Trojaner-Board

Trojaner-Board (https://www.trojaner-board.de/)
-   Plagegeister aller Art und deren Bekämpfung (https://www.trojaner-board.de/plagegeister-aller-art-deren-bekaempfung/)
-   -   Mal/Iframe-AN ein Virus? (https://www.trojaner-board.de/164204-mal-iframe-virus.html)

Martinovic 19.02.2015 19:45

Mal/Iframe-AN ein Virus?
 
Hallo,

Sophos findet bei mir folgende malware:
Mal/Iframe-AN.
Sophos findet den Threat zwar, kann ihn aber nicht löschen.

Andere Antivirusprogramme finden hingegen nichts.
Ist Mal/Iframe-AN ein Virus? Ist der gefährlich?
Wie werde ich Ihn los?

schrauber 19.02.2015 20:13

Hi,

Logfiles von dem fund?

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)


Martinovic 20.02.2015 16:00

....


FRST Logfile:

FRST Logfile:

FRST Logfile:
Code:

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 18-02-2015 01
Ran by Martin_N (administrator) on OEM-HP on 20-02-2015 15:44:31
Running from C:\Users\Martin_N\Desktop
Loaded Profiles: Martin_N (Available profiles: Martin_N)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_21dba265e7e67cda\stacsv64.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_21dba265e7e67cda\AESTSr64.exe
(LSI Corporation) C:\Program Files\LSI SoftModem\agr64svc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Motorola, Inc.) C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\VS7DEBUG\MDM.EXE
() C:\Program Files (x86)\CDBurnerXP\NMSAccessU.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Motorola, Inc.) C:\Program Files\Motorola\Bluetooth\obexsrv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Macrovision Europe Ltd.) C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Program Files\Microsoft IntelliPoint\ipoint.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
(Samsung) C:\Program Files (x86)\Samsung\Kies\Kies.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Samsung) C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
(Motorola, Inc.) C:\Program Files\Motorola\Bluetooth\audiosrv.exe
(Nullsoft, Inc.) C:\Program Files (x86)\Winamp\winampa.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Motorola, Inc.) C:\Program Files\Motorola\Bluetooth\btplayerctrl.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\OFFICE11\OUTLOOK.EXE
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\OFFICE11\WINWORD.EXE
(Microsoft Corporation) C:\Windows\splwow64.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil64_16_0_0_305_ActiveX.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [487424 2010-01-29] (IDT, Inc.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2174760 2010-06-04] (Synaptics Incorporated)
HKLM\...\Run: [IntelliPoint] => c:\Program Files\Microsoft IntelliPoint\ipoint.exe [2327952 2010-07-21] (Microsoft Corporation)
HKLM\...\Run: [IAAnotif] => C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2010-01-08] (Intel Corporation)
HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files\Motorola\Bluetooth\btmshell.dll",TrayApp
HKLM-x32\...\Run: [WirelessAssistant] => C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [499768 2009-09-01] (Hewlett-Packard)
HKLM-x32\...\Run: [WinampAgent] => C:\Program Files (x86)\Winamp\winampa.exe [74752 2011-12-09] (Nullsoft, Inc.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2011-10-24] (Apple Inc.)
HKLM-x32\...\Run: [QLBController] => C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe [256056 2010-10-01] (Hewlett-Packard Company)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59240 2011-09-27] (Apple Inc.)
HKLM-x32\...\Run: [KiesTrayAgent] => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [311152 2013-05-23] (Samsung Electronics Co., Ltd.)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [702768 2014-12-16] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1021128 2014-11-20] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKLM-x32\...\Run: [] => [X]
HKLM\...\RunOnce: [NCPluginUpdater] => C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe [21720 2015-01-28] (Hewlett-Packard)
Winlogon\Notify\igfxcui: C:\windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-1488533785-2507820179-1828641165-1005\...\Run: [HPAdvisorDock] => C:\Program Files (x86)\Hewlett-Packard\HP Advisor\DOCK\HPAdvisorDock.exe
HKU\S-1-5-21-1488533785-2507820179-1828641165-1005\...\Run: [LightScribe Control Panel] => C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2736128 2011-03-04] (Hewlett-Packard Company)
HKU\S-1-5-21-1488533785-2507820179-1828641165-1005\...\Run: [KiesPreload] => C:\Program Files (x86)\Samsung\Kies\Kies.exe [1561968 2013-05-23] (Samsung)
HKU\S-1-5-21-1488533785-2507820179-1828641165-1005\...\Run: [KiesAirMessage] => C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup
HKU\S-1-5-21-1488533785-2507820179-1828641165-1005\...\Run: [] => C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [1106288 2013-05-23] (Samsung)
HKU\S-1-5-21-1488533785-2507820179-1828641165-1005\...\RunOnce: [Adobe Speed Launcher] => 1424372314
HKU\S-1-5-21-1488533785-2507820179-1828641165-1005\...\MountPoints2: {eba94779-f24a-11e0-a507-1cc1deaded33} - D:\LaunchU3.exe -a
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} =>  No File

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-1488533785-2507820179-1828641165-1005\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/
HKU\S-1-5-21-1488533785-2507820179-1828641165-1005\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.bing.com
SearchScopes: HKLM -> DefaultScope {3419A091-2E44-40B3-A50D-BEA235EBEE82} URL = hxxp://www.bing.com/search?q={searchTerms}&form=CMNTDF&pc=CMNTDF&src=IE-SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {3419A091-2E44-40B3-A50D-BEA235EBEE82} URL = hxxp://www.bing.com/search?q={searchTerms}&form=CMNTDF&pc=CMNTDF&src=IE-SearchBox
SearchScopes: HKLM-x32 -> DefaultScope {3419A091-2E44-40B3-A50D-BEA235EBEE82} URL = hxxp://search.chatzum.com/?orig=DS&affid=62&cztbid=349440570&q={searchTerms}
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {3419A091-2E44-40B3-A50D-BEA235EBEE82} URL = hxxp://search.chatzum.com/?orig=DS&affid=62&cztbid=349440570&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1488533785-2507820179-1828641165-1005 -> DefaultScope {3419A091-2E44-40B3-A50D-BEA235EBEE82} URL = hxxp://search.chatzum.com/?orig=DS&affid=62&cztbid=349440570&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1488533785-2507820179-1828641165-1005 -> {3419A091-2E44-40B3-A50D-BEA235EBEE82} URL = hxxp://search.chatzum.com/?orig=DS&affid=62&cztbid=349440570&q={searchTerms}
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre6\bin\jp2ssv.dll No File
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
DPF: HKLM-x32 {166B1BCA-3F9C-11CF-8075-444553540000} hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1

FireFox:
========
FF ProfilePath: C:\Users\Martin_N\AppData\Roaming\Mozilla\Firefox\Profiles\p33xhmqi.default
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\windows\system32\Adobe\Director\np32dsw.dll No File
FF Plugin-x32: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @protectdisc.com/NPPDLicenseHelper -> C:\Program Files (x86)\ProtectDisc\License Helper\NPPDLicenseHelper.dll ()
FF Plugin-x32: @videolan.org/vlc,version=2.0.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

Chrome:
=======
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - No Path
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2011-10-10]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AESTFilters; C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_21dba265e7e67cda\AESTSr64.exe [89600 2009-03-03] (Andrea Electronics Corporation)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [431920 2014-12-16] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [431920 2014-12-16] (Avira Operations GmbH & Co. KG)
S3 FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [647680 2010-09-29] (Macrovision Europe Ltd.) [File not signed]
R3 FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [1028096 2010-09-29] (Macrovision Europe Ltd.) [File not signed]
R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [86528 2012-09-27] (Hewlett-Packard Company) [File not signed]
R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe [280120 2010-10-01] (Hewlett-Packard Company)
R2 LightScribeService; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [73728 2011-03-04] (Hewlett-Packard Company) [File not signed]
R2 NMSAccess; C:\Program Files (x86)\CDBurnerXP\NMSAccessU.exe [71096 2010-03-04] ()
S3 ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [628736 2010-12-08] (Nokia) [File not signed]
R2 STacSV; C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_21dba265e7e67cda\STacSV64.exe [244736 2010-01-29] (IDT, Inc.)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [119272 2014-10-15] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131608 2014-10-15] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-10-01] (Avira Operations GmbH & Co. KG)
R3 rtsuvc; C:\Windows\System32\DRIVERS\rtsuvc.sys [96384 2010-05-21] (Realtek Semiconductor Corp.)
S3 ssudserd; C:\Windows\System32\DRIVERS\ssudserd.sys [203672 2013-04-03] (DEVGURU Co., LTD.(www.devguru.co.kr))
S3 StarOpen; C:\Windows\System32\Drivers\StarOpen.sys [5504 2009-11-12] ()
S3 StarOpen; C:\Windows\SysWow64\Drivers\StarOpen.sys [7168 2009-11-12] () [File not signed]
S3 cleanhlp; \??\C:\Program Files (x86)\Emsisoft Anti-Malware\cleanhlp64.sys [X]
S3 MBAMSwissArmy; \??\C:\windows\system32\drivers\MBAMSwissArmy.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-02-20 15:44 - 2015-02-20 15:45 - 00016830 _____ () C:\Users\Martin_N\Desktop\FRST.txt
2015-02-20 15:44 - 2015-02-20 15:44 - 00000000 ____D () C:\FRST
2015-02-20 15:43 - 2015-02-20 15:43 - 02086912 _____ (Farbar) C:\Users\Martin_N\Desktop\FRST64.exe
2015-02-19 16:02 - 2015-02-19 16:04 - 00004474 _____ () C:\Users\Martin_N\Desktop\PandaRamsonwareDecrypt.log
2015-02-19 16:01 - 2015-02-19 16:01 - 02760672 _____ () C:\Users\Martin_N\Desktop\pandaunransom.exe
2015-02-19 14:36 - 2015-02-19 14:36 - 00000000 ____D () C:\ProgramData\TEMP
2015-02-19 14:36 - 2015-02-19 14:36 - 00000000 ____D () C:\ProgramData\Licenses
2015-02-19 14:23 - 2015-02-19 14:23 - 00000000 ____D () C:\Users\Martin_N\AppData\Local\Skype
2015-02-19 14:22 - 2015-02-19 14:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-02-19 14:22 - 2015-02-19 14:22 - 00002699 _____ () C:\Users\Public\Desktop\Skype.lnk
2015-02-19 14:20 - 2015-02-19 14:20 - 00003134 _____ () C:\windows\System32\Tasks\{8489A52D-7FCD-43A8-85DC-44D3E869D6F5}
2015-02-18 19:24 - 2015-02-18 19:24 - 00000000 _____ () C:\autoexec.bat
2015-02-17 17:27 - 2015-02-17 17:27 - 00003221 _____ () C:\Users\Martin_N\Desktop\Sophos Virus Removal Tool.lnk
2015-02-17 17:27 - 2015-02-17 17:27 - 00000000 ____D () C:\Users\Martin_N\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sophos
2015-02-17 16:55 - 2015-02-17 17:08 - 91060632 _____ (Sophos Limited) C:\Users\Martin_N\Desktop\Sophos_Virus_Removal_Tool_2.5.exe
2015-02-17 16:26 - 2015-02-17 16:33 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group
2015-02-16 19:41 - 2015-02-17 13:04 - 00000000 ____D () C:\ProgramData\HitmanPro
2015-02-16 00:23 - 2015-02-16 00:23 - 00000000 ____D () C:\ProgramData\Emsisoft
2015-02-15 19:27 - 2015-02-17 16:13 - 00000000 ____D () C:\Program Files (x86)\Emsisoft Anti-Malware
2015-02-13 17:12 - 2015-02-13 17:12 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-02-12 14:43 - 2015-01-23 05:42 - 00814080 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2015-02-12 14:43 - 2015-01-23 05:41 - 06041600 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2015-02-12 14:43 - 2015-01-23 04:43 - 00620032 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2015-02-12 14:43 - 2015-01-23 04:17 - 04300800 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2015-02-11 15:10 - 2015-01-14 06:47 - 00389808 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2015-02-11 15:10 - 2015-01-14 06:09 - 00342712 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2015-02-11 15:10 - 2015-01-12 04:05 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2015-02-11 15:10 - 2015-01-12 04:05 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2015-02-11 15:10 - 2015-01-12 03:49 - 00066560 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2015-02-11 15:10 - 2015-01-12 03:48 - 02885632 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2015-02-11 15:10 - 2015-01-12 03:48 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2015-02-11 15:10 - 2015-01-12 03:40 - 00054784 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2015-02-11 15:10 - 2015-01-12 03:39 - 00034304 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2015-02-11 15:10 - 2015-01-12 03:36 - 00633856 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2015-02-11 15:10 - 2015-01-12 03:34 - 00144384 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2015-02-11 15:10 - 2015-01-12 03:34 - 00114688 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2015-02-11 15:10 - 2015-01-12 03:25 - 19740160 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2015-02-11 15:10 - 2015-01-12 03:25 - 00968704 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2015-02-11 15:10 - 2015-01-12 03:21 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2015-02-11 15:10 - 2015-01-12 03:21 - 00490496 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2015-02-11 15:10 - 2015-01-12 03:13 - 00077824 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2015-02-11 15:10 - 2015-01-12 03:08 - 00503296 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2015-02-11 15:10 - 2015-01-12 03:07 - 00062464 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2015-02-11 15:10 - 2015-01-12 03:07 - 00047616 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2015-02-11 15:10 - 2015-01-12 03:05 - 00064000 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2015-02-11 15:10 - 2015-01-12 03:04 - 00316928 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2015-02-11 15:10 - 2015-01-12 03:02 - 02277888 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2015-02-11 15:10 - 2015-01-12 03:00 - 00047104 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2015-02-11 15:10 - 2015-01-12 02:59 - 00030720 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2015-02-11 15:10 - 2015-01-12 02:57 - 00478208 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2015-02-11 15:10 - 2015-01-12 02:55 - 00115712 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2015-02-11 15:10 - 2015-01-12 02:48 - 00801280 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2015-02-11 15:10 - 2015-01-12 02:48 - 00718848 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2015-02-11 15:10 - 2015-01-12 02:46 - 02125824 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2015-02-11 15:10 - 2015-01-12 02:45 - 00418304 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2015-02-11 15:10 - 2015-01-12 02:43 - 14401024 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2015-02-11 15:10 - 2015-01-12 02:40 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-02-11 15:10 - 2015-01-12 02:36 - 00168960 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2015-02-11 15:10 - 2015-01-12 02:35 - 00076288 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2015-02-11 15:10 - 2015-01-12 02:33 - 00285696 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2015-02-11 15:10 - 2015-01-12 02:23 - 02052608 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2015-02-11 15:10 - 2015-01-12 02:23 - 00688640 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2015-02-11 15:10 - 2015-01-12 02:22 - 01155072 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2015-02-11 15:10 - 2015-01-12 02:14 - 12829184 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2015-02-11 15:10 - 2015-01-12 02:14 - 01548288 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2015-02-11 15:10 - 2015-01-12 02:02 - 00800768 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2015-02-11 15:10 - 2015-01-12 02:00 - 01888256 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2015-02-11 15:10 - 2015-01-12 01:56 - 01307136 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2015-02-11 15:10 - 2015-01-12 01:55 - 00710144 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2015-02-11 15:09 - 2015-02-04 04:16 - 00894976 _____ (Microsoft Corporation) C:\windows\system32\appraiser.dll
2015-02-11 15:09 - 2015-02-04 04:16 - 00762368 _____ (Microsoft Corporation) C:\windows\system32\invagent.dll
2015-02-11 15:09 - 2015-02-04 04:16 - 00609280 _____ (Microsoft Corporation) C:\windows\system32\generaltel.dll
2015-02-11 15:09 - 2015-02-04 04:16 - 00414720 _____ (Microsoft Corporation) C:\windows\system32\devinv.dll
2015-02-11 15:09 - 2015-02-04 04:16 - 00227328 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2015-02-11 15:09 - 2015-02-04 04:16 - 00192000 _____ (Microsoft Corporation) C:\windows\system32\aepic.dll
2015-02-11 15:09 - 2015-02-04 04:13 - 01098752 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2015-02-11 15:09 - 2015-01-28 00:36 - 01239720 _____ (Microsoft Corporation) C:\windows\system32\aitstatic.exe
2015-02-11 15:09 - 2015-01-12 04:09 - 25056256 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2015-02-11 15:09 - 2015-01-12 03:48 - 00584192 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2015-02-11 15:09 - 2015-01-12 03:47 - 00088064 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2015-02-11 15:09 - 2015-01-12 03:08 - 00199680 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2015-02-11 15:09 - 2015-01-12 03:07 - 00092160 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2015-02-11 15:09 - 2015-01-12 02:46 - 01359360 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2015-02-11 15:09 - 2015-01-12 02:27 - 02358272 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2015-02-11 15:09 - 2015-01-10 07:48 - 00728064 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2015-02-11 15:09 - 2015-01-10 07:48 - 00341504 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2015-02-11 15:09 - 2015-01-10 07:48 - 00314880 _____ (Microsoft Corporation) C:\windows\system32\msv1_0.dll
2015-02-11 15:09 - 2015-01-10 07:48 - 00309760 _____ (Microsoft Corporation) C:\windows\system32\ncrypt.dll
2015-02-11 15:09 - 2015-01-10 07:48 - 00210944 _____ (Microsoft Corporation) C:\windows\system32\wdigest.dll
2015-02-11 15:09 - 2015-01-10 07:48 - 00086528 _____ (Microsoft Corporation) C:\windows\system32\TSpkg.dll
2015-02-11 15:09 - 2015-01-10 07:48 - 00022016 _____ (Microsoft Corporation) C:\windows\system32\credssp.dll
2015-02-11 15:09 - 2015-01-10 07:27 - 00550912 _____ (Microsoft Corporation) C:\windows\SysWOW64\kerberos.dll
2015-02-11 15:09 - 2015-01-10 07:27 - 00259584 _____ (Microsoft Corporation) C:\windows\SysWOW64\msv1_0.dll
2015-02-11 15:09 - 2015-01-10 07:27 - 00248832 _____ (Microsoft Corporation) C:\windows\SysWOW64\schannel.dll
2015-02-11 15:09 - 2015-01-10 07:27 - 00221184 _____ (Microsoft Corporation) C:\windows\SysWOW64\ncrypt.dll
2015-02-11 15:09 - 2015-01-10 07:27 - 00172032 _____ (Microsoft Corporation) C:\windows\SysWOW64\wdigest.dll
2015-02-11 15:09 - 2015-01-10 07:27 - 00065536 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSpkg.dll
2015-02-11 15:09 - 2015-01-10 07:27 - 00017408 _____ (Microsoft Corporation) C:\windows\SysWOW64\credssp.dll
2015-02-11 15:04 - 2015-01-15 09:14 - 00155072 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys
2015-02-11 15:04 - 2015-01-15 09:14 - 00095680 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecdd.sys
2015-02-11 15:04 - 2015-01-15 09:09 - 01461760 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll
2015-02-11 15:04 - 2015-01-15 09:09 - 00136192 _____ (Microsoft Corporation) C:\windows\system32\sspicli.dll
2015-02-11 15:04 - 2015-01-15 09:09 - 00031232 _____ (Microsoft Corporation) C:\windows\system32\lsass.exe
2015-02-11 15:04 - 2015-01-15 09:09 - 00029184 _____ (Microsoft Corporation) C:\windows\system32\sspisrv.dll
2015-02-11 15:04 - 2015-01-15 09:09 - 00028160 _____ (Microsoft Corporation) C:\windows\system32\secur32.dll
2015-02-11 15:04 - 2015-01-15 09:08 - 00064000 _____ (Microsoft Corporation) C:\windows\system32\auditpol.exe
2015-02-11 15:04 - 2015-01-15 09:06 - 00146432 _____ (Microsoft Corporation) C:\windows\system32\msaudite.dll
2015-02-11 15:04 - 2015-01-15 09:06 - 00060416 _____ (Microsoft Corporation) C:\windows\system32\msobjs.dll
2015-02-11 15:04 - 2015-01-15 09:04 - 00686080 _____ (Microsoft Corporation) C:\windows\system32\adtschema.dll
2015-02-11 15:04 - 2015-01-15 08:42 - 00050176 _____ (Microsoft Corporation) C:\windows\SysWOW64\auditpol.exe
2015-02-11 15:04 - 2015-01-15 08:42 - 00022016 _____ (Microsoft Corporation) C:\windows\SysWOW64\secur32.dll
2015-02-11 15:04 - 2015-01-15 08:41 - 00096768 _____ (Microsoft Corporation) C:\windows\SysWOW64\sspicli.dll
2015-02-11 15:04 - 2015-01-15 08:39 - 00146432 _____ (Microsoft Corporation) C:\windows\SysWOW64\msaudite.dll
2015-02-11 15:04 - 2015-01-15 08:39 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\msobjs.dll
2015-02-11 15:04 - 2015-01-15 08:37 - 00686080 _____ (Microsoft Corporation) C:\windows\SysWOW64\adtschema.dll
2015-02-11 15:04 - 2015-01-15 05:22 - 00458824 _____ (Microsoft Corporation) C:\windows\system32\Drivers\cng.sys
2015-02-11 15:04 - 2015-01-14 07:09 - 05554112 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2015-02-11 15:04 - 2015-01-14 07:05 - 00503808 _____ (Microsoft Corporation) C:\windows\system32\srcore.dll
2015-02-11 15:04 - 2015-01-14 07:05 - 00050176 _____ (Microsoft Corporation) C:\windows\system32\srclient.dll
2015-02-11 15:04 - 2015-01-14 07:04 - 00296960 _____ (Microsoft Corporation) C:\windows\system32\rstrui.exe
2015-02-11 15:04 - 2015-01-14 06:44 - 03972544 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntkrnlpa.exe
2015-02-11 15:04 - 2015-01-14 06:44 - 03917760 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntoskrnl.exe
2015-02-11 15:04 - 2015-01-14 06:41 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\srclient.dll
2015-02-11 15:04 - 2015-01-13 04:10 - 01424384 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecs.dll
2015-02-11 15:04 - 2015-01-13 03:49 - 01230336 _____ (Microsoft Corporation) C:\windows\SysWOW64\WindowsCodecs.dll
2015-02-11 15:04 - 2014-12-12 06:31 - 01480192 _____ (Microsoft Corporation) C:\windows\system32\crypt32.dll
2015-02-11 15:04 - 2014-12-12 06:07 - 01174528 _____ (Microsoft Corporation) C:\windows\SysWOW64\crypt32.dll
2015-02-11 15:04 - 2014-11-26 04:53 - 00861696 _____ (Microsoft Corporation) C:\windows\system32\oleaut32.dll
2015-02-11 15:04 - 2014-11-26 04:32 - 00571904 _____ (Microsoft Corporation) C:\windows\SysWOW64\oleaut32.dll
2015-02-11 15:04 - 2014-07-07 03:07 - 00229376 _____ (Microsoft Corporation) C:\windows\system32\wintrust.dll
2015-02-11 15:04 - 2014-07-07 03:06 - 00187904 _____ (Microsoft Corporation) C:\windows\system32\cryptsvc.dll
2015-02-11 15:04 - 2014-07-07 02:40 - 00179200 _____ (Microsoft Corporation) C:\windows\SysWOW64\wintrust.dll
2015-02-11 15:04 - 2014-07-07 02:40 - 00143872 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptsvc.dll
2015-02-11 15:03 - 2015-01-09 03:03 - 03201536 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2015-02-11 15:03 - 2014-12-08 04:09 - 00406528 _____ (Microsoft Corporation) C:\windows\system32\scesrv.dll
2015-02-11 15:03 - 2014-12-08 03:46 - 00308224 _____ (Microsoft Corporation) C:\windows\SysWOW64\scesrv.dll
2015-02-10 19:08 - 2015-02-17 17:29 - 00000000 ____D () C:\ProgramData\Sophos
2015-02-10 19:07 - 2015-02-10 19:07 - 00000000 ____D () C:\Program Files (x86)\Sophos
2015-02-10 16:37 - 2015-02-10 16:56 - 00003259 _____ () C:\Users\Martin_N\Desktop\ISTRUZIONI_DECRITTAZIONE.txt
2015-02-10 16:37 - 2015-02-10 16:55 - 00007359 _____ () C:\Users\Martin_N\Desktop\ISTRUZIONI_DECRITTAZIONE.html
2015-02-10 16:37 - 2015-02-10 16:37 - 00000000 ____D () C:\ProgramData\ywynugoxasijikec
2015-02-09 16:00 - 2015-02-09 16:00 - 00000000 ____D () C:\Users\Public\Documents\CrashDump
2015-02-03 18:38 - 2015-02-10 16:37 - 00236808 _____ () C:\Users\Martin_N\Desktop\Eolo Bestellung2015.doc.encrypted

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-02-20 15:41 - 2013-05-08 13:45 - 00000000 ____D () C:\Users\Martin_N\AppData\Roaming\Skype
2015-02-20 15:27 - 2012-05-03 17:46 - 00000884 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2015-02-20 15:23 - 2010-09-29 20:04 - 01820567 _____ () C:\windows\WindowsUpdate.log
2015-02-20 13:50 - 2014-09-14 09:23 - 00003204 _____ () C:\windows\System32\Tasks\HPCeeScheduleForMartin_N
2015-02-20 13:50 - 2014-09-14 09:23 - 00000344 _____ () C:\windows\Tasks\HPCeeScheduleForMartin_N.job
2015-02-19 20:09 - 2009-07-14 05:45 - 00022704 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-02-19 20:09 - 2009-07-14 05:45 - 00022704 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-02-19 19:57 - 2009-07-14 06:08 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2015-02-19 19:57 - 2009-07-14 05:51 - 00179830 _____ () C:\windows\setupact.log
2015-02-19 14:23 - 2010-09-29 20:09 - 00000000 ____D () C:\ProgramData\Skype
2015-02-19 14:22 - 2010-12-24 13:14 - 00000000 ___RD () C:\Program Files (x86)\Skype
2015-02-17 16:34 - 2013-03-29 11:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2015-02-17 16:34 - 2013-03-29 11:04 - 00000000 ____D () C:\ProgramData\Avira
2015-02-17 16:34 - 2013-03-29 11:04 - 00000000 ____D () C:\Program Files (x86)\Avira
2015-02-17 16:13 - 2010-09-10 06:17 - 00425760 _____ () C:\windows\PFRO.log
2015-02-17 14:03 - 2011-11-01 16:30 - 00000000 _____ () C:\windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2015-02-17 14:03 - 2011-01-04 20:47 - 00000052 _____ () C:\windows\SysWOW64\DOErrors.log
2015-02-16 14:19 - 2014-03-04 17:30 - 00000000 ____D () C:\Users\Martin_N\Documents\Studio Niederstätter
2015-02-13 19:08 - 2010-11-22 11:02 - 00000000 ____D () C:\windows\rescache
2015-02-13 17:57 - 2009-07-14 04:20 - 00000000 ____D () C:\windows\tracing
2015-02-12 03:30 - 2009-07-14 05:45 - 00518536 _____ () C:\windows\system32\FNTCACHE.DAT
2015-02-12 03:26 - 2014-12-12 15:01 - 00000000 ____D () C:\windows\system32\appraiser
2015-02-12 03:26 - 2014-05-08 14:33 - 00000000 ___SD () C:\windows\system32\CompatTel
2015-02-12 03:07 - 2013-07-25 18:58 - 00000000 ____D () C:\windows\system32\MRT
2015-02-12 03:03 - 2010-11-22 12:22 - 116773704 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2015-02-10 16:50 - 2013-02-23 11:06 - 00000000 ____D () C:\Users\Martin_N\Documents\Haushaltung_Organisation
2015-02-10 16:50 - 2013-02-23 11:00 - 00025864 _____ () C:\Users\Martin_N\Documents\Handydatei.doc.encrypted
2015-02-10 16:50 - 2013-02-23 11:00 - 00000000 ____D () C:\Users\Martin_N\Documents\Freizeit
2015-02-10 16:45 - 2013-02-23 11:00 - 00000000 ____D () C:\Users\Martin_N\Documents\Eggbauer
2015-02-10 16:44 - 2015-01-02 15:03 - 00000000 ____D () C:\Users\Martin_N\Desktop\2014.12 Hanna_MV
2015-02-10 16:44 - 2013-02-23 11:00 - 00038152 _____ () C:\Users\Martin_N\Documents\Bücherliste.doc.encrypted
2015-02-10 16:44 - 2013-02-23 10:47 - 00000000 ___RD () C:\Users\Martin_N\Archiv
2015-02-10 16:42 - 2009-10-19 23:43 - 00047368 _____ () C:\Thumbs.db.encrypted
2015-02-10 16:37 - 2015-01-18 18:44 - 00060146 _____ () C:\Users\Martin_N\Desktop\Info in WG Wlan.pdf.encrypted
2015-02-10 16:37 - 2015-01-12 16:45 - 00025352 _____ () C:\Users\Martin_N\Desktop\Burnout Werbung.doc.encrypted
2015-02-10 16:37 - 2015-01-04 12:28 - 00586938 _____ () C:\Users\Martin_N\Desktop\niederstaetter_junior.JPG.encrypted
2015-02-10 16:37 - 2015-01-03 19:34 - 00000000 ____D () C:\Users\Martin_N\Desktop\2014.12 Weihnachten Lana
2015-02-10 16:37 - 2015-01-02 14:29 - 00000000 ____D () C:\Users\Martin_N\Desktop\2014.12 hanna
2015-02-10 16:37 - 2015-01-02 11:25 - 00247457 _____ () C:\Users\Martin_N\Desktop\2015.01 Hofmappe Eggbauer S.13-14.pdf.encrypted
2015-02-10 16:37 - 2015-01-01 19:26 - 00026376 _____ () C:\Users\Martin_N\Desktop\Text Familie Verdorfer 2015.doc.encrypted
2015-02-10 16:37 - 2014-09-16 19:18 - 00070463 _____ () C:\Users\Martin_N\Desktop\rechnung depot netzi 2014.pdf.encrypted
2015-02-10 16:37 - 2014-07-11 14:07 - 00313156 _____ () C:\Users\Martin_N\Desktop\MNklein.jpg.encrypted
2015-02-10 16:37 - 2014-07-07 19:54 - 00025352 _____ () C:\Users\Martin_N\Desktop\Liste Kartl Hanna.doc.encrypted
2015-02-10 16:37 - 2013-09-02 14:51 - 00024328 _____ () C:\Users\Martin_N\Desktop\Archiv Geschäftsidee.doc.encrypted
2015-02-10 16:37 - 2013-08-09 10:59 - 00000426 ____H () C:\Users\Martin_N\Desktop\~$ndliche.doc.encrypted
2015-02-10 16:37 - 2013-07-27 15:30 - 00025864 _____ () C:\Users\Martin_N\Desktop\!! m-n-großaka.doc.encrypted
2015-02-10 16:37 - 2013-06-22 11:47 - 00000426 ____H () C:\Users\Martin_N\Desktop\~$ Sport als Methodik in der Jugendarbeit.doc.encrypted
2015-02-08 11:27 - 2012-05-03 17:46 - 00701616 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2015-02-08 11:27 - 2012-05-03 17:46 - 00003822 _____ () C:\windows\System32\Tasks\Adobe Flash Player Updater
2015-02-08 11:27 - 2011-05-21 09:53 - 00071344 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-02-04 17:15 - 2013-02-23 10:33 - 00000000 ____D () C:\Users\Martin_N
2015-01-21 17:57 - 2015-01-20 19:23 - 00000000 ____D () C:\Users\Martin_N\AppData\Roaming\Dropbox

==================== Files in the root of some directories =======

2011-12-11 15:38 - 2011-12-11 15:38 - 0092728 _____ (Un4seen Developments) C:\Program Files\bass.dll
2011-12-11 15:38 - 2011-12-11 15:38 - 5599232 _____ (NVIDIA Corporation) C:\Program Files\cg.dll
2011-12-11 15:38 - 2011-12-11 15:38 - 1019904 _____ (NVIDIA Corporation) C:\Program Files\cgD3D9.dll
2011-12-11 15:38 - 2011-12-11 15:38 - 0311296 _____ (NVIDIA Corporation) C:\Program Files\cgGL.dll
2011-12-11 15:38 - 2011-12-11 15:39 - 5238784 _____ () C:\Program Files\Game.exe
2011-12-11 15:39 - 2011-12-11 15:42 - 0001788 _____ () C:\Program Files\game.log
2011-12-11 15:38 - 2011-12-11 15:38 - 0110592 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Program Files\OpenAL32.dll
2009-09-18 15:46 - 2009-09-18 15:46 - 0876544 _____ (STLport Consulting, Inc.) C:\Program Files\stlport.5.0.dll
2011-11-24 18:34 - 2011-11-24 18:34 - 0495616 _____ () C:\Program Files\Updater.exe
2011-12-11 15:37 - 2011-12-11 15:42 - 0001434 _____ () C:\Program Files\watchdog.log
2013-09-04 16:41 - 2013-09-04 16:41 - 0004096 ____H () C:\Users\Martin_N\AppData\Local\keyfile3.drm
2010-12-24 13:15 - 2010-12-24 13:15 - 0000056 ____H () C:\ProgramData\ezsidmv.dat
2010-09-10 06:18 - 2010-09-10 06:18 - 0000194 _____ () C:\ProgramData\HPWALog.txt

Some content of TEMP:
====================
C:\Users\Martin_N\AppData\Local\Temp\1wkvgjo3.dll
C:\Users\Martin_N\AppData\Local\Temp\4f1zpe2y.dll
C:\Users\Martin_N\AppData\Local\Temp\AskSLib.dll
C:\Users\Martin_N\AppData\Local\Temp\avgnt.exe
C:\Users\Martin_N\AppData\Local\Temp\cgihtrfq.dll
C:\Users\Martin_N\AppData\Local\Temp\chatzum_softonic_yahoo_62_v5.exe
C:\Users\Martin_N\AppData\Local\Temp\ek45t5vc.dll
C:\Users\Martin_N\AppData\Local\Temp\f050wxdf.dll
C:\Users\Martin_N\AppData\Local\Temp\hf550qho.dll
C:\Users\Martin_N\AppData\Local\Temp\itq3zozj.dll
C:\Users\Martin_N\AppData\Local\Temp\jre-7u15-windows-i586-iftw.exe
C:\Users\Martin_N\AppData\Local\Temp\jre-7u17-windows-i586-iftw.exe
C:\Users\Martin_N\AppData\Local\Temp\jre-7u45-windows-i586-iftw.exe
C:\Users\Martin_N\AppData\Local\Temp\jre-7u51-windows-i586-iftw.exe
C:\Users\Martin_N\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe
C:\Users\Martin_N\AppData\Local\Temp\jre-7u67-windows-i586-iftw.exe
C:\Users\Martin_N\AppData\Local\Temp\jre-7u71-windows-i586-iftw.exe
C:\Users\Martin_N\AppData\Local\Temp\mnl44yx0.dll
C:\Users\Martin_N\AppData\Local\Temp\ni0lxptj.dll
C:\Users\Martin_N\AppData\Local\Temp\s5pgny2k.dll
C:\Users\Martin_N\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Martin_N\AppData\Local\Temp\sp58915.exe
C:\Users\Martin_N\AppData\Local\Temp\u5hk1wv3.dll
C:\Users\Martin_N\AppData\Local\Temp\UninstallHPSA.exe
C:\Users\Martin_N\AppData\Local\Temp\vnjczmkj.dll
C:\Users\Martin_N\AppData\Local\Temp\vshe5ug2.dll
C:\Users\Martin_N\AppData\Local\Temp\vtthtluw.dll
C:\Users\Martin_N\AppData\Local\Temp\wbqqzmf1.dll
C:\Users\Martin_N\AppData\Local\Temp\zxbocvb5.dll
C:\Users\Martin_N\AppData\Local\Temp\_unps.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-02-13 00:58

==================== End Of Log ============================

--- --- ---

--- --- ---

--- --- ---

Code:

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 18-02-2015 01
Ran by Martin_N at 2015-02-20 15:45:31
Running from C:\Users\Martin_N\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avira Desktop (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AS: Avira Desktop (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 4.65 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0465-000001000000}) (Version: 4.65.00.0 - Igor Pavlov)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.4.0.2540 - Adobe Systems Incorporated)
Adobe Download Assistant (HKLM-x32\...\com.adobe.downloadassistant.AdobeDownloadAssistant) (Version: 1.2.5 - Adobe Systems Incorporated)
Adobe Flash Player 16 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.10) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated)
Adobe Shockwave Player 11.5 (HKLM-x32\...\Adobe Shockwave Player) (Version: 11.5.9.620 - Adobe Systems, Inc.)
Apple Application Support (HKLM-x32\...\{A83279FD-CA4B-4206-9535-90974DE76654}) (Version: 2.1.5 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Avira Free Antivirus (HKLM-x32\...\Avira AntiVir Desktop) (Version: 14.0.7.468 - Avira)
Canon iP2500 series (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_iP2500_series) (Version:  - )
Canon iP2500 series Benutzerregistrierung (HKLM-x32\...\Canon iP2500 series Benutzerregistrierung) (Version:  - )
CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.3.7.2356 - CDBurnerXP)
Compatibility Pack für 2007 Office System (HKLM-x32\...\{90120000-0020-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Far Cry (OEM) (HKLM-x32\...\InstallShield_{F400BA3B-B134-4701-8536-68A99CD44F5A}) (Version: 1.00.0000 - Ihr Firmenname)
Far Cry (OEM) (x32 Version: 1.00.0000 - Ihr Firmenname) Hidden
Fotogalerie (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Fotolibro Pixum (HKLM-x32\...\Fotolibro Pixum) (Version:  - )
Free YouTube Download version 3.2.1.320 (HKLM-x32\...\Free YouTube Download_is1) (Version: 3.2.1.320 - DVDVideoSoft Ltd.)
Free YouTube to MP3 Converter version 3.12.1.320 (HKLM-x32\...\Free YouTube to MP3 Converter_is1) (Version: 3.12.1.320 - DVDVideoSoft Ltd.)
Hewlett-Packard ACLM.NET v1.2.1.1 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden
HP Documentation (HKLM-x32\...\{C1DE827D-8A61-4A77-9CCF-31AD84CC1FB6}) (Version: 1.5.1.0 - Hewlett-Packard)
HP ESU for Microsoft Windows 7 (HKLM-x32\...\{206E1EEB-027A-4FC0-B4ED-6E48203BD49A}) (Version: 1.1.1.1 - Hewlett-Packard Company)
HP HotKey Support (HKLM\...\{014C6C60-4916-48F7-916E-E8048E12E9F1}) (Version: 4.0.3.1 - Hewlett-Packard Company)
HP Setup (HKLM-x32\...\{1E6219D4-027E-47EE-AB83-DD2F26E31A32}) (Version: 1.2.3557.3169 - Hewlett-Packard)
HP SoftPaq Download Manager (HKLM-x32\...\{2DA697D7-FED3-4DE2-A174-92A2A12F9688}) (Version: 3.0.5.0 - Hewlett-Packard Company)
HP Software Framework (HKLM-x32\...\{9CD3BB19-993E-469D-9E1F-B57A175C1411}) (Version: 4.0.51.1 - Hewlett-Packard Company)
HP Software Setup (HKLM-x32\...\{04801E42-B1A6-4C52-9F3D-CADB5A050433}) (Version: 7.0.1.6 - Hewlett-Packard Company)
HP Support Assistant (HKLM-x32\...\{EE202411-2C26-49E8-9784-1BC1DBF7DE96}) (Version: 7.0.39.15 - Hewlett-Packard Company)
HP Webcam (HKLM-x32\...\{1D61E881-43CD-447B-9E6B-D2C6138B2862}) (Version: 1.0.25.0 - Roxio)
HP Webcam Driver (HKLM-x32\...\{E0A7ED39-8CD6-4351-93C3-69CCA00D12B4}) (Version: 6.1.7600.0049 - Realtek Semiconductor Corp.)
HP Wireless Assistant (HKLM-x32\...\{1061DF04-CF33-40B0-8360-D07C9BBEB122}) (Version: 3.50.10.1 - Hewlett-Packard)
IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6268.0 - IDT)
Il mio Fotolibro Cewe (HKLM-x32\...\Il mio Fotolibro Cewe) (Version: 5.1.6 - CEWE Stiftung u Co. KGaA)
Intel(R) Graphics Media Accelerator Driver (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2057 - Intel Corporation)
Intel® Matrix Storage Manager (HKLM\...\{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}) (Version:  - Intel Corporation)
Java 7 Update 67 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217040FF}) (Version: 7.0.670 - Oracle)
Junk Mail filter update (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
K-Lite Mega Codec Pack 6.2.0 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 6.2.0 - )
LightScribe System Software (HKLM-x32\...\{E0E55FC1-C53D-4F8D-B14B-B59C312747C8}) (Version: 1.18.22.2 - LightScribe)
loadtbs-2.1 (HKLM-x32\...\loadtbs-2.1) (Version:  - )
LSI HDA Modem (HKLM\...\LSI Soft Modem) (Version: 2.2.98 - LSI Corporation)
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft IntelliPoint 8.0 (HKLM\...\{563F041C-DFDB-437B-A1E8-E141E0906076}) (Version: 8.0.225.0 - Microsoft)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Professional Edition 2003 (HKLM-x32\...\{90110407-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (HKLM\...\{B6E3757B-5E77-3915-866A-CCFC4B8D194C}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 (HKLM\...\{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}) (Version: 8.0.51011 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148 (HKLM\...\{EE936C7A-EA40-31D5-9B65-8E3E089C3828}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 (HKLM\...\{8338783A-0968-3B85-AFC7-BAAE0A63DC50}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Mozilla Firefox 24.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 24.0 (x86 de)) (Version: 24.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 24.0 - Mozilla)
MSVC80_x64_v2 (Version: 1.0.3.0 - Nokia) Hidden
MSVC80_x86_v2 (x32 Version: 1.0.3.0 - Nokia) Hidden
MyFreeCodec (HKU\S-1-5-21-1488533785-2507820179-1828641165-1005\...\MyFreeCodec) (Version:  - )
Nokia Connectivity Cable Driver (HKLM\...\{BC4AE628-81A4-4FC6-863A-7A9BA2E2531F}) (Version: 7.1.32.58 - )
OpenOffice.org 3.0 (HKLM-x32\...\{DCC4BA6D-4790-402E-AFC7-2185F638783E}) (Version: 3.0.9358 - OpenOffice.org)
PC Connectivity Solution (HKLM-x32\...\{D4AEC53C-1720-41D9-B6D7-6A60DE62D444}) (Version: 10.50.2.0 - Nokia)
PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.2.1 - Frank Heindörfer, Philip Chinery)
Protect Disc License Helper 1.0.118 (HKLM-x32\...\Protect Disc License Helper) (Version: 1.0.118 - Protect Disc)
ProtectDisc Driver, Version 11 (HKLM-x32\...\ProtectDisc Driver 11) (Version: 11.0.0.11 - ProtectDisc Software GmbH)
QuickTime (HKLM-x32\...\{7BE15435-2D3E-4B58-867F-9C75BED0208C}) (Version: 7.71.80.42 - Apple Inc.)
quifoto.it (HKLM-x32\...\it.quifoto.editor.001F9DF2D0BAABEB11F42CCEE43224607B61109C.1) (Version: 1.4.6 - myphotobook GmbH)
quifoto.it (x32 Version: 1.4.6 - myphotobook GmbH) Hidden
Ralink Motorola BC4 Bluetooth 3.0+HS Adapter (HKLM\...\Ralink Motorola BC4 Bluetooth 3.0+HS Adapter_is1) (Version: 3.0.41.262 - Motorola, Inc.)
Ralink RT3090 802.11b/g/n WiFi Adapter (HKLM-x32\...\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309B0}) (Version: 1.2.0.27 - Ralink)
Realtek Ethernet Controller All-In-One Windows Driver (HKLM-x32\...\{F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F}) (Version: 1.12.0011 - Realtek)
Roxio Creator Business (HKLM-x32\...\{537BF16E-7412-448C-95D8-846E85A1D817}) (Version: 10.3.56.21 - Roxio)
Samsung Kies (HKLM-x32\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.5.2.13021_10 - Samsung Electronics Co., Ltd.)
Samsung Kies (x32 Version: 2.5.2.13021_10 - Samsung Electronics Co., Ltd.) Hidden
Samsung Story Album Viewer (HKLM-x32\...\InstallShield_{698BBAD8-B116-495D-B879-0F07A533E57F}) (Version: 1.0.0.13052_1 - Samsung Electronics Co., Ltd.)
Samsung Story Album Viewer (x32 Version: 1.0.0.13052_1 - Samsung Electronics Co., Ltd.) Hidden
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.24.0 - SAMSUNG Electronics Co., Ltd.)
Skype Click to Call (HKLM-x32\...\{B6CF2967-C81E-40C0-9815-C05774FEF120}) (Version: 5.6.8442 - Skype Technologies S.A.)
Skype™ 7.1 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.1.105 - Skype Technologies S.A.)
Sophos Virus Removal Tool (HKLM-x32\...\{B829E117-D072-41EA-9606-9826A38D34C1}) (Version: 2.4 - Sophos Limited)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.0.24.0 - Synaptics Incorporated)
VC80CRTRedist - 8.0.50727.4053 (HKLM-x32\...\{5EE7D259-D137-4438-9A5F-42F432EC0421}) (Version: 1.1.0 - DivX, Inc)
Visitenkarten in 2 Minuten (HKLM-x32\...\Visitenkarten in 2 Minuten) (Version:  - )
VLC media player 2.0.1 (HKLM-x32\...\VLC media player) (Version: 2.0.1 - VideoLAN)
Winamp (HKLM-x32\...\Winamp) (Version: 5.623  - Nullsoft, Inc)
Windows 7 Default Setting (HKLM-x32\...\{5BF8E079-D6E2-4323-B794-75152371122A}) (Version: 1.0.1.6 - Hewlett-Packard Company)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation)
Windows Live Sync (HKLM-x32\...\{586509F0-350D-48B5-B763-9CC2F8D96C4C}) (Version: 14.0.8117.416 - Microsoft Corporation)
Windows-Treiberpaket - Nokia pccsmcfd  (08/22/2008 7.0.0.0) (HKLM\...\FCEC33AD40CEA5E0FC4CEE6E42041A0DA189652D) (Version: 08/22/2008 7.0.0.0 - Nokia)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points  =========================

13-02-2015 03:00:17 Windows Update
15-02-2015 16:07:41 Removed Sophos Virus Removal Tool.
16-02-2015 13:46:55 Installed Sophos Virus Removal Tool.
16-02-2015 19:37:38 Removed Sophos Virus Removal Tool.
17-02-2015 12:40:32 Windows Update
17-02-2015 16:27:51 Revo Uninstaller's restore point - pdfforge Toolbar v10.9
17-02-2015 17:27:14 Installed Sophos Virus Removal Tool.

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____N C:\windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {4857DB0A-9D75-48E3-A807-82F8C2A93835} - System32\Tasks\{8489A52D-7FCD-43A8-85DC-44D3E869D6F5} => Iexplore.exe hxxp://ui.skype.com/ui/0/7.1.0.105/de/abandoninstall?source=lightinstaller&page=tsInstall
Task: {5A736DA4-20A1-4A4F-B9A0-2817B374F9AC} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: {5B560704-82FB-4CA9-95E3-023AB819FB43} - System32\Tasks\Microsoft_Hardware_Launch_IPoint_exe => c:\Program Files\Microsoft IntelliPoint\IPoint.exe [2010-07-21] (Microsoft Corporation)
Task: {666C7467-3231-49C6-9D50-49032A40E88E} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-08] (Adobe Systems Incorporated)
Task: {8244FAB8-5F83-4B68-9832-7654693F5600} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2014-05-12] (Hewlett-Packard Company)
Task: {90DEC97A-67E6-40CA-88CA-410AB4F05ABC} - System32\Tasks\HPCeeScheduleForMartin_N => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-01-05] (Hewlett-Packard)
Task: {9433DFA0-ECCB-48B3-99C0-C0539D287D34} - System32\Tasks\{4723CACE-564C-40EB-89CD-10DAF7322328} => C:\Program Files (x86)\Skype\\Phone\Skype.exe [2015-01-23] (Skype Technologies S.A.)
Task: {9D69920F-F959-4F3E-BEA3-5A0FF018EF7A} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {C3BC280E-9808-41FA-BEE2-56426F159C13} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company)
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\HPCeeScheduleForMartin_N.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe

==================== Loaded Modules (whitelisted) ==============

2011-06-16 09:28 - 2005-03-12 00:07 - 00087040 _____ () C:\windows\System32\pdfcmnnt.dll
2010-11-22 17:09 - 2010-03-04 23:38 - 00071096 _____ () C:\Program Files (x86)\CDBurnerXP\NMSAccessU.exe
2011-03-04 11:02 - 2011-03-04 11:02 - 02121728 _____ () C:\Program Files (x86)\Common Files\LightScribe\QtCore4.dll
2011-03-04 11:02 - 2011-03-04 11:02 - 07745536 _____ () C:\Program Files (x86)\Common Files\LightScribe\QtGui4.dll
2011-03-04 11:02 - 2011-03-04 11:02 - 00135168 _____ () C:\Program Files (x86)\Common Files\LightScribe\plugins\imageformats\qjpeg4.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CleanHlp => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CleanHlp.sys => ""="Driver"

==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1488533785-2507820179-1828641165-1005\Control Panel\Desktop\\Wallpaper ->
DNS Servers: 192.168.0.1

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)


==================== Accounts: =============================

Administrator (S-1-5-21-1488533785-2507820179-1828641165-500 - Administrator - Disabled)
Gast (S-1-5-21-1488533785-2507820179-1828641165-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1488533785-2507820179-1828641165-1007 - Limited - Enabled)
Martin_N (S-1-5-21-1488533785-2507820179-1828641165-1005 - Administrator - Enabled) => C:\Users\Martin_N

==================== Faulty Device Manager Devices =============

Name: Ralink Motorola BC4 Bluetooth 3.0+HS Adapter
Description: Ralink Motorola BC4 Bluetooth 3.0+HS Adapter
Class Guid: {a173b237-6a34-4bb5-aa63-2561160fa200}
Manufacturer: Motorola, Inc.
Service: BTMUSB
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: =========================

Application errors:
==================
Error: (02/20/2015 00:44:33 AM) (Source: SideBySide) (EventID: 75) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "1". Fehler in Manifest- oder Richtliniendatei "2" in Zeile 3.
Mehrere requestedPrivileges-Elemente sind nicht im Manifest zulässig.

Error: (02/19/2015 02:21:39 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm SkypeSetup.exe, Version 7.1.0.105 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: c54

Startzeit: 01d04c469b166ff7

Endzeit: 0

Anwendungspfad: C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E1VJN5RZ\SkypeSetup.exe

Berichts-ID:

Error: (02/19/2015 01:04:04 AM) (Source: SideBySide) (EventID: 75) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "1". Fehler in Manifest- oder Richtliniendatei "2" in Zeile 3.
Mehrere requestedPrivileges-Elemente sind nicht im Manifest zulässig.

Error: (02/18/2015 07:34:22 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm SpyHunter4.exe, Version 4.18.9.4384 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: 2504

Startzeit: 01d04ba8cff0a3dd

Endzeit: 31

Anwendungspfad: C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe

Berichts-ID: bfbc1045-b79c-11e4-baa2-1cc1deaded33

Error: (02/18/2015 07:29:16 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm SpyHunter4.exe, Version 4.18.9.4384 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: 177c

Startzeit: 01d04ba81d7bc396

Endzeit: 10

Anwendungspfad: C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe

Berichts-ID: 0763483a-b79c-11e4-baa2-1cc1deaded33

Error: (02/18/2015 01:12:12 AM) (Source: SideBySide) (EventID: 75) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "1". Fehler in Manifest- oder Richtliniendatei "2" in Zeile 3.
Mehrere requestedPrivileges-Elemente sind nicht im Manifest zulässig.

Error: (02/17/2015 08:30:14 PM) (Source: SideBySide) (EventID: 75) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "1". Fehler in Manifest- oder Richtliniendatei "2" in Zeile 3.
Mehrere requestedPrivileges-Elemente sind nicht im Manifest zulässig.

Error: (02/16/2015 01:29:46 AM) (Source: SideBySide) (EventID: 75) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "1". Fehler in Manifest- oder Richtliniendatei "2" in Zeile 3.
Mehrere requestedPrivileges-Elemente sind nicht im Manifest zulässig.

Error: (02/15/2015 00:46:22 AM) (Source: SideBySide) (EventID: 75) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "1". Fehler in Manifest- oder Richtliniendatei "2" in Zeile 3.
Mehrere requestedPrivileges-Elemente sind nicht im Manifest zulässig.

Error: (02/14/2015 02:51:52 AM) (Source: SideBySide) (EventID: 75) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "1". Fehler in Manifest- oder Richtliniendatei "2" in Zeile 3.
Mehrere requestedPrivileges-Elemente sind nicht im Manifest zulässig.


System errors:
=============
Error: (02/19/2015 10:05:45 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert: 70. Der interne Fehlerstatus lautet: 105.

Error: (02/19/2015 08:03:52 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Der Dienst "Windows Update" wurde nicht richtig gestartet.

Error: (02/18/2015 09:45:14 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst hpHotkeyMonitor erreicht.

Error: (02/16/2015 09:13:31 PM) (Source: bowser) (EventID: 8003) (User: )
Description: Der Hauptsuchdienst erhielt eine Serverankündigung vom Computer "ADMIN-PC",
der der Hauptsuchdienst der Domäne für den NetBT_Tcpip_{61346EB5-7527-4316-AC44-B936E7591A65}-Transport zu sein scheint.
Der Hauptsuchdienst wurde beendet oder es wird eine Auswahl erzwungen.

Error: (02/15/2015 09:34:35 AM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Der Dienst "Avira Echtzeit-Scanner" wurde nicht richtig gestartet.

Error: (02/12/2015 00:42:30 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert: 70. Der interne Fehlerstatus lautet: 105.

Error: (02/12/2015 09:37:35 AM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert: 70. Der interne Fehlerstatus lautet: 105.

Error: (02/12/2015 09:33:23 AM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert: 70. Der interne Fehlerstatus lautet: 105.

Error: (02/10/2015 07:01:00 PM) (Source: Schannel) (EventID: 4119) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung empfangen: 20.

Error: (02/10/2015 07:00:42 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert: 10. Der interne Fehlerstatus lautet: 10.


Microsoft Office Sessions:
=========================
Error: (02/20/2015 00:44:33 AM) (Source: SideBySide) (EventID: 75) (User: )
Description: c:\program files (x86)\Skype\Toolbars\internet explorer\SkypeIEPluginBroker.exec:\program files (x86)\Skype\Toolbars\internet explorer\SkypeIEPluginBroker.exe2

Error: (02/19/2015 02:21:39 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: SkypeSetup.exe7.1.0.105c5401d04c469b166ff70C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E1VJN5RZ\SkypeSetup.exe

Error: (02/19/2015 01:04:04 AM) (Source: SideBySide) (EventID: 75) (User: )
Description: c:\program files (x86)\Skype\Toolbars\internet explorer\SkypeIEPluginBroker.exec:\program files (x86)\Skype\Toolbars\internet explorer\SkypeIEPluginBroker.exe2

Error: (02/18/2015 07:34:22 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: SpyHunter4.exe4.18.9.4384250401d04ba8cff0a3dd31C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exebfbc1045-b79c-11e4-baa2-1cc1deaded33

Error: (02/18/2015 07:29:16 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: SpyHunter4.exe4.18.9.4384177c01d04ba81d7bc39610C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe0763483a-b79c-11e4-baa2-1cc1deaded33

Error: (02/18/2015 01:12:12 AM) (Source: SideBySide) (EventID: 75) (User: )
Description: c:\program files (x86)\Skype\Toolbars\internet explorer\SkypeIEPluginBroker.exec:\program files (x86)\Skype\Toolbars\internet explorer\SkypeIEPluginBroker.exe2

Error: (02/17/2015 08:30:14 PM) (Source: SideBySide) (EventID: 75) (User: )
Description: c:\program files (x86)\Skype\Toolbars\internet explorer\SkypeIEPluginBroker.exec:\program files (x86)\Skype\Toolbars\internet explorer\SkypeIEPluginBroker.exe2

Error: (02/16/2015 01:29:46 AM) (Source: SideBySide) (EventID: 75) (User: )
Description: c:\program files (x86)\Skype\Toolbars\internet explorer\SkypeIEPluginBroker.exec:\program files (x86)\Skype\Toolbars\internet explorer\SkypeIEPluginBroker.exe2

Error: (02/15/2015 00:46:22 AM) (Source: SideBySide) (EventID: 75) (User: )
Description: c:\program files (x86)\Skype\Toolbars\internet explorer\SkypeIEPluginBroker.exec:\program files (x86)\Skype\Toolbars\internet explorer\SkypeIEPluginBroker.exe2

Error: (02/14/2015 02:51:52 AM) (Source: SideBySide) (EventID: 75) (User: )
Description: c:\program files (x86)\Skype\Toolbars\internet explorer\SkypeIEPluginBroker.exec:\program files (x86)\Skype\Toolbars\internet explorer\SkypeIEPluginBroker.exe2


==================== Memory info ===========================

Processor: Pentium(R) Dual-Core CPU T4500 @ 2.30GHz
Percentage of memory in use: 46%
Total physical RAM: 3996.27 MB
Available physical RAM: 2136.76 MB
Total Pagefile: 7990.72 MB
Available Pagefile: 5964.1 MB
Total Virtual: 8192 MB
Available Virtual: 8191.83 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:280.79 GB) (Free:155.8 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive f: (HP_TOOLS) (Fixed) (Total:1.99 GB) (Free:1.98 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 60D43F02)
Partition 1: (Active) - (Size=300 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=280.8 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=15 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=2 GB) - (Type=0C)

==================== End Of Log ============================


schrauber 21.02.2015 10:34

Meine Frage nach dem Log/Fund von Sophos?

Martinovic 21.02.2015 15:33

....

Martinovic 21.02.2015 15:38

Liste der Anhänge anzeigen (Anzahl: 1)
sorry.
sophos screenshot angehängt.
danke und schönen gruß,
Martinovic

schrauber 22.02.2015 08:33

Downloade Dir bitte Malwarebytes Anti-Malware
  • Installiere das Programm in den vorgegebenen Pfad. (Bebilderte Anleitung zu MBAM)
  • Starte Malwarebytes' Anti-Malware (MBAM).
  • Klicke im Anschluss auf Scannen, wähle den Bedrohungssuchlauf aus und klicke auf Suchlauf starten.
  • Lass am Ende des Suchlaufs alle Funde (falls vorhanden) in die Quarantäne verschieben. Klicke dazu auf Auswahl entfernen.
  • Lass deinen Rechner ggf. neu starten, um die Bereinigung abzuschließen.
  • Starte MBAM, klicke auf Verlauf und dann auf Anwendungsprotokolle.
  • Wähle das neueste Scan-Protokoll aus und klicke auf Export. Wähle Textdatei (.txt) aus und speichere die Datei als mbam.txt auf dem Desktop ab. Das Logfile von MBAM findest du hier.
  • Füge den Inhalt der mbam.txt mit deiner nächsten Antwort hinzu.


Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.


und ein frisches FRST log bitte.

Martinovic 22.02.2015 16:49

Liste der Anhänge anzeigen (Anzahl: 2)
Hallo,
verlangte Dateien anbei.
Danke und Grüße
Martin

schrauber 23.02.2015 07:34

Hi,

Logs bitte immer in den Thread posten. Zur Not aufteilen und mehrere Posts nutzen.
Ich kann auf Arbeit keine Anhänge öffnen, danke.

So funktioniert es:
Posten in CODE-Tags
Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
  • Markiere das gesamte Logfile (geht meist mit STRG+A) und kopiere es in die Zwischenablage mit STRG+C.
  • Klicke im Editor auf das #-Symbol. Es erscheinen zwei Klammerausdrücke [CODE] [/CODE].
  • Setze den Curser zwischen die CODE-Tags und drücke STRG+V.
  • Klicke auf Erweitert/Vorschau, um so prüfen, ob du es richtig gemacht hast. Wenn alles stimmt ... auf Antworten.
http://www.trojaner-board.de/picture...&pictureid=307





ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset


Downloade Dir bitte SecurityCheck und:

  • Speichere es auf dem Desktop.
  • Starte SecurityCheck.exe und folge den Anweisungen in der DOS-Box.
  • Wenn der Scan beendet wurde sollte sich ein Textdokument (checkup.txt) öffnen.
Poste den Inhalt bitte hier.

und ein frisches FRST log bitte. Noch Probleme? :)

Martinovic 23.02.2015 22:14

Code:

Malwarebytes Anti-Malware
www.malwarebytes.org

Suchlauf Datum: 22.02.2015
Suchlauf-Zeit: 10:32:23
Logdatei: mbam.txt
Administrator: Ja

Version: 2.00.4.1028
Malware Datenbank: v2015.02.22.03
Rootkit Datenbank: v2015.02.20.01
Lizenz: Testversion
Malware Schutz: Aktiviert
Bösartiger Webseiten Schutz: Aktiviert
Selbstschutz: Deaktiviert

Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: Martin_N

Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 347690
Verstrichene Zeit: 27 Min, 24 Sek

Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert

Prozesse: 0
(Keine schädliche Elemente erkannt)

Module: 0
(Keine schädliche Elemente erkannt)

Registrierungsschlüssel: 0
(Keine schädliche Elemente erkannt)

Registrierungswerte: 0
(Keine schädliche Elemente erkannt)

Registrierungsdaten: 0
(Keine schädliche Elemente erkannt)

Ordner: 0
(Keine schädliche Elemente erkannt)

Dateien: 0
(Keine schädliche Elemente erkannt)

Physische Sektoren: 0
(Keine schädliche Elemente erkannt)


(end)

AdwCleaner Logfile:
Code:

# AdwCleaner v4.111 - Bericht erstellt 22/02/2015 um 14:34:15
# Aktualisiert 18/02/2015 von Xplode
# Datenbank : 2015-02-18.3 [Server]
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (x64)
# Benutzername : Martin_N - OEM-HP
# Gestarted von : C:\Users\Martin_N\Desktop\AdwCleaner_4.111.exe
# Option : Löschen

***** [ Dienste ] *****


***** [ Dateien / Ordner ] *****

Ordner Gelöscht : C:\ProgramData\~0
Ordner Gelöscht : C:\Program Files (x86)\Common Files\DVDVideoSoft\TB
Ordner Gelöscht : C:\Users\Martin_N\AppData\Local\PackageAware
Ordner Gelöscht : C:\Users\Martin_N\AppData\LocalLow\pdfforge
[!] Ordner Gelöscht : C:\Users\Martin_N\AppData\Roaming\Mozilla\Firefox\Profiles\p33xhmqi.default\Extensions\pdfforge@mybrowserbar.com
Datei Gelöscht : C:\END

***** [ Geplante Tasks ] *****


***** [ Verknüpfungen ] *****


***** [ Registrierungsdatenbank ] *****

Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{431532BD-0AE1-4ABC-BE8C-919F3D1332E2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3419A091-2E44-40B3-A50D-BEA235EBEE82}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{3419A091-2E44-40B3-A50D-BEA235EBEE82}
Schlüssel Gelöscht : HKCU\Software\Myfree Codec
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\pdfforge
Schlüssel Gelöscht : HKLM\SOFTWARE\Myfree Codec
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\loadtbs-2.1
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\00E944CB89111313EAF35A0553F547F9
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\30C16B15B255BD349A1157B8A83E2AF9
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\53F55AF3F4049ED3FA6EA6F88E414E24
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\68E4BF4B11615E03C97732FD581AB607
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8CE3DDAB2D152683FBCEB4866BCD2B0F
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AF6CE16AFEA5C9A39B766468A8B35C21
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ED1CAE30F47D14B41B5FC8FA53658044
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FB1E44269B58F433A8C8E671E37CFDCF

***** [ Internetbrowser ] *****

-\\ Internet Explorer v11.0.9600.17631


-\\ Mozilla Firefox v24.0 (de)


*************************

AdwCleaner[R0].txt - [12904 Bytes] - [22/02/2015 12:11:24]
AdwCleaner[S0].txt - [12428 Bytes] - [22/02/2015 14:34:15]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [12488  Bytes] ##########

--- --- ---

[/CODE]

Code:


~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.4.2 (02.02.2015:1)
OS: Windows 7 Home Premium x64
Ran by Martin_N on 22.02.2015 at 15:01:58,98
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\Program Files (x86)\myfree codec"



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 22.02.2015 at 15:06:13,85
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Code:

ESETSmartInstaller@High as downloader log:
all ok
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.7623
# api_version=3.0.2
# EOSSerial=5aea5678cdb7b6428212c0d517f67048
# engine=22605
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2015-02-23 04:15:26
# local_time=2015-02-23 05:15:26 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# lang=1031
# osver=6.1.7601 NT Service Pack 1
# compatibility_mode_1='Avira Desktop'
# compatibility_mode=1810 16777213 100 100 9532 290131416 0 0
# compatibility_mode_1=''
# compatibility_mode=5893 16776573 100 94 94520 176337976 0 0
# scanned=275031
# found=4
# cleaned=0
# scan_time=8335
sh=CF6185A9EDFBA0217C9D36D25CA9F6ADCC9F6BC8 ft=1 fh=f90d49fcbe154eac vn="Win32/Toolbar.Conduit evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Common Files\DVDVideoSoft\TB\ConduitInstaller.exe.vir"
sh=844E584A1445AF95924FBEB5D1706927EBFDAC86 ft=0 fh=0000000000000000 vn="HTML/Iframe.B.Gen Virus" ac=I fn="C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\CXVB29MC\busty-euro-blonde-gets-facialed-hd-4074[1].htm"
sh=8CC6C527113B113178FFF83AA63901D84F090D4A ft=1 fh=2e4551d1a4252417 vn="OSX/ChatZum.A evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Martin_N\AppData\Local\Temp\chatzum_softonic_yahoo_62_v5.exe"
sh=CCE27C2A236BC3013EED8E851C4D88C4E739C6C0 ft=1 fh=81616915322166ab vn="Variante von Win32/Toolbar.Widdit.A evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Martin_N\AppData\Local\Temp\is-PMQAB.tmp\InnoSetupHelper.dll"

Code:

Results of screen317's Security Check version 0.99.96 
 Windows 7 Service Pack 1 x64 (UAC is enabled) 
 Internet Explorer 11 
``````````````Antivirus/Firewall Check:``````````````
Avira Desktop 
 Antivirus up to date! 
`````````Anti-malware/Other Utilities Check:`````````
 Java 7 Update 67 
 Java version 32-bit out of Date!
  Java 64-bit 8 Update 31 
 Adobe Flash Player 16.0.0.305 
 Adobe Reader XI 
 Mozilla Firefox 24.0 Firefox out of Date! 
````````Process Check: objlist.exe by Laurent```````` 
 Malwarebytes Anti-Malware mbamservice.exe 
 Malwarebytes Anti-Malware mbam.exe 
 Avira Antivir avgnt.exe
 Avira Antivir avguard.exe
 Malwarebytes Anti-Malware mbamscheduler.exe 
`````````````````System Health check`````````````````
 Total Fragmentation on Drive C: 
````````````````````End of Log``````````````````````


FRST Logfile:

FRST Logfile:

FRST Logfile:
Code:

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 22-02-2015
Ran by Martin_N (administrator) on OEM-HP on 23-02-2015 18:24:12
Running from C:\Users\Martin_N\Desktop
Loaded Profiles: Martin_N (Available profiles: Martin_N)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_21dba265e7e67cda\stacsv64.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_21dba265e7e67cda\AESTSr64.exe
(LSI Corporation) C:\Program Files\LSI SoftModem\agr64svc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Motorola, Inc.) C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\VS7DEBUG\MDM.EXE
() C:\Program Files (x86)\CDBurnerXP\NMSAccessU.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Motorola, Inc.) C:\Program Files\Motorola\Bluetooth\obexsrv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Macrovision Europe Ltd.) C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Program Files\Microsoft IntelliPoint\ipoint.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Samsung) C:\Program Files (x86)\Samsung\Kies\Kies.exe
(Samsung) C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
(Nullsoft, Inc.) C:\Program Files (x86)\Winamp\winampa.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Motorola, Inc.) C:\Program Files\Motorola\Bluetooth\audiosrv.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Motorola, Inc.) C:\Program Files\Motorola\Bluetooth\btplayerctrl.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil64_16_0_0_305_ActiveX.exe
(Microsoft Corporation) C:\Windows\System32\MsSpellCheckingFacility.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [487424 2010-01-29] (IDT, Inc.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2174760 2010-06-04] (Synaptics Incorporated)
HKLM\...\Run: [IntelliPoint] => c:\Program Files\Microsoft IntelliPoint\ipoint.exe [2327952 2010-07-21] (Microsoft Corporation)
HKLM\...\Run: [IAAnotif] => C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2010-01-08] (Intel Corporation)
HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files\Motorola\Bluetooth\btmshell.dll",TrayApp
HKLM-x32\...\Run: [WirelessAssistant] => C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [499768 2009-09-01] (Hewlett-Packard)
HKLM-x32\...\Run: [WinampAgent] => C:\Program Files (x86)\Winamp\winampa.exe [74752 2011-12-09] (Nullsoft, Inc.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2011-10-24] (Apple Inc.)
HKLM-x32\...\Run: [QLBController] => C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe [256056 2010-10-01] (Hewlett-Packard Company)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59240 2011-09-27] (Apple Inc.)
HKLM-x32\...\Run: [KiesTrayAgent] => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [311152 2013-05-23] (Samsung Electronics Co., Ltd.)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [702768 2014-12-16] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1021128 2014-11-20] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKLM-x32\...\Run: [] => [X]
HKLM\...\RunOnce: [NCPluginUpdater] => C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe [21720 2015-01-28] (Hewlett-Packard)
Winlogon\Notify\igfxcui: C:\windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-1488533785-2507820179-1828641165-1005\...\Run: [HPAdvisorDock] => C:\Program Files (x86)\Hewlett-Packard\HP Advisor\DOCK\HPAdvisorDock.exe
HKU\S-1-5-21-1488533785-2507820179-1828641165-1005\...\Run: [LightScribe Control Panel] => C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2736128 2011-03-04] (Hewlett-Packard Company)
HKU\S-1-5-21-1488533785-2507820179-1828641165-1005\...\Run: [KiesPreload] => C:\Program Files (x86)\Samsung\Kies\Kies.exe [1561968 2013-05-23] (Samsung)
HKU\S-1-5-21-1488533785-2507820179-1828641165-1005\...\Run: [KiesAirMessage] => C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup
HKU\S-1-5-21-1488533785-2507820179-1828641165-1005\...\Run: [] => C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [1106288 2013-05-23] (Samsung)
HKU\S-1-5-21-1488533785-2507820179-1828641165-1005\...\RunOnce: [Adobe Speed Launcher] => 1424698453
HKU\S-1-5-21-1488533785-2507820179-1828641165-1005\...\MountPoints2: {eba94779-f24a-11e0-a507-1cc1deaded33} - D:\LaunchU3.exe -a
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} =>  No File

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-1488533785-2507820179-1828641165-1005\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/
HKU\S-1-5-21-1488533785-2507820179-1828641165-1005\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.bing.com
SearchScopes: HKLM -> {3419A091-2E44-40B3-A50D-BEA235EBEE82} URL = hxxp://www.bing.com/search?q={searchTerms}&form=CMNTDF&pc=CMNTDF&src=IE-SearchBox
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre6\bin\jp2ssv.dll No File
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
DPF: HKLM-x32 {166B1BCA-3F9C-11CF-8075-444553540000} hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\Martin_N\AppData\Roaming\Mozilla\Firefox\Profiles\p33xhmqi.default
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\windows\system32\Adobe\Director\np32dsw.dll No File
FF Plugin-x32: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @protectdisc.com/NPPDLicenseHelper -> C:\Program Files (x86)\ProtectDisc\License Helper\NPPDLicenseHelper.dll ()
FF Plugin-x32: @videolan.org/vlc,version=2.0.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

Chrome:
=======
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2011-10-10]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AESTFilters; C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_21dba265e7e67cda\AESTSr64.exe [89600 2009-03-03] (Andrea Electronics Corporation)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [431920 2014-12-16] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [431920 2014-12-16] (Avira Operations GmbH & Co. KG)
S3 FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [647680 2010-09-29] (Macrovision Europe Ltd.) [File not signed]
R3 FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [1028096 2010-09-29] (Macrovision Europe Ltd.) [File not signed]
R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [86528 2012-09-27] (Hewlett-Packard Company) [File not signed]
R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe [280120 2010-10-01] (Hewlett-Packard Company)
R2 LightScribeService; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [73728 2011-03-04] (Hewlett-Packard Company) [File not signed]
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [969016 2014-11-21] (Malwarebytes Corporation)
R2 NMSAccess; C:\Program Files (x86)\CDBurnerXP\NMSAccessU.exe [71096 2010-03-04] ()
S3 ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [628736 2010-12-08] (Nokia) [File not signed]
R2 STacSV; C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_21dba265e7e67cda\STacSV64.exe [244736 2010-01-29] (IDT, Inc.)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [119272 2014-10-15] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131608 2014-10-15] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-10-01] (Avira Operations GmbH & Co. KG)
R3 MBAMProtector; C:\windows\system32\drivers\mbam.sys [25816 2014-11-21] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\windows\system32\drivers\MBAMSwissArmy.sys [129752 2015-02-23] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\windows\system32\drivers\mwac.sys [63704 2014-11-21] (Malwarebytes Corporation)
R3 rtsuvc; C:\Windows\System32\DRIVERS\rtsuvc.sys [96384 2010-05-21] (Realtek Semiconductor Corp.)
S3 ssudserd; C:\Windows\System32\DRIVERS\ssudserd.sys [203672 2013-04-03] (DEVGURU Co., LTD.(www.devguru.co.kr))
S3 StarOpen; C:\Windows\System32\Drivers\StarOpen.sys [5504 2009-11-12] ()
S3 StarOpen; C:\Windows\SysWow64\Drivers\StarOpen.sys [7168 2009-11-12] () [File not signed]
S3 cleanhlp; \??\C:\Program Files (x86)\Emsisoft Anti-Malware\cleanhlp64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-02-23 18:24 - 2015-02-23 18:24 - 00016707 _____ () C:\Users\Martin_N\Desktop\FRST.txt
2015-02-23 18:15 - 2015-02-23 18:15 - 00000000 ____D () C:\Users\Martin_N\Desktop\FRST-OlderVersion
2015-02-23 17:37 - 2015-02-23 17:37 - 00852594 _____ () C:\Users\Martin_N\Desktop\SecurityCheck.exe
2015-02-22 15:06 - 2015-02-22 15:06 - 00000700 _____ () C:\Users\Martin_N\Desktop\JRT.txt
2015-02-22 14:58 - 2015-02-22 14:58 - 00012793 _____ () C:\Users\Martin_N\Desktop\AdwCleaner[S0].txt
2015-02-22 12:10 - 2015-02-22 14:34 - 00000000 ____D () C:\AdwCleaner
2015-02-22 12:08 - 2015-02-22 12:08 - 00001204 _____ () C:\Users\Martin_N\Desktop\mbam.txt
2015-02-22 10:30 - 2015-02-23 16:20 - 00129752 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\MBAMSwissArmy.sys
2015-02-22 10:30 - 2015-02-22 10:30 - 00001106 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-02-22 10:30 - 2015-02-22 10:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-02-22 10:30 - 2015-02-22 10:30 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-02-22 10:30 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbamchameleon.sys
2015-02-22 10:30 - 2014-11-21 06:14 - 00063704 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mwac.sys
2015-02-22 10:30 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbam.sys
2015-02-22 10:23 - 2015-02-22 10:26 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Martin_N\Desktop\mbam-setup-2.0.4.1028.exe
2015-02-20 15:44 - 2015-02-23 18:24 - 00000000 ____D () C:\FRST
2015-02-20 15:43 - 2015-02-23 18:15 - 02087424 _____ (Farbar) C:\Users\Martin_N\Desktop\FRST64.exe
2015-02-19 16:02 - 2015-02-19 16:04 - 00004474 _____ () C:\Users\Martin_N\Desktop\PandaRamsonwareDecrypt.log
2015-02-19 16:01 - 2015-02-19 16:01 - 02760672 _____ () C:\Users\Martin_N\Desktop\pandaunransom.exe
2015-02-19 14:36 - 2015-02-19 14:36 - 00000000 ____D () C:\ProgramData\TEMP
2015-02-19 14:36 - 2015-02-19 14:36 - 00000000 ____D () C:\ProgramData\Licenses
2015-02-19 14:23 - 2015-02-19 14:23 - 00000000 ____D () C:\Users\Martin_N\AppData\Local\Skype
2015-02-19 14:22 - 2015-02-19 14:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-02-19 14:22 - 2015-02-19 14:22 - 00002699 _____ () C:\Users\Public\Desktop\Skype.lnk
2015-02-19 14:20 - 2015-02-19 14:20 - 00003134 _____ () C:\windows\System32\Tasks\{8489A52D-7FCD-43A8-85DC-44D3E869D6F5}
2015-02-18 19:24 - 2015-02-18 19:24 - 00000000 _____ () C:\autoexec.bat
2015-02-17 17:27 - 2015-02-17 17:27 - 00003221 _____ () C:\Users\Martin_N\Desktop\Sophos Virus Removal Tool.lnk
2015-02-17 17:27 - 2015-02-17 17:27 - 00000000 ____D () C:\Users\Martin_N\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sophos
2015-02-17 16:55 - 2015-02-17 17:08 - 91060632 _____ (Sophos Limited) C:\Users\Martin_N\Desktop\Sophos_Virus_Removal_Tool_2.5.exe
2015-02-17 16:26 - 2015-02-17 16:33 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group
2015-02-16 19:41 - 2015-02-17 13:04 - 00000000 ____D () C:\ProgramData\HitmanPro
2015-02-16 00:23 - 2015-02-16 00:23 - 00000000 ____D () C:\ProgramData\Emsisoft
2015-02-15 19:27 - 2015-02-17 16:13 - 00000000 ____D () C:\Program Files (x86)\Emsisoft Anti-Malware
2015-02-13 17:12 - 2015-02-13 17:12 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-02-12 14:43 - 2015-01-23 05:42 - 00814080 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2015-02-12 14:43 - 2015-01-23 05:41 - 06041600 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2015-02-12 14:43 - 2015-01-23 04:43 - 00620032 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2015-02-12 14:43 - 2015-01-23 04:17 - 04300800 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2015-02-11 15:10 - 2015-01-14 06:47 - 00389808 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2015-02-11 15:10 - 2015-01-14 06:09 - 00342712 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2015-02-11 15:10 - 2015-01-12 04:05 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2015-02-11 15:10 - 2015-01-12 04:05 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2015-02-11 15:10 - 2015-01-12 03:49 - 00066560 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2015-02-11 15:10 - 2015-01-12 03:48 - 02885632 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2015-02-11 15:10 - 2015-01-12 03:48 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2015-02-11 15:10 - 2015-01-12 03:40 - 00054784 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2015-02-11 15:10 - 2015-01-12 03:39 - 00034304 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2015-02-11 15:10 - 2015-01-12 03:36 - 00633856 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2015-02-11 15:10 - 2015-01-12 03:34 - 00144384 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2015-02-11 15:10 - 2015-01-12 03:34 - 00114688 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2015-02-11 15:10 - 2015-01-12 03:25 - 19740160 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2015-02-11 15:10 - 2015-01-12 03:25 - 00968704 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2015-02-11 15:10 - 2015-01-12 03:21 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2015-02-11 15:10 - 2015-01-12 03:21 - 00490496 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2015-02-11 15:10 - 2015-01-12 03:13 - 00077824 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2015-02-11 15:10 - 2015-01-12 03:08 - 00503296 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2015-02-11 15:10 - 2015-01-12 03:07 - 00062464 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2015-02-11 15:10 - 2015-01-12 03:07 - 00047616 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2015-02-11 15:10 - 2015-01-12 03:05 - 00064000 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2015-02-11 15:10 - 2015-01-12 03:04 - 00316928 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2015-02-11 15:10 - 2015-01-12 03:02 - 02277888 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2015-02-11 15:10 - 2015-01-12 03:00 - 00047104 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2015-02-11 15:10 - 2015-01-12 02:59 - 00030720 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2015-02-11 15:10 - 2015-01-12 02:57 - 00478208 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2015-02-11 15:10 - 2015-01-12 02:55 - 00115712 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2015-02-11 15:10 - 2015-01-12 02:48 - 00801280 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2015-02-11 15:10 - 2015-01-12 02:48 - 00718848 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2015-02-11 15:10 - 2015-01-12 02:46 - 02125824 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2015-02-11 15:10 - 2015-01-12 02:45 - 00418304 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2015-02-11 15:10 - 2015-01-12 02:43 - 14401024 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2015-02-11 15:10 - 2015-01-12 02:40 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-02-11 15:10 - 2015-01-12 02:36 - 00168960 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2015-02-11 15:10 - 2015-01-12 02:35 - 00076288 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2015-02-11 15:10 - 2015-01-12 02:33 - 00285696 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2015-02-11 15:10 - 2015-01-12 02:23 - 02052608 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2015-02-11 15:10 - 2015-01-12 02:23 - 00688640 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2015-02-11 15:10 - 2015-01-12 02:22 - 01155072 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2015-02-11 15:10 - 2015-01-12 02:14 - 12829184 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2015-02-11 15:10 - 2015-01-12 02:14 - 01548288 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2015-02-11 15:10 - 2015-01-12 02:02 - 00800768 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2015-02-11 15:10 - 2015-01-12 02:00 - 01888256 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2015-02-11 15:10 - 2015-01-12 01:56 - 01307136 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2015-02-11 15:10 - 2015-01-12 01:55 - 00710144 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2015-02-11 15:09 - 2015-02-04 04:16 - 00894976 _____ (Microsoft Corporation) C:\windows\system32\appraiser.dll
2015-02-11 15:09 - 2015-02-04 04:16 - 00762368 _____ (Microsoft Corporation) C:\windows\system32\invagent.dll
2015-02-11 15:09 - 2015-02-04 04:16 - 00609280 _____ (Microsoft Corporation) C:\windows\system32\generaltel.dll
2015-02-11 15:09 - 2015-02-04 04:16 - 00414720 _____ (Microsoft Corporation) C:\windows\system32\devinv.dll
2015-02-11 15:09 - 2015-02-04 04:16 - 00227328 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2015-02-11 15:09 - 2015-02-04 04:16 - 00192000 _____ (Microsoft Corporation) C:\windows\system32\aepic.dll
2015-02-11 15:09 - 2015-02-04 04:13 - 01098752 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2015-02-11 15:09 - 2015-01-28 00:36 - 01239720 _____ (Microsoft Corporation) C:\windows\system32\aitstatic.exe
2015-02-11 15:09 - 2015-01-12 04:09 - 25056256 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2015-02-11 15:09 - 2015-01-12 03:48 - 00584192 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2015-02-11 15:09 - 2015-01-12 03:47 - 00088064 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2015-02-11 15:09 - 2015-01-12 03:08 - 00199680 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2015-02-11 15:09 - 2015-01-12 03:07 - 00092160 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2015-02-11 15:09 - 2015-01-12 02:46 - 01359360 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2015-02-11 15:09 - 2015-01-12 02:27 - 02358272 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2015-02-11 15:09 - 2015-01-10 07:48 - 00728064 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2015-02-11 15:09 - 2015-01-10 07:48 - 00341504 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2015-02-11 15:09 - 2015-01-10 07:48 - 00314880 _____ (Microsoft Corporation) C:\windows\system32\msv1_0.dll
2015-02-11 15:09 - 2015-01-10 07:48 - 00309760 _____ (Microsoft Corporation) C:\windows\system32\ncrypt.dll
2015-02-11 15:09 - 2015-01-10 07:48 - 00210944 _____ (Microsoft Corporation) C:\windows\system32\wdigest.dll
2015-02-11 15:09 - 2015-01-10 07:48 - 00086528 _____ (Microsoft Corporation) C:\windows\system32\TSpkg.dll
2015-02-11 15:09 - 2015-01-10 07:48 - 00022016 _____ (Microsoft Corporation) C:\windows\system32\credssp.dll
2015-02-11 15:09 - 2015-01-10 07:27 - 00550912 _____ (Microsoft Corporation) C:\windows\SysWOW64\kerberos.dll
2015-02-11 15:09 - 2015-01-10 07:27 - 00259584 _____ (Microsoft Corporation) C:\windows\SysWOW64\msv1_0.dll
2015-02-11 15:09 - 2015-01-10 07:27 - 00248832 _____ (Microsoft Corporation) C:\windows\SysWOW64\schannel.dll
2015-02-11 15:09 - 2015-01-10 07:27 - 00221184 _____ (Microsoft Corporation) C:\windows\SysWOW64\ncrypt.dll
2015-02-11 15:09 - 2015-01-10 07:27 - 00172032 _____ (Microsoft Corporation) C:\windows\SysWOW64\wdigest.dll
2015-02-11 15:09 - 2015-01-10 07:27 - 00065536 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSpkg.dll
2015-02-11 15:09 - 2015-01-10 07:27 - 00017408 _____ (Microsoft Corporation) C:\windows\SysWOW64\credssp.dll
2015-02-11 15:04 - 2015-01-15 09:14 - 00155072 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys
2015-02-11 15:04 - 2015-01-15 09:14 - 00095680 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecdd.sys
2015-02-11 15:04 - 2015-01-15 09:09 - 01461760 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll
2015-02-11 15:04 - 2015-01-15 09:09 - 00136192 _____ (Microsoft Corporation) C:\windows\system32\sspicli.dll
2015-02-11 15:04 - 2015-01-15 09:09 - 00031232 _____ (Microsoft Corporation) C:\windows\system32\lsass.exe
2015-02-11 15:04 - 2015-01-15 09:09 - 00029184 _____ (Microsoft Corporation) C:\windows\system32\sspisrv.dll
2015-02-11 15:04 - 2015-01-15 09:09 - 00028160 _____ (Microsoft Corporation) C:\windows\system32\secur32.dll
2015-02-11 15:04 - 2015-01-15 09:08 - 00064000 _____ (Microsoft Corporation) C:\windows\system32\auditpol.exe
2015-02-11 15:04 - 2015-01-15 09:06 - 00146432 _____ (Microsoft Corporation) C:\windows\system32\msaudite.dll
2015-02-11 15:04 - 2015-01-15 09:06 - 00060416 _____ (Microsoft Corporation) C:\windows\system32\msobjs.dll
2015-02-11 15:04 - 2015-01-15 09:04 - 00686080 _____ (Microsoft Corporation) C:\windows\system32\adtschema.dll
2015-02-11 15:04 - 2015-01-15 08:42 - 00050176 _____ (Microsoft Corporation) C:\windows\SysWOW64\auditpol.exe
2015-02-11 15:04 - 2015-01-15 08:42 - 00022016 _____ (Microsoft Corporation) C:\windows\SysWOW64\secur32.dll
2015-02-11 15:04 - 2015-01-15 08:41 - 00096768 _____ (Microsoft Corporation) C:\windows\SysWOW64\sspicli.dll
2015-02-11 15:04 - 2015-01-15 08:39 - 00146432 _____ (Microsoft Corporation) C:\windows\SysWOW64\msaudite.dll
2015-02-11 15:04 - 2015-01-15 08:39 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\msobjs.dll
2015-02-11 15:04 - 2015-01-15 08:37 - 00686080 _____ (Microsoft Corporation) C:\windows\SysWOW64\adtschema.dll
2015-02-11 15:04 - 2015-01-15 05:22 - 00458824 _____ (Microsoft Corporation) C:\windows\system32\Drivers\cng.sys
2015-02-11 15:04 - 2015-01-14 07:09 - 05554112 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2015-02-11 15:04 - 2015-01-14 07:05 - 00503808 _____ (Microsoft Corporation) C:\windows\system32\srcore.dll
2015-02-11 15:04 - 2015-01-14 07:05 - 00050176 _____ (Microsoft Corporation) C:\windows\system32\srclient.dll
2015-02-11 15:04 - 2015-01-14 07:04 - 00296960 _____ (Microsoft Corporation) C:\windows\system32\rstrui.exe
2015-02-11 15:04 - 2015-01-14 06:44 - 03972544 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntkrnlpa.exe
2015-02-11 15:04 - 2015-01-14 06:44 - 03917760 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntoskrnl.exe
2015-02-11 15:04 - 2015-01-14 06:41 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\srclient.dll
2015-02-11 15:04 - 2015-01-13 04:10 - 01424384 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecs.dll
2015-02-11 15:04 - 2015-01-13 03:49 - 01230336 _____ (Microsoft Corporation) C:\windows\SysWOW64\WindowsCodecs.dll
2015-02-11 15:04 - 2014-12-12 06:31 - 01480192 _____ (Microsoft Corporation) C:\windows\system32\crypt32.dll
2015-02-11 15:04 - 2014-12-12 06:07 - 01174528 _____ (Microsoft Corporation) C:\windows\SysWOW64\crypt32.dll
2015-02-11 15:04 - 2014-11-26 04:53 - 00861696 _____ (Microsoft Corporation) C:\windows\system32\oleaut32.dll
2015-02-11 15:04 - 2014-11-26 04:32 - 00571904 _____ (Microsoft Corporation) C:\windows\SysWOW64\oleaut32.dll
2015-02-11 15:04 - 2014-07-07 03:07 - 00229376 _____ (Microsoft Corporation) C:\windows\system32\wintrust.dll
2015-02-11 15:04 - 2014-07-07 03:06 - 00187904 _____ (Microsoft Corporation) C:\windows\system32\cryptsvc.dll
2015-02-11 15:04 - 2014-07-07 02:40 - 00179200 _____ (Microsoft Corporation) C:\windows\SysWOW64\wintrust.dll
2015-02-11 15:04 - 2014-07-07 02:40 - 00143872 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptsvc.dll
2015-02-11 15:03 - 2015-01-09 03:03 - 03201536 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2015-02-11 15:03 - 2014-12-08 04:09 - 00406528 _____ (Microsoft Corporation) C:\windows\system32\scesrv.dll
2015-02-11 15:03 - 2014-12-08 03:46 - 00308224 _____ (Microsoft Corporation) C:\windows\SysWOW64\scesrv.dll
2015-02-10 19:08 - 2015-02-17 17:29 - 00000000 ____D () C:\ProgramData\Sophos
2015-02-10 19:07 - 2015-02-10 19:07 - 00000000 ____D () C:\Program Files (x86)\Sophos
2015-02-10 16:37 - 2015-02-10 16:56 - 00003259 _____ () C:\Users\Martin_N\Desktop\ISTRUZIONI_DECRITTAZIONE.txt
2015-02-10 16:37 - 2015-02-10 16:55 - 00007359 _____ () C:\Users\Martin_N\Desktop\ISTRUZIONI_DECRITTAZIONE.html
2015-02-10 16:37 - 2015-02-10 16:37 - 00000000 ____D () C:\ProgramData\ywynugoxasijikec
2015-02-09 16:00 - 2015-02-09 16:00 - 00000000 ____D () C:\Users\Public\Documents\CrashDump
2015-02-03 18:38 - 2015-02-10 16:37 - 00236808 _____ () C:\Users\Martin_N\Desktop\Eolo Bestellung2015.doc.encrypted

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-02-23 17:27 - 2012-05-03 17:46 - 00000884 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2015-02-23 17:25 - 2010-09-29 20:04 - 01996213 _____ () C:\windows\WindowsUpdate.log
2015-02-23 14:39 - 2009-07-14 05:45 - 00022704 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-02-23 14:39 - 2009-07-14 05:45 - 00022704 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-02-23 14:30 - 2009-07-14 06:08 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2015-02-23 14:30 - 2009-07-14 05:51 - 00180166 _____ () C:\windows\setupact.log
2015-02-22 11:35 - 2010-09-10 06:17 - 00426136 _____ () C:\windows\PFRO.log
2015-02-20 16:12 - 2014-03-04 17:30 - 00000000 ____D () C:\Users\Martin_N\Documents\Studio Niederstätter
2015-02-20 15:41 - 2013-05-08 13:45 - 00000000 ____D () C:\Users\Martin_N\AppData\Roaming\Skype
2015-02-20 13:50 - 2014-09-14 09:23 - 00003204 _____ () C:\windows\System32\Tasks\HPCeeScheduleForMartin_N
2015-02-20 13:50 - 2014-09-14 09:23 - 00000344 _____ () C:\windows\Tasks\HPCeeScheduleForMartin_N.job
2015-02-19 14:23 - 2010-09-29 20:09 - 00000000 ____D () C:\ProgramData\Skype
2015-02-19 14:22 - 2010-12-24 13:14 - 00000000 ___RD () C:\Program Files (x86)\Skype
2015-02-17 16:34 - 2013-03-29 11:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2015-02-17 16:34 - 2013-03-29 11:04 - 00000000 ____D () C:\ProgramData\Avira
2015-02-17 16:34 - 2013-03-29 11:04 - 00000000 ____D () C:\Program Files (x86)\Avira
2015-02-17 14:03 - 2011-11-01 16:30 - 00000000 _____ () C:\windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2015-02-17 14:03 - 2011-01-04 20:47 - 00000052 _____ () C:\windows\SysWOW64\DOErrors.log
2015-02-13 19:08 - 2010-11-22 11:02 - 00000000 ____D () C:\windows\rescache
2015-02-13 17:57 - 2009-07-14 04:20 - 00000000 ____D () C:\windows\tracing
2015-02-12 03:30 - 2009-07-14 05:45 - 00518536 _____ () C:\windows\system32\FNTCACHE.DAT
2015-02-12 03:26 - 2014-12-12 15:01 - 00000000 ____D () C:\windows\system32\appraiser
2015-02-12 03:26 - 2014-05-08 14:33 - 00000000 ___SD () C:\windows\system32\CompatTel
2015-02-12 03:07 - 2013-07-25 18:58 - 00000000 ____D () C:\windows\system32\MRT
2015-02-12 03:03 - 2010-11-22 12:22 - 116773704 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2015-02-10 16:50 - 2013-02-23 11:06 - 00000000 ____D () C:\Users\Martin_N\Documents\Haushaltung_Organisation
2015-02-10 16:50 - 2013-02-23 11:00 - 00025864 _____ () C:\Users\Martin_N\Documents\Handydatei.doc.encrypted
2015-02-10 16:50 - 2013-02-23 11:00 - 00000000 ____D () C:\Users\Martin_N\Documents\Freizeit
2015-02-10 16:45 - 2013-02-23 11:00 - 00000000 ____D () C:\Users\Martin_N\Documents\Eggbauer
2015-02-10 16:44 - 2015-01-02 15:03 - 00000000 ____D () C:\Users\Martin_N\Desktop\2014.12 Hanna_MV
2015-02-10 16:44 - 2013-02-23 11:00 - 00038152 _____ () C:\Users\Martin_N\Documents\Bücherliste.doc.encrypted
2015-02-10 16:44 - 2013-02-23 10:47 - 00000000 ___RD () C:\Users\Martin_N\Archiv
2015-02-10 16:42 - 2009-10-19 23:43 - 00047368 _____ () C:\Thumbs.db.encrypted
2015-02-10 16:37 - 2015-01-18 18:44 - 00060146 _____ () C:\Users\Martin_N\Desktop\Info in WG Wlan.pdf.encrypted
2015-02-10 16:37 - 2015-01-12 16:45 - 00025352 _____ () C:\Users\Martin_N\Desktop\Burnout Werbung.doc.encrypted
2015-02-10 16:37 - 2015-01-04 12:28 - 00586938 _____ () C:\Users\Martin_N\Desktop\niederstaetter_junior.JPG.encrypted
2015-02-10 16:37 - 2015-01-03 19:34 - 00000000 ____D () C:\Users\Martin_N\Desktop\2014.12 Weihnachten Lana
2015-02-10 16:37 - 2015-01-02 14:29 - 00000000 ____D () C:\Users\Martin_N\Desktop\2014.12 hanna
2015-02-10 16:37 - 2015-01-02 11:25 - 00247457 _____ () C:\Users\Martin_N\Desktop\2015.01 Hofmappe Eggbauer S.13-14.pdf.encrypted
2015-02-10 16:37 - 2015-01-01 19:26 - 00026376 _____ () C:\Users\Martin_N\Desktop\Text Familie Verdorfer 2015.doc.encrypted
2015-02-10 16:37 - 2014-09-16 19:18 - 00070463 _____ () C:\Users\Martin_N\Desktop\rechnung depot netzi 2014.pdf.encrypted
2015-02-10 16:37 - 2014-07-11 14:07 - 00313156 _____ () C:\Users\Martin_N\Desktop\MNklein.jpg.encrypted
2015-02-10 16:37 - 2014-07-07 19:54 - 00025352 _____ () C:\Users\Martin_N\Desktop\Liste Kartl Hanna.doc.encrypted
2015-02-10 16:37 - 2013-09-02 14:51 - 00024328 _____ () C:\Users\Martin_N\Desktop\Archiv Geschäftsidee.doc.encrypted
2015-02-10 16:37 - 2013-08-09 10:59 - 00000426 ____H () C:\Users\Martin_N\Desktop\~$ndliche.doc.encrypted
2015-02-10 16:37 - 2013-07-27 15:30 - 00025864 _____ () C:\Users\Martin_N\Desktop\!! m-n-großaka.doc.encrypted
2015-02-10 16:37 - 2013-06-22 11:47 - 00000426 ____H () C:\Users\Martin_N\Desktop\~$ Sport als Methodik in der Jugendarbeit.doc.encrypted
2015-02-08 11:27 - 2012-05-03 17:46 - 00701616 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2015-02-08 11:27 - 2012-05-03 17:46 - 00003822 _____ () C:\windows\System32\Tasks\Adobe Flash Player Updater
2015-02-08 11:27 - 2011-05-21 09:53 - 00071344 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-02-04 17:15 - 2013-02-23 10:33 - 00000000 ____D () C:\Users\Martin_N

==================== Files in the root of some directories =======

2011-12-11 15:38 - 2011-12-11 15:38 - 0092728 _____ (Un4seen Developments) C:\Program Files\bass.dll
2011-12-11 15:38 - 2011-12-11 15:38 - 5599232 _____ (NVIDIA Corporation) C:\Program Files\cg.dll
2011-12-11 15:38 - 2011-12-11 15:38 - 1019904 _____ (NVIDIA Corporation) C:\Program Files\cgD3D9.dll
2011-12-11 15:38 - 2011-12-11 15:38 - 0311296 _____ (NVIDIA Corporation) C:\Program Files\cgGL.dll
2011-12-11 15:38 - 2011-12-11 15:39 - 5238784 _____ () C:\Program Files\Game.exe
2011-12-11 15:39 - 2011-12-11 15:42 - 0001788 _____ () C:\Program Files\game.log
2011-12-11 15:38 - 2011-12-11 15:38 - 0110592 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Program Files\OpenAL32.dll
2009-09-18 15:46 - 2009-09-18 15:46 - 0876544 _____ (STLport Consulting, Inc.) C:\Program Files\stlport.5.0.dll
2011-11-24 18:34 - 2011-11-24 18:34 - 0495616 _____ () C:\Program Files\Updater.exe
2011-12-11 15:37 - 2011-12-11 15:42 - 0001434 _____ () C:\Program Files\watchdog.log
2013-09-04 16:41 - 2013-09-04 16:41 - 0004096 ____H () C:\Users\Martin_N\AppData\Local\keyfile3.drm
2010-12-24 13:15 - 2010-12-24 13:15 - 0000056 ____H () C:\ProgramData\ezsidmv.dat
2010-09-10 06:18 - 2010-09-10 06:18 - 0000194 _____ () C:\ProgramData\HPWALog.txt

Some content of TEMP:
====================
C:\Users\Martin_N\AppData\Local\Temp\1wkvgjo3.dll
C:\Users\Martin_N\AppData\Local\Temp\4f1zpe2y.dll
C:\Users\Martin_N\AppData\Local\Temp\AskSLib.dll
C:\Users\Martin_N\AppData\Local\Temp\avgnt.exe
C:\Users\Martin_N\AppData\Local\Temp\cgihtrfq.dll
C:\Users\Martin_N\AppData\Local\Temp\chatzum_softonic_yahoo_62_v5.exe
C:\Users\Martin_N\AppData\Local\Temp\ek45t5vc.dll
C:\Users\Martin_N\AppData\Local\Temp\f050wxdf.dll
C:\Users\Martin_N\AppData\Local\Temp\hf550qho.dll
C:\Users\Martin_N\AppData\Local\Temp\itq3zozj.dll
C:\Users\Martin_N\AppData\Local\Temp\jre-7u15-windows-i586-iftw.exe
C:\Users\Martin_N\AppData\Local\Temp\jre-7u17-windows-i586-iftw.exe
C:\Users\Martin_N\AppData\Local\Temp\jre-7u45-windows-i586-iftw.exe
C:\Users\Martin_N\AppData\Local\Temp\jre-7u51-windows-i586-iftw.exe
C:\Users\Martin_N\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe
C:\Users\Martin_N\AppData\Local\Temp\jre-7u67-windows-i586-iftw.exe
C:\Users\Martin_N\AppData\Local\Temp\jre-7u71-windows-i586-iftw.exe
C:\Users\Martin_N\AppData\Local\Temp\jre-8u31-windows-au.exe
C:\Users\Martin_N\AppData\Local\Temp\mnl44yx0.dll
C:\Users\Martin_N\AppData\Local\Temp\ni0lxptj.dll
C:\Users\Martin_N\AppData\Local\Temp\Quarantine.exe
C:\Users\Martin_N\AppData\Local\Temp\s5pgny2k.dll
C:\Users\Martin_N\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Martin_N\AppData\Local\Temp\sp58915.exe
C:\Users\Martin_N\AppData\Local\Temp\sqlite3.dll
C:\Users\Martin_N\AppData\Local\Temp\u5hk1wv3.dll
C:\Users\Martin_N\AppData\Local\Temp\UninstallHPSA.exe
C:\Users\Martin_N\AppData\Local\Temp\vnjczmkj.dll
C:\Users\Martin_N\AppData\Local\Temp\vshe5ug2.dll
C:\Users\Martin_N\AppData\Local\Temp\vtthtluw.dll
C:\Users\Martin_N\AppData\Local\Temp\wbqqzmf1.dll
C:\Users\Martin_N\AppData\Local\Temp\zxbocvb5.dll
C:\Users\Martin_N\AppData\Local\Temp\_unps.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-02-23 17:57

==================== End Of Log ============================

--- --- ---

--- --- ---

--- --- ---

[/CODE]

habe noch immer das selbe Problem:
sophos zeigt mir an, dass Mal/frame-AN eine malware ist und nicht gelöscht werden kann.
sophos logfile folgt

Martinovic 23.02.2015 22:16

Code:

2015-02-10 19:08:11        Sophos Virus Removal Tool version 2.5
2015-02-10 19:08:11        Copyright (c) 2009-2014 Sophos Limited. All rights reserved.

2015-02-10 19:08:11        This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2015-02-10 19:08:11        Windows version 6.1 SP 1.0 Service Pack 1 build 7601 SM=0x300 PT=0x1 WOW64
2015-02-10 19:08:11        Checking for updates...
2015-02-10 19:08:14        Update progress: proxy server not available
2015-02-10 19:08:14        Update error: invalid login credentials (error 5)
Couldn't authenticate user for resource with host server. URL was: hxxp://dci.sophosupd.com/update
2015-02-10 19:08:25        Option all = no
2015-02-10 19:08:25        Option recurse = yes
2015-02-10 19:08:25        Option archive = no
2015-02-10 19:08:25        Option service = yes
2015-02-10 19:08:25        Option confirm = yes
2015-02-10 19:08:25        Option sxl = yes
2015-02-10 19:08:25        Option max-data-age = 35
2015-02-10 19:08:25        Option EnableSafeClean = yes
2015-02-10 19:08:26        Component SVRTcli.exe version 2.5
2015-02-10 19:08:26        Component control.dll version 2.5
2015-02-10 19:08:26        Component SVRTservice.exe version 2.5
2015-02-10 19:08:26        Component engine\osdp.dll version 1.44.1.2151
2015-02-10 19:08:26        Component engine\veex.dll version 3.52.0.2151
2015-02-10 19:08:26        Component engine\savi.dll version 8.1.0.2151
2015-02-10 19:08:26        Component rkdisk.dll version 1.5.30.0
2015-02-10 19:08:26        Version info:        Product version        2.5
2015-02-10 19:08:26        Version info:        Detection engine        3.52.0
2015-02-10 19:08:26        Version info:        Detection data        4.99
2015-02-10 19:08:26        Version info:        Build date        12.03.2014
2015-02-10 19:08:26        Version info:        Data files added        643
2015-02-10 19:08:26        Version info:        Last successful update        (not yet updated)

2015-02-10 20:23:50        Could not open C:\hiberfil.sys
2015-02-10 20:23:54        Could not open C:\pagefile.sys
2015-02-10 20:41:00        Could not open C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 20:41:00        Could not open C:\System Volume Information\{3c9ff936-9e5f-11e4-bfd3-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 20:41:00        Could not open C:\System Volume Information\{4a058268-a239-11e4-a176-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 20:41:00        Could not open C:\System Volume Information\{4a05826c-a239-11e4-a176-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 20:41:00        Could not open C:\System Volume Information\{7354861c-9ff0-11e4-a970-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 20:41:00        Could not open C:\System Volume Information\{74d5d361-a620-11e4-8b65-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 20:41:00        Could not open C:\System Volume Information\{81094ed2-b145-11e4-a345-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 20:41:00        Could not open C:\System Volume Information\{81094efc-b145-11e4-a345-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 20:41:00        Could not open C:\System Volume Information\{81094eff-b145-11e4-a345-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 20:41:00        Could not open C:\System Volume Information\{81094f19-b145-11e4-a345-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 20:41:00        Could not open C:\System Volume Information\{81094f2f-b145-11e4-a345-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 20:41:00        Could not open C:\System Volume Information\{81094f42-b145-11e4-a345-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 20:41:00        Could not open C:\System Volume Information\{81094f4a-b145-11e4-a345-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 20:41:00        Could not open C:\System Volume Information\{81094f59-b145-11e4-a345-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 20:41:00        Could not open C:\System Volume Information\{81094f6e-b145-11e4-a345-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 20:41:00        Could not open C:\System Volume Information\{81094f9c-b145-11e4-a345-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 20:41:00        Could not open C:\System Volume Information\{81094f9d-b145-11e4-a345-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 20:41:00        Could not open C:\System Volume Information\{8a2c18f1-9fee-11e4-865f-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 20:41:00        Could not open C:\System Volume Information\{9cd54f01-aba5-11e4-82c8-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 20:41:00        Could not open C:\System Volume Information\{aa9dfa60-af6f-11e4-a1ed-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 20:41:00        Could not open C:\System Volume Information\{faf02e55-b13c-11e4-bffb-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 20:44:49        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FSX3KZGE\cd32106bcb6de321930cf34574ea388c[3].htm
2015-02-10 20:45:43        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\LDQLQADO\cd32106bcb6de321930cf34574ea388c[1].htm
2015-02-10 20:46:06        >>> Virus 'Mal/ExpJS-BD' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\M9NJNLX8\8f13583[1].htm
2015-02-10 20:46:54        >>> Virus 'Mal/ExpJS-BD' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\PFGQ7V32\cc87a3c[1].htm
2015-02-10 20:49:00        >>> Virus 'Mal/ExpJS-BD' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YDMD8WZ9\9edb0a1[1].htm
2015-02-10 20:52:14        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 20:52:14        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 20:52:14        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 20:52:14        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 20:52:15        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 20:52:15        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 20:52:15        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 20:52:15        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 20:52:15        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 20:52:15        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 20:53:06        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-10 20:53:06        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-10 20:53:06        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-10 20:53:06        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-10 20:53:06        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-10 20:53:06        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-10 20:53:06        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-10 20:53:06        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-10 20:53:06        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-10 20:53:06        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-10 20:53:09        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\aosta 09.ppt (corrupt)
2015-02-10 20:53:09        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\aosta 09.ppt (corrupt)
2015-02-10 20:53:11        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Cagliari dicembre 08.ppt (corrupt)
2015-02-10 20:53:11        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Cagliari dicembre 08.ppt (corrupt)
2015-02-10 20:53:16        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Genova febbraio 09.ppt (corrupt)
2015-02-10 20:53:16        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Genova febbraio 09.ppt (corrupt)
2015-02-10 20:53:22        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\kh bozen 290910.ppt (corrupt)
2015-02-10 20:53:22        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\kh bozen 290910.ppt (corrupt)
2015-02-10 20:53:31        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 20:53:31        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 20:53:31        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 20:53:31        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 20:53:31        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 20:53:31        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 20:53:31        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 20:53:31        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 20:53:31        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 20:53:31        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 20:53:40        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-10 20:53:40        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-10 20:53:40        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-10 20:53:40        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-10 20:53:40        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-10 20:53:40        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-10 20:53:41        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-10 20:53:41        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-10 21:06:47        Could not open C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb
2015-02-10 21:06:47        Could not open C:\Windows\System32\catroot2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\catdb
2015-02-10 21:42:05        The following items will be cleaned up:
2015-02-10 21:42:05        Mal/ExpJS-BD
2015-02-10 21:42:05        Mal/Iframe-AN
2015-02-10 21:42:05        Mal/Iframe-AN
2015-02-10 22:01:41        Threat 'Mal/ExpJS-BD' has been cleaned up.
2015-02-10 22:01:41        File "C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\M9NJNLX8\8f13583[1].htm" belongs to malware 'Mal/ExpJS-BD'.
2015-02-10 22:01:41        File "C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\M9NJNLX8\8f13583[1].htm" has been cleaned up.
2015-02-10 22:01:41        File "C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\PFGQ7V32\cc87a3c[1].htm" belongs to malware 'Mal/ExpJS-BD'.
2015-02-10 22:01:41        File "C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\PFGQ7V32\cc87a3c[1].htm" has been cleaned up.
2015-02-10 22:01:41        File "C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YDMD8WZ9\9edb0a1[1].htm" belongs to malware 'Mal/ExpJS-BD'.
2015-02-10 22:01:41        File "C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YDMD8WZ9\9edb0a1[1].htm" has been cleaned up.
2015-02-10 22:01:41        Removal successful
2015-02-10 22:01:42        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FSX3KZGE\cd32106bcb6de321930cf34574ea388c[3].htm
2015-02-10 22:01:42        Disinfection failed [0xa0040208]
2015-02-10 22:01:43        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\LDQLQADO\cd32106bcb6de321930cf34574ea388c[1].htm
2015-02-10 22:01:43        Disinfection failed [0xa0040208]
2015-02-10 22:01:43        Error: cleanup failed.
2015-02-10 22:01:43        Contents of SafeClean bin directory:
2015-02-10 22:01:43        {
2015-02-10 22:01:43            RecordID  : "0000000000000001",
2015-02-10 22:01:43            ItemType  : "1",
2015-02-10 22:01:43            Location  : "C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\M9NJNLX8\",
2015-02-10 22:01:43            FileName  : "8f13583[1].htm",
2015-02-10 22:01:43            ThreatName : "Mal/ExpJS-BD",
2015-02-10 22:01:43            Checksum  : "17fc1480202f0e4954b33646661bceda15650ff3b01dfad06215f13e95fcc8ab",
2015-02-10 22:01:43            TimeStamp  : "Tue Feb 10 22:01:30 2015"
2015-02-10 22:01:43        }
2015-02-10 22:01:43        {
2015-02-10 22:01:43            RecordID  : "0000000000000002",
2015-02-10 22:01:43            ItemType  : "1",
2015-02-10 22:01:43            Location  : "C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\PFGQ7V32\",
2015-02-10 22:01:43            FileName  : "cc87a3c[1].htm",
2015-02-10 22:01:43            ThreatName : "Mal/ExpJS-BD",
2015-02-10 22:01:43            Checksum  : "3dc3337348b77121336ae41830a69737455e345915945f4f1298c4f5ed60ce16",
2015-02-10 22:01:43            TimeStamp  : "Tue Feb 10 22:01:30 2015"
2015-02-10 22:01:43        }
2015-02-10 22:01:43        {
2015-02-10 22:01:43            RecordID  : "0000000000000003",
2015-02-10 22:01:43            ItemType  : "1",
2015-02-10 22:01:43            Location  : "C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YDMD8WZ9\",
2015-02-10 22:01:43            FileName  : "9edb0a1[1].htm",
2015-02-10 22:01:43            ThreatName : "Mal/ExpJS-BD",
2015-02-10 22:01:43            Checksum  : "dea41c8bb2f2d80e5cf1a1b06502cf04e7e53925e75dc002e81fe36dd9bedde8",
2015-02-10 22:01:43            TimeStamp  : "Tue Feb 10 22:01:30 2015"
2015-02-10 22:01:43        }

2015-02-10 22:02:04       

------------------------------------------------------------

2015-02-10 22:02:23        Sophos Virus Removal Tool version 2.5
2015-02-10 22:02:23        Copyright (c) 2009-2014 Sophos Limited. All rights reserved.

2015-02-10 22:02:23        This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2015-02-10 22:02:23        Windows version 6.1 SP 1.0 Service Pack 1 build 7601 SM=0x300 PT=0x1 WOW64
2015-02-10 22:02:23        Checking for updates...
2015-02-10 22:02:24        Update progress: proxy server not available
2015-02-10 22:02:26        Update error: invalid login credentials (error 5)
Couldn't authenticate user for resource with host server. URL was: hxxp://dci.sophosupd.com/update
2015-02-10 22:02:44        Option all = no
2015-02-10 22:02:44        Option recurse = yes
2015-02-10 22:02:44        Option archive = no
2015-02-10 22:02:44        Option service = yes
2015-02-10 22:02:44        Option confirm = yes
2015-02-10 22:02:44        Option sxl = yes
2015-02-10 22:02:44        Option max-data-age = 35
2015-02-10 22:02:44        Option EnableSafeClean = yes
2015-02-10 22:02:44        Component SVRTcli.exe version 2.5
2015-02-10 22:02:44        Component control.dll version 2.5
2015-02-10 22:02:44        Component SVRTservice.exe version 2.5
2015-02-10 22:02:44        Component engine\osdp.dll version 1.44.1.2151
2015-02-10 22:02:44        Component engine\veex.dll version 3.52.0.2151
2015-02-10 22:02:44        Component engine\savi.dll version 8.1.0.2151
2015-02-10 22:02:44        Component rkdisk.dll version 1.5.30.0
2015-02-10 22:02:44        Version info:        Product version        2.5
2015-02-10 22:02:44        Version info:        Detection engine        3.52.0
2015-02-10 22:02:44        Version info:        Detection data        4.99
2015-02-10 22:02:44        Version info:        Build date        12.03.2014
2015-02-10 22:02:44        Version info:        Data files added        643
2015-02-10 22:02:44        Version info:        Last successful update        (not yet updated)

2015-02-10 23:06:57        Could not open C:\hiberfil.sys
2015-02-10 23:07:02        Could not open C:\pagefile.sys
2015-02-10 23:24:42        Could not open C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 23:24:42        Could not open C:\System Volume Information\{4a058268-a239-11e4-a176-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 23:24:42        Could not open C:\System Volume Information\{4a05826c-a239-11e4-a176-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 23:24:42        Could not open C:\System Volume Information\{7354861c-9ff0-11e4-a970-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 23:24:42        Could not open C:\System Volume Information\{74d5d361-a620-11e4-8b65-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 23:24:42        Could not open C:\System Volume Information\{81094ed2-b145-11e4-a345-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 23:24:42        Could not open C:\System Volume Information\{81094efc-b145-11e4-a345-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 23:24:42        Could not open C:\System Volume Information\{81094eff-b145-11e4-a345-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 23:24:42        Could not open C:\System Volume Information\{81094f19-b145-11e4-a345-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 23:24:42        Could not open C:\System Volume Information\{81094f2f-b145-11e4-a345-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 23:24:42        Could not open C:\System Volume Information\{81094f42-b145-11e4-a345-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 23:24:42        Could not open C:\System Volume Information\{81094f4a-b145-11e4-a345-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 23:24:42        Could not open C:\System Volume Information\{81094f59-b145-11e4-a345-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 23:24:42        Could not open C:\System Volume Information\{81094f6e-b145-11e4-a345-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 23:24:42        Could not open C:\System Volume Information\{81094f9c-b145-11e4-a345-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 23:24:42        Could not open C:\System Volume Information\{81094f9d-b145-11e4-a345-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 23:24:42        Could not open C:\System Volume Information\{8a2c18f1-9fee-11e4-865f-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 23:24:42        Could not open C:\System Volume Information\{9cd54f01-aba5-11e4-82c8-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 23:24:42        Could not open C:\System Volume Information\{aa9dfa60-af6f-11e4-a1ed-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 23:24:42        Could not open C:\System Volume Information\{faf02e55-b13c-11e4-bffb-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-10 23:28:25        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FSX3KZGE\cd32106bcb6de321930cf34574ea388c[3].htm
2015-02-10 23:29:23        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\LDQLQADO\cd32106bcb6de321930cf34574ea388c[1].htm
2015-02-10 23:35:49        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 23:35:49        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 23:35:49        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 23:35:49        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 23:35:49        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 23:35:49        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 23:35:49        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 23:35:49        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 23:35:49        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 23:35:49        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 23:36:40        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-10 23:36:40        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-10 23:36:40        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-10 23:36:40        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-10 23:36:40        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-10 23:36:40        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-10 23:36:40        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-10 23:36:40        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-10 23:36:40        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-10 23:36:40        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-10 23:36:43        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\aosta 09.ppt (corrupt)
2015-02-10 23:36:43        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\aosta 09.ppt (corrupt)
2015-02-10 23:36:45        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Cagliari dicembre 08.ppt (corrupt)
2015-02-10 23:36:45        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Cagliari dicembre 08.ppt (corrupt)
2015-02-10 23:36:50        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Genova febbraio 09.ppt (corrupt)
2015-02-10 23:36:50        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Genova febbraio 09.ppt (corrupt)
2015-02-10 23:36:55        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\kh bozen 290910.ppt (corrupt)
2015-02-10 23:36:55        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\kh bozen 290910.ppt (corrupt)
2015-02-10 23:37:02        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 23:37:02        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 23:37:03        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 23:37:03        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 23:37:03        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 23:37:03        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 23:37:03        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 23:37:03        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 23:37:03        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 23:37:03        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-10 23:37:12        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-10 23:37:12        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-10 23:37:12        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-10 23:37:12        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-10 23:37:12        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-10 23:37:12        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-10 23:37:12        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-10 23:37:12        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-10 23:50:02        Could not open C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb
2015-02-10 23:50:02        Could not open C:\Windows\System32\catroot2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\catdb
2015-02-11 00:25:26        The following items will be cleaned up:
2015-02-11 00:25:26        Mal/Iframe-AN
2015-02-11 00:25:26        Mal/Iframe-AN
2015-02-11 07:23:11        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FSX3KZGE\cd32106bcb6de321930cf34574ea388c[3].htm
2015-02-11 07:23:11        Disinfection failed [0xa0040208]
2015-02-11 07:23:12        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\LDQLQADO\cd32106bcb6de321930cf34574ea388c[1].htm
2015-02-11 07:23:12        Disinfection failed [0xa0040208]
2015-02-11 07:23:12        Error: cleanup failed.
2015-02-11 07:23:12        Contents of SafeClean bin directory:
2015-02-11 07:23:12        {
2015-02-11 07:23:12            RecordID  : "0000000000000001",
2015-02-11 07:23:12            ItemType  : "1",
2015-02-11 07:23:12            Location  : "C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\M9NJNLX8\",
2015-02-11 07:23:12            FileName  : "8f13583[1].htm",
2015-02-11 07:23:12            ThreatName : "Mal/ExpJS-BD",
2015-02-11 07:23:12            Checksum  : "17fc1480202f0e4954b33646661bceda15650ff3b01dfad06215f13e95fcc8ab",
2015-02-11 07:23:12            TimeStamp  : "Tue Feb 10 22:01:30 2015"
2015-02-11 07:23:12        }
2015-02-11 07:23:12        {
2015-02-11 07:23:12            RecordID  : "0000000000000002",
2015-02-11 07:23:12            ItemType  : "1",
2015-02-11 07:23:12            Location  : "C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\PFGQ7V32\",
2015-02-11 07:23:12            FileName  : "cc87a3c[1].htm",
2015-02-11 07:23:12            ThreatName : "Mal/ExpJS-BD",
2015-02-11 07:23:12            Checksum  : "3dc3337348b77121336ae41830a69737455e345915945f4f1298c4f5ed60ce16",
2015-02-11 07:23:12            TimeStamp  : "Tue Feb 10 22:01:30 2015"
2015-02-11 07:23:13        }
2015-02-11 07:23:13        {
2015-02-11 07:23:13            RecordID  : "0000000000000003",
2015-02-11 07:23:13            ItemType  : "1",
2015-02-11 07:23:13            Location  : "C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YDMD8WZ9\",
2015-02-11 07:23:13            FileName  : "9edb0a1[1].htm",
2015-02-11 07:23:13            ThreatName : "Mal/ExpJS-BD",
2015-02-11 07:23:13            Checksum  : "dea41c8bb2f2d80e5cf1a1b06502cf04e7e53925e75dc002e81fe36dd9bedde8",
2015-02-11 07:23:13            TimeStamp  : "Tue Feb 10 22:01:30 2015"
2015-02-11 07:23:13        }

2015-02-11 07:23:21       

------------------------------------------------------------

2015-02-11 07:27:06        Sophos Virus Removal Tool version 2.5
2015-02-11 07:27:06        Copyright (c) 2009-2014 Sophos Limited. All rights reserved.

2015-02-11 07:27:06        This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2015-02-11 07:27:06        Windows version 6.1 SP 1.0 Service Pack 1 build 7601 SM=0x300 PT=0x1 WOW64
2015-02-11 07:27:06        Checking for updates...
2015-02-11 07:27:17        Update progress: proxy server not available
2015-02-11 07:27:19        Update error: invalid login credentials (error 5)
Couldn't authenticate user for resource with host server. URL was: hxxp://dci.sophosupd.com/update
2015-02-11 07:27:55        Option all = no
2015-02-11 07:27:55        Option recurse = yes
2015-02-11 07:27:55        Option archive = no
2015-02-11 07:27:55        Option service = yes
2015-02-11 07:27:55        Option confirm = yes
2015-02-11 07:27:55        Option sxl = yes
2015-02-11 07:27:55        Option max-data-age = 35
2015-02-11 07:27:55        Option EnableSafeClean = yes
2015-02-11 07:27:56        Component SVRTcli.exe version 2.5
2015-02-11 07:27:56        Component control.dll version 2.5
2015-02-11 07:27:56        Component SVRTservice.exe version 2.5
2015-02-11 07:27:56        Component engine\osdp.dll version 1.44.1.2151
2015-02-11 07:27:56        Component engine\veex.dll version 3.52.0.2151
2015-02-11 07:27:56        Component engine\savi.dll version 8.1.0.2151
2015-02-11 07:27:56        Component rkdisk.dll version 1.5.30.0
2015-02-11 07:27:56        Version info:        Product version        2.5
2015-02-11 07:27:56        Version info:        Detection engine        3.52.0
2015-02-11 07:27:56        Version info:        Detection data        4.99
2015-02-11 07:27:56        Version info:        Build date        12.03.2014
2015-02-11 07:27:56        Version info:        Data files added        643
2015-02-11 07:27:56        Version info:        Last successful update        (not yet updated)

2015-02-11 08:48:42        Could not open C:\hiberfil.sys
2015-02-11 08:48:45        Could not open C:\pagefile.sys
2015-02-11 09:05:00        Could not open C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-11 09:05:00        Could not open C:\System Volume Information\{81094f9c-b145-11e4-a345-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-11 09:05:00        Could not open C:\System Volume Information\{81094f9d-b145-11e4-a345-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-11 09:05:00        Could not open C:\System Volume Information\{aa9dfa60-af6f-11e4-a1ed-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-11 09:05:00        Could not open C:\System Volume Information\{faf02e55-b13c-11e4-bffb-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-11 09:08:43        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FSX3KZGE\cd32106bcb6de321930cf34574ea388c[3].htm
2015-02-11 09:09:40        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\LDQLQADO\cd32106bcb6de321930cf34574ea388c[1].htm
2015-02-11 09:15:56        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 09:15:56        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 09:15:56        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 09:15:56        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 09:15:56        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 09:15:56        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 09:15:57        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 09:15:57        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 09:15:57        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 09:15:57        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 09:16:51        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-11 09:16:51        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-11 09:16:51        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-11 09:16:51        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-11 09:16:51        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-11 09:16:51        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-11 09:16:51        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-11 09:16:51        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-11 09:16:51        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-11 09:16:51        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-11 09:16:54        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\aosta 09.ppt (corrupt)
2015-02-11 09:16:54        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\aosta 09.ppt (corrupt)
2015-02-11 09:16:57        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Cagliari dicembre 08.ppt (corrupt)
2015-02-11 09:16:57        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Cagliari dicembre 08.ppt (corrupt)
2015-02-11 09:17:02        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Genova febbraio 09.ppt (corrupt)
2015-02-11 09:17:02        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Genova febbraio 09.ppt (corrupt)
2015-02-11 09:17:08        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\kh bozen 290910.ppt (corrupt)
2015-02-11 09:17:08        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\kh bozen 290910.ppt (corrupt)
2015-02-11 09:17:16        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 09:17:16        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 09:17:17        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 09:17:17        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 09:17:17        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 09:17:17        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 09:17:17        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 09:17:17        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 09:17:17        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 09:17:17        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 09:17:26        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-11 09:17:26        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-11 09:17:26        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-11 09:17:26        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-11 09:17:26        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-11 09:17:26        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-11 09:17:26        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-11 09:17:26        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-11 09:30:22        Could not open C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb
2015-02-11 09:30:22        Could not open C:\Windows\System32\catroot2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\catdb
2015-02-11 10:06:19        The following items will be cleaned up:
2015-02-11 10:06:19        Mal/Iframe-AN
2015-02-11 10:06:19        Mal/Iframe-AN
2015-02-11 17:30:35        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FSX3KZGE\cd32106bcb6de321930cf34574ea388c[3].htm
2015-02-11 17:30:35        Disinfection failed [0xa0040208]
2015-02-11 17:30:35        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\LDQLQADO\cd32106bcb6de321930cf34574ea388c[1].htm
2015-02-11 17:30:35        Disinfection failed [0xa0040208]
2015-02-11 17:30:35        Error: cleanup failed.
2015-02-11 17:30:35        Contents of SafeClean bin directory:
2015-02-11 17:30:35        {
2015-02-11 17:30:35            RecordID  : "0000000000000001",
2015-02-11 17:30:35            ItemType  : "1",
2015-02-11 17:30:35            Location  : "C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\M9NJNLX8\",
2015-02-11 17:30:35            FileName  : "8f13583[1].htm",
2015-02-11 17:30:35            ThreatName : "Mal/ExpJS-BD",
2015-02-11 17:30:35            Checksum  : "17fc1480202f0e4954b33646661bceda15650ff3b01dfad06215f13e95fcc8ab",
2015-02-11 17:30:35            TimeStamp  : "Tue Feb 10 22:01:30 2015"
2015-02-11 17:30:35        }
2015-02-11 17:30:35        {
2015-02-11 17:30:35            RecordID  : "0000000000000002",
2015-02-11 17:30:35            ItemType  : "1",
2015-02-11 17:30:35            Location  : "C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\PFGQ7V32\",
2015-02-11 17:30:35            FileName  : "cc87a3c[1].htm",
2015-02-11 17:30:35            ThreatName : "Mal/ExpJS-BD",
2015-02-11 17:30:35            Checksum  : "3dc3337348b77121336ae41830a69737455e345915945f4f1298c4f5ed60ce16",
2015-02-11 17:30:35            TimeStamp  : "Tue Feb 10 22:01:30 2015"
2015-02-11 17:30:35        }
2015-02-11 17:30:35        {
2015-02-11 17:30:35            RecordID  : "0000000000000003",
2015-02-11 17:30:35            ItemType  : "1",
2015-02-11 17:30:35            Location  : "C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YDMD8WZ9\",
2015-02-11 17:30:35            FileName  : "9edb0a1[1].htm",
2015-02-11 17:30:35            ThreatName : "Mal/ExpJS-BD",
2015-02-11 17:30:35            Checksum  : "dea41c8bb2f2d80e5cf1a1b06502cf04e7e53925e75dc002e81fe36dd9bedde8",
2015-02-11 17:30:35            TimeStamp  : "Tue Feb 10 22:01:30 2015"
2015-02-11 17:30:35        }

2015-02-11 17:30:44       

------------------------------------------------------------

2015-02-11 17:30:54        Sophos Virus Removal Tool version 2.5
2015-02-11 17:30:54        Copyright (c) 2009-2014 Sophos Limited. All rights reserved.

2015-02-11 17:30:54        This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2015-02-11 17:30:54        Windows version 6.1 SP 1.0 Service Pack 1 build 7601 SM=0x300 PT=0x1 WOW64
2015-02-11 17:30:54        Checking for updates...
2015-02-11 17:30:55        Update progress: proxy server not available
2015-02-11 17:30:55        Update error: failed to read remote metadata (error 4)
Cannot locate server for hxxp://dci.sophosupd.com/update/8/88/888c2c22f42b98235fc94517e2970497.xml
2015-02-11 17:31:16        Option all = no
2015-02-11 17:31:16        Option recurse = yes
2015-02-11 17:31:16        Option archive = no
2015-02-11 17:31:16        Option service = yes
2015-02-11 17:31:16        Option confirm = yes
2015-02-11 17:31:16        Option sxl = yes
2015-02-11 17:31:16        Option max-data-age = 35
2015-02-11 17:31:16        Option EnableSafeClean = yes
2015-02-11 17:31:16        Component SVRTcli.exe version 2.5
2015-02-11 17:31:16        Component control.dll version 2.5
2015-02-11 17:31:16        Component SVRTservice.exe version 2.5
2015-02-11 17:31:16        Component engine\osdp.dll version 1.44.1.2151
2015-02-11 17:31:16        Component engine\veex.dll version 3.52.0.2151
2015-02-11 17:31:16        Component engine\savi.dll version 8.1.0.2151
2015-02-11 17:31:16        Component rkdisk.dll version 1.5.30.0
2015-02-11 17:31:16        Version info:        Product version        2.5
2015-02-11 17:31:16        Version info:        Detection engine        3.52.0
2015-02-11 17:31:16        Version info:        Detection data        4.99
2015-02-11 17:31:16        Version info:        Build date        12.03.2014
2015-02-11 17:31:16        Version info:        Data files added        643
2015-02-11 17:31:16        Version info:        Last successful update        (not yet updated)

2015-02-11 17:31:24        Couldn't apply option 'SXLLiveProtection' to the detection engine.
2015-02-11 18:46:16        Could not open C:\hiberfil.sys
2015-02-11 18:46:20        Could not open C:\pagefile.sys
2015-02-11 19:01:35        Could not open C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-11 19:01:35        Could not open C:\System Volume Information\{81094f9c-b145-11e4-a345-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-11 19:01:35        Could not open C:\System Volume Information\{81094f9d-b145-11e4-a345-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-11 19:01:35        Could not open C:\System Volume Information\{aa9dfa60-af6f-11e4-a1ed-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-11 19:01:35        Could not open C:\System Volume Information\{faf02e55-b13c-11e4-bffb-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-11 19:04:48        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FSX3KZGE\cd32106bcb6de321930cf34574ea388c[3].htm
2015-02-11 19:05:37        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\LDQLQADO\cd32106bcb6de321930cf34574ea388c[1].htm
2015-02-11 19:11:37        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 19:11:37        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 19:11:38        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 19:11:38        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 19:11:38        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 19:11:38        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 19:11:38        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 19:11:38        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 19:11:38        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 19:11:38        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 19:12:32        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-11 19:12:32        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-11 19:12:32        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-11 19:12:32        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-11 19:12:32        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-11 19:12:32        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-11 19:12:32        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-11 19:12:32        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-11 19:12:32        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-11 19:12:32        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-11 19:12:35        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\aosta 09.ppt (corrupt)
2015-02-11 19:12:35        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\aosta 09.ppt (corrupt)
2015-02-11 19:12:37        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Cagliari dicembre 08.ppt (corrupt)
2015-02-11 19:12:37        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Cagliari dicembre 08.ppt (corrupt)
2015-02-11 19:12:42        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Genova febbraio 09.ppt (corrupt)
2015-02-11 19:12:42        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Genova febbraio 09.ppt (corrupt)
2015-02-11 19:12:48        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\kh bozen 290910.ppt (corrupt)
2015-02-11 19:12:48        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\kh bozen 290910.ppt (corrupt)
2015-02-11 19:12:57        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 19:12:57        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 19:12:58        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 19:12:58        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 19:12:58        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 19:12:58        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 19:12:58        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 19:12:58        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 19:12:58        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 19:12:58        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-11 19:13:08        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-11 19:13:08        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-11 19:13:08        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-11 19:13:08        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-11 19:13:08        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-11 19:13:08        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-11 19:13:08        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-11 19:13:08        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-11 19:26:14        Could not open C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb
2015-02-11 19:26:14        Could not open C:\Windows\System32\catroot2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\catdb
2015-02-11 19:59:44        The following items will be cleaned up:
2015-02-11 19:59:44        Mal/Iframe-AN
2015-02-11 19:59:44        Mal/Iframe-AN
2015-02-12 07:31:13        Sophos Virus Removal Tool version 2.5
2015-02-12 07:31:13        Copyright (c) 2009-2014 Sophos Limited. All rights reserved.

2015-02-12 07:31:13        This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2015-02-12 07:31:13        Windows version 6.1 SP 1.0 Service Pack 1 build 7601 SM=0x300 PT=0x1 WOW64
2015-02-12 07:31:13        Checking for updates...
2015-02-12 07:31:13        Update progress: proxy server not available
2015-02-12 07:31:17        Update error: invalid login credentials (error 5)
Couldn't authenticate user for resource with host server. URL was: hxxp://dci.sophosupd.com/update
2015-02-12 07:31:36        Option all = no
2015-02-12 07:31:36        Option recurse = yes
2015-02-12 07:31:36        Option archive = no
2015-02-12 07:31:36        Option service = yes
2015-02-12 07:31:36        Option confirm = yes
2015-02-12 07:31:36        Option sxl = yes
2015-02-12 07:31:36        Option max-data-age = 35
2015-02-12 07:31:36        Option EnableSafeClean = yes
2015-02-12 07:31:36        Component SVRTcli.exe version 2.5
2015-02-12 07:31:36        Component control.dll version 2.5
2015-02-12 07:31:36        Component SVRTservice.exe version 2.5
2015-02-12 07:31:36        Component engine\osdp.dll version 1.44.1.2151
2015-02-12 07:31:36        Component engine\veex.dll version 3.52.0.2151
2015-02-12 07:31:36        Component engine\savi.dll version 8.1.0.2151
2015-02-12 07:31:36        Component rkdisk.dll version 1.5.30.0
2015-02-12 07:31:36        Version info:        Product version        2.5
2015-02-12 07:31:36        Version info:        Detection engine        3.52.0
2015-02-12 07:31:36        Version info:        Detection data        4.99
2015-02-12 07:31:36        Version info:        Build date        12.03.2014
2015-02-12 07:31:36        Version info:        Data files added        643
2015-02-12 07:31:36        Version info:        Last successful update        (not yet updated)

2015-02-12 08:49:43        Could not open C:\hiberfil.sys
2015-02-12 08:49:46        Could not open C:\pagefile.sys
2015-02-12 09:06:40        Could not open C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-12 09:06:40        Could not open C:\System Volume Information\{81094f9c-b145-11e4-a345-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-12 09:06:40        Could not open C:\System Volume Information\{81094f9d-b145-11e4-a345-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-12 09:06:40        Could not open C:\System Volume Information\{aa9dfa60-af6f-11e4-a1ed-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-12 09:06:40        Could not open C:\System Volume Information\{ae6f8e7d-b1b6-11e4-832a-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-12 09:06:40        Could not open C:\System Volume Information\{faf02e55-b13c-11e4-bffb-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-12 09:10:33        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FSX3KZGE\cd32106bcb6de321930cf34574ea388c[3].htm
2015-02-12 09:11:31        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\LDQLQADO\cd32106bcb6de321930cf34574ea388c[1].htm
2015-02-12 09:17:55        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 09:17:55        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 09:17:55        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 09:17:55        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 09:17:55        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 09:17:55        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 09:17:55        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 09:17:55        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 09:17:56        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 09:17:56        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 09:18:47        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-12 09:18:47        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-12 09:18:47        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-12 09:18:47        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-12 09:18:47        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-12 09:18:47        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-12 09:18:47        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-12 09:18:47        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-12 09:18:47        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-12 09:18:47        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-12 09:18:49        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\aosta 09.ppt (corrupt)
2015-02-12 09:18:49        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\aosta 09.ppt (corrupt)
2015-02-12 09:18:51        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Cagliari dicembre 08.ppt (corrupt)
2015-02-12 09:18:51        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Cagliari dicembre 08.ppt (corrupt)
2015-02-12 09:18:56        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Genova febbraio 09.ppt (corrupt)
2015-02-12 09:18:56        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Genova febbraio 09.ppt (corrupt)
2015-02-12 09:19:02        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\kh bozen 290910.ppt (corrupt)
2015-02-12 09:19:02        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\kh bozen 290910.ppt (corrupt)
2015-02-12 09:19:10        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 09:19:10        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 09:19:11        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 09:19:11        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 09:19:11        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 09:19:11        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 09:19:11        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 09:19:11        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 09:19:11        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 09:19:11        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 09:19:20        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-12 09:19:20        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-12 09:19:20        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-12 09:19:20        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-12 09:19:20        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-12 09:19:20        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-12 09:19:20        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-12 09:19:20        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-12 09:32:46        Could not open C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb
2015-02-12 09:32:46        Could not open C:\Windows\System32\catroot2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\catdb
2015-02-12 10:12:07        The following items will be cleaned up:
2015-02-12 10:12:07        Mal/Iframe-AN
2015-02-12 10:12:07        Mal/Iframe-AN
2015-02-12 17:37:32        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FSX3KZGE\cd32106bcb6de321930cf34574ea388c[3].htm
2015-02-12 17:37:32        Disinfection failed [0xa0040208]
2015-02-12 17:37:37        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\LDQLQADO\cd32106bcb6de321930cf34574ea388c[1].htm
2015-02-12 17:37:37        Disinfection failed [0xa0040208]
2015-02-12 17:37:37        Error: cleanup failed.
2015-02-12 17:37:37        Contents of SafeClean bin directory:
2015-02-12 17:37:37        {
2015-02-12 17:37:37            RecordID  : "0000000000000001",
2015-02-12 17:37:37            ItemType  : "1",
2015-02-12 17:37:37            Location  : "C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\M9NJNLX8\",
2015-02-12 17:37:37            FileName  : "8f13583[1].htm",
2015-02-12 17:37:37            ThreatName : "Mal/ExpJS-BD",
2015-02-12 17:37:37            Checksum  : "17fc1480202f0e4954b33646661bceda15650ff3b01dfad06215f13e95fcc8ab",
2015-02-12 17:37:37            TimeStamp  : "Tue Feb 10 22:01:30 2015"
2015-02-12 17:37:37        }
2015-02-12 17:37:37        {
2015-02-12 17:37:37            RecordID  : "0000000000000002",
2015-02-12 17:37:37            ItemType  : "1",
2015-02-12 17:37:37            Location  : "C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\PFGQ7V32\",
2015-02-12 17:37:37            FileName  : "cc87a3c[1].htm",
2015-02-12 17:37:37            ThreatName : "Mal/ExpJS-BD",
2015-02-12 17:37:37            Checksum  : "3dc3337348b77121336ae41830a69737455e345915945f4f1298c4f5ed60ce16",
2015-02-12 17:37:37            TimeStamp  : "Tue Feb 10 22:01:30 2015"
2015-02-12 17:37:37        }
2015-02-12 17:37:37        {
2015-02-12 17:37:37            RecordID  : "0000000000000003",
2015-02-12 17:37:37            ItemType  : "1",
2015-02-12 17:37:37            Location  : "C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YDMD8WZ9\",
2015-02-12 17:37:37            FileName  : "9edb0a1[1].htm",
2015-02-12 17:37:37            ThreatName : "Mal/ExpJS-BD",
2015-02-12 17:37:37            Checksum  : "dea41c8bb2f2d80e5cf1a1b06502cf04e7e53925e75dc002e81fe36dd9bedde8",
2015-02-12 17:37:37            TimeStamp  : "Tue Feb 10 22:01:30 2015"
2015-02-12 17:37:37        }

2015-02-12 17:37:45


Martinovic 23.02.2015 22:17

Code:

------------------------------------------------------------

2015-02-12 18:32:57        Sophos Virus Removal Tool version 2.5
2015-02-12 18:32:57        Copyright (c) 2009-2014 Sophos Limited. All rights reserved.

2015-02-12 18:32:57        This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2015-02-12 18:32:57        Windows version 6.1 SP 1.0 Service Pack 1 build 7601 SM=0x300 PT=0x1 WOW64
2015-02-12 18:32:57        Checking for updates...
2015-02-12 18:33:04        Update progress: proxy server not available
2015-02-12 18:33:04        Update error: failed to read remote metadata (error 4)
Cannot locate server for hxxp://dci.sophosupd.com/update/8/88/888c2c22f42b98235fc94517e2970497.xml
2015-02-12 18:33:28        Option all = no
2015-02-12 18:33:28        Option recurse = yes
2015-02-12 18:33:28        Option archive = no
2015-02-12 18:33:28        Option service = yes
2015-02-12 18:33:28        Option confirm = yes
2015-02-12 18:33:28        Option sxl = yes
2015-02-12 18:33:28        Option max-data-age = 35
2015-02-12 18:33:28        Option EnableSafeClean = yes
2015-02-12 18:33:28        Component SVRTcli.exe version 2.5
2015-02-12 18:33:28        Component control.dll version 2.5
2015-02-12 18:33:28        Component SVRTservice.exe version 2.5
2015-02-12 18:33:28        Component engine\osdp.dll version 1.44.1.2151
2015-02-12 18:33:28        Component engine\veex.dll version 3.52.0.2151
2015-02-12 18:33:28        Component engine\savi.dll version 8.1.0.2151
2015-02-12 18:33:28        Component rkdisk.dll version 1.5.30.0
2015-02-12 18:33:28        Version info:        Product version        2.5
2015-02-12 18:33:28        Version info:        Detection engine        3.52.0
2015-02-12 18:33:28        Version info:        Detection data        4.99
2015-02-12 18:33:28        Version info:        Build date        12.03.2014
2015-02-12 18:33:28        Version info:        Data files added        643
2015-02-12 18:33:28        Version info:        Last successful update        (not yet updated)

2015-02-12 18:33:36        Couldn't apply option 'SXLLiveProtection' to the detection engine.
2015-02-12 19:51:48        Could not open C:\hiberfil.sys
2015-02-12 19:51:51        Could not open C:\pagefile.sys
2015-02-12 20:08:25        Could not open C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-12 20:08:25        Could not open C:\System Volume Information\{81094f9d-b145-11e4-a345-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-12 20:08:25        Could not open C:\System Volume Information\{ae6f8e7d-b1b6-11e4-832a-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-12 20:08:25        Could not open C:\System Volume Information\{c37e665a-b25e-11e4-8d54-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-12 20:08:25        Could not open C:\System Volume Information\{c37e6715-b25e-11e4-8d54-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-12 20:12:31        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FSX3KZGE\cd32106bcb6de321930cf34574ea388c[3].htm
2015-02-12 20:13:29        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\LDQLQADO\cd32106bcb6de321930cf34574ea388c[1].htm
2015-02-12 20:19:51        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 20:19:51        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 20:19:52        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 20:19:52        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 20:19:52        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 20:19:52        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 20:19:52        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 20:19:52        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 20:19:52        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 20:19:52        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 20:20:45        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-12 20:20:45        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-12 20:20:45        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-12 20:20:45        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-12 20:20:45        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-12 20:20:45        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-12 20:20:45        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-12 20:20:45        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-12 20:20:45        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-12 20:20:45        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-12 20:20:48        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\aosta 09.ppt (corrupt)
2015-02-12 20:20:48        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\aosta 09.ppt (corrupt)
2015-02-12 20:20:50        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Cagliari dicembre 08.ppt (corrupt)
2015-02-12 20:20:50        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Cagliari dicembre 08.ppt (corrupt)
2015-02-12 20:20:55        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Genova febbraio 09.ppt (corrupt)
2015-02-12 20:20:55        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Genova febbraio 09.ppt (corrupt)
2015-02-12 20:21:01        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\kh bozen 290910.ppt (corrupt)
2015-02-12 20:21:01        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\kh bozen 290910.ppt (corrupt)
2015-02-12 20:21:09        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 20:21:09        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 20:21:09        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 20:21:09        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 20:21:10        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 20:21:10        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 20:21:10        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 20:21:10        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 20:21:10        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 20:21:10        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-12 20:21:19        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-12 20:21:19        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-12 20:21:19        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-12 20:21:19        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-12 20:21:19        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-12 20:21:19        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-12 20:21:19        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-12 20:21:19        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-12 20:34:52        Could not open C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb
2015-02-12 20:34:52        Could not open C:\Windows\System32\catroot2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\catdb
2015-02-12 21:11:18        The following items will be cleaned up:
2015-02-12 21:11:18        Mal/Iframe-AN
2015-02-12 21:11:18        Mal/Iframe-AN
2015-02-13 14:05:19        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FSX3KZGE\cd32106bcb6de321930cf34574ea388c[3].htm
2015-02-13 14:05:19        Disinfection failed [0xa0040208]
2015-02-13 14:05:19        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\LDQLQADO\cd32106bcb6de321930cf34574ea388c[1].htm
2015-02-13 14:05:19        Disinfection failed [0xa0040208]
2015-02-13 14:05:19        Error: cleanup failed.
2015-02-13 14:05:19        Contents of SafeClean bin directory:
2015-02-13 14:05:19        {
2015-02-13 14:05:19            RecordID  : "0000000000000001",
2015-02-13 14:05:19            ItemType  : "1",
2015-02-13 14:05:19            Location  : "C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\M9NJNLX8\",
2015-02-13 14:05:19            FileName  : "8f13583[1].htm",
2015-02-13 14:05:19            ThreatName : "Mal/ExpJS-BD",
2015-02-13 14:05:19            Checksum  : "17fc1480202f0e4954b33646661bceda15650ff3b01dfad06215f13e95fcc8ab",
2015-02-13 14:05:19            TimeStamp  : "Tue Feb 10 22:01:30 2015"
2015-02-13 14:05:19        }
2015-02-13 14:05:19        {
2015-02-13 14:05:19            RecordID  : "0000000000000002",
2015-02-13 14:05:19            ItemType  : "1",
2015-02-13 14:05:19            Location  : "C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\PFGQ7V32\",
2015-02-13 14:05:19            FileName  : "cc87a3c[1].htm",
2015-02-13 14:05:19            ThreatName : "Mal/ExpJS-BD",
2015-02-13 14:05:19            Checksum  : "3dc3337348b77121336ae41830a69737455e345915945f4f1298c4f5ed60ce16",
2015-02-13 14:05:19            TimeStamp  : "Tue Feb 10 22:01:30 2015"
2015-02-13 14:05:19        }
2015-02-13 14:05:19        {
2015-02-13 14:05:19            RecordID  : "0000000000000003",
2015-02-13 14:05:19            ItemType  : "1",
2015-02-13 14:05:19            Location  : "C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YDMD8WZ9\",
2015-02-13 14:05:19            FileName  : "9edb0a1[1].htm",
2015-02-13 14:05:19            ThreatName : "Mal/ExpJS-BD",
2015-02-13 14:05:19            Checksum  : "dea41c8bb2f2d80e5cf1a1b06502cf04e7e53925e75dc002e81fe36dd9bedde8",
2015-02-13 14:05:19            TimeStamp  : "Tue Feb 10 22:01:30 2015"
2015-02-13 14:05:19        }

2015-02-13 14:05:25       

------------------------------------------------------------

2015-02-13 14:05:31        Sophos Virus Removal Tool version 2.5
2015-02-13 14:05:31        Copyright (c) 2009-2014 Sophos Limited. All rights reserved.

2015-02-13 14:05:31        This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2015-02-13 14:05:31        Windows version 6.1 SP 1.0 Service Pack 1 build 7601 SM=0x300 PT=0x1 WOW64
2015-02-13 14:05:31        Checking for updates...
2015-02-13 14:05:32        Update progress: proxy server not available
2015-02-13 14:05:32        Update error: failed to read remote metadata (error 4)
Cannot locate server for hxxp://dci.sophosupd.com/update/8/88/888c2c22f42b98235fc94517e2970497.xml
2015-02-13 14:05:52        Option all = no
2015-02-13 14:05:52        Option recurse = yes
2015-02-13 14:05:52        Option archive = no
2015-02-13 14:05:52        Option service = yes
2015-02-13 14:05:52        Option confirm = yes
2015-02-13 14:05:52        Option sxl = yes
2015-02-13 14:05:52        Option max-data-age = 35
2015-02-13 14:05:52        Option EnableSafeClean = yes
2015-02-13 14:05:52        Component SVRTcli.exe version 2.5
2015-02-13 14:05:52        Component control.dll version 2.5
2015-02-13 14:05:52        Component SVRTservice.exe version 2.5
2015-02-13 14:05:52        Component engine\osdp.dll version 1.44.1.2151
2015-02-13 14:05:52        Component engine\veex.dll version 3.52.0.2151
2015-02-13 14:05:52        Component engine\savi.dll version 8.1.0.2151
2015-02-13 14:05:52        Component rkdisk.dll version 1.5.30.0
2015-02-13 14:05:52        Version info:        Product version        2.5
2015-02-13 14:05:52        Version info:        Detection engine        3.52.0
2015-02-13 14:05:52        Version info:        Detection data        4.99
2015-02-13 14:05:52        Version info:        Build date        12.03.2014
2015-02-13 14:05:52        Version info:        Data files added        643
2015-02-13 14:05:52        Version info:        Last successful update        (not yet updated)

2015-02-13 14:06:00        Scan completed.
2015-02-13 14:06:00       

------------------------------------------------------------

2015-02-13 14:06:20        Sophos Virus Removal Tool version 2.5
2015-02-13 14:06:20        Copyright (c) 2009-2014 Sophos Limited. All rights reserved.

2015-02-13 14:06:20        This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2015-02-13 14:06:20        Windows version 6.1 SP 1.0 Service Pack 1 build 7601 SM=0x300 PT=0x1 WOW64
2015-02-13 14:06:20        Checking for updates...
2015-02-13 14:06:22        Update progress: proxy server not available
2015-02-13 14:06:24        Update error: invalid login credentials (error 5)
Couldn't authenticate user for resource with host server. URL was: hxxp://dci.sophosupd.com/update
2015-02-13 14:06:34        Option all = no
2015-02-13 14:06:34        Option recurse = yes
2015-02-13 14:06:34        Option archive = no
2015-02-13 14:06:34        Option service = yes
2015-02-13 14:06:34        Option confirm = yes
2015-02-13 14:06:34        Option sxl = yes
2015-02-13 14:06:34        Option max-data-age = 35
2015-02-13 14:06:34        Option EnableSafeClean = yes
2015-02-13 14:06:34        Component SVRTcli.exe version 2.5
2015-02-13 14:06:34        Component control.dll version 2.5
2015-02-13 14:06:34        Component SVRTservice.exe version 2.5
2015-02-13 14:06:34        Component engine\osdp.dll version 1.44.1.2151
2015-02-13 14:06:34        Component engine\veex.dll version 3.52.0.2151
2015-02-13 14:06:34        Component engine\savi.dll version 8.1.0.2151
2015-02-13 14:06:34        Component rkdisk.dll version 1.5.30.0
2015-02-13 14:06:34        Version info:        Product version        2.5
2015-02-13 14:06:34        Version info:        Detection engine        3.52.0
2015-02-13 14:06:34        Version info:        Detection data        4.99
2015-02-13 14:06:34        Version info:        Build date        12.03.2014
2015-02-13 14:06:34        Version info:        Data files added        643
2015-02-13 14:06:34        Version info:        Last successful update        (not yet updated)

2015-02-13 14:09:49        Scan completed.
2015-02-13 14:09:49       

------------------------------------------------------------

2015-02-13 14:18:13        Sophos Virus Removal Tool version 2.5
2015-02-13 14:18:13        Copyright (c) 2009-2014 Sophos Limited. All rights reserved.

2015-02-13 14:18:13        This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2015-02-13 14:18:13        Windows version 6.1 SP 1.0 Service Pack 1 build 7601 SM=0x300 PT=0x1 WOW64
2015-02-13 14:18:13        Checking for updates...
2015-02-13 14:18:14        Update progress: proxy server not available
2015-02-13 14:18:15        Update error: invalid login credentials (error 5)
Couldn't authenticate user for resource with host server. URL was: hxxp://dci.sophosupd.com/update
2015-02-13 14:18:36        Option all = no
2015-02-13 14:18:36        Option recurse = yes
2015-02-13 14:18:36        Option archive = no
2015-02-13 14:18:36        Option service = yes
2015-02-13 14:18:36        Option confirm = yes
2015-02-13 14:18:36        Option sxl = yes
2015-02-13 14:18:36        Option max-data-age = 35
2015-02-13 14:18:36        Option EnableSafeClean = yes
2015-02-13 14:18:37        Component SVRTcli.exe version 2.5
2015-02-13 14:18:37        Component control.dll version 2.5
2015-02-13 14:18:37        Component SVRTservice.exe version 2.5
2015-02-13 14:18:37        Component engine\osdp.dll version 1.44.1.2151
2015-02-13 14:18:37        Component engine\veex.dll version 3.52.0.2151
2015-02-13 14:18:37        Component engine\savi.dll version 8.1.0.2151
2015-02-13 14:18:37        Component rkdisk.dll version 1.5.30.0
2015-02-13 14:18:37        Version info:        Product version        2.5
2015-02-13 14:18:37        Version info:        Detection engine        3.52.0
2015-02-13 14:18:37        Version info:        Detection data        4.99
2015-02-13 14:18:37        Version info:        Build date        12.03.2014
2015-02-13 14:18:37        Version info:        Data files added        643
2015-02-13 14:18:37        Version info:        Last successful update        (not yet updated)

2015-02-13 15:40:05        Could not open C:\hiberfil.sys
2015-02-13 15:40:09        Could not open C:\pagefile.sys
2015-02-13 15:57:20        Could not open C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-13 15:57:20        Could not open C:\System Volume Information\{5033070c-b2dc-11e4-a0cf-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-13 15:57:20        Could not open C:\System Volume Information\{81094f9d-b145-11e4-a345-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-13 15:57:20        Could not open C:\System Volume Information\{ae6f8e7d-b1b6-11e4-832a-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-13 15:57:20        Could not open C:\System Volume Information\{c37e665a-b25e-11e4-8d54-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-13 15:57:20        Could not open C:\System Volume Information\{c37e6715-b25e-11e4-8d54-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-13 16:01:22        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FSX3KZGE\cd32106bcb6de321930cf34574ea388c[3].htm
2015-02-13 16:02:15        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\LDQLQADO\cd32106bcb6de321930cf34574ea388c[1].htm
2015-02-13 16:08:28        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-13 16:08:28        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-13 16:08:28        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-13 16:08:28        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-13 16:08:28        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-13 16:08:28        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-13 16:08:29        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-13 16:08:29        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-13 16:08:29        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-13 16:08:29        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-13 16:09:29        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-13 16:09:29        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-13 16:09:29        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-13 16:09:29        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-13 16:09:29        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-13 16:09:29        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-13 16:09:29        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-13 16:09:29        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-13 16:09:29        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-13 16:09:29        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-13 16:09:32        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\aosta 09.ppt (corrupt)
2015-02-13 16:09:32        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\aosta 09.ppt (corrupt)
2015-02-13 16:09:34        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Cagliari dicembre 08.ppt (corrupt)
2015-02-13 16:09:34        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Cagliari dicembre 08.ppt (corrupt)
2015-02-13 16:09:39        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Genova febbraio 09.ppt (corrupt)
2015-02-13 16:09:39        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Genova febbraio 09.ppt (corrupt)
2015-02-13 16:09:45        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\kh bozen 290910.ppt (corrupt)
2015-02-13 16:09:45        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\kh bozen 290910.ppt (corrupt)
2015-02-13 16:09:54        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-13 16:09:54        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-13 16:09:54        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-13 16:09:54        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-13 16:09:54        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-13 16:09:54        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-13 16:09:55        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-13 16:09:55        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-13 16:09:55        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-13 16:09:55        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-13 16:10:04        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-13 16:10:04        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-13 16:10:04        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-13 16:10:04        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-13 16:10:04        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-13 16:10:04        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-13 16:10:04        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-13 16:10:04        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-13 16:23:41        Could not open C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb
2015-02-13 16:23:41        Could not open C:\Windows\System32\catroot2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\catdb
2015-02-13 17:03:44        The following items will be cleaned up:
2015-02-13 17:03:44        Mal/Iframe-AN
2015-02-13 17:03:44        Mal/Iframe-AN
2015-02-13 17:06:21        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FSX3KZGE\cd32106bcb6de321930cf34574ea388c[3].htm
2015-02-13 17:06:21        Disinfection failed [0xa0040208]
2015-02-13 17:06:21        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\LDQLQADO\cd32106bcb6de321930cf34574ea388c[1].htm
2015-02-13 17:06:21        Disinfection failed [0xa0040208]
2015-02-13 17:06:21        Error: cleanup failed.
2015-02-13 17:06:21        Contents of SafeClean bin directory:
2015-02-13 17:06:21        {
2015-02-13 17:06:21            RecordID  : "0000000000000001",
2015-02-13 17:06:21            ItemType  : "1",
2015-02-13 17:06:21            Location  : "C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\M9NJNLX8\",
2015-02-13 17:06:21            FileName  : "8f13583[1].htm",
2015-02-13 17:06:21            ThreatName : "Mal/ExpJS-BD",
2015-02-13 17:06:21            Checksum  : "17fc1480202f0e4954b33646661bceda15650ff3b01dfad06215f13e95fcc8ab",
2015-02-13 17:06:21            TimeStamp  : "Tue Feb 10 22:01:30 2015"
2015-02-13 17:06:21        }
2015-02-13 17:06:21        {
2015-02-13 17:06:21            RecordID  : "0000000000000002",
2015-02-13 17:06:21            ItemType  : "1",
2015-02-13 17:06:21            Location  : "C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\PFGQ7V32\",
2015-02-13 17:06:21            FileName  : "cc87a3c[1].htm",
2015-02-13 17:06:21            ThreatName : "Mal/ExpJS-BD",
2015-02-13 17:06:21            Checksum  : "3dc3337348b77121336ae41830a69737455e345915945f4f1298c4f5ed60ce16",
2015-02-13 17:06:21            TimeStamp  : "Tue Feb 10 22:01:30 2015"
2015-02-13 17:06:21        }
2015-02-13 17:06:21        {
2015-02-13 17:06:21            RecordID  : "0000000000000003",
2015-02-13 17:06:21            ItemType  : "1",
2015-02-13 17:06:21            Location  : "C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YDMD8WZ9\",
2015-02-13 17:06:21            FileName  : "9edb0a1[1].htm",
2015-02-13 17:06:21            ThreatName : "Mal/ExpJS-BD",
2015-02-13 17:06:21            Checksum  : "dea41c8bb2f2d80e5cf1a1b06502cf04e7e53925e75dc002e81fe36dd9bedde8",
2015-02-13 17:06:21            TimeStamp  : "Tue Feb 10 22:01:30 2015"
2015-02-13 17:06:21        }

2015-02-13 17:06:27       

------------------------------------------------------------

2015-02-13 23:31:44        Sophos Virus Removal Tool version 2.5
2015-02-13 23:31:44        Copyright (c) 2009-2014 Sophos Limited. All rights reserved.

2015-02-13 23:31:44        This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2015-02-13 23:31:44        Windows version 6.1 SP 1.0 Service Pack 1 build 7601 SM=0x300 PT=0x1 WOW64
2015-02-13 23:31:44        Checking for updates...
2015-02-13 23:31:45        Update progress: proxy server not available
2015-02-13 23:31:46        Update error: invalid login credentials (error 5)
Couldn't authenticate user for resource with host server. URL was: hxxp://dci.sophosupd.com/update
2015-02-13 23:32:05        Option all = no
2015-02-13 23:32:05        Option recurse = yes
2015-02-13 23:32:05        Option archive = no
2015-02-13 23:32:05        Option service = yes
2015-02-13 23:32:05        Option confirm = yes
2015-02-13 23:32:05        Option sxl = yes
2015-02-13 23:32:05        Option max-data-age = 35
2015-02-13 23:32:05        Option EnableSafeClean = yes
2015-02-13 23:32:06        Component SVRTcli.exe version 2.5
2015-02-13 23:32:06        Component control.dll version 2.5
2015-02-13 23:32:06        Component SVRTservice.exe version 2.5
2015-02-13 23:32:06        Component engine\osdp.dll version 1.44.1.2151
2015-02-13 23:32:06        Component engine\veex.dll version 3.52.0.2151
2015-02-13 23:32:06        Component engine\savi.dll version 8.1.0.2151
2015-02-13 23:32:06        Component rkdisk.dll version 1.5.30.0
2015-02-13 23:32:06        Version info:        Product version        2.5
2015-02-13 23:32:06        Version info:        Detection engine        3.52.0
2015-02-13 23:32:06        Version info:        Detection data        4.99
2015-02-13 23:32:06        Version info:        Build date        12.03.2014
2015-02-13 23:32:06        Version info:        Data files added        643
2015-02-13 23:32:06        Version info:        Last successful update        (not yet updated)

2015-02-14 00:51:12        Could not open C:\hiberfil.sys
2015-02-14 00:51:17        Could not open C:\pagefile.sys
2015-02-14 01:07:44        Could not open C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-14 01:07:44        Could not open C:\System Volume Information\{5033070c-b2dc-11e4-a0cf-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-14 01:07:44        Could not open C:\System Volume Information\{81094f9d-b145-11e4-a345-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-14 01:07:44        Could not open C:\System Volume Information\{ae6f8e7d-b1b6-11e4-832a-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-14 01:07:44        Could not open C:\System Volume Information\{c37e665a-b25e-11e4-8d54-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-14 01:11:30        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FSX3KZGE\cd32106bcb6de321930cf34574ea388c[3].htm
2015-02-14 01:12:27        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\LDQLQADO\cd32106bcb6de321930cf34574ea388c[1].htm
2015-02-14 01:18:47        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-14 01:18:47        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-14 01:18:47        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-14 01:18:47        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-14 01:18:47        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-14 01:18:47        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-14 01:18:48        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-14 01:18:48        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-14 01:18:48        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-14 01:18:48        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-14 01:19:42        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-14 01:19:42        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-14 01:19:42        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-14 01:19:42        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-14 01:19:42        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-14 01:19:42        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-14 01:19:42        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-14 01:19:42        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-14 01:19:42        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-14 01:19:42        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-14 01:19:45        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\aosta 09.ppt (corrupt)
2015-02-14 01:19:45        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\aosta 09.ppt (corrupt)
2015-02-14 01:19:47        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Cagliari dicembre 08.ppt (corrupt)
2015-02-14 01:19:47        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Cagliari dicembre 08.ppt (corrupt)
2015-02-14 01:19:52        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Genova febbraio 09.ppt (corrupt)
2015-02-14 01:19:52        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Genova febbraio 09.ppt (corrupt)
2015-02-14 01:19:58        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\kh bozen 290910.ppt (corrupt)
2015-02-14 01:19:58        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\kh bozen 290910.ppt (corrupt)
2015-02-14 01:20:06        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-14 01:20:06        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-14 01:20:06        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-14 01:20:06        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-14 01:20:07        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-14 01:20:07        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-14 01:20:07        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-14 01:20:07        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-14 01:20:07        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-14 01:20:07        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-14 01:20:16        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-14 01:20:16        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-14 01:20:16        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-14 01:20:16        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-14 01:20:16        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-14 01:20:16        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-14 01:20:16        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-14 01:20:16        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-14 01:33:29        Could not open C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb
2015-02-14 01:33:29        Could not open C:\Windows\System32\catroot2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\catdb
2015-02-14 02:10:01        The following items will be cleaned up:
2015-02-14 02:10:01        Mal/Iframe-AN
2015-02-14 02:10:01        Mal/Iframe-AN
2015-02-14 10:10:42        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FSX3KZGE\cd32106bcb6de321930cf34574ea388c[3].htm
2015-02-14 10:10:42        Disinfection failed [0xa0040208]
2015-02-14 10:10:42        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\LDQLQADO\cd32106bcb6de321930cf34574ea388c[1].htm
2015-02-14 10:10:42        Disinfection failed [0xa0040208]
2015-02-14 10:10:42        Error: cleanup failed.
2015-02-14 10:10:42        Contents of SafeClean bin directory:
2015-02-14 10:10:42        {
2015-02-14 10:10:42            RecordID  : "0000000000000001",
2015-02-14 10:10:42            ItemType  : "1",
2015-02-14 10:10:42            Location  : "C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\M9NJNLX8\",
2015-02-14 10:10:42            FileName  : "8f13583[1].htm",
2015-02-14 10:10:42            ThreatName : "Mal/ExpJS-BD",
2015-02-14 10:10:42            Checksum  : "17fc1480202f0e4954b33646661bceda15650ff3b01dfad06215f13e95fcc8ab",
2015-02-14 10:10:42            TimeStamp  : "Tue Feb 10 22:01:30 2015"
2015-02-14 10:10:42        }
2015-02-14 10:10:42        {
2015-02-14 10:10:42            RecordID  : "0000000000000002",
2015-02-14 10:10:42            ItemType  : "1",
2015-02-14 10:10:42            Location  : "C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\PFGQ7V32\",
2015-02-14 10:10:42            FileName  : "cc87a3c[1].htm",
2015-02-14 10:10:42            ThreatName : "Mal/ExpJS-BD",
2015-02-14 10:10:42            Checksum  : "3dc3337348b77121336ae41830a69737455e345915945f4f1298c4f5ed60ce16",
2015-02-14 10:10:42            TimeStamp  : "Tue Feb 10 22:01:30 2015"
2015-02-14 10:10:42        }
2015-02-14 10:10:42        {
2015-02-14 10:10:42            RecordID  : "0000000000000003",
2015-02-14 10:10:42            ItemType  : "1",
2015-02-14 10:10:42            Location  : "C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YDMD8WZ9\",
2015-02-14 10:10:42            FileName  : "9edb0a1[1].htm",
2015-02-14 10:10:42            ThreatName : "Mal/ExpJS-BD",
2015-02-14 10:10:42            Checksum  : "dea41c8bb2f2d80e5cf1a1b06502cf04e7e53925e75dc002e81fe36dd9bedde8",
2015-02-14 10:10:42            TimeStamp  : "Tue Feb 10 22:01:30 2015"
2015-02-14 10:10:42        }

2015-02-14 10:10:45       

------------------------------------------------------------

2015-02-14 13:33:31        Sophos Virus Removal Tool version 2.5
2015-02-14 13:33:31        Copyright (c) 2009-2014 Sophos Limited. All rights reserved.

2015-02-14 13:33:31        This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2015-02-14 13:33:31        Windows version 6.1 SP 1.0 Service Pack 1 build 7601 SM=0x300 PT=0x1 WOW64
2015-02-14 13:33:31        Checking for updates...
2015-02-14 13:33:32        Update progress: proxy server not available
2015-02-14 13:33:33        Update error: invalid login credentials (error 5)
Couldn't authenticate user for resource with host server. URL was: hxxp://dci.sophosupd.com/update
2015-02-14 13:33:53        Option all = no
2015-02-14 13:33:53        Option recurse = yes
2015-02-14 13:33:53        Option archive = no
2015-02-14 13:33:53        Option service = yes
2015-02-14 13:33:53        Option confirm = yes
2015-02-14 13:33:53        Option sxl = yes
2015-02-14 13:33:53        Option max-data-age = 35
2015-02-14 13:33:53        Option EnableSafeClean = yes
2015-02-14 13:33:53        Component SVRTcli.exe version 2.5
2015-02-14 13:33:53        Component control.dll version 2.5
2015-02-14 13:33:53        Component SVRTservice.exe version 2.5
2015-02-14 13:33:53        Component engine\osdp.dll version 1.44.1.2151
2015-02-14 13:33:53        Component engine\veex.dll version 3.52.0.2151
2015-02-14 13:33:53        Component engine\savi.dll version 8.1.0.2151
2015-02-14 13:33:53        Component rkdisk.dll version 1.5.30.0
2015-02-14 13:33:53        Version info:        Product version        2.5
2015-02-14 13:33:53        Version info:        Detection engine        3.52.0
2015-02-14 13:33:53        Version info:        Detection data        4.99
2015-02-14 13:33:53        Version info:        Build date        12.03.2014
2015-02-14 13:33:53        Version info:        Data files added        643
2015-02-14 13:33:53        Version info:        Last successful update        (not yet updated)

2015-02-14 13:33:55        Scan completed.
2015-02-14 13:33:55       

------------------------------------------------------------

2015-02-15 09:56:11        Sophos Virus Removal Tool version 2.5
2015-02-15 09:56:11        Copyright (c) 2009-2014 Sophos Limited. All rights reserved.

2015-02-15 09:56:11        This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2015-02-15 09:56:11        Windows version 6.1 SP 1.0 Service Pack 1 build 7601 SM=0x300 PT=0x1 WOW64
2015-02-15 09:56:11        Checking for updates...
2015-02-15 09:56:12        Update progress: proxy server not available
2015-02-15 09:56:12        Update error: failed to read remote metadata (error 4)
Cannot locate server for hxxp://dci.sophosupd.com/update/8/88/888c2c22f42b98235fc94517e2970497.xml
2015-02-15 09:56:33        Option all = no
2015-02-15 09:56:33        Option recurse = yes
2015-02-15 09:56:33        Option archive = no
2015-02-15 09:56:33        Option service = yes
2015-02-15 09:56:33        Option confirm = yes
2015-02-15 09:56:33        Option sxl = yes
2015-02-15 09:56:33        Option max-data-age = 35
2015-02-15 09:56:33        Option EnableSafeClean = yes
2015-02-15 09:56:33        Component SVRTcli.exe version 2.5
2015-02-15 09:56:33        Component control.dll version 2.5
2015-02-15 09:56:33        Component SVRTservice.exe version 2.5
2015-02-15 09:56:33        Component engine\osdp.dll version 1.44.1.2151
2015-02-15 09:56:33        Component engine\veex.dll version 3.52.0.2151
2015-02-15 09:56:33        Component engine\savi.dll version 8.1.0.2151
2015-02-15 09:56:33        Component rkdisk.dll version 1.5.30.0
2015-02-15 09:56:33        Version info:        Product version        2.5
2015-02-15 09:56:33        Version info:        Detection engine        3.52.0
2015-02-15 09:56:33        Version info:        Detection data        4.99
2015-02-15 09:56:33        Version info:        Build date        12.03.2014
2015-02-15 09:56:33        Version info:        Data files added        643
2015-02-15 09:56:33        Version info:        Last successful update        (not yet updated)

2015-02-15 09:56:43        Couldn't apply option 'SXLLiveProtection' to the detection engine.
2015-02-15 11:13:44        Could not open C:\hiberfil.sys
2015-02-15 11:13:47        Could not open C:\pagefile.sys
2015-02-15 11:30:17        Could not open C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-15 11:30:17        Could not open C:\System Volume Information\{5033070c-b2dc-11e4-a0cf-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-15 11:30:17        Could not open C:\System Volume Information\{7e559c7d-b429-11e4-9cba-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-15 11:30:17        Could not open C:\System Volume Information\{7e559de3-b429-11e4-9cba-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-15 11:30:17        Could not open C:\System Volume Information\{81094f9d-b145-11e4-a345-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-15 11:30:17        Could not open C:\System Volume Information\{ae6f8e7d-b1b6-11e4-832a-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-15 11:30:17        Could not open C:\System Volume Information\{c37e665a-b25e-11e4-8d54-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-15 11:34:09        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FSX3KZGE\cd32106bcb6de321930cf34574ea388c[3].htm
2015-02-15 11:35:05        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\LDQLQADO\cd32106bcb6de321930cf34574ea388c[1].htm
2015-02-15 11:41:26        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-15 11:41:26        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-15 11:41:26        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-15 11:41:26        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-15 11:41:26        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-15 11:41:26        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-15 11:41:27        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-15 11:41:27        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-15 11:41:27        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-15 11:41:27        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-15 11:42:20        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-15 11:42:20        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-15 11:42:20        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-15 11:42:20        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-15 11:42:20        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-15 11:42:20        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-15 11:42:20        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-15 11:42:20        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-15 11:42:20        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-15 11:42:20        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-15 11:42:22        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\aosta 09.ppt (corrupt)
2015-02-15 11:42:22        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\aosta 09.ppt (corrupt)
2015-02-15 11:42:25        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Cagliari dicembre 08.ppt (corrupt)
2015-02-15 11:42:25        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Cagliari dicembre 08.ppt (corrupt)
2015-02-15 11:42:30        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Genova febbraio 09.ppt (corrupt)
2015-02-15 11:42:30        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Genova febbraio 09.ppt (corrupt)
2015-02-15 11:42:36        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\kh bozen 290910.ppt (corrupt)
2015-02-15 11:42:36        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\kh bozen 290910.ppt (corrupt)
2015-02-15 11:42:44        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-15 11:42:44        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-15 11:42:45        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-15 11:42:45        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-15 11:42:45        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-15 11:42:45        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-15 11:42:45        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-15 11:42:45        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-15 11:42:45        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-15 11:42:45        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-15 11:42:55        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-15 11:42:55        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-15 11:42:55        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-15 11:42:55        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-15 11:42:55        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-15 11:42:55        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-15 11:42:55        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-15 11:42:55        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-15 11:56:12        Could not open C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb
2015-02-15 11:56:12        Could not open C:\Windows\System32\catroot2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\catdb
2015-02-15 12:32:54        The following items will be cleaned up:
2015-02-15 12:32:54        Mal/Iframe-AN
2015-02-15 12:32:54        Mal/Iframe-AN
2015-02-15 16:06:39        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FSX3KZGE\cd32106bcb6de321930cf34574ea388c[3].htm
2015-02-15 16:06:39        Disinfection failed [0xa0040208]
2015-02-15 16:06:39        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\LDQLQADO\cd32106bcb6de321930cf34574ea388c[1].htm
2015-02-15 16:06:39        Disinfection failed [0xa0040208]
2015-02-15 16:06:39        Error: cleanup failed.
2015-02-15 16:06:39        Contents of SafeClean bin directory:
2015-02-15 16:06:39        {
2015-02-15 16:06:39            RecordID  : "0000000000000001",
2015-02-15 16:06:39            ItemType  : "1",
2015-02-15 16:06:39            Location  : "C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\M9NJNLX8\",
2015-02-15 16:06:39            FileName  : "8f13583[1].htm",
2015-02-15 16:06:39            ThreatName : "Mal/ExpJS-BD",
2015-02-15 16:06:39            Checksum  : "17fc1480202f0e4954b33646661bceda15650ff3b01dfad06215f13e95fcc8ab",
2015-02-15 16:06:39            TimeStamp  : "Tue Feb 10 22:01:30 2015"
2015-02-15 16:06:39        }
2015-02-15 16:06:39        {
2015-02-15 16:06:39            RecordID  : "0000000000000002",
2015-02-15 16:06:39            ItemType  : "1",
2015-02-15 16:06:39            Location  : "C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\PFGQ7V32\",
2015-02-15 16:06:39            FileName  : "cc87a3c[1].htm",
2015-02-15 16:06:39            ThreatName : "Mal/ExpJS-BD",
2015-02-15 16:06:39            Checksum  : "3dc3337348b77121336ae41830a69737455e345915945f4f1298c4f5ed60ce16",
2015-02-15 16:06:39            TimeStamp  : "Tue Feb 10 22:01:30 2015"
2015-02-15 16:06:39        }
2015-02-15 16:06:39        {
2015-02-15 16:06:39            RecordID  : "0000000000000003",
2015-02-15 16:06:39            ItemType  : "1",
2015-02-15 16:06:39            Location  : "C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YDMD8WZ9\",
2015-02-15 16:06:39            FileName  : "9edb0a1[1].htm",
2015-02-15 16:06:39            ThreatName : "Mal/ExpJS-BD",
2015-02-15 16:06:39            Checksum  : "dea41c8bb2f2d80e5cf1a1b06502cf04e7e53925e75dc002e81fe36dd9bedde8",
2015-02-15 16:06:39            TimeStamp  : "Tue Feb 10 22:01:30 2015"
2015-02-15 16:06:39        }

2015-02-15 16:06:42       

------------------------------------------------------------

2015-02-15 16:08:58        Sophos Virus Removal Tool version 2.5
2015-02-15 16:08:58        Copyright (c) 2009-2014 Sophos Limited. All rights reserved.

2015-02-15 16:08:58        This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2015-02-15 16:08:58        Windows version 6.1 SP 1.0 Service Pack 1 build 7601 SM=0x300 PT=0x1 WOW64
2015-02-15 16:09:01        Removed SafeClean bin directory.


2015-02-15 16:09:01        Scan completed.
2015-02-15 16:09:01       

------------------------------------------------------------


Martinovic 23.02.2015 22:17

Code:

2015-02-16 13:48:12        Sophos Virus Removal Tool version 2.5
2015-02-16 13:48:12        Copyright (c) 2009-2014 Sophos Limited. All rights reserved.

2015-02-16 13:48:12        This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2015-02-16 13:48:12        Windows version 6.1 SP 1.0 Service Pack 1 build 7601 SM=0x300 PT=0x1 WOW64
2015-02-16 13:48:12        Checking for updates...
2015-02-16 13:48:15        Update progress: proxy server not available
2015-02-16 13:48:17        Update error: invalid login credentials (error 5)
Couldn't authenticate user for resource with host server. URL was: hxxp://dci.sophosupd.com/update
2015-02-16 13:48:27        Option all = no
2015-02-16 13:48:27        Option recurse = yes
2015-02-16 13:48:27        Option archive = no
2015-02-16 13:48:27        Option service = yes
2015-02-16 13:48:27        Option confirm = yes
2015-02-16 13:48:27        Option sxl = yes
2015-02-16 13:48:27        Option max-data-age = 35
2015-02-16 13:48:27        Option EnableSafeClean = yes
2015-02-16 13:48:28        Component SVRTcli.exe version 2.5
2015-02-16 13:48:28        Component control.dll version 2.5
2015-02-16 13:48:28        Component SVRTservice.exe version 2.5
2015-02-16 13:48:28        Component engine\osdp.dll version 1.44.1.2151
2015-02-16 13:48:28        Component engine\veex.dll version 3.52.0.2151
2015-02-16 13:48:28        Component engine\savi.dll version 8.1.0.2151
2015-02-16 13:48:28        Component rkdisk.dll version 1.5.30.0
2015-02-16 13:48:28        Version info:        Product version        2.5
2015-02-16 13:48:28        Version info:        Detection engine        3.52.0
2015-02-16 13:48:28        Version info:        Detection data        4.99
2015-02-16 13:48:28        Version info:        Build date        12.03.2014
2015-02-16 13:48:28        Version info:        Data files added        643
2015-02-16 13:48:28        Version info:        Last successful update        (not yet updated)

2015-02-16 13:48:35        Scan completed.
2015-02-16 13:48:35       

------------------------------------------------------------

2015-02-16 14:10:21        Sophos Virus Removal Tool version 2.5
2015-02-16 14:10:21        Copyright (c) 2009-2014 Sophos Limited. All rights reserved.

2015-02-16 14:10:21        This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2015-02-16 14:10:21        Windows version 6.1 SP 1.0 Service Pack 1 build 7601 SM=0x300 PT=0x1 WOW64
2015-02-16 14:10:21        Checking for updates...
2015-02-16 14:10:22        Update progress: proxy server not available
2015-02-16 14:10:23        Update error: invalid login credentials (error 5)
Couldn't authenticate user for resource with host server. URL was: hxxp://dci.sophosupd.com/update
2015-02-16 14:10:33        Option all = no
2015-02-16 14:10:33        Option recurse = yes
2015-02-16 14:10:33        Option archive = no
2015-02-16 14:10:33        Option service = yes
2015-02-16 14:10:33        Option confirm = yes
2015-02-16 14:10:33        Option sxl = yes
2015-02-16 14:10:33        Option max-data-age = 35
2015-02-16 14:10:33        Option EnableSafeClean = yes
2015-02-16 14:10:33        Component SVRTcli.exe version 2.5
2015-02-16 14:10:33        Component control.dll version 2.5
2015-02-16 14:10:33        Component SVRTservice.exe version 2.5
2015-02-16 14:10:33        Component engine\osdp.dll version 1.44.1.2151
2015-02-16 14:10:33        Component engine\veex.dll version 3.52.0.2151
2015-02-16 14:10:33        Component engine\savi.dll version 8.1.0.2151
2015-02-16 14:10:33        Component rkdisk.dll version 1.5.30.0
2015-02-16 14:10:33        Version info:        Product version        2.5
2015-02-16 14:10:33        Version info:        Detection engine        3.52.0
2015-02-16 14:10:33        Version info:        Detection data        4.99
2015-02-16 14:10:33        Version info:        Build date        12.03.2014
2015-02-16 14:10:33        Version info:        Data files added        643
2015-02-16 14:10:33        Version info:        Last successful update        (not yet updated)

2015-02-16 15:30:00        Could not open C:\hiberfil.sys
2015-02-16 15:30:06        Could not open C:\pagefile.sys
2015-02-16 15:47:38        Could not open C:\System Volume Information\{1f75ebf4-b4ed-11e4-a0be-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-16 15:47:38        Could not open C:\System Volume Information\{1f75ec69-b4ed-11e4-a0be-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-16 15:47:38        Could not open C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-16 15:47:38        Could not open C:\System Volume Information\{5033070c-b2dc-11e4-a0cf-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-16 15:47:38        Could not open C:\System Volume Information\{7e559c7d-b429-11e4-9cba-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-16 15:47:38        Could not open C:\System Volume Information\{7e559de3-b429-11e4-9cba-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-16 15:47:38        Could not open C:\System Volume Information\{ae6f8e7d-b1b6-11e4-832a-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-16 15:47:38        Could not open C:\System Volume Information\{c37e665a-b25e-11e4-8d54-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-16 15:51:47        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FSX3KZGE\cd32106bcb6de321930cf34574ea388c[3].htm
2015-02-16 15:52:45        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\LDQLQADO\cd32106bcb6de321930cf34574ea388c[1].htm
2015-02-16 15:59:20        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-16 15:59:20        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-16 15:59:20        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-16 15:59:20        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-16 15:59:20        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-16 15:59:20        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-16 15:59:21        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-16 15:59:21        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-16 15:59:21        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-16 15:59:21        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-16 16:00:17        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-16 16:00:17        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-16 16:00:17        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-16 16:00:17        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-16 16:00:17        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-16 16:00:17        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-16 16:00:17        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-16 16:00:17        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-16 16:00:17        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-16 16:00:17        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-16 16:00:19        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\aosta 09.ppt (corrupt)
2015-02-16 16:00:19        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\aosta 09.ppt (corrupt)
2015-02-16 16:00:22        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Cagliari dicembre 08.ppt (corrupt)
2015-02-16 16:00:22        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Cagliari dicembre 08.ppt (corrupt)
2015-02-16 16:00:27        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Genova febbraio 09.ppt (corrupt)
2015-02-16 16:00:27        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Genova febbraio 09.ppt (corrupt)
2015-02-16 16:00:32        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\kh bozen 290910.ppt (corrupt)
2015-02-16 16:00:32        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\kh bozen 290910.ppt (corrupt)
2015-02-16 16:00:41        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-16 16:00:41        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-16 16:00:41        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-16 16:00:41        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-16 16:00:41        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-16 16:00:41        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-16 16:00:41        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-16 16:00:41        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-16 16:00:41        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-16 16:00:41        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-16 16:00:50        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-16 16:00:50        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-16 16:00:50        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-16 16:00:50        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-16 16:00:50        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-16 16:00:50        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-16 16:00:51        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-16 16:00:51        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-16 16:14:22        Could not open C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb
2015-02-16 16:14:22        Could not open C:\Windows\System32\catroot2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\catdb
2015-02-16 16:51:43        The following items will be cleaned up:
2015-02-16 16:51:43        Mal/Iframe-AN
2015-02-16 16:51:43        Mal/Iframe-AN
2015-02-16 18:52:16        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FSX3KZGE\cd32106bcb6de321930cf34574ea388c[3].htm
2015-02-16 18:52:16        Disinfection failed [0xa0040208]
2015-02-16 18:52:16        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\LDQLQADO\cd32106bcb6de321930cf34574ea388c[1].htm
2015-02-16 18:52:16        Disinfection failed [0xa0040208]
2015-02-16 18:52:16        Error: cleanup failed.
2015-02-16 18:52:16        SafeClean bin directory is empty.

2015-02-16 19:34:41       

------------------------------------------------------------

2015-02-16 19:34:52        Sophos Virus Removal Tool version 2.5
2015-02-16 19:34:52        Copyright (c) 2009-2014 Sophos Limited. All rights reserved.

2015-02-16 19:34:52        This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2015-02-16 19:34:52        Windows version 6.1 SP 1.0 Service Pack 1 build 7601 SM=0x300 PT=0x1 WOW64
2015-02-16 19:34:52        Checking for updates...
2015-02-16 19:34:53        Update progress: proxy server not available
2015-02-16 19:34:55        Update error: invalid login credentials (error 5)
Couldn't authenticate user for resource with host server. URL was: hxxp://dci.sophosupd.com/update
2015-02-16 19:35:15        Option all = no
2015-02-16 19:35:15        Option recurse = yes
2015-02-16 19:35:15        Option archive = no
2015-02-16 19:35:15        Option service = yes
2015-02-16 19:35:15        Option confirm = yes
2015-02-16 19:35:15        Option sxl = yes
2015-02-16 19:35:15        Option max-data-age = 35
2015-02-16 19:35:15        Option EnableSafeClean = yes
2015-02-16 19:35:15        Component SVRTcli.exe version 2.5
2015-02-16 19:35:15        Component control.dll version 2.5
2015-02-16 19:35:15        Component SVRTservice.exe version 2.5
2015-02-16 19:35:15        Component engine\osdp.dll version 1.44.1.2151
2015-02-16 19:35:15        Component engine\veex.dll version 3.52.0.2151
2015-02-16 19:35:15        Component engine\savi.dll version 8.1.0.2151
2015-02-16 19:35:15        Component rkdisk.dll version 1.5.30.0
2015-02-16 19:35:15        Version info:        Product version        2.5
2015-02-16 19:35:15        Version info:        Detection engine        3.52.0
2015-02-16 19:35:15        Version info:        Detection data        4.99
2015-02-16 19:35:15        Version info:        Build date        12.03.2014
2015-02-16 19:35:15        Version info:        Data files added        643
2015-02-16 19:35:15        Version info:        Last successful update        (not yet updated)

2015-02-16 19:35:28        Scan completed.
2015-02-16 19:35:28       

------------------------------------------------------------

2015-02-16 19:35:32        Sophos Virus Removal Tool version 2.5
2015-02-16 19:35:32        Copyright (c) 2009-2014 Sophos Limited. All rights reserved.

2015-02-16 19:35:32        This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2015-02-16 19:35:32        Windows version 6.1 SP 1.0 Service Pack 1 build 7601 SM=0x300 PT=0x1 WOW64
2015-02-16 19:35:32        Checking for updates...
2015-02-16 19:35:33        Update progress: proxy server not available
2015-02-16 19:35:36        Update error: invalid login credentials (error 5)
Couldn't authenticate user for resource with host server. URL was: hxxp://dci.sophosupd.com/update
2015-02-16 19:35:44        Option all = no
2015-02-16 19:35:44        Option recurse = yes
2015-02-16 19:35:44        Option archive = no
2015-02-16 19:35:44        Option service = yes
2015-02-16 19:35:44        Option confirm = yes
2015-02-16 19:35:44        Option sxl = yes
2015-02-16 19:35:44        Option max-data-age = 35
2015-02-16 19:35:44        Option EnableSafeClean = yes
2015-02-16 19:35:44        Component SVRTcli.exe version 2.5
2015-02-16 19:35:44        Component control.dll version 2.5
2015-02-16 19:35:44        Component SVRTservice.exe version 2.5
2015-02-16 19:35:44        Component engine\osdp.dll version 1.44.1.2151
2015-02-16 19:35:44        Component engine\veex.dll version 3.52.0.2151
2015-02-16 19:35:44        Component engine\savi.dll version 8.1.0.2151
2015-02-16 19:35:44        Component rkdisk.dll version 1.5.30.0
2015-02-16 19:35:44        Version info:        Product version        2.5
2015-02-16 19:35:44        Version info:        Detection engine        3.52.0
2015-02-16 19:35:44        Version info:        Detection data        4.99
2015-02-16 19:35:44        Version info:        Build date        12.03.2014
2015-02-16 19:35:44        Version info:        Data files added        643
2015-02-16 19:35:44        Version info:        Last successful update        (not yet updated)

2015-02-16 19:36:57        Scan completed.
2015-02-16 19:36:57       

------------------------------------------------------------

2015-02-16 19:38:30        Sophos Virus Removal Tool version 2.5
2015-02-16 19:38:30        Copyright (c) 2009-2014 Sophos Limited. All rights reserved.

2015-02-16 19:38:30        This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2015-02-16 19:38:30        Windows version 6.1 SP 1.0 Service Pack 1 build 7601 SM=0x300 PT=0x1 WOW64
2015-02-16 19:38:33        Removed SafeClean bin directory.


2015-02-16 19:38:33        Scan completed.
2015-02-16 19:38:33       

------------------------------------------------------------

2015-02-17 17:29:25        Sophos Virus Removal Tool version 2.5
2015-02-17 17:29:25        Copyright (c) 2009-2014 Sophos Limited. All rights reserved.

2015-02-17 17:29:25        This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2015-02-17 17:29:25        Windows version 6.1 SP 1.0 Service Pack 1 build 7601 SM=0x300 PT=0x1 WOW64
2015-02-17 17:29:25        Checking for updates...
2015-02-17 17:29:25        Update progress: proxy server not available
2015-02-17 17:29:26        Update error: invalid login credentials (error 5)
Couldn't authenticate user for resource with host server. URL was: hxxp://dci.sophosupd.com/update
2015-02-17 17:29:35        Option all = no
2015-02-17 17:29:35        Option recurse = yes
2015-02-17 17:29:35        Option archive = no
2015-02-17 17:29:35        Option service = yes
2015-02-17 17:29:35        Option confirm = yes
2015-02-17 17:29:35        Option sxl = yes
2015-02-17 17:29:35        Option max-data-age = 35
2015-02-17 17:29:35        Option EnableSafeClean = yes
2015-02-17 17:29:37        Component SVRTcli.exe version 2.5
2015-02-17 17:29:37        Component control.dll version 2.5
2015-02-17 17:29:37        Component SVRTservice.exe version 2.5
2015-02-17 17:29:37        Component engine\osdp.dll version 1.44.1.2151
2015-02-17 17:29:37        Component engine\veex.dll version 3.52.0.2151
2015-02-17 17:29:37        Component engine\savi.dll version 8.1.0.2151
2015-02-17 17:29:37        Component rkdisk.dll version 1.5.30.0
2015-02-17 17:29:37        Version info:        Product version        2.5
2015-02-17 17:29:37        Version info:        Detection engine        3.52.0
2015-02-17 17:29:37        Version info:        Detection data        4.99
2015-02-17 17:29:37        Version info:        Build date        12.03.2014
2015-02-17 17:29:37        Version info:        Data files added        643
2015-02-17 17:29:37        Version info:        Last successful update        (not yet updated)

2015-02-17 18:44:17        Could not open C:\hiberfil.sys
2015-02-17 18:44:21        Could not open C:\pagefile.sys
2015-02-17 19:01:23        Could not open C:\System Volume Information\{03f07afb-b6bc-11e4-baa2-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-17 19:01:23        Could not open C:\System Volume Information\{1f75ebf4-b4ed-11e4-a0be-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-17 19:01:23        Could not open C:\System Volume Information\{1f75ec69-b4ed-11e4-a0be-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-17 19:01:23        Could not open C:\System Volume Information\{1f75ec8d-b4ed-11e4-a0be-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-17 19:01:23        Could not open C:\System Volume Information\{1f75ed10-b4ed-11e4-a0be-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-17 19:01:23        Could not open C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-17 19:01:23        Could not open C:\System Volume Information\{5033070c-b2dc-11e4-a0cf-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-17 19:01:23        Could not open C:\System Volume Information\{7e559c7d-b429-11e4-9cba-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-17 19:01:23        Could not open C:\System Volume Information\{7e559de3-b429-11e4-9cba-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-17 19:01:23        Could not open C:\System Volume Information\{87ed0fd6-b6b7-11e4-85e2-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-17 19:01:23        Could not open C:\System Volume Information\{ae6f8e7d-b1b6-11e4-832a-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-17 19:01:23        Could not open C:\System Volume Information\{c37e665a-b25e-11e4-8d54-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-17 19:06:41        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FSX3KZGE\cd32106bcb6de321930cf34574ea388c[3].htm
2015-02-17 19:07:53        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\LDQLQADO\cd32106bcb6de321930cf34574ea388c[1].htm
2015-02-17 19:15:32        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-17 19:15:32        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-17 19:15:32        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-17 19:15:32        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-17 19:15:32        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-17 19:15:32        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-17 19:15:32        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-17 19:15:32        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-17 19:15:32        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-17 19:15:32        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-17 19:16:31        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-17 19:16:31        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-17 19:16:31        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-17 19:16:31        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-17 19:16:31        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-17 19:16:31        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-17 19:16:31        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-17 19:16:31        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-17 19:16:31        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-17 19:16:31        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-17 19:16:33        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\aosta 09.ppt (corrupt)
2015-02-17 19:16:33        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\aosta 09.ppt (corrupt)
2015-02-17 19:16:36        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Cagliari dicembre 08.ppt (corrupt)
2015-02-17 19:16:36        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Cagliari dicembre 08.ppt (corrupt)
2015-02-17 19:16:43        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Genova febbraio 09.ppt (corrupt)
2015-02-17 19:16:43        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Genova febbraio 09.ppt (corrupt)
2015-02-17 19:16:50        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\kh bozen 290910.ppt (corrupt)
2015-02-17 19:16:50        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\kh bozen 290910.ppt (corrupt)
2015-02-17 19:16:59        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-17 19:16:59        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-17 19:16:59        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-17 19:16:59        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-17 19:16:59        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-17 19:16:59        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-17 19:17:00        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-17 19:17:00        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-17 19:17:00        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-17 19:17:00        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-17 19:17:11        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-17 19:17:11        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-17 19:17:11        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-17 19:17:11        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-17 19:17:11        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-17 19:17:11        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-17 19:17:11        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-17 19:17:11        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-17 19:32:54        Could not open C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb
2015-02-17 19:32:54        Could not open C:\Windows\System32\catroot2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\catdb
2015-02-17 20:10:07        The following items will be cleaned up:
2015-02-17 20:10:07        Mal/Iframe-AN
2015-02-17 20:10:07        Mal/Iframe-AN
2015-02-18 19:13:39        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FSX3KZGE\cd32106bcb6de321930cf34574ea388c[3].htm
2015-02-18 19:13:39        Disinfection failed [0xa0040208]
2015-02-18 19:13:39        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\LDQLQADO\cd32106bcb6de321930cf34574ea388c[1].htm
2015-02-18 19:13:39        Disinfection failed [0xa0040208]
2015-02-18 19:13:39        Error: cleanup failed.
2015-02-18 19:13:39        SafeClean bin directory is empty.

2015-02-18 19:14:08       

------------------------------------------------------------

2015-02-18 19:14:12        Sophos Virus Removal Tool version 2.5
2015-02-18 19:14:12        Copyright (c) 2009-2014 Sophos Limited. All rights reserved.

2015-02-18 19:14:12        This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2015-02-18 19:14:12        Windows version 6.1 SP 1.0 Service Pack 1 build 7601 SM=0x300 PT=0x1 WOW64
2015-02-18 19:14:12        Checking for updates...
2015-02-18 19:14:14        Update progress: proxy server not available
2015-02-18 19:14:17        Update error: invalid login credentials (error 5)
Couldn't authenticate user for resource with host server. URL was: hxxp://dci.sophosupd.com/update
2015-02-18 19:14:33        Option all = no
2015-02-18 19:14:33        Option recurse = yes
2015-02-18 19:14:33        Option archive = no
2015-02-18 19:14:33        Option service = yes
2015-02-18 19:14:33        Option confirm = yes
2015-02-18 19:14:33        Option sxl = yes
2015-02-18 19:14:33        Option max-data-age = 35
2015-02-18 19:14:33        Option EnableSafeClean = yes
2015-02-18 19:14:33        Component SVRTcli.exe version 2.5
2015-02-18 19:14:33        Component control.dll version 2.5
2015-02-18 19:14:33        Component SVRTservice.exe version 2.5
2015-02-18 19:14:33        Component engine\osdp.dll version 1.44.1.2151
2015-02-18 19:14:33        Component engine\veex.dll version 3.52.0.2151
2015-02-18 19:14:33        Component engine\savi.dll version 8.1.0.2151
2015-02-18 19:14:33        Component rkdisk.dll version 1.5.30.0
2015-02-18 19:14:33        Version info:        Product version        2.5
2015-02-18 19:14:33        Version info:        Detection engine        3.52.0
2015-02-18 19:14:33        Version info:        Detection data        4.99
2015-02-18 19:14:33        Version info:        Build date        12.03.2014
2015-02-18 19:14:33        Version info:        Data files added        643
2015-02-18 19:14:33        Version info:        Last successful update        (not yet updated)

2015-02-18 19:18:46        Scan completed.
2015-02-18 19:18:46       

------------------------------------------------------------

2015-02-18 19:46:23        Sophos Virus Removal Tool version 2.5
2015-02-18 19:46:23        Copyright (c) 2009-2014 Sophos Limited. All rights reserved.

2015-02-18 19:46:23        This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2015-02-18 19:46:23        Windows version 6.1 SP 1.0 Service Pack 1 build 7601 SM=0x300 PT=0x1 WOW64
2015-02-18 19:46:23        Checking for updates...
2015-02-18 19:46:24        Update progress: proxy server not available
2015-02-18 19:46:26        Update error: invalid login credentials (error 5)
Couldn't authenticate user for resource with host server. URL was: hxxp://dci.sophosupd.com/update
2015-02-18 19:46:48        Option all = no
2015-02-18 19:46:48        Option recurse = yes
2015-02-18 19:46:48        Option archive = no
2015-02-18 19:46:48        Option service = yes
2015-02-18 19:46:48        Option confirm = yes
2015-02-18 19:46:48        Option sxl = yes
2015-02-18 19:46:48        Option max-data-age = 35
2015-02-18 19:46:48        Option EnableSafeClean = yes
2015-02-18 19:46:49        Component SVRTcli.exe version 2.5
2015-02-18 19:46:49        Component control.dll version 2.5
2015-02-18 19:46:49        Component SVRTservice.exe version 2.5
2015-02-18 19:46:49        Component engine\osdp.dll version 1.44.1.2151
2015-02-18 19:46:49        Component engine\veex.dll version 3.52.0.2151
2015-02-18 19:46:49        Component engine\savi.dll version 8.1.0.2151
2015-02-18 19:46:49        Component rkdisk.dll version 1.5.30.0
2015-02-18 19:46:49        Version info:        Product version        2.5
2015-02-18 19:46:49        Version info:        Detection engine        3.52.0
2015-02-18 19:46:49        Version info:        Detection data        4.99
2015-02-18 19:46:49        Version info:        Build date        12.03.2014
2015-02-18 19:46:49        Version info:        Data files added        643
2015-02-18 19:46:49        Version info:        Last successful update        (not yet updated)

2015-02-18 19:47:02        Scan completed.
2015-02-18 19:47:02       

------------------------------------------------------------

2015-02-18 19:57:39        Sophos Virus Removal Tool version 2.5
2015-02-18 19:57:39        Copyright (c) 2009-2014 Sophos Limited. All rights reserved.

2015-02-18 19:57:39        This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2015-02-18 19:57:39        Windows version 6.1 SP 1.0 Service Pack 1 build 7601 SM=0x300 PT=0x1 WOW64
2015-02-18 19:57:39        Checking for updates...
2015-02-18 19:57:40        Update progress: proxy server not available
2015-02-18 19:57:41        Update error: invalid login credentials (error 5)
Couldn't authenticate user for resource with host server. URL was: hxxp://dci.sophosupd.com/update
2015-02-18 19:57:51        Option all = no
2015-02-18 19:57:51        Option recurse = yes
2015-02-18 19:57:51        Option archive = no
2015-02-18 19:57:51        Option service = yes
2015-02-18 19:57:51        Option confirm = yes
2015-02-18 19:57:51        Option sxl = yes
2015-02-18 19:57:51        Option max-data-age = 35
2015-02-18 19:57:51        Option EnableSafeClean = yes
2015-02-18 19:57:52        Component SVRTcli.exe version 2.5
2015-02-18 19:57:52        Component control.dll version 2.5
2015-02-18 19:57:52        Component SVRTservice.exe version 2.5
2015-02-18 19:57:52        Component engine\osdp.dll version 1.44.1.2151
2015-02-18 19:57:52        Component engine\veex.dll version 3.52.0.2151
2015-02-18 19:57:52        Component engine\savi.dll version 8.1.0.2151
2015-02-18 19:57:52        Component rkdisk.dll version 1.5.30.0
2015-02-18 19:57:52        Version info:        Product version        2.5
2015-02-18 19:57:52        Version info:        Detection engine        3.52.0
2015-02-18 19:57:52        Version info:        Detection data        4.99
2015-02-18 19:57:52        Version info:        Build date        12.03.2014
2015-02-18 19:57:52        Version info:        Data files added        643
2015-02-18 19:57:52        Version info:        Last successful update        (not yet updated)

2015-02-18 22:43:14        Could not open C:\hiberfil.sys
2015-02-18 22:43:19        Could not open C:\pagefile.sys
2015-02-18 23:01:10        Could not open C:\System Volume Information\{03f07afb-b6bc-11e4-baa2-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-18 23:01:10        Could not open C:\System Volume Information\{1f75ebf4-b4ed-11e4-a0be-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-18 23:01:10        Could not open C:\System Volume Information\{1f75ec69-b4ed-11e4-a0be-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-18 23:01:10        Could not open C:\System Volume Information\{1f75ec8d-b4ed-11e4-a0be-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-18 23:01:10        Could not open C:\System Volume Information\{1f75ed10-b4ed-11e4-a0be-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-18 23:01:10        Could not open C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-18 23:01:10        Could not open C:\System Volume Information\{5033070c-b2dc-11e4-a0cf-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-18 23:01:10        Could not open C:\System Volume Information\{7e559c7d-b429-11e4-9cba-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-18 23:01:10        Could not open C:\System Volume Information\{7e559de3-b429-11e4-9cba-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-18 23:01:10        Could not open C:\System Volume Information\{87ed0fd6-b6b7-11e4-85e2-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-18 23:01:10        Could not open C:\System Volume Information\{ae6f8e7d-b1b6-11e4-832a-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-18 23:01:10        Could not open C:\System Volume Information\{c37e665a-b25e-11e4-8d54-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-18 23:04:15        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FSX3KZGE\cd32106bcb6de321930cf34574ea388c[3].htm
2015-02-18 23:05:11        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\LDQLQADO\cd32106bcb6de321930cf34574ea388c[1].htm
2015-02-18 23:11:14        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-18 23:11:14        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-18 23:11:15        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-18 23:11:15        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-18 23:11:15        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-18 23:11:15        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-18 23:11:15        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-18 23:11:15        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-18 23:11:15        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-18 23:11:15        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-18 23:12:15        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-18 23:12:15        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-18 23:12:15        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-18 23:12:15        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-18 23:12:15        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-18 23:12:15        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-18 23:12:15        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-18 23:12:15        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-18 23:12:15        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-18 23:12:15        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-18 23:12:17        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\aosta 09.ppt (corrupt)
2015-02-18 23:12:17        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\aosta 09.ppt (corrupt)
2015-02-18 23:12:20        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Cagliari dicembre 08.ppt (corrupt)
2015-02-18 23:12:20        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Cagliari dicembre 08.ppt (corrupt)
2015-02-18 23:12:26        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Genova febbraio 09.ppt (corrupt)
2015-02-18 23:12:26        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Genova febbraio 09.ppt (corrupt)
2015-02-18 23:12:31        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\kh bozen 290910.ppt (corrupt)
2015-02-18 23:12:31        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\kh bozen 290910.ppt (corrupt)
2015-02-18 23:12:41        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-18 23:12:41        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-18 23:12:41        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-18 23:12:41        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-18 23:12:41        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-18 23:12:41        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-18 23:12:41        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-18 23:12:41        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-18 23:12:41        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-18 23:12:41        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-18 23:12:51        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-18 23:12:51        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-18 23:12:51        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-18 23:12:51        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-18 23:12:51        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-18 23:12:51        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-18 23:12:51        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-18 23:12:51        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-18 23:27:59        Could not open C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb
2015-02-18 23:27:59        Could not open C:\Windows\System32\catroot2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\catdb
2015-02-19 00:07:14        The following items will be cleaned up:
2015-02-19 00:07:14        Mal/Iframe-AN
2015-02-19 00:07:14        Mal/Iframe-AN
2015-02-19 07:32:36        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FSX3KZGE\cd32106bcb6de321930cf34574ea388c[3].htm
2015-02-19 07:32:36        Disinfection failed [0xa0040208]
2015-02-19 07:32:36        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\LDQLQADO\cd32106bcb6de321930cf34574ea388c[1].htm
2015-02-19 07:32:36        Disinfection failed [0xa0040208]
2015-02-19 07:32:36        Error: cleanup failed.
2015-02-19 07:32:36        SafeClean bin directory is empty.

2015-02-19 14:32:19       

------------------------------------------------------------

2015-02-19 14:43:53        Sophos Virus Removal Tool version 2.5
2015-02-19 14:43:53        Copyright (c) 2009-2014 Sophos Limited. All rights reserved.

2015-02-19 14:43:53        This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2015-02-19 14:43:53        Windows version 6.1 SP 1.0 Service Pack 1 build 7601 SM=0x300 PT=0x1 WOW64
2015-02-19 14:43:53        Checking for updates...
2015-02-19 14:43:54        Update progress: proxy server not available
2015-02-19 14:43:55        Update error: invalid login credentials (error 5)
Couldn't authenticate user for resource with host server. URL was: hxxp://dci.sophosupd.com/update
2015-02-19 14:44:09        Option all = no
2015-02-19 14:44:09        Option recurse = yes
2015-02-19 14:44:09        Option archive = no
2015-02-19 14:44:09        Option service = yes
2015-02-19 14:44:09        Option confirm = yes
2015-02-19 14:44:09        Option sxl = yes
2015-02-19 14:44:09        Option max-data-age = 35
2015-02-19 14:44:09        Option EnableSafeClean = yes
2015-02-19 14:44:09        Component SVRTcli.exe version 2.5
2015-02-19 14:44:09        Component control.dll version 2.5
2015-02-19 14:44:09        Component SVRTservice.exe version 2.5
2015-02-19 14:44:09        Component engine\osdp.dll version 1.44.1.2151
2015-02-19 14:44:09        Component engine\veex.dll version 3.52.0.2151
2015-02-19 14:44:09        Component engine\savi.dll version 8.1.0.2151
2015-02-19 14:44:09        Component rkdisk.dll version 1.5.30.0
2015-02-19 14:44:09        Version info:        Product version        2.5
2015-02-19 14:44:09        Version info:        Detection engine        3.52.0
2015-02-19 14:44:09        Version info:        Detection data        4.99
2015-02-19 14:44:09        Version info:        Build date        12.03.2014
2015-02-19 14:44:09        Version info:        Data files added        643
2015-02-19 14:44:09        Version info:        Last successful update        (not yet updated)

2015-02-19 16:06:19        Could not open C:\hiberfil.sys
2015-02-19 16:06:23        Could not open C:\pagefile.sys
2015-02-19 16:23:13        Could not open C:\System Volume Information\{03f07afb-b6bc-11e4-baa2-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-19 16:23:13        Could not open C:\System Volume Information\{1f75ebf4-b4ed-11e4-a0be-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-19 16:23:13        Could not open C:\System Volume Information\{1f75ec69-b4ed-11e4-a0be-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-19 16:23:13        Could not open C:\System Volume Information\{1f75ec8d-b4ed-11e4-a0be-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-19 16:23:13        Could not open C:\System Volume Information\{1f75ed10-b4ed-11e4-a0be-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-19 16:23:13        Could not open C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-19 16:23:13        Could not open C:\System Volume Information\{5033070c-b2dc-11e4-a0cf-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-19 16:23:13        Could not open C:\System Volume Information\{7e559c7d-b429-11e4-9cba-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-19 16:23:13        Could not open C:\System Volume Information\{7e559de3-b429-11e4-9cba-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-19 16:23:13        Could not open C:\System Volume Information\{87ed0fd6-b6b7-11e4-85e2-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-19 16:23:13        Could not open C:\System Volume Information\{ae6f8e7d-b1b6-11e4-832a-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-19 16:23:13        Could not open C:\System Volume Information\{c37e665a-b25e-11e4-8d54-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-19 16:26:08        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FSX3KZGE\cd32106bcb6de321930cf34574ea388c[3].htm
2015-02-19 16:27:01        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\LDQLQADO\cd32106bcb6de321930cf34574ea388c[1].htm
2015-02-19 16:32:44        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-19 16:32:44        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-19 16:32:45        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-19 16:32:45        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-19 16:32:45        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-19 16:32:45        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-19 16:32:45        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-19 16:32:45        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-19 16:32:45        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-19 16:32:45        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-19 16:33:39        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-19 16:33:39        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-19 16:33:39        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-19 16:33:39        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-19 16:33:39        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-19 16:33:39        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-19 16:33:39        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-19 16:33:39        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-19 16:33:39        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-19 16:33:39        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-19 16:33:41        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\aosta 09.ppt (corrupt)
2015-02-19 16:33:41        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\aosta 09.ppt (corrupt)
2015-02-19 16:33:44        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Cagliari dicembre 08.ppt (corrupt)
2015-02-19 16:33:44        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Cagliari dicembre 08.ppt (corrupt)
2015-02-19 16:33:49        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Genova febbraio 09.ppt (corrupt)
2015-02-19 16:33:49        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Genova febbraio 09.ppt (corrupt)
2015-02-19 16:33:55        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\kh bozen 290910.ppt (corrupt)
2015-02-19 16:33:55        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\kh bozen 290910.ppt (corrupt)
2015-02-19 16:34:04        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-19 16:34:04        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-19 16:34:04        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-19 16:34:04        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-19 16:34:05        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-19 16:34:05        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-19 16:34:05        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-19 16:34:05        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-19 16:34:05        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-19 16:34:05        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-19 16:34:14        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-19 16:34:14        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-19 16:34:15        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-19 16:34:15        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-19 16:34:15        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-19 16:34:15        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-19 16:34:15        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-19 16:34:15        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-19 16:50:13        Could not open C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb
2015-02-19 16:50:13        Could not open C:\Windows\System32\catroot2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\catdb
2015-02-19 17:29:20        The following items will be cleaned up:
2015-02-19 17:29:20        Mal/Iframe-AN
2015-02-19 17:29:20        Mal/Iframe-AN
2015-02-19 17:45:55        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FSX3KZGE\cd32106bcb6de321930cf34574ea388c[3].htm
2015-02-19 17:45:55        Disinfection failed [0xa0040208]
2015-02-19 17:45:55        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\LDQLQADO\cd32106bcb6de321930cf34574ea388c[1].htm
2015-02-19 17:45:55        Disinfection failed [0xa0040208]
2015-02-19 17:45:55        Error: cleanup failed.
2015-02-19 17:45:55        SafeClean bin directory is empty.

2015-02-19 19:55:49       

------------------------------------------------------------

2015-02-22 17:00:00        Sophos Virus Removal Tool version 2.5
2015-02-22 17:00:00        Copyright (c) 2009-2014 Sophos Limited. All rights reserved.

2015-02-22 17:00:00        This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2015-02-22 17:00:00        Windows version 6.1 SP 1.0 Service Pack 1 build 7601 SM=0x300 PT=0x1 WOW64
2015-02-22 17:00:00        Checking for updates...
2015-02-22 17:00:00        Update progress: proxy server not available
2015-02-22 17:00:01        Update error: invalid login credentials (error 5)
Couldn't authenticate user for resource with host server. URL was: hxxp://dci.sophosupd.com/update
2015-02-22 17:00:20        Option all = no
2015-02-22 17:00:20        Option recurse = yes
2015-02-22 17:00:20        Option archive = no
2015-02-22 17:00:20        Option service = yes
2015-02-22 17:00:20        Option confirm = yes
2015-02-22 17:00:20        Option sxl = yes
2015-02-22 17:00:20        Option max-data-age = 35
2015-02-22 17:00:20        Option EnableSafeClean = yes
2015-02-22 17:00:20        Component SVRTcli.exe version 2.5
2015-02-22 17:00:20        Component control.dll version 2.5
2015-02-22 17:00:20        Component SVRTservice.exe version 2.5
2015-02-22 17:00:20        Component engine\osdp.dll version 1.44.1.2151
2015-02-22 17:00:20        Component engine\veex.dll version 3.52.0.2151
2015-02-22 17:00:20        Component engine\savi.dll version 8.1.0.2151
2015-02-22 17:00:20        Component rkdisk.dll version 1.5.30.0
2015-02-22 17:00:20        Version info:        Product version        2.5
2015-02-22 17:00:20        Version info:        Detection engine        3.52.0
2015-02-22 17:00:20        Version info:        Detection data        4.99
2015-02-22 17:00:20        Version info:        Build date        12.03.2014
2015-02-22 17:00:20        Version info:        Data files added        643
2015-02-22 17:00:20        Version info:        Last successful update        (not yet updated)

2015-02-22 18:13:50        Could not open C:\hiberfil.sys
2015-02-22 18:13:55        Could not open C:\pagefile.sys
2015-02-22 18:32:38        Could not open C:\System Volume Information\{03f07afb-b6bc-11e4-baa2-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-22 18:32:38        Could not open C:\System Volume Information\{165be752-b869-11e4-ba10-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-22 18:32:38        Could not open C:\System Volume Information\{165be8bf-b869-11e4-ba10-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-22 18:32:38        Could not open C:\System Volume Information\{165be91c-b869-11e4-ba10-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-22 18:32:38        Could not open C:\System Volume Information\{1f75ebf4-b4ed-11e4-a0be-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-22 18:32:38        Could not open C:\System Volume Information\{1f75ec69-b4ed-11e4-a0be-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-22 18:32:38        Could not open C:\System Volume Information\{1f75ec8d-b4ed-11e4-a0be-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-22 18:32:38        Could not open C:\System Volume Information\{1f75ed10-b4ed-11e4-a0be-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-22 18:32:38        Could not open C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-22 18:32:38        Could not open C:\System Volume Information\{87ed0fd6-b6b7-11e4-85e2-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-22 18:36:50        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FSX3KZGE\cd32106bcb6de321930cf34574ea388c[3].htm
2015-02-22 18:37:49        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\LDQLQADO\cd32106bcb6de321930cf34574ea388c[1].htm
2015-02-22 18:43:17        >>> Virus 'Mal/Generic-S' found in file C:\Users\Martin_N\Desktop\AdwCleaner_4.111.exe
2015-02-22 18:44:06        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-22 18:44:06        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-22 18:44:06        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-22 18:44:06        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-22 18:44:07        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-22 18:44:07        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-22 18:44:07        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-22 18:44:07        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-22 18:44:07        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-22 18:44:07        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-22 18:45:23        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-22 18:45:23        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-22 18:45:23        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-22 18:45:23        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-22 18:45:23        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-22 18:45:23        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-22 18:45:23        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-22 18:45:23        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-22 18:45:23        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-22 18:45:23        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-22 18:45:26        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\aosta 09.ppt (corrupt)
2015-02-22 18:45:26        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\aosta 09.ppt (corrupt)
2015-02-22 18:45:29        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Cagliari dicembre 08.ppt (corrupt)
2015-02-22 18:45:29        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Cagliari dicembre 08.ppt (corrupt)
2015-02-22 18:45:35        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Genova febbraio 09.ppt (corrupt)
2015-02-22 18:45:35        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Genova febbraio 09.ppt (corrupt)
2015-02-22 18:45:43        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\kh bozen 290910.ppt (corrupt)
2015-02-22 18:45:43        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\kh bozen 290910.ppt (corrupt)
2015-02-22 18:45:54        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-22 18:45:54        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-22 18:45:54        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-22 18:45:54        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-22 18:45:55        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-22 18:45:55        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-22 18:45:55        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-22 18:45:55        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-22 18:45:55        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-22 18:45:55        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-22 18:46:08        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-22 18:46:08        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-22 18:46:08        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-22 18:46:08        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-22 18:46:09        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-22 18:46:09        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-22 18:46:09        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-22 18:46:09        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-22 19:00:45        Could not open C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb
2015-02-22 19:00:45        Could not open C:\Windows\System32\catroot2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\catdb
2015-02-22 19:38:29        The following items will be cleaned up:
2015-02-22 19:38:29        Mal/Generic-S
2015-02-22 19:38:29        Mal/Iframe-AN
2015-02-22 19:38:29        Mal/Iframe-AN
2015-02-22 19:41:10        Threat 'Mal/Generic-S' has been cleaned up.
2015-02-22 19:41:10        File "C:\Users\Martin_N\Desktop\AdwCleaner_4.111.exe" belongs to malware 'Mal/Generic-S'.
2015-02-22 19:41:10        File "C:\Users\Martin_N\Desktop\AdwCleaner_4.111.exe" has been cleaned up.
2015-02-22 19:41:10        Removal successful
2015-02-22 19:41:10        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FSX3KZGE\cd32106bcb6de321930cf34574ea388c[3].htm
2015-02-22 19:41:10        Disinfection failed [0xa0040208]
2015-02-22 19:41:11        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\LDQLQADO\cd32106bcb6de321930cf34574ea388c[1].htm
2015-02-22 19:41:11        Disinfection failed [0xa0040208]
2015-02-22 19:41:11        Error: cleanup failed.
2015-02-22 19:41:11        Contents of SafeClean bin directory:
2015-02-22 19:41:11        {
2015-02-22 19:41:11            RecordID  : "0000000000000001",
2015-02-22 19:41:11            ItemType  : "1",
2015-02-22 19:41:11            Location  : "C:\Users\Martin_N\Desktop\",
2015-02-22 19:41:11            FileName  : "AdwCleaner_4.111.exe",
2015-02-22 19:41:11            ThreatName : "Mal/Generic-S",
2015-02-22 19:41:11            Checksum  : "7da318606e340e223ac9f5cf82570f584ba79fef9e6ea7ccdfe16a9fb09ae443",
2015-02-22 19:41:11            TimeStamp  : "Sun Feb 22 19:41:04 2015"
2015-02-22 19:41:11        }

2015-02-22 19:41:23       

------------------------------------------------------------

2015-02-23 18:33:46        Sophos Virus Removal Tool version 2.5
2015-02-23 18:33:46        Copyright (c) 2009-2014 Sophos Limited. All rights reserved.

2015-02-23 18:33:46        This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2015-02-23 18:33:46        Windows version 6.1 SP 1.0 Service Pack 1 build 7601 SM=0x300 PT=0x1 WOW64
2015-02-23 18:33:46        Checking for updates...
2015-02-23 18:33:50        Update progress: proxy server not available
2015-02-23 18:33:51        Update error: invalid login credentials (error 5)
Couldn't authenticate user for resource with host server. URL was: hxxp://dci.sophosupd.com/update
2015-02-23 18:34:16        Option all = no
2015-02-23 18:34:16        Option recurse = yes
2015-02-23 18:34:16        Option archive = no
2015-02-23 18:34:16        Option service = yes
2015-02-23 18:34:16        Option confirm = yes
2015-02-23 18:34:16        Option sxl = yes
2015-02-23 18:34:16        Option max-data-age = 35
2015-02-23 18:34:16        Option EnableSafeClean = yes
2015-02-23 18:34:17        Component SVRTcli.exe version 2.5
2015-02-23 18:34:17        Component control.dll version 2.5
2015-02-23 18:34:17        Component SVRTservice.exe version 2.5
2015-02-23 18:34:17        Component engine\osdp.dll version 1.44.1.2151
2015-02-23 18:34:17        Component engine\veex.dll version 3.52.0.2151
2015-02-23 18:34:17        Component engine\savi.dll version 8.1.0.2151
2015-02-23 18:34:17        Component rkdisk.dll version 1.5.30.0
2015-02-23 18:34:17        Version info:        Product version        2.5
2015-02-23 18:34:17        Version info:        Detection engine        3.52.0
2015-02-23 18:34:17        Version info:        Detection data        4.99
2015-02-23 18:34:17        Version info:        Build date        12.03.2014
2015-02-23 18:34:17        Version info:        Data files added        643
2015-02-23 18:34:17        Version info:        Last successful update        (not yet updated)

2015-02-23 19:51:51        Could not open C:\hiberfil.sys
2015-02-23 19:51:55        Could not open C:\pagefile.sys
2015-02-23 20:08:29        Could not open C:\System Volume Information\{03f07afb-b6bc-11e4-baa2-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-23 20:08:29        Could not open C:\System Volume Information\{165be752-b869-11e4-ba10-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-23 20:08:29        Could not open C:\System Volume Information\{165be8bf-b869-11e4-ba10-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-23 20:08:29        Could not open C:\System Volume Information\{165be91c-b869-11e4-ba10-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-23 20:08:29        Could not open C:\System Volume Information\{1f75ebf4-b4ed-11e4-a0be-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-23 20:08:29        Could not open C:\System Volume Information\{1f75ec69-b4ed-11e4-a0be-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-23 20:08:29        Could not open C:\System Volume Information\{1f75ec8d-b4ed-11e4-a0be-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-23 20:08:29        Could not open C:\System Volume Information\{1f75ed10-b4ed-11e4-a0be-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-23 20:08:29        Could not open C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-23 20:08:29        Could not open C:\System Volume Information\{87ed0fd6-b6b7-11e4-85e2-1cc1deaded33}{3808876b-c176-4e48-b7ae-04046e6cc752}
2015-02-23 20:11:51        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FSX3KZGE\cd32106bcb6de321930cf34574ea388c[3].htm
2015-02-23 20:12:42        >>> Virus 'Mal/Iframe-AN' found in file C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\LDQLQADO\cd32106bcb6de321930cf34574ea388c[1].htm
2015-02-23 20:18:28        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-23 20:18:28        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-23 20:18:28        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-23 20:18:28        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-23 20:18:28        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-23 20:18:28        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-23 20:18:28        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-23 20:18:28        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-23 20:18:28        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-23 20:18:28        Could not check C:\Users\Martin_N\Documents\Job\2011_12_FORUM_PRÄVENTION\Vorträge_WS\ppp Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-23 20:19:23        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-23 20:19:23        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-23 20:19:23        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-23 20:19:23        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-23 20:19:23        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-23 20:19:23        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-23 20:19:23        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-23 20:19:23        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-23 20:19:23        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-23 20:19:23        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Lucia\presentazione Forum Consulta giovani.ppt (corrupt)
2015-02-23 20:19:25        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\aosta 09.ppt (corrupt)
2015-02-23 20:19:25        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\aosta 09.ppt (corrupt)
2015-02-23 20:19:28        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Cagliari dicembre 08.ppt (corrupt)
2015-02-23 20:19:28        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Cagliari dicembre 08.ppt (corrupt)
2015-02-23 20:19:33        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Genova febbraio 09.ppt (corrupt)
2015-02-23 20:19:33        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Genova febbraio 09.ppt (corrupt)
2015-02-23 20:19:38        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\kh bozen 290910.ppt (corrupt)
2015-02-23 20:19:38        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\kh bozen 290910.ppt (corrupt)
2015-02-23 20:19:46        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-23 20:19:46        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-23 20:19:47        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-23 20:19:47        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-23 20:19:47        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-23 20:19:47        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-23 20:19:47        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-23 20:19:47        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-23 20:19:47        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-23 20:19:47        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Peter\Vortrag Über Alkohol reden Peter.ppt (corrupt)
2015-02-23 20:19:56        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-23 20:19:56        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-23 20:19:56        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-23 20:19:56        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-23 20:19:56        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-23 20:19:56        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-23 20:19:56        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-23 20:19:56        Could not check C:\Users\Martin_N\Documents\Staatsprüf\tirocinio\Forum Vorträge August 2010\PPP Sylvia\Vortrag Über Alkohol reden.ppt (corrupt)
2015-02-23 20:33:51        Could not open C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb
2015-02-23 20:33:51        Could not open C:\Windows\System32\catroot2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\catdb
2015-02-23 21:12:43        The following items will be cleaned up:
2015-02-23 21:12:43        Mal/Iframe-AN
2015-02-23 21:12:43        Mal/Iframe-AN


schrauber 24.02.2015 11:56

Java und Firefox updaten.

Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:

C:\AdwCleaner\Quarantine\C\Program Files (x86)\Common Files\DVDVideoSoft\TB\ConduitInstaller.exe.vir

C:\Users\Martin_N\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\CXVB29MC\busty-euro-blonde-gets-facialed-hd-4074[1].htm

C:\Users\Martin_N\AppData\Local\Temp\chatzum_softonic_yahoo_62_v5.exe

C:\Users\Martin_N\AppData\Local\Temp\is-PMQAB.tmp\InnoSetupHelper.dll
Emptytemp:


Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.





Scann nochmal mit Sophos.

Martinovic 24.02.2015 17:06

habe die von sophos als malware angezeigten Dateien manuell gelöscht, jetzt passts:
sophos findet nichts mehr.
Danke!


Alle Zeitangaben in WEZ +1. Es ist jetzt 18:50 Uhr.

Copyright ©2000-2024, Trojaner-Board


Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129