|
Log-Analyse und Auswertung: Maus macht Problem beim klickenWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
24.08.2013, 17:17 | #1 |
| Maus macht Problem beim klicken Hallo, mein Maus verhält sich seit ein paar Tagen merkwürdig. Manchmal klickt sie zweimal, obwohl ich nur einmal geklickt habe. Auf manchen Internetseiten, wo sich beim drüberscrollen Auswahlfenster öffnen, kann ich diese nicht mehr mit der Maus auswählen. Entweder verschwindet das Fenster wenn ich dort hingehe, oder es wird das aktiviert, was sich eigentlich unsichtbar dahinter befindet. Defogger hat keine Fehlermeldung gebracht. Hier nun FRST: Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 24-08-2013 01 Ran by Rainer (administrator) on 24-08-2013 18:06:44 Running from C:\Users\Rainer\Downloads Windows 8 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (IvoSoft) C:\Program Files\Classic Shell\ClassicShellService.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe (Microsoft Corporation) C:\Windows\system32\dashost.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler64.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe () C:\Windows\SysWOW64\PSIService.exe (Bright Access) C:\Program Files (x86)\BackupPCFiles\BackupPCFiles.Client.Service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4406.1205_x64__8wekyb3d8bbwe\LiveComm.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe (Bright Access) C:\Program Files (x86)\BackupPCFiles\BackupPCFiles.Client.CppProxyServer.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Corel, Inc.) C:\Program Files (x86)\Corel\Corel MediaOne\Corel Photo Downloader.exe (Bright Access) C:\Program Files (x86)\BackupPCFiles\BackupPCFiles.Agent.exe (Sony) C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe (Samsung) C:\Program Files (x86)\Samsung\Kies\Kies.exe (Samsung) C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe () C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanionInfo.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee Security Scan\3.0.318\SSScheduler.exe (Samsung) C:\Program Files (x86)\SEC\Natural Color Pro\NCProTray.exe (Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\acrotray.exe (CANON INC.) C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe (Ulead Systems, Inc.) C:\Program Files (x86)\Common Files\Ulead Systems\AutoDetector\Monitor.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe (Macrovision Europe Ltd.) C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe (Google Inc.) C:\Program Files (x86)\Google\Picasa3\Picasa3.exe (Adobe Systems, Incorporated) C:\Program Files (x86)\Adobe\Adobe Photoshop CS2\Photoshop.exe (Microsoft Corporation) C:\Windows\splwow64.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe () C:\Users\Rainer\Downloads\ZipOpenerSetup(1).exe () C:\Users\Rainer\Downloads\ZipOpenerSetup(1).exe () C:\Users\Rainer\Downloads\Defogger.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12503184 2012-06-11] (Realtek Semiconductor) HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [497648 2010-07-29] (Adobe Systems Incorporated) HKLM\...\Run: [Corel Photo Downloader] - C:\Program Files (x86)\Corel\Corel MediaOne\Corel Photo Downloader.exe [483144 2007-08-17] (Corel, Inc.) HKLM\...\Run: [BackupPCFiles.Agent] - C:\Program Files (x86)\BackupPCFiles\BackupPCFiles.Agent.exe [249472 2013-06-12] (Bright Access) HKCU\...\Run: [Sony PC Companion] - C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [449248 2013-05-29] (Sony) HKCU\...\Run: [KiesPreload] - C:\Program Files (x86)\Samsung\Kies\Kies.exe [1561968 2013-05-23] (Samsung) HKCU\...\Run: [] - C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [1106288 2013-05-23] (Samsung) HKCU\...\Run: [NTRedirect] - C:\Users\Rainer\AppData\Roaming\BabSolution\Shared\enhancedNT.dll [187888 2013-08-22] () MountPoints2: {4bc830f7-2fe6-11e2-be6c-806e6f6e6963} - "F:\setup.EXE" /AUTORUN HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [285240 2012-09-01] (Intel Corporation) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM-x32\...\Run: [IMSS] - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [133440 2012-07-19] (Intel Corporation) HKLM-x32\...\Run: [AVP] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\runner_avp.exe [24504 2012-10-25] (Kaspersky Lab ZAO) HKLM-x32\...\Run: [Acrobat Assistant 8.0] - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe [620152 2006-10-23] (Adobe Systems Inc.) HKLM-x32\...\Run: [] - [x] HKLM-x32\...\Run: [CanonSolutionMenuEx] - C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE [1185112 2010-04-02] (CANON INC.) HKLM-x32\...\Run: [Ulead AutoDetector v2] - C:\Program Files (x86)\Common Files\Ulead Systems\AutoDetector\monitor.exe [95504 2007-08-02] (Ulead Systems, Inc.) HKLM-x32\...\Run: [PMBVolumeWatcher] - C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [740888 2013-04-24] (Sony Corporation) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation) HKLM-x32\...\Run: [KiesTrayAgent] - C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [311152 2013-05-23] (Samsung Electronics Co., Ltd.) HKU\UpdatusUser\...\Run: [Sony PC Companion] - C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [449248 2013-05-29] (Sony) HKU\UpdatusUser\...\Run: [KiesPreload] - C:\Program Files (x86)\Samsung\Kies\Kies.exe [1561968 2013-05-23] (Samsung) HKU\UpdatusUser\...\Run: [] - C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [1106288 2013-05-23] (Samsung) HKU\UpdatusUser\...\Run: [NTRedirect] - C:\Users\Rainer\AppData\Roaming\BabSolution\Shared\enhancedNT.dll [187888 2013-08-22] () AppInit_DLLs: C:\PROGRA~2\NVIDIA~1\3DVISI~1\NVSTIN~1.DLL [187888 2013-08-22] () AppInit_DLLs-x32: c:\progra~2\nvidia~1\3dvisi~1\nvstinit.dll [187888 2013-08-22] () Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Acrobat - Schnellstart.lnk ShortcutTarget: Adobe Acrobat - Schnellstart.lnk -> C:\Windows\Installer\{AC76BA86-1033-F400-7760-000000000003}\_SC_Acrobat.exe () Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Reader Synchronizer.lnk ShortcutTarget: Adobe Reader Synchronizer.lnk -> C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AdobeCollabSync.exe () Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files (x86)\McAfee Security Scan\3.0.318\SSScheduler.exe (McAfee, Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Office.lnk ShortcutTarget: Microsoft Office.lnk -> C:\Program Files (x86)\Microsoft Office\Office\OSA9.EXE (Microsoft Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\NCProTray.lnk ShortcutTarget: NCProTray.lnk -> C:\Program Files (x86)\SEC\Natural Color Pro\NCProTray.exe (Samsung) Startup: C:\Users\Rainer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma.lnk ShortcutTarget: Adobe Gamma.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://de.msn.com HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.bing.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com/ie SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM - {02A08B01-5DFD-404B-A7B8-0B6326F1F913} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASBJS SearchScopes: HKLM-x32 - DefaultScope {02A08B01-5DFD-404B-A7B8-0B6326F1F913} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASBJS SearchScopes: HKLM-x32 - {02A08B01-5DFD-404B-A7B8-0B6326F1F913} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASBJS SearchScopes: HKLM-x32 - {BFFED5CA-8BDF-47CC-AED0-23F4E6D77732} URL = hxxp://start.iminent.com/?appId=814AF0B1-C97B-4472-A63D-FFA51C89E144&ref=toolbox&q={searchTerms} SearchScopes: HKCU - DefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://www1.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=AE50902B34983558&affID=119357&tt=070813_wt4&tsp=4970 SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://www1.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=AE50902B34983558&affID=119357&tt=070813_wt4&tsp=4970 SearchScopes: HKCU - {BFFED5CA-8BDF-47CC-AED0-23F4E6D77732} URL = hxxp://start.iminent.com/?appId=814AF0B1-C97B-4472-A63D-FFA51C89E144&ref=toolbox&q={searchTerms} BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft) BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO: ClassicIE9BHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIE9DLL_64.dll (IvoSoft) BHO: DVDVideoSoft WebPageAdjuster Class - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll (DVDVideoSoft Ltd.) BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files (x86)\McAfee Security Scan\3.0.318\McAfeeMSS_IE.dll (McAfee, Inc.) BHO-x32: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft) BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: DealPly Shopping - {9cf699ca-2174-4ed8-bec1-ba82095edce0} - C:\Program Files (x86)\DealPly\DealPlyIE.dll (DealPly) BHO-x32: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO-x32: ClassicIE9BHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIE9DLL_32.dll (IvoSoft) BHO-x32: No Name - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - No File Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft) Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated) Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft) Toolbar: HKCU - No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File Handler: ipp - No CLSID Value - Handler: msdaipp - No CLSID Value - Handler-x32: ipp - No CLSID Value - Handler-x32: msdaipp - No CLSID Value - Tcpip\Parameters: [DhcpNameServer] 83.169.184.161 83.169.184.225 FireFox: ======== FF ProfilePath: C:\Users\Rainer\AppData\Roaming\Mozilla\Firefox\Profiles\jeedrkjt.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.0.5 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll () FF Plugin-x32: @garmin.com/GpsControl - C:\Program Files (x86)\Garmin GPS Plugin\npGarmin.dll (GARMIN Corp.) FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 - C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @mcafee.com/McAfeeMssPlugin - C:\Program Files (x86)\McAfee Security Scan\3.0.318\npMcAfeeMss.dll (McAfee, Inc.) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @tools.dpliveupdate.com/DealPlyLive Update;version=3 - C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\npGoogleUpdate3.dll (DealPly Technologies Ltd) FF Plugin-x32: @tools.dpliveupdate.com/DealPlyLive Update;version=9 - C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\npGoogleUpdate3.dll (DealPly Technologies Ltd) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\StartWeb.xml FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\extensions\ffxtlbr@babylon.com FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF HKLM-x32\...\Firefox\Extensions: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\url_advisor@kaspersky.com FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\url_advisor@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\virtual_keyboard@kaspersky.com FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\virtual_keyboard@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\content_blocker@kaspersky.com FF Extension: Content Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\content_blocker@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [{ACAA314B-EEBA-48e4-AD47-84E31C44796C}] C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff\ FF HKCU\...\Firefox\Extensions: [lyrix@lyrixeeker.co] C:\Program Files (x86)\LyriXeeker\128.xpi FF Extension: No Name - C:\Program Files (x86)\LyriXeeker\128.xpi Chrome: ======= CHR Extension: (Google Drive) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.2_0 CHR Extension: (FTdownloader V3.0) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbffdhejhaoiflnpooogkckfdcmmjppn\3.0_0 CHR Extension: (YouTube) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0 CHR Extension: (Google Search) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0 CHR Extension: (Kaspersky URL Advisor) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\13.0.1.4190_0 CHR Extension: (LyricXeeker) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\epojlgbehpaeekopencdagbdamnkppci\1.126_0 CHR Extension: (Content Blocker) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\hghkgaeecgjhjkannahfamoehjmkjail\13.0.1.4190_0 CHR Extension: (Virtual Keyboard) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh\13.0.1.4292_0 CHR Extension: (Gmail) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0 CHR HKLM-x32\...\Chrome\Extension: [bbffdhejhaoiflnpooogkckfdcmmjppn] - C:\Program Files (x86)\FTDownloader.com\FTDownloader10.crx CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\urladvisor.crx CHR HKLM-x32\...\Chrome\Extension: [ejnmnhkgiphcaeefbaooconkceehicfi] - C:\Program Files (x86)\DealPly\DealPly.crx CHR HKLM-x32\...\Chrome\Extension: [eooncjejnppfjjklapaamhcdmjbilmde] - C:\Users\Rainer\AppData\Roaming\BabSolution\CR\Delta.crx CHR HKLM-x32\...\Chrome\Extension: [epojlgbehpaeekopencdagbdamnkppci] - C:\Program Files (x86)\LyriXeeker\128.crx CHR HKLM-x32\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\content_blocker_chrome.crx CHR HKLM-x32\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\virtkbd.crx CHR HKLM-x32\...\Chrome\Extension: [pfmopbbadnfoelckkcmjjeaaegjpjjbk] - C:\Program Files (x86)\Gophoto.it\gophotoit14.crx ==================== Services (Whitelisted) ================= S3 Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [72704 2013-01-08] (Adobe Systems) R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe [356376 2012-12-21] (Kaspersky Lab ZAO) R2 BackupPCFilesService; C:\Program Files (x86)\BackupPCFiles\BackupPCFiles.Client.Service.exe [67712 2013-06-12] (Bright Access) R2 ClassicShellService; C:\Program Files\Classic Shell\ClassicShellService.exe [68608 2013-04-07] (IvoSoft) S2 dealplylive; C:\Program Files (x86)\DealPlyLive\Update\DealPlyLive.exe [148000 2013-08-10] (DealPly Technologies Ltd) S3 dealplylivem; C:\Program Files (x86)\DealPlyLive\Update\DealPlyLive.exe [148000 2013-08-10] (DealPly Technologies Ltd) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-07-05] (Intel Corporation) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) S3 McComponentHostService; C:\Program Files (x86)\McAfee Security Scan\3.0.318\McCHSvc.exe [235216 2013-02-05] (McAfee, Inc.) R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [483864 2013-04-24] (Sony Corporation) R2 ProtexisLicensing; C:\Windows\SysWOW64\PSIService.exe [177704 2007-06-05] () ==================== Drivers (Whitelisted) ==================== S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Windows (R) Win 7 DDK provider) S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Windows (R) Win 7 DDK provider) R2 DRHARD64; C:\Windows\system32\drivers\DRHARD64.sys [21984 2011-11-03] (Licensed for Gebhard Software) R2 DRHMSR64; C:\Windows\system32\drivers\DRHMSR64.sys [14760 2011-12-06] () S3 gdrv; C:\Windows\gdrv.sys [25640 2012-11-16] (Windows (R) Server 2003 DDK provider) S3 gdrv; C:\Windows\gdrv.sys [25640 2012-11-16] (Windows (R) Server 2003 DDK provider) R2 inpoutx64; C:\Windows\System32\Drivers\inpoutx64.sys [15008 2012-11-12] (Highresolution Enterprises [www.highrez.co.uk]) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458584 2012-06-19] (Kaspersky Lab ZAO) S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [29616 2012-07-27] (Kaspersky Lab) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [619616 2013-04-23] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\system32\DRIVERS\klim6.sys [28504 2012-08-02] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [29016 2012-12-21] (Kaspersky Lab) R3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [29528 2012-10-25] (Kaspersky Lab) R1 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [50448 2013-04-23] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [178448 2013-04-23] (Kaspersky Lab ZAO) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) S3 cpuz135; \??\C:\Users\ADMINI~1\AppData\Local\Temp\cpuz135\cpuz135_x64.sys [x] S3 DRHARD; \??\C:\Windows\system32\DRIVERS\DRHARD.SYS [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-08-24 18:06 - 2013-08-24 18:06 - 00000000 ____D C:\FRST 2013-08-24 18:05 - 2013-08-24 18:05 - 00000474 _____ C:\Users\Rainer\Downloads\defogger_disable.log 2013-08-24 18:05 - 2013-08-24 18:05 - 00000246 _____ C:\Users\Rainer\Downloads\defogger_enable.log 2013-08-24 18:05 - 2013-08-24 18:05 - 00000000 _____ C:\Users\Rainer\defogger_reenable 2013-08-24 18:04 - 2013-08-24 18:04 - 00050477 _____ C:\Users\Rainer\Downloads\Defogger.exe 2013-08-24 18:03 - 2013-08-24 18:03 - 00001121 _____ C:\Users\Public\Desktop\Open It!.lnk 2013-08-24 18:03 - 2013-08-24 18:03 - 00000000 ____D C:\Program Files (x86)\OpenIt 2013-08-24 18:02 - 2013-08-24 18:02 - 00714352 _____ C:\Users\Rainer\Downloads\ZipOpenerSetup(1).exe 2013-08-24 09:12 - 2013-08-24 09:12 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Rainer\Downloads\mbam-setup-1.75.0.1300.exe 2013-08-24 09:12 - 2013-08-24 09:12 - 00001120 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-08-24 09:12 - 2013-08-24 09:12 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\Malwarebytes 2013-08-24 09:12 - 2013-08-24 09:12 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-08-24 09:12 - 2013-08-24 09:12 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-08-24 09:12 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2013-08-23 19:29 - 2013-04-15 17:23 - 00001336 _____ C:\Windows\SysWOW64\TrainingManagerPlugin.tlb 2013-08-22 22:13 - 2013-07-18 14:21 - 00000000 ____D C:\Users\Rainer\Downloads\Falk Karten 2013-08-22 21:18 - 2013-08-22 22:10 - 3575951388 _____ C:\Users\Rainer\Downloads\FMI-10506_2013-2.exe 2013-08-22 19:41 - 2013-08-22 19:41 - 20393805 _____ (The hugin development team ) C:\Users\Rainer\Downloads\Hugin_2009-4-0_win32_setup(3).exe 2013-08-22 19:41 - 2013-08-22 19:41 - 00001143 _____ C:\Users\Public\Desktop\EnfuseAlign.lnk 2013-08-22 19:41 - 2013-08-22 19:41 - 00001138 _____ C:\Users\Public\Desktop\Enblend360.lnk 2013-08-22 19:41 - 2013-08-22 19:41 - 00001133 _____ C:\Users\Public\Desktop\Enfuse360.lnk 2013-08-22 19:41 - 2013-08-22 19:41 - 00001118 _____ C:\Users\Public\Desktop\Enblend.lnk 2013-08-22 19:41 - 2013-08-22 19:41 - 00001113 _____ C:\Users\Public\Desktop\Enfuse.lnk 2013-08-22 19:41 - 2013-08-22 19:41 - 00000998 _____ C:\Users\Public\Desktop\Hugin.lnk 2013-08-22 19:40 - 2013-08-22 19:40 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(11).exe 2013-08-22 19:38 - 2013-08-22 19:42 - 00000000 ____D C:\Program Files (x86)\Hugin 2013-08-22 19:38 - 2013-08-22 19:38 - 27266109 _____ C:\Users\Rainer\Downloads\HuginSetup_2011.0.0_32bit_Windows(1).exe 2013-08-22 19:38 - 2013-08-22 19:38 - 00001064 _____ C:\Users\Rainer\Desktop\Hugin.lnk 2013-08-16 07:17 - 2013-08-17 10:52 - 00000000 ____D C:\Program Files (x86)\LyriXeeker 2013-08-14 22:01 - 2013-08-14 22:01 - 00000000 ____D C:\Program Files\Windows Defender 2013-08-14 21:56 - 2013-08-14 21:56 - 02828552 _____ (AVAST Software) C:\Users\Rainer\Downloads\avast-browser-cleanup_8.0.1484.29.exe 2013-08-14 17:34 - 2013-08-14 17:35 - 00000000 ____D C:\Windows\system32\MRT 2013-08-14 17:31 - 2013-07-26 07:13 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-08-14 17:31 - 2013-07-26 07:13 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-08-14 17:31 - 2013-07-26 07:13 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll 2013-08-14 17:31 - 2013-07-26 07:13 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll 2013-08-14 17:31 - 2013-07-26 07:13 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-08-14 17:31 - 2013-07-26 07:12 - 19239424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-08-14 17:31 - 2013-07-26 07:12 - 15405056 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-08-14 17:31 - 2013-07-26 07:12 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-08-14 17:31 - 2013-07-26 07:12 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-08-14 17:31 - 2013-07-26 07:12 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-08-14 17:31 - 2013-07-26 07:12 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-08-14 17:31 - 2013-07-26 07:12 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-08-14 17:31 - 2013-07-26 07:12 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-08-14 17:31 - 2013-07-26 07:12 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-08-14 17:31 - 2013-07-26 07:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-08-14 17:31 - 2013-07-26 05:35 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-08-14 17:31 - 2013-07-26 05:13 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-08-14 17:31 - 2013-07-26 05:13 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-08-14 17:31 - 2013-07-26 05:13 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll 2013-08-14 17:31 - 2013-07-26 05:12 - 14329344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-08-14 17:31 - 2013-07-26 05:12 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-08-14 17:31 - 2013-07-26 05:12 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-08-14 17:31 - 2013-07-26 05:12 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-08-14 17:31 - 2013-07-26 05:12 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-08-14 17:31 - 2013-07-26 05:12 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-08-14 17:31 - 2013-07-26 05:12 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-08-14 17:31 - 2013-07-26 05:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-08-14 17:31 - 2013-07-26 05:11 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-08-14 17:31 - 2013-07-26 05:11 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-08-14 17:31 - 2013-07-26 04:49 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-08-14 17:31 - 2013-07-26 02:54 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll 2013-08-14 17:31 - 2013-07-13 08:18 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2013-08-14 17:31 - 2013-07-13 08:16 - 01889280 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-08-14 17:31 - 2013-07-13 08:16 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2013-08-14 17:31 - 2013-07-13 08:15 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\apprepapi.dll 2013-08-14 17:31 - 2013-07-13 08:15 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\apprepsync.dll 2013-08-14 17:31 - 2013-07-13 06:24 - 00261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2013-08-14 17:31 - 2013-07-13 06:23 - 01568256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-08-14 17:31 - 2013-07-13 06:23 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepapi.dll 2013-08-14 17:31 - 2013-07-13 06:23 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepsync.dll 2013-08-14 17:31 - 2013-07-09 08:07 - 02233168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2013-08-14 17:31 - 2013-07-02 02:44 - 00036288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys 2013-08-14 17:31 - 2013-07-02 00:08 - 00247216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys 2013-08-14 17:31 - 2013-05-24 01:02 - 01314816 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2013-08-14 17:31 - 2013-05-24 00:25 - 00694272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2013-08-13 17:45 - 2013-08-13 17:45 - 29011992 _____ (Microsoft Corporation) C:\Users\Rainer\Downloads\FileFormatConverters4.exe 2013-08-13 17:45 - 2013-08-13 17:45 - 00000000 ____D C:\Program Files (x86)\MSECache 2013-08-13 17:40 - 2013-08-13 17:40 - 00355770 _____ C:\Users\Rainer\Documents\Karte.xlsx 2013-08-13 17:39 - 2013-08-13 17:40 - 00000000 ____D C:\ProgramData\BackupPCFiles 2013-08-13 17:39 - 2013-08-13 17:39 - 00004334 _____ C:\Windows\System32\Tasks\Task BackupPCFiles 2013-08-13 17:39 - 2013-08-13 17:39 - 00000000 ____D C:\Users\Rainer\Documents\BackupPCFiles Folder 2013-08-13 17:39 - 2013-08-13 17:39 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BackupPCFiles 2013-08-13 17:39 - 2013-08-13 17:39 - 00000000 ____D C:\ProgramData\APN 2013-08-13 17:39 - 2013-08-13 17:39 - 00000000 ____D C:\Program Files (x86)\BackupPCFiles 2013-08-13 17:39 - 2013-06-06 22:41 - 00489392 _____ (Ask Partner Network) C:\Users\Rainer\Documents\APNSetup.exe 2013-08-13 17:38 - 2013-08-13 17:38 - 08014952 _____ C:\Users\Rainer\Downloads\Backup_Installer.exe 2013-08-13 17:37 - 2013-08-13 17:37 - 01245296 _____ C:\Users\Rainer\Downloads\PDFWriterSetup.exe 2013-08-13 17:37 - 2013-08-13 17:37 - 00000000 ____D C:\Program Files\PDFCreator 2013-08-13 17:37 - 2013-08-13 17:37 - 00000000 ____D C:\Program Files (x86)\GPLGS 2013-08-13 17:37 - 2011-10-04 22:43 - 00087552 _____ C:\Windows\system32\custmon64i.dll 2013-08-11 19:50 - 2013-08-11 19:50 - 00002219 _____ C:\Users\Public\Desktop\Google Earth.lnk 2013-08-11 19:49 - 2013-08-11 19:49 - 00785032 _____ (Google Inc.) C:\Users\Rainer\Downloads\googleupdatesetup(2).exe 2013-08-11 19:42 - 2013-08-11 19:42 - 25110613 _____ C:\Users\Rainer\Downloads\HuginSetup_2010.4.0-64bit_Windows(1).exe 2013-08-11 19:36 - 2013-08-11 19:36 - 00000073 _____ C:\Users\Rainer\Downloads\killthugin.reg.txt 2013-08-10 22:22 - 2013-08-10 22:22 - 00623168 _____ C:\Users\Rainer\Downloads\FlvPlayerSetup(1).exe 2013-08-10 21:59 - 2013-08-24 18:04 - 00000922 _____ C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineUA.job 2013-08-10 21:59 - 2013-08-24 16:48 - 00000918 _____ C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineCore.job 2013-08-10 21:59 - 2013-08-10 21:59 - 00003894 _____ C:\Windows\System32\Tasks\DealPlyLiveUpdateTaskMachineUA 2013-08-10 21:59 - 2013-08-10 21:59 - 00003658 _____ C:\Windows\System32\Tasks\DealPlyLiveUpdateTaskMachineCore 2013-08-10 21:59 - 2013-08-10 21:59 - 00000000 ____D C:\Users\Rainer\AppData\Local\DealPlyLive 2013-08-10 21:59 - 2013-08-10 21:59 - 00000000 ____D C:\ProgramData\DealPlyLive 2013-08-10 21:59 - 2013-08-10 21:59 - 00000000 ____D C:\Program Files (x86)\DealPlyLive 2013-08-10 21:58 - 2013-08-24 16:48 - 00000396 _____ C:\Windows\Tasks\LyricXeeker Update.job 2013-08-10 21:58 - 2013-08-23 21:58 - 00000000 ____D C:\Program Files (x86)\DealPly 2013-08-10 21:58 - 2013-08-10 21:59 - 00003368 _____ C:\Windows\System32\Tasks\DealPlyUpdate 2013-08-10 21:58 - 2013-08-10 21:58 - 00623168 _____ C:\Users\Rainer\Downloads\FlvPlayerSetup.exe 2013-08-10 21:58 - 2013-08-10 21:58 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DealPly 2013-08-10 21:54 - 2013-08-10 21:54 - 01378312 _____ ( ) C:\Users\Rainer\Downloads\eType.exe 2013-08-10 20:51 - 2013-08-10 20:51 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(10).exe 2013-08-10 18:00 - 2013-08-10 18:00 - 00002300 _____ C:\Users\Rainer\Documents\cc_20130810_180018.reg 2013-08-10 17:59 - 2013-08-10 17:59 - 00003300 _____ C:\Users\Rainer\Documents\cc_20130810_175952.reg 2013-08-10 17:33 - 2013-08-20 21:53 - 00004294 _____ C:\Users\Rainer\AppData\Roaming\.ptbt1 2013-08-10 17:30 - 2013-08-10 17:31 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(9).exe 2013-08-10 17:26 - 2013-08-10 17:27 - 30697682 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_64bit_Windows(2).exe 2013-08-10 17:23 - 2013-08-10 17:27 - 30697682 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_64bit_Windows(1).exe 2013-08-10 13:10 - 2013-08-10 13:10 - 00034708 _____ C:\Users\Rainer\Documents\cc_20130810_131034.reg 2013-08-09 21:33 - 2013-08-09 21:33 - 34736549 _____ C:\Users\Rainer\Downloads\HuginSetup_2013.0.0-beta1_64bit_Windows(1).exe 2013-08-04 11:05 - 2013-06-01 13:54 - 00194816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys 2013-08-04 11:05 - 2013-06-01 13:54 - 00125184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys 2013-08-04 11:05 - 2013-06-01 13:29 - 00337152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS 2013-08-04 11:05 - 2013-06-01 13:29 - 00213248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\UCX01000.SYS 2013-08-04 11:05 - 2013-06-01 13:26 - 00327936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys 2013-08-04 11:05 - 2013-06-01 12:24 - 02106176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2013-08-04 11:05 - 2013-06-01 11:25 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2013-08-04 11:05 - 2013-06-01 11:25 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samlib.dll 2013-08-04 11:05 - 2013-06-01 11:24 - 01453568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll 2013-08-04 11:05 - 2013-06-01 11:24 - 00850944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll 2013-08-04 11:05 - 2013-06-01 11:24 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscms.dll 2013-08-04 11:05 - 2013-06-01 11:23 - 01842176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll 2013-08-04 11:05 - 2013-06-01 11:23 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\vds.exe 2013-08-04 11:05 - 2013-06-01 11:22 - 00446976 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2013-08-04 11:05 - 2013-06-01 11:22 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\vdsutil.dll 2013-08-04 11:05 - 2013-05-20 02:08 - 00386642 _____ C:\Windows\system32\ApnDatabase.xml 2013-08-04 11:04 - 2013-06-01 13:34 - 02391280 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2013-08-04 11:04 - 2013-06-01 13:26 - 06987008 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2013-08-04 11:04 - 2013-06-01 11:22 - 00523264 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2013-08-04 11:04 - 2013-06-01 11:22 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\MbaeParserTask.exe 2013-08-04 11:04 - 2013-06-01 11:21 - 00729600 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll 2013-08-04 11:04 - 2013-06-01 11:21 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll 2013-08-04 11:04 - 2013-06-01 11:20 - 02219520 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll 2013-08-04 11:04 - 2013-06-01 11:20 - 01527808 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll 2013-08-04 11:04 - 2013-06-01 11:20 - 01048576 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll 2013-08-04 11:04 - 2013-06-01 11:20 - 00583168 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll 2013-08-04 11:04 - 2013-06-01 11:19 - 00785408 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll 2013-08-04 11:04 - 2013-06-01 11:19 - 00207872 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupManager.dll 2013-08-04 11:04 - 2013-06-01 05:08 - 00037632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BthAvrcpTg.sys 2013-08-04 11:04 - 2013-05-25 00:09 - 01403296 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2013-08-04 11:04 - 2013-05-25 00:09 - 01271584 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2013-08-04 11:04 - 2013-05-25 00:09 - 01217352 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2013-08-04 11:04 - 2013-05-25 00:09 - 01093904 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2013-08-04 11:03 - 2013-06-17 00:41 - 00997632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2013-08-04 09:52 - 2013-08-04 09:52 - 20393805 _____ (The hugin development team ) C:\Users\Rainer\Downloads\Hugin_2009-4-0_win32_setup(2).exe 2013-08-04 09:50 - 2013-08-04 09:51 - 16319114 _____ (The hugin development team ) C:\Users\Rainer\Downloads\Hugin_2009_02_ncpg_installer_w32.exe 2013-08-04 09:46 - 2013-08-04 09:46 - 12406113 _____ (Guido ) C:\Users\Rainer\Downloads\hugin-0.7.0_win32-setup.exe 2013-08-04 09:42 - 2013-08-04 09:43 - 22710059 _____ C:\Users\Rainer\Downloads\HuginSetup_2013.0.0-beta1_32bit_Windows.exe 2013-08-04 09:40 - 2013-08-04 09:40 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(8).exe 2013-08-04 09:09 - 2013-08-04 09:10 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(7).exe 2013-08-04 08:51 - 2013-08-04 08:52 - 34736549 _____ C:\Users\Rainer\Downloads\HuginSetup_2013.0.0-beta1_64bit_Windows.exe 2013-08-04 08:50 - 2013-08-04 08:50 - 36752591 _____ C:\Users\Rainer\Downloads\Hugin_2013.0.0-beta1_64bit_Windows.7z 2013-08-04 08:41 - 2013-08-04 08:41 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(6).exe 2013-08-04 07:47 - 2013-08-04 07:47 - 00326704 _____ C:\Windows\system32\FNTCACHE.DAT 2013-08-03 19:50 - 2013-08-03 19:50 - 03176332 _____ C:\Users\Rainer\Downloads\AlteBaeum 2013-08-03 18:05 - 2013-08-03 18:05 - 00000000 ____D C:\Users\Rainer\Documents\AdobeStockPhotos 2013-08-03 14:10 - 2013-05-16 00:35 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\tssdisai.dll ==================== One Month Modified Files and Folders ======= 2013-08-24 18:06 - 2013-08-24 18:06 - 01576734 _____ (Farbar) C:\Users\Rainer\Downloads\FRST64.exe 2013-08-24 18:06 - 2013-08-24 18:06 - 00000000 ____D C:\FRST 2013-08-24 18:05 - 2013-08-24 18:05 - 00000474 _____ C:\Users\Rainer\Downloads\defogger_disable.log 2013-08-24 18:05 - 2013-08-24 18:05 - 00000246 _____ C:\Users\Rainer\Downloads\defogger_enable.log 2013-08-24 18:05 - 2013-08-24 18:05 - 00000000 _____ C:\Users\Rainer\defogger_reenable 2013-08-24 18:05 - 2012-12-21 16:25 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-08-24 18:05 - 2012-12-21 15:39 - 00000000 ____D C:\Users\Rainer 2013-08-24 18:04 - 2013-08-24 18:04 - 00050477 _____ C:\Users\Rainer\Downloads\Defogger.exe 2013-08-24 18:04 - 2013-08-10 21:59 - 00000922 _____ C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineUA.job 2013-08-24 18:03 - 2013-08-24 18:03 - 00001121 _____ C:\Users\Public\Desktop\Open It!.lnk 2013-08-24 18:03 - 2013-08-24 18:03 - 00000000 ____D C:\Program Files (x86)\OpenIt 2013-08-24 18:03 - 2013-01-04 13:38 - 00001126 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-08-24 18:02 - 2013-08-24 18:02 - 00714352 _____ C:\Users\Rainer\Downloads\ZipOpenerSetup(1).exe 2013-08-24 18:00 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\sru 2013-08-24 17:21 - 2012-07-26 12:27 - 00752930 _____ C:\Windows\system32\perfh007.dat 2013-08-24 17:21 - 2012-07-26 12:27 - 00156156 _____ C:\Windows\system32\perfc007.dat 2013-08-24 17:21 - 2012-07-26 09:28 - 01748838 _____ C:\Windows\system32\PerfStringBackup.INI 2013-08-24 17:08 - 2012-12-21 15:39 - 01921628 _____ C:\Windows\WindowsUpdate.log 2013-08-24 17:04 - 2012-12-21 17:30 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2013-08-24 16:48 - 2013-08-10 21:59 - 00000918 _____ C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineCore.job 2013-08-24 16:48 - 2013-08-10 21:58 - 00000396 _____ C:\Windows\Tasks\LyricXeeker Update.job 2013-08-24 16:48 - 2013-01-04 13:38 - 00001122 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-08-24 09:43 - 2012-07-26 09:22 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-08-24 09:42 - 2012-12-22 14:26 - 00018174 _____ C:\Windows\PFRO.log 2013-08-24 09:42 - 2012-11-12 12:33 - 00000000 ____D C:\ProgramData\NVIDIA 2013-08-24 09:12 - 2013-08-24 09:12 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Rainer\Downloads\mbam-setup-1.75.0.1300.exe 2013-08-24 09:12 - 2013-08-24 09:12 - 00001120 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-08-24 09:12 - 2013-08-24 09:12 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\Malwarebytes 2013-08-24 09:12 - 2013-08-24 09:12 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-08-24 09:12 - 2013-08-24 09:12 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-08-23 21:58 - 2013-08-10 21:58 - 00000000 ____D C:\Program Files (x86)\DealPly 2013-08-23 19:59 - 2013-05-26 16:59 - 00000000 ____D C:\Users\Rainer\Documents\FalkData 2013-08-23 19:55 - 2013-05-26 17:23 - 00000000 ____D C:\Users\Rainer\AppData\Local\Falk Navi-Manager 2013-08-23 19:29 - 2013-05-26 16:59 - 00002077 _____ C:\Users\Public\Desktop\Falk Navi-Manager.lnk 2013-08-23 07:24 - 2012-12-21 15:45 - 00003600 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2560001034-2644125590-1053040255-1002 2013-08-22 23:04 - 2013-01-04 13:39 - 00002190 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2013-08-22 22:10 - 2013-08-22 21:18 - 3575951388 _____ C:\Users\Rainer\Downloads\FMI-10506_2013-2.exe 2013-08-22 19:42 - 2013-08-22 19:38 - 00000000 ____D C:\Program Files (x86)\Hugin 2013-08-22 19:41 - 2013-08-22 19:41 - 20393805 _____ (The hugin development team ) C:\Users\Rainer\Downloads\Hugin_2009-4-0_win32_setup(3).exe 2013-08-22 19:41 - 2013-08-22 19:41 - 00001143 _____ C:\Users\Public\Desktop\EnfuseAlign.lnk 2013-08-22 19:41 - 2013-08-22 19:41 - 00001138 _____ C:\Users\Public\Desktop\Enblend360.lnk 2013-08-22 19:41 - 2013-08-22 19:41 - 00001133 _____ C:\Users\Public\Desktop\Enfuse360.lnk 2013-08-22 19:41 - 2013-08-22 19:41 - 00001118 _____ C:\Users\Public\Desktop\Enblend.lnk 2013-08-22 19:41 - 2013-08-22 19:41 - 00001113 _____ C:\Users\Public\Desktop\Enfuse.lnk 2013-08-22 19:41 - 2013-08-22 19:41 - 00000998 _____ C:\Users\Public\Desktop\Hugin.lnk 2013-08-22 19:40 - 2013-08-22 19:40 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(11).exe 2013-08-22 19:38 - 2013-08-22 19:38 - 27266109 _____ C:\Users\Rainer\Downloads\HuginSetup_2011.0.0_32bit_Windows(1).exe 2013-08-22 19:38 - 2013-08-22 19:38 - 00001064 _____ C:\Users\Rainer\Desktop\Hugin.lnk 2013-08-22 19:38 - 2012-12-25 11:31 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hugin 2013-08-22 18:27 - 2013-02-05 20:14 - 00000000 ____D C:\ProgramData\CanonIJPLM 2013-08-20 21:53 - 2013-08-10 17:33 - 00004294 _____ C:\Users\Rainer\AppData\Roaming\.ptbt1 2013-08-18 17:40 - 2012-12-21 16:56 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-08-17 21:58 - 2013-03-24 19:26 - 00001158 _____ C:\Users\Rainer\AppData\Roaming\ShiftN.ini 2013-08-17 11:03 - 2013-07-03 08:01 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-08-17 10:52 - 2013-08-16 07:17 - 00000000 ____D C:\Program Files (x86)\LyriXeeker 2013-08-16 17:20 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\AUInstallAgent 2013-08-14 23:01 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\rescache 2013-08-14 22:08 - 2013-04-25 19:20 - 00000898 _____ C:\Windows\SysWOW64\InstallUtil.InstallLog 2013-08-14 22:08 - 2013-04-25 19:19 - 00000000 ____D C:\Program Files (x86)\Iminent 2013-08-14 22:01 - 2013-08-14 22:01 - 00000000 ____D C:\Program Files\Windows Defender 2013-08-14 22:01 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-08-14 21:56 - 2013-08-14 21:56 - 02828552 _____ (AVAST Software) C:\Users\Rainer\Downloads\avast-browser-cleanup_8.0.1484.29.exe 2013-08-14 18:35 - 2013-05-12 19:52 - 00000000 ____D C:\Users\Rainer\.jordan 2013-08-14 17:35 - 2013-08-14 17:34 - 00000000 ____D C:\Windows\system32\MRT 2013-08-14 17:34 - 2012-12-21 16:01 - 78161360 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-08-13 17:46 - 2012-11-12 12:30 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2013-08-13 17:45 - 2013-08-13 17:45 - 29011992 _____ (Microsoft Corporation) C:\Users\Rainer\Downloads\FileFormatConverters4.exe 2013-08-13 17:45 - 2013-08-13 17:45 - 00000000 ____D C:\Program Files (x86)\MSECache 2013-08-13 17:40 - 2013-08-13 17:40 - 00355770 _____ C:\Users\Rainer\Documents\Karte.xlsx 2013-08-13 17:40 - 2013-08-13 17:39 - 00000000 ____D C:\ProgramData\BackupPCFiles 2013-08-13 17:39 - 2013-08-13 17:39 - 00004334 _____ C:\Windows\System32\Tasks\Task BackupPCFiles 2013-08-13 17:39 - 2013-08-13 17:39 - 00000000 ____D C:\Users\Rainer\Documents\BackupPCFiles Folder 2013-08-13 17:39 - 2013-08-13 17:39 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BackupPCFiles 2013-08-13 17:39 - 2013-08-13 17:39 - 00000000 ____D C:\ProgramData\APN 2013-08-13 17:39 - 2013-08-13 17:39 - 00000000 ____D C:\Program Files (x86)\BackupPCFiles 2013-08-13 17:38 - 2013-08-13 17:38 - 08014952 _____ C:\Users\Rainer\Downloads\Backup_Installer.exe 2013-08-13 17:37 - 2013-08-13 17:37 - 01245296 _____ C:\Users\Rainer\Downloads\PDFWriterSetup.exe 2013-08-13 17:37 - 2013-08-13 17:37 - 00000000 ____D C:\Program Files\PDFCreator 2013-08-13 17:37 - 2013-08-13 17:37 - 00000000 ____D C:\Program Files (x86)\GPLGS 2013-08-12 21:13 - 2012-07-26 07:26 - 00262144 ___SH C:\Windows\system32\config\BBI 2013-08-12 21:08 - 2012-07-26 07:26 - 00262144 ___SH C:\Windows\system32\config\ELAM 2013-08-11 19:50 - 2013-08-11 19:50 - 00002219 _____ C:\Users\Public\Desktop\Google Earth.lnk 2013-08-11 19:50 - 2012-12-25 08:47 - 00000000 ____D C:\Users\Rainer\AppData\Local\Google 2013-08-11 19:50 - 2012-12-25 08:47 - 00000000 ____D C:\Program Files (x86)\Google 2013-08-11 19:49 - 2013-08-11 19:49 - 00785032 _____ (Google Inc.) C:\Users\Rainer\Downloads\googleupdatesetup(2).exe 2013-08-11 19:42 - 2013-08-11 19:42 - 25110613 _____ C:\Users\Rainer\Downloads\HuginSetup_2010.4.0-64bit_Windows(1).exe 2013-08-11 19:36 - 2013-08-11 19:36 - 00000073 _____ C:\Users\Rainer\Downloads\killthugin.reg.txt 2013-08-11 19:05 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\NDF 2013-08-10 22:31 - 2012-12-21 16:25 - 00003772 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-08-10 22:31 - 2012-12-21 15:45 - 00000000 ____D C:\Users\Rainer\AppData\Local\Adobe 2013-08-10 22:22 - 2013-08-10 22:22 - 00623168 _____ C:\Users\Rainer\Downloads\FlvPlayerSetup(1).exe 2013-08-10 22:00 - 2013-04-23 20:10 - 00003390 _____ C:\Windows\System32\Tasks\EPUpdater 2013-08-10 21:59 - 2013-08-10 21:59 - 00003894 _____ C:\Windows\System32\Tasks\DealPlyLiveUpdateTaskMachineUA 2013-08-10 21:59 - 2013-08-10 21:59 - 00003658 _____ C:\Windows\System32\Tasks\DealPlyLiveUpdateTaskMachineCore 2013-08-10 21:59 - 2013-08-10 21:59 - 00000000 ____D C:\Users\Rainer\AppData\Local\DealPlyLive 2013-08-10 21:59 - 2013-08-10 21:59 - 00000000 ____D C:\ProgramData\DealPlyLive 2013-08-10 21:59 - 2013-08-10 21:59 - 00000000 ____D C:\Program Files (x86)\DealPlyLive 2013-08-10 21:59 - 2013-08-10 21:58 - 00003368 _____ C:\Windows\System32\Tasks\DealPlyUpdate 2013-08-10 21:59 - 2013-04-23 20:10 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\BabSolution 2013-08-10 21:58 - 2013-08-10 21:58 - 00623168 _____ C:\Users\Rainer\Downloads\FlvPlayerSetup.exe 2013-08-10 21:58 - 2013-08-10 21:58 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DealPly 2013-08-10 21:54 - 2013-08-10 21:54 - 01378312 _____ ( ) C:\Users\Rainer\Downloads\eType.exe 2013-08-10 20:51 - 2013-08-10 20:51 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(10).exe 2013-08-10 18:00 - 2013-08-10 18:00 - 00002300 _____ C:\Users\Rainer\Documents\cc_20130810_180018.reg 2013-08-10 17:59 - 2013-08-10 17:59 - 00003300 _____ C:\Users\Rainer\Documents\cc_20130810_175952.reg 2013-08-10 17:31 - 2013-08-10 17:30 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(9).exe 2013-08-10 17:27 - 2013-08-10 17:26 - 30697682 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_64bit_Windows(2).exe 2013-08-10 17:27 - 2013-08-10 17:23 - 30697682 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_64bit_Windows(1).exe 2013-08-10 13:10 - 2013-08-10 13:10 - 00034708 _____ C:\Users\Rainer\Documents\cc_20130810_131034.reg 2013-08-09 21:33 - 2013-08-09 21:33 - 34736549 _____ C:\Users\Rainer\Downloads\HuginSetup_2013.0.0-beta1_64bit_Windows(1).exe 2013-08-07 07:29 - 2012-12-21 16:57 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2013-08-04 18:48 - 2012-07-26 07:38 - 00000000 ____D C:\Windows\system32\oobe 2013-08-04 09:52 - 2013-08-04 09:52 - 20393805 _____ (The hugin development team ) C:\Users\Rainer\Downloads\Hugin_2009-4-0_win32_setup(2).exe 2013-08-04 09:51 - 2013-08-04 09:50 - 16319114 _____ (The hugin development team ) C:\Users\Rainer\Downloads\Hugin_2009_02_ncpg_installer_w32.exe 2013-08-04 09:46 - 2013-08-04 09:46 - 12406113 _____ (Guido ) C:\Users\Rainer\Downloads\hugin-0.7.0_win32-setup.exe 2013-08-04 09:43 - 2013-08-04 09:42 - 22710059 _____ C:\Users\Rainer\Downloads\HuginSetup_2013.0.0-beta1_32bit_Windows.exe 2013-08-04 09:40 - 2013-08-04 09:40 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(8).exe 2013-08-04 09:37 - 2012-12-30 12:23 - 00000000 ____D C:\WsWin 2013-08-04 09:10 - 2013-08-04 09:09 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(7).exe 2013-08-04 08:52 - 2013-08-04 08:51 - 34736549 _____ C:\Users\Rainer\Downloads\HuginSetup_2013.0.0-beta1_64bit_Windows.exe 2013-08-04 08:50 - 2013-08-04 08:50 - 36752591 _____ C:\Users\Rainer\Downloads\Hugin_2013.0.0-beta1_64bit_Windows.7z 2013-08-04 08:41 - 2013-08-04 08:41 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(6).exe 2013-08-04 07:47 - 2013-08-04 07:47 - 00326704 _____ C:\Windows\system32\FNTCACHE.DAT 2013-08-04 07:45 - 2012-07-26 07:37 - 00000000 ____D C:\Windows\servicing 2013-08-03 19:50 - 2013-08-03 19:50 - 03176332 _____ C:\Users\Rainer\Downloads\AlteBaeum 2013-08-03 18:05 - 2013-08-03 18:05 - 00000000 ____D C:\Users\Rainer\Documents\AdobeStockPhotos 2013-08-03 18:05 - 2012-12-21 15:39 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\Adobe 2013-08-03 14:01 - 2013-02-02 19:34 - 00195042 _____ C:\Windows\DPINST.LOG 2013-07-26 07:13 - 2013-08-14 17:31 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-07-26 07:13 - 2013-08-14 17:31 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-07-26 07:13 - 2013-08-14 17:31 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll 2013-07-26 07:13 - 2013-08-14 17:31 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll 2013-07-26 07:13 - 2013-08-14 17:31 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-07-26 07:12 - 2013-08-14 17:31 - 19239424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-07-26 07:12 - 2013-08-14 17:31 - 15405056 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-07-26 07:12 - 2013-08-14 17:31 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-07-26 07:12 - 2013-08-14 17:31 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-07-26 07:12 - 2013-08-14 17:31 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-07-26 07:12 - 2013-08-14 17:31 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-07-26 07:12 - 2013-08-14 17:31 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-07-26 07:12 - 2013-08-14 17:31 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-07-26 07:12 - 2013-08-14 17:31 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-07-26 07:12 - 2013-08-14 17:31 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-07-26 05:35 - 2013-08-14 17:31 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-07-26 05:13 - 2013-08-14 17:31 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-07-26 05:13 - 2013-08-14 17:31 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-07-26 05:13 - 2013-08-14 17:31 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll 2013-07-26 05:12 - 2013-08-14 17:31 - 14329344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-07-26 05:12 - 2013-08-14 17:31 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-07-26 05:12 - 2013-08-14 17:31 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-07-26 05:12 - 2013-08-14 17:31 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-07-26 05:12 - 2013-08-14 17:31 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-07-26 05:12 - 2013-08-14 17:31 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-07-26 05:12 - 2013-08-14 17:31 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-07-26 05:12 - 2013-08-14 17:31 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-07-26 05:11 - 2013-08-14 17:31 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-07-26 05:11 - 2013-08-14 17:31 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-07-26 04:49 - 2013-08-14 17:31 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-07-26 02:54 - 2013-08-14 17:31 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll Files to move or delete: ==================== C:\Users\Rainer\AppData\Local\Temp\1nYZRC10.exe.part C:\Users\Rainer\AppData\Local\Temp\7V+zSy80.exe.part C:\Users\Rainer\AppData\Local\Temp\bd_8Qi5_.exe.part C:\Users\Rainer\AppData\Local\Temp\e8jAkT8y.exe.part C:\Users\Rainer\AppData\Local\Temp\EgOyN8a+.exe.part C:\Users\Rainer\AppData\Local\Temp\HNrcKNi3.exe.part C:\Users\Rainer\AppData\Local\Temp\htmlayout.dll C:\Users\Rainer\AppData\Local\Temp\ICReinstall_ZipOpenerSetup.exe C:\Users\Rainer\AppData\Local\Temp\jre-7u11-windows-i586-iftw.exe C:\Users\Rainer\AppData\Local\Temp\jre-7u21-windows-i586-iftw.exe C:\Users\Rainer\AppData\Local\Temp\jre-7u25-windows-i586-iftw.exe C:\Users\Rainer\AppData\Local\Temp\JREInstall〱ㄱ2.exe C:\Users\Rainer\AppData\Local\Temp\LCtr+pfR.dll.part C:\Users\Rainer\AppData\Local\Temp\MSETUP4.EXE C:\Users\Rainer\AppData\Local\Temp\NaviMgrInstaller.exe C:\Users\Rainer\AppData\Local\Temp\nv3DVStreaming.dll C:\Users\Rainer\AppData\Local\Temp\nvSCPAPI.dll C:\Users\Rainer\AppData\Local\Temp\nvSCPAPI64.dll C:\Users\Rainer\AppData\Local\Temp\nvStereoApiI.dll C:\Users\Rainer\AppData\Local\Temp\nvStInit.dll C:\Users\Rainer\AppData\Local\Temp\nvStInit64.dll C:\Users\Rainer\AppData\Local\Temp\nvStInst.exe C:\Users\Rainer\AppData\Local\Temp\PGMWd+c6.exe.part C:\Users\Rainer\AppData\Local\Temp\u1f+quMH.exe.part C:\Users\Rainer\AppData\Local\Temp\uninst1.exe C:\Users\Rainer\AppData\Local\Temp\uninstall72948703.exe C:\Users\Rainer\AppData\Local\Temp\uninstall72948734.exe C:\Users\Rainer\AppData\Local\Temp\vsdel.exe C:\Users\Rainer\AppData\Local\Temp\Y0fHeLiT.exe.part C:\Users\Rainer\AppData\Local\Temp\ZOYUR1ma.exe.part C:\Users\Rainer\AppData\Local\Temp\{EB9955F8-467C-47FC-90F8-12CD5DF684C3}\adobe_caps.dll C:\Users\Rainer\AppData\Local\Temp\{EB9955F8-467C-47FC-90F8-12CD5DF684C3}\amtservices.dll C:\Users\Rainer\AppData\Local\Temp\{EB9955F8-467C-47FC-90F8-12CD5DF684C3}\asneu.dll C:\Users\Rainer\AppData\Local\Temp\{EB9955F8-467C-47FC-90F8-12CD5DF684C3}\updaterinventory.dll C:\Users\Rainer\AppData\Local\Temp\{433EACD8-4747-4A6A-826A-FFA9F39B0D40}\adobe_caps.dll C:\Users\Rainer\AppData\Local\Temp\{433EACD8-4747-4A6A-826A-FFA9F39B0D40}\amtservices.dll C:\Users\Rainer\AppData\Local\Temp\{433EACD8-4747-4A6A-826A-FFA9F39B0D40}\asneu.dll C:\Users\Rainer\AppData\Local\Temp\VSDEED5.tmp\DotNetFX\dotnetchk.exe C:\Users\Rainer\AppData\Local\Temp\VSDEA84.tmp\setup.exe C:\Users\Rainer\AppData\Local\Temp\VSDEA84.tmp\vcredist_x86\vcredist_x86.exe C:\Users\Rainer\AppData\Local\Temp\VSDEA84.tmp\DotNetFX\dotnetchk.exe C:\Users\Rainer\AppData\Local\Temp\VSD8DAD.tmp\DotNetFX\dotnetchk.exe C:\Users\Rainer\AppData\Local\Temp\VSD7AAD.tmp\DotNetFX\dotnetchk.exe C:\Users\Rainer\AppData\Local\Temp\VSD374B.tmp\DotNetFX\dotnetchk.exe C:\Users\Rainer\AppData\Local\Temp\VSD1244.tmp\setup.exe C:\Users\Rainer\AppData\Local\Temp\VSD1244.tmp\vcredist_x86\vcredist_x86.exe C:\Users\Rainer\AppData\Local\Temp\VSD1244.tmp\DotNetFX\dotnetchk.exe C:\Users\Rainer\AppData\Local\Temp\Ulead Systems\CommonFiles\DVD\LDCdBldr.dll C:\Users\Rainer\AppData\Local\Temp\Ulead Systems\CommonFiles\DVD\LdrtBurn.dll C:\Users\Rainer\AppData\Local\Temp\Ulead Systems\CommonFiles\DVD\LdvdRec.dll C:\Users\Rainer\AppData\Local\Temp\Ulead Systems\CommonFiles\DVD\LudfRdr.dll C:\Users\Rainer\AppData\Local\Temp\Ulead Systems\CommonFiles\DVD\LudfWrtr.dll C:\Users\Rainer\AppData\Local\Temp\Ulead Systems\CommonFiles\DVD\LXBurnCom.dll C:\Users\Rainer\AppData\Local\Temp\Ulead Systems\CommonFiles\DVD\ULCDRDrv.dll C:\Users\Rainer\AppData\Local\Temp\Ulead Systems\CommonFiles\DVD\ULCDRDrvRc.dll C:\Users\Rainer\AppData\Local\Temp\Ulead Systems\CommonFiles\AutoDetector\DetMethod.dll C:\Users\Rainer\AppData\Local\Temp\Ulead Systems\CommonFiles\AutoDetector\Monitor_Res.dll C:\Users\Rainer\AppData\Local\Temp\Ulead Systems\CommonFiles\AutoDetector\u32Comm.dll C:\Users\Rainer\AppData\Local\Temp\Sony\Sony PC Companion\AutoUpdate\Sony PC Companion_2.10.165_NetStorage.exe C:\Users\Rainer\AppData\Local\Temp\SDIAG_d8efc418-366f-4141-a77c-72d6e96e2019\NetworkDiagnosticSnapIn.dll C:\Users\Rainer\AppData\Local\Temp\RarSFX0\Binaries\IExploreInstaller.exe C:\Users\Rainer\AppData\Local\Temp\PRE_Files\UpdaterInstallResults.dll C:\Users\Rainer\AppData\Local\Temp\PRE_Files\updaterinventory.dll C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-8.84\278090af.dll C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-8.84\34bdba63.dll C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-8.84\4a2ee9db.dll C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-8.84\671d8b64.dll C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-8.84\6d48952f.dll C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-8.84\9a6a9a93.dll C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-8.84\d183fe29.dll C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-8.84\exiftool.exe C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-8.84\perl58.dll C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-8.50\278090af.dll C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-8.50\34bdba63.dll C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-8.50\4a2ee9db.dll C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-8.50\671d8b64.dll C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-8.50\6d48952f.dll C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-8.50\9a6a9a93.dll C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-8.50\d183fe29.dll C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-8.50\exiftool.exe C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-8.50\perl58.dll C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-8.34\278090af.dll C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-8.34\34bdba63.dll C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-8.34\4a2ee9db.dll C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-8.34\671d8b64.dll C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-8.34\6d48952f.dll C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-8.34\9a6a9a93.dll C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-8.34\d183fe29.dll C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-8.34\exiftool.exe C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-8.34\perl58.dll C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-7.98\278090af.dll C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-7.98\34bdba63.dll C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-7.98\4a2ee9db.dll C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-7.98\671d8b64.dll C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-7.98\6d48952f.dll C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-7.98\9a6a9a93.dll C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-7.98\d183fe29.dll C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-7.98\exiftool.exe C:\Users\Rainer\AppData\Local\Temp\par-Rainer\cache-exiftool-7.98\perl58.dll C:\Users\Rainer\AppData\Local\Temp\nsrA37C.tmp\Time.dll C:\Users\Rainer\AppData\Local\Temp\nscA4A5.tmp\Time.dll C:\Users\Rainer\AppData\Local\Temp\nsb93FC.tmp\Time.dll C:\Users\Rainer\AppData\Local\Temp\MarkAny\ContentSafer\MaAgent.exe C:\Users\Rainer\AppData\Local\Temp\MarkAny\ContentSafer\MAAuthProc.dll C:\Users\Rainer\AppData\Local\Temp\MarkAny\ContentSafer\MACLICX13.dll C:\Users\Rainer\AppData\Local\Temp\MarkAny\ContentSafer\MACLicX15.dll C:\Users\Rainer\AppData\Local\Temp\MarkAny\ContentSafer\MACSMANAGER.dll C:\Users\Rainer\AppData\Local\Temp\MarkAny\ContentSafer\MaCSMgr.exe C:\Users\Rainer\AppData\Local\Temp\MarkAny\ContentSafer\MaCSProHook.dll C:\Users\Rainer\AppData\Local\Temp\MarkAny\ContentSafer\mapshapi.dll C:\Users\Rainer\AppData\Local\Temp\MarkAny\ContentSafer\mapwij10.dll C:\Users\Rainer\AppData\Local\Temp\MarkAny\ContentSafer\MaSyncP.dll C:\Users\Rainer\AppData\Local\Temp\MarkAny\ContentSafer\MaWAMP.dll C:\Users\Rainer\AppData\Local\Temp\MarkAny\ContentSafer\MAWebControl.exe C:\Users\Rainer\AppData\Local\Temp\MarkAny\ContentSafer\MaWMP.dll C:\Users\Rainer\AppData\Local\Temp\MarkAny\ContentSafer\MPXBox.exe C:\Users\Rainer\AppData\Local\Temp\MarkAny\ContentSafer\MtpAccess.dll C:\Users\Rainer\AppData\Local\Temp\MarkAny\ContentSafer\UserShare.dll C:\Users\Rainer\AppData\Local\Temp\MarkAny\ContentSafer\XSYNCClt.dll C:\Users\Rainer\AppData\Local\Temp\MarkAny\ContentSafer\UpdateClient\MAFileUpdate.dll C:\Users\Rainer\AppData\Local\Temp\MarkAny\ContentSafer\UpdateClient\MAUpdate.exe C:\Users\Rainer\AppData\Local\Temp\MarkAny\ContentSafer\UpdateClient\MAUpdateBoot.exe C:\Users\Rainer\AppData\Local\Temp\MarkAny\ContentSafer\UpdateClient\MaUpdateClient.exe C:\Users\Rainer\AppData\Local\Temp\KiesTemporary\avrt.dll C:\Users\Rainer\AppData\Local\Temp\KiesTemporary\wlanapi.dll C:\Users\Rainer\AppData\Local\Temp\is735155443\361036993_Setup.EXE C:\Users\Rainer\AppData\Local\Temp\is735155443\DeltaTB.exe C:\Users\Rainer\AppData\Local\Temp\is735155443\dp.exe C:\Users\Rainer\AppData\Local\Temp\is735155443\wajam_validate.exe C:\Users\Rainer\AppData\Local\Temp\is357113909\Converter.exe C:\Users\Rainer\AppData\Local\Temp\is357113909\CPWriter2.exe C:\Users\Rainer\AppData\Local\Temp\is357113909\custmon32i.dll C:\Users\Rainer\AppData\Local\Temp\is357113909\custmon64i.dll C:\Users\Rainer\AppData\Local\Temp\is357113909\custmoni.dll C:\Users\Rainer\AppData\Local\Temp\is357113909\dp.exe C:\Users\Rainer\AppData\Local\Temp\is357113909\message.exe C:\Users\Rainer\AppData\Local\Temp\is357113909\OpenItSetup.exe C:\Users\Rainer\AppData\Local\Temp\is357113909\pdfwriter.exe C:\Users\Rainer\AppData\Local\Temp\is357113909\pdfwriter32.exe C:\Users\Rainer\AppData\Local\Temp\is357113909\pdfwriter64.exe C:\Users\Rainer\AppData\Local\Temp\is357113909\Preferences.exe C:\Users\Rainer\AppData\Local\Temp\is357113909\QtraxInstaller.exe C:\Users\Rainer\AppData\Local\Temp\is357113909\Setup.exe C:\Users\Rainer\AppData\Local\Temp\is357113909\unInstpw.exe C:\Users\Rainer\AppData\Local\Temp\is357113909\unInstpw64.exe C:\Users\Rainer\AppData\Local\Temp\is357113909\wajam_download.exe C:\Users\Rainer\AppData\Local\Temp\is357113909\Driver\ICONLIB.DLL C:\Users\Rainer\AppData\Local\Temp\is357113909\Driver\PS5UI.DLL C:\Users\Rainer\AppData\Local\Temp\is357113909\Driver\PSCRIPT5.DLL C:\Users\Rainer\AppData\Local\Temp\is357113909\Driver\PSMON.DLL C:\Users\Rainer\AppData\Local\Temp\is357113909\Driver\X64\PS5UI.DLL C:\Users\Rainer\AppData\Local\Temp\is357113909\Driver\X64\PSCRIPT5.DLL C:\Users\Rainer\AppData\Local\Temp\is-0DCOB.tmp\_isetup\_shfoldr.dll C:\Users\Rainer\AppData\Local\Temp\DIQ\FlashPlayer_151\bin.dll C:\Users\Rainer\AppData\Local\Temp\DIQ\FlashPlayer_151\config.dll C:\Users\Rainer\AppData\Local\Temp\DIQ\FlashPlayer_151\routes.dll C:\Users\Rainer\AppData\Local\Temp\DIQ\FlashPlayer_151\software\Delta Babylon.exe C:\Users\Rainer\AppData\Local\Temp\DIQ\FlashPlayer_151\software\FlashPlayer.exe C:\Users\Rainer\AppData\Local\Temp\DIQ\FlashPlayer_151\software\OptimizerPro.exe C:\Users\Rainer\AppData\Local\Temp\DIQ\FlashPlayer_151\software\Yontoo.exe C:\Users\Rainer\AppData\Local\Temp\busC5C9\enhancedNT.dll C:\Users\Rainer\AppData\Local\Temp\busC5C9\NTRedirectUpdate.exe C:\Users\Rainer\AppData\Local\Temp\busA323\ff21v.exe C:\Users\Rainer\AppData\Local\Temp\bus7F59\BabScheduler3.exe C:\Users\Rainer\AppData\Local\Temp\bus79E1\BUSolution.dll C:\Users\Rainer\AppData\Local\Temp\bus6C08\ChromeExtUpdater.exe C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\aswCmnBS.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\aswCmnIS.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\aswCmnOS.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\atl90.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCUCmnRes.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1025.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1026.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1027.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1028.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1029.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1030.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1031.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1032.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1033.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1035.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1036.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1037.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1038.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1040.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1041.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1042.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1043.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1044.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1045.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1046.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1048.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1049.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1050.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1051.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1053.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1054.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1055.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1056.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1057.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1058.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1059.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1060.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1061.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1062.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1065.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1066.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1081.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1086.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1093.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_1909.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_2052.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_2070.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_2074.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BCULangRes_3082.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\BrowserCleanup.exe C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\mfc90u.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\msvcp90.dll C:\Users\Rainer\AppData\Local\Temp\7zS6EAC.tmp\msvcr90.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\aswCmnBS.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\aswCmnIS.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\aswCmnOS.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\atl90.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCUCmnRes.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1025.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1026.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1027.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1028.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1029.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1030.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1031.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1032.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1033.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1035.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1036.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1037.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1038.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1040.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1041.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1042.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1043.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1044.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1045.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1046.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1048.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1049.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1050.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1051.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1053.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1054.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1055.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1056.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1057.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1058.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1059.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1060.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1061.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1062.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1065.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1066.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1081.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1086.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1093.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_1909.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_2052.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_2070.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_2074.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BCULangRes_3082.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\BrowserCleanup.exe C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\mfc90u.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\msvcp90.dll C:\Users\Rainer\AppData\Local\Temp\7zS3E89.tmp\msvcr90.dll C:\Users\Rainer\AppData\Local\Temp\7F90FF41-BAB0-7891-A34F-1BCBE39EFC54\Latest\BabMaint.exe C:\Users\Rainer\AppData\Local\Temp\7F90FF41-BAB0-7891-A34F-1BCBE39EFC54\Latest\BExternal.dll C:\Users\Rainer\AppData\Local\Temp\7F90FF41-BAB0-7891-A34F-1BCBE39EFC54\Latest\BUSolForMontiera.dll C:\Users\Rainer\AppData\Local\Temp\7F90FF41-BAB0-7891-A34F-1BCBE39EFC54\Latest\BUSolution.dll C:\Users\Rainer\AppData\Local\Temp\7F90FF41-BAB0-7891-A34F-1BCBE39EFC54\Latest\ccp.exe C:\Users\Rainer\AppData\Local\Temp\7F90FF41-BAB0-7891-A34F-1BCBE39EFC54\Latest\ChromeToolbarSetup.dll C:\Users\Rainer\AppData\Local\Temp\7F90FF41-BAB0-7891-A34F-1BCBE39EFC54\Latest\CrxInstaller.dll C:\Users\Rainer\AppData\Local\Temp\7F90FF41-BAB0-7891-A34F-1BCBE39EFC54\Latest\GUninstaller.exe C:\Users\Rainer\AppData\Local\Temp\7F90FF41-BAB0-7891-A34F-1BCBE39EFC54\Latest\IEHelper.dll C:\Users\Rainer\AppData\Local\Temp\7F90FF41-BAB0-7891-A34F-1BCBE39EFC54\Latest\MntrDLLInstall.dll C:\Users\Rainer\AppData\Local\Temp\7F90FF41-BAB0-7891-A34F-1BCBE39EFC54\Latest\MyDeltaTB.exe C:\Users\Rainer\AppData\Local\Temp\7F90FF41-BAB0-7891-A34F-1BCBE39EFC54\Latest\NTRedirect.dll C:\Users\Rainer\AppData\Local\Temp\7F90FF41-BAB0-7891-A34F-1BCBE39EFC54\Latest\Setup.exe C:\Users\Rainer\AppData\Local\Temp\7F90FF41-BAB0-7891-A34F-1BCBE39EFC54\Latest\sqlite3.dll C:\Users\Rainer\AppData\Local\Temp\2abf8d65-cec1-4a3d-a1b9-2daadeb6fe42\CliSecureRT.dll C:\Users\Rainer\AppData\Local\Temp\0048FBCD-BAB0-7891-BBA7-514A4E002810\Latest\BabMaint.exe C:\Users\Rainer\AppData\Local\Temp\0048FBCD-BAB0-7891-BBA7-514A4E002810\Latest\BExternal.dll C:\Users\Rainer\AppData\Local\Temp\0048FBCD-BAB0-7891-BBA7-514A4E002810\Latest\BUSolution.dll C:\Users\Rainer\AppData\Local\Temp\0048FBCD-BAB0-7891-BBA7-514A4E002810\Latest\BUSUninstall.exe C:\Users\Rainer\AppData\Local\Temp\0048FBCD-BAB0-7891-BBA7-514A4E002810\Latest\ccp.exe C:\Users\Rainer\AppData\Local\Temp\0048FBCD-BAB0-7891-BBA7-514A4E002810\Latest\ChromeToolbarSetup.dll C:\Users\Rainer\AppData\Local\Temp\0048FBCD-BAB0-7891-BBA7-514A4E002810\Latest\CrxInstaller.dll C:\Users\Rainer\AppData\Local\Temp\0048FBCD-BAB0-7891-BBA7-514A4E002810\Latest\GUninstaller.exe C:\Users\Rainer\AppData\Local\Temp\0048FBCD-BAB0-7891-BBA7-514A4E002810\Latest\IEHelper.dll C:\Users\Rainer\AppData\Local\Temp\0048FBCD-BAB0-7891-BBA7-514A4E002810\Latest\MyBabylonTB.exe C:\Users\Rainer\AppData\Local\Temp\0048FBCD-BAB0-7891-BBA7-514A4E002810\Latest\Setup.exe C:\Users\Rainer\AppData\Local\Temp\0048FBCD-BAB0-7891-BBA7-514A4E002810\Latest\sqlite3.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\GoogleEarth.exe C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemyext.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\earthps.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\geplugin.exe C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\ge_expat.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\googleearth.exe.local C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\googleearth_free.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\icudt.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGAttrs.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGCore.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGExportCommon.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGGfx.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGMath.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGOpt.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGSg.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\IGUtils.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\Leap.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\msvcp100.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\msvcr100.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\npgeplugin.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\plugin_ax.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\QtCore4.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\QtGui4.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\QtNetwork4.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\QtWebKit4.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\imageformats\qgif4.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\imageformats\qjpeg4.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\optimizations\IGOptExtension.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\D3DCompiler_43.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\d3dx9_43.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\IGAttrs.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\IGGfx.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\IGSg.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\libEGL.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogles20\libGLESv2.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogl\IGAttrs.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogl\IGGfx.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\plugin\alchemy\ogl\IGSg.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemyext.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\earthflashsol.exe C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\earthps.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\ge_expat.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\googleearth.exe C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\googleearth.exe.local C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\googleearth_free.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\gpsbabel.exe C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\icudt.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGAttrs.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGCore.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGExportCommon.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGGfx.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGMath.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGOpt.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGSg.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\IGUtils.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\Leap.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\msvcp100.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\msvcr100.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\QtCore4.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\QtGui4.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\QtNetwork4.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\QtWebKit4.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\Plugins\npgeinprocessplugin.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\imageformats\qgif4.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\imageformats\qjpeg4.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\optimizations\IGOptExtension.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\D3DCompiler_43.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\d3dx9_43.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\IGAttrs.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\IGGfx.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\IGSg.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\libEGL.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogles20\libGLESv2.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogl\IGAttrs.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogl\IGGfx.dll C:\Users\Rainer\AppData\Local\Temp\._msige61\program files\Google\Google Earth\client\alchemy\ogl\IGSg.dll ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-08-21 07:26 ==================== End Of Log ============================ Additional scan result of Farbar Recovery Scan Tool (x64) Version: 24-08-2013 01 Ran by Rainer at 2013-08-24 18:13:53 Running from C:\Users\Rainer\Downloads Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= 7-Zip 9.20 (x64 edition) (Version: 9.20.00.0) Adobe Acrobat 8 Professional - English, Français, Deutsch (x32 Version: 8.0.0) Adobe AIR (x32 Version: 1.5.3.9130) Adobe Bridge 1.0 (x32 Version: 001.000.001) Adobe Common File Installer (x32 Version: 1.00.001) Adobe Community Help (x32 Version: 3.2.1) Adobe Community Help (x32 Version: 3.2.1.650) Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.94) Adobe Help Center 1.0 (x32 Version: 1.0.1) Adobe Photoshop CS2 (x32 Version: 9.0) Adobe Photoshop Elements 9 (x32 Version: 9.0.3.0) Adobe Premiere Elements 9 (x32 Version: 9.0) Adobe Premiere Elements 9 (x32 Version: 9.0.1) Adobe Reader XI MUI (x32 Version: 11.0.00) Adobe Reader XI (11.0.03) - Deutsch (x32 Version: 11.0.03) Adobe Stock Photos 1.0 (x32 Version: 1.0.1) BackupPCFiles 1.0.0.676 (x32 Version: 1.0.0.676) Canon MP Navigator EX 4.0 (x32) Canon Solution Menu EX (x32) CanoScan LiDE 210 Scanner Driver CDBurnerXP (Version: 4.5.0.3661) CDBurnerXP (x32 Version: 4.5.0.3717) Classic Shell (Version: 3.6.6) Compatibility Pack für 2007 Office System (x32 Version: 12.0.6612.1000) Corel MediaOne (x32 Version: 2.00.0000) Corel Painter Essentials 3 (x32 Version: 3.2) Corel Painter Essentials 3 (x32) D3DX10 (x32 Version: 15.4.2368.0902) DealPly (remove only) (x32 Version: 4.8.7.3) Delta Chrome Toolbar (x32) DHTML Editing Component (x32 Version: 6.02.0001) DomaIQ (x32) dows Driver Package - Garmin (grmnusb) GARMIN Devices (06/03/2009 2.3.0.0) (Version: 06/03/2009 2.3.0.0) Dr. Hardware 2013 13.0d (x32) Elements 9 Organizer (x32 Version: 9.0) Elements STI Installer (x32 Version: 1.0) Exifer (x32) Exif-Viewer 2.51 (x32 Version: 2.51) Falk Navi-Manager (x32 Version: 2.16.2) Falk Navi-Manager (x32 Version: 2.20.0) Fotogalerie (x32 Version: 16.4.3505.0912) Free YouTube Download version 3.2.0.128 (x32 Version: 3.2.0.128) FTDownloader (x32 Version: 2.1 Build 26473) Galerie de photos (x32 Version: 16.4.3505.0912) Garmin TOPO Deutschland 2010 (x32 Version: 4.0.0.0) Garmin USB Drivers (x32 Version: 2.3.0.0) GIMP 2.8.4 (Version: 2.8.4) Google Chrome (x32 Version: 29.0.1547.57) Google Earth (x32 Version: 7.1.1.1888) Google Update Helper (x32 Version: 1.3.21.153) Hugin 2009.4.0 (x32 Version: 2009.4.0) Hugin 2011.0.0 (x32 Version: 2011.0.0 hg_0fd3e119979c) Iminent Toolbar For Internet Explorer (x32 Version: 3.26.0) Intel(R) Control Center (x32 Version: 1.2.1.1008) Intel(R) Management Engine Components (x32 Version: 8.1.0.1281) Intel(R) Rapid Storage Technology (x32 Version: 11.6.0.1030) Intel® Trusted Connect Service Client (Version: 1.24.738.1) IrfanView (remove only) (x32 Version: 4.35) Java 7 Update 25 (x32 Version: 7.0.250) Java Auto Updater (x32 Version: 2.1.9.5) Kaspersky Anti-Virus 2013 (x32 Version: 13.0.1.4190) LyricXeeker (x32) Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300) McAfee Security Scan Plus (x32 Version: 3.0.318.3) Microsoft Application Error Reporting (Version: 12.0.6015.5000) Microsoft Office 2000 Standard (x32 Version: 9.00.2816) Microsoft Silverlight (Version: 5.1.20513.0) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.218 (x32 Version: 9.0.21022.218) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Microsoft_VC80_CRT_x86 (x32 Version: 8.0.50727.4053) Microsoft_VC80_MFC_x86 (x32 Version: 8.0.50727.4053) Microsoft_VC80_MFCLOC_x86 (x32 Version: 8.0.50727.4053) Microsoft_VC90_CRT_x86 (x32 Version: 1.00.0000) Movie Maker (x32 Version: 16.4.3505.0912) MozBackup 1.5.1 (x32) Mozilla Firefox 23.0.1 (x86 de) (x32 Version: 23.0.1) Mozilla Maintenance Service (x32 Version: 23.0.1) Mozilla Thunderbird 17.0.8 (x86 de) (x32 Version: 17.0.8) MSVCRT (x32 Version: 15.4.2862.0708) MSVCRT110 (x32 Version: 16.4.1108.0727) MSVCRT110_amd64 (Version: 16.4.1109.0912) MyFreeCodec (HKCU) Natural Color Pro (x32 Version: 1.0.0.6) NVIDIA 3D Vision Controller-Treiber 314.07 (Version: 314.07) NVIDIA 3D Vision Treiber 314.07 (Version: 314.07) NVIDIA Grafiktreiber 314.07 (Version: 314.07) NVIDIA HD-Audiotreiber 1.3.23.1 (Version: 1.3.23.1) NVIDIA Install Application (Version: 2.1002.109.706) NVIDIA PhysX (x32 Version: 9.12.1031) NVIDIA PhysX-Systemsoftware 9.12.1031 (Version: 9.12.1031) NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.1407) NVIDIA Systemsteuerung 314.07 (Version: 314.07) NVIDIA Update 1.12.12 (Version: 1.12.12) NVIDIA Update Components (Version: 1.12.12) Open It! (x32 Version: 1.1.1) Oracle VM VirtualBox 4.2.6 (Version: 4.2.6) PDF Creator Photo Common (x32 Version: 16.4.3505.0912) Photo Gallery (x32 Version: 16.4.3505.0912) PhotoME (x32 Version: 0.79R17) Picasa 3 (x32 Version: 3.9) PlayMemories Home (x32 Version: 7.0.03.04240) Realtek Ethernet Controller Driver (x32 Version: 8.3.730.2012) Realtek High Definition Audio Driver (x32 Version: 6.0.1.6662) Samsung Kies (x32 Version: 2.5.3.13052_10) SAMSUNG USB Driver for Mobile Phones (Version: 1.5.24.0) ShiftN 3.6.1 (x32 Version: 3.6.1) Silicon Laboratories CP210x USB to UART Bridge (Driver Removal) (x32) Silicon Laboratories USBXpress Device (Driver Removal) (x32) SmartSound Quicktracks for Premiere Elements 9.0 (x32 Version: 3.12.3090) Sony Ericsson Update Engine (x32 Version: 2.13.6.201305161305) Sony PC Companion 2.10.165 (x32 Version: 2.10.165) Topo Deutschland v2 (x32 Version: 2.00) Ulead PhotoImpact X3 (x32 Version: 1.00.0000) VAFPlayer (x32 Version: 1.6.8) VLC media player 2.0.5 (Version: 2.0.5) WeatherLink 5.9.3 (x32 Version: 5.9.3) Windows Live (x32 Version: 16.4.3505.0912) Windows Live Communications Platform (x32 Version: 16.4.3505.0912) Windows Live Essentials (x32 Version: 16.4.3505.0912) Windows Live Installer (x32 Version: 16.4.3505.0912) Windows Live Photo Common (x32 Version: 16.4.3505.0912) Windows Live PIMT Platform (x32 Version: 16.4.3505.0912) Windows Live SOXE (x32 Version: 16.4.3505.0912) Windows Live SOXE Definitions (x32 Version: 16.4.3505.0912) Windows Live UX Platform (x32 Version: 16.4.3505.0912) Windows Live UX Platform Language Pack (x32 Version: 16.4.3505.0912) WsWin V2.96.10 - 2012-03-13 (x32 Version: 2.96.10) Yontoo 2.052 (Version: 2.052) ==================== Restore Points ========================= 17-08-2013 05:28:02 Geplanter Prüfpunkt 23-08-2013 17:28:44 Installiert Falk Navi-Manager ==================== Hosts content: ========================== 2012-07-26 07:26 - 2012-07-26 07:26 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {09DF2727-2A6F-4B8B-90D0-85CB98D7B04E} - System32\Tasks\DealPlyUpdate => C:\Program No File Task: {10D85952-E3F6-47A1-96CF-5E1C2D874EA6} - System32\Tasks\Microsoft\Windows\SystemRestore\SR => C:\Windows\system32\srtasks.exe [2012-07-26] (Microsoft Corporation) Task: {13A2AC02-B682-48CC-9155-2E2673580117} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Critical Task: {17644F17-DC4C-4AC8-9444-7AAA52EB5CDC} - System32\Tasks\Microsoft\Windows\NetCfg\BindingWorkItemQueueHandler Task: {1AAFF332-5C62-4558-9991-DAA649C4C9C5} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => C:\Windows\system32\rundll32.exe [2012-07-26] (Microsoft Corporation) Task: {1DB7C2F1-876C-4F24-AD17-8428211113F9} - System32\Tasks\Microsoft\Windows\MemoryDiagnostic\ProcessMemoryDiagnosticEvents Task: {214B24F4-FEB4-4C59-AF1F-70136065199C} - System32\Tasks\Microsoft\Windows\Shell\IndexerAutomaticMaintenance Task: {23700E5C-0E77-499D-908A-415D5C6252F4} - System32\Tasks\Microsoft\Windows\Plug and Play\Device Install Group Policy Task: {23A5D8BE-9196-40EB-BD89-794398B2B073} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => C:\Windows\System32\rundll32.exe [2012-07-26] (Microsoft Corporation) Task: {249FFB11-BAB5-4C62-AC28-8D5402E182F8} - System32\Tasks\Task BackupPCFiles => C:\Program Files (x86)\BackupPCFiles\BackupPCFiles.TaskScheduler.exe [2013-06-12] () Task: {2C6B9EA8-7F5A-4ABA-BF96-8D352D02A743} - System32\Tasks\Microsoft\Windows\Device Setup\Metadata Refresh Task: {2E030FA7-3D7C-4E1D-8CFE-56ADB26FD402} - System32\Tasks\Microsoft\Windows\PI\Sqm-Tasks Task: {3054485A-F517-4E95-9977-4DD827B1E9B3} - System32\Tasks\Microsoft\Windows\WS\Badge Update Task: {3475443C-7854-423A-ACCD-876E50E98101} - System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2560001034-2644125590-1053040255-1002 Task: {378401BA-A703-444A-A79C-3C47AD2DC5B6} - System32\Tasks\Microsoft\Windows\TaskScheduler\Maintenance Configurator Task: {3AE164E7-30CD-40BC-9422-3EC7A5618965} - System32\Tasks\Microsoft\Windows\WS\WSTask Task: {3C490ABD-D849-41AF-9AC4-87DD759B0996} - System32\Tasks\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem Task: {4073C1B3-6E16-4AA8-B7F3-C6A6D35D5071} - System32\Tasks\Microsoft\Windows\TPM\Tpm-Maintenance Task: {44B3F1B8-5943-4072-8D8C-A9484676AC44} - System32\Tasks\Microsoft\Windows\Live\Roaming\SynchronizeWithStorage Task: {483A8F5C-5D26-44B5-B49E-AF6741D1BBEB} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => C:\Windows\System32\MbaeParserTask.exe [2013-06-01] (Microsoft Corporation) Task: {4B952129-9AE9-41A3-BE2B-8AD2E06F66B6} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskLogon Task: {561CF1A5-9BFF-4459-B4E6-2439798064A2} - \LyricXeeker Update No Task File Task: {5755E746-D7ED-4C20-A472-66C11834CDE4} - System32\Tasks\Microsoft\Windows\TaskScheduler\Manual Maintenance Task: {58998DDB-2BAF-4EE3-8DFD-B06EB2A218EE} - System32\Tasks\Microsoft\Windows\WindowsUpdate\AUFirmwareInstall Task: {5C4EFB77-EFA6-45DF-A373-D795C0725BFF} - System32\Tasks\Microsoft\Windows\Plug and Play\Device Install Reboot Required Task: {627441F3-8526-4B62-BF9A-1A3EA414E71A} - System32\Tasks\Microsoft\Windows\SpacePort\SpaceAgentTask => C:\Windows\system32\SpaceAgent.exe [2012-07-26] (Microsoft Corporation) Task: {6666657C-BF4A-4B25-BAB1-E3B7E5D2FA01} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-01-04] (Google Inc.) Task: {69297D2E-1CFD-463D-AF04-667C16B91A68} - System32\Tasks\DealPlyLiveUpdateTaskMachineUA => C:\Program Files (x86)\DealPlyLive\Update\DealPlyLive.exe [2013-08-10] (DealPly Technologies Ltd) Task: {6E9DE125-5583-4031-B572-FEE48F25CFFF} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyMonitor => C:\Windows\System32\wpcmon.exe [2012-09-20] (Microsoft Corporation) Task: {6FDDEA7C-6310-428D-AEB2-54FFC72811EF} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Task: {70727B0A-8DCC-4170-BE8F-470F4A86B3DA} - System32\Tasks\Microsoft\Windows\Servicing\StartComponentCleanup Task: {74096F94-B654-4DB0-96F5-3C3408B92FE3} - System32\Tasks\Microsoft\Windows\PI\Secure-Boot-Update Task: {746EEB16-C927-4C5B-AD78-2686E2159C87} - System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2560001034-2644125590-1053040255-500 Task: {7D9A9A1C-499C-40A6-8F8A-5BCC4CC9A87C} - System32\Tasks\Microsoft\Windows\TaskScheduler\Regular Maintenance Task: {845CB020-68B5-4C6B-9876-7BEC7B3E27AC} - System32\Tasks\Microsoft\Windows\TaskScheduler\Idle Maintenance Task: {87354DAA-66DF-4B41-9346-15958D96E1D2} - System32\Tasks\Microsoft\Windows\FileHistory\File History (maintenance mode) Task: {8DD26F9D-49C2-460A-84FC-E2F8D094D067} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start => C:\Windows\system32\sc.exe [2012-07-26] (Microsoft Corporation) Task: {912C454F-CA93-4596-8AD6-ABC897C930A9} - System32\Tasks\Microsoft\Windows\MUI\Lpksetup => C:\Windows\System32\lpksetup.exe [2012-09-20] (Microsoft Corporation) Task: {921A1D4E-32FB-46D7-B6C0-6F467884074D} - System32\Tasks\Microsoft\Windows\WS\Sync Licenses Task: {9479EF8E-11D4-41B3-9783-CC65070D592D} - System32\Tasks\Microsoft\Windows\Time Synchronization\ForceSynchronizeTime Task: {94DCF254-64FB-4C4E-8E12-5F4055C10C2A} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Task: {9639D8E6-82CB-4863-BD4C-22476E0B16A5} - System32\Tasks\WPD\SqmUpload_S-1-5-21-2560001034-2644125590-1053040255-1002 => C:\Windows\system32\rundll32.exe [2012-07-26] (Microsoft Corporation) Task: {989A7C6D-BE82-4C3C-AF96-6116039E336B} - System32\Tasks\Microsoft\Windows\MemoryDiagnostic\RunFullMemoryDiagnostic Task: {9BB3E6BA-15E1-4676-B5C0-E89778F023BC} - System32\Tasks\DealPlyLiveUpdateTaskMachineCore => C:\Program Files (x86)\DealPlyLive\Update\DealPlyLive.exe [2013-08-10] (DealPly Technologies Ltd) Task: {A72208BF-7A49-4FB8-B684-252375F3443A} - System32\Tasks\Microsoft\Windows\WS\License Validation => C:\Windows\System32\rundll32.exe [2012-07-26] (Microsoft Corporation) Task: {A800277E-E202-4492-AD38-3312641CBC04} - System32\Tasks\Microsoft\Windows\Live\Roaming\MaintenanceTask Task: {A8717AE2-18E0-4C4D-89EC-BBAB8D5A952A} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-08-10] (Adobe Systems Incorporated) Task: {AB62FA47-2C99-44B1-A5D0-D4161423BE43} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyRefresh Task: {AC6259DE-AC59-459E-849E-6ADFFD1ADE63} - System32\Tasks\Microsoft\Windows\Shell\CreateObjectTask Task: {ACD901A2-6187-4E71-9A82-66EEC0C146CD} - System32\Tasks\EPUpdater => C:\Users\Rainer\AppData\Roaming\BABSOL~1\Shared\BabMaint.exe [2013-08-04] () Task: {AD5C7744-8943-4E97-8496-274A51A2E154} - System32\Tasks\Go for FilesUpdate => C:\Program Files (x86)\GoforFiles\GFFUpdater.exe No File Task: {AEB0B5BD-B9E5-458A-898A-E559BD9EB51B} - System32\Tasks\Microsoft\Windows\SettingSync\BackgroundUploadTask Task: {AF549BD8-337C-4BF7-8681-36A182E30507} - System32\Tasks\Microsoft\Windows\Chkdsk\ProactiveScan Task: {BC76AEF7-2CF0-4EB6-B65B-A8803E0B5E12} - System32\Tasks\Microsoft\Windows\AppID\SmartScreenSpecific Task: {C1ACCD1E-4385-4FB2-B5E4-7F2A57A626A2} - System32\Tasks\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan Task: {C279FFED-A841-4AAC-BD76-E03EAB8166E8} - System32\Tasks\Microsoft\Windows\WindowsUpdate\AUSessionConnect Task: {C42A6170-89DA-4767-ABBC-E43319B4B7F3} - System32\Tasks\AdobeAAMUpdater-1.0-Lippert-Rainer => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-07-29] (Adobe Systems Incorporated) Task: {C463FD1E-31C7-4C20-AB65-08E514CA152D} - System32\Tasks\Microsoft\Windows\IME\SQM data sender Task: {C6A88F2D-53D2-4805-9D69-443738A1847C} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => C:\Windows\system32\rundll32.exe [2012-07-26] (Microsoft Corporation) Task: {CD1054FF-8005-4904-8B9C-436EAB1E2021} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskNetwork Task: {DB67FCDE-4C5B-4238-9A15-EDEBD53C0751} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-01-04] (Google Inc.) Task: {DBCF6E1B-CE0A-441E-B7A5-219C8BE50C65} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Critical Task: {DECE5921-598D-454B-9A04-B2DE95EFC1B3} - System32\Tasks\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan for Crash Recovery Task: {E4DFE66F-E089-4CC3-A70F-957223D565F4} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask Task: {E8D6958A-CFAE-43F4-92C8-1C7D677233CD} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task Task: {E8DAA09B-DF2A-4951-9134-6FA9587793F9} - System32\Tasks\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers => C:\Windows\System32\drvinst.exe [2012-09-20] (Microsoft Corporation) Task: {EBBA481B-855B-4C00-841E-FA9AA54A7450} - System32\Tasks\Microsoft\Windows\WindowsUpdate\AUScheduledInstall Task: {EBF06DEC-4228-4813-AC0C-62821AE4E330} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => C:\Windows\system32\rundll32.exe [2012-07-26] (Microsoft Corporation) Task: {ED0C1F69-C3A2-41EA-B8C3-3F0D83A1F6C0} - System32\Tasks\Microsoft\Windows\Customer Experience Improvement Program\BthSQM Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineCore.job => C:\Program Files (x86)\DealPlyLive\Update\DealPlyLive.exe Task: C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineUA.job => C:\Program Files (x86)\DealPlyLive\Update\DealPlyLive.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\LyricXeeker Update.job => C:\Program Files (x86)\LyriXeeker\LyriXupdate.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (08/24/2013 06:03:11 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: ZipOpenerSetup(1).exe, Version: 0.0.0.0, Zeitstempel: 0x2a425e19 Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc000041d Fehleroffset: 0x01cf4d22 ID des fehlerhaften Prozesses: 0x13bc Startzeit der fehlerhaften Anwendung: 0xZipOpenerSetup(1).exe0 Pfad der fehlerhaften Anwendung: ZipOpenerSetup(1).exe1 Pfad des fehlerhaften Moduls: ZipOpenerSetup(1).exe2 Berichtskennung: ZipOpenerSetup(1).exe3 Vollständiger Name des fehlerhaften Pakets: ZipOpenerSetup(1).exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: ZipOpenerSetup(1).exe5 Error: (08/24/2013 06:03:08 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: ZipOpenerSetup(1).exe, Version: 0.0.0.0, Zeitstempel: 0x2a425e19 Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x01cf4d22 ID des fehlerhaften Prozesses: 0x13bc Startzeit der fehlerhaften Anwendung: 0xZipOpenerSetup(1).exe0 Pfad der fehlerhaften Anwendung: ZipOpenerSetup(1).exe1 Pfad des fehlerhaften Moduls: ZipOpenerSetup(1).exe2 Berichtskennung: ZipOpenerSetup(1).exe3 Vollständiger Name des fehlerhaften Pakets: ZipOpenerSetup(1).exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: ZipOpenerSetup(1).exe5 Error: (08/24/2013 04:47:58 PM) (Source: ESENT) (User: ) Description: taskhostex (916) Versuch, Datei "C:\Users\Rainer\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat" für den Lesezugriff zu öffnen, ist mit Systemfehler 32 (0x00000020): "Der Prozess kann nicht auf die Datei zugreifen, da sie von einem anderen Prozess verwendet wird. " fehlgeschlagen. Fehler -1032 (0xfffffbf8) beim Öffnen von Dateien. Error: (08/24/2013 04:47:30 PM) (Source: Desktop Window Manager) (User: ) Description: Der Desktopfenster-Manager hat einen schwerwiegenden Fehler (0x8898008d) festgestellt. Error: (08/24/2013 10:30:48 AM) (Source: MsiInstaller) (User: NT-AUTORITÄT) Description: Producto: VAFPlayer -- Error 1706. No se encuentra ningún paquete de instalación para el producto VAFPlayer. Vuelva a intentar la instalación usando una copia válida del paquete de instalación 'Installer.msi'. Error: (08/24/2013 10:30:47 AM) (Source: MsiInstaller) (User: NT-AUTORITÄT) Description: Producto: VAFPlayer -- Error 1706. No se encuentra ningún paquete de instalación para el producto VAFPlayer. Vuelva a intentar la instalación usando una copia válida del paquete de instalación 'Installer.msi'. Error: (08/24/2013 09:43:31 AM) (Source: Perflib) (User: ) Description: rdyboost4 Error: (08/23/2013 06:39:15 PM) (Source: MsiInstaller) (User: NT-AUTORITÄT) Description: Producto: VAFPlayer -- Error 1706. No se encuentra ningún paquete de instalación para el producto VAFPlayer. Vuelva a intentar la instalación usando una copia válida del paquete de instalación 'Installer.msi'. Error: (08/23/2013 06:39:13 PM) (Source: MsiInstaller) (User: NT-AUTORITÄT) Description: Producto: VAFPlayer -- Error 1706. No se encuentra ningún paquete de instalación para el producto VAFPlayer. Vuelva a intentar la instalación usando una copia válida del paquete de instalación 'Installer.msi'. Error: (08/22/2013 07:30:51 PM) (Source: Application Hang) (User: ) Description: Programm firefox.exe, Version 23.0.1.4974 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 13dc Startzeit: 01ce9f5d505bd6f6 Endzeit: 4294967295 Anwendungspfad: C:\Program Files (x86)\Mozilla Firefox\firefox.exe Berichts-ID: 95177bc9-0b50-11e3-bf2c-ca37d22286db Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: System errors: ============= Error: (08/24/2013 10:16:09 AM) (Source: Microsoft-Windows-Kernel-Power) (User: ) Description: 4 Error: (08/24/2013 09:45:40 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet: %%1069 Error: (08/24/2013 09:45:40 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden: %%1330 Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC). Error: (08/24/2013 08:18:35 AM) (Source: Microsoft-Windows-Kernel-Power) (User: ) Description: 4 Error: (08/23/2013 08:05:48 AM) (Source: Microsoft-Windows-Kernel-Power) (User: ) Description: 4 Error: (08/22/2013 08:40:19 PM) (Source: Microsoft-Windows-Kernel-Power) (User: ) Description: 4 Error: (08/21/2013 09:13:01 PM) (Source: Microsoft-Windows-Kernel-Power) (User: ) Description: 4 Error: (08/21/2013 08:39:38 PM) (Source: Microsoft-Windows-Kernel-Power) (User: ) Description: 4 Error: (08/21/2013 08:06:07 AM) (Source: Microsoft-Windows-Kernel-Power) (User: ) Description: 4 Error: (08/20/2013 09:36:02 PM) (Source: Microsoft-Windows-Kernel-Power) (User: ) Description: 4 Microsoft Office Sessions: ========================= Error: (08/24/2013 06:03:11 PM) (Source: Application Error)(User: ) Description: ZipOpenerSetup(1).exe0.0.0.02a425e19unknown0.0.0.000000000c000041d01cf4d2213bc01cea0e369c7a1d3C:\Users\Rainer\Downloads\ZipOpenerSetup(1).exeunknownac 741007-0cd6-11e3-bf2d-902b34983558 Error: (08/24/2013 06:03:08 PM) (Source: Application Error)(User: ) Description: ZipOpenerSetup(1).exe0.0.0.02a425e19unknown0.0.0.000000000c000000501cf4d2213bc01cea0e369c7a1d3C:\Users\Rainer\Downloads\ZipOpenerSetup(1).exeunknownaa 993524-0cd6-11e3-bf2d-902b34983558 Error: (08/24/2013 04:47:58 PM) (Source: ESENT)(User: ) Description: taskhostex916C:\Users\Rainer\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat-1032 (0xfffffbf8)32 (0x00000020)Der Prozess kann nicht auf die Datei zugreifen, da sie von einem anderen Prozess verwendet wird. Error: (08/24/2013 04:47:30 PM) (Source: Desktop Window Manager)(User: ) Description: 0x8898008d Error: (08/24/2013 10:30:48 AM) (Source: MsiInstaller)(User: NT-AUTORITÄT) Description: Producto: VAFPlayer -- Error 1706. No se encuentra ningún paquete de instalación para el producto VAFPlayer. Vuelva a intentar la instalación usando una copia válida del paquete de instalación 'Installer.msi'.(NULL)(NULL)(NULL)(NULL)(NULL) Error: (08/24/2013 10:30:47 AM) (Source: MsiInstaller)(User: NT-AUTORITÄT) Description: Producto: VAFPlayer -- Error 1706. No se encuentra ningún paquete de instalación para el producto VAFPlayer. Vuelva a intentar la instalación usando una copia válida del paquete de instalación 'Installer.msi'.(NULL)(NULL)(NULL)(NULL)(NULL) Error: (08/24/2013 09:43:31 AM) (Source: Perflib)(User: ) Description: rdyboost4 Error: (08/23/2013 06:39:15 PM) (Source: MsiInstaller)(User: NT-AUTORITÄT) Description: Producto: VAFPlayer -- Error 1706. No se encuentra ningún paquete de instalación para el producto VAFPlayer. Vuelva a intentar la instalación usando una copia válida del paquete de instalación 'Installer.msi'.(NULL)(NULL)(NULL)(NULL)(NULL) Error: (08/23/2013 06:39:13 PM) (Source: MsiInstaller)(User: NT-AUTORITÄT) Description: Producto: VAFPlayer -- Error 1706. No se encuentra ningún paquete de instalación para el producto VAFPlayer. Vuelva a intentar la instalación usando una copia válida del paquete de instalación 'Installer.msi'.(NULL)(NULL)(NULL)(NULL)(NULL) Error: (08/22/2013 07:30:51 PM) (Source: Application Hang)(User: ) Description: firefox.exe23.0.1.497413dc01ce9f5d505bd6f64294967295C:\Program Files (x86)\Mozilla Firefox\firefox.exe95177bc9-0b50-11e3-bf2c-ca37d22286db ==================== Memory info =========================== Percentage of memory in use: 77% Total physical RAM: 4042.84 MB Available physical RAM: 910.98 MB Total Pagefile: 6730.84 MB Available Pagefile: 2278.82 MB Total Virtual: 8192 MB Available Virtual: 8191.77 MB ==================== Drives ================================ Drive c: (Windows) (Fixed) (Total:891.31 GB) (Free:691.29 GB) NTFS Drive d: (Windows XP) (Fixed) (Total:488.28 GB) (Free:486.76 GB) NTFS Drive g: () (Fixed) (Total:698.63 GB) (Free:121.67 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 1397 GB) (Disk ID: 86360811) Partition: GPT Partition Type ======================================================== Disk: 1 (Size: 699 GB) (Disk ID: 9564BEB6) Partition 1: (Active) - (Size=699 GB) - (Type=07 NTFS) ==================== End Of Log ============================ GMER habe ich noch nicht durchgeführt. Kann mir da jeman mit meinem Problem weiterhelfen? Danke und viele Grüße, Rainer |
24.08.2013, 17:24 | #2 |
| Maus macht Problem beim klicken Und hier ist nun GMER:
__________________GMER Logfile: Code:
ATTFilter GMER 2.1.19163 - hxxp://www.gmer.net Rootkit scan 2013-08-24 18:22:12 Windows 6.2.9200 x64 \Device\Harddisk0\DR0 -> \Device\0000003a ST1500DL003-9VT16L rev.CC4A 1397,27GB Running: mdsp8on1.exe; Driver: C:\Users\Rainer\AppData\Local\Temp\uxdoapoc.sys ---- User code sections - GMER 2.1 ---- .text C:\Windows\system32\dwm.exe[4000] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 306 000007fe1df1177a 4 bytes [F1, 1D, FE, 07] .text C:\Windows\system32\dwm.exe[4000] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 314 000007fe1df11782 4 bytes [F1, 1D, FE, 07] .text C:\Windows\Explorer.EXE[816] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 306 000007fe1df1177a 4 bytes [F1, 1D, FE, 07] .text C:\Windows\Explorer.EXE[816] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 314 000007fe1df11782 4 bytes [F1, 1D, FE, 07] .text C:\Windows\Explorer.EXE[816] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 690 000007fe177d1532 4 bytes [7D, 17, FE, 07] .text C:\Windows\Explorer.EXE[816] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 698 000007fe177d153a 4 bytes [7D, 17, FE, 07] .text C:\Windows\Explorer.EXE[816] C:\Windows\SYSTEM32\MSIMG32.dll!TransparentBlt + 246 000007fe177d165a 4 bytes [7D, 17, FE, 07] .text C:\Users\Rainer\Downloads\FRST64.exe[5068] C:\Windows\SYSTEM32\WSOCK32.dll!recvfrom + 742 000007fe18cf1b32 4 bytes [CF, 18, FE, 07] .text C:\Users\Rainer\Downloads\FRST64.exe[5068] C:\Windows\SYSTEM32\WSOCK32.dll!recvfrom + 750 000007fe18cf1b3a 4 bytes [CF, 18, FE, 07] .text C:\Users\Rainer\Downloads\FRST64.exe[5068] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 306 000007fe1df1177a 4 bytes [F1, 1D, FE, 07] .text C:\Users\Rainer\Downloads\FRST64.exe[5068] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 314 000007fe1df11782 4 bytes [F1, 1D, FE, 07] ---- Threads - GMER 2.1 ---- Thread C:\Windows\System32\svchost.exe [624:1348] 000007fe16f697dc Thread C:\Windows\System32\svchost.exe [624:1352] 000007fe16eac0f0 Thread C:\Windows\System32\svchost.exe [624:1588] 000007fe1241d594 Thread C:\Windows\System32\svchost.exe [624:4848] 000007fe12414150 Thread C:\Windows\system32\svchost.exe [640:2336] 000007fe139b1824 Thread C:\Windows\system32\svchost.exe [640:2028] 000007fe14085c38 Thread C:\Windows\system32\svchost.exe [640:4392] 000007fe153151dc Thread C:\Windows\system32\svchost.exe [640:4476] 000007fe12c51470 Thread C:\Windows\system32\svchost.exe [640:4512] 000007fe12c51470 Thread C:\Windows\system32\svchost.exe [640:5224] 000007fe199716b0 Thread C:\Windows\system32\svchost.exe [640:4556] 000007fe180210f0 Thread C:\Windows\System32\spoolsv.exe [1516:3124] 000007fe13c054c0 Thread C:\Windows\System32\spoolsv.exe [1516:3260] 000007fe13bb30ec Thread C:\Windows\System32\spoolsv.exe [1516:3316] 000007fe12015798 Thread C:\Windows\System32\spoolsv.exe [1516:3364] 000007fe1239bd30 Thread C:\Windows\System32\spoolsv.exe [1516:3380] 000007fe1231d29c Thread C:\Windows\System32\spoolsv.exe [1516:3604] 000007fe11ef81ac Thread C:\Windows\system32\svchost.exe [1692:760] 000007fe14e431a0 Thread C:\Windows\system32\svchost.exe [1692:2064] 000007fe14e49c68 Thread C:\Windows\system32\svchost.exe [1692:3012] 000007fe13174910 Thread C:\Windows\system32\svchost.exe [1692:3788] 000007fe12eb24e8 Thread C:\Windows\system32\svchost.exe [1692:3852] 000007fe12c41544 Thread C:\Windows\system32\svchost.exe [1692:2664] 000007fe12c155dc Thread C:\Windows\system32\svchost.exe [1692:416] 000007fe13171044 Thread C:\Windows\system32\dashost.exe [1428:3632] 000007fe14085c38 Thread C:\Windows\system32\svchost.exe [3024:3044] 000007fe1d924aa0 Thread C:\Windows\system32\csrss.exe [3872:4172] fffff9600087f5e8 Thread C:\Windows\SysWOW64\rundll32.exe [4952:5364] 000000006ee27560 Thread C:\Windows\SysWOW64\rundll32.exe [4952:2776] 000000006ee288af Thread C:\Windows\SysWOW64\rundll32.exe [4952:2968] 000000006ee28b29 Thread C:\Windows\SYSTEM32\ntdll.dll [2788:3636] 00000000012e301f Thread C:\Windows\SYSTEM32\ntdll.dll [2788:1572] 00000000749e7240 Thread C:\Windows\SYSTEM32\ntdll.dll [2788:3992] 00000000749e75f0 Thread C:\Windows\SYSTEM32\ntdll.dll [2788:1460] 00000000749e75f0 Thread C:\Windows\SYSTEM32\ntdll.dll [2788:5540] 0000000074bac59c Thread C:\Windows\SYSTEM32\ntdll.dll [2788:2076] 0000000074bac59c Thread C:\Windows\SYSTEM32\ntdll.dll [2788:5512] 0000000074bac59c Thread C:\Windows\SYSTEM32\ntdll.dll [2788:1660] 0000000074bac59c Thread C:\Windows\SYSTEM32\ntdll.dll [2788:4532] 0000000074bac59c Thread C:\Windows\SYSTEM32\ntdll.dll [2788:4660] 0000000074bac59c Thread C:\Windows\SYSTEM32\ntdll.dll [2788:5284] 0000000074bac59c Thread C:\Windows\SYSTEM32\ntdll.dll [2788:5128] 0000000074bac59c ---- EOF - GMER 2.1 ---- |
26.08.2013, 19:43 | #3 | |
/// the machine /// TB-Ausbilder | Maus macht Problem beim klicken hi,
__________________So funktioniert es: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
Combofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!Downloade dir bitte Combofix vom folgenden Downloadspiegel Link 1 WICHTIG - Speichere Combofix auf deinem Desktop
Wenn Combofix fertig ist, wird es eine Logfile erstellen. Bitte poste die C:\Combofix.txt in deiner nächsten Antwort. Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten Zitat:
__________________ |
26.08.2013, 21:01 | #4 |
| Maus macht Problem beim klicken Hallo schrauber, hier ist das Logfile: Code:
ATTFilter Combofix Logfile: Rainer |
27.08.2013, 09:53 | #5 |
/// the machine /// TB-Ausbilder | Maus macht Problem beim klicken Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
27.08.2013, 18:29 | #6 |
| Maus macht Problem beim klicken Hallo schrauber, hier kommt mal das erste Logfile: Code:
ATTFilter Malwarebytes Anti-Malware (Test) 1.75.0.1300 www.malwarebytes.org Datenbank Version: v2013.08.27.06 Windows 8 x64 NTFS Internet Explorer 10.0.9200.16660 Rainer :: LIPPERT [Administrator] Schutz: Aktiviert 27.08.2013 18:29:54 mbam-log-2013-08-27 (18-29-54).txt Art des Suchlaufs: Quick-Scan Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 248038 Laufzeit: 4 Minute(n), 36 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 41 HKCR\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3} (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199} (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48d2-9061-8BBD4899EB08} (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\DealPlyLive.OneClickCtrl.9 (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\DealPlyLive.OneClickProcessLauncherMachine (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\DealPlyLive.OneClickProcessLauncherMachine.1.0 (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\DealPlyLive.Update3WebControl.3 (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\DealPlyLiveUpdate.CoCreateAsync (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\DealPlyLiveUpdate.CoCreateAsync.1.0 (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\DealPlyLiveUpdate.CoreClass (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\DealPlyLiveUpdate.CoreClass.1 (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\DealPlyLiveUpdate.CoreMachineClass (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\DealPlyLiveUpdate.CoreMachineClass.1 (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\DealPlyLiveUpdate.CredentialDialogMachine (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\DealPlyLiveUpdate.CredentialDialogMachine.1.0 (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\DealPlyLiveUpdate.OnDemandCOMClassMachine (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\DealPlyLiveUpdate.OnDemandCOMClassMachine.1.0 (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\DealPlyLiveUpdate.OnDemandCOMClassMachineFallback (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\DealPlyLiveUpdate.OnDemandCOMClassMachineFallback.1.0 (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\DealPlyLiveUpdate.OnDemandCOMClassSvc (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\DealPlyLiveUpdate.OnDemandCOMClassSvc.1.0 (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\DealPlyLiveUpdate.ProcessLauncher (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\DealPlyLiveUpdate.ProcessLauncher.1.0 (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\DealPlyLiveUpdate.Update3COMClassService (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\DealPlyLiveUpdate.Update3COMClassService.1.0 (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\DealPlyLiveUpdate.Update3WebMachine (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\DealPlyLiveUpdate.Update3WebMachine.1.0 (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\DealPlyLiveUpdate.Update3WebMachineFallback (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\DealPlyLiveUpdate.Update3WebMachineFallback.1.0 (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\DealPlyLiveUpdate.Update3WebSvc (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\DealPlyLiveUpdate.Update3WebSvc.1.0 (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCU\SOFTWARE\DataMngr_Toolbar (PUP.Optional.DataMngr) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCU\SOFTWARE\INSTALLCORE (PUP.Optional.InstallCore.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SOFTWARE\Google\Chrome\Extensions\eooncjejnppfjjklapaamhcdmjbilmde (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SYSTEM\CurrentControlSet\Services\dealplylive (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SYSTEM\CurrentControlSet\Services\dealplylivem (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\CLSID\{7F1796B2-BEC6-427B-B734-F9C75ED94A80} (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7F1796B2-BEC6-427B-B734-F9C75ED94A80} (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7F1796B2-BEC6-427B-B734-F9C75ED94A80} (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\CLSID\{0D89DE71-3D99-4288-84DC-F18F1047A7D8} (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Delta Chrome Toolbar (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. Infizierte Registrierungswerte: 1 HKCU\Software\InstallCore|tb (PUP.Optional.InstallCore.A) -> Daten: 0L1N1H2O1S -> Erfolgreich gelöscht und in Quarantäne gestellt. Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 25 C:\Users\Rainer\AppData\Roaming\Babylon (PUP.Optional.Babylon.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\IMinent Toolbar (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DealPly (PUP.OPtional.Dealply) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\DealPlyLive (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\DealPlyLive\Update (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\DealPlyLive\Update\Log (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\CrashReports (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0 (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\Download (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\Install (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\Offline (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\Offline\{E6095C4B-F38B-4077-B6CB-DCE0866DADC3} (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\Tarma Installer (PUP.Optional.Tarma.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504} (PUP.Optional.Tarma.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\Cache (PUP.Optional.Tarma.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B} (PUP.Optional.Tarma.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\Cache (PUP.Optional.Tarma.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\BabSolution (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\BabSolution\Shared (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. Infizierte Dateien: 234 C:\ProgramData\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\Setup.exe (PUP.Optional.Tarma.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\Setup.exe (PUP.Optional.Tarma.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\BabSolution\Shared\BabMaint.exe (PUP.Optional.Babylon.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\BabSolution\Shared\BUSolution.dll (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\BabSolution\Shared\NTRedirect.dll (PUP.Optional.Babylon.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\Downloads\593_nudists_family_beach_mix.exe (PUP.BundleInstaller.DW) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\Downloads\Backup_Installer.exe (PUP.Optional.BundledToolBar.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\Downloads\Marleen_Lohse,_Janin_Reinhardt_-_Kein_Sex_ist_auch_keine_Loesung_(2012)_-_1080p_-_nackt.exe (PUP.BundleInstaller.DW) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\Downloads\Words_And_Music_John_Wayne_downloader_98842.exe (PUP.Optional.YourFileDownloader.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\Babylon\log_file.txt (PUP.Optional.Babylon.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineCore.job (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\playlist.vpl (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\config.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_103.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_11.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_120.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_121.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_122.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_123.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_124.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_125.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_126.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_127.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_136.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_137.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_140.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_141.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_149.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_150.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_160.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_165.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_181.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_191.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_193.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_199.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_200.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_201.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_204.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_219.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_221.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_224.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_268.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_28.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_34.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_37.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_49.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_57.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_86.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\player\images\channel_ld_99.png (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\IMinent Toolbar\IMinent_Toolbar.crc (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\IMinent Toolbar\arrow_refresh.png (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\IMinent Toolbar\basis.xml (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\IMinent Toolbar\cog.png (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\IMinent Toolbar\computer_delete.png (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\IMinent Toolbar\icons.bmp (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\IMinent Toolbar\IMinent_Toolbar.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\IMinent Toolbar\info.txt (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\IMinent Toolbar\TbCommonUtils.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\IMinent Toolbar\tbcore3.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\IMinent Toolbar\tbhelper.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\IMinent Toolbar\TbHelper2.exe (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\IMinent Toolbar\uninstall.exe (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\IMinent Toolbar\update.exe (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\IMinent Toolbar\version.txt (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DealPly\Uninstall DealPly.lnk (PUP.OPtional.Dealply) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DealPly\DealPly Help.url (PUP.OPtional.Dealply) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DealPly\DealPly.url (PUP.OPtional.Dealply) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\DealPlyLive.exe (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\DealPlyLive\Update\Log\DealPlyLive.log (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\DealPlyLive.exe (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\DealPlyLiveBroker.exe (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\DealPlyLiveHandler.exe (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\DealPlyLiveHelper.msi (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\DealPlyLiveOnDemand.exe (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdate.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_am.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_ar.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_bg.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_bn.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_ca.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_cs.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_da.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_de.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_el.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_en-GB.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_en.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_es-419.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_es.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_et.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_fa.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_fi.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_fil.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_fr.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_gu.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_hi.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_hr.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_hu.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_id.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_is.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_it.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_iw.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_ja.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_kn.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_ko.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_lt.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_lv.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_ml.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_mr.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_ms.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_nl.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_no.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_pl.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_pt-BR.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_pt-PT.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_ro.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_ru.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_sk.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_sl.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_sr.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_sv.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_sw.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_ta.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_te.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_th.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_tr.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_uk.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_ur.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_vi.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_zh-CN.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\goopdateres_zh-TW.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\npGoogleUpdate3.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\psmachine.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\psuser.dll (PUP.Optional.DealPly.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\Setup.dat (PUP.Optional.Tarma.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\Setup.ico (PUP.Optional.Tarma.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\_Setup.dll (PUP.Optional.Tarma.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\_Setupx.dll (PUP.Optional.Tarma.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\Setup.dat (PUP.Optional.Tarma.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\Setup.ico (PUP.Optional.Tarma.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\_Setup.dll (PUP.Optional.Tarma.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\BabSolution\Shared\chu.js (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\BabSolution\Shared\Delta.ico (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\BabSolution\Shared\enhancedNT.dll (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\BabSolution\Shared\GUninstaller.exe (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\BabSolution\Shared\SetupParams.ini (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Rainer\AppData\Roaming\BabSolution\Shared\sqlite3.dll (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\AxInterop.WMPLib.dll (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\ComponentFactory.Krypton.Toolkit.dll (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\FileBrowser.dll (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\Interop.WMPLib.dll (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\libreria.ico (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\Newtonsoft.Json.dll (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\UltraID3Lib.dll (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\Uninstall.exe (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\uninstall.ico (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\VAFPlayer.exe (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\VAFPlayer.exe.config (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\VAFPlayer.InstallState (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\VAFUpdate.exe (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\wmp.dll (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Arabic.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Arabic.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Bulgarian.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Bulgarian.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Catalan.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Catalan.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Chinese (Simplified).gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Chinese (Simplified).ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Chinese (Traditional).gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Chinese (Traditional).ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Czech.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Czech.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Danish.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Danish.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Dutch.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Dutch.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\English.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\English.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Estonian.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Estonian.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Finnish.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Finnish.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\French.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\French.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\German.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\German.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Greek.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Greek.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Haitian Creole.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Haitian Creole.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Hebrew.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Hebrew.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Hindi.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Hindi.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Hungarian.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Hungarian.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Indonesian.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Indonesian.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Italian.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Italian.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Japanese.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Japanese.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Korean.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Korean.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Latvian.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Latvian.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Lithuanian.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Lithuanian.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Norwegian.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Norwegian.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Polish.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Polish.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Portuguese.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Portuguese.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Romanian.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Romanian.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Russian.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Russian.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Slovak.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Slovak.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Slovenian.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Slovenian.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Spanish.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Spanish.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Swedish.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Swedish.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Thai.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Thai.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Turkish.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Turkish.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Ukrainian.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Ukrainian.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Vietnamese.gif (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\Vietnamese.ini (PUP.Optional.VPLMedia.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. (Ende) Rainer Hier nun AdwCleander: Code:
ATTFilter # AdwCleaner v3.001 - Report created 27/08/2013 at 19:16:22 # Updated 24/08/2013 by Xplode # Operating System : Windows 8 (64 bits) # Username : Rainer - LIPPERT # Running from : C:\Users\Rainer\Downloads\adwcleaner.exe # Option : Clean ***** [ Services ] ***** ***** [ Files / Folders ] ***** Folder Deleted : C:\ProgramData\apn Folder Deleted : C:\ProgramData\Babylon Folder Deleted : C:\Program Files (x86)\FTDownloader.com Folder Deleted : C:\Program Files (x86)\Gophoto.it Folder Deleted : C:\Program Files (x86)\Iminent Folder Deleted : C:\Program Files (x86)\LyriXeeker Folder Deleted : C:\Program Files (x86)\openit Folder Deleted : C:\Program Files (x86)\optimizer pro Folder Deleted : C:\Program Files (x86)\tuguu sl Folder Deleted : C:\Program Files (x86)\Yontoo Folder Deleted : C:\Program Files\DomaIQ Uninstaller Folder Deleted : C:\Users\Rainer\AppData\Local\DealPlyLive Folder Deleted : C:\Users\Rainer\AppData\Local\PutLockerDownloader Folder Deleted : C:\Users\Rainer\AppData\LocalLow\delta Folder Deleted : C:\Users\Rainer\AppData\LocalLow\Toolbar4 Folder Deleted : C:\Users\Rainer\AppData\Roaming\dvdvideosoftiehelpers Folder Deleted : C:\Users\Rainer\AppData\Roaming\Yontoo Folder Deleted : C:\Users\Rainer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FTDownloader.com Folder Deleted : C:\Users\Rainer\AppData\Roaming\Mozilla\Firefox\Profiles\jp7dfd2x.default\Extensions\{C9B68337-E93A-44EA-94DC-CB300EC06444} Folder Deleted : C:\Program Files (x86)\Mozilla Firefox\Extensions\ffxtlbr@babylon.com Folder Deleted : C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbffdhejhaoiflnpooogkckfdcmmjppn Folder Deleted : C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde Folder Deleted : C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk File Deleted : C:\Users\Public\Desktop\Open It!.lnk File Deleted : C:\Users\Rainer\AppData\Roaming\Mozilla\Firefox\Profiles\jeedrkjt.default-1366911675067\searchplugins\Babylon.xml File Deleted : C:\Users\Rainer\AppData\Roaming\Mozilla\Firefox\Profiles\jp7dfd2x.default\searchplugins\Babylon.xml File Deleted : C:\Program Files (x86)\Mozilla Firefox\searchplugins\StartWeb.xml File Deleted : C:\Users\Rainer\AppData\Roaming\Mozilla\Firefox\Profiles\jp7dfd2x.default\bprotector_extensions.sqlite File Deleted : C:\Users\Rainer\AppData\Roaming\Mozilla\Firefox\Profiles\jeedrkjt.default-1366911675067\\invalidprefs.js File Deleted : C:\Users\Rainer\AppData\Roaming\Mozilla\Firefox\Profiles\jeedrkjt.default-1366911675067\user.js File Deleted : C:\Users\Rainer\AppData\Roaming\Mozilla\Firefox\Profiles\jp7dfd2x.default\user.js File Deleted : C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_igdhbblpcellaljokkpfhcjlagemhgjl_0.localstorage File Deleted : C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineUA.job File Deleted : C:\Windows\System32\Tasks\DealPlyLiveUpdateTaskMachineUA File Deleted : C:\Windows\System32\Tasks\DealPlyUpdate ***** [ Shortcuts ] ***** ***** [ Registry ] ***** Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [{ACAA314B-EEBA-48E4-AD47-84E31C44796C}] Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\bbffdhejhaoiflnpooogkckfdcmmjppn Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\niapdbllcanepiiimjjndipklodoedlc Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk Key Deleted : HKLM\SOFTWARE\Classes\AppID\dealplylive.exe Key Deleted : HKLM\SOFTWARE\Classes\AppID\secman.DLL Key Deleted : HKLM\SOFTWARE\Classes\FTDownloader Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASMANCS Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@tools.dpliveupdate.com/DealPlyLive Update;version=3 Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@tools.dpliveupdate.com/DealPlyLive Update;version=9 Key Deleted : HKLM\SOFTWARE\a53dbd9b338ed42 Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56} Key Deleted : HKLM\SOFTWARE\Classes\AppID\{80FABB17-63AF-4655-9F07-B6509EE37AF2} Key Deleted : HKLM\SOFTWARE\Classes\AppID\{F48FC5B2-094A-44C7-B48C-289738C9582D} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1E0C9B2A-6447-452C-B012-2314A0C29412} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{34A8CEB6-89BB-49F1-B5E4-0D0D6C21F3B1} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3A4DBD3A-98CC-41CE-AD21-352D42B6F754} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4F8A50F6-69DE-4BE3-A33A-A1079B9AC0DB} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{501CB57A-D4E2-4855-96AD-EDB0A9083395} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6FF2C4DD-77A4-4BB5-BA4C-B42DEFBF9137} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{80FABB17-63AF-4655-9F07-B6509EE37AF2} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{83ABA270-8390-4CA6-AE48-FC089F55629E} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8B218A5F-1A3D-4347-94EF-A79575EB8094} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8C338DDB-19FC-4C1F-B74D-6931EE55F7A1} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{9BDB5E09-4BBA-4422-8C2B-529B281C32B8} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C536F080-57B7-46D6-8894-C647553F2889} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CA5D945F-E738-4D0B-A0B5-25AC51C64659} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F48FC5B2-094A-44C7-B48C-289738C9582D} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F7698761-4ABA-45C2-A5BB-D2163922C725} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FE9271F2-6EFD-44B0-A826-84C829536E93} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FFCC53E6-2655-47FC-A89B-54E8D7F305D1} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7} Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759} Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF} Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{8C338DDB-19FC-4C1F-B74D-6931EE55F7A1} Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE} Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291} Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8C338DDB-19FC-4C1F-B74D-6931EE55F7A1} Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C536F080-57B7-46D6-8894-C647553F2889} Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9} Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{BFFED5CA-8BDF-47CC-AED0-23F4E6D77732} Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BFFED5CA-8BDF-47CC-AED0-23F4E6D77732} Key Deleted : HKCU\Software\1ClickDownload Key Deleted : HKCU\Software\DealPly Key Deleted : HKCU\Software\dealplylive Key Deleted : HKCU\Software\delta LTD Key Deleted : HKCU\Software\Delta Key Deleted : HKCU\Software\AppDataLow\Software\lyrixeeker Key Deleted : HKLM\Software\Babylon Key Deleted : HKLM\Software\BabylonToolbar Key Deleted : HKLM\Software\DataMngr Key Deleted : HKLM\Software\DealPly Key Deleted : HKLM\Software\dealplylive Key Deleted : HKLM\Software\Delta Key Deleted : HKLM\Software\Iminent Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A76AA284-E52D-47E6-9E4F-B85DBF8E35C3} Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{EBE677C0-CBCB-4EBF-8098-E27E1B5271CF} Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\1ClickDownload Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DealPly Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DomaIQ Uninstaller Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\lyrix@lyrixeeker.co Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\OpenIt Open It! Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP Key Deleted : [x64] HKLM\SOFTWARE\DomaIQ Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{889DF117-14D1-44EE-9F31-C5FB5D47F68B} ***** [ Browsers ] ***** -\\ Internet Explorer v10.0.9200.16660 -\\ Mozilla Firefox v23.0.1 (de) [ File : C:\Users\Rainer\AppData\Roaming\Mozilla\Firefox\Profiles\jeedrkjt.default-1366911675067\prefs.js ] Line Deleted : user_pref("extensions.delta.admin", false); Line Deleted : user_pref("extensions.delta.aflt", "babsst"); Line Deleted : user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}"); Line Deleted : user_pref("extensions.delta.autoRvrt", "false"); Line Deleted : user_pref("extensions.delta.dfltLng", "de"); Line Deleted : user_pref("extensions.delta.excTlbr", false); Line Deleted : user_pref("extensions.delta.ffxUnstlRst", true); Line Deleted : user_pref("extensions.delta.id", "ae507413000000000000902b34983558"); Line Deleted : user_pref("extensions.delta.instlDay", "15927"); Line Deleted : user_pref("extensions.delta.instlRef", "sst"); Line Deleted : user_pref("extensions.delta.newTab", false); Line Deleted : user_pref("extensions.delta.prdct", "delta"); Line Deleted : user_pref("extensions.delta.prtnrId", "delta"); Line Deleted : user_pref("extensions.delta.rvrt", "false"); Line Deleted : user_pref("extensions.delta.smplGrp", "none"); Line Deleted : user_pref("extensions.delta.tlbrId", "base"); Line Deleted : user_pref("extensions.delta.tlbrSrchUrl", ""); Line Deleted : user_pref("extensions.delta.vrsn", "1.8.22.0"); Line Deleted : user_pref("extensions.delta.vrsnTs", "1.8.22.022:00:18"); Line Deleted : user_pref("extensions.delta.vrsni", "1.8.22.0"); Line Deleted : user_pref("extensions.delta_i.babExt", ""); Line Deleted : user_pref("extensions.delta_i.babTrack", "affID=119357&tt=070813_wt4&tsp=4970"); Line Deleted : user_pref("extensions.delta_i.srcExt", "ss"); [ File : C:\Users\Rainer\AppData\Roaming\Mozilla\Firefox\Profiles\jp7dfd2x.default\prefs.js ] Line Deleted : user_pref("browser.newtab.url", "hxxp://www1.delta-search.com/?affID=120519&tt=220413_d9116&babsrc=NT_ss&mntrId=AE50902B34983558"); Line Deleted : user_pref("browser.search.order.1", "Delta Search"); Line Deleted : user_pref("extensions.BabylonToolbar.admin", false); Line Deleted : user_pref("extensions.BabylonToolbar.aflt", "babsst"); Line Deleted : user_pref("extensions.BabylonToolbar.appId", "{BDB69379-802F-4eaf-B541-F8DE92DD98DB}"); Line Deleted : user_pref("extensions.BabylonToolbar.dfltLng", "en"); Line Deleted : user_pref("extensions.BabylonToolbar.excTlbr", false); Line Deleted : user_pref("extensions.BabylonToolbar.id", "300c821000000000000000241d95f79c"); Line Deleted : user_pref("extensions.BabylonToolbar.instlDay", "15675"); Line Deleted : user_pref("extensions.BabylonToolbar.instlRef", "sst"); Line Deleted : user_pref("extensions.BabylonToolbar.prdct", "BabylonToolbar"); Line Deleted : user_pref("extensions.BabylonToolbar.prtnrId", "babylon"); Line Deleted : user_pref("extensions.BabylonToolbar.tlbrId", "irhnew"); Line Deleted : user_pref("extensions.BabylonToolbar.tlbrSrchUrl", "hxxp://search.babylon.com/?babsrc=TB_def&mntrId=300c821000000000000000241d95f79c&q="); Line Deleted : user_pref("extensions.BabylonToolbar.vrsn", "1.8.3.8"); Line Deleted : user_pref("extensions.BabylonToolbar.vrsni", "1.8.3.8"); Line Deleted : user_pref("extensions.BabylonToolbar_i.aflt", "babsst"); Line Deleted : user_pref("extensions.BabylonToolbar_i.babExt", ""); Line Deleted : user_pref("extensions.BabylonToolbar_i.babTrack", "affID=112555&tt=100512_3_"); Line Deleted : user_pref("extensions.BabylonToolbar_i.hardId", "300c821000000000000000241d95f79c"); Line Deleted : user_pref("extensions.BabylonToolbar_i.id", "300c821000000000000000241d95f79c"); Line Deleted : user_pref("extensions.BabylonToolbar_i.instlDay", "15472"); Line Deleted : user_pref("extensions.BabylonToolbar_i.instlRef", "sst"); Line Deleted : user_pref("extensions.BabylonToolbar_i.prdct", "BabylonToolbar"); Line Deleted : user_pref("extensions.BabylonToolbar_i.prtnrId", "babylon"); Line Deleted : user_pref("extensions.BabylonToolbar_i.smplGrp", "none"); Line Deleted : user_pref("extensions.BabylonToolbar_i.srcExt", "ss"); Line Deleted : user_pref("extensions.BabylonToolbar_i.tlbrId", "base"); Line Deleted : user_pref("extensions.BabylonToolbar_i.vrsn", "1.5.3.17"); Line Deleted : user_pref("extensions.BabylonToolbar_i.vrsni", "1.5.3.17"); Line Deleted : user_pref("extensions.BabylonToolbar_i.vrsnTs", "1.8.3.818:35:25"); Line Deleted : user_pref("extensions.crossrider.bic", "139efdf1a6bd6d4ffe9b1bccac22b205"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.active", true); Line Deleted : user_pref("extensions.crossriderapp5060.5060.addressbar", ""); Line Deleted : user_pref("extensions.crossriderapp5060.5060.backgroundjs", "\n\n\"undefined\"!=typeof _GPL_BG_NEW&&appAPI.webRequest&&appAPI.webRequest.onBeforeNavigate?_GPL_BG_NEW.preinit():\"undefined\"!=typeof _G[...] Line Deleted : user_pref("extensions.crossriderapp5060.5060.backgroundver", 6); Line Deleted : user_pref("extensions.crossriderapp5060.5060.can_run_bg_code", true); Line Deleted : user_pref("extensions.crossriderapp5060.5060.certdomaininstaller", ""); Line Deleted : user_pref("extensions.crossriderapp5060.5060.changeprevious", false); Line Deleted : user_pref("extensions.crossriderapp5060.5060.cookie._GPL_aoi.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.cookie._GPL_aoi.value", "1348349085"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.cookie._GPL_blocklist.expiration", "Sun Sep 23 2012 07:58:40 GMT+0200"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.cookie._GPL_blocklist.value", "%22nonexistantdomain.com%22"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.cookie._GPL_country_code.expiration", "Sat Sep 29 2012 23:26:03 GMT+0200"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.cookie._GPL_country_code.value", "%22DE%22"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.cookie._GPL_crr.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.cookie._GPL_crr.value", "1348378289"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.cookie._GPL_hotfix20111102645.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.cookie._GPL_hotfix20111102645.value", "%221%22"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.cookie._GPL_installer_params.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.cookie._GPL_installer_params.value", "%7B%22source_id%22%3A%2245990%22%2C%22sub_id%22%3A%22default%22%2C%22uzid%22%3A%2245990%26subid%3D%26pid%3D1265%22%7D[...] Line Deleted : user_pref("extensions.crossriderapp5060.5060.cookie._GPL_parent_zoneid.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.cookie._GPL_parent_zoneid.value", "%2245990%22"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.cookie._GPL_pc_20120828.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.cookie._GPL_pc_20120828.value", "1348349166513"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.cookie._GPL_product_id.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.cookie._GPL_product_id.value", "%221265%22"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.cookie._GPL_zoneid.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.cookie._GPL_zoneid.value", "%2285088%22"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.cookie.dbtest.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.cookie.dbtest.value", "1348349162786"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.cookie.InstallationTime.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.cookie.InstallationTime.value", "1348349085"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.cookie.InstallerParams.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.description", "Savings Sidekick"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.domain", ""); Line Deleted : user_pref("extensions.crossriderapp5060.5060.enablesearch", false); Line Deleted : user_pref("extensions.crossriderapp5060.5060.fbremoteurl", ""); Line Deleted : user_pref("extensions.crossriderapp5060.5060.group", 0); Line Deleted : user_pref("extensions.crossriderapp5060.5060.homepage", ""); Line Deleted : user_pref("extensions.crossriderapp5060.5060.iframe", false); Line Deleted : user_pref("extensions.crossriderapp5060.5060.InstallationThankYouPage", true); Line Deleted : user_pref("extensions.crossriderapp5060.5060.InstallationTime", 1348349085); Line Deleted : user_pref("extensions.crossriderapp5060.5060.InstallationUserSettings.searchUserConifrmation", false); Line Deleted : user_pref("extensions.crossriderapp5060.5060.InstallationUserSettings.setHomepage", false); Line Deleted : user_pref("extensions.crossriderapp5060.5060.InstallationUserSettings.setNewTab", false); Line Deleted : user_pref("extensions.crossriderapp5060.5060.InstallationUserSettings.setSearch", false); Line Deleted : user_pref("extensions.crossriderapp5060.5060.internaldb.InstallerIdentifiers.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.internaldb.InstallerIdentifiers.value", "%7B%22installer_bic%22%3A%2284E872FA426F4340BBA839A43FB78864IE%22%2C%22installer_verifier%22%3A%22e9d0e7d2080921ac[...] Line Deleted : user_pref("extensions.crossriderapp5060.5060.internaldb.Resources_appVer.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.internaldb.Resources_appVer.value", "34"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.internaldb.Resources_lastVersion.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.internaldb.Resources_lastVersion.value", "0"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.internaldb.Resources_meta.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.internaldb.Resources_meta.value", "%7B%7D"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.internaldb.Resources_nextCheck.expiration", "Sun Sep 23 2012 13:29:38 GMT+0200"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.internaldb.Resources_nextCheck.value", "true"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.internaldb.Resources_queue.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.internaldb.Resources_queue.value", "%7B%7D"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.internaldb.SoftwareDetected.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.internaldb.SoftwareDetected.value", "%7B%22AnySoftware%22%3Afalse%2C%22Wireshark%22%3Afalse%2C%22VirtualBox%22%3Afalse%2C%22VMWare%22%3Afalse%2C%22InsideVM[...] Line Deleted : user_pref("extensions.crossriderapp5060.5060.js", "\n\nif(\"undefined\"!=typeof _GPL_PLUGIN){var _GPL_=function(){_GPL_PLUGIN.started||_GPL_PLUGIN.prepare({pid:1224,baseCDN:\"savingsside-a.akamaihd.ne[...] Line Deleted : user_pref("extensions.crossriderapp5060.5060.manifesturl", ""); Line Deleted : user_pref("extensions.crossriderapp5060.5060.name", "Savings Sidekick"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.newtab", ""); Line Deleted : user_pref("extensions.crossriderapp5060.5060.opensearch", ""); Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_1.code", "appAPI._cr_config={appID:function(){var a=appAPI.appInfo;if(a){return appAPI.appInfo.id}else{return appAPI.appID}}};$jquery.extend[...] Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_1.name", "base"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_1.ver", 3); Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_1000014.code", "Array.prototype.indexOf||(Array.prototype.indexOf=function(a){if(void 0===this||null===this)throw new TypeError;var b=Object[...] Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_1000014.name", "GPL Plugin (Loader)"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_1000014.ver", 6); Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_1000015.code", "var _GPL_BG={vars:{},rules:{},started:!1,log:function(d){console.log(d)},factor:1,preinit:function(){null!=appAPI.db.get(\"_[...] Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_1000015.name", "GPL Background (BG)"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_1000015.ver", 3); Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_13.code", "(function(a){a.selectedText=function(e,c){function d(){if(window.getSelection){return window.getSelection()}else{if(document.getS[...] Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_13.name", "CrossriderAppUtils"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_13.ver", 2); Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_14.code", "if(typeof(appAPI)===\"undefined\"){appAPI={}}appAPI.JSON={};if(typeof JSON!==\"undefined\"){appAPI.JSON=JSON}else{(function(){fun[...] Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_14.name", "CrossriderUtils"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_14.ver", 2); Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_15.code", "(function(f){var u={};var e=Math.floor(Math.random()*99999);var g=Math.floor(Math.random()*99999999999999)+\"Z\"+(new Date()).get[...] Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_15.name", "FacebookFFIE"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_15.ver", 1); Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_16.code", "(function(f,b){if(typeof(b)==\"undefined\"){b={}}var d=f.appID+\".\";b.appID=f.appID;b.version=f.version;b.platform=f.platform;b.[...] Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_16.name", "FFAppAPIWrapper"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_16.ver", 3); Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_17.code", "if(typeof window!==\"undefined\"){\n/*!\n * jQuery JavaScript Library v1.4.2\n * hxxp://jquery.com/\n *\n * Copyright 2010, John [...] Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_17.name", "jQuery"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_17.ver", 3); Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_21.code", "var CrossriderDebugManager=(function(h){var f={appId:appAPI._cr_config.appID(),url:appAPI._cr_config.debug_app};return h.Class.ex[...] Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_21.name", "debug"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_21.ver", 3); Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_22.code", "(function(a){appAPI.queueManager={queue:[],register:function(b){this.queue.push(b)}};appAPI.ready=function(c,b){a.when.apply(null[...] Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_22.name", "resources"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_22.ver", 2); Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_28.code", "var CrossriderInitializerPlugin=(function(e){var c={appId:appAPI._cr_config.appID()},b,g=new e.Deferred(),f;return e.Class.extend[...] Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_28.name", "initializer"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_28.ver", 2); Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_4.code", "/*! jQuery v1.7.1 jquery.com | jquery.org/license */\n(function(a,b){function cy(a){return f.isWindow(a)?a:a.nodeType===9?a.defaul[...] Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_4.name", "jquery_1_7_1"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_4.ver", 3); Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_47.code", "(function(){appAPI.ready=function(a){appAPI.resources.isReady(a)}}());var CrossRiderResourcesManager=(function(){var A={appId:(fu[...] Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_47.name", "resources_background"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins.plugin_47.ver", 1); Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins_lists.plugins_0", "17,14,16,47,1000015"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.plugins_lists.plugins_1", "17,14,13,16,15,4,1,21,22,1000014,28"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.pluginsurl", "hxxp://app-static.crossrider.com/plugin/apps/5060/plugins/084/ff/plugins.json"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.pluginsversion", 14); Line Deleted : user_pref("extensions.crossriderapp5060.5060.publisher", "215 Apps"); Line Deleted : user_pref("extensions.crossriderapp5060.5060.searchstatus", 0); Line Deleted : user_pref("extensions.crossriderapp5060.5060.setnewtab", false); Line Deleted : user_pref("extensions.crossriderapp5060.5060.settingsurl", ""); Line Deleted : user_pref("extensions.crossriderapp5060.5060.thankyou", ""); Line Deleted : user_pref("extensions.crossriderapp5060.5060.updateinterval", 360); Line Deleted : user_pref("extensions.crossriderapp5060.5060.ver", 34); Line Deleted : user_pref("extensions.crossriderapp5060.adsOldValue", 14); Line Deleted : user_pref("extensions.crossriderapp5060.apps", "5060"); Line Deleted : user_pref("extensions.crossriderapp5060.bic", "139efdf1a6bd6d4ffe9b1bccac22b205"); Line Deleted : user_pref("extensions.crossriderapp5060.cid", 5060); Line Deleted : user_pref("extensions.crossriderapp5060.firstrun", false); Line Deleted : user_pref("extensions.crossriderapp5060.hadappinstalled", true); Line Deleted : user_pref("extensions.crossriderapp5060.installationdate", 1348349140); Line Deleted : user_pref("extensions.crossriderapp5060.lastcheck", 22472970); Line Deleted : user_pref("extensions.crossriderapp5060.lastcheckitem", 22472994); Line Deleted : user_pref("extensions.crossriderapp5060.modetype", "production"); Line Deleted : user_pref("extensions.crossriderapp5060.reportInstall", true); Line Deleted : user_pref("extensions.delta.admin", false); Line Deleted : user_pref("extensions.delta.aflt", "babsst"); Line Deleted : user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}"); Line Deleted : user_pref("extensions.delta.autoRvrt", "false"); Line Deleted : user_pref("extensions.delta.dfltLng", "en"); Line Deleted : user_pref("extensions.delta.excTlbr", false); Line Deleted : user_pref("extensions.delta.ffxUnstlRst", true); Line Deleted : user_pref("extensions.delta.id", "ae507413000000000000902b34983558"); Line Deleted : user_pref("extensions.delta.instlDay", "15818"); Line Deleted : user_pref("extensions.delta.instlRef", "sst"); Line Deleted : user_pref("extensions.delta.newTab", false); Line Deleted : user_pref("extensions.delta.prdct", "delta"); Line Deleted : user_pref("extensions.delta.prtnrId", "delta"); Line Deleted : user_pref("extensions.delta.rvrt", "false"); Line Deleted : user_pref("extensions.delta.smplGrp", "none"); Line Deleted : user_pref("extensions.delta.tlbrId", "base"); Line Deleted : user_pref("extensions.delta.tlbrSrchUrl", ""); Line Deleted : user_pref("extensions.delta.vrsn", "1.8.16.16"); Line Deleted : user_pref("extensions.delta.vrsni", "1.8.16.16"); Line Deleted : user_pref("extensions.delta.vrsnTs", "1.8.16.1620:10:26"); Line Deleted : user_pref("extensions.installCache", "[{\"name\":\"winreg-app-global\",\"addons\":{\"url_advisor@kaspersky.com\":{\"descriptor\":\"C:\\\\Program Files (x86)\\\\Kaspersky Lab\\\\Kaspersky Anti-Virus 20[...] Line Deleted : user_pref("extentions.y2layers.defaultEnableAppsList", "twittube,ezLooker,pagerage,buzzdock,toprelatedtopics"); Line Deleted : user_pref("extentions.y2layers.installId", "ec4103d0-5c49-46de-bc8c-1fb548d7e2b9"); Line Deleted : user_pref("extentions.y2layers.lastDnsTest", 371338); -\\ Google Chrome v29.0.1547.57 [ File : C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R0].txt - [33796 octets] - [27/08/2013 19:15:27] AdwCleaner[S0].txt - [34010 octets] - [27/08/2013 19:16:22] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [34071 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 5.5.4 (08.22.2013:1) OS: Windows 8 x64 Ran by Rainer on 27.08.2013 at 19:24:44,41 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys Failed to delete: [Registry Key] HKEY_CLASSES_ROOT\vafplayer Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D} Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\tuguu sl Failed to delete: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\installer\features\482aa67ad25e6e74e9f48bd5fbe8533c Failed to delete: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\installer\products\482aa67ad25e6e74e9f48bd5fbe8533c Failed to delete: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9cf699ca-2174-4ed8-bec1-ba82095edce0} Failed to delete: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{9cf699ca-2174-4ed8-bec1-ba82095edce0} ~~~ Files ~~~ Folders Successfully deleted: [Folder] "C:\Users\Rainer\AppData\Roaming\goforfiles" Successfully deleted: [Folder] "C:\Program Files (x86)\goforfiles" Successfully deleted: [Folder] "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\open it!" ~~~ FireFox Emptied folder: C:\Users\Rainer\AppData\Roaming\mozilla\firefox\profiles\jeedrkjt.default-1366911675067\minidumps [11 files] ~~~ Chrome Successfully deleted: [Folder] C:\Users\Rainer\appdata\local\Google\Chrome\User Data\Default\Extensions\epojlgbehpaeekopencdagbdamnkppci Failed to delete: [Registry Key] HKEY_LOCAL_MACHINE\Software\Google\Chrome\Extensions\ejnmnhkgiphcaeefbaooconkceehicfi Failed to delete: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Google\Chrome\Extensions\ejnmnhkgiphcaeefbaooconkceehicfi Failed to delete: [Registry Key] HKEY_LOCAL_MACHINE\Software\Google\Chrome\Extensions\epojlgbehpaeekopencdagbdamnkppci Failed to delete: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Google\Chrome\Extensions\epojlgbehpaeekopencdagbdamnkppci ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 27.08.2013 at 19:27:56,56 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
27.08.2013, 18:32 | #7 |
| Maus macht Problem beim klicken Als letztes nun FRST: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 27-08-2013 03 Ran by Rainer (administrator) on 27-08-2013 19:30:49 Running from C:\Users\Rainer\Downloads Windows 8 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (IvoSoft) C:\Program Files\Classic Shell\ClassicShellService.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Microsoft Corporation) C:\Windows\system32\dashost.exe (IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler64.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe () C:\Windows\SysWOW64\PSIService.exe (Bright Access) C:\Program Files (x86)\BackupPCFiles\BackupPCFiles.Client.Service.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4406.1205_x64__8wekyb3d8bbwe\LiveComm.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Corel, Inc.) C:\Program Files (x86)\Corel\Corel MediaOne\Corel Photo Downloader.exe (Bright Access) C:\Program Files (x86)\BackupPCFiles\BackupPCFiles.Agent.exe (Sony) C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe (Samsung) C:\Program Files (x86)\Samsung\Kies\Kies.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee Security Scan\3.0.318\SSScheduler.exe (Samsung) C:\Program Files (x86)\SEC\Natural Color Pro\NCProTray.exe () C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanionInfo.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe (Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\acrotray.exe (CANON INC.) C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE (Ulead Systems, Inc.) C:\Program Files (x86)\Common Files\Ulead Systems\AutoDetector\Monitor.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe (Macrovision Europe Ltd.) C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Bright Access) C:\Program Files (x86)\BackupPCFiles\BackupPCFiles.Client.CppProxyServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Farbar) C:\Users\Rainer\Downloads\FRST64(1).exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12503184 2012-06-11] (Realtek Semiconductor) HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [497648 2010-07-29] (Adobe Systems Incorporated) HKLM\...\Run: [Corel Photo Downloader] - C:\Program Files (x86)\Corel\Corel MediaOne\Corel Photo Downloader.exe [483144 2007-08-17] (Corel, Inc.) HKLM\...\Run: [BackupPCFiles.Agent] - C:\Program Files (x86)\BackupPCFiles\BackupPCFiles.Agent.exe [249472 2013-06-12] (Bright Access) HKCU\...\Run: [Sony PC Companion] - C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [449248 2013-05-29] (Sony) HKCU\...\Run: [KiesPreload] - C:\Program Files (x86)\Samsung\Kies\Kies.exe [1561968 2013-05-23] (Samsung) HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [285240 2012-09-01] (Intel Corporation) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM-x32\...\Run: [IMSS] - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [133440 2012-07-19] (Intel Corporation) HKLM-x32\...\Run: [AVP] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\runner_avp.exe [24504 2012-10-25] (Kaspersky Lab ZAO) HKLM-x32\...\Run: [Acrobat Assistant 8.0] - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe [620152 2006-10-23] (Adobe Systems Inc.) HKLM-x32\...\Run: [] - [x] HKLM-x32\...\Run: [CanonSolutionMenuEx] - C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE [1185112 2010-04-02] (CANON INC.) HKLM-x32\...\Run: [Ulead AutoDetector v2] - C:\Program Files (x86)\Common Files\Ulead Systems\AutoDetector\monitor.exe [95504 2007-08-02] (Ulead Systems, Inc.) HKLM-x32\...\Run: [PMBVolumeWatcher] - C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [740888 2013-04-24] (Sony Corporation) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation) HKLM-x32\...\Run: [KiesTrayAgent] - C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [311152 2013-05-23] (Samsung Electronics Co., Ltd.) HKU\UpdatusUser\...\Run: [Sony PC Companion] - C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [449248 2013-05-29] (Sony) HKU\UpdatusUser\...\Run: [KiesPreload] - C:\Program Files (x86)\Samsung\Kies\Kies.exe [1561968 2013-05-23] (Samsung) HKU\UpdatusUser\...\Run: [] - C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [1106288 2013-05-23] (Samsung) HKU\UpdatusUser\...\Run: [NTRedirect] - C:\Windows\SysWOW64\rundll32.exe "C:\Users\Rainer\AppData\Roaming\BabSolution\Shared\enhancedNT.dll",Run [x] Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Acrobat - Schnellstart.lnk ShortcutTarget: Adobe Acrobat - Schnellstart.lnk -> C:\Windows\Installer\{AC76BA86-1033-F400-7760-000000000003}\_SC_Acrobat.exe () Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Reader Synchronizer.lnk ShortcutTarget: Adobe Reader Synchronizer.lnk -> C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AdobeCollabSync.exe () Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files (x86)\McAfee Security Scan\3.0.318\SSScheduler.exe (McAfee, Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Office.lnk ShortcutTarget: Microsoft Office.lnk -> C:\Program Files (x86)\Microsoft Office\Office\OSA9.EXE (Microsoft Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\NCProTray.lnk ShortcutTarget: NCProTray.lnk -> C:\Program Files (x86)\SEC\Natural Color Pro\NCProTray.exe (Samsung) Startup: C:\Users\Rainer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma.lnk ShortcutTarget: Adobe Gamma.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com/ie StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM - {02A08B01-5DFD-404B-A7B8-0B6326F1F913} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASBJS SearchScopes: HKLM-x32 - {02A08B01-5DFD-404B-A7B8-0B6326F1F913} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASBJS BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft) BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO: ClassicIE9BHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIE9DLL_64.dll (IvoSoft) BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files (x86)\McAfee Security Scan\3.0.318\McAfeeMSS_IE.dll (McAfee, Inc.) BHO-x32: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft) BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: DealPly Shopping - {9cf699ca-2174-4ed8-bec1-ba82095edce0} - C:\Program Files (x86)\DealPly\DealPlyIE.dll No File BHO-x32: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO-x32: ClassicIE9BHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIE9DLL_32.dll (IvoSoft) Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft) Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated) Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft) Toolbar: HKCU - No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File Handler: ipp - No CLSID Value - Handler: msdaipp - No CLSID Value - Handler-x32: ipp - No CLSID Value - Handler-x32: msdaipp - No CLSID Value - Tcpip\Parameters: [DhcpNameServer] 83.169.184.161 83.169.184.225 FireFox: ======== FF ProfilePath: C:\Users\Rainer\AppData\Roaming\Mozilla\Firefox\Profiles\jeedrkjt.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.0.5 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll () FF Plugin-x32: @garmin.com/GpsControl - C:\Program Files (x86)\Garmin GPS Plugin\npGarmin.dll (GARMIN Corp.) FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 - C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @mcafee.com/McAfeeMssPlugin - C:\Program Files (x86)\McAfee Security Scan\3.0.318\npMcAfeeMss.dll (McAfee, Inc.) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\StartWeb.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\wikipedia-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF HKLM-x32\...\Firefox\Extensions: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\url_advisor@kaspersky.com FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\url_advisor@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\virtual_keyboard@kaspersky.com FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\virtual_keyboard@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\content_blocker@kaspersky.com FF Extension: Content Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\content_blocker@kaspersky.com FF HKCU\...\Firefox\Extensions: [lyrix@lyrixeeker.co] C:\Program Files (x86)\LyriXeeker\128.xpi Chrome: ======= CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding} CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter} CHR Extension: (Google Drive) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.2_0 CHR Extension: (YouTube) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0 CHR Extension: (Google Search) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0 CHR Extension: (Kaspersky URL Advisor) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\13.0.1.4190_0 CHR Extension: (Content Blocker) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\hghkgaeecgjhjkannahfamoehjmkjail\13.0.1.4190_0 CHR Extension: (Virtual Keyboard) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh\13.0.1.4292_0 CHR Extension: (DVDVideoSoft Browser Extension) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0 CHR Extension: (Gmail) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0 CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\urladvisor.crx CHR HKLM-x32\...\Chrome\Extension: [ejnmnhkgiphcaeefbaooconkceehicfi] - C:\Program Files (x86)\DealPly\DealPly.crx CHR HKLM-x32\...\Chrome\Extension: [epojlgbehpaeekopencdagbdamnkppci] - C:\Program Files (x86)\LyriXeeker\128.crx CHR HKLM-x32\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\content_blocker_chrome.crx CHR HKLM-x32\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\virtkbd.crx ==================== Services (Whitelisted) ================= S3 Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [72704 2013-01-08] (Adobe Systems) R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe [356376 2012-12-21] (Kaspersky Lab ZAO) R2 BackupPCFilesService; C:\Program Files (x86)\BackupPCFiles\BackupPCFiles.Client.Service.exe [67712 2013-06-12] (Bright Access) R2 ClassicShellService; C:\Program Files\Classic Shell\ClassicShellService.exe [68608 2013-04-07] (IvoSoft) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-07-05] (Intel Corporation) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) S3 McComponentHostService; C:\Program Files (x86)\McAfee Security Scan\3.0.318\McCHSvc.exe [235216 2013-02-05] (McAfee, Inc.) R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [483864 2013-04-24] (Sony Corporation) R2 ProtexisLicensing; C:\Windows\SysWOW64\PSIService.exe [177704 2007-06-05] () S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16048 2013-07-02] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Windows (R) Win 7 DDK provider) S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Windows (R) Win 7 DDK provider) R2 DRHARD64; C:\Windows\system32\drivers\DRHARD64.sys [21984 2011-11-03] (Licensed for Gebhard Software) R2 DRHMSR64; C:\Windows\system32\drivers\DRHMSR64.sys [14760 2011-12-06] () S3 gdrv; C:\Windows\gdrv.sys [25640 2012-11-16] (Windows (R) Server 2003 DDK provider) S3 gdrv; C:\Windows\gdrv.sys [25640 2012-11-16] (Windows (R) Server 2003 DDK provider) R2 inpoutx64; C:\Windows\System32\Drivers\inpoutx64.sys [15008 2012-11-12] (Highresolution Enterprises [www.highrez.co.uk]) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458584 2012-06-19] (Kaspersky Lab ZAO) S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [29616 2012-07-27] (Kaspersky Lab) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [619616 2013-04-23] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\system32\DRIVERS\klim6.sys [28504 2012-08-02] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [29016 2012-12-21] (Kaspersky Lab) R3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [29528 2012-10-25] (Kaspersky Lab) R1 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [50448 2013-04-23] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [178448 2013-04-23] (Kaspersky Lab ZAO) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) S3 catchme; \??\C:\ComboFix\catchme.sys [x] S3 cpuz135; \??\C:\Users\ADMINI~1\AppData\Local\Temp\cpuz135\cpuz135_x64.sys [x] S3 DRHARD; \??\C:\Windows\system32\DRIVERS\DRHARD.SYS [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-08-27 19:27 - 2013-08-27 19:27 - 00002411 _____ C:\Users\Rainer\Desktop\JRT.txt 2013-08-27 19:24 - 2013-08-27 19:24 - 00000000 ____D C:\Windows\ERUNT 2013-08-27 19:22 - 2013-08-27 19:22 - 01021434 _____ (Thisisu) C:\Users\Rainer\Downloads\JRT.exe 2013-08-27 19:19 - 2013-08-27 19:19 - 00000000 ___RD C:\Users\Rainer\SkyDrive 2013-08-27 19:15 - 2013-08-27 19:20 - 00000000 ____D C:\AdwCleaner 2013-08-27 19:14 - 2013-08-27 19:14 - 00994642 _____ C:\Users\Rainer\Downloads\adwcleaner.exe 2013-08-26 22:30 - 2013-08-26 22:30 - 00000000 ____D C:\Users\Rainer\Downloads\nudist magazines bonus 2013-08-26 21:58 - 2013-08-26 21:58 - 00023004 _____ C:\ComboFix.txt 2013-08-26 21:48 - 2011-06-26 08:45 - 00256000 _____ C:\Windows\PEV.exe 2013-08-26 21:48 - 2010-11-07 19:20 - 00208896 _____ C:\Windows\MBR.exe 2013-08-26 21:48 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2013-08-26 21:48 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2013-08-26 21:48 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2013-08-26 21:48 - 2000-08-31 02:00 - 00212480 _____ (SteelWerX) C:\Windows\SWXCACLS.exe 2013-08-26 21:48 - 2000-08-31 02:00 - 00098816 _____ C:\Windows\sed.exe 2013-08-26 21:48 - 2000-08-31 02:00 - 00080412 _____ C:\Windows\grep.exe 2013-08-26 21:48 - 2000-08-31 02:00 - 00068096 _____ C:\Windows\zip.exe 2013-08-26 21:46 - 2013-08-26 21:58 - 00000000 ____D C:\Qoobox 2013-08-26 21:45 - 2013-08-26 21:57 - 00000000 ____D C:\Windows\erdnt 2013-08-26 21:21 - 2013-08-26 21:21 - 05113393 ____R (Swearware) C:\Users\Rainer\Downloads\ComboFix.exe 2013-08-26 10:10 - 2013-08-26 10:11 - 75000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines Bonus.part15.rar 2013-08-26 10:10 - 2013-08-26 10:11 - 34086252 _____ C:\Users\Rainer\Downloads\Nudist Magazines Bonus.part16.rar 2013-08-26 10:02 - 2013-08-26 10:03 - 75000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines Bonus.part14.rar 2013-08-26 10:01 - 2013-08-26 10:03 - 75000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines Bonus.part13.rar 2013-08-26 10:01 - 2013-08-26 10:03 - 75000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines Bonus.part12.rar 2013-08-26 10:01 - 2013-08-26 10:02 - 75000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines Bonus.part11.rar 2013-08-26 10:01 - 2013-08-26 10:02 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part10.rar 2013-08-26 10:01 - 2013-08-26 10:02 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part09.rar 2013-08-26 10:01 - 2013-08-26 10:02 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part08.rar 2013-08-26 10:00 - 2013-08-26 10:00 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part07.rar 2013-08-26 09:56 - 2013-08-26 09:58 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part06.rar 2013-08-26 09:56 - 2013-08-26 09:58 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part05.rar 2013-08-26 09:56 - 2013-08-26 09:58 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part04.rar 2013-08-26 09:56 - 2013-08-26 09:58 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part03.rar 2013-08-26 09:56 - 2013-08-26 09:58 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part02.rar 2013-08-26 09:56 - 2013-08-26 09:57 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part01.rar 2013-08-25 23:15 - 2013-08-25 23:17 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part82.rar 2013-08-25 23:15 - 2013-08-25 23:16 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part83.rar 2013-08-25 23:15 - 2013-08-25 23:16 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part81.rar 2013-08-25 23:15 - 2013-08-25 23:16 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part80.rar 2013-08-25 23:15 - 2013-08-25 23:16 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part79.rar 2013-08-25 23:15 - 2013-08-25 23:16 - 22838301 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part84.rar 2013-08-25 23:14 - 2013-08-25 23:15 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part78.rar 2013-08-25 23:14 - 2013-08-25 23:15 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part77.rar 2013-08-25 23:13 - 2013-08-25 23:14 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part76.rar 2013-08-25 23:13 - 2013-08-25 23:14 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part75.rar 2013-08-25 23:13 - 2013-08-25 23:14 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part74.rar 2013-08-25 23:13 - 2013-08-25 23:14 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part73.rar 2013-08-25 23:13 - 2013-08-25 23:14 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part72.rar 2013-08-25 23:13 - 2013-08-25 23:13 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part71.rar 2013-08-25 23:11 - 2013-08-25 23:15 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part70.rar 2013-08-25 23:11 - 2013-08-25 23:13 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part69.rar 2013-08-25 23:11 - 2013-08-25 23:13 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part68.rar 2013-08-25 23:11 - 2013-08-25 23:13 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part67.rar 2013-08-25 23:11 - 2013-08-25 23:12 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part66.rar 2013-08-25 23:11 - 2013-08-25 23:12 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part65.rar 2013-08-25 23:11 - 2013-08-25 23:11 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part64.rar 2013-08-25 23:10 - 2013-08-25 23:11 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part63.rar 2013-08-25 23:09 - 2013-08-25 23:11 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part62.rar 2013-08-25 23:09 - 2013-08-25 23:11 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part61.rar 2013-08-25 23:09 - 2013-08-25 23:11 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part60.rar 2013-08-25 23:09 - 2013-08-25 23:11 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part59.rar 2013-08-25 23:09 - 2013-08-25 23:10 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part58.rar 2013-08-25 23:08 - 2013-08-25 23:11 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part54.rar 2013-08-25 23:08 - 2013-08-25 23:09 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part57.rar 2013-08-25 23:08 - 2013-08-25 23:09 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part56.rar 2013-08-25 23:08 - 2013-08-25 23:09 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part55.rar 2013-08-25 23:08 - 2013-08-25 23:09 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part53.rar 2013-08-25 23:08 - 2013-08-25 23:09 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part52.rar 2013-08-25 23:07 - 2013-08-25 23:08 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part51.rar 2013-08-25 23:06 - 2013-08-25 23:07 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part50.rar 2013-08-25 23:06 - 2013-08-25 23:07 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part49.rar 2013-08-25 23:06 - 2013-08-25 23:07 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part48.rar 2013-08-25 23:06 - 2013-08-25 23:07 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part47.rar 2013-08-25 23:06 - 2013-08-25 23:07 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part46.rar 2013-08-25 23:06 - 2013-08-25 23:07 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part45.rar 2013-08-25 23:05 - 2013-08-25 23:06 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part44.rar 2013-08-25 23:05 - 2013-08-25 23:06 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part43.rar 2013-08-25 23:04 - 2013-08-25 23:06 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part42.rar 2013-08-25 23:04 - 2013-08-25 23:05 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part41.rar 2013-08-25 23:04 - 2013-08-25 23:05 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part40.rar 2013-08-25 23:04 - 2013-08-25 23:05 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part39.rar 2013-08-25 23:03 - 2013-08-25 23:04 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part38.rar 2013-08-25 23:03 - 2013-08-25 23:04 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part37.rar 2013-08-25 23:03 - 2013-08-25 23:04 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part36.rar 2013-08-25 23:03 - 2013-08-25 23:04 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part35.rar 2013-08-25 23:03 - 2013-08-25 23:04 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part34.rar 2013-08-25 23:03 - 2013-08-25 23:04 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part33.rar 2013-08-25 23:02 - 2013-08-25 23:03 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part32.rar 2013-08-25 23:01 - 2013-08-25 23:03 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part31.rar 2013-08-25 23:01 - 2013-08-25 23:02 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part30.rar 2013-08-25 23:01 - 2013-08-25 23:02 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part29.rar 2013-08-25 23:01 - 2013-08-25 23:02 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part28.rar 2013-08-25 23:01 - 2013-08-25 23:02 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part27.rar 2013-08-25 23:01 - 2013-08-25 23:02 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part26.rar 2013-08-25 23:01 - 2013-08-25 23:01 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part25.rar 2013-08-25 23:00 - 2013-08-25 23:01 - 45325471 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part19.rar 2013-08-25 23:00 - 2013-08-25 23:01 - 38464931 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part20.rar 2013-08-25 23:00 - 2013-08-25 23:01 - 34219251 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part21.rar 2013-08-25 23:00 - 2013-08-25 23:01 - 32975331 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part23.rar 2013-08-25 23:00 - 2013-08-25 23:01 - 28103311 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part22.rar 2013-08-25 23:00 - 2013-08-25 23:01 - 18919911 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part24.rar 2013-08-25 23:00 - 2013-08-25 23:00 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part18.rar 2013-08-25 22:57 - 2013-08-25 22:59 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part15.rar 2013-08-25 22:57 - 2013-08-25 22:58 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part17.rar 2013-08-25 22:57 - 2013-08-25 22:58 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part16.rar 2013-08-25 22:57 - 2013-08-25 22:58 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part14.rar 2013-08-25 22:57 - 2013-08-25 22:57 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part13.rar 2013-08-25 22:56 - 2013-08-25 22:58 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part12.rar 2013-08-25 22:56 - 2013-08-25 22:57 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part11.rar 2013-08-25 22:55 - 2013-08-25 22:57 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part10.rar 2013-08-25 22:55 - 2013-08-25 22:57 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part09.rar 2013-08-25 22:55 - 2013-08-25 22:57 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part08.rar 2013-08-25 22:55 - 2013-08-25 22:55 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part07.rar 2013-08-25 22:53 - 2013-08-25 22:56 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part01.rar 2013-08-25 22:53 - 2013-08-25 22:55 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part06.rar 2013-08-25 22:53 - 2013-08-25 22:55 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part05.rar 2013-08-25 22:53 - 2013-08-25 22:55 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part04.rar 2013-08-25 22:53 - 2013-08-25 22:54 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part03.rar 2013-08-25 22:53 - 2013-08-25 22:54 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part02.rar 2013-08-25 22:51 - 2013-08-25 22:51 - 00000000 ____D C:\Users\Rainer\Downloads\nudist magazines - 40 2013-08-25 22:50 - 2013-08-25 22:51 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part09.rar 2013-08-25 22:50 - 2013-08-25 22:51 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part08.rar 2013-08-25 22:50 - 2013-08-25 22:50 - 29345220 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part10.rar 2013-08-25 22:47 - 2013-08-25 22:48 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part07.rar 2013-08-25 22:45 - 2013-08-25 22:47 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part06.rar 2013-08-25 22:45 - 2013-08-25 22:47 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part05.rar 2013-08-25 22:45 - 2013-08-25 22:47 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part04.rar 2013-08-25 22:45 - 2013-08-25 22:47 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part03.rar 2013-08-25 22:45 - 2013-08-25 22:47 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part02.rar 2013-08-25 22:45 - 2013-08-25 22:47 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part01.rar 2013-08-25 22:03 - 2013-08-25 22:03 - 00000000 ____D C:\Users\Rainer\Downloads\nudist magazines - 73 2013-08-25 22:01 - 2013-08-25 22:02 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part37.rar 2013-08-25 22:01 - 2013-08-25 22:01 - 07124643 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part38.rar 2013-08-25 22:00 - 2013-08-25 22:01 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part36.rar 2013-08-25 21:59 - 2013-08-25 22:01 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part35.rar 2013-08-25 21:59 - 2013-08-25 22:01 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part34.rar 2013-08-25 21:59 - 2013-08-25 22:01 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part33.rar 2013-08-25 21:59 - 2013-08-25 22:01 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part32.rar 2013-08-25 21:59 - 2013-08-25 22:01 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part31.rar 2013-08-25 21:58 - 2013-08-25 22:00 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part30.rar 2013-08-25 21:57 - 2013-08-25 21:59 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part29.rar 2013-08-25 21:57 - 2013-08-25 21:58 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part28.rar 2013-08-25 21:57 - 2013-08-25 21:58 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part27.rar 2013-08-25 21:56 - 2013-08-25 21:58 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part26.rar 2013-08-25 21:56 - 2013-08-25 21:58 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part25.rar 2013-08-25 21:56 - 2013-08-25 21:58 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part24.rar 2013-08-25 21:55 - 2013-08-25 21:57 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part23.rar 2013-08-25 21:55 - 2013-08-25 21:57 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part22.rar 2013-08-25 21:55 - 2013-08-25 21:57 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part21.rar 2013-08-25 21:55 - 2013-08-25 21:56 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part20.rar 2013-08-25 21:54 - 2013-08-25 21:56 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part19.rar 2013-08-25 21:53 - 2013-08-25 21:55 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part18.rar 2013-08-25 21:53 - 2013-08-25 21:55 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part17.rar 2013-08-25 21:53 - 2013-08-25 21:55 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part15.rar 2013-08-25 21:53 - 2013-08-25 21:54 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part16.rar 2013-08-25 21:53 - 2013-08-25 21:54 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part14.rar 2013-08-25 21:51 - 2013-08-25 22:03 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\WinRAR 2013-08-25 21:51 - 2013-08-25 21:56 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part13.rar 2013-08-25 21:51 - 2013-08-25 21:53 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part12.rar 2013-08-25 21:51 - 2013-08-25 21:53 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part11.rar 2013-08-25 21:51 - 2013-08-25 21:53 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part10.rar 2013-08-25 21:51 - 2013-08-25 21:53 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part09.rar 2013-08-25 21:51 - 2013-08-25 21:51 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2013-08-25 21:51 - 2013-08-25 21:51 - 00000000 ____D C:\Program Files (x86)\WinRAR 2013-08-25 21:50 - 2013-08-25 21:51 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part08.rar 2013-08-25 21:50 - 2013-08-25 21:50 - 01609146 _____ C:\Users\Rainer\Downloads\wrar420d.exe 2013-08-25 21:48 - 2013-08-25 21:53 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part06.rar 2013-08-25 21:48 - 2013-08-25 21:51 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part07.rar 2013-08-25 21:48 - 2013-08-25 21:50 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part05.rar 2013-08-25 21:48 - 2013-08-25 21:50 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part04.rar 2013-08-25 21:48 - 2013-08-25 21:50 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part03.rar 2013-08-25 21:48 - 2013-08-25 21:50 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part02.rar 2013-08-25 21:48 - 2013-08-25 21:50 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part01.rar 2013-08-24 18:22 - 2013-08-24 18:22 - 00007582 _____ C:\Users\Rainer\Downloads\GMER.log 2013-08-24 18:18 - 2013-08-24 18:18 - 00377856 _____ C:\Users\Rainer\Downloads\mdsp8on1.exe 2013-08-24 18:13 - 2013-08-24 18:20 - 00026670 _____ C:\Users\Rainer\Downloads\Addition.txt 2013-08-24 18:06 - 2013-08-24 18:06 - 01576734 _____ (Farbar) C:\Users\Rainer\Downloads\FRST64.exe 2013-08-24 18:06 - 2013-08-24 18:06 - 00000000 ____D C:\FRST 2013-08-24 18:05 - 2013-08-24 18:05 - 00000474 _____ C:\Users\Rainer\Downloads\defogger_disable.log 2013-08-24 18:05 - 2013-08-24 18:05 - 00000246 _____ C:\Users\Rainer\Downloads\defogger_enable.log 2013-08-24 18:05 - 2013-08-24 18:05 - 00000000 _____ C:\Users\Rainer\defogger_reenable 2013-08-24 18:04 - 2013-08-24 18:04 - 00050477 _____ C:\Users\Rainer\Downloads\Defogger.exe 2013-08-24 18:02 - 2013-08-24 18:02 - 00714352 _____ C:\Users\Rainer\Downloads\ZipOpenerSetup(1).exe 2013-08-24 09:12 - 2013-08-24 09:12 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Rainer\Downloads\mbam-setup-1.75.0.1300.exe 2013-08-24 09:12 - 2013-08-24 09:12 - 00001120 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-08-24 09:12 - 2013-08-24 09:12 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\Malwarebytes 2013-08-24 09:12 - 2013-08-24 09:12 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-08-24 09:12 - 2013-08-24 09:12 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-08-24 09:12 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2013-08-23 19:29 - 2013-04-15 17:23 - 00001336 _____ C:\Windows\SysWOW64\TrainingManagerPlugin.tlb 2013-08-22 22:13 - 2013-07-18 14:21 - 00000000 ____D C:\Users\Rainer\Downloads\Falk Karten 2013-08-22 21:18 - 2013-08-22 22:10 - 3575951388 _____ C:\Users\Rainer\Downloads\FMI-10506_2013-2.exe 2013-08-22 19:41 - 2013-08-22 19:41 - 20393805 _____ (The hugin development team ) C:\Users\Rainer\Downloads\Hugin_2009-4-0_win32_setup(3).exe 2013-08-22 19:41 - 2013-08-22 19:41 - 00001143 _____ C:\Users\Public\Desktop\EnfuseAlign.lnk 2013-08-22 19:41 - 2013-08-22 19:41 - 00001138 _____ C:\Users\Public\Desktop\Enblend360.lnk 2013-08-22 19:41 - 2013-08-22 19:41 - 00001133 _____ C:\Users\Public\Desktop\Enfuse360.lnk 2013-08-22 19:41 - 2013-08-22 19:41 - 00001118 _____ C:\Users\Public\Desktop\Enblend.lnk 2013-08-22 19:41 - 2013-08-22 19:41 - 00001113 _____ C:\Users\Public\Desktop\Enfuse.lnk 2013-08-22 19:41 - 2013-08-22 19:41 - 00000998 _____ C:\Users\Public\Desktop\Hugin.lnk 2013-08-22 19:40 - 2013-08-22 19:40 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(11).exe 2013-08-22 19:38 - 2013-08-22 19:42 - 00000000 ____D C:\Program Files (x86)\Hugin 2013-08-22 19:38 - 2013-08-22 19:38 - 27266109 _____ C:\Users\Rainer\Downloads\HuginSetup_2011.0.0_32bit_Windows(1).exe 2013-08-22 19:38 - 2013-08-22 19:38 - 00001064 _____ C:\Users\Rainer\Desktop\Hugin.lnk 2013-08-14 22:01 - 2013-08-14 22:01 - 00000000 ____D C:\Program Files\Windows Defender 2013-08-14 21:56 - 2013-08-14 21:56 - 02828552 _____ (AVAST Software) C:\Users\Rainer\Downloads\avast-browser-cleanup_8.0.1484.29.exe 2013-08-14 17:34 - 2013-08-14 17:35 - 00000000 ____D C:\Windows\system32\MRT 2013-08-14 17:31 - 2013-07-26 07:13 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-08-14 17:31 - 2013-07-26 07:13 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-08-14 17:31 - 2013-07-26 07:13 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll 2013-08-14 17:31 - 2013-07-26 07:13 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll 2013-08-14 17:31 - 2013-07-26 07:13 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-08-14 17:31 - 2013-07-26 07:12 - 19239424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-08-14 17:31 - 2013-07-26 07:12 - 15405056 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-08-14 17:31 - 2013-07-26 07:12 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-08-14 17:31 - 2013-07-26 07:12 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-08-14 17:31 - 2013-07-26 07:12 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-08-14 17:31 - 2013-07-26 07:12 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-08-14 17:31 - 2013-07-26 07:12 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-08-14 17:31 - 2013-07-26 07:12 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-08-14 17:31 - 2013-07-26 07:12 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-08-14 17:31 - 2013-07-26 07:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-08-14 17:31 - 2013-07-26 05:35 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-08-14 17:31 - 2013-07-26 05:13 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-08-14 17:31 - 2013-07-26 05:13 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-08-14 17:31 - 2013-07-26 05:13 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll 2013-08-14 17:31 - 2013-07-26 05:12 - 14329344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-08-14 17:31 - 2013-07-26 05:12 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-08-14 17:31 - 2013-07-26 05:12 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-08-14 17:31 - 2013-07-26 05:12 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-08-14 17:31 - 2013-07-26 05:12 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-08-14 17:31 - 2013-07-26 05:12 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-08-14 17:31 - 2013-07-26 05:12 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-08-14 17:31 - 2013-07-26 05:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-08-14 17:31 - 2013-07-26 05:11 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-08-14 17:31 - 2013-07-26 05:11 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-08-14 17:31 - 2013-07-26 04:49 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-08-14 17:31 - 2013-07-26 02:54 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll 2013-08-14 17:31 - 2013-07-13 08:18 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2013-08-14 17:31 - 2013-07-13 08:16 - 01889280 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-08-14 17:31 - 2013-07-13 08:16 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2013-08-14 17:31 - 2013-07-13 08:15 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\apprepapi.dll 2013-08-14 17:31 - 2013-07-13 08:15 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\apprepsync.dll 2013-08-14 17:31 - 2013-07-13 06:24 - 00261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2013-08-14 17:31 - 2013-07-13 06:23 - 01568256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-08-14 17:31 - 2013-07-13 06:23 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepapi.dll 2013-08-14 17:31 - 2013-07-13 06:23 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepsync.dll 2013-08-14 17:31 - 2013-07-09 08:07 - 02233168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2013-08-14 17:31 - 2013-07-02 02:44 - 00036288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys 2013-08-14 17:31 - 2013-07-02 00:08 - 00247216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys 2013-08-14 17:31 - 2013-05-24 01:02 - 01314816 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2013-08-14 17:31 - 2013-05-24 00:25 - 00694272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2013-08-13 17:45 - 2013-08-13 17:45 - 29011992 _____ (Microsoft Corporation) C:\Users\Rainer\Downloads\FileFormatConverters4.exe 2013-08-13 17:45 - 2013-08-13 17:45 - 00000000 ____D C:\Program Files (x86)\MSECache 2013-08-13 17:40 - 2013-08-13 17:40 - 00355770 _____ C:\Users\Rainer\Documents\Karte.xlsx 2013-08-13 17:39 - 2013-08-13 17:40 - 00000000 ____D C:\ProgramData\BackupPCFiles 2013-08-13 17:39 - 2013-08-13 17:39 - 00004334 _____ C:\Windows\System32\Tasks\Task BackupPCFiles 2013-08-13 17:39 - 2013-08-13 17:39 - 00000000 ____D C:\Users\Rainer\Documents\BackupPCFiles Folder 2013-08-13 17:39 - 2013-08-13 17:39 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BackupPCFiles 2013-08-13 17:39 - 2013-08-13 17:39 - 00000000 ____D C:\Program Files (x86)\BackupPCFiles 2013-08-13 17:39 - 2013-06-06 22:41 - 00489392 _____ (Ask Partner Network) C:\Users\Rainer\Documents\APNSetup.exe 2013-08-13 17:37 - 2013-08-13 17:37 - 01245296 _____ C:\Users\Rainer\Downloads\PDFWriterSetup.exe 2013-08-13 17:37 - 2013-08-13 17:37 - 00000000 ____D C:\Program Files\PDFCreator 2013-08-13 17:37 - 2013-08-13 17:37 - 00000000 ____D C:\Program Files (x86)\GPLGS 2013-08-13 17:37 - 2011-10-04 22:43 - 00087552 _____ C:\Windows\system32\custmon64i.dll 2013-08-11 19:50 - 2013-08-11 19:50 - 00002219 _____ C:\Users\Public\Desktop\Google Earth.lnk 2013-08-11 19:49 - 2013-08-11 19:49 - 00785032 _____ (Google Inc.) C:\Users\Rainer\Downloads\googleupdatesetup(2).exe 2013-08-11 19:42 - 2013-08-11 19:42 - 25110613 _____ C:\Users\Rainer\Downloads\HuginSetup_2010.4.0-64bit_Windows(1).exe 2013-08-11 19:36 - 2013-08-11 19:36 - 00000073 _____ C:\Users\Rainer\Downloads\killthugin.reg.txt 2013-08-10 22:22 - 2013-08-10 22:22 - 00623168 _____ C:\Users\Rainer\Downloads\FlvPlayerSetup(1).exe 2013-08-10 21:58 - 2013-08-10 21:58 - 00623168 _____ C:\Users\Rainer\Downloads\FlvPlayerSetup.exe 2013-08-10 21:54 - 2013-08-10 21:54 - 01378312 _____ ( ) C:\Users\Rainer\Downloads\eType.exe 2013-08-10 20:51 - 2013-08-10 20:51 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(10).exe 2013-08-10 18:00 - 2013-08-10 18:00 - 00002300 _____ C:\Users\Rainer\Documents\cc_20130810_180018.reg 2013-08-10 17:59 - 2013-08-10 17:59 - 00003300 _____ C:\Users\Rainer\Documents\cc_20130810_175952.reg 2013-08-10 17:33 - 2013-08-20 21:53 - 00004294 _____ C:\Users\Rainer\AppData\Roaming\.ptbt1 2013-08-10 17:30 - 2013-08-10 17:31 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(9).exe 2013-08-10 17:26 - 2013-08-10 17:27 - 30697682 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_64bit_Windows(2).exe 2013-08-10 17:23 - 2013-08-10 17:27 - 30697682 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_64bit_Windows(1).exe 2013-08-10 13:10 - 2013-08-10 13:10 - 00034708 _____ C:\Users\Rainer\Documents\cc_20130810_131034.reg 2013-08-09 21:33 - 2013-08-09 21:33 - 34736549 _____ C:\Users\Rainer\Downloads\HuginSetup_2013.0.0-beta1_64bit_Windows(1).exe 2013-08-04 11:05 - 2013-06-01 13:54 - 00194816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys 2013-08-04 11:05 - 2013-06-01 13:54 - 00125184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys 2013-08-04 11:05 - 2013-06-01 13:29 - 00337152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS 2013-08-04 11:05 - 2013-06-01 13:29 - 00213248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\UCX01000.SYS 2013-08-04 11:05 - 2013-06-01 13:26 - 00327936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys 2013-08-04 11:05 - 2013-06-01 12:24 - 02106176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2013-08-04 11:05 - 2013-06-01 11:25 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2013-08-04 11:05 - 2013-06-01 11:25 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samlib.dll 2013-08-04 11:05 - 2013-06-01 11:24 - 01453568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll 2013-08-04 11:05 - 2013-06-01 11:24 - 00850944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll 2013-08-04 11:05 - 2013-06-01 11:24 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscms.dll 2013-08-04 11:05 - 2013-06-01 11:23 - 01842176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll 2013-08-04 11:05 - 2013-06-01 11:23 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\vds.exe 2013-08-04 11:05 - 2013-06-01 11:22 - 00446976 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2013-08-04 11:05 - 2013-06-01 11:22 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\vdsutil.dll 2013-08-04 11:05 - 2013-05-20 02:08 - 00386642 _____ C:\Windows\system32\ApnDatabase.xml 2013-08-04 11:04 - 2013-06-01 13:34 - 02391280 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2013-08-04 11:04 - 2013-06-01 13:26 - 06987008 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2013-08-04 11:04 - 2013-06-01 11:22 - 00523264 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2013-08-04 11:04 - 2013-06-01 11:22 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\MbaeParserTask.exe 2013-08-04 11:04 - 2013-06-01 11:21 - 00729600 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll 2013-08-04 11:04 - 2013-06-01 11:21 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll 2013-08-04 11:04 - 2013-06-01 11:20 - 02219520 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll 2013-08-04 11:04 - 2013-06-01 11:20 - 01527808 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll 2013-08-04 11:04 - 2013-06-01 11:20 - 01048576 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll 2013-08-04 11:04 - 2013-06-01 11:20 - 00583168 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll 2013-08-04 11:04 - 2013-06-01 11:19 - 00785408 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll 2013-08-04 11:04 - 2013-06-01 11:19 - 00207872 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupManager.dll 2013-08-04 11:04 - 2013-06-01 05:08 - 00037632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BthAvrcpTg.sys 2013-08-04 11:04 - 2013-05-25 00:09 - 01403296 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2013-08-04 11:04 - 2013-05-25 00:09 - 01271584 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2013-08-04 11:04 - 2013-05-25 00:09 - 01217352 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2013-08-04 11:04 - 2013-05-25 00:09 - 01093904 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2013-08-04 11:03 - 2013-06-17 00:41 - 00997632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2013-08-04 09:52 - 2013-08-04 09:52 - 20393805 _____ (The hugin development team ) C:\Users\Rainer\Downloads\Hugin_2009-4-0_win32_setup(2).exe 2013-08-04 09:50 - 2013-08-04 09:51 - 16319114 _____ (The hugin development team ) C:\Users\Rainer\Downloads\Hugin_2009_02_ncpg_installer_w32.exe 2013-08-04 09:46 - 2013-08-04 09:46 - 12406113 _____ (Guido ) C:\Users\Rainer\Downloads\hugin-0.7.0_win32-setup.exe 2013-08-04 09:42 - 2013-08-04 09:43 - 22710059 _____ C:\Users\Rainer\Downloads\HuginSetup_2013.0.0-beta1_32bit_Windows.exe 2013-08-04 09:40 - 2013-08-04 09:40 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(8).exe 2013-08-04 09:09 - 2013-08-04 09:10 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(7).exe 2013-08-04 08:51 - 2013-08-04 08:52 - 34736549 _____ C:\Users\Rainer\Downloads\HuginSetup_2013.0.0-beta1_64bit_Windows.exe 2013-08-04 08:50 - 2013-08-04 08:50 - 36752591 _____ C:\Users\Rainer\Downloads\Hugin_2013.0.0-beta1_64bit_Windows.7z 2013-08-04 08:41 - 2013-08-04 08:41 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(6).exe 2013-08-04 07:47 - 2013-08-04 07:47 - 00326704 _____ C:\Windows\system32\FNTCACHE.DAT 2013-08-03 19:50 - 2013-08-03 19:50 - 03176332 _____ C:\Users\Rainer\Downloads\AlteBaeum 2013-08-03 18:05 - 2013-08-03 18:05 - 00000000 ____D C:\Users\Rainer\Documents\AdobeStockPhotos 2013-08-03 14:10 - 2013-05-16 00:35 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\tssdisai.dll ==================== One Month Modified Files and Folders ======= 2013-08-27 19:30 - 2013-08-27 19:30 - 01579024 _____ (Farbar) C:\Users\Rainer\Downloads\FRST64(1).exe 2013-08-27 19:29 - 2012-12-21 15:39 - 01300253 _____ C:\Windows\WindowsUpdate.log 2013-08-27 19:28 - 2012-12-21 15:45 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2560001034-2644125590-1053040255-1002 2013-08-27 19:27 - 2013-08-27 19:27 - 00002411 _____ C:\Users\Rainer\Desktop\JRT.txt 2013-08-27 19:25 - 2012-12-21 17:30 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2013-08-27 19:24 - 2013-08-27 19:24 - 00000000 ____D C:\Windows\ERUNT 2013-08-27 19:23 - 2013-01-04 13:38 - 00001122 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-08-27 19:23 - 2012-11-12 12:33 - 00000000 ____D C:\ProgramData\NVIDIA 2013-08-27 19:23 - 2012-07-26 09:22 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-08-27 19:22 - 2013-08-27 19:22 - 01021434 _____ (Thisisu) C:\Users\Rainer\Downloads\JRT.exe 2013-08-27 19:20 - 2013-08-27 19:15 - 00000000 ____D C:\AdwCleaner 2013-08-27 19:20 - 2012-12-21 15:39 - 00002253 _____ C:\Users\Rainer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SkyDrive.lnk 2013-08-27 19:19 - 2013-08-27 19:19 - 00000000 ___RD C:\Users\Rainer\SkyDrive 2013-08-27 19:19 - 2012-12-21 15:39 - 00000000 ____D C:\Users\Rainer 2013-08-27 19:16 - 2012-07-26 07:26 - 00262144 ___SH C:\Windows\system32\config\BBI 2013-08-27 19:14 - 2013-08-27 19:14 - 00994642 _____ C:\Users\Rainer\Downloads\adwcleaner.exe 2013-08-27 19:05 - 2012-12-21 16:25 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-08-27 19:03 - 2013-01-04 13:38 - 00001126 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-08-27 19:00 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\sru 2013-08-27 18:54 - 2012-12-22 14:26 - 00088486 _____ C:\Windows\PFRO.log 2013-08-27 07:15 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\AUInstallAgent 2013-08-26 22:30 - 2013-08-26 22:30 - 00000000 ____D C:\Users\Rainer\Downloads\nudist magazines bonus 2013-08-26 21:58 - 2013-08-26 21:58 - 00023004 _____ C:\ComboFix.txt 2013-08-26 21:58 - 2013-08-26 21:46 - 00000000 ____D C:\Qoobox 2013-08-26 21:58 - 2012-07-26 07:37 - 00000000 __RHD C:\Users\Default 2013-08-26 21:57 - 2013-08-26 21:45 - 00000000 ____D C:\Windows\erdnt 2013-08-26 21:56 - 2012-07-26 07:26 - 00000215 _____ C:\Windows\system.ini 2013-08-26 21:21 - 2013-08-26 21:21 - 05113393 ____R (Swearware) C:\Users\Rainer\Downloads\ComboFix.exe 2013-08-26 10:11 - 2013-08-26 10:10 - 75000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines Bonus.part15.rar 2013-08-26 10:11 - 2013-08-26 10:10 - 34086252 _____ C:\Users\Rainer\Downloads\Nudist Magazines Bonus.part16.rar 2013-08-26 10:03 - 2013-08-26 10:02 - 75000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines Bonus.part14.rar 2013-08-26 10:03 - 2013-08-26 10:01 - 75000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines Bonus.part13.rar 2013-08-26 10:03 - 2013-08-26 10:01 - 75000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines Bonus.part12.rar 2013-08-26 10:02 - 2013-08-26 10:01 - 75000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines Bonus.part11.rar 2013-08-26 10:02 - 2013-08-26 10:01 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part10.rar 2013-08-26 10:02 - 2013-08-26 10:01 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part09.rar 2013-08-26 10:02 - 2013-08-26 10:01 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part08.rar 2013-08-26 10:00 - 2013-08-26 10:00 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part07.rar 2013-08-26 09:58 - 2013-08-26 09:56 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part06.rar 2013-08-26 09:58 - 2013-08-26 09:56 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part05.rar 2013-08-26 09:58 - 2013-08-26 09:56 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part04.rar 2013-08-26 09:58 - 2013-08-26 09:56 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part03.rar 2013-08-26 09:58 - 2013-08-26 09:56 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part02.rar 2013-08-26 09:57 - 2013-08-26 09:56 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part01.rar 2013-08-25 23:17 - 2013-08-25 23:15 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part82.rar 2013-08-25 23:16 - 2013-08-25 23:15 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part83.rar 2013-08-25 23:16 - 2013-08-25 23:15 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part81.rar 2013-08-25 23:16 - 2013-08-25 23:15 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part80.rar 2013-08-25 23:16 - 2013-08-25 23:15 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part79.rar 2013-08-25 23:16 - 2013-08-25 23:15 - 22838301 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part84.rar 2013-08-25 23:15 - 2013-08-25 23:14 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part78.rar 2013-08-25 23:15 - 2013-08-25 23:14 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part77.rar 2013-08-25 23:15 - 2013-08-25 23:11 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part70.rar 2013-08-25 23:14 - 2013-08-25 23:13 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part76.rar 2013-08-25 23:14 - 2013-08-25 23:13 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part75.rar 2013-08-25 23:14 - 2013-08-25 23:13 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part74.rar 2013-08-25 23:14 - 2013-08-25 23:13 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part73.rar 2013-08-25 23:14 - 2013-08-25 23:13 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part72.rar 2013-08-25 23:13 - 2013-08-25 23:13 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part71.rar 2013-08-25 23:13 - 2013-08-25 23:11 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part69.rar 2013-08-25 23:13 - 2013-08-25 23:11 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part68.rar 2013-08-25 23:13 - 2013-08-25 23:11 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part67.rar 2013-08-25 23:12 - 2013-08-25 23:11 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part66.rar 2013-08-25 23:12 - 2013-08-25 23:11 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part65.rar 2013-08-25 23:11 - 2013-08-25 23:11 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part64.rar 2013-08-25 23:11 - 2013-08-25 23:10 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part63.rar 2013-08-25 23:11 - 2013-08-25 23:09 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part62.rar 2013-08-25 23:11 - 2013-08-25 23:09 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part61.rar 2013-08-25 23:11 - 2013-08-25 23:09 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part60.rar 2013-08-25 23:11 - 2013-08-25 23:09 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part59.rar 2013-08-25 23:11 - 2013-08-25 23:08 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part54.rar 2013-08-25 23:10 - 2013-08-25 23:09 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part58.rar 2013-08-25 23:09 - 2013-08-25 23:08 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part57.rar 2013-08-25 23:09 - 2013-08-25 23:08 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part56.rar 2013-08-25 23:09 - 2013-08-25 23:08 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part55.rar 2013-08-25 23:09 - 2013-08-25 23:08 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part53.rar 2013-08-25 23:09 - 2013-08-25 23:08 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part52.rar 2013-08-25 23:08 - 2013-08-25 23:07 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part51.rar 2013-08-25 23:07 - 2013-08-25 23:06 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part50.rar 2013-08-25 23:07 - 2013-08-25 23:06 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part49.rar 2013-08-25 23:07 - 2013-08-25 23:06 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part48.rar 2013-08-25 23:07 - 2013-08-25 23:06 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part47.rar 2013-08-25 23:07 - 2013-08-25 23:06 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part46.rar 2013-08-25 23:07 - 2013-08-25 23:06 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part45.rar 2013-08-25 23:06 - 2013-08-25 23:05 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part44.rar 2013-08-25 23:06 - 2013-08-25 23:05 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part43.rar 2013-08-25 23:06 - 2013-08-25 23:04 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part42.rar 2013-08-25 23:05 - 2013-08-25 23:04 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part41.rar 2013-08-25 23:05 - 2013-08-25 23:04 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part40.rar 2013-08-25 23:05 - 2013-08-25 23:04 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part39.rar 2013-08-25 23:04 - 2013-08-25 23:03 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part38.rar 2013-08-25 23:04 - 2013-08-25 23:03 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part37.rar 2013-08-25 23:04 - 2013-08-25 23:03 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part36.rar 2013-08-25 23:04 - 2013-08-25 23:03 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part35.rar 2013-08-25 23:04 - 2013-08-25 23:03 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part34.rar 2013-08-25 23:04 - 2013-08-25 23:03 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part33.rar 2013-08-25 23:03 - 2013-08-25 23:02 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part32.rar 2013-08-25 23:03 - 2013-08-25 23:01 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part31.rar 2013-08-25 23:02 - 2013-08-25 23:01 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part30.rar 2013-08-25 23:02 - 2013-08-25 23:01 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part29.rar 2013-08-25 23:02 - 2013-08-25 23:01 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part28.rar 2013-08-25 23:02 - 2013-08-25 23:01 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part27.rar 2013-08-25 23:02 - 2013-08-25 23:01 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part26.rar 2013-08-25 23:01 - 2013-08-25 23:01 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part25.rar 2013-08-25 23:01 - 2013-08-25 23:00 - 45325471 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part19.rar 2013-08-25 23:01 - 2013-08-25 23:00 - 38464931 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part20.rar 2013-08-25 23:01 - 2013-08-25 23:00 - 34219251 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part21.rar 2013-08-25 23:01 - 2013-08-25 23:00 - 32975331 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part23.rar 2013-08-25 23:01 - 2013-08-25 23:00 - 28103311 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part22.rar 2013-08-25 23:01 - 2013-08-25 23:00 - 18919911 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part24.rar 2013-08-25 23:00 - 2013-08-25 23:00 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part18.rar 2013-08-25 22:59 - 2013-08-25 22:57 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part15.rar 2013-08-25 22:58 - 2013-08-25 22:57 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part17.rar 2013-08-25 22:58 - 2013-08-25 22:57 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part16.rar 2013-08-25 22:58 - 2013-08-25 22:57 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part14.rar 2013-08-25 22:58 - 2013-08-25 22:56 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part12.rar 2013-08-25 22:57 - 2013-08-25 22:57 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part13.rar 2013-08-25 22:57 - 2013-08-25 22:56 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part11.rar 2013-08-25 22:57 - 2013-08-25 22:55 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part10.rar 2013-08-25 22:57 - 2013-08-25 22:55 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part09.rar 2013-08-25 22:57 - 2013-08-25 22:55 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part08.rar 2013-08-25 22:56 - 2013-08-25 22:53 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part01.rar 2013-08-25 22:55 - 2013-08-25 22:55 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part07.rar 2013-08-25 22:55 - 2013-08-25 22:53 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part06.rar 2013-08-25 22:55 - 2013-08-25 22:53 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part05.rar 2013-08-25 22:55 - 2013-08-25 22:53 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part04.rar 2013-08-25 22:54 - 2013-08-25 22:53 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part03.rar 2013-08-25 22:54 - 2013-08-25 22:53 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part02.rar 2013-08-25 22:51 - 2013-08-25 22:51 - 00000000 ____D C:\Users\Rainer\Downloads\nudist magazines - 40 2013-08-25 22:51 - 2013-08-25 22:50 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part09.rar 2013-08-25 22:51 - 2013-08-25 22:50 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part08.rar 2013-08-25 22:50 - 2013-08-25 22:50 - 29345220 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part10.rar 2013-08-25 22:48 - 2013-08-25 22:47 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part07.rar 2013-08-25 22:47 - 2013-08-25 22:45 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part06.rar 2013-08-25 22:47 - 2013-08-25 22:45 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part05.rar 2013-08-25 22:47 - 2013-08-25 22:45 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part04.rar 2013-08-25 22:47 - 2013-08-25 22:45 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part03.rar 2013-08-25 22:47 - 2013-08-25 22:45 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part02.rar 2013-08-25 22:47 - 2013-08-25 22:45 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part01.rar 2013-08-25 22:03 - 2013-08-25 22:03 - 00000000 ____D C:\Users\Rainer\Downloads\nudist magazines - 73 2013-08-25 22:03 - 2013-08-25 21:51 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\WinRAR 2013-08-25 22:02 - 2013-08-25 22:01 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part37.rar 2013-08-25 22:01 - 2013-08-25 22:01 - 07124643 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part38.rar 2013-08-25 22:01 - 2013-08-25 22:00 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part36.rar 2013-08-25 22:01 - 2013-08-25 21:59 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part35.rar 2013-08-25 22:01 - 2013-08-25 21:59 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part34.rar 2013-08-25 22:01 - 2013-08-25 21:59 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part33.rar 2013-08-25 22:01 - 2013-08-25 21:59 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part32.rar 2013-08-25 22:01 - 2013-08-25 21:59 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part31.rar 2013-08-25 22:00 - 2013-08-25 21:58 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part30.rar 2013-08-25 21:59 - 2013-08-25 21:57 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part29.rar 2013-08-25 21:58 - 2013-08-25 21:57 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part28.rar 2013-08-25 21:58 - 2013-08-25 21:57 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part27.rar 2013-08-25 21:58 - 2013-08-25 21:56 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part26.rar 2013-08-25 21:58 - 2013-08-25 21:56 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part25.rar 2013-08-25 21:58 - 2013-08-25 21:56 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part24.rar 2013-08-25 21:57 - 2013-08-25 21:55 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part23.rar 2013-08-25 21:57 - 2013-08-25 21:55 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part22.rar 2013-08-25 21:57 - 2013-08-25 21:55 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part21.rar 2013-08-25 21:56 - 2013-08-25 21:55 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part20.rar 2013-08-25 21:56 - 2013-08-25 21:54 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part19.rar 2013-08-25 21:56 - 2013-08-25 21:51 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part13.rar 2013-08-25 21:55 - 2013-08-25 21:53 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part18.rar 2013-08-25 21:55 - 2013-08-25 21:53 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part17.rar 2013-08-25 21:55 - 2013-08-25 21:53 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part15.rar 2013-08-25 21:54 - 2013-08-25 21:53 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part16.rar 2013-08-25 21:54 - 2013-08-25 21:53 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part14.rar 2013-08-25 21:53 - 2013-08-25 21:51 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part12.rar 2013-08-25 21:53 - 2013-08-25 21:51 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part11.rar 2013-08-25 21:53 - 2013-08-25 21:51 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part10.rar 2013-08-25 21:53 - 2013-08-25 21:51 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part09.rar 2013-08-25 21:53 - 2013-08-25 21:48 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part06.rar 2013-08-25 21:51 - 2013-08-25 21:51 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2013-08-25 21:51 - 2013-08-25 21:51 - 00000000 ____D C:\Program Files (x86)\WinRAR 2013-08-25 21:51 - 2013-08-25 21:50 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part08.rar 2013-08-25 21:51 - 2013-08-25 21:48 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part07.rar 2013-08-25 21:50 - 2013-08-25 21:50 - 01609146 _____ C:\Users\Rainer\Downloads\wrar420d.exe 2013-08-25 21:50 - 2013-08-25 21:48 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part05.rar 2013-08-25 21:50 - 2013-08-25 21:48 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part04.rar 2013-08-25 21:50 - 2013-08-25 21:48 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part03.rar 2013-08-25 21:50 - 2013-08-25 21:48 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part02.rar 2013-08-25 21:50 - 2013-08-25 21:48 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part01.rar 2013-08-25 17:40 - 2013-03-24 19:26 - 00001158 _____ C:\Users\Rainer\AppData\Roaming\ShiftN.ini 2013-08-24 18:22 - 2013-08-24 18:22 - 00007582 _____ C:\Users\Rainer\Downloads\GMER.log 2013-08-24 18:20 - 2013-08-24 18:13 - 00026670 _____ C:\Users\Rainer\Downloads\Addition.txt 2013-08-24 18:18 - 2013-08-24 18:18 - 00377856 _____ C:\Users\Rainer\Downloads\mdsp8on1.exe 2013-08-24 18:06 - 2013-08-24 18:06 - 01576734 _____ (Farbar) C:\Users\Rainer\Downloads\FRST64.exe 2013-08-24 18:06 - 2013-08-24 18:06 - 00000000 ____D C:\FRST 2013-08-24 18:05 - 2013-08-24 18:05 - 00000474 _____ C:\Users\Rainer\Downloads\defogger_disable.log 2013-08-24 18:05 - 2013-08-24 18:05 - 00000246 _____ C:\Users\Rainer\Downloads\defogger_enable.log 2013-08-24 18:05 - 2013-08-24 18:05 - 00000000 _____ C:\Users\Rainer\defogger_reenable 2013-08-24 18:04 - 2013-08-24 18:04 - 00050477 _____ C:\Users\Rainer\Downloads\Defogger.exe 2013-08-24 18:02 - 2013-08-24 18:02 - 00714352 _____ C:\Users\Rainer\Downloads\ZipOpenerSetup(1).exe 2013-08-24 17:21 - 2012-07-26 12:27 - 00752930 _____ C:\Windows\system32\perfh007.dat 2013-08-24 17:21 - 2012-07-26 12:27 - 00156156 _____ C:\Windows\system32\perfc007.dat 2013-08-24 17:21 - 2012-07-26 09:28 - 01748838 _____ C:\Windows\system32\PerfStringBackup.INI 2013-08-24 09:12 - 2013-08-24 09:12 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Rainer\Downloads\mbam-setup-1.75.0.1300.exe 2013-08-24 09:12 - 2013-08-24 09:12 - 00001120 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-08-24 09:12 - 2013-08-24 09:12 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\Malwarebytes 2013-08-24 09:12 - 2013-08-24 09:12 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-08-24 09:12 - 2013-08-24 09:12 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-08-23 19:59 - 2013-05-26 16:59 - 00000000 ____D C:\Users\Rainer\Documents\FalkData 2013-08-23 19:55 - 2013-05-26 17:23 - 00000000 ____D C:\Users\Rainer\AppData\Local\Falk Navi-Manager 2013-08-23 19:29 - 2013-05-26 16:59 - 00002077 _____ C:\Users\Public\Desktop\Falk Navi-Manager.lnk 2013-08-22 23:04 - 2013-01-04 13:39 - 00002190 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2013-08-22 22:10 - 2013-08-22 21:18 - 3575951388 _____ C:\Users\Rainer\Downloads\FMI-10506_2013-2.exe 2013-08-22 19:42 - 2013-08-22 19:38 - 00000000 ____D C:\Program Files (x86)\Hugin 2013-08-22 19:41 - 2013-08-22 19:41 - 20393805 _____ (The hugin development team ) C:\Users\Rainer\Downloads\Hugin_2009-4-0_win32_setup(3).exe 2013-08-22 19:41 - 2013-08-22 19:41 - 00001143 _____ C:\Users\Public\Desktop\EnfuseAlign.lnk 2013-08-22 19:41 - 2013-08-22 19:41 - 00001138 _____ C:\Users\Public\Desktop\Enblend360.lnk 2013-08-22 19:41 - 2013-08-22 19:41 - 00001133 _____ C:\Users\Public\Desktop\Enfuse360.lnk 2013-08-22 19:41 - 2013-08-22 19:41 - 00001118 _____ C:\Users\Public\Desktop\Enblend.lnk 2013-08-22 19:41 - 2013-08-22 19:41 - 00001113 _____ C:\Users\Public\Desktop\Enfuse.lnk 2013-08-22 19:41 - 2013-08-22 19:41 - 00000998 _____ C:\Users\Public\Desktop\Hugin.lnk 2013-08-22 19:40 - 2013-08-22 19:40 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(11).exe 2013-08-22 19:38 - 2013-08-22 19:38 - 27266109 _____ C:\Users\Rainer\Downloads\HuginSetup_2011.0.0_32bit_Windows(1).exe 2013-08-22 19:38 - 2013-08-22 19:38 - 00001064 _____ C:\Users\Rainer\Desktop\Hugin.lnk 2013-08-22 19:38 - 2012-12-25 11:31 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hugin 2013-08-22 18:27 - 2013-02-05 20:14 - 00000000 ____D C:\ProgramData\CanonIJPLM 2013-08-20 21:53 - 2013-08-10 17:33 - 00004294 _____ C:\Users\Rainer\AppData\Roaming\.ptbt1 2013-08-18 17:40 - 2012-12-21 16:56 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-08-17 11:03 - 2013-07-03 08:01 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-08-14 23:01 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\rescache 2013-08-14 22:08 - 2013-04-25 19:20 - 00000898 _____ C:\Windows\SysWOW64\InstallUtil.InstallLog 2013-08-14 22:01 - 2013-08-14 22:01 - 00000000 ____D C:\Program Files\Windows Defender 2013-08-14 22:01 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-08-14 21:56 - 2013-08-14 21:56 - 02828552 _____ (AVAST Software) C:\Users\Rainer\Downloads\avast-browser-cleanup_8.0.1484.29.exe 2013-08-14 18:35 - 2013-05-12 19:52 - 00000000 ____D C:\Users\Rainer\.jordan 2013-08-14 17:35 - 2013-08-14 17:34 - 00000000 ____D C:\Windows\system32\MRT 2013-08-14 17:34 - 2012-12-21 16:01 - 78161360 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-08-13 17:46 - 2012-11-12 12:30 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2013-08-13 17:45 - 2013-08-13 17:45 - 29011992 _____ (Microsoft Corporation) C:\Users\Rainer\Downloads\FileFormatConverters4.exe 2013-08-13 17:45 - 2013-08-13 17:45 - 00000000 ____D C:\Program Files (x86)\MSECache 2013-08-13 17:40 - 2013-08-13 17:40 - 00355770 _____ C:\Users\Rainer\Documents\Karte.xlsx 2013-08-13 17:40 - 2013-08-13 17:39 - 00000000 ____D C:\ProgramData\BackupPCFiles 2013-08-13 17:39 - 2013-08-13 17:39 - 00004334 _____ C:\Windows\System32\Tasks\Task BackupPCFiles 2013-08-13 17:39 - 2013-08-13 17:39 - 00000000 ____D C:\Users\Rainer\Documents\BackupPCFiles Folder 2013-08-13 17:39 - 2013-08-13 17:39 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BackupPCFiles 2013-08-13 17:39 - 2013-08-13 17:39 - 00000000 ____D C:\Program Files (x86)\BackupPCFiles 2013-08-13 17:37 - 2013-08-13 17:37 - 01245296 _____ C:\Users\Rainer\Downloads\PDFWriterSetup.exe 2013-08-13 17:37 - 2013-08-13 17:37 - 00000000 ____D C:\Program Files\PDFCreator 2013-08-13 17:37 - 2013-08-13 17:37 - 00000000 ____D C:\Program Files (x86)\GPLGS 2013-08-12 21:08 - 2012-07-26 07:26 - 00262144 ___SH C:\Windows\system32\config\ELAM 2013-08-11 19:50 - 2013-08-11 19:50 - 00002219 _____ C:\Users\Public\Desktop\Google Earth.lnk 2013-08-11 19:50 - 2012-12-25 08:47 - 00000000 ____D C:\Users\Rainer\AppData\Local\Google 2013-08-11 19:50 - 2012-12-25 08:47 - 00000000 ____D C:\Program Files (x86)\Google 2013-08-11 19:49 - 2013-08-11 19:49 - 00785032 _____ (Google Inc.) C:\Users\Rainer\Downloads\googleupdatesetup(2).exe 2013-08-11 19:42 - 2013-08-11 19:42 - 25110613 _____ C:\Users\Rainer\Downloads\HuginSetup_2010.4.0-64bit_Windows(1).exe 2013-08-11 19:36 - 2013-08-11 19:36 - 00000073 _____ C:\Users\Rainer\Downloads\killthugin.reg.txt 2013-08-11 19:05 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\NDF 2013-08-10 22:31 - 2012-12-21 16:25 - 00003772 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-08-10 22:31 - 2012-12-21 15:45 - 00000000 ____D C:\Users\Rainer\AppData\Local\Adobe 2013-08-10 22:22 - 2013-08-10 22:22 - 00623168 _____ C:\Users\Rainer\Downloads\FlvPlayerSetup(1).exe 2013-08-10 21:58 - 2013-08-10 21:58 - 00623168 _____ C:\Users\Rainer\Downloads\FlvPlayerSetup.exe 2013-08-10 21:54 - 2013-08-10 21:54 - 01378312 _____ ( ) C:\Users\Rainer\Downloads\eType.exe 2013-08-10 20:51 - 2013-08-10 20:51 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(10).exe 2013-08-10 18:00 - 2013-08-10 18:00 - 00002300 _____ C:\Users\Rainer\Documents\cc_20130810_180018.reg 2013-08-10 17:59 - 2013-08-10 17:59 - 00003300 _____ C:\Users\Rainer\Documents\cc_20130810_175952.reg 2013-08-10 17:31 - 2013-08-10 17:30 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(9).exe 2013-08-10 17:27 - 2013-08-10 17:26 - 30697682 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_64bit_Windows(2).exe 2013-08-10 17:27 - 2013-08-10 17:23 - 30697682 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_64bit_Windows(1).exe 2013-08-10 13:10 - 2013-08-10 13:10 - 00034708 _____ C:\Users\Rainer\Documents\cc_20130810_131034.reg 2013-08-09 21:33 - 2013-08-09 21:33 - 34736549 _____ C:\Users\Rainer\Downloads\HuginSetup_2013.0.0-beta1_64bit_Windows(1).exe 2013-08-07 07:29 - 2012-12-21 16:57 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2013-08-04 18:48 - 2012-07-26 07:38 - 00000000 ____D C:\Windows\system32\oobe 2013-08-04 09:52 - 2013-08-04 09:52 - 20393805 _____ (The hugin development team ) C:\Users\Rainer\Downloads\Hugin_2009-4-0_win32_setup(2).exe 2013-08-04 09:51 - 2013-08-04 09:50 - 16319114 _____ (The hugin development team ) C:\Users\Rainer\Downloads\Hugin_2009_02_ncpg_installer_w32.exe 2013-08-04 09:46 - 2013-08-04 09:46 - 12406113 _____ (Guido ) C:\Users\Rainer\Downloads\hugin-0.7.0_win32-setup.exe 2013-08-04 09:43 - 2013-08-04 09:42 - 22710059 _____ C:\Users\Rainer\Downloads\HuginSetup_2013.0.0-beta1_32bit_Windows.exe 2013-08-04 09:40 - 2013-08-04 09:40 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(8).exe 2013-08-04 09:37 - 2012-12-30 12:23 - 00000000 ____D C:\WsWin 2013-08-04 09:10 - 2013-08-04 09:09 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(7).exe 2013-08-04 08:52 - 2013-08-04 08:51 - 34736549 _____ C:\Users\Rainer\Downloads\HuginSetup_2013.0.0-beta1_64bit_Windows.exe 2013-08-04 08:50 - 2013-08-04 08:50 - 36752591 _____ C:\Users\Rainer\Downloads\Hugin_2013.0.0-beta1_64bit_Windows.7z 2013-08-04 08:41 - 2013-08-04 08:41 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(6).exe 2013-08-04 07:47 - 2013-08-04 07:47 - 00326704 _____ C:\Windows\system32\FNTCACHE.DAT 2013-08-04 07:45 - 2012-07-26 07:37 - 00000000 ____D C:\Windows\servicing 2013-08-03 19:50 - 2013-08-03 19:50 - 03176332 _____ C:\Users\Rainer\Downloads\AlteBaeum 2013-08-03 18:05 - 2013-08-03 18:05 - 00000000 ____D C:\Users\Rainer\Documents\AdobeStockPhotos 2013-08-03 18:05 - 2012-12-21 15:39 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\Adobe 2013-08-03 14:01 - 2013-02-02 19:34 - 00195042 _____ C:\Windows\DPINST.LOG Files to move or delete: ==================== C:\Users\Rainer\AppData\Local\Temp\Quarantine.exe C:\Users\Rainer\AppData\Local\Temp\jrt\erunt\ERUNT.EXE ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-08-21 07:26 ==================== End Of Log ============================ |
28.08.2013, 08:01 | #8 |
/// the machine /// TB-Ausbilder | Maus macht Problem beim klickenESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
28.08.2013, 20:55 | #9 |
| Maus macht Problem beim klicken Hallo, hier nun als erstes ESET. Lief mehrere Stunden. Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=660460074ad7da4a9a9eeaf963e31a6f # engine=14923 # end=stopped # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2013-08-28 08:24:50 # local_time=2013-08-28 10:24:50 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1033 # osver=6.2.9200 NT # compatibility_mode=5893 16776574 100 94 1167791 25286420 0 0 # scanned=213058 # found=3 # cleaned=0 # scan_time=3771 sh=CEC1F1E110276A9D5594576869E281E93FCD1FF5 ft=0 fh=0000000000000000 vn="Win32/Adware.AddLyrics.L application" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\LyriXeeker\128.xpi.vir" sh=4808307C704D29122CDB8EA28287E082E48AC0EF ft=1 fh=d700a127a454b68d vn="a variant of Win32/Adware.Yontoo.A application" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Yontoo\YontooIEClient.dll.vir" sh=11445FCF304B2043FF37461C4F34F492EE5BB19C ft=1 fh=21ba350e23674168 vn="multiple threats" ac=I fn="C:\Users\Rainer\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NU0XLOAT\yontoosetup[1].exe" ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=660460074ad7da4a9a9eeaf963e31a6f # engine=14935 # end=stopped # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2013-08-28 06:41:50 # local_time=2013-08-28 08:41:50 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1033 # osver=6.2.9200 NT # compatibility_mode=5893 16776574 100 94 1204811 25323440 0 0 # scanned=561009 # found=12 # cleaned=0 # scan_time=8372 sh=CEC1F1E110276A9D5594576869E281E93FCD1FF5 ft=0 fh=0000000000000000 vn="Win32/Adware.AddLyrics.L application" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\LyriXeeker\128.xpi.vir" sh=4808307C704D29122CDB8EA28287E082E48AC0EF ft=1 fh=d700a127a454b68d vn="a variant of Win32/Adware.Yontoo.A application" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Yontoo\YontooIEClient.dll.vir" sh=11445FCF304B2043FF37461C4F34F492EE5BB19C ft=1 fh=21ba350e23674168 vn="multiple threats" ac=I fn="C:\Users\Rainer\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NU0XLOAT\yontoosetup[1].exe" sh=48EF8B4E06E0F1D3C06C4D6E1EA2B6CE48AA5231 ft=1 fh=ac26df35aa8ade69 vn="a variant of Win32/Adware.Yontoo.B application" ac=I fn="G:\Dokumente und Einstellungen\Administrator\Desktop\Alte daten\Dokumente und Einstellungen\All Users\Anwendungsdaten\Tarma Installer\{2E1037EA-038A-425F-86B9-6CD19B8497E9}\_Setupx.dll" sh=7CFFEE92A41D4F4AE97DC7505A543F41F1556979 ft=0 fh=0000000000000000 vn="Win32/Adware.Yontoo application" ac=I fn="G:\Dokumente und Einstellungen\Administrator\Desktop\Alte daten\Dokumente und Einstellungen\Rainer\Anwendungsdaten\Mozilla\Firefox\Profiles\6uuyt9we.default\extensions\plugin@yontoo.com\content\overlay.js" sh=7CFFEE92A41D4F4AE97DC7505A543F41F1556979 ft=0 fh=0000000000000000 vn="Win32/Adware.Yontoo application" ac=I fn="G:\Dokumente und Einstellungen\Administrator\Desktop\Alte daten\Dokumente und Einstellungen\Rainer\Anwendungsdaten\Mozilla\Firefox\Profiles\d4e3j7nv.default\extensions\plugin@yontoo.com\content\overlay.js" sh=7CFFEE92A41D4F4AE97DC7505A543F41F1556979 ft=0 fh=0000000000000000 vn="Win32/Adware.Yontoo application" ac=I fn="G:\Dokumente und Einstellungen\Administrator\Desktop\Alte daten\Dokumente und Einstellungen\Rainer\Anwendungsdaten\Mozilla\Firefox\Profiles\Profiles\extensions\plugin@yontoo.com\content\overlay.js" sh=512361D0C5209580440A4D0EEC4AC1974C876F09 ft=0 fh=0000000000000000 vn="a variant of Java/Exploit.CVE-2012-0507.FA trojan" ac=I fn="G:\Dokumente und Einstellungen\Administrator\Desktop\Alte daten\Dokumente und Einstellungen\Rainer\Anwendungsdaten\Sun\Java\Deployment\cache\6.0\12\1789decc-59027c33" sh=BD3534D17150481731709A3666EC0479DE7911C8 ft=0 fh=0000000000000000 vn="multiple threats" ac=I fn="G:\Dokumente und Einstellungen\Administrator\Desktop\Alte daten\Dokumente und Einstellungen\Rainer\Anwendungsdaten\Sun\Java\Deployment\cache\6.0\55\1ef63537-4a608932" sh=7AE98202FA345AFCE6AA375C4478339D04569741 ft=0 fh=0000000000000000 vn="multiple threats" ac=I fn="G:\Dokumente und Einstellungen\Administrator\Desktop\Alte daten\Dokumente und Einstellungen\Rainer\Anwendungsdaten\Sun\Java\Deployment\cache\6.0\62\5df7d83e-53780807" sh=F074C932D8081C74F6A220D885567DA41DA23196 ft=0 fh=0000000000000000 vn="JS/Adware.Yontoo.B application" ac=I fn="G:\Dokumente und Einstellungen\Administrator\Desktop\Alte daten\Dokumente und Einstellungen\Rainer\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\niapdbllcanepiiimjjndipklodoedlc\1.0.1_0\background.html" sh=0BF73293673B09CA1F078D211ABF5E5DB752C0AD ft=0 fh=0000000000000000 vn="JS/Adware.Yontoo.A application" ac=I fn="G:\Dokumente und Einstellungen\Administrator\Desktop\Alte daten\Dokumente und Einstellungen\Rainer\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\niapdbllcanepiiimjjndipklodoedlc\1.0.1_0\yl.js" Rainer Und hier ein weiterer Scan: Code:
ATTFilter Results of screen317's Security Check version 0.99.72 x64 (UAC is enabled) Internet Explorer 10 ``````````````Antivirus/Firewall Check:`````````````` Kaspersky Anti-Virus Windows Defender Antivirus up to date! (On Access scanning disabled!) `````````Anti-malware/Other Utilities Check:````````` Malwarebytes Anti-Malware Version 1.75.0.1300 Java 7 Update 25 Adobe Flash Player 11.8.800.94 Adobe Reader XI Mozilla Firefox (23.0.1) Mozilla Thunderbird (17.0.8) Google Chrome 28.0.1500.95 Google Chrome 29.0.1547.57 ````````Process Check: objlist.exe by Laurent```````` Malwarebytes Anti-Malware mbamservice.exe Malwarebytes Anti-Malware mbamgui.exe Kaspersky Lab Kaspersky Anti-Virus 2013 avp.exe Malwarebytes' Anti-Malware mbamscheduler.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: % ````````````````````End of Log`````````````````````` FRST Logfile: FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 28-08-2013 Ran by Rainer (administrator) on 28-08-2013 21:50:49 Running from C:\Users\Rainer\Downloads Windows 8 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (IvoSoft) C:\Program Files\Classic Shell\ClassicShellService.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Microsoft Corporation) C:\Windows\system32\dashost.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler64.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe () C:\Windows\SysWOW64\PSIService.exe (Bright Access) C:\Program Files (x86)\BackupPCFiles\BackupPCFiles.Client.Service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4406.1205_x64__8wekyb3d8bbwe\LiveComm.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe (Bright Access) C:\Program Files (x86)\BackupPCFiles\BackupPCFiles.Client.CppProxyServer.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Corel, Inc.) C:\Program Files (x86)\Corel\Corel MediaOne\Corel Photo Downloader.exe (Bright Access) C:\Program Files (x86)\BackupPCFiles\BackupPCFiles.Agent.exe (Sony) C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe (Samsung) C:\Program Files (x86)\Samsung\Kies\Kies.exe () C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanionInfo.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee Security Scan\3.0.318\SSScheduler.exe (Samsung) C:\Program Files (x86)\SEC\Natural Color Pro\NCProTray.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe (Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\acrotray.exe (CANON INC.) C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE (Ulead Systems, Inc.) C:\Program Files (x86)\Common Files\Ulead Systems\AutoDetector\Monitor.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe (Macrovision Europe Ltd.) C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe (Adobe Systems, Incorporated) C:\Program Files (x86)\Adobe\Adobe Photoshop CS2\Photoshop.exe (Microsoft Corporation) C:\Windows\splwow64.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Farbar) C:\Users\Rainer\Downloads\FRST64(1).exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12503184 2012-06-11] (Realtek Semiconductor) HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [497648 2010-07-29] (Adobe Systems Incorporated) HKLM\...\Run: [Corel Photo Downloader] - C:\Program Files (x86)\Corel\Corel MediaOne\Corel Photo Downloader.exe [483144 2007-08-17] (Corel, Inc.) HKLM\...\Run: [BackupPCFiles.Agent] - C:\Program Files (x86)\BackupPCFiles\BackupPCFiles.Agent.exe [249472 2013-06-12] (Bright Access) HKCU\...\Run: [Sony PC Companion] - C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [449248 2013-05-29] (Sony) HKCU\...\Run: [KiesPreload] - C:\Program Files (x86)\Samsung\Kies\Kies.exe [1561968 2013-05-23] (Samsung) HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [285240 2012-09-01] (Intel Corporation) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM-x32\...\Run: [IMSS] - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [133440 2012-07-19] (Intel Corporation) HKLM-x32\...\Run: [AVP] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\runner_avp.exe [24504 2012-10-25] (Kaspersky Lab ZAO) HKLM-x32\...\Run: [Acrobat Assistant 8.0] - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe [620152 2006-10-23] (Adobe Systems Inc.) HKLM-x32\...\Run: [] - [x] HKLM-x32\...\Run: [CanonSolutionMenuEx] - C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE [1185112 2010-04-02] (CANON INC.) HKLM-x32\...\Run: [Ulead AutoDetector v2] - C:\Program Files (x86)\Common Files\Ulead Systems\AutoDetector\monitor.exe [95504 2007-08-02] (Ulead Systems, Inc.) HKLM-x32\...\Run: [PMBVolumeWatcher] - C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [740888 2013-04-24] (Sony Corporation) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation) HKLM-x32\...\Run: [KiesTrayAgent] - C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [311152 2013-05-23] (Samsung Electronics Co., Ltd.) HKU\UpdatusUser\...\Run: [Sony PC Companion] - C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [449248 2013-05-29] (Sony) HKU\UpdatusUser\...\Run: [KiesPreload] - C:\Program Files (x86)\Samsung\Kies\Kies.exe [1561968 2013-05-23] (Samsung) HKU\UpdatusUser\...\Run: [] - C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [1106288 2013-05-23] (Samsung) HKU\UpdatusUser\...\Run: [NTRedirect] - C:\Windows\SysWOW64\rundll32.exe "C:\Users\Rainer\AppData\Roaming\BabSolution\Shared\enhancedNT.dll",Run [x] Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Acrobat - Schnellstart.lnk ShortcutTarget: Adobe Acrobat - Schnellstart.lnk -> C:\Windows\Installer\{AC76BA86-1033-F400-7760-000000000003}\_SC_Acrobat.exe () Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Reader Synchronizer.lnk ShortcutTarget: Adobe Reader Synchronizer.lnk -> C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AdobeCollabSync.exe () Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files (x86)\McAfee Security Scan\3.0.318\SSScheduler.exe (McAfee, Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Office.lnk ShortcutTarget: Microsoft Office.lnk -> C:\Program Files (x86)\Microsoft Office\Office\OSA9.EXE (Microsoft Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\NCProTray.lnk ShortcutTarget: NCProTray.lnk -> C:\Program Files (x86)\SEC\Natural Color Pro\NCProTray.exe (Samsung) Startup: C:\Users\Rainer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma.lnk ShortcutTarget: Adobe Gamma.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com/ie StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM - {02A08B01-5DFD-404B-A7B8-0B6326F1F913} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASBJS SearchScopes: HKLM-x32 - {02A08B01-5DFD-404B-A7B8-0B6326F1F913} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASBJS BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft) BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO: ClassicIE9BHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIE9DLL_64.dll (IvoSoft) BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files (x86)\McAfee Security Scan\3.0.318\McAfeeMSS_IE.dll (McAfee, Inc.) BHO-x32: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft) BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: DealPly Shopping - {9cf699ca-2174-4ed8-bec1-ba82095edce0} - C:\Program Files (x86)\DealPly\DealPlyIE.dll No File BHO-x32: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO-x32: ClassicIE9BHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIE9DLL_32.dll (IvoSoft) Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft) Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated) Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft) Toolbar: HKCU - No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File Handler: ipp - No CLSID Value - Handler: msdaipp - No CLSID Value - Handler-x32: ipp - No CLSID Value - Handler-x32: msdaipp - No CLSID Value - Tcpip\Parameters: [DhcpNameServer] 83.169.184.161 83.169.184.225 FireFox: ======== FF ProfilePath: C:\Users\Rainer\AppData\Roaming\Mozilla\Firefox\Profiles\jeedrkjt.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.0.5 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll () FF Plugin-x32: @garmin.com/GpsControl - C:\Program Files (x86)\Garmin GPS Plugin\npGarmin.dll (GARMIN Corp.) FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 - C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @mcafee.com/McAfeeMssPlugin - C:\Program Files (x86)\McAfee Security Scan\3.0.318\npMcAfeeMss.dll (McAfee, Inc.) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\StartWeb.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\wikipedia-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF HKLM-x32\...\Firefox\Extensions: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\url_advisor@kaspersky.com FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\url_advisor@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\virtual_keyboard@kaspersky.com FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\virtual_keyboard@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\content_blocker@kaspersky.com FF Extension: Content Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\content_blocker@kaspersky.com FF HKCU\...\Firefox\Extensions: [lyrix@lyrixeeker.co] C:\Program Files (x86)\LyriXeeker\128.xpi Chrome: ======= CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding} CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter} CHR Extension: (Google Drive) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.2_0 CHR Extension: (YouTube) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0 CHR Extension: (Google Search) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0 CHR Extension: (Kaspersky URL Advisor) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\13.0.1.4190_0 CHR Extension: (Content Blocker) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\hghkgaeecgjhjkannahfamoehjmkjail\13.0.1.4190_0 CHR Extension: (Virtual Keyboard) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh\13.0.1.4292_0 CHR Extension: (DVDVideoSoft Browser Extension) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.0.1.2_0 CHR Extension: (Gmail) - C:\Users\Rainer\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0 CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\urladvisor.crx CHR HKLM-x32\...\Chrome\Extension: [ejnmnhkgiphcaeefbaooconkceehicfi] - C:\Program Files (x86)\DealPly\DealPly.crx CHR HKLM-x32\...\Chrome\Extension: [epojlgbehpaeekopencdagbdamnkppci] - C:\Program Files (x86)\LyriXeeker\128.crx CHR HKLM-x32\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\content_blocker_chrome.crx CHR HKLM-x32\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\virtkbd.crx ==================== Services (Whitelisted) ================= S3 Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [72704 2013-01-08] (Adobe Systems) R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe [356376 2012-12-21] (Kaspersky Lab ZAO) R2 BackupPCFilesService; C:\Program Files (x86)\BackupPCFiles\BackupPCFiles.Client.Service.exe [67712 2013-06-12] (Bright Access) R2 ClassicShellService; C:\Program Files\Classic Shell\ClassicShellService.exe [68608 2013-04-07] (IvoSoft) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-07-05] (Intel Corporation) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) S3 McComponentHostService; C:\Program Files (x86)\McAfee Security Scan\3.0.318\McCHSvc.exe [235216 2013-02-05] (McAfee, Inc.) R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [483864 2013-04-24] (Sony Corporation) R2 ProtexisLicensing; C:\Windows\SysWOW64\PSIService.exe [177704 2007-06-05] () S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16048 2013-07-02] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Windows (R) Win 7 DDK provider) S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Windows (R) Win 7 DDK provider) R2 DRHARD64; C:\Windows\system32\drivers\DRHARD64.sys [21984 2011-11-03] (Licensed for Gebhard Software) R2 DRHMSR64; C:\Windows\system32\drivers\DRHMSR64.sys [14760 2011-12-06] () S3 gdrv; C:\Windows\gdrv.sys [25640 2012-11-16] (Windows (R) Server 2003 DDK provider) S3 gdrv; C:\Windows\gdrv.sys [25640 2012-11-16] (Windows (R) Server 2003 DDK provider) R2 inpoutx64; C:\Windows\System32\Drivers\inpoutx64.sys [15008 2012-11-12] (Highresolution Enterprises [www.highrez.co.uk]) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458584 2012-06-19] (Kaspersky Lab ZAO) S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [29616 2012-07-27] (Kaspersky Lab) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [619616 2013-04-23] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\system32\DRIVERS\klim6.sys [28504 2012-08-02] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [29016 2012-12-21] (Kaspersky Lab) R3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [29528 2012-10-25] (Kaspersky Lab) R1 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [50448 2013-04-23] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [178448 2013-04-23] (Kaspersky Lab ZAO) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) S3 catchme; \??\C:\ComboFix\catchme.sys [x] S3 cpuz135; \??\C:\Users\ADMINI~1\AppData\Local\Temp\cpuz135\cpuz135_x64.sys [x] S3 DRHARD; \??\C:\Windows\system32\DRIVERS\DRHARD.SYS [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-08-28 21:44 - 2013-08-28 21:44 - 00891115 _____ C:\Users\Rainer\Downloads\SecurityCheck.exe 2013-08-28 09:20 - 2013-08-28 09:20 - 02347384 _____ (ESET) C:\Users\Rainer\Downloads\esetsmartinstaller_enu.exe 2013-08-28 09:20 - 2013-08-28 09:20 - 00000000 ____D C:\Program Files (x86)\ESET 2013-08-27 19:27 - 2013-08-27 19:27 - 00002411 _____ C:\Users\Rainer\Desktop\JRT.txt 2013-08-27 19:24 - 2013-08-27 19:24 - 00000000 ____D C:\Windows\ERUNT 2013-08-27 19:22 - 2013-08-27 19:22 - 01021434 _____ (Thisisu) C:\Users\Rainer\Downloads\JRT.exe 2013-08-27 19:19 - 2013-08-27 19:19 - 00000000 ___RD C:\Users\Rainer\SkyDrive 2013-08-27 19:15 - 2013-08-27 19:20 - 00000000 ____D C:\AdwCleaner 2013-08-27 19:14 - 2013-08-27 19:14 - 00994642 _____ C:\Users\Rainer\Downloads\adwcleaner.exe 2013-08-26 22:30 - 2013-08-26 22:30 - 00000000 ____D C:\Users\Rainer\Downloads\nudist magazines bonus 2013-08-26 21:58 - 2013-08-26 21:58 - 00023004 _____ C:\ComboFix.txt 2013-08-26 21:48 - 2011-06-26 08:45 - 00256000 _____ C:\Windows\PEV.exe 2013-08-26 21:48 - 2010-11-07 19:20 - 00208896 _____ C:\Windows\MBR.exe 2013-08-26 21:48 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2013-08-26 21:48 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2013-08-26 21:48 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2013-08-26 21:48 - 2000-08-31 02:00 - 00212480 _____ (SteelWerX) C:\Windows\SWXCACLS.exe 2013-08-26 21:48 - 2000-08-31 02:00 - 00098816 _____ C:\Windows\sed.exe 2013-08-26 21:48 - 2000-08-31 02:00 - 00080412 _____ C:\Windows\grep.exe 2013-08-26 21:48 - 2000-08-31 02:00 - 00068096 _____ C:\Windows\zip.exe 2013-08-26 21:46 - 2013-08-26 21:58 - 00000000 ____D C:\Qoobox 2013-08-26 21:45 - 2013-08-26 21:57 - 00000000 ____D C:\Windows\erdnt 2013-08-26 21:21 - 2013-08-26 21:21 - 05113393 ____R (Swearware) C:\Users\Rainer\Downloads\ComboFix.exe 2013-08-26 10:10 - 2013-08-26 10:11 - 75000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines Bonus.part15.rar 2013-08-26 10:10 - 2013-08-26 10:11 - 34086252 _____ C:\Users\Rainer\Downloads\Nudist Magazines Bonus.part16.rar 2013-08-26 10:02 - 2013-08-26 10:03 - 75000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines Bonus.part14.rar 2013-08-26 10:01 - 2013-08-26 10:03 - 75000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines Bonus.part13.rar 2013-08-26 10:01 - 2013-08-26 10:03 - 75000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines Bonus.part12.rar 2013-08-26 10:01 - 2013-08-26 10:02 - 75000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines Bonus.part11.rar 2013-08-26 10:01 - 2013-08-26 10:02 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part10.rar 2013-08-26 10:01 - 2013-08-26 10:02 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part09.rar 2013-08-26 10:01 - 2013-08-26 10:02 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part08.rar 2013-08-26 10:00 - 2013-08-26 10:00 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part07.rar 2013-08-26 09:56 - 2013-08-26 09:58 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part06.rar 2013-08-26 09:56 - 2013-08-26 09:58 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part05.rar 2013-08-26 09:56 - 2013-08-26 09:58 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part04.rar 2013-08-26 09:56 - 2013-08-26 09:58 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part03.rar 2013-08-26 09:56 - 2013-08-26 09:58 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part02.rar 2013-08-26 09:56 - 2013-08-26 09:57 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part01.rar 2013-08-25 23:15 - 2013-08-25 23:17 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part82.rar 2013-08-25 23:15 - 2013-08-25 23:16 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part83.rar 2013-08-25 23:15 - 2013-08-25 23:16 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part81.rar 2013-08-25 23:15 - 2013-08-25 23:16 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part80.rar 2013-08-25 23:15 - 2013-08-25 23:16 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part79.rar 2013-08-25 23:15 - 2013-08-25 23:16 - 22838301 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part84.rar 2013-08-25 23:14 - 2013-08-25 23:15 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part78.rar 2013-08-25 23:14 - 2013-08-25 23:15 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part77.rar 2013-08-25 23:13 - 2013-08-25 23:14 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part76.rar 2013-08-25 23:13 - 2013-08-25 23:14 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part75.rar 2013-08-25 23:13 - 2013-08-25 23:14 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part74.rar 2013-08-25 23:13 - 2013-08-25 23:14 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part73.rar 2013-08-25 23:13 - 2013-08-25 23:14 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part72.rar 2013-08-25 23:13 - 2013-08-25 23:13 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part71.rar 2013-08-25 23:11 - 2013-08-25 23:15 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part70.rar 2013-08-25 23:11 - 2013-08-25 23:13 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part69.rar 2013-08-25 23:11 - 2013-08-25 23:13 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part68.rar 2013-08-25 23:11 - 2013-08-25 23:13 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part67.rar 2013-08-25 23:11 - 2013-08-25 23:12 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part66.rar 2013-08-25 23:11 - 2013-08-25 23:12 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part65.rar 2013-08-25 23:11 - 2013-08-25 23:11 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part64.rar 2013-08-25 23:10 - 2013-08-25 23:11 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part63.rar 2013-08-25 23:09 - 2013-08-25 23:11 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part62.rar 2013-08-25 23:09 - 2013-08-25 23:11 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part61.rar 2013-08-25 23:09 - 2013-08-25 23:11 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part60.rar 2013-08-25 23:09 - 2013-08-25 23:11 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part59.rar 2013-08-25 23:09 - 2013-08-25 23:10 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part58.rar 2013-08-25 23:08 - 2013-08-25 23:11 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part54.rar 2013-08-25 23:08 - 2013-08-25 23:09 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part57.rar 2013-08-25 23:08 - 2013-08-25 23:09 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part56.rar 2013-08-25 23:08 - 2013-08-25 23:09 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part55.rar 2013-08-25 23:08 - 2013-08-25 23:09 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part53.rar 2013-08-25 23:08 - 2013-08-25 23:09 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part52.rar 2013-08-25 23:07 - 2013-08-25 23:08 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part51.rar 2013-08-25 23:06 - 2013-08-25 23:07 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part50.rar 2013-08-25 23:06 - 2013-08-25 23:07 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part49.rar 2013-08-25 23:06 - 2013-08-25 23:07 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part48.rar 2013-08-25 23:06 - 2013-08-25 23:07 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part47.rar 2013-08-25 23:06 - 2013-08-25 23:07 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part46.rar 2013-08-25 23:06 - 2013-08-25 23:07 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part45.rar 2013-08-25 23:05 - 2013-08-25 23:06 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part44.rar 2013-08-25 23:05 - 2013-08-25 23:06 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part43.rar 2013-08-25 23:04 - 2013-08-25 23:06 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part42.rar 2013-08-25 23:04 - 2013-08-25 23:05 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part41.rar 2013-08-25 23:04 - 2013-08-25 23:05 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part40.rar 2013-08-25 23:04 - 2013-08-25 23:05 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part39.rar 2013-08-25 23:03 - 2013-08-25 23:04 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part38.rar 2013-08-25 23:03 - 2013-08-25 23:04 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part37.rar 2013-08-25 23:03 - 2013-08-25 23:04 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part36.rar 2013-08-25 23:03 - 2013-08-25 23:04 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part35.rar 2013-08-25 23:03 - 2013-08-25 23:04 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part34.rar 2013-08-25 23:03 - 2013-08-25 23:04 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part33.rar 2013-08-25 23:02 - 2013-08-25 23:03 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part32.rar 2013-08-25 23:01 - 2013-08-25 23:03 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part31.rar 2013-08-25 23:01 - 2013-08-25 23:02 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part30.rar 2013-08-25 23:01 - 2013-08-25 23:02 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part29.rar 2013-08-25 23:01 - 2013-08-25 23:02 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part28.rar 2013-08-25 23:01 - 2013-08-25 23:02 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part27.rar 2013-08-25 23:01 - 2013-08-25 23:02 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part26.rar 2013-08-25 23:01 - 2013-08-25 23:01 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part25.rar 2013-08-25 23:00 - 2013-08-25 23:01 - 45325471 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part19.rar 2013-08-25 23:00 - 2013-08-25 23:01 - 38464931 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part20.rar 2013-08-25 23:00 - 2013-08-25 23:01 - 34219251 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part21.rar 2013-08-25 23:00 - 2013-08-25 23:01 - 32975331 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part23.rar 2013-08-25 23:00 - 2013-08-25 23:01 - 28103311 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part22.rar 2013-08-25 23:00 - 2013-08-25 23:01 - 18919911 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part24.rar 2013-08-25 23:00 - 2013-08-25 23:00 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part18.rar 2013-08-25 22:57 - 2013-08-25 22:59 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part15.rar 2013-08-25 22:57 - 2013-08-25 22:58 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part17.rar 2013-08-25 22:57 - 2013-08-25 22:58 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part16.rar 2013-08-25 22:57 - 2013-08-25 22:58 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part14.rar 2013-08-25 22:57 - 2013-08-25 22:57 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part13.rar 2013-08-25 22:56 - 2013-08-25 22:58 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part12.rar 2013-08-25 22:56 - 2013-08-25 22:57 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part11.rar 2013-08-25 22:55 - 2013-08-25 22:57 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part10.rar 2013-08-25 22:55 - 2013-08-25 22:57 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part09.rar 2013-08-25 22:55 - 2013-08-25 22:57 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part08.rar 2013-08-25 22:55 - 2013-08-25 22:55 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part07.rar 2013-08-25 22:53 - 2013-08-25 22:56 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part01.rar 2013-08-25 22:53 - 2013-08-25 22:55 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part06.rar 2013-08-25 22:53 - 2013-08-25 22:55 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part05.rar 2013-08-25 22:53 - 2013-08-25 22:55 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part04.rar 2013-08-25 22:53 - 2013-08-25 22:54 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part03.rar 2013-08-25 22:53 - 2013-08-25 22:54 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part02.rar 2013-08-25 22:51 - 2013-08-25 22:51 - 00000000 ____D C:\Users\Rainer\Downloads\nudist magazines - 40 2013-08-25 22:50 - 2013-08-25 22:51 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part09.rar 2013-08-25 22:50 - 2013-08-25 22:51 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part08.rar 2013-08-25 22:50 - 2013-08-25 22:50 - 29345220 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part10.rar 2013-08-25 22:47 - 2013-08-25 22:48 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part07.rar 2013-08-25 22:45 - 2013-08-25 22:47 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part06.rar 2013-08-25 22:45 - 2013-08-25 22:47 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part05.rar 2013-08-25 22:45 - 2013-08-25 22:47 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part04.rar 2013-08-25 22:45 - 2013-08-25 22:47 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part03.rar 2013-08-25 22:45 - 2013-08-25 22:47 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part02.rar 2013-08-25 22:45 - 2013-08-25 22:47 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part01.rar 2013-08-25 22:03 - 2013-08-25 22:03 - 00000000 ____D C:\Users\Rainer\Downloads\nudist magazines - 73 2013-08-25 22:01 - 2013-08-25 22:02 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part37.rar 2013-08-25 22:01 - 2013-08-25 22:01 - 07124643 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part38.rar 2013-08-25 22:00 - 2013-08-25 22:01 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part36.rar 2013-08-25 21:59 - 2013-08-25 22:01 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part35.rar 2013-08-25 21:59 - 2013-08-25 22:01 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part34.rar 2013-08-25 21:59 - 2013-08-25 22:01 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part33.rar 2013-08-25 21:59 - 2013-08-25 22:01 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part32.rar 2013-08-25 21:59 - 2013-08-25 22:01 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part31.rar 2013-08-25 21:58 - 2013-08-25 22:00 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part30.rar 2013-08-25 21:57 - 2013-08-25 21:59 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part29.rar 2013-08-25 21:57 - 2013-08-25 21:58 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part28.rar 2013-08-25 21:57 - 2013-08-25 21:58 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part27.rar 2013-08-25 21:56 - 2013-08-25 21:58 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part26.rar 2013-08-25 21:56 - 2013-08-25 21:58 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part25.rar 2013-08-25 21:56 - 2013-08-25 21:58 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part24.rar 2013-08-25 21:55 - 2013-08-25 21:57 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part23.rar 2013-08-25 21:55 - 2013-08-25 21:57 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part22.rar 2013-08-25 21:55 - 2013-08-25 21:57 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part21.rar 2013-08-25 21:55 - 2013-08-25 21:56 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part20.rar 2013-08-25 21:54 - 2013-08-25 21:56 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part19.rar 2013-08-25 21:53 - 2013-08-25 21:55 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part18.rar 2013-08-25 21:53 - 2013-08-25 21:55 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part17.rar 2013-08-25 21:53 - 2013-08-25 21:55 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part15.rar 2013-08-25 21:53 - 2013-08-25 21:54 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part16.rar 2013-08-25 21:53 - 2013-08-25 21:54 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part14.rar 2013-08-25 21:51 - 2013-08-25 22:03 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\WinRAR 2013-08-25 21:51 - 2013-08-25 21:56 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part13.rar 2013-08-25 21:51 - 2013-08-25 21:53 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part12.rar 2013-08-25 21:51 - 2013-08-25 21:53 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part11.rar 2013-08-25 21:51 - 2013-08-25 21:53 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part10.rar 2013-08-25 21:51 - 2013-08-25 21:53 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part09.rar 2013-08-25 21:51 - 2013-08-25 21:51 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2013-08-25 21:51 - 2013-08-25 21:51 - 00000000 ____D C:\Program Files (x86)\WinRAR 2013-08-25 21:50 - 2013-08-25 21:51 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part08.rar 2013-08-25 21:50 - 2013-08-25 21:50 - 01609146 _____ C:\Users\Rainer\Downloads\wrar420d.exe 2013-08-25 21:48 - 2013-08-25 21:53 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part06.rar 2013-08-25 21:48 - 2013-08-25 21:51 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part07.rar 2013-08-25 21:48 - 2013-08-25 21:50 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part05.rar 2013-08-25 21:48 - 2013-08-25 21:50 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part04.rar 2013-08-25 21:48 - 2013-08-25 21:50 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part03.rar 2013-08-25 21:48 - 2013-08-25 21:50 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part02.rar 2013-08-25 21:48 - 2013-08-25 21:50 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part01.rar 2013-08-24 18:22 - 2013-08-24 18:22 - 00007582 _____ C:\Users\Rainer\Downloads\GMER.log 2013-08-24 18:18 - 2013-08-24 18:18 - 00377856 _____ C:\Users\Rainer\Downloads\mdsp8on1.exe 2013-08-24 18:13 - 2013-08-24 18:20 - 00026670 _____ C:\Users\Rainer\Downloads\Addition.txt 2013-08-24 18:06 - 2013-08-24 18:06 - 01576734 _____ (Farbar) C:\Users\Rainer\Downloads\FRST64.exe 2013-08-24 18:06 - 2013-08-24 18:06 - 00000000 ____D C:\FRST 2013-08-24 18:05 - 2013-08-24 18:05 - 00000474 _____ C:\Users\Rainer\Downloads\defogger_disable.log 2013-08-24 18:05 - 2013-08-24 18:05 - 00000246 _____ C:\Users\Rainer\Downloads\defogger_enable.log 2013-08-24 18:05 - 2013-08-24 18:05 - 00000000 _____ C:\Users\Rainer\defogger_reenable 2013-08-24 18:04 - 2013-08-24 18:04 - 00050477 _____ C:\Users\Rainer\Downloads\Defogger.exe 2013-08-24 18:02 - 2013-08-24 18:02 - 00714352 _____ C:\Users\Rainer\Downloads\ZipOpenerSetup(1).exe 2013-08-24 09:12 - 2013-08-24 09:12 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Rainer\Downloads\mbam-setup-1.75.0.1300.exe 2013-08-24 09:12 - 2013-08-24 09:12 - 00001120 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-08-24 09:12 - 2013-08-24 09:12 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\Malwarebytes 2013-08-24 09:12 - 2013-08-24 09:12 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-08-24 09:12 - 2013-08-24 09:12 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-08-24 09:12 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2013-08-23 19:29 - 2013-04-15 17:23 - 00001336 _____ C:\Windows\SysWOW64\TrainingManagerPlugin.tlb 2013-08-22 22:13 - 2013-07-18 14:21 - 00000000 ____D C:\Users\Rainer\Downloads\Falk Karten 2013-08-22 19:41 - 2013-08-22 19:41 - 20393805 _____ (The hugin development team ) C:\Users\Rainer\Downloads\Hugin_2009-4-0_win32_setup(3).exe 2013-08-22 19:41 - 2013-08-22 19:41 - 00001143 _____ C:\Users\Public\Desktop\EnfuseAlign.lnk 2013-08-22 19:41 - 2013-08-22 19:41 - 00001138 _____ C:\Users\Public\Desktop\Enblend360.lnk 2013-08-22 19:41 - 2013-08-22 19:41 - 00001133 _____ C:\Users\Public\Desktop\Enfuse360.lnk 2013-08-22 19:41 - 2013-08-22 19:41 - 00001118 _____ C:\Users\Public\Desktop\Enblend.lnk 2013-08-22 19:41 - 2013-08-22 19:41 - 00001113 _____ C:\Users\Public\Desktop\Enfuse.lnk 2013-08-22 19:41 - 2013-08-22 19:41 - 00000998 _____ C:\Users\Public\Desktop\Hugin.lnk 2013-08-22 19:40 - 2013-08-22 19:40 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(11).exe 2013-08-22 19:38 - 2013-08-22 19:42 - 00000000 ____D C:\Program Files (x86)\Hugin 2013-08-22 19:38 - 2013-08-22 19:38 - 27266109 _____ C:\Users\Rainer\Downloads\HuginSetup_2011.0.0_32bit_Windows(1).exe 2013-08-22 19:38 - 2013-08-22 19:38 - 00001064 _____ C:\Users\Rainer\Desktop\Hugin.lnk 2013-08-14 22:01 - 2013-08-14 22:01 - 00000000 ____D C:\Program Files\Windows Defender 2013-08-14 21:56 - 2013-08-14 21:56 - 02828552 _____ (AVAST Software) C:\Users\Rainer\Downloads\avast-browser-cleanup_8.0.1484.29.exe 2013-08-14 17:34 - 2013-08-14 17:35 - 00000000 ____D C:\Windows\system32\MRT 2013-08-14 17:31 - 2013-07-26 07:13 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-08-14 17:31 - 2013-07-26 07:13 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-08-14 17:31 - 2013-07-26 07:13 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll 2013-08-14 17:31 - 2013-07-26 07:13 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll 2013-08-14 17:31 - 2013-07-26 07:13 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-08-14 17:31 - 2013-07-26 07:12 - 19239424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-08-14 17:31 - 2013-07-26 07:12 - 15405056 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-08-14 17:31 - 2013-07-26 07:12 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-08-14 17:31 - 2013-07-26 07:12 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-08-14 17:31 - 2013-07-26 07:12 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-08-14 17:31 - 2013-07-26 07:12 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-08-14 17:31 - 2013-07-26 07:12 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-08-14 17:31 - 2013-07-26 07:12 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-08-14 17:31 - 2013-07-26 07:12 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-08-14 17:31 - 2013-07-26 07:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-08-14 17:31 - 2013-07-26 05:35 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-08-14 17:31 - 2013-07-26 05:13 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-08-14 17:31 - 2013-07-26 05:13 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-08-14 17:31 - 2013-07-26 05:13 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll 2013-08-14 17:31 - 2013-07-26 05:12 - 14329344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-08-14 17:31 - 2013-07-26 05:12 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-08-14 17:31 - 2013-07-26 05:12 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-08-14 17:31 - 2013-07-26 05:12 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-08-14 17:31 - 2013-07-26 05:12 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-08-14 17:31 - 2013-07-26 05:12 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-08-14 17:31 - 2013-07-26 05:12 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-08-14 17:31 - 2013-07-26 05:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-08-14 17:31 - 2013-07-26 05:11 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-08-14 17:31 - 2013-07-26 05:11 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-08-14 17:31 - 2013-07-26 04:49 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-08-14 17:31 - 2013-07-26 02:54 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll 2013-08-14 17:31 - 2013-07-13 08:18 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2013-08-14 17:31 - 2013-07-13 08:16 - 01889280 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-08-14 17:31 - 2013-07-13 08:16 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2013-08-14 17:31 - 2013-07-13 08:15 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\apprepapi.dll 2013-08-14 17:31 - 2013-07-13 08:15 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\apprepsync.dll 2013-08-14 17:31 - 2013-07-13 06:24 - 00261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2013-08-14 17:31 - 2013-07-13 06:23 - 01568256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-08-14 17:31 - 2013-07-13 06:23 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepapi.dll 2013-08-14 17:31 - 2013-07-13 06:23 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepsync.dll 2013-08-14 17:31 - 2013-07-09 08:07 - 02233168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2013-08-14 17:31 - 2013-07-02 02:44 - 00036288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys 2013-08-14 17:31 - 2013-07-02 00:08 - 00247216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys 2013-08-14 17:31 - 2013-05-24 01:02 - 01314816 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2013-08-14 17:31 - 2013-05-24 00:25 - 00694272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2013-08-13 17:45 - 2013-08-13 17:45 - 29011992 _____ (Microsoft Corporation) C:\Users\Rainer\Downloads\FileFormatConverters4.exe 2013-08-13 17:45 - 2013-08-13 17:45 - 00000000 ____D C:\Program Files (x86)\MSECache 2013-08-13 17:40 - 2013-08-13 17:40 - 00355770 _____ C:\Users\Rainer\Documents\Karte.xlsx 2013-08-13 17:39 - 2013-08-13 17:40 - 00000000 ____D C:\ProgramData\BackupPCFiles 2013-08-13 17:39 - 2013-08-13 17:39 - 00004334 _____ C:\Windows\System32\Tasks\Task BackupPCFiles 2013-08-13 17:39 - 2013-08-13 17:39 - 00000000 ____D C:\Users\Rainer\Documents\BackupPCFiles Folder 2013-08-13 17:39 - 2013-08-13 17:39 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BackupPCFiles 2013-08-13 17:39 - 2013-08-13 17:39 - 00000000 ____D C:\Program Files (x86)\BackupPCFiles 2013-08-13 17:39 - 2013-06-06 22:41 - 00489392 _____ (Ask Partner Network) C:\Users\Rainer\Documents\APNSetup.exe 2013-08-13 17:37 - 2013-08-13 17:37 - 01245296 _____ C:\Users\Rainer\Downloads\PDFWriterSetup.exe 2013-08-13 17:37 - 2013-08-13 17:37 - 00000000 ____D C:\Program Files\PDFCreator 2013-08-13 17:37 - 2013-08-13 17:37 - 00000000 ____D C:\Program Files (x86)\GPLGS 2013-08-13 17:37 - 2011-10-04 22:43 - 00087552 _____ C:\Windows\system32\custmon64i.dll 2013-08-11 19:50 - 2013-08-11 19:50 - 00002219 _____ C:\Users\Public\Desktop\Google Earth.lnk 2013-08-11 19:49 - 2013-08-11 19:49 - 00785032 _____ (Google Inc.) C:\Users\Rainer\Downloads\googleupdatesetup(2).exe 2013-08-11 19:42 - 2013-08-11 19:42 - 25110613 _____ C:\Users\Rainer\Downloads\HuginSetup_2010.4.0-64bit_Windows(1).exe 2013-08-11 19:36 - 2013-08-11 19:36 - 00000073 _____ C:\Users\Rainer\Downloads\killthugin.reg.txt 2013-08-10 22:22 - 2013-08-10 22:22 - 00623168 _____ C:\Users\Rainer\Downloads\FlvPlayerSetup(1).exe 2013-08-10 21:58 - 2013-08-10 21:58 - 00623168 _____ C:\Users\Rainer\Downloads\FlvPlayerSetup.exe 2013-08-10 21:54 - 2013-08-10 21:54 - 01378312 _____ ( ) C:\Users\Rainer\Downloads\eType.exe 2013-08-10 20:51 - 2013-08-10 20:51 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(10).exe 2013-08-10 18:00 - 2013-08-10 18:00 - 00002300 _____ C:\Users\Rainer\Documents\cc_20130810_180018.reg 2013-08-10 17:59 - 2013-08-10 17:59 - 00003300 _____ C:\Users\Rainer\Documents\cc_20130810_175952.reg 2013-08-10 17:33 - 2013-08-20 21:53 - 00004294 _____ C:\Users\Rainer\AppData\Roaming\.ptbt1 2013-08-10 17:30 - 2013-08-10 17:31 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(9).exe 2013-08-10 17:26 - 2013-08-10 17:27 - 30697682 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_64bit_Windows(2).exe 2013-08-10 17:23 - 2013-08-10 17:27 - 30697682 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_64bit_Windows(1).exe 2013-08-10 13:10 - 2013-08-10 13:10 - 00034708 _____ C:\Users\Rainer\Documents\cc_20130810_131034.reg 2013-08-09 21:33 - 2013-08-09 21:33 - 34736549 _____ C:\Users\Rainer\Downloads\HuginSetup_2013.0.0-beta1_64bit_Windows(1).exe 2013-08-04 11:05 - 2013-06-01 13:54 - 00194816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys 2013-08-04 11:05 - 2013-06-01 13:54 - 00125184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys 2013-08-04 11:05 - 2013-06-01 13:29 - 00337152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS 2013-08-04 11:05 - 2013-06-01 13:29 - 00213248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\UCX01000.SYS 2013-08-04 11:05 - 2013-06-01 13:26 - 00327936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys 2013-08-04 11:05 - 2013-06-01 12:24 - 02106176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2013-08-04 11:05 - 2013-06-01 11:25 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2013-08-04 11:05 - 2013-06-01 11:25 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samlib.dll 2013-08-04 11:05 - 2013-06-01 11:24 - 01453568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll 2013-08-04 11:05 - 2013-06-01 11:24 - 00850944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll 2013-08-04 11:05 - 2013-06-01 11:24 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscms.dll 2013-08-04 11:05 - 2013-06-01 11:23 - 01842176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll 2013-08-04 11:05 - 2013-06-01 11:23 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\vds.exe 2013-08-04 11:05 - 2013-06-01 11:22 - 00446976 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2013-08-04 11:05 - 2013-06-01 11:22 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\vdsutil.dll 2013-08-04 11:05 - 2013-05-20 02:08 - 00386642 _____ C:\Windows\system32\ApnDatabase.xml 2013-08-04 11:04 - 2013-06-01 13:34 - 02391280 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2013-08-04 11:04 - 2013-06-01 13:26 - 06987008 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2013-08-04 11:04 - 2013-06-01 11:22 - 00523264 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2013-08-04 11:04 - 2013-06-01 11:22 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\MbaeParserTask.exe 2013-08-04 11:04 - 2013-06-01 11:21 - 00729600 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll 2013-08-04 11:04 - 2013-06-01 11:21 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll 2013-08-04 11:04 - 2013-06-01 11:20 - 02219520 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll 2013-08-04 11:04 - 2013-06-01 11:20 - 01527808 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll 2013-08-04 11:04 - 2013-06-01 11:20 - 01048576 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll 2013-08-04 11:04 - 2013-06-01 11:20 - 00583168 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll 2013-08-04 11:04 - 2013-06-01 11:19 - 00785408 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll 2013-08-04 11:04 - 2013-06-01 11:19 - 00207872 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupManager.dll 2013-08-04 11:04 - 2013-06-01 05:08 - 00037632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BthAvrcpTg.sys 2013-08-04 11:04 - 2013-05-25 00:09 - 01403296 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2013-08-04 11:04 - 2013-05-25 00:09 - 01271584 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2013-08-04 11:04 - 2013-05-25 00:09 - 01217352 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2013-08-04 11:04 - 2013-05-25 00:09 - 01093904 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2013-08-04 11:03 - 2013-06-17 00:41 - 00997632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2013-08-04 09:52 - 2013-08-04 09:52 - 20393805 _____ (The hugin development team ) C:\Users\Rainer\Downloads\Hugin_2009-4-0_win32_setup(2).exe 2013-08-04 09:50 - 2013-08-04 09:51 - 16319114 _____ (The hugin development team ) C:\Users\Rainer\Downloads\Hugin_2009_02_ncpg_installer_w32.exe 2013-08-04 09:46 - 2013-08-04 09:46 - 12406113 _____ (Guido ) C:\Users\Rainer\Downloads\hugin-0.7.0_win32-setup.exe 2013-08-04 09:42 - 2013-08-04 09:43 - 22710059 _____ C:\Users\Rainer\Downloads\HuginSetup_2013.0.0-beta1_32bit_Windows.exe 2013-08-04 09:40 - 2013-08-04 09:40 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(8).exe 2013-08-04 09:09 - 2013-08-04 09:10 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(7).exe 2013-08-04 08:51 - 2013-08-04 08:52 - 34736549 _____ C:\Users\Rainer\Downloads\HuginSetup_2013.0.0-beta1_64bit_Windows.exe 2013-08-04 08:50 - 2013-08-04 08:50 - 36752591 _____ C:\Users\Rainer\Downloads\Hugin_2013.0.0-beta1_64bit_Windows.7z 2013-08-04 08:41 - 2013-08-04 08:41 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(6).exe 2013-08-04 07:47 - 2013-08-04 07:47 - 00326704 _____ C:\Windows\system32\FNTCACHE.DAT 2013-08-03 19:50 - 2013-08-03 19:50 - 03176332 _____ C:\Users\Rainer\Downloads\AlteBaeum 2013-08-03 18:05 - 2013-08-03 18:05 - 00000000 ____D C:\Users\Rainer\Documents\AdobeStockPhotos 2013-08-03 14:10 - 2013-05-16 00:35 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\tssdisai.dll ==================== One Month Modified Files and Folders ======= 2013-08-28 21:50 - 2013-08-28 21:50 - 01579080 _____ (Farbar) C:\Users\Rainer\Downloads\FRST64(1).exe 2013-08-28 21:44 - 2013-08-28 21:44 - 00891115 _____ C:\Users\Rainer\Downloads\SecurityCheck.exe 2013-08-28 21:05 - 2012-12-21 16:25 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-08-28 21:03 - 2013-01-04 13:38 - 00001126 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-08-28 21:00 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\sru 2013-08-28 20:32 - 2012-12-21 17:30 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2013-08-28 20:12 - 2012-12-21 15:39 - 01492740 _____ C:\Windows\WindowsUpdate.log 2013-08-28 18:15 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\AUInstallAgent 2013-08-28 18:14 - 2013-01-04 13:38 - 00001122 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-08-28 09:20 - 2013-08-28 09:20 - 02347384 _____ (ESET) C:\Users\Rainer\Downloads\esetsmartinstaller_enu.exe 2013-08-28 09:20 - 2013-08-28 09:20 - 00000000 ____D C:\Program Files (x86)\ESET 2013-08-27 20:02 - 2012-12-21 15:45 - 00003600 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2560001034-2644125590-1053040255-1002 2013-08-27 19:27 - 2013-08-27 19:27 - 00002411 _____ C:\Users\Rainer\Desktop\JRT.txt 2013-08-27 19:24 - 2013-08-27 19:24 - 00000000 ____D C:\Windows\ERUNT 2013-08-27 19:23 - 2012-11-12 12:33 - 00000000 ____D C:\ProgramData\NVIDIA 2013-08-27 19:23 - 2012-07-26 09:22 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-08-27 19:22 - 2013-08-27 19:22 - 01021434 _____ (Thisisu) C:\Users\Rainer\Downloads\JRT.exe 2013-08-27 19:20 - 2013-08-27 19:15 - 00000000 ____D C:\AdwCleaner 2013-08-27 19:20 - 2012-12-21 15:39 - 00002253 _____ C:\Users\Rainer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SkyDrive.lnk 2013-08-27 19:19 - 2013-08-27 19:19 - 00000000 ___RD C:\Users\Rainer\SkyDrive 2013-08-27 19:19 - 2012-12-21 15:39 - 00000000 ____D C:\Users\Rainer 2013-08-27 19:16 - 2012-07-26 07:26 - 00262144 ___SH C:\Windows\system32\config\BBI 2013-08-27 19:14 - 2013-08-27 19:14 - 00994642 _____ C:\Users\Rainer\Downloads\adwcleaner.exe 2013-08-27 18:54 - 2012-12-22 14:26 - 00088486 _____ C:\Windows\PFRO.log 2013-08-26 22:30 - 2013-08-26 22:30 - 00000000 ____D C:\Users\Rainer\Downloads\nudist magazines bonus 2013-08-26 21:58 - 2013-08-26 21:58 - 00023004 _____ C:\ComboFix.txt 2013-08-26 21:58 - 2013-08-26 21:46 - 00000000 ____D C:\Qoobox 2013-08-26 21:58 - 2012-07-26 07:37 - 00000000 __RHD C:\Users\Default 2013-08-26 21:57 - 2013-08-26 21:45 - 00000000 ____D C:\Windows\erdnt 2013-08-26 21:56 - 2012-07-26 07:26 - 00000215 _____ C:\Windows\system.ini 2013-08-26 21:21 - 2013-08-26 21:21 - 05113393 ____R (Swearware) C:\Users\Rainer\Downloads\ComboFix.exe 2013-08-26 10:11 - 2013-08-26 10:10 - 75000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines Bonus.part15.rar 2013-08-26 10:11 - 2013-08-26 10:10 - 34086252 _____ C:\Users\Rainer\Downloads\Nudist Magazines Bonus.part16.rar 2013-08-26 10:03 - 2013-08-26 10:02 - 75000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines Bonus.part14.rar 2013-08-26 10:03 - 2013-08-26 10:01 - 75000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines Bonus.part13.rar 2013-08-26 10:03 - 2013-08-26 10:01 - 75000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines Bonus.part12.rar 2013-08-26 10:02 - 2013-08-26 10:01 - 75000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines Bonus.part11.rar 2013-08-26 10:02 - 2013-08-26 10:01 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part10.rar 2013-08-26 10:02 - 2013-08-26 10:01 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part09.rar 2013-08-26 10:02 - 2013-08-26 10:01 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part08.rar 2013-08-26 10:00 - 2013-08-26 10:00 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part07.rar 2013-08-26 09:58 - 2013-08-26 09:56 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part06.rar 2013-08-26 09:58 - 2013-08-26 09:56 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part05.rar 2013-08-26 09:58 - 2013-08-26 09:56 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part04.rar 2013-08-26 09:58 - 2013-08-26 09:56 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part03.rar 2013-08-26 09:58 - 2013-08-26 09:56 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part02.rar 2013-08-26 09:57 - 2013-08-26 09:56 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines bonus.part01.rar 2013-08-25 23:17 - 2013-08-25 23:15 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part82.rar 2013-08-25 23:16 - 2013-08-25 23:15 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part83.rar 2013-08-25 23:16 - 2013-08-25 23:15 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part81.rar 2013-08-25 23:16 - 2013-08-25 23:15 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part80.rar 2013-08-25 23:16 - 2013-08-25 23:15 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part79.rar 2013-08-25 23:16 - 2013-08-25 23:15 - 22838301 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part84.rar 2013-08-25 23:15 - 2013-08-25 23:14 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part78.rar 2013-08-25 23:15 - 2013-08-25 23:14 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part77.rar 2013-08-25 23:15 - 2013-08-25 23:11 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part70.rar 2013-08-25 23:14 - 2013-08-25 23:13 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part76.rar 2013-08-25 23:14 - 2013-08-25 23:13 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part75.rar 2013-08-25 23:14 - 2013-08-25 23:13 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part74.rar 2013-08-25 23:14 - 2013-08-25 23:13 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part73.rar 2013-08-25 23:14 - 2013-08-25 23:13 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part72.rar 2013-08-25 23:13 - 2013-08-25 23:13 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part71.rar 2013-08-25 23:13 - 2013-08-25 23:11 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part69.rar 2013-08-25 23:13 - 2013-08-25 23:11 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part68.rar 2013-08-25 23:13 - 2013-08-25 23:11 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part67.rar 2013-08-25 23:12 - 2013-08-25 23:11 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part66.rar 2013-08-25 23:12 - 2013-08-25 23:11 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part65.rar 2013-08-25 23:11 - 2013-08-25 23:11 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part64.rar 2013-08-25 23:11 - 2013-08-25 23:10 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part63.rar 2013-08-25 23:11 - 2013-08-25 23:09 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part62.rar 2013-08-25 23:11 - 2013-08-25 23:09 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part61.rar 2013-08-25 23:11 - 2013-08-25 23:09 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part60.rar 2013-08-25 23:11 - 2013-08-25 23:09 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part59.rar 2013-08-25 23:11 - 2013-08-25 23:08 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part54.rar 2013-08-25 23:10 - 2013-08-25 23:09 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part58.rar 2013-08-25 23:09 - 2013-08-25 23:08 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part57.rar 2013-08-25 23:09 - 2013-08-25 23:08 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part56.rar 2013-08-25 23:09 - 2013-08-25 23:08 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part55.rar 2013-08-25 23:09 - 2013-08-25 23:08 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part53.rar 2013-08-25 23:09 - 2013-08-25 23:08 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part52.rar 2013-08-25 23:08 - 2013-08-25 23:07 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part51.rar 2013-08-25 23:07 - 2013-08-25 23:06 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part50.rar 2013-08-25 23:07 - 2013-08-25 23:06 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part49.rar 2013-08-25 23:07 - 2013-08-25 23:06 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part48.rar 2013-08-25 23:07 - 2013-08-25 23:06 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part47.rar 2013-08-25 23:07 - 2013-08-25 23:06 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part46.rar 2013-08-25 23:07 - 2013-08-25 23:06 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part45.rar 2013-08-25 23:06 - 2013-08-25 23:05 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part44.rar 2013-08-25 23:06 - 2013-08-25 23:05 - 50000000 _____ C:\Users\Rainer\Downloads\Nudist Magazines - 45.part43.rar 2013-08-25 23:06 - 2013-08-25 23:04 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part42.rar 2013-08-25 23:05 - 2013-08-25 23:04 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part41.rar 2013-08-25 23:05 - 2013-08-25 23:04 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part40.rar 2013-08-25 23:05 - 2013-08-25 23:04 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part39.rar 2013-08-25 23:04 - 2013-08-25 23:03 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part38.rar 2013-08-25 23:04 - 2013-08-25 23:03 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part37.rar 2013-08-25 23:04 - 2013-08-25 23:03 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part36.rar 2013-08-25 23:04 - 2013-08-25 23:03 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part35.rar 2013-08-25 23:04 - 2013-08-25 23:03 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part34.rar 2013-08-25 23:04 - 2013-08-25 23:03 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part33.rar 2013-08-25 23:03 - 2013-08-25 23:02 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part32.rar 2013-08-25 23:03 - 2013-08-25 23:01 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part31.rar 2013-08-25 23:02 - 2013-08-25 23:01 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part30.rar 2013-08-25 23:02 - 2013-08-25 23:01 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part29.rar 2013-08-25 23:02 - 2013-08-25 23:01 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part28.rar 2013-08-25 23:02 - 2013-08-25 23:01 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part27.rar 2013-08-25 23:02 - 2013-08-25 23:01 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part26.rar 2013-08-25 23:01 - 2013-08-25 23:01 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part25.rar 2013-08-25 23:01 - 2013-08-25 23:00 - 45325471 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part19.rar 2013-08-25 23:01 - 2013-08-25 23:00 - 38464931 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part20.rar 2013-08-25 23:01 - 2013-08-25 23:00 - 34219251 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part21.rar 2013-08-25 23:01 - 2013-08-25 23:00 - 32975331 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part23.rar 2013-08-25 23:01 - 2013-08-25 23:00 - 28103311 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part22.rar 2013-08-25 23:01 - 2013-08-25 23:00 - 18919911 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part24.rar 2013-08-25 23:00 - 2013-08-25 23:00 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part18.rar 2013-08-25 22:59 - 2013-08-25 22:57 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part15.rar 2013-08-25 22:58 - 2013-08-25 22:57 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part17.rar 2013-08-25 22:58 - 2013-08-25 22:57 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part16.rar 2013-08-25 22:58 - 2013-08-25 22:57 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part14.rar 2013-08-25 22:58 - 2013-08-25 22:56 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part12.rar 2013-08-25 22:57 - 2013-08-25 22:57 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part13.rar 2013-08-25 22:57 - 2013-08-25 22:56 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part11.rar 2013-08-25 22:57 - 2013-08-25 22:55 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part10.rar 2013-08-25 22:57 - 2013-08-25 22:55 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part09.rar 2013-08-25 22:57 - 2013-08-25 22:55 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part08.rar 2013-08-25 22:56 - 2013-08-25 22:53 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part01.rar 2013-08-25 22:55 - 2013-08-25 22:55 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part07.rar 2013-08-25 22:55 - 2013-08-25 22:53 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part06.rar 2013-08-25 22:55 - 2013-08-25 22:53 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part05.rar 2013-08-25 22:55 - 2013-08-25 22:53 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part04.rar 2013-08-25 22:54 - 2013-08-25 22:53 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part03.rar 2013-08-25 22:54 - 2013-08-25 22:53 - 50000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 45.part02.rar 2013-08-25 22:51 - 2013-08-25 22:51 - 00000000 ____D C:\Users\Rainer\Downloads\nudist magazines - 40 2013-08-25 22:51 - 2013-08-25 22:50 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part09.rar 2013-08-25 22:51 - 2013-08-25 22:50 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part08.rar 2013-08-25 22:50 - 2013-08-25 22:50 - 29345220 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part10.rar 2013-08-25 22:48 - 2013-08-25 22:47 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part07.rar 2013-08-25 22:47 - 2013-08-25 22:45 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part06.rar 2013-08-25 22:47 - 2013-08-25 22:45 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part05.rar 2013-08-25 22:47 - 2013-08-25 22:45 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part04.rar 2013-08-25 22:47 - 2013-08-25 22:45 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part03.rar 2013-08-25 22:47 - 2013-08-25 22:45 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part02.rar 2013-08-25 22:47 - 2013-08-25 22:45 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 40.part01.rar 2013-08-25 22:03 - 2013-08-25 22:03 - 00000000 ____D C:\Users\Rainer\Downloads\nudist magazines - 73 2013-08-25 22:03 - 2013-08-25 21:51 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\WinRAR 2013-08-25 22:02 - 2013-08-25 22:01 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part37.rar 2013-08-25 22:01 - 2013-08-25 22:01 - 07124643 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part38.rar 2013-08-25 22:01 - 2013-08-25 22:00 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part36.rar 2013-08-25 22:01 - 2013-08-25 21:59 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part35.rar 2013-08-25 22:01 - 2013-08-25 21:59 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part34.rar 2013-08-25 22:01 - 2013-08-25 21:59 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part33.rar 2013-08-25 22:01 - 2013-08-25 21:59 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part32.rar 2013-08-25 22:01 - 2013-08-25 21:59 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part31.rar 2013-08-25 22:00 - 2013-08-25 21:58 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part30.rar 2013-08-25 21:59 - 2013-08-25 21:57 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part29.rar 2013-08-25 21:58 - 2013-08-25 21:57 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part28.rar 2013-08-25 21:58 - 2013-08-25 21:57 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part27.rar 2013-08-25 21:58 - 2013-08-25 21:56 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part26.rar 2013-08-25 21:58 - 2013-08-25 21:56 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part25.rar 2013-08-25 21:58 - 2013-08-25 21:56 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part24.rar 2013-08-25 21:57 - 2013-08-25 21:55 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part23.rar 2013-08-25 21:57 - 2013-08-25 21:55 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part22.rar 2013-08-25 21:57 - 2013-08-25 21:55 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part21.rar 2013-08-25 21:56 - 2013-08-25 21:55 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part20.rar 2013-08-25 21:56 - 2013-08-25 21:54 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part19.rar 2013-08-25 21:56 - 2013-08-25 21:51 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part13.rar 2013-08-25 21:55 - 2013-08-25 21:53 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part18.rar 2013-08-25 21:55 - 2013-08-25 21:53 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part17.rar 2013-08-25 21:55 - 2013-08-25 21:53 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part15.rar 2013-08-25 21:54 - 2013-08-25 21:53 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part16.rar 2013-08-25 21:54 - 2013-08-25 21:53 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part14.rar 2013-08-25 21:53 - 2013-08-25 21:51 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part12.rar 2013-08-25 21:53 - 2013-08-25 21:51 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part11.rar 2013-08-25 21:53 - 2013-08-25 21:51 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part10.rar 2013-08-25 21:53 - 2013-08-25 21:51 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part09.rar 2013-08-25 21:53 - 2013-08-25 21:48 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part06.rar 2013-08-25 21:51 - 2013-08-25 21:51 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2013-08-25 21:51 - 2013-08-25 21:51 - 00000000 ____D C:\Program Files (x86)\WinRAR 2013-08-25 21:51 - 2013-08-25 21:50 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part08.rar 2013-08-25 21:51 - 2013-08-25 21:48 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part07.rar 2013-08-25 21:50 - 2013-08-25 21:50 - 01609146 _____ C:\Users\Rainer\Downloads\wrar420d.exe 2013-08-25 21:50 - 2013-08-25 21:48 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part05.rar 2013-08-25 21:50 - 2013-08-25 21:48 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part04.rar 2013-08-25 21:50 - 2013-08-25 21:48 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part03.rar 2013-08-25 21:50 - 2013-08-25 21:48 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part02.rar 2013-08-25 21:50 - 2013-08-25 21:48 - 75000000 _____ C:\Users\Rainer\Downloads\nudist magazines - 73.part01.rar 2013-08-25 17:40 - 2013-03-24 19:26 - 00001158 _____ C:\Users\Rainer\AppData\Roaming\ShiftN.ini 2013-08-24 18:22 - 2013-08-24 18:22 - 00007582 _____ C:\Users\Rainer\Downloads\GMER.log 2013-08-24 18:20 - 2013-08-24 18:13 - 00026670 _____ C:\Users\Rainer\Downloads\Addition.txt 2013-08-24 18:18 - 2013-08-24 18:18 - 00377856 _____ C:\Users\Rainer\Downloads\mdsp8on1.exe 2013-08-24 18:06 - 2013-08-24 18:06 - 01576734 _____ (Farbar) C:\Users\Rainer\Downloads\FRST64.exe 2013-08-24 18:06 - 2013-08-24 18:06 - 00000000 ____D C:\FRST 2013-08-24 18:05 - 2013-08-24 18:05 - 00000474 _____ C:\Users\Rainer\Downloads\defogger_disable.log 2013-08-24 18:05 - 2013-08-24 18:05 - 00000246 _____ C:\Users\Rainer\Downloads\defogger_enable.log 2013-08-24 18:05 - 2013-08-24 18:05 - 00000000 _____ C:\Users\Rainer\defogger_reenable 2013-08-24 18:04 - 2013-08-24 18:04 - 00050477 _____ C:\Users\Rainer\Downloads\Defogger.exe 2013-08-24 18:02 - 2013-08-24 18:02 - 00714352 _____ C:\Users\Rainer\Downloads\ZipOpenerSetup(1).exe 2013-08-24 17:21 - 2012-07-26 12:27 - 00752930 _____ C:\Windows\system32\perfh007.dat 2013-08-24 17:21 - 2012-07-26 12:27 - 00156156 _____ C:\Windows\system32\perfc007.dat 2013-08-24 17:21 - 2012-07-26 09:28 - 01748838 _____ C:\Windows\system32\PerfStringBackup.INI 2013-08-24 09:12 - 2013-08-24 09:12 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Rainer\Downloads\mbam-setup-1.75.0.1300.exe 2013-08-24 09:12 - 2013-08-24 09:12 - 00001120 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-08-24 09:12 - 2013-08-24 09:12 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\Malwarebytes 2013-08-24 09:12 - 2013-08-24 09:12 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-08-24 09:12 - 2013-08-24 09:12 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-08-23 19:59 - 2013-05-26 16:59 - 00000000 ____D C:\Users\Rainer\Documents\FalkData 2013-08-23 19:55 - 2013-05-26 17:23 - 00000000 ____D C:\Users\Rainer\AppData\Local\Falk Navi-Manager 2013-08-23 19:29 - 2013-05-26 16:59 - 00002077 _____ C:\Users\Public\Desktop\Falk Navi-Manager.lnk 2013-08-22 23:04 - 2013-01-04 13:39 - 00002190 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2013-08-22 19:42 - 2013-08-22 19:38 - 00000000 ____D C:\Program Files (x86)\Hugin 2013-08-22 19:41 - 2013-08-22 19:41 - 20393805 _____ (The hugin development team ) C:\Users\Rainer\Downloads\Hugin_2009-4-0_win32_setup(3).exe 2013-08-22 19:41 - 2013-08-22 19:41 - 00001143 _____ C:\Users\Public\Desktop\EnfuseAlign.lnk 2013-08-22 19:41 - 2013-08-22 19:41 - 00001138 _____ C:\Users\Public\Desktop\Enblend360.lnk 2013-08-22 19:41 - 2013-08-22 19:41 - 00001133 _____ C:\Users\Public\Desktop\Enfuse360.lnk 2013-08-22 19:41 - 2013-08-22 19:41 - 00001118 _____ C:\Users\Public\Desktop\Enblend.lnk 2013-08-22 19:41 - 2013-08-22 19:41 - 00001113 _____ C:\Users\Public\Desktop\Enfuse.lnk 2013-08-22 19:41 - 2013-08-22 19:41 - 00000998 _____ C:\Users\Public\Desktop\Hugin.lnk 2013-08-22 19:40 - 2013-08-22 19:40 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(11).exe 2013-08-22 19:38 - 2013-08-22 19:38 - 27266109 _____ C:\Users\Rainer\Downloads\HuginSetup_2011.0.0_32bit_Windows(1).exe 2013-08-22 19:38 - 2013-08-22 19:38 - 00001064 _____ C:\Users\Rainer\Desktop\Hugin.lnk 2013-08-22 19:38 - 2012-12-25 11:31 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hugin 2013-08-22 18:27 - 2013-02-05 20:14 - 00000000 ____D C:\ProgramData\CanonIJPLM 2013-08-20 21:53 - 2013-08-10 17:33 - 00004294 _____ C:\Users\Rainer\AppData\Roaming\.ptbt1 2013-08-18 17:40 - 2012-12-21 16:56 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-08-17 11:03 - 2013-07-03 08:01 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-08-14 23:01 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\rescache 2013-08-14 22:08 - 2013-04-25 19:20 - 00000898 _____ C:\Windows\SysWOW64\InstallUtil.InstallLog 2013-08-14 22:01 - 2013-08-14 22:01 - 00000000 ____D C:\Program Files\Windows Defender 2013-08-14 22:01 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-08-14 21:56 - 2013-08-14 21:56 - 02828552 _____ (AVAST Software) C:\Users\Rainer\Downloads\avast-browser-cleanup_8.0.1484.29.exe 2013-08-14 18:35 - 2013-05-12 19:52 - 00000000 ____D C:\Users\Rainer\.jordan 2013-08-14 17:35 - 2013-08-14 17:34 - 00000000 ____D C:\Windows\system32\MRT 2013-08-14 17:34 - 2012-12-21 16:01 - 78161360 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-08-13 17:46 - 2012-11-12 12:30 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2013-08-13 17:45 - 2013-08-13 17:45 - 29011992 _____ (Microsoft Corporation) C:\Users\Rainer\Downloads\FileFormatConverters4.exe 2013-08-13 17:45 - 2013-08-13 17:45 - 00000000 ____D C:\Program Files (x86)\MSECache 2013-08-13 17:40 - 2013-08-13 17:40 - 00355770 _____ C:\Users\Rainer\Documents\Karte.xlsx 2013-08-13 17:40 - 2013-08-13 17:39 - 00000000 ____D C:\ProgramData\BackupPCFiles 2013-08-13 17:39 - 2013-08-13 17:39 - 00004334 _____ C:\Windows\System32\Tasks\Task BackupPCFiles 2013-08-13 17:39 - 2013-08-13 17:39 - 00000000 ____D C:\Users\Rainer\Documents\BackupPCFiles Folder 2013-08-13 17:39 - 2013-08-13 17:39 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BackupPCFiles 2013-08-13 17:39 - 2013-08-13 17:39 - 00000000 ____D C:\Program Files (x86)\BackupPCFiles 2013-08-13 17:37 - 2013-08-13 17:37 - 01245296 _____ C:\Users\Rainer\Downloads\PDFWriterSetup.exe 2013-08-13 17:37 - 2013-08-13 17:37 - 00000000 ____D C:\Program Files\PDFCreator 2013-08-13 17:37 - 2013-08-13 17:37 - 00000000 ____D C:\Program Files (x86)\GPLGS 2013-08-12 21:08 - 2012-07-26 07:26 - 00262144 ___SH C:\Windows\system32\config\ELAM 2013-08-11 19:50 - 2013-08-11 19:50 - 00002219 _____ C:\Users\Public\Desktop\Google Earth.lnk 2013-08-11 19:50 - 2012-12-25 08:47 - 00000000 ____D C:\Users\Rainer\AppData\Local\Google 2013-08-11 19:50 - 2012-12-25 08:47 - 00000000 ____D C:\Program Files (x86)\Google 2013-08-11 19:49 - 2013-08-11 19:49 - 00785032 _____ (Google Inc.) C:\Users\Rainer\Downloads\googleupdatesetup(2).exe 2013-08-11 19:42 - 2013-08-11 19:42 - 25110613 _____ C:\Users\Rainer\Downloads\HuginSetup_2010.4.0-64bit_Windows(1).exe 2013-08-11 19:36 - 2013-08-11 19:36 - 00000073 _____ C:\Users\Rainer\Downloads\killthugin.reg.txt 2013-08-11 19:05 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\NDF 2013-08-10 22:31 - 2012-12-21 16:25 - 00003772 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-08-10 22:31 - 2012-12-21 15:45 - 00000000 ____D C:\Users\Rainer\AppData\Local\Adobe 2013-08-10 22:22 - 2013-08-10 22:22 - 00623168 _____ C:\Users\Rainer\Downloads\FlvPlayerSetup(1).exe 2013-08-10 21:58 - 2013-08-10 21:58 - 00623168 _____ C:\Users\Rainer\Downloads\FlvPlayerSetup.exe 2013-08-10 21:54 - 2013-08-10 21:54 - 01378312 _____ ( ) C:\Users\Rainer\Downloads\eType.exe 2013-08-10 20:51 - 2013-08-10 20:51 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(10).exe 2013-08-10 18:00 - 2013-08-10 18:00 - 00002300 _____ C:\Users\Rainer\Documents\cc_20130810_180018.reg 2013-08-10 17:59 - 2013-08-10 17:59 - 00003300 _____ C:\Users\Rainer\Documents\cc_20130810_175952.reg 2013-08-10 17:31 - 2013-08-10 17:30 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(9).exe 2013-08-10 17:27 - 2013-08-10 17:26 - 30697682 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_64bit_Windows(2).exe 2013-08-10 17:27 - 2013-08-10 17:23 - 30697682 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_64bit_Windows(1).exe 2013-08-10 13:10 - 2013-08-10 13:10 - 00034708 _____ C:\Users\Rainer\Documents\cc_20130810_131034.reg 2013-08-09 21:33 - 2013-08-09 21:33 - 34736549 _____ C:\Users\Rainer\Downloads\HuginSetup_2013.0.0-beta1_64bit_Windows(1).exe 2013-08-07 07:29 - 2012-12-21 16:57 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2013-08-04 18:48 - 2012-07-26 07:38 - 00000000 ____D C:\Windows\system32\oobe 2013-08-04 09:52 - 2013-08-04 09:52 - 20393805 _____ (The hugin development team ) C:\Users\Rainer\Downloads\Hugin_2009-4-0_win32_setup(2).exe 2013-08-04 09:51 - 2013-08-04 09:50 - 16319114 _____ (The hugin development team ) C:\Users\Rainer\Downloads\Hugin_2009_02_ncpg_installer_w32.exe 2013-08-04 09:46 - 2013-08-04 09:46 - 12406113 _____ (Guido ) C:\Users\Rainer\Downloads\hugin-0.7.0_win32-setup.exe 2013-08-04 09:43 - 2013-08-04 09:42 - 22710059 _____ C:\Users\Rainer\Downloads\HuginSetup_2013.0.0-beta1_32bit_Windows.exe 2013-08-04 09:40 - 2013-08-04 09:40 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(8).exe 2013-08-04 09:37 - 2012-12-30 12:23 - 00000000 ____D C:\WsWin 2013-08-04 09:10 - 2013-08-04 09:09 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(7).exe 2013-08-04 08:52 - 2013-08-04 08:51 - 34736549 _____ C:\Users\Rainer\Downloads\HuginSetup_2013.0.0-beta1_64bit_Windows.exe 2013-08-04 08:50 - 2013-08-04 08:50 - 36752591 _____ C:\Users\Rainer\Downloads\Hugin_2013.0.0-beta1_64bit_Windows.7z 2013-08-04 08:41 - 2013-08-04 08:41 - 20459958 _____ C:\Users\Rainer\Downloads\HuginSetup_2012.0.0_32bit_Windows(6).exe 2013-08-04 07:47 - 2013-08-04 07:47 - 00326704 _____ C:\Windows\system32\FNTCACHE.DAT 2013-08-04 07:45 - 2012-07-26 07:37 - 00000000 ____D C:\Windows\servicing 2013-08-03 19:50 - 2013-08-03 19:50 - 03176332 _____ C:\Users\Rainer\Downloads\AlteBaeum 2013-08-03 18:05 - 2013-08-03 18:05 - 00000000 ____D C:\Users\Rainer\Documents\AdobeStockPhotos 2013-08-03 18:05 - 2012-12-21 15:39 - 00000000 ____D C:\Users\Rainer\AppData\Roaming\Adobe 2013-08-03 14:01 - 2013-02-02 19:34 - 00195042 _____ C:\Windows\DPINST.LOG Files to move or delete: ==================== C:\Users\Rainer\AppData\Local\Temp\Quarantine.exe C:\Users\Rainer\AppData\Local\Temp\jrt\erunt\ERUNT.EXE ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-08-21 07:26 ==================== End Of Log ============================ --- --- --- --- --- --- Also, ich glaube, die Maus verhält sich jetzt wieder normal. Ich werde das jetzt noch ein paar Tage beobachten, melde mich ansonsten wieder hier. Problem scheint aber behoben zu sein. Vielen Dank für die Hilfe Viele Grüße, Rainer |
29.08.2013, 07:34 | #10 |
/// the machine /// TB-Ausbilder | Maus macht Problem beim klicken Downloade Dir bitte TFC ( von Oldtimer ) und speichere die Datei auf dem Desktop. Schließe nun alle offenen Programme und trenne Dich von dem Internet. Doppelklick auf die TFC.exe und drücke auf Start. Sollte TFC nicht alle Dateien löschen können wird es einen Neustart verlangen. Dies bitte zulassen. Firefox und Chrome bitte deinstallieren, keine Daten behalten, neu installieren.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
29.08.2013, 08:38 | #11 |
| Maus macht Problem beim klicken TFC habe ich durchgeführt. Chrome komplett gelöscht, nutze ich ohnehin nicht. Bei Firefox habe ich allerdings meine persönlichen Einstellungen übernommen, bei der Neuinstallation. War das ein Fehler? Danke und viele Grüße, Rainer |
29.08.2013, 10:39 | #12 |
/// the machine /// TB-Ausbilder | Maus macht Problem beim klicken Nee past schon Fertig Die Reihenfolge ist hier entscheidend.
Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
29.08.2013, 18:33 | #13 |
| Maus macht Problem beim klicken Hallo schrauber, vielen Dank für die zahlreichen Hinweise. Einiges davon habe ich jetzt abgearbeitet, beziehungsweise installiert. Danke für alles und viele Grüße, Rainer |
30.08.2013, 07:16 | #14 |
/// the machine /// TB-Ausbilder | Maus macht Problem beim klicken Gern Geschehen
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |