sheldon299 | 15.08.2014 14:05 | FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 15-08-2014
Ran by Christian (administrator) on CHRISTIAN-PC on 15-08-2014 14:06:30
Running from C:\Users\Christian\Desktop
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(G Data Software AG) C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe
(G Data Software AG) C:\Program Files (x86)\G Data\InternetSecurity\AVK\AVKWCtlx64.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(Egis Technology Inc. ) C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Advanced Micro Devices) C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe
(G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe
(G Data Software AG) C:\Program Files (x86)\G Data\InternetSecurity\AVK\AVKService.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
(MAGIX AG) C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe
(Genie9) C:\Program Files\Genie9\Genie Timeline\GenieTimelineService.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Registration\GREGsvc.exe
(NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(Acer Group) C:\Program Files\Acer\Acer Updater\UpdaterService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(G Data Software AG) C:\Program Files (x86)\G Data\InternetSecurity\Firewall\GDFwSvcx64.exe
(G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKBap64.exe
(Genie9) C:\Program Files\Genie9\Genie Timeline\GenieTimeLineAgent.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(CyberLink Corp.) C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe
(G Data Software AG) C:\Program Files (x86)\G Data\InternetSecurity\Firewall\GDFirewallTray.exe
(CyberLink) C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\DMREngine.exe
(Atmel) C:\Program Files (x86)\Atmel\Atmel Studio 6.0\atmelstudio.exe
(Atmel Corporation) C:\Program Files (x86)\Atmel\Atmel Studio 6.0\avrdbg\avrdbg.exe
(Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2010-11-18] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [G Data ASM] => C:\Program Files (x86)\G Data\InternetSecurity\DelayLoader\AutorunDelayLoader.exe [431224 2013-12-19] (G Data Software AG)
HKLM-x32\...\Run: [GDFirewallTray] => C:\Program Files (x86)\G Data\InternetSecurity\Firewall\GDFirewallTray.exe [1724728 2013-12-19] (G Data Software AG)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2014-05-08] (Adobe Systems Incorporated)
HKU\.DEFAULT\...\RunOnce: [IsMyWinLockerReboot] => msiexec.exe /qn /x{voidguid}
HKU\S-1-5-21-624546122-312161334-520473447-1001\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-624546122-312161334-520473447-1001\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.de/
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
URLSearchHook: HKLM-x32 - (No Name) - {37483b40-c254-4a72-bda4-22ee90182c1e} - No File
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKCU - DefaultScope {A3648F4B-44FD-4028-A44A-6A63C983B7FB} URL = https://www.google.com/search?q={searchTerms}
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?q={sear
SearchScopes: HKCU - {A3648F4B-44FD-4028-A44A-6A63C983B7FB} URL = https://www.google.com/search?q={searchTerms}
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre8\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre8\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Bing Bar BHO -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2282.0\npwinext.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM-x32 - @C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2282.0\npwinext.dll,-100 - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2282.0\npwinext.dll (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.11.2 -> C:\Program Files\Java\jre8\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.11.2 -> C:\Program Files\Java\jre8\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~4\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1210150.dll (Adobe Systems, Inc.)
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=10.65.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.65.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpWinExt,version=5.0 -> C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2282.0\npwinext.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Christian\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF HKLM-x32\...\Firefox\Extensions: [msntoolbar@msn.com] - C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2282.0\Firefox
FF Extension: Bing Bar - C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2282.0\Firefox [2011-01-22]
FF HKLM-x32\...\Firefox\Extensions: [{3252b9ae-c69a-4eaf-9502-dc9c1f6c009e}] - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DMExtension
FF Extension: Default Manager - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DMExtension [2011-01-22]
FF HKLM-x32\...\Firefox\Extensions: [{D19CA586-DD6C-4a0a-96F8-14644F340D60}] - C:\Program Files (x86)\Common Files\McAfee\SystemCore
Chrome:
=======
CHR HomePage:
CHR DefaultSearchKeyword: delta-search.com
CHR DefaultNewTabURL:
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.125\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.125\pdf.dll ()
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.125\gcswf32.dll No File
CHR Plugin: (McAfee SiteAdvisor) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.41.123.2_0\McChPlg.dll No File
CHR Plugin: (McAfee SiteAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll No File
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (Google Earth Plugin) - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll No File
CHR Plugin: (Bing Bar) - C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2282.0\npwinext.dll (Microsoft Corporation)
CHR Plugin: (Windows Live Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (Unity Player) - C:\Users\Christian\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.1.10111.0\npctrl.dll No File
CHR Plugin: (McAfee SecurityCenter) - c:\progra~2\mcafee\msc\npmcsn~1.dll No File
CHR Extension: (YouTube) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2011-12-17]
CHR Extension: (Google-Suche) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2011-12-17]
CHR Extension: (Google Wallet) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-05]
CHR Extension: (Google Mail) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2011-12-17]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [354304 2010-11-18] (Advanced Micro Devices, Inc.) [File not signed]
R2 AMD Reservation Manager; C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe [194496 2010-06-17] (Advanced Micro Devices)
R2 AVKProxy; C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe [2244728 2014-02-12] (G Data Software AG)
R2 AVKService; C:\Program Files (x86)\G Data\InternetSecurity\AVK\AVKService.exe [914552 2013-12-19] (G Data Software AG)
R2 AVKWCtl; C:\Program Files (x86)\G Data\InternetSecurity\AVK\AVKWCtlx64.exe [2723400 2014-03-25] (G Data Software AG)
R2 Fabs; C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe [1253376 2009-08-27] (MAGIX AG) [File not signed]
S3 FirebirdServerMAGIXInstance; C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe [3276800 2008-08-07] (MAGIX®) [File not signed]
R3 GDFwSvc; C:\Program Files (x86)\G Data\InternetSecurity\Firewall\GDFwSvcx64.exe [2992760 2014-01-30] (G Data Software AG)
R3 GDScan; C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe [700024 2014-02-03] (G Data Software AG)
R2 GenieTimelineService; C:\Program Files\Genie9\Genie Timeline\GenieTimelineService.exe [678464 2013-12-08] (Genie9)
S3 hpqcxs08; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll [248832 2009-05-21] (Hewlett-Packard Co.) [File not signed]
R2 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [257344 2010-11-12] (NTI Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R3 CH341SER_A64; C:\Windows\System32\Drivers\CH341S64.SYS [58368 2011-11-04] (www.winchiphead.com)
S3 DLPortIO; C:\Windows\SysWOW64\DRIVERS\DLPortIO.SYS [3584 2000-06-29] () [File not signed]
R0 GDBehave; C:\Windows\System32\drivers\GDBehave.sys [57344 2014-07-26] (G Data Software AG)
R1 GDMnIcpt; C:\Windows\system32\drivers\MiniIcpt.sys [135168 2014-07-26] (G Data Software AG)
R3 GDPkIcpt; C:\Windows\system32\drivers\PktIcpt.sys [68608 2014-07-26] (G Data Software AG)
R1 gdwfpcd; C:\Windows\System32\drivers\gdwfpcd64.sys [64000 2014-05-17] (G Data Software AG)
R1 GRD; C:\Windows\system32\drivers\GRD.sys [106272 2014-07-28] (G Data Software)
R1 HookCentre; C:\Windows\system32\drivers\HookCentre.sys [65024 2014-07-26] (G Data Software AG)
S2 hwpsgt; C:\Windows\SysWOW64\DRIVERS\hwpsgt.sys [137344 2011-07-13] () [File not signed]
S2 lemsgt; C:\Windows\SysWOW64\DRIVERS\lemsgt.sys [9472 2011-07-13] () [File not signed]
S3 libusb0; C:\Windows\System32\DRIVERS\libusb0.sys [44480 2013-09-02] (hxxp://libusb-win32.sourceforge.net)
S3 rsvcdwdr; C:\Windows\System32\DRIVERS\rsvcdwdr.sys [45160 2011-11-17] (RapidSolution Software AG)
R1 SLEE_18_DRIVER; C:\Windows\Sleen1864.sys [109144 2014-01-30] (Softwareentwicklung Remus - ArchiCrypt - )
S2 TVicPort; No ImagePath
R1 usedisk; C:\Windows\System32\DRIVERS\usedisk.sys [29208 2014-02-27] (Gili Soft INC.)
R3 WinDriver6; C:\Windows\System32\drivers\windrvr6.sys [254976 2010-08-31] (Jungo)
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 Ser2pl; system32\DRIVERS\ser2pl64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-08-14 20:18 - 2014-08-14 20:18 - 00000000 _____ () C:\Windows\SysWOW64\shoE18A.tmp
2014-08-14 12:23 - 2014-08-14 12:23 - 00000000 _____ () C:\Windows\SysWOW64\sho7B19.tmp
2014-08-13 23:17 - 2014-08-13 23:17 - 00000000 _____ () C:\Windows\SysWOW64\sho5514.tmp
2014-08-12 18:28 - 2014-08-12 18:28 - 00000000 _____ () C:\Windows\SysWOW64\sho191B.tmp
2014-08-12 18:24 - 2014-08-12 18:25 - 00000000 ___SD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 4.3
2014-08-12 18:24 - 2014-08-12 18:24 - 00001468 _____ () C:\Users\Public\Desktop\LibreOffice 4.3.lnk
2014-08-12 18:15 - 2014-08-12 18:15 - 00000000 ____D () C:\Users\Christian\Downloads\Deinstalliert
2014-08-12 18:00 - 2014-08-12 18:06 - 223113216 _____ () C:\Users\Christian\Downloads\LibreOffice_4.3.0_Win_x86 (1).msi
2014-08-11 12:21 - 2014-08-11 12:21 - 00000000 ____D () C:\Users\Christian\AppData\Local\Adobe
2014-08-11 12:12 - 2014-08-11 12:12 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-08-10 09:56 - 2014-08-10 09:56 - 00000000 _____ () C:\Windows\SysWOW64\shoC9BD.tmp
2014-08-09 22:17 - 2014-08-15 14:06 - 00000000 ____D () C:\Users\Christian\Desktop\FRST-OlderVersion
2014-08-09 10:35 - 2014-08-09 10:52 - 00000452 _____ () C:\Users\Christian\Desktop\SystemLook.txt
2014-08-09 10:33 - 2014-08-09 10:33 - 00165376 _____ () C:\Users\Christian\Desktop\SystemLook_x64.exe
2014-08-08 20:41 - 2014-08-08 20:41 - 00000000 _____ () C:\Windows\SysWOW64\shoB2E6.tmp
2014-08-08 15:07 - 2014-08-08 15:07 - 00000000 ____D () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Local\CrashDumps
2014-08-08 14:58 - 2014-08-08 14:58 - 00000000 ____D () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Roaming\T-Online
2014-08-07 22:15 - 2014-08-07 22:15 - 00000000 _____ () C:\Windows\SysWOW64\sho71DB.tmp
2014-08-06 22:20 - 2014-08-06 22:20 - 00000000 _____ () C:\Windows\SysWOW64\sho5F23.tmp
2014-08-06 20:58 - 2014-08-06 20:58 - 00000000 __SHD () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Local\EmieUserList
2014-08-06 20:58 - 2014-08-06 20:58 - 00000000 __SHD () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Local\EmieSiteList
2014-08-06 19:15 - 2014-08-06 19:15 - 00000000 ____D () C:\Users\Default\AppData\Local\Adobe
2014-08-06 19:15 - 2014-08-06 19:15 - 00000000 ____D () C:\Users\Default User\AppData\Local\Adobe
2014-08-06 19:08 - 2014-08-06 19:05 - 00272808 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-08-06 19:07 - 2014-08-06 19:06 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-08-06 19:07 - 2014-08-06 19:05 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-08-06 19:07 - 2014-08-06 19:05 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-08-06 19:05 - 2014-08-06 19:05 - 00000000 ____D () C:\Program Files (x86)\Java
2014-08-05 22:30 - 2014-08-05 22:30 - 00000000 _____ () C:\Windows\SysWOW64\sho33B8.tmp
2014-08-05 20:45 - 2014-08-05 20:45 - 00000000 ____D () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Local\VirtualStore
2014-08-05 20:38 - 2014-08-05 20:38 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia
2014-08-05 20:38 - 2014-08-05 20:38 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia
2014-08-05 20:32 - 2014-08-09 11:14 - 00007223 _____ () C:\Windows\SecuniaPackage.log
2014-08-05 19:59 - 2014-08-05 19:59 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\48230029.sys
2014-08-05 19:54 - 2014-08-05 19:54 - 00000000 ____D () C:\Users\Christian\AppData\Local\Secunia PSI
2014-08-05 19:54 - 2014-08-05 19:54 - 00000000 ____D () C:\Program Files (x86)\Secunia
2014-08-05 19:13 - 2014-08-05 19:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free M4a to MP3 Converter
2014-08-05 19:13 - 2014-08-05 19:13 - 00000000 ____D () C:\Program Files (x86)\Free M4a to MP3 Converter
2014-08-05 18:57 - 2014-08-05 18:57 - 00001264 _____ () C:\Users\Christian\Desktop\Revo Uninstaller.lnk
2014-08-05 18:42 - 2014-08-05 18:42 - 06424632 _____ (ManiacTools.com ) C:\Users\Christian\Downloads\m4a-to-mp3-81converter.exe
2014-08-05 11:36 - 2014-08-05 11:36 - 01110476 _____ () C:\Users\Christian\Downloads\7z920.exe
2014-08-05 11:36 - 2014-08-05 11:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2014-08-05 11:36 - 2014-08-05 11:36 - 00000000 ____D () C:\Program Files (x86)\7-Zip
2014-08-05 11:05 - 2014-08-09 22:29 - 00057920 _____ () C:\Users\Christian\Desktop\Addition.txt
2014-08-05 10:54 - 2014-08-15 14:08 - 00016915 _____ () C:\Users\Christian\Desktop\FRST.txt
2014-08-05 10:53 - 2014-08-15 14:07 - 00000000 ____D () C:\FRST
2014-08-05 10:51 - 2014-08-15 14:06 - 02100224 _____ (Farbar) C:\Users\Christian\Desktop\FRST64.exe
2014-08-04 13:19 - 2014-08-04 13:20 - 00001069 _____ () C:\DelFix.txt
2014-07-31 13:59 - 2014-08-03 18:22 - 00000000 ____D () C:\Users\Christian\AppData\Roaming\MediaPurge
2014-07-31 13:59 - 2014-07-31 13:59 - 00000000 ____D () C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mediapurge
2014-07-31 13:59 - 2014-07-31 13:59 - 00000000 ____D () C:\Program Files (x86)\Mediapurge
2014-07-31 13:58 - 2014-07-31 13:58 - 04040455 _____ () C:\Users\Christian\Downloads\Mediapurge556installer.exe
2014-07-31 13:58 - 2014-07-31 13:58 - 00000000 ____D () C:\Users\Christian\Downloads\Trojaner-Board
2014-07-31 10:05 - 2014-08-04 13:19 - 00000000 ____D () C:\Windows\ERUNT
2014-07-31 09:39 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-07-30 20:33 - 2014-08-05 19:59 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-07-30 20:32 - 2014-07-30 20:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-07-30 20:32 - 2014-07-30 20:32 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-07-30 20:32 - 2014-07-30 20:32 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-07-30 20:32 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-07-30 20:32 - 2014-05-12 07:26 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-07-30 20:32 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-07-29 17:43 - 2014-08-04 13:15 - 00000000 ____D () C:\Windows\erdnt
2014-07-29 10:56 - 2014-07-29 10:55 - 00321448 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-07-29 10:55 - 2014-08-06 19:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-07-29 10:55 - 2014-07-29 10:55 - 00191400 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-07-29 10:55 - 2014-07-29 10:55 - 00190888 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-07-29 10:55 - 2014-07-29 10:55 - 00111016 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2014-07-29 10:54 - 2014-07-29 10:54 - 00000000 ____D () C:\Program Files\Java
2014-07-29 10:40 - 2014-07-29 10:40 - 00000000 ____D () C:\Users\Christian\.structorizer
2014-07-28 17:41 - 2014-07-28 17:41 - 00000000 ____D () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Local\Acer
2014-07-28 17:38 - 2014-07-28 17:39 - 00000000 ____D () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Local\Microsoft Games
2014-07-28 17:38 - 2014-07-28 17:38 - 00000622 _____ () C:\Users\Elisabeth & Franz.Christian-PC\Desktop\Solitär.lnk
2014-07-28 17:37 - 2014-07-28 17:37 - 00000000 ____D () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Roaming\Duden
2014-07-28 17:36 - 2014-07-28 17:36 - 00166880 _____ () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Local\GDIPFONTCACHEV1.DAT
2014-07-28 17:36 - 2014-07-28 17:36 - 00000000 ____D () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Roaming\Macromedia
2014-07-28 17:36 - 2014-07-28 17:36 - 00000000 ____D () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Roaming\Adobe
2014-07-28 17:35 - 2014-07-28 17:35 - 00000000 ____D () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Local\Google
2014-07-28 17:33 - 2014-07-29 21:55 - 00000680 __RSH () C:\Users\Elisabeth & Franz.Christian-PC\ntuser.pol
2014-07-28 17:33 - 2014-07-28 17:33 - 00000000 ____D () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Roaming\CyberLink
2014-07-28 17:33 - 2014-07-28 17:33 - 00000000 ____D () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Local\PowerCinema
2014-07-28 17:31 - 2014-07-29 21:55 - 00000000 ____D () C:\Users\Elisabeth & Franz.Christian-PC
2014-07-28 17:31 - 2014-07-28 17:31 - 00000020 ___SH () C:\Users\Elisabeth & Franz.Christian-PC\ntuser.ini
2014-07-28 17:31 - 2014-07-28 17:31 - 00000000 _SHDL () C:\Users\Elisabeth & Franz.Christian-PC\Vorlagen
2014-07-28 17:31 - 2014-07-28 17:31 - 00000000 _SHDL () C:\Users\Elisabeth & Franz.Christian-PC\Startmenü
2014-07-28 17:31 - 2014-07-28 17:31 - 00000000 _SHDL () C:\Users\Elisabeth & Franz.Christian-PC\Netzwerkumgebung
2014-07-28 17:31 - 2014-07-28 17:31 - 00000000 _SHDL () C:\Users\Elisabeth & Franz.Christian-PC\Lokale Einstellungen
2014-07-28 17:31 - 2014-07-28 17:31 - 00000000 _SHDL () C:\Users\Elisabeth & Franz.Christian-PC\Eigene Dateien
2014-07-28 17:31 - 2014-07-28 17:31 - 00000000 _SHDL () C:\Users\Elisabeth & Franz.Christian-PC\Druckumgebung
2014-07-28 17:31 - 2014-07-28 17:31 - 00000000 _SHDL () C:\Users\Elisabeth & Franz.Christian-PC\Documents\Eigene Musik
2014-07-28 17:31 - 2014-07-28 17:31 - 00000000 _SHDL () C:\Users\Elisabeth & Franz.Christian-PC\Documents\Eigene Bilder
2014-07-28 17:31 - 2014-07-28 17:31 - 00000000 _SHDL () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-07-28 17:31 - 2014-07-28 17:31 - 00000000 _SHDL () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Local\Verlauf
2014-07-28 17:31 - 2014-07-28 17:31 - 00000000 _SHDL () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Local\Anwendungsdaten
2014-07-28 17:31 - 2014-07-28 17:31 - 00000000 _SHDL () C:\Users\Elisabeth & Franz.Christian-PC\Anwendungsdaten
2014-07-28 17:31 - 2014-02-17 15:30 - 00000000 ____D () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Roaming\Genie9
2014-07-28 17:31 - 2013-09-23 16:19 - 00000000 ____D () C:\Users\Elisabeth & Franz.Christian-PC\Documents\Visual Studio 2010
2014-07-28 17:31 - 2011-11-16 10:30 - 00000000 ____D () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Local\Microsoft Help
2014-07-28 17:31 - 2009-07-14 06:54 - 00000000 ___RD () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-07-28 17:31 - 2009-07-14 06:49 - 00000000 ___RD () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-07-28 17:22 - 2014-08-15 11:18 - 00004359 _____ () C:\Windows\setupact.log
2014-07-28 17:22 - 2014-07-28 17:22 - 00000000 _____ () C:\Windows\setuperr.log
2014-07-28 17:21 - 2014-08-07 16:41 - 00016932 _____ () C:\Windows\PFRO.log
2014-07-28 17:09 - 2014-07-29 11:13 - 00002782 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-07-28 17:09 - 2014-07-28 17:09 - 00000000 ____D () C:\Program Files\CCleaner
2014-07-28 17:07 - 2014-07-28 17:07 - 04813544 _____ (Piriform Ltd) C:\Users\Christian\Downloads\ccsetup416.exe
2014-07-28 13:56 - 2014-07-28 13:56 - 00000573 _____ () C:\Users\Christian\Desktop\Programmers Notepad [WinAVR].lnk
2014-07-28 12:44 - 2014-07-28 12:44 - 00106272 _____ (G Data Software) C:\Windows\system32\Drivers\GRD.sys
2014-07-28 12:44 - 2014-07-28 12:44 - 00018160 _____ (G Data Software) C:\Windows\system32\Drivers\GdPhyMem.sys
2014-07-28 11:57 - 2014-08-05 18:57 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group
2014-07-27 15:54 - 2014-07-27 16:00 - 251170997 _____ () C:\Users\Christian\Downloads\Windows6.1-KB958830-x64-RefreshPkg.msu
2014-07-27 15:44 - 2014-07-27 15:50 - 241162581 _____ () C:\Users\Christian\Downloads\Windows6.1-KB958830-x86-RefreshPkg.msu
2014-07-27 15:02 - 2014-07-27 15:02 - 00003132 _____ () C:\Windows\System32\Tasks\{921BBC8D-8938-456B-B469-E310D9DA4059}
2014-07-27 10:46 - 2014-07-27 10:49 - 05125829 _____ () C:\Users\Christian\Downloads\ccsetup416.zip
2014-07-27 09:51 - 2014-07-27 09:51 - 00000017 _____ () C:\Users\Christian\AppData\Local\resmon.resmoncfg
2014-07-26 23:07 - 2014-07-26 23:07 - 00875472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr110.dll
2014-07-26 23:07 - 2014-07-26 23:07 - 00535008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp110.dll
2014-07-26 23:07 - 2014-07-26 23:07 - 00252400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vccorlib110.dll
2014-07-26 22:30 - 2014-07-26 22:30 - 00000000 ____D () C:\Users\Elisabeth_Franz\AppData\Local\Acer
2014-07-26 22:29 - 2014-07-26 22:29 - 00000000 ____D () C:\Users\Elisabeth_Franz\AppData\Roaming\CyberLink
2014-07-26 22:29 - 2014-07-26 22:29 - 00000000 ____D () C:\Users\Elisabeth_Franz\AppData\Local\PowerCinema
2014-07-26 22:28 - 2014-07-26 22:28 - 00000680 __RSH () C:\Users\Elisabeth_Franz\ntuser.pol
2014-07-26 22:27 - 2014-07-26 22:28 - 00000000 ____D () C:\Users\Elisabeth_Franz
2014-07-26 22:27 - 2014-07-26 22:27 - 00000020 ___SH () C:\Users\Elisabeth_Franz\ntuser.ini
2014-07-26 22:27 - 2014-07-26 22:27 - 00000000 _SHDL () C:\Users\Elisabeth_Franz\Vorlagen
2014-07-26 22:27 - 2014-07-26 22:27 - 00000000 _SHDL () C:\Users\Elisabeth_Franz\Startmenü
2014-07-26 22:27 - 2014-07-26 22:27 - 00000000 _SHDL () C:\Users\Elisabeth_Franz\Netzwerkumgebung
2014-07-26 22:27 - 2014-07-26 22:27 - 00000000 _SHDL () C:\Users\Elisabeth_Franz\Lokale Einstellungen
2014-07-26 22:27 - 2014-07-26 22:27 - 00000000 _SHDL () C:\Users\Elisabeth_Franz\Eigene Dateien
2014-07-26 22:27 - 2014-07-26 22:27 - 00000000 _SHDL () C:\Users\Elisabeth_Franz\Druckumgebung
2014-07-26 22:27 - 2014-07-26 22:27 - 00000000 _SHDL () C:\Users\Elisabeth_Franz\Documents\Eigene Musik
2014-07-26 22:27 - 2014-07-26 22:27 - 00000000 _SHDL () C:\Users\Elisabeth_Franz\Documents\Eigene Bilder
2014-07-26 22:27 - 2014-07-26 22:27 - 00000000 _SHDL () C:\Users\Elisabeth_Franz\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-07-26 22:27 - 2014-07-26 22:27 - 00000000 _SHDL () C:\Users\Elisabeth_Franz\AppData\Local\Verlauf
2014-07-26 22:27 - 2014-07-26 22:27 - 00000000 _SHDL () C:\Users\Elisabeth_Franz\AppData\Local\Anwendungsdaten
2014-07-26 22:27 - 2014-07-26 22:27 - 00000000 _SHDL () C:\Users\Elisabeth_Franz\Anwendungsdaten
2014-07-26 22:27 - 2014-02-17 15:30 - 00000000 ____D () C:\Users\Elisabeth_Franz\AppData\Roaming\Genie9
2014-07-26 22:27 - 2013-09-23 16:19 - 00000000 ____D () C:\Users\Elisabeth_Franz\Documents\Visual Studio 2010
2014-07-26 22:27 - 2011-11-16 10:30 - 00000000 ____D () C:\Users\Elisabeth_Franz\AppData\Local\Microsoft Help
2014-07-26 22:27 - 2009-07-14 06:54 - 00000000 ___RD () C:\Users\Elisabeth_Franz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-07-26 22:27 - 2009-07-14 06:49 - 00000000 ___RD () C:\Users\Elisabeth_Franz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-07-26 13:51 - 2014-07-26 13:51 - 00135168 _____ (G Data Software AG) C:\Windows\system32\Drivers\MiniIcpt.sys
2014-07-26 13:51 - 2014-07-26 13:51 - 00068608 _____ (G Data Software AG) C:\Windows\system32\Drivers\PktIcpt.sys
2014-07-26 13:51 - 2014-07-26 13:51 - 00065024 _____ (G Data Software AG) C:\Windows\system32\Drivers\HookCentre.sys
2014-07-26 13:51 - 2014-07-26 13:51 - 00057344 _____ (G Data Software AG) C:\Windows\system32\Drivers\GDBehave.sys
2014-07-26 13:48 - 2014-07-26 13:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\G Data InternetSecurity CBE
2014-07-25 12:16 - 2014-07-25 12:16 - 00000017 _____ () C:\Windows\SysWOW64\shortcut_ex.dat
2014-07-25 00:54 - 2014-07-25 00:54 - 00007120 ____N () C:\bootsqm.dat
2014-07-23 16:01 - 2014-07-23 16:12 - 00000000 ____D () C:\ProgramData\UcusIkcic
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-08-15 14:08 - 2014-08-05 10:54 - 00016915 _____ () C:\Users\Christian\Desktop\FRST.txt
2014-08-15 14:08 - 2011-01-22 23:41 - 00708520 _____ () C:\Windows\system32\perfh007.dat
2014-08-15 14:08 - 2011-01-22 23:41 - 00153568 _____ () C:\Windows\system32\perfc007.dat
2014-08-15 14:08 - 2009-07-14 07:13 - 01644736 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-08-15 14:07 - 2014-08-05 10:53 - 00000000 ____D () C:\FRST
2014-08-15 14:06 - 2014-08-09 22:17 - 00000000 ____D () C:\Users\Christian\Desktop\FRST-OlderVersion
2014-08-15 14:06 - 2014-08-05 10:51 - 02100224 _____ (Farbar) C:\Users\Christian\Desktop\FRST64.exe
2014-08-15 13:58 - 2013-09-15 10:14 - 00000000 ____D () C:\Users\Christian\AppData\Roaming\VisualAssist
2014-08-15 13:58 - 2013-09-15 10:13 - 00000000 ____D () C:\Users\Christian\AppData\Local\VisualAssist
2014-08-15 13:57 - 2013-11-11 18:05 - 00003962 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{0752838C-B6C1-4564-9B69-B9E251C01A13}
2014-08-15 13:57 - 2013-09-15 10:07 - 00000000 ____D () C:\Users\Christian\Documents\Atmel
2014-08-15 13:57 - 2011-01-22 14:54 - 01698974 _____ () C:\Windows\WindowsUpdate.log
2014-08-15 12:11 - 2014-05-18 11:50 - 00000000 ____D () C:\Users\Christian\AppData\Roaming\CodeBlocks
2014-08-15 11:28 - 2009-07-14 06:45 - 00009696 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-08-15 11:28 - 2009-07-14 06:45 - 00009696 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-08-15 11:23 - 2011-06-05 01:18 - 00000000 ____D () C:\ProgramData\clear.fi
2014-08-15 11:18 - 2014-07-28 17:22 - 00004359 _____ () C:\Windows\setupact.log
2014-08-15 11:18 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-08-14 20:18 - 2014-08-14 20:18 - 00000000 _____ () C:\Windows\SysWOW64\shoE18A.tmp
2014-08-14 19:32 - 2012-04-19 16:46 - 00000000 ____D () C:\Program Files (x86)\Widelands
2014-08-14 17:42 - 2014-02-20 17:05 - 00000866 _____ () C:\Windows\system32\ServiceRunSettings.xml
2014-08-14 12:23 - 2014-08-14 12:23 - 00000000 _____ () C:\Windows\SysWOW64\sho7B19.tmp
2014-08-13 23:17 - 2014-08-13 23:17 - 00000000 _____ () C:\Windows\SysWOW64\sho5514.tmp
2014-08-12 21:22 - 2014-07-11 18:57 - 00000000 ____D () C:\Users\Christian\Downloads\Programmierung
2014-08-12 18:51 - 2011-06-04 21:45 - 00166880 _____ () C:\Users\Christian\AppData\Local\GDIPFONTCACHEV1.DAT
2014-08-12 18:29 - 2009-07-14 06:45 - 00567864 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-08-12 18:28 - 2014-08-12 18:28 - 00000000 _____ () C:\Windows\SysWOW64\sho191B.tmp
2014-08-12 18:25 - 2014-08-12 18:24 - 00000000 ___SD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 4.3
2014-08-12 18:24 - 2014-08-12 18:24 - 00001468 _____ () C:\Users\Public\Desktop\LibreOffice 4.3.lnk
2014-08-12 18:24 - 2014-01-27 15:52 - 00000000 ____D () C:\Program Files (x86)\LibreOffice 4
2014-08-12 18:15 - 2014-08-12 18:15 - 00000000 ____D () C:\Users\Christian\Downloads\Deinstalliert
2014-08-12 18:06 - 2014-08-12 18:00 - 223113216 _____ () C:\Users\Christian\Downloads\LibreOffice_4.3.0_Win_x86 (1).msi
2014-08-12 10:53 - 2013-05-16 18:01 - 00000000 ____D () C:\Users\Christian\AppData\Local\CrashDumps
2014-08-11 16:46 - 2014-06-01 15:43 - 00002982 _____ () C:\Users\Christian\Desktop\Ablage.txt
2014-08-11 12:21 - 2014-08-11 12:21 - 00000000 ____D () C:\Users\Christian\AppData\Local\Adobe
2014-08-11 12:21 - 2011-06-05 01:33 - 00000000 ____D () C:\Users\Christian\AppData\Roaming\Adobe
2014-08-11 12:17 - 2010-12-02 10:42 - 00000000 ____D () C:\ProgramData\Adobe
2014-08-11 12:12 - 2014-08-11 12:12 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-08-11 11:27 - 2013-04-12 16:37 - 00000000 ____D () C:\Config.Msi.old
2014-08-11 11:27 - 2010-12-02 10:41 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-08-10 09:56 - 2014-08-10 09:56 - 00000000 _____ () C:\Windows\SysWOW64\shoC9BD.tmp
2014-08-10 09:35 - 2011-12-14 15:47 - 00000000 ___RD () C:\Users\Christian\Desktop\Programme
2014-08-09 22:29 - 2014-08-05 11:05 - 00057920 _____ () C:\Users\Christian\Desktop\Addition.txt
2014-08-09 11:14 - 2014-08-05 20:32 - 00007223 _____ () C:\Windows\SecuniaPackage.log
2014-08-09 10:52 - 2014-08-09 10:35 - 00000452 _____ () C:\Users\Christian\Desktop\SystemLook.txt
2014-08-09 10:33 - 2014-08-09 10:33 - 00165376 _____ () C:\Users\Christian\Desktop\SystemLook_x64.exe
2014-08-08 20:41 - 2014-08-08 20:41 - 00000000 _____ () C:\Windows\SysWOW64\shoB2E6.tmp
2014-08-08 15:07 - 2014-08-08 15:07 - 00000000 ____D () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Local\CrashDumps
2014-08-08 14:58 - 2014-08-08 14:58 - 00000000 ____D () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Roaming\T-Online
2014-08-07 22:15 - 2014-08-07 22:15 - 00000000 _____ () C:\Windows\SysWOW64\sho71DB.tmp
2014-08-07 16:41 - 2014-07-28 17:21 - 00016932 _____ () C:\Windows\PFRO.log
2014-08-06 22:20 - 2014-08-06 22:20 - 00000000 _____ () C:\Windows\SysWOW64\sho5F23.tmp
2014-08-06 20:58 - 2014-08-06 20:58 - 00000000 __SHD () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Local\EmieUserList
2014-08-06 20:58 - 2014-08-06 20:58 - 00000000 __SHD () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Local\EmieSiteList
2014-08-06 19:32 - 2011-07-07 15:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2014-08-06 19:15 - 2014-08-06 19:15 - 00000000 ____D () C:\Users\Default\AppData\Local\Adobe
2014-08-06 19:15 - 2014-08-06 19:15 - 00000000 ____D () C:\Users\Default User\AppData\Local\Adobe
2014-08-06 19:07 - 2014-07-29 10:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-08-06 19:06 - 2014-08-06 19:07 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-08-06 19:05 - 2014-08-06 19:08 - 00272808 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-08-06 19:05 - 2014-08-06 19:07 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-08-06 19:05 - 2014-08-06 19:07 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-08-06 19:05 - 2014-08-06 19:05 - 00000000 ____D () C:\Program Files (x86)\Java
2014-08-05 22:30 - 2014-08-05 22:30 - 00000000 _____ () C:\Windows\SysWOW64\sho33B8.tmp
2014-08-05 20:45 - 2014-08-05 20:45 - 00000000 ____D () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Local\VirtualStore
2014-08-05 20:38 - 2014-08-05 20:38 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia
2014-08-05 20:38 - 2014-08-05 20:38 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia
2014-08-05 19:59 - 2014-08-05 19:59 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\48230029.sys
2014-08-05 19:59 - 2014-07-30 20:33 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-08-05 19:54 - 2014-08-05 19:54 - 00000000 ____D () C:\Users\Christian\AppData\Local\Secunia PSI
2014-08-05 19:54 - 2014-08-05 19:54 - 00000000 ____D () C:\Program Files (x86)\Secunia
2014-08-05 19:13 - 2014-08-05 19:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free M4a to MP3 Converter
2014-08-05 19:13 - 2014-08-05 19:13 - 00000000 ____D () C:\Program Files (x86)\Free M4a to MP3 Converter
2014-08-05 18:57 - 2014-08-05 18:57 - 00001264 _____ () C:\Users\Christian\Desktop\Revo Uninstaller.lnk
2014-08-05 18:57 - 2014-07-28 11:57 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group
2014-08-05 18:42 - 2014-08-05 18:42 - 06424632 _____ (ManiacTools.com ) C:\Users\Christian\Downloads\m4a-to-mp3-81converter.exe
2014-08-05 11:41 - 2012-04-01 13:01 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-08-05 11:36 - 2014-08-05 11:36 - 01110476 _____ () C:\Users\Christian\Downloads\7z920.exe
2014-08-05 11:36 - 2014-08-05 11:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2014-08-05 11:36 - 2014-08-05 11:36 - 00000000 ____D () C:\Program Files (x86)\7-Zip
2014-08-05 10:47 - 2012-04-01 13:01 - 00699056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-08-05 10:47 - 2012-04-01 13:01 - 00003824 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-08-05 10:47 - 2012-03-08 14:58 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-08-05 09:20 - 2011-08-13 11:28 - 00270496 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-08-04 13:20 - 2014-08-04 13:19 - 00001069 _____ () C:\DelFix.txt
2014-08-04 13:19 - 2014-07-31 10:05 - 00000000 ____D () C:\Windows\ERUNT
2014-08-04 13:15 - 2014-07-29 17:43 - 00000000 ____D () C:\Windows\erdnt
2014-08-03 18:22 - 2014-07-31 13:59 - 00000000 ____D () C:\Users\Christian\AppData\Roaming\MediaPurge
2014-07-31 16:25 - 2013-03-21 18:46 - 00000000 ____D () C:\Program Files (x86)\NetServer
2014-07-31 16:19 - 2011-10-31 18:53 - 00000000 ____D () C:\Users\Christian\AppData\Roaming\Diercke Globus
2014-07-31 16:10 - 2011-10-31 18:41 - 00000000 ____D () C:\Users\Christian\Documents\Diercke Globus Ansichten
2014-07-31 15:43 - 2011-06-04 21:45 - 00000000 ____D () C:\Users\Christian
2014-07-31 13:59 - 2014-07-31 13:59 - 00000000 ____D () C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mediapurge
2014-07-31 13:59 - 2014-07-31 13:59 - 00000000 ____D () C:\Program Files (x86)\Mediapurge
2014-07-31 13:58 - 2014-07-31 13:58 - 04040455 _____ () C:\Users\Christian\Downloads\Mediapurge556installer.exe
2014-07-31 13:58 - 2014-07-31 13:58 - 00000000 ____D () C:\Users\Christian\Downloads\Trojaner-Board
2014-07-30 20:32 - 2014-07-30 20:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-07-30 20:32 - 2014-07-30 20:32 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-07-30 20:32 - 2014-07-30 20:32 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-07-29 21:55 - 2014-07-28 17:33 - 00000680 __RSH () C:\Users\Elisabeth & Franz.Christian-PC\ntuser.pol
2014-07-29 21:55 - 2014-07-28 17:31 - 00000000 ____D () C:\Users\Elisabeth & Franz.Christian-PC
2014-07-29 20:14 - 2011-07-15 18:00 - 00000000 ___RD () C:\Users\Christian\Desktop\Mein_Zimmer
2014-07-29 19:58 - 2014-04-23 15:42 - 00000000 ____D () C:\Users\dub_cm_auto
2014-07-29 19:58 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Default
2014-07-29 19:41 - 2011-11-06 18:24 - 00000680 __RSH () C:\Users\Christian\ntuser.pol
2014-07-29 19:41 - 2009-07-14 04:34 - 00000215 _____ () C:\Windows\system.ini
2014-07-29 11:13 - 2014-07-28 17:09 - 00002782 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-07-29 10:55 - 2014-07-29 10:56 - 00321448 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-07-29 10:55 - 2014-07-29 10:55 - 00191400 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-07-29 10:55 - 2014-07-29 10:55 - 00190888 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-07-29 10:55 - 2014-07-29 10:55 - 00111016 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2014-07-29 10:54 - 2014-07-29 10:54 - 00000000 ____D () C:\Program Files\Java
2014-07-29 10:46 - 2014-03-20 15:49 - 00014265 _____ () C:\Users\Christian\Desktop\Zeugnisse.xlsx
2014-07-29 10:40 - 2014-07-29 10:40 - 00000000 ____D () C:\Users\Christian\.structorizer
2014-07-28 17:41 - 2014-07-28 17:41 - 00000000 ____D () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Local\Acer
2014-07-28 17:39 - 2014-07-28 17:38 - 00000000 ____D () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Local\Microsoft Games
2014-07-28 17:38 - 2014-07-28 17:38 - 00000622 _____ () C:\Users\Elisabeth & Franz.Christian-PC\Desktop\Solitär.lnk
2014-07-28 17:37 - 2014-07-28 17:37 - 00000000 ____D () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Roaming\Duden
2014-07-28 17:36 - 2014-07-28 17:36 - 00166880 _____ () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Local\GDIPFONTCACHEV1.DAT
2014-07-28 17:36 - 2014-07-28 17:36 - 00000000 ____D () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Roaming\Macromedia
2014-07-28 17:36 - 2014-07-28 17:36 - 00000000 ____D () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Roaming\Adobe
2014-07-28 17:35 - 2014-07-28 17:35 - 00000000 ____D () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Local\Google
2014-07-28 17:33 - 2014-07-28 17:33 - 00000000 ____D () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Roaming\CyberLink
2014-07-28 17:33 - 2014-07-28 17:33 - 00000000 ____D () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Local\PowerCinema
2014-07-28 17:31 - 2014-07-28 17:31 - 00000020 ___SH () C:\Users\Elisabeth & Franz.Christian-PC\ntuser.ini
2014-07-28 17:31 - 2014-07-28 17:31 - 00000000 _SHDL () C:\Users\Elisabeth & Franz.Christian-PC\Vorlagen
2014-07-28 17:31 - 2014-07-28 17:31 - 00000000 _SHDL () C:\Users\Elisabeth & Franz.Christian-PC\Startmenü
2014-07-28 17:31 - 2014-07-28 17:31 - 00000000 _SHDL () C:\Users\Elisabeth & Franz.Christian-PC\Netzwerkumgebung
2014-07-28 17:31 - 2014-07-28 17:31 - 00000000 _SHDL () C:\Users\Elisabeth & Franz.Christian-PC\Lokale Einstellungen
2014-07-28 17:31 - 2014-07-28 17:31 - 00000000 _SHDL () C:\Users\Elisabeth & Franz.Christian-PC\Eigene Dateien
2014-07-28 17:31 - 2014-07-28 17:31 - 00000000 _SHDL () C:\Users\Elisabeth & Franz.Christian-PC\Druckumgebung
2014-07-28 17:31 - 2014-07-28 17:31 - 00000000 _SHDL () C:\Users\Elisabeth & Franz.Christian-PC\Documents\Eigene Musik
2014-07-28 17:31 - 2014-07-28 17:31 - 00000000 _SHDL () C:\Users\Elisabeth & Franz.Christian-PC\Documents\Eigene Bilder
2014-07-28 17:31 - 2014-07-28 17:31 - 00000000 _SHDL () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-07-28 17:31 - 2014-07-28 17:31 - 00000000 _SHDL () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Local\Verlauf
2014-07-28 17:31 - 2014-07-28 17:31 - 00000000 _SHDL () C:\Users\Elisabeth & Franz.Christian-PC\AppData\Local\Anwendungsdaten
2014-07-28 17:31 - 2014-07-28 17:31 - 00000000 _SHDL () C:\Users\Elisabeth & Franz.Christian-PC\Anwendungsdaten
2014-07-28 17:22 - 2014-07-28 17:22 - 00000000 _____ () C:\Windows\setuperr.log
2014-07-28 17:15 - 2013-08-17 14:19 - 00000000 ____D () C:\Users\Christian\Documents\CCleaner_Registry
2014-07-28 17:09 - 2014-07-28 17:09 - 00000000 ____D () C:\Program Files\CCleaner
2014-07-28 17:07 - 2014-07-28 17:07 - 04813544 _____ (Piriform Ltd) C:\Users\Christian\Downloads\ccsetup416.exe
2014-07-28 16:59 - 2011-07-02 12:55 - 00000000 ___HD () C:\Program Files (x86)\InstallJammer Registry
2014-07-28 16:54 - 2011-07-02 13:03 - 00000000 ___RD () C:\Users\Christian\Desktop\Spiele
2014-07-28 15:30 - 2011-07-16 11:18 - 00000000 ____D () C:\ProgramData\Spreng- und Abriss-Simulator
2014-07-28 15:15 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Public\Libraries
2014-07-28 15:01 - 2010-12-02 10:24 - 00000000 ____D () C:\Program Files (x86)\Acer GameZone
2014-07-28 14:56 - 2010-12-02 10:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer GameZone
2014-07-28 14:21 - 2010-12-02 10:13 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-07-28 13:56 - 2014-07-28 13:56 - 00000573 _____ () C:\Users\Christian\Desktop\Programmers Notepad [WinAVR].lnk
2014-07-28 13:06 - 2011-06-05 13:25 - 00000000 ___RD () C:\Users\Christian\Desktop\Sonstiges
2014-07-28 12:44 - 2014-07-28 12:44 - 00106272 _____ (G Data Software) C:\Windows\system32\Drivers\GRD.sys
2014-07-28 12:44 - 2014-07-28 12:44 - 00018160 _____ (G Data Software) C:\Windows\system32\Drivers\GdPhyMem.sys
2014-07-28 11:45 - 2013-03-14 22:38 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-07-28 11:45 - 2013-03-14 22:38 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-07-27 18:26 - 2013-03-14 22:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-07-27 16:00 - 2014-07-27 15:54 - 251170997 _____ () C:\Users\Christian\Downloads\Windows6.1-KB958830-x64-RefreshPkg.msu
2014-07-27 15:50 - 2014-07-27 15:44 - 241162581 _____ () C:\Users\Christian\Downloads\Windows6.1-KB958830-x86-RefreshPkg.msu
2014-07-27 15:33 - 2012-04-05 12:06 - 00000000 ____D () C:\Program Files (x86)\K-3D 0.8.0.1
2014-07-27 15:14 - 2014-06-10 18:00 - 00000000 ____D () C:\Program Files (x86)\Drakensang - Am Fluss der Zeit
2014-07-27 15:14 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2014-07-27 15:13 - 2014-06-12 19:23 - 00000000 ____D () C:\Users\Christian\Documents\Drakensang_TRoT
2014-07-27 15:02 - 2014-07-27 15:02 - 00003132 _____ () C:\Windows\System32\Tasks\{921BBC8D-8938-456B-B469-E310D9DA4059}
2014-07-27 14:24 - 2013-09-29 18:58 - 00000000 ____D () C:\Program Files (x86)\RapidSolution
2014-07-27 14:24 - 2011-12-10 16:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audials 9
2014-07-27 10:49 - 2014-07-27 10:46 - 05125829 _____ () C:\Users\Christian\Downloads\ccsetup416.zip
2014-07-27 09:51 - 2014-07-27 09:51 - 00000017 _____ () C:\Users\Christian\AppData\Local\resmon.resmoncfg
2014-07-27 09:51 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\registration
2014-07-27 09:47 - 2012-06-04 09:20 - 00000000 ____D () C:\Users\Christian\Documents\Outlook-Dateien
2014-07-26 23:07 - 2014-07-26 23:07 - 00875472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr110.dll
2014-07-26 23:07 - 2014-07-26 23:07 - 00535008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp110.dll
2014-07-26 23:07 - 2014-07-26 23:07 - 00252400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vccorlib110.dll
2014-07-26 22:30 - 2014-07-26 22:30 - 00000000 ____D () C:\Users\Elisabeth_Franz\AppData\Local\Acer
2014-07-26 22:29 - 2014-07-26 22:29 - 00000000 ____D () C:\Users\Elisabeth_Franz\AppData\Roaming\CyberLink
2014-07-26 22:29 - 2014-07-26 22:29 - 00000000 ____D () C:\Users\Elisabeth_Franz\AppData\Local\PowerCinema
2014-07-26 22:28 - 2014-07-26 22:28 - 00000680 __RSH () C:\Users\Elisabeth_Franz\ntuser.pol
2014-07-26 22:28 - 2014-07-26 22:27 - 00000000 ____D () C:\Users\Elisabeth_Franz
2014-07-26 22:27 - 2014-07-26 22:27 - 00000020 ___SH () C:\Users\Elisabeth_Franz\ntuser.ini
2014-07-26 22:27 - 2014-07-26 22:27 - 00000000 _SHDL () C:\Users\Elisabeth_Franz\Vorlagen
2014-07-26 22:27 - 2014-07-26 22:27 - 00000000 _SHDL () C:\Users\Elisabeth_Franz\Startmenü
2014-07-26 22:27 - 2014-07-26 22:27 - 00000000 _SHDL () C:\Users\Elisabeth_Franz\Netzwerkumgebung
2014-07-26 22:27 - 2014-07-26 22:27 - 00000000 _SHDL () C:\Users\Elisabeth_Franz\Lokale Einstellungen
2014-07-26 22:27 - 2014-07-26 22:27 - 00000000 _SHDL () C:\Users\Elisabeth_Franz\Eigene Dateien
2014-07-26 22:27 - 2014-07-26 22:27 - 00000000 _SHDL () C:\Users\Elisabeth_Franz\Druckumgebung
2014-07-26 22:27 - 2014-07-26 22:27 - 00000000 _SHDL () C:\Users\Elisabeth_Franz\Documents\Eigene Musik
2014-07-26 22:27 - 2014-07-26 22:27 - 00000000 _SHDL () C:\Users\Elisabeth_Franz\Documents\Eigene Bilder
2014-07-26 22:27 - 2014-07-26 22:27 - 00000000 _SHDL () C:\Users\Elisabeth_Franz\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-07-26 22:27 - 2014-07-26 22:27 - 00000000 _SHDL () C:\Users\Elisabeth_Franz\AppData\Local\Verlauf
2014-07-26 22:27 - 2014-07-26 22:27 - 00000000 _SHDL () C:\Users\Elisabeth_Franz\AppData\Local\Anwendungsdaten
2014-07-26 22:27 - 2014-07-26 22:27 - 00000000 _SHDL () C:\Users\Elisabeth_Franz\Anwendungsdaten
2014-07-26 13:51 - 2014-07-26 13:51 - 00135168 _____ (G Data Software AG) C:\Windows\system32\Drivers\MiniIcpt.sys
2014-07-26 13:51 - 2014-07-26 13:51 - 00068608 _____ (G Data Software AG) C:\Windows\system32\Drivers\PktIcpt.sys
2014-07-26 13:51 - 2014-07-26 13:51 - 00065024 _____ (G Data Software AG) C:\Windows\system32\Drivers\HookCentre.sys
2014-07-26 13:51 - 2014-07-26 13:51 - 00057344 _____ (G Data Software AG) C:\Windows\system32\Drivers\GDBehave.sys
2014-07-26 13:50 - 2014-05-17 15:17 - 00000000 ____D () C:\ProgramData\G Data
2014-07-26 13:48 - 2014-07-26 13:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\G Data InternetSecurity CBE
2014-07-26 13:41 - 2014-05-17 15:18 - 00000000 ____D () C:\Program Files (x86)\G Data
2014-07-26 13:35 - 2011-11-01 13:55 - 00000000 ____D () C:\Users\Elisabeth & Franz
2014-07-26 13:15 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\Setup
2014-07-26 13:15 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\oobe
2014-07-26 13:15 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\com
2014-07-25 12:16 - 2014-07-25 12:16 - 00000017 _____ () C:\Windows\SysWOW64\shortcut_ex.dat
2014-07-25 03:22 - 2011-06-04 21:44 - 00000000 ____D () C:\Recovery
2014-07-25 00:54 - 2014-07-25 00:54 - 00007120 ____N () C:\bootsqm.dat
2014-07-24 17:00 - 2009-07-14 06:45 - 00024576 _____ () C:\Windows\system32\umstartup.etl
2014-07-24 06:36 - 2009-07-14 07:08 - 00032640 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-07-23 16:12 - 2014-07-23 16:01 - 00000000 ____D () C:\ProgramData\UcusIkcic
2014-07-16 20:40 - 2014-07-02 20:17 - 00000000 ____D () C:\Users\Christian\Documents\Steganos Safe
Some content of TEMP:
====================
C:\Users\Christian\AppData\Local\Temp\Quarantine.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-06-26 22:17
==================== End Of Log ============================ --- --- ---
--- --- --- Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 15-08-2014
Ran by Christian at 2014-08-15 14:11:09
Running from C:\Users\Christian\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: G Data InternetSecurity CBE (Enabled - Up to date) {545C8713-0744-B079-87F8-349A6D5C8CF0}
AS: G Data InternetSecurity CBE (Enabled - Up to date) {EF3D66F7-217E-BFF7-BD48-0FE816DBC64D}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: G Data Personal Firewall (Enabled) {6C670636-4D2B-B121-ACA7-9DAF938FCB8B}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
1-abc.net File Encrypter (Remove only) (HKLM-x32\...\1-abc.net File Encrypter) (Version: - )
7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version: - )
Acer Backup Manager (HKLM-x32\...\InstallShield_{0B61BBD5-DA3C-409A-8730-0C3DC3B0F270}) (Version: 3.0.0.69 - NTI Corporation)
Acer Crystal Eye Webcam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 1.0.1216 - CyberLink Corp.)
Acer Crystal Eye Webcam (x32 Version: 1.0.1216 - CyberLink Corp.) Hidden
Acer ePower Management (HKLM-x32\...\{3DB0448D-AD82-4923-B305-D001E521A964}) (Version: 6.00.3000 - Acer Incorporated)
Acer eRecovery Management (HKLM-x32\...\{7F811A54-5A09-4579-90E1-C93498E230D9}) (Version: 5.00.3001 - Acer Incorporated)
Acer GameZone Console (HKLM-x32\...\{58F4D244-314F-4D26-B5EF-C28AB32E22CB}_is1) (Version: 6.1.0.9 - Oberon Media, Inc.)
Acer Registration (HKLM-x32\...\Acer Registration) (Version: 1.03.3003 - Acer Incorporated)
Acer ScreenSaver (HKLM-x32\...\Acer Screensaver) (Version: 1.1.0707.2010 - Acer Incorporated)
Acrobat.com (HKLM-x32\...\{287ECFA4-719A-2143-A09B-D6A12DE54E40}) (Version: 1.6.65 - Adobe Systems Incorporated)
ActiveState ActiveTcl 8.6.1.0 (HKLM-x32\...\ActiveTcl 8.6.1.0) (Version: 8.6.1.0 - ActiveState Software Inc.)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 14.0.0.110 - Adobe Systems Incorporated)
Adobe AIR (x32 Version: 14.0.0.110 - Adobe Systems Incorporated) Hidden
Adobe Flash Player 14 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 14.0.0.145 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.08) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.08 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.0.150 - Adobe Systems, Inc.)
AMD Fuel (Version: 2010.1118.1603.28745 - Ihr Firmenname) Hidden
ASAP Utilities (HKLM-x32\...\ASAP Utilities_is1) (Version: 5.0 - Bastien Mensink - A Must in Every Office BV)
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 1.0.0.36 - Atheros Communications Inc.)
ATI Catalyst Install Manager (HKLM\...\{4F125E8B-3B58-B80D-51E5-4FD110D1EF58}) (Version: 3.0.800.0 - ATI Technologies, Inc.)
Atmel Software Framework (HKLM-x32\...\{2D423733-FCBC-4E27-B026-D6D973C6496F}) (Version: 3.1.121 - Atmel)
Atmel Studio 6.0 (HKLM-x32\...\{51CC3953-2D06-47FA-832A-B7FD24D01322}) (Version: 6.0.1843 - Atmel)
Atmel USB (HKLM-x32\...\{E8F8861D-98E0-43FF-9E48-AC236CC3BE4E}) (Version: 10.6 - Atmel)
AVR CommandLine Tools (x32 Version: 1.0.11 - Atmel) Hidden
Backup Manager V3 (x32 Version: 3.0.0.69 - NTI Corporation) Hidden
BASCOM-AVR (HKLM-x32\...\{47F94730-ABD2-47F6-920E-EA8CDB6DD0C6}_is1) (Version: 2.0.7.5 - MCS Electronics)
Bing Bar (HKLM-x32\...\{08234a0d-cf39-4dca-99f0-0c5cb496da81}) (Version: 6.0.2282.0 - Microsoft Corporation)
Bing Bar Platform (x32 Version: 6.0.2282.0 - Microsoft Corporation) Hidden
BufferChm (x32 Version: 130.0.331.000 - Hewlett-Packard) Hidden
Catalyst Control Center - Branding (x32 Version: 1.00.0000 - ATI) Hidden
Catalyst Control Center Graphics Previews Common (x32 Version: 2010.1118.1603.28745 - ATI) Hidden
Catalyst Control Center InstallProxy (x32 Version: 2010.1118.1603.28745 - ATI Technologies, Inc.) Hidden
Catalyst Control Center Localization All (x32 Version: 2010.1118.1603.28745 - ATI) Hidden
Catalyst Control Center Profiles Mobile (x32 Version: 2010.1118.1603.28745 - ATI) Hidden
CCC Help Chinese Standard (x32 Version: 2010.1118.1602.28745 - ATI) Hidden
CCC Help Chinese Traditional (x32 Version: 2010.1118.1602.28745 - ATI) Hidden
CCC Help Czech (x32 Version: 2010.1118.1602.28745 - ATI) Hidden
CCC Help Danish (x32 Version: 2010.1118.1602.28745 - ATI) Hidden
CCC Help Dutch (x32 Version: 2010.1118.1602.28745 - ATI) Hidden
CCC Help English (x32 Version: 2010.1118.1602.28745 - ATI) Hidden
CCC Help Finnish (x32 Version: 2010.1118.1602.28745 - ATI) Hidden
CCC Help French (x32 Version: 2010.1118.1602.28745 - ATI) Hidden
CCC Help German (x32 Version: 2010.1118.1602.28745 - ATI) Hidden
CCC Help Greek (x32 Version: 2010.1118.1602.28745 - ATI) Hidden
CCC Help Hungarian (x32 Version: 2010.1118.1602.28745 - ATI) Hidden
CCC Help Italian (x32 Version: 2010.1118.1602.28745 - ATI) Hidden
CCC Help Japanese (x32 Version: 2010.1118.1602.28745 - ATI) Hidden
CCC Help Korean (x32 Version: 2010.1118.1602.28745 - ATI) Hidden
CCC Help Norwegian (x32 Version: 2010.1118.1602.28745 - ATI) Hidden
CCC Help Polish (x32 Version: 2010.1118.1602.28745 - ATI) Hidden
CCC Help Portuguese (x32 Version: 2010.1118.1602.28745 - ATI) Hidden
CCC Help Russian (x32 Version: 2010.1118.1602.28745 - ATI) Hidden
CCC Help Spanish (x32 Version: 2010.1118.1602.28745 - ATI) Hidden
CCC Help Swedish (x32 Version: 2010.1118.1602.28745 - ATI) Hidden
CCC Help Thai (x32 Version: 2010.1118.1602.28745 - ATI) Hidden
ccc-core-static (x32 Version: 2010.1118.1603.28745 - Ihr Firmenname) Hidden
ccc-utility64 (Version: 2010.1118.1603.28745 - ATI) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 4.16 - Piriform)
clear.fi (HKLM-x32\...\InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761}) (Version: 1.0.1223.00 - CyberLink Corp.)
clear.fi (x32 Version: 1.0.1223.00 - CyberLink Corp.) Hidden
clear.fi (x32 Version: 9.0.7209 - CyberLink Corp.) Hidden
clear.fi Client (HKLM-x32\...\{43AAE145-83CF-4C96-9A5E-756CEFCE879F}) (Version: 1.00.3008 - Acer Incorporated)
CodeBlocks (HKCU\...\CodeBlocks) (Version: 13.12 - The Code::Blocks Team)
Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.41.0.0 - Conexant)
Corporate Property (HKLM\...\UDK-2196078d-c1ae-44d8-90bc-986241eeac64) (Version: - Epic Games, Inc.)
Corporate Property (HKLM\...\UDK-9615d394-8de2-40ea-a621-5914d287d326) (Version: - Epic Games, Inc.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Dark Oberon (HKLM-x32\...\Dark Oberon) (Version: 1.0.2-RC2 - Dark Oberon Group)
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{5C78021E-3C8E-4EDF-97EA-E9B8D808FD6D}) (Version: - Microsoft)
Destinations (x32 Version: 130.0.0.0 - Hewlett-Packard) Hidden
DEUTSCHLAND SPIELT GAME CENTER (HKLM-x32\...\DSGPlayer) (Version: 1.0.0.46 - INTENIUM GmbH)
DHTML Editing Component (HKLM-x32\...\{2EA870FA-585F-4187-903D-CB9FFD21E2E0}) (Version: 6.02.0001 - Microsoft Corporation)
Dia (nur entfernen) (HKLM-x32\...\Dia) (Version: - )
DocProc (x32 Version: 13.0.0.0 - Hewlett-Packard) Hidden
Don't Panic! 2.0.5 (Build 26) (HKLM-x32\...\Don't Panic!) (Version: 2.0.5 (Build 26) - Adrian-Costin Tundrea)
Dream Day First Home (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113832110}) (Version: - Oberon Media)
Duden Korrektor Standard (HKLM-x32\...\{9B5D7FA6-9E73-426E-81C4-2C8FE5ACFBEF}) (Version: 7.00.0000 - Bibliographisches Institut GmbH)
EmRegSysSetup (x32 Version: 1.6.0.1306 - Engelmann GmbH) Hidden
eSobi v2 (HKLM-x32\...\InstallShield_{15D967B5-A4BE-42AE-9E84-64CD062B25AA}) (Version: 2.0.4.000274 - esobi Inc.)
eSobi v2 (x32 Version: 2.0.4.000274 - esobi Inc.) Hidden
ETDWare PS/2-X64 8.0.6.0_WHQL (HKLM\...\Elantech) (Version: 8.0.6.0 - ELAN Microelectronic Corp.)
Firebird SQL Server - MAGIX Edition (HKLM-x32\...\{34EB6245-C8D0-4D8A-B8D8-EEBFF7A91485}) (Version: 2.1.27.0 - MAGIX AG)
Folderico 4.0 RC11 (HKLM-x32\...\Folderico) (Version: 4.0 RC11 - Shedko ( www.softq.org ))
Formatwandler 2014 (HKLM-x32\...\{c27f2a3d-93d7-4112-b0ba-424b59be1ad2}) (Version: 6.0.5060.20182 - S.A.D.)
Formatwandler2014Setup (x32 Version: 6.0.0.1311 - Engelmann Media GmbH) Hidden
Free M4a to MP3 Converter 8.1 (HKLM-x32\...\Free M4a to MP3 Converter_is1) (Version: - ManiacTools.com)
Freeciv 2.3.1 (GTK+ client) (HKLM-x32\...\Freeciv-2.3.1-gtk2) (Version: - )
G Data InternetSecurity CBE (HKLM-x32\...\{85203592-3610-4FB9-AA11-15B2255B5A12}) (Version: 25.0.1.2 - G Data Software AG)
Galapago (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111307457}) (Version: - Oberon Media)
Genie Timeline (HKLM-x32\...\Genie Timeline) (Version: 5.0 - Genie9)
GIMP 2.8.0 (HKLM\...\GIMP-2_is1) (Version: 2.8.0 - The GIMP Team)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 36.0.1985.125 - Google Inc.)
Google Earth (HKLM-x32\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden
Google+ Auto Backup (HKLM-x32\...\{A50DE037-B5C0-4C8A-8049-B0C576B313D1}) (Version: 1.0.21.81 - Google)
GPBaseService2 (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden
GS Bücher-Verwaltung 4 (HKLM-x32\...\{7B3567D9-1619-4308-A7D4-CFF5CDFE6346}_is1) (Version: - Dipl.-Ing.(FH) Gert Spießhofer)
Haali Media Splitter (HKLM-x32\...\HaaliMkx) (Version: - )
HDX4DirectShowFilter (x32 Version: 1.0.0.1305 - Engelmann GmbH) Hidden
HP Deskjet 2050 J510 series - Grundlegende Software für das Gerät (HKLM\...\{C263ED32-78DB-40EB-8B12-2925C8213E28}) (Version: 22.0.334.0 - Hewlett-Packard Co.)
HP Deskjet 2050 J510 series Hilfe (HKLM-x32\...\{7A3DF2E2-CF13-44FB-A93E-F71D5381DB3F}) (Version: 140.0.61.61 - Hewlett Packard)
HP Imaging Device Functions 13.0 (HKLM\...\HP Imaging Device Functions) (Version: 13.0 - HP)
HP Photosmart Essential 3.5 (HKLM\...\HP Photosmart Essential) (Version: 3.5 - HP)
HP Scanjet G4000 Series (HKLM\...\{10297E58-2DFE-478B-9A1D-4B14E4E79CDF}) (Version: 13.0 - HP)
HP Solution Center 13.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 13.0 - HP)
HP Update (HKLM-x32\...\{787D1A33-A97B-4245-87C0-7174609A540C}) (Version: 5.002.005.003 - Hewlett-Packard)
hpg4000 (x32 Version: 13.0.0.0 - Ihr Firmenname) Hidden
HPPhotosmartEssential (x32 Version: 2.04.0000 - Hewlett-Packard) Hidden
HPProductAssistant (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden
Identity Card (HKLM-x32\...\Identity Card) (Version: 1.00.3003 - Acer Incorporated)
Image Comparator 1.4.4 (HKLM-x32\...\Image Comparator) (Version: 1.4.4 - )
Java 7 Update 65 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217065FF}) (Version: 7.0.650 - Oracle)
Java 8 Update 11 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418011FF}) (Version: 8.0.110 - Oracle Corporation)
Java Auto Updater (x32 Version: 2.8.11.12 - Oracle, Inc.) Hidden
JLink OB CDC Driver Package (HKLM\...\{CD0E9FFE-70DD-47E3-A7A5-750E9DE6F40B}) (Version: 1.2.1 - SEGGER)
Joe (HKLM-x32\...\{36A1E3D6-288A-4EEE-A081-30D9808B2BE3}) (Version: 3.05.0100 - Wirth New Media Sarl)
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
KompoZer 0.8b3 (HKLM-x32\...\{20aa4150-b5f4-11de-8a39-0800200c9a66}_is1) (Version: - KompoZer)
Launch Manager (HKLM-x32\...\LManager) (Version: 5.0.5 - Acer Inc.)
LibreOffice 4.3.0.4 (HKLM-x32\...\{5C005E2A-AEAE-4DF7-B7CA-1E6DCDD2AEA4}) (Version: 4.3.0.4 - The Document Foundation)
LTspice IV (HKLM-x32\...\LTspice IV) (Version: - )
Luxor Evolved (HKLM-x32\...\Luxor Evolved) (Version: 1.0.0.0 - INTENIUM GmbH)
MAGIX Screenshare (HKLM-x32\...\{D4073F62-505F-4E05-AB13-B399E67C0DED}) (Version: 4.3.6.1987 - MAGIX AG)
MAGIX Speed burnR (MSI) (HKLM-x32\...\{EC154DE4-54C6-427A-941F-FCF9B3A78DF1}) (Version: 7.0.2.6 - MAGIX AG)
MAGIX Video deluxe 17 Plus (HKLM-x32\...\MAGIX_MSI_Videodeluxe17_plus) (Version: 10.0.2.8 - MAGIX AG)
MAGIX Video deluxe 17 Plus (x32 Version: 10.0.2.8 - MAGIX AG) Hidden
Malwarebytes Anti-Malware Version 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation)
MediaEspresso (x32 Version: 1.0.1210_33255 - CyberLink Corp.) Hidden
Mediapurge (HKLM-x32\...\Mediapurge) (Version: 5.56 - Peter Lorenz)
Medieval II Total War (HKLM-x32\...\{C0698BDA-0D29-40EE-8570-A31106DF9AB1}) (Version: 1.03.000 - SEGA)
Medieval II Total War : Kingdoms : Americas (HKLM-x32\...\{75983B66-804C-40D1-BA13-64DAF652A6F1}) (Version: 1.03.000 - SEGA)
Medieval II Total War : Kingdoms : Britannia (HKLM-x32\...\{CEDDEE73-3D36-41C2-AA40-29355D9FBD63}) (Version: 1.03.000 - SEGA)
Medieval II Total War : Kingdoms : Crusades (HKLM-x32\...\{02A10468-2F1C-447C-AD8E-4DEDDEA25AE2}) (Version: 1.03.000 - SEGA)
Medieval II Total War : Kingdoms : Teutonic (HKLM-x32\...\{7AEE1963-7001-4C37-BC20-2FAEB74AA41C}) (Version: 1.03.000 - SEGA)
Merriam Websters Spell Jam (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112662477}) (Version: - Oberon Media)
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Multi-Targeting Pack (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (x32 Version: 12.0.6012.5000 - Microsoft Corporation) Hidden
Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170) (HKLM-x32\...\{41785C66-90F2-40CE-8CB5-1C94BFC97280}) (Version: 3.5.30730.0 - Microsoft Corporation)
Microsoft Default Manager (x32 Version: 2.2.114.0 - Microsoft Corporation) Hidden
Microsoft Help Viewer 1.0 (HKLM\...\Microsoft Help Viewer 1.0) (Version: 1.0.30319 - Microsoft Corporation)
Microsoft Help Viewer 1.0 (Version: 1.0.30319 - Microsoft Corporation) Hidden
Microsoft Office Access MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Home and Business 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Office Klick-und-Los 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Klick-und-Los 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Office 64-bit Components 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Italian) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Publisher MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Single Image 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP1 English (HKLM-x32\...\{E59113EB-0285-4BFD-A37A-B79EAC6B8F4B}) (Version: 3.5.5692.0 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP1 x64 English (HKLM\...\{F83779DF-E1F5-43A2-A7BE-732F856FADB7}) (Version: 3.5.5692.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Runtime - 10.0.30319 (HKLM-x32\...\{6A86554B-8928-30E4-A53C-D7337689134D}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual Studio 2010 Shell (Isolated) - ENU (HKLM-x32\...\{D64B6984-242F-32BC-B008-752806E5FC44}) (Version: 10.0.30319 - Microsoft Corporation)
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MyWinLocker (Version: 4.0.14.11 - Egis Technology Inc.) Hidden
MyWinLocker 4 (x32 Version: 4.0.14.11 - Egis Technology Inc.) Hidden
MyWinLocker Suite (HKLM-x32\...\InstallShield_{17DF9714-60C9-43C9-A9C2-32BCAED44CBE}) (Version: 4.0.14.11 - Egis Technology Inc.)
MyWinLocker Suite (x32 Version: 4.0.14.11 - Egis Technology Inc.) Hidden
NetServer 1.03 (HKLM-x32\...\{7A5508A1-15C9-4755-B9E8-2C6C6E0EDF14}_is1) (Version: - WhiteLabel)
NTI Media Maker 9 (HKLM-x32\...\InstallShield_{D3D5C4E8-040F-4C6F-8105-41D43CF94F44}) (Version: 9.0.2.8939 - NTI Corporation)
NTI Media Maker 9 (x32 Version: 9.0.2.8939 - NTI Corporation) Hidden
OCR Software by I.R.I.S. 13.0 (HKLM\...\HPOCR) (Version: 13.0 - HP)
OpenOffice.org 3.2 (HKLM-x32\...\{2217B0B4-35CB-48C6-B640-864DF2F30F99}) (Version: 3.2.9483 - OpenOffice.org)
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.)
PL-2303 USB-to-Serial (HKLM-x32\...\{ECC3713C-08A4-40E3-95F1-7D0704F1CE5E}) (Version: - )
Poker Pop (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111355427}) (Version: - Oberon Media)
PonyProg v1.17h (HKLM-x32\...\PonyProg v1.17h_is1) (Version: - )
Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.7600.30122 - Realtek Semiconductor Corp.)
Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
Rome - Total War - Gold Edition (HKLM-x32\...\{2E97F7E8-ABDE-4E0D-B0AD-B6B4BAD89E24}) (Version: 1.6 - The Creative Assembly)
SAMSUNG Mobile Modem Driver Set (HKLM\...\SAMSUNG Mobile Modem) (Version: - )
Samsung Mobile phone USB driver Drive Software (HKLM\...\Samsung Mobile phone USB driver Drive) (Version: - )
SAMSUNG Mobile USB Modem 1.0 Software (HKLM\...\SAMSUNG Mobile USB Modem 1.0) (Version: - )
SAMSUNG Mobile USB Modem Software (HKLM\...\SAMSUNG Mobile USB Modem) (Version: - )
Samsung PC Studio 3 USB Driver Installer (HKLM-x32\...\{EBA29752-DDD2-4B62-B2E3-9841F92A3E3A}) (Version: 3.2.0.70701 - Samsung Electronics Co., Ltd.)
Scan (x32 Version: 13.0.0.0 - Hewlett-Packard) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (x32 Version: - Microsoft) Hidden
Shredder (Version: 2.0.8.7 - Egis Technology Inc.) Hidden
Shredder (x32 Version: 2.0.8.7 - Egis Technology Inc.) Hidden
SilentEye (HKLM-x32\...\SilentEye 0.4.1) (Version: 0.4.1 - SilentEye)
SolutionCenter (x32 Version: 130.0.373.000 - Hewlett-Packard) Hidden
Steganos Safe 14 (HKLM-x32\...\{13B7FBFB-622E-4002-8570-594798E6167D}) (Version: 14.2.2 - Steganos Software GmbH)
Studie zur Verbesserung von HP Deskjet 2050 J510 series Produkten (HKLM\...\{A1F8353C-39A2-4327-867E-C6714131BEFC}) (Version: 22.0.334.0 - Hewlett-Packard Co.)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Technotrend Viewer (HKLM-x32\...\TT-Viewer_is1) (Version: - CM&V)
T-Online 6.0 (HKLM-x32\...\{B1275E23-717A-4D52-997A-1AD1E24BC7F3}) (Version: - )
T-Online WLAN-Access Finder (HKLM-x32\...\{295C31E5-3F91-498E-9623-DA24D2FA2B6A}) (Version: - )
Unity Web Player (HKCU\...\UnityWebPlayer) (Version: - Unity Technologies ApS)
Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{B4A38370-2ADB-46B0-A1B0-0C4A2F7DCA31}) (Version: - Microsoft)
Update for Microsoft Excel 2010 (KB2837600) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{4ACD847E-547D-493F-9A86-F73EAE1B5174}) (Version: - Microsoft)
Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{302A8FE3-EBF5-486C-A431-16A1CD914443}) (Version: - Microsoft)
Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{302A8FE3-EBF5-486C-A431-16A1CD914443}) (Version: - Microsoft)
Update for Microsoft InfoPath 2010 (KB2817369) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{4EEA3D3E-989C-4DF4-AB0A-3042C0C12AA3}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2494150) (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{3FCFD88F-4D13-4F38-8625-ABABEA7F61EA}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DADF7E25-FFA4-4D02-BE84-1DAE62C18516}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{287A1E92-9E41-4BC1-8920-B3D0E9220800}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{9D69691D-823D-4C3E-9B12-563A3F520366}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{ECFE33A3-B8B7-439A-ADE4-59FBD29EF9B8}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{ECFE33A3-B8B7-439A-ADE4-59FBD29EF9B8}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{35698CB7-AAA2-4577-B505-DBFF504AEF23}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{5AA578BB-759C-40FD-9661-A737C0884541}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2825635) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{F1A20C69-9FE5-40FD-9CD5-84EABC2EF64A}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2837581) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{334FB202-28D7-4BA4-8BC9-4FE4AB233EA0}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2837606) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{B0D672F7-883E-4279-8E75-D97A5445AB46}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2878252) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{B0DB9F71-E0F7-4FE6-8925-35B860CAC0C4}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2881028) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0407-0000-0000000FF1CE}_Office14.SingleImage_{EAD7BEF9-B28C-425F-B2C5-538CB27EF013}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2881028) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0409-0000-0000000FF1CE}_Office14.SingleImage_{C0BDC1DE-C35E-422B-8CBD-C1D555468720}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2881028) 32-Bit Edition (HKLM-x32\...\{90140000-001F-040C-0000-0000000FF1CE}_Office14.SingleImage_{089DBFD7-8211-43B2-AAAE-5BDD8C23E3A8}) (Version: - Microsoft)
Update for Microsoft OneNote 2010 (KB2837595) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{51CCA922-A0CC-47C4-8910-6936D97CAC2E}) (Version: - Microsoft)
Update for Microsoft OneNote 2010 (KB2837595) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{51CCA922-A0CC-47C4-8910-6936D97CAC2E}) (Version: - Microsoft)
Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition (HKLM-x32\...\{90140000-001A-0407-0000-0000000FF1CE}_Office14.SingleImage_{A0657506-69DC-44AE-8DC1-58E7C6F5B1C9}) (Version: - Microsoft)
Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{2AB483F1-C86E-427A-83B4-23889B03512D}) (Version: - Microsoft)
Update for Microsoft PowerPoint 2010 (KB2837579) 32-Bit Edition (HKLM-x32\...\{90140000-0018-0407-0000-0000000FF1CE}_Office14.SingleImage_{40EC8FB1-5202-469D-9232-C28FB1C6FC64}) (Version: - Microsoft)
Update for Microsoft PowerPoint 2010 (KB2837579) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{2BA40F82-F3A4-441C-BF1A-ED4C42FF4872}) (Version: - Microsoft)
Update for Microsoft SharePoint Workspace 2010 (KB2760601) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{F9F5A080-AF38-4966-9A6B-C43DCA465035}) (Version: - Microsoft)
Update for Microsoft Visio 2010 (KB2880526) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{7B29D8B8-6A87-496C-A65E-B935E740448A}) (Version: - Microsoft)
Update for Microsoft Visio Viewer 2010 (KB2837587) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{38CF30E4-3348-4BD1-A859-B630C355A56F}) (Version: - Microsoft)
Update for Microsoft Word 2010 (KB2880529) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{B9B89E01-5B6B-4F73-BC34-B2C0D8ACB4CD}) (Version: - Microsoft)
WebM Project Directshow Filters (HKCU\...\webmdshow) (Version: - )
WebReg (x32 Version: 130.0.132.017 - Hewlett-Packard) Hidden
Welcome Center (HKLM-x32\...\Acer Welcome Center) (Version: 1.02.3005 - Acer Incorporated)
Widelands (HKLM-x32\...\{WIDELANDS-WIN32-IS}_is1) (Version: Widelands - Widelands Development Team)
WinAVR 20100110 (remove only) (HKLM-x32\...\WinAVR-20100110) (Version: 20100110 - )
Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3502.0922 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Fotogalerie (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4225.0 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Language Selector (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mesh (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mesh ActiveX control for remote connections (HKLM-x32\...\{C5398A89-516C-4DAF-BA07-EE7949090E56}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Messenger (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live MIME IFilter (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Remote Client (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Client Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Service (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Service Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows-Treiberpaket - Segger (jlink_ob_x64) USB (03/13/2012 2.6.6.2) (HKLM\...\6D4C34D12E9233ABADF9D04ADF9E288A7ECF3B5B) (Version: 03/13/2012 2.6.6.2 - Segger)
Windows-Treiberpaket - SEGGER (usbser) Ports (01/25/2012 6.0.2600.4) (HKLM\...\BD6BF8BBF7BE0D0091163F649A1A423B7EB9D4F1) (Version: 01/25/2012 6.0.2600.4 - SEGGER)
WMV9/VC-1 Video Playback (Version: 1.00.0000 - ATI Technologies Inc.) Hidden
Xiph.Org Open Codecs 0.85.17777 (HKLM-x32\...\Open Codecs) (Version: 0.85.17777 - Xiph.Org)
==================== Custom CLSID (selected items): ==========================
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
==================== Restore Points =========================
04-08-2014 11:19:43 Ende der Bereinigung
05-08-2014 17:01:50 Revo Uninstaller's restore point - Free M4a to MP3 Converter 8.1
06-08-2014 17:27:35 Revo Uninstaller's restore point - HP Photo Creations
09-08-2014 08:51:06 Revo Uninstaller's restore point - Secunia PSI (3.0.0.9016)
09-08-2014 08:51:06 Windows Update
09-08-2014 20:28:03 Revo Uninstaller's restore point - LibreOffice 4.2.1.1
10-08-2014 07:39:36 Revo Uninstaller's restore point - System Explorer 3.9.0
12-08-2014 16:08:57 Installed LibreOffice 4.3.0.4
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 04:34 - 2014-07-29 19:41 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Scheduled Tasks (whitelisted) =============
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
Task: {08BA724D-5FB3-4BA2-B994-6045F73CAB56} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-07-23] (Piriform Ltd)
Task: {15E5ECE3-5241-497A-8F33-FCAD450AF722} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-12-17] (Google Inc.)
Task: {2051E63A-9997-47CA-99CD-63053D591E9B} - System32\Tasks\{E99693F2-C2C8-43CE-9790-71B3F9A5DC00} => C:\Program Files (x86)\Drakensang - Am Fluss der Zeit\drakensang.exe
Task: {2C806F42-0027-42F1-9EA1-F4FA2F98F773} - System32\Tasks\{0052AD6E-D11A-4249-8C62-1107DD7F0DC7} => C:\Program Files (x86)\NetServer\NetServer.exe [2008-12-17] (WhiteLabel)
Task: {3537DF88-9FFB-465C-A183-4883FC6E840B} - System32\Tasks\clear.fi => C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fi.exe [2010-12-23] (Acer Incorporated)
Task: {3BF173F6-7349-447C-9B83-6221F0CEFEA7} - System32\Tasks\{6089F4BF-6094-426C-A801-4C449C3958E5} => C:\Users\Christian\Desktop\Mein_Zimmer\CodeBlocks\zum_Probieren\zum_Probieren.exe [2014-07-22] ()
Task: {4E881B82-4838-4A93-A7F1-7BB58544D6EE} - System32\Tasks\{E5E23210-1BE8-4A4A-BDAB-0144C3A23DFC} => C:\Users\Christian\Desktop\Mein_Zimmer\CodeBlocks\zum_Probieren\zum_Probieren.exe [2014-07-22] ()
Task: {6039A4D5-A97A-4743-A61D-A84D27806795} - System32\Tasks\clear.fiAgent => C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe [2010-12-23] (CyberLink Corp.)
Task: {635D04D9-1D23-495A-80D4-17BB5EEFE2CC} - System32\Tasks\{D425B25F-6EB3-4FA3-ADE7-F13A28749ED8} => C:\Users\Christian\Desktop\Mein_Zimmer\CodeBlocks\zum_Probieren\zum_Probieren.exe [2014-07-22] ()
Task: {66BD6988-278A-4E50-80F9-F1D845B06DA2} - System32\Tasks\HP Deskjet 2050 J510 series.exe => C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\HP Deskjet 2050 J510 series.exe [2010-06-14] (Hewlett-Packard Co.)
Task: {6EB64965-BD60-4754-816B-4A65A173A9B9} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-12-17] (Google Inc.)
Task: {70584797-5A6D-4B9C-AA01-CDD6AA8656A4} - System32\Tasks\{AADAB19A-46B3-4EF6-B4F6-B30D6D3A7B15} => C:\Users\Christian\Desktop\Mein_Zimmer\CodeBlocks\zum_Probieren\zum_Probieren.exe [2014-07-22] ()
Task: {95121BDC-E8B9-475F-B11A-71C2D4F3A6FA} - System32\Tasks\{D51D9336-5828-4932-A66F-2FD2BC60E506} => C:\Users\Christian\Desktop\Mein_Zimmer\CodeBlocks\zum_Probieren\zum_Probieren.exe [2014-07-22] ()
Task: {A1664CA8-5C41-46C7-BFCA-EA69E4B1B0A2} - System32\Tasks\{15605F0B-8A01-46F7-A6D5-0379263E4B36} => C:\Program Files (x86)\NetServer\NetServer.exe [2008-12-17] (WhiteLabel)
Task: {B0F352FE-CFB7-4924-8D89-E3138F0E931D} - System32\Tasks\{3521027C-B426-4DA7-ABB7-795FB695198B} => C:\Program Files (x86)\NetServer\NetServer.exe [2008-12-17] (WhiteLabel)
Task: {C34C5CCA-3574-4D60-A634-10C2C356181D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-08-05] (Adobe Systems Incorporated)
Task: {C55B4A0D-2AE1-4A57-BD86-D95036FCFC95} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup
Task: {CAF5A523-A132-44D9-9E9F-B97D390186C4} - System32\Tasks\HPCustParticipation HP Deskjet 2050 J510 series => C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\HPCustPartic.exe [2010-06-14] (Hewlett-Packard Co.)
Task: {D2D7AAF2-6F2B-471C-AE0E-046882CD0992} - System32\Tasks\{BEC9FFDD-7398-4F5A-9F86-EE91B8391092} => C:\Program Files (x86)\Atari\Asterix & Obelix XXL\Asterix.exe
Task: {D582A974-E7B8-4F79-8EF6-3706313C9BA7} - System32\Tasks\{0E07D3E7-691E-43FC-B698-D8E54F4FBF79} => C:\Program Files (x86)\NetServer\NetServer.exe [2008-12-17] (WhiteLabel)
Task: {D7D5B3A8-74B4-4F59-971F-53B3C2D7A12F} - System32\Tasks\DMREngine => C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe [2010-12-23] (CyberLink)
Task: {E8F40A3E-FB2B-4A98-A71F-B28B113177EB} - System32\Tasks\{BB670F66-3C55-4355-9265-07B36BF45A30} => C:\Program Files (x86)\NetServer\NetServer.exe [2008-12-17] (WhiteLabel)
Task: {FBA1DE47-64A1-4CFB-8133-91E3296F46A8} - System32\Tasks\{2DFE166A-788A-4C85-9BBA-95C63110EB33} => C:\Users\Christian\Desktop\Mein_Zimmer\CodeBlocks\zum_Probieren\zum_Probieren.exe [2014-07-22] ()
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2013-08-13 15:52 - 2013-04-15 11:50 - 00198144 _____ () C:\Windows\System32\HP1006LM.DLL
2013-08-13 15:52 - 2013-04-15 11:50 - 00065024 _____ () C:\Windows\system32\spool\PRTPROCS\x64\HP1006PP.dll
2013-12-02 15:29 - 2013-12-02 15:29 - 00332800 _____ () C:\Program Files\Genie9\Genie Timeline\OnlineHandler.dll
2013-11-20 09:39 - 2013-11-20 09:39 - 00045568 _____ () C:\Program Files\Genie9\Genie Timeline\GSLogging.dll
2013-12-02 15:29 - 2013-12-02 15:29 - 00491008 _____ () C:\Program Files\Genie9\Genie Timeline\GSIndexDB.dll
2012-02-02 11:16 - 2012-02-02 11:16 - 00740864 _____ () C:\Program Files\Genie9\Genie Timeline\sqlite3.dll
2012-04-24 11:29 - 2012-04-24 11:29 - 00011264 _____ () C:\Program Files\Genie9\Genie Timeline\RWLock.dll
2013-12-02 15:29 - 2013-12-02 15:29 - 00211456 _____ () C:\Program Files\Genie9\Genie Timeline\Settings.dll
2013-11-20 09:39 - 2013-11-20 09:39 - 00089600 _____ () C:\Program Files\Genie9\Genie Timeline\GSEncryption.dll
2013-12-02 15:29 - 2013-12-02 15:29 - 00087040 _____ () C:\Program Files\Genie9\Genie Timeline\QueueManager.dll
2013-12-02 15:29 - 2013-12-02 15:29 - 00722944 _____ () C:\Program Files\Genie9\Genie Timeline\GSBackupManager.dll
2013-12-02 15:29 - 2013-12-02 15:29 - 00371200 _____ () C:\Program Files\Genie9\Genie Timeline\GSWatcher4.dll
2013-02-11 13:34 - 2013-02-11 13:34 - 00045056 _____ () C:\Program Files\Genie9\Genie Timeline\pcre.dll
2013-02-11 13:34 - 2013-02-11 13:34 - 00097792 _____ () C:\Program Files\Genie9\Genie Timeline\pcrebase.dll
2013-12-02 15:29 - 2013-12-02 15:29 - 00054784 _____ () C:\Program Files\Genie9\Genie Timeline\GSLogManager.dll
2012-02-02 11:16 - 2012-02-02 11:16 - 00010752 _____ () C:\Program Files\Genie9\Genie Timeline\VSSEngine_Proxy.dll
2013-11-20 09:39 - 2013-11-20 09:39 - 00058368 _____ () C:\Program Files\Genie9\Genie Timeline\GSLibrariesManager.dll
2012-02-02 11:16 - 2012-02-02 11:16 - 00031232 _____ () C:\Program Files\Genie9\Genie Timeline\VSSEngine_W2K3.dll
2010-11-18 17:13 - 2010-11-18 17:13 - 00079872 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Services.dll
2010-11-18 17:14 - 2010-11-18 17:14 - 00073728 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll
2013-12-19 04:42 - 2013-12-19 04:42 - 00350840 ____N () C:\Program Files (x86)\Common Files\G Data\AVKProxy\PktIcpt2x64.dll
2013-12-02 15:29 - 2013-12-02 15:29 - 00063488 _____ () C:\Program Files\Genie9\Genie Timeline\XBalloonMsgDll.dll
2013-11-20 09:39 - 2013-11-20 09:39 - 00093696 _____ () C:\Program Files\Genie9\Genie Timeline\GSCurl.dll
2010-11-12 03:22 - 2010-11-12 03:22 - 00465640 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\sqlite3.dll
2010-11-12 03:22 - 2010-11-12 03:22 - 01081664 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\ACE.dll
2010-11-12 03:22 - 2010-11-12 03:22 - 00125760 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\MailConverter32.dll
2010-12-23 15:46 - 2010-12-23 15:46 - 00210312 _____ () C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\CLNetMediaDMA.dll
==================== Alternate Data Streams (whitelisted) =========
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
AlternateDataStreams: C:\ProgramData\Temp:0B9176C0
AlternateDataStreams: C:\ProgramData\Temp:1A60DE96
AlternateDataStreams: C:\ProgramData\Temp:4D066AD2
AlternateDataStreams: C:\ProgramData\Temp:5D7E5A8F
AlternateDataStreams: C:\ProgramData\Temp:93EB7685
AlternateDataStreams: C:\ProgramData\Temp:CDFF58FE
AlternateDataStreams: C:\ProgramData\Temp:E1F04E8D
==================== Safe Mode (whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MSIServer => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MSIServer => ""="Service"
==================== EXE Association (whitelisted) =============
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
==================== MSCONFIG/TASK MANAGER disabled items =========
(Currently there is no automatic fix for this section.)
MSCONFIG\startupreg: (default) =>
MSCONFIG\startupreg: ETDCtrl => %ProgramFiles%\Elantech\ETDCtrl.exe
MSCONFIG\startupreg: LManager => C:\Program Files (x86)\Launch Manager\LManager.exe
MSCONFIG\startupreg: MDS_Menu => "C:\Program Files (x86)\Acer\clear.fi\MediaEspresso\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Acer\clear.fi\MediaEspresso" UpdateWithCreateOnce "Software\CyberLink\MediaEspresso\6.1"
MSCONFIG\startupreg: NPSStartup =>
MSCONFIG\startupreg: OOTag => C:\Program Files (x86)\Acer\OOBEOffer\ootag.exe
MSCONFIG\startupreg: SAFE14 File Redirection Starter => "C:\Program Files (x86)\Steganos Safe 14\fredirstarter.exe"
MSCONFIG\startupreg: Steganos HotKeys => "C:\Program Files (x86)\Steganos Safe 14\SteganosHotKeyService.exe"
MSCONFIG\startupreg: TrayServer => C:\PROGRA~2\MAGIX\VIDEO_~1\TrayServer.exe
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (08/15/2014 00:46:03 PM) (Source: System Restore) (EventID: 8193) (User: )
Description: Fehler beim Erstellen des Wiederherstellungspunkts (Prozess = C:\Windows\system32\svchost.exe -k netsvcs; Beschreibung = Windows Update; Fehler = 0x81000101).
Error: (08/13/2014 05:45:41 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm atmelstudio.exe, Version 6.0.0.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: 103c
Startzeit: 01cfb70a0b2482bb
Endzeit: 468
Anwendungspfad: C:\Program Files (x86)\Atmel\Atmel Studio 6.0\atmelstudio.exe
Berichts-ID: d81e0008-2300-11e4-b8a2-1c7508bccd37
Error: (08/12/2014 06:19:05 PM) (Source: MsiInstaller) (EventID: 11310) (User: Christian-PC)
Description: Produkt: LibreOffice 4.2.1.1 -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Config.Msi\1454e0.rbf. Systemfehler 5. Überprüfen Sie, dass Sie Zugriff auf das Verzeichnis haben.
Error: (08/12/2014 06:19:04 PM) (Source: MsiInstaller) (EventID: 11310) (User: Christian-PC)
Description: Produkt: LibreOffice 4.2.1.1 -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Config.Msi\1454c4.rbf. Systemfehler 5. Überprüfen Sie, dass Sie Zugriff auf das Verzeichnis haben.
Error: (08/12/2014 06:19:02 PM) (Source: MsiInstaller) (EventID: 11310) (User: Christian-PC)
Description: Produkt: LibreOffice 4.2.1.1 -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Config.Msi\145489.rbf. Systemfehler 5. Überprüfen Sie, dass Sie Zugriff auf das Verzeichnis haben.
Error: (08/12/2014 06:19:00 PM) (Source: MsiInstaller) (EventID: 11310) (User: Christian-PC)
Description: Produkt: LibreOffice 4.2.1.1 -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Config.Msi\145458.rbf. Systemfehler 5. Überprüfen Sie, dass Sie Zugriff auf das Verzeichnis haben.
Error: (08/12/2014 06:18:59 PM) (Source: MsiInstaller) (EventID: 11310) (User: Christian-PC)
Description: Produkt: LibreOffice 4.2.1.1 -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Config.Msi\14542e.rbf. Systemfehler 5. Überprüfen Sie, dass Sie Zugriff auf das Verzeichnis haben.
Error: (08/12/2014 06:18:58 PM) (Source: MsiInstaller) (EventID: 11310) (User: Christian-PC)
Description: Produkt: LibreOffice 4.2.1.1 -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Config.Msi\14541f.rbf. Systemfehler 5. Überprüfen Sie, dass Sie Zugriff auf das Verzeichnis haben.
Error: (08/12/2014 06:18:57 PM) (Source: MsiInstaller) (EventID: 11310) (User: Christian-PC)
Description: Produkt: LibreOffice 4.2.1.1 -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Config.Msi\145412.rbf. Systemfehler 5. Überprüfen Sie, dass Sie Zugriff auf das Verzeichnis haben.
Error: (08/12/2014 06:18:56 PM) (Source: MsiInstaller) (EventID: 11310) (User: Christian-PC)
Description: Produkt: LibreOffice 4.2.1.1 -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Config.Msi\1453e5.rbf. Systemfehler 5. Überprüfen Sie, dass Sie Zugriff auf das Verzeichnis haben.
System errors:
=============
Error: (08/15/2014 00:46:42 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst GenieTimelineService erreicht.
Error: (08/15/2014 00:46:02 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst fdPHost erreicht.
Error: (08/15/2014 11:24:25 AM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Der Dienst "Windows Update" wurde nicht richtig gestartet.
Error: (08/15/2014 11:18:46 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "lemsgt" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1275
Error: (08/15/2014 11:18:46 AM) (Source: Application Popup) (EventID: 1060) (User: )
Description: Aufgrund der Inkompatibilität mit diesem System wurde \SystemRoot\SysWow64\DRIVERS\lemsgt.sys nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten.
Error: (08/15/2014 11:18:46 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "hwpsgt" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1275
Error: (08/15/2014 11:18:46 AM) (Source: Application Popup) (EventID: 1060) (User: )
Description: Aufgrund der Inkompatibilität mit diesem System wurde \SystemRoot\SysWow64\DRIVERS\hwpsgt.sys nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten.
Error: (08/15/2014 11:18:43 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "TVicPort" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (08/14/2014 06:01:23 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "lemsgt" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1275
Error: (08/14/2014 06:01:23 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: Aufgrund der Inkompatibilität mit diesem System wurde \SystemRoot\SysWow64\DRIVERS\lemsgt.sys nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten.
Microsoft Office Sessions:
=========================
Error: (08/15/2014 00:46:03 PM) (Source: System Restore) (EventID: 8193) (User: )
Description: C:\Windows\system32\svchost.exe -k netsvcsWindows Update0x81000101
Error: (08/13/2014 05:45:41 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: atmelstudio.exe6.0.0.0103c01cfb70a0b2482bb468C:\Program Files (x86)\Atmel\Atmel Studio 6.0\atmelstudio.exed81e0008-2300-11e4-b8a2-1c7508bccd37
Error: (08/12/2014 06:19:05 PM) (Source: MsiInstaller) (EventID: 11310) (User: Christian-PC)
Description: Produkt: LibreOffice 4.2.1.1 -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Config.Msi\1454e0.rbf. Systemfehler 5. Überprüfen Sie, dass Sie Zugriff auf das Verzeichnis haben.(NULL)(NULL)(NULL)(NULL)(NULL)
Error: (08/12/2014 06:19:04 PM) (Source: MsiInstaller) (EventID: 11310) (User: Christian-PC)
Description: Produkt: LibreOffice 4.2.1.1 -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Config.Msi\1454c4.rbf. Systemfehler 5. Überprüfen Sie, dass Sie Zugriff auf das Verzeichnis haben.(NULL)(NULL)(NULL)(NULL)(NULL)
Error: (08/12/2014 06:19:02 PM) (Source: MsiInstaller) (EventID: 11310) (User: Christian-PC)
Description: Produkt: LibreOffice 4.2.1.1 -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Config.Msi\145489.rbf. Systemfehler 5. Überprüfen Sie, dass Sie Zugriff auf das Verzeichnis haben.(NULL)(NULL)(NULL)(NULL)(NULL)
Error: (08/12/2014 06:19:00 PM) (Source: MsiInstaller) (EventID: 11310) (User: Christian-PC)
Description: Produkt: LibreOffice 4.2.1.1 -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Config.Msi\145458.rbf. Systemfehler 5. Überprüfen Sie, dass Sie Zugriff auf das Verzeichnis haben.(NULL)(NULL)(NULL)(NULL)(NULL)
Error: (08/12/2014 06:18:59 PM) (Source: MsiInstaller) (EventID: 11310) (User: Christian-PC)
Description: Produkt: LibreOffice 4.2.1.1 -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Config.Msi\14542e.rbf. Systemfehler 5. Überprüfen Sie, dass Sie Zugriff auf das Verzeichnis haben.(NULL)(NULL)(NULL)(NULL)(NULL)
Error: (08/12/2014 06:18:58 PM) (Source: MsiInstaller) (EventID: 11310) (User: Christian-PC)
Description: Produkt: LibreOffice 4.2.1.1 -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Config.Msi\14541f.rbf. Systemfehler 5. Überprüfen Sie, dass Sie Zugriff auf das Verzeichnis haben.(NULL)(NULL)(NULL)(NULL)(NULL)
Error: (08/12/2014 06:18:57 PM) (Source: MsiInstaller) (EventID: 11310) (User: Christian-PC)
Description: Produkt: LibreOffice 4.2.1.1 -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Config.Msi\145412.rbf. Systemfehler 5. Überprüfen Sie, dass Sie Zugriff auf das Verzeichnis haben.(NULL)(NULL)(NULL)(NULL)(NULL)
Error: (08/12/2014 06:18:56 PM) (Source: MsiInstaller) (EventID: 11310) (User: Christian-PC)
Description: Produkt: LibreOffice 4.2.1.1 -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Config.Msi\1453e5.rbf. Systemfehler 5. Überprüfen Sie, dass Sie Zugriff auf das Verzeichnis haben.(NULL)(NULL)(NULL)(NULL)(NULL)
CodeIntegrity Errors:
===================================
Date: 2014-07-29 19:27:08.089
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2014-07-29 19:27:06.155
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
==================== Memory info ===========================
Processor: AMD E-350 Processor
Percentage of memory in use: 70%
Total physical RAM: 1770.9 MB
Available physical RAM: 528.35 MB
Total Pagefile: 3541.8 MB
Available Pagefile: 1313.18 MB
Total Virtual: 8192 MB
Available Virtual: 8191.86 MB
==================== Drives ================================
Drive c: (Acer) (Fixed) (Total:282.99 GB) (Free:152.11 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298 GB) (Disk ID: 8A327298)
Partition 1: (Not Active) - (Size=15 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=283 GB) - (Type=07 NTFS)
==================== End Of Log ============================ Ja, der Ordner öffnet sich immer noch! |