|
Plagegeister aller Art und deren Bekämpfung: Laufend Werbeienblendungen und aufforderungen sicherheitsscans zu machenWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
03.08.2013, 17:46 | #1 |
| Laufend Werbeienblendungen und aufforderungen sicherheitsscans zu machen HAllo Zusammen Ich habe folgendes Problem. Seit einiger Zeit bekomme ich laufend Werbeseiten eingeblendet und Hinweise, ich solle mein System scannen etc.p.p. Leider bekomme ich das Problem nicht selber in den Griff und hoffe hier mal wieder Hilfe zu finden. Danke im Voraus, Ralf |
03.08.2013, 18:38 | #2 |
/// the machine /// TB-Ausbilder | Laufend Werbeienblendungen und aufforderungen sicherheitsscans zu machen Hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
03.08.2013, 19:49 | #3 |
| Laufend Werbeienblendungen und aufforderungen sicherheitsscans zu machen FRST Logfile:
__________________FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 04-06-2013 (ATTENTION: FRST version is 60 days old) Ran by Rafael (administrator) on 03-08-2013 20:45:44 Running from D:\AnitVirus per UInternet Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 9 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Wsys Co., Ltd.) C:\ProgramData\eSafe\eGdpSvc.exe (MyPCBackup.com) C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Easy Settings\SmartSetting.exe (Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Easy Settings\dmhkcore.exe (Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Easy Settings\MovieColorEnhancer.exe (Samsung Electronics) C:\Program Files (x86)\Samsung\Easy Settings\EasySpeedUpManager.exe (Samsung Electronics CO., LTD.) C:\Program Files\Samsung\Easy Support Center\SamoyedAgent.exe (Samsung Electronics CO., LTD.) C:\Program Files\Samsung\S Agent\CommonAgent.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (PostgreSQL Global Development Group) C:\Program Files\3CX PhoneSystem\Bin\pgsql\bin\pg_ctl.exe (3CX Ltd.) C:\Program Files\3CX PhoneSystem\Bin\3CXTunnel.exe (PostgreSQL Global Development Group) C:\Program Files\3CX PhoneSystem\Bin\pgsql\bin\postgres.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\adminservice.exe (PostgreSQL Global Development Group) C:\Program Files\3CX PhoneSystem\Bin\pgsql\bin\postgres.exe (Just Develop It) C:\Program Files (x86)\MyPC Backup\BackupStack.exe (PostgreSQL Global Development Group) C:\Program Files\3CX PhoneSystem\Bin\pgsql\bin\postgres.exe (PostgreSQL Global Development Group) C:\Program Files\3CX PhoneSystem\Bin\pgsql\bin\postgres.exe (PostgreSQL Global Development Group) C:\Program Files\3CX PhoneSystem\Bin\pgsql\bin\postgres.exe (PostgreSQL Global Development Group) C:\Program Files\3CX PhoneSystem\Bin\pgsql\bin\postgres.exe (Microsoft Corporation) C:\Windows\system32\inetsrv\inetinfo.exe () C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Microsoft Corporation) C:\Windows\system32\mqsvc.exe (Locktime Software) C:\Program Files\NetLimiter 3\nlsvc.exe () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe () C:\Program Files\CyberLink\Shared files\RichVideo64.exe () C:\Program Files (x86)\Samsung\Easy Settings\SamsungDeviceConfiguration.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (STRATO) C:\Program Files (x86)\STRATO AG\STRATO HiDrive\STRATO HiDrive Service.exe (Samsung Electronics CO., LTD.) C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (WebCake LLC) C:\Program Files (x86)\WebCake\WebCakeDesktop.Updater.exe () C:\Windows\system32\atwtusb.exe (Intel Corporation) C:\Windows\system32\igfxext.exe (Intel Corporation) C:\Windows\system32\igfxsrvc.exe (Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe () C:\Windows\system32\atwtusb.exe (3CX Ltd.) C:\Program Files\3CX PhoneSystem\Bin\3CXSLDBServ.exe (Microsoft Corporation) C:\Windows\system32\mqtgsvc.exe (PostgreSQL Global Development Group) C:\Program Files\3CX PhoneSystem\Bin\pgsql\bin\postgres.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (PostgreSQL Global Development Group) C:\Program Files\3CX PhoneSystem\Bin\pgsql\bin\postgres.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (3CX Software Ltd.) C:\Program Files\3CX PhoneSystem\Bin\3CXAudioProvider.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\Media+Player10\Media+Player10Serv.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Intel Corporation) C:\Windows\system32\hkcmd.exe (Intel Corporation) C:\Windows\system32\igfxpers.exe (MAGIX AG) C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler64.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe () C:\ProgramData\BrowserDefender\2.6.1519.190\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe () C:\ProgramData\BrowserDefender\2.6.1519.190\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe () C:\Users\Rafael\Qtrax\Player\Notification.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM-x32\...\Runonce: [Del7864572] cmd.exe /Q /D /c del "C:\Users\Rafael\AppData\Local\Temp\0.del" [x] HKLM-x32\...\Runonce: [Del7868347] cmd.exe /Q /D /c del "C:\Users\Rafael\AppData\Local\Temp\0.del" [x] HKCU\...\Run: [NTRedirect] C:\Windows\SysWOW64\rundll32.exe "C:\Users\Rafael\AppData\Roaming\BabSolution\Shared\NTRedirect.dll",Run [121856 2013-07-25] () HKCU\...\Run: [QtraxNotification] C:\Users\Rafael\Qtrax\Player\Notification.exe [118568 2013-08-03] () HKCU\...\Runonce: [Del7864572] cmd.exe /Q /D /c del "C:\Users\Rafael\AppData\Local\Temp\0.del" [x] HKCU\...\Runonce: [Del7868347] cmd.exe /Q /D /c del "C:\Users\Rafael\AppData\Local\Temp\0.del" [x] HKCU\...\RunOnce: [FlashPlayerUpdate] C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_7_700_224_ActiveX.exe -update activex [814472 2013-06-13] (Adobe Systems Incorporated) HKLM-x32\...\Runonce: [Del7864572] cmd.exe /Q /D /c del "C:\Users\Rafael\AppData\Local\Temp\0.del" [x] HKLM-x32\...\Runonce: [Del7868347] cmd.exe /Q /D /c del "C:\Users\Rafael\AppData\Local\Temp\0.del" [x] MountPoints2: {045f5110-a066-11e2-b2f7-e8039afebe73} - F:\AutoRun.exe MountPoints2: {7b8f8c49-5d78-11e2-968e-806e6f6e6963} - E:\SecSWMgrGuide.exe MountPoints2: {8a0e9786-8841-11e2-ab7b-e8039afebe73} - F:\AutoRun.exe MountPoints2: {8a0e9796-8841-11e2-ab7b-e8039afebe73} - F:\setup_vmc_lite.exe /checkApplicationPresence MountPoints2: {8a0e979f-8841-11e2-ab7b-e8039afebe73} - G:\setup_vmc_lite.exe /checkApplicationPresence MountPoints2: {8bce5879-5dc6-11e2-9a38-e8039afebe72} - G:\AutoRun.exe MountPoints2: {8bce587d-5dc6-11e2-9a38-e8039afebe72} - F:\AutoRun.exe MountPoints2: {c10f823f-5d97-11e2-a281-e8039afebe72} - G:\AutoRun.exe MountPoints2: {c10f8244-5d97-11e2-a281-e8039afebe72} - F:\AutoRun.exe HKLM-x32\...\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min [345144 2013-07-01] (Avira Operations GmbH & Co. KG) Startup: C:\Users\Rafael\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk ShortcutTarget: MyPC Backup.lnk -> C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe (MyPCBackup.com) BootExecute: autocheck autochk * sdnclean64.exe ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www1.delta-search.com/?babsrc=HP_ss&mntrId=006500FF5501776D&affID=119357&tsp=4963 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.qvo6.com/?utm_source=b&utm_medium=ild&from=ild&uid=SanDiskXSDSSDP256G_123506402792&ts=1374755743 HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://search.certified-toolbar.com?si=43169&st=chrome&tid=3580&ver=3.1&ts=1369217878645&tguid=43169-3580-1369217878645-991DEA46DB298FEF82771B40121C46EA&q= HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://search.certified-toolbar.com?si=43169&st=chrome&tid=3580&ver=3.1&ts=1369217878645&tguid=43169-3580-1369217878645-991DEA46DB298FEF82771B40121C46EA&q= HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.qvo6.com/?utm_source=b&utm_medium=ild&from=ild&uid=SanDiskXSDSSDP256G_123506402792&ts=1374755743 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.qvo6.com/?utm_source=b&utm_medium=ild&from=ild&uid=SanDiskXSDSSDP256G_123506402792&ts=1374755743 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.qvo6.com/?utm_source=b&utm_medium=ild&from=ild&uid=SanDiskXSDSSDP256G_123506402792&ts=1374755743 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.qvo6.com/?utm_source=b&utm_medium=ild&from=ild&uid=SanDiskXSDSSDP256G_123506402792&ts=1374755743 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://search.certified-toolbar.com?si=43169&st=chrome&tid=3580&ver=3.1&ts=1369217878645&tguid=43169-3580-1369217878645-991DEA46DB298FEF82771B40121C46EA&q= HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://search.certified-toolbar.com?si=43169&st=chrome&tid=3580&ver=3.1&ts=1369217878645&tguid=43169-3580-1369217878645-991DEA46DB298FEF82771B40121C46EA&q= HKLM SearchScopes: DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://search.qvo6.com/web/?utm_source=b&utm_medium=ild&from=ild&uid=SanDiskXSDSSDP256G_123506402792&ts=1374755743 SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://search.qvo6.com/web/?utm_source=b&utm_medium=ild&from=ild&uid=SanDiskXSDSSDP256G_123506402792&ts=1374755743 HKLM-x32 SearchScopes: DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://search.qvo6.com/web/?utm_source=b&utm_medium=ild&from=ild&uid=SanDiskXSDSSDP256G_123506402792&ts=1374755743 SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://search.certified-toolbar.com?si=43169&st=bs&tid=3580&ver=3.1&ts=1369217878645&tguid=43169-3580-1369217878645-991DEA46DB298FEF82771B40121C46EA&q={searchTerms} SearchScopes: HKLM-x32 - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://search.qvo6.com/web/?utm_source=b&utm_medium=ild&from=ild&uid=SanDiskXSDSSDP256G_123506402792&ts=1374755743 SearchScopes: HKLM-x32 - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.certified-toolbar.com?si=43169&st=bs&tid=3580&ver=3.1&ts=1369217878645&tguid=43169-3580-1369217878645-991DEA46DB298FEF82771B40121C46EA&q={searchTerms} HKCU SearchScopes: DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://search.qvo6.com/web/?utm_source=b&utm_medium=ild&from=ild&uid=SanDiskXSDSSDP256G_123506402792&ts=1374755743 SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://www1.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=006500FF5501776D&affID=119357&tsp=4963 SearchScopes: HKCU - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://search.qvo6.com/web/?utm_source=b&utm_medium=ild&from=ild&uid=SanDiskXSDSSDP256G_123506402792&ts=1374755743 SearchScopes: HKCU - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.certified-toolbar.com?si=43169&st=bs&tid=3580&ver=3.1&ts=1369217878645&tguid=43169-3580-1369217878645-991DEA46DB298FEF82771B40121C46EA&q={searchTerms} BHO: QuickShare WidgetEngine - {31ad400d-1b06-4e33-a59a-90c2c140cba0} - C:\Windows\System32\mscoree.dll (Microsoft Corporation) BHO: PinPhotoZoom - {4a0c8953-9d4e-4790-b732-2b9fc9ebce05} - C:\Users\Rafael\AppData\Roaming\PinPhotoZoom\64\AutocompletePro64.dll (SimplyGen) BHO-x32: Plus-HD-1.8 - {11111111-1111-1111-1111-110311251140} - C:\Program Files (x86)\Plus-HD-1.8\Plus-HD-1.8-bho.dll (Plus HD) BHO-x32: FTdownloader V4.0 - {11111111-1111-1111-1111-110311551174} - C:\Program Files (x86)\FTdownloader V4.0\FTdownloader V4.0-bho.dll (installdaddy) BHO-x32: LyricXeeker - {17E58097-6CA5-448B-830F-2A19678248FB} - C:\Program Files (x86)\LyriXeeker\125.dll (LyriXeeker Tech) BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO-x32: WebCake - {2A5A2A90-3B30-4E6E-A955-2F232C6EF517} - C:\Program Files (x86)\WebCake\WebCakeIEClient.dll (WebCake LLC) BHO-x32: QuickShare WidgetEngine - {31ad400d-1b06-4e33-a59a-90c2c140cba0} - C:\Windows\\SysWOW64\mscoree.dll (Microsoft Corporation) BHO-x32: DivX Plus Web Player HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC) BHO-x32: PinPhotoZoom - {4a0c8953-9d4e-4790-b732-2b9fc9ebce05} - C:\Users\Rafael\AppData\Roaming\PinPhotoZoom\AutocompletePro.dll (SimplyGen) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations) BHO-x32: Flagfox - {BA7B8F39-DF7F-4A98-83E9-57CE6ED9CA24} - C:\Users\Rafael\AppData\LocalLow\Flagfox\IE\Flagfox.dll (Dave G) BHO-x32: delta Helper Object - {C1AF5FA5-852C-4C90-812E-A7F75E011D87} - C:\Program Files (x86)\Delta\delta\1.8.22.0\bh\delta.dll (Delta-search.com) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: kikin Plugin - {E601996F-E400-41CA-804B-CD6373A7EEE2} - C:\Program Files (x86)\kikin\ie_kikin.dll (kikin) BHO-x32: DealPly - {EF7BD87A-8024-11E2-F316-F3E56188709B} - C:\Program Files (x86)\DealPly\DealPlyIE.dll (DealPly) Toolbar: HKLM - QuickShare Widget - {ae07101b-46d4-4a98-af68-0333ea26e113} - C:\Windows\System32\mscoree.dll (Microsoft Corporation) Toolbar: HKLM-x32 - QuickShare Widget - {ae07101b-46d4-4a98-af68-0333ea26e113} - C:\Windows\\SysWOW64\mscoree.dll (Microsoft Corporation) Toolbar: HKLM-x32 - Delta Toolbar - {82E1477C-B154-48D3-9891-33D83C26BCD3} - C:\Program Files (x86)\Delta\delta\1.8.22.0\deltaTlbr.dll (Delta-search.com) PDF: HKLM {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Filter: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File Filter: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File Filter-x32: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Filter-x32: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.43.1 Chrome: ======= CHR Extension: (Google Drive) - C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0 CHR Extension: (YouTube) - C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0 CHR Extension: (Bazaar Friend) - C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmobdmpfgfimbnmhhnkmmecdboblafdh\2.0.0.0_0 CHR Extension: (Google Search) - C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0 CHR Extension: (Delta Toolbar) - C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde\1.4_0 CHR Extension: (Feven) - C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\Default\Extensions\fglhnbihmeinbfgalpnaiembmdhfijli\1.23.23_0 CHR Extension: (DealPly Shopping) - C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\Default\Extensions\fmfnfnpmhcllokmkepffndflpnadjmma\3.5.0.0_0 CHR Extension: (FT Downloader) - C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\Default\Extensions\lgnbhdnimikkoodkogjlcllngimhlapp\5.0_0 CHR Extension: (LyricXeeker) - C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\Default\Extensions\odnofacmifkjndflfmmplhckcbfjckhj\1.125_0 CHR Extension: (Gmail) - C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0 ==================== Services (Whitelisted) ================= R2 3CXAudioServiceProvider; C:\Program Files\3CX PhoneSystem\Bin\3CXAudioProvider.exe [1197384 2013-01-28] (3CX Software Ltd.) S2 3CXCallHistoryService; C:\Program Files\3CX PhoneSystem\Bin\3CXCallHistoryService.exe [229192 2013-01-28] (3CX Ltd.) R2 3CXCfgServ; C:\Program Files\3CX PhoneSystem\Bin\3CXSLDBServ.exe [915784 2013-01-28] (3CX Ltd.) S2 3CXConferenceRoom; C:\Program Files\3CX PhoneSystem\Bin\3CXCP.exe [3036488 2013-01-28] (3CX Software Ltd.) S2 3CXFAXSrv; C:\Program Files\3CX PhoneSystem\Bin\3CXFaxServer.exe [3009352 2013-01-28] (3CX Software Ltd.) S2 3CXIvr; C:\Program Files\3CX PhoneSystem\Bin\3CXIvrServer.exe [5364552 2013-01-28] (3CX Software Ltd.) S2 3CXMediaServer; C:\Program Files\3CX PhoneSystem\Bin\3CXMediaServer.exe [1788232 2013-01-28] (3CX) S2 3CXParkOrbit; C:\Program Files\3CX PhoneSystem\Bin\3CXPO.exe [2976072 2013-01-28] (3CX Software Ltd.) S2 3CXPhoneSystem; C:\Program Files\3CX PhoneSystem\Bin\3CXPhoneSystem.exe [5629256 2013-01-28] (3CX Software Ltd.) S2 3CXQueueManager; C:\Program Files\3CX PhoneSystem\Bin\VCEHost.exe [2941256 2013-01-28] (3CX Ltd.) R2 3CXTunnel; C:\Program Files\3CX PhoneSystem\Bin\3CXTunnel.exe [1994056 2013-01-28] (3CX Ltd.) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-07-01] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-07-01] (Avira Operations GmbH & Co. KG) R2 BackupStack; C:\Program Files (x86)\MyPC Backup\BackupStack.exe [32808 2013-07-01] (Just Develop It) R2 BrowserDefendert; C:\ProgramData\BrowserDefender\2.6.1519.190\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe [2847696 2013-07-26] () R2 IISADMIN; C:\Windows\system32\inetsrv\inetinfo.exe [15872 2010-11-21] (Microsoft Corporation) R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [116104 2010-04-05] () R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [127320 2012-04-18] () R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [164184 2012-04-18] (Intel Corporation) R2 MSMQ; C:\Windows\system32\mqsvc.exe [9216 2009-07-14] (Microsoft Corporation) R2 MSMQTriggers; C:\Windows\system32\mqtgsvc.exe [189440 2010-11-21] (Microsoft Corporation) R2 nlsvc; C:\Program Files\NetLimiter 3\nlsvc.exe [1845248 2011-03-21] (Locktime Software) S4 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2804568 2010-06-01] (Symantec Corporation) R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [244904 2009-12-01] () R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [390672 2012-10-16] () R2 SamsungDeviceConfigurationWinService; C:\Program Files (x86)\Samsung\Easy Settings\SamsungDeviceConfiguration.exe [31624 2012-02-13] () R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1817560 2013-05-16] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1033688 2013-05-16] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2013-05-15] (Safer-Networking Ltd.) R2 STRATO HiDrive Service; C:\Program Files (x86)\STRATO AG\STRATO HiDrive\STRATO HiDrive Service.exe [32768 2011-07-05] (STRATO) R2 SWUpdateService; C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe [2956336 2013-05-15] (Samsung Electronics CO., LTD.) S2 SystemStoreService; C:\Program Files (x86)\SoftwareUpdater\SystemStore.exe [278016 2013-07-10] () R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [453120 2010-11-21] (Microsoft Corporation) R2 WebCake Desktop Updater; C:\Users\Rafael\AppData\Roaming\WebCake\WebCakeDesktop.exe [47896 2013-05-31] (WebCake LLC) R2 WsysSvc; C:\ProgramData\eSafe\eGdpSvc.exe [376896 2013-07-25] (Wsys Co., Ltd.) R2 WTService; C:\Windows\system32\atwtusb.exe [584192 2012-02-07] () R2 ZAtheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [163456 2012-03-09] (Atheros) R2 3CX PhoneSystem Database Server; C:/Program Files/3CX PhoneSystem/Bin/pgsql/bin/pg_ctl.exe runservice -N "3CX PhoneSystem Database Server" -D "C:/Program Files/3CX PhoneSystem/Data/DB" [x] S2 BstHdAndroidSvc; "C:\Program Files (x86)\BlueStacks\HD-Service.exe" BstHdAndroidSvc Android [x] S2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [x] ==================== Drivers (Whitelisted) ==================== R0 amdkmpfd; C:\Windows\System32\DRIVERS\amdkmpfd.sys [32896 2012-03-20] (Advanced Micro Devices, Inc.) S3 androidusb; C:\Windows\System32\Drivers\androidusb.sys [31744 2011-05-09] (Google Inc) S3 BEHRINGER_2902; C:\Windows\System32\Drivers\BUSB2902.sys [460864 2009-10-30] (BEHRINGER) S3 BUSB_AUDIO_WDM; C:\Windows\System32\drivers\busbwdm.sys [49728 2009-10-30] (BEHRINGER) S3 moufiltr; C:\Windows\System32\DRIVERS\moufiltr.sys [7680 2009-03-08] (Windows (R) Codename Longhorn DDK provider) R3 MQAC; C:\Windows\System32\drivers\mqac.sys [189440 2009-07-14] (Microsoft Corporation) R1 nltdi; C:\Program Files\NetLimiter 3\nltdi.sys [88200 2011-03-21] (Locktime Software) S3 vhidmini; C:\Windows\System32\DRIVERS\walvhid.sys [7552 2009-08-26] (Windows (R) Win 7 DDK provider) R2 avgntflt; system32\DRIVERS\avgntflt.sys [x] R1 avipbb; system32\DRIVERS\avipbb.sys [x] R1 avkmgr; system32\DRIVERS\avkmgr.sys [x] S2 BstHdDrv; \??\C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [x] S3 dgderdrv; System32\drivers\dgderdrv.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-08-03 20:45 - 2013-08-03 20:45 - 00000000 ____D C:\FRST 2013-08-03 20:41 - 2013-08-03 20:41 - 00001087 ____A C:\Users\Rafael\Desktop\Continue Download Helper Installation.lnk 2013-08-03 20:32 - 2013-08-03 20:32 - 00001110 ____A C:\Users\Public\Desktop\Open It!.lnk 2013-08-03 20:32 - 2013-08-03 20:32 - 00000296 ____A C:\Windows\Tasks\DigitalSite.job 2013-08-03 20:32 - 2013-08-03 20:32 - 00000000 ____D C:\Windows\SysWOW64\searchplugins 2013-08-03 20:32 - 2013-08-03 20:32 - 00000000 ____D C:\Windows\SysWOW64\Extensions 2013-08-03 20:32 - 2013-08-03 20:32 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\Delta 2013-08-03 20:32 - 2013-08-03 20:32 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\BabSolution 2013-08-03 20:32 - 2013-08-03 20:32 - 00000000 ____D C:\ProgramData\BrowserDefender 2013-08-03 20:32 - 2013-08-03 20:32 - 00000000 ____D C:\Program Files (x86)\OpenIt 2013-08-03 20:32 - 2013-08-03 20:32 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-08-03 20:32 - 2013-08-03 20:32 - 00000000 ____D C:\Program Files (x86)\LyriXeeker 2013-08-03 20:32 - 2013-08-03 20:32 - 00000000 ____D C:\Program Files (x86)\Delta 2013-08-03 20:32 - 2013-08-03 20:32 - 00000000 ____D C:\Program Files (x86)\DealPly 2013-08-03 18:22 - 2013-08-03 18:22 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\Mozilla 2013-08-02 11:58 - 2013-08-03 18:21 - 00001160 ____A C:\Windows\Tasks\Feven-updater.job 2013-08-02 11:58 - 2013-08-02 15:07 - 00000000 ____D C:\Program Files (x86)\MyPC Backup 2013-08-02 11:57 - 2013-08-03 18:21 - 00001860 ____A C:\Windows\Tasks\Feven-chromeinstaller.job 2013-08-02 11:57 - 2013-08-03 18:21 - 00001784 ____A C:\Windows\Tasks\Feven-firefoxinstaller.job 2013-08-02 11:57 - 2013-08-03 18:21 - 00001164 ____A C:\Windows\Tasks\Feven-codedownloader.job 2013-08-02 11:57 - 2013-08-03 18:21 - 00001064 ____A C:\Windows\Tasks\Feven-enabler.job 2013-07-31 20:29 - 2013-07-31 20:29 - 00002212 ____A C:\Users\Public\Desktop\Google Earth.lnk 2013-07-31 20:06 - 2013-07-31 20:06 - 00001113 ____A C:\Users\Public\Desktop\BayOrganizer.lnk 2013-07-30 15:25 - 2013-07-30 15:25 - 00002530 ____A C:\Users\Rafael\Desktop\Windows 7 USB DVD Download Tool.lnk 2013-07-30 15:25 - 2013-07-30 15:25 - 00000000 ____D C:\Users\Rafael\AppData\Local\Apps\Windows 7 USB DVD Download Tool 2013-07-30 14:17 - 2013-07-30 14:17 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\Serif 2013-07-30 11:01 - 2013-07-30 11:01 - 00002122 ____A C:\Users\Public\Desktop\Serif DrawPlus X5.lnk 2013-07-30 10:51 - 2013-07-30 10:51 - 00000000 ____D C:\Program Files (x86)\Serif 2013-07-30 10:27 - 2013-07-30 10:27 - 00073456 ____A C:\Users\Rafael\AppData\Local\BazaarFriend.crx 2013-07-30 10:27 - 2013-07-30 10:27 - 00000075 ____A C:\Users\Rafael\AppData\Roaming\WB.CFG 2013-07-30 09:50 - 2013-07-30 09:50 - 21840856 ____A (Mozilla) C:\Users\Rafael\Downloads\Firefox_Setup [1].exe 2013-07-29 11:06 - 2013-08-03 20:32 - 00000000 ____D C:\Users\Rafael\Qtrax 2013-07-29 11:02 - 2013-08-03 18:24 - 00000390 ____A C:\Windows\Tasks\LyricXeeker Update.job 2013-07-29 11:02 - 2013-07-29 11:02 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\DigitalSite 2013-07-25 14:35 - 2013-08-03 20:35 - 00001232 ____A C:\Windows\Tasks\FTdownloader V4.0-updater.job 2013-07-25 14:35 - 2013-08-03 20:35 - 00001226 ____A C:\Windows\Tasks\FTdownloader V4.0-codedownloader.job 2013-07-25 14:35 - 2013-08-03 20:35 - 00001136 ____A C:\Windows\Tasks\FTdownloader V4.0-enabler.job 2013-07-25 14:35 - 2013-07-25 14:35 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\eIntaller 2013-07-25 14:35 - 2013-07-25 14:35 - 00000000 ____D C:\Users\Rafael\AppData\Local\Cool_Mirage 2013-07-25 14:35 - 2013-07-25 14:35 - 00000000 ____D C:\Program Files (x86)\FTdownloader V4.0 2013-07-25 14:34 - 2013-07-25 15:10 - 00001087 ____A C:\Users\Rafael\Desktop\FTDownloader.lnk 2013-07-25 14:34 - 2013-07-25 15:10 - 00000000 ____D C:\Program Files (x86)\FTDownloader.com 2013-07-25 13:56 - 2013-07-25 13:56 - 00012800 __ASH C:\Users\Rafael\Thumbs.db 2013-07-25 13:24 - 2013-07-25 13:24 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2013-07-25 13:24 - 2013-07-25 13:24 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-07-24 16:25 - 2013-07-24 16:33 - 00000000 ____D C:\Program Files (x86)\EPUB to MOBI 2013-07-23 12:24 - 2013-07-23 12:24 - 00263592 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2013-07-23 12:24 - 2013-07-23 12:24 - 00175016 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2013-07-23 12:24 - 2013-07-23 12:24 - 00175016 ____A (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2013-07-23 12:24 - 2013-07-23 12:24 - 00096168 ____A (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2013-07-23 12:24 - 2013-07-23 12:24 - 00000000 ____D C:\Program Files (x86)\Java 2013-07-22 18:25 - 2013-07-22 18:25 - 00001416 ____A C:\Users\Public\Desktop\Apowersoft Free Audio Recorder.lnk 2013-07-22 18:25 - 2013-07-22 18:25 - 00000000 ____D C:\Users\Rafael\Documents\Apowersoft Free Audio Recorder 2013-07-22 18:25 - 2013-07-22 18:25 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\Apowersoft 2013-07-22 18:25 - 2013-07-22 18:25 - 00000000 ____D C:\Program Files (x86)\Apowersoft 2013-07-19 21:22 - 2013-07-19 21:22 - 01353111 ____A C:\Users\Rafael\Documents\Mit Hymie unterwegs.pptx 2013-07-17 23:18 - 2013-07-17 23:18 - 00000000 ____D C:\Program Files (x86)\dumps 2013-07-17 23:12 - 2013-07-29 11:11 - 00000000 ____D C:\Program Files (x86)\Steam 2013-07-17 23:12 - 2013-07-17 23:25 - 00000917 ____A C:\Users\Public\Desktop\Steam.lnk 2013-07-15 21:34 - 2013-07-15 21:35 - 00000000 ____D C:\Windows\System32\MRT 2013-07-11 22:31 - 2013-07-11 22:32 - 00000000 ____D C:\Program Files (x86)\FOTOParadies 2013-07-11 22:31 - 2013-07-11 22:31 - 00001991 ____A C:\Users\Public\Desktop\FOTOParadies.lnk 2013-07-10 23:44 - 2013-06-12 01:43 - 14329856 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-07-10 23:44 - 2013-06-12 01:43 - 02877440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-07-10 23:44 - 2013-06-12 01:43 - 01767936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-07-10 23:44 - 2013-06-12 01:43 - 01141248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-07-10 23:44 - 2013-06-12 01:43 - 00690688 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-07-10 23:44 - 2013-06-12 01:43 - 00493056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-07-10 23:44 - 2013-06-12 01:43 - 00039424 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-07-10 23:44 - 2013-06-12 01:42 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-07-10 23:44 - 2013-06-12 01:42 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-07-10 23:44 - 2013-06-12 01:42 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-07-10 23:44 - 2013-06-12 01:42 - 00109056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-07-10 23:44 - 2013-06-12 01:42 - 00061440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-07-10 23:44 - 2013-06-12 01:42 - 00033280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-07-10 23:44 - 2013-06-12 01:26 - 02241024 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll 2013-07-10 23:44 - 2013-06-12 01:26 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2013-07-10 23:44 - 2013-06-12 01:26 - 00051712 ____A (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe 2013-07-10 23:44 - 2013-06-12 01:25 - 19238912 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2013-07-10 23:44 - 2013-06-12 01:25 - 15404032 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2013-07-10 23:44 - 2013-06-12 01:25 - 03958784 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll 2013-07-10 23:44 - 2013-06-12 01:25 - 02648576 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2013-07-10 23:44 - 2013-06-12 01:25 - 00855552 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll 2013-07-10 23:44 - 2013-06-12 01:25 - 00603136 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll 2013-07-10 23:44 - 2013-06-12 01:25 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll 2013-07-10 23:44 - 2013-06-12 01:25 - 00136704 ____A (Microsoft Corporation) C:\Windows\System32\iesysprep.dll 2013-07-10 23:44 - 2013-06-12 01:25 - 00067072 ____A (Microsoft Corporation) C:\Windows\System32\iesetup.dll 2013-07-10 23:44 - 2013-06-12 01:25 - 00053248 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll 2013-07-10 23:44 - 2013-06-12 01:25 - 00039936 ____A (Microsoft Corporation) C:\Windows\System32\iernonce.dll 2013-07-10 23:44 - 2013-06-12 00:51 - 00071680 ____A (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-07-10 23:44 - 2013-06-12 00:50 - 00089600 ____A (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe 2013-07-10 23:44 - 2013-06-07 05:22 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2013-07-10 23:44 - 2013-06-07 04:37 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-07-10 15:57 - 2013-04-10 01:34 - 01247744 ____A (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2013-07-10 15:57 - 2013-04-03 00:51 - 01643520 ____A (Microsoft Corporation) C:\Windows\System32\DWrite.dll 2013-07-10 15:56 - 2013-06-04 08:00 - 00624128 ____A (Microsoft Corporation) C:\Windows\System32\qedit.dll 2013-07-10 15:56 - 2013-06-04 06:53 - 00509440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2013-07-10 15:55 - 2013-05-06 08:03 - 01887744 ____A (Microsoft Corporation) C:\Windows\System32\WMVDECOD.DLL 2013-07-10 15:55 - 2013-05-06 06:56 - 01620480 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2013-07-10 15:49 - 2013-06-05 05:34 - 03153920 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys 2013-07-09 23:15 - 2013-07-09 23:15 - 00000000 ____D C:\Users\Rafael\Documents\BioWare 2013-07-08 07:44 - 2013-07-10 00:30 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2013-07-08 07:44 - 2013-07-08 07:44 - 00001379 ____A C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2013-07-08 07:44 - 2013-07-08 07:44 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2013-07-08 07:44 - 2009-01-25 13:14 - 00017272 ____A (Safer Networking Limited) C:\Windows\System32\sdnclean64.exe 2013-07-08 07:35 - 2013-07-08 07:35 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2013-07-07 22:38 - 2013-07-07 22:38 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\OpenOffice.org 2013-07-07 22:37 - 2013-07-07 22:37 - 00001172 ____A C:\Users\Public\Desktop\OpenOffice.org 3.4.1.lnk 2013-07-07 22:36 - 2013-07-07 22:36 - 00000000 ____D C:\Program Files (x86)\OpenOffice.org 3 ==================== One Month Modified Files and Folders ======= 2013-08-03 20:45 - 2013-08-03 20:45 - 00000000 ____D C:\FRST 2013-08-03 20:41 - 2013-08-03 20:41 - 00001087 ____A C:\Users\Rafael\Desktop\Continue Download Helper Installation.lnk 2013-08-03 20:35 - 2013-07-25 14:35 - 00001232 ____A C:\Windows\Tasks\FTdownloader V4.0-updater.job 2013-08-03 20:35 - 2013-07-25 14:35 - 00001226 ____A C:\Windows\Tasks\FTdownloader V4.0-codedownloader.job 2013-08-03 20:35 - 2013-07-25 14:35 - 00001136 ____A C:\Windows\Tasks\FTdownloader V4.0-enabler.job 2013-08-03 20:32 - 2013-08-03 20:32 - 00001110 ____A C:\Users\Public\Desktop\Open It!.lnk 2013-08-03 20:32 - 2013-08-03 20:32 - 00000296 ____A C:\Windows\Tasks\DigitalSite.job 2013-08-03 20:32 - 2013-08-03 20:32 - 00000000 ____D C:\Windows\SysWOW64\searchplugins 2013-08-03 20:32 - 2013-08-03 20:32 - 00000000 ____D C:\Windows\SysWOW64\Extensions 2013-08-03 20:32 - 2013-08-03 20:32 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\Delta 2013-08-03 20:32 - 2013-08-03 20:32 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\BabSolution 2013-08-03 20:32 - 2013-08-03 20:32 - 00000000 ____D C:\ProgramData\BrowserDefender 2013-08-03 20:32 - 2013-08-03 20:32 - 00000000 ____D C:\Program Files (x86)\OpenIt 2013-08-03 20:32 - 2013-08-03 20:32 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-08-03 20:32 - 2013-08-03 20:32 - 00000000 ____D C:\Program Files (x86)\LyriXeeker 2013-08-03 20:32 - 2013-08-03 20:32 - 00000000 ____D C:\Program Files (x86)\Delta 2013-08-03 20:32 - 2013-08-03 20:32 - 00000000 ____D C:\Program Files (x86)\DealPly 2013-08-03 20:32 - 2013-07-29 11:06 - 00000000 ____D C:\Users\Rafael\Qtrax 2013-08-03 20:32 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\tracing 2013-08-03 20:27 - 2013-06-01 19:01 - 00000290 ____A C:\Windows\Tasks\DSite.job 2013-08-03 20:25 - 2013-01-18 18:58 - 00001110 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-08-03 19:49 - 2013-01-13 14:26 - 00000830 ____A C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job 2013-08-03 18:30 - 2013-06-01 19:25 - 00000000 ____D C:\ProgramData\eSafe 2013-08-03 18:30 - 2009-07-14 06:45 - 00016944 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-08-03 18:30 - 2009-07-14 06:45 - 00016944 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-08-03 18:29 - 2011-03-20 11:08 - 00772482 ____A C:\Windows\System32\perfh007.dat 2013-08-03 18:29 - 2011-03-20 11:08 - 00174574 ____A C:\Windows\System32\perfc007.dat 2013-08-03 18:29 - 2009-07-14 07:13 - 01802034 ____A C:\Windows\System32\PerfStringBackup.INI 2013-08-03 18:24 - 2013-07-29 11:02 - 00000390 ____A C:\Windows\Tasks\LyricXeeker Update.job 2013-08-03 18:24 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\System32\inetsrv 2013-08-03 18:23 - 2009-07-14 04:34 - 00000567 ____A C:\Windows\win.ini 2013-08-03 18:22 - 2013-08-03 18:22 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\Mozilla 2013-08-03 18:22 - 2013-04-08 18:24 - 00065536 _____ C:\Windows\System32\Ikeext.etl 2013-08-03 18:21 - 2013-08-02 11:58 - 00001160 ____A C:\Windows\Tasks\Feven-updater.job 2013-08-03 18:21 - 2013-08-02 11:57 - 00001860 ____A C:\Windows\Tasks\Feven-chromeinstaller.job 2013-08-03 18:21 - 2013-08-02 11:57 - 00001784 ____A C:\Windows\Tasks\Feven-firefoxinstaller.job 2013-08-03 18:21 - 2013-08-02 11:57 - 00001164 ____A C:\Windows\Tasks\Feven-codedownloader.job 2013-08-03 18:21 - 2013-08-02 11:57 - 00001064 ____A C:\Windows\Tasks\Feven-enabler.job 2013-08-03 18:21 - 2013-01-13 14:05 - 01780442 ____A C:\Windows\WindowsUpdate.log 2013-08-03 18:21 - 2010-11-21 05:47 - 00705776 ____A C:\Windows\PFRO.log 2013-08-03 18:21 - 2009-07-14 07:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT 2013-08-03 18:21 - 2009-07-14 06:51 - 00076942 ____A C:\Windows\setupact.log 2013-08-03 18:19 - 2013-06-01 19:25 - 00000000 ____D C:\Program Files (x86)\Desk 365 2013-08-02 22:16 - 2013-01-16 01:17 - 00000000 ____D C:\Users\Rafael\Documents\FIFA 13 2013-08-02 21:34 - 2013-01-14 13:11 - 00000000 ____D C:\Program Files (x86)\Origin 2013-08-02 17:37 - 2013-06-13 16:04 - 00000005 ____A C:\Users\Rafael\AppData\Roaming\WBPU-TTL.DAT 2013-08-02 15:34 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\System32\NDF 2013-08-02 15:07 - 2013-08-02 11:58 - 00000000 ____D C:\Program Files (x86)\MyPC Backup 2013-08-02 11:41 - 2013-01-20 14:30 - 00000000 ____D C:\My Works 2013-08-02 01:29 - 2013-01-14 13:24 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\Origin 2013-08-02 01:29 - 2013-01-14 13:24 - 00000000 ____D C:\Users\Rafael\AppData\Local\Origin 2013-08-02 01:26 - 2013-01-18 19:01 - 00002399 ____A C:\Users\Public\Desktop\Google Chrome.lnk 2013-07-31 20:29 - 2013-07-31 20:29 - 00002212 ____A C:\Users\Public\Desktop\Google Earth.lnk 2013-07-31 20:29 - 2013-01-18 18:58 - 00000000 ____D C:\Program Files (x86)\Google 2013-07-31 20:06 - 2013-07-31 20:06 - 00001113 ____A C:\Users\Public\Desktop\BayOrganizer.lnk 2013-07-31 20:06 - 2013-01-19 13:13 - 00000000 ____D C:\Program Files (x86)\BayOrganizer 2013-07-30 15:35 - 2009-07-14 06:45 - 00758136 ____A C:\Windows\System32\FNTCACHE.DAT 2013-07-30 15:25 - 2013-07-30 15:25 - 00002530 ____A C:\Users\Rafael\Desktop\Windows 7 USB DVD Download Tool.lnk 2013-07-30 15:25 - 2013-07-30 15:25 - 00000000 ____D C:\Users\Rafael\AppData\Local\Apps\Windows 7 USB DVD Download Tool 2013-07-30 15:25 - 2013-01-13 14:16 - 00231448 ____A C:\Users\Rafael\AppData\Local\GDIPFONTCACHEV1.DAT 2013-07-30 14:17 - 2013-07-30 14:17 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\Serif 2013-07-30 11:01 - 2013-07-30 11:01 - 00002122 ____A C:\Users\Public\Desktop\Serif DrawPlus X5.lnk 2013-07-30 10:51 - 2013-07-30 10:51 - 00000000 ____D C:\Program Files (x86)\Serif 2013-07-30 10:47 - 2013-02-19 23:18 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-07-30 10:27 - 2013-07-30 10:27 - 00073456 ____A C:\Users\Rafael\AppData\Local\BazaarFriend.crx 2013-07-30 10:27 - 2013-07-30 10:27 - 00000075 ____A C:\Users\Rafael\AppData\Roaming\WB.CFG 2013-07-30 09:50 - 2013-07-30 09:50 - 21840856 ____A (Mozilla) C:\Users\Rafael\Downloads\Firefox_Setup [1].exe 2013-07-29 11:11 - 2013-07-17 23:12 - 00000000 ____D C:\Program Files (x86)\Steam 2013-07-29 11:06 - 2013-01-13 14:05 - 00000000 ____D C:\users\Rafael 2013-07-29 11:02 - 2013-07-29 11:02 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\DigitalSite 2013-07-25 15:10 - 2013-07-25 14:34 - 00001087 ____A C:\Users\Rafael\Desktop\FTDownloader.lnk 2013-07-25 15:10 - 2013-07-25 14:34 - 00000000 ____D C:\Program Files (x86)\FTDownloader.com 2013-07-25 14:35 - 2013-07-25 14:35 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\eIntaller 2013-07-25 14:35 - 2013-07-25 14:35 - 00000000 ____D C:\Users\Rafael\AppData\Local\Cool_Mirage 2013-07-25 14:35 - 2013-07-25 14:35 - 00000000 ____D C:\Program Files (x86)\FTdownloader V4.0 2013-07-25 14:35 - 2013-06-01 19:25 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\Desk 365 2013-07-25 13:56 - 2013-07-25 13:56 - 00012800 __ASH C:\Users\Rafael\Thumbs.db 2013-07-25 13:24 - 2013-07-25 13:24 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2013-07-25 13:24 - 2013-07-25 13:24 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-07-24 16:33 - 2013-07-24 16:25 - 00000000 ____D C:\Program Files (x86)\EPUB to MOBI 2013-07-23 12:24 - 2013-07-23 12:24 - 00263592 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2013-07-23 12:24 - 2013-07-23 12:24 - 00175016 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2013-07-23 12:24 - 2013-07-23 12:24 - 00175016 ____A (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2013-07-23 12:24 - 2013-07-23 12:24 - 00096168 ____A (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2013-07-23 12:24 - 2013-07-23 12:24 - 00000000 ____D C:\Program Files (x86)\Java 2013-07-23 12:24 - 2013-03-07 08:21 - 00867240 ____A (Oracle Corporation) C:\Windows\SysWOW64\npDeployJava1.dll 2013-07-23 12:24 - 2013-03-07 08:21 - 00789416 ____A (Oracle Corporation) C:\Windows\SysWOW64\deployJava1.dll 2013-07-22 18:51 - 2013-06-18 07:04 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\Spotify 2013-07-22 18:25 - 2013-07-22 18:25 - 00001416 ____A C:\Users\Public\Desktop\Apowersoft Free Audio Recorder.lnk 2013-07-22 18:25 - 2013-07-22 18:25 - 00000000 ____D C:\Users\Rafael\Documents\Apowersoft Free Audio Recorder 2013-07-22 18:25 - 2013-07-22 18:25 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\Apowersoft 2013-07-22 18:25 - 2013-07-22 18:25 - 00000000 ____D C:\Program Files (x86)\Apowersoft 2013-07-22 18:25 - 2013-01-30 23:30 - 00001458 ____A C:\Users\Rafael\AppData\Local\RecConfig.xml 2013-07-21 10:49 - 2009-07-14 07:08 - 00032640 ____A C:\Windows\Tasks\SCHEDLGU.TXT 2013-07-20 11:49 - 2013-06-18 07:05 - 00000000 ____D C:\Users\Rafael\AppData\Local\Spotify 2013-07-19 21:22 - 2013-07-19 21:22 - 01353111 ____A C:\Users\Rafael\Documents\Mit Hymie unterwegs.pptx 2013-07-17 23:25 - 2013-07-17 23:12 - 00000917 ____A C:\Users\Public\Desktop\Steam.lnk 2013-07-17 23:18 - 2013-07-17 23:18 - 00000000 ____D C:\Program Files (x86)\dumps 2013-07-17 07:58 - 2013-03-20 17:48 - 00000000 ____D C:\Program Files (x86)\jose 2013-07-17 07:54 - 2013-01-14 13:24 - 00000000 ____D C:\Program Files (x86)\Origin Games 2013-07-15 21:35 - 2013-07-15 21:34 - 00000000 ____D C:\Windows\System32\MRT 2013-07-15 21:26 - 2013-01-22 16:50 - 00000000 ____D C:\Users\Rafael\Documents\Turbo Lister Backup 2013-07-15 07:26 - 2013-01-18 18:58 - 00001106 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-07-14 08:23 - 2013-04-20 14:10 - 00000000 ____D C:\Windows\pss 2013-07-12 10:07 - 2013-01-19 13:07 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\BayOrganizer 2013-07-11 22:32 - 2013-07-11 22:31 - 00000000 ____D C:\Program Files (x86)\FOTOParadies 2013-07-11 22:31 - 2013-07-11 22:31 - 00001991 ____A C:\Users\Public\Desktop\FOTOParadies.lnk 2013-07-11 09:50 - 2010-11-21 09:17 - 00000000 ____D C:\Program Files\Windows Journal 2013-07-11 09:50 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender 2013-07-11 09:50 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-07-10 08:29 - 2013-01-13 17:50 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\Adobe 2013-07-10 00:30 - 2013-07-08 07:44 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2013-07-09 23:15 - 2013-07-09 23:15 - 00000000 ____D C:\Users\Rafael\Documents\BioWare 2013-07-09 10:48 - 2013-01-19 23:17 - 00000000 ____D C:\Users\Rafael\AppData\Local\CrashDumps 2013-07-08 07:44 - 2013-07-08 07:44 - 00001379 ____A C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2013-07-08 07:44 - 2013-07-08 07:44 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2013-07-08 07:35 - 2013-07-08 07:35 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2013-07-08 07:35 - 2013-01-14 13:32 - 00081211 ____A C:\Windows\DirectX.log 2013-07-07 22:38 - 2013-07-07 22:38 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\OpenOffice.org 2013-07-07 22:37 - 2013-07-07 22:37 - 00001172 ____A C:\Users\Public\Desktop\OpenOffice.org 3.4.1.lnk 2013-07-07 22:36 - 2013-07-07 22:36 - 00000000 ____D C:\Program Files (x86)\OpenOffice.org 3 2013-07-06 13:04 - 2013-06-28 18:02 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\DivX 2013-07-05 10:25 - 2013-05-17 15:19 - 00000000 ____D C:\Program Files (x86)\Protected Search 2013-07-05 09:26 - 2013-01-16 19:26 - 00001264 ____A C:\Users\Rafael\Desktop\Revo Uninstaller.lnk ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit Last Boot: 2013-08-03 19:15 ==================== End Of Log ============================ --- --- --- Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 04-06-2013 Ran by Rafael at 2013-08-03 20:46:11 Run: Running from D:\AnitVirus per UInternet Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= 1&1 EasyLogin 3CX PhoneSystem (Version: 11.0.28976.849) Acer Iconia Tab Driver install (Version: 1.0.0) Adobe AIR (Version: 3.7.0.1530) Adobe Flash Player 11 ActiveX (Version: 11.7.700.224) Adobe Flash Player 11 Plugin (Version: 11.5.502.146) Adobe Photoshop Elements 7.0 (Version: 7.0) Adobe Photoshop Elements 7.0 (Version: 7.0.0.3) Adobe Reader XI (11.0.01) - Deutsch (Version: 11.0.01) AMD Accelerated Video Transcoding (Version: 2.00.0002) AMD APP SDK Runtime (Version: 10.0.898.1) AMD Catalyst Install Manager (Version: 3.0.868.0) Apowersoft Free Audio Recorder V2.0.0 (Version: 2.0.0) Apple Application Support (Version: 2.3) Apple Software Update (Version: 2.1.3.127) ASIO4ALL (Version: 2.10) Atheros Bluetooth Suite (64) (Version: 7.4.0.126) Atheros Client Installation Program (Version: 9.0) Avery Wizard 4.0 (Version: 4.0.201) Avira Free Antivirus (Version: 13.0.0.3884) BayArchiver - Deinstallation (Version: 1.30) BayOrganizer - Deinstallation (Version: 9.90) BEHRINGER USB AUDIO DRIVER Browser Updater 1.1 BrowserDefender Bundled software uninstaller Canon Easy-PhotoPrint EX Canon IJ Network Scan Utility Canon IJ Network Tool Canon Inkjet Printer/Scanner/Fax Extended Survey Program Canon MG5200 series Benutzerregistrierung Canon MG5200 series MP Drivers Canon MP Navigator EX 4.0 Canon My Printer Catalyst Control Center - Branding (Version: 1.00.0000) Catalyst Control Center (Version: 2012.0418.645.10054) Catalyst Control Center InstallProxy (Version: 2012.0418.645.10054) Catalyst Control Center Localization All (Version: 2012.0418.645.10054) Catalyst Control Center Profiles Mobile (Version: 2012.0418.645.10054) CCC Help Chinese Standard (Version: 2012.0418.0644.10054) CCC Help Chinese Traditional (Version: 2012.0418.0644.10054) CCC Help Czech (Version: 2012.0418.0644.10054) CCC Help Danish (Version: 2012.0418.0644.10054) CCC Help Dutch (Version: 2012.0418.0644.10054) CCC Help English (Version: 2012.0418.0644.10054) CCC Help Finnish (Version: 2012.0418.0644.10054) CCC Help French (Version: 2012.0418.0644.10054) CCC Help German (Version: 2012.0418.0644.10054) CCC Help Greek (Version: 2012.0418.0644.10054) CCC Help Hungarian (Version: 2012.0418.0644.10054) CCC Help Italian (Version: 2012.0418.0644.10054) CCC Help Japanese (Version: 2012.0418.0644.10054) CCC Help Korean (Version: 2012.0418.0644.10054) CCC Help Norwegian (Version: 2012.0418.0644.10054) CCC Help Polish (Version: 2012.0418.0644.10054) CCC Help Portuguese (Version: 2012.0418.0644.10054) CCC Help Russian (Version: 2012.0418.0644.10054) CCC Help Spanish (Version: 2012.0418.0644.10054) CCC Help Swedish (Version: 2012.0418.0644.10054) CCC Help Thai (Version: 2012.0418.0644.10054) CCC Help Turkish (Version: 2012.0418.0644.10054) ccc-utility64 (Version: 2012.0418.645.10054) CD-LabelPrint Citrix Online Plug-in - Web (Version: 12.0.0.6410) Citrix Online Plug-in (DV) (Version: 12.0.0.6410) Citrix Online Plug-in (HDX) (Version: 12.0.0.6410) Citrix Online Plug-in (USB) (Version: 12.0.0.6410) Citrix Online Plug-in (Web) (Version: 12.0.0.6410) CyberLink Holiday Magic Style Pack 2 (Version: 2.0) CyberLink Media Suite (Version: 8.0.2227) CyberLink Media+ Player10 (Version: 10.0.1110.00) CyberLink MediaShow (Version: 5.0.1130a) CyberLink Power2Go (Version: 6.1.3802) CyberLink PowerDirector (Version: 8.0.3306) CyberLink PowerDirector 11 (Version: 11.0.0.2812) CyberLink PowerDirector 11 Content Pack Essential (Version: 11) CyberLink PowerDirector 11 Content Pack Premium (Version: 11) CyberLink Romance Pack v3 (Version: 2.0) CyberLink Travel Pack (Version: 1.0) CyberLink WaveEditor 2 (Version: 2.0.3206) CyberLink YouCam (Version: 3.1.5016) DAPlayer 1.0.1.7 DealPly DealPly (remove only) (Version: 4.8.6.1) Delta Chrome Toolbar Delta toolbar (Version: 1.8.22.0) DHTML Editing Component (Version: 6.02.0001) DivX-Setup (Version: 2.6.1.8) DomaIQ Easy File Share (Version: 1.3.1) Easy Migration (Version: 1.0) Easy Settings (Version: 1.1) Easy Support Center (Version: 1.2.23) energyXT2.5 EON Viewer (Version: 6.1.0) EON Viewer 6.1 (Version: 6.1.0) EPUB to MOBI FIFA 13 (Version: 1.0.0.0) Firebird SQL Server - MAGIX Edition (Version: 2.1.31.0) FOTOParadies (Version: 3.5.0.3) Free Notes & Office Ink (Version: ) FreeOCR v4.2 FTDownloader (Version: 2.1 Build 26473) FTdownloader V4.0 (Version: 1.27.153.8) GamesCenter Google Chrome (Version: 28.0.1500.95) Google Drive (Version: 1.10.4769.632) Google Earth (Version: 7.1.1.1888) Google Update Helper (Version: 1.3.21.153) Helium (Version: 1.0.0) Inkscape 0.48.4 (Version: 0.48.4) Intel(R) Control Center (Version: 1.2.1.1007) Intel(R) Display Audio Driver (Version: 6.14.00.3090) Intel(R) Manageability Engine Firmware Recovery Agent (Version: 1.0.0.36279) Intel(R) Management Engine Components (Version: 8.0.10.1464) Intel(R) Rapid Storage Technology (Version: 11.0.0.1032) Intel(R) USB 3.0 eXtensible Host Controller Driver (Version: 1.0.4.220) Intel® Trusted Connect Service Client (Version: 1.23.943.1) Java 7 Update 25 (Version: 7.0.250) Java Auto Updater (Version: 2.1.9.5) kikin Plugin (NO23 Edition) 1.11 (Version: 1.11) LAME v3.99.3 (for Windows) Logitech Harmony Remote Software 7 (Version: 7.6.0.8) Logitech Harmony Remote Software 7 (Version: 7.7.0.0) LyricXeeker MAGIX Content and Soundpools (Version: 1.0.0.0) MAGIX Music Maker 2013 Premium (Version: 19.0.1.36) MAGIX Music Maker 2013 Trial Soundpools (Version: 1.0.0.0) MAGIX Screenshare (Version: 4.3.6.1987) MAGIX Speed burnR (MSI) (Version: 7.0.2.6) MAGIX Speed burnR (Version: 7.0.1.27) Microsoft – Speichern als PDF oder XPS – Add-In für 2007 Microsoft Office-Programme (Version: 12.0.4518.1014) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30320) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30320) Microsoft .NET Framework 4 Extended (Version: 4.0.30320) Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30320) Microsoft Office Access 2007 (Version: 12.0.4518.1014) Microsoft Office Access MUI (German) 2007 (Version: 12.0.4518.1014) Microsoft Office Excel 2007 (Version: 12.0.4518.1014) Microsoft Office Excel MUI (German) 2007 (Version: 12.0.4518.1014) Microsoft Office Office 64-bit Components 2007 (Version: 12.0.4518.1014) Microsoft Office PowerPoint 2007 (Version: 12.0.4518.1014) Microsoft Office PowerPoint MUI (German) 2007 (Version: 12.0.4518.1014) Microsoft Office Proof (English) 2007 (Version: 12.0.4518.1014) Microsoft Office Proof (French) 2007 (Version: 12.0.4518.1014) Microsoft Office Proof (German) 2007 (Version: 12.0.4518.1014) Microsoft Office Proof (Italian) 2007 (Version: 12.0.4518.1014) Microsoft Office Proofing (German) 2007 (Version: 12.0.4518.1014) Microsoft Office Publisher 2007 (Version: 12.0.4518.1014) Microsoft Office Publisher MUI (German) 2007 (Version: 12.0.4518.1014) Microsoft Office Shared 64-bit MUI (German) 2007 (Version: 12.0.4518.1014) Microsoft Office Shared MUI (German) 2007 (Version: 12.0.4518.1014) Microsoft Office Word 2007 (Version: 12.0.4518.1014) Microsoft Office Word MUI (German) 2007 (Version: 12.0.4518.1014) Microsoft Silverlight (Version: 5.1.20513.0) Microsoft Visual C++ 2005 Redistributable (Version: 8.0.56336) Microsoft Visual C++ 2005 Redistributable (Version: 8.0.59193) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (Version: 10.0.40219) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106 (Version: 11.0.51106.1) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.51106 (Version: 11.0.51106) Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.51106 (Version: 11.0.51106) Microsoft Visual Studio 2005 Tools for Office Runtime (Version: 8.0.60940.0) MozBackup 1.5.1 Mozilla Maintenance Service (Version: 22.0) Mozilla Thunderbird 17.0.7 (x86 de) (Version: 17.0.7) MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0) MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0) MSXML 4.0 SP3 Parser (KB2758694) (Version: 4.30.2117.0) MSXML 4.0 SP3 Parser (Version: 4.30.2100.0) MyFreeCodec MyPC Backup (Version: ) NetLimiter 3 (Version: 3.0.0.11) Newblue Art Effects for PowerDirector (Version: 2.0) NewBlue Motion and Paint Effects for PowerDirector (Version: 2.0) Norton Online Backup (Version: 2.1.17869) Notification Center (Version: 0.7.8.829) NVIDIA PhysX (Version: 9.10.0513) Open It! (Version: 1.1.1) OpenOffice.org 3.4.1 (Version: 3.41.9593) Organ One v. 2.10 Origin (Version: 9.1.3.2637) PinPhotoZoom Plus-HD-1.8 (Version: 1.27.153.1) Power Presenter RE II (Version: 2.59) PowerDirector (Version: 11.0) PX Profile Update (Version: 1.00.1.) Qtrax Connection Manager (Version: 20.13.07.02) QuickShare (Version: 1.6.1.949) QuickTime (Version: 7.73.80.64) Realtek Ethernet Controller Driver (Version: 7.54.309.2012) Realtek High Definition Audio Driver (Version: 6.0.1.6602) Realtek USB 2.0 Card Reader (Version: 6.1.7601.39025) Remote Control USB Driver (Version: 2.3.2.317) Revo Uninstaller 1.95 (Version: 1.95) S Agent (Version: 1.1.41) Samplitude Music Studio MX Download-Version (Version: 18.0.0.43) Samsung Story Album Viewer (Version: 1.0.0.13052_1) SAMSUNG USB Driver for Mobile Phones (Version: 1.5.24.0) Scribus 1.4.2 (64bit) (Version: 1.4.2) Serif DrawPlus X5 (Version: 12.0.4.027) Skype™ 6.1 (Version: 6.1.129) Smart File Advisor 1.1.1 (Version: 1.1.1) SmartSound Quicktracks 5 (Version: 5.1.8) Software Launcher (Version: 1.0.2) Spotify (Version: 0.9.1.57.ge7405149) Spybot - Search & Destroy (Version: 2.1.20) Steam (Version: 1.0.0.0) STRATO HiDrive (Version: 1.0.0) Surf & E-Mail-Stick (Version: 16.001.06.02.35) SW Update (Version: 2.1.15) Synaptics Pointing Device Driver (Version: 16.1.1.0) Tablet Driver With Macrokey Manager (Version: 4.15) TextMaker Viewer Text-To-Speech-Runtime (Version: 1.0.0.0) TubeBox (Version: 4.3.0.12) Turbo Lister 2 (Version: 2.00.0000) Ulead PhotoImpact 12 (Version: 12.0) Update for Ultimate Codec Update for Zip Opener User Guide (Version: 1.2) VAFPlayer (Version: 1.6.8) VC80CRTRedist - 8.0.50727.6195 (Version: 1.2.0) Virtual WiFi Router version 2.0.1.5 (Version: 2.0.1.5) Visual Studio 2005 Tools for Office Second Edition Runtime Visual Studio Tools for the Office system 3.0 Runtime Visual Studio Tools for the Office system 3.0 Runtime (Version: 9.0.30729) Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258) (Version: 1) VoiceSupport 1.2.01 (Version: 1.2.01 build 38) WebCake 3.00 (Version: 3.00) Windows 7 USB/DVD Download Tool (Version: 1.0.30) Windows Driver Package - Acer, Inc (androidusb) USB (03/06/2012 1.0.0010.00000) (Version: 03/06/2012 1.0.0010.00000) Windows Driver Package - Linux Developer Community Net (03/06/2012 5.1.2600.2781) (Version: 03/06/2012 5.1.2600.2781) WinRAR 4.20 (64-Bit) (Version: 4.20.0) Wsys Control 1.0.0.2557 (Version: 1.0.0.2557) YTD Video Downloader 3.9.6 (Version: 3.9.6) ==================== Restore Points ========================= 22-07-2013 16:13:24 No23 Recorder wird installiert 22-07-2013 16:30:58 No23 Recorder wird entfernt 23-07-2013 10:24:23 Installed Java 7 Update 25 29-07-2013 09:07:30 Revo Uninstaller's restore point - Qtrax Player 29-07-2013 09:08:38 Revo Uninstaller's restore point - Qtrax Connection Manager 29-07-2013 09:09:25 Revo Uninstaller's restore point - Update for Zip Opener 30-07-2013 08:51:50 Serif DrawPlus X5 wird installiert 30-07-2013 13:25:22 Installed Windows 7 USB/DVD Download Tool 03-08-2013 16:05:39 Revo Uninstaller's restore point - BrowserDefender 03-08-2013 16:12:19 Revo Uninstaller's restore point - Delta Chrome Toolbar 03-08-2013 16:13:34 Revo Uninstaller's restore point - Delta toolbar 03-08-2013 16:16:21 Revo Uninstaller's restore point - DMUninstaller 03-08-2013 16:16:50 Revo Uninstaller's restore point - Feven 03-08-2013 16:17:53 Revo Uninstaller's restore point - Optimizer Pro v3.0 03-08-2013 16:18:50 Revo Uninstaller's restore point - Desk 365 03-08-2013 16:19:51 Revo Uninstaller's restore point - Mozilla Firefox 22.0 (x86 en-US) ==================== Faulty Device Manager Devices ============= Name: Microsoft-Adapter für Miniports virtueller WiFis Description: Microsoft-Adapter für Miniports virtueller WiFis Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: vwifimp Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: BlueStacks Hypervisor Description: BlueStacks Hypervisor Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: BstHdDrv Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Event log errors: ========================= Application errors: ================== Error: (08/03/2013 06:23:08 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/03/2013 06:11:12 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/03/2013 06:02:35 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/02/2013 03:07:48 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/02/2013 11:38:03 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/02/2013 00:58:02 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/01/2013 06:53:02 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/01/2013 03:37:11 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/31/2013 11:05:29 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/31/2013 09:19:17 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (08/03/2013 06:24:08 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Error: (08/03/2013 06:23:11 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "3CX PhoneSystem Queue Manager" ist vom Dienst "3CX PhoneSystem" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%0 Error: (08/03/2013 06:23:11 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "3CX PhoneSystem Parking Orbit" ist vom Dienst "3CX PhoneSystem" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%0 Error: (08/03/2013 06:23:11 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "3CX PhoneSystem Media Server" ist vom Dienst "3CX PhoneSystem" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%0 Error: (08/03/2013 06:23:11 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "3CX PhoneSystem Digital Receptionist" ist vom Dienst "3CX PhoneSystem" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%0 Error: (08/03/2013 06:23:11 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "3CX PhoneSystem FAX Server" ist vom Dienst "3CX PhoneSystem" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%0 Error: (08/03/2013 06:23:11 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "3CX PhoneSystem Conference Room" ist vom Dienst "3CX PhoneSystem" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%0 Error: (08/03/2013 06:23:11 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "3CX PhoneSystem Call History" ist vom Dienst "3CX PhoneSystem" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%0 Error: (08/03/2013 06:23:05 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "BlueStacks Android Service" ist vom Dienst "BlueStacks Hypervisor" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%2 Error: (08/03/2013 06:22:57 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "BlueStacks Log Rotator Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Microsoft Office Sessions: ========================= ==================== Memory info =========================== Percentage of memory in use: 32% Total physical RAM: 8085.51 MB Available physical RAM: 5469.67 MB Total Pagefile: 9083.7 MB Available Pagefile: 5298.68 MB Total Virtual: 8192 MB Available Virtual: 8191.81 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:140.82 GB) (Free:52.91 GB) NTFS (Disk=0 Partition=3) Drive d: () (Fixed) (Total:97.56 GB) (Free:9.1 GB) NTFS (Disk=0 Partition=2) Drive e: (Disc) (CDROM) (Total:0.24 GB) (Free:0 GB) CDFS Drive f: (MD 86692) (Removable) (Total:3.71 GB) (Free:1.07 GB) FAT32 (Disk=1 Partition=1) ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 238 GB) (Disk ID: 4FE76FCC) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=98 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=141 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (Size: 4 GB) (Disk ID: 00000000) Partition 1: (Not Active) - (Size=4 GB) - (Type=0B) ==================== End Of Log ============================ |
04.08.2013, 10:02 | #4 | |
/// the machine /// TB-Ausbilder | Laufend Werbeienblendungen und aufforderungen sicherheitsscans zu machenCombofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!Downloade dir bitte Combofix vom folgenden Downloadspiegel Link 1 WICHTIG - Speichere Combofix auf deinem Desktop
Wenn Combofix fertig ist, wird es eine Logfile erstellen. Bitte poste die C:\Combofix.txt in deiner nächsten Antwort. Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten Zitat:
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
08.08.2013, 22:16 | #5 |
| Laufend Werbeienblendungen und aufforderungen sicherheitsscans zu machen Teil 1 Code:
ATTFilter ComboFix 13-08-05.03 - Rafael 05.08.2013 23:32:27.1.8 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.8086.6191 [GMT 2:00] ausgeführt von:: c:\users\Rafael\Desktop\ComboFix.exe AV: Avira Desktop *Disabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C} SP: Avira Desktop *Disabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691} SP: Spybot - Search and Destroy *Disabled/Outdated* {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\program files (x86)\Common Files\337 c:\program files (x86)\Common Files\337\libcef\1.1364.1123\icudt.dll c:\program files (x86)\Common Files\337\libcef\1.1364.1123\libcef.dll c:\program files (x86)\Common Files\337\libcef\1.1364.1123\locales\en-US.pak c:\program files (x86)\DealPly c:\program files (x86)\DealPly\DealPly.crx c:\program files (x86)\DealPly\DealPly.xpi c:\program files (x86)\DealPly\DealPlyIE.dll c:\program files (x86)\DealPly\DealPlyIE64.dll c:\program files (x86)\DealPly\DealPlyUpdate.exe c:\program files (x86)\DealPly\DealPlyUpdateRun.exe c:\program files (x86)\DealPly\DealPlyUpdateVer.exe c:\program files (x86)\DealPly\icon.ico c:\program files (x86)\DealPly\uninst.exe c:\program files (x86)\FTdownloader V4.0\FTDOwnloader v4.0-bho.dll c:\program files (x86)\kikin c:\program files (x86)\kikin\config.ini c:\program files (x86)\kikin\configuration.xml c:\program files (x86)\kikin\ie_kikin.dll c:\program files (x86)\kikin\kikin.ico c:\program files (x86)\kikin\KikinBroker.exe c:\program files (x86)\kikin\uninst.exe c:\programdata\3CX\Bin\3CXLogger.ini c:\programdata\3CX\Bin\3CXReports.ini c:\programdata\3CX\Bin\3CXTunnel.ini c:\programdata\3CX\Data\CDRTemplates\CDRTemplate-PerCall.xml c:\programdata\3CX\Data\CDRTemplates\CDRTemplate-Single-Script1.xml c:\programdata\3CX\Data\CDRTemplates\CDRTemplate-Single.xml c:\programdata\3CX\Data\CDRTemplates\CDRTemplate-Socket.xml c:\programdata\3CX\Data\CDRTemplates\CDRTemplate-SocketListen.xml c:\programdata\3CX\Data\CDRTemplates\SMDR.cs c:\programdata\3CX\Data\Fax\Cfg\faxglb.cfg c:\programdata\3CX\Data\Fax\Cfg\in_session.cfg c:\programdata\3CX\Data\Http\includes\ManagementLanguages.xml c:\programdata\3CX\Data\Http\includes\reporter_strings_de.ini c:\programdata\3CX\Data\Http\includes\reporter_strings_en.ini c:\programdata\3CX\Data\Http\includes\reporter_strings_ru.ini c:\programdata\3CX\Data\Http\includes\strings_cn.ini c:\programdata\3CX\Data\Http\includes\strings_da.ini c:\programdata\3CX\Data\Http\includes\strings_de.ini c:\programdata\3CX\Data\Http\includes\strings_el.ini c:\programdata\3CX\Data\Http\includes\strings_en.ini c:\programdata\3CX\Data\Http\includes\strings_es.ini c:\programdata\3CX\Data\Http\includes\strings_fr.ini c:\programdata\3CX\Data\Http\includes\strings_it.ini c:\programdata\3CX\Data\Http\includes\strings_ja.ini c:\programdata\3CX\Data\Http\includes\strings_pl.ini c:\programdata\3CX\Data\Http\includes\strings_pt.ini c:\programdata\3CX\Data\Http\includes\strings_ru.ini c:\programdata\3CX\Data\Http\includes\WebReporterLanguages.xml c:\programdata\3CX\Data\Http\Interface\bin\3CXWebTheme.dll c:\programdata\3CX\Data\Http\Interface\bin\Gizmox.WebGUI.Common.dll c:\programdata\3CX\Data\Http\Interface\bin\Gizmox.WebGUI.Forms.dll c:\programdata\3CX\Data\Http\Interface\bin\Gizmox.WebGUI.Forms.Themes.dll c:\programdata\3CX\Data\Http\Interface\bin\NetTesterLib.dll c:\programdata\3CX\Data\Http\Interface\bin\TcxBinLogRd.dll c:\programdata\3CX\Data\Http\Interface\bin\WebGuiInterface.dll c:\programdata\3CX\Data\Http\Interface\clientaccesspolicy.xml c:\programdata\3CX\Data\Http\Interface\favicon.ico c:\programdata\3CX\Data\Http\Interface\index.aspx c:\programdata\3CX\Data\Http\Interface\ivr\bin\3cxIvr.dll c:\programdata\3CX\Data\Http\Interface\ivr\BoomAcceptor.aspx c:\programdata\3CX\Data\Http\Interface\ivr\BoomAcceptor.aspx.cs c:\programdata\3CX\Data\Http\Interface\ivr\BoomAcceptor.vxml c:\programdata\3CX\Data\Http\Interface\ivr\BoomCaller.aspx c:\programdata\3CX\Data\Http\Interface\ivr\BoomCaller.aspx.cs c:\programdata\3CX\Data\Http\Interface\ivr\BoomCaller.vxml c:\programdata\3CX\Data\Http\Interface\ivr\CallByName.aspx c:\programdata\3CX\Data\Http\Interface\ivr\CallByName.aspx.cs c:\programdata\3CX\Data\Http\Interface\ivr\CallByName.vxml c:\programdata\3CX\Data\Http\Interface\ivr\CallByName2.vxml c:\programdata\3CX\Data\Http\Interface\ivr\ChangeGreeting.vxml c:\programdata\3CX\Data\Http\Interface\ivr\ChangePin.vxml c:\programdata\3CX\Data\Http\Interface\ivr\ChangeSelfId.vxml c:\programdata\3CX\Data\Http\Interface\ivr\Default.aspx.cs c:\programdata\3CX\Data\Http\Interface\ivr\dr.aspx c:\programdata\3CX\Data\Http\Interface\ivr\dr.aspx.cs c:\programdata\3CX\Data\Http\Interface\ivr\DRbase.vxml c:\programdata\3CX\Data\Http\Interface\ivr\Funcs.aspx c:\programdata\3CX\Data\Http\Interface\ivr\Funcs.aspx.cs c:\programdata\3CX\Data\Http\Interface\ivr\GetPrompt.aspx c:\programdata\3CX\Data\Http\Interface\ivr\GetPrompt.aspx.cs c:\programdata\3CX\Data\Http\Interface\ivr\Global.asax c:\programdata\3CX\Data\Http\Interface\ivr\ivr_start.aspx c:\programdata\3CX\Data\Http\Interface\ivr\LoginVmail.aspx c:\programdata\3CX\Data\Http\Interface\ivr\LoginVmail.aspx.cs c:\programdata\3CX\Data\Http\Interface\ivr\LoginVmail.vxml c:\programdata\3CX\Data\Http\Interface\ivr\MakeCall.vxml c:\programdata\3CX\Data\Http\Interface\ivr\PbxAPI.aspx c:\programdata\3CX\Data\Http\Interface\ivr\PbxAPI.aspx.cs c:\programdata\3CX\Data\Http\Interface\ivr\PINUnlock.aspx c:\programdata\3CX\Data\Http\Interface\ivr\PINUnlock.aspx.cs c:\programdata\3CX\Data\Http\Interface\ivr\PINUnlock.vxml c:\programdata\3CX\Data\Http\Interface\ivr\Properties\AssemblyInfo.cs c:\programdata\3CX\Data\Http\Interface\ivr\QueueMenu.aspx c:\programdata\3CX\Data\Http\Interface\ivr\QueueMenu.aspx.cs c:\programdata\3CX\Data\Http\Interface\ivr\QueueMenu.vxml c:\programdata\3CX\Data\Http\Interface\ivr\Record.vxml c:\programdata\3CX\Data\Http\Interface\ivr\RecVmail.aspx c:\programdata\3CX\Data\Http\Interface\ivr\RecVmail.aspx.cs c:\programdata\3CX\Data\Http\Interface\ivr\RecVmail.vxml c:\programdata\3CX\Data\Http\Interface\ivr\root.aspx c:\programdata\3CX\Data\Http\Interface\ivr\root.aspx.cs c:\programdata\3CX\Data\Http\Interface\ivr\root.vxml c:\programdata\3CX\Data\Http\Interface\ivr\SaveAudio.aspx c:\programdata\3CX\Data\Http\Interface\ivr\SaveAudio.aspx.cs c:\programdata\3CX\Data\Http\Interface\ivr\SaveRecording.aspx c:\programdata\3CX\Data\Http\Interface\ivr\SaveRecording.aspx.cs c:\programdata\3CX\Data\Http\Interface\ivr\SaveVmail.aspx c:\programdata\3CX\Data\Http\Interface\ivr\SaveVmail.aspx.cs c:\programdata\3CX\Data\Http\Interface\ivr\start.xml c:\programdata\3CX\Data\Http\Interface\ivr\transfer.vxml c:\programdata\3CX\Data\Http\Interface\ivr\VAD_Deploy.aspx c:\programdata\3CX\Data\Http\Interface\ivr\VAD_DownloadDebugInfoFile.aspx c:\programdata\3CX\Data\Http\Interface\ivr\VAD_GetDebugInfoFileNames.aspx c:\programdata\3CX\Data\Http\Interface\ivr\VmailMenu.aspx c:\programdata\3CX\Data\Http\Interface\ivr\VmailMenu.aspx.cs c:\programdata\3CX\Data\Http\Interface\ivr\VmailMenu.vxml c:\programdata\3CX\Data\Http\Interface\ivr\Web.Config c:\programdata\3CX\Data\Http\Interface\Logout.aspx c:\programdata\3CX\Data\Http\Interface\MyPhone\AssistPubSubSrv.svc c:\programdata\3CX\Data\Http\Interface\MyPhone\Bin\MyPhone.Web.dll c:\programdata\3CX\Data\Http\Interface\MyPhone\Bin\Npgsql.dll c:\programdata\3CX\Data\Http\Interface\MyPhone\Bin\QStatProcessor.dll c:\programdata\3CX\Data\Http\Interface\MyPhone\Bin\System.ComponentModel.DataAnnotations.dll c:\programdata\3CX\Data\Http\Interface\MyPhone\Bin\System.ServiceModel.DomainServices.Hosting.dll c:\programdata\3CX\Data\Http\Interface\MyPhone\Bin\System.ServiceModel.DomainServices.Server.dll c:\programdata\3CX\Data\Http\Interface\MyPhone\Bin\System.ServiceModel.PollingDuplex.dll c:\programdata\3CX\Data\Http\Interface\MyPhone\Bin\VBMutils.dll c:\programdata\3CX\Data\Http\Interface\MyPhone\clientaccesspolicy.xml c:\programdata\3CX\Data\Http\Interface\MyPhone\ClientBin\MyPhone.xap c:\programdata\3CX\Data\Http\Interface\MyPhone\favicon.ico c:\programdata\3CX\Data\Http\Interface\MyPhone\Global.asax c:\programdata\3CX\Data\Http\Interface\MyPhone\MyPhone.aspx c:\programdata\3CX\Data\Http\Interface\MyPhone\MyPhoneRes\3CXMyPhoneDesktopComponents.exe c:\programdata\3CX\Data\Http\Interface\MyPhone\Silverlight.js c:\programdata\3CX\Data\Http\Interface\MyPhone\Web.config c:\programdata\3CX\Data\Http\Interface\provisioning\000000000000-directory.xml c:\programdata\3CX\Data\Http\Interface\provisioning\3CXPhone-directory.xml c:\programdata\3CX\Data\Http\Interface\provisioning\aastra_phonebook.csv c:\programdata\3CX\Data\Http\Interface\provisioning\cisco_phonebook.xml c:\programdata\3CX\Data\Http\Interface\provisioning\firmware\HelpTips_Firmware_Folder.txt c:\programdata\3CX\Data\Http\Interface\provisioning\firmware\ring1.bin c:\programdata\3CX\Data\Http\Interface\provisioning\firmware\ring2.bin c:\programdata\3CX\Data\Http\Interface\provisioning\firmware\ring3.bin c:\programdata\3CX\Data\Http\Interface\provisioning\gs_phonebook.xml c:\programdata\3CX\Data\Http\Interface\provisioning\logo\cisco50xg.bmp c:\programdata\3CX\Data\Http\Interface\provisioning\logo\cisco525g.jpg c:\programdata\3CX\Data\Http\Interface\provisioning\logo\gxp2000_screen.xml c:\programdata\3CX\Data\Http\Interface\provisioning\logo\gxp2010_screen.xml c:\programdata\3CX\Data\Http\Interface\provisioning\logo\gxp2020_screen.xml c:\programdata\3CX\Data\Http\Interface\provisioning\logo\idle_screen.xml.gxp1400 c:\programdata\3CX\Data\Http\Interface\provisioning\logo\idle_screen.xml.gxp1450 c:\programdata\3CX\Data\Http\Interface\provisioning\logo\idle_screen.xml.gxp2100 c:\programdata\3CX\Data\Http\Interface\provisioning\logo\idle_screen.xml.gxp2110 c:\programdata\3CX\Data\Http\Interface\provisioning\logo\idle_screen.xml.gxp2120 c:\programdata\3CX\Data\Http\Interface\provisioning\logo\idle_screen.xml.gxp2124 c:\programdata\3CX\Data\Http\Interface\provisioning\logo\panasonic_logo.xml c:\programdata\3CX\Data\Http\Interface\provisioning\logo\panasonic_logo136.xml c:\programdata\3CX\Data\Http\Interface\provisioning\logo\snom360.xml c:\programdata\3CX\Data\Http\Interface\provisioning\logo\snom370.xml c:\programdata\3CX\Data\Http\Interface\provisioning\logo\snom820.xml c:\programdata\3CX\Data\Http\Interface\provisioning\logo\snom870.xml c:\programdata\3CX\Data\Http\Interface\provisioning\logo\ut136_pana.bmp c:\programdata\3CX\Data\Http\Interface\provisioning\logo\ut1XX_pana.bmp c:\programdata\3CX\Data\Http\Interface\provisioning\logo\yealinkt22.dob c:\programdata\3CX\Data\Http\Interface\provisioning\logo\yealinkt28.dob c:\programdata\3CX\Data\Http\Interface\provisioning\logo\yealinkt32.png c:\programdata\3CX\Data\Http\Interface\provisioning\logo\yealinkt38.png c:\programdata\3CX\Data\Http\Interface\provisioning\logo\yealinkVP530.jpg c:\programdata\3CX\Data\Http\Interface\provisioning\snom_phonebook.xml c:\programdata\3CX\Data\Http\Interface\provisioning\TcxProvFiles\3cxProv_130319205541_10.xml c:\programdata\3CX\Data\Http\Interface\provisioning\VP530_dialing_shortcut.xml c:\programdata\3CX\Data\Http\Interface\provisioning\VP530_super_search.xml c:\programdata\3CX\Data\Http\Interface\provisioning\web.config c:\programdata\3CX\Data\Http\Interface\provisioning\yealink_phonebook.xml c:\programdata\3CX\Data\Http\Interface\Resources\Icons\1 services.ico c:\programdata\3CX\Data\Http\Interface\Resources\Icons\1und1.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\2 start.ico c:\programdata\3CX\Data\Http\Interface\Resources\Icons\2 start.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\3 stop.ico c:\programdata\3CX\Data\Http\Interface\Resources\Icons\3CX.ico c:\programdata\3CX\Data\Http\Interface\Resources\Icons\3cx.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\3cx_op_icon.ico c:\programdata\3CX\Data\Http\Interface\Resources\Icons\4 restart.ico c:\programdata\3CX\Data\Http\Interface\Resources\Icons\5 refresh.ico c:\programdata\3CX\Data\Http\Interface\Resources\Icons\6 help.ico c:\programdata\3CX\Data\Http\Interface\Resources\Icons\Activate_License-16x16.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\Active_Calls-16x16.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\Add_Extension-16x16.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\Add_VOIP_Gataway-16x16.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\Add_VOIP_provider-16x16.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\Admin_Credentials-16x16.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\Advanced.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\apply.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\arr_down.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\arr_up.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\audiocodes.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\Backup_and_Restore-16x16.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\bertProgress.gif c:\programdata\3CX\Data\Http\Interface\Resources\Icons\billIcon.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\Bridge-16x16.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\broadvoice.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\broadvox.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\BrowseImg.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\bullets_d.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\bullets_g.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\bullets_r.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\bullets_y.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\Call_Queue-16x16.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\callcentric.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\cbeyond.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\cellip.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\clipcomm.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\CopyImg.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Algeria.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Angola.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Aruba.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Ascension_Island.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Benin.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Botswana.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\British_Indian_Ocean_Territory.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Burkina_Faso.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Burundi.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Cameroon.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Cape_Verde.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Central_African_Republic.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Chad.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Comoros.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Congo.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Congo_Democratic_Republic_of.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Cote_d'Ivoire.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Djibouti.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Egypt.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Equatorial_Guinea.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Eritrea.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Ethiopia.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Gabon.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Gambia.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Ghana.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Guinea-Bissau.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Guinea.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Kenya.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Lesotho.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Liberia.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Libya.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Madagascar.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Malawi.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Mali.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Mauritania.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Mauritius.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Mayotte.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Morocco.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Mozambique.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Namibia.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Niger.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Nigeria.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Reunion.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Rwanda.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Saint_Helena.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Sao_Tome_and_Principe.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Senegal.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Seychelles.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Sierra_Leone.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Somalia.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\South_Africa.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\South_Sudan.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Sudan.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Swaziland.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Tanzania.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Togo.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Tristan_da_Cunha.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Tunisia.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Uganda.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Zambia.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Zanzibar.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Africa\Zimbabwe.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Antarctica\AustralianAntarcticTerritory.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Afghanistan.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Azerbaijan.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Bahrain.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Bangladesh.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Bhutan.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Brunei.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Cambodia.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\China.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\East_Timor.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Georgia.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Hong_Kong.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\India.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Indonesia.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Iran.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Iraq.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Israel.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Japan.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Jordan.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Kazakhstan.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Kuwait.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Kyrgyzstan.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Laos.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Lebanon.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Macau.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Malaysia.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Maldives.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Mongolia.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Myanmar.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Nepal.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\North_Korea.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Oman.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Pakistan.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Palestine.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Philippines.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Qatar.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Saudi_Arabia.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Singapore.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\South_Korea.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\South_Ossetia.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Sri_Lanka.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Syria.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Taiwan.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Tajikistan.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Thailand.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Turkmenistan.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\United_Arab_Emirates.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Uzbekistan.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Vietnam.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Asia\Yemen.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Australia\American_Samoa.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Australia\Australia.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Australia\Christmas_Island.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Australia\Cocos_(Keeling)_Islands.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Australia\Cook_Islands.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Australia\Fiji.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Australia\French_Polynesia.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Australia\Kiribati.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Australia\Marshall_Islands.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Australia\Micronesia.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Australia\Nauru.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Australia\New_Caledonia.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Australia\New_Zealand.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Australia\Niue.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Australia\Norfolk_Island.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Australia\Northern_Mariana_Islands.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Australia\Palau.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Australia\Papua_New_Guinea.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Australia\Pitcairn_Islands.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Australia\Samoa.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Australia\Solomon_Islands.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Australia\Tokelau.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Australia\Tonga.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Australia\Tuvalu.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Australia\United_States_Minor_Outlying_Islands.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Australia\Vanuatu.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Australia\Wallis_and_Futuna.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Earth_icon.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Albania.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Andorra.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Armenia.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Austria.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Belarus.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Belgium.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Bosnia_and_Herzegovina.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Bulgaria.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Croatia.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Cyprus.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Czech_Republic.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Denmark.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Estonia.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Faroe_Islands.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Finland.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\France.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Germany.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Gibraltar.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Greece.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Guernsey.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Hungary.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Iceland.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Ireland.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Isle_of_Man.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Italy.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Jersey.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Latvia.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Liechtenstein.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Lithuania.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Luxembourg.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Macedonia.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Malta.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Moldova.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Monaco.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Montenegro.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Netherlands.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Norway.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Poland.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Portugal.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Romania.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Russia.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\San_Marino.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Serbia.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Slovakia.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Slovenia.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Spain.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Svalbard_and_Jan_Mayen.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Sweden.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Switzerland.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Turkey.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Turkish_Republic_of_Northern_Cyprus.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Ukraine.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\United_Kingdom.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\Europe\Vatican_City.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\Anguilla.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\Antigua_and_Barbuda.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\Bahamas.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\Barbados.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\Bermuda.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\Canada.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\Cayman_Islands.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\Costa_Rica.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\Cuba.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\Dominica.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\Dominican_Republic.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\El_Salvador.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\Greenland.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\Grenada.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\Guam.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\Guatemala.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\Haiti.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\Honduras.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\Jamaica.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\Mexico.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\Montserrat.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\Nicaragua.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\Northern_Mariana_Islands.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\Panama.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\Puerto_Rico.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\Saint_Kitts_and_Nevis.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\Saint_Lucia.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\Saint_Vincent_and_Grenadines.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\Trinidad_and_Tobago.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\Turks_and_Caicos_Islands.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\United_States.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\Virgin_Islands_British.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\NorthAmerica\Virgin_Islands_United_States.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\SouthAmerica\Argentina.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\SouthAmerica\Aruba.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\SouthAmerica\Belize.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\SouthAmerica\Bolivia.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\SouthAmerica\Brazil.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\SouthAmerica\Chile.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\SouthAmerica\Colombia.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\SouthAmerica\Ecuador.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\SouthAmerica\Falkland_Islands.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\SouthAmerica\French_Guyana.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\SouthAmerica\Guadeloupe.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\SouthAmerica\Guyana.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\SouthAmerica\Martinique.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\SouthAmerica\Paraguay.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\SouthAmerica\Peru.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\SouthAmerica\Saint_Pierre_and_Miquelon.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\SouthAmerica\South_Georgia_and_South_Sandwich_Islands.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\SouthAmerica\Suriname.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\SouthAmerica\Uruguay.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\country_flags\SouthAmerica\Venezuela.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\Create_DID-16x16.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\Create_Outbound_Rule-16x16.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\Delete.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\deleteIcon.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\DID_cid.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\DIDnumber_16x16.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\Digital_Receptionist-16x16.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\download.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\Edit.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\editcfg.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\Edits.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\Extension_status-16x16.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\extension16.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\favicon.ico c:\programdata\3CX\Data\Http\Interface\Resources\Icons\Fax1.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\Firewall-16x16.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\forum.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\forum16x16.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\General-16x16.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\General.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\GeneralConfiguration-16x16.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\grandstream.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\help.ico c:\programdata\3CX\Data\Http\Interface\Resources\Icons\help.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\help_icon.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\help16x16.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\help2.ico c:\programdata\3CX\Data\Http\Interface\Resources\Icons\help3.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\Hourglass.gif c:\programdata\3CX\Data\Http\Interface\Resources\Icons\ico-call-record.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\ico-play.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\info.gif c:\programdata\3CX\Data\Http\Interface\Resources\Icons\inphonex.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\Line-16x16.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\linksys.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\live-bookmark.gif c:\programdata\3CX\Data\Http\Interface\Resources\Icons\logo.gif c:\programdata\3CX\Data\Http\Interface\Resources\Icons\mail.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\mail16x16.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\MakeCall.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\manual.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\manual16x16.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\mediatrix.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\Network.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\nexvortex.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\office.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\outboundrule.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\patton.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\phone_imp.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\prionet.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\progress_blue.gif c:\programdata\3CX\Data\Http\Interface\Resources\Icons\question.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\record.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\Refresh.ico c:\programdata\3CX\Data\Http\Interface\Resources\Icons\refresh.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\refresh_.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\refresh5.ico c:\programdata\3CX\Data\Http\Interface\Resources\Icons\refresh6.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\restart_icon.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\restartService.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\Ring_Group-16x16.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\sangoma.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\Server patcher.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\Server_Activity_Log-16x16.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\Server_patcher-16x16.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\serviceIco.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\serviceicon.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\sipcall.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\sipgate.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\sipura.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\splitter.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\startIcon.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\startService.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\stop_icon.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\stopService.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\Support_page-16x16.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\Systems_promts-16x16.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\Systems_promts-32x32.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\toolbar.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\Update.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\users.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\vegastream.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\voip-unlimited.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\VOIP_Gateway-16x16.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\VOIP_Provider-16x16.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\voipon.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\voiponSmall.PNG c:\programdata\3CX\Data\Http\Interface\Resources\Icons\Weblink-16x16.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\widevoip.png c:\programdata\3CX\Data\Http\Interface\Resources\Icons\xeloq.png c:\programdata\3CX\Data\Http\Interface\Resources\Images\arrow.gif c:\programdata\3CX\Data\Http\Interface\Resources\Images\banner1.jpg c:\programdata\3CX\Data\Http\Interface\Resources\Images\banner2.jpg c:\programdata\3CX\Data\Http\Interface\Resources\Images\bg_mid.gif c:\programdata\3CX\Data\Http\Interface\Resources\Images\bg_top.gif c:\programdata\3CX\Data\Http\Interface\Resources\Images\help3.png c:\programdata\3CX\Data\Http\Interface\Resources\Images\icon1.gif c:\programdata\3CX\Data\Http\Interface\Resources\Images\info.gif c:\programdata\3CX\Data\Http\Interface\Resources\Images\logo.gif c:\programdata\3CX\Data\Http\Interface\Resources\Images\mid_banner.JPG c:\programdata\3CX\Data\Http\Interface\Resources\Images\top_banner.bmp c:\programdata\3CX\Data\Http\Interface\Resources\Images\top_banner.jpg c:\programdata\3CX\Data\Http\Interface\Resources\Images\top_banner.png c:\programdata\3CX\Data\Http\Interface\Wallboard\About.aspx c:\programdata\3CX\Data\Http\Interface\Wallboard\Account\ChangePassword.aspx c:\programdata\3CX\Data\Http\Interface\Wallboard\Account\ChangePasswordSuccess.aspx c:\programdata\3CX\Data\Http\Interface\Wallboard\Account\Login.aspx c:\programdata\3CX\Data\Http\Interface\Wallboard\Account\Logout.aspx c:\programdata\3CX\Data\Http\Interface\Wallboard\Account\Register.aspx c:\programdata\3CX\Data\Http\Interface\Wallboard\Account\Web.config c:\programdata\3CX\Data\Http\Interface\Wallboard\App_GlobalResources\WallBoard.cs-CZ.resx c:\programdata\3CX\Data\Http\Interface\Wallboard\App_GlobalResources\WallBoard.da-DK.resx c:\programdata\3CX\Data\Http\Interface\Wallboard\App_GlobalResources\WallBoard.de-DE.resx c:\programdata\3CX\Data\Http\Interface\Wallboard\App_GlobalResources\WallBoard.el-GR.resx c:\programdata\3CX\Data\Http\Interface\Wallboard\App_GlobalResources\WallBoard.es-ES.resx c:\programdata\3CX\Data\Http\Interface\Wallboard\App_GlobalResources\WallBoard.fr-FR.resx c:\programdata\3CX\Data\Http\Interface\Wallboard\App_GlobalResources\WallBoard.it-IT.resx c:\programdata\3CX\Data\Http\Interface\Wallboard\App_GlobalResources\WallBoard.nl-NL.resx c:\programdata\3CX\Data\Http\Interface\Wallboard\App_GlobalResources\WallBoard.resx c:\programdata\3CX\Data\Http\Interface\Wallboard\App_GlobalResources\WallBoard.ru-RU.resx c:\programdata\3CX\Data\Http\Interface\Wallboard\App_GlobalResources\WallBoard.zh-CN.resx c:\programdata\3CX\Data\Http\Interface\Wallboard\Assets\Images\ajax-loader.gif c:\programdata\3CX\Data\Http\Interface\Wallboard\Assets\Images\Wallboard.ico c:\programdata\3CX\Data\Http\Interface\Wallboard\bin\clientaccesspolicy.xml c:\programdata\3CX\Data\Http\Interface\Wallboard\bin\log4net.dll c:\programdata\3CX\Data\Http\Interface\Wallboard\bin\QStatProcessor.dll c:\programdata\3CX\Data\Http\Interface\Wallboard\bin\SuperSocket.Common.dll c:\programdata\3CX\Data\Http\Interface\Wallboard\bin\SuperSocket.SocketBase.dll c:\programdata\3CX\Data\Http\Interface\Wallboard\bin\SuperSocket.SocketEngine.dll c:\programdata\3CX\Data\Http\Interface\Wallboard\bin\SuperWebSocket.dll c:\programdata\3CX\Data\Http\Interface\Wallboard\bin\WallBoard.dll c:\programdata\3CX\Data\Http\Interface\Wallboard\clientaccesspolicy.xml c:\programdata\3CX\Data\Http\Interface\Wallboard\ClientBin\Microsoft.ServiceModel.WebSockets.xap c:\programdata\3CX\Data\Http\Interface\Wallboard\Config\Config.xml c:\programdata\3CX\Data\Http\Interface\Wallboard\Default.aspx c:\programdata\3CX\Data\Http\Interface\Wallboard\Global.asax c:\programdata\3CX\Data\Http\Interface\Wallboard\Login.Master c:\programdata\3CX\Data\Http\Interface\Wallboard\Reconnect.aspx c:\programdata\3CX\Data\Http\Interface\Wallboard\Scripts\h5utils.js c:\programdata\3CX\Data\Http\Interface\Wallboard\Scripts\jquery-1.4.1-vsdoc.js c:\programdata\3CX\Data\Http\Interface\Wallboard\Scripts\jquery-1.4.1.js c:\programdata\3CX\Data\Http\Interface\Wallboard\Scripts\jquery-1.4.1.min.js c:\programdata\3CX\Data\Http\Interface\Wallboard\Scripts\jquery.blockUI.js c:\programdata\3CX\Data\Http\Interface\Wallboard\Scripts\jquery.slws.js c:\programdata\3CX\Data\Http\Interface\Wallboard\Scripts\json2.js c:\programdata\3CX\Data\Http\Interface\Wallboard\Scripts\Silverlight.js c:\programdata\3CX\Data\Http\Interface\Wallboard\Scripts\swfobject.js c:\programdata\3CX\Data\Http\Interface\Wallboard\Scripts\Utilities.js c:\programdata\3CX\Data\Http\Interface\Wallboard\Scripts\web_socket.js c:\programdata\3CX\Data\Http\Interface\Wallboard\Site.Master c:\programdata\3CX\Data\Http\Interface\Wallboard\Styles\Login.css c:\programdata\3CX\Data\Http\Interface\Wallboard\Styles\Queue.css c:\programdata\3CX\Data\Http\Interface\Wallboard\Styles\Site.css c:\programdata\3CX\Data\Http\Interface\Wallboard\Web.config c:\programdata\3CX\Data\Http\Interface\Web.config c:\programdata\3CX\Data\Http\Interface\WebCallReporter\bin\3CXWebTheme.dll c:\programdata\3CX\Data\Http\Interface\WebCallReporter\bin\FastReport.Bars.dll c:\programdata\3CX\Data\Http\Interface\WebCallReporter\bin\FastReport.dll c:\programdata\3CX\Data\Http\Interface\WebCallReporter\bin\FastReport.Editor.dll c:\programdata\3CX\Data\Http\Interface\WebCallReporter\bin\FastReport.Postgres.dll c:\programdata\3CX\Data\Http\Interface\WebCallReporter\bin\FastReport.Web.dll c:\programdata\3CX\Data\Http\Interface\WebCallReporter\bin\Gizmox.WebGUI.Common.dll c:\programdata\3CX\Data\Http\Interface\WebCallReporter\bin\Gizmox.WebGUI.Forms.dll c:\programdata\3CX\Data\Http\Interface\WebCallReporter\bin\Gizmox.WebGUI.Forms.Themes.dll c:\programdata\3CX\Data\Http\Interface\WebCallReporter\bin\System.Windows.Forms.DataVisualization.dll c:\programdata\3CX\Data\Http\Interface\WebCallReporter\bin\WebCallReporter.dll c:\programdata\3CX\Data\Http\Interface\WebCallReporter\Global.asax c:\programdata\3CX\Data\Http\Interface\WebCallReporter\index.aspx c:\programdata\3CX\Data\Http\Interface\WebCallReporter\Logout.aspx c:\programdata\3CX\Data\Http\Interface\WebCallReporter\RecordsHandler.aspx c:\programdata\3CX\Data\Http\Interface\WebCallReporter\ReportsHolder.aspx c:\programdata\3CX\Data\Http\Interface\WebCallReporter\Resources\Icons\3CX.ico c:\programdata\3CX\Data\Http\Interface\WebCallReporter\Resources\Icons\3cx.png c:\programdata\3CX\Data\Http\Interface\WebCallReporter\Resources\Icons\About.png c:\programdata\3CX\Data\Http\Interface\WebCallReporter\Resources\Icons\Advanced.png c:\programdata\3CX\Data\Http\Interface\WebCallReporter\Resources\Icons\bertProgress.gif c:\programdata\3CX\Data\Http\Interface\WebCallReporter\Resources\Icons\Call_Queue-16x16.png c:\programdata\3CX\Data\Http\Interface\WebCallReporter\Resources\Icons\Create_Outbound_Rule-16x16.png c:\programdata\3CX\Data\Http\Interface\WebCallReporter\Resources\Icons\Delete.png c:\programdata\3CX\Data\Http\Interface\WebCallReporter\Resources\Icons\Edits.png c:\programdata\3CX\Data\Http\Interface\WebCallReporter\Resources\Icons\GeneralConfiguration-16x16.png c:\programdata\3CX\Data\Http\Interface\WebCallReporter\Resources\Icons\Hourglass.gif c:\programdata\3CX\Data\Http\Interface\WebCallReporter\Resources\Icons\Lists.png c:\programdata\3CX\Data\Http\Interface\WebCallReporter\Resources\Icons\logo.gif c:\programdata\3CX\Data\Http\Interface\WebCallReporter\Resources\Icons\office.png c:\programdata\3CX\Data\Http\Interface\WebCallReporter\Resources\Icons\Scenario.png c:\programdata\3CX\Data\Http\Interface\WebCallReporter\Resources\Icons\serviceIco.png c:\programdata\3CX\Data\Http\Interface\WebCallReporter\Resources\Icons\users.png c:\programdata\3CX\Data\Http\Interface\WebCallReporter\Resources\Images\3cx_logo.bmp c:\programdata\3CX\Data\Http\Interface\WebCallReporter\Web.config c:\programdata\3CX\Data\Http\Interface\WebCallReporter\WebReporterConfig.xml c:\programdata\3CX\Data\Http\Templates\ConferenceMailTemplate.txt c:\programdata\3CX\Data\Http\Templates\FAXTemplate.txt c:\programdata\3CX\Data\Http\Templates\gateway\3cx-gateway-for-skype.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\3cx.png c:\programdata\3CX\Data\Http\Templates\gateway\BeroFix_BRI.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\BeroFix_FXO.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\BeroFix_PRI.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\Beronet.png c:\programdata\3CX\Data\Http\Templates\gateway\generic.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\grandstream-gxw-4004.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\grandstream-gxw-4008.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\grandstream-gxw-4024.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\grandstream-gxw-4104.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\grandstream-gxw-4108.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\grandstream-ht-701.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\grandstream-ht-702.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\grandstream-ht-704.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\grandstream.png c:\programdata\3CX\Data\Http\Templates\gateway\linksys-spa-3102.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\linksys.png c:\programdata\3CX\Data\Http\Templates\gateway\patton-sn-4112-5x.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\patton-sn-4114-5x.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\patton-sn-4120-1BRI-6x.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\patton-sn-4120-2BRI-6x.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\patton-sn-4552-5x.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\patton-sn-4554-5x.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\patton-sn-4638-5bis-ui-5x.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\patton-sn-4940-e1-1port-5x.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\patton-sn-4940-e1-4port-5x.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\patton-sn-4940-t1-1port-5x.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\patton-sn-4940-t1-4port-5x.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\patton-sn-4960-e1-1port-5x.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\patton-sn-4960-e1-5x.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\patton-sn-4960-t1-1port-5x.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\patton-sn-4960-t1-5x.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\patton.png c:\programdata\3CX\Data\Http\Templates\gateway\portech-mv370.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\portech-mv374.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\sangoma-a101-E1.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\sangoma-a101-T1.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\sangoma-a102-E1.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\sangoma-a102-T1.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\sangoma-a104-E1.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\sangoma-a104-T1.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\sangoma-a108-E1.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\sangoma-a108-T1.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\sangoma-a200-16fxo.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\sangoma-a200-2fxs.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\sangoma-a200-4fxo.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\sangoma-a200-8fxo.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\sangoma-a500-2te-ptmp.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\sangoma-a500-2te-ptp.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\sangoma-a500-4te-ptmp.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\sangoma-a500-4te-ptp.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\sangoma-a500-6te-ptmp.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\sangoma-a500-6te-ptp.gw.xml c:\programdata\3CX\Data\Http\Templates\gateway\sangoma.png c:\programdata\3CX\Data\Http\Templates\gateway\skype.png c:\programdata\3CX\Data\Http\Templates\HelpTips_for_MailTemplate.txt c:\programdata\3CX\Data\Http\Templates\MailTemplate.txt c:\programdata\3CX\Data\Http\Templates\phones\cisco.ph.xml c:\programdata\3CX\Data\Http\Templates\phones\cisco_sidecarSPA50X.ph.xml c:\programdata\3CX\Data\Http\Templates\phones\cisco_sidecarSPA525.ph.xml c:\programdata\3CX\Data\Http\Templates\phones\ciscoSPA525.ph.xml c:\programdata\3CX\Data\Http\Templates\phones\grandstream.ph.xml c:\programdata\3CX\Data\Http\Templates\phones\grandstream_dp715.ph.xml c:\programdata\3CX\Data\Http\Templates\phones\grandstreamexecutive.ph.xml c:\programdata\3CX\Data\Http\Templates\phones\grandstreamvideo.ph.xml c:\programdata\3CX\Data\Http\Templates\phones\panasonic_kt500.ph.xml c:\programdata\3CX\Data\Http\Templates\phones\polycom.ph.xml c:\programdata\3CX\Data\Http\Templates\phones\polycom_spectra.ph.xml c:\programdata\3CX\Data\Http\Templates\phones\polycom21x.ph.xml c:\programdata\3CX\Data\Http\Templates\phones\polycom31x.ph.xml c:\programdata\3CX\Data\Http\Templates\phones\polycom32x.ph.xml c:\programdata\3CX\Data\Http\Templates\phones\polycom33x.ph.xml c:\programdata\3CX\Data\Http\Templates\phones\snom.ph.xml c:\programdata\3CX\Data\Http\Templates\phones\yealink.ph.xml c:\programdata\3CX\Data\Http\Templates\phones\yealinkT3x.ph.xml c:\programdata\3CX\Data\Http\Templates\phones\yealinkVP530.ph.xml c:\programdata\3CX\Data\Http\Templates\provider\3cx.png c:\programdata\3CX\Data\Http\Templates\provider\3starsnet.png c:\programdata\3CX\Data\Http\Templates\provider\3starsnet.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\actio.png c:\programdata\3CX\Data\Http\Templates\provider\actio.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\appia.png c:\programdata\3CX\Data\Http\Templates\provider\appia.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\broadvox.png c:\programdata\3CX\Data\Http\Templates\provider\broadvox.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\broadvoxgoanywhere.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\callcentric.png c:\programdata\3CX\Data\Http\Templates\provider\Callcentric.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\cbeyond.png c:\programdata\3CX\Data\Http\Templates\provider\cbeyond.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\easycall.png c:\programdata\3CX\Data\Http\Templates\provider\easycall.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\engin.png c:\programdata\3CX\Data\Http\Templates\provider\engin.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\g7eleven.png c:\programdata\3CX\Data\Http\Templates\provider\g7eleven.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\GenericSIPTrunk.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\GenericVoIPProvider.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\hoiio.png c:\programdata\3CX\Data\Http\Templates\provider\hoiio.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\inphonex.png c:\programdata\3CX\Data\Http\Templates\provider\inphonex.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\ippi.png c:\programdata\3CX\Data\Http\Templates\provider\ippi.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\masquevoz.png c:\programdata\3CX\Data\Http\Templates\provider\masquevoz.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\nettel.png c:\programdata\3CX\Data\Http\Templates\provider\nettel.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\nexvortex.png c:\programdata\3CX\Data\Http\Templates\provider\nexvortex.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\nucall.png c:\programdata\3CX\Data\Http\Templates\provider\nucall.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\openip.png c:\programdata\3CX\Data\Http\Templates\provider\openip.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\orbtalk.png c:\programdata\3CX\Data\Http\Templates\provider\orbtalk.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\peoplefone.png c:\programdata\3CX\Data\Http\Templates\provider\peoplefone.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\peoplefonech.png c:\programdata\3CX\Data\Http\Templates\provider\peoplefonech.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\phonzo.png c:\programdata\3CX\Data\Http\Templates\provider\phonzo.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\prionet.png c:\programdata\3CX\Data\Http\Templates\provider\prionet.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\reventix.png c:\programdata\3CX\Data\Http\Templates\provider\reventix.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\sipcall.png c:\programdata\3CX\Data\Http\Templates\provider\sipcall.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\sipnet.png c:\programdata\3CX\Data\Http\Templates\provider\sipnet.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\skype.png c:\programdata\3CX\Data\Http\Templates\provider\skypeforsip.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\spitfire.png c:\programdata\3CX\Data\Http\Templates\provider\spitfire.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\telenet.png c:\programdata\3CX\Data\Http\Templates\provider\telenet.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\teletek.png c:\programdata\3CX\Data\Http\Templates\provider\teletek.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\ukrtelecom.png c:\programdata\3CX\Data\Http\Templates\provider\ukrtelecom.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\vitelity.png c:\programdata\3CX\Data\Http\Templates\provider\vitelity.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\voiceworld.png c:\programdata\3CX\Data\Http\Templates\provider\voiceworld.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\voip-unlimited.png c:\programdata\3CX\Data\Http\Templates\provider\voip-unlimited.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\voiptalk.png c:\programdata\3CX\Data\Http\Templates\provider\voiptalk.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\voipvoice.png c:\programdata\3CX\Data\Http\Templates\provider\voipvoice.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\vozelia.png c:\programdata\3CX\Data\Http\Templates\provider\vozelia.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\voztelecom.png c:\programdata\3CX\Data\Http\Templates\provider\voztelecom.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\weepee.png c:\programdata\3CX\Data\Http\Templates\provider\weepee.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\widevoip.png c:\programdata\3CX\Data\Http\Templates\provider\widevoip.pv.xml c:\programdata\3CX\Data\Http\Templates\provider\xeloq.png c:\programdata\3CX\Data\Http\Templates\provider\xeloq.pv.xml c:\programdata\3CX\Data\Http\Templates\VMNTemplate.xml c:\programdata\3CX\Data\Http\webroot\clientaccesspolicy.xml c:\programdata\3CX\Data\Http\webroot\favicon.ico c:\programdata\3CX\Data\Http\webroot\web.config c:\programdata\3CX\Data\Ivr\Prompts\Empty.wav c:\programdata\3CX\Data\Ivr\Prompts\OfficeClosed.wav c:\programdata\3CX\Data\Ivr\Prompts\onhold.wav c:\programdata\3CX\Data\Ivr\Prompts\ResponseOrdering.xml c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\access_denied.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\AccessAllowedBySystem.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\AccountBlocked.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\and.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\avaiable_status_set.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\away_off.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\away_on.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\away_status_set.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\beep.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\begin_of_messages.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\call_transfer_failed.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\callback_action_menu.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\callback_request_number.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\calldisabled_fwrule.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\calldisabled_inrule.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\cancelled.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\confirm.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\ConfPrompt.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\creating.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\custom1_status_set.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\custom2_status_set.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\deleted.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\destination_isbusy.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\destnot_available.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\destnot_found.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\end_of_messages.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\enter_callback_number.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\error.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\ext_num.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\extension_not_enabled.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\extension_not_found.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\feature_notavailable.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\file_not_found.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\forbidden_byadmin.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\fwexternalnumber_nooutbound.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\greeting_message.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\group_id.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\hashorstar.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\internal_servererror.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\invalid_pin.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\InvalidInput.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\InvalidNumber.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\is.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\ivr_num.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\joining.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\leftPrompt.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\license_limit.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\logged_inqueue.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\logged_outqueue.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\message.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\message_already_deleted.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\message_deleted.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\message_from.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\messages.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\msg_received.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\msg_save_failed.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\msg_saved.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\MsgForwarded.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\MsgRecMnu.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\MsgRecMnu2.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\new.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\new_message.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\new_messages.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\new_pin_code.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\newMember.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\no_action_performed.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\no_answer.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\no_message_selected.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\no_msgs_todelete.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\no_saved_msgs.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\noavailable_queueagents.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\NoMsgToForward.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\notall_msgs_deleted.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\number.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\number_is_busy.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\0.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\0^b.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\1.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\1^b.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\10.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\10o.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\11.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\11o.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\12.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\12o.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\13.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\13o.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\14.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\14o.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\15.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\15o.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\16.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\16o.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\17.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\17o.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\18.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\18o.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\19.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\19o.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\1o.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\2.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\2^b.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\20.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\20+.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\20o.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\2o.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\3.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\3^b.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\30.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\30+.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\30o.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\3o.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\4.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\4^b.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\40.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\40+.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\4o.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\5.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\5^b.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\50.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\50+.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\5o.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\6.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\6^b.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\60.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\60+.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\6o.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\7.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\7^b.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\70.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\70+.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\7o.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\8.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\8^b.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\80.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\80+.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\8o.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\9.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\9^b.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\90.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\90+.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\9o.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\and.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\hundred.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\million.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\star.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\star^b.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\numbers\thousand.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\officehr_override_in.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\officehr_override_off.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\officehr_override_out.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\old.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\operation_failed.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\OPTMNU.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\outofoffice_status_set.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\PBACKMNU.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\pin.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\please_enter.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\please_hold.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\PleaseEnterPIN.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\PleaseHold_Calling.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\PlsEnterExtFwdVM.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\PLSTRYLATER.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\plswait_locate.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\press.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\press_nine_for_options.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\press_star_to_play.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\profile_menu.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\queue_id.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\queue_tobe_connected.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\record_your.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\record_your_message.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\redir_vmail.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\ResponseOrdering.xml c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\saved.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\SaveMsgCnfrm.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\SelfIDMsg.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\SetInfo.xml c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\SpeakYourName.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\stack_overflow.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\standard_message_restored.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\terminated_noanswer.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\thankyou_callback_confirmed.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\thankyou_goodbye.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\then_press_pound.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\time\am.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\time\april.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\time\august.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\time\december.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\time\february.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\time\january.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\time\july.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\time\june.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\time\march.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\time\may.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\time\midnight.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\time\minute.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\time\minutes.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\time\november.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\time\oclock.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\time\october.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\time\ou.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\time\past.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\time\pm.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\time\september.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\to_delete_msg.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\to_record_new.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\to_save.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\ToCallTo.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\today.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\todelete_read_messages.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\toexit_presspnd.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\tosend_tovmail.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\totakecall.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\uhavecall.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\unknown_prompt.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\user_unavail.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\UserName.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\voicemail_disabled.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\yesterday.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\you_have.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\you_have_no.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\your.wav c:\programdata\3CX\Data\Ivr\Prompts\Sets\8210986B-9412-497f-AD77-3A554F4A9BDB\your_at_position.wav c:\programdata\3CX\Data\Ivr\Prompts\USProgresstone.wav c:\programdata\3CX\Data\Logs\3CXAudioFeeder.log c:\programdata\3CX\Data\Logs\3CXConfService.log c:\programdata\3CX\Data\Logs\3CXConfService.trace.log c:\programdata\3CX\Data\Logs\3CXFAXServer.log c:\programdata\3CX\Data\Logs\3CXIvrServer.log c:\programdata\3CX\Data\Logs\3CXMediaServer.log c:\programdata\3CX\Data\Logs\3CXMediaServer.trace.log c:\programdata\3CX\Data\Logs\3CXMyPhoneWeb.log c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130319-205542.blrec |
08.08.2013, 22:18 | #6 |
| Laufend Werbeienblendungen und aufforderungen sicherheitsscans zu machen c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130320-163423.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130321-082439.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130321-144559.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130321-150603.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130321-182011.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130322-074040.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130322-123400.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130323-082102.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130323-153507.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130323-231917.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130324-101826.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130324-190214.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130325-102059.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130325-211521.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130326-164717.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130327-062003.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130327-105524.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130327-142134.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130327-192601.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130328-075954.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130328-141813.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130329-071310.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130329-073212.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130329-194732.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130330-094315.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130330-220323.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130331-102003.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130331-175325.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130401-103902.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130401-172805.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130401-203708.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130402-131413.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130402-203450.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130403-103133.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130403-140816.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130403-184417.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130404-120234.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130404-181251.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130404-213021.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130405-112718.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130405-155028.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130406-220453.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130406-231821.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130407-104720.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130407-154756.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130407-182335.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130408-004337.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130408-085738.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130408-180455.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130408-182905.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130408-214401.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130409-095814.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130409-135111.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130409-203621.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130410-173154.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130411-001204.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130411-085020.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130411-202050.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130412-085902.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130412-124432.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130413-203553.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130413-213409.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130413-231611.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130414-115600.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130414-150028.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130414-220818.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130415-155128.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130415-181626.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130416-064426.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130416-131016.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130416-164053.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130417-064002.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130417-230855.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130419-110044.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130419-171519.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130419-221714.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130419-222233.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130420-113958.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130420-140058.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130420-141136.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130420-214925.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130421-094408.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130421-231327.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130422-074621.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130422-230935.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130423-071747.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130423-083946.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130423-094520.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130423-095455.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130424-123041.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130424-125036.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130425-094327.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130425-210834.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130426-080123.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130426-120108.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130426-172053.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130426-172401.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130426-172758.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130426-212722.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130427-070408.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130427-090106.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130427-184051.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130428-093008.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130428-150917.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130428-221924.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130429-070558.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130429-235917.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130430-092723.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130430-220520.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130501-090915.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130501-112736.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130501-143752.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130501-171228.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130501-203251.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130502-184318.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130502-230123.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130503-101049.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130504-084140.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130504-092733.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130504-201629.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130505-080633.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130505-154419.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130505-213951.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130506-064231.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130506-101456.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130506-131956.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130506-140709.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130506-143558.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130506-214221.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130507-151409.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130508-032732.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130508-061222.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130508-074752.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130508-165840.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130508-181156.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130509-001720.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130509-095212.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130509-134017.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130509-214936.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130510-071953.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130510-154519.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130511-074309.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130511-175211.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130512-011550.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130512-083823.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130513-064629.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130513-182712.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130513-184728.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130514-061132.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130514-180722.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130515-081128.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130515-122915.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130515-174519.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130516-075608.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130516-205820.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130517-060857.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130517-134608.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130518-003303.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130518-084803.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130518-085901.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130518-090822.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130519-183317.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130520-085813.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130520-153049.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130520-174455.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130520-181739.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130520-200719.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130520-205800.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130520-224902.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130521-061054.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130521-112421.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130521-125319.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130521-152953.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130521-155150.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130521-180041.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130522-121723.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130522-141853.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130522-193606.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130522-235154.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130523-061119.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130523-230956.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130524-062308.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130524-173318.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130524-174419.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130524-180546.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130525-091747.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130525-233043.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130526-084607.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130526-172659.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130527-063759.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130527-090744.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130527-171041.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130527-181027.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130527-220004.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130528-220008.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130529-121925.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130529-161112.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130530-130050.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130530-192857.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130530-222725.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130531-084040.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130531-143335.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130531-210558.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130601-120048.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130601-181411.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130602-133730.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130602-185033.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130602-213134.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130603-061212.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130603-070038.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130603-132838.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130603-163945.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130605-065818.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130605-205551.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130606-075754.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130607-065439.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130607-224519.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130608-142203.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130608-191433.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130609-103001.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130610-112851.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130611-060835.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130611-100855.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130611-140723.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130611-211853.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130612-164349.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130613-153839.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130613-182210.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130614-072529.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130614-235212.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130615-000506.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130615-230358.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130616-184216.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130617-062911.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130617-164039.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130617-223403.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130617-235042.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130618-055540.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130618-073807.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130619-063417.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130619-084325.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130619-102009.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130619-161729.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130620-065706.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130620-135606.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130620-142213.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130620-164756.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130621-070027.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130621-095924.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130621-195756.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130622-222501.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130623-190345.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130623-191113.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130624-090234.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130624-195412.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130625-071902.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130625-104435.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130626-121223.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130627-073253.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130627-192520.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130627-200650.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130628-090011.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130628-094614.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130628-133314.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130628-153154.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130629-140514.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130629-143946.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130629-223907.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130629-231246.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130630-105718.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130630-204820.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130701-090932.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130701-234749.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130702-085219.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130703-130325.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130704-081007.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130705-090030.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130705-092440.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130705-105348.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130705-225943.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130706-080823.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130706-150810.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130706-175355.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130706-223053.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130707-223400.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130710-082914.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130710-130706.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130710-151940.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130711-095050.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130711-124802.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130711-150949.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130711-221517.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130712-063916.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130712-202221.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130712-225731.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130713-082215.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130713-214708.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130714-080630.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130715-072616.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130715-213618.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130716-071733.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130717-004315.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130717-014620.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130717-073856.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130718-070833.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130718-075334.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130718-090419.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130719-045147.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130719-100636.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130719-205538.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130720-103556.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130721-104920.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130721-165658.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130721-224230.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130722-171939.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130723-115742.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130723-132724.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130724-095735.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130724-150925.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130724-161832.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130724-222145.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130725-121823.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130726-161115.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130728-120022.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130728-134416.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130729-093204.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130729-192922.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130730-094039.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130730-104843.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130730-153645.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130730-170440.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130731-151808.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130731-185717.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130731-211917.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130731-230530.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130801-153711.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130801-185302.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130802-005802.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130802-113803.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130802-150749.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130803-180235.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130803-181112.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130803-182308.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130804-095117.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130805-000338.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130805-222231.blrec c:\programdata\3CX\Data\Logs\3CXPhoneSystem-20130805-232939.blrec c:\programdata\3CX\Data\Logs\3CXTunnel.log c:\programdata\3CX\Data\Logs\3CXwizardLog.log c:\programdata\3CX\Data\Logs\Backup\20130320\3CXDialer.163429.log c:\programdata\3CX\Data\Logs\Backup\20130320\3CXQueueManager.163428.log c:\programdata\3CX\Data\Logs\Backup\20130321\3CXDialer.144603.log c:\programdata\3CX\Data\Logs\Backup\20130321\3CXDialer.150607.log c:\programdata\3CX\Data\Logs\Backup\20130321\3CXDialer.182015.log c:\programdata\3CX\Data\Logs\Backup\20130321\3CXQueueManager.144603.log c:\programdata\3CX\Data\Logs\Backup\20130321\3CXQueueManager.150607.log c:\programdata\3CX\Data\Logs\Backup\20130321\3CXQueueManager.182015.log c:\programdata\3CX\Data\Logs\Backup\20130322\3CXDialer.074046.log c:\programdata\3CX\Data\Logs\Backup\20130322\3CXDialer.123404.log c:\programdata\3CX\Data\Logs\Backup\20130322\3CXQueueManager.074046.log c:\programdata\3CX\Data\Logs\Backup\20130322\3CXQueueManager.123404.log c:\programdata\3CX\Data\Logs\Backup\20130323\3CXDialer.082107.log c:\programdata\3CX\Data\Logs\Backup\20130323\3CXDialer.153511.log c:\programdata\3CX\Data\Logs\Backup\20130323\3CXDialer.231921.log c:\programdata\3CX\Data\Logs\Backup\20130323\3CXQueueManager.082107.log c:\programdata\3CX\Data\Logs\Backup\20130323\3CXQueueManager.153511.log c:\programdata\3CX\Data\Logs\Backup\20130323\3CXQueueManager.231921.log c:\programdata\3CX\Data\Logs\Backup\20130324\3CXDialer.101830.log c:\programdata\3CX\Data\Logs\Backup\20130324\3CXDialer.190218.log c:\programdata\3CX\Data\Logs\Backup\20130324\3CXQueueManager.101830.log c:\programdata\3CX\Data\Logs\Backup\20130324\3CXQueueManager.190218.log c:\programdata\3CX\Data\Logs\Backup\20130325\3CXDialer.102108.log c:\programdata\3CX\Data\Logs\Backup\20130325\3CXDialer.211532.log c:\programdata\3CX\Data\Logs\Backup\20130325\3CXQueueManager.102107.log c:\programdata\3CX\Data\Logs\Backup\20130325\3CXQueueManager.211528.log c:\programdata\3CX\Data\Logs\Backup\20130326\3CXDialer.164722.log c:\programdata\3CX\Data\Logs\Backup\20130326\3CXQueueManager.164722.log c:\programdata\3CX\Data\Logs\Backup\20130327\3CXDialer.062008.log c:\programdata\3CX\Data\Logs\Backup\20130327\3CXDialer.105533.log c:\programdata\3CX\Data\Logs\Backup\20130327\3CXDialer.142143.log c:\programdata\3CX\Data\Logs\Backup\20130327\3CXDialer.192606.log c:\programdata\3CX\Data\Logs\Backup\20130327\3CXQueueManager.062008.log c:\programdata\3CX\Data\Logs\Backup\20130327\3CXQueueManager.105532.log c:\programdata\3CX\Data\Logs\Backup\20130327\3CXQueueManager.142143.log c:\programdata\3CX\Data\Logs\Backup\20130327\3CXQueueManager.192606.log c:\programdata\3CX\Data\Logs\Backup\20130328\3CXDialer.080003.log c:\programdata\3CX\Data\Logs\Backup\20130328\3CXDialer.141823.log c:\programdata\3CX\Data\Logs\Backup\20130328\3CXQueueManager.080003.log c:\programdata\3CX\Data\Logs\Backup\20130328\3CXQueueManager.141822.log c:\programdata\3CX\Data\Logs\Backup\20130329\3CXDialer.073220.log c:\programdata\3CX\Data\Logs\Backup\20130329\3CXQueueManager.073220.log c:\programdata\3CX\Data\Logs\Backup\20130331\3CXDialer.102011.log c:\programdata\3CX\Data\Logs\Backup\20130331\3CXQueueManager.102011.log c:\programdata\3CX\Data\Logs\Backup\20130401\3CXDialer.103907.log c:\programdata\3CX\Data\Logs\Backup\20130401\3CXQueueManager.103907.log c:\programdata\3CX\Data\Logs\Backup\20130402\3CXDialer.131420.log c:\programdata\3CX\Data\Logs\Backup\20130402\3CXQueueManager.131420.log c:\programdata\3CX\Data\Logs\Backup\20130407\3CXDialer.104726.log c:\programdata\3CX\Data\Logs\Backup\20130407\3CXDialer.182341.log c:\programdata\3CX\Data\Logs\Backup\20130407\3CXQueueManager.104726.log c:\programdata\3CX\Data\Logs\Backup\20130407\3CXQueueManager.182341.log c:\programdata\3CX\Data\Logs\Backup\20130408\3CXDialer.004344.log c:\programdata\3CX\Data\Logs\Backup\20130408\3CXQueueManager.004344.log c:\programdata\3CX\Data\Logs\Backup\20130409\3CXDialer.203626.log c:\programdata\3CX\Data\Logs\Backup\20130409\3CXQueueManager.203625.log c:\programdata\3CX\Data\Logs\Backup\20130410\3CXDialer.173202.log c:\programdata\3CX\Data\Logs\Backup\20130410\3CXQueueManager.173202.log c:\programdata\3CX\Data\Logs\Backup\20130414\3CXDialer.220825.log c:\programdata\3CX\Data\Logs\Backup\20130414\3CXQueueManager.220825.log c:\programdata\3CX\Data\Logs\Backup\20130415\3CXDialer.155134.log c:\programdata\3CX\Data\Logs\Backup\20130415\3CXDialer.181632.log c:\programdata\3CX\Data\Logs\Backup\20130415\3CXQueueManager.155134.log c:\programdata\3CX\Data\Logs\Backup\20130415\3CXQueueManager.181632.log c:\programdata\3CX\Data\Logs\Backup\20130416\3CXDialer.064433.log c:\programdata\3CX\Data\Logs\Backup\20130416\3CXDialer.131022.log c:\programdata\3CX\Data\Logs\Backup\20130416\3CXDialer.164058.log c:\programdata\3CX\Data\Logs\Backup\20130416\3CXQueueManager.064433.log c:\programdata\3CX\Data\Logs\Backup\20130416\3CXQueueManager.131022.log c:\programdata\3CX\Data\Logs\Backup\20130416\3CXQueueManager.164057.log c:\programdata\3CX\Data\Logs\Backup\20130417\3CXDialer.064011.log c:\programdata\3CX\Data\Logs\Backup\20130417\3CXDialer.230901.log c:\programdata\3CX\Data\Logs\Backup\20130417\3CXQueueManager.064011.log c:\programdata\3CX\Data\Logs\Backup\20130417\3CXQueueManager.230900.log c:\programdata\3CX\Data\Logs\Backup\20130419\3CXDialer.110051.log c:\programdata\3CX\Data\Logs\Backup\20130419\3CXDialer.171525.log c:\programdata\3CX\Data\Logs\Backup\20130419\3CXDialer.221722.log c:\programdata\3CX\Data\Logs\Backup\20130419\3CXDialer.222240.log c:\programdata\3CX\Data\Logs\Backup\20130419\3CXQueueManager.110051.log c:\programdata\3CX\Data\Logs\Backup\20130419\3CXQueueManager.171525.log c:\programdata\3CX\Data\Logs\Backup\20130419\3CXQueueManager.221721.log c:\programdata\3CX\Data\Logs\Backup\20130419\3CXQueueManager.222240.log c:\programdata\3CX\Data\Logs\Backup\20130420\3CXDialer.141143.log c:\programdata\3CX\Data\Logs\Backup\20130420\3CXDialer.214933.log c:\programdata\3CX\Data\Logs\Backup\20130420\3CXQueueManager.141142.log c:\programdata\3CX\Data\Logs\Backup\20130420\3CXQueueManager.214933.log c:\programdata\3CX\Data\Logs\Backup\20130421\3CXDialer.094415.log c:\programdata\3CX\Data\Logs\Backup\20130421\3CXDialer.231333.log c:\programdata\3CX\Data\Logs\Backup\20130421\3CXQueueManager.094415.log c:\programdata\3CX\Data\Logs\Backup\20130421\3CXQueueManager.231333.log c:\programdata\3CX\Data\Logs\Backup\20130422\3CXDialer.074627.log c:\programdata\3CX\Data\Logs\Backup\20130422\3CXDialer.230941.log c:\programdata\3CX\Data\Logs\Backup\20130422\3CXQueueManager.074627.log c:\programdata\3CX\Data\Logs\Backup\20130422\3CXQueueManager.230941.log c:\programdata\3CX\Data\Logs\Backup\20130423\3CXDialer.071753.log c:\programdata\3CX\Data\Logs\Backup\20130423\3CXDialer.083951.log c:\programdata\3CX\Data\Logs\Backup\20130423\3CXDialer.094526.log c:\programdata\3CX\Data\Logs\Backup\20130423\3CXDialer.095502.log c:\programdata\3CX\Data\Logs\Backup\20130423\3CXQueueManager.071753.log c:\programdata\3CX\Data\Logs\Backup\20130423\3CXQueueManager.083951.log c:\programdata\3CX\Data\Logs\Backup\20130423\3CXQueueManager.094526.log c:\programdata\3CX\Data\Logs\Backup\20130423\3CXQueueManager.095502.log c:\programdata\3CX\Data\Logs\Backup\20130425\3CXDialer.210843.log c:\programdata\3CX\Data\Logs\Backup\20130425\3CXQueueManager.210843.log c:\programdata\3CX\Data\Logs\Backup\20130426\3CXDialer.080128.log c:\programdata\3CX\Data\Logs\Backup\20130426\3CXDialer.120115.log c:\programdata\3CX\Data\Logs\Backup\20130426\3CXDialer.172102.log c:\programdata\3CX\Data\Logs\Backup\20130426\3CXDialer.172407.log c:\programdata\3CX\Data\Logs\Backup\20130426\3CXDialer.172804.log c:\programdata\3CX\Data\Logs\Backup\20130426\3CXDialer.212728.log c:\programdata\3CX\Data\Logs\Backup\20130426\3CXQueueManager.080128.log c:\programdata\3CX\Data\Logs\Backup\20130426\3CXQueueManager.120114.log c:\programdata\3CX\Data\Logs\Backup\20130426\3CXQueueManager.172101.log c:\programdata\3CX\Data\Logs\Backup\20130426\3CXQueueManager.172407.log c:\programdata\3CX\Data\Logs\Backup\20130426\3CXQueueManager.172804.log c:\programdata\3CX\Data\Logs\Backup\20130426\3CXQueueManager.212728.log c:\programdata\3CX\Data\Logs\Backup\20130426\CallHistoryService.080226..log c:\programdata\3CX\Data\Logs\Backup\20130427\3CXDialer.070416.log c:\programdata\3CX\Data\Logs\Backup\20130427\3CXDialer.090113.log c:\programdata\3CX\Data\Logs\Backup\20130427\3CXDialer.184058.log c:\programdata\3CX\Data\Logs\Backup\20130427\3CXQueueManager.070416.log c:\programdata\3CX\Data\Logs\Backup\20130427\3CXQueueManager.090113.log c:\programdata\3CX\Data\Logs\Backup\20130427\3CXQueueManager.184057.log c:\programdata\3CX\Data\Logs\Backup\20130428\3CXDialer.093015.log c:\programdata\3CX\Data\Logs\Backup\20130428\3CXDialer.150925.log c:\programdata\3CX\Data\Logs\Backup\20130428\3CXQueueManager.093015.log c:\programdata\3CX\Data\Logs\Backup\20130428\3CXQueueManager.150925.log c:\programdata\3CX\Data\Logs\Backup\20130501\3CXDialer.090921.log c:\programdata\3CX\Data\Logs\Backup\20130501\3CXQueueManager.090921.log c:\programdata\3CX\Data\Logs\Backup\20130506\3CXDialer.064238.log c:\programdata\3CX\Data\Logs\Backup\20130506\3CXDialer.101504.log c:\programdata\3CX\Data\Logs\Backup\20130506\3CXDialer.132003.log c:\programdata\3CX\Data\Logs\Backup\20130506\3CXDialer.140714.log c:\programdata\3CX\Data\Logs\Backup\20130506\3CXDialer.143603.log c:\programdata\3CX\Data\Logs\Backup\20130506\3CXDialer.214228.log c:\programdata\3CX\Data\Logs\Backup\20130506\3CXQueueManager.064237.log c:\programdata\3CX\Data\Logs\Backup\20130506\3CXQueueManager.101504.log c:\programdata\3CX\Data\Logs\Backup\20130506\3CXQueueManager.132003.log c:\programdata\3CX\Data\Logs\Backup\20130506\3CXQueueManager.140714.log c:\programdata\3CX\Data\Logs\Backup\20130506\3CXQueueManager.143602.log c:\programdata\3CX\Data\Logs\Backup\20130506\3CXQueueManager.214228.log c:\programdata\3CX\Data\Logs\Backup\20130507\3CXDialer.151414.log c:\programdata\3CX\Data\Logs\Backup\20130507\3CXQueueManager.151414.log c:\programdata\3CX\Data\Logs\Backup\20130508\3CXDialer.032739.log c:\programdata\3CX\Data\Logs\Backup\20130508\3CXDialer.061228.log c:\programdata\3CX\Data\Logs\Backup\20130508\3CXDialer.181203.log c:\programdata\3CX\Data\Logs\Backup\20130508\3CXQueueManager.032738.log c:\programdata\3CX\Data\Logs\Backup\20130508\3CXQueueManager.061228.log c:\programdata\3CX\Data\Logs\Backup\20130508\3CXQueueManager.181203.log c:\programdata\3CX\Data\Logs\Backup\20130509\3CXDialer.001728.log c:\programdata\3CX\Data\Logs\Backup\20130509\3CXDialer.095220.log c:\programdata\3CX\Data\Logs\Backup\20130509\3CXDialer.134025.log c:\programdata\3CX\Data\Logs\Backup\20130509\3CXDialer.214942.log c:\programdata\3CX\Data\Logs\Backup\20130509\3CXQueueManager.001728.log c:\programdata\3CX\Data\Logs\Backup\20130509\3CXQueueManager.095219.log c:\programdata\3CX\Data\Logs\Backup\20130509\3CXQueueManager.134025.log c:\programdata\3CX\Data\Logs\Backup\20130509\3CXQueueManager.214941.log c:\programdata\3CX\Data\Logs\Backup\20130510\3CXDialer.072001.log c:\programdata\3CX\Data\Logs\Backup\20130510\3CXDialer.154524.log c:\programdata\3CX\Data\Logs\Backup\20130510\3CXQueueManager.072001.log c:\programdata\3CX\Data\Logs\Backup\20130510\3CXQueueManager.154524.log c:\programdata\3CX\Data\Logs\Backup\20130511\3CXDialer.074317.log c:\programdata\3CX\Data\Logs\Backup\20130511\3CXDialer.175218.log c:\programdata\3CX\Data\Logs\Backup\20130511\3CXQueueManager.074316.log c:\programdata\3CX\Data\Logs\Backup\20130511\3CXQueueManager.175218.log c:\programdata\3CX\Data\Logs\Backup\20130512\3CXDialer.011557.log c:\programdata\3CX\Data\Logs\Backup\20130512\3CXDialer.083830.log c:\programdata\3CX\Data\Logs\Backup\20130512\3CXQueueManager.011557.log c:\programdata\3CX\Data\Logs\Backup\20130512\3CXQueueManager.083830.log c:\programdata\3CX\Data\Logs\Backup\20130513\3CXDialer.064636.log c:\programdata\3CX\Data\Logs\Backup\20130513\3CXDialer.182719.log c:\programdata\3CX\Data\Logs\Backup\20130513\3CXDialer.184736.log c:\programdata\3CX\Data\Logs\Backup\20130513\3CXQueueManager.064636.log c:\programdata\3CX\Data\Logs\Backup\20130513\3CXQueueManager.182719.log c:\programdata\3CX\Data\Logs\Backup\20130513\3CXQueueManager.184736.log c:\programdata\3CX\Data\Logs\Backup\20130514\3CXDialer.061138.log c:\programdata\3CX\Data\Logs\Backup\20130514\3CXDialer.180731.log c:\programdata\3CX\Data\Logs\Backup\20130514\3CXQueueManager.061138.log c:\programdata\3CX\Data\Logs\Backup\20130514\3CXQueueManager.180731.log c:\programdata\3CX\Data\Logs\Backup\20130515\3CXDialer.081133.log c:\programdata\3CX\Data\Logs\Backup\20130515\3CXDialer.122922.log c:\programdata\3CX\Data\Logs\Backup\20130515\3CXDialer.174524.log c:\programdata\3CX\Data\Logs\Backup\20130515\3CXQueueManager.081133.log c:\programdata\3CX\Data\Logs\Backup\20130515\3CXQueueManager.122922.log c:\programdata\3CX\Data\Logs\Backup\20130515\3CXQueueManager.174524.log c:\programdata\3CX\Data\Logs\Backup\20130516\3CXDialer.075616.log c:\programdata\3CX\Data\Logs\Backup\20130516\3CXDialer.205827.log c:\programdata\3CX\Data\Logs\Backup\20130516\3CXQueueManager.075615.log c:\programdata\3CX\Data\Logs\Backup\20130516\3CXQueueManager.205827.log c:\programdata\3CX\Data\Logs\Backup\20130516\CallHistoryService.213525..log c:\programdata\3CX\Data\Logs\Backup\20130517\3CXDialer.060904.log c:\programdata\3CX\Data\Logs\Backup\20130517\3CXDialer.134615.log c:\programdata\3CX\Data\Logs\Backup\20130517\3CXQueueManager.060904.log c:\programdata\3CX\Data\Logs\Backup\20130517\3CXQueueManager.134614.log c:\programdata\3CX\Data\Logs\Backup\20130518\3CXDialer.003311.log c:\programdata\3CX\Data\Logs\Backup\20130518\3CXDialer.084811.log c:\programdata\3CX\Data\Logs\Backup\20130518\3CXDialer.085907.log c:\programdata\3CX\Data\Logs\Backup\20130518\3CXDialer.090830.log c:\programdata\3CX\Data\Logs\Backup\20130518\3CXQueueManager.003311.log c:\programdata\3CX\Data\Logs\Backup\20130518\3CXQueueManager.084810.log c:\programdata\3CX\Data\Logs\Backup\20130518\3CXQueueManager.085906.log c:\programdata\3CX\Data\Logs\Backup\20130518\3CXQueueManager.090829.log c:\programdata\3CX\Data\Logs\Backup\20130520\3CXDialer.153057.log c:\programdata\3CX\Data\Logs\Backup\20130520\3CXDialer.174504.log c:\programdata\3CX\Data\Logs\Backup\20130520\3CXDialer.181746.log c:\programdata\3CX\Data\Logs\Backup\20130520\3CXDialer.200724.log c:\programdata\3CX\Data\Logs\Backup\20130520\3CXDialer.205805.log c:\programdata\3CX\Data\Logs\Backup\20130520\3CXDialer.224909.log c:\programdata\3CX\Data\Logs\Backup\20130520\3CXQueueManager.153057.log c:\programdata\3CX\Data\Logs\Backup\20130520\3CXQueueManager.174503.log c:\programdata\3CX\Data\Logs\Backup\20130520\3CXQueueManager.181746.log c:\programdata\3CX\Data\Logs\Backup\20130520\3CXQueueManager.200723.log c:\programdata\3CX\Data\Logs\Backup\20130520\3CXQueueManager.205805.log c:\programdata\3CX\Data\Logs\Backup\20130520\3CXQueueManager.224909.log c:\programdata\3CX\Data\Logs\Backup\20130521\3CXDialer.061103.log c:\programdata\3CX\Data\Logs\Backup\20130521\3CXDialer.112430.log c:\programdata\3CX\Data\Logs\Backup\20130521\3CXDialer.125324.log c:\programdata\3CX\Data\Logs\Backup\20130521\3CXDialer.153001.log c:\programdata\3CX\Data\Logs\Backup\20130521\3CXDialer.155156.log c:\programdata\3CX\Data\Logs\Backup\20130521\3CXQueueManager.061102.log c:\programdata\3CX\Data\Logs\Backup\20130521\3CXQueueManager.112429.log c:\programdata\3CX\Data\Logs\Backup\20130521\3CXQueueManager.125323.log c:\programdata\3CX\Data\Logs\Backup\20130521\3CXQueueManager.153000.log c:\programdata\3CX\Data\Logs\Backup\20130521\3CXQueueManager.155155.log c:\programdata\3CX\Data\Logs\Backup\20130522\3CXDialer.121728.log c:\programdata\3CX\Data\Logs\Backup\20130522\3CXDialer.141858.log c:\programdata\3CX\Data\Logs\Backup\20130522\3CXDialer.193611.log c:\programdata\3CX\Data\Logs\Backup\20130522\3CXDialer.235202.log c:\programdata\3CX\Data\Logs\Backup\20130522\3CXQueueManager.121728.log c:\programdata\3CX\Data\Logs\Backup\20130522\3CXQueueManager.141858.log c:\programdata\3CX\Data\Logs\Backup\20130522\3CXQueueManager.193611.log c:\programdata\3CX\Data\Logs\Backup\20130522\3CXQueueManager.235201.log c:\programdata\3CX\Data\Logs\Backup\20130523\3CXDialer.061126.log c:\programdata\3CX\Data\Logs\Backup\20130523\3CXDialer.231003.log c:\programdata\3CX\Data\Logs\Backup\20130523\3CXQueueManager.061126.log c:\programdata\3CX\Data\Logs\Backup\20130523\3CXQueueManager.231002.log c:\programdata\3CX\Data\Logs\Backup\20130525\3CXDialer.091754.log c:\programdata\3CX\Data\Logs\Backup\20130525\3CXDialer.233051.log c:\programdata\3CX\Data\Logs\Backup\20130525\3CXQueueManager.091754.log c:\programdata\3CX\Data\Logs\Backup\20130525\3CXQueueManager.233051.log c:\programdata\3CX\Data\Logs\Backup\20130526\3CXDialer.084614.log c:\programdata\3CX\Data\Logs\Backup\20130526\3CXDialer.172706.log c:\programdata\3CX\Data\Logs\Backup\20130526\3CXQueueManager.084613.log c:\programdata\3CX\Data\Logs\Backup\20130526\3CXQueueManager.172706.log c:\programdata\3CX\Data\Logs\Backup\20130527\3CXDialer.063806.log c:\programdata\3CX\Data\Logs\Backup\20130527\3CXDialer.090752.log c:\programdata\3CX\Data\Logs\Backup\20130527\3CXDialer.171049.log c:\programdata\3CX\Data\Logs\Backup\20130527\3CXDialer.181034.log c:\programdata\3CX\Data\Logs\Backup\20130527\3CXDialer.220007.log c:\programdata\3CX\Data\Logs\Backup\20130527\3CXQueueManager.063806.log c:\programdata\3CX\Data\Logs\Backup\20130527\3CXQueueManager.090752.log c:\programdata\3CX\Data\Logs\Backup\20130527\3CXQueueManager.171048.log c:\programdata\3CX\Data\Logs\Backup\20130527\3CXQueueManager.181034.log c:\programdata\3CX\Data\Logs\Backup\20130527\3CXQueueManager.220007.log c:\programdata\3CX\Data\Logs\Backup\20130528\3CXDialer.220015.log c:\programdata\3CX\Data\Logs\Backup\20130528\3CXQueueManager.220014.log c:\programdata\3CX\Data\Logs\Backup\20130529\3CXDialer.121932.log c:\programdata\3CX\Data\Logs\Backup\20130529\3CXDialer.161120.log c:\programdata\3CX\Data\Logs\Backup\20130529\3CXQueueManager.121932.log c:\programdata\3CX\Data\Logs\Backup\20130529\3CXQueueManager.161120.log c:\programdata\3CX\Data\Logs\Backup\20130530\3CXDialer.192901.log c:\programdata\3CX\Data\Logs\Backup\20130530\3CXDialer.222732.log c:\programdata\3CX\Data\Logs\Backup\20130530\3CXQueueManager.192901.log c:\programdata\3CX\Data\Logs\Backup\20130530\3CXQueueManager.222732.log c:\programdata\3CX\Data\Logs\Backup\20130531\3CXDialer.084047.log c:\programdata\3CX\Data\Logs\Backup\20130531\3CXDialer.210604.log c:\programdata\3CX\Data\Logs\Backup\20130531\3CXQueueManager.084047.log c:\programdata\3CX\Data\Logs\Backup\20130531\3CXQueueManager.210604.log c:\programdata\3CX\Data\Logs\Backup\20130601\3CXDialer.120055.log c:\programdata\3CX\Data\Logs\Backup\20130601\3CXQueueManager.120055.log c:\programdata\3CX\Data\Logs\Backup\20130602\3CXDialer.185040.log c:\programdata\3CX\Data\Logs\Backup\20130602\3CXDialer.213142.log c:\programdata\3CX\Data\Logs\Backup\20130602\3CXQueueManager.185040.log c:\programdata\3CX\Data\Logs\Backup\20130602\3CXQueueManager.213142.log c:\programdata\3CX\Data\Logs\Backup\20130603\3CXDialer.061220.log c:\programdata\3CX\Data\Logs\Backup\20130603\3CXDialer.070045.log c:\programdata\3CX\Data\Logs\Backup\20130603\3CXDialer.132845.log c:\programdata\3CX\Data\Logs\Backup\20130603\3CXDialer.163954.log c:\programdata\3CX\Data\Logs\Backup\20130603\3CXQueueManager.061220.log c:\programdata\3CX\Data\Logs\Backup\20130603\3CXQueueManager.070045.log c:\programdata\3CX\Data\Logs\Backup\20130603\3CXQueueManager.132845.log c:\programdata\3CX\Data\Logs\Backup\20130603\3CXQueueManager.163954.log c:\programdata\3CX\Data\Logs\Backup\20130605\3CXDialer.065825.log c:\programdata\3CX\Data\Logs\Backup\20130605\3CXDialer.205558.log c:\programdata\3CX\Data\Logs\Backup\20130605\3CXQueueManager.065825.log c:\programdata\3CX\Data\Logs\Backup\20130605\3CXQueueManager.205558.log c:\programdata\3CX\Data\Logs\Backup\20130606\3CXDialer.075758.log c:\programdata\3CX\Data\Logs\Backup\20130606\3CXQueueManager.075758.log c:\programdata\3CX\Data\Logs\Backup\20130607\3CXDialer.065444.log c:\programdata\3CX\Data\Logs\Backup\20130607\3CXDialer.224526.log c:\programdata\3CX\Data\Logs\Backup\20130607\3CXQueueManager.065444.log c:\programdata\3CX\Data\Logs\Backup\20130607\3CXQueueManager.224526.log c:\programdata\3CX\Data\Logs\Backup\20130608\3CXDialer.142208.log c:\programdata\3CX\Data\Logs\Backup\20130608\3CXQueueManager.142207.log c:\programdata\3CX\Data\Logs\Backup\20130610\3CXDialer.112900.log c:\programdata\3CX\Data\Logs\Backup\20130610\3CXQueueManager.112900.log c:\programdata\3CX\Data\Logs\Backup\20130611\3CXDialer.060843.log c:\programdata\3CX\Data\Logs\Backup\20130611\3CXDialer.100904.log c:\programdata\3CX\Data\Logs\Backup\20130611\3CXDialer.140733.log c:\programdata\3CX\Data\Logs\Backup\20130611\3CXDialer.211901.log c:\programdata\3CX\Data\Logs\Backup\20130611\3CXQueueManager.060843.log c:\programdata\3CX\Data\Logs\Backup\20130611\3CXQueueManager.100904.log c:\programdata\3CX\Data\Logs\Backup\20130611\3CXQueueManager.140733.log c:\programdata\3CX\Data\Logs\Backup\20130611\3CXQueueManager.211901.log c:\programdata\3CX\Data\Logs\Backup\20130612\3CXDialer.164358.log c:\programdata\3CX\Data\Logs\Backup\20130612\3CXQueueManager.164358.log c:\programdata\3CX\Data\Logs\Backup\20130613\3CXDialer.153846.log c:\programdata\3CX\Data\Logs\Backup\20130613\3CXDialer.182216.log c:\programdata\3CX\Data\Logs\Backup\20130613\3CXQueueManager.153846.log c:\programdata\3CX\Data\Logs\Backup\20130613\3CXQueueManager.182216.log c:\programdata\3CX\Data\Logs\Backup\20130613\CallHistoryService.162543..log c:\programdata\3CX\Data\Logs\Backup\20130614\3CXDialer.072534.log c:\programdata\3CX\Data\Logs\Backup\20130614\3CXQueueManager.072534.log c:\programdata\3CX\Data\Logs\Backup\20130615\3CXDialer.000515.log c:\programdata\3CX\Data\Logs\Backup\20130615\3CXQueueManager.000514.log c:\programdata\3CX\Data\Logs\Backup\20130616\3CXDialer.184223.log c:\programdata\3CX\Data\Logs\Backup\20130616\3CXQueueManager.184223.log c:\programdata\3CX\Data\Logs\Backup\20130617\3CXDialer.062917.log c:\programdata\3CX\Data\Logs\Backup\20130617\3CXDialer.164047.log c:\programdata\3CX\Data\Logs\Backup\20130617\3CXDialer.223413.log c:\programdata\3CX\Data\Logs\Backup\20130617\3CXDialer.235051.log c:\programdata\3CX\Data\Logs\Backup\20130617\3CXQueueManager.062916.log c:\programdata\3CX\Data\Logs\Backup\20130617\3CXQueueManager.164047.log c:\programdata\3CX\Data\Logs\Backup\20130617\3CXQueueManager.223413.log c:\programdata\3CX\Data\Logs\Backup\20130617\3CXQueueManager.235051.log c:\programdata\3CX\Data\Logs\Backup\20130618\3CXDialer.055548.log c:\programdata\3CX\Data\Logs\Backup\20130618\3CXDialer.073814.log c:\programdata\3CX\Data\Logs\Backup\20130618\3CXQueueManager.055548.log c:\programdata\3CX\Data\Logs\Backup\20130618\3CXQueueManager.073813.log c:\programdata\3CX\Data\Logs\Backup\20130619\3CXDialer.063424.log c:\programdata\3CX\Data\Logs\Backup\20130619\3CXDialer.084335.log c:\programdata\3CX\Data\Logs\Backup\20130619\3CXDialer.102017.log c:\programdata\3CX\Data\Logs\Backup\20130619\3CXDialer.161738.log c:\programdata\3CX\Data\Logs\Backup\20130619\3CXQueueManager.063424.log c:\programdata\3CX\Data\Logs\Backup\20130619\3CXQueueManager.084334.log c:\programdata\3CX\Data\Logs\Backup\20130619\3CXQueueManager.102017.log c:\programdata\3CX\Data\Logs\Backup\20130619\3CXQueueManager.161737.log c:\programdata\3CX\Data\Logs\Backup\20130620\3CXDialer.065709.log c:\programdata\3CX\Data\Logs\Backup\20130620\3CXDialer.135614.log c:\programdata\3CX\Data\Logs\Backup\20130620\3CXDialer.142218.log c:\programdata\3CX\Data\Logs\Backup\20130620\3CXDialer.164803.log c:\programdata\3CX\Data\Logs\Backup\20130620\3CXQueueManager.065709.log c:\programdata\3CX\Data\Logs\Backup\20130620\3CXQueueManager.135613.log c:\programdata\3CX\Data\Logs\Backup\20130620\3CXQueueManager.142218.log c:\programdata\3CX\Data\Logs\Backup\20130620\3CXQueueManager.164802.log c:\programdata\3CX\Data\Logs\Backup\20130621\3CXDialer.070034.log c:\programdata\3CX\Data\Logs\Backup\20130621\3CXDialer.095930.log c:\programdata\3CX\Data\Logs\Backup\20130621\3CXDialer.195805.log c:\programdata\3CX\Data\Logs\Backup\20130621\3CXQueueManager.070032.log c:\programdata\3CX\Data\Logs\Backup\20130621\3CXQueueManager.095928.log c:\programdata\3CX\Data\Logs\Backup\20130621\3CXQueueManager.195804.log c:\programdata\3CX\Data\Logs\Backup\20130622\3CXDialer.222508.log c:\programdata\3CX\Data\Logs\Backup\20130622\3CXQueueManager.222508.log c:\programdata\3CX\Data\Logs\Backup\20130623\3CXDialer.190353.log c:\programdata\3CX\Data\Logs\Backup\20130623\3CXDialer.191119.log c:\programdata\3CX\Data\Logs\Backup\20130623\3CXQueueManager.190353.log c:\programdata\3CX\Data\Logs\Backup\20130623\3CXQueueManager.191118.log c:\programdata\3CX\Data\Logs\Backup\20130624\3CXDialer.090243.log c:\programdata\3CX\Data\Logs\Backup\20130624\3CXDialer.195420.log c:\programdata\3CX\Data\Logs\Backup\20130624\3CXQueueManager.090243.log c:\programdata\3CX\Data\Logs\Backup\20130624\3CXQueueManager.195420.log c:\programdata\3CX\Data\Logs\Backup\20130625\3CXDialer.071909.log c:\programdata\3CX\Data\Logs\Backup\20130625\3CXDialer.104442.log c:\programdata\3CX\Data\Logs\Backup\20130625\3CXQueueManager.071909.log c:\programdata\3CX\Data\Logs\Backup\20130625\3CXQueueManager.104442.log c:\programdata\3CX\Data\Logs\Backup\20130626\3CXDialer.121231.log c:\programdata\3CX\Data\Logs\Backup\20130626\3CXQueueManager.121231.log c:\programdata\3CX\Data\Logs\Backup\20130627\3CXDialer.073301.log c:\programdata\3CX\Data\Logs\Backup\20130627\3CXDialer.192528.log c:\programdata\3CX\Data\Logs\Backup\20130627\3CXDialer.200658.log c:\programdata\3CX\Data\Logs\Backup\20130627\3CXQueueManager.073301.log c:\programdata\3CX\Data\Logs\Backup\20130627\3CXQueueManager.192528.log c:\programdata\3CX\Data\Logs\Backup\20130627\3CXQueueManager.200658.log c:\programdata\3CX\Data\Logs\Backup\20130628\3CXDialer.094623.log c:\programdata\3CX\Data\Logs\Backup\20130628\3CXDialer.133322.log c:\programdata\3CX\Data\Logs\Backup\20130628\3CXQueueManager.094623.log c:\programdata\3CX\Data\Logs\Backup\20130628\3CXQueueManager.133322.log c:\programdata\3CX\Data\Logs\Backup\20130629\3CXDialer.140523.log c:\programdata\3CX\Data\Logs\Backup\20130629\3CXDialer.223916.log c:\programdata\3CX\Data\Logs\Backup\20130629\3CXDialer.231256.log c:\programdata\3CX\Data\Logs\Backup\20130629\3CXQueueManager.140522.log c:\programdata\3CX\Data\Logs\Backup\20130629\3CXQueueManager.223916.log c:\programdata\3CX\Data\Logs\Backup\20130629\3CXQueueManager.231256.log c:\programdata\3CX\Data\Logs\Backup\20130629\CallHistoryService.140517..log c:\programdata\3CX\Data\Logs\Backup\20130630\3CXDialer.105727.log c:\programdata\3CX\Data\Logs\Backup\20130630\3CXDialer.204831.log c:\programdata\3CX\Data\Logs\Backup\20130630\3CXQueueManager.105726.log c:\programdata\3CX\Data\Logs\Backup\20130630\3CXQueueManager.204831.log c:\programdata\3CX\Data\Logs\Backup\20130701\3CXDialer.090941.log c:\programdata\3CX\Data\Logs\Backup\20130701\3CXDialer.234757.log c:\programdata\3CX\Data\Logs\Backup\20130701\3CXQueueManager.090941.log c:\programdata\3CX\Data\Logs\Backup\20130701\3CXQueueManager.234756.log c:\programdata\3CX\Data\Logs\Backup\20130701\CallHistoryService.235252..log c:\programdata\3CX\Data\Logs\Backup\20130702\3CXDialer.085227.log c:\programdata\3CX\Data\Logs\Backup\20130702\3CXQueueManager.085227.log c:\programdata\3CX\Data\Logs\Backup\20130703\3CXDialer.130333.log c:\programdata\3CX\Data\Logs\Backup\20130703\3CXQueueManager.130333.log c:\programdata\3CX\Data\Logs\Backup\20130704\3CXDialer.081015.log c:\programdata\3CX\Data\Logs\Backup\20130704\3CXQueueManager.081015.log c:\programdata\3CX\Data\Logs\Backup\20130705\3CXDialer.090041.log c:\programdata\3CX\Data\Logs\Backup\20130705\3CXDialer.092450.log c:\programdata\3CX\Data\Logs\Backup\20130705\3CXDialer.105356.log c:\programdata\3CX\Data\Logs\Backup\20130705\3CXDialer.225952.log c:\programdata\3CX\Data\Logs\Backup\20130705\3CXQueueManager.090041.log c:\programdata\3CX\Data\Logs\Backup\20130705\3CXQueueManager.092450.log c:\programdata\3CX\Data\Logs\Backup\20130705\3CXQueueManager.105356.log c:\programdata\3CX\Data\Logs\Backup\20130705\3CXQueueManager.225952.log c:\programdata\3CX\Data\Logs\Backup\20130706\3CXDialer.080836.log c:\programdata\3CX\Data\Logs\Backup\20130706\3CXDialer.150818.log c:\programdata\3CX\Data\Logs\Backup\20130706\3CXDialer.175400.log c:\programdata\3CX\Data\Logs\Backup\20130706\3CXDialer.223102.log c:\programdata\3CX\Data\Logs\Backup\20130706\3CXQueueManager.080835.log c:\programdata\3CX\Data\Logs\Backup\20130706\3CXQueueManager.150818.log c:\programdata\3CX\Data\Logs\Backup\20130706\3CXQueueManager.175400.log c:\programdata\3CX\Data\Logs\Backup\20130706\3CXQueueManager.223101.log c:\programdata\3CX\Data\Logs\Backup\20130707\3CXDialer.223409.log c:\programdata\3CX\Data\Logs\Backup\20130707\3CXQueueManager.223409.log c:\programdata\3CX\Data\Logs\Backup\20130710\3CXDialer.082924.log c:\programdata\3CX\Data\Logs\Backup\20130710\3CXDialer.130714.log c:\programdata\3CX\Data\Logs\Backup\20130710\3CXDialer.151946.log c:\programdata\3CX\Data\Logs\Backup\20130710\3CXQueueManager.082924.log c:\programdata\3CX\Data\Logs\Backup\20130710\3CXQueueManager.130713.log c:\programdata\3CX\Data\Logs\Backup\20130710\3CXQueueManager.151946.log c:\programdata\3CX\Data\Logs\Backup\20130711\3CXDialer.095054.log c:\programdata\3CX\Data\Logs\Backup\20130711\3CXDialer.124811.log c:\programdata\3CX\Data\Logs\Backup\20130711\3CXDialer.150959.log c:\programdata\3CX\Data\Logs\Backup\20130711\3CXDialer.221525.log c:\programdata\3CX\Data\Logs\Backup\20130711\3CXQueueManager.095054.log c:\programdata\3CX\Data\Logs\Backup\20130711\3CXQueueManager.124811.log c:\programdata\3CX\Data\Logs\Backup\20130711\3CXQueueManager.150959.log c:\programdata\3CX\Data\Logs\Backup\20130711\3CXQueueManager.221525.log c:\programdata\3CX\Data\Logs\Backup\20130712\3CXDialer.063925.log c:\programdata\3CX\Data\Logs\Backup\20130712\3CXDialer.202233.log c:\programdata\3CX\Data\Logs\Backup\20130712\3CXDialer.225739.log c:\programdata\3CX\Data\Logs\Backup\20130712\3CXQueueManager.063925.log c:\programdata\3CX\Data\Logs\Backup\20130712\3CXQueueManager.202233.log c:\programdata\3CX\Data\Logs\Backup\20130712\3CXQueueManager.225739.log c:\programdata\3CX\Data\Logs\Backup\20130713\3CXDialer.082224.log c:\programdata\3CX\Data\Logs\Backup\20130713\3CXDialer.214714.log c:\programdata\3CX\Data\Logs\Backup\20130713\3CXQueueManager.082223.log c:\programdata\3CX\Data\Logs\Backup\20130713\3CXQueueManager.214714.log c:\programdata\3CX\Data\Logs\Backup\20130714\3CXDialer.080645.log c:\programdata\3CX\Data\Logs\Backup\20130714\3CXQueueManager.080645.log c:\programdata\3CX\Data\Logs\Backup\20130715\3CXDialer.072627.log c:\programdata\3CX\Data\Logs\Backup\20130715\3CXDialer.213623.log c:\programdata\3CX\Data\Logs\Backup\20130715\3CXQueueManager.072626.log c:\programdata\3CX\Data\Logs\Backup\20130715\3CXQueueManager.213623.log c:\programdata\3CX\Data\Logs\Backup\20130715\CallHistoryService.135025..log c:\programdata\3CX\Data\Logs\Backup\20130716\3CXDialer.071739.log c:\programdata\3CX\Data\Logs\Backup\20130716\3CXQueueManager.071739.log c:\programdata\3CX\Data\Logs\Backup\20130717\3CXDialer.004320.log c:\programdata\3CX\Data\Logs\Backup\20130717\3CXDialer.014629.log c:\programdata\3CX\Data\Logs\Backup\20130717\3CXDialer.073905.log c:\programdata\3CX\Data\Logs\Backup\20130717\3CXQueueManager.004319.log c:\programdata\3CX\Data\Logs\Backup\20130717\3CXQueueManager.014628.log c:\programdata\3CX\Data\Logs\Backup\20130717\3CXQueueManager.073905.log c:\programdata\3CX\Data\Logs\Backup\20130718\3CXDialer.070842.log c:\programdata\3CX\Data\Logs\Backup\20130718\3CXDialer.075342.log c:\programdata\3CX\Data\Logs\Backup\20130718\3CXDialer.090426.log c:\programdata\3CX\Data\Logs\Backup\20130718\3CXQueueManager.070842.log c:\programdata\3CX\Data\Logs\Backup\20130718\3CXQueueManager.075341.log c:\programdata\3CX\Data\Logs\Backup\20130718\3CXQueueManager.090425.log c:\programdata\3CX\Data\Logs\Backup\20130719\3CXDialer.045157.log c:\programdata\3CX\Data\Logs\Backup\20130719\3CXDialer.100641.log c:\programdata\3CX\Data\Logs\Backup\20130719\3CXDialer.205542.log c:\programdata\3CX\Data\Logs\Backup\20130719\3CXQueueManager.045157.log c:\programdata\3CX\Data\Logs\Backup\20130719\3CXQueueManager.100641.log c:\programdata\3CX\Data\Logs\Backup\20130719\3CXQueueManager.205542.log c:\programdata\3CX\Data\Logs\Backup\20130720\3CXDialer.103559.log c:\programdata\3CX\Data\Logs\Backup\20130720\3CXQueueManager.103559.log c:\programdata\3CX\Data\Logs\Backup\20130721\3CXDialer.104925.log c:\programdata\3CX\Data\Logs\Backup\20130721\3CXDialer.165706.log c:\programdata\3CX\Data\Logs\Backup\20130721\3CXDialer.224239.log c:\programdata\3CX\Data\Logs\Backup\20130721\3CXQueueManager.104925.log c:\programdata\3CX\Data\Logs\Backup\20130721\3CXQueueManager.165705.log c:\programdata\3CX\Data\Logs\Backup\20130721\3CXQueueManager.224239.log c:\programdata\3CX\Data\Logs\Backup\20130722\3CXDialer.171945.log c:\programdata\3CX\Data\Logs\Backup\20130722\3CXQueueManager.171945.log c:\programdata\3CX\Data\Logs\Backup\20130723\3CXDialer.115747.log c:\programdata\3CX\Data\Logs\Backup\20130723\3CXDialer.132734.log c:\programdata\3CX\Data\Logs\Backup\20130723\3CXQueueManager.115746.log c:\programdata\3CX\Data\Logs\Backup\20130723\3CXQueueManager.132733.log c:\programdata\3CX\Data\Logs\Backup\20130724\3CXDialer.095743.log c:\programdata\3CX\Data\Logs\Backup\20130724\3CXDialer.222154.log c:\programdata\3CX\Data\Logs\Backup\20130724\3CXQueueManager.095742.log c:\programdata\3CX\Data\Logs\Backup\20130724\3CXQueueManager.222154.log c:\programdata\3CX\Data\Logs\Backup\20130725\3CXDialer.121832.log c:\programdata\3CX\Data\Logs\Backup\20130725\3CXQueueManager.121832.log c:\programdata\3CX\Data\Logs\Backup\20130726\3CXDialer.161119.log c:\programdata\3CX\Data\Logs\Backup\20130726\3CXQueueManager.161119.log c:\programdata\3CX\Data\Logs\Backup\20130728\3CXDialer.120025.log c:\programdata\3CX\Data\Logs\Backup\20130728\3CXDialer.134425.log c:\programdata\3CX\Data\Logs\Backup\20130728\3CXQueueManager.120025.log c:\programdata\3CX\Data\Logs\Backup\20130728\3CXQueueManager.134425.log c:\programdata\3CX\Data\Logs\Backup\20130729\3CXDialer.093213.log c:\programdata\3CX\Data\Logs\Backup\20130729\3CXQueueManager.093213.log c:\programdata\3CX\Data\Logs\Backup\20130730\3CXDialer.094043.log c:\programdata\3CX\Data\Logs\Backup\20130730\3CXDialer.104851.log c:\programdata\3CX\Data\Logs\Backup\20130730\3CXDialer.153654.log c:\programdata\3CX\Data\Logs\Backup\20130730\3CXDialer.170449.log c:\programdata\3CX\Data\Logs\Backup\20130730\3CXQueueManager.094043.log c:\programdata\3CX\Data\Logs\Backup\20130730\3CXQueueManager.104851.log c:\programdata\3CX\Data\Logs\Backup\20130730\3CXQueueManager.153654.log c:\programdata\3CX\Data\Logs\Backup\20130730\3CXQueueManager.170449.log c:\programdata\3CX\Data\Logs\Backup\20130731\3CXDialer.185722.log c:\programdata\3CX\Data\Logs\Backup\20130731\3CXDialer.211923.log c:\programdata\3CX\Data\Logs\Backup\20130731\3CXDialer.230537.log c:\programdata\3CX\Data\Logs\Backup\20130731\3CXQueueManager.185722.log c:\programdata\3CX\Data\Logs\Backup\20130731\3CXQueueManager.211922.log c:\programdata\3CX\Data\Logs\Backup\20130731\3CXQueueManager.230537.log c:\programdata\3CX\Data\Logs\Backup\20130801\3CXDialer.153717.log c:\programdata\3CX\Data\Logs\Backup\20130801\3CXQueueManager.153717.log c:\programdata\3CX\Data\Logs\Backup\20130805\3CXDialer.000342.log c:\programdata\3CX\Data\Logs\Backup\20130805\3CXDialer.222235.log c:\programdata\3CX\Data\Logs\Backup\20130805\3CXDialer.232945.log c:\programdata\3CX\Data\Logs\Backup\20130805\3CXQueueManager.000341.log c:\programdata\3CX\Data\Logs\Backup\20130805\3CXQueueManager.222235.log c:\programdata\3CX\Data\Logs\Backup\20130805\3CXQueueManager.232944.log c:\programdata\3CX\Data\Logs\FaxTraces\audittrace.log c:\programdata\3CX\Data\Logs\FaxTraces\EventsTrace.log c:\programdata\3CX\Data\WebSitesTemp\favicon.ico c:\programdata\3CX\Data\WebSitesTemp\management\f077a418\775d158a\App_Web_nn3gbtyy.0.cs c:\programdata\3CX\Data\WebSitesTemp\management\f077a418\775d158a\App_Web_nn3gbtyy.1.cs c:\programdata\3CX\Data\WebSitesTemp\management\f077a418\775d158a\App_Web_nn3gbtyy.2.cs c:\programdata\3CX\Data\WebSitesTemp\management\f077a418\775d158a\App_Web_nn3gbtyy.dll c:\programdata\3CX\Data\WebSitesTemp\management\f077a418\775d158a\App_Web_nn3gbtyy.pdb c:\programdata\3CX\Data\WebSitesTemp\management\f077a418\775d158a\assembly\dl3\03e81e85\002c18d4_74fdcd01\__AssemblyInfo__.ini c:\programdata\3CX\Data\WebSitesTemp\management\f077a418\775d158a\assembly\dl3\03e81e85\002c18d4_74fdcd01\Gizmox.WebGUI.Forms.Themes.DLL c:\programdata\3CX\Data\WebSitesTemp\management\f077a418\775d158a\assembly\dl3\0f74f1f2\00c74ab6_74fdcd01\__AssemblyInfo__.ini c:\programdata\3CX\Data\WebSitesTemp\management\f077a418\775d158a\assembly\dl3\0f74f1f2\00c74ab6_74fdcd01\3CXWebTheme.DLL c:\programdata\3CX\Data\WebSitesTemp\management\f077a418\775d158a\assembly\dl3\30d724a9\001ef1cc_74fdcd01\__AssemblyInfo__.ini c:\programdata\3CX\Data\WebSitesTemp\management\f077a418\775d158a\assembly\dl3\30d724a9\001ef1cc_74fdcd01\NetTesterLib.DLL c:\programdata\3CX\Data\WebSitesTemp\management\f077a418\775d158a\assembly\dl3\67c8d351\00e0dcd8_74fdcd01\__AssemblyInfo__.ini c:\programdata\3CX\Data\WebSitesTemp\management\f077a418\775d158a\assembly\dl3\67c8d351\00e0dcd8_74fdcd01\TcxBinLogRd.DLL c:\programdata\3CX\Data\WebSitesTemp\management\f077a418\775d158a\assembly\dl3\949f00dd\00295ce8_74fdcd01\__AssemblyInfo__.ini c:\programdata\3CX\Data\WebSitesTemp\management\f077a418\775d158a\assembly\dl3\949f00dd\00295ce8_74fdcd01\WebGuiInterface.DLL c:\programdata\3CX\Data\WebSitesTemp\management\f077a418\775d158a\hash\hash.web c:\programdata\3CX\Data\WebSitesTemp\management\f077a418\775d158a\index.aspx.cdcab7d2.compiled c:\programdata\3CX\Data\WebSitesTemp\management\f077a418\775d158a\logout.aspx.cdcab7d2.compiled c:\programdata\3CX\Data\WebSitesTemp\management\f077a418\775d158a\nn3gbtyy.cmdline c:\programdata\3CX\Data\WebSitesTemp\management\f077a418\775d158a\nn3gbtyy.err c:\programdata\3CX\Data\WebSitesTemp\management\f077a418\775d158a\nn3gbtyy.out c:\programdata\3CX\Data\WebSitesTemp\management\f077a418\775d158a\nn3gbtyy.tmp c:\programdata\3CX\Data\WebSitesTemp\management\f077a418\775d158a\preStartInitList.web c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\App_Code.compiled c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\App_Code.gtfv0a13.0.cs c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\App_Code.gtfv0a13.1.cs c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\App_Code.gtfv0a13.dll c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\App_Code.gtfv0a13.pdb c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\App_global.asax.3axo-8yy.0.cs c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\App_global.asax.3axo-8yy.1.cs c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\App_global.asax.3axo-8yy.dll c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\App_global.asax.3axo-8yy.pdb c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\App_global.asax.compiled c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\App_Web_olw33ngc.0.cs c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\App_Web_olw33ngc.1.cs c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\App_Web_olw33ngc.dll c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\App_Web_olw33ngc.pdb c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\assembly\dl3\1026350c\00e0dcd8_74fdcd01\__AssemblyInfo__.ini c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\assembly\dl3\1026350c\00e0dcd8_74fdcd01\VBMutils.DLL c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\assembly\dl3\1fb4bcc9\0073832e_bf44cb01\__AssemblyInfo__.ini c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\assembly\dl3\1fb4bcc9\0073832e_bf44cb01\System.ServiceModel.PollingDuplex.DLL c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\assembly\dl3\68bf72e6\00683dc8_664ecc01\__AssemblyInfo__.ini c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\assembly\dl3\68bf72e6\00683dc8_664ecc01\System.ServiceModel.DomainServices.Server.DLL c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\assembly\dl3\cec2aa92\0010cac5_74fdcd01\__AssemblyInfo__.ini c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\assembly\dl3\cec2aa92\0010cac5_74fdcd01\MyPhone.Web.DLL c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\assembly\dl3\dc8471d2\0002a3be_74fdcd01\__AssemblyInfo__.ini c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\assembly\dl3\dc8471d2\0002a3be_74fdcd01\QStatProcessor.DLL c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\assembly\dl3\effd87ec\000edbc5_664ecc01\__AssemblyInfo__.ini c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\assembly\dl3\effd87ec\000edbc5_664ecc01\System.ServiceModel.DomainServices.Hosting.DLL c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\assistpubsubsrv.svc.cdcab7d2.compiled c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\b1tgwkpl.cmdline c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\b1tgwkpl.err c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\b1tgwkpl.out c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\b1tgwkpl.tmp c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\hash\hash.web c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\myphone.aspx.cdcab7d2.compiled c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\olw33ngc.cmdline c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\olw33ngc.err c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\olw33ngc.out c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\olw33ngc.res c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\olw33ngc.tmp c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\preStartInitList.web c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\tig5feaq.cmdline c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\tig5feaq.err c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\tig5feaq.out c:\programdata\3CX\Data\WebSitesTemp\myphone\aa95ea52\b8d4a55c\tig5feaq.tmp c:\users\Rafael\AppData\Local\assembly\tmp c:\users\Rafael\AppData\LocalLow\Flagfox\IE\FlAGfox.dll c:\users\Rafael\AppData\Roaming\kikin c:\users\Rafael\AppData\Roaming\kikin\ff_kkes.xml c:\users\Rafael\AppData\Roaming\kikin\ie_kkes.xml c:\users\Rafael\AppData\Roaming\kikin\ie_settings.xml c:\programdata\3CX . . . . Nicht in der Lage zu löschen c:\programdata\3CX\Data\Logs\3CXDialer.log . . . . Nicht in der Lage zu löschen c:\programdata\3CX\Data\Logs\3CXPhoneSystem.bldef . . . . Nicht in der Lage zu löschen c:\programdata\3CX\Data\Logs\3CXQueueManager.log . . . . Nicht in der Lage zu löschen c:\programdata\3CX\Data\Logs\CallHistoryService.log . . . . Nicht in der Lage zu löschen . . ((((((((((((((((((((((((((((((((((((((( Treiber/Dienste ))))))))))))))))))))))))))))))))))))))))))))))))) . . -------\Service_BrowserDefendert -------\Service_WsysSvc . . ((((((((((((((((((((((( Dateien erstellt von 2013-07-05 bis 2013-08-05 )))))))))))))))))))))))))))))) . . 2013-08-03 18:45 . 2013-08-03 18:45 -------- d-----w- C:\FRST 2013-08-03 18:32 . 2013-08-03 18:32 -------- d-----w- c:\windows\SysWow64\searchplugins 2013-08-03 18:32 . 2013-08-03 18:32 -------- d-----w- c:\windows\SysWow64\Extensions 2013-08-03 18:32 . 2013-08-03 18:32 -------- d-----w- c:\programdata\BrowserDefender 2013-08-03 18:32 . 2013-08-03 18:32 -------- d-----w- c:\program files (x86)\OpenIt 2013-08-02 09:58 . 2013-08-02 13:07 -------- d-----w- c:\program files (x86)\MyPC Backup 2013-07-30 13:25 . 2013-07-30 13:25 119808 ----a-r- c:\users\Rafael\AppData\Roaming\Microsoft\Installer\{CCF298AF-9CE1-4B26-B251-486E98A34789}\icons.exe 2013-07-30 12:17 . 2013-07-30 12:17 -------- d-----w- c:\users\Rafael\AppData\Roaming\Serif 2013-07-30 08:51 . 2013-07-30 08:51 -------- d-----w- c:\program files (x86)\Serif 2013-07-29 09:06 . 2013-08-03 18:32 -------- d-----w- c:\users\Rafael\Qtrax 2013-07-29 09:02 . 2013-07-29 09:02 -------- d-----w- c:\users\Rafael\AppData\Roaming\DigitalSite 2013-07-25 12:35 . 2013-07-25 12:35 -------- d-----w- c:\users\Rafael\AppData\Roaming\eIntaller 2013-07-25 12:35 . 2013-08-05 21:41 -------- d-----w- c:\program files (x86)\FTdownloader V4.0 2013-07-25 12:35 . 2013-07-25 12:35 -------- d-----w- c:\users\Rafael\AppData\Local\Cool_Mirage 2013-07-25 12:34 . 2013-07-25 13:10 -------- d-----w- c:\program files (x86)\FTDownloader.com 2013-07-25 11:24 . 2013-07-25 11:24 -------- d-----w- c:\program files\Microsoft Silverlight 2013-07-25 11:24 . 2013-07-25 11:24 -------- d-----w- c:\program files (x86)\Microsoft Silverlight 2013-07-24 14:25 . 2013-07-24 14:33 -------- d-----w- c:\program files (x86)\EPUB to MOBI 2013-07-23 10:24 . 2013-07-23 10:24 96168 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll 2013-07-23 10:24 . 2013-07-23 10:24 -------- d-----w- c:\program files (x86)\Java 2013-07-22 16:25 . 2013-07-22 16:25 -------- d-----w- c:\users\Rafael\AppData\Roaming\Apowersoft 2013-07-22 16:25 . 2013-07-22 16:25 -------- d-----w- c:\program files (x86)\Apowersoft 2013-07-17 21:18 . 2013-07-17 21:18 -------- d-----w- c:\program files (x86)\dumps 2013-07-17 21:12 . 2013-07-18 05:08 -------- d-----w- c:\program files (x86)\Common Files\Steam 2013-07-17 21:12 . 2013-07-29 09:11 -------- d-----w- c:\program files (x86)\Steam 2013-07-15 19:34 . 2013-07-15 19:35 -------- d-----w- c:\windows\system32\MRT 2013-07-11 20:31 . 2013-07-11 20:32 -------- d-----w- c:\program files (x86)\FOTOParadies 2013-07-10 13:57 . 2013-04-09 23:34 1247744 ----a-w- c:\windows\SysWow64\DWrite.dll 2013-07-10 13:57 . 2013-04-02 22:51 1643520 ----a-w- c:\windows\system32\DWrite.dll 2013-07-10 13:56 . 2013-05-27 05:50 1011712 ----a-w- c:\program files\Windows Defender\MpSvc.dll 2013-07-10 13:56 . 2013-05-27 05:50 571904 ----a-w- c:\program files\Windows Defender\MpClient.dll 2013-07-10 13:56 . 2013-05-27 05:50 314880 ----a-w- c:\program files\Windows Defender\MpCommu.dll 2013-07-10 13:56 . 2013-05-27 04:57 4608 ----a-w- c:\program files (x86)\Windows Defender\MsMpLics.dll 2013-07-10 13:56 . 2013-05-27 04:57 54784 ----a-w- c:\program files (x86)\Windows Defender\MpOAV.dll 2013-07-10 13:56 . 2013-05-27 04:57 392704 ----a-w- c:\program files (x86)\Windows Defender\MpClient.dll 2013-07-10 13:56 . 2013-05-27 03:15 9216 ----a-w- c:\program files (x86)\Windows Defender\MpAsDesc.dll 2013-07-10 13:56 . 2013-06-04 06:00 624128 ----a-w- c:\windows\system32\qedit.dll 2013-07-10 13:56 . 2013-06-04 04:53 509440 ----a-w- c:\windows\SysWow64\qedit.dll 2013-07-10 13:55 . 2013-05-06 06:03 1887744 ----a-w- c:\windows\system32\WMVDECOD.DLL 2013-07-10 13:55 . 2013-05-06 04:56 1620480 ----a-w- c:\windows\SysWow64\WMVDECOD.DLL 2013-07-10 13:49 . 2013-06-05 03:34 3153920 ----a-w- c:\windows\system32\win32k.sys 2013-07-10 13:49 . 2013-04-10 05:48 1732608 ----a-w- c:\program files\Windows Journal\NBDoc.DLL 2013-07-10 13:49 . 2013-04-10 05:46 1402880 ----a-w- c:\program files\Windows Journal\JNWDRV.dll 2013-07-10 13:49 . 2013-04-10 05:46 1393152 ----a-w- c:\program files\Windows Journal\JNTFiltr.dll 2013-07-10 13:49 . 2013-04-10 05:46 1367040 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\journal.dll 2013-07-10 13:49 . 2013-04-10 05:03 936448 ----a-w- c:\program files (x86)\Common Files\Microsoft Shared\ink\journal.dll 2013-07-09 21:15 . 2013-07-15 19:29 -------- d-----w- c:\programdata\EA Logs 2013-07-08 05:44 . 2013-07-09 22:30 -------- d-----w- c:\programdata\Spybot - Search & Destroy 2013-07-08 05:35 . 2013-07-08 05:35 -------- d-----w- c:\program files (x86)\NVIDIA Corporation 2013-07-08 05:35 . 2013-07-08 05:35 -------- d-----w- c:\program files (x86)\Common Files\Wise Installation Wizard 2013-07-07 20:38 . 2013-07-07 20:38 -------- d-----w- c:\users\Rafael\AppData\Roaming\OpenOffice.org 2013-07-07 20:36 . 2013-07-07 20:36 -------- d-----w- c:\program files (x86)\OpenOffice.org 3 . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2013-08-05 21:56 . 2013-02-20 22:05 4194304 ----a-w- c:\windows\ServiceProfiles\NetworkService\msmqlog.bin 2013-07-23 10:24 . 2013-03-07 06:21 867240 ----a-w- c:\windows\SysWow64\npDeployJava1.dll 2013-07-23 10:24 . 2013-03-07 06:21 789416 ----a-w- c:\windows\SysWow64\deployJava1.dll 2013-07-01 07:17 . 2013-05-07 20:07 83672 ----a-w- c:\windows\system32\drivers\avnetflt.sys 2013-06-28 17:43 . 2013-02-12 15:52 120200 ----a-w- c:\windows\SysWow64\DLLDEV32i.dll 2013-06-23 22:57 . 2013-01-27 08:34 78277128 ----a-w- c:\windows\system32\MRT.exe 2013-06-13 13:39 . 2013-01-14 11:58 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2013-06-13 13:39 . 2013-01-14 11:58 692104 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2013-05-13 05:51 . 2013-06-12 21:11 184320 ----a-w- c:\windows\system32\cryptsvc.dll 2013-05-13 05:51 . 2013-06-12 21:11 1464320 ----a-w- c:\windows\system32\crypt32.dll 2013-05-13 05:51 . 2013-06-12 21:11 139776 ----a-w- c:\windows\system32\cryptnet.dll 2013-05-13 05:50 . 2013-06-12 21:11 52224 ----a-w- c:\windows\system32\certenc.dll 2013-05-13 04:45 . 2013-06-12 21:11 140288 ----a-w- c:\windows\SysWow64\cryptsvc.dll 2013-05-13 04:45 . 2013-06-12 21:11 1160192 ----a-w- c:\windows\SysWow64\crypt32.dll 2013-05-13 04:45 . 2013-06-12 21:11 103936 ----a-w- c:\windows\SysWow64\cryptnet.dll 2013-05-13 03:52 . 2013-02-23 23:47 23624 ----a-w- c:\windows\Launcher.exe 2013-05-13 03:43 . 2013-06-12 21:11 1192448 ----a-w- c:\windows\system32\certutil.exe 2013-05-13 03:08 . 2013-06-12 21:11 903168 ----a-w- c:\windows\SysWow64\certutil.exe 2013-05-13 03:08 . 2013-06-12 21:11 43008 ----a-w- c:\windows\SysWow64\certenc.dll 2013-05-10 10:14 . 2013-05-10 10:14 226304 ----a-w- c:\windows\system32\elshyph.dll 2013-05-10 10:14 . 2013-05-10 10:14 185344 ----a-w- c:\windows\SysWow64\elshyph.dll 2013-05-10 10:14 . 2013-05-10 10:14 158720 ----a-w- c:\windows\SysWow64\msls31.dll 2013-05-10 10:14 . 2013-05-10 10:14 1054720 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe 2013-05-10 10:14 . 2013-05-10 10:14 97280 ----a-w- c:\windows\system32\mshtmled.dll 2013-05-10 10:14 . 2013-05-10 10:14 92160 ----a-w- c:\windows\system32\SetIEInstalledDate.exe 2013-05-10 10:14 . 2013-05-10 10:14 905728 ----a-w- c:\windows\system32\mshtmlmedia.dll 2013-05-10 10:14 . 2013-05-10 10:14 81408 ----a-w- c:\windows\system32\icardie.dll 2013-05-10 10:14 . 2013-05-10 10:14 762368 ----a-w- c:\windows\system32\ieapfltr.dll 2013-05-10 10:14 . 2013-05-10 10:14 73728 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe 2013-05-10 10:14 . 2013-05-10 10:14 719360 ----a-w- c:\windows\SysWow64\mshtmlmedia.dll 2013-05-10 10:14 . 2013-05-10 10:14 62976 ----a-w- c:\windows\system32\pngfilt.dll 2013-05-10 10:14 . 2013-05-10 10:14 61952 ----a-w- c:\windows\SysWow64\tdc.ocx 2013-05-10 10:14 . 2013-05-10 10:14 599552 ----a-w- c:\windows\system32\vbscript.dll 2013-05-10 10:14 . 2013-05-10 10:14 523264 ----a-w- c:\windows\SysWow64\vbscript.dll 2013-05-10 10:14 . 2013-05-10 10:14 52224 ----a-w- c:\windows\system32\msfeedsbs.dll 2013-05-10 10:14 . 2013-05-10 10:14 51200 ----a-w- c:\windows\system32\imgutil.dll 2013-05-10 10:14 . 2013-05-10 10:14 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll 2013-05-10 10:14 . 2013-05-10 10:14 48640 ----a-w- c:\windows\system32\mshtmler.dll 2013-05-10 10:14 . 2013-05-10 10:14 452096 ----a-w- c:\windows\system32\dxtmsft.dll 2013-05-10 10:14 . 2013-05-10 10:14 441856 ----a-w- c:\windows\system32\html.iec 2013-05-10 10:14 . 2013-05-10 10:14 38400 ----a-w- c:\windows\SysWow64\imgutil.dll 2013-05-10 10:14 . 2013-05-10 10:14 361984 ----a-w- c:\windows\SysWow64\html.iec 2013-05-10 10:14 . 2013-05-10 10:14 281600 ----a-w- c:\windows\system32\dxtrans.dll 2013-05-10 10:14 . 2013-05-10 10:14 27648 ----a-w- c:\windows\system32\licmgr10.dll 2013-05-10 10:14 . 2013-05-10 10:14 270848 ----a-w- c:\windows\system32\iedkcs32.dll 2013-05-10 10:14 . 2013-05-10 10:14 247296 ----a-w- c:\windows\system32\webcheck.dll 2013-05-10 10:14 . 2013-05-10 10:14 235008 ----a-w- c:\windows\system32\url.dll 2013-05-10 10:14 . 2013-05-10 10:14 23040 ----a-w- c:\windows\SysWow64\licmgr10.dll 2013-05-10 10:14 . 2013-05-10 10:14 216064 ----a-w- c:\windows\system32\msls31.dll 2013-05-10 10:14 . 2013-05-10 10:14 197120 ----a-w- c:\windows\system32\msrating.dll 2013-05-10 10:14 . 2013-05-10 10:14 173568 ----a-w- c:\windows\system32\ieUnatt.exe 2013-05-10 10:14 . 2013-05-10 10:14 167424 ----a-w- c:\windows\system32\iexpress.exe 2013-05-10 10:14 . 2013-05-10 10:14 1509376 ----a-w- c:\windows\system32\inetcpl.cpl 2013-05-10 10:14 . 2013-05-10 10:14 150528 ----a-w- c:\windows\SysWow64\iexpress.exe 2013-05-10 10:14 . 2013-05-10 10:14 149504 ----a-w- c:\windows\system32\occache.dll 2013-05-10 10:14 . 2013-05-10 10:14 144896 ----a-w- c:\windows\system32\wextract.exe 2013-05-10 10:14 . 2013-05-10 10:14 1441280 ----a-w- c:\windows\SysWow64\inetcpl.cpl 2013-05-10 10:14 . 2013-05-10 10:14 1400416 ----a-w- c:\windows\system32\ieapfltr.dat 2013-05-10 10:14 . 2013-05-10 10:14 138752 ----a-w- c:\windows\SysWow64\wextract.exe 2013-05-10 10:14 . 2013-05-10 10:14 13824 ----a-w- c:\windows\system32\mshta.exe 2013-05-10 10:14 . 2013-05-10 10:14 137216 ----a-w- c:\windows\SysWow64\ieUnatt.exe 2013-05-10 10:14 . 2013-05-10 10:14 136192 ----a-w- c:\windows\system32\iepeers.dll 2013-05-10 10:14 . 2013-05-10 10:14 135680 ----a-w- c:\windows\system32\IEAdvpack.dll 2013-05-10 10:14 . 2013-05-10 10:14 12800 ----a-w- c:\windows\SysWow64\mshta.exe 2013-05-10 10:14 . 2013-05-10 10:14 12800 ----a-w- c:\windows\system32\msfeedssync.exe 2013-05-10 10:14 . 2013-05-10 10:14 110592 ----a-w- c:\windows\SysWow64\IEAdvpack.dll 2013-05-10 10:14 . 2013-05-10 10:14 102912 ----a-w- c:\windows\system32\inseng.dll 2013-05-10 10:14 . 2013-05-10 10:14 77312 ----a-w- c:\windows\system32\tdc.ocx 2013-05-10 09:58 . 2013-05-10 09:58 9728 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-05-10 09:58 . 2013-05-10 09:58 9728 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-05-10 09:58 . 2013-05-10 09:58 648192 ----a-w- c:\windows\system32\d3d10level9.dll 2013-05-10 09:58 . 2013-05-10 09:58 604160 ----a-w- c:\windows\SysWow64\d3d10level9.dll 2013-05-10 09:58 . 2013-05-10 09:58 5632 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-05-10 09:58 . 2013-05-10 09:58 5632 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-05-10 09:58 . 2013-05-10 09:58 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-05-10 09:58 . 2013-05-10 09:58 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-05-10 09:58 . 2013-05-10 09:58 522752 ----a-w- c:\windows\system32\XpsGdiConverter.dll 2013-05-10 09:58 . 2013-05-10 09:58 465920 ----a-w- c:\windows\system32\WMPhoto.dll 2013-05-10 09:58 . 2013-05-10 09:58 417792 ----a-w- c:\windows\SysWow64\WMPhoto.dll 2013-05-10 09:58 . 2013-05-10 09:58 4096 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-user32-l1-1-0.dll 2013-05-10 09:58 . 2013-05-10 09:58 4096 ---ha-w- c:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2013-05-10 09:58 . 2013-05-10 09:58 3928064 ----a-w- c:\windows\system32\d2d1.dll 2013-05-10 09:58 . 2013-05-10 09:58 364544 ----a-w- c:\windows\SysWow64\XpsGdiConverter.dll 2013-05-10 09:58 . 2013-05-10 09:58 363008 ----a-w- c:\windows\system32\dxgi.dll 2013-05-10 09:58 . 2013-05-10 09:58 3584 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-05-10 09:58 . 2013-05-10 09:58 3584 ---ha-w- c:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-05-10 09:58 . 2013-05-10 09:58 3419136 ----a-w- c:\windows\SysWow64\d2d1.dll 2013-05-10 09:58 . 2013-05-10 09:58 333312 ----a-w- c:\windows\system32\d3d10_1core.dll 2013-05-10 09:58 . 2013-05-10 09:58 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-version-l1-1-0.dll 2013-05-10 09:58 . 2013-05-10 09:58 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-05-10 09:58 . 2013-05-10 09:58 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2013-05-10 09:58 . 2013-05-10 09:58 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-05-10 09:58 . 2013-05-10 09:58 296960 ----a-w- c:\windows\system32\d3d10core.dll 2013-05-10 09:58 . 2013-05-10 09:58 293376 ----a-w- c:\windows\SysWow64\dxgi.dll 2013-05-10 09:58 . 2013-05-10 09:58 2776576 ----a-w- c:\windows\system32\msmpeg2vdec.dll 2013-05-10 09:58 . 2013-05-10 09:58 2565120 ----a-w- c:\windows\system32\d3d10warp.dll 2013-05-10 09:58 . 2013-05-10 09:58 2560 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-05-10 09:58 . 2013-05-10 09:58 2560 ---ha-w- c:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-05-10 09:58 . 2013-05-10 09:58 249856 ----a-w- c:\windows\SysWow64\d3d10_1core.dll 2013-05-10 09:58 . 2013-05-10 09:58 245248 ----a-w- c:\windows\system32\WindowsCodecsExt.dll . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{11111111-1111-1111-1111-110311251140}] 2013-05-20 08:03 743272 ----a-w- c:\program files (x86)\Plus-HD-1.8\Plus-HD-1.8-bho.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517}] 2013-05-31 17:32 197912 ----a-w- c:\program files (x86)\WebCake\WebCakeIEClient.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{31ad400d-1b06-4e33-a59a-90c2c140cba0}] 2010-11-21 03:24 297808 ----a-w- c:\windows\System32\mscoree.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{4a0c8953-9d4e-4790-b732-2b9fc9ebce05}] 2012-10-16 00:08 142040 ----a-w- c:\users\Rafael\AppData\Roaming\PinPhotoZoom\AutocompletePro.dll . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "QtraxNotification"="c:\users\Rafael\Qtrax\Player\Notification.exe" [2013-08-03 118568] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2013-07-01 345144] . c:\users\Rafael\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ MyPC Backup.lnk - c:\program files (x86)\MyPC Backup\MyPC Backup.exe [2013-7-1 1945128] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) "PromptOnSecureDesktop"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon] "Userinit"="userinit.exe" . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows] "LoadAppInit_DLLs"=1 (0x1) "AppInit_DLLs"=c:\progra~3\BROWSE~1\261519~1.190\{C16C1~1\BrowserDefender.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32] "aux1"=wdmaud.drv . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager] BootExecute REG_MULTI_SZ autocheck autochk *\0\0sdnclean64.exe . R2 3CXFAXSrv;3CX PhoneSystem FAX Server;c:\program files\3CX PhoneSystem\Bin\3CXFaxServer.exe;c:\program files\3CX PhoneSystem\Bin\3CXFaxServer.exe [x] R2 BstHdAndroidSvc;BlueStacks Android Service;c:\program files (x86)\BlueStacks\HD-Service.exe BstHdAndroidSvc Android;c:\program files (x86)\BlueStacks\HD-Service.exe BstHdAndroidSvc Android [x] R2 BstHdDrv;BlueStacks Hypervisor;c:\program files (x86)\BlueStacks\HD-Hypervisor-amd64.sys;c:\program files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [x] R2 BstHdLogRotatorSvc;BlueStacks Log Rotator Service;c:\program files (x86)\BlueStacks\HD-LogRotatorService.exe;c:\program files (x86)\BlueStacks\HD-LogRotatorService.exe [x] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R2 gupdate;Google Update-Dienst (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe;c:\program files (x86)\Google\Update\GoogleUpdate.exe [x] R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x] R2 SystemStoreService;System Store;c:\program files (x86)\SoftwareUpdater\SystemStore.exe -displayname System Store -servicename SystemStoreService;c:\program files (x86)\SoftwareUpdater\SystemStore.exe -displayname System Store -servicename SystemStoreService [x] R3 androidusb;ADB Interface Driver;c:\windows\system32\Drivers\androidusb.sys;c:\windows\SYSNATIVE\Drivers\androidusb.sys [x] R3 BEHRINGER_2902;usb-audio.de driver for BEHRINGER USB AUDIO;c:\windows\system32\Drivers\BUSB2902.sys;c:\windows\SYSNATIVE\Drivers\BUSB2902.sys [x] R3 BUSB_AUDIO_WDM;BEHRINGER USB WDM AUDIO;c:\windows\system32\drivers\busbwdm.sys;c:\windows\SYSNATIVE\drivers\busbwdm.sys [x] R3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudbus.sys;c:\windows\SYSNATIVE\DRIVERS\ssudbus.sys [x] R3 dgderdrv;dgderdrv;c:\windows\system32\drivers\dgderdrv.sys;c:\windows\SYSNATIVE\drivers\dgderdrv.sys [x] R3 FirebirdServerMAGIXInstance;Firebird Server - MAGIX Instance;c:\program files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe;c:\program files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe [x] R3 gupdatem;Google Update-Dienst (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe;c:\program files (x86)\Google\Update\GoogleUpdate.exe [x] R3 massfilter;ZTE Mass Storage Filter Driver;c:\windows\system32\DRIVERS\massfilter.sys;c:\windows\SYSNATIVE\DRIVERS\massfilter.sys [x] R3 NLNdisPT;NetLimiter Ndis Protocol Service;c:\windows\system32\DRIVERS\nlndis.sys;c:\windows\SYSNATIVE\DRIVERS\nlndis.sys [x] R3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUVStor.sys;c:\windows\SYSNATIVE\Drivers\RtsUVStor.sys [x] R3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudmdm.sys;c:\windows\SYSNATIVE\DRIVERS\ssudmdm.sys [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x] R3 WSDScan;WSD-Scanunterstützung durch UMB;c:\windows\system32\DRIVERS\WSDScan.sys;c:\windows\SYSNATIVE\DRIVERS\WSDScan.sys [x] R3 ZTEusbnet;ZTE USB-NDIS miniport;c:\windows\system32\DRIVERS\ZTEusbnet.sys;c:\windows\SYSNATIVE\DRIVERS\ZTEusbnet.sys [x] R3 ZTEusbvoice;ZTE VoUSB Port;c:\windows\system32\DRIVERS\ZTEusbvoice.sys;c:\windows\SYSNATIVE\DRIVERS\ZTEusbvoice.sys [x] R4 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x] R4 NOBU;Norton Online Backup;c:\program files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe SERVICE;c:\program files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe SERVICE [x] S0 amdkmpfd;AMD PCI Root Bus Lower Filter;c:\windows\system32\DRIVERS\amdkmpfd.sys;c:\windows\SYSNATIVE\DRIVERS\amdkmpfd.sys [x] S0 iusb3hcs;Intel(R) USB 3.0 Hostcontroller-Switchtreiber;c:\windows\system32\DRIVERS\iusb3hcs.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hcs.sys [x] S0 PxHlpa64;PxHlpa64;c:\windows\System32\Drivers\PxHlpa64.sys;c:\windows\SYSNATIVE\Drivers\PxHlpa64.sys [x] S1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys;c:\windows\SYSNATIVE\DRIVERS\avkmgr.sys [x] S1 ctxusbm;Citrix USB Monitor Driver;c:\windows\system32\DRIVERS\ctxusbm.sys;c:\windows\SYSNATIVE\DRIVERS\ctxusbm.sys [x] S1 nltdi;nltdi;c:\program files\NetLimiter 3\nltdi.sys;c:\program files\NetLimiter 3\nltdi.sys [x] S1 SABI;SAMSUNG Kernel Driver For Windows 7;c:\windows\system32\Drivers\SABI.sys;c:\windows\SYSNATIVE\Drivers\SABI.sys [x] S2 3CX PhoneSystem Database Server;3CX PhoneSystem Database Server;C:/Program Files/3CX PhoneSystem/Bin/pgsql/bin/pg_ctl.exe runservice -N 3CX PhoneSystem Database Server -D C:/Program Files/3CX PhoneSystem/Data/DB;C:/Program Files/3CX PhoneSystem/Bin/pgsql/bin/pg_ctl.exe runservice -N 3CX PhoneSystem Database Server -D C:/Program Files/3CX PhoneSystem/Data/DB [x] S2 3CXAudioServiceProvider;3CX Audio Service Provider;c:\program files\3CX PhoneSystem\Bin\3CXAudioProvider.exe;c:\program files\3CX PhoneSystem\Bin\3CXAudioProvider.exe [x] S2 3CXCallHistoryService;3CX PhoneSystem Call History;c:\program files\3CX PhoneSystem\Bin\3CXCallHistoryService.exe;c:\program files\3CX PhoneSystem\Bin\3CXCallHistoryService.exe [x] S2 3CXCfgServ;3CX PhoneSystem Configuration Service;c:\program files\3CX PhoneSystem\Bin\3CXSLDBServ.exe;c:\program files\3CX PhoneSystem\Bin\3CXSLDBServ.exe [x] S2 3CXConferenceRoom;3CX PhoneSystem Conference Room;c:\program files\3CX PhoneSystem\Bin\3CXCP.exe;c:\program files\3CX PhoneSystem\Bin\3CXCP.exe [x] S2 3CXIvr;3CX PhoneSystem Digital Receptionist;c:\program files\3CX PhoneSystem\Bin\3CXIvrServer.exe;c:\program files\3CX PhoneSystem\Bin\3CXIvrServer.exe [x] S2 3CXMediaServer;3CX PhoneSystem Media Server;c:\program files\3CX PhoneSystem\Bin\3CXMediaServer.exe;c:\program files\3CX PhoneSystem\Bin\3CXMediaServer.exe [x] S2 3CXParkOrbit;3CX PhoneSystem Parking Orbit;c:\program files\3CX PhoneSystem\Bin\3CXPO.exe;c:\program files\3CX PhoneSystem\Bin\3CXPO.exe [x] S2 3CXPhoneSystem;3CX PhoneSystem;c:\program files\3CX PhoneSystem\Bin\3CXPhoneSystem.exe;c:\program files\3CX PhoneSystem\Bin\3CXPhoneSystem.exe [x] S2 3CXQueueManager;3CX PhoneSystem Queue Manager;c:\program files\3CX PhoneSystem\Bin\VCEHost.exe;c:\program files\3CX PhoneSystem\Bin\VCEHost.exe [x] S2 3CXTunnel;3CX PhoneSystem SIP/RTP Tunneling Proxy;c:\program files\3CX PhoneSystem\Bin\3CXTunnel.exe;c:\program files\3CX PhoneSystem\Bin\3CXTunnel.exe [x] S2 AdobeActiveFileMonitor7.0;Adobe Active File Monitor V7;c:\program files (x86)\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe;c:\program files (x86)\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe [x] S2 AntiVirSchedulerService;Avira Planer;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe [x] S2 AtherosSvc;AtherosSvc;c:\program files (x86)\Bluetooth Suite\adminservice.exe;c:\program files (x86)\Bluetooth Suite\adminservice.exe [x] S2 BackupStack;Computer Backup (MyPC Backup);c:\program files (x86)\MyPC Backup\BackupStack.exe;c:\program files (x86)\MyPC Backup\BackupStack.exe [x] S2 Fabs;FABS - Helping agent for MAGIX media database;c:\program files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe;c:\program files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe [x] S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x] S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;c:\program files\Intel\iCLS Client\HeciServer.exe;c:\program files\Intel\iCLS Client\HeciServer.exe [x] S2 Intel(R) ME Service;Intel(R) ME Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [x] S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [x] S2 RichVideo64;Cyberlink RichVideo64 Service(CRVS);c:\program files\CyberLink\Shared files\RichVideo64.exe;c:\program files\CyberLink\Shared files\RichVideo64.exe [x] S2 SamsungDeviceConfigurationWinService;SamsungDeviceConfiguration;c:\program files (x86)\Samsung\Easy Settings\SamsungDeviceConfiguration.exe;c:\program files (x86)\Samsung\Easy Settings\SamsungDeviceConfiguration.exe [x] S2 STRATO HiDrive Service;STRATO HiDrive Service;c:\program files (x86)\STRATO AG\STRATO HiDrive\STRATO HiDrive Service.exe;c:\program files (x86)\STRATO AG\STRATO HiDrive\STRATO HiDrive Service.exe [x] S2 SWUpdateService;SW Update Service;c:\programdata\Samsung\SW Update Service\SWMAgent.exe;c:\programdata\Samsung\SW Update Service\SWMAgent.exe [x] S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x] S2 WebCake Desktop Updater;WebCake Desktop Updater;c:\program files (x86)\WebCake\WebCakeDesktop.Updater.exe;c:\program files (x86)\WebCake\WebCakeDesktop.Updater.exe [x] S2 WTService;WTService;c:\windows\system32\atwtusb.exe;c:\windows\SYSNATIVE\atwtusb.exe [x] S2 ZAtheros Bt&Wlan Coex Agent;ZAtheros Bt&Wlan Coex Agent;c:\program files (x86)\Bluetooth Suite\Ath_CoexAgent.exe;c:\program files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [x] S3 AthBTPort;Atheros Virtual Bluetooth Class;c:\windows\system32\DRIVERS\btath_flt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_flt.sys [x] S3 BTATH_A2DP;Bluetooth A2DP Audio Driver;c:\windows\system32\drivers\btath_a2dp.sys;c:\windows\SYSNATIVE\drivers\btath_a2dp.sys [x] S3 btath_avdt;Atheros Bluetooth AVDT Service;c:\windows\system32\drivers\btath_avdt.sys;c:\windows\SYSNATIVE\drivers\btath_avdt.sys [x] S3 BTATH_BUS;Atheros Bluetooth Bus;c:\windows\system32\DRIVERS\btath_bus.sys;c:\windows\SYSNATIVE\DRIVERS\btath_bus.sys [x] S3 BTATH_HCRP;Bluetooth HCRP Server driver;c:\windows\system32\DRIVERS\btath_hcrp.sys;c:\windows\SYSNATIVE\DRIVERS\btath_hcrp.sys [x] S3 BTATH_LWFLT;Bluetooth LWFLT Device;c:\windows\system32\DRIVERS\btath_lwflt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_lwflt.sys [x] S3 BTATH_RCP;Bluetooth AVRCP Device;c:\windows\system32\DRIVERS\btath_rcp.sys;c:\windows\SYSNATIVE\DRIVERS\btath_rcp.sys [x] S3 BtFilter;BtFilter;c:\windows\system32\DRIVERS\btfilter.sys;c:\windows\SYSNATIVE\DRIVERS\btfilter.sys [x] S3 clwvd;CyberLink WebCam Virtual Driver;c:\windows\system32\DRIVERS\clwvd.sys;c:\windows\SYSNATIVE\DRIVERS\clwvd.sys [x] S3 IntcDAud;Intel(R) Display-Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x] S3 intelkmd;intelkmd;c:\windows\system32\DRIVERS\igdpmd64.sys;c:\windows\SYSNATIVE\DRIVERS\igdpmd64.sys [x] S3 iusb3hub;Intel(R) USB 3.0-Hubtreiber;c:\windows\system32\DRIVERS\iusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hub.sys [x] S3 iusb3xhc;Intel(R) USB 3.0 eXtensible-Hostcontrollertreiber;c:\windows\system32\DRIVERS\iusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3xhc.sys [x] S3 NLNdisMP;NLNdisMP;c:\windows\system32\DRIVERS\nlndis.sys;c:\windows\SYSNATIVE\DRIVERS\nlndis.sys [x] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x] . . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost] iissvcs REG_MULTI_SZ w3svc was apphost REG_MULTI_SZ apphostsvc . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}] 2013-08-01 23:25 1173456 ----a-w- c:\program files (x86)\Google\Chrome\Application\28.0.1500.95\Installer\chrmstp.exe . Inhalt des "geplante Tasks" Ordners . 2013-08-05 c:\windows\Tasks\FTdownloader V4.0-codedownloader.job - c:\program files (x86)\FTdownloader V4.0\FTdownloader V4.0-codedownloader.exe [2013-07-25 12:35] . 2013-08-05 c:\windows\Tasks\FTdownloader V4.0-enabler.job - c:\program files (x86)\FTdownloader V4.0\FTdownloader V4.0-enabler.exe [2013-07-25 12:35] . 2013-08-05 c:\windows\Tasks\FTdownloader V4.0-updater.job - c:\program files (x86)\FTdownloader V4.0\FTdownloader V4.0-updater.exe [2013-07-25 12:35] . 2013-07-15 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-01-18 16:58] . 2013-08-05 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-01-18 16:58] . 2013-01-15 c:\windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job - c:\program files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2012-03-26 19:24] . 2013-08-03 c:\windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job - c:\program files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2012-03-26 19:24] . 2013-06-05 c:\windows\Tasks\Plus-HD-1.8-chromeinstaller.job - c:\program files (x86)\Plus-HD-1.8\Plus-HD-1.8-chromeinstaller.exe [2013-05-20 08:03] . 2013-06-05 c:\windows\Tasks\Plus-HD-1.8-codedownloader.job - c:\program files (x86)\Plus-HD-1.8\Plus-HD-1.8-codedownloader.exe [2013-05-20 08:03] . 2013-06-05 c:\windows\Tasks\Plus-HD-1.8-enabler.job - c:\program files (x86)\Plus-HD-1.8\Plus-HD-1.8-enabler.exe [2013-05-20 08:03] . 2013-06-05 c:\windows\Tasks\Plus-HD-1.8-firefoxinstaller.job - c:\program files (x86)\Plus-HD-1.8\Plus-HD-1.8-firefoxinstaller.exe [2013-05-20 08:03] . 2013-06-05 c:\windows\Tasks\Plus-HD-1.8-updater.job - c:\program files (x86)\Plus-HD-1.8\Plus-HD-1.8-updater.exe [2013-05-20 08:04] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveBlacklistedOverlay] @="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}" [HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}] 2013-06-06 21:57 778192 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedEditOverlay] @="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}" . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedOverlay] @="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}" [HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}] 2013-06-06 21:57 778192 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedEditOverlay] @="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}" . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedOverlay] @="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}" [HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}] 2013-06-06 21:57 778192 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedViewOverlay] @="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}" [HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}] 2013-06-06 21:57 778192 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncedOverlay] @="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}" [HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}] 2013-06-06 21:57 778192 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncingOverlay] @="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}" [HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}] 2013-06-06 21:57 778192 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll . ------- Zusätzlicher Suchlauf ------- . uLocal Page = c:\windows\system32\blank.htm uStart Page = hxxp://www1.delta-search.com/?babsrc=HP_ss&mntrId=006500FF5501776D&affID=119357&tsp=4963 uDefault_Search_URL = hxxp://search.certified-toolbar.com?si=43169&st=chrome&tid=3580&ver=3.1&ts=1369217878645&tguid=43169-3580-1369217878645-991DEA46DB298FEF82771B40121C46EA&q= mDefault_Search_URL = hxxp://search.certified-toolbar.com?si=43169&st=chrome&tid=3580&ver=3.1&ts=1369217878645&tguid=43169-3580-1369217878645-991DEA46DB298FEF82771B40121C46EA&q= mDefault_Page_URL = hxxp://www.qvo6.com/?utm_source=b&utm_medium=ild&from=ild&uid=SanDiskXSDSSDP256G_123506402792&ts=1374755743 mStart Page = hxxp://www.qvo6.com/?utm_source=b&utm_medium=ild&from=ild&uid=SanDiskXSDSSDP256G_123506402792&ts=1374755743 mLocal Page = c:\windows\SysWOW64\blank.htm mSearch Page = hxxp://search.certified-toolbar.com?si=43169&st=chrome&tid=3580&ver=3.1&ts=1369217878645&tguid=43169-3580-1369217878645-991DEA46DB298FEF82771B40121C46EA&q= mSearch Bar = hxxp://search.certified-toolbar.com?si=43169&st=chrome&tid=3580&ver=3.1&ts=1369217878645&tguid=43169-3580-1369217878645-991DEA46DB298FEF82771B40121C46EA&q= uInternet Settings,ProxyServer = localhost:8080 IE: Nach Microsoft E&xel exportieren - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000 IE: {{0F7195C2-6713-4d93-A1BC-DA5FA33F0A65} - {E601996F-E400-41CA-804B-CD6373A7EEE2} - c:\program files (x86)\kikin\ie_kikin.dll TCP: DhcpNameServer = 192.168.43.1 TCP: Interfaces\{08B2B861-E66A-4C08-A64A-DD8D41B7936C}\3516E646B616374756E6: DhcpNameServer = 192.168.2.1 TCP: Interfaces\{08B2B861-E66A-4C08-A64A-DD8D41B7936C}\3596475636F6D6543313244383: DhcpNameServer = 192.168.0.1 TCP: Interfaces\{08B2B861-E66A-4C08-A64A-DD8D41B7936C}\4516B656944754163797: DhcpNameServer = 192.168.0.1 . - - - - Entfernte verwaiste Registrierungseinträge - - - - . BHO-{11111111-1111-1111-1111-110311551174} - c:\program files (x86)\FTdownloader V4.0\FTdownloader V4.0-bho.dll BHO-{BA7B8F39-DF7F-4A98-83E9-57CE6ED9CA24} - c:\users\Rafael\AppData\LocalLow\Flagfox\IE\Flagfox.dll BHO-{E601996F-E400-41CA-804B-CD6373A7EEE2} - c:\program files (x86)\kikin\ie_kikin.dll BHO-{EF7BD87A-8024-11E2-F316-F3E56188709B} - c:\program files (x86)\DealPly\DealPlyIE.dll HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start AddRemove-bi_uninstaller - c:\users\Rafael\Local Settings\Application Data\Bundled software uninstaller\biclient.exe AddRemove-DealPly - c:\program files (x86)\DealPly\uninst.exe AddRemove-kikin Plugin (NO23 Edition) - c:\program files (x86)\kikin\uninst.exe AddRemove-Organ One v. 2.10 - d:\vst\OrganOneUninstal.exe . . . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\3CX PhoneSystem Database Server] "ImagePath"="C:/Program Files/3CX PhoneSystem/Bin/pgsql/bin/pg_ctl.exe runservice -N \"3CX PhoneSystem Database Server\" -D \"C:/Program Files/3CX PhoneSystem/Data/DB\"" "ImagePath"="\"c:\program files\CyberLink\Shared files\RichVideo64.exe\"\00Z [\]^_‘\00\00‘\00\00\00\00HIJKLMNO\00\00\00\00\00\00\00\00\03\00\00\00|}~‘\00\00‘\00\00\00\00‘\00\00\00\00\00\00\00\00‘’“" . . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\3CX PhoneSystem Database Server] "ImagePath"="C:/Program Files/3CX PhoneSystem/Bin/pgsql/bin/pg_ctl.exe runservice -N \"3CX PhoneSystem Database Server\" -D \"C:/Program Files/3CX PhoneSystem/Data/DB\"" . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_LOCAL_MACHINE\SOFTWARE\BlueStacks] "SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79, 00,5c,00,4d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\ . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_7_700_224_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_7_700_224_ActiveX.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_7_700_224_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_7_700_224_ActiveX.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.11" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}] @Denied: (A) (Everyone) "Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B9A09F18-45AB-4F09-A117-A4ADDA8FA8C8}] @Denied: (A) (Everyone) "Solution"="{36eb6792-3a29-43b3-8cd0-f67d266fb426}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane] @Denied: (A) (Everyone) . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane\0] "Key"="ActionsPane" "Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\8.0\\ActionsPane.xsd" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3] @Denied: (A) (Everyone) . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0] "Key"="ActionsPane3" "Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0005\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0006\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . ------------------------ Weitere laufende Prozesse ------------------------ . c:\program files\3CX PhoneSystem\Bin\pgsql\bin\pg_ctl.exe c:\program files\3CX PhoneSystem\Bin\pgsql\bin\postgres.exe c:\program files (x86)\Avira\AntiVir Desktop\avguard.exe c:\program files\3CX PhoneSystem\Bin\pgsql\bin\postgres.exe c:\program files\3CX PhoneSystem\Bin\pgsql\bin\postgres.exe c:\program files\3CX PhoneSystem\Bin\pgsql\bin\postgres.exe c:\program files\3CX PhoneSystem\Bin\pgsql\bin\postgres.exe c:\program files\3CX PhoneSystem\Bin\pgsql\bin\postgres.exe c:\program files (x86)\Canon\IJPLM\IJPLMSVC.EXE c:\program files (x86)\CyberLink\Shared files\RichVideo.exe c:\program files\3CX PhoneSystem\Bin\pgsql\bin\postgres.exe c:\program files\3CX PhoneSystem\Bin\pgsql\bin\postgres.exe c:\program files\3CX PhoneSystem\Bin\pgsql\bin\postgres.exe c:\program files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler.exe c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe . ************************************************************************** . Zeit der Fertigstellung: 2013-08-06 00:01:27 - PC wurde neu gestartet ComboFix-quarantined-files.txt 2013-08-05 22:01 . Vor Suchlauf: 18 Verzeichnis(se), 57.746.825.216 Bytes frei Nach Suchlauf: 24 Verzeichnis(se), 57.684.750.336 Bytes frei . - - End Of File - - 1153C356958ECA0AF5BD7254A0960227 D41D8CD98F00B204E9800998ECF8427E |
09.08.2013, 10:36 | #7 |
/// the machine /// TB-Ausbilder | Laufend Werbeienblendungen und aufforderungen sicherheitsscans zu machen Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
12.08.2013, 00:01 | #8 |
| Laufend Werbeienblendungen und aufforderungen sicherheitsscans zu machenCode:
ATTFilter # AdwCleaner v2.306 - Datei am 12/08/2013 um 00:41:57 erstellt # Aktualisiert am 19/07/2013 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzer : Rafael - RAFAEL-NOTEBOOK # Bootmodus : Normal # Ausgeführt unter : C:\Users\Rafael\Desktop\adwcleaner.exe # Option [Löschen] **** [Dienste] **** Gestoppt & Gelöscht : SystemStoreService ***** [Dateien / Ordner] ***** Datei Desinfiziert : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk Datei Desinfiziert : C:\Users\Public\Desktop\Google Chrome.lnk Datei Desinfiziert : C:\Users\Rafael\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk Datei Desinfiziert : C:\Users\Rafael\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk Datei Desinfiziert : C:\Users\Rafael\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk Datei Desinfiziert : C:\Users\Rafael\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk Datei Desinfiziert : C:\Users\Rafael\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk Ordner Gelöscht : C:\Program Files (x86)\Browser Updater Ordner Gelöscht : C:\Program Files (x86)\delta Ordner Gelöscht : C:\Program Files (x86)\FTDownloader.com Ordner Gelöscht : C:\Program Files (x86)\PinPhotoZoom Ordner Gelöscht : C:\Program Files (x86)\Protected Search Ordner Gelöscht : C:\Program Files (x86)\SoftwareUpdater Ordner Gelöscht : C:\Program Files\DomaIQ Uninstaller Ordner Gelöscht : C:\ProgramData\Babylon Ordner Gelöscht : C:\Users\Rafael\AppData\Local\DownloadGuide Ordner Gelöscht : C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl Ordner Gelöscht : C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcillohgikpecbmgioknapdpcjofaafl Ordner Gelöscht : C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpmbfleldcgkldadpdinhjjopdfpjfjp Ordner Gelöscht : C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\Default\Extensions\mbdamgnimlipjnpgiakiojcbbmcmiibn Ordner Gelöscht : C:\Users\Rafael\AppData\Local\Temp\Smartbar Ordner Gelöscht : C:\Users\Rafael\AppData\Local\Wajam Ordner Gelöscht : C:\Users\Rafael\AppData\LocalLow\delta Ordner Gelöscht : C:\Users\Rafael\AppData\LocalLow\SimplyTech Ordner Gelöscht : C:\Users\Rafael\AppData\Roaming\Claro Ordner Gelöscht : C:\Users\Rafael\AppData\Roaming\DSite Ordner Gelöscht : C:\Users\Rafael\AppData\Roaming\eIntaller Ordner Gelöscht : C:\Users\Rafael\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DealPly Ordner Gelöscht : C:\Users\Rafael\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FTDownloader.com Ordner Gelöscht : C:\Users\Rafael\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wajam Ordner Gelöscht : C:\Users\Rafael\AppData\Roaming\PinPhotoZoom Ordner Gelöscht : C:\Windows\Installer\{069B290F-5398-4629-A009-85B4BCB4B1B9} Ordner Gelöscht : C:\Windows\Installer\{E55E7026-EF2A-4A17-AAA7-DB98EA3FD1B1} Ordner Gelöscht : C:\Windows\Installer\{EBE677C0-CBCB-4EBF-8098-E27E1B5271CF} ***** [Registrierungsdatenbank] ***** Schlüssel Gelöscht : HKCU\Software\1ClickDownload Schlüssel Gelöscht : HKCU\Software\APN PIP Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Crossrider Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\LyricsFinder Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\PriceGong Schlüssel Gelöscht : HKCU\Software\BabSolution Schlüssel Gelöscht : HKCU\Software\BI Schlüssel Gelöscht : HKCU\Software\DataMngr_Toolbar Schlüssel Gelöscht : HKCU\Software\DealPly Schlüssel Gelöscht : HKCU\Software\Delta Schlüssel Gelöscht : HKCU\Software\Google\Chrome\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl Schlüssel Gelöscht : HKCU\Software\InstallCore Schlüssel Gelöscht : HKCU\Software\InstalledBrowserExtensions Schlüssel Gelöscht : HKCU\Software\Microsoft\Babylon Schlüssel Gelöscht : HKCU\Software\Microsoft\ClaroDirectory Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{98889811-442D-49DD-99D7-DC866BE87DBC} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE07101B-46D4-4A98-AF68-0333EA26E113} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AF6B0594-6008-4327-93E5-608AD710A6FA} Schlüssel Gelöscht : HKCU\Software\SmartBar Schlüssel Gelöscht : HKCU\Software\SmartbarBackup Schlüssel Gelöscht : HKCU\Software\SmartbarLog Schlüssel Gelöscht : HKCU\Software\Softonic Schlüssel Gelöscht : HKCU\Software\Wajam Schlüssel Gelöscht : HKCU\Software\5b6d8dce06eee13 Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5} Schlüssel Gelöscht : HKLM\Software\Babylon Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{011166B1-9A69-4174-93D5-F7D3324553FE} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{1FAEE6D5-34F4-42AA-8025-3FD8F3EC4634} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{39CB8175-E224-4446-8746-00566302DF8D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{50F7F0BE-31BA-4145-BD8B-6B0DECFED804} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{7169BBB3-3289-4696-B35D-4A88BCF6FB12} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{C3110516-8EFC-49D6-8B72-69354F332062} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{D616A4A2-7B38-4DBC-9093-6FE7A4A21B17} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\AutocompletePro.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escort.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\esrv.EXE Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\priam_bho.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Applications\ilividsetup.exe Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0032540.BHO Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0032540.Sandbox Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0032540.Sandbox.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0035574.BHO Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0035574.Sandbox Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0035574.Sandbox.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\IESmartBar.BandObjectAttribute Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\IESmartBar.DockingPanel Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\IESmartBar.IESmartBar Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\IESmartBar.IESmartBarBandObject Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\IESmartBar.SmartbarDisplayState Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\IESmartBar.SmartbarMenuForm Schlüssel Gelöscht : HKLM\Software\Classes\Installer\Features\0C776EBEBCBCFBE408892EE7B12517FC Schlüssel Gelöscht : HKLM\Software\Classes\Installer\Features\7E685771E24E83F4381D1DB5A45F7B41 Schlüssel Gelöscht : HKLM\Software\Classes\Installer\Features\F092B960893592640A90584BCB4B1B9B Schlüssel Gelöscht : HKLM\Software\Classes\Installer\Products\0C776EBEBCBCFBE408892EE7B12517FC Schlüssel Gelöscht : HKLM\Software\Classes\Installer\Products\7E685771E24E83F4381D1DB5A45F7B41 Schlüssel Gelöscht : HKLM\Software\Classes\Installer\Products\F092B960893592640A90584BCB4B1B9B Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Prod.cap Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{4599D05A-D545-4069-BB42-5895B4EAE05B} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\wajam.WajamDownloader Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\wajam.WajamDownloader.1 Schlüssel Gelöscht : HKLM\Software\DataMngr Schlüssel Gelöscht : HKLM\Software\DealPly Schlüssel Gelöscht : HKLM\Software\Delta Schlüssel Gelöscht : HKLM\Software\Desksvc Schlüssel Gelöscht : HKLM\Software\eSafeSecControl Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetup_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetup_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\QuickShare_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\QuickShare_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SnapDo_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SnapDo_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110311251140} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110311551174} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{AF6B0594-6008-4327-93E5-608AD710A6FA} Schlüssel Gelöscht : HKLM\Software\PIP Schlüssel Gelöscht : HKLM\Software\qvo6Software Schlüssel Gelöscht : HKLM\Software\SimplyGen Schlüssel Gelöscht : HKLM\Software\V9 Schlüssel Gelöscht : HKLM\Software\Wajam Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\5b6d8dce06eee13 Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{11111111-1111-1111-1111-110311251140} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{11111111-1111-1111-1111-110311551174} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{22222222-2222-2222-2222-220322252240} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{22222222-2222-2222-2222-220322552274} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{5D64294B-1341-4FE7-B6D8-7C36828D4DD5} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{AF6B0594-6008-4327-93E5-608AD710A6FA} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{DF84E609-C3A4-49CB-A160-61767DAF8899} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E601996F-E400-41CA-804B-CD6373A7EEE2} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{EF7BD87A-8024-11E2-F316-F3E56188709B} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1231839B-064E-4788-B865-465A1B5266FD} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2DAC2231-CC35-482B-97C5-CED1D4185080} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{55555555-5555-5555-5555-550355255540} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{55555555-5555-5555-5555-550355555574} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{57C91446-8D81-4156-A70E-624551442DE9} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{66666666-6666-6666-6666-660366256640} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{66666666-6666-6666-6666-660366556674} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{7AD65FD1-79E0-406D-B03C-DD7C14726D69} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{97DD820D-2E20-40AD-B01E-6730B2FCE630} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B177446D-54A4-4869-BABC-8566110B4BE0} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C9AE652B-8C99-4AC2-B556-8B501182874E} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DF84E609-C3A4-49CB-A160-61767DAF8899} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{F05B12E1-ADE8-4485-B45B-898748B53C37} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\dcillohgikpecbmgioknapdpcjofaafl Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eooncjejnppfjjklapaamhcdmjbilmde Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\fmfnfnpmhcllokmkepffndflpnadjmma Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\jpmbfleldcgkldadpdinhjjopdfpjfjp Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\mbdamgnimlipjnpgiakiojcbbmcmiibn Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{348C2DF3-1191-4C3E-92A6-B3A89A9D9C85} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CFD485F0-96BD-47CD-BB6D-CD7DDA95F102} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311251140} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311551174} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E601996F-E400-41CA-804B-CD6373A7EEE2} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EF7BD87A-8024-11E2-F316-F3E56188709B} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{5dfd64a7-81dd-45a9-9874-1fe13b7f4d56}_is1 Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{EBE677C0-CBCB-4EBF-8098-E27E1B5271CF} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\1ClickDownload Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\bi_uninstaller Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\DealPly Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\DomaIQ Uninstaller Schlüssel Gelöscht : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WajamUpdater Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{31AD400D-1B06-4E33-A59A-90C2C140CBA0} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{1231839B-064E-4788-B865-465A1B5266FD} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2DAC2231-CC35-482B-97C5-CED1D4185080} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{431532BD-0AE1-4ABC-BE8C-919F3D1332E2} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355255540} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355555574} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{57C91446-8D81-4156-A70E-624551442DE9} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366256640} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366556674} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{7AD65FD1-79E0-406D-B03C-DD7C14726D69} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{97DD820D-2E20-40AD-B01E-6730B2FCE630} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B177446D-54A4-4869-BABC-8566110B4BE0} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C9AE652B-8C99-4AC2-B556-8B501182874E} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DF84E609-C3A4-49CB-A160-61767DAF8899} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{F05B12E1-ADE8-4485-B45B-898748B53C37} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31AD400D-1B06-4E33-A59A-90C2C140CBA0} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C4ED781C-7394-4906-AAFF-D6AB64FF7C38} Wert Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}] Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}] ***** [Internet Browser] ***** -\\ Internet Explorer v10.0.9200.16635 Ersetzt : [HKCU\Software\Microsoft\Internet Explorer\Main - Start Default_Page_URL] = hxxp://search.certified-toolbar.com?si=43169&st=home&tid=3580&ver=3.1&ts=1369217878645&tguid=43169-3580-1369217878645-991DEA46DB298FEF82771B40121C46EA --> hxxp://www.google.com Ersetzt : [HKCU\Software\Microsoft\Internet Explorer\Search - Start Page] = hxxp://search.certified-toolbar.com?si=43169&st=home&tid=3580&ver=3.1&ts=1369217878645&tguid=43169-3580-1369217878645-991DEA46DB298FEF82771B40121C46EA --> hxxp://www.google.com Ersetzt : [HKCU\Software\Microsoft\Internet Explorer\Search - Start Default_Page_URL] = hxxp://search.certified-toolbar.com?si=43169&st=home&tid=3580&ver=3.1&ts=1369217878645&tguid=43169-3580-1369217878645-991DEA46DB298FEF82771B40121C46EA --> hxxp://www.google.com Ersetzt : [HKCU\Software\Microsoft\Internet Explorer\Search - Search Bar] = hxxp://search.certified-toolbar.com?si=43169&st=chrome&tid=3580&ver=3.1&ts=1369217878645&tguid=43169-3580-1369217878645-991DEA46DB298FEF82771B40121C46EA&q= --> hxxp://www.google.com Ersetzt : [HKCU\Software\Microsoft\Internet Explorer\Search - Search Page] = hxxp://search.certified-toolbar.com?si=43169&st=chrome&tid=3580&ver=3.1&ts=1369217878645&tguid=43169-3580-1369217878645-991DEA46DB298FEF82771B40121C46EA&q= --> hxxp://www.google.com Ersetzt : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - Start Page] = hxxp://search.certified-toolbar.com?si=43169&st=home&tid=3580&ver=3.1&ts=1369217878645&tguid=43169-3580-1369217878645-991DEA46DB298FEF82771B40121C46EA --> hxxp://www.google.com Ersetzt : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - Start Default_Page_URL] = hxxp://search.certified-toolbar.com?si=43169&st=home&tid=3580&ver=3.1&ts=1369217878645&tguid=43169-3580-1369217878645-991DEA46DB298FEF82771B40121C46EA --> hxxp://www.google.com Ersetzt : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - Search Bar] = hxxp://search.certified-toolbar.com?si=43169&st=chrome&tid=3580&ver=3.1&ts=1369217878645&tguid=43169-3580-1369217878645-991DEA46DB298FEF82771B40121C46EA&q= --> hxxp://www.google.com Ersetzt : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - Search Page] = hxxp://search.certified-toolbar.com?si=43169&st=chrome&tid=3580&ver=3.1&ts=1369217878645&tguid=43169-3580-1369217878645-991DEA46DB298FEF82771B40121C46EA&q= --> hxxp://www.google.com Ersetzt : [HKCU\Software\Microsoft\Internet Explorer\SearchUrl - (Default)] = hxxp://search.certified-toolbar.com?si=43169&st=bs&tid=3580&ver=3.1&ts=1369217878645&tguid=43169-3580-1369217878645-991DEA46DB298FEF82771B40121C46EA&q=%s --> hxxp://www.google.com Ersetzt : [HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl - (Default)] = hxxp://search.certified-toolbar.com?si=43169&st=bs&tid=3580&ver=3.1&ts=1369217878645&tguid=43169-3580-1369217878645-991DEA46DB298FEF82771B40121C46EA&q=%s --> hxxp://www.google.com Ersetzt : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main - Start Page] = hxxp://www.qvo6.com/?utm_source=b&utm_medium=ild&from=ild&uid=SanDiskXSDSSDP256G_123506402792&ts=1374755743 --> hxxp://www.google.com Ersetzt : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Default_Page_URL] = hxxp://www.qvo6.com/?utm_source=b&utm_medium=ild&from=ild&uid=SanDiskXSDSSDP256G_123506402792&ts=1374755743 --> hxxp://www.google.com Ersetzt : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Start Page] = hxxp://www.qvo6.com/?utm_source=b&utm_medium=ild&from=ild&uid=SanDiskXSDSSDP256G_123506402792&ts=1374755743 --> hxxp://www.google.com Ersetzt : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Start Default_Page_URL] = hxxp://search.certified-toolbar.com?si=43169&st=home&tid=3580&ver=3.1&ts=1369217878645&tguid=43169-3580-1369217878645-991DEA46DB298FEF82771B40121C46EA --> hxxp://www.google.com -\\ Google Chrome v28.0.1500.95 Datei : C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\Default\Preferences [OK] Die Datei ist sauber. -\\ Opera v [Version kann nicht ermittelt werden] Datei : C:\Users\Rafael\AppData\Roaming\Opera\Opera\operaprefs.ini [OK] Die Datei ist sauber. ************************* AdwCleaner[S1].txt - [23410 octets] - [12/08/2013 00:41:57] ########## EOF - C:\AdwCleaner[S1].txt - [23471 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 5.4.2 (08.11.2013:1) OS: Windows 7 Home Premium x64 Ran by Rafael on 12.08.2013 at 0:46:16,42 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services Successfully stopped: [Service] backupstack Successfully deleted: [Service] backupstack ~~~ Registry Values Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\qtraxnotification Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_DLLs Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-21-3536927246-4108328286-410282938-1000\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\DisplayName Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\URL Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Search Bar Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Search Page Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\\Default_Search_URL Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchURL\\Default Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\searchURL\\Default Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\\SearchAssistant ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{A0B10EBE-4E51-4CAE-949B-E6B9E7D68CEA} Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{BB975E58-E769-4E5A-BA12-B765BC559FF3} Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{F511AFDB-726E-4458-90E7-1ECB97406544} Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{FB684D26-01F4-4D9D-87CB-F486BEBA56DC} Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{0AFD55C8-ADF8-4A33-A6E1-DEDB7A36AEB4} Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\powerpack Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\lyrixeeker ~~~ Files Successfully deleted: [File] C:\Windows\Tasks\Plus-HD-1.8-chromeinstaller.job Successfully deleted: [File] C:\Windows\Tasks\Plus-HD-1.8-codedownloader.job Successfully deleted: [File] C:\Windows\Tasks\Plus-HD-1.8-enabler.job Successfully deleted: [File] C:\Windows\Tasks\Plus-HD-1.8-firefoxinstaller.job Successfully deleted: [File] C:\Windows\Tasks\Plus-HD-1.8-updater.job Successfully deleted: [File] "C:\Windows\wininit.ini" ~~~ Folders Successfully deleted: [Folder] "C:\ProgramData\simplitec" Successfully deleted: [Folder] "C:\ProgramData\ytd video downloader" Successfully deleted: [Folder] "C:\Users\Rafael\AppData\Roaming\digitalsite" Successfully deleted: [Folder] "C:\Users\Rafael\AppData\Roaming\simplitec" Successfully deleted: [Folder] "C:\Program Files (x86)\mypc backup" Successfully deleted: [Folder] "C:\Program Files (x86)\openit" Successfully deleted: [Folder] "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ytd video downloader" Successfully deleted: [Folder] "C:\Windows\syswow64\ai_recyclebin" Failed to delete: [Folder] "C:\Users\Rafael\Qtrax" ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 12.08.2013 at 0:49:47,90 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
12.08.2013, 08:18 | #9 |
/// the machine /// TB-Ausbilder | Laufend Werbeienblendungen und aufforderungen sicherheitsscans zu machenESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
12.08.2013, 12:32 | #10 |
| Laufend Werbeienblendungen und aufforderungen sicherheitsscans zu machenCode:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=17fa3a2ce36635448b0952b36164213a # engine=14743 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2013-08-12 10:52:29 # local_time=2013-08-12 12:52:29 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1033 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode=1799 16775165 100 96 13406 15907911 6193 0 # compatibility_mode=5893 16776574 100 94 2775729 127934599 0 0 # scanned=478486 # found=7 # cleaned=0 # scan_time=8016 sh=087E7D6858E15E886123F2EE95B8045EFECCAABC ft=0 fh=0000000000000000 vn="HTML/ScrInject.B.Gen virus" ac=I fn="C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000da7" sh=379CF3388CDAA89C36331A555999922B4275721D ft=0 fh=0000000000000000 vn="HTML/ScrInject.B.Gen virus" ac=I fn="C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00103d" sh=AB362743E04DEC13B98B8C396BBE96A8CBDC2502 ft=0 fh=0000000000000000 vn="HTML/ScrInject.B.Gen virus" ac=I fn="C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\Default\Cache\f_001209" sh=B9C8176274555ABA69309DA9F5498E72E18EC877 ft=0 fh=0000000000000000 vn="HTML/ScrInject.B.Gen virus" ac=I fn="C:\Users\Rafael\AppData\Local\Opera\Opera\cache\g_0041\opr006HV.tmp" sh=C69EEAA4E8AE23AAED4CE209539D913AE58B93C8 ft=0 fh=0000000000000000 vn="a variant of Win32/Injector.MDS trojan" ac=I fn="F:\$RECYCLE.BIN\S-1-5-21-94658847-2348688126-151141772-1000\$R01EH5S\EBooks erstellen +Programme\AVS.Document.Converter.v2.1.2.182.Cracked-F4CG.rar" sh=C2853BD2C5E7CEEDCF43C5D14D1F4A9598476987 ft=1 fh=0cb3c778517c42b0 vn="a variant of Win32/Injector.MDS trojan" ac=I fn="F:\$RECYCLE.BIN\S-1-5-21-94658847-2348688126-151141772-1000\$R01EH5S\EBooks erstellen +Programme\AVS.Document.Converter.v2.1.2.182.Cracked-F4CG\Crack\AVSDocumentConverter.exe" sh=549576C3043357DE2709F12BD4B6EE3066B5C6B9 ft=0 fh=0000000000000000 vn="multiple threats" ac=I fn="F:\Download\Samsung Galxy S2\Root Programm\SuperOneClickv2.3.3-ShortFuse.zip" Code:
ATTFilter Results of screen317's Security Check version 0.99.71 Windows 7 Service Pack 1 x64 (UAC is enabled) Internet Explorer 10 ``````````````Antivirus/Firewall Check:`````````````` Avira Desktop Antivirus up to date! (On Access scanning disabled!) `````````Anti-malware/Other Utilities Check:````````` Malwarebytes Anti-Malware Version 1.75.0.1300 Java 7 Update 25 Adobe Flash Player 11.5.502.146 Flash Player out of Date! Adobe Reader XI Mozilla Thunderbird (17.0.8) Google Chrome 28.0.1500.72 Google Chrome 28.0.1500.95 ````````Process Check: objlist.exe by Laurent```````` Avira Antivir avgnt.exe Avira Antivir avguard.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-08-2013 02 Ran by Rafael (administrator) on 12-08-2013 13:30:58 Running from C:\Users\Rafael\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\OW0ID49Y Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (PostgreSQL Global Development Group) C:\Program Files\3CX PhoneSystem\Bin\pgsql\bin\pg_ctl.exe (3CX Ltd.) C:\Program Files\3CX PhoneSystem\Bin\3CXTunnel.exe (PostgreSQL Global Development Group) C:\Program Files\3CX PhoneSystem\Bin\pgsql\bin\postgres.exe (ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\adminservice.exe (PostgreSQL Global Development Group) C:\Program Files\3CX PhoneSystem\Bin\pgsql\bin\postgres.exe (PostgreSQL Global Development Group) C:\Program Files\3CX PhoneSystem\Bin\pgsql\bin\postgres.exe (PostgreSQL Global Development Group) C:\Program Files\3CX PhoneSystem\Bin\pgsql\bin\postgres.exe (PostgreSQL Global Development Group) C:\Program Files\3CX PhoneSystem\Bin\pgsql\bin\postgres.exe (Microsoft Corporation) C:\Windows\system32\inetsrv\inetinfo.exe (PostgreSQL Global Development Group) C:\Program Files\3CX PhoneSystem\Bin\pgsql\bin\postgres.exe () C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Microsoft Corporation) C:\Windows\system32\mqsvc.exe (Locktime Software) C:\Program Files\NetLimiter 3\nlsvc.exe () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe () C:\Program Files\CyberLink\Shared files\RichVideo64.exe (ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe () C:\Program Files (x86)\Samsung\Easy Settings\SamsungDeviceConfiguration.exe (STRATO) C:\Program Files (x86)\STRATO AG\STRATO HiDrive\STRATO HiDrive Service.exe (Samsung Electronics CO., LTD.) C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe () C:\Windows\system32\atwtusb.exe () C:\Windows\system32\atwtusb.exe (Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe (3CX Ltd.) C:\Program Files\3CX PhoneSystem\Bin\3CXSLDBServ.exe (Microsoft Corporation) C:\Windows\system32\mqtgsvc.exe (PostgreSQL Global Development Group) C:\Program Files\3CX PhoneSystem\Bin\pgsql\bin\postgres.exe (PostgreSQL Global Development Group) C:\Program Files\3CX PhoneSystem\Bin\pgsql\bin\postgres.exe (3CX Software Ltd.) C:\Program Files\3CX PhoneSystem\Bin\3CXAudioProvider.exe (3CX Software Ltd.) C:\Program Files\3CX PhoneSystem\Bin\3CXPhoneSystem.exe (3CX Ltd.) C:\Program Files\3CX PhoneSystem\Bin\3CXCallHistoryService.exe (3CX Software Ltd.) C:\Program Files\3CX PhoneSystem\Bin\3CXCP.exe (3CX Software Ltd.) C:\Program Files\3CX PhoneSystem\Bin\3CXIvrServer.exe (3CX) C:\Program Files\3CX PhoneSystem\Bin\3CXMediaServer.exe (3CX Software Ltd.) C:\Program Files\3CX PhoneSystem\Bin\3CXPO.exe (3CX Ltd.) C:\Program Files\3CX PhoneSystem\Bin\VCEHost.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Easy Settings\SmartSetting.exe (Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Easy Settings\dmhkcore.exe (Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Easy Settings\MovieColorEnhancer.exe (Samsung Electronics) C:\Program Files (x86)\Samsung\Easy Settings\EasySpeedUpManager.exe (Intel Corporation) C:\Windows\system32\igfxext.exe (Intel Corporation) C:\Windows\system32\igfxsrvc.exe (Samsung Electronics CO., LTD.) C:\Program Files\Samsung\Easy Support Center\SamoyedAgent.exe (Samsung Electronics CO., LTD.) C:\Program Files\Samsung\S Agent\CommonAgent.exe (PostgreSQL Global Development Group) C:\Program Files\3CX PhoneSystem\Bin\pgsql\bin\postgres.exe (MAGIX AG) C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler64.exe () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\Media+Player10\Media+Player10Serv.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Intel Corporation) C:\Windows\system32\hkcmd.exe (Intel Corporation) C:\Windows\system32\igfxpers.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKCU\...\RunOnce: [FlashPlayerUpdate] - C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_7_700_224_ActiveX.exe -update activex [814472 2013-06-13] (Adobe Systems Incorporated) HKCU\...\Policies\system: [DisableLockWorkstation] 0 HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [345144 2013-07-01] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [ArcSoft Connection Service] - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [207424 2010-10-27] (ArcSoft Inc.) Startup: C:\Users\Rafael\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk ShortcutTarget: MyPC Backup.lnk -> C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe (No File) BootExecute: autocheck autochk * sdnclean64.exe ==================== Internet (Whitelisted) ==================== ProxyServer: localhost:8080 StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO-x32: DivX Plus Web Player HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations) BHO-x32: Flagfox - {BA7B8F39-DF7F-4A98-83E9-57CE6ED9CA24} - C:\Users\Rafael\AppData\LocalLow\Flagfox\IE\Flagfox.dll No File BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) DPF: HKLM {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Filter: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File Filter: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - No File Filter-x32: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Filter-x32: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.43.1 Chrome: ======= CHR HomePage: hxxp://feed.snapdo.com/?publisher=SnapdoGOblidooYB&dpid=SnapdoGOblidooYB&co=DE&userid=f0eddb74-5b62-1874-3bbd-daaf539e9abc&searchtype=hp&installDate=10/08/2013 CHR RestoreOnStartup: "hxxp://www.google.de/" CHR DefaultSearchURL: (Web) - hxxp://feed.snapdo.com/?publisher=SnapdoGOblidooYB&dpid=SnapdoGOblidooYB&co=DE&userid=f0eddb74-5b62-1874-3bbd-daaf539e9abc&searchtype=ds&q={searchTerms}&installDate=10/08/2013 CHR DefaultSuggestURL: (Web) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms} CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.95\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.95\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.95\pdf.dll () CHR Plugin: (GoogleChromeRemotePlugin) - C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl\1.4_0\GoogleChromeRemotePlugin.dll No File CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (QuickTime Plug-in 7.7.3) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.7.3) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin2.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.7.3) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin3.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.7.3) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin4.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.7.3) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin5.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.7.3) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin6.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.7.3) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin7.dll (Apple Inc.) CHR Plugin: (CANON iMAGE GATEWAY Album Plugin Utility) - C:\Program Files (x86)\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.) CHR Plugin: (DivX VOD Helper Plug-in) - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) CHR Plugin: (DivX Plus Web Player) - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC) CHR Plugin: (Google Earth Plugin) - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) CHR Plugin: (Intel\u00AE Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) CHR Plugin: (Intel\u00AE Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) CHR Plugin: (Java(TM) Platform SE 7 U25) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_146.dll () CHR Plugin: (Java Deployment Toolkit 7.0.250.17) - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) CHR Extension: (Bazaar Friend) - C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmobdmpfgfimbnmhhnkmmecdboblafdh\2.0.0.0_0 CHR Extension: (Flagfox) - C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfdfamfnacokbbbnmpdfmhonipnhmbid\4.2.781_0 CHR Extension: (Games Center) - C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\Default\Extensions\dehjbbcmklelglapfndfbomoaooippkb\1.0_0 CHR Extension: (DivX Plus Web Player HTML5 \u003Cvideo\u003E) - C:\Users\Rafael\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.172_0 CHR HKLM\...\Chrome\Extension: [bmobdmpfgfimbnmhhnkmmecdboblafdh] - C:\Users\Rafael\AppData\Local\BazaarFriend.crx CHR HKLM-x32\...\Chrome\Extension: [bmobdmpfgfimbnmhhnkmmecdboblafdh] - C:\Users\Rafael\AppData\Local\BazaarFriend.crx CHR HKLM-x32\...\Chrome\Extension: [cfdfamfnacokbbbnmpdfmhonipnhmbid] - C:\Users\Rafael\AppData\LocalLow\Flagfox\CHROME\Flagfox.crx CHR HKLM-x32\...\Chrome\Extension: [dehjbbcmklelglapfndfbomoaooippkb] - C:\Program Files (x86)\GamesCenter\GamesCenter.crx CHR HKLM-x32\...\Chrome\Extension: [lgnbhdnimikkoodkogjlcllngimhlapp] - C:\Program Files (x86)\FTDownloader.com\FTDownloader10.crx CHR HKLM-x32\...\Chrome\Extension: [nneajnkjbffgblleaoojgaacokifdkhm] - C:\Program Files (x86)\DivX\DivX Plus Web Player\chrome\DivXHTML5\DivXHTML5.crx CHR StartMenuInternet: Google Chrome - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Services (Whitelisted) ================= R2 3CXAudioServiceProvider; C:\Program Files\3CX PhoneSystem\Bin\3CXAudioProvider.exe [1197384 2013-01-28] (3CX Software Ltd.) R2 3CXCallHistoryService; C:\Program Files\3CX PhoneSystem\Bin\3CXCallHistoryService.exe [229192 2013-01-28] (3CX Ltd.) R2 3CXCfgServ; C:\Program Files\3CX PhoneSystem\Bin\3CXSLDBServ.exe [915784 2013-01-28] (3CX Ltd.) R2 3CXConferenceRoom; C:\Program Files\3CX PhoneSystem\Bin\3CXCP.exe [3036488 2013-01-28] (3CX Software Ltd.) S2 3CXFAXSrv; C:\Program Files\3CX PhoneSystem\Bin\3CXFaxServer.exe [3009352 2013-01-28] (3CX Software Ltd.) R2 3CXIvr; C:\Program Files\3CX PhoneSystem\Bin\3CXIvrServer.exe [5364552 2013-01-28] (3CX Software Ltd.) R2 3CXMediaServer; C:\Program Files\3CX PhoneSystem\Bin\3CXMediaServer.exe [1788232 2013-01-28] (3CX) R2 3CXParkOrbit; C:\Program Files\3CX PhoneSystem\Bin\3CXPO.exe [2976072 2013-01-28] (3CX Software Ltd.) R2 3CXPhoneSystem; C:\Program Files\3CX PhoneSystem\Bin\3CXPhoneSystem.exe [5629256 2013-01-28] (3CX Software Ltd.) R2 3CXQueueManager; C:\Program Files\3CX PhoneSystem\Bin\VCEHost.exe [2941256 2013-01-28] (3CX Ltd.) R2 3CXTunnel; C:\Program Files\3CX PhoneSystem\Bin\3CXTunnel.exe [1994056 2013-01-28] (3CX Ltd.) R2 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-07-01] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-07-01] (Avira Operations GmbH & Co. KG) R2 IISADMIN; C:\Windows\system32\inetsrv\inetinfo.exe [15872 2010-11-21] (Microsoft Corporation) R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [116104 2010-04-05] () R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [127320 2012-04-18] () R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [164184 2012-04-18] (Intel Corporation) R2 MSMQ; C:\Windows\system32\mqsvc.exe [9216 2009-07-14] (Microsoft Corporation) R2 MSMQTriggers; C:\Windows\system32\mqtgsvc.exe [189440 2010-11-21] (Microsoft Corporation) R2 nlsvc; C:\Program Files\NetLimiter 3\nlsvc.exe [1845248 2011-03-21] (Locktime Software) S4 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2804568 2010-06-01] (Symantec Corporation) R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [244904 2009-12-01] () R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [390672 2012-10-16] () R2 SamsungDeviceConfigurationWinService; C:\Program Files (x86)\Samsung\Easy Settings\SamsungDeviceConfiguration.exe [31624 2012-02-13] () R2 STRATO HiDrive Service; C:\Program Files (x86)\STRATO AG\STRATO HiDrive\STRATO HiDrive Service.exe [32768 2011-07-05] (STRATO) R2 SWUpdateService; C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe [2956336 2013-05-15] (Samsung Electronics CO., LTD.) R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [453120 2010-11-21] (Microsoft Corporation) R2 WTService; C:\Windows\system32\atwtusb.exe [584192 2012-02-07] () R2 ZAtheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [163456 2012-03-09] (Atheros) R2 3CX PhoneSystem Database Server; C:/Program Files/3CX PhoneSystem/Bin/pgsql/bin/pg_ctl.exe runservice -N "3CX PhoneSystem Database Server" -D "C:/Program Files/3CX PhoneSystem/Data/DB" [x] S2 BstHdAndroidSvc; "C:\Program Files (x86)\BlueStacks\HD-Service.exe" BstHdAndroidSvc Android [x] S2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [x] ==================== Drivers (Whitelisted) ==================== R0 amdkmpfd; C:\Windows\System32\DRIVERS\amdkmpfd.sys [32896 2012-03-20] (Advanced Micro Devices, Inc.) S3 androidusb; C:\Windows\System32\Drivers\androidusb.sys [31744 2011-05-09] (Google Inc) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [100712 2013-04-08] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [130016 2013-04-08] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-04-08] (Avira Operations GmbH & Co. KG) S3 BEHRINGER_2902; C:\Windows\System32\Drivers\BUSB2902.sys [460864 2009-10-30] (BEHRINGER) S3 BUSB_AUDIO_WDM; C:\Windows\System32\drivers\busbwdm.sys [49728 2009-10-30] (BEHRINGER) S3 moufiltr; C:\Windows\System32\DRIVERS\moufiltr.sys [7680 2009-03-08] (Windows (R) Codename Longhorn DDK provider) R3 MQAC; C:\Windows\System32\drivers\mqac.sys [189440 2009-07-14] (Microsoft Corporation) R1 nltdi; C:\Program Files\NetLimiter 3\nltdi.sys [88200 2011-03-21] (Locktime Software) S3 vhidmini; C:\Windows\System32\DRIVERS\walvhid.sys [7552 2009-08-26] (Windows (R) Win 7 DDK provider) S2 BstHdDrv; \??\C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [x] S3 catchme; \??\C:\ComboFix\catchme.sys [x] S3 dgderdrv; System32\drivers\dgderdrv.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-08-12 13:24 - 2013-08-12 13:24 - 00891098 _____ C:\Users\Rafael\Downloads\SecurityCheck.exe 2013-08-12 10:30 - 2013-08-12 10:30 - 00000000 ____D C:\Program Files (x86)\ESET 2013-08-12 10:26 - 2013-08-12 10:26 - 02347384 _____ (ESET) C:\Users\Rafael\Downloads\esetsmartinstaller_enu.exe 2013-08-12 10:26 - 2013-08-12 10:26 - 02347384 _____ (ESET) C:\Users\Rafael\Downloads\esetsmartinstaller_enu (1).exe 2013-08-12 01:05 - 2013-08-12 01:05 - 00000000 ____D C:\Users\Rafael\AppData\Local\ArcSoft 2013-08-12 01:04 - 2013-08-12 01:05 - 00000000 ___HD C:\ProgramData\ArcSoft 2013-08-12 01:04 - 2013-08-12 01:04 - 00002153 _____ C:\Users\Public\Desktop\Media Impression 2.lnk 2013-08-12 01:04 - 2013-08-12 01:04 - 00000215 _____ C:\Users\Public\Desktop\ArcSoft Products and Bonus Offers.url 2013-08-12 01:04 - 2006-11-14 11:31 - 00022784 _____ (Arcsoft, Inc.) C:\Windows\SysWOW64\Drivers\afc.sys 2013-08-12 01:03 - 2013-08-12 01:06 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\ArcSoft 2013-08-12 01:03 - 2013-08-12 01:03 - 00000000 ____D C:\Program Files (x86)\ArcSoft 2013-08-12 00:57 - 2013-08-12 10:23 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2013-08-12 00:49 - 2013-08-12 00:49 - 00004478 _____ C:\Users\Rafael\Desktop\JRT.txt 2013-08-12 00:46 - 2013-08-12 00:46 - 00000000 ____D C:\Windows\ERUNT 2013-08-12 00:45 - 2013-08-12 00:45 - 00958573 _____ (Oleg N. Scherbakov) C:\Users\Rafael\Downloads\JRT.exe 2013-08-12 00:45 - 2013-08-12 00:45 - 00958573 _____ (Oleg N. Scherbakov) C:\Users\Rafael\Desktop\JRT.exe 2013-08-12 00:41 - 2013-08-12 00:42 - 00023473 _____ C:\AdwCleaner[S1].txt 2013-08-12 00:40 - 2013-08-12 00:39 - 00666633 _____ C:\Users\Rafael\Desktop\adwcleaner.exe 2013-08-12 00:39 - 2013-08-12 00:39 - 00666633 _____ C:\Users\Rafael\Downloads\adwcleaner.exe 2013-08-10 04:57 - 2013-08-10 04:57 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\Malwarebytes 2013-08-10 04:56 - 2013-08-10 04:56 - 00001109 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-08-10 04:56 - 2013-08-10 04:56 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-08-10 04:56 - 2013-08-10 04:56 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-08-10 04:56 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2013-08-10 04:55 - 2013-08-10 04:55 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Rafael\Downloads\mbam-setup-1.75.0.1300.exe 2013-08-10 04:42 - 2013-08-10 05:27 - 01114112 _____ C:\Users\Rafael\Documents\Posten.accdb 2013-08-10 04:42 - 2013-08-10 04:42 - 00498177 _____ C:\Users\Rafael\Documents\Assets.accdt 2013-08-10 04:13 - 2013-08-10 04:13 - 00002614 _____ C:\Users\Rafael\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Search.lnk 2013-08-10 04:13 - 2013-08-10 04:13 - 00002567 _____ C:\Users\Rafael\Desktop\Search.lnk 2013-08-10 04:12 - 2013-08-10 04:12 - 04953944 _____ (FLVMPlayer ) C:\Users\Rafael\Desktop\FLVMPlayer.exe 2013-08-06 10:13 - 2013-08-06 10:13 - 00003406 _____ C:\Windows\System32\Tasks\EPUpdater 2013-08-06 00:01 - 2013-08-06 00:01 - 00197724 _____ C:\ComboFix.txt 2013-08-05 23:30 - 2011-06-26 08:45 - 00256000 _____ C:\Windows\PEV.exe 2013-08-05 23:30 - 2010-11-07 19:20 - 00208896 _____ C:\Windows\MBR.exe 2013-08-05 23:30 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2013-08-05 23:30 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2013-08-05 23:30 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2013-08-05 23:30 - 2000-08-31 02:00 - 00098816 _____ C:\Windows\sed.exe 2013-08-05 23:30 - 2000-08-31 02:00 - 00080412 _____ C:\Windows\grep.exe 2013-08-05 23:30 - 2000-08-31 02:00 - 00068096 _____ C:\Windows\zip.exe 2013-08-05 23:22 - 2013-08-06 00:01 - 00000000 ____D C:\Qoobox 2013-08-05 23:22 - 2013-08-05 23:58 - 00000000 ____D C:\Windows\erdnt 2013-08-05 23:20 - 2013-08-05 23:20 - 05100695 ____R (Swearware) C:\Users\Rafael\Desktop\ComboFix.exe 2013-08-03 20:45 - 2013-08-03 20:45 - 00000000 ____D C:\FRST 2013-08-03 20:32 - 2013-08-03 20:32 - 00003368 _____ C:\Windows\System32\Tasks\DealPlyUpdate 2013-08-03 20:32 - 2013-08-03 20:32 - 00001110 _____ C:\Users\Public\Desktop\Open It!.lnk 2013-08-03 20:32 - 2013-08-03 20:32 - 00000000 ____D C:\Windows\SysWOW64\searchplugins 2013-08-03 20:32 - 2013-08-03 20:32 - 00000000 ____D C:\Windows\SysWOW64\Extensions 2013-08-03 20:32 - 2013-08-03 20:32 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-08-03 18:22 - 2013-08-03 18:22 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\Mozilla 2013-08-02 11:58 - 2013-08-02 11:58 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup 2013-07-31 20:29 - 2013-07-31 20:29 - 00002212 _____ C:\Users\Public\Desktop\Google Earth.lnk 2013-07-31 20:06 - 2013-07-31 20:06 - 00001113 _____ C:\Users\Public\Desktop\BayOrganizer.lnk 2013-07-30 15:46 - 2013-07-30 15:46 - 00000000 ___RD C:\Users\Rafael\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices 2013-07-30 15:25 - 2013-07-30 15:25 - 00002530 _____ C:\Users\Rafael\Desktop\Windows 7 USB DVD Download Tool.lnk 2013-07-30 15:25 - 2013-07-30 15:25 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows 7 USB DVD Download Tool 2013-07-30 15:25 - 2013-07-30 15:25 - 00000000 ____D C:\Users\Rafael\AppData\Local\Apps\Windows 7 USB DVD Download Tool 2013-07-30 14:17 - 2013-07-30 14:17 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\Serif 2013-07-30 11:01 - 2013-07-30 11:01 - 00002122 _____ C:\Users\Public\Desktop\Serif DrawPlus X5.lnk 2013-07-30 10:51 - 2013-07-30 10:51 - 00000000 ____D C:\Program Files (x86)\Serif 2013-07-30 10:27 - 2013-07-30 10:27 - 00073456 _____ C:\Users\Rafael\AppData\Local\BazaarFriend.crx 2013-07-30 10:27 - 2013-07-30 10:27 - 00000075 _____ C:\Users\Rafael\AppData\Roaming\WB.CFG 2013-07-30 09:50 - 2013-07-30 09:50 - 21840856 _____ (Mozilla) C:\Users\Rafael\Downloads\Firefox_Setup [1].exe 2013-07-29 11:06 - 2013-08-03 20:32 - 00000000 ____D C:\Users\Rafael\Qtrax 2013-07-25 14:35 - 2013-08-12 09:04 - 00001232 _____ C:\Windows\Tasks\FTdownloader V4.0-updater.job 2013-07-25 14:35 - 2013-08-12 09:04 - 00001226 _____ C:\Windows\Tasks\FTdownloader V4.0-codedownloader.job 2013-07-25 14:35 - 2013-08-12 09:04 - 00001136 _____ C:\Windows\Tasks\FTdownloader V4.0-enabler.job 2013-07-25 14:35 - 2013-08-05 23:41 - 00000000 ____D C:\Program Files (x86)\FTdownloader V4.0 2013-07-25 14:35 - 2013-07-25 14:35 - 00004262 _____ C:\Windows\System32\Tasks\FTdownloader V4.0-updater 2013-07-25 14:35 - 2013-07-25 14:35 - 00004256 _____ C:\Windows\System32\Tasks\FTdownloader V4.0-codedownloader 2013-07-25 14:35 - 2013-07-25 14:35 - 00004166 _____ C:\Windows\System32\Tasks\FTdownloader V4.0-enabler 2013-07-25 14:35 - 2013-07-25 14:35 - 00000000 ____D C:\Users\Rafael\AppData\Local\Cool_Mirage 2013-07-25 14:34 - 2013-07-25 15:10 - 00001087 _____ C:\Users\Rafael\Desktop\FTDownloader.lnk 2013-07-25 13:56 - 2013-07-25 13:56 - 00012800 ___SH C:\Users\Rafael\Thumbs.db 2013-07-25 13:24 - 2013-07-25 13:24 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2013-07-25 13:24 - 2013-07-25 13:24 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-07-24 16:25 - 2013-07-24 16:33 - 00000000 ____D C:\Program Files (x86)\EPUB to MOBI 2013-07-23 12:24 - 2013-07-23 12:24 - 00263592 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2013-07-23 12:24 - 2013-07-23 12:24 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2013-07-23 12:24 - 2013-07-23 12:24 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2013-07-23 12:24 - 2013-07-23 12:24 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2013-07-23 12:24 - 2013-07-23 12:24 - 00000000 ____D C:\Program Files (x86)\Java 2013-07-22 18:25 - 2013-07-22 18:25 - 00001416 _____ C:\Users\Public\Desktop\Apowersoft Free Audio Recorder.lnk 2013-07-22 18:25 - 2013-07-22 18:25 - 00000000 ____D C:\Users\Rafael\Documents\Apowersoft Free Audio Recorder 2013-07-22 18:25 - 2013-07-22 18:25 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\Apowersoft 2013-07-22 18:25 - 2013-07-22 18:25 - 00000000 ____D C:\Program Files (x86)\Apowersoft 2013-07-19 21:22 - 2013-07-19 21:22 - 01353111 _____ C:\Users\Rafael\Documents\Mit Hymie unterwegs.pptx 2013-07-17 23:18 - 2013-07-17 23:18 - 00000000 ____D C:\Program Files (x86)\dumps 2013-07-17 23:12 - 2013-07-29 11:11 - 00000000 ____D C:\Program Files (x86)\Steam 2013-07-17 23:12 - 2013-07-17 23:25 - 00000917 _____ C:\Users\Public\Desktop\Steam.lnk 2013-07-15 21:34 - 2013-07-15 21:35 - 00000000 ____D C:\Windows\system32\MRT ==================== One Month Modified Files and Folders ======= 2013-08-12 13:25 - 2013-01-18 18:58 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-08-12 13:24 - 2013-08-12 13:25 - 00891098 _____ C:\Users\Rafael\Desktop\SecurityCheck.exe 2013-08-12 13:24 - 2013-08-12 13:24 - 00891098 _____ C:\Users\Rafael\Downloads\SecurityCheck.exe 2013-08-12 13:20 - 2013-01-13 14:05 - 02079648 _____ C:\Windows\WindowsUpdate.log 2013-08-12 13:15 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\tracing 2013-08-12 10:31 - 2011-03-20 11:08 - 00772482 _____ C:\Windows\system32\perfh007.dat 2013-08-12 10:31 - 2011-03-20 11:08 - 00174574 _____ C:\Windows\system32\perfc007.dat 2013-08-12 10:31 - 2009-07-14 07:13 - 01802034 _____ C:\Windows\system32\PerfStringBackup.INI 2013-08-12 10:30 - 2013-08-12 10:30 - 00000000 ____D C:\Program Files (x86)\ESET 2013-08-12 10:26 - 2013-08-12 10:26 - 02347384 _____ (ESET) C:\Users\Rafael\Downloads\esetsmartinstaller_enu.exe 2013-08-12 10:26 - 2013-08-12 10:26 - 02347384 _____ (ESET) C:\Users\Rafael\Downloads\esetsmartinstaller_enu (1).exe 2013-08-12 10:23 - 2013-08-12 00:57 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2013-08-12 10:23 - 2013-02-19 23:18 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-08-12 09:43 - 2013-01-30 18:33 - 00000000 ____D C:\ProgramData\CanonIJPLM 2013-08-12 09:11 - 2009-07-14 06:45 - 00016944 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-08-12 09:11 - 2009-07-14 06:45 - 00016944 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-08-12 09:06 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\inetsrv 2013-08-12 09:04 - 2013-07-25 14:35 - 00001232 _____ C:\Windows\Tasks\FTdownloader V4.0-updater.job 2013-08-12 09:04 - 2013-07-25 14:35 - 00001226 _____ C:\Windows\Tasks\FTdownloader V4.0-codedownloader.job 2013-08-12 09:04 - 2013-07-25 14:35 - 00001136 _____ C:\Windows\Tasks\FTdownloader V4.0-enabler.job 2013-08-12 09:04 - 2013-04-08 18:24 - 00065536 _____ C:\Windows\system32\Ikeext.etl 2013-08-12 09:04 - 2009-07-14 04:34 - 00000567 _____ C:\Windows\win.ini 2013-08-12 09:03 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-08-12 09:03 - 2009-07-14 06:51 - 00078745 _____ C:\Windows\setupact.log 2013-08-12 01:06 - 2013-08-12 01:03 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\ArcSoft 2013-08-12 01:05 - 2013-08-12 01:05 - 00000000 ____D C:\Users\Rafael\AppData\Local\ArcSoft 2013-08-12 01:05 - 2013-08-12 01:04 - 00000000 ___HD C:\ProgramData\ArcSoft 2013-08-12 01:04 - 2013-08-12 01:04 - 00002153 _____ C:\Users\Public\Desktop\Media Impression 2.lnk 2013-08-12 01:04 - 2013-08-12 01:04 - 00000215 _____ C:\Users\Public\Desktop\ArcSoft Products and Bonus Offers.url 2013-08-12 01:03 - 2013-08-12 01:03 - 00000000 ____D C:\Program Files (x86)\ArcSoft 2013-08-12 01:03 - 2013-01-13 14:17 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-08-12 00:49 - 2013-08-12 00:49 - 00004478 _____ C:\Users\Rafael\Desktop\JRT.txt 2013-08-12 00:46 - 2013-08-12 00:46 - 00000000 ____D C:\Windows\ERUNT 2013-08-12 00:45 - 2013-08-12 00:45 - 00958573 _____ (Oleg N. Scherbakov) C:\Users\Rafael\Downloads\JRT.exe 2013-08-12 00:45 - 2013-08-12 00:45 - 00958573 _____ (Oleg N. Scherbakov) C:\Users\Rafael\Desktop\JRT.exe 2013-08-12 00:42 - 2013-08-12 00:41 - 00023473 _____ C:\AdwCleaner[S1].txt 2013-08-12 00:42 - 2013-01-18 19:01 - 00001286 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2013-08-12 00:42 - 2013-01-13 14:06 - 00000997 _____ C:\Users\Rafael\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-08-12 00:39 - 2013-08-12 00:40 - 00666633 _____ C:\Users\Rafael\Desktop\adwcleaner.exe 2013-08-12 00:39 - 2013-08-12 00:39 - 00666633 _____ C:\Users\Rafael\Downloads\adwcleaner.exe 2013-08-12 00:18 - 2013-03-24 21:16 - 00004130 _____ C:\Windows\System32\Tasks\Software Updater Ui 2013-08-12 00:18 - 2013-03-24 21:16 - 00004130 _____ C:\Windows\System32\Tasks\Software Updater 2013-08-11 03:09 - 2010-11-21 05:47 - 01111736 _____ C:\Windows\PFRO.log 2013-08-11 01:12 - 2013-05-19 18:42 - 00000000 ____D C:\Program Files (x86)\Tuguu SL 2013-08-10 05:27 - 2013-08-10 04:42 - 01114112 _____ C:\Users\Rafael\Documents\Posten.accdb 2013-08-10 04:57 - 2013-08-10 04:57 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\Malwarebytes 2013-08-10 04:56 - 2013-08-10 04:56 - 00001109 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-08-10 04:56 - 2013-08-10 04:56 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-08-10 04:56 - 2013-08-10 04:56 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-08-10 04:55 - 2013-08-10 04:55 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Rafael\Downloads\mbam-setup-1.75.0.1300.exe 2013-08-10 04:42 - 2013-08-10 04:42 - 00498177 _____ C:\Users\Rafael\Documents\Assets.accdt 2013-08-10 04:42 - 2013-05-09 10:29 - 06029312 _____ C:\Users\Rafael\Documents\Datenbank2.accdb 2013-08-10 04:41 - 2013-05-09 10:23 - 06160384 _____ C:\Users\Rafael\Documents\Datenbank1.accdb 2013-08-10 04:13 - 2013-08-10 04:13 - 00002614 _____ C:\Users\Rafael\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Search.lnk 2013-08-10 04:13 - 2013-08-10 04:13 - 00002567 _____ C:\Users\Rafael\Desktop\Search.lnk 2013-08-10 04:12 - 2013-08-10 04:12 - 04953944 _____ (FLVMPlayer ) C:\Users\Rafael\Desktop\FLVMPlayer.exe 2013-08-09 11:39 - 2013-01-13 23:30 - 00000000 ____D C:\Users\Rafael\AppData\Local\Microsoft Help 2013-08-08 23:55 - 2013-01-16 01:17 - 00000000 ____D C:\Users\Rafael\Documents\FIFA 13 2013-08-08 23:23 - 2013-01-14 13:11 - 00000000 ____D C:\Program Files (x86)\Origin 2013-08-06 10:50 - 2013-03-22 18:19 - 00000000 ____D C:\FreeOCR 2013-08-06 10:13 - 2013-08-06 10:13 - 00003406 _____ C:\Windows\System32\Tasks\EPUpdater 2013-08-06 10:13 - 2013-03-22 18:19 - 00000590 _____ C:\Users\Rafael\Desktop\FreeOCR.lnk 2013-08-06 00:01 - 2013-08-06 00:01 - 00197724 _____ C:\ComboFix.txt 2013-08-06 00:01 - 2013-08-05 23:22 - 00000000 ____D C:\Qoobox 2013-08-05 23:58 - 2013-08-05 23:22 - 00000000 ____D C:\Windows\erdnt 2013-08-05 23:57 - 2009-07-14 04:34 - 00000215 _____ C:\Windows\system.ini 2013-08-05 23:53 - 2013-03-19 21:50 - 00000000 ____D C:\ProgramData\3CX 2013-08-05 23:41 - 2013-07-25 14:35 - 00000000 ____D C:\Program Files (x86)\FTdownloader V4.0 2013-08-05 23:20 - 2013-08-05 23:20 - 05100695 ____R (Swearware) C:\Users\Rafael\Desktop\ComboFix.exe 2013-08-04 11:27 - 2013-06-13 16:04 - 00000005 _____ C:\Users\Rafael\AppData\Roaming\WBPU-TTL.DAT 2013-08-03 20:45 - 2013-08-03 20:45 - 00000000 ____D C:\FRST 2013-08-03 20:32 - 2013-08-03 20:32 - 00003368 _____ C:\Windows\System32\Tasks\DealPlyUpdate 2013-08-03 20:32 - 2013-08-03 20:32 - 00001110 _____ C:\Users\Public\Desktop\Open It!.lnk 2013-08-03 20:32 - 2013-08-03 20:32 - 00000000 ____D C:\Windows\SysWOW64\searchplugins 2013-08-03 20:32 - 2013-08-03 20:32 - 00000000 ____D C:\Windows\SysWOW64\Extensions 2013-08-03 20:32 - 2013-08-03 20:32 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-08-03 20:32 - 2013-07-29 11:06 - 00000000 ____D C:\Users\Rafael\Qtrax 2013-08-03 20:32 - 2013-02-24 01:48 - 00003526 _____ C:\Windows\System32\Tasks\DealPly 2013-08-03 19:49 - 2013-01-13 14:26 - 00000830 _____ C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job 2013-08-03 18:22 - 2013-08-03 18:22 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\Mozilla 2013-08-02 15:34 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF 2013-08-02 11:58 - 2013-08-02 11:58 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup 2013-08-02 11:58 - 2013-01-13 14:06 - 00000000 ___RD C:\Users\Rafael\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-08-02 11:41 - 2013-01-20 14:30 - 00000000 ____D C:\My Works 2013-08-02 01:29 - 2013-01-14 13:24 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\Origin 2013-08-02 01:29 - 2013-01-14 13:24 - 00000000 ____D C:\Users\Rafael\AppData\Local\Origin 2013-07-31 20:29 - 2013-07-31 20:29 - 00002212 _____ C:\Users\Public\Desktop\Google Earth.lnk 2013-07-31 20:29 - 2013-01-18 18:58 - 00000000 ____D C:\Program Files (x86)\Google 2013-07-31 20:06 - 2013-07-31 20:06 - 00001113 _____ C:\Users\Public\Desktop\BayOrganizer.lnk 2013-07-31 20:06 - 2013-01-19 13:13 - 00000000 ____D C:\Program Files (x86)\BayOrganizer 2013-07-30 15:46 - 2013-07-30 15:46 - 00000000 ___RD C:\Users\Rafael\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices 2013-07-30 15:35 - 2009-07-14 06:45 - 00758136 _____ C:\Windows\system32\FNTCACHE.DAT 2013-07-30 15:25 - 2013-07-30 15:25 - 00002530 _____ C:\Users\Rafael\Desktop\Windows 7 USB DVD Download Tool.lnk 2013-07-30 15:25 - 2013-07-30 15:25 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows 7 USB DVD Download Tool 2013-07-30 15:25 - 2013-07-30 15:25 - 00000000 ____D C:\Users\Rafael\AppData\Local\Apps\Windows 7 USB DVD Download Tool 2013-07-30 15:25 - 2013-01-13 14:16 - 00231448 _____ C:\Users\Rafael\AppData\Local\GDIPFONTCACHEV1.DAT 2013-07-30 14:17 - 2013-07-30 14:17 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\Serif 2013-07-30 11:01 - 2013-07-30 11:01 - 00002122 _____ C:\Users\Public\Desktop\Serif DrawPlus X5.lnk 2013-07-30 10:51 - 2013-07-30 10:51 - 00000000 ____D C:\Program Files (x86)\Serif 2013-07-30 10:27 - 2013-07-30 10:27 - 00073456 _____ C:\Users\Rafael\AppData\Local\BazaarFriend.crx 2013-07-30 10:27 - 2013-07-30 10:27 - 00000075 _____ C:\Users\Rafael\AppData\Roaming\WB.CFG 2013-07-30 09:50 - 2013-07-30 09:50 - 21840856 _____ (Mozilla) C:\Users\Rafael\Downloads\Firefox_Setup [1].exe 2013-07-29 11:11 - 2013-07-17 23:12 - 00000000 ____D C:\Program Files (x86)\Steam 2013-07-29 11:06 - 2013-01-13 14:05 - 00000000 ____D C:\Users\Rafael 2013-07-29 11:02 - 2013-06-01 19:03 - 00003818 _____ C:\Windows\System32\Tasks\QtraxPlayer 2013-07-25 15:10 - 2013-07-25 14:34 - 00001087 _____ C:\Users\Rafael\Desktop\FTDownloader.lnk 2013-07-25 14:35 - 2013-07-25 14:35 - 00004262 _____ C:\Windows\System32\Tasks\FTdownloader V4.0-updater 2013-07-25 14:35 - 2013-07-25 14:35 - 00004256 _____ C:\Windows\System32\Tasks\FTdownloader V4.0-codedownloader 2013-07-25 14:35 - 2013-07-25 14:35 - 00004166 _____ C:\Windows\System32\Tasks\FTdownloader V4.0-enabler 2013-07-25 14:35 - 2013-07-25 14:35 - 00000000 ____D C:\Users\Rafael\AppData\Local\Cool_Mirage 2013-07-25 13:56 - 2013-07-25 13:56 - 00012800 ___SH C:\Users\Rafael\Thumbs.db 2013-07-25 13:24 - 2013-07-25 13:24 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2013-07-25 13:24 - 2013-07-25 13:24 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-07-24 16:33 - 2013-07-24 16:25 - 00000000 ____D C:\Program Files (x86)\EPUB to MOBI 2013-07-23 12:24 - 2013-07-23 12:24 - 00263592 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2013-07-23 12:24 - 2013-07-23 12:24 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2013-07-23 12:24 - 2013-07-23 12:24 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2013-07-23 12:24 - 2013-07-23 12:24 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2013-07-23 12:24 - 2013-07-23 12:24 - 00000000 ____D C:\Program Files (x86)\Java 2013-07-23 12:24 - 2013-03-07 08:21 - 00867240 _____ (Oracle Corporation) C:\Windows\SysWOW64\npDeployJava1.dll 2013-07-23 12:24 - 2013-03-07 08:21 - 00789416 _____ (Oracle Corporation) C:\Windows\SysWOW64\deployJava1.dll 2013-07-22 18:51 - 2013-06-18 07:04 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\Spotify 2013-07-22 18:25 - 2013-07-22 18:25 - 00001416 _____ C:\Users\Public\Desktop\Apowersoft Free Audio Recorder.lnk 2013-07-22 18:25 - 2013-07-22 18:25 - 00000000 ____D C:\Users\Rafael\Documents\Apowersoft Free Audio Recorder 2013-07-22 18:25 - 2013-07-22 18:25 - 00000000 ____D C:\Users\Rafael\AppData\Roaming\Apowersoft 2013-07-22 18:25 - 2013-07-22 18:25 - 00000000 ____D C:\Program Files (x86)\Apowersoft 2013-07-22 18:25 - 2013-01-30 23:30 - 00001458 _____ C:\Users\Rafael\AppData\Local\RecConfig.xml 2013-07-21 10:49 - 2009-07-14 07:08 - 00032640 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2013-07-20 11:49 - 2013-06-18 07:05 - 00000000 ____D C:\Users\Rafael\AppData\Local\Spotify 2013-07-19 21:22 - 2013-07-19 21:22 - 01353111 _____ C:\Users\Rafael\Documents\Mit Hymie unterwegs.pptx 2013-07-17 23:25 - 2013-07-17 23:12 - 00000917 _____ C:\Users\Public\Desktop\Steam.lnk 2013-07-17 23:18 - 2013-07-17 23:18 - 00000000 ____D C:\Program Files (x86)\dumps 2013-07-17 07:58 - 2013-03-20 17:48 - 00000000 ____D C:\Program Files (x86)\jose 2013-07-17 07:54 - 2013-01-14 13:24 - 00000000 ____D C:\Program Files (x86)\Origin Games 2013-07-15 21:35 - 2013-07-15 21:34 - 00000000 ____D C:\Windows\system32\MRT 2013-07-15 21:26 - 2013-01-22 16:50 - 00000000 ____D C:\Users\Rafael\Documents\Turbo Lister Backup 2013-07-15 07:26 - 2013-01-18 18:58 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-07-14 08:23 - 2013-04-20 14:10 - 00000000 ____D C:\Windows\pss 2013-07-14 08:23 - 2013-01-18 18:58 - 00003866 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-08-12 13:19 ==================== End Of Log ============================ --- --- --- |
12.08.2013, 12:44 | #11 | |
/// the machine /// TB-Ausbilder | Laufend Werbeienblendungen und aufforderungen sicherheitsscans zu machenZitat:
Downloade Dir bitte TFC ( von Oldtimer ) und speichere die Datei auf dem Desktop. Schließe nun alle offenen Programme und trenne Dich von dem Internet. Doppelklick auf die TFC.exe und drücke auf Start. Sollte TFC nicht alle Dateien löschen können wird es einen Neustart verlangen. Dies bitte zulassen. Flash player updaten. Fertig Die Reihenfolge ist hier entscheidend.
Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Laufend Werbeienblendungen und aufforderungen sicherheitsscans zu machen |
aufforderungen, eingeblendet, einiger, folge, folgendes, gen, griff, hilfe, hinweise, hoffe, laufe, laufend, problem, scan, scanne, scannen, system, systemscan, trojaner, werbeseite, werbeseiten, werbung |