amantes79 | 22.12.2013 16:32 | Code:
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 20-12-2013 02
Ran by amantes79 at 2013-12-22 16:05:30
Running from C:\Users\amantes79\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5BRQWMLH
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Avira Desktop (Disabled - Up to date) {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
AS: Avira Desktop (Disabled - Up to date) {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
Adobe AIR (Version: 3.9.0.1380)
Adobe Flash Player 11 ActiveX (Version: 11.9.900.170)
Adobe Flash Player 11 Plugin (Version: 11.9.900.170)
Adobe Reader X (10.1.8) - Deutsch (Version: 10.1.8)
Advertising Center (Version: 0.0.0.2)
aioprnt (Version: 5.3.1.0)
aioscnnr (Version: 5.8.10.0)
aioscnnr (Version: 7.6.13.10)
AnvSoft Photo Flash Maker Free 5.20 (Version: 5.20)
AnvSoft Photo Slideshow Maker Free 5.57 (Version: 5.57)
Any Video Converter 5 5.0.3
Apple Application Support (Version: 2.3.2)
Apple Mobile Device Support (Version: 6.0.1.3)
Apple Software Update (Version: 2.1.3.127)
ATI Catalyst Install Manager (Version: 3.0.808.0)
ATI Catalyst Registration (Version: 3.00.0000)
Avira Free Antivirus (Version: 14.0.2.286)
Bonjour (Version: 3.0.0.10)
C4USelfUpdater (Version: 1.00.0000)
Catalyst Control Center - Branding (Version: 1.00.0000)
Catalyst Control Center Graphics Previews Common (Version: 2011.0104.2155.39304)
Catalyst Control Center InstallProxy (Version: 2011.0104.2155.39304)
CCC Help English (Version: 2011.0104.2154.39304)
ccc-core-static (Version: 2011.0104.2155.39304)
ccc-utility (Version: 2011.0104.2155.39304)
CCleaner (Version: 3.10)
center (Version: 7.7.2.0)
Common (Version: 14.1.0.150)
Compatibility Pack for the 2007 Office system (Version: 12.0.6612.1000)
Contents (Version: 14.1.0.150)
Corel VideoStudio Pro X4 (Version: 14.1.0.150)
CyberLink LabelPrint (Version: 2.5.1616)
CyberLink Power2Go (Version: 6.1.2806)
CyberLink PowerDVD Copy (Version: 1.0.5611)
D3DX10 (Version: 15.4.2368.0902)
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition
DeviceIO (Version: 14.1.0.150)
DHTML Editing Component (Version: 6.02.0001)
EPSON-Drucker-Software
essentials (Version: 7.7.2.0)
Free PDF to Word Doc Converter v1.1 (Version: 1.1)
Free YouTube to MP3 Converter version 3.11.37.1212 (Version: 3.11.37.1212)
FreePDF XP (Remove only)
Google Chrome Frame (Version: 31.0.1650.63)
Google Update Helper (Version: 1.3.22.3)
HL-2270DW (Version: 1.0.7.0)
HTC BMP USB Driver (Version: 1.0.5375)
HTC Driver Installer (Version: 3.0.0.005)
HTC Sync (Version: 3.0.5481)
ICA (Version: 14.1.0.150)
ImgBurn (Version: 2.5.5.0)
IPM_VS_Pro (Version: 13.0)
IrfanView (remove only) (Version: 4.37)
ISCOM (Version: 14.1.0.150)
IsoBuster 2.8 (Version: 2.8)
iTunes (Version: 11.0.1.12)
Java 7 Update 45 (Version: 7.0.450)
Java Auto Updater (Version: 2.1.9.8)
Java(TM) 6 Update 39 (Version: 6.0.390)
Junk Mail filter update (Version: 15.4.3502.0922)
king.com (remove only)
Kodak AIO Printer (Version: 7.7.2.0)
KODAK All-in-One Software (Version: 7.7.6.0)
ksDIP (Version: 3.20.0000.0000)
Malwarebytes Anti-Malware Version 1.75.0.1300 (Version: 1.75.0.1300)
McAfee Security Scan Plus (Version: 3.8.130.10)
McAfee SiteAdvisor (Version: 3.6.160)
Mesh Runtime (Version: 15.4.5722.2)
Messenger Companion (Version: 15.4.3502.0922)
Microsoft .NET Framework 3.5 Language Pack SP1 - DEU
Microsoft .NET Framework 3.5 Language Pack SP1 - deu (Version: 3.5.30729)
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6012.5000)
Microsoft Office 2000 Premium (Version: 9.00.2816)
Microsoft Office 2010 Service Pack 1 (SP1)
Microsoft Office Access MUI (German) 2010 (Version: 14.0.6029.1000)
Microsoft Office Excel MUI (German) 2010 (Version: 14.0.6029.1000)
Microsoft Office Groove MUI (German) 2010 (Version: 14.0.6029.1000)
Microsoft Office InfoPath MUI (German) 2010 (Version: 14.0.6029.1000)
Microsoft Office OneNote MUI (German) 2010 (Version: 14.0.6029.1000)
Microsoft Office Outlook MUI (German) 2010 (Version: 14.0.6029.1000)
Microsoft Office PowerPoint MUI (German) 2010 (Version: 14.0.6029.1000)
Microsoft Office PowerPoint Viewer 2007 (German) (Version: 12.0.6612.1000)
Microsoft Office Professional Plus 2010 (Version: 14.0.6029.1000)
Microsoft Office Proof (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Proof (French) 2010 (Version: 14.0.6029.1000)
Microsoft Office Proof (German) 2010 (Version: 14.0.6029.1000)
Microsoft Office Proof (Italian) 2010 (Version: 14.0.6029.1000)
Microsoft Office Proofing (German) 2010 (Version: 14.0.6029.1000)
Microsoft Office Publisher MUI (German) 2010 (Version: 14.0.6029.1000)
Microsoft Office Shared MUI (German) 2010 (Version: 14.0.6029.1000)
Microsoft Office Word MUI (German) 2010 (Version: 14.0.6029.1000)
Microsoft Primary Interoperability Assemblies 2005 (Version: 8.0.50727.42)
Microsoft Silverlight (Version: 5.1.20913.0)
Microsoft SQL Server 2005 Compact Edition [ENU] (Version: 3.1.0000)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.59193)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (Version: 9.0.30729.5570)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Works (Version: 9.7.0621)
Mozilla Firefox 25.0.1 (x86 de) (Version: 25.0.1)
Mozilla Maintenance Service (Version: 25.0.1)
MSVCRT (Version: 15.4.2862.0708)
MSXML 4.0 SP2 (KB927978) (Version: 4.20.9841.0)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
MSXML 4.0 SP3 Parser (KB2721691) (Version: 4.30.2114.0)
MSXML 4.0 SP3 Parser (KB2758694) (Version: 4.30.2117.0)
MSXML 4.0 SP3 Parser (KB973685) (Version: 4.30.2107.0)
MSXML 4.0 SP3 Parser (Version: 4.30.2100.0)
Nero 9 Lite
Nero ControlCenter (Version: 9.0.0.1)
Nero Installer (Version: 4.4.9.0)
Nero Online Upgrade (Version: 1.3.0.0)
Nero StartSmart (Version: 9.4.31.100)
neroxml (Version: 1.0.0)
NETGEAR WG111v3 wireless USB 2.0 adapter (Version: 1.01.10)
NVIDIA PhysX (Version: 9.10.0129)
Nvu 1.0 (Version: 1.0)
O&O Defrag Workstation (Version: 14.0.205)
ocr (Version: 6.2.3.50)
ODF Add-in for Microsoft Office (Version: 4.0.5309.0)
OpenAL
Operation Center 9.3
Photo Dose
Photo to Sketch 4.0
PhotoDose Online Photoservice Plugin
PhotoImpact X3 (Version: 13.0)
PreReq (Version: 6.2.4.0)
PrintProjects (Version: 1.0.0.9282)
PSFtp Free (Version: 1.4.0.119)
PSFtp Version 1.8 (Version: 1.8.1.921)
PureHD (Version: 14.1.0.150)
RedMon - Redirection Port Monitor
Secunia PSI (3.0.0.9015) (Version: 3.0.0.9015)
Segoe UI (Version: 15.4.2271.0615)
Setup (Version: 14.1.0.150)
Share (Version: 14.1.0.150)
Shared Add-in Extensibility Update for Microsoft .NET Framework 2.0 (KB908002) (Version: 1.0.0)
Shared Add-in Support Update for Microsoft .NET Framework 2.0 (KB908002) (Version: 1.0.0)
SimplyGoodPictures (Version: 1.0.11.0629)
SmartSound Common Data (Version: 1.1.0)
SmartSound Quicktracks 5 (Version: 5.1.6)
Sony Ericsson PC Suite
Spelling Dictionaries Support For Adobe Reader 9 (Version: 9.0.0)
Spybot - Search & Destroy (Version: 1.6.2)
Steuer-Spar-Erklärung 2008 (Version: 13.01.0000)
Steuer-Spar-Erklärung 2009 (Version: 14.01.0000)
Steuer-Spar-Erklärung 2010 (Version: 15.01)
Steuer-Spar-Erklärung 2011 (Version: 16.01)
STRATO HiDrive (remove only)
The Lord of the Rings FREE Trial (Version: 1.00.0000)
Treiber-Studio 6.2.0.103 (Version: 6.2.0.103)
Turbo Lister 2 (Version: 2.00.0000)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (Version: 3)
Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition
Update for Microsoft Filter Pack 2.0 (KB2810071) 32-Bit Edition
Update for Microsoft Office 2010 (KB2494150)
Update for Microsoft Office 2010 (KB2553065)
Update for Microsoft Office 2010 (KB2553267) 32-Bit Edition
Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition
Update for Microsoft Office 2010 (KB2566458)
Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition
Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition
Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition
Update for Microsoft Office 2010 (KB2596964) 32-Bit Edition
Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition
Update for Microsoft Office 2010 (KB2687503) 32-Bit Edition
Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition
Update for Microsoft Office 2010 (KB2767886) 32-Bit Edition
Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition
Update for Microsoft Office 2010 (KB2825640) 32-Bit Edition
Update for Microsoft Office 2010 (KB2826026) 32-Bit Edition
Update for Microsoft Office 2010 (KB2850079) 32-Bit Edition
Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition
Update for Microsoft OneNote 2010 (KB2810072) 32-Bit Edition
Update for Microsoft Outlook 2010 (KB2687623) 32-Bit Edition
Update for Microsoft Outlook Social Connector 2010 (KB2553406) 32-Bit Edition
Update for Microsoft PowerPoint 2010 (KB2553145) 32-Bit Edition
Update for Microsoft SharePoint Workspace 2010 (KB2589371) 32-Bit Edition
Update for Microsoft Visio Viewer 2010 (KB2810066) 32-Bit Edition
Update for Microsoft Word 2010 (KB2837593) 32-Bit Edition
USB2.0 PC Camera (SN9C201&202) (Version: 5.7.27000.0)
Video DVD Maker v3.30.0.75
VIO (Version: 14.1.0.150)
VLC media player 2.1.1 (Version: 2.1.1)
VSClassic (Version: 14.1.0.150)
VSPro (Version: 14.1.0.150)
Weight Watchers pure points (Version: 4.00.0000)
Winamp (Version: 5.63 )
Winamp Anwendungserkennung (HKCU Version: 1.0.0.1)
Windows Live Communications Platform (Version: 15.4.3502.0922)
Windows Live Essentials (Version: 15.4.3502.0922)
Windows Live Essentials (Version: 15.4.3538.0513)
Windows Live Family Safety (Version: 15.4.3538.0513)
Windows Live Fotogalerie (Version: 15.4.3502.0922)
Windows Live ID Sign-in Assistant (Version: 7.250.4232.0)
Windows Live Installer (Version: 15.4.3502.0922)
Windows Live Mail (Version: 15.4.3502.0922)
Windows Live Mesh (Version: 15.4.3502.0922)
Windows Live Mesh ActiveX control for remote connections (Version: 15.4.5722.2)
Windows Live Messenger (Version: 15.4.3538.0513)
Windows Live Messenger Companion Core (Version: 15.4.3502.0922)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Movie Maker (Version: 15.4.3502.0922)
Windows Live Photo Common (Version: 15.4.3502.0922)
Windows Live Photo Gallery (Version: 15.4.3502.0922)
Windows Live PIMT Platform (Version: 15.4.3508.1109)
Windows Live Remote Client (Version: 15.4.5722.2)
Windows Live Remote Client Resources (Version: 15.4.5722.2)
Windows Live Remote Service (Version: 15.4.5722.2)
Windows Live Remote Service Resources (Version: 15.4.5722.2)
Windows Live SOXE (Version: 15.4.3502.0922)
Windows Live SOXE Definitions (Version: 15.4.3502.0922)
Windows Live Sync (Version: 14.0.8117.416)
Windows Live UX Platform (Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (Version: 15.4.3508.1109)
Windows Live Writer (Version: 15.4.3502.0922)
Windows Live Writer Resources (Version: 15.4.3502.0922)
Windows Media Encoder 9 Series
Windows Media Encoder 9 Series (Version: 9.00.3374)
Windows Media Player Firefox Plugin (Version: 1.0.0.8)
Windows Movie Maker 2.6 (Version: 2.6.4040.0)
WinRAR
WISO Steuer-Sparbuch 2012 (Version: 19.11.7970)
==================== Restore Points =========================
05-11-2013 21:29:50 Windows Update
06-11-2013 17:45:16 Geplanter Prüfpunkt
10-11-2013 19:01:27 Windows Update
12-11-2013 10:54:16 Geplanter Prüfpunkt
12-11-2013 23:27:29 Geplanter Prüfpunkt
16-11-2013 18:56:16 Windows Update
16-11-2013 19:50:57 Windows Update
20-11-2013 20:26:27 Windows Update
24-11-2013 15:33:41 Windows Update
01-12-2013 13:15:53 Windows Update
05-12-2013 05:49:21 Windows Update
07-12-2013 07:59:57 Removed AAVUpdateManager.
07-12-2013 08:02:51 Removed Weight Watchers pure points
18-12-2013 21:10:11 Windows Update
18-12-2013 22:52:42 Windows Update
21-12-2013 17:22:41 Geplanter Prüfpunkt
==================== Hosts content: ==========================
2006-11-02 11:23 - 2013-12-21 17:53 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Scheduled Tasks (whitelisted) =============
Task: {1CC81347-6204-4B83-900C-01E02F50F067} - System32\Tasks\Microsoft\Windows\MobilePC\TMM
Task: {2BEDC57A-52AD-41BC-9BB7-33D774FE1901} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-18] (Adobe Systems Incorporated)
Task: {2FE61C05-E74B-41D5-A8DC-25D344E84177} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-2881645789-3053755919-2509396568-1000 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe
Task: {320124A7-D70F-41DE-A9D1-D5E8E19D5D91} - System32\Tasks\Microsoft\Windows\NetworkAccessProtection\NAPStatus UI
Task: {35D88A1D-C809-4D35-AB25-654A638D239A} - System32\Tasks\Launch HTC Sync Loader => C:\Program Files\HTC\HTC Sync 3.0\htcUPCTLoader.exe [2010-10-28] ()
Task: {3BCDF251-CA5C-4045-A1FC-8FCEF9FBDC93} - System32\Tasks\Microsoft\Windows\Shell\CrawlStartPages
Task: {44980BEE-7809-44A9-AC24-D6E578A3B7DF} - System32\Tasks\Microsoft\Windows\RAC\RACAgent => C:\Windows\System32\RacAgent.exe [2008-01-21] (Microsoft Corporation)
Task: {9004039A-940C-4C2D-9186-F6776EF81B94} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup
Task: {9613F3C2-3BE0-494C-8FAC-E5655D7153C7} - System32\Tasks\Microsoft\Windows\WindowsCalendar\Reminders - amantes79 => C:\Program Files\Windows Calendar\WinCal.exe [2009-04-10] (Microsoft Corporation)
Task: {CF8E260F-B464-4C6D-A033-557BD4FAC252} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2013-08-14] (Google Inc.)
Task: {D2E562C5-945B-43F2-9E29-E12246AAB5FC} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-2881645789-3053755919-2509396568-1000 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe
Task: {D59202AE-C887-4BEB-B63F-ABCBCEC8B30F} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2013-08-14] (Google Inc.)
Task: {E5150B95-F9B4-4D5D-95A2-7EC1ACBA95F8} - System32\Tasks\Microsoft\Windows\Wireless\GatherWirelessInfo => C:\Windows\System32\gatherWirelessInfo.vbs [2008-01-21] ()
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2011-01-05 03:17 - 2011-01-05 03:17 - 00023040 _____ () C:\Windows\system32\atitmpxx.dll
2012-11-28 14:13 - 2012-11-28 14:13 - 00087952 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2012-11-28 14:13 - 2012-11-28 14:13 - 01242512 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2013-09-01 15:05 - 2009-02-27 15:38 - 00139264 ____R () C:\Program Files\Brother\BrUtilities\BrLogAPI.dll
2011-01-04 21:54 - 2011-01-04 21:54 - 00243712 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll
2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vsmon => ""="Service"
==================== Faulty Device Manager Devices =============
Name: Basissystemgerät
Description: Basissystemgerät
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Basissystemgerät
Description: Basissystemgerät
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Basissystemgerät
Description: Basissystemgerät
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Basissystemgerät
Description: Basissystemgerät
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Basissystemgerät
Description: Basissystemgerät
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Basissystemgerät
Description: Basissystemgerät
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: SM-Bus-Controller
Description: SM-Bus-Controller
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: ADS Instant HDTV PCI
Description: ADS Instant HDTV PCI
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: ADS Technologies
Service: Ph3xIB32
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
Name: Windows Mobile device
Description: Windows Mobile device
Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a}
Manufacturer: (Standard Windows Mobile devices)
Service: WUDFRd
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver
Name: Windows Mobile device
Description: Windows Mobile device
Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a}
Manufacturer: (Standard Windows Mobile devices)
Service: WUDFRd
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver
Name: Windows Mobile device
Description: Windows Mobile device
Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a}
Manufacturer: (Standard Windows Mobile devices)
Service: WUDFRd
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver
==================== Event log errors: =========================
Application errors:
==================
System errors:
=============
Microsoft Office Sessions:
=========================
==================== Memory info ===========================
Percentage of memory in use: 55%
Total physical RAM: 3062.2 MB
Available physical RAM: 1359.41 MB
Total Pagefile: 6339.42 MB
Available Pagefile: 4187.05 MB
Total Virtual: 2047.88 MB
Available Virtual: 1920.45 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:236.09 GB) (Free:62.42 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: () (Fixed) (Total:235.96 GB) (Free:83.45 GB) NTFS
Drive e: () (Fixed) (Total:439.45 GB) (Free:82.81 GB) NTFS
Drive k: (RECOVER) (Fixed) (Total:20 GB) (Free:10.43 GB) FAT32
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 932 GB) (Disk ID: F98D6E74)
Partition 1: (Active) - (Size=236 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=236 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=439 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=20 GB) - (Type=OF Extended)
==================== End Of Log ============================
FRST Logfile:
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 20-12-2013 02
Ran by amantes79 (administrator) on AMANTES79-PC on 22-12-2013 16:04:52
Running from C:\Users\amantes79\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5BRQWMLH
Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) OS Language: German Standard
Internet Explorer Version 9
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(AMD) C:\Windows\System32\atiesrxx.exe
(Microsoft Corporation) C:\Windows\System32\SLsvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(SEIKO EPSON CORPORATION) C:\ProgramData\EPSON\EPW!3 SSRP\E_S30RP1.EXE
(O&O Software GmbH) C:\Program Files\OO Software\Shared\GatewayAgent\ooemcgats.exe
(Google Inc.) C:\Program Files\Google\Update\1.3.22.3\GoogleCrashHandler.exe
(Eastman Kodak Company) E:\Kodak Drucker\AiO\Center\EKAiOHostService.exe
(Eastman Kodak Company) E:\Kodak Drucker\AiO\StatusMonitor\EKPrinterSDK.exe
(McAfee, Inc.) C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
(O&O Software GmbH) C:\Program Files\OO Software\Defrag\oodag.exe
() C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
(Protexis Inc.) C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
(Secunia) C:\Program Files\Secunia\PSI\psia.exe
(STRATO) E:\Strato\Webspace\STRATO HiDrive Service.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Safer Networking Ltd.) C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(SONIX) C:\Windows\tsnp2std.exe
(Sonix) C:\Windows\vsnp2std.exe
(Apple Inc.) E:\iTunes\iTunesHelper.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(Eastman Kodak Company) C:\Windows\System32\spool\drivers\w32x86\3\EKIJ5000MUI.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(Brother Industries, Ltd.) C:\Program Files\Browny02\Brother\BrStMonW.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.130\SSScheduler.exe
() C:\Program Files\NETGEAR\WG111v3\WG111v3.exe
(Microsoft Corporation) C:\Windows\ehome\ehmsas.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Brother Industries, Ltd.) C:\Program Files\Browny02\BrYNSvc.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Microsoft Corporation) C:\Windows\System32\mobsync.exe
(Secunia) C:\Program Files\Secunia\PSI\sua.exe
(Microsoft Corporation) C:\Windows\System32\conime.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(McAfee, Inc.) C:\Program Files\McAfee\SiteAdvisor\saUI.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [StartCCC] - C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-01-04] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [ATICustomerCare] - C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe [311296 2010-05-04] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [tsnp2std] - C:\Windows\tsnp2std.exe [258048 2009-03-10] (SONIX)
HKLM\...\Run: [snp2std] - C:\Windows\vsnp2std.exe [675840 2007-08-07] (Sonix)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [BCSSync] - C:\Program Files\Microsoft Office\Office14\BCSSync.exe [91520 2010-03-13] (Microsoft Corporation)
HKLM\...\Run: [APSDaemon] - C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59280 2012-11-28] (Apple Inc.)
HKLM\...\Run: [iTunesHelper] - E:\iTunes\iTunesHelper.exe [152544 2012-12-12] (Apple Inc.)
HKLM\...\Run: [Conime] - C:\Windows\System32\conime.exe [69120 2009-04-10] (Microsoft Corporation)
HKLM\...\Run: [EKStatusMonitor] - E:\Kodak Drucker\AiO\StatusMonitor\EKStatusMonitor.exe [2750840 2013-01-15] (Eastman Kodak Company)
HKLM\...\Run: [EKIJ5000StatusMonitor] - C:\Windows\System32\spool\drivers\w32x86\3\EKIJ5000MUI.exe [2804224 2012-10-08] (Eastman Kodak Company)
HKLM\...\Run: [avgnt] - C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [684600 2013-12-18] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [BrStsMon00] - C:\Program Files\Browny02\Brother\BrStMonW.exe [2621440 2010-06-10] (Brother Industries, Ltd.)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKCU\...\Run: [ehTray.exe] - C:\Windows\ehome\ehtray.exe [125952 2008-01-21] (Microsoft Corporation)
HKU\Default\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\Default User\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
BootExecute: autocheck autochk * OODBS
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.google.de/
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKCU - {0D97D13C-A79B-4479-B047-24BAD7B05AB2} URL = hxxp://www.google.de/search?q={searchTerms}
SearchScopes: HKCU - {551EBBF2-27E0-4595-A799-395D562E18B3} URL = hxxp://suche.web.de/search/web/?su={searchTerms}&mc=searchplugin@suche@msie.suche@web&origin=searchplugin
SearchScopes: HKCU - {9789EA0D-2D6D-480C-AC03-1AC532284394} URL = hxxp://www.extreme-gaming.de/search.php?s={searchTerms}
SearchScopes: HKCU - {B91268CB-0A12-49AF-8510-541761F426F1} URL = hxxp://www.dict.cc/?s={searchTerms}
BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.130\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: ChromeFrame BHO - {ECB3C477-1A0A-44BD-BB57-78F9EFE34FA7} - C:\Program Files\Google\Chrome Frame\Application\31.0.1650.63\npchrome_frame.dll (Google Inc.)
Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
DPF: {45A0A292-ECC6-4D8F-9EA9-A4BD411D24C1} hxxp://www.king.com/ctl/kingcomie.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_39-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0039-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_39-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_39-windows-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Handler: gcf - {9875BFAF-B04D-445E-8A69-BE36838CDE3E} - C:\Program Files\Google\Chrome Frame\Application\31.0.1650.63\npchrome_frame.dll (Google Inc.)
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\microsoft shared\Information Retrieval\msitss.dll (Microsoft Corporation)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Winsock: Catalog9 01 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 02 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 03 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 04 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 05 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 06 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 07 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 08 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 19 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF ProfilePath: C:\Users\amantes79\AppData\Roaming\Mozilla\Firefox\Profiles\54bjia7g.default
FF NewTab: www.google.de
FF Homepage: hxxp://deals.ebay.de/?clk_rvr_id=295986686727&crlp=10509701326_567041_567061&UA=WVF%3F&GUID=396c69621340a0aa15128352ffa60e4d&agid=2693284006&tm_kw=ebay+d+e&siteid=77&MT_ID=1324&tt_encode=raw&keyword=ebay+d+e&geo_id=41&ff4=567041_567061
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_11_9_900_170.dll ()
FF Plugin: @Apple.com/iTunes,version=1.0 - E:\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin: @java.com/DTPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @mcafee.com/McAfeeMssPlugin - C:\Program Files\McAfee Security Scan\3.8.130\npMcAfeeMss.dll (McAfee, Inc.)
FF Plugin: @mcafee.com/SAFFPlugin - C:\Program Files\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @pandonetworks.com/PandoWebPlugin - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.1.1 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\amantes79\AppData\Roaming\Mozilla\Firefox\Profiles\54bjia7g.default\searchplugins\search_the_web.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: Deutsch (DE) Language Pack - C:\Users\amantes79\AppData\Roaming\Mozilla\Firefox\Profiles\54bjia7g.default\Extensions\langpack-de@firefox.mozilla.org.xpi
FF Extension: Simple New Tab - C:\Users\amantes79\AppData\Roaming\Mozilla\Firefox\Profiles\54bjia7g.default\Extensions\snt@dotlabs.co.xpi
FF Extension: Mozilla Archive Format - C:\Users\amantes79\AppData\Roaming\Mozilla\Firefox\Profiles\54bjia7g.default\Extensions\{7f57cf46-4467-4c2d-adfa-0cba7c507e54}.xpi
FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}
FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}
FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0039-ABCDEFFEDCBA}
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\SiteAdvisor
FF Extension: McAfee SiteAdvisor - C:\Program Files\McAfee\SiteAdvisor
========================== Services (Whitelisted) =================
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [440376 2013-12-18] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [440376 2013-12-01] (Avira Operations GmbH & Co. KG)
S4 AntiVirWebService; C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [1011768 2013-12-18] (Avira Operations GmbH & Co. KG)
R3 BrYNSvc; C:\Program Files\Browny02\BrYNSvc.exe [245760 2010-01-25] (Brother Industries, Ltd.)
R2 EPSON_PM_RPCV4_01; C:\ProgramData\EPSON\EPW!3 SSRP\E_S30RP1.EXE [102400 2006-04-18] (SEIKO EPSON CORPORATION)
R2 GatewayAgentService; C:\Program Files\OO Software\Shared\GatewayAgent\ooemcgats.exe [311296 2010-07-05] (O&O Software GmbH)
S2 KMService; C:\Windows\system32\srvany.exe [8192 2003-04-18] ()
R2 Kodak AiO Network Discovery Service; E:\Kodak Drucker\AiO\Center\EKAiOHostService.exe [395640 2013-03-15] (Eastman Kodak Company)
R2 Kodak AiO Status Monitor Service; E:\Kodak Drucker\AiO\StatusMonitor\EKPrinterSDK.exe [780152 2013-01-15] (Eastman Kodak Company)
R2 McAfee SiteAdvisor Service; C:\Program Files\McAfee\SiteAdvisor\McSACore.exe [103112 2013-11-07] (McAfee, Inc.)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.130\McCHSvc.exe [235216 2013-09-06] (McAfee, Inc.)
S3 npggsvc; C:\Windows\system32\GameMon.des [3453712 2009-12-16] (INCA Internet Co., Ltd.)
R2 OODefragAgent; C:\Program Files\OO Software\Defrag\oodag.exe [2397512 2010-09-30] (O&O Software GmbH)
R2 PassThru Service; C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe [80896 2010-09-16] ()
R2 SBSDWSCService; C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe [1153368 2009-01-26] (Safer Networking Ltd.)
R2 Secunia PSI Agent; C:\Program Files\Secunia\PSI\PSIA.exe [1228504 2013-11-04] (Secunia)
R2 Secunia Update Agent; C:\Program Files\Secunia\PSI\sua.exe [660184 2013-11-04] (Secunia)
R2 STRATO HiDrive Service; E:\Strato\Webspace\STRATO HiDrive Service.exe [32768 2011-11-15] (STRATO)
==================== Drivers (Whitelisted) ====================
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [90400 2013-12-18] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [135648 2013-12-18] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-12-01] (Avira Operations GmbH & Co. KG)
S3 GT680x; C:\Windows\System32\Drivers\gt680x.sys [17504 2003-02-18] ( )
R0 hotcore3; C:\Windows\System32\DRIVERS\hotcore3.sys [40560 2010-05-28] (Paragon Software Group)
S3 hxctlflt; C:\Windows\System32\Drivers\hxctlflt.sys [99968 2009-02-08] (Guillemot Corporation)
S3 Ph3xIB32; C:\Windows\System32\DRIVERS\Ph3xIB32.sys [1131136 2007-04-03] (Philips Semiconductors GmbH)
R3 PSI; C:\Windows\System32\DRIVERS\psi_mf_x86.sys [16024 2013-11-04] (Secunia)
R3 RTL8187B; C:\Windows\System32\DRIVERS\wg111v3.sys [289280 2007-12-28] (NETGEAR Inc. )
R1 RtlProt; C:\Windows\System32\DRIVERS\rtlprot.sys [25896 2007-04-23] (Windows (R) Codename Longhorn DDK provider)
S3 s1018obex; C:\Windows\System32\DRIVERS\s1018obex.sys [104616 2008-11-04] (MCCI Corporation)
S3 SNP2STD; C:\Windows\System32\DRIVERS\snp2sxp.sys [12067328 2008-02-13] ()
S3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [3482112 2009-04-22] ()
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [697328 2010-10-03] ()
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2013-08-05] (Avira GmbH)
R3 tap0901; C:\Windows\System32\DRIVERS\tap0901.sys [25984 2011-01-08] (The OpenVPN Project)
U5 AppMgmt; C:\Windows\system32\svchost.exe [21504 2008-01-21] (Microsoft Corporation)
S3 catchme; \??\C:\Users\AMANTE~1\AppData\Local\Temp\catchme.sys [x]
S3 IpInIp; system32\DRIVERS\ipinip.sys [x]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [x]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [x]
S3 RTHDMIAzAudService; system32\drivers\RtHDMIV.sys [x]
S3 XDva360; \??\C:\Windows\system32\XDva360.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-12-22 15:48 - 2013-12-22 15:48 - 00072773 _____ C:\Users\amantes79\Desktop\JRT.txt
2013-12-22 15:46 - 2013-12-22 15:46 - 00000000 ____D C:\Windows\ERUNT
2013-12-22 15:32 - 2013-12-22 15:34 - 00000000 ____D C:\AdwCleaner
2013-12-22 14:57 - 2013-12-22 14:57 - 00000906 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-12-22 14:57 - 2013-12-22 14:57 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware
2013-12-22 14:57 - 2013-04-04 14:50 - 00022856 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2013-12-22 14:40 - 2013-12-22 14:40 - 00000374 _____ C:\Windows\system32\Drivers\etc\hosts.ics
2013-12-21 20:19 - 2013-12-21 20:30 - 00000000 ____D C:\Users\amantes79\Desktop\IPHONE
2013-12-21 20:19 - 2013-12-21 20:21 - 30239833 _____ C:\Users\amantes79\Desktop\Fritzi und Bronze 21.12.2013.mp4
2013-12-21 20:06 - 2013-12-21 20:07 - 00000000 ____D C:\Users\amantes79\Documents\Any Video Converter
2013-12-21 20:05 - 2013-12-21 13:47 - 409731072 _____ C:\Users\amantes79\Desktop\00008.avi
2013-12-21 20:02 - 2013-12-22 14:39 - 00000000 ____D C:\Program Files\McAfee
2013-12-21 20:02 - 2013-12-21 20:02 - 00001006 _____ C:\Users\amantes79\Desktop\Any Video Converter 5.lnk
2013-12-21 20:02 - 2013-12-21 20:02 - 00000000 ____D C:\Program Files\Common Files\McAfee
2013-12-21 19:49 - 2013-12-21 20:14 - 00000000 ____D C:\Users\amantes79\Desktop\Neue Serie
2013-12-21 19:07 - 2013-12-21 19:07 - 00013337 _____ C:\ComboFix.txt
2013-12-21 19:01 - 2013-12-21 19:07 - 00000000 ____D C:\ComboFix
2013-12-21 17:44 - 2013-12-21 17:44 - 05155033 ____R (Swearware) C:\Users\amantes79\Desktop\ComboFix.exe
2013-12-18 23:54 - 2013-11-15 00:13 - 12344320 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-12-18 23:54 - 2013-11-14 23:50 - 09739264 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-12-18 23:54 - 2013-11-14 23:50 - 01806848 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-12-18 23:54 - 2013-11-14 23:43 - 01105408 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-12-18 23:54 - 2013-11-14 23:42 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-12-18 23:54 - 2013-11-14 23:42 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-12-18 23:54 - 2013-11-14 23:41 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-12-18 23:54 - 2013-11-14 23:40 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-12-18 23:54 - 2013-11-14 23:38 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-12-18 23:54 - 2013-11-14 23:38 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-12-18 23:54 - 2013-11-14 23:38 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-12-18 23:54 - 2013-11-14 23:37 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-12-18 23:54 - 2013-11-14 23:36 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-12-18 23:54 - 2013-11-14 23:36 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-12-18 23:54 - 2013-11-14 23:35 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-12-18 23:54 - 2013-11-14 23:32 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-12-18 22:10 - 2013-10-30 03:12 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\SysFxUI.dll
2013-12-18 22:10 - 2013-10-30 02:43 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2013-12-18 22:10 - 2013-10-30 01:43 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2013-12-18 22:10 - 2013-10-30 01:35 - 02050560 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-12-18 22:10 - 2013-10-22 08:19 - 00158208 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2013-12-18 22:10 - 2013-10-11 03:08 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2013-12-18 22:10 - 2013-10-11 03:08 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2013-12-18 22:10 - 2013-10-11 03:08 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wshcon.dll
2013-12-18 22:10 - 2013-10-11 01:35 - 00155648 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2013-12-18 22:10 - 2013-10-11 01:35 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2013-12-07 10:12 - 2013-12-07 10:12 - 00000846 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2013-12-07 09:13 - 2013-12-07 09:13 - 00000000 ____D C:\Users\amantes79\AppData\Local\Secunia PSI
2013-12-07 09:13 - 2013-12-07 09:13 - 00000000 ____D C:\Program Files\Secunia
2013-12-01 22:23 - 2013-12-01 22:23 - 00029716 _____ C:\Users\amantes79\Desktop\Ü-Ei Paket.html
2013-12-01 14:08 - 2013-12-22 15:19 - 00006704 _____ C:\Windows\PFRO.log
2013-11-24 17:12 - 2013-11-24 17:12 - 00000000 ____D C:\ProgramData\Oracle
2013-11-24 16:39 - 2013-11-24 16:39 - 00000000 ____D C:\Program Files\Common Files\Java
2013-11-24 16:38 - 2013-10-08 07:50 - 00094632 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2013-11-24 16:38 - 2013-10-08 07:46 - 00264616 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2013-11-24 16:38 - 2013-10-08 07:46 - 00175016 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2013-11-24 16:38 - 2013-10-08 07:46 - 00174504 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2013-11-24 16:37 - 2013-11-24 16:38 - 00004874 _____ C:\Windows\system32\jupdate-1.7.0_45-b18.log
==================== One Month Modified Files and Folders =======
2013-12-22 15:56 - 2012-04-01 10:54 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-12-22 15:49 - 2013-08-14 21:32 - 00001104 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-12-22 15:48 - 2013-12-22 15:48 - 00072773 _____ C:\Users\amantes79\Desktop\JRT.txt
2013-12-22 15:46 - 2013-12-22 15:46 - 00000000 ____D C:\Windows\ERUNT
2013-12-22 15:44 - 2013-06-20 17:04 - 01862693 _____ C:\Windows\WindowsUpdate.log
2013-12-22 15:42 - 2008-01-21 08:16 - 01483386 _____ C:\Windows\system32\PerfStringBackup.INI
2013-12-22 15:37 - 2013-11-18 22:39 - 00071328 _____ C:\Windows\setupact.log
2013-12-22 15:36 - 2013-08-14 21:32 - 00001100 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-12-22 15:36 - 2011-01-07 12:53 - 00951896 _____ C:\Windows\system32\oodbs.lor
2013-12-22 15:36 - 2010-08-22 07:49 - 00000000 ____D C:\ProgramData\Kodak
2013-12-22 15:36 - 2010-01-05 16:17 - 00065536 _____ C:\Windows\system32\Ikeext.etl
2013-12-22 15:36 - 2006-11-02 14:01 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-12-22 15:36 - 2006-11-02 13:47 - 00003712 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2013-12-22 15:36 - 2006-11-02 13:47 - 00003712 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2013-12-22 15:34 - 2013-12-22 15:32 - 00000000 ____D C:\AdwCleaner
2013-12-22 15:34 - 2013-07-23 10:49 - 00000000 ____D C:\Users\amantes79\AppData\Roaming\Common
2013-12-22 15:34 - 2010-01-04 23:58 - 00000000 ____D C:\Users\amantes79
2013-12-22 15:34 - 2006-11-02 14:01 - 00032530 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-12-22 15:20 - 2006-11-02 12:18 - 00000000 ____D C:\Windows\tracing
2013-12-22 15:19 - 2013-12-01 14:08 - 00006704 _____ C:\Windows\PFRO.log
2013-12-22 15:19 - 2010-01-11 13:29 - 00000000 ____D C:\Windows\PCHEALTH
2013-12-22 14:57 - 2013-12-22 14:57 - 00000906 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-12-22 14:57 - 2013-12-22 14:57 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware
2013-12-22 14:40 - 2013-12-22 14:40 - 00000374 _____ C:\Windows\system32\Drivers\etc\hosts.ics
2013-12-22 14:39 - 2013-12-21 20:02 - 00000000 ____D C:\Program Files\McAfee
2013-12-21 20:30 - 2013-12-21 20:19 - 00000000 ____D C:\Users\amantes79\Desktop\IPHONE
2013-12-21 20:29 - 2010-01-13 14:19 - 00000000 ____D C:\Users\amantes79\AppData\Roaming\vlc
2013-12-21 20:21 - 2013-12-21 20:19 - 30239833 _____ C:\Users\amantes79\Desktop\Fritzi und Bronze 21.12.2013.mp4
2013-12-21 20:14 - 2013-12-21 19:49 - 00000000 ____D C:\Users\amantes79\Desktop\Neue Serie
2013-12-21 20:07 - 2013-12-21 20:06 - 00000000 ____D C:\Users\amantes79\Documents\Any Video Converter
2013-12-21 20:02 - 2013-12-21 20:02 - 00001006 _____ C:\Users\amantes79\Desktop\Any Video Converter 5.lnk
2013-12-21 20:02 - 2013-12-21 20:02 - 00000000 ____D C:\Program Files\Common Files\McAfee
2013-12-21 20:02 - 2013-08-11 04:42 - 00000000 ____D C:\Users\amantes79\AppData\Roaming\Anvsoft
2013-12-21 20:02 - 2012-10-09 05:26 - 00000000 ____D C:\ProgramData\McAfee
2013-12-21 20:02 - 2010-10-03 20:48 - 00000000 ____D C:\Program Files\AnvSoft
2013-12-21 19:07 - 2013-12-21 19:07 - 00013337 _____ C:\ComboFix.txt
2013-12-21 19:07 - 2013-12-21 19:01 - 00000000 ____D C:\ComboFix
2013-12-21 19:07 - 2013-07-31 11:56 - 00000000 ____D C:\Qoobox
2013-12-21 19:06 - 2006-11-02 11:23 - 00000215 _____ C:\Windows\system.ini
2013-12-21 17:44 - 2013-12-21 17:44 - 05155033 ____R (Swearware) C:\Users\amantes79\Desktop\ComboFix.exe
2013-12-21 16:40 - 2013-06-20 17:00 - 00559936 _____ C:\Windows\system32\FNTCACHE.DAT
2013-12-21 13:47 - 2013-12-21 20:05 - 409731072 _____ C:\Users\amantes79\Desktop\00008.avi
2013-12-18 23:58 - 2013-07-24 02:03 - 00000000 ____D C:\Windows\system32\MRT
2013-12-18 23:58 - 2010-03-17 22:15 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-12-18 23:55 - 2006-11-02 11:24 - 88123800 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2013-12-18 22:11 - 2012-04-01 10:54 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2013-12-18 22:11 - 2011-05-20 23:09 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2013-12-18 22:10 - 2011-02-11 19:46 - 00000000 ____D C:\Program Files\Common Files\Adobe AIR
2013-12-18 22:05 - 2013-08-05 19:25 - 00135648 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2013-12-18 22:05 - 2013-08-05 19:25 - 00090400 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2013-12-10 06:41 - 2013-08-31 22:34 - 00000000 ____D C:\Users\amantes79\Desktop\Ü-Ei Micha
2013-12-07 20:43 - 2012-09-03 10:19 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2013-12-07 10:16 - 2010-02-05 15:42 - 00000000 ____D C:\Users\amantes79\Desktop\1
2013-12-07 10:12 - 2013-12-07 10:12 - 00000846 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2013-12-07 10:12 - 2013-08-18 13:50 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-12-07 10:11 - 2010-01-13 14:45 - 00000776 _____ C:\Users\Public\Desktop\Winamp.lnk
2013-12-07 10:11 - 2010-01-13 14:45 - 00000000 ____D C:\Users\amantes79\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Winamp Anwendungserkennung
2013-12-07 10:11 - 2010-01-13 14:45 - 00000000 ____D C:\Program Files\Winamp Detect
2013-12-07 10:11 - 2010-01-13 14:44 - 00000000 ____D C:\Users\amantes79\AppData\Roaming\Winamp
2013-12-07 10:11 - 2010-01-13 14:44 - 00000000 ____D C:\Program Files\Winamp
2013-12-07 10:11 - 2010-01-13 14:44 - 00000000 ____D C:\Program Files\Common Files\PX Storage Engine
2013-12-07 09:21 - 2010-10-03 20:38 - 00001650 _____ C:\Users\Public\Desktop\ImgBurn.lnk
2013-12-07 09:21 - 2010-01-11 12:26 - 00000859 _____ C:\Users\Public\Desktop\VLC media player.lnk
2013-12-07 09:13 - 2013-12-07 09:13 - 00000000 ____D C:\Users\amantes79\AppData\Local\Secunia PSI
2013-12-07 09:13 - 2013-12-07 09:13 - 00000000 ____D C:\Program Files\Secunia
2013-12-07 09:00 - 2011-05-10 21:21 - 00000000 ____D C:\ProgramData\AAV
2013-12-01 22:23 - 2013-12-01 22:23 - 00029716 _____ C:\Users\amantes79\Desktop\Ü-Ei Paket.html
2013-12-01 15:38 - 2011-09-11 15:21 - 00002617 _____ C:\Users\amantes79\Desktop\Microsoft Word 2010.lnk
2013-12-01 15:02 - 2013-08-25 19:13 - 00000000 ____D C:\Users\amantes79\Desktop\Ü-Ei Figuren Paket
2013-12-01 14:16 - 2013-08-05 19:25 - 00037352 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2013-11-24 17:12 - 2013-11-24 17:12 - 00000000 ____D C:\ProgramData\Oracle
2013-11-24 16:39 - 2013-11-24 16:39 - 00000000 ____D C:\Program Files\Common Files\Java
2013-11-24 16:38 - 2013-11-24 16:37 - 00004874 _____ C:\Windows\system32\jupdate-1.7.0_45-b18.log
2013-11-24 16:38 - 2010-07-03 14:08 - 00000000 ____D C:\Program Files\Java
2013-11-24 16:36 - 2010-01-06 15:11 - 00000000 ____D C:\Users\amantes79\AppData\Local\Adobe
Files to move or delete:
====================
C:\Users\amantes79\AppData\Roaming\desktop.ini
C:\Users\amantes79\jagex_runescape_preferences.dat
C:\Users\amantes79\jagex_runescape_preferences2.dat
Some content of TEMP:
====================
C:\Users\amantes79\AppData\Local\temp\avgnt.exe
C:\Users\amantes79\AppData\Local\temp\Quarantine.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-12-22 15:46
==================== End Of Log ============================ --- --- ---
--- --- ---
--- --- ---
Danke für deine hilfe und einen schönen 4. Advent |