|
Log-Analyse und Auswertung: Virus Bundespolizei erster Entfernungsveruch erfolglosWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
13.10.2012, 20:23 | #1 |
| Virus Bundespolizei erster Entfernungsveruch erfolglos Hallo liebes Team! Ich habe mir das Virus mit dem Namen Bundespolizei eingefangen. Mein ertser versuch den Virus zu löschen ging daneben hoffe ihr könnt mir weiterhelfen. Danke schonmal im vorraus! |
14.10.2012, 12:36 | #2 |
/// Helfer-Team | Virus Bundespolizei erster Entfernungsveruch erfolglosEine Bereinigung ist mitunter mit viel Arbeit für Dich verbunden.
Hinweis: Ich kann Dir niemals eine Garantie geben, dass ich auch alles finde. Eine Formatierung ist meist der Schnellere und immer der sicherste Weg. Solltest Du Dich für eine Bereinigung entscheiden, arbeite solange mit, bis dir jemand vom Team sagt, dass Du clean bist. Vista und Win7 User Alle Tools mit Rechtsklick "als Administrator ausführen" starten. 1. Schritt Bitte einen Vollscan mit Malwarebytes Anti-Malware machen und Log posten. 2. Schritt Systemscan mit OTL (bebilderte Anleitung)
__________________ |
14.10.2012, 18:56 | #3 |
| Virus Bundespolizei erster Entfernungsveruch erfolglos Hallo!
__________________Hier ist der 1. Log Malwarebytes Anti-Malware (Test) 1.65.1.1000 Malwarebytes : Free Anti-Malware download Datenbank Version: v2012.10.14.05 Windows 7 Service Pack 1 x64 NTFS (Abgesichertenmodus/Netzwerkfähig) Internet Explorer 9.0.8112.16421 Jessica :: JESSICA-PC [Administrator] Schutz: Deaktiviert 14.10.2012 19:37:28 mbam-log-2012-10-14 (19-37-28).txt Art des Suchlaufs: Quick-Scan Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 209207 Laufzeit: 2 Minute(n), 26 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 3 HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|pl468q4scf (Trojan.Agent.H) -> Daten: C:\Users\Jessica\pl468q4scf.exe -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|fjjankoeylnhbci (Trojan.Winlock) -> Daten: C:\Windows\fjjankoe.exe -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Regedit32 (Trojan.Agent) -> Daten: C:\Windows\system32\regedit.exe -> Erfolgreich gelöscht und in Quarantäne gestellt. Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 6 C:\Users\Jessica\pl468q4scf.exe (Trojan.Agent.H) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Windows\fjjankoe.exe (Trojan.Winlock) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\fjjankoe.exe (Trojan.Winlock) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Jessica\AppData\Local\Temp\DEA3.tmp (Trojan.Agent.H) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Jessica\0.32269529652376505.exe (Trojan.Winlock) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Windows\System32\regedit.exe (Trojan.Agent) -> Erfolgreich gelöscht und in Quarantäne gestellt. (Ende) Und mein Pc lässt sich auch schon wieder benutzen Juhuu ist der Virus denn schon weg?? 2. Log OTL 1/2OTL Logfile: Code:
ATTFilter OTL logfile created on: 10/14/2012 7:58:56 PM - Run 6 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Jessica\Downloads 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000409 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy 3.91 Gb Total Physical Memory | 2.18 Gb Available Physical Memory | 55.71% Memory free 7.82 Gb Paging File | 5.84 Gb Available in Paging File | 74.72% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 657.54 Gb Total Space | 609.99 Gb Free Space | 92.77% Space Free | Partition Type: NTFS Drive D: | 38.00 Gb Total Space | 16.16 Gb Free Space | 42.52% Space Free | Partition Type: NTFS Drive E: | 417.91 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS Computer Name: JESSICA-PC | User Name: Jessica | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Processes (SafeList) ========== PRC - C:\Users\Jessica\Downloads\OTL (7).exe (OldTimer Tools) PRC - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) PRC - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation) PRC - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) PRC - C:\Program Files (x86)\Searchqu Toolbar\Datamngr\datamngrUI.exe (Bandoo Media, inc) PRC - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\ORSP Client\fsorsp.exe (F-Secure Corporation) PRC - C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corporation) PRC - C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation) PRC - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe () PRC - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (Intel Corporation) PRC - C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe (Intel Corporation) PRC - C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe (Intel Corporation) PRC - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Intel Corporation) PRC - C:\Program Files (x86)\Launch Manager\HotkeyApp.exe (Wistron) PRC - C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (Renesas Electronics Corporation) PRC - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) PRC - C:\Program Files (x86)\Launch Manager\WButton.exe (Wistron Corp.) PRC - C:\Program Files (x86)\McAfee Security Scan\2.0.181\SSScheduler.exe (McAfee, Inc.) PRC - C:\Program Files (x86)\Launch Manager\OSD.exe (Wistron Corp.) PRC - C:\Program Files (x86)\Launch Manager\WisLMSvc.exe (Wistron Corp.) PRC - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\Common\FSMA32.EXE (F-Secure Corporation) PRC - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\Common\FSM32.EXE (F-Secure Corporation) PRC - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\Common\FSHDLL32.EXE (F-Secure Corporation) ========== Modules (No Company Name) ========== MOD - C:\Program Files (x86)\Google\Chrome\Application\22.0.1229.94\ppGoogleNaClPluginChrome.dll () MOD - C:\Program Files (x86)\Google\Chrome\Application\22.0.1229.94\PepperFlash\pepflashplayer.dll () MOD - C:\Program Files (x86)\Google\Chrome\Application\22.0.1229.94\pdf.dll () MOD - C:\Program Files (x86)\Google\Chrome\Application\22.0.1229.94\libglesv2.dll () MOD - C:\Program Files (x86)\Google\Chrome\Application\22.0.1229.94\libegl.dll () MOD - C:\Program Files (x86)\Google\Chrome\Application\22.0.1229.94\avutil-51.dll () MOD - C:\Program Files (x86)\Google\Chrome\Application\22.0.1229.94\avformat-54.dll () MOD - C:\Program Files (x86)\Google\Chrome\Application\22.0.1229.94\avcodec-54.dll () MOD - C:\PROGRA~2\SEARCH~1\Datamngr\ToolBar\searchqudtx.dll () MOD - C:\Program Files (x86)\DivX\DivX Update\DivXUpdateCheck.dll () MOD - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe () MOD - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPC\fspcfsm.eng () MOD - \\?\c:\program files (x86)\unitymedia\sicherheitspaket\hips\fshook32.dll () MOD - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSGUI\strres.eng () MOD - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSGUI\gres.dll () MOD - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSGUI\flyerres.eng () MOD - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSGUI\fsavures.eng () MOD - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSGUI\about.dll () MOD - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSGUI\aboutres.dll () ========== Services (SafeList) ========== SRV:64bit: - (wlidsvc) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE File not found SRV:64bit: - (wlcrasvc) -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe File not found SRV:64bit: - (RegSrvc) -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe File not found SRV:64bit: - (osppsvc) -- C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE File not found SRV:64bit: - (MyWiFiDHCPDNS) -- C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe File not found SRV:64bit: - (EvtEng) -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe File not found SRV:64bit: - (BTHSSecurityMgr) -- C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe File not found SRV:64bit: - (AMPPALR3) -- C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe File not found SRV:64bit: - (b31ab263d7b8925) -- C:\Windows\SysNative\drivers\b31ab263d7b8925.sys () SRV - (AdobeFlashPlayerUpdateSvc) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated) SRV - (MBAMService) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation) SRV - (MBAMScheduler) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) SRV - (FSDFWD) -- C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FWES\Program\fsdfwd.exe (F-Secure Corporation) SRV - (FSORSPClient) -- C:\Program Files (x86)\Unitymedia\Sicherheitspaket\ORSP Client\fsorsp.exe (F-Secure Corporation) SRV - (sftvsa) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corporation) SRV - (sftlist) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation) SRV - (Bluetooth OBEX Service) -- C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (Intel Corporation) SRV - (Bluetooth Media Service) -- C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe (Intel Corporation) SRV - (Bluetooth Device Monitor) -- C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Intel Corporation) SRV - (watchmi) -- C:\Program Files (x86)\watchmi\TvdService.exe () SRV - (IAStorDataMgrSvc) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation) SRV - (McComponentHostService) -- C:\Program Files (x86)\McAfee Security Scan\2.0.181\McCHSvc.exe (McAfee, Inc.) SRV - (WisLMSvc) -- C:\Program Files (x86)\Launch Manager\WisLMSvc.exe (Wistron Corp.) SRV - (FSMA) -- C:\Program Files (x86)\Unitymedia\Sicherheitspaket\Common\FSMA32.EXE (F-Secure Corporation) SRV - (F-Secure Gatekeeper Handler Starter) -- C:\Program Files (x86)\Unitymedia\Sicherheitspaket\Anti-Virus\fsgk32st.exe (F-Secure Corporation) SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation) ========== Driver Services (SafeList) ========== DRV:64bit: - (MBAMProtector) -- C:\Windows\SysNative\drivers\mbam.sys (Malwarebytes Corporation) DRV:64bit: - (b31ab263d7b8925) -- C:\Windows\SysNative\drivers\b31ab263d7b8925.sys () DRV:64bit: - (Fs_Rec) -- C:\Windows\SysNative\drivers\fs_rec.sys () DRV:64bit: - (FSFW) -- C:\Windows\SysNative\drivers\fsdfw.sys () DRV:64bit: - (FSES) -- C:\Windows\SysNative\drivers\fses.sys (F-Secure Corporation) DRV:64bit: - (Sftvol) -- C:\Windows\SysNative\DRIVERS\Sftvollh.sys () DRV:64bit: - (Sftplay) -- C:\Windows\SysNative\DRIVERS\Sftplaylh.sys () DRV:64bit: - (Sftredir) -- C:\Windows\SysNative\DRIVERS\Sftredirlh.sys () DRV:64bit: - (Sftfs) -- C:\Windows\SysNative\DRIVERS\Sftfslh.sys () DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices) DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices) DRV:64bit: - (NETwNs64) -- C:\Windows\SysNative\DRIVERS\NETwNs64.sys () DRV:64bit: - (wdkmd) -- C:\Windows\SysNative\DRIVERS\WDKMD.sys () DRV:64bit: - (AMPPALP) -- C:\Windows\SysNative\drivers\AmpPal.sys (Windows (R) Win 7 DDK provider) DRV:64bit: - (AMPPAL) -- C:\Windows\SysNative\drivers\AmpPal.sys (Windows (R) Win 7 DDK provider) DRV:64bit: - (nusb3xhc) -- C:\Windows\SysNative\drivers\nusb3xhc.sys () DRV:64bit: - (nusb3hub) -- C:\Windows\SysNative\DRIVERS\nusb3hub.sys () DRV:64bit: - (igfx) -- C:\Windows\SysNative\DRIVERS\igdkmd64.sys () DRV:64bit: - (L1C) -- C:\Windows\SysNative\DRIVERS\L1C62x64.sys () DRV:64bit: - (btmaux) -- C:\Windows\SysNative\drivers\btmaux.sys (Intel Corporation) DRV:64bit: - (iBtFltCoex) -- C:\Windows\SysNative\DRIVERS\iBtFltCoex.sys () DRV:64bit: - (btmhsf) -- C:\Windows\SysNative\drivers\btmhsf.sys (Intel Corporation) DRV:64bit: - (TsUsbFlt) -- C:\Windows\SysNative\drivers\tsusbflt.sys () DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys () DRV:64bit: - (TsUsbGD) -- C:\Windows\SysNative\drivers\TsUsbGD.sys () DRV:64bit: - (iaStor) -- C:\Windows\SysNative\drivers\iaStor.sys () DRV:64bit: - (clwvd) -- C:\Windows\SysNative\drivers\clwvd.sys (CyberLink Corporation) DRV:64bit: - (RSUSBVSTOR) -- C:\Windows\SysNative\Drivers\RtsUVStor.sys () DRV:64bit: - (IntcDAud) -- C:\Windows\SysNative\DRIVERS\IntcDAud.sys () DRV:64bit: - (mod7764) -- C:\Windows\SysNative\DRIVERS\mod77-64.sys () DRV:64bit: - (SynTP) -- C:\Windows\SysNative\drivers\SynTP.sys () DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.) DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys () DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys () DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys () DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation) DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation) DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys () DRV:64bit: - (XUIF) -- C:\Windows\SysNative\Drivers\x10ufx2.sys () DRV:64bit: - (X10Hid) -- C:\Windows\SysNative\Drivers\x10hid.sys () DRV - (F-Secure Gatekeeper) -- C:\Program Files (x86)\Unitymedia\Sicherheitspaket\Anti-Virus\minifilter\fsgk.sys () DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation) ========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} IE:64bit: - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7 IE:64bit: - HKLM\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}: "URL" = hxxp://dts.search-results.com/sr?src=ieb&appid=484&systemid=406&sr=0&q={searchTerms} IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://home.sweetim.com/?crg=3.1010006.10031 IE - HKLM\..\URLSearchHook: {78e516ef-11de-47a1-8364-a99b917ec5ee} - C:\Program Files (x86)\FileConverter_1.3\prxtbFil0.dll (Conduit Ltd.) IE - HKLM\..\SearchScopes,DefaultScope = {EEE6C360-6118-11DC-9C72-001320C79847} IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7 IE - HKLM\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}: "URL" = hxxp://dts.search-results.com/sr?src=ieb&appid=484&systemid=406&sr=0&q={searchTerms} IE - HKLM\..\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}: "URL" = hxxp://search.sweetim.com/search.asp?src=6&q={searchTerms}&crg=3.1010006.10031 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://home.sweetim.com/?crg=3.1010006.10031 IE - HKCU\..\URLSearchHook: {78e516ef-11de-47a1-8364-a99b917ec5ee} - C:\Program Files (x86)\FileConverter_1.3\prxtbFil0.dll (Conduit Ltd.) IE - HKCU\..\SearchScopes,DefaultScope = {A730BD4B-2219-4353-B10B-179377CF6D13} IE - HKCU\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7 IE - HKCU\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}: "URL" = hxxp://dts.search-results.com/sr?src=ieb&appid=484&systemid=406&sr=0&q={searchTerms} IE - HKCU\..\SearchScopes\{A48129AF-D94A-4796-9FD7-1FD2249383E8}: "URL" = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3241949 IE - HKCU\..\SearchScopes\{A730BD4B-2219-4353-B10B-179377CF6D13}: "URL" = hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7MDNC_enDE393DE440 IE - HKCU\..\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}: "URL" = hxxp://search.sweetim.com/search.asp?src=6&q={searchTerms}&crg=3.1010006.10031 IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 ========== FireFox ========== FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_4_402_287.dll File not found FF:64bit: - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll File not found FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll File not found FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_4_402_287.dll () FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC) FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll File not found FF - HKCU\Software\MozillaPlugins\@Skype Limited.com/Facebook Video Calling Plugin: C:\Users\Jessica\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\virtualKeyboard@kaspersky.ru: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2011\FFExt\virtualKeyboard@kaspersky.ru FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\KavAntiBanner@Kaspersky.ru: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2011\FFExt\KavAntiBanner@kaspersky.ru FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\linkfilter@kaspersky.ru: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2011\FFExt\linkfilter@kaspersky.ru FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\litmus-ff@f-secure.com: C:\Program Files (x86)\Unitymedia\Sicherheitspaket\NRS\litmus-ff@f-secure.com [2012/07/11 15:43:45 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2012/04/01 18:18:09 | 000,000,000 | ---D | M] ========== Chrome ========== CHR - homepage: hxxp://home.sweetim.com/?crg=3.1010006.10031 CHR - default_search_provider: SweetIM Search (Enabled) CHR - default_search_provider: search_url = hxxp://search.sweetim.com/search.asp?src=6&q={searchTerms}&crg=3.1010006.10031 CHR - default_search_provider: suggest_url = CHR - homepage: hxxp://home.sweetim.com/?crg=3.1010006.10031 CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\22.0.1229.94\gcswf32.dll CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll CHR - plugin: Java Deployment Toolkit 6.0.240.7 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll CHR - plugin: Java(TM) Platform SE 6 U24 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\4.0.60831.0\npctrl.dll CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\22.0.1229.94\ppGoogleNaClPluginChrome.dll CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\22.0.1229.94\pdf.dll CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.79\npGoogleUpdate3.dll CHR - plugin: Windows Live\u0099 Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll CHR - plugin: Facebook Video Calling Plugin (Enabled) = C:\Users\Jessica\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll CHR - plugin: Default Plug-in (Enabled) = default_plugin CHR - Extension: YouTube = C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\ CHR - Extension: Google-Suche = C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\ CHR - Extension: Yontoo = C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Extensions\niapdbllcanepiiimjjndipklodoedlc\1.0.2_0\ CHR - Extension: Mehr Leistung und Videoformate f\u00FCr dein HTML5 \u003Cvideo\u003E = C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0\ CHR - Extension: Google Mail = C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\ O1 HOSTS File: ([2012/08/31 19:03:52 | 000,001,392 | RHS- | M]) - C:\Windows\SysNative\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: ::1 localhost O1 - Hosts: 69.10.57.36 Google Analytics Official Website - Web Analytics & Reporting ? Google Analytics. O1 - Hosts: 69.10.57.36 ad-emea.doubleclick.net. O1 - Hosts: 69.10.57.36 StatCounter - Free Invisible Web Tracker, Hit Counter and Web Stats. O1 - Hosts: 108.163.215.51 Google Analytics Official Website - Web Analytics & Reporting ? Google Analytics. O1 - Hosts: 108.163.215.51 ad-emea.doubleclick.net. O1 - Hosts: 108.163.215.51 StatCounter - Free Invisible Web Tracker, Hit Counter and Web Stats. O2:64bit: - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll File not found O2:64bit: - BHO: (DataMngr) - {9D717F81-9148-4f12-8568-69135F087DB0} - C:\PROGRA~2\SEARCH~1\Datamngr\x64\BROWSE~1.DLL (Bandoo Media, inc) O2:64bit: - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) O2:64bit: - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll File not found O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll File not found O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC) O2 - BHO: (FileConverter 1.3 Toolbar) - {78e516ef-11de-47a1-8364-a99b917ec5ee} - C:\Program Files (x86)\FileConverter_1.3\prxtbFil0.dll (Conduit Ltd.) O2 - BHO: (Windows Live ID-Anmelde-Hilfsprogramm) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll File not found O2 - BHO: (Searchqu Toolbar) - {99079a25-328f-4bd4-be04-00955acaa0a7} - C:\PROGRA~2\SEARCH~1\Datamngr\ToolBar\searchqudtx.dll () O2 - BHO: (DataMngr) - {9D717F81-9148-4f12-8568-69135F087DB0} - C:\PROGRA~2\SEARCH~1\Datamngr\BROWSE~1.DLL (Bandoo Media, inc) O2 - BHO: (Browsing Protection Class) - {C6867EB7-8350-4856-877F-93CF8AE3DC9C} - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\NRS\iescript\baselitmus.dll (F-Secure Corporation) O2 - BHO: (Yontoo) - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files (x86)\Yontoo\YontooIEClient.dll (Yontoo LLC) O3:64bit: - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) O3:64bit: - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found. O3 - HKLM\..\Toolbar: (Browsing Protection Toolbar) - {265EEE8E-3228-44D3-AEA5-F7FDF5860049} - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\NRS\iescript\baselitmus.dll (F-Secure Corporation) O3 - HKLM\..\Toolbar: (FileConverter 1.3 Toolbar) - {78e516ef-11de-47a1-8364-a99b917ec5ee} - C:\Program Files (x86)\FileConverter_1.3\prxtbFil0.dll (Conduit Ltd.) O3 - HKLM\..\Toolbar: (Searchqu Toolbar) - {99079a25-328f-4bd4-be04-00955acaa0a7} - C:\PROGRA~2\SEARCH~1\Datamngr\ToolBar\searchqudtx.dll () O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found. O3:64bit: - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) O3 - HKCU\..\Toolbar\WebBrowser: (FileConverter 1.3 Toolbar) - {78E516EF-11DE-47A1-8364-A99B917EC5EE} - C:\Program Files (x86)\FileConverter_1.3\prxtbFil0.dll (Conduit Ltd.) O4:64bit: - HKLM..\Run: [BTMTrayAgent] C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll (Intel Corporation) O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation) O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation) O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation) O4:64bit: - HKLM..\Run: [RtHDVBg] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /FORPCEE4 File not found O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s File not found O4:64bit: - HKLM..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe File not found O4 - HKLM..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" File not found O4 - HKLM..\Run: [CLMLServer] "C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe" File not found O4 - HKLM..\Run: [DATAMNGR] C:\PROGRA~2\SEARCH~1\Datamngr\DATAMN~1.EXE (Bandoo Media, inc) O4 - HKLM..\Run: [DivXUpdate] C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe () O4 - HKLM..\Run: [F-Secure Manager] C:\Program Files (x86)\Unitymedia\Sicherheitspaket\Common\FSM32.EXE (F-Secure Corporation) O4 - HKLM..\Run: [F-Secure TNB] C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSGUI\TNBUtil.exe (F-Secure Corporation) O4 - HKLM..\Run: [HotkeyApp] C:\Program Files (x86)\Launch Manager\HotkeyApp.exe (Wistron) O4 - HKLM..\Run: [LMgrVolOSD] C:\Program Files (x86)\Launch Manager\OSD.exe (Wistron Corp.) O4 - HKLM..\Run: [NUSB3MON] C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (Renesas Electronics Corporation) O4 - HKLM..\Run: [Wbutton] C:\Program Files (x86)\Launch Manager\Wbutton.exe (Wistron Corp.) O4 - HKCU..\Run: [Facebook Update] C:\Users\Jessica\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.) O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O8:64bit: - Extra context menu item: Google Sidewiki... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_7461B1589E8B4FB7.dll/cmsidewiki.html File not found O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_7461B1589E8B4FB7.dll/cmsidewiki.html File not found O9:64bit: - Extra Button: eBay - Der weltweite Online-Marktplatz - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - eBay - eine der größten deutschen Shopping-Websites File not found O9:64bit: - Extra 'Tools' menuitem : eBay - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - eBay - eine der größten deutschen Shopping-Websites File not found O9 - Extra Button: eBay - Der weltweite Online-Marktplatz - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - eBay - eine der größten deutschen Shopping-Websites File not found O9 - Extra 'Tools' menuitem : eBay - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - eBay - eine der größten deutschen Shopping-Websites File not found O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000008 [] - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL File not found O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000009 [] - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL File not found O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000001 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\fslsp_x64.dll (F-Secure Corporation) O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000002 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\fslsp_x64.dll (F-Secure Corporation) O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000003 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\fslsp_x64.dll (F-Secure Corporation) O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000004 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\fslsp_x64.dll (F-Secure Corporation) O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000005 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\fslsp_x64.dll (F-Secure Corporation) O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000006 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\fslsp_x64.dll (F-Secure Corporation) O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000007 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\fslsp_x64.dll (F-Secure Corporation) O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000008 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\fslsp_x64.dll (F-Secure Corporation) O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000009 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\fslsp_x64.dll (F-Secure Corporation) O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000010 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\fslsp_x64.dll (F-Secure Corporation) O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000011 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\fslsp_x64.dll (F-Secure Corporation) O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000023 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\fslsp_x64.dll (F-Secure Corporation) O10 - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL File not found O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\FSLSP.DLL (F-Secure Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\FSLSP.DLL (F-Secure Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\FSLSP.DLL (F-Secure Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\FSLSP.DLL (F-Secure Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\FSLSP.DLL (F-Secure Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\FSLSP.DLL (F-Secure Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\FSLSP.DLL (F-Secure Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\FSLSP.DLL (F-Secure Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\FSLSP.DLL (F-Secure Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\FSLSP.DLL (F-Secure Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\FSLSP.DLL (F-Secure Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000023 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\FSLSP.DLL (F-Secure Corporation) O16:64bit: - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O16:64bit: - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} hxxp://download.divx.com/player/DivXBrowserPlugin.cab (DivXBrowserPlugin Object) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1 192.168.2.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{43FB6CDF-625E-4C67-9F13-7BE2CE75BEA5}: DhcpNameServer = 192.168.0.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{B630595A-1F98-41CA-B659-BC7CD3604FEA}: DhcpNameServer = 192.168.2.1 192.168.2.1 O18:64bit: - Protocol\Handler\livecall - No CLSID value found O18:64bit: - Protocol\Handler\msnim - No CLSID value found O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found O18:64bit: - Protocol\Handler\wlpg - No CLSID value found O20:64bit: - AppInit_DLLs: (C:\PROGRA~2\SEARCH~1\Datamngr\x64\datamngr.dll) - C:\PROGRA~2\SEARCH~1\Datamngr\x64\datamngr.dll (Bandoo Media, inc) O20:64bit: - AppInit_DLLs: (C:\PROGRA~2\SEARCH~1\Datamngr\x64\IEBHO.dll) - C:\PROGRA~2\SEARCH~1\Datamngr\x64\IEBHO.dll (Bandoo Media, inc) O20 - AppInit_DLLs: (C:\PROGRA~2\SEARCH~1\Datamngr\datamngr.dll) - C:\PROGRA~2\SEARCH~1\Datamngr\datamngr.dll (Bandoo Media, inc) O20 - AppInit_DLLs: (C:\PROGRA~2\SEARCH~1\Datamngr\IEBHO.dll) - C:\PROGRA~2\SEARCH~1\Datamngr\IEBHO.dll (Bandoo Media, inc) O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation) O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2010/07/07 11:48:56 | 000,000,078 | R--- | M] () - E:\autorun.inf -- [ CDFS ] O34 - HKLM BootExecute: (autocheck autochk *) O35:64bit: - HKLM\..comfile [open] -- "%1" %* O35:64bit: - HKLM\..exefile [open] -- "%1" %* O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %* O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = ComFile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) O38 - SubSystems\\Windows: (ServerDll=sxssrv,4) ========== Files/Folders - Created Within 30 Days ========== [2012/10/14 19:36:08 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Roaming\Malwarebytes [2012/10/14 19:36:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware [2012/10/14 19:36:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes [2012/10/14 19:36:03 | 000,025,928 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys [2012/10/14 19:36:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware [2012/10/14 19:21:56 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Yontoo [2012/10/14 19:21:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Tarma Installer [2012/10/13 20:02:12 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Roaming\F-Secure [2012/10/13 20:01:16 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN [2012/10/13 19:37:09 | 000,000,000 | ---D | C] -- C:\ProgramData\auzcbtiqysgimsd [2012/10/13 17:22:08 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Roaming\vlc [2012/10/13 17:21:49 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\Ilivid Player [2012/10/13 17:21:38 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\iLivid [2012/10/13 17:21:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Searchqu Toolbar [2012/10/13 17:21:17 | 000,000,000 | ---D | C] -- C:\ProgramData\boost_interprocess [2012/10/13 17:13:56 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\Conduit [2012/10/13 17:13:50 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FileConverter_1.3 [2012/10/13 14:36:58 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{7CA7AE69-BFCE-4576-929C-A10060D5D11B} [2012/10/12 21:44:12 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{40C95DB8-B691-462B-94AB-7D413B5B9CCA} [2012/10/11 20:00:11 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{9FEB6A4D-69BC-4822-978D-7717AFA348E2} [2012/10/10 11:22:49 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{E3B1CB94-F3CA-4C48-897D-EE7B5136EA7D} [2012/10/09 17:59:07 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{80BF7CAC-0CED-4F4B-AA55-C02B7767F2EE} [2012/10/08 18:23:47 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{BECEC623-0710-4A12-98A2-E338C2456F2E} [2012/10/07 20:13:11 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{12476B56-4AA4-4732-8D32-CC55F771CA36} [2012/10/06 18:44:25 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{B4764000-AB0D-457D-A689-06A92721688C} [2012/10/05 22:05:10 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{33ACA2E8-0BC0-4864-86DA-31FA7A9C2E1C} [2012/10/04 17:55:44 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{3B3D8C53-24EB-42CC-B6CD-D3164C58544C} [2012/10/03 15:50:39 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{106843D5-0A2B-4B87-A289-0E345842C785} [2012/10/03 15:41:53 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{C43BC3F2-A36E-4622-B062-639968743B98} [2012/10/02 20:15:09 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{DF373831-0A0E-4CD9-96FF-257640AD8673} [2012/10/01 21:06:22 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{C679229E-BBE6-4178-A964-CDD400D43E2F} [2012/10/01 14:46:43 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{E7D1737C-5ABA-4C63-9F11-E8F1E7AF5B1A} [2012/10/01 13:42:08 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{D3E56FBF-B222-41D3-BEEB-0BF0183D3FB9} [2012/09/30 20:18:32 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{EF48EC04-DE63-4E47-BEE4-E47F4B7C3686} [2012/09/29 18:22:58 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{54EDA22E-B037-4384-A353-61963DF7DEDC} [2012/09/27 06:43:37 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{CAA2F76C-62B1-47E3-8F54-8862CAFC75F4} [2012/09/26 18:40:57 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{4986A511-C6DB-43BF-BD3E-E87206A8B935} [2012/09/25 15:05:32 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{C34FF969-1B56-4DB8-A6EC-CE8815FB7014} [2012/09/24 16:08:09 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{C2FEE349-8294-451F-8B36-8A647F53D2F5} [2012/09/23 14:05:34 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{8E227E37-0800-461B-A78D-30F53FB7D9D0} [2012/09/21 19:09:56 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{291C8885-1110-4386-AB99-09A6E78FE9DB} [2012/09/20 12:00:20 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{340599CA-9E49-4688-B0F0-357C3F3A2055} [2012/09/19 22:19:27 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{1FDF79AD-865B-4346-B8C1-86EFAED11B9B} [2012/09/19 21:29:43 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{3136200C-11E7-407A-B9B4-12930A60D97F} [2012/09/18 14:10:30 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{D1A01642-2141-42DD-9DC7-E6655B0FF72A} [2012/09/17 20:57:09 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{63989DEF-07E0-4DF5-94AD-F2F79E468C06} [2012/09/16 20:44:38 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{CB6B8483-3081-4E66-9428-C5F501B14239} [2012/09/14 21:02:42 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{7DF84136-9EBE-4557-B7E4-9606F4DF6AF9} [1 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ] ========== Files - Modified Within 30 Days ========== [2012/10/14 19:50:46 | 000,016,752 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2012/10/14 19:50:46 | 000,016,752 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2012/10/14 19:47:42 | 001,522,482 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI [2012/10/14 19:47:42 | 000,662,084 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat [2012/10/14 19:47:42 | 000,623,926 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat [2012/10/14 19:47:42 | 000,133,782 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat [2012/10/14 19:47:42 | 000,110,164 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat [2012/10/14 19:47:07 | 000,000,936 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-2501155780-1250442132-408206543-1000UA.job [2012/10/14 19:47:00 | 000,000,914 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-2501155780-1250442132-408206543-1000Core.job [2012/10/14 19:43:22 | 000,001,106 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2012/10/14 19:43:19 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2012/10/14 19:43:17 | 3148,140,544 | -HS- | M] () -- C:\hiberfil.sys [2012/10/14 19:36:04 | 000,001,113 | ---- | M] () -- C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk [2012/10/14 19:21:52 | 000,000,263 | ---- | M] () -- C:\Users\Jessica\Desktop\Search the Web.url [2012/10/14 19:21:52 | 000,000,257 | ---- | M] () -- C:\Users\Jessica\Desktop\SweetPcFix.url [2012/10/13 20:10:00 | 000,000,884 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job [2012/10/13 19:37:09 | 000,076,352 | ---- | M] () -- C:\ProgramData\datzoskdmlfjxhr [2012/10/13 19:37:01 | 000,001,110 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2012/10/13 17:21:48 | 000,001,180 | ---- | M] () -- C:\Users\Public\Desktop\Play Games.lnk [2012/10/13 17:21:48 | 000,001,150 | ---- | M] () -- C:\Users\Public\Desktop\Upgrade Facebook Chat Experience.lnk [2012/10/11 20:38:01 | 000,002,749 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk [2012/10/08 23:10:10 | 000,696,760 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe [2012/10/08 23:10:10 | 000,073,656 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl [2012/09/29 19:54:26 | 000,025,928 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys [1 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ] ========== Files Created - No Company Name ========== [2012/10/14 19:36:04 | 000,001,113 | ---- | C] () -- C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk [2012/10/14 19:21:52 | 000,000,263 | ---- | C] () -- C:\Users\Jessica\Desktop\Search the Web.url [2012/10/14 19:21:52 | 000,000,257 | ---- | C] () -- C:\Users\Jessica\Desktop\SweetPcFix.url [2012/10/13 20:01:08 | 3148,140,544 | -HS- | C] () -- C:\hiberfil.sys [2012/10/13 19:37:04 | 000,076,352 | ---- | C] () -- C:\ProgramData\datzoskdmlfjxhr [2012/10/13 17:21:48 | 000,001,180 | ---- | C] () -- C:\Users\Public\Desktop\Play Games.lnk [2012/10/13 17:21:48 | 000,001,150 | ---- | C] () -- C:\Users\Public\Desktop\Upgrade Facebook Chat Experience.lnk [2012/05/21 12:45:40 | 000,000,288 | ---- | C] () -- C:\Users\Jessica\AppData\Roaming\983102EC.reg [2012/02/07 19:25:12 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe [2012/02/07 19:25:12 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe [2012/02/07 19:25:12 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe [2012/02/07 19:25:12 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe [2012/02/07 19:25:12 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe [2012/02/02 00:09:37 | 000,000,000 | ---- | C] () -- C:\Users\Jessica\AppData\Local\{B1CB6B84-2AB2-4167-851E-E3DA952CEC7A} [2012/01/27 12:29:49 | 000,000,000 | ---- | C] () -- C:\Users\Jessica\AppData\Local\{C35F1269-D44E-4706-AF25-457DA62FC92D} [2012/01/11 16:48:15 | 000,000,000 | ---- | C] () -- C:\Users\Jessica\AppData\Local\{865F013A-5EBC-46B0-87D3-0F34310E675E} [2012/01/07 13:47:37 | 000,000,000 | ---- | C] () -- C:\Users\Jessica\AppData\Local\{8A5F6B46-4F38-424D-B957-3A41FBDD8FA0} [2012/01/03 21:31:57 | 000,000,000 | ---- | C] () -- C:\Users\Jessica\AppData\Local\{8AD24C20-FC70-42E4-BF6E-A9C4C1F22ABA} [2012/01/02 14:17:53 | 000,000,000 | ---- | C] () -- C:\Users\Jessica\AppData\Local\{702A9AF9-A4F5-4C6D-8B25-168834D96507} [2011/12/29 01:52:30 | 000,000,000 | ---- | C] () -- C:\Users\Jessica\AppData\Local\{96834D0C-ED15-47CF-A64B-38EF9C7C0AFD} [2011/12/12 18:31:20 | 000,000,000 | ---- | C] () -- C:\Users\Jessica\AppData\Local\{8969EBBC-4FC0-4622-874A-0E8F56FB6603} [2011/12/10 17:54:26 | 000,000,000 | ---- | C] () -- C:\Users\Jessica\AppData\Local\{92399373-57C0-461C-A04C-230BD3B67DC0} [2011/11/20 04:25:39 | 000,000,000 | ---- | C] () -- C:\Users\Jessica\AppData\Local\{A1BB9EBA-BA3C-4C50-83F4-8E197F2706AD} [2011/11/15 17:35:49 | 000,000,000 | ---- | C] () -- C:\Users\Jessica\AppData\Local\{E3105DF8-D1EF-484A-92FF-BAA97887E89C} [2011/11/09 11:45:13 | 000,042,672 | ---- | C] () -- C:\Windows\SysWow64\drivers\fsbts.sys [2011/09/13 10:15:22 | 001,550,100 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI [2011/03/14 06:04:53 | 000,072,017 | ---- | C] () -- C:\Windows\SysWow64\Uninstall ALDI SÜD Mah Jong.exe [2011/03/14 05:23:13 | 000,127,184 | ---- | C] () -- C:\Windows\Unwise.exe [2011/03/14 05:23:12 | 000,149,504 | ---- | C] () -- C:\Windows\unwise32_setup.exe [2011/02/04 13:38:58 | 000,960,940 | ---- | C] () -- C:\Windows\SysWow64\igkrng600.bin [2011/02/04 13:38:58 | 000,213,332 | ---- | C] () -- C:\Windows\SysWow64\igfcg600m.bin [2011/02/04 13:38:56 | 000,145,804 | ---- | C] () -- C:\Windows\SysWow64\igcompkrng600.bin ========== ZeroAccess Check ========== [2009/07/14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64 "" = C:\Windows\SysNative\shell32.dll -- [2012/01/04 12:44:25 | 014,172,672 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shell32.dll -- [2012/01/04 10:59:38 | 012,872,704 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64 "" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/21 05:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64 "" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] < End of report > 2. Log OTL 1/2OTL Logfile: Code:
ATTFilter OTL logfile created on: 10/14/2012 7:58:56 PM - Run 6 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Jessica\Downloads 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000409 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy 3.91 Gb Total Physical Memory | 2.18 Gb Available Physical Memory | 55.71% Memory free 7.82 Gb Paging File | 5.84 Gb Available in Paging File | 74.72% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 657.54 Gb Total Space | 609.99 Gb Free Space | 92.77% Space Free | Partition Type: NTFS Drive D: | 38.00 Gb Total Space | 16.16 Gb Free Space | 42.52% Space Free | Partition Type: NTFS Drive E: | 417.91 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS Computer Name: JESSICA-PC | User Name: Jessica | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Processes (SafeList) ========== PRC - C:\Users\Jessica\Downloads\OTL (7).exe (OldTimer Tools) PRC - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) PRC - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation) PRC - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) PRC - C:\Program Files (x86)\Searchqu Toolbar\Datamngr\datamngrUI.exe (Bandoo Media, inc) PRC - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\ORSP Client\fsorsp.exe (F-Secure Corporation) PRC - C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corporation) PRC - C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation) PRC - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe () PRC - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (Intel Corporation) PRC - C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe (Intel Corporation) PRC - C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe (Intel Corporation) PRC - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Intel Corporation) PRC - C:\Program Files (x86)\Launch Manager\HotkeyApp.exe (Wistron) PRC - C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (Renesas Electronics Corporation) PRC - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) PRC - C:\Program Files (x86)\Launch Manager\WButton.exe (Wistron Corp.) PRC - C:\Program Files (x86)\McAfee Security Scan\2.0.181\SSScheduler.exe (McAfee, Inc.) PRC - C:\Program Files (x86)\Launch Manager\OSD.exe (Wistron Corp.) PRC - C:\Program Files (x86)\Launch Manager\WisLMSvc.exe (Wistron Corp.) PRC - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\Common\FSMA32.EXE (F-Secure Corporation) PRC - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\Common\FSM32.EXE (F-Secure Corporation) PRC - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\Common\FSHDLL32.EXE (F-Secure Corporation) ========== Modules (No Company Name) ========== MOD - C:\Program Files (x86)\Google\Chrome\Application\22.0.1229.94\ppGoogleNaClPluginChrome.dll () MOD - C:\Program Files (x86)\Google\Chrome\Application\22.0.1229.94\PepperFlash\pepflashplayer.dll () MOD - C:\Program Files (x86)\Google\Chrome\Application\22.0.1229.94\pdf.dll () MOD - C:\Program Files (x86)\Google\Chrome\Application\22.0.1229.94\libglesv2.dll () MOD - C:\Program Files (x86)\Google\Chrome\Application\22.0.1229.94\libegl.dll () MOD - C:\Program Files (x86)\Google\Chrome\Application\22.0.1229.94\avutil-51.dll () MOD - C:\Program Files (x86)\Google\Chrome\Application\22.0.1229.94\avformat-54.dll () MOD - C:\Program Files (x86)\Google\Chrome\Application\22.0.1229.94\avcodec-54.dll () MOD - C:\PROGRA~2\SEARCH~1\Datamngr\ToolBar\searchqudtx.dll () MOD - C:\Program Files (x86)\DivX\DivX Update\DivXUpdateCheck.dll () MOD - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe () MOD - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPC\fspcfsm.eng () MOD - \\?\c:\program files (x86)\unitymedia\sicherheitspaket\hips\fshook32.dll () MOD - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSGUI\strres.eng () MOD - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSGUI\gres.dll () MOD - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSGUI\flyerres.eng () MOD - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSGUI\fsavures.eng () MOD - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSGUI\about.dll () MOD - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSGUI\aboutres.dll () ========== Services (SafeList) ========== SRV:64bit: - (wlidsvc) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE File not found SRV:64bit: - (wlcrasvc) -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe File not found SRV:64bit: - (RegSrvc) -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe File not found SRV:64bit: - (osppsvc) -- C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE File not found SRV:64bit: - (MyWiFiDHCPDNS) -- C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe File not found SRV:64bit: - (EvtEng) -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe File not found SRV:64bit: - (BTHSSecurityMgr) -- C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe File not found SRV:64bit: - (AMPPALR3) -- C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe File not found SRV:64bit: - (b31ab263d7b8925) -- C:\Windows\SysNative\drivers\b31ab263d7b8925.sys () SRV - (AdobeFlashPlayerUpdateSvc) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated) SRV - (MBAMService) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation) SRV - (MBAMScheduler) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) SRV - (FSDFWD) -- C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FWES\Program\fsdfwd.exe (F-Secure Corporation) SRV - (FSORSPClient) -- C:\Program Files (x86)\Unitymedia\Sicherheitspaket\ORSP Client\fsorsp.exe (F-Secure Corporation) SRV - (sftvsa) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corporation) SRV - (sftlist) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation) SRV - (Bluetooth OBEX Service) -- C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (Intel Corporation) SRV - (Bluetooth Media Service) -- C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe (Intel Corporation) SRV - (Bluetooth Device Monitor) -- C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Intel Corporation) SRV - (watchmi) -- C:\Program Files (x86)\watchmi\TvdService.exe () SRV - (IAStorDataMgrSvc) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation) SRV - (McComponentHostService) -- C:\Program Files (x86)\McAfee Security Scan\2.0.181\McCHSvc.exe (McAfee, Inc.) SRV - (WisLMSvc) -- C:\Program Files (x86)\Launch Manager\WisLMSvc.exe (Wistron Corp.) SRV - (FSMA) -- C:\Program Files (x86)\Unitymedia\Sicherheitspaket\Common\FSMA32.EXE (F-Secure Corporation) SRV - (F-Secure Gatekeeper Handler Starter) -- C:\Program Files (x86)\Unitymedia\Sicherheitspaket\Anti-Virus\fsgk32st.exe (F-Secure Corporation) SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation) ========== Driver Services (SafeList) ========== DRV:64bit: - (MBAMProtector) -- C:\Windows\SysNative\drivers\mbam.sys (Malwarebytes Corporation) DRV:64bit: - (b31ab263d7b8925) -- C:\Windows\SysNative\drivers\b31ab263d7b8925.sys () DRV:64bit: - (Fs_Rec) -- C:\Windows\SysNative\drivers\fs_rec.sys () DRV:64bit: - (FSFW) -- C:\Windows\SysNative\drivers\fsdfw.sys () DRV:64bit: - (FSES) -- C:\Windows\SysNative\drivers\fses.sys (F-Secure Corporation) DRV:64bit: - (Sftvol) -- C:\Windows\SysNative\DRIVERS\Sftvollh.sys () DRV:64bit: - (Sftplay) -- C:\Windows\SysNative\DRIVERS\Sftplaylh.sys () DRV:64bit: - (Sftredir) -- C:\Windows\SysNative\DRIVERS\Sftredirlh.sys () DRV:64bit: - (Sftfs) -- C:\Windows\SysNative\DRIVERS\Sftfslh.sys () DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices) DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices) DRV:64bit: - (NETwNs64) -- C:\Windows\SysNative\DRIVERS\NETwNs64.sys () DRV:64bit: - (wdkmd) -- C:\Windows\SysNative\DRIVERS\WDKMD.sys () DRV:64bit: - (AMPPALP) -- C:\Windows\SysNative\drivers\AmpPal.sys (Windows (R) Win 7 DDK provider) DRV:64bit: - (AMPPAL) -- C:\Windows\SysNative\drivers\AmpPal.sys (Windows (R) Win 7 DDK provider) DRV:64bit: - (nusb3xhc) -- C:\Windows\SysNative\drivers\nusb3xhc.sys () DRV:64bit: - (nusb3hub) -- C:\Windows\SysNative\DRIVERS\nusb3hub.sys () DRV:64bit: - (igfx) -- C:\Windows\SysNative\DRIVERS\igdkmd64.sys () DRV:64bit: - (L1C) -- C:\Windows\SysNative\DRIVERS\L1C62x64.sys () DRV:64bit: - (btmaux) -- C:\Windows\SysNative\drivers\btmaux.sys (Intel Corporation) DRV:64bit: - (iBtFltCoex) -- C:\Windows\SysNative\DRIVERS\iBtFltCoex.sys () DRV:64bit: - (btmhsf) -- C:\Windows\SysNative\drivers\btmhsf.sys (Intel Corporation) DRV:64bit: - (TsUsbFlt) -- C:\Windows\SysNative\drivers\tsusbflt.sys () DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys () DRV:64bit: - (TsUsbGD) -- C:\Windows\SysNative\drivers\TsUsbGD.sys () DRV:64bit: - (iaStor) -- C:\Windows\SysNative\drivers\iaStor.sys () DRV:64bit: - (clwvd) -- C:\Windows\SysNative\drivers\clwvd.sys (CyberLink Corporation) DRV:64bit: - (RSUSBVSTOR) -- C:\Windows\SysNative\Drivers\RtsUVStor.sys () DRV:64bit: - (IntcDAud) -- C:\Windows\SysNative\DRIVERS\IntcDAud.sys () DRV:64bit: - (mod7764) -- C:\Windows\SysNative\DRIVERS\mod77-64.sys () DRV:64bit: - (SynTP) -- C:\Windows\SysNative\drivers\SynTP.sys () DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.) DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys () DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys () DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys () DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation) DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation) DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys () DRV:64bit: - (XUIF) -- C:\Windows\SysNative\Drivers\x10ufx2.sys () DRV:64bit: - (X10Hid) -- C:\Windows\SysNative\Drivers\x10hid.sys () DRV - (F-Secure Gatekeeper) -- C:\Program Files (x86)\Unitymedia\Sicherheitspaket\Anti-Virus\minifilter\fsgk.sys () DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation) ========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} IE:64bit: - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7 IE:64bit: - HKLM\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}: "URL" = hxxp://dts.search-results.com/sr?src=ieb&appid=484&systemid=406&sr=0&q={searchTerms} IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://home.sweetim.com/?crg=3.1010006.10031 IE - HKLM\..\URLSearchHook: {78e516ef-11de-47a1-8364-a99b917ec5ee} - C:\Program Files (x86)\FileConverter_1.3\prxtbFil0.dll (Conduit Ltd.) IE - HKLM\..\SearchScopes,DefaultScope = {EEE6C360-6118-11DC-9C72-001320C79847} IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7 IE - HKLM\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}: "URL" = hxxp://dts.search-results.com/sr?src=ieb&appid=484&systemid=406&sr=0&q={searchTerms} IE - HKLM\..\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}: "URL" = hxxp://search.sweetim.com/search.asp?src=6&q={searchTerms}&crg=3.1010006.10031 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://home.sweetim.com/?crg=3.1010006.10031 IE - HKCU\..\URLSearchHook: {78e516ef-11de-47a1-8364-a99b917ec5ee} - C:\Program Files (x86)\FileConverter_1.3\prxtbFil0.dll (Conduit Ltd.) IE - HKCU\..\SearchScopes,DefaultScope = {A730BD4B-2219-4353-B10B-179377CF6D13} IE - HKCU\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7 IE - HKCU\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}: "URL" = hxxp://dts.search-results.com/sr?src=ieb&appid=484&systemid=406&sr=0&q={searchTerms} IE - HKCU\..\SearchScopes\{A48129AF-D94A-4796-9FD7-1FD2249383E8}: "URL" = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3241949 IE - HKCU\..\SearchScopes\{A730BD4B-2219-4353-B10B-179377CF6D13}: "URL" = hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7MDNC_enDE393DE440 IE - HKCU\..\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}: "URL" = hxxp://search.sweetim.com/search.asp?src=6&q={searchTerms}&crg=3.1010006.10031 IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 ========== FireFox ========== FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_4_402_287.dll File not found FF:64bit: - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll File not found FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll File not found FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_4_402_287.dll () FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC) FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll File not found FF - HKCU\Software\MozillaPlugins\@Skype Limited.com/Facebook Video Calling Plugin: C:\Users\Jessica\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\virtualKeyboard@kaspersky.ru: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2011\FFExt\virtualKeyboard@kaspersky.ru FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\KavAntiBanner@Kaspersky.ru: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2011\FFExt\KavAntiBanner@kaspersky.ru FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\linkfilter@kaspersky.ru: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2011\FFExt\linkfilter@kaspersky.ru FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\litmus-ff@f-secure.com: C:\Program Files (x86)\Unitymedia\Sicherheitspaket\NRS\litmus-ff@f-secure.com [2012/07/11 15:43:45 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2012/04/01 18:18:09 | 000,000,000 | ---D | M] ========== Chrome ========== CHR - homepage: hxxp://home.sweetim.com/?crg=3.1010006.10031 CHR - default_search_provider: SweetIM Search (Enabled) CHR - default_search_provider: search_url = hxxp://search.sweetim.com/search.asp?src=6&q={searchTerms}&crg=3.1010006.10031 CHR - default_search_provider: suggest_url = CHR - homepage: hxxp://home.sweetim.com/?crg=3.1010006.10031 CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\22.0.1229.94\gcswf32.dll CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll CHR - plugin: Java Deployment Toolkit 6.0.240.7 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll CHR - plugin: Java(TM) Platform SE 6 U24 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\4.0.60831.0\npctrl.dll CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\22.0.1229.94\ppGoogleNaClPluginChrome.dll CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\22.0.1229.94\pdf.dll CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.79\npGoogleUpdate3.dll CHR - plugin: Windows Live\u0099 Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll CHR - plugin: Facebook Video Calling Plugin (Enabled) = C:\Users\Jessica\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll CHR - plugin: Default Plug-in (Enabled) = default_plugin CHR - Extension: YouTube = C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\ CHR - Extension: Google-Suche = C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\ CHR - Extension: Yontoo = C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Extensions\niapdbllcanepiiimjjndipklodoedlc\1.0.2_0\ CHR - Extension: Mehr Leistung und Videoformate f\u00FCr dein HTML5 \u003Cvideo\u003E = C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0\ CHR - Extension: Google Mail = C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\ O1 HOSTS File: ([2012/08/31 19:03:52 | 000,001,392 | RHS- | M]) - C:\Windows\SysNative\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: ::1 localhost O1 - Hosts: 69.10.57.36 Google Analytics Official Website - Web Analytics & Reporting ? Google Analytics. O1 - Hosts: 69.10.57.36 ad-emea.doubleclick.net. O1 - Hosts: 69.10.57.36 StatCounter - Free Invisible Web Tracker, Hit Counter and Web Stats. O1 - Hosts: 108.163.215.51 Google Analytics Official Website - Web Analytics & Reporting ? Google Analytics. O1 - Hosts: 108.163.215.51 ad-emea.doubleclick.net. O1 - Hosts: 108.163.215.51 StatCounter - Free Invisible Web Tracker, Hit Counter and Web Stats. O2:64bit: - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll File not found O2:64bit: - BHO: (DataMngr) - {9D717F81-9148-4f12-8568-69135F087DB0} - C:\PROGRA~2\SEARCH~1\Datamngr\x64\BROWSE~1.DLL (Bandoo Media, inc) O2:64bit: - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) O2:64bit: - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll File not found O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll File not found O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC) O2 - BHO: (FileConverter 1.3 Toolbar) - {78e516ef-11de-47a1-8364-a99b917ec5ee} - C:\Program Files (x86)\FileConverter_1.3\prxtbFil0.dll (Conduit Ltd.) O2 - BHO: (Windows Live ID-Anmelde-Hilfsprogramm) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll File not found O2 - BHO: (Searchqu Toolbar) - {99079a25-328f-4bd4-be04-00955acaa0a7} - C:\PROGRA~2\SEARCH~1\Datamngr\ToolBar\searchqudtx.dll () O2 - BHO: (DataMngr) - {9D717F81-9148-4f12-8568-69135F087DB0} - C:\PROGRA~2\SEARCH~1\Datamngr\BROWSE~1.DLL (Bandoo Media, inc) O2 - BHO: (Browsing Protection Class) - {C6867EB7-8350-4856-877F-93CF8AE3DC9C} - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\NRS\iescript\baselitmus.dll (F-Secure Corporation) O2 - BHO: (Yontoo) - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files (x86)\Yontoo\YontooIEClient.dll (Yontoo LLC) O3:64bit: - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) O3:64bit: - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found. O3 - HKLM\..\Toolbar: (Browsing Protection Toolbar) - {265EEE8E-3228-44D3-AEA5-F7FDF5860049} - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\NRS\iescript\baselitmus.dll (F-Secure Corporation) O3 - HKLM\..\Toolbar: (FileConverter 1.3 Toolbar) - {78e516ef-11de-47a1-8364-a99b917ec5ee} - C:\Program Files (x86)\FileConverter_1.3\prxtbFil0.dll (Conduit Ltd.) O3 - HKLM\..\Toolbar: (Searchqu Toolbar) - {99079a25-328f-4bd4-be04-00955acaa0a7} - C:\PROGRA~2\SEARCH~1\Datamngr\ToolBar\searchqudtx.dll () O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found. O3:64bit: - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) O3 - HKCU\..\Toolbar\WebBrowser: (FileConverter 1.3 Toolbar) - {78E516EF-11DE-47A1-8364-A99B917EC5EE} - C:\Program Files (x86)\FileConverter_1.3\prxtbFil0.dll (Conduit Ltd.) O4:64bit: - HKLM..\Run: [BTMTrayAgent] C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll (Intel Corporation) O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation) O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation) O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation) O4:64bit: - HKLM..\Run: [RtHDVBg] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /FORPCEE4 File not found O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s File not found O4:64bit: - HKLM..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe File not found O4 - HKLM..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" File not found O4 - HKLM..\Run: [CLMLServer] "C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe" File not found O4 - HKLM..\Run: [DATAMNGR] C:\PROGRA~2\SEARCH~1\Datamngr\DATAMN~1.EXE (Bandoo Media, inc) O4 - HKLM..\Run: [DivXUpdate] C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe () O4 - HKLM..\Run: [F-Secure Manager] C:\Program Files (x86)\Unitymedia\Sicherheitspaket\Common\FSM32.EXE (F-Secure Corporation) O4 - HKLM..\Run: [F-Secure TNB] C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSGUI\TNBUtil.exe (F-Secure Corporation) O4 - HKLM..\Run: [HotkeyApp] C:\Program Files (x86)\Launch Manager\HotkeyApp.exe (Wistron) O4 - HKLM..\Run: [LMgrVolOSD] C:\Program Files (x86)\Launch Manager\OSD.exe (Wistron Corp.) O4 - HKLM..\Run: [NUSB3MON] C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (Renesas Electronics Corporation) O4 - HKLM..\Run: [Wbutton] C:\Program Files (x86)\Launch Manager\Wbutton.exe (Wistron Corp.) O4 - HKCU..\Run: [Facebook Update] C:\Users\Jessica\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.) O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O8:64bit: - Extra context menu item: Google Sidewiki... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_7461B1589E8B4FB7.dll/cmsidewiki.html File not found O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_7461B1589E8B4FB7.dll/cmsidewiki.html File not found O9:64bit: - Extra Button: eBay - Der weltweite Online-Marktplatz - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - eBay - eine der größten deutschen Shopping-Websites File not found O9:64bit: - Extra 'Tools' menuitem : eBay - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - eBay - eine der größten deutschen Shopping-Websites File not found O9 - Extra Button: eBay - Der weltweite Online-Marktplatz - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - eBay - eine der größten deutschen Shopping-Websites File not found O9 - Extra 'Tools' menuitem : eBay - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - eBay - eine der größten deutschen Shopping-Websites File not found O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000008 [] - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL File not found O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000009 [] - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL File not found O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000001 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\fslsp_x64.dll (F-Secure Corporation) O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000002 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\fslsp_x64.dll (F-Secure Corporation) O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000003 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\fslsp_x64.dll (F-Secure Corporation) O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000004 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\fslsp_x64.dll (F-Secure Corporation) O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000005 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\fslsp_x64.dll (F-Secure Corporation) O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000006 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\fslsp_x64.dll (F-Secure Corporation) O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000007 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\fslsp_x64.dll (F-Secure Corporation) O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000008 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\fslsp_x64.dll (F-Secure Corporation) O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000009 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\fslsp_x64.dll (F-Secure Corporation) O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000010 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\fslsp_x64.dll (F-Secure Corporation) O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000011 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\fslsp_x64.dll (F-Secure Corporation) O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000023 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\fslsp_x64.dll (F-Secure Corporation) O10 - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL File not found O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\FSLSP.DLL (F-Secure Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\FSLSP.DLL (F-Secure Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\FSLSP.DLL (F-Secure Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\FSLSP.DLL (F-Secure Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\FSLSP.DLL (F-Secure Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\FSLSP.DLL (F-Secure Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\FSLSP.DLL (F-Secure Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\FSLSP.DLL (F-Secure Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\FSLSP.DLL (F-Secure Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\FSLSP.DLL (F-Secure Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\FSLSP.DLL (F-Secure Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000023 - C:\Program Files (x86)\Unitymedia\Sicherheitspaket\FSPS\program\FSLSP.DLL (F-Secure Corporation) O16:64bit: - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O16:64bit: - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} hxxp://download.divx.com/player/DivXBrowserPlugin.cab (DivXBrowserPlugin Object) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1 192.168.2.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{43FB6CDF-625E-4C67-9F13-7BE2CE75BEA5}: DhcpNameServer = 192.168.0.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{B630595A-1F98-41CA-B659-BC7CD3604FEA}: DhcpNameServer = 192.168.2.1 192.168.2.1 O18:64bit: - Protocol\Handler\livecall - No CLSID value found O18:64bit: - Protocol\Handler\msnim - No CLSID value found O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found O18:64bit: - Protocol\Handler\wlpg - No CLSID value found O20:64bit: - AppInit_DLLs: (C:\PROGRA~2\SEARCH~1\Datamngr\x64\datamngr.dll) - C:\PROGRA~2\SEARCH~1\Datamngr\x64\datamngr.dll (Bandoo Media, inc) O20:64bit: - AppInit_DLLs: (C:\PROGRA~2\SEARCH~1\Datamngr\x64\IEBHO.dll) - C:\PROGRA~2\SEARCH~1\Datamngr\x64\IEBHO.dll (Bandoo Media, inc) O20 - AppInit_DLLs: (C:\PROGRA~2\SEARCH~1\Datamngr\datamngr.dll) - C:\PROGRA~2\SEARCH~1\Datamngr\datamngr.dll (Bandoo Media, inc) O20 - AppInit_DLLs: (C:\PROGRA~2\SEARCH~1\Datamngr\IEBHO.dll) - C:\PROGRA~2\SEARCH~1\Datamngr\IEBHO.dll (Bandoo Media, inc) O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation) O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2010/07/07 11:48:56 | 000,000,078 | R--- | M] () - E:\autorun.inf -- [ CDFS ] O34 - HKLM BootExecute: (autocheck autochk *) O35:64bit: - HKLM\..comfile [open] -- "%1" %* O35:64bit: - HKLM\..exefile [open] -- "%1" %* O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %* O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = ComFile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) O38 - SubSystems\\Windows: (ServerDll=sxssrv,4) ========== Files/Folders - Created Within 30 Days ========== [2012/10/14 19:36:08 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Roaming\Malwarebytes [2012/10/14 19:36:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware [2012/10/14 19:36:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes [2012/10/14 19:36:03 | 000,025,928 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys [2012/10/14 19:36:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware [2012/10/14 19:21:56 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Yontoo [2012/10/14 19:21:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Tarma Installer [2012/10/13 20:02:12 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Roaming\F-Secure [2012/10/13 20:01:16 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN [2012/10/13 19:37:09 | 000,000,000 | ---D | C] -- C:\ProgramData\auzcbtiqysgimsd [2012/10/13 17:22:08 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Roaming\vlc [2012/10/13 17:21:49 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\Ilivid Player [2012/10/13 17:21:38 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\iLivid [2012/10/13 17:21:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Searchqu Toolbar [2012/10/13 17:21:17 | 000,000,000 | ---D | C] -- C:\ProgramData\boost_interprocess [2012/10/13 17:13:56 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\Conduit [2012/10/13 17:13:50 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FileConverter_1.3 [2012/10/13 14:36:58 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{7CA7AE69-BFCE-4576-929C-A10060D5D11B} [2012/10/12 21:44:12 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{40C95DB8-B691-462B-94AB-7D413B5B9CCA} [2012/10/11 20:00:11 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{9FEB6A4D-69BC-4822-978D-7717AFA348E2} [2012/10/10 11:22:49 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{E3B1CB94-F3CA-4C48-897D-EE7B5136EA7D} [2012/10/09 17:59:07 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{80BF7CAC-0CED-4F4B-AA55-C02B7767F2EE} [2012/10/08 18:23:47 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{BECEC623-0710-4A12-98A2-E338C2456F2E} [2012/10/07 20:13:11 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{12476B56-4AA4-4732-8D32-CC55F771CA36} [2012/10/06 18:44:25 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{B4764000-AB0D-457D-A689-06A92721688C} [2012/10/05 22:05:10 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{33ACA2E8-0BC0-4864-86DA-31FA7A9C2E1C} [2012/10/04 17:55:44 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{3B3D8C53-24EB-42CC-B6CD-D3164C58544C} [2012/10/03 15:50:39 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{106843D5-0A2B-4B87-A289-0E345842C785} [2012/10/03 15:41:53 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{C43BC3F2-A36E-4622-B062-639968743B98} [2012/10/02 20:15:09 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{DF373831-0A0E-4CD9-96FF-257640AD8673} [2012/10/01 21:06:22 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{C679229E-BBE6-4178-A964-CDD400D43E2F} [2012/10/01 14:46:43 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{E7D1737C-5ABA-4C63-9F11-E8F1E7AF5B1A} [2012/10/01 13:42:08 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{D3E56FBF-B222-41D3-BEEB-0BF0183D3FB9} [2012/09/30 20:18:32 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{EF48EC04-DE63-4E47-BEE4-E47F4B7C3686} [2012/09/29 18:22:58 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{54EDA22E-B037-4384-A353-61963DF7DEDC} [2012/09/27 06:43:37 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{CAA2F76C-62B1-47E3-8F54-8862CAFC75F4} [2012/09/26 18:40:57 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{4986A511-C6DB-43BF-BD3E-E87206A8B935} [2012/09/25 15:05:32 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{C34FF969-1B56-4DB8-A6EC-CE8815FB7014} [2012/09/24 16:08:09 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{C2FEE349-8294-451F-8B36-8A647F53D2F5} [2012/09/23 14:05:34 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{8E227E37-0800-461B-A78D-30F53FB7D9D0} [2012/09/21 19:09:56 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{291C8885-1110-4386-AB99-09A6E78FE9DB} [2012/09/20 12:00:20 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{340599CA-9E49-4688-B0F0-357C3F3A2055} [2012/09/19 22:19:27 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{1FDF79AD-865B-4346-B8C1-86EFAED11B9B} [2012/09/19 21:29:43 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{3136200C-11E7-407A-B9B4-12930A60D97F} [2012/09/18 14:10:30 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{D1A01642-2141-42DD-9DC7-E6655B0FF72A} [2012/09/17 20:57:09 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{63989DEF-07E0-4DF5-94AD-F2F79E468C06} [2012/09/16 20:44:38 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{CB6B8483-3081-4E66-9428-C5F501B14239} [2012/09/14 21:02:42 | 000,000,000 | ---D | C] -- C:\Users\Jessica\AppData\Local\{7DF84136-9EBE-4557-B7E4-9606F4DF6AF9} [1 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ] ========== Files - Modified Within 30 Days ========== [2012/10/14 19:50:46 | 000,016,752 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2012/10/14 19:50:46 | 000,016,752 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2012/10/14 19:47:42 | 001,522,482 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI [2012/10/14 19:47:42 | 000,662,084 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat [2012/10/14 19:47:42 | 000,623,926 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat [2012/10/14 19:47:42 | 000,133,782 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat [2012/10/14 19:47:42 | 000,110,164 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat [2012/10/14 19:47:07 | 000,000,936 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-2501155780-1250442132-408206543-1000UA.job [2012/10/14 19:47:00 | 000,000,914 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-2501155780-1250442132-408206543-1000Core.job [2012/10/14 19:43:22 | 000,001,106 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2012/10/14 19:43:19 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2012/10/14 19:43:17 | 3148,140,544 | -HS- | M] () -- C:\hiberfil.sys [2012/10/14 19:36:04 | 000,001,113 | ---- | M] () -- C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk [2012/10/14 19:21:52 | 000,000,263 | ---- | M] () -- C:\Users\Jessica\Desktop\Search the Web.url [2012/10/14 19:21:52 | 000,000,257 | ---- | M] () -- C:\Users\Jessica\Desktop\SweetPcFix.url [2012/10/13 20:10:00 | 000,000,884 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job [2012/10/13 19:37:09 | 000,076,352 | ---- | M] () -- C:\ProgramData\datzoskdmlfjxhr [2012/10/13 19:37:01 | 000,001,110 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2012/10/13 17:21:48 | 000,001,180 | ---- | M] () -- C:\Users\Public\Desktop\Play Games.lnk [2012/10/13 17:21:48 | 000,001,150 | ---- | M] () -- C:\Users\Public\Desktop\Upgrade Facebook Chat Experience.lnk [2012/10/11 20:38:01 | 000,002,749 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk [2012/10/08 23:10:10 | 000,696,760 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe [2012/10/08 23:10:10 | 000,073,656 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl [2012/09/29 19:54:26 | 000,025,928 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys [1 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ] ========== Files Created - No Company Name ========== [2012/10/14 19:36:04 | 000,001,113 | ---- | C] () -- C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk [2012/10/14 19:21:52 | 000,000,263 | ---- | C] () -- C:\Users\Jessica\Desktop\Search the Web.url [2012/10/14 19:21:52 | 000,000,257 | ---- | C] () -- C:\Users\Jessica\Desktop\SweetPcFix.url [2012/10/13 20:01:08 | 3148,140,544 | -HS- | C] () -- C:\hiberfil.sys [2012/10/13 19:37:04 | 000,076,352 | ---- | C] () -- C:\ProgramData\datzoskdmlfjxhr [2012/10/13 17:21:48 | 000,001,180 | ---- | C] () -- C:\Users\Public\Desktop\Play Games.lnk [2012/10/13 17:21:48 | 000,001,150 | ---- | C] () -- C:\Users\Public\Desktop\Upgrade Facebook Chat Experience.lnk [2012/05/21 12:45:40 | 000,000,288 | ---- | C] () -- C:\Users\Jessica\AppData\Roaming\983102EC.reg [2012/02/07 19:25:12 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe [2012/02/07 19:25:12 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe [2012/02/07 19:25:12 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe [2012/02/07 19:25:12 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe [2012/02/07 19:25:12 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe [2012/02/02 00:09:37 | 000,000,000 | ---- | C] () -- C:\Users\Jessica\AppData\Local\{B1CB6B84-2AB2-4167-851E-E3DA952CEC7A} [2012/01/27 12:29:49 | 000,000,000 | ---- | C] () -- C:\Users\Jessica\AppData\Local\{C35F1269-D44E-4706-AF25-457DA62FC92D} [2012/01/11 16:48:15 | 000,000,000 | ---- | C] () -- C:\Users\Jessica\AppData\Local\{865F013A-5EBC-46B0-87D3-0F34310E675E} [2012/01/07 13:47:37 | 000,000,000 | ---- | C] () -- C:\Users\Jessica\AppData\Local\{8A5F6B46-4F38-424D-B957-3A41FBDD8FA0} [2012/01/03 21:31:57 | 000,000,000 | ---- | C] () -- C:\Users\Jessica\AppData\Local\{8AD24C20-FC70-42E4-BF6E-A9C4C1F22ABA} [2012/01/02 14:17:53 | 000,000,000 | ---- | C] () -- C:\Users\Jessica\AppData\Local\{702A9AF9-A4F5-4C6D-8B25-168834D96507} [2011/12/29 01:52:30 | 000,000,000 | ---- | C] () -- C:\Users\Jessica\AppData\Local\{96834D0C-ED15-47CF-A64B-38EF9C7C0AFD} [2011/12/12 18:31:20 | 000,000,000 | ---- | C] () -- C:\Users\Jessica\AppData\Local\{8969EBBC-4FC0-4622-874A-0E8F56FB6603} [2011/12/10 17:54:26 | 000,000,000 | ---- | C] () -- C:\Users\Jessica\AppData\Local\{92399373-57C0-461C-A04C-230BD3B67DC0} [2011/11/20 04:25:39 | 000,000,000 | ---- | C] () -- C:\Users\Jessica\AppData\Local\{A1BB9EBA-BA3C-4C50-83F4-8E197F2706AD} [2011/11/15 17:35:49 | 000,000,000 | ---- | C] () -- C:\Users\Jessica\AppData\Local\{E3105DF8-D1EF-484A-92FF-BAA97887E89C} [2011/11/09 11:45:13 | 000,042,672 | ---- | C] () -- C:\Windows\SysWow64\drivers\fsbts.sys [2011/09/13 10:15:22 | 001,550,100 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI [2011/03/14 06:04:53 | 000,072,017 | ---- | C] () -- C:\Windows\SysWow64\Uninstall ALDI SÜD Mah Jong.exe [2011/03/14 05:23:13 | 000,127,184 | ---- | C] () -- C:\Windows\Unwise.exe [2011/03/14 05:23:12 | 000,149,504 | ---- | C] () -- C:\Windows\unwise32_setup.exe [2011/02/04 13:38:58 | 000,960,940 | ---- | C] () -- C:\Windows\SysWow64\igkrng600.bin [2011/02/04 13:38:58 | 000,213,332 | ---- | C] () -- C:\Windows\SysWow64\igfcg600m.bin [2011/02/04 13:38:56 | 000,145,804 | ---- | C] () -- C:\Windows\SysWow64\igcompkrng600.bin ========== ZeroAccess Check ========== [2009/07/14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64 "" = C:\Windows\SysNative\shell32.dll -- [2012/01/04 12:44:25 | 014,172,672 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shell32.dll -- [2012/01/04 10:59:38 | 012,872,704 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64 "" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/21 05:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64 "" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] < End of report > |
15.10.2012, 13:58 | #4 |
/// Helfer-Team | Virus Bundespolizei erster Entfernungsveruch erfolglos Die Bereinigung besteht aus mehreren Schritten, die ausgefuehrt werden muessen. Diese Nacheinander abarbeiten und die 4 Logs, die dabei erstellt werden bitte in deine naechste Antwort einfuegen. Sollte der OTL-FIX nicht richig durchgelaufen sein. Fahre nicht fort, sondern mede dies bitte. 1. Schritt Fixen mit OTL Lade (falls noch nicht vorhanden) OTL von Oldtimer herunter und speichere es auf Deinem Desktop (nicht woanders hin).
Code:
ATTFilter :OTL O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 [2012/10/13 17:21:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Searchqu Toolbar [2012/10/13 17:21:17 | 000,000,000 | ---D | C] -- C:\ProgramData\boost_interprocess [2012/10/13 19:37:09 | 000,000,000 | ---D | C] -- C:\ProgramData\auzcbtiqysgimsd [2012/10/13 19:37:09 | 000,076,352 | ---- | M] () -- C:\ProgramData\datzoskdmlfjxhr :Files C:\ProgramData\*.exe C:\ProgramData\TEMP C:\Users\Jessica\*.tmp C:\Users\Jessica\AppData\Local\{*} C:\Users\Jessica\AppData\Local\Temp\*.exe C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache %APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup\ctfmon.lnk ipconfig /flushdns /c :Commands [emptytemp]
Hinweis für Mitleser: Obiges OTL-Script ist ausschließlich für diesen User in dieser Situtation erstellt worden. Auf keinen Fall auf anderen Rechnern anwenden, das kann andere Systeme nachhaltig schädigen! 2. Schritt Bitte einen Vollscan mit Malwarebytes Anti-Malware machen und Log posten.danach: 3. Schritt Downloade Dir bitte AdwCleaner auf deinen Desktop.
4. Schritt
|
20.11.2012, 23:29 | #5 |
| Virus Bundespolizei erster Entfernungsveruch erfolglos Danke! Hier der Log vom fixen mit OTL: All processes killed ========== OTL ========== Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDrives deleted successfully. Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\ConsentPromptBehaviorAdmin deleted successfully. Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\ConsentPromptBehaviorUser deleted successfully. Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\EnableLUA deleted successfully. Registry value HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDrives deleted successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\x64 folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\components folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\searchbar folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\options folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\icons folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\css folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\scripts folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\css folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\css folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin\lib folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\skin folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\widgets folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\modules folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\lib folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\data\search folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content\data folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome\content folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar\chrome folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ToolBar folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ChromeExtension\lib folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ChromeExtension\config\skin\images folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ChromeExtension\config\skin\css folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ChromeExtension\config\skin folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ChromeExtension\config folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr\ChromeExtension folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar\Datamngr folder moved successfully. C:\Program Files (x86)\Searchqu Toolbar folder moved successfully. C:\ProgramData\boost_interprocess\5990E0493FA9CD01 folder moved successfully. C:\ProgramData\boost_interprocess folder moved successfully. C:\ProgramData\auzcbtiqysgimsd folder moved successfully. C:\ProgramData\datzoskdmlfjxhr moved successfully. ========== FILES ========== File\Folder C:\ProgramData\*.exe not found. C:\ProgramData\Temp\{E3D04529-6EDB-11D8-A372-0050BAE317E1} folder moved successfully. C:\ProgramData\Temp\{E3739848-5329-48E3-8D28-5BBD6E8BE384} folder moved successfully. C:\ProgramData\Temp\{DEC235ED-58A4-4517-A278-C41E8DAEAB3B} folder moved successfully. C:\ProgramData\Temp\{D36DD326-7280-11D8-97C8-000129760CBE} folder moved successfully. C:\ProgramData\Temp\{CB099890-1D5F-11D5-9EA9-0050BAE317E1} folder moved successfully. C:\ProgramData\Temp\{C59C179C-668D-49A9-B6EA-0121CCFC1243} folder moved successfully. C:\ProgramData\Temp\{B7A0CE06-068E-11D6-97FD-0050BACBF861} folder moved successfully. C:\ProgramData\Temp\{80E158EA-7181-40FE-A701-301CE6BE64AB} folder moved successfully. C:\ProgramData\Temp\{5DB1DF0C-AABC-4362-8A6D-CEFDFB036E41} folder moved successfully. C:\ProgramData\Temp\{40BF1E83-20EB-11D8-97C5-0009C5020658} folder moved successfully. C:\ProgramData\Temp\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79} folder moved successfully. C:\ProgramData\Temp\{01FB4998-33C4-4431-85ED-079E3EEFE75D} folder moved successfully. C:\ProgramData\Temp folder moved successfully. File\Folder C:\Users\Jessica\*.tmp not found. C:\Users\Jessica\AppData\Local\{003300CE-D752-4FF8-8E83-987C580E38B8} folder moved successfully. C:\Users\Jessica\AppData\Local\{009ACF5E-956D-47DD-B71B-4C8F8B89731F} folder moved successfully. C:\Users\Jessica\AppData\Local\{013E5E6C-0990-44BC-8EBB-FD85DDF45923} folder moved successfully. C:\Users\Jessica\AppData\Local\{01428D1C-F476-469D-8873-6F3CACEB150D} folder moved successfully. C:\Users\Jessica\AppData\Local\{017DFE35-CF47-44DD-89A9-DA99A1F10234} folder moved successfully. C:\Users\Jessica\AppData\Local\{0188D755-9A44-48E1-B738-27A128C38636} folder moved successfully. C:\Users\Jessica\AppData\Local\{018EAFB5-53E7-425F-A01C-DBA7054B7360} folder moved successfully. C:\Users\Jessica\AppData\Local\{020DBECE-2545-4AB6-8CD0-C6AD29EDC67A} folder moved successfully. C:\Users\Jessica\AppData\Local\{02EB7FDA-7CA2-4EDA-873B-069D83CC7DE5} folder moved successfully. C:\Users\Jessica\AppData\Local\{02F4A943-FC81-418A-8C46-6A0531DE845A} folder moved successfully. C:\Users\Jessica\AppData\Local\{0310F352-C5B8-47B8-B2F9-EE035FEC93E7} folder moved successfully. C:\Users\Jessica\AppData\Local\{033B5877-E7B5-4447-953F-45592200F383} folder moved successfully. C:\Users\Jessica\AppData\Local\{0388B1DF-290A-4A0E-82E6-BA7A05E8D492} folder moved successfully. C:\Users\Jessica\AppData\Local\{03954412-5535-4A10-B658-4E906C4AAD49} folder moved successfully. C:\Users\Jessica\AppData\Local\{03B21DD9-D521-49D9-8723-D20779B0911D} folder moved successfully. C:\Users\Jessica\AppData\Local\{044BA92F-5424-4784-95F1-2D48BF43A1C5} folder moved successfully. C:\Users\Jessica\AppData\Local\{04795D64-623F-4969-B516-4415673AAB45} folder moved successfully. C:\Users\Jessica\AppData\Local\{04C42C9A-F9A5-4C18-BF9D-0CCFBF81A7FA} folder moved successfully. C:\Users\Jessica\AppData\Local\{04CC86C1-AF98-4BD0-A2CD-FCF1B1D8527D} folder moved successfully. C:\Users\Jessica\AppData\Local\{050AE9B1-E14B-45DC-8FC3-BC7A6F14E303} folder moved successfully. C:\Users\Jessica\AppData\Local\{05142B4C-91B5-4648-B9DE-7BEBC0BA6EAE} folder moved successfully. C:\Users\Jessica\AppData\Local\{05673E5A-9DF5-4336-BD52-FF93744984AD} folder moved successfully. C:\Users\Jessica\AppData\Local\{0596FDF5-D86F-401D-BE67-0F2349A25017} folder moved successfully. C:\Users\Jessica\AppData\Local\{077B5996-84FD-40DA-940C-C66B06DC74FB} folder moved successfully. C:\Users\Jessica\AppData\Local\{07AF089B-997E-4E32-A162-201F5B5BD643} folder moved successfully. C:\Users\Jessica\AppData\Local\{07DCFF67-6699-432F-A76B-17400A0B3977} folder moved successfully. C:\Users\Jessica\AppData\Local\{08F975A7-2414-4034-B1B1-66C945881FB7} folder moved successfully. C:\Users\Jessica\AppData\Local\{09190B5B-471F-4C39-86AF-BC11B3055B46} folder moved successfully. C:\Users\Jessica\AppData\Local\{097136E5-661D-4871-8FB0-2F0DADFC17AD} folder moved successfully. C:\Users\Jessica\AppData\Local\{0A8A8A6C-36CE-4C3A-8FA6-11D2965CE7F7} folder moved successfully. C:\Users\Jessica\AppData\Local\{0AC61919-0459-4373-AEA7-6E8FB8EE7B84} folder moved successfully. C:\Users\Jessica\AppData\Local\{0B0E7EB0-09F8-4450-909E-A835FBC811DC} folder moved successfully. C:\Users\Jessica\AppData\Local\{0BE9D338-06D7-4200-A6C2-F7D50F2F825B} folder moved successfully. C:\Users\Jessica\AppData\Local\{0C967EF8-3AAF-4D56-A9C4-AD71ED56C367} folder moved successfully. C:\Users\Jessica\AppData\Local\{0CB5C3DA-D899-4980-AE36-42677EA75B17} folder moved successfully. C:\Users\Jessica\AppData\Local\{0D8B1F72-1D2B-4623-9AE6-5EB3BDCCDE44} folder moved successfully. C:\Users\Jessica\AppData\Local\{0DC1A4B4-E1F4-4362-BDEE-57A6BBB9AA00} folder moved successfully. C:\Users\Jessica\AppData\Local\{0E30DB16-39D3-4DCE-A668-76FCC75F0F7E} folder moved successfully. C:\Users\Jessica\AppData\Local\{0EEF80B8-8C64-4A81-87D0-7A043057E249} folder moved successfully. C:\Users\Jessica\AppData\Local\{0EF427B8-DE9E-4242-9ABA-EC65135C4BDD} folder moved successfully. C:\Users\Jessica\AppData\Local\{0FE43DD8-B9DE-4C1E-9A84-195F180FD6A5} folder moved successfully. C:\Users\Jessica\AppData\Local\{103FA5C7-93A7-4DA8-BE60-DEEE0F8C03BE} folder moved successfully. C:\Users\Jessica\AppData\Local\{106843D5-0A2B-4B87-A289-0E345842C785} folder moved successfully. C:\Users\Jessica\AppData\Local\{108D2CCA-5FCD-4DFA-8C64-EE944482B62C} folder moved successfully. C:\Users\Jessica\AppData\Local\{111DE2BB-BF1E-4A5F-90FE-BB56B67F9E38} folder moved successfully. C:\Users\Jessica\AppData\Local\{11A1142A-BB86-4E72-8E58-9D7B9E9D01D7} folder moved successfully. C:\Users\Jessica\AppData\Local\{11A1B920-9584-4D2D-B156-80D15C8F439E} folder moved successfully. C:\Users\Jessica\AppData\Local\{11DC561A-B9B4-4186-8006-831B51B60A97} folder moved successfully. C:\Users\Jessica\AppData\Local\{11ED962F-22B0-4BE0-9BAC-40A6D1DD5E1F} folder moved successfully. C:\Users\Jessica\AppData\Local\{12476B56-4AA4-4732-8D32-CC55F771CA36} folder moved successfully. C:\Users\Jessica\AppData\Local\{1314AFFA-F52A-475F-8B72-112B0C6D76E3} folder moved successfully. C:\Users\Jessica\AppData\Local\{13DB078E-70D9-4D17-A25C-08D6B277BB54} folder moved successfully. C:\Users\Jessica\AppData\Local\{13FCD277-502D-4F70-9236-11F23E20E81C} folder moved successfully. C:\Users\Jessica\AppData\Local\{142C1DAC-9D15-411B-90FB-DF8B6E76F03B} folder moved successfully. C:\Users\Jessica\AppData\Local\{14E6DCA6-35AE-4CF4-AA5F-059D57829617} folder moved successfully. C:\Users\Jessica\AppData\Local\{150D4B86-7547-4C71-BB21-D7049A4F751A} folder moved successfully. C:\Users\Jessica\AppData\Local\{15B0391F-E3BF-477E-AF59-1EA14AB2FB40} folder moved successfully. C:\Users\Jessica\AppData\Local\{15E8C02E-B0CA-4733-B6D2-309D80E1F3A8} folder moved successfully. C:\Users\Jessica\AppData\Local\{15F0DA41-D243-4383-8E73-FD58B569C605} folder moved successfully. C:\Users\Jessica\AppData\Local\{1622DBE3-D03E-4220-974B-63BAF7355F47} folder moved successfully. C:\Users\Jessica\AppData\Local\{1646B12C-3C86-4FF8-BE35-7EDB0C2F5F90} folder moved successfully. C:\Users\Jessica\AppData\Local\{16522052-DD0C-4E3A-8C31-1B81B47810D2} folder moved successfully. C:\Users\Jessica\AppData\Local\{166D78DE-6713-4A52-AF6B-2EB6DDAE142C} folder moved successfully. C:\Users\Jessica\AppData\Local\{175C378F-900C-4AF6-B185-639914648368} folder moved successfully. C:\Users\Jessica\AppData\Local\{178E6318-419F-4E96-9193-EBA0CC82AD36} folder moved successfully. C:\Users\Jessica\AppData\Local\{178FE03C-F079-4087-AE27-E4619562940C} folder moved successfully. C:\Users\Jessica\AppData\Local\{17D63FA0-C13E-4F52-98A1-74381AA5F750} folder moved successfully. C:\Users\Jessica\AppData\Local\{17D8D9BE-0E8A-4B53-9EBB-83BFD9DC8E90} folder moved successfully. C:\Users\Jessica\AppData\Local\{17E422ED-C2C1-49A7-BB03-9269630891A0} folder moved successfully. C:\Users\Jessica\AppData\Local\{1880AED7-65BF-46DE-BB4E-7265CCC42642} folder moved successfully. C:\Users\Jessica\AppData\Local\{18A7B4B4-EEB5-4B8E-A46A-42EB4456C993} folder moved successfully. C:\Users\Jessica\AppData\Local\{18F9BF92-EC48-4E36-8082-86DF0DE8E306} folder moved successfully. C:\Users\Jessica\AppData\Local\{19A96332-E378-45C2-AF34-5C6207444266} folder moved successfully. C:\Users\Jessica\AppData\Local\{1A0350D5-3327-445E-AE0F-A8A5437CA795} folder moved successfully. C:\Users\Jessica\AppData\Local\{1A631D3D-E1F6-4071-AD4B-F24A851314C8} folder moved successfully. C:\Users\Jessica\AppData\Local\{1A64C7E6-2710-4B32-8962-4894898DE485} folder moved successfully. C:\Users\Jessica\AppData\Local\{1AC93259-490E-4BF2-9459-824BC049040D} folder moved successfully. C:\Users\Jessica\AppData\Local\{1ADBCA76-2CF5-4EB3-A3F1-5E70C88EB40F} folder moved successfully. C:\Users\Jessica\AppData\Local\{1B01CF5D-18BE-41B6-8A5B-82B1496D2DA5} folder moved successfully. C:\Users\Jessica\AppData\Local\{1B13FEC8-592F-4297-9170-C7D99D9C5174} folder moved successfully. C:\Users\Jessica\AppData\Local\{1B4DFEB0-678C-4C0E-BBF5-760B54A3AF66} folder moved successfully. C:\Users\Jessica\AppData\Local\{1B77843C-F7AD-433F-B347-D7C1296D5A67} folder moved successfully. C:\Users\Jessica\AppData\Local\{1BCCB4DD-8134-412E-8A10-194A1C8731FA} folder moved successfully. C:\Users\Jessica\AppData\Local\{1C1849C3-9979-40AE-88F1-7E993A86AB20} folder moved successfully. C:\Users\Jessica\AppData\Local\{1C448151-8B16-4A57-889E-C8A88D777185} folder moved successfully. C:\Users\Jessica\AppData\Local\{1C971952-6FE7-41CF-9F10-64711EF0D9F0} folder moved successfully. C:\Users\Jessica\AppData\Local\{1CC84862-07AD-40E8-8D3B-011EED7F44AC} folder moved successfully. C:\Users\Jessica\AppData\Local\{1CDB6E70-6B05-4E8B-A49C-B65DCF2236E8} folder moved successfully. C:\Users\Jessica\AppData\Local\{1CF86A86-D6E4-4DEC-A3B5-DFA7CE793746} folder moved successfully. C:\Users\Jessica\AppData\Local\{1D49D9FA-C930-4887-A4DE-D8956BBC12B7} folder moved successfully. C:\Users\Jessica\AppData\Local\{1DC86104-FF8E-4333-89AB-3E3575797730} folder moved successfully. C:\Users\Jessica\AppData\Local\{1E49224A-2C1E-4307-964D-C4DD358C5ABD} folder moved successfully. C:\Users\Jessica\AppData\Local\{1E60FB8B-1EA9-4ED5-BFC4-4CC253730BA4} folder moved successfully. C:\Users\Jessica\AppData\Local\{1EBD82D2-0E81-4F40-BAFD-A5A674DA6221} folder moved successfully. C:\Users\Jessica\AppData\Local\{1EC023F0-8F59-43D6-B1EE-840464233FAD} folder moved successfully. C:\Users\Jessica\AppData\Local\{1F106048-BA4B-4B9D-BF15-761F33A45DAD} folder moved successfully. C:\Users\Jessica\AppData\Local\{1F1555E0-800A-40DB-BDBE-C12C8630ED45} folder moved successfully. C:\Users\Jessica\AppData\Local\{1F4F55C5-5BA7-4C78-8AE9-C423746CA947} folder moved successfully. C:\Users\Jessica\AppData\Local\{1FDCFD36-D1A5-4DDC-946E-2EA8D048F0C1} folder moved successfully. C:\Users\Jessica\AppData\Local\{1FDF79AD-865B-4346-B8C1-86EFAED11B9B} folder moved successfully. C:\Users\Jessica\AppData\Local\{206FDA6F-2DC4-4A4D-B32C-DAFD91F072FA} folder moved successfully. C:\Users\Jessica\AppData\Local\{2143C583-3277-46D5-B674-58947715ADEF} folder moved successfully. C:\Users\Jessica\AppData\Local\{2152ADC7-66BC-4E29-BFAF-A67E74C65AF1} folder moved successfully. C:\Users\Jessica\AppData\Local\{2264D886-AFFA-4CC0-875C-CFC6A1BBF20B} folder moved successfully. C:\Users\Jessica\AppData\Local\{2324C603-1705-4263-B6D9-43274B88984D} folder moved successfully. C:\Users\Jessica\AppData\Local\{238D2C70-76ED-450D-831B-6129BEDA3E3D} folder moved successfully. C:\Users\Jessica\AppData\Local\{23A25A53-C1FF-4BB3-8CAE-6A9F6F8941AF} folder moved successfully. C:\Users\Jessica\AppData\Local\{245BD728-5784-4A2D-92A2-37D343ADB35B} folder moved successfully. C:\Users\Jessica\AppData\Local\{246686A3-3DC2-4364-B84D-310EDED08675} folder moved successfully. C:\Users\Jessica\AppData\Local\{247FD42F-5CC0-4686-8E30-D98D629EB47A} folder moved successfully. C:\Users\Jessica\AppData\Local\{24B9F330-EA79-49C2-8C19-C714CBAD84C6} folder moved successfully. C:\Users\Jessica\AppData\Local\{24FF403B-1491-459C-A8EB-0A7F57DB1282} folder moved successfully. C:\Users\Jessica\AppData\Local\{254E913F-B609-4A32-A727-00CCEB913347} folder moved successfully. C:\Users\Jessica\AppData\Local\{264837E5-5E07-4552-9C17-979619D4CB38} folder moved successfully. C:\Users\Jessica\AppData\Local\{266E59C9-0D69-4760-8A37-B6A574444B53} folder moved successfully. C:\Users\Jessica\AppData\Local\{27523A73-74ED-4565-9CB9-2546420A6300} folder moved successfully. C:\Users\Jessica\AppData\Local\{279F4E4B-1BCE-480B-A255-B9B7088AA677} folder moved successfully. C:\Users\Jessica\AppData\Local\{28CFC3C0-1A76-4CEC-916D-78E3C9D4F8C2} folder moved successfully. C:\Users\Jessica\AppData\Local\{291C8885-1110-4386-AB99-09A6E78FE9DB} folder moved successfully. C:\Users\Jessica\AppData\Local\{2936AC70-5B51-48EB-A525-594C6F1716D9} folder moved successfully. C:\Users\Jessica\AppData\Local\{296F9D8A-CFD7-4A82-89B8-F009ED2EDE64} folder moved successfully. C:\Users\Jessica\AppData\Local\{298AF856-913B-4F27-B408-A59F3C7D58CA} folder moved successfully. C:\Users\Jessica\AppData\Local\{2A32AF46-5FEA-40DB-B68D-F364A0000F94} folder moved successfully. C:\Users\Jessica\AppData\Local\{2A34DB72-EB32-40BF-AE0A-255E03014EC9} folder moved successfully. C:\Users\Jessica\AppData\Local\{2AAB771B-5872-4BF4-B910-6D68E2CC770F} folder moved successfully. C:\Users\Jessica\AppData\Local\{2ACC5DF1-3131-461F-A5E0-46291F3543D7} folder moved successfully. C:\Users\Jessica\AppData\Local\{2AF05B97-D082-48F0-9BC3-52268721CCF5} folder moved successfully. C:\Users\Jessica\AppData\Local\{2B6F34F3-CBF3-4900-8A46-AC0D550B3BD7} folder moved successfully. C:\Users\Jessica\AppData\Local\{2BAEC2E6-EB9D-442D-9032-58BBEE948DE1} folder moved successfully. C:\Users\Jessica\AppData\Local\{2BEB29F9-BA47-44F9-94B5-4E9FC0E70A15} folder moved successfully. C:\Users\Jessica\AppData\Local\{2C22C92F-3BB1-4C97-B91A-EF50565A73B9} folder moved successfully. C:\Users\Jessica\AppData\Local\{2C29966D-84DC-4403-9221-2A30BE653434} folder moved successfully. C:\Users\Jessica\AppData\Local\{2C31F562-402C-4845-A5CF-A8F93576B7A2} folder moved successfully. C:\Users\Jessica\AppData\Local\{2CA76717-48B1-4D3D-AC88-3C0B75537813} folder moved successfully. C:\Users\Jessica\AppData\Local\{2CBA9DE7-36CB-414B-ADC9-1CA3F29D96FA} folder moved successfully. C:\Users\Jessica\AppData\Local\{2CE41CBC-3EA9-4959-8DC2-3E7CD8F4951D} folder moved successfully. C:\Users\Jessica\AppData\Local\{2DE2FCDC-B14C-49E7-8A8F-812A0115B60B} folder moved successfully. C:\Users\Jessica\AppData\Local\{2DFD6F0A-30A8-45F6-85A8-432DBD5E737B} folder moved successfully. C:\Users\Jessica\AppData\Local\{2ECEE515-11BE-4332-BE5A-BDCB552061F1} folder moved successfully. C:\Users\Jessica\AppData\Local\{2EDBA553-B90E-4FAA-9E33-89E7AC7590E5} folder moved successfully. C:\Users\Jessica\AppData\Local\{2F5D3C10-1D11-4A29-B4F7-0A4C4644BE9A} folder moved successfully. C:\Users\Jessica\AppData\Local\{2F837E01-CA16-4FCA-BBC4-476775545794} folder moved successfully. C:\Users\Jessica\AppData\Local\{3041FA9F-4C7E-4BDB-8C30-4122E65D2704} folder moved successfully. C:\Users\Jessica\AppData\Local\{308A4C3E-5F2E-4C5A-AEFF-537965611777} folder moved successfully. C:\Users\Jessica\AppData\Local\{30BE7C76-3E64-4796-B866-8D6329CE87DA} folder moved successfully. C:\Users\Jessica\AppData\Local\{30E34284-6C54-4212-9A6A-AD94CF14651B} folder moved successfully. C:\Users\Jessica\AppData\Local\{3136200C-11E7-407A-B9B4-12930A60D97F} folder moved successfully. C:\Users\Jessica\AppData\Local\{317C8427-557E-4842-81DD-F6DC5F8DBFCF} folder moved successfully. C:\Users\Jessica\AppData\Local\{319C5DA6-531F-4B38-9C65-FC25735A3590} folder moved successfully. C:\Users\Jessica\AppData\Local\{329452F2-C001-4DE6-9EEA-9C4BA908E297} folder moved successfully. C:\Users\Jessica\AppData\Local\{33AB2640-69AB-4B4F-B2F9-2AC6B67E527F} folder moved successfully. C:\Users\Jessica\AppData\Local\{33ACA2E8-0BC0-4864-86DA-31FA7A9C2E1C} folder moved successfully. C:\Users\Jessica\AppData\Local\{33E6EF05-3DA7-448E-9BE8-793B3F17F47C} folder moved successfully. C:\Users\Jessica\AppData\Local\{340599CA-9E49-4688-B0F0-357C3F3A2055} folder moved successfully. C:\Users\Jessica\AppData\Local\{341AFA84-DAFB-423A-BD16-5E65BC34433B} folder moved successfully. C:\Users\Jessica\AppData\Local\{34A37A8F-9DCE-42EB-A6BB-7CB3C2FF7C61} folder moved successfully. C:\Users\Jessica\AppData\Local\{350F8693-019C-46F1-B7C4-954E00CF564B} folder moved successfully. C:\Users\Jessica\AppData\Local\{35A815D5-6015-4A1D-8277-93D3701B0F51} folder moved successfully. C:\Users\Jessica\AppData\Local\{35BF6FCB-1709-475F-A5DC-2347507157A3} folder moved successfully. C:\Users\Jessica\AppData\Local\{36047E05-5A28-4155-9D3E-C9B3F6CC0A50} folder moved successfully. C:\Users\Jessica\AppData\Local\{3613AEC8-A421-405C-B02D-8574C89C3142} folder moved successfully. C:\Users\Jessica\AppData\Local\{365C4C9E-56CA-4334-AB48-7D18701A730E} folder moved successfully. C:\Users\Jessica\AppData\Local\{3709501E-8BC1-4E7C-8D40-07171FD89F1F} folder moved successfully. C:\Users\Jessica\AppData\Local\{37102015-C6E2-4718-9168-B2586DA4D6B3} folder moved successfully. C:\Users\Jessica\AppData\Local\{375E9A9F-F78B-4594-8777-34B84396310C} folder moved successfully. C:\Users\Jessica\AppData\Local\{37C4E86B-6EDB-4D5B-973A-834C54C49B24} folder moved successfully. C:\Users\Jessica\AppData\Local\{382DE24A-517C-46D6-B4FE-C6E4986C8D0F} folder moved successfully. C:\Users\Jessica\AppData\Local\{3852C344-2210-4FE4-B526-7A7AACE8AD5B} folder moved successfully. C:\Users\Jessica\AppData\Local\{385BE394-69AF-4E60-8DF8-9D613269DB59} folder moved successfully. C:\Users\Jessica\AppData\Local\{386B2A37-6870-4107-A685-51A2F947B958} folder moved successfully. C:\Users\Jessica\AppData\Local\{38ADD3BE-1FAD-495D-AFFF-3219628AFF28} folder moved successfully. C:\Users\Jessica\AppData\Local\{391B4C08-78B0-47EF-9E53-0277EE86D71D} folder moved successfully. C:\Users\Jessica\AppData\Local\{39684639-CF50-45DC-9D83-FD7ECFB8AEBC} folder moved successfully. C:\Users\Jessica\AppData\Local\{397BA173-AF41-4F67-B524-931A52A7F528} folder moved successfully. C:\Users\Jessica\AppData\Local\{39D6836E-5221-4027-92C4-FB7D6EEE2337} folder moved successfully. C:\Users\Jessica\AppData\Local\{3A054CC5-A06B-4510-963B-D71505884FCA} folder moved successfully. C:\Users\Jessica\AppData\Local\{3A32C20F-90E4-4773-AFB8-3CE91E8255A5} folder moved successfully. C:\Users\Jessica\AppData\Local\{3A60DC57-811F-4263-8943-5AE8CFD3A3A2} folder moved successfully. C:\Users\Jessica\AppData\Local\{3A6FB7F2-297F-40CD-9D22-E99DF9D3F303} folder moved successfully. C:\Users\Jessica\AppData\Local\{3AB523BA-FF1C-46D2-8EAB-5619537DBF66} folder moved successfully. C:\Users\Jessica\AppData\Local\{3AFE57D9-6A8B-4392-9641-40A590BD3786} folder moved successfully. C:\Users\Jessica\AppData\Local\{3B013706-8F76-4370-A482-80D6597F7B2D} folder moved successfully. C:\Users\Jessica\AppData\Local\{3B3D8C53-24EB-42CC-B6CD-D3164C58544C} folder moved successfully. C:\Users\Jessica\AppData\Local\{3B9C8F5C-01E8-44D4-AB44-7D177400319A} folder moved successfully. C:\Users\Jessica\AppData\Local\{3C15B525-1A55-4E8C-A700-7F380CA1782B} folder moved successfully. C:\Users\Jessica\AppData\Local\{3C20E608-B25A-4212-8758-A14D707D6DAA} folder moved successfully. C:\Users\Jessica\AppData\Local\{3C3C2D29-A2E8-4981-8D1D-3DECDF150711} folder moved successfully. C:\Users\Jessica\AppData\Local\{3C884FB5-596C-4329-98C1-D3FF43E6AA36} folder moved successfully. C:\Users\Jessica\AppData\Local\{3DB7BE7A-B298-4BF0-8EF7-DD106E392E06} folder moved successfully. C:\Users\Jessica\AppData\Local\{3DC23B5A-40BC-4381-BF82-A688AA23F91A} folder moved successfully. C:\Users\Jessica\AppData\Local\{3E38D339-83EA-4F25-A2F0-B4041382AF83} folder moved successfully. C:\Users\Jessica\AppData\Local\{3F076696-BC4F-4314-874B-4505E3086148} folder moved successfully. C:\Users\Jessica\AppData\Local\{3F29CFB3-76C1-4EDF-AB77-7F81DAC7D328} folder moved successfully. C:\Users\Jessica\AppData\Local\{3FA7228D-A16C-4929-83CE-D0AF721FD286} folder moved successfully. C:\Users\Jessica\AppData\Local\{40102DF5-4980-44B3-A5EB-B0995367D5BF} folder moved successfully. C:\Users\Jessica\AppData\Local\{4037E6C9-9D7D-425B-9131-D1E7E2D4D0AA} folder moved successfully. C:\Users\Jessica\AppData\Local\{40C77A2D-073A-4489-AB40-1290C5A443FE} folder moved successfully. C:\Users\Jessica\AppData\Local\{40C95DB8-B691-462B-94AB-7D413B5B9CCA} folder moved successfully. C:\Users\Jessica\AppData\Local\{410B71A7-E417-4A75-BE5F-26966E91A4CD} folder moved successfully. C:\Users\Jessica\AppData\Local\{416402C2-8EF5-41F1-9B4A-D3D5C9429F12} folder moved successfully. C:\Users\Jessica\AppData\Local\{417BB75A-4C19-43CA-9C36-FE829B1BBE7A} folder moved successfully. C:\Users\Jessica\AppData\Local\{41B21230-DC71-4E6B-83C5-E784F0699B61} folder moved successfully. C:\Users\Jessica\AppData\Local\{41D4FB9C-B327-49A7-9749-6F5696FF577F} folder moved successfully. C:\Users\Jessica\AppData\Local\{422D7316-C4E7-48A4-98A2-63C48DA6DB7D} folder moved successfully. C:\Users\Jessica\AppData\Local\{42CB4622-A01D-4012-AAA6-67F5EC663BE1} folder moved successfully. C:\Users\Jessica\AppData\Local\{436318B3-25FA-4B3C-B544-9A804EB28547} folder moved successfully. C:\Users\Jessica\AppData\Local\{4369C7A1-6301-44E1-8B55-E299E084B4A1} folder moved successfully. C:\Users\Jessica\AppData\Local\{43CC1829-08BC-41E1-804B-B5C6381CE6A6} folder moved successfully. C:\Users\Jessica\AppData\Local\{452E730B-45E3-4921-83DB-13C8035AF8D3} folder moved successfully. C:\Users\Jessica\AppData\Local\{45461D64-32AF-463F-83EA-9CA7CD07339C} folder moved successfully. C:\Users\Jessica\AppData\Local\{4548E91B-C897-4BF5-B6FF-500306DC14E8} folder moved successfully. C:\Users\Jessica\AppData\Local\{456380E4-A064-4089-8929-85E9C3CCEE91} folder moved successfully. C:\Users\Jessica\AppData\Local\{459F40B8-77E7-43D7-9FB5-A202D380BFAC} folder moved successfully. C:\Users\Jessica\AppData\Local\{45CB9B7F-4E01-442F-876C-4E9F6D891443} folder moved successfully. C:\Users\Jessica\AppData\Local\{46041A5F-9AFB-40B3-8ACC-668BB0CDC644} folder moved successfully. C:\Users\Jessica\AppData\Local\{46EB4629-7B2B-4BE1-A8DA-55954A5A758F} folder moved successfully. C:\Users\Jessica\AppData\Local\{4746F783-F022-4C4E-B4CB-9EC70D679962} folder moved successfully. C:\Users\Jessica\AppData\Local\{47882404-0DC2-4AE6-B91E-48A5864BACDE} folder moved successfully. C:\Users\Jessica\AppData\Local\{47C49E7A-B16E-4BF2-B692-94CA6EE76058} folder moved successfully. C:\Users\Jessica\AppData\Local\{47C5B498-F37F-4259-98B5-5FFA18B49B35} folder moved successfully. C:\Users\Jessica\AppData\Local\{49208BC9-2ACE-4856-BDDE-3236875C4B81} folder moved successfully. C:\Users\Jessica\AppData\Local\{492B83D7-BB6D-4FB4-826A-8B8BE78F655B} folder moved successfully. C:\Users\Jessica\AppData\Local\{4986A511-C6DB-43BF-BD3E-E87206A8B935} folder moved successfully. C:\Users\Jessica\AppData\Local\{4994A846-14FD-4481-8255-38B55916291F} folder moved successfully. C:\Users\Jessica\AppData\Local\{49BD4137-54AC-4ADC-88A7-B1C60F61A0EB} folder moved successfully. C:\Users\Jessica\AppData\Local\{49F67402-466A-4FD7-B165-BEAECFF2F396} folder moved successfully. C:\Users\Jessica\AppData\Local\{4A23389F-BEB4-4FC5-8643-D78C8DAF7879} folder moved successfully. C:\Users\Jessica\AppData\Local\{4A702714-BAE6-4359-92C3-2B5529B7D0E6} folder moved successfully. C:\Users\Jessica\AppData\Local\{4A9649FD-BA7D-401C-88D6-ECCC1D12EC2E} folder moved successfully. C:\Users\Jessica\AppData\Local\{4AA9D8D9-61CD-498A-B7EB-888320D8F8E4} folder moved successfully. C:\Users\Jessica\AppData\Local\{4B1780B8-D65F-4368-89BC-14BB3CEEBF4D} folder moved successfully. C:\Users\Jessica\AppData\Local\{4B1A5C24-3873-40D8-89CA-56FF0888C72A} folder moved successfully. C:\Users\Jessica\AppData\Local\{4B5F1889-9EB8-4014-BE26-C74C10E25A6A} folder moved successfully. C:\Users\Jessica\AppData\Local\{4BB162BD-D3DA-498C-9791-BA9121EF64F8} folder moved successfully. C:\Users\Jessica\AppData\Local\{4BEEB6F6-E88F-4476-8563-C0524CE149F2} folder moved successfully. C:\Users\Jessica\AppData\Local\{4CC4D92B-F4B5-407F-8B30-3A5AFFF828FE} folder moved successfully. C:\Users\Jessica\AppData\Local\{4CD715E1-838F-4896-9AC7-6CA94E85B0D4} folder moved successfully. C:\Users\Jessica\AppData\Local\{4CF540B9-6C36-49E9-9E81-D2A79B4C7C5C} folder moved successfully. C:\Users\Jessica\AppData\Local\{4D6F02C6-EF4C-4459-BBFA-47CC9A99BAFE} folder moved successfully. C:\Users\Jessica\AppData\Local\{4D7D67F3-F215-439F-92CB-4930F48D8410} folder moved successfully. C:\Users\Jessica\AppData\Local\{4DD0C42B-D4CD-4945-88D0-27227FECDDB2} folder moved successfully. C:\Users\Jessica\AppData\Local\{4E4C821F-C25E-4283-95EB-1B50994D89A7} folder moved successfully. C:\Users\Jessica\AppData\Local\{4E57E185-B5AB-413C-BF42-661DA6620FC4} folder moved successfully. C:\Users\Jessica\AppData\Local\{4EC0B071-5EA3-4AAD-AF05-7C0AF035F610} folder moved successfully. C:\Users\Jessica\AppData\Local\{4F71BF89-6FC1-4A5E-BCBB-B6009E59C105} folder moved successfully. C:\Users\Jessica\AppData\Local\{505AA8CA-3C33-4023-AEA0-0E2D52C0FC7E} folder moved successfully. C:\Users\Jessica\AppData\Local\{50D3B75D-7E87-4350-841C-D82249E2E0B0} folder moved successfully. C:\Users\Jessica\AppData\Local\{516734D1-974C-4365-BFE9-36553E682C84} folder moved successfully. C:\Users\Jessica\AppData\Local\{517BDEBE-207A-4C0E-ADB7-5BDB2D5A8FF0} folder moved successfully. C:\Users\Jessica\AppData\Local\{519B16AF-4AD0-475D-B4C2-EA9952362545} folder moved successfully. C:\Users\Jessica\AppData\Local\{51AB3339-65FF-4974-8CF4-9A8F28CDD700} folder moved successfully. C:\Users\Jessica\AppData\Local\{51E48893-B66C-444E-BCDD-5165DB5C3798} folder moved successfully. C:\Users\Jessica\AppData\Local\{5224D795-11D1-4D88-9E86-C3CA36E4EED4} folder moved successfully. C:\Users\Jessica\AppData\Local\{532F819A-3B1B-4099-8048-94DA5C891708} folder moved successfully. C:\Users\Jessica\AppData\Local\{5331FB7E-A83F-429C-928E-00497652A7EC} folder moved successfully. C:\Users\Jessica\AppData\Local\{53D0CCFC-E425-4120-A019-9763D0586FC5} folder moved successfully. C:\Users\Jessica\AppData\Local\{54014497-8E1A-45B9-9E7B-ED2AEDC66DEA} folder moved successfully. C:\Users\Jessica\AppData\Local\{5432AC73-12FA-47E2-B3E1-714C0644BAAB} folder moved successfully. C:\Users\Jessica\AppData\Local\{54389FC3-1FE4-4B27-BD06-0F55C8376B2A} folder moved successfully. C:\Users\Jessica\AppData\Local\{54EDA22E-B037-4384-A353-61963DF7DEDC} folder moved successfully. C:\Users\Jessica\AppData\Local\{553316CB-F8F6-4AFC-804E-D23D9DEE2D25} folder moved successfully. C:\Users\Jessica\AppData\Local\{55544F86-1E1A-4FFE-80DD-BA4F2525664E} folder moved successfully. C:\Users\Jessica\AppData\Local\{55D12FEA-0A6A-45C7-9485-5D126ED09941} folder moved successfully. C:\Users\Jessica\AppData\Local\{563BD431-DBE2-4E7B-B16B-7D9890DB1A2C} folder moved successfully. C:\Users\Jessica\AppData\Local\{569F22FC-07FB-4A63-90C6-F5F769B4FF99} folder moved successfully. C:\Users\Jessica\AppData\Local\{56ED7621-1E4F-4DFD-9FE5-5342AB2606F0} folder moved successfully. C:\Users\Jessica\AppData\Local\{57516CC4-AC78-40C2-B613-CFC222B6A3F2} folder moved successfully. C:\Users\Jessica\AppData\Local\{5761F943-9255-4D8B-AE72-62315D058C18} folder moved successfully. C:\Users\Jessica\AppData\Local\{578CF22F-52A2-4998-BC84-14129D5ED8AD} folder moved successfully. C:\Users\Jessica\AppData\Local\{57E3A498-6924-4D71-BD25-3F8B598602C5} folder moved successfully. C:\Users\Jessica\AppData\Local\{5852F680-4F0E-496B-908F-43A5E28966B4} folder moved successfully. C:\Users\Jessica\AppData\Local\{597A4F41-2998-429C-816E-538CA099FC1F} folder moved successfully. C:\Users\Jessica\AppData\Local\{59915E60-EB0A-4D79-BAA4-250FDE57F662} folder moved successfully. C:\Users\Jessica\AppData\Local\{59FDC1BA-4278-4A00-BF7B-28466022C764} folder moved successfully. C:\Users\Jessica\AppData\Local\{5A1039EC-22CC-47EA-8CA6-956DE4E44206} folder moved successfully. C:\Users\Jessica\AppData\Local\{5A6341DC-B7E8-4B6F-BF3A-EF89A4C29EE0} folder moved successfully. C:\Users\Jessica\AppData\Local\{5ADACAE9-740C-4482-940B-E2C522188BF0} folder moved successfully. C:\Users\Jessica\AppData\Local\{5B41A661-4861-4807-B7E8-ACC9B99CC2A7} folder moved successfully. C:\Users\Jessica\AppData\Local\{5C39D6B8-FDB1-4011-A4D2-BD4E92B6E97E} folder moved successfully. C:\Users\Jessica\AppData\Local\{5C6497DE-7950-44E7-A3C6-783DDAB353E4} folder moved successfully. C:\Users\Jessica\AppData\Local\{5C69AB50-D39B-4B51-92B0-9B6B1ED06829} folder moved successfully. C:\Users\Jessica\AppData\Local\{5CD71B7F-ABD6-420E-8CA6-10C7C786F781} folder moved successfully. C:\Users\Jessica\AppData\Local\{5CE903CA-9BC1-448A-88D5-5888E71BEF3B} folder moved successfully. C:\Users\Jessica\AppData\Local\{5D104993-72BF-41D0-8F28-E3C4A4033361} folder moved successfully. C:\Users\Jessica\AppData\Local\{5D4973BB-E78C-44E8-93F1-B1BF6D7716E5} folder moved successfully. C:\Users\Jessica\AppData\Local\{5D53725F-20B9-43A6-BC59-F21AA9E0E92F} folder moved successfully. C:\Users\Jessica\AppData\Local\{5E8AEA18-0EAE-493A-8D84-B82258E0107D} folder moved successfully. C:\Users\Jessica\AppData\Local\{5EF3F6B5-4416-4FFF-AD79-9BD9C02BE628} folder moved successfully. C:\Users\Jessica\AppData\Local\{5F65DD3C-C297-482A-A144-12E56BDD33FE} folder moved successfully. C:\Users\Jessica\AppData\Local\{5F83D952-BC83-482C-BEE9-6CE928DB4108} folder moved successfully. C:\Users\Jessica\AppData\Local\{5FF3693D-1F48-4B28-B9A0-EF9955037423} folder moved successfully. C:\Users\Jessica\AppData\Local\{6048D9C2-9D4E-4ACF-BBF4-402BBA086239} folder moved successfully. C:\Users\Jessica\AppData\Local\{60B277BB-8ACC-4C93-8C47-733D571E319B} folder moved successfully. C:\Users\Jessica\AppData\Local\{60D415D7-318C-4A6D-A6B5-68F726D35119} folder moved successfully. C:\Users\Jessica\AppData\Local\{60E1278C-3222-4E08-BFB3-9D93EB6C61B4} folder moved successfully. C:\Users\Jessica\AppData\Local\{61A47552-1C13-40D9-AC5C-41C4938E12E4} folder moved successfully. C:\Users\Jessica\AppData\Local\{61B600FC-C2D9-4587-A585-690BFF7DD670} folder moved successfully. C:\Users\Jessica\AppData\Local\{61D12D62-B57E-4DF1-AF98-7033C150D1D2} folder moved successfully. C:\Users\Jessica\AppData\Local\{61E52B58-4599-4701-B2A1-8D877AD1DDA2} folder moved successfully. C:\Users\Jessica\AppData\Local\{61EB7A10-F5C7-47DE-9752-C58228B228A7} folder moved successfully. C:\Users\Jessica\AppData\Local\{61F45706-634D-410E-80BB-66D4850DB06A} folder moved successfully. C:\Users\Jessica\AppData\Local\{624A900F-D36B-4AF0-B029-3AE4241514B7} folder moved successfully. C:\Users\Jessica\AppData\Local\{63201B70-E73A-477B-9EBB-6D6E0E991806} folder moved successfully. C:\Users\Jessica\AppData\Local\{635FCDE3-1522-4159-9C07-5996E7AF6D24} folder moved successfully. C:\Users\Jessica\AppData\Local\{63989DEF-07E0-4DF5-94AD-F2F79E468C06} folder moved successfully. C:\Users\Jessica\AppData\Local\{63E4AC6D-A9E0-4331-87E0-D903F08D8F41} folder moved successfully. C:\Users\Jessica\AppData\Local\{63ED8BB5-57C8-42D3-93F6-C5D1238492B1} folder moved successfully. C:\Users\Jessica\AppData\Local\{649C72C7-A3FC-4000-B4E0-CECD0B404896} folder moved successfully. C:\Users\Jessica\AppData\Local\{64A93ACB-0D76-4B99-801E-41D84C118FDB} folder moved successfully. C:\Users\Jessica\AppData\Local\{64F47268-4A3B-4EA5-8ABA-A36D11E0FC0D} folder moved successfully. C:\Users\Jessica\AppData\Local\{65147B94-B0F9-470E-98A4-5DC0A3542255} folder moved successfully. C:\Users\Jessica\AppData\Local\{6540A19D-050B-4301-91EA-9F928E08A6B9} folder moved successfully. C:\Users\Jessica\AppData\Local\{658EE5A6-A8DF-4946-97EF-AE2AAFD54AD9} folder moved successfully. C:\Users\Jessica\AppData\Local\{65E9B510-F473-48E5-BF99-B16E79BA4B63} folder moved successfully. C:\Users\Jessica\AppData\Local\{65FC568D-FEE3-4995-88F4-F1FC2BE7EC65} folder moved successfully. C:\Users\Jessica\AppData\Local\{6606E8D4-5E41-4984-95EE-E50E63E032E3} folder moved successfully. C:\Users\Jessica\AppData\Local\{668BDF0B-3931-41EF-8C06-35F49C68A988} folder moved successfully. C:\Users\Jessica\AppData\Local\{66C60D59-5A60-488B-9CD5-B122AA482C15} folder moved successfully. C:\Users\Jessica\AppData\Local\{67101A5F-3739-4299-9602-01EB3D4A024F} folder moved successfully. C:\Users\Jessica\AppData\Local\{67A80CEE-CB6F-4DA5-9A1C-4BFEB745BB20} folder moved successfully. C:\Users\Jessica\AppData\Local\{67CCAF3F-0573-4168-A01B-6416504DADDD} folder moved successfully. C:\Users\Jessica\AppData\Local\{67D2AE84-5CDE-426A-9B26-57C2D6A1F10B} folder moved successfully. C:\Users\Jessica\AppData\Local\{67EFD8C2-587F-4B93-9197-47911645368A} folder moved successfully. C:\Users\Jessica\AppData\Local\{680D889E-58E4-4AE9-948C-56E70BE552F4} folder moved successfully. C:\Users\Jessica\AppData\Local\{682EBA98-220E-4355-8ADB-51E3607DB2F9} folder moved successfully. C:\Users\Jessica\AppData\Local\{68493D9C-E493-41E7-8B2F-690F26FB66CA} folder moved successfully. C:\Users\Jessica\AppData\Local\{6879047B-1DD2-4D30-9085-2B6E1DD3D2F3} folder moved successfully. C:\Users\Jessica\AppData\Local\{68D1D657-62BC-48FC-85B1-C619E3A3C69E} folder moved successfully. C:\Users\Jessica\AppData\Local\{68DC56E4-5BDC-4BB0-9A21-110D39E9E414} folder moved successfully. C:\Users\Jessica\AppData\Local\{68E2F3CF-6E28-4D02-AB1A-A0F62B52168C} folder moved successfully. C:\Users\Jessica\AppData\Local\{68EBD40E-7245-4056-89D9-F43C5208508B} folder moved successfully. C:\Users\Jessica\AppData\Local\{68F6C594-8A5E-4E04-8259-EADF9D313A47} folder moved successfully. C:\Users\Jessica\AppData\Local\{698F85CC-5D9C-4C75-A7AA-DA9A9CE69ED5} folder moved successfully. C:\Users\Jessica\AppData\Local\{6A76ABE6-EE6C-4806-8DD8-330E6E3E288F} folder moved successfully. C:\Users\Jessica\AppData\Local\{6ACF21EA-756D-416D-AE9C-2181D754CE47} folder moved successfully. C:\Users\Jessica\AppData\Local\{6B0D37F6-CD0C-48DA-9E30-FEC4E09CCACA} folder moved successfully. C:\Users\Jessica\AppData\Local\{6B4AF7D4-EE89-4EA9-9DC6-66AFFD8AD139} folder moved successfully. C:\Users\Jessica\AppData\Local\{6B5C2747-48CB-4B1E-AFF4-1DBAFE28AD7B} folder moved successfully. C:\Users\Jessica\AppData\Local\{6B7E87F9-C37B-4147-BE8A-0080EF679226} folder moved successfully. C:\Users\Jessica\AppData\Local\{6BCE5F95-A09E-4718-96F8-91EA0B320928} folder moved successfully. C:\Users\Jessica\AppData\Local\{6C6CEAFB-E5CC-485E-9AA6-24029DE7FEF5} folder moved successfully. C:\Users\Jessica\AppData\Local\{6CA08C14-37F3-4C6F-94F6-84A0DDFBBE6A} folder moved successfully. C:\Users\Jessica\AppData\Local\{6CAB1761-FCD7-48F9-9BAA-3B9992F31E79} folder moved successfully. C:\Users\Jessica\AppData\Local\{6DE3A38E-C3FA-4709-AF3E-3B115F6AC210} folder moved successfully. C:\Users\Jessica\AppData\Local\{6EB40B84-D1A8-4EA3-888B-93E61F9E479D} folder moved successfully. C:\Users\Jessica\AppData\Local\{6F8ABFE4-FD4C-427E-84DA-18E9E59877D0} folder moved successfully. C:\Users\Jessica\AppData\Local\{6F9E0743-A993-4F26-AC76-4497787CD0E1} folder moved successfully. C:\Users\Jessica\AppData\Local\{702A9AF9-A4F5-4C6D-8B25-168834D96507} moved successfully. C:\Users\Jessica\AppData\Local\{70B662F5-3751-41F6-850E-014F18C7D2EB} folder moved successfully. C:\Users\Jessica\AppData\Local\{710E4A36-A4F3-45BF-A30C-57B93FA75566} folder moved successfully. C:\Users\Jessica\AppData\Local\{7123D08A-009C-4CA2-9B16-845FAC2CF86F} folder moved successfully. C:\Users\Jessica\AppData\Local\{7161D168-5C69-41C9-8B15-274A54DAA817} folder moved successfully. C:\Users\Jessica\AppData\Local\{72020434-03B6-4A3D-ACA0-EE323E8C0545} folder moved successfully. C:\Users\Jessica\AppData\Local\{722591B0-D269-44FB-8712-83AD6138F1DE} folder moved successfully. C:\Users\Jessica\AppData\Local\{723B0720-E321-4FBF-B198-9BA9AB6BADE5} folder moved successfully. C:\Users\Jessica\AppData\Local\{723F44D2-5944-45B4-A4CE-A32890EF420E} folder moved successfully. C:\Users\Jessica\AppData\Local\{7257ADBD-C1E9-48D9-8388-534CB96CE6D2} folder moved successfully. C:\Users\Jessica\AppData\Local\{728C8E73-52E6-403D-8E13-EF073F27E549} folder moved successfully. C:\Users\Jessica\AppData\Local\{72914FAD-6472-4907-A9CF-5AC963612EC5} folder moved successfully. C:\Users\Jessica\AppData\Local\{72A3AB39-AD0E-4616-9B56-C0A6704968C9} folder moved successfully. C:\Users\Jessica\AppData\Local\{72B903DF-C7BD-49C6-8A54-20EF5C41EFA4} folder moved successfully. C:\Users\Jessica\AppData\Local\{730F930F-A239-4E83-A50F-C3E3C4F9A617} folder moved successfully. C:\Users\Jessica\AppData\Local\{73555058-4166-426F-ADFF-350D7EC01B7A} folder moved successfully. C:\Users\Jessica\AppData\Local\{737206B5-93D7-40CD-B39E-42AF42656208} folder moved successfully. C:\Users\Jessica\AppData\Local\{73D93840-7DE3-416E-BDFC-456BA11CAFAB} folder moved successfully. C:\Users\Jessica\AppData\Local\{73ED6F9E-2C16-4D5C-A69D-6E1E269D0AE3} folder moved successfully. C:\Users\Jessica\AppData\Local\{7406C4FB-48BA-4415-9BBF-C7D8008D543E} folder moved successfully. C:\Users\Jessica\AppData\Local\{749211D7-50A8-4AA9-BF75-E246188BD35B} folder moved successfully. C:\Users\Jessica\AppData\Local\{749A7AF1-33A2-46B2-B1C5-B5EDA9A6B02B} folder moved successfully. C:\Users\Jessica\AppData\Local\{74A6D195-477B-4C54-81E3-9139424DE19A} folder moved successfully. C:\Users\Jessica\AppData\Local\{75273D18-A6AF-4B0E-AA63-993F7ED5C0D3} folder moved successfully. C:\Users\Jessica\AppData\Local\{7530E441-D7F7-43CB-A6C3-00D8791F28DC} folder moved successfully. C:\Users\Jessica\AppData\Local\{754A16DB-6D3B-4F69-8864-CC435DC5EFFB} folder moved successfully. C:\Users\Jessica\AppData\Local\{75F8BE8C-19B0-4F72-A95B-7D31A222CCA7} folder moved successfully. C:\Users\Jessica\AppData\Local\{75FA0694-E9AB-42F7-97E2-29932884D0AC} folder moved successfully. C:\Users\Jessica\AppData\Local\{76D6533E-B875-4D97-8BCC-3EF09EED1CBA} folder moved successfully. C:\Users\Jessica\AppData\Local\{76F6DBB8-E2D9-4FFB-8536-B6FB51DE9C6B} folder moved successfully. C:\Users\Jessica\AppData\Local\{7712174A-67F4-436B-951C-A4F130323D40} folder moved successfully. C:\Users\Jessica\AppData\Local\{77D5F337-E85D-4572-BE7C-9ED05D2A150A} folder moved successfully. C:\Users\Jessica\AppData\Local\{786D377B-3532-4DC5-B66A-8D79D933CF3F} folder moved successfully. C:\Users\Jessica\AppData\Local\{788BAEF3-A5F7-4E06-A81F-FDE498880661} folder moved successfully. C:\Users\Jessica\AppData\Local\{789DE412-D658-4156-818D-2E60F4DC1EE6} folder moved successfully. C:\Users\Jessica\AppData\Local\{793634BA-2498-4A4B-B824-9C76376FFF17} folder moved successfully. C:\Users\Jessica\AppData\Local\{798D0AC3-D36F-45E8-A924-67D53ED2BC53} folder moved successfully. C:\Users\Jessica\AppData\Local\{79E371E1-7FF0-415D-BBD2-F2E5570CC439} folder moved successfully. C:\Users\Jessica\AppData\Local\{7A078DBB-206A-4961-A44C-AD7EAF5A1F86} folder moved successfully. C:\Users\Jessica\AppData\Local\{7A4E0219-1F86-4D26-BEA4-4F0754397C3F} folder moved successfully. C:\Users\Jessica\AppData\Local\{7BC66D42-59B3-488D-A5E2-FDC7E06DAC8E} folder moved successfully. C:\Users\Jessica\AppData\Local\{7BDDB213-61D0-4017-9FFC-D97E27FFB4FD} folder moved successfully. C:\Users\Jessica\AppData\Local\{7CA7AE69-BFCE-4576-929C-A10060D5D11B} folder moved successfully. C:\Users\Jessica\AppData\Local\{7CB7087F-9B34-4A87-826B-53254B4C90F8} folder moved successfully. C:\Users\Jessica\AppData\Local\{7CD58F3E-6B5C-4CD7-A561-2D1147C16F44} folder moved successfully. C:\Users\Jessica\AppData\Local\{7DF84136-9EBE-4557-B7E4-9606F4DF6AF9} folder moved successfully. C:\Users\Jessica\AppData\Local\{7E011DDA-B84B-4E2E-92E1-FE5AC211BAEE} folder moved successfully. C:\Users\Jessica\AppData\Local\{7E2E1758-20BC-42DA-8798-832CAC25E98B} folder moved successfully. C:\Users\Jessica\AppData\Local\{7E845A2F-E632-42FB-97E0-48B46196C0AF} folder moved successfully. C:\Users\Jessica\AppData\Local\{7EB4D402-386D-42A9-801A-4F6C2A0F5085} folder moved successfully. C:\Users\Jessica\AppData\Local\{7EFB4370-D52C-4276-83C0-47A3F6085023} folder moved successfully. C:\Users\Jessica\AppData\Local\{7F0B8290-56C7-4984-965D-EE96223A4922} folder moved successfully. C:\Users\Jessica\AppData\Local\{7F46550D-BC3C-4BE2-B37F-4185064043EC} folder moved successfully. C:\Users\Jessica\AppData\Local\{7F64547B-61E4-4C4D-BBF8-55896F6DC46C} folder moved successfully. C:\Users\Jessica\AppData\Local\{7F7BD1D0-43C6-49CA-895C-07DE8C8A0730} folder moved successfully. C:\Users\Jessica\AppData\Local\{7F8074C5-CD32-4F9B-9DE1-1BE3564E6A21} folder moved successfully. C:\Users\Jessica\AppData\Local\{7F822354-578C-4FD8-B80F-B4238BAA22FF} folder moved successfully. C:\Users\Jessica\AppData\Local\{7F86E4A3-A879-48D6-A8B9-FB10BC72131F} folder moved successfully. C:\Users\Jessica\AppData\Local\{7F87CA5E-CFAC-4B73-9315-56463FC6213A} folder moved successfully. C:\Users\Jessica\AppData\Local\{804A1DC4-7FE9-4735-ADFE-FF7A4AEC4DB3} folder moved successfully. C:\Users\Jessica\AppData\Local\{80645D87-6904-4BD3-A715-CFC829329E3F} folder moved successfully. C:\Users\Jessica\AppData\Local\{80BF7CAC-0CED-4F4B-AA55-C02B7767F2EE} folder moved successfully. C:\Users\Jessica\AppData\Local\{80EF202A-D983-427B-9CE8-4DB460D83DF5} folder moved successfully. C:\Users\Jessica\AppData\Local\{811988BF-3158-4690-B1DF-5F28BE71D8AD} folder moved successfully. C:\Users\Jessica\AppData\Local\{813E73D7-3ADF-4EEB-B4DC-B3A45F665D5C} folder moved successfully. C:\Users\Jessica\AppData\Local\{81F078C0-B547-4AB4-910D-36C701FBA3A3} folder moved successfully. C:\Users\Jessica\AppData\Local\{82049F9E-BCB7-49B3-89E5-58D96436419E} folder moved successfully. C:\Users\Jessica\AppData\Local\{82302601-7EB5-4481-B7F1-63A8C30DDE57} folder moved successfully. C:\Users\Jessica\AppData\Local\{835EA60B-5526-48AB-AAD5-F08C76A50010} folder moved successfully. C:\Users\Jessica\AppData\Local\{836578FA-A0D8-4D57-B4FD-723AAD66115B} folder moved successfully. C:\Users\Jessica\AppData\Local\{83A5001A-7EAB-485E-BD1D-8F46736D59A2} folder moved successfully. C:\Users\Jessica\AppData\Local\{83BF3D95-9316-4BAB-8045-B2C7A167DB8D} folder moved successfully. C:\Users\Jessica\AppData\Local\{84990245-744B-4FED-A6A0-C3DFC2B16244} folder moved successfully. C:\Users\Jessica\AppData\Local\{8540D00D-54D5-461E-8103-BC2349737BAE} folder moved successfully. C:\Users\Jessica\AppData\Local\{8569488C-4BA5-48F2-9E93-D803EAA76455} folder moved successfully. C:\Users\Jessica\AppData\Local\{858A2FB7-5905-40AC-9332-4CCBB654972A} folder moved successfully. C:\Users\Jessica\AppData\Local\{859668BE-005F-493E-8330-F305B39F4A9B} folder moved successfully. C:\Users\Jessica\AppData\Local\{85D7FA91-AD00-46AB-B27B-6E463A28679D} folder moved successfully. C:\Users\Jessica\AppData\Local\{85E94FF8-DB1D-4D92-894A-C4C7848AD266} folder moved successfully. C:\Users\Jessica\AppData\Local\{861CDE78-42D9-4462-924B-9FF211E3F0FD} folder moved successfully. C:\Users\Jessica\AppData\Local\{865F013A-5EBC-46B0-87D3-0F34310E675E} moved successfully. C:\Users\Jessica\AppData\Local\{86926599-9D6B-4B0A-BE3B-1E1C30FD8EC1} folder moved successfully. C:\Users\Jessica\AppData\Local\{86ABDAF8-5E85-41B2-A5F1-B30F8E470FE2} folder moved successfully. C:\Users\Jessica\AppData\Local\{86D03F61-D034-4431-BC9D-995F24C35F1D} folder moved successfully. C:\Users\Jessica\AppData\Local\{871A5C9D-9685-4FC1-8F55-885A95D7C5FE} folder moved successfully. C:\Users\Jessica\AppData\Local\{872E4BC7-1FD3-4005-944D-6C1E1AEB5E6C} folder moved successfully. C:\Users\Jessica\AppData\Local\{873C0110-C8BE-4EAB-A334-F5BF54523844} folder moved successfully. C:\Users\Jessica\AppData\Local\{87C92C9B-0767-404E-A841-504DF1243C48} folder moved successfully. C:\Users\Jessica\AppData\Local\{880DB518-4A98-401A-8DF7-8025225B69C0} folder moved successfully. C:\Users\Jessica\AppData\Local\{882D99E0-947F-40DA-897B-78258EF34982} folder moved successfully. C:\Users\Jessica\AppData\Local\{885B71C7-C2DA-412A-BA72-E1B2458DF24F} folder moved successfully. C:\Users\Jessica\AppData\Local\{8928EF08-0D73-4051-813E-28527319D981} folder moved successfully. C:\Users\Jessica\AppData\Local\{893D9DCB-6B93-4658-8381-3C2D26637BC9} folder moved successfully. C:\Users\Jessica\AppData\Local\{894B70E1-3C55-4249-A02C-06806E54EFB4} folder moved successfully. C:\Users\Jessica\AppData\Local\{8969EBBC-4FC0-4622-874A-0E8F56FB6603} moved successfully. C:\Users\Jessica\AppData\Local\{896E8E01-4528-4E87-BC8A-E7C88CD4A2D8} folder moved successfully. C:\Users\Jessica\AppData\Local\{897D1C0D-7C34-4737-8768-173AEA0F9EF3} folder moved successfully. C:\Users\Jessica\AppData\Local\{8A00D233-687F-4F6F-BCD8-8D7079E24BBB} folder moved successfully. C:\Users\Jessica\AppData\Local\{8A0DA2BA-EDDE-4915-9CB0-22E2E441E1E3} folder moved successfully. C:\Users\Jessica\AppData\Local\{8A34854C-463C-493D-BA8A-7D570C47748F} folder moved successfully. C:\Users\Jessica\AppData\Local\{8A40A9A0-1717-47F7-8079-95BDDF8C2DF0} folder moved successfully. C:\Users\Jessica\AppData\Local\{8A5F6B46-4F38-424D-B957-3A41FBDD8FA0} moved successfully. C:\Users\Jessica\AppData\Local\{8A8D92D3-17D4-4D5A-98BE-67D7206308D7} folder moved successfully. C:\Users\Jessica\AppData\Local\{8ABFEBFE-F140-4EBA-BB89-0775F661B4FE} folder moved successfully. C:\Users\Jessica\AppData\Local\{8AD24C20-FC70-42E4-BF6E-A9C4C1F22ABA} moved successfully. C:\Users\Jessica\AppData\Local\{8B129216-EE8D-40A6-ACB8-0FF2FD214093} folder moved successfully. C:\Users\Jessica\AppData\Local\{8C44225F-16B1-48B3-AA2B-33E5EF2E0941} folder moved successfully. C:\Users\Jessica\AppData\Local\{8D117661-047C-4AFB-B561-8B5AD1AF6C06} folder moved successfully. C:\Users\Jessica\AppData\Local\{8D2C4EB5-5529-4043-BFD9-2380B1E3D3DC} folder moved successfully. C:\Users\Jessica\AppData\Local\{8D4DB837-75F7-482B-92F6-33DA508C6D8B} folder moved successfully. C:\Users\Jessica\AppData\Local\{8DEBC81F-37B0-4B51-9CF4-C2B59F3F095E} folder moved successfully. C:\Users\Jessica\AppData\Local\{8E15CBFF-3414-4AF3-88B1-271CBC4EE039} folder moved successfully. C:\Users\Jessica\AppData\Local\{8E227E37-0800-461B-A78D-30F53FB7D9D0} folder moved successfully. C:\Users\Jessica\AppData\Local\{8E839E8A-7319-4AEF-AAAA-9C56074380B5} folder moved successfully. C:\Users\Jessica\AppData\Local\{8EE013A3-723C-4663-B927-C4572A3DF08C} folder moved successfully. C:\Users\Jessica\AppData\Local\{8F34DA1F-1BE6-4396-8426-3AD0480EFE15} folder moved successfully. C:\Users\Jessica\AppData\Local\{8FDE5742-BFD9-43B2-B3A7-B868651CDA65} folder moved successfully. C:\Users\Jessica\AppData\Local\{90445161-394C-447B-B0FC-3BF69841F00D} folder moved successfully. C:\Users\Jessica\AppData\Local\{905CA9DB-7A32-4C71-9510-61469F05CF83} folder moved successfully. C:\Users\Jessica\AppData\Local\{90A3D9AC-3AF0-4485-AC12-1CF9CEFEF2E4} folder moved successfully. C:\Users\Jessica\AppData\Local\{90DA0B3D-71C6-498E-AADB-95859F2A28BE} folder moved successfully. C:\Users\Jessica\AppData\Local\{91027DDA-2D7D-493C-9A83-85063BE9F8FB} folder moved successfully. C:\Users\Jessica\AppData\Local\{91847334-1A04-45B1-B23B-7D0EC6696C0B} folder moved successfully. C:\Users\Jessica\AppData\Local\{922F4CAB-A767-4E25-89CB-0C9DA546CACE} folder moved successfully. C:\Users\Jessica\AppData\Local\{9236CB66-FD1D-4308-8F76-5CA80826C051} folder moved successfully. C:\Users\Jessica\AppData\Local\{92399373-57C0-461C-A04C-230BD3B67DC0} moved successfully. C:\Users\Jessica\AppData\Local\{923EEC6B-DCE8-483F-A640-83E035E2AACD} folder moved successfully. C:\Users\Jessica\AppData\Local\{9268ED81-4194-4E1F-8C45-747DC9F8B3A8} folder moved successfully. C:\Users\Jessica\AppData\Local\{927ECA3F-0D12-4F33-83D1-D0A1AD45BFB5} folder moved successfully. C:\Users\Jessica\AppData\Local\{92B9A32E-93B7-4820-ADF0-89BCE7FCA1BC} folder moved successfully. C:\Users\Jessica\AppData\Local\{92E73ECA-C0B3-4F07-8B9C-BC498B47283B} folder moved successfully. C:\Users\Jessica\AppData\Local\{93A23AC9-07F7-4851-B501-7A8BF3EF6CC2} folder moved successfully. C:\Users\Jessica\AppData\Local\{93DC207F-6D44-4514-86AF-DBD2DF0F8ABF} folder moved successfully. C:\Users\Jessica\AppData\Local\{9456515C-AC05-4DE4-98A6-D8A3D49D1B95} folder moved successfully. C:\Users\Jessica\AppData\Local\{94C3DEE7-E3EF-42BD-BC47-685A5A2297E5} folder moved successfully. C:\Users\Jessica\AppData\Local\{950104E0-2E09-4366-8232-68B39983A3EC} folder moved successfully. C:\Users\Jessica\AppData\Local\{9575329F-3880-440C-892A-32A08C738338} folder moved successfully. C:\Users\Jessica\AppData\Local\{9595876A-ECF6-4168-9124-0E7EE4190A72} folder moved successfully. C:\Users\Jessica\AppData\Local\{95A96661-F4C7-42B2-8844-9C2BE656E106} folder moved successfully. C:\Users\Jessica\AppData\Local\{95CC5180-52FC-44F8-A38B-BFBAFA347B3D} folder moved successfully. C:\Users\Jessica\AppData\Local\{95F0152E-2303-4FD8-9150-575FDCCE877C} folder moved successfully. C:\Users\Jessica\AppData\Local\{96703EE8-8A69-4564-9BA1-48C81BCC88DE} folder moved successfully. C:\Users\Jessica\AppData\Local\{96834D0C-ED15-47CF-A64B-38EF9C7C0AFD} moved successfully. C:\Users\Jessica\AppData\Local\{96F10386-3FDD-4DB3-8603-234558354298} folder moved successfully. C:\Users\Jessica\AppData\Local\{9717759C-0DA5-44FD-973F-CDE7801221C7} folder moved successfully. C:\Users\Jessica\AppData\Local\{97BA2E84-F8F7-440E-8A2A-5AEB8932D955} folder moved successfully. C:\Users\Jessica\AppData\Local\{97FD73FE-B47B-45F1-B4D2-140BF71DE267} folder moved successfully. C:\Users\Jessica\AppData\Local\{9809A79E-6910-4F80-9F96-7DEBA9F43CEC} folder moved successfully. C:\Users\Jessica\AppData\Local\{9820564A-0B78-4628-B6E9-C7AA9A47B03B} folder moved successfully. C:\Users\Jessica\AppData\Local\{985278B0-7A0F-4673-BCB4-78B0FABEB422} folder moved successfully. C:\Users\Jessica\AppData\Local\{9855EEB9-F2D5-43E5-983D-F444FFF2F9A7} folder moved successfully. C:\Users\Jessica\AppData\Local\{98D0D858-9E28-44FD-93A3-21B04C758DB4} folder moved successfully. C:\Users\Jessica\AppData\Local\{98E2008F-5368-46D6-BB3F-C33E2041DDBF} folder moved successfully. C:\Users\Jessica\AppData\Local\{9966B4DC-B104-4CC7-9360-30A846F27368} folder moved successfully. C:\Users\Jessica\AppData\Local\{99AED1C4-6DDF-45F4-B4DF-1883048A2330} folder moved successfully. C:\Users\Jessica\AppData\Local\{99C5D507-644D-456A-B0D4-A6827B9E4FBA} folder moved successfully. C:\Users\Jessica\AppData\Local\{99E87F13-24DA-4A4F-90B4-59F10BDD4D61} folder moved successfully. C:\Users\Jessica\AppData\Local\{99FEB769-539C-4337-95C6-556902891862} folder moved successfully. C:\Users\Jessica\AppData\Local\{9A374A02-2694-417D-A8B0-01363720091D} folder moved successfully. C:\Users\Jessica\AppData\Local\{9A62F16A-26E0-42FD-B06E-8EA85FEBFC25} folder moved successfully. C:\Users\Jessica\AppData\Local\{9B2DE680-C9CB-4453-B78C-F3AF056180E9} folder moved successfully. C:\Users\Jessica\AppData\Local\{9B8BE051-B5A4-4789-9CE0-94394815C0C2} folder moved successfully. C:\Users\Jessica\AppData\Local\{9CA711EE-7965-4837-BA53-14E137388287} folder moved successfully. C:\Users\Jessica\AppData\Local\{9CADEC95-18C8-4144-9627-A408F684C251} folder moved successfully. C:\Users\Jessica\AppData\Local\{9D322FF6-CE47-49B2-B4C3-D796261D86B3} folder moved successfully. C:\Users\Jessica\AppData\Local\{9D709465-2927-4864-B172-5EE592A3EFAD} folder moved successfully. C:\Users\Jessica\AppData\Local\{9DE59395-7CFC-4720-8B68-A4AE362C6A75} folder moved successfully. C:\Users\Jessica\AppData\Local\{9DF86DEA-C16D-46BC-A821-522A9BD6B788} folder moved successfully. C:\Users\Jessica\AppData\Local\{9E0AE2D4-2723-4358-8945-E8F182984E61} folder moved successfully. C:\Users\Jessica\AppData\Local\{9E73B609-8363-4962-A79F-764E18730059} folder moved successfully. C:\Users\Jessica\AppData\Local\{9ECC61CA-12FD-4AFB-A629-5069F00F254F} folder moved successfully. C:\Users\Jessica\AppData\Local\{9EF5988E-CE9D-43C8-803B-A75FE4768FE9} folder moved successfully. C:\Users\Jessica\AppData\Local\{9F80ED05-A0DC-4552-8CFA-7276F13A4EEA} folder moved successfully. C:\Users\Jessica\AppData\Local\{9F9C8A67-A3AE-4823-B0AB-908517B7C694} folder moved successfully. C:\Users\Jessica\AppData\Local\{9FEB6A4D-69BC-4822-978D-7717AFA348E2} folder moved successfully. C:\Users\Jessica\AppData\Local\{A059DB35-2DBF-41B0-BD3E-45911715B3D6} folder moved successfully. C:\Users\Jessica\AppData\Local\{A16182E5-1047-4CE3-8B0E-43E91B4B7CF8} folder moved successfully. C:\Users\Jessica\AppData\Local\{A16221A2-37FD-446B-9AF3-006CD2F54C52} folder moved successfully. C:\Users\Jessica\AppData\Local\{A1BB9EBA-BA3C-4C50-83F4-8E197F2706AD} moved successfully. C:\Users\Jessica\AppData\Local\{A1E95545-E145-46FE-90E5-9DFF2334A6EF} folder moved successfully. C:\Users\Jessica\AppData\Local\{A212C055-5BBD-4561-B8CA-A817A597E5F1} folder moved successfully. C:\Users\Jessica\AppData\Local\{A29CB25F-21AF-4B02-8859-9DB2EDCA2D34} folder moved successfully. C:\Users\Jessica\AppData\Local\{A2CA3400-F01C-4E05-82D9-0DF96D5027BF} folder moved successfully. C:\Users\Jessica\AppData\Local\{A2E13E02-F639-4977-B093-C42A2A42C367} folder moved successfully. C:\Users\Jessica\AppData\Local\{A2E95E44-E8AE-46BB-9D59-DEE7EC2E62F3} folder moved successfully. C:\Users\Jessica\AppData\Local\{A32687E0-AADC-47BE-9F20-A6729947F4EC} folder moved successfully. C:\Users\Jessica\AppData\Local\{A35197F3-1A70-4647-8303-D9544617BCF0} folder moved successfully. C:\Users\Jessica\AppData\Local\{A37BDEE4-3DC8-4666-AB68-509A98926716} folder moved successfully. C:\Users\Jessica\AppData\Local\{A39248F9-AFA0-4F1F-A809-62237ED162AD} folder moved successfully. C:\Users\Jessica\AppData\Local\{A4AF8049-6BBB-4F13-A772-119CFE7B1F13} folder moved successfully. C:\Users\Jessica\AppData\Local\{A4B64E37-A905-4CD3-B471-6D4919D0AF92} folder moved successfully. C:\Users\Jessica\AppData\Local\{A4C602E6-DF72-42AD-912E-15EFC62F3620} folder moved successfully. C:\Users\Jessica\AppData\Local\{A5703AFA-D481-4943-9898-5B5A4615B4E0} folder moved successfully. C:\Users\Jessica\AppData\Local\{A5F6AB40-6A1C-4812-9E8D-8C10C13FBD5B} folder moved successfully. C:\Users\Jessica\AppData\Local\{A62C2046-9CA6-4484-8548-7D53D2B1173E} folder moved successfully. C:\Users\Jessica\AppData\Local\{A699E05D-CAC2-4D12-9587-D577E2BCE056} folder moved successfully. C:\Users\Jessica\AppData\Local\{A6D8B116-7B47-42A5-99AA-C61533FC6976} folder moved successfully. C:\Users\Jessica\AppData\Local\{A6E2ECEB-1349-4167-B6CC-8F6E7D2530E4} folder moved successfully. C:\Users\Jessica\AppData\Local\{A7E569BE-161F-4F6E-BF82-967690DDB844} folder moved successfully. C:\Users\Jessica\AppData\Local\{A8F627A0-0539-4D3B-92F8-54C98B1FF0C0} folder moved successfully. C:\Users\Jessica\AppData\Local\{A96B6622-34C4-4AD5-9866-DB59DCF3EB8E} folder moved successfully. C:\Users\Jessica\AppData\Local\{A9912597-812B-449E-8FFB-7249F5DD38BE} folder moved successfully. C:\Users\Jessica\AppData\Local\{A9DC74C1-1471-447F-B60A-679942DF2CB2} folder moved successfully. C:\Users\Jessica\AppData\Local\{AA1DFF3F-CFDE-4C9B-B08B-A07A9DC9986A} folder moved successfully. C:\Users\Jessica\AppData\Local\{AA4A9081-B1B7-4772-94FD-6177CFFCD93C} folder moved successfully. C:\Users\Jessica\AppData\Local\{AB63BDDD-E516-44E8-A147-BA4D198054EF} folder moved successfully. C:\Users\Jessica\AppData\Local\{ABBF8306-BB11-4758-A3AC-3A5296109A60} folder moved successfully. C:\Users\Jessica\AppData\Local\{ABE33D10-4022-4FD8-AC38-F9172CA84B59} folder moved successfully. C:\Users\Jessica\AppData\Local\{ABF615CB-613C-43DD-AFE4-3E0ECB4CE88F} folder moved successfully. C:\Users\Jessica\AppData\Local\{AC7223E0-6E3D-4ECB-A15B-EEF4FC7E07DC} folder moved successfully. C:\Users\Jessica\AppData\Local\{AC906F55-410A-43F9-A350-1643D75F7043} folder moved successfully. C:\Users\Jessica\AppData\Local\{AD851231-B829-41C6-960F-0F1448B577FD} folder moved successfully. C:\Users\Jessica\AppData\Local\{AD8A79D9-24CF-441F-8CEF-89E2D2C65608} folder moved successfully. C:\Users\Jessica\AppData\Local\{AD8AAC31-9545-451A-8244-765E5096CB12} folder moved successfully. C:\Users\Jessica\AppData\Local\{ADA527C5-2847-4362-A86E-0DCE88DA76A0} folder moved successfully. C:\Users\Jessica\AppData\Local\{ADBFA5AA-1D23-44BF-8CDD-BDF1BF911310} folder moved successfully. C:\Users\Jessica\AppData\Local\{ADE81CC5-8814-4F41-9A26-25CD01D3CEF2} folder moved successfully. C:\Users\Jessica\AppData\Local\{AF89C1B1-01C5-4182-BABD-97254FC03744} folder moved successfully. C:\Users\Jessica\AppData\Local\{AFE6A760-F77F-45B3-9B7D-58CF7D604626} folder moved successfully. C:\Users\Jessica\AppData\Local\{AFF3F3AD-5607-4616-ABE1-7057B7D62422} folder moved successfully. C:\Users\Jessica\AppData\Local\{B0353040-F3EC-445B-95BB-E78004F897D8} folder moved successfully. C:\Users\Jessica\AppData\Local\{B06C3FEB-CD63-4197-992A-6750A3C1550C} folder moved successfully. C:\Users\Jessica\AppData\Local\{B0AEA99D-C0D8-47BC-9FE6-DD0CDBFDD808} folder moved successfully. C:\Users\Jessica\AppData\Local\{B1530E70-8D85-4481-A524-17B3A936138F} folder moved successfully. C:\Users\Jessica\AppData\Local\{B16FAF2B-AED9-428B-8210-B53516A334F2} folder moved successfully. C:\Users\Jessica\AppData\Local\{B1CB6B84-2AB2-4167-851E-E3DA952CEC7A} moved successfully. C:\Users\Jessica\AppData\Local\{B1E84428-DA45-4E20-A46A-03E2436D674E} folder moved successfully. C:\Users\Jessica\AppData\Local\{B25B142B-DF4F-4D04-8992-AB11777A5032} folder moved successfully. C:\Users\Jessica\AppData\Local\{B27354CE-311D-43A7-A9EC-6354693D528F} folder moved successfully. C:\Users\Jessica\AppData\Local\{B2768E8C-CA14-4250-98DB-8C16B822D939} folder moved successfully. C:\Users\Jessica\AppData\Local\{B31F094F-EBD5-44EF-89F9-2D9C0B9C9C9D} folder moved successfully. C:\Users\Jessica\AppData\Local\{B351455D-B857-434D-B764-4EF770C1CFDB} folder moved successfully. C:\Users\Jessica\AppData\Local\{B3C472EA-70DD-4688-B879-A1194E7DDB2D} folder moved successfully. C:\Users\Jessica\AppData\Local\{B4764000-AB0D-457D-A689-06A92721688C} folder moved successfully. C:\Users\Jessica\AppData\Local\{B53FE2EB-57A7-4C1D-97CA-F8F3864B1942} folder moved successfully. C:\Users\Jessica\AppData\Local\{B6420BDC-30BD-4DE5-A0EA-EC7A1A01BAB7} folder moved successfully. C:\Users\Jessica\AppData\Local\{B6707D79-0B37-4582-8563-05C74E8E211D} folder moved successfully. C:\Users\Jessica\AppData\Local\{B6EA7907-6F59-4FAF-A565-252EB5E6081A} folder moved successfully. C:\Users\Jessica\AppData\Local\{B7711F71-4E12-4F68-9078-47EBE3BAD345} folder moved successfully. C:\Users\Jessica\AppData\Local\{B7C72431-A733-497F-83C4-07AA3A052813} folder moved successfully. C:\Users\Jessica\AppData\Local\{B7DB7540-881C-4E85-A9B6-0F1F29793D5F} folder moved successfully. C:\Users\Jessica\AppData\Local\{B7E43B78-6AD3-4BCC-A08E-18481FD40C1C} folder moved successfully. C:\Users\Jessica\AppData\Local\{B7E4E5BE-7CC4-499D-9959-C933724DB32E} folder moved successfully. C:\Users\Jessica\AppData\Local\{B848FBD2-50D1-4CA2-9FF7-8EBF38836853} folder moved successfully. C:\Users\Jessica\AppData\Local\{B8C15D12-F31F-4B92-A304-E0D69FD0D809} folder moved successfully. C:\Users\Jessica\AppData\Local\{B8C6F827-5A1E-465A-B524-5CAE41BE66CD} folder moved successfully. C:\Users\Jessica\AppData\Local\{B8F4E5DD-52AD-409E-BA41-8DEE839DFA1E} folder moved successfully. C:\Users\Jessica\AppData\Local\{B94D5404-78C1-4389-94CD-02C631A142D5} folder moved successfully. C:\Users\Jessica\AppData\Local\{B9CCE4B4-0587-4EE3-9C5A-92A6F3094850} folder moved successfully. C:\Users\Jessica\AppData\Local\{BA1545B2-48C4-457D-BA26-67A78F8F047D} folder moved successfully. C:\Users\Jessica\AppData\Local\{BA435E85-E55E-47BF-83AA-FBADDF88765A} folder moved successfully. C:\Users\Jessica\AppData\Local\{BA6FB485-449D-448A-9439-969BDC45FECB} folder moved successfully. C:\Users\Jessica\AppData\Local\{BBBDAB51-A4C0-4D67-B5C5-C81323CEA12B} folder moved successfully. C:\Users\Jessica\AppData\Local\{BBE07EA8-7EB2-49ED-A4AB-01701A16F31C} folder moved successfully. C:\Users\Jessica\AppData\Local\{BC3CBA8D-ACF7-4F1E-9013-449DAD6857B1} folder moved successfully. C:\Users\Jessica\AppData\Local\{BCC54099-BA4A-4044-97BC-29829BB12ABE} folder moved successfully. C:\Users\Jessica\AppData\Local\{BCF992A1-39AE-4139-AD73-042904762434} folder moved successfully. C:\Users\Jessica\AppData\Local\{BD21446D-C69B-4A1C-9990-B80311F5F940} folder moved successfully. C:\Users\Jessica\AppData\Local\{BD48ADC5-A7CA-4053-817D-5DB5CBE693B0} folder moved successfully. C:\Users\Jessica\AppData\Local\{BD6394F7-0664-4B7F-91F0-D56961F5B1D6} folder moved successfully. C:\Users\Jessica\AppData\Local\{BD715D5A-F893-4F76-BF5C-E4AE28BA937E} folder moved successfully. C:\Users\Jessica\AppData\Local\{BE0D8EA8-D5FF-48BD-984F-3DA9D4AAC1A3} folder moved successfully. C:\Users\Jessica\AppData\Local\{BECEC623-0710-4A12-98A2-E338C2456F2E} folder moved successfully. C:\Users\Jessica\AppData\Local\{BEE29B31-FAE6-477C-BCEC-87E68F5F3BD6} folder moved successfully. C:\Users\Jessica\AppData\Local\{BEFC1E22-6304-4555-AC92-BDB5E2692700} folder moved successfully. C:\Users\Jessica\AppData\Local\{BF2AB7D8-67E9-43D6-B37A-4F18B8DB3347} folder moved successfully. C:\Users\Jessica\AppData\Local\{BF848C40-57BF-4D58-A3BE-52BCF74F1971} folder moved successfully. C:\Users\Jessica\AppData\Local\{BFCA7831-42BE-44B3-AA6C-2FC90F43D6AD} folder moved successfully. C:\Users\Jessica\AppData\Local\{BFD91C5B-91E9-49FA-983B-272E0110DE86} folder moved successfully. C:\Users\Jessica\AppData\Local\{C0A4F3A7-1757-45DF-82FD-34B59E7E0EFE} folder moved successfully. C:\Users\Jessica\AppData\Local\{C1088C46-C20C-4C65-AB21-13D4F9CD01AA} folder moved successfully. C:\Users\Jessica\AppData\Local\{C17E0A4D-8FAA-4036-8E66-EBE94A0729E0} folder moved successfully. C:\Users\Jessica\AppData\Local\{C1D08412-A750-4D20-ACA5-49D555598941} folder moved successfully. C:\Users\Jessica\AppData\Local\{C1E01E42-6D1C-45D0-BAE3-D8F3A936A27E} folder moved successfully. C:\Users\Jessica\AppData\Local\{C2892A97-44BE-47D9-B44B-E2F6EF3A4D17} folder moved successfully. C:\Users\Jessica\AppData\Local\{C2FEE349-8294-451F-8B36-8A647F53D2F5} folder moved successfully. C:\Users\Jessica\AppData\Local\{C34FF969-1B56-4DB8-A6EC-CE8815FB7014} folder moved successfully. C:\Users\Jessica\AppData\Local\{C35F1269-D44E-4706-AF25-457DA62FC92D} moved successfully. C:\Users\Jessica\AppData\Local\{C3BDDAAA-1503-4D17-83DC-BE98DC428D31} folder moved successfully. C:\Users\Jessica\AppData\Local\{C3D4DA2C-F389-48D9-96C8-F18DF4018478} folder moved successfully. C:\Users\Jessica\AppData\Local\{C43BC3F2-A36E-4622-B062-639968743B98} folder moved successfully. C:\Users\Jessica\AppData\Local\{C455DDF1-BD75-4256-A396-59D5BD16D470} folder moved successfully. C:\Users\Jessica\AppData\Local\{C4C1370D-48B4-4DF0-B738-B4E1702DB0C7} folder moved successfully. C:\Users\Jessica\AppData\Local\{C506C2A5-658E-49C2-93F7-6CF9ED1BF7F5} folder moved successfully. C:\Users\Jessica\AppData\Local\{C524D810-B54D-4C38-8ED8-B4B420860C79} folder moved successfully. C:\Users\Jessica\AppData\Local\{C576438E-F51D-4A32-93E4-5D27EF4BC5CE} folder moved successfully. C:\Users\Jessica\AppData\Local\{C625D5AB-7B9E-4643-82B5-1E8CC942E630} folder moved successfully. C:\Users\Jessica\AppData\Local\{C6460013-492D-4EA5-8D0A-605B814387A4} folder moved successfully. C:\Users\Jessica\AppData\Local\{C660039B-0F77-41CE-8C96-2E59535B500D} folder moved successfully. C:\Users\Jessica\AppData\Local\{C679229E-BBE6-4178-A964-CDD400D43E2F} folder moved successfully. C:\Users\Jessica\AppData\Local\{C7B51F4B-4E26-4400-B2C4-E579200E3623} folder moved successfully. C:\Users\Jessica\AppData\Local\{C7DC3BB9-1F40-474B-B867-D006CC8F4451} folder moved successfully. C:\Users\Jessica\AppData\Local\{C81C5B6A-1F65-4291-8F19-AD71EEAF08FB} folder moved successfully. C:\Users\Jessica\AppData\Local\{C8836095-3864-4E02-8E6E-05839CCC7FC7} folder moved successfully. C:\Users\Jessica\AppData\Local\{C8A8EEE2-9E25-4100-9AE8-C2717BB008AE} folder moved successfully. C:\Users\Jessica\AppData\Local\{C8C4CE5C-3440-416A-A73F-F2F184289BC3} folder moved successfully. C:\Users\Jessica\AppData\Local\{C94BF3CB-017A-456C-B3FC-C352B39384F6} folder moved successfully. C:\Users\Jessica\AppData\Local\{C96BAA21-4E30-45E8-8163-99B42600F48E} folder moved successfully. C:\Users\Jessica\AppData\Local\{C97E5282-6769-4F29-896F-40E2D097FE56} folder moved successfully. C:\Users\Jessica\AppData\Local\{C9920BB9-27DA-4C83-BA3D-E4B399731E45} folder moved successfully. C:\Users\Jessica\AppData\Local\{C9FAB677-47E0-4F03-A095-015E67090DF2} folder moved successfully. C:\Users\Jessica\AppData\Local\{CA2AD0BE-11BC-4E88-B435-CEC8DB5FCEEF} folder moved successfully. C:\Users\Jessica\AppData\Local\{CA2C8860-5F2F-4381-B279-72CF2866BF11} folder moved successfully. C:\Users\Jessica\AppData\Local\{CA46F299-C569-453A-A460-AAF54CB05F83} folder moved successfully. C:\Users\Jessica\AppData\Local\{CA6EC05E-CEEA-460A-BB69-C854AFE975E2} folder moved successfully. C:\Users\Jessica\AppData\Local\{CAA2F76C-62B1-47E3-8F54-8862CAFC75F4} folder moved successfully. C:\Users\Jessica\AppData\Local\{CAD75465-687F-42DA-9747-B6182533F454} folder moved successfully. C:\Users\Jessica\AppData\Local\{CAFBCB32-5BAF-4462-88B6-AD776819E052} folder moved successfully. C:\Users\Jessica\AppData\Local\{CB23830F-5F3E-482A-B44A-A57A7D754EBA} folder moved successfully. C:\Users\Jessica\AppData\Local\{CB494E37-276C-495D-830F-24AE25894CC0} folder moved successfully. C:\Users\Jessica\AppData\Local\{CB6B8483-3081-4E66-9428-C5F501B14239} folder moved successfully. C:\Users\Jessica\AppData\Local\{CB8D3595-F44E-4139-838A-6EE9B7C3FF09} folder moved successfully. C:\Users\Jessica\AppData\Local\{CBA2CFC3-86D1-4327-AB40-449B87CDB59C} folder moved successfully. C:\Users\Jessica\AppData\Local\{CBBE14B9-8C88-4D97-B0F5-01728A2AEEB0} folder moved successfully. C:\Users\Jessica\AppData\Local\{CC03E648-8225-4216-92D8-868D424DFA06} folder moved successfully. C:\Users\Jessica\AppData\Local\{CCD11FE3-B376-48EA-9648-34F6569B6DE0} folder moved successfully. C:\Users\Jessica\AppData\Local\{CD2B0972-4F1F-48C5-8EF7-CD044BBCFCB4} folder moved successfully. C:\Users\Jessica\AppData\Local\{CD2D1FB8-6632-4E50-82CF-87D2BFDDD727} folder moved successfully. C:\Users\Jessica\AppData\Local\{CD6CF9B1-D682-4102-BE6C-A0E66536B6AF} folder moved successfully. C:\Users\Jessica\AppData\Local\{CDAECA55-4C8C-4297-9055-F03DA3CAEA23} folder moved successfully. C:\Users\Jessica\AppData\Local\{CDC0BB1A-563F-4E59-B1D3-B580D637F9CB} folder moved successfully. C:\Users\Jessica\AppData\Local\{CDE4A182-B786-4FD6-A7C6-42655E99934A} folder moved successfully. C:\Users\Jessica\AppData\Local\{CE1908AB-1475-41DE-BFB3-EB34961C3544} folder moved successfully. C:\Users\Jessica\AppData\Local\{CE191A55-270F-4730-A6A7-037472370274} folder moved successfully. C:\Users\Jessica\AppData\Local\{CE6946AB-0FBC-4A75-8819-3BA8710F1DB5} folder moved successfully. C:\Users\Jessica\AppData\Local\{CF2B2D57-E3E6-40A3-91DC-4EA00E1B345B} folder moved successfully. C:\Users\Jessica\AppData\Local\{CF950CC7-C4B8-47D9-9617-9641E4DA6C17} folder moved successfully. C:\Users\Jessica\AppData\Local\{CFCA82A7-6B2C-4B3B-B3EC-D99CA8866A3C} folder moved successfully. C:\Users\Jessica\AppData\Local\{CFDCAA7C-0932-4E4D-BCA1-9A0852BDDD2C} folder moved successfully. C:\Users\Jessica\AppData\Local\{D06BE53F-6D1A-4E2A-84C1-532F5211F6DE} folder moved successfully. C:\Users\Jessica\AppData\Local\{D1A01642-2141-42DD-9DC7-E6655B0FF72A} folder moved successfully. C:\Users\Jessica\AppData\Local\{D1C42A90-7A64-4769-8154-B586A9DAF255} folder moved successfully. C:\Users\Jessica\AppData\Local\{D1D7DC3D-D893-4DB5-9BF8-847939F84B3D} folder moved successfully. C:\Users\Jessica\AppData\Local\{D1DE2A74-C4F6-49F9-ABDD-3AF3528EF3DF} folder moved successfully. C:\Users\Jessica\AppData\Local\{D24457A7-1F91-4058-BB48-46DAF9B1FF23} folder moved successfully. C:\Users\Jessica\AppData\Local\{D3E56FBF-B222-41D3-BEEB-0BF0183D3FB9} folder moved successfully. C:\Users\Jessica\AppData\Local\{D424860A-C277-44DE-A735-5139561644A8} folder moved successfully. C:\Users\Jessica\AppData\Local\{D4A89DF3-D3BD-4010-984A-CA353CC55FF8} folder moved successfully. C:\Users\Jessica\AppData\Local\{D4DC1CF2-5E5F-4844-9CF9-41967066888A} folder moved successfully. C:\Users\Jessica\AppData\Local\{D536AAE6-824A-4642-8080-26F7F7251EF5} folder moved successfully. C:\Users\Jessica\AppData\Local\{D5942DE8-8732-465E-866C-DDF3F96EEF15} folder moved successfully. C:\Users\Jessica\AppData\Local\{D5EF467A-26DC-4701-B028-8FE5A3FD33A6} folder moved successfully. C:\Users\Jessica\AppData\Local\{D60144D3-C695-40CC-9A5A-EE3DEF88246D} folder moved successfully. C:\Users\Jessica\AppData\Local\{D610159F-6665-4240-A11E-930D8DA5A71C} folder moved successfully. C:\Users\Jessica\AppData\Local\{D621BF36-F5A1-4330-99AA-4CAE3EFD6C71} folder moved successfully. C:\Users\Jessica\AppData\Local\{D63034AD-48C8-4E61-BC96-FF5DFC8A4AAA} folder moved successfully. C:\Users\Jessica\AppData\Local\{D661D006-EC56-4293-8A9C-DFB7356D923B} folder moved successfully. C:\Users\Jessica\AppData\Local\{D6EEBFE8-0259-40BD-A3CE-BDE6B0F9AFFA} folder moved successfully. C:\Users\Jessica\AppData\Local\{D7E9B619-DA94-4B3C-8952-3A2E1FE0ED37} folder moved successfully. C:\Users\Jessica\AppData\Local\{D8047117-D66F-46D5-BF72-774FC963FB2E} folder moved successfully. C:\Users\Jessica\AppData\Local\{D809C5AE-65F6-4BC5-A5EE-DD0B17DB725B} folder moved successfully. C:\Users\Jessica\AppData\Local\{D82C3680-19D3-4038-81B2-B294A1518E52} folder moved successfully. C:\Users\Jessica\AppData\Local\{D8331E70-3CCA-4EB2-A663-2FBCEACF63BA} folder moved successfully. C:\Users\Jessica\AppData\Local\{D88E078B-3619-43E3-807F-368809F74E9D} folder moved successfully. C:\Users\Jessica\AppData\Local\{D935BC7C-F2F5-4C2A-90AA-BEDDFC7FF60B} folder moved successfully. C:\Users\Jessica\AppData\Local\{D9D6C8A3-1473-4ED5-BB0B-370D5E66EEE1} folder moved successfully. C:\Users\Jessica\AppData\Local\{DAEF4CC7-C758-4618-A464-31F9AB12B273} folder moved successfully. C:\Users\Jessica\AppData\Local\{DBB28EA4-07C5-401D-9447-973A8EBE8A3D} folder moved successfully. C:\Users\Jessica\AppData\Local\{DBBF7031-CB1E-4404-95BE-B1AC3FA0EBA7} folder moved successfully. C:\Users\Jessica\AppData\Local\{DC28D408-6594-4DC7-BD24-0B6D41F5342C} folder moved successfully. C:\Users\Jessica\AppData\Local\{DCA6F40C-80EC-4CE1-B9AE-F21DB34FDD47} folder moved successfully. C:\Users\Jessica\AppData\Local\{DCB864E0-A358-494A-B316-4E1E746A5B9C} folder moved successfully. C:\Users\Jessica\AppData\Local\{DCCBDF6C-C4AE-4ACB-96AC-178B6DA43BC0} folder moved successfully. C:\Users\Jessica\AppData\Local\{DD0F7EBE-72A6-4ADE-A807-15184E0EA894} folder moved successfully. C:\Users\Jessica\AppData\Local\{DD4445E2-02DF-4288-804B-3A647A0B7FD2} folder moved successfully. C:\Users\Jessica\AppData\Local\{DD449846-24FD-4A4D-A327-49C31CDD25CD} folder moved successfully. C:\Users\Jessica\AppData\Local\{DD4D339F-0754-4BD9-BA90-8A15D3447ACB} folder moved successfully. C:\Users\Jessica\AppData\Local\{DDCB8B9A-EFD7-48BB-B9C9-04D6DEDE7FDD} folder moved successfully. C:\Users\Jessica\AppData\Local\{DE25C26A-A440-48FD-8EBA-6C59CDCB7DED} folder moved successfully. C:\Users\Jessica\AppData\Local\{DE46F5B8-66AE-40B4-82F3-57EAD3C2C575} folder moved successfully. C:\Users\Jessica\AppData\Local\{DEDA76DC-3345-42FC-BD8A-DC64C45BF18D} folder moved successfully. C:\Users\Jessica\AppData\Local\{DF373831-0A0E-4CD9-96FF-257640AD8673} folder moved successfully. C:\Users\Jessica\AppData\Local\{DFD64505-E4CE-466B-95D4-4B6E710BEF5B} folder moved successfully. C:\Users\Jessica\AppData\Local\{DFDCC987-92E9-4049-AFD7-06967E8B5B59} folder moved successfully. C:\Users\Jessica\AppData\Local\{E02DDBE5-CE54-4C85-A096-09056E2872CB} folder moved successfully. C:\Users\Jessica\AppData\Local\{E0303DD8-61B8-4F41-B6F8-D109DC53ADC8} folder moved successfully. C:\Users\Jessica\AppData\Local\{E0390168-E85B-4C54-9DB0-9A105FC819DE} folder moved successfully. C:\Users\Jessica\AppData\Local\{E0CBA60B-DF7E-4AF1-A271-FF76A4F72B06} folder moved successfully. C:\Users\Jessica\AppData\Local\{E0CDDCA3-6D83-4CE5-85A9-C0542F100D71} folder moved successfully. C:\Users\Jessica\AppData\Local\{E11F9ED6-0744-47DE-8CBF-3AAEAAA4D3D0} folder moved successfully. C:\Users\Jessica\AppData\Local\{E194FC12-CF52-4248-AD9D-7B7C1BFE1326} folder moved successfully. C:\Users\Jessica\AppData\Local\{E1BAC750-636B-4B59-9CFB-DC396B80145F} folder moved successfully. C:\Users\Jessica\AppData\Local\{E2751593-A101-4A1E-825C-CB262F5310F6} folder moved successfully. C:\Users\Jessica\AppData\Local\{E2DB39CD-E852-468B-A3C9-A4FEDDC17325} folder moved successfully. C:\Users\Jessica\AppData\Local\{E3105DF8-D1EF-484A-92FF-BAA97887E89C} moved successfully. C:\Users\Jessica\AppData\Local\{E3A33154-D31B-4919-9748-24C1B1554ED7} folder moved successfully. C:\Users\Jessica\AppData\Local\{E3B1CB94-F3CA-4C48-897D-EE7B5136EA7D} folder moved successfully. C:\Users\Jessica\AppData\Local\{E40CC09B-86F4-4A64-9D85-AB0CCEE5EB5A} folder moved successfully. C:\Users\Jessica\AppData\Local\{E4471416-03E3-4411-850C-A29030C0702F} folder moved successfully. C:\Users\Jessica\AppData\Local\{E4799C74-9101-49D2-9689-432D611AE815} folder moved successfully. C:\Users\Jessica\AppData\Local\{E4CC125E-F4B0-4B55-8627-07D216F6BDF7} folder moved successfully. C:\Users\Jessica\AppData\Local\{E5C02418-32FC-4C72-AD51-C43F1FE07B75} folder moved successfully. C:\Users\Jessica\AppData\Local\{E6AEAAB7-1DEF-4144-A04B-E19BC9FC5F93} folder moved successfully. C:\Users\Jessica\AppData\Local\{E743F55C-B1F4-4731-BA9E-D31130FE0657} folder moved successfully. C:\Users\Jessica\AppData\Local\{E7477ED6-4F37-4652-87FC-FC5EDBA1A7DD} folder moved successfully. C:\Users\Jessica\AppData\Local\{E753AF4F-6BB0-4C84-92C5-BF5E3E285916} folder moved successfully. C:\Users\Jessica\AppData\Local\{E76A2127-D970-4CC5-825C-833112985347} folder moved successfully. C:\Users\Jessica\AppData\Local\{E7D1737C-5ABA-4C63-9F11-E8F1E7AF5B1A} folder moved successfully. C:\Users\Jessica\AppData\Local\{E7EC6CE7-50C5-4FFB-8A32-F64FDC2FA02C} folder moved successfully. C:\Users\Jessica\AppData\Local\{E7F5C14F-6EC6-424F-82A2-E3B741692E2B} folder moved successfully. C:\Users\Jessica\AppData\Local\{E820015F-C2C4-40BB-85C1-D1FD21E4C31F} folder moved successfully. C:\Users\Jessica\AppData\Local\{E8ADC24E-3579-4072-B32E-B4160CB98D94} folder moved successfully. C:\Users\Jessica\AppData\Local\{E8DEEA6B-392B-4BD4-89AE-0115AE68DEC0} folder moved successfully. C:\Users\Jessica\AppData\Local\{E919513E-7E37-4013-900F-F577AD0359BC} folder moved successfully. C:\Users\Jessica\AppData\Local\{E955D195-48DE-4CCF-AF25-4C84B8F27C21} folder moved successfully. C:\Users\Jessica\AppData\Local\{E9560472-267B-4B6A-929E-5EF1EE027051} folder moved successfully. C:\Users\Jessica\AppData\Local\{EA005BFA-75C1-4A8D-A726-AFC9CEF53462} folder moved successfully. C:\Users\Jessica\AppData\Local\{EAD5177F-F229-4576-ADCF-1485E9590ABF} folder moved successfully. C:\Users\Jessica\AppData\Local\{EAFAECD5-290F-4A27-BC29-6FDF16F503C7} folder moved successfully. C:\Users\Jessica\AppData\Local\{EB2FBDB7-6C73-4927-BF01-3D2221618C7C} folder moved successfully. C:\Users\Jessica\AppData\Local\{EB3A139D-2084-4357-AA63-4C086DFB7202} folder moved successfully. C:\Users\Jessica\AppData\Local\{EBA62130-5AD1-4D23-9C23-54921EEE2D73} folder moved successfully. C:\Users\Jessica\AppData\Local\{EC290E34-A677-458D-8A5D-2ABC93253953} folder moved successfully. C:\Users\Jessica\AppData\Local\{ECA5F1A7-A62D-412D-9EE4-4B7B923E1AE0} folder moved successfully. C:\Users\Jessica\AppData\Local\{ED894AAB-867D-40D7-9E90-B11A40A530D4} folder moved successfully. C:\Users\Jessica\AppData\Local\{EDA6E6B9-5DE9-464B-80F9-5C3AEE1C2400} folder moved successfully. C:\Users\Jessica\AppData\Local\{EDADA9C1-F71D-4E93-BDBB-37BC6863C5D2} folder moved successfully. C:\Users\Jessica\AppData\Local\{EDB58798-3E5E-4220-B0AB-0C8595D2C9FF} folder moved successfully. C:\Users\Jessica\AppData\Local\{EDFD8527-0F23-4E9A-AC41-6E88C88D5FFE} folder moved successfully. C:\Users\Jessica\AppData\Local\{EE0E8B89-50BE-4AA1-AF52-32370235D3D0} folder moved successfully. C:\Users\Jessica\AppData\Local\{EE562B81-8B26-4088-88B2-720D2C3BDAA3} folder moved successfully. C:\Users\Jessica\AppData\Local\{EEF122D8-59CD-4458-923F-6B9D813AD7D5} folder moved successfully. C:\Users\Jessica\AppData\Local\{EF0AC396-2401-4896-85BE-17EB72C2FAF9} folder moved successfully. C:\Users\Jessica\AppData\Local\{EF48EC04-DE63-4E47-BEE4-E47F4B7C3686} folder moved successfully. C:\Users\Jessica\AppData\Local\{EF82C226-63F3-42D0-A4C2-44836913CF86} folder moved successfully. C:\Users\Jessica\AppData\Local\{F0B6B330-1E85-432B-9BF4-5BAFC15E9A82} folder moved successfully. C:\Users\Jessica\AppData\Local\{F0CC37C2-67A3-4313-859F-8DEFF9484156} folder moved successfully. C:\Users\Jessica\AppData\Local\{F1072CF5-5857-41BD-9FFB-78FE43C39966} folder moved successfully. C:\Users\Jessica\AppData\Local\{F1C8CF15-0696-481B-B00D-60869E1CF1E5} folder moved successfully. C:\Users\Jessica\AppData\Local\{F1EBFEB5-7278-49FC-A154-341E65375F58} folder moved successfully. C:\Users\Jessica\AppData\Local\{F21DCB76-B5CA-43AD-BB27-BBD46C58B156} folder moved successfully. C:\Users\Jessica\AppData\Local\{F230C660-D31F-418A-B1C8-F99514288CCD} folder moved successfully. C:\Users\Jessica\AppData\Local\{F240A213-06DC-46AC-81B7-1FA6BB13C1AD} folder moved successfully. C:\Users\Jessica\AppData\Local\{F2D5D4CC-5284-4D9F-9807-76B3010CBFC6} folder moved successfully. C:\Users\Jessica\AppData\Local\{F3305978-D4D7-4970-BF6B-F9D490756A20} folder moved successfully. C:\Users\Jessica\AppData\Local\{F335DF88-A50D-4BC8-AF11-7777584E2998} folder moved successfully. C:\Users\Jessica\AppData\Local\{F388925B-E4D7-4559-B43B-DD30D1CE9096} folder moved successfully. C:\Users\Jessica\AppData\Local\{F3EE7D11-7EE7-4C68-80C7-614C13FBAB46} folder moved successfully. C:\Users\Jessica\AppData\Local\{F4E0A896-6B17-451A-B2B0-A4DFFC0AD724} folder moved successfully. C:\Users\Jessica\AppData\Local\{F4E94945-DEC3-42EB-85B0-7BE594DB7D70} folder moved successfully. C:\Users\Jessica\AppData\Local\{F542334C-5687-40D7-8A84-7824A3B27432} folder moved successfully. C:\Users\Jessica\AppData\Local\{F5FF04A8-F814-46C7-A82E-9ED3F9CF0F55} folder moved successfully. C:\Users\Jessica\AppData\Local\{F65E453A-372D-4F32-9B38-C8657583E8F6} folder moved successfully. C:\Users\Jessica\AppData\Local\{F689318A-7C30-40A6-BDB6-3520718C4606} folder moved successfully. C:\Users\Jessica\AppData\Local\{F7912392-0559-45BF-8C40-75F27EE1F1DA} folder moved successfully. C:\Users\Jessica\AppData\Local\{F7D90A29-F9F2-4829-BDD4-538F24E9EE8E} folder moved successfully. C:\Users\Jessica\AppData\Local\{F7E69502-5342-4952-9E58-8D5252A088D6} folder moved successfully. C:\Users\Jessica\AppData\Local\{F833C94A-59AE-4065-BB2B-2F5F6AE9A815} folder moved successfully. C:\Users\Jessica\AppData\Local\{F874F4DE-BB8E-46BC-ADC3-3FB5EA51B1BC} folder moved successfully. C:\Users\Jessica\AppData\Local\{F87C6F55-D3F6-4176-81EC-9C7DB97E8481} folder moved successfully. C:\Users\Jessica\AppData\Local\{F8DFD496-4041-4140-826D-AB66F5621AD3} folder moved successfully. C:\Users\Jessica\AppData\Local\{F928C46A-A0F3-47B8-B79D-5CE1A05DC1F2} folder moved successfully. C:\Users\Jessica\AppData\Local\{F94E5A5D-31F0-4B5B-8DDA-352A8462EB4C} folder moved successfully. C:\Users\Jessica\AppData\Local\{F9C7ABB7-71C9-421A-A893-F8CD6A123C5B} folder moved successfully. C:\Users\Jessica\AppData\Local\{FA67CFAC-49A4-4149-8142-4F7C8707EAC2} folder moved successfully. C:\Users\Jessica\AppData\Local\{FA8E7FBE-B398-40CB-B56A-47A9BEB11453} folder moved successfully. C:\Users\Jessica\AppData\Local\{FAF30828-FDE4-46DC-A31B-2FF6C92DC14D} folder moved successfully. C:\Users\Jessica\AppData\Local\{FAFAF084-CBAB-4B28-902C-8822A986A532} folder moved successfully. C:\Users\Jessica\AppData\Local\{FB210946-558C-4F6D-8336-BDC9A2D8B524} folder moved successfully. C:\Users\Jessica\AppData\Local\{FB3B97BF-5376-41C9-9A5C-27E52C3E8778} folder moved successfully. C:\Users\Jessica\AppData\Local\{FB3C549E-775C-49D0-870E-AF89A58F892E} folder moved successfully. C:\Users\Jessica\AppData\Local\{FB4998E1-0AAC-456E-8962-619E8F78A49E} folder moved successfully. C:\Users\Jessica\AppData\Local\{FB65E688-7964-4403-A81A-318CAAB3D268} folder moved successfully. C:\Users\Jessica\AppData\Local\{FBE64C72-7BD9-46CE-8AE6-02189ADE459A} folder moved successfully. C:\Users\Jessica\AppData\Local\{FC455527-E9E9-4A2E-A0E5-AB28AFAD00AA} folder moved successfully. C:\Users\Jessica\AppData\Local\{FC931900-5F47-45C3-AA90-F5B2101C2FD4} folder moved successfully. C:\Users\Jessica\AppData\Local\{FD158171-C808-4886-A953-A9E2F844D178} folder moved successfully. C:\Users\Jessica\AppData\Local\{FD3F6161-38CE-45DA-B9E0-9444B4F72BE4} folder moved successfully. C:\Users\Jessica\AppData\Local\{FD44467A-6F1C-4FD2-81D2-4157FD3A180B} folder moved successfully. C:\Users\Jessica\AppData\Local\{FD5931E4-1D28-415C-9AB3-F08B2CEAA725} folder moved successfully. C:\Users\Jessica\AppData\Local\{FD717B5F-3D79-4481-A28C-2101AD746A94} folder moved successfully. C:\Users\Jessica\AppData\Local\{FD8E1CAC-15C5-4EFC-9AA4-B3AA9629F351} folder moved successfully. C:\Users\Jessica\AppData\Local\{FDAFEB22-5450-49E6-A5C3-E73484CDD354} folder moved successfully. C:\Users\Jessica\AppData\Local\{FE444435-A6E1-43AD-872A-7A612A2C9FD0} folder moved successfully. C:\Users\Jessica\AppData\Local\{FE5F5356-9E59-46D4-B659-0DDB224F6923} folder moved successfully. C:\Users\Jessica\AppData\Local\{FE6638C5-8814-426C-BD0E-F0AB9E8300D0} folder moved successfully. C:\Users\Jessica\AppData\Local\{FE8DEDDF-1880-43A8-83C5-58CCC37BE81D} folder moved successfully. C:\Users\Jessica\AppData\Local\{FEE5DCEC-30EF-4A68-B1AE-D48A015196C4} folder moved successfully. C:\Users\Jessica\AppData\Local\{FFC446DD-A280-4F9C-984C-9C48536039F1} folder moved successfully. C:\Users\Jessica\AppData\Local\{FFD7A1B7-AF83-4639-8FB9-0ED1430AB978} folder moved successfully. C:\Users\Jessica\AppData\Local\{FFF13550-BD64-4273-8B28-E49E0CF53754} folder moved successfully. C:\Users\Jessica\AppData\Local\Temp\contentDATs.exe moved successfully. C:\Users\Jessica\AppData\Local\Temp\DivXInstaller.exe moved successfully. C:\Users\Jessica\AppData\Local\Temp\MachineIdCreator.exe moved successfully. C:\Users\Jessica\AppData\Local\Temp\oi_{38800E59-402F-48FB-A50D-393FCD515D22}.exe moved successfully. C:\Users\Jessica\AppData\Local\Temp\SetupDataMngr_Searchqu.exe moved successfully. C:\Users\Jessica\AppData\Local\Temp\Shortcut_SweetIM_2.exe moved successfully. C:\Users\Jessica\AppData\Local\Temp\SIMEEIInstaller.exe moved successfully. C:\Users\Jessica\AppData\Local\Temp\YontooSetup-S.exe moved successfully. C:\Users\Jessica\AppData\Local\Temp\yyejaj.exe moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\tmp folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\muffin folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\host folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\9 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\8 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\7 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\63 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\62 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\61 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\60 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\6 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\59 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\58 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\57 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\56 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\55 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\54 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\53 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\52 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\51 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\50 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\5 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\49 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\48 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\47 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\46 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\45 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\44 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\43 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\42 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\41 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\40 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\4 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\39 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\38 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\37 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\36 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\35 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\34 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\33 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\32 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\31 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\30 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\3 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\29 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\28 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\27 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\26 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\25 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\24 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\23 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\22 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\21 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\20 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\2 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\19 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\18 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\17 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\16 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\15 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\14 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\13 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\12 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\11 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\10 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\1 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\0 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache\6.0 folder moved successfully. C:\Users\Jessica\AppData\LocalLow\Sun\Java\Deployment\cache folder moved successfully. File/Folder C:\Users\Jessica\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ctfmon.lnk not found. < ipconfig /flushdns /c > Windows-IP-Konfiguration Der DNS-Aufl”sungscache wurde geleert. C:\Users\Jessica\Downloads\cmd.bat deleted successfully. C:\Users\Jessica\Downloads\cmd.txt deleted successfully. ========== COMMANDS ========== [EMPTYTEMP] User: .wh..wh.orph User: .wh..wh.plnk User: Administrator ->Temp folder emptied: 0 bytes User: All Users User: Default ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Flash cache emptied: 56466 bytes User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Flash cache emptied: 0 bytes User: Jessica ->Temp folder emptied: 447996393 bytes ->Temporary Internet Files folder emptied: 984989997 bytes ->Google Chrome cache emptied: 365558522 bytes ->Flash cache emptied: 123551 bytes User: Public ->Temp folder emptied: 0 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32 (64bit) .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 128788248 bytes %systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 84216 bytes RecycleBin emptied: 13037 bytes Total Files Cleaned = 1,838.00 mb OTL by OldTimer - Version 3.2.69.0 log created on 11202012_230341 Files\Folders moved on Reboot... C:\Users\Jessica\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully. PendingFileRenameOperations files... Registry entries deleted on Reboot... |
21.11.2012, 03:07 | #6 |
/// Helfer-Team | Virus Bundespolizei erster Entfernungsveruch erfolglos Schritt 2, 3 ,4?
__________________ --> Virus Bundespolizei erster Entfernungsveruch erfolglos |
21.11.2012, 21:51 | #7 |
| Virus Bundespolizei erster Entfernungsveruch erfolglos Kommt jetzt =) also hier schritt 2: Malwarebytes Anti-Malware 1.65.1.1000 Malwarebytes : Free Anti-Malware download Datenbank Version: v2012.11.20.07 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 9.0.8112.16421 Jessica :: JESSICA-PC [Administrator] 21.11.2012 21:11:25 mbam-log-2012-11-21 (21-11-25).txt Art des Suchlaufs: Vollständiger Suchlauf (C:\|D:\|Q:\|) Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 341114 Laufzeit: 33 Minute(n), 22 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 0 (Keine bösartigen Objekte gefunden) (Ende) 3. Schritt: # AdwCleaner v2.008 - Datei am 21/11/2012 um 21:51:30 erstellt # Aktualisiert am 17/11/2012 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzer : Jessica - JESSICA-PC # Bootmodus : Normal # Ausgeführt unter : C:\Users\Jessica\Downloads\adwcleaner.exe # Option [Suche] **** [Dienste] **** ***** [Dateien / Ordner] ***** Datei Gefunden : C:\Users\Jessica\Desktop\Search The Web.url Datei Gefunden : C:\Users\Jessica\Desktop\sweetpcfix.url Datei Gefunden : C:\Users\Public\Desktop\eBay.lnk Ordner Gefunden : C:\Program Files (x86)\AVG Secure Search Ordner Gefunden : C:\Program Files (x86)\Common Files\AVG Secure Search Ordner Gefunden : C:\Program Files (x86)\FileConverter_1.3 Ordner Gefunden : C:\Program Files (x86)\Ilivid Ordner Gefunden : C:\Program Files (x86)\Yontoo Ordner Gefunden : C:\ProgramData\AVG Secure Search Ordner Gefunden : C:\ProgramData\Partner Ordner Gefunden : C:\ProgramData\Tarma Installer Ordner Gefunden : C:\Users\Jessica\AppData\Local\AVG Secure Search Ordner Gefunden : C:\Users\Jessica\AppData\Local\Conduit Ordner Gefunden : C:\Users\Jessica\AppData\Local\Ilivid Player Ordner Gefunden : C:\Users\Jessica\AppData\LocalLow\AVG Secure Search Ordner Gefunden : C:\Users\Jessica\AppData\LocalLow\boost_interprocess Ordner Gefunden : C:\Users\Jessica\AppData\LocalLow\Conduit Ordner Gefunden : C:\Users\Jessica\AppData\LocalLow\FileConverter_1.3 Ordner Gefunden : C:\Users\Jessica\AppData\LocalLow\PriceGong Ordner Gefunden : C:\Users\Jessica\AppData\LocalLow\searchquband Ordner Gefunden : C:\Users\Jessica\AppData\LocalLow\Searchqutoolbar Ordner Gefunden : C:\Users\Jessica\AppData\Roaming\Complitly ***** [Registrierungsdatenbank] ***** Daten Gefunden : HKLM\..\Windows [AppInit_DLLs] = C:\PROGRA~2\SEARCH~1\Datamngr\datamngr.dll Daten Gefunden : HKLM\..\Windows [AppInit_DLLs] = C:\PROGRA~2\SEARCH~1\Datamngr\IEBHO.dll Schlüssel Gefunden : HKCU\Software\AppDataLow\Software\Conduit Schlüssel Gefunden : HKCU\Software\AppDataLow\Software\ConduitSearchScopes Schlüssel Gefunden : HKCU\Software\AppDataLow\Software\FileConverter_1.3 Schlüssel Gefunden : HKCU\Software\AppDataLow\Software\PriceGong Schlüssel Gefunden : HKCU\Software\AppDataLow\Software\searchqutoolbar Schlüssel Gefunden : HKCU\Software\AppDataLow\Software\SmartBar Schlüssel Gefunden : HKCU\Software\AppDataLow\Toolbar Schlüssel Gefunden : HKCU\Software\AVG Secure Search Schlüssel Gefunden : HKCU\Software\Complitly Schlüssel Gefunden : HKCU\Software\DataMngr Schlüssel Gefunden : HKCU\Software\DataMngr_Toolbar Schlüssel Gefunden : HKCU\Software\ilivid Schlüssel Gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{78E516EF-11DE-47A1-8364-A99B917EC5EE} Schlüssel Gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233} Schlüssel Gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{99079A25-328F-4BD4-BE04-00955ACAA0A7} Schlüssel Gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{9D717F81-9148-4F12-8568-69135F087DB0} Schlüssel Gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8} Schlüssel Gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{153D7D79-706C-443D-BA98-41CA86982C9D} Schlüssel Gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{78E516EF-11DE-47A1-8364-A99B917EC5EE} Schlüssel Gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233} Schlüssel Gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{99079A25-328F-4BD4-BE04-00955ACAA0A7} Schlüssel Gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9D717F81-9148-4F12-8568-69135F087DB0} Schlüssel Gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE} Schlüssel Gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8} Schlüssel Gefunden : HKCU\Software\Softonic Schlüssel Gefunden : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Schlüssel Gefunden : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233} Schlüssel Gefunden : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} Schlüssel Gefunden : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847} Schlüssel Gefunden : HKLM\Software\AVG Secure Search Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2} Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\{442F13BC-2031-42D5-9520-437F65271153} Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB} Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\{CFDAFE39-20CE-451D-BD45-A37452F39CF0} Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\Complitly.DLL Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\YontooIEClient.DLL Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI.1 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj.1 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\viprotocol Schlüssel Gefunden : HKLM\SOFTWARE\Classes\S Schlüssel Gefunden : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi Schlüssel Gefunden : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\SearchQUIEHelper.DNSGuard Schlüssel Gefunden : HKLM\SOFTWARE\Classes\SearchQUIEHelper.DNSGuard.1 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Toolbar.CT3241949 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{5B4144E1-B61D-495A-9A50-CD1A95D86D15} Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{6A4BCABA-C437-4C76-A54E-AF31B8A76CB9} Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93} Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{841D5A49-E48D-413C-9C28-EB3D9081D705} Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8} Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94} Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{D372567D-67C1-4B29-B3F0-159B52B3E967} Schlüssel Gefunden : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE Schlüssel Gefunden : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\YontooIEClient.Api Schlüssel Gefunden : HKLM\SOFTWARE\Classes\YontooIEClient.Api.1 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\YontooIEClient.Layers Schlüssel Gefunden : HKLM\SOFTWARE\Classes\YontooIEClient.Layers.1 Schlüssel Gefunden : HKLM\Software\Conduit Schlüssel Gefunden : HKLM\Software\DataMngr Schlüssel Gefunden : HKLM\Software\FileConverter_1.3 Schlüssel Gefunden : HKLM\Software\ilivid Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Tracing\SearchquMediaBar_RASAPI32 Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Tracing\SearchquMediaBar_RASMANCS Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASAPI32 Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASMANCS Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{153D7D79-706C-443D-BA98-41CA86982C9D} Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC} Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE} Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F25AF245-4A81-40DC-92F9-E9021F207706} Schlüssel Gefunden : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin Schlüssel Gefunden : HKLM\Software\SearchquMediabarTb Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{10DE7085-6A1E-4D41-A7BF-9AF93E351401} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{153D7D79-706C-443D-BA98-41CA86982C9D} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{78E516EF-11DE-47A1-8364-A99B917EC5EE} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{99066096-8989-4612-841F-621A01D54AD7} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{99079A25-328F-4BD4-BE04-00955ACAA0A7} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{9D717F81-9148-4F12-8568-69135F087DB0} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{A40DC6C5-79D0-4CA8-A185-8FF989AF1115} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{CC1AC828-BB47-4361-AFB5-96EEE259DD87} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{F25AF245-4A81-40DC-92F9-E9021F207706} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{FE9271F2-6EFD-44B0-A826-84C829536E93} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{FEFD3AF5-A346-4451-AA23-A3AD54915515} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C9AE652B-8C99-4AC2-B556-8B501182874E} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\defdhglnppeioeflggkmglipcecffkhk Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\niapdbllcanepiiimjjndipklodoedlc Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{134B387C-90D0-4C76-8D29-1B7C131D85B3} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3BBBDE5E-34BE-43C7-85C9-92A7D238E32A} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{99079A25-328F-4BD4-BE04-00955ACAA0A7} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{78E516EF-11DE-47A1-8364-A99B917EC5EE} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{99079A25-328F-4BD4-BE04-00955ACAA0A7} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9D717F81-9148-4F12-8568-69135F087DB0} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8} Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\AVG Secure Search Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Complitly_is1 Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\FileConverter_1.3 Toolbar Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\ilivid Schlüssel Gefunden : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Searchqu Toolbar Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{9D717F81-9148-4F12-8568-69135F087DB0} Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{A40DC6C5-79D0-4CA8-A185-8FF989AF1115} Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{CC1AC828-BB47-4361-AFB5-96EEE259DD87} Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{FEFD3AF5-A346-4451-AA23-A3AD54915515} Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217} Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401} Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5} Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7} Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC} Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6} Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{C9AE652B-8C99-4AC2-B556-8B501182874E} Schlüssel Gefunden : HKLM\SOFTWARE\DataMngr Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9D717F81-9148-4F12-8568-69135F087DB0} Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{889DF117-14D1-44EE-9F31-C5FB5D47F68B} Schlüssel Gefunden : HKLM\SOFTWARE\Tarma Installer Schlüssel Gefunden : HKU\S-1-5-21-2501155780-1250442132-408206543-1000\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Schlüssel Gefunden : HKU\S-1-5-21-2501155780-1250442132-408206543-1000\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233} Schlüssel Gefunden : HKU\S-1-5-21-2501155780-1250442132-408206543-1000\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} Schlüssel Gefunden : HKU\S-1-5-21-2501155780-1250442132-408206543-1000\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847} Wert Gefunden : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{78E516EF-11DE-47A1-8364-A99B917EC5EE}] Wert Gefunden : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{78E516EF-11DE-47A1-8364-A99B917EC5EE}] Wert Gefunden : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{78E516EF-11DE-47A1-8364-A99B917EC5EE}] Wert Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [DataMngr] Wert Gefunden : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [Avg@toolbar] Wert Gefunden : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{78E516EF-11DE-47A1-8364-A99B917EC5EE}] Wert Gefunden : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{95B7759C-8C7F-4BF1-B163-73684A933233}] Wert Gefunden : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{99079A25-328F-4BD4-BE04-00955ACAA0A7}] ***** [Internet Browser] ***** -\\ Internet Explorer v9.0.8112.16421 [HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://home.sweetim.com/?crg=3.1010006.10031 [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Start Page] = hxxp://home.sweetim.com/?crg=3.1010006.10031 -\\ Google Chrome v [Version kann nicht ermittelt werden] Datei : C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Preferences Gefunden [l.8] : homepage = "hxxp://home.sweetim.com/?crg=3.1010006.10031", Gefunden [l.12] : urls_to_restore_on_startup = [ "hxxp://home.sweetim.com/?crg=3.1010006.10031", "hxxp://www.searchnu.com/406", "hxxp://www.google.com/ig/redirectdomain?brand=MDNC&bmod=MDNC" ] Gefunden [l.44] : icon_url = "hxxps://isearch.avg.com/favicon.ico", Gefunden [l.47] : keyword = "isearch.avg.com", Gefunden [l.50] : search_url = "hxxps://isearch.avg.com/search?cid={0D08901E-393C-4CE9-B70D-92142A59F7EA}&mid=39b7d147133d47d0a614d16f6b22e9e0-66d114b62eff86423ea0c6d5142cf4d295e85f17&lang=de&ds=AVG&pr=pr&d=2012-10-23 17:43:00&v=13.2.0.3&sap=dsp&q={searchTerms}", Gefunden [l.1648] : homepage = "hxxp://home.sweetim.com/?crg=3.1010006.10031", Gefunden [l.1913] : urls_to_restore_on_startup = [ "hxxp://home.sweetim.com/?crg=3.1010006.10031", "hxxp://www.searchnu.com/406", "hxxp://www.google.com/ig/redirectdomain?brand=MDNC&bmod=MDNC" ] ************************* AdwCleaner[R1].txt - [18087 octets] - [21/11/2012 21:51:30] ########## EOF - C:\AdwCleaner[R1].txt - [18148 octets] ########## Und der 4. Schritt # AdwCleaner v2.008 - Datei am 21/11/2012 um 21:55:35 erstellt # Aktualisiert am 17/11/2012 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzer : Jessica - JESSICA-PC # Bootmodus : Normal # Ausgeführt unter : C:\Users\Jessica\Downloads\adwcleaner.exe # Option [Löschen] **** [Dienste] **** ***** [Dateien / Ordner] ***** Datei Gelöscht : C:\Users\Jessica\Desktop\Search The Web.url Datei Gelöscht : C:\Users\Jessica\Desktop\sweetpcfix.url Datei Gelöscht : C:\Users\Public\Desktop\eBay.lnk Gelöscht mit Neustart : C:\Program Files (x86)\Common Files\AVG Secure Search Ordner Gelöscht : C:\Program Files (x86)\AVG Secure Search Ordner Gelöscht : C:\Program Files (x86)\FileConverter_1.3 Ordner Gelöscht : C:\Program Files (x86)\Ilivid Ordner Gelöscht : C:\Program Files (x86)\Yontoo Ordner Gelöscht : C:\ProgramData\AVG Secure Search Ordner Gelöscht : C:\ProgramData\Partner Ordner Gelöscht : C:\ProgramData\Tarma Installer Ordner Gelöscht : C:\Users\Jessica\AppData\Local\AVG Secure Search Ordner Gelöscht : C:\Users\Jessica\AppData\Local\Conduit Ordner Gelöscht : C:\Users\Jessica\AppData\Local\Ilivid Player Ordner Gelöscht : C:\Users\Jessica\AppData\LocalLow\AVG Secure Search Ordner Gelöscht : C:\Users\Jessica\AppData\LocalLow\boost_interprocess Ordner Gelöscht : C:\Users\Jessica\AppData\LocalLow\Conduit Ordner Gelöscht : C:\Users\Jessica\AppData\LocalLow\FileConverter_1.3 Ordner Gelöscht : C:\Users\Jessica\AppData\LocalLow\PriceGong Ordner Gelöscht : C:\Users\Jessica\AppData\LocalLow\searchquband Ordner Gelöscht : C:\Users\Jessica\AppData\LocalLow\Searchqutoolbar Ordner Gelöscht : C:\Users\Jessica\AppData\Roaming\Complitly ***** [Registrierungsdatenbank] ***** Daten Gelöscht : HKLM\..\Windows [AppInit_DLLs] = C:\PROGRA~2\SEARCH~1\Datamngr\datamngr.dll Daten Gelöscht : HKLM\..\Windows [AppInit_DLLs] = C:\PROGRA~2\SEARCH~1\Datamngr\IEBHO.dll Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Conduit Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\ConduitSearchScopes Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\FileConverter_1.3 Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\PriceGong Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\searchqutoolbar Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\SmartBar Schlüssel Gelöscht : HKCU\Software\AppDataLow\Toolbar Schlüssel Gelöscht : HKCU\Software\AVG Secure Search Schlüssel Gelöscht : HKCU\Software\Complitly Schlüssel Gelöscht : HKCU\Software\DataMngr Schlüssel Gelöscht : HKCU\Software\DataMngr_Toolbar Schlüssel Gelöscht : HKCU\Software\ilivid Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{78E516EF-11DE-47A1-8364-A99B917EC5EE} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{99079A25-328F-4BD4-BE04-00955ACAA0A7} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{9D717F81-9148-4F12-8568-69135F087DB0} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{153D7D79-706C-443D-BA98-41CA86982C9D} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{78E516EF-11DE-47A1-8364-A99B917EC5EE} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{99079A25-328F-4BD4-BE04-00955ACAA0A7} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9D717F81-9148-4F12-8568-69135F087DB0} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8} Schlüssel Gelöscht : HKCU\Software\Softonic Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847} Schlüssel Gelöscht : HKLM\Software\AVG Secure Search Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{442F13BC-2031-42D5-9520-437F65271153} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{CFDAFE39-20CE-451D-BD45-A37452F39CF0} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\Complitly.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\YontooIEClient.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\viprotocol Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\S Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SearchQUIEHelper.DNSGuard Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SearchQUIEHelper.DNSGuard.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Toolbar.CT3241949 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{5B4144E1-B61D-495A-9A50-CD1A95D86D15} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{6A4BCABA-C437-4C76-A54E-AF31B8A76CB9} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{841D5A49-E48D-413C-9C28-EB3D9081D705} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{D372567D-67C1-4B29-B3F0-159B52B3E967} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\YontooIEClient.Api Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\YontooIEClient.Api.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\YontooIEClient.Layers Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\YontooIEClient.Layers.1 Schlüssel Gelöscht : HKLM\Software\Conduit Schlüssel Gelöscht : HKLM\Software\DataMngr Schlüssel Gelöscht : HKLM\Software\FileConverter_1.3 Schlüssel Gelöscht : HKLM\Software\ilivid Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SearchquMediaBar_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SearchquMediaBar_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{153D7D79-706C-443D-BA98-41CA86982C9D} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F25AF245-4A81-40DC-92F9-E9021F207706} Schlüssel Gelöscht : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin Schlüssel Gelöscht : HKLM\Software\SearchquMediabarTb Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{10DE7085-6A1E-4D41-A7BF-9AF93E351401} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{153D7D79-706C-443D-BA98-41CA86982C9D} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{78E516EF-11DE-47A1-8364-A99B917EC5EE} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{99066096-8989-4612-841F-621A01D54AD7} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{99079A25-328F-4BD4-BE04-00955ACAA0A7} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{9D717F81-9148-4F12-8568-69135F087DB0} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{A40DC6C5-79D0-4CA8-A185-8FF989AF1115} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{CC1AC828-BB47-4361-AFB5-96EEE259DD87} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{F25AF245-4A81-40DC-92F9-E9021F207706} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{FE9271F2-6EFD-44B0-A826-84C829536E93} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{FEFD3AF5-A346-4451-AA23-A3AD54915515} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C9AE652B-8C99-4AC2-B556-8B501182874E} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\defdhglnppeioeflggkmglipcecffkhk Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\niapdbllcanepiiimjjndipklodoedlc Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{134B387C-90D0-4C76-8D29-1B7C131D85B3} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3BBBDE5E-34BE-43C7-85C9-92A7D238E32A} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{99079A25-328F-4BD4-BE04-00955ACAA0A7} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{78E516EF-11DE-47A1-8364-A99B917EC5EE} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{99079A25-328F-4BD4-BE04-00955ACAA0A7} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9D717F81-9148-4F12-8568-69135F087DB0} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\AVG Secure Search Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Complitly_is1 Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\FileConverter_1.3 Toolbar Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\ilivid Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Searchqu Toolbar Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{9D717F81-9148-4F12-8568-69135F087DB0} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{A40DC6C5-79D0-4CA8-A185-8FF989AF1115} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{CC1AC828-BB47-4361-AFB5-96EEE259DD87} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{FEFD3AF5-A346-4451-AA23-A3AD54915515} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C9AE652B-8C99-4AC2-B556-8B501182874E} Schlüssel Gelöscht : HKLM\SOFTWARE\DataMngr Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9D717F81-9148-4F12-8568-69135F087DB0} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{889DF117-14D1-44EE-9F31-C5FB5D47F68B} Schlüssel Gelöscht : HKLM\SOFTWARE\Tarma Installer Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{78E516EF-11DE-47A1-8364-A99B917EC5EE}] Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{78E516EF-11DE-47A1-8364-A99B917EC5EE}] Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{78E516EF-11DE-47A1-8364-A99B917EC5EE}] Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [DataMngr] Wert Gelöscht : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [Avg@toolbar] Wert Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{78E516EF-11DE-47A1-8364-A99B917EC5EE}] Wert Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{95B7759C-8C7F-4BF1-B163-73684A933233}] Wert Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{99079A25-328F-4BD4-BE04-00955ACAA0A7}] ***** [Internet Browser] ***** -\\ Internet Explorer v9.0.8112.16421 Ersetzt : [HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://home.sweetim.com/?crg=3.1010006.10031 --> hxxp://www.google.com Ersetzt : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Start Page] = hxxp://home.sweetim.com/?crg=3.1010006.10031 --> hxxp://www.google.com -\\ Google Chrome v [Version kann nicht ermittelt werden] Datei : C:\Users\Jessica\AppData\Local\Google\Chrome\User Data\Default\Preferences Gelöscht [l.8] : homepage = "hxxp://home.sweetim.com/?crg=3.1010006.10031", Gelöscht [l.12] : urls_to_restore_on_startup = [ "hxxp://home.sweetim.com/?crg=3.1010006.10031", "hxxp://www[...] Gelöscht [l.44] : icon_url = "hxxps://isearch.avg.com/favicon.ico", Gelöscht [l.47] : keyword = "isearch.avg.com", Gelöscht [l.50] : search_url = "hxxps://isearch.avg.com/search?cid={0D08901E-393C-4CE9-B70D-92142A59F7EA}&mid=3[...] Gelöscht [l.1648] : homepage = "hxxp://home.sweetim.com/?crg=3.1010006.10031", Gelöscht [l.1913] : urls_to_restore_on_startup = [ "hxxp://home.sweetim.com/?crg=3.1010006.10031", "hxxp://www.se[...] ************************* AdwCleaner[R1].txt - [18176 octets] - [21/11/2012 21:51:30] AdwCleaner[S2].txt - [17282 octets] - [21/11/2012 21:55:35] ########## EOF - C:\AdwCleaner[S2].txt - [17343 octets] ########## |
22.11.2012, 06:45 | #8 |
/// Helfer-Team | Virus Bundespolizei erster Entfernungsveruch erfolglos Sehr gut! Wie laeuft der Rechner? Malware-Scan mit Emsisoft Anti-Malware Lade die Gratisversion von => Emsisoft Anti-Malware herunter und installiere das Programm. Lade über Jetzt Updaten die aktuellen Signaturen herunter. Wähle den Freeware-Modus aus. Wähle Detail Scan und starte über den Button Scan die Überprüfung des Computers. Am Ende des Scans nichts loeschen lassen!. Mit Klick auf Bericht speichern das Logfile auf dem Desktop speichern und hier in den Thread posten. Anleitung: http://www.trojaner-board.de/103809-...i-malware.html |
28.11.2012, 22:41 | #9 |
| Virus Bundespolizei erster Entfernungsveruch erfolglos Vielen Dank!! Ja also der Rechner funktioniert gut aber ein paar anwendungen wie z.B Adobe öffnen nicht mehr bzw. lassen sich auch nicht installieren. Habe wohl ein paar Dateien gelöscht als ich anfangs versucht habe den Virus zu löschen. |
29.11.2012, 06:09 | #10 |
/// Helfer-Team | Virus Bundespolizei erster Entfernungsveruch erfolglos Adobe? Welches Programm? Wo ist der Scan mit Emsisoft? |
19.01.2013, 16:42 | #11 |
/// Helfer-Team | Virus Bundespolizei erster Entfernungsveruch erfolglos Fehlende Rückmeldung Gibt es Probleme beim Abarbeiten obiger Anleitung? Um Kapazitäten für andere Hilfesuchende freizumachen, lösche ich dieses Thema aus meinen Benachrichtigungen. Solltest Du weitermachen wollen, schreibe mir eine PN oder eröffne ein neues Thema. http://www.trojaner-board.de/69886-a...-beachten.html Hinweis: Das Verschwinden der Symptome bedeutet nicht, dass Dein Rechner sauber ist. |
Themen zu Virus Bundespolizei erster Entfernungsveruch erfolglos |
bundespolizei, erfolglos, hoffe, löschen, namen, schonmal, trojan.agent, trojan.agent.h, trojan.winlock, versuch, virus, virus bundespolizei |