baby-lissa | 12.08.2013 18:35 |
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-08-2013 02
Ran by Lissi1 (administrator) on 12-08-2013 19:31:57
Running from C:\Users\Lissi1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TTDT2QBV
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 9
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(AMD) C:\Windows\system32\atiesrxx.exe
(AMD) C:\Windows\system32\atieclxx.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
(Lavasoft Limited) C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(CrypKey (Canada) Ltd.) C:\Windows\system32\crypserv.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
(Memeo) C:\Program Files (x86)\Memeo\AutoBackup\MemeoBackgroundService.exe
(PixArt Imaging Incorporation) C:\Windows\PixArt\Pac207\Monitor.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Protexis Inc.) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
(Skype Technologies S.A.) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Samsung) C:\Program Files (x86)\Samsung\Kies\Kies.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Samsung) C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Lavasoft) C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
() C:\Program Files (x86)\ScanWizard 5\ScannerFinder.exe
(Lavasoft Limited) C:\PROGRA~2\AD-AWA~1\AdAware.exe
(Dropbox, Inc.) C:\Users\Lissi1\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Windows Net) C:\Users\Lissi1\AppData\Roaming\Windows Net Data\net.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(GFI Software) C:\Program Files (x86)\Ad-Aware Antivirus\SBAMSvc.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Adobe Systems Incorporated) C:\Windows\system32\Macromed\Flash\FlashUtil64_11_8_800_94_ActiveX.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\OUTLOOK.EXE
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Farbar) C:\Users\Lissi1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TTDT2QBV\FRST64 (1).exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12673128 2011-08-16] (Realtek Semiconductor)
HKLM\...\Run: [Monitor] - C:\Windows\PixArt\PAC207\Monitor.exe [319488 2006-11-03] (PixArt Imaging Incorporation)
HKLM\...\Run: [IntelliType Pro] - c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [1464944 2012-11-02] (Microsoft Corporation)
HKLM\...\Run: [IntelliPoint] - c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2076272 2012-11-02] (Microsoft Corporation)
HKCU\...\Run: [KiesPreload] - C:\Program Files (x86)\Samsung\Kies\Kies.exe [1476104 2012-12-20] (Samsung)
HKCU\...\Run: [KiesPDLR] - C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [844296 2012-12-20] (Samsung)
HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [19603048 2013-06-03] (Skype Technologies S.A.)
HKCU\...\Run: [] - C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [844296 2012-12-20] (Samsung)
HKCU\...\Run: [SUPERAntiSpyware] - C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [5622512 2013-05-15] (SUPERAntiSpyware.com)
HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284440 2011-05-20] (Intel Corporation)
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [343168 2011-10-14] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [CLMLServer] - C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [107816 2010-08-04] (CyberLink)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59280 2012-10-11] (Apple Inc.)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [KiesTrayAgent] - C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [310280 2012-12-20] (Samsung Electronics Co., Ltd.)
HKLM-x32\...\Run: [Ad-Aware Browsing Protection] - C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe [542632 2013-01-31] (Lavasoft)
HKLM-x32\...\Run: [Ad-Aware Antivirus] - "C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareLauncher" --windows-run [x]
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [345144 2013-08-05] (Avira Operations GmbH & Co. KG)
HKU\Default\...\RunOnce: [HKCU] - C:\Windows\System32\oobe\info\HKCU.vbs [126 2009-11-12] ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Scanner Finder.lnk
ShortcutTarget: Scanner Finder.lnk -> C:\Program Files (x86)\ScanWizard 5\ScannerFinder.exe ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\~Disabled ()
Startup: C:\Users\Lissi1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Lissi1\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\Lissi1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\net.lnk
ShortcutTarget: net.lnk -> C:\Users\Lissi1\AppData\Roaming\Windows Net Data\net.exe (Windows Net)
BootExecute: autocheck autochk * sdnclean64.exe
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Sign In
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Google
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = MSN Deutschland: Aktuelle Nachrichten, Outlook.com Email und Skype Login.
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - DefaultScope {00B6DEF0-C572-45D3-AF51-CD416F2DA9C0} URL = hxxp://www.bing.com/search?FORM=BDT3DF&PC=BDT3&dt=080613&q={searchTerms}&src=IE-SearchBox
SearchScopes: HKCU - 63D76E6EC6B04284B071A585DCBE8EA6 URL = hxxp://websearch.ask.com/redirect?client=ie&tb=ORJ&o=&src=kw&q={searchTerms}&locale=&apn_ptnrs=U3&apn_dtid=OSJ000YYDE&apn_uid=53E641BF-D5D6-4646-8077-EE58703B9D12&apn_sauid=45E38BAC-10B5-487C-BE1B-F389560F4295
BHO-x32: No Name - {120A8821-2BEE-4C29-BCDA-62C577781992} - No File
BHO-x32: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.)
BHO-x32: Deaktivierungs-Add-on für Browser von Google Analytics - {75EF13CE-B59E-41ba-8A5A-A944031BD8B4} - C:\Program Files (x86)\Google\Google Analytics Opt-Out\gaoptout.dll (Google, Inc.)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: No Name - {9030D464-4C02-4ABF-8ECC-5164760863C6} - No File
BHO-x32: HomeTab - {ba696155-d96e-4281-b467-0367a0456474} - No File
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - No Name - !{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - No File
Toolbar: HKLM-x32 - Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files (x86)\Canon\Easy-WebPrint\Toolband.dll ()
Toolbar: HKLM-x32 - No Name - !{0027da2d-c9f2-4b0b-ae05-e2cd1bdb6cff} - No File
Toolbar: HKLM-x32 - No Name - !{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - No File
Toolbar: HKLM-x32 - No Name - !{95B7759C-8C7F-4BF1-B163-73684A933233} - No File
Toolbar: HKLM-x32 - HomeTab - {ba696155-d96e-4281-b467-0367a0456474} - No File
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Toolbar: HKCU - No Name - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - No File
Toolbar: HKCU - No Name - {91DA5E8A-3318-4F8C-B67E-5964DE3AB546} - No File
Toolbar: HKCU - No Name - {FC2B76FC-2132-4D80-A9A3-1F5C6E49066B} - No File
Toolbar: HKCU - No Name - {0027DA2D-C9F2-4B0B-AE05-E2CD1BDB6CFF} - No File
DPF: HKLM {7530BFB8-7293-4D34-9923-61A11451AFC5} hxxp://download.eset.com/special/eos/OnlineScanner.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Winsock: Catalog5-x64 01 %SystemRoot%\System32\mswsock.dll [326144] (Microsoft Corporation) ATTENTION: The LibraryPath should be "%SystemRoot%\system32\NLAapi.dll"
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Chrome:
=======
CHR HomePage: "homepage": "",
CHR RestoreOnStartup: "hxxp://www.msn.com/?pc=BDT3&ocid=BDT3DHP&dt=080613"
CHR Extension: (Plus-HD-2.4) - C:\Users\Lissi1\AppData\Local\Google\Chrome\User Data\Default\Extensions\hojmbfiljpkaijkdifoaacbpallpfkkf\1.23.29_0
CHR Extension: (Skype Click to Call) - C:\Users\Lissi1\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.3.0.11079_0
CHR Extension: (DvdVideoSoft Free Youtube Download) - C:\Users\Lissi1\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.0.0_0
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx
CHR StartMenuInternet: Google Chrome - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Services (Whitelisted) =================
R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [143120 2013-05-23] (SUPERAntiSpyware.com)
R2 Ad-Aware Service; C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareService.exe [1236336 2013-02-14] (Lavasoft Limited)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-08-05] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-08-05] (Avira Operations GmbH & Co. KG)
S4 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [589368 2013-08-05] (Avira Operations GmbH & Co. KG)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
S3 MSCSPTISRV; C:\Program Files (x86)\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe [45056 2006-12-14] (Sony Corporation)
S3 PACSPTISVR; C:\Program Files (x86)\Common Files\Sony Shared\AVLib\PACSPTISVR.exe [57344 2006-12-14] ()
R2 SBAMSvc; C:\Program Files (x86)\Ad-Aware Antivirus\SBAMSvc.exe [3677000 2012-09-20] (GFI Software)
S3 SonicStage Back-End Service; C:\Program Files (x86)\Common Files\Sony Shared\AVLib\SsBeSvc.exe [112184 2007-02-05] (Sony Corporation)
S3 SPTISRV; C:\Program Files (x86)\Common Files\Sony Shared\AVLib\SPTISRV.exe [69632 2006-12-14] (Sony Corporation)
S3 SSScsiSV; C:\Program Files (x86)\Common Files\Sony Shared\AVLib\SSScsiSV.exe [75320 2007-02-05] (Sony Corporation)
R2 Crypkey License; crypserv.exe [x]
==================== Drivers (Whitelisted) ====================
S3 Apowersoft_AudioDevice; C:\Windows\System32\drivers\Apowersoft_AudioDevice.sys [31968 2012-10-08] (Wondershare)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [100712 2013-08-05] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [130016 2013-08-05] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-08-05] (Avira Operations GmbH & Co. KG)
R0 gfibto; C:\Windows\System32\drivers\gfibto.sys [14456 2013-02-22] (GFI Software)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R1 NetworkX; C:\Windows\system32\ckldrv.sys [28664 2008-03-17] ()
S3 PAC207; C:\Windows\System32\DRIVERS\PFC027.SYS [572416 2006-12-05] (PixArt Imaging Inc.)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
S3 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)
S3 pccsmcfd; system32\DRIVERS\pccsmcfdx64.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-08-12 15:59 - 2013-08-12 15:59 - 00000000 ____D C:\Users\Lissi1\AppData\Local\{87BB76C1-82E0-437C-A37C-0433E34C4B33}
2013-08-12 11:03 - 2013-08-12 11:03 - 00000000 ____D C:\Users\Lissi1\AppData\Local\Adobe
2013-08-12 10:59 - 2013-08-12 13:25 - 00000000 ____D C:\Users\Lissi1\AppData\Local\adawarebp
2013-08-12 07:17 - 2013-08-12 15:17 - 00000512 _____ C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task b4eb2f77-0b34-4a31-8e76-89b6cbcecc1b.job
2013-08-12 07:17 - 2013-08-12 13:24 - 00000512 _____ C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 33915243-1829-4197-b765-f2f614375d1b.job
2013-08-12 07:17 - 2013-08-12 07:17 - 00003590 _____ C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task 33915243-1829-4197-b765-f2f614375d1b
2013-08-12 07:17 - 2013-08-12 07:17 - 00003516 _____ C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task b4eb2f77-0b34-4a31-8e76-89b6cbcecc1b
2013-08-12 07:17 - 2013-08-12 07:17 - 00001812 _____ C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
2013-08-12 07:17 - 2013-08-12 07:17 - 00000000 ____D C:\Users\Lissi1\AppData\Roaming\SUPERAntiSpyware.com
2013-08-12 07:17 - 2013-08-12 07:17 - 00000000 ____D C:\ProgramData\SUPERAntiSpyware.com
2013-08-12 07:17 - 2013-08-12 07:17 - 00000000 ____D C:\Program Files\SUPERAntiSpyware
2013-08-12 06:44 - 2013-08-12 06:44 - 00001117 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-08-12 06:44 - 2013-08-12 06:44 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-08-12 06:44 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2013-08-11 20:06 - 2013-08-12 06:33 - 00000000 ____D C:\Program Files (x86)\Eusing Free Registry Cleaner
2013-08-11 19:02 - 2013-08-12 19:02 - 00000468 _____ C:\Windows\Tasks\Wise Registry Cleaner Schedule Task.job
2013-08-11 19:02 - 2013-08-11 19:52 - 00000000 ____D C:\Users\Lissi1\AppData\Roaming\Wise Registry Cleaner
2013-08-11 19:02 - 2013-08-11 19:03 - 00003340 _____ C:\Windows\System32\Tasks\Wise Registry Cleaner Schedule Task
2013-08-11 19:00 - 2013-08-11 19:00 - 00000000 ____D C:\Program Files (x86)\Wise
2013-08-11 18:22 - 2013-08-11 18:22 - 00002676 _____ C:\AdwCleaner[S12].txt
2013-08-11 18:22 - 2013-08-11 18:22 - 00002613 _____ C:\AdwCleaner[R19].txt
2013-08-11 18:16 - 2013-08-11 18:16 - 00015178 _____ C:\AdwCleaner[R18].txt
2013-08-11 18:16 - 2013-08-11 18:16 - 00015091 _____ C:\AdwCleaner[S11].txt
2013-08-11 16:37 - 2013-08-11 16:37 - 00000000 __SHD C:\found.000
2013-08-10 22:13 - 2013-08-10 22:13 - 00000000 ____D C:\Users\Lissi1\AppData\Local\{FF9A8822-4474-4304-9014-9D112D469C43}
2013-08-09 19:38 - 2013-08-09 19:44 - 00000000 ____D C:\Users\Lissi1\Desktop\hagen
2013-08-09 19:38 - 2013-08-09 19:39 - 00000000 ____D C:\Users\Lissi1\AppData\Local\{776DAD39-B110-4BB8-8E5D-C94A0562B076}
2013-08-08 11:07 - 2013-08-08 11:07 - 00000085 _____ C:\Windows\wininit.ini
2013-08-07 20:00 - 2013-08-12 18:15 - 00001290 _____ C:\Windows\Tasks\Plus-HD-2.4-updater.job
2013-08-07 20:00 - 2013-08-07 20:00 - 00004320 _____ C:\Windows\System32\Tasks\Plus-HD-2.4-updater
2013-08-07 19:59 - 2013-08-12 18:15 - 00001202 _____ C:\Windows\Tasks\Plus-HD-2.4-codedownloader.job
2013-08-07 19:59 - 2013-08-12 18:15 - 00001100 _____ C:\Windows\Tasks\Plus-HD-2.4-enabler.job
2013-08-07 19:59 - 2013-08-07 19:59 - 00004232 _____ C:\Windows\System32\Tasks\Plus-HD-2.4-codedownloader
2013-08-07 19:59 - 2013-08-07 19:59 - 00004130 _____ C:\Windows\System32\Tasks\Plus-HD-2.4-enabler
2013-08-07 19:58 - 2013-08-12 18:15 - 00001910 _____ C:\Windows\Tasks\Plus-HD-2.4-chromeinstaller.job
2013-08-07 19:58 - 2013-08-11 16:06 - 00000000 ____D C:\Program Files (x86)\Plus-HD-2.4
2013-08-07 18:29 - 2013-08-07 18:29 - 00002180 _____ C:\AdwCleaner[S10].txt
2013-08-07 18:28 - 2013-08-07 18:28 - 00002117 _____ C:\AdwCleaner[R17].txt
2013-08-07 10:32 - 2013-08-07 10:32 - 00000000 _____ C:\autoexec.bat
2013-08-07 10:31 - 2013-08-07 10:31 - 00000000 ____D C:\Program Files\Enigma Software Group
2013-08-07 10:30 - 2013-08-07 11:35 - 00000000 ____D C:\Windows\67E1227ED5534A6A96CD40CCBBC705D8.TMP
2013-08-07 10:27 - 2013-08-07 10:27 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\Lissi1\Downloads\SpyHunter-Installer.exe
2013-08-07 10:23 - 2013-04-17 09:02 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2013-08-07 10:23 - 2013-04-17 08:24 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2013-08-07 10:14 - 2013-08-07 10:14 - 00000000 ____D C:\FRST
2013-08-07 00:12 - 2013-08-07 00:12 - 00141008 _____ C:\Users\Lissi1\AppData\Local\GDIPFONTCACHEV1.DAT
2013-08-07 00:10 - 2013-08-07 00:10 - 00524744 _____ C:\Windows\system32\FNTCACHE.DAT
2013-08-06 18:55 - 2013-04-10 01:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2013-08-06 18:55 - 2013-04-03 00:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2013-08-06 18:20 - 2012-08-23 16:13 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2013-08-06 18:20 - 2012-08-23 16:10 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2013-08-06 18:20 - 2012-08-23 16:08 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbGD.sys
2013-08-06 18:20 - 2012-08-23 16:07 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2013-08-06 18:20 - 2012-08-23 15:47 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll
2013-08-06 18:20 - 2012-08-23 15:46 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2013-08-06 18:20 - 2012-08-23 15:41 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2013-08-06 18:20 - 2012-08-23 15:40 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2013-08-06 18:20 - 2012-08-23 15:24 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll
2013-08-06 18:20 - 2012-08-23 15:20 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2013-08-06 18:20 - 2012-08-23 15:18 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2013-08-06 18:20 - 2012-08-23 15:17 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2013-08-06 18:20 - 2012-08-23 15:06 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2013-08-06 18:20 - 2012-08-23 14:52 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2013-08-06 18:20 - 2012-08-23 13:20 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2013-08-06 18:20 - 2012-08-23 13:15 - 00269312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2013-08-06 18:20 - 2012-08-23 13:14 - 00384000 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2013-08-06 18:20 - 2012-08-23 13:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpendp_winip.dll
2013-08-06 18:20 - 2012-08-23 12:54 - 00322560 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
2013-08-06 18:20 - 2012-08-23 12:51 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp_winip.dll
2013-08-06 18:20 - 2012-08-23 12:39 - 01048064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2013-08-06 18:20 - 2012-08-23 12:22 - 01123840 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2013-08-06 18:20 - 2012-08-23 11:51 - 03174912 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2013-08-06 18:20 - 2012-08-23 10:19 - 04916224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2013-08-06 18:20 - 2012-08-23 10:13 - 05773824 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2013-08-06 18:18 - 2013-08-06 18:20 - 00000000 ____D C:\Windows\system32\MRT
2013-08-06 18:13 - 2012-03-14 05:00 - 00385024 _____ (CANON INC.) C:\Windows\system32\CNMLMAW.DLL
2013-08-06 18:07 - 2013-08-06 18:07 - 00003031 _____ C:\Users\Lissi1\Downloads\writeBatchmediaTag (1).js
2013-08-06 18:06 - 2013-08-06 18:07 - 00003031 _____ C:\Users\Lissi1\Downloads\writeBatchmediaTag.js
2013-08-06 18:00 - 2012-08-24 20:13 - 00154480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2013-08-06 18:00 - 2012-08-24 20:09 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2013-08-06 18:00 - 2012-08-24 20:05 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2013-08-06 18:00 - 2012-08-24 20:03 - 01448448 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2013-08-06 18:00 - 2012-08-24 18:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2013-08-06 18:00 - 2012-08-24 18:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2013-08-06 18:00 - 2012-08-24 18:53 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 01988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-08-06 14:35 - 2013-08-06 14:44 - 00010360 _____ C:\Windows\IE10_main.log
2013-08-06 11:59 - 2013-08-06 11:59 - 00002055 _____ C:\AdwCleaner[R14].txt
2013-08-06 11:58 - 2013-08-06 11:58 - 00001994 _____ C:\AdwCleaner[R13].txt
2013-08-06 11:58 - 2013-08-06 11:58 - 00001933 _____ C:\AdwCleaner[R12].txt
2013-08-06 11:48 - 2013-08-06 11:48 - 00000000 ____D C:\Users\Lissi1\AppData\Local\{E669DA13-D1D7-4467-8C6E-03285C19EF68}
2013-08-06 10:56 - 2013-05-29 08:15 - 17829376 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-08-06 10:56 - 2013-05-29 07:50 - 10926080 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-08-06 10:56 - 2013-05-29 07:43 - 02312704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-08-06 10:56 - 2013-05-29 07:36 - 01346560 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-08-06 10:56 - 2013-05-29 07:35 - 01392128 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-08-06 10:56 - 2013-05-29 07:34 - 01494528 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-08-06 10:56 - 2013-05-29 07:33 - 00237056 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-08-06 10:56 - 2013-05-29 07:31 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-08-06 10:56 - 2013-05-29 07:29 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-08-06 10:56 - 2013-05-29 07:29 - 00599040 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-08-06 10:56 - 2013-05-29 07:29 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-08-06 10:56 - 2013-05-29 07:27 - 02147840 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-08-06 10:56 - 2013-05-29 07:27 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-08-06 10:56 - 2013-05-29 07:25 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-08-06 10:56 - 2013-05-29 07:25 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-08-06 10:56 - 2013-05-29 07:18 - 00248320 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-08-06 10:56 - 2013-05-29 03:56 - 12333568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-08-06 10:56 - 2013-05-29 03:50 - 01800704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-08-06 10:56 - 2013-05-29 03:48 - 09738752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-08-06 10:56 - 2013-05-29 03:41 - 01427968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2013-08-06 10:56 - 2013-05-29 03:41 - 01129472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-08-06 10:56 - 2013-05-29 03:41 - 01104384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-08-06 10:56 - 2013-05-29 03:40 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2013-08-06 10:56 - 2013-05-29 03:38 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-08-06 10:56 - 2013-05-29 03:37 - 00142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2013-08-06 10:56 - 2013-05-29 03:36 - 00420864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2013-08-06 10:56 - 2013-05-29 03:35 - 00717824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-08-06 10:56 - 2013-05-29 03:35 - 00607744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-08-06 10:56 - 2013-05-29 03:33 - 02382848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-08-06 10:56 - 2013-05-29 03:33 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-08-06 10:56 - 2013-05-29 03:33 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2013-08-06 10:56 - 2013-05-29 03:29 - 00176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-08-06 10:54 - 2013-05-08 08:39 - 01910632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-08-06 10:54 - 2013-04-10 08:01 - 00983400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2013-08-06 10:54 - 2013-04-10 08:01 - 00265064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2013-08-06 10:54 - 2013-02-27 08:02 - 00111448 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2013-08-06 10:54 - 2013-02-27 07:52 - 14172672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2013-08-06 10:54 - 2013-02-27 07:52 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2013-08-06 10:54 - 2013-02-27 07:48 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2013-08-06 10:54 - 2013-02-27 07:47 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2013-08-06 10:54 - 2013-02-27 06:55 - 12872704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2013-08-06 10:54 - 2013-02-27 06:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
2013-08-06 10:54 - 2013-02-27 06:49 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2013-08-06 10:54 - 2013-01-03 08:00 - 00288088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2013-08-06 10:54 - 2011-02-03 13:25 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2013-08-06 10:53 - 2013-06-04 08:00 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2013-08-06 10:53 - 2013-06-04 06:53 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2013-08-06 10:53 - 2013-05-06 08:03 - 01887744 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2013-08-06 10:53 - 2013-05-06 06:56 - 01620480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2013-08-06 10:53 - 2013-04-26 07:51 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2013-08-06 10:53 - 2013-04-26 06:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2013-08-06 10:53 - 2013-04-12 16:45 - 01656680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2013-08-06 10:53 - 2013-03-19 07:53 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2013-08-06 10:53 - 2013-03-19 07:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2013-08-06 10:53 - 2013-02-12 06:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023x.sys
2013-08-06 10:53 - 2013-02-12 06:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys
2013-08-06 10:53 - 2013-01-04 07:46 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2013-08-06 10:53 - 2013-01-04 06:51 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2013-08-06 10:53 - 2013-01-04 04:47 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2013-08-06 10:53 - 2013-01-04 04:47 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2013-08-06 10:53 - 2013-01-04 04:47 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2013-08-06 10:53 - 2013-01-04 04:47 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2013-08-06 10:52 - 2013-06-05 05:34 - 03153920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-08-06 10:52 - 2013-05-10 07:49 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll
2013-08-06 10:52 - 2013-05-10 05:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll
2013-08-06 10:52 - 2013-01-24 08:01 - 00223752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2013-08-06 10:51 - 2013-05-13 07:51 - 01464320 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2013-08-06 10:51 - 2013-05-13 07:51 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2013-08-06 10:51 - 2013-05-13 07:51 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2013-08-06 10:51 - 2013-05-13 07:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll
2013-08-06 10:51 - 2013-05-13 06:45 - 01160192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2013-08-06 10:51 - 2013-05-13 06:45 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2013-08-06 10:51 - 2013-05-13 06:45 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2013-08-06 10:51 - 2013-05-13 05:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe
2013-08-06 10:51 - 2013-05-13 05:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe
2013-08-06 10:51 - 2013-05-13 05:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll
2013-08-06 10:50 - 2013-04-26 01:30 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2013-08-06 10:50 - 2013-04-01 00:52 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2013-08-06 10:50 - 2013-03-19 08:04 - 05550424 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2013-08-06 10:50 - 2013-03-19 07:46 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2013-08-06 10:50 - 2013-03-19 07:04 - 03968856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2013-08-06 10:50 - 2013-03-19 07:04 - 03913560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2013-08-06 10:50 - 2013-03-19 06:47 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2013-08-06 10:50 - 2013-03-19 05:06 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2013-08-06 10:33 - 2013-08-06 10:33 - 00024422 _____ C:\ComboFix.txt
2013-08-06 10:18 - 2013-08-06 10:33 - 00000000 ____D C:\Qoobox
2013-08-06 10:18 - 2011-06-26 08:45 - 00256000 _____ C:\Windows\PEV.exe
2013-08-06 10:18 - 2010-11-07 19:20 - 00208896 _____ C:\Windows\MBR.exe
2013-08-06 10:18 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2013-08-06 10:18 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2013-08-06 10:18 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2013-08-06 10:18 - 2000-08-31 02:00 - 00098816 _____ C:\Windows\sed.exe
2013-08-06 10:18 - 2000-08-31 02:00 - 00080412 _____ C:\Windows\grep.exe
2013-08-06 10:18 - 2000-08-31 02:00 - 00068096 _____ C:\Windows\zip.exe
2013-08-06 10:17 - 2013-08-06 10:32 - 00000000 ____D C:\Windows\erdnt
2013-08-06 10:10 - 2013-08-06 10:10 - 00001872 _____ C:\AdwCleaner[R11].txt
2013-08-06 10:08 - 2013-08-06 10:08 - 00001811 _____ C:\AdwCleaner[R10].txt
2013-08-05 19:23 - 2013-08-05 19:23 - 00002038 _____ C:\AdwCleaner[S7].txt
2013-08-05 19:23 - 2013-08-05 19:23 - 00001976 _____ C:\AdwCleaner[R9].txt
2013-08-05 12:28 - 2013-08-05 12:28 - 00000000 ____D C:\Users\Lissi1\AppData\Roaming\Malwarebytes
2013-08-05 12:28 - 2013-08-05 12:28 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-08-05 12:26 - 2013-08-07 00:09 - 00000000 ____D C:\Program Files (x86)\Hosts_Anti_Adwares_PUPs
2013-08-05 12:26 - 2013-08-05 12:26 - 00001714 _____ C:\AdwCleaner[R8].txt
2013-08-05 12:21 - 2013-08-05 12:21 - 00001654 _____ C:\AdwCleaner[R7].txt
2013-08-05 12:08 - 2013-08-05 12:08 - 00001596 _____ C:\AdwCleaner[S6].txt
2013-08-05 12:08 - 2013-08-05 12:08 - 00001534 _____ C:\AdwCleaner[R6].txt
2013-08-05 12:02 - 2013-08-05 12:02 - 00001726 _____ C:\AdwCleaner[S5].txt
2013-08-05 12:02 - 2013-08-05 12:02 - 00001664 _____ C:\AdwCleaner[R5].txt
2013-08-05 12:01 - 2013-08-05 12:01 - 00666633 _____ C:\Users\Lissi1\Desktop\adwcleaner06.exe
2013-08-05 11:53 - 2013-08-05 11:53 - 00078778 _____ C:\AdwCleaner[R4].txt
2013-08-05 11:53 - 2013-08-05 11:53 - 00033765 _____ C:\AdwCleaner[S4].txt
2013-08-05 11:51 - 2013-08-05 11:51 - 00078717 _____ C:\AdwCleaner[R3].txt
2013-08-05 11:49 - 2013-08-05 11:49 - 00000000 ____D C:\Users\Lissi1\AppData\Roaming\Avira
2013-08-05 11:44 - 2013-08-05 11:44 - 00083672 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2013-08-05 11:42 - 2013-08-05 11:43 - 00000000 ____D C:\ProgramData\Avira
2013-08-05 11:42 - 2013-08-05 11:42 - 00000000 ____D C:\Program Files (x86)\Avira
2013-08-05 11:42 - 2013-08-05 11:35 - 00130016 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2013-08-05 11:42 - 2013-08-05 11:35 - 00100712 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2013-08-05 11:42 - 2013-08-05 11:35 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2013-07-27 01:17 - 2013-07-28 13:18 - 00000000 ____D C:\Users\Lissi1\AppData\Local\{FAF84326-4611-466D-B67A-0E297DF11DC0}
2013-07-26 13:22 - 2013-07-26 19:59 - 00000000 ____D C:\Users\Lissi1\Desktop\Lissi Teich
2013-07-26 13:16 - 2013-07-26 13:16 - 00000000 ____D C:\Users\Lissi1\AppData\Local\{2D21CAF1-E27F-424F-9F6A-3C2B7F8E8FE5}
2013-07-26 06:15 - 2013-07-26 06:15 - 00000000 ____D C:\Windows\System32\Tasks\ProtectedSearch
2013-07-25 19:34 - 2013-07-25 19:34 - 00000000 ____D C:\Users\Lissi1\AppData\Local\{79D351A7-86AB-4734-97E9-C42B3C381CD0}
2013-07-25 19:22 - 2013-07-26 13:19 - 00000000 ____D C:\Users\Lissi1\Desktop\MalleTauchen
2013-07-25 16:48 - 2013-07-25 19:12 - 1071260076 _____ C:\Users\Lissi1\Downloads\Archiv20130709-1430.zip
2013-07-23 18:47 - 2013-07-23 18:47 - 00000000 ____D C:\Users\Lissi1\AppData\Local\FreeSystemUtilities
2013-07-23 18:20 - 2013-08-09 12:00 - 00003874 _____ C:\Windows\System32\Tasks\Freemium1ClickMaint
2013-07-23 18:20 - 2013-08-01 03:08 - 00032328 _____ C:\Windows\Launcher.exe
2013-07-23 18:20 - 2013-07-29 18:44 - 00000000 ____D C:\Users\Lissi1\AppData\Roaming\Windows Net Data
2013-07-23 18:20 - 2013-07-23 18:20 - 00000000 ____D C:\Windows\System32\Tasks\Browser Updater
2013-07-23 14:55 - 2013-07-23 14:55 - 00000000 ____D C:\Users\Lissi1\AppData\Local\{8B102F25-1113-48D3-9381-DA6E4B9A6BA8}
2013-07-22 17:03 - 2013-07-22 17:03 - 00004171 _____ C:\Users\Lissi1\Desktop\TauchenAlissa.wlmp
2013-07-22 16:53 - 2013-07-22 17:03 - 00004166 _____ C:\Users\Lissi1\Desktop\Tauchen1.wlmp
2013-07-22 14:42 - 2013-07-22 14:43 - 00000000 ____D C:\Users\Lissi1\AppData\Local\{8EF11119-F58F-43BF-BC83-8F60387DADED}
2013-07-22 14:41 - 2013-07-14 19:47 - 977585085 _____ C:\Users\Lissi1\Desktop\20130709-1430 - Kopie.mov
2013-07-20 12:08 - 2013-07-20 12:08 - 00000000 ____D C:\Users\Lissi1\AppData\Local\{A2FDA827-159E-4898-9016-E6A1408AFA4C}
2013-07-17 18:43 - 2013-07-17 18:43 - 00000000 ____D C:\Users\Lissi1\AppData\Local\Deployment
2013-07-17 16:37 - 2013-07-17 17:49 - 00001447 _____ C:\Users\Lissi1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-07-17 16:37 - 2013-07-17 17:49 - 00001413 _____ C:\Users\Lissi1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2013-07-14 18:38 - 2013-07-14 19:47 - 977585085 _____ C:\Users\Lissi1\Desktop\20130709-1430.mov
==================== One Month Modified Files and Folders =======
2013-08-12 19:27 - 2013-05-08 20:36 - 190989312 _____ C:\Users\Lissi1\Outlooklissa.pst
2013-08-12 19:16 - 2013-08-12 19:16 - 00065536 ___HT C:\Users\Lissi1\~Outlooklissa.pst.tmp
2013-08-12 19:16 - 2012-02-04 18:48 - 00000000 ____D C:\Users\Lissi1
2013-08-12 19:02 - 2013-08-11 19:02 - 00000468 _____ C:\Windows\Tasks\Wise Registry Cleaner Schedule Task.job
2013-08-12 18:55 - 2012-05-01 10:51 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-08-12 18:44 - 2012-02-04 18:44 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-08-12 18:23 - 2009-07-14 06:45 - 00017152 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-08-12 18:23 - 2009-07-14 06:45 - 00017152 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-08-12 18:19 - 2012-12-24 23:53 - 00004086 _____ C:\Windows\System32\Tasks\Software Updater Ui
2013-08-12 18:19 - 2012-12-24 23:51 - 00004122 _____ C:\Windows\System32\Tasks\Software Updater
2013-08-12 18:17 - 2012-10-23 16:44 - 00000000 ____D C:\Users\Lissi1\AppData\Roaming\Dropbox
2013-08-12 18:16 - 2012-04-13 16:05 - 03431936 ___SH C:\Users\Lissi1\Desktop\Thumbs.db
2013-08-12 18:15 - 2013-08-07 20:00 - 00001290 _____ C:\Windows\Tasks\Plus-HD-2.4-updater.job
2013-08-12 18:15 - 2013-08-07 19:59 - 00001202 _____ C:\Windows\Tasks\Plus-HD-2.4-codedownloader.job
2013-08-12 18:15 - 2013-08-07 19:59 - 00001100 _____ C:\Windows\Tasks\Plus-HD-2.4-enabler.job
2013-08-12 18:15 - 2013-08-07 19:58 - 00001910 _____ C:\Windows\Tasks\Plus-HD-2.4-chromeinstaller.job
2013-08-12 18:15 - 2013-04-04 12:45 - 00009681 _____ C:\Windows\setupact.log
2013-08-12 18:15 - 2013-03-05 20:06 - 00007936 _____ C:\Windows\error.log
2013-08-12 18:15 - 2012-10-23 16:46 - 00000000 ___RD C:\Users\Lissi1\Dropbox
2013-08-12 18:15 - 2012-02-04 18:44 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-08-12 18:15 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-08-12 18:14 - 2013-03-05 20:05 - 00003165 _____ C:\Windows\errord.log
2013-08-12 16:15 - 2012-02-04 18:43 - 01513589 _____ C:\Windows\WindowsUpdate.log
2013-08-12 15:59 - 2013-08-12 15:59 - 00000000 ____D C:\Users\Lissi1\AppData\Local\{87BB76C1-82E0-437C-A37C-0433E34C4B33}
2013-08-12 15:17 - 2013-08-12 07:17 - 00000512 _____ C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task b4eb2f77-0b34-4a31-8e76-89b6cbcecc1b.job
2013-08-12 13:25 - 2013-08-12 10:59 - 00000000 ____D C:\Users\Lissi1\AppData\Local\adawarebp
2013-08-12 13:24 - 2013-08-12 07:17 - 00000512 _____ C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 33915243-1829-4197-b765-f2f614375d1b.job
2013-08-12 13:24 - 2012-11-13 07:22 - 00125256 _____ C:\Windows\PFRO.log
2013-08-12 11:03 - 2013-08-12 11:03 - 00000000 ____D C:\Users\Lissi1\AppData\Local\Adobe
2013-08-12 07:17 - 2013-08-12 07:17 - 00003590 _____ C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task 33915243-1829-4197-b765-f2f614375d1b
2013-08-12 07:17 - 2013-08-12 07:17 - 00003516 _____ C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task b4eb2f77-0b34-4a31-8e76-89b6cbcecc1b
2013-08-12 07:17 - 2013-08-12 07:17 - 00001812 _____ C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
2013-08-12 07:17 - 2013-08-12 07:17 - 00000000 ____D C:\Users\Lissi1\AppData\Roaming\SUPERAntiSpyware.com
2013-08-12 07:17 - 2013-08-12 07:17 - 00000000 ____D C:\ProgramData\SUPERAntiSpyware.com
2013-08-12 07:17 - 2013-08-12 07:17 - 00000000 ____D C:\Program Files\SUPERAntiSpyware
2013-08-12 06:44 - 2013-08-12 06:44 - 00001117 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-08-12 06:44 - 2013-08-12 06:44 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-08-12 06:33 - 2013-08-11 20:06 - 00000000 ____D C:\Program Files (x86)\Eusing Free Registry Cleaner
2013-08-11 20:54 - 2012-09-20 17:48 - 00000000 ____D C:\Users\Lissi1\AppData\Roaming\Skype
2013-08-11 19:57 - 2012-12-24 23:48 - 00000000 ____D C:\Program Files (x86)\SelfUpdater
2013-08-11 19:52 - 2013-08-11 19:02 - 00000000 ____D C:\Users\Lissi1\AppData\Roaming\Wise Registry Cleaner
2013-08-11 19:03 - 2013-08-11 19:02 - 00003340 _____ C:\Windows\System32\Tasks\Wise Registry Cleaner Schedule Task
2013-08-11 19:00 - 2013-08-11 19:00 - 00000000 ____D C:\Program Files (x86)\Wise
2013-08-11 18:22 - 2013-08-11 18:22 - 00002676 _____ C:\AdwCleaner[S12].txt
2013-08-11 18:22 - 2013-08-11 18:22 - 00002613 _____ C:\AdwCleaner[R19].txt
2013-08-11 18:16 - 2013-08-11 18:16 - 00015178 _____ C:\AdwCleaner[R18].txt
2013-08-11 18:16 - 2013-08-11 18:16 - 00015091 _____ C:\AdwCleaner[S11].txt
2013-08-11 17:11 - 2012-05-09 15:14 - 00000000 ____D C:\Program Files (x86)\Free FLV Converter
2013-08-11 16:44 - 2013-03-10 20:20 - 00000000 ____D C:\Users\Lissi1\AppData\Roaming\MyPhoneExplorer
2013-08-11 16:37 - 2013-08-11 16:37 - 00000000 __SHD C:\found.000
2013-08-11 16:06 - 2013-08-07 19:58 - 00000000 ____D C:\Program Files (x86)\Plus-HD-2.4
2013-08-10 22:13 - 2013-08-10 22:13 - 00000000 ____D C:\Users\Lissi1\AppData\Local\{FF9A8822-4474-4304-9014-9D112D469C43}
2013-08-10 18:26 - 2013-03-10 20:25 - 00003148 _____ C:\Windows\System32\Tasks\SidebarExecute
2013-08-10 18:25 - 2013-03-10 21:04 - 00002065 _____ C:\Users\Public\Desktop\MyPhoneExplorer.lnk
2013-08-10 18:25 - 2013-03-10 21:04 - 00000000 ____D C:\Program Files (x86)\MyPhoneExplorer
2013-08-09 19:44 - 2013-08-09 19:38 - 00000000 ____D C:\Users\Lissi1\Desktop\hagen
2013-08-09 19:39 - 2013-08-09 19:38 - 00000000 ____D C:\Users\Lissi1\AppData\Local\{776DAD39-B110-4BB8-8E5D-C94A0562B076}
2013-08-09 12:00 - 2013-07-23 18:20 - 00003874 _____ C:\Windows\System32\Tasks\Freemium1ClickMaint
2013-08-08 11:07 - 2013-08-08 11:07 - 00000085 _____ C:\Windows\wininit.ini
2013-08-07 20:07 - 2012-05-09 15:16 - 00002592 _____ C:\Windows\SysWOW64\InstallUtil.InstallLog
2013-08-07 20:00 - 2013-08-07 20:00 - 00004320 _____ C:\Windows\System32\Tasks\Plus-HD-2.4-updater
2013-08-07 19:59 - 2013-08-07 19:59 - 00004232 _____ C:\Windows\System32\Tasks\Plus-HD-2.4-codedownloader
2013-08-07 19:59 - 2013-08-07 19:59 - 00004130 _____ C:\Windows\System32\Tasks\Plus-HD-2.4-enabler
2013-08-07 18:29 - 2013-08-07 18:29 - 00002180 _____ C:\AdwCleaner[S10].txt
2013-08-07 18:28 - 2013-08-07 18:28 - 00002117 _____ C:\AdwCleaner[R17].txt
2013-08-07 18:26 - 2011-07-18 23:23 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2013-08-07 11:35 - 2013-08-07 10:30 - 00000000 ____D C:\Windows\67E1227ED5534A6A96CD40CCBBC705D8.TMP
2013-08-07 10:32 - 2013-08-07 10:32 - 00000000 _____ C:\autoexec.bat
2013-08-07 10:31 - 2013-08-07 10:31 - 00000000 ____D C:\Program Files\Enigma Software Group
2013-08-07 10:27 - 2013-08-07 10:27 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\Lissi1\Downloads\SpyHunter-Installer.exe
2013-08-07 10:14 - 2013-08-07 10:14 - 00000000 ____D C:\FRST
2013-08-07 01:02 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache
2013-08-07 00:12 - 2013-08-07 00:12 - 00141008 _____ C:\Users\Lissi1\AppData\Local\GDIPFONTCACHEV1.DAT
2013-08-07 00:10 - 2013-08-07 00:10 - 00524744 _____ C:\Windows\system32\FNTCACHE.DAT
2013-08-07 00:09 - 2013-08-05 12:26 - 00000000 ____D C:\Program Files (x86)\Hosts_Anti_Adwares_PUPs
2013-08-06 18:38 - 2012-02-04 18:47 - 00000000 ___RD C:\Users\Lissi1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-08-06 18:38 - 2012-02-04 18:47 - 00000000 ___RD C:\Users\Lissi1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2013-08-06 18:34 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender
2013-08-06 18:34 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2013-08-06 18:34 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\PolicyDefinitions
2013-08-06 18:33 - 2011-04-12 10:28 - 00000000 ____D C:\Program Files\Windows Journal
2013-08-06 18:33 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\zh-HK
2013-08-06 18:33 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\tr-TR
2013-08-06 18:33 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\zh-HK
2013-08-06 18:33 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\tr-TR
2013-08-06 18:20 - 2013-08-06 18:18 - 00000000 ____D C:\Windows\system32\MRT
2013-08-06 18:12 - 2011-05-16 16:04 - 00654150 _____ C:\Windows\system32\perfh007.dat
2013-08-06 18:12 - 2011-05-16 16:04 - 00130022 _____ C:\Windows\system32\perfc007.dat
2013-08-06 18:12 - 2009-07-14 07:13 - 01519624 _____ C:\Windows\system32\PerfStringBackup.INI
2013-08-06 18:07 - 2013-08-06 18:07 - 00003031 _____ C:\Users\Lissi1\Downloads\writeBatchmediaTag (1).js
2013-08-06 18:07 - 2013-08-06 18:06 - 00003031 _____ C:\Users\Lissi1\Downloads\writeBatchmediaTag.js
2013-08-06 17:43 - 2011-07-18 22:54 - 00000000 ____D C:\Windows\Panther
2013-08-06 17:41 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\sl-SI
2013-08-06 17:41 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\sl-SI
2013-08-06 14:51 - 2012-02-04 19:29 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-08-06 14:44 - 2013-08-06 14:35 - 00010360 _____ C:\Windows\IE10_main.log
2013-08-06 14:38 - 2013-08-06 14:38 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 01988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-08-06 14:38 - 2013-08-06 14:38 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-08-06 11:59 - 2013-08-06 11:59 - 00002055 _____ C:\AdwCleaner[R14].txt
2013-08-06 11:58 - 2013-08-06 11:58 - 00001994 _____ C:\AdwCleaner[R13].txt
2013-08-06 11:58 - 2013-08-06 11:58 - 00001933 _____ C:\AdwCleaner[R12].txt
2013-08-06 11:48 - 2013-08-06 11:48 - 00000000 ____D C:\Users\Lissi1\AppData\Local\{E669DA13-D1D7-4467-8C6E-03285C19EF68}
2013-08-06 11:44 - 2012-11-24 19:35 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-08-06 11:44 - 2012-11-24 19:35 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2013-08-06 10:33 - 2013-08-06 10:33 - 00024422 _____ C:\ComboFix.txt
2013-08-06 10:33 - 2013-08-06 10:18 - 00000000 ____D C:\Qoobox
2013-08-06 10:33 - 2009-07-14 05:20 - 00000000 __RHD C:\Users\Default
2013-08-06 10:32 - 2013-08-06 10:17 - 00000000 ____D C:\Windows\erdnt
2013-08-06 10:28 - 2009-07-14 04:34 - 00000215 _____ C:\Windows\system.ini
2013-08-06 10:10 - 2013-08-06 10:10 - 00001872 _____ C:\AdwCleaner[R11].txt
2013-08-06 10:08 - 2013-08-06 10:08 - 00001811 _____ C:\AdwCleaner[R10].txt
2013-08-05 22:44 - 2012-02-04 18:44 - 00000000 ____D C:\Program Files (x86)\Google
2013-08-05 19:23 - 2013-08-05 19:23 - 00002038 _____ C:\AdwCleaner[S7].txt
2013-08-05 19:23 - 2013-08-05 19:23 - 00001976 _____ C:\AdwCleaner[R9].txt
2013-08-05 16:22 - 2013-05-11 14:02 - 00000000 ____D C:\ProgramData\Avery
2013-08-05 12:28 - 2013-08-05 12:28 - 00000000 ____D C:\Users\Lissi1\AppData\Roaming\Malwarebytes
2013-08-05 12:28 - 2013-08-05 12:28 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-08-05 12:26 - 2013-08-05 12:26 - 00001714 _____ C:\AdwCleaner[R8].txt
2013-08-05 12:21 - 2013-08-05 12:21 - 00001654 _____ C:\AdwCleaner[R7].txt
2013-08-05 12:09 - 2012-02-04 23:49 - 00000000 ____D C:\Users\Lissi1\AppData\Roaming\CheckPoint
2013-08-05 12:08 - 2013-08-05 12:08 - 00001596 _____ C:\AdwCleaner[S6].txt
2013-08-05 12:08 - 2013-08-05 12:08 - 00001534 _____ C:\AdwCleaner[R6].txt
2013-08-05 12:02 - 2013-08-05 12:02 - 00001726 _____ C:\AdwCleaner[S5].txt
2013-08-05 12:02 - 2013-08-05 12:02 - 00001664 _____ C:\AdwCleaner[R5].txt
2013-08-05 12:01 - 2013-08-05 12:01 - 00666633 _____ C:\Users\Lissi1\Desktop\adwcleaner06.exe
2013-08-05 11:53 - 2013-08-05 11:53 - 00078778 _____ C:\AdwCleaner[R4].txt
2013-08-05 11:53 - 2013-08-05 11:53 - 00033765 _____ C:\AdwCleaner[S4].txt
2013-08-05 11:51 - 2013-08-05 11:51 - 00078717 _____ C:\AdwCleaner[R3].txt
2013-08-05 11:49 - 2013-08-05 11:49 - 00000000 ____D C:\Users\Lissi1\AppData\Roaming\Avira
2013-08-05 11:44 - 2013-08-05 11:44 - 00083672 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2013-08-05 11:43 - 2013-08-05 11:42 - 00000000 ____D C:\ProgramData\Avira
2013-08-05 11:42 - 2013-08-05 11:42 - 00000000 ____D C:\Program Files (x86)\Avira
2013-08-05 11:35 - 2013-08-05 11:42 - 00130016 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2013-08-05 11:35 - 2013-08-05 11:42 - 00100712 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2013-08-05 11:35 - 2013-08-05 11:42 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2013-08-01 03:08 - 2013-07-23 18:20 - 00032328 _____ C:\Windows\Launcher.exe
2013-07-29 18:44 - 2013-07-23 18:20 - 00000000 ____D C:\Users\Lissi1\AppData\Roaming\Windows Net Data
2013-07-28 13:18 - 2013-07-27 01:17 - 00000000 ____D C:\Users\Lissi1\AppData\Local\{FAF84326-4611-466D-B67A-0E297DF11DC0}
2013-07-26 19:59 - 2013-07-26 13:22 - 00000000 ____D C:\Users\Lissi1\Desktop\Lissi Teich
2013-07-26 13:19 - 2013-07-25 19:22 - 00000000 ____D C:\Users\Lissi1\Desktop\MalleTauchen
2013-07-26 13:16 - 2013-07-26 13:16 - 00000000 ____D C:\Users\Lissi1\AppData\Local\{2D21CAF1-E27F-424F-9F6A-3C2B7F8E8FE5}
2013-07-26 06:15 - 2013-07-26 06:15 - 00000000 ____D C:\Windows\System32\Tasks\ProtectedSearch
2013-07-25 19:34 - 2013-07-25 19:34 - 00000000 ____D C:\Users\Lissi1\AppData\Local\{79D351A7-86AB-4734-97E9-C42B3C381CD0}
2013-07-25 19:12 - 2013-07-25 16:48 - 1071260076 _____ C:\Users\Lissi1\Downloads\Archiv20130709-1430.zip
2013-07-23 18:47 - 2013-07-23 18:47 - 00000000 ____D C:\Users\Lissi1\AppData\Local\FreeSystemUtilities
2013-07-23 18:20 - 2013-07-23 18:20 - 00000000 ____D C:\Windows\System32\Tasks\Browser Updater
2013-07-23 14:55 - 2013-07-23 14:55 - 00000000 ____D C:\Users\Lissi1\AppData\Local\{8B102F25-1113-48D3-9381-DA6E4B9A6BA8}
2013-07-22 17:03 - 2013-07-22 17:03 - 00004171 _____ C:\Users\Lissi1\Desktop\TauchenAlissa.wlmp
2013-07-22 17:03 - 2013-07-22 16:53 - 00004166 _____ C:\Users\Lissi1\Desktop\Tauchen1.wlmp
2013-07-22 14:43 - 2013-07-22 14:42 - 00000000 ____D C:\Users\Lissi1\AppData\Local\{8EF11119-F58F-43BF-BC83-8F60387DADED}
2013-07-20 12:08 - 2013-07-20 12:08 - 00000000 ____D C:\Users\Lissi1\AppData\Local\{A2FDA827-159E-4898-9016-E6A1408AFA4C}
2013-07-18 20:44 - 2012-12-27 12:37 - 00000000 ____D C:\Users\Lissi1\AppData\Roaming\BOM
2013-07-17 18:43 - 2013-07-17 18:43 - 00000000 ____D C:\Users\Lissi1\AppData\Local\Deployment
2013-07-17 18:43 - 2012-09-17 16:53 - 00000000 ____D C:\Users\Lissi1\AppData\Local\Apps\2.0
2013-07-17 18:34 - 2013-02-09 17:40 - 00000000 ____D C:\Program Files (x86)\Ad-Aware Antivirus
2013-07-17 18:34 - 2012-05-09 15:14 - 00000000 ____D C:\Users\Lissi1\AppData\Roaming\FreeFLVConverter
2013-07-17 18:34 - 2012-02-04 21:31 - 00000000 ____D C:\Program Files (x86)\ScanWizard 5
2013-07-17 18:34 - 2011-07-18 23:12 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2013-07-17 18:34 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\registration
2013-07-17 18:34 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\AppCompat
2013-07-17 18:21 - 2011-04-12 10:28 - 00000000 ___RD C:\Users\Public\Recorded TV
2013-07-17 18:13 - 2013-02-09 17:37 - 00000000 ____D C:\Users\Lissi1\AppData\Roaming\Ad-Aware Antivirus
2013-07-17 17:49 - 2013-07-17 16:37 - 00001447 _____ C:\Users\Lissi1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-07-17 17:49 - 2013-07-17 16:37 - 00001413 _____ C:\Users\Lissi1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2013-07-17 09:24 - 2012-02-04 18:44 - 00000000 ____D C:\Program Files\Google
2013-07-16 08:43 - 2012-02-04 19:47 - 00000000 ____D C:\Users\Lissi1\AppData\Local\Google
2013-07-16 08:43 - 2012-02-04 18:44 - 00000000 ____D C:\ProgramData\Google
2013-07-16 08:25 - 2012-05-01 10:51 - 00692104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-07-16 08:25 - 2012-05-01 10:51 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-07-16 08:25 - 2011-10-14 14:15 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-07-14 19:47 - 2013-07-22 14:41 - 977585085 _____ C:\Users\Lissi1\Desktop\20130709-1430 - Kopie.mov
2013-07-14 19:47 - 2013-07-14 18:38 - 977585085 _____ C:\Users\Lissi1\Desktop\20130709-1430.mov
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-08-12 05:58
==================== End Of Log ============================ --- --- ---
Additions.txtFRST Additions Logfile: Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 11-08-2013 02
Ran by Lissi1 at 2013-08-12 19:34:11
Running from C:\Users\Lissi1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TTDT2QBV
Boot Mode: Normal
==========================================================
==================== Installed Programs =======================
Ad-Aware Antivirus (x32 Version: 10.5.0.4339)
Adobe AIR (x32 Version: 3.1.0.4880)
Adobe Flash Player 11 ActiveX (x32 Version: 11.8.800.94)
Adobe Flash Player 11 Plugin (x32 Version: 11.7.700.224)
Adobe Reader XI (11.0.03) - Deutsch (x32 Version: 11.0.03)
Adobe Shockwave Player 11.6 (x32 Version: 11.6.5.635)
Alamandi (x32)
AMD APP SDK Runtime (Version: 2.5.793.1)
AMD AVIVO64 Codecs (Version: 11.7.0.11013)
AMD Catalyst Install Manager (Version: 3.0.851.0)
AMD Drag and Drop Transcoding (Version: 2.00.0000)
AMD Media Foundation Decoders (Version: 1.0.61013.1636)
Angry Birds Star Wars (x32 Version: 1.0.0)
Apple Application Support (x32 Version: 2.3)
Apple Software Update (x32 Version: 2.1.3.127)
AVIConverter 5.1.6 (x32 Version: 5.1.6)
Avira Free Antivirus (x32 Version: 13.0.0.3885)
AVS Update Manager 1.0 (x32)
AVS Video Converter 8 (x32)
AVS4YOU Software Navigator 1.4 (x32)
Biet-O-Matic v2.14.8 (x32 Version: Biet-O-Matic v2.14.8)
Canon Easy-PhotoPrint EX (x32)
Canon iP4900 series Benutzerregistrierung (x32)
Canon iP4900 series On-screen Manual (x32)
Canon iP4900 series Printer Driver
Canon My Printer (x32)
Catalyst Control Center (x32 Version: 2011.1013.1702.28713)
Catalyst Control Center InstallProxy (x32 Version: 2011.1013.1702.28713)
Catalyst Control Center Localization All (x32 Version: 2011.1013.1702.28713)
CCC Help Danish (x32 Version: 2011.1013.1701.28713)
CCC Help Dutch (x32 Version: 2011.1013.1701.28713)
CCC Help English (x32 Version: 2011.1013.1701.28713)
CCC Help Finnish (x32 Version: 2011.1013.1701.28713)
CCC Help French (x32 Version: 2011.1013.1701.28713)
CCC Help German (x32 Version: 2011.1013.1701.28713)
CCC Help Italian (x32 Version: 2011.1013.1701.28713)
CCC Help Japanese (x32 Version: 2011.1013.1701.28713)
CCC Help Norwegian (x32 Version: 2011.1013.1701.28713)
CCC Help Spanish (x32 Version: 2011.1013.1701.28713)
CCC Help Swedish (x32 Version: 2011.1013.1701.28713)
ccc-utility64 (Version: 2011.1013.1702.28713)
CD-LabelPrint (x32)
Color!It 1.5 Professional-E (x32)
ContentHD (x32 Version: 1.00.0002)
Contents (x32 Version: 1.6.0.367)
Contents (x32 Version: 1.6.1.137)
Control ActiveX de Windows Live Mesh para conexiones remotas (x32 Version: 15.4.5722.2)
Contrôle ActiveX Windows Live Mesh pour connexions à distance (x32 Version: 15.4.5722.2)
Controlo ActiveX do Windows Live Mesh para Ligações Remotas (x32 Version: 15.4.5722.2)
Corel Painter Photo Essentials 4 (x32 Version: 4.1)
Corel Painter Photo Essentials 4 (x32)
Corel PaintShop Photo Pro X3 (x32 Version: 1.00.0000)
Corel PaintShop Photo Pro X3 (x32 Version: 1.6.1.137)
Corel VideoStudio Pro X3 (x32 Version: 1.6.0.367)
CyberLink LabelPrint (x32 Version: 2.5.3624)
CyberLink Power2Go (x32 Version: 7.0.0.1327)
CyberLink PowerDVD Copy (x32 Version: 1.5.1306)
CyberLink PowerRecover (x32 Version: 5.5.4125)
CyberLink WaveEditor (x32 Version: 1.0.1.2821)
D3DX10 (x32 Version: 15.4.2368.0902)
Deaktivierungs-Add-on für Browser von Google Analytics (x32 Version: 0.9.2.0)
Der wunderbare Zauberer von Oz (x32)
DeviceIO (x32 Version: 1.6.0.367)
DeviceIO (x32 Version: 1.6.1.137)
Die Sage von Kolossus (x32)
Dropbox (HKCU Version: 2.0.22)
DVD Shrink 3.2 (x32)
FarmFrenzy (x32)
FLV Media Player version 1.3 (x32 Version: 1.3)
Formant ActiveX programu Windows Live Mesh odpowiedzialny za obsługę połączeń zdalnych (x32 Version: 15.4.5722.2)
Fotogalerija Windows Live (x32 Version: 15.4.3502.0922)
Free Video to MP3 Converter version 5.0.24.430 (x32 Version: 5.0.24.430)
Free YouTube Download version 3.2.2.430 (x32 Version: 3.2.2.430)
Free YouTube to MP3 Converter version 3.12.0.128 (x32 Version: 3.12.0.128)
Freez FLV to AVI/MPEG/WMV Converter (x32 Version: 1.6)
Galeria de Fotografias do Windows Live (x32 Version: 15.4.3502.0922)
Galería fotográfica de Windows Live (x32 Version: 15.4.3502.0922)
Galeria fotografii usługi Windows Live (x32 Version: 15.4.3502.0922)
Galerie de photos Windows Live (x32 Version: 15.4.3502.0922)
Google Chrome (x32 Version: 28.0.1500.95)
Google Update Helper (x32 Version: 1.3.21.153)
ICA (x32 Version: 1.6.0.367)
ICA (x32 Version: 1.6.1.137)
Intel(R) Rapid Storage Technology (x32 Version: 10.6.0.1002)
IPM_PSP_Pro (x32 Version: 1.00.0000)
IPM_VS_Pro (x32 Version: 13.0)
Java 7 Update 21 (64-bit) (Version: 7.0.210)
Java 7 Update 21 (x32 Version: 7.0.210)
Java Auto Updater (x32 Version: 2.1.9.5)
Junk Mail filter update (x32 Version: 15.4.3502.0922)
Kaufland Foto (x32 Version: 5.0.1)
Kernel for Outlook PST Repair Evaluation ver 13.02.01 (x32)
Klett Lernsoftware Mathematik - mathe live 5 BA (x32)
Kontrolnik Windows Live Mesh ActiveX za oddaljene povezave (x32 Version: 15.4.5722.2)
Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300)
Medion Home Cinema (x32 Version: 8.0.3216)
Memeo Instant Backup (x32 Version: 4.60.0.7943)
Mesh Runtime (x32 Version: 15.4.5722.2)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Office 2007 Service Pack 3 (SP3) (x32)
Microsoft Office Access MUI (German) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Enterprise 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Excel MUI (German) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office File Validation Add-In (x32 Version: 14.0.5130.5003)
Microsoft Office Groove MUI (German) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office InfoPath MUI (German) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Live Add-in 1.5 (x32 Version: 2.0.4024.1)
Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000)
Microsoft Office OneNote MUI (German) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Outlook MUI (German) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office PowerPoint MUI (German) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Proof (English) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Proof (French) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Proof (German) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Proof (Italian) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Proofing (German) 2007 (x32 Version: 12.0.4518.1014)
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (x32)
Microsoft Office Publisher MUI (German) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Shared 64-bit MUI (German) 2007 (Version: 12.0.6612.1000)
Microsoft Office Shared MUI (German) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Word MUI (German) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Silverlight (Version: 5.1.20513.0)
Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.50727.42)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219)
Microsoft WSE 3.0 Runtime (x32 Version: 3.0.5305.0)
Microsoft-Maus- und Tastatur-Center (Version: 2.0.162.0)
Microtek FineReader OCR Engine (x32)
MLE (x32 Version: 1.0.0.23)
MSVC80_x64_v2 (Version: 1.0.3.0)
MSVC80_x86_v2 (x32 Version: 1.0.3.0)
MSVC90_x64 (Version: 1.0.1.2)
MSVC90_x86 (x32 Version: 1.0.1.2)
MSVCRT (x32 Version: 15.4.2862.0708)
MSVCRT_amd64 (x32 Version: 15.4.2862.0708)
MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0)
MyFreeCodec (HKCU)
MyPhoneExplorer (x32 Version: 1.8.4)
OpenMG Limited Patch 4.7-07-14-05-01 (x32)
OpenMG Secure Module (x32 Version: 4.7.00.12140)
OpenMG Secure Module 4.7.00 (x32 Version: 4.7.00.12140)
PlayReady PC Runtime amd64 (Version: 1.3.0)
Poczta usługi Windows Live (x32 Version: 15.4.3502.0922)
Podstawowe programy Windows Live (x32 Version: 15.4.3502.0922)
Pošta Windows Live (x32 Version: 15.4.3502.0922)
PSPH10Pro (x32 Version: 1.00.0000)
PSPPContent (x32 Version: 1.00.0000)
PSPPRO_DCRAW (x32 Version: 13.0.0)
PureHD (x32 Version: 1.6.0.367)
PureHD (x32 Version: 1.6.1.137)
QuickShare (x32 Version: 1.6.1.714)
Raccolta foto di Windows Live (x32 Version: 15.4.3502.0922)
Realtek High Definition Audio Driver (x32 Version: 6.0.1.6438)
Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.1.25.0)
rosoft .NET Framework 4 Client Profile (Version: 4.0.30320)
Samsung Kies (x32 Version: 2.3.2.12064_9)
SAMSUNG USB Driver for Mobile Phones (Version: 1.5.16.0)
ScanWizard 5 (x32)
Setup (x32 Version: 1.6.0.367)
Setup (x32 Version: 1.6.1.137)
Share (x32 Version: 1.6.0.367)
Share (x32 Version: 1.6.1.137)
Share64 (Version: 1.6.0.367)
Share64 (Version: 1.6.1.137)
Skype Click to Call (x32 Version: 6.3.11079)
Skype™ 6.5 (x32 Version: 6.5.158)
SmartSound Common Data (x32 Version: 1.1.0)
SmartSound Quicktracks 5 (x32 Version: 5.1.5)
SonicStage 4.3 (x32 Version: 4.3)
Spelling Dictionaries Support For Adobe Reader X (x32 Version: 10.0.0)
Stellar Phoenix Outlook PST Repair (x32 Version: 4.5.0.0)
SUPERAntiSpyware (Version: 5.6.1020)
swMSM (x32 Version: 12.0.0.1)
TeamSpeak 3 Client (Version: 3.0.10)
TeamViewer 7 (x32 Version: 7.0.13852)
Uniblue DriverScanner (x32 Version: 4.0.9.10)
Update for 2007 Microsoft Office System (KB967642) (x32)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1)
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (x32)
Update for Microsoft Office 2007 suites (KB2596660) 32-Bit Edition (x32)
Update for Microsoft Office 2007 suites (KB2596802) 32-Bit Edition (x32)
Update for Microsoft Office 2007 suites (KB2596848) 32-Bit Edition (x32)
Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition (x32)
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (x32)
Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition (x32)
Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2817563) 32-Bit Edition (x32)
Update für Microsoft Office Excel 2007 Help (KB963678) (x32)
Update für Microsoft Office Outlook 2007 Help (KB963677) (x32)
Update für Microsoft Office Powerpoint 2007 Help (KB963669) (x32)
Update für Microsoft Office Word 2007 Help (KB963665) (x32)
Uzak Bağlantılar İçin Windows Live Mesh ActiveX Denetimi (x32 Version: 15.4.5722.2)
VC 9.0 Runtime (x32 Version: 1.0.0)
VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0)
Versandhelfer (x32 Version: 0.9.511)
VIO (x32 Version: 1.6.0.367)
VIO (x32 Version: 1.6.1.137)
VSClassic (x32 Version: 1.6.0.367)
VSPro (x32 Version: 1.6.0.367)
Windows Live Communications Platform (x32 Version: 15.4.3502.0922)
Windows Live Essentials (x32 Version: 15.4.3502.0922)
Windows Live Essentials (x32 Version: 15.4.3555.0308)
Windows Live Fotogalerie (x32 Version: 15.4.3502.0922)
Windows Live Fotoğraf Galerisi (x32 Version: 15.4.3502.0922)
Windows Live Fotótár (x32 Version: 15.4.3502.0922)
Windows Live ID Sign-in Assistant (Version: 7.250.4232.0)
Windows Live Installer (x32 Version: 15.4.3502.0922)
Windows Live Language Selector (Version: 15.4.3555.0308)
Windows Live Mail (x32 Version: 15.4.3502.0922)
Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (x32 Version: 15.4.5722.2)
Windows Live Mesh (x32 Version: 15.4.3502.0922)
Windows Live Mesh ActiveX control for remote connections (x32 Version: 15.4.5722.2)
Windows Live Mesh ActiveX Control for Remote Connections (x32 Version: 15.4.5722.2)
Windows Live Mesh ActiveX-objekt til fjernforbindelser (x32 Version: 15.4.5722.2)
Windows Live Mesh ActiveX-vezérlő távoli kapcsolatokhoz (x32 Version: 15.4.5722.2)
Windows Live Messenger (x32 Version: 15.4.3538.0513)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Movie Maker (x32 Version: 15.4.3502.0922)
Windows Live Photo Common (x32 Version: 15.4.3502.0922)
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922)
Windows Live PIMT Platform (x32 Version: 15.4.3508.1109)
Windows Live Remote Client (Version: 15.4.5722.2)
Windows Live Remote Client Resources (Version: 15.4.5722.2)
Windows Live Remote Service (Version: 15.4.5722.2)
Windows Live Remote Service Resources (Version: 15.4.5722.2)
Windows Live SOXE (x32 Version: 15.4.3502.0922)
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922)
Windows Live Temel Parçalar (x32 Version: 15.4.3502.0922)
Windows Live UX Platform (x32 Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109)
Windows Live Writer (x32 Version: 15.4.3502.0922)
Windows Live Writer Resources (x32 Version: 15.4.3502.0922)
Windows Media Encoder 9 Series (x32 Version: 9.00.2980)
Windows Media Encoder 9 Series (x32)
Windows Utils (x32)
WinRAR 4.10 (64-Bit) (Version: 4.10.0)
Wise Registry Cleaner 7.82 (x32 Version: 7.82)
WISO Steuer-Sparbuch 2012 (x32 Version: 19.00.7303)
WISO Steuer-Sparbuch 2013 (x32 Version: 20.00.8137)
Yahoo! Messenger (x32)
Yahoo! Software Update (x32)
Συλλογή φωτογραφιών του Windows Live (x32 Version: 15.4.3502.0922)
==================== Restore Points =========================
07-08-2013 08:30:52 Installed SpyHunter
07-08-2013 09:32:53 Removed SpyHunter
07-08-2013 09:32:54 Windows Update
07-08-2013 16:25:12 Free System Utilities
07-08-2013 16:26:51 Entfernt PC Inspector File Recovery
07-08-2013 17:57:21 Free System Utilities
07-08-2013 18:07:52 Free System Utilities 07.08.2013 20:07:51
08-08-2013 13:43:01 Free System Utilities 08.08.2013 15:41:50
08-08-2013 14:49:10 Free System Utilities 08.08.2013 16:49:10
09-08-2013 10:50:16 Free System Utilities 09.08.2013 12:50:10
09-08-2013 15:06:55 Free System Utilities 09.08.2013 17:06:54
11-08-2013 15:07:57 Free System Utilities
11-08-2013 16:31:08 Wiederherstellungsvorgang
11-08-2013 17:00:31 Windows-Sicherung
==================== Hosts content: ==========================
2009-07-14 04:34 - 2013-08-06 10:26 - 00000027 ____N C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Scheduled Tasks (whitelisted) =============
Task: {046FA198-336F-4B8F-A05D-B074ED8CAC06} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-4060780361-2962197505-3855748707-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe No File
Task: {08AE6839-3B32-478C-9D97-C7ABF7DBB35D} - System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-4060780361-2962197505-3855748707-1000 => C:\Program Files (x86)\RealNetworks\RealDownloader\realupgrade.exe No File
Task: {16009711-3FBE-4DBF-99F2-8AD1D74B2922} - System32\Tasks\ProtectedSearch\Protected Search => C:\Program Files (x86)\HomeTab\ProtectedSearch.exe No File
Task: {1D57B99B-8AB2-4AC9-BE59-EEB8DF2B3D50} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\System32\browserchoice.exe [2010-02-23] (Microsoft Corporation)
Task: {1FD084E7-0FD9-4836-94DB-B0DFFF45DBA7} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-07-16] (Adobe Systems Incorporated)
Task: {20B670F8-D495-43B4-B66F-6576E798D397} - System32\Tasks\DealPlyUpdate => C:\Program Files (x86)\DealPly\DealPlyUpdate.exe No File
Task: {2FB4A20B-1195-4F6F-98A9-B71131340E69} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => C:\Windows\system32\rundll32.exe [2009-07-14] (Microsoft Corporation)
Task: {3438A74F-D30D-4DAE-AABD-8E4687FB1D39} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-4060780361-2962197505-3855748707-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe No File
Task: {38490776-1286-491D-ABF7-4EF8E1016596} - System32\Tasks\Hoolapp Init => C:\Users\Lissi1\AppData\Roaming\HOOLAP~1\Hoolapp.exe No File
Task: {3A322291-9708-4AC4-BDA9-28080B9131D4} - System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-4060780361-2962197505-3855748707-1000 => C:\Program Files (x86)\RealNetworks\RealDownloader\realupgrade.exe No File
Task: {3AA39623-4C26-4352-881B-32950C8DC3DC} - System32\Tasks\RealDownloaderDownloaderScheduledTaskS-1-5-21-4060780361-2962197505-3855748707-1000 => C:\Program Files (x86)\RealNetworks\RealDownloader\recordingmanager.exe No File
Task: {3EA0857D-4881-4604-B1DD-D0141F5D725A} - System32\Tasks\Browser Updater\Browser Updater => C:\Windows\system32\rundll32.exe [2009-07-14] (Microsoft Corporation)
Task: {41F95C5D-50D6-4CAD-BE33-AAA9619969EE} - System32\Tasks\Microsoft_Hardware_Launch_devicecenter_exe => c:\Program Files\Microsoft Device Center\devicecenter.exe No File
Task: {4294D513-D50C-4121-9732-0675460C6D57} - System32\Tasks\Plus-HD-2.4-chromeinstaller => C:\Program Files (x86)\Plus-HD-2.4\Plus-HD-2.4-chromeinstaller.exe No File
Task: {43F0A8BC-3F41-4656-B2EE-CC75C64FABA2} - System32\Tasks\Microsoft\Windows\MUI\Lpksetup => C:\Windows\System32\lpksetup.exe [2010-11-21] (Microsoft Corporation)
Task: {45DAED8B-06FE-48E8-B603-79B9796F4EF7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-02-04] (Google Inc.)
Task: {491EEB26-98AA-40E3-AF52-D1DD16938513} - System32\Tasks\Plus-HD-2.4-enabler => C:\Program Files (x86)\Plus-HD-2.4\Plus-HD-2.4-enabler.exe No File
Task: {4AA0C1DA-4F0B-4B12-BCF9-D46D829AC8EF} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-02-04] (Google Inc.)
Task: {5FF3B954-CCE0-4AEC-BDFC-43073F0D0DD0} - System32\Tasks\Software Updater Ui => C:\Program Files (x86)\SelfUpdater\SoftwareUpdater.Ui.exe [2013-07-17] ()
Task: {66700F3D-2ABE-4082-87B8-8D546CAE53C0} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task
Task: {69AD682C-3980-4A53-AAEF-CD4D2636270D} - System32\Tasks\Wise Registry Cleaner Schedule Task => C:\Program Files (x86)\Wise\Wise Registry Cleaner\WiseRegCleaner.exe [2013-07-19] (WiseCleaner.com)
Task: {759FB95A-54DA-4844-A13C-E32642F2E977} - System32\Tasks\Plus-HD-2.4-updater => C:\Program Files (x86)\Plus-HD-2.4\Plus-HD-2.4-updater.exe No File
Task: {81E6757E-5936-461A-8C17-008E67EEF5B6} - System32\Tasks\DealPly => C:\Users\Lissi1\AppData\Roaming\DealPly\UPDATE~1\UPDATE~1.EXE No File
Task: {86C19865-1960-4B4F-90EF-F356C010C886} - System32\Tasks\Software Updater => C:\Program Files (x86)\SelfUpdater\SoftwareUpdater.Bootstrapper.exe [2013-07-06] ()
Task: {8BC70FDF-C6CF-421C-9767-ACF6CE5E9963} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe [2010-11-21] (Microsoft Corporation)
Task: {8EACA554-38B1-446E-96DA-237BADAF8C14} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-4060780361-2962197505-3855748707-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe No File
Task: {900ADC48-B10E-458D-BCD8-941E98E5B974} - System32\Tasks\Freemium1ClickMaint => C:\Program Files (x86)\Covus Freemium\Free System Utilities\1Click.exe No File
Task: {90DB39C7-E1DE-4F1B-9AAA-9F0CE40B6EBC} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2012-11-02] (Microsoft Corporation)
Task: {9144BDC4-7FBD-4921-A320-DF00D2A8E251} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2012-11-02] (Microsoft)
Task: {9CE62795-67B5-4A69-9724-9B8D0C043D46} - System32\Tasks\Plus-HD-2.4-codedownloader => C:\Program Files (x86)\Plus-HD-2.4\Plus-HD-2.4-codedownloader.exe No File
Task: {AD703A90-8D87-444F-A712-45B4ABC66271} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2012-11-02] (Microsoft Corporation)
Task: {ADEB3839-1313-431B-9387-D0B711B9B657} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {BF0DAFDB-2D29-4DC0-883A-6449CDD05DD5} - System32\Tasks\SUPERAntiSpyware Scheduled Task b4eb2f77-0b34-4a31-8e76-89b6cbcecc1b => C:\Program Files\SUPERAntiSpyware\SASTask.exe [2013-05-23] (SUPERAdBlocker.com)
Task: {C3365C9E-CE3C-4414-89A8-558B613878AA} - System32\Tasks\Microsoft\Windows\WindowsBackup\Windows Backup Monitor => C:\Windows\system32\sdclt.exe [2010-11-21] (Microsoft Corporation)
Task: {C86F2E05-0E17-4A66-88AB-FDA0560B733E} - System32\Tasks\Ad-Aware Antivirus Scheduled Scan => C:\PROGRA~2\AD-AWA~1\AdAwareLauncher.exe [2013-02-14] (Lavasoft Limited)
Task: {CDDF991A-9628-4933-BB0C-DA7D9E740C2F} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-4060780361-2962197505-3855748707-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe No File
Task: {E2088BC0-2227-4FBB-8943-761C3507FF09} - System32\Tasks\SUPERAntiSpyware Scheduled Task 33915243-1829-4197-b765-f2f614375d1b => C:\Program Files\SUPERAntiSpyware\SASTask.exe [2013-05-23] (SUPERAdBlocker.com)
Task: {EE6C8F1E-50BA-409C-9705-B4AAA515AC87} - System32\Tasks\Hoolapp for Android => C:\Users\Lissi1\AppData\Roaming\HOOLAP~1\UPDATE~1\UPDATE~1.EXE No File
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\Plus-HD-2.4-chromeinstaller.job => C:\Program Files (x86)\Plus-HD-2.4\Plus-HD-2.4-chromeinstaller.exe
Task: C:\Windows\Tasks\Plus-HD-2.4-codedownloader.job => C:\Program Files (x86)\Plus-HD-2.4\Plus-HD-2.4-codedownloader.exe
Task: C:\Windows\Tasks\Plus-HD-2.4-enabler.job => C:\Program Files (x86)\Plus-HD-2.4\Plus-HD-2.4-enabler.exe
Task: C:\Windows\Tasks\Plus-HD-2.4-updater.job => C:\Program Files (x86)\Plus-HD-2.4\Plus-HD-2.4-updater.exe
Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 33915243-1829-4197-b765-f2f614375d1b.job => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task b4eb2f77-0b34-4a31-8e76-89b6cbcecc1b.job => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
Task: C:\Windows\Tasks\Wise Registry Cleaner Schedule Task.job => C:\Program Files (x86)\Wise\Wise Registry Cleaner\WiseRegCleaner.exe
==================== Faulty Device Manager Devices =============
Name: Realtek RTL8191SU Wireless LAN 802.11n USB 2.0 Network Adapter
Description: Realtek RTL8191SU Wireless LAN 802.11n USB 2.0 Network Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Realtek Semiconductor Corp.
Service: RTL8192su
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
==================== Event log errors: =========================
Application errors:
==================
Error: (08/12/2013 06:15:15 PM) (Source: MemeoBackgroundService) (User: )
Description: Problem starting Memeo Background Service :Ausnahmefehler "System.Reflection.TargetInvocationException: Ein Aufrufziel hat einen Ausnahmefehler verursacht. ---> System.Security.Principal.IdentityNotMappedException: Manche oder alle Identitätsverweise konnten nicht übersetzt werden.
bei System.Runtime.Remoting.Channels.Ipc.IpcServerChannel.StartListening(Object data)
bei System.Runtime.Remoting.Channels.Ipc.IpcServerChannel..ctor(IDictionary properties, IServerChannelSinkProvider sinkProvider, CommonSecurityDescriptor securityDescriptor)
bei System.Runtime.Remoting.Channels.Ipc.IpcChannel..ctor(IDictionary properties, IClientChannelSinkProvider clientSinkProvider, IServerChannelSinkProvider serverSinkProvider)
--- Ende der internen Ausnahmestapelüberwachung ---
bei System.RuntimeMethodHandle._InvokeConstructor(Object[] args, SignatureStruct& signature, IntPtr declaringType)
bei System.Reflection.RuntimeConstructorInfo.Invoke(BindingFlags invokeAttr, Binder binder, Object[] parameters, CultureInfo culture)
bei System.RuntimeType.CreateInstanceImpl(BindingFlags bindingAttr, Binder binder, Object[] args, CultureInfo culture, Object[] activationAttributes)
bei System.Runtime.Remoting.RemotingConfigHandler.CreateChannelFromConfigEntry(ChannelEntry entry)
bei System.Runtime.Remoting.RemotingConfigHandler.ConfigureChannels(RemotingXmlConfigFileData configData, Boolean ensureSecurity)
bei System.Runtime.Remoting.RemotingConfigHandler.ConfigureRemoting(RemotingXmlConfigFileData configData, Boolean ensureSecurity)" bei der Remotekonfiguration. bei System.Runtime.Remoting.RemotingConfigHandler.ConfigureRemoting(RemotingXmlConfigFileData configData, Boolean ensureSecurity)
bei System.Runtime.Remoting.RemotingConfiguration.Configure(String filename, Boolean ensureSecurity)
bei RemoteServerService.MemeoBackgroundService.OnStart(String[] args)
Error: (08/12/2013 03:54:54 PM) (Source: MemeoBackgroundService) (User: )
Description: Problem starting Memeo Background Service :Ausnahmefehler "System.Reflection.TargetInvocationException: Ein Aufrufziel hat einen Ausnahmefehler verursacht. ---> System.Security.Principal.IdentityNotMappedException: Manche oder alle Identitätsverweise konnten nicht übersetzt werden.
bei System.Runtime.Remoting.Channels.Ipc.IpcServerChannel.StartListening(Object data)
bei System.Runtime.Remoting.Channels.Ipc.IpcServerChannel..ctor(IDictionary properties, IServerChannelSinkProvider sinkProvider, CommonSecurityDescriptor securityDescriptor)
bei System.Runtime.Remoting.Channels.Ipc.IpcChannel..ctor(IDictionary properties, IClientChannelSinkProvider clientSinkProvider, IServerChannelSinkProvider serverSinkProvider)
--- Ende der internen Ausnahmestapelüberwachung ---
bei System.RuntimeMethodHandle._InvokeConstructor(Object[] args, SignatureStruct& signature, IntPtr declaringType)
bei System.Reflection.RuntimeConstructorInfo.Invoke(BindingFlags invokeAttr, Binder binder, Object[] parameters, CultureInfo culture)
bei System.RuntimeType.CreateInstanceImpl(BindingFlags bindingAttr, Binder binder, Object[] args, CultureInfo culture, Object[] activationAttributes)
bei System.Runtime.Remoting.RemotingConfigHandler.CreateChannelFromConfigEntry(ChannelEntry entry)
bei System.Runtime.Remoting.RemotingConfigHandler.ConfigureChannels(RemotingXmlConfigFileData configData, Boolean ensureSecurity)
bei System.Runtime.Remoting.RemotingConfigHandler.ConfigureRemoting(RemotingXmlConfigFileData configData, Boolean ensureSecurity)" bei der Remotekonfiguration. bei System.Runtime.Remoting.RemotingConfigHandler.ConfigureRemoting(RemotingXmlConfigFileData configData, Boolean ensureSecurity)
bei System.Runtime.Remoting.RemotingConfiguration.Configure(String filename, Boolean ensureSecurity)
bei RemoteServerService.MemeoBackgroundService.OnStart(String[] args)
Error: (08/12/2013 01:24:42 PM) (Source: MemeoBackgroundService) (User: )
Description: Problem starting Memeo Background Service :Ausnahmefehler "System.Reflection.TargetInvocationException: Ein Aufrufziel hat einen Ausnahmefehler verursacht. ---> System.Security.Principal.IdentityNotMappedException: Manche oder alle Identitätsverweise konnten nicht übersetzt werden.
bei System.Runtime.Remoting.Channels.Ipc.IpcServerChannel.StartListening(Object data)
bei System.Runtime.Remoting.Channels.Ipc.IpcServerChannel..ctor(IDictionary properties, IServerChannelSinkProvider sinkProvider, CommonSecurityDescriptor securityDescriptor)
bei System.Runtime.Remoting.Channels.Ipc.IpcChannel..ctor(IDictionary properties, IClientChannelSinkProvider clientSinkProvider, IServerChannelSinkProvider serverSinkProvider)
--- Ende der internen Ausnahmestapelüberwachung ---
bei System.RuntimeMethodHandle._InvokeConstructor(Object[] args, SignatureStruct& signature, IntPtr declaringType)
bei System.Reflection.RuntimeConstructorInfo.Invoke(BindingFlags invokeAttr, Binder binder, Object[] parameters, CultureInfo culture)
bei System.RuntimeType.CreateInstanceImpl(BindingFlags bindingAttr, Binder binder, Object[] args, CultureInfo culture, Object[] activationAttributes)
bei System.Runtime.Remoting.RemotingConfigHandler.CreateChannelFromConfigEntry(ChannelEntry entry)
bei System.Runtime.Remoting.RemotingConfigHandler.ConfigureChannels(RemotingXmlConfigFileData configData, Boolean ensureSecurity)
bei System.Runtime.Remoting.RemotingConfigHandler.ConfigureRemoting(RemotingXmlConfigFileData configData, Boolean ensureSecurity)" bei der Remotekonfiguration. bei System.Runtime.Remoting.RemotingConfigHandler.ConfigureRemoting(RemotingXmlConfigFileData configData, Boolean ensureSecurity)
bei System.Runtime.Remoting.RemotingConfiguration.Configure(String filename, Boolean ensureSecurity)
bei RemoteServerService.MemeoBackgroundService.OnStart(String[] args)
Error: (08/12/2013 08:17:44 AM) (Source: MsiInstaller) (User: NT-AUTORITÄT)
Description: Product: Skype Click to Call -- Error 1609. An error occurred while applying security settings. Users is not a valid user or group. This could be a problem with the package, or a problem connecting to a domain controller on the network. Check your network connection and click Retry, or Cancel to end the install. Unable to locate the user's SID, system error 1332(NULL)(NULL)(NULL)(NULL)(NULL)
Error: (08/11/2013 08:16:23 PM) (Source: MemeoBackgroundService) (User: )
Description: Problem starting Memeo Background Service :Ausnahmefehler "System.Reflection.TargetInvocationException: Ein Aufrufziel hat einen Ausnahmefehler verursacht. ---> System.Security.Principal.IdentityNotMappedException: Manche oder alle Identitätsverweise konnten nicht übersetzt werden.
bei System.Runtime.Remoting.Channels.Ipc.IpcServerChannel.StartListening(Object data)
bei System.Runtime.Remoting.Channels.Ipc.IpcServerChannel..ctor(IDictionary properties, IServerChannelSinkProvider sinkProvider, CommonSecurityDescriptor securityDescriptor)
bei System.Runtime.Remoting.Channels.Ipc.IpcChannel..ctor(IDictionary properties, IClientChannelSinkProvider clientSinkProvider, IServerChannelSinkProvider serverSinkProvider)
--- Ende der internen Ausnahmestapelüberwachung ---
bei System.RuntimeMethodHandle._InvokeConstructor(Object[] args, SignatureStruct& signature, IntPtr declaringType)
bei System.Reflection.RuntimeConstructorInfo.Invoke(BindingFlags invokeAttr, Binder binder, Object[] parameters, CultureInfo culture)
bei System.RuntimeType.CreateInstanceImpl(BindingFlags bindingAttr, Binder binder, Object[] args, CultureInfo culture, Object[] activationAttributes)
bei System.Runtime.Remoting.RemotingConfigHandler.CreateChannelFromConfigEntry(ChannelEntry entry)
bei System.Runtime.Remoting.RemotingConfigHandler.ConfigureChannels(RemotingXmlConfigFileData configData, Boolean ensureSecurity)
bei System.Runtime.Remoting.RemotingConfigHandler.ConfigureRemoting(RemotingXmlConfigFileData configData, Boolean ensureSecurity)" bei der Remotekonfiguration. bei System.Runtime.Remoting.RemotingConfigHandler.ConfigureRemoting(RemotingXmlConfigFileData configData, Boolean ensureSecurity)
bei System.Runtime.Remoting.RemotingConfiguration.Configure(String filename, Boolean ensureSecurity)
bei RemoteServerService.MemeoBackgroundService.OnStart(String[] args)
Error: (08/11/2013 06:47:03 PM) (Source: System Restore) (User: )
Description: Unbekannter Fehler bei der Systemwiederherstellung: (Windows-Sicherung). Zusätzliche Informationen: 0x8000ffff.
Error: (08/11/2013 06:45:35 PM) (Source: MemeoBackgroundService) (User: )
Description: Problem starting Memeo Background Service :Ausnahmefehler "System.Reflection.TargetInvocationException: Ein Aufrufziel hat einen Ausnahmefehler verursacht. ---> System.Security.Principal.IdentityNotMappedException: Manche oder alle Identitätsverweise konnten nicht übersetzt werden.
bei System.Runtime.Remoting.Channels.Ipc.IpcServerChannel.StartListening(Object data)
bei System.Runtime.Remoting.Channels.Ipc.IpcServerChannel..ctor(IDictionary properties, IServerChannelSinkProvider sinkProvider, CommonSecurityDescriptor securityDescriptor)
bei System.Runtime.Remoting.Channels.Ipc.IpcChannel..ctor(IDictionary properties, IClientChannelSinkProvider clientSinkProvider, IServerChannelSinkProvider serverSinkProvider)
--- Ende der internen Ausnahmestapelüberwachung ---
bei System.RuntimeMethodHandle._InvokeConstructor(Object[] args, SignatureStruct& signature, IntPtr declaringType)
bei System.Reflection.RuntimeConstructorInfo.Invoke(BindingFlags invokeAttr, Binder binder, Object[] parameters, CultureInfo culture)
bei System.RuntimeType.CreateInstanceImpl(BindingFlags bindingAttr, Binder binder, Object[] args, CultureInfo culture, Object[] activationAttributes)
bei System.Runtime.Remoting.RemotingConfigHandler.CreateChannelFromConfigEntry(ChannelEntry entry)
bei System.Runtime.Remoting.RemotingConfigHandler.ConfigureChannels(RemotingXmlConfigFileData configData, Boolean ensureSecurity)
bei System.Runtime.Remoting.RemotingConfigHandler.ConfigureRemoting(RemotingXmlConfigFileData configData, Boolean ensureSecurity)" bei der Remotekonfiguration. bei System.Runtime.Remoting.RemotingConfigHandler.ConfigureRemoting(RemotingXmlConfigFileData configData, Boolean ensureSecurity)
bei System.Runtime.Remoting.RemotingConfiguration.Configure(String filename, Boolean ensureSecurity)
bei RemoteServerService.MemeoBackgroundService.OnStart(String[] args)
Error: (08/11/2013 06:36:58 PM) (Source: System Restore) (User: )
Description: Unbekannter Fehler bei der Systemwiederherstellung: (Windows-Sicherung). Zusätzliche Informationen: 0x8000ffff.
Error: (08/11/2013 06:36:12 PM) (Source: MemeoBackgroundService) (User: )
Description: Problem starting Memeo Background Service :Ausnahmefehler "System.Reflection.TargetInvocationException: Ein Aufrufziel hat einen Ausnahmefehler verursacht. ---> System.Security.Principal.IdentityNotMappedException: Manche oder alle Identitätsverweise konnten nicht übersetzt werden.
bei System.Runtime.Remoting.Channels.Ipc.IpcServerChannel.StartListening(Object data)
bei System.Runtime.Remoting.Channels.Ipc.IpcServerChannel..ctor(IDictionary properties, IServerChannelSinkProvider sinkProvider, CommonSecurityDescriptor securityDescriptor)
bei System.Runtime.Remoting.Channels.Ipc.IpcChannel..ctor(IDictionary properties, IClientChannelSinkProvider clientSinkProvider, IServerChannelSinkProvider serverSinkProvider)
--- Ende der internen Ausnahmestapelüberwachung ---
bei System.RuntimeMethodHandle._InvokeConstructor(Object[] args, SignatureStruct& signature, IntPtr declaringType)
bei System.Reflection.RuntimeConstructorInfo.Invoke(BindingFlags invokeAttr, Binder binder, Object[] parameters, CultureInfo culture)
bei System.RuntimeType.CreateInstanceImpl(BindingFlags bindingAttr, Binder binder, Object[] args, CultureInfo culture, Object[] activationAttributes)
bei System.Runtime.Remoting.RemotingConfigHandler.CreateChannelFromConfigEntry(ChannelEntry entry)
bei System.Runtime.Remoting.RemotingConfigHandler.ConfigureChannels(RemotingXmlConfigFileData configData, Boolean ensureSecurity)
bei System.Runtime.Remoting.RemotingConfigHandler.ConfigureRemoting(RemotingXmlConfigFileData configData, Boolean ensureSecurity)" bei der Remotekonfiguration. bei System.Runtime.Remoting.RemotingConfigHandler.ConfigureRemoting(RemotingXmlConfigFileData configData, Boolean ensureSecurity)
bei System.Runtime.Remoting.RemotingConfiguration.Configure(String filename, Boolean ensureSecurity)
bei RemoteServerService.MemeoBackgroundService.OnStart(String[] args)
Error: (08/11/2013 05:04:46 PM) (Source: System Restore) (User: )
Description: Unbekannter Fehler bei der Systemwiederherstellung: (Windows-Sicherung). Zusätzliche Informationen: 0x8000ffff.
System errors:
=============
Error: (08/12/2013 06:18:46 PM) (Source: bowser) (User: )
Description: Der Hauptsuchdienst erhielt eine Serverankündigung vom Computer "EASYBOX",
der der Hauptsuchdienst der Domäne für den NetBT_Tcpip_{42036434-BD32-45B5-89BB-BED2AEAA9F2C}-Transport zu sein scheint.
Der Hauptsuchdienst wurde beendet oder es wird eine Auswahl erzwungen.
Error: (08/12/2013 04:33:01 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1068
Error: (08/12/2013 04:33:01 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1068
Error: (08/12/2013 04:33:01 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1068
Error: (08/12/2013 04:33:01 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1068
Error: (08/12/2013 04:33:01 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1068
Error: (08/12/2013 04:33:01 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1068
Error: (08/12/2013 04:32:58 PM) (Source: DCOM) (User: )
Description: 1084WSearch{9E175B6D-F52A-11D8-B9A5-505054503030}
Error: (08/12/2013 04:32:58 PM) (Source: DCOM) (User: )
Description: 1084WSearch{7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}
Error: (08/12/2013 04:32:56 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1068
Microsoft Office Sessions:
=========================
Error: (07/23/2013 06:51:30 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: LISSI1-PC, Application Version: LISSI1-PC, Microsoft Office Version: 12.0.6612.1000. This session lasted LISSI1-PC seconds with 0 seconds of active time. This session ended with a crash.
Error: (07/23/2013 06:50:57 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 1 seconds with 0 seconds of active time. This session ended with a crash.
CodeIntegrity Errors:
===================================
Date: 2013-08-06 10:26:37.912
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2013-08-06 10:26:37.881
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2013-08-05 16:09:11.869
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-05 14:22:39.572
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-05 12:49:07.294
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-05 12:36:28.451
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-05 12:21:33.053
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-05 11:30:50.054
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-05 11:11:14.377
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-05 11:06:07.710
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
==================== Memory info ===========================
Percentage of memory in use: 63%
Total physical RAM: 4023.11 MB
Available physical RAM: 1484.23 MB
Total Pagefile: 8044.41 MB
Available Pagefile: 4637.2 MB
Total Virtual: 8192 MB
Available Virtual: 8191.81 MB
==================== Drives ================================
Drive c: (Boot) (Fixed) (Total:1346.17 GB) (Free:1272.22 GB) NTFS (Disk=0 Partition=2)
Drive d: (Recover) (Fixed) (Total:50 GB) (Free:31.19 GB) NTFS (Disk=0 Partition=3)
Drive j: (Volume) (Fixed) (Total:1863.01 GB) (Free:195.27 GB) NTFS (Disk=1 Partition=1)
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 1397 GB) (Disk ID: C0F66F80)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=-753589551104) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=50 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=1 GB) - (Type=12)
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: BC49D5D0)
Partition 1: (Not Active) - (Size=-198626508800) - (Type=07 NTFS)
==================== End Of Log ============================ --- --- --- |