Sherry93 | 22.03.2014 17:28 | Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-03-2014
Ran by Sherin at 2014-03-21 09:11:50
Running from C:\Users\Sherin\Downloads
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Avira Desktop (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avira Desktop (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
clear.fi SDK - Video 2 (x32 Version: 2.1.2128 - CyberLink Corp.) Hidden
clear.fi SDK- Movie 2 (x32 Version: 2.1.2112 - CyberLink Corp.) Hidden
7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version: - )
Acer Device Fast-lane (HKLM\...\{3F62D2FD-13C1-49A2-8B5D-47623D9460D7}) (Version: 1.00.3011 - Acer Incorporated)
Acer Instant Update Service (HKLM\...\{8215A318-CC27-435E-B3EA-2E3443C8998C}) (Version: 1.00.3013 - Acer Incorporated)
Acer Power Management (HKLM\...\{91F52DE4-B789-42B0-9311-A349F10E5479}) (Version: 7.00.3011 - Acer Incorporated)
Acer Recovery Management (HKLM\...\{07F2005A-8CAC-4A4B-83A2-DA98A722CA61}) (Version: 6.00.3012 - Acer Incorporated)
AcerCloud (HKLM-x32\...\{A5AD0B17-F34D-49BE-A157-C8B3D52ACD13}) (Version: 2.01.3125 - Acer Incorporated)
AcerCloud Docs (HKLM-x32\...\{CA4FE8B0-298C-4E5D-A486-F33B126D6A0A}) (Version: 1.00.3204 - Acer Incorporated)
addplushd (HKLM-x32\...\addplushd) (Version: 1.34.3.6 - hdideo)
Agatha Christie - Death on the Nile (x32 Version: 2.2.0.98 - WildTangent) Hidden
Aloha TriPeaks (x32 Version: 2.2.0.98 - WildTangent) Hidden
ALPS Touch Pad Driver (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 8.100.2020.116 - Alps Electric)
Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{2EF5D87E-B7BD-458F-8428-E4D0B8B4E65C}) (Version: 7.0.0.117 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Avira Free Antivirus (HKLM-x32\...\Avira AntiVir Desktop) (Version: 14.0.3.350 - Avira)
Avira SearchFree Toolbar (HKLM-x32\...\{41564952-412D-5637-00A7-A758B70C0A03}) (Version: 12.10.3.4489 - APN, LLC)
Bejeweled 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
calibre (HKLM-x32\...\{8F292AE1-FDF4-452B-8098-F04777D69634}) (Version: 1.27.0 - Kovid Goyal)
CCleaner (HKLM\...\CCleaner) (Version: 3.25 - Piriform)
clear.fi Media (HKLM-x32\...\{E9AF1707-3F3A-49E2-8345-4F2D629D0876}) (Version: 2.01.3112 - Acer Incorporated)
clear.fi Photo (HKLM-x32\...\{B5AD89F2-03D3-4206-8487-018298007DD0}) (Version: 2.01.3109 - Acer Incorporated)
CyberLink MediaEspresso 6.5 (HKLM-x32\...\InstallShield_{E3739848-5329-48E3-8D28-5BBD6E8BE384}) (Version: 6.5.3318_45364 - CyberLink Corp.)
CyberLink MediaEspresso 6.5 (x32 Version: 6.5.3318_45364 - CyberLink Corp.) Hidden
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Delicious: Emily's True Love Premium Edition (x32 Version: 2.2.0.98 - WildTangent) Hidden
Diablo II (HKLM-x32\...\Diablo II) (Version: - Blizzard Entertainment)
DMUninstaller (HKLM-x32\...\DMUninstaller) (Version: - ) <==== ATTENTION
Dolby Home Theater v4 (HKLM-x32\...\{B26438B4-BF51-49C3-9567-7F14A5E40CB9}) (Version: 7.2.8000.16 - Dolby Laboratories Inc)
Download Protect (HKCU\...\{132401a7-2006-4342-b43c-ccf5f02c2b01}) (Version: - Download Protect)
eBay Worldwide (HKLM-x32\...\{A694AF57-9891-4D62-824C-7E55A1361A14}) (Version: 2.3.0630 - OEM)
ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version: - )
Freemake Video Downloader (HKLM-x32\...\Freemake Video Downloader_is1) (Version: 3.5.3 - Ellora Assets Corporation)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 33.0.1750.154 - Google Inc.)
Google Update Helper (x32 Version: 1.3.22.5 - Google Inc.) Hidden
Governor of Poker 2 Premium Edition (x32 Version: 2.2.0.110 - WildTangent) Hidden
ICQ 8.0 (build 6007, für aktuellen Benutzer) (HKCU\...\ICQ) (Version: 8.0.6007.0 - Mail.Ru)
Identity Card (HKLM-x32\...\{3D9CB654-99AD-4301-89C6-0D12A790767C}) (Version: 2.00.3004 - Acer Incorporated)
Iminent (HKLM-x32\...\IMBoosterARP) (Version: 6.41.1.1 - Iminent) <==== ATTENTION
Iminent Toolbar on IE and Chrome (HKLM-x32\...\iminent) (Version: 1.8.28.3 - IminentToolbar) <==== ATTENTION
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.2867 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.5.4.1001 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
Intel® Trusted Connect Service Client (Version: 1.24.388.1 - Intel Corporation) Hidden
Island Tribe (x32 Version: 2.2.0.98 - WildTangent) Hidden
iTunes (HKLM\...\{37D0157F-45C6-4DB2-9AE5-489DD98CE169}) (Version: 11.1.2.31 - Apple Inc.)
Jewel Match 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden
John Deere Drive Green (x32 Version: 2.2.0.95 - WildTangent) Hidden
Launch Manager (HKLM-x32\...\LManager) (Version: 7.0.10 - Acer Inc.)
Live Updater (HKLM-x32\...\{EE26E302-876A-48D9-9058-3129E5B99999}) (Version: 2.00.3006 - Acer Incorporated)
Magic Academy (x32 Version: 2.2.0.98 - WildTangent) Hidden
Malwarebytes Anti-Malware Version 1.75.0.1300 (HKLM-x32\...\Malwarebytes' Anti-Malware_is1) (Version: 1.75.0.1300 - Malwarebytes Corporation)
Microsoft Age of Empires (HKLM-x32\...\Age of Empires) (Version: - )
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4454.1510 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2005 Tools for Office Runtime (x32 Version: 8.0.60940.0 - Microsoft Corporation) Hidden
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MyWinLocker (Version: 4.0.14.35 - Egis Technology Inc.) Hidden
MyWinLocker 4 (x32 Version: 4.0.14.35 - Egis Technology Inc.) Hidden
MyWinLocker Suite (HKLM-x32\...\InstallShield_{17DF9714-60C9-43C9-A9C2-32BCAED44CBE}) (Version: 4.0.14.24 - Egis Technology Inc.)
MyWinLocker Suite (x32 Version: 4.0.14.24 - Egis Technology Inc.) Hidden
Nonosweeper v1.33 (HKLM-x32\...\Nonosweeper_is1) (Version: - Yariv Hastilow)
Norton Online Backup (HKLM-x32\...\{40A66DF6-22D3-44B5-A7D3-83B118A2C0DC}) (Version: 2.2.3.51r - Symantec Corporation)
Norton Online Backup ARA (x32 Version: 4.1.0.14 - Symantec Corporation) Hidden
NTI Media Maker 9 (HKLM-x32\...\InstallShield_{D3D5C4E8-040F-4C6F-8105-41D43CF94F44}) (Version: 9.0.2.9014 - NTI Corporation)
NTI Media Maker 9 (x32 Version: 9.0.2.9014 - NTI Corporation) Hidden
NVIDIA Grafiktreiber 307.17 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 307.17 - NVIDIA Corporation)
NVIDIA Install Application (Version: 2.1002.85.551 - NVIDIA Corporation) Hidden
NVIDIA Optimus 1.10.8 (Version: 1.10.8 - NVIDIA Corporation) Hidden
NVIDIA PhysX (x32 Version: 9.12.0613 - NVIDIA Corporation) Hidden
NVIDIA PhysX-Systemsoftware 9.12.0613 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.0613 - NVIDIA Corporation)
NVIDIA Systemsteuerung 307.17 (Version: 307.17 - NVIDIA Corporation) Hidden
NVIDIA Update 1.10.8 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.10.8 - NVIDIA Corporation)
NVIDIA Update Components (Version: 1.10.8 - NVIDIA Corporation) Hidden
Office Addin (HKLM-x32\...\{6D2BBE1D-E600-4695-BA37-0B0E605542CC}) (Version: 2.01.3202 - Acer)
Office Addin 2003 (HKLM-x32\...\{1FCC073B-CC01-4443-AD20-E559F66E6E83}) (Version: 2.01.3202 - Acer)
OpenOffice 4.0.0 (HKLM-x32\...\{B28DBCBA-60F8-40ED-B35B-F510C327946C}) (Version: 4.00.9702 - Apache Software Foundation)
pdfforge Images2PDF 0.9.7.1125 (HKLM\...\{00120495-F25C-4F44-9DC7-2D812D025DBA}) (Version: 0.9.7.1125 - pdfforge)
Penguins! (x32 Version: 2.2.0.98 - WildTangent) Hidden
Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98 - WildTangent) Hidden
Polar Bowler (x32 Version: 2.2.0.97 - WildTangent) Hidden
Protegere (HKLM-x32\...\Protegere) (Version: - )
Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.0.214 - Qualcomm Atheros Communications)
Qualcomm Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.7 - Qualcomm Atheros Communications Inc.)
Qualcomm Atheros WLAN and Bluetooth Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 11.30 - Qualcomm Atheros)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6695 - Realtek Semiconductor Corp.)
Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.2.8400.28124 - Realtek Semiconductor Corp.)
ResultsAlpha (HKLM\...\ResultsAlpha) (Version: 2014.03.15.013120 - ResultsAlpha)
Secunia PSI (3.0.0.8013) (HKLM-x32\...\Secunia PSI) (Version: 3.0.0.8013 - Secunia)
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
Shredder (Version: 2.0.8.9 - Egis Technology Inc.) Hidden
Shredder (x32 Version: 2.0.8.9 - Egis Technology Inc.) Hidden
Skype™ 6.14 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.14.104 - Skype Technologies S.A.)
Spotify (HKCU\...\Spotify) (Version: 0.9.7.16.g4b197456 - Spotify AB)
SpywareBlaster 5.0 (HKLM-x32\...\SpywareBlaster_is1) (Version: 5.0.0 - BrightFort LLC)
Tales of Lagoona (x32 Version: 2.2.0.110 - WildTangent) Hidden
TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.12 - TeamSpeak Systems GmbH)
Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden
VIS (HKLM-x32\...\VIS) (Version: - ) <==== ATTENTION
Visual Studio 2005 Tools for Office Second Edition Runtime (HKLM-x32\...\Microsoft Visual Studio 2005 Tools for Office Runtime) (Version: - Microsoft Corporation)
Visual Studio Tools for the Office system 3.0 Runtime (HKLM-x32\...\Visual Studio Tools for the Office system 3.0 Runtime) (Version: - Microsoft Corporation)
Visual Studio Tools for the Office system 3.0 Runtime (x32 Version: 9.0.30729 - Microsoft Corporation) Hidden
Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258) (HKLM-x32\...\{8FB53850-246A-3507-8ADE-0060093FFEA6}.KB949258) (Version: 1 - Microsoft Corporation)
VLC media player 2.1.0 (HKLM-x32\...\VLC media player) (Version: 2.1.0 - VideoLAN)
WildTangent Games (HKLM-x32\...\WildTangent wildgames Master Uninstall) (Version: 1.0.3.0 - WildTangent)
WildTangent Games App (x32 Version: 4.0.10.25 - WildTangent) Hidden
Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Fotogalerie (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Language Selector (Version: 15.4.3555.0308 - Microsoft Corporation) Hidden
Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
WinPcap 4.1.2 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2001 - CACE Technologies)
Zuma's Revenge (x32 Version: 2.2.0.98 - WildTangent) Hidden
==================== Restore Points =========================
28-02-2014 11:59:02 Geplanter Prüfpunkt
12-03-2014 16:26:49 Installed calibre
18-03-2014 11:48:57 Windows Update
==================== Hosts content: ==========================
2012-07-26 06:26 - 2012-07-26 06:26 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {1AAFF332-5C62-4558-9991-DAA649C4C9C5} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
Task: {23A5D8BE-9196-40EB-BD89-794398B2B073} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList
Task: {245E882C-04DE-43D9-837D-FD3A4AD56610} - System32\Tasks\addplushd-enabler => C:\Program Files (x86)\addplushd\addplushd-enabler.exe [2014-03-17] (hdideo) <==== ATTENTION
Task: {286E4F90-7CEC-421B-BE3A-CEA9235F9E0F} - System32\Tasks\iuEmailOutlookAgent => C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe [2012-08-23] ()
Task: {36A467B3-576E-497A-9F7B-12219C003872} - System32\Tasks\addplushd-firefoxinstaller => C:\Program Files (x86)\addplushd\addplushd-firefoxinstaller.exe [2014-03-17] (hdideo)
Task: {3BE0976C-6777-4DFC-BAE2-FED7311434CC} - System32\Tasks\addplushd-chromeinstaller => C:\Program Files (x86)\addplushd\addplushd-chromeinstaller.exe [2014-03-17] (hdideo)
Task: {4E79F845-13E8-4466-96A6-3D2D9D1C5769} - System32\Tasks\addplushd-updater => C:\Program Files (x86)\addplushd\addplushd-updater.exe [2014-03-17] (hdideo)
Task: {8018E6F9-083C-452D-BB7A-D3C329A5DE5F} - System32\Tasks\iuBrowserIEAgent => C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe [2012-08-23] ()
Task: {88598243-7636-4177-BE9F-F07B7673E26F} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2012-11-23] (Piriform Ltd)
Task: {A72208BF-7A49-4FB8-B684-252375F3443A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing
Task: {A7DB4E5E-DAEA-4B22-9E2B-1808938A5098} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {AB76D1F4-16AE-43C9-9D88-55BFF90CA87B} - System32\Tasks\EgisUpdate => C:\Program Files\EgisTec IPS\EgisUpdate.exe [2012-07-12] (Egis Technology Inc.)
Task: {B046096F-BC47-4E34-9FEC-34D15AF22D55} - System32\Tasks\PMMUpdate => C:\Program Files\EgisTec IPS\PMMUpdate.exe [2012-07-12] (Egis Technology Inc.)
Task: {B41AF370-50EC-45F8-A412-66F51B124674} - System32\Tasks\Microsoft\Windows\Setup\Pre-staged GDR Notification => C:\Windows\system32\NotificationUI.exe [2013-08-16] (Microsoft Corporation)
Task: {B4D2843E-B8C8-4A75-B4AD-45633589E638} - System32\Tasks\addplushd-codedownloader => C:\Program Files (x86)\addplushd\addplushd-codedownloader.exe [2014-03-17] (hdideo)
Task: {C03B50E0-D28F-4997-AAAD-99A481A8724A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-08-20] (Google Inc.)
Task: {C1E9DED2-E113-4A2B-9608-E59B976945BA} - System32\Tasks\DeviceDetector => C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe [2012-09-20] (CyberLink)
Task: {C6A88F2D-53D2-4805-9D69-443738A1847C} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
Task: {C74E7B84-38A1-49CC-92A9-0E73E6715F3A} - System32\Tasks\ALU => C:\Program Files (x86)\Acer\Live Updater\updater.exe [2012-11-06] ()
Task: {C9060562-39DF-4686-B4DB-D7B57EB055E8} - System32\Tasks\ALUAgent => C:\Program Files (x86)\Acer\Live Updater\liveupdater_agent.exe [2012-06-21] ()
Task: {E72ED420-30A5-4422-8342-74867022B746} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTray.exe [2012-10-23] (Acer Incorporated)
Task: {EBF06DEC-4228-4813-AC0C-62821AE4E330} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask
Task: {FB5D6F70-FDA5-4C96-8447-F8A30F0AB4F5} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-08-20] (Google Inc.)
Task: C:\Windows\Tasks\addplushd-chromeinstaller.job => C:\Program Files (x86)\addplushd\addplushd-chromeinstaller.exe
Task: C:\Windows\Tasks\addplushd-codedownloader.job => C:\Program Files (x86)\addplushd\addplushd-codedownloader.exe
Task: C:\Windows\Tasks\addplushd-enabler.job => C:\Program Files (x86)\addplushd\addplushd-enabler.exe <==== ATTENTION
Task: C:\Windows\Tasks\addplushd-firefoxinstaller.job => C:\Program Files (x86)\addplushd\addplushd-firefoxinstaller.exe
Task: C:\Windows\Tasks\addplushd-updater.job => C:\Program Files (x86)\addplushd\addplushd-updater.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2014-03-17 21:28 - 2014-03-17 21:28 - 01005056 _____ () C:\Users\Sherin\AppData\Roaming\BupSystem\bup.exe
2014-03-17 21:28 - 2014-03-17 21:28 - 00125440 _____ () C:\Windows\System32\DlProtectSvc.exe
2014-03-17 21:28 - 2014-03-17 21:28 - 00118784 _____ () C:\Windows\system32\sqmcecompact40.exe
2014-03-15 02:33 - 2014-03-19 13:07 - 00348960 _____ () C:\Program Files (x86)\ResultsAlpha\updateResultsAlpha.exe
2014-03-17 22:32 - 2014-03-19 12:34 - 00348960 _____ () C:\Program Files (x86)\ResultsAlpha\bin\utilResultsAlpha.exe
2014-01-17 17:30 - 2014-01-07 16:29 - 00425792 _____ () C:\Program Files (x86)\Iminent\WinkHandler.exe
2012-12-12 15:01 - 2012-10-23 04:37 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2014-03-19 13:04 - 2014-03-19 10:53 - 00078624 _____ () C:\Program Files (x86)\ResultsAlpha\bin\XTLSApp.exe
2014-03-17 21:28 - 2014-03-17 21:28 - 00012800 _____ () C:\ProgramData\dlprotect.exe
2012-11-09 15:06 - 2012-11-09 15:06 - 00384128 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ContactsApi.dll
2012-11-09 15:01 - 2012-11-09 15:01 - 00020992 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\L10n\de-DE\BtTray.de-DE.dll
2012-11-09 15:04 - 2012-11-09 15:04 - 00011264 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\ActivateDesktopDebugger\ActivateDesktopDebugger.dll
2012-11-09 15:06 - 2012-11-09 15:06 - 00012928 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe
2013-11-03 17:45 - 2014-01-20 15:08 - 00603648 _____ () C:\Users\Sherin\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
2012-08-23 00:04 - 2012-08-23 00:04 - 00044176 _____ () C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe
2012-08-23 00:04 - 2012-08-23 00:04 - 00025232 _____ () C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe
2013-10-30 15:42 - 2013-10-10 19:14 - 00394824 _____ () C:\Program Files (x86)\Avira\AntiVir Desktop\sqlite3.dll
2013-04-21 20:44 - 2013-04-21 20:44 - 00087952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2013-04-21 20:44 - 2013-04-21 20:44 - 01242952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2014-03-17 21:28 - 2014-03-17 21:28 - 00374272 _____ () C:\Users\Sherin\AppData\Roaming\BupSystem\sub\default.dll
2013-08-15 13:40 - 2012-06-25 03:41 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll
2014-03-15 18:19 - 2014-03-15 01:50 - 00051016 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.154\chrome_elf.dll
2014-03-19 13:04 - 2014-03-19 10:53 - 00121632 _____ () C:\Program Files (x86)\ResultsAlpha\bin\xtlsapp.dll
2013-11-03 17:45 - 2014-01-20 15:08 - 36967424 _____ () C:\Users\Sherin\AppData\Roaming\Spotify\Data\libcef.dll
2014-03-15 18:19 - 2014-03-15 01:50 - 00716616 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.154\libglesv2.dll
2014-03-15 18:19 - 2014-03-15 01:50 - 00100168 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.154\libegl.dll
2014-03-15 18:19 - 2014-03-15 01:50 - 04061000 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.154\pdf.dll
2014-03-15 18:19 - 2014-03-15 01:50 - 00394568 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.154\ppGoogleNaClPluginChrome.dll
2014-03-15 18:19 - 2014-03-15 01:50 - 01647432 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.154\ffmpegsumo.dll
2014-03-15 18:19 - 2014-03-15 01:50 - 13637448 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.154\PepperFlash\pepflashplayer.dll
2013-11-03 17:45 - 2014-01-20 15:08 - 00887808 _____ () C:\Users\Sherin\AppData\Roaming\Spotify\Data\libglesv2.dll
2013-11-03 17:45 - 2014-01-20 15:08 - 00109568 _____ () C:\Users\Sherin\AppData\Roaming\Spotify\Data\libegl.dll
==================== Alternate Data Streams (whitelisted) =========
AlternateDataStreams: C:\ProgramData\Temp:5C321E34
==================== Safe Mode (whitelisted) ===================
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""
==================== Disabled items from MSCONFIG ==============
==================== Faulty Device Manager Devices =============
Name: Bluetooth USB Module
Description: Bluetooth USB Module
Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974}
Manufacturer: Qualcomm Atheros Communications
Service: BTHUSB
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
==================== Event log errors: =========================
Application errors:
==================
Error: (03/20/2014 11:39:23 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 3563
Error: (03/20/2014 11:39:23 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 3563
Error: (03/20/2014 11:39:23 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (03/20/2014 11:39:22 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 2407
Error: (03/20/2014 11:39:22 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 2407
Error: (03/20/2014 11:39:22 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (03/20/2014 11:39:21 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1172
Error: (03/20/2014 11:39:21 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 1172
Error: (03/20/2014 11:39:21 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (03/20/2014 10:53:53 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1156
System errors:
=============
Error: (03/20/2014 11:01:25 AM) (Source: EventLog) (User: )
Description: Das System wurde zuvor am 20.03.2014 um 01:00:43 unerwartet heruntergefahren.
Error: (03/17/2014 09:28:06 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "BUP Service" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren.
Error: (03/14/2014 03:29:32 PM) (Source: Schannel) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 40. Der Windows-SChannel-Fehlerstatus lautet: 107.
Error: (03/14/2014 03:29:32 PM) (Source: Schannel) (User: NT-AUTORITÄT)
Description: Eine SSL 3.0-Verbindungsanforderung wurde von einer Remoteclientanwendung übermittelt, jedoch werden keine der Verschlüsselungssammlungen, die von der Clientanwendung unterstützt werden, vom Server unterstützt. Fehler bei der SSL-Verbindungsanforderung.
Error: (03/14/2014 03:28:30 PM) (Source: Schannel) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 40. Der Windows-SChannel-Fehlerstatus lautet: 107.
Error: (03/14/2014 03:28:30 PM) (Source: Schannel) (User: NT-AUTORITÄT)
Description: Eine SSL 3.0-Verbindungsanforderung wurde von einer Remoteclientanwendung übermittelt, jedoch werden keine der Verschlüsselungssammlungen, die von der Clientanwendung unterstützt werden, vom Server unterstützt. Fehler bei der SSL-Verbindungsanforderung.
Error: (03/14/2014 03:28:29 PM) (Source: Schannel) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 40. Der Windows-SChannel-Fehlerstatus lautet: 107.
Error: (03/14/2014 03:28:29 PM) (Source: Schannel) (User: NT-AUTORITÄT)
Description: Eine SSL 3.0-Verbindungsanforderung wurde von einer Remoteclientanwendung übermittelt, jedoch werden keine der Verschlüsselungssammlungen, die von der Clientanwendung unterstützt werden, vom Server unterstützt. Fehler bei der SSL-Verbindungsanforderung.
Error: (03/11/2014 00:43:29 PM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst AntiVirWebService erreicht.
Error: (03/05/2014 01:02:54 AM) (Source: DCOM) (User: Sherins)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}
Microsoft Office Sessions:
=========================
Error: (03/20/2014 11:39:23 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 3563
Error: (03/20/2014 11:39:23 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 3563
Error: (03/20/2014 11:39:23 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (03/20/2014 11:39:22 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 2407
Error: (03/20/2014 11:39:22 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 2407
Error: (03/20/2014 11:39:22 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (03/20/2014 11:39:21 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1172
Error: (03/20/2014 11:39:21 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 1172
Error: (03/20/2014 11:39:21 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (03/20/2014 10:53:53 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1156
==================== Memory info ===========================
Percentage of memory in use: 36%
Total physical RAM: 8010.27 MB
Available physical RAM: 5122.53 MB
Total Pagefile: 32586.27 MB
Available Pagefile: 28000.41 MB
Total Virtual: 8192 MB
Available Virtual: 8191.76 MB
==================== Drives ================================
Drive c: (Acer) (Fixed) (Total:338.83 GB) (Free:257.9 GB) NTFS
Drive d: (DATA) (Fixed) (Total:338.83 GB) (Free:338.62 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 699 GB) (Disk ID: E902FFE5)
Partition: GPT Partition Type.
==================== End Of Log ============================ Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-03-2014
Ran by Sherin (administrator) on SHERINS on 21-03-2014 09:11:04
Running from C:\Users\Sherin\Downloads
Windows 8 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(APN LLC.) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Qualcomm Atheros Commnucations) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
() C:\Users\Sherin\AppData\Roaming\BupSystem\bup.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe
(Microsoft Corporation) C:\Windows\system32\dashost.exe
() C:\Windows\System32\DlProtectSvc.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe
(Ellora Assets Corp.) C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
(Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
(Dritek System INC.) C:\Windows\RfBtnSvc64.exe
() C:\Windows\system32\sqmcecompact40.exe
(Secunia) C:\Program Files (x86)\Secunia\PSI\PSIA.exe
(Iminent) C:\Program Files (x86)\Common Files\Umbrella\Umbrella.exe
() C:\Program Files (x86)\ResultsAlpha\updateResultsAlpha.exe
() C:\Program Files (x86)\ResultsAlpha\bin\utilResultsAlpha.exe
() C:\Program Files (x86)\Iminent\WinkHandler.exe
(Atheros) C:\Program Files (x86)\Qualcomm Atheros\Ath_WlanAgent.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Secunia) C:\Program Files (x86)\Secunia\PSI\sua.exe
(WildTangent) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe
(Intel Corporation) C:\Windows\system32\igfxext.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Apoint.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApMsgFwd.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Apntex.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\HidFind.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Spotify Ltd) C:\Users\Sherin\AppData\Roaming\Spotify\spotify.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Spotify Ltd) C:\Users\Sherin\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Secunia) C:\Program Files (x86)\Secunia\PSI\psi_tray.exe
(Dolby Laboratories Inc.) C:\Dolby PCEE4\pcee4.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
() C:\Program Files (x86)\ResultsAlpha\bin\XTLSApp.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
(APN) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
() C:\ProgramData\dlprotect.exe
(CyberLink) C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Qualcomm Atheros) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtTray.exe
(Atheros Communications) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
() C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe
() C:\Users\Sherin\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
() C:\Users\Sherin\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
() C:\Users\Sherin\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
() C:\Users\Sherin\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe
() C:\Users\Sherin\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
() C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe
() C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe
(Microsoft Corporation) C:\Windows\system32\msiexec.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [Apoint] - C:\Program Files\Apoint2K\Apoint.exe [661400 2012-11-09] (Alps Electric Co., Ltd.)
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12937872 2012-07-27] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1214608 2012-07-10] (Realtek Semiconductor)
HKLM\...\Run: [BtPreLoad] - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtPreLoad.exe [64640 2012-11-09] ()
HKLM-x32\...\Run: [mcui_exe] - "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
HKLM-x32\...\Run: [LManager] - [X]
HKLM-x32\...\Run: [Dolby Home Theater v4] - C:\Dolby PCEE4\pcee4.exe [508656 2012-07-25] (Dolby Laboratories Inc.)
HKLM-x32\...\Run: [Norton Online Backup] - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [2994880 2012-08-15] (Symantec Corporation)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-10-19] (Apple Inc.)
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [689744 2014-02-18] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [ApnTBMon] - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1758160 2014-02-13] (APN)
HKLM-x32\...\Run: [Iminent] - C:\Program Files (x86)\Iminent\Iminent.exe /warmup "F77F87E5-A6BD-4922-A530-EDF63D7E9F8C"
HKLM-x32\...\Run: [IminentMessenger] - C:\Program Files (x86)\Iminent\Iminent.Messengers.exe
HKLM-x32\...\Run: [Download Protect] - C:\ProgramData\dlprotect.exe [12800 2014-03-17] ()
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKU\.DEFAULT\...\RunOnce: [IsMyWinLockerReboot] - msiexec.exe /qn /x{voidguid}
HKU\S-1-5-19\...\RunOnce: [IsMyWinLockerReboot] - msiexec.exe /qn /x{voidguid}
HKU\S-1-5-20\...\RunOnce: [IsMyWinLockerReboot] - msiexec.exe /qn /x{voidguid}
HKU\S-1-5-21-3407154649-2092513467-2901549646-1002\...\Run: [icq] - C:\Users\Sherin\AppData\Roaming\ICQM\icq.exe [27453288 2013-09-02] (ICQ)
HKU\S-1-5-21-3407154649-2092513467-2901549646-1002\...\Run: [Spotify] - C:\Users\Sherin\AppData\Roaming\Spotify\Spotify.exe [6118400 2014-01-20] (Spotify Ltd)
HKU\S-1-5-21-3407154649-2092513467-2901549646-1002\...\Run: [Spotify Web Helper] - C:\Users\Sherin\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1171968 2014-01-20] (Spotify Ltd)
HKU\S-1-5-21-3407154649-2092513467-2901549646-1002\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20922016 2014-02-10] (Skype Technologies S.A.)
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [247144 2012-10-12] (NVIDIA Corporation)
AppInit_DLLs-x32: c:\windows\syswow64\nvinit.dll => c:\windows\syswow64\nvinit.dll [203112 2012-10-12] (NVIDIA Corporation)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://start.iminent.com/?appId=C6D3BF08-B4A2-465C-BC60-CCF99B73DA61
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer13.msn.com
URLSearchHook: HKCU - (No Name) - {84FF7BD6-B47F-46F8-9130-01B2696B36CB} - No File
SearchScopes: HKLM - DefaultScope {DA946FEA-395C-4D9B-99BE-0D151A664DF1} URL =
SearchScopes: HKLM - {A33DB9FD-7A8A-496E-92D3-9CFCF9D9E1C9} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS
SearchScopes: HKLM-x32 - {BFFED5CA-8BDF-47CC-AED0-23F4E6D77732} URL = hxxp://start.iminent.com/?appId=C6D3BF08-B4A2-465C-BC60-CCF99B73DA61&ref=toolbox&q={searchTerms}
SearchScopes: HKLM-x32 - {DA946FEA-395C-4D9B-99BE-0D151A664DF1} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS
SearchScopes: HKCU - DefaultScope {460C3D19-B3D4-4964-A550-77D263B0CCCB} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=vc_trans_8140&type=protegere
SearchScopes: HKCU - {460C3D19-B3D4-4964-A550-77D263B0CCCB} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=vc_trans_8140&type=protegere
SearchScopes: HKCU - {A33DB9FD-7A8A-496E-92D3-9CFCF9D9E1C9} URL =
BHO: addplushd - {11111111-1111-1111-1111-110511291116} - C:\Program Files (x86)\addplushd\addplushd-bho64.dll (hdideo)
BHO: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport_x64.dll (APN LLC.)
BHO: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\IEPlugIn.dll (Qualcomm Atheros Commnucations)
BHO: IMinent WebBooster (BHO) - {A09AB6EB-31B5-454C-97EC-9B294D92EE2A} - C:\Program Files (x86)\Iminent\Minibar.InternetExplorer.BHOx64.dll (SIEN)
BHO-x32: addplushd - {11111111-1111-1111-1111-110511291116} - C:\Program Files (x86)\addplushd\addplushd-bho.dll (hdideo)
BHO-x32: iminent Helper Object - {112BA211-334C-4A90-90EC-2AD1CDAB287C} - C:\Program Files (x86)\IminentToolbar\1.8.28.3\bh\iminent.dll (Iminent)
BHO-x32: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.)
BHO-x32: No Name - {84FF7BD6-B47F-46F8-9130-01B2696B36CB} - No File
BHO-x32: IMinent WebBooster (BHO) - {A09AB6EB-31B5-454C-97EC-9B294D92EE2A} - C:\Program Files (x86)\Iminent\Minibar.InternetExplorer.BHOx86.dll (SIEN)
BHO-x32: ResultsAlpha - {cbab673a-a480-4050-bd2b-5de24a7a0282} - C:\Program Files (x86)\ResultsAlpha\ResultsAlphabho.dll (ResultsAlpha)
Toolbar: HKLM - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport_x64.dll (APN LLC.)
Toolbar: HKLM-x32 - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.)
Toolbar: HKLM-x32 - Iminent Toolbar - {1FAFD711-ABF9-4F6A-8130-5166C7371427} - C:\Program Files (x86)\IminentToolbar\1.8.28.3\iminentTlbr.dll (Iminent)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
Chrome:
=======
CHR DefaultSearchKeyword: start.iminent.com
CHR DefaultSearchProvider: StartWeb
CHR DefaultSearchURL: hxxp://start.iminent.com/?appId=C6D3BF08-B4A2-465C-BC60-CCF99B73DA61&ref=toolbox&q={searchTerms}
CHR DefaultNewTabURL:
CHR Extension: (Avira SearchFree Toolbar plus Web Protection) - C:\Users\Sherin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaacalgebmfelllfiaoknifldpngjh [2013-10-30]
CHR Extension: (addplushd) - C:\Users\Sherin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaipilfmheplbcghignccoiiebekkdhe [2014-03-17]
CHR Extension: (Google Docs) - C:\Users\Sherin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-08-20]
CHR Extension: (Google Drive) - C:\Users\Sherin\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-08-20]
CHR Extension: (YouTube) - C:\Users\Sherin\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-08-20]
CHR Extension: (Freemake Video Downloader) - C:\Users\Sherin\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpegkgagfojjbcpkihigfmkojdmmimdf [2013-08-20]
CHR Extension: (Google-Suche) - C:\Users\Sherin\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-08-20]
CHR Extension: (Protegere) - C:\Users\Sherin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ddkeieaieohnceanbhdeijclgemgjjkf [2014-03-17]
CHR Extension: (Freemake Youtube Download Button) - C:\Users\Sherin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehgldbbpchgpcfagfpfjgoomddhccfgh [2013-08-20]
CHR Extension: (AdBlock) - C:\Users\Sherin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-03-17]
CHR Extension: (Google Wallet) - C:\Users\Sherin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-10-31]
CHR Extension: (Google Mail) - C:\Users\Sherin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-08-20]
CHR Extension: (Iminent Chrome Toolbar) - C:\Users\Sherin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkhojieggfgllhllcegoffdcnmdeojgb [2014-01-17]
CHR HKLM-x32\...\Chrome\Extension: [aaaaacalgebmfelllfiaoknifldpngjh] - C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\ToolbarCR.crx [2014-02-20]
CHR HKLM-x32\...\Chrome\Extension: [bpegkgagfojjbcpkihigfmkojdmmimdf] - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Chrome\Freemake.Plugin.Chrome.crx [2013-08-20]
CHR HKLM-x32\...\Chrome\Extension: [ehgldbbpchgpcfagfpfjgoomddhccfgh] - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Chrome\ChromeYoutubePlugin.crx [2013-08-20]
CHR HKLM-x32\...\Chrome\Extension: [igdhbblpcellaljokkpfhcjlagemhgjl] - "C:\Program Files (x86)\Iminent\Iminent.crx" [2013-08-20]
CHR HKLM-x32\...\Chrome\Extension: [pkhojieggfgllhllcegoffdcnmdeojgb] - C:\Program Files (x86)\IminentToolbar\1.8.28.3\iminent.crx [2013-11-14]
==================== Services (Whitelisted) =================
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440400 2014-02-18] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440400 2014-02-18] (Avira Operations GmbH & Co. KG)
R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1017424 2014-02-18] (Avira Operations GmbH & Co. KG)
R2 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [166352 2014-02-13] (APN LLC.)
R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [231040 2012-11-09] (Qualcomm Atheros Commnucations)
R2 bupService; C:\Users\Sherin\AppData\Roaming\BupSystem\bup.exe [1005056 2014-03-17] ()
R2 CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2449552 2012-10-25] (Acer Incorporated)
S3 DeviceFastLaneService; C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe [469648 2012-11-16] (Acer Incorporated)
R2 DlProtectSvc; C:\Windows\System32\DlProtectSvc.exe [125440 2014-03-17] ()
R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [658064 2012-10-23] (Acer Incorporated)
R2 FreemakeVideoCapture; C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe [9216 2013-07-31] (Ellora Assets Corp.)
R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [240736 2013-09-06] (WildTangent)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-17] (Intel Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [3943104 2012-08-15] (Symantec Corporation)
R2 RfButtonDriverService; C:\Windows\RfBtnSvc64.exe [93296 2013-08-15] (Dritek System INC.)
R2 SebrchProtocolHost; C:\Windows\system32\sqmcecompact40.exe [118784 2014-03-17] ()
R2 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1228504 2013-10-14] (Secunia)
R2 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [660184 2013-10-14] (Secunia)
R2 SProtection; C:\Program Files (x86)\Common Files\Umbrella\Umbrella.exe [2916672 2014-01-07] (Iminent)
R2 Update ResultsAlpha; C:\Program Files (x86)\ResultsAlpha\updateResultsAlpha.exe [348960 2014-03-19] ()
R2 Util ResultsAlpha; C:\Program Files (x86)\ResultsAlpha\bin\utilResultsAlpha.exe [348960 2014-03-19] ()
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16048 2013-10-25] (Microsoft Corporation)
R2 WinkHandler; C:\Program Files (x86)\Iminent\WinkHandler.exe [425792 2014-01-07] ()
R2 ZAtheros Wlan Agent; C:\Program Files (x86)\Qualcomm Atheros\Ath_WlanAgent.exe [81536 2012-11-09] (Atheros)
==================== Drivers (Whitelisted) ====================
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2013-12-17] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [131576 2013-12-17] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2013-10-10] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [84720 2013-12-17] (Avira Operations GmbH & Co. KG)
S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [76952 2012-11-09] (Qualcomm Atheros)
S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation)
R1 ccSet_NARA; C:\Windows\system32\drivers\NARAx64\0401000.00E\ccSetx64.sys [168608 2012-05-26] (Symantec Corporation)
S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Windows (R) Win 7 DDK provider)
S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Windows (R) Win 7 DDK provider)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R2 npf; C:\Windows\System32\drivers\npf.sys [35344 2011-02-11] (CACE Technologies, Inc.)
R3 Ps2Kb2Hid; C:\Windows\System32\drivers\aPs2Kb2Hid.sys [26736 2013-08-15] (Dritek System Inc.)
R3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2013-10-14] (Secunia)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-03-21 09:11 - 2014-03-21 09:11 - 00020980 _____ () C:\Users\Sherin\Downloads\FRST.txt
2014-03-21 09:10 - 2014-03-21 09:11 - 00000000 ____D () C:\FRST
2014-03-21 09:09 - 2014-03-21 09:09 - 02157056 _____ (Farbar) C:\Users\Sherin\Downloads\FRST64.exe
2014-03-21 09:05 - 2014-03-21 09:08 - 00036227 _____ () C:\Windows\WindowsUpdate.log
2014-03-21 00:59 - 2014-03-21 00:59 - 00019772 _____ () C:\Users\Sherin\Downloads\AdwCleaner[R0].txt
2014-03-20 11:01 - 2014-03-20 11:01 - 00309272 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-03-17 21:29 - 2014-03-21 09:06 - 00002320 _____ () C:\Windows\Tasks\addplushd-firefoxinstaller.job
2014-03-17 21:29 - 2014-03-21 09:06 - 00001514 _____ () C:\Windows\Tasks\addplushd-updater.job
2014-03-17 21:29 - 2014-03-21 09:06 - 00001468 _____ () C:\Windows\Tasks\addplushd-codedownloader.job
2014-03-17 21:29 - 2014-03-21 09:06 - 00001368 _____ () C:\Windows\Tasks\addplushd-enabler.job
2014-03-17 21:29 - 2014-03-17 21:29 - 00004518 _____ () C:\Windows\System32\Tasks\addplushd-updater
2014-03-17 21:29 - 2014-03-17 21:29 - 00004472 _____ () C:\Windows\System32\Tasks\addplushd-codedownloader
2014-03-17 21:29 - 2014-03-17 21:29 - 00004372 _____ () C:\Windows\System32\Tasks\addplushd-enabler
2014-03-17 21:28 - 2014-03-21 09:06 - 00003102 _____ () C:\Windows\Tasks\addplushd-chromeinstaller.job
2014-03-17 21:28 - 2014-03-20 11:00 - 00000000 ____D () C:\Program Files (x86)\ResultsAlpha
2014-03-17 21:28 - 2014-03-17 21:29 - 00000000 ____D () C:\Program Files (x86)\addplushd
2014-03-17 21:28 - 2014-03-17 21:28 - 00125440 _____ () C:\Windows\system32\DlProtectSvc.exe
2014-03-17 21:28 - 2014-03-17 21:28 - 00118784 _____ () C:\Windows\system32\sqmcecompact40.exe
2014-03-17 21:28 - 2014-03-17 21:28 - 00012800 _____ () C:\ProgramData\dlprotect.exe
2014-03-17 21:28 - 2014-03-17 21:28 - 00000000 ____D () C:\Users\Sherin\AppData\Roaming\Security System 2
2014-03-17 21:28 - 2014-03-17 21:28 - 00000000 ____D () C:\Users\Sherin\AppData\Roaming\BupSystem
2014-03-17 21:25 - 2014-03-17 21:28 - 00000000 ____D () C:\Users\Sherin\AppData\Local\DownloadGuide
2014-03-17 21:25 - 2014-03-17 21:25 - 00695176 _____ () C:\Users\Sherin\Downloads\adblock-plus-251-sm-tb-an-fx-Downloader.exe
2014-03-17 00:46 - 2014-03-17 00:46 - 00000000 ____D () C:\Users\Sherin\Bücher
2014-03-17 00:13 - 2014-03-17 00:14 - 00000000 ____D () C:\Users\Sherin\Desktop\Buch-Cover
2014-03-16 23:08 - 2014-03-16 23:08 - 01790275 _____ () C:\Users\Sherin\Downloads\Josephine Angelini - Bd.3 Göttlich verloren.epub
2014-03-16 23:08 - 2014-03-16 23:08 - 00399493 _____ () C:\Users\Sherin\Downloads\Kerstin Gier - Liebe geht durch alle Zeiten 3 - Smaragdgrün.epub
2014-03-16 23:08 - 2014-03-16 23:08 - 00397350 _____ () C:\Users\Sherin\Downloads\Kerstin Gier - Saphirblau.epub
2014-03-16 23:08 - 2014-03-16 23:08 - 00361229 _____ () C:\Users\Sherin\Downloads\Gier, Kerstin - Rubinrot.epub
2014-03-16 14:09 - 2014-03-16 14:09 - 01268877 _____ () C:\Users\Sherin\Downloads\Showalter, Gena - Unsterblich verliebt.epub
2014-03-16 14:09 - 2014-03-16 14:09 - 00694101 _____ () C:\Users\Sherin\Downloads\Showalter, Gena - Vampir-Love - 2 - Verflucht verliebt.epub
2014-03-16 14:09 - 2014-03-16 14:09 - 00331753 _____ () C:\Users\Sherin\Downloads\Hawkins, Rachel - Wilder Zauber Hex Hall 1.epub
2014-03-16 13:57 - 2014-03-16 13:57 - 01112202 _____ () C:\Users\Sherin\Downloads\House of Night 6 - Versucht.epub
2014-03-16 13:57 - 2014-03-16 13:57 - 00913865 _____ () C:\Users\Sherin\Downloads\House of Night 7 - Verbrannt.epub
2014-03-16 13:57 - 2014-03-16 13:57 - 00843031 _____ () C:\Users\Sherin\Downloads\House of Night 8 - Geweckt.epub
2014-03-16 13:57 - 2014-03-16 13:57 - 00809799 _____ () C:\Users\Sherin\Downloads\House of Night 1 - Gezeichnet.epub
2014-03-16 13:57 - 2014-03-16 13:57 - 00410703 _____ () C:\Users\Sherin\Downloads\House of Night 2 - Betrogen.epub
2014-03-16 13:57 - 2014-03-16 13:57 - 00380066 _____ () C:\Users\Sherin\Downloads\House of Night 5 - Gejagt.epub
2014-03-16 13:57 - 2014-03-16 13:57 - 00372197 _____ () C:\Users\Sherin\Downloads\House of Night 4 - Ungezähmt.epub
2014-03-16 13:57 - 2014-03-16 13:57 - 00209636 _____ () C:\Users\Sherin\Downloads\House of Night 3 - Erwählt.epub
2014-03-16 13:52 - 2014-03-16 13:52 - 01790275 _____ () C:\Users\Sherin\Downloads\Josephine Angelini - Bd 2 Goettlich verloren.epub
2014-03-16 13:52 - 2014-03-16 13:52 - 01083373 _____ () C:\Users\Sherin\Downloads\Josephine Angelini - Bd. 1 Goettlich verdammt.epub
2014-03-16 13:46 - 2014-03-16 13:46 - 00755982 _____ () C:\Users\Sherin\Downloads\Clare, Cassandra_chroniken_der_unterwelt_bd_3_city_of_glass.epub
2014-03-16 13:46 - 2014-03-16 13:46 - 00736070 _____ () C:\Users\Sherin\Downloads\Clare, Cassandra_chroniken_der_unterwelt_bd_5_city_of_lost_souls.epub
2014-03-16 13:46 - 2014-03-16 13:46 - 00552518 _____ () C:\Users\Sherin\Downloads\Clare, Cassandra_chroniken_der_unterwelt_bd_4_city_of_fallen_angels.epub
2014-03-16 13:46 - 2014-03-16 13:46 - 00527013 _____ () C:\Users\Sherin\Downloads\Clare, Cassandra_chroniken_der_unterwelt_bd_1_city_of_bones.epub
2014-03-16 13:46 - 2014-03-16 13:46 - 00478918 _____ () C:\Users\Sherin\Downloads\Clare, Cassandra_chroniken_der_unterwelt_bd_2_city_of_ashes.epub
2014-03-16 13:42 - 2014-03-16 13:42 - 00777444 _____ () C:\Users\Sherin\Downloads\Adrian, Lara - Midnight Breed 09 - Gejagte der Dämmerung.epub
2014-03-16 13:42 - 2014-03-16 13:42 - 00623902 _____ () C:\Users\Sherin\Downloads\Adrian, Lara - Midnight Breed 10 - Erwaehlte der Ewigkeit.epub
2014-03-16 13:42 - 2014-03-16 13:42 - 00334612 _____ () C:\Users\Sherin\Downloads\Adrian, Lara - Midnight Breed 08 - Geweihte des Todes.epub
2014-03-16 13:38 - 2014-03-16 13:39 - 00771608 _____ () C:\Users\Sherin\Downloads\12 - Vampire kuesst man nicht.epub
2014-03-16 13:38 - 2014-03-16 13:38 - 00867666 _____ () C:\Users\Sherin\Downloads\01 - Eine Vampirin auf Abwegen.epub
2014-03-16 13:38 - 2014-03-16 13:38 - 00781752 _____ () C:\Users\Sherin\Downloads\11 - Vampire und andere Katastrophen.epub
2014-03-16 13:38 - 2014-03-16 13:38 - 00742895 _____ () C:\Users\Sherin\Downloads\10 - Vampire sind die beste Medizin.epub
2014-03-16 13:38 - 2014-03-16 13:38 - 00666749 _____ () C:\Users\Sherin\Downloads\03 - Verliebt in einen Vampir.epub
2014-03-16 13:38 - 2014-03-16 13:38 - 00577004 _____ () C:\Users\Sherin\Downloads\05 - Vampire haben es auch nicht leicht.epub
2014-03-16 13:38 - 2014-03-16 13:38 - 00550856 _____ () C:\Users\Sherin\Downloads\04 - Immer Ärger mit Vampiren.epub
2014-03-16 13:38 - 2014-03-16 13:38 - 00511951 _____ () C:\Users\Sherin\Downloads\06 - Ein Vampir für gewisse Stunden.epub
2014-03-16 13:38 - 2014-03-16 13:38 - 00509102 _____ () C:\Users\Sherin\Downloads\02 - Ein Vampir zum vernaschen.epub
2014-03-16 13:38 - 2014-03-16 13:38 - 00411551 _____ () C:\Users\Sherin\Downloads\08 - Wer will schon einen Vampir.epub
2014-03-16 13:38 - 2014-03-16 13:38 - 00406686 _____ () C:\Users\Sherin\Downloads\07 - Ein Vampir und Gentleman.epub
2014-03-16 13:38 - 2014-03-16 13:38 - 00334659 _____ () C:\Users\Sherin\Downloads\09 - Im siebten Himmel mit einem Vampir.epub
2014-03-12 17:24 - 2014-03-12 17:25 - 54625792 _____ () C:\Users\Sherin\Downloads\calibre-1.27.0.msi
2014-03-12 10:08 - 2014-02-08 05:34 - 04036608 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-03-12 10:08 - 2013-10-25 08:34 - 00035856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys
2014-03-12 10:08 - 2013-10-24 23:34 - 00248240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys
2014-03-12 10:07 - 2014-02-23 09:13 - 02241536 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-03-12 10:07 - 2014-02-23 09:13 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-03-12 10:07 - 2014-02-23 09:13 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll
2014-03-12 10:07 - 2014-02-23 09:13 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll
2014-03-12 10:07 - 2014-02-23 09:13 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-03-12 10:07 - 2014-02-23 09:12 - 19273216 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-03-12 10:07 - 2014-02-23 09:12 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-03-12 10:07 - 2014-02-23 09:12 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-03-12 10:07 - 2014-02-23 09:11 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-03-12 10:07 - 2014-02-23 09:11 - 03960320 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-03-12 10:07 - 2014-02-23 09:11 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-03-12 10:07 - 2014-02-23 09:11 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-03-12 10:07 - 2014-02-23 09:11 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-03-12 10:07 - 2014-02-23 09:11 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-03-12 10:07 - 2014-02-23 09:11 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-03-12 10:07 - 2014-02-23 09:11 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-03-12 10:07 - 2014-02-23 07:54 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-03-12 10:07 - 2014-02-23 07:54 - 01140736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-03-12 10:07 - 2014-02-23 07:54 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll
2014-03-12 10:07 - 2014-02-23 07:53 - 14358016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-03-12 10:07 - 2014-02-23 07:53 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-03-12 10:07 - 2014-02-23 07:53 - 02877952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-03-12 10:07 - 2014-02-23 07:53 - 02049024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-03-12 10:07 - 2014-02-23 07:53 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-03-12 10:07 - 2014-02-23 07:53 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-03-12 10:07 - 2014-02-23 07:53 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-03-12 10:07 - 2014-02-23 07:53 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-03-12 10:07 - 2014-02-23 07:53 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-03-12 10:07 - 2014-02-23 07:53 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-03-12 10:07 - 2014-02-23 07:53 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-03-12 10:07 - 2014-02-23 07:35 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-03-12 10:07 - 2014-02-23 07:31 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-03-12 10:07 - 2014-02-23 05:06 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll
2014-03-12 10:07 - 2014-02-06 00:41 - 00595968 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2014-03-12 10:07 - 2014-02-06 00:37 - 00496640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2014-03-12 10:07 - 2014-01-31 01:48 - 01339392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2014-03-12 10:07 - 2014-01-31 01:06 - 01628160 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-03-12 10:07 - 2013-12-07 07:36 - 19751936 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-03-12 10:07 - 2013-12-07 06:15 - 17560576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-03-10 12:01 - 2014-03-10 12:01 - 00000971 _____ () C:\Users\Public\Desktop\Images2PDF.lnk
2014-03-10 12:01 - 2014-03-10 12:01 - 00000000 ____D () C:\Users\Sherin\AppData\Roaming\pdfforge
2014-03-10 12:01 - 2014-03-10 12:01 - 00000000 ____D () C:\Program Files\pdfforge
2014-03-10 12:00 - 2014-03-10 12:00 - 01745312 _____ (pdfforge ) C:\Users\Sherin\Downloads\pdfforge_Images2PDF-0_9_7-setup.exe
2014-03-10 11:31 - 2014-03-10 11:31 - 00002699 _____ () C:\Users\Public\Desktop\Skype.lnk
2014-03-10 11:31 - 2014-03-10 11:31 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-03-10 11:31 - 2014-03-10 11:31 - 00000000 ____D () C:\Users\Sherin\AppData\Local\Skype
2014-03-06 23:31 - 2014-03-07 13:15 - 00138950 _____ () C:\Users\Sherin\Desktop\Nadja.odt
2014-03-06 14:38 - 2014-03-06 14:41 - 00000000 ____D () C:\Program Files (x86)\Nonosweeper
2014-03-06 14:38 - 2014-03-06 14:38 - 00001051 _____ () C:\Users\UpdatusUser\Desktop\Nonosweeper.lnk
2014-03-06 14:38 - 2014-03-06 14:38 - 00001051 _____ () C:\Users\Sherin\Desktop\Nonosweeper.lnk
2014-03-06 14:36 - 2014-03-06 14:36 - 00426257 _____ () C:\Users\Sherin\Desktop\NonosweeperSetup_1_33.exe
2014-03-06 14:35 - 2014-03-06 14:35 - 00401752 _____ (Softonic ) C:\Users\Sherin\Downloads\SoftonicDownloader_fuer_nonosweeper.exe
2014-03-03 21:48 - 2014-03-03 21:48 - 00000000 ____D () C:\Users\Sherin\AppData\Local\MusicPlayer
2014-03-03 10:40 - 2014-03-03 10:40 - 49793019 _____ () C:\Users\Sherin\Downloads\Grimm_Grimms-Maerchen---Vollstaendige,.epub
2014-03-03 10:40 - 2014-03-03 10:40 - 00001174 _____ () C:\Users\Sherin\Downloads\Glines_Rush-of-Love---Verfuehrt.acsm
2014-03-03 10:40 - 2014-03-03 10:40 - 00001172 _____ () C:\Users\Sherin\Downloads\Glines_Rush-of-Love---Erloest.acsm
2014-03-03 10:40 - 2014-03-03 10:40 - 00001171 _____ () C:\Users\Sherin\Downloads\Marinelli_Von-nun-an-und-fuer-immer.acsm
2014-03-03 10:39 - 2014-03-03 10:39 - 01746530 _____ () C:\Users\Sherin\Downloads\Collins_Die-Tribute-von-Panem.-Gesamta.epub
2014-03-03 10:39 - 2014-03-03 10:39 - 00001167 _____ () C:\Users\Sherin\Downloads\Hoover_Weil-ich-Layken-liebe.acsm
2014-03-03 10:07 - 2014-03-03 10:07 - 00778077 _____ () C:\Users\Sherin\Downloads\Jordan, Sophie - Firelight 01 - Brennender Kuss.epub
==================== One Month Modified Files and Folders =======
2014-03-21 09:11 - 2014-03-21 09:11 - 00020980 _____ () C:\Users\Sherin\Downloads\FRST.txt
2014-03-21 09:11 - 2014-03-21 09:10 - 00000000 ____D () C:\FRST
2014-03-21 09:11 - 2013-09-13 22:41 - 00000000 ____D () C:\Users\Sherin\AppData\Roaming\Skype
2014-03-21 09:11 - 2013-08-20 19:55 - 00003598 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3407154649-2092513467-2901549646-1002
2014-03-21 09:09 - 2014-03-21 09:09 - 02157056 _____ (Farbar) C:\Users\Sherin\Downloads\FRST64.exe
2014-03-21 09:08 - 2014-03-21 09:05 - 00036227 _____ () C:\Windows\WindowsUpdate.log
2014-03-21 09:08 - 2013-11-03 17:44 - 00000000 ____D () C:\Users\Sherin\AppData\Roaming\Spotify
2014-03-21 09:08 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\system32\sru
2014-03-21 09:06 - 2014-03-17 21:29 - 00002320 _____ () C:\Windows\Tasks\addplushd-firefoxinstaller.job
2014-03-21 09:06 - 2014-03-17 21:29 - 00001514 _____ () C:\Windows\Tasks\addplushd-updater.job
2014-03-21 09:06 - 2014-03-17 21:29 - 00001468 _____ () C:\Windows\Tasks\addplushd-codedownloader.job
2014-03-21 09:06 - 2014-03-17 21:29 - 00001368 _____ () C:\Windows\Tasks\addplushd-enabler.job
2014-03-21 09:06 - 2014-03-17 21:28 - 00003102 _____ () C:\Windows\Tasks\addplushd-chromeinstaller.job
2014-03-21 09:06 - 2013-08-20 19:55 - 00001122 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-03-21 09:06 - 2012-07-26 06:26 - 00000222 _____ () C:\Windows\win.ini
2014-03-21 01:11 - 2013-11-21 17:24 - 00000000 ____D () C:\Windows\Minidump
2014-03-21 01:11 - 2013-08-31 10:54 - 00000000 ____D () C:\Users\Sherin\AppData\Local\CrashDumps
2014-03-21 00:59 - 2014-03-21 00:59 - 00019772 _____ () C:\Users\Sherin\Downloads\AdwCleaner[R0].txt
2014-03-21 00:17 - 2013-08-20 19:55 - 00001126 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-03-20 11:01 - 2014-03-20 11:01 - 00309272 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-03-20 11:01 - 2012-07-26 08:22 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-03-20 11:00 - 2014-03-17 21:28 - 00000000 ____D () C:\Program Files (x86)\ResultsAlpha
2014-03-18 21:06 - 2013-12-02 17:40 - 00000000 ____D () C:\Users\Sherin\Documents\Calibre-Bibliothek
2014-03-18 14:17 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\AUInstallAgent
2014-03-18 12:51 - 2013-08-21 07:11 - 00000000 ____D () C:\Windows\system32\MRT
2014-03-18 12:49 - 2013-08-21 07:11 - 90015360 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-03-18 12:49 - 2012-07-26 06:26 - 00262144 ___SH () C:\Windows\system32\config\ELAM
2014-03-17 21:29 - 2014-03-17 21:29 - 00004518 _____ () C:\Windows\System32\Tasks\addplushd-updater
2014-03-17 21:29 - 2014-03-17 21:29 - 00004472 _____ () C:\Windows\System32\Tasks\addplushd-codedownloader
2014-03-17 21:29 - 2014-03-17 21:29 - 00004372 _____ () C:\Windows\System32\Tasks\addplushd-enabler
2014-03-17 21:29 - 2014-03-17 21:28 - 00000000 ____D () C:\Program Files (x86)\addplushd
2014-03-17 21:28 - 2014-03-17 21:28 - 00125440 _____ () C:\Windows\system32\DlProtectSvc.exe
2014-03-17 21:28 - 2014-03-17 21:28 - 00118784 _____ () C:\Windows\system32\sqmcecompact40.exe
2014-03-17 21:28 - 2014-03-17 21:28 - 00012800 _____ () C:\ProgramData\dlprotect.exe
2014-03-17 21:28 - 2014-03-17 21:28 - 00000000 ____D () C:\Users\Sherin\AppData\Roaming\Security System 2
2014-03-17 21:28 - 2014-03-17 21:28 - 00000000 ____D () C:\Users\Sherin\AppData\Roaming\BupSystem
2014-03-17 21:28 - 2014-03-17 21:25 - 00000000 ____D () C:\Users\Sherin\AppData\Local\DownloadGuide
2014-03-17 21:25 - 2014-03-17 21:25 - 00695176 _____ () C:\Users\Sherin\Downloads\adblock-plus-251-sm-tb-an-fx-Downloader.exe
2014-03-17 18:09 - 2013-11-03 17:45 - 00000000 ____D () C:\Users\Sherin\AppData\Local\Spotify
2014-03-17 01:12 - 2013-09-01 15:20 - 00000000 ____D () C:\Users\Sherin\AppData\Local\clear.fi
2014-03-17 00:46 - 2014-03-17 00:46 - 00000000 ____D () C:\Users\Sherin\Bücher
2014-03-17 00:46 - 2013-08-20 19:47 - 00000000 ____D () C:\Users\Sherin
2014-03-17 00:14 - 2014-03-17 00:13 - 00000000 ____D () C:\Users\Sherin\Desktop\Buch-Cover
2014-03-16 23:08 - 2014-03-16 23:08 - 01790275 _____ () C:\Users\Sherin\Downloads\Josephine Angelini - Bd.3 Göttlich verloren.epub
2014-03-16 23:08 - 2014-03-16 23:08 - 00399493 _____ () C:\Users\Sherin\Downloads\Kerstin Gier - Liebe geht durch alle Zeiten 3 - Smaragdgrün.epub
2014-03-16 23:08 - 2014-03-16 23:08 - 00397350 _____ () C:\Users\Sherin\Downloads\Kerstin Gier - Saphirblau.epub
2014-03-16 23:08 - 2014-03-16 23:08 - 00361229 _____ () C:\Users\Sherin\Downloads\Gier, Kerstin - Rubinrot.epub
2014-03-16 14:09 - 2014-03-16 14:09 - 01268877 _____ () C:\Users\Sherin\Downloads\Showalter, Gena - Unsterblich verliebt.epub
2014-03-16 14:09 - 2014-03-16 14:09 - 00694101 _____ () C:\Users\Sherin\Downloads\Showalter, Gena - Vampir-Love - 2 - Verflucht verliebt.epub
2014-03-16 14:09 - 2014-03-16 14:09 - 00331753 _____ () C:\Users\Sherin\Downloads\Hawkins, Rachel - Wilder Zauber Hex Hall 1.epub
2014-03-16 13:57 - 2014-03-16 13:57 - 01112202 _____ () C:\Users\Sherin\Downloads\House of Night 6 - Versucht.epub
2014-03-16 13:57 - 2014-03-16 13:57 - 00913865 _____ () C:\Users\Sherin\Downloads\House of Night 7 - Verbrannt.epub
2014-03-16 13:57 - 2014-03-16 13:57 - 00843031 _____ () C:\Users\Sherin\Downloads\House of Night 8 - Geweckt.epub
2014-03-16 13:57 - 2014-03-16 13:57 - 00809799 _____ () C:\Users\Sherin\Downloads\House of Night 1 - Gezeichnet.epub
2014-03-16 13:57 - 2014-03-16 13:57 - 00410703 _____ () C:\Users\Sherin\Downloads\House of Night 2 - Betrogen.epub
2014-03-16 13:57 - 2014-03-16 13:57 - 00380066 _____ () C:\Users\Sherin\Downloads\House of Night 5 - Gejagt.epub
2014-03-16 13:57 - 2014-03-16 13:57 - 00372197 _____ () C:\Users\Sherin\Downloads\House of Night 4 - Ungezähmt.epub
2014-03-16 13:57 - 2014-03-16 13:57 - 00209636 _____ () C:\Users\Sherin\Downloads\House of Night 3 - Erwählt.epub
2014-03-16 13:52 - 2014-03-16 13:52 - 01790275 _____ () C:\Users\Sherin\Downloads\Josephine Angelini - Bd 2 Goettlich verloren.epub
2014-03-16 13:52 - 2014-03-16 13:52 - 01083373 _____ () C:\Users\Sherin\Downloads\Josephine Angelini - Bd. 1 Goettlich verdammt.epub
2014-03-16 13:46 - 2014-03-16 13:46 - 00755982 _____ () C:\Users\Sherin\Downloads\Clare, Cassandra_chroniken_der_unterwelt_bd_3_city_of_glass.epub
2014-03-16 13:46 - 2014-03-16 13:46 - 00736070 _____ () C:\Users\Sherin\Downloads\Clare, Cassandra_chroniken_der_unterwelt_bd_5_city_of_lost_souls.epub
2014-03-16 13:46 - 2014-03-16 13:46 - 00552518 _____ () C:\Users\Sherin\Downloads\Clare, Cassandra_chroniken_der_unterwelt_bd_4_city_of_fallen_angels.epub
2014-03-16 13:46 - 2014-03-16 13:46 - 00527013 _____ () C:\Users\Sherin\Downloads\Clare, Cassandra_chroniken_der_unterwelt_bd_1_city_of_bones.epub
2014-03-16 13:46 - 2014-03-16 13:46 - 00478918 _____ () C:\Users\Sherin\Downloads\Clare, Cassandra_chroniken_der_unterwelt_bd_2_city_of_ashes.epub
2014-03-16 13:42 - 2014-03-16 13:42 - 00777444 _____ () C:\Users\Sherin\Downloads\Adrian, Lara - Midnight Breed 09 - Gejagte der Dämmerung.epub
2014-03-16 13:42 - 2014-03-16 13:42 - 00623902 _____ () C:\Users\Sherin\Downloads\Adrian, Lara - Midnight Breed 10 - Erwaehlte der Ewigkeit.epub
2014-03-16 13:42 - 2014-03-16 13:42 - 00334612 _____ () C:\Users\Sherin\Downloads\Adrian, Lara - Midnight Breed 08 - Geweihte des Todes.epub
2014-03-16 13:39 - 2014-03-16 13:38 - 00771608 _____ () C:\Users\Sherin\Downloads\12 - Vampire kuesst man nicht.epub
2014-03-16 13:38 - 2014-03-16 13:38 - 00867666 _____ () C:\Users\Sherin\Downloads\01 - Eine Vampirin auf Abwegen.epub
2014-03-16 13:38 - 2014-03-16 13:38 - 00781752 _____ () C:\Users\Sherin\Downloads\11 - Vampire und andere Katastrophen.epub
2014-03-16 13:38 - 2014-03-16 13:38 - 00742895 _____ () C:\Users\Sherin\Downloads\10 - Vampire sind die beste Medizin.epub
2014-03-16 13:38 - 2014-03-16 13:38 - 00666749 _____ () C:\Users\Sherin\Downloads\03 - Verliebt in einen Vampir.epub
2014-03-16 13:38 - 2014-03-16 13:38 - 00577004 _____ () C:\Users\Sherin\Downloads\05 - Vampire haben es auch nicht leicht.epub
2014-03-16 13:38 - 2014-03-16 13:38 - 00550856 _____ () C:\Users\Sherin\Downloads\04 - Immer Ärger mit Vampiren.epub
2014-03-16 13:38 - 2014-03-16 13:38 - 00511951 _____ () C:\Users\Sherin\Downloads\06 - Ein Vampir für gewisse Stunden.epub
2014-03-16 13:38 - 2014-03-16 13:38 - 00509102 _____ () C:\Users\Sherin\Downloads\02 - Ein Vampir zum vernaschen.epub
2014-03-16 13:38 - 2014-03-16 13:38 - 00411551 _____ () C:\Users\Sherin\Downloads\08 - Wer will schon einen Vampir.epub
2014-03-16 13:38 - 2014-03-16 13:38 - 00406686 _____ () C:\Users\Sherin\Downloads\07 - Ein Vampir und Gentleman.epub
2014-03-16 13:38 - 2014-03-16 13:38 - 00334659 _____ () C:\Users\Sherin\Downloads\09 - Im siebten Himmel mit einem Vampir.epub
2014-03-16 00:16 - 2013-08-20 19:49 - 00000000 ___RD () C:\Users\Sherin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-03-16 00:16 - 2013-08-20 19:49 - 00000000 ___RD () C:\Users\Sherin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-03-15 23:54 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\rescache
2014-03-15 23:28 - 2013-10-31 20:58 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-03-15 23:28 - 2013-10-31 20:58 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-03-15 23:27 - 2012-07-26 09:12 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-03-15 23:27 - 2012-07-26 09:12 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-03-15 23:27 - 2012-07-26 09:12 - 00000000 ____D () C:\Program Files\Windows Defender
2014-03-15 23:27 - 2012-07-26 09:12 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2014-03-15 23:27 - 2012-07-26 06:26 - 00262144 ___SH () C:\Windows\system32\config\BBI
2014-03-15 23:26 - 2012-07-26 09:12 - 00000000 ___RD () C:\Windows\ToastData
2014-03-15 18:19 - 2013-08-20 19:56 - 00002179 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-03-14 16:30 - 2013-12-02 17:40 - 00000000 ____D () C:\Users\Sherin\AppData\Roaming\calibre
2014-03-12 23:05 - 2013-08-15 23:15 - 00753134 _____ () C:\Windows\system32\perfh007.dat
2014-03-12 23:05 - 2013-08-15 23:15 - 00155826 _____ () C:\Windows\system32\perfc007.dat
2014-03-12 23:05 - 2012-07-26 08:28 - 01745416 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-03-12 17:32 - 2014-01-17 17:30 - 00000000 ____D () C:\Program Files (x86)\Iminent
2014-03-12 17:28 - 2013-12-02 17:40 - 00000964 _____ () C:\Users\Public\Desktop\calibre - E-book management.lnk
2014-03-12 17:28 - 2013-12-02 17:39 - 00000000 ____D () C:\Program Files (x86)\Calibre2
2014-03-12 17:25 - 2014-03-12 17:24 - 54625792 _____ () C:\Users\Sherin\Downloads\calibre-1.27.0.msi
2014-03-10 12:05 - 2014-02-04 16:35 - 00000000 ____D () C:\Users\Sherin\Desktop\Zeugnis
2014-03-10 12:01 - 2014-03-10 12:01 - 00000971 _____ () C:\Users\Public\Desktop\Images2PDF.lnk
2014-03-10 12:01 - 2014-03-10 12:01 - 00000000 ____D () C:\Users\Sherin\AppData\Roaming\pdfforge
2014-03-10 12:01 - 2014-03-10 12:01 - 00000000 ____D () C:\Program Files\pdfforge
2014-03-10 12:00 - 2014-03-10 12:00 - 01745312 _____ (pdfforge ) C:\Users\Sherin\Downloads\pdfforge_Images2PDF-0_9_7-setup.exe
2014-03-10 11:31 - 2014-03-10 11:31 - 00002699 _____ () C:\Users\Public\Desktop\Skype.lnk
2014-03-10 11:31 - 2014-03-10 11:31 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-03-10 11:31 - 2014-03-10 11:31 - 00000000 ____D () C:\Users\Sherin\AppData\Local\Skype
2014-03-10 11:31 - 2013-09-13 22:40 - 00000000 ____D () C:\ProgramData\Skype
2014-03-07 13:15 - 2014-03-06 23:31 - 00138950 _____ () C:\Users\Sherin\Desktop\Nadja.odt
2014-03-06 14:41 - 2014-03-06 14:38 - 00000000 ____D () C:\Program Files (x86)\Nonosweeper
2014-03-06 14:38 - 2014-03-06 14:38 - 00001051 _____ () C:\Users\UpdatusUser\Desktop\Nonosweeper.lnk
2014-03-06 14:38 - 2014-03-06 14:38 - 00001051 _____ () C:\Users\Sherin\Desktop\Nonosweeper.lnk
2014-03-06 14:36 - 2014-03-06 14:36 - 00426257 _____ () C:\Users\Sherin\Desktop\NonosweeperSetup_1_33.exe
2014-03-06 14:35 - 2014-03-06 14:35 - 00401752 _____ (Softonic ) C:\Users\Sherin\Downloads\SoftonicDownloader_fuer_nonosweeper.exe
2014-03-04 23:52 - 2013-11-14 16:25 - 00694240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-03-04 23:52 - 2013-11-14 16:25 - 00078304 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-03-04 09:10 - 2013-11-16 23:30 - 00000000 ____D () C:\Program Files (x86)\Diablo II
2014-03-03 21:48 - 2014-03-03 21:48 - 00000000 ____D () C:\Users\Sherin\AppData\Local\MusicPlayer
2014-03-03 10:40 - 2014-03-03 10:40 - 49793019 _____ () C:\Users\Sherin\Downloads\Grimm_Grimms-Maerchen---Vollstaendige,.epub
2014-03-03 10:40 - 2014-03-03 10:40 - 00001174 _____ () C:\Users\Sherin\Downloads\Glines_Rush-of-Love---Verfuehrt.acsm
2014-03-03 10:40 - 2014-03-03 10:40 - 00001172 _____ () C:\Users\Sherin\Downloads\Glines_Rush-of-Love---Erloest.acsm
2014-03-03 10:40 - 2014-03-03 10:40 - 00001171 _____ () C:\Users\Sherin\Downloads\Marinelli_Von-nun-an-und-fuer-immer.acsm
2014-03-03 10:39 - 2014-03-03 10:39 - 01746530 _____ () C:\Users\Sherin\Downloads\Collins_Die-Tribute-von-Panem.-Gesamta.epub
2014-03-03 10:39 - 2014-03-03 10:39 - 00001167 _____ () C:\Users\Sherin\Downloads\Hoover_Weil-ich-Layken-liebe.acsm
2014-03-03 10:07 - 2014-03-03 10:07 - 00778077 _____ () C:\Users\Sherin\Downloads\Jordan, Sophie - Firelight 01 - Brennender Kuss.epub
2014-02-27 16:24 - 2013-09-06 16:27 - 00000000 ____D () C:\Users\Sherin\AppData\Roaming\vlc
2014-02-23 09:13 - 2014-03-12 10:07 - 02241536 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-02-23 09:13 - 2014-03-12 10:07 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-02-23 09:13 - 2014-03-12 10:07 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll
2014-02-23 09:13 - 2014-03-12 10:07 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll
2014-02-23 09:13 - 2014-03-12 10:07 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-02-23 09:12 - 2014-03-12 10:07 - 19273216 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-02-23 09:12 - 2014-03-12 10:07 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-02-23 09:12 - 2014-03-12 10:07 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-02-23 09:11 - 2014-03-12 10:07 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-02-23 09:11 - 2014-03-12 10:07 - 03960320 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-02-23 09:11 - 2014-03-12 10:07 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-02-23 09:11 - 2014-03-12 10:07 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-02-23 09:11 - 2014-03-12 10:07 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-02-23 09:11 - 2014-03-12 10:07 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-02-23 09:11 - 2014-03-12 10:07 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-02-23 09:11 - 2014-03-12 10:07 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-02-23 07:54 - 2014-03-12 10:07 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-02-23 07:54 - 2014-03-12 10:07 - 01140736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-02-23 07:54 - 2014-03-12 10:07 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll
2014-02-23 07:53 - 2014-03-12 10:07 - 14358016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-02-23 07:53 - 2014-03-12 10:07 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-02-23 07:53 - 2014-03-12 10:07 - 02877952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-02-23 07:53 - 2014-03-12 10:07 - 02049024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-02-23 07:53 - 2014-03-12 10:07 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-02-23 07:53 - 2014-03-12 10:07 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-02-23 07:53 - 2014-03-12 10:07 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-02-23 07:53 - 2014-03-12 10:07 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-02-23 07:53 - 2014-03-12 10:07 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-02-23 07:53 - 2014-03-12 10:07 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-02-23 07:53 - 2014-03-12 10:07 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-02-23 07:35 - 2014-03-12 10:07 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-02-23 07:31 - 2014-03-12 10:07 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-02-23 05:06 - 2014-03-12 10:07 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll
2014-02-20 16:12 - 2013-08-20 19:55 - 00004098 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-02-20 16:12 - 2013-08-20 19:55 - 00003862 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
Files to move or delete:
====================
C:\ProgramData\dlprotect.exe
Some content of TEMP:
====================
C:\Users\Sherin\AppData\Local\Temp\avgnt.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-03-18 12:48 |