|
Log-Analyse und Auswertung: Kaspersky stuft tmp Datei als hohen Risikowert ein bei der Programmkontrolle, Trojaner?Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
25.06.2013, 12:34 | #1 |
| Kaspersky stuft tmp Datei als hohen Risikowert ein bei der Programmkontrolle, Trojaner? Hallo Leute, ich habe folgendes Problem seit kurzem. Und zwar springt meine Programmkontrolle einmal täglich bei meinem Kaspersky Internet Security 2013 an. Dabei kam dann das bei raus: Nicht vertrauenswürdig. Programme, die keine digitale Signatur von einem vertrauenswürdigen Hersteller besitzen oder nicht zur Datenbank von vertrauenswürdigen Programmen gehören. Diese Programme haben den höchsten Risikowert erhalten. Die Programmkontrolle blockiert sämtliche Aktionen von solchen Programmen. Anschließend habe ich es dann blockiert, weil es mir empfohlen wurde. 22.06.2013 00:57:11 b446.tmp Verboten: Start 22.06.2013 00:57:11 b446.tmp Programm wurde verschoben in Gruppe Nicht vertrauenswürdig 23.06.2013 01:11:43 521b.tmp Verboten: Start 23.06.2013 01:11:43 521b.tmp Programm wurde verschoben in Gruppe Nicht vertrauenswürdig 24.06.2013 01:29:42 5577.tmp Verboten: Start 24.06.2013 01:29:42 5577.tmp Programm wurde verschoben in Gruppe Nicht vertrauenswürdig Dies ist der Log aus der Programmkontrolle. Auffallend ist natürlich, dass sich die Datei immer wieder verändert sobald ich sie blockiert habe. Ich habe nun die Befürchtung, dass es sich womöglich um einen Trojaner handeln kann. Ich hatte Anfang Juni angemerkt paar Seiten "erwischt", die mir gewissermaßen einen Trojaner bescheren wollten. Kaspersky hat diese allerdings in die Quarantäne gesteckt und der Status steht auf "inaktiv", im Ursprungsordner sind sie auch nicht mehr vorhanden. Weiß nicht, ob diesbezüglich ein Zusammenhang bestehen könnte. Anmerken möchte ich ebenfalls noch, dass ich gestern Abend eine vollständige Untersuchung seitens Kaspersky getätigt habe. Es wurden keinerlei Bedrohungen gefunden. Wäre allerdings sehr froh, wenn mir jemand behilflich sein kann! Edit: Heute bekam ich seltsamerweise keine Meldung bzgl. der Programmkontrolle. |
25.06.2013, 13:05 | #2 |
/// the machine /// TB-Ausbilder | Kaspersky stuft tmp Datei als hohen Risikowert ein bei der Programmkontrolle, Trojaner? Hi,
__________________Systemscan mit FRST Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Start > Computer (Rechtsklick) > Eigenschaften)
__________________ |
25.06.2013, 20:15 | #3 |
| Kaspersky stuft tmp Datei als hohen Risikowert ein bei der Programmkontrolle, Trojaner? FRST Logfile:
__________________FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 25-06-2013 01 Ran by usert (administrator) on 25-06-2013 21:07:44 Running from C:\Users\usert\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\system32\atiesrxx.exe (AMD) C:\Windows\system32\atieclxx.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe (IVT Corporation) C:\Program Files (x86)\IVT Corporation\BlueSoleil\BlueSoleilCS.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe () C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe (IVT Corporation) C:\Program Files (x86)\IVT Corporation\BlueSoleil\BsMobileCS.exe (Microsoft Corporation) C:\Windows\SysWOW64\schtasks.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe () C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe (Sony Corporation) c:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE (Sony Corporation) C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCSpt.exe (Sony Corporation) C:\Program Files\Sony\VAIO Update 5\VAIOUpdt.exe (Telefónica I+D) C:\Program Files (x86)\o2\Mobile Connection Manager\ImpWiFiSvc.exe (ArcSoft, Inc.) C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe (Sony Corporation) C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe (Microsoft Corporation) C:\Windows\SysWOW64\DllHost.exe (Sony Corporation) C:\Program Files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe (Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNService.exe (WebCake LLC) C:\Program Files (x86)\WebCake\WebCakeDesktop.Updater.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Event Service\VESMgrSub.exe (Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNClient.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Alps Electric Co., Ltd.) C:\Program Files\Apoint\Apoint.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-Service.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCsystray.exe (WebCake LLC) C:\Users\usert\AppData\Roaming\WebCake\WebCakeDesktop.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Sony Computer Entertainment Inc.) C:\Program Files (x86)\Sony\Content Manager Assistant\CMA.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-Network.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee Security Scan\3.0.318\SSScheduler.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Sony Computer Entertainment Inc.) C:\Program Files (x86)\Sony\Content Manager Assistant\CMAWatcher.exe (Sony Corporation) C:\Program Files (x86)\Sony\PMB\PMBVolumeWatcher.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-BlockDevice.exe (Sun Microsystems, Inc.) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-SharedFolder.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (IVT Corporation) C:\Program Files (x86)\IVT Corporation\BlueSoleil\BsHelpCS.exe (IVT Corporation) C:\Program Files (x86)\IVT Corporation\BlueSoleil\BtTray.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-Agent.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint\ApMsgFwd.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (ALPS) C:\Program Files\Apoint\Apvfb.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint\Apntex.exe () C:\Program Files (x86)\BlueStacks\HD-Adb.exe (Microsoft Corporation) C:\Windows\System32\vds.exe (Sony Corporation) C:\Program Files\Sony\VAIO Update 5\VUAgent.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\klwtblfs.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s [10134560 2010-04-07] (Realtek Semiconductor) HKLM\...\Run: [Apoint] %ProgramFiles%\Apoint\Apoint.exe [221480 2010-05-17] (Alps Electric Co., Ltd.) HKCU\...\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun [1475584 2010-11-20] (Microsoft Corporation) HKCU\...\Run: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background [4280184 2012-03-08] (Microsoft Corporation) HKCU\...\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun [19603048 2013-06-03] (Skype Technologies S.A.) HKCU\...\Run: [WebCake Desktop] "C:\Users\usert\AppData\Roaming\WebCake\WebCakeDesktop.exe" [47896 2013-06-07] (WebCake LLC) MountPoints2: {c4e4867c-436c-11e2-b5f4-54424930716b} - E:\AutoRun.exe MountPoints2: {c4e4869a-436c-11e2-b5f4-54424930716b} - E:\AutoRun.exe MountPoints2: {c530204a-a689-11e2-9472-54424930716b} - E:\AutoRun.exe MountPoints2: {d7f531f9-3343-11e2-8cba-54424930716b} - E:\CMADownloader.exe HKLM-x32\...\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun [98304 2010-03-02] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [NortonOnlineBackupReminder] "C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe" UNATTENDED [538472 2009-06-17] (Symantec Corporation) HKLM-x32\...\Run: [PMBVolumeWatcher] c:\Program Files (x86)\Sony\PMB\PMBVolumeWatcher.exe [597792 2010-01-21] (Sony Corporation) HKLM-x32\...\Run: [NPSStartup] [x] HKLM-x32\...\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [919008 2012-07-27] (Adobe Systems Incorporated) HKLM-x32\...\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [252848 2012-07-03] (Sun Microsystems, Inc.) HKLM-x32\...\Run: [AVP] "C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe" [356376 2012-12-13] (Kaspersky Lab ZAO) HKLM-x32\...\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59720 2013-01-28] (Apple Inc.) HKLM-x32\...\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" [152392 2013-02-20] (Apple Inc.) HKLM-x32\...\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime [421888 2012-10-25] (Apple Inc.) HKLM-x32\...\Run: [BtTray] "C:\Program Files (x86)\IVT Corporation\BlueSoleil\BtTray.exe" [319574 2011-04-13] (IVT Corporation) HKLM-x32\...\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe [601928 2013-05-13] (BlueStack Systems, Inc.) AppInit_DLLs-x32: c:\progra~3\browse~1\261339~1.144\{c16c1~1\browse~1.dll [2521040 2013-05-23] () Startup: C:\ProgramData\Start Menu\Programs\Startup\Bluetooth.lnk ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.) Startup: C:\ProgramData\Start Menu\Programs\Startup\Inhaltsmanager-Assistent für PlayStation(R).lnk ShortcutTarget: Inhaltsmanager-Assistent für PlayStation(R).lnk -> C:\Program Files (x86)\Sony\Content Manager Assistant\CMA.exe (Sony Computer Entertainment Inc.) Startup: C:\ProgramData\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files (x86)\McAfee Security Scan\3.0.318\SSScheduler.exe (McAfee, Inc.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.babylon.com/?babsrc=HP_ss_din2g&mntrId=12A854424930716B&affID=119781&tt=180613_ndtc&tsp=4920 SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = HKCU SearchScopes: DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://www.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=12A854424930716B&affID=119781&tt=180613_ndtc&tsp=4920 SearchScopes: HKCU - {30E7E642-329E-4C4B-A9DC-FCBC70DFBF69} URL = hxxp://rover.ebay.com/rover/1/707-37276-16609-0/4?satitle={searchTerms} SearchScopes: HKCU - {5CECA8C5-F60B-4DDA-B116-0DB7E7D5F0CD} URL = hxxp://services.zinio.com/search?s={searchTerms}&rf=sonyslices SearchScopes: HKCU - {6ED35488-2412-4005-A34C-D5BFECDECDE6} URL = hxxp://de.shopping.com/?linkin_id=8056363 BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg64.dll (Google Inc.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files (x86)\McAfee Security Scan\3.0.318\McAfeeMSS_IE.dll (McAfee, Inc.) BHO-x32: Plus-HD-2.2 - {11111111-1111-1111-1111-110311301136} - C:\Program Files (x86)\Plus-HD-2.2\Plus-HD-2.2-bho.dll (Plus HD) BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO-x32: WebCake - {2A5A2A90-3B30-4E6E-A955-2F232C6EF517} - C:\Program Files (x86)\WebCake\WebCakeIEClient.dll (WebCake LLC) BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO-x32: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll (Microsoft Corporation) BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) BHO-x32: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll (Google Inc.) BHO-x32: delta Helper Object - {C1AF5FA5-852C-4C90-812E-A7F75E011D87} - C:\Program Files (x86)\Delta\delta\1.8.21.5\bh\delta.dll (Delta-search.com) BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) Toolbar: HKLM-x32 - Delta Toolbar - {82E1477C-B154-48D3-9891-33D83C26BCD3} - C:\Program Files (x86)\Delta\delta\1.8.21.5\deltaTlbr.dll (Delta-search.com) Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\system32\urlmon.dll (Microsoft Corporation) Handler: msdaipp - No CLSID Value - Handler-x32: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - No File Handler-x32: msdaipp - No CLSID Value - Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - No File Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 FireFox: ======== FF ProfilePath: C:\Users\usert\AppData\Roaming\Mozilla\Firefox\Profiles\nspwuyrd.default FF user.js: detected! => C:\Users\usert\AppData\Roaming\Mozilla\Firefox\Profiles\nspwuyrd.default\user.js FF NewTab: hxxp://www.delta-search.com/?babsrc=NT_ss&mntrId=12A854424930716B&affID=119781&tt=180613_ndtc&tsp=4920 FF SelectedSearchEngine: user_pref("browser.search.selectedEngine", ""); FF Homepage: https://www.google.de/ FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_224.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.0.2 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @java.com/DTPlugin,version=10.9.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.9.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @mcafee.com/McAfeeMssPlugin - C:\Program Files (x86)\McAfee Security Scan\3.0.318\npMcAfeeMss.dll (McAfee, Inc.) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Extension: No Name - C:\Users\usert\AppData\Roaming\Mozilla\Firefox\Profiles\nspwuyrd.default\Extensions\4fdacf00-e9c4-4ad5-b4cf-bf9800f184f6@36857116-74e0-4973-936f-860cd2a102a9.com FF Extension: Delta Toolbar - C:\Users\usert\AppData\Roaming\Mozilla\Firefox\Profiles\nspwuyrd.default\Extensions\ffxtlbr@delta.com FF Extension: WebCake - C:\Users\usert\AppData\Roaming\Mozilla\Firefox\Profiles\nspwuyrd.default\Extensions\plugin@getwebcake.com FF Extension: artur.dubovoy - C:\Users\usert\AppData\Roaming\Mozilla\Firefox\Profiles\nspwuyrd.default\Extensions\artur.dubovoy@gmail.com.xpi FF Extension: ftdownloader4 - C:\Users\usert\AppData\Roaming\Mozilla\Firefox\Profiles\nspwuyrd.default\Extensions\ftdownloader4@ftdownloader.com.xpi FF Extension: youtubequality - C:\Users\usert\AppData\Roaming\Mozilla\Firefox\Profiles\nspwuyrd.default\Extensions\youtubequality@rzll.xpi FF Extension: No Name - C:\Users\usert\AppData\Roaming\Mozilla\Firefox\Profiles\nspwuyrd.default\Extensions\{097d3191-e6fa-4728-9826-b533d755359d}.xpi FF Extension: No Name - C:\Users\usert\AppData\Roaming\Mozilla\Firefox\Profiles\nspwuyrd.default\Extensions\{9AA46F4F-4DC7-4c06-97AF-5035170634FE}.xpi FF Extension: No Name - C:\Users\usert\AppData\Roaming\Mozilla\Firefox\Profiles\nspwuyrd.default\Extensions\{c0c9a2c7-2e5c-4447-bc53-97718bc91e1b}.xpi Chrome: ======= CHR Extension: (Kaspersky URL Advisor) - C:\Users\usert\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\13.0.1.4190_0 CHR Extension: (Safe Money) - C:\Users\usert\AppData\Local\Google\Chrome\User Data\Default\Extensions\hakdifolhalapjijoafobooafbilfakh\13.0.1.4190_0 CHR Extension: (Content Blocker) - C:\Users\usert\AppData\Local\Google\Chrome\User Data\Default\Extensions\hghkgaeecgjhjkannahfamoehjmkjail\13.0.1.4190_0 CHR Extension: (Virtual Keyboard) - C:\Users\usert\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh\13.0.1.4292_0 CHR Extension: (Plus-HD-2.2) - C:\Users\usert\AppData\Local\Google\Chrome\User Data\Default\Extensions\kfakeonomonapccoamcmdgpoaicnpnoo\1.23.10_0 CHR Extension: (Anti-Banner) - C:\Users\usert\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman\13.0.1.4190_0 ==================== Services (Whitelisted) ================= S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.) R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe [356376 2012-12-13] (Kaspersky Lab ZAO) R2 BlueSoleilCS; C:\Program Files (x86)\IVT Corporation\BlueSoleil\BlueSoleilCS.exe [997376 2011-07-08] (IVT Corporation) R2 BrowserDefendert; C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe [2827728 2013-05-23] () R3 BsHelpCS; C:\Program Files (x86)\IVT Corporation\BlueSoleil\BsHelpCS.exe [192000 2011-04-13] (IVT Corporation) R2 BsMobileCS; C:\Program Files (x86)\IVT Corporation\BlueSoleil\BsMobileCS.exe [147563 2011-04-13] (IVT Corporation) R2 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [393032 2013-05-13] (BlueStack Systems, Inc.) R2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [384840 2013-05-13] (BlueStack Systems, Inc.) S3 McComponentHostService; C:\Program Files (x86)\McAfee Security Scan\3.0.318\McCHSvc.exe [235216 2013-02-05] (McAfee, Inc.) S3 Roxio UPnP Renderer 10; C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe [313840 2009-11-25] (Sonic Solutions) S2 Roxio Upnp Server 10; C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUpnpService10.exe [362992 2009-11-25] (Sonic Solutions) S3 SampleCollector; C:\Program Files\Sony\VAIO Care\collsvc.exe [168448 2009-12-22] (Sony of America Corporation) S3 SpfService; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService.exe [302448 2010-02-08] (Sony Corporation) R2 TGCM_ImportWiFiSvc; C:\Program Files (x86)\o2\Mobile Connection Manager\ImpWiFiSvc.exe [200624 2010-09-29] (Telefónica I+D) R2 uCamMonitor; C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [104960 2008-09-18] (ArcSoft, Inc.) S3 VAIO Entertainment TV Device Arbitration Service; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzHardwareResourceManager\VzHardwareResourceManager\VzHardwareResourceManager.exe [69632 2010-04-08] (Sony Corporation) R3 VUAgent; C:\Program Files\Sony\VAIO Update 5\VUAgent.exe [1203568 2010-01-22] (Sony Corporation) R2 WebCake Desktop Updater; C:\Program Files (x86)\WebCake\WebCakeDesktop.Updater.exe [23552 2013-06-07] (WebCake LLC) ==================== Drivers (Whitelisted) ==================== R3 ArcSoftKsUFilter; C:\Windows\System32\DRIVERS\ArcSoftKsUFilter.sys [19968 2009-05-26] (ArcSoft, Inc.) R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [70984 2013-05-13] (BlueStack Systems) R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [70984 2013-05-13] (BlueStack Systems) S3 BT; C:\Windows\System32\DRIVERS\btnetdrv.sys [20488 2010-08-18] (IVT Corporation.) S3 BTCOM; C:\Windows\System32\DRIVERS\btcomport.sys [29448 2010-08-26] (IVT Corporation.) R3 BTCOMBUS; C:\Windows\System32\Drivers\btcombus.sys [25352 2010-08-26] (IVT Corporation.) R0 BtHidBus; C:\Windows\System32\Drivers\BtHidBus.sys [23944 2010-04-06] (IVT Corporation.) R3 btnetBUs; C:\Windows\System32\Drivers\btnetBus.sys [30088 2010-04-06] () S3 ewusbnet; C:\Windows\System32\DRIVERS\ewusbnet.sys [256000 2010-08-31] (Huawei Technologies Co., Ltd.) R3 IvtBtBUs; C:\Windows\System32\Drivers\IvtBtBus.sys [27016 2010-04-06] (IVT Corporation.) R0 KL1; C:\Windows\System32\DRIVERS\kl1.sys [458584 2012-06-19] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [620128 2013-04-23] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [28504 2012-08-02] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29016 2012-10-25] (Kaspersky Lab) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29528 2012-10-25] (Kaspersky Lab) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [54368 2013-06-18] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [178448 2013-04-23] (Kaspersky Lab ZAO) S3 TFsExDisk; \??\C:\Windows\System32\Drivers\TFsExDisk.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-06-25 20:25 - 2013-06-25 20:56 - 00025796 ____A C:\Users\usert\Downloads\Addition.txt 2013-06-25 20:22 - 2013-06-25 20:22 - 01931854 ____A (Farbar) C:\Users\usert\Downloads\FRST64.exe 2013-06-25 20:22 - 2013-06-25 20:22 - 00000000 ____D C:\FRST 2013-06-25 13:13 - 2013-06-25 13:14 - 00000000 ____D C:\Users\usert\AppData\Local\{4720D2AC-2968-41AB-A4A7-1057A1C10190} 2013-06-24 20:24 - 2013-06-24 20:24 - 00000000 ____D C:\Users\usert\AppData\Local\{7136D88E-EA3E-4D53-96D0-15C027EDAEF2} 2013-06-23 12:49 - 2013-06-23 12:50 - 44060559 ____A C:\Users\usert\Downloads\DefqonWasted.rar 2013-06-23 12:44 - 2013-06-23 12:44 - 00000000 ____D C:\Users\usert\AppData\Local\{0B411A6F-5804-4796-8596-3C20B1A48018} 2013-06-22 21:12 - 2013-06-22 21:12 - 00000155 ____A C:\Users\usert\Downloads\q-danceradio.pls 2013-06-22 12:51 - 2013-06-22 12:51 - 00000000 ____D C:\Users\usert\AppData\Local\{5BE5CDF4-06C0-4796-AFAC-7EE347B4F642} 2013-06-22 00:56 - 2013-06-22 00:56 - 00000000 ____D C:\ProgramData\BrowserDefender 2013-06-22 00:55 - 2013-06-22 00:55 - 00000000 ____D C:\Users\usert\AppData\Roaming\Delta 2013-06-22 00:55 - 2013-06-22 00:55 - 00000000 ____D C:\Users\usert\AppData\Roaming\Babylon 2013-06-22 00:55 - 2013-06-22 00:55 - 00000000 ____D C:\Users\usert\AppData\Roaming\BabSolution 2013-06-22 00:55 - 2013-06-22 00:55 - 00000000 ____D C:\ProgramData\Babylon 2013-06-22 00:55 - 2013-06-22 00:55 - 00000000 ____D C:\Program Files (x86)\Delta 2013-06-22 00:54 - 2013-06-25 20:03 - 00001198 ____A C:\Windows\Tasks\Plus-HD-2.2-codedownloader.job 2013-06-22 00:54 - 2013-06-25 20:03 - 00001194 ____A C:\Windows\Tasks\Plus-HD-2.2-updater.job 2013-06-22 00:54 - 2013-06-25 20:03 - 00001098 ____A C:\Windows\Tasks\Plus-HD-2.2-enabler.job 2013-06-22 00:54 - 2013-06-22 00:54 - 00000000 ____D C:\Users\usert\AppData\Roaming\WebCake 2013-06-22 00:54 - 2013-06-22 00:54 - 00000000 ____D C:\Program Files (x86)\WebCake 2013-06-22 00:53 - 2013-06-25 20:03 - 00001906 ____A C:\Windows\Tasks\Plus-HD-2.2-chromeinstaller.job 2013-06-22 00:53 - 2013-06-25 20:03 - 00001830 ____A C:\Windows\Tasks\Plus-HD-2.2-firefoxinstaller.job 2013-06-22 00:53 - 2013-06-22 00:54 - 00000000 ____D C:\Program Files (x86)\Plus-HD-2.2 2013-06-22 00:52 - 2013-06-22 00:52 - 00000000 ____D C:\Users\usert\AppData\Local\PutLockerDownloader 2013-06-21 09:48 - 2013-06-21 09:49 - 00000000 ____D C:\Users\usert\AppData\Local\{84628049-08FD-4960-A970-E15A2AFB2CE4} 2013-06-20 22:31 - 2013-06-20 22:32 - 61811828 ____A C:\Users\usert\Downloads\Hard Driver - Hate (16 bit master final).wav 2013-06-20 21:48 - 2013-06-20 21:48 - 00000000 ____D C:\Users\usert\AppData\Local\{1CDF1967-E150-4E4E-96AC-3A35C88BEA2D} 2013-06-19 20:57 - 2013-06-19 20:58 - 00000000 ____D C:\Users\usert\AppData\Local\{071D30E6-100C-4EA3-8ADE-830642B97749} 2013-06-18 21:05 - 2013-06-18 21:06 - 00000000 ____D C:\Users\usert\AppData\Local\{041199E2-6B34-4FBA-BAC1-2D0409E89941} 2013-06-17 20:44 - 2013-06-17 20:45 - 78158460 ____A C:\Users\usert\Downloads\Neilio - Grains Of Sand (2013 Re-amp) 16 bit master.wav 2013-06-17 20:03 - 2013-06-17 20:03 - 00000000 ____D C:\Users\usert\AppData\Local\{D50845D9-EE60-4068-97DC-FAE7F6A54A6A} 2013-06-16 14:40 - 2013-06-08 16:08 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2013-06-16 14:40 - 2013-06-08 16:07 - 19233792 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2013-06-16 14:40 - 2013-06-08 16:06 - 15404544 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2013-06-16 14:40 - 2013-06-08 16:06 - 02648064 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2013-06-16 14:40 - 2013-06-08 16:06 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll 2013-06-16 14:40 - 2013-06-08 14:28 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2013-06-16 14:40 - 2013-06-08 13:42 - 01141248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-06-16 14:40 - 2013-06-08 13:40 - 14327808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-06-16 14:40 - 2013-06-08 13:40 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-06-16 14:40 - 2013-06-08 13:40 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-06-16 14:40 - 2013-06-08 13:40 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-06-16 14:40 - 2013-06-08 13:13 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-06-16 14:34 - 2013-06-16 14:34 - 00000000 ____D C:\Users\usert\AppData\Local\{FA58383D-5E88-483C-A7C9-D4CC3B54BB1B} 2013-06-15 20:33 - 2013-06-15 20:33 - 00000000 ____D C:\Users\usert\AppData\Local\{A7DB0508-7F61-45B1-9D01-E518049406B0} 2013-06-15 01:55 - 2013-06-15 01:55 - 00000000 ____D C:\Users\usert\AppData\Local\{0AE2246D-589B-4235-8FDA-B5558DCB2DEC} 2013-06-14 21:50 - 2013-06-14 21:52 - 106582571 ____A C:\Users\usert\Downloads\004 Digital Punk - Unleashed (powered by A² Records).m4a 2013-06-14 13:54 - 2013-06-14 13:54 - 00000000 ____D C:\Users\usert\AppData\Local\{214629F9-2693-457D-9B16-3AC84987723B} 2013-06-13 20:21 - 2013-05-17 03:25 - 00109056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-06-13 20:21 - 2013-05-17 03:25 - 00061440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-06-13 20:21 - 2013-05-17 03:25 - 00033280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-06-13 20:21 - 2013-05-17 02:59 - 00051712 ____A (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe 2013-06-13 20:21 - 2013-05-17 02:58 - 00136704 ____A (Microsoft Corporation) C:\Windows\System32\iesysprep.dll 2013-06-13 20:21 - 2013-05-17 02:58 - 00067072 ____A (Microsoft Corporation) C:\Windows\System32\iesetup.dll 2013-06-13 20:21 - 2013-05-17 02:58 - 00039936 ____A (Microsoft Corporation) C:\Windows\System32\iernonce.dll 2013-06-13 20:21 - 2013-05-14 14:23 - 00089600 ____A (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe 2013-06-13 20:21 - 2013-05-14 10:40 - 00071680 ____A (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-06-13 20:20 - 2013-05-17 03:25 - 02877440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-06-13 20:20 - 2013-05-17 03:25 - 01767936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-06-13 20:20 - 2013-05-17 03:25 - 00690688 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-06-13 20:20 - 2013-05-17 03:25 - 00493056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-06-13 20:20 - 2013-05-17 03:25 - 00039424 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-06-13 20:20 - 2013-05-17 02:59 - 02241024 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll 2013-06-13 20:20 - 2013-05-17 02:58 - 03958784 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll 2013-06-13 20:20 - 2013-05-17 02:58 - 00855552 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll 2013-06-13 20:20 - 2013-05-17 02:58 - 00603136 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll 2013-06-13 20:20 - 2013-05-17 02:58 - 00053248 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll 2013-06-13 20:11 - 2013-06-13 20:11 - 00000000 ____D C:\Users\usert\AppData\Local\{FC95619B-77CB-4CC9-9469-6F9661AF0264} 2013-06-12 20:15 - 2013-05-13 07:51 - 01464320 ____A (Microsoft Corporation) C:\Windows\System32\crypt32.dll 2013-06-12 20:15 - 2013-05-13 07:51 - 00184320 ____A (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll 2013-06-12 20:15 - 2013-05-13 07:51 - 00139776 ____A (Microsoft Corporation) C:\Windows\System32\cryptnet.dll 2013-06-12 20:15 - 2013-05-13 07:50 - 00052224 ____A (Microsoft Corporation) C:\Windows\System32\certenc.dll 2013-06-12 20:15 - 2013-05-13 06:45 - 01160192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-06-12 20:15 - 2013-05-13 06:45 - 00140288 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2013-06-12 20:15 - 2013-05-13 06:45 - 00103936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2013-06-12 20:15 - 2013-05-13 05:43 - 01192448 ____A (Microsoft Corporation) C:\Windows\System32\certutil.exe 2013-06-12 20:15 - 2013-05-13 05:08 - 00903168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2013-06-12 20:15 - 2013-05-13 05:08 - 00043008 ____A (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll 2013-06-12 20:15 - 2013-05-10 07:49 - 00030720 ____A (Microsoft Corporation) C:\Windows\System32\cryptdlg.dll 2013-06-12 20:15 - 2013-05-10 05:20 - 00024576 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2013-06-12 20:15 - 2013-05-08 08:39 - 01910632 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys 2013-06-12 20:15 - 2013-04-26 07:51 - 00751104 ____A (Microsoft Corporation) C:\Windows\System32\win32spl.dll 2013-06-12 20:15 - 2013-04-26 06:55 - 00492544 ____A (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2013-06-12 20:15 - 2013-04-17 09:02 - 01230336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2013-06-12 20:15 - 2013-04-17 08:24 - 01424384 ____A (Microsoft Corporation) C:\Windows\System32\WindowsCodecs.dll 2013-06-12 20:13 - 2013-04-26 01:30 - 01505280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2013-06-12 20:13 - 2013-04-01 00:52 - 01887232 ____A (Microsoft Corporation) C:\Windows\System32\d3d11.dll 2013-06-12 12:12 - 2013-06-12 12:12 - 00000000 ____D C:\Users\usert\AppData\Local\{9C9EBB0C-E715-46C4-A318-1D4A768472DF} 2013-06-11 20:04 - 2013-06-11 20:04 - 00000000 ____D C:\Users\usert\AppData\Local\{2B3E8071-43EA-47DB-B9C1-62C36C942B3A} 2013-06-11 01:10 - 2013-06-11 01:10 - 19004761 ____A C:\Users\usert\Downloads\Assassin s Creed 4 Trailer #2 (E3 2013) (HD).mp4 2013-06-11 01:09 - 2013-06-11 01:09 - 42454006 ____A C:\Users\usert\Downloads\Assassin s Creed 4 Trailer (E3 2013) (HD).mp4 2013-06-10 20:02 - 2013-06-10 20:02 - 00000000 ____D C:\Users\usert\AppData\Local\{A0C8D8D8-EDDB-4E2C-BCE2-D8AD067860CD} 2013-06-09 19:35 - 2013-06-09 19:35 - 00000000 ____D C:\Users\usert\AppData\Local\{7116CD80-6E96-41AD-9D16-D9EB2EF13CC1} 2013-06-08 22:39 - 2009-04-07 09:39 - 00016392 ____A (Teruten Inc) C:\Windows\SysWOW64\Drivers\TFsExDisk.Sys 2013-06-08 20:09 - 2013-06-08 20:09 - 00000000 ____D C:\Users\usert\AppData\Local\{913B6398-AF4D-4A25-9158-5B9A3A372418} 2013-06-07 19:59 - 2013-06-07 19:59 - 00000000 ____D C:\Users\usert\AppData\Local\{07534A17-73EF-4417-B3D3-2DE03AD4CFC0} 2013-06-06 17:56 - 2013-06-06 17:57 - 00000000 ____D C:\Users\usert\AppData\Local\{D66E8C4B-71F1-45E3-9AA6-098249B60791} 2013-06-05 23:16 - 2013-06-05 23:16 - 00000000 ____D C:\Users\usert\AppData\Local\{A51DF9E3-906B-46C1-862E-A0FC266A4F0B} 2013-06-05 11:16 - 2013-06-05 11:16 - 00000000 ____D C:\Users\usert\AppData\Local\{78E57669-B704-463E-9D09-43E2041C38AA} 2013-06-05 00:17 - 2013-06-05 00:18 - 26274394 ____A C:\Users\usert\Downloads\Frontliner_-_Weekend_Warriors_(Official_Defqon_1_2013_Anthem)-(Q071)-WEB-2013-HB.rar 2013-06-04 20:07 - 2013-06-04 20:07 - 00000000 ____D C:\Users\usert\AppData\Local\{D98FB967-71AB-4707-B0E6-F6DE26CC45CD} 2013-06-03 16:20 - 2013-06-03 16:20 - 00000000 ____D C:\Users\usert\AppData\Local\{5DDAA1A1-EC94-42BF-A42D-74EA4003A96B} 2013-06-02 19:20 - 2013-06-02 19:20 - 00000000 ____D C:\Users\usert\AppData\Local\{59057E55-80AB-4B11-B852-15CA1556D0F7} 2013-06-01 14:15 - 2013-06-01 14:16 - 00000000 ____D C:\Users\usert\AppData\Local\{94CB5ABC-4276-4FCF-8308-4CFD97F5775A} 2013-06-01 00:26 - 2013-06-01 00:26 - 06267463 ____A C:\Users\usert\Downloads\Radical Redemption & Frequencerz - Insanity (HQ Official).M4A 2013-05-31 22:59 - 2013-05-31 22:59 - 00000000 ____D C:\Users\usert\AppData\Local\{2F6B4B4D-C498-467F-AB4C-5A4F726CE1B0} 2013-05-30 23:39 - 2013-05-30 23:39 - 12603833 ____A C:\Users\usert\Downloads\FC Barcelona - Merci Abidal! (SD).mp4 2013-05-30 23:20 - 2013-05-30 23:20 - 05358227 ____A C:\Users\usert\Downloads\Wildstylez - Back To History (feat Cimo Fränkel) Intents Anthem 2013.M4A 2013-05-30 23:10 - 2013-05-30 23:10 - 04464277 ____A C:\Users\usert\Downloads\Alpha² & Noisecontrollers -- Craving for the beat (official Decibel 2013 anthem).M4A 2013-05-30 19:42 - 2013-05-30 19:42 - 00000000 ____D C:\Users\usert\AppData\Local\{6316658E-908D-4595-9DB9-E775B987E449} 2013-05-29 20:30 - 2013-05-29 20:30 - 04569646 ____A C:\Users\usert\Downloads\Frequencerz - Bitch (Crypsis Remix) HD.M4A 2013-05-29 19:43 - 2013-05-29 19:43 - 00000000 ____D C:\Users\usert\AppData\Local\{491A8495-8C94-4E94-BF00-E5CB91FFD361} 2013-05-28 19:10 - 2013-05-28 19:10 - 00000000 ____D C:\Users\usert\AppData\Local\{2B9CA7E9-7531-4C03-A269-5A8DF07A87F8} 2013-05-28 00:47 - 2013-05-28 00:47 - 03067609 ____A C:\Users\usert\Downloads\255876.zip 2013-05-27 20:01 - 2013-05-27 20:01 - 00000000 ____D C:\Users\usert\AppData\Local\{315FC9A2-6D5C-4D09-9F57-496A562F6B6C} 2013-05-27 01:37 - 2013-05-27 01:37 - 11285979 ____A C:\Users\usert\Downloads\Digital_Punk_and_Crypsis_-_Radiant-(A2REC050)-WEB-2013-HB.rar 2013-05-26 13:01 - 2013-05-26 13:02 - 00000000 ____D C:\Users\usert\AppData\Local\{1ECD1AA4-A14A-4536-BB5D-894803462457} 2013-05-26 02:51 - 2013-05-26 02:51 - 00000000 ____D C:\Users\usert\AppData\Roaming\TuneUp Software 2013-05-26 02:51 - 2013-05-26 02:51 - 00000000 ____D C:\ProgramData\TuneUp Software 2013-05-26 02:50 - 2013-05-26 02:50 - 00000000 __SHD C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F} 2013-05-26 02:49 - 2013-05-26 02:49 - 00002271 ____A C:\Users\Public\Desktop\Free 3GP Video Converter.lnk 2013-05-26 02:49 - 2013-05-26 02:49 - 00001239 ____A C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk 2013-05-26 02:49 - 2013-05-26 02:49 - 00000000 ____D C:\Users\usert\AppData\Roaming\OpenCandy 2013-05-26 02:49 - 2013-05-26 02:49 - 00000000 ____D C:\Users\usert\AppData\Roaming\DVDVideoSoft 2013-05-26 02:49 - 2013-05-26 02:49 - 00000000 ____D C:\Program Files (x86)\DVDVideoSoft 2013-05-26 02:48 - 2013-05-26 02:48 - 23996032 ____A (DVDVideoSoft Ltd. ) C:\Users\usert\Downloads\Free3GPVideoConverter_5024430.exe ==================== One Month Modified Files and Folders ======= 2013-06-25 21:04 - 2012-07-13 20:28 - 00000000 ____D C:\Users\usert\AppData\Roaming\Skype 2013-06-25 20:56 - 2013-06-25 20:25 - 00025796 ____A C:\Users\usert\Downloads\Addition.txt 2013-06-25 20:53 - 2012-07-20 19:57 - 00000884 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-06-25 20:49 - 2012-07-13 20:19 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2013-06-25 20:46 - 2011-09-28 11:39 - 01247211 ____A C:\Windows\WindowsUpdate.log 2013-06-25 20:46 - 2009-07-14 06:51 - 00113221 ____A C:\Windows\setupact.log 2013-06-25 20:31 - 2011-09-28 11:58 - 00001124 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-06-25 20:26 - 2009-07-14 06:45 - 00013936 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-06-25 20:26 - 2009-07-14 06:45 - 00013936 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-06-25 20:22 - 2013-06-25 20:22 - 01931854 ____A (Farbar) C:\Users\usert\Downloads\FRST64.exe 2013-06-25 20:22 - 2013-06-25 20:22 - 00000000 ____D C:\FRST 2013-06-25 20:08 - 2011-07-08 15:59 - 00001067 ____A C:\Windows\SysWOW64\bscs.ini 2013-06-25 20:04 - 2012-07-28 19:27 - 00000000 ____D C:\Users\usert\Tracing 2013-06-25 20:03 - 2013-06-22 00:54 - 00001198 ____A C:\Windows\Tasks\Plus-HD-2.2-codedownloader.job 2013-06-25 20:03 - 2013-06-22 00:54 - 00001194 ____A C:\Windows\Tasks\Plus-HD-2.2-updater.job 2013-06-25 20:03 - 2013-06-22 00:54 - 00001098 ____A C:\Windows\Tasks\Plus-HD-2.2-enabler.job 2013-06-25 20:03 - 2013-06-22 00:53 - 00001906 ____A C:\Windows\Tasks\Plus-HD-2.2-chromeinstaller.job 2013-06-25 20:03 - 2013-06-22 00:53 - 00001830 ____A C:\Windows\Tasks\Plus-HD-2.2-firefoxinstaller.job 2013-06-25 20:03 - 2011-09-28 11:58 - 00001120 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-06-25 20:02 - 2009-07-14 07:08 - 00032632 ____A C:\Windows\Tasks\SCHEDLGU.TXT 2013-06-25 20:02 - 2009-07-14 07:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT 2013-06-25 13:14 - 2013-06-25 13:13 - 00000000 ____D C:\Users\usert\AppData\Local\{4720D2AC-2968-41AB-A4A7-1057A1C10190} 2013-06-24 20:24 - 2013-06-24 20:24 - 00000000 ____D C:\Users\usert\AppData\Local\{7136D88E-EA3E-4D53-96D0-15C027EDAEF2} 2013-06-23 12:50 - 2013-06-23 12:49 - 44060559 ____A C:\Users\usert\Downloads\DefqonWasted.rar 2013-06-23 12:44 - 2013-06-23 12:44 - 00000000 ____D C:\Users\usert\AppData\Local\{0B411A6F-5804-4796-8596-3C20B1A48018} 2013-06-22 21:12 - 2013-06-22 21:12 - 00000155 ____A C:\Users\usert\Downloads\q-danceradio.pls 2013-06-22 12:51 - 2013-06-22 12:51 - 00000000 ____D C:\Users\usert\AppData\Local\{5BE5CDF4-06C0-4796-AFAC-7EE347B4F642} 2013-06-22 12:47 - 2011-09-28 12:34 - 00015788 ____A C:\Windows\PFRO.log 2013-06-22 00:56 - 2013-06-22 00:56 - 00000000 ____D C:\ProgramData\BrowserDefender 2013-06-22 00:56 - 2013-05-24 00:16 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-06-22 00:55 - 2013-06-22 00:55 - 00000000 ____D C:\Users\usert\AppData\Roaming\Delta 2013-06-22 00:55 - 2013-06-22 00:55 - 00000000 ____D C:\Users\usert\AppData\Roaming\Babylon 2013-06-22 00:55 - 2013-06-22 00:55 - 00000000 ____D C:\Users\usert\AppData\Roaming\BabSolution 2013-06-22 00:55 - 2013-06-22 00:55 - 00000000 ____D C:\ProgramData\Babylon 2013-06-22 00:55 - 2013-06-22 00:55 - 00000000 ____D C:\Program Files (x86)\Delta 2013-06-22 00:54 - 2013-06-22 00:54 - 00000000 ____D C:\Users\usert\AppData\Roaming\WebCake 2013-06-22 00:54 - 2013-06-22 00:54 - 00000000 ____D C:\Program Files (x86)\WebCake 2013-06-22 00:54 - 2013-06-22 00:53 - 00000000 ____D C:\Program Files (x86)\Plus-HD-2.2 2013-06-22 00:52 - 2013-06-22 00:52 - 00000000 ____D C:\Users\usert\AppData\Local\PutLockerDownloader 2013-06-21 21:34 - 2012-07-24 00:31 - 00000000 ____D C:\Users\usert\AppData\Roaming\vlc 2013-06-21 09:49 - 2013-06-21 09:48 - 00000000 ____D C:\Users\usert\AppData\Local\{84628049-08FD-4960-A970-E15A2AFB2CE4} 2013-06-20 22:32 - 2013-06-20 22:31 - 61811828 ____A C:\Users\usert\Downloads\Hard Driver - Hate (16 bit master final).wav 2013-06-20 21:48 - 2013-06-20 21:48 - 00000000 ____D C:\Users\usert\AppData\Local\{1CDF1967-E150-4E4E-96AC-3A35C88BEA2D} 2013-06-19 20:58 - 2013-06-19 20:57 - 00000000 ____D C:\Users\usert\AppData\Local\{071D30E6-100C-4EA3-8ADE-830642B97749} 2013-06-18 21:23 - 2012-06-08 12:38 - 00054368 ____A (Kaspersky Lab ZAO) C:\Windows\System32\Drivers\kltdi.sys 2013-06-18 21:06 - 2013-06-18 21:05 - 00000000 ____D C:\Users\usert\AppData\Local\{041199E2-6B34-4FBA-BAC1-2D0409E89941} 2013-06-17 20:45 - 2013-06-17 20:44 - 78158460 ____A C:\Users\usert\Downloads\Neilio - Grains Of Sand (2013 Re-amp) 16 bit master.wav 2013-06-17 20:03 - 2013-06-17 20:03 - 00000000 ____D C:\Users\usert\AppData\Local\{D50845D9-EE60-4068-97DC-FAE7F6A54A6A} 2013-06-16 14:34 - 2013-06-16 14:34 - 00000000 ____D C:\Users\usert\AppData\Local\{FA58383D-5E88-483C-A7C9-D4CC3B54BB1B} 2013-06-15 20:33 - 2013-06-15 20:33 - 00000000 ____D C:\Users\usert\AppData\Local\{A7DB0508-7F61-45B1-9D01-E518049406B0} 2013-06-15 02:09 - 2012-07-15 22:59 - 00000000 ____D C:\Users\usert\Downloads\Ass 2013-06-15 01:55 - 2013-06-15 01:55 - 00000000 ____D C:\Users\usert\AppData\Local\{0AE2246D-589B-4235-8FDA-B5558DCB2DEC} 2013-06-14 21:52 - 2013-06-14 21:50 - 106582571 ____A C:\Users\usert\Downloads\004 Digital Punk - Unleashed (powered by A² Records).m4a 2013-06-14 13:54 - 2013-06-14 13:54 - 00000000 ____D C:\Users\usert\AppData\Local\{214629F9-2693-457D-9B16-3AC84987723B} 2013-06-13 20:29 - 2009-07-14 04:34 - 00000499 ____A C:\Windows\win.ini 2013-06-13 20:22 - 2012-07-14 00:59 - 75825640 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe 2013-06-13 20:11 - 2013-06-13 20:11 - 00000000 ____D C:\Users\usert\AppData\Local\{FC95619B-77CB-4CC9-9469-6F9661AF0264} 2013-06-13 00:44 - 2012-08-03 22:01 - 00000000 ____D C:\Users\usert\Documents\Handy 2013-06-12 20:00 - 2013-01-23 12:52 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-06-12 20:00 - 2011-09-28 12:12 - 00000000 ____D C:\ProgramData\Skype 2013-06-12 12:12 - 2013-06-12 12:12 - 00000000 ____D C:\Users\usert\AppData\Local\{9C9EBB0C-E715-46C4-A318-1D4A768472DF} 2013-06-11 20:53 - 2012-07-20 19:57 - 00692104 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-06-11 20:53 - 2012-07-20 19:57 - 00071048 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-06-11 20:04 - 2013-06-11 20:04 - 00000000 ____D C:\Users\usert\AppData\Local\{2B3E8071-43EA-47DB-B9C1-62C36C942B3A} 2013-06-11 01:10 - 2013-06-11 01:10 - 19004761 ____A C:\Users\usert\Downloads\Assassin s Creed 4 Trailer #2 (E3 2013) (HD).mp4 2013-06-11 01:09 - 2013-06-11 01:09 - 42454006 ____A C:\Users\usert\Downloads\Assassin s Creed 4 Trailer (E3 2013) (HD).mp4 2013-06-10 20:02 - 2013-06-10 20:02 - 00000000 ____D C:\Users\usert\AppData\Local\{A0C8D8D8-EDDB-4E2C-BCE2-D8AD067860CD} 2013-06-09 19:35 - 2013-06-09 19:35 - 00000000 ____D C:\Users\usert\AppData\Local\{7116CD80-6E96-41AD-9D16-D9EB2EF13CC1} 2013-06-08 20:09 - 2013-06-08 20:09 - 00000000 ____D C:\Users\usert\AppData\Local\{913B6398-AF4D-4A25-9158-5B9A3A372418} 2013-06-08 16:08 - 2013-06-16 14:40 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2013-06-08 16:07 - 2013-06-16 14:40 - 19233792 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2013-06-08 16:06 - 2013-06-16 14:40 - 15404544 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2013-06-08 16:06 - 2013-06-16 14:40 - 02648064 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2013-06-08 16:06 - 2013-06-16 14:40 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll 2013-06-08 14:28 - 2013-06-16 14:40 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2013-06-08 13:42 - 2013-06-16 14:40 - 01141248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-06-08 13:40 - 2013-06-16 14:40 - 14327808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-06-08 13:40 - 2013-06-16 14:40 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-06-08 13:40 - 2013-06-16 14:40 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-06-08 13:40 - 2013-06-16 14:40 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-06-08 13:13 - 2013-06-16 14:40 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-06-07 19:59 - 2013-06-07 19:59 - 00000000 ____D C:\Users\usert\AppData\Local\{07534A17-73EF-4417-B3D3-2DE03AD4CFC0} 2013-06-06 17:57 - 2013-06-06 17:56 - 00000000 ____D C:\Users\usert\AppData\Local\{D66E8C4B-71F1-45E3-9AA6-098249B60791} 2013-06-05 23:16 - 2013-06-05 23:16 - 00000000 ____D C:\Users\usert\AppData\Local\{A51DF9E3-906B-46C1-862E-A0FC266A4F0B} 2013-06-05 11:16 - 2013-06-05 11:16 - 00000000 ____D C:\Users\usert\AppData\Local\{78E57669-B704-463E-9D09-43E2041C38AA} 2013-06-05 00:18 - 2013-06-05 00:17 - 26274394 ____A C:\Users\usert\Downloads\Frontliner_-_Weekend_Warriors_(Official_Defqon_1_2013_Anthem)-(Q071)-WEB-2013-HB.rar 2013-06-04 20:07 - 2013-06-04 20:07 - 00000000 ____D C:\Users\usert\AppData\Local\{D98FB967-71AB-4707-B0E6-F6DE26CC45CD} 2013-06-03 16:20 - 2013-06-03 16:20 - 00000000 ____D C:\Users\usert\AppData\Local\{5DDAA1A1-EC94-42BF-A42D-74EA4003A96B} 2013-06-02 19:20 - 2013-06-02 19:20 - 00000000 ____D C:\Users\usert\AppData\Local\{59057E55-80AB-4B11-B852-15CA1556D0F7} 2013-06-01 14:16 - 2013-06-01 14:15 - 00000000 ____D C:\Users\usert\AppData\Local\{94CB5ABC-4276-4FCF-8308-4CFD97F5775A} 2013-06-01 00:26 - 2013-06-01 00:26 - 06267463 ____A C:\Users\usert\Downloads\Radical Redemption & Frequencerz - Insanity (HQ Official).M4A 2013-05-31 22:59 - 2013-05-31 22:59 - 00000000 ____D C:\Users\usert\AppData\Local\{2F6B4B4D-C498-467F-AB4C-5A4F726CE1B0} 2013-05-30 23:39 - 2013-05-30 23:39 - 12603833 ____A C:\Users\usert\Downloads\FC Barcelona - Merci Abidal! (SD).mp4 2013-05-30 23:20 - 2013-05-30 23:20 - 05358227 ____A C:\Users\usert\Downloads\Wildstylez - Back To History (feat Cimo Fränkel) Intents Anthem 2013.M4A 2013-05-30 23:10 - 2013-05-30 23:10 - 04464277 ____A C:\Users\usert\Downloads\Alpha² & Noisecontrollers -- Craving for the beat (official Decibel 2013 anthem).M4A 2013-05-30 19:42 - 2013-05-30 19:42 - 00000000 ____D C:\Users\usert\AppData\Local\{6316658E-908D-4595-9DB9-E775B987E449} 2013-05-29 20:30 - 2013-05-29 20:30 - 04569646 ____A C:\Users\usert\Downloads\Frequencerz - Bitch (Crypsis Remix) HD.M4A 2013-05-29 19:43 - 2013-05-29 19:43 - 00000000 ____D C:\Users\usert\AppData\Local\{491A8495-8C94-4E94-BF00-E5CB91FFD361} 2013-05-28 19:10 - 2013-05-28 19:10 - 00000000 ____D C:\Users\usert\AppData\Local\{2B9CA7E9-7531-4C03-A269-5A8DF07A87F8} 2013-05-28 00:47 - 2013-05-28 00:47 - 03067609 ____A C:\Users\usert\Downloads\255876.zip 2013-05-27 20:01 - 2013-05-27 20:01 - 00000000 ____D C:\Users\usert\AppData\Local\{315FC9A2-6D5C-4D09-9F57-496A562F6B6C} 2013-05-27 01:37 - 2013-05-27 01:37 - 11285979 ____A C:\Users\usert\Downloads\Digital_Punk_and_Crypsis_-_Radiant-(A2REC050)-WEB-2013-HB.rar 2013-05-26 13:29 - 2011-09-28 16:43 - 00000000 ____D C:\Users\usert\AppData\Local\VirtualStore 2013-05-26 13:02 - 2013-05-26 13:01 - 00000000 ____D C:\Users\usert\AppData\Local\{1ECD1AA4-A14A-4536-BB5D-894803462457} 2013-05-26 02:51 - 2013-05-26 02:51 - 00000000 ____D C:\Users\usert\AppData\Roaming\TuneUp Software 2013-05-26 02:51 - 2013-05-26 02:51 - 00000000 ____D C:\ProgramData\TuneUp Software 2013-05-26 02:50 - 2013-05-26 02:50 - 00000000 __SHD C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F} 2013-05-26 02:49 - 2013-05-26 02:49 - 00002271 ____A C:\Users\Public\Desktop\Free 3GP Video Converter.lnk 2013-05-26 02:49 - 2013-05-26 02:49 - 00001239 ____A C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk 2013-05-26 02:49 - 2013-05-26 02:49 - 00000000 ____D C:\Users\usert\AppData\Roaming\OpenCandy 2013-05-26 02:49 - 2013-05-26 02:49 - 00000000 ____D C:\Users\usert\AppData\Roaming\DVDVideoSoft 2013-05-26 02:49 - 2013-05-26 02:49 - 00000000 ____D C:\Program Files (x86)\DVDVideoSoft 2013-05-26 02:48 - 2013-05-26 02:48 - 23996032 ____A (DVDVideoSoft Ltd. ) C:\Users\usert\Downloads\Free3GPVideoConverter_5024430.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-06-08 22:25 ==================== End Of Log ============================ --- --- --- Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 25-06-2013 01 Ran by usert at 2013-06-25 21:08:56 Running from C:\Users\usert\Downloads Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= Adobe Flash Player 10 ActiveX (x32 Version: 10.0.42.34) Adobe Flash Player 11 Plugin (x32 Version: 11.7.700.224) Adobe Reader X (10.1.4) - Deutsch (x32 Version: 10.1.4) Alps Pointing-device for VAIO Amazon MP3-Downloader 1.0.17 (x32 Version: 1.0.17) AMD USB Filter Driver (x32 Version: 1.0.15.94) Apple Application Support (x32 Version: 2.3.3) Apple Mobile Device Support (Version: 6.1.0.13) Apple Software Update (x32 Version: 2.1.3.127) ArcSoft Magic-i Visual Effects 2 (x32 Version: 2.0.1.85) ArcSoft WebCam Companion 3 (x32 Version: 3.0.21.278) ATI Catalyst Install Manager (Version: 3.0.765.0) Bing Bar (x32 Version: 7.0.619.0) BlueSoleil 8.0.356.0 (Version: 8.0.356.0) BlueStacks App Player (x32 Version: 0.7.12.896) BlueStacks Notification Center (x32 Version: 0.7.12.896) Bonjour (Version: 3.0.0.10) BrowserDefender (x32) Catalyst Control Center - Branding (x32 Version: 1.00.0000) Catalyst Control Center Core Implementation (x32 Version: 2010.0302.2233.40412) Catalyst Control Center Graphics Full Existing (x32 Version: 2010.0302.2233.40412) Catalyst Control Center Graphics Full New (x32 Version: 2010.0302.2233.40412) Catalyst Control Center Graphics Light (x32 Version: 2010.0302.2233.40412) Catalyst Control Center Graphics Previews Common (x32 Version: 2010.0302.2233.40412) Catalyst Control Center Graphics Previews Vista (x32 Version: 2010.0302.2233.40412) Catalyst Control Center InstallProxy (x32 Version: 2010.0302.2233.40412) Catalyst Control Center Localization All (x32 Version: 2010.0302.2233.40412) CCC Help Chinese Standard (x32 Version: 2010.0302.2232.40412) CCC Help Chinese Traditional (x32 Version: 2010.0302.2232.40412) CCC Help Czech (x32 Version: 2010.0302.2232.40412) CCC Help Danish (x32 Version: 2010.0302.2232.40412) CCC Help Dutch (x32 Version: 2010.0302.2232.40412) CCC Help English (x32 Version: 2010.0302.2232.40412) CCC Help Finnish (x32 Version: 2010.0302.2232.40412) CCC Help French (x32 Version: 2010.0302.2232.40412) CCC Help German (x32 Version: 2010.0302.2232.40412) CCC Help Greek (x32 Version: 2010.0302.2232.40412) CCC Help Hungarian (x32 Version: 2010.0302.2232.40412) CCC Help Italian (x32 Version: 2010.0302.2232.40412) CCC Help Japanese (x32 Version: 2010.0302.2232.40412) CCC Help Korean (x32 Version: 2010.0302.2232.40412) CCC Help Norwegian (x32 Version: 2010.0302.2232.40412) CCC Help Polish (x32 Version: 2010.0302.2232.40412) CCC Help Portuguese (x32 Version: 2010.0302.2232.40412) CCC Help Russian (x32 Version: 2010.0302.2232.40412) CCC Help Spanish (x32 Version: 2010.0302.2232.40412) CCC Help Swedish (x32 Version: 2010.0302.2232.40412) CCC Help Thai (x32 Version: 2010.0302.2232.40412) CCC Help Turkish (x32 Version: 2010.0302.2232.40412) ccc-core-static (x32 Version: 2010.0302.2233.40412) ccc-utility64 (Version: 2010.0302.2233.40412) Click to Disc MergeModules x64 (Version: 1.0.14230) Compatibility Pack für 2007 Office System (x32 Version: 12.0.6612.1000) D3DX10 (x32 Version: 15.4.2368.0902) Delta Chrome Toolbar (x32) Delta toolbar (x32 Version: 1.8.21.5) Einstellungen für VAIO-Inhaltsüberwachung (x32 Version: 2.5.0.13220) Evernote (x32 Version: 3.5.2.1525) Free 3GP Video Converter version 5.0.24.430 (x32 Version: 5.0.24.430) Free M4a to MP3 Converter 7.0 (x32) Google Chrome (x32 Version: 28.0.1500.52) Google Toolbar for Internet Explorer (x32 Version: 1.0.0) Google Toolbar for Internet Explorer (x32) Google Update Helper (x32 Version: 1.3.21.145) Gothic II - Die Nacht des Raben (x32) Gothic II (x32) HandBrake 0.9.6 (x32 Version: 0.9.6) HUAWEI DataCard Driver 4.20.12.00 (x32 Version: 4.20.12.00) Inhaltsmanager-Assistent für PlayStation(R) (x32 Version: 2.10.6402.20) IrfanView (remove only) (x32 Version: 4.32) iTunes (Version: 11.0.2.26) Java 7 Update 9 (x32 Version: 7.0.90) Java Auto Updater (x32 Version: 2.1.9.0) Java(TM) 6 Update 18 (64-bit) (Version: 6.0.180) Java(TM) 6 Update 18 (x32 Version: 6.0.180) Junk Mail filter update (x32 Version: 15.4.3502.0922) Kaspersky Internet Security 2013 (x32 Version: 13.0.1.4190) McAfee Security Scan Plus (x32 Version: 3.0.318.3) Media Gallery (x32 Version: 1.2.0.15040) Media Gallery MergeModules x64 (Version: 1.0.14250) Mesh Runtime (x32 Version: 15.4.5722.2) Messenger Companion (x32 Version: 15.4.3502.0922) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319) Microsoft Application Error Reporting (Version: 12.0.6015.5000) Microsoft Office 2010 (x32 Version: 14.0.4763.1000) Microsoft Office Professional Edition 2003 (x32 Version: 11.0.8173.0) Microsoft Silverlight (Version: 5.1.20125.0) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000) Microsoft SQL Server Compact 3.5 SP1 English (x32 Version: 3.5.5692.0) Microsoft SQL Server Compact 3.5 SP1 x64 English (Version: 3.5.5692.0) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Mobile Connection Manager (x32) Mozilla Firefox 21.0 (x86 de) (x32 Version: 21.0) Mozilla Maintenance Service (x32 Version: 21.0) MSI_SPF_x64 (Version: 1.0.0) MSVCRT (x32 Version: 15.4.2862.0708) MSVCRT_amd64 (x32 Version: 15.4.2862.0708) MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0) MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0) MusicStation (x32 Version: 2.0.4.1199) Nokia Connectivity Cable Driver (x32 Version: 7.0.2.0) Norton Online Backup (x32 Version: 1.2.20.0) PC Connectivity Solution (x32 Version: 8.22.7.0) PhotoScape (x32) Plus-HD-2.2 (x32 Version: 1.27.153.6) PMB (x32 Version: 5.1.02.03310) PMB VAIO Edition Guide (x32 Version: 1.1.00.14080) PMB VAIO Edition plug-in (Click to Disc) (x32 Version: 3.1.00.15080) PMB VAIO Edition plug-in (VAIO Image Optimizer) (x32 Version: 1.1.00.15040) PMB VAIO Edition plug-in (VAIO Movie Story) (x32 Version: 2.1.00.15080) QuickTime (x32 Version: 7.73.80.64) Realtek HDMI Audio Driver for ATI (x32 Version: 6.0.1.6034) Realtek High Definition Audio Driver (x32 Version: 6.0.1.6069) Realtek USB 2.0 Card Reader (x32 Version: 6.1.7600.30116) Remote Play mit PlayStation®3 (x32 Version: 1.0.0.15090) Remote Play with PlayStation 3 (x32 Version: 1.0.0.15090) Roxio Central Audio (x32 Version: 3.8.0) Roxio Central Copy (x32 Version: 3.8.0) Roxio Central Core (x32 Version: 3.8.0) Roxio Central Data (x32 Version: 3.8.0) Roxio Central Tools (x32 Version: 3.8.0) Roxio Easy Media Creator 10 LJ (x32 Version: 10.3) Roxio Easy Media Creator Home (x32 Version: 10.3.263) SAMSUNG Mobile Modem Driver Set SAMSUNG Mobile USB Modem 1.0 Software SAMSUNG Mobile USB Modem Software Samsung New PC Studio (x32 Version: 1.00.0000) Setting Utility Series (x32 Version: 5.2.0.15250) Skype™ 6.5 (x32 Version: 6.5.158) Sony Home Network Library (x32 Version: 2.1.0.14240) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1) VAIO Care (x32 Version: 6.0.0.15080) VAIO Content Monitoring Settings (x32 Version: 2.5.0.13220) VAIO Control Center (x32 Version: 4.2.0.15020) VAIO Data Restore Tool (x32 Version: 1.3.0.13150) VAIO DVD Menu Data (x32 Version: 2.1.00.13210) VAIO Energie Verwaltung (x32 Version: 5.1.0.15250) VAIO Entertainment Platform (x32 Version: 3.7.0.16080) VAIO Event Service (x32 Version: 5.2.0.15020) VAIO Gate (x32 Version: 2.0.0.14050) VAIO Gate Default (x32 Version: 2.0.0.04160) VAIO Hardware Diagnostics (x32 Version: 3.9.1) VAIO Manual (x32 Version: 1.0.0.03290) VAIO Media plus (x32 Version: 2.1.0.15040) VAIO Media plus Opening Movie (x32 Version: 2.1.0.13220) VAIO Movie Story MergeModules x64 (Version: 1.0.14240) VAIO Movie Story Template Data (x32 Version: 2.1.00.14040) VAIO Original Function Settings (x32 Version: 2.1.0.13120) VAIO Original Funktion Einstellungen (x32 Version: 2.1.0.13120) VAIO Premium Partners (x32 Version: 1.0) VAIO screensaver (x32 Version: 1.0.0.0) VAIO Smart Network (x32 Version: 3.2.0.15080) VAIO Update 5 (x32 Version: 5.1.0.13220) VAIO Wallpaper Contents (x32 Version: 2.1.0.14090) VAIO-Support für Übertragungen (x32 Version: 1.1.1.13070) VLC media player 2.0.2 (Version: 2.0.2) VLC media player 2.0.5 (x32 Version: 2.0.5) VMp MergeModule x64 (Version: 1.0.0) WebCake 3.00 (Version: 3.00) WIDCOMM Bluetooth Software (Version: 6.2.1.500) Windows Driver Package - Broadcom Bluetooth (09/09/2009 6.2.0.9405) (Version: 09/09/2009 6.2.0.9405) Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) (Version: 07/28/2009 6.2.0.9800) Windows Live Communications Platform (x32 Version: 15.4.3502.0922) Windows Live Essentials (x32 Version: 15.4.3502.0922) Windows Live Essentials (x32 Version: 15.4.3555.0308) Windows Live Family Safety (Version: 15.4.3555.0308) Windows Live Fotogalerie (x32 Version: 15.4.3502.0922) Windows Live ID Sign-in Assistant (Version: 7.250.4232.0) Windows Live Installer (x32 Version: 15.4.3502.0922) Windows Live Language Selector (Version: 15.4.3555.0308) Windows Live Mail (x32 Version: 15.4.3502.0922) Windows Live Mesh (x32 Version: 15.4.3502.0922) Windows Live Mesh ActiveX control for remote connections (x32 Version: 15.4.5722.2) Windows Live Messenger (x32 Version: 15.4.3538.0513) Windows Live Messenger Companion Core (x32 Version: 15.4.3502.0922) Windows Live MIME IFilter (Version: 15.4.3502.0922) Windows Live Movie Maker (x32 Version: 15.4.3502.0922) Windows Live Photo Common (x32 Version: 15.4.3502.0922) Windows Live Photo Gallery (x32 Version: 15.4.3502.0922) Windows Live PIMT Platform (x32 Version: 15.4.3508.1109) Windows Live Remote Client (Version: 15.4.5722.2) Windows Live Remote Client Resources (Version: 15.4.5722.2) Windows Live Remote Service (Version: 15.4.5722.2) Windows Live Remote Service Resources (Version: 15.4.5722.2) Windows Live SOXE (x32 Version: 15.4.3502.0922) Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922) Windows Live Sync (x32 Version: 14.0.8089.726) Windows Live UX Platform (x32 Version: 15.4.3502.0922) Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109) Windows Live Writer (x32 Version: 15.4.3502.0922) Windows Live Writer Resources (x32 Version: 15.4.3502.0922) Windows-Treiberpaket - Nokia pccsmcfd (08/22/2008 7.0.0.0) (Version: 08/22/2008 7.0.0.0) WinRAR 4.20 (64-Bit) (Version: 4.20.0) ==================== Restore Points ========================= 12-06-2013 18:02:55 Windows Update 13-06-2013 18:15:51 Windows Update 16-06-2013 12:39:16 Windows Update 21-06-2013 18:40:26 Windows Update 25-06-2013 18:11:08 Windows Update ==================== Scheduled Tasks (whitelisted) ============= Task: {0656F83A-A8B9-4A39-A56E-395C5D68B475} - System32\Tasks\EPUpdater => C:\Users\usert\AppData\Roaming\BABSOL~1\Shared\BabMaint.exe [2013-06-06] () Task: {0B90700B-21BB-4226-BF68-EFBFA6718939} - System32\Tasks\SONY\VAIO Gate\VAIO Gate => C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe [2010-02-06] (Sony Corporation) Task: {21A75B73-9B68-4D21-9A8D-2C94B6562C52} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-09-28] (Google Inc.) Task: {2C17385B-4449-4212-82CA-252C63972F4F} - System32\Tasks\SONY\VAIO Update\VAIO Update 5 => C:\Program Files\Sony\VAIO Update 5\VAIOUpdt.exe [2010-01-22] (Sony Corporation) Task: {2FB01808-F080-4875-8D86-EA3878C1D504} - System32\Tasks\Plus-HD-2.2-firefoxinstaller => C:\Program Files (x86)\Plus-HD-2.2\Plus-HD-2.2-firefoxinstaller.exe [2013-06-22] (Plus HD) Task: {428EC6EE-9B23-42D7-AE14-59E9CD97D319} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-06-11] (Adobe Systems Incorporated) Task: {6C789678-E84E-4C6A-B35F-3A7B8F733117} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task Task: {6FA2E5EA-5D2A-4F20-84CE-B2090CC98E72} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-09-28] (Google Inc.) Task: {92532D40-1975-49B4-9A4F-F3B255CF5919} - System32\Tasks\Plus-HD-2.2-codedownloader => C:\Program Files (x86)\Plus-HD-2.2\Plus-HD-2.2-codedownloader.exe [2013-06-22] (Plus HD) Task: {A31246AC-4FF7-4338-AA7F-6F2EFD42DD9C} - System32\Tasks\VAIO Care Support => C:\Program Files\Sony\VAIO Care\VCSpt.exe [2010-02-02] (Sony Corporation) Task: {A9143A48-2D4C-4353-A5F6-A9F5D1E3F7A5} - System32\Tasks\Plus-HD-2.2-enabler => C:\Program Files (x86)\Plus-HD-2.2\Plus-HD-2.2-enabler.exe [2013-06-22] (Plus HD) Task: {BC10F2BB-95BF-4030-B1CE-E09FC1EDB853} - System32\Tasks\VAIO Care => C:\Program Files\Sony\VAIO Care\VCsystray.exe [2010-02-02] (Sony Corporation) Task: {BC749DC7-EBBD-42A1-8017-E93BABF85CCD} - System32\Tasks\Plus-HD-2.2-updater => C:\Program Files (x86)\Plus-HD-2.2\Plus-HD-2.2-updater.exe [2013-06-22] (Plus HD) Task: {BE7781F9-6694-49F6-8A69-EC8BD2EB3C2A} - System32\Tasks\SONY\VAIO Gate\StartExecuteProxy => C:\Program Files\Sony\VAIO Gate\ExecutionProxy.exe [2010-02-06] (Sony Corporation) Task: {C2AA80E7-A7A2-42D9-8B38-41F041800647} - System32\Tasks\User_Feed_Synchronization-{E9681C4E-202B-4E3F-A71D-8E608B99A35F} => C:\Windows\system32\msfeedssync.exe [2013-04-30] (Microsoft Corporation) Task: {C6BEB0BD-63B3-4BD5-B517-FDBE9CBC34BC} - System32\Tasks\User_Feed_Synchronization-{0E626F3C-8A24-4FFB-84FD-07195C3D7244} => C:\Windows\system32\msfeedssync.exe [2013-04-30] (Microsoft Corporation) Task: {D741EB70-0919-4ECF-89DF-2C941CE5875A} - System32\Tasks\Microsoft\Windows Defender\MP Scheduled Scan => C:\program files\windows defender\MpCmdRun.exe [2009-07-14] (Microsoft Corporation) Task: {D80B46B2-C0AD-4572-A54F-98B28FBC711B} - System32\Tasks\Plus-HD-2.2-chromeinstaller => C:\Program Files (x86)\Plus-HD-2.2\Plus-HD-2.2-chromeinstaller.exe [2013-06-22] (Plus HD) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\Plus-HD-2.2-chromeinstaller.job => C:\Program Files (x86)\Plus-HD-2.2\Plus-HD-2.2-chromeinstaller.exe Task: C:\Windows\Tasks\Plus-HD-2.2-codedownloader.job => C:\Program Files (x86)\Plus-HD-2.2\Plus-HD-2.2-codedownloader.exe Task: C:\Windows\Tasks\Plus-HD-2.2-enabler.job => C:\Program Files (x86)\Plus-HD-2.2\Plus-HD-2.2-enabler.exe Task: C:\Windows\Tasks\Plus-HD-2.2-firefoxinstaller.job => C:\Program Files (x86)\Plus-HD-2.2\Plus-HD-2.2-firefoxinstaller.exe Task: C:\Windows\Tasks\Plus-HD-2.2-updater.job => C:\Program Files (x86)\Plus-HD-2.2\Plus-HD-2.2-updater.exe ==================== Faulty Device Manager Devices ============= Name: Microsoft-Adapter für Miniports virtueller WiFis Description: Microsoft-Adapter für Miniports virtueller WiFis Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: vwifimp Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (06/25/2013 01:59:47 PM) (Source: BstHdAndroidSvc) (User: ) Description: Der Dienst konnte nicht heruntergefahren werden. Aufgetretener Fehler: System.InvalidOperationException: UpdatePendingStatus kann nur während der Verarbeitung von Befehlen zum Starten, Beenden, Anhalten und Fortsetzen aufgerufen werden. bei System.ServiceProcess.ServiceBase.RequestAdditionalTime(Int32 milliseconds) bei BlueStacks.hyperDroid.Service.Service.CleanupHelperProcess(Process proc, String name) bei BlueStacks.hyperDroid.Service.Service.OnStop() bei BlueStacks.hyperDroid.Service.Service.OnShutdown() bei System.ServiceProcess.ServiceBase.DeferredShutdown() Error: (06/24/2013 00:51:04 AM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 7488 Error: (06/24/2013 00:51:04 AM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 7488 Error: (06/24/2013 00:51:04 AM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (06/24/2013 00:51:03 AM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 1046 Error: (06/24/2013 00:51:03 AM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 1046 Error: (06/24/2013 00:51:03 AM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (06/22/2013 04:25:35 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 1388 Error: (06/22/2013 04:25:35 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 1388 Error: (06/22/2013 04:00:45 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second System errors: ============= Error: (06/25/2013 08:07:43 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Roxio Upnp Server 10 erreicht. Error: (06/25/2013 08:04:16 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Error: (06/25/2013 01:16:00 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Roxio Upnp Server 10 erreicht. Error: (06/25/2013 01:12:54 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Error: (06/25/2013 01:42:43 AM) (Source: DCOM) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Error: (06/25/2013 01:25:26 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Windows Update" wurde nicht richtig gestartet. Error: (06/25/2013 01:19:58 AM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Roxio Upnp Server 10 erreicht. Error: (06/25/2013 01:17:31 AM) (Source: DCOM) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Error: (06/25/2013 01:17:24 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "WebCake Desktop Updater" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (06/25/2013 01:17:24 AM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst WebCake Desktop Updater erreicht. Microsoft Office Sessions: ========================= Error: (06/25/2013 01:59:47 PM) (Source: BstHdAndroidSvc)(User: ) Description: Der Dienst konnte nicht heruntergefahren werden. Aufgetretener Fehler: System.InvalidOperationException: UpdatePendingStatus kann nur während der Verarbeitung von Befehlen zum Starten, Beenden, Anhalten und Fortsetzen aufgerufen werden. bei System.ServiceProcess.ServiceBase.RequestAdditionalTime(Int32 milliseconds) bei BlueStacks.hyperDroid.Service.Service.CleanupHelperProcess(Process proc, String name) bei BlueStacks.hyperDroid.Service.Service.OnStop() bei BlueStacks.hyperDroid.Service.Service.OnShutdown() bei System.ServiceProcess.ServiceBase.DeferredShutdown() Error: (06/24/2013 00:51:04 AM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 7488 Error: (06/24/2013 00:51:04 AM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledEvent 7488 Error: (06/24/2013 00:51:04 AM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (06/24/2013 00:51:03 AM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 1046 Error: (06/24/2013 00:51:03 AM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledEvent 1046 Error: (06/24/2013 00:51:03 AM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (06/22/2013 04:25:35 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 1388 Error: (06/22/2013 04:25:35 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledEvent 1388 Error: (06/22/2013 04:00:45 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: Continuously busy for more than a second CodeIntegrity Errors: =================================== Date: 2013-04-10 15:31:54.632 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-04-10 15:31:54.630 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-04-10 15:31:54.627 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-04-10 15:31:54.596 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-04-10 15:31:54.591 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-04-10 15:31:54.586 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-02-25 18:53:09.231 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-02-25 18:53:09.228 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-02-25 18:53:09.223 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-02-25 18:53:09.197 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Memory info =========================== Percentage of memory in use: 64% Total physical RAM: 3834.9 MB Available physical RAM: 1366.41 MB Total Pagefile: 7667.98 MB Available Pagefile: 4111.41 MB Total Virtual: 8192 MB Available Virtual: 8191.83 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:455.68 GB) (Free:356.11 GB) NTFS (Disk=0 Partition=3) ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: B07387B0) Partition 1: (Not Active) - (Size=10 GB) - (Type=27) Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=456 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
25.06.2013, 20:24 | #4 |
/// the machine /// TB-Ausbilder | Kaspersky stuft tmp Datei als hohen Risikowert ein bei der Programmkontrolle, Trojaner? Bissl Adware Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
25.06.2013, 21:11 | #5 |
| Kaspersky stuft tmp Datei als hohen Risikowert ein bei der Programmkontrolle, Trojaner?Code:
ATTFilter # AdwCleaner v2.303 - Datei am 25/06/2013 um 21:37:44 erstellt # Aktualisiert am 08/06/2013 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzer : usert - MARCEL # Bootmodus : Normal # Ausgeführt unter : C:\Users\usert\Downloads\adwcleaner.exe # Option [Löschen] **** [Dienste] **** Gestoppt & Gelöscht : BrowserDefendert Gestoppt & Gelöscht : WebCake Desktop Updater ***** [Dateien / Ordner] ***** Datei Gelöscht : C:\Users\usert\AppData\Local\Google\Chrome\User Data\Default\bProtector Web Data Datei Gelöscht : C:\Users\usert\AppData\Local\Google\Chrome\User Data\Default\bprotectorpreferences Datei Gelöscht : C:\Users\usert\AppData\Roaming\Mozilla\Firefox\Profiles\nspwuyrd.default\bprotector_extensions.sqlite Datei Gelöscht : C:\Users\usert\AppData\Roaming\Mozilla\Firefox\Profiles\nspwuyrd.default\bprotector_prefs.js Datei Gelöscht : C:\Users\usert\AppData\Roaming\Mozilla\Firefox\Profiles\nspwuyrd.default\searchplugins\Babylon.xml Datei Gelöscht : C:\Users\usert\AppData\Roaming\Mozilla\Firefox\Profiles\nspwuyrd.default\searchplugins\delta.xml Datei Gelöscht : C:\Windows\Tasks\Plus-HD-2.2-chromeinstaller.job Datei Gelöscht : C:\Windows\Tasks\Plus-HD-2.2-codedownloader.job Datei Gelöscht : C:\Windows\Tasks\Plus-HD-2.2-enabler.job Datei Gelöscht : C:\Windows\Tasks\Plus-HD-2.2-firefoxinstaller.job Datei Gelöscht : C:\Windows\Tasks\Plus-HD-2.2-updater.job Gelöscht mit Neustart : C:\ProgramData\BrowserDefender Ordner Gelöscht : C:\Program Files (x86)\Delta Ordner Gelöscht : C:\Program Files (x86)\Plus-HD-2.2 Ordner Gelöscht : C:\Program Files (x86)\WebCake Ordner Gelöscht : C:\ProgramData\Babylon Ordner Gelöscht : C:\ProgramData\InstallMate Ordner Gelöscht : C:\ProgramData\Partner Ordner Gelöscht : C:\ProgramData\Tarma Installer Ordner Gelöscht : C:\Users\usert\AppData\Local\Google\Chrome\User Data\Default\Extensions\kfakeonomonapccoamcmdgpoaicnpnoo Ordner Gelöscht : C:\Users\usert\AppData\Local\PutLockerDownloader Ordner Gelöscht : C:\Users\usert\AppData\Local\Temp\boost_interprocess Ordner Gelöscht : C:\Users\usert\AppData\Local\Temp\OCS Ordner Gelöscht : C:\Users\usert\AppData\Roaming\BabSolution Ordner Gelöscht : C:\Users\usert\AppData\Roaming\Babylon Ordner Gelöscht : C:\Users\usert\AppData\Roaming\Delta Ordner Gelöscht : C:\Users\usert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BrowserDefender Ordner Gelöscht : C:\Users\usert\AppData\Roaming\Mozilla\Firefox\Profiles\nspwuyrd.default\extensions\ffxtlbr@delta.com Ordner Gelöscht : C:\Users\usert\AppData\Roaming\Mozilla\Firefox\Profiles\nspwuyrd.default\extensions\plugin@getwebcake.com Ordner Gelöscht : C:\Users\usert\AppData\Roaming\Mozilla\Firefox\Profiles\nspwuyrd.default\jetpack Ordner Gelöscht : C:\Users\usert\AppData\Roaming\OpenCandy Ordner Gelöscht : C:\Users\usert\AppData\Roaming\WebCake ***** [Registrierungsdatenbank] ***** Daten Gelöscht : HKLM\..\Windows [AppInit_DLLs] = c:\progra~3\browse~1\261339~1.144\{c16c1~1\browse~1.dll Schlüssel Gelöscht : HKCU\Software\1ClickDownload Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Crossrider Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Plus-HD-2.2 Schlüssel Gelöscht : HKCU\Software\BabSolution Schlüssel Gelöscht : HKCU\Software\DataMngr Schlüssel Gelöscht : HKCU\Software\DataMngr_Toolbar Schlüssel Gelöscht : HKCU\Software\Delta Schlüssel Gelöscht : HKCU\Software\InstalledBrowserExtensions Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings Schlüssel Gelöscht : HKCU\Software\OCS Schlüssel Gelöscht : HKCU\Software\Softonic Schlüssel Gelöscht : HKCU\Software\5a48fd1b434e546 Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{39CB8175-E224-4446-8746-00566302DF8D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{7169BBB3-3289-4696-B35D-4A88BCF6FB12} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escort.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\esrv.EXE Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\WebCakeIEClient.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0033036.BHO Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0033036.BHO.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0033036.Sandbox Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0033036.Sandbox.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\delta.deltaappCore Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\delta.deltaappCore.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\delta.deltadskBnd Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\delta.deltadskBnd.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\delta.deltaHlpr Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\delta.deltaHlpr.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\escort.escortIEPane Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\escort.escortIEPane.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\esrv.deltaESrvc Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\esrv.deltaESrvc.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Prod.cap Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{39CB8175-E224-4446-8746-00566302DF8D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440344304436} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{4599D05A-D545-4069-BB42-5895B4EAE05B} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{EFDF368C-8DD9-4E05-87CD-16AA5CB03CB8} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\WebCakeIEClient.Api Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\WebCakeIEClient.Api.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\WebCakeIEClient.Layers Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\WebCakeIEClient.Layers.1 Schlüssel Gelöscht : HKLM\Software\DataMngr Schlüssel Gelöscht : HKLM\Software\Delta Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110311301136} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{AF6B0594-6008-4327-93E5-608AD710A6FA} Schlüssel Gelöscht : HKLM\Software\Plus-HD-2.2 Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\5a48fd1b434e546 Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{11111111-1111-1111-1111-110311301136} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{22222222-2222-2222-2222-220322302236} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{261DD098-8A3E-43D4-87AA-63324FA897D8} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{4FCB4630-2A1C-4AA1-B422-345E8DC8A6DE} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{82E1477C-B154-48D3-9891-33D83C26BCD3} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{86838207-681D-469D-9511-D0DCC6F19F9B} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{AF6B0594-6008-4327-93E5-608AD710A6FA} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{DF84E609-C3A4-49CB-A160-61767DAF8899} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E97A663B-81A6-49C5-A6D3-BCB05BA1DE26} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1231839B-064E-4788-B865-465A1B5266FD} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2DAC2231-CC35-482B-97C5-CED1D4185080} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{55555555-5555-5555-5555-550355305536} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{57C91446-8D81-4156-A70E-624551442DE9} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{66666666-6666-6666-6666-660366306636} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{7AD65FD1-79E0-406D-B03C-DD7C14726D69} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{7D86A08B-0A8F-4BE0-B693-F05E6947E780} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{97DD820D-2E20-40AD-B01E-6730B2FCE630} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B177446D-54A4-4869-BABC-8566110B4BE0} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DF84E609-C3A4-49CB-A160-61767DAF8899} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{F05B12E1-ADE8-4485-B45B-898748B53C37} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eooncjejnppfjjklapaamhcdmjbilmde Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\fjoijdanhaiflhibkljeklcghcmmfffh Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{348C2DF3-1191-4C3E-92A6-B3A89A9D9C85} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311301136} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{15D2D75C-9CB2-4EFD-BAD7-B9B4CB4BC693} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Delta Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Delta Chrome Toolbar Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Plus-HD-2.2 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{1231839B-064E-4788-B865-465A1B5266FD} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2DAC2231-CC35-482B-97C5-CED1D4185080} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355305536} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{57C91446-8D81-4156-A70E-624551442DE9} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366306636} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{7AD65FD1-79E0-406D-B03C-DD7C14726D69} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{97DD820D-2E20-40AD-B01E-6730B2FCE630} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B177446D-54A4-4869-BABC-8566110B4BE0} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DF84E609-C3A4-49CB-A160-61767DAF8899} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{F05B12E1-ADE8-4485-B45B-898748B53C37} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C4ED781C-7394-4906-AAFF-D6AB64FF7C38} Schlüssel Gelöscht : HKLM\SOFTWARE\Tarma Installer Schlüssel Gelöscht : HKU\S-1-5-21-1365894311-1334480070-952389080-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9} Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Main [bprotector start page] Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [bProtectorDefaultScope] Wert Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [WebCake Desktop] Wert Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{82E1477C-B154-48D3-9891-33D83C26BCD3}] ***** [Internet Browser] ***** -\\ Internet Explorer v10.0.9200.16611 Ersetzt : [HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://search.babylon.com/?babsrc=HP_ss_din2g&mntrId=12A854424930716B&affID=119781&tt=180613_ndtc&tsp=4920 --> hxxp://www.google.com -\\ Mozilla Firefox v21.0 (de) Datei : C:\Users\usert\AppData\Roaming\Mozilla\Firefox\Profiles\nspwuyrd.default\prefs.js C:\Users\usert\AppData\Roaming\Mozilla\Firefox\Profiles\nspwuyrd.default\user.js ... Gelöscht ! Gelöscht : user_pref("browser.newtab.url", "hxxp://www.delta-search.com/?babsrc=NT_ss&mntrId=12A854424930716B&a[...] Gelöscht : user_pref("browser.search.order.1", "Delta Search"); Gelöscht : user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.3303[...] Gelöscht : user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.3303[...] Gelöscht : user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.3303[...] Gelöscht : user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.3303[...] Gelöscht : user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.3303[...] Gelöscht : user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.3303[...] Gelöscht : user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.3303[...] Gelöscht : user_pref("extensions.delta.admin", false); Gelöscht : user_pref("extensions.delta.aflt", "babsst"); Gelöscht : user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}"); Gelöscht : user_pref("extensions.delta.autoRvrt", "false"); Gelöscht : user_pref("extensions.delta.dfltLng", "de"); Gelöscht : user_pref("extensions.delta.excTlbr", false); Gelöscht : user_pref("extensions.delta.ffxUnstlRst", true); Gelöscht : user_pref("extensions.delta.id", "12a8089700000000000054424930716b"); Gelöscht : user_pref("extensions.delta.instlDay", "15877"); Gelöscht : user_pref("extensions.delta.instlRef", "sst"); Gelöscht : user_pref("extensions.delta.newTab", false); Gelöscht : user_pref("extensions.delta.prdct", "delta"); Gelöscht : user_pref("extensions.delta.prtnrId", "delta"); Gelöscht : user_pref("extensions.delta.rvrt", "false"); Gelöscht : user_pref("extensions.delta.smplGrp", "none"); Gelöscht : user_pref("extensions.delta.tlbrId", "base"); Gelöscht : user_pref("extensions.delta.tlbrSrchUrl", ""); Gelöscht : user_pref("extensions.delta.vrsn", "1.8.21.5"); Gelöscht : user_pref("extensions.delta.vrsni", "1.8.21.5"); Gelöscht : user_pref("extensions.delta.vrsnTs", "1.8.21.50:55:43"); Gelöscht : user_pref("extensions.delta_i.babExt", ""); Gelöscht : user_pref("extensions.delta_i.babTrack", "affID=119781&tt=180613_ndtc&tsp=4920"); Gelöscht : user_pref("extensions.delta_i.srcExt", "ss"); -\\ Google Chrome v28.0.1500.52 Datei : C:\Users\usert\AppData\Local\Google\Chrome\User Data\Default\Preferences [OK] Die Datei ist sauber. ************************* AdwCleaner[S1].txt - [16761 octets] - [25/06/2013 21:37:44] ########## EOF - C:\AdwCleaner[S1].txt - [16822 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 4.9.4 (05.06.2013:1) OS: Windows 7 Home Premium x64 Ran by usert on 25.06.2013 at 21:56:52,37 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_DLLs ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\windows\currentversion\ext\bprotectsettings Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} ~~~ Files ~~~ Folders Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{00CB146A-75CD-4279-87ED-5CD1E3D2190D} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{0100CCFB-775B-463D-9427-45043B4F2FD6} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{041199E2-6B34-4FBA-BAC1-2D0409E89941} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{04C3B73C-3676-491D-9F9B-491679A7F5E0} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{071D30E6-100C-4EA3-8ADE-830642B97749} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{07534A17-73EF-4417-B3D3-2DE03AD4CFC0} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{0798477E-8AC6-40BB-B884-32E4D27DD9DD} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{083C322A-9D88-463C-BE24-95799C2194D3} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{098769BF-F16B-449F-8274-E4212D75B913} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{0A9E8096-D53B-4E6B-9B3E-BB0DC211F70D} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{0AE2246D-589B-4235-8FDA-B5558DCB2DEC} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{0B124198-9103-4B84-944E-E846C899C257} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{0B411A6F-5804-4796-8596-3C20B1A48018} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{0B4EFEC0-5F73-492E-BB18-EE83E58D08DB} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{0D18971E-2720-4C2B-97EF-401DE01C6928} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{0D36DEC2-372A-4E77-9A79-41748539C1A6} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{0D4E2C0E-CFE5-42FD-B573-DC672C81DD4F} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{0D739B98-8E20-4646-A1CB-D120E6361392} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{0DB5A5CD-E46E-4DC2-B168-33BCE1E5E1A9} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{0DFA93B4-32D4-40E2-9D47-5EF2DD89A618} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{0ED07614-726D-4FB5-B5B8-39EBA2E9C964} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{0F34143C-B7D6-44AA-AA71-D435D4A3CED1} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{102CEF2E-2098-4CA1-B0D7-BB9040831526} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{1035D71B-322E-4623-AF82-E945DB2AE0BE} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{106B83F7-8E23-466D-8500-8CA78AB29B27} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{10AB30F6-3E53-4E42-A72D-FF4E2BCC71E5} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{10BEB1CD-FD2B-4EDB-A8C5-DFE448509F2F} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{10FE891E-CBBE-4846-A06F-7C97B962A897} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{117552C9-DFB3-478F-928D-438F890A2F46} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{138BFF43-C9C6-4855-9D98-8D623D31F7D0} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{13A2B92F-4556-4635-AC9C-70A372B8C50D} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{154B4745-6C56-42AD-B812-6DF7D41EDA57} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{15C88093-BA93-47F3-96F4-C863E463CE3B} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{160226FE-BB6E-4637-8939-026DB7438647} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{162741E0-9343-49C1-BF3A-1163A1AB164E} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{16FA0B72-F85A-4502-96CA-0B43EFBE376B} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{171126C0-584F-4B99-9FA2-F4B7F2F9A292} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{1744D217-7B62-4053-9098-B72F31A59339} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{1751AA00-05E2-4254-A44B-02B2D19DF0AE} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{17AA8289-BCE4-410A-BA5D-E9101432A084} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{17ADAD72-D25E-4D97-8C32-3C195261446F} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{183716D4-662F-414E-96F5-57128A25093B} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{19BB0E64-3B98-43EB-8D97-0A7ABBFFC5C8} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{19BCD4D1-789B-4292-8876-45C47A7E0904} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{1AA57025-9D3C-4D1B-9C3C-262129546975} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{1AAEBB22-F308-4DF7-9362-AFB64A9EA576} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{1B4A0B59-435C-4A94-8425-CE505FC1170C} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{1B67F13C-8437-4EE0-91D2-C63F60F460EC} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{1C843D7F-A551-4CC5-9BA6-AA1714342C58} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{1CA3D85F-D732-4145-AA49-59FDBAD87619} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{1CDF1967-E150-4E4E-96AC-3A35C88BEA2D} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{1D1F967F-90B4-4B02-9DEE-44EB270EDA1E} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{1D8F5088-67C1-4EBE-BF1A-C12A46BACCF5} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{1DD1FA7F-1A5B-466A-A542-C12E39639A01} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{1E8632D7-A2B6-4CCD-8343-E5E6DB8A5410} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{1ECD1AA4-A14A-4536-BB5D-894803462457} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{1F38DE96-6C41-44A1-878B-F5A302744723} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{1FB7A5BF-1428-4F91-8778-D2071705D301} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{1FD78D73-3B8F-43D9-B54D-F61044F702DF} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{207FDF6D-37B8-45F3-88DE-DB38F3747596} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{20FFA72A-00C7-4B46-94D1-4C2D5807A70B} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{2121D40F-BCEB-456B-B8AB-996B0BA917E0} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{214629F9-2693-457D-9B16-3AC84987723B} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{21A63B2A-B858-41C1-AF92-6C8943B04ACD} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{21D8EFB0-FE54-4381-9C33-DBFB2294A218} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{227ED367-E230-4093-B65D-D58DB112DB42} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{230B74C4-E88D-402D-8450-61254D9D86F1} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{236029C7-DDA1-4DC0-88E7-4C89225914B3} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{23CDFC6E-F757-4E4A-8A3B-CCB29E51A30D} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{23FD0D67-C02C-4BCB-9E04-17061824D2D4} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{244BBA39-4FAD-46B5-8529-BE7030CD44BB} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{248AA1F8-FBBC-4512-A6C2-1B83D84FDE66} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{24BF78C4-2AFA-4127-8BB4-4FF2A18DCB7A} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{2542D89D-BD31-4BFE-8005-28B6FF015461} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{25AB28C9-9D4C-465E-BA7E-855C4DAFEFAD} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{2619ED41-713B-4145-B37C-9B341CFF82AE} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{26C9C2B6-FF67-41B2-BE3D-660912B376EE} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{26D5E69E-A523-4908-B830-40A3AB7EC280} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{27D2D50E-AA8C-471F-99D0-734CE5D232D7} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{2803FF17-66E3-40A5-A772-2290ACE48D43} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{296984A1-DEDE-42DF-811B-B026562AC917} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{2AE2F873-DFB5-40E2-9C97-A6505EE8EC37} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{2B1AFCCD-2559-49B0-A16B-8D020C1DE553} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{2B2756FA-C5EA-43B2-B735-2B8A908359CF} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{2B3E8071-43EA-47DB-B9C1-62C36C942B3A} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{2B83D3CC-A98F-42F3-A428-527F344E42D8} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{2B9CA7E9-7531-4C03-A269-5A8DF07A87F8} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{2BC79AFE-BA9C-4B26-8E47-628F3B52671B} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{2BE08348-2A8C-47EB-A6BC-22630A486F99} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{2C2AB254-73BA-4F88-AB55-327DC63B54C7} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{2C4DC22B-F2C4-498A-8BBB-8077A4A3BAB7} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{2D640FC8-9994-4ED9-801F-A48FC22CC5F1} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{2DDD64E2-A882-4748-BB1F-1B60E38CD1E0} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{2E55E902-A7CA-4096-B0D1-1F4D14420E00} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{2E6E96F4-EED4-471C-8753-0DA44E35C5C2} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{2F3AC4E5-7FCF-4D6D-B59C-FF840365FF52} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{2F6B4B4D-C498-467F-AB4C-5A4F726CE1B0} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{2F86E804-84BD-4EB4-9A45-3F755C2044BE} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{2F8D3042-70DB-4876-960A-E37D9B382AD4} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{30704B74-7116-4690-9DFA-66131AFEB7D4} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{30BECDE3-EC98-46AF-926A-402B3AB33A54} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{30F22AEE-EB4C-4B02-A3DE-1FB1A81FCBEA} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{315FC9A2-6D5C-4D09-9F57-496A562F6B6C} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{32A76142-8F55-412E-9337-BD6C72E22A44} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{32B59A34-FA37-4AAC-BB58-6E12D69E9409} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{337AC18F-4766-4C74-9BDB-BCD74F67FA6D} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{33D93850-136D-43CF-BACB-1C8A1A9162C4} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{33ECE225-90A0-4EC7-9C78-CCC3075D8264} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{33EDF18F-82DF-4FD7-93EF-946EBDB58688} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{36CB6525-4997-4511-B44C-7D49204BE891} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{3712AF53-D5B4-41F9-804E-1CF131B2A555} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{3785CFFF-2AC8-43EC-890C-962006742DB1} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{38348E07-DBF9-442C-90BB-1A2F38DB0DDB} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{38373689-9E66-443D-A2DF-399D0DE4B08F} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{38AB0636-17CB-4D73-943C-F3A9A313989F} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{38CDCEDA-F0DD-43DD-A974-763ABE9F063A} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{38D93010-D668-42F6-8EFC-8BF595E3412B} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{38FCC7DB-B7CF-4C07-904A-4EA4EA766A90} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{3908DB6B-4325-4922-A04C-AC208316075C} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{3A2A55EA-188D-4E9E-8792-2E86F72DED1D} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{3B6380EE-159C-4185-AE94-6288689B28DE} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{3D3EADF6-04BD-4062-A1F6-78022AF2CFD3} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{3D61E176-A694-4651-B5D5-19DA9B61C05A} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{3DB3AB16-481B-44F4-9618-47FA476B5CEB} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{3EB9F4B4-FE33-484B-8E8F-2F68F92033B7} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{3F27598B-FA1A-4BFD-851D-A0C54249D116} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{40658312-95C0-4896-9297-87C5F74103B3} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{408CEB34-3AD7-47D6-BB55-97F5A368A654} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{40FC707C-CF35-4CA5-A073-65D04D885673} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{421EFEAA-6ED6-43D5-94E7-EB25EE65476A} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{440F757E-62B8-469B-8ADA-50F5D753D3C1} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{445493F5-7F20-4576-B1C1-BBE3EF71E7E4} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{449E3746-42FD-4202-ABF9-68E5758ECE55} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{44B13012-29BD-4CCA-8148-B47B18DDE9B0} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{44ECF1B1-5B55-461B-9592-0887A102E01B} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{44FA68F8-C629-4999-A153-89719F7EF2CA} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{4534AEEB-9CA1-4EE0-9E27-239314560B14} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{45DBF3E9-18FD-4BFF-90F2-47FB588D37EF} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{4623BE09-54BF-4A44-876C-8EDFAF2AFC74} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{463DEBB9-75E9-43F8-917F-8B8C40EDB27A} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{4720D2AC-2968-41AB-A4A7-1057A1C10190} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{48215A78-8155-4759-B2A6-0F9FF5F12C10} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{4829B21B-668D-475B-B79B-4BB798404107} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{491A8495-8C94-4E94-BF00-E5CB91FFD361} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{4B52F13C-D4E8-4177-8FF9-0A045677D1BF} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{4BD29F0E-B5FB-42B9-985B-63911C9872D8} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{4BD45C02-9485-443B-93E8-A741E7E58386} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{4CB6F5D5-78FE-4080-A043-B8E4FDEB4FB3} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{4E53BA62-B8AD-435D-BCF1-67E677BFDECD} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{4E8DC3EC-8948-4B17-9E20-7D77241A4F80} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{4FFB19E5-78F3-420D-B798-0C4612F0D29A} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{5114387D-DEF2-4987-A759-EC7634EEDF22} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{51A678BD-6FD6-4C83-A31F-2EC9A2C9DF9A} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{51B507D2-EE2F-4EA9-902F-D0BA492D8F75} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{51B8C2BD-8280-4A16-B252-8E63C0ACBC08} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{5215B604-A26C-4ABD-83CA-A34DA41315CA} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{52497345-3A81-4FC1-83A9-02B9D6EEDB91} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{5361C3A9-6D79-4B4B-A694-C2089769CEB1} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{538BB6DD-8D29-4F88-AFB4-FE5A68D3F3A3} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{53FFE0CD-EBC4-4295-BC72-8D68ED48D106} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{540CC151-5813-4100-ABB4-E145C6EABB60} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{5434BCF7-DE84-468C-8F6D-9008FA39E04B} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{54879E39-B2F7-45D0-934F-135BC9C39E71} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{558AFA5D-97AF-4A7D-8CB7-906ACE5CBE12} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{559F1E8E-A66A-49BD-BA25-1AD1666EE49B} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{56152EBA-3197-45AF-8B89-4D972832DCFE} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{56BA6965-8957-4A99-AE00-BA25E8F78B16} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{576DCA0E-36D1-4B22-BBA1-EE01E308117D} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{579DEF9D-9793-495C-8AE3-1A6AE888A41A} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{57F4D5DE-EFCF-40F0-B92D-81B36F665584} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{58770ECF-3F28-435E-9836-A2B0FBCF9B03} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{59057E55-80AB-4B11-B852-15CA1556D0F7} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{5973998F-60D8-4588-B1DD-AEC4D54A1389} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{59C47996-4BD6-4225-9D0B-4457584C3B31} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{5B0F8264-0608-4663-8E52-40B6D2658279} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{5B60ADFB-6FA7-458A-97DC-F5E7F85C1B30} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{5BE5CDF4-06C0-4796-AFAC-7EE347B4F642} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{5CD847FB-1F74-4F0A-8DF4-17B25B8C5DAB} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{5D7A0C71-210C-4E2F-8733-0BA9B9F09EB8} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{5DAC67B8-AA28-4AFA-83CC-E91CF76FF1F1} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{5DDAA1A1-EC94-42BF-A42D-74EA4003A96B} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{5E3F2781-E931-48E1-8FD3-0145A3B72699} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{5F6058B1-5D88-45A9-80EF-175FE9E10CA6} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{5F720B55-763D-4698-8848-30F25280DEFF} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{5FC1CADD-C13B-43D9-B789-9761EA1FA2CA} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{60435D92-CEF5-4FAA-912D-2C909482342A} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{6082EE02-74A2-4018-8F12-5BEAE9903824} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{60AA2C35-C97D-4AA8-90E7-3A66D558DE29} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{6152C0E7-EF13-442C-B1D5-AE2027A2D434} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{6184C0EE-C8E8-4C34-AE27-5FE2F8C0CF8A} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{62313075-ACF6-4EE7-8ACB-94F84B2025D0} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{6316658E-908D-4595-9DB9-E775B987E449} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{6338DFC6-03A7-4E7D-B863-DFEB2A7940F4} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{63BE6CE2-B72E-4A2C-BE22-37C9E03FA31E} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{64AEF3EC-DE1E-4EB6-A15C-012EB6C149C4} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{651DFB98-18E3-4C34-9359-9F531BD33E57} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{667E1BAA-F298-4AEE-A178-2E39A2FCA97E} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{66CE5930-9FF2-47AF-BC8B-6A46FCA4CD94} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{66DC88EA-8F29-4B06-BE6A-6B1C100EF25C} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{6868BFFC-30EF-44D0-A614-A175A31616DD} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{68E92DAF-2C14-42D6-A51F-C23C620761D7} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{6995CFE7-D524-46D5-97FD-7A33A948CBCF} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{6C0FC834-C7CB-46CE-A9C9-E54DF9A256D7} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{6C184C20-3CF4-47F4-BBDB-C982DD96A685} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{6C192306-BD31-4DE7-B7FF-A81527A9CE33} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{6C4EE81B-C2FB-4454-9FB3-0BE5BFD4CC01} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{6C852A97-9BA1-440D-B61A-CE243C94232D} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{6CB6C211-BAC8-4D66-A091-2950015887E5} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{6CFE7BE3-D4E9-4058-8D17-CCFD4F60231E} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{6E94A078-AF82-4CA0-8BA9-1D8F63C2C86B} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{6F31EA24-69B4-40D2-A6B8-9D31FEC38770} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{6FB39785-4789-4024-B9D9-783A870DAB9E} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{7098CC5A-2FFE-4104-8BC9-6C5ED0E567D4} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{7116CD80-6E96-41AD-9D16-D9EB2EF13CC1} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{7136D88E-EA3E-4D53-96D0-15C027EDAEF2} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{716EF7A6-6215-4B44-91E1-6DFF59C1C8D0} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{71B6737C-8416-4CBB-8565-1E33FB5E691D} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{72620FD9-226E-46D3-BC9D-1DD034280A9B} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{75B42D1E-9D01-4303-B051-D93AD7DC529A} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{76C3EF6C-00CA-43AD-936F-496A200D7D53} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{7702A9FC-A2CA-4E6D-9BD9-7BF0E0ED5136} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{773277D4-2E64-44F5-ABC8-7DEA93BEAF6F} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{7871A58F-F409-41FA-85E4-8B3687024A8B} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{78A68AA2-711A-43AD-A3AC-D8C01A5DD8E1} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{78E57669-B704-463E-9D09-43E2041C38AA} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{79DEB513-AE60-45BC-817D-1CC2BEEE904B} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{7B267038-047D-4E71-A608-312315C98AEE} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{7B3224F5-4DB7-4362-922B-08DFEEFABEC5} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{7D0BA04A-C546-40CE-9969-A428E6F0DE48} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{7DC5AE56-86C7-4FC3-A63D-7635592FC689} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{7E267B00-E291-425C-BA6B-6DB7F95D98E3} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{8043FC0F-4FDE-4BB6-83C8-DAD6BDCA3317} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{80562159-F965-4B22-B0F8-F7F60681E702} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{80A275B5-9E95-4AB3-BFAF-C1A1D876F86F} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{80E8714A-526E-4902-BAD3-9A1149BB42EF} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{81065600-79FE-47C4-BBA6-11F5102435FC} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{814ACCC5-A5DC-4A18-AECC-3A8D06290FF1} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{83FE1804-CF70-4B80-81F2-75D4834103E1} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{84243971-F034-44D1-AB2E-F1961A711876} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{84628049-08FD-4960-A970-E15A2AFB2CE4} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{84F34D9A-355F-4B55-91E0-E646D84175E7} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{8629D438-D183-4E92-BE87-DC6153AA2980} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{87BA2139-60E7-4222-B8A3-BC8480318171} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{87BAA8DA-9573-4758-8E0D-4E8555C9A8C5} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{8965F9BC-4271-4EEB-8EC2-1CF7917EB0C2} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{89B614E6-1126-47BF-8A9D-735448C6B775} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{8A03CCC1-6F67-4C7B-BFAD-4B9D27589DBA} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{8A0A0589-C255-41AC-91B7-1705C5704FC4} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{8A3CC964-C8F7-4DB5-8193-624C042E1037} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{8BD0C05D-255F-4A1A-936F-E1BD7F2D026B} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{8C2C94D8-0E69-4DDE-9120-881827BBF7BF} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{8D1102B1-CB63-42A0-AB41-2FA67453ECA5} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{8F9F138E-8FC3-4AFD-B6CF-0D7AF542534A} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{90AF8FBD-2F83-4500-BD1E-C4D5061D5477} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{913B6398-AF4D-4A25-9158-5B9A3A372418} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{918A16BF-DFA5-4893-897A-6BA05178BB23} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{92885256-31D2-4A23-B778-3F96AE38087C} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{93267817-AEC2-4479-9573-0F281929ADDD} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{94CB5ABC-4276-4FCF-8308-4CFD97F5775A} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{951FCE30-BC1D-400B-8BD2-3FD597CD0749} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{96BF246E-1F05-47D6-93C8-E23ACB34AA1A} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{98120BB6-E158-46D9-AAB5-D93596AAA8FD} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{983D28BC-BC98-4FB6-AB21-796B91E1E551} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{9BB03C17-A529-4F74-B26D-F057BECEB061} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{9C2DFC33-6CD6-44CC-A8A8-893C8DA6684D} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{9C426649-C6E1-4B2E-A24D-E4F743D8650A} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{9C522CA5-F9C9-40E8-848B-BEE2FEC007DE} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{9C7222E9-A0A1-4555-BDA4-E9B428F90C43} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{9C9EBB0C-E715-46C4-A318-1D4A768472DF} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{9CC230C3-5157-4F0E-9D0E-2DA254157D09} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{9E6EFAA2-3044-4636-8FFC-7EDF67FC26F4} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{9F3C08C6-BC9E-40B2-BB3E-F6FA63BA6C40} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{A03D89B0-BE3F-4878-8B02-D190885AE966} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{A095D3DB-85FB-4CA6-933F-411C11A73A51} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{A09AEB3F-D3A7-4C77-9B39-594D494A44EE} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{A0C8D8D8-EDDB-4E2C-BCE2-D8AD067860CD} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{A12BFFB2-3991-4C36-B77E-9E4E533AB1F9} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{A15F1759-B0CE-47B1-BD13-57A6BDB93779} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{A1C736F7-73D1-46CC-8163-D1343A6EDB5A} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{A25E4D36-B10C-4318-B300-4A9DE8708AE3} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{A39708B9-2BF2-4835-9CCF-09BE3B31B6C3} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{A3B53C0B-6DFA-40A6-9861-5DBB33AE6572} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{A4247B97-0B37-4023-9DE5-60828ECC8F51} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{A51DF9E3-906B-46C1-862E-A0FC266A4F0B} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{A588D5C0-89E6-44F6-A382-97E2502CC043} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{A588F3B5-C4AD-49E4-98EE-A188882C97B5} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{A62BAEF6-BE7E-4C18-B4D5-8358A3EB21FC} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{A651D070-D368-4679-8E3C-1925EE3FBAF5} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{A661C1D6-FF84-4719-A600-2B7204B5C8F4} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{A68BD714-F8EF-4A04-82BE-2FC7DFAF4679} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{A7DB0508-7F61-45B1-9D01-E518049406B0} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{A82D577C-5D30-46E3-A79B-12713E48B302} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{A8472CEF-4204-453A-8AB1-E0DB124F843A} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{A871DC8A-5627-462A-8660-5782DC38EE1B} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{A8A41570-42F7-4C7B-9C62-63E9E7C0995B} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{A9037238-65A7-4897-A505-F215694C384E} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{A9BCBA09-C66C-46F6-85A1-DF9924260230} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{AA000BA5-44B5-4F09-AACF-CF87F38B6233} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{AA0F6BC8-067F-4774-A3A2-CE35C8FDDFD3} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{AA72127E-1142-4408-A12C-E8A12616EA58} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{AB75E713-4180-4A16-8DD8-2680E8BE628D} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{AB8D7604-8785-48D6-B19B-9E0A26664821} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{ACDAE63C-918B-44C2-BD5C-9C30DB3AED92} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{AD0623AA-C66D-46C0-A41C-EF7856CBF905} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{ADAE5176-92FD-4A28-A41A-CD2551C29E47} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{ADAF8016-AF17-4B99-AA94-3782751DB1F3} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{ADDD7FE3-CC16-4AE5-9554-5F6B6573BA63} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{AE96D463-25DF-473E-BA26-23BE82989677} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{AFA58650-9A49-4612-A41E-F7C0CBD9E0FA} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{AFF20585-31CC-4FF3-B77F-113D4A1AACD6} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{B0301C06-185E-4BC6-BB28-8540DBC462A3} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{B252D32B-DA08-4D20-A668-6EF41F57F6D9} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{B356C4AD-1106-454A-BD1D-F952A4D26EF2} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{B3FF42ED-4B32-4AD2-A385-184636F058F1} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{B44856F3-30F9-4EDC-9BA4-AB2998FE9A0E} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{B451383D-86ED-4263-96F4-9029428D0AFD} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{B5421F59-DF14-4B7D-BF7A-67B7561402A8} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{B5F7FCE6-1F6B-4F90-B55B-C7E9702346B4} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{B617A188-7547-4C97-B297-D7EF09DE26A1} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{B6715123-857D-4540-A07F-38890DBE19D2} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{B79A81AA-B5D6-4BD3-9BCA-A9C798DAB888} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{B8FA4131-EECC-42B3-AFC2-824832219AA2} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{B9A291CE-6020-4AE8-9D7F-60BA98080324} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{BA8E9346-B249-4399-87DA-868C601951F0} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{BBB38CE2-72C1-45DF-9243-36B09C95F133} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{BC0FF548-95A9-4B82-BE6E-E4C4B9277799} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{BC2F338E-D158-4610-B9D8-CA1F58D9F129} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{BCB43C68-1A9A-431A-A78F-5D55FA4DEBB5} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{BD562B94-6332-49C9-8E3A-BFCD648AAB7D} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{BDA40058-CD7D-437A-8580-3102B51CE2F8} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{BE09C17F-1637-45E3-A366-DEB20BBB48C0} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{C0438BDC-9A2D-497E-9F6E-DB56AECB188D} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{C10667B2-D130-4C4C-8D9E-AB0994801174} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{C2073463-AFAB-4075-B2AA-236C95147526} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{C23FFD9B-7745-4FF4-8D5C-BA8E5E847050} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{C27665B1-CE0E-4D08-8233-79177D00EDBE} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{C4CAB230-2850-4012-A17B-2F5D7EA1CF73} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{C5E71A61-F4AF-467C-AADF-0CFD5E0D2C77} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{C60AAF05-79A6-453B-AAF7-6D48260969BA} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{C6253E90-0A1D-4839-8877-B26E1BC510C7} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{C6A6830A-C0BA-4E3B-951F-D0B77483669C} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{C6C661AD-8FC0-4372-9A86-84538E244043} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{C6C833C6-F2AC-4F90-B400-6800DC1411B9} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{C707AD74-26AB-41A3-9CEB-D3B778486825} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{C82BD4E2-40F9-4F02-BD80-6EFC28D69E1A} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{C879917B-3F8E-4DBF-AA19-6235B0D64B12} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{C9503150-67CA-4700-8720-6C331FA7E08B} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{C9A963F3-FD64-43B3-8610-72366731AC3F} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{C9B34194-F183-4196-A07A-D9DF8F6FDF7C} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{CA652277-A5F9-4045-BBD8-523B9C4F7E8E} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{CB17B330-6A1C-4E9A-9B88-69FE3CF4B72E} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{CB183C49-576E-4C4E-ADD4-86465CC226D7} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{CBA0099B-F45A-46A5-A437-98C1BB678D30} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{CD2174F6-3762-4903-A040-59D3ACA0F41C} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{CD837883-67E0-4026-8B26-229003FC2DE2} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{CDB23B51-ECAB-4D14-B914-41F28FDC1B20} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{CDD21E4E-8969-4D57-BB71-369912ECC7F0} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{CDE24637-5458-44A0-9CBD-1F668C6C6991} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{CE132705-F67F-4021-9FCD-E12A2DB45F28} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{CE4B410F-9AE2-486D-9C76-EA7D7536A2A7} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{CF3733D9-953F-4A20-B29B-4855F0613C7E} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{CFBE1D06-C84F-49AF-AEBC-E157CFE0577A} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{D045FDF1-3201-4B85-A282-F6CBF72BA0CB} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{D073CCB6-DF88-4CB9-ABC5-8379E2172ACF} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{D1BAC6D1-5D83-4FFA-90B3-DB52A7458CA6} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{D2094B55-8579-40B5-A1B4-0799F99A8835} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{D2CAC121-C82B-45B7-BB1A-4E81AE9022B0} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{D4C69BCD-5428-402E-B1DD-7C6A5CC6545D} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{D50845D9-EE60-4068-97DC-FAE7F6A54A6A} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{D512FF1D-30CF-46AE-9593-C5D3C7833B3C} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{D56F0BCE-4699-40A2-95B9-7B2B4D771C19} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{D5B21357-4546-4C48-B80F-2C642FF96E2D} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{D66E8C4B-71F1-45E3-9AA6-098249B60791} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{D7504A0A-2E3F-4807-B3FB-659C36A76F85} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{D88EDF3F-CA4F-4940-90BB-41420BF40F7B} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{D8EE3928-1BA9-48DD-B3D0-2184FD3DC8B1} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{D8FED636-7F52-4C72-A9D7-E797C9D27249} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{D98FB967-71AB-4707-B0E6-F6DE26CC45CD} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{D9A56036-49A2-4B98-8E2B-5AF64205D5D4} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{DA257266-43F2-4DDB-AAEC-09985A6B5B4D} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{DBD3712A-35EE-4ECF-8B44-13F53E535547} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{DC07B38F-17EC-4723-B359-80FD4996628D} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{DC322C2C-FD48-4E3C-B9DB-D62BB9D47D31} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{DCD91D34-640A-402B-B626-7025A1B28810} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{DDC9EEBB-E516-431D-BC7F-AAD58D4D38B0} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{DE050313-72AA-49C7-B3D1-FE78CC42F7E7} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{DE56AE8B-9F41-48FA-A1A7-897A8AA6D3D7} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{DEF69E1D-A713-422B-BCEB-1A01C2AA01C3} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{E075D4E8-FC70-4D19-8BE2-88D977FDE26B} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{E0D4EBFB-AA9F-49A7-9B4B-6272DC884902} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{E0D811D2-6736-4476-835F-636582CBFB94} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{E0D93FB7-3AC3-486D-8314-49B8C1DA9560} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{E0EBA23A-D6B7-4A38-93CF-E2D124A49238} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{E2C11B56-5F2B-4B2E-8E2B-D4ACF2657718} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{E2D2AA0F-BABB-4DEA-8FBD-0556B3CB4981} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{E37ECCDB-21C2-4527-9159-4B758F357473} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{E3A452FD-8262-4E55-9C6B-F0319C6C35B9} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{E3FB9541-57C3-4D83-BB3E-4B32DCE6DE7D} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{E4D0D5BC-C621-49DE-A73B-F2ABCEE66211} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{E521F361-72E0-4C60-B4ED-0E2E06FDAACB} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{E65843BB-A8C1-4DF7-909A-A07B5F3A1DF8} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{E67E79E1-F62C-4367-BBB8-6657A0932106} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{E6E1938F-0396-4DB4-9A1A-D9D41AB7B86D} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{E8317832-1D6A-48FF-A62D-4EAB554A4BC0} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{E880A790-8A61-4F6E-BD6E-FAB2E816AB59} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{E8884ACD-C41B-4966-ADF2-09B8F2AAB88A} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{E99413E3-52FE-4928-89AF-20836A5DD955} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{EA5FA665-1B93-4DDE-AA79-694D0551A950} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{EAAC416A-2169-4054-886D-15D11EA9AECA} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{EAEDBCC6-9338-4608-BC8E-B6A3F4F50DA7} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{EBC342A3-CF4A-48EC-99ED-E8E2402A359A} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{ED8FA5E3-A622-4699-866A-D87C060EB5F2} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{EDC6648D-19FB-4183-AD49-078FB6D1C0CF} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{EE1C4158-4270-4AD7-A91C-75A27F5F727D} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{EE79EB62-8AF0-4BAD-8366-A880FAC68BA2} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{EEAD265A-CE08-44CC-A7CF-83186B12FD33} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{F000F43A-0E95-473C-8695-D9E57BEFE254} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{F07015E9-B30A-4D1A-93C9-E62F018D47C3} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{F0CE33CB-5AE7-4EA8-A854-048177CC5995} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{F11095A8-D59F-489D-8CE1-1E874DC82DC9} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{F1464AA7-E1F5-4ED5-B754-BEDC2D99D93C} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{F1C1D492-AE5D-436A-9F57-6202C0FFBBE1} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{F49AE209-A8BB-435C-A70E-2899C8B9D557} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{F59B52AA-E656-4B43-852B-70E4B8AF6102} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{F67BDA9C-1135-4E54-A64B-79544B6AE4F7} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{F680B636-6FBD-4EDA-89DE-0EFFFC1E0B14} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{F710D2E2-9B80-4E74-8846-F19029292474} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{F712E9B3-6A4D-4B16-9DF5-FDFC42DC518A} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{F7AFE0FF-3E0D-41B6-97AA-DAE32B5A7A29} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{F87837EE-2CB6-43DA-8118-C80EE7F260A0} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{F90ED135-4D65-4F7C-A8F6-2B145777FD8A} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{FA58383D-5E88-483C-A7C9-D4CC3B54BB1B} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{FA99FF7F-878A-4DDC-9A56-46058EB3ED98} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{FAD45B94-E34B-4C52-B8CC-58A21998B729} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{FBA326A4-98E4-4553-BD61-533700E6F4F0} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{FC236A97-F755-4112-B23A-E3A9AA6768A4} Successfully deleted: [Empty Folder] C:\Users\usert\appdata\local\{FC95619B-77CB-4CC9-9469-6F9661AF0264} ~~~ FireFox Successfully deleted: [File] "C:\Users\usert\AppData\Roaming\mozilla\firefox\profiles\nspwuyrd.default\extensions\ftdownloader4@ftdownloader.com.xpi" Successfully deleted: [File] C:\Users\usert\AppData\Roaming\mozilla\firefox\profiles\nspwuyrd.default\searchplugins\babylon.xml Successfully deleted the following from C:\Users\usert\AppData\Roaming\mozilla\firefox\profiles\nspwuyrd.default\prefs.js user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.backgroundjs", "\n\n/**************************************************** user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.internaldb.cache/530e52021dc20843b1aa62957edeb9f8.value", "%22var%20adsDe user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.js", "\n\n /************************************************************ user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.plugins.plugin_1.code", "appAPI._cr_config={appID:function(){var a=appAPI user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.plugins.plugin_102.code", "if (typeof appAPI.internal.monetization === \" user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.plugins.plugin_119.code", "if (typeof appAPI.internal.monetization === \" user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.plugins.plugin_120.code", "if (typeof appAPI.internal.monetization === \" user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.plugins.plugin_123.code", "if (typeof appAPI.internal.monetization === \" user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.plugins.plugin_14.name", "CrossriderUtils"); user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.plugins.plugin_21.code", "var CrossriderDebugManager=(function(h){var f={ user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.plugins.plugin_22.code", "(function(a){appAPI.queueManager={queue:[],regi user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.plugins.plugin_28.code", "var CrossriderInitializerPlugin=(function(e){va user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.plugins.plugin_47.code", "(function(){appAPI.ready=function(a){appAPI.res user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.plugins.plugin_78.name", "CrossriderInfo"); user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.plugins.plugin_87.code", "var CROSSRIDER_PLATFORM=true;var JQ=bbrsJQ=$jqu user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.plugins.plugin_91.code", "(function(e){var l=(function(){var N=0;var V=\" user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.plugins.plugin_92.code", "if(typeof appAPI.internal.monetization===\"unde user_pref("extensions.crossrider.bic", "13f69554550baa49ec77a21e337004b9"); Emptied folder: C:\Users\usert\AppData\Roaming\mozilla\firefox\profiles\nspwuyrd.default\minidumps [189 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 25.06.2013 at 22:08:36,08 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
26.06.2013, 08:38 | #6 |
/// the machine /// TB-Ausbilder | Kaspersky stuft tmp Datei als hohen Risikowert ein bei der Programmkontrolle, Trojaner?ESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST Log. Noch Probleme?
__________________ --> Kaspersky stuft tmp Datei als hohen Risikowert ein bei der Programmkontrolle, Trojaner? |
26.06.2013, 23:05 | #7 |
| Kaspersky stuft tmp Datei als hohen Risikowert ein bei der Programmkontrolle, Trojaner?Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=3951514c3aa04245a706baad1e51cd95 # engine=14165 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2013-06-26 09:48:11 # local_time=2013-06-26 11:48:11 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1033 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode=1286 16777213 100 99 12136 27049613 0 0 # compatibility_mode=5893 16776573 100 94 92514 123913141 0 0 # scanned=199802 # found=0 # cleaned=0 # scan_time=11360 Code:
ATTFilter Results of screen317's Security Check version 0.99.68 Windows 7 Service Pack 1 x64 (UAC is enabled) Internet Explorer 10 ``````````````Antivirus/Firewall Check:`````````````` WMI entry may not exist for antivirus; attempting automatic update. `````````Anti-malware/Other Utilities Check:````````` Java(TM) 6 Update 18 Java 7 Update 9 Java version out of Date! Adobe Flash Player 10 Flash Player out of Date! Adobe Flash Player 11.7.700.224 Adobe Reader 10.1.4 Adobe Reader out of Date! Mozilla Firefox 21.0 Firefox out of Date! Google Chrome 27.0.1453.116 Google Chrome 28.0.1500.52 ````````Process Check: objlist.exe by Laurent```````` `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 25-06-2013 01 Ran by usert (administrator) on 27-06-2013 00:00:20 Running from C:\Users\usert\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\system32\atiesrxx.exe (AMD) C:\Windows\system32\atieclxx.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (IVT Corporation) C:\Program Files (x86)\IVT Corporation\BlueSoleil\BlueSoleilCS.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (IVT Corporation) C:\Program Files (x86)\IVT Corporation\BlueSoleil\BsMobileCS.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (Sony Corporation) c:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE (Sony Corporation) C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCSpt.exe (Sony Corporation) C:\Program Files\Sony\VAIO Update 5\VAIOUpdt.exe (Telefónica I+D) C:\Program Files (x86)\o2\Mobile Connection Manager\ImpWiFiSvc.exe (ArcSoft, Inc.) C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe (Sony Corporation) C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe (Microsoft Corporation) C:\Windows\SysWOW64\DllHost.exe (Sony Corporation) C:\Program Files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe (Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNService.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-Service.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-Network.exe (BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-BlockDevice.exe (BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-SharedFolder.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint\Apoint.exe (IVT Corporation) C:\Program Files (x86)\IVT Corporation\BlueSoleil\BsHelpCS.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Event Service\VESMgrSub.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint\ApMsgFwd.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint\Apntex.exe (ALPS) C:\Program Files\Apoint\Apvfb.exe (Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNClient.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCsystray.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Sony Computer Entertainment Inc.) C:\Program Files (x86)\Sony\Content Manager Assistant\CMA.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee Security Scan\3.0.318\SSScheduler.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Sony Corporation) C:\Program Files (x86)\Sony\PMB\PMBVolumeWatcher.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Sun Microsystems, Inc.) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Sony Computer Entertainment Inc.) C:\Program Files (x86)\Sony\Content Manager Assistant\CMAWatcher.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (IVT Corporation) C:\Program Files (x86)\IVT Corporation\BlueSoleil\BtTray.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-Agent.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Microsoft Corporation) C:\Windows\System32\vds.exe (Sony Corporation) C:\Program Files\Sony\VAIO Update 5\VUAgent.exe (Microsoft Corporation) C:\Program Files (x86)\Internet Explorer\IELowutil.exe () C:\Users\usert\Downloads\SecurityCheck.exe (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s [10134560 2010-04-07] (Realtek Semiconductor) HKLM\...\Run: [Apoint] %ProgramFiles%\Apoint\Apoint.exe [221480 2010-05-17] (Alps Electric Co., Ltd.) HKCU\...\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun [1475584 2010-11-20] (Microsoft Corporation) HKCU\...\Run: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background [4280184 2012-03-08] (Microsoft Corporation) HKCU\...\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun [19603048 2013-06-03] (Skype Technologies S.A.) HKCU\...\Policies\system: [DisableRegistryTools] 0 HKCU\...\Policies\system: [DisableTaskMgr] 0 MountPoints2: {c4e4867c-436c-11e2-b5f4-54424930716b} - E:\AutoRun.exe MountPoints2: {c4e4869a-436c-11e2-b5f4-54424930716b} - E:\AutoRun.exe MountPoints2: {c530204a-a689-11e2-9472-54424930716b} - E:\AutoRun.exe MountPoints2: {d7f531f9-3343-11e2-8cba-54424930716b} - E:\CMADownloader.exe HKLM-x32\...\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun [98304 2010-03-02] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [NortonOnlineBackupReminder] "C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe" UNATTENDED [538472 2009-06-17] (Symantec Corporation) HKLM-x32\...\Run: [PMBVolumeWatcher] c:\Program Files (x86)\Sony\PMB\PMBVolumeWatcher.exe [597792 2010-01-21] (Sony Corporation) HKLM-x32\...\Run: [NPSStartup] [x] HKLM-x32\...\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [919008 2012-07-27] (Adobe Systems Incorporated) HKLM-x32\...\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [252848 2012-07-03] (Sun Microsystems, Inc.) HKLM-x32\...\Run: [AVP] "C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe" [356376 2012-12-13] (Kaspersky Lab ZAO) HKLM-x32\...\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59720 2013-01-28] (Apple Inc.) HKLM-x32\...\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" [152392 2013-02-20] (Apple Inc.) HKLM-x32\...\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime [421888 2012-10-25] (Apple Inc.) HKLM-x32\...\Run: [BtTray] "C:\Program Files (x86)\IVT Corporation\BlueSoleil\BtTray.exe" [319574 2011-04-13] (IVT Corporation) HKLM-x32\...\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe [601928 2013-05-13] (BlueStack Systems, Inc.) Startup: C:\ProgramData\Start Menu\Programs\Startup\Bluetooth.lnk ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.) Startup: C:\ProgramData\Start Menu\Programs\Startup\Inhaltsmanager-Assistent für PlayStation(R).lnk ShortcutTarget: Inhaltsmanager-Assistent für PlayStation(R).lnk -> C:\Program Files (x86)\Sony\Content Manager Assistant\CMA.exe (Sony Computer Entertainment Inc.) Startup: C:\ProgramData\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files (x86)\McAfee Security Scan\3.0.318\SSScheduler.exe (McAfee, Inc.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - {30E7E642-329E-4C4B-A9DC-FCBC70DFBF69} URL = hxxp://rover.ebay.com/rover/1/707-37276-16609-0/4?satitle={searchTerms} SearchScopes: HKCU - {5CECA8C5-F60B-4DDA-B116-0DB7E7D5F0CD} URL = hxxp://services.zinio.com/search?s={searchTerms}&rf=sonyslices SearchScopes: HKCU - {6ED35488-2412-4005-A34C-D5BFECDECDE6} URL = hxxp://de.shopping.com/?linkin_id=8056363 BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg64.dll (Google Inc.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files (x86)\McAfee Security Scan\3.0.318\McAfeeMSS_IE.dll (McAfee, Inc.) BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO-x32: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll (Microsoft Corporation) BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) BHO-x32: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll (Google Inc.) BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\system32\urlmon.dll (Microsoft Corporation) Handler: msdaipp - No CLSID Value - Handler-x32: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - No File Handler-x32: msdaipp - No CLSID Value - Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - No File Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 FireFox: ======== FF ProfilePath: C:\Users\usert\AppData\Roaming\Mozilla\Firefox\Profiles\nspwuyrd.default FF SelectedSearchEngine: user_pref("browser.search.selectedEngine", ""); FF Homepage: https://www.google.de/ FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_224.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.0.2 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @java.com/DTPlugin,version=10.9.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.9.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @mcafee.com/McAfeeMssPlugin - C:\Program Files (x86)\McAfee Security Scan\3.0.318\npMcAfeeMss.dll (McAfee, Inc.) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Extension: No Name - C:\Users\usert\AppData\Roaming\Mozilla\Firefox\Profiles\nspwuyrd.default\Extensions\4fdacf00-e9c4-4ad5-b4cf-bf9800f184f6@36857116-74e0-4973-936f-860cd2a102a9.com FF Extension: artur.dubovoy - C:\Users\usert\AppData\Roaming\Mozilla\Firefox\Profiles\nspwuyrd.default\Extensions\artur.dubovoy@gmail.com.xpi FF Extension: youtubequality - C:\Users\usert\AppData\Roaming\Mozilla\Firefox\Profiles\nspwuyrd.default\Extensions\youtubequality@rzll.xpi FF Extension: No Name - C:\Users\usert\AppData\Roaming\Mozilla\Firefox\Profiles\nspwuyrd.default\Extensions\{097d3191-e6fa-4728-9826-b533d755359d}.xpi FF Extension: No Name - C:\Users\usert\AppData\Roaming\Mozilla\Firefox\Profiles\nspwuyrd.default\Extensions\{9AA46F4F-4DC7-4c06-97AF-5035170634FE}.xpi FF Extension: No Name - C:\Users\usert\AppData\Roaming\Mozilla\Firefox\Profiles\nspwuyrd.default\Extensions\{c0c9a2c7-2e5c-4447-bc53-97718bc91e1b}.xpi Chrome: ======= CHR HomePage: hxxp://www.google.de/ CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding} CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter} CHR Plugin: (Shockwave Flash) - C:\Users\usert\AppData\Local\Google\Chrome\User Data\PepperFlash\11.5.31.139\pepflashplayer.dll No File CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.52\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.52\pdf.dll () CHR Plugin: (Kaspersky Anti-Virus) - C:\Users\usert\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\13.0.1.4190_0\plugin/npUrlAdvisor.dll (Kaspersky Lab ZAO) CHR Plugin: (Kaspersky Anti-Virus) - C:\Users\usert\AppData\Local\Google\Chrome\User Data\Default\Extensions\hakdifolhalapjijoafobooafbilfakh\13.0.1.4190_0\plugin/online_banking_npapi.dll (Kaspersky Lab ZAO) CHR Plugin: (Kaspersky Anti-Virus) - C:\Users\usert\AppData\Local\Google\Chrome\User Data\Default\Extensions\hghkgaeecgjhjkannahfamoehjmkjail\13.0.1.4190_0\plugin/content_blocker_npapi.dll (Kaspersky Lab ZAO) CHR Plugin: (Kaspersky Anti-Virus) - C:\Users\usert\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh\13.0.1.4190_0\plugin/npVKPlugin.dll No File CHR Plugin: (Kaspersky Anti-Virus) - C:\Users\usert\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman\13.0.1.4190_0\plugin/npABPlugin.dll (Kaspersky Lab ZAO) CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (AmazonMP3DownloaderPlugin) - C:\Program Files (x86)\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin101753.dll (Amazon.com, Inc.) CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll No File CHR Plugin: (Java(TM) Platform SE 7 U9) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (Windows Live\u0099 Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (Java Deployment Toolkit 7.0.90.5) - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll No File CHR Extension: (Kaspersky URL Advisor) - C:\Users\usert\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\13.0.1.4190_0 CHR Extension: (Safe Money) - C:\Users\usert\AppData\Local\Google\Chrome\User Data\Default\Extensions\hakdifolhalapjijoafobooafbilfakh\13.0.1.4190_0 CHR Extension: (Content Blocker) - C:\Users\usert\AppData\Local\Google\Chrome\User Data\Default\Extensions\hghkgaeecgjhjkannahfamoehjmkjail\13.0.1.4190_0 CHR Extension: (Virtual Keyboard) - C:\Users\usert\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh\13.0.1.4292_0 CHR Extension: (Anti-Banner) - C:\Users\usert\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman\13.0.1.4190_0 ==================== Services (Whitelisted) ================= S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.) S2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe [356376 2012-12-13] (Kaspersky Lab ZAO) R2 BlueSoleilCS; C:\Program Files (x86)\IVT Corporation\BlueSoleil\BlueSoleilCS.exe [997376 2011-07-08] (IVT Corporation) R3 BsHelpCS; C:\Program Files (x86)\IVT Corporation\BlueSoleil\BsHelpCS.exe [192000 2011-04-13] (IVT Corporation) R2 BsMobileCS; C:\Program Files (x86)\IVT Corporation\BlueSoleil\BsMobileCS.exe [147563 2011-04-13] (IVT Corporation) R2 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [393032 2013-05-13] (BlueStack Systems, Inc.) R2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [384840 2013-05-13] (BlueStack Systems, Inc.) S3 McComponentHostService; C:\Program Files (x86)\McAfee Security Scan\3.0.318\McCHSvc.exe [235216 2013-02-05] (McAfee, Inc.) S3 Roxio UPnP Renderer 10; C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe [313840 2009-11-25] (Sonic Solutions) S2 Roxio Upnp Server 10; C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUpnpService10.exe [362992 2009-11-25] (Sonic Solutions) S3 SampleCollector; C:\Program Files\Sony\VAIO Care\collsvc.exe [168448 2009-12-22] (Sony of America Corporation) S3 SpfService; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService.exe [302448 2010-02-08] (Sony Corporation) R2 TGCM_ImportWiFiSvc; C:\Program Files (x86)\o2\Mobile Connection Manager\ImpWiFiSvc.exe [200624 2010-09-29] (Telefónica I+D) R2 uCamMonitor; C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [104960 2008-09-18] (ArcSoft, Inc.) S3 VAIO Entertainment TV Device Arbitration Service; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzHardwareResourceManager\VzHardwareResourceManager\VzHardwareResourceManager.exe [69632 2010-04-08] (Sony Corporation) R3 VUAgent; C:\Program Files\Sony\VAIO Update 5\VUAgent.exe [1203568 2010-01-22] (Sony Corporation) ==================== Drivers (Whitelisted) ==================== R3 ArcSoftKsUFilter; C:\Windows\System32\DRIVERS\ArcSoftKsUFilter.sys [19968 2009-05-26] (ArcSoft, Inc.) R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [70984 2013-05-13] (BlueStack Systems) R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [70984 2013-05-13] (BlueStack Systems) S3 BT; C:\Windows\System32\DRIVERS\btnetdrv.sys [20488 2010-08-18] (IVT Corporation.) S3 BTCOM; C:\Windows\System32\DRIVERS\btcomport.sys [29448 2010-08-26] (IVT Corporation.) R3 BTCOMBUS; C:\Windows\System32\Drivers\btcombus.sys [25352 2010-08-26] (IVT Corporation.) R0 BtHidBus; C:\Windows\System32\Drivers\BtHidBus.sys [23944 2010-04-06] (IVT Corporation.) R3 btnetBUs; C:\Windows\System32\Drivers\btnetBus.sys [30088 2010-04-06] () S3 ewusbnet; C:\Windows\System32\DRIVERS\ewusbnet.sys [256000 2010-08-31] (Huawei Technologies Co., Ltd.) R3 IvtBtBUs; C:\Windows\System32\Drivers\IvtBtBus.sys [27016 2010-04-06] (IVT Corporation.) R0 KL1; C:\Windows\System32\DRIVERS\kl1.sys [458584 2012-06-19] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [620128 2013-04-23] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [28504 2012-08-02] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29016 2012-10-25] (Kaspersky Lab) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29528 2012-10-25] (Kaspersky Lab) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [54368 2013-06-18] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [178448 2013-04-23] (Kaspersky Lab ZAO) S3 TFsExDisk; \??\C:\Windows\System32\Drivers\TFsExDisk.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-06-26 23:51 - 2013-06-26 23:52 - 00890988 ____A C:\Users\usert\Downloads\SecurityCheck.exe 2013-06-26 20:37 - 2013-06-26 20:37 - 00000000 ____D C:\Program Files (x86)\ESET 2013-06-26 20:35 - 2013-06-26 20:35 - 02347384 ____A (ESET) C:\Users\usert\Downloads\esetsmartinstaller_enu.exe 2013-06-26 20:28 - 2013-06-26 20:28 - 00000000 ____D C:\Users\usert\AppData\Local\{ECC322F7-0599-4F2D-8E04-1E2610ED7204} 2013-06-25 22:08 - 2013-06-25 22:08 - 00050910 ____A C:\Users\usert\Desktop\JRT.txt 2013-06-25 21:56 - 2013-06-25 21:56 - 00000000 ____D C:\Windows\ERUNT 2013-06-25 21:54 - 2013-06-25 21:56 - 00000000 ____D C:\JRT 2013-06-25 21:47 - 2013-06-25 21:47 - 00545954 ____A (Oleg N. Scherbakov) C:\Users\usert\Downloads\JRT.exe 2013-06-25 21:38 - 2013-06-25 21:39 - 00000098 ____A C:\Windows\DeleteOnReboot.bat 2013-06-25 21:37 - 2013-06-25 21:39 - 00016852 ____A C:\AdwCleaner[S1].txt 2013-06-25 21:35 - 2013-06-25 21:35 - 00648201 ____A C:\Users\usert\Downloads\adwcleaner.exe 2013-06-25 20:25 - 2013-06-25 21:09 - 00025797 ____A C:\Users\usert\Downloads\Addition.txt 2013-06-25 20:22 - 2013-06-25 20:22 - 01931854 ____A (Farbar) C:\Users\usert\Downloads\FRST64.exe 2013-06-25 20:22 - 2013-06-25 20:22 - 00000000 ____D C:\FRST 2013-06-23 12:49 - 2013-06-23 12:50 - 44060559 ____A C:\Users\usert\Downloads\DefqonWasted.rar 2013-06-22 21:12 - 2013-06-22 21:12 - 00000155 ____A C:\Users\usert\Downloads\q-danceradio.pls 2013-06-22 00:56 - 2013-06-22 00:56 - 00000000 ____D C:\ProgramData\BrowserDefender 2013-06-20 22:31 - 2013-06-20 22:32 - 61811828 ____A C:\Users\usert\Downloads\Hard Driver - Hate (16 bit master final).wav 2013-06-17 20:44 - 2013-06-17 20:45 - 78158460 ____A C:\Users\usert\Downloads\Neilio - Grains Of Sand (2013 Re-amp) 16 bit master.wav 2013-06-16 14:40 - 2013-06-08 16:08 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2013-06-16 14:40 - 2013-06-08 16:07 - 19233792 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2013-06-16 14:40 - 2013-06-08 16:06 - 15404544 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2013-06-16 14:40 - 2013-06-08 16:06 - 02648064 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2013-06-16 14:40 - 2013-06-08 16:06 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll 2013-06-16 14:40 - 2013-06-08 14:28 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2013-06-16 14:40 - 2013-06-08 13:42 - 01141248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-06-16 14:40 - 2013-06-08 13:40 - 14327808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-06-16 14:40 - 2013-06-08 13:40 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-06-16 14:40 - 2013-06-08 13:40 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-06-16 14:40 - 2013-06-08 13:40 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-06-16 14:40 - 2013-06-08 13:13 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-06-14 21:50 - 2013-06-14 21:52 - 106582571 ____A C:\Users\usert\Downloads\004 Digital Punk - Unleashed (powered by A² Records).m4a 2013-06-13 20:21 - 2013-05-17 03:25 - 00109056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-06-13 20:21 - 2013-05-17 03:25 - 00061440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-06-13 20:21 - 2013-05-17 03:25 - 00033280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-06-13 20:21 - 2013-05-17 02:59 - 00051712 ____A (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe 2013-06-13 20:21 - 2013-05-17 02:58 - 00136704 ____A (Microsoft Corporation) C:\Windows\System32\iesysprep.dll 2013-06-13 20:21 - 2013-05-17 02:58 - 00067072 ____A (Microsoft Corporation) C:\Windows\System32\iesetup.dll 2013-06-13 20:21 - 2013-05-17 02:58 - 00039936 ____A (Microsoft Corporation) C:\Windows\System32\iernonce.dll 2013-06-13 20:21 - 2013-05-14 14:23 - 00089600 ____A (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe 2013-06-13 20:21 - 2013-05-14 10:40 - 00071680 ____A (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-06-13 20:20 - 2013-05-17 03:25 - 02877440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-06-13 20:20 - 2013-05-17 03:25 - 01767936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-06-13 20:20 - 2013-05-17 03:25 - 00690688 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-06-13 20:20 - 2013-05-17 03:25 - 00493056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-06-13 20:20 - 2013-05-17 03:25 - 00039424 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-06-13 20:20 - 2013-05-17 02:59 - 02241024 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll 2013-06-13 20:20 - 2013-05-17 02:58 - 03958784 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll 2013-06-13 20:20 - 2013-05-17 02:58 - 00855552 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll 2013-06-13 20:20 - 2013-05-17 02:58 - 00603136 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll 2013-06-13 20:20 - 2013-05-17 02:58 - 00053248 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll 2013-06-12 20:15 - 2013-05-13 07:51 - 01464320 ____A (Microsoft Corporation) C:\Windows\System32\crypt32.dll 2013-06-12 20:15 - 2013-05-13 07:51 - 00184320 ____A (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll 2013-06-12 20:15 - 2013-05-13 07:51 - 00139776 ____A (Microsoft Corporation) C:\Windows\System32\cryptnet.dll 2013-06-12 20:15 - 2013-05-13 07:50 - 00052224 ____A (Microsoft Corporation) C:\Windows\System32\certenc.dll 2013-06-12 20:15 - 2013-05-13 06:45 - 01160192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-06-12 20:15 - 2013-05-13 06:45 - 00140288 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2013-06-12 20:15 - 2013-05-13 06:45 - 00103936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2013-06-12 20:15 - 2013-05-13 05:43 - 01192448 ____A (Microsoft Corporation) C:\Windows\System32\certutil.exe 2013-06-12 20:15 - 2013-05-13 05:08 - 00903168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2013-06-12 20:15 - 2013-05-13 05:08 - 00043008 ____A (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll 2013-06-12 20:15 - 2013-05-10 07:49 - 00030720 ____A (Microsoft Corporation) C:\Windows\System32\cryptdlg.dll 2013-06-12 20:15 - 2013-05-10 05:20 - 00024576 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2013-06-12 20:15 - 2013-05-08 08:39 - 01910632 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys 2013-06-12 20:15 - 2013-04-26 07:51 - 00751104 ____A (Microsoft Corporation) C:\Windows\System32\win32spl.dll 2013-06-12 20:15 - 2013-04-26 06:55 - 00492544 ____A (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2013-06-12 20:15 - 2013-04-17 09:02 - 01230336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2013-06-12 20:15 - 2013-04-17 08:24 - 01424384 ____A (Microsoft Corporation) C:\Windows\System32\WindowsCodecs.dll 2013-06-12 20:13 - 2013-04-26 01:30 - 01505280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2013-06-12 20:13 - 2013-04-01 00:52 - 01887232 ____A (Microsoft Corporation) C:\Windows\System32\d3d11.dll 2013-06-11 01:10 - 2013-06-11 01:10 - 19004761 ____A C:\Users\usert\Downloads\Assassin s Creed 4 Trailer #2 (E3 2013) (HD).mp4 2013-06-11 01:09 - 2013-06-11 01:09 - 42454006 ____A C:\Users\usert\Downloads\Assassin s Creed 4 Trailer (E3 2013) (HD).mp4 2013-06-08 22:39 - 2009-04-07 09:39 - 00016392 ____A (Teruten Inc) C:\Windows\SysWOW64\Drivers\TFsExDisk.Sys 2013-06-05 00:17 - 2013-06-05 00:18 - 26274394 ____A C:\Users\usert\Downloads\Frontliner_-_Weekend_Warriors_(Official_Defqon_1_2013_Anthem)-(Q071)-WEB-2013-HB.rar 2013-06-01 00:26 - 2013-06-01 00:26 - 06267463 ____A C:\Users\usert\Downloads\Radical Redemption & Frequencerz - Insanity (HQ Official).M4A 2013-05-30 23:39 - 2013-05-30 23:39 - 12603833 ____A C:\Users\usert\Downloads\FC Barcelona - Merci Abidal! (SD).mp4 2013-05-30 23:20 - 2013-05-30 23:20 - 05358227 ____A C:\Users\usert\Downloads\Wildstylez - Back To History (feat Cimo Fränkel) Intents Anthem 2013.M4A 2013-05-30 23:10 - 2013-05-30 23:10 - 04464277 ____A C:\Users\usert\Downloads\Alpha² & Noisecontrollers -- Craving for the beat (official Decibel 2013 anthem).M4A 2013-05-29 20:30 - 2013-05-29 20:30 - 04569646 ____A C:\Users\usert\Downloads\Frequencerz - Bitch (Crypsis Remix) HD.M4A 2013-05-28 00:47 - 2013-05-28 00:47 - 03067609 ____A C:\Users\usert\Downloads\255876.zip ==================== One Month Modified Files and Folders ======= 2013-06-26 23:59 - 2012-07-28 18:47 - 00000000 ____D C:\Users\usert\AppData\Local\Windows Live 2013-06-26 23:53 - 2012-07-20 19:57 - 00000884 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-06-26 23:52 - 2013-06-26 23:51 - 00890988 ____A C:\Users\usert\Downloads\SecurityCheck.exe 2013-06-26 23:31 - 2011-09-28 11:58 - 00001124 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-06-26 23:19 - 2011-09-28 11:39 - 01293792 ____A C:\Windows\WindowsUpdate.log 2013-06-26 23:15 - 2012-07-13 20:28 - 00000000 ____D C:\Users\usert\AppData\Roaming\Skype 2013-06-26 23:02 - 2009-07-14 06:51 - 00113501 ____A C:\Windows\setupact.log 2013-06-26 22:46 - 2012-07-13 20:19 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2013-06-26 20:37 - 2013-06-26 20:37 - 00000000 ____D C:\Program Files (x86)\ESET 2013-06-26 20:36 - 2009-07-14 06:45 - 00013936 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-06-26 20:36 - 2009-07-14 06:45 - 00013936 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-06-26 20:35 - 2013-06-26 20:35 - 02347384 ____A (ESET) C:\Users\usert\Downloads\esetsmartinstaller_enu.exe 2013-06-26 20:28 - 2013-06-26 20:28 - 00000000 ____D C:\Users\usert\AppData\Local\{ECC322F7-0599-4F2D-8E04-1E2610ED7204} 2013-06-26 20:27 - 2012-07-28 19:27 - 00000000 ____D C:\Users\usert\Tracing 2013-06-26 20:26 - 2011-09-28 11:58 - 00001120 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-06-26 20:25 - 2011-07-08 15:59 - 00001067 ____A C:\Windows\SysWOW64\bscs.ini 2013-06-26 20:25 - 2009-07-14 07:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT 2013-06-25 22:08 - 2013-06-25 22:08 - 00050910 ____A C:\Users\usert\Desktop\JRT.txt 2013-06-25 21:56 - 2013-06-25 21:56 - 00000000 ____D C:\Windows\ERUNT 2013-06-25 21:56 - 2013-06-25 21:54 - 00000000 ____D C:\JRT 2013-06-25 21:47 - 2013-06-25 21:47 - 00545954 ____A (Oleg N. Scherbakov) C:\Users\usert\Downloads\JRT.exe 2013-06-25 21:39 - 2013-06-25 21:38 - 00000098 ____A C:\Windows\DeleteOnReboot.bat 2013-06-25 21:39 - 2013-06-25 21:37 - 00016852 ____A C:\AdwCleaner[S1].txt 2013-06-25 21:35 - 2013-06-25 21:35 - 00648201 ____A C:\Users\usert\Downloads\adwcleaner.exe 2013-06-25 21:09 - 2013-06-25 20:25 - 00025797 ____A C:\Users\usert\Downloads\Addition.txt 2013-06-25 20:22 - 2013-06-25 20:22 - 01931854 ____A (Farbar) C:\Users\usert\Downloads\FRST64.exe 2013-06-25 20:22 - 2013-06-25 20:22 - 00000000 ____D C:\FRST 2013-06-25 20:02 - 2009-07-14 07:08 - 00032632 ____A C:\Windows\Tasks\SCHEDLGU.TXT 2013-06-23 12:50 - 2013-06-23 12:49 - 44060559 ____A C:\Users\usert\Downloads\DefqonWasted.rar 2013-06-22 21:12 - 2013-06-22 21:12 - 00000155 ____A C:\Users\usert\Downloads\q-danceradio.pls 2013-06-22 12:47 - 2011-09-28 12:34 - 00015788 ____A C:\Windows\PFRO.log 2013-06-22 00:56 - 2013-06-22 00:56 - 00000000 ____D C:\ProgramData\BrowserDefender 2013-06-22 00:56 - 2013-05-24 00:16 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-06-21 21:34 - 2012-07-24 00:31 - 00000000 ____D C:\Users\usert\AppData\Roaming\vlc 2013-06-20 22:32 - 2013-06-20 22:31 - 61811828 ____A C:\Users\usert\Downloads\Hard Driver - Hate (16 bit master final).wav 2013-06-18 21:23 - 2012-06-08 12:38 - 00054368 ____A (Kaspersky Lab ZAO) C:\Windows\System32\Drivers\kltdi.sys 2013-06-17 20:45 - 2013-06-17 20:44 - 78158460 ____A C:\Users\usert\Downloads\Neilio - Grains Of Sand (2013 Re-amp) 16 bit master.wav 2013-06-15 02:09 - 2012-07-15 22:59 - 00000000 ____D C:\Users\usert\Downloads\Ass 2013-06-14 21:52 - 2013-06-14 21:50 - 106582571 ____A C:\Users\usert\Downloads\004 Digital Punk - Unleashed (powered by A² Records).m4a 2013-06-13 20:29 - 2009-07-14 04:34 - 00000499 ____A C:\Windows\win.ini 2013-06-13 20:22 - 2012-07-14 00:59 - 75825640 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe 2013-06-13 00:44 - 2012-08-03 22:01 - 00000000 ____D C:\Users\usert\Documents\Handy 2013-06-12 20:00 - 2013-01-23 12:52 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-06-12 20:00 - 2011-09-28 12:12 - 00000000 ____D C:\ProgramData\Skype 2013-06-11 20:53 - 2012-07-20 19:57 - 00692104 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-06-11 20:53 - 2012-07-20 19:57 - 00071048 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-06-11 01:10 - 2013-06-11 01:10 - 19004761 ____A C:\Users\usert\Downloads\Assassin s Creed 4 Trailer #2 (E3 2013) (HD).mp4 2013-06-11 01:09 - 2013-06-11 01:09 - 42454006 ____A C:\Users\usert\Downloads\Assassin s Creed 4 Trailer (E3 2013) (HD).mp4 2013-06-08 16:08 - 2013-06-16 14:40 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2013-06-08 16:07 - 2013-06-16 14:40 - 19233792 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2013-06-08 16:06 - 2013-06-16 14:40 - 15404544 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2013-06-08 16:06 - 2013-06-16 14:40 - 02648064 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2013-06-08 16:06 - 2013-06-16 14:40 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll 2013-06-08 14:28 - 2013-06-16 14:40 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2013-06-08 13:42 - 2013-06-16 14:40 - 01141248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-06-08 13:40 - 2013-06-16 14:40 - 14327808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-06-08 13:40 - 2013-06-16 14:40 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-06-08 13:40 - 2013-06-16 14:40 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-06-08 13:40 - 2013-06-16 14:40 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-06-08 13:13 - 2013-06-16 14:40 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-06-05 00:18 - 2013-06-05 00:17 - 26274394 ____A C:\Users\usert\Downloads\Frontliner_-_Weekend_Warriors_(Official_Defqon_1_2013_Anthem)-(Q071)-WEB-2013-HB.rar 2013-06-01 00:26 - 2013-06-01 00:26 - 06267463 ____A C:\Users\usert\Downloads\Radical Redemption & Frequencerz - Insanity (HQ Official).M4A 2013-05-30 23:39 - 2013-05-30 23:39 - 12603833 ____A C:\Users\usert\Downloads\FC Barcelona - Merci Abidal! (SD).mp4 2013-05-30 23:20 - 2013-05-30 23:20 - 05358227 ____A C:\Users\usert\Downloads\Wildstylez - Back To History (feat Cimo Fränkel) Intents Anthem 2013.M4A 2013-05-30 23:10 - 2013-05-30 23:10 - 04464277 ____A C:\Users\usert\Downloads\Alpha² & Noisecontrollers -- Craving for the beat (official Decibel 2013 anthem).M4A 2013-05-29 20:30 - 2013-05-29 20:30 - 04569646 ____A C:\Users\usert\Downloads\Frequencerz - Bitch (Crypsis Remix) HD.M4A 2013-05-28 00:47 - 2013-05-28 00:47 - 03067609 ____A C:\Users\usert\Downloads\255876.zip ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-06-08 22:25 ==================== End Of Log ============================ Die Sache mit der tmp Datei tritt mittlerweile gar nicht mehr auf. Ist nun alles ok wieder? |
27.06.2013, 08:10 | #8 |
/// the machine /// TB-Ausbilder | Kaspersky stuft tmp Datei als hohen Risikowert ein bei der Programmkontrolle, Trojaner? Java, Flash, Adobe und Firefox bitte updaten. Fertig Die Reihenfolge ist hier entscheidend.
Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
27.06.2013, 21:20 | #9 |
| Kaspersky stuft tmp Datei als hohen Risikowert ein bei der Programmkontrolle, Trojaner? So. Habe nun alles gemacht und es wurde nichts schädliches oder sonstiges gefunden. Kurze Frage zum Programm (Add On) WOT. Werden dort wirklich alle Aktivitäten usw. ausspioniert? Finde es nämlich nicht so toll, wenn der Herausgeber dieses Programm alle meine Aktivitäten erkennen kann und sonstige Daten erfahren kann. |
28.06.2013, 06:14 | #10 |
/// the machine /// TB-Ausbilder | Kaspersky stuft tmp Datei als hohen Risikowert ein bei der Programmkontrolle, Trojaner? Nein, die Seiten die Du ansurfst werden geprüft mit einer Datenbank, mehr nicht
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
28.06.2013, 23:00 | #11 |
| Kaspersky stuft tmp Datei als hohen Risikowert ein bei der Programmkontrolle, Trojaner? Ok gut. Na dann danke ich dir vielmals für die Hilfe! Ist wieder alles in Ordnung und bin wieder glücklich. Super Hilfeleistung, einfach klasse! |
29.06.2013, 08:24 | #12 |
/// the machine /// TB-Ausbilder | Kaspersky stuft tmp Datei als hohen Risikowert ein bei der Programmkontrolle, Trojaner? Gern Geschehen
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Kaspersky stuft tmp Datei als hohen Risikowert ein bei der Programmkontrolle, Trojaner? |
aktiv, blockiert, datei, ebenfalls, erwischt, folge, hohe, internet, kaspersky, kaspersky internet security 2013, leute, log, meldung, nicht mehr, problem, programme, quarantäne, security, seite, seiten, signatur, tmp, trojaner, trojaner?, täglich, verändert |