| puntaara |  23.10.2014 14:06 |        Danke dir für die Antwort. Anbei die Logs:    mbam.txt  Code:  
 Malwarebytes Anti-Malware 
www.malwarebytes.org   
Suchlauf Datum: 23.10.2014 
Suchlauf-Zeit: 12:19:32 
Logdatei: mbam.txt 
Administrator: Ja   
Version: 2.00.3.1025 
Malware Datenbank: v2014.10.23.03 
Rootkit Datenbank: v2014.10.22.01 
Lizenz: Kostenlos 
Malware Schutz: Deaktiviert 
Bösartiger Webseiten Schutz: Deaktiviert 
Selbstschutz: Deaktiviert   
Betriebssystem: Windows 7 Service Pack 1 
CPU: x86 
Dateisystem: NTFS 
Benutzer: ***   
Suchlauf-Art: Bedrohungs-Suchlauf 
Ergebnis: Abgeschlossen 
Durchsuchte Objekte: 313561 
Verstrichene Zeit: 33 Min, 44 Sek   
Speicher: Aktiviert 
Autostart: Aktiviert 
Dateisystem: Aktiviert 
Archive: Aktiviert 
Rootkits: Deaktiviert 
Heuristik: Aktiviert 
PUP: Warnen 
PUM: Aktiviert   
Prozesse: 0 
(Keine schädliche Elemente erkannt)   
Module: 0 
(Keine schädliche Elemente erkannt)   
Registrierungsschlüssel: 1 
PUP.Optional.DVDVideoSoftTB.A, HKU\S-1-5-21-2791256138-4108016520-4061832491-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\nikpibnbobmbdbheedjfogjlikpgpnhp, In Quarantäne, [5ec169af9be18bab89d35cc63cc703fd],    
Registrierungswerte: 0 
(Keine schädliche Elemente erkannt)   
Registrierungsdaten: 0 
(Keine schädliche Elemente erkannt)   
Ordner: 17 
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\images, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\_locales, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\_locales\de, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\_locales\en, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\_locales\es, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\_locales\fr, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\_locales\it, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\_locales\ja, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\_locales\nl, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\_locales\pl, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\_locales\pt, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\_locales\ru, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\_locales\tr, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\_locales\zh_CN, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\_locales\zh_TW, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],    
Dateien: 35 
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\background.html, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\background.js, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\dvs_freeyoutubedownload.css, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\dvs_freeyoutubedownload.js, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\dvs_logo.ico, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\dvs_logo_128.png, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\dvs_logo_32.png, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\dvs_logo_48.png, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\errorRunProgramm.html, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\manifest.json, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\np_dvs_plugin.dll, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\options.html, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\options.js, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\page_action.html, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\images\backbar.png, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\images\download.png, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\images\fs.png, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\images\headphone.png, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\images\logo.png, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\images\manager.png, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\images\YoutubeDownloader.png, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\images\YoutubeToMp3.png, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\_locales\de\messages.json, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\_locales\en\messages.json, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\_locales\es\messages.json, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\_locales\fr\messages.json, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\_locales\it\messages.json, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\_locales\ja\messages.json, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\_locales\nl\messages.json, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\_locales\pl\messages.json, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\_locales\pt\messages.json, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\_locales\ru\messages.json, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\_locales\tr\messages.json, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\_locales\zh_CN\messages.json, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],  
PUP.Optional.DVDVideoSoftTB.A, C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0\_locales\zh_TW\messages.json, In Quarantäne, [9986cc4ce399979fe8febf58a45f7c84],    
Physische Sektoren: 0 
(Keine schädliche Elemente erkannt)     
(end)   AdwCleaner:  Code:  
 # AdwCleaner v4.001 - Bericht erstellt am 23/10/2014 um 13:56:51 
# DB v2014-10-21.1 
# Aktualisiert 20/10/2014 von Xplode 
# Betriebssystem : Windows 7 Professional Service Pack 1 (32 bits) 
# Benutzername : *** - MW-PC 
# Gestartet von : C:\Users\***\Desktop\AdwCleaner_4.001.exe 
# Option : Löschen   
***** [ Dienste ] *****     
***** [ Dateien / Ordner ] *****   
Ordner Gelöscht : C:\Users\***\AppData\Roaming\dvdvideosoftiehelpers 
Ordner Gelöscht : C:\Users\***\AppData\Local\eSupport.com 
Ordner Gelöscht : C:\Users\***\AppData\Roaming\pdfforge 
Ordner Gelöscht : C:\ProgramData\SecTaskMan   
***** [ Tasks ] *****     
***** [ Verknüpfungen ] *****     
***** [ Registrierungsdatenbank ] *****   
Wert Gelöscht : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [{ACAA314B-EEBA-48E4-AD47-84E31C44796C}] 
Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\kpionmjnkbpcdpcflammlgllecmejgjj 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\pdfforgeToolbar-stub-1_RASAPI32 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\pdfforgeToolbar-stub-1_RASMANCS 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SearchSettings_RASAPI32 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SearchSettings_RASMANCS 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_spss_RASAPI32 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_spss_RASMANCS 
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{25A3A431-30BB-47C8-AD6A-E1063801134F} 
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} 
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48} 
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5} 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} 
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{25A3A431-30BB-47C8-AD6A-E1063801134F} 
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} 
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{25A3A431-30BB-47C8-AD6A-E1063801134F} 
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{06E58E5E-F8CB-4049-991E-A41C03BD419E} 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{100EB1FD-D03E-47FD-81F3-EE91287F9465} 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{258C9770-1713-4021-8D7E-1F184A2BD754} 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{2EECD738-5844-4A99-B4B6-146BF802613B} 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{31CF9EBE-5755-4A1D-AC25-2834D952D9B4} 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{43D9E6F0-1776-4897-AE14-ECEDECBAFEC0} 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{5A074B29-F830-49DE-A31B-5BB9D7F6B407} 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{5AA2BA46-9913-4DC7-9620-69AB0FA17AE7} 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{74F475FA-6C75-43BD-AAB9-ECDA6184F600} 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{77FEF28E-EB96-44FF-B511-3185DEA48697} 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{855F3B16-6D32-4FE6-8A56-BBB695989046} 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E} 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{98889811-442D-49DD-99D7-DC866BE87DBC} 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{B580CF65-E151-49C3-B73F-70B13FCA8E86} 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{BDEA95CF-F0E6-41E0-BD3D-B00F39A4E939} 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{C451C08A-EC37-45DF-AAAD-18B51AB5E837} 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{DCC70A83-E184-40A3-906B-779AF5E941C4} 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{EF99BD32-C1FB-11D2-892F-0090271D4F88} 
Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{25A3A431-30BB-47C8-AD6A-E1063801134F}] 
Schlüssel Gelöscht : HKCU\Software\Conduit 
Schlüssel Gelöscht : HKCU\Software\OCS 
Schlüssel Gelöscht : HKCU\Software\Softonic 
Schlüssel Gelöscht : HKCU\Software\vShare.tv 
Schlüssel Gelöscht : HKCU\Software\YahooPartnerToolbar 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\00E944CB89111313EAF35A0553F547F9 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\53F55AF3F4049ED3FA6EA6F88E414E24 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\68E4BF4B11615E03C97732FD581AB607 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8CE3DDAB2D152683FBCEB4866BCD2B0F 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AF6CE16AFEA5C9A39B766468A8B35C21 
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FB1E44269B58F433A8C8E671E37CFDCF   
***** [ Browser ] *****   
-\\ Internet Explorer v11.0.9600.17344     
-\\ Mozilla Firefox v32.0.3 (x86 de)     
-\\ Google Chrome v38.0.2125.104     
*************************   
AdwCleaner[R0].txt - [6824 octets] - [23/10/2014 13:49:19] 
AdwCleaner[S0].txt - [6638 octets] - [23/10/2014 13:56:51]   
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [6698 octets] ##########   JRT.txt:  Code:  
 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 
Junkware Removal Tool (JRT) by Thisisu 
Version: 6.3.3 (10.21.2014:1) 
OS: Windows 7 Professional x86 
Ran by *** on 23.10.2014 at 14:18:12,84 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~         
~~~ Services       
~~~ Registry Values       
~~~ Registry Keys       
~~~ Files       
~~~ Folders   
Successfully deleted: [Empty Folder] C:\Users\***\appdata\local\{1BC2423E-5A5E-419B-9AFC-E8DD3D75EF4B} 
Successfully deleted: [Empty Folder] C:\Users\***\appdata\local\{1EC10DA5-8982-422D-AC82-9733D53DAD8C} 
Successfully deleted: [Empty Folder] C:\Users\***\appdata\local\{2A1A832E-9C86-484C-805A-9C2E660CF333} 
Successfully deleted: [Empty Folder] C:\Users\***\appdata\local\{447487AE-37A9-4AEA-8FB0-2DA3EA6B4C62} 
Successfully deleted: [Empty Folder] C:\Users\***\appdata\local\{53D71009-6817-415A-B325-D26E4B5039EA} 
Successfully deleted: [Empty Folder] C:\Users\***\appdata\local\{76E5790A-4018-4812-B968-930E0F09B8F7} 
Successfully deleted: [Empty Folder] C:\Users\***\appdata\local\{CA8869F3-856E-413E-BE71-4BCBEB4C9BEB} 
Successfully deleted: [Empty Folder] C:\Users\***\appdata\local\{D3FCAF7E-214E-43C2-8863-1F8DC37A3608} 
Successfully deleted: [Empty Folder] C:\Users\***\appdata\local\{E555D918-DE51-41FD-B983-436A9EFFF0AA}       
~~~ FireFox   
Emptied folder: C:\Users\***\AppData\Roaming\mozilla\firefox\profiles\rzgi5nyf.default\minidumps [173 files]       
~~~ Event Viewer Logs were cleared           
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 
Scan was completed on 23.10.2014 at 14:21:55,22 
End of JRT log 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~   FRST.txt: 
FRST Logfile:  
FRST Logfile:   Code:  
 Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 22-10-2014 
Ran by *** (administrator) on MW-PC on 23-10-2014 14:49:54 
Running from C:\Users\***\Desktop 
Loaded Profile: *** (Available profiles: ***) 
Platform: Microsoft Windows 7 Professional  Service Pack 1 (X86) OS Language: Deutsch (Deutschland) 
Internet Explorer Version 11 
Boot Mode: Normal 
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/   
==================== Processes (Whitelisted) =================   
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)   
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe 
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe 
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe 
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe 
(Agere Systems) C:\Windows\System32\agrsmsvc.exe 
(TransAction Software, D 81737 Munich) D:\Opel\bin\tbmux32.exe 
(Juniper Networks) C:\Program Files\Juniper Networks\Common Files\dsNcService.exe 
(SAMSUNG Electronics) C:\Program Files\SamSung\Easy Display Manager\dmhkcore.exe 
(SAMSUNG Electronics co., LTD.) C:\Program Files\SamSung\EBM\EasyBatteryMgr3.exe 
(Google Inc.) C:\Program Files\Google\Update\1.3.25.5\GoogleCrashHandler.exe 
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe 
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe 
(Synaptics, Inc.) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe 
(SAMSUNG Electronics Co., Ltd.) C:\Program Files\SamSung\MagicKBD\MagicKBD.exe 
(Samsung Electronics Co. Ltd.) C:\Program Files\SamSung\MagicKBD\PerformanceManager.exe 
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe 
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\VS7DEBUG\MDM.EXE 
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe 
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe 
(Hewlett-Packard) C:\Program Files\HP\HP Software Update\hpwuschd2.exe 
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe 
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe 
(Hewlett-Packard Co.) C:\Program Files\HP\HP Officejet Pro 8500 A910\Bin\ScanToPCActivationApp.exe 
(pdfforge GbR) C:\Program Files\PDF Architect\HelperService.exe 
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE 
(pdfforge GbR) C:\Program Files\PDF Architect\ConversionService.exe 
(Secunia) C:\Program Files\Secunia\PSI\sua.exe 
(Hewlett-Packard Co.) C:\Program Files\HP\HP Officejet Pro 8500 A910\Bin\HPNetworkCommunicator.exe 
() D:\Opel\Apache Group\Apache\ApchT2kW.exe 
() D:\Opel\Apache Group\Apache\ApchT2kW.exe 
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE 
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE 
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe 
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe 
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe     
==================== Registry (Whitelisted) ==================   
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)   
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [11487848 2011-12-13] (Realtek Semiconductor) 
HKLM\...\Run: [MagicKeyboard] => C:\Program Files\SAMSUNG\MagicKBD\PreMKBD.exe [151552 2006-05-14] () 
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [839680 2010-11-06] (Synaptics, Inc.) 
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-08-06] (AVAST Software) 
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap.dll,ShadowPlayOnSystemStart 
HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2403104 2014-07-25] (NVIDIA Corporation) 
HKLM\...\Run: [HP Software Update] => C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard) 
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [271744 2014-09-26] (Oracle Corporation) 
HKU\S-1-5-21-2791256138-4108016520-4061832491-1001\...\Run: [HP Officejet Pro 8500 A910 (NET)] => C:\Program Files\HP\HP Officejet Pro 8500 A910\Bin\ScanToPCActivationApp.exe [1837672 2012-10-17] (Hewlett-Packard Co.) 
Startup: C:\Users\***\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk 
ShortcutTarget: OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk -> C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation) 
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software)   
==================== Internet (Whitelisted) ====================   
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)   
ProxyServer: 1.179.128.2:8080 
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch 
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.spiegel.de/ 
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de 
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xDFCAC6BA62DCCB01 
SearchScopes: HKCU - {822D8992-2E48-49BA-B3E2-E2946D8B5C98} URL = hxxp://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&type=302398&p={searchTerms} 
BHO: PDF Architect Helper -> {3A2D5EBA-F86D-4BD3-A177-019765996711} -> C:\Program Files\PDF Architect\PDFIEHelper.dll (pdfforge GbR) 
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) 
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) 
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) 
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) 
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) 
Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} -  No File 
DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} hxxp://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab 
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_05-windows-i586.cab 
DPF: {CAFEEFAC-0017-0000-0005-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_05-windows-i586.cab 
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_05-windows-i586.cab 
DPF: {F27237D7-93C8-44C2-AC6E-D6057B9A918F} https://juniper.net/dana-cached/sc/JuniperSetupClient.cab 
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation) 
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) 
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL No File [ ] 
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1   
FireFox: 
======== 
FF ProfilePath: C:\Users\***\AppData\Roaming\Mozilla\Firefox\Profiles\rzgi5nyf.default 
FF Homepage: hxxp://www.spiegel.de/ 
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_15_0_0_189.dll () 
FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.) 
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google) 
FF Plugin: @java.com/DTPlugin,version=10.71.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) 
FF Plugin: @java.com/JavaPlugin,version=10.71.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) 
FF Plugin: @microsoft.com/GENUINE -> disabled No File 
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) 
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) 
FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) 
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation) 
FF Plugin: @nokia.com/EnablerPlugin -> C:\Program Files\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll ( ) 
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.) 
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.) 
FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.) 
FF Plugin: @videolan.org/vlc,version=2.1.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) 
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) 
FF Plugin HKCU: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.) 
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll (Microsoft Corporation) 
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPOFF12.DLL (Microsoft Corporation) 
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPOFFICE.DLL (Microsoft Corporation) 
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) 
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.) 
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\amazondotcom-de.xml 
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\eBay-de.xml 
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\leo_ende_de.xml 
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\yahoo-de.xml 
FF Extension: ReminderFox - C:\Users\***\AppData\Roaming\Mozilla\Firefox\Profiles\rzgi5nyf.default\Extensions\{ada4b710-8346-4b82-8199-5de2b400a6ae} [2014-05-02] 
FF Extension: ImTranslator - C:\Users\***\AppData\Roaming\Mozilla\Firefox\Profiles\rzgi5nyf.default\Extensions\{9AA46F4F-4DC7-4c06-97AF-5035170634FE}.xpi [2014-09-05] 
FF Extension: Adblock Plus - C:\Users\***\AppData\Roaming\Mozilla\Firefox\Profiles\rzgi5nyf.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-05-02] 
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF 
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-02-08] 
FF HKLM\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files\PDF Architect\FFPDFArchitectExt 
FF Extension: PDF Architect Converter For Firefox - C:\Program Files\PDF Architect\FFPDFArchitectExt [2013-02-25]   
Chrome:  
======= 
CHR HomePage: Default -> hxxp://www.spiegel.de/ 
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\38.0.2125.104\PepperFlash\pepflashplayer.dll () 
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer 
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\38.0.2125.104\ppGoogleNaClPluginChrome.dll No File 
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\38.0.2125.104\pdf.dll () 
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) 
CHR Plugin: (2007 Microsoft Office system) - C:\Program Files\Mozilla Firefox\plugins\NPOFF12.DLL (Microsoft Corporation) 
CHR Plugin: (Microsoft Office 2003) - C:\Program Files\Mozilla Firefox\plugins\NPOFFICE.DLL (Microsoft Corporation) 
CHR Plugin: (PDF-XChange Viewer) - C:\Program Files\Mozilla Firefox\plugins\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.) 
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) 
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation) 
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.124\npGoogleUpdate3.dll No File 
CHR Plugin: (Java(TM) Platform SE 7 U13) - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) 
CHR Plugin: (Microsoft Office Live Plug-in for Firefox) - C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) 
CHR Plugin: (Nokia Suite Enabler Plugin) - C:\Program Files\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll ( ) 
CHR Plugin: (Veetle TV Player) - C:\Program Files\Veetle\Player\npvlc.dll No File 
CHR Plugin: (Veetle TV Core) - C:\Program Files\Veetle\plugins\npVeetle.dll No File 
CHR Plugin: (VLC Web Plugin) - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) 
CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32_11_5_502_149.dll No File 
CHR Plugin: (Java Deployment Toolkit 7.0.130.20) - C:\Windows\system32\npDeployJava1.dll No File 
CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll No File 
CHR Profile: C:\Users\***\AppData\Local\Google\Chrome\User Data\Default 
CHR Extension: (Google Docs) - C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-02-09] 
CHR Extension: (Google Drive) - C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-02-09] 
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-10-08] 
CHR Extension: (YouTube) - C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-02-09] 
CHR Extension: (Google-Suche) - C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-02-09] 
CHR Extension: (AdBlock) - C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2013-02-09] 
CHR Extension: (Avast Online Security) - C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-10-08] 
CHR Extension: (Google Wallet) - C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-22] 
CHR Extension: (Google Mail) - C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-02-09] 
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-08-06]   
========================== Services (Whitelisted) =================   
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)   
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-08-06] (AVAST Software) 
S3 CGVPNCliSrvc; C:\Program Files\CyberGhost VPN\CGVPNCliService.exe [2438696 2012-04-26] (mobile concepts GmbH) 
R2 COSIDS_TB; D:\OPEL\BIN\TbMux32.exe [165376 2001-11-20] (TransAction Software, D 81737 Munich) [File not signed] 
R2 dsNcService; C:\Program Files\Juniper Networks\Common Files\dsNcService.exe [666696 2011-07-08] (Juniper Networks) 
S2 Garmin Core Update Service; C:\Program Files\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [250712 2013-12-13] (Garmin Ltd or its subsidiaries) 
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [File not signed] 
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [44032 2010-08-06] (Hewlett-Packard) [File not signed] 
R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1720608 2014-07-25] (NVIDIA Corporation) 
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [17536800 2014-07-25] (NVIDIA Corporation) 
R2 PDF Architect Helper Service; C:\Program Files\PDF Architect\HelperService.exe [1324104 2013-01-09] (pdfforge GbR) 
R2 PDF Architect Service; C:\Program Files\PDF Architect\ConversionService.exe [795208 2013-01-09] (pdfforge GbR) 
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [53760 2010-08-06] (Hewlett-Packard) [File not signed] 
S4 Samsung Update Plus; C:\Program Files\Samsung\Samsung Update Plus\SLUBackgroundService.exe [73728 2007-06-28] () [File not signed] 
S3 Secunia PSI Agent; C:\Program Files\Secunia\PSI\PSIA.exe [1326176 2012-07-25] (Secunia) 
R2 Secunia Update Agent; C:\Program Files\Secunia\PSI\sua.exe [681056 2012-07-25] (Secunia) 
R2 TIS 2000 Apache Web Server; D:\Opel\Apache Group\Apache\ApchT2kW.exe [4096 1999-03-23] () [File not signed] 
S2 ShellfireVPN2Service; "C:\Program Files\ShellfireVPN\jre6\bin\java.exe" "-classpath" "C:\Program Files\ShellfireVPN\ShellfireVPN2.exe" "-Xrs" "-Dwrapper.service=true" "-Dwrapper.working.dir=C:\Program Files\ShellfireVPN" "-Dwrapper.config=C:\Users\***\AppData\Roaming\ShellfireVPN\start.conf" "-Dwrapper.additional.1x=-Xrs" "-Dwrapper.stop.conf=C:\Users\***\AppData\Roaming\ShellfireVPN\stop.conf" "-Djna_tmpdir=C:\Users\***\AppData\Local\Temp" "org.rzo.yajsw.boot.WrapperServiceBooter"    
==================== Drivers (Whitelisted) ====================   
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)   
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24184 2014-08-06] () 
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [67824 2014-08-06] (AVAST Software) 
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [81768 2014-08-06] (AVAST Software) 
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49944 2014-08-06] () 
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [779536 2014-08-06] (AVAST Software) 
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [414520 2014-08-06] (AVAST Software) 
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [71944 2014-08-06] (AVAST Software) 
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [192352 2014-08-06] () 
S2 DgiVecp; C:\Windows\system32\Drivers\DgiVecp.sys [38400 2009-03-02] (Samsung Electronics Co., Ltd.) [File not signed] 
R0 DiskSec; C:\Windows\system32\Drivers\DiskSec.sys [14208 2008-04-04] (MAGIX) [File not signed] 
R2 DOSMEMIO; C:\Windows\system32\MEMIO.SYS [4300 2000-08-24] () [File not signed] 
R3 dsNcAdpt; C:\Windows\System32\DRIVERS\dsNcAdpt.sys [26624 2009-12-09] (Juniper Networks) 
S3 grmnusb; C:\Windows\System32\drivers\grmnusb.sys [15720 2012-04-18] (GARMIN Corp.) 
R2 KMDFMEMIO; C:\Windows\System32\DRIVERS\kmdfmemio.sys [13312 2006-11-14] (SAMSUNG ELECTRONICS CO., LTD.) 
R3 NETwLv32; C:\Windows\System32\DRIVERS\NETwLv32.sys [6639616 2010-10-07] (Intel Corporation) 
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19232 2014-07-25] (NVIDIA Corporation) 
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad32v.sys [34080 2014-03-31] (NVIDIA Corporation) 
S3 PSI; C:\Windows\System32\DRIVERS\psi_mf.sys [15544 2010-09-01] (Secunia) 
S3 Ser2plx86; C:\Windows\System32\DRIVERS\ser2pl.sys [134144 2013-02-22] (Prolific Technology Inc.) 
R2 SSPORT; C:\Windows\system32\Drivers\SSPORT.sys [5120 2009-03-02] (Samsung Electronics) [File not signed] 
R3 tap0901; C:\Windows\System32\DRIVERS\tap0901.sys [35288 2013-08-22] (The OpenVPN Project) 
R3 VMC302; C:\Windows\System32\Drivers\VMC302.sys [243840 2010-11-06] (Vimicro Corporation) 
R3 yukonw7; C:\Windows\System32\DRIVERS\yk62x86.sys [315392 2009-09-28] () 
S3 ADDMEM; \??\C:\Users\***\AppData\Local\Temp\__Samsung_Update\ADDMEM.SYS [X] 
S3 catchme; \??\C:\Users\***\AppData\Local\Temp\catchme.sys [X] 
S3 cpuz132; \??\C:\Users\***\AppData\Local\Temp\cpuz132\cpuz132_x32.sys [X] 
U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [48128 2009-07-14] (Microsoft Corporation)   
==================== NetSvcs (Whitelisted) ===================     
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)     
==================== One Month Created Files and Folders ========   
(If an entry is included in the fixlist, the file\folder will be moved.)   
2014-10-23 14:49 - 2014-10-23 14:51 - 00021574 _____ () C:\Users\***\Desktop\FRST.txt 
2014-10-23 14:49 - 2014-10-23 14:49 - 00000000 ____D () C:\Users\***\Desktop\Logs Virenscans 
2014-10-23 14:21 - 2014-10-23 14:47 - 00001692 _____ () C:\Users\***\Desktop\JRT.txt 
2014-10-23 14:17 - 2014-10-23 14:17 - 00000000 ____D () C:\Windows\ERUNT 
2014-10-23 14:13 - 2014-10-23 14:13 - 01706144 _____ (Thisisu) C:\Users\***\Desktop\JRT.exe 
2014-10-23 14:10 - 2014-10-23 14:10 - 00006758 _____ () C:\Users\***\Desktop\AdwCleaner[S0].txt 
2014-10-23 13:49 - 2014-10-23 13:56 - 00000000 ____D () C:\AdwCleaner 
2014-10-23 13:48 - 2014-10-23 13:48 - 01962496 _____ () C:\Users\***\Desktop\AdwCleaner_4.001.exe 
2014-10-23 13:47 - 2014-10-23 13:47 - 00012757 _____ () C:\Users\***\Desktop\mbam.txt 
2014-10-22 17:58 - 2014-10-22 17:58 - 00018990 _____ () C:\ComboFix.txt 
2014-10-22 16:39 - 2014-10-22 17:58 - 00000000 ____D () C:\Qoobox 
2014-10-22 16:39 - 2011-06-26 08:45 - 00256000 _____ () C:\Windows\PEV.exe 
2014-10-22 16:39 - 2010-11-07 19:20 - 00208896 _____ () C:\Windows\MBR.exe 
2014-10-22 16:39 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 
2014-10-22 16:39 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 
2014-10-22 16:39 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 
2014-10-22 16:39 - 2000-08-31 02:00 - 00098816 _____ () C:\Windows\sed.exe 
2014-10-22 16:39 - 2000-08-31 02:00 - 00080412 _____ () C:\Windows\grep.exe 
2014-10-22 16:39 - 2000-08-31 02:00 - 00068096 _____ () C:\Windows\zip.exe 
2014-10-22 16:37 - 2014-10-22 16:37 - 05584933 ____R (Swearware) C:\Users\***\Desktop\ComboFix.exe 
2014-10-21 19:51 - 2014-10-21 19:51 - 00380416 _____ () C:\Users\***\Desktop\3gol8ee1.exe 
2014-10-21 17:34 - 2014-10-23 14:50 - 00000000 ____D () C:\FRST 
2014-10-21 17:33 - 2014-10-23 14:48 - 01103360 _____ (Farbar) C:\Users\***\Desktop\FRST.exe 
2014-10-21 17:31 - 2014-10-21 17:31 - 00050477 _____ () C:\Users\***\Desktop\Defogger.exe 
2014-10-21 01:26 - 2014-10-23 13:45 - 00114904 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 
2014-10-21 01:25 - 2014-10-21 01:27 - 00001024 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk 
2014-10-21 01:25 - 2014-10-21 01:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware 
2014-10-21 01:25 - 2014-10-21 01:27 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware 
2014-10-21 01:25 - 2014-10-01 11:11 - 00075480 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 
2014-10-21 01:25 - 2014-10-01 11:11 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 
2014-10-20 10:02 - 2014-10-20 10:02 - 00000000 ____D () C:\Program Files\Common Files\Java 
2014-10-20 10:01 - 2014-10-20 10:01 - 00272808 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 
2014-10-20 10:01 - 2014-10-20 10:01 - 00175528 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 
2014-10-20 10:01 - 2014-10-20 10:01 - 00175528 _____ (Oracle Corporation) C:\Windows\system32\java.exe 
2014-10-20 10:01 - 2014-10-20 10:01 - 00096680 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll 
2014-10-20 10:01 - 2014-10-20 10:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 
2014-10-18 10:30 - 2014-10-18 10:30 - 00000000 ____D () C:\Program Files\Microsoft ASP.NET 
2014-10-18 10:27 - 2014-10-10 03:44 - 00396288 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 
2014-10-18 10:27 - 2014-10-10 03:44 - 00230912 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 
2014-10-18 10:27 - 2014-10-10 03:39 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 
2014-10-18 10:27 - 2014-10-07 04:04 - 00331448 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 
2014-10-18 10:27 - 2014-09-29 02:41 - 02379264 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 
2014-10-18 10:27 - 2014-09-26 00:46 - 00365056 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 
2014-10-18 10:27 - 2014-09-26 00:46 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 
2014-10-18 10:27 - 2014-09-26 00:46 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 
2014-10-18 10:27 - 2014-09-26 00:43 - 11807232 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 
2014-10-18 10:27 - 2014-09-26 00:32 - 02017280 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 
2014-10-18 10:27 - 2014-09-19 03:44 - 17484800 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 
2014-10-18 10:27 - 2014-09-19 03:25 - 04201472 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 
2014-10-18 10:27 - 2014-09-19 03:14 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 
2014-10-18 10:27 - 2014-09-19 03:14 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 
2014-10-18 10:27 - 2014-09-19 03:02 - 00454656 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 
2014-10-18 10:27 - 2014-09-19 03:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 
2014-10-18 10:27 - 2014-09-19 03:01 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 
2014-10-18 10:27 - 2014-09-19 02:59 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 
2014-10-18 10:27 - 2014-09-19 02:55 - 02187264 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 
2014-10-18 10:27 - 2014-09-19 02:54 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 
2014-10-18 10:27 - 2014-09-19 02:53 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 
2014-10-18 10:27 - 2014-09-19 02:51 - 00440320 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 
2014-10-18 10:27 - 2014-09-19 02:50 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 
2014-10-18 10:27 - 2014-09-19 02:50 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 
2014-10-18 10:27 - 2014-09-19 02:49 - 00597504 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 
2014-10-18 10:27 - 2014-09-19 02:44 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 
2014-10-18 10:27 - 2014-09-19 02:36 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 
2014-10-18 10:27 - 2014-09-19 02:32 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 
2014-10-18 10:27 - 2014-09-19 02:20 - 00677888 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 
2014-10-18 10:27 - 2014-09-19 02:20 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 
2014-10-18 10:27 - 2014-09-19 02:18 - 01068032 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 
2014-10-18 10:27 - 2014-09-19 01:59 - 01810944 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 
2014-10-18 10:27 - 2014-09-19 01:53 - 01190400 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 
2014-10-18 10:27 - 2014-09-19 01:52 - 00678400 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 
2014-10-18 10:27 - 2014-09-13 03:40 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll 
2014-10-18 10:27 - 2014-09-04 07:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll 
2014-10-18 10:27 - 2014-08-29 03:44 - 02744320 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 
2014-10-18 10:27 - 2014-07-17 03:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll 
2014-10-18 10:27 - 2014-07-17 03:39 - 00523264 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll 
2014-10-18 10:27 - 2014-07-17 03:39 - 00304128 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 
2014-10-18 10:27 - 2014-07-17 03:39 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll 
2014-10-18 10:27 - 2014-07-17 03:39 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 
2014-10-18 10:27 - 2014-07-17 03:39 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 
2014-10-18 10:27 - 2014-07-17 03:03 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys 
2014-10-18 10:27 - 2014-07-17 03:02 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 
2014-10-18 10:26 - 2014-09-18 03:32 - 02363904 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 
2014-10-18 10:26 - 2014-09-05 03:52 - 05703168 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 
2014-10-18 10:26 - 2014-06-19 00:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll 
2014-10-18 10:26 - 2014-06-19 00:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll 
2014-10-18 10:26 - 2014-06-19 00:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll 
2014-10-10 02:02 - 2014-10-20 09:54 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe 
2014-10-10 02:02 - 2014-10-20 09:54 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl 
2014-10-10 01:21 - 2014-10-10 01:21 - 00854704 _____ (Adobe Systems Incorporated) C:\Users\***\Downloads\uninstall_flash_player.exe 
2014-10-04 10:52 - 2014-09-25 03:40 - 00519680 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll 
2014-10-01 14:37 - 2014-10-01 14:37 - 00000982 _____ () C:\Users\Public\Desktop\ShellfireVPN.lnk 
2014-10-01 14:35 - 2014-10-01 14:35 - 65539831 _____ () C:\Users\***\Downloads\ShellfireVPN-2.4-install.exe 
2014-09-27 18:09 - 2014-09-27 19:11 - 00000000 ____D () C:\Users\***\Desktop\bilder wohnung 
2014-09-25 11:20 - 2014-09-25 11:20 - 00000000 ____D () C:\Program Files\Mozilla Firefox 
2014-09-25 10:06 - 2014-09-09 23:47 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 
2014-09-24 12:04 - 2014-09-24 12:04 - 00000000 ____D () C:\Windows\Hewlett-Packard   
==================== One Month Modified Files and Folders =======   
(If an entry is included in the fixlist, the file\folder will be moved.)   
2014-10-23 14:43 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\tracing 
2014-10-23 14:38 - 2013-02-09 02:05 - 00001098 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 
2014-10-23 14:17 - 2009-07-14 06:34 - 00026144 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 
2014-10-23 14:17 - 2009-07-14 06:34 - 00026144 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 
2014-10-23 14:16 - 2010-11-05 01:17 - 01583461 _____ () C:\Windows\WindowsUpdate.log 
2014-10-23 14:09 - 2014-03-11 23:46 - 00000000 ____D () C:\Windows\hsperfdata_SYSTEM 
2014-10-23 14:08 - 2009-07-14 06:39 - 00189858 _____ () C:\Windows\setupact.log 
2014-10-23 14:07 - 2013-02-09 02:05 - 00001094 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 
2014-10-23 14:07 - 2013-01-25 05:54 - 00065536 _____ () C:\Windows\system32\Ikeext.etl 
2014-10-23 14:07 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 
2014-10-23 14:05 - 2010-11-05 12:55 - 00887074 _____ () C:\Windows\PFRO.log 
2014-10-23 13:40 - 2010-11-18 00:06 - 00000000 ____D () C:\Users\***\AppData\Local\CrashDumps 
2014-10-23 13:30 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Vss 
2014-10-22 23:03 - 2010-11-06 01:40 - 00000000 ____D () C:\Users\***\AppData\Roaming\Skype 
2014-10-22 17:54 - 2009-07-14 04:04 - 00000215 _____ () C:\Windows\system.ini 
2014-10-22 02:07 - 2013-07-17 09:56 - 00000000 ____D () C:\Users\***\BWINCOMPokerDir 
2014-10-21 01:25 - 2012-08-28 03:04 - 00000000 ____D () C:\Program Files\Malwarebytes' Anti-Malware 
2014-10-21 01:25 - 2011-10-01 05:51 - 00000000 ____D () C:\Users\***\AppData\Roaming\Malwarebytes 
2014-10-21 01:25 - 2011-10-01 05:49 - 00000000 ____D () C:\ProgramData\Malwarebytes 
2014-10-21 00:21 - 2010-11-05 01:54 - 01620684 _____ () C:\Windows\system32\PerfStringBackup.INI 
2014-10-20 11:38 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache 
2014-10-20 10:03 - 2013-10-01 14:20 - 00000000 ____D () C:\ProgramData\Oracle 
2014-10-20 10:01 - 2011-04-27 22:10 - 00000000 ____D () C:\Program Files\Java 
2014-10-20 09:54 - 2014-09-19 09:47 - 00000000 ____D () C:\Users\***\AppData\Local\Adobe 
2014-10-19 10:21 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET 
2014-10-19 09:22 - 2009-07-14 06:33 - 00307608 _____ () C:\Windows\system32\FNTCACHE.DAT 
2014-10-19 02:00 - 2014-04-23 12:35 - 00000000 ___SD () C:\Windows\system32\CompatTel 
2014-10-18 11:05 - 2011-03-15 00:18 - 00000000 ____D () C:\ProgramData\Microsoft Help 
2014-10-18 11:00 - 2013-07-15 01:23 - 00000000 ____D () C:\Windows\system32\MRT 
2014-10-18 10:33 - 2010-11-05 12:23 - 100290944 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 
2014-10-15 23:00 - 2014-09-15 22:56 - 00000000 ___RD () C:\Program Files\Skype 
2014-10-15 23:00 - 2010-11-06 01:40 - 00000000 ____D () C:\ProgramData\Skype 
2014-10-01 14:38 - 2013-02-08 03:36 - 00000000 ____D () C:\Program Files\ShellfireVPN 
2014-10-01 11:58 - 2013-09-15 22:30 - 00000000 ____D () C:\Users\***\AppData\Roaming\HpUpdate 
2014-10-01 11:11 - 2012-08-28 03:04 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 
2014-09-28 11:11 - 2013-01-16 05:20 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service 
2014-09-25 10:07 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\de-DE 
2014-09-24 12:06 - 2013-09-15 22:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP 
2014-09-24 12:06 - 2013-09-15 22:28 - 00000000 ____D () C:\Program Files\HP   
Some content of TEMP: 
==================== 
C:\Users\***\AppData\Local\Temp\Quarantine.exe 
C:\Users\***\AppData\Local\Temp\sqlite3.dll     
==================== Bamital & volsnap Check =================   
(There is no automatic fix for files that do not pass verification.)   
C:\Windows\explorer.exe => File is digitally signed 
C:\Windows\system32\winlogon.exe => File is digitally signed 
C:\Windows\system32\wininit.exe => File is digitally signed 
C:\Windows\system32\svchost.exe => File is digitally signed 
C:\Windows\system32\services.exe => File is digitally signed 
C:\Windows\system32\User32.dll => File is digitally signed 
C:\Windows\system32\userinit.exe => File is digitally signed 
C:\Windows\system32\rpcss.dll => File is digitally signed 
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed     
LastRegBack: 2014-10-16 12:24   
==================== End Of Log ============================   --- --- ---  
--- --- ---     Addition.txt:   Code:  
 Additional scan result of Farbar Recovery Scan Tool (x86) Version: 22-10-2014 
Ran by *** at 2014-10-23 14:52:36 
Running from C:\Users\***\Desktop 
Boot Mode: Normal 
==========================================================     
==================== Security Center ========================   
(If an entry is included in the fixlist, it will be removed.)   
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} 
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} 
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}   
==================== Installed Programs ======================   
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)   
32 Bit HP CIO Components Installer (Version: 8.1.1 - Hewlett-Packard) Hidden 
7-Zip 9.20 (HKLM\...\7-Zip) (Version:  - ) 
Adobe AIR (HKLM\...\Adobe AIR) (Version: 3.9.0.1030 - Adobe Systems Incorporated) 
Adobe AIR (Version: 3.9.0.1030 - Adobe Systems Incorporated) Hidden 
Adobe Flash Player 15 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 15.0.0.189 - Adobe Systems Incorporated) 
Adobe Reader X (10.1.9) - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-AA1000000001}) (Version: 10.1.9 - Adobe Systems Incorporated) 
Agere Systems HDA Modem (HKLM\...\Agere Systems Soft Modem) (Version:  - Agere Systems) 
Any Video Converter 5.0.7 (HKLM\...\Any Video Converter_is1) (Version:  - Any-Video-Converter.com) 
avast! Free Antivirus (HKLM\...\avast) (Version: 9.0.2021 - AVAST Software) 
Biet-O-Matic v2.14.8 (HKLM\...\Biet-O-Matic v2.14.8) (Version: Biet-O-Matic v2.14.8 - BOM Development Team) 
Bild Albelli Fotoservice (HKCU\...\{4E97552A-D0D2-47E3-B4A0-82E5A57A4198}_is1) (Version:  - Bild Albelli) 
BILDmobil (HKLM\...\BILDmobil) (Version: 11.301.08.01.35 - Huawei Technologies Co.,Ltd) 
Business - Kommunikationstrainer English (HKLM\...\KTE_14_669070) (Version:  - digital publishing AG) 
Business - Sprachführer English (HKLM\...\SPE_14_669073) (Version:  - digital publishing AG) 
Business - Sprachkurs English (HKLM\...\BTEIK_14_674328) (Version:  - digital publishing AG) 
Canon My Printer (HKLM\...\CanonMyPrinter) (Version:  - ) 
CDBurnerXP (HKLM\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.3.8.2474 - CDBurnerXP) 
Compatibility Pack for the 2007 Office system (HKLM\...\{90120000-0020-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) 
Compatibility Pack für 2007 Office System (HKLM\...\{90120000-0020-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) 
CyberGhost VPN (HKLM\...\CyberGhost VPN_is1) (Version:  - CyberGhost S.R.L.) 
D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden 
dm-Fotowelt (HKLM\...\dm-Fotowelt) (Version: 5.1.3 - CEWE Stiftung u Co. KGaA) 
Dr Kawashima (HKCU\...\DrKawashima) (Version: 1.0 - ) 
Druckerdeinstallation für EPSON SX600FW Series (HKLM\...\EPSON SX600FW Series) (Version:  - SEIKO EPSON Corporation) 
Easy Battery Manager (HKLM\...\{6F730513-8688-4C3C-90A3-6B9792CE2EF3}) (Version: 3.2.1.1 - ) 
Easy Display Manager (HKLM\...\{17283B95-21A8-4996-97DA-547A48DB266F}) (Version: 2.0.0.0 - Samsung) 
Easy SpeedUp Manager (HKLM\...\{EF367AA4-070B-493C-9575-85BE59D789C9}) (Version: 2.0.0.14 - ) 
Elevated Installer (Version: 2.3.17.0 - Garmin Ltd or its subsidiaries) Hidden 
ElsterFormular (HKLM\...\ElsterFormular 13.2.0.8623p) (Version: 13.2.0.8623p - Landesfinanzdirektion Thüringen) 
ElsterFormular-Update (HKLM\...\ElsterFormular für Privatanwender 12.2.0.6412p) (Version: 1.0 - Landesfinanzdirektion Thüringen) 
EVEREST Home Edition v2.20 (HKLM\...\EVEREST Home Edition_is1) (Version: 2.20 - Lavalys Inc) 
FileZilla Client 3.6.0.2 (HKLM\...\FileZilla Client) (Version: 3.6.0.2 - FileZilla Project) 
Fotosizer 1.32 (HKLM\...\Fotosizer) (Version: 1.32 - Fotosizer.com) 
Free YouTube to MP3 Converter version 3.12.0.128 (HKLM\...\Free YouTube to MP3 Converter_is1) (Version: 3.12.0.128 - DVDVideoSoft Ltd.) 
Garmin Express (HKLM\...\{d6f59919-3fd4-48c5-8404-def6f92d8422}) (Version: 2.3.17.0 - Garmin Ltd or its subsidiaries) 
Garmin Express (Version: 2.3.17.0 - Garmin Ltd or its subsidiaries) Hidden 
Garmin Express Tray (Version: 2.3.17.0 - Garmin Ltd or its subsidiaries) Hidden 
GIMP 2.6.11 (HKLM\...\WinGimp-2.0_is1) (Version: 2.6.11 - The GIMP Team) 
GMX ProfiFax (HKLM\...\GMX ProfiFax) (Version: 2.00.222 - GMX GmbH) 
GMX SMS-Manager (HKLM\...\com.unitedinternet.ums.sms-mms-manager) (Version: 2.1 - 1 und 1 Internet AG) 
GMX SMS-Manager (Version: 2.1 - 1 und 1 Internet AG) Hidden 
Google Chrome (HKLM\...\Google Chrome) (Version: 38.0.2125.104 - Google Inc.) 
Google Earth (HKLM\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google) 
Google Update Helper (Version: 1.3.25.5 - Google Inc.) Hidden 
GPL Ghostscript (HKLM\...\GPL Ghostscript 9.05) (Version: 9.05 - Artifex Software Inc.) 
HoDoKu (HKLM\...\{7B21DE80-CBC2-4D47-87D7-5142E2B4C7F7}) (Version: 2.2.0.1 - hobiwan) 
HP Officejet Pro 8500 A910 - Grundlegende Software für das Gerät (HKLM\...\{63EA2A2E-E67D-4A5A-9245-2A50353E2340}) (Version: 28.0.1315.0 - Hewlett-Packard Co.) 
HP Officejet Pro 8500 A910 Hilfe (HKLM\...\{871B2A9D-0F12-44B3-88C1-E0CB10A232E4}) (Version: 140.0.2.2 - Hewlett Packard) 
HP Update (HKLM\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) 
HPDiagnosticAlert (Version: 1.00.0000 - Microsoft) Hidden 
I.R.I.S. OCR (HKLM\...\{CA6BCA2F-EDEB-408F-850B-31404BE16A61}) (Version: 12.3.4.0 - HP) 
ICQ7.2 (HKLM\...\{72EFBFE4-C74F-4187-AEFD-73EA3BE968D6}) (Version: 7.2 - ICQ) 
inSSIDer 2.0 (HKLM\...\{A12EA295-32EA-42BB-8442-2C2BE852D4AA}) (Version: 2.0.7 - MetaGeek) 
IrfanView (remove only) (HKLM\...\IrfanView) (Version: 4.36 - Irfan Skiljan) 
Java 7 Update 71 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F03217071FF}) (Version: 7.0.710 - Oracle) 
Java Auto Updater (Version: 2.1.71.14 - Oracle, Inc.) Hidden 
Juniper Networks Network Connect 6.5.0 (HKLM\...\Juniper Network Connect 6.5.0) (Version: 6.5.0.14951 - Juniper Networks) 
Juniper Networks Network Connect 7.0.0 (HKLM\...\Juniper Network Connect 7.0.0) (Version: 7.0.0.18809 - Juniper Networks) 
Juniper Networks Setup Client (HKCU\...\Juniper_Setup_Client) (Version: 2.2.5.10685 - Juniper Networks) 
Juniper Networks Setup Client Activex Control (HKLM\...\Juniper_Setup_Client Activex Control) (Version: 2.1.1.1 - Juniper Networks) 
Magic Keyboard (HKLM\...\{BD723E53-A42C-4702-AA04-1D74A0311590}) (Version: 7.0.1.4 - ) 
MAGIX PC Check & Tuning 2010 Download-Version 5.0.25.701 (D) (HKLM\...\MAGIX PC Check & Tuning 2010 Download-Version D) (Version: 5.0.25.701 - MAGIX AG) 
MAGIX Screenshare (HKLM\...\MAGIX Screenshare D) (Version: 4.3.6.1987 - MAGIX AG) 
Malwarebytes Anti-Malware Version 2.0.3.1025 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.3.1025 - Malwarebytes Corporation) 
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) 
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) 
Microsoft ASP.NET MVC 4 Runtime (HKLM\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) 
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft) 
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) 
Microsoft Office Home and Student 2007 (HKLM\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation) 
Microsoft Office Live Add-in 1.5 (HKLM\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation) 
Microsoft Office Standard Edition 2003 (HKLM\...\{91120407-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation) 
Microsoft Project Professional 2010 (HKLM\...\Office14.PRJPROR) (Version: 14.0.7015.1000 - Microsoft Corporation) 
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) 
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation) 
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) 
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation) 
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation) 
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) 
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation) 
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) 
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) 
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) 
MiKTeX 2.9 (HKLM\...\MiKTeX 2.9) (Version: 2.9 - MiKTeX.org) 
Mozilla Firefox 32.0.3 (x86 de) (HKLM\...\Mozilla Firefox 32.0.3 (x86 de)) (Version: 32.0.3 - Mozilla) 
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 29.0 - Mozilla) 
MSVC80_x86_v2 (Version: 1.0.3.0 - Nokia) Hidden 
MSVC90_x86 (Version: 1.0.1.2 - Nokia) Hidden 
MSVCRT (Version: 15.4.2862.0708 - Microsoft) Hidden 
MSVCRT Redists (Version: 1.0 - Sony Creative Software Inc.) Hidden 
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) 
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) 
MSXML 4.0 SP3 Parser (HKLM\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) 
MSXML 4.0 SP3 Parser (KB2721691) (HKLM\...\{355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}) (Version: 4.30.2114.0 - Microsoft Corporation) 
MSXML 4.0 SP3 Parser (KB2758694) (HKLM\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) 
Nokia Connectivity Cable Driver (HKLM\...\{29373274-977E-413C-A4DE-DC0F8E80C429}) (Version: 7.1.172.0 - Nokia) 
Nokia Suite (HKLM\...\Nokia Suite) (Version: 3.8.48.0 - Nokia) 
Nokia Suite (Version: 3.8.48.0 - Nokia) Hidden 
NVIDIA 3D Vision Controller-Treiber 340.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 340.50 - NVIDIA Corporation) 
NVIDIA GeForce Experience 2.1.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.1 - NVIDIA Corporation) 
NVIDIA Grafiktreiber 340.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 340.52 - NVIDIA Corporation) 
NVIDIA Install Application (Version: 2.1002.157.1165 - NVIDIA Corporation) Hidden 
NVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) Hidden 
NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden 
NVIDIA PhysX (Version: 9.13.1220 - NVIDIA Corporation) Hidden 
NVIDIA PhysX-Systemsoftware 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation) 
NVIDIA ShadowPlay 15.3.33 (Version: 15.3.33 - NVIDIA Corporation) Hidden 
NVIDIA Systemsteuerung 340.52 (Version: 340.52 - NVIDIA Corporation) Hidden 
NVIDIA Update 15.3.33 (Version: 15.3.33 - NVIDIA Corporation) Hidden 
NVIDIA Update Core (Version: 15.3.33 - NVIDIA Corporation) Hidden 
NVIDIA Virtual Audio 1.2.23 (Version: 1.2.23 - NVIDIA Corporation) Hidden 
O&O SafeErase (HKLM\...\{DCD786A9-31EF-4D35-B7CC-EFB8F548AEE2}) (Version: 2.7.523 - O&O Software GmbH) 
office wörterbuch pro 3 (HKLM\...\office wörterbuch pro 3) (Version: 3.0 - Lingenio GmbH) 
PC Connectivity Solution (HKLM\...\{6D01D1B1-17BD-4F10-BB11-F08F0C47D42B}) (Version: 12.0.109.0 - Nokia) 
PDF Architect (HKLM\...\{80A07844-CA64-4DE4-AB61-D37DDBE8074F}) (Version: 1.0.52.8917 - pdfforge) 
PDF Blender (HKLM\...\PDF Blender) (Version:  - ) 
PDF24 Creator 6.7.0 (HKLM\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version:  - PDF24.org) 
PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.7.3 - pdfforge) 
PDF-Viewer (HKLM\...\{A278382D-4F1B-4D47-9885-8523F7261E8D}_is1) (Version: 2.5.205.0 - Tracker Software Products Ltd) 
Phase 5 HTML-Editor (HKLM\...\{20B1B020-DEAE-48D1-9960-D4C3185D758B}) (Version: 5.6.2.3 - Systemberatung Schommer) 
PL-2303 USB-to-Serial (HKLM\...\{A9111573-EF12-4D80-A5B9-55F620D5BCA1}) (Version: 1.00.000 - Prolific Technology INC) 
PlayCamera (HKLM\...\{804F1285-8CBF-408D-8CDC-D4D40003B2E4}) (Version: 1.0.1.1 - ) 
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6526 - Realtek Semiconductor Corp.) 
Samsung Recovery Solution II (HKLM\...\{145DE957-0679-4A2A-BB5C-1D3E9808FAB2}) (Version: 1.0.3.21 - Samsung) 
Samsung SCX-4100 Series (HKLM\...\Samsung SCX-4100 Series) (Version:  - ) 
Samsung Update Plus (Version: 1.3.0.11 - Samsung Electronics Co., LTD) Hidden 
Secunia PSI (3.0.0.3001) (HKLM\...\Secunia PSI) (Version: 3.0.0.3001 - Secunia) 
Secure Download Manager (HKLM\...\{9268B41D-6045-4F5F-A14E-3F8E51CD2666}) (Version: 3.0.5 - e-academy Inc.) 
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM\...\{91140000-003B-0000-0000-0000000FF1CE}_Office14.PRJPROR_{58FA40EF-ABA9-4FED-AD3D-318A6073934D}) (Version:  - Microsoft) 
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (Version:  - Microsoft) Hidden 
ShellfireVPN 2.4 (HKLM\...\ShellfireVPN) (Version: 2.4 - ) 
SHIELD Streaming (Version: 3.1.100 - NVIDIA Corporation) Hidden 
Skype™ 6.21 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.21.104 - Skype Technologies S.A.) 
SpoQ Training Gym Pro (HKLM\...\SpoQ Training Gym Pro) (Version:  - ) 
SPSS 15.0 für Windows [Auswertung Version] (HKLM\...\{6D9B9CF3-1E9C-45B6-B41E-5CF568605556}) (Version: 15.0.1 - SPSS Inc.) 
StreamTransport version: 1.0.2.2171 (HKLM\...\{FA0BBB87-91A1-4BFD-9005-EB058BBA0E14}_is1) (Version:  - ) 
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 9.1.15.0 - Synaptics) 
System Requirements Lab for Intel (HKLM\...\{C71067FC-288F-4E0B-88C6-44DFDA8311E2}) (Version: 4.5.9.0 - Husdawg, LLC) 
TeXnicCenter Version 1.0 Stable RC1 (HKLM\...\TeXnicCenter_is1) (Version: Version 1.0 Stable RC1 - TeXnicCenter.org) 
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft) 
Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0407-0000-0000000FF1CE}_HOMESTUDENTR_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version:  - Microsoft) 
Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0407-0000-0000000FF1CE}_HOMESTUDENTR_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version:  - Microsoft) 
Update für Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0407-0000-0000000FF1CE}_HOMESTUDENTR_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version:  - Microsoft) 
Vimicro UVC Camera (HKLM\...\{71A51B09-E7D3-11DB-A386-005056C00008}) (Version: 1.00.0000 - Vimicro Corporation) 
Visual Studio C++ 10.0 Runtime (HKLM\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.) 
VLC media player 2.1.0 (HKLM\...\VLC media player) (Version: 2.1.0 - VideoLAN) 
WIDCOMM Bluetooth Software 6.0.1.6300 (HKLM\...\{03D1988F-469F-4843-8E6E-E5FE9D17889D}) (Version: 6.0.1.6300 - WIDCOMM, Inc.) 
Windows Live Communications Platform (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden 
Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 15.4.3502.0922 - Microsoft Corporation) 
Windows Live Essentials (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden 
Windows Live ID Sign-in Assistant (Version: 7.250.4225.0 - Microsoft Corporation) Hidden 
Windows Live Installer (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden 
Windows Live Messenger (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden 
Windows Live Photo Common (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden 
Windows Live PIMT Platform (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden 
Windows Live SOXE (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden 
Windows Live SOXE Definitions (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden 
Windows Live UX Platform (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden 
Windows Live UX Platform Language Pack (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden 
Windows Media Player Firefox Plugin (HKLM\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp) 
Windows-Treiberpaket - Nokia pccsmcfd “LegacyDriver”  (05/31/2012 7.1.2.0) (HKLM\...\17D063A0A9F5D5A225B76B1D9BCB5ADBE85C8382) (Version: 05/31/2012 7.1.2.0 - Nokia) 
WinRAR 5.00 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.00.0 - win.rar GmbH) 
WinSCP 4.3.3 (HKLM\...\winscp3_is1) (Version: 4.3.3 - Martin Prikryl)   
==================== Custom CLSID (selected items): ==========================   
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)   
CustomCLSID: HKU\S-1-5-21-2791256138-4108016520-4061832491-1001_Classes\CLSID\{039B2CA5-3B41-4D93-AD77-47D3293FC5CB}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File 
CustomCLSID: HKU\S-1-5-21-2791256138-4108016520-4061832491-1001_Classes\CLSID\{0F130AC8-CDF1-4DAA-AA9B-7B4083F49EA4}\InprocServer32 -> C:\Poker\Betfair.com Poker\widgetbar\PtContainerUI.dll No File 
CustomCLSID: HKU\S-1-5-21-2791256138-4108016520-4061832491-1001_Classes\CLSID\{40D7C9AD-E126-4D66-A5FE-B9D589DC3C84}\InprocServer32 -> C:\Poker\Betfair.com Poker\widgetbar\widgets\minigames\minigamesctrl.ocx No File 
CustomCLSID: HKU\S-1-5-21-2791256138-4108016520-4061832491-1001_Classes\CLSID\{42481700-CF3C-4D05-8EC6-F9A1C57E8DC0}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File 
CustomCLSID: HKU\S-1-5-21-2791256138-4108016520-4061832491-1001_Classes\CLSID\{492042A2-4432-44A1-9A39-85B2D3C0119E}\InprocServer32 -> C:\Poker\Betfair.com Poker\widgetbar\PtContainerUI.dll No File 
CustomCLSID: HKU\S-1-5-21-2791256138-4108016520-4061832491-1001_Classes\CLSID\{693566bc-21f8-401e-8d42-e2c5ce50dacc}\localserver32 -> C:\Users\***\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriver.NonElevated.exe N (the data entry has 6 more characters). 
CustomCLSID: HKU\S-1-5-21-2791256138-4108016520-4061832491-1001_Classes\CLSID\{876FA801-2B5E-4201-9E6B-2EF2C05A5C6B}\InprocServer32 -> C:\Poker\Betfair.com Poker\widgetbar\WidgetbarAPI.dll No File 
CustomCLSID: HKU\S-1-5-21-2791256138-4108016520-4061832491-1001_Classes\CLSID\{89425F5E-A2BD-44CD-9E4F-F1498522F0E5}\InprocServer32 -> C:\Poker\Betfair.com Poker\widgetbar\WidgetbarManagerUI.dll No File 
CustomCLSID: HKU\S-1-5-21-2791256138-4108016520-4061832491-1001_Classes\CLSID\{9642D229-6B2E-49FD-B6BB-43B37BD97B6B}\localserver32 -> "C:\Poker\Betfair.com Poker\widgetbar\PTContainerOle.exe" No File 
CustomCLSID: HKU\S-1-5-21-2791256138-4108016520-4061832491-1001_Classes\CLSID\{D0D38C6E-BF64-4C42-840D-3E0019D9F7A6}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File 
CustomCLSID: HKU\S-1-5-21-2791256138-4108016520-4061832491-1001_Classes\CLSID\{F6F8856F-374D-4397-BB1C-80AB57E60529}\InprocServer32 -> C:\Poker\Betfair.com Poker\widgetbar\WidgetbarAPI.dll No File   
==================== Restore Points  =========================   
15-09-2014 21:39:21 Windows Update 
23-09-2014 15:18:32 Geplanter Prüfpunkt 
24-09-2014 10:04:31 Installed HP Update. 
25-09-2014 08:06:25 Windows Update 
02-10-2014 18:44:53 Geplanter Prüfpunkt 
04-10-2014 08:52:36 Windows Update 
13-10-2014 09:52:40 Geplanter Prüfpunkt 
18-10-2014 08:28:27 Windows Update 
20-10-2014 07:56:42 Installed Java 7 Update 71 
21-10-2014 11:46:38 Wiederherstellungsvorgang   
==================== Hosts content: ==========================   
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)   
2009-07-14 04:04 - 2012-09-12 15:04 - 00000027 ____N C:\Windows\system32\Drivers\etc\hosts 
127.0.0.1       localhost   
==================== Scheduled Tasks (whitelisted) =============   
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)   
Task: {0012840F-B1F0-4CE9-8E7A-28145C05E157} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2013-02-09] (Google Inc.) 
Task: {13CFA97E-6913-4041-8267-E61C93CC95DA} - System32\Tasks\{D0EE6062-49E5-4653-A2A9-53654686A780} => Firefox.exe hxxp://www.skype.com/go/downloading?source=lightinstaller&ver=5.3.0.111.259&LastError=500 
Task: {1444C24F-220E-4A14-AD63-3D43F19B6E88} - System32\Tasks\{5DC46035-45F4-46A5-8D3C-38DA4F0EC836} => Firefox.exe hxxp://ui.skype.com/ui/0/5.3.0.111.259/de/abandoninstall?source=lightinstaller&page=tsProblems&LastError=12002&installinfo=google-toolbar:notoffered;ienotdefaultbrowser2,google-chrome:notoffered;alreadyoffered 
Task: {31EB0489-D0BD-4ED3-B292-4718C9397209} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2013-02-09] (Google Inc.) 
Task: {320CD898-6B38-43E8-BBF2-4EAF49AE1780} - System32\Tasks\{D4F9D07E-4F26-40A3-B209-05386BE711A8} => C:\Program Files\Skype\\Phone\Skype.exe [2014-10-01] (Skype Technologies S.A.) 
Task: {32C6D770-BAF0-48F6-B483-08759FC0CA13} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-08-06] (AVAST Software) 
Task: {3F163037-72CF-4084-9F52-E4E47F1BF486} - System32\Tasks\{16860F19-E699-42B5-A14F-F4C44CB9E09A} => Firefox.exe hxxp://ui.skype.com/ui/0/5.3.0.111.259/de/abandoninstall?source=lightinstaller&page=tsProblems&LastError=12002&installinfo=google-toolbar:notoffered;ienotdefaultbrowser2,google-chrome:notoffered;alreadyoffered 
Task: {657127C2-FC7D-41D7-B2AE-6262FA504D31} - System32\Tasks\EasyBatteryManager => C:\Program Files\Samsung\EBM\EasyBatteryMgr3.exe [2008-01-02] (SAMSUNG Electronics co., LTD.) 
Task: {6F6E4020-CB5D-4236-862E-575D7B925966} - System32\Tasks\EasyDisplayMgr => C:\Program Files\Samsung\Easy Display Manager\dmhkcore.exe [2007-10-17] (SAMSUNG Electronics) 
Task: {7004E57D-44B5-4158-BD97-DBF48CAA55EA} - System32\Tasks\{C7C93778-A855-437D-AD51-F248F5D83500} => C:\Program Files\Microsoft Office\Office12\EXCEL.EXE [2013-08-14] (Microsoft Corporation) 
Task: {8D3666EC-5665-4FDF-942F-0DE3B4569F15} - System32\Tasks\{8E4D79ED-DE12-46C7-BED6-F6A8E15C0F09} => Firefox.exe hxxp://www.skype.com/go/downloading?source=lightinstaller&ver=5.3.0.111.259&LastError=12002 
Task: {92430ECB-5A61-4779-AF88-D4B121CBEEA6} - System32\Tasks\EasySpeedUpManager => C:\Program Files\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe [2007-12-28] (Samsung Electronics Co., Ltd.) 
Task: {D298E68C-31CA-4A0D-BBBF-7F44C57D31EF} - System32\Tasks\{87F27F3E-7143-4991-A95D-DC7E45A93CB7} => Firefox.exe hxxp://www.skype.com/go/downloading?source=lightinstaller&ver=5.3.0.111.259&LastError=12002 
Task: {E5B64DE8-C86B-41BB-A57A-70A1F23DA336} - System32\Tasks\{CA5AB1D0-201A-4AB3-BFC8-6A1BB8629204} => Firefox.exe hxxp://www.skype.com/go/downloading?source=lightinstaller&ver=5.3.0.111.259&LastError=12002   
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)   
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe 
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe   
==================== Loaded Modules (whitelisted) =============   
2014-07-29 17:29 - 2014-07-02 21:42 - 00107992 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax.dll 
2014-08-06 15:25 - 2014-08-06 15:25 - 00301152 _____ () C:\Program Files\AVAST Software\Avast\aswProperty.dll 
2014-10-23 13:39 - 2014-10-23 13:39 - 02896896 _____ () C:\Program Files\AVAST Software\Avast\defs\14102301\algo.dll 
2011-07-15 00:38 - 2006-12-04 01:25 - 00022723 _____ () C:\Windows\System32\SSGR3l3.dll 
2012-05-02 04:15 - 2006-08-12 04:48 - 00049152 _____ () C:\Program Files\Samsung\Easy Display Manager\HookDllPS2.dll 
2012-05-02 04:15 - 2006-09-19 01:52 - 00028672 _____ () C:\Program Files\Samsung\Easy Display Manager\WinMove.dll 
2012-05-02 04:09 - 2005-07-12 07:34 - 00045056 _____ () C:\Program Files\SamSung\MagicKBD\EasyBoxDll.dll 
2014-08-06 15:25 - 2014-08-06 15:25 - 19329904 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 
2014-03-11 23:46 - 1999-03-23 21:07 - 00004096 _____ () D:\Opel\Apache Group\Apache\ApchT2kW.exe 
2014-03-11 23:46 - 2001-01-15 10:35 - 00269824 _____ () D:\Opel\Apache Group\Apache\ApacheCore.dll 
2014-03-11 23:46 - 2001-09-06 17:58 - 00119808 _____ () d:\opel\apache group\apache\modules\T2KApacheModuleJServ.dll 
2014-09-25 11:20 - 2014-09-25 11:20 - 03715184 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll 
2003-07-11 03:09 - 2003-07-11 03:09 - 00048192 _____ () C:\Program Files\Common Files\Microsoft Shared\Web Folders\1031\nsextint.dll   
==================== Alternate Data Streams (whitelisted) =========   
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)     
==================== Safe Mode (whitelisted) ===================   
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)     
==================== EXE Association (whitelisted) =============   
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)     
==================== MSCONFIG/TASK MANAGER disabled items =========   
(Currently there is no automatic fix for this section.)   
MSCONFIG\Services: AdobeARMservice => 2 
MSCONFIG\Services: Samsung Update Plus => 2 
MSCONFIG\Services: ServiceLayer => 3 
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^BTTray.lnk => C:\Windows\pss\BTTray.lnk.CommonStartup 
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Secunia PSI Tray.lnk => C:\Windows\pss\Secunia PSI Tray.lnk.CommonStartup 
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" 
MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files\Adobe\Reader 10.0\Reader\Reader_sl.exe" 
MSCONFIG\startupreg: CanonMyPrinter => C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon 
MSCONFIG\startupreg: Device Detection => C:\Program Files\Lidl_Fotos\dd.exe 
MSCONFIG\startupreg: GarminExpressTrayApp => "C:\Program Files\Garmin\Express Tray\ExpressTray.exe" 
MSCONFIG\startupreg: IJNetworkScanUtility => C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe 
MSCONFIG\startupreg: Malwarebytes' Anti-Malware => "C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray 
MSCONFIG\startupreg: Malwarebytes' Anti-Malware (reboot) => "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript 
MSCONFIG\startupreg: msnmsgr => "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background 
MSCONFIG\startupreg: NokiaMServer => C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup 
MSCONFIG\startupreg: NokiaSuite.exe => C:\Program Files\Nokia\Nokia Suite\NokiaSuite.exe -tray 
MSCONFIG\startupreg: NvBackend => "C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe" 
MSCONFIG\startupreg: PDFPrint => C:\Program Files\PDF24\pdf24.exe 
MSCONFIG\startupreg: UnlockerAssistant => "C:\Program Files\Unlocker\UnlockerAssistant.exe"   
========================= Accounts: ==========================   
Administrator (S-1-5-21-2791256138-4108016520-4061832491-500 - Administrator - Disabled) 
Gast (S-1-5-21-2791256138-4108016520-4061832491-501 - Limited - Enabled) 
HomeGroupUser$ (S-1-5-21-2791256138-4108016520-4061832491-1002 - Limited - Enabled) 
*** (S-1-5-21-2791256138-4108016520-4061832491-1001 - Administrator - Enabled) => C:\Users\***   
==================== Faulty Device Manager Devices =============   
Name: Bluetooth-Peripheriegerät 
Description: Bluetooth-Peripheriegerät 
Class Guid:  
Manufacturer:  
Service:  
Problem: : The drivers for this device are not installed. (Code 28) 
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.   
Name: Bluetooth-Peripheriegerät 
Description: Bluetooth-Peripheriegerät 
Class Guid:  
Manufacturer:  
Service:  
Problem: : The drivers for this device are not installed. (Code 28) 
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.   
Name: Bluetooth-Peripheriegerät 
Description: Bluetooth-Peripheriegerät 
Class Guid:  
Manufacturer:  
Service:  
Problem: : The drivers for this device are not installed. (Code 28) 
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.     
==================== Event log errors: =========================   
Application errors: 
==================   
System errors: 
============= 
Error: (10/23/2014 02:52:05 PM) (Source: Disk) (EventID: 7) (User: ) 
Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0.   
Error: (10/23/2014 02:51:56 PM) (Source: Disk) (EventID: 7) (User: ) 
Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0.   
Error: (10/23/2014 02:51:48 PM) (Source: Disk) (EventID: 7) (User: ) 
Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0.   
Error: (10/23/2014 02:51:39 PM) (Source: Disk) (EventID: 7) (User: ) 
Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0.   
Error: (10/23/2014 02:51:30 PM) (Source: Disk) (EventID: 7) (User: ) 
Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0.   
Error: (10/23/2014 02:51:22 PM) (Source: Disk) (EventID: 7) (User: ) 
Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0.   
Error: (10/23/2014 02:51:13 PM) (Source: Disk) (EventID: 7) (User: ) 
Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0.   
Error: (10/23/2014 02:51:04 PM) (Source: Disk) (EventID: 7) (User: ) 
Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0.   
Error: (10/23/2014 02:50:56 PM) (Source: Disk) (EventID: 7) (User: ) 
Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0.   
Error: (10/23/2014 02:39:39 PM) (Source: Disk) (EventID: 7) (User: ) 
Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0.     
Microsoft Office Sessions: 
========================= 
Error: (12/03/2012 01:43:27 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) 
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6662.5003, Microsoft Office Version: 12.0.6612.1000. This session lasted 4 seconds with 0 seconds of active time.  This session ended with a crash.   
Error: (06/22/2011 08:45:39 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) 
Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6550.5004, Microsoft Office Version: 12.0.6425.1000. This session lasted 58797 seconds with 13380 seconds of active time.  This session ended with a crash.     
==================== Memory info ===========================    
Processor: Intel(R) Core(TM)2 Duo CPU T7300 @ 2.00GHz 
Percentage of memory in use: 60% 
Total physical RAM: 2046.43 MB 
Available physical RAM: 799.88 MB 
Total Pagefile: 4092.86 MB 
Available Pagefile: 2573.93 MB 
Total Virtual: 2047.88 MB 
Available Virtual: 1903.74 MB   
==================== Drives ================================   
Drive c: () (Fixed) (Total:88.31 GB) (Free:8.09 GB) NTFS ==>[Drive with boot components (obtained from BCD)] 
Drive d: () (Fixed) (Total:88 GB) (Free:5.86 GB) NTFS   
==================== MBR & Partition Table ==================   
======================================================== 
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 186.3 GB) (Disk ID: 8C2E858D) 
Partition 1: (Not Active) - (Size=10 GB) - (Type=27) 
Partition 2: (Active) - (Size=88.3 GB) - (Type=07 NTFS) 
Partition 3: (Not Active) - (Size=88 GB) - (Type=07 NTFS)   
==================== End Of Log ============================      |