Barbara11 | 19.02.2015 08:02 | FRST.txt
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 18-02-2015 01
Ran by Barbara (administrator) on BARBARA-PC on 19-02-2015 08:00:22
Running from C:\Users\Barbara\Desktop
Loaded Profiles: UpdatusUser & Barbara (Available profiles: UpdatusUser & Barbara)
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Logitech Inc.) C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
() C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
(Microsoft Corporation) C:\Program Files\Microsoft Kinect Drivers\Service\KinectManagementService.exe
(MICRO-STAR INTERNATIONAL CO., LTD.) C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.26.9\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.26.9\GoogleCrashHandler64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
() C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
(hxxp://tortoisesvn.net) C:\Program Files\TortoiseSVN\bin\TSVNCache.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7188552 2013-05-27] (Realtek Semiconductor)
HKLM\...\Run: [Nvtmru] => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1012000 2013-05-16] (NVIDIA Corporation)
HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [134616 2013-05-17] (Intel Corporation)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-04-26] (Intel Corporation)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [450560 2013-09-11] (DivX, LLC)
HKLM-x32\...\Run: [DivXUpdate] => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861968 2013-08-29] ()
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [54576 2009-11-18] (Hewlett-Packard)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [702768 2014-12-11] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [124208 2014-10-22] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [507776 2014-10-07] (Oracle Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-802349399-3829478316-1411510260-1000\...\MountPoints2: {1f27864b-30d8-11e3-918d-806e6f6e6963} - D:\DVDSetup.exe
HKU\S-1-5-21-802349399-3829478316-1411510260-1000\...\MountPoints2: {d3ca9fee-df36-11e2-b186-806e6f6e6963} - D:\DVDSetup.exe
HKU\S-1-5-21-802349399-3829478316-1411510260-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-802349399-3829478316-1411510260-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [30524520 2014-11-27] (Skype Technologies S.A.)
HKU\S-1-5-21-802349399-3829478316-1411510260-1001\...\Run: [Web Companion] => C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe --minimize
HKU\S-1-5-21-802349399-3829478316-1411510260-1001\...\RunOnce: [Uninstall C:\Users\Barbara\AppData\Local\Microsoft\SkyDrive\17.0.4024.1220\amd64] => C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Barbara\AppData\Local\Microsoft\SkyDrive\17.0.4024.1220\amd64"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\iSCTsysTray.lnk
ShortcutTarget: iSCTsysTray.lnk -> C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe (Intel Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
ShellIconOverlayIdentifiers: [1TortoiseNormal] -> {C5994560-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [2TortoiseModified] -> {C5994561-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [3TortoiseConflict] -> {C5994562-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [4TortoiseLocked] -> {C5994563-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [5TortoiseReadOnly] -> {C5994564-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [6TortoiseDeleted] -> {C5994565-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [7TortoiseAdded] -> {C5994566-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [8TortoiseIgnored] -> {C5994567-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [9TortoiseUnversioned] -> {C5994568-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Barbara\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Barbara\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Barbara\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Barbara\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [1TortoiseNormal] -> {C5994560-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [2TortoiseModified] -> {C5994561-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [3TortoiseConflict] -> {C5994562-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [4TortoiseLocked] -> {C5994563-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [5TortoiseReadOnly] -> {C5994564-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [6TortoiseDeleted] -> {C5994565-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [7TortoiseAdded] -> {C5994566-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [8TortoiseIgnored] -> {C5994567-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [9TortoiseUnversioned] -> {C5994568-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Barbara\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Barbara\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Barbara\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
ProxyEnable: [.DEFAULT] => Internet Explorer proxy is enabled.
ProxyServer: [.DEFAULT] => http=127.0.0.1:50876;https=127.0.0.1:50876
HKU\S-1-5-21-802349399-3829478316-1411510260-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: Citavi Picker -> {609D670F-B735-4da7-AC6D-F3BD358E325E} -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_25\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_25\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Print Enhancer -> {0347C33E-8762-4905-BF09-768834316C61} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: HP Smart BHO Class -> {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF ProfilePath: C:\Users\Barbara\AppData\Roaming\Mozilla\Firefox\Profiles\ggce3fhf.default
FF NewTab: https://de.yahoo.com/?fr=vmn&type=vmn__webcompa__1_0__ya__hp_WCYID10048_swoc_campaign_150203__yaff
FF DefaultSearchEngine: Yahoo
FF SelectedSearchEngine: Yahoo
FF Homepage: https://de.yahoo.com/?fr=vmn&type=vmn__webcompa__1_0__ya__hp_WCYID10048_swoc_campaign_150203__yaff
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll ()
FF Plugin: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~4\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll ()
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll (DivX, LLC)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.5.29 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MIF5BA~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3522.0110 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Extension: Browser+ Apps - C:\Users\Barbara\AppData\Roaming\Mozilla\Firefox\Profiles\ggce3fhf.default\Extensions\56560a80-995b-47cd-852a-772f3a7ea92b@gmail.com [2015-01-23]
FF Extension: Avira Browser Safety - C:\Users\Barbara\AppData\Roaming\Mozilla\Firefox\Profiles\ggce3fhf.default\Extensions\abs@avira.com [2015-02-13]
FF Extension: Amazon-Icon - C:\Users\Barbara\AppData\Roaming\Mozilla\Firefox\Profiles\ggce3fhf.default\Extensions\amazon-icon@giga.de [2014-04-21]
FF Extension: videos MediaPlayer+ - C:\Users\Barbara\AppData\Roaming\Mozilla\Firefox\Profiles\ggce3fhf.default\Extensions\BHOKP84458125@VTA31058834.com [2015-01-23]
FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2014-02-04]
FF HKU\S-1-5-21-802349399-3829478316-1411510260-1001\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF HKU\S-1-5-21-802349399-3829478316-1411510260-1001\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]
FF Extension: No Name - C:\Users\Barbara\AppData\Roaming\Mozilla\Firefox\Profiles\ggce3fhf.default\extensions\isec@securitascout.com [Not Found]
FF Extension: No Name - C:\ProgramData\Swiss Academic Software\Citavi Picker\Firefox [Not Found]
Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.de/
CHR StartupUrls: Default -> "hxxp://www.trovi.com/?gd=&ctid=CT3323900&octid=EB_ORIGINAL_CTID&ISID=M38604435-36BE-4C53-A1F6-81088EDCC5BA&SearchSource=55&CUI=&UM=5&UP=SP61AD5D22-36FD-4409-8AC6-AE78BD07426F&SSPV="
CHR Profile: C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-05-27]
CHR Extension: (Adblock Plus) - C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-07-26]
CHR Extension: (WhatFont) - C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\jabopobgcpjmedljpbcaablpmlmfcogm [2014-11-17]
CHR Extension: (Google Wallet) - C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-07]
Opera:
=======
OPR Extension: (Browser+ Apps+) - C:\Users\Barbara\AppData\Roaming\Opera Software\Opera Stable\Extensions\okhbpnfiofnpilolnjeebnidmkopeeda [2014-09-17]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [431920 2014-12-11] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [431920 2014-12-11] (Avira Operations GmbH & Co. KG)
R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [164656 2014-10-22] (Avira Operations GmbH & Co. KG)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [731648 2013-02-13] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel(R) Corporation)
S3 intelsba; C:\Program Files\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe [48832 2013-03-13] (Intel Corporation)
R2 ISCTAgent; C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe [180200 2013-02-13] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-05-17] (Intel Corporation)
R2 KinectManagement; C:\Program Files\Microsoft Kinect Drivers\Service\KinectManagementService.exe [98816 2013-02-27] (Microsoft Corporation) [File not signed]
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.)
R2 MSI_Trigger_Service; C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe [29728 2013-05-28] (MICRO-STAR INTERNATIONAL CO., LTD.)
S2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2010-01-18] (Hewlett-Packard) [File not signed]
S3 OpenVPNService; C:\Program Files\OpenVPN\bin\openvpnserv.exe [37176 2014-08-07] (The OpenVPN Project)
S2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2010-01-18] (Hewlett-Packard) [File not signed]
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5426448 2014-12-15] (TeamViewer GmbH)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [119272 2014-10-09] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131608 2014-10-09] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-12-09] (Avira Operations GmbH & Co. KG)
R3 ikbevent; C:\Windows\System32\DRIVERS\ikbevent.sys [21048 2013-02-13] ()
R3 imsevent; C:\Windows\System32\DRIVERS\imsevent.sys [21048 2013-02-13] ()
R2 IntelHaxm; C:\Windows\System32\DRIVERS\IntelHaxm.sys [87536 2013-06-21] ()
R3 ISCT; C:\Windows\System32\DRIVERS\ISCTD64.sys [46568 2013-02-13] ()
S3 KinectCamera; C:\Windows\System32\Drivers\kinectcamera.sys [192512 2013-02-27] (Microsoft Corporation)
R3 WPRO_41_2001; C:\Windows\System32\drivers\WPRO_41_2001.sys [34752 2015-02-18] ()
S3 MSICDSetup; \??\D:\CDriver64.sys [X]
S3 NTIOLib_1_0_C; \??\D:\NTIOLib_X64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-02-19 08:00 - 2015-02-19 08:00 - 00000000 ____D () C:\Users\Barbara\Desktop\FRST-OlderVersion
2015-02-18 18:04 - 2015-02-18 18:04 - 00094656 _____ (CACE Technologies) C:\Windows\system32\WPRO_41_2001woem.tmp
2015-02-17 16:51 - 2015-02-17 16:51 - 00001065 _____ () C:\Users\Barbara\Desktop\JRT.txt
2015-02-17 16:30 - 2015-02-17 16:39 - 00000000 ____D () C:\AdwCleaner
2015-02-17 16:29 - 2015-02-17 16:29 - 01388274 _____ (Thisisu) C:\Users\Barbara\Desktop\JRT.exe
2015-02-17 16:28 - 2015-02-17 16:28 - 02112512 _____ () C:\Users\Barbara\Desktop\AdwCleaner_4.110.exe
2015-02-17 14:31 - 2015-02-17 15:15 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2015-02-17 14:31 - 2015-02-17 14:52 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-02-17 14:31 - 2015-02-17 14:31 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-02-17 14:29 - 2015-02-17 15:14 - 00000000 ____D () C:\Users\Barbara\Desktop\mbar
2015-02-17 14:29 - 2015-02-17 14:52 - 00097496 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-02-17 14:28 - 2015-02-17 14:28 - 16466552 _____ (Malwarebytes Corp.) C:\Users\Barbara\Desktop\mbar-1.08.3.1004.exe
2015-02-17 14:22 - 2015-02-18 08:25 - 00037431 _____ () C:\Users\Barbara\Desktop\Addition.txt
2015-02-17 14:21 - 2015-02-19 08:00 - 00026130 _____ () C:\Users\Barbara\Desktop\FRST.txt
2015-02-17 09:43 - 2015-02-17 09:43 - 00001264 _____ () C:\Users\Barbara\Desktop\Revo Uninstaller.lnk
2015-02-17 09:43 - 2015-02-17 09:43 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group
2015-02-17 09:39 - 2015-02-19 08:00 - 00000000 ____D () C:\FRST
2015-02-17 09:38 - 2015-02-19 08:00 - 02086912 _____ (Farbar) C:\Users\Barbara\Desktop\FRST64.exe
2015-02-17 07:51 - 2015-02-18 18:04 - 00000336 _____ () C:\Windows\setupact.log
2015-02-17 07:51 - 2015-02-18 18:03 - 00002680 _____ () C:\Windows\PFRO.log
2015-02-17 07:51 - 2015-02-17 07:51 - 00000000 _____ () C:\Windows\setuperr.log
2015-02-13 08:26 - 2015-02-13 08:27 - 266739862 _____ () C:\Users\Barbara\Downloads\Image-Film_Landratsamt Landsberg am Lech_Langfassung.mp4
2015-02-13 03:04 - 2015-01-23 05:42 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-02-13 03:04 - 2015-01-23 05:41 - 06041600 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-02-13 03:04 - 2015-01-23 04:43 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-02-13 03:04 - 2015-01-23 04:17 - 04300800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-02-11 07:23 - 2015-02-11 07:23 - 51621699 _____ () C:\Users\Barbara\Downloads\fritzing.0.9.1b.64.pc_1 (1).zip
2015-02-11 03:10 - 2015-01-15 09:14 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-02-11 03:10 - 2015-01-15 09:14 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-02-11 03:10 - 2015-01-15 09:09 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-02-11 03:10 - 2015-01-15 09:09 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-02-11 03:10 - 2015-01-15 09:09 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-02-11 03:10 - 2015-01-15 09:09 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-02-11 03:10 - 2015-01-15 09:09 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-02-11 03:10 - 2015-01-15 09:08 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-02-11 03:10 - 2015-01-15 09:06 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-02-11 03:10 - 2015-01-15 09:06 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-02-11 03:10 - 2015-01-15 09:04 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-02-11 03:10 - 2015-01-15 08:42 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-02-11 03:10 - 2015-01-15 08:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-02-11 03:10 - 2015-01-15 08:41 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-02-11 03:10 - 2015-01-15 08:39 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-02-11 03:10 - 2015-01-15 08:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2015-02-11 03:10 - 2015-01-15 08:37 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-02-11 03:10 - 2015-01-15 05:22 - 00458824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-02-11 03:10 - 2015-01-14 06:47 - 00389808 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-02-11 03:10 - 2015-01-14 06:09 - 00342712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-02-11 03:10 - 2015-01-13 04:10 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-02-11 03:10 - 2015-01-13 03:49 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-02-11 03:10 - 2015-01-12 04:09 - 25056256 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-02-11 03:10 - 2015-01-12 04:05 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-02-11 03:10 - 2015-01-12 04:05 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-02-11 03:10 - 2015-01-12 03:49 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-02-11 03:10 - 2015-01-12 03:48 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-02-11 03:10 - 2015-01-12 03:48 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-02-11 03:10 - 2015-01-12 03:48 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-02-11 03:10 - 2015-01-12 03:47 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-02-11 03:10 - 2015-01-12 03:40 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-02-11 03:10 - 2015-01-12 03:39 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-02-11 03:10 - 2015-01-12 03:36 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-02-11 03:10 - 2015-01-12 03:34 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-02-11 03:10 - 2015-01-12 03:34 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-02-11 03:10 - 2015-01-12 03:25 - 19740160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-02-11 03:10 - 2015-01-12 03:25 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-02-11 03:10 - 2015-01-12 03:21 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-02-11 03:10 - 2015-01-12 03:21 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-02-11 03:10 - 2015-01-12 03:13 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-02-11 03:10 - 2015-01-12 03:08 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-02-11 03:10 - 2015-01-12 03:08 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-02-11 03:10 - 2015-01-12 03:07 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-02-11 03:10 - 2015-01-12 03:07 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-02-11 03:10 - 2015-01-12 03:07 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-02-11 03:10 - 2015-01-12 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-02-11 03:10 - 2015-01-12 03:04 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-02-11 03:10 - 2015-01-12 03:02 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-02-11 03:10 - 2015-01-12 03:00 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-02-11 03:10 - 2015-01-12 02:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-02-11 03:10 - 2015-01-12 02:57 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-02-11 03:10 - 2015-01-12 02:55 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-02-11 03:10 - 2015-01-12 02:48 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-02-11 03:10 - 2015-01-12 02:48 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-02-11 03:10 - 2015-01-12 02:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-02-11 03:10 - 2015-01-12 02:46 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-02-11 03:10 - 2015-01-12 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-02-11 03:10 - 2015-01-12 02:43 - 14401024 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-02-11 03:10 - 2015-01-12 02:40 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-02-11 03:10 - 2015-01-12 02:36 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-02-11 03:10 - 2015-01-12 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-02-11 03:10 - 2015-01-12 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-02-11 03:10 - 2015-01-12 02:27 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-02-11 03:10 - 2015-01-12 02:23 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-02-11 03:10 - 2015-01-12 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-02-11 03:10 - 2015-01-12 02:22 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2015-02-11 03:10 - 2015-01-12 02:14 - 12829184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-02-11 03:10 - 2015-01-12 02:14 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-02-11 03:10 - 2015-01-12 02:02 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-02-11 03:10 - 2015-01-12 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-02-11 03:10 - 2015-01-12 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-02-11 03:10 - 2015-01-12 01:55 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-02-11 03:10 - 2015-01-10 07:48 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-02-11 03:10 - 2015-01-10 07:48 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-02-11 03:10 - 2015-01-10 07:48 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-02-11 03:10 - 2015-01-10 07:48 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-02-11 03:10 - 2015-01-10 07:48 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-02-11 03:10 - 2015-01-10 07:48 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-02-11 03:10 - 2015-01-10 07:48 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-02-11 03:10 - 2015-01-10 07:27 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-02-11 03:10 - 2015-01-10 07:27 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-02-11 03:10 - 2015-01-10 07:27 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-02-11 03:10 - 2015-01-10 07:27 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-02-11 03:10 - 2015-01-10 07:27 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-02-11 03:10 - 2015-01-10 07:27 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-02-11 03:10 - 2015-01-10 07:27 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-02-11 03:10 - 2014-12-12 06:31 - 01480192 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-02-11 03:10 - 2014-12-12 06:07 - 01174528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2015-02-11 03:10 - 2014-11-26 04:53 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-02-11 03:10 - 2014-11-26 04:32 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2015-02-11 03:10 - 2014-07-07 03:07 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2015-02-11 03:10 - 2014-07-07 03:06 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2015-02-11 03:10 - 2014-07-07 02:40 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2015-02-11 03:10 - 2014-07-07 02:40 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2015-02-11 03:09 - 2015-01-14 07:09 - 05554112 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-02-11 03:09 - 2015-01-14 07:05 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-02-11 03:09 - 2015-01-14 07:05 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-02-11 03:09 - 2015-01-14 07:04 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-02-11 03:09 - 2015-01-14 06:44 - 03972544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-02-11 03:09 - 2015-01-14 06:44 - 03917760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-02-11 03:09 - 2015-01-14 06:41 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-02-11 03:09 - 2015-01-09 03:03 - 03201536 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-02-11 03:09 - 2014-12-08 04:09 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2015-02-11 03:09 - 2014-12-08 03:46 - 00308224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2015-02-10 19:16 - 2015-01-09 04:14 - 00950272 _____ (Microsoft Corporation) C:\Windows\system32\perftrack.dll
2015-02-10 19:16 - 2015-01-09 04:14 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\wdi.dll
2015-02-10 19:16 - 2015-01-09 04:14 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\powertracker.dll
2015-02-10 19:16 - 2015-01-09 03:48 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdi.dll
2015-02-04 03:04 - 2015-02-04 03:04 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help
2015-02-04 03:04 - 2015-02-04 03:04 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help
2015-02-04 02:53 - 2015-02-04 02:53 - 00000000 ____D () C:\Users\Barbara\Documents\Benutzerdefinierte Office-Vorlagen
2015-02-04 02:28 - 2015-02-17 20:01 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-02-04 02:28 - 2015-02-04 02:28 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2015-02-04 02:27 - 2015-02-04 02:27 - 00000000 ____D () C:\Program Files\Microsoft SQL Server
2015-02-04 02:27 - 2015-02-04 02:27 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2015-02-04 02:27 - 2015-02-04 02:27 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server
2015-02-04 02:25 - 2015-02-17 20:01 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-02-04 02:25 - 2015-02-04 04:10 - 00000000 ____D () C:\Users\Barbara\AppData\Local\Microsoft Help
2015-02-04 02:25 - 2015-02-04 02:27 - 00000000 ____D () C:\Program Files\Microsoft Office
2015-02-04 02:25 - 2015-02-04 02:25 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services
2015-02-04 02:25 - 2015-02-04 02:25 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2015-02-04 02:25 - 2015-02-04 02:25 - 00000000 ____D () C:\Program Files (x86)\Microsoft Analysis Services
2015-02-04 02:24 - 2015-02-04 02:24 - 00000000 __RHD () C:\MSOCache
2015-02-04 01:53 - 2015-02-04 01:59 - 820998144 _____ () C:\Users\Barbara\Downloads\OfficeProfessionalPlus_x64_de-de.img
2015-02-03 21:01 - 2015-02-03 21:01 - 00005104 _____ () C:\Windows\SysWOW64\LavasoftTcpService.ini
2015-02-03 21:01 - 2015-02-03 21:01 - 00002800 _____ () C:\Windows\SysWOW64\LavasoftTcpServiceOff.ini
2015-02-03 21:01 - 2015-02-03 21:01 - 00002800 _____ () C:\Windows\system32\LavasoftTcpServiceOff.ini
2015-02-03 21:01 - 2015-01-23 06:39 - 00378832 _____ (Lavasoft Limited) C:\Windows\system32\LavasoftTcpService64.dll
2015-02-03 21:01 - 2015-01-23 06:39 - 00332216 _____ (Lavasoft Limited) C:\Windows\SysWOW64\LavasoftTcpService.dll
2015-02-03 20:52 - 2015-02-04 01:46 - 00005120 _____ () C:\Users\Barbara\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-02-03 20:51 - 2015-02-03 20:51 - 00000000 ____D () C:\Users\Barbara\AppData\Roaming\LibreOffice
2015-02-03 20:50 - 2015-02-03 20:50 - 00001468 _____ () C:\Users\Public\Desktop\LibreOffice 4.3.lnk
2015-02-03 20:50 - 2015-02-03 20:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 4.3
2015-02-03 20:49 - 2015-02-03 20:50 - 00000000 ____D () C:\Program Files (x86)\LibreOffice 4
2015-02-03 20:43 - 2015-02-03 20:43 - 00001436 _____ () C:\Users\Public\Desktop\Free YouTube Download.lnk
2015-02-03 20:43 - 2015-02-03 20:43 - 00001241 _____ () C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk
2015-02-03 20:43 - 2015-02-03 20:43 - 00000000 ____D () C:\Program Files (x86)\Free Codec Pack
2015-02-03 20:42 - 2015-02-03 20:42 - 03533024 _____ (DVDVideoSoft Ltd. ) C:\Users\Barbara\Downloads\FreeYouTube53Download (1).exe
2015-02-03 20:41 - 2015-02-03 20:41 - 03533024 _____ (DVDVideoSoft Ltd. ) C:\Users\Barbara\Downloads\FreeYouTube53Download.exe
2015-02-03 20:40 - 2015-02-03 20:43 - 225890304 _____ () C:\Users\Barbara\Downloads\LibreOffice_4.3.5_Win_x86.msi
2015-02-02 12:11 - 2015-02-19 07:58 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-02-02 12:11 - 2015-02-05 17:02 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-02-02 10:35 - 2015-02-02 10:35 - 00000000 ____D () C:\Users\Barbara\Downloads\DDD_softcover_id_modern-06mm
2015-02-02 10:34 - 2015-02-02 10:34 - 00545328 _____ () C:\Users\Barbara\Downloads\DDD_softcover_id_modern-06mm.zip
2015-02-02 06:45 - 2015-02-02 06:45 - 00000000 ____D () C:\Users\Barbara\Downloads\eci_offset_2009
2015-02-02 06:44 - 2015-02-02 06:45 - 17410183 _____ () C:\Users\Barbara\Downloads\eci_offset_2009.zip
2015-01-31 01:02 - 2015-01-31 01:03 - 21851892 _____ () C:\Users\Barbara\Downloads\minim-2.2.0.zip
2015-01-31 00:43 - 2015-01-31 01:33 - 07522098 _____ () C:\Users\Barbara\Desktop\DSC_0120 - Kopie.NEF
2015-01-30 16:18 - 2015-01-30 16:18 - 00004114 _____ () C:\Users\Barbara\Downloads\PulseSensorAmped_Arduino_1dot2 (1).zip
2015-01-30 16:14 - 2015-01-30 16:14 - 00020832 _____ () C:\Users\Barbara\Downloads\PulseSensorAmped_HRV_FrequencyDomain_01.zip
2015-01-30 16:08 - 2015-01-30 16:08 - 00019473 _____ () C:\Users\Barbara\Downloads\PulseSensorAmped_HRV_IBI_Graph_01.zip
2015-01-28 10:46 - 2015-01-28 10:46 - 00000000 ____D () C:\Users\Barbara\AppData\Roaming\Sigel
2015-01-28 10:45 - 2015-01-28 10:45 - 00001242 _____ () C:\Users\UpdatusUser\Desktop\Professional Label Software SE.lnk
2015-01-28 10:45 - 2015-01-28 10:45 - 00000000 ____D () C:\Users\Barbara\Downloads\Sigel_Professional_Label
2015-01-28 10:45 - 2015-01-28 10:45 - 00000000 ____D () C:\Users\Barbara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sigel
2015-01-28 10:45 - 2015-01-28 10:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sigel
2015-01-28 10:45 - 2015-01-28 10:45 - 00000000 ____D () C:\Program Files (x86)\Sigel
2015-01-28 10:45 - 2003-06-25 11:17 - 00374272 _____ (Herd Software Entwicklung/ Ketteler Str. 35/ D-68642 Bürstadt/ hxxp://www.herdsoft.com/ Telefon:+49-6206-707775/ Telefax:+49-6206-707776) C:\Windows\SysWOW64\Dav3_32.dll
2015-01-28 10:45 - 2003-06-24 13:35 - 00143360 _____ (Herd Software Entwicklung/ Ketteler Str.35/ D-68642 Bürstadt/ hxxp://www.herdsoft.com/ eMail:info@herdsoft.com/ Telefon:+49-6206-707775/ Telefax:+49-6206-707776) C:\Windows\SysWOW64\leon3_32.dll
2015-01-28 10:44 - 2015-01-28 10:44 - 05313860 _____ () C:\Users\Barbara\Downloads\Sigel_Professional_Label.zip
2015-01-26 18:00 - 2015-01-27 09:40 - 00000600 _____ () C:\Users\Barbara\AppData\Local\PUTTY.RND
2015-01-26 17:43 - 2015-01-26 17:51 - 00000000 ____D () C:\Program Files (x86)\TeamViewer
2015-01-26 17:43 - 2015-01-26 17:43 - 00001043 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 10.lnk
2015-01-26 17:42 - 2015-01-26 17:42 - 07718224 _____ (TeamViewer GmbH) C:\Users\Barbara\Downloads\TeamViewer_Setup_de.exe
2015-01-26 17:29 - 2015-01-27 03:22 - 00002000 _____ () C:\Users\Public\Desktop\FileZilla Client.lnk
2015-01-26 17:29 - 2015-01-26 17:29 - 06381120 _____ (Tim Kosse) C:\Users\Barbara\Downloads\FileZilla_3.10.0.2_win32-setup.exe
2015-01-26 15:55 - 2015-01-26 15:55 - 01458829 _____ () C:\Users\Barbara\Downloads\woothemes-FlexSlider-version-2.2.2-0-gce5441b.zip
2015-01-26 15:55 - 2015-01-26 15:55 - 00000000 ____D () C:\Users\Barbara\Downloads\woothemes-FlexSlider-version-2.2.2-0-gce5441b
2015-01-23 16:20 - 2015-01-23 16:20 - 00003381 _____ () C:\Users\Barbara\Downloads\5220c23b757b7fea2a8b4569.zip
2015-01-23 16:20 - 2015-01-23 16:20 - 00002774 _____ () C:\Users\Barbara\Downloads\TMP006 (1).zip
2015-01-23 16:11 - 2015-01-23 16:11 - 00002699 _____ () C:\Users\Barbara\Downloads\TMP006.zip
2015-01-23 15:54 - 2015-01-23 15:54 - 00072604 _____ () C:\Users\Barbara\Downloads\sound-detector (1).zip
2015-01-23 14:50 - 2015-01-23 14:50 - 00166436 _____ () C:\Users\Barbara\Downloads\comslider_520432.zip
2015-01-23 14:50 - 2015-01-23 14:50 - 00000000 ____D () C:\Users\Barbara\Downloads\comslider_520432
2015-01-23 05:46 - 2015-01-23 14:18 - 00000000 ____D () C:\Users\Barbara\Downloads\jquery.bxslider
2015-01-23 05:46 - 2015-01-23 05:46 - 00036691 _____ () C:\Users\Barbara\Downloads\jquery.bxslider.zip
2015-01-23 01:41 - 2015-01-23 01:41 - 01160056 _____ () C:\Users\Barbara\Downloads\fonts.zip
2015-01-22 16:48 - 2015-01-22 16:48 - 00000000 ____D () C:\Users\Barbara\Documents\Unbenannte Site 2
2015-01-22 15:03 - 2015-01-23 00:18 - 44039706 _____ () C:\Users\Barbara\Downloads\Lech.zip
2015-01-22 15:03 - 2015-01-22 15:03 - 03512599 _____ () C:\Users\Barbara\Downloads\html.zip
2015-01-22 15:02 - 2015-01-22 15:02 - 00395922 _____ () C:\Users\Barbara\Downloads\html_01 (1).7z
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-02-19 07:59 - 2013-06-27 15:40 - 01680527 _____ () C:\Windows\WindowsUpdate.log
2015-02-19 07:58 - 2014-01-07 20:30 - 00001110 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-02-19 07:58 - 2014-01-07 20:30 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-02-19 07:58 - 2013-12-20 17:14 - 00000000 ____D () C:\Users\Barbara\AppData\Roaming\Skype
2015-02-18 18:12 - 2009-07-14 05:45 - 00022576 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-02-18 18:12 - 2009-07-14 05:45 - 00022576 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-02-18 18:08 - 2013-12-24 09:12 - 00000000 ____D () C:\Users\Barbara\AppData\Local\CrashDumps
2015-02-18 18:04 - 2014-04-02 00:31 - 00000000 ____D () C:\Users\Barbara\AppData\Local\TSVNCache
2015-02-18 18:04 - 2013-06-27 09:50 - 00034752 _____ () C:\Windows\system32\Drivers\WPRO_41_2001.sys
2015-02-18 18:04 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-02-17 16:42 - 2014-02-03 22:31 - 00000000 ___RD () C:\Users\Barbara\Dropbox
2015-02-17 16:42 - 2014-02-03 22:29 - 00000000 ____D () C:\Users\Barbara\AppData\Roaming\Dropbox
2015-02-17 14:05 - 2009-07-14 05:45 - 10611200 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-02-17 14:03 - 2013-12-20 15:38 - 00346480 _____ () C:\Users\Barbara\AppData\Local\GDIPFONTCACHEV1.DAT
2015-02-17 14:02 - 2014-10-19 14:06 - 00000000 ____D () C:\Users\Barbara\Desktop\Bachelor
2015-02-17 13:58 - 2013-12-21 07:33 - 00000000 ____D () C:\Program Files (x86)\Adobe
2015-02-17 13:56 - 2013-12-20 19:11 - 00000000 ____D () C:\ProgramData\Adobe
2015-02-17 13:55 - 2013-12-20 21:39 - 00000000 ____D () C:\Program Files\Common Files\Adobe
2015-02-17 13:48 - 2013-12-20 15:33 - 00000000 ____D () C:\Users\Barbara
2015-02-17 13:37 - 2013-12-20 22:08 - 00000000 ____D () C:\ProgramData\regid.1986-12.com.adobe
2015-02-17 09:53 - 2015-01-11 20:11 - 00008075 _____ () C:\Users\Barbara\AppData\Local\Citavi Picker Internet Explorer Protocol.txt
2015-02-17 08:34 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2015-02-17 08:02 - 2013-12-20 21:31 - 00000000 ____D () C:\Users\Barbara\AppData\Local\Adobe
2015-02-13 12:28 - 2014-11-27 23:59 - 00000000 ____D () C:\Users\Barbara\AppData\Roaming\FileZilla
2015-02-12 07:07 - 2014-02-03 22:30 - 00000000 ____D () C:\Users\Barbara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-02-12 03:32 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2015-02-12 03:15 - 2014-05-14 08:52 - 00000000 ____D () C:\ProgramData\Package Cache
2015-02-12 03:10 - 2009-07-14 03:34 - 00000513 _____ () C:\Windows\win.ini
2015-02-12 03:07 - 2013-12-20 21:35 - 00000000 ____D () C:\Windows\system32\MRT
2015-02-12 03:02 - 2013-06-27 10:35 - 116773704 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-02-11 03:17 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\tracing
2015-02-08 15:55 - 2014-03-28 03:01 - 00000000 _____ () C:\Windows\system32\Drivers\lvuvc.hs
2015-02-05 23:55 - 2014-06-27 11:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2015-02-05 23:49 - 2014-01-07 20:30 - 00004106 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-02-05 23:49 - 2014-01-07 20:30 - 00003854 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-02-05 17:02 - 2013-12-23 21:47 - 00701616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-02-05 17:02 - 2013-12-23 21:47 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-02-05 03:08 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\System
2015-02-05 03:06 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2015-02-04 02:28 - 2011-04-12 08:55 - 00000000 ____D () C:\Windows\ShellNew
2015-02-04 01:45 - 2014-05-07 07:09 - 00000000 ____D () C:\FFOutput
2015-02-03 20:43 - 2014-02-07 11:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
2015-02-03 20:43 - 2014-02-07 11:44 - 00000000 ____D () C:\Users\Barbara\AppData\Roaming\DVDVideoSoft
2015-02-03 20:43 - 2014-02-07 11:44 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft
2015-02-02 12:09 - 2013-12-20 16:39 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2015-01-30 18:23 - 2014-11-06 13:06 - 00000000 ____D () C:\Users\Barbara\Desktop\MM-Anwendung
2015-01-28 11:03 - 2011-04-12 08:43 - 00699416 _____ () C:\Windows\system32\perfh007.dat
2015-01-28 11:03 - 2011-04-12 08:43 - 00149556 _____ () C:\Windows\system32\perfc007.dat
2015-01-28 11:03 - 2009-07-14 06:13 - 01620612 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-01-27 09:41 - 2014-03-20 21:16 - 00000000 ____D () C:\Users\Barbara\Documents\Aptana Studio 3 Workspace
2015-01-27 08:09 - 2014-03-20 21:13 - 00000000 ____D () C:\Users\Barbara\AppData\Local\Aptana Studio 3
2015-01-27 03:22 - 2014-11-27 23:59 - 00000000 ____D () C:\Program Files (x86)\FileZilla FTP Client
2015-01-25 14:32 - 2014-02-06 13:41 - 00000000 ____D () C:\Users\Barbara\Documents\Citavi 4
2015-01-22 07:38 - 2015-01-15 09:57 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird
2015-01-20 01:25 - 2015-01-19 23:59 - 00001456 _____ () C:\Users\Barbara\AppData\Local\Adobe Für Web speichern 13.0 Prefs
==================== Files in the root of some directories =======
2014-01-17 17:26 - 2014-04-27 19:28 - 0000132 _____ () C:\Users\Barbara\AppData\Roaming\Adobe CS6-PNG-Format - Voreinstellungen
2015-01-19 23:59 - 2015-01-20 01:25 - 0001456 _____ () C:\Users\Barbara\AppData\Local\Adobe Für Web speichern 13.0 Prefs
2015-01-11 20:11 - 2015-02-17 09:53 - 0008075 _____ () C:\Users\Barbara\AppData\Local\Citavi Picker Internet Explorer Protocol.txt
2015-02-03 20:52 - 2015-02-04 01:46 - 0005120 _____ () C:\Users\Barbara\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-01-26 18:00 - 2015-01-27 09:40 - 0000600 _____ () C:\Users\Barbara\AppData\Local\PUTTY.RND
2014-02-04 22:13 - 2014-02-04 22:19 - 0000823 _____ () C:\ProgramData\hpzinstall.log
Some content of TEMP:
====================
C:\Users\Barbara\AppData\Local\Temp\avgnt.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-02-13 07:37
==================== End Of Log ============================ --- --- ---
--- --- ---
Addition.txt Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 18-02-2015 01
Ran by Barbara at 2015-02-19 08:01:07
Running from C:\Users\Barbara\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Avira Desktop (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AS: Avira Desktop (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
64 Bit HP CIO Components Installer (Version: 7.2.4 - Hewlett-Packard) Hidden
7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version: - )
Adobe Flash Player 16 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.10) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated)
Apple Application Support (HKLM-x32\...\{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}) (Version: 2.3.4 - Apple Inc.)
Aptana Studio 3 (HKLM-x32\...\Aptana Studio 3) (Version: 3.4.2 - Appcelerator, Inc.)
Arduino (HKLM-x32\...\Arduino) (Version: 1.0.5-r2 - Arduino LLC)
Avira (HKLM-x32\...\{9480d4af-12b9-4e56-8034-4031ef6ab39d}) (Version: 1.1.25.25607 - Avira Operations GmbH & Co. KG)
Avira (x32 Version: 1.1.25.25607 - Avira Operations GmbH & Co. KG) Hidden
Avira Free Antivirus (HKLM-x32\...\Avira AntiVir Desktop) (Version: 14.0.7.468 - Avira)
B010 (x32 Version: 140.0.344.000 - Hewlett-Packard) Hidden
bl (x32 Version: 1.0.0 - Your Company Name) Hidden
Blender (HKLM\...\Blender) (Version: 2.72b - Blender Foundation)
BufferChm (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 4.08 - Piriform)
Celtx (2.9) (HKLM-x32\...\Celtx (2.9)) (Version: 2.9 (de) - Greyfirst)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Destinations (x32 Version: 140.0.167.000 - Hewlett-Packard) Hidden
DeviceDiscovery (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
DivX-Setup (HKLM-x32\...\DivX Setup) (Version: 2.6.1.87 - DivX, LLC)
Dropbox (HKU\S-1-5-21-802349399-3829478316-1411510260-1001\...\Dropbox) (Version: 3.2.6 - Dropbox, Inc.)
Evernote v. 5.2.1 (HKLM-x32\...\{5E6D0ABA-ABDE-11E3-9AED-00163E98E7D6}) (Version: 5.2.1.3108 - Evernote Corp.)
FaceDetect (HKLM-x32\...\{383AA19F-538D-4A1E-8A71-4B6AAA2D8703}) (Version: 7.0.0 - Fraunhofer IIS)
FileZilla Client 3.10.0.2 (HKLM-x32\...\FileZilla Client) (Version: 3.10.0.2 - Tim Kosse)
FormatFactory 3.3.4.0 (HKLM-x32\...\FormatFactory) (Version: 3.3.4.0 - Format Factory)
Fotogalerie (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden
Free Audio CD to MP3 Converter version 1.3.12.1228 (HKLM-x32\...\Free Audio CD to MP3 Converter_is1) (Version: 1.3.12.1228 - DVDVideoSoft Ltd.)
Free YouTube Download version 3.2.53.128 (HKLM-x32\...\Free YouTube Download_is1) (Version: 3.2.53.128 - DVDVideoSoft Ltd.)
Free YouTube to MP3 Converter version 3.12.44.908 (HKLM-x32\...\Free YouTube to MP3 Converter_is1) (Version: 3.12.44.908 - DVDVideoSoft Ltd.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 40.0.2214.111 - Google Inc.)
Google Drive (HKLM-x32\...\{65EACBB4-B0B8-4A5B-AE46-22DBE15C70B5}) (Version: 1.19.8406.6504 - Google, Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden
GPBaseService2 (x32 Version: 140.0.211.000 - Hewlett-Packard) Hidden
HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP)
HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP)
HP Photosmart B010 All-In-One Driver Software 14.0 Rel. 7 (HKLM\...\{81830FEF-866C-4DC0-9435-B6287B1EDD8A}) (Version: 14.0 - HP)
HP Smart Web Printing 4.60 (HKLM\...\HP Smart Web Printing) (Version: 4.60 - HP)
HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP)
HP Update (HKLM-x32\...\{74DC0593-6BC6-4001-AD5F-D810AFB68D86}) (Version: 5.002.002.002 - Hewlett-Packard)
HPPhotoGadget (x32 Version: 140.0.524.000 - Hewlett-Packard) Hidden
HPProductAssistant (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
HPSSupply (x32 Version: 140.0.211.000 - Hewlett-Packard) Hidden
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1011 - Intel Corporation)
Intel(R) Manageability Engine Firmware Recovery Agent (HKLM-x32\...\{A6C48A9F-694A-4234-B3AA-62590B668927}) (Version: 1.0.0.36702 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.0.10.1372 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.18.10.3071 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 3.0.0.63463 - Intel Corporation)
Intel(R) Small Business Advantage (HKLM-x32\...\{6A6D86CD-B004-46b7-8951-7BB75A776F8C}) (Version: 2.0.31.7101 - Intel(R) Corporation)
Intel(R) Smart Connect Technology 4.0 x64 (HKLM\...\{B0CA78DB-745A-4857-A73F-9ACD95E62BD0}) (Version: 4.0.41.2072 - Intel)
Intel(R) Update Manager (x32 Version: 1.0.0.36888 - Intel Corporation) Hidden
Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 2.5.0.19 - Intel Corporation)
Intel® Hardware Accelerated Execution Manager (HKLM\...\{48510A5E-146A-45B7-AE0A-5E73367D18FB}) (Version: 1.0.5 - Intel Corporation)
Java 3D 1.3.1 (DirectX) SDK (HKLM-x32\...\{7B03A5D4-4954-46CF-A633-64D5B47827A8}) (Version: - )
Java 3D 1.3.1 (OpenGL) Runtime (HKLM-x32\...\{24A8F35A-5DF5-4E88-9314-6CD6195BB283}) (Version: - )
Java 3D 1.3.1 (OpenGL) SDK (HKLM-x32\...\{D49D681E-A4FC-4FD8-BC6F-C9EF2C832B49}) (Version: - )
Java 3D 1.4.0 (HKLM-x32\...\{3248F0A8-6813-11D6-A77B-80B0D0140000}) (Version: 1.4.0 - Sun Microsystems, Inc.)
Java 3D 1.5.0 (x64) (HKLM\...\{64A9C5B3-D166-4C6D-A11E-A54473150000}) (Version: 1.5.0 - Sun Microsystems, Inc.)
Java 8 Update 25 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418025F0}) (Version: 8.0.250 - Oracle Corporation)
Java SE Development Kit 7 Update 51 (HKLM-x32\...\{32A3A4F4-B792-11D6-A78A-00B0D0170510}) (Version: 1.7.0.510 - Oracle)
Java SE Development Kit 8 Update 25 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180250}) (Version: 8.0.250.18 - Oracle Corporation)
Junk Mail filter update (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden
Kinect for Windows Developer Toolkit v1.7.0 (HKLM\...\{81260067-0874-4B63-8ED7-5A8B48D60D17}) (Version: 1.7.0.510 - Microsoft Corporation)
Kinect for Windows Drivers v1.7 (HKLM\...\{075687FF-27E5-4713-9E1A-704B768811D3}) (Version: 1.7.0.529 - Microsoft Corporation)
Kinect for Windows Runtime v1.7 (HKLM\...\{7DC40FDF-C442-4E5A-AD50-1AAFDCA9DC37}) (Version: 1.7.0.529 - Microsoft Corporation)
Kinect for Windows SDK v1.7 (HKLM\...\{B21057EB-E950-43A3-9196-4A59C9867B6C}) (Version: 1.7.0.529 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (en-US) (HKLM-x32\...\{8AAA44BB-487E-4D01-AF76-484ACB90DBFE}) (Version: 11.0.7400.336 - Microsoft Corporation)
LibreOffice 4.3.5.2 (HKLM-x32\...\{1D4E90DA-C33C-40ED-BA00-75F6E6DF9CB0}) (Version: 4.3.5.2 - The Document Foundation)
MarketResearch (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.8.150.1 - McAfee, Inc.)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUSR) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Server Speech Platform Runtime (x64) (HKLM\...\{3B433087-E62E-4BF5-97F9-4AF6E1C2409C}) (Version: 11.0.7400.345 - Microsoft Corporation)
Microsoft Server Speech Platform Runtime (x86) (HKLM-x32\...\{22CB8ED7-DF57-4864-BD04-F63B9CE4B494}) (Version: 11.0.7400.345 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation)
Movie Maker (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden
Mozilla Firefox 29.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 29.0.1 (x86 de)) (Version: 29.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
Mozilla Thunderbird 31.4.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 31.4.0 (x86 de)) (Version: 31.4.0 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
NVIDIA 3D Vision Controller-Treiber 320.18 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 320.18 - NVIDIA Corporation)
NVIDIA GeForce Experience 1.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 1.5 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.12.1031 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.1031 - NVIDIA Corporation)
OpenOffice 4.0.1 (HKLM-x32\...\{0AEC308E-7EB3-47F7-BB59-F2C9C6166B27}) (Version: 4.01.9714 - Apache Software Foundation)
OpenVPN 2.3.4-I003 (HKLM\...\OpenVPN) (Version: 2.3.4-I003 - )
Outils de vérification linguistique 2013 de Microsoft Office*- Français (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
PDF-Viewer (HKLM\...\{A278382D-4F1B-4D47-9885-8523F7261E8D}_is1) (Version: 2.5.311.0 - Tracker Software Products Ltd)
ph (x32 Version: 1.0.0 - Your Company Name) Hidden
PS_AIO_07_B010_SW_Min (x32 Version: 140.0.224.000 - Hewlett-Packard) Hidden
PyQt4 - PyQwt5 5.2.1-5 (HKLM-x32\...\PyQt4 - PyQwt5 5.2.1-5) (Version: 5.2.1-5 - pythonxy)
PyQt4 - QtHelp 4.8.5-3 (HKLM-x32\...\PyQt4 - QtHelp 4.8.5-3) (Version: 4.8.5-3 - pythonxy)
Python 2.7 - astropy 0.3.2-5 (HKLM-x32\...\Python 2.7 - astropy 0.3.2-5) (Version: 0.3.2-5 - pythonxy)
Python 2.7 - babel 1.3-3 (HKLM-x32\...\Python 2.7 - babel 1.3-3) (Version: 1.3-3 - pythonxy)
Python 2.7 - base_libraries 1.6.1-13 (HKLM-x32\...\Python 2.7 - base_libraries 1.6.1-13) (Version: 1.6.1-13 - pythonxy)
Python 2.7 - base_python 1.9.8-31 (HKLM-x32\...\Python 2.7 - base_python 1.9.8-31) (Version: 1.9.8-31 - pythonxy)
Python 2.7 - BeautifulSoup4 4.3.2-2 (HKLM-x32\...\Python 2.7 - BeautifulSoup4 4.3.2-2) (Version: 4.3.2-2 - pythonxy)
Python 2.7 - blosc 1.2.3-4 (HKLM-x32\...\Python 2.7 - blosc 1.2.3-4) (Version: 1.2.3-4 - pythonxy)
Python 2.7 - bottleneck 0.8.0-3 (HKLM-x32\...\Python 2.7 - bottleneck 0.8.0-3) (Version: 0.8.0-3 - pythonxy)
Python 2.7 - cffi 0.8.2-6 (HKLM-x32\...\Python 2.7 - cffi 0.8.2-6) (Version: 0.8.2-6 - pythonxy)
Python 2.7 - cx_Freeze 4.3.3-3 (HKLM-x32\...\Python 2.7 - cx_Freeze 4.3.3-3) (Version: 4.3.3-3 - pythonxy)
Python 2.7 - docutils 0.11-2 (HKLM-x32\...\Python 2.7 - docutils 0.11-2) (Version: 0.11-2 - pythonxy)
Python 2.7 - formlayout 1.0.15-3 (HKLM-x32\...\Python 2.7 - formlayout 1.0.15-3) (Version: 1.0.15-3 - pythonxy)
Python 2.7 - freeimage 3.6.0-5 (HKLM-x32\...\Python 2.7 - freeimage 3.6.0-5) (Version: 3.6.0-5 - pythonxy)
Python 2.7 - gevent 1.0.1-6 (HKLM-x32\...\Python 2.7 - gevent 1.0.1-6) (Version: 1.0.1-6 - pythonxy)
Python 2.7 - Gnuplot 1.8.0.3 (HKLM-x32\...\Python 2.7 - Gnuplot 1.8.0.3) (Version: 1.8.0.3 - pythonxy)
Python 2.7 - guidata 1.6.1-3 (HKLM-x32\...\Python 2.7 - guidata 1.6.1-3) (Version: 1.6.1-3 - pythonxy)
Python 2.7 - guiqwt 2.3.2-5 (HKLM-x32\...\Python 2.7 - guiqwt 2.3.2-5) (Version: 2.3.2-5 - pythonxy)
Python 2.7 - h5py 2.3.0-6 (HKLM-x32\...\Python 2.7 - h5py 2.3.0-6) (Version: 2.3.0-6 - pythonxy)
Python 2.7 - html5lib 0.999-3 (HKLM-x32\...\Python 2.7 - html5lib 0.999-3) (Version: 0.999-3 - pythonxy)
Python 2.7 - IPython 2.1.0-6 (HKLM-x32\...\Python 2.7 - IPython 2.1.0-6) (Version: 2.1.0-6 - pythonxy)
Python 2.7 - jinja2 2.7.2-5 (HKLM-x32\...\Python 2.7 - jinja2 2.7.2-5) (Version: 2.7.2-5 - pythonxy)
Python 2.7 - lxml 3.3.5-14 (HKLM-x32\...\Python 2.7 - lxml 3.3.5-14) (Version: 3.3.5-14 - pythonxy)
Python 2.7 - mahotas 1.1.0-9 (HKLM-x32\...\Python 2.7 - mahotas 1.1.0-9) (Version: 1.1.0-9 - pythonxy)
Python 2.7 - mako 0.9.1-1 (HKLM-x32\...\Python 2.7 - mako 0.9.1-1) (Version: 0.9.1-1 - pythonxy)
Python 2.7 - matplotlib 1.3.1-4 (HKLM-x32\...\Python 2.7 - matplotlib 1.3.1-4) (Version: 1.3.1-4 - pythonxy)
Python 2.7 - nose 1.3.3-5 (HKLM-x32\...\Python 2.7 - nose 1.3.3-5) (Version: 1.3.3-5 - pythonxy)
Python 2.7 - numexpr 2.4.0-7 (HKLM-x32\...\Python 2.7 - numexpr 2.4.0-7) (Version: 2.4.0-7 - pythonxy)
Python 2.7 - numpy 1.8.1-6 (HKLM-x32\...\Python 2.7 - numpy 1.8.1-6) (Version: 1.8.1-6 - pythonxy)
Python 2.7 - OpenSSL 0.14-3 (HKLM-x32\...\Python 2.7 - OpenSSL 0.14-3) (Version: 0.14-3 - pythonxy)
Python 2.7 - pandas 0.13.1-8 (HKLM-x32\...\Python 2.7 - pandas 0.13.1-8) (Version: 0.13.1-8 - pythonxy)
Python 2.7 - paramiko 1.14.0-9 (HKLM-x32\...\Python 2.7 - paramiko 1.14.0-9) (Version: 1.14.0-9 - pythonxy)
Python 2.7 - patsy 0.2.1-1 (HKLM-x32\...\Python 2.7 - patsy 0.2.1-1) (Version: 0.2.1-1 - pythonxy)
Python 2.7 - PIL 2.4.0-8 (HKLM-x32\...\Python 2.7 - PIL 2.4.0-8) (Version: 2.4.0-8 - pythonxy)
Python 2.7 - pip 1.5.6-10 (HKLM-x32\...\Python 2.7 - pip 1.5.6-10) (Version: 1.5.6-10 - pythonxy)
Python 2.7 - ply 3.4 (HKLM-x32\...\Python 2.7 - ply 3.4) (Version: 3.4 - pythonxy)
Python 2.7 - psutil 2.1.1-10 (HKLM-x32\...\Python 2.7 - psutil 2.1.1-10) (Version: 2.1.1-10 - pythonxy)
Python 2.7 - py2exe 0.6.9 (HKLM-x32\...\Python 2.7 - py2exe 0.6.9) (Version: 0.6.9 - pythonxy)
Python 2.7 - pyaudio 0.2.8-2 (HKLM-x32\...\Python 2.7 - pyaudio 0.2.8-2) (Version: 0.2.8-2 - pythonxy)
Python 2.7 - pycparser 2.10-2 (HKLM-x32\...\Python 2.7 - pycparser 2.10-2) (Version: 2.10-2 - pythonxy)
Python 2.7 - pycrypto 2.6.1-2 (HKLM-x32\...\Python 2.7 - pycrypto 2.6.1-2) (Version: 2.6.1-2 - pythonxy)
Python 2.7 - pygments 1.6-1 (HKLM-x32\...\Python 2.7 - pygments 1.6-1) (Version: 1.6-1 - pythonxy)
Python 2.7 - PyICU 1.7-3 (HKLM-x32\...\Python 2.7 - PyICU 1.7-3) (Version: 1.7-3 - pythonxy)
Python 2.7 - pylint 1.2.1-11 (HKLM-x32\...\Python 2.7 - pylint 1.2.1-11) (Version: 1.2.1-11 - pythonxy)
Python 2.7 - PyOpenGL 3.0.2-3 (HKLM-x32\...\Python 2.7 - PyOpenGL 3.0.2-3) (Version: 3.0.2-3 - pythonxy)
Python 2.7 - pyparsing 2.0.2-3 (HKLM-x32\...\Python 2.7 - pyparsing 2.0.2-3) (Version: 2.0.2-3 - pythonxy)
Python 2.7 - PyQt4 4.9.6-4 (HKLM-x32\...\Python 2.7 - PyQt4 4.9.6-4) (Version: 4.9.6-4 - pythonxy)
Python 2.7 - pyreadline 2.0.3-2 (HKLM-x32\...\Python 2.7 - pyreadline 2.0.3-2) (Version: 2.0.3-2 - pythonxy)
Python 2.7 - pytables 3.1.1-5 (HKLM-x32\...\Python 2.7 - pytables 3.1.1-5) (Version: 3.1.1-5 - pythonxy)
Python 2.7 - pywin32 219.0-3 (HKLM-x32\...\Python 2.7 - pywin32 219.0-3) (Version: 219.0-3 - pythonxy)
Python 2.7 - pyyaml 3.11-2 (HKLM-x32\...\Python 2.7 - pyyaml 3.11-2) (Version: 3.11-2 - pythonxy)
Python 2.7 - pyzmq 14.3.0-9 (HKLM-x32\...\Python 2.7 - pyzmq 14.3.0-9) (Version: 14.3.0-9 - pythonxy)
Python 2.7 - reportlab 3.1.10-3 (HKLM-x32\...\Python 2.7 - reportlab 3.1.10-3) (Version: 3.1.10-3 - pythonxy)
Python 2.7 - requests 2.3.0-2 (HKLM-x32\...\Python 2.7 - requests 2.3.0-2) (Version: 2.3.0-2 - pythonxy)
Python 2.7 - scipy 0.14.0-7 (HKLM-x32\...\Python 2.7 - scipy 0.14.0-7) (Version: 0.14.0-7 - pythonxy)
Python 2.7 - setuptools 3.6-19 (HKLM-x32\...\Python 2.7 - setuptools 3.6-19) (Version: 3.6-19 - pythonxy)
Python 2.7 - sphinx 1.2.2-6 (HKLM-x32\...\Python 2.7 - sphinx 1.2.2-6) (Version: 1.2.2-6 - pythonxy)
Python 2.7 - spyder 2.2.5-12 (HKLM-x32\...\Python 2.7 - spyder 2.2.5-12) (Version: 2.2.5-12 - pythonxy)
Python 2.7 - sqlalchemy 0.9.4-12 (HKLM-x32\...\Python 2.7 - sqlalchemy 0.9.4-12) (Version: 0.9.4-12 - pythonxy)
Python 2.7 - statsmodels 0.5.0-1 (HKLM-x32\...\Python 2.7 - statsmodels 0.5.0-1) (Version: 0.5.0-1 - pythonxy)
Python 2.7 - tornado 3.2.1-6 (HKLM-x32\...\Python 2.7 - tornado 3.2.1-6) (Version: 3.2.1-6 - pythonxy)
Python 2.7 - veusz 1.21-10 (HKLM-x32\...\Python 2.7 - veusz 1.21-10) (Version: 1.21-10 - pythonxy)
Python 2.7 - virtualenv 1.11.6-9 (HKLM-x32\...\Python 2.7 - virtualenv 1.11.6-9) (Version: 1.11.6-9 - pythonxy)
Python 2.7 - vitables 2.1.0.3 (HKLM-x32\...\Python 2.7 - vitables 2.1.0.3) (Version: 2.1.0.3 - pythonxy)
Python 2.7 - wxPython 2.8.12.1-1 (HKLM-x32\...\Python 2.7 - wxPython 2.8.12.1-1) (Version: 2.8.12.1-1 - pythonxy)
Python 2.7 - xy 1.3.3-5 (HKLM-x32\...\Python 2.7 - xy 1.3.3-5) (Version: 1.3.3-5 - pythonxy)
Python 2.7.6 (x32 Version: 2.7.6150 - Python Software Foundation) Hidden
Python(x,y) - console 2.0.148-9 (HKLM-x32\...\Python(x,y) - console 2.0.148-9) (Version: 2.0.148-9 - pythonxy)
Python(x,y) - mingw 4.8.1-3 (HKLM-x32\...\Python(x,y) - mingw 4.8.1-3) (Version: 4.8.1-3 - pythonxy)
Python(x,y) - SciTE 3.3.2-3 (HKLM-x32\...\Python(x,y) - SciTE 3.3.2-3) (Version: 3.3.2-3 - pythonxy)
Python(x,y) - xydoc 1.0.5.1 (HKLM-x32\...\Python(x,y) - xydoc 1.0.5.1) (Version: 1.0.5.1 - pythonxy)
Python(x,y) (HKLM-x32\...\Python(x,y)) (Version: 2.7.6.1 - Python(x,y))
QuickTime (HKLM-x32\...\{B67BAFBA-4C9F-48FA-9496-933E3B255044}) (Version: 7.74.80.86 - Apple Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.67.1226.2012 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6923 - Realtek Semiconductor Corp.)
Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
Scan (x32 Version: 140.0.80.000 - Hewlett-Packard) Hidden
Securita Scout (HKLM-x32\...\Securita Scout) (Version: - ) <==== ATTENTION
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version: - Microsoft)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (Version: - Microsoft) Hidden
Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP)
Sigel Professional Label Software SE (HKLM-x32\...\Sigel Professional Label Software SE) (Version: - )
Skype™ 6.22 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.22.107 - Skype Technologies S.A.)
Slik Subversion 1.8.5 (x64) (HKLM\...\{2B07B2AB-B3C7-4879-A50A-109284FF208C}) (Version: 1.8.5.0 - SlikSvn & The SharpSvn Project)
SmartWebPrinting (x32 Version: 140.0.186.000 - Hewlett-Packard) Hidden
SolutionCenter (x32 Version: 140.0.214.000 - Hewlett-Packard) Hidden
Status (x32 Version: 140.0.256.000 - Hewlett-Packard) Hidden
TAP-Windows 9.9.2 (HKLM\...\TAP-Windows) (Version: 9.9.2 - )
TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.36897 - TeamViewer)
Toolbox (x32 Version: 140.0.428.000 - Hewlett-Packard) Hidden
TortoiseSVN 1.8.5.25224 (64 bit) (HKLM\...\{57FCA88C-D94A-490A-B8C6-8ECC3A9A48D2}) (Version: 1.8.25224 - TortoiseSVN)
TrayApp (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden
WebReg (x32 Version: 140.0.212.017 - Hewlett-Packard) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3522.0110 - Microsoft Corporation)
WordToPDF 2.9 (HKLM-x32\...\WordToPDF_is1) (Version: 2.9 - Mario Noack)
==================== Custom CLSID (selected items): ==========================
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
CustomCLSID: HKU\S-1-5-21-802349399-3829478316-1411510260-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Barbara\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-802349399-3829478316-1411510260-1001_Classes\CLSID\{D45F043D-F17F-4e8a-8435-70971D9FA46D}\InprocServer32 -> C:\Program Files\Blender Foundation\Blender\BlendThumb64.dll ()
CustomCLSID: HKU\S-1-5-21-802349399-3829478316-1411510260-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Barbara\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-802349399-3829478316-1411510260-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Barbara\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-802349399-3829478316-1411510260-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Barbara\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-802349399-3829478316-1411510260-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Barbara\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-802349399-3829478316-1411510260-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Barbara\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-802349399-3829478316-1411510260-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Barbara\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-802349399-3829478316-1411510260-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Barbara\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-802349399-3829478316-1411510260-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Barbara\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-802349399-3829478316-1411510260-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Barbara\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
==================== Restore Points =========================
17-02-2015 20:00:35 Windows Update
18-02-2015 18:09:36 Removed Citavi 4.
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 03:34 - 2015-02-18 18:02 - 00000035 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
Task: {60D37DDA-125C-4DBB-A3E4-B1A47FCF2D24} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation)
Task: {66C6612A-05ED-45C3-ACBE-E7D9C8B42F89} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2012-06-14] (Intel Corporation)
Task: {686EAAD2-B192-4F8B-9DFE-A0E842270864} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {78877BBE-AAAE-437A-950C-266C1B7DA778} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-05] (Adobe Systems Incorporated)
Task: {88D08EAC-ACDE-4974-8BCE-643E17A7A5F4} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2012-06-14] (Intel Corporation)
Task: {8E05D3FD-E446-411B-B9E0-DCD8AB3A4BD6} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-07] (Google Inc.)
Task: {A3166268-7C80-43F3-BCAD-3BDACA05D472} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {AA2C8F48-1CDF-4CD4-BB86-69D7B4A4C778} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-11-22] (Piriform Ltd)
Task: {B33B3B35-8E4B-4F50-AAB6-7432CDF4B490} - System32\Tasks\Intel(R) Small Business Advantage\Notifier => C:\Program Files\Intel\Intel(R) Small Business Advantage\UI\SBA_Notifier.exe [2013-03-13] (Intel Corporation)
Task: {C3316447-9376-4FF0-B37B-0D994F82E262} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {D2DFC29C-6C1D-4DF5-9D82-EB9E38D70D13} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-07] (Google Inc.)
Task: {D8D5DE0B-3F82-43EE-924F-FB7EBEA348A7} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated)
Task: {E9DD69E6-1794-4A7D-AAD2-E088894ECA18} - System32\Tasks\RPC => C:\Program Files (x86)\RPC\Reg Pro Cleaner\RegProCleaner.exe [2014-11-26] ()
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) ==============
2013-06-27 17:21 - 2013-05-12 21:34 - 00087328 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2013-02-13 09:35 - 2013-02-13 09:35 - 00180200 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
2013-02-13 09:35 - 2013-02-13 09:35 - 00060392 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\NetworkHeuristic.dll
2014-02-18 20:16 - 2014-02-18 20:16 - 00076016 _____ () C:\Program Files\TortoiseSVN\bin\TortoiseStub.dll
2014-02-18 20:16 - 2014-02-18 20:16 - 00088816 _____ () C:\Program Files\TortoiseSVN\bin\libsasl.dll
2013-08-29 01:23 - 2013-08-29 01:23 - 01861968 _____ () C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
2014-02-18 19:32 - 2014-02-18 19:32 - 00065776 _____ () C:\Program Files\TortoiseSVN\bin\TortoiseStub32.dll
2014-02-18 19:32 - 2014-02-18 19:32 - 00071920 _____ () C:\Program Files\TortoiseSVN\bin\libsasl32.dll
2013-08-29 01:25 - 2013-08-29 01:25 - 00100688 _____ () C:\Program Files (x86)\DivX\DivX Update\DivXUpdateCheck.dll
2015-02-05 23:55 - 2015-02-04 10:02 - 09170760 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\pdf.dll
2015-02-05 23:55 - 2015-02-04 10:02 - 14965064 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\PepperFlash\pepflashplayer.dll
2013-10-09 12:48 - 2013-05-17 00:05 - 01199576 ____R () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2015-01-15 09:57 - 2015-01-15 09:57 - 03347056 _____ () C:\Program Files (x86)\Mozilla Thunderbird\mozjs.dll
2015-01-15 09:57 - 2015-01-15 09:57 - 00158832 _____ () C:\Program Files (x86)\Mozilla Thunderbird\NSLDAP32V60.dll
2015-01-15 09:57 - 2015-01-15 09:57 - 00023152 _____ () C:\Program Files (x86)\Mozilla Thunderbird\NSLDAPPR32V60.dll
2015-02-18 08:45 - 2014-02-10 12:44 - 04592128 _____ () C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\SwiftShader\3.2.6.45159\libglesv2.dll
2015-02-18 08:45 - 2014-02-10 12:44 - 00112128 _____ () C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\SwiftShader\3.2.6.45159\libegl.dll
==================== Alternate Data Streams (whitelisted) =========
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
==================== Safe Mode (whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== EXE Association (whitelisted) ===============
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-802349399-3829478316-1411510260-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Barbara\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.0.1
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
==================== Accounts: =============================
Administrator (S-1-5-21-802349399-3829478316-1411510260-500 - Administrator - Disabled)
Barbara (S-1-5-21-802349399-3829478316-1411510260-1001 - Administrator - Enabled) => C:\Users\Barbara
Gast (S-1-5-21-802349399-3829478316-1411510260-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-802349399-3829478316-1411510260-1003 - Limited - Enabled)
UpdatusUser (S-1-5-21-802349399-3829478316-1411510260-1000 - Limited - Enabled) => C:\Users\UpdatusUser
==================== Faulty Device Manager Devices =============
Name: Arduino USB Serial Light Adapter (COM4)
Description: Arduino USB Serial Light Adapter
Class Guid: {4d36e978-e325-11ce-bfc1-08002be10318}
Manufacturer: Arduino LLC (www.arduino.cc)
Service: usbser
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (02/19/2015 07:59:34 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: )
Description: Subscription licensing service failed: -1073418231
Error: (02/18/2015 06:08:04 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: RegProCleaner.exe, Version: 1.0.0.0, Zeitstempel: 0x5474caf6
Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7601.18409, Zeitstempel: 0x53159a86
Ausnahmecode: 0xe0434352
Fehleroffset: 0x0000c42d
ID des fehlerhaften Prozesses: 0x1384
Startzeit der fehlerhaften Anwendung: 0xRegProCleaner.exe0
Pfad der fehlerhaften Anwendung: RegProCleaner.exe1
Pfad des fehlerhaften Moduls: RegProCleaner.exe2
Berichtskennung: RegProCleaner.exe3
Error: (02/18/2015 06:08:03 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Application: RegProCleaner.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: System.ArgumentOutOfRangeException
Stack:
at System.Windows.Media.VisualCollection.get_Item(Int32)
at System.Windows.Controls.UIElementCollection.get_Item(Int32)
at RegProCleaner.main.setting_click(System.Object, System.Windows.RoutedEventArgs)
at System.Windows.RoutedEventHandlerInfo.InvokeHandler(System.Object, System.Windows.RoutedEventArgs)
at System.Windows.EventRoute.InvokeHandlersImpl(System.Object, System.Windows.RoutedEventArgs, Boolean)
at System.Windows.UIElement.RaiseEventImpl(System.Windows.DependencyObject, System.Windows.RoutedEventArgs)
at System.Windows.UIElement.RaiseEvent(System.Windows.RoutedEventArgs)
at System.Windows.Controls.MenuItem.InvokeClickAfterRender(System.Object)
at System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32)
at MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
at System.Windows.Threading.DispatcherOperation.InvokeImpl()
at System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(System.Object)
at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
at System.Windows.Threading.DispatcherOperation.Invoke()
at System.Windows.Threading.Dispatcher.ProcessQueue()
at System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
at MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
at MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object)
at System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32)
at MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
at System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32)
at MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr)
at MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef)
at System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame)
at System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame)
at System.Windows.Threading.Dispatcher.Run()
at System.Windows.Application.RunDispatcher(System.Object)
at System.Windows.Application.RunInternal(System.Windows.Window)
at System.Windows.Application.Run(System.Windows.Window)
at System.Windows.Application.Run()
at RegProCleaner.App.Main()
Error: (02/18/2015 06:05:27 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (02/18/2015 08:26:33 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: )
Description: Subscription licensing service failed: -1073418231
Error: (02/18/2015 08:17:20 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
System errors:
=============
Microsoft Office Sessions:
=========================
Error: (02/19/2015 07:59:34 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: )
Description: Subscription licensing service failed: -1073418231
Error: (02/18/2015 06:08:04 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: RegProCleaner.exe1.0.0.05474caf6KERNELBASE.dll6.1.7601.1840953159a86e04343520000c42d138401d04b9d6cd6a99eC:\Program Files (x86)\RPC\Reg Pro Cleaner\RegProCleaner.exeC:\Windows\syswow64\KERNELBASE.dllb34c8a57-b790-11e4-8252-d43d7ef5aeaa
Error: (02/18/2015 06:08:03 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Application: RegProCleaner.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: System.ArgumentOutOfRangeException
Stack:
at System.Windows.Media.VisualCollection.get_Item(Int32)
at System.Windows.Controls.UIElementCollection.get_Item(Int32)
at RegProCleaner.main.setting_click(System.Object, System.Windows.RoutedEventArgs)
at System.Windows.RoutedEventHandlerInfo.InvokeHandler(System.Object, System.Windows.RoutedEventArgs)
at System.Windows.EventRoute.InvokeHandlersImpl(System.Object, System.Windows.RoutedEventArgs, Boolean)
at System.Windows.UIElement.RaiseEventImpl(System.Windows.DependencyObject, System.Windows.RoutedEventArgs)
at System.Windows.UIElement.RaiseEvent(System.Windows.RoutedEventArgs)
at System.Windows.Controls.MenuItem.InvokeClickAfterRender(System.Object)
at System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32)
at MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
at System.Windows.Threading.DispatcherOperation.InvokeImpl()
at System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(System.Object)
at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
at System.Windows.Threading.DispatcherOperation.Invoke()
at System.Windows.Threading.Dispatcher.ProcessQueue()
at System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
at MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
at MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object)
at System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32)
at MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
at System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32)
at MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr)
at MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef)
at System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame)
at System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame)
at System.Windows.Threading.Dispatcher.Run()
at System.Windows.Application.RunDispatcher(System.Object)
at System.Windows.Application.RunInternal(System.Windows.Window)
at System.Windows.Application.Run(System.Windows.Window)
at System.Windows.Application.Run()
at RegProCleaner.App.Main()
Error: (02/18/2015 06:05:27 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (02/18/2015 08:26:33 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: )
Description: Subscription licensing service failed: -1073418231
Error: (02/18/2015 08:17:20 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
CodeIntegrity Errors:
===================================
Date: 2014-10-20 07:39:29.491
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\PCTRunner\pcwtc64f.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-10-20 07:39:29.414
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\PCTRunner\pcwtc64f.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-10-20 07:39:29.337
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\PCTRunner\pcwtc64f.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-10-18 04:01:22.606
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\PCTRunner\pcwtc64f.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-10-18 04:01:22.528
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\PCTRunner\pcwtc64f.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-10-18 04:01:22.466
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\PCTRunner\pcwtc64f.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-10-15 07:32:05.589
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\PCTRunner\pcwtc64f.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-10-15 07:32:05.518
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\PCTRunner\pcwtc64f.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-10-15 07:32:05.438
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\PCTRunner\pcwtc64f.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-10-13 13:13:17.105
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\PCTRunner\pcwtc64f.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i5-4570 CPU @ 3.20GHz
Percentage of memory in use: 24%
Total physical RAM: 8120.07 MB
Available physical RAM: 6112.48 MB
Total Pagefile: 16238.34 MB
Available Pagefile: 12973.66 MB
Total Virtual: 8192 MB
Available Virtual: 8191.83 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:1862.92 GB) (Free:1528.47 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 80EB2DD6)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=1862.9 GB) - (Type=07 NTFS)
==================== End Of Log ============================ |