|
Plagegeister aller Art und deren Bekämpfung: Trojan.Zeroacces!inf 4 Wie bekomme ich ihn weg?Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
04.07.2013, 19:59 | #16 |
| Trojan.Zeroacces!inf 4 Wie bekomme ich ihn weg?FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 03-07-2013 02 Ran by Yannick (administrator) on 04-07-2013 20:55:37 Running from C:\Users\Yannick\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (AMD) C:\Windows\system32\atiesrxx.exe (Logitech Inc.) C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe (AMD) C:\Windows\system32\atieclxx.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (MAGIX AG) C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe (Firebird Project) C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbguard.exe (Ellora Assets Corp.) C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.145\GoogleCrashHandler.exe (Egis Technology Inc.) C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Logitech Inc.) C:\Program Files\Logitech\Gaming Software\LWEMon.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (Smartbar) C:\Users\Yannick\AppData\Local\Smartbar\Application\SnapDo.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.145\GoogleCrashHandler64.exe () C:\PROGRA~2\ICQ6TO~1\ICQSER~1.EXE (Acer Incorporated) C:\Program Files\Acer\Acer Updater\UpdaterService.exe (Egis Technology Inc.) C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe (CyberLink Corp.) C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe (Logitech Inc.) C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe () C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe () C:\Program Files (x86)\Common Files\Logishrd\LQCVFX\COCIManager.exe (Egis Technology Inc.) C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\MWLService.exe (Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe (NewTech Infosystems, Inc.) C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe (Microsoft Corporation) c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (StarWind Software) C:\Program Files (x86)\Alcohol Soft\Alcohol 52\StarWind\StarWindServiceAE.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe (Acer Incorporated) C:\Program Files\Acer\Acer Updater\UpdaterService.exe () C:\Program Files\Video downloader\ExtensionUpdaterService.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE () C:\Users\Yannick\AppData\LocalLow\WOT\IE\WOTUpdater.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Firebird Project) C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbserver.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [mwlDaemon] C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe [349480 2009-08-06] (Egis Technology Inc.) HKLM\...\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s [12459112 2012-03-27] (Realtek Semiconductor) HKLM\...\Run: [Start WingMan Profiler] C:\Program Files\Logitech\Gaming Software\LWEMon.exe /noui [190536 2010-06-14] (Logitech Inc.) HKLM\...\Policies\Explorer\Run: [DirectX For Microsoft® Windows] C:\Windows\system32\fservice.exe No File HKLM-x32\...\Winlogon: [Shell] Explorer.exe C:\Windows\system32\fservice.exe [x ] () HKCU\...\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun [19603048 2013-06-03] (Skype Technologies S.A.) HKCU\...\Run: [AlcoholAutomount] "C:\Program Files (x86)\Alcohol Soft\Alcohol 52\AxAutoMntSrv.exe" -automount [75624 2012-01-05] (Alcohol Soft Development Team) HKCU\...\Run: [uTorrent] "C:\Users\Yannick\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED [1044560 2013-04-28] (BitTorrent Inc.) HKCU\...\Run: [Facebook Update] "C:\Users\Yannick\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver [138096 2013-06-05] (Facebook Inc.) HKCU\...\Run: [Browser Infrastructure Helper] C:\Users\Yannick\AppData\Local\Smartbar\Application\SnapDo.exe startup [20992 2013-06-03] (Smartbar) HKCU\...\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\daemon.exe" -autorun [490952 2008-08-08] (DT Soft Ltd) HKCU\...\Policies\system: [LogonHoursAction] 2 HKCU\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 MountPoints2: {8ca8dbec-ad8f-11e0-8d14-806e6f6e6963} - E:\setup.exe HKLM-x32\...\Run: [EgisTecLiveUpdate] "C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe" [199464 2009-08-04] (Egis Technology Inc.) HKLM-x32\...\Run: [ArcadeDeluxeAgent] "C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe" [128296 2009-07-31] (CyberLink Corp.) HKLM-x32\...\Run: [LWS] C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe -hide [190808 2011-03-02] (Logitech Inc.) HKLM-x32\...\Run: [] [x] HKLM-x32\...\Run: [Smart File Advisor] "C:\Program Files (x86)\Smart File Advisor\sfa.exe" /checkassoc [280824 2011-04-04] (Filefacts.net) HKLM-x32\...\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun [642656 2013-03-28] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start [2255184 2013-06-28] (LogMeIn Inc.) HKU\Default\...\RunOnce: [ScrSav] C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe /default [162336 2009-07-22] () HKU\Default User\...\RunOnce: [ScrSav] C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe /default [162336 2009-07-22] () HKU\Mama\...\Run: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background [3885408 2009-02-06] (Microsoft Corporation) HKU\Mama\...\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [x] HKU\Mama\...\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun [19603048 2013-06-03] (Skype Technologies S.A.) HKU\Mama\...\Run: [Optimizer Pro] C:\Program Files (x86)\Optimizer Pro\OptProLauncher.exe [x] HKU\Mama\...\Run: [Facebook Update] "C:\Users\Yannick\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver [138096 2013-06-05] (Facebook Inc.) HKU\Mama\...\Run: [Real Desktop] "C:\Program Files (x86)\Real Desktop\Real Desktop.exe" [x] HKU\Mama\...\Policies\system: [LogonHoursAction] 2 HKU\Mama\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKU\UpdatusUser\...\RunOnce: [ScrSav] C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe /default [162336 2009-07-22] () HKU\UpdatusUser.KARTOFFELBREI\...\RunOnce: [ScrSav] C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe /default [162336 2009-07-22] () AppInit_DLLs: C:\PROGRA~2\SEARCH~1\SEARCH~1\x64\datamngr.dll C:\PROGRA~2\SEARCH~1\SEARCH~1\x64\IEBHO.dll [1790872 2011-09-22] (Bandoo Media, inc) AppInit_DLLs-x32: c:\progra~2\browse~2\sprote~1.dll c:\progra~2\simple~1\sprote~1.dll [1032704 2013-01-24] () Startup: C:\Users\Mama\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Real Desktop.lnk ShortcutTarget: Real Desktop.lnk -> C:\Program Files (x86)\Real Desktop\Real Desktop.exe (No File) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://feed.snapdo.com/?publisher=SnapdoOCYB&dpid=SnapdoOCYB&co=DE&userid=4733b48d-99b4-4ea0-87fa-03ee8e24488f&searchtype=hp&installDate=25/06/2013 HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://search.iminent.com/?appId=702cee2e-da7c-4fc1-a7ee-30f72de85e9f&ref=homepage HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=5.5&ar=msnhome HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://feed.snapdo.com/?publisher=SnapdoOCYB&dpid=SnapdoOCYB&co=DE&userid=4733b48d-99b4-4ea0-87fa-03ee8e24488f&searchtype=ds&q={searchTerms}&installDate=25/06/2013 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.symantec.com/redirects/security_response/fix_homepage/index.jsp?lg=de&pid=NIS&pvid=20.3.1.22 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=5.5&ar=msnhome HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://www.searchqu.com/web?src=ieb&appid=119&systemid=406&sr=0&q={searchTerms} HKLM-x32 SearchScopes: DefaultScope {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.snapdo.com/?publisher=SnapdoOCYB&dpid=SnapdoOCYB&co=DE&userid=4733b48d-99b4-4ea0-87fa-03ee8e24488f&searchtype=ds&q={searchTerms}&installDate=25/06/2013 SearchScopes: HKLM-x32 - {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.snapdo.com/?publisher=SnapdoOCYB&dpid=SnapdoOCYB&co=DE&userid=4733b48d-99b4-4ea0-87fa-03ee8e24488f&searchtype=ds&q={searchTerms}&installDate=25/06/2013 HKCU SearchScopes: DefaultScope {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.snapdo.com/?publisher=SnapdoOCYB&dpid=SnapdoOCYB&co=DE&userid=4733b48d-99b4-4ea0-87fa-03ee8e24488f&searchtype=ds&q={searchTerms}&installDate=25/06/2013 SearchScopes: HKCU - {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.snapdo.com/?publisher=SnapdoOCYB&dpid=SnapdoOCYB&co=DE&userid=4733b48d-99b4-4ea0-87fa-03ee8e24488f&searchtype=ds&q={searchTerms}&installDate=25/06/2013 SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Snap.DoEngine - {31ad400d-1b06-4e33-a59a-90c2c140cba0} - C:\Windows\System32\mscoree.dll (Microsoft Corporation) BHO: Video downloader - {77BEC163-D389-42c1-91A4-C758846296A5} - C:\Program Files\Video downloader\Extension64.dll () BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO: SearchCore for Browsers - {9D717F81-9148-4f12-8568-69135F087DB0} - C:\PROGRA~2\SEARCH~1\SEARCH~1\x64\BROWSE~1.DLL (Bandoo Media, inc) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Browser Companion Helper - {00cbb66b-1d3b-46d3-9577-323a336acb50} - C:\Program Files (x86)\BrowserCompanion\jsloader.dll ( ) BHO-x32: Lexmark Symbolleiste - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll () BHO-x32: Babylon toolbar helper - {2EECD738-5844-4a99-B4B6-146BF802613B} - C:\Program Files (x86)\BabylonToolbar\BabylonToolbar\1.5.3.17\bh\BabylonToolbar.dll No File BHO-x32: Snap.DoEngine - {31ad400d-1b06-4e33-a59a-90c2c140cba0} - C:\Windows\\SysWOW64\mscoree.dll (Microsoft Corporation) BHO-x32: No Name - {5C255C8A-E604-49b4-9D64-90988571CECB} - No File BHO-x32: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll (Symantec Corporation) BHO-x32: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\IPS\IPSBHO.DLL (Symantec Corporation) BHO-x32: Funmoods Helper Object - {75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} - C:\PROGRA~2\Funmoods\1.5.23.22\bh\escort.dll No File BHO-x32: Video downloader - {77BEC163-D389-42c1-91A4-C758846296A5} - C:\Program Files\Video downloader\Extension32.dll () BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO-x32: Searchqu Toolbar - {99079a25-328f-4bd4-be04-00955acaa0a7} - C:\PROGRA~2\WI3C8A~1\Datamngr\ToolBar\searchqudtx.dll () BHO-x32: SearchCore for Browsers - {9D717F81-9148-4f12-8568-69135F087DB0} - C:\PROGRA~2\SEARCH~1\SEARCH~1\BROWSE~1.DLL (Bandoo Media, inc) BHO-x32: WOT - {9E571C81-21E7-496B-9E6B-127E60263022} - C:\Users\Yannick\AppData\LocalLow\WOT\IE\WOT.dll (WOT Services Oy) BHO-x32: Wajam - {A7A6995D-6EE1-4FD1-A258-49395D5BF99C} - C:\Program Files (x86)\Wajam\IE\priam_bho.dll (Wajam) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: delta Helper Object - {C1AF5FA5-852C-4C90-812E-A7F75E011D87} - C:\Program Files (x86)\Delta\delta\1.8.21.5\bh\delta.dll (Delta-search.com) BHO-x32: billiger.de Sparberater - {C5A83FB3-EA76-49C5-BA8D-11AEB924738B} - C:\Program Files (x86)\billigerde\Internet Explorer\billigerde.dll () BHO-x32: Lexmark - {D2C5E510-BE6D-42CC-9F61-E4F939078474} - C:\Program Files\Lexmark Printable Web\bho.dll () BHO-x32: VirtualDJ Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Softonic Helper Object - {E87806B5-E908-45FD-AF5E-957D83E58E68} - C:\Program Files (x86)\Softonic\Softonic\1.5.21.0\bh\Softonic.dll (Softonic.com) BHO-x32: Freemake.YoutubeButton - {e9e8eb35-ff77-455d-b677-91e5e4fc06c2} - C:\Windows\\SysWOW64\mscoree.dll (Microsoft Corporation) BHO-x32: SMTTB2009 Class - {FCBCCB87-9224-4B8D-B117-F56D924BEB18} - C:\Program Files (x86)\CheatEngine DB Toolbar Toolbar\tbcore3.dll () BHO-x32: PricePeep - {FD6D90C0-E6EE-4BC6-B9F7-9ED319698007} - C:\Program Files (x86)\PricePeep\pricepeep.dll (PricePeep) Toolbar: HKLM - Snap.Do - {ae07101b-46d4-4a98-af68-0333ea26e113} - C:\Windows\System32\mscoree.dll (Microsoft Corporation) Toolbar: HKLM-x32 - Searchqu Toolbar - {99079a25-328f-4bd4-be04-00955acaa0a7} - C:\PROGRA~2\WI3C8A~1\Datamngr\ToolBar\searchqudtx.dll () Toolbar: HKLM-x32 - toolplugin - {DFEFCDEE-CF1A-4FC8-89AF-189327213627} - C:\Users\Yannick\AppData\Roaming\toolplugin\toolbar.dll () Toolbar: HKLM-x32 - Lexmark Symbolleiste - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll () Toolbar: HKLM-x32 - Softonic Toolbar - {5018CFD2-804D-4C99-9F81-25EAEA2769DE} - C:\Program Files (x86)\Softonic\Softonic\1.5.21.0\SoftonicTlbr.dll (Softonic.com) Toolbar: HKLM-x32 - ICQToolBar - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll (ICQ) Toolbar: HKLM-x32 - Funmoods Toolbar - {A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} - C:\PROGRA~2\Funmoods\1.5.23.22\escorTlbr.dll No File Toolbar: HKLM-x32 - CheatEngine DB Toolbar Toolbar - {338B4DFE-2E2C-4338-9E41-E176D497299E} - C:\Program Files (x86)\CheatEngine DB Toolbar Toolbar\tbcore3.dll () Toolbar: HKLM-x32 - VirtualDJ Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask) Toolbar: HKLM-x32 - Delta Toolbar - {82E1477C-B154-48D3-9891-33D83C26BCD3} - C:\Program Files (x86)\Delta\delta\1.8.21.5\deltaTlbr.dll (Delta-search.com) Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll (Symantec Corporation) Toolbar: HKLM-x32 - Snap.Do - {ae07101b-46d4-4a98-af68-0333ea26e113} - C:\Windows\\SysWOW64\mscoree.dll (Microsoft Corporation) Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File Toolbar: HKCU - No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File Handler: base64 - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - No File Handler: chrome - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - No File Handler: prox - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - No File Handler-x32: base64 - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files (x86)\BrowserCompanion\tdataprotocol.dll (Blabbers Communications Ltd) Handler-x32: chrome - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files (x86)\BrowserCompanion\tdataprotocol.dll (Blabbers Communications Ltd) Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation) Handler-x32: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files (x86)\Common Files\Microsoft Shared\Information Retrieval\msitss.dll (Microsoft Corporation) Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation) Handler-x32: prox - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files (x86)\BrowserCompanion\tdataprotocol.dll (Blabbers Communications Ltd) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_224.dll () FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf - C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.) FF Plugin: @java.com/JavaPlugin - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf - C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll () FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf - C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @java.com/JavaPlugin - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8064.0206 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf - C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @videolan.org/vlc,version=1.1.11 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (the VideoLAN Team) FF Plugin HKCU: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf - C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.) FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\Yannick\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll No File FF HKLM\...\Firefox\Extensions: [{77BEC163-D389-42c1-91A4-C758846296A5}] C:\Program Files\Video downloader\Firefox FF Extension: Video downloader - C:\Program Files\Video downloader\Firefox FF HKLM-x32\...\Firefox\Extensions: [{77BEC163-D389-42c1-91A4-C758846296A5}] C:\Program Files\Video downloader\Firefox FF Extension: Video downloader - C:\Program Files\Video downloader\Firefox FF HKLM-x32\...\Firefox\Extensions: [fmdownloader@gmail.com] C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com\ FF Extension: Freemake Video Downloader Plugin - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com\ FF HKLM-x32\...\Firefox\Extensions: [ytfmdownloader@gmail.com] C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com\ FF Extension: Freemake Youtube Download Button - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com\ FF HKLM-x32\...\Firefox\Extensions: [{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}] C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\coFFPlgn\ FF Extension: Norton Toolbar - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\coFFPlgn\ FF HKLM-x32\...\Firefox\Extensions: [ocr@babylon.com] C:\Program Files (x86)\Babylon\Babylon-Pro\Utils\ocr@babylon.com FF HKLM-x32\...\Firefox\Extensions: [{BBDA0591-3099-440a-AA10-41764D9DB4DB}] C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\IPSFFPlgn\ FF Extension: Norton Vulnerability Protection - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\IPSFFPlgn\ Chrome: ======= CHR Extension: (Google Drive) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0 CHR Extension: (YouTube) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0 CHR Extension: (Freemake Video Downloader) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpegkgagfojjbcpkihigfmkojdmmimdf\1.0.0_0 CHR Extension: (Adblock Plus) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.4.1_0 CHR Extension: (Google Search) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0 CHR Extension: (Freemake Youtube Download Button) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehgldbbpchgpcfagfpfjgoomddhccfgh\1.0.0_0 CHR Extension: (Delta Toolbar) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde\1.4_0 CHR Extension: (Browsseo22ssaavve) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\fgakajlljfopcdhdnpkplbkddalmeklb\1 CHR Extension: (AdBlock) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.2_0 CHR Extension: (Browsseo22ssaavve) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\hacnkiijhgaaelkopepgemlfighgfhdh\1 CHR Extension: (ProxMate - Improve your Internet!) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\hgjpnmnpjmabddgmjdiaggacbololbjm\2.3.8_0 CHR Extension: (Browsseo22ssaavve) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\jdepeiliecfaagfeeomojencmgdcbckn\1 CHR Extension: (Norton Identity Protection) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2013.4.0.10_0 CHR Extension: (WOT) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\nphjeokkkbngjpiofnfpnafjeofjomfb\2.11.7_0 CHR Extension: (Gmail) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0 ==================== Services (Whitelisted) ================= S2 AxAutoMntSrv; C:\Program Files (x86)\Alcohol Soft\Alcohol 52\AxAutoMntSrv.exe [75624 2012-01-05] (Alcohol Soft Development Team) R2 FirebirdGuardianDefaultInstance; C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbguard.exe [98304 2010-09-17] (Firebird Project) R3 FirebirdServerDefaultInstance; C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbserver.exe [3735552 2010-09-17] (Firebird Project) R2 FreemakeVideoCapture; C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe [9216 2013-01-10] (Ellora Assets Corp.) S3 Guard.Mail.ru; C:\Program Files (x86)\Guard-ICQ\GuardICQ.exe [1564368 2012-06-02] () R2 ICQ Service; C:\PROGRA~2\ICQ6TO~1\ICQSER~1.EXE [247872 2012-03-20] () S2 lxeaCATSCustConnectService; C:\Windows\system32\spool\DRIVERS\x64\3\\lxeaserv.exe [33960 2009-07-29] (Lexmark International, Inc.) S3 lxea_device; C:\Windows\system32\lxeacoms.exe [1054888 2009-07-29] ( ) S2 MSSQL$SQLEXPRESS; c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [58345832 2011-09-22] (Microsoft Corporation) R2 MWLService; C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe [311592 2009-08-06] (Egis Technology Inc.) R2 NIS; C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe [144368 2013-05-21] (Symantec Corporation) S4 SQLAgent$SQLEXPRESS; c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [431464 2011-09-22] (Microsoft Corporation) S3 SrvUpdater; C:\Program Files (x86)\SoftwareUpdater\UpdaterService.exe [31744 2013-02-18] () R2 StarWindServiceAE; C:\Program Files (x86)\Alcohol Soft\Alcohol 52\StarWind\StarWindServiceAE.exe [370688 2009-12-23] (StarWind Software) R2 Video downloader Updater; C:\Program Files\Video downloader\ExtensionUpdaterService.exe [188760 2013-06-23] () S3 WajamUpdater; C:\Program Files (x86)\Wajam\Updater\WajamUpdater.exe [109064 2012-10-05] (Wajam) S2 WiseBootAssistant; C:\Program Files (x86)\Wise\Wise Care 365\BootTime.exe [580232 2013-05-13] (WiseCleaner.com) R2 WOTUpdater; C:\Users\Yannick\AppData\LocalLow\WOT\IE\WOTUpdater.exe [18432 2012-01-12] () ==================== Drivers (Whitelisted) ==================== S2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [310728 2012-02-13] () R1 BHDrvx64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\BASHDefs\20130702.001\BHDrvx64.sys [1393240 2013-05-31] (Symantec Corporation) R1 BHDrvx64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\BASHDefs\20130702.001\BHDrvx64.sys [1393240 2013-05-31] (Symantec Corporation) R1 ccSet_NIS; C:\Windows\system32\drivers\NISx64\1404000.028\ccSetx64.sys [169048 2013-04-16] (Symantec Corporation) R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484512 2013-02-23] (Symantec Corporation) R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484512 2013-02-23] (Symantec Corporation) R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [138912 2013-02-23] (Symantec Corporation) S3 GPCIDrv; C:\Program Files (x86)\GIGABYTE\EasyBoost\GPCIDrv64.sys [14376 2008-07-15] () S3 GPCIDrv; C:\Program Files (x86)\GIGABYTE\EasyBoost\GPCIDrv64.sys [14376 2008-07-15] () R1 IDSVia64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\IPSDefs\20130703.001\IDSvia64.sys [513184 2013-02-22] (Symantec Corporation) R1 IDSVia64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\IPSDefs\20130703.001\IDSvia64.sys [513184 2013-02-22] (Symantec Corporation) R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [42696 2012-02-13] () R3 NAVENG; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\VirusDefs\20130704.002\ENG64.SYS [126040 2013-05-22] (Symantec Corporation) R3 NAVENG; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\VirusDefs\20130704.002\ENG64.SYS [126040 2013-05-22] (Symantec Corporation) R3 NAVEX15; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\VirusDefs\20130704.002\EX64.SYS [2098776 2013-05-22] (Symantec Corporation) R3 NAVEX15; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\VirusDefs\20130704.002\EX64.SYS [2098776 2013-05-22] (Symantec Corporation) R2 npf; C:\Windows\System32\drivers\npf.sys [35344 2011-02-11] (CACE Technologies, Inc.) S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [13368 2012-11-19] () S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [13368 2012-11-19] () R0 sptd; C:\Windows\System32\Drivers\sptd.sys [564824 2013-05-28] (Duplex Secure Ltd.) R1 SRTSP; C:\Windows\System32\Drivers\NISx64\1404000.028\SRTSP64.SYS [796760 2013-05-16] (Symantec Corporation) R1 SRTSPX; C:\Windows\system32\drivers\NISx64\1404000.028\SRTSPX64.SYS [36952 2013-03-05] (Symantec Corporation) R0 SymDS; C:\Windows\System32\drivers\NISx64\1404000.028\SYMDS64.SYS [493656 2013-05-21] (Symantec Corporation) R0 SymEFA; C:\Windows\System32\drivers\NISx64\1404000.028\SYMEFA64.SYS [1139800 2013-05-23] (Symantec Corporation) R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [177312 2013-06-19] (Symantec Corporation) R1 SymIRON; C:\Windows\system32\drivers\NISx64\1404000.028\Ironx64.SYS [224416 2013-03-05] (Symantec Corporation) R1 SymNetS; C:\Windows\System32\Drivers\NISx64\1404000.028\SYMNETS.SYS [433752 2013-04-25] (Symantec Corporation) S3 TVICHW32; C:\Program Files (x86)\GIGABYTE\EasyBoost\TVicHW64.sys [21200 2006-10-13] (EnTech Taiwan) S3 TVICHW32; C:\Program Files (x86)\GIGABYTE\EasyBoost\TVicHW64.sys [21200 2006-10-13] (EnTech Taiwan) S3 VCSVADHWSer; C:\Windows\System32\DRIVERS\vcsvad.sys [22528 2013-02-24] (Avnex) S3 WinRing0_1_2_0; C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [14544 2010-11-01] (OpenLibSys.org) S3 WinRing0_1_2_0; C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [14544 2010-11-01] (OpenLibSys.org) U3 a5g50e85; C:\Windows\System32\Drivers\a5g50e85.sys [0 ] (Microsoft Corporation) S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [x] S3 FairplayKD; \??\C:\ProgramData\MTA San Andreas All\1.3\temp\FairplayKD.sys [x] U3 JavaQuickStarterService; U4 srservice; S3 TFsExDisk; \??\C:\Windows\System32\Drivers\TFsExDisk.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-07-04 15:57 - 2013-07-04 15:58 - 02237968 ____A (Kaspersky Lab ZAO) C:\Users\Yannick\Desktop\tdsskiller.exe 2013-07-04 13:11 - 2013-07-04 13:12 - 03688886 ____A C:\Users\Yannick\Downloads\O305_Upgrade_1-5.rar 2013-07-03 20:45 - 2013-07-03 20:46 - 01934082 ____A (Farbar) C:\Users\Yannick\Desktop\FRST64.exe 2013-07-03 20:36 - 2013-07-03 20:36 - 02641537 ____A C:\Users\Yannick\Downloads\1361023764_trainerv65.rar 2013-07-03 19:11 - 2013-07-03 19:20 - 65897206 ____A C:\Users\Yannick\Downloads\Velbert 2.0 - Ansagen.zip 2013-07-03 12:12 - 2013-07-03 12:15 - 13717860 ____A C:\Users\Yannick\Downloads\1343867151_WEAPONS.ivaud 2013-07-03 12:12 - 2013-07-03 12:13 - 04075259 ____A C:\Users\Yannick\Downloads\1316332607_ColtAnaconda.rar 2013-07-03 12:10 - 2013-07-03 12:11 - 02079322 ____A C:\Users\Yannick\Downloads\GTAIVMinigunModbymahmutil.rar 2013-07-03 12:08 - 2013-07-03 12:09 - 01877839 ____A C:\Users\Yannick\Downloads\1371727631_coltpython.rar 2013-07-03 12:07 - 2013-07-03 12:09 - 06049113 ____A C:\Users\Yannick\Downloads\1355099338_GTAV2.rar 2013-07-03 10:08 - 2013-07-03 10:10 - 10947677 ____A C:\Users\Yannick\Downloads\1354091225_Download.zip 2013-07-03 10:07 - 2013-07-03 10:07 - 02068856 ____A C:\Users\Yannick\Downloads\1358466481_Statue of Liberty.rar 2013-07-03 10:02 - 2013-07-03 10:03 - 07277054 ____A C:\Users\Yannick\Downloads\1372068824_APaG3.0Hotfix.rar 2013-07-03 09:19 - 2013-07-03 09:19 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2013-07-02 18:53 - 2013-07-02 18:54 - 02662221 ____A C:\Users\Yannick\Downloads\1310225693_Simple Native Trainer v.6.3.rar 2013-07-02 18:51 - 2013-07-02 18:51 - 00072097 ____A C:\Users\Yannick\Downloads\xliveless - v0.999b7 (patch 1.0.7.0. and EFLC 1.1.2.0).zip 2013-07-02 18:50 - 2013-07-02 18:50 - 00004960 ____A C:\Users\Yannick\Downloads\1369742775_Brain Control ver5.5.rar 2013-07-02 17:31 - 2013-07-02 17:31 - 00042711 ____A C:\Users\Yannick\Downloads\IVAsiLoader.rar 2013-07-02 17:28 - 2013-07-02 17:28 - 00185987 ____A C:\Users\Yannick\Downloads\GTA-IV-ASI-Loader-Files.zip 2013-07-02 17:19 - 2013-07-02 17:19 - 00051394 ____A C:\Users\Yannick\Downloads\asiloader1020b.zip 2013-07-02 17:18 - 2013-07-02 17:18 - 00717495 ____A C:\Users\Yannick\Downloads\scripthookdotnet.zip 2013-07-02 16:48 - 2013-07-02 16:48 - 00001764 ____A C:\Users\Yannick\Desktop\Contig.exe - Verknüpfung.lnk 2013-07-02 16:44 - 2013-07-02 16:45 - 00104548 ____A C:\Users\Yannick\Downloads\Contig.zip 2013-07-02 16:24 - 2013-07-02 16:25 - 01113486 ____A C:\Users\Yannick\Downloads\ModPack_HippieCommunist.rar 2013-07-02 16:20 - 2013-07-02 16:44 - 111801582 ____A C:\Users\Yannick\Downloads\gta_environment_mod_5.zip 2013-07-02 16:19 - 2013-07-02 16:19 - 00001222 ____A C:\Users\Yannick\Downloads\1319708462_NGTsExplosionV2.zip 2013-07-02 16:15 - 2013-07-02 16:16 - 03101567 ____A C:\Users\Yannick\Downloads\O305_Upgrade_1-3.rar 2013-07-01 22:27 - 2013-07-01 22:27 - 00001807 ____A C:\Users\Yannick\Desktop\LaunchGTAIV.exe - Verknüpfung.lnk 2013-07-01 20:48 - 2013-07-01 20:48 - 00055779 ____A C:\Users\Yannick\Desktop\Addition.txt 2013-07-01 20:45 - 2013-07-03 20:46 - 00000000 ____D C:\FRST 2013-07-01 19:49 - 2013-07-01 19:49 - 00102718 ____A C:\Users\Yannick\Desktop\Extras.Txt 2013-07-01 19:47 - 2013-07-01 19:47 - 00188512 ____A C:\Users\Yannick\Desktop\OTL.Txt 2013-07-01 19:15 - 2013-07-01 19:15 - 00000724 ____A C:\Users\Yannick\Desktop\defogger_disable.log 2013-07-01 19:15 - 2013-07-01 19:15 - 00000382 ____A C:\Users\Yannick\defogger_reenable 2013-07-01 19:00 - 2013-07-01 19:00 - 00000000 ____D C:\sh4ldr 2013-07-01 19:00 - 2013-07-01 19:00 - 00000000 ____D C:\Program Files\Enigma Software Group 2013-07-01 16:58 - 2013-07-01 22:05 - 00000000 ____D C:\Program Files (x86)\Trojancheck 6 2013-07-01 16:51 - 2013-07-01 16:51 - 00018808 ____A C:\Users\Yannick\Downloads\hijackthis.log 2013-07-01 15:41 - 2013-07-01 22:05 - 00000000 ____D C:\Windows\System32\%LOCALAPPDATA% 2013-06-30 22:12 - 2013-06-30 22:12 - 00223050 ____A C:\Users\Yannick\Downloads\GTA IV - Crack only - 1.0.7.0 (Razor1911).rar 2013-06-30 22:11 - 2013-06-30 22:26 - 108752708 ____A C:\Users\Yannick\Downloads\GTA IV 1.0.7.0. (1).rar 2013-06-30 21:00 - 2013-06-30 21:00 - 00000000 __SHD C:\ProgramData\SecuROM 2013-06-30 20:46 - 2013-06-30 20:46 - 00303511 ____A C:\Users\Yannick\Downloads\1311984168100_GTAIV_LAZIC-NIKOLA.rar 2013-06-30 20:38 - 2013-06-30 20:38 - 00059820 ____A C:\Users\Yannick\Downloads\1233162148SavegameGTAIV.rar 2013-06-30 20:33 - 2013-06-30 20:50 - 109388216 ____A C:\Users\Yannick\Downloads\gta4_1.0.7.0.zip 2013-06-30 19:43 - 2013-06-30 19:43 - 00000000 ____D C:\Users\Yannick\Documents\Rockstar Games 2013-06-30 19:10 - 2013-06-30 20:58 - 00000000 ____D C:\Users\Yannick\AppData\Local\Rockstar Games 2013-06-30 19:08 - 2013-06-30 19:09 - 02855181 ____A C:\Users\Yannick\Downloads\RealisticDriving_EFLC_13.zip 2013-06-30 18:26 - 2013-06-30 18:26 - 00000000 ____D C:\Users\Yannick\Downloads\Vehicles 2013-06-30 18:13 - 2013-06-30 18:13 - 00001066 ____A C:\Users\Public\Desktop\DAEMON Tools Lite.lnk 2013-06-30 18:13 - 2013-06-30 18:13 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\DAEMON Tools 2013-06-30 18:13 - 2013-06-30 18:13 - 00000000 ____D C:\Program Files (x86)\DAEMON Tools Lite 2013-06-30 18:02 - 2013-07-01 22:22 - 00002204 ____A C:\Users\Public\Desktop\Grand Theft Auto IV.lnk 2013-06-30 17:02 - 2013-06-30 17:02 - 00001190 ____A C:\Users\Public\Desktop\Switch to Gaming Mode.lnk 2013-06-30 17:02 - 2013-06-30 17:02 - 00001178 ____A C:\Users\Public\Desktop\Game Booster 3.lnk 2013-06-30 17:02 - 2013-06-30 17:02 - 00000000 ____D C:\ProgramData\IObit 2013-06-30 17:02 - 2013-06-30 17:02 - 00000000 ____D C:\Program Files (x86)\IObit 2013-06-30 17:00 - 2013-06-30 17:01 - 04344120 ____A (IObit ) C:\Users\Yannick\Downloads\gb3-4-setup.exe 2013-06-30 16:25 - 2013-06-30 16:40 - 94729627 ____A C:\Users\Yannick\Downloads\Rheinhausen V4 - Revised Edition 1 by Zane.7z 2013-06-30 16:25 - 2013-06-30 16:25 - 00001513 ____A C:\Users\Yannick\Downloads\Rheinhausen V4 - Revised Edition 1 - Hotfix.7z 2013-06-30 14:09 - 2013-07-01 22:23 - 00055647 ____A C:\Windows\DirectX.log 2013-06-30 14:06 - 2013-06-30 14:06 - 00001362 ____A C:\Users\Yannick\Desktop\Bus- & Cable Car-Simulator.lnk 2013-06-30 14:05 - 2013-06-30 14:18 - 83066510 ____A C:\Users\Yannick\Downloads\BCS_Update_1_0_7_German.exe 2013-06-30 14:03 - 2013-06-30 14:03 - 00003064 ____A C:\Users\Yannick\Downloads\d2a536_4e9f426495345.zip 2013-06-30 08:20 - 2013-06-30 08:20 - 00002255 ____A C:\Users\Yannick\Desktop\Google Chrome.lnk 2013-06-28 22:55 - 2013-06-28 22:55 - 00000000 ____D C:\Program Files (x86)\K-Lite Codec Pack 2013-06-28 22:55 - 2012-06-09 19:21 - 00178688 ____A C:\Windows\SysWOW64\unrar.dll 2013-06-28 22:50 - 2013-06-28 22:53 - 09049827 ____A ( ) C:\Users\Yannick\Downloads\K-Lite_Codec_Pack_995_Basic.exe 2013-06-28 22:46 - 2013-06-28 22:46 - 00001344 ____A C:\Users\Yannick\Desktop\Free YouTube Uploader.lnk 2013-06-28 22:46 - 2013-06-28 22:46 - 00001247 ____A C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk 2013-06-28 22:44 - 2013-06-28 22:44 - 00002334 ____A C:\Users\Yannick\Desktop\Free Video to Flash Converter.lnk 2013-06-28 22:32 - 2013-06-28 22:42 - 32199568 ____A (DVDVideoSoft Ltd. ) C:\Users\Yannick\Downloads\FreeVideoToFlashConverter_5.0.26.622.exe 2013-06-28 22:31 - 2013-06-28 22:42 - 30544736 ____A (DVDVideoSoft Ltd. ) C:\Users\Yannick\Downloads\FreeYouTubeUploader-4.0.1.622 (1).exe 2013-06-28 22:29 - 2013-06-28 22:29 - 00002513 ____A C:\Users\Yannick\Downloads\sg_backup_2013-06-28-2229.spg 2013-06-28 22:29 - 2013-06-28 22:29 - 00002513 ____A C:\Users\Yannick\Downloads\FirstBackup.spg 2013-06-28 22:27 - 2013-06-28 22:28 - 00659456 ____A (Speed Guide Inc.) C:\Users\Yannick\Downloads\TCP308Optimizer.exe 2013-06-28 14:38 - 2013-06-28 14:38 - 00066317 ____A C:\Users\Yannick\Downloads\Mercedes Benz O305 Stern by Chris 12.zip 2013-06-27 23:08 - 2013-06-28 00:12 - 194572800 ____A C:\Users\Yannick\Downloads\VA-Die_Ultimative_Chartshow_Die_Erfolgreichsten_Hits_2012_-2CD-2012-VOiCE.part1.rar 2013-06-27 23:08 - 2013-06-27 23:52 - 109437125 ____A C:\Users\Yannick\Downloads\VA-Die_Ultimative_Chartshow_Die_Erfolgreichsten_Hits_2012_-2CD-2012-VOiCE.part2.rar 2013-06-27 22:57 - 2013-06-28 00:38 - 406223635 ____A C:\Users\Yannick\Downloads\frdpq.Just.The.Best.Sommer.Hits.1990..Heute.2013.rar 2013-06-27 22:51 - 2013-06-27 22:52 - 04639408 ____A (hxxp://yourfiledownloader.com) C:\Users\Yannick\Downloads\va_just_the_best_sommer_hits_1990_heute_2013_downloader_de_99370.exe 2013-06-27 22:50 - 2013-06-27 22:50 - 00935354 ____A C:\Users\Yannick\Downloads\jingles4free_old_pack1 (1).rar 2013-06-27 22:46 - 2013-06-27 22:46 - 03731936 ____A C:\Users\Yannick\Downloads\Jeden Tag 24 Stunden Musik.wav 2013-06-27 22:28 - 2013-06-27 22:28 - 00935354 ____A C:\Users\Yannick\Downloads\jingles4free_old_pack1.rar 2013-06-27 22:24 - 2013-06-27 22:24 - 02467517 ____A C:\Users\Yannick\Downloads\Jingle Pake_ohne.rar 2013-06-27 22:24 - 2013-06-27 22:24 - 00292544 ____A C:\Users\Yannick\Downloads\Jingle Paket 02 ohne.rar 2013-06-26 21:50 - 2013-06-28 14:45 - 00011585 ____A C:\Users\Yannick\Desktop\O305_E2H_84.bus 2013-06-26 21:50 - 2013-06-28 14:45 - 00011418 ____A C:\Users\Yannick\Desktop\O305_E2H_85.bus 2013-06-26 20:05 - 2013-06-26 20:26 - 138166254 ____A C:\Users\Yannick\Downloads\LiAZ_5292.20_v1.0_1.04.zip 2013-06-26 20:03 - 2013-06-26 20:09 - 02269184 ____A C:\Users\Yannick\Downloads\LiAZ_5292.20_v1.0_1.01 (4).zip 2013-06-26 19:16 - 2013-06-26 19:20 - 01187840 ____A C:\Users\Yannick\Downloads\LiAZ_5292.20_v1.0_1.01 (3).zip 2013-06-26 18:55 - 2013-06-26 19:01 - 02269184 ____A C:\Users\Yannick\Downloads\LiAZ_5292.20_v1.0_1.01 (2).zip 2013-06-26 18:45 - 2013-06-26 18:54 - 03416064 ____A C:\Users\Yannick\Downloads\LiAZ_5292.20_v1.0_1.01 (1).zip 2013-06-26 18:19 - 2013-06-26 18:32 - 05152768 ____A C:\Users\Yannick\Downloads\LiAZ_5292.20_v1.0_1.01.zip 2013-06-26 17:05 - 2013-06-26 17:10 - 27139516 ____A C:\Users\Yannick\Downloads\Baustellen Mod - Route Contruction Mod Version 2.zip 2013-06-26 17:02 - 2013-06-26 17:02 - 00943907 ____A C:\Users\Yannick\Downloads\O305_Upgrade_1-2a.rar 2013-06-25 20:20 - 2013-06-24 12:03 - 224736688 ____A (Acresso Software Inc. ) C:\Users\Yannick\Desktop\AS_OMSI-ADDON-STADTBUS-O305_V100.exe 2013-06-25 19:52 - 2013-06-25 19:52 - 00025358 ____A C:\Users\Yannick\Downloads\Rollb--nder_Freyfurt_2013-NEW.rar 2013-06-25 19:41 - 2013-06-25 19:48 - 25139979 ____A C:\Users\Yannick\Downloads\Velbert 2.0.ams 2013-06-25 19:37 - 2013-06-25 20:19 - 222373257 ____A C:\Users\Yannick\Downloads\AS_OMSI-ADDON-STADTBUS-O305.zip 2013-06-25 16:33 - 2013-06-25 16:34 - 00002507 ____A C:\Users\Yannick\Desktop\Search.lnk 2013-06-25 16:15 - 2013-06-25 16:32 - 00000000 ____D C:\Users\Yannick\AppData\Local\Smartbar 2013-06-25 16:13 - 2013-06-28 22:46 - 00001320 ____A C:\Users\Public\Desktop\Free YouTube Uploader.lnk 2013-06-25 16:13 - 2013-06-28 22:46 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\DVDVideoSoft 2013-06-25 16:13 - 2013-06-28 22:46 - 00000000 ____D C:\Program Files (x86)\DVDVideoSoft 2013-06-25 16:13 - 2013-06-25 16:13 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\OpenCandy 2013-06-25 15:57 - 2013-06-25 16:06 - 30544736 ____A (DVDVideoSoft Ltd. ) C:\Users\Yannick\Downloads\FreeYouTubeUploader-4.0.1.622.exe 2013-06-24 21:08 - 2013-06-24 21:27 - 2024523328 ____A C:\Users\Yannick\Desktop\eurotrucks2 2013-06-24 21-08-35-07.avi 2013-06-24 18:54 - 2013-06-30 17:00 - 00000000 ____D C:\Users\Yannick\Desktop\Let's Plays 2013-06-24 00:22 - 2013-06-24 00:22 - 00000095 ____A C:\Users\Yannick\AppData\Local\fusioncache.dat 2013-06-24 00:21 - 2013-06-24 00:28 - 00168816 ____A C:\Users\Yannick\Downloads\Spark-0.9.2018.zip 2013-06-24 00:20 - 2013-06-24 00:20 - 01987454 ____A C:\Users\Yannick\Downloads\FIX_PATCH_0.5_Biohazard_Alert.rar 2013-06-24 00:19 - 2013-06-24 00:19 - 68677729 ____A C:\Users\Yannick\Downloads\BioHazard_Alert_REMAKE.rar.crdownload 2013-06-23 23:55 - 2013-07-04 20:35 - 00054156 ___AH C:\Windows\QTFont.qfn 2013-06-23 23:55 - 2013-06-23 23:55 - 00001409 ____A C:\Windows\QTFont.for 2013-06-23 23:47 - 2013-06-23 23:54 - 00002296 ____A C:\Users\Yannick\Desktop\gta_sa.lnk 2013-06-23 23:46 - 2013-06-23 23:47 - 00000000 ____D C:\Program Files (x86)\GTA BioHazard Alert REMAKE 2013-06-23 22:22 - 2013-06-23 22:22 - 00001885 ____A C:\Users\Yannick\Downloads\1118267588_chaosmod1.zip 2013-06-23 22:05 - 2013-06-23 22:05 - 00001827 ____A C:\Users\Yannick\Desktop\GAMI.lnk 2013-06-23 22:05 - 2013-06-23 22:05 - 00001827 ____A C:\Users\UpdatusUser.KARTOFFELBREI.000\Desktop\GAMI.lnk 2013-06-23 22:05 - 2013-06-23 22:05 - 00001827 ____A C:\Users\Mama\Desktop\GAMI.lnk 2013-06-23 22:05 - 2013-06-23 22:05 - 00001827 ____A C:\Users\Gast\Desktop\GAMI.lnk 2013-06-23 22:05 - 2013-06-23 22:05 - 00000000 ____D C:\Program Files (x86)\GAMI 2013-06-23 22:02 - 2013-06-23 22:03 - 02078885 ____A C:\Users\Yannick\Downloads\4303_gami_installer1_8_2[gta-scene.de].rar 2013-06-23 21:54 - 2013-06-23 21:59 - 38445633 ____A C:\Users\Yannick\Downloads\gtaberlin0710 (1).rar 2013-06-23 21:45 - 2013-06-23 21:50 - 38445633 ____A C:\Users\Yannick\Downloads\gtaberlin0710.rar 2013-06-23 20:13 - 2013-06-23 20:13 - 00000184 ____A C:\Users\Yannick\Downloads\stream (7).asx 2013-06-23 14:52 - 2013-06-23 15:25 - 239791672 ____A C:\Users\Yannick\Downloads\Landkreis Glesien.rar 2013-06-22 14:39 - 2013-06-22 15:13 - 110526126 ____A C:\Users\Yannick\Downloads\BMO Objekte.rar 2013-06-22 14:29 - 2013-06-22 14:29 - 00531144 ____A C:\Users\Yannick\Downloads\0_5e0_1a2b0_1a_c.zip 2013-06-22 14:28 - 2013-06-22 14:31 - 06745807 ____A C:\Users\Yannick\Downloads\Woelchen_90-Objekte.rar 2013-06-22 14:27 - 2013-06-22 15:20 - 190823623 ____A C:\Users\Yannick\Downloads\Kolp.zip 2013-06-22 11:37 - 2013-06-22 14:06 - 364198563 ____A C:\Users\Yannick\Downloads\Tiefenbach_2.0_%28Objekte%29.rar 2013-06-22 11:31 - 2013-06-22 12:22 - 137991029 ____A C:\Users\Yannick\Downloads\TB-Fellen.zip 2013-06-22 11:27 - 2013-06-22 11:30 - 08403178 ____A C:\Users\Yannick\Downloads\OMV by CMVC.rar 2013-06-22 11:23 - 2013-06-22 14:36 - 00207181 ____A C:\Users\Yannick\Downloads\15390 (1).rar 2013-06-22 11:22 - 2013-06-22 11:23 - 02439394 ____A C:\Users\Yannick\Downloads\Litfass.rar 2013-06-22 11:18 - 2013-06-22 15:03 - 765615036 ____A C:\Users\Yannick\Downloads\Sceneryobjectspack.rar 2013-06-22 11:00 - 2013-06-22 11:00 - 00286139 ____A C:\Users\Yannick\Downloads\OMSI-Modloader-alpha.zip 2013-06-21 17:40 - 2013-06-21 18:26 - 208398704 ____A C:\Users\Yannick\Downloads\Lichtenberg.zip 2013-06-21 17:39 - 2013-06-22 15:38 - 101805455 ____A C:\Users\Yannick\Downloads\Tiefenbach_2.4_(Hauptordner).rar 2013-06-20 16:01 - 2013-06-20 16:01 - 00024439 ____A C:\Users\Yannick\Downloads\Volganin Patch by Chris 12.zip 2013-06-20 15:55 - 2013-06-20 16:08 - 30448084 ____A C:\Users\Yannick\Downloads\MAZ_107.7z 2013-06-20 15:54 - 2013-06-20 16:06 - 54937823 ____A C:\Users\Yannick\Downloads\???-52078 ????.rar 2013-06-18 21:01 - 2013-06-19 20:47 - 00000000 ____D C:\Users\Yannick\Desktop\Neuer Ordner (3) 2013-06-18 20:15 - 2013-06-18 20:15 - 00000134 ____A C:\Users\Yannick\Desktop\RMV.cti 2013-06-18 20:02 - 2013-06-18 20:30 - 69876567 ____A C:\Users\Yannick\Downloads\LAZ_LF_12_CityLaz.zip 2013-06-18 20:02 - 2013-06-18 20:27 - 45757780 ____A C:\Users\Yannick\Downloads\Volganin.rar 2013-06-18 19:57 - 2013-06-18 20:17 - 85152521 ____A C:\Users\Yannick\Downloads\Ikarus_263_1DTF_Editon_v1.rar 2013-06-17 21:47 - 2013-06-17 21:47 - 00644507 ____A C:\Users\Yannick\Downloads\4F6C6C69.rar 2013-06-17 19:02 - 2013-06-17 19:02 - 00147968 __ASH C:\Users\Yannick\Documents\Thumbs.db 2013-06-16 23:49 - 2013-05-17 03:25 - 02877440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-06-16 23:49 - 2013-05-17 03:25 - 00690688 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-06-16 23:49 - 2013-05-17 03:25 - 00493056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-06-16 23:49 - 2013-05-17 03:25 - 00109056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-06-16 23:49 - 2013-05-17 03:25 - 00061440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-06-16 23:49 - 2013-05-17 03:25 - 00033280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-06-16 23:49 - 2013-05-17 02:59 - 00051712 ____A (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe 2013-06-16 23:49 - 2013-05-17 02:58 - 03958784 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll 2013-06-16 23:49 - 2013-05-17 02:58 - 00855552 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll 2013-06-16 23:49 - 2013-05-17 02:58 - 00603136 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll 2013-06-16 23:49 - 2013-05-17 02:58 - 00136704 ____A (Microsoft Corporation) C:\Windows\System32\iesysprep.dll 2013-06-16 23:49 - 2013-05-17 02:58 - 00067072 ____A (Microsoft Corporation) C:\Windows\System32\iesetup.dll 2013-06-16 23:49 - 2013-05-17 02:58 - 00039936 ____A (Microsoft Corporation) C:\Windows\System32\iernonce.dll 2013-06-16 23:49 - 2013-05-14 14:23 - 00089600 ____A (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe 2013-06-16 23:49 - 2013-05-14 10:40 - 00071680 ____A (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-06-16 23:48 - 2013-06-08 16:08 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2013-06-16 23:48 - 2013-06-08 16:06 - 15404544 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2013-06-16 23:48 - 2013-06-08 16:06 - 02648064 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2013-06-16 23:48 - 2013-06-08 16:06 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll 2013-06-16 23:48 - 2013-06-08 14:28 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2013-06-16 23:48 - 2013-06-08 13:42 - 01141248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-06-16 23:48 - 2013-06-08 13:40 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-06-16 23:48 - 2013-06-08 13:40 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-06-16 23:48 - 2013-06-08 13:40 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-06-16 23:48 - 2013-06-08 13:13 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-06-16 23:48 - 2013-05-17 03:25 - 01767936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-06-16 23:48 - 2013-05-17 03:25 - 00039424 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-06-16 23:48 - 2013-05-17 02:59 - 02241024 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll 2013-06-16 23:48 - 2013-05-17 02:58 - 00053248 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll 2013-06-16 23:47 - 2013-06-08 16:07 - 19233792 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2013-06-16 23:47 - 2013-06-08 13:40 - 14327808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-06-16 19:24 - 2013-06-16 19:24 - 01378096 ____A C:\Users\Yannick\Downloads\Sommer-Mod-by-bluescreen-V2_0.zip 2013-06-16 19:24 - 2013-06-16 19:24 - 00758716 ____A C:\Users\Yannick\Downloads\Berliner-HOF-komplett.zip 2013-06-15 23:02 - 2013-06-15 23:02 - 00097946 ____A C:\Users\Yannick\Downloads\TooManyItems 1.5.2.zip 2013-06-15 22:19 - 2013-06-16 22:44 - 00000000 ____D C:\Program Files (x86)\Drumtronic 2013-06-15 22:19 - 2013-06-15 22:19 - 00000000 ____D C:\Program Files (x86)\d-lusion 2013-06-15 22:17 - 2013-06-15 22:18 - 05108087 ____A C:\Users\Yannick\Downloads\drumstation.exe 2013-06-15 22:17 - 2013-06-15 22:18 - 02515817 ____A C:\Users\Yannick\Downloads\drumtronic_setup.exe 2013-06-15 22:04 - 2013-06-15 22:10 - 07720271 ____A C:\Users\Yannick\Downloads\WBB 3.1.2&3.1.7.rar 2013-06-15 19:12 - 2013-06-30 20:39 - 00428544 __ASH C:\Users\Yannick\Downloads\Thumbs.db 2013-06-15 16:25 - 2013-07-04 17:17 - 00752305 ____A C:\Windows\WindowsUpdate.log 2013-06-15 16:21 - 2013-07-03 20:46 - 00286720 __ASH C:\Users\Yannick\Desktop\Thumbs.db 2013-06-15 16:19 - 2013-07-04 19:59 - 00004233 ____A C:\Windows\setupact.log 2013-06-15 16:19 - 2013-06-15 16:19 - 00000000 ____A C:\Windows\setuperr.log 2013-06-15 16:18 - 2013-07-01 13:17 - 00005012 ____A C:\Windows\PFRO.log 2013-06-15 00:38 - 2013-06-15 01:10 - 57354316 ____A C:\Users\Yannick\Downloads\world1 (4).zip 2013-06-15 00:34 - 2013-06-15 01:22 - 151175758 ____A C:\Users\Yannick\Downloads\world1 (3).zip 2013-06-15 00:33 - 2013-06-15 00:37 - 03903215 ____A C:\Users\Yannick\Downloads\world1 (2).zip 2013-06-15 00:28 - 2013-06-15 01:02 - 57681030 ____A C:\Users\Yannick\Downloads\world2.rar 2013-06-15 00:27 - 2013-06-15 01:01 - 51251653 ____A C:\Users\Yannick\Downloads\world1.zip 2013-06-15 00:27 - 2013-06-15 00:47 - 28980821 ____A C:\Users\Yannick\Downloads\world1 (1).zip 2013-06-15 00:18 - 2013-06-15 00:21 - 06862206 ____A C:\Users\Yannick\Downloads\Revenge Of The Gods.rar 2013-06-14 10:17 - 2013-05-08 08:39 - 01910632 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys 2013-06-14 10:17 - 2013-04-26 07:51 - 00751104 ____A (Microsoft Corporation) C:\Windows\System32\win32spl.dll 2013-06-14 10:17 - 2013-04-26 06:55 - 00492544 ____A (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2013-06-14 10:12 - 2013-05-10 07:49 - 00030720 ____A (Microsoft Corporation) C:\Windows\System32\cryptdlg.dll 2013-06-14 10:12 - 2013-05-10 05:20 - 00024576 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2013-06-14 10:12 - 2013-04-17 09:02 - 01230336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2013-06-14 10:12 - 2013-04-17 08:24 - 01424384 ____A (Microsoft Corporation) C:\Windows\System32\WindowsCodecs.dll 2013-06-14 10:11 - 2013-05-13 07:51 - 01464320 ____A (Microsoft Corporation) C:\Windows\System32\crypt32.dll 2013-06-14 10:11 - 2013-05-13 07:51 - 00184320 ____A (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll 2013-06-14 10:11 - 2013-05-13 07:51 - 00139776 ____A (Microsoft Corporation) C:\Windows\System32\cryptnet.dll 2013-06-14 10:11 - 2013-05-13 07:50 - 00052224 ____A (Microsoft Corporation) C:\Windows\System32\certenc.dll 2013-06-14 10:11 - 2013-05-13 06:45 - 01160192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-06-14 10:11 - 2013-05-13 06:45 - 00140288 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2013-06-14 10:11 - 2013-05-13 06:45 - 00103936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2013-06-14 10:11 - 2013-05-13 05:43 - 01192448 ____A (Microsoft Corporation) C:\Windows\System32\certutil.exe 2013-06-14 10:11 - 2013-05-13 05:08 - 00903168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2013-06-14 10:11 - 2013-05-13 05:08 - 00043008 ____A (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll 2013-06-14 10:11 - 2013-04-26 01:30 - 01505280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2013-06-14 10:11 - 2013-04-01 00:52 - 01887232 ____A (Microsoft Corporation) C:\Windows\System32\d3d11.dll 2013-06-06 21:27 - 2013-06-06 21:27 - 04475563 ____A C:\Users\Yannick\Downloads\Ebstein 0.891.zip 2013-06-06 17:39 - 2013-06-06 17:41 - 12032865 ____A C:\Users\Yannick\Downloads\Bukkit Server [1.5.2].zip 2013-06-05 22:30 - 2013-06-05 22:56 - 53558505 ____A C:\Users\Yannick\Downloads\Hillside Manor-1.5.zip 2013-06-05 22:30 - 2013-06-05 22:35 - 07502298 ____A C:\Users\Yannick\Downloads\World1 - Lumina Nocturnale.rar 2013-06-05 22:29 - 2013-06-05 23:04 - 123634770 ____A C:\Users\Yannick\Downloads\Imperialcity_v13.1.rar 2013-06-05 22:19 - 2013-06-05 22:20 - 06366749 ____A C:\Users\Yannick\Downloads\Kölner Dom 1.2.5.rar 2013-06-05 21:55 - 2013-07-04 16:02 - 00000936 ____A C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4097592201-1722700985-3522171771-1000UA.job 2013-06-05 21:55 - 2013-07-03 22:02 - 00000914 ____A C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4097592201-1722700985-3522171771-1000Core.job 2013-06-05 21:55 - 2013-06-05 21:56 - 00000000 ____D C:\Users\Yannick\AppData\Local\Facebook 2013-06-05 21:54 - 2013-06-05 21:54 - 00501248 ____A (Facebook Inc.) C:\Users\Yannick\Downloads\FacebookVideoCallSetup_v1.2.205.0.exe 2013-06-05 21:32 - 2013-06-30 18:17 - 00000000 ____D C:\Users\Yannick\Downloads\GTA.IV-ArenaBG 2013-06-05 21:31 - 2013-06-05 21:31 - 00144742 ____A C:\Users\Yannick\Downloads\Grand Theft Auto 4 (GTA 4) [rahultorrents] - PC [h33t].torrent 2013-06-05 19:27 - 2013-06-05 19:29 - 12533832 ____A C:\Users\Yannick\Downloads\craftbukkit-1.4.7-R1.0.jar 2013-06-05 18:37 - 2013-06-05 18:38 - 09835921 ____A C:\Users\Yannick\Desktop\world.rar 2013-06-05 17:20 - 2013-06-05 17:20 - 00000000 ____D C:\ProgramData\ATI 2013-06-05 17:20 - 2013-06-05 17:20 - 00000000 ____D C:\Program Files (x86)\AMD AVT 2013-06-05 17:15 - 2013-06-05 17:15 - 00000000 ____D C:\AMD 2013-06-04 22:44 - 2013-06-04 22:44 - 00207568 ____A C:\Users\Yannick\Downloads\Physikmappe.odt 2013-06-04 21:32 - 2013-06-06 20:34 - 00000000 ____D C:\Users\Yannick\Desktop\world 2013-06-04 21:25 - 2013-06-04 21:32 - 00001869 ____A C:\Users\Yannick\Downloads\server.log 2013-06-04 21:25 - 2013-06-04 21:32 - 00000000 ____D C:\Users\Yannick\Downloads\world 2013-06-04 21:24 - 2013-06-04 21:24 - 02542151 ____A C:\Users\Yannick\Desktop\Minecraft_Server.exe 2013-06-04 21:11 - 2013-06-04 21:11 - 02189699 ____A C:\Users\Yannick\Downloads\Weather-Tornadoes-Mod-1.5.2.zip 2013-06-04 18:07 - 2013-06-04 18:07 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\IT-Service Christian Hau (www.a-bit-more.de) 2013-06-04 18:06 - 2013-06-04 18:06 - 02142052 ____A C:\Users\Yannick\Downloads\Setup.Faktura.curr.zip 2013-06-04 18:06 - 2013-06-04 18:06 - 00001103 ____A C:\Users\UpdatusUser.KARTOFFELBREI.000\Desktop\Zeiterfassung.lnk 2013-06-04 18:06 - 2013-06-04 18:06 - 00001103 ____A C:\Users\Mama\Desktop\Zeiterfassung.lnk 2013-06-04 18:06 - 2013-06-04 18:06 - 00001103 ____A C:\Users\Gast\Desktop\Zeiterfassung.lnk 2013-06-04 18:06 - 2013-06-04 18:06 - 00001081 ____A C:\Users\Yannick\Desktop\Freeware Faktura.lnk 2013-06-04 18:06 - 2013-06-04 18:06 - 00001081 ____A C:\Users\UpdatusUser.KARTOFFELBREI.000\Desktop\Freeware Faktura.lnk 2013-06-04 18:06 - 2013-06-04 18:06 - 00001081 ____A C:\Users\Mama\Desktop\Freeware Faktura.lnk 2013-06-04 18:06 - 2013-06-04 18:06 - 00001081 ____A C:\Users\Gast\Desktop\Freeware Faktura.lnk 2013-06-04 18:06 - 2013-06-04 18:06 - 00000000 ____D C:\Program Files (x86)\Faktura 2013-06-04 17:55 - 2013-06-04 17:55 - 00000000 ____D C:\Program Files (x86)\Smart Projects 2013-06-04 17:55 - 2013-06-04 17:55 - 00000000 ____D C:\Program Files (x86)\Smart File Advisor 2013-06-04 17:53 - 2013-06-04 17:54 - 04207928 ____A (Smart Projects ) C:\Users\Yannick\Downloads\isobuster_all_lang_3.2.exe 2013-06-04 16:23 - 2013-06-04 16:23 - 00003805 ____A C:\Users\Yannick\Downloads\IBIS.rar 2013-06-04 15:48 - 2013-06-04 16:05 - 81619883 ____A C:\Users\Yannick\Downloads\Thunder + LO-915 Version 1.01.rar 2013-06-04 15:47 - 2013-06-04 15:47 - 00017555 ____A C:\Users\Yannick\Downloads\fonts.rar 2013-06-04 00:07 - 2013-06-04 00:10 - 47151586 ____A C:\Users\Yannick\Documents\Cutting Crew - I Just Died In Your Arms Tonight.mp4 2013-06-04 00:07 - 2013-06-04 00:10 - 47151586 ____A C:\Users\Yannick\Documents\Cutting Crew - I Just Died In Your Arms Tonight(ipad).mp4 ==================== One Month Modified Files and Folders ======= 2013-07-04 20:54 - 2012-02-19 20:25 - 00000000 ____D C:\Users\Yannick\AppData\Local\CrashDumps 2013-07-04 20:35 - 2013-06-23 23:55 - 00054156 ___AH C:\Windows\QTFont.qfn 2013-07-04 20:30 - 2012-03-30 22:17 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\Skype 2013-07-04 20:16 - 2012-06-27 10:28 - 00000884 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-07-04 20:14 - 2012-12-07 18:56 - 00001112 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-07-04 20:10 - 2009-07-14 06:45 - 00009696 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-07-04 20:10 - 2009-07-14 06:45 - 00009696 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-07-04 20:05 - 2013-06-15 16:25 - 00752305 ____A C:\Windows\WindowsUpdate.log 2013-07-04 20:02 - 2013-05-18 17:26 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\Wise Care 365 2013-07-04 20:01 - 2013-04-28 21:15 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\uTorrent 2013-07-04 20:01 - 2012-10-10 20:36 - 00000000 ____D C:\Users\Yannick\AppData\Local\LogMeIn Hamachi 2013-07-04 20:00 - 2012-12-07 18:56 - 00001108 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-07-04 19:59 - 2013-06-15 16:19 - 00004233 ____A C:\Windows\setupact.log 2013-07-04 19:59 - 2009-07-14 07:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT 2013-07-04 16:53 - 2012-03-28 20:16 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\TS3Client 2013-07-04 16:02 - 2013-06-05 21:55 - 00000936 ____A C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4097592201-1722700985-3522171771-1000UA.job 2013-07-04 15:58 - 2013-07-04 15:57 - 02237968 ____A (Kaspersky Lab ZAO) C:\Users\Yannick\Desktop\tdsskiller.exe 2013-07-04 14:03 - 2013-03-02 20:27 - 00000000 ____D C:\ProgramData\firebird 2013-07-04 13:12 - 2013-07-04 13:11 - 03688886 ____A C:\Users\Yannick\Downloads\O305_Upgrade_1-5.rar 2013-07-03 22:02 - 2013-06-05 21:55 - 00000914 ____A C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4097592201-1722700985-3522171771-1000Core.job 2013-07-03 20:46 - 2013-07-03 20:45 - 01934082 ____A (Farbar) C:\Users\Yannick\Desktop\FRST64.exe 2013-07-03 20:46 - 2013-07-01 20:45 - 00000000 ____D C:\FRST 2013-07-03 20:46 - 2013-06-15 16:21 - 00286720 __ASH C:\Users\Yannick\Desktop\Thumbs.db 2013-07-03 20:36 - 2013-07-03 20:36 - 02641537 ____A C:\Users\Yannick\Downloads\1361023764_trainerv65.rar 2013-07-03 19:20 - 2013-07-03 19:11 - 65897206 ____A C:\Users\Yannick\Downloads\Velbert 2.0 - Ansagen.zip 2013-07-03 18:00 - 2012-12-30 23:26 - 00000472 ____A C:\Windows\Tasks\ParetoLogic Registration3.job 2013-07-03 12:15 - 2013-07-03 12:12 - 13717860 ____A C:\Users\Yannick\Downloads\1343867151_WEAPONS.ivaud 2013-07-03 12:13 - 2013-07-03 12:12 - 04075259 ____A C:\Users\Yannick\Downloads\1316332607_ColtAnaconda.rar 2013-07-03 12:11 - 2013-07-03 12:10 - 02079322 ____A C:\Users\Yannick\Downloads\GTAIVMinigunModbymahmutil.rar 2013-07-03 12:09 - 2013-07-03 12:08 - 01877839 ____A C:\Users\Yannick\Downloads\1371727631_coltpython.rar 2013-07-03 12:09 - 2013-07-03 12:07 - 06049113 ____A C:\Users\Yannick\Downloads\1355099338_GTAV2.rar 2013-07-03 10:10 - 2013-07-03 10:08 - 10947677 ____A C:\Users\Yannick\Downloads\1354091225_Download.zip 2013-07-03 10:07 - 2013-07-03 10:07 - 02068856 ____A C:\Users\Yannick\Downloads\1358466481_Statue of Liberty.rar 2013-07-03 10:03 - 2013-07-03 10:02 - 07277054 ____A C:\Users\Yannick\Downloads\1372068824_APaG3.0Hotfix.rar 2013-07-03 09:19 - 2013-07-03 09:19 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2013-07-03 09:19 - 2013-05-24 22:14 - 00000930 ____A C:\Users\Public\Desktop\LogMeIn Hamachi.lnk 2013-07-02 18:54 - 2013-07-02 18:53 - 02662221 ____A C:\Users\Yannick\Downloads\1310225693_Simple Native Trainer v.6.3.rar 2013-07-02 18:51 - 2013-07-02 18:51 - 00072097 ____A C:\Users\Yannick\Downloads\xliveless - v0.999b7 (patch 1.0.7.0. and EFLC 1.1.2.0).zip 2013-07-02 18:50 - 2013-07-02 18:50 - 00004960 ____A C:\Users\Yannick\Downloads\1369742775_Brain Control ver5.5.rar 2013-07-02 17:31 - 2013-07-02 17:31 - 00042711 ____A C:\Users\Yannick\Downloads\IVAsiLoader.rar 2013-07-02 17:28 - 2013-07-02 17:28 - 00185987 ____A C:\Users\Yannick\Downloads\GTA-IV-ASI-Loader-Files.zip 2013-07-02 17:19 - 2013-07-02 17:19 - 00051394 ____A C:\Users\Yannick\Downloads\asiloader1020b.zip 2013-07-02 17:18 - 2013-07-02 17:18 - 00717495 ____A C:\Users\Yannick\Downloads\scripthookdotnet.zip 2013-07-02 16:50 - 2011-07-29 19:29 - 00008908 ____A C:\Users\Yannick\AppData\Roaming\wklnhst.dat 2013-07-02 16:50 - 2009-07-14 07:32 - 00000000 ____D C:\Windows\System32\FxsTmp 2013-07-02 16:48 - 2013-07-02 16:48 - 00001764 ____A C:\Users\Yannick\Desktop\Contig.exe - Verknüpfung.lnk 2013-07-02 16:45 - 2013-07-02 16:44 - 00104548 ____A C:\Users\Yannick\Downloads\Contig.zip 2013-07-02 16:44 - 2013-07-02 16:20 - 111801582 ____A C:\Users\Yannick\Downloads\gta_environment_mod_5.zip 2013-07-02 16:25 - 2013-07-02 16:24 - 01113486 ____A C:\Users\Yannick\Downloads\ModPack_HippieCommunist.rar 2013-07-02 16:19 - 2013-07-02 16:19 - 00001222 ____A C:\Users\Yannick\Downloads\1319708462_NGTsExplosionV2.zip 2013-07-02 16:16 - 2013-07-02 16:15 - 03101567 ____A C:\Users\Yannick\Downloads\O305_Upgrade_1-3.rar 2013-07-01 22:27 - 2013-07-01 22:27 - 00001807 ____A C:\Users\Yannick\Desktop\LaunchGTAIV.exe - Verknüpfung.lnk 2013-07-01 22:25 - 2012-06-11 18:55 - 00000000 ____D C:\Program Files (x86)\Rockstar Games 2013-07-01 22:25 - 2009-09-03 10:34 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-07-01 22:23 - 2013-06-30 14:09 - 00055647 ____A C:\Windows\DirectX.log 2013-07-01 22:22 - 2013-06-30 18:02 - 00002204 ____A C:\Users\Public\Desktop\Grand Theft Auto IV.lnk 2013-07-01 22:10 - 2013-03-02 20:55 - 00000000 ____D C:\users\UpdatusUser.KARTOFFELBREI.000 2013-07-01 22:07 - 2011-07-13 22:47 - 00000000 ____D C:\users\Yannick 2013-07-01 22:05 - 2013-07-01 16:58 - 00000000 ____D C:\Program Files (x86)\Trojancheck 6 2013-07-01 22:05 - 2013-07-01 15:41 - 00000000 ____D C:\Windows\System32\%LOCALAPPDATA% 2013-07-01 22:05 - 2012-12-28 23:09 - 00000000 ____D C:\users\UpdatusUser.KARTOFFELBREI 2013-07-01 22:05 - 2012-10-12 22:43 - 00000000 ____D C:\users\Gast 2013-07-01 22:05 - 2012-03-30 11:20 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\ts3overlay 2013-07-01 22:05 - 2012-03-02 15:07 - 00000000 ____D C:\users\Mama 2013-07-01 22:05 - 2012-02-19 19:15 - 00000000 ____D C:\ProgramData\Norton 2013-07-01 22:05 - 2011-07-13 22:48 - 00000000 ___AD C:\book 2013-07-01 22:05 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender 2013-07-01 22:05 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system 2013-07-01 22:04 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\registration 2013-07-01 20:48 - 2013-07-01 20:48 - 00055779 ____A C:\Users\Yannick\Desktop\Addition.txt 2013-07-01 19:49 - 2013-07-01 19:49 - 00102718 ____A C:\Users\Yannick\Desktop\Extras.Txt 2013-07-01 19:47 - 2013-07-01 19:47 - 00188512 ____A C:\Users\Yannick\Desktop\OTL.Txt 2013-07-01 19:15 - 2013-07-01 19:15 - 00000724 ____A C:\Users\Yannick\Desktop\defogger_disable.log 2013-07-01 19:15 - 2013-07-01 19:15 - 00000382 ____A C:\Users\Yannick\defogger_reenable 2013-07-01 19:00 - 2013-07-01 19:00 - 00000000 ____D C:\sh4ldr 2013-07-01 19:00 - 2013-07-01 19:00 - 00000000 ____D C:\Program Files\Enigma Software Group 2013-07-01 16:51 - 2013-07-01 16:51 - 00018808 ____A C:\Users\Yannick\Downloads\hijackthis.log 2013-07-01 13:17 - 2013-06-15 16:18 - 00005012 ____A C:\Windows\PFRO.log 2013-06-30 22:26 - 2013-06-30 22:11 - 108752708 ____A C:\Users\Yannick\Downloads\GTA IV 1.0.7.0. (1).rar 2013-06-30 22:12 - 2013-06-30 22:12 - 00223050 ____A C:\Users\Yannick\Downloads\GTA IV - Crack only - 1.0.7.0 (Razor1911).rar 2013-06-30 21:00 - 2013-06-30 21:00 - 00000000 __SHD C:\ProgramData\SecuROM 2013-06-30 20:58 - 2013-06-30 19:10 - 00000000 ____D C:\Users\Yannick\AppData\Local\Rockstar Games 2013-06-30 20:50 - 2013-06-30 20:33 - 109388216 ____A C:\Users\Yannick\Downloads\gta4_1.0.7.0.zip 2013-06-30 20:46 - 2013-06-30 20:46 - 00303511 ____A C:\Users\Yannick\Downloads\1311984168100_GTAIV_LAZIC-NIKOLA.rar 2013-06-30 20:39 - 2013-06-15 19:12 - 00428544 __ASH C:\Users\Yannick\Downloads\Thumbs.db 2013-06-30 20:38 - 2013-06-30 20:38 - 00059820 ____A C:\Users\Yannick\Downloads\1233162148SavegameGTAIV.rar 2013-06-30 19:43 - 2013-06-30 19:43 - 00000000 ____D C:\Users\Yannick\Documents\Rockstar Games 2013-06-30 19:09 - 2013-06-30 19:08 - 02855181 ____A C:\Users\Yannick\Downloads\RealisticDriving_EFLC_13.zip 2013-06-30 18:26 - 2013-06-30 18:26 - 00000000 ____D C:\Users\Yannick\Downloads\Vehicles 2013-06-30 18:17 - 2013-06-05 21:32 - 00000000 ____D C:\Users\Yannick\Downloads\GTA.IV-ArenaBG 2013-06-30 18:13 - 2013-06-30 18:13 - 00001066 ____A C:\Users\Public\Desktop\DAEMON Tools Lite.lnk 2013-06-30 18:13 - 2013-06-30 18:13 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\DAEMON Tools 2013-06-30 18:13 - 2013-06-30 18:13 - 00000000 ____D C:\Program Files (x86)\DAEMON Tools Lite 2013-06-30 17:13 - 2013-03-02 18:12 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2013-06-30 17:11 - 2013-04-07 12:20 - 00000000 ____D C:\Users\Yannick\Desktop\LS13 2013-06-30 17:02 - 2013-06-30 17:02 - 00001190 ____A C:\Users\Public\Desktop\Switch to Gaming Mode.lnk 2013-06-30 17:02 - 2013-06-30 17:02 - 00001178 ____A C:\Users\Public\Desktop\Game Booster 3.lnk 2013-06-30 17:02 - 2013-06-30 17:02 - 00000000 ____D C:\ProgramData\IObit 2013-06-30 17:02 - 2013-06-30 17:02 - 00000000 ____D C:\Program Files (x86)\IObit 2013-06-30 17:01 - 2013-06-30 17:00 - 04344120 ____A (IObit ) C:\Users\Yannick\Downloads\gb3-4-setup.exe 2013-06-30 17:00 - 2013-06-24 18:54 - 00000000 ____D C:\Users\Yannick\Desktop\Let's Plays 2013-06-30 16:59 - 2012-10-20 15:15 - 00000000 ____D C:\Users\Yannick\Documents\Euro Truck Simulator 2 2013-06-30 16:40 - 2013-06-30 16:25 - 94729627 ____A C:\Users\Yannick\Downloads\Rheinhausen V4 - Revised Edition 1 by Zane.7z 2013-06-30 16:25 - 2013-06-30 16:25 - 00001513 ____A C:\Users\Yannick\Downloads\Rheinhausen V4 - Revised Edition 1 - Hotfix.7z 2013-06-30 14:22 - 2011-09-10 22:32 - 00000000 ____D C:\Users\Yannick\Documents\BusCableCarSimulator 2013-06-30 14:18 - 2013-06-30 14:05 - 83066510 ____A C:\Users\Yannick\Downloads\BCS_Update_1_0_7_German.exe 2013-06-30 14:06 - 2013-06-30 14:06 - 00001362 ____A C:\Users\Yannick\Desktop\Bus- & Cable Car-Simulator.lnk 2013-06-30 14:03 - 2013-06-30 14:03 - 00003064 ____A C:\Users\Yannick\Downloads\d2a536_4e9f426495345.zip 2013-06-30 08:20 - 2013-06-30 08:20 - 00002255 ____A C:\Users\Yannick\Desktop\Google Chrome.lnk 2013-06-29 00:05 - 2011-07-14 08:30 - 08355356 ____A C:\Windows\System32\perfh007.dat 2013-06-29 00:05 - 2011-07-14 08:30 - 02592570 ____A C:\Windows\System32\perfc007.dat 2013-06-29 00:05 - 2009-07-14 07:13 - 00006872 ____A C:\Windows\System32\PerfStringBackup.INI 2013-06-28 22:55 - 2013-06-28 22:55 - 00000000 ____D C:\Program Files (x86)\K-Lite Codec Pack 2013-06-28 22:53 - 2013-06-28 22:50 - 09049827 ____A ( ) C:\Users\Yannick\Downloads\K-Lite_Codec_Pack_995_Basic.exe 2013-06-28 22:46 - 2013-06-28 22:46 - 00001344 ____A C:\Users\Yannick\Desktop\Free YouTube Uploader.lnk 2013-06-28 22:46 - 2013-06-28 22:46 - 00001247 ____A C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk 2013-06-28 22:46 - 2013-06-25 16:13 - 00001320 ____A C:\Users\Public\Desktop\Free YouTube Uploader.lnk 2013-06-28 22:46 - 2013-06-25 16:13 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\DVDVideoSoft 2013-06-28 22:46 - 2013-06-25 16:13 - 00000000 ____D C:\Program Files (x86)\DVDVideoSoft 2013-06-28 22:44 - 2013-06-28 22:44 - 00002334 ____A C:\Users\Yannick\Desktop\Free Video to Flash Converter.lnk 2013-06-28 22:42 - 2013-06-28 22:32 - 32199568 ____A (DVDVideoSoft Ltd. ) C:\Users\Yannick\Downloads\FreeVideoToFlashConverter_5.0.26.622.exe 2013-06-28 22:42 - 2013-06-28 22:31 - 30544736 ____A (DVDVideoSoft Ltd. ) C:\Users\Yannick\Downloads\FreeYouTubeUploader-4.0.1.622 (1).exe 2013-06-28 22:29 - 2013-06-28 22:29 - 00002513 ____A C:\Users\Yannick\Downloads\sg_backup_2013-06-28-2229.spg 2013-06-28 22:29 - 2013-06-28 22:29 - 00002513 ____A C:\Users\Yannick\Downloads\FirstBackup.spg 2013-06-28 22:28 - 2013-06-28 22:27 - 00659456 ____A (Speed Guide Inc.) C:\Users\Yannick\Downloads\TCP308Optimizer.exe 2013-06-28 21:29 - 2011-07-16 18:09 - 00000000 ____D C:\Users\Yannick\Flight Simulator X-Dateien 2013-06-28 21:29 - 2011-07-14 22:33 - 00000000 ____D C:\Users\Yannick\Fotoalben 2013-06-28 14:45 - 2013-06-26 21:50 - 00011585 ____A C:\Users\Yannick\Desktop\O305_E2H_84.bus 2013-06-28 14:45 - 2013-06-26 21:50 - 00011418 ____A C:\Users\Yannick\Desktop\O305_E2H_85.bus 2013-06-28 14:38 - 2013-06-28 14:38 - 00066317 ____A C:\Users\Yannick\Downloads\Mercedes Benz O305 Stern by Chris 12.zip 2013-06-28 00:38 - 2013-06-27 22:57 - 406223635 ____A C:\Users\Yannick\Downloads\frdpq.Just.The.Best.Sommer.Hits.1990..Heute.2013.rar 2013-06-28 00:12 - 2013-06-27 23:08 - 194572800 ____A C:\Users\Yannick\Downloads\VA-Die_Ultimative_Chartshow_Die_Erfolgreichsten_Hits_2012_-2CD-2012-VOiCE.part1.rar 2013-06-27 23:52 - 2013-06-27 23:08 - 109437125 ____A C:\Users\Yannick\Downloads\VA-Die_Ultimative_Chartshow_Die_Erfolgreichsten_Hits_2012_-2CD-2012-VOiCE.part2.rar 2013-06-27 22:52 - 2013-06-27 22:51 - 04639408 ____A (hxxp://yourfiledownloader.com) C:\Users\Yannick\Downloads\va_just_the_best_sommer_hits_1990_heute_2013_downloader_de_99370.exe 2013-06-27 22:50 - 2013-06-27 22:50 - 00935354 ____A C:\Users\Yannick\Downloads\jingles4free_old_pack1 (1).rar 2013-06-27 22:46 - 2013-06-27 22:46 - 03731936 ____A C:\Users\Yannick\Downloads\Jeden Tag 24 Stunden Musik.wav 2013-06-27 22:28 - 2013-06-27 22:28 - 00935354 ____A C:\Users\Yannick\Downloads\jingles4free_old_pack1.rar 2013-06-27 22:24 - 2013-06-27 22:24 - 02467517 ____A C:\Users\Yannick\Downloads\Jingle Pake_ohne.rar 2013-06-27 22:24 - 2013-06-27 22:24 - 00292544 ____A C:\Users\Yannick\Downloads\Jingle Paket 02 ohne.rar 2013-06-27 19:58 - 2012-03-30 22:17 - 00000000 ____D C:\ProgramData\Skype 2013-06-27 19:57 - 2013-01-28 18:47 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-06-27 17:51 - 2011-10-29 21:32 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\vlc 2013-06-26 20:26 - 2013-06-26 20:05 - 138166254 ____A C:\Users\Yannick\Downloads\LiAZ_5292.20_v1.0_1.04.zip 2013-06-26 20:09 - 2013-06-26 20:03 - 02269184 ____A C:\Users\Yannick\Downloads\LiAZ_5292.20_v1.0_1.01 (4).zip 2013-06-26 19:20 - 2013-06-26 19:16 - 01187840 ____A C:\Users\Yannick\Downloads\LiAZ_5292.20_v1.0_1.01 (3).zip 2013-06-26 19:01 - 2013-06-26 18:55 - 02269184 ____A C:\Users\Yannick\Downloads\LiAZ_5292.20_v1.0_1.01 (2).zip 2013-06-26 18:54 - 2013-06-26 18:45 - 03416064 ____A C:\Users\Yannick\Downloads\LiAZ_5292.20_v1.0_1.01 (1).zip 2013-06-26 18:32 - 2013-06-26 18:19 - 05152768 ____A C:\Users\Yannick\Downloads\LiAZ_5292.20_v1.0_1.01.zip 2013-06-26 17:10 - 2013-06-26 17:05 - 27139516 ____A C:\Users\Yannick\Downloads\Baustellen Mod - Route Contruction Mod Version 2.zip 2013-06-26 17:02 - 2013-06-26 17:02 - 00943907 ____A C:\Users\Yannick\Downloads\O305_Upgrade_1-2a.rar 2013-06-25 20:23 - 2012-12-27 17:32 - 00001186 ____A C:\Users\Public\Desktop\Aerosoft Launcher.lnk 2013-06-25 20:19 - 2013-06-25 19:37 - 222373257 ____A C:\Users\Yannick\Downloads\AS_OMSI-ADDON-STADTBUS-O305.zip 2013-06-25 19:52 - 2013-06-25 19:52 - 00025358 ____A C:\Users\Yannick\Downloads\Rollb--nder_Freyfurt_2013-NEW.rar 2013-06-25 19:48 - 2013-06-25 19:41 - 25139979 ____A C:\Users\Yannick\Downloads\Velbert 2.0.ams 2013-06-25 16:34 - 2013-06-25 16:33 - 00002507 ____A C:\Users\Yannick\Desktop\Search.lnk 2013-06-25 16:32 - 2013-06-25 16:15 - 00000000 ____D C:\Users\Yannick\AppData\Local\Smartbar 2013-06-25 16:13 - 2013-06-25 16:13 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\OpenCandy 2013-06-25 16:06 - 2013-06-25 15:57 - 30544736 ____A (DVDVideoSoft Ltd. ) C:\Users\Yannick\Downloads\FreeYouTubeUploader-4.0.1.622.exe 2013-06-24 22:20 - 2012-07-23 20:29 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\.minecraft 2013-06-24 21:58 - 2012-06-11 19:06 - 00000000 ____D C:\Users\Yannick\Documents\GTA San Andreas User Files 2013-06-24 21:30 - 2013-02-12 20:09 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\Audacity 2013-06-24 21:27 - 2013-06-24 21:08 - 2024523328 ____A C:\Users\Yannick\Desktop\eurotrucks2 2013-06-24 21-08-35-07.avi 2013-06-24 21:05 - 2013-03-12 21:51 - 00000000 ____D C:\Users\Yannick\Desktop\GTA 4 2013-06-24 17:14 - 2012-12-30 02:03 - 00000000 ____D C:\Program Files\Video downloader 2013-06-24 12:03 - 2013-06-25 20:20 - 224736688 ____A (Acresso Software Inc. ) C:\Users\Yannick\Desktop\AS_OMSI-ADDON-STADTBUS-O305_V100.exe 2013-06-24 00:28 - 2013-06-24 00:21 - 00168816 ____A C:\Users\Yannick\Downloads\Spark-0.9.2018.zip 2013-06-24 00:22 - 2013-06-24 00:22 - 00000095 ____A C:\Users\Yannick\AppData\Local\fusioncache.dat 2013-06-24 00:20 - 2013-06-24 00:20 - 01987454 ____A C:\Users\Yannick\Downloads\FIX_PATCH_0.5_Biohazard_Alert.rar 2013-06-24 00:19 - 2013-06-24 00:19 - 68677729 ____A C:\Users\Yannick\Downloads\BioHazard_Alert_REMAKE.rar.crdownload 2013-06-23 23:55 - 2013-06-23 23:55 - 00001409 ____A C:\Windows\QTFont.for 2013-06-23 23:54 - 2013-06-23 23:47 - 00002296 ____A C:\Users\Yannick\Desktop\gta_sa.lnk 2013-06-23 23:47 - 2013-06-23 23:46 - 00000000 ____D C:\Program Files (x86)\GTA BioHazard Alert REMAKE 2013-06-23 23:43 - 2013-03-15 19:13 - 00000000 ____D C:\Users\Yannick\Desktop\Utils 2013-06-23 23:42 - 2013-02-12 21:09 - 00000000 ____D C:\Users\Yannick\Desktop\Neuer Ordner 2013-06-23 22:22 - 2013-06-23 22:22 - 00001885 ____A C:\Users\Yannick\Downloads\1118267588_chaosmod1.zip 2013-06-23 22:05 - 2013-06-23 22:05 - 00001827 ____A C:\Users\Yannick\Desktop\GAMI.lnk 2013-06-23 22:05 - 2013-06-23 22:05 - 00001827 ____A C:\Users\UpdatusUser.KARTOFFELBREI.000\Desktop\GAMI.lnk 2013-06-23 22:05 - 2013-06-23 22:05 - 00001827 ____A C:\Users\Mama\Desktop\GAMI.lnk 2013-06-23 22:05 - 2013-06-23 22:05 - 00001827 ____A C:\Users\Gast\Desktop\GAMI.lnk 2013-06-23 22:05 - 2013-06-23 22:05 - 00000000 ____D C:\Program Files (x86)\GAMI 2013-06-23 22:03 - 2013-06-23 22:02 - 02078885 ____A C:\Users\Yannick\Downloads\4303_gami_installer1_8_2[gta-scene.de].rar 2013-06-23 21:59 - 2013-06-23 21:54 - 38445633 ____A C:\Users\Yannick\Downloads\gtaberlin0710 (1).rar 2013-06-23 21:50 - 2013-06-23 21:45 - 38445633 ____A C:\Users\Yannick\Downloads\gtaberlin0710.rar 2013-06-23 20:13 - 2013-06-23 20:13 - 00000184 ____A C:\Users\Yannick\Downloads\stream (7).asx 2013-06-23 15:25 - 2013-06-23 14:52 - 239791672 ____A C:\Users\Yannick\Downloads\Landkreis Glesien.rar 2013-06-22 15:38 - 2013-06-21 17:39 - 101805455 ____A C:\Users\Yannick\Downloads\Tiefenbach_2.4_(Hauptordner).rar 2013-06-22 15:20 - 2013-06-22 14:27 - 190823623 ____A C:\Users\Yannick\Downloads\Kolp.zip 2013-06-22 15:13 - 2013-06-22 14:39 - 110526126 ____A C:\Users\Yannick\Downloads\BMO Objekte.rar 2013-06-22 15:03 - 2013-06-22 11:18 - 765615036 ____A C:\Users\Yannick\Downloads\Sceneryobjectspack.rar 2013-06-22 14:36 - 2013-06-22 11:23 - 00207181 ____A C:\Users\Yannick\Downloads\15390 (1).rar 2013-06-22 14:31 - 2013-06-22 14:28 - 06745807 ____A C:\Users\Yannick\Downloads\Woelchen_90-Objekte.rar 2013-06-22 14:29 - 2013-06-22 14:29 - 00531144 ____A C:\Users\Yannick\Downloads\0_5e0_1a2b0_1a_c.zip 2013-06-22 14:06 - 2013-06-22 11:37 - 364198563 ____A C:\Users\Yannick\Downloads\Tiefenbach_2.0_%28Objekte%29.rar 2013-06-22 12:22 - 2013-06-22 11:31 - 137991029 ____A C:\Users\Yannick\Downloads\TB-Fellen.zip 2013-06-22 11:30 - 2013-06-22 11:27 - 08403178 ____A C:\Users\Yannick\Downloads\OMV by CMVC.rar 2013-06-22 11:23 - 2013-06-22 11:22 - 02439394 ____A C:\Users\Yannick\Downloads\Litfass.rar 2013-06-22 11:00 - 2013-06-22 11:00 - 00286139 ____A C:\Users\Yannick\Downloads\OMSI-Modloader-alpha.zip 2013-06-21 18:26 - 2013-06-21 17:40 - 208398704 ____A C:\Users\Yannick\Downloads\Lichtenberg.zip 2013-06-21 16:46 - 2011-12-25 22:25 - 00156230 ____A C:\ProgramData\lxeascan.log 2013-06-20 16:08 - 2013-06-20 15:55 - 30448084 ____A C:\Users\Yannick\Downloads\MAZ_107.7z 2013-06-20 16:06 - 2013-06-20 15:54 - 54937823 ____A C:\Users\Yannick\Downloads\???-52078 ????.rar 2013-06-20 16:01 - 2013-06-20 16:01 - 00024439 ____A C:\Users\Yannick\Downloads\Volganin Patch by Chris 12.zip 2013-06-19 20:47 - 2013-06-18 21:01 - 00000000 ____D C:\Users\Yannick\Desktop\Neuer Ordner (3) 2013-06-19 18:31 - 2013-02-23 16:06 - 00000000 ____D C:\Windows\System32\Drivers\NISx64 2013-06-19 18:30 - 2013-02-23 16:07 - 00002505 ____A C:\Users\Public\Desktop\Norton Internet Security.lnk 2013-06-19 18:29 - 2009-07-14 07:08 - 00032632 ____A C:\Windows\Tasks\SCHEDLGU.TXT 2013-06-19 14:17 - 2013-02-23 16:07 - 00177312 ____A (Symantec Corporation) C:\Windows\System32\Drivers\SYMEVENT64x86.SYS 2013-06-19 14:17 - 2013-02-23 16:07 - 00007631 ____A C:\Windows\System32\Drivers\SYMEVENT64x86.CAT 2013-06-18 20:30 - 2013-06-18 20:02 - 69876567 ____A C:\Users\Yannick\Downloads\LAZ_LF_12_CityLaz.zip 2013-06-18 20:27 - 2013-06-18 20:02 - 45757780 ____A C:\Users\Yannick\Downloads\Volganin.rar 2013-06-18 20:17 - 2013-06-18 19:57 - 85152521 ____A C:\Users\Yannick\Downloads\Ikarus_263_1DTF_Editon_v1.rar 2013-06-18 20:15 - 2013-06-18 20:15 - 00000134 ____A C:\Users\Yannick\Desktop\RMV.cti 2013-06-18 17:09 - 2011-12-25 22:33 - 00000000 ____D C:\ProgramData\Lx_cats 2013-06-17 22:37 - 2013-02-19 21:31 - 00083481 ____A C:\Users\Yannick\Desktop\Träume.sbp 2013-06-17 22:32 - 2013-03-17 12:58 - 00000000 ____D C:\Users\Yannick\Desktop\Bilder Praktikum 2013-06-17 22:23 - 2013-04-08 18:42 - 00000000 ____D C:\Users\Yannick\Desktop\Schule 2013-06-17 22:00 - 2012-12-07 18:55 - 00000000 ____D C:\Users\Yannick\AppData\Local\Deployment 2013-06-17 21:47 - 2013-06-17 21:47 - 00644507 ____A C:\Users\Yannick\Downloads\4F6C6C69.rar 2013-06-17 19:02 - 2013-06-17 19:02 - 00147968 __ASH C:\Users\Yannick\Documents\Thumbs.db 2013-06-17 15:54 - 2009-09-03 11:28 - 00000000 ____D C:\Windows\Panther 2013-06-16 22:44 - 2013-06-15 22:19 - 00000000 ____D C:\Program Files (x86)\Drumtronic 2013-06-16 19:24 - 2013-06-16 19:24 - 01378096 ____A C:\Users\Yannick\Downloads\Sommer-Mod-by-bluescreen-V2_0.zip 2013-06-16 19:24 - 2013-06-16 19:24 - 00758716 ____A C:\Users\Yannick\Downloads\Berliner-HOF-komplett.zip 2013-06-15 23:02 - 2013-06-15 23:02 - 00097946 ____A C:\Users\Yannick\Downloads\TooManyItems 1.5.2.zip 2013-06-15 22:19 - 2013-06-15 22:19 - 00000000 ____D C:\Program Files (x86)\d-lusion 2013-06-15 22:18 - 2013-06-15 22:17 - 05108087 ____A C:\Users\Yannick\Downloads\drumstation.exe 2013-06-15 22:18 - 2013-06-15 22:17 - 02515817 ____A C:\Users\Yannick\Downloads\drumtronic_setup.exe 2013-06-15 22:10 - 2013-06-15 22:04 - 07720271 ____A C:\Users\Yannick\Downloads\WBB 3.1.2&3.1.7.rar 2013-06-15 21:23 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2013-06-15 19:12 - 2013-06-02 17:18 - 00000000 ____D C:\Users\Yannick\Downloads\The.Sims.2.Open.For.Business - RELOADED 2013-06-15 19:12 - 2013-04-28 16:50 - 00000000 ____D C:\Users\Yannick\Downloads\GMX-Toolbar 2013-06-15 19:12 - 2013-02-23 23:58 - 00000000 ____D C:\Users\Yannick\Downloads\Manga 2013-06-15 19:12 - 2013-01-10 23:38 - 00000000 ____D C:\Users\Yannick\Downloads\me 2013-06-15 19:12 - 2013-01-03 21:42 - 00000000 ____D C:\Users\Yannick\Downloads\Neuer Ordner 2013-06-15 16:21 - 2013-03-16 21:53 - 00000000 ____D C:\Users\Yannick\Desktop\Zetsubou School 2013-06-15 16:20 - 2013-03-17 01:03 - 00000000 ____D C:\Users\Yannick\Desktop\Messiah-FLT 2013-06-15 16:20 - 2013-03-02 20:24 - 00000000 ____D C:\Users\Yannick\Desktop\Sam 2013-06-15 16:19 - 2013-06-15 16:19 - 00000000 ____A C:\Windows\setuperr.log 2013-06-15 01:22 - 2013-06-15 00:34 - 151175758 ____A C:\Users\Yannick\Downloads\world1 (3).zip 2013-06-15 01:10 - 2013-06-15 00:38 - 57354316 ____A C:\Users\Yannick\Downloads\world1 (4).zip 2013-06-15 01:02 - 2013-06-15 00:28 - 57681030 ____A C:\Users\Yannick\Downloads\world2.rar 2013-06-15 01:01 - 2013-06-15 00:27 - 51251653 ____A C:\Users\Yannick\Downloads\world1.zip 2013-06-15 00:47 - 2013-06-15 00:27 - 28980821 ____A C:\Users\Yannick\Downloads\world1 (1).zip 2013-06-15 00:37 - 2013-06-15 00:33 - 03903215 ____A C:\Users\Yannick\Downloads\world1 (2).zip 2013-06-15 00:21 - 2013-06-15 00:18 - 06862206 ____A C:\Users\Yannick\Downloads\Revenge Of The Gods.rar 2013-06-14 23:03 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\Help 2013-06-14 23:01 - 2013-04-16 16:11 - 00000000 ____D C:\Users\Yannick\Documents\BS MANGA 2013-06-14 13:16 - 2011-07-15 02:05 - 75825640 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe 2013-06-14 11:18 - 2012-06-27 10:28 - 00692104 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-06-14 11:18 - 2011-10-27 19:53 - 00071048 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-06-08 16:08 - 2013-06-16 23:48 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2013-06-08 16:07 - 2013-06-16 23:47 - 19233792 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2013-06-08 16:06 - 2013-06-16 23:48 - 15404544 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2013-06-08 16:06 - 2013-06-16 23:48 - 02648064 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2013-06-08 16:06 - 2013-06-16 23:48 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll 2013-06-08 14:28 - 2013-06-16 23:48 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2013-06-08 13:42 - 2013-06-16 23:48 - 01141248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-06-08 13:40 - 2013-06-16 23:48 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-06-08 13:40 - 2013-06-16 23:48 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-06-08 13:40 - 2013-06-16 23:48 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-06-08 13:40 - 2013-06-16 23:47 - 14327808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-06-08 13:13 - 2013-06-16 23:48 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-06-06 21:27 - 2013-06-06 21:27 - 04475563 ____A C:\Users\Yannick\Downloads\Ebstein 0.891.zip 2013-06-06 20:34 - 2013-06-04 21:32 - 00000000 ____D C:\Users\Yannick\Desktop\world 2013-06-06 17:41 - 2013-06-06 17:39 - 12032865 ____A C:\Users\Yannick\Downloads\Bukkit Server [1.5.2].zip 2013-06-05 23:04 - 2013-06-05 22:29 - 123634770 ____A C:\Users\Yannick\Downloads\Imperialcity_v13.1.rar 2013-06-05 22:56 - 2013-06-05 22:30 - 53558505 ____A C:\Users\Yannick\Downloads\Hillside Manor-1.5.zip 2013-06-05 22:35 - 2013-06-05 22:30 - 07502298 ____A C:\Users\Yannick\Downloads\World1 - Lumina Nocturnale.rar 2013-06-05 22:20 - 2013-06-05 22:19 - 06366749 ____A C:\Users\Yannick\Downloads\Kölner Dom 1.2.5.rar 2013-06-05 21:56 - 2013-06-05 21:55 - 00000000 ____D C:\Users\Yannick\AppData\Local\Facebook 2013-06-05 21:54 - 2013-06-05 21:54 - 00501248 ____A (Facebook Inc.) C:\Users\Yannick\Downloads\FacebookVideoCallSetup_v1.2.205.0.exe 2013-06-05 21:31 - 2013-06-05 21:31 - 00144742 ____A C:\Users\Yannick\Downloads\Grand Theft Auto 4 (GTA 4) [rahultorrents] - PC [h33t].torrent 2013-06-05 19:29 - 2013-06-05 19:27 - 12533832 ____A C:\Users\Yannick\Downloads\craftbukkit-1.4.7-R1.0.jar 2013-06-05 18:38 - 2013-06-05 18:37 - 09835921 ____A C:\Users\Yannick\Desktop\world.rar 2013-06-05 17:20 - 2013-06-05 17:20 - 00000000 ____D C:\ProgramData\ATI 2013-06-05 17:20 - 2013-06-05 17:20 - 00000000 ____D C:\Program Files (x86)\AMD AVT 2013-06-05 17:20 - 2013-05-22 15:26 - 00000000 ____D C:\ProgramData\AMD 2013-06-05 17:19 - 2013-05-22 15:23 - 00000000 ____D C:\Program Files\ATI Technologies 2013-06-05 17:15 - 2013-06-05 17:15 - 00000000 ____D C:\AMD 2013-06-04 22:44 - 2013-06-04 22:44 - 00207568 ____A C:\Users\Yannick\Downloads\Physikmappe.odt 2013-06-04 21:32 - 2013-06-04 21:25 - 00001869 ____A C:\Users\Yannick\Downloads\server.log 2013-06-04 21:32 - 2013-06-04 21:25 - 00000000 ____D C:\Users\Yannick\Downloads\world 2013-06-04 21:24 - 2013-06-04 21:24 - 02542151 ____A C:\Users\Yannick\Desktop\Minecraft_Server.exe 2013-06-04 21:11 - 2013-06-04 21:11 - 02189699 ____A C:\Users\Yannick\Downloads\Weather-Tornadoes-Mod-1.5.2.zip 2013-06-04 18:07 - 2013-06-04 18:07 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\IT-Service Christian Hau (www.a-bit-more.de) 2013-06-04 18:06 - 2013-06-04 18:06 - 02142052 ____A C:\Users\Yannick\Downloads\Setup.Faktura.curr.zip 2013-06-04 18:06 - 2013-06-04 18:06 - 00001103 ____A C:\Users\UpdatusUser.KARTOFFELBREI.000\Desktop\Zeiterfassung.lnk 2013-06-04 18:06 - 2013-06-04 18:06 - 00001103 ____A C:\Users\Mama\Desktop\Zeiterfassung.lnk 2013-06-04 18:06 - 2013-06-04 18:06 - 00001103 ____A C:\Users\Gast\Desktop\Zeiterfassung.lnk 2013-06-04 18:06 - 2013-06-04 18:06 - 00001081 ____A C:\Users\Yannick\Desktop\Freeware Faktura.lnk 2013-06-04 18:06 - 2013-06-04 18:06 - 00001081 ____A C:\Users\UpdatusUser.KARTOFFELBREI.000\Desktop\Freeware Faktura.lnk 2013-06-04 18:06 - 2013-06-04 18:06 - 00001081 ____A C:\Users\Mama\Desktop\Freeware Faktura.lnk 2013-06-04 18:06 - 2013-06-04 18:06 - 00001081 ____A C:\Users\Gast\Desktop\Freeware Faktura.lnk 2013-06-04 18:06 - 2013-06-04 18:06 - 00000000 ____D C:\Program Files (x86)\Faktura 2013-06-04 17:55 - 2013-06-04 17:55 - 00000000 ____D C:\Program Files (x86)\Smart Projects 2013-06-04 17:55 - 2013-06-04 17:55 - 00000000 ____D C:\Program Files (x86)\Smart File Advisor 2013-06-04 17:54 - 2013-06-04 17:53 - 04207928 ____A (Smart Projects ) C:\Users\Yannick\Downloads\isobuster_all_lang_3.2.exe 2013-06-04 17:49 - 2013-06-02 17:19 - 00000000 ____D C:\Users\Yannick\Downloads\The.Sims.2.Nightlife.CloneCD-MiRROR 2013-06-04 17:49 - 2013-05-28 20:41 - 00000000 ____D C:\Users\Yannick\Desktop\Sims 2013-06-04 16:23 - 2013-06-04 16:23 - 00003805 ____A C:\Users\Yannick\Downloads\IBIS.rar 2013-06-04 16:05 - 2013-06-04 15:48 - 81619883 ____A C:\Users\Yannick\Downloads\Thunder + LO-915 Version 1.01.rar 2013-06-04 15:47 - 2013-06-04 15:47 - 00017555 ____A C:\Users\Yannick\Downloads\fonts.rar 2013-06-04 00:10 - 2013-06-04 00:07 - 47151586 ____A C:\Users\Yannick\Documents\Cutting Crew - I Just Died In Your Arms Tonight.mp4 2013-06-04 00:10 - 2013-06-04 00:07 - 47151586 ____A C:\Users\Yannick\Documents\Cutting Crew - I Just Died In Your Arms Tonight(ipad).mp4 ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-07-03 18:40 ==================== End Of Log ============================ Der neue scan |
04.07.2013, 20:04 | #17 | |
/// the machine /// TB-Ausbilder | Trojan.Zeroacces!inf 4 Wie bekomme ich ihn weg?Combofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!Downloade dir bitte Combofix vom folgenden Downloadspiegel Link 1 WICHTIG - Speichere Combofix auf deinem Desktop
Wenn Combofix fertig ist, wird es eine Logfile erstellen. Bitte poste die C:\Combofix.txt in deiner nächsten Antwort. Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten Zitat:
__________________ |
04.07.2013, 21:20 | #18 |
| Trojan.Zeroacces!inf 4 Wie bekomme ich ihn weg? So chef erledigt
__________________Nun die Logfile: Code:
ATTFilter ComboFix 13-07-04.01 - Yannick 04.07.2013 21:47:05.1.4 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.6143.3869 [GMT 2:00] ausgeführt von:: c:\users\Yannick\Desktop\ComboFix.exe AV: Norton Internet Security *Enabled/Updated* {63DF5164-9100-186D-2187-8DC619EFD8BF} FW: Norton Internet Security *Enabled* {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4} SP: Norton Internet Security *Enabled/Updated* {D8BEB080-B73A-17E3-1B37-B6B462689202} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . C:\install.exe c:\program files (x86)\BrowserCompanion c:\program files (x86)\BrowserCompanion\blabbers-ch.crx c:\program files (x86)\BrowserCompanion\blabbers-ff-full.xpi c:\program files (x86)\BrowserCompanion\jsloader.dll c:\program files (x86)\BrowserCompanion\logo.ico c:\program files (x86)\BrowserCompanion\tdataprotocol.dll c:\program files (x86)\BrowserCompanion\terms.lnk.url c:\program files (x86)\BrowserCompanion\toolbar.dll c:\program files (x86)\BrowserCompanion\uninstall.exe c:\program files (x86)\BrowserCompanion\updater.ini c:\program files (x86)\BrowserCompanion\widgetserv.exe c:\program files (x86)\CheatEngine DB Toolbar Toolbar\tbHElper.dll c:\program files (x86)\Common Files\Acer GameZone online.ico c:\program files (x86)\PricePeep c:\program files (x86)\PricePeep\installer.ico c:\program files (x86)\PricePeep\prICepeep.dll c:\program files (x86)\PricePeep\uninstall.exe c:\program files (x86)\PricePeep\unutil.exe c:\programdata\Browsseo22ssaavve c:\programdata\Browsseo22ssaavve\51608ed5552d8.tlb c:\programdata\Browsseo22ssaavve\5160991ca33f8.tlb c:\programdata\Browsseo22ssaavve\5160994da878e.tlb c:\programdata\Browsseo22ssaavve\data\Browsseo22ssaavve.dat c:\programdata\Browsseo22ssaavve\settings.ini c:\programdata\Browsseo22ssaavve\uninstall.exe c:\programdata\Microsoft\Windows\Start Menu\Programs\Browsseo22ssaavve c:\programdata\Microsoft\Windows\Start Menu\Programs\Browsseo22ssaavve\Browsseo22ssaavve.lnk c:\programdata\Microsoft\Windows\Start Menu\Programs\Browsseo22ssaavve\Uninstall.lnk c:\users\Yannick\AppData\Roaming\.# c:\users\Yannick\AppData\Roaming\toolplugin\toOLbar.dll c:\users\Yannick\videos\Gregorian - The Dark Side Of The Chant Tour (2011) (1).exe c:\windows\IsUn0407.exe c:\windows\SysWow64\chipxum.dll c:\windows\SysWow64\frapsvid.dll c:\windows\SysWow64\Packet.dll c:\windows\SysWow64\pthreadVC.dll c:\windows\SysWow64\wpcap.dll c:\windows\WinRAR c:\windows\WinRAR\SoftonicDownloader_fuer_winrar.exe . . ((((((((((((((((((((((((((((((((((((((( Treiber/Dienste ))))))))))))))))))))))))))))))))))))))))))))))))) . . -------\Legacy_NPF -------\Service_npf -------\Service_SrvUpdater . . ((((((((((((((((((((((( Dateien erstellt von 2013-06-04 bis 2013-07-04 )))))))))))))))))))))))))))))) . . 2013-07-04 20:00 . 2013-07-04 20:00 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp 2013-07-04 20:00 . 2013-07-04 20:00 -------- d-----w- c:\users\UpdatusUser.KARTOFFELBREI\AppData\Local\temp 2013-07-04 20:00 . 2013-07-04 20:00 -------- d-----w- c:\users\UpdatusUser.KARTOFFELBREI.000\AppData\Local\temp 2013-07-04 20:00 . 2013-07-04 20:00 -------- d-----w- c:\users\Default\AppData\Local\temp 2013-07-03 07:19 . 2013-07-03 07:19 -------- d-----w- c:\program files (x86)\LogMeIn Hamachi 2013-07-01 18:45 . 2013-07-03 18:46 -------- d-----w- C:\FRST 2013-07-01 17:00 . 2013-07-01 17:00 -------- d-----w- C:\sh4ldr 2013-07-01 17:00 . 2013-07-01 17:00 -------- d-----w- c:\program files\Enigma Software Group 2013-07-01 14:58 . 2013-07-01 20:05 -------- d-----w- c:\program files (x86)\Trojancheck 6 2013-07-01 13:41 . 2013-07-01 20:05 -------- d-----w- c:\windows\system32\%LOCALAPPDATA% 2013-06-30 19:00 . 2013-06-30 19:00 -------- d-sh--w- c:\programdata\SecuROM 2013-06-30 17:10 . 2013-06-30 18:58 -------- d-----w- c:\users\Yannick\AppData\Local\Rockstar Games 2013-06-30 16:13 . 2013-06-30 16:13 -------- d-----w- c:\program files (x86)\DAEMON Tools Lite 2013-06-30 16:13 . 2013-06-30 16:13 -------- d-----w- c:\users\Yannick\AppData\Roaming\DAEMON Tools 2013-06-30 15:02 . 2013-06-30 15:02 -------- d-----w- c:\programdata\IObit 2013-06-30 15:02 . 2013-06-30 15:02 -------- d-----w- c:\program files (x86)\IObit 2013-06-28 20:55 . 2012-06-09 17:21 178688 ----a-w- c:\windows\SysWow64\unrar.dll 2013-06-28 20:55 . 2013-06-28 20:55 -------- d-----w- c:\program files (x86)\K-Lite Codec Pack 2013-06-25 14:15 . 2013-06-25 14:32 -------- d-----w- c:\users\Yannick\AppData\Local\Smartbar 2013-06-25 14:13 . 2013-06-28 20:46 -------- d-----w- c:\program files (x86)\DVDVideoSoft 2013-06-25 14:13 . 2013-06-28 20:46 -------- d-----w- c:\program files (x86)\Common Files\DVDVideoSoft 2013-06-25 14:13 . 2013-06-28 20:46 -------- d-----w- c:\users\Yannick\AppData\Roaming\DVDVideoSoft 2013-06-25 14:13 . 2013-06-25 14:13 -------- d-----w- c:\users\Yannick\AppData\Roaming\OpenCandy 2013-06-23 22:22 . 2013-06-23 22:28 -------- d-----w- c:\users\Yannick\AppData\Local\ApplicationHistory 2013-06-23 21:55 . 2013-06-23 21:55 1409 ----a-w- c:\windows\QTFont.for 2013-06-23 21:46 . 2013-06-23 21:47 -------- d-----w- c:\program files (x86)\GTA BioHazard Alert REMAKE 2013-06-23 20:05 . 2013-06-23 20:05 -------- d-----w- c:\program files (x86)\GAMI 2013-06-17 14:32 . 2013-06-19 16:29 -------- d-----w- c:\windows\system32\drivers\NISx64\1404000.028 2013-06-16 21:48 . 2013-05-17 01:25 817664 ----a-w- c:\program files (x86)\Common Files\Microsoft Shared\VGX\VGX.dll 2013-06-16 21:47 . 2013-06-08 14:07 19233792 ----a-w- c:\windows\system32\mshtml.dll 2013-06-15 20:19 . 2013-06-16 20:44 -------- d-----w- c:\program files (x86)\Drumtronic 2013-06-15 20:19 . 2013-06-15 20:19 -------- d-----w- c:\program files (x86)\d-lusion 2013-06-14 08:17 . 2013-04-26 05:51 751104 ----a-w- c:\windows\system32\win32spl.dll 2013-06-14 08:17 . 2013-04-26 04:55 492544 ----a-w- c:\windows\SysWow64\win32spl.dll 2013-06-14 08:17 . 2013-05-08 06:39 1910632 ----a-w- c:\windows\system32\drivers\tcpip.sys 2013-06-14 08:12 . 2013-04-17 07:02 1230336 ----a-w- c:\windows\SysWow64\WindowsCodecs.dll 2013-06-14 08:12 . 2013-04-17 06:24 1424384 ----a-w- c:\windows\system32\WindowsCodecs.dll 2013-06-14 08:12 . 2013-05-10 05:49 30720 ----a-w- c:\windows\system32\cryptdlg.dll 2013-06-14 08:12 . 2013-05-10 03:20 24576 ----a-w- c:\windows\SysWow64\cryptdlg.dll 2013-06-14 08:11 . 2013-05-13 03:43 1192448 ----a-w- c:\windows\system32\certutil.exe 2013-06-14 08:11 . 2013-05-13 03:08 903168 ----a-w- c:\windows\SysWow64\certutil.exe 2013-06-14 08:11 . 2013-05-13 05:51 184320 ----a-w- c:\windows\system32\cryptsvc.dll 2013-06-14 08:11 . 2013-05-13 05:51 1464320 ----a-w- c:\windows\system32\crypt32.dll 2013-06-14 08:11 . 2013-05-13 05:51 139776 ----a-w- c:\windows\system32\cryptnet.dll 2013-06-14 08:11 . 2013-05-13 04:45 1160192 ----a-w- c:\windows\SysWow64\crypt32.dll 2013-06-14 08:11 . 2013-05-13 05:50 52224 ----a-w- c:\windows\system32\certenc.dll 2013-06-14 08:11 . 2013-05-13 04:45 140288 ----a-w- c:\windows\SysWow64\cryptsvc.dll 2013-06-14 08:11 . 2013-05-13 04:45 103936 ----a-w- c:\windows\SysWow64\cryptnet.dll 2013-06-14 08:11 . 2013-05-13 03:08 43008 ----a-w- c:\windows\SysWow64\certenc.dll 2013-06-14 08:11 . 2013-04-25 23:30 1505280 ----a-w- c:\windows\SysWow64\d3d11.dll 2013-06-14 08:11 . 2013-03-31 22:52 1887232 ----a-w- c:\windows\system32\d3d11.dll 2013-06-05 19:55 . 2013-06-05 19:56 -------- d-----w- c:\users\Yannick\AppData\Local\Facebook 2013-06-05 15:20 . 2013-06-05 15:20 -------- d-----w- c:\programdata\ATI 2013-06-05 15:20 . 2013-06-05 15:20 -------- d-----w- c:\program files (x86)\AMD AVT 2013-06-05 15:15 . 2013-06-05 15:15 -------- d-----w- C:\AMD . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2013-06-19 12:17 . 2013-02-23 14:07 177312 ----a-w- c:\windows\system32\drivers\SYMEVENT64x86.SYS 2013-06-14 11:16 . 2011-07-15 00:05 75825640 ----a-w- c:\windows\system32\MRT.exe 2013-06-14 09:18 . 2012-06-27 08:28 692104 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2013-06-14 09:18 . 2011-10-27 17:53 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2013-05-28 18:56 . 2013-05-28 18:56 564824 ----a-w- c:\windows\system32\drivers\sptd.sys 2013-04-17 16:02 . 2013-04-17 16:02 335872 ------w- c:\windows\Setup1.exe 2013-04-17 16:02 . 2013-04-17 16:02 74752 ----a-w- c:\windows\ST6UNST.EXE 2013-04-13 05:49 . 2013-05-16 12:46 135168 ----a-w- c:\windows\apppatch\AppPatch64\AcXtrnal.dll 2013-04-13 05:49 . 2013-05-16 12:46 350208 ----a-w- c:\windows\apppatch\AppPatch64\AcLayers.dll 2013-04-13 05:49 . 2013-05-16 12:46 308736 ----a-w- c:\windows\apppatch\AppPatch64\AcGenral.dll 2013-04-13 05:49 . 2013-05-16 12:46 111104 ----a-w- c:\windows\apppatch\AppPatch64\acspecfc.dll 2013-04-13 04:45 . 2013-05-16 12:46 474624 ----a-w- c:\windows\apppatch\AcSpecfc.dll 2013-04-13 04:45 . 2013-05-16 12:46 2176512 ----a-w- c:\windows\apppatch\AcGenral.dll 2013-04-12 14:45 . 2013-04-24 13:13 1656680 ----a-w- c:\windows\system32\drivers\ntfs.sys 2013-04-10 05:24 . 2013-05-16 12:46 983912 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys 2013-04-10 05:24 . 2013-05-16 12:46 265064 ----a-w- c:\windows\system32\drivers\dxgmms1.sys 2013-04-10 03:30 . 2013-05-16 12:45 3153920 ----a-w- c:\windows\system32\win32k.sys 2013-04-06 16:00 . 2013-04-06 16:00 905728 ----a-w- c:\windows\system32\mshtmlmedia.dll 2013-04-06 16:00 . 2013-04-06 16:00 81408 ----a-w- c:\windows\system32\icardie.dll 2013-04-06 16:00 . 2013-04-06 16:00 762368 ----a-w- c:\windows\system32\ieapfltr.dll 2013-04-06 16:00 . 2013-04-06 16:00 73728 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe 2013-04-06 16:00 . 2013-04-06 16:00 719360 ----a-w- c:\windows\SysWow64\mshtmlmedia.dll 2013-04-06 16:00 . 2013-04-06 16:00 61952 ----a-w- c:\windows\SysWow64\tdc.ocx 2013-04-06 16:00 . 2013-04-06 16:00 523264 ----a-w- c:\windows\SysWow64\vbscript.dll 2013-04-06 16:00 . 2013-04-06 16:00 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll 2013-04-06 16:00 . 2013-04-06 16:00 452096 ----a-w- c:\windows\system32\dxtmsft.dll 2013-04-06 16:00 . 2013-04-06 16:00 441856 ----a-w- c:\windows\system32\html.iec 2013-04-06 16:00 . 2013-04-06 16:00 38400 ----a-w- c:\windows\SysWow64\imgutil.dll 2013-04-06 16:00 . 2013-04-06 16:00 361984 ----a-w- c:\windows\SysWow64\html.iec 2013-04-06 16:00 . 2013-04-06 16:00 281600 ----a-w- c:\windows\system32\dxtrans.dll 2013-04-06 16:00 . 2013-04-06 16:00 27648 ----a-w- c:\windows\system32\licmgr10.dll 2013-04-06 16:00 . 2013-04-06 16:00 270848 ----a-w- c:\windows\system32\iedkcs32.dll 2013-04-06 16:00 . 2013-04-06 16:00 247296 ----a-w- c:\windows\system32\webcheck.dll 2013-04-06 16:00 . 2013-04-06 16:00 235008 ----a-w- c:\windows\system32\url.dll 2013-04-06 16:00 . 2013-04-06 16:00 23040 ----a-w- c:\windows\SysWow64\licmgr10.dll 2013-04-06 16:00 . 2013-04-06 16:00 226304 ----a-w- c:\windows\system32\elshyph.dll 2013-04-06 16:00 . 2013-04-06 16:00 216064 ----a-w- c:\windows\system32\msls31.dll 2013-04-06 16:00 . 2013-04-06 16:00 197120 ----a-w- c:\windows\system32\msrating.dll 2013-04-06 16:00 . 2013-04-06 16:00 185344 ----a-w- c:\windows\SysWow64\elshyph.dll 2013-04-06 16:00 . 2013-04-06 16:00 158720 ----a-w- c:\windows\SysWow64\msls31.dll 2013-04-06 16:00 . 2013-04-06 16:00 1509376 ----a-w- c:\windows\system32\inetcpl.cpl 2013-04-06 16:00 . 2013-04-06 16:00 150528 ----a-w- c:\windows\SysWow64\iexpress.exe 2013-04-06 16:00 . 2013-04-06 16:00 1441280 ----a-w- c:\windows\SysWow64\inetcpl.cpl 2013-04-06 16:00 . 2013-04-06 16:00 1400416 ----a-w- c:\windows\system32\ieapfltr.dat 2013-04-06 16:00 . 2013-04-06 16:00 138752 ----a-w- c:\windows\SysWow64\wextract.exe 2013-04-06 16:00 . 2013-04-06 16:00 137216 ----a-w- c:\windows\SysWow64\ieUnatt.exe 2013-04-06 16:00 . 2013-04-06 16:00 12800 ----a-w- c:\windows\SysWow64\mshta.exe 2013-04-06 16:00 . 2013-04-06 16:00 110592 ----a-w- c:\windows\SysWow64\IEAdvpack.dll 2013-04-06 16:00 . 2013-04-06 16:00 1054720 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe 2013-04-06 16:00 . 2013-04-06 16:00 97280 ----a-w- c:\windows\system32\mshtmled.dll 2013-04-06 16:00 . 2013-04-06 16:00 92160 ----a-w- c:\windows\system32\SetIEInstalledDate.exe 2013-04-06 16:00 . 2013-04-06 16:00 77312 ----a-w- c:\windows\system32\tdc.ocx 2013-04-06 16:00 . 2013-04-06 16:00 62976 ----a-w- c:\windows\system32\pngfilt.dll 2013-04-06 16:00 . 2013-04-06 16:00 599552 ----a-w- c:\windows\system32\vbscript.dll 2013-04-06 16:00 . 2013-04-06 16:00 52224 ----a-w- c:\windows\system32\msfeedsbs.dll 2013-04-06 16:00 . 2013-04-06 16:00 51200 ----a-w- c:\windows\system32\imgutil.dll 2013-04-06 16:00 . 2013-04-06 16:00 48640 ----a-w- c:\windows\system32\mshtmler.dll 2013-04-06 16:00 . 2013-04-06 16:00 173568 ----a-w- c:\windows\system32\ieUnatt.exe 2013-04-06 16:00 . 2013-04-06 16:00 167424 ----a-w- c:\windows\system32\iexpress.exe 2013-04-06 16:00 . 2013-04-06 16:00 149504 ----a-w- c:\windows\system32\occache.dll 2013-04-06 16:00 . 2013-04-06 16:00 144896 ----a-w- c:\windows\system32\wextract.exe 2013-04-06 16:00 . 2013-04-06 16:00 13824 ----a-w- c:\windows\system32\mshta.exe 2013-04-06 16:00 . 2013-04-06 16:00 136192 ----a-w- c:\windows\system32\iepeers.dll 2013-04-06 16:00 . 2013-04-06 16:00 135680 ----a-w- c:\windows\system32\IEAdvpack.dll 2013-04-06 16:00 . 2013-04-06 16:00 12800 ----a-w- c:\windows\system32\msfeedssync.exe 2013-04-06 16:00 . 2013-04-06 16:00 102912 ----a-w- c:\windows\system32\inseng.dll 2013-04-06 15:59 . 2013-04-06 15:59 68608 ----a-w- c:\windows\system32\taskhost.exe 2013-03-12 20:08 349228 --sha-w- c:\windows\services.exe . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{31ad400d-1b06-4e33-a59a-90c2c140cba0}] 2010-11-05 01:58 297808 ----a-w- c:\windows\System32\mscoree.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{77BEC163-D389-42c1-91A4-C758846296A5}] 2013-06-23 15:53 166744 ----a-w- c:\program files\Video downloader\Extension32.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{99079a25-328f-4bd4-be04-00955acaa0a7}] 2011-09-19 09:14 88976 ----a-w- c:\progra~2\WI3C8A~1\Datamngr\ToolBar\searchqudtx.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{9D717F81-9148-4f12-8568-69135F087DB0}] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{9E571C81-21E7-496B-9E6B-127E60263022}] 2012-01-12 10:23 269312 ----a-w- c:\users\Yannick\AppData\LocalLow\WOT\IE\WOT.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}] 2013-05-20 10:02 295832 ----a-w- c:\program files (x86)\Delta\delta\1.8.21.5\bh\delta.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{C5A83FB3-EA76-49C5-BA8D-11AEB924738B}] 2012-07-18 15:34 185464 ----a-w- c:\program files (x86)\billigerde\Internet Explorer\billigerde.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}] 2011-11-17 18:29 1515688 ----a-w- c:\program files (x86)\Ask.com\GenericAskToolbar.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{E87806B5-E908-45FD-AF5E-957D83E58E68}] 2012-03-15 13:57 242384 ----a-w- c:\program files (x86)\Softonic\Softonic\1.5.21.0\bh\Softonic.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{e9e8eb35-ff77-455d-b677-91e5e4fc06c2}] 2010-11-05 01:58 297808 ----a-w- c:\windows\System32\mscoree.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar] "{99079a25-328f-4bd4-be04-00955acaa0a7}"= "c:\progra~2\WI3C8A~1\Datamngr\ToolBar\searchqudtx.dll" [2011-09-19 88976] "{5018CFD2-804D-4C99-9F81-25EAEA2769DE}"= "c:\program files (x86)\Softonic\Softonic\1.5.21.0\SoftonicTlbr.dll" [2012-03-15 250576] "{338B4DFE-2E2C-4338-9E41-E176D497299E}"= "c:\program files (x86)\CheatEngine DB Toolbar Toolbar\tbcore3.dll" [2011-06-22 2398720] "{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files (x86)\Ask.com\GenericAskToolbar.dll" [2011-11-17 1515688] "{82E1477C-B154-48D3-9891-33D83C26BCD3}"= "c:\program files (x86)\Delta\delta\1.8.21.5\deltaTlbr.dll" [2013-05-20 284056] . [HKEY_CLASSES_ROOT\clsid\{99079a25-328f-4bd4-be04-00955acaa0a7}] . [HKEY_CLASSES_ROOT\clsid\{5018cfd2-804d-4c99-9f81-25eaea2769de}] [HKEY_CLASSES_ROOT\Softonic.dskBnd.1] [HKEY_CLASSES_ROOT\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}] [HKEY_CLASSES_ROOT\Softonic.dskBnd] . [HKEY_CLASSES_ROOT\clsid\{338b4dfe-2e2c-4338-9e41-e176d497299e}] [HKEY_CLASSES_ROOT\SMTTB2009.SMTTB2009.3] [HKEY_CLASSES_ROOT\TypeLib\{EC4085F2-8DB3-45a6-AD0B-CA289F3C5D7E}] [HKEY_CLASSES_ROOT\SMTTB2009.SMTTB2009] . [HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}] [HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1] [HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}] [HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd] . [HKEY_CLASSES_ROOT\clsid\{82e1477c-b154-48d3-9891-33d83c26bcd3}] [HKEY_CLASSES_ROOT\delta.deltadskBnd.1] [HKEY_CLASSES_ROOT\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}] [HKEY_CLASSES_ROOT\delta.deltadskBnd] . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1] @="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}" [HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}] 2013-05-08 17:49 222808 ----a-w- c:\users\Yannick\AppData\Local\Microsoft\SkyDrive\17.0.2006.0314\SkyDriveShell.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2] @="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}" [HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}] 2013-05-08 17:49 222808 ----a-w- c:\users\Yannick\AppData\Local\Microsoft\SkyDrive\17.0.2006.0314\SkyDriveShell.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3] @="{BBACC218-34EA-4666-9D7A-C78F2274A524}" [HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}] 2013-05-08 17:49 222808 ----a-w- c:\users\Yannick\AppData\Local\Microsoft\SkyDrive\17.0.2006.0314\SkyDriveShell.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\egisPSDP] @="{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}" [HKEY_CLASSES_ROOT\CLSID\{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}] 2009-08-06 17:18 120104 ----a-w- c:\program files (x86)\EgisTec\MyWinLocker 3\x86\PSDProtect.dll . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2013-06-03 19603048] "AlcoholAutomount"="c:\program files (x86)\Alcohol Soft\Alcohol 52\AxAutoMntSrv.exe" [2012-01-05 75624] "uTorrent"="c:\users\Yannick\AppData\Roaming\uTorrent\uTorrent.exe" [2013-04-28 1044560] "Facebook Update"="c:\users\Yannick\AppData\Local\Facebook\Update\FacebookUpdate.exe" [2013-06-05 138096] "Browser Infrastructure Helper"="c:\users\Yannick\AppData\Local\Smartbar\Application\SnapDo.exe" [2013-06-03 20992] "DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\daemon.exe" [2008-08-08 490952] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "EgisTecLiveUpdate"="c:\program files (x86)\EgisTec Egis Software Update\EgisUpdate.exe" [2009-08-04 199464] "ArcadeDeluxeAgent"="c:\program files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe" [2009-07-31 128296] "LWS"="c:\program files (x86)\Logitech\LWS\Webcam Software\LWS.exe" [2011-03-01 190808] "Smart File Advisor"="c:\program files (x86)\Smart File Advisor\sfa.exe" [2011-04-04 280824] "StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2013-03-28 642656] "LogMeIn Hamachi Ui"="c:\program files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" [2013-06-28 2255184] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) "PromptOnSecureDesktop"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon] "Shell"="Explorer.exe c:\windows\system32\fservice.exe" . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows] "LoadAppInit_DLLs"=1 (0x1) . R2 AxAutoMntSrv;Alcohol Virtual Drive Auto-mount Service;c:\program files (x86)\Alcohol Soft\Alcohol 52\AxAutoMntSrv.exe;c:\program files (x86)\Alcohol Soft\Alcohol 52\AxAutoMntSrv.exe [x] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R2 lxeaCATSCustConnectService;lxeaCATSCustConnectService;c:\windows\system32\spool\DRIVERS\x64\3\\lxeaserv.exe;c:\windows\SYSNATIVE\spool\DRIVERS\x64\3\\lxeaserv.exe [x] R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x] R2 WiseBootAssistant;Wise Boot Assistant;c:\program files (x86)\Wise\Wise Care 365\BootTime.exe;c:\program files (x86)\Wise\Wise Care 365\BootTime.exe [x] R3 EagleX64;EagleX64;c:\windows\system32\drivers\EagleX64.sys;c:\windows\SYSNATIVE\drivers\EagleX64.sys [x] R3 FairplayKD;FairplayKD;c:\programdata\MTA San Andreas All\1.3\temp\FairplayKD.sys;c:\programdata\MTA San Andreas All\1.3\temp\FairplayKD.sys [x] R3 FirebirdServerMAGIXInstance;Firebird Server - MAGIX Instance;c:\program files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe;c:\program files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe [x] R3 GPCIDrv;GPCIDrv;c:\program files (x86)\GIGABYTE\EasyBoost\GPCIDrv64.sys;c:\program files (x86)\GIGABYTE\EasyBoost\GPCIDrv64.sys [x] R3 Greg_Service;GRegService;c:\program files (x86)\Acer\Registration\GregHSRW.exe;c:\program files (x86)\Acer\Registration\GregHSRW.exe [x] R3 Guard.Mail.ru;Guard.Mail.ru;c:\program files (x86)\Guard-ICQ\GuardICQ.exe;c:\program files (x86)\Guard-ICQ\GuardICQ.exe [x] R3 HCW85BDA;Hauppauge WinTV 885 Video Capture;c:\windows\system32\drivers\HCW85BDA.sys;c:\windows\SYSNATIVE\drivers\HCW85BDA.sys [x] R3 lxea_device;lxea_device;c:\windows\system32\lxeacoms.exe;c:\windows\SYSNATIVE\lxeacoms.exe [x] R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x] R3 RTCore64;RTCore64;c:\program files (x86)\MSI Afterburner\RTCore64.sys;c:\program files (x86)\MSI Afterburner\RTCore64.sys [x] R3 ScreamBAudioSvc;ScreamBee Audio;c:\windows\system32\drivers\ScreamingBAudio64.sys;c:\windows\SYSNATIVE\drivers\ScreamingBAudio64.sys [x] R3 ss_bbus;SAMSUNG USB Mobile Device (WDM);c:\windows\system32\DRIVERS\ss_bbus.sys;c:\windows\SYSNATIVE\DRIVERS\ss_bbus.sys [x] R3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter);c:\windows\system32\DRIVERS\ss_bmdfl.sys;c:\windows\SYSNATIVE\DRIVERS\ss_bmdfl.sys [x] R3 ss_bmdm;SAMSUNG USB Mobile Modem;c:\windows\system32\DRIVERS\ss_bmdm.sys;c:\windows\SYSNATIVE\DRIVERS\ss_bmdm.sys [x] R3 TFsExDisk;TFsExDisk;c:\windows\System32\Drivers\TFsExDisk.sys;c:\windows\SYSNATIVE\Drivers\TFsExDisk.sys [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] R3 VCSVADHWSer;Avnex Virtual Audio Device (WDM);c:\windows\system32\DRIVERS\vcsvad.sys;c:\windows\SYSNATIVE\DRIVERS\vcsvad.sys [x] R3 WajamUpdater;WajamUpdater;c:\program files (x86)\Wajam\Updater\WajamUpdater.exe;c:\program files (x86)\Wajam\Updater\WajamUpdater.exe [x] R3 WinRing0_1_2_0;WinRing0_1_2_0;c:\program files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys;c:\program files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [x] R4 MSSQLServerADHelper100;SQL Server Hilfsdienst für Active Directory;c:\program files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE;c:\program files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE [x] R4 RsFx0105;RsFx0105 Driver;c:\windows\system32\DRIVERS\RsFx0105.sys;c:\windows\SYSNATIVE\DRIVERS\RsFx0105.sys [x] R4 SQLAgent$SQLEXPRESS;SQL Server-Agent (SQLEXPRESS);c:\program files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE;c:\program files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [x] S0 sptd;sptd;c:\windows\\SystemRoot\System32\Drivers\sptd.sys;c:\windows\\SystemRoot\System32\Drivers\sptd.sys [x] S0 SymDS;Symantec Data Store;c:\windows\system32\drivers\NISx64\1404000.028\SYMDS64.SYS;c:\windows\SYSNATIVE\drivers\NISx64\1404000.028\SYMDS64.SYS [x] S0 SymEFA;Symantec Extended File Attributes;c:\windows\system32\drivers\NISx64\1404000.028\SYMEFA64.SYS;c:\windows\SYSNATIVE\drivers\NISx64\1404000.028\SYMEFA64.SYS [x] S1 BHDrvx64;BHDrvx64;c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\BASHDefs\20130702.001\BHDrvx64.sys;c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\BASHDefs\20130702.001\BHDrvx64.sys [x] S1 ccSet_NIS;Norton Internet Security Settings Manager;c:\windows\system32\drivers\NISx64\1404000.028\ccSetx64.sys;c:\windows\SYSNATIVE\drivers\NISx64\1404000.028\ccSetx64.sys [x] S1 IDSVia64;IDSVia64;c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\IPSDefs\20130703.001\IDSvia64.sys;c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\IPSDefs\20130703.001\IDSvia64.sys [x] S1 mwlPSDFilter;mwlPSDFilter;c:\windows\system32\DRIVERS\mwlPSDFilter.sys;c:\windows\SYSNATIVE\DRIVERS\mwlPSDFilter.sys [x] S1 mwlPSDNServ;mwlPSDNServ;c:\windows\system32\DRIVERS\mwlPSDNServ.sys;c:\windows\SYSNATIVE\DRIVERS\mwlPSDNServ.sys [x] S1 mwlPSDVDisk;mwlPSDVDisk;c:\windows\system32\DRIVERS\mwlPSDVDisk.sys;c:\windows\SYSNATIVE\DRIVERS\mwlPSDVDisk.sys [x] S1 SymIRON;Symantec Iron Driver;c:\windows\system32\drivers\NISx64\1404000.028\Ironx64.SYS;c:\windows\SYSNATIVE\drivers\NISx64\1404000.028\Ironx64.SYS [x] S1 SymNetS;Symantec Network Security WFP Driver;c:\windows\System32\Drivers\NISx64\1404000.028\SYMNETS.SYS;c:\windows\SYSNATIVE\Drivers\NISx64\1404000.028\SYMNETS.SYS [x] S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x] S2 Fabs;FABS - Helping agent for MAGIX media database;c:\program files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe;c:\program files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe [x] S2 FirebirdGuardianDefaultInstance;Firebird Guardian - DefaultInstance;c:\program files (x86)\Firebird\Firebird_2_5\bin\fbguard.exe;c:\program files (x86)\Firebird\Firebird_2_5\bin\fbguard.exe [x] S2 FreemakeVideoCapture;FreemakeVideoCapture;c:\program files (x86)\Freemake\CaptureLib\CaptureLibService.exe;c:\program files (x86)\Freemake\CaptureLib\CaptureLibService.exe [x] S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;c:\program files (x86)\LogMeIn Hamachi\hamachi-2.exe;c:\program files (x86)\LogMeIn Hamachi\hamachi-2.exe [x] S2 ICQ Service;ICQ Service;c:\progra~2\ICQ6TO~1\ICQSER~1.EXE;c:\progra~2\ICQ6TO~1\ICQSER~1.EXE [x] S2 Live Updater Service;Live Updater Service;c:\program files\Acer\Acer Updater\UpdaterService.exe;c:\program files\Acer\Acer Updater\UpdaterService.exe [x] S2 MWLService;MyWinLocker Service;c:\program files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe;c:\program files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe [x] S2 NIS;Norton Internet Security;c:\program files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe;c:\program files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe [x] S2 NTI IScheduleSvc;NTI IScheduleSvc;c:\program files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe;c:\program files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe [x] S2 TeamViewer7;TeamViewer 7;c:\program files (x86)\TeamViewer\Version7\TeamViewer_Service.exe;c:\program files (x86)\TeamViewer\Version7\TeamViewer_Service.exe [x] S2 UMVPFSrv;UMVPFSrv;c:\program files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe;c:\program files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe [x] S2 Updater Service;Updater Service;c:\program files\Acer\Acer Updater\UpdaterService.exe;c:\program files\Acer\Acer Updater\UpdaterService.exe [x] S2 Video downloader Updater;Video downloader Updater;c:\program files\Video downloader\ExtensionUpdaterService.exe;c:\program files\Video downloader\ExtensionUpdaterService.exe [x] S2 WOTUpdater;WOT Updater;c:\users\Yannick\AppData\LocalLow\WOT\IE\WOTUpdater.exe;c:\users\Yannick\AppData\LocalLow\WOT\IE\WOTUpdater.exe [x] S3 athur;Wireless Network Adapter Service;c:\windows\system32\DRIVERS\athurx.sys;c:\windows\SYSNATIVE\DRIVERS\athurx.sys [x] S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys;c:\windows\SYSNATIVE\drivers\AtihdW76.sys [x] S3 e1yexpress;Intel(R) Gigabit Network Connections Driver;c:\windows\system32\DRIVERS\e1y62x64.sys;c:\windows\SYSNATIVE\DRIVERS\e1y62x64.sys [x] S3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys;c:\program files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [x] S3 EuMusDesignVirtualAudioCableWdm;Virtual Audio Cable (WDM);c:\windows\system32\DRIVERS\vrtaucbl.sys;c:\windows\SYSNATIVE\DRIVERS\vrtaucbl.sys [x] S3 FirebirdServerDefaultInstance;Firebird Server - DefaultInstance;c:\program files (x86)\Firebird\Firebird_2_5\bin\fbserver.exe;c:\program files (x86)\Firebird\Firebird_2_5\bin\fbserver.exe [x] S3 LVRS64;Logitech RightSound Filter Driver;c:\windows\system32\DRIVERS\lvrs64.sys;c:\windows\SYSNATIVE\DRIVERS\lvrs64.sys [x] S3 LVUVC64;Logitech HD Webcam C270(UVC);c:\windows\system32\DRIVERS\lvuvc64.sys;c:\windows\SYSNATIVE\DRIVERS\lvuvc64.sys [x] . . --- Andere Dienste/Treiber im Speicher --- . *NewlyCreated* - WS2IFSL . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{5Y99AE78-58TT-11dW-BE53-Y67078979Y}] 2013-03-12 20:08 349228 --sha-w- c:\windows\system\sservice.exe . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}] 2013-06-20 19:17 1165776 ----a-w- c:\program files (x86)\Google\Chrome\Application\27.0.1453.116\Installer\chrmstp.exe . Inhalt des "geplante Tasks" Ordners . 2013-07-04 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-06-27 09:18] . 2013-07-03 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4097592201-1722700985-3522171771-1000Core.job - c:\users\Yannick\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-06-05 19:57] . 2013-07-04 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4097592201-1722700985-3522171771-1000UA.job - c:\users\Yannick\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-06-05 19:57] . 2013-07-04 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-12-07 16:56] . 2013-07-04 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-12-07 16:56] . 2013-07-03 c:\windows\Tasks\ParetoLogic Registration3.job - c:\windows\system32\rundll32.exe [2009-07-13 01:14] . 2013-01-23 c:\windows\Tasks\ParetoLogic Update Version3.job - c:\program files (x86)\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe [2013-04-18 20:43] . 2012-12-30 c:\windows\Tasks\RegCure Pro.job - c:\program files (x86)\ParetoLogic\RegCure Pro\RegCurePro.exe [2013-05-07 22:47] . 2013-05-18 c:\windows\Tasks\Wise Care 365.job - c:\program files (x86)\Wise\Wise Care 365\WiseTray.exe [2013-05-18 14:37] . 2013-05-18 c:\windows\Tasks\Wise Turbo Checker.job - c:\program files (x86)\Wise\Wise Care 365\WiseTurbo.exe [2013-05-18 14:40] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{77BEC163-D389-42c1-91A4-C758846296A5}] 2013-06-23 15:53 207704 ----a-w- c:\program files\Video downloader\Extension64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1] @="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}" [HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}] 2013-05-08 17:49 261704 ----a-w- c:\users\Yannick\AppData\Local\Microsoft\SkyDrive\17.0.2006.0314\amd64\SkyDriveShell64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2] @="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}" [HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}] 2013-05-08 17:49 261704 ----a-w- c:\users\Yannick\AppData\Local\Microsoft\SkyDrive\17.0.2006.0314\amd64\SkyDriveShell64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3] @="{BBACC218-34EA-4666-9D7A-C78F2274A524}" [HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}] 2013-05-08 17:49 261704 ----a-w- c:\users\Yannick\AppData\Local\Microsoft\SkyDrive\17.0.2006.0314\amd64\SkyDriveShell64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\egisPSDP] @="{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}" [HKEY_CLASSES_ROOT\CLSID\{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}] 2009-08-06 17:19 137512 ----a-w- c:\program files (x86)\EgisTec\MyWinLocker 3\x64\PSDProtect.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "mwlDaemon"="c:\program files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe" [2009-08-06 349480] "RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2012-03-27 12459112] "Start WingMan Profiler"="c:\program files\Logitech\Gaming Software\LWEMon.exe" [2010-06-14 190536] "IgfxTray"="c:\windows\system32\igfxtray.exe" [2011-02-11 162328] "HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2011-02-11 386584] "Persistence"="c:\windows\system32\igfxpers.exe" [2011-02-11 417304] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"=c:\progra~2\SEARCH~1\SEARCH~1\x64\datamngr.dll c:\progra~2\SEARCH~1\SEARCH~1\x64\IEBHO.dll . ------- Zusätzlicher Suchlauf ------- . uStart Page = hxxp://feed.snapdo.com/?publisher=SnapdoOCYB&dpid=SnapdoOCYB&co=DE&userid=4733b48d-99b4-4ea0-87fa-03ee8e24488f&searchtype=hp&installDate=25/06/2013 uLocal Page = c:\windows\system32\blank.htm mStart Page = hxxp://www.symantec.com/redirects/security_response/fix_homepage/index.jsp?lg=de&pid=NIS&pvid=20.3.1.22 mLocal Page = c:\windows\SysWOW64\blank.htm uSearchAssistant = hxxp://feed.snapdo.com/?publisher=SnapdoOCYB&dpid=SnapdoOCYB&co=DE&userid=4733b48d-99b4-4ea0-87fa-03ee8e24488f&searchtype=ds&q={searchTerms}&installDate=25/06/2013 IE: An OneNote s&enden - c:\progra~2\MICROS~1\Office14\ONBttnIE.dll/105 IE: E&xport to Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000 IE: Nach Microsoft E&xcel exportieren - c:\progra~2\MICROS~1\Office14\EXCEL.EXE/3000 Handler: base64 - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - Handler: chrome - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - Handler: prox - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - . - - - - Entfernte verwaiste Registrierungseinträge - - - - . BHO-{00cbb66b-1d3b-46d3-9577-323a336acb50} - c:\program files (x86)\BrowserCompanion\jsloader.dll BHO-{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} - c:\progra~2\Funmoods\1.5.23.22\bh\escort.dll BHO-{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007} - c:\program files (x86)\PricePeep\pricepeep.dll Toolbar-Locked - (no file) Toolbar-10 - (no file) Toolbar-{DFEFCDEE-CF1A-4FC8-89AF-189327213627} - c:\users\Yannick\AppData\Roaming\toolplugin\toolbar.dll Toolbar-{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} - c:\progra~2\Funmoods\1.5.23.22\escorTlbr.dll Wow6432Node-HKLM-Run-<NO NAME> - (no file) Wow6432Node-HKU-Default-Run-SearchProtect - \SearchProtect\bin\cltmng.exe c:\users\Mama\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Real Desktop.lnk - c:\program files (x86)\Real Desktop\Real Desktop.exe HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start Toolbar-Locked - (no file) Toolbar-10 - (no file) AddRemove-BrowserCompanion - c:\program files (x86)\BrowserCompanion\uninstall.exe AddRemove-LEGO Creator - c:\windows\IsUn0407.exe AddRemove-PricePeep - c:\program files (x86)\PricePeep\uninstall.exe AddRemove-{C3F3165C-74D3-6FDB-3274-14FDA8698CFA} - c:\programdata\Browsseo22ssaavve\uninstall.exe . . . [HKEY_LOCAL_MACHINE\system\ControlSet001\services\NIS] "ImagePath"="\"c:\program files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe\" /s \"NIS\" /m \"c:\program files (x86)\Norton Internet Security\Engine\20.4.0.40\diMaster.dll\" /prefetch:1" . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_7_700_224_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_7_700_224_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_7_700_224_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_7_700_224_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.11" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}] @Denied: (A) (Everyone) "Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}" . [HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Schema Library\ActionsPane3] @Denied: (A) (Everyone) . [HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0] "Key"="ActionsPane3" "Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd" . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . ------------------------ Weitere laufende Prozesse ------------------------ . c:\program files (x86)\Google\Update\1.3.21.145\GoogleCrashHandler.exe c:\program files (x86)\EgisTec\MyWinLocker 3\x86\MWLService.exe c:\program files (x86)\Alcohol Soft\Alcohol 52\StarWind\StarWindServiceAE.exe c:\program files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe . ************************************************************************** . Zeit der Fertigstellung: 2013-07-04 22:11:49 - PC wurde neu gestartet ComboFix-quarantined-files.txt 2013-07-04 20:11 . Vor Suchlauf: 34 Verzeichnis(se), 255.196.364.800 Bytes frei Nach Suchlauf: 47 Verzeichnis(se), 255.298.269.184 Bytes frei . - - End Of File - - FFED87EC51B782D21A5AB670A12BD219 A36C5E4F47E84449FF07ED3517B43A31 |
05.07.2013, 07:38 | #19 |
/// the machine /// TB-Ausbilder | Trojan.Zeroacces!inf 4 Wie bekomme ich ihn weg? Supi Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
05.07.2013, 13:23 | #20 |
| Trojan.Zeroacces!inf 4 Wie bekomme ich ihn weg? So die AdW Log die anderen kommen gleich... ADW: Code:
ATTFilter # AdwCleaner v2.304 - Datei am 05/07/2013 um 14:16:40 erstellt # Aktualisiert am 03/07/2013 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzer : Yannick - KARTOFFELBREI # Bootmodus : Normal # Ausgeführt unter : C:\Users\Yannick\Desktop\adwcleaner.exe # Option [Löschen] **** [Dienste] **** Gestoppt & Gelöscht : ICQ Service Gestoppt & Gelöscht : Video downloader Updater Gestoppt & Gelöscht : WajamUpdater ***** [Dateien / Ordner] ***** Datei Gelöscht : C:\END Datei Gelöscht : C:\user.js Datei Gelöscht : C:\Users\Mama\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bbjciahceamgodcoidkjpchnokgfpphh_0.localstorage Datei Gelöscht : C:\Users\Yannick\AppData\Local\funmoods.crx Ordner Gelöscht : C:\Program Files (x86)\Ask.com Ordner Gelöscht : C:\Program Files (x86)\Common Files\ParetoLogic Ordner Gelöscht : C:\Program Files (x86)\FindLyrics Ordner Gelöscht : C:\Program Files (x86)\Gophoto.it Ordner Gelöscht : C:\Program Files (x86)\ICQ6Toolbar Ordner Gelöscht : C:\Program Files (x86)\ParetoLogic Ordner Gelöscht : C:\Program Files (x86)\Red Sky Ordner Gelöscht : C:\Program Files (x86)\SearchCore for Browsers Ordner Gelöscht : C:\Program Files (x86)\SimpleSpeedy Ordner Gelöscht : C:\Program Files (x86)\Softonic Ordner Gelöscht : C:\Program Files (x86)\SoftwareUpdater Ordner Gelöscht : C:\Program Files (x86)\TornTV.com Ordner Gelöscht : C:\Program Files (x86)\Wajam Ordner Gelöscht : C:\Program Files (x86)\Windows iLivid Toolbar Ordner Gelöscht : C:\Program Files\Babylon Ordner Gelöscht : C:\Program Files\Video Downloader Ordner Gelöscht : C:\ProgramData\Babylon Ordner Gelöscht : C:\ProgramData\ICQ\ICQToolbar Ordner Gelöscht : C:\ProgramData\InstallMate Ordner Gelöscht : C:\ProgramData\ParetoLogic Ordner Gelöscht : C:\ProgramData\Partner Ordner Gelöscht : C:\ProgramData\Premium Ordner Gelöscht : C:\ProgramData\SoftSafe Ordner Gelöscht : C:\ProgramData\Tarma Installer Ordner Gelöscht : C:\Users\Gast\AppData\LocalLow\bbrs_002.tb Ordner Gelöscht : C:\Users\Gast\AppData\LocalLow\searchquband Ordner Gelöscht : C:\Users\Gast\AppData\LocalLow\Searchqutoolbar Ordner Gelöscht : C:\Users\Gast\AppData\Roaming\Iminent Ordner Gelöscht : C:\Users\Mama\AppData\LocalLow\bbrs_002.tb Ordner Gelöscht : C:\Users\Mama\AppData\LocalLow\ConduitEngine Ordner Gelöscht : C:\Users\Mama\AppData\LocalLow\Funmoods Ordner Gelöscht : C:\Users\Mama\AppData\LocalLow\searchquband Ordner Gelöscht : C:\Users\Mama\AppData\LocalLow\Searchqutoolbar Ordner Gelöscht : C:\Users\Mama\AppData\LocalLow\Softonic Ordner Gelöscht : C:\Users\Mama\AppData\LocalLow\Toolbar4 Ordner Gelöscht : C:\Users\Mama\AppData\Roaming\Iminent Ordner Gelöscht : C:\Users\Yannick\AppData\Local\DownTango Ordner Gelöscht : C:\Users\Yannick\AppData\Local\Ilivid Player Ordner Gelöscht : C:\Users\Yannick\AppData\Local\PackageAware Ordner Gelöscht : C:\Users\Yannick\AppData\Local\PutLockerDownloader Ordner Gelöscht : C:\Users\Yannick\AppData\Local\SwvUpdater Ordner Gelöscht : C:\Users\Yannick\AppData\Local\Temp\Smartbar Ordner Gelöscht : C:\Users\Yannick\AppData\Local\Wajam Ordner Gelöscht : C:\Users\Yannick\AppData\LocalLow\AskToolbar Ordner Gelöscht : C:\Users\Yannick\AppData\LocalLow\bbrs_002.tb Ordner Gelöscht : C:\Users\Yannick\AppData\LocalLow\Conduit Ordner Gelöscht : C:\Users\Yannick\AppData\LocalLow\Delta Ordner Gelöscht : C:\Users\Yannick\AppData\LocalLow\searchquband Ordner Gelöscht : C:\Users\Yannick\AppData\LocalLow\Searchqutoolbar Ordner Gelöscht : C:\Users\Yannick\AppData\LocalLow\Softonic Ordner Gelöscht : C:\Users\Yannick\AppData\LocalLow\Toolbar4 Ordner Gelöscht : C:\Users\Yannick\AppData\Roaming\Babylon Ordner Gelöscht : C:\Users\Yannick\AppData\Roaming\BrowserCompanion Ordner Gelöscht : C:\Users\Yannick\AppData\Roaming\DriverCure Ordner Gelöscht : C:\Users\Yannick\AppData\Roaming\ExpressFiles Ordner Gelöscht : C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DownTango Ordner Gelöscht : C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ParetoLogic Ordner Gelöscht : C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TornTV.com Ordner Gelöscht : C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wajam Ordner Gelöscht : C:\Users\Yannick\AppData\Roaming\OpenCandy Ordner Gelöscht : C:\Users\Yannick\AppData\Roaming\ParetoLogic Ordner Gelöscht : C:\Users\Yannick\AppData\Roaming\Toolplugin Ordner Gelöscht : C:\Users\Yannick\Documents\Save Ordner Gelöscht : C:\Windows\Installer\{86D4B82A-ABED-442A-BE86-96357B70F4FE} ***** [Registrierungsdatenbank] ***** Daten Gelöscht : [x64] HKLM\..\Windows [AppInit_DLLs] = C:\PROGRA~2\SEARCH~1\SEARCH~1\x64\datamngr.dll Schlüssel Gelöscht : HKCU\Software\1ClickDownload Schlüssel Gelöscht : HKCU\Software\APN Schlüssel Gelöscht : HKCU\Software\APN PIP Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\AskToolbar Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\LyricsFan Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\PricePeep Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\searchqutoolbar Schlüssel Gelöscht : HKCU\Software\AppDataLow\SProtector Schlüssel Gelöscht : HKCU\Software\Ask.com Schlüssel Gelöscht : HKCU\Software\BabSolution Schlüssel Gelöscht : HKCU\Software\BabylonToolbar Schlüssel Gelöscht : HKCU\Software\DataMngr_Toolbar Schlüssel Gelöscht : HKCU\Software\DownTango Schlüssel Gelöscht : HKCU\Software\ExpressFiles Schlüssel Gelöscht : HKCU\Software\Google\Chrome\Extensions\bbjciahceamgodcoidkjpchnokgfpphh Schlüssel Gelöscht : HKCU\Software\Headlight Schlüssel Gelöscht : HKCU\Software\IGearSettings Schlüssel Gelöscht : HKCU\Software\IM Schlüssel Gelöscht : HKCU\Software\ImInstaller Schlüssel Gelöscht : HKCU\Software\InstallCore Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{00CBB66B-1D3B-46D3-9577-323A336ACB50} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2EECD738-5844-4A99-B4B6-146BF802613B} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{30F9B915-B755-4826-820B-08FBA6BD249D} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{5018CFD2-804D-4C99-9F81-25EAEA2769DE} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{82E1477C-B154-48D3-9891-33D83C26BCD3} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{855F3B16-6D32-4FE6-8A56-BBB695989046} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{98889811-442D-49DD-99D7-DC866BE87DBC} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{99079A25-328F-4BD4-BE04-00955ACAA0A7} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{9D717F81-9148-4F12-8568-69135F087DB0} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E87806B5-E908-45FD-AF5E-957D83E58E68} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FCBCCB87-9224-4B8D-B117-F56D924BEB18} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000000-6E41-4FD3-8538-502F5495E5FC} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00CBB66B-1D3B-46D3-9577-323A336ACB50} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2EECD738-5844-4A99-B4B6-146BF802613B} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{31AD400D-1B06-4E33-A59A-90C2C140CBA0} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{338B4DFE-2E2C-4338-9E41-E176D497299E} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5018CFD2-804D-4C99-9F81-25EAEA2769DE} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{82E1477C-B154-48D3-9891-33D83C26BCD3} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{855F3B16-6D32-4FE6-8A56-BBB695989046} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{98889811-442D-49DD-99D7-DC866BE87DBC} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{99079A25-328F-4BD4-BE04-00955ACAA0A7} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9D717F81-9148-4F12-8568-69135F087DB0} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE07101B-46D4-4A98-AF68-0333EA26E113} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DFEFCDEE-CF1A-4FC8-89AF-189327213627} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E87806B5-E908-45FD-AF5E-957D83E58E68} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FCBCCB87-9224-4B8D-B117-F56D924BEB18} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007} Schlüssel Gelöscht : HKCU\Software\SearchCore for Browsers Schlüssel Gelöscht : HKCU\Software\SmartBar Schlüssel Gelöscht : HKCU\Software\Softonic Schlüssel Gelöscht : HKCU\Software\Somoto Toolbar Schlüssel Gelöscht : HKCU\Software\StartSearch Schlüssel Gelöscht : HKCU\Software\Wajam Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5} Schlüssel Gelöscht : HKCU\Software\SMTTB2009 Schlüssel Gelöscht : HKLM\Software\APN Schlüssel Gelöscht : HKLM\Software\AskToolbar Schlüssel Gelöscht : HKLM\Software\Babylon Schlüssel Gelöscht : HKLM\Software\BabylonToolbar Schlüssel Gelöscht : HKLM\Software\BrowserCompanion Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{1FAEE6D5-34F4-42AA-8025-3FD8F3EC4634} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{20EDC024-43C5-423E-B7F5-FD93523E0D9F} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{35C1605E-438B-4D64-AAB1-8885F097A9B1} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{38A066B0-DD5F-4226-AC4F-6A27C1BFB892} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{4CE516A7-F7AC-4628-B411-8F886DC5733E} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{50F7F0BE-31BA-4145-BD8B-6B0DECFED804} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{5D723752-5899-47E8-99B4-62C824EF9E13} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{628F3201-34D0-49C0-BB9A-82A26AEFB291} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{6536801B-F50C-449B-9476-093DFD3789E3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{7ABBFE1C-E485-44AA-8F36-353751B4124D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{AC662AF2-4601-4A68-84DF-A3FE83F1A5F9} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{B15F118E-AF21-45E8-A809-29FDD7362565} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{B302A1BD-0157-49FA-90F1-4E94F22C7B4B} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{D616A4A2-7B38-4DBC-9093-6FE7A4A21B17} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{D97A8234-F2A2-4AD4-91D5-FECDB2C553AF} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{ED6535E7-F778-48A5-A060-549D30024511} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\BabylonHelper.EXE Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\BrowserConnection.dll Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\DNSBHO.dll Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\Extension.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\ICQ Service.exe Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\priam_bho.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\PricePeep.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\TbCommonUtils.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\TbHelper.EXE Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\tdataprotocol.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\wit4ie.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Applications\ilividsetupv1.exe Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\b Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Babylon.dskBnd Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Babylon.dskBnd.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\bbylnApp.appCore Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\bbylnApp.appCore.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Conduit.Engine Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\escort.escrtBtn.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\esrv.BabylonESrvc Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\esrv.BabylonESrvc.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Extension.ExtensionHelperObject Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Extension.ExtensionHelperObject.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\f Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\funmoodsApp.appCore Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\funmoodsApp.appCore.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\ICQToolBar.IEHook Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\ICQToolBar.IEHook.1 Schlüssel Gelöscht : HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF Schlüssel Gelöscht : HKLM\Software\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Prod.cap Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\base64 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\chrome Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\prox Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SearchQUIEHelper.DNSGuard Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SearchQUIEHelper.DNSGuard.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SMTTB2009.IEToolbar Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SMTTB2009.IEToolbar.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SoftonicApp.appCore Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SoftonicApp.appCore.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\srv.SoftonicSrvc Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\srv.SoftonicSrvc.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbCommonUtils.CommonUtils Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbCommonUtils.CommonUtils.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.TbDownloadManager Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.TbDownloadManager.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.TbPropertyManager Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.TbPropertyManager.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.TbRequest Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.TbRequest.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.TbTask Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.TbTask.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.ToolbarHelper Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.ToolbarHelper.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Toolbar.CT2325506 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Toolbar3.ContextMenuNotifier Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Toolbar3.ContextMenuNotifier.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Toolbar3.CustomInternetSecurityImpl Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Toolbar3.CustomInternetSecurityImpl.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Toolbar3.SMTTB2009 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Toolbar3.SMTTB2009.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{095BFD3C-4602-4FE1-96F1-AEFAFBFD067D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{11D9E165-B8C1-4734-A56C-BC4FCACA966B} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{1D085C0A-E4F4-4F66-BDBF-4BE51015BFC3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{1D5A4199-956E-49BC-B89F-6A35C57C0D13} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{35C1605E-438B-4D64-AAB1-8885F097A9B1} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{6A4BCABA-C437-4C76-A54E-AF31B8A76CB9} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{6E8BF012-2C85-4834-B10A-1B31AF173D70} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{B15F118E-AF21-45E8-A809-29FDD7362565} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{B87F8B63-7274-43FD-87FA-09D3B7496148} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{C4BAE205-5E02-4E32-876E-F34B4E2D000C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\wajam.WajamBHO Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\wajam.WajamBHO.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\wajam.WajamDownloader Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\wajam.WajamDownloader.1 Schlüssel Gelöscht : HKLM\Software\DataMngr Schlüssel Gelöscht : HKLM\Software\DownTango Schlüssel Gelöscht : HKLM\Software\ExpressFiles Schlüssel Gelöscht : HKLM\Software\Iminent Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{855F3B16-6D32-4FE6-8A56-BBB695989046} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apntoolbarinstaller_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apntoolbarinstaller_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\Babylon_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\datamngrUI_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\datamngrUI_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\FunmoodsSetup_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\FunmoodsSetup_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetupV1_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetupV1_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\IncredibarToolbar_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\IncredibarToolbar_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SearchquMediaBar_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SearchquMediaBar_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SnapDo_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SnapDo_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\softonic_ggl_1_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\softonic_ggl_1_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_winrar_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_winrar_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\WajamUpdater_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\WajamUpdater_RASMANCS Schlüssel Gelöscht : HKLM\Software\PIP Schlüssel Gelöscht : HKLM\Software\SearchCore for Browsers Schlüssel Gelöscht : HKLM\Software\SearchquMediabarTb Schlüssel Gelöscht : HKLM\Software\Softonic Schlüssel Gelöscht : HKLM\Software\SoftwareUpdater Schlüssel Gelöscht : HKLM\Software\SP Global Schlüssel Gelöscht : HKLM\Software\SProtector Schlüssel Gelöscht : HKLM\Software\Wajam Schlüssel Gelöscht : HKLM\Software\Web Assistant Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\92d9deb73ee914 Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{00CBB66B-1D3B-46D3-9577-323A336ACB50} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{1C950DE5-D31E-42FB-AFB9-91B0161633D8} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{291BCCC1-6890-484A-89D3-318C928DAC1B} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{2EECD738-5844-4A99-B4B6-146BF802613B} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{338B4DFE-2E2C-4338-9E41-E176D497299E} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3BDF4CE9-E81D-432B-A55E-9F0570CE811F} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{431532BD-0AE1-4ABC-BE8C-919F3D1332E2} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{44B50C01-4993-48E2-ADEE-D812BAE2E9A2} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{5018CFD2-804D-4C99-9F81-25EAEA2769DE} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{57CADC46-58FF-4105-B733-5A9F3FC9783C} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{5D64294B-1341-4FE7-B6D8-7C36828D4DD5} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{855F3B16-6D32-4FE6-8A56-BBB695989046} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{965B9DBE-B104-44AC-950A-8A5F97AFF439} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{98889811-442D-49DD-99D7-DC866BE87DBC} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{99079A25-328F-4BD4-BE04-00955ACAA0A7} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{9D717F81-9148-4F12-8568-69135F087DB0} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{9F34B17E-FF0D-4FAB-97C4-9713FEE79052} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{A3E2F089-DDBB-4CBF-B06C-5D44DA316ED3} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{A40DC6C5-79D0-4CA8-A185-8FF989AF1115} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{A5679AB0-C59E-49E7-83C4-5289F844A6E0} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{A9A56B8E-2DEB-4ED3-BC92-1FA450BCE1A5} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{A9DB719C-7156-415E-B49D-BAD039DE4F13} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{AE338F6D-5A7C-4D1D-86E3-C618532079B5} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{B8276A94-891D-453C-9FF3-715C042A2575} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C339D489-FABC-41DD-B39D-276101667C70} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{CA0167C2-6295-41B8-9BDA-704B2F5E4CD9} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{CA3EB689-8F09-4026-AA10-B9534C691CE0} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{CC1AC828-BB47-4361-AFB5-96EEE259DD87} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{CC5AD34C-6F10-4CB3-B74A-C2DD4D5060A3} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{D565B35E-B787-40FA-95E3-E3562F8FC1A0} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{D89031C2-10DA-4C90-9A62-FCED012BC46B} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{DFEFCDEE-CF1A-4FC8-89AF-189327213627} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E46C8196-B634-44A1-AF6E-957C64278AB1} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E87806B5-E908-45FD-AF5E-957D83E58E68} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{F03FD9D0-4F2B-497C-8A71-DD41D70B07D9} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{FCBCCB87-9224-4B8D-B117-F56D924BEB18} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{FEFD3AF5-A346-4451-AA23-A3AD54915515} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{FFB9ADCB-8C79-4C29-81D3-74D46A93D370} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{01221FCC-4BFB-461C-B08C-F6D2DF309921} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{087CDC12-0A11-4D1D-8DCF-44185D7C3496} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{088BF3A9-6AE8-47B9-A3FB-26262F236C79} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{0D80F1C5-D17B-4177-AC68-955F3EF9F191} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1B730ACF-26A3-447B-9994-14AEE0EB72CC} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1B97A696-5576-43AC-A73B-E1D2C78F21E8} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{23C70BCA-6E23-4A65-AD2E-1389062074F1} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{23D8EEF7-0E13-4000-B9C4-6603C1E912D1} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{295CACB4-51F5-46FD-914E-C72BAAE1B672} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2A42D13C-D427-4787-821B-CF6973855778} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2AC7B9EB-3881-4EB9-8DEE-0A731A309FDE} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2CE5C4B9-6DBE-4528-96FA-C9FF38EF1762} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{349C0469-ACDD-49DF-9B3E-0D82E7C7DC4D} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{34C1FDF7-02C1-4F23-B393-F48B16E071D1} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3D8478AA-7B88-48A9-8BCB-B85D594411EC} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{41226591-6F7A-4082-B63A-67FE4A0CF7A6} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{431532BD-0AE1-4ABC-BE8C-919F3D1332E2} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{44B619BC-3D2B-4990-AA4F-9AA366921792} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{44C3C1DB-2127-433C-98EC-4C9412B5FC3A} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{452AE416-9A97-44CA-93DA-D0F15C36254F} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{45CDA4F7-594C-49A0-AAD1-8224517FE979} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{4D5132DD-BB2B-4249-B5E0-D145A8C982E1} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{4D8ED2B3-DC62-43EC-ABA3-5B74F046B1BE} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{54291324-7A3D-4F11-B707-3FB6A2C97BD9} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{55D69CD1-6715-4C40-BF05-9519AC4DC6E6} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{59C63F11-D4E5-46E7-9B8A-EE158DCA83A8} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{5DA22CBD-0029-4A09-B757-CF0FAFC488ED} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{66C8FD57-54C4-4D4F-BC95-DCCC763B410A} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{706D4A4B-184A-4434-B331-296B07493D2D} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{717BAE33-7061-4279-8AE5-6C13BC8AF3F9} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{75BF416E-4326-45B5-8A2D-AE32D05B930B} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{77A6E7D4-4A83-4A9B-A2A0-EF3B125DC29D} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{817923CB-4744-4216-B250-CF7EDA8F1767} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{81E852CC-1FD5-4004-8761-79A48B975E29} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{84F06F7A-F811-48D7-8B34-3F4145183D8F} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{88F6D55F-AA3F-4003-BE69-4AC1998D6492} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{8BE10F21-185F-4CA0-B789-9921674C3993} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{8DBCDED5-08AD-41A2-9BBC-235D84F4FE06} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{94C0B25D-3359-4B10-B227-F96A77DB773F} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{95B6A271-FEB4-4160-B0FF-44394C21C8DC} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A0F66203-1A86-4812-9603-A57E09A4D7A3} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A36867C6-302D-49FC-9D8E-1EB037B5F1AB} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B0B75FBA-7288-4FD3-A9EB-7EE27FA65599} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B173667F-8395-4317-8DD6-45AD1FE00047} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B2CA345D-ADB8-4F5D-AC64-4AB34322F659} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B32672B3-F656-46E0-B584-FE61C0BB6037} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B9F43021-60D4-42A6-A065-9BA37F38AC47} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{BC39D1B3-4471-41C1-AACA-E097FAF4B7AA} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{BF921DD3-732A-4A11-933B-A5EA49F2FD2C} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{BFE569F7-646C-4512-969B-9BE3E580D393} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C0585B2F-74D7-4734-88DE-6C150C5D4036} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C2434722-5C85-4CA0-BA69-1B67E7AB3D68} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C2996524-2187-441F-A398-CD6CB6B3D020} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{CA17D76B-F91D-4659-A7FD-A9F7ED375CDD} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D8242E89-2F81-484A-AE5B-BA8CAD5B7347} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D83B296A-2FA6-425B-8AE8-A1F33D99FBD6} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DEB85542-1311-4EC6-8A32-5372EB27FC94} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E047E227-5342-4D94-80F7-CFB154BF55BD} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E3F79BE9-24D4-4F4D-8C13-DF2C9899F82E} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E67D5BC7-7129-493E-9281-F47BDAFACE4F} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E77EEF95-3E83-4BB8-9C0D-4A5163774997} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EF0588D6-1621-4A75-B8BE-F4BC34794136} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\bbjciahceamgodcoidkjpchnokgfpphh Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\bodddioamolcibagionmmobehnbhiakf Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\jbpkiefagocgkmemidfngdkamloieekf Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\jpmbfleldcgkldadpdinhjjopdfpjfjp Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8375D9C8-634F-4ECB-8CF5-C7416BA5D542} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{99079A25-328F-4BD4-BE04-00955ACAA0A7} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9CF034EA-7B46-48D3-8895-8A14B32AE445} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00CBB66B-1D3B-46D3-9577-323A336ACB50} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2EECD738-5844-4A99-B4B6-146BF802613B} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{99079A25-328F-4BD4-BE04-00955ACAA0A7} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9D717F81-9148-4F12-8568-69135F087DB0} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E87806B5-E908-45FD-AF5E-957D83E58E68} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCBCCB87-9224-4B8D-B117-F56D924BEB18} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{C3F3165C-74D3-6FDB-3274-14FDA8698CFA} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\1ClickDownload Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\BrowserCompanion Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\DownTango Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\ICQToolbar Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\PricePeep Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SearchCore for Browsers Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Searchqu 406 MediaBar Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Softonic Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SoftwareUpdater Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Wajam Schlüssel Gelöscht : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WajamUpdater Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{CC1AC828-BB47-4361-AFB5-96EEE259DD87} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{01221FCC-4BFB-461C-B08C-F6D2DF309921} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{087CDC12-0A11-4D1D-8DCF-44185D7C3496} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{088BF3A9-6AE8-47B9-A3FB-26262F236C79} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0D80F1C5-D17B-4177-AC68-955F3EF9F191} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{1B730ACF-26A3-447B-9994-14AEE0EB72CC} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{1B97A696-5576-43AC-A73B-E1D2C78F21E8} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{23C70BCA-6E23-4A65-AD2E-1389062074F1} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{23D8EEF7-0E13-4000-B9C4-6603C1E912D1} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{295CACB4-51F5-46FD-914E-C72BAAE1B672} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2A42D13C-D427-4787-821B-CF6973855778} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2AC7B9EB-3881-4EB9-8DEE-0A731A309FDE} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2CE5C4B9-6DBE-4528-96FA-C9FF38EF1762} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{349C0469-ACDD-49DF-9B3E-0D82E7C7DC4D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{34C1FDF7-02C1-4F23-B393-F48B16E071D1} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3D8478AA-7B88-48A9-8BCB-B85D594411EC} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{41226591-6F7A-4082-B63A-67FE4A0CF7A6} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{431532BD-0AE1-4ABC-BE8C-919F3D1332E2} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{44B619BC-3D2B-4990-AA4F-9AA366921792} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{44C3C1DB-2127-433C-98EC-4C9412B5FC3A} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{452AE416-9A97-44CA-93DA-D0F15C36254F} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{45CDA4F7-594C-49A0-AAD1-8224517FE979} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{4D5132DD-BB2B-4249-B5E0-D145A8C982E1} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{4D8ED2B3-DC62-43EC-ABA3-5B74F046B1BE} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{54291324-7A3D-4F11-B707-3FB6A2C97BD9} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{55D69CD1-6715-4C40-BF05-9519AC4DC6E6} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{59C63F11-D4E5-46E7-9B8A-EE158DCA83A8} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{5DA22CBD-0029-4A09-B757-CF0FAFC488ED} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66C8FD57-54C4-4D4F-BC95-DCCC763B410A} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{706D4A4B-184A-4434-B331-296B07493D2D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{717BAE33-7061-4279-8AE5-6C13BC8AF3F9} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{75BF416E-4326-45B5-8A2D-AE32D05B930B} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{77A6E7D4-4A83-4A9B-A2A0-EF3B125DC29D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{817923CB-4744-4216-B250-CF7EDA8F1767} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{81E852CC-1FD5-4004-8761-79A48B975E29} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{84F06F7A-F811-48D7-8B34-3F4145183D8F} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{88F6D55F-AA3F-4003-BE69-4AC1998D6492} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8BE10F21-185F-4CA0-B789-9921674C3993} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8DBCDED5-08AD-41A2-9BBC-235D84F4FE06} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{94C0B25D-3359-4B10-B227-F96A77DB773F} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{95B6A271-FEB4-4160-B0FF-44394C21C8DC} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A0F66203-1A86-4812-9603-A57E09A4D7A3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A36867C6-302D-49FC-9D8E-1EB037B5F1AB} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B0B75FBA-7288-4FD3-A9EB-7EE27FA65599} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B173667F-8395-4317-8DD6-45AD1FE00047} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B2CA345D-ADB8-4F5D-AC64-4AB34322F659} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B32672B3-F656-46E0-B584-FE61C0BB6037} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B9F43021-60D4-42A6-A065-9BA37F38AC47} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{BC39D1B3-4471-41C1-AACA-E097FAF4B7AA} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{BF921DD3-732A-4A11-933B-A5EA49F2FD2C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{BFE569F7-646C-4512-969B-9BE3E580D393} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C0585B2F-74D7-4734-88DE-6C150C5D4036} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C2434722-5C85-4CA0-BA69-1B67E7AB3D68} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C2996524-2187-441F-A398-CD6CB6B3D020} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{CA17D76B-F91D-4659-A7FD-A9F7ED375CDD} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D8242E89-2F81-484A-AE5B-BA8CAD5B7347} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D83B296A-2FA6-425B-8AE8-A1F33D99FBD6} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DEB85542-1311-4EC6-8A32-5372EB27FC94} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E047E227-5342-4D94-80F7-CFB154BF55BD} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E3F79BE9-24D4-4F4D-8C13-DF2C9899F82E} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E67D5BC7-7129-493E-9281-F47BDAFACE4F} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E77EEF95-3E83-4BB8-9C0D-4A5163774997} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{EF0588D6-1621-4A75-B8BE-F4BC34794136} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7} Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\bbjciahceamgodcoidkjpchnokgfpphh Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{889DF117-14D1-44EE-9F31-C5FB5D47F68B} Schlüssel Gelöscht : HKLM\SOFTWARE\Web Assistant Schlüssel Gelöscht : HKU\S-1-5-21-4097592201-1722700985-3522171771-1016\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5} Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}] Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{855F3B16-6D32-4FE6-8A56-BBB695989046}] Wert Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{338B4DFE-2E2C-4338-9E41-E176D497299E}] Wert Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{5018CFD2-804D-4C99-9F81-25EAEA2769DE}] Wert Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{855F3B16-6D32-4FE6-8A56-BBB695989046}] Wert Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{99079A25-328F-4BD4-BE04-00955ACAA0A7}] Wert Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3}] Wert Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}] Wert Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{D4027C7F-154A-4066-A1AD-4243D8127440}] Wert Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{DFEFCDEE-CF1A-4FC8-89AF-189327213627}] Wert Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [10] Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}] ***** [Internet Browser] ***** -\\ Internet Explorer v10.0.9200.16611 Ersetzt : [HKCU\Software\Microsoft\Internet Explorer\Main - ICQ Search] = hxxp://search.icq.com/search/results.php?q={searchTerms}&ch_id=osd --> hxxp://www.google.com Ersetzt : [HKCU\Software\Microsoft\Internet Explorer\Main - Default_Secondary_Page_URL] = hxxp://search.iminent.com/?appId=702cee2e-da7c-4fc1-a7ee-30f72de85e9f&ref=homepage --> hxxp://www.google.com -\\ Google Chrome v27.0.1453.116 Datei : C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Preferences [OK] Die Datei ist sauber. Datei : C:\Users\Mama\AppData\Local\Google\Chrome\User Data\Default\Preferences [OK] Die Datei ist sauber. Datei : C:\Users\Gast\AppData\Local\Google\Chrome\User Data\Default\Preferences [OK] Die Datei ist sauber. ************************* AdwCleaner[S1].txt - [57818 octets] - [05/07/2013 14:16:40] ########## EOF - C:\AdwCleaner[S1].txt - [57879 octets] ########## |
05.07.2013, 13:40 | #21 |
| Trojan.Zeroacces!inf 4 Wie bekomme ich ihn weg? JRT Log: Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 4.9.4 (05.06.2013:1) OS: Windows 7 Home Premium x64 Ran by Yannick on 05.07.2013 at 14:26:18,38 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\sweetim Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\sweetim Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\systweak Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\systweak Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\installer\upgradecodes\f928123a039649549966d4c29d35b1c9 ~~~ Files Successfully deleted: [File] C:\eula.1031.txt Successfully deleted: [File] C:\install.res.1031.dll ~~~ Folders Successfully deleted: [Folder] "C:\ProgramData\ytd video downloader" Successfully deleted: [Folder] "C:\Users\Yannick\AppData\Roaming\goforfiles" Successfully deleted: [Folder] "C:\Users\Yannick\AppData\Roaming\pccustubinstaller" Successfully deleted: [Folder] "C:\Users\Yannick\AppData\Roaming\systweak" Successfully deleted: [Folder] "C:\Users\Yannick\appdata\locallow\datamngr" Successfully deleted: [Folder] "C:\Program Files (x86)\driver-soft" Successfully deleted: [Folder] "C:\Program Files (x86)\goforfiles" Successfully deleted: [Folder] "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ytd video downloader" ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 05.07.2013 at 14:31:16,71 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 03-07-2013 02 Ran by Yannick (administrator) on 05-07-2013 14:38:12 Running from C:\Users\Yannick\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (AMD) C:\Windows\system32\atiesrxx.exe (Logitech Inc.) C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe (AMD) C:\Windows\system32\atieclxx.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (MAGIX AG) C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe (Firebird Project) C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbguard.exe (Ellora Assets Corp.) C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (Egis Technology Inc.) C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\MWLService.exe (Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe (NewTech Infosystems, Inc.) C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe (Microsoft Corporation) c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (StarWind Software) C:\Program Files (x86)\Alcohol Soft\Alcohol 52\StarWind\StarWindServiceAE.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE () C:\Users\Yannick\AppData\LocalLow\WOT\IE\WOTUpdater.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.145\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.145\GoogleCrashHandler64.exe (Firebird Project) C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbserver.exe (Microsoft Corporation) C:\Windows\System32\alg.exe (Egis Technology Inc.) C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Logitech Inc.) C:\Program Files\Logitech\Gaming Software\LWEMon.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Egis Technology Inc.) C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe (CyberLink Corp.) C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe (Logitech Inc.) C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe () C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe () C:\Program Files (x86)\Common Files\Logishrd\LQCVFX\COCIManager.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [mwlDaemon] C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe [349480 2009-08-06] (Egis Technology Inc.) HKLM\...\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s [12459112 2012-03-27] (Realtek Semiconductor) HKLM\...\Run: [Start WingMan Profiler] C:\Program Files\Logitech\Gaming Software\LWEMon.exe /noui [190536 2010-06-14] (Logitech Inc.) HKLM-x32\...\Winlogon: [Shell] Explorer.exe C:\Windows\system32\fservice.exe [x ] () HKCU\...\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun [19603048 2013-06-03] (Skype Technologies S.A.) HKCU\...\Run: [AlcoholAutomount] "C:\Program Files (x86)\Alcohol Soft\Alcohol 52\AxAutoMntSrv.exe" -automount [75624 2012-01-05] (Alcohol Soft Development Team) HKCU\...\Run: [uTorrent] "C:\Users\Yannick\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED [1044560 2013-04-28] (BitTorrent Inc.) HKCU\...\Run: [Facebook Update] "C:\Users\Yannick\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver [138096 2013-06-05] (Facebook Inc.) HKCU\...\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\daemon.exe" -autorun [490952 2008-08-08] (DT Soft Ltd) HKCU\...\Policies\system: [LogonHoursAction] 2 HKCU\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKCU\...\Policies\system: [DisableRegistryTools] 0 HKCU\...\Policies\system: [DisableTaskMgr] 0 HKLM-x32\...\Run: [EgisTecLiveUpdate] "C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe" [199464 2009-08-04] (Egis Technology Inc.) HKLM-x32\...\Run: [ArcadeDeluxeAgent] "C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe" [128296 2009-07-31] (CyberLink Corp.) HKLM-x32\...\Run: [LWS] C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe -hide [190808 2011-03-02] (Logitech Inc.) HKLM-x32\...\Run: [] [x] HKLM-x32\...\Run: [Smart File Advisor] "C:\Program Files (x86)\Smart File Advisor\sfa.exe" /checkassoc [280824 2011-04-04] (Filefacts.net) HKLM-x32\...\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun [642656 2013-03-28] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start [2255184 2013-06-28] (LogMeIn Inc.) HKU\Default\...\RunOnce: [ScrSav] C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe /default [162336 2009-07-22] () HKU\Default User\...\RunOnce: [ScrSav] C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe /default [162336 2009-07-22] () HKU\Mama\...\Run: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background [3885408 2009-02-06] (Microsoft Corporation) HKU\Mama\...\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [x] HKU\Mama\...\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun [19603048 2013-06-03] (Skype Technologies S.A.) HKU\Mama\...\Run: [Optimizer Pro] C:\Program Files (x86)\Optimizer Pro\OptProLauncher.exe [x] HKU\Mama\...\Run: [Facebook Update] "C:\Users\Yannick\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver [138096 2013-06-05] (Facebook Inc.) HKU\Mama\...\Run: [Real Desktop] "C:\Program Files (x86)\Real Desktop\Real Desktop.exe" [x] HKU\Mama\...\Policies\system: [LogonHoursAction] 2 HKU\Mama\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKU\UpdatusUser\...\RunOnce: [ScrSav] C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe /default [162336 2009-07-22] () HKU\UpdatusUser.KARTOFFELBREI\...\RunOnce: [ScrSav] C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe /default [162336 2009-07-22] () AppInit_DLLs: C:\PROGRA~2\SEARCH~1\SEARCH~1\x64\IEBHO.dll [162336 2009-07-22] () ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://feed.snapdo.com/?publisher=SnapdoOCYB&dpid=SnapdoOCYB&co=DE&userid=4733b48d-99b4-4ea0-87fa-03ee8e24488f&searchtype=hp&installDate=25/06/2013 HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://feed.snapdo.com/?publisher=SnapdoOCYB&dpid=SnapdoOCYB&co=DE&userid=4733b48d-99b4-4ea0-87fa-03ee8e24488f&searchtype=ds&q={searchTerms}&installDate=25/06/2013 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.symantec.com/redirects/security_response/fix_homepage/index.jsp?lg=de&pid=NIS&pvid=20.3.1.22 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=5.5&ar=msnhome HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch BHO: Video downloader - {77BEC163-D389-42c1-91A4-C758846296A5} - C:\Program Files\Video downloader\Extension64.dll No File BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Lexmark Symbolleiste - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll () BHO-x32: No Name - {5C255C8A-E604-49b4-9D64-90988571CECB} - No File BHO-x32: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll (Symantec Corporation) BHO-x32: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\IPS\IPSBHO.DLL (Symantec Corporation) BHO-x32: Video downloader - {77BEC163-D389-42c1-91A4-C758846296A5} - C:\Program Files\Video downloader\Extension32.dll No File BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO-x32: WOT - {9E571C81-21E7-496B-9E6B-127E60263022} - C:\Users\Yannick\AppData\LocalLow\WOT\IE\WOT.dll (WOT Services Oy) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: billiger.de Sparberater - {C5A83FB3-EA76-49C5-BA8D-11AEB924738B} - C:\Program Files (x86)\billigerde\Internet Explorer\billigerde.dll () BHO-x32: Lexmark - {D2C5E510-BE6D-42CC-9F61-E4F939078474} - C:\Program Files\Lexmark Printable Web\bho.dll () BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Freemake.YoutubeButton - {e9e8eb35-ff77-455d-b677-91e5e4fc06c2} - C:\Windows\\SysWOW64\mscoree.dll (Microsoft Corporation) Toolbar: HKLM-x32 - Lexmark Symbolleiste - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll () Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll (Symantec Corporation) Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File Toolbar: HKCU - No Name - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - No File Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation) Handler-x32: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files (x86)\Common Files\Microsoft Shared\Information Retrieval\msitss.dll (Microsoft Corporation) Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_224.dll () FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf - C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.) FF Plugin: @java.com/JavaPlugin - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf - C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll () FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf - C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @java.com/JavaPlugin - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8064.0206 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf - C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @videolan.org/vlc,version=1.1.11 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (the VideoLAN Team) FF Plugin HKCU: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf - C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.) FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\Yannick\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll No File FF HKLM\...\Firefox\Extensions: [{77BEC163-D389-42c1-91A4-C758846296A5}] C:\Program Files\Video downloader\Firefox FF HKLM-x32\...\Firefox\Extensions: [{77BEC163-D389-42c1-91A4-C758846296A5}] C:\Program Files\Video downloader\Firefox FF HKLM-x32\...\Firefox\Extensions: [fmdownloader@gmail.com] C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com\ FF Extension: Freemake Video Downloader Plugin - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com\ FF HKLM-x32\...\Firefox\Extensions: [ytfmdownloader@gmail.com] C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com\ FF Extension: Freemake Youtube Download Button - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com\ FF HKLM-x32\...\Firefox\Extensions: [{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}] C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\coFFPlgn\ FF Extension: Norton Toolbar - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\coFFPlgn\ FF HKLM-x32\...\Firefox\Extensions: [ocr@babylon.com] C:\Program Files (x86)\Babylon\Babylon-Pro\Utils\ocr@babylon.com FF HKLM-x32\...\Firefox\Extensions: [{BBDA0591-3099-440a-AA10-41764D9DB4DB}] C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\IPSFFPlgn\ FF Extension: Norton Vulnerability Protection - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\IPSFFPlgn\ Chrome: ======= CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding} CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}sugkey={google:suggestAPIKeyParameter} CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\pdf.dll () CHR Plugin: (QuickTime Plug-in 7.1.6) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.1.6) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin2.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.1.6) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin3.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.1.6) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin4.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.1.6) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin5.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.1.6) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin6.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.1.6) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin7.dll (Apple Inc.) CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) CHR Plugin: (Google Earth Plugin) - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.) CHR Plugin: (Java(TM) Platform SE 7 U3) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (VLC Multimedia Plug-in) - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (the VideoLAN Team) CHR Plugin: (Windows Live\u00AE Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (PDF-XChange Viewer) - C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.) CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll () CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) CHR Extension: (Freemake Video Downloader) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpegkgagfojjbcpkihigfmkojdmmimdf\1.0.0_0 CHR Extension: (Freemake Youtube Download Button) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehgldbbpchgpcfagfpfjgoomddhccfgh\1.0.0_0 CHR Extension: (FTdownloader) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkjoindjjcmbdpbfppabdgflnkgbbcli\1.0_0 CHR Extension: (Norton Identity Protection) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2013.4.0.10_0 CHR Extension: (billiger.de Sparberater) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\nbifbkkajempdkfhlidjfmbfaoihageg\1.4.6_0 CHR Extension: (WOT) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\nphjeokkkbngjpiofnfpnafjeofjomfb\2.11.7_0 ==================== Services (Whitelisted) ================= S2 AxAutoMntSrv; C:\Program Files (x86)\Alcohol Soft\Alcohol 52\AxAutoMntSrv.exe [75624 2012-01-05] (Alcohol Soft Development Team) R2 FirebirdGuardianDefaultInstance; C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbguard.exe [98304 2010-09-17] (Firebird Project) R3 FirebirdServerDefaultInstance; C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbserver.exe [3735552 2010-09-17] (Firebird Project) R2 FreemakeVideoCapture; C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe [9216 2013-01-10] (Ellora Assets Corp.) S3 Guard.Mail.ru; C:\Program Files (x86)\Guard-ICQ\GuardICQ.exe [1564368 2012-06-02] () S2 lxeaCATSCustConnectService; C:\Windows\system32\spool\DRIVERS\x64\3\\lxeaserv.exe [33960 2009-07-29] (Lexmark International, Inc.) S3 lxea_device; C:\Windows\system32\lxeacoms.exe [1054888 2009-07-29] ( ) S2 MSSQL$SQLEXPRESS; c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [58345832 2011-09-22] (Microsoft Corporation) R2 MWLService; C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe [311592 2009-08-06] (Egis Technology Inc.) R2 NIS; C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe [144368 2013-05-21] (Symantec Corporation) S4 SQLAgent$SQLEXPRESS; c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [431464 2011-09-22] (Microsoft Corporation) R2 StarWindServiceAE; C:\Program Files (x86)\Alcohol Soft\Alcohol 52\StarWind\StarWindServiceAE.exe [370688 2009-12-23] (StarWind Software) S2 WiseBootAssistant; C:\Program Files (x86)\Wise\Wise Care 365\BootTime.exe [580232 2013-05-13] (WiseCleaner.com) R2 WOTUpdater; C:\Users\Yannick\AppData\LocalLow\WOT\IE\WOTUpdater.exe [18432 2012-01-12] () ==================== Drivers (Whitelisted) ==================== S2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [310728 2012-02-13] () R1 BHDrvx64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\BASHDefs\20130702.001\BHDrvx64.sys [1393240 2013-05-31] (Symantec Corporation) R1 BHDrvx64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\BASHDefs\20130702.001\BHDrvx64.sys [1393240 2013-05-31] (Symantec Corporation) R1 ccSet_NIS; C:\Windows\system32\drivers\NISx64\1404000.028\ccSetx64.sys [169048 2013-04-16] (Symantec Corporation) R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484512 2013-02-23] (Symantec Corporation) R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484512 2013-02-23] (Symantec Corporation) R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [138912 2013-02-23] (Symantec Corporation) S3 GPCIDrv; C:\Program Files (x86)\GIGABYTE\EasyBoost\GPCIDrv64.sys [14376 2008-07-15] () S3 GPCIDrv; C:\Program Files (x86)\GIGABYTE\EasyBoost\GPCIDrv64.sys [14376 2008-07-15] () R1 IDSVia64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\IPSDefs\20130703.001\IDSvia64.sys [513184 2013-02-22] (Symantec Corporation) R1 IDSVia64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\IPSDefs\20130703.001\IDSvia64.sys [513184 2013-02-22] (Symantec Corporation) R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [42696 2012-02-13] () R3 NAVENG; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\VirusDefs\20130704.002\ENG64.SYS [126040 2013-05-22] (Symantec Corporation) R3 NAVENG; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\VirusDefs\20130704.002\ENG64.SYS [126040 2013-05-22] (Symantec Corporation) R3 NAVEX15; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\VirusDefs\20130704.002\EX64.SYS [2098776 2013-05-22] (Symantec Corporation) R3 NAVEX15; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\VirusDefs\20130704.002\EX64.SYS [2098776 2013-05-22] (Symantec Corporation) S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [13368 2012-11-19] () S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [13368 2012-11-19] () R0 sptd; C:\Windows\System32\Drivers\sptd.sys [564824 2013-05-28] (Duplex Secure Ltd.) R3 SRTSP; C:\Windows\System32\Drivers\NISx64\1404000.028\SRTSP64.SYS [796760 2013-05-16] (Symantec Corporation) R1 SRTSPX; C:\Windows\system32\drivers\NISx64\1404000.028\SRTSPX64.SYS [36952 2013-03-05] (Symantec Corporation) R0 SymDS; C:\Windows\System32\drivers\NISx64\1404000.028\SYMDS64.SYS [493656 2013-05-21] (Symantec Corporation) R0 SymEFA; C:\Windows\System32\drivers\NISx64\1404000.028\SYMEFA64.SYS [1139800 2013-05-23] (Symantec Corporation) R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [177312 2013-06-19] (Symantec Corporation) R1 SymIRON; C:\Windows\system32\drivers\NISx64\1404000.028\Ironx64.SYS [224416 2013-03-05] (Symantec Corporation) R1 SymNetS; C:\Windows\System32\Drivers\NISx64\1404000.028\SYMNETS.SYS [433752 2013-04-25] (Symantec Corporation) S3 TVICHW32; C:\Program Files (x86)\GIGABYTE\EasyBoost\TVicHW64.sys [21200 2006-10-13] (EnTech Taiwan) S3 TVICHW32; C:\Program Files (x86)\GIGABYTE\EasyBoost\TVicHW64.sys [21200 2006-10-13] (EnTech Taiwan) S3 VCSVADHWSer; C:\Windows\System32\DRIVERS\vcsvad.sys [22528 2013-02-24] (Avnex) S3 WinRing0_1_2_0; C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [14544 2010-11-01] (OpenLibSys.org) S3 WinRing0_1_2_0; C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [14544 2010-11-01] (OpenLibSys.org) U3 ajzdi48b; C:\Windows\System32\Drivers\ajzdi48b.sys [0 ] (Intel Corp./ICP vortex GmbH) S3 catchme; \??\C:\ComboFix\catchme.sys [x] S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [x] S3 FairplayKD; \??\C:\ProgramData\MTA San Andreas All\1.3\temp\FairplayKD.sys [x] U3 JavaQuickStarterService; U4 srservice; S3 TFsExDisk; \??\C:\Windows\System32\Drivers\TFsExDisk.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-07-05 14:31 - 2013-07-05 14:31 - 00001791 ____A C:\Users\Yannick\Desktop\JRT.txt 2013-07-05 14:26 - 2013-07-05 14:26 - 00000000 ____D C:\Windows\ERUNT 2013-07-05 14:25 - 2013-07-05 14:25 - 00000000 ____D C:\JRT 2013-07-05 14:16 - 2013-07-05 14:18 - 00057699 ____A C:\AdwCleaner[S1].txt 2013-07-05 14:15 - 2013-07-05 14:15 - 00650027 ____A C:\Users\Yannick\Desktop\adwcleaner.exe 2013-07-05 14:15 - 2013-07-05 14:15 - 00545954 ____A (Oleg N. Scherbakov) C:\Users\Yannick\Desktop\JRT.exe 2013-07-04 22:11 - 2013-07-04 22:11 - 00044156 ____A C:\ComboFix.txt 2013-07-04 21:42 - 2011-06-26 08:45 - 00256000 ____A C:\Windows\PEV.exe 2013-07-04 21:42 - 2010-11-07 19:20 - 00208896 ____A C:\Windows\MBR.exe 2013-07-04 21:42 - 2009-04-20 06:56 - 00060416 ____A (NirSoft) C:\Windows\NIRCMD.exe 2013-07-04 21:42 - 2000-08-31 02:00 - 00518144 ____A (SteelWerX) C:\Windows\SWREG.exe 2013-07-04 21:42 - 2000-08-31 02:00 - 00406528 ____A (SteelWerX) C:\Windows\SWSC.exe 2013-07-04 21:42 - 2000-08-31 02:00 - 00098816 ____A C:\Windows\sed.exe 2013-07-04 21:42 - 2000-08-31 02:00 - 00080412 ____A C:\Windows\grep.exe 2013-07-04 21:42 - 2000-08-31 02:00 - 00068096 ____A C:\Windows\zip.exe 2013-07-04 21:41 - 2013-07-04 22:11 - 00000000 ____D C:\Qoobox 2013-07-04 21:40 - 2013-07-04 22:09 - 00000000 ____D C:\Windows\erdnt 2013-07-04 21:38 - 2013-07-04 21:39 - 05085494 ____R (Swearware) C:\Users\Yannick\Desktop\ComboFix.exe 2013-07-04 15:57 - 2013-07-04 15:58 - 02237968 ____A (Kaspersky Lab ZAO) C:\Users\Yannick\Desktop\tdsskiller.exe 2013-07-04 13:11 - 2013-07-04 13:12 - 03688886 ____A C:\Users\Yannick\Downloads\O305_Upgrade_1-5.rar 2013-07-03 20:45 - 2013-07-03 20:46 - 01934082 ____A (Farbar) C:\Users\Yannick\Desktop\FRST64.exe 2013-07-03 20:36 - 2013-07-03 20:36 - 02641537 ____A C:\Users\Yannick\Downloads\1361023764_trainerv65.rar 2013-07-03 19:11 - 2013-07-03 19:20 - 65897206 ____A C:\Users\Yannick\Downloads\Velbert 2.0 - Ansagen.zip 2013-07-03 12:12 - 2013-07-03 12:15 - 13717860 ____A C:\Users\Yannick\Downloads\1343867151_WEAPONS.ivaud 2013-07-03 12:12 - 2013-07-03 12:13 - 04075259 ____A C:\Users\Yannick\Downloads\1316332607_ColtAnaconda.rar 2013-07-03 12:10 - 2013-07-03 12:11 - 02079322 ____A C:\Users\Yannick\Downloads\GTAIVMinigunModbymahmutil.rar 2013-07-03 12:08 - 2013-07-03 12:09 - 01877839 ____A C:\Users\Yannick\Downloads\1371727631_coltpython.rar 2013-07-03 12:07 - 2013-07-03 12:09 - 06049113 ____A C:\Users\Yannick\Downloads\1355099338_GTAV2.rar 2013-07-03 10:08 - 2013-07-03 10:10 - 10947677 ____A C:\Users\Yannick\Downloads\1354091225_Download.zip 2013-07-03 10:07 - 2013-07-03 10:07 - 02068856 ____A C:\Users\Yannick\Downloads\1358466481_Statue of Liberty.rar 2013-07-03 10:02 - 2013-07-03 10:03 - 07277054 ____A C:\Users\Yannick\Downloads\1372068824_APaG3.0Hotfix.rar 2013-07-03 09:19 - 2013-07-03 09:19 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2013-07-02 18:53 - 2013-07-02 18:54 - 02662221 ____A C:\Users\Yannick\Downloads\1310225693_Simple Native Trainer v.6.3.rar 2013-07-02 18:51 - 2013-07-02 18:51 - 00072097 ____A C:\Users\Yannick\Downloads\xliveless - v0.999b7 (patch 1.0.7.0. and EFLC 1.1.2.0).zip 2013-07-02 18:50 - 2013-07-02 18:50 - 00004960 ____A C:\Users\Yannick\Downloads\1369742775_Brain Control ver5.5.rar 2013-07-02 17:31 - 2013-07-02 17:31 - 00042711 ____A C:\Users\Yannick\Downloads\IVAsiLoader.rar 2013-07-02 17:28 - 2013-07-02 17:28 - 00185987 ____A C:\Users\Yannick\Downloads\GTA-IV-ASI-Loader-Files.zip 2013-07-02 17:19 - 2013-07-02 17:19 - 00051394 ____A C:\Users\Yannick\Downloads\asiloader1020b.zip 2013-07-02 17:18 - 2013-07-02 17:18 - 00717495 ____A C:\Users\Yannick\Downloads\scripthookdotnet.zip 2013-07-02 16:48 - 2013-07-02 16:48 - 00001764 ____A C:\Users\Yannick\Desktop\Contig.exe - Verknüpfung.lnk 2013-07-02 16:44 - 2013-07-02 16:45 - 00104548 ____A C:\Users\Yannick\Downloads\Contig.zip 2013-07-02 16:24 - 2013-07-02 16:25 - 01113486 ____A C:\Users\Yannick\Downloads\ModPack_HippieCommunist.rar 2013-07-02 16:20 - 2013-07-02 16:44 - 111801582 ____A C:\Users\Yannick\Downloads\gta_environment_mod_5.zip 2013-07-02 16:19 - 2013-07-02 16:19 - 00001222 ____A C:\Users\Yannick\Downloads\1319708462_NGTsExplosionV2.zip 2013-07-02 16:15 - 2013-07-02 16:16 - 03101567 ____A C:\Users\Yannick\Downloads\O305_Upgrade_1-3.rar 2013-07-01 22:27 - 2013-07-01 22:27 - 00001807 ____A C:\Users\Yannick\Desktop\LaunchGTAIV.exe - Verknüpfung.lnk 2013-07-01 20:48 - 2013-07-01 20:48 - 00055779 ____A C:\Users\Yannick\Desktop\Addition.txt 2013-07-01 20:45 - 2013-07-03 20:46 - 00000000 ____D C:\FRST 2013-07-01 19:49 - 2013-07-01 19:49 - 00102718 ____A C:\Users\Yannick\Desktop\Extras.Txt 2013-07-01 19:47 - 2013-07-01 19:47 - 00188512 ____A C:\Users\Yannick\Desktop\OTL.Txt 2013-07-01 19:15 - 2013-07-01 19:15 - 00000724 ____A C:\Users\Yannick\Desktop\defogger_disable.log 2013-07-01 19:15 - 2013-07-01 19:15 - 00000382 ____A C:\Users\Yannick\defogger_reenable 2013-07-01 19:00 - 2013-07-01 19:00 - 00000000 ____D C:\sh4ldr 2013-07-01 19:00 - 2013-07-01 19:00 - 00000000 ____D C:\Program Files\Enigma Software Group 2013-07-01 16:58 - 2013-07-01 22:05 - 00000000 ____D C:\Program Files (x86)\Trojancheck 6 2013-07-01 16:51 - 2013-07-01 16:51 - 00018808 ____A C:\Users\Yannick\Downloads\hijackthis.log 2013-07-01 15:41 - 2013-07-01 22:05 - 00000000 ____D C:\Windows\System32\%LOCALAPPDATA% 2013-06-30 22:12 - 2013-06-30 22:12 - 00223050 ____A C:\Users\Yannick\Downloads\GTA IV - Crack only - 1.0.7.0 (Razor1911).rar 2013-06-30 22:11 - 2013-06-30 22:26 - 108752708 ____A C:\Users\Yannick\Downloads\GTA IV 1.0.7.0. (1).rar 2013-06-30 21:00 - 2013-06-30 21:00 - 00000000 __SHD C:\ProgramData\SecuROM 2013-06-30 20:46 - 2013-06-30 20:46 - 00303511 ____A C:\Users\Yannick\Downloads\1311984168100_GTAIV_LAZIC-NIKOLA.rar 2013-06-30 20:38 - 2013-06-30 20:38 - 00059820 ____A C:\Users\Yannick\Downloads\1233162148SavegameGTAIV.rar 2013-06-30 20:33 - 2013-06-30 20:50 - 109388216 ____A C:\Users\Yannick\Downloads\gta4_1.0.7.0.zip 2013-06-30 19:43 - 2013-06-30 19:43 - 00000000 ____D C:\Users\Yannick\Documents\Rockstar Games 2013-06-30 19:10 - 2013-06-30 20:58 - 00000000 ____D C:\Users\Yannick\AppData\Local\Rockstar Games 2013-06-30 19:08 - 2013-06-30 19:09 - 02855181 ____A C:\Users\Yannick\Downloads\RealisticDriving_EFLC_13.zip 2013-06-30 18:26 - 2013-06-30 18:26 - 00000000 ____D C:\Users\Yannick\Downloads\Vehicles 2013-06-30 18:13 - 2013-06-30 18:13 - 00001066 ____A C:\Users\Public\Desktop\DAEMON Tools Lite.lnk 2013-06-30 18:13 - 2013-06-30 18:13 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\DAEMON Tools 2013-06-30 18:13 - 2013-06-30 18:13 - 00000000 ____D C:\Program Files (x86)\DAEMON Tools Lite 2013-06-30 18:02 - 2013-07-01 22:22 - 00002204 ____A C:\Users\Public\Desktop\Grand Theft Auto IV.lnk 2013-06-30 17:02 - 2013-06-30 17:02 - 00001190 ____A C:\Users\Public\Desktop\Switch to Gaming Mode.lnk 2013-06-30 17:02 - 2013-06-30 17:02 - 00001178 ____A C:\Users\Public\Desktop\Game Booster 3.lnk 2013-06-30 17:02 - 2013-06-30 17:02 - 00000000 ____D C:\ProgramData\IObit 2013-06-30 17:02 - 2013-06-30 17:02 - 00000000 ____D C:\Program Files (x86)\IObit 2013-06-30 17:00 - 2013-06-30 17:01 - 04344120 ____A (IObit ) C:\Users\Yannick\Downloads\gb3-4-setup.exe 2013-06-30 16:25 - 2013-06-30 16:40 - 94729627 ____A C:\Users\Yannick\Downloads\Rheinhausen V4 - Revised Edition 1 by Zane.7z 2013-06-30 16:25 - 2013-06-30 16:25 - 00001513 ____A C:\Users\Yannick\Downloads\Rheinhausen V4 - Revised Edition 1 - Hotfix.7z 2013-06-30 14:09 - 2013-07-01 22:23 - 00055647 ____A C:\Windows\DirectX.log 2013-06-30 14:06 - 2013-06-30 14:06 - 00001362 ____A C:\Users\Yannick\Desktop\Bus- & Cable Car-Simulator.lnk 2013-06-30 14:05 - 2013-06-30 14:18 - 83066510 ____A C:\Users\Yannick\Downloads\BCS_Update_1_0_7_German.exe 2013-06-30 14:03 - 2013-06-30 14:03 - 00003064 ____A C:\Users\Yannick\Downloads\d2a536_4e9f426495345.zip 2013-06-30 08:20 - 2013-06-30 08:20 - 00002255 ____A C:\Users\Yannick\Desktop\Google Chrome.lnk 2013-06-28 22:55 - 2013-06-28 22:55 - 00000000 ____D C:\Program Files (x86)\K-Lite Codec Pack 2013-06-28 22:55 - 2012-06-09 19:21 - 00178688 ____A C:\Windows\SysWOW64\unrar.dll 2013-06-28 22:50 - 2013-06-28 22:53 - 09049827 ____A ( ) C:\Users\Yannick\Downloads\K-Lite_Codec_Pack_995_Basic.exe 2013-06-28 22:46 - 2013-06-28 22:46 - 00001344 ____A C:\Users\Yannick\Desktop\Free YouTube Uploader.lnk 2013-06-28 22:46 - 2013-06-28 22:46 - 00001247 ____A C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk 2013-06-28 22:44 - 2013-06-28 22:44 - 00002334 ____A C:\Users\Yannick\Desktop\Free Video to Flash Converter.lnk 2013-06-28 22:32 - 2013-06-28 22:42 - 32199568 ____A (DVDVideoSoft Ltd. ) C:\Users\Yannick\Downloads\FreeVideoToFlashConverter_5.0.26.622.exe 2013-06-28 22:31 - 2013-06-28 22:42 - 30544736 ____A (DVDVideoSoft Ltd. ) C:\Users\Yannick\Downloads\FreeYouTubeUploader-4.0.1.622 (1).exe 2013-06-28 22:29 - 2013-06-28 22:29 - 00002513 ____A C:\Users\Yannick\Downloads\sg_backup_2013-06-28-2229.spg 2013-06-28 22:29 - 2013-06-28 22:29 - 00002513 ____A C:\Users\Yannick\Downloads\FirstBackup.spg 2013-06-28 22:27 - 2013-06-28 22:28 - 00659456 ____A (Speed Guide Inc.) C:\Users\Yannick\Downloads\TCP308Optimizer.exe 2013-06-28 14:38 - 2013-06-28 14:38 - 00066317 ____A C:\Users\Yannick\Downloads\Mercedes Benz O305 Stern by Chris 12.zip 2013-06-27 23:08 - 2013-06-28 00:12 - 194572800 ____A C:\Users\Yannick\Downloads\VA-Die_Ultimative_Chartshow_Die_Erfolgreichsten_Hits_2012_-2CD-2012-VOiCE.part1.rar 2013-06-27 23:08 - 2013-06-27 23:52 - 109437125 ____A C:\Users\Yannick\Downloads\VA-Die_Ultimative_Chartshow_Die_Erfolgreichsten_Hits_2012_-2CD-2012-VOiCE.part2.rar 2013-06-27 22:57 - 2013-06-28 00:38 - 406223635 ____A C:\Users\Yannick\Downloads\frdpq.Just.The.Best.Sommer.Hits.1990..Heute.2013.rar 2013-06-27 22:51 - 2013-06-27 22:52 - 04639408 ____A (hxxp://yourfiledownloader.com) C:\Users\Yannick\Downloads\va_just_the_best_sommer_hits_1990_heute_2013_downloader_de_99370.exe 2013-06-27 22:50 - 2013-06-27 22:50 - 00935354 ____A C:\Users\Yannick\Downloads\jingles4free_old_pack1 (1).rar 2013-06-27 22:46 - 2013-06-27 22:46 - 03731936 ____A C:\Users\Yannick\Downloads\Jeden Tag 24 Stunden Musik.wav 2013-06-27 22:28 - 2013-06-27 22:28 - 00935354 ____A C:\Users\Yannick\Downloads\jingles4free_old_pack1.rar 2013-06-27 22:24 - 2013-06-27 22:24 - 02467517 ____A C:\Users\Yannick\Downloads\Jingle Pake_ohne.rar 2013-06-27 22:24 - 2013-06-27 22:24 - 00292544 ____A C:\Users\Yannick\Downloads\Jingle Paket 02 ohne.rar 2013-06-26 21:50 - 2013-06-28 14:45 - 00011585 ____A C:\Users\Yannick\Desktop\O305_E2H_84.bus 2013-06-26 21:50 - 2013-06-28 14:45 - 00011418 ____A C:\Users\Yannick\Desktop\O305_E2H_85.bus 2013-06-26 20:05 - 2013-06-26 20:26 - 138166254 ____A C:\Users\Yannick\Downloads\LiAZ_5292.20_v1.0_1.04.zip 2013-06-26 20:03 - 2013-06-26 20:09 - 02269184 ____A C:\Users\Yannick\Downloads\LiAZ_5292.20_v1.0_1.01 (4).zip 2013-06-26 19:16 - 2013-06-26 19:20 - 01187840 ____A C:\Users\Yannick\Downloads\LiAZ_5292.20_v1.0_1.01 (3).zip 2013-06-26 18:55 - 2013-06-26 19:01 - 02269184 ____A C:\Users\Yannick\Downloads\LiAZ_5292.20_v1.0_1.01 (2).zip 2013-06-26 18:45 - 2013-06-26 18:54 - 03416064 ____A C:\Users\Yannick\Downloads\LiAZ_5292.20_v1.0_1.01 (1).zip 2013-06-26 18:19 - 2013-06-26 18:32 - 05152768 ____A C:\Users\Yannick\Downloads\LiAZ_5292.20_v1.0_1.01.zip 2013-06-26 17:05 - 2013-06-26 17:10 - 27139516 ____A C:\Users\Yannick\Downloads\Baustellen Mod - Route Contruction Mod Version 2.zip 2013-06-26 17:02 - 2013-06-26 17:02 - 00943907 ____A C:\Users\Yannick\Downloads\O305_Upgrade_1-2a.rar 2013-06-25 20:20 - 2013-06-24 12:03 - 224736688 ____A (Acresso Software Inc. ) C:\Users\Yannick\Desktop\AS_OMSI-ADDON-STADTBUS-O305_V100.exe 2013-06-25 19:52 - 2013-06-25 19:52 - 00025358 ____A C:\Users\Yannick\Downloads\Rollb--nder_Freyfurt_2013-NEW.rar 2013-06-25 19:41 - 2013-06-25 19:48 - 25139979 ____A C:\Users\Yannick\Downloads\Velbert 2.0.ams 2013-06-25 19:37 - 2013-06-25 20:19 - 222373257 ____A C:\Users\Yannick\Downloads\AS_OMSI-ADDON-STADTBUS-O305.zip 2013-06-25 16:13 - 2013-06-28 22:46 - 00001320 ____A C:\Users\Public\Desktop\Free YouTube Uploader.lnk 2013-06-25 16:13 - 2013-06-28 22:46 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\DVDVideoSoft 2013-06-25 16:13 - 2013-06-28 22:46 - 00000000 ____D C:\Program Files (x86)\DVDVideoSoft 2013-06-25 15:57 - 2013-06-25 16:06 - 30544736 ____A (DVDVideoSoft Ltd. ) C:\Users\Yannick\Downloads\FreeYouTubeUploader-4.0.1.622.exe 2013-06-24 21:08 - 2013-06-24 21:27 - 2024523328 ____A C:\Users\Yannick\Desktop\eurotrucks2 2013-06-24 21-08-35-07.avi 2013-06-24 18:54 - 2013-06-30 17:00 - 00000000 ____D C:\Users\Yannick\Desktop\Let's Plays 2013-06-24 00:22 - 2013-06-24 00:22 - 00000095 ____A C:\Users\Yannick\AppData\Local\fusioncache.dat 2013-06-24 00:21 - 2013-06-24 00:28 - 00168816 ____A C:\Users\Yannick\Downloads\Spark-0.9.2018.zip 2013-06-24 00:20 - 2013-06-24 00:20 - 01987454 ____A C:\Users\Yannick\Downloads\FIX_PATCH_0.5_Biohazard_Alert.rar 2013-06-24 00:19 - 2013-06-24 00:19 - 68677729 ____A C:\Users\Yannick\Downloads\BioHazard_Alert_REMAKE.rar.crdownload 2013-06-23 23:55 - 2013-07-04 20:35 - 00054156 ___AH C:\Windows\QTFont.qfn 2013-06-23 23:55 - 2013-06-23 23:55 - 00001409 ____A C:\Windows\QTFont.for 2013-06-23 23:47 - 2013-06-23 23:54 - 00002296 ____A C:\Users\Yannick\Desktop\gta_sa.lnk 2013-06-23 23:46 - 2013-06-23 23:47 - 00000000 ____D C:\Program Files (x86)\GTA BioHazard Alert REMAKE 2013-06-23 22:22 - 2013-06-23 22:22 - 00001885 ____A C:\Users\Yannick\Downloads\1118267588_chaosmod1.zip 2013-06-23 22:05 - 2013-06-23 22:05 - 00001827 ____A C:\Users\Yannick\Desktop\GAMI.lnk 2013-06-23 22:05 - 2013-06-23 22:05 - 00001827 ____A C:\Users\UpdatusUser.KARTOFFELBREI.000\Desktop\GAMI.lnk 2013-06-23 22:05 - 2013-06-23 22:05 - 00001827 ____A C:\Users\Mama\Desktop\GAMI.lnk 2013-06-23 22:05 - 2013-06-23 22:05 - 00001827 ____A C:\Users\Gast\Desktop\GAMI.lnk 2013-06-23 22:05 - 2013-06-23 22:05 - 00000000 ____D C:\Program Files (x86)\GAMI 2013-06-23 22:02 - 2013-06-23 22:03 - 02078885 ____A C:\Users\Yannick\Downloads\4303_gami_installer1_8_2[gta-scene.de].rar 2013-06-23 21:54 - 2013-06-23 21:59 - 38445633 ____A C:\Users\Yannick\Downloads\gtaberlin0710 (1).rar 2013-06-23 21:45 - 2013-06-23 21:50 - 38445633 ____A C:\Users\Yannick\Downloads\gtaberlin0710.rar 2013-06-23 20:13 - 2013-06-23 20:13 - 00000184 ____A C:\Users\Yannick\Downloads\stream (7).asx 2013-06-23 14:52 - 2013-06-23 15:25 - 239791672 ____A C:\Users\Yannick\Downloads\Landkreis Glesien.rar 2013-06-22 14:39 - 2013-06-22 15:13 - 110526126 ____A C:\Users\Yannick\Downloads\BMO Objekte.rar 2013-06-22 14:29 - 2013-06-22 14:29 - 00531144 ____A C:\Users\Yannick\Downloads\0_5e0_1a2b0_1a_c.zip 2013-06-22 14:28 - 2013-06-22 14:31 - 06745807 ____A C:\Users\Yannick\Downloads\Woelchen_90-Objekte.rar 2013-06-22 14:27 - 2013-06-22 15:20 - 190823623 ____A C:\Users\Yannick\Downloads\Kolp.zip 2013-06-22 11:37 - 2013-06-22 14:06 - 364198563 ____A C:\Users\Yannick\Downloads\Tiefenbach_2.0_%28Objekte%29.rar 2013-06-22 11:31 - 2013-06-22 12:22 - 137991029 ____A C:\Users\Yannick\Downloads\TB-Fellen.zip 2013-06-22 11:27 - 2013-06-22 11:30 - 08403178 ____A C:\Users\Yannick\Downloads\OMV by CMVC.rar 2013-06-22 11:23 - 2013-06-22 14:36 - 00207181 ____A C:\Users\Yannick\Downloads\15390 (1).rar 2013-06-22 11:22 - 2013-06-22 11:23 - 02439394 ____A C:\Users\Yannick\Downloads\Litfass.rar 2013-06-22 11:18 - 2013-06-22 15:03 - 765615036 ____A C:\Users\Yannick\Downloads\Sceneryobjectspack.rar 2013-06-22 11:00 - 2013-06-22 11:00 - 00286139 ____A C:\Users\Yannick\Downloads\OMSI-Modloader-alpha.zip 2013-06-21 17:40 - 2013-06-21 18:26 - 208398704 ____A C:\Users\Yannick\Downloads\Lichtenberg.zip 2013-06-21 17:39 - 2013-06-22 15:38 - 101805455 ____A C:\Users\Yannick\Downloads\Tiefenbach_2.4_(Hauptordner).rar 2013-06-20 16:01 - 2013-06-20 16:01 - 00024439 ____A C:\Users\Yannick\Downloads\Volganin Patch by Chris 12.zip 2013-06-20 15:55 - 2013-06-20 16:08 - 30448084 ____A C:\Users\Yannick\Downloads\MAZ_107.7z 2013-06-20 15:54 - 2013-06-20 16:06 - 54937823 ____A C:\Users\Yannick\Downloads\???-52078 ????.rar 2013-06-18 21:01 - 2013-06-19 20:47 - 00000000 ____D C:\Users\Yannick\Desktop\Neuer Ordner (3) 2013-06-18 20:15 - 2013-06-18 20:15 - 00000134 ____A C:\Users\Yannick\Desktop\RMV.cti 2013-06-18 20:02 - 2013-06-18 20:30 - 69876567 ____A C:\Users\Yannick\Downloads\LAZ_LF_12_CityLaz.zip 2013-06-18 20:02 - 2013-06-18 20:27 - 45757780 ____A C:\Users\Yannick\Downloads\Volganin.rar 2013-06-18 19:57 - 2013-06-18 20:17 - 85152521 ____A C:\Users\Yannick\Downloads\Ikarus_263_1DTF_Editon_v1.rar 2013-06-17 21:47 - 2013-06-17 21:47 - 00644507 ____A C:\Users\Yannick\Downloads\4F6C6C69.rar 2013-06-17 19:02 - 2013-06-17 19:02 - 00147968 __ASH C:\Users\Yannick\Documents\Thumbs.db 2013-06-16 23:49 - 2013-05-17 03:25 - 02877440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-06-16 23:49 - 2013-05-17 03:25 - 00690688 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-06-16 23:49 - 2013-05-17 03:25 - 00493056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-06-16 23:49 - 2013-05-17 03:25 - 00109056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-06-16 23:49 - 2013-05-17 03:25 - 00061440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-06-16 23:49 - 2013-05-17 03:25 - 00033280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-06-16 23:49 - 2013-05-17 02:59 - 00051712 ____A (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe 2013-06-16 23:49 - 2013-05-17 02:58 - 03958784 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll 2013-06-16 23:49 - 2013-05-17 02:58 - 00855552 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll 2013-06-16 23:49 - 2013-05-17 02:58 - 00603136 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll 2013-06-16 23:49 - 2013-05-17 02:58 - 00136704 ____A (Microsoft Corporation) C:\Windows\System32\iesysprep.dll 2013-06-16 23:49 - 2013-05-17 02:58 - 00067072 ____A (Microsoft Corporation) C:\Windows\System32\iesetup.dll 2013-06-16 23:49 - 2013-05-17 02:58 - 00039936 ____A (Microsoft Corporation) C:\Windows\System32\iernonce.dll 2013-06-16 23:49 - 2013-05-14 14:23 - 00089600 ____A (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe 2013-06-16 23:49 - 2013-05-14 10:40 - 00071680 ____A (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-06-16 23:48 - 2013-06-08 16:08 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2013-06-16 23:48 - 2013-06-08 16:06 - 15404544 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2013-06-16 23:48 - 2013-06-08 16:06 - 02648064 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2013-06-16 23:48 - 2013-06-08 16:06 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll 2013-06-16 23:48 - 2013-06-08 14:28 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2013-06-16 23:48 - 2013-06-08 13:42 - 01141248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-06-16 23:48 - 2013-06-08 13:40 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-06-16 23:48 - 2013-06-08 13:40 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-06-16 23:48 - 2013-06-08 13:40 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-06-16 23:48 - 2013-06-08 13:13 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-06-16 23:48 - 2013-05-17 03:25 - 01767936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-06-16 23:48 - 2013-05-17 03:25 - 00039424 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-06-16 23:48 - 2013-05-17 02:59 - 02241024 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll 2013-06-16 23:48 - 2013-05-17 02:58 - 00053248 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll 2013-06-16 23:47 - 2013-06-08 16:07 - 19233792 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2013-06-16 23:47 - 2013-06-08 13:40 - 14327808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-06-16 19:24 - 2013-06-16 19:24 - 01378096 ____A C:\Users\Yannick\Downloads\Sommer-Mod-by-bluescreen-V2_0.zip 2013-06-16 19:24 - 2013-06-16 19:24 - 00758716 ____A C:\Users\Yannick\Downloads\Berliner-HOF-komplett.zip 2013-06-15 23:02 - 2013-06-15 23:02 - 00097946 ____A C:\Users\Yannick\Downloads\TooManyItems 1.5.2.zip 2013-06-15 22:19 - 2013-06-15 22:19 - 00000000 ____D C:\Program Files (x86)\d-lusion 2013-06-15 22:17 - 2013-06-15 22:18 - 05108087 ____A C:\Users\Yannick\Downloads\drumstation.exe 2013-06-15 22:17 - 2013-06-15 22:18 - 02515817 ____A C:\Users\Yannick\Downloads\drumtronic_setup.exe 2013-06-15 22:04 - 2013-06-15 22:10 - 07720271 ____A C:\Users\Yannick\Downloads\WBB 3.1.2&3.1.7.rar 2013-06-15 19:12 - 2013-06-30 20:39 - 00428544 __ASH C:\Users\Yannick\Downloads\Thumbs.db 2013-06-15 16:25 - 2013-07-05 14:19 - 00768842 ____A C:\Windows\WindowsUpdate.log 2013-06-15 16:21 - 2013-07-04 22:26 - 00378368 __ASH C:\Users\Yannick\Desktop\Thumbs.db 2013-06-15 16:19 - 2013-07-05 14:20 - 00004457 ____A C:\Windows\setupact.log 2013-06-15 16:19 - 2013-06-15 16:19 - 00000000 ____A C:\Windows\setuperr.log 2013-06-15 16:18 - 2013-07-05 14:20 - 00006356 ____A C:\Windows\PFRO.log 2013-06-15 00:38 - 2013-06-15 01:10 - 57354316 ____A C:\Users\Yannick\Downloads\world1 (4).zip 2013-06-15 00:34 - 2013-06-15 01:22 - 151175758 ____A C:\Users\Yannick\Downloads\world1 (3).zip 2013-06-15 00:33 - 2013-06-15 00:37 - 03903215 ____A C:\Users\Yannick\Downloads\world1 (2).zip 2013-06-15 00:28 - 2013-06-15 01:02 - 57681030 ____A C:\Users\Yannick\Downloads\world2.rar 2013-06-15 00:27 - 2013-06-15 01:01 - 51251653 ____A C:\Users\Yannick\Downloads\world1.zip 2013-06-15 00:27 - 2013-06-15 00:47 - 28980821 ____A C:\Users\Yannick\Downloads\world1 (1).zip 2013-06-15 00:18 - 2013-06-15 00:21 - 06862206 ____A C:\Users\Yannick\Downloads\Revenge Of The Gods.rar 2013-06-14 10:17 - 2013-05-08 08:39 - 01910632 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys 2013-06-14 10:17 - 2013-04-26 07:51 - 00751104 ____A (Microsoft Corporation) C:\Windows\System32\win32spl.dll 2013-06-14 10:17 - 2013-04-26 06:55 - 00492544 ____A (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2013-06-14 10:12 - 2013-05-10 07:49 - 00030720 ____A (Microsoft Corporation) C:\Windows\System32\cryptdlg.dll 2013-06-14 10:12 - 2013-05-10 05:20 - 00024576 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2013-06-14 10:12 - 2013-04-17 09:02 - 01230336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2013-06-14 10:12 - 2013-04-17 08:24 - 01424384 ____A (Microsoft Corporation) C:\Windows\System32\WindowsCodecs.dll 2013-06-14 10:11 - 2013-05-13 07:51 - 01464320 ____A (Microsoft Corporation) C:\Windows\System32\crypt32.dll 2013-06-14 10:11 - 2013-05-13 07:51 - 00184320 ____A (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll 2013-06-14 10:11 - 2013-05-13 07:51 - 00139776 ____A (Microsoft Corporation) C:\Windows\System32\cryptnet.dll 2013-06-14 10:11 - 2013-05-13 07:50 - 00052224 ____A (Microsoft Corporation) C:\Windows\System32\certenc.dll 2013-06-14 10:11 - 2013-05-13 06:45 - 01160192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-06-14 10:11 - 2013-05-13 06:45 - 00140288 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2013-06-14 10:11 - 2013-05-13 06:45 - 00103936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2013-06-14 10:11 - 2013-05-13 05:43 - 01192448 ____A (Microsoft Corporation) C:\Windows\System32\certutil.exe 2013-06-14 10:11 - 2013-05-13 05:08 - 00903168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2013-06-14 10:11 - 2013-05-13 05:08 - 00043008 ____A (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll 2013-06-14 10:11 - 2013-04-26 01:30 - 01505280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2013-06-14 10:11 - 2013-04-01 00:52 - 01887232 ____A (Microsoft Corporation) C:\Windows\System32\d3d11.dll 2013-06-06 21:27 - 2013-06-06 21:27 - 04475563 ____A C:\Users\Yannick\Downloads\Ebstein 0.891.zip 2013-06-06 17:39 - 2013-06-06 17:41 - 12032865 ____A C:\Users\Yannick\Downloads\Bukkit Server [1.5.2].zip 2013-06-05 22:30 - 2013-06-05 22:56 - 53558505 ____A C:\Users\Yannick\Downloads\Hillside Manor-1.5.zip 2013-06-05 22:30 - 2013-06-05 22:35 - 07502298 ____A C:\Users\Yannick\Downloads\World1 - Lumina Nocturnale.rar 2013-06-05 22:29 - 2013-06-05 23:04 - 123634770 ____A C:\Users\Yannick\Downloads\Imperialcity_v13.1.rar 2013-06-05 22:19 - 2013-06-05 22:20 - 06366749 ____A C:\Users\Yannick\Downloads\Kölner Dom 1.2.5.rar 2013-06-05 21:55 - 2013-07-04 16:02 - 00000936 ____A C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4097592201-1722700985-3522171771-1000UA.job 2013-06-05 21:55 - 2013-07-03 22:02 - 00000914 ____A C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4097592201-1722700985-3522171771-1000Core.job 2013-06-05 21:55 - 2013-06-05 21:56 - 00000000 ____D C:\Users\Yannick\AppData\Local\Facebook 2013-06-05 21:54 - 2013-06-05 21:54 - 00501248 ____A (Facebook Inc.) C:\Users\Yannick\Downloads\FacebookVideoCallSetup_v1.2.205.0.exe 2013-06-05 21:32 - 2013-06-30 18:17 - 00000000 ____D C:\Users\Yannick\Downloads\GTA.IV-ArenaBG 2013-06-05 21:31 - 2013-06-05 21:31 - 00144742 ____A C:\Users\Yannick\Downloads\Grand Theft Auto 4 (GTA 4) [rahultorrents] - PC [h33t].torrent 2013-06-05 19:27 - 2013-06-05 19:29 - 12533832 ____A C:\Users\Yannick\Downloads\craftbukkit-1.4.7-R1.0.jar 2013-06-05 18:37 - 2013-06-05 18:38 - 09835921 ____A C:\Users\Yannick\Desktop\world.rar 2013-06-05 17:20 - 2013-06-05 17:20 - 00000000 ____D C:\ProgramData\ATI 2013-06-05 17:20 - 2013-06-05 17:20 - 00000000 ____D C:\Program Files (x86)\AMD AVT 2013-06-05 17:15 - 2013-06-05 17:15 - 00000000 ____D C:\AMD ==================== One Month Modified Files and Folders ======= 2013-07-05 14:31 - 2013-07-05 14:31 - 00001791 ____A C:\Users\Yannick\Desktop\JRT.txt 2013-07-05 14:28 - 2009-07-14 06:45 - 00009696 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-07-05 14:28 - 2009-07-14 06:45 - 00009696 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-07-05 14:26 - 2013-07-05 14:26 - 00000000 ____D C:\Windows\ERUNT 2013-07-05 14:25 - 2013-07-05 14:25 - 00000000 ____D C:\JRT 2013-07-05 14:24 - 2013-06-15 16:25 - 00768842 ____A C:\Windows\WindowsUpdate.log 2013-07-05 14:24 - 2013-04-28 21:15 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\uTorrent 2013-07-05 14:24 - 2012-10-10 20:36 - 00000000 ____D C:\Users\Yannick\AppData\Local\LogMeIn Hamachi 2013-07-05 14:22 - 2012-03-30 22:17 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\Skype 2013-07-05 14:21 - 2013-05-18 17:26 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\Wise Care 365 2013-07-05 14:21 - 2012-12-07 18:56 - 00001108 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-07-05 14:20 - 2013-06-15 16:19 - 00004457 ____A C:\Windows\setupact.log 2013-07-05 14:20 - 2013-06-15 16:18 - 00006356 ____A C:\Windows\PFRO.log 2013-07-05 14:20 - 2009-07-14 07:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT 2013-07-05 14:18 - 2013-07-05 14:16 - 00057699 ____A C:\AdwCleaner[S1].txt 2013-07-05 14:16 - 2012-06-27 10:28 - 00000884 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-07-05 14:15 - 2013-07-05 14:15 - 00650027 ____A C:\Users\Yannick\Desktop\adwcleaner.exe 2013-07-05 14:15 - 2013-07-05 14:15 - 00545954 ____A (Oleg N. Scherbakov) C:\Users\Yannick\Desktop\JRT.exe 2013-07-05 14:14 - 2012-12-07 18:56 - 00001112 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-07-04 22:26 - 2013-06-15 16:21 - 00378368 __ASH C:\Users\Yannick\Desktop\Thumbs.db 2013-07-04 22:15 - 2012-12-07 18:55 - 00000000 ____D C:\Users\Yannick\AppData\Local\Apps\2.0 2013-07-04 22:13 - 2013-04-07 12:20 - 00000000 ____D C:\Users\Yannick\Desktop\LS13 2013-07-04 22:11 - 2013-07-04 22:11 - 00044156 ____A C:\ComboFix.txt 2013-07-04 22:11 - 2013-07-04 21:41 - 00000000 ____D C:\Qoobox 2013-07-04 22:09 - 2013-07-04 21:40 - 00000000 ____D C:\Windows\erdnt 2013-07-04 22:08 - 2011-07-14 08:30 - 08369898 ____A C:\Windows\System32\perfh007.dat 2013-07-04 22:08 - 2011-07-14 08:30 - 02597088 ____A C:\Windows\System32\perfc007.dat 2013-07-04 22:08 - 2009-07-14 07:13 - 00006872 ____A C:\Windows\System32\PerfStringBackup.INI 2013-07-04 22:04 - 2009-07-14 04:34 - 00000231 ____A C:\Windows\system.ini 2013-07-04 22:01 - 2009-07-14 04:34 - 29622272 ____A C:\Windows\System32\config\system.bak 2013-07-04 22:01 - 2009-07-14 04:34 - 132382720 ____A C:\Windows\System32\config\software.bak 2013-07-04 22:01 - 2009-07-14 04:34 - 01310720 ____A C:\Windows\System32\config\default.bak 2013-07-04 22:01 - 2009-07-14 04:34 - 00102400 ____A C:\Windows\System32\config\sam.bak 2013-07-04 22:01 - 2009-07-14 04:34 - 00036864 ____A C:\Windows\System32\config\security.bak 2013-07-04 21:59 - 2012-10-23 17:59 - 00000000 ____D C:\Program Files (x86)\CheatEngine DB Toolbar Toolbar 2013-07-04 21:41 - 2012-02-19 20:25 - 00000000 ____D C:\Users\Yannick\AppData\Local\CrashDumps 2013-07-04 21:39 - 2013-07-04 21:38 - 05085494 ____R (Swearware) C:\Users\Yannick\Desktop\ComboFix.exe 2013-07-04 20:35 - 2013-06-23 23:55 - 00054156 ___AH C:\Windows\QTFont.qfn 2013-07-04 16:53 - 2012-03-28 20:16 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\TS3Client 2013-07-04 16:02 - 2013-06-05 21:55 - 00000936 ____A C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4097592201-1722700985-3522171771-1000UA.job 2013-07-04 15:58 - 2013-07-04 15:57 - 02237968 ____A (Kaspersky Lab ZAO) C:\Users\Yannick\Desktop\tdsskiller.exe 2013-07-04 14:03 - 2013-03-02 20:27 - 00000000 ____D C:\ProgramData\firebird 2013-07-04 13:12 - 2013-07-04 13:11 - 03688886 ____A C:\Users\Yannick\Downloads\O305_Upgrade_1-5.rar 2013-07-03 22:02 - 2013-06-05 21:55 - 00000914 ____A C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4097592201-1722700985-3522171771-1000Core.job 2013-07-03 20:46 - 2013-07-03 20:45 - 01934082 ____A (Farbar) C:\Users\Yannick\Desktop\FRST64.exe 2013-07-03 20:46 - 2013-07-01 20:45 - 00000000 ____D C:\FRST 2013-07-03 20:36 - 2013-07-03 20:36 - 02641537 ____A C:\Users\Yannick\Downloads\1361023764_trainerv65.rar 2013-07-03 19:20 - 2013-07-03 19:11 - 65897206 ____A C:\Users\Yannick\Downloads\Velbert 2.0 - Ansagen.zip 2013-07-03 18:00 - 2012-12-30 23:26 - 00000472 ____A C:\Windows\Tasks\ParetoLogic Registration3.job 2013-07-03 12:15 - 2013-07-03 12:12 - 13717860 ____A C:\Users\Yannick\Downloads\1343867151_WEAPONS.ivaud 2013-07-03 12:13 - 2013-07-03 12:12 - 04075259 ____A C:\Users\Yannick\Downloads\1316332607_ColtAnaconda.rar 2013-07-03 12:11 - 2013-07-03 12:10 - 02079322 ____A C:\Users\Yannick\Downloads\GTAIVMinigunModbymahmutil.rar 2013-07-03 12:09 - 2013-07-03 12:08 - 01877839 ____A C:\Users\Yannick\Downloads\1371727631_coltpython.rar 2013-07-03 12:09 - 2013-07-03 12:07 - 06049113 ____A C:\Users\Yannick\Downloads\1355099338_GTAV2.rar 2013-07-03 10:10 - 2013-07-03 10:08 - 10947677 ____A C:\Users\Yannick\Downloads\1354091225_Download.zip 2013-07-03 10:07 - 2013-07-03 10:07 - 02068856 ____A C:\Users\Yannick\Downloads\1358466481_Statue of Liberty.rar 2013-07-03 10:03 - 2013-07-03 10:02 - 07277054 ____A C:\Users\Yannick\Downloads\1372068824_APaG3.0Hotfix.rar 2013-07-03 09:19 - 2013-07-03 09:19 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2013-07-03 09:19 - 2013-05-24 22:14 - 00000930 ____A C:\Users\Public\Desktop\LogMeIn Hamachi.lnk 2013-07-02 18:54 - 2013-07-02 18:53 - 02662221 ____A C:\Users\Yannick\Downloads\1310225693_Simple Native Trainer v.6.3.rar 2013-07-02 18:51 - 2013-07-02 18:51 - 00072097 ____A C:\Users\Yannick\Downloads\xliveless - v0.999b7 (patch 1.0.7.0. and EFLC 1.1.2.0).zip 2013-07-02 18:50 - 2013-07-02 18:50 - 00004960 ____A C:\Users\Yannick\Downloads\1369742775_Brain Control ver5.5.rar 2013-07-02 17:31 - 2013-07-02 17:31 - 00042711 ____A C:\Users\Yannick\Downloads\IVAsiLoader.rar 2013-07-02 17:28 - 2013-07-02 17:28 - 00185987 ____A C:\Users\Yannick\Downloads\GTA-IV-ASI-Loader-Files.zip 2013-07-02 17:19 - 2013-07-02 17:19 - 00051394 ____A C:\Users\Yannick\Downloads\asiloader1020b.zip 2013-07-02 17:18 - 2013-07-02 17:18 - 00717495 ____A C:\Users\Yannick\Downloads\scripthookdotnet.zip 2013-07-02 16:50 - 2011-07-29 19:29 - 00008908 ____A C:\Users\Yannick\AppData\Roaming\wklnhst.dat 2013-07-02 16:50 - 2009-07-14 07:32 - 00000000 ____D C:\Windows\System32\FxsTmp 2013-07-02 16:48 - 2013-07-02 16:48 - 00001764 ____A C:\Users\Yannick\Desktop\Contig.exe - Verknüpfung.lnk 2013-07-02 16:45 - 2013-07-02 16:44 - 00104548 ____A C:\Users\Yannick\Downloads\Contig.zip 2013-07-02 16:44 - 2013-07-02 16:20 - 111801582 ____A C:\Users\Yannick\Downloads\gta_environment_mod_5.zip 2013-07-02 16:25 - 2013-07-02 16:24 - 01113486 ____A C:\Users\Yannick\Downloads\ModPack_HippieCommunist.rar 2013-07-02 16:19 - 2013-07-02 16:19 - 00001222 ____A C:\Users\Yannick\Downloads\1319708462_NGTsExplosionV2.zip 2013-07-02 16:16 - 2013-07-02 16:15 - 03101567 ____A C:\Users\Yannick\Downloads\O305_Upgrade_1-3.rar 2013-07-01 22:27 - 2013-07-01 22:27 - 00001807 ____A C:\Users\Yannick\Desktop\LaunchGTAIV.exe - Verknüpfung.lnk 2013-07-01 22:25 - 2012-06-11 18:55 - 00000000 ____D C:\Program Files (x86)\Rockstar Games 2013-07-01 22:25 - 2009-09-03 10:34 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-07-01 22:23 - 2013-06-30 14:09 - 00055647 ____A C:\Windows\DirectX.log 2013-07-01 22:22 - 2013-06-30 18:02 - 00002204 ____A C:\Users\Public\Desktop\Grand Theft Auto IV.lnk 2013-07-01 22:10 - 2013-03-02 20:55 - 00000000 ____D C:\users\UpdatusUser.KARTOFFELBREI.000 2013-07-01 22:07 - 2011-07-13 22:47 - 00000000 ____D C:\users\Yannick 2013-07-01 22:05 - 2013-07-01 16:58 - 00000000 ____D C:\Program Files (x86)\Trojancheck 6 2013-07-01 22:05 - 2013-07-01 15:41 - 00000000 ____D C:\Windows\System32\%LOCALAPPDATA% 2013-07-01 22:05 - 2012-12-28 23:09 - 00000000 ____D C:\users\UpdatusUser.KARTOFFELBREI 2013-07-01 22:05 - 2012-10-12 22:43 - 00000000 ____D C:\users\Gast 2013-07-01 22:05 - 2012-03-30 11:20 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\ts3overlay 2013-07-01 22:05 - 2012-03-02 15:07 - 00000000 ____D C:\users\Mama 2013-07-01 22:05 - 2012-02-19 19:15 - 00000000 ____D C:\ProgramData\Norton 2013-07-01 22:05 - 2011-07-13 22:48 - 00000000 ___AD C:\book 2013-07-01 22:05 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender 2013-07-01 22:05 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system 2013-07-01 22:04 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\registration 2013-07-01 20:48 - 2013-07-01 20:48 - 00055779 ____A C:\Users\Yannick\Desktop\Addition.txt 2013-07-01 19:49 - 2013-07-01 19:49 - 00102718 ____A C:\Users\Yannick\Desktop\Extras.Txt 2013-07-01 19:47 - 2013-07-01 19:47 - 00188512 ____A C:\Users\Yannick\Desktop\OTL.Txt 2013-07-01 19:15 - 2013-07-01 19:15 - 00000724 ____A C:\Users\Yannick\Desktop\defogger_disable.log 2013-07-01 19:15 - 2013-07-01 19:15 - 00000382 ____A C:\Users\Yannick\defogger_reenable 2013-07-01 19:00 - 2013-07-01 19:00 - 00000000 ____D C:\sh4ldr 2013-07-01 19:00 - 2013-07-01 19:00 - 00000000 ____D C:\Program Files\Enigma Software Group 2013-07-01 16:51 - 2013-07-01 16:51 - 00018808 ____A C:\Users\Yannick\Downloads\hijackthis.log 2013-06-30 22:26 - 2013-06-30 22:11 - 108752708 ____A C:\Users\Yannick\Downloads\GTA IV 1.0.7.0. (1).rar 2013-06-30 22:12 - 2013-06-30 22:12 - 00223050 ____A C:\Users\Yannick\Downloads\GTA IV - Crack only - 1.0.7.0 (Razor1911).rar 2013-06-30 21:00 - 2013-06-30 21:00 - 00000000 __SHD C:\ProgramData\SecuROM 2013-06-30 20:58 - 2013-06-30 19:10 - 00000000 ____D C:\Users\Yannick\AppData\Local\Rockstar Games 2013-06-30 20:50 - 2013-06-30 20:33 - 109388216 ____A C:\Users\Yannick\Downloads\gta4_1.0.7.0.zip 2013-06-30 20:46 - 2013-06-30 20:46 - 00303511 ____A C:\Users\Yannick\Downloads\1311984168100_GTAIV_LAZIC-NIKOLA.rar 2013-06-30 20:39 - 2013-06-15 19:12 - 00428544 __ASH C:\Users\Yannick\Downloads\Thumbs.db 2013-06-30 20:38 - 2013-06-30 20:38 - 00059820 ____A C:\Users\Yannick\Downloads\1233162148SavegameGTAIV.rar 2013-06-30 19:43 - 2013-06-30 19:43 - 00000000 ____D C:\Users\Yannick\Documents\Rockstar Games 2013-06-30 19:09 - 2013-06-30 19:08 - 02855181 ____A C:\Users\Yannick\Downloads\RealisticDriving_EFLC_13.zip 2013-06-30 18:26 - 2013-06-30 18:26 - 00000000 ____D C:\Users\Yannick\Downloads\Vehicles 2013-06-30 18:17 - 2013-06-05 21:32 - 00000000 ____D C:\Users\Yannick\Downloads\GTA.IV-ArenaBG 2013-06-30 18:13 - 2013-06-30 18:13 - 00001066 ____A C:\Users\Public\Desktop\DAEMON Tools Lite.lnk 2013-06-30 18:13 - 2013-06-30 18:13 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\DAEMON Tools 2013-06-30 18:13 - 2013-06-30 18:13 - 00000000 ____D C:\Program Files (x86)\DAEMON Tools Lite 2013-06-30 17:13 - 2013-03-02 18:12 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2013-06-30 17:02 - 2013-06-30 17:02 - 00001190 ____A C:\Users\Public\Desktop\Switch to Gaming Mode.lnk 2013-06-30 17:02 - 2013-06-30 17:02 - 00001178 ____A C:\Users\Public\Desktop\Game Booster 3.lnk 2013-06-30 17:02 - 2013-06-30 17:02 - 00000000 ____D C:\ProgramData\IObit 2013-06-30 17:02 - 2013-06-30 17:02 - 00000000 ____D C:\Program Files (x86)\IObit 2013-06-30 17:01 - 2013-06-30 17:00 - 04344120 ____A (IObit ) C:\Users\Yannick\Downloads\gb3-4-setup.exe 2013-06-30 17:00 - 2013-06-24 18:54 - 00000000 ____D C:\Users\Yannick\Desktop\Let's Plays 2013-06-30 16:59 - 2012-10-20 15:15 - 00000000 ____D C:\Users\Yannick\Documents\Euro Truck Simulator 2 2013-06-30 16:40 - 2013-06-30 16:25 - 94729627 ____A C:\Users\Yannick\Downloads\Rheinhausen V4 - Revised Edition 1 by Zane.7z 2013-06-30 16:25 - 2013-06-30 16:25 - 00001513 ____A C:\Users\Yannick\Downloads\Rheinhausen V4 - Revised Edition 1 - Hotfix.7z 2013-06-30 14:22 - 2011-09-10 22:32 - 00000000 ____D C:\Users\Yannick\Documents\BusCableCarSimulator 2013-06-30 14:18 - 2013-06-30 14:05 - 83066510 ____A C:\Users\Yannick\Downloads\BCS_Update_1_0_7_German.exe 2013-06-30 14:06 - 2013-06-30 14:06 - 00001362 ____A C:\Users\Yannick\Desktop\Bus- & Cable Car-Simulator.lnk 2013-06-30 14:03 - 2013-06-30 14:03 - 00003064 ____A C:\Users\Yannick\Downloads\d2a536_4e9f426495345.zip 2013-06-30 08:20 - 2013-06-30 08:20 - 00002255 ____A C:\Users\Yannick\Desktop\Google Chrome.lnk 2013-06-28 22:55 - 2013-06-28 22:55 - 00000000 ____D C:\Program Files (x86)\K-Lite Codec Pack 2013-06-28 22:53 - 2013-06-28 22:50 - 09049827 ____A ( ) C:\Users\Yannick\Downloads\K-Lite_Codec_Pack_995_Basic.exe 2013-06-28 22:46 - 2013-06-28 22:46 - 00001344 ____A C:\Users\Yannick\Desktop\Free YouTube Uploader.lnk 2013-06-28 22:46 - 2013-06-28 22:46 - 00001247 ____A C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk 2013-06-28 22:46 - 2013-06-25 16:13 - 00001320 ____A C:\Users\Public\Desktop\Free YouTube Uploader.lnk 2013-06-28 22:46 - 2013-06-25 16:13 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\DVDVideoSoft 2013-06-28 22:46 - 2013-06-25 16:13 - 00000000 ____D C:\Program Files (x86)\DVDVideoSoft 2013-06-28 22:44 - 2013-06-28 22:44 - 00002334 ____A C:\Users\Yannick\Desktop\Free Video to Flash Converter.lnk 2013-06-28 22:42 - 2013-06-28 22:32 - 32199568 ____A (DVDVideoSoft Ltd. ) C:\Users\Yannick\Downloads\FreeVideoToFlashConverter_5.0.26.622.exe 2013-06-28 22:42 - 2013-06-28 22:31 - 30544736 ____A (DVDVideoSoft Ltd. ) C:\Users\Yannick\Downloads\FreeYouTubeUploader-4.0.1.622 (1).exe 2013-06-28 22:29 - 2013-06-28 22:29 - 00002513 ____A C:\Users\Yannick\Downloads\sg_backup_2013-06-28-2229.spg 2013-06-28 22:29 - 2013-06-28 22:29 - 00002513 ____A C:\Users\Yannick\Downloads\FirstBackup.spg 2013-06-28 22:28 - 2013-06-28 22:27 - 00659456 ____A (Speed Guide Inc.) C:\Users\Yannick\Downloads\TCP308Optimizer.exe 2013-06-28 21:29 - 2011-07-16 18:09 - 00000000 ____D C:\Users\Yannick\Flight Simulator X-Dateien 2013-06-28 21:29 - 2011-07-14 22:33 - 00000000 ____D C:\Users\Yannick\Fotoalben 2013-06-28 14:45 - 2013-06-26 21:50 - 00011585 ____A C:\Users\Yannick\Desktop\O305_E2H_84.bus 2013-06-28 14:45 - 2013-06-26 21:50 - 00011418 ____A C:\Users\Yannick\Desktop\O305_E2H_85.bus 2013-06-28 14:38 - 2013-06-28 14:38 - 00066317 ____A C:\Users\Yannick\Downloads\Mercedes Benz O305 Stern by Chris 12.zip 2013-06-28 00:38 - 2013-06-27 22:57 - 406223635 ____A C:\Users\Yannick\Downloads\frdpq.Just.The.Best.Sommer.Hits.1990..Heute.2013.rar 2013-06-28 00:12 - 2013-06-27 23:08 - 194572800 ____A C:\Users\Yannick\Downloads\VA-Die_Ultimative_Chartshow_Die_Erfolgreichsten_Hits_2012_-2CD-2012-VOiCE.part1.rar 2013-06-27 23:52 - 2013-06-27 23:08 - 109437125 ____A C:\Users\Yannick\Downloads\VA-Die_Ultimative_Chartshow_Die_Erfolgreichsten_Hits_2012_-2CD-2012-VOiCE.part2.rar 2013-06-27 22:52 - 2013-06-27 22:51 - 04639408 ____A (hxxp://yourfiledownloader.com) C:\Users\Yannick\Downloads\va_just_the_best_sommer_hits_1990_heute_2013_downloader_de_99370.exe 2013-06-27 22:50 - 2013-06-27 22:50 - 00935354 ____A C:\Users\Yannick\Downloads\jingles4free_old_pack1 (1).rar 2013-06-27 22:46 - 2013-06-27 22:46 - 03731936 ____A C:\Users\Yannick\Downloads\Jeden Tag 24 Stunden Musik.wav 2013-06-27 22:28 - 2013-06-27 22:28 - 00935354 ____A C:\Users\Yannick\Downloads\jingles4free_old_pack1.rar 2013-06-27 22:24 - 2013-06-27 22:24 - 02467517 ____A C:\Users\Yannick\Downloads\Jingle Pake_ohne.rar 2013-06-27 22:24 - 2013-06-27 22:24 - 00292544 ____A C:\Users\Yannick\Downloads\Jingle Paket 02 ohne.rar 2013-06-27 19:58 - 2012-03-30 22:17 - 00000000 ____D C:\ProgramData\Skype 2013-06-27 19:57 - 2013-01-28 18:47 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-06-27 17:51 - 2011-10-29 21:32 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\vlc 2013-06-26 20:26 - 2013-06-26 20:05 - 138166254 ____A C:\Users\Yannick\Downloads\LiAZ_5292.20_v1.0_1.04.zip 2013-06-26 20:09 - 2013-06-26 20:03 - 02269184 ____A C:\Users\Yannick\Downloads\LiAZ_5292.20_v1.0_1.01 (4).zip 2013-06-26 19:20 - 2013-06-26 19:16 - 01187840 ____A C:\Users\Yannick\Downloads\LiAZ_5292.20_v1.0_1.01 (3).zip 2013-06-26 19:01 - 2013-06-26 18:55 - 02269184 ____A C:\Users\Yannick\Downloads\LiAZ_5292.20_v1.0_1.01 (2).zip 2013-06-26 18:54 - 2013-06-26 18:45 - 03416064 ____A C:\Users\Yannick\Downloads\LiAZ_5292.20_v1.0_1.01 (1).zip 2013-06-26 18:32 - 2013-06-26 18:19 - 05152768 ____A C:\Users\Yannick\Downloads\LiAZ_5292.20_v1.0_1.01.zip 2013-06-26 17:10 - 2013-06-26 17:05 - 27139516 ____A C:\Users\Yannick\Downloads\Baustellen Mod - Route Contruction Mod Version 2.zip 2013-06-26 17:02 - 2013-06-26 17:02 - 00943907 ____A C:\Users\Yannick\Downloads\O305_Upgrade_1-2a.rar 2013-06-25 20:23 - 2012-12-27 17:32 - 00001186 ____A C:\Users\Public\Desktop\Aerosoft Launcher.lnk 2013-06-25 20:19 - 2013-06-25 19:37 - 222373257 ____A C:\Users\Yannick\Downloads\AS_OMSI-ADDON-STADTBUS-O305.zip 2013-06-25 19:52 - 2013-06-25 19:52 - 00025358 ____A C:\Users\Yannick\Downloads\Rollb--nder_Freyfurt_2013-NEW.rar 2013-06-25 19:48 - 2013-06-25 19:41 - 25139979 ____A C:\Users\Yannick\Downloads\Velbert 2.0.ams 2013-06-25 16:06 - 2013-06-25 15:57 - 30544736 ____A (DVDVideoSoft Ltd. ) C:\Users\Yannick\Downloads\FreeYouTubeUploader-4.0.1.622.exe 2013-06-24 22:20 - 2012-07-23 20:29 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\.minecraft 2013-06-24 21:58 - 2012-06-11 19:06 - 00000000 ____D C:\Users\Yannick\Documents\GTA San Andreas User Files 2013-06-24 21:30 - 2013-02-12 20:09 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\Audacity 2013-06-24 21:27 - 2013-06-24 21:08 - 2024523328 ____A C:\Users\Yannick\Desktop\eurotrucks2 2013-06-24 21-08-35-07.avi 2013-06-24 12:03 - 2013-06-25 20:20 - 224736688 ____A (Acresso Software Inc. ) C:\Users\Yannick\Desktop\AS_OMSI-ADDON-STADTBUS-O305_V100.exe 2013-06-24 00:28 - 2013-06-24 00:21 - 00168816 ____A C:\Users\Yannick\Downloads\Spark-0.9.2018.zip 2013-06-24 00:22 - 2013-06-24 00:22 - 00000095 ____A C:\Users\Yannick\AppData\Local\fusioncache.dat 2013-06-24 00:20 - 2013-06-24 00:20 - 01987454 ____A C:\Users\Yannick\Downloads\FIX_PATCH_0.5_Biohazard_Alert.rar 2013-06-24 00:19 - 2013-06-24 00:19 - 68677729 ____A C:\Users\Yannick\Downloads\BioHazard_Alert_REMAKE.rar.crdownload 2013-06-23 23:55 - 2013-06-23 23:55 - 00001409 ____A C:\Windows\QTFont.for 2013-06-23 23:54 - 2013-06-23 23:47 - 00002296 ____A C:\Users\Yannick\Desktop\gta_sa.lnk 2013-06-23 23:47 - 2013-06-23 23:46 - 00000000 ____D C:\Program Files (x86)\GTA BioHazard Alert REMAKE 2013-06-23 23:43 - 2013-03-15 19:13 - 00000000 ____D C:\Users\Yannick\Desktop\Utils 2013-06-23 23:42 - 2013-02-12 21:09 - 00000000 ____D C:\Users\Yannick\Desktop\Neuer Ordner 2013-06-23 22:22 - 2013-06-23 22:22 - 00001885 ____A C:\Users\Yannick\Downloads\1118267588_chaosmod1.zip 2013-06-23 22:05 - 2013-06-23 22:05 - 00001827 ____A C:\Users\Yannick\Desktop\GAMI.lnk 2013-06-23 22:05 - 2013-06-23 22:05 - 00001827 ____A C:\Users\UpdatusUser.KARTOFFELBREI.000\Desktop\GAMI.lnk 2013-06-23 22:05 - 2013-06-23 22:05 - 00001827 ____A C:\Users\Mama\Desktop\GAMI.lnk 2013-06-23 22:05 - 2013-06-23 22:05 - 00001827 ____A C:\Users\Gast\Desktop\GAMI.lnk 2013-06-23 22:05 - 2013-06-23 22:05 - 00000000 ____D C:\Program Files (x86)\GAMI 2013-06-23 22:03 - 2013-06-23 22:02 - 02078885 ____A C:\Users\Yannick\Downloads\4303_gami_installer1_8_2[gta-scene.de].rar 2013-06-23 21:59 - 2013-06-23 21:54 - 38445633 ____A C:\Users\Yannick\Downloads\gtaberlin0710 (1).rar 2013-06-23 21:50 - 2013-06-23 21:45 - 38445633 ____A C:\Users\Yannick\Downloads\gtaberlin0710.rar 2013-06-23 20:13 - 2013-06-23 20:13 - 00000184 ____A C:\Users\Yannick\Downloads\stream (7).asx 2013-06-23 15:25 - 2013-06-23 14:52 - 239791672 ____A C:\Users\Yannick\Downloads\Landkreis Glesien.rar 2013-06-22 15:38 - 2013-06-21 17:39 - 101805455 ____A C:\Users\Yannick\Downloads\Tiefenbach_2.4_(Hauptordner).rar 2013-06-22 15:20 - 2013-06-22 14:27 - 190823623 ____A C:\Users\Yannick\Downloads\Kolp.zip 2013-06-22 15:13 - 2013-06-22 14:39 - 110526126 ____A C:\Users\Yannick\Downloads\BMO Objekte.rar 2013-06-22 15:03 - 2013-06-22 11:18 - 765615036 ____A C:\Users\Yannick\Downloads\Sceneryobjectspack.rar 2013-06-22 14:36 - 2013-06-22 11:23 - 00207181 ____A C:\Users\Yannick\Downloads\15390 (1).rar 2013-06-22 14:31 - 2013-06-22 14:28 - 06745807 ____A C:\Users\Yannick\Downloads\Woelchen_90-Objekte.rar 2013-06-22 14:29 - 2013-06-22 14:29 - 00531144 ____A C:\Users\Yannick\Downloads\0_5e0_1a2b0_1a_c.zip 2013-06-22 14:06 - 2013-06-22 11:37 - 364198563 ____A C:\Users\Yannick\Downloads\Tiefenbach_2.0_%28Objekte%29.rar 2013-06-22 12:22 - 2013-06-22 11:31 - 137991029 ____A C:\Users\Yannick\Downloads\TB-Fellen.zip 2013-06-22 11:30 - 2013-06-22 11:27 - 08403178 ____A C:\Users\Yannick\Downloads\OMV by CMVC.rar 2013-06-22 11:23 - 2013-06-22 11:22 - 02439394 ____A C:\Users\Yannick\Downloads\Litfass.rar 2013-06-22 11:00 - 2013-06-22 11:00 - 00286139 ____A C:\Users\Yannick\Downloads\OMSI-Modloader-alpha.zip 2013-06-21 18:26 - 2013-06-21 17:40 - 208398704 ____A C:\Users\Yannick\Downloads\Lichtenberg.zip 2013-06-21 16:46 - 2011-12-25 22:25 - 00156230 ____A C:\ProgramData\lxeascan.log 2013-06-20 16:08 - 2013-06-20 15:55 - 30448084 ____A C:\Users\Yannick\Downloads\MAZ_107.7z 2013-06-20 16:06 - 2013-06-20 15:54 - 54937823 ____A C:\Users\Yannick\Downloads\???-52078 ????.rar 2013-06-20 16:01 - 2013-06-20 16:01 - 00024439 ____A C:\Users\Yannick\Downloads\Volganin Patch by Chris 12.zip 2013-06-19 20:47 - 2013-06-18 21:01 - 00000000 ____D C:\Users\Yannick\Desktop\Neuer Ordner (3) 2013-06-19 18:31 - 2013-02-23 16:06 - 00000000 ____D C:\Windows\System32\Drivers\NISx64 2013-06-19 18:30 - 2013-02-23 16:07 - 00002505 ____A C:\Users\Public\Desktop\Norton Internet Security.lnk 2013-06-19 18:29 - 2009-07-14 07:08 - 00032632 ____A C:\Windows\Tasks\SCHEDLGU.TXT 2013-06-19 14:17 - 2013-02-23 16:07 - 00177312 ____A (Symantec Corporation) C:\Windows\System32\Drivers\SYMEVENT64x86.SYS 2013-06-19 14:17 - 2013-02-23 16:07 - 00007631 ____A C:\Windows\System32\Drivers\SYMEVENT64x86.CAT 2013-06-18 20:30 - 2013-06-18 20:02 - 69876567 ____A C:\Users\Yannick\Downloads\LAZ_LF_12_CityLaz.zip 2013-06-18 20:27 - 2013-06-18 20:02 - 45757780 ____A C:\Users\Yannick\Downloads\Volganin.rar 2013-06-18 20:17 - 2013-06-18 19:57 - 85152521 ____A C:\Users\Yannick\Downloads\Ikarus_263_1DTF_Editon_v1.rar 2013-06-18 20:15 - 2013-06-18 20:15 - 00000134 ____A C:\Users\Yannick\Desktop\RMV.cti 2013-06-18 17:09 - 2011-12-25 22:33 - 00000000 ____D C:\ProgramData\Lx_cats 2013-06-17 22:37 - 2013-02-19 21:31 - 00083481 ____A C:\Users\Yannick\Desktop\Träume.sbp 2013-06-17 22:32 - 2013-03-17 12:58 - 00000000 ____D C:\Users\Yannick\Desktop\Bilder Praktikum 2013-06-17 22:23 - 2013-04-08 18:42 - 00000000 ____D C:\Users\Yannick\Desktop\Schule 2013-06-17 22:00 - 2012-12-07 18:55 - 00000000 ____D C:\Users\Yannick\AppData\Local\Deployment 2013-06-17 21:47 - 2013-06-17 21:47 - 00644507 ____A C:\Users\Yannick\Downloads\4F6C6C69.rar 2013-06-17 19:02 - 2013-06-17 19:02 - 00147968 __ASH C:\Users\Yannick\Documents\Thumbs.db 2013-06-17 15:54 - 2009-09-03 11:28 - 00000000 ____D C:\Windows\Panther 2013-06-16 19:24 - 2013-06-16 19:24 - 01378096 ____A C:\Users\Yannick\Downloads\Sommer-Mod-by-bluescreen-V2_0.zip 2013-06-16 19:24 - 2013-06-16 19:24 - 00758716 ____A C:\Users\Yannick\Downloads\Berliner-HOF-komplett.zip 2013-06-15 23:02 - 2013-06-15 23:02 - 00097946 ____A C:\Users\Yannick\Downloads\TooManyItems 1.5.2.zip 2013-06-15 22:19 - 2013-06-15 22:19 - 00000000 ____D C:\Program Files (x86)\d-lusion 2013-06-15 22:18 - 2013-06-15 22:17 - 05108087 ____A C:\Users\Yannick\Downloads\drumstation.exe 2013-06-15 22:18 - 2013-06-15 22:17 - 02515817 ____A C:\Users\Yannick\Downloads\drumtronic_setup.exe 2013-06-15 22:10 - 2013-06-15 22:04 - 07720271 ____A C:\Users\Yannick\Downloads\WBB 3.1.2&3.1.7.rar 2013-06-15 21:23 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2013-06-15 19:12 - 2013-06-02 17:18 - 00000000 ____D C:\Users\Yannick\Downloads\The.Sims.2.Open.For.Business - RELOADED 2013-06-15 19:12 - 2013-04-28 16:50 - 00000000 ____D C:\Users\Yannick\Downloads\GMX-Toolbar 2013-06-15 19:12 - 2013-02-23 23:58 - 00000000 ____D C:\Users\Yannick\Downloads\Manga 2013-06-15 19:12 - 2013-01-10 23:38 - 00000000 ____D C:\Users\Yannick\Downloads\me 2013-06-15 19:12 - 2013-01-03 21:42 - 00000000 ____D C:\Users\Yannick\Downloads\Neuer Ordner 2013-06-15 16:21 - 2013-03-16 21:53 - 00000000 ____D C:\Users\Yannick\Desktop\Zetsubou School 2013-06-15 16:20 - 2013-03-17 01:03 - 00000000 ____D C:\Users\Yannick\Desktop\Messiah-FLT 2013-06-15 16:20 - 2013-03-02 20:24 - 00000000 ____D C:\Users\Yannick\Desktop\Sam 2013-06-15 16:19 - 2013-06-15 16:19 - 00000000 ____A C:\Windows\setuperr.log 2013-06-15 01:22 - 2013-06-15 00:34 - 151175758 ____A C:\Users\Yannick\Downloads\world1 (3).zip 2013-06-15 01:10 - 2013-06-15 00:38 - 57354316 ____A C:\Users\Yannick\Downloads\world1 (4).zip 2013-06-15 01:02 - 2013-06-15 00:28 - 57681030 ____A C:\Users\Yannick\Downloads\world2.rar 2013-06-15 01:01 - 2013-06-15 00:27 - 51251653 ____A C:\Users\Yannick\Downloads\world1.zip 2013-06-15 00:47 - 2013-06-15 00:27 - 28980821 ____A C:\Users\Yannick\Downloads\world1 (1).zip 2013-06-15 00:37 - 2013-06-15 00:33 - 03903215 ____A C:\Users\Yannick\Downloads\world1 (2).zip 2013-06-15 00:21 - 2013-06-15 00:18 - 06862206 ____A C:\Users\Yannick\Downloads\Revenge Of The Gods.rar 2013-06-14 23:03 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\Help 2013-06-14 23:01 - 2013-04-16 16:11 - 00000000 ____D C:\Users\Yannick\Documents\BS MANGA 2013-06-14 13:16 - 2011-07-15 02:05 - 75825640 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe 2013-06-14 11:18 - 2012-06-27 10:28 - 00692104 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-06-14 11:18 - 2011-10-27 19:53 - 00071048 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-06-08 16:08 - 2013-06-16 23:48 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2013-06-08 16:07 - 2013-06-16 23:47 - 19233792 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2013-06-08 16:06 - 2013-06-16 23:48 - 15404544 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2013-06-08 16:06 - 2013-06-16 23:48 - 02648064 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2013-06-08 16:06 - 2013-06-16 23:48 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll 2013-06-08 14:28 - 2013-06-16 23:48 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2013-06-08 13:42 - 2013-06-16 23:48 - 01141248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-06-08 13:40 - 2013-06-16 23:48 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-06-08 13:40 - 2013-06-16 23:48 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-06-08 13:40 - 2013-06-16 23:48 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-06-08 13:40 - 2013-06-16 23:47 - 14327808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-06-08 13:13 - 2013-06-16 23:48 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-06-06 21:27 - 2013-06-06 21:27 - 04475563 ____A C:\Users\Yannick\Downloads\Ebstein 0.891.zip 2013-06-06 20:34 - 2013-06-04 21:32 - 00000000 ____D C:\Users\Yannick\Desktop\world 2013-06-06 17:41 - 2013-06-06 17:39 - 12032865 ____A C:\Users\Yannick\Downloads\Bukkit Server [1.5.2].zip 2013-06-05 23:04 - 2013-06-05 22:29 - 123634770 ____A C:\Users\Yannick\Downloads\Imperialcity_v13.1.rar 2013-06-05 22:56 - 2013-06-05 22:30 - 53558505 ____A C:\Users\Yannick\Downloads\Hillside Manor-1.5.zip 2013-06-05 22:35 - 2013-06-05 22:30 - 07502298 ____A C:\Users\Yannick\Downloads\World1 - Lumina Nocturnale.rar 2013-06-05 22:20 - 2013-06-05 22:19 - 06366749 ____A C:\Users\Yannick\Downloads\Kölner Dom 1.2.5.rar 2013-06-05 21:56 - 2013-06-05 21:55 - 00000000 ____D C:\Users\Yannick\AppData\Local\Facebook 2013-06-05 21:54 - 2013-06-05 21:54 - 00501248 ____A (Facebook Inc.) C:\Users\Yannick\Downloads\FacebookVideoCallSetup_v1.2.205.0.exe 2013-06-05 21:31 - 2013-06-05 21:31 - 00144742 ____A C:\Users\Yannick\Downloads\Grand Theft Auto 4 (GTA 4) [rahultorrents] - PC [h33t].torrent 2013-06-05 19:29 - 2013-06-05 19:27 - 12533832 ____A C:\Users\Yannick\Downloads\craftbukkit-1.4.7-R1.0.jar 2013-06-05 18:38 - 2013-06-05 18:37 - 09835921 ____A C:\Users\Yannick\Desktop\world.rar 2013-06-05 17:20 - 2013-06-05 17:20 - 00000000 ____D C:\ProgramData\ATI 2013-06-05 17:20 - 2013-06-05 17:20 - 00000000 ____D C:\Program Files (x86)\AMD AVT 2013-06-05 17:20 - 2013-05-22 15:26 - 00000000 ____D C:\ProgramData\AMD 2013-06-05 17:19 - 2013-05-22 15:23 - 00000000 ____D C:\Program Files\ATI Technologies 2013-06-05 17:15 - 2013-06-05 17:15 - 00000000 ____D C:\AMD ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-07-03 18:40 ==================== End Of Log ============================ |
05.07.2013, 17:14 | #22 |
/// the machine /// TB-Ausbilder | Trojan.Zeroacces!inf 4 Wie bekomme ich ihn weg?ESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Trojan.Zeroacces!inf 4 Wie bekomme ich ihn weg? |
abgesicherte, abgesicherten, abgesicherten modus, angezeigt, desktop, gestern, helft, heute, maus, modus, normale, normalen, norton, problem, schlägt, sitze, stunde, stunden, system.exe, troja, virus |