Medion 1 | 06.02.2015 16:37 | FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 05-02-2015
Ran by Wolfgang (administrator) on WOLFGANG-PC on 06-02-2015 16:26:49
Running from D:\DNLDS
Loaded Profiles: Wolfgang (Available profiles: Wolfgang)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AMD) C:\Windows\System32\atieclxx.exe
(ABBYY) C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
(ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
() C:\Program Files (x86)\Adobe\Photoshop Elements 3.0\PhotoshopElementsFileAgent.exe
() C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe
() C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.25.11\GoogleCrashHandler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.25.11\GoogleCrashHandler64.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Nitro PDF Software) C:\Program Files\Common Files\Nitro\Reader\3.0\NitroPDFReaderDriverService3x64.exe
(Steganos Software GmbH) C:\Program Files (x86)\OkayFreedom\OkayFreedomService.exe
() C:\Program Files (x86)\Adobe\Photoshop Elements 3.0\PhotoshopElementsDeviceConnect.exe
(Protexis Inc.) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
() C:\Program Files (x86)\watchmi\TvdService.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(CyberLink) C:\Program Files (x86)\CyberLink\PowerRecover\Reminder.exe
(CANON INC.) C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Samsung) C:\Program Files (x86)\Samsung\Kies\Kies.exe
() C:\Program Files (x86)\Monosnap\Monosnap.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
(CANON INC.) C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
() C:\Program Files (x86)\DSL Soforthilfe\DSL_Soforthilfe.exe
(1und1 Mail und Media GmbH) C:\Program Files (x86)\WEB.DE MailCheck\IE\WEB.DE_MailCheck_Broker.exe
(ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
() C:\Program Files (x86)\watchmi\TvdTray.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Microsoft Corporation) C:\Windows\splwow64.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Farbar) D:\DNLDS\FRST64(1).exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11774568 2011-01-13] (Realtek Semiconductor)
HKLM\...\Run: [MedionReminder] => C:\Program Files (x86)\CyberLink\PowerRecover\Reminder.exe [443688 2011-03-12] (CyberLink)
HKLM\...\Run: [CanonMyPrinter] => C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2726728 2010-03-25] (CANON INC.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [472992 2013-03-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [CLMLServer] => C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [103720 2009-11-02] (CyberLink)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [283160 2010-11-06] (Intel Corporation)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-01-27] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [ArcSoft Connection Service] => C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [207424 2010-10-27] (ArcSoft Inc.)
HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [976832 2009-12-17] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1021128 2014-11-20] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [KiesTrayAgent] => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [311152 2013-09-04] (Samsung Electronics Co., Ltd.)
HKLM-x32\...\Run: [CanonSolutionMenuEx] => C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE [1185112 2010-04-02] (CANON INC.)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227112 2015-01-23] (AVAST Software)
HKLM-x32\...\Run: [DSL Soforthilfe] => C:\Program Files (x86)\DSL Soforthilfe\DSL_Soforthilfe.exe [20585888 2013-11-21] ()
HKLM-x32\...\Run: [MailCheck IE Broker] => C:\Program Files (x86)\WEB.DE MailCheck\IE\WEB.DE_MailCheck_Broker.exe [2135104 2014-11-17] (1und1 Mail und Media GmbH)
HKLM\...\RunOnce: [MedionReminder] => C:\Program Files (x86)\CyberLink\PowerRecover\Reminder.exe [443688 2011-03-12] (CyberLink)
HKU\S-1-5-21-1088896883-4214421238-3645177641-1000\...\Run: [KiesPreload] => C:\Program Files (x86)\Samsung\Kies\Kies.exe [1564528 2013-09-04] (Samsung)
HKU\S-1-5-21-1088896883-4214421238-3645177641-1000\...\Run: [KiesPDLR] => C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [844656 2013-09-04] (Samsung)
HKU\S-1-5-21-1088896883-4214421238-3645177641-1000\...\Run: [Monosnap] => C:\Program Files (x86)\Monosnap\Monosnap.exe [1428992 2014-11-14] ()
HKU\S-1-5-21-1088896883-4214421238-3645177641-1000\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-1088896883-4214421238-3645177641-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7404312 2015-01-20] (Piriform Ltd)
HKU\S-1-5-21-1088896883-4214421238-3645177641-1000\...\RunOnce: [Uninstall C:\Users\Wolfgang\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64] => C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Wolfgang\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64"
HKU\S-1-5-21-1088896883-4214421238-3645177641-1000\...\MountPoints2: {15bf79da-6311-11e2-8d1b-8c89a51a8933} - I:\autorun.exe
HKU\S-1-5-21-1088896883-4214421238-3645177641-1000\...\MountPoints2: {2417e813-baf0-11e2-9bda-8c89a51a8933} - F:\autorun.exe
HKU\S-1-5-21-1088896883-4214421238-3645177641-1000\...\MountPoints2: {44463f28-eeae-11e1-a902-8c89a51a8933} - F:\autorun.exe
HKU\S-1-5-21-1088896883-4214421238-3645177641-1000\...\MountPoints2: {8a0b200e-fe15-11e3-8bf1-a7cc15f5d785} - F:\autorun.exe
HKU\S-1-5-21-1088896883-4214421238-3645177641-1000\...\MountPoints2: {e17428ca-d53e-11e1-9ded-8c89a51a8933} - F:\autorun.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk
ShortcutTarget: Adobe Gamma Loader.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\watchmi tray.lnk
ShortcutTarget: watchmi tray.lnk -> C:\Windows\Installer\{AA4D1C5E-116A-4FF4-AA91-28F526868203}\SHCT_TRAY_PROGRAMG_A10D8603999C4E9488776EF2533C58C9.exe (Acresso Software Inc.)
Startup: C:\Users\Wolfgang\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma.lnk
ShortcutTarget: Adobe Gamma.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-1088896883-4214421238-3645177641-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = https://de.yahoo.com/?fr=hp-avast&type=avastbcl
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = https://de.search.yahoo.com/yhs/search?type=avastbcl&hspart=avast&hsimp=yhs-001&p={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-1088896883-4214421238-3645177641-1000\Software\Microsoft\Internet Explorer\Main,Search Page = https://de.search.yahoo.com/yhs/search?type=avastbcl&hspart=avast&hsimp=yhs-001&p={searchTerms}
HKU\S-1-5-21-1088896883-4214421238-3645177641-1000\Software\Microsoft\Internet Explorer\Main,Start Page = https://de.yahoo.com/?fr=hp-avast&type=avastbcl
HKU\S-1-5-21-1088896883-4214421238-3645177641-1000\Software\Microsoft\Internet Explorer\Main,Search Bar = https://de.yahoo.com/?fr=hp-avast&type=avastbcl
SearchScopes: HKLM-x32 -> {9CB96984-43C3-4D44-90EF-01466EFCF7BB} URL = https://de.search.yahoo.com/yhs/search?type=avastbcl&hspart=avast&hsimp=yhs-001&p={searchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1088896883-4214421238-3645177641-1000 -> {03F431D3-2B99-4349-B766-A819127A16F6} URL = hxxp://go.web.de/tb/ie_searchplugin/?su={searchTerms}
SearchScopes: HKU\S-1-5-21-1088896883-4214421238-3645177641-1000 -> {10C03EAB-448B-4495-9BCE-EB3E669A7BD8} URL = hxxp://go.1und1.de/tb/ie_searchplugin/?su={searchTerms}
SearchScopes: HKU\S-1-5-21-1088896883-4214421238-3645177641-1000 -> {14488AF5-B59F-4E0B-85DC-C57D792B6B3A} URL = hxxp://search.gmx.com/web?q={searchTerms}&origin=tb_splugin_ie
SearchScopes: HKU\S-1-5-21-1088896883-4214421238-3645177641-1000 -> {B36CC56E-B20B-402D-A651-9166CB3CD60C} URL = hxxp://go.gmx.net/tb/ie_searchplugin/?su={searchTerms}
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: No Name -> {0D778FDC-FAD7-4B1D-AB88-7A76A562D65C} -> No File
BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
Toolbar: HKU\S-1-5-21-1088896883-4214421238-3645177641-1000 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Toolbar: HKU\S-1-5-21-1088896883-4214421238-3645177641-1000 -> No Name - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - No File
DPF: HKLM-x32 {233C1507-6A77-46A4-9443-F871F945D258} hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{432B0AD0-0F3B-475E-B7E1-8BC6184AD56A}: [NameServer] 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1
FireFox:
========
FF ProfilePath: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default
FF DefaultSearchEngine: Yahoo
FF DefaultSearchEngine.US:
FF SearchEngineOrder.2: Google
FF SearchEngineOrder.US.1:
FF Homepage: hxxp://community.hide.io/threads/mitgliedschaft-bei-hide-io.15/
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll ()
FF Plugin: @java.com/DTPlugin,version=10.15.2 -> C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.0.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1202122.dll (Adobe Systems, Inc.)
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.)
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nitropdf.com/NitroPDF -> C:\Program Files (x86)\Nitro\Reader 3\npnitromozilla.dll (Nitro PDF)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems)
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\firefox-add-ons.undefined-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\firefox-add-ons.undefined-2cu3-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\firefox-add-ons.undefined-2cu3.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\firefox-add-ons.undefined-2eto-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\firefox-add-ons.undefined-2eto.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\firefox-add-ons.undefined-2peg-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\firefox-add-ons.undefined-2peg.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\firefox-add-ons.undefined-8623-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\firefox-add-ons.undefined-8623.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\firefox-add-ons.undefined-8dvo-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\firefox-add-ons.undefined-8dvo.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\firefox-add-ons.undefined-q3qm-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\firefox-add-ons.undefined-q3qm.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\firefox-add-ons.undefined.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-149o-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-149o.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-33el-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-33el.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-9kzf-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-9kzf.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-9r1t-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-9r1t.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-byjf-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-byjf.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-d2d3-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-d2d3.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-jnsd-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-jnsd.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-jpy1-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-jpy1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-khzg-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-khzg.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-kt0y-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-kt0y.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-ns95-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-ns95.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-q1j8-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-q1j8.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-qk29-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-qk29.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-s9mr-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-s9mr.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-slsh-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-slsh.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-t5yr-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-t5yr.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-t9rm-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-t9rm.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-uu6g-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined-uu6g.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-default.undefined.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-images.undefined-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-images.undefined.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-maps.undefined-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\google-maps.undefined.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\googletranslate.undefined-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\googletranslate.undefined-f9dn-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\googletranslate.undefined-f9dn.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\googletranslate.undefined.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\privatelee-https.undefined-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\privatelee-https.undefined.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\youtube.undefined-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\youtube.undefined-453n-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\youtube.undefined-453n.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\youtube.undefined-axzd-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\youtube.undefined-axzd.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\youtube.undefined-bq1b-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\youtube.undefined-bq1b.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\youtube.undefined-nwk0-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\youtube.undefined-nwk0.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\youtube.undefined-otfv-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\youtube.undefined-otfv.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\youtube.undefined-poxt-1.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\youtube.undefined-poxt.undefined
FF SearchPlugin: C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\searchplugins\youtube.undefined.undefined
FF Extension: 20-20 3D Viewer - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\2020Player@2020Technologies.com [2014-03-03]
FF Extension: QuickFox Notes - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\amin.eft_bmnotes@gmail.com [2014-03-03]
FF Extension: Cliqz Beta - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\cliqz@cliqz.com [2015-02-05]
FF Extension: Instair - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\contact@instair.net [2015-02-05]
FF Extension: Wörterbuch Deutsch (de-CH), Hunspell-unterstützt - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\de_CH@dicts.j3e.de [2014-03-03]
FF Extension: Wörterbuch Deutsch (de-DE), Hunspell-unterstützt - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\de_DE@dicts.j3e.de [2014-03-03]
FF Extension: DoNotTrackMe - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\donottrackplus@abine.com [2014-03-03]
FF Extension: Custom Toolbar Buttons - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\f4c35feb3cbfaaca8f8e85956790ed3e@button.codefisher.org [2014-03-03]
FF Extension: HTTPS-Everywhere - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\https-everywhere@eff.org [2014-03-03]
FF Extension: ProxTube - Unblock YouTube - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\ich@maltegoetz.de [2014-03-03]
FF Extension: Locationbar² - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\locationbar2@design-noir.de [2014-03-03]
FF Extension: Forecastfox - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{0538E3E3-7E9B-4d49-8831-A227C80A7AD3} [2014-03-03]
FF Extension: Autocopy - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{0FED7D55-65D4-47b6-A6DE-9A4ADB55355F} [2014-03-03]
FF Extension: CountdownClock - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{19D3B002-1AD1-4a69-A5B3-AA98773DBB86} [2014-03-03]
FF Extension: Googlepedia - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{1ABADB6E-DC4B-11DA-9F70-791A9CD9513E} [2014-03-03]
FF Extension: Nuke Anything Enhanced - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{1ced4832-f06e-413f-aa14-9eb63ad40ace} [2014-03-03]
FF Extension: Microsoft .NET Framework Assistant - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b}(2) [2014-03-03]
FF Extension: Organize Status Bar - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{35106bca-6c78-48c7-ac28-56df30b51d2c} [2014-03-03]
FF Extension: InfoLister - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{3f0da09b-c1ab-40c5-8d7f-53f475ac3fe8} [2015-02-05]
FF Extension: Favicon Picker 2 - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{446c03e0-2c35-11db-a98b-0800200c9a66} [2014-03-03]
FF Extension: Forecastbar Enhanced [de] - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{4526df28-5f29-4e21-bd59-b6c549073dde}(2) [2014-03-03]
FF Extension: SmoothWheel (mozdev.org) - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{5F590AA2-1221-4113-A6F4-A4BB62414FAC} [2014-03-03]
FF Extension: SmoothWheel (mozdev.org) - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{5F590AA2-1221-4113-A6F4-A4BB62414FAC}(2) [2014-03-03]
FF Extension: NoScript - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}(2) [2014-03-03]
FF Extension: External Application Buttons [de] - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{8ea2f18c-4168-4331-95b8-f7f30c253612} [2014-03-03]
FF Extension: DSL Soforthilfe - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{95E05177-EA09-4386-8B79-FEB1EAC063E6} [2014-09-12]
FF Extension: Update Notifier - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{95f24680-9e31-11da-a746-0800200c9a66} [2014-03-03]
FF Extension: WOT - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2014-03-03]
FF Extension: ReminderFox - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{ada4b710-8346-4b82-8199-5de2b400a6ae} [2014-03-03]
FF Extension: DownloadHelper - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2014-09-09]
FF Extension: CSHelper - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{d91a2be6-3b56-4dfb-97f5-5e48fe3ed473} [2014-03-03]
FF Extension: Add to Search Bar - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\add-to-searchbox@maltekraus.de.xpi [2014-03-03]
FF Extension: Addon List Dumper (restartless) - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\addonListDumper@jetpack.xpi [2014-09-13]
FF Extension: Add to Amazon Wish List Button - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\amznUWL2@amazon.com.xpi [2014-03-03]
FF Extension: Bookmark Rater - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\bookmarkrater@bookmarkrater.com.xpi [2014-03-03]
FF Extension: Personal Menu - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\CompactMenuCE@Merci.chao.xpi [2014-03-03]
FF Extension: Add-on Compatibility Reporter - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\compatibility@addons.mozilla.org.xpi [2014-03-03]
FF Extension: Element Hiding Helper for Adblock Plus - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\elemhidehelper@adblockplus.org.xpi [2014-03-03]
FF Extension: Firebug - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\firebug@software.joehewitt.com.xpi [2015-02-03]
FF Extension: Wiktionary and Google Translate - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\googledictionary@toptip.ca.xpi [2014-03-03]
FF Extension: Silvermel - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\silvermel@pardal.de.xpi [2014-03-03]
FF Extension: Silvermel and Charamel XT - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\silvermelxt@pardal.de.xpi [2014-03-03]
FF Extension: Smiley Xtra - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\smxtra5@smileyxtra.co.uk.xpi [2014-03-03]
FF Extension: WEB.DE MailCheck - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\toolbar@web.de.xpi [2014-03-03]
FF Extension: Google Translator for Firefox - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\translator@zoli.bod.xpi [2014-09-09]
FF Extension: Print/Print Preview - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{19EB90DC-A456-458b-8AAC-616D91AAFCE1}.xpi [2014-03-03]
FF Extension: RefControl - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{455D905A-D37C-4643-A9E2-F6FEFAA0424A}.xpi [2014-03-03]
FF Extension: Stylish - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi [2014-03-03]
FF Extension: Charamel - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{961408A3-C970-4577-970A-D97C29839A67}.xpi [2014-10-12]
FF Extension: MR Tech Toolkit - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{9669CC8F-B388-42FE-86F4-CB5E7F5A8BDC}.xpi [2014-03-03]
FF Extension: Quitomzilla - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{A154CEEC-79EA-48a8-AD27-BEC22AF360F8}.xpi [2014-03-03]
FF Extension: Bookmark Duplicate Detector - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{ba243cb0-b824-4a26-9418-73ee795d9b9d}.xpi [2014-03-03]
FF Extension: Update Scanner - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{c07d1a49-9894-49ff-a594-38960ede8fb9}.xpi [2014-03-03]
FF Extension: CoolPreviews - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{CE6E6E3B-84DD-4cac-9F63-8D2AE4F30A4B}.xpi [2014-03-03]
FF Extension: Adblock Plus - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-03-03]
FF Extension: BetterPrivacy - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{d40f5e7b-d2cf-4856-b441-cc613eeffbe3}.xpi [2014-03-03]
FF Extension: Download Statusbar - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}.xpi [2014-03-03]
FF Extension: ImageTweak - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{DB2EA31C-58F5-48b7-8D60-CB0739257904}.xpi [2014-03-03]
FF Extension: OkayFreedom - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{DB981CCA-088E-4731-A4A2-2FE218703C0E}.xpi [2014-03-03]
FF Extension: Greasemonkey - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2014-03-03]
FF Extension: SearchPreview - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\Extensions\{EF522540-89F5-46b9-B6FE-1829E2B572C6}.xpi [2014-03-03]
FF HKLM-x32\...\Firefox\Extensions: [virtualKeyboard@kaspersky.ru] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2011\FFExt\virtualKeyboard@kaspersky.ru
FF HKLM-x32\...\Firefox\Extensions: [KavAntiBanner@Kaspersky.ru] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2011\FFExt\KavAntiBanner@kaspersky.ru
FF HKLM-x32\...\Firefox\Extensions: [linkfilter@kaspersky.ru] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2011\FFExt\linkfilter@kaspersky.ru
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2012-10-22]
FF HKU\S-1-5-21-1088896883-4214421238-3645177641-1000\...\Firefox\Extensions: [cliqz@cliqz.com] - C:\Users\Wolfgang\AppData\Roaming\Mozilla\Firefox\Profiles\j0nzqup9.default\extensions\cliqz@cliqz.com
Chrome:
=======
CHR HomePage: Default -> https://isearch.avg.com/?cid={227EF9A7-C26E-4774-B472-84E3D2F1D7C3}&mid=032b8257ca2947d0b50831f0e3d3c3f3-d5c081349fea11a6a4f6b71ad8fb1ae17d389b3e&lang=de&ds=od011&pr=sa&d=2012-07-22 18:33:00&v=12.1.0.20&sap=hp
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\ppGoogleNaClPluginChrome.dll No File
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\pdf.dll ()
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\gcswf32.dll No File
CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Java Deployment Toolkit 6.0.240.7) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll No File
CHR Plugin: (Java(TM) Platform SE 6 U24) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll No File
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll No File
CHR Plugin: (Silverlight Plug-In) - C:\Program Files (x86)\Microsoft Silverlight\4.0.60129.0\npctrl.dll No File
CHR Plugin: (Windows Live™ Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (Shockwave for Director) - C:\Windows\system32\Adobe\Director\np32dsw.dll No File
CHR Profile: C:\Users\Wolfgang\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Monosnap) - C:\Users\Wolfgang\AppData\Local\Google\Chrome\User Data\Default\Extensions\aciopjigkkgbpbijaoialognoidodden [2013-02-07]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Wolfgang\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-09-09]
CHR Extension: (News Reader (von Google)) - C:\Users\Wolfgang\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhhcdlggicnjoobiphdkdgmblbknkjjp [2012-07-27]
CHR Extension: (WOT) - C:\Users\Wolfgang\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp [2012-07-27]
CHR Extension: (Adblock Plus) - C:\Users\Wolfgang\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2012-08-06]
CHR Extension: (Notizblock) - C:\Users\Wolfgang\AppData\Local\Google\Chrome\User Data\Default\Extensions\efgpgbcidmnhkoeceikdacelidndbfgl [2013-04-14]
CHR Extension: (DoNotTrackMe: Online Privacy Protection) - C:\Users\Wolfgang\AppData\Local\Google\Chrome\User Data\Default\Extensions\epanfjkfahimkgomnigadpkobaefekcd [2013-03-28]
CHR Extension: (Notizblock) - C:\Users\Wolfgang\AppData\Local\Google\Chrome\User Data\Default\Extensions\ephkoffkhkiignlofebbfhhahddofkmg [2012-08-26]
CHR Extension: (HTTPS Everywhere) - C:\Users\Wolfgang\AppData\Local\Google\Chrome\User Data\Default\Extensions\gcbommkclmclpchllfjekcdonpmejbdp [2013-03-28]
CHR Extension: (avast! Online Security) - C:\Users\Wolfgang\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2013-05-27]
CHR Extension: (Eye Dropper) - C:\Users\Wolfgang\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmdcmlfkchdmnmnmheododdhjedfccka [2012-08-26]
CHR Extension: (Referer Control) - C:\Users\Wolfgang\AppData\Local\Google\Chrome\User Data\Default\Extensions\hnkcfpcejkafcihlgbojoidoihckciin [2013-03-28]
CHR Extension: (Super Full Feeds for Google Reader™) - C:\Users\Wolfgang\AppData\Local\Google\Chrome\User Data\Default\Extensions\khbjahpecnkenngkidhioicnfpakihgo [2013-04-14]
CHR Extension: (Erweiterung \) - C:\Users\Wolfgang\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlbjncdgjeocebhnmkbbbdekmmmcbfjd [2013-04-14]
CHR Extension: (Google Wallet) - C:\Users\Wolfgang\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-23]
CHR Extension: (Hover Zoom) - C:\Users\Wolfgang\AppData\Local\Google\Chrome\User Data\Default\Extensions\nonjdcjchghhkdoolnlbekcfllmednbl [2012-08-26]
CHR Extension: (RSS Feed Reader) - C:\Users\Wolfgang\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnjaodmkngahhkoihejjehlcdlnohgmp [2013-04-14]
CHR HKLM-x32\...\Chrome\Extension: [caodggjhipefhiblmgbchfkehoofabbh] - C:\Program Files\Instair\Instair.crx [2015-02-05]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-12-18]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY)
R2 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
S3 Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [72704 2013-02-13] (Adobe Systems) [File not signed]
R2 AdobeActiveFileMonitor; C:\Program Files (x86)\Adobe\Photoshop Elements 3.0\PhotoshopElementsFileAgent.exe [98304 2004-10-20] () [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-12-18] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4012248 2014-12-18] (Avast Software)
R2 HiSuiteOuc64.exe; C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe [137024 2014-04-09] ()
R2 HuaweiHiSuiteService64.exe; C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe [218432 2014-04-09] ()
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [969016 2014-11-21] (Malwarebytes Corporation)
R2 NitroReaderDriverReadSpool3; C:\Program Files\Common Files\Nitro\Reader\3.0\NitroPDFReaderDriverService3x64.exe [230416 2013-03-26] (Nitro PDF Software)
R2 OkayFreedom VPN Starter Service; C:\Program Files (x86)\OkayFreedom\OkayFreedomService.exe [320440 2014-09-11] (Steganos Software GmbH)
R2 PhotoshopElementsDeviceConnect; C:\Program Files (x86)\Adobe\Photoshop Elements 3.0\PhotoshopElementsDeviceConnect.exe [118784 2004-10-20] () [File not signed]
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 watchmi; C:\Program Files (x86)\watchmi\TvdService.exe [62464 2010-12-06] () [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S3 androidusb; C:\Windows\System32\Drivers\androidusb.sys [32768 2010-04-29] (Google Inc)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-12-18] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2014-12-18] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-12-18] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-12-18] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2014-12-18] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2014-12-18] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2014-12-18] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2014-12-18] ()
S3 FsUsbExDisk; C:\Windows\SysWOW64\FsUsbExDisk.SYS [37344 2013-05-22] () [File not signed]
U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2011-10-24] (Huawei Technologies Co., Ltd.)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-11-21] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [129752 2015-02-06] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2014-11-21] (Malwarebytes Corporation)
S3 pwdrvio; C:\Windows\system32\pwdrvio.sys [19032 2013-03-07] ()
S3 pwdspio; C:\Windows\system32\pwdspio.sys [9584 2013-03-07] ()
S3 usbrndis6; C:\Windows\System32\DRIVERS\usb80236.sys [19968 2013-02-12] (Microsoft Corporation)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [271752 2014-12-18] (Avast Software)
S3 VBoxUSB; C:\Windows\System32\Drivers\VBoxUSB.sys [106256 2013-04-12] (Oracle Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-02-06 16:13 - 2015-02-06 16:27 - 00000000 ____D () C:\FRST
2015-02-06 15:16 - 2015-02-06 15:16 - 00310499 _____ () C:\Users\Wolfgang\AppData\Local\census.cache
2015-02-06 15:16 - 2015-02-06 15:16 - 00129466 _____ () C:\Users\Wolfgang\AppData\Local\ars.cache
2015-02-06 14:55 - 2015-02-06 14:55 - 00000036 _____ () C:\Users\Wolfgang\AppData\Local\housecall.guid.cache
2015-02-06 12:10 - 2015-02-06 12:10 - 00000197 _____ () C:\Windows\system32\2015-02-06-11-10-25.007-AvastVBoxSVC.exe-1368.log
2015-02-06 12:05 - 2015-02-06 12:05 - 00000528 _____ () C:\Windows\PFRO.log
2015-02-06 00:19 - 2015-02-06 00:19 - 00000000 ____D () C:\Program Files (x86)\ESET
2015-02-06 00:07 - 2015-02-06 00:07 - 00000197 _____ () C:\Windows\system32\2015-02-05-23-07-27.045-AvastVBoxSVC.exe-5060.log
2015-02-06 00:05 - 2015-02-06 12:05 - 00000112 _____ () C:\Windows\setupact.log
2015-02-06 00:05 - 2015-02-06 00:05 - 00000000 _____ () C:\Windows\setuperr.log
2015-02-05 23:53 - 2015-02-06 00:00 - 00000000 ____D () C:\Users\Wolfgang\Desktop\ESEST Online Scanner
2015-02-05 20:09 - 2015-02-05 20:09 - 00406144 _____ (Bleeping Computer, LLC) C:\Users\Wolfgang\Downloads\sc-cleaner [1].exe
2015-02-05 20:09 - 2015-02-05 20:09 - 00001814 _____ () C:\sc-cleaner.txt
2015-02-05 19:29 - 2015-02-05 19:29 - 00003166 _____ () C:\Windows\System32\Tasks\JetCleanLoginCheckUpdate
2015-02-05 19:29 - 2015-02-05 19:29 - 00001113 _____ () C:\Users\Public\Desktop\JetClean.lnk
2015-02-05 19:29 - 2015-02-05 19:29 - 00000000 ____D () C:\Users\Wolfgang\AppData\Roaming\Cliqz
2015-02-05 19:29 - 2015-02-05 19:29 - 00000000 ____D () C:\Users\Wolfgang\AppData\Roaming\BlueSprig
2015-02-05 19:29 - 2015-02-05 19:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JetClean
2015-02-05 19:29 - 2015-02-05 19:29 - 00000000 ____D () C:\Program Files\Instair
2015-02-05 19:29 - 2015-02-05 19:29 - 00000000 ____D () C:\Program Files (x86)\BlueSprig
2015-02-05 19:29 - 2011-05-13 11:16 - 00493056 _____ ( datenhaus GmbH) C:\Windows\SysWOW64\dhRichClient3.dll
2015-02-05 19:29 - 2011-03-25 19:42 - 00338432 _____ () C:\Windows\SysWOW64\sqlite36_engine.dll
2015-02-05 19:20 - 2015-02-05 19:20 - 00002155 _____ () C:\Users\Wolfgang\Desktop\JRT.txt
2015-02-05 18:10 - 2015-02-05 18:11 - 00000197 _____ () C:\Windows\system32\2015-02-05-17-10-58.046-AvastVBoxSVC.exe-2208.log
2015-02-05 15:57 - 2015-02-05 15:57 - 00000000 _____ () C:\autoexec.bat
2015-02-05 15:14 - 2015-02-05 15:14 - 00000197 _____ () C:\Windows\system32\2015-02-05-14-14-27.050-AvastVBoxSVC.exe-4368.log
2015-02-05 13:53 - 2015-02-05 13:53 - 00000197 _____ () C:\Windows\system32\2015-02-05-12-53-38.097-AvastVBoxSVC.exe-3628.log
2015-02-05 13:36 - 2015-02-06 12:19 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-02-05 13:36 - 2015-02-05 18:51 - 00001070 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-02-05 13:36 - 2015-02-05 18:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-02-05 13:35 - 2015-02-05 18:51 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-02-05 13:35 - 2015-02-05 13:35 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-02-05 13:35 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-02-05 13:35 - 2014-11-21 06:14 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-02-05 13:35 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-02-05 12:46 - 2015-02-05 12:47 - 00000197 _____ () C:\Windows\system32\2015-02-05-11-46-49.073-AvastVBoxSVC.exe-3352.log
2015-02-04 20:18 - 2015-02-04 20:18 - 00000197 _____ () C:\Windows\system32\2015-02-04-19-18-39.046-AvastVBoxSVC.exe-3484.log
2015-02-04 20:09 - 2015-02-04 20:09 - 03430333 _____ () C:\Users\Wolfgang\Desktop\org.adaway_2.9.2.apk
2015-02-04 20:04 - 2015-02-04 20:04 - 00000247 _____ () C:\Windows\system32\2015-02-04-19-04-44.009-aswFe.exe-4812.log
2015-02-04 20:03 - 2015-02-05 19:11 - 00000000 ____D () C:\AdwCleaner
2015-02-04 19:53 - 2015-02-04 20:04 - 00000247 _____ () C:\Windows\system32\2015-02-04-18-53-16.071-aswFe.exe-7144.log
2015-02-04 19:53 - 2015-02-04 19:53 - 00000197 _____ () C:\Windows\system32\2015-02-04-18-53-05.091-AvastVBoxSVC.exe-2428.log
2015-02-04 12:23 - 2015-02-04 12:23 - 00000247 _____ () C:\Windows\system32\2015-02-04-11-23-01.013-aswFe.exe-4432.log
2015-02-04 12:22 - 2015-02-04 12:22 - 00000197 _____ () C:\Windows\system32\2015-02-04-11-22-46.036-AvastVBoxSVC.exe-3268.log
2015-02-04 10:59 - 2015-02-04 10:59 - 00000000 __SHD () C:\Users\Wolfgang\AppData\Local\EmieBrowserModeList
2015-02-04 10:34 - 2015-02-04 10:34 - 00000247 _____ () C:\Windows\system32\2015-02-04-09-34-05.081-aswFe.exe-1412.log
2015-02-04 10:33 - 2015-02-04 10:33 - 00003272 _____ () C:\Windows\System32\Tasks\avastBCLRestartS-1-5-21-1088896883-4214421238-3645177641-1000
2015-02-04 10:33 - 2015-02-04 10:33 - 00000197 _____ () C:\Windows\system32\2015-02-04-09-33-49.019-AvastVBoxSVC.exe-4192.log
2015-02-04 10:04 - 2014-12-18 13:26 - 00364512 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2015-02-03 21:28 - 2015-02-04 10:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2015-02-03 19:41 - 2015-02-03 19:41 - 00000000 ____D () C:\Users\Wolfgang\AppData\Local\photoOptimizeHistoryDataBase
2015-02-03 19:41 - 2015-02-03 19:41 - 00000000 ____D () C:\Users\Wolfgang\AppData\Local\Ashampoo Photo Optimizer Medion
2015-02-03 19:33 - 2015-02-03 19:33 - 00000000 ____D () C:\Users\Wolfgang\AppData\Roaming\Ashampoo
2015-02-03 19:15 - 2015-02-03 19:20 - 00000000 ____D () C:\ProgramData\TuneUp Software
2015-02-03 19:15 - 2015-02-03 19:15 - 00000000 ____D () C:\Users\Wolfgang\AppData\Roaming\TuneUp Software
2015-02-03 19:15 - 2015-02-03 19:15 - 00000000 ____D () C:\Users\Wolfgang\AppData\Local\TuneUp Software
2015-02-03 19:14 - 2015-02-03 21:17 - 00000000 ____D () C:\Users\Wolfgang\AppData\Local\Lavasoft
2015-02-03 19:12 - 2015-02-03 19:12 - 00000000 ____D () C:\Users\Wolfgang\AppData\Roaming\Lavasoft
2015-02-03 19:12 - 2015-02-03 19:12 - 00000000 ____D () C:\ProgramData\Lavasoft
2015-02-03 19:03 - 2015-02-03 19:03 - 01069143 _____ () C:\Users\Wolfgang\Desktop\Sequenz_Jill.3gp
2015-02-03 17:56 - 2015-02-03 17:56 - 00000197 _____ () C:\Windows\system32\2015-02-03-16-56-32.065-AvastVBoxSVC.exe-3856.log
2015-01-26 18:25 - 2015-01-26 18:25 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-01-26 17:56 - 2015-01-26 17:56 - 00000197 _____ () C:\Windows\system32\2015-01-26-16-56-32.055-AvastVBoxSVC.exe-3996.log
2015-01-23 16:23 - 2015-01-23 16:23 - 00000197 _____ () C:\Windows\system32\2015-01-23-15-23-32.002-AvastVBoxSVC.exe-400.log
2015-01-22 19:06 - 2015-01-22 19:07 - 00000197 _____ () C:\Windows\system32\2015-01-22-18-06-59.033-AvastVBoxSVC.exe-4200.log
2015-01-20 15:00 - 2015-01-20 15:00 - 00000197 _____ () C:\Windows\system32\2015-01-20-14-00-27.030-AvastVBoxSVC.exe-4228.log
2015-01-16 16:27 - 2015-01-16 16:27 - 00000247 _____ () C:\Windows\system32\2015-01-16-15-27-19.082-aswFe.exe-5552.log
2015-01-16 15:46 - 2015-01-16 16:27 - 00000247 _____ () C:\Windows\system32\2015-01-16-14-46-01.042-aswFe.exe-1108.log
2015-01-16 15:45 - 2015-01-16 15:45 - 00000197 _____ () C:\Windows\system32\2015-01-16-14-45-32.008-AvastVBoxSVC.exe-4168.log
2015-01-16 15:13 - 2015-01-16 15:14 - 00000197 _____ () C:\Windows\system32\2015-01-16-14-13-34.047-AvastVBoxSVC.exe-3868.log
2015-01-15 22:11 - 2015-01-15 22:11 - 00000247 _____ () C:\Windows\system32\2015-01-15-21-11-10.015-aswFe.exe-3180.log
2015-01-15 21:36 - 2015-01-15 22:10 - 00000247 _____ () C:\Windows\system32\2015-01-15-20-36-02.016-aswFe.exe-3916.log
2015-01-15 21:35 - 2015-01-15 21:35 - 00000197 _____ () C:\Windows\system32\2015-01-15-20-35-36.000-AvastVBoxSVC.exe-7680.log
2015-01-15 20:56 - 2015-01-15 20:56 - 00000247 _____ () C:\Windows\system32\2015-01-15-19-56-21.005-aswFe.exe-7468.log
2015-01-15 20:56 - 2015-01-15 20:56 - 00000197 _____ () C:\Windows\system32\2015-01-15-19-56-00.000-AvastVBoxSVC.exe-7484.log
2015-01-15 14:27 - 2015-01-15 14:27 - 00000197 _____ () C:\Windows\system32\2015-01-15-13-27-24.001-AvastVBoxSVC.exe-3664.log
2015-01-15 13:34 - 2015-01-15 13:34 - 00000197 _____ () C:\Windows\system32\2015-01-15-12-34-25.012-AvastVBoxSVC.exe-3772.log
2015-01-15 12:27 - 2014-12-19 04:06 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2015-01-15 12:27 - 2014-12-19 02:46 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2015-01-15 12:27 - 2014-12-12 06:35 - 05553592 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-01-15 12:27 - 2014-12-12 06:31 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-01-15 12:27 - 2014-12-12 06:31 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-01-15 12:27 - 2014-12-12 06:31 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-01-15 12:27 - 2014-12-12 06:11 - 03971512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-01-15 12:27 - 2014-12-12 06:11 - 03916728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-01-15 12:27 - 2014-12-12 06:07 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-01-15 12:27 - 2014-12-11 18:47 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2015-01-15 12:27 - 2014-12-06 05:17 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2015-01-15 12:27 - 2014-12-06 04:50 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll
2015-01-15 12:27 - 2014-12-06 04:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
2015-01-15 12:18 - 2015-01-15 12:19 - 00000197 _____ () C:\Windows\system32\2015-01-15-11-18-52.082-AvastVBoxSVC.exe-4324.log
2015-01-10 18:00 - 2015-01-10 18:00 - 00000197 _____ () C:\Windows\system32\2015-01-10-17-00-03.039-AvastVBoxSVC.exe-3364.log
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-02-06 16:14 - 2012-07-21 22:49 - 00001110 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-02-06 15:38 - 2012-08-17 19:08 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-02-06 12:16 - 2009-07-14 05:45 - 00028128 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-02-06 12:16 - 2009-07-14 05:45 - 00028128 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-02-06 12:14 - 2012-07-21 22:49 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-02-06 12:12 - 2012-07-21 22:47 - 01423895 _____ () C:\Windows\WindowsUpdate.log
2015-02-06 12:06 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-02-06 00:08 - 2012-10-22 11:42 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2015-02-06 00:08 - 2012-07-22 20:42 - 00000000 ____D () C:\Users\Wolfgang\AppData\Local\Adobe
2015-02-05 20:47 - 2013-04-08 18:06 - 00003954 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{4BF3A173-DEB6-438F-8A25-7E8CB4E352A2}
2015-02-05 18:26 - 2012-08-04 12:58 - 00000000 ____D () C:\Users\Public\Documents\cc cleaner
2015-02-05 15:57 - 2012-07-21 22:54 - 00000000 ____D () C:\Users\Wolfgang
2015-02-05 14:38 - 2012-08-17 19:08 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-02-05 14:38 - 2012-08-02 19:07 - 00701616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-02-05 14:38 - 2012-08-02 19:07 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-02-05 13:56 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF
2015-02-05 13:48 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\tracing
2015-02-04 19:54 - 2013-01-26 01:01 - 00000000 ____D () C:\Users\Wolfgang\.VirtualBox
2015-02-04 12:23 - 2013-03-26 18:54 - 00000000 ____D () C:\Users\Wolfgang\AppData\Roaming\DVDVideoSoft
2015-02-04 10:29 - 2014-08-30 21:12 - 00000000 ____D () C:\Users\Wolfgang\Desktop\medialink
2015-02-04 10:29 - 2013-12-26 16:59 - 00000000 ___RD () C:\Users\Wolfgang\Desktop\Star S 9920 Speicherkartenkopie
2015-02-04 10:28 - 2014-02-21 19:48 - 00000000 ____D () C:\Users\Wolfgang\Desktop\ARZU
2015-02-04 10:28 - 2012-07-16 18:13 - 00000000 ____D () C:\Users\Wolfgang\Desktop\2.Stock rechts.Dorfkoppel 13
2015-02-04 10:20 - 2013-11-16 10:24 - 00000000 ____D () C:\Users\Wolfgang\Desktop\Steganos Updates
2015-02-04 10:18 - 2014-03-03 14:24 - 00000000 ____D () C:\Users\Wolfgang\Desktop\Arzu Frames vom 1.Besuch
2015-02-04 10:18 - 2013-11-10 17:10 - 00000000 ____D () C:\Users\Wolfgang\Documents\LED Lichtleiste Nov 2013. Anleitung
2015-02-04 10:18 - 2013-01-15 22:53 - 00000000 ____D () C:\Users\Wolfgang\Desktop\j0nzqup9.default
2015-02-04 10:17 - 2013-03-29 18:15 - 00000000 ____D () C:\Users\Wolfgang\Documents\HiSuite
2015-02-03 21:44 - 2013-01-18 16:44 - 00000000 ____D () C:\Users\Wolfgang\AppData\Roaming\XMedia Recode
2015-02-03 21:44 - 2013-01-18 16:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XMedia Recode
2015-02-03 21:44 - 2013-01-18 16:43 - 00000000 ____D () C:\Program Files (x86)\XMedia Recode
2015-02-03 21:44 - 2013-01-10 21:36 - 00000000 ____D () C:\Users\Wolfgang\AppData\Roaming\vlc
2015-02-03 21:44 - 2012-08-04 12:48 - 00000000 ____D () C:\Program Files\CCleaner
2015-02-03 21:44 - 2012-07-22 13:39 - 00000000 ____D () C:\Users\Wolfgang\AppData\Roaming\IrfanView
2015-02-03 21:44 - 2012-07-21 22:54 - 00000000 ____D () C:\Users\Wolfgang\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerRecover
2015-02-03 21:44 - 2011-04-19 00:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MEDION MediaPack
2015-02-03 21:44 - 2011-04-19 00:31 - 00000000 ____D () C:\Program Files (x86)\Medion MediaPack
2015-02-03 21:44 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\registration
2015-02-03 18:20 - 2012-07-26 21:20 - 01595644 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2015-02-03 18:20 - 2011-02-10 20:25 - 00699884 _____ () C:\Windows\system32\perfh007.dat
2015-02-03 18:20 - 2011-02-10 20:25 - 00149766 _____ () C:\Windows\system32\perfc007.dat
2015-02-03 18:19 - 2009-07-14 06:13 - 01595644 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-02-03 17:55 - 2013-01-15 22:53 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2015-01-22 19:30 - 2013-10-17 15:39 - 00000000 ____D () C:\ProgramData\Oracle
2015-01-22 19:14 - 2014-10-15 15:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-01-22 19:14 - 2013-10-17 15:38 - 00000000 ____D () C:\Program Files (x86)\Java
2015-01-22 19:13 - 2014-10-15 15:32 - 00272296 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2015-01-22 19:13 - 2014-10-15 15:32 - 00176552 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2015-01-22 19:13 - 2014-10-15 15:32 - 00176552 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2015-01-22 19:13 - 2014-10-15 15:32 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-01-15 14:13 - 2012-08-04 12:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2015-01-15 13:31 - 2009-07-14 06:08 - 00032632 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2015-01-15 13:31 - 2009-07-14 06:08 - 00032632 _____ () C:\Windows\Tasks\SCHEDLGU(23).TXT
2015-01-15 13:28 - 2013-07-24 16:53 - 00000000 ____D () C:\Windows\system32\MRT
2015-01-15 13:20 - 2011-02-10 21:56 - 113365784 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
==================== Files in the root of some directories =======
2013-01-24 21:29 - 2014-03-03 14:41 - 1178624 _____ (CPUID) C:\Users\Wolfgang\AppData\Roaming\siw_sdk.dll
2015-02-06 15:16 - 2015-02-06 15:16 - 0129466 _____ () C:\Users\Wolfgang\AppData\Local\ars.cache
2015-02-06 15:16 - 2015-02-06 15:16 - 0310499 _____ () C:\Users\Wolfgang\AppData\Local\census.cache
2013-01-17 16:22 - 2014-01-26 16:40 - 0009216 _____ () C:\Users\Wolfgang\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-02-06 14:55 - 2015-02-06 14:55 - 0000036 _____ () C:\Users\Wolfgang\AppData\Local\housecall.guid.cache
2014-07-15 11:18 - 2014-07-15 11:18 - 0007605 _____ () C:\Users\Wolfgang\AppData\Local\resmon.resmoncfg
Some content of TEMP:
====================
C:\Users\Wolfgang\AppData\Local\Temp\FreeAudioConverter.exe
C:\Users\Wolfgang\AppData\Local\Temp\Quarantine.exe
C:\Users\Wolfgang\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-02-05 13:03
==================== End Of Log ============================ --- --- ---
--- --- --- Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 05-02-2015
Ran by Wolfgang at 2015-02-06 16:27:25
Running from D:\DNLDS
Boot Mode: Normal
==========================================================
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 9.22 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0922-000001000000}) (Version: 9.22.00.0 - Igor Pavlov)
ABBYY FineReader 9.0 Sprint (HKLM-x32\...\ABBYY FineReader 9.0 Sprint) (Version: 9.01.513.58212 - ABBYY)
ABBYY FineReader 9.0 Sprint (x32 Version: 9.01.513.58212 - ABBYY) Hidden
Adobe After Effects CS6 (HKLM-x32\...\{4817D846-700B-474E-A31B-80892B3E92E3}) (Version: 11 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 16.0.0.245 - Adobe Systems Incorporated)
Adobe Flash Player 16 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated)
Adobe Illustrator CS2 (HKLM-x32\...\Adobe Illustrator CS2) (Version: 12.000.000 - Adobe Systems Inc.)
Adobe Illustrator CS6 (HKLM-x32\...\{4869414E-7AEA-4C8E-BE1C-8D40977FD517}) (Version: 16.0 - Adobe Systems Incorporated)
Adobe InDesign CS2 (HKLM-x32\...\Adobe InDesign CS2 - {7F4C8163-F259-49A0-A018-2857A90578BC}) (Version: 004.000.000 - Adobe Systems Incorporated)
Adobe InDesign CS6 (HKLM-x32\...\{CFB770D7-8D43-1014-922B-CC2715FADE3F}) (Version: 8.0 - Adobe Systems Incorporated)
Adobe Photoshop CS2 (HKLM-x32\...\Adobe Photoshop CS2 - {236BB7C4-4419-42FD-0407-1E257A25E34D}) (Version: 9.0 - Adobe Systems, Inc.)
Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated)
Adobe Photoshop Elements 3.0 (HKLM-x32\...\{851C67EF-068A-4060-9EF5-2E3DDCD68382}) (Version: 003.000.0000 - Adobe Systems, Inc.)
Adobe Premiere Pro CS6 (HKLM-x32\...\{7176B973-6011-43C1-AEBC-2D73FE7C6982}) (Version: 6.0 - Adobe Systems Incorporated)
Adobe Reader X (10.1.13) MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}) (Version: 10.1.13 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.0 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.0.2.122 - Adobe Systems, Inc.)
Adobe SVG Viewer 3.0 (HKLM-x32\...\Adobe SVG Viewer) (Version: 3.0 - Adobe Systems, Inc.)
ArcSoft MediaImpression 2 (HKLM-x32\...\{FB46F473-333E-4A06-A777-31C54188593E}) (Version: 2.0.14.672 - ArcSoft)
ArcSoft Scan-n-Stitch Deluxe (HKLM-x32\...\{FF8455A9-21E8-457D-AC64-510A705D53B3}) (Version: 1.1.2.27 - ArcSoft)
Ashampoo Burning Studio (HKLM-x32\...\Ashampoo Burning Studio_is1) (Version: 9.23.0 - ashampoo GmbH & Co. KG)
Ashampoo Photo Commander (HKLM-x32\...\Ashampoo Photo Commander_is1) (Version: 8.1.0 - ashampoo GmbH & Co. KG)
Ashampoo Photo Optimizer (HKLM-x32\...\Ashampoo Photo Optimizer_is1) (Version: 3.12.0 - ashampoo GmbH & Co. KG)
Ashampoo Snap (HKLM-x32\...\Ashampoo Snap_is1) (Version: 3.4.0 - ashampoo GmbH & Co. KG)
Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.10.1.0 - Asmedia Technology)
ATI Catalyst Install Manager (HKLM\...\{D587747C-370E-E29D-250C-079703113FF0}) (Version: 3.0.812.0 - ATI Technologies, Inc.)
Avast Free Antivirus (HKLM-x32\...\avast) (Version: 10.0.2208 - AVAST Software)
AVM FRITZ!Box Dokumentation (HKLM-x32\...\AVMFBox) (Version: - AVM Berlin)
AVM FRITZ!Box Druckeranschluss (HKLM-x32\...\AVMFBoxPrinter) (Version: - AVM Berlin)
bl (x32 Version: 1.0.0 - Your Company Name) Hidden
Canon Easy-PhotoPrint EX (HKLM-x32\...\Easy-PhotoPrint EX) (Version: - )
Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: - )
Canon iP4800 series Benutzerregistrierung (HKLM-x32\...\Canon iP4800 series Benutzerregistrierung) (Version: - )
Canon iP4800 series Printer Driver (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_iP4800_series) (Version: - )
Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version: - )
Canon Solution Menu EX (HKLM-x32\...\CanonSolutionMenuEX) (Version: - )
ccc-core-static (x32 Version: 2011.0126.1749.31909 - ATI) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.02 - Piriform)
CD-LabelPrint (HKLM-x32\...\MediaNavigation.CDLabelPrint) (Version: - )
Clementine (HKLM-x32\...\Clementine) (Version: 1.1.1 - Clementine)
Cliqz (HKLM-x32\...\{5A0C0737-6AFE-4DC6-A8B4-6DFE509ACD75}_is1) (Version: 0.5.55 - Cliqz.com)
ConvertHelper 2.2 (HKLM-x32\...\{27CC6AB1-E72B-4179-AF1A-EAE507EBAF51}_is1) (Version: - DownloadHelper)
Corel Graphics - Windows Shell Extension (HKLM-x32\...\_{B6BFCD02-BA0E-41A9-9C9C-6624C4BB475F}) (Version: 15.2.0.686 - Corel Corporation)
Corel Graphics - Windows Shell Extension (x32 Version: 15.2.686 - Corel Corporation) Hidden
Corel Graphics - Windows Shell Extension 64 Bit (Version: 15.2.686 - Corel Corporation) Hidden
CorelDRAW Essentials X5 - Common (x32 Version: 15.3 - Corel Corporation) Hidden
CorelDRAW Essentials X5 - Connect (x32 Version: 15.3 - Corel Corporation) Hidden
CorelDRAW Essentials X5 - Custom Data (x32 Version: 15.3 - Corel Corporation) Hidden
CorelDRAW Essentials X5 - DE (x32 Version: 15.3 - Corel Corporation) Hidden
CorelDRAW Essentials X5 - Draw (x32 Version: 15.3 - Corel Corporation) Hidden
CorelDRAW Essentials X5 - EN (x32 Version: 15.3 - Corel Corporation) Hidden
CorelDRAW Essentials X5 - ES (x32 Version: 15.3 - Corel Corporation) Hidden
CorelDRAW Essentials X5 - Extra Content (HKLM-x32\...\_{5A10CFDA-FA2B-453C-B561-AE864E62EAC8}) (Version: - Corel Corporation)
CorelDRAW Essentials X5 - Extra Content (x32 Version: 15.0 - Corel Corporation) Hidden
CorelDRAW Essentials X5 - Filters (x32 Version: 15.3 - Corel Corporation) Hidden
CorelDRAW Essentials X5 - FR (x32 Version: 15.3 - Corel Corporation) Hidden
CorelDRAW Essentials X5 - IPM (x32 Version: 15.3 - Corel Corporation) Hidden
CorelDRAW Essentials X5 - IT (x32 Version: 15.3 - Corel Corporation) Hidden
CorelDRAW Essentials X5 - PHOTO-PAINT (x32 Version: 15.3 - Corel Corporation) Hidden
CorelDRAW Essentials X5 - Redist (x32 Version: 15.0 - Corel Corporation) Hidden
CorelDRAW Essentials X5 - Setup Files (x32 Version: 15.3 - Corel Corporation) Hidden
CorelDRAW Essentials X5 - WT (x32 Version: 15.3 - Corel Corporation) Hidden
CorelDRAW Essentials X5 (HKLM-x32\...\_{EDBEBF07-F880-48FB-9AA5-0E8E71E02D83}) (Version: 15.2.0.686 - Corel Corporation)
CorelDRAW Essentials X5 (x32 Version: 15.3 - Corel Corporation) Hidden
CVE-2012-4969 (HKLM\...\{777afb2a-98e5-4f14-b455-378a925cae15}.sdb) (Version: - )
CyberLink LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.3418 - CyberLink Corp.)
CyberLink Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.3802 - CyberLink Corp.)
CyberLink PowerDVD Copy (HKLM-x32\...\InstallShield_{E3D04529-6EDB-11D8-A372-0050BAE317E1}) (Version: 1.5.1306 - CyberLink Corp.)
CyberLink PowerRecover (HKLM-x32\...\InstallShield_{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}) (Version: 5.5.3911 - CyberLink Corp.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
DSL Soforthilfe (HKLM-x32\...\DSL Soforthilfe) (Version: 1.1.0.51 - Telefónica Germany GmbH & Co. OHG)
Epson Copy Utility 3.5 (HKLM-x32\...\{AA72FB28-73B4-49E5-B6B4-E78F44BBD0AD}) (Version: 3.5.0.0 - )
Epson Event Manager (HKLM-x32\...\{FE5ED0AC-BCC8-482A-8B08-AA11D5F00152}) (Version: 2.40.0002 - SEIKO EPSON CORPORATION)
EPSON Perfection V33/V330 Handbuch (HKLM-x32\...\EPSON Perfection V33_V330 Manual) (Version: - )
EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - Seiko Epson Corporation)
ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version: - )
File Scavenger 4.0 (de) (HKLM-x32\...\QueTek File Scavenger 4.0 (de)) (Version: 4.0.6.0 - QueTek Consulting Corporation)
Fotogalerie (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Fotogalerija (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Fotoğraf Galerisi (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Fotótár (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Galeria de Fotografias do Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galería de fotos (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Galeria fotografii (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Galerie de photos (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 40.0.2214.111 - Google Inc.)
Google Earth (HKLM-x32\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
HiSuite (HKLM-x32\...\Hi Suite) (Version: 32.610.27.00.06 - Huawei Technologies Co.,Ltd)
InstantMask 1.2 (HKLM-x32\...\{13D0A392-F027-4A0A-AC76-B6F3109E1A35}_is1) (Version: - clipping-path-studio.com)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.1.0.1008 - Intel Corporation)
IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.38 - Irfan Skiljan)
Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
JetClean (HKLM-x32\...\BlueSprig_JetClean_is1) (Version: 1.5.0 - BlueSprig)
Junk Mail filter update (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Malwarebytes Anti-Malware Version 2.0.4.1028 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation)
Medion Home Cinema (HKLM-x32\...\InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}) (Version: 8.0.2227 - CyberLink Corp.)
Medion Home Cinema (x32 Version: 8.0.2227 - CyberLink Corp.) Hidden
Microsoft .NET Framework 4.5.2 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Home and Student 2007 (HKLM-x32\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Klick-und-Los 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Live Add-in 1.5 (HKLM-x32\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation)
Microsoft Office Starter 2010 - Deutsch (HKLM-x32\...\{90140011-0066-0407-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SkyDrive (HKU\S-1-5-21-1088896883-4214421238-3645177641-1000\...\SkyDriveSetup.exe) (Version: 17.0.2003.1112 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
MiniTool Partition Wizard Home Edition 7.8 (HKLM-x32\...\{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Version: - MiniTool Solution Ltd.)
Monosnap (HKLM-x32\...\{12AFFFC3-78E7-487B-BF44-7797A5D58AA2}) (Version: 1.5.3.0 - Monosnap)
Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Mozilla Firefox 35.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 35.0.1 (x86 de)) (Version: 35.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 32.0 - Mozilla)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MyFreeCodec (HKU\S-1-5-21-1088896883-4214421238-3645177641-1000\...\MyFreeCodec) (Version: - )
MyPhoneExplorer (HKLM-x32\...\MPE) (Version: 1.8.5 - F.J. Wechselberger)
Nitro Reader 3 (HKLM\...\{47220B83-D895-4262-9227-E5D8FA7F7384}) (Version: 3.5.2.10 - Nitro)
OkayFreedom (HKLM-x32\...\{3F3FB10C-7175-4D38-9335-3488B89C12AF}) (Version: 1.3.2 - Steganos Software GmbH)
Oracle VM VirtualBox 4.2.12 (HKLM\...\{0C1DE303-E41B-44BA-8ABA-B7F09D857001}) (Version: 4.2.12 - Oracle Corporation)
PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden
ph (x32 Version: 1.0.0 - Your Company Name) Hidden
Phase 5 HTML-Editor (HKLM-x32\...\{20B1B020-DEAE-48D1-9960-D4C3185D758B}) (Version: 5.6.2.3 - Systemberatung Schommer)
PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation)
Poczta usługi Windows Live (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Podstawowe programy Windows Live (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Pošta Windows Live (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Raccolta foto (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6285 - Realtek Semiconductor Corp.)
Recuva (HKLM\...\Recuva) (Version: 1.44 - Piriform)
Revo Uninstaller 1.94 (HKLM-x32\...\Revo Uninstaller) (Version: 1.94 - VS Revo Group)
Samsung Kies (HKLM-x32\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.3.2.12064_9 - Samsung Electronics Co., Ltd.)
Samsung Kies (x32 Version: 2.3.2.12064_9 - Samsung Electronics Co., Ltd.) Hidden
Samsung Story Album Viewer (HKLM-x32\...\InstallShield_{698BBAD8-B116-495D-B879-0F07A533E57F}) (Version: 1.0.0.13054_1 - Samsung Electronics Co., Ltd.)
Samsung Story Album Viewer (x32 Version: 1.0.0.13054_1 - Samsung Electronics Co., Ltd.) Hidden
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.27.0 - SAMSUNG Electronics Co., Ltd.)
SIW version 2011.10.29 (HKLM-x32\...\{AB67580-257C-45FF-B8F4-C8C30682091A}_is1) (Version: 2011.10.29 - Topala Software Solutions)
SketchUp 8 (HKLM-x32\...\{B8F4A45C-581C-4707-8EF2-2B9E6722270C}) (Version: 3.0.16944 - Trimble Navigation Limited)
Spelling Dictionaries Support For Adobe Reader X (HKLM-x32\...\{AC76BA86-7AD7-5464-3428-A00000000004}) (Version: 10.0.0 - Adobe Systems Incorporated)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Tinypic 3.18 (HKLM-x32\...\{E3723A04-A894-4036-A78E-282E18F43C0A}_is1) (Version: Tinypic 3.18 - E. Fiedler)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0407-0000-0000000FF1CE}_HOMESTUDENTR_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version: - Microsoft)
Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0407-0000-0000000FF1CE}_HOMESTUDENTR_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version: - Microsoft)
Update für Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0407-0000-0000000FF1CE}_HOMESTUDENTR_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version: - Microsoft)
Versandhelfer (HKLM-x32\...\dpdhl.versandhelfer.medionpc.CDA82DC3FEDD13302C6424313D9A2999F162D21A.1) (Version: 0.9.511 - Deutsche Post AG)
Versandhelfer (x32 Version: 0.9.511 - Deutsche Post AG) Hidden
VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN)
watchmi (HKLM-x32\...\{AA4D1C5E-116A-4FF4-AA91-28F526868203}) (Version: 2.5.0 - Axel Springer Digital TV Guide GmbH)
WEB.DE Desktop Icons (HKLM-x32\...\1&1 Mail & Media GmbH 1und1DesktopIconsInstaller) (Version: 3.0.5.0 - 1&1 Mail & Media GmbH)
WEB.DE MailCheck für Internet Explorer (HKLM-x32\...\1&1 Mail & Media GmbH Toolbar IE8) (Version: 2.6.0.4 - 1&1 Mail & Media GmbH)
WEB.DE Softwareaktualisierung (HKLM-x32\...\1&1 Mail & Media GmbH 1und1Softwareaktualisierung) (Version: 3.0.1.0 - 1&1 Mail & Media GmbH)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation)
Windows Media Encoder 9 Series (HKLM-x32\...\Windows Media Encoder 9) (Version: - )
XMedia Recode 2.3.2.0 (HKLM-x32\...\XMedia Recode) (Version: 2.3.2.0 - Sebastian Dörfler)
XMedia Recode Version 3.1.6.9 (HKLM-x32\...\{DDA3C325-47B2-4730-9672-BF3771C08799}_is1) (Version: 3.1.6.9 - XMedia Recode)
XYplorer 11.90 (HKLM-x32\...\XYplorer) (Version: 11.90 - Donald Lessau)
Συλλογή φωτογραφιών (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
==================== Custom CLSID (selected items): ==========================
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
CustomCLSID: HKU\S-1-5-21-1088896883-4214421238-3645177641-1000_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Wolfgang\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1088896883-4214421238-3645177641-1000_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Wolfgang\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1088896883-4214421238-3645177641-1000_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Wolfgang\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1088896883-4214421238-3645177641-1000_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Wolfgang\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1088896883-4214421238-3645177641-1000_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Wolfgang\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\FileSyncApi64.dll (Microsoft Corporation)
==================== Restore Points =========================
15-10-2014 15:30:21 Installed Java 7 Update 71
08-11-2014 15:12:19 Geplanter Prüfpunkt
18-12-2014 12:54:48 Windows Update
18-12-2014 13:24:18 avast! antivirus system restore point
18-12-2014 13:34:28 avast! antivirus system restore point
18-12-2014 14:09:13 Windows Update
15-01-2015 13:19:41 Windows Update
15-01-2015 14:05:44 Windows Update
15-01-2015 20:18:56 Windows-Sicherung
15-01-2015 20:48:16 Windows-Sicherung
16-01-2015 15:18:07 Windows-Sicherung
03-02-2015 18:16:43 Windows Update
03-02-2015 19:10:27 DVDVideoSoftRestorePoint
03-02-2015 19:12:57 LavasoftWeCompanion
03-02-2015 19:27:30 Revo Uninstaller's restore point - TuneUp Utilities 2014
03-02-2015 19:28:09 TuneUp Utilities 2014 wird entfernt
03-02-2015 19:29:04 TuneUp Utilities 2014 (de-DE) wird entfernt
03-02-2015 19:34:45 Revo Uninstaller's restore point - Ashampoo Photo Commander
03-02-2015 19:39:30 Revo Uninstaller's restore point - Ashampoo Snap
03-02-2015 19:40:50 Revo Uninstaller's restore point - Ashampoo Photo Optimizer
03-02-2015 19:41:54 Revo Uninstaller's restore point - Ashampoo Burning Studio
03-02-2015 20:32:03 Wiederherstellungsvorgang
03-02-2015 21:01:43 Revo Uninstaller's restore point - Positive Finds
03-02-2015 21:12:33 Wiederherstellungsvorgang
04-02-2015 10:00:13 avast! antivirus system restore point
04-02-2015 12:19:55 Revo Uninstaller's restore point - Free Audio Converter version 5.0.56.128
05-02-2015 18:02:44 Revo Uninstaller's restore point - SpyHunter 4
05-02-2015 18:04:26 Revo Uninstaller's restore point - SpyHunter 4
05-02-2015 19:48:34 BlueSprig JetClean restore point
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 03:34 - 2013-05-26 03:08 - 00002213 ____N C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 3dns.adobe.com
127.0.0.1 3dns-1.adobe.com
127.0.0.1 3dns-2.adobe.com
127.0.0.1 3dns-3.adobe.com
127.0.0.1 3dns-4.adobe.com
127.0.0.1 adobe-dns.adobe.com
127.0.0.1 adobe-dns-1.adobe.com
127.0.0.1 adobe-dns-2.adobe.com
127.0.0.1 adobe-dns-3.adobe.com
127.0.0.1 adobe-dns-4.adobe.com
127.0.0.1 wwis-dubc1-vip60.adobe.com
127.0.0.1 activate-sjc0.adobe.com
127.0.0.1 adobe.com
127.0.0.1 adobeereg.com
127.0.0.1 activate.adobe.com
127.0.0.1 activate-sea.adobe.com
127.0.0.1 activate-sea.adobe.com.*
127.0.0.1 activate.wip.adobe.com
127.0.0.1 activate.wip1.adobe.com
127.0.0.1 activate.wip2.adobe.com
127.0.0.1 activate.wip3.adobe.com
127.0.0.1 activate.wip4.adobe.com
127.0.0.1 crl.verisign.net
127.0.0.1 CRL.VERISIGN.NET.*
127.0.0.1 ood.opsource.net
127.0.0.1 209-34-83-73.ood.opsource.net
127.0.0.1 practivate.adobe
127.0.0.1 practivate.adobe.*
127.0.0.1 practivate.adobe.com
There are 15 more lines.
==================== Scheduled Tasks (whitelisted) =============
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
Task: {24DEA4A3-A2D4-477A-92AC-3A4AA44B48C5} - System32\Tasks\JetCleanLoginCheckUpdate => C:\Program Files (x86)\BlueSprig\JetClean\AutoUpdate.exe [2013-05-14] (BlueSprig)
Task: {2EEB8318-9D72-44A7-966D-56B0FDD34414} - System32\Tasks\{88AD7712-5750-441E-87B9-B7F5A207234B} => C:\Program Files (x86)\Adobe\Photoshop Elements 3.0\Photoshop Elements 3.0.exe [2004-10-14] (Adobe Systems Incorporated)
Task: {495BE432-BD2D-4A6C-A5F7-26D17B1BF221} - System32\Tasks\{2BA202C6-F969-47C2-A03F-733CFB3D202C} => pcalua.exe -a "C:\Users\Wolfgang\AppData\Local\Temp\Temp1_PPRO_2.0_Ret-NH_D.zip\Premiere Pro 2.0\Deutsch\Software van andere bedrijven\2d3 SteadyMove\setup.exe"
Task: {564E0B45-BA8F-4D55-AC8D-A03F662AD8A4} - System32\Tasks\{04665F3A-1B41-4E39-8E69-A39E62D51D95} => C:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\Bridge.exe [2012-03-13] (Adobe Systems, Inc.)
Task: {5816AA6F-8F67-4ACE-AFEA-5ED9C1A2306B} - System32\Tasks\{18DEF7EB-5340-47F4-B0AF-8D28DCBBE268} => C:\Program Files (x86)\VideoLAN\VLC\vlc.exe [2013-04-14] (VideoLAN)
Task: {5A23B0EE-71CD-4DF9-B487-136572988FBB} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-01-20] (Piriform Ltd)
Task: {6D9D9736-BCA6-4FD7-B610-09945C42005E} - System32\Tasks\Registration 1und1 Task => C:\Program Files (x86)\1und1Softwareaktualisierung\cdsupdclient.exe [2014-03-31] (1&1 Mail & Media GmbH)
Task: {8A262831-B36F-4AD4-B2B0-EBECC1CC22DD} - System32\Tasks\{B39D2473-27DD-4D4F-A54E-0160B7EA9BC9} => pcalua.exe -a C:\Users\Wolfgang\Downloads\CS_2.0_GR_Extras_1.exe -d C:\Users\Wolfgang\Downloads
Task: {8AD42A55-03B4-440E-BE8E-3844CE051840} - System32\Tasks\{E2D197E6-C8B4-4B93-A3ED-DA2D8C298B25} => C:\Program Files (x86)\VideoLAN\VLC\vlc.exe [2013-04-14] (VideoLAN)
Task: {8BAB5843-1A00-4DEC-BC78-76050BE6A617} - System32\Tasks\{2A6CA523-86C0-4CA4-8419-84E013E37F5F} => pcalua.exe -a D:\DNLDS\iview435g_setup.exe -d D:\DNLDS
Task: {931CA2C4-8DAF-45E5-8EB4-2C3AA63C7A94} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-05] (Adobe Systems Incorporated)
Task: {9D5B7721-3BFD-42AC-8150-0A9061D5387D} - System32\Tasks\{69FAA039-B728-4D75-ADBC-72AD609F40F5} => pcalua.exe -a E:\setup.exe -d E:\
Task: {9E1010A8-3516-4E74-BF25-F08B54BE08BF} - System32\Tasks\avastBCLRestartS-1-5-21-1088896883-4214421238-3645177641-1000 => Firefox.exe
Task: {ACEF11C6-D197-447F-8A51-F07EF9F594E0} - System32\Tasks\{108DD3DD-1564-49FB-B9D2-C0CE8B25C042} => C:\Program Files (x86)\Adobe\Photoshop Elements 3.0\Photoshop Elements 3.0.exe [2004-10-14] (Adobe Systems Incorporated)
Task: {B4958960-093C-40C6-8BAA-2A147F4A3AF7} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {C6EF1918-FA26-40AE-9EB1-69999ACE9525} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-29] (Google Inc.)
Task: {D06EDF95-B35E-47BC-8F17-F2BDA93C96BB} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-29] (Google Inc.)
Task: {D51BF139-0A77-465B-B584-7D4D17F190D5} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-12-18] (AVAST Software)
Task: {E2BD54BD-420B-431A-9B2A-F104DABFFDE7} - System32\Tasks\{8A20886F-B2A3-48FE-9F45-6D930ED1E730} => pcalua.exe -a D:\DNLDS\AdobeAIRInstaller(1).exe -d D:\DNLDS
Task: {F6387F16-D282-4D9D-8A84-F63973EDBCDC} - System32\Tasks\{291F35C6-0B6E-4DA0-B243-3422FBC67CE2} => pcalua.exe -a D:\DNLDS\irfanview_plugins_435_setup.exe -d D:\DNLDS
Task: {FB5051FA-DB4B-49C7-8DA2-3C78888C625A} - System32\Tasks\{1978FBAE-A226-4BB5-9D11-19DE0552DAEA} => pcalua.exe -a D:\DNLDS\VirtualBox-4.2.8-83876-Win.exe -d D:\DNLDS
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) ==============
2004-10-20 03:47 - 2004-10-20 03:47 - 00098304 _____ () C:\Program Files (x86)\Adobe\Photoshop Elements 3.0\PhotoshopElementsFileAgent.exe
2014-06-23 14:51 - 2014-04-09 02:52 - 00137024 _____ () C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe
2014-06-23 14:51 - 2014-04-09 02:52 - 00218432 _____ () C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe
2004-10-20 02:40 - 2004-10-20 02:40 - 00118784 _____ () C:\Program Files (x86)\Adobe\Photoshop Elements 3.0\PhotoshopElementsDeviceConnect.exe
2010-12-06 11:52 - 2010-12-06 11:52 - 00062464 _____ () C:\Program Files (x86)\watchmi\TvdService.exe
2012-07-21 22:48 - 2012-07-21 22:48 - 00061952 _____ () C:\Windows\assembly\GAC_MSIL\Tvd.Remote\2.5.0.5__f722db7bec59a14b\Tvd.Remote.dll
2012-07-21 22:48 - 2012-07-21 22:48 - 00009216 _____ () C:\Windows\assembly\GAC_MSIL\FingerPrint\1.0.0.0__a62e68e935d72fa6\FingerPrint.dll
2012-07-21 22:48 - 2012-07-21 22:48 - 00078848 _____ () C:\Windows\assembly\GAC_MSIL\Tvd.Reporting\2.5.0.5__f722db7bec59a14b\Tvd.Reporting.dll
2012-07-21 22:48 - 2012-07-21 22:48 - 00148480 _____ () C:\Windows\assembly\GAC_MSIL\Tvd.Aprico\2.5.0.5__f722db7bec59a14b\Tvd.Aprico.dll
2014-12-18 13:25 - 2014-12-18 13:25 - 00388208 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxDDU.dll
2014-12-18 13:25 - 2014-12-18 13:25 - 05851328 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxRT.dll
2014-11-24 15:05 - 2014-11-14 20:17 - 01428992 _____ () C:\Program Files (x86)\Monosnap\Monosnap.exe
2015-01-21 03:06 - 2015-01-21 03:06 - 00057344 _____ () C:\Program Files\CCleaner\lang\lang-1031.dll
2014-09-12 21:11 - 2013-11-21 21:57 - 20585888 ____N () C:\Program Files (x86)\DSL Soforthilfe\DSL_Soforthilfe.exe
2010-12-06 11:52 - 2010-12-06 11:52 - 01070080 _____ () C:\Program Files (x86)\watchmi\TvdTray.exe
2010-12-06 11:52 - 2010-12-06 11:52 - 00004608 _____ () C:\Program Files (x86)\watchmi\de\TvdTray.resources.dll
2011-01-27 02:48 - 2011-01-27 02:48 - 00243712 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll
2015-02-06 00:07 - 2015-02-06 00:07 - 02913280 _____ () C:\Program Files\AVAST Software\Avast\defs\15020501\algo.dll
2014-12-18 13:25 - 2014-12-18 13:25 - 04495336 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\x86\VBoxRT-x86.dll
2004-10-20 03:47 - 2004-10-20 03:47 - 00147456 _____ () C:\Program Files (x86)\Adobe\Photoshop Elements 3.0\platform.dll
2014-12-09 16:23 - 2014-12-08 11:59 - 06787584 _____ () C:\ProgramData\Monosnap\Monosnap.Native.4.dll
2009-11-02 22:20 - 2009-11-02 22:20 - 00619816 _____ () C:\Program Files (x86)\CyberLink\Power2Go\CLMediaLibrary.dll
2009-11-02 22:23 - 2009-11-02 22:23 - 00013096 _____ () C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvcPS.dll
2014-12-18 13:26 - 2014-12-18 13:26 - 38562088 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2014-10-15 15:55 - 2014-10-15 15:55 - 00169472 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\93182e9779b8be0f688fd0784df6d7fb\IsdiInterop.ni.dll
2011-04-19 19:11 - 2010-11-06 07:50 - 00058880 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll
==================== Alternate Data Streams (whitelisted) =========
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
==================== Safe Mode (whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== EXE Association (whitelisted) ===============
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
==================== Other Registry Areas =====================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-1088896883-4214421238-3645177641-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Wolfgang\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
==================== Accounts: =============================
Administrator (S-1-5-21-1088896883-4214421238-3645177641-500 - Administrator - Disabled)
Gast (S-1-5-21-1088896883-4214421238-3645177641-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1088896883-4214421238-3645177641-1002 - Limited - Enabled)
Wolfgang (S-1-5-21-1088896883-4214421238-3645177641-1000 - Administrator - Enabled) => C:\Users\Wolfgang
==================== Faulty Device Manager Devices =============
Name: Realtek RTL8191SU Wireless LAN 802.11n USB 2.0 Network Adapter
Description: Realtek RTL8191SU Wireless LAN 802.11n USB 2.0 Network Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Realtek Semiconductor Corp.
Service: RTL8192su
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
==================== Event log errors: =========================
Application errors:
==================
Error: (02/06/2015 00:07:17 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (02/06/2015 00:34:21 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Error: (02/06/2015 00:31:36 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Error: (02/06/2015 00:31:31 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Error: (02/06/2015 00:19:16 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Error: (02/06/2015 00:19:13 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Error: (02/06/2015 00:10:51 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Error: (02/06/2015 00:06:39 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (02/05/2015 08:20:34 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Error: (02/05/2015 08:20:26 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
System errors:
=============
Error: (02/06/2015 00:07:31 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Windows Live ID Sign-in Assistant" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (02/06/2015 00:07:31 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Windows Live ID Sign-in Assistant erreicht.
Error: (02/05/2015 08:15:42 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: {995C996E-D918-4A8C-A302-45719A6F4EA7}
Microsoft Office Sessions:
=========================
CodeIntegrity Errors:
===================================
Date: 2013-07-08 10:43:05.895
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\FsUsbExDisk.Sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2013-07-08 10:43:05.843
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\FsUsbExDisk.Sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2013-07-08 10:43:03.619
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\FsUsbExDisk.Sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2013-07-08 10:43:03.561
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\FsUsbExDisk.Sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2013-07-08 10:43:01.493
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\FsUsbExDisk.Sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2013-07-08 10:43:01.435
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\FsUsbExDisk.Sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2013-07-08 10:42:59.367
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\FsUsbExDisk.Sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2013-07-08 10:42:59.316
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\FsUsbExDisk.Sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2013-07-08 10:42:57.239
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\FsUsbExDisk.Sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2013-07-08 10:42:57.187
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\FsUsbExDisk.Sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i3-2100 CPU @ 3.10GHz
Percentage of memory in use: 42%
Total physical RAM: 4077.64 MB
Available physical RAM: 2334.46 MB
Total Pagefile: 8153.46 MB
Available Pagefile: 5891.98 MB
Total Virtual: 8192 MB
Available Virtual: 8191.83 MB
==================== Drives ================================
Drive c: (Boot) (Fixed) (Total:1356.17 GB) (Free:1193.36 GB) NTFS
Drive d: (Recover) (Fixed) (Total:40 GB) (Free:12.85 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 1397.3 GB) (Disk ID: 2BD2C32A)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=1356.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=40 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=1 GB) - (Type=12)
==================== End Of Log ============================ |