Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 08-08-2013 02
Ran by Doreen (administrator) on 09-08-2013 14:34:13
Running from C:\Users\Doreen\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
(Skype Technologies S.A.) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update 5\VAIOUpdt.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCSpt.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint\Apoint.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint\ApMsgFwd.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCsystray.exe
(TomTom) C:\Program Files (x86)\MyTomTom 3\MyTomTomSA.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint\Apntex.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(ALPS) C:\Program Files\Apoint\Apvfb.exe
() C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [10134560 2010-04-07] (Realtek Semiconductor)
HKLM\...\Run: [Apoint] - C:\Program Files\Apoint\Apoint.exe [221480 2010-05-17] (Alps Electric Co., Ltd.)
HKCU\...\Run: [GoogleChromeAutoLaunch_D2F5426E75CBD0003B0CEF99188969B0] - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [846288 2013-07-25] (Google Inc.)
HKCU\...\Run: [MyTomTomSA.exe] - C:\Program Files (x86)\MyTomTom 3\MyTomTomSA.exe [451656 2013-01-07] (TomTom)
MountPoints2: {3b398574-71bf-11e0-a296-78843c300638} - E:\AutoRun.exe
MountPoints2: {3b398577-71bf-11e0-a296-78843c300638} - E:\AutoRun.exe
MountPoints2: {99af5726-428a-11e0-860a-78843c300638} - E:\AutoRun.exe
MountPoints2: {99af572d-428a-11e0-860a-78843c300638} - E:\setup_vmc_lite.exe /checkApplicationPresence
MountPoints2: {f4699e06-434d-11e0-8742-78843c300638} - E:\AutoRun.exe
HKLM-x32\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\avastUI.exe [4858968 2013-05-09] (AVAST Software)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [DivXMediaServer] - C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [450560 2013-05-20] (DivX, LLC)
HKLM-x32\...\Run: [DivXUpdate] - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1263952 2013-02-13] ()
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.de/
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com/ig/redirectdomain?brand=SVED&bmod=EU01
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live Family Safety Browser Helper Class - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO-x32: DivX Plus Web Player HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
BHO-x32: No Name - {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
Toolbar: HKLM-x32 - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation)
Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
FireFox:
========
FF ProfilePath: C:\Users\Doreen\AppData\Roaming\Mozilla\Firefox\Profiles\f93wpxaq.default
FF Homepage: www.google.de
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll ()
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll ()
FF Plugin-x32: @divx.com/DivX Plus Web Player Plug-In,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8081.0709 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll ()
FF Extension: No Name - C:\Users\Doreen\AppData\Roaming\Mozilla\Firefox\Profiles\f93wpxaq.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF HKLM-x32\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5
FF Extension: DivX Plus Web Player HTML5 <video> - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5
Chrome:
=======
CHR RestoreOnStartup: "hxxp://start.iminent.com/?appId=7E87E80C-EE70-4D21-AA56-3368420DAE8C", "hxxp://www.google.com"
CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding}
CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter}
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.79\PepperFlash\pepflashplayer.dll No File
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.95\gcswf32.dll No File
CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll No File
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.95\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.95\pdf.dll ()
CHR Plugin: (Skype Click to Call) - C:\Users\Doreen\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.1.0.10441_0\npSkypeChromePlugin.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Java Deployment Toolkit 6.0.270.7) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll No File
CHR Plugin: (Java(TM) Platform SE 6 U27) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll No File
CHR Plugin: (DivX VOD Helper Plug-in) - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
CHR Plugin: (DivX Web Player) - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll No File
CHR Plugin: (Windows Live\u00AE Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Extension: (Skype Click to Call) - C:\Users\Doreen\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.3.0.11079_0
CHR Extension: (DVDVideoSoft Browser Extension) - C:\Users\Doreen\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.0_0
CHR Extension: (DivX Plus Web Player HTML5 \u003Cvideo\u003E) - C:\Users\Doreen\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.172_0
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx
CHR HKLM-x32\...\Chrome\Extension: [nneajnkjbffgblleaoojgaacokifdkhm] - C:\Program Files (x86)\DivX\DivX Plus Web Player\chrome\DivXHTML5\DivXHTML5.crx
CHR StartMenuInternet: Google Chrome - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Services (Whitelisted) =================
S4 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [109056 2009-09-28] (ArcSoft Inc.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808 2013-05-09] (AVAST Software)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
S4 Roxio UPnP Renderer 10; C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe [313840 2009-11-25] (Sonic Solutions)
S4 Roxio Upnp Server 10; C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUpnpService10.exe [362992 2009-11-25] (Sonic Solutions)
S4 SampleCollector; C:\Program Files\Sony\VAIO Care\collsvc.exe [168448 2009-12-22] (Sony of America Corporation)
S4 uCamMonitor; C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [104960 2008-09-18] (ArcSoft, Inc.)
S4 VAIO Entertainment TV Device Arbitration Service; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzHardwareResourceManager\VzHardwareResourceManager\VzHardwareResourceManager.exe [69632 2010-04-08] (Sony Corporation)
S4 VCFw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [852336 2010-03-18] (Sony Corporation)
S4 VUAgent; C:\Program Files\Sony\VAIO Update 5\VUAgent.exe [1203568 2010-01-22] (Sony Corporation)
R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [453120 2010-11-20] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
R3 ArcSoftKsUFilter; C:\Windows\System32\DRIVERS\ArcSoftKsUFilter.sys [19968 2009-05-26] (ArcSoft, Inc.)
R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [33400 2013-05-09] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [80816 2013-05-09] (AVAST Software)
R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [72016 2013-05-09] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65336 2013-05-09] ()
R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [1030952 2013-07-22] (AVAST Software)
R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [378944 2013-07-22] (AVAST Software)
R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [64288 2013-05-09] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [189936 2013-07-22] ()
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-08-09 14:32 - 2013-08-09 14:33 - 01790169 _____ (Farbar) C:\Users\Doreen\Downloads\FRST64.exe
2013-08-09 13:29 - 2013-08-09 13:29 - 00000056 _____ C:\Windows\setupact.log
2013-08-09 13:29 - 2013-08-09 13:29 - 00000000 _____ C:\Windows\setuperr.log
2013-08-09 13:13 - 2013-08-09 13:13 - 00000000 ____D C:\Windows\ERUNT
2013-08-09 13:12 - 2013-08-09 13:13 - 00958036 _____ (Oleg N. Scherbakov) C:\Users\Doreen\Downloads\JRT(1).exe
2013-08-09 13:03 - 2013-08-09 13:04 - 00013448 _____ C:\AdwCleaner[S1].txt
2013-08-09 13:03 - 2013-08-09 13:03 - 00666633 _____ C:\Users\Doreen\Downloads\adwcleaner.exe
2013-08-09 12:58 - 2013-08-09 12:58 - 00958036 _____ (Oleg N. Scherbakov) C:\Users\Doreen\Downloads\JRT.exe
2013-08-09 10:55 - 2013-08-09 10:55 - 00000000 ____D C:\Users\Doreen\AppData\Roaming\Malwarebytes
2013-08-09 10:54 - 2013-08-09 10:55 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-08-09 10:54 - 2013-08-09 10:54 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Doreen\Downloads\mbam-setup-1.75.0.1300.exe
2013-08-09 10:54 - 2013-08-09 10:54 - 00001113 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-08-09 10:54 - 2013-08-09 10:54 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-08-09 10:54 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2013-08-08 12:23 - 2013-08-08 12:23 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2013-08-08 12:23 - 2013-08-08 12:22 - 00867240 _____ (Oracle Corporation) C:\Windows\SysWOW64\npDeployJava1.dll
2013-08-08 12:23 - 2013-08-08 12:22 - 00263592 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2013-08-08 12:23 - 2013-08-08 12:22 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2013-08-08 12:23 - 2013-08-08 12:22 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2013-08-08 12:22 - 2013-08-08 12:22 - 00000000 ____D C:\Program Files (x86)\Java
2013-08-08 12:06 - 2013-08-08 12:06 - 00001151 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2013-08-08 12:06 - 2013-08-08 12:06 - 00000000 ____D C:\Users\Doreen\AppData\Roaming\Mozilla
2013-08-08 12:06 - 2013-08-08 12:06 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-08-08 12:05 - 2013-08-08 12:05 - 00282112 _____ (Mozilla) C:\Users\Doreen\Downloads\Firefox Setup Stub 23.0.exe
2013-08-08 12:02 - 2013-08-08 12:03 - 00617608 _____ C:\Users\Doreen\Downloads\Firefox_Setup.exe
2013-07-30 22:34 - 2013-07-30 22:34 - 00002125 _____ C:\Users\Public\Desktop\My digital Diary 3.lnk
2013-07-30 22:34 - 2013-07-30 22:34 - 00000000 ____D C:\Windows\uninstall
2013-07-30 22:34 - 2013-07-30 22:34 - 00000000 ____D C:\Program Files (x86)\wareconsult
2013-07-30 22:24 - 2013-07-30 22:25 - 00000000 ____D C:\Users\Doreen\AppData\Roaming\Efficient Diary
2013-07-30 22:03 - 2013-08-09 12:08 - 00000000 ____D C:\Users\Doreen\AppData\Roaming\Common
2013-07-30 22:03 - 2013-07-30 22:03 - 00000000 ____D C:\Users\Doreen\AppData\Roaming\PiccShare
2013-07-22 19:55 - 2013-07-22 19:55 - 00000175 _____ C:\Windows\system32\Drivers\aswVmm.sys.sum
2013-07-22 19:55 - 2013-07-22 19:55 - 00000175 _____ C:\Windows\system32\Drivers\aswSP.sys.sum
2013-07-22 19:55 - 2013-07-22 19:55 - 00000175 _____ C:\Windows\system32\Drivers\aswSnx.sys.sum
2013-07-21 22:17 - 2013-07-22 19:55 - 00189936 _____ C:\Windows\system32\Drivers\aswVmm.sys
2013-07-21 22:17 - 2013-05-09 10:59 - 00065336 _____ C:\Windows\system32\Drivers\aswRvrt.sys
2013-07-21 22:12 - 2013-07-21 22:16 - 00000000 ____D C:\Windows\system32\MRT
2013-07-21 21:39 - 2013-07-21 21:39 - 00002774 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2013-07-21 21:39 - 2013-07-21 21:39 - 00000822 _____ C:\Users\Public\Desktop\CCleaner.lnk
2013-07-21 21:39 - 2013-07-21 21:39 - 00000000 ____D C:\Program Files\CCleaner
2013-07-18 03:12 - 2013-06-12 01:43 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-07-18 03:12 - 2013-06-12 01:43 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-07-18 03:12 - 2013-06-12 01:43 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-07-18 03:12 - 2013-06-12 01:43 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-07-18 03:12 - 2013-06-12 01:43 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-07-18 03:12 - 2013-06-12 01:43 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-07-18 03:12 - 2013-06-12 01:42 - 02046976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-07-18 03:12 - 2013-06-12 01:42 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-07-18 03:12 - 2013-06-12 01:42 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-07-18 03:12 - 2013-06-12 01:42 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-07-18 03:12 - 2013-06-12 01:42 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-07-18 03:12 - 2013-06-12 01:26 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-07-18 03:12 - 2013-06-12 01:26 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-07-18 03:12 - 2013-06-12 01:25 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-07-18 03:12 - 2013-06-12 01:25 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-07-18 03:12 - 2013-06-12 01:25 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-07-18 03:12 - 2013-06-12 01:25 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-07-18 03:12 - 2013-06-12 01:25 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-07-18 03:12 - 2013-06-12 01:25 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-07-18 03:12 - 2013-06-12 01:25 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-07-18 03:12 - 2013-06-12 01:25 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-07-18 03:12 - 2013-06-12 01:25 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-07-18 03:12 - 2013-06-12 00:51 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-07-18 03:12 - 2013-06-12 00:50 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-07-18 03:12 - 2013-06-07 05:22 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-07-18 03:12 - 2013-06-07 04:37 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-07-18 03:11 - 2013-06-12 01:43 - 14329856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-07-18 03:11 - 2013-06-12 01:42 - 13760512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-07-18 03:11 - 2013-06-12 01:26 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-07-18 03:11 - 2013-06-12 01:25 - 19238912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-07-18 03:11 - 2013-06-12 01:25 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-07-11 13:49 - 2013-06-05 05:34 - 03153920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-07-11 13:49 - 2013-06-04 08:00 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2013-07-11 13:49 - 2013-06-04 06:53 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2013-07-11 13:49 - 2013-05-06 08:03 - 01887744 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2013-07-11 13:49 - 2013-05-06 06:56 - 01620480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2013-07-11 13:48 - 2013-04-10 01:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2013-07-11 13:48 - 2013-04-03 00:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
==================== One Month Modified Files and Folders =======
2013-08-09 14:34 - 2011-05-23 13:56 - 00003946 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{803177F5-475F-4A99-8658-8AE5951A795C}
2013-08-09 14:33 - 2013-08-09 14:32 - 01790169 _____ (Farbar) C:\Users\Doreen\Downloads\FRST64.exe
2013-08-09 14:08 - 2013-03-16 21:28 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-08-09 13:52 - 2012-07-09 16:41 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-08-09 13:37 - 2009-07-14 06:45 - 00009696 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-08-09 13:37 - 2009-07-14 06:45 - 00009696 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-08-09 13:33 - 2011-02-23 21:23 - 01676043 _____ C:\Windows\WindowsUpdate.log
2013-08-09 13:31 - 2012-07-08 15:36 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2013-08-09 13:30 - 2012-07-09 16:41 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-08-09 13:29 - 2013-08-09 13:29 - 00000056 _____ C:\Windows\setupact.log
2013-08-09 13:29 - 2013-08-09 13:29 - 00000000 _____ C:\Windows\setuperr.log
2013-08-09 13:29 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-08-09 13:13 - 2013-08-09 13:13 - 00000000 ____D C:\Windows\ERUNT
2013-08-09 13:13 - 2013-08-09 13:12 - 00958036 _____ (Oleg N. Scherbakov) C:\Users\Doreen\Downloads\JRT(1).exe
2013-08-09 13:04 - 2013-08-09 13:03 - 00013448 _____ C:\AdwCleaner[S1].txt
2013-08-09 13:03 - 2013-08-09 13:03 - 00666633 _____ C:\Users\Doreen\Downloads\adwcleaner.exe
2013-08-09 12:58 - 2013-08-09 12:58 - 00958036 _____ (Oleg N. Scherbakov) C:\Users\Doreen\Downloads\JRT.exe
2013-08-09 12:38 - 2011-02-23 21:23 - 00000000 ___RD C:\Users\Doreen
2013-08-09 12:08 - 2013-07-30 22:03 - 00000000 ____D C:\Users\Doreen\AppData\Roaming\Common
2013-08-09 10:55 - 2013-08-09 10:55 - 00000000 ____D C:\Users\Doreen\AppData\Roaming\Malwarebytes
2013-08-09 10:55 - 2013-08-09 10:54 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-08-09 10:54 - 2013-08-09 10:54 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Doreen\Downloads\mbam-setup-1.75.0.1300.exe
2013-08-09 10:54 - 2013-08-09 10:54 - 00001113 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-08-09 10:54 - 2013-08-09 10:54 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-08-08 12:23 - 2013-08-08 12:23 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2013-08-08 12:22 - 2013-08-08 12:23 - 00867240 _____ (Oracle Corporation) C:\Windows\SysWOW64\npDeployJava1.dll
2013-08-08 12:22 - 2013-08-08 12:23 - 00263592 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2013-08-08 12:22 - 2013-08-08 12:23 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2013-08-08 12:22 - 2013-08-08 12:23 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2013-08-08 12:22 - 2013-08-08 12:22 - 00000000 ____D C:\Program Files (x86)\Java
2013-08-08 12:22 - 2011-02-24 11:15 - 00789416 _____ (Oracle Corporation) C:\Windows\SysWOW64\deployJava1.dll
2013-08-08 12:06 - 2013-08-08 12:06 - 00001151 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2013-08-08 12:06 - 2013-08-08 12:06 - 00000000 ____D C:\Users\Doreen\AppData\Roaming\Mozilla
2013-08-08 12:06 - 2013-08-08 12:06 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-08-08 12:06 - 2013-07-03 18:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-08-08 12:05 - 2013-08-08 12:05 - 00282112 _____ (Mozilla) C:\Users\Doreen\Downloads\Firefox Setup Stub 23.0.exe
2013-08-08 12:03 - 2013-08-08 12:02 - 00617608 _____ C:\Users\Doreen\Downloads\Firefox_Setup.exe
2013-08-08 11:22 - 2011-02-23 23:56 - 00000000 _____ C:\Windows\SysWOW64\config.nt
2013-07-31 22:58 - 2012-07-09 16:43 - 00002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2013-07-30 22:34 - 2013-07-30 22:34 - 00002125 _____ C:\Users\Public\Desktop\My digital Diary 3.lnk
2013-07-30 22:34 - 2013-07-30 22:34 - 00000000 ____D C:\Windows\uninstall
2013-07-30 22:34 - 2013-07-30 22:34 - 00000000 ____D C:\Program Files (x86)\wareconsult
2013-07-30 22:25 - 2013-07-30 22:24 - 00000000 ____D C:\Users\Doreen\AppData\Roaming\Efficient Diary
2013-07-30 22:03 - 2013-07-30 22:03 - 00000000 ____D C:\Users\Doreen\AppData\Roaming\PiccShare
2013-07-22 20:33 - 2011-02-23 21:24 - 00072240 _____ C:\Users\Doreen\AppData\Local\GDIPFONTCACHEV1.DAT
2013-07-22 20:30 - 2009-07-14 06:45 - 00332584 _____ C:\Windows\system32\FNTCACHE.DAT
2013-07-22 19:55 - 2013-07-22 19:55 - 00000175 _____ C:\Windows\system32\Drivers\aswVmm.sys.sum
2013-07-22 19:55 - 2013-07-22 19:55 - 00000175 _____ C:\Windows\system32\Drivers\aswSP.sys.sum
2013-07-22 19:55 - 2013-07-22 19:55 - 00000175 _____ C:\Windows\system32\Drivers\aswSnx.sys.sum
2013-07-22 19:55 - 2013-07-21 22:17 - 00189936 _____ C:\Windows\system32\Drivers\aswVmm.sys
2013-07-22 19:55 - 2011-02-23 23:56 - 01030952 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2013-07-22 19:55 - 2011-02-23 23:56 - 00378944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2013-07-22 13:25 - 2011-09-23 02:40 - 00000000 ____D C:\Program Files (x86)\DivX
2013-07-22 13:25 - 2011-09-23 02:39 - 00000000 ____D C:\ProgramData\DivX
2013-07-22 13:24 - 2011-09-23 02:44 - 00000000 ____D C:\Program Files\DivX
2013-07-22 13:20 - 2013-03-16 21:28 - 00692104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-07-22 13:20 - 2013-03-16 21:28 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-07-22 13:20 - 2011-09-20 16:52 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-07-21 22:16 - 2013-07-21 22:12 - 00000000 ____D C:\Windows\system32\MRT
2013-07-21 22:08 - 2011-02-24 11:38 - 00053947 _____ C:\test.xml
2013-07-21 21:49 - 2011-02-24 18:16 - 00000000 ____D C:\Users\Doreen\AppData\Roaming\Skype
2013-07-21 21:40 - 2012-07-02 11:43 - 00000000 ____D C:\Windows\Minidump
2013-07-21 21:40 - 2010-10-23 00:03 - 00000000 ____D C:\Windows\Panther
2013-07-21 21:39 - 2013-07-21 21:39 - 00002774 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2013-07-21 21:39 - 2013-07-21 21:39 - 00000822 _____ C:\Users\Public\Desktop\CCleaner.lnk
2013-07-21 21:39 - 2013-07-21 21:39 - 00000000 ____D C:\Program Files\CCleaner
2013-07-18 04:28 - 2011-02-24 19:20 - 00000000 ____D C:\Windows\System32\Tasks\Games
2013-07-18 03:37 - 2009-07-14 09:45 - 00000000 ____D C:\Program Files\Windows Journal
2013-07-18 03:37 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender
2013-07-18 03:37 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2013-07-18 03:19 - 2010-12-18 21:43 - 00688960 _____ C:\Windows\system32\perfh007.dat
2013-07-18 03:19 - 2010-12-18 21:43 - 00139258 _____ C:\Windows\system32\perfc007.dat
2013-07-18 03:19 - 2009-07-14 07:13 - 01600936 _____ C:\Windows\system32\PerfStringBackup.INI
2013-07-12 20:47 - 2012-07-09 16:41 - 00004106 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-07-12 20:47 - 2012-07-09 16:41 - 00003854 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
Addition.txt
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 08-08-2013 02
Ran by Doreen at 2013-08-09 14:35:07
Running from C:\Users\Doreen\Downloads
Boot Mode: Normal
==========================================================
==================== Installed Programs =======================
AC3Filter 2_3a (x32 Version: 2_3a)
Adobe AIR (x32 Version: 3.7.0.2090)
Adobe Flash Player 10 ActiveX (x32 Version: 10.0.42.34)
Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.94)
Adobe Reader X (10.1.7) - Deutsch (x32 Version: 10.1.7)
Alps Pointing-device for VAIO
AMD USB Filter Driver (x32 Version: 1.0.15.94)
ArcSoft Magic-i Visual Effects 2 (x32 Version: 2.0.1.85)
ArcSoft WebCam Companion 3 (x32 Version: 3.0.21.278)
ATI Catalyst Install Manager (Version: 3.0.765.0)
avast! Free Antivirus (x32 Version: 8.0.1489.0)
Catalyst Control Center - Branding (x32 Version: 1.00.0000)
Catalyst Control Center Core Implementation (x32 Version: 2010.0302.2233.40412)
Catalyst Control Center Graphics Full Existing (x32 Version: 2010.0302.2233.40412)
Catalyst Control Center Graphics Full New (x32 Version: 2010.0302.2233.40412)
Catalyst Control Center Graphics Light (x32 Version: 2010.0302.2233.40412)
Catalyst Control Center Graphics Previews Common (x32 Version: 2010.0302.2233.40412)
Catalyst Control Center Graphics Previews Vista (x32 Version: 2010.0302.2233.40412)
Catalyst Control Center InstallProxy (x32 Version: 2010.0302.2233.40412)
Catalyst Control Center Localization All (x32 Version: 2010.0302.2233.40412)
CCC Help Chinese Standard (x32 Version: 2010.0302.2232.40412)
CCC Help Chinese Traditional (x32 Version: 2010.0302.2232.40412)
CCC Help Czech (x32 Version: 2010.0302.2232.40412)
CCC Help Danish (x32 Version: 2010.0302.2232.40412)
CCC Help Dutch (x32 Version: 2010.0302.2232.40412)
CCC Help English (x32 Version: 2010.0302.2232.40412)
CCC Help Finnish (x32 Version: 2010.0302.2232.40412)
CCC Help French (x32 Version: 2010.0302.2232.40412)
CCC Help German (x32 Version: 2010.0302.2232.40412)
CCC Help Greek (x32 Version: 2010.0302.2232.40412)
CCC Help Hungarian (x32 Version: 2010.0302.2232.40412)
CCC Help Italian (x32 Version: 2010.0302.2232.40412)
CCC Help Japanese (x32 Version: 2010.0302.2232.40412)
CCC Help Korean (x32 Version: 2010.0302.2232.40412)
CCC Help Norwegian (x32 Version: 2010.0302.2232.40412)
CCC Help Polish (x32 Version: 2010.0302.2232.40412)
CCC Help Portuguese (x32 Version: 2010.0302.2232.40412)
CCC Help Russian (x32 Version: 2010.0302.2232.40412)
CCC Help Spanish (x32 Version: 2010.0302.2232.40412)
CCC Help Swedish (x32 Version: 2010.0302.2232.40412)
CCC Help Thai (x32 Version: 2010.0302.2232.40412)
CCC Help Turkish (x32 Version: 2010.0302.2232.40412)
ccc-core-static (x32 Version: 2010.0302.2233.40412)
ccc-utility64 (Version: 2010.0302.2233.40412)
CCleaner (Version: 4.03)
Champion Backgammon (x32)
Click to Disc MergeModules x64 (Version: 1.0.14230)
Die Siedler 7 (x32 Version: 1.12.1396)
DivX-Setup (x32 Version: 2.6.1.44)
dows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) (Version: 07/28/2009 6.2.0.9800)
Einstellungen für VAIO-Inhaltsüberwachung (x32 Version: 2.5.0.13220)
Evernote (x32 Version: 3.5.2.1525)
Fishdom 3 (x32)
Free YouTube to MP3 Converter version 3.11.35.1031 (x32 Version: 3.11.35.1031)
Google Chrome (x32 Version: 28.0.1500.95)
Google Update Helper (x32 Version: 1.3.21.153)
Hugo Troll Race Version 1.0 (x32 Version: 1.0)
Java 7 Update 25 (x32 Version: 7.0.250)
Java Auto Updater (x32 Version: 2.1.9.5)
Java(TM) 6 Update 18 (64-bit) (Version: 6.0.180)
Jumper (HKCU)
Junk Mail filter update (x32 Version: 14.0.8089.726)
MADN (HKCU)
Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300)
Media Gallery (x32 Version: 1.2.0.15040)
Media Gallery MergeModules x64 (Version: 1.0.14250)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Choice Guard (x32 Version: 2.0.48.0)
Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000)
Microsoft SQL Server Compact 3.5 SP1 English (x32 Version: 3.5.5692.0)
Microsoft SQL Server Compact 3.5 SP1 x64 English (Version: 3.5.5692.0)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148)
Mobile Partner (x32 Version: 11.002.03.07.40)
Mozilla Firefox 23.0 (x86 de) (x32 Version: 23.0)
Mozilla Maintenance Service (x32 Version: 23.0)
MSI_SPF_x64 (Version: 1.0.0)
MSVCRT (x32 Version: 14.0.1468.721)
MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0)
My digital Diary 3.2c (x32 Version: 3.2c)
MyTomTom 3.2.0.906 (x32 Version: 3.2.0.906)
OpenOffice.org 3.3 (x32 Version: 3.3.9567)
Paint.NET v3.5.10 (Version: 3.60.0)
PC-Rail 4 (x32 Version: 1.00.0000)
PMB (x32 Version: 5.1.02.03310)
PMB VAIO Edition Guide (x32 Version: 1.1.00.14080)
PMB VAIO Edition plug-in (Click to Disc) (x32 Version: 3.1.00.15080)
PMB VAIO Edition plug-in (VAIO Image Optimizer) (x32 Version: 1.1.00.15040)
PMB VAIO Edition plug-in (VAIO Movie Story) (x32 Version: 2.1.00.15080)
Realtek HDMI Audio Driver for ATI (x32 Version: 6.0.1.6034)
Realtek High Definition Audio Driver (x32 Version: 6.0.1.6069)
Realtek USB 2.0 Card Reader (x32 Version: 6.1.7600.30116)
Remote Play mit PlayStation®3 (x32 Version: 1.0.0.15090)
Remote Play with PlayStation 3 (x32 Version: 1.0.0.15090)
Roxio Central Audio (x32 Version: 3.8.0)
Roxio Central Copy (x32 Version: 3.8.0)
Roxio Central Core (x32 Version: 3.8.0)
Roxio Central Data (x32 Version: 3.8.0)
Roxio Central Tools (x32 Version: 3.8.0)
Roxio Easy Media Creator 10 LJ (x32 Version: 10.3)
Roxio Easy Media Creator Home (x32 Version: 10.3.263)
Setting Utility Series (x32 Version: 5.2.0.15250)
Skype Click to Call (x32 Version: 6.3.11079)
Skype™ 6.1 (x32 Version: 6.1.129)
Sony Home Network Library (x32 Version: 2.1.0.14240)
TeamViewer 8 (x32 Version: 8.0.17396)
Total Commander (Remove or Repair) (x32 Version: 7.56a)
Ubisoft Game Launcher (x32 Version: 1.0.0.0)
Uninstall 1.0.0.1 (x32)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2473228) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1)
VAIO Care (x32 Version: 6.0.0.15080)
VAIO Content Monitoring Settings (x32 Version: 2.5.0.13220)
VAIO Control Center (x32 Version: 4.2.0.15020)
VAIO Data Restore Tool (x32 Version: 1.3.0.13150)
VAIO DVD Menu Data (x32 Version: 2.1.00.13210)
VAIO Energie Verwaltung (x32 Version: 5.1.0.15250)
VAIO Entertainment Platform (x32 Version: 3.7.0.16080)
VAIO Event Service (x32 Version: 5.2.0.15020)
VAIO Hardware Diagnostics (x32 Version: 3.9.1)
VAIO Manual (x32 Version: 1.0.0.03290)
VAIO Media plus (x32 Version: 2.1.0.15040)
VAIO Media plus Opening Movie (x32 Version: 2.1.0.13220)
VAIO Movie Story MergeModules x64 (Version: 1.0.14240)
VAIO Movie Story Template Data (x32 Version: 2.1.00.14040)
VAIO Original Function Settings (x32 Version: 2.1.0.13120)
VAIO Original Funktion Einstellungen (x32 Version: 2.1.0.13120)
VAIO Premium Partners (x32 Version: 1.0)
VAIO screensaver (x32 Version: 1.0.0.0)
VAIO Smart Network (x32 Version: 3.2.0.15080)
VAIO Update 5 (x32 Version: 5.1.0.13220)
VAIO Wallpaper Contents (x32 Version: 2.1.0.14090)
VAIO-Support für Übertragungen (x32 Version: 1.1.1.13070)
VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0)
Visual Studio C++ 10.0 Runtime (x32 Version: 10.0.0)
VMp MergeModule x64 (Version: 1.0.0)
WIDCOMM Bluetooth Software (Version: 6.2.1.500)
Windows Driver Package - Broadcom Bluetooth (09/09/2009 6.2.0.9405) (Version: 09/09/2009 6.2.0.9405)
Windows Live Anmelde-Assistent (x32 Version: 5.000.818.5)
Windows Live Call (x32 Version: 14.0.8064.0206)
Windows Live Communications Platform (x32 Version: 14.0.8064.206)
Windows Live Essentials (x32 Version: 14.0.8089.0726)
Windows Live Essentials (x32 Version: 14.0.8089.726)
Windows Live Family Safety (Version: 14.0.8093.805)
Windows Live Fotogalerie (x32 Version: 14.0.8081.709)
Windows Live Mail (x32 Version: 14.0.8089.0726)
Windows Live Messenger (x32 Version: 14.0.8089.0726)
Windows Live Sync (x32 Version: 14.0.8089.726)
Windows Live Writer (x32 Version: 14.0.8089.0726)
Windows Live-Uploadtool (x32 Version: 14.0.8014.1029)
WinRAR (x32)
WinZip 16.5 (Version: 16.5.10095)
==================== Restore Points =========================
21-07-2013 20:05:22 VAIO Care Automatic Restore Point
21-07-2013 20:12:08 Windows Update
26-07-2013 16:00:48 Windows Update
30-07-2013 08:28:07 Windows Update
06-08-2013 16:23:30 Windows Update
08-08-2013 10:20:45 Removed Java(TM) 6 Update 27
08-08-2013 10:22:29 Installed Java 7 Update 25
==================== Hosts content: ==========================
2009-07-14 04:34 - 2013-08-08 14:26 - 00000922 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 http://ow2zz.movies-online.vehnix.com/npytsurveyNoTOV.html
127.0.0.1 www.vube.com
==================== Scheduled Tasks (whitelisted) =============
Task: {07C9C3C0-6422-48A4-92EA-CB1F01AB921F} - System32\Tasks\{B12B0E0C-28AD-4C98-9D3C-CC9234755114} => c:\program files (x86)\internet explorer\iexplore.exe [2013-06-12] (Microsoft Corporation)
Task: {132FC5A0-3371-43B2-A19C-B96A980A1DF7} - System32\Tasks\{54253638-C812-4E47-AEE2-B0FA8AA9AE45} => c:\program files (x86)\internet explorer\iexplore.exe [2013-06-12] (Microsoft Corporation)
Task: {191E516B-6956-4521-B464-631FBB33FFFA} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2013-05-09] (AVAST Software)
Task: {2F6DF836-56E7-4F06-893F-92AFBD2E2FCF} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-06-19] (Piriform Ltd)
Task: {57980F82-2C1B-4BD7-96CD-99933557FE72} - System32\Tasks\User_Feed_Synchronization-{0E626F3C-8A24-4FFB-84FD-07195C3D7244} => C:\Windows\system32\msfeedssync.exe [2013-05-24] (Microsoft Corporation)
Task: {5CAF004E-74C8-41D4-AA7B-B57C5F2D5D78} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-07-09] (Google Inc.)
Task: {5F181DFB-E31C-4148-885D-A30578885C77} - System32\Tasks\SONY\VAIO Update\VAIO Update 5 => C:\Program Files\Sony\VAIO Update 5\VAIOUpdt.exe [2010-01-22] (Sony Corporation)
Task: {67CC6D92-7E3C-4318-BF3E-4AAFBA322421} - System32\Tasks\User_Feed_Synchronization-{803177F5-475F-4A99-8658-8AE5951A795C} => C:\Windows\system32\msfeedssync.exe [2013-05-24] (Microsoft Corporation)
Task: {73A601C7-A881-405D-8F84-7EDB3E29D6C9} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-07-22] (Adobe Systems Incorporated)
Task: {A057244E-E868-4A65-AA0B-5E42E5FBF91E} - System32\Tasks\Microsoft\Windows Defender\MP Scheduled Scan => c:\program files\windows defender\MpCmdRun.exe [2009-07-14] (Microsoft Corporation)
Task: {A4EB83DE-7B4A-401A-B069-081AA2AF5674} - System32\Tasks\VAIO Care => C:\Program Files\Sony\VAIO Care\VCsystray.exe [2010-02-02] (Sony Corporation)
Task: {B35240BB-AD82-4354-9EA6-603C4A9F39F1} - System32\Tasks\VAIO Care Support => C:\Program Files\Sony\VAIO Care\VCSpt.exe [2010-02-02] (Sony Corporation)
Task: {F76AB089-C1CD-416C-B824-4D3C93126465} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-07-09] (Google Inc.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
System errors:
=============
Microsoft Office Sessions:
=========================
==================== Memory info ===========================
Percentage of memory in use: 43%
Total physical RAM: 3834.9 MB
Available physical RAM: 2168 MB
Total Pagefile: 7667.98 MB
Available Pagefile: 5796.64 MB
Total Virtual: 8192 MB
Available Virtual: 8191.81 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:152.92 GB) (Free:83.24 GB) NTFS (Disk=0 Partition=3)
Drive d: (Platte D) (Fixed) (Total:134.95 GB) (Free:132.7 GB) NTFS (Disk=0 Partition=4)
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or (Size: 298 GB) (Disk ID: B4816403)
Partition 1: (Not Active) - (Size=10 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=153 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=135 GB) - (Type=OF Extended)
==================== End Of Log ============================
Sieht doch schick aus
Mach bitte zur Kontrolle einen Quickscan mit Malwarebytes und anschließend noch einen Scan mit ESET. Eine Anleitung dazu findest du zB da => http://www.trojaner-board.de/139393-windows-7-malewarebytes-fund-11-u-28-infizierte-objekte-freeware-download.html#post1128879
Poste bitte beide Logs hier in der nächsten Antwort
Malwarebytes Anti-Malware (Test) 1.75.0.1300
www.malwarebytes.org
Datenbank Version: v2013.08.09.02
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16635
Doreen :: DOREEN-VAIO [Administrator]
Schutz: Aktiviert
09.08.2013 14:59:33
mbam-log-2013-08-09 (14-59-33).txt
Art des Suchlaufs: Quick-Scan
Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
Deaktivierte Suchlaufeinstellungen: P2P
Durchsuchte Objekte: 238521
Laufzeit: 4 Minute(n), 37 Sekunde(n)
Infizierte Speicherprozesse: 0
(Keine bösartigen Objekte gefunden)
Infizierte Speichermodule: 0
(Keine bösartigen Objekte gefunden)
Infizierte Registrierungsschlüssel: 0
(Keine bösartigen Objekte gefunden)
Infizierte Registrierungswerte: 0
(Keine bösartigen Objekte gefunden)
Infizierte Dateiobjekte der Registrierung: 0
(Keine bösartigen Objekte gefunden)
Infizierte Verzeichnisse: 0
(Keine bösartigen Objekte gefunden)
Infizierte Dateien: 0
(Keine bösartigen Objekte gefunden)
(Ende)
« Avira - "Lokale Festplatten" oder "Vollständige Systemprüfung" | laptop geblockt » | ||