FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-08-2013
Ran by Yosip (administrator) on 26-08-2013 22:13:18
Running from C:\Users\Yosip\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 8
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(AMD) C:\Windows\system32\atiesrxx.exe
(AMD) C:\Windows\system32\atieclxx.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Registration\GREGsvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Updater\UpdaterService.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe
(Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
(NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
() C:\OEM\Preload\Command\AlaunchX\AlaunchX.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Windows\system32\taskmgr.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(McAfee, Inc.) c:\PROGRA~1\mcafee.com\agent\mcagent.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [Trigger New Acer AlaunchX] - c:\OEM\Preload\Command\AlaunchX\AppInRun.exe [304672 2009-09-21] ()
HKLM\...\RunOnce: [New Acer AlaunchX] - c:\OEM\Preload\Command\AlaunchX\LaunchAlaunchX.exe [300064 2009-09-21] (Acer Inc.)
HKCU\...\Runonce: [IsMyWinLockerReboot] - msiexec.exe /qn /x{voidguid} [x]
HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [283160 2011-01-13] (Intel Corporation)
HKLM-x32\...\Run: [mcui_exe] - C:\Program Files\McAfee.com\Agent\mcagent.exe [1465304 2010-02-04] (McAfee, Inc.)
HKLM-x32\...\Run: [SuiteTray] - C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe [340336 2010-09-28] (Egis Technology Inc.)
HKLM-x32\...\Run: [EgisTecPMMUpdate] - C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe [407920 2010-09-18] (Egis Technology Inc.)
HKLM-x32\...\Run: [EgisUpdate] - C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe [201584 2010-09-18] (Egis Technology Inc.)
HKLM-x32\...\Run: [Norton Online Backup] - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [1155928 2010-06-02] (Symantec Corporation)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [35696 2009-02-28] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [BackupManagerTray] - C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe [297280 2011-03-09] (NTI Corporation)
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-02-08] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [OOTag] - C:\Program Files (x86)\Acer\OOBEOffer\OOTag.exe [13856 2010-02-23] (Microsoft)
HKU\Default\...\RunOnce: [IsMyWinLockerReboot] - msiexec.exe /qn /x{voidguid} [x]
HKU\Default User\...\RunOnce: [IsMyWinLockerReboot] - msiexec.exe /qn /x{voidguid} [x]
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.)
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
BHO: McAfee Phishing Filter - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\PROGRA~1\mcafee\msk\MSKAPB~1.DLL ()
BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20110420011736.dll (McAfee, Inc.)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.)
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: McAfee Phishing Filter - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\progra~1\mcafee\msk\mskapbho.dll ()
BHO-x32: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20110420011736.dll (McAfee, Inc.)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\progra~2\mcafee\sitead~1\mcieplg.dll (McAfee, Inc.)
Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.)
Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\progra~2\mcafee\sitead~1\mcieplg.dll (McAfee, Inc.)
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\progra~2\mcafee\sitead~1\mcieplg.dll (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\progra~2\mcafee\sitead~1\mcieplg.dll (McAfee, Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
==================== Services (Whitelisted) =================
R2 McAfee SiteAdvisor Service; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [355440 2009-12-15] (McAfee, Inc.)
R2 McMPFSvc; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [355440 2009-12-15] (McAfee, Inc.)
R2 mcmscsvc; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [355440 2009-12-15] (McAfee, Inc.)
R2 McNaiAnn; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [355440 2009-12-15] (McAfee, Inc.)
R2 McNASvc; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [355440 2009-12-15] (McAfee, Inc.)
S3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [509416 2009-12-31] (McAfee, Inc.)
S4 McOobeSv; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [355440 2009-12-15] (McAfee, Inc.)
R2 McProxy; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [355440 2009-12-15] (McAfee, Inc.)
R2 McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [199032 2010-01-06] (McAfee, Inc.)
R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [244840 2010-01-06] (McAfee, Inc.)
R2 mfevtp; C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe [148520 2010-01-06] (McAfee, Inc.)
R2 MSK80Service; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [355440 2009-12-15] (McAfee, Inc.)
R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2804568 2010-06-02] (Symantec Corporation)
R2 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [257344 2011-03-09] (NTI Corporation)
==================== Drivers (Whitelisted) ====================
R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [62416 2010-01-06] (McAfee, Inc.)
R3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [121504 2010-01-06] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [189880 2010-01-06] (McAfee, Inc.)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [440688 2010-01-06] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [528232 2010-01-06] (McAfee, Inc.)
R1 mfenlfk; C:\Windows\System32\DRIVERS\mfenlfk.sys [75288 2010-01-06] (McAfee, Inc.)
S3 mferkdet; C:\Windows\System32\drivers\mferkdet.sys [93840 2010-01-06] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [279752 2010-01-06] (McAfee, Inc.)
U3 mfeavfk01; No ImagePath
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-08-26 22:37 - 2013-08-26 22:37 - 00295922 _____ C:\Windows\system32\perfi007.dat
2013-08-26 22:37 - 2013-08-26 22:37 - 00038104 _____ C:\Windows\system32\perfd007.dat
2013-08-26 22:37 - 2013-08-26 22:37 - 00000000 ____D C:\Windows\SysWOW64\XPSViewer
2013-08-26 22:37 - 2013-08-26 22:37 - 00000000 ____D C:\Windows\SysWOW64\de
2013-08-26 22:37 - 2013-08-26 22:37 - 00000000 ____D C:\Windows\SysWOW64\0407
2013-08-26 22:37 - 2013-08-26 22:37 - 00000000 ____D C:\Windows\system32\de
2013-08-26 22:37 - 2013-08-26 22:37 - 00000000 ____D C:\Windows\system32\0407
2013-08-26 22:37 - 2013-08-26 19:38 - 00643866 _____ C:\Windows\system32\perfh007.dat
2013-08-26 22:37 - 2013-08-26 19:38 - 00126394 _____ C:\Windows\system32\perfc007.dat
2013-08-26 22:34 - 2013-08-26 22:34 - 00000000 ____D C:\Windows\NAPP_Dism_Log
2013-08-26 22:12 - 2013-08-26 22:12 - 01577068 _____ (Farbar) C:\Users\Yosip\Desktop\FRST64.exe
2013-08-26 22:12 - 2013-08-26 22:12 - 00000000 ____D C:\FRST
2013-08-26 17:09 - 2012-06-03 00:19 - 02428952 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2013-08-26 17:09 - 2012-06-03 00:19 - 00701976 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2013-08-26 17:09 - 2012-06-03 00:19 - 00057880 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2013-08-26 17:09 - 2012-06-03 00:19 - 00044056 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2013-08-26 17:09 - 2012-06-03 00:19 - 00038424 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2013-08-26 17:09 - 2012-06-03 00:15 - 02622464 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2013-08-26 17:09 - 2012-06-03 00:15 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2013-08-26 17:09 - 2012-06-02 15:19 - 00186752 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2013-08-26 17:09 - 2012-06-02 15:15 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2013-08-26 17:05 - 2013-08-26 18:38 - 00059968 _____ C:\Users\Yosip\AppData\Local\GDIPFONTCACHEV1.DAT
2013-08-26 17:05 - 2013-08-26 17:05 - 00001443 _____ C:\Users\Yosip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-08-26 17:05 - 2013-08-26 17:05 - 00001409 _____ C:\Users\Yosip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 _SHDL C:\Users\Yosip\Vorlagen
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 _SHDL C:\Users\Yosip\Startmenü
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 _SHDL C:\Users\Yosip\Netzwerkumgebung
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 _SHDL C:\Users\Yosip\Lokale Einstellungen
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 _SHDL C:\Users\Yosip\Eigene Dateien
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 _SHDL C:\Users\Yosip\Druckumgebung
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 _SHDL C:\Users\Yosip\Documents\Eigene Musik
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 _SHDL C:\Users\Yosip\Documents\Eigene Bilder
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 _SHDL C:\Users\Yosip\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 _SHDL C:\Users\Yosip\AppData\Local\Verlauf
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 _SHDL C:\Users\Yosip\AppData\Local\Anwendungsdaten
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 _SHDL C:\Users\Yosip\Anwendungsdaten
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 __SHD C:\Recovery
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 ___RD C:\Users\Yosip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 ___RD C:\Users\Yosip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 ____D C:\Users\Yosip\AppData\Local\VirtualStore
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 ____D C:\Users\Yosip
2013-08-26 17:05 - 2011-04-20 10:34 - 00000000 ____D C:\Users\Yosip\AppData\Roaming\Macromedia
2013-08-26 17:05 - 2011-04-20 10:34 - 00000000 ____D C:\Users\Yosip\AppData\Roaming\Adobe
2013-08-26 17:05 - 2011-04-20 10:33 - 00000000 ____D C:\Users\Yosip\AppData\Local\Adobe
2013-08-26 17:05 - 2011-04-20 10:31 - 00000000 ____D C:\Users\Yosip\AppData\Local\Downloaded Installations
2013-08-26 17:05 - 2011-04-20 10:20 - 00000000 ____D C:\Users\Yosip\AppData\Local\Windows Live
2013-08-26 17:05 - 2011-04-20 10:03 - 00000000 ____D C:\Users\Yosip\AppData\Roaming\Intel Corporation
2013-08-26 17:05 - 2011-04-20 09:47 - 00000000 ____D C:\Users\Yosip\AppData\Roaming\InstallShield
2013-08-26 17:05 - 2010-11-21 04:50 - 00000020 ___SH C:\Users\Yosip\ntuser.ini
2013-08-26 17:05 - 2009-07-14 06:54 - 00000000 ___RD C:\Users\Yosip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2013-08-26 17:05 - 2009-07-14 06:49 - 00000000 ___RD C:\Users\Yosip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Default\Vorlagen
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Default\Startmenü
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Default\Eigene Dateien
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Default\Druckumgebung
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Programme
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\ProgramData\Vorlagen
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\ProgramData\Startmenü
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\ProgramData\Favoriten
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\ProgramData\Dokumente
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Dokumente und Einstellungen
2013-08-26 16:01 - 2013-08-26 16:01 - 00000000 _____ C:\Windows\ativpsrm.bin
2013-08-26 13:32 - 2011-01-27 13:34 - 00003126 _____ C:\Windows\SysWOW64\atipblup.dat
2013-08-26 13:32 - 2011-01-27 13:34 - 00003126 _____ C:\Windows\system32\atipblup.dat
2013-08-26 13:25 - 2013-08-26 13:25 - 00000000 ____D C:\Program Files\ATI
2013-08-26 13:19 - 2013-08-26 15:46 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
2013-08-26 12:58 - 2013-08-26 15:51 - 00000364 _____ C:\Windows\Driver_install.log
2013-08-26 12:53 - 2011-04-20 10:34 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2013-08-26 12:53 - 2011-04-20 10:34 - 00000000 ____D C:\Users\Default\AppData\Roaming\Adobe
2013-08-26 12:53 - 2011-04-20 10:34 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2013-08-26 12:53 - 2011-04-20 10:34 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Adobe
2013-08-26 12:53 - 2011-04-20 10:33 - 00000000 ____D C:\Users\Default\AppData\Local\Adobe
2013-08-26 12:53 - 2011-04-20 10:33 - 00000000 ____D C:\Users\Default User\AppData\Local\Adobe
2013-08-26 12:53 - 2011-04-20 10:31 - 00000000 ____D C:\Users\Default\AppData\Local\Downloaded Installations
2013-08-26 12:53 - 2011-04-20 10:31 - 00000000 ____D C:\Users\Default User\AppData\Local\Downloaded Installations
2013-08-26 12:53 - 2011-04-20 10:20 - 00000000 ____D C:\Users\Default\AppData\Local\Windows Live
2013-08-26 12:53 - 2011-04-20 10:20 - 00000000 ____D C:\Users\Default User\AppData\Local\Windows Live
2013-08-26 12:53 - 2011-04-20 10:03 - 00057560 _____ C:\Users\Default\AppData\Local\GDIPFONTCACHEV1.DAT
2013-08-26 12:53 - 2011-04-20 10:03 - 00057560 _____ C:\Users\Default User\AppData\Local\GDIPFONTCACHEV1.DAT
2013-08-26 12:53 - 2011-04-20 10:03 - 00000000 ____D C:\Users\Default\AppData\Roaming\Intel Corporation
2013-08-26 12:53 - 2011-04-20 10:03 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Intel Corporation
2013-08-26 12:53 - 2011-04-20 09:47 - 00000000 ____D C:\Users\Default\AppData\Roaming\InstallShield
2013-08-26 12:53 - 2011-04-20 09:47 - 00000000 ____D C:\Users\Default User\AppData\Roaming\InstallShield
2013-08-26 12:53 - 2010-11-21 04:50 - 00000020 ___SH C:\Users\Default\ntuser.ini
2013-08-26 12:49 - 2013-08-26 19:37 - 00047182 _____ C:\Windows\WindowsUpdate.log
==================== One Month Modified Files and Folders =======
2013-08-26 22:38 - 2010-11-21 09:06 - 00000000 ____D C:\Windows\SysWOW64\WCN
2013-08-26 22:38 - 2010-11-21 09:06 - 00000000 ____D C:\Windows\SysWOW64\sysprep
2013-08-26 22:38 - 2010-11-21 09:06 - 00000000 ____D C:\Windows\SysWOW64\slmgr
2013-08-26 22:38 - 2010-11-21 09:06 - 00000000 ____D C:\Windows\system32\winrm
2013-08-26 22:38 - 2010-11-21 09:06 - 00000000 ____D C:\Windows\system32\WCN
2013-08-26 22:38 - 2010-11-21 09:06 - 00000000 ____D C:\Windows\system32\slmgr
2013-08-26 22:38 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\oobe
2013-08-26 22:38 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\MUI
2013-08-26 22:38 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\MUI
2013-08-26 22:38 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\Dism
2013-08-26 22:38 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\servicing
2013-08-26 22:38 - 2009-03-12 11:30 - 00000000 ____D C:\Windows\LP
2013-08-26 22:37 - 2013-08-26 22:37 - 00295922 _____ C:\Windows\system32\perfi007.dat
2013-08-26 22:37 - 2013-08-26 22:37 - 00038104 _____ C:\Windows\system32\perfd007.dat
2013-08-26 22:37 - 2013-08-26 22:37 - 00000000 ____D C:\Windows\SysWOW64\XPSViewer
2013-08-26 22:37 - 2013-08-26 22:37 - 00000000 ____D C:\Windows\SysWOW64\de
2013-08-26 22:37 - 2013-08-26 22:37 - 00000000 ____D C:\Windows\SysWOW64\0407
2013-08-26 22:37 - 2013-08-26 22:37 - 00000000 ____D C:\Windows\system32\de
2013-08-26 22:37 - 2013-08-26 22:37 - 00000000 ____D C:\Windows\system32\0407
2013-08-26 22:37 - 2010-11-21 09:17 - 00000000 ____D C:\Program Files\Windows Journal
2013-08-26 22:37 - 2010-11-21 09:06 - 00000000 ____D C:\Windows\SysWOW64\Printing_Admin_Scripts
2013-08-26 22:37 - 2010-11-21 09:06 - 00000000 ____D C:\Windows\system32\Printing_Admin_Scripts
2013-08-26 22:37 - 2009-07-14 07:37 - 00000000 ____D C:\Windows\DigitalLocker
2013-08-26 22:37 - 2009-07-14 07:32 - 00000000 ____D C:\Windows\system32\WinBioPlugIns
2013-08-26 22:37 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Sidebar
2013-08-26 22:37 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2013-08-26 22:37 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender
2013-08-26 22:37 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\DVD Maker
2013-08-26 22:37 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Sidebar
2013-08-26 22:37 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2013-08-26 22:37 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2013-08-26 22:37 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\Setup
2013-08-26 22:37 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\migwiz
2013-08-26 22:37 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\Dism
2013-08-26 22:37 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\com
2013-08-26 22:37 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\Setup
2013-08-26 22:37 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\oobe
2013-08-26 22:37 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\migwiz
2013-08-26 22:37 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\com
2013-08-26 22:37 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\PolicyDefinitions
2013-08-26 22:37 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\IME
2013-08-26 22:37 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\System
2013-08-26 22:34 - 2013-08-26 22:34 - 00000000 ____D C:\Windows\NAPP_Dism_Log
2013-08-26 22:31 - 2009-07-14 07:38 - 00025600 ___SH C:\Windows\system32\config\BCD-Template.LOG
2013-08-26 22:31 - 2009-07-14 07:32 - 00028672 _____ C:\Windows\system32\config\BCD-Template
2013-08-26 22:12 - 2013-08-26 22:12 - 01577068 _____ (Farbar) C:\Users\Yosip\Desktop\FRST64.exe
2013-08-26 22:12 - 2013-08-26 22:12 - 00000000 ____D C:\FRST
2013-08-26 22:12 - 2013-08-26 12:49 - 00047182 _____ C:\Windows\WindowsUpdate.log
2013-08-26 19:38 - 2013-08-26 22:37 - 00643866 _____ C:\Windows\system32\perfh007.dat
2013-08-26 19:38 - 2013-08-26 22:37 - 00126394 _____ C:\Windows\system32\perfc007.dat
2013-08-26 19:38 - 2009-07-14 07:13 - 01472002 _____ C:\Windows\system32\PerfStringBackup.INI
2013-08-26 18:38 - 2013-08-26 17:05 - 00059968 _____ C:\Users\Yosip\AppData\Local\GDIPFONTCACHEV1.DAT
2013-08-26 18:35 - 2009-07-14 06:45 - 00016752 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-08-26 18:35 - 2009-07-14 06:45 - 00016752 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-08-26 18:34 - 2011-04-20 10:17 - 00000000 ____D C:\ProgramData\McAfee
2013-08-26 18:28 - 2011-04-20 10:18 - 00001832 _____ C:\Users\Public\Desktop\McAfee Internet Security Suite.lnk
2013-08-26 18:24 - 2011-04-20 10:17 - 00000000 ____D C:\Program Files (x86)\McAfee
2013-08-26 18:24 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-08-26 18:24 - 2009-07-14 06:51 - 00035975 _____ C:\Windows\setupact.log
2013-08-26 17:05 - 2013-08-26 17:05 - 00001443 _____ C:\Users\Yosip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-08-26 17:05 - 2013-08-26 17:05 - 00001409 _____ C:\Users\Yosip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 _SHDL C:\Users\Yosip\Vorlagen
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 _SHDL C:\Users\Yosip\Startmenü
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 _SHDL C:\Users\Yosip\Netzwerkumgebung
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 _SHDL C:\Users\Yosip\Lokale Einstellungen
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 _SHDL C:\Users\Yosip\Eigene Dateien
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 _SHDL C:\Users\Yosip\Druckumgebung
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 _SHDL C:\Users\Yosip\Documents\Eigene Musik
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 _SHDL C:\Users\Yosip\Documents\Eigene Bilder
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 _SHDL C:\Users\Yosip\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 _SHDL C:\Users\Yosip\AppData\Local\Verlauf
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 _SHDL C:\Users\Yosip\AppData\Local\Anwendungsdaten
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 _SHDL C:\Users\Yosip\Anwendungsdaten
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 __SHD C:\Recovery
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 ___RD C:\Users\Yosip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 ___RD C:\Users\Yosip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 ____D C:\Users\Yosip\AppData\Local\VirtualStore
2013-08-26 17:05 - 2013-08-26 17:05 - 00000000 ____D C:\Users\Yosip
2013-08-26 17:05 - 2009-07-14 07:32 - 00000000 ____D C:\Windows\system32\restore
2013-08-26 17:05 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\Recovery
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Default\Vorlagen
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Default\Startmenü
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Default\Eigene Dateien
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Default\Druckumgebung
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Programme
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\ProgramData\Vorlagen
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\ProgramData\Startmenü
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\ProgramData\Favoriten
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\ProgramData\Dokumente
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien
2013-08-26 17:04 - 2013-08-26 17:04 - 00000000 _SHDL C:\Dokumente und Einstellungen
2013-08-26 17:04 - 2009-07-14 05:20 - 00000000 __RHD C:\Users\Public\Libraries
2013-08-26 17:04 - 2009-07-14 05:20 - 00000000 __RHD C:\Users\Default
2013-08-26 17:04 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Windows NT
2013-08-26 16:53 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache
2013-08-26 16:35 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\sysprep
2013-08-26 16:35 - 2007-07-12 03:49 - 00000000 ____D C:\Windows\Panther
2013-08-26 16:09 - 2009-07-14 06:46 - 00004059 _____ C:\Windows\DtcInstall.log
2013-08-26 16:01 - 2013-08-26 16:01 - 00000000 _____ C:\Windows\ativpsrm.bin
2013-08-26 15:52 - 2011-04-20 10:25 - 00000000 ___HD C:\OEM
2013-08-26 15:52 - 2011-04-20 09:42 - 00004511 _____ C:\Windows\patch.log
2013-08-26 15:51 - 2013-08-26 12:58 - 00000364 _____ C:\Windows\Driver_install.log
2013-08-26 15:51 - 2011-04-20 10:18 - 00000000 ____D C:\Program Files (x86)\Acer
2013-08-26 15:46 - 2013-08-26 13:19 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
2013-08-26 13:25 - 2013-08-26 13:25 - 00000000 ____D C:\Program Files\ATI
2013-08-26 13:10 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2013-08-26 12:55 - 2009-07-14 06:51 - 00000269 _____ C:\Windows\setuperr.log
2013-08-26 12:52 - 2011-04-20 09:37 - 00003652 _____ C:\Windows\TSSysprep.log
2013-08-26 12:45 - 2010-11-21 05:47 - 00005164 _____ C:\Windows\PFRO.log
2013-08-26 12:45 - 2009-07-14 06:45 - 00283104 _____ C:\Windows\system32\FNTCACHE.DAT
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2011-04-20 09:34
==================== End Of Log ============================ --- --- ---
--- --- --- Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 26-08-2013
Ran by Yosip at 2013-08-26 22:13:41
Running from C:\Users\Yosip\Desktop
Boot Mode: Normal
==========================================================
==================== Installed Programs =======================
1912 Titanic Mystery (x32)
Acer Backup Manager (x32 Version: 3.0.0.90)
Acer eRecovery Management (x32 Version: 5.00.3004)
Acer GameZone Console (x32 Version: 6.1.0.40497)
Acer Registration (x32 Version: 1.03.3004)
Acer ScreenSaver (x32 Version: 1.1.1206.2010)
Acer Updater (x32 Version: 1.02.3005)
Acrobat.com (x32 Version: 1.6.65)
Adobe AIR (x32 Version: 1.5.0.7220)
Adobe Flash Player 10 ActiveX (x32 Version: 10.2.153.1)
Adobe Reader 9.1 MUI (x32 Version: 9.1.0)
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (x32 Version: 1.0.0.36)
ATI Catalyst Install Manager (Version: 3.0.812.0)
Backup Manager V3 (x32 Version: 3.0.0.90)
Bejeweled 2 Deluxe (x32)
Belles Beauty Boutique (x32)
Catalyst Control Center - Branding (x32 Version: 1.00.0000)
Catalyst Control Center InstallProxy (x32 Version: 2011.0208.2202.39516)
Catalyst Control Center Localization All (x32 Version: 2011.0208.2202.39516)
CCC Help Chinese Standard (x32 Version: 2011.0208.2201.39516)
CCC Help Chinese Traditional (x32 Version: 2011.0208.2201.39516)
CCC Help Czech (x32 Version: 2011.0208.2201.39516)
CCC Help Danish (x32 Version: 2011.0208.2201.39516)
CCC Help Dutch (x32 Version: 2011.0208.2201.39516)
CCC Help English (x32 Version: 2011.0208.2201.39516)
CCC Help Finnish (x32 Version: 2011.0208.2201.39516)
CCC Help French (x32 Version: 2011.0208.2201.39516)
CCC Help German (x32 Version: 2011.0208.2201.39516)
CCC Help Greek (x32 Version: 2011.0208.2201.39516)
CCC Help Hungarian (x32 Version: 2011.0208.2201.39516)
CCC Help Italian (x32 Version: 2011.0208.2201.39516)
CCC Help Japanese (x32 Version: 2011.0208.2201.39516)
CCC Help Korean (x32 Version: 2011.0208.2201.39516)
CCC Help Norwegian (x32 Version: 2011.0208.2201.39516)
CCC Help Polish (x32 Version: 2011.0208.2201.39516)
CCC Help Portuguese (x32 Version: 2011.0208.2201.39516)
CCC Help Russian (x32 Version: 2011.0208.2201.39516)
CCC Help Spanish (x32 Version: 2011.0208.2201.39516)
CCC Help Swedish (x32 Version: 2011.0208.2201.39516)
CCC Help Thai (x32 Version: 2011.0208.2201.39516)
CCC Help Turkish (x32 Version: 2011.0208.2201.39516)
ccc-core-static (x32 Version: 2011.0208.2202.39516)
ccc-utility64 (Version: 2011.0208.2202.39516)
Chicken Invaders 3 (x32)
D3DX10 (x32 Version: 15.4.2368.0902)
dows Live Remote Service Resources (Version: 15.4.5722.2)
Dream Day First Home (x32)
Farm Frenzy 3 Ice Age (x32)
Flip Words (x32)
Fotogalerija Windows Live (x32 Version: 15.4.3502.0922)
Galapago (x32)
Galeria de Fotografias do Windows Live (x32 Version: 15.4.3502.0922)
Galería fotográfica de Windows Live (x32 Version: 15.4.3502.0922)
Galeria fotogràfica del Windows Live (x32 Version: 15.4.3502.0922)
Galeria fotografii usługi Windows Live (x32 Version: 15.4.3502.0922)
Galerie de photos Windows Live (x32 Version: 15.4.3502.0922)
Galerie foto Windows Live (x32 Version: 15.4.3502.0922)
Identity Card (x32 Version: 1.00.3006)
Intel(R) Management Engine Components (x32 Version: 7.0.0.1144)
Intel(R) Rapid Storage Technology (x32 Version: 10.1.2.1004)
Junk Mail filter update (x32 Version: 15.4.3502.0922)
McAfee Internet Security Suite (x32 Version: 10.0.570)
Mesh Runtime (x32 Version: 15.4.5722.2)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Silverlight (x32 Version: 4.0.50401.0)
Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (Version: 10.0.30319)
MSVCRT (x32 Version: 15.4.2862.0708)
MSVCRT_amd64 (x32 Version: 15.4.2862.0708)
MyWinLocker (Version: 4.0.14.11)
MyWinLocker 4 (x32 Version: 4.0.14.11)
MyWinLocker Suite (x32 Version: 4.0.14.11)
newsXpresso (x32 Version: 1.0.0.40)
Norton Online Backup (x32 Version: 2.1.17869)
Poczta usługi Windows Live (x32 Version: 15.4.3502.0922)
Podstawowe programy Windows Live (x32 Version: 15.4.3502.0922)
Pošta Windows Live (x32 Version: 15.4.3502.0922)
PX Profile Update (x32 Version: 1.00.1.)
Raccolta foto di Windows Live (x32 Version: 15.4.3502.0922)
Realtek USB 2.0 Card Reader (x32 Version: 6.1.7600.30123)
Shredder (Version: 2.0.8.7)
Shredder (x32 Version: 2.0.8.7)
Sprill and Ritchie (x32)
Welcome Center (x32 Version: 1.02.3102)
Windows Live Argazki Galeria (x32 Version: 15.4.3502.0922)
Windows Live Communications Platform (x32 Version: 15.4.3502.0922)
Windows Live Essentials (x32 Version: 15.4.3502.0922)
Windows Live Essentials (x32 Version: 15.4.3508.1109)
Windows Live Fotogaléria (x32 Version: 15.4.3502.0922)
Windows Live Fotogalerie (x32 Version: 15.4.3502.0922)
Windows Live Fotogalleri (x32 Version: 15.4.3502.0922)
Windows Live Fotoğraf Galerisi (x32 Version: 15.4.3502.0922)
Windows Live Fotótár (x32 Version: 15.4.3502.0922)
Windows Live Galeria de Fotos (x32 Version: 15.4.3502.0922)
Windows Live Galerija fotografija (x32 Version: 15.4.3502.0922)
Windows Live ID Sign-in Assistant (Version: 7.250.4225.0)
Windows Live Installer (x32 Version: 15.4.3502.0922)
Windows Live Language Selector (Version: 15.4.3508.1109)
Windows Live Mail (x32 Version: 15.4.3502.0922)
Windows Live Mesh (x32 Version: 15.4.3502.0922)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Movie Maker (x32 Version: 15.4.3502.0922)
Windows Live Photo Common (x32 Version: 15.4.3502.0922)
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922)
Windows Live PIMT Platform (x32 Version: 15.4.3508.1109)
Windows Live Remote Client (Version: 15.4.5722.2)
Windows Live Remote Client Resources (Version: 15.4.5722.2)
Windows Live Remote Service (Version: 15.4.5722.2)
Windows Live SOXE (x32 Version: 15.4.3502.0922)
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922)
Windows Live Temel Parçalar (x32 Version: 15.4.3502.0922)
Windows Live UX Platform (x32 Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109)
Windows Live Writer (x32 Version: 15.4.3502.0922)
Windows Live Writer Resources (x32 Version: 15.4.3502.0922)
Windows Live 影像中心 (x32 Version: 15.4.3502.0922)
Windows Live 程式集 (x32 Version: 15.4.3502.0922)
Windows Liven asennustyökalu (x32 Version: 15.4.3502.0922)
Windows Liven sähköposti (x32 Version: 15.4.3502.0922)
Windows Liven valokuvavalikoima (x32 Version: 15.4.3502.0922)
World of Goo (x32)
Συλλογή φωτογραφιών του Windows Live (x32 Version: 15.4.3502.0922)
Основные компоненты Windows Live (x32 Version: 15.4.3502.0922)
Почта Windows Live (x32 Version: 15.4.3502.0922)
Фотоальбом Windows Live (x32 Version: 15.4.3502.0922)
Фотогалерия на Windows Live (x32 Version: 15.4.3502.0922)
גלריית התמונות של Windows Live (x32 Version: 15.4.3502.0922)
بريد Windows Live (x32 Version: 15.4.3502.0922)
معرض صور Windows Live (x32 Version: 15.4.3502.0922)
==================== Restore Points =========================
26-08-2013 15:05:25 Windows Update
==================== Hosts content: ==========================
2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {14EC97FD-AC9E-4209-AA6B-ABEE112311F5} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task
Task: {34C14439-8CAF-4F8D-8B19-5B78D6FDF4F1} - System32\Tasks\Recovery Management\Burn Notification => C:\Program Files\Acer\Acer eRecovery Management\NotificationCenter\Notification.exe [2011-04-08] (Acer)
Task: {EB7F6DAE-6F91-4ED3-B26E-5ADE426815D6} - System32\Tasks\LyricXeeker Update => C:\Program Files (x86)\LyriXeeker\LyriXupdate.exe [2013-08-26] ()
Task: C:\Windows\Tasks\LyricXeeker Update.job => C:\Program Files (x86)\LyriXeeker\LyriXupdate.exe
==================== Faulty Device Manager Devices =============
Name: USB (Universal Serial Bus)-Controller
Description: USB (Universal Serial Bus)-Controller
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (08/26/2013 06:24:54 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/26/2013 05:43:42 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/26/2013 05:30:43 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/26/2013 05:12:19 PM) (Source: Application Hang) (User: )
Description: Programm taskmgr.exe, Version 6.1.7601.17514 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: 1218
Startzeit: 01cea26e41d560be
Endzeit: 4352
Anwendungspfad: C:\Windows\system32\taskmgr.exe
Berichts-ID: e088482d-0e61-11e3-ab4b-b870f49197a1
Error: (08/26/2013 05:06:39 PM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: Fehler beim Extrahieren der Drittanbieterstammliste aus der automatischen Aktualisierungs-CAB-Datei bei <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>. Fehler: Ein erforderliches Zertifikat befindet sich nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel in der signierten Datei.
.
Error: (08/26/2013 05:06:39 PM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: Fehler beim Extrahieren der Drittanbieterstammliste aus der automatischen Aktualisierungs-CAB-Datei bei <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>. Fehler: Ein erforderliches Zertifikat befindet sich nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel in der signierten Datei.
.
Error: (08/26/2013 05:06:39 PM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: Fehler beim Extrahieren der Drittanbieterstammliste aus der automatischen Aktualisierungs-CAB-Datei bei <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>. Fehler: Ein erforderliches Zertifikat befindet sich nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel in der signierten Datei.
.
Error: (08/26/2013 05:06:39 PM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: Fehler beim Extrahieren der Drittanbieterstammliste aus der automatischen Aktualisierungs-CAB-Datei bei <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>. Fehler: Ein erforderliches Zertifikat befindet sich nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel in der signierten Datei.
.
Error: (08/26/2013 05:06:24 PM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: Fehler beim Extrahieren der Drittanbieterstammliste aus der automatischen Aktualisierungs-CAB-Datei bei <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>. Fehler: Ein erforderliches Zertifikat befindet sich nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel in der signierten Datei.
.
Error: (08/26/2013 05:05:46 PM) (Source: ESENT) (User: )
Description: WinMail (3096) WindowsMail0: Die Sicherung wurde abgebrochen, weil sie vom Client angehalten wurde, oder weil die Verbindung mit dem Client unterbrochen wurde.
System errors:
=============
Error: (08/26/2013 10:19:42 PM) (Source: iaStor) (User: )
Description: Das Gerät \Device\Ide\iaStor0 hat innerhalb der Fehlerwartezeit nicht geantwortet.
Error: (08/26/2013 10:19:41 PM) (Source: iaStor) (User: )
Description: Das Gerät \Device\Ide\iaStor0 hat innerhalb der Fehlerwartezeit nicht geantwortet.
Error: (08/26/2013 10:19:39 PM) (Source: iaStor) (User: )
Description: Das Gerät \Device\Ide\iaStor0 hat innerhalb der Fehlerwartezeit nicht geantwortet.
Error: (08/26/2013 10:19:20 PM) (Source: iaStor) (User: )
Description: Das Gerät \Device\Ide\iaStor0 hat innerhalb der Fehlerwartezeit nicht geantwortet.
Error: (08/26/2013 10:18:21 PM) (Source: iaStor) (User: )
Description: Das Gerät \Device\Ide\iaStor0 hat innerhalb der Fehlerwartezeit nicht geantwortet.
Error: (08/26/2013 10:18:20 PM) (Source: iaStor) (User: )
Description: Das Gerät \Device\Ide\iaStor0 hat innerhalb der Fehlerwartezeit nicht geantwortet.
Error: (08/26/2013 10:18:18 PM) (Source: iaStor) (User: )
Description: Das Gerät \Device\Ide\iaStor0 hat innerhalb der Fehlerwartezeit nicht geantwortet.
Error: (08/26/2013 10:17:32 PM) (Source: iaStor) (User: )
Description: Das Gerät \Device\Ide\iaStor0 hat innerhalb der Fehlerwartezeit nicht geantwortet.
Error: (08/26/2013 10:17:31 PM) (Source: iaStor) (User: )
Description: Das Gerät \Device\Ide\iaStor0 hat innerhalb der Fehlerwartezeit nicht geantwortet.
Error: (08/26/2013 10:17:29 PM) (Source: iaStor) (User: )
Description: Das Gerät \Device\Ide\iaStor0 hat innerhalb der Fehlerwartezeit nicht geantwortet.
Microsoft Office Sessions:
=========================
Error: (08/26/2013 06:24:54 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/26/2013 05:43:42 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/26/2013 05:30:43 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/26/2013 05:12:19 PM) (Source: Application Hang)(User: )
Description: taskmgr.exe6.1.7601.17514121801cea26e41d560be4352C:\Windows\system32\taskmgr.exee088482d-0e61-11e3-ab4b-b870f49197a1
Error: (08/26/2013 05:06:39 PM) (Source: Microsoft-Windows-CAPI2)(User: )
Description: hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabEin erforderliches Zertifikat befindet sich nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel in der signierten Datei.
Error: (08/26/2013 05:06:39 PM) (Source: Microsoft-Windows-CAPI2)(User: )
Description: hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabEin erforderliches Zertifikat befindet sich nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel in der signierten Datei.
Error: (08/26/2013 05:06:39 PM) (Source: Microsoft-Windows-CAPI2)(User: )
Description: hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabEin erforderliches Zertifikat befindet sich nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel in der signierten Datei.
Error: (08/26/2013 05:06:39 PM) (Source: Microsoft-Windows-CAPI2)(User: )
Description: hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabEin erforderliches Zertifikat befindet sich nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel in der signierten Datei.
Error: (08/26/2013 05:06:24 PM) (Source: Microsoft-Windows-CAPI2)(User: )
Description: hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabEin erforderliches Zertifikat befindet sich nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel in der signierten Datei.
Error: (08/26/2013 05:05:46 PM) (Source: ESENT)(User: )
Description: WinMail3096WindowsMail0:
==================== Memory info ===========================
Percentage of memory in use: 28%
Total physical RAM: 4077.86 MB
Available physical RAM: 2934.46 MB
Total Pagefile: 8153.92 MB
Available Pagefile: 6763.54 MB
Total Virtual: 8192 MB
Available Virtual: 8191.83 MB
==================== Drives ================================
Drive c: (Acer) (Fixed) (Total:95.69 GB) (Free:65.28 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 112 GB) (Disk ID: 6E9FA0EB)
Partition 1: (Not Active) - (Size=16 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=96 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 6E9FA0DD)
Partition 1: (Not Active) - (Size=466 GB) - (Type=07 NTFS)
==================== End Of Log ============================ |