Guten Morgen Schrauber,
danke für deine Nachricht. Habe ich alles gemacht. Hier die Ergebnisse:
AdwCleaner: Code:
# AdwCleaner v3.016 - Bericht erstellt am 12/01/2014 um 09:47:08
# Aktualisiert 23/12/2013 von Xplode
# Betriebssystem : Windows 7 Home Premium (64 bits)
# Benutzername : Msi - MSI-MSI
# Gestartet von : C:\Users\Msi\Downloads\adwcleaner.exe
# Option : Löschen
***** [ Dienste ] *****
***** [ Dateien / Ordner ] *****
Ordner Gelöscht : C:\ProgramData\Systweak
Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced System Protector
Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RegClean Pro
Ordner Gelöscht : C:\Program Files (x86)\MyPC Backup
Ordner Gelöscht : C:\Program Files (x86)\openit
Ordner Gelöscht : C:\Program Files (x86)\PC Speed Maximizer
Ordner Gelöscht : C:\Users\Msi\AppData\Local\Mobogenie
Ordner Gelöscht : C:\Users\Msi\AppData\Roaming\Advanced System Protector
Ordner Gelöscht : C:\Users\Msi\AppData\Roaming\optimizer pro
Ordner Gelöscht : C:\Users\Msi\AppData\Roaming\Systweak
Ordner Gelöscht : C:\Users\Msi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mobogenie
Ordner Gelöscht : C:\Users\Msi\Documents\Mobogenie
Ordner Gelöscht : C:\Users\Msi\Documents\PC Speed Maximizer
Datei Gelöscht : C:\windows\System32\roboot64.exe
Datei Gelöscht : C:\windows\System32\Tasks\Advanced System Protector
Datei Gelöscht : C:\windows\System32\Tasks\Advanced System Protector_startup
Datei Gelöscht : C:\windows\Tasks\FoxTab.job
Datei Gelöscht : C:\windows\System32\Tasks\FoxTab
Datei Gelöscht : C:\windows\System32\Tasks\RegClean Pro
***** [ Verknüpfungen ] *****
***** [ Registrierungsdatenbank ] *****
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\Mobogenie_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\Mobogenie_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\optimizerpro_rasapi32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\optimizerpro_rasmancs
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\optprostart_rasapi32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\optprostart_rasmancs
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\systweakasp_rasapi32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\systweakasp_rasmancs
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [mobilegeni daemon]
Schlüssel Gelöscht : HKCU\Software\dsiteproducts
Schlüssel Gelöscht : HKCU\Software\systweak
Schlüssel Gelöscht : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Schlüssel Gelöscht : HKLM\Software\{1146AC44-2F03-4431-B4FD-889BC837521F}
Schlüssel Gelöscht : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Schlüssel Gelöscht : HKLM\Software\systweak
Daten Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\OPTIMI~1\OPTPRO~2.DLL
***** [ Browser ] *****
-\\ Internet Explorer v8.0.7600.17267
-\\ Mozilla Firefox v26.0 (de)
[ Datei : C:\Users\Msi\AppData\Roaming\Mozilla\Firefox\Profiles\uue0gtmt.default-1389208964760\prefs.js ]
-\\ Google Chrome v31.0.1650.63
[ Datei : C:\Users\Msi\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [13899 octets] - [08/01/2014 20:40:21]
AdwCleaner[R1].txt - [3761 octets] - [12/01/2014 09:28:25]
AdwCleaner[R2].txt - [3821 octets] - [12/01/2014 09:45:42]
AdwCleaner[S0].txt - [11390 octets] - [08/01/2014 20:42:55]
AdwCleaner[S1].txt - [3657 octets] - [12/01/2014 09:47:08]
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [3717 octets] ########## Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 11-01-2014 05
Ran by Msi at 2014-01-12 10:08:51
Running from C:\FRST
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Kaspersky Anti-Virus (Enabled - Up to date) {C3113FBF-4BCB-4461-D78D-6EDFEC9593E5}
AS: Kaspersky Anti-Virus (Enabled - Up to date) {7870DE5B-6DF1-4BEF-ED3D-55AD9712D958}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.170 - Adobe Systems Incorporated)
Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.170 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.05) - Deutsch (x32 Version: 11.0.05 - Adobe Systems Incorporated)
Adobe Shockwave Player 11.6 (x32 Version: 11.6.8.638 - Adobe Systems, Inc)
Alice Greenfingers (x32 Version: - Oberon Media)
Allgemeine Runtime Files (x86) (Version: 1.0.3.5 - Sereby Corporation)
Apple Application Support (x32 Version: 2.3 - Apple Inc.)
Apple Software Update (x32 Version: 2.1.3.127 - Apple Inc.)
ArcSoft Magic-i Visual Effects 2 (x32 Version: 2.0.10.94 - ArcSoft)
ArcSoft Print Creations - Album Page (x32 Version: - ArcSoft)
ArcSoft Print Creations - Brochures & Flyers (x32 Version: - ArcSoft)
ArcSoft Print Creations - Funhouse (x32 Version: - ArcSoft)
ArcSoft Print Creations - Funhouse II (x32 Version: - ArcSoft)
ArcSoft Print Creations - Greeting Card (x32 Version: - ArcSoft)
ArcSoft Print Creations - Photo Book (x32 Version: - ArcSoft)
ArcSoft Print Creations - Photo Calendar (x32 Version: - ArcSoft)
ArcSoft Print Creations - Photo Prints (x32 Version: - ArcSoft)
ArcSoft Print Creations - Poster Creator (x32 Version: - ArcSoft)
ArcSoft Print Creations - Scrapbook (x32 Version: - ArcSoft)
ArcSoft Print Creations - Slimline Card (x32 Version: - ArcSoft)
ArcSoft Print Creations (x32 Version: 3.0.255.487 - ArcSoft)
ArcSoft WebCam Companion 3 (x32 Version: 3.0.32.221 - ArcSoft)
BatteryBar (remove only) (Version: - )
BurnRecovery (x32 Version: 3.0.1003.801 - Micro-Star International Co., Ltd.)
CCleaner (Version: 3.24 - Piriform)
Chicken Invaders 2 (x32 Version: - Oberon Media)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
dakota.ag (x32 Version: 6.0 - ITSG GmbH)
dakota.ag (x32 Version: 6.0 - ITSG GmbH) Hidden
DirectX 9.0c Extra Files (x86, x64) (Version: 1.10.06.0 - Sereby Corporation)
ElsterFormular (x32 Version: 14.3.11574 - Landesfinanzdirektion Thüringen)
Finger Sensing Pad Driver (Version: 8.5.6.4 - Sentelic)
FreeRIP Toolbar v8.5 (x32 Version: 8.5 - Spigot, Inc.)
G DATA Logox4 Speechengine (x32 Version: - G DATA Software AG)
Google Chrome (x32 Version: 31.0.1650.63 - Google Inc.)
Google Update Helper (x32 Version: 1.3.22.3 - Google Inc.) Hidden
Home Sweet Home (x32 Version: - Oberon Media)
Intel(R) Graphics Media Accelerator Driver (x32 Version: 8.15.10.2119 - Intel Corporation)
Intel(R) Management Engine Components (x32 Version: 6.0.0.1179 - Intel Corporation)
Intel(R) Rapid Storage Technology (x32 Version: 9.6.0.1014 - Intel Corporation)
Java 7 Update 10 (64-bit) (Version: 7.0.100 - Oracle)
Java 7 Update 10 (x32 Version: 7.0.100 - Oracle)
Junk Mail filter update (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Kaspersky Anti-Virus 2013 (x32 Version: 13.0.1.4190 - Kaspersky Lab)
Kaspersky Anti-Virus 2013 (x32 Version: 13.0.1.4190 - Kaspersky Lab) Hidden
Lernwerkstatt 8 (x32 Version: 8.00.0000 - Medienwerkstatt Mühlacker Verlagsgesellschaft mbH)
Lernwerkstatt 8 (x32 Version: 8.00.0000 - Medienwerkstatt Mühlacker Verlagsgesellschaft mbH) Hidden
Lexware Elster (x32 Version: 14.00.00.0128 - Haufe-Lexware GmbH & Co.KG)
Lexware financial office 2014 (x32 Version: 18.0.0.98 - Haufe-Lexware GmbH & Co.KG)
Lexware financial office 2014 (x32 Version: 18.02.00.0136 - Haufe-Lexware GmbH & Co.KG) Hidden
Lexware Info Service (x32 Version: 4.01.00.0077 - Haufe-Lexware GmbH & Co.KG) Hidden
Lexware Installations Dienst (x32 Version: 3.01.00.0011 - Haufe-Lexware GmbH & Co.KG) Hidden
Lexware online banking (x32 Version: 21.00.00.0039 - Haufe-Lexware GmbH & Co.KG)
Lexware Sepa Check (x32 Version: 1.00.00.0003 - Haufe-Lexware GmbH & Co.KG) Hidden
LSI HDA Modem (Version: 2.2.98 - LSI Corporation)
Mahjong Escape Ancient China (x32 Version: - Oberon Media)
Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300 - Malwarebytes Corporation)
Microsoft .NET Framework 1.1 SP1 (Version: - )
Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5 (Version: 4.5.50709 - Microsoft Corporation)
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Office 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Klick-und-Los 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Klick-und-Los 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Starter 2010 - Deutsch (x32 Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Search Enhancement Pack (x32 Version: 1.2.123.0 - Microsoft Corporation) Hidden
Microsoft Silverlight (Version: 5.1.20913.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (x32 Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (x32 Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (x32 Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden
Movies Toolbar for Chrome (Dist. by Somoto Ltd.) (x32 Version: 1.6.2.0 - APN LLC) <==== ATTENTION
Movies Toolbar for Internet Explorer (Dist. by Somoto Ltd.) (x32 Version: 1.6.2.0 - APN LLC) <==== ATTENTION
Mozilla Firefox 26.0 (x86 de) (x32 Version: 26.0 - Mozilla)
Mozilla Maintenance Service (x32 Version: 26.0 - Mozilla)
MSI Game Corner Console (x32 Version: 5.5.0.1 - Oberon Media, Inc.)
msi Software Install (x32 Version: 3.1000.1005.1101 - Micro-Star International Co., Ltd.)
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden
MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden
Norton Online Backup (x32 Version: 2.1.13580 - Symantec Corporation)
NVIDIA Install Application (Version: 2.1002.133.889 - NVIDIA Corporation) Hidden
NVIDIA Updatus (x32 Version: 1.0.3 - NVIDIA Corporation) Hidden
OpenOffice.org 3.4.1 (x32 Version: 3.41.9593 - Apache Software Foundation)
Photo Common (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Presto! PageManager 7.15.16 (x32 Version: 7.15.16 - NewSoft Technology Corporation)
QuickTime (x32 Version: 7.74.80.86 - Apple Inc.)
Realtek High Definition Audio Driver (x32 Version: 6.0.1.6146 - Realtek Semiconductor Corp.)
Samsung Kies (x32 Version: 2.6.0.13091_9 - Samsung Electronics Co., Ltd.)
Samsung Kies (x32 Version: 2.6.0.13091_9 - Samsung Electronics Co., Ltd.) Hidden
SAMSUNG USB Driver for Mobile Phones (Version: 1.5.27.0 - SAMSUNG Electronics Co., Ltd.)
sv.net (x32 Version: 13.1 - ITSG GmbH)
T-Online 6.0 (x32 Version: - )
Updater (x32 Version: 2.6.53 - Creative Island Media, LLC)
VLC media player 2.0.4 (Version: 2.0.4 - VideoLAN)
Win7codecs (x32 Version: 3.8.6 - Shark007)
Windows Driver Package - ENE (EUCR) USB (12/04/2009 5.89.0.64) (Version: 12/04/2009 5.89.0.64 - ENE)
Windows Live Communications Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Essentials (x32 Version: 16.4.3508.0205 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live MIME IFilter (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Sync (x32 Version: 14.0.8089.726 - Microsoft Corporation)
Windows Live UX Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Writer (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Writer Resources (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Mobile Device Updater Component (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
WinRAR 4.20 (64-Bit) (Version: 4.20.0 - win.rar GmbH)
WinRAR archiver (x32 Version: - )
x64 Components v3.8.6 (Version: 3.8.6 - Shark007)
Zune (Version: 04.08.2345.00 - Microsoft Corporation)
Zune (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (CHS) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (CHT) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (CSY) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (DAN) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (DEU) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (ELL) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (ESP) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (FIN) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (FRA) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (HUN) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (IND) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (ITA) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (JPN) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (KOR) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (MSL) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (NLD) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (NOR) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (PLK) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (PTB) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (PTG) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (RUS) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (SVE) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
==================== Restore Points =========================
15-12-2013 13:44:24 Windows Update
21-12-2013 09:16:04 Windows Update
24-12-2013 19:46:31 Windows Update
01-01-2014 16:08:52 Windows Update
08-01-2014 13:25:45 Windows Live Essentials
08-01-2014 13:30:09 Windows Update
08-01-2014 13:31:23 Windows Update
08-01-2014 13:31:59 DirectX wurde installiert
08-01-2014 13:32:50 DirectX wurde installiert
08-01-2014 13:33:13 DirectX wurde installiert
08-01-2014 13:35:30 WLSetup
08-01-2014 14:08:19 Windows Live Essentials
08-01-2014 14:08:50 WLSetup
10-01-2014 11:32:36 Installed Lexware Elster.
11-01-2014 17:25:04 Windows Update
==================== Hosts content: ==========================
2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {144E8ED6-04A3-4AC0-8766-5E3140EA9AD8} - \FoxTab No Task File
Task: {549FD8E4-CA23-44C7-BF3F-FAD3B6C74715} - System32\Tasks\Digital Sites => C:\Users\Msi\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: {6C125583-F9CD-407F-A7CB-2A6036FECA07} - \Advanced System Protector No Task File
Task: {83BCF11C-F92F-4000-8DCF-E20A5E86D735} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-02-10] (Google Inc.)
Task: {882D43FF-1B76-46DF-8F01-A5FBE1FECBC5} - \Advanced System Protector_startup No Task File
Task: {8F1139E4-5AA8-478B-8650-A912F6987966} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-02-10] (Google Inc.)
Task: {977BA2B3-3F2C-4B5B-A9D2-8A7EBE798EDE} - \RegClean Pro No Task File
Task: {A928AA64-EC17-4D0F-9254-30E870980E85} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-11] (Adobe Systems Incorporated)
Task: {B8F9439A-416C-45FC-A4C7-725EE81CB136} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2012-10-24] (Piriform Ltd)
Task: {E31EEC72-B98A-4526-849D-6C527F4D10F2} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\Digital Sites.job => C:\Users\Msi\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2010-07-21 22:17 - 2009-12-17 12:51 - 00049152 _____ () C:\Program Files\FSP\KbdHook.dll
2010-07-21 22:17 - 2009-12-17 12:51 - 00080896 _____ () C:\Program Files\FSP\FspLib.dll
2012-08-17 21:39 - 2013-02-07 15:04 - 01310136 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\kpcengine.2.2.dll
2012-08-17 21:38 - 2012-08-17 21:38 - 00479160 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\dblite.dll
2013-09-26 12:20 - 2013-09-26 12:20 - 00176168 _____ () C:\Program Files (x86)\Lexware\Update Manager\Haufe.Core.Diagnostics.Logging.Targets.Etw.dll
2013-09-26 12:20 - 2013-09-26 12:20 - 00043048 _____ () C:\Program Files (x86)\Lexware\Update Manager\Haufe.Core.Diagnostics.Etw.dll
2012-08-10 16:51 - 2012-08-10 16:51 - 00985088 _____ () C:\Program Files (x86)\OpenOffice.org 3\program\libxml2.dll
2013-12-06 21:36 - 2013-12-04 03:47 - 00702416 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\libglesv2.dll
2013-12-06 21:36 - 2013-12-04 03:47 - 00099792 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\libegl.dll
2013-12-06 21:36 - 2013-12-04 03:48 - 04055504 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\pdf.dll
2013-12-06 21:36 - 2013-12-04 03:48 - 00399312 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll
2013-12-06 21:36 - 2013-12-04 03:47 - 01619408 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ffmpegsumo.dll
2013-02-08 16:18 - 2013-02-08 16:18 - 00170496 _____ () C:\windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\d89f0252d910d617de1de783a812f840\IsdiInterop.ni.dll
2010-07-21 23:17 - 2010-03-04 04:08 - 00058880 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
==================== Faulty Device Manager Devices =============
Name: NVIDIA GeForce 310M
Description: NVIDIA GeForce 310M
Class Guid: {4d36e968-e325-11ce-bfc1-08002be10318}
Manufacturer: NVIDIA
Service: nvlddmkm
Problem: : This device is not configured correctly. (Code1)
Resolution: You may be prompted to provide the path of the driver. Windows may have the driver built-in, or may still have the driver files installed from the last time that you set up the device. If you are asked for the driver and you do not have it, you can try to download the latest driver from the hardware vendor�s Web site.
In the device properties dialog box, click the "Driver" tab, and then click "Update Driver" to start the "Hardware Update Wizard". Follow the instructions to update the driver. If updating the driver does not work, see your hardware documentation for more information.
==================== Event log errors: =========================
Application errors:
==================
Error: (01/12/2014 09:27:28 AM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest2" in Zeile C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest.
Komponente 2: C:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest.
Error: (01/10/2014 05:11:16 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest2" in Zeile C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest.
Komponente 2: C:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest.
Error: (01/10/2014 05:05:55 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest2" in Zeile C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest.
Komponente 2: C:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest.
Error: (01/10/2014 00:31:13 PM) (Source: MsiInstaller) (User: Msi-msi)
Description: Produkt: Lexware Elster -- Fehler 1704. Eine Installation von Lexware financial office 2014 ist im Augenblick unterbrochen. Sie müssen die von dieser Installation vorgenommenen Änderungen rückgängig machen, bevor Sie fortfahren können. Möchten Sie diese Änderungen rückgängig machen?
Error: (01/09/2014 00:43:41 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: Mail.exe, Version: 6.10.0.5, Zeitstempel: 0x4faba5f4
Name des fehlerhaften Moduls: funMsgMc.dll, Version: 6.7.0.2, Zeitstempel: 0x4faba629
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00020d4f
ID des fehlerhaften Prozesses: 0x1590
Startzeit der fehlerhaften Anwendung: 0xMail.exe0
Pfad der fehlerhaften Anwendung: Mail.exe1
Pfad des fehlerhaften Moduls: Mail.exe2
Berichtskennung: Mail.exe3
Error: (01/09/2014 00:43:37 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: Mail.exe, Version: 6.10.0.5, Zeitstempel: 0x4faba5f4
Name des fehlerhaften Moduls: Mail.exe, Version: 6.10.0.5, Zeitstempel: 0x4faba5f4
Ausnahmecode: 0xc0000005
Fehleroffset: 0x001df22e
ID des fehlerhaften Prozesses: 0x1590
Startzeit der fehlerhaften Anwendung: 0xMail.exe0
Pfad der fehlerhaften Anwendung: Mail.exe1
Pfad des fehlerhaften Moduls: Mail.exe2
Berichtskennung: Mail.exe3
Error: (01/08/2014 10:42:43 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: Mail.exe, Version: 6.10.0.5, Zeitstempel: 0x4faba5f4
Name des fehlerhaften Moduls: funMsgMc.dll, Version: 6.7.0.2, Zeitstempel: 0x4faba629
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00020d4f
ID des fehlerhaften Prozesses: 0x3f4
Startzeit der fehlerhaften Anwendung: 0xMail.exe0
Pfad der fehlerhaften Anwendung: Mail.exe1
Pfad des fehlerhaften Moduls: Mail.exe2
Berichtskennung: Mail.exe3
Error: (01/08/2014 10:42:41 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: Mail.exe, Version: 6.10.0.5, Zeitstempel: 0x4faba5f4
Name des fehlerhaften Moduls: Mail.exe, Version: 6.10.0.5, Zeitstempel: 0x4faba5f4
Ausnahmecode: 0xc0000005
Fehleroffset: 0x001df22e
ID des fehlerhaften Prozesses: 0x3f4
Startzeit der fehlerhaften Anwendung: 0xMail.exe0
Pfad der fehlerhaften Anwendung: Mail.exe1
Pfad des fehlerhaften Moduls: Mail.exe2
Berichtskennung: Mail.exe3
Error: (01/08/2014 10:42:19 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: Mail.exe, Version: 6.10.0.5, Zeitstempel: 0x4faba5f4
Name des fehlerhaften Moduls: funMsgMc.dll, Version: 6.7.0.2, Zeitstempel: 0x4faba629
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00020d4f
ID des fehlerhaften Prozesses: 0xa4c
Startzeit der fehlerhaften Anwendung: 0xMail.exe0
Pfad der fehlerhaften Anwendung: Mail.exe1
Pfad des fehlerhaften Moduls: Mail.exe2
Berichtskennung: Mail.exe3
Error: (01/08/2014 10:42:16 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: Mail.exe, Version: 6.10.0.5, Zeitstempel: 0x4faba5f4
Name des fehlerhaften Moduls: Mail.exe, Version: 6.10.0.5, Zeitstempel: 0x4faba5f4
Ausnahmecode: 0xc0000005
Fehleroffset: 0x001df22e
ID des fehlerhaften Prozesses: 0xa4c
Startzeit der fehlerhaften Anwendung: 0xMail.exe0
Pfad der fehlerhaften Anwendung: Mail.exe1
Pfad des fehlerhaften Moduls: Mail.exe2
Berichtskennung: Mail.exe3
System errors:
=============
Error: (01/11/2014 09:40:22 PM) (Source: Service Control Manager) (User: )
Description: Dienst "Computer Backup (MyPC Backup)" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.
Error: (01/11/2014 09:00:38 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "MgAssist Service" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren.
Error: (01/11/2014 06:45:00 PM) (Source: Service Control Manager) (User: )
Description: Dienst "ArcSoft Connect Daemon" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.
Error: (01/11/2014 06:31:23 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Windows Live Essentials 2011 (KB2434419)
Error: (01/08/2014 08:46:34 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Lexware Update Service" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (01/08/2014 08:46:34 PM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Lexware Update Service erreicht.
Error: (01/08/2014 07:59:14 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Update Spring Smart" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 5000 Millisekunden durchgeführt: Neustart des Diensts.
Error: (01/08/2014 07:31:55 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Client Virtualization Handler" ist vom Dienst "Application Virtualization Client" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1053
Error: (01/08/2014 07:31:54 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Application Virtualization Client" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (01/08/2014 07:31:54 PM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Application Virtualization Client erreicht.
Microsoft Office Sessions:
=========================
Error: (01/12/2014 09:27:28 AM) (Source: SideBySide)(User: )
Description: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifestC:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifestC:\Users\Msi\Downloads\esetsmartinstaller_enu (1).exe
Error: (01/10/2014 05:11:16 PM) (Source: SideBySide)(User: )
Description: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifestC:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifestC:\Users\Msi\Downloads\esetsmartinstaller_enu (1).exe
Error: (01/10/2014 05:05:55 PM) (Source: SideBySide)(User: )
Description: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifestC:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifestC:\Program Files (x86)\ESET\ESET Online Scanner\ESETSmartInstaller.exe
Error: (01/10/2014 00:31:13 PM) (Source: MsiInstaller)(User: Msi-msi)
Description: Produkt: Lexware Elster -- Fehler 1704. Eine Installation von Lexware financial office 2014 ist im Augenblick unterbrochen. Sie müssen die von dieser Installation vorgenommenen Änderungen rückgängig machen, bevor Sie fortfahren können. Möchten Sie diese Änderungen rückgängig machen?(NULL)(NULL)(NULL)(NULL)(NULL)
Error: (01/09/2014 00:43:41 PM) (Source: Application Error)(User: )
Description: Mail.exe6.10.0.54faba5f4funMsgMc.dll6.7.0.24faba629c000000500020d4f159001cf0d2e54236c75C:\Program Files (x86)\T-Online\T-Online_Software_6\eMail\Mail.exeC:\PROGRA~2\T-Online\T-ONLI~1\eMail\bin\funMsgMc.dll489bbd3b-7923-11e3-9463-6c626d29f565
Error: (01/09/2014 00:43:37 PM) (Source: Application Error)(User: )
Description: Mail.exe6.10.0.54faba5f4Mail.exe6.10.0.54faba5f4c0000005001df22e159001cf0d2e54236c75C:\Program Files (x86)\T-Online\T-Online_Software_6\eMail\Mail.exeC:\Program Files (x86)\T-Online\T-Online_Software_6\eMail\Mail.exe463b5623-7923-11e3-9463-6c626d29f565
Error: (01/08/2014 10:42:43 PM) (Source: Application Error)(User: )
Description: Mail.exe6.10.0.54faba5f4funMsgMc.dll6.7.0.24faba629c000000500020d4f3f401cf0cba837cb64fC:\Program Files (x86)\T-Online\T-Online_Software_6\eMail\Mail.exeC:\PROGRA~2\T-Online\T-ONLI~1\eMail\bin\funMsgMc.dllcdaf9ec0-78ad-11e3-828d-6c626d29f565
Error: (01/08/2014 10:42:41 PM) (Source: Application Error)(User: )
Description: Mail.exe6.10.0.54faba5f4Mail.exe6.10.0.54faba5f4c0000005001df22e3f401cf0cba837cb64fC:\Program Files (x86)\T-Online\T-Online_Software_6\eMail\Mail.exeC:\Program Files (x86)\T-Online\T-Online_Software_6\eMail\Mail.execc4f5317-78ad-11e3-828d-6c626d29f565
Error: (01/08/2014 10:42:19 PM) (Source: Application Error)(User: )
Description: Mail.exe6.10.0.54faba5f4funMsgMc.dll6.7.0.24faba629c000000500020d4fa4c01cf0cba52db5976C:\Program Files (x86)\T-Online\T-Online_Software_6\eMail\Mail.exeC:\PROGRA~2\T-Online\T-ONLI~1\eMail\bin\funMsgMc.dllbf2e3c14-78ad-11e3-828d-6c626d29f565
Error: (01/08/2014 10:42:16 PM) (Source: Application Error)(User: )
Description: Mail.exe6.10.0.54faba5f4Mail.exe6.10.0.54faba5f4c0000005001df22ea4c01cf0cba52db5976C:\Program Files (x86)\T-Online\T-Online_Software_6\eMail\Mail.exeC:\Program Files (x86)\T-Online\T-Online_Software_6\eMail\Mail.exebd868724-78ad-11e3-828d-6c626d29f565
CodeIntegrity Errors:
===================================
Date: 2014-01-08 13:49:26.793
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-01-08 13:49:26.791
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-01-08 13:49:26.788
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-01-08 13:49:26.772
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-01-08 13:49:26.770
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-01-08 13:49:26.767
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-12-03 16:36:35.902
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-12-03 16:36:35.902
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-12-03 16:36:35.902
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-12-03 16:36:35.887
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
==================== Memory info ===========================
Percentage of memory in use: 48%
Total physical RAM: 3886 MB
Available physical RAM: 1985.84 MB
Total Pagefile: 7770.14 MB
Available Pagefile: 5471.89 MB
Total Virtual: 8192 MB
Available Virtual: 8191.8 MB
==================== Drives ================================
Drive c: (OS_Install) (Fixed) (Total:273.4 GB) (Free:211.04 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (Data) (Fixed) (Total:177.26 GB) (Free:16.01 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 18C3A4CD)
Partition 1: (Not Active) - (Size=15 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=27)
Partition 3: (Not Active) - (Size=273 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=177 GB) - (Type=07 NTFS)
==================== End Of Log ============================ Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 11-01-2014 05
Ran by Msi at 2014-01-12 10:08:51
Running from C:\FRST
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Kaspersky Anti-Virus (Enabled - Up to date) {C3113FBF-4BCB-4461-D78D-6EDFEC9593E5}
AS: Kaspersky Anti-Virus (Enabled - Up to date) {7870DE5B-6DF1-4BEF-ED3D-55AD9712D958}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.170 - Adobe Systems Incorporated)
Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.170 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.05) - Deutsch (x32 Version: 11.0.05 - Adobe Systems Incorporated)
Adobe Shockwave Player 11.6 (x32 Version: 11.6.8.638 - Adobe Systems, Inc)
Alice Greenfingers (x32 Version: - Oberon Media)
Allgemeine Runtime Files (x86) (Version: 1.0.3.5 - Sereby Corporation)
Apple Application Support (x32 Version: 2.3 - Apple Inc.)
Apple Software Update (x32 Version: 2.1.3.127 - Apple Inc.)
ArcSoft Magic-i Visual Effects 2 (x32 Version: 2.0.10.94 - ArcSoft)
ArcSoft Print Creations - Album Page (x32 Version: - ArcSoft)
ArcSoft Print Creations - Brochures & Flyers (x32 Version: - ArcSoft)
ArcSoft Print Creations - Funhouse (x32 Version: - ArcSoft)
ArcSoft Print Creations - Funhouse II (x32 Version: - ArcSoft)
ArcSoft Print Creations - Greeting Card (x32 Version: - ArcSoft)
ArcSoft Print Creations - Photo Book (x32 Version: - ArcSoft)
ArcSoft Print Creations - Photo Calendar (x32 Version: - ArcSoft)
ArcSoft Print Creations - Photo Prints (x32 Version: - ArcSoft)
ArcSoft Print Creations - Poster Creator (x32 Version: - ArcSoft)
ArcSoft Print Creations - Scrapbook (x32 Version: - ArcSoft)
ArcSoft Print Creations - Slimline Card (x32 Version: - ArcSoft)
ArcSoft Print Creations (x32 Version: 3.0.255.487 - ArcSoft)
ArcSoft WebCam Companion 3 (x32 Version: 3.0.32.221 - ArcSoft)
BatteryBar (remove only) (Version: - )
BurnRecovery (x32 Version: 3.0.1003.801 - Micro-Star International Co., Ltd.)
CCleaner (Version: 3.24 - Piriform)
Chicken Invaders 2 (x32 Version: - Oberon Media)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
dakota.ag (x32 Version: 6.0 - ITSG GmbH)
dakota.ag (x32 Version: 6.0 - ITSG GmbH) Hidden
DirectX 9.0c Extra Files (x86, x64) (Version: 1.10.06.0 - Sereby Corporation)
ElsterFormular (x32 Version: 14.3.11574 - Landesfinanzdirektion Thüringen)
Finger Sensing Pad Driver (Version: 8.5.6.4 - Sentelic)
FreeRIP Toolbar v8.5 (x32 Version: 8.5 - Spigot, Inc.)
G DATA Logox4 Speechengine (x32 Version: - G DATA Software AG)
Google Chrome (x32 Version: 31.0.1650.63 - Google Inc.)
Google Update Helper (x32 Version: 1.3.22.3 - Google Inc.) Hidden
Home Sweet Home (x32 Version: - Oberon Media)
Intel(R) Graphics Media Accelerator Driver (x32 Version: 8.15.10.2119 - Intel Corporation)
Intel(R) Management Engine Components (x32 Version: 6.0.0.1179 - Intel Corporation)
Intel(R) Rapid Storage Technology (x32 Version: 9.6.0.1014 - Intel Corporation)
Java 7 Update 10 (64-bit) (Version: 7.0.100 - Oracle)
Java 7 Update 10 (x32 Version: 7.0.100 - Oracle)
Junk Mail filter update (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Kaspersky Anti-Virus 2013 (x32 Version: 13.0.1.4190 - Kaspersky Lab)
Kaspersky Anti-Virus 2013 (x32 Version: 13.0.1.4190 - Kaspersky Lab) Hidden
Lernwerkstatt 8 (x32 Version: 8.00.0000 - Medienwerkstatt Mühlacker Verlagsgesellschaft mbH)
Lernwerkstatt 8 (x32 Version: 8.00.0000 - Medienwerkstatt Mühlacker Verlagsgesellschaft mbH) Hidden
Lexware Elster (x32 Version: 14.00.00.0128 - Haufe-Lexware GmbH & Co.KG)
Lexware financial office 2014 (x32 Version: 18.0.0.98 - Haufe-Lexware GmbH & Co.KG)
Lexware financial office 2014 (x32 Version: 18.02.00.0136 - Haufe-Lexware GmbH & Co.KG) Hidden
Lexware Info Service (x32 Version: 4.01.00.0077 - Haufe-Lexware GmbH & Co.KG) Hidden
Lexware Installations Dienst (x32 Version: 3.01.00.0011 - Haufe-Lexware GmbH & Co.KG) Hidden
Lexware online banking (x32 Version: 21.00.00.0039 - Haufe-Lexware GmbH & Co.KG)
Lexware Sepa Check (x32 Version: 1.00.00.0003 - Haufe-Lexware GmbH & Co.KG) Hidden
LSI HDA Modem (Version: 2.2.98 - LSI Corporation)
Mahjong Escape Ancient China (x32 Version: - Oberon Media)
Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300 - Malwarebytes Corporation)
Microsoft .NET Framework 1.1 SP1 (Version: - )
Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5 (Version: 4.5.50709 - Microsoft Corporation)
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Office 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Klick-und-Los 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Klick-und-Los 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Starter 2010 - Deutsch (x32 Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Search Enhancement Pack (x32 Version: 1.2.123.0 - Microsoft Corporation) Hidden
Microsoft Silverlight (Version: 5.1.20913.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (x32 Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (x32 Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (x32 Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden
Movies Toolbar for Chrome (Dist. by Somoto Ltd.) (x32 Version: 1.6.2.0 - APN LLC) <==== ATTENTION
Movies Toolbar for Internet Explorer (Dist. by Somoto Ltd.) (x32 Version: 1.6.2.0 - APN LLC) <==== ATTENTION
Mozilla Firefox 26.0 (x86 de) (x32 Version: 26.0 - Mozilla)
Mozilla Maintenance Service (x32 Version: 26.0 - Mozilla)
MSI Game Corner Console (x32 Version: 5.5.0.1 - Oberon Media, Inc.)
msi Software Install (x32 Version: 3.1000.1005.1101 - Micro-Star International Co., Ltd.)
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden
MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden
Norton Online Backup (x32 Version: 2.1.13580 - Symantec Corporation)
NVIDIA Install Application (Version: 2.1002.133.889 - NVIDIA Corporation) Hidden
NVIDIA Updatus (x32 Version: 1.0.3 - NVIDIA Corporation) Hidden
OpenOffice.org 3.4.1 (x32 Version: 3.41.9593 - Apache Software Foundation)
Photo Common (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Presto! PageManager 7.15.16 (x32 Version: 7.15.16 - NewSoft Technology Corporation)
QuickTime (x32 Version: 7.74.80.86 - Apple Inc.)
Realtek High Definition Audio Driver (x32 Version: 6.0.1.6146 - Realtek Semiconductor Corp.)
Samsung Kies (x32 Version: 2.6.0.13091_9 - Samsung Electronics Co., Ltd.)
Samsung Kies (x32 Version: 2.6.0.13091_9 - Samsung Electronics Co., Ltd.) Hidden
SAMSUNG USB Driver for Mobile Phones (Version: 1.5.27.0 - SAMSUNG Electronics Co., Ltd.)
sv.net (x32 Version: 13.1 - ITSG GmbH)
T-Online 6.0 (x32 Version: - )
Updater (x32 Version: 2.6.53 - Creative Island Media, LLC)
VLC media player 2.0.4 (Version: 2.0.4 - VideoLAN)
Win7codecs (x32 Version: 3.8.6 - Shark007)
Windows Driver Package - ENE (EUCR) USB (12/04/2009 5.89.0.64) (Version: 12/04/2009 5.89.0.64 - ENE)
Windows Live Communications Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Essentials (x32 Version: 16.4.3508.0205 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live MIME IFilter (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Sync (x32 Version: 14.0.8089.726 - Microsoft Corporation)
Windows Live UX Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Writer (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Writer Resources (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Mobile Device Updater Component (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
WinRAR 4.20 (64-Bit) (Version: 4.20.0 - win.rar GmbH)
WinRAR archiver (x32 Version: - )
x64 Components v3.8.6 (Version: 3.8.6 - Shark007)
Zune (Version: 04.08.2345.00 - Microsoft Corporation)
Zune (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (CHS) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (CHT) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (CSY) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (DAN) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (DEU) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (ELL) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (ESP) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (FIN) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (FRA) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (HUN) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (IND) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (ITA) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (JPN) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (KOR) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (MSL) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (NLD) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (NOR) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (PLK) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (PTB) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (PTG) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (RUS) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
Zune Language Pack (SVE) (Version: 04.08.2345.00 - Microsoft Corporation) Hidden
==================== Restore Points =========================
15-12-2013 13:44:24 Windows Update
21-12-2013 09:16:04 Windows Update
24-12-2013 19:46:31 Windows Update
01-01-2014 16:08:52 Windows Update
08-01-2014 13:25:45 Windows Live Essentials
08-01-2014 13:30:09 Windows Update
08-01-2014 13:31:23 Windows Update
08-01-2014 13:31:59 DirectX wurde installiert
08-01-2014 13:32:50 DirectX wurde installiert
08-01-2014 13:33:13 DirectX wurde installiert
08-01-2014 13:35:30 WLSetup
08-01-2014 14:08:19 Windows Live Essentials
08-01-2014 14:08:50 WLSetup
10-01-2014 11:32:36 Installed Lexware Elster.
11-01-2014 17:25:04 Windows Update
==================== Hosts content: ==========================
2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {144E8ED6-04A3-4AC0-8766-5E3140EA9AD8} - \FoxTab No Task File
Task: {549FD8E4-CA23-44C7-BF3F-FAD3B6C74715} - System32\Tasks\Digital Sites => C:\Users\Msi\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: {6C125583-F9CD-407F-A7CB-2A6036FECA07} - \Advanced System Protector No Task File
Task: {83BCF11C-F92F-4000-8DCF-E20A5E86D735} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-02-10] (Google Inc.)
Task: {882D43FF-1B76-46DF-8F01-A5FBE1FECBC5} - \Advanced System Protector_startup No Task File
Task: {8F1139E4-5AA8-478B-8650-A912F6987966} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-02-10] (Google Inc.)
Task: {977BA2B3-3F2C-4B5B-A9D2-8A7EBE798EDE} - \RegClean Pro No Task File
Task: {A928AA64-EC17-4D0F-9254-30E870980E85} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-11] (Adobe Systems Incorporated)
Task: {B8F9439A-416C-45FC-A4C7-725EE81CB136} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2012-10-24] (Piriform Ltd)
Task: {E31EEC72-B98A-4526-849D-6C527F4D10F2} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\Digital Sites.job => C:\Users\Msi\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2010-07-21 22:17 - 2009-12-17 12:51 - 00049152 _____ () C:\Program Files\FSP\KbdHook.dll
2010-07-21 22:17 - 2009-12-17 12:51 - 00080896 _____ () C:\Program Files\FSP\FspLib.dll
2012-08-17 21:39 - 2013-02-07 15:04 - 01310136 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\kpcengine.2.2.dll
2012-08-17 21:38 - 2012-08-17 21:38 - 00479160 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\dblite.dll
2013-09-26 12:20 - 2013-09-26 12:20 - 00176168 _____ () C:\Program Files (x86)\Lexware\Update Manager\Haufe.Core.Diagnostics.Logging.Targets.Etw.dll
2013-09-26 12:20 - 2013-09-26 12:20 - 00043048 _____ () C:\Program Files (x86)\Lexware\Update Manager\Haufe.Core.Diagnostics.Etw.dll
2012-08-10 16:51 - 2012-08-10 16:51 - 00985088 _____ () C:\Program Files (x86)\OpenOffice.org 3\program\libxml2.dll
2013-12-06 21:36 - 2013-12-04 03:47 - 00702416 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\libglesv2.dll
2013-12-06 21:36 - 2013-12-04 03:47 - 00099792 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\libegl.dll
2013-12-06 21:36 - 2013-12-04 03:48 - 04055504 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\pdf.dll
2013-12-06 21:36 - 2013-12-04 03:48 - 00399312 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll
2013-12-06 21:36 - 2013-12-04 03:47 - 01619408 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ffmpegsumo.dll
2013-02-08 16:18 - 2013-02-08 16:18 - 00170496 _____ () C:\windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\d89f0252d910d617de1de783a812f840\IsdiInterop.ni.dll
2010-07-21 23:17 - 2010-03-04 04:08 - 00058880 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
==================== Faulty Device Manager Devices =============
Name: NVIDIA GeForce 310M
Description: NVIDIA GeForce 310M
Class Guid: {4d36e968-e325-11ce-bfc1-08002be10318}
Manufacturer: NVIDIA
Service: nvlddmkm
Problem: : This device is not configured correctly. (Code1)
Resolution: You may be prompted to provide the path of the driver. Windows may have the driver built-in, or may still have the driver files installed from the last time that you set up the device. If you are asked for the driver and you do not have it, you can try to download the latest driver from the hardware vendor�s Web site.
In the device properties dialog box, click the "Driver" tab, and then click "Update Driver" to start the "Hardware Update Wizard". Follow the instructions to update the driver. If updating the driver does not work, see your hardware documentation for more information.
==================== Event log errors: =========================
Application errors:
==================
Error: (01/12/2014 09:27:28 AM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest2" in Zeile C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest.
Komponente 2: C:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest.
Error: (01/10/2014 05:11:16 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest2" in Zeile C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest.
Komponente 2: C:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest.
Error: (01/10/2014 05:05:55 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest2" in Zeile C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest.
Komponente 2: C:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest.
Error: (01/10/2014 00:31:13 PM) (Source: MsiInstaller) (User: Msi-msi)
Description: Produkt: Lexware Elster -- Fehler 1704. Eine Installation von Lexware financial office 2014 ist im Augenblick unterbrochen. Sie müssen die von dieser Installation vorgenommenen Änderungen rückgängig machen, bevor Sie fortfahren können. Möchten Sie diese Änderungen rückgängig machen?
Error: (01/09/2014 00:43:41 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: Mail.exe, Version: 6.10.0.5, Zeitstempel: 0x4faba5f4
Name des fehlerhaften Moduls: funMsgMc.dll, Version: 6.7.0.2, Zeitstempel: 0x4faba629
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00020d4f
ID des fehlerhaften Prozesses: 0x1590
Startzeit der fehlerhaften Anwendung: 0xMail.exe0
Pfad der fehlerhaften Anwendung: Mail.exe1
Pfad des fehlerhaften Moduls: Mail.exe2
Berichtskennung: Mail.exe3
Error: (01/09/2014 00:43:37 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: Mail.exe, Version: 6.10.0.5, Zeitstempel: 0x4faba5f4
Name des fehlerhaften Moduls: Mail.exe, Version: 6.10.0.5, Zeitstempel: 0x4faba5f4
Ausnahmecode: 0xc0000005
Fehleroffset: 0x001df22e
ID des fehlerhaften Prozesses: 0x1590
Startzeit der fehlerhaften Anwendung: 0xMail.exe0
Pfad der fehlerhaften Anwendung: Mail.exe1
Pfad des fehlerhaften Moduls: Mail.exe2
Berichtskennung: Mail.exe3
Error: (01/08/2014 10:42:43 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: Mail.exe, Version: 6.10.0.5, Zeitstempel: 0x4faba5f4
Name des fehlerhaften Moduls: funMsgMc.dll, Version: 6.7.0.2, Zeitstempel: 0x4faba629
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00020d4f
ID des fehlerhaften Prozesses: 0x3f4
Startzeit der fehlerhaften Anwendung: 0xMail.exe0
Pfad der fehlerhaften Anwendung: Mail.exe1
Pfad des fehlerhaften Moduls: Mail.exe2
Berichtskennung: Mail.exe3
Error: (01/08/2014 10:42:41 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: Mail.exe, Version: 6.10.0.5, Zeitstempel: 0x4faba5f4
Name des fehlerhaften Moduls: Mail.exe, Version: 6.10.0.5, Zeitstempel: 0x4faba5f4
Ausnahmecode: 0xc0000005
Fehleroffset: 0x001df22e
ID des fehlerhaften Prozesses: 0x3f4
Startzeit der fehlerhaften Anwendung: 0xMail.exe0
Pfad der fehlerhaften Anwendung: Mail.exe1
Pfad des fehlerhaften Moduls: Mail.exe2
Berichtskennung: Mail.exe3
Error: (01/08/2014 10:42:19 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: Mail.exe, Version: 6.10.0.5, Zeitstempel: 0x4faba5f4
Name des fehlerhaften Moduls: funMsgMc.dll, Version: 6.7.0.2, Zeitstempel: 0x4faba629
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00020d4f
ID des fehlerhaften Prozesses: 0xa4c
Startzeit der fehlerhaften Anwendung: 0xMail.exe0
Pfad der fehlerhaften Anwendung: Mail.exe1
Pfad des fehlerhaften Moduls: Mail.exe2
Berichtskennung: Mail.exe3
Error: (01/08/2014 10:42:16 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: Mail.exe, Version: 6.10.0.5, Zeitstempel: 0x4faba5f4
Name des fehlerhaften Moduls: Mail.exe, Version: 6.10.0.5, Zeitstempel: 0x4faba5f4
Ausnahmecode: 0xc0000005
Fehleroffset: 0x001df22e
ID des fehlerhaften Prozesses: 0xa4c
Startzeit der fehlerhaften Anwendung: 0xMail.exe0
Pfad der fehlerhaften Anwendung: Mail.exe1
Pfad des fehlerhaften Moduls: Mail.exe2
Berichtskennung: Mail.exe3
System errors:
=============
Error: (01/11/2014 09:40:22 PM) (Source: Service Control Manager) (User: )
Description: Dienst "Computer Backup (MyPC Backup)" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.
Error: (01/11/2014 09:00:38 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "MgAssist Service" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren.
Error: (01/11/2014 06:45:00 PM) (Source: Service Control Manager) (User: )
Description: Dienst "ArcSoft Connect Daemon" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.
Error: (01/11/2014 06:31:23 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Windows Live Essentials 2011 (KB2434419)
Error: (01/08/2014 08:46:34 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Lexware Update Service" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (01/08/2014 08:46:34 PM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Lexware Update Service erreicht.
Error: (01/08/2014 07:59:14 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Update Spring Smart" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 5000 Millisekunden durchgeführt: Neustart des Diensts.
Error: (01/08/2014 07:31:55 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Client Virtualization Handler" ist vom Dienst "Application Virtualization Client" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1053
Error: (01/08/2014 07:31:54 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Application Virtualization Client" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (01/08/2014 07:31:54 PM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Application Virtualization Client erreicht.
Microsoft Office Sessions:
=========================
Error: (01/12/2014 09:27:28 AM) (Source: SideBySide)(User: )
Description: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifestC:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifestC:\Users\Msi\Downloads\esetsmartinstaller_enu (1).exe
Error: (01/10/2014 05:11:16 PM) (Source: SideBySide)(User: )
Description: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifestC:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifestC:\Users\Msi\Downloads\esetsmartinstaller_enu (1).exe
Error: (01/10/2014 05:05:55 PM) (Source: SideBySide)(User: )
Description: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifestC:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifestC:\Program Files (x86)\ESET\ESET Online Scanner\ESETSmartInstaller.exe
Error: (01/10/2014 00:31:13 PM) (Source: MsiInstaller)(User: Msi-msi)
Description: Produkt: Lexware Elster -- Fehler 1704. Eine Installation von Lexware financial office 2014 ist im Augenblick unterbrochen. Sie müssen die von dieser Installation vorgenommenen Änderungen rückgängig machen, bevor Sie fortfahren können. Möchten Sie diese Änderungen rückgängig machen?(NULL)(NULL)(NULL)(NULL)(NULL)
Error: (01/09/2014 00:43:41 PM) (Source: Application Error)(User: )
Description: Mail.exe6.10.0.54faba5f4funMsgMc.dll6.7.0.24faba629c000000500020d4f159001cf0d2e54236c75C:\Program Files (x86)\T-Online\T-Online_Software_6\eMail\Mail.exeC:\PROGRA~2\T-Online\T-ONLI~1\eMail\bin\funMsgMc.dll489bbd3b-7923-11e3-9463-6c626d29f565
Error: (01/09/2014 00:43:37 PM) (Source: Application Error)(User: )
Description: Mail.exe6.10.0.54faba5f4Mail.exe6.10.0.54faba5f4c0000005001df22e159001cf0d2e54236c75C:\Program Files (x86)\T-Online\T-Online_Software_6\eMail\Mail.exeC:\Program Files (x86)\T-Online\T-Online_Software_6\eMail\Mail.exe463b5623-7923-11e3-9463-6c626d29f565
Error: (01/08/2014 10:42:43 PM) (Source: Application Error)(User: )
Description: Mail.exe6.10.0.54faba5f4funMsgMc.dll6.7.0.24faba629c000000500020d4f3f401cf0cba837cb64fC:\Program Files (x86)\T-Online\T-Online_Software_6\eMail\Mail.exeC:\PROGRA~2\T-Online\T-ONLI~1\eMail\bin\funMsgMc.dllcdaf9ec0-78ad-11e3-828d-6c626d29f565
Error: (01/08/2014 10:42:41 PM) (Source: Application Error)(User: )
Description: Mail.exe6.10.0.54faba5f4Mail.exe6.10.0.54faba5f4c0000005001df22e3f401cf0cba837cb64fC:\Program Files (x86)\T-Online\T-Online_Software_6\eMail\Mail.exeC:\Program Files (x86)\T-Online\T-Online_Software_6\eMail\Mail.execc4f5317-78ad-11e3-828d-6c626d29f565
Error: (01/08/2014 10:42:19 PM) (Source: Application Error)(User: )
Description: Mail.exe6.10.0.54faba5f4funMsgMc.dll6.7.0.24faba629c000000500020d4fa4c01cf0cba52db5976C:\Program Files (x86)\T-Online\T-Online_Software_6\eMail\Mail.exeC:\PROGRA~2\T-Online\T-ONLI~1\eMail\bin\funMsgMc.dllbf2e3c14-78ad-11e3-828d-6c626d29f565
Error: (01/08/2014 10:42:16 PM) (Source: Application Error)(User: )
Description: Mail.exe6.10.0.54faba5f4Mail.exe6.10.0.54faba5f4c0000005001df22ea4c01cf0cba52db5976C:\Program Files (x86)\T-Online\T-Online_Software_6\eMail\Mail.exeC:\Program Files (x86)\T-Online\T-Online_Software_6\eMail\Mail.exebd868724-78ad-11e3-828d-6c626d29f565
CodeIntegrity Errors:
===================================
Date: 2014-01-08 13:49:26.793
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-01-08 13:49:26.791
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-01-08 13:49:26.788
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-01-08 13:49:26.772
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-01-08 13:49:26.770
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-01-08 13:49:26.767
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-12-03 16:36:35.902
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-12-03 16:36:35.902
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-12-03 16:36:35.902
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-12-03 16:36:35.887
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
==================== Memory info ===========================
Percentage of memory in use: 48%
Total physical RAM: 3886 MB
Available physical RAM: 1985.84 MB
Total Pagefile: 7770.14 MB
Available Pagefile: 5471.89 MB
Total Virtual: 8192 MB
Available Virtual: 8191.8 MB
==================== Drives ================================
Drive c: (OS_Install) (Fixed) (Total:273.4 GB) (Free:211.04 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (Data) (Fixed) (Total:177.26 GB) (Free:16.01 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 18C3A4CD)
Partition 1: (Not Active) - (Size=15 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=27)
Partition 3: (Not Active) - (Size=273 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=177 GB) - (Type=07 NTFS)
==================== End Of Log ============================
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-01-2014 05
Ran by Msi (administrator) on MSI-MSI on 12-01-2014 10:02:40
Running from C:\FRST
Windows 7 Home Premium (X64) OS Language: German Standard
Internet Explorer Version 8
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
(LSI Corporation) C:\Program Files\LSI SoftModem\agr64svc.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe
(Haufe-Lexware GmbH & Co. KG) C:\Program Files (x86)\Lexware\Update Service\Hmg.InstallationService.Service.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
(Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
() C:\Program Files (x86)\MSI Game Corner\Game Console\OberonGameConsoleService.exe
(Microsoft Corp.) C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(Microsoft Corporation) C:\Windows\System32\drvinst.exe
(Microsoft Corporation) C:\Windows\System32\dinotify.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Sentelic Corporation) C:\Program Files\FSP\FspUip.exe
() C:\Windows\System32\spool\drivers\x64\3\WrtMon.exe
(Microsoft Corporation) C:\Program Files\Zune\ZuneLauncher.exe
() C:\Windows\System32\spool\drivers\x64\3\WrtProc.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVH.EXE
(Samsung) C:\Program Files (x86)\Samsung\Kies\Kies.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\x64\wmi64.exe
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
(Haufe-Lexware GmbH & Co. KG) C:\Program Files (x86)\Lexware\Update Manager\LxUpdateManager.exe
(ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin
() Q:\140066.deu\Office14\MSOSYNC.EXE
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
() C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\OFFICEVIRT.EXE
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11049576 2010-06-29] (Realtek Semiconductor)
HKLM\...\Run: [fspuip] - C:\Program Files\FSP\fspuip.exe [3768832 2009-12-17] (Sentelic Corporation)
HKLM\...\Run: [WrtMon.exe] - C:\windows\system32\spool\drivers\x64\3\WrtMon.exe [20480 2006-09-20] ()
HKLM\...\Run: [Zune Launcher] - C:\Program Files\Zune\ZuneLauncher.exe [163552 2011-08-05] (Microsoft Corporation)
HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284696 2010-03-04] (Intel Corporation)
HKLM-x32\...\Run: [NortonOnlineBackup] - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [1112920 2010-03-06] (Symantec Corporation)
HKLM-x32\...\Run: [ArcSoft Connection Service] - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [207424 2010-10-27] (ArcSoft Inc.)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AVP] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe [356128 2013-10-09] (Kaspersky Lab ZAO)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59280 2012-10-11] (Apple Inc.)
HKLM-x32\...\Run: [QuickTime Task] - C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM-x32\...\Run: [KiesTrayAgent] - C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [311152 2013-09-04] (Samsung Electronics Co., Ltd.)
HKLM-x32\...\Run: [LexwareInfoService] - C:\Program Files (x86)\Lexware\Update Manager\LxUpdateManager.exe [208424 2013-10-17] (Haufe-Lexware GmbH & Co. KG)
HKLM-x32\...\Run: [] - [x]
HKLM\...\RunOnce: [NCInstallQueue] - rundll32 netman.dll,ProcessQueue [360448 2009-07-14] (Microsoft Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKCU\...\Run: [OfficeSyncProcess] - C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVH.EXE [3207912 2013-07-23] (Microsoft Corporation)
HKCU\...\Run: [ShowBatteryBar] - C:\Program Files\BatteryBar\ShowBatteryBar.exe [89600 2013-04-11] ()
HKCU\...\Run: [KiesPreload] - C:\Program Files (x86)\Samsung\Kies\Kies.exe [1564528 2013-09-04] (Samsung)
HKCU\...\Run: [KiesAirMessage] - C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup
HKCU\...\Run: [FLV Player] - C:\Users\Msi\AppData\Local\WebPlayer\FLV Player\WebPlayer.exe
AppInit_DLLs: [ ] ()
AppInit_DLLs-x32: c:\windows\syswow64\nvinit.dll [ ] ()
Startup: C:\Users\Msi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.4.1.lnk
ShortcutTarget: OpenOffice.org 3.4.1.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()
==================== Internet (Whitelisted) ====================
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKLM - {52db1893-8a90-4192-aede-08e00b8f8473} URL = hxxp://dts.search.ask.com/sr?src=ieb&gct=ds&appid=105&systemid=473&v=a9397-147&apn_uid=3302503315214174&apn_dtid=BND473&o=APN10640&apn_ptnrs=AG1&q={searchTerms}
SearchScopes: HKLM-x32 - {52db1893-8a90-4192-aede-08e00b8f8473} URL = hxxp://dts.search.ask.com/sr?src=ieb&gct=ds&appid=105&systemid=473&v=a9397-147&apn_uid=3302503315214174&apn_dtid=BND473&o=APN10640&apn_ptnrs=AG1&q={searchTerms}
SearchScopes: HKCU - {52db1893-8a90-4192-aede-08e00b8f8473} URL = hxxp://dts.search.ask.com/sr?src=ieb&gct=ds&appid=105&systemid=473&v=a9397-147&apn_uid=3302503315214174&apn_dtid=BND473&o=APN10640&apn_ptnrs=AG1&q={searchTerms}
SearchScopes: HKCU - {768936BC-6EAE-4A4B-9602-35422E918D61} URL = hxxp://search.softonic.com/MOY00009/tb_v1?q={searchTerms}&SearchSource=4&cc=&mi=0009199c0000000000004e5d6083cb02&toi=16078&r=836
SearchScopes: HKCU - {B8AAEBCB-5D25-4583-8404-943E678232F3} URL = hxxp://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=386496&p={searchTerms}
SearchScopes: HKCU - {FD88D162-AB23-4097-B2CB-9E8C9C131252} URL =
BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll (Microsoft Corp.)
BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
FireFox:
========
FF ProfilePath: C:\Users\Msi\AppData\Roaming\Mozilla\Firefox\Profiles\uue0gtmt.default-1389208964760
FF Plugin: @adobe.com/FlashPlayer - C:\windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll ()
FF Plugin: @java.com/DTPlugin,version=10.10.2 - C:\windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.10.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.0.4 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=10.10.2 - C:\windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.10.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF HKLM-x32\...\Firefox\Extensions: - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\url_advisor@kaspersky.com
FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\url_advisor@kaspersky.com [2013-02-06]
FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\virtual_keyboard@kaspersky.com
FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\virtual_keyboard@kaspersky.com [2013-02-06]
FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\content_blocker@kaspersky.com
FF Extension: Content Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\content_blocker@kaspersky.com [2013-02-06]
FF StartMenuInternet: FIREFOX.EXE - firefox.exe
Chrome:
=======
CHR RestoreOnStartup: "hxxp://www.google.de/"
CHR Extension: (Google Wallet) - C:\Users\Msi\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1 [2014-01-08]
CHR HKLM-x32\...\Chrome\Extension: [aaaaimdcedbpbcjjbbnfcbbjcngmomic] - C:\Users\Msi\AppData\Local\somotomoviestoolbar1\GC\toolbar.crx [2014-01-08]
CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\urladvisor.crx [2012-10-25]
CHR HKLM-x32\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\content_blocker_chrome.crx [2012-10-25]
CHR HKLM-x32\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\virtkbd.crx [2012-10-25]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Services (Whitelisted) =================
R2 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe [356128 2013-10-09] (Kaspersky Lab ZAO)
R2 Lexware_Update_Service; C:\Program Files (x86)\Lexware\Update Service\Hmg.InstallationService.Service.exe [49664 2013-10-08] (Haufe-Lexware GmbH & Co. KG)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2782552 2010-03-06] (Symantec Corporation)
R2 OberonGameConsoleService; C:\Program Files (x86)\MSI Game Corner\Game Console\OberonGameConsoleService.exe [44432 2010-01-27] ()
S4 aspnet_state; %SystemRoot%\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [x]
==================== Drivers (Whitelisted) ====================
S3 ArcSoftKsUFilter; C:\Windows\System32\DRIVERS\ArcSoftKsUFilter.sys [19968 2009-05-26] (ArcSoft, Inc.)
S3 EUCR; C:\Windows\system32\DRIVERS\EUCR6SK.SYS [87888 2009-12-04] (ENE Technology Inc.)
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458336 2013-12-10] (Kaspersky Lab ZAO)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [626272 2013-10-09] (Kaspersky Lab ZAO)
R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [29792 2013-12-10] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29280 2013-10-09] (Kaspersky Lab ZAO)
R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29280 2013-10-09] (Kaspersky Lab ZAO)
R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [54368 2013-06-19] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [178448 2013-04-23] (Kaspersky Lab ZAO)
R3 MBAMProtector; C:\windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
S3 smserial; C:\Windows\System32\DRIVERS\SmSerl64.sys [1227776 2009-06-10] (Motorola Inc.)
U5 klflt; C:\Windows\System32\Drivers\klflt.sys [90208 2013-04-23] (Kaspersky Lab ZAO)
S3 MGHwCtrl; \??\C:\Program Files\msi\msi Software Install\MGHwCtrl.sys [x]
S4 nvlddmkm; system32\DRIVERS\nvlddmkm.sys [x]
S4 nvpciflt; \SystemRoot\system32\DRIVERS\nvpciflt.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-01-12 10:05 - 2014-01-12 10:05 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2014-01-11 20:49 - 2012-07-25 12:03 - 00016896 _____ C:\windows\system32\sasnative64.exe
2014-01-11 20:40 - 2014-01-11 20:43 - 00000128 _____ C:\windows\wininit.ini
2014-01-11 19:34 - 2014-01-12 09:43 - 00000284 _____ C:\windows\Tasks\Digital Sites.job
2014-01-11 19:34 - 2014-01-11 21:32 - 00000000 ____D C:\Users\Msi\AppData\Roaming\DigitalSites
2014-01-11 19:34 - 2014-01-11 20:43 - 00003218 _____ C:\windows\System32\Tasks\Digital Sites
2014-01-11 19:34 - 2014-01-11 20:34 - 00000150 _____ C:\Users\Msi\AppData\Roaming\WB.CFG
2014-01-11 19:34 - 2014-01-11 19:34 - 00000005 _____ C:\Users\Msi\AppData\Roaming\WBPU-TTL.DAT
2014-01-11 19:31 - 2014-01-11 19:31 - 00000240 _____ C:\Users\Msi\Downloads\defogger_enable.log
2014-01-11 18:43 - 2014-01-11 18:43 - 00448512 _____ (OldTimer Tools) C:\Users\Msi\Downloads\TFC.exe
2014-01-11 18:35 - 2014-01-12 10:05 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2014-01-11 18:27 - 2014-01-11 18:29 - 00000000 ____D C:\Program Files\Zune
2014-01-11 18:27 - 2014-01-11 18:28 - 00915368 _____ (Oracle Corporation) C:\Users\Msi\Downloads\chromeinstall-7u45.exe
2014-01-11 18:27 - 2014-01-11 18:27 - 00000937 _____ C:\Users\Public\Desktop\Zune.lnk
2014-01-11 18:26 - 2009-09-11 07:22 - 00758272 _____ (Microsoft Corporation) C:\windows\system32\PortableDeviceApi.dll
2014-01-11 18:26 - 2009-09-11 06:54 - 00547840 _____ (Microsoft Corporation) C:\windows\SysWOW64\PortableDeviceApi.dll
2014-01-10 17:14 - 2014-01-11 19:09 - 00000000 ____D C:\Users\Msi\Downloads\FRST-OlderVersion
2014-01-10 17:10 - 2014-01-10 17:10 - 00987410 _____ C:\Users\Msi\Downloads\SecurityCheck.exe
2014-01-10 12:58 - 2014-01-10 12:58 - 02347384 _____ (ESET) C:\Users\Msi\Downloads\esetsmartinstaller_enu (1).exe
2014-01-10 12:57 - 2014-01-10 12:58 - 01612795 _____ C:\Users\Msi\Downloads\esetsmartinstaller_enu.exe
2014-01-10 12:52 - 2014-01-10 12:52 - 00406264 _____ (Bleeping Computer, LLC) C:\Users\Msi\Downloads\sc-cleaner (1).exe
2014-01-10 12:47 - 2014-01-10 12:52 - 00001756 _____ C:\sc-cleaner.txt
2014-01-10 12:47 - 2014-01-10 12:47 - 00406264 _____ (Bleeping Computer, LLC) C:\Users\Msi\Downloads\sc-cleaner.exe
2014-01-10 12:37 - 2014-01-10 12:37 - 00000000 ____D C:\Users\Msi\AppData\Local\Haufe-Lexware_GmbH_&_Co._
2014-01-09 14:40 - 2014-01-09 14:42 - 55795737 _____ C:\Users\Msi\Desktop\LFO1802_140109_144055.zip
2014-01-08 21:18 - 2014-01-08 21:18 - 00377856 _____ C:\Users\Msi\Downloads\hdxldfvk.exe
2014-01-08 21:16 - 2014-01-10 17:18 - 00030997 _____ C:\Users\Msi\Downloads\Addition.txt
2014-01-08 21:15 - 2014-01-12 10:02 - 00000000 ____D C:\FRST
2014-01-08 21:15 - 2014-01-10 17:18 - 00092281 _____ C:\Users\Msi\Downloads\FRST.txt
2014-01-08 21:11 - 2014-01-08 21:13 - 00000468 _____ C:\Users\Msi\Downloads\defogger_disable.log
2014-01-08 21:10 - 2014-01-08 21:10 - 00050477 _____ C:\Users\Msi\Downloads\Defogger.exe
2014-01-08 20:39 - 2014-01-12 09:47 - 00000000 ____D C:\AdwCleaner
2014-01-08 20:39 - 2014-01-08 20:40 - 55797027 _____ C:\Users\Msi\Desktop\LFO1801_140108_203928.zip
2014-01-08 20:38 - 2014-01-08 20:38 - 01233962 _____ C:\Users\Msi\Downloads\adwcleaner.exe
2014-01-08 20:09 - 2014-01-08 20:09 - 00001123 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-01-08 20:09 - 2014-01-08 20:09 - 00000000 ____D C:\Users\Msi\AppData\Roaming\Malwarebytes
2014-01-08 20:09 - 2014-01-08 20:09 - 00000000 ____D C:\ProgramData\Malwarebytes
2014-01-08 20:09 - 2014-01-08 20:09 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-08 20:09 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbam.sys
2014-01-08 20:08 - 2014-01-08 20:08 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Msi\Downloads\mbam-setup-1.75.0.1300.exe
2014-01-08 15:35 - 2014-01-08 15:35 - 00001579 _____ C:\Users\Msi\Desktop\E-mail.lnk
2014-01-08 15:13 - 2014-01-08 15:16 - 00000000 ____D C:\Users\Msi\AppData\Roaming\Windows Live Writer
2014-01-08 15:13 - 2014-01-08 15:13 - 00000000 ____D C:\Users\Msi\AppData\Local\Windows Live Writer
2014-01-08 15:10 - 2014-01-08 15:10 - 00000020 _____ C:\windows\@õÛ
2014-01-08 15:06 - 2014-01-08 15:06 - 00000000 ____D C:\5a6913622ce208af00d2f2
2014-01-08 15:04 - 2014-01-08 20:27 - 00000000 ____D C:\ProgramData\Updater
2014-01-08 15:04 - 2014-01-08 20:27 - 00000000 ____D C:\ProgramData\RHelpers
2014-01-08 14:42 - 2014-01-08 14:53 - 00000306 __RSH C:\Users\Msi\ntuser.pol
2014-01-08 14:41 - 2014-01-11 21:00 - 00000000 ____D C:\Users\Msi\AppData\Local\genienext
2014-01-08 14:41 - 2014-01-11 21:00 - 00000000 ____D C:\Users\Msi\AppData\Local\cache
2014-01-08 14:41 - 2014-01-08 14:41 - 00000000 ____D C:\Users\Msi\.android
2014-01-08 14:41 - 2014-01-08 14:41 - 00000000 _____ C:\Users\Msi\daemonprocess.txt
2014-01-08 14:35 - 2014-01-08 15:09 - 00000000 ____D C:\Program Files\Windows Live
2014-01-08 14:32 - 2014-01-08 14:32 - 00000358 _____ C:\windows\DirectX.log
2014-01-08 14:31 - 2010-08-11 06:19 - 03860992 _____ (Microsoft Corporation) C:\windows\system32\UIRibbon.dll
2014-01-08 14:31 - 2010-08-11 06:13 - 01164800 _____ (Microsoft Corporation) C:\windows\system32\UIRibbonRes.dll
2014-01-08 14:31 - 2010-08-11 05:44 - 02983424 _____ (Microsoft Corporation) C:\windows\SysWOW64\UIRibbon.dll
2014-01-08 14:31 - 2010-08-11 05:35 - 01164800 _____ (Microsoft Corporation) C:\windows\SysWOW64\UIRibbonRes.dll
2014-01-08 14:30 - 2010-05-23 11:15 - 01619456 _____ (Microsoft Corporation) C:\windows\SysWOW64\WMVDECOD.DLL
2014-01-08 14:30 - 2010-05-23 11:11 - 03181568 _____ (Microsoft Corporation) C:\windows\SysWOW64\mf.dll
2014-01-08 14:30 - 2010-05-23 11:11 - 00196608 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfreadwrite.dll
2014-01-08 14:30 - 2010-05-23 09:37 - 01888256 _____ (Microsoft Corporation) C:\windows\system32\WMVDECOD.DLL
2014-01-08 14:30 - 2010-05-23 09:35 - 04068864 _____ (Microsoft Corporation) C:\windows\system32\mf.dll
2014-01-08 14:30 - 2010-05-23 09:35 - 00257024 _____ (Microsoft Corporation) C:\windows\system32\mfreadwrite.dll
2014-01-08 14:30 - 2010-05-23 09:35 - 00206848 _____ (Microsoft Corporation) C:\windows\system32\mfps.dll
2014-01-08 14:25 - 2014-01-08 15:12 - 00000000 ____D C:\Users\Msi\AppData\Local\Windows Live
2013-12-28 15:50 - 2013-12-28 15:51 - 55796428 _____ C:\Users\Msi\Desktop\LFO1801_131228_155029.zip
2013-12-28 15:12 - 2013-12-28 15:12 - 00000000 ____D C:\Users\Msi\AppData\Roaming\DataDesign
2013-12-27 13:27 - 2013-12-27 13:28 - 55787441 _____ C:\Users\Msi\Desktop\(SYS)LFO1801_131227_132627.zip
2013-12-21 13:47 - 2013-12-21 13:47 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-12-21 12:20 - 2014-01-10 12:47 - 00002783 _____ C:\Users\Public\Desktop\Lexware financial office.lnk
2013-12-21 11:12 - 2013-12-21 11:12 - 00000000 ____D C:\Beitragsabrechnung
2013-12-21 10:40 - 2013-12-21 10:40 - 00000000 ____D C:\Stundenjournal
2013-12-21 10:40 - 2013-12-21 10:40 - 00000000 ____D C:\Lohnkonto
2013-12-21 10:40 - 2013-12-21 10:40 - 00000000 ____D C:\Lohnjournal Jahresbericht
2013-12-21 10:40 - 2013-12-21 10:40 - 00000000 ____D C:\Lohnabrechnung
2013-12-13 16:03 - 2013-12-13 16:03 - 00051752 _____ (Haufe-Lexware GmbH & Co. KG) C:\windows\SysWOW64\FKStampPainter20.dll
==================== One Month Modified Files and Folders =======
2014-01-12 10:05 - 2014-01-12 10:05 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2014-01-12 10:05 - 2014-01-11 18:35 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2014-01-12 10:05 - 2010-07-21 23:12 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2014-01-12 10:03 - 2013-02-06 14:34 - 01691843 _____ C:\windows\WindowsUpdate.log
2014-01-12 10:02 - 2014-01-08 21:15 - 00000000 ____D C:\FRST
2014-01-12 10:02 - 2013-02-06 16:43 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2014-01-12 09:57 - 2013-02-10 14:06 - 00001100 _____ C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-01-12 09:57 - 2013-02-06 18:02 - 00042770 _____ C:\windows\setupact.log
2014-01-12 09:57 - 2009-07-14 06:08 - 00000006 ____H C:\windows\Tasks\SA.DAT
2014-01-12 09:52 - 2013-02-06 15:47 - 00000884 _____ C:\windows\Tasks\Adobe Flash Player Updater.job
2014-01-12 09:47 - 2014-01-08 20:39 - 00000000 ____D C:\AdwCleaner
2014-01-12 09:47 - 2013-02-16 19:52 - 00000000 ____D C:\Users\Msi\AppData\Roaming\SoftGrid Client
2014-01-12 09:43 - 2014-01-11 19:34 - 00000284 _____ C:\windows\Tasks\Digital Sites.job
2014-01-12 09:38 - 2013-02-10 14:06 - 00001104 _____ C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-01-12 09:19 - 2009-07-14 05:45 - 00017376 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-01-12 09:19 - 2009-07-14 05:45 - 00017376 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-01-12 09:16 - 2013-02-08 16:12 - 00003918 _____ C:\windows\System32\Tasks\User_Feed_Synchronization-{650751A0-29F4-4199-810B-E2EAD6E5ACC8}
2014-01-12 09:10 - 2013-02-10 18:18 - 00068254 _____ C:\windows\PFRO.log
2014-01-11 21:40 - 2013-02-06 14:55 - 00000000 ___RD C:\Users\Msi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-01-11 21:32 - 2014-01-11 19:34 - 00000000 ____D C:\Users\Msi\AppData\Roaming\DigitalSites
2014-01-11 21:00 - 2014-01-08 14:41 - 00000000 ____D C:\Users\Msi\AppData\Local\genienext
2014-01-11 21:00 - 2014-01-08 14:41 - 00000000 ____D C:\Users\Msi\AppData\Local\cache
2014-01-11 20:43 - 2014-01-11 20:40 - 00000128 _____ C:\windows\wininit.ini
2014-01-11 20:43 - 2014-01-11 19:34 - 00003218 _____ C:\windows\System32\Tasks\Digital Sites
2014-01-11 20:34 - 2014-01-11 19:34 - 00000150 _____ C:\Users\Msi\AppData\Roaming\WB.CFG
2014-01-11 19:34 - 2014-01-11 19:34 - 00000005 _____ C:\Users\Msi\AppData\Roaming\WBPU-TTL.DAT
2014-01-11 19:31 - 2014-01-11 19:31 - 00000240 _____ C:\Users\Msi\Downloads\defogger_enable.log
2014-01-11 19:31 - 2013-02-06 14:36 - 00000000 ____D C:\Users\Msi
2014-01-11 19:09 - 2014-01-10 17:14 - 00000000 ____D C:\Users\Msi\Downloads\FRST-OlderVersion
2014-01-11 18:43 - 2014-01-11 18:43 - 00448512 _____ (OldTimer Tools) C:\Users\Msi\Downloads\TFC.exe
2014-01-11 18:34 - 2010-07-21 23:07 - 00000000 ____D C:\Program Files (x86)\Intel
2014-01-11 18:29 - 2014-01-11 18:27 - 00000000 ____D C:\Program Files\Zune
2014-01-11 18:28 - 2014-01-11 18:27 - 00915368 _____ (Oracle Corporation) C:\Users\Msi\Downloads\chromeinstall-7u45.exe
2014-01-11 18:27 - 2014-01-11 18:27 - 00000937 _____ C:\Users\Public\Desktop\Zune.lnk
2014-01-10 17:18 - 2014-01-08 21:16 - 00030997 _____ C:\Users\Msi\Downloads\Addition.txt
2014-01-10 17:18 - 2014-01-08 21:15 - 00092281 _____ C:\Users\Msi\Downloads\FRST.txt
2014-01-10 17:10 - 2014-01-10 17:10 - 00987410 _____ C:\Users\Msi\Downloads\SecurityCheck.exe
2014-01-10 12:58 - 2014-01-10 12:58 - 02347384 _____ (ESET) C:\Users\Msi\Downloads\esetsmartinstaller_enu (1).exe
2014-01-10 12:58 - 2014-01-10 12:57 - 01612795 _____ C:\Users\Msi\Downloads\esetsmartinstaller_enu.exe
2014-01-10 12:52 - 2014-01-10 12:52 - 00406264 _____ (Bleeping Computer, LLC) C:\Users\Msi\Downloads\sc-cleaner (1).exe
2014-01-10 12:52 - 2014-01-10 12:47 - 00001756 _____ C:\sc-cleaner.txt
2014-01-10 12:47 - 2014-01-10 12:47 - 00406264 _____ (Bleeping Computer, LLC) C:\Users\Msi\Downloads\sc-cleaner.exe
2014-01-10 12:47 - 2013-12-21 12:20 - 00002783 _____ C:\Users\Public\Desktop\Lexware financial office.lnk
2014-01-10 12:44 - 2013-02-06 18:38 - 00000000 ____D C:\ProgramData\Lexware
2014-01-10 12:43 - 2010-07-21 21:44 - 00709838 _____ C:\windows\system32\perfh007.dat
2014-01-10 12:43 - 2010-07-21 21:44 - 00153984 _____ C:\windows\system32\perfc007.dat
2014-01-10 12:43 - 2009-07-14 06:13 - 01648768 _____ C:\windows\system32\PerfStringBackup.INI
2014-01-10 12:37 - 2014-01-10 12:37 - 00000000 ____D C:\Users\Msi\AppData\Local\Haufe-Lexware_GmbH_&_Co._
2014-01-09 14:42 - 2014-01-09 14:40 - 55795737 _____ C:\Users\Msi\Desktop\LFO1802_140109_144055.zip
2014-01-08 21:18 - 2014-01-08 21:18 - 00377856 _____ C:\Users\Msi\Downloads\hdxldfvk.exe
2014-01-08 21:13 - 2014-01-08 21:11 - 00000468 _____ C:\Users\Msi\Downloads\defogger_disable.log
2014-01-08 21:10 - 2014-01-08 21:10 - 00050477 _____ C:\Users\Msi\Downloads\Defogger.exe
2014-01-08 20:43 - 2013-10-23 13:59 - 00000000 ____D C:\Users\Msi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FLV Player
2014-01-08 20:43 - 2013-02-10 14:09 - 00001292 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2014-01-08 20:43 - 2013-02-06 15:27 - 00001063 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-01-08 20:43 - 2013-02-06 14:55 - 00001176 _____ C:\Users\Msi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-01-08 20:43 - 2013-02-06 14:55 - 00000989 _____ C:\Users\Msi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2014-01-08 20:40 - 2014-01-08 20:39 - 55797027 _____ C:\Users\Msi\Desktop\LFO1801_140108_203928.zip
2014-01-08 20:38 - 2014-01-08 20:38 - 01233962 _____ C:\Users\Msi\Downloads\adwcleaner.exe
2014-01-08 20:27 - 2014-01-08 15:04 - 00000000 ____D C:\ProgramData\Updater
2014-01-08 20:27 - 2014-01-08 15:04 - 00000000 ____D C:\ProgramData\RHelpers
2014-01-08 20:09 - 2014-01-08 20:09 - 00001123 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-01-08 20:09 - 2014-01-08 20:09 - 00000000 ____D C:\Users\Msi\AppData\Roaming\Malwarebytes
2014-01-08 20:09 - 2014-01-08 20:09 - 00000000 ____D C:\ProgramData\Malwarebytes
2014-01-08 20:09 - 2014-01-08 20:09 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-08 20:08 - 2014-01-08 20:08 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Msi\Downloads\mbam-setup-1.75.0.1300.exe
2014-01-08 16:15 - 2013-07-08 21:03 - 00000000 ____D C:\Program Files (x86)\ElsterFormular
2014-01-08 15:35 - 2014-01-08 15:35 - 00001579 _____ C:\Users\Msi\Desktop\E-mail.lnk
2014-01-08 15:16 - 2014-01-08 15:13 - 00000000 ____D C:\Users\Msi\AppData\Roaming\Windows Live Writer
2014-01-08 15:13 - 2014-01-08 15:13 - 00000000 ____D C:\Users\Msi\AppData\Local\Windows Live Writer
2014-01-08 15:12 - 2014-01-08 14:25 - 00000000 ____D C:\Users\Msi\AppData\Local\Windows Live
2014-01-08 15:10 - 2014-01-08 15:10 - 00000020 _____ C:\windows\@õÛ
2014-01-08 15:10 - 2013-02-06 14:49 - 00000000 ____D C:\Program Files (x86)\Windows Live
2014-01-08 15:09 - 2014-01-08 14:35 - 00000000 ____D C:\Program Files\Windows Live
2014-01-08 15:06 - 2014-01-08 15:06 - 00000000 ____D C:\5a6913622ce208af00d2f2
2014-01-08 14:53 - 2014-01-08 14:42 - 00000306 __RSH C:\Users\Msi\ntuser.pol
2014-01-08 14:42 - 2009-07-14 04:20 - 00000000 ___HD C:\windows\system32\GroupPolicy
2014-01-08 14:42 - 2009-07-14 04:20 - 00000000 ____D C:\windows\SysWOW64\GroupPolicy
2014-01-08 14:41 - 2014-01-08 14:41 - 00000000 ____D C:\Users\Msi\.android
2014-01-08 14:41 - 2014-01-08 14:41 - 00000000 _____ C:\Users\Msi\daemonprocess.txt
2014-01-08 14:34 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2014-01-08 14:32 - 2014-01-08 14:32 - 00000358 _____ C:\windows\DirectX.log
2014-01-02 22:16 - 2009-07-14 06:08 - 00032640 _____ C:\windows\Tasks\SCHEDLGU.TXT
2013-12-28 15:51 - 2013-12-28 15:50 - 55796428 _____ C:\Users\Msi\Desktop\LFO1801_131228_155029.zip
2013-12-28 15:12 - 2013-12-28 15:12 - 00000000 ____D C:\Users\Msi\AppData\Roaming\DataDesign
2013-12-27 17:46 - 2013-03-20 17:12 - 00004096 _____ C:\Users\Public\Documents\000016E5.LCS
2013-12-27 13:28 - 2013-12-27 13:27 - 55787441 _____ C:\Users\Msi\Desktop\(SYS)LFO1801_131227_132627.zip
2013-12-22 17:05 - 2013-02-06 15:27 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-12-21 13:47 - 2013-12-21 13:47 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-12-21 12:16 - 2013-02-20 08:51 - 00000000 ____D C:\Program Files (x86)\svnet
2013-12-21 11:12 - 2013-12-21 11:12 - 00000000 ____D C:\Beitragsabrechnung
2013-12-21 10:40 - 2013-12-21 10:40 - 00000000 ____D C:\Stundenjournal
2013-12-21 10:40 - 2013-12-21 10:40 - 00000000 ____D C:\Lohnkonto
2013-12-21 10:40 - 2013-12-21 10:40 - 00000000 ____D C:\Lohnjournal Jahresbericht
2013-12-21 10:40 - 2013-12-21 10:40 - 00000000 ____D C:\Lohnabrechnung
2013-12-15 14:48 - 2013-08-18 22:54 - 00000000 ____D C:\windows\system32\MRT
2013-12-15 14:45 - 2013-02-10 18:25 - 90708896 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2013-12-14 15:01 - 2009-07-14 04:20 - 00000000 ____D C:\windows\system32\NDF
2013-12-13 16:03 - 2013-12-13 16:03 - 00051752 _____ (Haufe-Lexware GmbH & Co. KG) C:\windows\SysWOW64\FKStampPainter20.dll
Files to move or delete:
====================
C:\Users\Msi\setup.exe
Some content of TEMP:
====================
C:\Users\Msi\AppData\Local\Temp\42406uninstall.exe
C:\Users\Msi\AppData\Local\Temp\497.0314682990772_Update.exe
C:\Users\Msi\AppData\Local\Temp\905.7104050108132_Update.exe
C:\Users\Msi\AppData\Local\Temp\BackupSetup.exe
C:\Users\Msi\AppData\Local\Temp\Quarantine.exe
C:\Users\Msi\AppData\Local\Temp\Sqlite3.dll
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-01-09 14:22
==================== End Of Log ============================ --- --- ---
--- --- ---
Und jetzt?
lg |