00001071 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-09-20 21:41 - 2011-01-03 00:08 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware
2013-09-20 21:40 - 2013-09-20 21:40 - 10285040 _____ (Malwarebytes Corporation                                    ) C:\Users\alex-chris\Downloads\mbam-setup-1.75.0.1300(14).exe
2013-09-20 21:39 - 2013-09-20 21:39 - 10285040 _____ (Malwarebytes Corporation                                    ) C:\Users\alex-chris\Downloads\mbam-setup-1.75.0.1300(13).exe
2013-09-20 06:56 - 2009-12-30 20:12 - 00000000 ____D C:\Users\alex-chris\Desktop\Für Christoph
2013-09-19 22:32 - 2011-06-22 23:14 - 00000000 ____D C:\Users\alex-chris
2013-09-19 20:23 - 2012-10-11 19:27 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2013-09-19 20:23 - 2011-05-28 11:29 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2013-09-18 20:08 - 2013-09-18 20:08 - 10285040 _____ (Malwarebytes Corporation                                    ) C:\Users\alex-chris\Downloads\mbam-setup-1.75.0.1300(12).exe
2013-09-18 18:45 - 2013-09-17 18:50 - 00000000 ____D C:\Users\alex-chris\AppData\Local\Mozilla Firefox
2013-09-18 18:45 - 2010-04-02 13:35 - 00000000 ____D C:\Users\alex-chris\AppData\Local\Mozilla
2013-09-17 20:32 - 2010-06-21 20:46 - 00006300 _____ C:\fpRedmon.log
2013-09-17 20:32 - 2010-06-21 20:46 - 00000000 ____D C:\Users\alex-chris\AppData\Local\FreePDF_XP
2013-09-17 20:32 - 2009-09-02 19:41 - 00000000 ____D C:\Users\alex-chris\Temporär
2013-09-17 20:20 - 2013-09-17 20:20 - 00619431 _____ C:\Users\alex-chris\Downloads\SET 4 TECH SHEETS.ZIP
2013-09-17 20:19 - 2009-02-26 21:15 - 00000000 ____D C:\ProgramData\Adobe
2013-09-17 19:38 - 2013-09-17 19:38 - 00838593 _____ C:\Users\alex-chris\Downloads\SET 1 TECH SHEETS.ZIP
2013-09-17 19:38 - 2013-09-17 19:38 - 00632268 _____ C:\Users\alex-chris\Downloads\SET 5 TECH SHEETS.ZIP
2013-09-16 18:56 - 2013-01-27 22:50 - 00000000 ____D C:\Users\alex-chris\USA
2013-09-15 20:53 - 2013-07-13 08:28 - 00000000 ____D C:\Users\alex-chris\AppData\Roaming\FreeVideoConverter
2013-09-15 20:53 - 2013-07-13 08:27 - 00001173 _____ C:\Users\alex-chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Free Video Converter.lnk
2013-09-15 20:53 - 2013-07-13 08:27 - 00000000 ____D C:\Program Files\Free Video Converter
2013-09-15 20:52 - 2013-09-15 20:52 - 01128384 _____ (Koyote-Lab Inc) C:\Users\alex-chris\Downloads\FreeVideoConverterSetup-r135-n-bf.exe
2013-09-15 20:52 - 2013-09-15 20:52 - 00000000 ____D C:\ProgramData\Datamngr
2013-09-15 18:58 - 2011-08-13 13:42 - 00495104 ___SH C:\Users\alex-chris\Thumbs.db
2013-09-15 18:18 - 2013-09-15 18:18 - 00000000 ____D C:\Users\alex-chris\Desktop\20130901
2013-09-14 18:19 - 2013-09-14 18:19 - 00001226 _____ C:\Users\alex-chris\Desktop\TeamSpeak 3 Client.lnk
2013-09-14 18:18 - 2011-06-15 11:16 - 00000000 ____D C:\Users\alex-chris\AppData\Local\TeamSpeak 3 Client
2013-09-14 18:17 - 2013-09-14 18:17 - 30010384 _____ (TeamSpeak Systems GmbH) C:\Users\alex-chris\Downloads\TeamSpeak3-Client-win32-3.0.12.exe
2013-09-14 13:06 - 2013-04-21 07:40 - 00000000 ____D C:\PFS8.3 PE_TMP
2013-09-14 11:23 - 2013-09-14 11:23 - 10285040 _____ (Malwarebytes Corporation                                    ) C:\Users\alex-chris\Downloads\mbam-setup-1.75.0.1300(11).exe
2013-09-11 19:27 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\rescache
2013-09-11 15:26 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\Microsoft.NET
2013-09-11 15:07 - 2009-07-14 06:33 - 00439560 _____ C:\Windows\system32\FNTCACHE.DAT
2013-09-11 15:04 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\system32\de-DE
2013-09-11 06:00 - 2009-02-26 21:35 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-09-11 05:52 - 2013-08-13 19:54 - 00000000 ____D C:\Windows\system32\MRT
2013-09-11 05:49 - 2011-08-01 22:27 - 76725432 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-09-11 05:10 - 2013-08-18 10:45 - 00000000 ____D C:\Users\alex-chris\Documents\20130709
2013-09-10 05:53 - 2013-09-10 05:53 - 10285040 _____ (Malwarebytes Corporation                                    ) C:\Users\alex-chris\Downloads\mbam-setup-1.75.0.1300(10).exe
2013-09-09 19:59 - 2013-09-09 18:00 - 96772628 _____ C:\Windows\system32\樚眦ᵌf
2013-09-09 05:04 - 2013-09-09 05:04 - 10285040 _____ (Malwarebytes Corporation                                    ) C:\Users\alex-chris\Downloads\mbam-setup-1.75.0.1300(9).exe
2013-09-09 04:50 - 2013-05-02 12:52 - 00066144 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2013-09-09 04:50 - 2012-10-09 19:58 - 00136672 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2013-09-09 04:50 - 2012-10-09 19:58 - 00088840 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys

Files to move or delete:
====================
C:\Users\alex-chris\AppData\Roaming\desktop.ini
C:\Users\alex-chris\Firefox Setup 8.0.1.exe
C:\Users\alex-chris\iview425_setup.exe
C:\Users\alex-chris\TinyPicSetup.exe
C:\Users\alex-chris\vso_image_resizer3_setup.exe
C:\Users\alex-chris\Winload_TB-20091222.exe


==================== Bamital & volsnap Check =================

C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

==================== End Of Log ============================

--- --- ---


Addition Log:
Code:

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 24-09-2013
Ran by alex-chris at 2013-09-24 15:36:14
Running from C:\Users\alex-chris\Downloads
Boot Mode: Normal
==========================================================


==================== Security Center ========================

AV: Avira Desktop (Enabled - Up to date) {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
AS: Avira Desktop (Enabled - Up to date) {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

ABBYY FineReader OCR Engine für ScanWizard
Activation Assistant for the 2007 Microsoft Office suites
Activation Assistant for the 2007 Microsoft Office suites (Version: 1.0)
Adobe AIR (Version: 1.5.3.9120)
Adobe Flash Player 11 ActiveX (Version: 11.8.800.175)
Adobe Flash Player 11 Plugin (Version: 11.8.800.168)
Adobe Reader XI (11.0.04) - Deutsch (Version: 11.0.04)
Angebote ALDI SÜD Bildschirmschoner
Apple Application Support (Version: 2.3.3)
Apple Mobile Device Support (Version: 6.1.0.13)
Apple Software Update (Version: 2.1.3.127)
Avira Internet Security (Version: 13.0.0.4052)
AVM FRITZ!Box Dokumentation
AVM FRITZ!DSL
Badaboom 1.1.1.194 (Version: 1.1.1.194)
Biet-O-Matic v2.14.12 (Version: 2.14.12)
billiger.de Sparberater (Version: 1.0.462)
Bonjour (Version: 3.0.0.10)
Compatibility Pack für 2007 Office System (Version: 12.0.6612.1000)
Corel MediaOne (Version: 2.00.0000)
CorelDRAW Essential Edition 3 (Version: 3.0)
CyberLink MediaShow (Version: 4.1.2325)
CyberLink PhotoNow (Version: 1.1.5615)
CyberLink PowerDirector (Version: 7.0.2625)
CyberLink PowerDVD 8 (Version: 8.0.2606a)
CyberLink PowerProducer (Version: 5.0.1.1412)
CyberLink YouCam (Version: 2.0.2521)
D3DX10 (Version: 15.4.2368.0902)
DE (Version: 3.0)
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition
Driver Detective (Version: 8.0.1)
Duden Tipptrainer 2.0 (Version: 1.00.0019)
EA Download Manager (Version: 6.0.0.100)
EleLa Version V1.0.10B07 (Version: V1.0.10B07)
F1 2010 Textures Edito 0.5
FileHippo.com Update Checker
Fotogalerie (Version: 16.4.3505.0912)
FoxTab FLV Player
Free Video Converter V 3.2 (Version: 3.2.0.0)
Free YouTube Download version 3.2.7.711 (Version: 3.2.7.711)
FreePDF (Remove only)
Gamma Scout Toolbox (Version: 1.0.0)
Garmin Training Center (Version: 3.6.3)
German Truck Simulator 1.00 (Version: 1.00)
Google Chrome (Version: 22.0.1229.96)
Google Earth (Version: 5.2.1.1588)
Google Toolbar for Internet Explorer (Version: 1.0.0)
Google Toolbar for Internet Explorer (Version: 6.6.1015.36)
Google Update Helper (Version: 1.2.183.39)
Google Updater (Version: 2.4.2432.1652)
GPL Ghostscript 8.71
Hamachi 1.0.3.0
HandBrake 0.9.8 (Version: 0.9.8)
iTunes (Version: 11.0.2.26)
Java 7 Update 10 (Version: 7.0.100)
Java Auto Updater (Version: 2.1.9.0)
Java(TM) 6 Update 31 (Version: 6.0.310)
Junk Mail filter update (Version: 16.4.3505.0912)
Konz 2012 (Version: 1.00.0000)
LogMeIn Hamachi (Version: 2.1.0.374)
Malwarebytes Anti-Malware Version 1.75.0.1300 (Version: 1.75.0.1300)
Markets-pro Trading Plattform (Version: 1.0.0.0)
McAfee Security Scan Plus
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30320)
Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30320)
Microsoft Application Error Reporting (Version: 12.0.6012.5000)
Microsoft Games for Windows - LIVE Redistributable (Version: 3.5.88.0)
Microsoft Games for Windows Marketplace (Version: 3.5.50.0)
Microsoft Image Composite Editor (Version: 1.4.4)
Microsoft Office Access MUI (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office Excel MUI (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office Live Add-in 1.5 (Version: 2.0.4024.1)
Microsoft Office OneNote MUI (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office Outlook Connector (Version: 14.0.5118.5000)
Microsoft Office Outlook MUI (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office PowerPoint MUI (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office PowerPoint Viewer 2007 (German) (Version: 12.0.6612.1000)
Microsoft Office Professional 2010 (Version: 14.0.7015.1000)
Microsoft Office Proof (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office Proof (French) 2010 (Version: 14.0.7015.1000)
Microsoft Office Proof (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office Proof (Italian) 2010 (Version: 14.0.7015.1000)
Microsoft Office Proofing (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office Publisher MUI (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office Shared MUI (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office Single Image 2010 (Version: 14.0.7015.1000)
Microsoft Office Word MUI (German) 2010 (Version: 14.0.7015.1000)
Microsoft Outlook Social Connector Provider for Windows Live Messenger 32-bit (Version: 14.0.5120.5000)
Microsoft Silverlight (Version: 5.1.20513.0)
Microsoft SkyDrive (HKCU Version: 16.4.6010.0727)
Microsoft SQL Server 2005 Compact Edition [ENU] (Version: 3.1.0000)
Microsoft SQL Server Compact 3.5 SP2 ENU (Version: 3.5.8080.0)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.59193)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (Version: 9.0.30729.5570)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Works (Version: 9.7.0621)
MobileMe Control Panel (Version: 3.1.6.0)
Movie Maker (Version: 16.4.3505.0912)
Mozilla Firefox 24.0 (x86 de) (HKCU Version: 24.0)
Mozilla Thunderbird 17.0.7 (x86 de) (HKCU Version: 17.0.7)
MP4 To MP3 Converter V3.0
MSVCRT (Version: 15.4.2862.0708)
MSVCRT110 (Version: 16.4.1108.0727)
MSXML 4.0 SP2 (KB936181) (Version: 4.20.9848.0)
MSXML 4.0 SP2 (KB941833) (Version: 4.20.9849.0)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
MSXML4 Parser (Version: 1.0.0)
MyHeritage Family Tree Builder (Version: 4.0.0.916)
Nero 8 Essentials (Version: 8.3.124)
neroxml (Version: 1.0.0)
Newsoft H264 Decoder (Version: 1.04.01)
NVIDIA Drivers (Version: 1.4)
OpenAL
Paint.NET v3.5.8 (Version: 3.58.0)
Pando Media Booster (Version: 2.5.1.9)
PC Connectivity Solution (Version: 8.15.0.0)
PDFCreator (Version: 1.3.2)
Photo Gallery (Version: 16.4.3505.0912)
PHOTOfunSTUDIO 8.3 PE (Version: 8.03.713)
PixMaker
QuickShare (Version: 1.6.1.635)
QuickTime (Version: 7.73.80.64)
Race Driver 3 (Version: 1.00.0000)
Rally Trophy (Version: 1.0.0)
Rapture3D 2.4.4 Game
Realtek 8169 8168 8101E 8102E Ethernet Driver (Version: 1.00.0000)
Realtek High Definition Audio Driver
Realtek USB 2.0 Card Reader (Version: 6.0.6000.20111)
RedMon - Redirection Port Monitor
Revo Uninstaller 1.91 (Version: 1.91)
Riva FLV Player (Version: 1.0.0000)
Samsung Kies (Version: 2.1.0.11095_121)
Samsung New PC Studio (Version: 1.00.0000)
Samsung New PC Studio USB Driver Installer (Version: 1.00.0000)
SAMSUNG USB Driver for Mobile Phones (Version: 1.5.22.0)
ScanWizard 5
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition
Skype Click to Call (Version: 5.6.8442)
Skype™ 5.10 (Version: 5.10.116)
Spelling Dictionaries Support For Adobe Reader 9 (Version: 9.0.0)
StarMoney (Version: 2.0)
Steuer 2011 (Version: 19.00.7304)
Stronghold Legends (Version: 1.00.0000)
SumatraPDF (Version: 1.3)
SUPERAntiSpyware (Version: 5.6.1012)
Synaptics Pointing Device Driver (Version: 12.2.3.3)
TeamSpeak 3 Client (HKCU Version: 3.0.12)
TeamViewer 6 (Version: 6.0.10722)
Torino 2006
TuneUp Utilities 2011 (Version: 10.0.4600.4)
TuneUp Utilities Language Pack (de-DE) (Version: 10.0.4600.4)
Uniblue RegistryBooster
Unity Web Player (HKCU Version: )
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (Version: 1)
Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition
Update for Microsoft Filter Pack 2.0 (KB2810071) 32-Bit Edition
Update for Microsoft Office 2010 (KB2494150)
Update for Microsoft Office 2010 (KB2553157) 32-Bit Edition
Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition
Update for Microsoft Office 2010 (KB2589370) 32-Bit Edition
Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition
Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition
Update for Microsoft Office 2010 (KB2760758) 32-Bit Edition
Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition
Update for Microsoft OneNote 2010 (KB2810072) 32-Bit Edition
Update for Microsoft PowerPoint 2010 (KB2553145) 32-Bit Edition
Update for Microsoft Visio Viewer 2010 (KB2810066) 32-Bit Edition
Update Manager (Version: 4.60)
USB Video Device (Version: 5.8.51000.200_WHQL)
VCRedistSetup (Version: 1.0.0)
Windows Live Communications Platform (Version: 16.4.3505.0912)
Windows Live Essentials (Version: 16.4.3505.0912)
Windows Live Family Safety (Version: 16.4.3505.0912)
Windows Live ID Sign-in Assistant (Version: 7.250.4311.0)
Windows Live ID-Anmelde-Assistent (Version: 6.500.3165.0)
Windows Live Installer (Version: 16.4.3505.0912)
Windows Live Mail (Version: 16.4.3505.0912)
Windows Live Messenger (Version: 16.4.3505.0912)
Windows Live MIME IFilter (Version: 16.4.3505.0912)
Windows Live Photo Common (Version: 16.4.3505.0912)
Windows Live PIMT Platform (Version: 16.4.3505.0912)
Windows Live SOXE (Version: 16.4.3505.0912)
Windows Live SOXE Definitions (Version: 16.4.3505.0912)
Windows Live Sync (Version: 14.0.8050.1202)
Windows Live UX Platform (Version: 16.4.3505.0912)
Windows Live UX Platform Language Pack (Version: 16.4.3505.0912)
Windows Live Writer (Version: 16.4.3505.0912)
Windows Live Writer Resources (Version: 16.4.3505.0912)
Windows Media Player Firefox Plugin (Version: 1.0.0.8)
Windows-Treiberpaket - Nokia pccsmcfd  (10/12/2007 6.85.4.0) (Version: 10/12/2007 6.85.4.0)
WinRAR 4.01 (32-Bit) (Version: 4.01.0)
YTD Video Downloader 3.9.2

==================== Restore Points  =========================

Could not list Restore Points.


==================== Hosts content: ==========================

2006-11-02 12:23 - 2011-01-03 19:49 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1      localhost

==================== Scheduled Tasks (whitelisted) =============

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => ?
Task: C:\Windows\Tasks\Google Software Updater.job => ?
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => ?
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => ?

==================== Loaded Modules (whitelisted) =============

2009-03-02 15:09 - 2009-02-10 07:38 - 05976064 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dum.dll
2012-09-14 21:35 - 2012-09-14 21:35 - 00220608 _____ (Microsoft Corporation) C:\Users\alex-chris\AppData\Local\Microsoft\SkyDrive\16.4.6010.0727\SkyDriveShell.dll
2012-09-14 21:35 - 2012-09-14 21:35 - 00534480 _____ (Microsoft Corporation) C:\Users\alex-chris\AppData\Local\Microsoft\SkyDrive\16.4.6010.0727\MSVCP110.dll
2012-09-14 21:35 - 2012-09-14 21:35 - 00862664 _____ (Microsoft Corporation) C:\Users\alex-chris\AppData\Local\Microsoft\SkyDrive\16.4.6010.0727\MSVCR110.dll
2012-09-14 21:35 - 2012-09-14 21:35 - 00537536 _____ (Microsoft Corporation) C:\Users\alex-chris\AppData\Local\Microsoft\SkyDrive\16.4.6010.0727\Telemetry.dll
2012-09-14 21:35 - 2012-09-14 21:35 - 00038336 _____ (Microsoft Corporation) C:\Users\alex-chris\AppData\Local\Microsoft\SkyDrive\16.4.6010.0727\logging.dll
2008-02-18 18:29 - 2008-02-18 18:29 - 00263464 _____ (Nero AG) C:\Program Files\Nero\Nero8\Nero BackItUp\NBShell.dll
2011-06-12 14:17 - 2011-05-28 22:04 - 00140288 _____ () C:\Program Files\WinRAR\rarext.dll
2009-03-02 15:09 - 2009-02-10 07:38 - 00092704 _____ (NVIDIA Corporation) C:\Windows\system32\NvMcTray.dll
2009-03-02 15:09 - 2009-02-10 07:38 - 00520192 _____ (NVIDIA Corporation) C:\Windows\System32\nvapi.dll
2011-11-02 17:50 - 2013-03-28 11:25 - 00250368 _____ (Windows (R) Codename Longhorn DDK provider) C:\Program Files\Samsung\Kies\External\DeviceModules\UPNPDevice_Kies.dll
2008-08-13 15:34 - 2008-08-13 15:34 - 00236632 _____ (GARMIN Corp.) C:\Program Files\Garmin\gStart_LANG.dll
2012-10-11 05:31 - 2013-03-20 10:06 - 00247176 _____ (Samsung) C:\Program Files\Samsung\Kies\External\FirmwareUpdate\GlobalUtil.dll
2012-10-11 05:31 - 2013-03-20 10:06 - 00363408 _____ (Samsung) C:\Program Files\Samsung\Kies\External\FirmwareUpdate\AgentDialogs.dll
2012-12-23 12:52 - 2013-03-20 10:06 - 00106496 _____ (TODO: <Company name>) C:\Program Files\Samsung\Kies\External\FirmwareUpdate\BaseUI.dll
2011-10-31 12:23 - 2013-03-20 10:06 - 01037200 _____ (Samsung) C:\Program Files\Samsung\Kies\External\FirmwareUpdate\CommonModule.dll
2012-10-11 05:31 - 2013-03-20 10:06 - 00053640 _____ (Samsung) C:\Program Files\Samsung\Kies\External\FirmwareUpdate\AgentModels.dll
2012-10-11 05:31 - 2013-03-20 10:06 - 01617800 _____ (Samsung) C:\Program Files\Samsung\Kies\External\FirmwareUpdate\AgentModule.dll
2012-10-11 05:31 - 2013-03-20 10:06 - 06977944 _____ (Codejock Software) C:\Program Files\Samsung\Kies\External\FirmwareUpdate\ToolkitPro1331vc90U.dll
2013-09-17 18:50 - 2012-06-18 18:57 - 00770384 _____ (Microsoft Corporation) C:\Users\alex-chris\AppData\Local\Mozilla Firefox\MSVCR100.dll
2013-09-17 18:50 - 2012-06-18 18:57 - 00421200 _____ (Microsoft Corporation) C:\Users\alex-chris\AppData\Local\Mozilla Firefox\MSVCP100.dll
2013-09-17 18:50 - 2013-09-17 18:50 - 00128920 _____ (Mozilla Foundation) C:\Users\alex-chris\AppData\Local\Mozilla Firefox\mozglue.dll
2013-09-17 18:50 - 2013-09-17 18:50 - 01775000 _____ (Mozilla Foundation) C:\Users\alex-chris\AppData\Local\Mozilla Firefox\nss3.dll
2013-09-17 18:50 - 2013-09-17 18:50 - 03279768 _____ () C:\Users\alex-chris\AppData\Local\Mozilla Firefox\mozjs.dll
2013-09-17 18:50 - 2013-09-17 18:50 - 00016280 _____ (Mozilla Foundation) C:\Users\alex-chris\AppData\Local\Mozilla Firefox\mozalloc.dll
2013-09-17 18:50 - 2013-09-17 18:50 - 03215256 _____ (Mozilla Foundation) C:\Users\alex-chris\AppData\Local\Mozilla Firefox\gkmedias.dll
2013-09-17 18:50 - 2013-09-17 18:50 - 21527448 _____ (Mozilla Foundation) C:\Users\alex-chris\AppData\Local\Mozilla Firefox\xul.dll
2013-09-17 18:50 - 2013-09-17 18:50 - 00271256 _____ (Mozilla Foundation) C:\Users\alex-chris\AppData\Local\Mozilla Firefox\browser\components\browsercomps.dll
2013-09-17 18:50 - 2013-09-17 18:50 - 00152984 _____ (Mozilla Foundation) C:\Users\alex-chris\AppData\Local\Mozilla Firefox\softokn3.dll
2013-09-17 18:50 - 2013-09-17 18:50 - 00091544 _____ (Mozilla Foundation) C:\Users\alex-chris\AppData\Local\Mozilla Firefox\nssdbm3.dll
2013-09-17 18:50 - 2013-09-17 18:50 - 00301464 _____ (Mozilla Foundation) C:\Users\alex-chris\AppData\Local\Mozilla Firefox\freebl3.dll
2013-09-17 18:50 - 2013-09-17 18:50 - 00392600 _____ (Mozilla Foundation) C:\Users\alex-chris\AppData\Local\Mozilla Firefox\nssckbi.dll

==================== Alternate Data Streams (whitelisted) =========


==================== Safe Mode (whitelisted) ===================

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"

==================== Faulty Device Manager Devices =============

Name: Realtek PCIe GBE Family Controller
Description: Realtek PCIe GBE Family Controller
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Realtek
Service: RTL8169
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: =========================

Application errors:
==================
Error: (09/24/2013 03:31:22 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/23/2013 05:05:16 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/22/2013 07:00:12 PM) (Source: Windows Backup) (User: )
Description: Die Sicherung war nicht erfolgreich. Fehler: "Windows-Sicherung ist nicht konfiguriert, da Windows von einer früheren Version aktualisiert wurde. Überprüfen Sie die Sicherungseinstellungen. (0x8100002D)"

Error: (09/22/2013 02:31:04 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "assemblyIdentity1". Fehler in Manifest- oder Richtliniendatei "assemblyIdentity2" in Zeile assemblyIdentity3.
Der Wert "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" des "version"-Attributs im assemblyIdentity-Element ist ungültig.

Error: (09/22/2013 02:27:03 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "1". Fehler in Manifest- oder Richtliniendatei "2" in Zeile 3.
Mehrere requestedPrivileges-Elemente sind nicht im Manifest zulässig.

Error: (09/22/2013 11:32:28 AM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "assemblyIdentity1". Fehler in Manifest- oder Richtliniendatei "assemblyIdentity2" in Zeile assemblyIdentity3.
Der Wert "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" des "version"-Attributs im assemblyIdentity-Element ist ungültig.

Error: (09/22/2013 11:29:29 AM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "1". Fehler in Manifest- oder Richtliniendatei "2" in Zeile 3.
Mehrere requestedPrivileges-Elemente sind nicht im Manifest zulässig.

Error: (09/22/2013 10:47:09 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/21/2013 05:34:10 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/21/2013 00:34:22 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 17051


System errors:
=============
Error: (09/24/2013 03:31:45 PM) (Source: WMPNetworkSvc) (User: )
Description: 0x80070422

Error: (09/24/2013 03:31:45 PM) (Source: WMPNetworkSvc) (User: )
Description: 0x80070422

Error: (09/24/2013 03:31:45 PM) (Source: WMPNetworkSvc) (User: )
Description: 0x80070422

Error: (09/24/2013 03:31:45 PM) (Source: WMPNetworkSvc) (User: )
Description: 0x80070422

Error: (09/23/2013 05:06:57 PM) (Source: WMPNetworkSvc) (User: )
Description: 0x80070422

Error: (09/23/2013 05:06:57 PM) (Source: WMPNetworkSvc) (User: )
Description: 0x80070422

Error: (09/23/2013 05:06:57 PM) (Source: WMPNetworkSvc) (User: )
Description: 0x80070422

Error: (09/23/2013 05:06:57 PM) (Source: WMPNetworkSvc) (User: )
Description: 0x80070422

Error: (09/23/2013 05:06:43 PM) (Source: WMPNetworkSvc) (User: )
Description: WMPNetworkSvc0x80070420

Error: (09/23/2013 05:05:09 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Peer Name Resolution-Protokoll" ist vom Dienst "Peernetzwerkidentitäts-Manager" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1053


Microsoft Office Sessions:
=========================
Error: (09/24/2013 03:31:22 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/23/2013 05:05:16 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/22/2013 07:00:12 PM) (Source: Windows Backup)(User: )
Description: Windows-Sicherung ist nicht konfiguriert, da Windows von einer früheren Version aktualisiert wurde. Überprüfen Sie die Sicherungseinstellungen. (0x8100002D)

Error: (09/22/2013 02:31:04 PM) (Source: SideBySide)(User: )
Description: assemblyIdentityversionMAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINORc:\Program Files\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dllc:\Program Files\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll3

Error: (09/22/2013 02:27:03 PM) (Source: SideBySide)(User: )
Description: C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPluginBroker.exeC:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPluginBroker.exe2

Error: (09/22/2013 11:32:28 AM) (Source: SideBySide)(User: )
Description: assemblyIdentityversionMAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINORc:\Program Files\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dllc:\Program Files\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll3

Error: (09/22/2013 11:29:29 AM) (Source: SideBySide)(User: )
Description: C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPluginBroker.exeC:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPluginBroker.exe2

Error: (09/22/2013 10:47:09 AM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/21/2013 05:34:10 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/21/2013 00:34:22 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 17051


schrauber 24.09.2013 19:16

FRST sowie alle anderen Tools müssen immer mit Adminrechten laufen :)


Alle Zeitangaben in WEZ +1. Es ist jetzt 12:41 Uhr.

Copyright ©2000-2024, Trojaner-Board


Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129