So lesen ist doch Gold wert. Ich hatte die Anleitung nicht bis zu Ende gelesen bzw. übersehen.
hier also jetzt die kopierten Log files:
FRST:
FRST Logfile:
Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 02-08-2014
Ran by Anxxx (administrator) on LOL-xxx on 29-07-2014 19:23:25
Running from C:\Users\Anxxx\Downloads
Platform: Windows 8.1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(Cherished Technololgy LIMITED) C:\ProgramData\IePluginServices\PluginService.exe
() C:\Program Files (x86)\F10DE075-EE9C-4182-AE10-C6767F4F23FB\cnfygfszki64.exe
(COMPANYVERS_NAME) C:\Program Files (x86)\Allin1Convert_8h\bar\1.bin\8hbarsvc.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
() C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(hxxp://yourfiledownloader.com) C:\Program Files (x86)\YourFileDownloader Updater\YourFileUpdater.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
() C:\Program Files (x86)\SupTab\HpUI.exe
() C:\Program Files (x86)\SupTab\Loader32.exe
() C:\Program Files (x86)\SupTab\Loader64.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Lenovo) C:\Program Files\Lenovo\Onekey Theater\OnekeyStudio.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Manager\utility.exe
(Saitek) C:\Program Files\SmartTechnology\Software\ProfilerU.exe
(Saitek) C:\Program Files\SmartTechnology\Software\SaiMfd.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Vimicro) C:\Program Files (x86)\USB Camera\VM331STI.EXE
(CyberLink Corp.) C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe
(CyberLink Corp.) C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(VER_COMPANY_NAME) C:\Program Files (x86)\Allin1Convert_8h\bar\1.bin\8hbrmon64.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Microsoft Corporation) C:\Windows\System32\WWAHost.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Nvtmru] => "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe"
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [286704 2013-04-30] (Intel Corporation)
HKLM\...\Run: [DolbyTrayApp] => c:\program files (x86)\Dolby Home Theater v4\pcee4.exe [508656 2012-08-31] (Dolby Laboratories Inc.)
HKLM\...\Run: [OnekeyStudio] => C:\Program Files\Lenovo\Onekey Theater\OnekeyStudio.exe [4196432 2012-09-14] (Lenovo)
HKLM\...\Run: [Energy Manager] => C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe [15794160 2013-09-16] (Lenovo(beijing) Limited)
HKLM\...\Run: [Lenovo Utility] => C:\Program Files (x86)\Lenovo\Energy Manager\Utility.exe [80368 2013-09-16] (Lenovo(beijing) Limited)
HKLM\...\Run: [ProfilerU] => C:\Program Files\SmartTechnology\Software\ProfilerU.exe [454144 2013-04-16] (Saitek)
HKLM\...\Run: [SaiMfd] => C:\Program Files\SmartTechnology\Software\SaiMfd.exe [158208 2013-04-16] (Saitek)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2986224 2013-06-20] (Synaptics Incorporated)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2201032 2014-04-02] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1703424 2013-08-11] (IDT, Inc.)
HKLM-x32\...\Run: [331BigDog] => C:\Program Files (x86)\USB Camera\VM331STI.EXE [552960 2013-05-14] (Vimicro)
HKLM-x32\...\Run: [YouCam Tray] => C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe [168464 2012-10-30] (CyberLink Corp.)
HKLM-x32\...\Run: [UpdateP2GShortCut] => C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [217088 2012-04-18] (CyberLink Corp.)
HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe [95192 2013-03-08] (CyberLink Corp.)
HKLM-x32\...\Run: [Intel AppUp(SM) center] => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [155488 2012-07-12] (Intel Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [Allin1Convert_8h Browser Plugin Loader 64] => C:\Program Files (x86)\Allin1Convert_8h\bar\1.bin\8hbrmon64.exe [71752 2014-05-10] (VER_COMPANY_NAME)
HKLM-x32\...\Run: [Allin1Convert EPM Support] => C:\Program Files (x86)\Allin1Convert_8h\bar\1.bin\8hmedint.exe [12872 2014-05-10] (Mindspark Interactive Network, Inc.)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [3816784 2014-07-21] (LogMeIn Inc.)
HKLM-x32\...\Run: [fst_de_116] => [X]
HKLM-x32\...\Run: [BlockAndSurf] => C:\Program Files (x86)\ver5BlockAndSurf\BlockAndSurf.exe
HKLM-x32\...\Run: [AnyProtect Scanner] => "C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe"
Winlogon\Notify\igfxcui: igfxdev.dll [X]
HKU\S-1-5-21-3211567349-1098451946-1009403936-1002\...\Run: [Dxtory Update Checker 2.0] => D:\Application\Dxtory2.0\UpdateChecker.exe
HKU\S-1-5-21-3211567349-1098451946-1009403936-1002\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [21444224 2014-05-08] (Skype Technologies S.A.)
HKU\S-1-5-21-3211567349-1098451946-1009403936-1002\...\Run: [LiveSupport] => "C:\Program Files (x86)\LiveSupport\LiveSupport.exe" /noshow /log
AppInit_DLLs: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll => C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC64Loader.dll [232896 2014-07-22] ()
AppInit_DLLs-x32: c:\progra~2\searchprotect\searchprotect\bin\spvc32loader.dll => c:\Program Files (x86)\searchprotect\searchprotect\bin\spvc32loader.dll [187328 2014-07-22] ()
IFEO\bitguard.exe: [Debugger] tasklist.exe
IFEO\bprotect.exe: [Debugger] tasklist.exe
IFEO\bpsvc.exe: [Debugger] tasklist.exe
IFEO\browserdefender.exe: [Debugger] tasklist.exe
IFEO\browserprotect.exe: [Debugger] tasklist.exe
IFEO\browsersafeguard.exe: [Debugger] tasklist.exe
IFEO\dprotectsvc.exe: [Debugger] tasklist.exe
IFEO\jumpflip: [Debugger] tasklist.exe
IFEO\protectedsearch.exe: [Debugger] tasklist.exe
IFEO\searchinstaller.exe: [Debugger] tasklist.exe
IFEO\searchprotection.exe: [Debugger] tasklist.exe
IFEO\searchprotector.exe: [Debugger] tasklist.exe
IFEO\searchsettings.exe: [Debugger] tasklist.exe
IFEO\searchsettings64.exe: [Debugger] tasklist.exe
IFEO\snapdo.exe: [Debugger] tasklist.exe
IFEO\stinst32.exe: [Debugger] tasklist.exe
IFEO\stinst64.exe: [Debugger] tasklist.exe
IFEO\umbrella.exe: [Debugger] tasklist.exe
IFEO\utiljumpflip.exe: [Debugger] tasklist.exe
IFEO\volaro: [Debugger] tasklist.exe
IFEO\vonteera: [Debugger] tasklist.exe
IFEO\websteroids.exe: [Debugger] tasklist.exe
IFEO\websteroidsservice.exe: [Debugger] tasklist.exe
ShellIconOverlayIdentifiers: SugarSyncBackedUp -> {0C4A258A-3F3B-4FFF-80A7-9B3BEC139472} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll (SugarSync, Inc.)
ShellIconOverlayIdentifiers: SugarSyncPending -> {62CCD8E3-9C21-41E1-B55E-1E26DFC68511} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll (SugarSync, Inc.)
ShellIconOverlayIdentifiers: SugarSyncRoot -> {A759AFF6-5851-457D-A540-F4ECED148351} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll (SugarSync, Inc.)
ShellIconOverlayIdentifiers: SugarSyncShared -> {1574C9EF-7D58-488F-B358-8B78C1538F51} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll (SugarSync, Inc.)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
GroupPolicyUsers\S-1-5-21-3211567349-1098451946-1009403936-1003\User: Group Policy restriction detected <======= ATTENTION
GroupPolicyUsers\S-1-5-21-3211567349-1098451946-1009403936-1002\User: Group Policy restriction detected <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StK217RbjR1YFa37oBy_U-nTnTbDTt8PVUCrSqw53cocrWE2pAkL587W18kUR5V48PMnJ9g8v7Es5fK6n3VJiswDyohEOKtdMcqr3Wyjpobcv9rLaiyH-QtrmobUPzyTJdeKd3eFvkY5BQ2979OaNqnY5TfykN-0DPvnT7qIZvHJe6LI0LuZyznPLrMyNiyxcRJWW0l1Pk0A,,&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://istart.webssearches.com/web/?type=ds&ts=1406477660&from=tugs&uid=ST1000LM014-1EJ164_W380D3ZQXXXXW380D3ZQ&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://istart.webssearches.com/?type=hp&ts=1406477660&from=tugs&uid=ST1000LM014-1EJ164_W380D3ZQXXXXW380D3ZQ
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://istart.webssearches.com/?type=hp&ts=1406477660&from=tugs&uid=ST1000LM014-1EJ164_W380D3ZQXXXXW380D3ZQ
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://istart.webssearches.com/web/?type=ds&ts=1406477660&from=tugs&uid=ST1000LM014-1EJ164_W380D3ZQXXXXW380D3ZQ&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://istart.webssearches.com/web/?type=ds&ts=1406477660&from=tugs&uid=ST1000LM014-1EJ164_W380D3ZQXXXXW380D3ZQ&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://istart.webssearches.com/?type=hp&ts=1406477660&from=tugs&uid=ST1000LM014-1EJ164_W380D3ZQXXXXW380D3ZQ
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://istart.webssearches.com/?type=hp&ts=1406477660&from=tugs&uid=ST1000LM014-1EJ164_W380D3ZQXXXXW380D3ZQ
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://istart.webssearches.com/web/?type=ds&ts=1406477660&from=tugs&uid=ST1000LM014-1EJ164_W380D3ZQXXXXW380D3ZQ&q={searchTerms}
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://istart.webssearches.com/web/?type=ds&ts=1406477660&from=tugs&uid=ST1000LM014-1EJ164_W380D3ZQXXXXW380D3ZQ&q={searchTerms}
SearchScopes: HKLM - {2E00D31D-D171-423D-836D-1A4D7EA7F1A9} URL =
SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://istart.webssearches.com/web/?type=ds&ts=1406477660&from=tugs&uid=ST1000LM014-1EJ164_W380D3ZQXXXXW380D3ZQ&q={searchTerms}
SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2516} URL = hxxp://www.default-search.net/search?sid=516&aid=104&itype=n&ver=12791&tm=421&src=ds&p={searchTerms}
SearchScopes: HKLM - {9FB2E36C-5159-4FB0-A6C4-1548911DBD95} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MALNJS
SearchScopes: HKLM-x32 - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://istart.webssearches.com/web/?type=ds&ts=1406477660&from=tugs&uid=ST1000LM014-1EJ164_W380D3ZQXXXXW380D3ZQ&q={searchTerms}
SearchScopes: HKLM-x32 - {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StK217RbjR1YFa37oBy_U-nTnTbDTt8PVUCrSqw53cocrWE2pAkL587W18kUR5V48PMnJ9g8v7Es5fK6n3VJiswDyohEOKtdMcqr3Wyjpobcv9rLaiyH-QtrmobUPzyTJdeKd3eFvkY5BQ2979OaNqnY5TfykN-0DPvnT7qIZvHJe6LI0LuZyznPLoRNy5OSM5fY-M7K2RcQ,,&q={searchTerms}
SearchScopes: HKLM-x32 - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://istart.webssearches.com/web/?type=ds&ts=1406477660&from=tugs&uid=ST1000LM014-1EJ164_W380D3ZQXXXXW380D3ZQ&q={searchTerms}
SearchScopes: HKLM-x32 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2516} URL = hxxp://www.default-search.net/search?sid=516&aid=104&itype=n&ver=12791&tm=421&src=ds&p={searchTerms}
BHO: save ion -> {08A4C602-486B-3EA0-46D8-BB2C24AA0910} -> C:\Program Files (x86)\save ion\gg6.x64.dll No File
BHO: Yahoo Community Smartbar (by Linkury)Engine -> {31ad400d-1b06-4e33-a59a-90c2c140cba0} -> C:\WINDOWS\system32\mscoree.dll (Microsoft Corporation)
BHO-x32: save ion -> {08A4C602-486B-3EA0-46D8-BB2C24AA0910} -> C:\Program Files (x86)\save ion\gg6.dll No File
BHO-x32: Yahoo Community Smartbar (by Linkury)Engine -> {31ad400d-1b06-4e33-a59a-90c2c140cba0} -> C:\WINDOWS\SysWOW64\mscoree.dll (Microsoft Corporation)
BHO-x32: IETabPage Class -> {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} -> C:\Program Files (x86)\SupTab\SupTab.dll (Thinknice Co. Limited)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: No Name -> {84FF7BD6-B47F-46F8-9130-01B2696B36CB} -> No File
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - Yahoo Community Smartbar (by Linkury) - {ae07101b-46d4-4a98-af68-0333ea26e113} - C:\WINDOWS\system32\mscoree.dll (Microsoft Corporation)
Toolbar: HKLM-x32 - Yahoo Community Smartbar (by Linkury) - {ae07101b-46d4-4a98-af68-0333ea26e113} - C:\WINDOWS\SysWOW64\mscoree.dll (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
FireFox:
========
FF ProfilePath: C:\Users\Andreas\AppData\Roaming\Mozilla\Firefox\Profiles\i8ridx19.default-1406628280714
FF Homepage: hxxp://google.de/
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @Allin1Convert_8h.com/Plugin -> C:\Program Files (x86)\Allin1Convert_8h\bar\1.bin\NP8hStub.dll (Mindspark)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Users\Andreas\AppData\Roaming\mozilla\plugins\np-mswmp.dll (Microsoft Corporation)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\default-search.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mystarttb.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\webssearches.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF HKLM-x32\...\Firefox\Extensions: [faststartff@gmail.com] - C:\Users\Andreas\AppData\Roaming\Mozilla\Firefox\Profiles\yi0n4vfj.default\extensions\faststartff@gmail.com
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF HKCU\...\Firefox\Extensions: [freegames4357@BestOffers] - C:\Users\Andreas\AppData\Roaming\Mozilla\Extensions\freegames4357@BestOffers
FF Extension: Free Games 111 - C:\Users\Andreas\AppData\Roaming\Mozilla\Extensions\freegames4357@BestOffers [2014-02-27]
FF HKCU\...\Firefox\Extensions: [speedtest4354@BestOffers] - C:\Users\Andreas\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers
FF Extension: Speed Test 127 - C:\Users\Andreas\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers [2014-02-27]
Chrome:
=======
Error reading preferences. Please check "preferences" file for possible corruption. <======= ATTENTION
CHR Extension: (No Name) - C:\Users\Andreas\AppData\Local\Google\Chrome\User Data\Default\Extensions\apejnnaepapgobfhogaghfkjpalmmlmp [2014-07-29]
CHR Extension: (saVe uon) - C:\Users\Andreas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ceebjoamjdoohfpmpiaeomlidmchdjfj [2014-06-30]
CHR Extension: (No Name) - C:\Users\Andreas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ffhfoagmjcnkolneahbpagjcjjaeofbg [2014-07-28]
CHR Extension: (Photo Enlarge) - C:\Users\Andreas\AppData\Local\Google\Chrome\User Data\Default\Extensions\hompjdfbfmmmgflfjdlnkohcplmboaeo [2014-06-30]
CHR Extension: (No Name) - C:\Users\Andreas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdjjjmnacfjnmgckbhldbekckfldeolk [2014-07-28]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AllDaySavingsService64; C:\Program Files (x86)\F10DE075-EE9C-4182-AE10-C6767F4F23FB\cnfygfszki64.exe [172544 2014-07-24] () [File not signed]
R2 Allin1Convert_8hService; C:\Program Files (x86)\Allin1Convert_8h\bar\1.bin\8hbarsvc.exe [88648 2014-05-10] (COMPANYVERS_NAME)
S2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2252504 2013-09-04] (Broadcom Corporation.)
R2 btwdins; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [958680 2013-05-28] (Broadcom Corporation.)
S4 CltMngSvc; C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe [2975168 2014-07-22] () [File not signed]
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15344 2013-04-30] (Intel Corporation)
R2 IePluginServices; C:\ProgramData\IePluginServices\PluginService.exe [702344 2014-07-27] (Cherished Technololgy LIMITED)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [314696 2014-05-21] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-04] (Intel Corporation)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [377616 2014-07-16] (LogMeIn, Inc.)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1615192 2014-04-02] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [20541216 2014-04-02] (NVIDIA Corporation)
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [338944 2013-08-11] (IDT, Inc.) [File not signed]
R2 VeriFaceSrv; C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe [68368 2013-09-16] ()
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-24] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-24] (Microsoft Corporation)
S2 3e9deaca; "C:\WINDOWS\system32\rundll32.exe" "c:\progra~2\sw_boo~1\AssistantSvc.dll",service
S2 mtgaotushb64; C:\Program Files\005\mtgaotushb64.exe run options=01110010050000000000000000000000 sourceguid=F10DE075-EE9C-4182-AE10-C6767F4F23FB [X]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2013-09-04] (Broadcom Corporation.)
R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [8536752 2013-07-01] (Broadcom Corporation)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation)
R3 btwpanfl; C:\WINDOWS\system32\drivers\btwpanfl.sys [44912 2013-01-20] (Broadcom Corporation.)
R3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [46136 2014-07-21] (LogMeIn Inc.)
R0 IntelHSWPcc; C:\Windows\System32\drivers\IntelPcc.sys [100184 2013-04-09] (Intel Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-04] (Intel Corporation)
R1 netfilter64; C:\Windows\System32\drivers\netfilter64.sys [46376 2014-07-24] (NetFilterSDK.com)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [40392 2014-03-21] (NVIDIA Corporation)
R3 SaiK1708; C:\Windows\system32\DRIVERS\SaiK1708.sys [180544 2012-09-20] (Saitek)
R3 SaiMini; C:\Windows\System32\drivers\SaiMini.sys [25120 2013-04-30] (Saitek)
R3 SaiNtBus; C:\Windows\system32\drivers\SaiBus.sys [52640 2013-04-30] (Saitek)
R3 SaiU1708; C:\Windows\System32\drivers\SaiU1708.sys [47168 2012-09-20] (Saitek)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [33008 2013-06-20] (Synaptics Incorporated)
R3 vm331avs; C:\Windows\System32\Drivers\vm331avs.sys [1064704 2013-05-31] (Vimicro Corporation)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-24] (Microsoft Corporation)
S3 wsvd; C:\Windows\system32\DRIVERS\wsvd.sys [102376 2012-06-13] ("CyberLink)
R1 {55dce8ba-9dec-4013-937e-adbf9317d990}w64; C:\Windows\System32\drivers\{55dce8ba-9dec-4013-937e-adbf9317d990}w64.sys [61072 2014-07-30] (StdLib)
R1 {9a9157bb-003e-4fef-8bd1-c09bc4586a28}Gw64; C:\Windows\System32\drivers\{9a9157bb-003e-4fef-8bd1-c09bc4586a28}Gw64.sys [61632 2014-07-31] (StdLib)
R1 {9a9157bb-003e-4fef-8bd1-c09bc4586a28}w64; C:\Windows\System32\drivers\{9a9157bb-003e-4fef-8bd1-c09bc4586a28}w64.sys [61120 2014-07-29] (StdLib)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-07-29 19:23 - 2014-07-29 19:23 - 00025059 _____ () C:\Users\Andreas\Downloads\FRST.txt
2014-07-29 19:23 - 2014-07-29 19:23 - 00000000 ____D () C:\FRST
2014-07-29 19:20 - 2014-07-29 19:21 - 02094080 _____ (Farbar) C:\Users\Andreas\Downloads\FRST64.exe
2014-07-29 12:33 - 2014-07-29 19:18 - 00000000 ____D () C:\Program Files\AllDaySavings
2014-07-29 11:15 - 2014-07-29 11:15 - 02278856 _____ () C:\Users\Andreas\Downloads\avira_pc_cleaner_de.exe
2014-07-29 10:53 - 2014-07-29 10:53 - 00000000 ____D () C:\Program Files (x86)\DigiiCouppoN
2014-07-29 10:46 - 2014-07-29 10:46 - 00000000 ____D () C:\Users\Andreas\Documents\PC Speed Maximizer
2014-07-29 10:42 - 2014-07-29 12:33 - 00000376 _____ () C:\WINDOWS\Tasks\APSnotifierPP3.job
2014-07-29 10:42 - 2014-07-29 12:33 - 00000376 _____ () C:\WINDOWS\Tasks\APSnotifierPP2.job
2014-07-29 10:42 - 2014-07-29 11:07 - 00000378 _____ () C:\WINDOWS\Tasks\APSnotifierPP1.job
2014-07-29 10:42 - 2014-07-29 10:47 - 00002812 _____ () C:\WINDOWS\System32\Tasks\APSnotifierPP1
2014-07-29 10:42 - 2014-07-29 10:47 - 00002810 _____ () C:\WINDOWS\System32\Tasks\APSnotifierPP3
2014-07-29 10:42 - 2014-07-29 10:47 - 00002810 _____ () C:\WINDOWS\System32\Tasks\APSnotifierPP2
2014-07-29 10:42 - 2014-07-29 10:42 - 00000322 _____ () C:\Users\Andreas\AppData\Roaming\aps.uninstall.scan.results
2014-07-29 10:41 - 2014-07-29 10:41 - 00575544 _____ (ClickMeIn Limited) C:\Users\Andreas\AppData\Local\nsv3794.tmp
2014-07-29 10:41 - 2014-07-29 10:41 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_webinstr_01009.Wdf
2014-07-29 10:41 - 2014-07-29 10:41 - 00000000 ____D () C:\Program Files (x86)\predm
2014-07-29 10:30 - 2014-07-29 10:53 - 00000000 ____D () C:\ProgramData\DigiiCouppoN
2014-07-29 10:07 - 2014-07-29 10:07 - 00000000 ____D () C:\ProgramData\374311380
2014-07-29 09:54 - 2014-07-29 10:46 - 00000000 ____D () C:\Users\Andreas\AppData\Local\CrashDumps
2014-07-29 08:52 - 2014-07-28 19:12 - 00000000 ____D () C:\Users\BABO\AppData\Roaming\TS3Client
2014-07-29 08:51 - 2014-07-29 08:51 - 00001227 _____ () C:\Users\BABO\Desktop\TeamSpeak 3 Client.lnk
2014-07-29 08:51 - 2014-07-29 08:51 - 00000000 ____D () C:\Users\BABO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
2014-07-29 08:51 - 2014-07-29 08:51 - 00000000 ____D () C:\Users\BABO\AppData\Local\TeamSpeak 3 Client
2014-07-29 08:37 - 2014-07-29 09:50 - 00000000 ____D () C:\Program Files (x86)\Opera
2014-07-29 08:37 - 2014-07-29 08:37 - 00003848 _____ () C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1406615836
2014-07-29 08:37 - 2014-07-29 08:37 - 00001162 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk.1406620240.old
2014-07-29 08:36 - 2014-07-29 08:36 - 37445632 _____ (Advertiso) C:\Users\Andreas\Downloads\teamspeak-3.exe
2014-07-28 22:27 - 2014-07-29 10:15 - 00000000 ____D () C:\Users\Andreas\AppData\Local\Gameo
2014-07-28 22:27 - 2014-07-28 22:27 - 00000000 ___HD () C:\Users\Andreas\AppData\Roaming\GoldenGate
2014-07-28 22:27 - 2014-07-28 22:27 - 00000000 ____D () C:\Users\Andreas\AppData\Roaming\GGEmpire441
2014-07-28 22:27 - 2014-07-28 22:27 - 00000000 ____D () C:\Users\Andreas\AppData\Local\GGEmpire
2014-07-28 20:22 - 2014-07-28 20:22 - 00000000 ____D () C:\Users\BABO\AppData\Roaming\Activeris
2014-07-28 19:15 - 2014-07-29 10:50 - 00000000 ____D () C:\Users\Andreas\AppData\Roaming\Probit Software
2014-07-28 18:18 - 2014-07-26 20:13 - 00000000 ____D () C:\Users\BABO\AppData\Local\CrashDumps
2014-07-28 18:14 - 2014-07-29 19:10 - 00003826 _____ () C:\WINDOWS\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-11.job
2014-07-28 18:14 - 2014-07-29 19:10 - 00002456 _____ () C:\WINDOWS\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-3.job
2014-07-28 18:14 - 2014-07-29 19:10 - 00002102 _____ () C:\WINDOWS\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-4.job
2014-07-28 18:14 - 2014-07-29 19:10 - 00001600 _____ () C:\WINDOWS\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-1.job
2014-07-28 18:14 - 2014-07-29 19:10 - 00001492 _____ () C:\WINDOWS\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-5_user.job
2014-07-28 18:14 - 2014-07-29 19:10 - 00001478 _____ () C:\WINDOWS\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-5.job
2014-07-28 18:14 - 2014-07-28 18:14 - 00006830 _____ () C:\WINDOWS\System32\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-11
2014-07-28 18:14 - 2014-07-28 18:14 - 00005460 _____ () C:\WINDOWS\System32\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-3
2014-07-28 18:14 - 2014-07-28 18:14 - 00005106 _____ () C:\WINDOWS\System32\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-4
2014-07-28 18:14 - 2014-07-28 18:14 - 00004604 _____ () C:\WINDOWS\System32\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-1
2014-07-28 18:14 - 2014-07-28 18:14 - 00004482 _____ () C:\WINDOWS\System32\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-5
2014-07-28 18:02 - 2014-07-28 18:02 - 00000000 ____D () C:\Users\BABO\AppData\Roaming\Systweak
2014-07-28 12:06 - 2014-07-28 12:06 - 00000000 ____D () C:\4bab8aa81532ce67a6a9907d
2014-07-27 19:00 - 2014-07-31 03:37 - 00061632 _____ (StdLib) C:\WINDOWS\system32\Drivers\{9a9157bb-003e-4fef-8bd1-c09bc4586a28}Gw64.sys
2014-07-27 18:34 - 2014-07-29 12:35 - 00061120 _____ (StdLib) C:\WINDOWS\system32\Drivers\{9a9157bb-003e-4fef-8bd1-c09bc4586a28}w64.sys
2014-07-27 18:21 - 2014-07-27 18:21 - 00000000 ____D () C:\Users\BABO\AppData\Local\fst_de_116
2014-07-27 18:19 - 2014-07-29 10:51 - 00000000 ____D () C:\ProgramData\Systweak
2014-07-27 18:19 - 2014-07-29 10:50 - 00000000 ____D () C:\Users\Andreas\AppData\Roaming\Activeris
2014-07-27 18:19 - 2014-07-29 10:49 - 00000000 ____D () C:\Users\Andreas\AppData\Roaming\systweak
2014-07-27 18:19 - 2014-07-27 18:19 - 00003332 _____ () C:\WINDOWS\System32\Tasks\ASP
2014-07-27 18:17 - 2014-07-29 10:55 - 00000000 ____D () C:\Program Files (x86)\F10DE075-EE9C-4182-AE10-C6767F4F23FB
2014-07-27 18:17 - 2014-07-27 18:17 - 00000000 ____D () C:\Users\BABO\AppData\Local\SearchProtect
2014-07-27 18:17 - 2014-07-27 18:17 - 00000000 ____D () C:\Program Files (x86)\SearchProtect
2014-07-27 18:15 - 2014-07-29 12:33 - 00000000 ____D () C:\Program Files\005
2014-07-27 18:14 - 2014-07-30 02:24 - 00061072 _____ (StdLib) C:\WINDOWS\system32\Drivers\{55dce8ba-9dec-4013-937e-adbf9317d990}w64.sys
2014-07-27 18:14 - 2014-07-29 19:10 - 00003826 _____ () C:\WINDOWS\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-11.job
2014-07-27 18:14 - 2014-07-29 19:10 - 00003144 _____ () C:\WINDOWS\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-3.job
2014-07-27 18:14 - 2014-07-29 19:10 - 00002084 _____ () C:\WINDOWS\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-4.job
2014-07-27 18:14 - 2014-07-29 19:10 - 00001586 _____ () C:\WINDOWS\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-1.job
2014-07-27 18:14 - 2014-07-29 19:10 - 00001496 _____ () C:\WINDOWS\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-5_user.job
2014-07-27 18:14 - 2014-07-29 19:10 - 00001474 _____ () C:\WINDOWS\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-5.job
2014-07-27 18:14 - 2014-07-29 19:10 - 00001382 _____ () C:\WINDOWS\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-2.job
2014-07-27 18:14 - 2014-07-29 19:10 - 00001330 _____ () C:\WINDOWS\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-10.job
2014-07-27 18:14 - 2014-07-29 10:50 - 00000000 ____D () C:\Program Files (x86)\Easy Speed Check
2014-07-27 18:14 - 2014-07-28 19:14 - 00000000 ____D () C:\Program Files (x86)\SupTab
2014-07-27 18:14 - 2014-07-27 18:14 - 00006830 _____ () C:\WINDOWS\System32\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-11
2014-07-27 18:14 - 2014-07-27 18:14 - 00006148 _____ () C:\WINDOWS\System32\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-3
2014-07-27 18:14 - 2014-07-27 18:14 - 00005088 _____ () C:\WINDOWS\System32\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-4
2014-07-27 18:14 - 2014-07-27 18:14 - 00004590 _____ () C:\WINDOWS\System32\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-1
2014-07-27 18:14 - 2014-07-27 18:14 - 00004478 _____ () C:\WINDOWS\System32\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-5
2014-07-27 18:14 - 2014-07-27 18:14 - 00004386 _____ () C:\WINDOWS\System32\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-2
2014-07-27 18:14 - 2014-07-27 18:14 - 00004334 _____ () C:\WINDOWS\System32\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-10
2014-07-27 18:14 - 2014-07-27 18:14 - 00000000 ____D () C:\ProgramData\WindowsMangerProtect
2014-07-27 18:14 - 2014-07-27 18:14 - 00000000 ____D () C:\ProgramData\IePluginServices
2014-07-27 18:13 - 2014-07-29 10:52 - 00000000 ____D () C:\Users\Andreas\AppData\Local\WeatherAlerts
2014-07-27 18:13 - 2014-07-27 18:13 - 00000000 ____D () C:\Program Files (x86)\Probit Software
2014-07-27 18:07 - 2014-07-27 18:07 - 00000000 ____D () C:\Users\Andreas\AppData\Local\LPT
2014-07-27 18:06 - 2014-07-29 12:24 - 00000000 ____D () C:\Program Files (x86)\globalUpdate
2014-07-27 18:06 - 2014-07-29 10:51 - 00000000 ____D () C:\Users\Andreas\AppData\Local\Genesis_07271606
2014-07-27 18:06 - 2014-07-27 18:07 - 00000000 ____D () C:\Users\Andreas\AppData\Local\Smartbar
2014-07-27 18:06 - 2014-07-27 18:06 - 00000000 ____D () C:\Users\Andreas\AppData\Local\globalUpdate
2014-07-27 18:05 - 2014-07-28 18:18 - 00000000 _____ () C:\END
2014-07-27 18:05 - 2014-07-27 18:17 - 00000000 ____D () C:\Users\Andreas\AppData\Local\SearchProtect
2014-07-26 14:39 - 2014-07-26 14:39 - 00018487 _____ () C:\Users\BABO\Desktop\INTRO.camproj
2014-07-26 14:33 - 2014-07-26 14:33 - 10194141 _____ () C:\Users\BABO\Desktop\final render 2.wmv
2014-07-26 11:25 - 2014-07-26 11:25 - 00000000 ____D () C:\Users\BABO\AppData\Local\TechSmith
2014-07-26 11:24 - 2014-07-26 20:08 - 00000000 ____D () C:\Users\BABO\Documents\Camtasia Studio
2014-07-26 11:24 - 2014-07-26 11:24 - 00000000 ____D () C:\Users\BABO\AppData\Roaming\TechSmith
2014-07-26 11:22 - 2014-07-26 11:22 - 00001195 _____ () C:\Users\Public\Desktop\Camtasia Studio 8.lnk
2014-07-26 11:22 - 2014-07-26 11:22 - 00000000 ____D () C:\ProgramData\regid.1995-08.com.techsmith
2014-07-26 11:22 - 2014-07-26 11:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith
2014-07-26 11:22 - 2014-07-26 11:22 - 00000000 ____D () C:\Program Files (x86)\QuickTime
2014-07-26 11:21 - 2014-07-26 11:21 - 00000000 ____D () C:\ProgramData\TechSmith
2014-07-26 11:21 - 2014-07-26 11:21 - 00000000 ____D () C:\Program Files (x86)\TechSmith
2014-07-26 10:58 - 2014-07-10 06:16 - 00716800 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-07-26 10:58 - 2014-07-10 06:03 - 04756992 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2014-07-26 10:58 - 2014-07-10 05:33 - 01120256 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
2014-07-25 17:46 - 2014-07-25 17:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2014-07-25 17:46 - 2014-07-25 17:46 - 00000000 ____D () C:\Program Files (x86)\LogMeIn Hamachi
2014-07-24 22:25 - 2014-07-24 22:25 - 00046376 _____ (NetFilterSDK.com) C:\WINDOWS\system32\Drivers\netfilter64.sys
2014-07-21 18:08 - 2014-07-21 18:08 - 00046136 ____H (LogMeIn Inc.) C:\WINDOWS\system32\Drivers\Hamdrv.sys
2014-07-13 22:25 - 2014-07-15 21:24 - 00000000 ____D () C:\Users\BABO\AppData\Roaming\Audacity
2014-07-13 22:25 - 2014-07-13 22:25 - 00001046 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk
2014-07-13 22:25 - 2014-07-13 22:25 - 00001034 _____ () C:\Users\Public\Desktop\Audacity.lnk
2014-07-13 22:25 - 2014-07-13 22:25 - 00000000 ____D () C:\Program Files (x86)\Audacity
2014-07-13 22:20 - 2014-07-13 22:24 - 22180353 _____ (Audacity Team ) C:\Users\BABO\Desktop\audacity-win-2.0.5.exe
2014-07-13 11:57 - 2014-07-26 19:11 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-07-11 12:19 - 2014-07-11 12:19 - 13303900 _____ () C:\Users\BABO\Downloads\Sphax PureBDcraft 64x MC16.zip
2014-07-11 07:26 - 2014-04-14 05:29 - 01018880 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2014-07-11 07:25 - 2014-07-11 07:25 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel
2014-07-11 07:23 - 2014-06-05 16:13 - 00216368 _____ (Microsoft Corporation) C:\WINDOWS\system32\rsaenh.dll
2014-07-11 07:23 - 2014-06-05 15:14 - 00189016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rsaenh.dll
2014-07-11 07:23 - 2014-06-02 04:10 - 00423768 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2014-07-11 07:23 - 2014-05-31 12:07 - 00467800 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2014-07-11 07:23 - 2014-05-31 12:07 - 00440664 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbport.sys
2014-07-11 07:23 - 2014-05-31 12:07 - 00419672 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbhub.sys
2014-07-11 07:23 - 2014-05-31 12:07 - 00089944 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbehci.sys
2014-07-11 07:23 - 2014-05-31 12:07 - 00027480 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbd.sys
2014-07-11 07:23 - 2014-05-31 08:30 - 00037376 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbuhci.sys
2014-07-11 07:23 - 2014-05-31 08:27 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WUDFPf.sys
2014-07-11 07:23 - 2014-05-31 08:26 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WUDFRd.sys
2014-07-11 07:23 - 2014-05-31 06:01 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFHost.exe
2014-07-11 07:23 - 2014-05-31 06:01 - 00209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFPlatform.dll
2014-07-11 07:23 - 2014-05-31 06:01 - 00099840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFSvc.dll
2014-07-11 07:23 - 2014-05-27 17:53 - 02518360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2014-07-11 07:23 - 2014-05-27 11:56 - 00323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\DaOtpCredentialProvider.dll
2014-07-11 07:23 - 2014-05-27 11:53 - 00270848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DaOtpCredentialProvider.dll
2014-07-11 07:23 - 2014-05-17 06:59 - 16871936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2014-07-11 07:23 - 2014-05-17 06:13 - 12711424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2014-07-11 07:22 - 2014-07-11 07:22 - 00428888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2014-07-10 20:04 - 2014-07-10 20:04 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2014-07-10 20:00 - 2014-07-10 20:01 - 00000000 ____D () C:\Users\BABO\Desktop\German_TOP100_Single_Charts_mit_Cover_30_06_2014-MCU
2014-07-10 18:46 - 2014-07-01 00:45 - 00688128 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll
2014-07-10 18:46 - 2014-06-28 09:48 - 00527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2014-07-10 18:46 - 2014-06-28 09:07 - 00385536 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2014-07-10 17:53 - 2014-06-19 03:39 - 23464448 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-07-10 17:53 - 2014-06-19 02:16 - 17276416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-07-10 17:53 - 2014-06-19 01:51 - 05721088 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2014-07-10 17:53 - 2014-06-19 01:46 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2014-07-10 17:53 - 2014-06-19 00:57 - 00225280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2014-07-10 17:53 - 2014-06-19 00:52 - 04254720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2014-07-10 17:53 - 2014-06-19 00:51 - 13527040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2014-07-10 17:53 - 2014-06-19 00:35 - 11742208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2014-07-10 17:52 - 2014-06-19 02:48 - 02768384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2014-07-10 17:52 - 2014-06-19 02:09 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2014-07-10 17:52 - 2014-06-19 01:50 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2014-07-10 17:52 - 2014-06-19 01:48 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2014-07-10 17:52 - 2014-06-19 01:39 - 00608768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2014-07-10 17:52 - 2014-06-19 01:33 - 00631808 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2014-07-10 17:52 - 2014-06-19 01:32 - 02179072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2014-07-10 17:52 - 2014-06-19 01:27 - 02040832 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2014-07-10 17:52 - 2014-06-19 01:12 - 00367616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
2014-07-10 17:52 - 2014-06-19 00:59 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2014-07-10 17:52 - 2014-06-19 00:58 - 02266112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2014-07-10 17:52 - 2014-06-19 00:58 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2014-07-10 17:52 - 2014-06-19 00:49 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2014-07-10 17:52 - 2014-06-19 00:45 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2014-07-10 17:52 - 2014-06-19 00:34 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2014-07-10 17:52 - 2014-06-19 00:15 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2014-07-10 17:52 - 2014-06-19 00:13 - 01791488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2014-07-10 17:52 - 2014-06-19 00:09 - 01139200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2014-07-10 17:52 - 2014-06-19 00:07 - 00704512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2014-07-10 17:51 - 2014-05-31 12:07 - 00054776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2014-07-10 17:51 - 2014-05-31 12:06 - 00555736 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2014-07-10 17:51 - 2014-05-31 05:40 - 13287936 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2014-07-10 17:51 - 2014-05-31 05:30 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2014-07-10 17:51 - 2014-05-31 05:12 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-07-10 17:51 - 2014-05-31 05:06 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2014-07-10 17:51 - 2014-05-31 05:03 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2014-07-10 17:51 - 2014-05-31 05:01 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-07-10 17:51 - 2014-05-31 04:56 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2014-07-10 17:51 - 2014-05-31 04:54 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2014-07-10 17:51 - 2014-05-31 04:48 - 03463680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2014-07-10 17:51 - 2014-05-31 04:37 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2014-07-10 17:51 - 2014-05-31 04:36 - 00923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2014-07-10 17:51 - 2014-05-31 04:35 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2014-07-10 17:51 - 2014-05-31 04:32 - 00756224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2014-07-10 17:50 - 2014-06-17 00:26 - 00779264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\osk.exe
2014-07-10 17:50 - 2014-06-17 00:24 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\osk.exe
2014-07-10 17:50 - 2014-06-06 16:20 - 04190720 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2014-07-10 17:50 - 2014-05-30 05:03 - 00563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2014-07-10 17:49 - 2014-05-29 14:02 - 00565576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2014-07-10 17:49 - 2014-05-29 09:55 - 00735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll
2014-07-10 17:49 - 2014-05-29 08:40 - 00735232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll
2014-07-10 17:49 - 2014-05-29 08:37 - 00436224 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2014-07-10 17:49 - 2014-05-29 07:34 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2014-07-10 17:49 - 2014-05-29 07:27 - 01417216 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2014-07-10 17:48 - 2014-06-06 15:04 - 00586240 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll
2014-07-10 17:48 - 2014-06-06 14:18 - 00488960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qedit.dll
2014-07-10 17:47 - 2014-07-10 17:47 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe
2014-06-30 20:25 - 2014-06-30 20:25 - 00000000 ____D () C:\Users\Andreas\Documents\Optimizer Pro
2014-06-30 20:13 - 2014-06-30 20:13 - 00177465 _____ () C:\Users\Andreas\Downloads\ShadersModCore-v2.3.14mc1.7.5-zip (3).zip
2014-06-30 20:13 - 2014-06-30 20:13 - 00177465 _____ () C:\Users\Andreas\Downloads\ShadersModCore-v2.3.14mc1.7.5-zip (2).zip
2014-06-30 20:13 - 2014-06-30 20:13 - 00177465 _____ () C:\Users\Andreas\Downloads\ShadersModCore-v2.3.14mc1.7.5-zip (1).zip
2014-06-30 20:12 - 2014-06-30 20:12 - 00177465 _____ () C:\Users\Andreas\Downloads\ShadersModCore-v2.3.14mc1.7.5-zip.zip
2014-06-30 20:09 - 2014-07-29 19:10 - 00000506 ____H () C:\WINDOWS\Tasks\SW_Booster-S-297758247.job
2014-06-30 20:09 - 2014-07-29 11:19 - 00000000 ____D () C:\Program Files (x86)\SW_Booster
2014-06-30 20:09 - 2014-06-30 20:09 - 00002744 _____ () C:\WINDOWS\System32\Tasks\SW_Booster-S-297758247
2014-06-30 20:08 - 2014-07-29 12:32 - 00000000 ____D () C:\ProgramData\save ion
2014-06-30 20:08 - 2014-07-29 12:32 - 00000000 ____D () C:\Program Files (x86)\save ion
2014-06-30 20:08 - 2014-07-29 10:53 - 00000306 __RSH () C:\ProgramData\ntuser.pol
2014-06-30 20:08 - 2014-07-29 10:53 - 00000000 ____D () C:\ProgramData\854d1b53ee373cd2
2014-06-30 20:08 - 2014-07-04 20:40 - 00000000 ____D () C:\ProgramData\Adblocker
2014-06-30 20:08 - 2014-06-30 20:28 - 00000000 ____D () C:\Program Files (x86)\Adblocker
2014-06-30 20:08 - 2014-06-30 20:08 - 00000000 ____D () C:\Users\Gast\AppData\Local\Torch
2014-06-30 20:08 - 2014-06-30 20:08 - 00000000 ____D () C:\Users\Gast\AppData\Local\Google
2014-06-30 20:08 - 2014-06-30 20:08 - 00000000 ____D () C:\Users\Gast\AppData\Local\Comodo
2014-06-30 20:08 - 2014-06-30 20:08 - 00000000 ____D () C:\Users\Gast\AppData\Local\Chromatic Browser
2014-06-30 20:08 - 2014-06-30 20:08 - 00000000 ____D () C:\Users\Gast
2014-06-30 20:08 - 2014-06-30 20:08 - 00000000 ____D () C:\Users\BABO\AppData\Local\Comodo
2014-06-30 20:08 - 2014-06-30 20:08 - 00000000 ____D () C:\Users\BABO\AppData\Local\Chromatic Browser
2014-06-30 20:08 - 2014-06-30 20:08 - 00000000 ____D () C:\Users\Andreas\AppData\Local\Torch
2014-06-30 20:08 - 2014-06-30 20:08 - 00000000 ____D () C:\Users\Andreas\AppData\Local\Google
2014-06-30 20:08 - 2014-06-30 20:08 - 00000000 ____D () C:\Users\Andreas\AppData\Local\Comodo
2014-06-30 20:08 - 2014-06-30 20:08 - 00000000 ____D () C:\Users\Andreas\AppData\Local\Chromatic Browser
2014-06-30 20:08 - 2014-06-30 20:08 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Torch
2014-06-30 20:08 - 2014-06-30 20:08 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Google
2014-06-30 20:08 - 2014-06-30 20:08 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Comodo
2014-06-30 20:08 - 2014-06-30 20:08 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Chromatic Browser
2014-06-30 20:08 - 2014-06-30 20:08 - 00000000 ____D () C:\Users\Administrator
2014-06-30 20:07 - 2014-06-30 20:11 - 00000000 ____D () C:\ProgramData\InstallMate
2014-06-30 18:58 - 2014-06-30 18:58 - 00298088 _____ () C:\WINDOWS\Minidump\063014-44093-01.dmp
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-07-31 03:37 - 2014-07-27 19:00 - 00061632 _____ (StdLib) C:\WINDOWS\system32\Drivers\{9a9157bb-003e-4fef-8bd1-c09bc4586a28}Gw64.sys
2014-07-30 02:24 - 2014-07-27 18:14 - 00061072 _____ (StdLib) C:\WINDOWS\system32\Drivers\{55dce8ba-9dec-4013-937e-adbf9317d990}w64.sys
2014-07-29 19:23 - 2014-07-29 19:23 - 00025059 _____ () C:\Users\Andreas\Downloads\FRST.txt
2014-07-29 19:23 - 2014-07-29 19:23 - 00000000 ____D () C:\FRST
2014-07-29 19:22 - 2014-04-17 16:21 - 01712123 _____ () C:\WINDOWS\WindowsUpdate.log
2014-07-29 19:21 - 2014-07-29 19:20 - 02094080 _____ (Farbar) C:\Users\Andreas\Downloads\FRST64.exe
2014-07-29 19:18 - 2014-07-29 12:33 - 00000000 ____D () C:\Program Files\AllDaySavings
2014-07-29 19:15 - 2014-03-18 12:03 - 01780340 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-07-29 19:15 - 2014-03-18 11:25 - 00766620 _____ () C:\WINDOWS\system32\perfh007.dat
2014-07-29 19:15 - 2014-03-18 11:25 - 00159902 _____ () C:\WINDOWS\system32\perfc007.dat
2014-07-29 19:11 - 2014-06-28 23:10 - 00003146 _____ () C:\WINDOWS\System32\Tasks\FRAPS
2014-07-29 19:11 - 2014-05-12 19:28 - 00000000 ____D () C:\Users\Andreas\AppData\Local\LogMeIn Hamachi
2014-07-29 19:11 - 2014-03-22 10:22 - 00000000 ____D () C:\Users\BABO\Desktop\Screenshot Minecraft
2014-07-29 19:11 - 2013-12-26 16:19 - 00000000 ____D () C:\Fraps
2014-07-29 19:10 - 2014-07-28 18:14 - 00003826 _____ () C:\WINDOWS\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-11.job
2014-07-29 19:10 - 2014-07-28 18:14 - 00002456 _____ () C:\WINDOWS\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-3.job
2014-07-29 19:10 - 2014-07-28 18:14 - 00002102 _____ () C:\WINDOWS\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-4.job
2014-07-29 19:10 - 2014-07-28 18:14 - 00001600 _____ () C:\WINDOWS\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-1.job
2014-07-29 19:10 - 2014-07-28 18:14 - 00001492 _____ () C:\WINDOWS\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-5_user.job
2014-07-29 19:10 - 2014-07-28 18:14 - 00001478 _____ () C:\WINDOWS\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-5.job
2014-07-29 19:10 - 2014-07-27 18:14 - 00003826 _____ () C:\WINDOWS\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-11.job
2014-07-29 19:10 - 2014-07-27 18:14 - 00003144 _____ () C:\WINDOWS\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-3.job
2014-07-29 19:10 - 2014-07-27 18:14 - 00002084 _____ () C:\WINDOWS\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-4.job
2014-07-29 19:10 - 2014-07-27 18:14 - 00001586 _____ () C:\WINDOWS\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-1.job
2014-07-29 19:10 - 2014-07-27 18:14 - 00001496 _____ () C:\WINDOWS\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-5_user.job
2014-07-29 19:10 - 2014-07-27 18:14 - 00001474 _____ () C:\WINDOWS\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-5.job
2014-07-29 19:10 - 2014-07-27 18:14 - 00001382 _____ () C:\WINDOWS\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-2.job
2014-07-29 19:10 - 2014-07-27 18:14 - 00001330 _____ () C:\WINDOWS\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-10.job
2014-07-29 19:10 - 2014-06-30 20:09 - 00000506 ____H () C:\WINDOWS\Tasks\SW_Booster-S-297758247.job
2014-07-29 19:08 - 2013-08-22 16:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-07-29 19:07 - 2013-09-16 12:34 - 00012800 _____ () C:\WINDOWS\system32\VfService.trf
2014-07-29 19:07 - 2013-08-22 15:25 - 00524288 ___SH () C:\WINDOWS\system32\config\BBI
2014-07-29 19:00 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2014-07-29 18:50 - 2013-12-23 22:26 - 00003600 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3211567349-1098451946-1009403936-1002
2014-07-29 18:38 - 2014-04-17 17:10 - 00003946 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{B53FEC0D-B599-46DF-8E1C-A7BD14CB2038}
2014-07-29 18:04 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2014-07-29 18:04 - 2012-07-26 09:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2014-07-29 18:03 - 2014-06-27 18:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-07-29 18:02 - 2014-06-27 18:40 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-07-29 18:02 - 2014-06-27 18:40 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-07-29 12:35 - 2014-07-27 18:34 - 00061120 _____ (StdLib) C:\WINDOWS\system32\Drivers\{9a9157bb-003e-4fef-8bd1-c09bc4586a28}w64.sys
2014-07-29 12:33 - 2014-07-29 10:42 - 00000376 _____ () C:\WINDOWS\Tasks\APSnotifierPP3.job
2014-07-29 12:33 - 2014-07-29 10:42 - 00000376 _____ () C:\WINDOWS\Tasks\APSnotifierPP2.job
2014-07-29 12:33 - 2014-07-27 18:15 - 00000000 ____D () C:\Program Files\005
2014-07-29 12:33 - 2014-03-18 03:50 - 00014402 _____ () C:\WINDOWS\PFRO.log
2014-07-29 12:32 - 2014-06-30 20:08 - 00000000 ____D () C:\ProgramData\save ion
2014-07-29 12:32 - 2014-06-30 20:08 - 00000000 ____D () C:\Program Files (x86)\save ion
2014-07-29 12:24 - 2014-07-27 18:06 - 00000000 ____D () C:\Program Files (x86)\globalUpdate
2014-07-29 11:19 - 2014-06-30 20:09 - 00000000 ____D () C:\Program Files (x86)\SW_Booster
2014-07-29 11:15 - 2014-07-29 11:15 - 02278856 _____ () C:\Users\Andreas\Downloads\avira_pc_cleaner_de.exe
2014-07-29 11:07 - 2014-07-29 10:42 - 00000378 _____ () C:\WINDOWS\Tasks\APSnotifierPP1.job
2014-07-29 10:55 - 2014-07-27 18:17 - 00000000 ____D () C:\Program Files (x86)\F10DE075-EE9C-4182-AE10-C6767F4F23FB
2014-07-29 10:53 - 2014-07-29 10:53 - 00000000 ____D () C:\Program Files (x86)\DigiiCouppoN
2014-07-29 10:53 - 2014-07-29 10:30 - 00000000 ____D () C:\ProgramData\DigiiCouppoN
2014-07-29 10:53 - 2014-06-30 20:08 - 00000306 __RSH () C:\ProgramData\ntuser.pol
2014-07-29 10:53 - 2014-06-30 20:08 - 00000000 ____D () C:\ProgramData\854d1b53ee373cd2
2014-07-29 10:52 - 2014-07-27 18:13 - 00000000 ____D () C:\Users\Andreas\AppData\Local\WeatherAlerts
2014-07-29 10:51 - 2014-07-27 18:19 - 00000000 ____D () C:\ProgramData\Systweak
2014-07-29 10:51 - 2014-07-27 18:06 - 00000000 ____D () C:\Users\Andreas\AppData\Local\Genesis_07271606
2014-07-29 10:50 - 2014-07-28 19:15 - 00000000 ____D () C:\Users\Andreas\AppData\Roaming\Probit Software
2014-07-29 10:50 - 2014-07-27 18:19 - 00000000 ____D () C:\Users\Andreas\AppData\Roaming\Activeris
2014-07-29 10:50 - 2014-07-27 18:14 - 00000000 ____D () C:\Program Files (x86)\Easy Speed Check
2014-07-29 10:49 - 2014-07-27 18:19 - 00000000 ____D () C:\Users\Andreas\AppData\Roaming\systweak
2014-07-29 10:47 - 2014-07-29 10:42 - 00002812 _____ () C:\WINDOWS\System32\Tasks\APSnotifierPP1
2014-07-29 10:47 - 2014-07-29 10:42 - 00002810 _____ () C:\WINDOWS\System32\Tasks\APSnotifierPP3
2014-07-29 10:47 - 2014-07-29 10:42 - 00002810 _____ () C:\WINDOWS\System32\Tasks\APSnotifierPP2
2014-07-29 10:46 - 2014-07-29 10:46 - 00000000 ____D () C:\Users\Andreas\Documents\PC Speed Maximizer
2014-07-29 10:46 - 2014-07-29 09:54 - 00000000 ____D () C:\Users\Andreas\AppData\Local\CrashDumps
2014-07-29 10:42 - 2014-07-29 10:42 - 00000322 _____ () C:\Users\Andreas\AppData\Roaming\aps.uninstall.scan.results
2014-07-29 10:41 - 2014-07-29 10:41 - 00575544 _____ (ClickMeIn Limited) C:\Users\Andreas\AppData\Local\nsv3794.tmp
2014-07-29 10:41 - 2014-07-29 10:41 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_webinstr_01009.Wdf
2014-07-29 10:41 - 2014-07-29 10:41 - 00000000 ____D () C:\Program Files (x86)\predm
2014-07-29 10:41 - 2013-08-22 16:46 - 00378371 _____ () C:\WINDOWS\setupact.log
2014-07-29 10:34 - 2014-05-01 13:53 - 00001186 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-07-29 10:34 - 2014-05-01 13:53 - 00001174 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-07-29 10:15 - 2014-07-28 22:27 - 00000000 ____D () C:\Users\Andreas\AppData\Local\Gameo
2014-07-29 10:15 - 2013-08-22 15:25 - 00000194 _____ () C:\WINDOWS\win.ini
2014-07-29 10:07 - 2014-07-29 10:07 - 00000000 ____D () C:\ProgramData\374311380
2014-07-29 09:50 - 2014-07-29 08:37 - 00000000 ____D () C:\Program Files (x86)\Opera
2014-07-29 09:48 - 2013-12-24 20:15 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3211567349-1098451946-1009403936-1003
2014-07-29 09:43 - 2014-06-24 18:27 - 00000000 ___RD () C:\Users\BABO\OneDrive
2014-07-29 09:43 - 2014-05-10 19:03 - 00000000 ____D () C:\Users\BABO\AppData\Local\LogMeIn Hamachi
2014-07-29 08:51 - 2014-07-29 08:51 - 00001227 _____ () C:\Users\BABO\Desktop\TeamSpeak 3 Client.lnk
2014-07-29 08:51 - 2014-07-29 08:51 - 00000000 ____D () C:\Users\BABO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
2014-07-29 08:51 - 2014-07-29 08:51 - 00000000 ____D () C:\Users\BABO\AppData\Local\TeamSpeak 3 Client
2014-07-29 08:37 - 2014-07-29 08:37 - 00003848 _____ () C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1406615836
2014-07-29 08:37 - 2014-07-29 08:37 - 00001162 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk.1406620240.old
2014-07-29 08:36 - 2014-07-29 08:36 - 37445632 _____ (Advertiso) C:\Users\Andreas\Downloads\teamspeak-3.exe
2014-07-28 22:27 - 2014-07-28 22:27 - 00000000 ___HD () C:\Users\Andreas\AppData\Roaming\GoldenGate
2014-07-28 22:27 - 2014-07-28 22:27 - 00000000 ____D () C:\Users\Andreas\AppData\Roaming\GGEmpire441
2014-07-28 22:27 - 2014-07-28 22:27 - 00000000 ____D () C:\Users\Andreas\AppData\Local\GGEmpire
2014-07-28 20:22 - 2014-07-28 20:22 - 00000000 ____D () C:\Users\BABO\AppData\Roaming\Activeris
2014-07-28 19:14 - 2014-07-27 18:14 - 00000000 ____D () C:\Program Files (x86)\SupTab
2014-07-28 19:14 - 2014-04-17 16:30 - 00000000 ____D () C:\Users\BABO
2014-07-28 19:12 - 2014-07-29 08:52 - 00000000 ____D () C:\Users\BABO\AppData\Roaming\TS3Client
2014-07-28 18:19 - 2014-05-10 18:59 - 00000000 ____D () C:\Program Files (x86)\Google
2014-07-28 18:18 - 2014-07-27 18:05 - 00000000 _____ () C:\END
2014-07-28 18:14 - 2014-07-28 18:14 - 00006830 _____ () C:\WINDOWS\System32\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-11
2014-07-28 18:14 - 2014-07-28 18:14 - 00005460 _____ () C:\WINDOWS\System32\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-3
2014-07-28 18:14 - 2014-07-28 18:14 - 00005106 _____ () C:\WINDOWS\System32\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-4
2014-07-28 18:14 - 2014-07-28 18:14 - 00004604 _____ () C:\WINDOWS\System32\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-1
2014-07-28 18:14 - 2014-07-28 18:14 - 00004482 _____ () C:\WINDOWS\System32\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-5
2014-07-28 18:14 - 2014-02-27 19:54 - 00000000 ____D () C:\Users\Andreas\AppData\Roaming\Mozilla
2014-07-28 18:02 - 2014-07-28 18:02 - 00000000 ____D () C:\Users\BABO\AppData\Roaming\Systweak
2014-07-28 16:52 - 2014-05-01 14:50 - 00000000 ____D () C:\Users\BABO\AppData\Roaming\Skype
2014-07-28 16:42 - 2013-12-24 23:10 - 00000000 ____D () C:\Users\BABO\AppData\Roaming\.minecraft
2014-07-28 12:06 - 2014-07-28 12:06 - 00000000 ____D () C:\4bab8aa81532ce67a6a9907d
2014-07-27 18:21 - 2014-07-27 18:21 - 00000000 ____D () C:\Users\BABO\AppData\Local\fst_de_116
2014-07-27 18:19 - 2014-07-27 18:19 - 00003332 _____ () C:\WINDOWS\System32\Tasks\ASP
2014-07-27 18:17 - 2014-07-27 18:17 - 00000000 ____D () C:\Users\BABO\AppData\Local\SearchProtect
2014-07-27 18:17 - 2014-07-27 18:17 - 00000000 ____D () C:\Program Files (x86)\SearchProtect
2014-07-27 18:17 - 2014-07-27 18:05 - 00000000 ____D () C:\Users\Andreas\AppData\Local\SearchProtect
2014-07-27 18:14 - 2014-07-27 18:14 - 00006830 _____ () C:\WINDOWS\System32\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-11
2014-07-27 18:14 - 2014-07-27 18:14 - 00006148 _____ () C:\WINDOWS\System32\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-3
2014-07-27 18:14 - 2014-07-27 18:14 - 00005088 _____ () C:\WINDOWS\System32\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-4
2014-07-27 18:14 - 2014-07-27 18:14 - 00004590 _____ () C:\WINDOWS\System32\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-1
2014-07-27 18:14 - 2014-07-27 18:14 - 00004478 _____ () C:\WINDOWS\System32\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-5
2014-07-27 18:14 - 2014-07-27 18:14 - 00004386 _____ () C:\WINDOWS\System32\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-2
2014-07-27 18:14 - 2014-07-27 18:14 - 00004334 _____ () C:\WINDOWS\System32\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-10
2014-07-27 18:14 - 2014-07-27 18:14 - 00000000 ____D () C:\ProgramData\WindowsMangerProtect
2014-07-27 18:14 - 2014-07-27 18:14 - 00000000 ____D () C:\ProgramData\IePluginServices
2014-07-27 18:13 - 2014-07-27 18:13 - 00000000 ____D () C:\Program Files (x86)\Probit Software
2014-07-27 18:07 - 2014-07-27 18:07 - 00000000 ____D () C:\Users\Andreas\AppData\Local\LPT
2014-07-27 18:07 - 2014-07-27 18:06 - 00000000 ____D () C:\Users\Andreas\AppData\Local\Smartbar
2014-07-27 18:06 - 2014-07-27 18:06 - 00000000 ____D () C:\Users\Andreas\AppData\Local\globalUpdate
2014-07-26 20:15 - 2014-06-17 22:29 - 00000000 ____D () C:\Users\BABO\Desktop\youtube viedeos
2014-07-26 20:13 - 2014-07-28 18:18 - 00000000 ____D () C:\Users\BABO\AppData\Local\CrashDumps
2014-07-26 20:08 - 2014-07-26 11:24 - 00000000 ____D () C:\Users\BABO\Documents\Camtasia Studio
2014-07-26 19:11 - 2014-07-13 11:57 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-07-26 19:11 - 2014-05-01 13:53 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-07-26 14:39 - 2014-07-26 14:39 - 00018487 _____ () C:\Users\BABO\Desktop\INTRO.camproj
2014-07-26 14:33 - 2014-07-26 14:33 - 10194141 _____ () C:\Users\BABO\Desktop\final render 2.wmv
2014-07-26 12:34 - 2014-04-17 16:30 - 00000000 ____D () C:\Users\Andreas
2014-07-26 11:25 - 2014-07-26 11:25 - 00000000 ____D () C:\Users\BABO\AppData\Local\TechSmith
2014-07-26 11:24 - 2014-07-26 11:24 - 00000000 ____D () C:\Users\BABO\AppData\Roaming\TechSmith
2014-07-26 11:22 - 2014-07-26 11:22 - 00001195 _____ () C:\Users\Public\Desktop\Camtasia Studio 8.lnk
2014-07-26 11:22 - 2014-07-26 11:22 - 00000000 ____D () C:\ProgramData\regid.1995-08.com.techsmith
2014-07-26 11:22 - 2014-07-26 11:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith
2014-07-26 11:22 - 2014-07-26 11:22 - 00000000 ____D () C:\Program Files (x86)\QuickTime
2014-07-26 11:21 - 2014-07-26 11:21 - 00000000 ____D () C:\ProgramData\TechSmith
2014-07-26 11:21 - 2014-07-26 11:21 - 00000000 ____D () C:\Program Files (x86)\TechSmith
2014-07-25 17:46 - 2014-07-25 17:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2014-07-25 17:46 - 2014-07-25 17:46 - 00000000 ____D () C:\Program Files (x86)\LogMeIn Hamachi
2014-07-24 22:25 - 2014-07-24 22:25 - 00046376 _____ (NetFilterSDK.com) C:\WINDOWS\system32\Drivers\netfilter64.sys
2014-07-21 18:08 - 2014-07-21 18:08 - 00046136 ____H (LogMeIn Inc.) C:\WINDOWS\system32\Drivers\Hamdrv.sys
2014-07-16 15:56 - 2014-04-17 18:18 - 00003934 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{A6B89A4D-78CB-4B0F-B546-08F16853E514}
2014-07-15 21:24 - 2014-07-13 22:25 - 00000000 ____D () C:\Users\BABO\AppData\Roaming\Audacity
2014-07-15 19:19 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\rescache
2014-07-13 22:25 - 2014-07-13 22:25 - 00001046 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk
2014-07-13 22:25 - 2014-07-13 22:25 - 00001034 _____ () C:\Users\Public\Desktop\Audacity.lnk
2014-07-13 22:25 - 2014-07-13 22:25 - 00000000 ____D () C:\Program Files (x86)\Audacity
2014-07-13 22:24 - 2014-07-13 22:20 - 22180353 _____ (Audacity Team ) C:\Users\BABO\Desktop\audacity-win-2.0.5.exe
2014-07-11 12:19 - 2014-07-11 12:19 - 13303900 _____ () C:\Users\BABO\Downloads\Sphax PureBDcraft 64x MC16.zip
2014-07-11 12:03 - 2013-08-22 16:44 - 00335992 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-07-11 07:35 - 2013-08-22 17:36 - 00000000 ___RD () C:\WINDOWS\ToastData
2014-07-11 07:35 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-07-11 07:35 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-07-11 07:35 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\WinStore
2014-07-11 07:28 - 2013-12-23 22:49 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-07-11 07:26 - 2014-03-18 11:40 - 00000000 ____D () C:\Program Files\Windows Journal
2014-07-11 07:26 - 2013-12-23 22:49 - 96441528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-07-11 07:25 - 2014-07-11 07:25 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel
2014-07-11 07:22 - 2014-07-11 07:22 - 00428888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2014-07-10 20:04 - 2014-07-10 20:04 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2014-07-10 20:01 - 2014-07-10 20:00 - 00000000 ____D () C:\Users\BABO\Desktop\German_TOP100_Single_Charts_mit_Cover_30_06_2014-MCU
2014-07-10 17:47 - 2014-07-10 17:47 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe
2014-07-10 06:16 - 2014-07-26 10:58 - 00716800 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-07-10 06:03 - 2014-07-26 10:58 - 04756992 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2014-07-10 05:33 - 2014-07-26 10:58 - 01120256 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
2014-07-04 20:40 - 2014-06-30 20:08 - 00000000 ____D () C:\ProgramData\Adblocker
2014-07-01 00:45 - 2014-07-10 18:46 - 00688128 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll
2014-06-30 20:28 - 2014-06-30 20:08 - 00000000 ____D () C:\Program Files (x86)\Adblocker
2014-06-30 20:25 - 2014-06-30 20:25 - 00000000 ____D () C:\Users\Andreas\Documents\Optimizer Pro
2014-06-30 20:13 - 2014-06-30 20:13 - 00177465 _____ () C:\Users\Andreas\Downloads\ShadersModCore-v2.3.14mc1.7.5-zip (3).zip
2014-06-30 20:13 - 2014-06-30 20:13 - 00177465 _____ () C:\Users\Andreas\Downloads\ShadersModCore-v2.3.14mc1.7.5-zip (2).zip
2014-06-30 20:13 - 2014-06-30 20:13 - 00177465 _____ () C:\Users\Andreas\Downloads\ShadersModCore-v2.3.14mc1.7.5-zip (1).zip
2014-06-30 20:12 - 2014-06-30 20:12 - 00177465 _____ () C:\Users\Andreas\Downloads\ShadersModCore-v2.3.14mc1.7.5-zip.zip
2014-06-30 20:11 - 2014-06-30 20:07 - 00000000 ____D () C:\ProgramData\InstallMate
2014-06-30 20:09 - 2014-06-30 20:09 - 00002744 _____ () C:\WINDOWS\System32\Tasks\SW_Booster-S-297758247
2014-06-30 20:08 - 2014-06-30 20:08 - 00000000 ____D () C:\Users\Gast\AppData\Local\Torch
2014-06-30 20:08 - 2014-06-30 20:08 - 00000000 ____D () C:\Users\Gast\AppData\Local\Google
2014-06-30 20:08 - 2014-06-30 20:08 - 00000000 ____D () C:\Users\Gast\AppData\Local\Comodo
2014-06-30 20:08 - 2014-06-30 20:08 - 00000000 ____D () C:\Users\Gast\AppData\Local\Chromatic Browser
2014-06-30 20:08 - 2014-06-30 20:08 - 00000000 ____D () C:\Users\Gast
2014-06-30 20:08 - 2014-06-30 20:08 - 00000000 ____D () C:\Users\BABO\AppData\Local\Comodo
2014-06-30 20:08 - 2014-06-30 20:08 - 00000000 ____D () C:\Users\BABO\AppData\Local\Chromatic Browser
2014-06-30 20:08 - 2014-06-30 20:08 - 00000000 ____D () C:\Users\Andreas\AppData\Local\Torch
2014-06-30 20:08 - 2014-06-30 20:08 - 00000000 ____D () C:\Users\Andreas\AppData\Local\Google
2014-06-30 20:08 - 2014-06-30 20:08 - 00000000 ____D () C:\Users\Andreas\AppData\Local\Comodo
2014-06-30 20:08 - 2014-06-30 20:08 - 00000000 ____D () C:\Users\Andreas\AppData\Local\Chromatic Browser
2014-06-30 20:08 - 2014-06-30 20:08 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Torch
2014-06-30 20:08 - 2014-06-30 20:08 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Google
2014-06-30 20:08 - 2014-06-30 20:08 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Comodo
2014-06-30 20:08 - 2014-06-30 20:08 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Chromatic Browser
2014-06-30 20:08 - 2014-06-30 20:08 - 00000000 ____D () C:\Users\Administrator
2014-06-30 20:08 - 2014-05-10 18:59 - 00000000 ____D () C:\Users\BABO\AppData\Local\Google
2014-06-30 20:08 - 2013-08-22 17:36 - 00000000 ___HD () C:\WINDOWS\system32\GroupPolicy
2014-06-30 20:08 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\GroupPolicy
2014-06-30 18:58 - 2014-06-30 18:58 - 00298088 _____ () C:\WINDOWS\Minidump\063014-44093-01.dmp
2014-06-30 18:58 - 2014-04-24 14:58 - 00000000 ____D () C:\WINDOWS\Minidump
2014-06-30 18:58 - 2014-04-24 14:57 - 536390952 _____ () C:\WINDOWS\MEMORY.DMP
Some content of TEMP:
====================
C:\Users\Andreas\AppData\Local\Temp\Astroupdate.exe
C:\Users\Andreas\AppData\Local\Temp\BackupSetup.exe
C:\Users\Andreas\AppData\Local\Temp\dlLogic.exe
C:\Users\Andreas\AppData\Local\Temp\dltr.exe
C:\Users\Andreas\AppData\Local\Temp\gcapi_dll.dll
C:\Users\Andreas\AppData\Local\Temp\GCVerifier.dll
C:\Users\Andreas\AppData\Local\Temp\gdapi.dll
C:\Users\Andreas\AppData\Local\Temp\GoogleSetup.exe
C:\Users\Andreas\AppData\Local\Temp\gtapi_signed.dll
C:\Users\Andreas\AppData\Local\Temp\GTGCAPI.exe
C:\Users\Andreas\AppData\Local\Temp\ICReinstall_teamspeak-3_setup.exe
C:\Users\Andreas\AppData\Local\Temp\msvcr90.dll
C:\Users\Andreas\AppData\Local\Temp\nscBB7A.tmp.exe
C:\Users\Andreas\AppData\Local\Temp\nsg9DE9.exe
C:\Users\Andreas\AppData\Local\Temp\nsu9A4E.exe
C:\Users\Andreas\AppData\Local\Temp\nsw4517.exe
C:\Users\Andreas\AppData\Local\Temp\nsz418B.exe
C:\Users\Andreas\AppData\Local\Temp\ToggleMarkUntemp.exe
C:\Users\Andreas\AppData\Local\Temp\verifier.exe
C:\Users\BABO\AppData\Local\Temp\SPSetup.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-07-29 13:52
==================== End Of Log ============================
--- --- ---
ADDITION:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 02-08-2014
Ran by Anxxx at 2014-07-29 19:24:25
Running from C:\Users\Anxxx\Downloads
Boot Mode: Normal
==========================================================
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Alcor Micro USB Card Reader (HKLM-x32\...\AmUStor) (Version: 20.2.1245.53580 - Alcor Micro Corp.)
Alcor Micro USB Card Reader (x32 Version: 20.2.1245.53580 - Alcor Micro Corp.) Hidden
Audacity 2.0.5 (HKLM-x32\...\Audacity_is1) (Version: 2.0.5 - Audacity Team)
Benutzerhandbuch (x32 Version: 1.0.0.15 - Lenovo) Hidden
Camtasia Studio 8 (HKLM-x32\...\{C4E35316-77F1-4EBD-9785-C72E55B1D219}) (Version: 8.4.2.1768 - TechSmith Corporation)
Craften Terminal 3.5.5 (HKLM-x32\...\{4e7c3936-7c06-4ef0-928b-c5d92f372578}_is1) (Version: 3.5.5 - Craften.de)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Dependency Package Update (Version: 1.6.25.00 - Lenovo Inc.) Hidden
Dolby Home Theater v4 (HKLM-x32\...\{B26438B4-BF51-49C3-9567-7F14A5E40CB9}) (Version: 7.2.8000.17 - Dolby Laboratories Inc)
Energy Manager (HKLM-x32\...\InstallShield_{AC768037-7079-4658-AC24-2897650E0ABE}) (Version: 1.0.0.28 - Lenovo)
Energy Manager (x32 Version: 1.0.0.28 - Lenovo) Hidden
Feature Update Service (YFD) (HKCU\...\YourFileDownloaderUpdater) (Version: 2.14.20 - ) <==== ATTENTION
Fotogalerie (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - )
GIMP 2.8.10 (HKLM\...\GIMP-2_is1) (Version: 2.8.10 - The GIMP Team)
IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6490.0 - IDT)
Intel AppUp(SM) center (HKLM-x32\...\Intel AppUp(SM) center 33057) (Version: 3.6.1.33057.10 - Intel)
Intel Collaborative Processor Performance Control (HKLM-x32\...\0E7DAF70-FB54-4B91-B192-7E771C25AEEB) (Version: 1.0.0.1010 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.14.1724 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3621 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.6.0.1033 - Intel Corporation)
Intel(R) Rapid Storage Technology (Version: 12.6.0.1033 - Intel Corporation) Hidden
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 3.0.0.66956 - Intel Corporation)
Intel® Trusted Connect Service Client (Version: 1.28.487.1 - Intel Corporation) Hidden
Java 7 Update 55 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217045FF}) (Version: 7.0.550 - Oracle)
Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
Lenovo Bluetooth with Enhanced Data Rate Software (HKLM\...\{C6D9ED03-6FCF-4410-9CB7-45CA285F9E11}) (Version: 12.0.0.7000 - Broadcom Corporation)
Lenovo EasyCamera (HKLM-x32\...\{ADE16A9D-FBDC-4ecc-B6BD-9C31E51D0332}) (Version: 3.13.531.1 - Vimicro)
Lenovo OneKey Recovery (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 8.0.0.1219 - CyberLink Corp.)
Lenovo OneKey Recovery (Version: 8.0.0.1219 - CyberLink Corp.) Hidden
Lenovo Photos (HKLM-x32\...\Lenovo Photos) (Version: 4.8.5 - CEWE COLOR AG u Co. OHG)
Lenovo PowerDVD10 (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.5108.52 - CyberLink Corp.)
Lenovo PowerDVD10 (x32 Version: 10.0.5108.52 - CyberLink Corp.) Hidden
Lenovo VeriFace (HKLM\...\Lenovo VeriFace) (Version: 5.0.13.5261 - Lenovo)
Lenovo YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 4.1.3423 - CyberLink Corp.)
Lenovo YouCam (x32 Version: 4.1.3423 - CyberLink Corp.) Hidden
Lenovo_Wireless_Driver (HKLM-x32\...\{5D642A72-8194-4A22-80DA-11FE610CCA8E}) (Version: 6.30.223.75 - Lenovo)
LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.227 - LogMeIn, Inc.)
LogMeIn Hamachi (x32 Version: 2.2.0.227 - LogMeIn, Inc.) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4454.1510 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Mozilla Firefox 31.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 31.0 (x86 de)) (Version: 31.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 24.5.0 - Mozilla)
Mozilla Thunderbird 24.5.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 24.5.0 (x86 de)) (Version: 24.5.0 - Mozilla)
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden
MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden
NVIDIA GeForce Experience 2.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.0 - NVIDIA Corporation)
NVIDIA Grafiktreiber 327.62 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 327.62 - NVIDIA Corporation)
NVIDIA Install Application (Version: 2.1002.151.1095 - NVIDIA Corporation) Hidden
NVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) Hidden
NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden
NVIDIA Optimus Update 12.4.55 (Version: 12.4.55 - NVIDIA Corporation) Hidden
NVIDIA PhysX (x32 Version: 9.13.0725 - NVIDIA Corporation) Hidden
NVIDIA PhysX-Systemsoftware 9.13.0725 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.0725 - NVIDIA Corporation)
NVIDIA ShadowPlay 12.4.55 (Version: 12.4.55 - NVIDIA Corporation) Hidden
NVIDIA Systemsteuerung 327.62 (Version: 327.62 - NVIDIA Corporation) Hidden
NVIDIA Update 12.4.55 (Version: 12.4.55 - NVIDIA Corporation) Hidden
NVIDIA Update Core (Version: 12.4.55 - NVIDIA Corporation) Hidden
NVIDIA Virtual Audio 1.2.22 (Version: 1.2.22 - NVIDIA Corporation) Hidden
Onekey Theater (HKLM-x32\...\{91CC5BAE-A098-40D3-A43B-C0DC7CE263FE}) (Version: 3.0.1.2 - Lenovo)
Photo Gallery (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Power2Go (HKLM-x32\...\{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 5.6.0.9109 - CyberLink Corp.)
Qualcomm Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.21 - Qualcomm Atheros Communications Inc.)
save ion (HKLM-x32\...\{993EA8F6-6E55-7E4E-39DE-5796E3226DB9}) (Version: 4.3.0.1667 - sAveu onn) <==== ATTENTION
Search Protect (HKLM-x32\...\SearchProtect) (Version: 2.16.10.61 - Client Connect LTD) <==== ATTENTION
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
SHIELD Streaming (Version: 1.8.323 - NVIDIA Corporation) Hidden
Skype™ 6.16 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.16.105 - Skype Technologies S.A.)
Smart Technology Programming Software 7.0.27.13 (HKLM\...\{C9193CBB-C31A-412A-A074-AD08F0F2CF3D}) (Version: 7.0.27.13 - Mad Catz)
SugarSync Manager (HKLM-x32\...\SugarSync) (Version: 1.9.61.90905 - SugarSync, Inc.)
SW_Booster (HKLM-x32\...\S-297758247) (Version: 1.2.0.1313 - PremiumSoft) <==== ATTENTION
SW_Sustainer 1.80 (HKLM-x32\...\{5F189DF5-2D05-472B-9091-84D9848AE48B}{3e9deaca}) (Version: - Certified Publisher) <==== ATTENTION
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 16.6.4.19 - Synaptics Incorporated)
UserGuide (HKLM-x32\...\InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}) (Version: 1.0.0.15 - Lenovo)
Windows Live Communications Platform (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live UX Platform (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows-Treiberpaket - Lenovo (ACPIVPC) System (02/17/2013 9.52.0.776) (HKLM\...\35DD26BE48DAF4A9F35F969F3CB1E3E1435E661E) (Version: 02/17/2013 9.52.0.776 - Lenovo)
Windows-Treiberpaket - Lenovo (WUDFRd) LenovoVhid (06/19/2012 10.13.29.733) (HKLM\...\8A223E56FB1ED4F697B54E5BF96F1EB63B512684) (Version: 06/19/2012 10.13.29.733 - Lenovo)
WinRAR 5.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)
Yahoo Community Smartbar (HKLM-x32\...\{6818F6FB-6270-4DE8-9827-40E852111F2A}) (Version: 11.88.66.18547 - Linkury Inc.) <==== ATTENTION
YourFileDownloader (HKCU\...\YourFileDownloader) (Version: 2.14.20 - hxxp://www.yourfiledownloader.com/) <==== ATTENTION
==================== Custom CLSID (selected items): ==========================
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
==================== Restore Points =========================
11-07-2014 05:23:50 Windows Update
18-07-2014 10:47:35 Geplanter Prüfpunkt
26-07-2014 09:17:51 Camtasia Studio 8 wird installiert
27-07-2014 16:15:44 Uniblue SpeedUpMyPC installation
29-07-2014 09:18:46 Avira PC Cleaner - 29.07.2014 11:18
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
Task: {023DC8D8-40F9-4436-A6C6-6960CD3DF98F} - System32\Tasks\ASP => C:\Program Files (x86)\RegClean Pro\SystweakASP.exe <==== ATTENTION
Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask
Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList
Task: {169C051A-E0C8-48B3-B19B-30C17324AE8A} - System32\Tasks\APSnotifierPP1 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: {1DE0CA86-2FC0-42EE-B3E5-675AE49C6571} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics
Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
Task: {2559CBD2-D54B-411A-84C9-E2A689E2115A} - System32\Tasks\Microsoft\Windows\DiskCleanup\SilentCleanup => C:\Windows\system32\cleanmgr.exe [2014-03-18] (Microsoft Corporation)
Task: {2737CF4F-44E9-47DB-AEA6-523039507100} - System32\Tasks\SW_Booster-S-297758247 => c:\programdata\wideblue installer\sw_booster\SW_Booster.exe <==== ATTENTION
Task: {27C3E307-FEAD-4E3E-BAA5-997FF4D11284} - System32\Tasks\OFFICE2013ACT => C:\ProgramData\Microsoft\Windows\OFFICEICON.vbs [2012-03-08] ()
Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate
Task: {2CE49B31-B0F0-421F-9774-4782B410673A} - System32\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-5 => C:\Program Files (x86)\Browsers App\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-5.exe
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation)
Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation)
Task: {483F19AF-E52C-47DD-9A07-B07CD0AEBFBB} - System32\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-10 => C:\Program Files (x86)\Browsers App\4b527752-7a7b-4cd3-a881-a52cc99f21f0-10.exe
Task: {48FC2461-CA9C-405A-A21D-226832BC7792} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start With Network => Sc.exe start wuauserv
Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance
Task: {535204A0-830F-4697-A1A6-5D164BE385BC} - System32\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-1 => C:\Program Files (x86)\Browsers App\Browsers App-codedownloader.exe
Task: {5D8601FC-1ED2-4805-A8F3-6A6597153738} - System32\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-4 => C:\Program Files (x86)\Browsers App\4b527752-7a7b-4cd3-a881-a52cc99f21f0-4.exe
Task: {67334D57-A726-48F6-8B95-A8C0C1C42A76} - System32\Tasks\YourFile DownloaderUpdate => C:\Program Files (x86)\YourFileDownloader Updater\YourFileUpdater.exe [2014-05-14] (hxxp://yourfiledownloader.com) <==== ATTENTION
Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup
Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task
Task: {71F4E649-EAD4-48DB-B8D1-4C1F34A37615} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload
Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask
Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
Task: {7BB1EC61-3140-48A7-9245-3DD56ECC42BA} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Management
Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task
Task: {8C10D0FE-0DC7-4034-BBE1-01A04A8EA62E} - System32\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-3 => C:\Program Files (x86)\Browsers App\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-3.exe
Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
Task: {9ED22B83-EDD5-4B73-881F-42D685A27FA6} - System32\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-4 => C:\Program Files (x86)\Browsers App\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-4.exe
Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work
Task: {A5420145-C877-40B1-9D36-275C3F071840} - System32\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-5_user => C:\Program Files (x86)\Browsers App\4b527752-7a7b-4cd3-a881-a52cc99f21f0-5.exe
Task: {B04E00FB-469A-46FD-AC6F-40AC0EBA4439} - System32\Tasks\FRAPS => C:\Fraps\fraps.exe [2013-02-26] (Beepa P/L)
Task: {C44BE19D-196F-4D84-9198-C72693AFB8D6} - System32\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-3 => C:\Program Files (x86)\Browsers App\4b527752-7a7b-4cd3-a881-a52cc99f21f0-3.exe
Task: {CDD20CFA-33EB-4A0C-8A68-AE124D1C4972} - System32\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-1 => C:\Program Files (x86)\Browsers App\Browsers App-codedownloader.exe
Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask
Task: {D4AAAE05-EF67-489B-9D29-332449177A13} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2014-07-11] (Microsoft Corporation)
Task: {D4F1838F-B2D1-4B45-AEF2-FB800DF0E0ED} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Validation
Task: {D724B8FC-BCAE-462C-8140-A31A92B64EA6} - System32\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-2 => C:\Program Files (x86)\Browsers App\4b527752-7a7b-4cd3-a881-a52cc99f21f0-2.exe
Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing
Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization
Task: {DEFBD6C1-496D-49CC-BCEC-6D2D1CACC73B} - System32\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-11 => C:\Program Files (x86)\Browsers App\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-11.exe
Task: {DF518343-C487-4546-B252-891874C8F56B} - System32\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-11 => C:\Program Files (x86)\Browsers App\4b527752-7a7b-4cd3-a881-a52cc99f21f0-11.exe
Task: {E3A4F9B7-BEC3-4691-AAF0-E514AE991C02} - System32\Tasks\APSnotifierPP3 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE
Task: {EE380884-218D-42B8-9273-365B8D176636} - System32\Tasks\APSnotifierPP2 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: {F1BC759F-97CE-4B4D-B694-A983E4ABF7E4} - System32\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-5 => C:\Program Files (x86)\Browsers App\4b527752-7a7b-4cd3-a881-a52cc99f21f0-5.exe
Task: {F2BAC2DF-6B2B-471B-B3F2-D630B1269A59} - System32\Tasks\Opera scheduled Autoupdate 1406615836 => C:\Program Files (x86)\Opera\launcher.exe [2014-07-18] (Opera Software)
Task: {F57C58CE-6023-4170-8C8B-185AE57903F2} - System32\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-5_user => C:\Program Files (x86)\Browsers App\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-5.exe
Task: C:\WINDOWS\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-1.job => C:\Program Files (x86)\Browsers App\Browsers App-codedownloader.exe
Task: C:\WINDOWS\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-10.job => C:\Program Files (x86)\Browsers App\4b527752-7a7b-4cd3-a881-a52cc99f21f0-10.exe
Task: C:\WINDOWS\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-11.job => C:\Program Files (x86)\Browsers App\4b527752-7a7b-4cd3-a881-a52cc99f21f0-11.exe
Task: C:\WINDOWS\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-2.job => C:\Program Files (x86)\Browsers App\4b527752-7a7b-4cd3-a881-a52cc99f21f0-2.exe
Task: C:\WINDOWS\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-3.job => C:\Program Files (x86)\Browsers App\4b527752-7a7b-4cd3-a881-a52cc99f21f0-3.exe
Task: C:\WINDOWS\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-4.job => C:\Program Files (x86)\Browsers App\4b527752-7a7b-4cd3-a881-a52cc99f21f0-4.exe
Task: C:\WINDOWS\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-5.job => C:\Program Files (x86)\Browsers App\4b527752-7a7b-4cd3-a881-a52cc99f21f0-5.exe
Task: C:\WINDOWS\Tasks\4b527752-7a7b-4cd3-a881-a52cc99f21f0-5_user.job => C:\Program Files (x86)\Browsers App\4b527752-7a7b-4cd3-a881-a52cc99f21f0-5.exe
Task: C:\WINDOWS\Tasks\APSnotifierPP1.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\APSnotifierPP2.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\APSnotifierPP3.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-1.job => C:\Program Files (x86)\Browsers App\Browsers App-codedownloader.exe
Task: C:\WINDOWS\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-11.job => C:\Program Files (x86)\Browsers App\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-11.exe
Task: C:\WINDOWS\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-3.job => C:\Program Files (x86)\Browsers App\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-3.exe
Task: C:\WINDOWS\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-4.job => C:\Program Files (x86)\Browsers App\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-4.exe
Task: C:\WINDOWS\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-5.job => C:\Program Files (x86)\Browsers App\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-5.exe
Task: C:\WINDOWS\Tasks\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-5_user.job => C:\Program Files (x86)\Browsers App\ce72a99c-3fdd-4ef2-a4ec-5a3918dd1882-5.exe
Task: C:\WINDOWS\Tasks\SW_Booster-S-297758247.job => c:\programdata\wideblue installer\sw_booster\SW_Booster.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
==================== Loaded Modules (whitelisted) =============
2013-12-26 20:42 - 2013-12-26 20:42 - 00013088 _____ () C:\Program Files\NVIDIA Corporation\CoProcManager\detoured.dll
2014-07-24 22:25 - 2014-07-24 22:25 - 00172544 _____ () C:\Program Files (x86)\F10DE075-EE9C-4182-AE10-C6767F4F23FB\cnfygfszki64.exe
2014-07-24 22:25 - 2014-07-24 22:25 - 00110080 _____ () C:\Program Files (x86)\F10DE075-EE9C-4182-AE10-C6767F4F23FB\nfapi.dll
2014-07-24 22:25 - 2014-07-24 22:25 - 00456192 _____ () C:\Program Files (x86)\F10DE075-EE9C-4182-AE10-C6767F4F23FB\ProtocolFilters.dll
2013-05-28 16:55 - 2013-05-28 16:55 - 00049368 _____ () C:\Program Files\Lenovo\Bluetooth Software\btwleapi.dll
2013-09-16 12:34 - 2013-09-16 12:34 - 00068368 _____ () C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe
2013-09-16 12:34 - 2013-09-16 12:34 - 00669288 _____ () C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfDataStorageInterface.dll
2014-07-23 16:32 - 2014-07-27 18:14 - 00106376 _____ () C:\Program Files (x86)\SupTab\WindowsSupportDll64.dll
2014-07-23 16:32 - 2014-07-27 18:14 - 00732040 _____ () C:\Program Files (x86)\SupTab\HpUI.exe
2014-07-16 11:16 - 2014-07-16 11:16 - 00064000 _____ () C:\Program Files (x86)\SupTab\Loader32.exe
2014-07-16 10:55 - 2014-07-16 10:55 - 00073216 _____ () C:\Program Files (x86)\SupTab\Loader64.exe
2014-07-23 16:32 - 2014-07-27 18:14 - 00093576 _____ () C:\Program Files (x86)\SupTab\WindowsSupportDll32.dll
2014-06-03 21:00 - 2013-09-04 07:53 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2013-09-16 12:34 - 2012-07-12 14:59 - 00891392 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\QtNetwork4.dll
2013-09-16 12:34 - 2012-07-12 14:59 - 02281984 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\QtCore4.dll
2013-09-16 12:34 - 2012-07-12 14:59 - 00016896 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\featureController.dll
2013-09-16 12:34 - 2012-07-12 14:59 - 00062976 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\osEvents.dll
2013-09-16 12:34 - 2012-07-12 14:59 - 00322048 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\log4cplus.dll
2013-09-16 12:34 - 2012-07-12 14:59 - 00339456 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\QtXml4.dll
2013-09-16 12:34 - 2012-07-12 14:59 - 00400384 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\sqlite3.dll
2013-09-16 12:34 - 2012-07-12 14:59 - 00195584 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\libgsoap.dll
2013-09-16 12:34 - 2012-07-12 14:59 - 00062464 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\zlib1.dll
2013-09-16 12:34 - 2012-07-12 14:59 - 00446976 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\deviceProfile.dll
2013-09-16 12:34 - 2012-07-12 14:59 - 00019456 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\eventsSender.dll
2013-09-16 12:34 - 2012-07-12 14:59 - 00062976 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\serviceManagerStarter.dll
==================== Alternate Data Streams (whitelisted) =========
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
AlternateDataStreams: C:\Users\BABO\OneDrive:ms-properties
==================== Safe Mode (whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"
==================== EXE Association (whitelisted) =============
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
==================== MSCONFIG/TASK MANAGER disabled items =========
(Currently there is no automatic fix for this section.)
HKLM\...\StartupApproved\Run: => "DolbyTrayApp"
HKCU\...\StartupApproved\Run: => "Skype"
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (07/29/2014 07:07:00 PM) (Source: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe) (EventID: 1) (User: )
Description: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeCan't get user token [1008]
Error: (07/29/2014 00:32:29 PM) (Source: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe) (EventID: 1) (User: )
Description: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeCan't get user token [1008]
Error: (07/29/2014 10:46:17 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: launcher.exe_Opera Internet Browser, Version: 23.0.1522.60, Zeitstempel: 0x53c8582e
Name des fehlerhaften Moduls: launcher_lib.dll, Version: 0.0.0.0, Zeitstempel: 0x53c857c4
Ausnahmecode: 0x80000003
Fehleroffset: 0x0000cf10
ID des fehlerhaften Prozesses: 0x1784
Startzeit der fehlerhaften Anwendung: 0xlauncher.exe_Opera Internet Browser0
Pfad der fehlerhaften Anwendung: launcher.exe_Opera Internet Browser1
Pfad des fehlerhaften Moduls: launcher.exe_Opera Internet Browser2
Berichtskennung: launcher.exe_Opera Internet Browser3
Vollständiger Name des fehlerhaften Pakets: launcher.exe_Opera Internet Browser4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: launcher.exe_Opera Internet Browser5
Error: (07/29/2014 10:16:14 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: launcher.exe_Opera Internet Browser, Version: 23.0.1522.60, Zeitstempel: 0x53c8582e
Name des fehlerhaften Moduls: launcher_lib.dll, Version: 0.0.0.0, Zeitstempel: 0x53c857c4
Ausnahmecode: 0x80000003
Fehleroffset: 0x0000cf10
ID des fehlerhaften Prozesses: 0x1024
Startzeit der fehlerhaften Anwendung: 0xlauncher.exe_Opera Internet Browser0
Pfad der fehlerhaften Anwendung: launcher.exe_Opera Internet Browser1
Pfad des fehlerhaften Moduls: launcher.exe_Opera Internet Browser2
Berichtskennung: launcher.exe_Opera Internet Browser3
Vollständiger Name des fehlerhaften Pakets: launcher.exe_Opera Internet Browser4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: launcher.exe_Opera Internet Browser5
Error: (07/29/2014 10:16:02 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: launcher.exe_Opera Internet Browser, Version: 23.0.1522.60, Zeitstempel: 0x53c8582e
Name des fehlerhaften Moduls: launcher_lib.dll, Version: 0.0.0.0, Zeitstempel: 0x53c857c4
Ausnahmecode: 0x80000003
Fehleroffset: 0x0000cf10
ID des fehlerhaften Prozesses: 0x19c4
Startzeit der fehlerhaften Anwendung: 0xlauncher.exe_Opera Internet Browser0
Pfad der fehlerhaften Anwendung: launcher.exe_Opera Internet Browser1
Pfad des fehlerhaften Moduls: launcher.exe_Opera Internet Browser2
Berichtskennung: launcher.exe_Opera Internet Browser3
Vollständiger Name des fehlerhaften Pakets: launcher.exe_Opera Internet Browser4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: launcher.exe_Opera Internet Browser5
Error: (07/29/2014 10:12:07 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm speedupmypc.exe, Version 6.0.3.9 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: 105c
Startzeit: 01cfab049ac4d1ae
Endzeit: 4294967295
Anwendungspfad: C:\Program Files (x86)\Uniblue\SpeedUpMyPC\speedupmypc.exe
Berichts-ID: 0751f5c9-16f8-11e4-bec6-f82fa8f39418
Vollständiger Name des fehlerhaften Pakets:
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:
Error: (07/29/2014 10:09:41 AM) (Source: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe) (EventID: 1) (User: )
Description: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeCan't get user token [1008]
Error: (07/29/2014 10:06:00 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: 4b527752-7a7b-4cd3-a881-a52cc99f21f0-10.exe, Version: 1.0.0.1, Zeitstempel: 0x53d64f1a
Name des fehlerhaften Moduls: msvcrt.dll, Version: 7.0.9600.16384, Zeitstempel: 0x52158ff5
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000b869
ID des fehlerhaften Prozesses: 0xf30
Startzeit der fehlerhaften Anwendung: 0x4b527752-7a7b-4cd3-a881-a52cc99f21f0-10.exe0
Pfad der fehlerhaften Anwendung: 4b527752-7a7b-4cd3-a881-a52cc99f21f0-10.exe1
Pfad des fehlerhaften Moduls: 4b527752-7a7b-4cd3-a881-a52cc99f21f0-10.exe2
Berichtskennung: 4b527752-7a7b-4cd3-a881-a52cc99f21f0-10.exe3
Vollständiger Name des fehlerhaften Pakets: 4b527752-7a7b-4cd3-a881-a52cc99f21f0-10.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: 4b527752-7a7b-4cd3-a881-a52cc99f21f0-10.exe5
Error: (07/29/2014 10:03:49 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm speedupmypc.exe, Version 6.0.3.9 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: 1058
Startzeit: 01cfab0388db01bc
Endzeit: 4294967295
Anwendungspfad: C:\Program Files (x86)\Uniblue\SpeedUpMyPC\speedupmypc.exe
Berichts-ID: de9ae8a3-16f6-11e4-bec5-f82fa8f39418
Vollständiger Name des fehlerhaften Pakets:
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:
Error: (07/29/2014 10:00:32 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: Browsers App-codedownloader.exe, Version: 1.0.0.1, Zeitstempel: 0x53d771bc
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc0000005
Fehleroffset: 0x19dd2e98
ID des fehlerhaften Prozesses: 0x16ac
Startzeit der fehlerhaften Anwendung: 0xBrowsers App-codedownloader.exe0
Pfad der fehlerhaften Anwendung: Browsers App-codedownloader.exe1
Pfad des fehlerhaften Moduls: Browsers App-codedownloader.exe2
Berichtskennung: Browsers App-codedownloader.exe3
Vollständiger Name des fehlerhaften Pakets: Browsers App-codedownloader.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Browsers App-codedownloader.exe5
System errors:
=============
Error: (07/29/2014 07:08:34 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "mtgaotushb64" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (07/29/2014 07:08:33 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst SW_Sustainer erreicht.
Error: (07/29/2014 00:33:52 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "mtgaotushb64" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (07/29/2014 00:33:52 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst SW_Sustainer erreicht.
Error: (07/29/2014 00:32:33 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "Superfetch" wurde mit folgendem Fehler beendet:
%%1062
Error: (07/29/2014 00:32:29 PM) (Source: DCOM) (EventID: 10010) (User: LOL-Gefahr)
Description: {9BA05972-F6A8-11CF-A442-00A0C90A8F39}
Error: (07/29/2014 00:31:35 PM) (Source: DCOM) (EventID: 10010) (User: LOL-Gefahr)
Description: {1B1F472E-3221-4826-97DB-2C2324D389AE}
Error: (07/29/2014 00:31:05 PM) (Source: DCOM) (EventID: 10010) (User: LOL-Gefahr)
Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001}
Error: (07/29/2014 11:19:08 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "SW_Sustainer" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.
Error: (07/29/2014 10:52:31 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Computer Backup (MyPC Backup)" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.
Microsoft Office Sessions:
=========================
Error: (07/29/2014 07:07:00 PM) (Source: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe) (EventID: 1) (User: )
Description: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeCan't get user token [1008]
Error: (07/29/2014 00:32:29 PM) (Source: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe) (EventID: 1) (User: )
Description: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeCan't get user token [1008]
Error: (07/29/2014 10:46:17 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: launcher.exe_Opera Internet Browser23.0.1522.6053c8582elauncher_lib.dll0.0.0.053c857c4800000030000cf10178401cfab0990152056C:\Program Files (x86)\Opera\launcher.exeC:\Program Files (x86)\Opera\23.0.1522.60\launcher_lib.dllcdcb35a0-16fc-11e4-bec6-f82fa8f39418
Error: (07/29/2014 10:16:14 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: launcher.exe_Opera Internet Browser23.0.1522.6053c8582elauncher_lib.dll0.0.0.053c857c4800000030000cf10102401cfab055d7374f2C:\Program Files (x86)\Opera\launcher.exeC:\Program Files (x86)\Opera\23.0.1522.60\launcher_lib.dll9b277d3b-16f8-11e4-bec6-f82fa8f39418
Error: (07/29/2014 10:16:02 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: launcher.exe_Opera Internet Browser23.0.1522.6053c8582elauncher_lib.dll0.0.0.053c857c4800000030000cf1019c401cfab05560e668cC:\Program Files (x86)\Opera\launcher.exeC:\Program Files (x86)\Opera\23.0.1522.60\launcher_lib.dll93d2c8d1-16f8-11e4-bec6-f82fa8f39418
Error: (07/29/2014 10:12:07 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: speedupmypc.exe6.0.3.9105c01cfab049ac4d1ae4294967295C:\Program Files (x86)\Uniblue\SpeedUpMyPC\speedupmypc.exe0751f5c9-16f8-11e4-bec6-f82fa8f39418
Error: (07/29/2014 10:09:41 AM) (Source: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe) (EventID: 1) (User: )
Description: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeCan't get user token [1008]
Error: (07/29/2014 10:06:00 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: 4b527752-7a7b-4cd3-a881-a52cc99f21f0-10.exe1.0.0.153d64f1amsvcrt.dll7.0.9600.1638452158ff5c00000050000b869f3001cfab0387526881C:\Program Files (x86)\Browsers App\4b527752-7a7b-4cd3-a881-a52cc99f21f0-10.exeC:\WINDOWS\SYSTEM32\msvcrt.dll2cf52d86-16f7-11e4-bec5-f82fa8f39418
Error: (07/29/2014 10:03:49 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: speedupmypc.exe6.0.3.9105801cfab0388db01bc4294967295C:\Program Files (x86)\Uniblue\SpeedUpMyPC\speedupmypc.exede9ae8a3-16f6-11e4-bec5-f82fa8f39418
Error: (07/29/2014 10:00:32 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Browsers App-codedownloader.exe1.0.0.153d771bcunknown0.0.0.000000000c000000519dd2e9816ac01cfab019afc5122C:\Program Files (x86)\Browsers App\Browsers App-codedownloader.exeunknown69b4fe46-16f6-11e4-bec4-f82fa8f39418
CodeIntegrity Errors:
===================================
Date: 2014-07-29 18:46:01.738
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2014-07-29 18:46:01.691
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2014-07-29 18:46:01.660
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2014-07-29 18:46:01.629
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2014-07-29 18:46:01.582
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2014-07-29 18:46:01.551
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2014-07-29 18:46:01.504
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2014-07-29 18:46:01.472
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2014-07-29 18:46:01.426
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2014-07-29 18:46:01.394
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Memory info ===========================
Percentage of memory in use: 20%
Total physical RAM: 8104.27 MB
Available physical RAM: 6433.66 MB
Total Pagefile: 9384.27 MB
Available Pagefile: 7631.23 MB
Total Virtual: 131072 MB
Available Virtual: 131071.8 MB
==================== Drives ================================
Drive c: (Windows8_OS) (Fixed) (Total:891.12 GB) (Free:282.6 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (LENOVO) (Fixed) (Total:25 GB) (Free:23.02 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 932 GB) (Disk ID: 0F7C00EB)
Partition: GPT Partition Type.
==================== End Of Log ============================
DEFOGGER_DISABLE:
defogger_disable by jpshortstuff (23.02.10.1)
Log created at 19:43 on 29/07/2014 (Andreas)
Checking for autostart values...
HKCU\~\Run values retrieved.
HKLM\~\Run values retrieved.
Checking for services/drivers...
-=E.O.F=-