Hallo nochmal,
hoffe es ist so richtig...
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 04-10-2014
Ran by Michael (administrator) on CMICHAEL2 on 04-10-2014 11:11:18
Running from C:\Users\michael\Downloads
Loaded Profiles: Michael & UpdatusUser (Available profiles: Michael & Heinz & UpdatusUser)
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(CinemaPV21.09) C:\Program Files (x86)\Cinema-P+-1.2V21.09\bfbef993-61ee-403b-801f-a716301acd85.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
(Spotify Ltd) C:\Users\michael\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
() C:\Users\michael\Qtrax\Player\notification.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_152.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_152.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11855976 2011-05-17] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2226280 2011-05-17] (Realtek Semiconductor)
HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [617120 2011-03-13] (Atheros Communications)
HKLM\...\Run: [AthBtTray] => C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [379552 2011-03-13] (Atheros Commnucations)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2589992 2011-04-13] (ELAN Microelectronics Corp.)
HKLM\...\Run: [IntelPAN] => C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [1935120 2011-05-02] (Intel(R) Corporation)
HKLM-x32\...\Run: [ATKOSD2] => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [5732992 2010-08-17] (ASUS)
HKLM-x32\...\Run: [ATKMEDIA] => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624 2010-10-07] (ASUS)
HKLM-x32\...\Run: [HControlUser] => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43816 2014-07-31] (Apple Inc.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [751184 2014-08-08] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.)
HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [164656 2014-08-27] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-09-01] (Apple Inc.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-1514408640-3576972440-2300300729-1115\...\Run: [Google Update] => C:\Users\michael\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2011-12-28] (Google Inc.)
HKU\S-1-5-21-1514408640-3576972440-2300300729-1115\...\Run: [Spotify Web Helper] => C:\Users\michael\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1245752 2014-09-18] (Spotify Ltd)
HKU\S-1-5-21-1514408640-3576972440-2300300729-1115\...\Run: [FDPRO-516] => C:\Program Files (x86)\Fighters\FighterLauncher.exe FDPRO
HKU\S-1-5-21-1514408640-3576972440-2300300729-1115\...\Run: [Spotify] => C:\Users\michael\AppData\Roaming\Spotify\Spotify.exe [6342200 2014-09-18] (Spotify Ltd)
HKU\S-1-5-21-1514408640-3576972440-2300300729-1115\...\Run: [QtraxNotification] => C:\Users\michael\Qtrax\Player\notification.exe [79144 2013-06-28] ()
HKU\S-1-5-21-1514408640-3576972440-2300300729-1115\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [6482200 2014-09-26] (Piriform Ltd)
HKU\S-1-5-21-1514408640-3576972440-2300300729-1115\...\MountPoints2: {0bc13893-8cc8-11e2-aec0-5404a615f9bf} - E:\AutoRun.exe /s
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [226920 2011-05-11] (NVIDIA Corporation)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
ProxyServer: http=127.0.0.1:59767;https=127.0.0.1:59767
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://de.search.yahoo.com/yhs/search?type=avastbcl&hspart=avast&hsimp=yhs-001&p={searchTerms}
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/de-de/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xFE45EEE67FDDCF01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE
HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://de.yahoo.com?fr=hp-avast&type=avastbcl
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = https://de.yahoo.com?fr=hp-avast&type=avastbcl
SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=427&systemid=406&apn_dtid=BND406&apn_ptnrs=AG6&o=APN10645&apn_uid=1817798103464055&q={searchTerms}
SearchScopes: HKLM-x32 - DefaultScope {9CB96984-43C3-4D44-90EF-01466EFCF7BB} URL = https://de.search.yahoo.com/yhs/search?type=avastbcl&hspart=avast&hsimp=yhs-001&p={searchTerms}
SearchScopes: HKLM-x32 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=427&systemid=406&apn_dtid=BND406&apn_ptnrs=AG6&o=APN10645&apn_uid=1817798103464055&q={searchTerms}
SearchScopes: HKLM-x32 - {9CB96984-43C3-4D44-90EF-01466EFCF7BB} URL = https://de.search.yahoo.com/yhs/search?type=avastbcl&hspart=avast&hsimp=yhs-001&p={searchTerms}
SearchScopes: HKCU - DefaultScope {9CB96984-43C3-4D44-90EF-01466EFCF7BB} URL = https://de.search.yahoo.com/yhs/search?type=avastbcl&hspart=avast&hsimp=yhs-001&p={searchTerms}
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://www1.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=3EB25404A615F9BF&affID=121529&tt=150813_ctrl1&tsp=4975
SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=427&systemid=406&apn_dtid=BND406&apn_ptnrs=AG6&o=APN10645&apn_uid=1817798103464055&q={searchTerms}
SearchScopes: HKCU - {9CB96984-43C3-4D44-90EF-01466EFCF7BB} URL = https://de.search.yahoo.com/yhs/search?type=avastbcl&hspart=avast&hsimp=yhs-001&p={searchTerms}
SearchScopes: HKCU - {CFF4DB9B-135F-47c0-9269-B4C6572FD61A} URL = hxxp://mystart.incredibar.com/?a=6PQLIuCXhq&loc=skw&search={searchTerms}&i=26
BHO: No Name -> {11111111-1111-1111-1111-110611171162} -> No File
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
Toolbar: HKLM - No Name - {ae07101b-46d4-4a98-af68-0333ea26e113} - No File
Toolbar: HKLM-x32 - No Name - {ae07101b-46d4-4a98-af68-0333ea26e113} - No File
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - No File
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
FireFox:
========
FF ProfilePath: C:\Users\michael\AppData\Roaming\Mozilla\Firefox\Profiles\rp073hgr.default-1350116120092
FF Homepage: https://www.google.de
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin-x32: @videolan.org/vlc,version=2.0.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 -> C:\Users\michael\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 -> C:\Users\michael\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF user.js: detected! => C:\Users\michael\AppData\Roaming\Mozilla\Firefox\Profiles\rp073hgr.default-1350116120092\user.js
FF SearchPlugin: C:\Users\michael\AppData\Roaming\Mozilla\Firefox\Profiles\rp073hgr.default-1350116120092\searchplugins\delta.xml
FF SearchPlugin: C:\Users\michael\AppData\Roaming\Mozilla\Firefox\Profiles\rp073hgr.default-1350116120092\searchplugins\MyStart Search.xml
FF SearchPlugin: C:\Users\michael\AppData\Roaming\Mozilla\Firefox\Profiles\rp073hgr.default-1350116120092\searchplugins\Search_Results.xml
FF SearchPlugin: C:\Users\michael\AppData\Roaming\Mozilla\Firefox\Profiles\rp073hgr.default-1350116120092\searchplugins\sweetim.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: Cinema-P+-1.2V27.09 - C:\Users\michael\AppData\Roaming\Mozilla\Firefox\Profiles\rp073hgr.default-1350116120092\Extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com [2014-10-01]
FF Extension: Lazy Hero - C:\Users\michael\AppData\Roaming\Mozilla\Firefox\Profiles\rp073hgr.default-1350116120092\Extensions\jid1-F1aIDCxyZsOpnA@jetpack.xpi [2014-07-01]
FF Extension: ProxTube - C:\Users\michael\AppData\Roaming\Mozilla\Firefox\Profiles\rp073hgr.default-1350116120092\Extensions\{2541D29A-DB9E-4c1e-949A-31EFB4AEF4E7}.xpi [2014-07-29]
FF Extension: Adblock Plus - C:\Users\michael\AppData\Roaming\Mozilla\Firefox\Profiles\rp073hgr.default-1350116120092\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-10-01]
Chrome:
=======
CHR HomePage: Default -> https://de.yahoo.com?fr=hp-avast&type=avastbcl
CHR RestoreOnStartup: Default -> "https://de.yahoo.com?fr=hp-avast&type=avastbcl"
CHR StartupUrls: Default -> "https://de.yahoo.com?fr=hp-avast&type=avastbcl"
CHR NewTab: Default -> "chrome-extension://oocaehgghkpmfmafjenhhnkbfdjjbkic/config/skin/new-tab.html"
CHR DefaultSearchProvider: Default -> Search Results
CHR DefaultSearchURL: Default -> hxxp://dts.search-results.com/sr?src=crb&gct=ds&appid=427&systemid=406&apn_dtid=BND406&apn_ptnrs=AG6&o=APN10645&apn_uid=1817798103464055&q={searchTerms}
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Users\michael\AppData\Local\Google\Chrome\Application\30.0.1599.101\ppGoogleNaClPluginChrome.dll No File
CHR Plugin: (Chrome PDF Viewer) - C:\Users\michael\AppData\Local\Google\Chrome\Application\30.0.1599.101\pdf.dll No File
CHR Plugin: (Shockwave Flash) - C:\Users\michael\AppData\Local\Google\Chrome\Application\30.0.1599.101\gcswf32.dll No File
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.79\npGoogleUpdate3.dll No File
CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
CHR Plugin: (Default Plug-in) - default_plugin No File
CHR Profile: C:\Users\michael\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (YouTube) - C:\Users\michael\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2011-12-31]
CHR Extension: (Google-Suche) - C:\Users\michael\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2011-12-31]
CHR Extension: (Google Mail) - C:\Users\michael\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2011-12-31]
CHR HKLM\...\Chrome\Extension: [dlnembnfbcpjnepmfjmngjenhhajpdfd] - C:\Program Files\IB Updater\source.crx []
CHR HKLM-x32\...\Chrome\Extension: [dlnembnfbcpjnepmfjmngjenhhajpdfd] - C:\Program Files\IB Updater\source.crx []
CHR HKLM-x32\...\Chrome\Extension: [fgfdfcbeamjnjdejakdidpniblllnbpg] - C:\Windows\SysWOW64\jmdp\pnte.crx []
CHR HKLM-x32\...\Chrome\Extension: [jcdgjdiieiljkfkdcloehkohchhpekkn] - C:\Users\michael\AppData\Local\Google\Chrome\User Data\Default\External Extensions\{EEE6C373-6118-11DC-9C72-001320C79847}\SweetFB.crx [2013-01-12]
CHR HKLM-x32\...\Chrome\Extension: [jifflliplgeajjdhmkcfnngfpgbjonjg] - C:\Program Files (x86)\Perion\NewTab\newTab.crx [2012-10-05]
CHR StartMenuInternet: Google Chrome - C:\Users\michael\AppData\Local\Google\Chrome\Application\chrome.exe
CHR HKCU\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [430160 2014-08-08] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [430160 2014-08-08] (Avira Operations GmbH & Co. KG)
S4 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [1021008 2014-08-08] (Avira Operations GmbH & Co. KG)
R2 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [138400 2011-03-13] (Atheros) [File not signed]
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [74912 2011-03-13] (Atheros Commnucations) [File not signed]
R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [160048 2014-08-27] (Avira Operations GmbH & Co. KG)
S2 globalUpdate; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2014-09-27] (globalUpdate) [File not signed]
S3 globalUpdatem; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2014-09-27] (globalUpdate) [File not signed]
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [340240 2011-05-02] ()
S2 SystemStoreService; C:\Program Files (x86)\SoftwareUpdater\SystemStore.exe [297984 2014-04-09] () [File not signed]
S2 IB Updater Updater; C:\Program Files\IB Updater\ExtensionUpdaterService.exe [X]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [117712 2014-07-03] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [130584 2014-06-03] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-11-25] (Avira Operations GmbH & Co. KG)
S3 InputFilter_Hid_FlexDef2b; C:\Windows\System32\DRIVERS\InputFilter_FlexDef2b.sys [17920 2010-06-19] (Siliten)
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [53760 2012-09-28] (Apple, Inc.) [File not signed]
S3 massfilter_hs; system32\drivers\massfilter_hs.sys [X]
S3 ZTEusbmdm6k; system32\DRIVERS\ZTEusbmdm6k.sys [X]
S3 ZTEusbnet; system32\DRIVERS\ZTEusbnet.sys [X]
S3 ZTEusbnmea; system32\DRIVERS\ZTEusbnmea.sys [X]
S3 ZTEusbnmeaext; system32\DRIVERS\ZTEusbnmeaext.sys [X]
S3 ZTEusbser6k; system32\DRIVERS\ZTEusbser6k.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-10-04 11:11 - 2014-10-04 11:12 - 00021822 _____ () C:\Users\michael\Downloads\FRST.txt
2014-10-04 11:11 - 2014-10-04 11:11 - 00000000 ____D () C:\FRST
2014-10-04 11:10 - 2014-10-04 11:10 - 02109440 _____ (Farbar) C:\Users\michael\Downloads\FRST64.exe
2014-10-04 10:59 - 2014-10-04 10:59 - 00001268 _____ () C:\Users\michael\Desktop\Revo Uninstaller.lnk
2014-10-04 10:59 - 2014-10-04 10:59 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group
2014-10-04 10:58 - 2014-10-04 10:58 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\michael\Downloads\revosetup95.exe
2014-10-02 08:55 - 2014-10-02 08:55 - 00000056 _____ () C:\Windows\setupact.log
2014-10-02 08:55 - 2014-10-02 08:55 - 00000000 _____ () C:\Windows\setuperr.log
2014-10-02 08:54 - 2014-10-02 08:54 - 00003820 _____ () C:\Windows\PFRO.log
2014-10-01 18:57 - 2014-10-02 08:54 - 00002236 _____ () C:\Windows\system32\ASOROSet.bin
2014-10-01 18:57 - 2014-10-01 18:57 - 00000000 ____D () C:\Windows\system32\config\RCCBakup
2014-10-01 18:44 - 2014-10-02 09:00 - 00000000 ____D () C:\Users\michael\AppData\Roaming\Solvusoft
2014-10-01 18:44 - 2012-10-15 17:02 - 00019888 _____ (solvusoft) C:\Windows\system32\roboot64.exe
2014-10-01 16:06 - 2014-10-01 16:06 - 02953520 _____ (AVAST Software) C:\Users\michael\Downloads\avast-browser-cleanup_9.0.0.224(1).exe
2014-10-01 15:47 - 2014-10-01 15:47 - 03836936 _____ (Piriform Ltd) C:\Users\michael\Downloads\ccsetup418_slim.exe
2014-10-01 15:47 - 2014-10-01 15:47 - 00002776 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-10-01 15:47 - 2014-10-01 15:47 - 00000000 ____D () C:\Program Files\CCleaner
2014-10-01 15:42 - 2014-10-01 15:43 - 02953520 _____ (AVAST Software) C:\Users\michael\Downloads\avast-browser-cleanup_9.0.0.224.exe
2014-10-01 15:42 - 2014-09-25 04:08 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2014-10-01 15:42 - 2014-09-25 03:40 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2014-09-29 18:08 - 2014-09-29 18:08 - 00000000 ____D () C:\Users\michael\AppData\Local\SWDS
2014-09-27 10:54 - 2014-09-27 10:54 - 00000000 ____D () C:\Users\michael\AppData\Roaming\dlg
2014-09-27 10:53 - 2014-10-04 10:53 - 00002446 _____ () C:\Windows\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-5_user.job
2014-09-27 10:53 - 2014-10-04 10:53 - 00002446 _____ () C:\Windows\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-5.job
2014-09-27 10:53 - 2014-10-04 10:53 - 00002110 _____ () C:\Windows\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-2.job
2014-09-27 10:53 - 2014-10-04 10:53 - 00001454 _____ () C:\Windows\Tasks\7bd13220-ffbf-46f4-be06-48dacb2e4fee.job
2014-09-27 10:53 - 2014-09-27 10:53 - 00005476 _____ () C:\Windows\System32\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-5
2014-09-27 10:53 - 2014-09-27 10:53 - 00005140 _____ () C:\Windows\System32\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-2
2014-09-27 10:53 - 2014-09-27 10:53 - 00004484 _____ () C:\Windows\System32\Tasks\7bd13220-ffbf-46f4-be06-48dacb2e4fee
2014-09-27 10:52 - 2014-10-04 10:57 - 00003814 _____ () C:\Windows\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-4.job
2014-09-27 10:52 - 2014-10-04 10:57 - 00003470 _____ () C:\Windows\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-6.job
2014-09-27 10:52 - 2014-10-04 10:52 - 00004496 _____ () C:\Windows\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-11.job
2014-09-27 10:52 - 2014-10-04 10:52 - 00003134 _____ () C:\Windows\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-7.job
2014-09-27 10:52 - 2014-10-04 10:52 - 00002782 _____ () C:\Windows\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-1.job
2014-09-27 10:52 - 2014-09-27 10:53 - 00005812 _____ () C:\Windows\System32\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-1
2014-09-27 10:52 - 2014-09-27 10:52 - 00007526 _____ () C:\Windows\System32\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-11
2014-09-27 10:52 - 2014-09-27 10:52 - 00006844 _____ () C:\Windows\System32\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-4
2014-09-27 10:52 - 2014-09-27 10:52 - 00006498 _____ () C:\Windows\System32\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-6
2014-09-27 10:52 - 2014-09-27 10:52 - 00006164 _____ () C:\Windows\System32\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-7
2014-09-27 10:51 - 2014-10-04 10:51 - 00003814 _____ () C:\Windows\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-3.job
2014-09-27 10:51 - 2014-09-27 10:53 - 00000000 ____D () C:\Program Files (x86)\Cinema-P+-1.2V27.09
2014-09-27 10:51 - 2014-09-27 10:51 - 00006844 _____ () C:\Windows\System32\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-3
2014-09-27 10:39 - 2014-09-27 10:39 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
2014-09-27 10:38 - 2014-09-27 10:38 - 00001783 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-09-27 10:38 - 2014-09-27 10:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2014-09-27 10:37 - 2014-09-27 10:37 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-09-27 10:37 - 2014-09-27 10:37 - 00000000 ____D () C:\Program Files\iTunes
2014-09-27 10:37 - 2014-09-27 10:37 - 00000000 ____D () C:\Program Files\iPod
2014-09-27 10:37 - 2014-09-27 10:37 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-09-25 16:29 - 2014-09-25 16:30 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-09-24 07:08 - 2014-09-10 00:11 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-09-24 07:08 - 2014-09-09 23:47 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-09-21 17:55 - 2014-10-04 06:00 - 00003814 _____ () C:\Windows\Tasks\d010e637-31e5-447b-825b-e518dba6941e-4.job
2014-09-21 17:55 - 2014-10-04 06:00 - 00002782 _____ () C:\Windows\Tasks\d010e637-31e5-447b-825b-e518dba6941e-1.job
2014-09-21 17:55 - 2014-10-04 06:00 - 00002446 _____ () C:\Windows\Tasks\d010e637-31e5-447b-825b-e518dba6941e-5_user.job
2014-09-21 17:55 - 2014-10-04 06:00 - 00002446 _____ () C:\Windows\Tasks\d010e637-31e5-447b-825b-e518dba6941e-5.job
2014-09-21 17:55 - 2014-10-04 06:00 - 00002110 _____ () C:\Windows\Tasks\d010e637-31e5-447b-825b-e518dba6941e-2.job
2014-09-21 17:55 - 2014-10-04 06:00 - 00001478 _____ () C:\Windows\Tasks\bfbef993-61ee-403b-801f-a716301acd85.job
2014-09-21 17:55 - 2014-09-21 17:55 - 00006844 _____ () C:\Windows\System32\Tasks\d010e637-31e5-447b-825b-e518dba6941e-4
2014-09-21 17:55 - 2014-09-21 17:55 - 00005812 _____ () C:\Windows\System32\Tasks\d010e637-31e5-447b-825b-e518dba6941e-1
2014-09-21 17:55 - 2014-09-21 17:55 - 00005476 _____ () C:\Windows\System32\Tasks\d010e637-31e5-447b-825b-e518dba6941e-5
2014-09-21 17:55 - 2014-09-21 17:55 - 00005140 _____ () C:\Windows\System32\Tasks\d010e637-31e5-447b-825b-e518dba6941e-2
2014-09-21 17:55 - 2014-09-21 17:55 - 00004508 _____ () C:\Windows\System32\Tasks\bfbef993-61ee-403b-801f-a716301acd85
2014-09-21 17:54 - 2014-10-04 10:59 - 00003470 _____ () C:\Windows\Tasks\d010e637-31e5-447b-825b-e518dba6941e-6.job
2014-09-21 17:54 - 2014-10-04 10:57 - 00000954 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2014-09-21 17:54 - 2014-10-04 10:57 - 00000950 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2014-09-21 17:54 - 2014-10-04 06:00 - 00004496 _____ () C:\Windows\Tasks\d010e637-31e5-447b-825b-e518dba6941e-11.job
2014-09-21 17:54 - 2014-10-04 06:00 - 00003814 _____ () C:\Windows\Tasks\d010e637-31e5-447b-825b-e518dba6941e-3.job
2014-09-21 17:54 - 2014-10-04 06:00 - 00003470 _____ () C:\Windows\Tasks\d010e637-31e5-447b-825b-e518dba6941e-7.job
2014-09-21 17:54 - 2014-09-27 10:52 - 00003952 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA
2014-09-21 17:54 - 2014-09-27 10:52 - 00003698 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore
2014-09-21 17:54 - 2014-09-21 17:55 - 00000000 ____D () C:\Program Files (x86)\Cinema-P+-1.2V21.09
2014-09-21 17:54 - 2014-09-21 17:54 - 00007526 _____ () C:\Windows\System32\Tasks\d010e637-31e5-447b-825b-e518dba6941e-11
2014-09-21 17:54 - 2014-09-21 17:54 - 00006844 _____ () C:\Windows\System32\Tasks\d010e637-31e5-447b-825b-e518dba6941e-3
2014-09-21 17:54 - 2014-09-21 17:54 - 00006500 _____ () C:\Windows\System32\Tasks\d010e637-31e5-447b-825b-e518dba6941e-7
2014-09-21 17:54 - 2014-09-21 17:54 - 00006498 _____ () C:\Windows\System32\Tasks\d010e637-31e5-447b-825b-e518dba6941e-6
2014-09-21 17:54 - 2014-09-21 17:54 - 00000000 ____D () C:\Users\michael\AppData\Local\globalUpdate
2014-09-21 17:54 - 2014-09-21 17:54 - 00000000 ____D () C:\Program Files (x86)\globalUpdate
2014-09-21 17:53 - 2014-09-21 17:53 - 00000000 ____D () C:\Users\michael\AppData\Local\Software Updater
2014-09-15 08:53 - 2014-09-15 08:53 - 02674670 _____ () C:\Users\michael\Desktop\Dienstplan ab Mai 2014 (Automatisch gespeichert).xlsx
2014-09-12 09:14 - 2014-08-19 20:05 - 00374968 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-09-12 09:14 - 2014-08-19 19:39 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-09-12 09:14 - 2014-08-19 01:01 - 23591424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-09-12 09:14 - 2014-08-19 00:29 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-09-12 09:14 - 2014-08-19 00:29 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-09-12 09:14 - 2014-08-19 00:26 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-09-12 09:14 - 2014-08-19 00:20 - 02793984 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-09-12 09:14 - 2014-08-19 00:19 - 05833728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-09-12 09:14 - 2014-08-19 00:15 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-09-12 09:14 - 2014-08-19 00:15 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-09-12 09:14 - 2014-08-19 00:14 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-09-12 09:14 - 2014-08-19 00:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-09-12 09:14 - 2014-08-19 00:08 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-09-12 09:14 - 2014-08-19 00:08 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-09-12 09:14 - 2014-08-19 00:08 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-09-12 09:14 - 2014-08-19 00:05 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-09-12 09:14 - 2014-08-19 00:03 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-09-12 09:14 - 2014-08-19 00:03 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-09-12 09:14 - 2014-08-19 00:03 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-09-12 09:14 - 2014-08-18 23:57 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-09-12 09:14 - 2014-08-18 23:56 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-09-12 09:14 - 2014-08-18 23:51 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-09-12 09:14 - 2014-08-18 23:46 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-09-12 09:14 - 2014-08-18 23:45 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-09-12 09:14 - 2014-08-18 23:45 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-09-12 09:14 - 2014-08-18 23:44 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-09-12 09:14 - 2014-08-18 23:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-09-12 09:14 - 2014-08-18 23:42 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-09-12 09:14 - 2014-08-18 23:40 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-09-12 09:14 - 2014-08-18 23:39 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-09-12 09:14 - 2014-08-18 23:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-09-12 09:14 - 2014-08-18 23:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-09-12 09:14 - 2014-08-18 23:38 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-09-12 09:14 - 2014-08-18 23:37 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-09-12 09:14 - 2014-08-18 23:36 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-09-12 09:14 - 2014-08-18 23:35 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-09-12 09:14 - 2014-08-18 23:27 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-09-12 09:14 - 2014-08-18 23:25 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-09-12 09:14 - 2014-08-18 23:25 - 00707072 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-09-12 09:14 - 2014-08-18 23:23 - 02104832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-09-12 09:14 - 2014-08-18 23:23 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-09-12 09:14 - 2014-08-18 23:22 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-09-12 09:14 - 2014-08-18 23:19 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-09-12 09:14 - 2014-08-18 23:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-09-12 09:14 - 2014-08-18 23:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-09-12 09:14 - 2014-08-18 23:16 - 13588480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-09-12 09:14 - 2014-08-18 23:15 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-09-12 09:14 - 2014-08-18 23:15 - 02310656 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-09-12 09:14 - 2014-08-18 23:09 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-09-12 09:14 - 2014-08-18 23:08 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-09-12 09:14 - 2014-08-18 23:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-09-12 09:14 - 2014-08-18 22:55 - 01447424 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-09-12 09:14 - 2014-08-18 22:46 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-09-12 09:14 - 2014-08-18 22:38 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-09-12 09:14 - 2014-08-18 22:38 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-09-12 09:14 - 2014-08-18 22:36 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-09-12 09:02 - 2014-06-27 04:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2014-09-12 09:02 - 2014-06-27 03:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2014-09-11 08:12 - 2014-08-01 13:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2014-09-11 08:12 - 2014-08-01 13:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2014-09-11 08:12 - 2014-06-24 05:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-09-11 08:12 - 2014-06-24 04:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-09-11 08:11 - 2014-09-05 04:10 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-09-11 08:11 - 2014-09-05 04:05 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-09-11 08:11 - 2014-07-07 04:06 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-09-11 08:11 - 2014-07-07 04:06 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-09-11 08:11 - 2014-07-07 03:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-09-11 08:11 - 2014-07-07 03:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-09-11 08:11 - 2014-07-07 03:39 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-10-04 11:04 - 2012-05-03 21:54 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-10-04 10:57 - 2011-12-28 14:47 - 01458083 _____ () C:\Windows\WindowsUpdate.log
2014-10-04 10:41 - 2011-12-31 17:32 - 00001128 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1514408640-3576972440-2300300729-1115UA.job
2014-10-04 09:33 - 2012-07-10 22:27 - 00000000 ____D () C:\Users\michael\AppData\Local\CrashDumps
2014-10-04 09:33 - 2011-12-31 17:32 - 00001076 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1514408640-3576972440-2300300729-1115Core.job
2014-10-03 20:10 - 2013-10-22 11:05 - 00004208 _____ () C:\Windows\System32\Tasks\Software Updater
2014-10-03 13:06 - 2013-08-15 21:10 - 00000000 ____D () C:\Users\michael\Downloads\rewq
2014-10-03 12:03 - 2012-07-07 13:48 - 00000000 ____D () C:\Users\michael\AppData\Roaming\Spotify
2014-10-03 12:01 - 2012-07-07 13:49 - 00000000 ____D () C:\Users\michael\AppData\Local\Spotify
2014-10-02 09:05 - 2009-07-14 06:45 - 00031680 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-10-02 09:05 - 2009-07-14 06:45 - 00031680 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-10-02 08:56 - 2011-12-27 17:13 - 00000000 ____D () C:\Users\michael
2014-10-02 08:55 - 2011-12-28 15:33 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-10-02 08:55 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-10-02 08:54 - 2009-07-14 04:34 - 71041024 _____ () C:\Windows\system32\config\SOFTWARE.bak
2014-10-02 08:54 - 2009-07-14 04:34 - 17563648 _____ () C:\Windows\system32\config\SYSTEM.bak
2014-10-02 08:54 - 2009-07-14 04:34 - 00262144 _____ () C:\Windows\system32\config\SECURITY.bak
2014-10-01 23:24 - 2009-07-14 04:34 - 00262144 _____ () C:\Windows\system32\config\SAM.bak
2014-10-01 23:22 - 2014-03-03 00:19 - 00000000 ____D () C:\Users\michael\AppData\Local\Battle.net
2014-10-01 21:46 - 2014-03-03 00:19 - 00000000 ____D () C:\Program Files (x86)\Battle.net
2014-10-01 15:49 - 2013-02-11 18:43 - 00000000 ____D () C:\Windows\Minidump
2014-10-01 15:49 - 2011-12-28 14:43 - 00000000 ____D () C:\Windows\Panther
2014-09-29 17:53 - 2014-06-23 21:33 - 00000000 ____D () C:\Windows\SysWOW64\mjcm
2014-09-29 17:52 - 2014-08-08 15:13 - 00000000 ____D () C:\ProgramData\Package Cache
2014-09-29 17:30 - 2011-12-28 14:56 - 00000000 ____D () C:\Users\Heinz
2014-09-29 17:29 - 2011-04-12 09:54 - 00000000 ___RD () C:\Users\Public\Recorded TV
2014-09-29 17:29 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\registration
2014-09-27 23:56 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache
2014-09-27 10:52 - 2011-12-28 14:51 - 00000000 ____D () C:\Program Files (x86)\Google
2014-09-27 10:43 - 2013-08-15 18:23 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-09-24 19:05 - 2012-05-03 21:54 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-09-24 19:05 - 2012-05-03 21:54 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-09-24 19:05 - 2011-12-28 14:51 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-09-24 06:53 - 2012-05-14 21:29 - 00000000 ____D () C:\Program Files (x86)\Diablo III
2014-09-18 08:50 - 2013-06-25 16:33 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-09-16 16:20 - 2012-10-05 16:25 - 00829264 _____ (Microsoft Corporation) C:\Windows\system32\msvcr100.dll
2014-09-16 16:20 - 2012-10-05 16:25 - 00608080 _____ (Microsoft Corporation) C:\Windows\system32\msvcp100.dll
2014-09-12 18:06 - 2014-08-08 15:13 - 00001137 _____ () C:\Users\Public\Desktop\Avira.lnk
2014-09-12 18:06 - 2013-08-06 14:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2014-09-12 18:06 - 2013-08-06 14:20 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-09-12 09:11 - 2012-10-12 21:09 - 01594964 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-09-12 09:11 - 2011-04-12 09:43 - 00699682 _____ () C:\Windows\system32\perfh007.dat
2014-09-12 09:11 - 2011-04-12 09:43 - 00149790 _____ () C:\Windows\system32\perfc007.dat
2014-09-12 09:11 - 2009-07-14 07:13 - 01594964 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-09-12 09:09 - 2013-10-15 20:10 - 00000000 ____D () C:\Windows\system32\MRT
2014-09-12 09:04 - 2013-10-15 20:10 - 101694776 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-09-12 09:01 - 2014-05-07 07:55 - 00000000 ___SD () C:\Windows\system32\CompatTel
Some content of TEMP:
====================
C:\Users\Heinz\AppData\Local\Temp\AskSLib.dll
C:\Users\michael\AppData\Local\Temp\avgnt.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-09-27 17:21
==================== End Of Log ============================ --- --- ---
--- --- --- Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 04-10-2014
Ran by Michael at 2014-10-04 11:12:43
Running from C:\Users\michael\Downloads
Boot Mode: Normal
==========================================================
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Avira Desktop (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AS: Avira Desktop (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.167 - Adobe Systems Incorporated)
Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.152 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.09) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.09 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.0 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.0.2.122 - Adobe Systems, Inc.)
Apple Application Support (HKLM-x32\...\{78002155-F025-4070-85B3-7C0453561701}) (Version: 3.0.6 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{B678797F-DF38-4556-8A31-8B818E261868}) (Version: 8.0.0.23 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.12.5.0 - Asmedia Technology)
ASUS Live Update (HKLM-x32\...\{FA540E67-095C-4A1B-97BA-4D547DEC9AF4}) (Version: 3.0.6 - ASUS)
ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0010 - ASUS)
Avira (HKLM-x32\...\{70e83cd8-4bd5-4039-ab5a-6b94a8abb641}) (Version: 1.1.21.25162 - Avira Operations GmbH & Co. KG)
Avira (x32 Version: 1.1.21.25162 - Avira Operations GmbH & Co. KG) Hidden
Avira Free Antivirus (HKLM-x32\...\Avira AntiVir Desktop) (Version: 14.0.6.570 - Avira)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Bluetooth Win7 Suite (64) (HKLM\...\{230D1595-57DA-4933-8C4E-375797EBB7E1}) (Version: 7.2.0.65 - Atheros Communications)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 4.18 - Piriform)
Compatibility Pack for the 2007 Office system (HKLM-x32\...\{90120000-0020-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment)
ETDWare PS/2-X64 8.0.5.3_WHQL (HKLM\...\Elantech) (Version: 8.0.5.3 - ELAN Microelectronic Corp.)
ExtractNow (HKLM-x32\...\ExtractNow_is1) (Version: - Nathan Moinvaziri)
Fotogalerie (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Google Chrome (HKCU\...\Google Chrome) (Version: 37.0.2062.124 - Google Inc.)
iCloud (HKLM\...\{6096C0CC-7E19-4355-87F0-627EC5AA146D}) (Version: 4.0.3.56 - Apple Inc.)
Intel PROSet Wireless (Version: - ) Hidden
Intel PROSet Wireless (x32 Version: - ) Hidden
Intel(R) PROSet/Wireless WiFi-Software (HKLM\...\{3C41721F-AF0F-4086-AA1C-4C7F29076228}) (Version: 14.01.1000 - Intel Corporation)
iTunes (HKLM\...\{F46AA0F1-E284-4878-A462-5F11B9166C0E}) (Version: 11.4.0.18 - Apple Inc.)
Junk Mail filter update (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Live Add-in 1.5 (HKLM-x32\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation)
Microsoft Office Professional Edition 2003 (HKLM-x32\...\{90110407-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation)
Microsoft SkyDrive (HKCU\...\SkyDriveSetup.exe) (Version: 16.4.6013.0910 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Movie Maker (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Mozilla Firefox 32.0.3 (x86 de) (HKLM-x32\...\Mozilla Firefox 32.0.3 (x86 de)) (Version: 32.0.3 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden
MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden
NVIDIA 3D Vision Treiber 268.56 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 268.56 - NVIDIA Corporation)
NVIDIA Grafiktreiber 268.56 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 268.56 - NVIDIA Corporation)
NVIDIA Install Application (Version: 2.265.41.0 - NVIDIA Corporation) Hidden
NVIDIA Optimus 1.0.22 (Version: 1.0.22 - NVIDIA Corporation) Hidden
NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.12.6856 - NVIDIA Corporation) Hidden
NVIDIA Systemsteuerung 268.56 (Version: 268.56 - NVIDIA Corporation) Hidden
NVIDIA Update Components (Version: 1.0.22 - NVIDIA Corporation) Hidden
Photo Common (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Photo Gallery (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Pokémon Trading Card Game Online (HKLM-x32\...\{496D7B7E-EBDC-4E2B-B021-4FF03B188B69}) (Version: 1.0.0 - The Pokémon Company International)
QuickTime 7 (HKLM-x32\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.38.113.2011 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6373 - Realtek Semiconductor Corp.)
Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
Spotify (HKCU\...\Spotify) (Version: 0.9.13.24.g5dbb3103 - Spotify AB)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
VLC media player 2.0.2 (HKLM-x32\...\VLC media player) (Version: 2.0.2 - VideoLAN)
Windows Live Communications Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Family Safety (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Family Safety (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Messenger (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live MIME IFilter (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live UX Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Writer (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Writer Resources (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Zelda Navi's Quest 1.2 (HKLM-x32\...\{6379F7CF-56B3-45AA-B4FC-35ECD5D4A599}_is1) (Version: - Vincent Jouillat)
==================== Custom CLSID (selected items): ==========================
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
CustomCLSID: HKU\S-1-5-21-1514408640-3576972440-2300300729-1115_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\michael\AppData\Local\Google\Update\1.3.23.9\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-1514408640-3576972440-2300300729-1115_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\michael\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1514408640-3576972440-2300300729-1115_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\michael\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1514408640-3576972440-2300300729-1115_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\michael\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1514408640-3576972440-2300300729-1115_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\michael\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1514408640-3576972440-2300300729-1115_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\michael\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1514408640-3576972440-2300300729-1115_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\michael\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\FileSyncApi64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1514408640-3576972440-2300300729-1115_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\michael\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll No File
==================== Restore Points =========================
25-09-2014 05:11:40 Windows Update
27-09-2014 08:53:58 TubeBox
28-09-2014 08:35:39 TubeBox
29-09-2014 15:24:55 Wiederherstellungsvorgang
29-09-2014 15:51:58 TubeBox
01-10-2014 16:53:16 WinThruster Mi, Okt 01, 14 18:53
01-10-2014 21:23:12 Windows Update
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
Task: {0E51C7A1-F750-44A6-B2AF-F0777C5F6821} - System32\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-1 => C:\Program Files (x86)\Cinema-P+-1.2V27.09\Cinema-P+-1.2V27.09-codedownloader.exe [2014-09-27] (CinemaPV27.09)
Task: {25D9EE0C-F9DA-40AB-99C8-5E2A3CF111F0} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {26BD146F-455C-46CD-AB47-F5F8B6666F89} - System32\Tasks\d010e637-31e5-447b-825b-e518dba6941e-1 => C:\Program Files (x86)\Cinema-P+-1.2V21.09\Cinema-P+-1.2V21.09-codedownloader.exe [2014-09-21] (CinemaPV21.09)
Task: {37CE59F0-371D-4E6A-8FDD-33337367B0FA} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-09-26] (Piriform Ltd)
Task: {452D3034-9A4C-4858-9777-26FF421B14BD} - System32\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-6 => C:\Program Files (x86)\Cinema-P+-1.2V27.09\9047c96b-49e0-46c6-a1f7-535a114fa9fe-6.exe [2014-09-27] (CinemaPV27.09)
Task: {60F7FF76-F229-437A-8357-A8A4AB828080} - System32\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-3 => C:\Program Files (x86)\Cinema-P+-1.2V27.09\9047c96b-49e0-46c6-a1f7-535a114fa9fe-3.exe
Task: {6341FB93-4EBA-49BA-9277-CCDF5F19095D} - System32\Tasks\d010e637-31e5-447b-825b-e518dba6941e-11 => C:\Program Files (x86)\Cinema-P+-1.2V21.09\d010e637-31e5-447b-825b-e518dba6941e-11.exe
Task: {6CA63B59-1A13-4D70-BD59-D4A4D3B2C60B} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1514408640-3576972440-2300300729-1115UA => C:\Users\michael\AppData\Local\Google\Update\GoogleUpdate.exe [2011-12-28] (Google Inc.)
Task: {6E3C4EB4-E477-4054-8DCF-1B581DF77EDE} - System32\Tasks\d010e637-31e5-447b-825b-e518dba6941e-5_user => C:\Program Files (x86)\Cinema-P+-1.2V21.09\d010e637-31e5-447b-825b-e518dba6941e-5.exe [2014-09-21] (CinemaPV21.09)
Task: {7092DC8F-1EF3-43A8-AE80-453DB85527D5} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-09-27] (globalUpdate) <==== ATTENTION
Task: {718140E3-56E8-49B8-BF1E-8D4ED1A0B535} - System32\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-11 => C:\Program Files (x86)\Cinema-P+-1.2V27.09\9047c96b-49e0-46c6-a1f7-535a114fa9fe-11.exe
Task: {753062D5-23AE-45E7-BBD9-9F0ABFA2B4FF} - System32\Tasks\d010e637-31e5-447b-825b-e518dba6941e-2 => C:\Program Files (x86)\Cinema-P+-1.2V21.09\d010e637-31e5-447b-825b-e518dba6941e-2.exe [2014-09-21] (CinemaPV21.09)
Task: {75430494-E4A8-402F-93EE-79C8EEC79874} - System32\Tasks\ASUS Live Update => C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [2011-08-31] (ASUSTeK Computer Inc.)
Task: {75F3C711-3EBB-4E91-AA8D-9A00EDCF1E7B} - System32\Tasks\d010e637-31e5-447b-825b-e518dba6941e-4 => C:\Program Files (x86)\Cinema-P+-1.2V21.09\d010e637-31e5-447b-825b-e518dba6941e-4.exe [2014-09-21] (CinemaPV21.09)
Task: {7C33FC42-54E0-4800-93A4-07ECAAA5E626} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1514408640-3576972440-2300300729-1115Core => C:\Users\michael\AppData\Local\Google\Update\GoogleUpdate.exe [2011-12-28] (Google Inc.)
Task: {7E71F1F6-8B49-43BE-B31B-3326B5B6A235} - System32\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-5 => C:\Program Files (x86)\Cinema-P+-1.2V27.09\9047c96b-49e0-46c6-a1f7-535a114fa9fe-5.exe [2014-09-27] (CinemaPV27.09)
Task: {83B2DF25-A942-469E-94A1-7C111FBD030F} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-09-24] (Adobe Systems Incorporated)
Task: {9A67BF60-B663-4EBD-B4B8-08CC4D07F7F9} - System32\Tasks\d010e637-31e5-447b-825b-e518dba6941e-7 => C:\Program Files (x86)\Cinema-P+-1.2V21.09\d010e637-31e5-447b-825b-e518dba6941e-7.exe [2014-09-21] (CinemaPV21.09)
Task: {9FB2D6D5-B063-49C2-B1C6-95395FA8CE49} - System32\Tasks\d010e637-31e5-447b-825b-e518dba6941e-3 => C:\Program Files (x86)\Cinema-P+-1.2V21.09\d010e637-31e5-447b-825b-e518dba6941e-3.exe
Task: {B680DFE3-3BDE-4341-AD06-B4E28CF4CFE5} - System32\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-2 => C:\Program Files (x86)\Cinema-P+-1.2V27.09\9047c96b-49e0-46c6-a1f7-535a114fa9fe-2.exe [2014-09-27] (CinemaPV27.09)
Task: {B6B44AC2-0BDB-4B86-9E0D-489D06501634} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-09-27] (globalUpdate) <==== ATTENTION
Task: {C21A1D16-0659-4418-A9E1-2577654CFD8E} - System32\Tasks\Software Updater => C:\Program Files (x86)\SoftwareUpdater\SoftwareUpdater.Bootstrapper.exe [2013-12-19] ()
Task: {C34E3E51-9E0A-4DEB-9031-62FB70E9D2E7} - System32\Tasks\bfbef993-61ee-403b-801f-a716301acd85 => C:\Program Files (x86)\Cinema-P+-1.2V21.09\bfbef993-61ee-403b-801f-a716301acd85.exe [2014-09-21] (CinemaPV21.09)
Task: {CCA06C39-1558-4743-8A2E-9B376D11E7B3} - System32\Tasks\Software Updater Ui => C:\Program Files (x86)\SoftwareUpdater\SoftwareUpdater.Ui.exe [2013-12-19] ()
Task: {DBEDB286-AFDB-4D4D-AD49-7F2DC130EE06} - System32\Tasks\ATKOSD2 => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2010-08-17] (ASUS)
Task: {DE52F0C3-9699-4AAE-8944-183627E56C08} - System32\Tasks\7bd13220-ffbf-46f4-be06-48dacb2e4fee => C:\Program Files (x86)\Cinema-P+-1.2V27.09\7bd13220-ffbf-46f4-be06-48dacb2e4fee.exe [2014-09-27] (CinemaPV27.09)
Task: {E998F35F-17D4-4275-BB73-F9FDCE265A82} - System32\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-4 => C:\Program Files (x86)\Cinema-P+-1.2V27.09\9047c96b-49e0-46c6-a1f7-535a114fa9fe-4.exe [2014-09-27] (CinemaPV27.09)
Task: {E9C97A4E-6348-4BF4-9A4A-3B961DF71BC6} - System32\Tasks\d010e637-31e5-447b-825b-e518dba6941e-5 => C:\Program Files (x86)\Cinema-P+-1.2V21.09\d010e637-31e5-447b-825b-e518dba6941e-5.exe [2014-09-21] (CinemaPV21.09)
Task: {EDE3DA12-AD06-471A-A8BB-287F7B377C3B} - System32\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-7 => C:\Program Files (x86)\Cinema-P+-1.2V27.09\9047c96b-49e0-46c6-a1f7-535a114fa9fe-7.exe [2014-09-27] (CinemaPV27.09)
Task: {F8565FD3-9EC8-420B-9595-69C4F709782D} - System32\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-5_user => C:\Program Files (x86)\Cinema-P+-1.2V27.09\9047c96b-49e0-46c6-a1f7-535a114fa9fe-5.exe [2014-09-27] (CinemaPV27.09)
Task: {FCE1BAA0-2618-4353-8891-0AA4899D0F4C} - System32\Tasks\d010e637-31e5-447b-825b-e518dba6941e-6 => C:\Program Files (x86)\Cinema-P+-1.2V21.09\d010e637-31e5-447b-825b-e518dba6941e-6.exe [2014-09-21] (CinemaPV21.09)
Task: C:\Windows\Tasks\7bd13220-ffbf-46f4-be06-48dacb2e4fee.job => C:\Program Files (x86)\Cinema-P+-1.2V27.09\7bd13220-ffbf-46f4-be06-48dacb2e4fee.exe
Task: C:\Windows\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-1.job => C:\Program Files (x86)\Cinema-P+-1.2V27.09\Cinema-P+-1.2V27.09-codedownloader.exe
Task: C:\Windows\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-11.job => C:\Program Files (x86)\Cinema-P+-1.2V27.09\9047c96b-49e0-46c6-a1f7-535a114fa9fe-11.exe
Task: C:\Windows\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-2.job => C:\Program Files (x86)\Cinema-P+-1.2V27.09\9047c96b-49e0-46c6-a1f7-535a114fa9fe-2.exe
Task: C:\Windows\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-3.job => C:\Program Files (x86)\Cinema-P+-1.2V27.09\9047c96b-49e0-46c6-a1f7-535a114fa9fe-3.exe
Task: C:\Windows\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-4.job => C:\Program Files (x86)\Cinema-P+-1.2V27.09\9047c96b-49e0-46c6-a1f7-535a114fa9fe-4.exe
Task: C:\Windows\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-5.job => C:\Program Files (x86)\Cinema-P+-1.2V27.09\9047c96b-49e0-46c6-a1f7-535a114fa9fe-5.exe
Task: C:\Windows\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-5_user.job => C:\Program Files (x86)\Cinema-P+-1.2V27.09\9047c96b-49e0-46c6-a1f7-535a114fa9fe-5.exe
Task: C:\Windows\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-6.job => C:\Program Files (x86)\Cinema-P+-1.2V27.09\9047c96b-49e0-46c6-a1f7-535a114fa9fe-6.exe
Task: C:\Windows\Tasks\9047c96b-49e0-46c6-a1f7-535a114fa9fe-7.job => C:\Program Files (x86)\Cinema-P+-1.2V27.09\9047c96b-49e0-46c6-a1f7-535a114fa9fe-7.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\bfbef993-61ee-403b-801f-a716301acd85.job => C:\Program Files (x86)\Cinema-P+-1.2V21.09\bfbef993-61ee-403b-801f-a716301acd85.exe
Task: C:\Windows\Tasks\d010e637-31e5-447b-825b-e518dba6941e-1.job => C:\Program Files (x86)\Cinema-P+-1.2V21.09\Cinema-P+-1.2V21.09-codedownloader.exe
Task: C:\Windows\Tasks\d010e637-31e5-447b-825b-e518dba6941e-11.job => C:\Program Files (x86)\Cinema-P+-1.2V21.09\d010e637-31e5-447b-825b-e518dba6941e-11.exe
Task: C:\Windows\Tasks\d010e637-31e5-447b-825b-e518dba6941e-2.job => C:\Program Files (x86)\Cinema-P+-1.2V21.09\d010e637-31e5-447b-825b-e518dba6941e-2.exe
Task: C:\Windows\Tasks\d010e637-31e5-447b-825b-e518dba6941e-3.job => C:\Program Files (x86)\Cinema-P+-1.2V21.09\d010e637-31e5-447b-825b-e518dba6941e-3.exe
Task: C:\Windows\Tasks\d010e637-31e5-447b-825b-e518dba6941e-4.job => C:\Program Files (x86)\Cinema-P+-1.2V21.09\d010e637-31e5-447b-825b-e518dba6941e-4.exe
Task: C:\Windows\Tasks\d010e637-31e5-447b-825b-e518dba6941e-5.job => C:\Program Files (x86)\Cinema-P+-1.2V21.09\d010e637-31e5-447b-825b-e518dba6941e-5.exe
Task: C:\Windows\Tasks\d010e637-31e5-447b-825b-e518dba6941e-5_user.job => C:\Program Files (x86)\Cinema-P+-1.2V21.09\d010e637-31e5-447b-825b-e518dba6941e-5.exe
Task: C:\Windows\Tasks\d010e637-31e5-447b-825b-e518dba6941e-6.job => C:\Program Files (x86)\Cinema-P+-1.2V21.09\d010e637-31e5-447b-825b-e518dba6941e-6.exe
Task: C:\Windows\Tasks\d010e637-31e5-447b-825b-e518dba6941e-7.job => C:\Program Files (x86)\Cinema-P+-1.2V21.09\d010e637-31e5-447b-825b-e518dba6941e-7.exe
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1514408640-3576972440-2300300729-1115Core.job => C:\Users\michael\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1514408640-3576972440-2300300729-1115UA.job => C:\Users\michael\AppData\Local\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2011-05-02 14:41 - 2011-05-02 14:41 - 01501696 _____ () C:\Program Files\Common Files\Intel\WirelessCommon\Libeay32.dll
2011-10-21 17:50 - 2011-10-21 17:50 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2011-05-02 14:41 - 2011-05-02 14:41 - 01501696 _____ () C:\Program Files\Common Files\Intel\WirelessCommon\LIBEAY32.dll
2013-06-28 21:25 - 2013-06-28 21:25 - 00079144 _____ () C:\Users\michael\Qtrax\Player\notification.exe
2014-09-25 20:44 - 2014-09-25 20:44 - 00053248 _____ () C:\Program Files\CCleaner\lang\lang-1031.dll
2014-02-12 20:58 - 2014-02-12 20:58 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2014-02-12 20:58 - 2014-02-12 20:58 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2014-08-27 15:00 - 2014-08-27 15:00 - 00139056 _____ () C:\Program Files (x86)\Avira\My Avira\Avira.OE.NativeCore.dll
2014-08-27 15:00 - 2014-08-27 15:00 - 00066864 _____ () C:\Program Files (x86)\Avira\My Avira\Avira.OE.AvConnectorNative.dll
2011-08-31 16:33 - 2011-08-31 16:33 - 00208384 _____ () C:\Program Files (x86)\ASUS\ASUS Live Update\alvupdt.dll
2014-08-08 15:13 - 2014-08-27 15:00 - 00052472 _____ () C:\Users\michael\AppData\Local\Temp\avgnt.exe\Avira.OE.ExtApi.dll
2014-09-25 16:30 - 2014-09-25 16:30 - 03715184 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
2011-05-11 03:22 - 2011-05-11 03:22 - 00237160 _____ () C:\Program Files (x86)\NVIDIA Corporation\3D Vision\Nv3DVStreaming.dll
2014-09-11 20:04 - 2014-09-11 20:04 - 16825520 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll
==================== Alternate Data Streams (whitelisted) =========
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
==================== Safe Mode (whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== EXE Association (whitelisted) =============
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
==================== MSCONFIG/TASK MANAGER disabled items =========
(Currently there is no automatic fix for this section.)
========================= Accounts: ==========================
Administrator (S-1-5-21-2153334784-1668862792-3596993596-500 - Administrator - Disabled)
Gast (S-1-5-21-2153334784-1668862792-3596993596-501 - Limited - Disabled)
Heinz (S-1-5-21-2153334784-1668862792-3596993596-1000 - Administrator - Enabled) => C:\Users\Heinz
UpdatusUser (S-1-5-21-2153334784-1668862792-3596993596-1001 - Limited - Enabled) => C:\Users\UpdatusUser
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (10/04/2014 09:33:34 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: GoogleUpdate.exe, Version: 1.2.183.21, Zeitstempel: 0x4b95e661
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18247, Zeitstempel: 0x521ea8e7
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000223e0
ID des fehlerhaften Prozesses: 0x1554
Startzeit der fehlerhaften Anwendung: 0xGoogleUpdate.exe0
Pfad der fehlerhaften Anwendung: GoogleUpdate.exe1
Pfad des fehlerhaften Moduls: GoogleUpdate.exe2
Berichtskennung: GoogleUpdate.exe3
Error: (10/04/2014 00:00:34 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1763
Error: (10/04/2014 00:00:34 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 1763
Error: (10/04/2014 00:00:34 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (10/03/2014 11:49:38 PM) (Source: globalUpdate Update) (EventID: 1) (User: NT-AUTORITÄT)
Description: globalUpdate Update has encountered a fatal error.
ver=1.3.25.0.private;lang=en;id=;is_machine=1;upload=0;minidump=C:\Program Files (x86)\globalUpdate\CrashReports\eb8b4b8b-db4f-44df-8c7b-42655e9fc5c9.dmp
Error: (10/03/2014 08:10:16 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 10530
Error: (10/03/2014 08:10:16 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 10530
Error: (10/03/2014 08:10:16 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (10/03/2014 08:10:11 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 6334
Error: (10/03/2014 08:10:11 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 6334
System errors:
=============
Error: (10/04/2014 09:43:05 AM) (Source: NETLOGON) (EventID: 5719) (User: )
Description: Der Computer konnte eine sichere Sitzung mit einem
Domänencontroller in der Domäne HOME aufgrund der folgenden
Ursache nicht einrichten:
%%1311
Dies kann zu Authentifizierungsproblemen führen. Stellen
Sie sicher, dass der Computer mit dem Netzwerk verbunden ist.
Wenden Sie sich an den Domänenadministrator, wenn das Problem
weiterhin besteht.
ZUSÄTZLICHE INFORMATIONEN
Wenn dieser Computer ein Domänencontroller der bestimmten
Domäne ist, wird eine sichere Sitzung zum primären
Domänencontrolleremulator in der bestimmten Domäne eingerichtet.
Andernfalls richtet dieser Computer eine sichere Sitzung zu
einem beliebigen Domänencontroller in der bestimmten Domäne ein.
Error: (10/03/2014 11:49:16 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: {577975B8-C40E-43E6-B0DE-4C6B44088B52}
Error: (10/03/2014 08:09:58 PM) (Source: Microsoft-Windows-GroupPolicy) (EventID: 1129) (User: NT-AUTORITÄT)
Description: Bei der Verarbeitung der Gruppenrichtlinie ist aufgrund fehlender Netzwerkkonnektivität mit einem Domänencontroller ein Fehler aufgetreten. Dies kann eine vorübergehende Bedingung sein. Es wird eine Erfolgsmeldung generiert, wenn die Verbindung des Computers mit dem Domänencontroller wiederhergestellt wurde und wenn die Gruppenrichtlinie erfolgreich verarbeitet wurde. Falls für mehrere Stunden keine Erfolgsmeldung angezeigt wird, wenden Sie sich an den Administrator.
Error: (10/03/2014 00:01:26 PM) (Source: NETLOGON) (EventID: 5719) (User: )
Description: Der Computer konnte eine sichere Sitzung mit einem
Domänencontroller in der Domäne HOME aufgrund der folgenden
Ursache nicht einrichten:
%%1311
Dies kann zu Authentifizierungsproblemen führen. Stellen
Sie sicher, dass der Computer mit dem Netzwerk verbunden ist.
Wenden Sie sich an den Domänenadministrator, wenn das Problem
weiterhin besteht.
ZUSÄTZLICHE INFORMATIONEN
Wenn dieser Computer ein Domänencontroller der bestimmten
Domäne ist, wird eine sichere Sitzung zum primären
Domänencontrolleremulator in der bestimmten Domäne eingerichtet.
Andernfalls richtet dieser Computer eine sichere Sitzung zu
einem beliebigen Domänencontroller in der bestimmten Domäne ein.
Error: (10/03/2014 00:01:14 PM) (Source: Microsoft-Windows-GroupPolicy) (EventID: 1129) (User: HOME)
Description: Bei der Verarbeitung der Gruppenrichtlinie ist aufgrund fehlender Netzwerkkonnektivität mit einem Domänencontroller ein Fehler aufgetreten. Dies kann eine vorübergehende Bedingung sein. Es wird eine Erfolgsmeldung generiert, wenn die Verbindung des Computers mit dem Domänencontroller wiederhergestellt wurde und wenn die Gruppenrichtlinie erfolgreich verarbeitet wurde. Falls für mehrere Stunden keine Erfolgsmeldung angezeigt wird, wenden Sie sich an den Administrator.
Error: (10/02/2014 11:51:08 PM) (Source: NETLOGON) (EventID: 5719) (User: )
Description: Der Computer konnte eine sichere Sitzung mit einem
Domänencontroller in der Domäne HOME aufgrund der folgenden
Ursache nicht einrichten:
%%1311
Dies kann zu Authentifizierungsproblemen führen. Stellen
Sie sicher, dass der Computer mit dem Netzwerk verbunden ist.
Wenden Sie sich an den Domänenadministrator, wenn das Problem
weiterhin besteht.
ZUSÄTZLICHE INFORMATIONEN
Wenn dieser Computer ein Domänencontroller der bestimmten
Domäne ist, wird eine sichere Sitzung zum primären
Domänencontrolleremulator in der bestimmten Domäne eingerichtet.
Andernfalls richtet dieser Computer eine sichere Sitzung zu
einem beliebigen Domänencontroller in der bestimmten Domäne ein.
Error: (10/02/2014 05:54:52 PM) (Source: NETLOGON) (EventID: 5719) (User: )
Description: Der Computer konnte eine sichere Sitzung mit einem
Domänencontroller in der Domäne HOME aufgrund der folgenden
Ursache nicht einrichten:
%%1311
Dies kann zu Authentifizierungsproblemen führen. Stellen
Sie sicher, dass der Computer mit dem Netzwerk verbunden ist.
Wenden Sie sich an den Domänenadministrator, wenn das Problem
weiterhin besteht.
ZUSÄTZLICHE INFORMATIONEN
Wenn dieser Computer ein Domänencontroller der bestimmten
Domäne ist, wird eine sichere Sitzung zum primären
Domänencontrolleremulator in der bestimmten Domäne eingerichtet.
Andernfalls richtet dieser Computer eine sichere Sitzung zu
einem beliebigen Domänencontroller in der bestimmten Domäne ein.
Error: (10/02/2014 03:17:49 PM) (Source: Microsoft-Windows-GroupPolicy) (EventID: 1129) (User: NT-AUTORITÄT)
Description: Bei der Verarbeitung der Gruppenrichtlinie ist aufgrund fehlender Netzwerkkonnektivität mit einem Domänencontroller ein Fehler aufgetreten. Dies kann eine vorübergehende Bedingung sein. Es wird eine Erfolgsmeldung generiert, wenn die Verbindung des Computers mit dem Domänencontroller wiederhergestellt wurde und wenn die Gruppenrichtlinie erfolgreich verarbeitet wurde. Falls für mehrere Stunden keine Erfolgsmeldung angezeigt wird, wenden Sie sich an den Administrator.
Error: (10/02/2014 08:57:03 AM) (Source: Microsoft-Windows-GroupPolicy) (EventID: 1129) (User: HOME)
Description: Bei der Verarbeitung der Gruppenrichtlinie ist aufgrund fehlender Netzwerkkonnektivität mit einem Domänencontroller ein Fehler aufgetreten. Dies kann eine vorübergehende Bedingung sein. Es wird eine Erfolgsmeldung generiert, wenn die Verbindung des Computers mit dem Domänencontroller wiederhergestellt wurde und wenn die Gruppenrichtlinie erfolgreich verarbeitet wurde. Falls für mehrere Stunden keine Erfolgsmeldung angezeigt wird, wenden Sie sich an den Administrator.
Error: (10/02/2014 08:55:21 AM) (Source: Microsoft-Windows-GroupPolicy) (EventID: 1055) (User: NT-AUTORITÄT)
Description: Fehler bei der Verarbeitung der Gruppenrichtlinie. Der Computername konnte nicht aufgelöst werden. Dies kann mindestens eine der folgenden Ursachen haben:
a) Fehler bei der Namensauflösung mit dem aktuellen Domänencontroller.
b) Active Directory-Replikationswartezeit (ein auf einem anderen Domänencontroller erstelltes Konto hat nicht auf dem aktuellen Domänencontroller repliziert).
Microsoft Office Sessions:
=========================
Error: (10/04/2014 09:33:34 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: GoogleUpdate.exe1.2.183.214b95e661ntdll.dll6.1.7601.18247521ea8e7c0000005000223e0155401cfdfa4bcf26333C:\Users\michael\AppData\Local\Google\Update\GoogleUpdate.exeC:\Windows\SysWOW64\ntdll.dllbed59be9-4b98-11e4-93a3-5404a615f9bf
Error: (10/04/2014 00:00:34 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1763
Error: (10/04/2014 00:00:34 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 1763
Error: (10/04/2014 00:00:34 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (10/03/2014 11:49:38 PM) (Source: globalUpdate Update) (EventID: 1) (User: NT-AUTORITÄT)
Description: globalUpdate Update has encountered a fatal error.
ver=1.3.25.0.private;lang=en;id=;is_machine=1;upload=0;minidump=C:\Program Files (x86)\globalUpdate\CrashReports\eb8b4b8b-db4f-44df-8c7b-42655e9fc5c9.dmp
Error: (10/03/2014 08:10:16 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 10530
Error: (10/03/2014 08:10:16 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 10530
Error: (10/03/2014 08:10:16 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (10/03/2014 08:10:11 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 6334
Error: (10/03/2014 08:10:11 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 6334
==================== Memory info ===========================
Processor: Intel(R) Pentium(R) CPU B940 @ 2.00GHz
Percentage of memory in use: 41%
Total physical RAM: 6054.7 MB
Available physical RAM: 3533.23 MB
Total Pagefile: 12107.58 MB
Available Pagefile: 9001.74 MB
Total Virtual: 8192 MB
Available Virtual: 8191.83 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:596.07 GB) (Free:491.49 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 596.2 GB) (Disk ID: AA9693FE)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=596.1 GB) - (Type=07 NTFS)
==================== End Of Log ============================ |