Alexandralex | 26.02.2014 16:26 | FRST Logfile:
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 26-02-2014 01
Ran by Alexandra (administrator) on ALEXANDRA-PC on 26-02-2014 16:16:38
Running from C:\Users\Alexandra\Downloads
Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) OS Language: German Standard
Internet Explorer Version 9
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(Microsoft Corporation) C:\Windows\system32\SLsvc.exe
(Stardock Corporation) C:\Program Files\Dell\DellDock\DockLogin.exe
() C:\Windows\System32\WLTRYSVC.EXE
(Dell Inc.) C:\Windows\System32\bcmwltry.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\system32\WLANExt.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(ArcSoft Inc.) C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
(Andrea Electronics Corporation) C:\Windows\system32\aestsrv.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCui.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\Apoint.exe
(AVM Berlin) C:\Program Files\avmwlanstick\WlanNetService.exe
(Creative Technology Ltd.) C:\Windows\OEM02Mon.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
(Dell Inc.) C:\Windows\System32\WLTRAY.EXE
(Microsoft Corporation) C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe
(IDT, Inc.) C:\Windows\system32\STacSV.exe
(CyberLink Corp.) C:\Program Files\Dell\MediaDirect\PCMService.exe
(Nuance Communications, Inc.) C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
(Intel Corporation) C:\Windows\system32\igfxsrvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(IDT, Inc.) C:\Program Files\Sigmatel\C-Major Audio\WDM\sttray.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
() C:\Program Files\DivX\DivX Update\DivXUpdate.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe
(Spotify Ltd) C:\Users\Alexandra\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Internet Services\iCloudServices.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Internet Services\BookmarkDAV_client.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.141\SSScheduler.exe
(Microsoft Corporation) C:\Windows\ehome\ehmsas.exe
(Conexant Systems, Inc.) C:\Windows\system32\DRIVERS\xaudio.exe
(Microsoft Corporation) C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Internet Services\APSDaemon.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\HidFind.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\Apntex.exe
(Microsoft Corporation) C:\Windows\system32\conime.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\Virtualization Handler\CVH.EXE
() C:\Program Files\Common Files\microsoft shared\virtualization handler\OfficeVirt.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(getanet GmbH & Co. KG) E:\zdata\cobi.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
(Ascora GmbH) C:\Program Files\AntiBrowserSpy\AntiBrowserSpy.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [Windows Defender] - C:\Program Files\Windows Defender\MSASCui.exe [1008184 2008-01-21] (Microsoft Corporation)
HKLM\...\Run: [Apoint] - C:\Program Files\DellTPad\Apoint.exe [167936 2008-05-04] (Alps Electric Co., Ltd.)
HKLM\...\Run: [OEM02Mon.exe] - C:\Windows\OEM02Mon.exe [36864 2008-03-04] (Creative Technology Ltd.)
HKLM\...\Run: [IAAnotif] - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe [174872 2007-03-21] (Intel Corporation)
HKLM\...\Run: [Broadcom Wireless Manager UI] - C:\Windows\system32\WLTRAY.exe [3563520 2008-07-03] (Dell Inc.)
HKLM\...\Run: [dscactivate] - C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe [16384 2008-03-11] ( )
HKLM\...\Run: [PCMService] - C:\Program Files\Dell\MediaDirect\PCMService.exe [184320 2007-12-21] (CyberLink Corp.)
HKLM\...\Run: [AVMWlanClient] - C:\Program Files\avmwlanstick\wlangui.exe [1753088 2008-02-25] (AVM Berlin)
HKLM\...\Run: [SSBkgdUpdate] - C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [210472 2006-10-25] (Nuance Communications, Inc.)
HKLM\...\Run: [PaperPort PTD] - C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe [30248 2007-01-29] (Nuance Communications, Inc.)
HKLM\...\Run: [IndexSearch] - C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe [46632 2007-01-29] (Nuance Communications, Inc.)
HKLM\...\Run: [PPort11reminder] - C:\Program Files\ScanSoft\PaperPort\Ereg\Ereg.exe [255528 2007-02-01] (Nuance Communications, Inc.)
HKLM\...\Run: [BrMfcWnd] - C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe [622592 2007-02-06] (Brother Industries, Ltd.)
HKLM\...\Run: [UACEnableEntry] - regedit.exe /s C:\Users\Alexandra\AppData\Local\Temp\\UAC_Enable.reg <===== ATTENTION
HKLM\...\Run: [APSDaemon] - C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-02-06] (Apple Inc.)
HKLM\...\Run: [avgnt] - C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [684600 2014-02-18] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [QuickTime Task] - C:\Program Files\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM\...\Run: [SigmatelSysTrayApp] - C:\Program Files\SigmaTel\C-Major Audio\WDM\sttray.exe [405504 2007-11-12] (IDT, Inc.)
HKLM\...\Run: [iTunesHelper] - C:\Program Files\iTunes\iTunesHelper.exe [152392 2014-02-06] (Apple Inc.)
HKLM\...\Run: [DivXUpdate] - C:\Program Files\DivX\DivX Update\DivXUpdate.exe [1861968 2013-11-15] ()
HKLM\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3767096 2014-02-18] (AVAST Software)
Winlogon\Notify\GoToAssist: C:\Program Files\Citrix\GoToAssist\514\G2AWinLogon.dll (Citrix Online, a division of Citrix Systems, Inc.)
HKU\S-1-5-19\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\S-1-5-21-3360654684-3355288995-204361804-1000\...\Run: [ehTray.exe] - C:\Windows\ehome\ehTray.exe [125952 2008-01-21] (Microsoft Corporation)
HKU\S-1-5-21-3360654684-3355288995-204361804-1000\...\Run: [WMPNSCFG] - C:\Program Files\Windows Media Player\WMPNSCFG.exe [202240 2008-01-21] (Microsoft Corporation)
HKU\S-1-5-21-3360654684-3355288995-204361804-1000\...\Run: [Spotify] - C:\Users\Alexandra\AppData\Roaming\Spotify\Spotify.exe [6118400 2014-02-11] (Spotify Ltd)
HKU\S-1-5-21-3360654684-3355288995-204361804-1000\...\Run: [Spotify Web Helper] - C:\Users\Alexandra\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1171968 2014-02-11] (Spotify Ltd)
HKU\S-1-5-21-3360654684-3355288995-204361804-1000\...\Run: [iCloudServices] - C:\Program Files\Common Files\Apple\Internet Services\iCloudServices.exe [59720 2013-10-31] (Apple Inc.)
HKU\S-1-5-21-3360654684-3355288995-204361804-1000\...\Run: [ApplePhotoStreams] - C:\Program Files\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [59720 2013-10-31] (Apple Inc.)
HKU\S-1-5-21-3360654684-3355288995-204361804-1000\...\Run: [com.apple.dav.bookmarks.daemon] - C:\Program Files\Common Files\Apple\Internet Services\BookmarkDAV_client.exe [59720 2013-10-02] (Apple Inc.)
HKU\S-1-5-21-3360654684-3355288995-204361804-1000\...\MountPoints2: H - H:\setup_vmc_lite.exe /checkApplicationPresence
HKU\S-1-5-21-3360654684-3355288995-204361804-1000\...\MountPoints2: {0ccaedfb-40a6-11de-ad9b-00038a000015} - F:\setup_vmc_lite.exe /checkApplicationPresence
HKU\S-1-5-21-3360654684-3355288995-204361804-1000\...\MountPoints2: {0ccaedfd-40a6-11de-ad9b-00038a000015} - G:\setup_vmc_lite.exe /checkApplicationPresence
HKU\S-1-5-21-3360654684-3355288995-204361804-1000\...\MountPoints2: {0ccaedff-40a6-11de-ad9b-00038a000015} - F:\setup_vmc_lite.exe /checkApplicationPresence
HKU\S-1-5-21-3360654684-3355288995-204361804-1000\...\MountPoints2: {13386fe7-e16f-11dd-bfba-00038a000015} - F:\pushinst.exe
HKU\S-1-5-21-3360654684-3355288995-204361804-1000\...\MountPoints2: {16b4b259-3a46-11de-8dbc-00038a000015} - F:\AutoRun.exe
HKU\S-1-5-21-3360654684-3355288995-204361804-1000\...\MountPoints2: {61bad188-40ab-11de-aec1-00038a000015} - F:\setup_vmc_lite.exe /checkApplicationPresence
HKU\S-1-5-21-3360654684-3355288995-204361804-1000\...\MountPoints2: {61bad189-40ab-11de-aec1-00038a000015} - F:\setup_vmc_lite.exe /checkApplicationPresence
HKU\S-1-5-21-3360654684-3355288995-204361804-1000\...\MountPoints2: {6f75b6cf-40b1-11de-909c-806e6f6e6963} - F:\setup_vmc_lite.exe /checkApplicationPresence
HKU\S-1-5-21-3360654684-3355288995-204361804-1000\...\MountPoints2: {7347672c-f148-11de-95bc-f8f1998dfba4} - F:\setup_vmc_lite.exe /checkApplicationPresence
HKU\S-1-5-21-3360654684-3355288995-204361804-1000\...\MountPoints2: {8bdaeb1f-3884-11de-bdaa-00038a000015} - F:\AutoRun.exe
HKU\S-1-5-21-3360654684-3355288995-204361804-1000\...\MountPoints2: {8bdaeb3f-3884-11de-bdaa-00038a000015} - F:\AutoRun.exe
HKU\S-1-5-21-3360654684-3355288995-204361804-1000\...\MountPoints2: {afaba673-4eb3-11de-ad44-00038a000015} - F:\setup_vmc_lite.exe /checkApplicationPresence
HKU\S-1-5-21-3360654684-3355288995-204361804-1000\...\MountPoints2: {d376f167-449c-11de-87b3-00038a000015} - F:\setup_vmc_lite.exe /checkApplicationPresence
HKU\S-1-5-21-3360654684-3355288995-204361804-1000\...\MountPoints2: {f1ca26eb-856f-11dd-8f1d-806e6f6e6963} - E:\zdata\cobi.exe
HKU\S-1-5-21-3360654684-3355288995-204361804-1000\...\MountPoints2: {f6aba047-c173-11de-93ff-b9e7dbc0acac} - F:\setup_vmc_lite.exe /checkApplicationPresence
HKU\S-1-5-21-3360654684-3355288995-204361804-1000\...\MountPoints2: {f853a410-3e6a-11de-ab89-806e6f6e6963} - F:\setup_vmc_lite.exe /checkApplicationPresence
HKU\S-1-5-21-3360654684-3355288995-204361804-1000\...\MountPoints2: {fbbf7a06-3e24-11de-aeff-00038a000015} - F:\setup_vmc_lite.exe /checkApplicationPresence
AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLL => C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll [111616 2008-09-18] (Google)
Startup: C:\Users\Apple Account Neu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock.lnk
ShortcutTarget: Dell Dock.lnk -> C:\Program Files\Dell\DellDock\DellDock.exe (Stardock Corporation)
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock First Run.lnk
ShortcutTarget: Dell Dock First Run.lnk -> C:\Program Files\Dell\DellDock\DellDock.exe (Stardock Corporation)
Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock First Run.lnk
ShortcutTarget: Dell Dock First Run.lnk -> C:\Program Files\Dell\DellDock\DellDock.exe (Stardock Corporation)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE10SR
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.sweet-page.com/web/?type=ds&ts=1392561122&from=cor&uid=HitachiXHTS543225L9A300_080828FB0E40LKGLLSEAX&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.sweet-page.com/web/?type=ds&ts=1392561122&from=cor&uid=HitachiXHTS543225L9A300_080828FB0E40LKGLLSEAX&q={searchTerms}
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe hxxp://www.awesomehp.com/?type=sc&ts=1392560341&from=tugs&uid=HitachiXHTS543225L9A300_080828FB0E40LKGLLSEAX
SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.sweet-page.com/web/?type=ds&ts=1392561122&from=cor&uid=HitachiXHTS543225L9A300_080828FB0E40LKGLLSEAX&q={searchTerms}
BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.141\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO: No Name - {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll (Sun Microsystems, Inc.)
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.6.0_05\bin\jp2ssv.dll No File
BHO: Google Gears Helper - {E0FEFE40-FBF9-42AE-BA58-794CA7E3FB53} - C:\Program Files\Google\Google Gears\Internet Explorer\0.5.36.0\gears.dll (Google Inc.)
Toolbar: HKLM - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
Toolbar: HKLM - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
DPF: {44990B00-3C9D-426D-81DF-AAB636FA4345} https://www-secure.symantec.com/techsupp/asa/ss/sa/sa_cabs/tgctlcm.cab
DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} hxxp://static.pe.schuelervz.net/photouploader/ImageUploader5.cab?nocache=1226624531
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8064.0206.dll (Microsoft Corporation)
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll (Microsoft Corporation)
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8064.0206.dll (Microsoft Corporation)
Winsock: Catalog5 05 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Winsock: Catalog9 01 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 02 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 03 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 04 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 05 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 06 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 07 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 08 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 19 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.99
FireFox:
========
FF ProfilePath: C:\Users\Alexandra\AppData\Roaming\Mozilla\Firefox\Profiles\03upprbk.default
FF user.js: detected! => C:\Users\Alexandra\AppData\Roaming\Mozilla\Firefox\Profiles\03upprbk.default\user.js
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_44.dll ()
FF Plugin: @Apple.com/iTunes,version=1.0 - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin: @divx.com/DivX Web Player Plug-In,version=1.0.0 - C:\Program Files\DivX\DivX Web Player\npdivx32.dll (DivX, LLC)
FF Plugin: @google.com/npPicasa3,version=3.0.0 - C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll No File
FF Plugin: @mcafee.com/McAfeeMssPlugin - C:\Program Files\McAfee Security Scan\3.8.141\npMcAfeeMss.dll (McAfee, Inc.)
FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @viewpoint.com/VMP - C:\Program Files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll ()
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npnul32.dll ()
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\awesomehp.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\yahoo-de.xml
FF Extension: Microsoft .NET Framework Assistant - C:\Users\Alexandra\AppData\Roaming\Mozilla\Firefox\Profiles\03upprbk.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b} [2011-08-28]
FF Extension: Free YouTube Download (Free Studio) Menu - C:\Users\Alexandra\AppData\Roaming\Mozilla\Firefox\Profiles\03upprbk.default\Extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C} [2012-01-07]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ []
FF HKLM\...\Firefox\Extensions: [{000a9d1c-beef-4f90-9363-039d445309b8}] - C:\Program Files\Google\Google Gears\Firefox\
FF Extension: Google Gears - C:\Program Files\Google\Google Gears\Firefox\ []
FF StartMenuInternet: FIREFOX.EXE - C:\Program Files\Mozilla Firefox\firefox.exe hxxp://www.awesomehp.com/?type=sc&ts=1392560341&from=tugs&uid=HitachiXHTS543225L9A300_080828FB0E40LKGLLSEAX
Chrome:
=======
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\32.0.1700.107\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\32.0.1700.107\pdf.dll ()
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\32.0.1700.107\gcswf32.dll No File
CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32.dll No File
CHR Plugin: (Adobe Acrobat) - c:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (Picasa) - C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll No File
CHR Plugin: (MetaStream 3 Plugin) - C:\Program Files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll ()
CHR Plugin: (iTunes Application Detector) - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
CHR Plugin: (Windows Presentation Foundation) - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
CHR Extension: (YouTube) - C:\Users\Alexandra\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2012-01-02]
CHR Extension: (Google-Suche) - C:\Users\Alexandra\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-01-02]
CHR Extension: (avast! Online Security) - C:\Users\Alexandra\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-02-18]
CHR Extension: (Google Wallet) - C:\Users\Alexandra\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-24]
CHR Extension: (Google Mail) - C:\Users\Alexandra\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-01-02]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-02-18]
CHR HKCU\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
========================== Services (Whitelisted) =================
R2 ACDaemon; C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [440376 2014-02-18] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [440376 2014-02-18] (Avira Operations GmbH & Co. KG)
S4 AntiVirWebService; C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [1011768 2014-02-18] (Avira Operations GmbH & Co. KG)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-02-18] (AVAST Software)
R2 AVM WLAN Connection Service; C:\Program Files\avmwlanstick\WlanNetService.exe [364544 2008-02-25] (AVM Berlin)
R2 DockLoginService; C:\Program Files\Dell\DellDock\DockLogin.exe [161048 2008-05-02] (Stardock Corporation)
S4 GoogleDesktopManager-010708-104812; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [29744 2008-09-18] (Google)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.141\McCHSvc.exe [235696 2014-01-16] (McAfee, Inc.)
R2 wltrysvc; C:\Windows\System32\bcmwltry.exe [2654208 2008-07-03] (Dell Inc.)
S2 Update FindRight; "C:\Program Files\FindRight\updateFindRight.exe" [X]
S2 Util FindRight; "C:\Program Files\FindRight\bin\utilFindRight.exe" [X]
==================== Drivers (Whitelisted) ====================
R3 Afc; C:\Windows\System32\drivers\Afc.sys [18688 2006-11-10] (Arcsoft, Inc.)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [67824 2014-02-18] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr.sys [54832 2014-02-18] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49944 2014-02-18] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [775952 2014-02-18] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [410784 2014-02-18] (AVAST Software)
R1 aswTdi; C:\Windows\system32\drivers\aswTdi.sys [57672 2014-02-18] (AVAST Software)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [180248 2014-02-18] ()
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [90400 2013-12-09] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [135648 2013-12-09] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-12-09] (Avira Operations GmbH & Co. KG)
S3 avmeject; C:\Windows\System32\drivers\avmeject.sys [4352 2007-11-07] (AVM Berlin)
R3 BCM42RLY; C:\Windows\System32\drivers\BCM42RLY.sys [18424 2008-07-03] (Broadcom Corporation)
S3 fwlanusbn; C:\Windows\System32\DRIVERS\fwlanusbn.sys [401920 2007-12-19] (AVM GmbH)
S3 RTL2832UBDA; C:\Windows\System32\drivers\RTL2832UBDA.sys [91168 2009-07-06] (REALTEK SEMICONDUCTOR Corp.)
S3 RTL2832UUSB; C:\Windows\System32\Drivers\RTL2832UUSB.sys [32800 2009-07-06] (REALTEK SEMICONDUCTOR Corp.)
S3 RTL2832U_IRHID; C:\Windows\System32\DRIVERS\RTL2832U_IRHID.sys [37280 2009-07-13] (Realtek)
S3 sonypvs1; C:\Windows\System32\DRIVERS\sonypvs1.sys [102220 2006-10-30] (Sony Corporation)
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2013-07-31] (Avira GmbH)
S3 usbbus; C:\Windows\System32\DRIVERS\lgusbbus.sys [21344 2005-05-26] (LG Electronics Inc.)
S3 UsbDiag; C:\Windows\System32\DRIVERS\lgusbdiag.sys [38144 2005-05-26] (LG Electronics Inc.)
S3 USBModem; C:\Windows\System32\DRIVERS\lgusbmodem.sys [39036 2005-06-24] (LG Electronics Inc.)
S3 wanatw; C:\Windows\System32\DRIVERS\wanatw4.sys [33588 2006-11-01] (America Online, Inc.)
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]
S3 SymIMMP; system32\DRIVERS\SymIM.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-02-26 16:16 - 2014-02-26 16:17 - 00027667 _____ () C:\Users\Alexandra\Downloads\FRST.txt
2014-02-26 16:16 - 2014-02-26 16:16 - 00000000 ____D () C:\Users\Alexandra\AppData\Roaming\Abelssoft
2014-02-26 16:16 - 2014-02-26 16:16 - 00000000 ____D () C:\Users\Alexandra\AppData\Local\Abelssoft
2014-02-26 16:16 - 2014-02-26 16:16 - 00000000 ____D () C:\ProgramData\XDMessagingv4
2014-02-26 16:15 - 2014-02-26 16:16 - 00000000 ____D () C:\FRST
2014-02-26 16:15 - 2014-02-26 16:15 - 00000838 _____ () C:\Users\Public\Desktop\AntiBrowserSpy.lnk
2014-02-26 16:15 - 2014-02-26 16:15 - 00000000 ____D () C:\Program Files\AntiBrowserSpy
2014-02-26 16:14 - 2014-02-26 16:14 - 01143808 _____ (Farbar) C:\Users\Alexandra\Downloads\FRST.exe
2014-02-19 02:54 - 2014-02-19 02:54 - 00763964 _____ () C:\Users\Alexandra\Desktop\Screenshots VIREN.odt
2014-02-19 00:57 - 2014-02-19 00:57 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Alexandra\Downloads\revosetup95.exe
2014-02-19 00:57 - 2014-02-19 00:57 - 00001019 _____ () C:\Users\Alexandra\Desktop\Revo Uninstaller.lnk
2014-02-19 00:57 - 2014-02-19 00:57 - 00000000 ____D () C:\Program Files\VS Revo Group
2014-02-19 00:41 - 2014-02-19 00:41 - 00589176 _____ ( ) C:\Users\Alexandra\Downloads\Setup.exe
2014-02-18 23:50 - 2014-02-18 23:51 - 00000000 ____D () C:\ProgramData\Oracle
2014-02-18 00:59 - 2014-02-18 00:58 - 00264616 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-02-18 00:58 - 2008-02-22 00:23 - 00135168 _____ (Sun Microsystems, Inc.) C:\Windows\system32\javaw.exe
2014-02-18 00:58 - 2008-02-22 00:23 - 00135168 _____ (Sun Microsystems, Inc.) C:\Windows\system32\java.exe
2014-02-18 00:56 - 2014-02-18 00:56 - 29141928 _____ (Oracle Corporation) C:\Users\Alexandra\Downloads\jre-7u51-windows-i586 (1).exe
2014-02-18 00:53 - 2014-02-18 00:53 - 29141928 _____ (Oracle Corporation) C:\Users\Alexandra\Downloads\jre-7u51-windows-i586.exe
2014-02-18 00:43 - 2014-02-18 00:43 - 00001835 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-02-18 00:43 - 2014-02-18 00:43 - 00000000 ____D () C:\Users\Alexandra\AppData\Roaming\AVAST Software
2014-02-18 00:42 - 2014-02-18 00:41 - 00775952 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2014-02-18 00:42 - 2014-02-18 00:41 - 00410784 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2014-02-18 00:42 - 2014-02-18 00:41 - 00180248 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-02-18 00:42 - 2014-02-18 00:41 - 00067824 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-02-18 00:42 - 2014-02-18 00:41 - 00057672 _____ (AVAST Software) C:\Windows\system32\Drivers\aswTdi.sys
2014-02-18 00:42 - 2014-02-18 00:41 - 00054832 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr.sys
2014-02-18 00:42 - 2014-02-18 00:41 - 00049944 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-02-18 00:41 - 2014-02-18 00:41 - 00270240 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-02-18 00:41 - 2014-02-18 00:41 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-02-18 00:39 - 2014-02-18 00:39 - 00000000 ____D () C:\Program Files\AVAST Software
2014-02-18 00:38 - 2014-02-18 00:38 - 00000000 ____D () C:\ProgramData\AVAST Software
2014-02-18 00:36 - 2014-02-18 00:37 - 90578216 _____ (AVAST Software) C:\Users\Alexandra\Downloads\avast_free_antivirus_setup_9.0.2013.exe
2014-02-16 15:50 - 2014-02-16 15:50 - 00000896 _____ () C:\Users\Alexandra\Desktop\Continue VuuPC Installation.lnk
2014-02-16 15:41 - 2014-02-16 15:41 - 00825216 _____ (AnyProtect.com) C:\Users\Alexandra\AppData\Local\nslD858.tmp
2014-02-16 15:32 - 2014-02-19 00:42 - 00000000 ____D () C:\Users\Alexandra\AppData\Roaming\sweet-page
2014-02-16 15:32 - 2014-02-16 15:34 - 00000000 ____D () C:\Users\Alexandra\AppData\Roaming\systweak
2014-02-16 15:32 - 2013-12-27 18:10 - 00018776 _____ (Systweak Inc., (www.systweak.com)) C:\Windows\system32\roboot.exe
2014-02-16 15:20 - 2014-02-19 00:51 - 00000000 ____D () C:\ProgramData\IePluginService
2014-02-16 15:20 - 2014-02-19 00:42 - 00000000 ____D () C:\Program Files\SupTab
2014-02-16 15:19 - 2014-02-19 00:38 - 00000000 ____D () C:\ProgramData\WPM
2014-02-16 15:17 - 2014-02-16 15:17 - 00321136 _____ () C:\Users\Alexandra\Downloads\Player.exe
2014-02-16 15:17 - 2014-02-16 15:17 - 00321136 _____ () C:\Users\Alexandra\Downloads\Player (1).exe
2014-02-16 15:17 - 2014-02-16 15:17 - 00000000 ____D () C:\Users\Alexandra\AppData\Local\SearchProtect
2014-02-16 15:10 - 2014-02-26 16:04 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-02-16 03:02 - 2014-02-05 09:58 - 12345344 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-02-16 03:02 - 2014-02-05 09:56 - 01806848 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-02-16 03:02 - 2014-02-05 09:53 - 09739264 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-02-16 03:02 - 2014-02-05 09:51 - 01105408 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-02-16 03:02 - 2014-02-05 09:50 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-02-16 03:02 - 2014-02-05 09:49 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-02-16 03:02 - 2014-02-05 09:49 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-02-16 03:02 - 2014-02-05 09:48 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-02-16 03:02 - 2014-02-05 09:48 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-02-16 03:02 - 2014-02-05 09:48 - 00421376 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-02-16 03:02 - 2014-02-05 09:48 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-02-16 03:02 - 2014-02-05 09:48 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-02-16 03:02 - 2014-02-05 09:47 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-02-16 03:02 - 2014-02-05 09:47 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-02-16 03:02 - 2014-02-05 09:47 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-02-16 03:02 - 2014-02-05 09:46 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-02-16 00:07 - 2014-02-16 00:07 - 00000000 ____D () C:\Users\Alexandra\AppData\Local\DDMSettings
2014-02-16 00:05 - 2014-02-16 00:05 - 00000000 ____D () C:\Program Files\Common Files\DivX Shared
2014-02-16 00:04 - 2014-02-16 15:18 - 00000000 _____ () C:\END
2014-02-16 00:04 - 2014-02-16 00:06 - 00000000 ____D () C:\ProgramData\DivX
2014-02-16 00:04 - 2014-02-16 00:05 - 00000000 ____D () C:\Program Files\DivX
2014-02-16 00:03 - 2014-02-16 00:04 - 00993600 _____ (DivX, LLC) C:\Users\Alexandra\Downloads\DivXWebPlayerInstaller.exe
2014-02-15 23:55 - 2013-12-05 03:12 - 01248768 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-02-15 23:25 - 2014-02-15 23:25 - 00001881 _____ () C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
2014-02-11 14:30 - 2014-02-11 14:30 - 00000000 ____D () C:\Users\Apple Account Neu\AppData\Local\Apple Computer
2014-02-11 14:30 - 2014-02-11 14:30 - 00000000 ____D () C:\ProgramData\188F1432-103A-4ffb-80F1-36B633C5C9E1
2014-02-11 14:26 - 2014-02-11 14:26 - 00000000 ____D () C:\Users\Apple Account Neu\AppData\Roaming\Avira
2014-02-11 14:22 - 2014-02-11 14:24 - 137694544 _____ (Apple Inc.) C:\Users\Apple Account Neu\Downloads\iTunesSetup.exe
2014-02-11 14:21 - 2014-02-11 14:33 - 00000000 ____D () C:\Users\Apple Account Neu\AppData\Roaming\Apple Computer
2014-02-11 14:21 - 2014-02-11 14:21 - 00001925 _____ () C:\Users\Apple Account Neu\Desktop\Google Chrome.lnk
2014-02-11 14:21 - 2014-02-11 14:21 - 00000000 ____D () C:\Users\Apple Account Neu\AppData\Local\Scansoft
2014-02-11 14:21 - 2014-02-11 14:21 - 00000000 ____D () C:\Users\Apple Account Neu\AppData\Local\MediaDirect
2014-02-11 14:21 - 2014-02-11 14:21 - 00000000 ____D () C:\Users\Apple Account Neu\AppData\Local\Google
2014-02-11 14:20 - 2014-02-11 14:31 - 00072840 _____ () C:\Users\Apple Account Neu\AppData\Local\GDIPFONTCACHEV1.DAT
2014-02-11 14:20 - 2014-02-11 14:21 - 00000000 ____D () C:\Users\Apple Account Neu\AppData\Local\VirtualStore
2014-02-11 14:20 - 2014-02-11 14:20 - 00000911 _____ () C:\Users\Apple Account Neu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-02-11 14:20 - 2014-02-11 14:20 - 00000906 _____ () C:\Users\Apple Account Neu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2014-02-11 14:20 - 2014-02-11 14:20 - 00000877 _____ () C:\Users\Apple Account Neu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk
2014-02-11 14:20 - 2014-02-11 14:20 - 00000020 ___SH () C:\Users\Apple Account Neu\ntuser.ini
2014-02-11 14:20 - 2014-02-11 14:20 - 00000000 _SHDL () C:\Users\Apple Account Neu\Startmenü
2014-02-11 14:20 - 2014-02-11 14:20 - 00000000 _SHDL () C:\Users\Apple Account Neu\Netzwerkumgebung
2014-02-11 14:20 - 2014-02-11 14:20 - 00000000 _SHDL () C:\Users\Apple Account Neu\Druckumgebung
2014-02-11 14:20 - 2014-02-11 14:20 - 00000000 _SHDL () C:\Users\Apple Account Neu\Documents\Eigene Musik
2014-02-11 14:20 - 2014-02-11 14:20 - 00000000 _SHDL () C:\Users\Apple Account Neu\Documents\Eigene Bilder
2014-02-11 14:20 - 2014-02-11 14:20 - 00000000 _SHDL () C:\Users\Apple Account Neu\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-02-11 14:20 - 2014-02-11 14:20 - 00000000 _SHDL () C:\Users\Apple Account Neu\AppData\Local\Verlauf
2014-02-11 14:20 - 2014-02-11 14:20 - 00000000 ____D () C:\Users\Apple Account Neu\AppData\Roaming\Dell
2014-02-11 14:20 - 2014-02-11 14:20 - 00000000 ____D () C:\Users\Apple Account Neu
2014-02-11 14:20 - 2008-01-21 03:42 - 00000000 ___RD () C:\Users\Apple Account Neu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-02-11 14:20 - 2008-01-21 03:42 - 00000000 ___RD () C:\Users\Apple Account Neu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-02-11 01:54 - 2014-02-11 14:30 - 00001626 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-02-11 01:53 - 2014-02-11 01:53 - 00000000 ____D () C:\Program Files\iPod
2014-02-11 01:41 - 2014-02-11 01:45 - 137694544 _____ (Apple Inc.) C:\Users\Alexandra\Downloads\iTunesSetup (1).exe
==================== One Month Modified Files and Folders =======
2014-02-26 16:17 - 2014-02-26 16:16 - 00027667 _____ () C:\Users\Alexandra\Downloads\FRST.txt
2014-02-26 16:17 - 2010-08-28 12:33 - 00001100 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-02-26 16:16 - 2014-02-26 16:16 - 00000000 ____D () C:\Users\Alexandra\AppData\Roaming\Abelssoft
2014-02-26 16:16 - 2014-02-26 16:16 - 00000000 ____D () C:\Users\Alexandra\AppData\Local\Abelssoft
2014-02-26 16:16 - 2014-02-26 16:16 - 00000000 ____D () C:\ProgramData\XDMessagingv4
2014-02-26 16:16 - 2014-02-26 16:15 - 00000000 ____D () C:\FRST
2014-02-26 16:16 - 2008-09-18 11:56 - 01525036 _____ () C:\Windows\WindowsUpdate.log
2014-02-26 16:15 - 2014-02-26 16:15 - 00000838 _____ () C:\Users\Public\Desktop\AntiBrowserSpy.lnk
2014-02-26 16:15 - 2014-02-26 16:15 - 00000000 ____D () C:\Program Files\AntiBrowserSpy
2014-02-26 16:15 - 2008-01-21 08:16 - 01539546 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-02-26 16:14 - 2014-02-26 16:14 - 01143808 _____ (Farbar) C:\Users\Alexandra\Downloads\FRST.exe
2014-02-26 16:13 - 2006-11-02 13:47 - 00003616 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2014-02-26 16:13 - 2006-11-02 13:47 - 00003616 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2014-02-26 16:05 - 2010-08-28 12:33 - 00001104 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-02-26 16:04 - 2014-02-16 15:10 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-02-19 02:54 - 2014-02-19 02:54 - 00763964 _____ () C:\Users\Alexandra\Desktop\Screenshots VIREN.odt
2014-02-19 01:11 - 2010-06-29 20:36 - 00001686 _____ () C:\Users\Alexandra\Desktop\Mozilla Firefox.lnk
2014-02-19 01:11 - 2008-09-22 12:38 - 00000911 _____ () C:\Users\Alexandra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-02-19 01:04 - 2008-09-18 10:08 - 00000000 ____D () C:\Program Files\Common Files\Java
2014-02-19 00:57 - 2014-02-19 00:57 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Alexandra\Downloads\revosetup95.exe
2014-02-19 00:57 - 2014-02-19 00:57 - 00001019 _____ () C:\Users\Alexandra\Desktop\Revo Uninstaller.lnk
2014-02-19 00:57 - 2014-02-19 00:57 - 00000000 ____D () C:\Program Files\VS Revo Group
2014-02-19 00:51 - 2014-02-16 15:20 - 00000000 ____D () C:\ProgramData\IePluginService
2014-02-19 00:42 - 2014-02-16 15:32 - 00000000 ____D () C:\Users\Alexandra\AppData\Roaming\sweet-page
2014-02-19 00:42 - 2014-02-16 15:20 - 00000000 ____D () C:\Program Files\SupTab
2014-02-19 00:41 - 2014-02-19 00:41 - 00589176 _____ ( ) C:\Users\Alexandra\Downloads\Setup.exe
2014-02-19 00:38 - 2014-02-16 15:19 - 00000000 ____D () C:\ProgramData\WPM
2014-02-19 00:17 - 2013-11-01 19:05 - 00000000 ____D () C:\Users\Alexandra\AppData\Roaming\Spotify
2014-02-19 00:08 - 2006-11-02 14:01 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-02-19 00:07 - 2011-11-20 13:49 - 00228464 _____ () C:\Windows\PFRO.log
2014-02-19 00:06 - 2006-11-02 14:01 - 00032530 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-02-18 23:51 - 2014-02-18 23:50 - 00000000 ____D () C:\ProgramData\Oracle
2014-02-18 00:58 - 2014-02-18 00:59 - 00264616 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-02-18 00:56 - 2014-02-18 00:56 - 29141928 _____ (Oracle Corporation) C:\Users\Alexandra\Downloads\jre-7u51-windows-i586 (1).exe
2014-02-18 00:53 - 2014-02-18 00:53 - 29141928 _____ (Oracle Corporation) C:\Users\Alexandra\Downloads\jre-7u51-windows-i586.exe
2014-02-18 00:43 - 2014-02-18 00:43 - 00001835 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-02-18 00:43 - 2014-02-18 00:43 - 00000000 ____D () C:\Users\Alexandra\AppData\Roaming\AVAST Software
2014-02-18 00:41 - 2014-02-18 00:42 - 00775952 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2014-02-18 00:41 - 2014-02-18 00:42 - 00410784 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2014-02-18 00:41 - 2014-02-18 00:42 - 00180248 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-02-18 00:41 - 2014-02-18 00:42 - 00067824 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-02-18 00:41 - 2014-02-18 00:42 - 00057672 _____ (AVAST Software) C:\Windows\system32\Drivers\aswTdi.sys
2014-02-18 00:41 - 2014-02-18 00:42 - 00054832 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr.sys
2014-02-18 00:41 - 2014-02-18 00:42 - 00049944 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-02-18 00:41 - 2014-02-18 00:41 - 00270240 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-02-18 00:41 - 2014-02-18 00:41 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-02-18 00:39 - 2014-02-18 00:39 - 00000000 ____D () C:\Program Files\AVAST Software
2014-02-18 00:38 - 2014-02-18 00:38 - 00000000 ____D () C:\ProgramData\AVAST Software
2014-02-18 00:37 - 2014-02-18 00:36 - 90578216 _____ (AVAST Software) C:\Users\Alexandra\Downloads\avast_free_antivirus_setup_9.0.2013.exe
2014-02-16 15:50 - 2014-02-16 15:50 - 00000896 _____ () C:\Users\Alexandra\Desktop\Continue VuuPC Installation.lnk
2014-02-16 15:41 - 2014-02-16 15:41 - 00825216 _____ (AnyProtect.com) C:\Users\Alexandra\AppData\Local\nslD858.tmp
2014-02-16 15:41 - 2006-11-02 12:18 - 00000000 ____D () C:\Windows\LiveKernelReports
2014-02-16 15:39 - 2013-04-21 19:37 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-02-16 15:39 - 2011-08-28 15:57 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-02-16 15:34 - 2014-02-16 15:32 - 00000000 ____D () C:\Users\Alexandra\AppData\Roaming\systweak
2014-02-16 15:30 - 2010-06-29 19:49 - 00000000 ____D () C:\Users\Alexandra\AppData\Roaming\Uniblue
2014-02-16 15:18 - 2014-02-16 00:04 - 00000000 _____ () C:\END
2014-02-16 15:17 - 2014-02-16 15:17 - 00321136 _____ () C:\Users\Alexandra\Downloads\Player.exe
2014-02-16 15:17 - 2014-02-16 15:17 - 00321136 _____ () C:\Users\Alexandra\Downloads\Player (1).exe
2014-02-16 15:17 - 2014-02-16 15:17 - 00000000 ____D () C:\Users\Alexandra\AppData\Local\SearchProtect
2014-02-16 15:08 - 2008-09-22 12:38 - 00072840 _____ () C:\Users\Alexandra\AppData\Local\GDIPFONTCACHEV1.DAT
2014-02-16 14:38 - 2006-11-02 12:18 - 00000000 ____D () C:\Windows\Microsoft.NET
2014-02-16 14:18 - 2006-11-02 13:47 - 00311712 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-02-16 14:16 - 2008-09-18 19:36 - 00000000 ____D () C:\DELL
2014-02-16 03:20 - 2013-09-16 02:03 - 00000000 ____D () C:\Windows\system32\MRT
2014-02-16 03:14 - 2006-11-02 11:24 - 85946576 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2014-02-16 00:07 - 2014-02-16 00:07 - 00000000 ____D () C:\Users\Alexandra\AppData\Local\DDMSettings
2014-02-16 00:06 - 2014-02-16 00:04 - 00000000 ____D () C:\ProgramData\DivX
2014-02-16 00:05 - 2014-02-16 00:05 - 00000000 ____D () C:\Program Files\Common Files\DivX Shared
2014-02-16 00:05 - 2014-02-16 00:04 - 00000000 ____D () C:\Program Files\DivX
2014-02-16 00:04 - 2014-02-16 00:03 - 00993600 _____ (DivX, LLC) C:\Users\Alexandra\Downloads\DivXWebPlayerInstaller.exe
2014-02-15 23:25 - 2014-02-15 23:25 - 00001881 _____ () C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
2014-02-15 23:24 - 2013-04-21 19:37 - 00000000 ____D () C:\Program Files\McAfee Security Scan
2014-02-11 14:33 - 2014-02-11 14:21 - 00000000 ____D () C:\Users\Apple Account Neu\AppData\Roaming\Apple Computer
2014-02-11 14:31 - 2014-02-11 14:20 - 00072840 _____ () C:\Users\Apple Account Neu\AppData\Local\GDIPFONTCACHEV1.DAT
2014-02-11 14:30 - 2014-02-11 14:30 - 00000000 ____D () C:\Users\Apple Account Neu\AppData\Local\Apple Computer
2014-02-11 14:30 - 2014-02-11 14:30 - 00000000 ____D () C:\ProgramData\188F1432-103A-4ffb-80F1-36B633C5C9E1
2014-02-11 14:30 - 2014-02-11 01:54 - 00001626 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-02-11 14:26 - 2014-02-11 14:26 - 00000000 ____D () C:\Users\Apple Account Neu\AppData\Roaming\Avira
2014-02-11 14:24 - 2014-02-11 14:22 - 137694544 _____ (Apple Inc.) C:\Users\Apple Account Neu\Downloads\iTunesSetup.exe
2014-02-11 14:21 - 2014-02-11 14:21 - 00001925 _____ () C:\Users\Apple Account Neu\Desktop\Google Chrome.lnk
2014-02-11 14:21 - 2014-02-11 14:21 - 00000000 ____D () C:\Users\Apple Account Neu\AppData\Local\Scansoft
2014-02-11 14:21 - 2014-02-11 14:21 - 00000000 ____D () C:\Users\Apple Account Neu\AppData\Local\MediaDirect
2014-02-11 14:21 - 2014-02-11 14:21 - 00000000 ____D () C:\Users\Apple Account Neu\AppData\Local\Google
2014-02-11 14:21 - 2014-02-11 14:20 - 00000000 ____D () C:\Users\Apple Account Neu\AppData\Local\VirtualStore
2014-02-11 14:20 - 2014-02-11 14:20 - 00000911 _____ () C:\Users\Apple Account Neu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-02-11 14:20 - 2014-02-11 14:20 - 00000906 _____ () C:\Users\Apple Account Neu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2014-02-11 14:20 - 2014-02-11 14:20 - 00000877 _____ () C:\Users\Apple Account Neu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk
2014-02-11 14:20 - 2014-02-11 14:20 - 00000020 ___SH () C:\Users\Apple Account Neu\ntuser.ini
2014-02-11 14:20 - 2014-02-11 14:20 - 00000000 _SHDL () C:\Users\Apple Account Neu\Startmenü
2014-02-11 14:20 - 2014-02-11 14:20 - 00000000 _SHDL () C:\Users\Apple Account Neu\Netzwerkumgebung
2014-02-11 14:20 - 2014-02-11 14:20 - 00000000 _SHDL () C:\Users\Apple Account Neu\Druckumgebung
2014-02-11 14:20 - 2014-02-11 14:20 - 00000000 _SHDL () C:\Users\Apple Account Neu\Documents\Eigene Musik
2014-02-11 14:20 - 2014-02-11 14:20 - 00000000 _SHDL () C:\Users\Apple Account Neu\Documents\Eigene Bilder
2014-02-11 14:20 - 2014-02-11 14:20 - 00000000 _SHDL () C:\Users\Apple Account Neu\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-02-11 14:20 - 2014-02-11 14:20 - 00000000 _SHDL () C:\Users\Apple Account Neu\AppData\Local\Verlauf
2014-02-11 14:20 - 2014-02-11 14:20 - 00000000 ____D () C:\Users\Apple Account Neu\AppData\Roaming\Dell
2014-02-11 14:20 - 2014-02-11 14:20 - 00000000 ____D () C:\Users\Apple Account Neu
2014-02-11 02:07 - 2012-02-04 11:46 - 00000000 ____D () C:\Users\Alexandra\AppData\Roaming\Apple Computer
2014-02-11 02:03 - 2013-11-01 19:06 - 00000000 ____D () C:\Users\Alexandra\AppData\Local\Spotify
2014-02-11 02:02 - 2012-02-04 11:46 - 00000000 ____D () C:\Users\Alexandra\AppData\Local\Apple Computer
2014-02-11 01:54 - 2013-09-24 10:50 - 00000000 ____D () C:\Program Files\iTunes
2014-02-11 01:53 - 2014-02-11 01:53 - 00000000 ____D () C:\Program Files\iPod
2014-02-11 01:53 - 2012-01-02 19:50 - 00000000 ____D () C:\Program Files\Common Files\Apple
2014-02-11 01:47 - 2012-01-02 19:50 - 00000000 ____D () C:\ProgramData\Apple
2014-02-11 01:45 - 2014-02-11 01:41 - 137694544 _____ (Apple Inc.) C:\Users\Alexandra\Downloads\iTunesSetup (1).exe
2014-02-11 00:59 - 2013-11-02 04:58 - 00000000 ____D () C:\Users\Alexandra\Desktop\Iphone augeschnittenbis 0936
2014-02-05 09:58 - 2014-02-16 03:02 - 12345344 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-02-05 09:56 - 2014-02-16 03:02 - 01806848 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-02-05 09:53 - 2014-02-16 03:02 - 09739264 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-02-05 09:51 - 2014-02-16 03:02 - 01105408 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-02-05 09:50 - 2014-02-16 03:02 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-02-05 09:49 - 2014-02-16 03:02 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-02-05 09:49 - 2014-02-16 03:02 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-02-05 09:48 - 2014-02-16 03:02 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-02-05 09:48 - 2014-02-16 03:02 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-02-05 09:48 - 2014-02-16 03:02 - 00421376 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-02-05 09:48 - 2014-02-16 03:02 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-02-05 09:48 - 2014-02-16 03:02 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-02-05 09:47 - 2014-02-16 03:02 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-02-05 09:47 - 2014-02-16 03:02 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-02-05 09:47 - 2014-02-16 03:02 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-02-05 09:46 - 2014-02-16 03:02 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-01-28 00:29 - 2011-11-12 18:03 - 00119273 _____ () C:\Windows\setupact.log
Files to move or delete:
====================
C:\Users\Alexandra\AppData\Roaming\desktop.ini
C:\Users\Alexandra\OperaFatalSetup.exe
C:\ProgramData\vlc-1.1.0-win32.exe
Some content of TEMP:
====================
C:\Users\Alexandra\AppData\Local\Temp\.exe
C:\Users\Alexandra\AppData\Local\Temp\APNSetup.exe
C:\Users\Alexandra\AppData\Local\Temp\AskSLib.dll
C:\Users\Alexandra\AppData\Local\Temp\avgnt.exe
C:\Users\Alexandra\AppData\Local\Temp\BackupSetup.exe
C:\Users\Alexandra\AppData\Local\Temp\default.exe
C:\Users\Alexandra\AppData\Local\Temp\googleupdatesetup.exe
C:\Users\Alexandra\AppData\Local\Temp\installerdll1568452116.dll
C:\Users\Alexandra\AppData\Local\Temp\jre-7u21-windows-i586-iftw.exe
C:\Users\Alexandra\AppData\Local\Temp\jre-7u25-windows-i586-iftw.exe
C:\Users\Alexandra\AppData\Local\Temp\vcredist_x86.exe
C:\Users\Alexandra\AppData\Local\Temp\_isDD35.exe
C:\Users\Apple Account Neu\AppData\Local\Temp\avgnt.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\system32\winlogon.exe => MD5 is legit
C:\Windows\system32\wininit.exe => MD5 is legit
C:\Windows\system32\svchost.exe => MD5 is legit
C:\Windows\system32\services.exe => MD5 is legit
C:\Windows\system32\User32.dll => MD5 is legit
C:\Windows\system32\userinit.exe => MD5 is legit
C:\Windows\system32\rpcss.dll => MD5 is legit
C:\Windows\system32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-02-19 00:16
==================== End Of Log ============================ --- --- ---
--- --- ---
--- --- --- Code:
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 26-02-2014 01
Ran by Alexandra at 2014-02-26 16:19:05
Running from C:\Users\Alexandra\Downloads
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AV: Avira Desktop (Enabled - Out of date) {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
AS: Avira Desktop (Enabled - Out of date) {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
==================== Installed Programs ======================
Adobe Flash Player 12 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 12.0.0.44 - Adobe Systems Incorporated)
Adobe Flash Player 12 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 12.0.0.44 - Adobe Systems Incorporated)
Adobe Reader 9 - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-A90000000001}) (Version: 9.0.0 - Adobe Systems Incorporated)
Advanced Audio FX Engine (HKLM\...\Advanced Audio FX Engine) (Version: - )
Advanced Video FX Engine (HKLM\...\Advanced Video FX Engine) (Version: - )
AntiBrowserSpy (HKLM\...\{F78B5B4F-075A-4C81-AA27-E707861EB5B7}_is1) (Version: 141 - Abelssoft)
Apple Application Support (HKLM\...\{21FC2093-6E43-460B-B9B0-5F5AA35BBB0F}) (Version: 3.0 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{10E3A6DD-84D8-4D8A-BB11-5E5314BCA7FD}) (Version: 7.1.0.32 - Apple Inc.)
Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
ArcSoft TotalMedia 3.5 (HKLM\...\{74292F90-895A-4FC6-A692-9641532B1B63}) (Version: 3.5.28.260 - ArcSoft)
avast! Free Antivirus (HKLM\...\Avast) (Version: 9.0.2013 - Avast Software)
Avira Free Antivirus (HKLM\...\Avira AntiVir Desktop) (Version: 14.0.2.344 - Avira)
AVM FRITZ!WLAN (HKLM\...\AVMWLANCLI) (Version: - AVM Berlin)
Bonjour (HKLM\...\{79155F2B-9895-49D7-8612-D92580E0DE5B}) (Version: 3.0.0.10 - Apple Inc.)
Brother MFL-Pro Suite (HKLM\...\{9211CCBB-BEFE-4A0C-9199-D7A535DBFE5F}) (Version: 1.00 - Brother Industries, Ltd.)
Browser Address Error Redirector (HKLM\...\{62230596-37E5-4618-A329-0D21F529A86F}) (Version: 1.00.0000 - Dell)
Canon IJ Network Scan Utility (HKLM\...\Canon_IJ_Network_Scan_UTILITY) (Version: - )
Canon IJ Network Tool (HKLM\...\Canon_IJ_Network_UTILITY) (Version: - )
Canon MP Navigator EX 2.0 (HKLM\...\MP Navigator EX 2.0) (Version: - )
Canon MP620 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP620_series) (Version: - )
Canon Utilities Easy-PhotoPrint EX (HKLM\...\Easy-PhotoPrint EX) (Version: - )
Canon Utilities My Printer (HKLM\...\CanonMyPrinter) (Version: - )
Canon Utilities Solution Menu (HKLM\...\CanonSolutionMenu) (Version: - )
CCleaner (HKLM\...\CCleaner) (Version: 3.12 - Piriform)
Choice Guard (Version: 1.2.87.0 - Microsoft Corporation) Hidden
Cisco EAP-FAST Module (HKLM\...\{6D3963B0-E13B-4FC3-B0FF-506A304BB043}) (Version: 2.1.3 - Cisco Systems, Inc.)
Cisco LEAP Module (HKLM\...\{83770D14-21B9-44B3-8689-F7B523F94560}) (Version: 1.0.12 - Cisco Systems, Inc.)
Cisco PEAP Module (HKLM\...\{669C7BD8-DAA2-49B6-966C-F1E2AAE6B17E}) (Version: 1.0.13 - Cisco Systems, Inc.)
Compatibility Pack für 2007 Office System (HKLM\...\{90120000-0020-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Conexant HDA D330 MDC V.92 Modem (HKLM\...\CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2C06&SUBSYS_14F1000F) (Version: 7.74.00 - Conexant)
Dell Dock (HKLM\...\{F6CB42B9-F033-4152-8813-FF11DA8E6A78}) (Version: 1.0.0 - Dell)
Dell Handbuch zum Einstieg (HKLM\...\{FD023F61-65E9-465C-B558-7C64EB2B97E6}) (Version: 1.00.0000 - Dell Inc.)
Dell Support Center (HKLM\...\{E3BFEE55-39E2-4BE0-B966-89FE583822C1}) (Version: 2.1.08060 - Dell)
Dell Touchpad (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 7.1.103.4 - Alps Electric)
Dell Webcam Center (HKLM\...\Dell Webcam Center) (Version: - )
Dell Webcam Manager (HKLM\...\Dell Webcam Manager) (Version: - )
Dell-eBay (HKLM\...\{B935C985-A17F-484B-8470-09E4FC27DC26}) (Version: 1.00.0000 - Dell)
Dienstprogramm für Dell Wireless WLAN Karte (HKLM\...\Broadcom 802.11b Network Adapter) (Version: 4.170.77.13 - Dell Inc.)
Digital Line Detect (HKLM\...\{E646DCF0-5A68-11D5-B229-002078017FBF}) (Version: 1.21 - BVRP Software, Inc)
DivX-Setup (HKLM\...\DivX Setup) (Version: 2.6.1.90 - DivX, LLC)
EDocs (HKLM\...\{6B7B6D4D-8F9B-4CB3-8CA4-BCA9CC4C1A22}) (Version: - )
EmoDio (HKLM\...\InstallShield_{C20CE592-B0F8-4D20-BF31-0151CA6331A6}) (Version: 1.0 - SAMSUNG)
EmoDio (Version: 1.0 - SAMSUNG) Hidden
Free YouTube Download 2.3 (HKLM\...\Free YouTube Download_is1) (Version: - DVDVideoSoft Limited.)
Free YouTube to MP3 Converter version 3.10.15.1228 (HKLM\...\Free YouTube to MP3 Converter_is1) (Version: - DVDVideoSoft Ltd.)
Google Chrome (HKLM\...\Google Chrome) (Version: 32.0.1700.107 - Google Inc.)
Google Desktop (HKLM\...\Google Desktop) (Version: - - Google)
Google Gears (HKLM\...\{2FA41EBB-3F5A-35C3-85D6-51EC72A11FBD}) (Version: 0.5.3600 - Google)
Google Update Helper (Version: 1.3.22.3 - Google Inc.) Hidden
GoToAssist 8.0.0.514 (HKLM\...\GoToAssist) (Version: - )
iCloud (HKLM\...\{79BD66B2-4DAE-4C3B-B08E-DC72E507C163}) (Version: 2.1.3.25 - Apple Inc.)
ICQ6.5 (HKLM\...\{60DE4033-9503-48D1-A483-7846BD217CA9}) (Version: 6.5 - ICQ)
Intel(R) Matrix Storage Manager (HKLM\...\{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}) (Version: - )
iTunes (HKLM\...\{C4780F70-8F21-4F0C-95FE-32FF3E2F9247}) (Version: 11.1.4.62 - Apple Inc.)
Java(TM) 6 Update 5 (HKLM\...\{3248F0A8-6813-11D6-A77B-00B0D0160050}) (Version: 1.6.0.50 - Sun Microsystems, Inc.)
Laptop Integrated Webcam Driver (1.04.01.1011) (HKLM\...\Creative OEM002) (Version: - )
Live! Cam Avatar (HKLM\...\{1D5E29AD-39A9-4D0A-A8B6-46A6FCD8C995}) (Version: 1.0 - Creative Technology Ltd.)
McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.8.141.11 - McAfee, Inc.)
MediaDirect (HKLM\...\{9C6978E8-B6D0-4AB7-A7A0-D81A74FBF745}) (Version: 3.5 - Dell)
Microsoft .NET Framework 3.5 Language Pack SP1 - DEU (HKLM\...\Microsoft .NET Framework 3.5 Language Pack SP1 - deu) (Version: - Microsoft Corporation)
Microsoft .NET Framework 3.5 Language Pack SP1 - deu (Version: 3.5.30729 - Microsoft Corporation) Hidden
Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Client Profile DEU Language Pack (HKLM\...\Microsoft .NET Framework 4 Client Profile DEU Language Pack) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Extended DEU Language Pack (HKLM\...\Microsoft .NET Framework 4 Extended DEU Language Pack) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6012.5000 - Microsoft Corporation) Hidden
Microsoft Office Home and Student 2010 - Deutsch (HKLM\...\{90140011-0061-0407-0000-0000000FF1CE}) (Version: 14.0.6112.5001 - Microsoft Corporation)
Microsoft Office Klick-und-Los 2010 (HKLM\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Klick-und-Los 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint Viewer 2007 (English) (HKLM\...\{95120000-00AF-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 (HKLM\...\{5DA8F6CD-C70E-39D8-8430-3D9808D6BD17}) (Version: 9.0.30411 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Works (HKLM\...\{39D0E034-1042-4905-BECB-5502909FCB7C}) (Version: 9.7.0621 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (HKLM\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.)
Modem Diagnostic Tool (HKLM\...\{294EAADF-E50F-4DD8-AD8D-19587EA10512}) (Version: 1.0.24.0 - Dell)
Mozilla Firefox (3.6.6) (HKLM\...\Mozilla Firefox (3.6.6)) (Version: 3.6.6 (de) - Mozilla)
MSVCRT (Version: 14.0.1468.721 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
NetWaiting (HKLM\...\{3F92ABBB-6BBF-11D5-B229-002078017FBF}) (Version: 2.5.53 - BVRP Software, Inc)
OpenOffice.org 3.4 (HKLM\...\{4C552FD3-2CCD-4E00-AC64-0681DBB3F8B5}) (Version: 3.4.9590 - OpenOffice.org)
OutlookAddinSetup (HKLM\...\{9BDEF074-020E-458D-ADC5-8FF68E0C9B56}) (Version: 1.0.0 - CyberLink)
PaperPort Image Printer (HKLM\...\{332CC6BF-E6C7-48EE-BA3D-435E576AD67F}) (Version: 1.00.0000 - Nuance Communications, Inc.)
Picasa 3 (HKLM\...\Picasa 3) (Version: 3.9 - Google, Inc.)
QuickSet (HKLM\...\{4B6AD248-D3BF-426A-8D64-847288154F13}) (Version: 8.2.20 - Dell Inc.)
QuickTime (HKLM\...\{B67BAFBA-4C9F-48FA-9496-933E3B255044}) (Version: 7.74.80.86 - Apple Inc.)
REALTEK DTV USB DEVICE (HKLM\...\{DDBB7C89-1A09-441E-AA0F-6AA465755C17}) (Version: 1.00.0000 - Realtek)
Revo Uninstaller 1.95 (HKLM\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
RTC Client API v1.2 (HKLM\...\{44CDBD1B-89FB-4E02-8319-2A4C550F664A}) (Version: 1.2.0000 - Microsoft)
ScanSoft PaperPort 11 (HKLM\...\{B6C89654-A6A2-477C-873B-724EC1C56407}) (Version: 11.1.0000 - Nuance Communications, Inc.)
Sony Picture Utility (HKLM\...\{D5068583-D569-468B-9755-5FBF5848F46F}) (Version: 2.0.13.06200 - Sony Corporation)
Sony USB Driver (HKLM\...\{5C29CB8B-AC1E-4114-8D68-9CD080140D4A}) (Version: 2.00 - Sony Corporation)
Spotify (HKCU\...\Spotify) (Version: 0.9.7.16.g4b197456 - Spotify AB)
Uninstall 1.0.0.1 (HKLM\...\Uninstall_is1) (Version: - )
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (HKLM\...\{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB963707) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (HKLM\...\{3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2468871) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (HKLM\...\{3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2533523) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (HKLM\...\{3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2600217) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (HKLM\...\{3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2836939v3) (Version: 3 - Microsoft Corporation)
VC80CRTRedist - 8.0.50727.6195 (Version: 1.2.0 - DivX, Inc) Hidden
Viewpoint Media Player (HKLM\...\ViewpointMediaPlayer) (Version: - )
VLC media player 0.9.2 (HKLM\...\VLC media player) (Version: 0.9.2 - VideoLAN Team)
Windows Live Anmelde-Assistent (HKLM\...\{52B97218-98CB-4B8B-9283-D213C85E1AA4}) (Version: 5.000.818.5 - Microsoft Corporation)
Windows Live Call (Version: 14.0.8064.0206 - Microsoft Corporation) Hidden
Windows Live Communications Platform (Version: 14.0.8064.206 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM\...\WinLiveSuite_Wave3) (Version: 14.0.8064.0206 - Microsoft Corporation)
Windows Live Essentials (Version: 14.0.8064.206 - Microsoft Corporation) Hidden
Windows Live Messenger (Version: 14.0.8064.0206 - Microsoft Corporation) Hidden
Windows Live-Uploadtool (HKLM\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)
WinRAR (HKLM\...\WinRAR archiver) (Version: - )
==================== Restore Points =========================
17-02-2014 23:39:08 avast! antivirus system restore point
17-02-2014 23:56:53 Installed Java 7 Update 51
18-02-2014 23:16:58 Removed Ask Toolbar
18-02-2014 23:25:59 Removed Vodafone Mobile Connect Lite.
19-02-2014 00:01:01 Removed Java 7 Update 51
19-02-2014 00:05:01 Revo Uninstaller's restore point - AnyProtect
19-02-2014 00:10:53 Revo Uninstaller's restore point - awesomehp Browser newtab extension
19-02-2014 00:22:33 Revo Uninstaller's restore point - Brother MFL-Pro Suite
19-02-2014 00:26:44 Revo Uninstaller's restore point - ContentSAFER for Wizmax
==================== Hosts content: ==========================
2006-11-02 11:23 - 2006-09-18 22:41 - 00000761 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
::1 localhost
==================== Scheduled Tasks (whitelisted) =============
Task: {0350A5FD-112F-4AA0-A049-2CD97F25919F} - System32\Tasks\Apple Diagnostics => C:\Program Files\Common Files\Apple\Internet Services\EReporter.exe [2013-10-31] (Apple Inc.)
Task: {1875442E-3507-4BAD-9015-BBF70D4EDF1A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2010-08-28] (Google Inc.)
Task: {1CC81347-6204-4B83-900C-01E02F50F067} - System32\Tasks\Microsoft\Windows\MobilePC\TMM
Task: {1D80B3ED-6B2F-4348-8DEB-9B7367D2C655} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2010-08-28] (Google Inc.)
Task: {229D76FC-FE41-4127-A21B-AC5C73A6F7E7} - System32\Tasks\Microsoft\Windows Defender\MP Scheduled Signature Update => c:\program files\windows defender\MpCmdRun.exe [2008-01-21] (Microsoft Corporation)
Task: {320124A7-D70F-41DE-A9D1-D5E8E19D5D91} - System32\Tasks\Microsoft\Windows\NetworkAccessProtection\NAPStatus UI
Task: {3BCDF251-CA5C-4045-A1FC-8FCEF9FBDC93} - System32\Tasks\Microsoft\Windows\Shell\CrawlStartPages
Task: {3F1DA90B-B21E-4AFD-9082-5F152EB7B3EE} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-16] (Adobe Systems Incorporated)
Task: {4439965B-68E6-4ECE-96B0-85FAED3952CF} - System32\Tasks\Microsoft\Windows\Tcpip\WSHReset => C:\Windows\system32\netsh.exe [2006-11-02] (Microsoft Corporation)
Task: {44980BEE-7809-44A9-AC24-D6E578A3B7DF} - System32\Tasks\Microsoft\Windows\RAC\RACAgent => C:\Windows\system32\RacAgent.exe [2008-01-21] (Microsoft Corporation)
Task: {7E9E90E7-4116-4332-9284-F15CF828F3F3} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-02-18] (AVAST Software)
Task: {A39D5EA7-AF17-4A08-957F-CF6C49E368B3} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {B511FE03-AB27-4CE7-8718-D97EEEC975E4} - System32\Tasks\Microsoft\Windows\WindowsCalendar\Reminders - Alexandra => C:\Program Files\Windows Calendar\WinCal.exe [2009-04-11] (Microsoft Corporation)
Task: {E5150B95-F9B4-4D5D-95A2-7EC1ACBA95F8} - System32\Tasks\Microsoft\Windows\Wireless\GatherWirelessInfo => C:\Windows\system32\gatherWirelessInfo.vbs [2008-01-21] ()
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2008-09-18 10:18 - 2008-07-03 13:29 - 00024064 _____ () C:\Windows\System32\WLTRYSVC.EXE
2008-09-18 10:18 - 2008-07-03 13:28 - 00055808 _____ () C:\Windows\System32\bcmwlrmt.dll
2014-02-19 18:33 - 2014-02-19 09:01 - 02181120 _____ () C:\Program Files\AVAST Software\Avast\defs\14021900\algo.dll
2013-09-15 21:57 - 2013-12-09 11:37 - 00394808 _____ () C:\Program Files\Avira\AntiVir Desktop\sqlite3.dll
2014-02-06 00:52 - 2014-02-06 00:52 - 00073544 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2014-02-06 00:52 - 2014-02-06 00:52 - 01044808 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2013-11-15 01:48 - 2013-11-15 01:48 - 01861968 _____ () C:\Program Files\DivX\DivX Update\DivXUpdate.exe
2013-11-15 01:49 - 2013-11-15 01:49 - 00100688 _____ () C:\Program Files\DivX\DivX Update\DivXUpdateCheck.dll
2014-02-18 00:41 - 2014-02-18 00:41 - 19336120 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2013-09-14 01:51 - 2013-09-14 01:51 - 00087952 _____ () C:\Program Files\Common Files\Apple\Internet Services\zlib1.dll
2013-09-14 01:50 - 2013-09-14 01:50 - 01242952 _____ () C:\Program Files\Common Files\Apple\Internet Services\libxml2.dll
2014-02-05 21:48 - 2014-02-02 00:42 - 04055368 _____ () C:\Program Files\Google\Chrome\Application\32.0.1700.107\pdf.dll
2014-02-05 21:48 - 2014-02-02 00:42 - 00399688 _____ () C:\Program Files\Google\Chrome\Application\32.0.1700.107\ppGoogleNaClPluginChrome.dll
2014-02-05 21:48 - 2014-02-02 00:41 - 01634632 _____ () C:\Program Files\Google\Chrome\Application\32.0.1700.107\ffmpegsumo.dll
2010-02-28 02:33 - 2010-02-28 02:33 - 00077664 _____ () C:\Program Files\Common Files\microsoft shared\virtualization handler\OfficeVirt.exe
2014-02-11 13:39 - 2014-02-11 13:39 - 04591616 _____ () C:\Users\Alexandra\AppData\Local\Google\Chrome\User Data\SwiftShader\1.0.5.0\libglesv2.dll
2014-02-11 13:39 - 2014-02-11 13:39 - 00112128 _____ () C:\Users\Alexandra\AppData\Local\Google\Chrome\User Data\SwiftShader\1.0.5.0\libegl.dll
2014-02-19 18:32 - 2014-02-19 18:32 - 13632904 _____ () C:\Users\Alexandra\AppData\Local\Google\Chrome\User Data\PepperFlash\12.0.0.70\pepflashplayer.dll
==================== Alternate Data Streams (whitelisted) =========
AlternateDataStreams: C:\Users\Alexandra\Desktop\V211108_17.12.AVI:TOC.WMV
==================== Safe Mode (whitelisted) ===================
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\GoToAssist => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"
==================== Disabled items from MSCONFIG ==============
MSCONFIG\Services: AOL ACS => 2
MSCONFIG\Services: GoogleDesktopManager-010708-104812 => 3
MSCONFIG\Services: gusvc => 3
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^TMMonitor.lnk => C:\Windows\pss\TMMonitor.lnk.CommonStartup
MSCONFIG\startupfolder: C:^Users^Alexandra^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Picture Motion Browser Medien-Prüfung.lnk => C:\Windows\pss\Picture Motion Browser Medien-Prüfung.lnk.Startup
MSCONFIG\startupreg: Adobe Reader Speed Launcher => "c:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
MSCONFIG\startupreg: ArcSoft Connection Service => C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
MSCONFIG\startupreg: CanonMyPrinter => C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
MSCONFIG\startupreg: CanonSolutionMenu => C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon
MSCONFIG\startupreg: ControlCenter3 => C:\Program Files\Brother\ControlCenter3\brctrcen.exe /autorun
MSCONFIG\startupreg: Google Desktop Search => "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
MSCONFIG\startupreg: HostManager => C:\Program Files\Common Files\AOL\1222282528\ee\AOLSoftware.exe
MSCONFIG\startupreg: ICQ => "C:\Program Files\ICQ6.5\ICQ.exe" silent
MSCONFIG\startupreg: MobileConnect => %programfiles%\Vodafone\Vodafone Mobile Connect\Bin\MobileConnect.exe /silent
MSCONFIG\startupreg: msnmsgr => "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
MSCONFIG\startupreg: SMSTray => C:\Program Files\Samsung\EmoDio\SMSTray.exe
MSCONFIG\startupreg: swg => C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
MSCONFIG\startupreg: WMPNSCFG => C:\Program Files\Windows Media Player\WMPNSCFG.exe
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (02/26/2014 04:04:05 PM) (Source: CVHSVC) (User: )
Description: Nur zur Information.
(Patch task for {90140011-0061-0407-0000-0000000FF1CE}): DownloadLatest Failed: Zurzeit sind keine aktiven Netzwerkverbindungen verfügbar. Der Vorgang wird von BITS wiederholt, sobald der Adapter über eine Verbindung verfügt.
Error: (02/20/2014 00:43:21 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 64893624
Error: (02/20/2014 00:43:21 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 64893624
Error: (02/20/2014 00:43:21 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (02/20/2014 00:43:19 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 64891487
Error: (02/20/2014 00:43:19 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 64891487
Error: (02/20/2014 00:43:19 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (02/20/2014 00:43:17 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 64889381
Error: (02/20/2014 00:43:17 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 64889381
Error: (02/20/2014 00:43:17 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
System errors:
=============
Error: (02/26/2014 04:06:15 PM) (Source: Dhcp) (User: )
Description: Die IP-Adresslease 192.168.178.31 für die Netzwerkkarte mit der Netzwerkadresse 00225F185F90 wurde durch den DHCP-Server 192.168.0.249 abgelehnt (der DHCP-Server hat eine DHCPNACK-Meldung gesendet).
Error: (02/26/2014 04:03:48 PM) (Source: Service Control Manager) (User: )
Description: 30000Netman
Error: (02/19/2014 06:32:00 PM) (Source: Service Control Manager) (User: )
Description: 30000AntiVirSchedulerService
Error: (02/19/2014 00:47:44 AM) (Source: Service Control Manager) (User: )
Description: Update FindRight%%3
Error: (02/19/2014 00:47:44 AM) (Source: Service Control Manager) (User: )
Description: Util FindRight%%3
Error: (02/19/2014 00:47:39 AM) (Source: Service Control Manager) (User: )
Description: Update FindRight150001Neustart des Diensts
Error: (02/19/2014 00:47:39 AM) (Source: Service Control Manager) (User: )
Description: Util FindRight150001Neustart des Diensts
Error: (02/19/2014 00:11:07 AM) (Source: Service Control Manager) (User: )
Description: Update FindRight%%1053
Error: (02/19/2014 00:11:07 AM) (Source: Service Control Manager) (User: )
Description: 30000Update FindRight
Error: (02/19/2014 00:11:07 AM) (Source: Service Control Manager) (User: )
Description: Parallel port driver%%1058
Microsoft Office Sessions:
=========================
Error: (02/26/2014 04:04:05 PM) (Source: CVHSVC)(User: )
Description: (Patch task for {90140011-0061-0407-0000-0000000FF1CE}): DownloadLatest Failed: Zurzeit sind keine aktiven Netzwerkverbindungen verfügbar. Der Vorgang wird von BITS wiederholt, sobald der Adapter über eine Verbindung verfügt.
Error: (02/20/2014 00:43:21 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 64893624
Error: (02/20/2014 00:43:21 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 64893624
Error: (02/20/2014 00:43:21 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (02/20/2014 00:43:19 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 64891487
Error: (02/20/2014 00:43:19 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 64891487
Error: (02/20/2014 00:43:19 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (02/20/2014 00:43:17 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 64889381
Error: (02/20/2014 00:43:17 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 64889381
Error: (02/20/2014 00:43:17 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second
CodeIntegrity Errors:
===================================
Date: 2014-01-03 18:22:57.316
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-01-03 18:22:56.914
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-01-03 18:22:56.556
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-01-03 18:22:56.198
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-01-03 18:22:55.748
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-11-01 10:37:26.337
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-11-01 10:37:25.977
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-11-01 10:37:25.596
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-11-01 10:37:25.285
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-11-01 10:37:24.944
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
==================== Memory info ===========================
Percentage of memory in use: 76%
Total physical RAM: 3061.31 MB
Available physical RAM: 715.98 MB
Total Pagefile: 6322.93 MB
Available Pagefile: 3452.42 MB
Total Virtual: 2047.88 MB
Available Virtual: 1901.56 MB
==================== Drives ================================
Drive c: (OS) (Fixed) (Total:220.29 GB) (Free:8.97 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: (RECOVERY) (Fixed) (Total:10 GB) (Free:4.48 GB) NTFS
Drive e: (cb062014) (CDROM) (Total:0.52 GB) (Free:0 GB) UDF
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 233 GB) (Disk ID: C8000000)
Partition: GPT Partition Type.
==================== End Of Log ============================ |