Hallo,
also die Virenscanner (Antivir, Adaware, Windows) haben bei ihren regelmäßigen Scans nichts gefunden, nur Antivir hat im Echtzeitscan zwischendurch mal etwas angezeigt.
Auszug hier: Code:
Exportierte Ereignisse:
18.02.2014 13:05 [Echtzeit-Scanner] Malware gefunden
In der Datei
'C:\Windows\Temp\f333eea7-9e4e-4055-9157-d2da3ae506e9\tmp00001fca\tmp0001a998'
wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan]
gefunden.
Ausgeführte Aktion: Zugriff verweigern
17.02.2014 23:12 [Echtzeit-Scanner] Malware gefunden
In der Datei
'C:\Windows\Temp\f333eea7-9e4e-4055-9157-d2da3ae506e9\tmp00001fca\tmp0000da22'
wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan]
gefunden.
Ausgeführte Aktion: Zugriff verweigern
16.02.2014 22:42 [Echtzeit-Scanner] Malware gefunden
In der Datei
'C:\Windows\Temp\2e9c80af-debf-432c-9c4e-7d11422a0649\tmp00006e1b\tmp0001f2ac'
wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan]
gefunden.
Ausgeführte Aktion: Zugriff verweigern
16.02.2014 22:41 [Echtzeit-Scanner] Malware gefunden
In der Datei
'C:\Windows\Temp\2e9c80af-debf-432c-9c4e-7d11422a0649\tmp00006e1b\tmp0001ecc2'
wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan]
gefunden.
Ausgeführte Aktion: Zugriff verweigern
16.02.2014 22:41 [Echtzeit-Scanner] Malware gefunden
In der Datei
'C:\Windows\Temp\2e9c80af-debf-432c-9c4e-7d11422a0649\tmp00006e1b\tmp0001ecc2'
wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan]
gefunden.
Ausgeführte Aktion: Zugriff verweigern
16.02.2014 18:47 [Echtzeit-Scanner] Malware gefunden
In der Datei
'C:\Windows\Temp\2e9c80af-debf-432c-9c4e-7d11422a0649\tmp00006e1b\tmp00016e91'
wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan]
gefunden.
Ausgeführte Aktion: Zugriff verweigern
16.02.2014 18:47 [Echtzeit-Scanner] Malware gefunden
In der Datei
'C:\Windows\Temp\2e9c80af-debf-432c-9c4e-7d11422a0649\tmp00006e1b\tmp00016e91'
wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan]
gefunden.
Ausgeführte Aktion: Zugriff verweigern
16.02.2014 18:46 [Echtzeit-Scanner] Malware gefunden
In der Datei
'C:\Windows\Temp\2e9c80af-debf-432c-9c4e-7d11422a0649\tmp00006e1b\tmp00016773'
wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan]
gefunden.
Ausgeführte Aktion: Zugriff verweigern
16.02.2014 00:25 [Echtzeit-Scanner] Malware gefunden
In der Datei
'C:\Windows\Temp\2e9c80af-debf-432c-9c4e-7d11422a0649\tmp00006e1b\tmp0000ea89'
wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan]
gefunden.
Ausgeführte Aktion: Zugriff verweigern
13.02.2014 14:17 [Echtzeit-Scanner] Malware gefunden
In der Datei
'C:\Windows\Temp\76a9919b-9404-4d45-aa60-4bdb1f566a44\tmp0000219c\tmp00017b2f'
wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan]
gefunden.
Ausgeführte Aktion: Zugriff verweigern
08.02.2014 22:11 [Echtzeit-Scanner] Malware gefunden
In der Datei
'C:\Windows\Temp\67e87849-c3d8-48cc-ad66-c46f57a13721\tmp00004d29\tmp0001fdda'
wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan]
gefunden.
Ausgeführte Aktion: Zugriff verweigern
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 16-02-2014
Ran by Compi (administrator) on PC on 18-02-2014 00:22:22
Running from C:\Users\Compi\Desktop
Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) OS Language: German Standard
Internet Explorer Version 9
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Microsoft Corporation) C:\Windows\system32\SLsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCui.exe
(Hewlett-Packard Company) C:\hp\support\hpsysdrv.exe
(OsdMaestro) C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe
(Realtek Semiconductor) C:\Windows\RtHDVCpl.exe
(Microsoft Corporation) C:\Windows\WindowsMobile\wmdSync.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Hewlett-Packard) C:\Program Files\HP\HP Software Update\hpwuschd2.exe
() C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareService.exe
(PixArt Imaging Incorporation) C:\Windows\PixArt\Pac207\Monitor.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Lavasoft) C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe
(Lavasoft) C:\ProgramData\Search Protection\SearchProtection.exe
() C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareTray.exe
(Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(Microsoft Corporation) C:\Windows\ehome\ehmsas.exe
() C:\Users\Compi\AppData\Local\Program Files\Amazon\MP3 Downloader\AmazonMP3DownloaderHelper.exe
(Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
(Sony Corporation) C:\Program Files\Sony\PMB\PMBDeviceInfoProvider.exe
(Skype Technologies S.A.) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(Hewlett-Packard Company) C:\hp\kbd\kbd.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Hewlett-Packard) c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe
(Adobe Systems, Inc.) C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe
(Google Inc.) C:\Users\Compi\AppData\Local\Google\Update\GoogleUpdate.exe
(Avira Operations GmbH & Co. KG) C:\program files\avira\antivir desktop\avcenter.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [Windows Defender] - C:\Program Files\Windows Defender\MSASCui.exe [1008184 2008-01-19] (Microsoft Corporation)
HKLM\...\Run: [hpsysdrv] - c:\hp\support\hpsysdrv.exe [65536 2007-04-18] (Hewlett-Packard Company)
HKLM\...\Run: [OsdMaestro] - C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe [118784 2007-02-15] (OsdMaestro)
HKLM\...\Run: [RtHDVCpl] - C:\Windows\RtHDVCpl.exe [4874240 2008-01-15] (Realtek Semiconductor)
HKLM\...\Run: [HP Health Check Scheduler] - [ProgramFilesFolder]Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
HKLM\...\Run: [SunJavaUpdateReg] - C:\Windows\system32\jureg.exe [54936 2007-04-07] (Sun Microsystems, Inc.)
HKLM\...\Run: [Windows Mobile-based device management] - C:\Windows\WindowsMobile\wmdSync.exe [215552 2006-11-02] (Microsoft Corporation)
HKLM\...\Run: [Waiting1210] - C:\Windows\StiD1210.exe
HKLM\...\Run: [HP Software Update] - C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [49208 2010-06-09] (Hewlett-Packard)
HKLM\...\Run: [APSDaemon] - C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM\...\Run: [Monitor] - C:\Windows\PixArt\PAC207\Monitor.exe [319488 2006-11-03] (PixArt Imaging Incorporation)
HKLM\...\Run: [KBD] - C:\HP\KBD\KbdStub.EXE [65536 2006-12-08] ()
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM\...\Run: [QuickTime Task] - C:\Program Files\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM\...\Run: [] - [X]
HKLM\...\Run: [avgnt] - C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [684600 2013-12-17] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM\...\Run: [iTunesHelper] - C:\Program Files\iTunes\iTunesHelper.exe [152392 2013-11-02] (Apple Inc.)
HKLM\...\Run: [Ad-Aware Browsing Protection] - C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe [559696 2013-09-27] (Lavasoft)
HKLM\...\Run: [Search Protection] - C:\ProgramData\Search Protection\SearchProtection.exe [943016 2013-06-13] (Lavasoft)
HKLM\...\Run: [AdAwareTray] - C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareTray.exe [3643224 2014-01-23] ()
HKU\S-1-5-19\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\S-1-5-20\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\S-1-5-21-4186471634-517641523-4164239210-1000\...\Run: [ehTray.exe] - C:\Windows\ehome\ehTray.exe [125952 2008-01-19] (Microsoft Corporation)
HKU\S-1-5-21-4186471634-517641523-4164239210-1000\...\Run: [HPADVISOR] - C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe view=DOCKVIEW,SYSTRAY
HKU\S-1-5-21-4186471634-517641523-4164239210-1000\...\Run: [Google Update] - C:\Users\Compi\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2011-12-04] (Google Inc.)
HKU\S-1-5-21-4186471634-517641523-4164239210-1000\...\Run: [MobileDocuments] - C:\Program Files\Common Files\Apple\Internet Services\ubd.exe
HKU\S-1-5-21-4186471634-517641523-4164239210-1000\...\Run: [EPSON Stylus DX7400 Series] - C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICDE.EXE [182272 2007-04-12] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-4186471634-517641523-4164239210-1000\...\Run: [AmazonMP3DownloaderHelper] - C:\Users\Compi\AppData\Local\Program Files\Amazon\MP3 Downloader\AmazonMP3DownloaderHelper.exe [400704 2013-05-22] ()
HKU\S-1-5-21-4186471634-517641523-4164239210-1000\...\Run: [WMPNSCFG] - C:\Program Files\Windows Media Player\WMPNSCFG.exe [202240 2008-01-19] (Microsoft Corporation)
HKU\S-1-5-21-4186471634-517641523-4164239210-1000\...\MountPoints2: {e347ad57-ad8a-11e0-b8f9-001e8c76ee48} - K:\LaunchU3.exe -a
Startup: C:\Users\Compi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk
ShortcutTarget: OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk -> C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www1.delta-search.com/?babsrc=HP_ss&mntrId=5AA5001B2FCD9A83&affID=121563&tt=110713_91114&tsp=4943
HKCU\Software\Microsoft\Internet Explorer\Main,ICQ Search = hxxp://www.icq.com/search/results.php?q={searchTerms}&ch_id=osd
SearchScopes: HKCU - DefaultScope {3BD44F0E-0596-4008-AEE0-45D47E3A8F0E} URL = hxxp://securedsearch2.lavasoft.com/results.php?pr=vmn&id=adawaretb&v=3_8&idate=2014-01-30&hsimp=yhs-lavasoft&ent=ch&q={searchTerms}
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://www1.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=5AA5001B2FCD9A83&affID=121563&tt=110713_91114&tsp=4943
SearchScopes: HKCU - {3BD44F0E-0596-4008-AEE0-45D47E3A8F0E} URL = hxxp://securedsearch2.lavasoft.com/results.php?pr=vmn&id=adawaretb&v=3_8&idate=2014-01-30&hsimp=yhs-lavasoft&ent=ch&q={searchTerms}
BHO: No Name - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - No File
BHO: Ad-Aware Security Add-on - {6c97a91e-4524-4019-86af-2aa2d567bf5c} - C:\Program Files\Lavasoft\AdAware SecureSearch Toolbar\adawareDx.dll ()
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
BHO: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
Toolbar: HKLM - Ad-Aware Security Add-on - {6c97a91e-4524-4019-86af-2aa2d567bf5c} - C:\Program Files\Lavasoft\AdAware SecureSearch Toolbar\adawareDx.dll ()
Toolbar: HKCU - No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_01-windows-i586.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab
DPF: {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_01-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_01-windows-i586.cab
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll (Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF ProfilePath: C:\Users\Compi\AppData\Roaming\Mozilla\Firefox\Profiles\ap10hkto.default
FF user.js: detected! => C:\Users\Compi\AppData\Roaming\Mozilla\Firefox\Profiles\ap10hkto.default\user.js
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_44.dll ()
FF Plugin: @Apple.com/iTunes,version=1.0 - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin: @java.com/DTPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @nvidia.com/3DVision - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin: @nvidia.com/3DVisionStreaming - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Compi\AppData\Local\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Compi\AppData\Local\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: amazon.com/AmazonMP3DownloaderPlugin - C:\Users\Compi\AppData\Local\Program Files\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin10181.dll (Amazon.com, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPOFF12.DLL (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF SearchPlugin: C:\Users\Compi\AppData\Roaming\Mozilla\Firefox\Profiles\ap10hkto.default\searchplugins\babylon.xml
FF SearchPlugin: C:\Users\Compi\AppData\Roaming\Mozilla\Firefox\Profiles\ap10hkto.default\searchplugins\BrowserDefender.xml
FF SearchPlugin: C:\Users\Compi\AppData\Roaming\Mozilla\Firefox\Profiles\ap10hkto.default\searchplugins\delta.xml
FF SearchPlugin: C:\Users\Compi\AppData\Roaming\Mozilla\Firefox\Profiles\ap10hkto.default\searchplugins\icqplugin.xml
FF SearchPlugin: C:\Users\Compi\AppData\Roaming\Mozilla\Firefox\Profiles\ap10hkto.default\searchplugins\searchplugins-backup
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\adawaretb.xml
FF Extension: Snap Links - C:\Users\Compi\AppData\Roaming\Mozilla\Firefox\Profiles\ap10hkto.default\Extensions\snaplinks@snaplinks.net [2008-09-15]
FF Extension: Microsoft .NET Framework Assistant - C:\Users\Compi\AppData\Roaming\Mozilla\Firefox\Profiles\ap10hkto.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b} [2010-11-18]
FF Extension: Ad-Aware Security Add-on - C:\Users\Compi\AppData\Roaming\Mozilla\Firefox\Profiles\ap10hkto.default\Extensions\{87934c42-161d-45bc-8cef-ef18abe2a30c} [2014-01-30]
FF Extension: DVDVideoSoft YouTube MP3 and Video Download - C:\Users\Compi\AppData\Roaming\Mozilla\Firefox\Profiles\ap10hkto.default\Extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}.xpi [2012-11-25]
FF Extension: ICQ Toolbar - C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07} [2014-02-16]
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2014-02-16]
FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} [2014-02-16]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ []
Chrome:
=======
CHR HomePage: hxxp://www1.delta-search.com/?babsrc=HP_ss&mntrId=5AA5001B2FCD9A83&affID=121563&tt=110713_91114&tsp=4943
CHR DefaultSearchKeyword: securesearch
CHR DefaultSearchProvider: SecureSearch
CHR DefaultSearchURL: hxxp://securedsearch2.lavasoft.com/results.php?pr=vmn&id=adawaretb&v=3_8&idate=2014-01-30&hsimp=yhs-lavasoft&ent=ch&q={searchTerms}
CHR DefaultNewTabURL:
CHR Extension: (Skype Click to Call) - C:\Users\Compi\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2014-02-09]
CHR Extension: (Google Wallet) - C:\Users\Compi\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-02-09]
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2012-10-02]
========================== Services (Whitelisted) =================
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [440376 2013-12-17] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [440376 2013-11-19] (Avira Operations GmbH & Co. KG)
R2 HP Health Check Service; c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [65536 2007-09-19] (Hewlett-Packard)
R2 LavasoftAdAwareService11; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareService.exe [651232 2014-01-23] ()
R2 Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [3064000 2012-10-02] (Skype Technologies S.A.)
==================== Drivers (Whitelisted) ====================
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [90400 2013-12-17] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [135648 2013-12-17] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-11-19] (Avira Operations GmbH & Co. KG)
S3 CAM1210; C:\Windows\System32\Drivers\cam1210.sys [93952 2007-03-15] (USB video camera)
R3 gzflt; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Antimalware Engine\2.6.0.0\gzflt.sys [154464 2013-07-17] (BitDefender LLC)
S3 optousb; C:\Windows\System32\DRIVERS\optousb.sys [18432 2009-11-25] (OPTO ELECTRONICS CO.,LTD.)
S3 optovcm; C:\Windows\System32\DRIVERS\optovcm.sys [26368 2009-11-25] (OPTO ELECTRONICS CO.,LTD.)
R3 PAC207; C:\Windows\System32\DRIVERS\PFC027.SYS [507136 2006-12-05] (PixArt Imaging Inc.)
R3 RTL8187B; C:\Windows\System32\DRIVERS\wg111v3.sys [348160 2009-10-14] (NETGEAR Inc. )
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2013-09-06] (Avira GmbH)
R3 Trufos; C:\Windows\System32\DRIVERS\Trufos.sys [340624 2013-07-17] (BitDefender S.R.L.)
S4 blbdrive; \SystemRoot\system32\drivers\blbdrive.sys [X]
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 Lavasoft Kernexplorer; \??\C:\Program Files\Lavasoft\Ad-Aware\KernExplorer.sys [X]
S0 Lbd; system32\DRIVERS\Lbd.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]
S3 PCD5SRVC{BD6912E3-AC9D80E8-05040000}; \??\C:\PROGRA~1\PC-DOC~1\PCD5SRVC.pkms [X]
S1 SBRE; \??\C:\Windows\system32\drivers\SBREdrv.sys [X]
S3 SymIMMP; system32\DRIVERS\SymIM.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-02-18 00:22 - 2014-02-18 00:24 - 00019931 _____ () C:\Users\Compi\Desktop\FRST.txt
2014-02-18 00:22 - 2014-02-18 00:22 - 00000000 ____D () C:\FRST
2014-02-18 00:20 - 2014-02-18 00:20 - 01141248 _____ (Farbar) C:\Users\Compi\Desktop\FRST.exe
2014-02-17 23:28 - 2014-02-17 23:28 - 00001068 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4186471634-517641523-4164239210-1000Core1cf2c2fa7486ba0.job
2014-02-16 18:32 - 2014-02-16 18:33 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-02-14 03:02 - 2014-02-05 09:58 - 12345344 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-02-14 03:02 - 2014-02-05 09:56 - 01806848 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-02-14 03:02 - 2014-02-05 09:53 - 09739264 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-02-14 03:02 - 2014-02-05 09:51 - 01105408 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-02-14 03:02 - 2014-02-05 09:50 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-02-14 03:02 - 2014-02-05 09:49 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-02-14 03:02 - 2014-02-05 09:49 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-02-14 03:02 - 2014-02-05 09:48 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-02-14 03:02 - 2014-02-05 09:48 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-02-14 03:02 - 2014-02-05 09:48 - 00421376 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-02-14 03:02 - 2014-02-05 09:48 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-02-14 03:02 - 2014-02-05 09:48 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-02-14 03:02 - 2014-02-05 09:47 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-02-14 03:02 - 2014-02-05 09:47 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-02-14 03:02 - 2014-02-05 09:47 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-02-14 03:02 - 2014-02-05 09:46 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-02-13 14:13 - 2013-12-05 03:12 - 01248768 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-02-06 17:42 - 2014-02-06 17:42 - 00000000 ____D () C:\Users\Compi\AppData\Local\{53BA7AFE-231B-40C7-869F-5637D265E469}
2014-02-06 17:23 - 2014-02-06 17:23 - 00000000 ____D () C:\Users\Compi\AppData\Local\{0C0E1A23-8A51-4E05-82F2-D9F2471AB986}
2014-02-04 15:02 - 2014-02-04 15:02 - 00000797 _____ () C:\Users\Compi\Desktop\Bereinigung.lnk
2014-02-03 11:57 - 2014-02-17 11:14 - 00329466 _____ () C:\Users\Compi\Desktop\Meine CEWE FOTOWELT2013.mcf
2014-02-03 11:57 - 2014-02-16 23:42 - 00329678 _____ () C:\Users\Compi\Desktop\Meine CEWE FOTOWELT2013.mcf~
2014-02-02 15:21 - 2013-12-18 21:04 - 00264616 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-02-02 15:20 - 2013-12-18 21:10 - 00094632 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2014-02-02 15:20 - 2013-12-18 21:04 - 00175016 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-02-02 15:20 - 2013-12-18 21:03 - 00174504 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-02-02 15:19 - 2014-02-02 15:20 - 00005315 _____ () C:\Windows\system32\jupdate-1.7.0_51-b13.log
2014-01-30 11:44 - 2014-01-30 11:44 - 00000000 ____D () C:\Users\Compi\AppData\Roaming\Lavasoft
2014-01-30 06:55 - 2014-01-30 06:55 - 00000000 ____D () C:\Users\Compi\AppData\Roaming\LavasoftStatistics
2014-01-30 00:45 - 2014-02-17 11:04 - 00002206 _____ () C:\Users\Public\Desktop\Ad-Aware Antivirus.lnk
2014-01-30 00:43 - 2014-02-01 15:43 - 00000000 ____D () C:\ProgramData\Search Protection
2014-01-30 00:42 - 2014-01-30 00:43 - 00000000 ____D () C:\Users\Compi\AppData\Local\adawarebp
2014-01-30 00:42 - 2014-01-30 00:42 - 00000000 ____D () C:\Users\Compi\AppData\Roaming\SecureSearch
2014-01-30 00:42 - 2014-01-30 00:42 - 00000000 ____D () C:\ProgramData\blekko toolbars
2014-01-30 00:42 - 2014-01-30 00:42 - 00000000 ____D () C:\ProgramData\Ad-Aware Browsing Protection
2014-01-30 00:38 - 2014-01-30 00:38 - 00000000 ____D () C:\Program Files\Common Files\Lavasoft
2014-01-30 00:36 - 2014-01-30 00:36 - 00000000 ____D () C:\ProgramData\Lavasoft
==================== One Month Modified Files and Folders =======
2014-02-18 00:24 - 2014-02-18 00:22 - 00019931 _____ () C:\Users\Compi\Desktop\FRST.txt
2014-02-18 00:22 - 2014-02-18 00:22 - 00000000 ____D () C:\FRST
2014-02-18 00:20 - 2014-02-18 00:20 - 01141248 _____ (Farbar) C:\Users\Compi\Desktop\FRST.exe
2014-02-17 23:28 - 2014-02-17 23:28 - 00001068 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4186471634-517641523-4164239210-1000Core1cf2c2fa7486ba0.job
2014-02-17 23:17 - 2008-01-11 09:48 - 01901508 _____ () C:\Windows\WindowsUpdate.log
2014-02-17 23:04 - 2006-11-02 13:47 - 00003568 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2014-02-17 23:04 - 2006-11-02 13:47 - 00003568 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2014-02-17 11:49 - 2012-10-28 14:54 - 00000000 ____D () C:\ProgramData\tmp
2014-02-17 11:14 - 2014-02-03 11:57 - 00329466 _____ () C:\Users\Compi\Desktop\Meine CEWE FOTOWELT2013.mcf
2014-02-17 11:04 - 2014-01-30 00:45 - 00002206 _____ () C:\Users\Public\Desktop\Ad-Aware Antivirus.lnk
2014-02-17 11:00 - 2012-08-01 16:09 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-02-17 11:00 - 2008-01-02 11:29 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-02-16 23:42 - 2014-02-03 11:57 - 00329678 _____ () C:\Users\Compi\Desktop\Meine CEWE FOTOWELT2013.mcf~
2014-02-16 23:24 - 2008-09-24 19:18 - 00000000 ____D () C:\Users\Compi\AppData\Roaming\Azureus
2014-02-16 23:09 - 2006-11-02 11:33 - 01542750 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-02-16 18:33 - 2014-02-16 18:32 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-02-14 04:09 - 2006-11-02 12:18 - 00000000 ____D () C:\Windows\Microsoft.NET
2014-02-14 03:34 - 2013-08-14 16:38 - 00000000 ____D () C:\Windows\system32\MRT
2014-02-14 03:29 - 2006-11-02 11:24 - 85946576 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2014-02-06 17:42 - 2014-02-06 17:42 - 00000000 ____D () C:\Users\Compi\AppData\Local\{53BA7AFE-231B-40C7-869F-5637D265E469}
2014-02-06 17:23 - 2014-02-06 17:23 - 00000000 ____D () C:\Users\Compi\AppData\Local\{0C0E1A23-8A51-4E05-82F2-D9F2471AB986}
2014-02-06 17:23 - 2006-11-02 13:52 - 00068158 _____ () C:\Windows\setupact.log
2014-02-06 17:16 - 2012-08-02 18:42 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-02-06 17:16 - 2012-04-06 15:44 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-02-06 17:16 - 2011-06-04 10:09 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-02-06 17:16 - 2008-08-28 22:41 - 00000000 ____D () C:\Users\Compi\AppData\Local\Adobe
2014-02-06 10:37 - 2008-08-28 22:11 - 00430316 _____ () C:\Windows\PFRO.log
2014-02-06 03:03 - 2006-11-02 12:18 - 00000000 ____D () C:\Windows\system32\de-DE
2014-02-05 14:05 - 2008-11-01 14:37 - 00002623 _____ () C:\Users\Compi\Desktop\Microsoft Word.lnk
2014-02-05 09:58 - 2014-02-14 03:02 - 12345344 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-02-05 09:56 - 2014-02-14 03:02 - 01806848 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-02-05 09:53 - 2014-02-14 03:02 - 09739264 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-02-05 09:51 - 2014-02-14 03:02 - 01105408 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-02-05 09:50 - 2014-02-14 03:02 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-02-05 09:49 - 2014-02-14 03:02 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-02-05 09:49 - 2014-02-14 03:02 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-02-05 09:48 - 2014-02-14 03:02 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-02-05 09:48 - 2014-02-14 03:02 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-02-05 09:48 - 2014-02-14 03:02 - 00421376 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-02-05 09:48 - 2014-02-14 03:02 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-02-05 09:48 - 2014-02-14 03:02 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-02-05 09:47 - 2014-02-14 03:02 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-02-05 09:47 - 2014-02-14 03:02 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-02-05 09:47 - 2014-02-14 03:02 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-02-05 09:46 - 2014-02-14 03:02 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-02-04 17:34 - 2013-12-21 11:51 - 00000000 ____D () C:\Users\Compi\Desktop\Chris
2014-02-04 15:07 - 2011-12-04 22:36 - 00002036 _____ () C:\Users\Compi\Desktop\Google Chrome.lnk
2014-02-04 15:02 - 2014-02-04 15:02 - 00000797 _____ () C:\Users\Compi\Desktop\Bereinigung.lnk
2014-02-03 11:53 - 2013-01-26 11:04 - 00001104 _____ () C:\Users\Public\Desktop\OnlineFotoservice.lnk
2014-02-03 11:53 - 2013-01-26 11:04 - 00001089 _____ () C:\Users\Public\Desktop\CEWE FOTOSCHAU.lnk
2014-02-02 15:20 - 2014-02-02 15:19 - 00005315 _____ () C:\Windows\system32\jupdate-1.7.0_51-b13.log
2014-02-02 15:20 - 2008-01-02 11:38 - 00000000 ____D () C:\Program Files\Java
2014-02-02 15:09 - 2008-01-02 11:38 - 00000000 ____D () C:\Program Files\Common Files\Adobe
2014-02-02 15:06 - 2008-01-02 11:54 - 00000000 ____D () C:\Windows\SMINST
2014-02-01 15:43 - 2014-01-30 00:43 - 00000000 ____D () C:\ProgramData\Search Protection
2014-01-30 11:44 - 2014-01-30 11:44 - 00000000 ____D () C:\Users\Compi\AppData\Roaming\Lavasoft
2014-01-30 06:55 - 2014-01-30 06:55 - 00000000 ____D () C:\Users\Compi\AppData\Roaming\LavasoftStatistics
2014-01-30 00:43 - 2014-01-30 00:42 - 00000000 ____D () C:\Users\Compi\AppData\Local\adawarebp
2014-01-30 00:43 - 2011-12-29 21:35 - 00000000 ____D () C:\Program Files\Lavasoft
2014-01-30 00:42 - 2014-01-30 00:42 - 00000000 ____D () C:\Users\Compi\AppData\Roaming\SecureSearch
2014-01-30 00:42 - 2014-01-30 00:42 - 00000000 ____D () C:\ProgramData\blekko toolbars
2014-01-30 00:42 - 2014-01-30 00:42 - 00000000 ____D () C:\ProgramData\Ad-Aware Browsing Protection
2014-01-30 00:38 - 2014-01-30 00:38 - 00000000 ____D () C:\Program Files\Common Files\Lavasoft
2014-01-30 00:36 - 2014-01-30 00:36 - 00000000 ____D () C:\ProgramData\Lavasoft
2014-01-29 14:55 - 2008-09-27 11:17 - 00000000 ____D () C:\Program Files\Steam
Files to move or delete:
====================
C:\Users\Compi\190.38_desktop_win7_winvista_32bit_international_whql.exe
C:\Users\Compi\Firefox Setup 9.0.1.exe
C:\Users\Compi\install_flash_player.exe
C:\Users\Compi\winamp5621_full_emusic-7plus_all.exe
Some content of TEMP:
====================
C:\Users\Compi\AppData\Local\Temp\99a070d0-03ee-4059-b10d-94c045cf9d40.exe
C:\Users\Compi\AppData\Local\Temp\avgnt.exe
C:\Users\Compi\AppData\Local\Temp\ICReinstall_Setup.exe
C:\Users\Compi\AppData\Local\Temp\install_flashplayer12x32_mssd_aaa_aih.exe
C:\Users\Compi\AppData\Local\Temp\swt-gdip-win32-3430.dll
C:\Users\Compi\AppData\Local\Temp\swt-win32-3430.dll
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\system32\winlogon.exe => MD5 is legit
C:\Windows\system32\wininit.exe => MD5 is legit
C:\Windows\system32\svchost.exe => MD5 is legit
C:\Windows\system32\services.exe => MD5 is legit
C:\Windows\system32\User32.dll => MD5 is legit
C:\Windows\system32\userinit.exe => MD5 is legit
C:\Windows\system32\rpcss.dll => MD5 is legit
C:\Windows\system32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-02-17 23:08
==================== End Of Log ============================ --- --- ---
--- --- ---
--- --- ---
addition.txt: Code:
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 16-02-2014
Ran by Compi at 2014-02-18 00:24:41
Running from C:\Users\Compi\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Ad-Aware Antivirus (Enabled - Up to date) {D87B6541-12A1-DAEA-0033-9B8057AAB996}
AV: Avira Desktop (Enabled - Up to date) {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
AS: Avira Desktop (Enabled - Up to date) {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
AS: Ad-Aware Antivirus (Enabled - Up to date) {631A84A5-349B-D564-3A83-A0F22C2DF32B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Ad-Aware Firewall (Disabled) {E040E464-58CE-DBB2-2B6C-32B5A979FEED}
==================== Installed Programs ======================
Update for Microsoft Office 2007 (KB2508958) (Version: - Microsoft)
Activation Assistant for the 2007 Microsoft Office suites (Version: - Microsoft Corporation)
Activation Assistant for the 2007 Microsoft Office suites (Version: 1.0.1 - Microsoft Corporation) Hidden
Ad-Aware Antivirus (Version: 11.1.5354.0 - Lavasoft)
Ad-Aware Security Add-on (Version: 3.8.0.2 - Lavasoft)
AdAwareInstaller (Version: 11.1.5354.0 - Lavasoft) Hidden
AdAwareUpdater (Version: 11.1.5354.0 - Lavasoft) Hidden
Adobe Flash Player 11 ActiveX (Version: 11.8.800.94 - Adobe Systems Incorporated)
Adobe Flash Player 12 Plugin (Version: 12.0.0.44 - Adobe Systems Incorporated)
Adobe Reader X (10.1.9) (Version: 10.1.9 - Adobe Systems Incorporated)
Amazon MP3-Downloader 1.0.18 (HKCU Version: 1.0.18 - Amazon Services LLC)
AntimalwareEngine (Version: 2.6.0.0 - Lavasoft) Hidden
Apple Application Support (Version: 2.3.6 - Apple Inc.)
Apple Mobile Device Support (Version: 7.0.0.117 - Apple Inc.)
Apple Software Update (Version: 2.1.3.127 - Apple Inc.)
Avira Free Antivirus (Version: 14.0.2.286 - Avira)
Azureus (Version: 2.5.0.4 - )
Bonjour (Version: 3.0.0.10 - Apple Inc.)
Cards_Calendar_OrderGift_DoMorePlugout (Version: 1.00.0000 - Hewlett-Packard) Hidden
Compatibility Pack für 2007 Office System (Version: 12.0.6612.1000 - Microsoft Corporation)
CyberLink DVD Suite Deluxe (Version: 5.5.1019 - CyberLink Corp.)
D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden
Day of Defeat: Source (Version: - Valve)
EPSON Scan (Version: - )
EPSON-Drucker-Software (Version: - SEIKO EPSON Corporation)
fotokasten comfort 5.0 (Version: - )
Free YouTube to MP3 Converter version 3.12.5.628 (Version: 3.12.5.628 - DVDVideoSoft Ltd.)
Google Chrome (HKCU Version: 32.0.1700.107 - Google Inc.)
Hardware Diagnose Tools (Version: 5.00.4589.14 - PC-Doctor, Inc.)
Hewlett-Packard Active Check (Version: 1.1.11.0 - Hewlett-Packard) Hidden
Hewlett-Packard Asset Agent for Health Check (Version: 2.0.62.5 - HP) Hidden
HP Active Support Library (Version: 2.3.0.2 - Hewlett-Packard)
HP Customer Experience Enhancements (Version: 5.4.0.2360 - Hewlett-Packard)
HP Customer Feedback (Version: 1.0.0 - Hewlett-Packard) Hidden
hp deskjet 950c series (nur entfernen) (Version: - )
HP Easy Setup - Frontend (Version: 5.4.0.2430 - Hewlett-Packard)
HP On-Screen Cap/Num/Scroll Lock Indicator (Version: - Hewlett-Packard)
HP Photosmart Essential 2.5 (Version: 1.02.0000 - Hewlett-Packard) Hidden
HP Photosmart Essential 2.5 (Version: 2.5 - HP)
HP Picasso Media Center Add-In (Version: 1.0.0 - HP) Hidden
HP Update (Version: 5.005.000.001 - Hewlett-Packard)
HPPhotoSmartPhotobookWebPack1 (Version: 1.00.0000 - Hewlett-Packard) Hidden
iCloud (Version: 2.1.2.8 - Apple Inc.)
ICQ7.4 (Version: 7.4 - ICQ)
IrfanView (remove only) (Version: - )
iTunes (Version: 11.1.3.8 - Apple Inc.)
Java 7 Update 51 (Version: 7.0.510 - Oracle)
Java Auto Updater (Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
Java(TM) SE Runtime Environment 6 Update 1 (Version: 1.6.0.10 - Sun Microsystems, Inc.)
Junk Mail filter update (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
LabelPrint (Version: 2.2.2209 - CyberLink Corp.)
LightScribe System Software (Version: 1.18.3.2 - LightScribe)
Mesh Runtime (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Messenger Companion (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Microsoft .NET Framework 3.5 Language Pack SP1 - DEU (Version: - Microsoft Corporation)
Microsoft .NET Framework 3.5 Language Pack SP1 - deu (Version: 3.5.30729 - Microsoft Corporation) Hidden
Microsoft .NET Framework 3.5 SP1 (Version: - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (Deutsch) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6012.5000 - Microsoft Corporation) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (Version: - Microsoft) Hidden
Microsoft Office Excel MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office File Validation Add-In (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Home and Student 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Home and Student 2007-Testversion (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Live Add-in 1.5 (Version: 2.0.4024.1 - Microsoft Corporation)
Microsoft Office OneNote MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint Viewer 2007 (German) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Proof (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Italian) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (German) 2007 (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (Version: - Microsoft) Hidden
Microsoft Office Shared MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office XP Professional mit FrontPage (Version: 10.0.6626.0 - Microsoft Corporation)
Microsoft Silverlight (Version: 5.1.20913.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Works (Version: 9.7.0621 - Microsoft Corporation)
mIRC (Version: 6.34 - mIRC Co. Ltd.)
Mozilla Firefox 27.0.1 (x86 en-US) (Version: 27.0.1 - Mozilla)
Mozilla Maintenance Service (Version: 27.0.1 - Mozilla)
MSVCRT (Version: 15.4.2862.0708 - Microsoft) Hidden
MSXML 4.0 SP2 (KB927978) (Version: 4.20.9841.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2721691) (Version: 4.30.2114.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (Version: 4.30.2117.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (Version: 4.30.2100.0 - Microsoft Corporation)
muvee autoProducer 6.1 (Version: 6.10.050 - muvee Technologies)
My HP Games (Version: HPCMPQ1902 - WildTangent)
NVIDIA 3D Vision Controller-Treiber 301.42 (Version: 301.42 - NVIDIA Corporation)
NVIDIA 3D Vision Treiber 311.06 (Version: 311.06 - NVIDIA Corporation)
NVIDIA Drivers (Version: 1.4 - NVIDIA Corporation)
NVIDIA Grafiktreiber 311.06 (Version: 311.06 - NVIDIA Corporation)
NVIDIA Install Application (Version: 2.1002.108.688 - NVIDIA Corporation) Hidden
NVIDIA PhysX (Version: 9.12.0213 - NVIDIA Corporation) Hidden
NVIDIA PhysX-Systemsoftware 9.12.0213 (Version: 9.12.0213 - NVIDIA Corporation)
NVIDIA Stereoscopic 3D Driver (Version: 7.17.13.1106 - NVIDIA Corporation) Hidden
NVIDIA Systemsteuerung 311.06 (Version: 311.06 - NVIDIA Corporation) Hidden
NVIDIA Update 1.11.3 (Version: 1.11.3 - NVIDIA Corporation)
NVIDIA Update Components (Version: 1.11.3 - NVIDIA Corporation) Hidden
OnlineFotoservice (Version: 5.1.3 - CEWE Stiftung u Co. KGaA)
Opticon USB Drivers Installer (Version: - )
Optimierte Multimedia-Tastatur-Lösung (Version: - Hewlett-Packard)
PMB (Version: 5.5.02.12220 - Sony Corporation)
Power2Go (Version: 5.6.3417 - CyberLink Corp.)
PowerDirector (Version: 6.5.2209 - CyberLink Corp.)
PowerDirector (Version: 6.5.2209 - CyberLink Corp.) Hidden
PSSWCORE (Version: 2.02.0000 - Hewlett-Packard) Hidden
Python 2.5 (Version: 2.5.150 - Martin v. Löwis)
QuickTime (Version: 7.74.80.86 - Apple Inc.)
Realtek High Definition Audio Driver (Version: 6.0.1.5548 - Realtek Semiconductor Corp.)
ScanEasy-Client 3.3 (Version: - GfK SE)
Segoe UI (Version: 15.4.2271.0615 - Microsoft Corp) Hidden
Skype Click to Call (Version: 6.3.11079 - Skype Technologies S.A.)
Skype™ 5.10 (Version: 5.10.116 - Skype Technologies S.A.)
SopCast 3.2.4 (Version: 3.2.4 - SopCast.com)
Steam (Version: 1.0.0.0 - Valve)
System Requirements Lab (Version: - )
Update for 2007 Microsoft Office System (KB967642) (Version: - Microsoft)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1 - Microsoft Corporation)
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (Version: - Microsoft)
Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition (Version: - Microsoft)
Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (Version: - Microsoft)
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (Version: - Microsoft)
Update für Microsoft Office Excel 2007 Help (KB963678) (Version: - Microsoft)
Update für Microsoft Office Powerpoint 2007 Help (KB963669) (Version: - Microsoft)
Update für Microsoft Office Word 2007 Help (KB963665) (Version: - Microsoft)
VideoToolkit01 (Version: 100.0.128.000 - Hewlett-Packard) Hidden
Visual C++ 2008 x86 Runtime - (v9.0.30729) (Version: 9.0.30729 - Microsoft Corporation) Hidden
Visual C++ 2008 x86 Runtime - v9.0.30729.01 (Version: 9.0.30729.01 - Microsoft Corporation)
VLC media player 0.9.2 (Version: 0.9.2 - VideoLAN Team)
Winamp (Version: 5.581 - Nullsoft, Inc)
Windows Live Communications Platform (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Essentials (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Essentials (Version: 15.4.3555.0308 - Microsoft Corporation)
Windows Live Family Safety (Version: 15.4.3555.0308 - Microsoft Corporation) Hidden
Windows Live Fotogalerie (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4232.0 - Microsoft Corporation) Hidden
Windows Live Installer (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mail (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mesh (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mesh ActiveX control for remote connections (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Messenger (Version: 15.4.3538.0513 - Microsoft Corporation) Hidden
Windows Live Messenger Companion Core (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live MIME IFilter (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Movie Maker (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Common (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Gallery (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live Remote Client (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Client Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Service (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Service Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live SOXE (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live Writer (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Writer Resources (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
WinRAR archiver (Version: - )
Yahoo! Detect (Version: - )
==================== Restore Points =========================
14-10-2013 12:25:53 Windows Update
18-10-2013 19:11:18 Windows Update
22-10-2013 14:58:52 Windows Update
28-10-2013 07:40:55 Windows Update
31-10-2013 21:25:02 Windows Update
05-11-2013 21:05:02 Windows Update
09-11-2013 15:28:50 Windows Update
10-11-2013 19:59:49 Installed Java 7 Update 45
12-11-2013 16:32:33 Windows Update
14-11-2013 14:16:01 Windows Update
18-11-2013 20:52:13 Gerätetreiber-Paketinstallation: FTDI USB-Controller
18-11-2013 20:52:58 Gerätetreiber-Paketinstallation: FTDI Anschlüsse (COM & LPT)
18-11-2013 20:54:00 Gerätetreiber-Paketinstallation: OPTO ELECTRONICS CO.,LTD Anschlüsse (COM & LPT)
18-11-2013 20:54:48 Gerätetreiber-Paketinstallation: ATEN Anschlüsse (COM & LPT)
19-11-2013 10:11:52 Windows Update
22-11-2013 21:50:58 Windows Update
29-11-2013 14:58:11 Windows Update
03-12-2013 12:24:38 Windows Update
06-12-2013 18:44:30 Windows Update
11-12-2013 20:43:34 Windows Update
12-12-2013 21:31:24 Windows Update
16-12-2013 22:35:19 DirectX wurde installiert
17-12-2013 22:13:09 Windows Update
18-12-2013 21:15:39 Gerätetreiber-Paketinstallation: Apple Netzwerkadapter
21-12-2013 10:08:25 Windows Update
24-12-2013 13:54:08 Windows Update
28-12-2013 16:27:54 Windows Update
01-01-2014 23:43:25 Windows Update
07-01-2014 22:31:01 Windows Update
15-01-2014 17:33:23 Windows Update
16-01-2014 02:00:43 Windows Update
20-01-2014 22:40:22 Windows Update
25-01-2014 14:51:42 Windows Update
28-01-2014 16:02:42 Windows Update
29-01-2014 23:36:26 AA11
02-02-2014 13:40:37 Windows Update
02-02-2014 14:17:40 Installed Java 7 Update 51
04-02-2014 14:52:17 Windows Update
06-02-2014 02:01:10 Windows Update
12-02-2014 16:05:57 Windows Update
14-02-2014 02:00:38 Windows Update
16-02-2014 22:02:31 Windows Update
16-02-2014 22:18:29 Windows Update
==================== Hosts content: ==========================
2006-11-02 11:23 - 2006-09-18 22:41 - 00000736 ____A C:\Windows\system32\Drivers\etc\hosts
::1 localhost
==================== Scheduled Tasks (whitelisted) =============
Task: {0411FD51-25CE-48A3-9C96-7C36D72B2CA7} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-4186471634-517641523-4164239210-1000UA => C:\Users\Compi\AppData\Local\Google\Update\GoogleUpdate.exe [2011-12-04] (Google Inc.)
Task: {1CC81347-6204-4B83-900C-01E02F50F067} - System32\Tasks\Microsoft\Windows\MobilePC\TMM
Task: {1DA935F6-753C-45D9-9442-5BA98FFF3E65} - System32\Tasks\PC-Doctor\Scheduled Maintanence => C:\Program Files\PC-Doctor 5 for Windows\RunProfiler.exe [2007-06-25] (PC-Doctor, Inc.)
Task: {302E2445-A1D1-4F56-BDF5-3EBEB0219B9D} - System32\Tasks\Microsoft\Windows\NetworkAccessProtection\NAPStatus UI
Task: {3B8D71C8-E830-4239-A24B-A6A0EEFA04C3} - System32\Tasks\JavaUpdateAdministrator => C:\Windows\system32\jusched.exe [2007-04-07] (Sun Microsystems, Inc.)
Task: {3BCDF251-CA5C-4045-A1FC-8FCEF9FBDC93} - System32\Tasks\Microsoft\Windows\Shell\CrawlStartPages
Task: {44980BEE-7809-44A9-AC24-D6E578A3B7DF} - System32\Tasks\Microsoft\Windows\RAC\RACAgent => C:\Windows\system32\RacAgent.exe [2008-01-19] (Microsoft Corporation)
Task: {455D7735-BD99-46CF-9985-2C7A0E9CD8AA} - System32\Tasks\BrowserDefendert => Sc.exe start BrowserDefendert
Task: {7C755252-ABDE-4D83-BBDE-38983AB53ECF} - System32\Tasks\Ad-Aware Update (Weekly) => C:\Program Files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe
Task: {8DA631DC-CC4A-45BC-A145-198A766C8451} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-06] (Adobe Systems Incorporated)
Task: {94DAAA53-16C3-4DAC-BDF5-FFE7157C3A0B} - System32\Tasks\Microsoft\Windows\Tcpip\WSHReset => C:\Windows\system32\netsh.exe [2006-11-02] (Microsoft Corporation)
Task: {A9DA264A-3717-4493-9D02-1A0A789FABB8} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {C3754270-2979-4AC6-9715-4DDF403CA94A} - System32\Tasks\JavaUpdateCompi => C:\Windows\system32\jusched.exe [2007-04-07] (Sun Microsystems, Inc.)
Task: {E5150B95-F9B4-4D5D-95A2-7EC1ACBA95F8} - System32\Tasks\Microsoft\Windows\Wireless\GatherWirelessInfo => C:\Windows\system32\gatherWirelessInfo.vbs [2008-01-05] ()
Task: {E593BD37-EEC1-49C6-ABA5-12C21201B150} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-4186471634-517641523-4164239210-1000Core => C:\Users\Compi\AppData\Local\Google\Update\GoogleUpdate.exe [2011-12-04] (Google Inc.)
Task: {EAF760A8-B1AD-4A4F-B67A-CAB4AF6E983A} - System32\Tasks\EPUpdater => C:\Users\Compi\AppData\Roaming\BABSOL~1\Shared\BabMaint.exe <==== ATTENTION
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4186471634-517641523-4164239210-1000Core1cf2c2fa7486ba0.job => C:\Users\Compi\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4186471634-517641523-4164239210-1000UA.job => C:\Users\Compi\AppData\Local\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2008-09-30 21:45 - 2007-09-20 17:34 - 00129024 _____ () C:\Program Files\WinRAR\rarext.dll
2011-11-01 23:26 - 2011-11-01 23:26 - 00087912 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2011-11-01 23:26 - 2011-11-01 23:26 - 01242472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2014-01-23 16:32 - 2014-01-23 16:32 - 03643224 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareTray.exe
2014-01-23 16:33 - 2014-01-23 16:33 - 00131920 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\pugixml.dll
2014-01-23 16:32 - 2014-01-23 16:32 - 01928008 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\RCF.dll
2014-01-23 16:32 - 2014-01-23 16:32 - 00107904 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\boost_filesystem-vc100-mt-1_55.dll
2014-01-23 16:33 - 2014-01-23 16:33 - 00022392 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\boost_system-vc100-mt-1_55.dll
2014-01-23 16:32 - 2014-01-23 16:32 - 00048512 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\boost_date_time-vc100-mt-1_55.dll
2014-01-23 16:33 - 2014-01-23 16:33 - 00087928 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\boost_thread-vc100-mt-1_55.dll
2014-01-23 16:32 - 2014-01-23 16:32 - 00030072 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\boost_chrono-vc100-mt-1_55.dll
2014-01-23 16:33 - 2014-01-23 16:33 - 00405880 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\boost_locale-vc100-mt-1_55.dll
2014-01-23 16:32 - 2014-01-23 16:32 - 00308064 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\HtmlFramework.dll
2014-01-23 16:33 - 2014-01-23 16:33 - 00122704 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\libssh2.dll
2014-01-23 16:33 - 2014-01-23 16:33 - 00148808 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\zlib.dll
2014-01-23 16:32 - 2014-01-23 16:32 - 00056664 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\DllStorage.dll
2014-01-23 16:32 - 2014-01-23 16:32 - 00789360 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareTrayDefaultSkin.dll
2014-01-23 16:32 - 2014-01-23 16:32 - 00118104 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\Localization.dll
2014-01-23 16:32 - 2014-01-23 16:32 - 00541008 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\SQLite.dll
2013-05-22 19:50 - 2013-05-22 19:50 - 00400704 _____ () C:\Users\Compi\AppData\Local\Program Files\Amazon\MP3 Downloader\AmazonMP3DownloaderHelper.exe
2014-02-16 18:32 - 2014-02-16 18:32 - 03578992 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll
2014-02-06 17:16 - 2014-02-06 17:16 - 16287624 _____ () C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_44.dll
2013-09-06 10:40 - 2013-09-06 10:39 - 00394824 _____ () C:\program files\avira\antivir desktop\sqlite3.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
==================== Disabled items from MSCONFIG ==============
MSCONFIG\startupreg: PMBVolumeWatcher => C:\Program Files\Sony\PMB\PMBVolumeWatcher.exe
MSCONFIG\startupreg: WinampAgent => "C:\Program Files\Winamp\winampa.exe"
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (02/17/2014 11:03:56 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 40367771
Error: (02/17/2014 11:03:56 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 40367771
Error: (02/17/2014 11:03:56 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (02/17/2014 11:03:54 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 40366679
Error: (02/17/2014 11:03:54 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 40366679
Error: (02/17/2014 11:03:54 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (02/17/2014 11:03:53 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 40365649
Error: (02/17/2014 11:03:53 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 40365649
Error: (02/17/2014 11:03:53 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (02/17/2014 11:03:52 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 40364635
System errors:
=============
Error: (02/17/2014 11:04:55 AM) (Source: Service Control Manager) (User: )
Description: NVIDIA Update Service Daemon%%1069
Error: (02/17/2014 11:04:55 AM) (Source: Service Control Manager) (User: )
Description: nvUpdatusService.\UpdatusUser%%1330
Error: (02/17/2014 11:02:54 AM) (Source: Service Control Manager) (User: )
Description: Lbd
SBRE
Error: (02/17/2014 11:01:51 AM) (Source: Service Control Manager) (User: )
Description: Parallel port driver%%1058
Error: (02/16/2014 11:25:42 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT-AUTORITÄT)
Description: 0x80070103nVidia - Display, Other hardware - NVIDIA GeForce 8600 GT{1C070028-68E5-499C-95E4-68FDAE228530}100
Error: (02/16/2014 11:05:35 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT-AUTORITÄT)
Description: 0x80070103nVidia - Display, Other hardware - NVIDIA GeForce 8600 GT{1C070028-68E5-499C-95E4-68FDAE228530}100
Error: (02/14/2014 03:57:49 AM) (Source: Service Control Manager) (User: )
Description: NVIDIA Update Service Daemon%%1069
Error: (02/14/2014 03:57:49 AM) (Source: Service Control Manager) (User: )
Description: nvUpdatusService.\UpdatusUser%%1330
Error: (02/14/2014 03:57:22 AM) (Source: Service Control Manager) (User: )
Description: HP Health Check Service%%1053
Error: (02/14/2014 03:57:22 AM) (Source: Service Control Manager) (User: )
Description: 30000HP Health Check Service
Microsoft Office Sessions:
=========================
CodeIntegrity Errors:
===================================
Date: 2012-11-01 13:18:25.085
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Program Files\Ad-Aware Antivirus\Drivers\i386\wlh\sbhips.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-11-01 13:18:23.947
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Program Files\Ad-Aware Antivirus\Drivers\i386\wlh\sbhips.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-11-01 13:18:22.808
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Program Files\Ad-Aware Antivirus\Drivers\i386\wlh\sbhips.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-11-01 13:18:21.638
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Program Files\Ad-Aware Antivirus\Drivers\i386\wlh\sbhips.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-11-01 13:18:19.797
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Program Files\Ad-Aware Antivirus\Drivers\i386\sbapifs.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-11-01 13:18:18.596
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Program Files\Ad-Aware Antivirus\Drivers\i386\sbapifs.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-11-01 13:18:17.379
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Program Files\Ad-Aware Antivirus\Drivers\i386\sbapifs.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-11-01 13:18:16.115
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Program Files\Ad-Aware Antivirus\Drivers\i386\sbapifs.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-10-28 14:28:26.002
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Windows\System32\drivers\sbapifs.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2012-10-28 14:28:24.727
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume1\Windows\System32\drivers\sbapifs.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
==================== Memory info ===========================
Percentage of memory in use: 71%
Total physical RAM: 3069.83 MB
Available physical RAM: 879.78 MB
Total Pagefile: 6356.14 MB
Available Pagefile: 3645.95 MB
Total Virtual: 2047.88 MB
Available Virtual: 1915.23 MB
==================== Drives ================================
Drive c: (HP) (Fixed) (Total:688.58 GB) (Free:416.6 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: (FACTORY_IMAGE) (Fixed) (Total:10.06 GB) (Free:1.39 GB) NTFS ==>[System with boot components (obtained from reading drive)]
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 699 GB) (Disk ID: 1549F232)
Partition 1: (Active) - (Size=689 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=10 GB) - (Type=07 NTFS)
==================== End Of Log ============================ |