FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 05-12-2013
Ran by Tobi (administrator) on DERTOB on 05-12-2013 20:27:50
Running from C:\Users\Tobi\Downloads
Windows 8 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
(Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe
(Dritek System INC.) C:\Windows\RfBtnSvc64.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe
(Microsoft) C:\Program Files (x86)\Yontoo\Y2Desktop.Updater.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Yontoo LLC) C:\Users\Tobi\AppData\Roaming\Yontoo\YontooDesktop.exe
(Akamai Technologies, Inc.) C:\Users\Tobi\AppData\Local\Akamai\netsession_win.exe
(NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
(Akamai Technologies, Inc.) C:\Users\Tobi\AppData\Local\Akamai\netsession_win.exe
(CyberLink) C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
() C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe
() C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.193\deploy\LoLLauncher.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
() C:\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.59\deploy\LolClient.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Egis Technology Inc.) C:\Program Files\EgisTec IPS\PmmUpdate.exe
(Egis Technology Inc.) C:\Program Files\EgisTec IPS\EgisUpdate.exe
(Smart PC Solutions) C:\Program Files (x86)\PC Speed Maximizer\SPMSmartScan.exe
() C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
() C:\Program Files (x86)\Mobogenie\UpdateMoboGenie.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] ()
HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12503184 2012-06-11] (Realtek Semiconductor)
HKLM\...\Run: [ETDCtrl] - C:\Program Files\Elantech\ETDCtrl.exe [2864016 2012-08-10] (ELAN Microelectronics Corp.)
HKLM\...\Run: [BCSSync] - C:\Program Files\Microsoft Office\Office14\BCSSync.exe [108144 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Runonce: [Del953375] - cmd.exe /Q /D /c del "C:\Users\Tobi\AppData\Local\Temp\0.del" [x]
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKCU\...\Run: [Pando Media Booster] - C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe [3093624 2012-12-22] ()
HKCU\...\Run: [Yontoo Desktop] - C:\Users\Tobi\AppData\Roaming\Yontoo\YontooDesktop.exe [42784 2013-03-23] (Yontoo LLC)
HKCU\...\Run: [Akamai NetSession Interface] - C:\Users\Tobi\AppData\Local\Akamai\netsession_win.exe [4489472 2013-06-05] (Akamai Technologies, Inc.)
HKCU\...\Run: [PC Speed Maximizer] - C:\Program Files (x86)\PC Speed Maximizer\SPMLauncher.exe [134456 2013-03-09] (Smart PC Solutions)
HKCU\...\Runonce: [Del953375] - cmd.exe /Q /D /c del "C:\Users\Tobi\AppData\Local\Temp\0.del"
MountPoints2: {ca1b9b9e-4f7b-11e2-be7d-b888e357fb76} - "G:\autorun.exe"
HKLM-x32\...\Run: [BakupManagerTray] - C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe [533056 2012-07-31] (NTI Corporation)
HKLM-x32\...\Run: [LManager] - [x]
HKLM-x32\...\Run: [Norton Online Backup] - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [2995904 2012-07-11] (Symantec Corporation)
HKLM-x32\...\Run: [SDTray] - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [5624784 2013-07-25] (Safer-Networking Ltd.)
HKLM-x32\...\Run: [mobilegeni daemon] - C:\Program Files (x86)\Mobogenie\DaemonProcess.exe [738496 2013-10-18] ()
HKU\Default\...\RunOnce: [RegAutoPlay] - C:\Program Files (x86)\Acer\clear.fi Media\RegAutoplay.exe [1845392 2012-07-20] (Acer Incorporated)
HKU\Default User\...\RunOnce: [RegAutoPlay] - C:\Program Files (x86)\Acer\clear.fi Media\RegAutoplay.exe [1845392 2012-07-20] (Acer Incorporated)
AppInit_DLLs: C:\Windows\System32\nvinitx.dll [247144 2012-10-08] (NVIDIA Corporation)
AppInit_DLLs-x32: c:\windows\syswow64\nvinit.dll [202600 2012-10-08] (NVIDIA Corporation)
BootExecute: autocheck autochk * sdnclean64.exe
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://start.mysearchdial.com/?f=1&a=dsites&cd=2XzuyEtN2Y1L1Qzu0Bzzzzzz0EtAyDyB0F0ByByCtB0DyC0CtN0D0Tzu0SyBtDyDtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R&cr=1557545925&ir=
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer13.msn.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.nationzoom.com/web/?type=ds&ts=1386168576&from=tugs&uid=WDCXWD5000LPVT-22G33T0_WD-WX81C324430844308&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.nationzoom.com/?type=hp&ts=1386168576&from=tugs&uid=WDCXWD5000LPVT-22G33T0_WD-WX81C324430844308
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://start.mysearchdial.com/?f=1&a=dsites&cd=2XzuyEtN2Y1L1Qzu0Bzzzzzz0EtAyDyB0F0ByByCtB0DyC0CtN0D0Tzu0SyBtDyDtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R&cr=1557545925&ir=
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.nationzoom.com/web/?type=ds&ts=1386168576&from=tugs&uid=WDCXWD5000LPVT-22G33T0_WD-WX81C324430844308&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://start.mysearchdial.com/?f=1&a=dsites&cd=2XzuyEtN2Y1L1Qzu0Bzzzzzz0EtAyDyB0F0ByByCtB0DyC0CtN0D0Tzu0SyBtDyDtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R&cr=1557545925&ir=
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.nationzoom.com/web/?type=ds&ts=1386168576&from=tugs&uid=WDCXWD5000LPVT-22G33T0_WD-WX81C324430844308&q={searchTerms}
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.nationzoom.com/web/?type=ds&ts=1386168576&from=tugs&uid=WDCXWD5000LPVT-22G33T0_WD-WX81C324430844308&q={searchTerms}
SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.nationzoom.com/web/?type=ds&ts=1386168576&from=tugs&uid=WDCXWD5000LPVT-22G33T0_WD-WX81C324430844308&q={searchTerms}
SearchScopes: HKLM - {5A7ADDBC-7284-4C05-8669-B0BA95BDB48F} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS
SearchScopes: HKLM - {77AA745B-F4F8-45DA-9B14-61D2D95054C8} URL =
SearchScopes: HKLM-x32 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - {5A7ADDBC-7284-4C05-8669-B0BA95BDB48F} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS
SearchScopes: HKCU - DefaultScope {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=dsites&cd=2XzuyEtN2Y1L1Qzu0Bzzzzzz0EtAyDyB0F0ByByCtB0DyC0CtN0D0Tzu0SyBtDyDtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R&cr=1557545925&ir=
SearchScopes: HKCU - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=dsites&cd=2XzuyEtN2Y1L1Qzu0Bzzzzzz0EtAyDyB0F0ByByCtB0DyC0CtN0D0Tzu0SyBtDyDtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R&cr=1557545925&ir=
SearchScopes: HKCU - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKCU - {77AA745B-F4F8-45DA-9B14-61D2D95054C8} URL = hxxp://search.conduit.com/Results.aspx?ctid=CT3317742&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=2&UP=SP2D55E9B9-C8AC-48B0-A245-045147EE8FC5&q={searchTerms}&SSPV=
BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\office15\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: mysearchdial Helper Object - {EF5625A3-37AB-4BDB-9875-2A3D91CD0DFD} - C:\Program Files (x86)\Mysearchdial\1.8.21.0\bh\mysearchdial.dll (Ironsource Israel (2011) LTD)
BHO-x32: Yontoo - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files (x86)\Yontoo\YontooIEClient.dll (Yontoo LLC)
Toolbar: HKLM-x32 - mysearchdial Toolbar - {3004627E-F8E9-4E8B-909D-316753CBA923} - C:\Program Files (x86)\Mysearchdial\1.8.21.0\mysearchdialTlbr.dll (Ironsource Israel (2011) LTD)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\office15\MSOSB.DLL (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
FireFox:
========
FF ProfilePath: C:\Users\Tobi\AppData\Roaming\Mozilla\Firefox\Profiles\g4qcfklw.default
FF user.js: detected! => C:\Users\Tobi\AppData\Roaming\Mozilla\Firefox\Profiles\g4qcfklw.default\user.js
FF Homepage: www.google.de
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF SearchPlugin: C:\Users\Tobi\AppData\Roaming\Mozilla\Firefox\Profiles\g4qcfklw.default\searchplugins\Mysearchdial.xml
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF HKCU\...\Firefox\Extensions: [{8e7d6746-77a0-402a-b4ab-a6f73a41db80}] - C:\Program Files (x86)\Re-markit\136.xpi
Chrome:
=======
Error reading preferences. Please check "preferences" file for possible corruption. <======= ATTENTION
==================== Services (Whitelisted) =================
R2 CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2415760 2012-07-27] (Acer Incorporated)
S3 DeviceFastLaneService; C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe [466064 2012-07-31] (Acer Incorporated)
R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [659600 2012-07-31] (Acer Incorporated)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-18] (Intel Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [3939008 2012-07-11] (Symantec Corporation)
S3 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [259136 2012-07-31] (NTI Corporation)
R2 OfficeSvc; C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [1907896 2013-09-17] (Microsoft Corporation)
R2 RfButtonDriverService; C:\Windows\RfBtnSvc64.exe [93296 2012-08-20] (Dritek System INC.)
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [3921880 2013-10-15] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1042272 2013-09-20] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171416 2013-09-13] (Safer-Networking Ltd.)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16048 2013-07-02] (Microsoft Corporation)
R2 Yontoo Desktop Updater; C:\Program Files (x86)\Yontoo\Y2Desktop.Updater.exe [23552 2013-03-23] (Microsoft)
==================== Drivers (Whitelisted) ====================
R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [5139968 2012-06-02] (Broadcom Corporation)
R1 ccSet_NARA; C:\Windows\system32\drivers\NARAx64\0401000.00A\ccSetx64.sys [168608 2012-05-26] (Symantec Corporation)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R3 Ps2Kb2Hid; C:\Windows\System32\drivers\aPs2Kb2Hid.sys [26736 2012-08-20] (Dritek System Inc.)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-12-05 20:27 - 2013-12-05 20:28 - 00016670 _____ C:\Users\Tobi\Downloads\FRST.txt
2013-12-05 20:27 - 2013-12-05 20:27 - 00000000 ____D C:\FRST
2013-12-05 20:25 - 2013-12-05 20:26 - 01925140 _____ (Farbar) C:\Users\Tobi\Downloads\FRST64.exe
2013-12-05 20:12 - 2013-12-05 20:12 - 00000000 ____D C:\Users\Tobi\Documents\PC Speed Maximizer
2013-12-05 20:12 - 2013-12-05 20:12 - 00000000 ____D C:\Users\Tobi\AppData\Roaming\PC Speed Maximizer
2013-12-05 20:10 - 2013-12-05 20:10 - 00000000 ____D C:\Users\wangzhisong\AppData\Local\Mobogenie
2013-12-05 20:10 - 2013-12-05 20:10 - 00000000 ____D C:\Users\wangzhisong
2013-12-05 20:09 - 2013-12-05 20:25 - 00000000 ____D C:\Program Files (x86)\Mobogenie
2013-12-05 20:09 - 2013-12-05 20:09 - 00001027 _____ C:\Users\Tobi\Desktop\Mobogenie.lnk
2013-12-05 20:09 - 2013-12-05 20:09 - 00000000 ____D C:\Users\Tobi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mobogenie
2013-12-05 20:09 - 2013-12-05 20:09 - 00000000 ____D C:\Users\Tobi\AppData\Roaming\0D0S1L2Z1P1B0T1P1B2Z
2013-12-05 20:07 - 2013-12-05 20:07 - 00001125 _____ C:\Users\Tobi\Desktop\PC Speed Maximizer.lnk
2013-12-05 20:07 - 2013-12-05 20:07 - 00001118 _____ C:\Users\Public\Desktop\Open It!.lnk
2013-12-05 20:07 - 2013-12-05 20:07 - 00000000 ____D C:\Program Files (x86)\PC Speed Maximizer
2013-12-05 20:07 - 2013-12-05 20:07 - 00000000 ____D C:\Program Files (x86)\OpenIt
2013-12-05 20:06 - 2013-12-05 20:06 - 00002640 _____ C:\Windows\System32\Tasks\MySearchDial
2013-12-05 20:06 - 2013-12-05 20:06 - 00000386 _____ C:\Users\Tobi\Desktop\MySearchDial.url
2013-12-05 20:06 - 2013-12-05 20:06 - 00000381 _____ C:\Users\Tobi\Desktop\FREE Games.url
2013-12-05 20:06 - 2013-12-05 20:06 - 00000302 _____ C:\Windows\Tasks\MySearchDial.job
2013-12-05 20:06 - 2013-12-05 20:06 - 00000000 ____D C:\Users\Tobi\AppData\Roaming\mysearchdial
2013-12-05 20:06 - 2013-12-05 20:06 - 00000000 ____D C:\Users\Tobi\AppData\Local\Google
2013-12-05 20:06 - 2013-12-05 20:06 - 00000000 ____D C:\Program Files (x86)\Mysearchdial
2013-12-05 20:04 - 2013-12-05 20:04 - 00664456 _____ ( ) C:\Users\Tobi\Downloads\ZipOpenerSetup(2).exe
2013-12-05 20:03 - 2013-12-05 20:03 - 00664456 _____ ( ) C:\Users\Tobi\Downloads\ZipOpenerSetup(1).exe
2013-12-05 20:02 - 2013-12-05 20:02 - 00664456 _____ ( ) C:\Users\Tobi\Downloads\ZipOpenerSetup.exe
2013-12-05 19:56 - 2013-12-05 20:17 - 00045498 _____ C:\Windows\WindowsUpdate.log
2013-12-05 19:50 - 2013-12-05 19:50 - 00004562 _____ C:\Windows\PFRO.log
2013-12-04 18:27 - 2013-12-04 18:27 - 00001155 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2013-12-04 18:27 - 2013-12-04 18:27 - 00000000 ____D C:\ProgramData\Mozilla
2013-12-04 18:27 - 2013-12-04 18:27 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-12-04 18:27 - 2013-12-04 18:27 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-12-04 18:21 - 2013-12-04 18:21 - 00000000 ____D C:\Users\Tobi\Qtrax
2013-12-04 18:20 - 2013-12-05 20:25 - 00000000 ____D C:\Users\Tobi\AppData\Local\Mobogenie
2013-12-04 18:20 - 2013-12-04 18:20 - 00000000 ____D C:\Users\Tobi\Documents\Mobogenie
2013-12-04 18:20 - 2013-12-04 18:20 - 00000000 ____D C:\Users\Tobi\AppData\Local\cache
2013-12-04 18:20 - 2013-12-04 18:20 - 00000000 _____ C:\Users\Tobi\daemonprocess.txt
2013-12-04 18:16 - 2013-12-04 18:30 - 00000000 ____D C:\Users\Tobi\AppData\Roaming\Systweak
2013-12-04 18:16 - 2013-12-04 18:20 - 00000000 ____D C:\Users\Tobi\AppData\Roaming\Advanced System Protector
2013-12-04 18:16 - 2013-12-04 18:16 - 00003312 _____ C:\Windows\System32\Tasks\Advanced System Protector
2013-12-04 18:16 - 2013-07-11 13:49 - 00020312 _____ (Systweak Inc., (www.systweak.com)) C:\Windows\system32\roboot64.exe
2013-12-04 16:38 - 2012-07-26 06:26 - 00000824 _____ C:\Windows\system32\Drivers\etc\hosts.20131204-163808.backup
2013-12-04 16:26 - 2013-12-04 16:33 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2013-12-04 16:26 - 2013-12-04 16:26 - 00001387 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2013-12-04 16:26 - 2013-12-04 16:26 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking
2013-12-04 16:26 - 2013-12-04 16:26 - 00000000 ____D C:\Users\Tobi\AppData\Roaming\Malwarebytes
2013-12-04 16:26 - 2013-12-04 16:26 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
2013-12-04 16:26 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe
2013-12-04 16:24 - 2013-12-04 16:24 - 00001117 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-12-04 16:24 - 2013-12-04 16:24 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-12-04 16:24 - 2013-12-04 16:24 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-12-04 16:24 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2013-12-04 15:57 - 2013-12-04 15:57 - 00000463 _____ C:\Users\Tobi\AppData\Roaming\Microsoft\Windows\Start Menu\Google.website
2013-12-04 15:55 - 2013-12-04 17:54 - 00000000 ____D C:\Program Files (x86)\MyPC Backup
2013-12-04 15:53 - 2013-12-04 17:49 - 00001927 _____ C:\Users\Tobi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lollipop.lnk
2013-12-04 15:51 - 2013-12-04 15:51 - 00000000 ____D C:\Users\Tobi\AppData\Roaming\Optimizer Pro
2013-12-04 15:50 - 2013-12-04 17:50 - 00000000 ____D C:\ProgramData\WPM
2013-12-02 17:36 - 2013-12-02 17:36 - 00002586 ____N C:\Users\Public\Desktop\WildTangent Games App - acer.lnk
2013-12-02 17:35 - 2013-12-02 17:35 - 00000000 ____D C:\Users\Tobi\AppData\Roaming\WildTangent
2013-11-24 18:46 - 2013-11-24 18:50 - 17856436 _____ (YGOPro DevPro Online ) C:\Users\Tobi\Downloads\SetupDevPro1.9.7r2new.exe.jqwc31e.partial
2013-11-16 16:20 - 2013-11-16 16:20 - 00454064 _____ C:\Windows\system32\FNTCACHE.DAT
2013-11-14 22:32 - 2013-10-10 12:53 - 00096600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys
2013-11-14 22:32 - 2013-10-10 10:21 - 01160192 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2013-11-14 22:32 - 2013-10-10 10:20 - 00723968 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2013-11-14 22:32 - 2013-10-03 00:25 - 01300992 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2013-11-14 22:32 - 2013-10-01 23:22 - 01022976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2013-11-14 22:32 - 2013-09-14 02:15 - 00059416 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2013-11-14 22:32 - 2013-09-13 23:36 - 00628736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2013-11-14 22:32 - 2013-09-13 23:36 - 00247296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ubpm.dll
2013-11-14 22:32 - 2013-09-13 23:36 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2013-11-14 22:32 - 2013-09-13 23:36 - 00084992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2013-11-14 22:32 - 2013-09-13 23:36 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2013-11-14 22:32 - 2013-09-13 23:34 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2013-11-14 22:32 - 2013-09-13 23:33 - 03279360 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2013-11-14 22:32 - 2013-09-13 23:33 - 01622016 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2013-11-14 22:32 - 2013-09-13 23:33 - 00773120 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2013-11-14 22:32 - 2013-09-13 23:33 - 00328192 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2013-11-14 22:32 - 2013-09-13 23:33 - 00252928 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll
2013-11-14 22:32 - 2013-09-13 23:33 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll
2013-11-14 22:32 - 2013-09-13 23:33 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2013-11-14 22:32 - 2013-09-13 23:33 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2013-11-14 22:32 - 2013-09-04 04:11 - 00576512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2013-11-14 22:32 - 2013-08-30 06:43 - 00061784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\crashdmp.sys
2013-11-14 22:32 - 2013-08-30 06:20 - 01173504 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll
2013-11-14 22:32 - 2013-08-30 00:48 - 00914432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll
2013-11-14 22:32 - 2013-08-21 07:39 - 00465240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2013-11-14 22:32 - 2013-08-10 07:30 - 00151896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tpm.sys
2013-11-14 22:32 - 2013-08-10 06:21 - 00817152 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2013-11-14 22:32 - 2013-08-10 04:58 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2013-11-14 22:32 - 2013-07-25 00:10 - 10799104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2013-11-14 22:32 - 2013-07-25 00:07 - 13661696 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2013-11-14 22:32 - 2013-07-12 02:38 - 00599040 _____ (Microsoft Corporation) C:\Windows\system32\WSDApi.dll
2013-11-14 22:32 - 2013-07-12 02:30 - 00485376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSDApi.dll
2013-11-14 22:31 - 2013-10-12 09:45 - 02241536 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-11-14 22:31 - 2013-10-12 09:45 - 01364992 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-11-14 22:31 - 2013-10-12 09:45 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-11-14 22:31 - 2013-10-12 09:43 - 19269632 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-11-14 22:31 - 2013-10-12 09:43 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-11-14 22:31 - 2013-10-12 09:43 - 03959808 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-11-14 22:31 - 2013-10-12 09:43 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-11-14 22:31 - 2013-10-12 09:43 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-11-14 22:31 - 2013-10-12 09:43 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-11-14 22:31 - 2013-10-12 08:03 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-11-14 22:31 - 2013-10-12 08:03 - 01138176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-11-14 22:31 - 2013-10-12 08:02 - 14355968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-11-14 22:31 - 2013-10-12 08:02 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-11-14 22:31 - 2013-10-12 08:02 - 02877952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-11-14 22:31 - 2013-10-12 08:02 - 02049024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-11-14 22:31 - 2013-10-12 08:02 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-11-14 22:31 - 2013-10-12 08:02 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-11-14 22:31 - 2013-10-02 00:37 - 01569280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2013-11-14 22:31 - 2013-10-02 00:26 - 01890816 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2013-11-14 22:31 - 2013-09-23 23:30 - 00419328 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2013-11-14 22:31 - 2013-09-23 23:30 - 00323072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2013-11-14 22:31 - 2013-08-23 08:22 - 02062848 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2013-11-14 22:31 - 2013-08-23 02:44 - 01711616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2013-11-14 22:29 - 2013-10-02 00:37 - 02035712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2013-11-14 22:29 - 2013-10-02 00:26 - 02304512 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2013-11-08 20:16 - 2012-11-21 01:22 - 698683724 _____ C:\Users\Tobi\Desktop\Heiter bis Tödlich-Hauptstadtrevier - S01E01 - Betrug macht Klug - by Videomann.avi
2013-11-07 22:36 - 2013-11-07 22:36 - 00000000 ____D C:\Users\Tobi\AppData\Roaming\NVIDIA
2013-11-07 19:39 - 2013-11-07 19:39 - 00000000 ____D C:\Program Files (x86)\Mumble
2013-11-07 19:33 - 2013-11-07 19:37 - 15657984 _____ C:\Users\Tobi\Desktop\mumble-1.2.4.msi
==================== One Month Modified Files and Folders =======
2013-12-05 20:28 - 2013-12-05 20:27 - 00016670 _____ C:\Users\Tobi\Downloads\FRST.txt
2013-12-05 20:28 - 2012-12-24 21:11 - 00000000 ____D C:\Users\Tobi\AppData\Roaming\Skype
2013-12-05 20:27 - 2013-12-05 20:27 - 00000000 ____D C:\FRST
2013-12-05 20:26 - 2013-12-05 20:25 - 01925140 _____ (Farbar) C:\Users\Tobi\Downloads\FRST64.exe
2013-12-05 20:25 - 2013-12-05 20:09 - 00000000 ____D C:\Program Files (x86)\Mobogenie
2013-12-05 20:25 - 2013-12-04 18:20 - 00000000 ____D C:\Users\Tobi\AppData\Local\Mobogenie
2013-12-05 20:23 - 2012-12-22 23:03 - 00000000 ____D C:\Users\Tobi\AppData\Local\PMB Files
2013-12-05 20:17 - 2013-12-05 19:56 - 00045498 _____ C:\Windows\WindowsUpdate.log
2013-12-05 20:12 - 2013-12-05 20:12 - 00000000 ____D C:\Users\Tobi\Documents\PC Speed Maximizer
2013-12-05 20:12 - 2013-12-05 20:12 - 00000000 ____D C:\Users\Tobi\AppData\Roaming\PC Speed Maximizer
2013-12-05 20:10 - 2013-12-05 20:10 - 00000000 ____D C:\Users\wangzhisong\AppData\Local\Mobogenie
2013-12-05 20:10 - 2013-12-05 20:10 - 00000000 ____D C:\Users\wangzhisong
2013-12-05 20:09 - 2013-12-05 20:09 - 00001027 _____ C:\Users\Tobi\Desktop\Mobogenie.lnk
2013-12-05 20:09 - 2013-12-05 20:09 - 00000000 ____D C:\Users\Tobi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mobogenie
2013-12-05 20:09 - 2013-12-05 20:09 - 00000000 ____D C:\Users\Tobi\AppData\Roaming\0D0S1L2Z1P1B0T1P1B2Z
2013-12-05 20:07 - 2013-12-05 20:07 - 00001125 _____ C:\Users\Tobi\Desktop\PC Speed Maximizer.lnk
2013-12-05 20:07 - 2013-12-05 20:07 - 00001118 _____ C:\Users\Public\Desktop\Open It!.lnk
2013-12-05 20:07 - 2013-12-05 20:07 - 00000000 ____D C:\Program Files (x86)\PC Speed Maximizer
2013-12-05 20:07 - 2013-12-05 20:07 - 00000000 ____D C:\Program Files (x86)\OpenIt
2013-12-05 20:06 - 2013-12-05 20:06 - 00002640 _____ C:\Windows\System32\Tasks\MySearchDial
2013-12-05 20:06 - 2013-12-05 20:06 - 00000386 _____ C:\Users\Tobi\Desktop\MySearchDial.url
2013-12-05 20:06 - 2013-12-05 20:06 - 00000381 _____ C:\Users\Tobi\Desktop\FREE Games.url
2013-12-05 20:06 - 2013-12-05 20:06 - 00000302 _____ C:\Windows\Tasks\MySearchDial.job
2013-12-05 20:06 - 2013-12-05 20:06 - 00000000 ____D C:\Users\Tobi\AppData\Roaming\mysearchdial
2013-12-05 20:06 - 2013-12-05 20:06 - 00000000 ____D C:\Users\Tobi\AppData\Local\Google
2013-12-05 20:06 - 2013-12-05 20:06 - 00000000 ____D C:\Program Files (x86)\Mysearchdial
2013-12-05 20:04 - 2013-12-05 20:04 - 00664456 _____ ( ) C:\Users\Tobi\Downloads\ZipOpenerSetup(2).exe
2013-12-05 20:03 - 2013-12-05 20:03 - 00664456 _____ ( ) C:\Users\Tobi\Downloads\ZipOpenerSetup(1).exe
2013-12-05 20:02 - 2013-12-05 20:02 - 00664456 _____ ( ) C:\Users\Tobi\Downloads\ZipOpenerSetup.exe
2013-12-05 20:00 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\system32\sru
2013-12-05 19:52 - 2013-03-30 19:32 - 00000000 ____D C:\Users\Tobi\AppData\Roaming\Yontoo
2013-12-05 19:51 - 2012-07-26 08:22 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-12-05 19:50 - 2013-12-05 19:50 - 00004562 _____ C:\Windows\PFRO.log
2013-12-05 00:06 - 2012-12-27 03:55 - 00000000 ____D C:\Users\Tobi\AppData\Local\CrashDumps
2013-12-04 23:40 - 2012-12-22 23:03 - 00000000 ____D C:\ProgramData\PMB Files
2013-12-04 19:52 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\system32\NDF
2013-12-04 18:43 - 2013-10-23 15:12 - 00000000 ____D C:\Users\Tobi\Desktop\Ausbildung
2013-12-04 18:43 - 2013-10-07 16:46 - 00000000 ____D C:\Users\Tobi\AppData\Local\Deployment
2013-12-04 18:38 - 2012-12-27 20:03 - 00000000 ____D C:\Users\Tobi\Documents\My Games
2013-12-04 18:30 - 2013-12-04 18:16 - 00000000 ____D C:\Users\Tobi\AppData\Roaming\Systweak
2013-12-04 18:27 - 2013-12-04 18:27 - 00001155 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2013-12-04 18:27 - 2013-12-04 18:27 - 00000000 ____D C:\ProgramData\Mozilla
2013-12-04 18:27 - 2013-12-04 18:27 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-12-04 18:27 - 2013-12-04 18:27 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-12-04 18:21 - 2013-12-04 18:21 - 00000000 ____D C:\Users\Tobi\Qtrax
2013-12-04 18:21 - 2012-12-22 16:40 - 00000000 ____D C:\Users\Tobi
2013-12-04 18:20 - 2013-12-04 18:20 - 00000000 ____D C:\Users\Tobi\Documents\Mobogenie
2013-12-04 18:20 - 2013-12-04 18:20 - 00000000 ____D C:\Users\Tobi\AppData\Local\cache
2013-12-04 18:20 - 2013-12-04 18:20 - 00000000 _____ C:\Users\Tobi\daemonprocess.txt
2013-12-04 18:20 - 2013-12-04 18:16 - 00000000 ____D C:\Users\Tobi\AppData\Roaming\Advanced System Protector
2013-12-04 18:16 - 2013-12-04 18:16 - 00003312 _____ C:\Windows\System32\Tasks\Advanced System Protector
2013-12-04 17:54 - 2013-12-04 15:55 - 00000000 ____D C:\Program Files (x86)\MyPC Backup
2013-12-04 17:54 - 2012-12-22 16:41 - 00000000 ___RD C:\Users\Tobi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-12-04 17:50 - 2013-12-04 15:50 - 00000000 ____D C:\ProgramData\WPM
2013-12-04 17:49 - 2013-12-04 15:53 - 00001927 _____ C:\Users\Tobi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lollipop.lnk
2013-12-04 16:33 - 2013-12-04 16:26 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2013-12-04 16:26 - 2013-12-04 16:26 - 00001387 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2013-12-04 16:26 - 2013-12-04 16:26 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking
2013-12-04 16:26 - 2013-12-04 16:26 - 00000000 ____D C:\Users\Tobi\AppData\Roaming\Malwarebytes
2013-12-04 16:26 - 2013-12-04 16:26 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
2013-12-04 16:24 - 2013-12-04 16:24 - 00001117 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-12-04 16:24 - 2013-12-04 16:24 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-12-04 16:24 - 2013-12-04 16:24 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-12-04 15:57 - 2013-12-04 15:57 - 00000463 _____ C:\Users\Tobi\AppData\Roaming\Microsoft\Windows\Start Menu\Google.website
2013-12-04 15:51 - 2013-12-04 15:51 - 00000000 ____D C:\Users\Tobi\AppData\Roaming\Optimizer Pro
2013-12-02 20:05 - 2012-12-23 15:34 - 00000000 ____D C:\Users\Tobi\AppData\Local\clear.fi
2013-12-02 17:36 - 2013-12-02 17:36 - 00002586 ____N C:\Users\Public\Desktop\WildTangent Games App - acer.lnk
2013-12-02 17:35 - 2013-12-02 17:35 - 00000000 ____D C:\Users\Tobi\AppData\Roaming\WildTangent
2013-12-02 17:35 - 2012-08-03 08:43 - 00000000 ____D C:\ProgramData\WildTangent
2013-11-29 00:31 - 2012-07-26 06:26 - 00262144 ___SH C:\Windows\system32\config\BBI
2013-11-28 14:10 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\AUInstallAgent
2013-11-24 18:50 - 2013-11-24 18:46 - 17856436 _____ (YGOPro DevPro Online ) C:\Users\Tobi\Downloads\SetupDevPro1.9.7r2new.exe.jqwc31e.partial
2013-11-19 11:21 - 2013-05-31 15:02 - 00267936 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2013-11-17 13:47 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\rescache
2013-11-16 20:12 - 2012-08-20 20:40 - 00753134 _____ C:\Windows\system32\perfh007.dat
2013-11-16 20:12 - 2012-08-20 20:40 - 00155826 _____ C:\Windows\system32\perfc007.dat
2013-11-16 20:12 - 2012-07-26 08:28 - 01745416 _____ C:\Windows\system32\PerfStringBackup.INI
2013-11-16 16:20 - 2013-11-16 16:20 - 00454064 _____ C:\Windows\system32\FNTCACHE.DAT
2013-11-16 00:56 - 2012-07-26 09:12 - 00000000 ___RD C:\Windows\ToastData
2013-11-16 00:56 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\WinStore
2013-11-15 20:01 - 2013-08-16 17:14 - 00000000 ____D C:\Windows\system32\MRT
2013-11-15 19:57 - 2012-12-23 23:01 - 82896128 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-11-14 15:47 - 2013-02-16 19:55 - 00000000 ____D C:\Program Files\Microsoft Office 15
2013-11-13 15:42 - 2013-08-11 17:19 - 00000000 ___RD C:\Program Files (x86)\Skype
2013-11-13 15:42 - 2012-12-24 21:11 - 00000000 ____D C:\ProgramData\Skype
2013-11-08 20:16 - 2013-07-12 23:41 - 00000000 ____D C:\Users\Tobi\Desktop\Paramore - Paramore 2013 (Skytwohigh)
2013-11-07 22:36 - 2013-11-07 22:36 - 00000000 ____D C:\Users\Tobi\AppData\Roaming\NVIDIA
2013-11-07 19:39 - 2013-11-07 19:39 - 00000000 ____D C:\Program Files (x86)\Mumble
2013-11-07 19:37 - 2013-11-07 19:33 - 15657984 _____ C:\Users\Tobi\Desktop\mumble-1.2.4.msi
2013-11-05 23:58 - 2012-07-26 09:14 - 00694232 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-11-05 23:58 - 2012-07-26 09:14 - 00078296 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
Some content of TEMP:
====================
C:\Users\Tobi\AppData\Local\Temp\663.3366187921425_Update.exe
C:\Users\Tobi\AppData\Local\Temp\6_Offer_16.exe
C:\Users\Tobi\AppData\Local\Temp\DownloadManager.exe
C:\Users\Tobi\AppData\Local\Temp\ICReinstall_ZipOpenerSetup(1).exe
C:\Users\Tobi\AppData\Local\Temp\Mobogenie563.exe
C:\Users\Tobi\AppData\Local\Temp\nsh7EDF.exe
C:\Users\Tobi\AppData\Local\Temp\nsoA0F0.exe
C:\Users\Tobi\AppData\Local\Temp\nsp4DD3.exe
C:\Users\Tobi\AppData\Local\Temp\nsq50E1.exe
C:\Users\Tobi\AppData\Local\Temp\nsrBC76.exe
C:\Users\Tobi\AppData\Local\Temp\RegClean10.exe
C:\Users\Tobi\AppData\Local\Temp\SearchProtectINT.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-11-30 10:41
==================== End Of Log ============================ --- --- ---
und die AdditionFRST Additions Logfile: Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 05-12-2013
Ran by Tobi at 2013-12-05 20:28:29
Running from C:\Users\Tobi\Downloads
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Spybot - Search and Destroy (Enabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
==================== Installed Programs ======================
clear.fi SDK - Video 2 (x32 Version: 2.1.1910)
clear.fi SDK- Movie 2 (x32 Version: 2.1.1910)
Acer Backup Manager (x32 Version: 4.0.0.0053)
Acer Device Fast-lane (Version: 1.00.3003)
Acer Power Management (Version: 7.00.3003)
Acer Recovery Management (Version: 6.00.3006)
AcerCloud (x32 Version: 2.01.3112)
AcerCloud Docs (x32 Version: 1.00.3103)
Agatha Christie - Death on the Nile (x32 Version: 2.2.0.98)
Akamai NetSession Interface (HKCU)
Aloha TriPeaks (x32 Version: 2.2.0.98)
Backup Manager v4 (x32 Version: 4.0.0.0053)
Bejeweled 3 (x32 Version: 2.2.0.98)
Broadcom Card Reader Driver Installer (Version: 15.4.4.2)
CCleaner (Version: 4.06)
clear.fi Media (x32 Version: 2.01.3107)
clear.fi Photo (x32 Version: 2.01.3107)
CyberLink MediaEspresso 6.5 (x32 Version: 6.5.3103_44819)
Delicious: Emily's True Love Premium Edition (x32 Version: 2.2.0.98)
ETDWare PS/2-X64 11.6.4.001_WHQL (Version: 11.6.4.001)
Final Drive: Nitro (x32 Version: 2.2.0.95)
Governor of Poker 2 Premium Edition (x32 Version: 2.2.0.110)
Identity Card (x32 Version: 2.00.3002)
Intel(R) Management Engine Components (x32 Version: 8.1.0.1252)
Intel(R) Processor Graphics (x32 Version: 9.17.10.2828)
Intel(R) Rapid Storage Technology (x32 Version: 11.5.0.1207)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (x32 Version: 2.0.0.37149)
Intel® Trusted Connect Service Client (Version: 1.24.388.1)
Island Tribe (x32 Version: 2.2.0.98)
Jewel Match 3 (x32 Version: 2.2.0.98)
John Deere Drive Green (x32 Version: 2.2.0.95)
Launch Manager (x32 Version: 7.0.3)
League of Legends (x32 Version: 1.3)
Live Updater (x32 Version: 2.00.3002)
Magic Academy (x32 Version: 2.2.0.98)
Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300)
Microsoft Office 365 Home Premium - de-de (Version: 15.0.4551.1005)
Microsoft Office Access MUI (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office Excel MUI (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office Groove MUI (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office InfoPath MUI (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office Office 32-bit Components 2010 (Version: 14.0.7015.1000)
Microsoft Office OneNote MUI (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office Outlook MUI (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office PowerPoint MUI (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office Professional Plus 2010 (Version: 14.0.7015.1000)
Microsoft Office Proof (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office Proof (French) 2010 (Version: 14.0.7015.1000)
Microsoft Office Proof (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office Proof (Italian) 2010 (Version: 14.0.7015.1000)
Microsoft Office Proofing (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office Publisher MUI (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office Shared 32-bit MUI (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office Shared MUI (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office Word MUI (German) 2010 (Version: 14.0.7015.1000)
Microsoft SkyDrive (HKCU Version: 16.4.6013.0910)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219)
Microsoft Visual Studio 2005 Tools for Office Runtime (x32 Version: 8.0.60940.0)
Mobogenie (x32)
Mozilla Firefox 25.0.1 (x86 en-US) (x32 Version: 25.0.1)
Mozilla Maintenance Service (x32 Version: 25.0.1)
Mumble 1.2.4 (x32 Version: 1.2.4)
Mysearchdial (x32) <==== ATTENTION
MyWinLocker (Version: 4.0.14.35)
MyWinLocker 4 (x32 Version: 4.0.14.35)
MyWinLocker Suite (x32 Version: 4.0.14.24)
Norton Online Backup (x32 Version: 2.2.3.45)
Norton Online Backup ARA (x32 Version: 4.1.0.10)
NTI Media Maker 9 (x32 Version: 9.0.2.9008)
NVIDIA Grafiktreiber 306.97 (Version: 306.97)
NVIDIA Install Application (Version: 2.1002.85.551)
NVIDIA Optimus 1.10.8 (Version: 1.10.8)
NVIDIA PhysX (x32 Version: 9.12.0613)
NVIDIA PhysX-Systemsoftware 9.12.0613 (Version: 9.12.0613)
NVIDIA Systemsteuerung 306.97 (Version: 306.97)
NVIDIA Update 1.10.8 (Version: 1.10.8)
NVIDIA Update Components (Version: 1.10.8)
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4551.1005)
Office 15 Click-to-Run Licensing Component (Version: 15.0.4551.1005)
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4551.1005)
Office Addin (x32 Version: 2.01.3102)
Office Addin 2003 (x32 Version: 2.01.3102)
Open It! (x32 Version: 1.1.1)
Pando Media Booster (x32 Version: 2.6.0.8)
PC Speed Maximizer v3.2 (x32 Version: 3.2)
Penguins! (x32 Version: 2.2.0.98)
Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98)
Polar Bowler (x32 Version: 2.2.0.97)
Realtek High Definition Audio Driver (x32 Version: 6.0.1.6657)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition
Shared C Run-time for x64 (Version: 10.0.0)
Shredder (Version: 2.0.8.9)
Shredder (x32 Version: 2.0.8.9)
Skype™ 6.10 (x32 Version: 6.10.104)
Spybot - Search & Destroy (x32 Version: 2.2.25)
Tales of Lagoona (x32 Version: 2.2.0.110)
Update Installer for WildTangent Games App (x32)
Visual Studio 2005 Tools for Office Second Edition Runtime (x32)
Visual Studio Tools for the Office system 3.0 Runtime (x32 Version: 9.0.30729)
Visual Studio Tools for the Office system 3.0 Runtime (x32)
Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258) (x32 Version: 1)
WildTangent Games (x32 Version: 1.0.3.0)
WildTangent Games App (x32 Version: 4.0.9.3)
WinZip 17.0 (x32 Version: 17.0.10283)
Yontoo 2.051 (Version: 2.051)
Zip Opener Packages (HKCU)
Zuma's Revenge (x32 Version: 2.2.0.98)
==================== Restore Points =========================
12-11-2013 19:28:20 Windows Update
24-11-2013 20:04:57 Geplanter Prüfpunkt
04-12-2013 17:33:57 Entfernt Age of Empires III
==================== Hosts content: ==========================
2012-07-26 06:26 - 2013-12-04 16:38 - 00450639 ____R C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
127.0.0.1 www.0scan.com
127.0.0.1 0scan.com
127.0.0.1 1000gratisproben.com
127.0.0.1 www.1000gratisproben.com
127.0.0.1 1001namen.com
127.0.0.1 www.1001namen.com
127.0.0.1 100888290cs.com
127.0.0.1 www.100888290cs.com
127.0.0.1 www.100sexlinks.com
127.0.0.1 100sexlinks.com
127.0.0.1 10sek.com
127.0.0.1 www.10sek.com
127.0.0.1 www.1-2005-search.com
127.0.0.1 1-2005-search.com
127.0.0.1 123fporn.info
127.0.0.1 www.123fporn.info
127.0.0.1 123haustiereundmehr.com
127.0.0.1 www.123haustiereundmehr.com
127.0.0.1 123moviedownload.com
There are 1000 more lines.
==================== Scheduled Tasks (whitelisted) =============
Task: {0434C32B-09E4-4846-9CE3-CF2C268500FA} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-09-19] (Piriform Ltd)
Task: {0BE70A0E-DD89-4ABE-9CE8-71595AE6A0A4} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2013-11-14] (Microsoft Corporation)
Task: {17E4CA9F-25FD-494E-BB74-B84A209FCA12} - System32\Tasks\ALUAgent => C:\Program Files (x86)\Acer\Live Updater\liveupdater_agent.exe [2012-06-22] ()
Task: {22292A14-F868-4AC6-A506-CF40040EFFB7} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe
Task: {2FBFAAD5-3E2B-4EBB-9969-9FA2640DD9C7} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe
Task: {4767A876-178A-4A7C-8976-85DAE361BB91} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTray.exe [2012-07-31] (Acer Incorporated)
Task: {5031E43D-8433-478B-ADEF-ED7A3609D51E} - System32\Tasks\ALU => C:\Program Files (x86)\Acer\Live Updater\updater.exe [2012-07-13] ()
Task: {54421AC0-C575-454C-B3BD-FCD9E0AB739D} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [2013-09-17] (Microsoft Corporation)
Task: {591D85C8-6AE0-45E9-8224-FF1E07FBB80C} - System32\Tasks\Microsoft\Windows\Setup\Pre-staged GDR Notification => C:\Windows\System32\NotificationUI.exe [2013-08-16] (Microsoft Corporation)
Task: {767BF5CD-2E6D-4BA7-9123-02D338A8E492} - System32\Tasks\MySearchDial => C:\Users\Tobi\AppData\Roaming\mysearchdial\UpdateProc\UpdateTask.exe [2013-04-12] () <==== ATTENTION
Task: {98CEFDC9-4187-453C-A3B4-C49FB9152592} - System32\Tasks\EgisUpdate => C:\Program Files\EgisTec IPS\EgisUpdate.exe [2012-07-12] (Egis Technology Inc.)
Task: {C26874A0-F467-4F63-8A24-361690665300} - System32\Tasks\Recovery Management\Notification => C:\Program Files\Acer\Acer Recovery Management\Notification\Notification.exe [2012-07-31] (Acer Incorporated)
Task: {C6A88F2D-53D2-4805-9D69-443738A1847C} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
Task: {C97A2C08-E5EF-4B0E-BE47-21A78A4D04CB} - System32\Tasks\Advanced System Protector => C:\Program Files (x86)\RegClean Pro\SystweakASP.exe <==== ATTENTION
Task: {DB52C38A-7BED-4C11-8C09-4DA13108FB1A} - System32\Tasks\DeviceDetector => C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe [2012-07-04] (CyberLink)
Task: {DDADC761-C14B-4AD5-BBA8-C8A3D5A5F3A1} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe
Task: {F83191E3-E913-4DC2-BE22-C614E7BF5FB0} - System32\Tasks\PMMUpdate => C:\Program Files\EgisTec IPS\PmmUpdate.exe [2012-07-12] (Egis Technology Inc.)
Task: C:\Windows\Tasks\MySearchDial.job => C:\Users\Tobi\AppData\Roaming\MYSEAR~1\UPDATE~1\UPDATE~1.EXE
==================== Loaded Modules (whitelisted) =============
2013-04-04 00:09 - 2013-04-04 00:09 - 04300432 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2012-08-09 10:12 - 2012-08-08 16:48 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2013-12-04 16:26 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll
2013-12-04 16:26 - 2013-05-16 10:55 - 00113496 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl
2013-12-04 16:26 - 2013-05-16 10:55 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl
2013-12-04 16:26 - 2013-05-16 10:55 - 00161112 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl
2013-12-04 16:26 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll
2013-04-26 12:01 - 2013-12-05 19:52 - 00013600 _____ () C:\Users\Tobi\AppData\Roaming\Yontoo\dat\Desktop.OS.Plugin.dll
2012-07-31 00:04 - 2012-07-31 00:04 - 00465384 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\sqlite3.dll
2013-09-04 12:42 - 2013-11-23 19:14 - 00117760 _____ () C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.193\deploy\RiotLauncher.dll
2013-07-10 14:33 - 2013-07-10 14:33 - 04774248 _____ () C:\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.59\deploy\Adobe AIR\Versions\1.0\Resources\WebKit.dll
2012-08-20 11:06 - 2012-06-25 18:41 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll
2013-12-04 18:27 - 2013-11-13 04:39 - 03363952 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (12/05/2013 08:05:40 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "assemblyIdentity1". Fehler in Manifest- oder Richtliniendatei "assemblyIdentity2" in Zeile assemblyIdentity3.
Das erforderliche "name"-Attribut fehlt im assemblyIdentity-Element.
Error: (12/05/2013 08:01:37 PM) (Source: Office 2013 Licensing Service) (User: )
Description: Subscription licensing service failed: -1073415161
Error: (12/05/2013 07:54:12 PM) (Source: Application Hang) (User: )
Description: Programm IEXPLORE.EXE, Version 10.0.9200.16537 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: 1274
Startzeit: 01cef1eb48f66e85
Endzeit: 0
Anwendungspfad: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
Berichts-ID: 9ea8d83a-5dde-11e3-80b7-b888e357fb76
Vollständiger Name des fehlerhaften Pakets:
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:
Error: (12/04/2013 06:26:45 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: IEXPLORE.EXE, Version: 10.0.9200.16537, Zeitstempel: 0x512347f7
Name des fehlerhaften Moduls: MSHTML.dll, Version: 10.0.9200.16736, Zeitstempel: 0x5258d8f5
Ausnahmecode: 0xc0000005
Fehleroffset: 0x002d81aa
ID des fehlerhaften Prozesses: 0x394
Startzeit der fehlerhaften Anwendung: 0xIEXPLORE.EXE0
Pfad der fehlerhaften Anwendung: IEXPLORE.EXE1
Pfad des fehlerhaften Moduls: IEXPLORE.EXE2
Berichtskennung: IEXPLORE.EXE3
Vollständiger Name des fehlerhaften Pakets: IEXPLORE.EXE4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: IEXPLORE.EXE5
Error: (12/04/2013 06:17:44 PM) (Source: Application Hang) (User: )
Description: Programm RegCleanPro.exe, Version 6.21.65.2703 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: 17a8
Startzeit: 01cef11493209888
Endzeit: 4294967295
Anwendungspfad: C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe
Berichts-ID: fc84c9eb-5d07-11e3-80b6-b888e357fb76
Vollständiger Name des fehlerhaften Pakets:
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:
Error: (12/04/2013 03:34:32 PM) (Source: Customer Experience Improvement Program) (User: )
Description: 80070005
Error: (12/04/2013 03:01:24 PM) (Source: Office 2013 Licensing Service) (User: )
Description: Subscription licensing service failed: -1073415161
Error: (12/03/2013 03:47:20 PM) (Source: Customer Experience Improvement Program) (User: )
Description: 80070005
Error: (12/03/2013 02:51:56 PM) (Source: Office 2013 Licensing Service) (User: )
Description: Subscription licensing service failed: -1073415161
Error: (12/02/2013 04:08:26 PM) (Source: Customer Experience Improvement Program) (User: )
Description: 80070005
System errors:
=============
Error: (12/04/2013 06:26:44 PM) (Source: DCOM) (User: DerTob)
Description: ComputerstandardLokalAktivierung{9BA05972-F6A8-11CF-A442-00A0C90A8F39}{9BA05972-F6A8-11CF-A442-00A0C90A8F39}DerTobTobiS-1-5-21-2541256100-1512726534-3594198238-1002LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar
Error: (12/04/2013 05:51:36 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Computer Backup (MyPC Backup)" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (12/04/2013 05:51:36 PM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Computer Backup (MyPC Backup) erreicht.
Error: (12/02/2013 00:41:14 AM) (Source: DCOM) (User: DerTob)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}
Error: (12/02/2013 00:41:14 AM) (Source: DCOM) (User: DerTob)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}
Error: (12/01/2013 06:40:56 PM) (Source: EventLog) (User: )
Description: Das System wurde zuvor am 01.12.2013 um 18:39:52 unerwartet heruntergefahren.
Error: (11/28/2013 10:54:44 PM) (Source: DCOM) (User: DerTob)
Description: ComputerstandardLokalAktivierung{9BA05972-F6A8-11CF-A442-00A0C90A8F39}{9BA05972-F6A8-11CF-A442-00A0C90A8F39}DerTobTobiS-1-5-21-2541256100-1512726534-3594198238-1002LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar
Error: (11/26/2013 09:27:07 PM) (Source: Schannel) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 40. Der Windows-SChannel-Fehlerstatus lautet: 107.
Error: (11/26/2013 09:27:07 PM) (Source: Schannel) (User: NT-AUTORITÄT)
Description: Eine SSL 3.0-Verbindungsanforderung wurde von einer Remoteclientanwendung übermittelt, jedoch werden keine der Verschlüsselungssammlungen, die von der Clientanwendung unterstützt werden, vom Server unterstützt. Fehler bei der SSL-Verbindungsanforderung.
Error: (11/26/2013 09:26:05 PM) (Source: Schannel) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 40. Der Windows-SChannel-Fehlerstatus lautet: 107.
Microsoft Office Sessions:
=========================
Error: (12/05/2013 08:05:40 PM) (Source: SideBySide)(User: )
Description: assemblyIdentitynameC:\Users\Tobi\AppData\Local\Temp\663.3366187921425_Update.exeC:\Users\Tobi\AppData\Local\Temp\663.3366187921425_Update.exe3
Error: (12/05/2013 08:01:37 PM) (Source: Office 2013 Licensing Service)(User: )
Description: Subscription licensing service failed: -1073415161
Error: (12/05/2013 07:54:12 PM) (Source: Application Hang)(User: )
Description: IEXPLORE.EXE10.0.9200.16537127401cef1eb48f66e850C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE9ea8d83a-5dde-11e3-80b7-b888e357fb76
Error: (12/04/2013 06:26:45 PM) (Source: Application Error)(User: )
Description: IEXPLORE.EXE10.0.9200.16537512347f7MSHTML.dll10.0.9200.167365258d8f5c0000005002d81aa39401cef115d82b371dC:\Program Files (x86)\Internet Explorer\IEXPLORE.EXEC:\Windows\SYSTEM32\MSHTML.dll3f0500e7-5d09-11e3-80b6-b888e357fb76
Error: (12/04/2013 06:17:44 PM) (Source: Application Hang)(User: )
Description: RegCleanPro.exe6.21.65.270317a801cef114932098884294967295C:\Program Files (x86)\RegClean Pro\RegCleanPro.exefc84c9eb-5d07-11e3-80b6-b888e357fb76
Error: (12/04/2013 03:34:32 PM) (Source: Customer Experience Improvement Program)(User: )
Description: 80070005
Error: (12/04/2013 03:01:24 PM) (Source: Office 2013 Licensing Service)(User: )
Description: Subscription licensing service failed: -1073415161
Error: (12/03/2013 03:47:20 PM) (Source: Customer Experience Improvement Program)(User: )
Description: 80070005
Error: (12/03/2013 02:51:56 PM) (Source: Office 2013 Licensing Service)(User: )
Description: Subscription licensing service failed: -1073415161
Error: (12/02/2013 04:08:26 PM) (Source: Customer Experience Improvement Program)(User: )
Description: 80070005
==================== Memory info ===========================
Percentage of memory in use: 40%
Total physical RAM: 5959.27 MB
Available physical RAM: 3552.64 MB
Total Pagefile: 6919.27 MB
Available Pagefile: 4475.25 MB
Total Virtual: 8192 MB
Available Virtual: 8191.74 MB
==================== Drives ================================
Drive c: (Acer) (Fixed) (Total:446.19 GB) (Free:330.19 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 466 GB) (Disk ID: F9DD6883)
Partition: GPT Partition Type
==================== End Of Log ============================ --- --- --- |