Raphael1234 | 23.10.2013 19:16 | Hey Schrauber
Danke für die schnelle Reaktion.
Ich habe noch eine weitere Information: Das Addon, das mir diese unterstrichenen Links beschert heisst "tube-saver". Es installiert sich bei jedem boot selbst.
Hier sind die files: FRST.txt
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 23-10-2013
Ran by Silvan Borghi (administrator) on WARPER on 23-10-2013 20:09:12
Running from C:\Users\Silvan Borghi\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\STacSV64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe
(APN LLC.) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe
() C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\ModLEDKey.exe
(Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\BBSvc.exe
(EasyBits Software AS) C:\Windows\SysWOW64\ezSharedSvcHost.exe
(Freemake) C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
(Ellora Assets Corp.) C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
(Hewlett-Packard ) C:\Program Files\IDT\WDM\beats64.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
() C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe
(Microsoft Corporation) C:\Program Files\Microsoft IntelliPoint\ipoint.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(SqueakyChocolate, LLC) C:\Program Files (x86)\SqueakyChocolate\UpdateChecker\UpdateCheckerApp.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Hewlett-Packard) C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Remote Solution\HP_Remote_Solution.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\BATINDICATOR.exe
() C:\Windows\Samsung\PanelMgr\SSMMgr.exe
() C:\Windows\twain_32\Samsung\CLX3170\Scan2Pc.exe
(RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(APN) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
() C:\Windows\Samsung\PanelMgr\caller64.exe
(Hewlett-Packard Company) c:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
(PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\CNYHKEY.exe
() C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Conduit) C:\PROGRA~2\SearchProtect\Main\bin\CltMngSvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Safer Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
(Conduit) C:\PROGRA~2\SearchProtect\SearchProtect\bin\cltmng.exe
(Conduit) C:\PROGRA~2\SearchProtect\UI\bin\cltmngui.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
() C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe
() C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
() C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.190\deploy\LoLLauncher.exe
() C:\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.53\deploy\LolClient.exe
(Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\SeaPort.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [BeatsOSDApp] - C:\Program Files\IDT\WDM\beats64.exe [37888 2010-08-15] (Hewlett-Packard )
HKLM\...\Run: [hpsysdrv] - c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe [62768 2008-11-20] (Hewlett-Packard)
HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [489472 2010-09-27] (IDT, Inc.)
HKLM\...\Run: [SmartMenu] - C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe [611896 2010-09-15] ()
HKLM\...\Run: [IntelliPoint] - c:\Program Files\Microsoft IntelliPoint\ipoint.exe [2417032 2011-08-01] (Microsoft Corporation)
HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1
HKCU\...\Run: [SpybotSD TeaTimer] - C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe [2260480 2009-03-05] (Safer-Networking Ltd.)
HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [19875432 2013-06-21] (Skype Technologies S.A.)
HKCU\...\Run: [UpdateChecker] - C:\Program Files (x86)\SqueakyChocolate\UpdateChecker\UpdateCheckerApp.exe [7168 2013-08-25] (SqueakyChocolate, LLC)
HKCU\...\Policies\system: [DisableLockWorkstation] 0
HKCU\...\Policies\system: [DisableChangePassword] 0
MountPoints2: {da7c8871-0188-11e1-b409-806e6f6e6963} - F:\Autorun.exe
HKLM-x32\...\Run: [HP Software Update] - c:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [54576 2008-12-08] (Hewlett-Packard)
HKLM-x32\...\Run: [] - [x]
HKLM-x32\...\Run: [HP Remote Solution] - C:\Program Files (x86)\Hewlett-Packard\HP Remote Solution\HP_Remote_Solution.exe [656896 2009-08-25] (Hewlett-Packard)
HKLM-x32\...\Run: [BATINDICATOR] - C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\BATINDICATOR.exe [2068992 2009-05-09] (Hewlett-Packard)
HKLM-x32\...\Run: [LaunchHPOSIAPP] - C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\LaunchApp.exe [385024 2009-04-04] (Hewlett-Packard)
HKLM-x32\...\Run: [Easybits Recovery] - C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe [61112 2010-08-30] (EasyBits Software AS)
HKLM-x32\...\Run: [Samsung PanelMgr] - C:\Windows\Samsung\PanelMgr\SSMMgr.exe [552960 2009-02-27] ()
HKLM-x32\...\Run: [3170 Scan2PC] - C:\Windows\Twain_32\Samsung\CLX3170\Scan2pc.exe [503808 2009-01-30] ()
HKLM-x32\...\Run: [ExpressFiles] - "C:\Program Files (x86)\ExpressFiles\ExpressFiles.exe" -tray
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [TkBellExe] - c:\program files (x86)\real\realplayer\Update\realsched.exe [295072 2012-12-24] (RealNetworks, Inc.)
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [347192 2013-09-03] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [ApnTBMon] - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1673680 2013-10-08] (APN)
AppInit_DLLs: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll [1300256 2013-10-18] (Conduit)
AppInit_DLLs-x32: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC32Loader.dll [980768 2013-10-18] (Conduit)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.conduit.com/?ctid=CT3310393&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=2&UP=SP12FC80B8-8D38-40FC-8771-D3C6580982A7
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPCON/12
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM - {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://eu.ask.com/web?q={searchterms}&l=dis&o=HPDTDF
SearchScopes: HKLM - {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://ch.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPDTDF
SearchScopes: HKLM - {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = hxxp://de.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKLM - {d944bb61-2e34-4dbf-a683-47e505c587dc} URL = hxxp://rover.ebay.com/rover/1/5222-111091-7834-0/4?satitle={searchTerms}&mfe=Desktops
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://eu.ask.com/web?q={searchterms}&l=dis&o=HPDTDF
SearchScopes: HKLM-x32 - {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://ch.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPDTDF
SearchScopes: HKLM-x32 - {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = hxxp://de.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKLM-x32 - {d944bb61-2e34-4dbf-a683-47e505c587dc} URL = hxxp://rover.ebay.com/rover/1/5222-111091-7834-0/4?satitle={searchTerms}&mfe=Desktops
SearchScopes: HKCU - DefaultScope {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://search.conduit.com/Results.aspx?ctid=CT3310393&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=2&UP=SP12FC80B8-8D38-40FC-8771-D3C6580982A7&q={searchTerms}
SearchScopes: HKCU - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://search.conduit.com/Results.aspx?ctid=CT3310393&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=2&UP=SP12FC80B8-8D38-40FC-8771-D3C6580982A7&q={searchTerms}
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://search.babylon.com/?q={searchTerms}&AF=109980&babsrc=SP_ss&mntrId=9e5a9e8b000000000000e06995829a9f
SearchScopes: HKCU - {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://eu.ask.com/web?q={searchterms}&l=dis&o=HPDTDF
SearchScopes: HKCU - {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://ch.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPDTDF
SearchScopes: HKCU - {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = hxxp://de.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKCU - {d944bb61-2e34-4dbf-a683-47e505c587dc} URL = hxxp://rover.ebay.com/rover/1/5222-111091-7834-0/4?satitle={searchTerms}&mfe=Desktops
BHO: TubeSaver-15 - {11111111-1111-1111-1111-110411391166} - C:\Program Files (x86)\TubeSaver-15\TubeSaver-15-bho64.dll (PassWizard)
BHO: No Name - {11BF46C6-B3DE-48BD-BF70-3AD85CAB80B5} - C:\Program Files (x86)\SiteRanker\SiteR64.dll (Crawler, LLC)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO: SmileysWeLoveToolbar - {E4EF8A64-0A30-48F5-B3FE-5FDA978DA775} - C:\Program Files (x86)\Smileys We Love Toolbar for IE\adxloader64.dll ()
BHO-x32: TubeSaver-15 - {11111111-1111-1111-1111-110411391166} - C:\Program Files (x86)\TubeSaver-15\TubeSaver-15-bho.dll (PassWizard)
BHO-x32: No Name - {11BF46C6-B3DE-48BD-BF70-3AD85CAB80B5} - C:\Program Files (x86)\SiteRanker\SiteRank.dll (Crawler, LLC)
BHO-x32: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader)
BHO-x32: Avira SearchFree Toolbar plus Web Protection - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.)
BHO-x32: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: af0.Adblock.BHO - {90EFF544-3981-4d46-85C9-C0361D0931D6} - C:\Windows\\SysWOW64\mscoree.dll (Microsoft Corporation)
BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO-x32: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\BingExt.dll (Microsoft Corporation.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: SmileysWeLoveToolbar - {E4EF8A64-0A30-48F5-B3FE-5FDA978DA775} - C:\Program Files (x86)\Smileys We Love Toolbar for IE\adxloader.dll ()
BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKLM - SmileysWeLove - {CF0F43AB-9C23-4D7B-8040-201B82844854} - C:\Program Files (x86)\Smileys We Love Toolbar for IE\adxloader64.dll ()
Toolbar: HKLM-x32 - Avira SearchFree Toolbar plus Web Protection - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\BingExt.dll (Microsoft Corporation.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKLM-x32 - SmileysWeLove - {CF0F43AB-9C23-4D7B-8040-201B82844854} - C:\Program Files (x86)\Smileys We Love Toolbar for IE\adxloader.dll ()
Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
DPF: HKLM {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000}
Handler: ipp\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - No File
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - No File
Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: http\oledb - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: https\oledb - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: ipp\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
ShellExecuteHooks-x32: EasyBits ShellExecute Hook - {E54729E8-BB3D-4270-9D49-7389EA579090} - C:\Windows\SysWow64\EZUPBH~1.DLL [52920 2011-05-17] (EasyBits Software Corp.)
Tcpip\Parameters: [DhcpNameServer] 62.2.17.61 62.2.24.158 62.2.17.60 62.2.24.162
FireFox:
========
FF ProfilePath: C:\Users\Silvan Borghi\AppData\Roaming\Mozilla\Firefox\Profiles\3y8ciei6.default
FF user.js: detected! => C:\Users\Silvan Borghi\AppData\Roaming\Mozilla\Firefox\Profiles\3y8ciei6.default\user.js
FF NewTab: hxxp://search.conduit.com/?ctid=CT3310393&octid=EB_ORIGINAL_CTID&SearchSource=69&CUI=&SSPV=EB_SSPV&Lay=1&UM=2&UP=SP12FC80B8-8D38-40FC-8771-D3C6580982A7
FF DefaultSearchEngine: Firefox Add-ons
FF SearchEngineOrder.1: Search the web (Babylon)
FF SelectedSearchEngine: Firefox Add-ons
FF Homepage: https://startpage.com/
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll ()
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.6.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.6.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin-x32: @real.com/nppl3260;version=16.0.0.282 - c:\program files (x86)\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlchromebrowserrecordext;version=1.3.0 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlhtml5videoshim;version=1.3.0 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlpepperflashvideoshim;version=1.3.0 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpchromebrowserrecordext;version=15.0.4.53 - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprphtml5videoshim;version=15.0.4.53 - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpplugin;version=16.0.0.282 - c:\program files (x86)\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer)
FF Plugin-x32: @realnetworks.com/npdlplugin;version=1 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.2 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\1\NP_wtapp.dll ()
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF SearchPlugin: C:\Users\Silvan Borghi\AppData\Roaming\Mozilla\Firefox\Profiles\3y8ciei6.default\searchplugins\conduit-search.xml
FF SearchPlugin: C:\Users\Silvan Borghi\AppData\Roaming\Mozilla\Firefox\Profiles\3y8ciei6.default\searchplugins\firefox-add-ons.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: DownloadHelper - C:\Users\Silvan Borghi\AppData\Roaming\Mozilla\Firefox\Profiles\3y8ciei6.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
FF Extension: No Name - C:\Users\Silvan Borghi\AppData\Roaming\Mozilla\Firefox\Profiles\3y8ciei6.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF HKLM-x32\...\Firefox\Extensions: [{34712C68-7391-4c47-94F3-8F88D49AD632}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\
FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\
FF HKLM-x32\...\Firefox\Extensions: [siteranker@siteranker.com] - C:\Program Files (x86)\SiteRanker\firefox\
FF Extension: SiteRanker - C:\Program Files (x86)\SiteRanker\firefox\
FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF HKLM-x32\...\Firefox\Extensions: [fmdownloader@gmail.com] - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com\
FF Extension: Freemake Video Downloader Plugin - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com\
FF HKLM-x32\...\Firefox\Extensions: [ytfmdownloader@gmail.com] - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com\
FF Extension: Freemake Youtube Download Button - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com\
Chrome:
=======
CHR HomePage: hxxp://search.conduit.com/?ctid=CT3310393&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=2&UP=SP12FC80B8-8D38-40FC-8771-D3C6580982A7
CHR RestoreOnStartup: "hxxp://search.conduit.com/?ctid=CT3310393&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=2&UP=SP12FC80B8-8D38-40FC-8771-D3C6580982A7"
CHR DefaultSearchURL: (Conduit Search) - hxxp://search.conduit.com/Results.aspx?ctid=CT3310393&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=2&UP=SP12FC80B8-8D38-40FC-8771-D3C6580982A7&q={searchTerms}
CHR DefaultSuggestURL: (Conduit Search) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR Extension: (TubeSaver-15) - C:\Users\SILVAN~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\aacaalipcbmakfddcbikkebnjedofmec\1.25.6_0
CHR Extension: (YouTube) - C:\Users\SILVAN~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2_0
CHR Extension: (Google Search) - C:\Users\SILVAN~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.14_0
CHR Extension: (Free Smileys & Emoticons) - C:\Users\SILVAN~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjbbjfdilbioabojmcplalojlmdngbjl\3.0.24.0_0
CHR Extension: (Skype Click to Call) - C:\Users\SILVAN~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.9.0.9216_0
CHR Extension: (Gmail) - C:\Users\SILVAN~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\6.1.3_0
CHR HKLM-x32\...\Chrome\Extension: [aaaaacalgebmfelllfiaoknifldpngjh] - C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\ToolbarCR.crx
CHR HKLM-x32\...\Chrome\Extension: [bpegkgagfojjbcpkihigfmkojdmmimdf] - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Chrome\Freemake.Plugin.Chrome.crx
CHR HKLM-x32\...\Chrome\Extension: [ehgldbbpchgpcfagfpfjgoomddhccfgh] - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Chrome\ChromeYoutubePlugin.crx
CHR HKLM-x32\...\Chrome\Extension: [idhngdhcfkoamngbedgpaokgjbnpdiji] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx
==================== Services (Whitelisted) =================
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-09-03] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-09-03] (Avira Operations GmbH & Co. KG)
R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [815160 2013-09-03] (Avira Operations GmbH & Co. KG)
R2 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [164816 2013-10-08] (APN LLC.)
S2 CLKMSVC10_C6F09094; C:\Program Files (x86)\Hewlett-Packard\Media\DVD\Kernel\HDDVD\NavFilter\kmsvc.exe [245232 2010-11-26] (CyberLink)
R2 CltMngSvc; C:\PROGRA~2\SearchProtect\Main\bin\CltMngSvc.exe [1753376 2013-10-18] (Conduit)
S3 COMSysApp; C:\Windows\SysWow64\dllhost.exe [7168 2009-07-14] (Microsoft Corporation)
R2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [101888 2013-08-26] (Freemake)
R2 FreemakeVideoCapture; C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe [9216 2013-08-26] (Ellora Assets Corp.)
S3 msiserver; C:\Windows\SysWow64\msiexec.exe [73216 2010-11-20] (Microsoft Corporation)
R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1119768 2010-09-28] (PDF Complete Inc)
R2 RealNetworks Downloader Resolver Service; C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe [38608 2012-11-29] ()
R2 SBSDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe [1153368 2009-01-26] (Safer Networking Ltd.)
R2 WSearch; C:\Windows\SysWow64\SearchIndexer.exe [427520 2011-05-04] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [88480 2012-03-08] ()
R3 AVer7231_x64; C:\Windows\System32\DRIVERS\AVer7231_x64.sys [1757952 2010-04-08] (AVerMedia TECHNOLOGIES, Inc.)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105344 2013-09-03] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [132088 2013-09-03] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-08-05] (Avira Operations GmbH & Co. KG)
S3 CXCIR; C:\Windows\system32\DRIVERS\AVer888RCIR_64.sys [39936 2009-11-14] (AVerMedia TECHNOLOGIES, Inc.)
S2 DgiVecp; C:\Windows\system32\Drivers\DgiVecp.sys [54072 2007-10-22] (Samsung Electronics)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [270912 2011-11-08] (DT Soft Ltd)
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [46400 2012-03-08] ()
R2 npf; C:\Windows\System32\drivers\npf.sys [35344 2011-02-11] (CACE Technologies, Inc.)
U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] ()
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-10-23 20:08 - 2013-10-23 20:08 - 01955374 _____ (Farbar) C:\Users\Silvan Borghi\Downloads\FRST64.exe
2013-10-23 20:08 - 2013-10-23 20:08 - 00000000 ____D C:\FRST
2013-10-23 18:06 - 2013-10-23 18:06 - 00002304 _____ C:\Users\Silvan Borghi\Documents\EreignisseAvira.txt
2013-10-23 16:45 - 2013-10-23 16:45 - 00000000 ____D C:\Program Files\WinPcap
2013-10-23 16:44 - 2013-10-23 16:48 - 00000000 ____D C:\Users\Silvan Borghi\Documents\Freemake
2013-10-23 16:44 - 2013-10-23 16:45 - 00000000 ____D C:\ProgramData\Freemake
2013-10-23 16:44 - 2013-10-23 16:44 - 00001294 _____ C:\Users\Public\Desktop\Freemake Video Downloader.lnk
2013-10-23 16:44 - 2013-10-23 16:44 - 00000000 ____D C:\Users\Silvan Borghi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake
2013-10-23 16:44 - 2013-10-23 16:44 - 00000000 ____D C:\Program Files (x86)\Freemake
2013-10-23 16:43 - 2013-10-23 16:43 - 01272248 _____ (Ellora Assets Corporation ) C:\Users\Silvan Borghi\Downloads\FreemakeVideoDownloaderSetup_3.5.4.1.exe
2013-10-23 14:23 - 2013-10-23 14:23 - 00001029 _____ C:\Users\Silvan Borghi\Desktop\Silvan Borghi - Verknüpfung.lnk
2013-10-23 14:22 - 2013-10-23 14:22 - 00000000 ____D C:\Users\Silvan Borghi\Documents\Schleuderkurs
2013-10-22 17:58 - 2013-10-22 18:20 - 00000000 ____D C:\Users\Silvan Borghi\Documents\c++ Progs
2013-10-22 17:46 - 2013-10-22 17:47 - 00000000 ____D C:\Users\Silvan Borghi\AppData\Roaming\Dev-Cpp
2013-10-22 17:46 - 2013-10-22 17:46 - 00000948 _____ C:\Users\UpdatusUser\Desktop\Dev-C++.lnk
2013-10-22 17:46 - 2013-10-22 17:46 - 00000948 _____ C:\Users\Silvan Borghi\Desktop\Dev-C++.lnk
2013-10-22 17:45 - 2013-10-22 17:45 - 00000000 ____D C:\Program Files (x86)\Dev-Cpp
2013-10-22 17:44 - 2013-10-22 17:44 - 43633629 _____ C:\Users\Silvan Borghi\Downloads\Dev-Cpp_5.4.0_TDM-GCC_x64_4.7.1_Setup.exe
2013-10-22 17:07 - 2013-10-22 17:07 - 00000000 ____D C:\Users\Silvan Borghi\Documents\Add-in Express
2013-10-22 17:07 - 2013-10-22 17:07 - 00000000 ____D C:\Users\Silvan Borghi\AppData\Roaming\OpenCandy
2013-10-22 17:07 - 2013-10-22 17:07 - 00000000 ____D C:\Program Files (x86)\SqueakyChocolate
2013-10-22 17:07 - 2013-10-22 17:07 - 00000000 ____D C:\Program Files (x86)\Smileys We Love Toolbar for IE
2013-10-22 17:06 - 2013-10-22 17:06 - 00000000 ____D C:\Users\Silvan Borghi\AppData\Local\SearchProtect
2013-10-22 17:06 - 2013-10-22 17:06 - 00000000 ____D C:\Program Files (x86)\SearchProtect
2013-10-22 17:06 - 2013-10-22 17:06 - 00000000 _____ C:\END
2013-10-22 17:05 - 2013-10-22 17:05 - 05191673 _____ C:\Users\Silvan Borghi\Downloads\Appnimi-ZIP-Password-Kit-Setup-Free-20130911-1.0.zip
2013-10-22 16:58 - 2013-10-22 17:01 - 2012772352 _____ C:\Users\Silvan Borghi\Downloads\BT5-GNOME-64.iso
2013-10-22 16:54 - 2013-10-22 16:54 - 00000000 ____D C:\Users\Silvan Borghi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ElcomSoft
2013-10-22 16:54 - 2013-10-22 16:54 - 00000000 ____D C:\Program Files (x86)\ElcomSoft
2013-10-21 19:06 - 2013-10-21 19:06 - 01199784 _____ C:\Users\Silvan Borghi\Downloads\453065_intl_x64_zip.exe
2013-10-19 17:50 - 2013-10-19 17:50 - 00001449 _____ C:\Users\Silvan Borghi\Desktop\meetup.ics
2013-10-19 17:39 - 2013-10-19 17:40 - 00000000 ____D C:\Users\Silvan Borghi\AppData\Roaming\Riot Games
2013-10-19 17:39 - 2013-10-19 17:39 - 34888568 _____ (Riot Games) C:\Users\Silvan Borghi\Downloads\LeagueofLegends_EUW_Installer_06_12_13.exe
2013-10-19 17:39 - 2013-10-19 17:39 - 00001613 _____ C:\Users\Public\Desktop\Play League of Legends.lnk
2013-10-19 17:39 - 2013-10-19 17:39 - 00000000 __SHD C:\Windows\SysWOW64\AI_RecycleBin
2013-10-17 23:40 - 2013-10-17 23:40 - 00000000 ____D C:\Users\Silvan Borghi\Downloads\Neuer Ordner (9)
2013-10-17 23:34 - 2013-10-17 23:35 - 00000000 ____D C:\Program Files (x86)\SiteRanker
2013-10-17 23:34 - 2013-10-17 23:34 - 03707308 _____ ( ) C:\Users\Silvan Borghi\Downloads\spaceship.exe
2013-10-17 23:34 - 2013-10-17 23:34 - 00001870 _____ C:\Users\UpdatusUser\Desktop\More 3D Screensavers.lnk
2013-10-17 23:34 - 2013-10-17 23:34 - 00001870 _____ C:\Users\Silvan Borghi\Desktop\More 3D Screensavers.lnk
2013-10-17 23:34 - 2013-10-17 23:34 - 00000938 _____ C:\Users\UpdatusUser\Desktop\Free Space Ship Screensaver.lnk
2013-10-17 23:34 - 2013-10-17 23:34 - 00000938 _____ C:\Users\Silvan Borghi\Desktop\Free Space Ship Screensaver.lnk
2013-10-17 23:34 - 2013-10-17 23:34 - 00000000 ____D C:\Program Files (x86)\Free Space Ship Screensaver
2013-10-17 23:34 - 2013-10-17 23:34 - 00000000 ____D C:\Program Files (x86)\Crawler
2013-10-17 23:34 - 2008-03-01 22:20 - 00002476 _____ C:\Windows\SysWOW64\Free Space Ship Screensaver.html
2013-10-17 23:34 - 2008-02-24 15:56 - 03635742 _____ C:\Windows\SysWOW64\Free Space Ship Screensaver.scr
2013-10-17 23:33 - 2013-10-17 23:33 - 00728104 _____ (Crawler, LLC ) C:\Users\Silvan Borghi\Downloads\CrawlerScreensaver__SS_11594_.exe
2013-10-17 23:26 - 2013-10-23 19:57 - 00001970 _____ C:\Windows\Tasks\TubeSaver-15-chromeinstaller.job
2013-10-17 23:26 - 2013-10-23 19:57 - 00001896 _____ C:\Windows\Tasks\TubeSaver-15-firefoxinstaller.job
2013-10-17 23:26 - 2013-10-23 19:57 - 00001356 _____ C:\Windows\Tasks\TubeSaver-15-updater.job
2013-10-17 23:26 - 2013-10-23 19:57 - 00001262 _____ C:\Windows\Tasks\TubeSaver-15-codedownloader.job
2013-10-17 23:26 - 2013-10-23 19:57 - 00001162 _____ C:\Windows\Tasks\TubeSaver-15-enabler.job
2013-10-17 23:26 - 2013-10-17 23:26 - 00004386 _____ C:\Windows\System32\Tasks\TubeSaver-15-updater
2013-10-17 23:26 - 2013-10-17 23:26 - 00004292 _____ C:\Windows\System32\Tasks\TubeSaver-15-codedownloader
2013-10-17 23:26 - 2013-10-17 23:26 - 00004192 _____ C:\Windows\System32\Tasks\TubeSaver-15-enabler
2013-10-17 23:26 - 2013-10-17 23:26 - 00000000 ____D C:\Program Files (x86)\TubeSaver-15
2013-10-17 23:25 - 2013-10-17 23:25 - 05499137 _____ C:\Users\Silvan Borghi\Downloads\StarCraft2Wallpaper.zip
2013-10-17 23:24 - 2013-10-17 23:24 - 09701672 _____ (ScreenSaverGift.com) C:\Users\Silvan Borghi\Downloads\Starcraft_Screensaver.exe
2013-10-17 23:24 - 2013-10-17 23:24 - 00000000 ____D C:\Program Files (x86)\ScreenSaverGift
2013-10-17 23:23 - 2013-10-17 23:23 - 02353945 _____ C:\Users\Silvan Borghi\Downloads\GlobFXSpaceTravel.exe
2013-10-17 23:23 - 2013-10-17 23:23 - 00000000 ____D C:\Users\Silvan Borghi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GlobFX Space Travel
2013-10-17 23:23 - 2013-10-17 23:23 - 00000000 ____D C:\Program Files (x86)\GlobFX Technologies
2013-10-17 23:20 - 2013-10-17 23:20 - 02133423 _____ C:\Users\Silvan Borghi\Downloads\Space3000.exe
2013-10-17 23:20 - 2013-10-17 23:20 - 00000936 _____ C:\Users\UpdatusUser\Desktop\Space3000 Purchase.lnk
2013-10-17 23:20 - 2013-10-17 23:20 - 00000936 _____ C:\Users\UpdatusUser\Desktop\Space3000 Preview.lnk
2013-10-17 23:20 - 2013-10-17 23:20 - 00000936 _____ C:\Users\UpdatusUser\Desktop\Space3000 Control Panel.lnk
2013-10-17 23:20 - 2013-10-17 23:20 - 00000936 _____ C:\Users\Silvan Borghi\Desktop\Space3000 Purchase.lnk
2013-10-17 23:20 - 2013-10-17 23:20 - 00000936 _____ C:\Users\Silvan Borghi\Desktop\Space3000 Preview.lnk
2013-10-17 23:20 - 2013-10-17 23:20 - 00000936 _____ C:\Users\Silvan Borghi\Desktop\Space3000 Control Panel.lnk
2013-10-17 23:20 - 2013-10-17 23:20 - 00000000 ____D C:\Windows\ImaginationX
2013-10-17 23:20 - 2013-10-17 23:20 - 00000000 ____D C:\Users\Silvan Borghi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Space 3000 ScreenSaver
2013-10-17 23:20 - 2013-10-17 23:20 - 00000000 ____D C:\Program Files (x86)\ImaginationX
2013-10-17 23:20 - 2003-11-29 09:45 - 01325568 _____ (ImaginationX) C:\Windows\SysWOW64\Space3000.scr
2013-10-17 23:17 - 2013-10-17 23:17 - 01104773 _____ (Conduit) C:\Users\Silvan Borghi\Downloads\bs_VDownloader.exe
2013-10-15 21:00 - 2013-10-15 21:00 - 00000000 ____D C:\Users\Silvan Borghi\Downloads\Neuer Ordner (8)
2013-10-14 18:23 - 2013-10-14 18:23 - 00000000 ____D C:\Users\Silvan Borghi\Desktop\Rest
2013-10-14 17:37 - 2013-09-23 01:28 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-10-14 17:37 - 2013-09-23 01:28 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-10-14 17:37 - 2013-09-23 01:27 - 14335488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-10-14 17:37 - 2013-09-23 01:27 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-10-14 17:37 - 2013-09-23 01:27 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-10-14 17:37 - 2013-09-23 01:27 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-10-14 17:37 - 2013-09-23 01:27 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-10-14 17:37 - 2013-09-23 01:27 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-10-14 17:37 - 2013-09-23 01:27 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-10-14 17:37 - 2013-09-23 01:27 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-10-14 17:37 - 2013-09-23 01:27 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-10-14 17:37 - 2013-09-23 01:27 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-10-14 17:37 - 2013-09-23 01:27 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-10-14 17:37 - 2013-09-23 00:55 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-10-14 17:37 - 2013-09-23 00:55 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-10-14 17:37 - 2013-09-23 00:55 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-10-14 17:37 - 2013-09-23 00:54 - 19252224 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-10-14 17:37 - 2013-09-23 00:54 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-10-14 17:37 - 2013-09-23 00:54 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-10-14 17:37 - 2013-09-23 00:54 - 02647552 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-10-14 17:37 - 2013-09-23 00:54 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-10-14 17:37 - 2013-09-23 00:54 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-10-14 17:37 - 2013-09-23 00:54 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-10-14 17:37 - 2013-09-23 00:54 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-10-14 17:37 - 2013-09-23 00:54 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-10-14 17:37 - 2013-09-23 00:54 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-10-14 17:37 - 2013-09-23 00:54 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-10-14 17:37 - 2013-09-21 05:38 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-10-14 17:37 - 2013-09-21 05:30 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-10-14 17:37 - 2013-09-21 04:48 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-10-14 17:37 - 2013-09-21 04:39 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-10-13 20:47 - 2013-07-04 14:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2013-10-13 20:47 - 2013-07-04 13:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2013-10-13 20:46 - 2013-09-14 03:10 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2013-10-13 20:46 - 2013-09-08 04:30 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-10-13 20:46 - 2013-09-08 04:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2013-10-13 20:46 - 2013-09-08 04:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2013-10-13 20:46 - 2013-08-29 04:17 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2013-10-13 20:46 - 2013-08-29 04:16 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2013-10-13 20:46 - 2013-08-29 04:16 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2013-10-13 20:46 - 2013-08-29 04:16 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2013-10-13 20:46 - 2013-08-29 04:13 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2013-10-13 20:46 - 2013-08-29 03:51 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2013-10-13 20:46 - 2013-08-29 03:51 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2013-10-13 20:46 - 2013-08-29 03:50 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2013-10-13 20:46 - 2013-08-29 03:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2013-10-13 20:46 - 2013-08-29 03:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2013-10-13 20:46 - 2013-08-29 03:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2013-10-13 20:46 - 2013-08-29 02:49 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2013-10-13 20:46 - 2013-08-29 02:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2013-10-13 20:46 - 2013-08-29 02:49 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2013-10-13 20:46 - 2013-08-29 02:49 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2013-10-13 20:46 - 2013-08-28 03:21 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-10-13 20:46 - 2013-08-28 03:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2013-10-13 20:46 - 2013-08-01 14:09 - 00983488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2013-10-13 20:46 - 2013-07-20 12:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-13 20:46 - 2013-07-20 12:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-10-13 20:46 - 2013-07-04 14:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2013-10-13 20:46 - 2013-07-04 14:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2013-10-13 20:46 - 2013-07-04 13:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2013-10-13 20:46 - 2013-07-04 13:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2013-10-13 20:46 - 2013-07-04 12:11 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2013-10-13 20:46 - 2013-06-26 00:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2013-10-13 20:46 - 2013-06-06 07:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2013-10-13 20:46 - 2013-06-06 07:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2013-10-13 20:46 - 2013-06-06 07:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2013-10-13 20:46 - 2013-06-06 07:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2013-10-13 20:46 - 2013-06-06 06:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2013-10-13 20:46 - 2013-06-06 06:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2013-10-13 20:46 - 2013-06-06 06:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2013-10-13 20:46 - 2013-06-06 05:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2013-10-13 20:46 - 2013-06-06 05:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2013-10-13 20:46 - 2013-06-06 05:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2013-10-04 18:42 - 2013-10-04 18:42 - 00000000 ____D C:\Users\Silvan Borghi\AppData\Roaming\Fatshark
2013-09-23 21:30 - 2013-09-23 21:30 - 98685961 _____ C:\Windows\SysWOW64\顔㐥赤’
==================== One Month Modified Files and Folders =======
2013-10-23 20:09 - 2011-12-11 13:40 - 00000000 ____D C:\Users\Silvan Borghi\AppData\Local\PMB Files
2013-10-23 20:08 - 2013-10-23 20:08 - 01955374 _____ (Farbar) C:\Users\Silvan Borghi\Downloads\FRST64.exe
2013-10-23 20:08 - 2013-10-23 20:08 - 00000000 ____D C:\FRST
2013-10-23 20:07 - 2011-10-28 12:17 - 00000000 ____D C:\Users\Silvan Borghi\AppData\Roaming\Skype
2013-10-23 20:05 - 2009-07-14 06:45 - 00015792 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-10-23 20:05 - 2009-07-14 06:45 - 00015792 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-10-23 20:02 - 2011-05-17 19:26 - 02057923 _____ C:\Windows\WindowsUpdate.log
2013-10-23 19:58 - 2012-02-06 10:43 - 00001120 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-10-23 19:58 - 2011-11-10 21:47 - 00000000 ____D C:\Users\Silvan Borghi\AppData\Local\CrashDumps
2013-10-23 19:57 - 2013-10-17 23:26 - 00001970 _____ C:\Windows\Tasks\TubeSaver-15-chromeinstaller.job
2013-10-23 19:57 - 2013-10-17 23:26 - 00001896 _____ C:\Windows\Tasks\TubeSaver-15-firefoxinstaller.job
2013-10-23 19:57 - 2013-10-17 23:26 - 00001356 _____ C:\Windows\Tasks\TubeSaver-15-updater.job
2013-10-23 19:57 - 2013-10-17 23:26 - 00001262 _____ C:\Windows\Tasks\TubeSaver-15-codedownloader.job
2013-10-23 19:57 - 2013-10-17 23:26 - 00001162 _____ C:\Windows\Tasks\TubeSaver-15-enabler.job
2013-10-23 19:57 - 2011-05-17 19:22 - 00358632 _____ C:\Windows\PFRO.log
2013-10-23 19:57 - 2011-05-17 19:22 - 00000000 ____D C:\ProgramData\NVIDIA
2013-10-23 19:57 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-10-23 19:57 - 2009-07-14 06:51 - 00083850 _____ C:\Windows\setupact.log
2013-10-23 18:37 - 2011-12-11 13:40 - 00000000 ____D C:\ProgramData\PMB Files
2013-10-23 18:16 - 2012-12-24 12:06 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-10-23 18:10 - 2012-02-06 10:43 - 00001124 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-10-23 18:06 - 2013-10-23 18:06 - 00002304 _____ C:\Users\Silvan Borghi\Documents\EreignisseAvira.txt
2013-10-23 16:48 - 2013-10-23 16:44 - 00000000 ____D C:\Users\Silvan Borghi\Documents\Freemake
2013-10-23 16:45 - 2013-10-23 16:45 - 00000000 ____D C:\Program Files\WinPcap
2013-10-23 16:45 - 2013-10-23 16:44 - 00000000 ____D C:\ProgramData\Freemake
2013-10-23 16:44 - 2013-10-23 16:44 - 00001294 _____ C:\Users\Public\Desktop\Freemake Video Downloader.lnk
2013-10-23 16:44 - 2013-10-23 16:44 - 00000000 ____D C:\Users\Silvan Borghi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake
2013-10-23 16:44 - 2013-10-23 16:44 - 00000000 ____D C:\Program Files (x86)\Freemake
2013-10-23 16:43 - 2013-10-23 16:43 - 01272248 _____ (Ellora Assets Corporation ) C:\Users\Silvan Borghi\Downloads\FreemakeVideoDownloaderSetup_3.5.4.1.exe
2013-10-23 14:28 - 2011-10-28 18:20 - 00000000 ____D C:\Users\Silvan Borghi\AppData\Local\Windows Live
2013-10-23 14:23 - 2013-10-23 14:23 - 00001029 _____ C:\Users\Silvan Borghi\Desktop\Silvan Borghi - Verknüpfung.lnk
2013-10-23 14:22 - 2013-10-23 14:22 - 00000000 ____D C:\Users\Silvan Borghi\Documents\Schleuderkurs
2013-10-22 19:27 - 2012-08-18 11:54 - 00000364 _____ C:\Windows\Tasks\HPCeeScheduleForSilvan Borghi.job
2013-10-22 18:20 - 2013-10-22 17:58 - 00000000 ____D C:\Users\Silvan Borghi\Documents\c++ Progs
2013-10-22 17:47 - 2013-10-22 17:46 - 00000000 ____D C:\Users\Silvan Borghi\AppData\Roaming\Dev-Cpp
2013-10-22 17:46 - 2013-10-22 17:46 - 00000948 _____ C:\Users\UpdatusUser\Desktop\Dev-C++.lnk
2013-10-22 17:46 - 2013-10-22 17:46 - 00000948 _____ C:\Users\Silvan Borghi\Desktop\Dev-C++.lnk
2013-10-22 17:45 - 2013-10-22 17:45 - 00000000 ____D C:\Program Files (x86)\Dev-Cpp
2013-10-22 17:44 - 2013-10-22 17:44 - 43633629 _____ C:\Users\Silvan Borghi\Downloads\Dev-Cpp_5.4.0_TDM-GCC_x64_4.7.1_Setup.exe
2013-10-22 17:07 - 2013-10-22 17:07 - 00000000 ____D C:\Users\Silvan Borghi\Documents\Add-in Express
2013-10-22 17:07 - 2013-10-22 17:07 - 00000000 ____D C:\Users\Silvan Borghi\AppData\Roaming\OpenCandy
2013-10-22 17:07 - 2013-10-22 17:07 - 00000000 ____D C:\Program Files (x86)\SqueakyChocolate
2013-10-22 17:07 - 2013-10-22 17:07 - 00000000 ____D C:\Program Files (x86)\Smileys We Love Toolbar for IE
2013-10-22 17:06 - 2013-10-22 17:06 - 00000000 ____D C:\Users\Silvan Borghi\AppData\Local\SearchProtect
2013-10-22 17:06 - 2013-10-22 17:06 - 00000000 ____D C:\Program Files (x86)\SearchProtect
2013-10-22 17:06 - 2013-10-22 17:06 - 00000000 _____ C:\END
2013-10-22 17:06 - 2011-12-08 17:48 - 00000000 ____D C:\Users\Silvan Borghi\Bla
2013-10-22 17:05 - 2013-10-22 17:05 - 05191673 _____ C:\Users\Silvan Borghi\Downloads\Appnimi-ZIP-Password-Kit-Setup-Free-20130911-1.0.zip
2013-10-22 17:01 - 2013-10-22 16:58 - 2012772352 _____ C:\Users\Silvan Borghi\Downloads\BT5-GNOME-64.iso
2013-10-22 16:54 - 2013-10-22 16:54 - 00000000 ____D C:\Users\Silvan Borghi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ElcomSoft
2013-10-22 16:54 - 2013-10-22 16:54 - 00000000 ____D C:\Program Files (x86)\ElcomSoft
2013-10-22 16:49 - 2011-10-28 10:38 - 00000000 ____D C:\Users\Silvan Borghi
2013-10-21 22:05 - 2011-11-24 22:54 - 00000000 ____D C:\Users\Silvan Borghi\dwhelper
2013-10-21 19:06 - 2013-10-21 19:06 - 01199784 _____ C:\Users\Silvan Borghi\Downloads\453065_intl_x64_zip.exe
2013-10-21 19:02 - 2011-05-17 19:36 - 00000000 ____D C:\ProgramData\PDFC
2013-10-21 19:01 - 2011-05-17 19:56 - 00697072 _____ C:\Windows\system32\perfh007.dat
2013-10-21 19:01 - 2011-05-17 19:56 - 00148110 _____ C:\Windows\system32\perfc007.dat
2013-10-21 19:01 - 2009-07-14 07:13 - 01614036 _____ C:\Windows\system32\PerfStringBackup.INI
2013-10-20 14:19 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache
2013-10-19 19:16 - 2011-11-12 22:33 - 00000000 _____ C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2013-10-19 19:16 - 2011-11-05 13:58 - 00000052 _____ C:\Windows\SysWOW64\DOErrors.log
2013-10-19 19:13 - 2011-11-05 13:57 - 00000000 ____D C:\Users\Silvan Borghi\AppData\Roaming\HpUpdate
2013-10-19 19:13 - 2011-11-05 13:57 - 00000000 ____D C:\Users\Silvan Borghi\AppData\Roaming\HP Support Assistant
2013-10-19 18:05 - 2012-02-06 10:43 - 00004120 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-10-19 18:05 - 2012-02-06 10:43 - 00003868 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-10-19 17:50 - 2013-10-19 17:50 - 00001449 _____ C:\Users\Silvan Borghi\Desktop\meetup.ics
2013-10-19 17:40 - 2013-10-19 17:39 - 00000000 ____D C:\Users\Silvan Borghi\AppData\Roaming\Riot Games
2013-10-19 17:39 - 2013-10-19 17:39 - 34888568 _____ (Riot Games) C:\Users\Silvan Borghi\Downloads\LeagueofLegends_EUW_Installer_06_12_13.exe
2013-10-19 17:39 - 2013-10-19 17:39 - 00001613 _____ C:\Users\Public\Desktop\Play League of Legends.lnk
2013-10-19 17:39 - 2013-10-19 17:39 - 00000000 __SHD C:\Windows\SysWOW64\AI_RecycleBin
2013-10-17 23:40 - 2013-10-17 23:40 - 00000000 ____D C:\Users\Silvan Borghi\Downloads\Neuer Ordner (9)
2013-10-17 23:37 - 2011-10-28 11:39 - 00000000 ____D C:\Users\Silvan Borghi\Documents\StarCraft II
2013-10-17 23:35 - 2013-10-17 23:34 - 00000000 ____D C:\Program Files (x86)\SiteRanker
2013-10-17 23:34 - 2013-10-17 23:34 - 03707308 _____ ( ) C:\Users\Silvan Borghi\Downloads\spaceship.exe
2013-10-17 23:34 - 2013-10-17 23:34 - 00001870 _____ C:\Users\UpdatusUser\Desktop\More 3D Screensavers.lnk
2013-10-17 23:34 - 2013-10-17 23:34 - 00001870 _____ C:\Users\Silvan Borghi\Desktop\More 3D Screensavers.lnk
2013-10-17 23:34 - 2013-10-17 23:34 - 00000938 _____ C:\Users\UpdatusUser\Desktop\Free Space Ship Screensaver.lnk
2013-10-17 23:34 - 2013-10-17 23:34 - 00000938 _____ C:\Users\Silvan Borghi\Desktop\Free Space Ship Screensaver.lnk
2013-10-17 23:34 - 2013-10-17 23:34 - 00000000 ____D C:\Program Files (x86)\Free Space Ship Screensaver
2013-10-17 23:34 - 2013-10-17 23:34 - 00000000 ____D C:\Program Files (x86)\Crawler
2013-10-17 23:34 - 2011-10-28 11:39 - 00000000 ____D C:\Program Files (x86)\StarCraft II
2013-10-17 23:33 - 2013-10-17 23:33 - 00728104 _____ (Crawler, LLC ) C:\Users\Silvan Borghi\Downloads\CrawlerScreensaver__SS_11594_.exe
2013-10-17 23:26 - 2013-10-17 23:26 - 00004386 _____ C:\Windows\System32\Tasks\TubeSaver-15-updater
2013-10-17 23:26 - 2013-10-17 23:26 - 00004292 _____ C:\Windows\System32\Tasks\TubeSaver-15-codedownloader
2013-10-17 23:26 - 2013-10-17 23:26 - 00004192 _____ C:\Windows\System32\Tasks\TubeSaver-15-enabler
2013-10-17 23:26 - 2013-10-17 23:26 - 00000000 ____D C:\Program Files (x86)\TubeSaver-15
2013-10-17 23:25 - 2013-10-17 23:25 - 05499137 _____ C:\Users\Silvan Borghi\Downloads\StarCraft2Wallpaper.zip
2013-10-17 23:24 - 2013-10-17 23:24 - 09701672 _____ (ScreenSaverGift.com) C:\Users\Silvan Borghi\Downloads\Starcraft_Screensaver.exe
2013-10-17 23:24 - 2013-10-17 23:24 - 00000000 ____D C:\Program Files (x86)\ScreenSaverGift
2013-10-17 23:23 - 2013-10-17 23:23 - 02353945 _____ C:\Users\Silvan Borghi\Downloads\GlobFXSpaceTravel.exe
2013-10-17 23:23 - 2013-10-17 23:23 - 00000000 ____D C:\Users\Silvan Borghi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GlobFX Space Travel
2013-10-17 23:23 - 2013-10-17 23:23 - 00000000 ____D C:\Program Files (x86)\GlobFX Technologies
2013-10-17 23:20 - 2013-10-17 23:20 - 02133423 _____ C:\Users\Silvan Borghi\Downloads\Space3000.exe
2013-10-17 23:20 - 2013-10-17 23:20 - 00000936 _____ C:\Users\UpdatusUser\Desktop\Space3000 Purchase.lnk
2013-10-17 23:20 - 2013-10-17 23:20 - 00000936 _____ C:\Users\UpdatusUser\Desktop\Space3000 Preview.lnk
2013-10-17 23:20 - 2013-10-17 23:20 - 00000936 _____ C:\Users\UpdatusUser\Desktop\Space3000 Control Panel.lnk
2013-10-17 23:20 - 2013-10-17 23:20 - 00000936 _____ C:\Users\Silvan Borghi\Desktop\Space3000 Purchase.lnk
2013-10-17 23:20 - 2013-10-17 23:20 - 00000936 _____ C:\Users\Silvan Borghi\Desktop\Space3000 Preview.lnk
2013-10-17 23:20 - 2013-10-17 23:20 - 00000936 _____ C:\Users\Silvan Borghi\Desktop\Space3000 Control Panel.lnk
2013-10-17 23:20 - 2013-10-17 23:20 - 00000000 ____D C:\Windows\ImaginationX
2013-10-17 23:20 - 2013-10-17 23:20 - 00000000 ____D C:\Users\Silvan Borghi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Space 3000 ScreenSaver
2013-10-17 23:20 - 2013-10-17 23:20 - 00000000 ____D C:\Program Files (x86)\ImaginationX
2013-10-17 23:17 - 2013-10-17 23:17 - 01104773 _____ (Conduit) C:\Users\Silvan Borghi\Downloads\bs_VDownloader.exe
2013-10-15 21:00 - 2013-10-15 21:00 - 00000000 ____D C:\Users\Silvan Borghi\Downloads\Neuer Ordner (8)
2013-10-15 21:00 - 2011-11-24 23:42 - 00000000 ____D C:\Users\Silvan Borghi\Downloads\Neuer Ordner
2013-10-14 20:17 - 2012-12-24 12:06 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-10-14 20:16 - 2012-12-24 12:06 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-10-14 20:16 - 2011-11-01 19:21 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-10-14 18:34 - 2009-07-14 06:45 - 00336016 _____ C:\Windows\system32\FNTCACHE.DAT
2013-10-14 18:23 - 2013-10-14 18:23 - 00000000 ____D C:\Users\Silvan Borghi\Desktop\Rest
2013-10-14 17:28 - 2013-03-14 19:36 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-10-14 17:28 - 2013-03-14 19:36 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2013-10-13 20:54 - 2011-11-11 22:44 - 01590994 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2013-10-13 20:52 - 2013-08-18 00:31 - 00000000 ____D C:\Windows\system32\MRT
2013-10-13 20:50 - 2011-10-28 13:16 - 80541720 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-10-04 18:50 - 2011-12-11 13:11 - 00000000 ____D C:\Program Files (x86)\Steam
2013-10-04 18:42 - 2013-10-04 18:42 - 00000000 ____D C:\Users\Silvan Borghi\AppData\Roaming\Fatshark
2013-10-04 18:42 - 2011-05-17 19:42 - 00207072 _____ C:\Windows\DirectX.log
2013-09-28 19:27 - 2012-08-18 11:54 - 00003234 _____ C:\Windows\System32\Tasks\HPCeeScheduleForSilvan Borghi
2013-09-23 21:30 - 2013-09-23 21:30 - 98685961 _____ C:\Windows\SysWOW64\顔㐥赤’
2013-09-23 01:28 - 2013-10-14 17:37 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-09-23 01:28 - 2013-10-14 17:37 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-09-23 01:27 - 2013-10-14 17:37 - 14335488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-09-23 01:27 - 2013-10-14 17:37 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-09-23 01:27 - 2013-10-14 17:37 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-09-23 01:27 - 2013-10-14 17:37 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-09-23 01:27 - 2013-10-14 17:37 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-09-23 01:27 - 2013-10-14 17:37 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-09-23 01:27 - 2013-10-14 17:37 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-09-23 01:27 - 2013-10-14 17:37 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-09-23 01:27 - 2013-10-14 17:37 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-09-23 01:27 - 2013-10-14 17:37 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-09-23 01:27 - 2013-10-14 17:37 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-09-23 00:55 - 2013-10-14 17:37 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-09-23 00:55 - 2013-10-14 17:37 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-09-23 00:55 - 2013-10-14 17:37 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-09-23 00:54 - 2013-10-14 17:37 - 19252224 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-09-23 00:54 - 2013-10-14 17:37 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-09-23 00:54 - 2013-10-14 17:37 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-09-23 00:54 - 2013-10-14 17:37 - 02647552 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-09-23 00:54 - 2013-10-14 17:37 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-09-23 00:54 - 2013-10-14 17:37 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-09-23 00:54 - 2013-10-14 17:37 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-09-23 00:54 - 2013-10-14 17:37 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-09-23 00:54 - 2013-10-14 17:37 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-09-23 00:54 - 2013-10-14 17:37 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-09-23 00:54 - 2013-10-14 17:37 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
Files to move or delete:
====================
C:\Users\Silvan Borghi\Bla.bat
C:\Users\Silvan Borghi\LoL.bat
Some content of TEMP:
====================
C:\Users\Silvan Borghi\AppData\Local\Temp\FreemakeVideoDownloader_3.5.4.0.exe
C:\Users\Silvan Borghi\AppData\Local\Temp\nsj944B.exe
C:\Users\Silvan Borghi\AppData\Local\Temp\nso8665.exe
C:\Users\Silvan Borghi\AppData\Local\Temp\nso972A.exe
C:\Users\Silvan Borghi\AppData\Local\Temp\nst84FD.exe
C:\Users\Silvan Borghi\AppData\Local\Temp\nst95C2.exe
C:\Users\Silvan Borghi\AppData\Local\Temp\nsz8396.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-10-21 21:16
==================== End Of Log ============================ --- --- --- Addition.txt Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 23-10-2013
Ran by Silvan Borghi at 2013-10-23 20:09:50
Running from C:\Users\Silvan Borghi\Downloads
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Avira Desktop (Enabled - Up to date) {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
AS: Avira Desktop (Enabled - Up to date) {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
µTorrent (x32 Version: 3.0.0)
AdblockIE (x32 Version: 1.2)
Adobe AIR (x32 Version: 3.4.0.2710)
Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.117)
Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.117)
Adobe Reader X (10.1.8) - Deutsch (x32 Version: 10.1.8)
Advanced Archive Password Recovery (HKCU Version: 4.53)
Agatha Christie - Peril at End House (x32 Version: 2.2.0.95)
Age of Mythology Gold (x32 Version: 1.0)
AMP WinOFF 5.0.1 (x32 Version: 5.0.1)
ANNO 1602 Königs-Edition (x32 Version: 1.00)
Anno 1701 (x32 Version: 1.04)
Audacity 1.2.6 (x32)
Aufstieg des Hexenkönigs™ (x32)
Aurora 15.0a2 (x86 de) (x32 Version: 15.0a2)
Aurora 17.0a2 (x86 de) (HKCU Version: 17.0a2)
Avira Free Antivirus (x32 Version: 13.0.0.4052)
Avira SearchFree Toolbar plus Web Protection (x32 Version: 12.2.2.663)
Bejeweled 2 Deluxe (x32 Version: 2.2.0.95)
Bing Bar (x32 Version: 7.2.241.0)
Bing Rewards Client Installer (x32 Version: 16.0.345.0)
BitTorrent (x32 Version: 7.5.0)
Blasterball 3 (x32 Version: 2.2.0.95)
Blender (Version: 2.61-release)
Bounce Symphony (x32 Version: 2.2.0.95)
Build-a-Lot - The Elizabethan Era (x32 Version: 2.2.0.95)
Cake Mania (x32 Version: 2.2.0.95)
Chuzzle Deluxe (x32 Version: 2.2.0.95)
Crawler Wallpaper (x32 Version: 4.2.5.63)
Crusader Kings II Demo Version 1.0 (x32 Version: 1.0)
CyberLink DVD Suite Premium (x32 Version: 7.0.3210)
D3DX10 (x32 Version: 15.4.2368.0902)
DAEMON Tools Lite (x32 Version: 4.41.3.0173)
Desk-Timer 2.83 (x32 Version: 2.83)
Dev-C++ (x32 Version: 5.4.0)
Die Schlacht um Mittelerde™ II (x32)
Diner Dash 2 Restaurant Rescue (x32 Version: 2.2.0.95)
Disciples III (x32)
DVD Menu Pack for HP MediaSmart Video (x32 Version: 4.2.4412)
Express Zip File Compression Software (x32)
Farm Frenzy (x32 Version: 2.2.0.95)
FATE (x32 Version: 2.2.0.95)
Free Space Ship Screensaver 1.0 (x32)
Freemake Video Downloader (x32 Version: 3.5.4)
Galerie de photos Windows Live (x32 Version: 15.4.3502.0922)
GlobFX Space Travel (x32 Version: 1.0)
GnuCash 2.4.10 (x32)
Google Chrome (x32 Version: 30.0.1599.101)
Google Earth (x32 Version: 7.1.1.1888)
Google Toolbar for Internet Explorer (x32 Version: 1.0.0)
Google Toolbar for Internet Explorer (x32 Version: 7.5.4601.54)
Google Update Helper (x32 Version: 1.3.21.165)
Gothic III - Götterdämmerung (x32 Version: 1.00.0000)
Guild Wars 2 (x32)
HandBrake 0.9.8 (x32 Version: 0.9.8)
Hewlett-Packard ACLM.NET v1.2.1.1 (x32 Version: 1.00.0000)
HomeBank 4.4 (x32)
HP Auto (Version: 1.0.12494.3472)
HP Client Services (Version: 1.0.12656.3472)
HP Customer Experience Enhancements (x32 Version: 6.0.1.7)
HP Games (x32 Version: 1.0.1.5)
HP MAINSTREAM KEYBOARD (x32 Version: 1.4.3.0)
HP MediaSmart DVD (x32 Version: 4.2.4725)
HP MediaSmart Music (x32 Version: 4.2.4517)
HP MediaSmart Photo (x32 Version: 4.2.4513)
HP MediaSmart SmartMenu (Version: 3.1.2.4)
HP MediaSmart Video (x32 Version: 4.2.4522)
HP Odometer (x32 Version: 2.10.0000)
HP Remote Solution (x32 Version: 1.1.14.0)
HP Setup (x32 Version: 8.4.4400.3525)
HP Setup Manager (x32 Version: 1.0.12844.3519)
HP Support Assistant (x32 Version: 7.0.39.15)
HP Support Information (x32 Version: 10.1.1000)
HP Update (x32 Version: 5.002.003.003)
HP Vision Hardware Diagnostics (Version: 2.1.6.0)
IDT Audio (x32 Version: 1.0.6302.0)
Insaniquarium Deluxe (x32 Version: 2.2.0.95)
Intel(R) Management Engine Components (x32 Version: 7.0.0.1118)
JAP (x32 Version: 00.16.006)
Java 7 Update 6 (x32 Version: 7.0.60)
Java Auto Updater (x32 Version: 2.1.9.0)
Java(TM) 6 Update 22 (x32 Version: 6.0.220)
JDownloader 0.9 (x32 Version: 0.9)
Jewel Quest II (x32 Version: 2.2.0.95)
Jewel Quest Solitaire (x32 Version: 2.2.0.95)
John Deere Drive Green (x32 Version: 2.2.0.95)
Junk Mail filter update (x32 Version: 15.4.3502.0922)
LabelPrint (x32 Version: 2.5.3130)
League of Legends (x32 Version: 1.02.0000)
League of Legends (x32 Version: 1.3)
League of Legends (x32 Version: 3.0.1)
LightScribe System Software (x32 Version: 1.18.20.1)
LOLReplay (x32 Version: 0.8.1.4)
Magic Desktop (x32 Version: 3.0)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319)
Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319)
Microsoft .NET Framework 4 Multi-Targeting Pack (x32 Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Application Error Reporting (x32 Version: 12.0.6012.5000)
Microsoft Help Viewer 1.0 (Version: 1.0.30319)
Microsoft Help Viewer 1.0 Language Pack - DEU (Version: 1.0.30319)
Microsoft IntelliPoint 8.2 (Version: 8.20.468.0)
Microsoft Office 2000 Premium (x32 Version: 9.00.2816)
Microsoft Office 2010 (x32 Version: 14.0.4763.1000)
Microsoft Office Klick-und-Los 2010 (Version: 14.0.4763.1000)
Microsoft Office Klick-und-Los 2010 (x32 Version: 14.0.4763.1000)
Microsoft Office Starter 2010 - Deutsch (x32 Version: 14.0.4763.1000)
Microsoft Silverlight (Version: 5.1.20913.0)
Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000)
Microsoft SQL Server 2008 R2 Management Objects (x32 Version: 10.50.1447.4)
Microsoft SQL Server System CLR Types (x32 Version: 10.50.1447.4)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.56336)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (Version: 10.0.30319)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219)
Microsoft Visual C++ 2010 x86 Runtime - 10.0.30319 (x32 Version: 10.0.30319)
Microsoft Visual Studio 2010 Shell (Isolated) - DEU (x32 Version: 10.0.30319)
Microsoft XNA Framework Redistributable 3.1 (x32 Version: 3.1.10527.0)
Movie Theme Pack for HP MediaSmart Video (x32 Version: 4.2.4412)
Mozilla Firefox 24.0 (x86 de) (x32 Version: 24.0)
Mozilla Maintenance Service (x32 Version: 24.0)
Mozilla Thunderbird 17.0.8 (x86 de) (x32 Version: 17.0.8)
MSVCRT (x32 Version: 15.4.2862.0708)
MSVCRT_amd64 (x32 Version: 15.4.2862.0708)
MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0)
MSXML4 Parser (x32 Version: 1.0.0)
MusicStation (x32 Version: 1.0.1.5)
NVIDIA 3D Vision Controller-Treiber 296.10 (Version: 296.10)
NVIDIA 3D Vision Treiber 311.06 (Version: 311.06)
NVIDIA Grafiktreiber 311.06 (Version: 311.06)
NVIDIA HD-Audiotreiber 1.3.12.0 (Version: 1.3.12.0)
NVIDIA Install Application (Version: 2.1002.108.688)
NVIDIA PhysX (x32 Version: 9.12.0213)
NVIDIA PhysX-Systemsoftware 9.12.0213 (Version: 9.12.0213)
NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.1106)
NVIDIA Systemsteuerung 311.06 (Version: 311.06)
NVIDIA Update 1.11.3 (Version: 1.11.3)
NVIDIA Update Components (Version: 1.11.3)
OpenOffice.org 3.3 (x32 Version: 3.3.9567)
Pando Media Booster (x32 Version: 2.6.0.8)
PDF Complete Special Edition (x32 Version: 4.0.9)
Penguins! (x32 Version: 2.2.0.95)
PhotoNow! (x32 Version: 1.1.7717)
PictureMover (x32 Version: 3.5.0.33)
Plants vs. Zombies (x32 Version: 2.2.0.95)
PlayReady PC Runtime amd64 (Version: 1.3.0)
Polar Bowler (x32 Version: 2.2.0.95)
Port Royale 3 (x32 Version: 1.0.0.0)
Power2Go (x32 Version: 6.1.4329)
PowerDirector (x32 Version: 8.0.3129)
Prism Videodatei-Konverter (x32)
Raccolta foto di Windows Live (x32 Version: 15.4.3502.0922)
Ralink RT2860 Wireless LAN Card (x32)
Readiris Pro 10 (x32)
RealDownloader (x32 Version: 1.3.0)
RealNetworks - Microsoft Visual C++ 2008 Runtime (x32 Version: 9.0)
RealNetworks - Microsoft Visual C++ 2010 Runtime (x32 Version: 10.0)
RealPlayer (x32 Version: 16.0.0)
RealUpgrade 1.1 (x32 Version: 1.1.0)
Recovery Manager (x32 Version: 5.5.3219)
Retrovirus (x32)
Samsung CLX-3170 Series (x32)
Search Protect (x32 Version: 2.7.23.2)
SiteRanker (x32 Version: 1.0.0.134)
Skype Click to Call (x32 Version: 5.9.9216)
Skype™ 6.6 (x32 Version: 6.6.106)
Slingo Deluxe (x32 Version: 2.2.0.95)
SmarThru 4 (x32)
SmarThru PC Fax (x32)
Smileys We Love Toolbar for IE (x32 Version: 3.0.17)
Space 3000 ScreenSaver (x32 Version: 6.00)
Spybot - Search & Destroy (x32 Version: 1.6.2)
StarCraft II (x32 Version: 2.0.11.26825)
Steam (x32 Version: 1.0.0.0)
Stronghold 3 (x32)
Stronghold Crusader (x32)
Switch Audiodatei-Konverter (x32)
TeamSpeak 3 Client (x32 Version: 3.0.11)
The Elder Scrolls V: Skyrim (x32)
TheLucentCalculator 2.0 (x32)
TreeSize Free V2.7 (x32 Version: 2.7)
TubeSaver-15 (x32 Version: 1.28.153.5)
Ultimate ZIP Cracker II, evaluation version (x32)
Unlocker 1.9.1-x64 (Version: 1.9.1)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (x32 Version: 3)
Update for Microsoft .NET Framework 4 Extended (KB2468871) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2600217) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2836939) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2836939v3) (x32 Version: 3)
Update Installer for WildTangent Games App (x32)
UpdateChecker (x32)
Virtual Villagers - The Secret City (x32 Version: 2.2.0.95)
VLC media player 2.0.2 (x32 Version: 2.0.2)
Vuze (x32 Version: 4.7)
Warcraft III (x32)
Warcraft III: All Products (HKCU)
Warlock - Master of the Arcane (c) Paradox Interactive version 1 (x32 Version: 1)
Warlock - Master of the Arcane (x32)
Wedding Dash (x32 Version: 2.2.0.95)
WildTangent Games App (HP Games) (x32 Version: 4.0.5.36)
Windows Live (x32 Version: 15.4.3502.0922)
Windows Live Communications Platform (x32 Version: 15.4.3502.0922)
Windows Live Essentials (x32 Version: 15.4.3502.0922)
Windows Live Fotogalerie (x32 Version: 15.4.3502.0922)
Windows Live ID Sign-in Assistant (Version: 7.250.4225.0)
Windows Live Installer (x32 Version: 15.4.3502.0922)
Windows Live Language Selector (Version: 15.4.3502.0922)
Windows Live Mail (x32 Version: 15.4.3502.0922)
Windows Live Messenger (x32 Version: 15.4.3502.0922)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Movie Maker (x32 Version: 15.4.3502.0922)
Windows Live Photo Common (x32 Version: 15.4.3502.0922)
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922)
Windows Live PIMT Platform (x32 Version: 15.4.3502.0922)
Windows Live SOXE (x32 Version: 15.4.3502.0922)
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922)
Windows Live UX Platform (x32 Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (x32 Version: 15.4.3502.0922)
Windows Live Writer (x32 Version: 15.4.3502.0922)
Windows Live Writer Resources (x32 Version: 15.4.3502.0922)
WinPcap 4.1.2 (x32 Version: 4.1.0.2001)
WinRAR 4.01 (64-Bit) (Version: 4.01.0)
WinZip 16.0 (Version: 16.0.9715)
ZiggyTV (x32)
ZiggyTV Toolbar (x32 Version: 12.5.1.1548)
Zinio Reader 4 (x32 Version: 4.0.3184)
Zip Password Recovery Master (x32)
Zuma Deluxe (x32 Version: 2.2.0.95)
==================== Restore Points =========================
21-10-2013 19:23:49 Geplanter Prüfpunkt
==================== Hosts content: ==========================
2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {09384A19-7663-46D1-B84B-46F808CD36ED} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: {10D9C837-A976-4925-85C9-CD2A2586A81A} - System32\Tasks\TubeSaver-15-chromeinstaller => C:\Program Files (x86)\TubeSaver-15\TubeSaver-15-chromeinstaller.exe [2013-10-17] (PassWizard)
Task: {18B18730-7829-493C-979C-5A21D2CEA9F3} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-631188323-2636332566-608836814-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2012-11-30] (RealNetworks, Inc.)
Task: {2C0E66C1-8606-4BDA-A6C8-08F21ACC8794} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-10-14] (Adobe Systems Incorporated)
Task: {425B4E0F-263F-4772-97F4-80F8DA7CBF5D} - System32\Tasks\TubeSaver-15-firefoxinstaller => C:\Program Files (x86)\TubeSaver-15\TubeSaver-15-firefoxinstaller.exe [2013-10-17] (PassWizard)
Task: {4E9E484D-FA47-44D8-87C0-2E8B40DE67C7} - System32\Tasks\TubeSaver-15-updater => C:\Program Files (x86)\TubeSaver-15\TubeSaver-15-updater.exe [2013-10-17] (PassWizard)
Task: {63B11ECB-379F-46B2-BFC4-4574EA8800E0} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-631188323-2636332566-608836814-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2012-11-30] (RealNetworks, Inc.)
Task: {7A7CE16B-6DCC-4149-A8A0-C9E978B2F062} - System32\Tasks\HPOSIAPP64 => C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\ModLEDKey.exe [2009-02-28] ()
Task: {7AF1A6B8-5BF4-4445-B58E-E847529F8831} - System32\Tasks\TubeSaver-15-enabler => C:\Program Files (x86)\TubeSaver-15\TubeSaver-15-enabler.exe [2013-10-17] (PassWizard)
Task: {7AF406D3-D5B5-470C-9E43-27910801CC43} - System32\Tasks\TubeSaver-15-codedownloader => C:\Program Files (x86)\TubeSaver-15\TubeSaver-15-codedownloader.exe [2013-10-17] (PassWizard)
Task: {8106D522-5B93-4803-A473-B80ED4BFA60E} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: {8112FFD3-E005-4EF1-B0FC-70E9EDE47AF7} - System32\Tasks\Microsoft_Hardware_Launch_IPoint_exe => c:\Program Files\Microsoft IntelliPoint\IPoint.exe [2011-08-01] (Microsoft Corporation)
Task: {9531C98B-222A-469F-89A9-E16A6277B389} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-631188323-2636332566-608836814-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2012-11-30] (RealNetworks, Inc.)
Task: {9A8A50F7-1BB7-433D-BDA9-E5246D6AC209} - System32\Tasks\Registration => C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [2010-09-27] ()
Task: {A379AB7C-7C0A-4A65-BB3B-73649149F6F8} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2012-09-05] (Hewlett-Packard Company)
Task: {B6919476-4D96-46CC-B833-E148A52231A3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-02-06] (Google Inc.)
Task: {BF6D0ADF-4BA2-482B-B8EA-960D6EF5439D} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {E480FC19-43CB-4AAF-891E-85412B435C74} - System32\Tasks\ServicePlan => C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [2010-09-27] ()
Task: {E543713A-6DC9-417E-B294-C7EF2B670FDC} - System32\Tasks\HPCeeScheduleForSilvan Borghi => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-14] (Hewlett-Packard)
Task: {E84BF4F7-0508-4FBF-A246-1EAAE2070EAC} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-631188323-2636332566-608836814-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2012-11-30] (RealNetworks, Inc.)
Task: {EC4A85BC-3BDE-4A78-BC46-888E09162F6A} - System32\Tasks\Microsoft\Windows\MUI\Lpksetup => C:\Windows\System32\lpksetup.exe [2010-11-20] (Microsoft Corporation)
Task: {F7829A28-5A92-4176-93E4-19E7D4C78CC7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-02-06] (Google Inc.)
Task: {F7E57D82-D0F4-4FBD-85E9-7CEDB7CE1B13} - System32\Tasks\Express Files Updater => C:\Program Files (x86)\ExpressFiles\EFupdater.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\HPCeeScheduleForSilvan Borghi.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\Windows\Tasks\TubeSaver-15-chromeinstaller.job => C:\Program Files (x86)\TubeSaver-15\TubeSaver-15-chromeinstaller.exe
Task: C:\Windows\Tasks\TubeSaver-15-codedownloader.job => C:\Program Files (x86)\TubeSaver-15\TubeSaver-15-codedownloader.exe
Task: C:\Windows\Tasks\TubeSaver-15-enabler.job => C:\Program Files (x86)\TubeSaver-15\TubeSaver-15-enabler.exe
Task: C:\Windows\Tasks\TubeSaver-15-firefoxinstaller.job => C:\Program Files (x86)\TubeSaver-15\TubeSaver-15-firefoxinstaller.exe
Task: C:\Windows\Tasks\TubeSaver-15-updater.job => C:\Program Files (x86)\TubeSaver-15\TubeSaver-15-updater.exe
==================== Loaded Modules (whitelisted) =============
2013-08-12 10:30 - 2013-08-05 20:18 - 00394824 _____ () C:\Program Files (x86)\Avira\AntiVir Desktop\sqlite3.dll
2011-11-29 16:35 - 2008-06-26 04:45 - 00155648 _____ () C:\Windows\twain_32\Samsung\CLX3170\IMFilter.dll
2011-11-29 16:35 - 2008-06-26 04:46 - 01384520 _____ () C:\Windows\twain_32\Samsung\CLX3170\ssole.dll
2011-11-29 16:35 - 2008-06-26 04:45 - 00367104 _____ () C:\Windows\twain_32\Samsung\CLX3170\NetModule.dll
2011-05-17 19:36 - 2009-02-20 02:22 - 00028672 _____ () C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\WMINPUT.DLL
2013-09-02 14:43 - 2013-09-02 14:43 - 02244504 _____ () C:\Program Files (x86)\Mozilla Thunderbird\mozjs.dll
2013-09-02 14:43 - 2013-09-02 14:43 - 00158104 _____ () C:\Program Files (x86)\Mozilla Thunderbird\NSLDAP32V60.dll
2013-09-02 14:43 - 2013-09-02 14:43 - 00022424 _____ () C:\Program Files (x86)\Mozilla Thunderbird\NSLDAPPR32V60.dll
2013-09-19 19:40 - 2013-09-19 19:40 - 03279768 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
2013-10-19 17:41 - 2013-10-19 17:41 - 00124928 _____ () C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.190\deploy\RiotLauncher.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
==================== Faulty Device Manager Devices =============
Name: 802.11n Wireless LAN Card
Description: 802.11n Wireless LAN Card
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Ralink Technology, Corp.
Service: netr28x
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
==================== Event log errors: =========================
Application errors:
==================
Error: (10/23/2013 07:58:40 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: avnotify.exe, Version: 13.6.20.2100, Zeitstempel: 0x51e6b921
Name des fehlerhaften Moduls: avnotify.exe, Version: 13.6.20.2100, Zeitstempel: 0x51e6b921
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00001487
ID des fehlerhaften Prozesses: 0x14e4
Startzeit der fehlerhaften Anwendung: 0xavnotify.exe0
Pfad der fehlerhaften Anwendung: avnotify.exe1
Pfad des fehlerhaften Moduls: avnotify.exe2
Berichtskennung: avnotify.exe3
Error: (10/23/2013 01:55:46 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: avnotify.exe, Version: 13.6.20.2100, Zeitstempel: 0x51e6b921
Name des fehlerhaften Moduls: avnotify.exe, Version: 13.6.20.2100, Zeitstempel: 0x51e6b921
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00001487
ID des fehlerhaften Prozesses: 0x14b8
Startzeit der fehlerhaften Anwendung: 0xavnotify.exe0
Pfad der fehlerhaften Anwendung: avnotify.exe1
Pfad des fehlerhaften Moduls: avnotify.exe2
Berichtskennung: avnotify.exe3
Error: (10/23/2013 06:45:54 AM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: avnotify.exe, Version: 13.6.20.2100, Zeitstempel: 0x51e6b921
Name des fehlerhaften Moduls: avnotify.exe, Version: 13.6.20.2100, Zeitstempel: 0x51e6b921
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00001487
ID des fehlerhaften Prozesses: 0x145c
Startzeit der fehlerhaften Anwendung: 0xavnotify.exe0
Pfad der fehlerhaften Anwendung: avnotify.exe1
Pfad des fehlerhaften Moduls: avnotify.exe2
Berichtskennung: avnotify.exe3
Error: (10/22/2013 06:17:28 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: Felder.exe, Version: 0.0.0.0, Zeitstempel: 0x5266a517
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18247, Zeitstempel: 0x521eaf24
Ausnahmecode: 0xc00000fd
Fehleroffset: 0x000000000005366d
ID des fehlerhaften Prozesses: 0x1b58
Startzeit der fehlerhaften Anwendung: 0xFelder.exe0
Pfad der fehlerhaften Anwendung: Felder.exe1
Pfad des fehlerhaften Moduls: Felder.exe2
Berichtskennung: Felder.exe3
Error: (10/22/2013 06:16:35 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: Felder.exe, Version: 0.0.0.0, Zeitstempel: 0x5266a4e3
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18247, Zeitstempel: 0x521eaf24
Ausnahmecode: 0xc00000fd
Fehleroffset: 0x000000000005366d
ID des fehlerhaften Prozesses: 0x624
Startzeit der fehlerhaften Anwendung: 0xFelder.exe0
Pfad der fehlerhaften Anwendung: Felder.exe1
Pfad des fehlerhaften Moduls: Felder.exe2
Berichtskennung: Felder.exe3
Error: (10/22/2013 06:16:24 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: Felder.exe, Version: 0.0.0.0, Zeitstempel: 0x5266a4d7
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18247, Zeitstempel: 0x521eaf24
Ausnahmecode: 0xc00000fd
Fehleroffset: 0x000000000005366d
ID des fehlerhaften Prozesses: 0x1618
Startzeit der fehlerhaften Anwendung: 0xFelder.exe0
Pfad der fehlerhaften Anwendung: Felder.exe1
Pfad des fehlerhaften Moduls: Felder.exe2
Berichtskennung: Felder.exe3
Error: (10/22/2013 06:16:03 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: Felder.exe, Version: 0.0.0.0, Zeitstempel: 0x5266a4c2
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18247, Zeitstempel: 0x521eaf24
Ausnahmecode: 0xc00000fd
Fehleroffset: 0x000000000005366d
ID des fehlerhaften Prozesses: 0xa30
Startzeit der fehlerhaften Anwendung: 0xFelder.exe0
Pfad der fehlerhaften Anwendung: Felder.exe1
Pfad des fehlerhaften Moduls: Felder.exe2
Berichtskennung: Felder.exe3
Error: (10/22/2013 06:15:52 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: Felder.exe, Version: 0.0.0.0, Zeitstempel: 0x5266a4b8
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18247, Zeitstempel: 0x521eaf24
Ausnahmecode: 0xc00000fd
Fehleroffset: 0x000000000005366d
ID des fehlerhaften Prozesses: 0x504
Startzeit der fehlerhaften Anwendung: 0xFelder.exe0
Pfad der fehlerhaften Anwendung: Felder.exe1
Pfad des fehlerhaften Moduls: Felder.exe2
Berichtskennung: Felder.exe3
Error: (10/22/2013 06:15:40 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: Felder.exe, Version: 0.0.0.0, Zeitstempel: 0x5266a4ab
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18247, Zeitstempel: 0x521eaf24
Ausnahmecode: 0xc00000fd
Fehleroffset: 0x000000000005366d
ID des fehlerhaften Prozesses: 0x1138
Startzeit der fehlerhaften Anwendung: 0xFelder.exe0
Pfad der fehlerhaften Anwendung: Felder.exe1
Pfad des fehlerhaften Moduls: Felder.exe2
Berichtskennung: Felder.exe3
Error: (10/22/2013 06:15:34 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: Felder.exe, Version: 0.0.0.0, Zeitstempel: 0x5266a4a5
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18247, Zeitstempel: 0x521eaf24
Ausnahmecode: 0xc00000fd
Fehleroffset: 0x000000000005366d
ID des fehlerhaften Prozesses: 0x1a38
Startzeit der fehlerhaften Anwendung: 0xFelder.exe0
Pfad der fehlerhaften Anwendung: Felder.exe1
Pfad des fehlerhaften Moduls: Felder.exe2
Berichtskennung: Felder.exe3
System errors:
=============
Error: (10/23/2013 08:00:47 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1069
Error: (10/23/2013 08:00:47 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden:
%%1330
Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC).
Error: (10/23/2013 07:57:42 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "DgiVecp" wurde aufgrund folgenden Fehlers nicht gestartet:
%%20
Error: (10/23/2013 04:14:37 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1069
Error: (10/23/2013 04:14:37 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden:
%%1330
Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC).
Error: (10/23/2013 04:11:45 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "DgiVecp" wurde aufgrund folgenden Fehlers nicht gestartet:
%%20
Error: (10/23/2013 01:57:55 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1069
Error: (10/23/2013 01:57:55 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden:
%%1330
Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC).
Error: (10/23/2013 01:55:42 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Avira Browser-Schutz" wurde mit folgendem dienstspezifischem Fehler beendet: %%1.
Error: (10/23/2013 01:54:57 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "DgiVecp" wurde aufgrund folgenden Fehlers nicht gestartet:
%%20
Microsoft Office Sessions:
=========================
Error: (10/23/2013 07:58:40 PM) (Source: Application Error)(User: )
Description: avnotify.exe13.6.20.210051e6b921avnotify.exe13.6.20.210051e6b921c00000050000148714e401ced0197885d36cC:\Program Files (x86)\Avira\AntiVir Desktop\avnotify.exeC:\Program Files (x86)\Avira\AntiVir Desktop\avnotify.exebf5c8a58-3c0c-11e3-a9d8-e06995829a9f
Error: (10/23/2013 01:55:46 PM) (Source: Application Error)(User: )
Description: avnotify.exe13.6.20.210051e6b921avnotify.exe13.6.20.210051e6b921c00000050000148714b801cecfe6c62e92f9C:\Program Files (x86)\Avira\AntiVir Desktop\avnotify.exeC:\Program Files (x86)\Avira\AntiVir Desktop\avnotify.exe0cc9f343-3bda-11e3-a926-e06995829a9f
Error: (10/23/2013 06:45:54 AM) (Source: Application Error)(User: )
Description: avnotify.exe13.6.20.210051e6b921avnotify.exe13.6.20.210051e6b921c000000500001487145c01cecfaab90d1568C:\Program Files (x86)\Avira\AntiVir Desktop\avnotify.exeC:\Program Files (x86)\Avira\AntiVir Desktop\avnotify.exeffd81ad2-3b9d-11e3-9798-e06995829a9f
Error: (10/22/2013 06:17:28 PM) (Source: Application Error)(User: )
Description: Felder.exe0.0.0.05266a517ntdll.dll6.1.7601.18247521eaf24c00000fd000000000005366d1b5801cecf4233b88ad6C:\Users\Silvan Borghi\Documents\c++ Progs\Felder.exeC:\Windows\SYSTEM32\ntdll.dll716e2631-3b35-11e3-8231-e06995829a9f
Error: (10/22/2013 06:16:35 PM) (Source: Application Error)(User: )
Description: Felder.exe0.0.0.05266a4e3ntdll.dll6.1.7601.18247521eaf24c00000fd000000000005366d62401cecf42148183e4C:\Users\Silvan Borghi\Documents\c++ Progs\Felder.exeC:\Windows\SYSTEM32\ntdll.dll5236f82e-3b35-11e3-8231-e06995829a9f
Error: (10/22/2013 06:16:24 PM) (Source: Application Error)(User: )
Description: Felder.exe0.0.0.05266a4d7ntdll.dll6.1.7601.18247521eaf24c00000fd000000000005366d161801cecf420d778071C:\Users\Silvan Borghi\Documents\c++ Progs\Felder.exeC:\Windows\SYSTEM32\ntdll.dll4b2d1bcc-3b35-11e3-8231-e06995829a9f
Error: (10/22/2013 06:16:03 PM) (Source: Application Error)(User: )
Description: Felder.exe0.0.0.05266a4c2ntdll.dll6.1.7601.18247521eaf24c00000fd000000000005366da3001cecf420105bdfcC:\Users\Silvan Borghi\Documents\c++ Progs\Felder.exeC:\Windows\SYSTEM32\ntdll.dll3ebba778-3b35-11e3-8231-e06995829a9f
Error: (10/22/2013 06:15:52 PM) (Source: Application Error)(User: )
Description: Felder.exe0.0.0.05266a4b8ntdll.dll6.1.7601.18247521eaf24c00000fd000000000005366d50401cecf41fad6182bC:\Users\Silvan Borghi\Documents\c++ Progs\Felder.exeC:\Windows\SYSTEM32\ntdll.dll388bb386-3b35-11e3-8231-e06995829a9f
Error: (10/22/2013 06:15:40 PM) (Source: Application Error)(User: )
Description: Felder.exe0.0.0.05266a4abntdll.dll6.1.7601.18247521eaf24c00000fd000000000005366d113801cecf41f322d9eeC:\Users\Silvan Borghi\Documents\c++ Progs\Felder.exeC:\Windows\SYSTEM32\ntdll.dll30d87549-3b35-11e3-8231-e06995829a9f
Error: (10/22/2013 06:15:34 PM) (Source: Application Error)(User: )
Description: Felder.exe0.0.0.05266a4a5ntdll.dll6.1.7601.18247521eaf24c00000fd000000000005366d1a3801cecf41efbf56eaC:\Users\Silvan Borghi\Documents\c++ Progs\Felder.exeC:\Windows\SYSTEM32\ntdll.dll2d74f245-3b35-11e3-8231-e06995829a9f
CodeIntegrity Errors:
===================================
Date: 2012-02-19 13:42:26.144
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\atksgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2012-02-19 13:42:26.113
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\atksgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2012-02-19 13:42:25.926
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\lirsgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2012-02-19 13:42:25.895
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\lirsgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
==================== Memory info ===========================
Percentage of memory in use: 35%
Total physical RAM: 8174.53 MB
Available physical RAM: 5292.64 MB
Total Pagefile: 16347.24 MB
Available Pagefile: 13202.87 MB
Total Virtual: 8192 MB
Available Virtual: 8191.81 MB
==================== Drives ================================
Drive c: (OS) (Fixed) (Total:1847.05 GB) (Free:1542.52 GB) NTFS
Drive d: (HP_RECOVERY) (Fixed) (Total:15.87 GB) (Free:1.97 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive f: (SYSTEM) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==>[System with boot components (obtained from reading drive)]
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 1863 GB) (Disk ID: 0C5136EA)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=-215770726400) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=16 GB) - (Type=07 NTFS)
==================== End Of Log ============================ |