ando2312 | 28.04.2014 10:17 | Vielen Dank für deine rasche Antwort. Bitte entschuldige, dass es bei mir so lange gedauert hat. Dieses Eset hat sehr lange gedauert !
nun die posts ! Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlauf Datum: 27.04.2014
Suchlauf-Zeit: 23:25:35
Logdatei: mbam.txt
Administrator: Ja
Version: 2.00.1.1004
Malware Datenbank: v2014.04.27.05
Rootkit Datenbank: v2014.03.27.01
Lizenz: Testversion
Malware Schutz: Aktiviert
Bösartiger Webseiten Schutz: Aktiviert
Chameleon: Deaktiviert
Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: Ando
Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 257952
Verstrichene Zeit: 30 Min, 0 Sek
Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Aktiviert
Shuriken: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(No malicious items detected)
Module: 0
(No malicious items detected)
Registrierungsschlüssel: 20
PUP.Optional.Linkey.A, HKLM\SOFTWARE\CLASSES\APPID\{6A7CD9EC-D8BD-4340-BCD0-77C09A282921}, In Quarantäne, [47b90ef2ca3654acf8b58a90ac56aa56],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\{6A7CD9EC-D8BD-4340-BCD0-77C09A282921}, In Quarantäne, [47b90ef2ca3654acf8b58a90ac56aa56],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\CLASSES\CLSID\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}, In Quarantäne, [0000f40c07f905fbe2d3e634689a40c0],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\CLASSES\Linkey.Linkey, In Quarantäne, [0000f40c07f905fbe2d3e634689a40c0],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Linkey.Linkey, In Quarantäne, [0000f40c07f905fbe2d3e634689a40c0],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}, In Quarantäne, [0000f40c07f905fbe2d3e634689a40c0],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}, In Quarantäne, [0000f40c07f905fbe2d3e634689a40c0],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}, In Quarantäne, [0000f40c07f905fbe2d3e634689a40c0],
PUP.Optional.Linkey.A, HKU\S-1-5-21-127000325-1629421104-2114465425-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}, In Quarantäne, [0000f40c07f905fbe2d3e634689a40c0],
PUP.Optional.Linkey.A, HKU\S-1-5-21-127000325-1629421104-2114465425-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}, In Quarantäne, [0000f40c07f905fbe2d3e634689a40c0],
PUP.Optional.ResultsAlpha.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\ResultsAlpha, In Quarantäne, [9d63c53b50b0ba46c6f8efbcd231c43c],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\LINKEY, In Quarantäne, [b34d936dc43cf80847df55249171da26],
PUP.Optional.FindRight.A, HKLM\SOFTWARE\WOW6432NODE\FindRight, In Quarantäne, [c53b11ef2bd56e922cf1a1e1a35feb15],
PUP.Optional.ResultsAlpha.A, HKLM\SOFTWARE\WOW6432NODE\ResultsAlpha, In Quarantäne, [4cb4cc3410f0ca36338c7437f310b54b],
PUP.Optional.Linkey.A, HKLM\SOFTWARE\WOW6432NODE\LINKEY, In Quarantäne, [c33d40c02ad64fb1a5813f3a23dffe02],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\WOW6432NODE\SYSTEMK\General, In Quarantäne, [659b4cb4c63a6799079e99dfd1310af6],
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\WOW6432NODE\SYSTEMK, In Quarantäne, [9a668878e02059a7287e7008ec1633cd],
PUP.Optional.PlusHD.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Plus-HD-9.1, In Quarantäne, [44bc4eb2966a2ad630feb5c42fd35aa6],
PUP.Optional.FindRight.A, HKU\S-1-5-21-127000325-1629421104-2114465425-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\FindRight, In Quarantäne, [c33d9a664bb56c9421fd31510cf6768a],
PUP.Optional.ResultsAlpha.A, HKU\S-1-5-21-127000325-1629421104-2114465425-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\ResultsAlpha, In Quarantäne, [d52bce322fd1c53b6b55a5060cf7e41c],
Registrierungswerte: 3
PUP.Optional.Linkey.A, HKLM\SOFTWARE\LINKEY|ie_jsurl, hxxp://app.linkeyproject.com/popup/IE/background.js, In Quarantäne, [b34d936dc43cf80847df55249171da26]
PUP.Optional.Linkey.A, HKLM\SOFTWARE\WOW6432NODE\LINKEY|ie_jsurl, hxxp://app.linkeyproject.com/popup/IE/background.js, In Quarantäne, [c33d40c02ad64fb1a5813f3a23dffe02]
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\WOW6432NODE\SYSTEMK|browser, ie ff cr, In Quarantäne, [9a668878e02059a7287e7008ec1633cd]
Registrierungsdaten: 0
(No malicious items detected)
Ordner: 2
PUP.Optional.ResultsAlpha.A, C:\Program Files (x86)\ResultsAlpha, In Quarantäne, [9d63c53b50b0ba46c6f8efbcd231c43c],
PUP.Optional.PlusHD.A, C:\Program Files (x86)\Plus-HD-9.1, In Quarantäne, [788838c80df398686878c1a9649ebe42],
Dateien: 30
PUP.Optional.CrossRider.A, C:\Users\Ando\AppData\Local\Temp\~nsu.tmp\Au_.exe, In Quarantäne, [6c940df345bb7a8639acd669e51b50b0],
PUP.Optional.OptimumInstaller.A, C:\Users\Ando\Downloads\Player-Chrome (1).exe, In Quarantäne, [31cff20e728e7e82f0f06bde16eb9967],
PUP.Optional.OptimumInstaller.A, C:\Users\Ando\Downloads\Player-Chrome (2).exe, In Quarantäne, [5ba5f60acf3121dfb0300544de231ee2],
PUP.Optional.OutBrowse, C:\Users\Ando\Downloads\setup.exe, In Quarantäne, [cc3450b0f30d17e99b7202c34cb754ac],
PUP.Optional.Softonic.A, C:\Users\Ando\Downloads\SoftonicDownloader_fuer_freemind.exe, In Quarantäne, [956bc43c4eb2cd3354e34dcf21e0ce32],
PUP.Optional.Softonic.A, C:\Users\Ando\Downloads\SoftonicDownloader_fuer_jlcs-internet-tv.exe, In Quarantäne, [f40c26da24dc07f9082fc25a47ba38c8],
PUP.Optional.Softonic.A, C:\Users\Ando\Downloads\SoftonicDownloader_fuer_tvuplayer.exe, In Quarantäne, [51af4fb11ce48c740f28aa72e71a619f],
PUP.Optional.Spigot.A, C:\Users\Ando\Downloads\SopCast.zip, In Quarantäne, [629e48b86d93d92781625ec251b040c0],
Trojan.ELEX, C:\Users\Ando\Downloads\yet_another_cleaner_mar.exe, In Quarantäne, [ca365ba50df34eb24bcd50f45da47d83],
PUP.Optional.Spigot.A, C:\Users\Ando\Downloads\YTD471Setup.exe, In Quarantäne, [60a0dc246b957987a9d4e5415aa6bb45],
PUP.Optional.OptimumInstaller.A, C:\Users\Ando\Downloads\Player-Chrome (3).exe, In Quarantäne, [8b759d632ed20af6518f2128ca374db3],
PUP.Optional.Amonetize.A, C:\Users\Ando\Downloads\FlashPlayer__4003_i593433328_il127.exe, In Quarantäne, [916f08f8f50b79871486bc85c13f768a],
PUP.Optional.OptimumInstaller.A, C:\Users\Ando\Downloads\Player-Chrome.exe, In Quarantäne, [e61a0cf418e8f90733ad5ced18e9926e],
PUP.Optional.OutBrowse, C:\Users\Ando\Downloads\setup (2).exe, In Quarantäne, [8e728b7546bae719e02d8441bc47827e],
PUP.Optional.OutBrowse, C:\Users\Ando\Downloads\setup (3).exe, In Quarantäne, [40c046badd2338c825d97ff1c33e738d],
PUP.Optional.OutBrowse, C:\Users\Ando\Downloads\setup (4).exe, In Quarantäne, [34cc09f748b859a7ec126e029869d62a],
PUP.Optional.OutBrowse, C:\Users\Ando\Downloads\setup (5).exe, In Quarantäne, [cf3138c801ffbf4152ace78925dc54ac],
PUP.Optional.OutBrowse, C:\Users\Ando\Downloads\setup (6).exe, In Quarantäne, [6c9444bcf20ef40ce41a4d23778aef11],
PUP.Optional.OutBrowse, C:\Users\Ando\Downloads\setup (7).exe, In Quarantäne, [d42ce020f10fdb2558a699d7639e48b8],
PUP.Optional.Linkey.A, C:\Users\Ando\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Linkey.lnk, In Quarantäne, [cb3568981ae6f40c8bba1661e12112ee],
PUP.Optional.ResultsAlpha.A, C:\Program Files (x86)\ResultsAlpha\ResultsAlpha.ico, In Quarantäne, [9d63c53b50b0ba46c6f8efbcd231c43c],
PUP.Optional.ResultsAlpha.A, C:\Program Files (x86)\ResultsAlpha\7za.exe, In Quarantäne, [9d63c53b50b0ba46c6f8efbcd231c43c],
PUP.Optional.ResultsAlpha.A, C:\Program Files (x86)\ResultsAlpha\ResultsAlpha.FirstRun.exe, In Quarantäne, [9d63c53b50b0ba46c6f8efbcd231c43c],
PUP.Optional.ResultsAlpha.A, C:\Program Files (x86)\ResultsAlpha\ResultsAlphaUninstall.exe, In Quarantäne, [9d63c53b50b0ba46c6f8efbcd231c43c],
PUP.Optional.ResultsAlpha.A, C:\Program Files (x86)\ResultsAlpha\updateResultsAlpha.exe, In Quarantäne, [9d63c53b50b0ba46c6f8efbcd231c43c],
PUP.Optional.PlusHD.A, C:\Program Files (x86)\Plus-HD-9.1\Plus-HD-9.1-bho.dll, In Quarantäne, [788838c80df398686878c1a9649ebe42],
PUP.Optional.PlusHD.A, C:\Program Files (x86)\Plus-HD-9.1\Plus-HD-9.1-bho64.dll, In Quarantäne, [788838c80df398686878c1a9649ebe42],
PUP.Optional.DefaultSearch.A, C:\Users\Ando\AppData\Local\Google\Chrome\User Data\Default\Preferences, Gut: (), Schlecht: ( "startup_urls": [ "hxxp://www.default-search.net?sid=476&aid=122&itype=a&ver=12302&tm=297&src=hmp" ],), Ersetzt,[eb15867a7a8606fa70749dbfac58ba46]
PUP.Optional.DefaultSearch.A, C:\Users\Ando\AppData\Local\Google\Chrome\User Data\Default\Preferences, Gut: (), Schlecht: ( "homepage": "hxxp://www.default-search.net?sid=476&aid=122&itype=a&ver=12302&tm=297&src=hmp",), Ersetzt,[6f91ea16b14f0df3ce172537a2620ef2]
PUP.Optional.DefaultSearch.A, C:\Users\Ando\AppData\Local\Google\Chrome\User Data\Default\Preferences, Gut: (), Schlecht: ( "search_url": "hxxp://www.default-search.net/search?sid=476&aid=122&itype=a&ver=12302&tm=297&src=ds&p={searchTerms}",), Ersetzt,[2ad6659ba060a957db0b03597f855da3]
Physische Sektoren: 0
(No malicious items detected)
(end) Code:
# AdwCleaner v3.201 - Bericht erstellt am 27/04/2014 um 23:36:47
# Aktualisiert 22/04/2014 von Xplode
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits)
# Benutzername : Ando - ANDO-PC
# Gestartet von : C:\Users\Ando\Downloads\adwcleaner3201.exe
# Option : Löschen
***** [ Dienste ] *****
***** [ Dateien / Ordner ] *****
***** [ Verknüpfungen ] *****
***** [ Registrierungsdatenbank ] *****
***** [ Browser ] *****
-\\ Internet Explorer v11.0.9600.16521
-\\ Google Chrome v34.0.1847.131
[ Datei : C:\Users\Ando\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [8204 octets] - [16/03/2014 18:01:12]
AdwCleaner[R1].txt - [7419 octets] - [19/04/2014 12:41:45]
AdwCleaner[R2].txt - [8579 octets] - [23/04/2014 12:57:30]
AdwCleaner[R3].txt - [8698 octets] - [23/04/2014 12:58:38]
AdwCleaner[R4].txt - [1278 octets] - [27/04/2014 23:35:28]
AdwCleaner[S0].txt - [6501 octets] - [16/03/2014 18:02:32]
AdwCleaner[S1].txt - [6988 octets] - [19/04/2014 13:18:18]
AdwCleaner[S2].txt - [316 octets] - [23/04/2014 12:58:19]
AdwCleaner[S3].txt - [8543 octets] - [23/04/2014 12:59:58]
AdwCleaner[S4].txt - [1200 octets] - [27/04/2014 23:36:47]
########## EOF - C:\AdwCleaner\AdwCleaner[S4].txt - [1260 octets] ########## Code:
ESETSmartInstaller@High as downloader log:
all ok
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6920
# api_version=3.0.2
# EOSSerial=3591b8fbd2944745a22f0554051bceff
# engine=18051
# end=stopped
# remove_checked=false
# archives_checked=true
# unwanted_checked=false
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2014-04-28 09:05:34
# local_time=2014-04-28 11:05:34 (+0100, Mitteleuropäische Sommerzeit)
# country="Germany"
# lang=1031
# osver=6.1.7601 NT Service Pack 1
# compatibility_mode=5893 16776573 100 94 44035 150305784 0 0
# scanned=218353
# found=0
# cleaned=0
# scan_time=40123
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-04-2014 01
Ran by Ando (administrator) on ANDO-PC on 28-04-2014 11:11:31
Running from C:\Users\Ando\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Logitech Inc.) C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Hewlett-Packard Company) c:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
() C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Remote Solution\HP_Remote_Solution.exe
(Hewlett-Packard) C:\Program Files (x86)\hp\HP Software Update\hpwuschd2.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
(CyberLink) c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avpui.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\wmi64.exe
(Farbar) C:\Users\Ando\Downloads\FRST64 (1).exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [NvCplDaemon] => C:\Windows\system32\NvCpl.dll [16335464 2009-09-29] (NVIDIA Corporation)
HKLM\...\Run: [SmartMenu] => C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe [610360 2009-09-14] ()
HKLM\...\Run: [PC-Doctor for Windows localizer] => C:\Program Files\PC-Doctor for Windows\localizer.exe [95728 2009-09-17] (PC-Doctor, Inc.)
HKLM-x32\...\Run: [hpsysdrv] => c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe [62768 2008-11-20] (Hewlett-Packard)
HKLM-x32\...\Run: [HP Remote Solution] => C:\Program Files (x86)\Hewlett-Packard\HP Remote Solution\HP_Remote_Solution.exe [656896 2009-08-25] (Hewlett-Packard)
HKLM-x32\...\Run: [HP Software Update] => c:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [54576 2008-12-08] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [NortonOnlineBackupReminder] => C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe [600936 2009-06-29] (Symantec Corporation)
HKLM-x32\...\Run: [Easybits Recovery] => C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe [60464 2009-09-02] (EasyBits Software AS)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-12-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-02-21] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM\...\RunOnce: [NCPluginUpdater] - "C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe" Update [21720 2014-04-22] (Hewlett-Packard)
HKU\.DEFAULT\...\RunOnce: [SPReview] - C:\Windows\System32\SPReview\SPReview.exe [301568 2014-02-17] (Microsoft Corporation)
HKU\S-1-5-21-127000325-1629421104-2114465425-1001\...\Run: [HPADVISOR] => C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe [1685048 2009-09-29] (Hewlett-Packard)
HKU\S-1-5-21-127000325-1629421104-2114465425-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [20728992 2014-01-14] (Skype Technologies S.A.)
HKU\S-1-5-21-127000325-1629421104-2114465425-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [59720 2013-11-20] (Apple Inc.)
HKU\S-1-5-21-127000325-1629421104-2114465425-1001\...\Run: [DriverFinder] => C:\Program Files (x86)\DriverFinder\DriverFinder.exe
HKU\S-1-5-21-127000325-1629421104-2114465425-1001\...\Policies\system: [DisableLockWorkstation] 0
HKU\S-1-5-21-127000325-1629421104-2114465425-1001\...\Policies\system: [DisableChangePassword] 0
IFEO\bpsvc.exe: [Debugger] tasklist.exe
IFEO\browsersafeguard.exe: [Debugger] tasklist.exe
IFEO\DatamngrCoordinator.exe: [Debugger] tasklist.exe
IFEO\dprotectsvc.exe: [Debugger] tasklist.exe
IFEO\jumpflip: [Debugger] tasklist.exe
IFEO\protectedsearch.exe: [Debugger] tasklist.exe
IFEO\searchinstaller.exe: [Debugger] tasklist.exe
IFEO\searchprotection.exe: [Debugger] tasklist.exe
IFEO\searchprotector.exe: [Debugger] tasklist.exe
IFEO\searchsettings.exe: [Debugger] tasklist.exe
IFEO\searchsettings64.exe: [Debugger] tasklist.exe
IFEO\snapdo.exe: [Debugger] tasklist.exe
IFEO\stinst32.exe: [Debugger] tasklist.exe
IFEO\stinst64.exe: [Debugger] tasklist.exe
IFEO\umbrella.exe: [Debugger] tasklist.exe
IFEO\utiljumpflip.exe: [Debugger] tasklist.exe
IFEO\volaro: [Debugger] tasklist.exe
IFEO\vonteera: [Debugger] tasklist.exe
IFEO\websteroids.exe: [Debugger] tasklist.exe
IFEO\websteroidsservice.exe: [Debugger] tasklist.exe
Startup: C:\Users\Ando\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\EOS Utility.lnk
ShortcutTarget: EOS Utility.lnk -> C:\Program Files (x86)\Canon\EOS Utility\EOS Utility.exe (CANON INC.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.default-search.net?sid=476&aid=122&itype=n&ver=11471&tm=297&src=hmp
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPDSK/4
SearchScopes: HKLM - DefaultScope {0BCB98C4-05A3-4DA9-8C3E-467B71F921A1} URL = hxxp://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=dsites0202&cd=2XzuyEtN2Y1L1QzutDtDtBtAyDyE0F0AtCzyyEzzzzzz0F0BtN0D0Tzu0SyBzzyBtN1L2XzutBtFtCyBtFtDtFtCtN1L1CzutDtBtCtC1V1TtN1L1G1B1V1N2Y1L1Qzu2StA0DtB0F0Czz0CzztG0CyByB0CtGyEtD0ByCtG0F0D0AtDtGtAzyzztA0A0FtDyCyC0CtCtA2QtN1M1F1B2Z1V1N2Y1L1Qzu2StD0E0F0CyBtC0BtCtGtByCtA0BtGyD0FyDtCtGyCzz0BtAtGyEtByDtByD0F0D0FzzzztCyC2Q&cr=35811396&ir=
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM - {0BCB98C4-05A3-4DA9-8C3E-467B71F921A1} URL = hxxp://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=dsites0202&cd=2XzuyEtN2Y1L1QzutDtDtBtAyDyE0F0AtCzyyEzzzzzz0F0BtN0D0Tzu0SyBzzyBtN1L2XzutBtFtCyBtFtDtFtCtN1L1CzutDtBtCtC1V1TtN1L1G1B1V1N2Y1L1Qzu2StA0DtB0F0Czz0CzztG0CyByB0CtGyEtD0ByCtG0F0D0AtDtGtAzyzztA0A0FtDyCyC0CtCtA2QtN1M1F1B2Z1V1N2Y1L1Qzu2StD0E0F0CyBtC0BtCtGtByCtA0BtGyD0FyDtCtGyCzz0BtAtGyEtByDtByD0F0D0FzzzztCyC2Q&cr=35811396&ir=
SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2476} URL = hxxp://www.default-search.net/search?sid=476&aid=122&itype=a&ver=12302&tm=297&src=ds&p={searchTerms}
SearchScopes: HKLM-x32 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2476} URL = hxxp://www.default-search.net/search?sid=476&aid=122&itype=a&ver=12302&tm=297&src=ds&p={searchTerms}
SearchScopes: HKCU - Software URL =
SearchScopes: HKCU - {0BCB98C4-05A3-4DA9-8C3E-467B71F921A1} URL = hxxp://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=dsites0202&cd=2XzuyEtN2Y1L1QzutDtDtBtAyDyE0F0AtCzyyEzzzzzz0F0BtN0D0Tzu0SyBzzyBtN1L2XzutBtFtCyBtFtDtFtCtN1L1CzutDtBtCtC1V1TtN1L1G1B1V1N2Y1L1Qzu2StA0DtB0F0Czz0CzztG0CyByB0CtGyEtD0ByCtG0F0D0AtDtGtAzyzztA0A0FtDyCyC0CtCtA2QtN1M1F1B2Z1V1N2Y1L1Qzu2StD0E0F0CyBtC0BtCtGtByCtA0BtGyD0FyDtCtGyCzz0BtAtGyEtByDtByD0F0D0FzzzztCyC2Q&cr=35811396&ir=
SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2476} URL = hxxp://www.default-search.net/search?sid=476&aid=122&itype=a&ver=12302&tm=297&src=ds&p={searchTerms}
BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: No Name - {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
ShellExecuteHooks-x32: EasyBits ShellExecute Hook - {E54729E8-BB3D-4270-9D49-7389EA579090} - C:\Windows\SysWOW64\ezUPBHook.dll [52272 2014-02-12] (EasyBits Software Corp.)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
FireFox:
========
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @canon.com/MycameraPlugin - C:\Program Files (x86)\Canon\MyCamera Download Plugin\NPCIG.dll (CANON INC.)
FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8081.0709 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @pages.tvunetworks.com/WebPlayer - C:\Program Files (x86)\TVUPlayer\npTVUAx.dll No File
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF HKLM-x32\...\Firefox\Extensions: - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\url_advisor@kaspersky.com
FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\url_advisor@kaspersky.com [2014-02-12]
FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\virtual_keyboard@kaspersky.com
FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\virtual_keyboard@kaspersky.com [2014-02-12]
FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\content_blocker@kaspersky.com
FF Extension: Dangerous Websites Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\content_blocker@kaspersky.com [2014-02-12]
FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\anti_banner@kaspersky.com
FF Extension: Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\anti_banner@kaspersky.com [2014-02-12]
FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\online_banking@kaspersky.com
FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\online_banking@kaspersky.com [2014-02-12]
Chrome:
=======
CHR HomePage: hxxp://www.default-search.net?sid=476&aid=122&itype=a&ver=12302&tm=297&src=hmp
CHR StartupUrls: "hxxp://www.default-search.net?sid=476&aid=122&itype=a&ver=12302&tm=297&src=hmp"
CHR DefaultSearchKeyword: ask.com
CHR DefaultSearchProvider: default-search.net
CHR DefaultSearchURL: hxxp://www.default-search.net/search?sid=476&aid=122&itype=a&ver=12302&tm=297&src=ds&p={searchTerms}
CHR DefaultNewTabURL:
CHR Extension: (Google Docs) - C:\Users\Ando\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-02-12]
CHR Extension: (Google Drive) - C:\Users\Ando\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-02-12]
CHR Extension: (YouTube) - C:\Users\Ando\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-02-12]
CHR Extension: (Google-Suche) - C:\Users\Ando\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-02-12]
CHR Extension: (Modul zur Link-Untersuchung) - C:\Users\Ando\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj [2014-02-12]
CHR Extension: (Sicherer Zahlungsverkehr) - C:\Users\Ando\AppData\Local\Google\Chrome\User Data\Default\Extensions\hakdifolhalapjijoafobooafbilfakh [2014-02-12]
CHR Extension: (Modul zum Sperren von gefährlichen Webseiten) - C:\Users\Ando\AppData\Local\Google\Chrome\User Data\Default\Extensions\hghkgaeecgjhjkannahfamoehjmkjail [2014-02-12]
CHR Extension: (Virtual Keyboard) - C:\Users\Ando\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh [2014-02-12]
CHR Extension: (Google Wallet) - C:\Users\Ando\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-02-12]
CHR Extension: (Google Mail) - C:\Users\Ando\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-02-12]
CHR Extension: (Anti-Banner) - C:\Users\Ando\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman [2014-02-12]
CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\ChromeExt\urladvisor.crx [2013-10-17]
CHR HKLM-x32\...\Chrome\Extension: [hakdifolhalapjijoafobooafbilfakh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\ChromeExt\online_banking_chrome.crx [2013-10-17]
CHR HKLM-x32\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\ChromeExt\content_blocker_chrome.crx [2013-10-17]
CHR HKLM-x32\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\ChromeExt\virtkbd.crx [2013-10-17]
CHR HKLM-x32\...\Chrome\Extension: [pjldcfjmnllhmgjclecdnfampinooman] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\ChromeExt\ab.crx [2013-10-17]
==================== Services (Whitelisted) =================
R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe [214512 2013-10-17] (Kaspersky Lab ZAO)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1809720 2014-04-03] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [857912 2014-04-03] (Malwarebytes Corporation)
R2 ezSharedSvc; C:\Windows\System32\ezsvc7.dll [X]
==================== Drivers (Whitelisted) ====================
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458336 2014-02-13] (Kaspersky Lab ZAO)
S4 klflt; C:\Windows\System32\DRIVERS\klflt.sys [115296 2014-03-24] (Kaspersky Lab ZAO)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [625248 2014-03-24] (Kaspersky Lab ZAO)
R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [29792 2013-10-17] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29280 2014-02-18] (Kaspersky Lab ZAO)
R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29280 2013-10-17] (Kaspersky Lab ZAO)
R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [15456 2013-04-12] (Kaspersky Lab ZAO)
R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [55904 2013-05-14] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [178272 2014-02-13] (Kaspersky Lab ZAO)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-04-03] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [119512 2014-04-28] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63192 2014-04-03] (Malwarebytes Corporation)
S3 Serial; C:\Windows\system32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)
S3 PCDSRVC{F36B3A4C-F95654BD-06000000}_0; \??\c:\program files\pc-doctor for windows\pcdsrvc_x64.pkms [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-04-27 23:44 - 2014-04-27 23:44 - 02347384 _____ (ESET) C:\Users\Ando\Downloads\esetsmartinstaller_deu.exe
2014-04-27 23:39 - 2014-04-27 23:39 - 00001340 _____ () C:\Users\Ando\Desktop\AdwCleaner[S4].txt
2014-04-27 23:32 - 2014-04-27 23:32 - 00009226 _____ () C:\Users\Ando\Desktop\mbam.txt
2014-04-27 23:28 - 2014-04-27 23:28 - 00007178 _____ () C:\Windows\PFRO.log
2014-04-27 22:53 - 2014-04-28 09:04 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-04-27 22:53 - 2014-04-27 22:53 - 00001104 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-04-27 22:53 - 2014-04-27 22:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-04-27 22:53 - 2014-04-27 22:53 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-04-27 22:53 - 2014-04-27 22:53 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-04-27 22:53 - 2014-04-03 09:51 - 00088280 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-04-27 22:53 - 2014-04-03 09:51 - 00063192 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-04-27 22:53 - 2014-04-03 09:50 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-04-27 22:52 - 2014-04-27 22:52 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Ando\Downloads\mbam-setup-2.0.1.1004.exe
2014-04-27 03:12 - 2014-04-27 23:38 - 00000280 _____ () C:\Windows\setupact.log
2014-04-27 03:12 - 2014-04-27 03:12 - 00000000 _____ () C:\Windows\setuperr.log
2014-04-26 17:01 - 2014-04-26 17:14 - 00047352 _____ () C:\Users\Ando\Documents\Bewerbung (Real Total).odt
2014-04-26 13:32 - 2014-04-26 13:33 - 02061824 _____ (Farbar) C:\Users\Ando\Downloads\FRST64 (1).exe
2014-04-26 12:37 - 2014-04-26 12:37 - 00002770 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-04-26 12:37 - 2014-04-26 12:37 - 00000824 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-04-26 12:37 - 2014-04-26 12:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-04-26 12:37 - 2014-04-26 12:37 - 00000000 ____D () C:\Program Files\CCleaner
2014-04-26 12:36 - 2014-04-26 12:36 - 03710504 _____ (Piriform Ltd) C:\Users\Ando\Downloads\ccsetup412_slim.exe
2014-04-24 14:21 - 2014-04-26 13:36 - 00030339 _____ () C:\Users\Ando\Downloads\Addition.txt
2014-04-24 14:20 - 2014-04-28 11:11 - 00021637 _____ () C:\Users\Ando\Downloads\FRST.txt
2014-04-24 14:20 - 2014-04-28 11:11 - 00000000 ____D () C:\FRST
2014-04-24 14:19 - 2014-04-24 14:19 - 02061824 _____ (Farbar) C:\Users\Ando\Downloads\FRST64.exe
2014-04-23 12:57 - 2014-04-23 12:57 - 01345435 _____ () C:\Users\Ando\Downloads\adwcleaner3201.exe
2014-04-23 00:48 - 2014-04-23 00:48 - 00000000 ____D () C:\ProgramData\Recovery
2014-04-19 12:41 - 2014-04-19 12:41 - 01426178 _____ () C:\Users\Ando\Downloads\adwcleaner3023.exe
2014-04-18 18:57 - 2014-04-18 18:57 - 00126112 _____ (Spotify Ltd) C:\Users\Ando\Downloads\SpotifySetup (2).exe
2014-04-18 18:56 - 2014-04-18 18:56 - 00126112 _____ (Spotify Ltd) C:\Users\Ando\Downloads\SpotifySetup (1).exe
2014-04-18 17:46 - 2014-04-18 17:46 - 03689432 _____ () C:\Users\Ando\Downloads\SAMSUNG_Android_USB_Composite_Device_Driver_5.28.2.1.zip
2014-04-18 17:46 - 2014-04-18 17:46 - 03689432 _____ () C:\Users\Ando\Downloads\SAMSUNG_Android_USB_Composite_Device_Driver_5.28.2.1 (1).zip
2014-04-18 17:25 - 2014-04-18 17:26 - 00126112 _____ (Spotify Ltd) C:\Users\Ando\Downloads\SpotifySetup.exe
2014-04-16 11:55 - 2014-04-16 11:55 - 00000000 ____D () C:\Users\Ando\AppData\Roaming\ZoomBrowser EX
2014-04-16 11:52 - 2014-04-16 11:53 - 94845256 _____ (CANON INC.) C:\Users\Ando\Downloads\euw21400.exe
2014-04-16 11:43 - 2014-04-16 11:43 - 00001294 _____ () C:\Users\Public\Desktop\ZoomBrowser EX.lnk
2014-04-16 11:43 - 2014-04-16 11:43 - 00000000 ____D () C:\ProgramData\ZoomBrowser
2014-04-16 11:42 - 2014-04-16 11:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
2014-04-16 11:42 - 2014-04-16 11:42 - 00001134 _____ () C:\Users\Public\Desktop\Digital Photo Professional.lnk
2014-04-16 11:42 - 2014-04-16 11:42 - 00001099 _____ () C:\Users\Public\Desktop\Picture Style Editor.lnk
2014-04-16 11:42 - 2014-04-16 11:42 - 00001069 _____ () C:\Users\Public\Desktop\EOS Utility.lnk
2014-04-16 11:29 - 2014-04-16 11:54 - 00000000 ____D () C:\Users\Ando\AppData\Local\Canon_INC
2014-04-16 10:36 - 2014-04-16 10:36 - 00000000 ____D () C:\Users\Ando\AppData\Roaming\Canon_Inc_IC
2014-04-16 10:35 - 2014-04-16 11:43 - 00000000 ____D () C:\Program Files (x86)\Canon
2014-04-16 10:34 - 2014-04-16 11:55 - 00000000 ____D () C:\Users\Ando\AppData\Roaming\canon
2014-04-16 10:34 - 2014-04-16 10:34 - 00000000 ____D () C:\ProgramData\Canon_Inc_IC
2014-04-16 10:32 - 2014-04-16 10:34 - 191382292 _____ () C:\Users\Ando\Downloads\ksd290a_installer.zip
2014-04-16 10:23 - 2014-04-16 10:25 - 00000000 ____D () C:\Users\Ando\AppData\Roaming\DriverFinder
2014-04-15 19:06 - 2014-04-15 19:06 - 00000124 _____ () C:\Windows\wininit.ini
2014-04-15 18:55 - 2014-04-15 18:55 - 00000993 _____ () C:\Users\Ando\Desktop\SopCast.lnk
2014-04-15 18:55 - 2014-04-15 18:55 - 00000000 ____D () C:\Users\Ando\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SopCast
2014-04-15 18:55 - 2014-04-15 18:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SopCast
2014-04-15 18:55 - 2014-04-15 18:55 - 00000000 ____D () C:\Program Files (x86)\SopCast
2014-04-15 18:54 - 2014-04-15 18:54 - 00000000 ____D () C:\Users\Ando\AppData\Local\TVU Networks
2014-04-15 18:54 - 2014-04-15 18:54 - 00000000 ____D () C:\ProgramData\TVU Networks
2014-04-15 18:50 - 2014-04-15 18:51 - 00000000 ____D () C:\Users\Ando\AppData\Roaming\Security System 2
2014-04-15 18:49 - 2014-04-15 18:49 - 00678712 _____ () C:\Users\Ando\Downloads\sopcast-Downloader.exe
2014-04-15 18:49 - 2014-04-15 18:49 - 00000147 _____ () C:\Users\Ando\Desktop\Goodgame Empire.url
2014-04-09 23:07 - 2014-03-31 03:16 - 23134208 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-04-09 23:07 - 2014-03-31 03:13 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-04-09 23:07 - 2014-03-31 02:13 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-04-09 23:07 - 2014-03-31 01:57 - 17073152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-04-09 23:07 - 2014-02-04 04:35 - 00274880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2014-04-09 23:07 - 2014-02-04 04:35 - 00190912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2014-04-09 23:07 - 2014-02-04 04:35 - 00027584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2014-04-09 23:07 - 2014-02-04 04:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll
2014-04-09 23:07 - 2014-02-04 04:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iologmsg.dll
2014-04-09 23:06 - 2014-03-04 11:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2014-04-09 23:06 - 2014-03-04 11:44 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2014-04-09 23:06 - 2014-03-04 11:44 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2014-04-09 23:06 - 2014-03-04 11:44 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2014-04-09 23:06 - 2014-03-04 11:44 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2014-04-09 23:06 - 2014-03-04 11:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2014-04-09 23:06 - 2014-03-04 11:16 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2014-04-09 23:06 - 2014-03-04 11:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2014-04-09 23:06 - 2014-03-04 11:16 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2014-04-09 23:06 - 2014-03-04 10:09 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2014-04-09 23:06 - 2014-03-04 10:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2014-04-09 23:06 - 2014-01-24 04:37 - 01684928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2014-04-08 13:38 - 2014-04-08 13:40 - 00000000 ____D () C:\Users\Ando\AppData\Roaming\.ACEStream
2014-04-08 13:38 - 2014-04-08 13:38 - 00000000 ___HD () C:\_acestream_cache_
2014-04-08 13:37 - 2014-04-08 13:40 - 00000000 ____D () C:\Users\Ando\AppData\Roaming\ACEStream
2014-04-05 19:55 - 2014-04-05 20:07 - 63456120 _____ () C:\Users\Ando\Downloads\Ace_Stream_Media_2.2.2.3-next.exe
2014-04-03 20:18 - 2014-04-03 20:22 - 00000000 ____D () C:\Program Files (x86)\7-Zip
2014-04-03 20:18 - 2014-04-03 20:18 - 01110476 _____ () C:\Users\Ando\Downloads\7z920.exe
2014-04-03 20:18 - 2014-04-03 20:18 - 01110476 _____ () C:\Users\Ando\Downloads\7z920 (1).exe
2014-04-03 18:56 - 2014-04-03 20:51 - 00000000 ____D () C:\Users\Ando\.freemind
2014-04-03 18:56 - 2014-04-03 18:56 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-04-03 18:56 - 2014-04-03 18:56 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-04-03 18:56 - 2014-04-03 18:56 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-04-03 18:56 - 2014-04-03 18:56 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-04-03 18:56 - 2014-04-03 18:56 - 00000000 ____D () C:\ProgramData\Sun
2014-04-03 18:56 - 2014-04-03 18:56 - 00000000 ____D () C:\ProgramData\Oracle
2014-04-03 18:56 - 2014-04-03 18:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-04-03 18:56 - 2014-04-03 18:56 - 00000000 ____D () C:\Program Files (x86)\Java
2014-04-03 18:55 - 2014-04-03 18:55 - 00921000 _____ (Oracle Corporation) C:\Users\Ando\Downloads\chromeinstall-7u51.exe
2014-04-03 18:54 - 2014-04-03 18:54 - 00001093 _____ () C:\Users\Ando\Desktop\FreeMind.lnk
2014-04-03 18:54 - 2014-04-03 18:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeMind
2014-04-03 18:53 - 2014-04-03 18:53 - 37618815 _____ ( ) C:\Users\Ando\Downloads\FreeMind-Windows-Installer-1.0.0-max.exe
2014-04-01 20:00 - 2014-04-01 20:00 - 00253379 _____ () C:\Users\Ando\Downloads\photo.htm
2014-03-31 12:03 - 2014-03-31 12:03 - 00002219 _____ () C:\Users\Ando\Desktop\HP Support Assistant.lnk
2014-03-31 12:03 - 2014-03-31 12:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
2014-03-31 11:59 - 2014-03-31 11:59 - 00000000 ____D () C:\System.sav
2014-03-31 11:57 - 2014-03-31 11:57 - 00000000 ____D () C:\ProgramData\{18165758-115C-4DC0-9EC2-FF89F725767F}
2014-03-29 12:38 - 2014-03-29 12:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
2014-03-29 12:32 - 2014-03-29 12:34 - 70638408 _____ (Apple Inc.) C:\Users\Ando\Downloads\iCloudSetup.exe
==================== One Month Modified Files and Folders =======
2014-04-28 11:11 - 2014-04-24 14:20 - 00021637 _____ () C:\Users\Ando\Downloads\FRST.txt
2014-04-28 11:11 - 2014-04-24 14:20 - 00000000 ____D () C:\FRST
2014-04-28 11:02 - 2014-02-12 22:20 - 00000000 ____D () C:\Users\Ando\AppData\Roaming\Skype
2014-04-28 10:57 - 2014-02-12 21:45 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-04-28 10:54 - 2014-02-12 17:20 - 01975530 _____ () C:\Windows\WindowsUpdate.log
2014-04-28 09:22 - 2014-02-12 22:11 - 00000000 ____D () C:\ProgramData\Kaspersky Lab
2014-04-28 09:04 - 2014-04-27 22:53 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-04-28 00:58 - 2014-02-12 22:24 - 00000000 ____D () C:\Users\Ando\AppData\Local\PMB Files
2014-04-27 23:45 - 2009-07-14 06:45 - 00015760 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-04-27 23:45 - 2009-07-14 06:45 - 00015760 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-04-27 23:44 - 2014-04-27 23:44 - 02347384 _____ (ESET) C:\Users\Ando\Downloads\esetsmartinstaller_deu.exe
2014-04-27 23:39 - 2014-04-27 23:39 - 00001340 _____ () C:\Users\Ando\Desktop\AdwCleaner[S4].txt
2014-04-27 23:38 - 2014-04-27 03:12 - 00000280 _____ () C:\Windows\setupact.log
2014-04-27 23:38 - 2014-02-12 21:45 - 00001102 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-04-27 23:38 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-04-27 23:37 - 2014-03-16 18:01 - 00000000 ____D () C:\AdwCleaner
2014-04-27 23:32 - 2014-04-27 23:32 - 00009226 _____ () C:\Users\Ando\Desktop\mbam.txt
2014-04-27 23:28 - 2014-04-27 23:28 - 00007178 _____ () C:\Windows\PFRO.log
2014-04-27 23:25 - 2014-02-12 22:24 - 00000000 ____D () C:\ProgramData\PMB Files
2014-04-27 22:53 - 2014-04-27 22:53 - 00001104 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-04-27 22:53 - 2014-04-27 22:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-04-27 22:53 - 2014-04-27 22:53 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-04-27 22:53 - 2014-04-27 22:53 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-04-27 22:52 - 2014-04-27 22:52 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Ando\Downloads\mbam-setup-2.0.1.1004.exe
2014-04-27 21:03 - 2014-03-06 19:52 - 00000000 ____D () C:\Users\Ando\Documents\Erik (Schule)
2014-04-27 20:56 - 2014-03-23 21:45 - 00000000 _____ () C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2014-04-27 20:56 - 2014-03-14 20:14 - 00000052 _____ () C:\Windows\SysWOW64\DOErrors.log
2014-04-27 03:12 - 2014-04-27 03:12 - 00000000 _____ () C:\Windows\setuperr.log
2014-04-26 17:14 - 2014-04-26 17:01 - 00047352 _____ () C:\Users\Ando\Documents\Bewerbung (Real Total).odt
2014-04-26 16:33 - 2014-02-14 17:14 - 00000000 ____D () C:\Users\Ando\Documents\Erik (Bewerbung)
2014-04-26 13:36 - 2014-04-24 14:21 - 00030339 _____ () C:\Users\Ando\Downloads\Addition.txt
2014-04-26 13:33 - 2014-04-26 13:32 - 02061824 _____ (Farbar) C:\Users\Ando\Downloads\FRST64 (1).exe
2014-04-26 12:38 - 2014-02-13 02:07 - 00000000 ____D () C:\Windows\Panther
2014-04-26 12:37 - 2014-04-26 12:37 - 00002770 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-04-26 12:37 - 2014-04-26 12:37 - 00000824 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-04-26 12:37 - 2014-04-26 12:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-04-26 12:37 - 2014-04-26 12:37 - 00000000 ____D () C:\Program Files\CCleaner
2014-04-26 12:36 - 2014-04-26 12:36 - 03710504 _____ (Piriform Ltd) C:\Users\Ando\Downloads\ccsetup412_slim.exe
2014-04-25 14:04 - 2014-02-12 21:46 - 00002177 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-04-24 14:19 - 2014-04-24 14:19 - 02061824 _____ (Farbar) C:\Users\Ando\Downloads\FRST64.exe
2014-04-23 12:57 - 2014-04-23 12:57 - 01345435 _____ () C:\Users\Ando\Downloads\adwcleaner3201.exe
2014-04-23 00:48 - 2014-04-23 00:48 - 00000000 ____D () C:\ProgramData\Recovery
2014-04-21 15:09 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-04-19 12:41 - 2014-04-19 12:41 - 01426178 _____ () C:\Users\Ando\Downloads\adwcleaner3023.exe
2014-04-18 18:57 - 2014-04-18 18:57 - 00126112 _____ (Spotify Ltd) C:\Users\Ando\Downloads\SpotifySetup (2).exe
2014-04-18 18:56 - 2014-04-18 18:56 - 00126112 _____ (Spotify Ltd) C:\Users\Ando\Downloads\SpotifySetup (1).exe
2014-04-18 17:46 - 2014-04-18 17:46 - 03689432 _____ () C:\Users\Ando\Downloads\SAMSUNG_Android_USB_Composite_Device_Driver_5.28.2.1.zip
2014-04-18 17:46 - 2014-04-18 17:46 - 03689432 _____ () C:\Users\Ando\Downloads\SAMSUNG_Android_USB_Composite_Device_Driver_5.28.2.1 (1).zip
2014-04-18 17:26 - 2014-04-18 17:25 - 00126112 _____ (Spotify Ltd) C:\Users\Ando\Downloads\SpotifySetup.exe
2014-04-17 02:05 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2014-04-17 02:04 - 2014-02-12 19:18 - 00001191 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works-Start.lnk
2014-04-17 02:04 - 2014-02-12 19:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works
2014-04-17 02:04 - 2014-02-12 19:17 - 00000000 ____D () C:\Program Files (x86)\Microsoft Works
2014-04-16 11:55 - 2014-04-16 11:55 - 00000000 ____D () C:\Users\Ando\AppData\Roaming\ZoomBrowser EX
2014-04-16 11:55 - 2014-04-16 10:34 - 00000000 ____D () C:\Users\Ando\AppData\Roaming\canon
2014-04-16 11:54 - 2014-04-16 11:29 - 00000000 ____D () C:\Users\Ando\AppData\Local\Canon_INC
2014-04-16 11:53 - 2014-04-16 11:52 - 94845256 _____ (CANON INC.) C:\Users\Ando\Downloads\euw21400.exe
2014-04-16 11:43 - 2014-04-16 11:43 - 00001294 _____ () C:\Users\Public\Desktop\ZoomBrowser EX.lnk
2014-04-16 11:43 - 2014-04-16 11:43 - 00000000 ____D () C:\ProgramData\ZoomBrowser
2014-04-16 11:43 - 2014-04-16 11:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
2014-04-16 11:43 - 2014-04-16 10:35 - 00000000 ____D () C:\Program Files (x86)\Canon
2014-04-16 11:42 - 2014-04-16 11:42 - 00001134 _____ () C:\Users\Public\Desktop\Digital Photo Professional.lnk
2014-04-16 11:42 - 2014-04-16 11:42 - 00001099 _____ () C:\Users\Public\Desktop\Picture Style Editor.lnk
2014-04-16 11:42 - 2014-04-16 11:42 - 00001069 _____ () C:\Users\Public\Desktop\EOS Utility.lnk
2014-04-16 11:37 - 2014-02-12 19:13 - 00000000 ____D () C:\Users\Ando\AppData\Local\Hewlett-Packard
2014-04-16 10:55 - 2009-07-14 05:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
2014-04-16 10:43 - 2014-02-12 19:19 - 00000000 ___RD () C:\Users\Ando\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-04-16 10:43 - 2014-02-12 19:17 - 00000000 ____D () C:\Users\Ando\AppData\Local\VirtualStore
2014-04-16 10:36 - 2014-04-16 10:36 - 00000000 ____D () C:\Users\Ando\AppData\Roaming\Canon_Inc_IC
2014-04-16 10:34 - 2014-04-16 10:34 - 00000000 ____D () C:\ProgramData\Canon_Inc_IC
2014-04-16 10:34 - 2014-04-16 10:32 - 191382292 _____ () C:\Users\Ando\Downloads\ksd290a_installer.zip
2014-04-16 10:25 - 2014-04-16 10:23 - 00000000 ____D () C:\Users\Ando\AppData\Roaming\DriverFinder
2014-04-15 19:06 - 2014-04-15 19:06 - 00000124 _____ () C:\Windows\wininit.ini
2014-04-15 18:55 - 2014-04-15 18:55 - 00000993 _____ () C:\Users\Ando\Desktop\SopCast.lnk
2014-04-15 18:55 - 2014-04-15 18:55 - 00000000 ____D () C:\Users\Ando\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SopCast
2014-04-15 18:55 - 2014-04-15 18:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SopCast
2014-04-15 18:55 - 2014-04-15 18:55 - 00000000 ____D () C:\Program Files (x86)\SopCast
2014-04-15 18:54 - 2014-04-15 18:54 - 00000000 ____D () C:\Users\Ando\AppData\Local\TVU Networks
2014-04-15 18:54 - 2014-04-15 18:54 - 00000000 ____D () C:\ProgramData\TVU Networks
2014-04-15 18:51 - 2014-04-15 18:50 - 00000000 ____D () C:\Users\Ando\AppData\Roaming\Security System 2
2014-04-15 18:49 - 2014-04-15 18:49 - 00678712 _____ () C:\Users\Ando\Downloads\sopcast-Downloader.exe
2014-04-15 18:49 - 2014-04-15 18:49 - 00000147 _____ () C:\Users\Ando\Desktop\Goodgame Empire.url
2014-04-11 22:39 - 2014-03-01 11:07 - 00000000 ____D () C:\Users\Ando\AppData\Roaming\CyberLink
2014-04-10 18:27 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache
2014-04-09 23:29 - 2014-02-12 21:24 - 00000000 ____D () C:\Windows\system32\MRT
2014-04-09 23:28 - 2014-02-12 21:24 - 90655440 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-04-08 13:40 - 2014-04-08 13:38 - 00000000 ____D () C:\Users\Ando\AppData\Roaming\.ACEStream
2014-04-08 13:40 - 2014-04-08 13:37 - 00000000 ____D () C:\Users\Ando\AppData\Roaming\ACEStream
2014-04-08 13:38 - 2014-04-08 13:38 - 00000000 ___HD () C:\_acestream_cache_
2014-04-07 22:39 - 2014-02-13 02:09 - 00699090 _____ () C:\Windows\system32\perfh007.dat
2014-04-07 22:39 - 2014-02-13 02:09 - 00149230 _____ () C:\Windows\system32\perfc007.dat
2014-04-07 22:39 - 2009-07-14 07:13 - 01619272 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-04-05 20:07 - 2014-04-05 19:55 - 63456120 _____ () C:\Users\Ando\Downloads\Ace_Stream_Media_2.2.2.3-next.exe
2014-04-05 15:31 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\LiveKernelReports
2014-04-03 20:51 - 2014-04-03 18:56 - 00000000 ____D () C:\Users\Ando\.freemind
2014-04-03 20:22 - 2014-04-03 20:18 - 00000000 ____D () C:\Program Files (x86)\7-Zip
2014-04-03 20:18 - 2014-04-03 20:18 - 01110476 _____ () C:\Users\Ando\Downloads\7z920.exe
2014-04-03 20:18 - 2014-04-03 20:18 - 01110476 _____ () C:\Users\Ando\Downloads\7z920 (1).exe
2014-04-03 18:56 - 2014-04-03 18:56 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-04-03 18:56 - 2014-04-03 18:56 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-04-03 18:56 - 2014-04-03 18:56 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-04-03 18:56 - 2014-04-03 18:56 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-04-03 18:56 - 2014-04-03 18:56 - 00000000 ____D () C:\ProgramData\Sun
2014-04-03 18:56 - 2014-04-03 18:56 - 00000000 ____D () C:\ProgramData\Oracle
2014-04-03 18:56 - 2014-04-03 18:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-04-03 18:56 - 2014-04-03 18:56 - 00000000 ____D () C:\Program Files (x86)\Java
2014-04-03 18:56 - 2014-02-12 19:12 - 00000000 ____D () C:\Users\Ando
2014-04-03 18:55 - 2014-04-03 18:55 - 00921000 _____ (Oracle Corporation) C:\Users\Ando\Downloads\chromeinstall-7u51.exe
2014-04-03 18:54 - 2014-04-03 18:54 - 00001093 _____ () C:\Users\Ando\Desktop\FreeMind.lnk
2014-04-03 18:54 - 2014-04-03 18:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeMind
2014-04-03 18:54 - 2014-03-25 14:38 - 00000000 ____D () C:\Program Files (x86)\FreeMind
2014-04-03 18:53 - 2014-04-03 18:53 - 37618815 _____ ( ) C:\Users\Ando\Downloads\FreeMind-Windows-Installer-1.0.0-max.exe
2014-04-03 09:51 - 2014-04-27 22:53 - 00088280 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-04-03 09:51 - 2014-04-27 22:53 - 00063192 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-04-03 09:50 - 2014-04-27 22:53 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-04-02 10:12 - 2014-02-12 19:58 - 00000000 ____D () C:\Windows\System32\Tasks\Games
2014-04-01 20:00 - 2014-04-01 20:00 - 00253379 _____ () C:\Users\Ando\Downloads\photo.htm
2014-03-31 12:03 - 2014-03-31 12:03 - 00002219 _____ () C:\Users\Ando\Desktop\HP Support Assistant.lnk
2014-03-31 12:03 - 2014-03-31 12:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
2014-03-31 12:03 - 2014-02-12 17:27 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-03-31 12:03 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\Help
2014-03-31 11:59 - 2014-03-31 11:59 - 00000000 ____D () C:\System.sav
2014-03-31 11:58 - 2014-02-12 17:22 - 00000000 ____D () C:\Program Files (x86)\Hewlett-Packard
2014-03-31 11:57 - 2014-03-31 11:57 - 00000000 ____D () C:\ProgramData\{18165758-115C-4DC0-9EC2-FF89F725767F}
2014-03-31 11:56 - 2014-03-21 19:18 - 00000000 ____D () C:\swsetup
2014-03-31 11:56 - 2014-02-12 17:40 - 00000000 ____D () C:\Windows\System32\Tasks\Hewlett-Packard
2014-03-31 11:56 - 2014-02-12 17:35 - 00000000 ____D () C:\ProgramData\Hewlett-Packard
2014-03-31 09:35 - 2014-02-12 17:46 - 00270496 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-03-31 03:16 - 2014-04-09 23:07 - 23134208 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-03-31 03:13 - 2014-04-09 23:07 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-03-31 02:13 - 2014-04-09 23:07 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-03-31 01:57 - 2014-04-09 23:07 - 17073152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-03-30 20:50 - 2014-03-14 20:13 - 00000000 ____D () C:\Users\Ando\AppData\Roaming\HP Support Assistant
2014-03-30 20:50 - 2014-02-13 20:24 - 00000000 ____D () C:\Users\Ando\AppData\Roaming\HpUpdate
2014-03-29 15:52 - 2014-02-12 21:45 - 00004102 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-03-29 15:52 - 2014-02-12 21:45 - 00003850 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-03-29 12:56 - 2014-03-13 20:42 - 00000000 ____D () C:\Users\Ando\AppData\Roaming\Apple Computer
2014-03-29 12:55 - 2014-03-13 20:42 - 00000000 ____D () C:\Users\Ando\AppData\Local\Apple Computer
2014-03-29 12:38 - 2014-03-29 12:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
2014-03-29 12:38 - 2014-03-11 20:08 - 00000000 ____D () C:\Program Files\Common Files\Apple
2014-03-29 12:34 - 2014-03-29 12:32 - 70638408 _____ (Apple Inc.) C:\Users\Ando\Downloads\iCloudSetup.exe
Some content of TEMP:
====================
C:\Users\Ando\AppData\Local\Temp\Quarantine.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-04-19 08:27
==================== End Of Log ============================ --- --- ---
--- --- --- Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 26-04-2014 01
Ran by Ando at 2014-04-28 11:12:15
Running from C:\Users\Ando\Downloads
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Kaspersky Internet Security (Enabled - Up to date) {179979E8-273D-D14E-0543-2861940E4886}
AS: Kaspersky Internet Security (Enabled - Up to date) {ACF8980C-0107-DEC0-3FF3-1313EF89023B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Kaspersky Internet Security (Enabled) {2FA2F8CD-6D52-D016-2E1C-81546ADD0FFD}
==================== Installed Programs ======================
Adobe Flash Player 10 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 10.0.32.18 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.06) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.06 - Adobe Systems Incorporated)
Apple Application Support (HKLM-x32\...\{AAC5D43E-816D-4C2D-8E51-55FFF35BE301}) (Version: 3.0.1 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{787136D2-F0F8-4625-AA3F-72D7795AC842}) (Version: 7.1.1.3 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Bing Bar (HKLM-x32\...\{B4089055-D468-45A4-A6BA-5A138DD715FC}) (Version: 7.0.850.0 - Microsoft Corporation)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
CANON iMAGE GATEWAY MyCamera Download Plugin (HKLM-x32\...\MyCamera Download Plugin) (Version: 3.1.1.2 - Canon Inc.)
CANON iMAGE GATEWAY Task for ZoomBrowser EX (HKLM-x32\...\CANON iMAGE GATEWAY Task) (Version: 1.9.0.9 - Canon Inc.)
Canon MOV Decoder (HKLM-x32\...\Canon MOV Decoder) (Version: 1.8.0.7 - Canon Inc.)
Canon MOV Encoder (HKLM-x32\...\Canon MOV Encoder) (Version: 1.6.0.1 - Canon Inc.)
Canon MovieEdit Task for ZoomBrowser EX (HKLM-x32\...\MovieEditTask) (Version: 3.7.0.4 - Canon Inc.)
Canon Utilities Digital Photo Professional 3.10 (HKLM-x32\...\DPP) (Version: 3.10.2.0 - Canon Inc.)
Canon Utilities EOS Sample Music (HKLM-x32\...\EOS Sample Music) (Version: 1.0.1.1 - Canon Inc.)
Canon Utilities EOS Utility (HKLM-x32\...\EOS Utility) (Version: 2.10.2.0 - Canon Inc.)
Canon Utilities EOS Video Snapshot Task for ZoomBrowser EX (HKLM-x32\...\EOS Video Snapshot Task) (Version: 1.0.0.10 - Canon Inc.)
Canon Utilities Movie Uploader for YouTube (HKLM-x32\...\MovieUploaderForYouTube) (Version: 1.2.0.7 - Canon Inc.)
Canon Utilities PhotoStitch (HKLM-x32\...\PhotoStitch) (Version: 3.1.22.46 - Canon Inc.)
Canon Utilities Picture Style Editor (HKLM-x32\...\Picture Style Editor) (Version: 1.9.0.0 - Canon Inc.)
Canon Utilities ZoomBrowser EX (HKLM-x32\...\ZoomBrowser EX) (Version: 6.7.0.24 - Canon Inc.)
Canon ZoomBrowser EX Memory Card Utility (HKLM-x32\...\ZoomBrowser EX Memory Card Utility) (Version: 1.5.0.9 - Canon Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 4.12 - Piriform)
CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.2.4478 - CDBurnerXP)
Compatibility Pack für 2007 Office System (HKLM-x32\...\{90120000-0020-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
CyberLink DVD Suite Deluxe (HKLM-x32\...\InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}) (Version: 7.0.2115 - CyberLink Corp.)
CyberLink DVD Suite Deluxe (x32 Version: 7.0.2115 - CyberLink Corp.) Hidden
DirectX for Managed Code Update (Summer 2004) (x32 Version: 9.02.2904 - Microsoft) Hidden
DVD Menu Pack for HP MediaSmart Video (HKLM-x32\...\InstallShield_{FB4BB287-37F9-4E27-9C4D-2D3882E08EFF}) (Version: 3.1.3224 - Hewlett-Packard)
DVD Menu Pack for HP MediaSmart Video (x32 Version: 3.1.3224 - Hewlett-Packard) Hidden
Free YouTube to MP3 Converter version 3.12.27.225 (HKLM-x32\...\Free YouTube to MP3 Converter_is1) (Version: 3.12.27.225 - DVDVideoSoft Ltd.)
FreeMind (HKLM-x32\...\B991B020-2968-11D8-AF23-444553540000_is1) (Version: 1.0.0 - )
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 34.0.1847.131 - Google Inc.)
Google Update Helper (x32 Version: 1.3.23.9 - Google Inc.) Hidden
Hardwarediagnosetools (HKLM\...\PC-Doctor for Windows) (Version: 6.0.5247.34 - PC-Doctor, Inc.)
Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden
HP Advisor (HKLM-x32\...\{40FB8D7C-6FF8-4AF2-BC8B-0B1DB32AF04B}) (Version: 3.3.9512.3162 - Hewlett-Packard)
HP Customer Experience Enhancements (x32 Version: 6.0.1.3 - Hewlett-Packard) Hidden
HP Games (HKLM-x32\...\WildTangent hp Master Uninstall) (Version: 1.0.0.71 - WildTangent)
HP MediaSmart DVD (HKLM-x32\...\InstallShield_{DCCAD079-F92C-44DA-B258-624FC6517A5A}) (Version: 3.1.3317 - Hewlett-Packard)
HP MediaSmart DVD (x32 Version: 3.1.3317 - Hewlett-Packard) Hidden
HP MediaSmart Music/Photo/Video (HKLM-x32\...\InstallShield_{B2EE25B9-5B00-4ACF-94F0-92433C28C39E}) (Version: 3.1.3422 - Hewlett-Packard)
HP MediaSmart Music/Photo/Video (x32 Version: 3.1.3422 - Hewlett-Packard) Hidden
HP MediaSmart SmartMenu (HKLM\...\{88E60521-1E4E-4785-B9F1-1798A4BD0C30}) (Version: 3.1.0.1 - Hewlett-Packard)
HP Odometer (HKLM-x32\...\{B8AC1A89-FFD1-4F97-8051-E505A160F562}) (Version: 2.10.0000 - Hewlett-Packard)
HP Remote Solution (HKLM-x32\...\HP Remote Solution) (Version: 1.1.11.0 - Hewlett-Packard)
HP Remote Solution (x32 Version: 1.1.12.0 - Hewlett-Packard) Hidden
HP Setup (HKLM-x32\...\{17B4760F-334B-475D-829F-1A3E94A6A4E6}) (Version: 1.2.3560.3170 - Hewlett-Packard)
HP Support Assistant (HKLM-x32\...\{E35A3B13-78CD-4967-8AC8-AA9FDA693EDE}) (Version: 7.4.45.4 - Hewlett-Packard Company)
HP Support Information (HKLM-x32\...\{B9A03B7B-E0FF-4FB3-BA83-762E58A1B0AA}) (Version: 10.1.0002 - Hewlett-Packard)
HP Update (HKLM-x32\...\{D46D081B-F60E-467E-A7C4-117B70D76731}) (Version: 5.001.000.014 - Hewlett-Packard)
iCloud (HKLM\...\{81E20D41-C277-4526-934D-F2380AF91B78}) (Version: 3.1.0.40 - Apple Inc.)
iTunes (HKLM\...\{B8BA155B-1E75-405F-9CB4-8A99615D09DC}) (Version: 11.1.5.5 - Apple Inc.)
Java 7 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217051FF}) (Version: 7.0.510 - Oracle)
Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
Junk Mail filter update (x32 Version: 14.0.8089.726 - Microsoft Corporation) Hidden
Kaspersky Internet Security (HKLM-x32\...\InstallWIX_{6F6873E3-5C92-4049-B511-231A138DD090}) (Version: 14.0.0.4651 - Kaspersky Lab)
Kaspersky Internet Security (x32 Version: 14.0.0.4651 - Kaspersky Lab) Hidden
LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.2017 - CyberLink Corp.)
LabelPrint (x32 Version: 2.5.2017 - CyberLink Corp.) Hidden
League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games )
League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden
LibreOffice 4.2.0.4 (HKLM-x32\...\{E043231F-34F2-4AF5-9400-0961CC15AAAE}) (Version: 4.2.0.4 - The Document Foundation)
LightScribe System Software (HKLM-x32\...\{CC8E94A2-55C7-4460-953C-2A790180578C}) (Version: 1.18.8.1 - LightScribe)
Magic Desktop (HKLM-x32\...\EasyBits Magic Desktop) (Version: - EasyBits Software AS)
Malwarebytes Anti-Malware Version 2.0.1.1004 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.1.1004 - Malwarebytes Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Choice Guard (x32 Version: 2.0.48.0 - Microsoft Corporation) Hidden
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Sync Framework Runtime Native v1.0 (x86) (HKLM-x32\...\{8A74E887-8F0F-4017-AF53-CBA42211AAA5}) (Version: 1.0.1215.0 - Microsoft Corporation)
Microsoft Sync Framework Services Native v1.0 (x86) (HKLM-x32\...\{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}) (Version: 1.0.1215.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Works (HKLM-x32\...\{39D0E034-1042-4905-BECB-5502909FCB7C}) (Version: 9.7.0621 - Microsoft Corporation)
Movie Theme Pack for HP MediaSmart Video (HKLM-x32\...\InstallShield_{3023EBDA-BF1B-4831-B347-E5018555F26E}) (Version: 3.1.3310 - Hewlett-Packard)
Movie Theme Pack for HP MediaSmart Video (x32 Version: 3.1.3310 - Hewlett-Packard) Hidden
MSVCRT (x32 Version: 14.0.1468.721 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Norton Online Backup (HKLM-x32\...\{C57BCDE1-7CB9-467D-B3BA-7E119916CDC1}) (Version: 1.2.20.0 - Symantec)
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.10 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{C5C1C0F0-D62F-4DBF-81D4-D7EF397C228B}) (Version: 9.09.0814 - NVIDIA Corporation)
Pando Media Booster (HKLM-x32\...\{980A182F-E0A2-4A40-94C1-AE0C1235902E}) (Version: 2.6.0.7 - Pando Networks Inc.)
PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation)
Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.0.3304 - CyberLink Corp.)
Power2Go (x32 Version: 6.0.3304 - CyberLink Corp.) Hidden
PowerDirector (HKLM-x32\...\InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}) (Version: 7.0.3405 - CyberLink Corp.)
PowerDirector (x32 Version: 7.0.3405 - CyberLink Corp.) Hidden
Protegere (HKLM-x32\...\Protegere) (Version: - )
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5938 - Realtek Semiconductor Corp.)
Recovery Manager (x32 Version: 5.5.2216 - CyberLink Corp.) Hidden
Skype™ 6.13 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.13.104 - Skype Technologies S.A.)
SopCast 3.8.3 (HKLM-x32\...\SopCast) (Version: 3.8.3 - www.sopcast.com)
Testversion von Microsoft Office Home and Student 2007 (HKLM\...\OfficeTrial) (Version: - )
Windows Live Anmelde-Assistent (HKLM-x32\...\{52B97218-98CB-4B8B-9283-D213C85E1AA4}) (Version: 5.000.818.5 - Microsoft Corporation)
Windows Live Call (x32 Version: 14.0.8064.0206 - Microsoft Corporation) Hidden
Windows Live Communications Platform (x32 Version: 14.0.8064.206 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite_Wave3) (Version: 14.0.8089.0726 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 14.0.8089.726 - Microsoft Corporation) Hidden
Windows Live Fotogalerie (x32 Version: 14.0.8081.709 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 14.0.8089.0726 - Microsoft Corporation) Hidden
Windows Live Messenger (x32 Version: 14.0.8089.0726 - Microsoft Corporation) Hidden
Windows Live Sync (HKLM-x32\...\{76618402-179D-4699-A66B-D351C59436BC}) (Version: 14.0.8089.726 - Microsoft Corporation)
Windows Live Writer (x32 Version: 14.0.8089.0726 - Microsoft Corporation) Hidden
Windows Live-Uploadtool (HKLM-x32\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)
==================== Restore Points =========================
17-04-2014 19:54:56 Windows-Sicherung
17-04-2014 22:36:36 Windows Update
20-04-2014 17:22:44 Windows-Sicherung
22-04-2014 07:15:40 Windows Update
27-04-2014 17:00:07 Windows-Sicherung
==================== Hosts content: ==========================
2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {00E3DF0E-0FBE-4218-93DB-ABB7C3B48013} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2014-03-21] (Hewlett-Packard)
Task: {073DA79A-491D-43F6-9ADB-8BD6A3BA3ACA} - System32\Tasks\CLMLSvc => c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe [2009-10-22] (CyberLink)
Task: {0ECC0AC4-DB9A-4095-9D0B-CC874C34717F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-02-12] (Google Inc.)
Task: {10B2A8BC-C6E4-4789-8F2E-38122C7BA61E} - System32\Tasks\DVDAgent => c:\Program Files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe
Task: {1A904C2C-753E-425E-BF26-27CEBA4103C3} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2013-12-12] (Hewlett-Packard Company)
Task: {3DB921F8-1D59-40AE-8A93-836CDF48D115} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-03-18] (Piriform Ltd)
Task: {457354E0-8254-4B55-B991-9E824FB2D748} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-02-12] (Google Inc.)
Task: {4A37B25C-F2AE-458D-84C8-ACCE82EB8423} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company)
Task: {503B5F85-AF06-4A45-92B6-226FB83DD5AA} - \EPUpdater No Task File <==== ATTENTION
Task: {8D907435-2900-4150-A890-FF7672B568A5} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HPSAObjUtilTask => C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\UtilTask.exe [2014-04-22] (Microsoft)
Task: {9E342411-8219-4433-97D1-4D027E589306} - System32\Tasks\ServicePlan => C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [2009-10-20] ()
Task: {BD248DAC-591E-4D80-AE38-EA3EDDDFFB10} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company)
Task: {BFFD55F8-0B1A-4911-A975-AE08D77178EA} - \MySearchDial No Task File <==== ATTENTION
Task: {C43488A4-57BF-4DC5-8D0F-25383DF7280A} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {C556B92B-9153-48E8-BF19-BAB1B61830B2} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup
Task: {E325461A-7D79-4DE3-96CE-EDDB5205F413} - System32\Tasks\PCDRScheduledMaintenance => C:\Program Files\PC-Doctor for Windows\pcdrcui.exe [2009-09-18] (PC-Doctor, Inc.)
Task: {EDEFB3E8-9363-4C4C-B238-2BE847D5EB46} - \Digital Sites No Task File <==== ATTENTION
Task: {F3A1AB6B-955E-49F2-9B5F-7A34DBEFCC1A} - System32\Tasks\ExtendedServicePlan => C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [2009-10-20] ()
Task: {F563F299-98D5-45BC-9E74-77D46F25A265} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2014-03-21] (Hewlett-Packard)
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\PCDRScheduledMaintenance.job => C:\Program Files\PC-Doctor for Windows\pcdrcui.exe
==================== Loaded Modules (whitelisted) =============
2009-09-14 17:17 - 2009-09-14 17:17 - 00610360 _____ () C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe
2014-02-12 21:58 - 2014-02-12 21:58 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2014-02-12 21:58 - 2014-02-12 21:58 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2013-06-17 13:35 - 2013-06-17 13:35 - 00478400 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\dblite.dll
2013-05-08 15:52 - 2013-05-08 15:52 - 01270464 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\kpcengine.2.3.dll
2013-09-14 02:51 - 2013-09-14 02:51 - 00087952 _____ () C:\Program Files (x86)\Common Files\Apple\Internet Services\zlib1.dll
2013-09-14 02:50 - 2013-09-14 02:50 - 01242952 _____ () C:\Program Files (x86)\Common Files\Apple\Internet Services\libxml2.dll
2009-10-22 19:50 - 2009-10-22 19:50 - 00931112 ____N () c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMediaLibrary.dll
2014-04-25 14:04 - 2014-04-24 02:33 - 00065352 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.131\chrome_elf.dll
2014-04-25 14:04 - 2014-04-24 02:33 - 00674632 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.131\libglesv2.dll
2014-04-25 14:04 - 2014-04-24 02:33 - 00093000 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.131\libegl.dll
2014-04-25 14:04 - 2014-04-24 02:33 - 04081480 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.131\pdf.dll
2014-04-25 14:04 - 2014-04-24 02:33 - 00390472 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.131\ppGoogleNaClPluginChrome.dll
2014-04-25 14:04 - 2014-04-24 02:33 - 01647432 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.131\ffmpegsumo.dll
2014-04-25 14:04 - 2014-04-24 02:33 - 13692232 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.131\PepperFlash\pepflashplayer.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
==================== Disabled items from MSCONFIG ==============
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (04/28/2014 11:07:29 AM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Error: (04/28/2014 09:43:38 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 9969
Error: (04/28/2014 09:43:38 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 9969
Error: (04/28/2014 09:43:36 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (04/28/2014 09:04:46 AM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: jucheck.exe, Version: 2.1.9.8, Zeitstempel: 0x51d2fcc9
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00000000
ID des fehlerhaften Prozesses: 0x1348
Startzeit der fehlerhaften Anwendung: 0xjucheck.exe0
Pfad der fehlerhaften Anwendung: jucheck.exe1
Pfad des fehlerhaften Moduls: jucheck.exe2
Berichtskennung: jucheck.exe3
Error: (04/28/2014 01:31:50 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 9968
Error: (04/28/2014 01:31:50 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 9968
Error: (04/28/2014 01:31:50 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (04/27/2014 11:45:09 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Error: (04/27/2014 11:45:01 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
System errors:
=============
Error: (04/28/2014 10:47:21 AM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst UMVPFSrv erreicht.
Error: (04/28/2014 09:04:31 AM) (Source: DCOM) (User: )
Description: {995C996E-D918-4A8C-A302-45719A6F4EA7}
Error: (04/27/2014 11:27:08 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Windows-Zeitgeber" wurde mit folgendem Fehler beendet:
%%1115
Error: (04/27/2014 10:39:52 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Windows Search" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (04/27/2014 10:39:52 AM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Windows Search erreicht.
Error: (04/27/2014 10:39:53 AM) (Source: DCOM) (User: )
Description: 1053WSearch{9E175B6D-F52A-11D8-B9A5-505054503030}
Error: (04/27/2014 10:39:23 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Windows Search" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts.
Error: (04/27/2014 10:39:23 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Windows Search" wurde mit folgendem dienstspezifischem Fehler beendet: %%-1073473535.
Error: (04/18/2014 10:56:43 PM) (Source: DCOM) (User: )
Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF}
Error: (04/15/2014 06:54:39 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "SProtection" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren.
Microsoft Office Sessions:
=========================
Error: (04/28/2014 11:07:29 AM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Program Files (x86)\ESET\ESET Online Scanner\ESETSmartInstaller.exe
Error: (04/28/2014 09:43:38 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 9969
Error: (04/28/2014 09:43:38 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 9969
Error: (04/28/2014 09:43:36 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (04/28/2014 09:04:46 AM) (Source: Application Error)(User: )
Description: jucheck.exe2.1.9.851d2fcc9unknown0.0.0.000000000c000000500000000134801cf6261d8137fa0C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exeunknown6119f8d0-cea3-11e3-9677-002354fa1948
Error: (04/28/2014 01:31:50 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 9968
Error: (04/28/2014 01:31:50 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 9968
Error: (04/28/2014 01:31:50 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (04/27/2014 11:45:09 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\Ando\Downloads\esetsmartinstaller_deu.exe
Error: (04/27/2014 11:45:01 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\Ando\Downloads\esetsmartinstaller_deu.exe
CodeIntegrity Errors:
===================================
Date: 2014-04-27 21:29:52.227
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-04-27 21:29:52.217
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-04-27 21:29:52.217
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-04-27 21:29:52.187
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-04-27 21:29:52.187
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-04-27 21:29:52.177
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-04-26 22:42:59.039
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-04-26 22:42:59.039
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-04-26 22:42:59.029
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-04-26 22:42:59.019
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
==================== Memory info ===========================
Percentage of memory in use: 32%
Total physical RAM: 6143.24 MB
Available physical RAM: 4121.4 MB
Total Pagefile: 12284.66 MB
Available Pagefile: 9496.26 MB
Total Virtual: 8192 MB
Available Virtual: 8191.85 MB
==================== Drives ================================
Drive c: (HP) (Fixed) (Total:1383.94 GB) (Free:1321.25 GB) NTFS
Drive d: (FACTORY_IMAGE) (Fixed) (Total:13.22 GB) (Free:1.84 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive h: () (Removable) (Total:3.73 GB) (Free:1.34 GB) FAT32
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 1397 GB) (Disk ID: BDA7590E)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=-713024372224) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=13 GB) - (Type=07 NTFS)
========================================================
Disk: 4 (Size: 4 GB) (Disk ID: 00000000)
Partition: GPT Partition Type.
==================== End Of Log ============================ |