|
Plagegeister aller Art und deren Bekämpfung: Wie bekämpfe ich Spy Hunter und Delta Search?Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
21.07.2013, 08:27 | #1 |
| Wie bekämpfe ich Spy Hunter und Delta Search? Hallo, ich bin neu hier und muss vorab sagen, dass ich kein PC Genie bin, nichts programmieren kann o.ä. Mein Wissen beschränkt sich wirklich nur auf die "normalen" PC Kenntnisse, Logfiles & Co sind für mich böhmische Dörfer, bin aber lernfähig ;-) und hoffe, dass ihr mir trotzdem helfen könnt. Als ich vorgestern im Internet unterwegs war, fiel mir auf einmal dieses Fenster mit "Fehler beim laden, Player neu installieren" auf. Habe mir erst nichts dabei gedacht, aber dann wurde es nervig. Im Internet geschaut und auf einer Microsoft Seite wurde Spy Hunter empfohlen... super Idee. Nun habe ich beide Quälgeister. Habe Spy Hunter deinstalliert, aber trotzdem geht hin und wieder ein Fenster auf mit der Warnung zig Viren usw. Was muss ich tun, damit mein PC (Toshiba Laptop) wieder "rein" ist? LG Diana Habe ganz vergessen: habe Avira und Spybot auf dem PC und beide haben nichts gebracht bei der Bekämpfung. |
21.07.2013, 09:26 | #2 |
/// the machine /// TB-Ausbilder | Wie bekämpfe ich Spy Hunter und Delta Search? Hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
21.07.2013, 11:33 | #3 |
| Wie bekämpfe ich Spy Hunter und Delta Search? FRST Logfile:
__________________FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 19-07-2013 Ran by Schneball (administrator) on 21-07-2013 10:36:18 Running from C:\Users\Schneball\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\system32\atiesrxx.exe (AMD) C:\Windows\system32\atieclxx.exe () C:\Windows\System32\GFNEXSrv.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (TOSHIBA Corporation) C:\Windows\system32\TODDSrv.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\TecoService.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe (TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe (Nero AG) c:\Program Files (x86)\Nero\Update\NASvc.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe (Toshiba Europe GmbH) C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\Teco.exe (TOSHIBA) C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\TOPI.exe (Nokia) C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe (Toshiba) C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIMonitor.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (TOSHIBA Corporation) C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe (Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Nokia) C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe (TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe (TOSHIBA Corporation) C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclUSBSrv64.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [TosNC] - C:\Program Files\Toshiba\BulletinBoard\TosNcCore.exe [597928 2011-03-03] (TOSHIBA Corporation) HKLM\...\Run: [TosReelTimeMonitor] - C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe [38304 2011-03-30] (TOSHIBA Corporation) HKLM\...\Run: [Toshiba TEMPRO] - C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe [1546720 2011-02-10] (Toshiba Europe GmbH) HKLM\...\Run: [TPwrMain] - C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [566696 2011-03-02] (TOSHIBA Corporation) HKLM\...\Run: [HSON] - C:\Program Files\TOSHIBA\TBS\HSON.exe [296824 2010-09-25] (TOSHIBA Corporation) HKLM\...\Run: [TCrdMain] - C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [967544 2011-03-09] (TOSHIBA Corporation) HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11775592 2011-01-12] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2186856 2011-01-10] (Realtek Semiconductor) HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2679592 2011-02-03] (Synaptics Incorporated) HKLM\...\Run: [Teco] - C:\Program Files\TOSHIBA\TECO\Teco.exe [1544104 2011-04-07] (TOSHIBA Corporation) HKLM\...\Run: [TosSENotify] - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [710040 2010-12-08] (TOSHIBA Corporation) HKLM\...\Run: [TosWaitSrv] - C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [711576 2011-04-05] (TOSHIBA Corporation) HKLM\...\Run: [TosVolRegulator] - C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe [24376 2009-11-11] (TOSHIBA Corporation) HKLM\...\Run: [Toshiba Registration] - C:\Program Files\TOSHIBA\Registration\ToshibaReminder.exe [150992 2011-08-01] (Toshiba Europe GmbH) HKCU\...\Run: [TOPI.EXE] - C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe [846936 2011-05-16] (TOSHIBA) HKCU\...\Run: [] - [x] HKCU\...\Run: [NokiaSuite.exe] - C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe [1090040 2012-12-21] (Nokia) HKCU\...\Run: [Spybot-S&D Cleaning] - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [3642312 2013-05-16] (Safer-Networking Ltd.) HKLM-x32\...\Run: [NBAgent] - "c:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart [1409424 2011-06-29] (Nero AG) HKLM-x32\...\Run: [StartCCC] - "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun [336384 2011-04-20] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [TSleepSrv] - %ProgramFiles(x86)%\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe [x] HKLM-x32\...\Run: [ToshibaServiceStation] - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe /hide:60 [1294712 2010-11-29] (TOSHIBA Corporation) HKLM-x32\...\Run: [APSDaemon] - "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59240 2011-11-02] (Apple Inc.) HKLM-x32\...\Run: [PDFPrint] - C:\Program Files (x86)\PDF24\pdf24.exe [163000 2012-12-12] (Geek Software GmbH) HKLM-x32\...\Run: [avgnt] - "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min [345144 2013-06-27] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [SunJavaUpdateSched] - "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [253816 2013-03-12] (Oracle Corporation) HKLM-x32\...\Run: [Adobe ARM] - "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [958576 2013-05-11] (Adobe Systems Incorporated) HKLM-x32\...\Run: [SDTray] - "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" [3830224 2013-05-16] (Safer-Networking Ltd.) HKU\Default\...\Run: [TOPI.EXE] - C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STAR [846936 2011-05-16] (TOSHIBA) HKU\Default User\...\Run: [TOPI.EXE] - C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STAR [846936 2011-05-16] (TOSHIBA) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Toshiba Places Icon Utility.lnk ShortcutTarget: Toshiba Places Icon Utility.lnk -> C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIMonitor.exe (Toshiba) Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe) Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe) BootExecute: autocheck autochk * sdnclean64.exe ==================== Internet (Whitelisted) ==================== ProxyServer: localhost:21320 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com SearchScopes: HKCU - {4327FABE-3C22-4689-8DBF-D226CF777FE9} URL = hxxp://www.searchplusnetwork.com/?sp=vit4&q={searchTerms} BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: LyricsContainer - {463B0ED4-8AFA-404B-90E7-4063A0708050} - C:\Program Files (x86)\LyricsContainer\120.dll No File BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll (Microsoft Corporation) BHO-x32: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: TOSHIBA Media Controller Plug-in - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll (<TOSHIBA>) Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.) Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.) Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.) Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.) Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.) Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Chrome: ======= CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-06-27] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-06-27] (Avira Operations GmbH & Co. KG) R2 GFNEXSrv; C:\Windows\System32\GFNEXSrv.exe [162824 2010-09-09] () R2 McAfee SiteAdvisor Service; c:\PROGRA~2\mcafee\SITEAD~1\McSACore.exe [120592 2013-05-22] (McAfee, Inc.) R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1817560 2013-05-16] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1033688 2013-05-16] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2013-05-15] (Safer-Networking Ltd.) S3 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [112080 2011-02-10] (Toshiba Europe GmbH) ==================== Drivers (Whitelisted) ==================== R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [100712 2013-03-30] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [130016 2013-03-30] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-03-30] (Avira Operations GmbH & Co. KG) S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x] S3 TDEIO; \??\c:\Windows\SysWOW64\sysprep\Bootprio\tdeio64.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-07-21 10:36 - 2013-07-21 10:36 - 00000000 ____D C:\FRST 2013-07-21 10:35 - 2013-07-21 10:35 - 01779345 _____ (Farbar) C:\Users\Schneball\Downloads\FRST64.exe 2013-07-21 09:03 - 2013-07-21 09:03 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{0827DFEF-44CE-46E5-80D1-71391EF12D51} 2013-07-20 13:33 - 2013-07-20 13:33 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{4F763048-97A7-4592-BC08-794BE95F4872} 2013-07-20 07:41 - 2013-07-20 07:41 - 00000000 _____ C:\autoexec.bat 2013-07-20 07:40 - 2013-07-20 07:40 - 00000000 ____D C:\Program Files\Enigma Software Group 2013-07-20 07:39 - 2013-07-20 14:20 - 00000000 ____D C:\Windows\8AE3CFB678B24F55A7BE618FCFF43A03.TMP 2013-07-20 07:38 - 2013-07-20 07:38 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\Schneball\Downloads\SpyHunter-Installer (1).exe 2013-07-19 12:15 - 2013-07-19 12:18 - 00003652 _____ C:\Windows\wininit.ini 2013-07-19 10:21 - 2013-07-19 12:19 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2013-07-19 10:21 - 2013-07-19 10:21 - 00001390 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2013-07-19 10:21 - 2013-07-19 10:21 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking 2013-07-19 10:20 - 2013-07-19 10:30 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2013-07-19 10:20 - 2009-01-25 13:14 - 00017272 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe 2013-07-19 10:19 - 2013-07-19 10:20 - 36271144 _____ (Safer-Networking Ltd. ) C:\Users\Schneball\Downloads\spybot-2.1.exe 2013-07-19 10:18 - 2013-07-19 10:18 - 01624136 _____ (Bandoo Media Inc) C:\Users\Schneball\Downloads\iLividSetup-r394-n-bc.exe 2013-07-19 07:38 - 2013-07-19 07:38 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{FAE227F2-332F-441D-AE33-1A9418EEE8CA} 2013-07-18 18:32 - 2013-07-18 18:32 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{213AA2E3-A9CF-4B33-A87E-82ECB31CAFEC} 2013-07-18 18:25 - 2013-07-18 18:25 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{8F095D3B-8869-4217-93CA-4F17703ED375} 2013-07-18 13:37 - 2013-07-18 13:37 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{23ED01D4-EB87-468B-8E82-21BA22749A4A} 2013-07-17 18:39 - 2013-07-17 18:40 - 02828552 _____ (AVAST Software) C:\Users\Schneball\Downloads\avast-browser-cleanup_8.0.1484.29.exe 2013-07-17 18:35 - 2013-07-17 18:35 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\Schneball\Downloads\SpyHunter-Installer.exe 2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Windows\SysWOW64\searchplugins 2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Windows\SysWOW64\Extensions 2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-07-17 18:10 - 2013-07-17 18:10 - 00283160 _____ C:\Users\Schneball\Downloads\Setup (2).exe 2013-07-17 18:10 - 2013-07-17 18:10 - 00283160 _____ C:\Users\Schneball\Downloads\Setup (1).exe 2013-07-17 18:06 - 2013-07-17 18:06 - 00283160 _____ C:\Users\Schneball\Downloads\Setup.exe 2013-07-17 07:34 - 2013-07-17 07:35 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{E4535409-5BB5-4AB6-BC35-56515CEEDB5F} 2013-07-16 10:41 - 2013-07-16 10:41 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{3C5B896A-9757-4034-AFC6-EC7230344E3A} 2013-07-15 20:46 - 2013-07-15 20:46 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{2ED72EED-B589-4E9B-BBDE-8FBEE72040F8} 2013-07-15 07:26 - 2013-07-15 07:26 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{715F5D3A-9D81-49C6-8639-ECFCB5651BF8} 2013-07-14 20:57 - 2013-07-14 20:57 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{E385478B-6D89-43EB-841A-BF4895777136} 2013-07-14 07:53 - 2013-07-14 07:53 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{E44EEDCF-2757-4EE1-9980-7B3D1084E143} 2013-07-13 06:50 - 2013-06-12 01:43 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-07-13 06:50 - 2013-06-12 01:43 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-07-13 06:50 - 2013-06-12 01:43 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-07-13 06:50 - 2013-06-12 01:42 - 02046976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-07-13 06:50 - 2013-06-12 01:42 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-07-13 06:50 - 2013-06-12 01:42 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-07-13 06:50 - 2013-06-12 01:42 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-07-13 06:50 - 2013-06-12 01:42 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-07-13 06:50 - 2013-06-12 01:26 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-07-13 06:50 - 2013-06-12 01:25 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-07-13 06:50 - 2013-06-12 01:25 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-07-13 06:50 - 2013-06-12 01:25 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-07-13 06:50 - 2013-06-12 01:25 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-07-13 06:50 - 2013-06-12 01:25 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-07-13 06:50 - 2013-06-12 01:25 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-07-13 06:50 - 2013-06-12 01:25 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-07-13 06:50 - 2013-06-12 01:25 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-07-13 06:50 - 2013-06-12 00:51 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-07-13 06:50 - 2013-06-12 00:50 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-07-13 06:50 - 2013-06-07 05:22 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-07-13 06:50 - 2013-06-07 04:37 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-07-13 06:49 - 2013-06-12 01:43 - 14329856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-07-13 06:49 - 2013-06-12 01:43 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-07-13 06:49 - 2013-06-12 01:43 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-07-13 06:49 - 2013-06-12 01:43 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-07-13 06:49 - 2013-06-12 01:42 - 13760512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-07-13 06:49 - 2013-06-12 01:26 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-07-13 06:49 - 2013-06-12 01:26 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-07-13 06:49 - 2013-06-12 01:25 - 19238912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-07-13 06:49 - 2013-06-12 01:25 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-07-13 06:49 - 2013-06-12 01:25 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-07-12 17:13 - 2013-07-12 17:14 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{329285EC-4108-420C-BD86-EDE1D1DE299D} 2013-07-12 07:15 - 2013-06-05 05:34 - 03153920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-07-12 07:15 - 2013-06-04 08:00 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2013-07-12 07:15 - 2013-06-04 06:53 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2013-07-12 07:15 - 2013-05-06 08:03 - 01887744 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2013-07-12 07:15 - 2013-05-06 06:56 - 01620480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2013-07-12 07:14 - 2013-04-10 01:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2013-07-12 07:14 - 2013-04-03 00:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2013-07-11 18:48 - 2013-07-11 18:48 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{6CEA7E80-1E8E-4BFE-8AC9-3A42CA1A8444} 2013-07-10 19:22 - 2013-07-10 19:22 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{29DC684E-AA35-4954-8110-0C10D49413C7} 2013-07-09 20:01 - 2013-07-09 20:01 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{FFB2C419-C238-4880-8A70-487B2DB31366} 2013-07-08 07:11 - 2013-07-08 07:11 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{902A4874-2722-46FD-BEB5-309A019046A4} 2013-07-06 14:35 - 2013-07-06 14:35 - 00029137 _____ C:\Users\Schneball\Downloads\eBayISAPI (3).gz 2013-07-06 14:35 - 2013-07-06 14:35 - 00029119 _____ C:\Users\Schneball\Downloads\eBayISAPI (4).gz 2013-07-04 12:26 - 2013-07-04 12:26 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{C46A6931-D793-4CA0-83ED-9A3E8E9BCDF5} 2013-07-04 12:24 - 2013-07-04 12:24 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{2933BAC2-E257-4F83-80EA-7D0E89B7E6B0} 2013-07-02 18:27 - 2013-07-02 18:27 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{72B7CF76-96EF-4D81-8513-5F3F07AA5446} 2013-07-01 08:44 - 2013-07-01 08:44 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{0E291496-2066-4486-BC8B-F9F763C1F66F} 2013-06-30 10:14 - 2013-06-30 10:14 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{5AC1FEC2-8921-4228-AECB-480360C6E5AB} 2013-06-27 13:17 - 2013-06-27 13:18 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{7D1E9546-AC11-45F4-9C9E-6B834698CBA3} 2013-06-27 09:51 - 2013-06-27 09:51 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{408D87FD-B2B3-43F7-8B85-544B921BF84F} 2013-06-26 16:10 - 2013-06-26 16:11 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{136AE38C-92AA-4458-9EE3-1EF099318131} 2013-06-25 10:08 - 2013-06-25 10:08 - 00202234 _____ C:\Users\Schneball\Downloads\fax (7).tif 2013-06-25 09:47 - 2013-06-25 09:47 - 00202888 _____ C:\Users\Schneball\Downloads\fax (6).tif 2013-06-25 08:25 - 2013-06-25 08:26 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{33758960-BCAF-47A9-8F29-4AF537CC74D6} 2013-06-24 17:08 - 2013-06-24 17:08 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{2BF4CD7B-8247-4502-A933-1BD33CC3D347} 2013-06-23 19:52 - 2013-06-23 19:52 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{9DF9A6BD-36DE-4B1B-AB7F-D8D3E7FE2BD5} ==================== One Month Modified Files and Folders ======= 2013-07-21 10:36 - 2013-07-21 10:36 - 00000000 ____D C:\FRST 2013-07-21 10:35 - 2013-07-21 10:35 - 01779345 _____ (Farbar) C:\Users\Schneball\Downloads\FRST64.exe 2013-07-21 10:31 - 2013-06-16 09:23 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-07-21 10:31 - 2011-08-01 13:10 - 00001124 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-07-21 09:30 - 2011-08-01 13:10 - 00000000 ____D C:\Program Files (x86)\Google 2013-07-21 09:28 - 2011-12-25 12:16 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\Google 2013-07-21 09:28 - 2011-08-01 13:10 - 00000000 ____D C:\ProgramData\Google 2013-07-21 09:25 - 2012-07-26 20:23 - 00000000 ____D C:\Users\Schneball\AppData\Roaming\BrowserCompanion 2013-07-21 09:25 - 2012-07-26 20:22 - 00000000 ____D C:\Program Files (x86)\BrowserCompanion 2013-07-21 09:25 - 2011-12-25 10:40 - 00000000 ___RD C:\Users\Schneball\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-07-21 09:17 - 2012-04-08 22:12 - 00003970 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{293B7530-1DF2-4F3C-8BCF-32E681E5FE98} 2013-07-21 09:03 - 2013-07-21 09:03 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{0827DFEF-44CE-46E5-80D1-71391EF12D51} 2013-07-21 08:49 - 2009-07-14 06:45 - 00025120 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-07-21 08:49 - 2009-07-14 06:45 - 00025120 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-07-21 08:47 - 2011-02-11 10:21 - 00654400 _____ C:\Windows\system32\perfh007.dat 2013-07-21 08:47 - 2011-02-11 10:21 - 00130240 _____ C:\Windows\system32\perfc007.dat 2013-07-21 08:47 - 2009-07-14 07:13 - 01498742 _____ C:\Windows\system32\PerfStringBackup.INI 2013-07-21 08:46 - 2011-11-17 08:40 - 01908464 _____ C:\Windows\WindowsUpdate.log 2013-07-21 08:45 - 2011-08-01 13:10 - 00001120 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-07-21 08:42 - 2012-12-28 09:32 - 00023321 _____ C:\Windows\setupact.log 2013-07-21 08:42 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-07-20 14:20 - 2013-07-20 07:39 - 00000000 ____D C:\Windows\8AE3CFB678B24F55A7BE618FCFF43A03.TMP 2013-07-20 14:20 - 2011-12-25 13:52 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\Windows Live 2013-07-20 13:33 - 2013-07-20 13:33 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{4F763048-97A7-4592-BC08-794BE95F4872} 2013-07-20 07:55 - 2011-12-25 11:51 - 00002087 _____ C:\Users\Public\Desktop\Toshiba-Garantieregistrierung.lnk 2013-07-20 07:41 - 2013-07-20 07:41 - 00000000 _____ C:\autoexec.bat 2013-07-20 07:40 - 2013-07-20 07:40 - 00000000 ____D C:\Program Files\Enigma Software Group 2013-07-20 07:38 - 2013-07-20 07:38 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\Schneball\Downloads\SpyHunter-Installer (1).exe 2013-07-19 14:16 - 2010-11-21 05:47 - 00161060 _____ C:\Windows\PFRO.log 2013-07-19 12:19 - 2013-07-19 10:21 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2013-07-19 12:18 - 2013-07-19 12:15 - 00003652 _____ C:\Windows\wininit.ini 2013-07-19 10:30 - 2013-07-19 10:20 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2013-07-19 10:21 - 2013-07-19 10:21 - 00001390 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2013-07-19 10:21 - 2013-07-19 10:21 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking 2013-07-19 10:20 - 2013-07-19 10:19 - 36271144 _____ (Safer-Networking Ltd. ) C:\Users\Schneball\Downloads\spybot-2.1.exe 2013-07-19 10:18 - 2013-07-19 10:18 - 01624136 _____ (Bandoo Media Inc) C:\Users\Schneball\Downloads\iLividSetup-r394-n-bc.exe 2013-07-19 07:38 - 2013-07-19 07:38 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{FAE227F2-332F-441D-AE33-1A9418EEE8CA} 2013-07-18 18:32 - 2013-07-18 18:32 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{213AA2E3-A9CF-4B33-A87E-82ECB31CAFEC} 2013-07-18 18:25 - 2013-07-18 18:25 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{8F095D3B-8869-4217-93CA-4F17703ED375} 2013-07-18 13:37 - 2013-07-18 13:37 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{23ED01D4-EB87-468B-8E82-21BA22749A4A} 2013-07-17 18:40 - 2013-07-17 18:39 - 02828552 _____ (AVAST Software) C:\Users\Schneball\Downloads\avast-browser-cleanup_8.0.1484.29.exe 2013-07-17 18:40 - 2013-03-21 20:50 - 00000000 ____D C:\Users\Schneball\Documents\My Digital Editions 2013-07-17 18:40 - 2011-12-27 18:25 - 00000000 ____D C:\Program Files (x86)\Adobe 2013-07-17 18:35 - 2013-07-17 18:35 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\Schneball\Downloads\SpyHunter-Installer.exe 2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Windows\SysWOW64\searchplugins 2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Windows\SysWOW64\Extensions 2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-07-17 18:10 - 2013-07-17 18:10 - 00283160 _____ C:\Users\Schneball\Downloads\Setup (2).exe 2013-07-17 18:10 - 2013-07-17 18:10 - 00283160 _____ C:\Users\Schneball\Downloads\Setup (1).exe 2013-07-17 18:06 - 2013-07-17 18:06 - 00283160 _____ C:\Users\Schneball\Downloads\Setup.exe 2013-07-17 07:35 - 2013-07-17 07:34 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{E4535409-5BB5-4AB6-BC35-56515CEEDB5F} 2013-07-16 10:41 - 2013-07-16 10:41 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{3C5B896A-9757-4034-AFC6-EC7230344E3A} 2013-07-16 08:09 - 2011-12-27 10:43 - 00000000 ____D C:\Users\Schneball\Desktop\Diana 2013-07-15 20:46 - 2013-07-15 20:46 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{2ED72EED-B589-4E9B-BBDE-8FBEE72040F8} 2013-07-15 07:26 - 2013-07-15 07:26 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{715F5D3A-9D81-49C6-8639-ECFCB5651BF8} 2013-07-14 20:57 - 2013-07-14 20:57 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{E385478B-6D89-43EB-841A-BF4895777136} 2013-07-14 07:54 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender 2013-07-14 07:54 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-07-14 07:53 - 2013-07-14 07:53 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{E44EEDCF-2757-4EE1-9980-7B3D1084E143} 2013-07-13 16:17 - 2009-07-14 06:45 - 00342240 _____ C:\Windows\system32\FNTCACHE.DAT 2013-07-13 16:16 - 2012-05-18 21:53 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2013-07-13 16:16 - 2012-05-18 21:53 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-07-13 12:27 - 2010-11-21 09:17 - 00000000 ____D C:\Program Files\Windows Journal 2013-07-13 12:25 - 2011-12-25 11:57 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-07-13 06:52 - 2011-12-29 16:41 - 78185248 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-07-13 06:39 - 2011-08-01 13:10 - 00004120 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2013-07-13 06:39 - 2011-08-01 13:10 - 00003868 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2013-07-12 17:14 - 2013-07-12 17:13 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{329285EC-4108-420C-BD86-EDE1D1DE299D} 2013-07-11 18:48 - 2013-07-11 18:48 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{6CEA7E80-1E8E-4BFE-8AC9-3A42CA1A8444} 2013-07-10 19:22 - 2013-07-10 19:22 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{29DC684E-AA35-4954-8110-0C10D49413C7} 2013-07-09 20:01 - 2013-07-09 20:01 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{FFB2C419-C238-4880-8A70-487B2DB31366} 2013-07-08 07:11 - 2013-07-08 07:11 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{902A4874-2722-46FD-BEB5-309A019046A4} 2013-07-06 14:35 - 2013-07-06 14:35 - 00029137 _____ C:\Users\Schneball\Downloads\eBayISAPI (3).gz 2013-07-06 14:35 - 2013-07-06 14:35 - 00029119 _____ C:\Users\Schneball\Downloads\eBayISAPI (4).gz 2013-07-04 20:08 - 2013-06-02 20:44 - 00000000 ____D C:\Users\Schneball\AppData\Roaming\PhotoMania 2013-07-04 12:26 - 2013-07-04 12:26 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{C46A6931-D793-4CA0-83ED-9A3E8E9BCDF5} 2013-07-04 12:24 - 2013-07-04 12:24 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{2933BAC2-E257-4F83-80EA-7D0E89B7E6B0} 2013-07-02 18:27 - 2013-07-02 18:27 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{72B7CF76-96EF-4D81-8513-5F3F07AA5446} 2013-07-01 08:44 - 2013-07-01 08:44 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{0E291496-2066-4486-BC8B-F9F763C1F66F} 2013-06-30 10:14 - 2013-06-30 10:14 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{5AC1FEC2-8921-4228-AECB-480360C6E5AB} 2013-06-27 16:03 - 2013-05-07 11:54 - 00083672 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2013-06-27 13:18 - 2013-06-27 13:17 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{7D1E9546-AC11-45F4-9C9E-6B834698CBA3} 2013-06-27 09:51 - 2013-06-27 09:51 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{408D87FD-B2B3-43F7-8B85-544B921BF84F} 2013-06-27 08:13 - 2011-08-01 12:51 - 00000000 ____D C:\Program Files (x86)\McAfee 2013-06-26 16:11 - 2013-06-26 16:10 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{136AE38C-92AA-4458-9EE3-1EF099318131} 2013-06-26 14:51 - 2013-01-31 09:16 - 00000000 ____D C:\Program Files\McAfee 2013-06-25 10:08 - 2013-06-25 10:08 - 00202234 _____ C:\Users\Schneball\Downloads\fax (7).tif 2013-06-25 09:47 - 2013-06-25 09:47 - 00202888 _____ C:\Users\Schneball\Downloads\fax (6).tif 2013-06-25 09:39 - 2013-05-02 17:17 - 00000000 ____D C:\Users\Schneball\Desktop\Oma 2013-06-25 08:26 - 2013-06-25 08:25 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{33758960-BCAF-47A9-8F29-4AF537CC74D6} 2013-06-24 17:08 - 2013-06-24 17:08 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{2BF4CD7B-8247-4502-A933-1BD33CC3D347} 2013-06-23 19:52 - 2013-06-23 19:52 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{9DF9A6BD-36DE-4B1B-AB7F-D8D3E7FE2BD5} 2013-06-21 12:56 - 2011-12-25 11:50 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\VirtualStore ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-07-14 13:15 ==================== End Of Log ============================ --- --- --- --- --- --- Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 19-07-2013 Ran by Schneball at 2013-07-21 10:37:38 Running from C:\Users\Schneball\Downloads Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= Adobe Flash Player 11 ActiveX (x32 Version: 11.7.700.224) Adobe Reader XI (11.0.03) - Deutsch (x32 Version: 11.0.03) Amazon MP3-Downloader 1.0.17 (x32 Version: 1.0.17) AMD VISION Engine Control Center (x32 Version: 2011.0420.1613.27244) Apple Application Support (x32 Version: 2.1.6) Apple Mobile Device Support (Version: 4.0.0.97) Apple Software Update (x32 Version: 2.1.3.127) ATI Catalyst Install Manager (Version: 3.0.820.0) Avira Free Antivirus (x32 Version: 13.0.0.3737) Bejeweled 2 Deluxe (x32 Version: 2.2.0.95) Bejeweled 3 (x32 Version: 2.2.0.97) Bonjour (Version: 3.0.0.10) Catalyst Control Center - Branding (x32 Version: 1.00.0000) Catalyst Control Center Graphics Previews Common (x32 Version: 2011.0420.1613.27244) Catalyst Control Center Localization All (x32 Version: 2011.0420.1613.27244) CCC Help Chinese Standard (x32 Version: 2011.0420.1612.27244) CCC Help Chinese Traditional (x32 Version: 2011.0420.1612.27244) CCC Help Czech (x32 Version: 2011.0420.1612.27244) CCC Help Danish (x32 Version: 2011.0420.1612.27244) CCC Help Dutch (x32 Version: 2011.0420.1612.27244) CCC Help English (x32 Version: 2011.0420.1612.27244) CCC Help Finnish (x32 Version: 2011.0420.1612.27244) CCC Help French (x32 Version: 2011.0420.1612.27244) CCC Help German (x32 Version: 2011.0420.1612.27244) CCC Help Greek (x32 Version: 2011.0420.1612.27244) CCC Help Hungarian (x32 Version: 2011.0420.1612.27244) CCC Help Italian (x32 Version: 2011.0420.1612.27244) CCC Help Japanese (x32 Version: 2011.0420.1612.27244) CCC Help Korean (x32 Version: 2011.0420.1612.27244) CCC Help Norwegian (x32 Version: 2011.0420.1612.27244) CCC Help Polish (x32 Version: 2011.0420.1612.27244) CCC Help Portuguese (x32 Version: 2011.0420.1612.27244) CCC Help Russian (x32 Version: 2011.0420.1612.27244) CCC Help Spanish (x32 Version: 2011.0420.1612.27244) CCC Help Swedish (x32 Version: 2011.0420.1612.27244) CCC Help Thai (x32 Version: 2011.0420.1612.27244) CCC Help Turkish (x32 Version: 2011.0420.1612.27244) ccc-utility64 (Version: 2011.0420.1613.27244) Chicken Invaders 3 - Revenge of the Yolk (x32 Version: 2.2.0.95) Chuzzle Deluxe (x32 Version: 2.2.0.95) Complément Messenger (x32 Version: 15.4.3502.0922) Contrôle ActiveX Windows Live Mesh pour connexions à distance (x32 Version: 15.4.5722.2) D3DX10 (x32 Version: 15.4.2368.0902) Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (x32) Diner Dash 2 Restaurant Rescue (x32 Version: 2.2.0.95) dows-Treiberpaket - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0) (Version: 05/31/2012 7.1.2.0) ElsterFormular (x32 Version: 13.2.0.8623p) FATE (x32 Version: 2.2.0.97) Final Drive: Nitro (x32 Version: 2.2.0.95) Galerie de photos Windows Live (x32 Version: 15.4.3502.0922) Google Chrome (x32 Version: 28.0.1500.72) Google Update Helper (x32 Version: 1.3.21.153) High-Definition Video Playback (x32 Version: 7.3.10900.8.0) Insaniquarium Deluxe (x32 Version: 2.2.0.97) IrfanView (remove only) (x32 Version: 4.32) Java 7 Update 21 (x32 Version: 7.0.210) Java Auto Updater (x32 Version: 2.1.9.5) Java(TM) 6 Update 31 (x32 Version: 6.0.310) JavaFX 2.1.1 (x32 Version: 2.1.1) Junk Mail filter update (x32 Version: 15.4.3502.0922) king.com (remove only) (x32) McAfee SiteAdvisor (Version: 3.3.1.133) McAfee SiteAdvisor (x32 Version: 3.6.168) Mesh Runtime (x32 Version: 15.4.5722.2) Messenger Companion (x32 Version: 15.4.3502.0922) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319) Microsoft Application Error Reporting (Version: 12.0.6015.5000) Microsoft Office 2010 Service Pack 1 (SP1) (x32) Microsoft Office Access MUI (German) 2010 (x32 Version: 14.0.6029.1000) Microsoft Office Excel MUI (German) 2010 (x32 Version: 14.0.6029.1000) Microsoft Office Home and Student 2010 (x32 Version: 14.0.6029.1000) Microsoft Office Office 64-bit Components 2010 (Version: 14.0.6029.1000) Microsoft Office OneNote MUI (German) 2010 (x32 Version: 14.0.6029.1000) Microsoft Office Outlook MUI (German) 2010 (x32 Version: 14.0.6029.1000) Microsoft Office PowerPoint MUI (German) 2010 (x32 Version: 14.0.6029.1000) Microsoft Office Proof (English) 2010 (x32 Version: 14.0.6029.1000) Microsoft Office Proof (French) 2010 (x32 Version: 14.0.6029.1000) Microsoft Office Proof (German) 2010 (x32 Version: 14.0.6029.1000) Microsoft Office Proof (Italian) 2010 (x32 Version: 14.0.6029.1000) Microsoft Office Proofing (German) 2010 (x32 Version: 14.0.6029.1000) Microsoft Office Publisher MUI (German) 2010 (x32 Version: 14.0.6029.1000) Microsoft Office Shared 64-bit MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Shared MUI (German) 2010 (x32 Version: 14.0.6029.1000) Microsoft Office Single Image 2010 (x32 Version: 14.0.6029.1000) Microsoft Office Word MUI (German) 2010 (x32 Version: 14.0.6029.1000) Microsoft Primary Interoperability Assemblies 2005 (x32 Version: 9.0.21022) Microsoft Silverlight (Version: 5.1.20513.0) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (x32 Version: 8.0.50727.4053) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (Version: 10.0.30319) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Microsoft_VC100_CRT_SP1_x64 (Version: 10.0.40219.1) Microsoft_VC100_CRT_SP1_x86 (x32 Version: 10.0.40219.1) MSVC80_x64_v2 (Version: 1.0.3.0) MSVC80_x86_v2 (x32 Version: 1.0.3.0) MSVC90_x64 (Version: 1.0.1.2) MSVC90_x86 (x32 Version: 1.0.1.2) MSVCRT (x32 Version: 15.4.2862.0708) MSVCRT_amd64 (x32 Version: 15.4.2862.0708) MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0) MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0) Nero 10 Movie ThemePack Basic (x32 Version: 10.6.10000.1.0) Nero BackItUp 10 (x32 Version: 5.8.10900.8.100) Nero BackItUp 10 Help (CHM) (x32 Version: 10.6.10700) Nero BurnRights 10 (x32 Version: 4.4.10400.2.100) Nero BurnRights 10 Help (CHM) (x32 Version: 10.6.10700) Nero Control Center 10 (x32 Version: 10.6.12700.0.7) Nero ControlCenter 10 Help (CHM) (x32 Version: 10.6.10800) Nero Core Components 10 (x32 Version: 2.0.20000.9.12) Nero Express 10 (x32 Version: 10.6.10700.5.100) Nero Express 10 Help (CHM) (x32 Version: 10.6.10700) Nero InfoTool 10 (x32 Version: 7.4.10300.1.100) Nero InfoTool 10 Help (CHM) (x32 Version: 10.6.10700) Nero Kwik Media (x32 Version: 1.6.15100.59.100) Nero Multimedia Suite 10 Essentials (x32 Version: 10.6.10300) Nero RescueAgent 10 (x32 Version: 3.6.10500.3.100) Nero RescueAgent 10 Help (CHM) (x32 Version: 10.6.10800) Nero StartSmart 10 (x32 Version: 10.6.10500.3.100) Nero StartSmart 10 Help (CHM) (x32 Version: 10.6.10700) Nero Update (x32 Version: 1.0.10900.31.0) NeroKwikMedia Help (CHM) (x32 Version: 10.6.10900) Nokia Connectivity Cable Driver (x32 Version: 7.1.101.0) Nokia Suite (x32 Version: 3.7.22.0) PC Connectivity Solution (x32 Version: 12.0.76.0) PDF24 Creator 5.2.0 (x32) Penguins! (x32 Version: 2.2.0.95) PhotoMania (x32 Version: 1) Photomania Bundle by SweetPacks (x32 Version: 1.0.0.0) PhotoScape (x32) Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.95) PlayReady PC Runtime amd64 (Version: 1.3.0) Polar Bowler (x32 Version: 2.2.0.97) Raccolta foto di Windows Live (x32 Version: 15.4.3502.0922) Realtek Ethernet Controller Driver (x32 Version: 7.38.113.2011) Realtek High Definition Audio Driver (x32 Version: 6.0.1.6289) Realtek USB 2.0 Card Reader (x32 Version: 6.1.7600.30126) Realtek WLAN Driver (x32 Version: 2.00.0016) Skype™ 5.10 (x32 Version: 5.10.116) Slingo Deluxe (x32 Version: 2.2.0.95) Spybot - Search & Destroy (x32 Version: 2.1.19) Synaptics Pointing Device Driver (Version: 15.2.11.1) TOSHIBA Assist (x32 Version: 4.02.02) TOSHIBA Bulletin Board (Version: 2.1.10.64) TOSHIBA Bulletin Board (x32 Version: 2.1.10.64) TOSHIBA ConfigFree (x32 Version: 8.0.38) TOSHIBA Disc Creator (Version: 2.1.0.9 for x64) TOSHIBA eco Utility (Version: 1.3.2.64) TOSHIBA Face Recognition (Version: 3.1.8.64) TOSHIBA Face Recognition (x32 Version: 3.1.8.64) TOSHIBA Hardware Setup (x32 Version: 2.00.0012) TOSHIBA HDD/SSD Alert (Version: 3.1.64.8) Toshiba Manuals (x32 Version: 10.02) TOSHIBA Media Controller (x32 Version: 1.0.86.2) TOSHIBA Media Controller Plug-in (x32 Version: 1.0.6.1) TOSHIBA Online Product Information (x32 Version: 4.01.0000) TOSHIBA PC Health Monitor (Version: 1.7.7.64) TOSHIBA Places Icon Utility (x32 Version: 1.1.1.4) TOSHIBA Recovery Media Creator (x32 Version: 2.1.3.10010) TOSHIBA Recovery Media Creator Reminder (x32 Version: 1.00.0019) TOSHIBA ReelTime (Version: 1.7.18.64) TOSHIBA ReelTime (x32 Version: 1.7.18.64) TOSHIBA Resolution+ Plug-in for Windows Media Player (x32 Version: 1.1.0) TOSHIBA Service Station (x32 Version: 2.1.52) TOSHIBA Sleep Utility (x32 Version: 1.4.2.8) TOSHIBA Supervisor Password (x32 Version: 2.00.0007) TOSHIBA TEMPRO (x32 Version: 3.35) TOSHIBA Value Added Package (Version: 1.5.10.64) TOSHIBA Value Added Package (x32 Version: 1.5.10.64) TOSHIBA Web Camera Application (x32 Version: 2.0.0.21) TOSHIBA Wireless LAN Indicator (x32 Version: 1.0.4) TRORMCLauncher (Version: 1.0.0.10) TRORMCLauncher (x32 Version: ) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1) Update for Microsoft Office 2010 (KB2494150) (x32) Update for Microsoft Office 2010 (KB2553065) (x32) Update for Microsoft Office 2010 (KB2553181) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2553267) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2553270) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2553378) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2566458) (x32) Update for Microsoft Office 2010 (KB2596964) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2598242) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2687503) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2687509) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2767886) 32-Bit Edition (x32) Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition (x32) Update for Microsoft Outlook 2010 (KB2597090) 32-Bit Edition (x32) Update for Microsoft Outlook 2010 (KB2687623) 32-Bit Edition (x32) Update for Microsoft Outlook Social Connector 2010 (KB2553406) 32-Bit Edition (x32) Update for Microsoft PowerPoint 2010 (KB2598240) 32-Bit Edition (x32) Update for Microsoft SharePoint Workspace 2010 (KB2589371) 32-Bit Edition (x32) Update Installer for WildTangent Games App (x32) Wedding Dash 2 - Rings Around the World (x32 Version: 2.2.0.95) WildTangent Games (x32 Version: 1.0.2.5) WildTangent Games App (Toshiba Games) (x32 Version: 4.0.5.5) Windows Live (x32 Version: 15.4.3502.0922) Windows Live Communications Platform (x32 Version: 15.4.3502.0922) Windows Live Essentials (x32 Version: 15.4.3502.0922) Windows Live Essentials (x32 Version: 15.4.3555.0308) Windows Live Family Safety (Version: 15.4.3555.0308) Windows Live Fotogalerie (x32 Version: 15.4.3502.0922) Windows Live ID Sign-in Assistant (Version: 7.250.4232.0) Windows Live Installer (x32 Version: 15.4.3502.0922) Windows Live Language Selector (Version: 15.4.3555.0308) Windows Live Mail (x32 Version: 15.4.3502.0922) Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (x32 Version: 15.4.5722.2) Windows Live Mesh (x32 Version: 15.4.3502.0922) Windows Live Mesh ActiveX Control for Remote Connections (x32 Version: 15.4.5722.2) Windows Live Mesh ActiveX control for remote connections (x32 Version: 15.4.5722.2) Windows Live Messenger (x32 Version: 15.4.3538.0513) Windows Live Messenger Companion Core (x32 Version: 15.4.3502.0922) Windows Live MIME IFilter (Version: 15.4.3502.0922) Windows Live Movie Maker (x32 Version: 15.4.3502.0922) Windows Live Photo Common (x32 Version: 15.4.3502.0922) Windows Live Photo Gallery (x32 Version: 15.4.3502.0922) Windows Live PIMT Platform (x32 Version: 15.4.3508.1109) Windows Live Remote Client (Version: 15.4.5722.2) Windows Live Remote Client Resources (Version: 15.4.5722.2) Windows Live Remote Service (Version: 15.4.5722.2) Windows Live Remote Service Resources (Version: 15.4.5722.2) Windows Live SOXE (x32 Version: 15.4.3502.0922) Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922) Windows Live UX Platform (x32 Version: 15.4.3502.0922) Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109) Windows Live Writer (x32 Version: 15.4.3502.0922) Windows Live Writer Resources (x32 Version: 15.4.3502.0922) WMV9/VC-1 Video Playback (Version: 1.00.0000) Zuma Deluxe (x32 Version: 2.2.0.95) ==================== Restore Points ========================= 16-06-2013 06:49:13 Windows Update 27-06-2013 18:39:54 Geplanter Prüfpunkt 11-07-2013 09:14:00 Geplanter Prüfpunkt 13-07-2013 04:37:41 Windows Update 13-07-2013 10:26:20 Windows Update 14-07-2013 05:52:56 Windows Update 19-07-2013 10:16:11 S 19-07-2013 10:17:12 S 20-07-2013 05:39:52 Installed SpyHunter 20-07-2013 12:18:45 Removed SpyHunter 20-07-2013 13:40:33 S 21-07-2013 07:26:43 Removed Google Earth. 21-07-2013 07:29:21 Removed Google Earth. ==================== Hosts content: ========================== 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {0619A694-7B38-4DAB-A76A-0F0AD9792326} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task Task: {0CB5A41C-9069-4A3E-900A-5CB5D2119161} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe No File Task: {0DBBD840-A647-4F5D-B652-B80D85251E9A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-08-01] (Google Inc.) Task: {35772080-8F21-46B3-AE76-63C2841DC019} - System32\Tasks\Microsoft\Windows\MUI\Lpksetup => C:\Windows\System32\lpksetup.exe [2010-11-21] (Microsoft Corporation) Task: {54D7E5BC-F8BD-4665-803A-AEBCA8B81CF4} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-08-01] (Google Inc.) Task: {7814A23C-6F5E-465B-9EF6-5563592BC2EC} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe No File Task: {972CA534-9F7A-4E2D-BB29-675274619837} - System32\Tasks\User_Feed_Synchronization-{293B7530-1DF2-4F3C-8BCF-32E681E5FE98} => C:\Windows\system32\msfeedssync.exe [2013-03-15] (Microsoft Corporation) Task: {B5539CA9-021E-4B27-A641-2A3198A0D810} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe No File Task: {C4BAA095-DF9A-47B9-8349-10002B73F7B2} - System32\Tasks\ConfigFree Startup Programs => C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe [2010-12-03] (TOSHIBA CORPORATION) Task: {D89CA803-4E7C-4134-99B2-4BA7E104DC54} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {F3A23EC8-0A79-4ECD-9494-B7459F0562E7} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-06-16] (Adobe Systems Incorporated) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (07/21/2013 10:31:45 AM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 2985079 Error: (07/21/2013 10:31:45 AM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 2985079 Error: (07/21/2013 10:31:45 AM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (07/21/2013 09:42:08 AM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 8112 Error: (07/21/2013 09:42:08 AM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 8112 Error: (07/21/2013 09:42:08 AM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (07/21/2013 09:42:07 AM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 7113 Error: (07/21/2013 09:42:07 AM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 7113 Error: (07/21/2013 09:42:07 AM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (07/21/2013 09:42:06 AM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 6115 System errors: ============= Error: (07/20/2013 03:41:53 PM) (Source: DCOM) (User: ) Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF} Error: (07/19/2013 02:16:56 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Spybot-S&D 2 Scanner Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (07/19/2013 02:16:56 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Spybot-S&D 2 Scanner Service erreicht. Error: (07/19/2013 07:44:30 AM) (Source: DCOM) (User: ) Description: {4EB61BAC-A3B6-4760-9581-655041EF4D69} Error: (07/18/2013 10:13:17 PM) (Source: Disk) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR1 gefunden. Error: (07/18/2013 08:54:00 PM) (Source: Disk) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR1 gefunden. Error: (07/18/2013 01:37:55 PM) (Source: Disk) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR1 gefunden. Error: (07/17/2013 10:04:47 PM) (Source: Disk) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR1 gefunden. Error: (07/17/2013 07:44:30 AM) (Source: DCOM) (User: ) Description: {4EB61BAC-A3B6-4760-9581-655041EF4D69} Error: (07/17/2013 07:44:00 AM) (Source: Service Control Manager) (User: ) Description: Dienst "Google Update Service (gupdate)" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Microsoft Office Sessions: ========================= Error: (07/21/2013 10:31:45 AM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 2985079 Error: (07/21/2013 10:31:45 AM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledEvent 2985079 Error: (07/21/2013 10:31:45 AM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (07/21/2013 09:42:08 AM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 8112 Error: (07/21/2013 09:42:08 AM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledEvent 8112 Error: (07/21/2013 09:42:08 AM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (07/21/2013 09:42:07 AM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 7113 Error: (07/21/2013 09:42:07 AM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledEvent 7113 Error: (07/21/2013 09:42:07 AM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (07/21/2013 09:42:06 AM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 6115 ==================== Memory info =========================== Percentage of memory in use: 45% Total physical RAM: 3562.12 MB Available physical RAM: 1933.86 MB Total Pagefile: 7122.42 MB Available Pagefile: 4481.24 MB Total Virtual: 8192 MB Available Virtual: 8191.82 MB ==================== Drives ================================ Drive c: (WINDOWS) (Fixed) (Total:299.02 GB) (Free:218.63 GB) NTFS (Disk=0 Partition=2) Drive d: (Data) (Fixed) (Total:296.76 GB) (Free:285.16 GB) NTFS (Disk=0 Partition=3) ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 596 GB) (Disk ID: F8D79D6B) Partition 1: (Active) - (Size=400 MB) - (Type=27) Partition 2: (Not Active) - (Size=299 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=297 GB) - (Type=07 NTFS) ==================== End Of Log ============================ war das so richtig??? Danke auch für die schnelle Antwort! |
21.07.2013, 15:08 | #4 | |
/// the machine /// TB-Ausbilder | Wie bekämpfe ich Spy Hunter und Delta Search? Perfekt Combofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!Downloade dir bitte Combofix vom folgenden Downloadspiegel Link 1 WICHTIG - Speichere Combofix auf deinem Desktop
Wenn Combofix fertig ist, wird es eine Logfile erstellen. Bitte poste die C:\Combofix.txt in deiner nächsten Antwort. Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten Zitat:
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
21.07.2013, 16:32 | #5 |
| Wie bekämpfe ich Spy Hunter und Delta Search?Code:
ATTFilter ComboFix 13-07-20.03 - Schneball 21.07.2013 17:16:25.1.4 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.3562.1939 [GMT 2:00] ausgeführt von:: c:\users\Schneball\Downloads\ComboFix.exe AV: Avira Desktop *Disabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C} SP: Avira Desktop *Disabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\program files (x86)\BrowserCompanion c:\program files (x86)\BrowserCompanion\logo.ico c:\program files (x86)\BrowserCompanion\terms.lnk.url c:\users\Schneball\4.0 c:\users\Schneball\AppData\Local\Microsoft\Windows\Temporary Internet Files\{2E51AADA-68A6-4FB8-AB9A-C95D1F4E7BE9}.xps . . ((((((((((((((((((((((( Dateien erstellt von 2013-06-21 bis 2013-07-21 )))))))))))))))))))))))))))))) . . 2013-07-21 15:24 . 2013-07-21 15:24 -------- d-----w- c:\users\Default\AppData\Local\temp 2013-07-21 08:36 . 2013-07-21 08:36 -------- d-----w- C:\FRST 2013-07-20 05:40 . 2013-07-20 05:40 -------- d-----w- c:\program files\Enigma Software Group 2013-07-20 05:39 . 2013-07-20 12:20 -------- d-----w- c:\windows\8AE3CFB678B24F55A7BE618FCFF43A03.TMP 2013-07-19 08:21 . 2013-07-19 10:19 -------- d-----w- c:\programdata\Spybot - Search & Destroy 2013-07-19 08:20 . 2013-07-21 14:51 -------- d-----w- c:\program files (x86)\Spybot - Search & Destroy 2 2013-07-17 16:11 . 2013-07-17 16:11 -------- d-----w- c:\windows\SysWow64\Extensions 2013-07-17 16:11 . 2013-07-17 16:11 -------- d-----w- c:\windows\SysWow64\searchplugins 2013-07-13 04:49 . 2013-06-11 23:43 817664 ----a-w- c:\program files (x86)\Common Files\Microsoft Shared\VGX\VGX.dll 2013-07-13 04:49 . 2013-06-11 23:43 108032 ----a-w- c:\program files (x86)\Internet Explorer\jsdebuggeride.dll 2013-07-13 04:49 . 2013-06-11 23:26 1084928 ----a-w- c:\program files\Common Files\Microsoft Shared\VGX\VGX.dll 2013-07-13 04:49 . 2013-06-11 23:26 1365504 ----a-w- c:\windows\system32\urlmon.dll 2013-07-13 04:49 . 2013-06-11 23:25 53248 ----a-w- c:\windows\system32\jsproxy.dll 2013-07-13 04:49 . 2013-06-11 23:43 1767936 ----a-w- c:\windows\SysWow64\wininet.dll 2013-07-13 04:49 . 2013-06-11 23:26 2241024 ----a-w- c:\windows\system32\wininet.dll 2013-07-13 04:49 . 2013-06-11 23:25 15404032 ----a-w- c:\windows\system32\ieframe.dll 2013-07-13 04:49 . 2013-06-11 23:25 19238912 ----a-w- c:\windows\system32\mshtml.dll 2013-07-12 05:14 . 2013-04-09 23:34 1247744 ----a-w- c:\windows\SysWow64\DWrite.dll 2013-07-12 05:14 . 2013-04-02 22:51 1643520 ----a-w- c:\windows\system32\DWrite.dll . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2013-07-13 04:52 . 2011-12-29 14:41 78185248 ----a-w- c:\windows\system32\MRT.exe 2013-06-27 14:03 . 2013-05-07 09:54 83672 ----a-w- c:\windows\system32\drivers\avnetflt.sys 2013-06-16 07:23 . 2013-06-16 07:23 692104 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2013-06-16 07:23 . 2012-02-10 07:41 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2013-05-16 12:32 . 2013-06-02 18:33 1277744 ------w- c:\windows\system32\dmwu.exe_old 2013-05-16 12:31 . 2013-06-02 18:33 35328 ------w- c:\windows\system32\ImHttpComm.dll_old 2013-05-16 12:02 . 2011-02-19 21:51 608080 ----a-w- c:\windows\system32\msvcp100.dll 2013-05-16 12:02 . 2011-02-18 23:52 829264 ----a-w- c:\windows\system32\msvcr100.dll 2013-05-13 05:51 . 2013-06-12 17:21 184320 ----a-w- c:\windows\system32\cryptsvc.dll 2013-05-13 05:51 . 2013-06-12 17:21 1464320 ----a-w- c:\windows\system32\crypt32.dll 2013-05-13 05:51 . 2013-06-12 17:21 139776 ----a-w- c:\windows\system32\cryptnet.dll 2013-05-13 05:50 . 2013-06-12 17:21 52224 ----a-w- c:\windows\system32\certenc.dll 2013-05-13 04:45 . 2013-06-12 17:21 1160192 ----a-w- c:\windows\SysWow64\crypt32.dll 2013-05-13 04:45 . 2013-06-12 17:21 140288 ----a-w- c:\windows\SysWow64\cryptsvc.dll 2013-05-13 04:45 . 2013-06-12 17:21 103936 ----a-w- c:\windows\SysWow64\cryptnet.dll 2013-05-13 03:43 . 2013-06-12 17:21 1192448 ----a-w- c:\windows\system32\certutil.exe 2013-05-13 03:08 . 2013-06-12 17:21 903168 ----a-w- c:\windows\SysWow64\certutil.exe 2013-05-13 03:08 . 2013-06-12 17:21 43008 ----a-w- c:\windows\SysWow64\certenc.dll 2013-05-10 06:14 . 2011-03-28 16:36 22240 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll 2013-05-10 05:49 . 2013-06-12 17:21 30720 ----a-w- c:\windows\system32\cryptdlg.dll 2013-05-10 03:20 . 2013-06-12 17:21 24576 ----a-w- c:\windows\SysWow64\cryptdlg.dll 2013-05-08 06:39 . 2013-06-12 17:22 1910632 ----a-w- c:\windows\system32\drivers\tcpip.sys 2013-04-26 05:51 . 2013-06-12 17:22 751104 ----a-w- c:\windows\system32\win32spl.dll 2013-04-26 04:55 . 2013-06-12 17:22 492544 ----a-w- c:\windows\SysWow64\win32spl.dll 2013-04-25 23:30 . 2013-06-12 17:21 1505280 ----a-w- c:\windows\SysWow64\d3d11.dll . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "TOPI.EXE"="c:\program files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe" [2011-05-16 846936] "NokiaSuite.exe"="c:\program files (x86)\Nokia\Nokia Suite\NokiaSuite.exe" [2012-12-21 1090040] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "NBAgent"="c:\program files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" [2011-06-29 1409424] "StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2011-04-20 336384] "ToshibaServiceStation"="c:\program files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" [2010-11-29 1294712] "APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2011-11-01 59240] "PDFPrint"="c:\program files (x86)\PDF24\pdf24.exe" [2012-12-12 163000] "avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2013-06-27 345144] "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2013-03-12 253816] "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-05-11 958576] . [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "TOPI.EXE"="c:\program files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe" [2011-05-16 846936] . c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ Toshiba Places Icon Utility.lnk - c:\program files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIMonitor.exe [2011-8-1 1492352] . c:\users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ TRDCReminder.lnk - c:\program files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe [2009-9-1 481184] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) "EnableLinkedConnections"= 1 (0x1) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows] "LoadAppInit_DLLs"=1 (0x1) . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager] BootExecute REG_MULTI_SZ autocheck autochk *\0\0sdnclean64.exe . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS] @="" . R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x] R3 esgiguard;esgiguard;c:\program files\Enigma Software Group\SpyHunter\esgiguard.sys;c:\program files\Enigma Software Group\SpyHunter\esgiguard.sys [x] R3 GamesAppService;GamesAppService;c:\program files (x86)\WildTangent Games\App\GamesAppService.exe;c:\program files (x86)\WildTangent Games\App\GamesAppService.exe [x] R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys;c:\windows\SYSNATIVE\Drivers\RtsUStor.sys [x] R3 TDEIO;TDEIO;c:\windows\SysWOW64\sysprep\Bootprio\tdeio64.sys;c:\windows\SysWOW64\sysprep\Bootprio\tdeio64.sys [x] R3 TemproMonitoringService;Notebook Performance Tuning Service (TEMPRO);c:\program files (x86)\Toshiba TEMPRO\TemproSvc.exe;c:\program files (x86)\Toshiba TEMPRO\TemproSvc.exe [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x] R3 WatAdminSvc;Windows-Aktivierungstechnologieservice;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x] R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe;c:\program files\Windows Live\Mesh\wlcrasvc.exe [x] S1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys;c:\windows\SYSNATIVE\DRIVERS\avkmgr.sys [x] S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x] S2 AntiVirSchedulerService;Avira Planer;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe [x] S2 cfWiMAXService;ConfigFree WiMAX Service;c:\program files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe;c:\program files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe [x] S2 ConfigFree Service;ConfigFree Service;c:\program files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe;c:\program files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe [x] S2 GFNEXSrv;GFNEX Service;c:\windows\System32\GFNEXSrv.exe;c:\windows\SYSNATIVE\GFNEXSrv.exe [x] S2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;c:\progra~2\mcafee\SITEAD~1\McSACore.exe;c:\progra~2\mcafee\SITEAD~1\McSACore.exe [x] S2 NAUpdate;Nero Update;c:\program files (x86)\Nero\Update\NASvc.exe;c:\program files (x86)\Nero\Update\NASvc.exe [x] S2 TOSHIBA eco Utility Service;TOSHIBA eco Utility Service;c:\program files\TOSHIBA\TECO\TecoService.exe;c:\program files\TOSHIBA\TECO\TecoService.exe [x] S2 TVALZFL;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Filter Driver;c:\windows\system32\DRIVERS\TVALZFL.sys;c:\windows\SYSNATIVE\DRIVERS\TVALZFL.sys [x] S3 AtiHDAudioService;ATI Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys;c:\windows\SYSNATIVE\drivers\AtihdW76.sys [x] S3 PGEffect;Pangu effect driver;c:\windows\system32\DRIVERS\pgeffect.sys;c:\windows\SYSNATIVE\DRIVERS\pgeffect.sys [x] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x] S3 RTL8192Ce;Realtek Wireless LAN 802.11n PCI-E NIC Driver;c:\windows\system32\DRIVERS\rtl8192Ce.sys;c:\windows\SYSNATIVE\DRIVERS\rtl8192Ce.sys [x] S3 TMachInfo;TMachInfo;c:\program files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe;c:\program files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [x] S3 TOSHIBA HDD SSD Alert Service;TOSHIBA HDD SSD Alert Service;c:\program files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe;c:\program files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [x] S3 TPCHSrv;TPCH Service;c:\program files\TOSHIBA\TPHM\TPCHSrv.exe;c:\program files\TOSHIBA\TPHM\TPCHSrv.exe [x] . . --- Andere Dienste/Treiber im Speicher --- . *NewlyCreated* - WS2IFSL . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}] 2013-07-17 16:27 1173456 ----a-w- c:\program files (x86)\Google\Chrome\Application\28.0.1500.72\Installer\chrmstp.exe . Inhalt des "geplante Tasks" Ordners . 2013-07-21 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-06-16 07:23] . 2013-07-21 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-08-01 11:10] . 2013-07-21 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-08-01 11:10] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Toshiba TEMPRO"="c:\program files (x86)\Toshiba TEMPRO\TemproTray.exe" [2011-02-10 1546720] "RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2011-01-12 11775592] "RtHDVBg"="c:\program files\Realtek\Audio\HDA\RAVBg64.exe" [2011-01-10 2186856] "TosSENotify"="c:\program files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe" [2010-12-08 710040] "TosVolRegulator"="c:\program files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe" [2009-11-11 24376] "Toshiba Registration"="c:\program files\TOSHIBA\Registration\ToshibaReminder.exe" [2011-08-01 150992] . ------- Zusätzlicher Suchlauf ------- . uLocal Page = c:\windows\system32\blank.htm uStart Page = hxxp://www.bing.com mLocal Page = c:\windows\SysWOW64\blank.htm uInternet Settings,ProxyOverride = *.local IE: An OneNote s&enden - c:\progra~2\MICROS~3\Office14\ONBttnIE.dll/105 IE: Nach Microsoft E&xcel exportieren - c:\progra~2\MICROS~3\Office14\EXCEL.EXE/3000 IE: Zu TOSHIBA Bulletin Board hinzufügen - c:\program files\TOSHIBA\BulletinBoard\TosBBCom.dll/1000 TCP: DhcpNameServer = 192.168.178.1 . - - - - Entfernte verwaiste Registrierungseinträge - - - - . BHO-{463B0ED4-8AFA-404B-90E7-4063A0708050} - c:\program files (x86)\LyricsContainer\120.dll Toolbar-Locked - (no file) Wow6432Node-HKLM-Run-TSleepSrv - %ProgramFiles(x86)%\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start Toolbar-Locked - (no file) HKLM-Run-TosNC - c:\program files (x86)\Toshiba\BulletinBoard\TosNcCore.exe HKLM-Run-TosReelTimeMonitor - c:\program files (x86)\TOSHIBA\ReelTime\TosReelTimeMonitor.exe HKLM-Run-TPwrMain - c:\program files (x86)\TOSHIBA\Power Saver\TPwrMain.EXE HKLM-Run-HSON - c:\program files (x86)\TOSHIBA\TBS\HSON.exe HKLM-Run-TCrdMain - c:\program files (x86)\TOSHIBA\FlashCards\TCrdMain.exe HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe HKLM-Run-Teco - c:\program files (x86)\TOSHIBA\TECO\Teco.exe HKLM-Run-TosWaitSrv - c:\program files (x86)\TOSHIBA\TPHM\TosWaitSrv.exe AddRemove-Photomania Bundle by SweetPacks - c:\program files (x86)\sweetpacks bundle uninstaller\uninstaller.exe . . . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_7_700_224_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_7_700_224_ActiveX.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_7_700_224_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_7_700_224_ActiveX.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.11" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\McAfee] "SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79, 00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\ . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}] @Denied: (A) (Everyone) "Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3] @Denied: (A) (Everyone) . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0] "Key"="ActionsPane3" "Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . Zeit der Fertigstellung: 2013-07-21 17:30:21 ComboFix-quarantined-files.txt 2013-07-21 15:30 . Vor Suchlauf: 8 Verzeichnis(se), 235.904.172.032 Bytes frei Nach Suchlauf: 11 Verzeichnis(se), 236.585.693.184 Bytes frei . - - End Of File - - 6ED0B577601FA083B83BECAD7255D545 A36C5E4F47E84449FF07ED3517B43A31 |
21.07.2013, 21:01 | #6 |
/// the machine /// TB-Ausbilder | Wie bekämpfe ich Spy Hunter und Delta Search? Einfach aus dem Download Ordner rüberziehen auf den Desktop Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ --> Wie bekämpfe ich Spy Hunter und Delta Search? |
22.07.2013, 07:40 | #7 |
| Wie bekämpfe ich Spy Hunter und Delta Search? Guten Morgen, das mit dem Adw.cleaner Download klappt nicht??? Normalerweise geht dann unten rechts ein mini Fenster auf, das ich dann nach dem Download öffnen muss. Auch im Download Ordner ist nichts zu finden. Habe es mehrfach probiert. Avira ist ausgestellt. Gruß äh,unten links ;-) Jetzt ging es. Das war aber auch etwas verwirrend, nicht auf den blauen Download Button, sondern einfach nur oben drüber "Download: adwcleaner" anklicken :-) Code:
ATTFilter # AdwCleaner v2.306 - Datei am 22/07/2013 um 07:59:57 erstellt # Aktualisiert am 19/07/2013 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzer : Schneball - SCHNEBALL-TOSH # Bootmodus : Normal # Ausgeführt unter : C:\Users\Schneball\Downloads\adwcleaner.exe # Option [Löschen] **** [Dienste] **** ***** [Dateien / Ordner] ***** Datei Gelöscht : C:\Users\Public\Desktop\eBay.lnk Ordner Gelöscht : C:\ProgramData\Partner Ordner Gelöscht : C:\Users\Schneball\AppData\Roaming\BrowserCompanion ***** [Registrierungsdatenbank] ***** Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Crossrider Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\LyricsContainer Schlüssel Gelöscht : HKCU\Software\Blabbers Schlüssel Gelöscht : HKCU\Software\IM Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\grusskartencenter.com Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\grusskartencenter.com Schlüssel Gelöscht : HKCU\Software\Softonic Schlüssel Gelöscht : HKCU\Software\WNLT Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{4327FABE-3C22-4689-8DBF-D226CF777FE9} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Prod.cap Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF} Schlüssel Gelöscht : HKLM\Software\DataMngr Schlüssel Gelöscht : HKLM\Software\Iminent Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\5948f8bb03be515 Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{463B0ED4-8AFA-404B-90E7-4063A0708050} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{463B0ED4-8AFA-404B-90E7-4063A0708050} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Photomania Bundle by SweetPacks Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7} Schlüssel Gelöscht : HKLM\SOFTWARE\Software ***** [Internet Browser] ***** -\\ Internet Explorer v10.0.9200.16635 [OK] Die Registrierungsdatenbank ist sauber. -\\ Google Chrome v28.0.1500.72 Datei : C:\Users\Schneball\AppData\Local\Google\Chrome\User Data\Default\Preferences Gelöscht [l.2035] : homepage = "hxxp://www1.delta-search.com/?babsrc=HP_ss&mntrId=22AB74DE2B970710&affID=119557&tsp=[...] ************************* AdwCleaner[S1].txt - [12351 octets] - [22/07/2013 07:59:57] ########## EOF - C:\AdwCleaner[S1].txt - [12412 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 5.2.0 (07.21.2013:1) OS: Windows 7 Home Premium x64 Ran by Schneball on 22.07.2013 at 8:19:32,40 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\tracing\apnstub_rasapi32 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\tracing\apnstub_rasmancs ~~~ Files ~~~ Folders Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{00272D37-E760-4BD8-8B22-A38A63946A7B} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{003ECE4D-5762-4A98-8818-22FD68CDFCF6} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{004D6BF5-673B-4A16-AE1A-CED8664CCA68} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{005D3B0E-02A9-480A-83E9-C8F443A05932} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{00E95E92-A9EF-4A69-A50E-9D2CA29730FB} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{01132AD8-DFC5-427F-8BF9-4D9594624542} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{014B5110-48DA-4154-8087-3E5D39025606} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{020A4CA7-A9C0-4C50-8ECB-47ADB43C6327} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{023C3318-DEB6-4176-A760-F010E0209C3A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{026892A7-1E98-4359-821C-E1E0F5DA319C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{028CE71A-C18A-4B97-8A74-A51864D6FF70} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{02C615F7-4761-409B-8DFA-791BDA816ABC} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{033001EF-8DB1-4131-800E-6FFB7A1B0FFC} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0337CDDC-E14E-4346-9065-DCA3B4E993F7} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{03933BDC-B871-417E-BC0F-B183A9919C40} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{03B152EB-9D1F-4270-BE98-0BF7E598DDE5} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{03D2A27F-D77E-404C-9E60-A363CA741931} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0417F3D5-3469-4A45-908C-0A20AC96C65C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0444F334-2112-4A23-B0D5-FFBF93FF46AA} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0446DF9D-455A-4683-9266-DE7344193C28} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{04F19074-C134-42FC-87F9-45DBE2BA9FCD} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{05802A5A-212E-460B-A376-3B768565F267} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0611F8CF-63C4-4070-B0B2-2FA5F5D08368} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{06E8B139-AD5B-4676-93A9-49B4F8E19F04} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{071D3F2D-90C1-44CD-8086-C88966DCFB06} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0725C055-BA46-499A-8773-A643FD0C3C12} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{075E776B-D9D7-4E58-833B-72B1D3094D1F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{07E19A03-911C-47C5-8E29-EBA28FC1DEF2} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{07E37093-6770-4808-A2C5-AF31F5B281C8} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{080AB3AD-BEAF-4C8B-AE67-B836AF5CFAA6} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0827DFEF-44CE-46E5-80D1-71391EF12D51} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{088BA9E6-A464-4628-A9EA-3BE4A252D67E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{088F78E5-A7CA-420F-B29D-AB9C315AEC32} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{08A695D4-5AD8-4D66-9004-2CC244C0CACB} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{093736D2-C62D-46A4-A494-36F28F2C7830} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0943689F-6815-42E9-8314-8D9311F0D8AA} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0952C8B1-7129-4931-93BC-0928D6DE9A11} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{09DF776A-021B-4499-9948-941D83C28AF4} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{09EAFF5C-E139-47A1-9B6C-C1D80263A38D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0A73696A-6842-45DB-8970-85893DCF17F3} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0AF9F51B-D538-4243-B6A6-EC476FC5813F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0B5E12DB-FA61-40B7-9FAF-8277D805AA46} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0B8705AA-896B-4BB0-AF53-D27B13F8C65C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0BE2DBCF-8117-4376-9A90-79253F46CF1B} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0C0744CF-933C-4B3F-8076-2CA305FD8660} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0C2F8E56-2203-4154-975D-5B26A3D3CF2F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0C85F7F8-26A4-4922-A60F-E336E4E9912C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0C9E76E0-E9A2-44BA-83BD-9141D1ECC80F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0CE0DBFA-344C-43B1-8181-24FCDD29F820} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0CEA3586-D791-46D5-A327-01EA13600370} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0D182042-AD49-42C5-A7F2-BE81B76FF70A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0D276245-1350-45D2-88AC-7E526C5F59E8} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0D312F27-F94E-46C3-8D20-26850C8ADD02} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0E1FBB55-06CF-4496-AEE0-3BE84FB7476D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0E24AF8B-C413-47CE-B0ED-CF71B4566F47} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0E291496-2066-4486-BC8B-F9F763C1F66F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0EE85FAD-1949-4D63-A7B6-83C4E82E4F9E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0F44A105-D1B7-483C-A6C7-CA8D8A918CB5} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0F7C00EE-F8C5-48D5-A9BA-347C6B89268D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{106B29C7-776D-4D97-B1FC-EBF9E4261D10} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1081A9A3-009C-4BB5-80F1-5F801FE9DC3F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{10F2C84D-F2ED-43E1-8634-B6B197A3C783} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{11086470-FA8B-4205-AF4C-8F3F2B64927A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{123DC1A5-EB7A-4691-A542-05A2C0D89F47} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{12930620-0911-4BC5-B662-D5767CDDCA40} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{136AE38C-92AA-4458-9EE3-1EF099318131} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{138EC93A-8578-44EA-89B8-A097CCFDF3D2} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{138F3FFE-FA11-48DB-903B-303D32EF6BBE} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{13B99CE4-5DE2-44FB-9F81-136F435DBA4B} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{13C0351E-2591-4EC2-9438-17C804B3D844} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{13D0FDDB-4694-4278-AD49-1737CAA669F3} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{14057DDF-0AC5-42B3-A8D1-55F15C83CA1E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{143C7FFA-F492-47A7-8330-D6D8B3458067} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{143EE4FC-346E-4251-BC25-FBC6E79BB1BF} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{14670CB2-A7B3-4C04-B855-21136A5FFB0A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{146C6C00-22A0-4FDC-B0DA-BC85B73A2D73} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{146E1E0F-ABC3-4F04-A7F9-9BA78A04303E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1479A378-566E-43B6-8626-00E5A148A4E7} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1480B6F2-A139-45F0-814C-FF45B394E132} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{148BFE2D-8182-403D-B1C3-F761F1B2B7FC} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{14A98EB6-C019-4E2C-BEE8-F57E9F17604D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{14CE0723-DF1E-41F4-9E3F-8E28D55A1635} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{14D30462-5ABB-4ABD-8C3D-E6532226D6F1} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{14F59CEC-EDB8-484F-9F0E-BF5AAA029317} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{152247F2-5555-45A2-B7B9-AAEFE55B58C0} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1565F086-81AF-4626-A83A-BF77B20449F8} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{15D3C420-B828-4762-AC28-5F23B4CEC415} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{15F8A176-7230-489A-8AFB-4DEC4F30EDB5} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{163A78AF-2824-4D1E-8957-9E8A12500688} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{166C6E5E-8FAF-4B99-BBA8-D082C9119E76} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1678E76A-2634-4B12-86CE-AF01A23810D6} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{16A42E6D-564F-4943-8AD9-DCC5A95576C8} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{16CD1451-8497-4F62-8FC4-2E341CD7B9C0} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{16DB41DE-7701-49C2-BDD6-FCE1266A9F90} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1701E5ED-2C67-43F5-93BC-D38A74C1639F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{176A92E2-9552-4186-B2E6-278455D1D37C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1787A21C-526A-4B96-B018-7703AAFE70F8} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{179EF6B0-CC41-4082-A303-C21355C44405} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{17E700F4-C934-4091-AD37-A54956D04718} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{17EEBD96-083F-476B-97F9-AF5716443F3E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{187B8226-D750-4174-B9F1-2F029FE7632A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{188DF25A-9465-4467-BF8C-267E2F698C8E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{18F5A78A-CFAE-4A0B-B5AF-1B16793B92AC} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{190E6B79-9711-4B3B-9D77-786AC58BA333} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{190EA98B-DECE-43C6-AB63-EFD62591AB5E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1A90C2F0-7EE9-4FEB-96BD-B4DE1DB39CDF} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1AA8B8FE-4A63-4DF6-BB9B-3AC7558A190A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1AE69FC1-485A-42D5-8826-7C8554C48349} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1B45B819-8077-4E82-B8D7-7A8CE6A32BC5} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1BE977EA-9DE3-4960-9251-97CC237472B1} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1BF6EEFF-3409-4A2A-89E5-ACEBC158D10C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1C6D6288-F49B-4DA2-ADD9-D40650E13CD5} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1E1426DF-EEF9-4897-83E6-BA60840A23A3} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1E8E2E7C-51AC-4273-B2F9-31B34F36FB26} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1EB6A028-9814-4B3C-83FE-2E7A72D8CA13} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1EE3D133-B8F6-43DD-AF89-DEDA2B1B0EC0} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1F38CE7E-E0F3-46CE-900B-301F83B91F28} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2082CCAE-F1B5-4EAC-8B46-F183693E835A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2088B667-9DEA-43B1-8136-D0FF4F2350C0} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{20C2C87A-3F6E-46F5-8CD2-DA5DCD7248C6} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{20DD6C38-3499-4482-B03B-44445AD89B37} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{213AA2E3-A9CF-4B33-A87E-82ECB31CAFEC} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{21450D04-34A5-4EAC-B9C8-348AEDB9D001} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2160CF1E-63B4-4154-9329-3E2183B4F684} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{21624361-9546-43A5-9001-D03A59418DBB} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{22134C79-FA68-4E36-BD01-298F201E9D96} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{22801095-F6AF-439F-B8E8-8E374AF13CDF} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{22822CA6-5EF9-4254-9810-CB98E5E44DE0} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{228E6E94-E484-4C72-A2FB-AA3244E13C5E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2297EAFE-AEA8-4CEB-AB31-6996C2B31026} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{22B53F49-970E-43A9-B33D-74F6BEB25B90} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{22C24A86-FFE4-44FB-AC87-84F9DCAB27B3} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{22CC2578-757B-4EE2-B14C-A918A1FB5D81} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{22EAAA70-24C3-4B19-AF72-9F38CDAC863D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{22F88814-C9CF-49CE-8089-E822C5C3E775} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2362C8C1-D754-49B4-8ECF-12F0BD77A456} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{23685FD9-35A4-46EC-9597-4DB983713980} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2377ECA0-B06E-4B11-82CF-4881478F7D7C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{237ABBEB-066D-422A-8597-A24C26807B6E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{239B5E66-97D4-4305-B14B-EC2C8A920056} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{23ED01D4-EB87-468B-8E82-21BA22749A4A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{24135BB6-03D7-4A2B-AAF4-DEB7926A5FEC} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2468FE15-5970-40F2-A7C9-1824048C5D69} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{248E8AB9-24C6-40A2-AA64-7D6DACBE292E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{24932E04-52C0-4D3E-AC67-29233574FFAB} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{25CC3A96-20E7-4692-8760-624C2705BBA2} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{260716CD-E102-4EEF-8056-8799DC12F867} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{26378258-B464-494B-B9EC-194483C526A0} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2674E7A5-DD58-4E62-B43A-6D6EA6656D90} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{26E675B9-A8E8-429A-8523-ABE3CD8702F9} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{274EC5C1-04BC-49E1-9BF5-85DB4B0E652B} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{27C9B60D-1646-46F3-8B41-49E278043E5C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2845BC05-DA74-4B77-AE55-6F22BD858897} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2858E7B6-C660-4265-8C34-6EA37530D0DA} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{28F781F2-6413-4728-A88D-18AD44ED0D45} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2933BAC2-E257-4F83-80EA-7D0E89B7E6B0} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{29343333-A9D2-4155-918F-7608B538B15F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2957B775-8DDB-45F3-9288-6E5C338AC078} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{297F51AB-BCFD-421C-833F-73F0A115A969} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{29B38D4E-FC7E-40A4-9F5A-FBB935B83EF2} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{29CFD681-7E51-456B-830F-626497C394E3} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{29DC684E-AA35-4954-8110-0C10D49413C7} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{29E0B198-5ADB-409C-BC5D-1C8BE1078099} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{29F0D1A7-938F-419B-AAB4-4EDC611EA3FF} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2A092FF0-3263-4EAE-97B1-B084BFCCC991} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2A79DCCC-4F3E-4937-AFFA-5FB08C03B85C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2A806D79-CD59-48CE-AEDA-40EC0D6F420F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2BF4CD7B-8247-4502-A933-1BD33CC3D347} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2C092CD7-1B98-4BCE-BA84-5FAD7B603E3C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2C3EB5AC-C71E-4D6D-8C0A-6F971423F92F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2C798B11-9456-4C96-8BA0-37F3747D1949} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2CB1B0EF-B2BE-4565-A724-2490DC846109} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2CDBBD9A-254C-4A70-A088-2C11F5ACF478} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2D5F4EBB-55A4-4A67-B47B-AD9652C39BCA} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2D8F2E8D-7FAD-4FC4-9EFC-574B7B5319FB} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2E4F182E-0B71-4817-ADF7-1AE1180073DE} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2E5BE28C-CBEF-45F3-B723-ED57B9F975A5} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2E9533C9-271F-41DE-A240-9542A70FAF59} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2ED72EED-B589-4E9B-BBDE-8FBEE72040F8} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2F9EC2E6-0A4C-4703-88A9-29E0A4A7BAFC} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2FC13C4A-A162-4523-AECD-E6FF55E62189} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{30115A9E-8E0D-4099-9DFD-D02025CE289C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{301F8D83-F06D-4AF6-8931-A9F3435BA0AC} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3027D7B3-05B7-4682-A67B-B8CE5B4ED873} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{31D1D8D5-F202-4415-919A-B05EDBD0EE4D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{31F1A96C-9388-44D5-B4C1-E81E22DFFC50} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{32236923-9388-48F5-A077-537AC4BE602E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{32447CE3-197F-45A3-B935-31DCC1B05109} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{329285EC-4108-420C-BD86-EDE1D1DE299D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{32CDC7A6-9333-442A-8164-A111B6A27D9D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3330BA4E-9A7C-4F7A-84BA-7F6EB77B4478} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{33758960-BCAF-47A9-8F29-4AF537CC74D6} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{337CBE35-0D51-4A40-A031-4D1739357152} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{33B6F5DD-83FD-4021-B46B-309E602927D4} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{33C60C87-CE1D-4FB0-9FE3-8B267B156904} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3442A6C0-6BBE-49A7-B88D-1B5A5C80CEA9} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3445242F-E43C-43B3-A249-8547D4F4F945} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{344D1C44-90B0-4ED4-9936-2E98B9286C81} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{34856612-5E4D-4876-AE72-A69652CB030F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{355C78EE-7ED6-4386-9A23-60B4293BF832} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3586D961-2B6C-4EFD-9A87-B98470CEDCB5} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{35A51AD6-947D-4FDE-B873-2F855CB738DA} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{35ABE5C6-A346-4727-B3FC-7D5DA30F3364} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{35E5AE8A-3799-4F51-9BF2-A3E802AD4E8C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{35E69E1A-810D-4EAD-A6B1-11CFEAB3CEE8} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{364EB396-5239-4DFC-9111-443FD11FD4F6} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3668B129-3C6E-4E9D-A90E-BE2AF0262CA8} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{36A1341F-D7BF-4194-A75F-B42A81E60B4F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{36C9AFAA-A5ED-4EC4-83CC-9E231BEF6864} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{37731522-ACFF-4D28-A145-6CFADEE7F790} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{37E477AB-C649-4B89-96E2-CB9950DE8C5F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{38105AB7-77D7-4D9F-B3B4-FE86D8E2BDE8} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3812CA95-84EE-4AD2-AFA7-D9598B6374E3} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{38191753-59D4-4A76-B611-30ADD1F4C11A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{384FE913-C502-4D9C-977C-0BBF1CB60E89} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3865A747-8D9E-4501-B2F6-1441063DDF9D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{38A9C691-630B-49C1-A128-7A8E5BFDF786} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{395030B3-F30E-480F-8525-5CAE8649DE8C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{39806F6A-3636-4101-A411-FF66C6D59201} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3A0A286C-4328-42B8-9D51-CF29E4DCDC4A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3A412411-8D05-4F93-9504-BF4DFAB76A5A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3A8FE633-70D3-436B-ABD8-9B403719647F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3AB79E4B-8DD5-47F9-B031-461238AFB02B} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3B085AED-95AD-419A-8831-728C3F532C33} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3B3DA4E1-E94F-47F9-B024-1A2E05F0FB49} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3B3E6F8E-16F9-46A3-A3E8-F121BBEF4D57} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3B943827-FD03-4C89-A8CF-67D9907D3C5E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3C5B896A-9757-4034-AFC6-EC7230344E3A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3C7DB56B-95B7-45E1-B73A-42F5BE94F331} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3CC05E39-2531-409B-98BE-2A76E336A7B9} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3CC33922-D78A-44AE-B0B0-6B1F1712530F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3CD980EA-49DA-4BEE-9E1B-634899C1AC3B} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3CF531E7-FE34-427E-8FDD-0E041373C057} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3D0C39E3-1990-4408-A79C-C5A989BE9397} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3D58894A-843E-4950-9A80-54719F32B549} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3E462658-BF65-43D9-856A-66534D8556CB} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3E686679-63E9-4BF5-8BE7-2B58F596078E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3F332B4F-A68C-49D9-B54E-DCCCD892DE50} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3F72CB15-33FA-4578-BA29-4C308F5A6251} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3FCBE219-3B5D-4FC5-A606-9E02D9756B6F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{400307AD-4905-4D3C-A827-039DAF7E436E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{400CA94A-B188-4842-B50B-E404345F0DC7} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4019A260-4EFB-498D-8C7D-71B2DD805E35} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{408D87FD-B2B3-43F7-8B85-544B921BF84F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{40D83A43-3EC1-44A2-AE83-F454F53D5030} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{41B52A59-3865-42CC-A533-E673B69DE762} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{41C16A02-F172-4B67-94B7-0D7879A65728} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{41D419AF-0B82-4505-9903-C4C50DB04AE2} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{41F19381-C0A9-4BF4-B57E-4CCF4147A366} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{422153EF-AA7E-46B5-B17D-C99D9B9EB5F0} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{42260C13-42E2-4611-AFBE-04F031A53F13} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4288E0F6-249F-4D7B-B553-BE5880402417} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{42F25DD7-8C09-4286-B97E-24C2181F11D6} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{43339528-593B-40DF-8DDB-31BDBFCB0EE2} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{43F0A5DE-D4D9-4F57-8600-C32B7BDF8B39} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{446239FA-C172-4805-BFA9-052453C16675} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{44FDFBD9-6857-48A8-9A52-6FDC9A8EFD09} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4551B4BF-EEE3-4CBA-8520-1466177F269F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4553E208-799A-4AF6-952A-7256CA1E4A82} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{45F5C518-2FB2-4323-B142-2CE8B261E799} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{46423E01-E628-4B08-AF9D-3F967461951B} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4642DB69-7F49-4ECD-AC3A-4FE03F05BC53} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{46566485-1B33-41D3-B47B-164D288A8BCA} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{465C82D1-E4FB-4D41-97E1-F009C18BEA94} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4685E60C-4FDF-445E-8683-AD046E8F600B} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{46D898F7-94C1-43DC-9D41-40AD8F07D9B2} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{46F4BD3C-B124-4903-B466-BC0FAF40AE11} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{470D2769-788C-41F2-8F7B-16037ADB9C02} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{477AE052-4EB8-4136-BE4A-EABBC163197C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{478522F6-1C37-407B-9A87-812A73E1280E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{48906078-829F-48EA-9D99-C7CC3396A827} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{48AB678D-7E8C-428F-958E-8643FA7B3997} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{492D5ECF-68F4-4393-BB56-E5A0E4ED4D0A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{492FC0A9-E116-4EB1-9C13-0FE08F6AF3E0} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4A314B21-700C-4EB2-A695-ACBC520E975E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4A4038C4-38A8-468B-B2DF-1B6051354925} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4A52DBD8-FD7C-4807-9FC8-D267705F8CC5} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4A75A387-930D-47F1-A4F3-C19E71AE0239} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4A7BA46C-1025-4FD4-A572-FEDEF9429A08} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4ADDEA16-BA06-4A23-94E3-A7ED5272F875} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4AF907F0-CC93-4B98-A98E-8A3BE47FBE7E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4B2DD77F-2C77-4A13-86CA-FDC8AF772BED} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4B443F6C-0175-451F-B936-1C4F896F73D5} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4B88C35F-F569-4D78-856E-BE59B430CB27} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4C0C077C-1E60-467E-93D3-F34D34A1C274} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4C3A6302-F29E-4E7E-8EF9-70F84B956D6D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4C4B783B-73C5-4A1B-B646-846C4EE21012} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4C779826-6F8D-4AD0-A7C5-58DEBD04E0D5} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4C91F66F-4116-41AF-B97B-93582E267753} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4CBDC779-D632-4962-A9E1-CF0AD0825331} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4CCE7CA8-11CA-4ABE-9BA9-0C28EEF9E9D7} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4D1E4121-8E21-4853-AE61-0A119DCAD3A4} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4D56D8B1-07D6-47E7-9EC2-ED2F6D6A28DA} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4D65A40A-728C-4744-AACB-5B6B1B822337} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4DB9A2AA-C87D-41E7-B6AE-24D6D0481338} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4E53D34E-101B-46B5-B9B5-40156718BAD1} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4E77317B-5DDB-488E-9437-80F0AE7E85B1} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4EBC50FD-4DCF-48F3-80A8-B46AAF0E08E2} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4ECF1DCB-3AED-43AF-81FD-AA103AD7B869} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4EECBCAD-F575-4AE2-8C40-3855696D4429} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4F38EBBF-8337-4ADB-BDF7-F8A6A5A524FE} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4F5A6932-26FD-4BEC-90C5-49DB3E2891EA} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4F763048-97A7-4592-BC08-794BE95F4872} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4F84A615-A2E6-4EDF-9503-55C0E492C618} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4F8BB659-C149-4D2F-AFEA-BF5F9EF29F4E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4FA6CD2E-9844-4978-B8F0-53FB32E508A0} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4FCD56AD-9DCA-4F7C-96F4-5EDE5A0CA7CE} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{504FA430-EE67-458F-90F0-4C1AB347EB17} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{514372F0-00C2-4D08-A9D5-6BB16B790B19} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{51588A2C-9D30-4BC5-B079-2672F7E714FD} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5172F5E9-C026-4530-8EFC-069FBF6A103E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5237B051-18F8-480B-8696-4AC6674132C1} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5238B3CB-4E98-45B9-98B0-00C8A5F96D55} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{525E1CD3-8EC6-4BF8-897F-ACB3B0328072} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5286DC2A-37B3-4D9F-A6B7-7FED52145D5F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{52DB8CD0-DF83-482C-868C-438EA5CDEC19} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{53D7AA58-4550-446D-A9BA-60FC323D38AD} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{543E26EB-32A3-4410-B6ED-5CB88D2AB15C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{543F8925-411B-47CD-8F78-573E2F275655} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5545E068-B388-479F-9A3B-292A3F2BBC47} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{556A7730-8B30-46B7-980D-CE77DA9FFEF2} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{55E35F24-BD6E-436F-982E-662FE5FFEF90} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5609654F-5FB6-4BA4-9316-99099B5181AA} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{562A6599-F5A2-43A6-A0DE-F66B3942D3FB} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{567BCB9B-7BA9-4CA0-8C08-9BDDDBFDD57E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{56B9F089-4D0B-4AE4-B9B2-B502F93DEC24} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5712157B-143E-43E2-9077-654DA8552E89} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{574A42BA-223D-4603-8028-DC8B58976D61} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{57AD3F52-6881-4076-A46C-011AF0D73A6B} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{57C76BF8-0A13-413A-A079-5C0DC1B3E6B1} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{58CFA418-EC4C-4B3D-A0AA-537B6BBAC58B} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{58D3C276-C943-4CBD-914F-91B02BFD0E5A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5956BDCD-3E81-49C6-8D3D-BB5A74AB1995} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5A2BAC59-E975-4C0D-A8B2-FC634EE5988B} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5A4C6A93-E366-493B-AD62-8DA7A80DA6FF} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5A556B14-B7A8-4BFE-B89E-FABDE19DF219} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5A57A4A8-3A00-41BE-BD00-EB7C08E0951A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5AC1FEC2-8921-4228-AECB-480360C6E5AB} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5BBCCCC3-A891-4090-9645-FC71FA32301D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5BCA140D-C966-4BE5-8F60-78B079A0986A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5BCB2F15-E55C-452C-9353-AC51FBE3FE7B} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5BF450CF-5D99-4359-BFCA-1F51986354CB} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5C2F08CF-40CB-43C0-9536-D77559AA0EEA} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5D0256BD-B2F8-41D3-98A7-45DF4FAE345C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5D239777-3156-40E8-8140-DEFBCAA2D98D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5D6850AB-5F89-4460-92DE-824E98796BFB} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5D7B5DC0-A315-4629-834E-A0866BEE5451} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5DCCC4A0-663B-4D41-AEDC-C84B35901A6F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5DCD3DDE-F982-46D9-ABE3-FEE3A303C79A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5E585CAB-FD3D-45F8-8143-9CEB32E4C571} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5EB7177D-754D-4AE4-B64A-54865EF64784} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5F1E2BA2-806F-4A31-A8A9-BDFB43DB94A8} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5F6D15EE-3E9D-4F7D-8288-DD05EC731BE5} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5F77BDB4-1504-48A4-8E9B-7FCA37D6609C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{606F2EA9-143F-4284-AD12-FE3BDBADB733} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6098AEE9-A0EA-41F3-8461-C45A4C7D5093} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{61258718-9EBB-432B-A9F5-9F12FF992631} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{61635E07-9DFD-42CE-97BD-A5F661C3138D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{61801AA0-2C66-4400-AA5A-3208E48BC927} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6195EBEB-4C51-4521-A6DF-265F63268DC3} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{61A4944D-E343-49D3-AA2A-B1DF9715E145} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{61CEDB43-5AF9-43D9-AB16-09F044E7067F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{61F7BA5E-6A3C-48A0-9260-9DB6C60CF8A3} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{62009346-B54A-41E7-9C97-F3263D4B5F61} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{623B8708-FE16-4468-9ED9-1FE59050DDA8} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6316ED6E-106D-4801-AF79-9EA7BF3C5A1B} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6330DA28-4A79-4661-BCEF-21631C486012} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{637B0373-335E-4F64-BCC5-5966D7B0772F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6413FD35-0BB7-4EBB-8F78-60267B339312} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6456FA82-C7B7-478C-8DDE-2F772A99E64A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{652CB739-39FD-4A14-B87A-21A576A292D3} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{65BA3084-3E36-492A-B01A-F50D39911AA8} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{666578DE-B60C-457E-9D29-B39892E9DECD} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{666C6890-58AA-4F26-B7C3-541E90164BA3} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{668603DF-5D20-4627-B962-3A7704C2BC15} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{66C9C1A0-6AFE-4AD5-B535-3278049FED56} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{675C1A86-A306-4277-8A71-94B5F0677B49} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{67808DB8-EF77-45C1-A90A-A309F9AC8B9D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{67D62C2E-DF59-40C4-A8B4-1E7849ADF360} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{67DD9184-D480-4D6F-BEF1-573C5E0FA3C8} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6805A891-92C4-4FA1-828F-815C082A83FC} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6862766F-D239-47AF-88E9-B1B39FF20A0B} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6898E326-0B80-4E87-BCC3-BF6560FC673B} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{68A2ED47-5DE9-47FC-89C5-38923C17DEE0} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{68E5F0DB-7FB3-499A-9180-EE3E661783FE} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{68FA8B59-DE77-4E1E-92D1-747D10FF84D2} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6942FCA4-16DC-47CB-8661-D3D115809051} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{69F75BDA-D14A-4CD1-A7AA-7E817932D4C9} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6A209426-B978-492B-B708-47AC9EFC8C90} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6AAE1B0A-6323-451D-9471-A1A665614AFF} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6AD050CD-C80F-492F-96B2-94E1F2461E07} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6BC6616B-93F0-4BFF-88A3-C1FE0AAC8C9C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6C048B00-23F4-4A66-9C77-93271EEABDE8} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6C453CC7-3714-4408-A243-C9C610809F4B} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6C779EF4-27F3-4CF2-81A0-83C1A8A78C86} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6CAEA475-A67B-43F0-A769-EDCAE9D1894D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6CC1D482-8078-4E83-A5AB-12F6ED41E487} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6CEA7E80-1E8E-4BFE-8AC9-3A42CA1A8444} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6CED1F78-2660-4E85-9035-C20B1B38FB5D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6D7B7C5E-9CE5-4329-BCC2-6D6CE12FF0BD} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6DD0A87A-1EF3-4F2B-8D49-1FEFB44C87FC} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6DEA9422-2333-423A-8D75-8C06B53993F9} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6E4728D6-E221-4540-B351-A601D3BEDDE0} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6E4956FC-3A4B-4461-A847-0D4192B1680E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6E73FD9C-0535-4BBC-81A8-44DC32711F47} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6E8C8257-D7E4-455E-82BC-61D381EA384E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6F013BFB-A113-40B1-A086-AA31D3ED657A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6F476140-CAEE-4692-B8F8-9EF23E2789FB} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6F60584C-54C0-43EC-9F73-12DE287791FD} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6FBE5362-60BA-48B2-8D96-A6E7A52D51D0} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7025862A-8459-4A00-A524-7D56281BE091} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{715F5D3A-9D81-49C6-8639-ECFCB5651BF8} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{71AB4638-81DB-4635-8749-21AAC1E01E58} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7222DDCC-6CB1-4858-8DB3-940D9FFE21D3} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{72A319B9-2BDC-4178-ABE6-C94BEF16F54E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{72B0A816-459B-45BE-87E4-6426770072C1} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{72B7CF76-96EF-4D81-8513-5F3F07AA5446} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{732C2A3F-F7CD-483A-9A29-5A241D1C4ACD} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7380EB34-B729-4EE2-8D06-59064A1DA831} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{73A45111-B00B-40CC-A1A2-C5F089A2AFC9} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{73EDC083-8917-4A80-A210-DF3422CC29DB} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{74E6C6B0-4E39-48A2-AB68-E69D403F3C4D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{75A21F67-06A8-4A12-B7A9-7AB94BF262A0} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{76013C93-561D-4941-92E9-D663F133533C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7606F96E-472E-4D30-AE40-07FCF45D7E73} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{76166F1B-8BA7-461F-9CD2-D480C0CF27DC} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{76F49F5D-D23D-45A5-8423-B2E8C5D73855} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{76FBED18-1BF2-47AB-844B-B01DFD3DF304} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{770C022D-8EE3-475D-A117-E0AF94447749} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{771FBF82-3DFD-40DD-9BA5-162F2027BA03} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{77299E67-8B41-4399-94BF-19152F14EAB3} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{778D9FD4-7346-473B-816F-4F906347F8F4} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{77ACCF11-A00E-44F0-BFF2-BB8D0985AE3C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{781B4132-473D-40A9-8FE6-12D34E00A0BC} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7856345A-9356-4719-ADCB-6503AF768BD6} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7904F1FB-4973-4289-8904-7F574D60CA48} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7935A1C4-1507-4A6F-8C9B-AC690328B319} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{795CABD9-2995-47DC-81DE-9FCCA2A81282} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{79B7EFAE-C60F-4A69-972B-A4C65292A4DE} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7A44EBDF-2F76-427D-94A7-FD806A1C68C4} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7A8E6572-7DEF-461E-854C-FAA7A3EB3B61} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7B06AE9F-D1B4-4802-84F9-799591330192} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7BE7080B-38F4-4C05-9FF1-6A63D5176430} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7CAB70A7-4486-4156-B55F-9A99704A4306} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7CE4FB70-300D-4B28-AE0A-6DC250917EB1} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7D0BAF1C-7DF3-4E8B-9F26-BE731DC614D1} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7D1E9546-AC11-45F4-9C9E-6B834698CBA3} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7DD2039F-B153-45CC-9262-AB169AC515FE} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7E1DC06D-C29E-4315-AACE-ADB07D7BDC30} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7EF6B049-B348-4291-A92A-7E009938AA01} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7F526A39-F8AF-4F31-A4F2-03D8F4BE148F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7FBFF7B6-0621-4E42-950C-9BC2085ED003} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{80717576-DF96-48F6-88A0-9A5848AE1D9A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{80CEA8B2-A4A9-4C4F-AFD2-22528C2907AF} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{817B4780-4D03-405F-BAC8-4360D2F1DBD3} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{818B3DDA-359B-4048-B48A-06E2A73AEC88} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{81A099B7-BFBB-48AC-944E-C04FE3570C73} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{81AAE501-8654-46E2-96D0-B2E2D7738ECD} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{81E3C338-C569-4F0C-A611-B4A602FEA03E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8244349D-09E6-4AED-884C-55ACAE2A6B07} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{824BE841-DB49-4682-926D-A679B7A0E42B} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{82BA5422-7CA4-48D0-B2CE-FA7E2A19F8D7} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{82C1DC8A-943D-42BB-8E46-22DDC114BA7F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{82EB675B-2804-4DF7-A2F5-68821A9353C1} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{83AE7660-04A9-4B29-8A2E-707924431513} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{83BB24C5-E514-43E9-B327-B525EFA92B69} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8423292E-8BB9-4B1F-8554-44B222708018} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{84B3B73E-6887-407D-9255-D899DECF9EAF} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{84CE0EF7-7038-4125-A8A7-97204DC701A6} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{84E9A5D6-739E-4427-BBA7-6A637B1D8EB4} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{853A45F2-FDA1-43F9-B940-587C1CF21109} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{855387CE-3A34-4EE4-940A-66F6F1671163} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{85AAB295-0E0A-45BE-A1D5-90F95E34F50F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{85AB624F-779F-40C8-B956-8723A3D17598} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{85DF2F4B-41A0-42AF-B816-EA14CDFA29B4} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{85F60712-053B-4AAA-96C9-4B08F83577C5} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{86EE926E-86BC-406B-B11F-4C070820BCBD} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8846D1AE-08BB-44DB-BE91-3B838F58D01E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{886D58F7-8583-4113-AB51-358CCD774809} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{890258A1-04B5-49D6-B90F-81A6B5AD9C04} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{891F2A5B-7D96-4721-A4A5-173A839D7203} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8951719D-3741-4B8B-AD34-BA762E078597} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{89712827-30A8-4AF2-A6C2-E4FF36875AB1} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8989AA2C-B42F-4047-93F9-17C86DC0E5AE} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{89B0AE1D-052E-44F4-B474-621AA81A3D92} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8A8400B6-4CE0-4504-BF00-D73C36BDEDB4} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8AB89E73-67B7-421C-AE56-3D8AB53FDFFE} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8ADD664E-02B0-4E47-AA42-7B454526510F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8B5D6148-4A71-405E-9284-6CD9B1EB6095} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8B64D8DC-05D4-4287-B06B-893E70A3EE04} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8B76628D-A396-43DF-B7D8-47A1036CE29F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8B77ED61-282D-4CBC-8747-F18017EDF21D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8B9CCC66-4416-46A7-ACD7-747B418E94B5} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8BF3FEBC-ADAA-44EA-B89F-1CBCF7CF3FB3} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8BF65D65-8CFF-4B42-8381-9CDD79D891CA} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8C8FE0AC-7002-421A-A959-4F244134AEEA} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8CCB305F-CA29-4478-B899-84F0E12BBB36} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8D3E6B97-6E0D-4019-9DBC-D4891EA4AFD2} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8E089587-A223-4D8C-9CAF-FC213414CD24} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8EA7A5D8-597F-4C96-A6E8-95CAA2FEE109} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8ECFC54C-81A2-4E3A-9D92-81B1D97A3E77} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8EE02CD1-4377-41AE-A0E8-927366FE1E57} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8F095D3B-8869-4217-93CA-4F17703ED375} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8F859DFD-81A2-420C-BCEE-C498A636FAEC} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8F8E4550-96A8-4758-89F0-8E44DC4AEE49} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8F9A6637-01BB-48DC-8BE4-162BE88539D4} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8FA9C68A-DA20-404E-B528-B639F53FB931} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8FB5598F-E648-47B0-8EF2-7B5BB7020D49} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8FC315D4-CEDB-4AEE-8DCC-4022B83C7CAA} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8FD8E6E4-3AE0-43CD-9F3A-F255B764C97C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8FEDAB74-72ED-4F77-8093-FF7300A0200E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{902A4874-2722-46FD-BEB5-309A019046A4} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{905CB9D6-9942-46E3-B826-FDF90711B55A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9070F6F0-63F1-48C8-8955-AC084DA744A4} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{90CAA841-C633-430D-94E0-EC03A0247968} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{90CADE91-175D-4421-99E4-FC1FFCAB0697} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9153834D-5727-4980-AC28-C17FDA635C72} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{919A84D5-09FA-4438-A408-8B6D2117A971} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{91CA5D82-2A1A-47AC-A0DE-E404F2C78E49} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{91D00F5C-040A-4180-B048-AA586BA16402} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{92C4BAE0-0353-4FEA-AC0A-BFC2C5CA7FD7} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{93A63F7A-2381-4B0F-B2AA-1A155B1DDB9E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{949AD78B-7BD6-4CF4-965D-083C050FD668} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{94A938E8-C866-4A00-A3D5-AAFBE87DCF07} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{94CEA028-0D0F-4B2D-86B7-36021B9BD6D3} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9501E2DD-CB60-4DC3-B039-9F3F3B9207FF} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9505C00E-8A36-46FE-AA29-B4A471E38802} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{955325CD-84F8-44C3-A286-0821F20EB4FC} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{968543B0-148E-4C09-B384-1ADEB92564E9} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9694A4FF-C7D0-43DE-821B-F39A66008D8B} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{96A797F5-64EA-44C4-8BE8-7A5B8C595FE7} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{96BF8AC2-F8F7-4956-A4B1-D6CCBA521204} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{96D071DC-DC7D-427F-B3A7-1F5BB74E5253} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{974E886E-7D46-4CD8-B400-7F1557CE9496} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9785B78A-9AB1-4B98-9565-B210DC6C96AE} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{97A27C35-0590-4AC2-A184-392BF699BBCE} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{97C62A6C-AA58-4CF4-8CE1-DEFF5555365B} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{97FDFDD4-A4DB-471B-9F8B-3C195DFDEE36} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{980B5D8B-2F74-426F-A13C-5D36E5B0F296} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{980D1DEB-1C0D-4B40-8F61-D5AF4A6216DA} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{987A0C47-6D4F-4854-9FDF-B17B21C7946C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{98850E29-AC87-4E82-A9EE-E37E7875A92F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{98A94077-67EB-4D04-B2B0-23332A84E8CA} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{98BB8C85-9B2F-4DDC-B251-3EBCB815CF23} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{98D8660B-FEC9-47C4-B01F-7B7D955A07F1} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{98DE04AB-BD83-4A5E-B3DD-F36E79E75FC7} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9939EBA1-A566-4BA4-9794-E3DDBD294A33} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9963BE4B-9202-4F06-AC18-8BA83FCA4D28} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{996FB164-A294-40DD-9DAD-09E97772EED7} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9A0DA842-3373-4AC0-B36C-7185C3368DAC} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9A178052-9902-4B7B-8403-8F459D529C14} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9A2CEEEB-BF47-41BD-BEC2-2D34D57B7F27} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9A738096-7D58-4413-A518-03288452B971} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9B0F3C77-E14B-4152-9540-A3C1B822E9FC} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9B146D7F-B1B1-4356-A7DB-64F9B451E174} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9B1CB861-498F-4F3C-B237-0AD5904A0CAF} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9B6BD41D-CE5E-42C8-827D-22A279FE678E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9B6F7637-D7A3-4BD1-AF8B-2912EF20F1F5} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9B8808D2-4C88-45BB-AE39-A39EC0BD860C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9BC5D7BB-96B0-46CE-ADCD-6E72DC62548C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9C1954DB-7A49-4390-9A5C-5B2DA1976B1C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9C656AAE-05AF-4B52-90EF-E194933D1B6A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9C708565-60F9-48B6-AC2B-1BAA18BE2D2A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9C7FFECF-79FB-47E1-A698-37A490FEEC13} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9C8761B7-3104-4ACC-98E0-5C1016B729C9} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9CA26488-B6E5-4C49-94F3-A3D920EF0623} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9CE272A0-CFC9-4DA6-9FC2-E4A94105AE70} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9CE77EE9-442F-4B3B-A507-4388DBDCF446} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9CFF2912-1775-4FDF-AAA7-84C1710B16F1} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9DA1355E-4ACE-4553-8F45-FC15FEC6BD7A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9DBC3355-FD2E-4E0F-87D7-964ECC9910E1} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9DCD6F9C-D5A1-4EE9-9ED0-F960B974FA9C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9DE7D8B3-F807-40EE-8962-98634A25EB34} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9DF9A6BD-36DE-4B1B-AB7F-D8D3E7FE2BD5} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9E0BDAC7-AC33-4BEF-B521-E1EE95EE78D4} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9E0D1F22-E6C4-40F4-B280-EDDC496CF05D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9E213294-86C1-46C5-AAE5-87C40F0C3F7A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9E6EFD56-A20A-48D6-A193-AAEC6B4D285F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9E6F8AAC-80D9-4D67-BFF1-E527F57943B2} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9EC1C6AE-D0EF-45AF-9AE5-A6D7E9954BD6} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9F04DE7A-A9BC-4DFA-8FE1-37E9D3605CF4} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9F05A1D9-0C3E-42ED-AED8-8581452C5730} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9F2181EC-DA1A-4E35-833B-0F1669C20D44} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9F254659-38AA-4427-B1D8-BF098074EB96} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9F2A284D-57CE-4D23-B2FC-F7B0192D87CC} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9F8D2BB0-345D-4EAF-9929-72AC37D02C6E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9FB63D53-71A4-4FC1-B8FF-0B823E6E009E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9FE9B614-A82F-4543-A524-0D9B542613AE} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9FF45D10-D9BD-4A96-9199-23B15B540C34} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A00434A8-DDD1-4364-A5CD-836FB4A81EF6} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A0284CB1-739A-4035-8A7A-615763AF0B93} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A03DE27E-E9D6-4E57-9917-8D5F4D23F961} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A0E2325D-0F4E-4371-BFB8-FF1D3F299DD8} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A23B235B-5899-4B99-B8FC-AAD525763381} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A32DC0EC-07DF-46A5-B81F-5C120266362D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A3385A7F-1703-47C3-AC57-BC4F9A762E5D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A3703B4E-2EAB-4523-AC96-56E1347DEA59} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A3B10DBD-A8A3-4CD4-9C0E-6945241CF933} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A42511D6-AC15-47FA-B070-355682886CD5} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A45D93D8-B237-4A36-AE0B-D3825F7D192D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A465E676-9916-44B6-9739-2CC2F428B888} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A4A5DCB2-1053-4106-B620-673EE66968DD} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A4A9AE67-25AA-4FAD-8838-5D8350688C40} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A4C39848-CBD8-4C3F-BB50-8AE263042BAC} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A4CAE95F-EEDA-4687-8D6E-4108B3935F74} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A4E27094-2415-426B-849F-B9ED52BF1CBC} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A4E63669-40CB-475A-BA2D-B6396AE707C4} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A50A0FBA-FAD0-4967-8C0B-A2C697D986B4} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A52FD03E-AA8D-45E9-9E6C-FCD7643A9F77} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A59846BC-49D1-4980-A703-AB10132AB60D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A5A45AD5-8CA8-4329-A02F-A1A29074BA8A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A5FD3D7A-F047-476D-A31A-B811485663D3} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A608644A-EB31-4DA0-9E56-CA6CC40D995B} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A6495115-78FB-4FB2-80ED-501F94185F89} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A6CDAC19-FEE7-45D7-8081-D609EB6C275A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A6F40EA8-1C6C-4C75-A261-D9720D5A7A21} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A77D971A-5DD0-4045-9336-1FE270222476} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A79DA3F3-4C29-4F8E-8F97-CD8D1EC57B0F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A7BAE428-3202-4E55-99BA-9AA196030EF9} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A7C57C2A-2AF2-4B88-95D8-5E17C8BFDA0E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A7DB1F9A-8747-4A25-A8DB-01D8BE0A19A3} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A8165D7A-E517-404A-8008-35784AE019ED} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A843EA6B-D849-4326-A403-825B6FEB5342} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A8446ECC-890B-4F0E-B7C3-2314691674A2} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A9FFB309-3066-4B05-83D9-55C534D82E0E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{AAAC5AF2-3BD2-4044-87F6-EC90D42933CE} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{AB2963C9-FDE9-4304-809A-41DF0DF91C63} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{AB746141-4F9C-4CB1-A6BF-C2ED6F2CDFE1} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{AB8C0EA7-EA51-4C36-B03E-550DE4057BD6} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{ABC3D5D8-5504-4DD3-8B40-66AA1A7B9860} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{AC119FDD-A0E0-44D8-9ACF-31B3F27A2E3F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{AC35D47B-A9C9-4EA1-A9EE-33C2B947662B} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{AC9ED1C4-E106-42AE-9FF6-269EF6F043DE} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{ACCDC27A-51B1-4AFF-AC61-9FF0138C1E46} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{ADAB58AE-0B4B-4B10-B801-17A418A7A99A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{AF2506F4-486B-4459-A9A9-BA930814485C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{AF9E802B-61E1-4B15-B8AF-0558D1718F7D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{AFCD6DE6-C241-4727-9C6B-6FB2C7F7BCF5} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{AFE6F7EF-0416-47BE-9375-4DC4C1328CB2} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{AFE8E982-E06D-4BDA-B3CA-55F6BC54DB0B} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B004FA44-6AA1-453C-9957-388B33EBFEA3} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B00C6DB1-6ADB-4603-B149-2A60F4D675A8} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B0563CFC-B133-4E48-94FD-EE14C3B74DB0} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B070557A-0230-4AC4-98D2-B2D49F9E32B2} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B087DC05-00CB-49A5-8C33-4DA3E1D02CA4} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B0CBA6FE-4C53-45B0-8CB2-652E0A5FCE58} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B182C3DE-9CD2-4D83-97AD-7D7125EECBE3} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B194E46D-3199-421E-B042-F50B9784DA6F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B1DF3788-40EB-4786-BBCD-E51934A3DC0B} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B1E9ABC0-7A50-4FC0-B9C1-435FBF62BEFF} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B1F09083-27EF-4815-A631-EE2B614B673C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B2BC5099-F27F-4F23-9D30-C04DFE546536} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B2EF66F8-6B05-432C-8F3F-96F90D7B9E38} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B3911580-3FF2-4598-B877-AB864AA81C74} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B3F99B35-A0AF-472B-9E0E-AD2F1A8DCD46} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B43D67D8-19D3-4670-ACD3-CAB540FA36F9} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B4BDE5C4-F6AD-4914-A10B-C5C5CF66DEB8} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B55A0020-794E-49B2-BB3B-CF35EDD83ED5} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B5A0543D-16C5-4B13-8D6F-625F7925A0A0} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B5AEB329-C9BF-46E4-B330-E31F2EBA141D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B5CAE303-51D3-4476-9327-0F47D0181CAE} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B73156EB-C0E1-42FE-B4EE-696725ADDF44} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B733AF8B-AE96-4D83-B77E-248C2FDBD72D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B76D8A4E-CFEF-49F1-8EAD-C6F8B1FC5568} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B76F82F3-EC04-4334-B33E-913B1A2F890E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B7751ED5-5D56-4EA7-97C7-BDB37B91FCAF} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B78BAF7E-81F8-46F9-8719-025E0B133830} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B7B15CEE-21EF-437E-8C40-B4955986EB54} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B89F89A2-829D-4E6D-A906-8CCC49DFC74D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B8D53BDF-202A-4242-9CB3-50B81A06E510} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B92E0810-BC6F-48B7-85DD-B988B8473A64} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B9753736-C66F-4731-B1D7-F206462FFA0E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{BA1E0FF1-5087-4799-A2EA-CECA7CC27450} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{BA446ABA-0425-493F-974F-5025677A2689} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{BA892F8E-C0D5-48BF-AB32-F8BF0C6BCF88} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{BACBC95C-C6CA-4CB1-8F24-6B87D557A384} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{BB31FADC-506B-4A78-941A-4B34CBFB8C7D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{BBAA0041-9E29-4EA9-8F4D-261CA46D577B} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{BC644CBA-0F88-48AA-A5D5-B3DC9C4A116A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{BCF94DA8-9692-4CE7-AB03-CA6F08323FEC} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{BD061459-DFEF-4761-912F-0C4734E0673C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{BD947F50-B215-48B1-ADD0-86DD7E96D077} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{BDDAA069-1B87-4750-B139-EEE045C40B10} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{BE0185EB-F429-4DD1-91AD-42B09049D4C9} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{BF9CEF63-365F-4A2D-BF50-14F3FC1A37E3} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{BFD4962C-B1A1-418D-A028-606BFDC9B610} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C00ECABB-29D2-43F1-B12C-962EAA9533E8} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C0403DBA-19CC-4644-884C-6009C266559C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C0851755-73BD-4D51-AC50-3441EEFA8FBA} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C0BD7AC8-647D-4282-83D1-67DBD2B25C20} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C163ECF9-A921-429D-98C0-C19F4DFAA57C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C19AFE66-AEF3-40CC-9417-71DCAA28F0D0} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C1B958E7-EE3F-4457-B9F2-18B253589F7D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C1D1CED6-086B-4A1C-B7CA-5349DEC04D04} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C208E610-6D5F-40E8-B7FB-7BFBA8ACF75E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C214EAEE-3557-43DF-8813-BCBFA59F83C5} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C249938D-F652-4648-A68E-AD48C3EBCBB1} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C24D188D-6B8C-4EA9-B558-E182BB54C3C8} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C25A36FF-75E1-46A8-8FFE-AE55E37CA50A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C26221C0-1B25-4079-A7F6-EC9B4C730DA2} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C29B3894-E4DA-47FF-957F-FE86C5E7E666} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C2D05065-9195-45BF-9350-AD6F9E3C3DFD} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C30FD0D9-4915-466A-B6B9-8FFD74998A89} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C34D917D-53C8-4904-972F-CEF811E8152F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C3814A99-4178-4C3C-8421-B8F1D00F7582} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C3A26A41-544A-4816-A4E5-A28EF686A9DD} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C3AB1AD3-C2AD-454D-B69C-5C11214C7050} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C42A8E5B-05FA-4ACC-84F9-7ECBE59B4B8B} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C46A6931-D793-4CA0-83ED-9A3E8E9BCDF5} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C5808C67-C5C6-41D5-B2E9-A00D14628E30} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C599B55D-9512-43B0-8C96-2DBB1598AE75} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C6127610-4E26-4C9C-941A-26E965C91E23} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C6173687-5E47-4D77-909F-585CFB814154} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C7CDF330-2439-4FB2-87BA-4EB63DE5B88F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C7E4DB6A-A21F-48B7-A4E8-655DB97B29F9} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C8027DC7-C044-4119-A06C-1AF2E6508269} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C872D961-A326-46A9-BA67-E4F16C8573D5} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C8809DCB-6276-4D4C-B31E-6D8C643FF1D8} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C8B320FD-BD26-4C59-BC8A-FEE03A6BC317} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C90CB9F1-67B5-445D-876D-BF8B18998192} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C9B69375-F8B3-43F4-87EB-9DF780319316} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C9C11C05-9E96-4AE7-8B48-7A712C7334AE} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CA06B7BA-5F5F-492F-A59D-DB355C50AECA} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CA5C98B2-1067-4E99-9B80-EDC6BF09CDDC} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CA65F48C-02E4-425C-AA9B-21578A4270B5} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CA6D5409-5DC2-49FF-9B23-581E313CC796} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CA7CA343-FA98-42C0-B009-2722516FEF1E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CABBC835-E089-4475-8433-0844C96A6E94} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CB1188CD-7895-4775-B579-DDBF5A096F3A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CB86B9F8-EB94-4837-B113-737226E996A4} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CB980C4C-93EC-411A-BC22-1C2731166008} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CBBEEAB5-8B94-4746-9BB8-B1792909359D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CBE91393-3FD9-4215-A35A-FD59BD43932D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CC09FA18-6D94-47E4-BBE8-4A750774630A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CC399D20-4204-4EBD-A628-85CE818F8DC4} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CD4FECE2-ABC1-4901-9E64-A896BE979FB6} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CD8CF962-A512-4EB0-AAD2-A7C3F6DEFBB3} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CDD775CF-5B58-4139-A8B0-58697877D256} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CDDBEEF1-E954-4980-8D70-5FA95DDC2CFB} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CDF70702-0474-421C-9E68-8026D07947CE} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CE2D13FF-021E-4411-8AEA-09564282FA26} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CE6923B4-0158-4667-964E-BC57D3CD1B35} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CED30237-DC08-460E-AB8E-87863398EB0C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CEFFA33F-8931-4478-8704-4CF0CDBF00BA} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CF02A0A6-D437-49B4-8B07-A7509858010D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CF584ABD-536B-445C-B88E-2DB36CEF1FC1} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D02CC3F4-4ABE-4262-B8A1-77F113E602D1} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D0491085-CA36-49A9-9357-FBA34C05586E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D09E66F0-491B-4B35-B349-6999AB0EC168} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D0DF2107-7308-43DA-9F57-6097B98C85D4} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D0FEBB08-90A5-4DE1-8908-27B179BF5F23} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D130B157-73E6-42F9-B906-DFCCCDFC4B97} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D167D635-AD75-4F7C-B42B-303E085F7C59} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D1B317F1-4750-4F26-937A-FD5637390490} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D1E2D266-0869-40FC-8D6C-6D5647881F76} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D1ECE5EE-E5D0-41C0-A367-A18880E381BB} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D2D4491F-8606-4461-838A-506036033F9F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D2E17080-A791-4D0C-9657-A3C84E526C3A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D334D817-DB0C-4B97-A5E8-0AFF4392E876} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D36F9B95-A181-499B-A6FE-C641161388A7} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D3938BEC-388F-4C38-9D4C-689319B4468E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D3D51B6B-06C4-44E3-9FE5-9086B6939E0E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D45E792B-235D-4ABA-9408-85FA85A1968D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D48E9E79-6441-4748-A9C0-96AD56234B27} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D521F551-936D-4708-88F0-72DDBCAFF4F6} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D54C3CFC-63C2-4589-9D79-AC41B5488878} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D5D353F4-2000-4C0D-AD92-218561505872} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D631AD1F-F995-46D8-83D7-E3127C8BA4C5} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D63359D3-9DAD-4B8F-A5D0-D84B6385DCAE} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D66B3B8A-AB32-409A-9927-9A4F15F426F6} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D69D4945-C426-45BD-B093-311B34D9B499} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D6A1E014-2ED8-40CB-913E-2CDB90D064FC} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D72094FD-0343-45CF-8600-CF72E788CAF9} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D7C63580-959C-4948-BE86-8F5712F8F4AA} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D7D6F8EE-733A-48AB-A3A4-E4E8DCDC143E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D7F48C07-7F1C-4C33-90C7-D998F2381328} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D8B0FB39-2F5B-4A40-BDED-2B1AA5F2D36F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D8BB42AB-D5D3-47CE-BD72-A735C97003F3} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D8CED3E6-D6B3-4341-BBEA-14B9D592E280} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D94BE723-B6DC-494D-8E94-7CCED8C1CFF9} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D953B3E1-6B68-4B48-8393-6471DDBD5835} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D9AF5001-066F-4A07-ACAC-2589BCCFF5A5} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{DB16F4B7-54E7-49D1-B8A8-EC67074C8C17} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{DB67D5A1-51C8-41E1-879C-A507D6F681E0} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{DB76FA1D-63E3-4ADF-9CB6-AA910A5365E2} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{DC297098-A641-4B31-8373-5EFC5A682C03} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{DC510CDC-9A14-4D03-90DC-FEF95D98E43C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{DD16E973-0D14-40EA-9491-6D0279782423} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{DD241ED7-8C95-4F7E-8555-728DE20E6DC2} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{DD9751AA-C798-4A01-8453-F76314E0E034} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{DE0BADC5-71AD-4EAB-A22F-E1FE529E014C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{DF684E01-CB6A-4D1C-B5B3-8F39A4284CE0} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{DFB96013-BF72-4CF3-9FD2-44F99D6325EA} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E01BDA12-B2A6-4461-AB52-EB7CABEB82EE} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E0995144-1D30-4E94-8DE5-660EA20FCB76} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E1A44DA0-402B-49E9-9443-DF0DAE294AC5} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E1D8E595-64F6-41BD-9CDC-DE9BDA43A96F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E263F783-249A-4747-BE35-FC3E0DA50A54} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E2DACA57-1B83-416D-AEF0-B9D10AD021EB} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E2ED68EC-6354-446D-A085-76B14FC58A2B} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E3527088-638D-475E-91C9-8A441056CF55} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E3578CF6-0EC9-416A-B463-D7A07795CC30} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E385478B-6D89-43EB-841A-BF4895777136} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E3A148A8-542C-4A73-8113-9DDEBF68B436} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E42FA05F-BD60-4C23-A1AF-8B9D638AC7C8} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E436077A-7687-48D1-B972-911CF150BAD1} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E44137C5-BB39-438B-9888-48FF16934149} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E44EEDCF-2757-4EE1-9980-7B3D1084E143} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E4535409-5BB5-4AB6-BC35-56515CEEDB5F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E69057A2-9808-4B8C-83D2-68D61F72FD07} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E6C39C4B-E2FC-4AA2-9FC6-2BE6B3170C76} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E6D9EF85-435D-443C-88DF-0B5B9A19F64C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E6F7EAD4-65B6-498E-8ED4-BEF4900C8D09} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E6F9178F-B38C-4988-8389-D93BF0DB9486} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E7B79101-7255-448E-AAFE-F83D8B286440} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E86DAE09-028C-457D-A0DE-E580D3F2DF31} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E8FD887E-5C50-465F-A4D1-DF0D3613C379} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E91C11B7-9063-4062-998F-F4B8D6FCDCF7} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E9331BA7-663A-4FD8-9815-F1818A078D55} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E93D3FAC-7898-419D-9CD4-948ADEADA7C9} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E9497348-F98D-4F0F-8B64-9BB162C13B98} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E9A596CC-02C4-4C57-A407-8890CC29FF2D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E9B3AE31-738B-49EE-8485-FF6402AD7DFF} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E9BFC748-ACB9-43A7-8BDD-05C574820706} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E9D5B1AF-5897-415A-8947-D5F63830E566} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E9FBE22D-48D7-494B-B40F-6BA344DDE91E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EA4690B5-D039-4249-BF25-5E2177DC7DED} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EA6DB2ED-C339-4F66-84D2-CD43AC64A3EF} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EAC64653-539B-4A07-8EB6-A59D8F7A2ED2} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EB003408-E2A0-4CA4-8D39-85EB8DD8E632} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EB0C715D-32B7-4C12-A576-8B0CA69F1625} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EB63845E-4C72-46E2-8E13-B19BD3FE020C} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EBCB4908-CD9F-4068-A647-91D6A2A1E5DD} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EC29CE83-03F6-4FAB-BD18-51A7E7852751} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EC44B743-881B-40AD-8C5D-66E9CEC1D492} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{ECD009E6-2714-4087-BFCE-596771F3EA02} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{ECD7EB50-CED8-489A-8F4F-14D2513178CA} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{ECD87620-CEA4-4F32-BB29-DDBAAD6B5D67} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{ED0CD77A-BA92-4AB1-87CC-19A2631C2520} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{ED6614F2-4BBA-43B9-903C-2C81E228C58F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EDD3660F-A246-481D-9094-3E473C6E9107} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EE3B13FA-1D37-4C3B-8E99-0735D7EA7204} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EE424805-BB6A-4FC2-9C56-5502121FDC93} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EE440399-A718-4471-8771-F9588FE7C251} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EE88A6EA-E18D-4BC7-911C-7CBFC89A17D4} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EF2CAE5F-82F8-4E29-B70C-EE9EF167C165} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EF7A0F28-0B2F-4B8C-B6EC-1111994C7E46} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EFC5C2CF-E02B-47DD-9696-DD0C038EADA9} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F0336B91-241C-4D1D-A4C7-71EEDDA3C140} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F0343B18-0B5E-4ECC-A5A1-A3A16F10F648} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F066659C-EFC1-4F63-9E35-E78B201E3ED9} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F069C88F-2353-4CC5-8385-684F807D41E2} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F08EF942-43AE-40EA-A3AE-2C1C669E2F6B} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F0C638E5-33DB-48D6-9809-B931ABE5A3AA} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F2466E98-B181-460E-B653-4FDBD5ED02FC} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F267897F-5B7A-43B5-B3A9-B77E70D7BEBE} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F274C237-E4F5-44EC-A7C6-6A0EDACF3A50} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F29065EA-A730-49C6-9295-5E3CC43C1CB2} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F29A5537-B4D4-4EA7-80CC-BA14502D64F0} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F2F72ACF-2F0E-4902-83E0-CB1D3421275D} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F301B829-FF78-4A84-9B82-CCDA5DC4A0A1} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F316FE6B-CFCD-49BE-91FD-ED7F1BF657B2} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F33688C5-B5EE-484D-AA64-AC9907B3DCDA} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F3C8D6D8-505D-4A76-9F45-394863996E73} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F3FD9708-8C6D-4E27-AC29-AD36F723B162} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F42CBDC1-A5B3-4E95-A3E8-6CEC3364D08F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F461B8BC-82DF-4CF0-8D9C-F40650A85EAC} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F4A4B378-AF33-49EA-8C99-3F5CD91F9206} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F5FC90B1-9AC5-44D8-AD25-1C60C3FDBA25} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F695C1CD-901C-4CCC-99F7-9704F81E6808} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F6A586B2-991B-4714-87D0-3DA4FB1C503F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F6A5BA52-7398-4DCC-8ECD-C53E9BFF7A55} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F6CC7D0E-BABB-469F-9B4E-218B6630CE54} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F6D233CC-1AA2-4A08-A240-2CD163359F19} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F8140447-4577-4656-B792-E4EF3538C0C5} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F82BB36B-07BA-4D2D-940B-EE3CC7EE8E9B} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F85023CB-43E7-4EE7-99E5-F2B5C54E51D7} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F878CAA9-3EE7-446D-BCA1-5C415607B2F4} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F88735C6-765F-452A-9F0F-1F5061B9B87A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F8FDEFE1-4560-4641-B21D-C62A8012CA53} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F9122902-9FD8-494F-925E-21DBEF683F19} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F952C16A-9503-4AD0-BE73-31318E7C7A40} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F966F2F1-A6B6-4817-8741-A108EB32DB8F} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F9759BC6-87A6-498F-9550-C4A52C1B270E} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F9967310-E3B7-4E3B-B54E-87FE754BED52} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F9A88D31-99CB-4561-884A-2AF6092A7C64} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F9C63362-D728-4D47-A4CA-D100478D4C45} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F9DE036C-0C91-482F-95A1-78B3E6802793} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FAA7192D-0938-4A9C-915B-FE800A2ABC73} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FAC84FE1-5D53-4407-934C-3EFC644C7C91} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FAE227F2-332F-441D-AE33-1A9418EEE8CA} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FB265974-E595-4E35-AB46-B26D0ABA1901} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FB674574-B5EB-42BA-A13F-F4FA713324D3} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FB6C99C5-3A78-434F-9873-D3841C1F3093} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FBA7B98C-1A3C-4787-AE13-D9063B73D49A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FBAF53EA-E5B2-4354-9E4B-5FB93525A532} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FBBD1C0D-E3A9-4882-843E-3E999328ACD6} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FC160E27-628F-44D0-97F6-FE37484C6D1B} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FC54D85D-7A6D-4826-9CDA-779D5A62C578} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FCE715E5-5DB7-4A0F-90DE-E7780B678617} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FD104F7A-41D1-4ECB-9EBD-0F37FC9C41F0} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FD286209-E10C-454C-8772-8E8250089776} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FD2AA97F-CE10-48CD-9559-6B60F6BF3A87} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FD7D734D-2666-4852-8512-8A15C07AA8D4} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FE19A734-AD9C-4B1C-B75B-70448E7F4639} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FE74AF7C-0EEC-4AE5-81EC-949D38BE13D0} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FE8CCBD3-D096-4AD4-864B-7FC55EB801BF} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FEC69338-6E4E-45DA-8429-471A8DF9457A} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FEC6ED44-FD54-415D-992A-1CE5AD396043} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FF38DC10-3374-4678-9B3D-17A3E0B1BE17} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FF51F120-CE58-4D03-878B-9720CE01F7B8} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FF64B0F6-9E0B-4059-B34C-CEA7CDF40F93} Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FFB2C419-C238-4880-8A70-487B2DB31366} ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 22.07.2013 at 8:27:08,38 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
22.07.2013, 09:22 | #8 |
/// the machine /// TB-Ausbilder | Wie bekämpfe ich Spy Hunter und Delta Search?ESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
22.07.2013, 09:27 | #9 |
| Wie bekämpfe ich Spy Hunter und Delta Search? FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 21-07-2013 Ran by Schneball (administrator) on 22-07-2013 08:43:56 Running from C:\Users\Schneball\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\system32\atiesrxx.exe () C:\Windows\System32\GFNEXSrv.exe (AMD) C:\Windows\system32\atieclxx.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (TOSHIBA Corporation) C:\Windows\system32\TODDSrv.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\TecoService.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe (TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe (Nero AG) c:\Program Files (x86)\Nero\Update\NASvc.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe (Toshiba Europe GmbH) C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\Teco.exe (TOSHIBA) C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\TOPI.exe (Nokia) C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe (Toshiba) C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIMonitor.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (TOSHIBA Corporation) C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe (Nokia) C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclUSBSrv64.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe (TOSHIBA Corporation) C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [TosNC] - C:\Program Files\Toshiba\BulletinBoard\TosNcCore.exe [597928 2011-03-03] (TOSHIBA Corporation) HKLM\...\Run: [TosReelTimeMonitor] - C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe [38304 2011-03-30] (TOSHIBA Corporation) HKLM\...\Run: [Toshiba TEMPRO] - C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe [1546720 2011-02-10] (Toshiba Europe GmbH) HKLM\...\Run: [TPwrMain] - C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [566696 2011-03-02] (TOSHIBA Corporation) HKLM\...\Run: [HSON] - C:\Program Files\TOSHIBA\TBS\HSON.exe [296824 2010-09-25] (TOSHIBA Corporation) HKLM\...\Run: [TCrdMain] - C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [967544 2011-03-09] (TOSHIBA Corporation) HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11775592 2011-01-12] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2186856 2011-01-10] (Realtek Semiconductor) HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2679592 2011-02-03] (Synaptics Incorporated) HKLM\...\Run: [Teco] - C:\Program Files\TOSHIBA\TECO\Teco.exe [1544104 2011-04-07] (TOSHIBA Corporation) HKLM\...\Run: [TosSENotify] - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [710040 2010-12-08] (TOSHIBA Corporation) HKLM\...\Run: [TosWaitSrv] - C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [711576 2011-04-05] (TOSHIBA Corporation) HKLM\...\Run: [TosVolRegulator] - C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe [24376 2009-11-11] (TOSHIBA Corporation) HKLM\...\Run: [Toshiba Registration] - C:\Program Files\TOSHIBA\Registration\ToshibaReminder.exe [150992 2011-08-01] (Toshiba Europe GmbH) HKCU\...\Run: [TOPI.EXE] - C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe [846936 2011-05-16] (TOSHIBA) HKCU\...\Run: [NokiaSuite.exe] - C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe [1090040 2012-12-21] (Nokia) HKCU\...\RunOnce: [FlashPlayerUpdate] - C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_7_700_224_ActiveX.exe -update activex [814472 2013-06-16] (Adobe Systems Incorporated) HKLM-x32\...\Run: [NBAgent] - "c:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart [1409424 2011-06-29] (Nero AG) HKLM-x32\...\Run: [StartCCC] - "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun [336384 2011-04-20] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [ToshibaServiceStation] - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe /hide:60 [1294712 2010-11-29] (TOSHIBA Corporation) HKLM-x32\...\Run: [APSDaemon] - "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59240 2011-11-02] (Apple Inc.) HKLM-x32\...\Run: [PDFPrint] - C:\Program Files (x86)\PDF24\pdf24.exe [163000 2012-12-12] (Geek Software GmbH) HKLM-x32\...\Run: [avgnt] - "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min [345144 2013-06-27] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [SunJavaUpdateSched] - "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [253816 2013-03-12] (Oracle Corporation) HKLM-x32\...\Run: [Adobe ARM] - "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [958576 2013-05-11] (Adobe Systems Incorporated) HKU\Default\...\Run: [TOPI.EXE] - C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STAR [846936 2011-05-16] (TOSHIBA) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Toshiba Places Icon Utility.lnk ShortcutTarget: Toshiba Places Icon Utility.lnk -> C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIMonitor.exe (Toshiba) Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe) Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe) BootExecute: autocheck autochk * sdnclean64.exe ==================== Internet (Whitelisted) ==================== ProxyServer: :0 HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com StartMenuInternet: IEXPLORE.EXE - "C:\Program Files (x86)\Internet Explorer\iexplore.exe" SearchScopes: HKLM - DefaultScope value is missing. BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll (Microsoft Corporation) BHO-x32: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: TOSHIBA Media Controller Plug-in - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll (<TOSHIBA>) Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.) Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.) Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.) Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.) Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.) Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Chrome: ======= CHR HomePage: hxxp://www.google.com/ CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-06-27] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-06-27] (Avira Operations GmbH & Co. KG) R2 GFNEXSrv; C:\Windows\System32\GFNEXSrv.exe [162824 2010-09-09] () R2 McAfee SiteAdvisor Service; c:\PROGRA~2\mcafee\SITEAD~1\McSACore.exe [120592 2013-05-22] (McAfee, Inc.) S3 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [112080 2011-02-10] (Toshiba Europe GmbH) ==================== Drivers (Whitelisted) ==================== R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [100712 2013-03-30] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [130016 2013-03-30] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-03-30] (Avira Operations GmbH & Co. KG) S3 catchme; \??\C:\ComboFix\catchme.sys [x] S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x] S3 TDEIO; \??\c:\Windows\SysWOW64\sysprep\Bootprio\tdeio64.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-07-22 08:43 - 2013-07-22 08:43 - 01779363 _____ (Farbar) C:\Users\Schneball\Desktop\FRST64.exe 2013-07-22 08:27 - 2013-07-22 08:27 - 00101265 _____ C:\Users\Schneball\Desktop\JRT.txt 2013-07-22 08:19 - 2013-07-22 08:19 - 00000000 ____D C:\Windows\ERUNT 2013-07-22 08:18 - 2013-07-22 08:18 - 00560639 _____ (Oleg N. Scherbakov) C:\Users\Schneball\Downloads\JRT (1).exe 2013-07-22 08:17 - 2013-07-22 08:17 - 00560639 _____ (Oleg N. Scherbakov) C:\Users\Schneball\Desktop\JRT.exe 2013-07-22 07:59 - 2013-07-22 08:00 - 00012388 _____ C:\AdwCleaner[S1].txt 2013-07-22 07:57 - 2013-07-22 07:57 - 00666633 _____ C:\Users\Schneball\Downloads\adwcleaner.exe 2013-07-22 07:56 - 2013-07-22 07:56 - 00793536 _____ C:\Users\Schneball\Downloads\ZipOpenerSetup.exe 2013-07-22 07:46 - 2013-07-22 07:46 - 00001192 _____ C:\Users\Schneball\Desktop\ComboFix - Verknüpfung.lnk 2013-07-21 17:30 - 2013-07-21 17:30 - 00020873 _____ C:\Users\Schneball\Desktop\combo.txt 2013-07-21 17:30 - 2013-07-21 17:30 - 00020873 _____ C:\ComboFix.txt 2013-07-21 17:14 - 2011-06-26 08:45 - 00256000 _____ C:\Windows\PEV.exe 2013-07-21 17:14 - 2010-11-07 19:20 - 00208896 _____ C:\Windows\MBR.exe 2013-07-21 17:14 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2013-07-21 17:14 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2013-07-21 17:14 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2013-07-21 17:14 - 2000-08-31 02:00 - 00098816 _____ C:\Windows\sed.exe 2013-07-21 17:14 - 2000-08-31 02:00 - 00080412 _____ C:\Windows\grep.exe 2013-07-21 17:14 - 2000-08-31 02:00 - 00068096 _____ C:\Windows\zip.exe 2013-07-21 17:12 - 2013-07-21 17:12 - 00001531 _____ C:\Users\Schneball\Downloads\ComboFix (1) - Verknüpfung.lnk 2013-07-21 16:55 - 2013-07-21 17:30 - 00000000 ____D C:\Qoobox 2013-07-21 16:54 - 2013-07-21 17:27 - 00000000 ____D C:\Windows\erdnt 2013-07-21 16:47 - 2013-07-21 17:11 - 05093416 ____R (Swearware) C:\Users\Schneball\Downloads\ComboFix.exe 2013-07-21 10:36 - 2013-07-21 10:36 - 00000000 ____D C:\FRST 2013-07-20 07:41 - 2013-07-20 07:41 - 00000000 _____ C:\autoexec.bat 2013-07-20 07:40 - 2013-07-20 07:40 - 00000000 ____D C:\Program Files\Enigma Software Group 2013-07-20 07:39 - 2013-07-20 14:20 - 00000000 ____D C:\Windows\8AE3CFB678B24F55A7BE618FCFF43A03.TMP 2013-07-20 07:38 - 2013-07-20 07:38 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\Schneball\Downloads\SpyHunter-Installer (1).exe 2013-07-19 12:15 - 2013-07-21 16:49 - 00003702 _____ C:\Windows\wininit.ini 2013-07-19 10:21 - 2013-07-19 12:19 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2013-07-19 10:21 - 2013-07-19 10:21 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking 2013-07-19 10:20 - 2013-07-21 16:51 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2013-07-19 10:19 - 2013-07-19 10:20 - 36271144 _____ (Safer-Networking Ltd. ) C:\Users\Schneball\Downloads\spybot-2.1.exe 2013-07-19 10:18 - 2013-07-19 10:18 - 01624136 _____ (Bandoo Media Inc) C:\Users\Schneball\Downloads\iLividSetup-r394-n-bc.exe 2013-07-17 18:39 - 2013-07-17 18:40 - 02828552 _____ (AVAST Software) C:\Users\Schneball\Downloads\avast-browser-cleanup_8.0.1484.29.exe 2013-07-17 18:35 - 2013-07-17 18:35 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\Schneball\Downloads\SpyHunter-Installer.exe 2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Windows\SysWOW64\searchplugins 2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Windows\SysWOW64\Extensions 2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-07-17 18:10 - 2013-07-17 18:10 - 00283160 _____ C:\Users\Schneball\Downloads\Setup (2).exe 2013-07-17 18:10 - 2013-07-17 18:10 - 00283160 _____ C:\Users\Schneball\Downloads\Setup (1).exe 2013-07-17 18:06 - 2013-07-17 18:06 - 00283160 _____ C:\Users\Schneball\Downloads\Setup.exe 2013-07-13 06:50 - 2013-06-12 01:43 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-07-13 06:50 - 2013-06-12 01:43 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-07-13 06:50 - 2013-06-12 01:43 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-07-13 06:50 - 2013-06-12 01:42 - 02046976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-07-13 06:50 - 2013-06-12 01:42 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-07-13 06:50 - 2013-06-12 01:42 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-07-13 06:50 - 2013-06-12 01:42 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-07-13 06:50 - 2013-06-12 01:42 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-07-13 06:50 - 2013-06-12 01:26 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-07-13 06:50 - 2013-06-12 01:25 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-07-13 06:50 - 2013-06-12 01:25 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-07-13 06:50 - 2013-06-12 01:25 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-07-13 06:50 - 2013-06-12 01:25 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-07-13 06:50 - 2013-06-12 01:25 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-07-13 06:50 - 2013-06-12 01:25 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-07-13 06:50 - 2013-06-12 01:25 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-07-13 06:50 - 2013-06-12 01:25 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-07-13 06:50 - 2013-06-12 00:51 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-07-13 06:50 - 2013-06-12 00:50 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-07-13 06:50 - 2013-06-07 05:22 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-07-13 06:50 - 2013-06-07 04:37 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-07-13 06:49 - 2013-06-12 01:43 - 14329856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-07-13 06:49 - 2013-06-12 01:43 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-07-13 06:49 - 2013-06-12 01:43 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-07-13 06:49 - 2013-06-12 01:43 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-07-13 06:49 - 2013-06-12 01:42 - 13760512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-07-13 06:49 - 2013-06-12 01:26 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-07-13 06:49 - 2013-06-12 01:26 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-07-13 06:49 - 2013-06-12 01:25 - 19238912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-07-13 06:49 - 2013-06-12 01:25 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-07-13 06:49 - 2013-06-12 01:25 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-07-12 07:15 - 2013-06-05 05:34 - 03153920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-07-12 07:15 - 2013-06-04 08:00 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2013-07-12 07:15 - 2013-06-04 06:53 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2013-07-12 07:15 - 2013-05-06 08:03 - 01887744 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2013-07-12 07:15 - 2013-05-06 06:56 - 01620480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2013-07-12 07:14 - 2013-04-10 01:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2013-07-12 07:14 - 2013-04-03 00:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2013-07-06 14:35 - 2013-07-06 14:35 - 00029137 _____ C:\Users\Schneball\Downloads\eBayISAPI (3).gz 2013-07-06 14:35 - 2013-07-06 14:35 - 00029119 _____ C:\Users\Schneball\Downloads\eBayISAPI (4).gz 2013-06-25 10:08 - 2013-06-25 10:08 - 00202234 _____ C:\Users\Schneball\Downloads\fax (7).tif 2013-06-25 09:47 - 2013-06-25 09:47 - 00202888 _____ C:\Users\Schneball\Downloads\fax (6).tif ==================== One Month Modified Files and Folders ======= 2013-07-22 08:44 - 2013-06-16 09:23 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-07-22 08:44 - 2011-08-01 13:10 - 00001124 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-07-22 08:43 - 2013-07-22 08:43 - 01779363 _____ (Farbar) C:\Users\Schneball\Desktop\FRST64.exe 2013-07-22 08:27 - 2013-07-22 08:27 - 00101265 _____ C:\Users\Schneball\Desktop\JRT.txt 2013-07-22 08:19 - 2013-07-22 08:19 - 00000000 ____D C:\Windows\ERUNT 2013-07-22 08:18 - 2013-07-22 08:18 - 00560639 _____ (Oleg N. Scherbakov) C:\Users\Schneball\Downloads\JRT (1).exe 2013-07-22 08:17 - 2013-07-22 08:17 - 00560639 _____ (Oleg N. Scherbakov) C:\Users\Schneball\Desktop\JRT.exe 2013-07-22 08:11 - 2009-07-14 06:45 - 00025120 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-07-22 08:11 - 2009-07-14 06:45 - 00025120 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-07-22 08:09 - 2011-02-11 10:21 - 00654400 _____ C:\Windows\system32\perfh007.dat 2013-07-22 08:09 - 2011-02-11 10:21 - 00130240 _____ C:\Windows\system32\perfc007.dat 2013-07-22 08:09 - 2009-07-14 07:13 - 01498742 _____ C:\Windows\system32\PerfStringBackup.INI 2013-07-22 08:07 - 2011-08-01 13:10 - 00001120 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-07-22 08:04 - 2012-12-28 09:32 - 00023657 _____ C:\Windows\setupact.log 2013-07-22 08:04 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-07-22 08:03 - 2011-11-17 08:40 - 01973535 _____ C:\Windows\WindowsUpdate.log 2013-07-22 08:00 - 2013-07-22 07:59 - 00012388 _____ C:\AdwCleaner[S1].txt 2013-07-22 07:57 - 2013-07-22 07:57 - 00666633 _____ C:\Users\Schneball\Downloads\adwcleaner.exe 2013-07-22 07:56 - 2013-07-22 07:56 - 00793536 _____ C:\Users\Schneball\Downloads\ZipOpenerSetup.exe 2013-07-22 07:46 - 2013-07-22 07:46 - 00001192 _____ C:\Users\Schneball\Desktop\ComboFix - Verknüpfung.lnk 2013-07-21 20:08 - 2010-11-21 05:47 - 00166588 _____ C:\Windows\PFRO.log 2013-07-21 17:30 - 2013-07-21 17:30 - 00020873 _____ C:\Users\Schneball\Desktop\combo.txt 2013-07-21 17:30 - 2013-07-21 17:30 - 00020873 _____ C:\ComboFix.txt 2013-07-21 17:30 - 2013-07-21 16:55 - 00000000 ____D C:\Qoobox 2013-07-21 17:27 - 2013-07-21 16:54 - 00000000 ____D C:\Windows\erdnt 2013-07-21 17:27 - 2009-07-14 04:34 - 00000215 _____ C:\Windows\system.ini 2013-07-21 17:24 - 2011-12-25 10:40 - 00000000 ____D C:\Users\Schneball 2013-07-21 17:12 - 2013-07-21 17:12 - 00001531 _____ C:\Users\Schneball\Downloads\ComboFix (1) - Verknüpfung.lnk 2013-07-21 17:11 - 2013-07-21 16:47 - 05093416 ____R (Swearware) C:\Users\Schneball\Downloads\ComboFix.exe 2013-07-21 16:51 - 2013-07-19 10:20 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2013-07-21 16:49 - 2013-07-19 12:15 - 00003702 _____ C:\Windows\wininit.ini 2013-07-21 16:44 - 2011-08-01 13:11 - 00000000 ____D C:\Program Files\Google 2013-07-21 16:44 - 2011-08-01 13:10 - 00000000 ____D C:\Program Files (x86)\Google 2013-07-21 14:19 - 2012-04-08 22:12 - 00003970 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{293B7530-1DF2-4F3C-8BCF-32E681E5FE98} 2013-07-21 10:36 - 2013-07-21 10:36 - 00000000 ____D C:\FRST 2013-07-21 09:28 - 2011-12-25 12:16 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\Google 2013-07-21 09:28 - 2011-08-01 13:10 - 00000000 ____D C:\ProgramData\Google 2013-07-21 09:25 - 2011-12-25 10:40 - 00000000 ___RD C:\Users\Schneball\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-07-20 14:20 - 2013-07-20 07:39 - 00000000 ____D C:\Windows\8AE3CFB678B24F55A7BE618FCFF43A03.TMP 2013-07-20 14:20 - 2011-12-25 13:52 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\Windows Live 2013-07-20 07:55 - 2011-12-25 11:51 - 00002087 _____ C:\Users\Public\Desktop\Toshiba-Garantieregistrierung.lnk 2013-07-20 07:41 - 2013-07-20 07:41 - 00000000 _____ C:\autoexec.bat 2013-07-20 07:40 - 2013-07-20 07:40 - 00000000 ____D C:\Program Files\Enigma Software Group 2013-07-20 07:38 - 2013-07-20 07:38 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\Schneball\Downloads\SpyHunter-Installer (1).exe 2013-07-19 12:19 - 2013-07-19 10:21 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2013-07-19 10:21 - 2013-07-19 10:21 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking 2013-07-19 10:20 - 2013-07-19 10:19 - 36271144 _____ (Safer-Networking Ltd. ) C:\Users\Schneball\Downloads\spybot-2.1.exe 2013-07-19 10:18 - 2013-07-19 10:18 - 01624136 _____ (Bandoo Media Inc) C:\Users\Schneball\Downloads\iLividSetup-r394-n-bc.exe 2013-07-17 18:40 - 2013-07-17 18:39 - 02828552 _____ (AVAST Software) C:\Users\Schneball\Downloads\avast-browser-cleanup_8.0.1484.29.exe 2013-07-17 18:40 - 2013-03-21 20:50 - 00000000 ____D C:\Users\Schneball\Documents\My Digital Editions 2013-07-17 18:40 - 2011-12-27 18:25 - 00000000 ____D C:\Program Files (x86)\Adobe 2013-07-17 18:35 - 2013-07-17 18:35 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\Schneball\Downloads\SpyHunter-Installer.exe 2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Windows\SysWOW64\searchplugins 2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Windows\SysWOW64\Extensions 2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-07-17 18:10 - 2013-07-17 18:10 - 00283160 _____ C:\Users\Schneball\Downloads\Setup (2).exe 2013-07-17 18:10 - 2013-07-17 18:10 - 00283160 _____ C:\Users\Schneball\Downloads\Setup (1).exe 2013-07-17 18:06 - 2013-07-17 18:06 - 00283160 _____ C:\Users\Schneball\Downloads\Setup.exe 2013-07-16 08:09 - 2011-12-27 10:43 - 00000000 ____D C:\Users\Schneball\Desktop\Diana 2013-07-14 07:54 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender 2013-07-14 07:54 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-07-13 16:17 - 2009-07-14 06:45 - 00342240 _____ C:\Windows\system32\FNTCACHE.DAT 2013-07-13 16:16 - 2012-05-18 21:53 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2013-07-13 16:16 - 2012-05-18 21:53 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-07-13 12:27 - 2010-11-21 09:17 - 00000000 ____D C:\Program Files\Windows Journal 2013-07-13 12:25 - 2011-12-25 11:57 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-07-13 06:52 - 2011-12-29 16:41 - 78185248 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-07-13 06:39 - 2011-08-01 13:10 - 00004120 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2013-07-13 06:39 - 2011-08-01 13:10 - 00003868 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2013-07-06 14:35 - 2013-07-06 14:35 - 00029137 _____ C:\Users\Schneball\Downloads\eBayISAPI (3).gz 2013-07-06 14:35 - 2013-07-06 14:35 - 00029119 _____ C:\Users\Schneball\Downloads\eBayISAPI (4).gz 2013-07-04 20:08 - 2013-06-02 20:44 - 00000000 ____D C:\Users\Schneball\AppData\Roaming\PhotoMania 2013-06-27 16:03 - 2013-05-07 11:54 - 00083672 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2013-06-27 08:13 - 2011-08-01 12:51 - 00000000 ____D C:\Program Files (x86)\McAfee 2013-06-26 14:51 - 2013-01-31 09:16 - 00000000 ____D C:\Program Files\McAfee 2013-06-25 10:08 - 2013-06-25 10:08 - 00202234 _____ C:\Users\Schneball\Downloads\fax (7).tif 2013-06-25 09:47 - 2013-06-25 09:47 - 00202888 _____ C:\Users\Schneball\Downloads\fax (6).tif 2013-06-25 09:39 - 2013-05-02 17:17 - 00000000 ____D C:\Users\Schneball\Desktop\Oma ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-07-14 13:15 ==================== End Of Log ============================ --- --- --- Sollte ich doch auch erst noch machen, oder? |
22.07.2013, 09:28 | #10 |
/// the machine /// TB-Ausbilder | Wie bekämpfe ich Spy Hunter und Delta Search? jap, aber jetzt einfach obiges
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
22.07.2013, 10:03 | #11 |
| Wie bekämpfe ich Spy Hunter und Delta Search? Okay und nun mache ich alles aus der letzten Anweisung :-) Allmächtiger, was für eine Odysse... Das ist so unglaublich viel, aber ich vertraue Dir :-) "Cannot get update, is proxy configured"? Und nun? Also ich kann machen was ich will, es kommt immer diese Fehlermeldung. Zuerst schien Avira das Problem zu sein, habe es deinstalliert, aber es kommt immer noch diese Meldung mit "is Proxy configured" |
22.07.2013, 10:52 | #12 |
/// the machine /// TB-Ausbilder | Wie bekämpfe ich Spy Hunter und Delta Search? Mach nen Vollscan mit Avira und poste das Logfile. Lass ESET weg und mach den Rest der Anleitung
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
22.07.2013, 13:07 | #13 |
| Wie bekämpfe ich Spy Hunter und Delta Search?Code:
ATTFilter Avira Free Antivirus Erstellungsdatum der Reportdatei: Montag, 22. Juli 2013 11:58 Das Programm läuft als uneingeschränkte Vollversion. Online-Dienste stehen zur Verfügung. Lizenznehmer : Avira Free Antivirus Seriennummer : 0000149996-ADJIE-0000001 Plattform : Windows 7 Home Premium Windowsversion : (Service Pack 1) [6.1.7601] Boot Modus : Normal gebootet Benutzername : Schneball Computername : SCHNEBALL-TOSH Versionsinformationen: BUILD.DAT : 13.0.0.3737 54853 Bytes 20.06.2013 15:37:00 AVSCAN.EXE : 13.6.0.1722 634936 Bytes 22.07.2013 09:55:51 AVSCANRC.DLL : 13.6.0.1550 62520 Bytes 22.07.2013 09:55:51 LUKE.DLL : 13.6.0.1550 65080 Bytes 22.07.2013 09:56:00 AVSCPLR.DLL : 13.6.0.1712 92216 Bytes 22.07.2013 09:55:51 AVREG.DLL : 13.6.0.1550 247864 Bytes 22.07.2013 09:55:50 avlode.dll : 13.6.2.1704 449592 Bytes 22.07.2013 09:55:50 avlode.rdf : 13.0.1.22 26240 Bytes 22.07.2013 09:56:14 VBASE000.VDF : 7.11.70.0 66736640 Bytes 04.04.2013 09:55:29 VBASE001.VDF : 7.11.74.226 2201600 Bytes 30.04.2013 09:55:31 VBASE002.VDF : 7.11.80.60 2751488 Bytes 28.05.2013 09:55:33 VBASE003.VDF : 7.11.85.214 2162688 Bytes 21.06.2013 09:55:34 VBASE004.VDF : 7.11.85.215 2048 Bytes 21.06.2013 09:55:34 VBASE005.VDF : 7.11.85.216 2048 Bytes 21.06.2013 09:55:34 VBASE006.VDF : 7.11.85.217 2048 Bytes 21.06.2013 09:55:34 VBASE007.VDF : 7.11.85.218 2048 Bytes 21.06.2013 09:55:34 VBASE008.VDF : 7.11.85.219 2048 Bytes 21.06.2013 09:55:34 VBASE009.VDF : 7.11.85.220 2048 Bytes 21.06.2013 09:55:34 VBASE010.VDF : 7.11.85.221 2048 Bytes 21.06.2013 09:55:34 VBASE011.VDF : 7.11.85.222 2048 Bytes 21.06.2013 09:55:34 VBASE012.VDF : 7.11.85.223 2048 Bytes 21.06.2013 09:55:35 VBASE013.VDF : 7.11.85.224 2048 Bytes 21.06.2013 09:55:35 VBASE014.VDF : 7.11.86.93 870400 Bytes 24.06.2013 09:55:35 VBASE015.VDF : 7.11.86.223 331776 Bytes 25.06.2013 09:55:35 VBASE016.VDF : 7.11.87.67 204800 Bytes 27.06.2013 09:55:36 VBASE017.VDF : 7.11.87.157 247296 Bytes 28.06.2013 09:55:36 VBASE018.VDF : 7.11.87.221 196608 Bytes 30.06.2013 09:55:36 VBASE019.VDF : 7.11.88.51 356352 Bytes 02.07.2013 09:55:36 VBASE020.VDF : 7.11.88.119 182272 Bytes 03.07.2013 09:55:36 VBASE021.VDF : 7.11.88.213 266752 Bytes 05.07.2013 09:55:37 VBASE022.VDF : 7.11.89.43 184320 Bytes 07.07.2013 09:55:37 VBASE023.VDF : 7.11.89.105 203776 Bytes 08.07.2013 09:55:37 VBASE024.VDF : 7.11.89.175 253440 Bytes 10.07.2013 09:55:37 VBASE025.VDF : 7.11.90.3 221696 Bytes 11.07.2013 09:55:37 VBASE026.VDF : 7.11.90.71 217088 Bytes 13.07.2013 09:55:37 VBASE027.VDF : 7.11.90.173 306688 Bytes 16.07.2013 09:55:38 VBASE028.VDF : 7.11.91.1 348160 Bytes 18.07.2013 09:55:38 VBASE029.VDF : 7.11.91.99 493568 Bytes 21.07.2013 09:55:38 VBASE030.VDF : 7.11.91.100 2048 Bytes 21.07.2013 09:55:38 VBASE031.VDF : 7.11.91.132 160256 Bytes 22.07.2013 09:55:38 Engineversion : 8.2.12.88 AEVDF.DLL : 8.1.3.4 102774 Bytes 22.07.2013 09:55:42 AESCRIPT.DLL : 8.1.4.134 491902 Bytes 22.07.2013 09:55:42 AESCN.DLL : 8.1.10.4 131446 Bytes 22.07.2013 09:55:42 AESBX.DLL : 8.2.5.12 606578 Bytes 22.07.2013 09:55:42 AERDL.DLL : 8.2.0.128 688504 Bytes 22.07.2013 09:55:42 AEPACK.DLL : 8.3.2.24 749945 Bytes 22.07.2013 09:55:41 AEOFFICE.DLL : 8.1.2.70 205181 Bytes 22.07.2013 09:55:41 AEHEUR.DLL : 8.1.4.486 6021498 Bytes 22.07.2013 09:55:41 AEHELP.DLL : 8.1.27.4 266617 Bytes 22.07.2013 09:55:39 AEGEN.DLL : 8.1.7.8 442742 Bytes 22.07.2013 09:55:39 AEEXP.DLL : 8.4.1.28 266615 Bytes 22.07.2013 09:55:42 AEEMU.DLL : 8.1.3.2 393587 Bytes 22.07.2013 09:55:39 AECORE.DLL : 8.1.31.6 201081 Bytes 22.07.2013 09:55:39 AEBB.DLL : 8.1.1.4 53619 Bytes 22.07.2013 09:55:39 AVWINLL.DLL : 13.6.0.1550 23608 Bytes 22.07.2013 09:54:46 AVPREF.DLL : 13.6.0.1550 48184 Bytes 22.07.2013 09:55:50 AVREP.DLL : 13.6.0.1550 175672 Bytes 22.07.2013 09:55:50 AVARKT.DLL : 13.6.0.1626 258104 Bytes 22.07.2013 09:55:47 AVEVTLOG.DLL : 13.6.0.1550 164920 Bytes 22.07.2013 09:55:48 SQLITE3.DLL : 3.7.0.1 394824 Bytes 22.07.2013 09:56:07 AVSMTP.DLL : 13.6.0.1550 59960 Bytes 22.07.2013 09:55:51 NETNT.DLL : 13.6.0.1550 13368 Bytes 22.07.2013 09:56:02 RCIMAGE.DLL : 13.4.0.360 4780832 Bytes 22.07.2013 09:54:47 RCTEXT.DLL : 13.6.0.1624 67128 Bytes 22.07.2013 09:54:47 Konfiguration für den aktuellen Suchlauf: Job Name..............................: Schnelle Systemprüfung Konfigurationsdatei...................: c:\program files (x86)\avira\antivir desktop\quicksysscan.avp Protokollierung.......................: standard Primäre Aktion........................: interaktiv Sekundäre Aktion......................: ignorieren Durchsuche Masterbootsektoren.........: ein Durchsuche Bootsektoren...............: ein Durchsuche aktive Programme...........: ein Durchsuche Registrierung..............: ein Suche nach Rootkits...................: aus Integritätsprüfung von Systemdateien..: aus Datei Suchmodus.......................: Intelligente Dateiauswahl Durchsuche Archive....................: ein Rekursionstiefe einschränken..........: 20 Archiv Smart Extensions...............: ein Makrovirenheuristik...................: ein Dateiheuristik........................: erweitert Beginn des Suchlaufs: Montag, 22. Juli 2013 11:58 Der Suchlauf über die Masterbootsektoren wird begonnen: Masterbootsektor HD0 [INFO] Es wurde kein Virus gefunden! Masterbootsektor HD1 [INFO] Es wurde kein Virus gefunden! Der Suchlauf über die Bootsektoren wird begonnen: Der Suchlauf über gestartete Prozesse wird begonnen: Durchsuche Prozess 'svchost.exe' - '52' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '39' Modul(e) wurden durchsucht Durchsuche Prozess 'atiesrxx.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '88' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '119' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '90' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '182' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '88' Modul(e) wurden durchsucht Durchsuche Prozess 'GFNEXSrv.exe' - '30' Modul(e) wurden durchsucht Durchsuche Prozess 'atieclxx.exe' - '34' Modul(e) wurden durchsucht Durchsuche Prozess 'taskeng.exe' - '28' Modul(e) wurden durchsucht Durchsuche Prozess 'spoolsv.exe' - '83' Modul(e) wurden durchsucht Durchsuche Prozess 'lpksetup.exe' - '30' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '61' Modul(e) wurden durchsucht Durchsuche Prozess 'armsvc.exe' - '28' Modul(e) wurden durchsucht Durchsuche Prozess 'AppleMobileDeviceService.exe' - '72' Modul(e) wurden durchsucht Durchsuche Prozess 'mDNSResponder.exe' - '36' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '60' Modul(e) wurden durchsucht Durchsuche Prozess 'McSACore.exe' - '64' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '46' Modul(e) wurden durchsucht Durchsuche Prozess 'TODDSrv.exe' - '23' Modul(e) wurden durchsucht Durchsuche Prozess 'TosCoSrv.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'WLIDSVC.EXE' - '76' Modul(e) wurden durchsucht Durchsuche Prozess 'TecoService.exe' - '35' Modul(e) wurden durchsucht Durchsuche Prozess 'WLIDSvcM.exe' - '17' Modul(e) wurden durchsucht Durchsuche Prozess 'rundll32.exe' - '16' Modul(e) wurden durchsucht Durchsuche Prozess 'rundll32.exe' - '25' Modul(e) wurden durchsucht Durchsuche Prozess 'rundll32.exe' - '40' Modul(e) wurden durchsucht Durchsuche Prozess 'wmiprvse.exe' - '34' Modul(e) wurden durchsucht Durchsuche Prozess 'PresentationFontCache.exe' - '35' Modul(e) wurden durchsucht Durchsuche Prozess 'unsecapp.exe' - '27' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '37' Modul(e) wurden durchsucht Durchsuche Prozess 'WUDFHost.exe' - '34' Modul(e) wurden durchsucht Durchsuche Prozess 'taskhost.exe' - '69' Modul(e) wurden durchsucht Durchsuche Prozess 'Dwm.exe' - '37' Modul(e) wurden durchsucht Durchsuche Prozess 'Explorer.EXE' - '168' Modul(e) wurden durchsucht Durchsuche Prozess 'TosNcCore.exe' - '35' Modul(e) wurden durchsucht Durchsuche Prozess 'TosReelTimeMonitor.exe' - '56' Modul(e) wurden durchsucht Durchsuche Prozess 'TemproTray.exe' - '70' Modul(e) wurden durchsucht Durchsuche Prozess 'TPwrMain.exe' - '39' Modul(e) wurden durchsucht Durchsuche Prozess 'TCrdMain.exe' - '90' Modul(e) wurden durchsucht Durchsuche Prozess 'RAVCpl64.exe' - '47' Modul(e) wurden durchsucht Durchsuche Prozess 'RAVBg64.exe' - '46' Modul(e) wurden durchsucht Durchsuche Prozess 'SynTPEnh.exe' - '64' Modul(e) wurden durchsucht Durchsuche Prozess 'Teco.exe' - '34' Modul(e) wurden durchsucht Durchsuche Prozess 'SynTPHelper.exe' - '20' Modul(e) wurden durchsucht Durchsuche Prozess 'TOPI.exe' - '79' Modul(e) wurden durchsucht Durchsuche Prozess 'NokiaSuite.exe' - '198' Modul(e) wurden durchsucht Durchsuche Prozess 'TosDIMonitor.exe' - '95' Modul(e) wurden durchsucht Durchsuche Prozess 'SearchIndexer.exe' - '68' Modul(e) wurden durchsucht Durchsuche Prozess 'ToshibaServiceStation.exe' - '98' Modul(e) wurden durchsucht Durchsuche Prozess 'pdf24.exe' - '38' Modul(e) wurden durchsucht Durchsuche Prozess 'jusched.exe' - '35' Modul(e) wurden durchsucht Durchsuche Prozess 'wmpnetwk.exe' - '120' Modul(e) wurden durchsucht Durchsuche Prozess 'MOM.exe' - '72' Modul(e) wurden durchsucht Durchsuche Prozess 'CCC.exe' - '201' Modul(e) wurden durchsucht Durchsuche Prozess 'ServiceLayer.exe' - '40' Modul(e) wurden durchsucht Durchsuche Prozess 'NclUSBSrv64.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'taskeng.exe' - '32' Modul(e) wurden durchsucht Durchsuche Prozess 'NDSTray.exe' - '94' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '60' Modul(e) wurden durchsucht Durchsuche Prozess 'NclMSBTSrvEx.exe' - '37' Modul(e) wurden durchsucht Durchsuche Prozess 'wmiprvse.exe' - '57' Modul(e) wurden durchsucht Durchsuche Prozess 'CFSwMgr.exe' - '66' Modul(e) wurden durchsucht Durchsuche Prozess 'DllHost.exe' - '45' Modul(e) wurden durchsucht Durchsuche Prozess 'TMachInfo.exe' - '51' Modul(e) wurden durchsucht Durchsuche Prozess 'CFIWmxSvcs64.exe' - '17' Modul(e) wurden durchsucht Durchsuche Prozess 'CFSvcs.exe' - '57' Modul(e) wurden durchsucht Durchsuche Prozess 'NASvc.exe' - '46' Modul(e) wurden durchsucht Durchsuche Prozess 'TosSmartSrv.exe' - '40' Modul(e) wurden durchsucht Durchsuche Prozess 'TPCHSrv.exe' - '40' Modul(e) wurden durchsucht Durchsuche Prozess 'TosSENotify.exe' - '43' Modul(e) wurden durchsucht Durchsuche Prozess 'TPCHWMsg.exe' - '34' Modul(e) wurden durchsucht Durchsuche Prozess 'chrome.exe' - '141' Modul(e) wurden durchsucht Durchsuche Prozess 'chrome.exe' - '66' Modul(e) wurden durchsucht Durchsuche Prozess 'chrome.exe' - '44' Modul(e) wurden durchsucht Durchsuche Prozess 'chrome.exe' - '45' Modul(e) wurden durchsucht Durchsuche Prozess 'chrome.exe' - '44' Modul(e) wurden durchsucht Durchsuche Prozess 'chrome.exe' - '44' Modul(e) wurden durchsucht Durchsuche Prozess 'avira_free_antivirus (1).exe' - '43' Modul(e) wurden durchsucht Durchsuche Prozess 'avwebloader.exe' - '90' Modul(e) wurden durchsucht Durchsuche Prozess 'presetup.exe' - '44' Modul(e) wurden durchsucht Durchsuche Prozess 'setup.exe' - '111' Modul(e) wurden durchsucht Durchsuche Prozess 'SearchProtocolHost.exe' - '44' Modul(e) wurden durchsucht Durchsuche Prozess 'SearchFilterHost.exe' - '30' Modul(e) wurden durchsucht Durchsuche Prozess 'avguard.exe' - '88' Modul(e) wurden durchsucht Durchsuche Prozess 'avshadow.exe' - '20' Modul(e) wurden durchsucht Durchsuche Prozess 'sched.exe' - '45' Modul(e) wurden durchsucht Durchsuche Prozess 'AVWEBGRD.EXE' - '72' Modul(e) wurden durchsucht Durchsuche Prozess 'avgnt.exe' - '84' Modul(e) wurden durchsucht Durchsuche Prozess 'avconfig.exe' - '82' Modul(e) wurden durchsucht Durchsuche Prozess 'avcenter.exe' - '74' Modul(e) wurden durchsucht Durchsuche Prozess 'avscan.exe' - '111' Modul(e) wurden durchsucht Durchsuche Prozess 'chrome.exe' - '44' Modul(e) wurden durchsucht Durchsuche Prozess 'msiexec.exe' - '57' Modul(e) wurden durchsucht Durchsuche Prozess 'apnmcp.exe' - '32' Modul(e) wurden durchsucht Durchsuche Prozess 'TBNotifier.exe' - '89' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '9' Modul(e) wurden durchsucht Durchsuche Prozess 'DllHost.exe' - '47' Modul(e) wurden durchsucht Durchsuche Prozess 'smss.exe' - '2' Modul(e) wurden durchsucht Durchsuche Prozess 'csrss.exe' - '18' Modul(e) wurden durchsucht Durchsuche Prozess 'wininit.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'csrss.exe' - '18' Modul(e) wurden durchsucht Durchsuche Prozess 'services.exe' - '33' Modul(e) wurden durchsucht Durchsuche Prozess 'lsass.exe' - '66' Modul(e) wurden durchsucht Durchsuche Prozess 'lsm.exe' - '16' Modul(e) wurden durchsucht Durchsuche Prozess 'winlogon.exe' - '31' Modul(e) wurden durchsucht Der Suchlauf auf Verweise zu ausführbaren Dateien (Registry) wird begonnen: Die Registry wurde durchsucht ( '10799' Dateien ). Ende des Suchlaufs: Montag, 22. Juli 2013 12:00 Benötigte Zeit: 01:39 Minute(n) Der Suchlauf wurde vollständig durchgeführt. 0 Verzeichnisse wurden überprüft 12070 Dateien wurden geprüft 0 Viren bzw. unerwünschte Programme wurden gefunden 0 Dateien wurden als verdächtig eingestuft 0 Dateien wurden gelöscht 0 Viren bzw. unerwünschte Programme wurden repariert 0 Dateien wurden in die Quarantäne verschoben 0 Dateien wurden umbenannt 0 Dateien konnten nicht durchsucht werden 12070 Dateien ohne Befall 312 Archive wurden durchsucht 0 Warnungen 0 Hinweise Code:
ATTFilter Avira Free Antivirus Erstellungsdatum der Reportdatei: Montag, 22. Juli 2013 12:05 Das Programm läuft als uneingeschränkte Vollversion. Online-Dienste stehen zur Verfügung. Lizenznehmer : Avira Free Antivirus Seriennummer : 0000149996-ADJIE-0000001 Plattform : Windows 7 Home Premium Windowsversion : (Service Pack 1) [6.1.7601] Boot Modus : Normal gebootet Benutzername : SYSTEM Computername : SCHNEBALL-TOSH Versionsinformationen: BUILD.DAT : 13.0.0.3737 54853 Bytes 20.06.2013 15:37:00 AVSCAN.EXE : 13.6.0.1722 634936 Bytes 22.07.2013 09:55:51 AVSCANRC.DLL : 13.6.0.1550 62520 Bytes 22.07.2013 09:55:51 LUKE.DLL : 13.6.0.1550 65080 Bytes 22.07.2013 09:56:00 AVSCPLR.DLL : 13.6.0.1712 92216 Bytes 22.07.2013 09:55:51 AVREG.DLL : 13.6.0.1550 247864 Bytes 22.07.2013 09:55:50 avlode.dll : 13.6.2.1704 449592 Bytes 22.07.2013 09:55:50 avlode.rdf : 13.0.1.22 26240 Bytes 22.07.2013 09:56:14 VBASE000.VDF : 7.11.70.0 66736640 Bytes 04.04.2013 09:55:29 VBASE001.VDF : 7.11.74.226 2201600 Bytes 30.04.2013 09:55:31 VBASE002.VDF : 7.11.80.60 2751488 Bytes 28.05.2013 09:55:33 VBASE003.VDF : 7.11.85.214 2162688 Bytes 21.06.2013 09:55:34 VBASE004.VDF : 7.11.85.215 2048 Bytes 21.06.2013 09:55:34 VBASE005.VDF : 7.11.85.216 2048 Bytes 21.06.2013 09:55:34 VBASE006.VDF : 7.11.85.217 2048 Bytes 21.06.2013 09:55:34 VBASE007.VDF : 7.11.85.218 2048 Bytes 21.06.2013 09:55:34 VBASE008.VDF : 7.11.85.219 2048 Bytes 21.06.2013 09:55:34 VBASE009.VDF : 7.11.85.220 2048 Bytes 21.06.2013 09:55:34 VBASE010.VDF : 7.11.85.221 2048 Bytes 21.06.2013 09:55:34 VBASE011.VDF : 7.11.85.222 2048 Bytes 21.06.2013 09:55:34 VBASE012.VDF : 7.11.85.223 2048 Bytes 21.06.2013 09:55:35 VBASE013.VDF : 7.11.85.224 2048 Bytes 21.06.2013 09:55:35 VBASE014.VDF : 7.11.86.93 870400 Bytes 24.06.2013 09:55:35 VBASE015.VDF : 7.11.86.223 331776 Bytes 25.06.2013 09:55:35 VBASE016.VDF : 7.11.87.67 204800 Bytes 27.06.2013 09:55:36 VBASE017.VDF : 7.11.87.157 247296 Bytes 28.06.2013 09:55:36 VBASE018.VDF : 7.11.87.221 196608 Bytes 30.06.2013 09:55:36 VBASE019.VDF : 7.11.88.51 356352 Bytes 02.07.2013 09:55:36 VBASE020.VDF : 7.11.88.119 182272 Bytes 03.07.2013 09:55:36 VBASE021.VDF : 7.11.88.213 266752 Bytes 05.07.2013 09:55:37 VBASE022.VDF : 7.11.89.43 184320 Bytes 07.07.2013 09:55:37 VBASE023.VDF : 7.11.89.105 203776 Bytes 08.07.2013 09:55:37 VBASE024.VDF : 7.11.89.175 253440 Bytes 10.07.2013 09:55:37 VBASE025.VDF : 7.11.90.3 221696 Bytes 11.07.2013 09:55:37 VBASE026.VDF : 7.11.90.71 217088 Bytes 13.07.2013 09:55:37 VBASE027.VDF : 7.11.90.173 306688 Bytes 16.07.2013 09:55:38 VBASE028.VDF : 7.11.91.1 348160 Bytes 18.07.2013 09:55:38 VBASE029.VDF : 7.11.91.99 493568 Bytes 21.07.2013 09:55:38 VBASE030.VDF : 7.11.91.100 2048 Bytes 21.07.2013 09:55:38 VBASE031.VDF : 7.11.91.132 160256 Bytes 22.07.2013 09:55:38 Engineversion : 8.2.12.88 AEVDF.DLL : 8.1.3.4 102774 Bytes 22.07.2013 09:55:42 AESCRIPT.DLL : 8.1.4.134 491902 Bytes 22.07.2013 09:55:42 AESCN.DLL : 8.1.10.4 131446 Bytes 22.07.2013 09:55:42 AESBX.DLL : 8.2.5.12 606578 Bytes 22.07.2013 09:55:42 AERDL.DLL : 8.2.0.128 688504 Bytes 22.07.2013 09:55:42 AEPACK.DLL : 8.3.2.24 749945 Bytes 22.07.2013 09:55:41 AEOFFICE.DLL : 8.1.2.70 205181 Bytes 22.07.2013 09:55:41 AEHEUR.DLL : 8.1.4.486 6021498 Bytes 22.07.2013 09:55:41 AEHELP.DLL : 8.1.27.4 266617 Bytes 22.07.2013 09:55:39 AEGEN.DLL : 8.1.7.8 442742 Bytes 22.07.2013 09:55:39 AEEXP.DLL : 8.4.1.28 266615 Bytes 22.07.2013 09:55:42 AEEMU.DLL : 8.1.3.2 393587 Bytes 22.07.2013 09:55:39 AECORE.DLL : 8.1.31.6 201081 Bytes 22.07.2013 09:55:39 AEBB.DLL : 8.1.1.4 53619 Bytes 22.07.2013 09:55:39 AVWINLL.DLL : 13.6.0.1550 23608 Bytes 22.07.2013 09:54:46 AVPREF.DLL : 13.6.0.1550 48184 Bytes 22.07.2013 09:55:50 AVREP.DLL : 13.6.0.1550 175672 Bytes 22.07.2013 09:55:50 AVARKT.DLL : 13.6.0.1626 258104 Bytes 22.07.2013 09:55:47 AVEVTLOG.DLL : 13.6.0.1550 164920 Bytes 22.07.2013 09:55:48 SQLITE3.DLL : 3.7.0.1 394824 Bytes 22.07.2013 09:56:07 AVSMTP.DLL : 13.6.0.1550 59960 Bytes 22.07.2013 09:55:51 NETNT.DLL : 13.6.0.1550 13368 Bytes 22.07.2013 09:56:02 RCIMAGE.DLL : 13.4.0.360 4780832 Bytes 22.07.2013 09:54:47 RCTEXT.DLL : 13.6.0.1624 67128 Bytes 22.07.2013 09:54:47 Konfiguration für den aktuellen Suchlauf: Job Name..............................: Vollständige Systemprüfung Konfigurationsdatei...................: C:\Program Files (x86)\Avira\AntiVir Desktop\sysscan.avp Protokollierung.......................: standard Primäre Aktion........................: interaktiv Sekundäre Aktion......................: ignorieren Durchsuche Masterbootsektoren.........: ein Durchsuche Bootsektoren...............: ein Bootsektoren..........................: C:, D:, Durchsuche aktive Programme...........: ein Laufende Programme erweitert..........: ein Durchsuche Registrierung..............: ein Suche nach Rootkits...................: ein Integritätsprüfung von Systemdateien..: aus Datei Suchmodus.......................: Alle Dateien Durchsuche Archive....................: ein Rekursionstiefe einschränken..........: 20 Archiv Smart Extensions...............: ein Makrovirenheuristik...................: ein Dateiheuristik........................: erweitert Beginn des Suchlaufs: Montag, 22. Juli 2013 12:05 Der Suchlauf über die Masterbootsektoren wird begonnen: Masterbootsektor HD0 [INFO] Es wurde kein Virus gefunden! Masterbootsektor HD1 [INFO] Es wurde kein Virus gefunden! Der Suchlauf über die Bootsektoren wird begonnen: Bootsektor 'C:\' [INFO] Es wurde kein Virus gefunden! Bootsektor 'D:\' [INFO] Es wurde kein Virus gefunden! Der Suchlauf nach versteckten Objekten wird begonnen. Der Suchlauf über gestartete Prozesse wird begonnen: Durchsuche Prozess 'svchost.exe' - '52' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '39' Modul(e) wurden durchsucht Durchsuche Prozess 'atiesrxx.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '89' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '119' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '90' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '179' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '88' Modul(e) wurden durchsucht Durchsuche Prozess 'GFNEXSrv.exe' - '30' Modul(e) wurden durchsucht Durchsuche Prozess 'atieclxx.exe' - '34' Modul(e) wurden durchsucht Durchsuche Prozess 'taskeng.exe' - '28' Modul(e) wurden durchsucht Durchsuche Prozess 'spoolsv.exe' - '83' Modul(e) wurden durchsucht Durchsuche Prozess 'lpksetup.exe' - '30' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '62' Modul(e) wurden durchsucht Durchsuche Prozess 'armsvc.exe' - '28' Modul(e) wurden durchsucht Durchsuche Prozess 'AppleMobileDeviceService.exe' - '72' Modul(e) wurden durchsucht Durchsuche Prozess 'mDNSResponder.exe' - '36' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '60' Modul(e) wurden durchsucht Durchsuche Prozess 'McSACore.exe' - '64' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '46' Modul(e) wurden durchsucht Durchsuche Prozess 'TODDSrv.exe' - '23' Modul(e) wurden durchsucht Durchsuche Prozess 'TosCoSrv.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'WLIDSVC.EXE' - '76' Modul(e) wurden durchsucht Durchsuche Prozess 'TecoService.exe' - '35' Modul(e) wurden durchsucht Durchsuche Prozess 'WLIDSvcM.exe' - '17' Modul(e) wurden durchsucht Durchsuche Prozess 'rundll32.exe' - '16' Modul(e) wurden durchsucht Durchsuche Prozess 'rundll32.exe' - '25' Modul(e) wurden durchsucht Durchsuche Prozess 'rundll32.exe' - '40' Modul(e) wurden durchsucht Durchsuche Prozess 'wmiprvse.exe' - '33' Modul(e) wurden durchsucht Durchsuche Prozess 'PresentationFontCache.exe' - '35' Modul(e) wurden durchsucht Durchsuche Prozess 'unsecapp.exe' - '27' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '37' Modul(e) wurden durchsucht Durchsuche Prozess 'WUDFHost.exe' - '34' Modul(e) wurden durchsucht Durchsuche Prozess 'taskhost.exe' - '70' Modul(e) wurden durchsucht Durchsuche Prozess 'Dwm.exe' - '37' Modul(e) wurden durchsucht Durchsuche Prozess 'Explorer.EXE' - '175' Modul(e) wurden durchsucht Durchsuche Prozess 'TosNcCore.exe' - '35' Modul(e) wurden durchsucht Durchsuche Prozess 'TosReelTimeMonitor.exe' - '56' Modul(e) wurden durchsucht Durchsuche Prozess 'TemproTray.exe' - '70' Modul(e) wurden durchsucht Durchsuche Prozess 'TPwrMain.exe' - '39' Modul(e) wurden durchsucht Durchsuche Prozess 'TCrdMain.exe' - '90' Modul(e) wurden durchsucht Durchsuche Prozess 'RAVCpl64.exe' - '47' Modul(e) wurden durchsucht Durchsuche Prozess 'RAVBg64.exe' - '46' Modul(e) wurden durchsucht Durchsuche Prozess 'SynTPEnh.exe' - '64' Modul(e) wurden durchsucht Durchsuche Prozess 'Teco.exe' - '34' Modul(e) wurden durchsucht Durchsuche Prozess 'SynTPHelper.exe' - '20' Modul(e) wurden durchsucht Durchsuche Prozess 'TOPI.exe' - '79' Modul(e) wurden durchsucht Durchsuche Prozess 'NokiaSuite.exe' - '198' Modul(e) wurden durchsucht Durchsuche Prozess 'TosDIMonitor.exe' - '95' Modul(e) wurden durchsucht Durchsuche Prozess 'SearchIndexer.exe' - '57' Modul(e) wurden durchsucht Durchsuche Prozess 'ToshibaServiceStation.exe' - '98' Modul(e) wurden durchsucht Durchsuche Prozess 'pdf24.exe' - '38' Modul(e) wurden durchsucht Durchsuche Prozess 'jusched.exe' - '35' Modul(e) wurden durchsucht Durchsuche Prozess 'wmpnetwk.exe' - '120' Modul(e) wurden durchsucht Durchsuche Prozess 'MOM.exe' - '72' Modul(e) wurden durchsucht Durchsuche Prozess 'CCC.exe' - '201' Modul(e) wurden durchsucht Durchsuche Prozess 'ServiceLayer.exe' - '40' Modul(e) wurden durchsucht Durchsuche Prozess 'NclUSBSrv64.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'taskeng.exe' - '32' Modul(e) wurden durchsucht Durchsuche Prozess 'NDSTray.exe' - '94' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '60' Modul(e) wurden durchsucht Durchsuche Prozess 'NclMSBTSrvEx.exe' - '37' Modul(e) wurden durchsucht Durchsuche Prozess 'wmiprvse.exe' - '57' Modul(e) wurden durchsucht Durchsuche Prozess 'CFSwMgr.exe' - '66' Modul(e) wurden durchsucht Durchsuche Prozess 'DllHost.exe' - '45' Modul(e) wurden durchsucht Durchsuche Prozess 'TMachInfo.exe' - '51' Modul(e) wurden durchsucht Durchsuche Prozess 'CFIWmxSvcs64.exe' - '17' Modul(e) wurden durchsucht Durchsuche Prozess 'CFSvcs.exe' - '57' Modul(e) wurden durchsucht Durchsuche Prozess 'NASvc.exe' - '46' Modul(e) wurden durchsucht Durchsuche Prozess 'TosSmartSrv.exe' - '40' Modul(e) wurden durchsucht Durchsuche Prozess 'TPCHSrv.exe' - '40' Modul(e) wurden durchsucht Durchsuche Prozess 'TosSENotify.exe' - '43' Modul(e) wurden durchsucht Durchsuche Prozess 'TPCHWMsg.exe' - '34' Modul(e) wurden durchsucht Durchsuche Prozess 'chrome.exe' - '141' Modul(e) wurden durchsucht Durchsuche Prozess 'chrome.exe' - '66' Modul(e) wurden durchsucht Durchsuche Prozess 'chrome.exe' - '44' Modul(e) wurden durchsucht Durchsuche Prozess 'avguard.exe' - '88' Modul(e) wurden durchsucht Durchsuche Prozess 'avshadow.exe' - '29' Modul(e) wurden durchsucht Durchsuche Prozess 'sched.exe' - '47' Modul(e) wurden durchsucht Durchsuche Prozess 'AVWEBGRD.EXE' - '72' Modul(e) wurden durchsucht Durchsuche Prozess 'avgnt.exe' - '95' Modul(e) wurden durchsucht Durchsuche Prozess 'apnmcp.exe' - '43' Modul(e) wurden durchsucht Durchsuche Prozess 'TBNotifier.exe' - '89' Modul(e) wurden durchsucht Durchsuche Prozess 'avcenter.exe' - '95' Modul(e) wurden durchsucht Durchsuche Prozess 'avscan.exe' - '127' Modul(e) wurden durchsucht Durchsuche Prozess 'vssvc.exe' - '47' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '28' Modul(e) wurden durchsucht Durchsuche Prozess 'SearchProtocolHost.exe' - '29' Modul(e) wurden durchsucht Durchsuche Prozess 'SearchFilterHost.exe' - '27' Modul(e) wurden durchsucht Durchsuche Prozess 'smss.exe' - '2' Modul(e) wurden durchsucht Durchsuche Prozess 'csrss.exe' - '18' Modul(e) wurden durchsucht Durchsuche Prozess 'wininit.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'csrss.exe' - '18' Modul(e) wurden durchsucht Durchsuche Prozess 'services.exe' - '33' Modul(e) wurden durchsucht Durchsuche Prozess 'lsass.exe' - '66' Modul(e) wurden durchsucht Durchsuche Prozess 'lsm.exe' - '16' Modul(e) wurden durchsucht Durchsuche Prozess 'winlogon.exe' - '31' Modul(e) wurden durchsucht Der Suchlauf auf Verweise zu ausführbaren Dateien (Registry) wird begonnen: Die Registry wurde durchsucht ( '10779' Dateien ). Der Suchlauf über die ausgewählten Dateien wird begonnen: Beginne mit der Suche in 'C:\' <WINDOWS> Beginne mit der Suche in 'D:\' <Data> Ende des Suchlaufs: Montag, 22. Juli 2013 13:33 Benötigte Zeit: 1:27:24 Stunde(n) Der Suchlauf wurde vollständig durchgeführt. 27013 Verzeichnisse wurden überprüft 474779 Dateien wurden geprüft 0 Viren bzw. unerwünschte Programme wurden gefunden 0 Dateien wurden als verdächtig eingestuft 0 Dateien wurden gelöscht 0 Viren bzw. unerwünschte Programme wurden repariert 0 Dateien wurden in die Quarantäne verschoben 0 Dateien wurden umbenannt 0 Dateien konnten nicht durchsucht werden 474779 Dateien ohne Befall 5745 Archive wurden durchsucht 0 Warnungen 0 Hinweise 841111 Objekte wurden beim Rootkitscan durchsucht 0 Versteckte Objekte wurden gefunden Code:
ATTFilter Results of screen317's Security Check version 0.99.70 Windows 7 Service Pack 1 x64 (UAC is enabled) Internet Explorer 10 ``````````````Antivirus/Firewall Check:`````````````` Avira Desktop Antivirus up to date! (On Access scanning disabled!) `````````Anti-malware/Other Utilities Check:````````` McAfee SiteAdvisor JavaFX 2.1.1 Java(TM) 6 Update 31 Java 7 Update 21 Java version out of Date! Adobe Reader XI Google Chrome 28.0.1500.72 ````````Process Check: objlist.exe by Laurent```````` Avira Antivir avgnt.exe Avira Antivir avguard.exe TOSHIBA TOSHIBA Online Product Information TOPI.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` FRST Logfile: FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 21-07-2013 Ran by Schneball (administrator) on 22-07-2013 13:48:51 Running from C:\Users\Schneball\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\system32\atiesrxx.exe () C:\Windows\System32\GFNEXSrv.exe (AMD) C:\Windows\system32\atieclxx.exe (Microsoft Corporation) C:\Windows\System32\lpksetup.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (TOSHIBA Corporation) C:\Windows\system32\TODDSrv.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\TecoService.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe (Toshiba Europe GmbH) C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\Teco.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (TOSHIBA) C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\TOPI.exe (Nokia) C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe (Toshiba) C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIMonitor.exe (TOSHIBA Corporation) C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe (Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Nokia) C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe (Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclUSBSrv64.exe (TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe (Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe (TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe (TOSHIBA Corporation) C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe (TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe (TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe (Nero AG) c:\Program Files (x86)\Nero\Update\NASvc.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (APN LLC.) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe (APN) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avcenter.exe () C:\Users\Schneball\Desktop\SecurityCheck.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [TosNC] - C:\Program Files\Toshiba\BulletinBoard\TosNcCore.exe [597928 2011-03-03] (TOSHIBA Corporation) HKLM\...\Run: [TosReelTimeMonitor] - C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe [38304 2011-03-30] (TOSHIBA Corporation) HKLM\...\Run: [Toshiba TEMPRO] - C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe [1546720 2011-02-10] (Toshiba Europe GmbH) HKLM\...\Run: [TPwrMain] - C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [566696 2011-03-02] (TOSHIBA Corporation) HKLM\...\Run: [HSON] - C:\Program Files\TOSHIBA\TBS\HSON.exe [296824 2010-09-25] (TOSHIBA Corporation) HKLM\...\Run: [TCrdMain] - C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [967544 2011-03-09] (TOSHIBA Corporation) HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11775592 2011-01-12] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2186856 2011-01-10] (Realtek Semiconductor) HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2679592 2011-02-03] (Synaptics Incorporated) HKLM\...\Run: [Teco] - C:\Program Files\TOSHIBA\TECO\Teco.exe [1544104 2011-04-07] (TOSHIBA Corporation) HKLM\...\Run: [TosSENotify] - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [710040 2010-12-08] (TOSHIBA Corporation) HKLM\...\Run: [TosWaitSrv] - C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [711576 2011-04-05] (TOSHIBA Corporation) HKLM\...\Run: [TosVolRegulator] - C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe [24376 2009-11-11] (TOSHIBA Corporation) HKLM\...\Run: [Toshiba Registration] - C:\Program Files\TOSHIBA\Registration\ToshibaReminder.exe [150992 2011-08-01] (Toshiba Europe GmbH) HKCU\...\Run: [TOPI.EXE] - C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe [846936 2011-05-16] (TOSHIBA) HKCU\...\Run: [NokiaSuite.exe] - C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe [1090040 2012-12-21] (Nokia) HKLM-x32\...\Run: [NBAgent] - "c:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart [1409424 2011-06-29] (Nero AG) HKLM-x32\...\Run: [StartCCC] - "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun [336384 2011-04-20] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [ToshibaServiceStation] - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe /hide:60 [1294712 2010-11-29] (TOSHIBA Corporation) HKLM-x32\...\Run: [APSDaemon] - "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59240 2011-11-02] (Apple Inc.) HKLM-x32\...\Run: [PDFPrint] - C:\Program Files (x86)\PDF24\pdf24.exe [163000 2012-12-12] (Geek Software GmbH) HKLM-x32\...\Run: [SunJavaUpdateSched] - "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [253816 2013-03-12] (Oracle Corporation) HKLM-x32\...\Run: [Adobe ARM] - "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [958576 2013-05-11] (Adobe Systems Incorporated) HKLM-x32\...\Run: [avgnt] - "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min [345144 2013-07-22] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [ApnTBMon] - "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe" [1558480 2013-07-03] (APN) HKU\Default\...\Run: [TOPI.EXE] - C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STAR [846936 2011-05-16] (TOSHIBA) HKU\Default User\...\Run: [TOPI.EXE] - C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STAR [846936 2011-05-16] (TOSHIBA) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Toshiba Places Icon Utility.lnk ShortcutTarget: Toshiba Places Icon Utility.lnk -> C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIMonitor.exe (Toshiba) Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe) Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe) BootExecute: autocheck autochk * sdnclean64.exe ==================== Internet (Whitelisted) ==================== ProxyServer: :0 HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com StartMenuInternet: IEXPLORE.EXE - "C:\Program Files (x86)\Internet Explorer\iexplore.exe" SearchScopes: HKLM - DefaultScope value is missing. BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Avira SearchFree Toolbar plus Web Protection - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll (Microsoft Corporation) BHO-x32: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: TOSHIBA Media Controller Plug-in - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll (<TOSHIBA>) Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.) Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.) Toolbar: HKLM-x32 - Avira SearchFree Toolbar plus Web Protection - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.) Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.) Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.) Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.) Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.21.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @mcafee.com/SAFFPlugin - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.) FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @nokia.com/EnablerPlugin - C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll ( ) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll () FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: amazon.com/AmazonMP3DownloaderPlugin - C:\Program Files (x86)\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin101727.dll (Amazon.com, Inc.) FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] C:\Program Files (x86)\McAfee\SiteAdvisor FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor Chrome: ======= CHR HomePage: hxxp://www.google.com/ CHR RestoreOnStartup: "hxxp://www.google.com/" CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding} CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter} CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.72\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.72\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.72\pdf.dll () CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation) CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation) CHR Plugin: (AmazonMP3DownloaderPlugin) - C:\Program Files (x86)\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin101727.dll (Amazon.com, Inc.) CHR Plugin: (Google Earth Plugin) - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll No File CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) CHR Plugin: (Java(TM) Platform SE 7 U21) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (McAfee SiteAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.) CHR Plugin: (Silverlight Plug-In) - C:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) CHR Plugin: (Nokia Suite Enabler Plugin) - C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll ( ) CHR Plugin: (Windows Live Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR HKLM-x32\...\Chrome\Extension: [aaaaacalgebmfelllfiaoknifldpngjh] - C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\ToolbarCR.crx CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-07-22] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-07-22] (Avira Operations GmbH & Co. KG) R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [589368 2013-07-22] (Avira Operations GmbH & Co. KG) R2 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [168400 2013-07-03] (APN LLC.) R2 GFNEXSrv; C:\Windows\System32\GFNEXSrv.exe [162824 2010-09-09] () R2 McAfee SiteAdvisor Service; c:\PROGRA~2\mcafee\SITEAD~1\McSACore.exe [120592 2013-05-22] (McAfee, Inc.) S3 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [112080 2011-02-10] (Toshiba Europe GmbH) ==================== Drivers (Whitelisted) ==================== R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [100712 2013-07-22] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [130016 2013-07-22] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-07-22] (Avira Operations GmbH & Co. KG) S3 catchme; \??\C:\ComboFix\catchme.sys [x] S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x] S3 TDEIO; \??\c:\Windows\SysWOW64\sysprep\Bootprio\tdeio64.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-07-22 13:45 - 2013-07-22 13:45 - 00891062 _____ C:\Users\Schneball\Desktop\SecurityCheck.exe 2013-07-22 12:04 - 2013-07-22 12:04 - 00083672 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2013-07-22 12:03 - 2013-07-22 12:03 - 00000000 ____D C:\Users\Schneball\AppData\Roaming\Avira 2013-07-22 11:58 - 2013-07-22 11:58 - 00000000 ____D C:\Users\Schneball\AppData\Roaming\Mozilla 2013-07-22 11:58 - 2013-07-22 11:58 - 00000000 ____D C:\ProgramData\AskPartnerNetwork 2013-07-22 11:58 - 2013-07-22 11:58 - 00000000 ____D C:\ProgramData\APN 2013-07-22 11:58 - 2013-07-22 11:58 - 00000000 ____D C:\Program Files (x86)\AskPartnerNetwork 2013-07-22 11:58 - 2013-06-06 22:41 - 00489392 _____ (Ask Partner Network) C:\Users\Schneball\Documents\APNSetup.exe 2013-07-22 11:57 - 2013-07-22 11:57 - 00002077 _____ C:\Users\Public\Desktop\Avira Control Center.lnk 2013-07-22 11:57 - 2013-07-22 11:57 - 00000000 ____D C:\ProgramData\Avira 2013-07-22 11:57 - 2013-07-22 11:57 - 00000000 ____D C:\Program Files (x86)\Avira 2013-07-22 11:57 - 2013-07-22 11:56 - 00130016 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2013-07-22 11:57 - 2013-07-22 11:56 - 00100712 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2013-07-22 11:57 - 2013-07-22 11:56 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys 2013-07-22 11:54 - 2013-07-22 11:54 - 02092792 _____ C:\Users\Schneball\Downloads\avira_free_antivirus (1).exe 2013-07-22 11:43 - 2013-07-22 11:44 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{71DB5144-92B5-4E58-B9FB-D3E0D76E1C3A} 2013-07-22 10:31 - 2013-07-22 10:31 - 02347384 _____ (ESET) C:\Users\Schneball\Desktop\esetsmartinstaller_enu.exe 2013-07-22 10:31 - 2013-07-22 10:31 - 00000000 ____D C:\Program Files (x86)\ESET 2013-07-22 08:43 - 2013-07-22 08:43 - 01779363 _____ (Farbar) C:\Users\Schneball\Desktop\FRST64.exe 2013-07-22 08:27 - 2013-07-22 08:27 - 00101265 _____ C:\Users\Schneball\Desktop\JRT.txt 2013-07-22 08:19 - 2013-07-22 08:19 - 00000000 ____D C:\Windows\ERUNT 2013-07-22 08:18 - 2013-07-22 08:18 - 00560639 _____ (Oleg N. Scherbakov) C:\Users\Schneball\Downloads\JRT (1).exe 2013-07-22 08:17 - 2013-07-22 08:17 - 00560639 _____ (Oleg N. Scherbakov) C:\Users\Schneball\Desktop\JRT.exe 2013-07-22 07:59 - 2013-07-22 08:00 - 00012388 _____ C:\AdwCleaner[S1].txt 2013-07-22 07:57 - 2013-07-22 07:57 - 00666633 _____ C:\Users\Schneball\Downloads\adwcleaner.exe 2013-07-22 07:56 - 2013-07-22 07:56 - 00793536 _____ C:\Users\Schneball\Downloads\ZipOpenerSetup.exe 2013-07-22 07:46 - 2013-07-22 07:46 - 00001192 _____ C:\Users\Schneball\Desktop\ComboFix - Verknüpfung.lnk 2013-07-21 17:30 - 2013-07-21 17:30 - 00020873 _____ C:\Users\Schneball\Desktop\combo.txt 2013-07-21 17:30 - 2013-07-21 17:30 - 00020873 _____ C:\ComboFix.txt 2013-07-21 17:14 - 2011-06-26 08:45 - 00256000 _____ C:\Windows\PEV.exe 2013-07-21 17:14 - 2010-11-07 19:20 - 00208896 _____ C:\Windows\MBR.exe 2013-07-21 17:14 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2013-07-21 17:14 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2013-07-21 17:14 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2013-07-21 17:14 - 2000-08-31 02:00 - 00098816 _____ C:\Windows\sed.exe 2013-07-21 17:14 - 2000-08-31 02:00 - 00080412 _____ C:\Windows\grep.exe 2013-07-21 17:14 - 2000-08-31 02:00 - 00068096 _____ C:\Windows\zip.exe 2013-07-21 17:12 - 2013-07-21 17:12 - 00001531 _____ C:\Users\Schneball\Downloads\ComboFix (1) - Verknüpfung.lnk 2013-07-21 16:55 - 2013-07-21 17:30 - 00000000 ____D C:\Qoobox 2013-07-21 16:54 - 2013-07-21 17:27 - 00000000 ____D C:\Windows\erdnt 2013-07-21 16:47 - 2013-07-21 17:11 - 05093416 ____R (Swearware) C:\Users\Schneball\Downloads\ComboFix.exe 2013-07-21 10:36 - 2013-07-21 10:36 - 00000000 ____D C:\FRST 2013-07-20 07:41 - 2013-07-20 07:41 - 00000000 _____ C:\autoexec.bat 2013-07-20 07:40 - 2013-07-20 07:40 - 00000000 ____D C:\Program Files\Enigma Software Group 2013-07-20 07:39 - 2013-07-20 14:20 - 00000000 ____D C:\Windows\8AE3CFB678B24F55A7BE618FCFF43A03.TMP 2013-07-20 07:38 - 2013-07-20 07:38 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\Schneball\Downloads\SpyHunter-Installer (1).exe 2013-07-19 12:15 - 2013-07-21 16:49 - 00003702 _____ C:\Windows\wininit.ini 2013-07-19 10:21 - 2013-07-19 12:19 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2013-07-19 10:21 - 2013-07-19 10:21 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking 2013-07-19 10:20 - 2013-07-21 16:51 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2013-07-19 10:19 - 2013-07-19 10:20 - 36271144 _____ (Safer-Networking Ltd. ) C:\Users\Schneball\Downloads\spybot-2.1.exe 2013-07-19 10:18 - 2013-07-19 10:18 - 01624136 _____ (Bandoo Media Inc) C:\Users\Schneball\Downloads\iLividSetup-r394-n-bc.exe 2013-07-17 18:39 - 2013-07-17 18:40 - 02828552 _____ (AVAST Software) C:\Users\Schneball\Downloads\avast-browser-cleanup_8.0.1484.29.exe 2013-07-17 18:35 - 2013-07-17 18:35 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\Schneball\Downloads\SpyHunter-Installer.exe 2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Windows\SysWOW64\searchplugins 2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Windows\SysWOW64\Extensions 2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-07-17 18:10 - 2013-07-17 18:10 - 00283160 _____ C:\Users\Schneball\Downloads\Setup (2).exe 2013-07-17 18:10 - 2013-07-17 18:10 - 00283160 _____ C:\Users\Schneball\Downloads\Setup (1).exe 2013-07-17 18:06 - 2013-07-17 18:06 - 00283160 _____ C:\Users\Schneball\Downloads\Setup.exe 2013-07-13 06:50 - 2013-06-12 01:43 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-07-13 06:50 - 2013-06-12 01:43 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-07-13 06:50 - 2013-06-12 01:43 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-07-13 06:50 - 2013-06-12 01:42 - 02046976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-07-13 06:50 - 2013-06-12 01:42 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-07-13 06:50 - 2013-06-12 01:42 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-07-13 06:50 - 2013-06-12 01:42 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-07-13 06:50 - 2013-06-12 01:42 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-07-13 06:50 - 2013-06-12 01:26 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-07-13 06:50 - 2013-06-12 01:25 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-07-13 06:50 - 2013-06-12 01:25 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-07-13 06:50 - 2013-06-12 01:25 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-07-13 06:50 - 2013-06-12 01:25 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-07-13 06:50 - 2013-06-12 01:25 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-07-13 06:50 - 2013-06-12 01:25 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-07-13 06:50 - 2013-06-12 01:25 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-07-13 06:50 - 2013-06-12 01:25 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-07-13 06:50 - 2013-06-12 00:51 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-07-13 06:50 - 2013-06-12 00:50 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-07-13 06:50 - 2013-06-07 05:22 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-07-13 06:50 - 2013-06-07 04:37 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-07-13 06:49 - 2013-06-12 01:43 - 14329856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-07-13 06:49 - 2013-06-12 01:43 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-07-13 06:49 - 2013-06-12 01:43 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-07-13 06:49 - 2013-06-12 01:43 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-07-13 06:49 - 2013-06-12 01:42 - 13760512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-07-13 06:49 - 2013-06-12 01:26 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-07-13 06:49 - 2013-06-12 01:26 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-07-13 06:49 - 2013-06-12 01:25 - 19238912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-07-13 06:49 - 2013-06-12 01:25 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-07-13 06:49 - 2013-06-12 01:25 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-07-12 07:15 - 2013-06-05 05:34 - 03153920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-07-12 07:15 - 2013-06-04 08:00 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2013-07-12 07:15 - 2013-06-04 06:53 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2013-07-12 07:15 - 2013-05-06 08:03 - 01887744 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2013-07-12 07:15 - 2013-05-06 06:56 - 01620480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2013-07-12 07:14 - 2013-04-10 01:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2013-07-12 07:14 - 2013-04-03 00:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2013-07-06 14:35 - 2013-07-06 14:35 - 00029137 _____ C:\Users\Schneball\Downloads\eBayISAPI (3).gz 2013-07-06 14:35 - 2013-07-06 14:35 - 00029119 _____ C:\Users\Schneball\Downloads\eBayISAPI (4).gz 2013-06-25 10:08 - 2013-06-25 10:08 - 00202234 _____ C:\Users\Schneball\Downloads\fax (7).tif 2013-06-25 09:47 - 2013-06-25 09:47 - 00202888 _____ C:\Users\Schneball\Downloads\fax (6).tif ==================== One Month Modified Files and Folders ======= 2013-07-22 13:45 - 2013-07-22 13:45 - 00891062 _____ C:\Users\Schneball\Desktop\SecurityCheck.exe 2013-07-22 13:44 - 2013-06-16 09:23 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-07-22 13:44 - 2011-08-01 13:10 - 00001124 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-07-22 12:43 - 2011-11-17 08:40 - 01987089 _____ C:\Windows\WindowsUpdate.log 2013-07-22 12:04 - 2013-07-22 12:04 - 00083672 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2013-07-22 12:03 - 2013-07-22 12:03 - 00000000 ____D C:\Users\Schneball\AppData\Roaming\Avira 2013-07-22 11:58 - 2013-07-22 11:58 - 00000000 ____D C:\Users\Schneball\AppData\Roaming\Mozilla 2013-07-22 11:58 - 2013-07-22 11:58 - 00000000 ____D C:\ProgramData\AskPartnerNetwork 2013-07-22 11:58 - 2013-07-22 11:58 - 00000000 ____D C:\ProgramData\APN 2013-07-22 11:58 - 2013-07-22 11:58 - 00000000 ____D C:\Program Files (x86)\AskPartnerNetwork 2013-07-22 11:57 - 2013-07-22 11:57 - 00002077 _____ C:\Users\Public\Desktop\Avira Control Center.lnk 2013-07-22 11:57 - 2013-07-22 11:57 - 00000000 ____D C:\ProgramData\Avira 2013-07-22 11:57 - 2013-07-22 11:57 - 00000000 ____D C:\Program Files (x86)\Avira 2013-07-22 11:56 - 2013-07-22 11:57 - 00130016 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2013-07-22 11:56 - 2013-07-22 11:57 - 00100712 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2013-07-22 11:56 - 2013-07-22 11:57 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys 2013-07-22 11:54 - 2013-07-22 11:54 - 02092792 _____ C:\Users\Schneball\Downloads\avira_free_antivirus (1).exe 2013-07-22 11:44 - 2013-07-22 11:43 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{71DB5144-92B5-4E58-B9FB-D3E0D76E1C3A} 2013-07-22 11:43 - 2012-04-08 22:12 - 00003970 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{293B7530-1DF2-4F3C-8BCF-32E681E5FE98} 2013-07-22 11:04 - 2009-07-14 06:45 - 00025120 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-07-22 11:04 - 2009-07-14 06:45 - 00025120 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-07-22 11:02 - 2011-02-11 10:21 - 00654400 _____ C:\Windows\system32\perfh007.dat 2013-07-22 11:02 - 2011-02-11 10:21 - 00130240 _____ C:\Windows\system32\perfc007.dat 2013-07-22 11:02 - 2009-07-14 07:13 - 01498742 _____ C:\Windows\system32\PerfStringBackup.INI 2013-07-22 10:57 - 2012-12-28 09:32 - 00023713 _____ C:\Windows\setupact.log 2013-07-22 10:57 - 2011-08-01 13:10 - 00001120 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-07-22 10:57 - 2010-11-21 05:47 - 00166922 _____ C:\Windows\PFRO.log 2013-07-22 10:57 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-07-22 10:31 - 2013-07-22 10:31 - 02347384 _____ (ESET) C:\Users\Schneball\Desktop\esetsmartinstaller_enu.exe 2013-07-22 10:31 - 2013-07-22 10:31 - 00000000 ____D C:\Program Files (x86)\ESET 2013-07-22 08:43 - 2013-07-22 08:43 - 01779363 _____ (Farbar) C:\Users\Schneball\Desktop\FRST64.exe 2013-07-22 08:27 - 2013-07-22 08:27 - 00101265 _____ C:\Users\Schneball\Desktop\JRT.txt 2013-07-22 08:19 - 2013-07-22 08:19 - 00000000 ____D C:\Windows\ERUNT 2013-07-22 08:18 - 2013-07-22 08:18 - 00560639 _____ (Oleg N. Scherbakov) C:\Users\Schneball\Downloads\JRT (1).exe 2013-07-22 08:17 - 2013-07-22 08:17 - 00560639 _____ (Oleg N. Scherbakov) C:\Users\Schneball\Desktop\JRT.exe 2013-07-22 08:00 - 2013-07-22 07:59 - 00012388 _____ C:\AdwCleaner[S1].txt 2013-07-22 07:57 - 2013-07-22 07:57 - 00666633 _____ C:\Users\Schneball\Downloads\adwcleaner.exe 2013-07-22 07:56 - 2013-07-22 07:56 - 00793536 _____ C:\Users\Schneball\Downloads\ZipOpenerSetup.exe 2013-07-22 07:46 - 2013-07-22 07:46 - 00001192 _____ C:\Users\Schneball\Desktop\ComboFix - Verknüpfung.lnk 2013-07-21 17:30 - 2013-07-21 17:30 - 00020873 _____ C:\Users\Schneball\Desktop\combo.txt 2013-07-21 17:30 - 2013-07-21 17:30 - 00020873 _____ C:\ComboFix.txt 2013-07-21 17:30 - 2013-07-21 16:55 - 00000000 ____D C:\Qoobox 2013-07-21 17:27 - 2013-07-21 16:54 - 00000000 ____D C:\Windows\erdnt 2013-07-21 17:27 - 2009-07-14 04:34 - 00000215 _____ C:\Windows\system.ini 2013-07-21 17:24 - 2011-12-25 10:40 - 00000000 ____D C:\Users\Schneball 2013-07-21 17:12 - 2013-07-21 17:12 - 00001531 _____ C:\Users\Schneball\Downloads\ComboFix (1) - Verknüpfung.lnk 2013-07-21 17:11 - 2013-07-21 16:47 - 05093416 ____R (Swearware) C:\Users\Schneball\Downloads\ComboFix.exe 2013-07-21 16:51 - 2013-07-19 10:20 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2013-07-21 16:49 - 2013-07-19 12:15 - 00003702 _____ C:\Windows\wininit.ini 2013-07-21 16:44 - 2011-08-01 13:11 - 00000000 ____D C:\Program Files\Google 2013-07-21 16:44 - 2011-08-01 13:10 - 00000000 ____D C:\Program Files (x86)\Google 2013-07-21 10:36 - 2013-07-21 10:36 - 00000000 ____D C:\FRST 2013-07-21 09:28 - 2011-12-25 12:16 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\Google 2013-07-21 09:28 - 2011-08-01 13:10 - 00000000 ____D C:\ProgramData\Google 2013-07-21 09:25 - 2011-12-25 10:40 - 00000000 ___RD C:\Users\Schneball\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-07-20 14:20 - 2013-07-20 07:39 - 00000000 ____D C:\Windows\8AE3CFB678B24F55A7BE618FCFF43A03.TMP 2013-07-20 14:20 - 2011-12-25 13:52 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\Windows Live 2013-07-20 07:55 - 2011-12-25 11:51 - 00002087 _____ C:\Users\Public\Desktop\Toshiba-Garantieregistrierung.lnk 2013-07-20 07:41 - 2013-07-20 07:41 - 00000000 _____ C:\autoexec.bat 2013-07-20 07:40 - 2013-07-20 07:40 - 00000000 ____D C:\Program Files\Enigma Software Group 2013-07-20 07:38 - 2013-07-20 07:38 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\Schneball\Downloads\SpyHunter-Installer (1).exe 2013-07-19 12:19 - 2013-07-19 10:21 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2013-07-19 10:21 - 2013-07-19 10:21 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking 2013-07-19 10:20 - 2013-07-19 10:19 - 36271144 _____ (Safer-Networking Ltd. ) C:\Users\Schneball\Downloads\spybot-2.1.exe 2013-07-19 10:18 - 2013-07-19 10:18 - 01624136 _____ (Bandoo Media Inc) C:\Users\Schneball\Downloads\iLividSetup-r394-n-bc.exe 2013-07-17 18:40 - 2013-07-17 18:39 - 02828552 _____ (AVAST Software) C:\Users\Schneball\Downloads\avast-browser-cleanup_8.0.1484.29.exe 2013-07-17 18:40 - 2013-03-21 20:50 - 00000000 ____D C:\Users\Schneball\Documents\My Digital Editions 2013-07-17 18:40 - 2011-12-27 18:25 - 00000000 ____D C:\Program Files (x86)\Adobe 2013-07-17 18:35 - 2013-07-17 18:35 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\Schneball\Downloads\SpyHunter-Installer.exe 2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Windows\SysWOW64\searchplugins 2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Windows\SysWOW64\Extensions 2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-07-17 18:10 - 2013-07-17 18:10 - 00283160 _____ C:\Users\Schneball\Downloads\Setup (2).exe 2013-07-17 18:10 - 2013-07-17 18:10 - 00283160 _____ C:\Users\Schneball\Downloads\Setup (1).exe 2013-07-17 18:06 - 2013-07-17 18:06 - 00283160 _____ C:\Users\Schneball\Downloads\Setup.exe 2013-07-16 08:09 - 2011-12-27 10:43 - 00000000 ____D C:\Users\Schneball\Desktop\Diana 2013-07-14 07:54 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender 2013-07-14 07:54 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-07-13 16:17 - 2009-07-14 06:45 - 00342240 _____ C:\Windows\system32\FNTCACHE.DAT 2013-07-13 16:16 - 2012-05-18 21:53 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2013-07-13 16:16 - 2012-05-18 21:53 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-07-13 12:27 - 2010-11-21 09:17 - 00000000 ____D C:\Program Files\Windows Journal 2013-07-13 12:25 - 2011-12-25 11:57 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-07-13 06:52 - 2011-12-29 16:41 - 78185248 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-07-13 06:39 - 2011-08-01 13:10 - 00004120 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2013-07-13 06:39 - 2011-08-01 13:10 - 00003868 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2013-07-06 14:35 - 2013-07-06 14:35 - 00029137 _____ C:\Users\Schneball\Downloads\eBayISAPI (3).gz 2013-07-06 14:35 - 2013-07-06 14:35 - 00029119 _____ C:\Users\Schneball\Downloads\eBayISAPI (4).gz 2013-07-04 20:08 - 2013-06-02 20:44 - 00000000 ____D C:\Users\Schneball\AppData\Roaming\PhotoMania 2013-06-27 08:13 - 2011-08-01 12:51 - 00000000 ____D C:\Program Files (x86)\McAfee 2013-06-26 14:51 - 2013-01-31 09:16 - 00000000 ____D C:\Program Files\McAfee 2013-06-25 10:08 - 2013-06-25 10:08 - 00202234 _____ C:\Users\Schneball\Downloads\fax (7).tif 2013-06-25 09:47 - 2013-06-25 09:47 - 00202888 _____ C:\Users\Schneball\Downloads\fax (6).tif 2013-06-25 09:39 - 2013-05-02 17:17 - 00000000 ____D C:\Users\Schneball\Desktop\Oma ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-07-14 13:15 ==================== End Of Log ============================ --- --- --- --- --- --- Ich glaube die Viren sind weg :-) passiert jedenfalls nichts momentan. |
22.07.2013, 14:04 | #14 |
/// the machine /// TB-Ausbilder | Wie bekämpfe ich Spy Hunter und Delta Search? Java updaten. SiteAdvisor ist keine malware, ist von McAfee Fertig Die Reihenfolge ist hier entscheidend.
Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
22.07.2013, 16:01 | #15 |
| Wie bekämpfe ich Spy Hunter und Delta Search? Hallo schrauber, vielen, vielen Dank für alles! Ich arbeite das jetzt nach und nach ab und gebe Dir sofort Bescheid, ob alles gut ist. Ich nutze Google Chrome, auch wegen dem schnelleren Seitenaufbau. Denkst Du das ist ein Problem? Gruß Alles erledigt! Super!!! Danke, danke, danke! |
Themen zu Wie bekämpfe ich Spy Hunter und Delta Search? |
beschränkt, deinstalliert, delta, fehler, fenster, hunter, installieren, interne, internet, laden, laptop, logfiles, microsoft, neu, nichts, player, search, seite, spy, super, toshiba, unterwegs, viren, viren usw., warnung, wirklich, wissen |