|
Log-Analyse und Auswertung: Virus: getwindowinfo & amazonicon & giga softwareWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
27.09.2013, 19:37 | #1 |
| Virus: getwindowinfo & amazonicon & giga software Hallo liebes Forum! Anscheinend habe ich mir einen dummen Virus eingefangen! Ich verwende Windows 7 und normalerweise surfe ich mit Mozilla. Gestern war auf einmal ein Icon von Amazon auf meinen Desktop und Internetexplorer öffnete sich immer mit der Webadresse: getwindowinfo. (Wenn ich das schließe, ist es nach ca. 5 sek wieder da). Dazu erscheint immer ein neues Tab bei Mozilla mit der Homepage von "Giga Software Download" (wenn ich es entferne, dann bleibt es auch weg. Nur wenn ich Mozilla schließe und dann erneut öffne ist es wieder da.) Da dieser Virus anscheinend bekannt ist, habe ich mir "Malwarebytes AntiMalWare" heruntergeladen, einen vollständigen Suchdurchlauf gemacht und 47 Bedrohungen gefunden. Diese habe ich dann auch entfernt. Obwohl ich den Laptop neugestartet habe, habe ich das Problem nicht lösen können, da der IE noch immer aufpoppt und auch das zweite Tab im Mozilla geöffnet wird. Nun würde ich Euch bitten mir zu helfen und mich möglichst genau anzuleiten. Ich muss dazu sagen, dass ich absolut kein Profi bin! Daher bitte möglichst genau die Schritte erklären bzw. wo ich welche Software runterladen kann. Ich habe Log-Dateien vor und nach der Entfernung mit Malwarebytes gemacht und gespeichert. Und versuche diese jetzt anzuhängen! Ich würde mich sehr freuen, wenn jemand mir helfen kann, da ich den PC für die Uni unbedingt brauche! Außerdem wüsste ich gerne, ob ich bevor ich etwas weiteres unternehme, alle Dateien speichern soll? Vielen Dank im Vorhinein!!!!! Und liebe Grüße, Jacqueline |
27.09.2013, 20:05 | #2 |
/// the machine /// TB-Ausbilder | Virus: getwindowinfo & amazonicon & giga software Hi,
__________________Logs bitte immer in den Thread posten. Zur Not aufteilen und mehrere Posts nutzen. So funktioniert es: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
27.09.2013, 20:40 | #3 |
| Virus: getwindowinfo & amazonicon & giga software Also, erstmal VIELEN DANK für deine schnelle Antwort! WOW
__________________Hier mal die FRST-Datei: FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 27-09-2013 Ran by Jacqueline (administrator) on JACQUELINE-HP on 27-09-2013 21:30:41 Running from C:\Users\Jacqueline\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AVG Technologies CZ, s.r.o.) C:\PROGRA~2\AVG\AVG2013\avgrsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgcsrva.exe (AMD) C:\Windows\system32\atiesrxx.exe (IDT, Inc.) C:\Program Files\IDT\WDM\STacSV64.exe (AMD) C:\Windows\system32\atieclxx.exe (Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe (EasyBits Software AS) C:\Windows\SysWOW64\ezSharedSvcHost.exe (Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe (Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe ( ) C:\Windows\system32\lxducoms.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe () C:\Program Files\Hewlett-Packard\HP LaunchBox\HPTaskBar1.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP LaunchBox\HPTaskBar2.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgnsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgemca.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Samsung) C:\Program Files (x86)\Samsung\Kies\Kies.exe (Samsung) C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe (Dropbox, Inc.) C:\Users\Jacqueline\AppData\Roaming\Dropbox\bin\Dropbox.exe (Windows Net) C:\Users\Jacqueline\AppData\Roaming\Windows Net Data\net.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe (OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin () C:\Program Files (x86) (x86)\Lexmark 5600-6600 Series\lxdumon.exe (Sun Microsystems, Inc.) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgui.exe (CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe () C:\Program Files (x86) (x86)\Lexmark 5600-6600 Series\lxduMsdMon.exe (Microsoft Corporation) c:\Program Files\Microsoft Security Client\NisSrv.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Easybits) C:\ProgramData\Easybits Magic Desktop for HP\mdhpSUN.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) C:\Program Files (x86)\Windows Live\Mail\wlmail.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe (Microsoft Corporation) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation) C:\Windows\system32\consent.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2799912 2011-06-10] (Synaptics Incorporated) HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [525312 2010-12-17] (IDT, Inc.) HKLM\...\Run: [SetDefault] - C:\Program Files\Hewlett-Packard\HP LaunchBox\SetDefault.exe [42808 2011-06-27] (Hewlett-Packard Development Company, L.P.) HKLM\...\Run: [MSC] - c:\Program Files\Microsoft Security Client\msseces.exe [1281512 2013-01-27] (Microsoft Corporation) HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1 HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [18705664 2013-01-08] (Skype Technologies S.A.) HKCU\...\Run: [KiesPreload] - C:\Program Files (x86)\Samsung\Kies\Kies.exe [1564528 2013-09-04] (Samsung) HKCU\...\Run: [KiesAirMessage] - C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup HKCU\...\Run: [] - C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [844656 2013-09-04] (Samsung) HKCU\...\Policies\system: [DisableLockWorkstation] 0 HKCU\...\Policies\system: [DisableChangePassword] 0 HKCU\...\Policies\Explorer: [DisallowRun] 1 MountPoints2: G - G:\OpenFiles.exe MountPoints2: {a79b393f-bd7f-11e2-9348-441ea1de96bc} - G:\OpenFiles.exe HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-07-05] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [HPQuickWebProxy] - C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe [168504 2011-06-27] (Hewlett-Packard Company) HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [37960 2013-05-10] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Easybits Recovery] - C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe HKLM-x32\...\Run: [lxdumon.exe] - C:\Program Files (x86) (x86)\Lexmark 5600-6600 Series\lxdumon.exe [676520 2010-02-04] () HKLM-x32\...\Run: [lxduamon] - C:\Program Files (x86) (x86)\Lexmark 5600-6600 Series\lxduamon.exe [16040 2010-02-04] () HKLM-x32\...\Run: [Win7PDF] - C:\Program Files\PDF Printer for Windows 7\PDF.exe HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254896 2012-09-17] (Sun Microsystems, Inc.) HKLM-x32\...\Run: [AVG_UI] - C:\Program Files (x86)\AVG\AVG2013\avgui.exe [4411440 2013-08-15] (AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [HPOSD] - C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [379960 2011-08-19] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [Magic Desktop for HP notification] - C:\ProgramData\Easybits Magic Desktop for HP\mdhpSUN.exe [1238016 2013-07-27] (Easybits) HKLM-x32\...\Run: [HP Quick Launch] - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [578944 2012-03-05] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [KiesTrayAgent] - C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [311152 2013-09-04] (Samsung Electronics Co., Ltd.) Startup: C:\Users\Jacqueline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Jacqueline\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) Startup: C:\Users\Jacqueline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\net.lnk ShortcutTarget: net.lnk -> C:\Users\Jacqueline\AppData\Roaming\Windows Net Data\net.exe (Windows Net) Startup: C:\Users\Jacqueline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk ShortcutTarget: OpenOffice.org 3.3.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe () ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.at/ HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPCON/1 URLSearchHook: (No Name) - {c840e246-6b95-475e-9bd7-caa1c7eca9f2} - No File URLSearchHook: (No Name) - {40c3cc16-7269-4b32-9531-17f2950fb06f} - No File SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=HPNTDF&pc=HPNTDF&src=IE-SearchBox SearchScopes: HKLM - {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://eu.ask.com/web?q={searchterms}&l=dis&o=HPNTDF SearchScopes: HKLM - {3A613D1D-9637-4C3E-83D4-48C7C344D785} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM - {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://at.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF SearchScopes: HKLM - {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = hxxp://de.wikipedia.org/wiki/Special:Search?search={searchTerms} SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/5221-111072-7833-3/4?mpre=hxxp://shop.ebay.com/?_nkw={searchTerms} SearchScopes: HKLM-x32 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=HPNTDF&pc=HPNTDF&src=IE-SearchBox SearchScopes: HKLM-x32 - {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://eu.ask.com/web?q={searchterms}&l=dis&o=HPNTDF SearchScopes: HKLM-x32 - {3A613D1D-9637-4C3E-83D4-48C7C344D785} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM-x32 - {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://at.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF SearchScopes: HKLM-x32 - {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = hxxp://de.wikipedia.org/wiki/Special:Search?search={searchTerms} SearchScopes: HKLM-x32 - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/5221-111072-7833-3/4?mpre=hxxp://shop.ebay.com/?_nkw={searchTerms} SearchScopes: HKCU - DefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=vc_trans_8140&type=horus SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=vc_trans_8140&type=horus SearchScopes: HKCU - {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://eu.ask.com/web?q={searchterms}&l=dis&o=HPNTDF SearchScopes: HKCU - {3A613D1D-9637-4C3E-83D4-48C7C344D785} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKCU - {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://at.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF SearchScopes: HKCU - {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = hxxp://de.wikipedia.org/wiki/Special:Search?search={searchTerms} SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/5221-111072-7833-3/4?mpre=hxxp://shop.ebay.com/?_nkw={searchTerms} BHO: SteadyVideoBHO Class - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: No Name - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - No File BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.) BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Lexmark - {D2C5E510-BE6D-42CC-9F61-E4F939078474} - C:\Program Files (x86)\Lexmark Printable Web\bho.dll () BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard) Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File Toolbar: HKCU - No Name - {C840E246-6B95-475E-9BD7-CAA1C7ECA9F2} - No File Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Tcpip\Parameters: [DhcpNameServer] 212.186.211.21 195.34.133.21 FireFox: ======== FF ProfilePath: C:\Users\Jacqueline\AppData\Roaming\Mozilla\Firefox\Profiles\o0pihqt3.default FF Homepage: about:home|hxxp://www.giga.de/my_homepage/1024/ FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_168.dll () FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_168.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\system32\Adobe\Director\np32dsw.dll No File FF Plugin-x32: @java.com/DTPlugin,version=1.6.0_39 - C:\Windows\SysWOW64\npdeployJava1.dll (Sun Microsystems, Inc.) FF Plugin-x32: @java.com/JavaPlugin - C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.) FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll () FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\babylon.xml FF Extension: Visualisateur 3D de 20-20 - C:\Users\Jacqueline\AppData\Roaming\Mozilla\Firefox\Profiles\o0pihqt3.default\Extensions\2020Player_IKEA@2020Technologies.com FF Extension: Amazon-Icon - C:\Users\Jacqueline\AppData\Roaming\Mozilla\Firefox\Profiles\o0pihqt3.default\Extensions\amazon-icon@winload.de FF Extension: pricealarm - C:\Users\Jacqueline\AppData\Roaming\Mozilla\Firefox\Profiles\o0pihqt3.default\Extensions\EFGLQA@78ETGYN-0W7FN789T87.COM FF Extension: Spartipps von SparPilot.com - C:\Users\Jacqueline\AppData\Roaming\Mozilla\Firefox\Profiles\o0pihqt3.default\Extensions\sparpilot@sparpilot.com FF Extension: No Name - C:\Users\Jacqueline\AppData\Roaming\Mozilla\Firefox\Profiles\o0pihqt3.default\Extensions\{add05588-65ac-4bbd-91ec-36c013386613}.xpi FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA} FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0039-ABCDEFFEDCBA} Chrome: ======= Error reading preferences. Please check "preferences" file for possible corruption. <======= ATTENTION CHR Extension: () - C:\Users\JACQUE~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\fmlgoencnlndpglbocajlimaikjohmab\background.html CHR HKLM-x32\...\Chrome\Extension: [leocdeigfnkaojcapikdjcdbedcjmffc] - C:\Users\JACQUE~1\AppData\Local\Temp\crx7C16.tmp CHR HKLM-x32\...\Chrome\Extension: [mkcedibhemacmilmkpndpkoidlnmgngg] - C:\Users\Jacqueline\ChromeExtensions\mkcedibhemacmilmkpndpkoidlnmgngg\amazon.crx ==================== Services (Whitelisted) ================= R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [365568 2011-07-05] (Advanced Micro Devices, Inc.) R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe [4939312 2013-07-04] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe [283136 2013-07-23] (AVG Technologies CZ, s.r.o.) R2 lxdu_device; C:\Windows\system32\lxducoms.exe [1039360 2009-10-16] ( ) R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [22056 2013-01-27] (Microsoft Corporation) R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [379360 2013-01-27] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [246072 2013-07-20] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [71480 2013-07-20] (AVG Technologies CZ, s.r.o.) R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [206648 2013-07-20] (AVG Technologies CZ, s.r.o.) R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [311608 2013-07-20] (AVG Technologies CZ, s.r.o.) R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [116536 2013-07-01] (AVG Technologies CZ, s.r.o.) R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [45880 2013-09-05] (AVG Technologies CZ, s.r.o.) R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [240952 2013-03-21] (AVG Technologies CZ, s.r.o.) R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [230320 2013-01-20] (Microsoft Corporation) R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [130008 2013-01-20] (Microsoft Corporation) S3 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) S3 usbrndis6; C:\Windows\System32\DRIVERS\usb80236.sys [19968 2013-02-12] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-09-27 21:30 - 2013-09-27 21:30 - 00000000 ____D C:\FRST 2013-09-27 21:29 - 2013-09-27 21:30 - 01953854 _____ (Farbar) C:\Users\Jacqueline\Downloads\FRST64.exe 2013-09-27 21:20 - 2013-09-27 21:20 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{E62885A7-A12C-4F82-B73C-F19D3363B135} 2013-09-27 09:05 - 2013-09-27 09:05 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{01830236-415D-4D52-9E5D-8BB631F33CBC} 2013-09-27 08:54 - 2013-09-27 08:54 - 00001109 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-09-27 08:54 - 2013-09-27 08:54 - 00000000 ____D C:\Users\Jacqueline\AppData\Roaming\Malwarebytes 2013-09-27 08:54 - 2013-09-27 08:54 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-09-27 08:54 - 2013-09-27 08:54 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-09-27 08:54 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2013-09-26 18:30 - 2013-09-26 18:30 - 00000000 ____D C:\Program Files (x86)\Windows Sidebar 2013-09-26 17:47 - 2013-09-26 17:48 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Jacqueline\Downloads\mbam-setup-1.75.0.1300(1).exe 2013-09-26 17:44 - 2013-09-26 17:48 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Jacqueline\Downloads\mbam-setup-1.75.0.1300.exe 2013-09-26 16:05 - 2013-09-26 16:05 - 02092792 _____ C:\Users\Jacqueline\Downloads\avira_free_4052_antivirus.exe 2013-09-26 15:49 - 2013-09-26 15:49 - 00000000 ____D C:\Users\Jacqueline\Desktop\Nachhilfe 2013-09-26 10:52 - 2013-09-26 10:52 - 00000000 ____D C:\Users\Public\Documents\CrashDump 2013-09-26 10:22 - 2013-09-26 10:22 - 00000000 ____D C:\Program Files (x86)\MyFree Codec 2013-09-26 10:14 - 2013-09-26 10:14 - 00000000 ____D C:\Program Files (x86)\MarkAny 2013-09-26 10:11 - 2013-09-26 10:21 - 00002002 _____ C:\Users\Public\Desktop\Samsung Kies (Lite).lnk 2013-09-26 10:11 - 2013-09-26 10:11 - 00001992 _____ C:\Users\Public\Desktop\Samsung Kies.lnk 2013-09-26 10:11 - 2013-09-26 10:11 - 00000000 ____D C:\Users\Public\Documents\NativeFus_Log 2013-09-26 10:11 - 2013-09-26 10:11 - 00000000 ____D C:\Users\Jacqueline\Documents\samsung 2013-09-26 10:11 - 2013-09-26 10:11 - 00000000 ____D C:\Users\Jacqueline\AppData\Roaming\Samsung 2013-09-26 10:11 - 2013-09-26 10:11 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Samsung 2013-09-26 10:08 - 2013-04-18 19:08 - 04659712 _____ (Dmitry Streblechenko) C:\Windows\SysWOW64\Redemption.dll 2013-09-26 10:08 - 2013-04-18 19:06 - 00821824 _____ (Devguru Co., Ltd.) C:\Windows\SysWOW64\dgderapi.dll 2013-09-26 10:06 - 2013-09-26 10:22 - 00000000 ____D C:\Program Files (x86)\Samsung 2013-09-26 10:06 - 2013-09-26 10:09 - 00000000 ____D C:\ProgramData\Samsung 2013-09-26 10:04 - 2013-09-26 10:22 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Downloaded Installations 2013-09-26 10:03 - 2013-09-26 10:03 - 69552992 _____ (Samsung Electronics Co., Ltd. ) C:\Users\Jacqueline\Downloads\KiesSetup.exe 2013-09-26 08:29 - 2013-09-26 08:29 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{D5C64D3A-1543-442A-A9EF-69787FAE42C6} 2013-09-25 12:49 - 2013-09-25 14:01 - 00000000 ____D C:\Users\Jacqueline\AppData\Roaming\Windows Net Data 2013-09-25 12:49 - 2013-09-25 12:49 - 00000000 ____D C:\Users\Jacqueline\ChromeExtensions 2013-09-25 12:49 - 2013-09-25 12:49 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Temp62cffb5f9d426b6d803b2d8a9bdd823d 2013-09-25 12:49 - 2013-09-25 12:49 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Temp5482275e3530aa9bd615635939968a27 2013-09-25 12:49 - 2013-09-25 12:49 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Temp2daf80f7e738224c09a386a7a8275c1d 2013-09-25 12:48 - 2013-09-25 12:48 - 01345792 _____ C:\Users\Jacqueline\Downloads\SuperOneClick-Setup.exe 2013-09-25 12:42 - 2013-09-25 12:42 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_WinUsb_01009.Wdf 2013-09-24 10:32 - 2013-09-24 10:32 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{292877C1-9F36-4CC9-9A7C-F5467A76CBCE} 2013-09-24 10:07 - 2013-09-24 10:07 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{C8DA8C11-AA8A-414C-96AD-B695B3C0BEE4} 2013-09-23 12:50 - 2013-09-23 12:50 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{411F5C89-49E9-4EAE-AE27-1051EF24969C} 2013-09-22 20:28 - 2013-09-22 20:28 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{A9ECEE26-1105-4AD4-B974-2A00A9135D47} 2013-09-22 18:10 - 2013-09-22 19:03 - 00000000 ____D C:\Users\Jacqueline\Desktop\Literatur Diplomarbeit 2013-09-20 10:43 - 2013-09-20 10:43 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{E52688C0-E12F-4976-9A05-F929E21E1E02} 2013-09-18 11:11 - 2013-09-18 11:12 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{1886B67B-1EAB-422A-87E3-BA3BABAB8AEE} 2013-09-16 10:35 - 2013-09-16 10:35 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{94C4C92E-5445-4698-8AFC-4CE730A83F5C} 2013-09-13 21:51 - 2013-08-10 07:22 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-09-13 21:51 - 2013-08-10 07:22 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-09-13 21:51 - 2013-08-10 07:22 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-09-13 21:51 - 2013-08-10 07:21 - 19246592 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-09-13 21:51 - 2013-08-10 07:21 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-09-13 21:51 - 2013-08-10 07:21 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-09-13 21:51 - 2013-08-10 07:20 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-09-13 21:51 - 2013-08-10 07:20 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-09-13 21:51 - 2013-08-10 07:20 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-09-13 21:51 - 2013-08-10 07:20 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-09-13 21:51 - 2013-08-10 07:20 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-09-13 21:51 - 2013-08-10 07:20 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-09-13 21:51 - 2013-08-10 07:20 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-09-13 21:51 - 2013-08-10 07:20 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-09-13 21:51 - 2013-08-10 05:59 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-09-13 21:51 - 2013-08-10 05:59 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 14332928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 02048000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-09-13 21:51 - 2013-08-10 05:17 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-09-13 21:51 - 2013-08-10 05:07 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-09-13 21:51 - 2013-08-10 04:27 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-09-13 21:51 - 2013-08-10 04:17 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-09-12 22:20 - 2013-09-13 19:18 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{66EFC7C5-2E46-4510-B47C-FF495A647F73} 2013-09-12 13:21 - 2013-08-05 04:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys 2013-09-12 13:21 - 2013-08-02 04:23 - 05550528 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2013-09-12 13:21 - 2013-08-02 04:15 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2013-09-12 13:21 - 2013-08-02 04:15 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2013-09-12 13:21 - 2013-08-02 04:15 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2013-09-12 13:21 - 2013-08-02 04:15 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2013-09-12 13:21 - 2013-08-02 04:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2013-09-12 13:21 - 2013-08-02 04:14 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2013-09-12 13:21 - 2013-08-02 04:13 - 01161216 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2013-09-12 13:21 - 2013-08-02 04:13 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:59 - 03968960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2013-09-12 13:21 - 2013-08-02 03:59 - 03913664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2013-09-12 13:21 - 2013-08-02 03:51 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2013-09-12 13:21 - 2013-08-02 03:50 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2013-09-12 13:21 - 2013-08-02 03:50 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2013-09-12 13:21 - 2013-08-02 03:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2013-09-12 13:21 - 2013-08-02 02:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2013-09-12 13:21 - 2013-08-02 02:45 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2013-09-12 13:20 - 2013-08-08 03:20 - 03155456 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-09-12 13:20 - 2013-08-02 04:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 02:45 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2013-09-12 13:20 - 2013-08-02 02:45 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2013-09-12 13:20 - 2013-08-02 02:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2013-09-12 13:20 - 2013-08-02 02:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 02:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 02:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 02:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2013-09-12 13:20 - 2013-07-26 04:24 - 14172672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2013-09-12 13:20 - 2013-07-26 04:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2013-09-12 13:20 - 2013-07-26 03:55 - 12872704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2013-09-12 13:20 - 2013-07-26 03:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll 2013-09-12 09:11 - 2013-09-12 09:11 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{85DA70E8-D684-4BE9-AB74-3FA530AE292A} 2013-09-11 19:52 - 2013-09-11 19:52 - 435300643 _____ C:\Windows\MEMORY.DMP 2013-09-11 19:52 - 2013-09-11 19:52 - 00305448 _____ C:\Windows\Minidump\091113-57236-01.dmp 2013-09-11 19:52 - 2013-09-11 19:52 - 00000000 ____D C:\Windows\Minidump 2013-09-11 10:09 - 2013-09-11 10:09 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{789FE9AB-3F9F-4341-B2DD-69D372D35459} 2013-09-10 09:48 - 2013-09-10 09:48 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{44CC5B01-816F-4BC8-A2F9-89EB8F869BAB} 2013-09-09 21:48 - 2013-09-09 21:48 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{026013E0-4416-4DFE-9605-54B520B789AD} 2013-09-09 09:58 - 2013-09-09 09:57 - 00425064 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2013-09-09 09:58 - 2013-09-09 09:57 - 00074272 _____ C:\Windows\system32\RtNicProp64.dll 2013-09-09 09:48 - 2013-09-09 09:48 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{11FF364A-3A14-4DFF-811E-44D08E5308AD} 2013-09-06 09:57 - 2013-09-06 09:57 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{D9FB7FC6-917A-4196-96AD-A138AF0C1FEA} 2013-09-05 10:21 - 2013-09-05 10:21 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{760D6EAB-4FA6-4E66-974D-6EB4A33B44A8} 2013-09-05 01:43 - 2013-09-05 01:43 - 00045880 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgrkx64.sys 2013-09-04 09:38 - 2013-09-04 09:38 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{604FF817-65AA-4468-A091-866868ADA32C} 2013-09-03 10:26 - 2013-09-03 10:26 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{4B0D5A6D-1DC1-466E-945D-21A8416D7F9B} 2013-09-02 09:58 - 2013-09-02 09:58 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{CA054B8B-1C6E-4E38-A250-D5585BA0A23D} 2013-08-31 11:11 - 2013-08-31 11:11 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{761C8188-FA2D-4E37-A534-F2850C07D7C2} 2013-08-30 08:24 - 2013-08-30 08:24 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{D3F83DF1-E636-4FD8-B14E-60408C21F23B} ==================== One Month Modified Files and Folders ======= 2013-09-27 21:30 - 2013-09-27 21:30 - 00000000 ____D C:\FRST 2013-09-27 21:30 - 2013-09-27 21:29 - 01953854 _____ (Farbar) C:\Users\Jacqueline\Downloads\FRST64.exe 2013-09-27 21:26 - 2009-07-14 06:45 - 00032064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-09-27 21:26 - 2009-07-14 06:45 - 00032064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-09-27 21:22 - 2011-09-15 01:41 - 01252533 _____ C:\Windows\WindowsUpdate.log 2013-09-27 21:20 - 2013-09-27 21:20 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{E62885A7-A12C-4F82-B73C-F19D3363B135} 2013-09-27 21:19 - 2012-03-12 20:32 - 00000000 ___RD C:\Users\Jacqueline\Dropbox 2013-09-27 21:19 - 2012-03-12 20:30 - 00000000 ____D C:\Users\Jacqueline\AppData\Roaming\Dropbox 2013-09-27 21:16 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-09-27 21:16 - 2009-07-14 06:51 - 00124046 _____ C:\Windows\setupact.log 2013-09-27 20:46 - 2012-04-03 08:19 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-09-27 20:10 - 2010-11-21 05:47 - 00382472 _____ C:\Windows\PFRO.log 2013-09-27 20:08 - 2013-03-04 11:32 - 00000000 ____D C:\ProgramData\MFAData 2013-09-27 20:07 - 2011-10-29 19:26 - 00000000 ____D C:\Users\Jacqueline\AppData\Roaming\SoftGrid Client 2013-09-27 20:04 - 2013-07-06 09:37 - 00000000 ____D C:\Users\Jacqueline\Desktop\Pablo Arbeit 2013-09-27 20:04 - 2012-07-28 09:35 - 00003216 _____ C:\Windows\System32\Tasks\HPCeeScheduleForJacqueline 2013-09-27 20:04 - 2012-07-28 09:35 - 00000352 _____ C:\Windows\Tasks\HPCeeScheduleForJacqueline.job 2013-09-27 20:04 - 2011-11-10 19:54 - 00000000 ____D C:\Users\Jacqueline\AppData\Roaming\Skype 2013-09-27 20:04 - 2011-10-28 18:02 - 00003970 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{9492721E-B895-4B3A-ACB6-B93217A00044} 2013-09-27 09:05 - 2013-09-27 09:05 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{01830236-415D-4D52-9E5D-8BB631F33CBC} 2013-09-27 08:54 - 2013-09-27 08:54 - 00001109 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-09-27 08:54 - 2013-09-27 08:54 - 00000000 ____D C:\Users\Jacqueline\AppData\Roaming\Malwarebytes 2013-09-27 08:54 - 2013-09-27 08:54 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-09-27 08:54 - 2013-09-27 08:54 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-09-26 18:30 - 2013-09-26 18:30 - 00000000 ____D C:\Program Files (x86)\Windows Sidebar 2013-09-26 18:30 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Sidebar 2013-09-26 18:17 - 2013-05-29 09:27 - 00000000 ____D C:\Users\Jacqueline\Desktop\Pablo 2013-09-26 17:48 - 2013-09-26 17:47 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Jacqueline\Downloads\mbam-setup-1.75.0.1300(1).exe 2013-09-26 17:48 - 2013-09-26 17:44 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Jacqueline\Downloads\mbam-setup-1.75.0.1300.exe 2013-09-26 16:43 - 2013-03-04 11:32 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Avg2013 2013-09-26 16:05 - 2013-09-26 16:05 - 02092792 _____ C:\Users\Jacqueline\Downloads\avira_free_4052_antivirus.exe 2013-09-26 15:49 - 2013-09-26 15:49 - 00000000 ____D C:\Users\Jacqueline\Desktop\Nachhilfe 2013-09-26 15:17 - 2011-07-19 20:45 - 00697322 _____ C:\Windows\system32\perfh007.dat 2013-09-26 15:17 - 2011-07-19 20:45 - 00148328 _____ C:\Windows\system32\perfc007.dat 2013-09-26 15:17 - 2009-07-14 07:13 - 01614036 _____ C:\Windows\system32\PerfStringBackup.INI 2013-09-26 15:16 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF 2013-09-26 10:52 - 2013-09-26 10:52 - 00000000 ____D C:\Users\Public\Documents\CrashDump 2013-09-26 10:23 - 2011-07-19 11:42 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-09-26 10:22 - 2013-09-26 10:22 - 00000000 ____D C:\Program Files (x86)\MyFree Codec 2013-09-26 10:22 - 2013-09-26 10:06 - 00000000 ____D C:\Program Files (x86)\Samsung 2013-09-26 10:22 - 2013-09-26 10:04 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Downloaded Installations 2013-09-26 10:21 - 2013-09-26 10:11 - 00002002 _____ C:\Users\Public\Desktop\Samsung Kies (Lite).lnk 2013-09-26 10:14 - 2013-09-26 10:14 - 00000000 ____D C:\Program Files (x86)\MarkAny 2013-09-26 10:11 - 2013-09-26 10:11 - 00001992 _____ C:\Users\Public\Desktop\Samsung Kies.lnk 2013-09-26 10:11 - 2013-09-26 10:11 - 00000000 ____D C:\Users\Public\Documents\NativeFus_Log 2013-09-26 10:11 - 2013-09-26 10:11 - 00000000 ____D C:\Users\Jacqueline\Documents\samsung 2013-09-26 10:11 - 2013-09-26 10:11 - 00000000 ____D C:\Users\Jacqueline\AppData\Roaming\Samsung 2013-09-26 10:11 - 2013-09-26 10:11 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Samsung 2013-09-26 10:09 - 2013-09-26 10:06 - 00000000 ____D C:\ProgramData\Samsung 2013-09-26 10:03 - 2013-09-26 10:03 - 69552992 _____ (Samsung Electronics Co., Ltd. ) C:\Users\Jacqueline\Downloads\KiesSetup.exe 2013-09-26 08:29 - 2013-09-26 08:29 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{D5C64D3A-1543-442A-A9EF-69787FAE42C6} 2013-09-26 08:25 - 2011-11-08 21:21 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\CrashDumps 2013-09-25 14:01 - 2013-09-25 12:49 - 00000000 ____D C:\Users\Jacqueline\AppData\Roaming\Windows Net Data 2013-09-25 12:49 - 2013-09-25 12:49 - 00000000 ____D C:\Users\Jacqueline\ChromeExtensions 2013-09-25 12:49 - 2013-09-25 12:49 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Temp62cffb5f9d426b6d803b2d8a9bdd823d 2013-09-25 12:49 - 2013-09-25 12:49 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Temp5482275e3530aa9bd615635939968a27 2013-09-25 12:49 - 2013-09-25 12:49 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Temp2daf80f7e738224c09a386a7a8275c1d 2013-09-25 12:49 - 2011-10-28 18:02 - 00000000 ___RD C:\Users\Jacqueline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-09-25 12:49 - 2011-10-28 17:56 - 00000000 ____D C:\Users\Jacqueline 2013-09-25 12:48 - 2013-09-25 12:48 - 01345792 _____ C:\Users\Jacqueline\Downloads\SuperOneClick-Setup.exe 2013-09-25 12:42 - 2013-09-25 12:42 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_WinUsb_01009.Wdf 2013-09-25 11:44 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2013-09-24 14:22 - 2013-03-19 11:02 - 00000000 ____D C:\Users\Jacqueline\Desktop\DaF SS 13 2013-09-24 10:32 - 2013-09-24 10:32 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{292877C1-9F36-4CC9-9A7C-F5467A76CBCE} 2013-09-24 10:07 - 2013-09-24 10:07 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{C8DA8C11-AA8A-414C-96AD-B695B3C0BEE4} 2013-09-23 12:50 - 2013-09-23 12:50 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{411F5C89-49E9-4EAE-AE27-1051EF24969C} 2013-09-22 20:28 - 2013-09-22 20:28 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{A9ECEE26-1105-4AD4-B974-2A00A9135D47} 2013-09-22 19:03 - 2013-09-22 18:10 - 00000000 ____D C:\Users\Jacqueline\Desktop\Literatur Diplomarbeit 2013-09-22 18:03 - 2011-10-29 17:02 - 00000052 _____ C:\Windows\SysWOW64\DOErrors.log 2013-09-22 18:02 - 2011-11-20 10:35 - 00000000 _____ C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt 2013-09-20 10:46 - 2012-04-03 08:19 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-09-20 10:46 - 2012-04-03 08:19 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-09-20 10:46 - 2011-07-19 11:23 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-09-20 10:43 - 2013-09-20 10:43 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{E52688C0-E12F-4976-9A05-F929E21E1E02} 2013-09-18 11:12 - 2013-09-18 11:11 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{1886B67B-1EAB-422A-87E3-BA3BABAB8AEE} 2013-09-16 10:35 - 2013-09-16 10:35 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{94C4C92E-5445-4698-8AFC-4CE730A83F5C} 2013-09-14 19:04 - 2013-03-04 11:43 - 00000981 _____ C:\Users\Public\Desktop\AVG 2013.lnk 2013-09-14 18:51 - 2011-10-28 18:02 - 00000000 ___RD C:\Users\Jacqueline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-09-14 18:50 - 2009-07-14 06:45 - 00317160 _____ C:\Windows\system32\FNTCACHE.DAT 2013-09-13 21:51 - 2011-10-29 19:25 - 00000000 ____D C:\Program Files (x86)\Microsoft Application Virtualization Client 2013-09-13 21:51 - 2011-09-15 01:51 - 01641654 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2013-09-13 20:48 - 2012-07-20 09:06 - 00000000 ____D C:\Users\Jacqueline\Desktop\Sonstiges 2013-09-13 19:18 - 2013-09-12 22:20 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{66EFC7C5-2E46-4510-B47C-FF495A647F73} 2013-09-12 09:11 - 2013-09-12 09:11 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{85DA70E8-D684-4BE9-AB74-3FA530AE292A} 2013-09-11 19:52 - 2013-09-11 19:52 - 435300643 _____ C:\Windows\MEMORY.DMP 2013-09-11 19:52 - 2013-09-11 19:52 - 00305448 _____ C:\Windows\Minidump\091113-57236-01.dmp 2013-09-11 19:52 - 2013-09-11 19:52 - 00000000 ____D C:\Windows\Minidump 2013-09-11 19:50 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\LiveKernelReports 2013-09-11 11:41 - 2011-10-28 18:00 - 00074136 _____ C:\Users\Jacqueline\AppData\Local\GDIPFONTCACHEV1.DAT 2013-09-11 10:09 - 2013-09-11 10:09 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{789FE9AB-3F9F-4341-B2DD-69D372D35459} 2013-09-10 09:48 - 2013-09-10 09:48 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{44CC5B01-816F-4BC8-A2F9-89EB8F869BAB} 2013-09-09 21:48 - 2013-09-09 21:48 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{026013E0-4416-4DFE-9605-54B520B789AD} 2013-09-09 10:07 - 2011-07-19 11:31 - 00000000 ____D C:\ProgramData\Hewlett-Packard 2013-09-09 10:06 - 2011-07-19 11:18 - 00000000 ____D C:\Program Files (x86)\Hewlett-Packard 2013-09-09 10:05 - 2011-02-10 21:23 - 00000000 ____D C:\SWSetup 2013-09-09 10:01 - 2011-09-15 01:54 - 00000000 ____D C:\Program Files (x86)\Realtek 2013-09-09 10:00 - 2011-09-15 01:57 - 00878184 _____ (Realtek Semiconductor Corporation ) C:\Windows\system32\Drivers\rtl8192ce.sys 2013-09-09 09:57 - 2013-09-09 09:58 - 00425064 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2013-09-09 09:57 - 2013-09-09 09:58 - 00074272 _____ C:\Windows\system32\RtNicProp64.dll 2013-09-09 09:57 - 2011-09-15 01:55 - 00107552 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll 2013-09-09 09:48 - 2013-09-09 09:48 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{11FF364A-3A14-4DFF-811E-44D08E5308AD} 2013-09-06 09:57 - 2013-09-06 09:57 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{D9FB7FC6-917A-4196-96AD-A138AF0C1FEA} 2013-09-05 10:21 - 2013-09-05 10:21 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{760D6EAB-4FA6-4E66-974D-6EB4A33B44A8} 2013-09-05 01:43 - 2013-09-05 01:43 - 00045880 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgrkx64.sys 2013-09-04 09:38 - 2013-09-04 09:38 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{604FF817-65AA-4468-A091-866868ADA32C} 2013-09-03 18:17 - 2011-12-14 19:43 - 00000000 ____D C:\ProgramData\lx_Cats 2013-09-03 10:26 - 2013-09-03 10:26 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{4B0D5A6D-1DC1-466E-945D-21A8416D7F9B} 2013-09-02 09:58 - 2013-09-02 09:58 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{CA054B8B-1C6E-4E38-A250-D5585BA0A23D} 2013-08-31 11:11 - 2013-08-31 11:11 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{761C8188-FA2D-4E37-A534-F2850C07D7C2} 2013-08-30 08:24 - 2013-08-30 08:24 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{D3F83DF1-E636-4FD8-B14E-60408C21F23B} Some content of TEMP: ==================== C:\Users\Jacqueline\AppData\Local\Temp\amazonicon.exe C:\Users\Jacqueline\AppData\Local\Temp\amazoninstallernircmdc.exe C:\Users\Jacqueline\AppData\Local\Temp\comic!.exe C:\Users\Jacqueline\AppData\Local\Temp\contentDATs.exe C:\Users\Jacqueline\AppData\Local\Temp\Extract.exe C:\Users\Jacqueline\AppData\Local\Temp\HPHelpUpdater.exe C:\Users\Jacqueline\AppData\Local\Temp\ICReinstall_bechdel_fun.pdf.exe C:\Users\Jacqueline\AppData\Local\Temp\installhelper.dll C:\Users\Jacqueline\AppData\Local\Temp\install_reader10_de_mssa_aih.exe C:\Users\Jacqueline\AppData\Local\Temp\IPx64_1031.exe C:\Users\Jacqueline\AppData\Local\Temp\JavaIC.dll C:\Users\Jacqueline\AppData\Local\Temp\jre-6u33-windows-i586-iftw.exe C:\Users\Jacqueline\AppData\Local\Temp\jre-6u37-windows-i586-iftw.exe C:\Users\Jacqueline\AppData\Local\Temp\jre-6u39-windows-i586-iftw.exe C:\Users\Jacqueline\AppData\Local\Temp\jre-7u15-windows-i586-iftw.exe C:\Users\Jacqueline\AppData\Local\Temp\msbtwygu.dll C:\Users\Jacqueline\AppData\Local\Temp\msscct32.dll C:\Users\Jacqueline\AppData\Local\Temp\Resource.exe C:\Users\Jacqueline\AppData\Local\Temp\sdanircmdc.exe C:\Users\Jacqueline\AppData\Local\Temp\SecurityScan_Release.exe C:\Users\Jacqueline\AppData\Local\Temp\SIMEEIInstaller.exe C:\Users\Jacqueline\AppData\Local\Temp\SkypeSetup.exe C:\Users\Jacqueline\AppData\Local\Temp\SP53794.exe C:\Users\Jacqueline\AppData\Local\Temp\sp54620.exe C:\Users\Jacqueline\AppData\Local\Temp\SP54714.exe C:\Users\Jacqueline\AppData\Local\Temp\SP55081.exe C:\Users\Jacqueline\AppData\Local\Temp\SP55083.exe C:\Users\Jacqueline\AppData\Local\Temp\SP55085.exe C:\Users\Jacqueline\AppData\Local\Temp\SP55152.exe C:\Users\Jacqueline\AppData\Local\Temp\SP56215.exe C:\Users\Jacqueline\AppData\Local\Temp\SP56878.exe C:\Users\Jacqueline\AppData\Local\Temp\SP56929.exe C:\Users\Jacqueline\AppData\Local\Temp\SP57049.exe C:\Users\Jacqueline\AppData\Local\Temp\sp58915.exe C:\Users\Jacqueline\AppData\Local\Temp\SP59792.exe C:\Users\Jacqueline\AppData\Local\Temp\SRAssetsHelper.dll C:\Users\Jacqueline\AppData\Local\Temp\tbuTo0.dll C:\Users\Jacqueline\AppData\Local\Temp\tbWinl.dll C:\Users\Jacqueline\AppData\Local\Temp\UninstallHPSA.exe C:\Users\Jacqueline\AppData\Local\Temp\utt2CE2.tmp.exe C:\Users\Jacqueline\AppData\Local\Temp\utt456A.tmp.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-09-23 21:53 ==================== End Of Log ============================ --- --- --- Und hier die Addition-Datei: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 27-09-2013 Ran by Jacqueline at 2013-09-27 21:33:24 Running from C:\Users\Jacqueline\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: AVG AntiVirus Free Edition 2013 (Enabled - Up to date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9} AV: Microsoft Security Essentials (Enabled - Up to date) {3F839487-C7A2-C958-E30C-E2825BA31FB5} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: AVG AntiVirus Free Edition 2013 (Enabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664} AS: Microsoft Security Essentials (Enabled - Up to date) {84E27563-E198-C6D6-D9BC-D9F020245508} ==================== Installed Programs ====================== µTorrent (x32 Version: 3.0.0) Adobe Flash Player 11 ActiveX (x32 Version: 11.8.800.175) Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.168) Adobe Reader X (10.1.2) MUI (x32 Version: 10.1.2) Adobe Reader X (10.1.7) - Deutsch (x32 Version: 10.1.7) Adobe Shockwave Player 11.5 (x32 Version: 11.5.9.620) Agatha Christie - Peril at End House (x32 Version: 2.2.0.95) AMD APP SDK Runtime (Version: 2.4.650.9) AMD Catalyst Install Manager (Version: 3.0.847.0) AMD Fuel (Version: 2011.0705.1115.18310) AMD Media Foundation Decoders (Version: 1.0.60705.1113) AMD Steady Video Plug-In (Version: 1.00.0000) AMD System Monitor (x32 Version: 1.0.6) AMD VISION Engine Control Center (x32 Version: 2011.0705.1115.18310) Audacity 2.0.2 (x32 Version: 2.0.2) AVG 2013 (Version: 13.0.3222) AVG 2013 (Version: 13.0.3408) AVG 2013 (Version: 2013.0.3408) Bejeweled 3 (x32 Version: 2.2.0.97) Blasterball 3 (x32 Version: 2.2.0.97) Bounce Symphony (x32 Version: 2.2.0.97) Bullzip PDF Printer 9.0.0.1437 (Version: 9.0.0.1437) Cake Mania (x32 Version: 2.2.0.95) Catalyst Control Center - Branding (x32 Version: 1.00.0000) Catalyst Control Center Graphics Previews Common (x32 Version: 2011.0705.1115.18310) Catalyst Control Center InstallProxy (x32 Version: 2011.0928.607.9079) Catalyst Control Center Localization All (x32 Version: 2011.0705.1115.18310) CCC Help Chinese Standard (x32 Version: 2011.0705.1114.18310) CCC Help Chinese Traditional (x32 Version: 2011.0705.1114.18310) CCC Help Czech (x32 Version: 2011.0705.1114.18310) CCC Help Danish (x32 Version: 2011.0705.1114.18310) CCC Help Dutch (x32 Version: 2011.0705.1114.18310) CCC Help English (x32 Version: 2011.0705.1114.18310) CCC Help Finnish (x32 Version: 2011.0705.1114.18310) CCC Help French (x32 Version: 2011.0705.1114.18310) CCC Help German (x32 Version: 2011.0705.1114.18310) CCC Help Greek (x32 Version: 2011.0705.1114.18310) CCC Help Hungarian (x32 Version: 2011.0705.1114.18310) CCC Help Italian (x32 Version: 2011.0705.1114.18310) CCC Help Japanese (x32 Version: 2011.0705.1114.18310) CCC Help Korean (x32 Version: 2011.0705.1114.18310) CCC Help Norwegian (x32 Version: 2011.0705.1114.18310) CCC Help Polish (x32 Version: 2011.0705.1114.18310) CCC Help Portuguese (x32 Version: 2011.0705.1114.18310) CCC Help Russian (x32 Version: 2011.0705.1114.18310) CCC Help Spanish (x32 Version: 2011.0705.1114.18310) CCC Help Swedish (x32 Version: 2011.0705.1114.18310) CCC Help Thai (x32 Version: 2011.0705.1114.18310) CCC Help Turkish (x32 Version: 2011.0705.1114.18310) ccc-utility64 (Version: 2011.0705.1115.18310) Chronicles of Albian (x32 Version: 2.2.0.95) Chuzzle Deluxe (x32 Version: 2.2.0.95) Cisco EAP-FAST Module (x32 Version: 2.2.14) Cisco LEAP Module (x32 Version: 1.0.19) Cisco PEAP Module (x32 Version: 1.1.6) Cradle of Rome 2 (x32 Version: 2.2.0.95) CyberLink YouCam (x32 Version: 3.5.1.4119) D3DX10 (x32 Version: 15.4.2368.0902) Dropbox (HKCU Version: 2.0.22) ESU for Microsoft Windows 7 SP1 (x32 Version: 2.1.1) Evernote v. 4.2.3 (x32 Version: 4.2.3.22) Farm Frenzy (x32 Version: 2.2.0.95) FATE (x32 Version: 2.2.0.97) FlexPoints 2.01 (x32 Version: 2.01.0000) Free Easy Burner V 5.1 (x32 Version: 5.1.0.0) Governor of Poker 2 Premium Edition (x32 Version: 2.2.0.95) Hewlett-Packard ACLM.NET v1.2.1.1 (x32 Version: 1.00.0000) HP Auto (Version: 1.0.12935.3667) HP Client Services (Version: 1.1.12938.3539) HP Customer Experience Enhancements (x32 Version: 6.0.1.7) HP Documentation (x32 Version: 1.1.1.0) HP Games (x32 Version: 1.0.2.5) HP Launch Box (Version: 1.0.11) HP On Screen Display (x32 Version: 1.3.5) HP Power Manager (x32 Version: 1.4.7) HP Quick Launch (x32 Version: 2.7.2) HP QuickWeb (x32 Version: 3.1.0.9760) HP Setup (x32 Version: 8.7.4751.3798) HP Setup Manager (x32 Version: 1.1.13476.3753) HP Software Framework (x32 Version: 4.5.10.1) HP Support Assistant (x32 Version: 7.0.39.15) IDT Audio (x32 Version: 1.0.6319.0) Java Auto Updater (x32 Version: 2.0.7.2) Java(TM) 6 Update 39 (x32 Version: 6.0.390) Jewel Quest Solitaire (x32 Version: 2.2.0.95) Jewel Quest: The Sleepless Star - Collector's Edition (x32 Version: 2.2.0.95) Junk Mail filter update (x32 Version: 15.4.3502.0922) Kalender-Excel-8.9 (x32 Version: 8.9) Lexmark (x32 Version: 1.0.0.0) Lexmark 5600-6600 Series (x32) Mah Jong Medley (x32 Version: 2.2.0.95) Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300) Mesh Runtime (x32 Version: 15.4.5722.2) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319) Microsoft .NET Framework 4 Extended (Version: 4.0.30319) Microsoft Application Error Reporting (Version: 12.0.6015.5000) Microsoft Office 2010 (x32 Version: 14.0.4763.1000) Microsoft Office Klick-und-Los 2010 (Version: 14.0.4763.1000) Microsoft Office Klick-und-Los 2010 (x32 Version: 14.0.4763.1000) Microsoft Office Starter 2010 - Deutsch (x32 Version: 14.0.5128.5002) Microsoft Security Client (Version: 4.2.0223.1) Microsoft Security Essentials (Version: 4.2.223.1) Microsoft Silverlight (Version: 5.1.20513.0) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (x32 Version: 8.0.50727.4053) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (Version: 10.0.30319) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Mozilla Firefox 23.0.1 (x86 en-US) (x32 Version: 23.0.1) Mozilla Maintenance Service (x32 Version: 23.0.1) MSVCRT (x32 Version: 15.4.2862.0708) MSVCRT_amd64 (x32 Version: 15.4.2862.0708) MyFreeCodec (HKCU) Mystery of Mortlake Mansion (x32 Version: 2.2.0.97) Namco All-Stars: PAC-MAN (x32 Version: 2.2.0.95) OpenOffice.org 3.3 (x32 Version: 3.3.9567) Penguins! (x32 Version: 2.2.0.95) Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.95) Polar Bowler (x32 Version: 2.2.0.97) Realtek Ethernet Controller Driver (x32 Version: 7.40.126.2011) Realtek PCIE Card Reader (x32 Version: 6.1.7601.83) REALTEK Wireless LAN Driver (x32 Version: 1.00.11.0706) Recovery Manager (x32 Version: 2.0.0) Samsung Kies (x32 Version: 2.5.3.13043_14) Samsung Story Album Viewer (x32 Version: 1.0.0.13054_1) SAMSUNG USB Driver for Mobile Phones (Version: 1.5.27.0) Skype™ 6.1 (x32 Version: 6.1.129) Slingo Deluxe (x32 Version: 2.2.0.95) Synaptics Pointing Device Driver (Version: 15.3.11.0) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2473228) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2600217) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2836939) (x32 Version: 1) Update Installer for WildTangent Games App (x32) Vacation Quest - The Hawaiian Islands (x32 Version: 2.2.0.97) Virtual Villagers - The Secret City (x32 Version: 2.2.0.95) Visual Studio 2010 x64 Redistributables (Version: 13.0.0.1) VLC media player 1.1.11 (x32 Version: 1.1.11) WildTangent Games App (x32 Version: 4.0.10.2) Windows Live Communications Platform (x32 Version: 15.4.3502.0922) Windows Live Essentials (x32 Version: 15.4.3502.0922) Windows Live Essentials (x32 Version: 15.4.3555.0308) Windows Live Fotogalerie (x32 Version: 15.4.3502.0922) Windows Live ID Sign-in Assistant (Version: 7.250.4232.0) Windows Live Installer (x32 Version: 15.4.3502.0922) Windows Live Language Selector (Version: 15.4.3555.0308) Windows Live Mail (x32 Version: 15.4.3502.0922) Windows Live Mesh (x32 Version: 15.4.3502.0922) Windows Live Mesh ActiveX Control for Remote Connections (x32 Version: 15.4.5722.2) Windows Live Mesh ActiveX control for remote connections (x32 Version: 15.4.5722.2) Windows Live Messenger (x32 Version: 15.4.3502.0922) Windows Live Messenger (x32 Version: 15.4.3538.0513) Windows Live MIME IFilter (Version: 15.4.3502.0922) Windows Live Movie Maker (x32 Version: 15.4.3502.0922) Windows Live Photo Common (x32 Version: 15.4.3502.0922) Windows Live Photo Gallery (x32 Version: 15.4.3502.0922) Windows Live PIMT Platform (x32 Version: 15.4.3508.1109) Windows Live Remote Client (Version: 15.4.5722.2) Windows Live Remote Client Resources (Version: 15.4.5722.2) Windows Live Remote Service (Version: 15.4.5722.2) Windows Live Remote Service Resources (Version: 15.4.5722.2) Windows Live SOXE (x32 Version: 15.4.3502.0922) Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922) Windows Live UX Platform (x32 Version: 15.4.3502.0922) Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109) Windows Live Writer (x32 Version: 15.4.3502.0922) Windows Live Writer Resources (x32 Version: 15.4.3502.0922) Windows Utils (x32) Zuma Deluxe (x32 Version: 2.2.0.95) ==================== Restore Points ========================= 08-09-2013 17:19:15 Windows Update 09-09-2013 07:54:42 HPSF Applying updates 09-09-2013 07:55:14 HPSF Applying updates 09-09-2013 07:57:36 Installiert Realtek Ethernet Controller Driver 09-09-2013 08:01:03 Installiert REALTEK PCIE Wireless LAN Driver 09-09-2013 08:03:40 Removed HP Quick Launch 09-09-2013 08:04:21 Installed HP Quick Launch 09-09-2013 08:05:56 Removed HP Power Manager 09-09-2013 08:06:34 Installed HP Power Manager 11-09-2013 19:42:23 Windows Update 13-09-2013 19:44:30 Windows Update 18-09-2013 09:19:15 Windows Update 22-09-2013 16:02:04 Windows Update 26-09-2013 08:05:02 Installed Samsung Kies 26-09-2013 08:23:00 Installiert Samsung Story Album Viewer 26-09-2013 14:51:52 Windows Modules Installer 27-09-2013 07:07:08 Windows Update ==================== Hosts content: ========================== 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {3A77DEC1-55BA-4AB0-AC60-0AF2103C0FF3} - System32\Tasks\Microsoft\Windows\MUI\Lpksetup => C:\Windows\System32\lpksetup.exe [2010-11-21] (Microsoft Corporation) Task: {5240D81D-554F-45C7-9DF6-AA535401AC4D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-09-20] (Adobe Systems Incorporated) Task: {68C91B21-A2A2-4C14-B373-16FED64874DE} - System32\Tasks\MirageAgent => C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2011-06-15] (CyberLink) Task: {85DDBEAF-4D1F-4D2C-806F-143E7A4A9CE9} - System32\Tasks\{2B411F57-1605-4A71-AEBE-3E153F721A1A} => Firefox.exe hxxp://ui.skype.com/ui/0/5.9.0.115.161/en/abandoninstall?page=tsMain Task: {938BA4D4-06FE-4D75-AD34-BFAEAE55BC0E} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company) Task: {9677F4CC-9CCF-4EC9-8810-E16C0BC845FF} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis Install => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company) Task: {996BD7D6-B0D8-4E6E-803A-1DDF66513AE3} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company) Task: {9B1CE13A-D800-474E-BF3B-206FEC40558F} - System32\Tasks\User_Feed_Synchronization-{9492721E-B895-4B3A-ACB6-B93217A00044} => C:\Windows\system32\msfeedssync.exe [2013-07-17] (Microsoft Corporation) Task: {A48B9794-92F9-46DD-93D9-B8B8C3F65C9D} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc Task: {A7F432BD-5104-486E-8373-646C349D7DD3} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2013-04-01] (Hewlett-Packard Company) Task: {B7E3EF82-61E5-40C8-8A40-98521D2876DF} - System32\Tasks\HPCeeScheduleForJacqueline => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-13] (Hewlett-Packard) Task: {DA6BD1C9-BAAC-4766-BFC6-89D915EC33CE} - System32\Tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTask => C:\Windows\system32\Wat\WatAdminSvc.exe [2011-10-29] (Microsoft Corporation) Task: {EF1D219C-9705-4E5B-8176-8E1A010AEEF6} - System32\Tasks\Installation App Launcher => C:\Program Files (x86) (x86)\Lexmark 5600-6600 Series\lxduamon.exe [2010-02-04] () Task: {F45389D7-C316-4823-A5D9-3E009EFB79C0} - System32\Tasks\ServicePlan => C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [2011-06-27] () Task: {F6745AEC-01D1-41F7-A90E-11A02F223630} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2013-08-09] (Hewlett-Packard) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\HPCeeScheduleForJacqueline.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe ==================== Loaded Modules (whitelisted) ============= 2011-07-05 11:27 - 2011-07-05 11:27 - 00103424 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll 2011-07-05 11:13 - 2011-07-05 11:13 - 00243712 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll 2011-06-17 13:42 - 2011-06-17 13:42 - 00016384 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Branding\Branding.dll 2013-03-13 22:48 - 2013-03-13 22:48 - 24978944 _____ () C:\Users\Jacqueline\AppData\Roaming\Dropbox\bin\libcef.dll 2011-01-17 17:19 - 2011-11-04 09:58 - 00985088 _____ () C:\Program Files (x86)\OpenOffice.org 3\program\libxml2.dll 2011-12-14 19:39 - 2010-02-04 06:52 - 00380928 _____ () C:\Program Files (x86) (x86)\Lexmark 5600-6600 Series\lxduscw.dll 2011-12-14 19:39 - 2009-10-16 12:53 - 00188416 _____ () C:\Program Files (x86) (x86)\Lexmark 5600-6600 Series\lxdudatr.dll 2011-12-14 19:39 - 2009-10-16 12:53 - 00073728 _____ () C:\Program Files (x86) (x86)\Lexmark 5600-6600 Series\lxducats.dll 2011-12-14 19:39 - 2010-02-04 06:52 - 01036288 _____ () C:\Program Files (x86) (x86)\Lexmark 5600-6600 Series\lxduDRS.dll 2011-12-14 19:39 - 2010-02-04 06:52 - 00081920 _____ () C:\Program Files (x86) (x86)\Lexmark 5600-6600 Series\lxducaps.dll 2011-12-14 19:39 - 2010-02-04 06:35 - 00069632 _____ () C:\Program Files (x86) (x86)\Lexmark 5600-6600 Series\lxducnv4.dll 2011-12-14 19:39 - 2010-01-21 07:09 - 00028672 _____ () C:\Program Files (x86) (x86)\Lexmark 5600-6600 Series\App4R.Monitor.Common.dll 2011-12-14 19:39 - 2010-01-21 07:09 - 00036864 _____ () C:\Program Files (x86) (x86)\Lexmark 5600-6600 Series\App4R.Monitor.Core.dll 2011-12-14 19:39 - 2010-01-21 07:08 - 00065536 _____ () C:\Program Files (x86) (x86)\Lexmark 5600-6600 Series\app4r.devmons.mcmdevmon.dll 2011-12-14 19:39 - 2008-03-25 05:53 - 00012288 _____ () C:\Program Files (x86) (x86)\Lexmark 5600-6600 Series\app4r.devmons.mcmdevmon.autoplayutil.dll 2013-08-19 11:58 - 2013-08-19 11:59 - 03551640 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (09/27/2013 09:17:34 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/27/2013 08:11:56 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/27/2013 08:48:04 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/26/2013 05:53:07 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Error: (09/26/2013 05:53:00 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Error: (09/26/2013 05:52:52 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Error: (09/26/2013 05:52:46 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Error: (09/26/2013 05:52:45 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Error: (09/26/2013 05:52:45 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Error: (09/26/2013 05:52:44 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest2" in Zeile C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Komponente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. System errors: ============= Error: (09/27/2013 09:17:08 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Client Virtualization Handler" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (09/27/2013 09:17:08 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Client Virtualization Handler erreicht. Error: (09/27/2013 09:16:08 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (User: NT-AUTORITÄT) Description: Das WLAN-Erweiterungsmodul konnte nicht gestartet werden. Modulpfad: C:\Windows\system32\Rtlihvs.dll Fehlercode: 126 Error: (09/27/2013 09:02:22 PM) (Source: Service Control Manager) (User: ) Description: Der Aufruf "ScRegSetValueExW" ist für "FailureActions" aufgrund folgenden Fehlers fehlgeschlagen: %%5 Error: (09/27/2013 08:12:54 PM) (Source: DCOM) (User: ) Description: {995C996E-D918-4A8C-A302-45719A6F4EA7} Error: (09/27/2013 08:10:45 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (User: NT-AUTORITÄT) Description: Das WLAN-Erweiterungsmodul konnte nicht gestartet werden. Modulpfad: C:\Windows\system32\Rtlihvs.dll Fehlercode: 126 Error: (09/27/2013 08:08:37 PM) (Source: Service Control Manager) (User: ) Description: Der Aufruf "ScRegSetValueExW" ist für "FailureActions" aufgrund folgenden Fehlers fehlgeschlagen: %%5 Error: (09/27/2013 09:10:25 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Definitionsupdate für Microsoft Security Essentials – KB2310138 (Definition 1.159.851.0) Error: (09/27/2013 09:09:36 AM) (Source: Microsoft Antimalware) (User: ) Description: Beim Aktualisieren der Signaturen wurde von %NT-AUTORITÄT60 ein Fehler festgestellt. Neue Signaturversion: Vorherige Signaturversion: 1.159.672.0 Aktualisierungsquelle: %NT-AUTORITÄT59 Aktualisierungsphase: 4.2.0223.00 Quellpfad: 4.2.0223.01 Signaturtyp: %NT-AUTORITÄT602 Aktualisierungstyp: %NT-AUTORITÄT604 Benutzer: NT-AUTORITÄT\SYSTEM Aktuelle Modulversion: %NT-AUTORITÄT605 Vorherige Modulversion: %NT-AUTORITÄT606 Fehlercode: %NT-AUTORITÄT607 Fehlerbeschreibung: %NT-AUTORITÄT608 Error: (09/27/2013 08:47:31 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "lxdu_device" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Microsoft Office Sessions: ========================= Error: (09/27/2013 09:17:34 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/27/2013 08:11:56 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/27/2013 08:48:04 AM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/26/2013 05:53:07 PM) (Source: SideBySide)(User: ) Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Users\Jacqueline\Downloads\SoftonicDownloader_para_cdburnerxp-pro(1).exe Error: (09/26/2013 05:53:00 PM) (Source: SideBySide)(User: ) Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Users\Jacqueline\Downloads\SoftonicDownloader_fuer_excel-kalender-vorlage.exe Error: (09/26/2013 05:52:52 PM) (Source: SideBySide)(User: ) Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Users\Jacqueline\Downloads\SoftonicDownloader_para_sharepod(1).exe Error: (09/26/2013 05:52:46 PM) (Source: SideBySide)(User: ) Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Users\Jacqueline\Downloads\SoftonicDownloader_para_mediamonkey.exe Error: (09/26/2013 05:52:45 PM) (Source: SideBySide)(User: ) Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Users\Jacqueline\Downloads\SoftonicDownloader_para_free-easy-cd-dvd-burner.exe Error: (09/26/2013 05:52:45 PM) (Source: SideBySide)(User: ) Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Users\Jacqueline\Downloads\SoftonicDownloader_para_sharepod.exe Error: (09/26/2013 05:52:44 PM) (Source: SideBySide)(User: ) Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Users\Jacqueline\Downloads\SoftonicDownloader_para_cdburnerxp-pro.exe ==================== Memory info =========================== Percentage of memory in use: 54% Total physical RAM: 3561.41 MB Available physical RAM: 1622.48 MB Total Pagefile: 7121 MB Available Pagefile: 4479.2 MB Total Virtual: 8192 MB Available Virtual: 8191.81 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:678.76 GB) (Free:475.58 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive d: (Recovery) (Fixed) (Total:15.71 GB) (Free:1.71 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive e: (HP_TOOLS) (Fixed) (Total:3.96 GB) (Free:1.1 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 699 GB) (Disk ID: 1ECE8725) Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=679 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=16 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=4 GB) - (Type=0C) ==================== End Of Log ============================ LG Jacqueline |
28.09.2013, 15:11 | #4 |
/// the machine /// TB-Ausbilder | Virus: getwindowinfo & amazonicon & giga software Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
28.09.2013, 19:59 | #5 |
| Virus: getwindowinfo & amazonicon & giga software JUUUUHHUUU der IE poppt nicht mehr auf Das heißt, ich bin FAST geheilt!!! Denn beim Starten des Mozilla öffnet sich leider immer noch ein zweites Tab mit der HP von Gigasoftware! Nun mal die gewünschten Log-Dateien: Malwarebytes (hat nichts gefunden, da ich ja schon vorher einen Fullscan machen habe lassen!) Code:
ATTFilter Malwarebytes Anti-Malware 1.75.0.1300 www.malwarebytes.org Datenbank Version: v2013.09.28.09 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 10.0.9200.16686 Jacqueline :: JACQUELINE-HP [Administrator] 28.09.2013 20:00:05 mbam-log-2013-09-28 (20-00-05).txt Art des Suchlaufs: Quick-Scan Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 212449 Laufzeit: 15 Minute(n), 36 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 0 (Keine bösartigen Objekte gefunden) (Ende) Code:
ATTFilter # AdwCleaner v3.005 - Bericht erstellt am 28/09/2013 um 20:24:18 # Updated 22/09/2013 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzername : Jacqueline - JACQUELINE-HP # Gestartet von : C:\Users\Jacqueline\Downloads\adwcleaner.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\Program Files (x86)\Conduit Ordner Gelöscht : C:\Program Files\Babylon Ordner Gelöscht : C:\Users\Jacqueline\AppData\Local\Conduit Ordner Gelöscht : C:\Users\Jacqueline\AppData\Local\Ilivid Player Ordner Gelöscht : C:\Users\Jacqueline\AppData\Local\PackageAware Ordner Gelöscht : C:\Users\JACQUE~1\AppData\Local\Temp\BabylonToolbar Ordner Gelöscht : C:\Users\Jacqueline\AppData\LocalLow\Conduit Ordner Gelöscht : C:\Users\Jacqueline\AppData\LocalLow\PriceGong Ordner Gelöscht : C:\Users\Jacqueline\AppData\Roaming\Windows Net Data Ordner Gelöscht : C:\Users\Jacqueline\AppData\Roaming\Mozilla\Firefox\Profiles\o0pihqt3.default\jetpack Ordner Gelöscht : C:\Users\Jacqueline\AppData\Roaming\Mozilla\Firefox\Profiles\o0pihqt3.default\Extensions\sparpilot@sparpilot.com Datei Gelöscht : C:\Users\JACQUE~1\AppData\Local\Temp\Searchqu.ini Datei Gelöscht : C:\Users\Jacqueline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\net.lnk Datei Gelöscht : C:\Program Files (x86)\Mozilla Firefox\searchplugins\Babylon.xml ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\leocdeigfnkaojcapikdjcdbedcjmffc Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\BabylonHelper.EXE Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escort.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\secman.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Applications\ilividsetupv1.exe Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Prod.cap Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\Babylon_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\Babylon_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\BabylonTC_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\BabylonTC_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetupV1_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetupV1_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\uTorrentBar_DEAutoUpdateHelper_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\uTorrentBar_DEAutoUpdateHelper_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\uTorrentBar_DEToolbarHelper_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\uTorrentBar_DEToolbarHelper_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Toolbar.CT2319825 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Toolbar.CT2851647 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_everest-ultimate-edition_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_everest-ultimate-edition_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_excel-kalender-vorlage_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_excel-kalender-vorlage_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_utorrent_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_utorrent_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_para_cdburnerxp-pro(1)_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_para_cdburnerxp-pro(1)_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_para_free-easy-cd-dvd-burner_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_para_free-easy-cd-dvd-burner_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_para_mediamonkey_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_para_mediamonkey_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_para_sharepod(1)_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_para_sharepod(1)_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_para_sharepod_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_para_sharepod_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{6536801B-F50C-449B-9476-093DFD3789E3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{2EECD738-5844-4A99-B4B6-146BF802613B} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{E46C8196-B634-44A1-AF6E-957C64278AB1} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2EECD738-5844-4A99-B4B6-146BF802613B} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2EECD738-5844-4A99-B4B6-146BF802613B} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{D43B3890-80C7-4010-A95D-1E77B5924DC3} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D43B3890-80C7-4010-A95D-1E77B5924DC3} Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{40C3CC16-7269-4B32-9531-17F2950FB06F}] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D43B3890-80C7-4010-A95D-1E77B5924DC3} Schlüssel Gelöscht : HKCU\Software\Ciuvo Schlüssel Gelöscht : HKCU\Software\Softonic Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Conduit Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\PriceGong Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\SmartBar Schlüssel Gelöscht : HKLM\Software\Conduit ***** [ Browser ] ***** -\\ Internet Explorer v10.0.9200.16686 -\\ Mozilla Firefox v23.0.1 (en-US) [ Datei : C:\Users\Jacqueline\AppData\Roaming\Mozilla\Firefox\Profiles\o0pihqt3.default\prefs.js ] -\\ Google Chrome v [ Datei : C:\Users\Jacqueline\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R0].txt - [9068 octets] - [28/09/2013 20:21:25] AdwCleaner[S0].txt - [8410 octets] - [28/09/2013 20:24:18] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [8470 octets] ########## |
28.09.2013, 20:00 | #6 |
| Virus: getwindowinfo & amazonicon & giga software Und zu guter Letzt die JRT: Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.0.3 (09.27.2013:1) OS: Windows 7 Home Premium x64 Ran by Jacqueline on 28.09.2013 at 20:37:13,05 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{3A613D1D-9637-4C3E-83D4-48C7C344D785} Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{3A613D1D-9637-4C3E-83D4-48C7C344D785} ~~~ Files Successfully deleted: [File] C:\Windows\syswow64\sho5D9.tmp ~~~ Folders Successfully deleted: [Folder] "C:\Program Files (x86)\myfree codec" Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{0026BA60-B9FD-46B2-83B3-D5C74BCDDC32} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{0035B617-94BE-4EB7-8536-EB0B0BDB4258} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{00D0EBC9-AC5F-47E7-8A87-20DC30C98293} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{011E4060-DA69-4876-8226-F5F9509BA9BE} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{01830236-415D-4D52-9E5D-8BB631F33CBC} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{01C7CC94-B9B6-472B-892E-E6414A9ED382} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{022FEF05-B417-400D-9D34-BAA3D4640A54} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{024174D0-2B54-426B-8769-6BF47F7C9958} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{0246722A-3CCE-4259-843B-73FEC15E3531} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{026013E0-4416-4DFE-9605-54B520B789AD} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{032D69B2-6A75-4B04-992F-FDE964970BD3} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{0366F718-0A65-4138-904E-D8E851B83BFA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{043C25AD-CEDC-4ECB-BEE0-3E809DD5F9B5} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{04B07862-1DDD-449D-B219-D521102B87B3} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{04CDA83A-A16A-40EF-B3F4-92E93871B0CF} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{0500CA1F-68FB-42A9-B141-8A6DF5FC5193} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{053606DB-7560-40B6-A562-2763EBD8B271} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{058B59E1-E3A3-4B99-BA0D-081C5BB757CE} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{062EB55B-71B5-452C-85A1-46CA1A54B01A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{076C3171-38F9-4ACB-915A-2F1ECE540B9A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{08043432-D65B-4A89-AFF0-BDF515565B66} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{080F7CB1-95B3-4929-8572-C431486AAE04} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{08FA646F-A84C-4063-BD3D-AFEDD4708EAC} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{09325454-D835-4530-97C2-99BC34B4B5D8} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{093A451F-9401-4C08-A1F1-531C5409D163} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{098179A2-22E2-48EA-ACD1-D405EC743824} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{098AA28F-66AF-4CFC-953D-9C16B7DD800B} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{09E478A2-BB60-435F-B59E-8FEC7D742B7D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{09F9581B-0FFF-41A5-847C-3A2422E287A6} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{0A310018-E619-455D-BD1A-75026C62BD89} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{0A45F09C-8440-4ED3-8DB4-0C7730EBBE5A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{0AA27C67-8C85-46B4-A282-17CE4B7A8014} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{0B07F8EF-43E1-451A-9C3C-64F2DDC76F19} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{0B7C9B86-14D3-4889-8222-A1417CC9D4B5} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{0BE10C2C-0D1F-479E-AA48-BB96E30BFBE2} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{0BF15384-A725-489E-A1CD-A9BD8792EF92} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{0C695262-C746-4FA3-B078-4D660BD30C02} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{0CC1F814-CC57-4B63-A11F-870440A3BBE6} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{0D30CDBD-F0A9-4144-901D-E0EBFD17970D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{0D9C2388-9781-4678-B6C8-4AC463A45E48} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{0E2F12EC-DB3D-402C-95C2-50FD61E9FCFF} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{0EB0FD7D-58DB-4D69-AAF5-8DDA28E58F09} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{0EBB1335-EE76-4BF9-AC56-A6BFCF7E79C4} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{0EF75B88-BDFE-4E40-A946-9CCB4434422A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{0F1A05BD-E019-4307-90AB-10F869448C30} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{0F296F5A-EBD7-49F6-881B-D3C72C469A5C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{0F53BDA9-E8F4-4707-943E-CCDBAC9A1B3D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{0F565ACC-DFA6-4C76-9398-8E84AFDA1822} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{0F58C49E-C54D-4865-9695-380A45BC1613} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{0F75275C-6560-4DC3-93BE-8D2F4A07FC8A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{0FD27F1A-8506-498F-8769-9BDEB5920A3A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{0FF7D632-F9D4-4337-BC0F-B05B5144F27F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{1026B0F4-5FD0-4A49-B7C9-06F6B1981EF2} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{1054C5FE-4B92-4028-B20F-8B67433AD9DB} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{107B9F88-4F7F-402F-B6EC-EC565C0E3434} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{109E5980-D910-411A-8EE1-072D621C82E3} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{10A19198-A92B-4F9B-8E50-C0384281ACD5} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{10AE01D0-71F5-4736-8689-4AF5A37B8346} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{110F2102-F5A3-4353-AE17-CFB92C2CA29C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{115B848E-2A82-48BC-828C-7ECD8317EDE3} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{11A39AEC-BE1A-4688-94B4-084078787434} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{11FF364A-3A14-4DFF-811E-44D08E5308AD} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{12680017-1EB2-4982-80D3-A459AE6958AA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{12F05A7C-55A2-4BCC-9033-1341336737E1} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{12FB74AD-E1B9-495F-B980-55B0774EB711} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{1306CC72-9092-4C04-980C-444989636AF7} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{1364C71F-C832-4732-8AC1-8939E1A2615F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{13C389E5-12DF-47A4-8F06-2601200570C6} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{13C45826-4DE2-4875-AEB6-E382D5417FC2} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{13C58D69-6134-47F9-B529-A493B0CB5314} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{13DA71FD-5D6E-4D8A-8B5A-0DCB2B40C23B} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{13DFD75C-364B-49CC-B7F2-17A3AD3A8589} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{14080784-CEB2-4DDF-AA81-6422E76BD537} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{143FA336-2AD0-4063-BE14-8D0EACEE352B} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{146F55C4-295E-4E27-980A-36B10B10D791} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{14C580B1-19AD-4909-B5D2-192BB94B0BF3} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{14CC5070-9E3E-4961-96C3-D65BA40A3A8D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{1574C187-12CC-404A-BEB2-2F245735E268} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{1614D19C-6932-49B1-8D4E-FEA6EAA70C2E} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{16356E80-9D24-4E4C-8D83-68C9FCCD7C72} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{1644D313-794F-4A3C-9A1B-06957B9E952D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{16997AA8-6BA9-4D51-A952-05DDC40E6F18} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{16B62833-4408-4B8D-8B88-7F966074EE7C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{1777C4D5-C0B9-4C9C-A27F-2C0A66449C4E} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{17B61100-05B5-4CAE-A6CD-AA1F6A2D2878} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{1886B67B-1EAB-422A-87E3-BA3BABAB8AEE} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{18C0BBA2-33D7-4226-A1E3-06655B5BAEAC} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{18D13080-B5EF-4A08-BA75-E58452257F09} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{190A9E09-2580-47C0-9D83-20A6F6FF584C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{1923A669-4F65-4F2F-9931-818F4CCC3512} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{192C909B-9693-4EBE-9CE3-3353713B0B29} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{195B7D00-C50F-486F-9513-7FD0B0CA27D1} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{1984C09C-79D3-4818-BDCB-D817DB9CECFE} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{198DE9B1-35DA-48FB-9829-A708DF68A907} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{19AD8E82-15D2-45D5-AEE2-7C3BBAAA3E41} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{1A034F19-8BB8-4ECD-AF2E-89912E916920} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{1ABBDBC1-B49B-42EE-946B-122AAA560397} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{1AD60E6D-52D5-40FD-AE18-A4B0DF320231} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{1B57587D-420A-4B11-A044-1DB466065056} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{1B67C4ED-0544-4D19-AE10-585D6440B39A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{1C1DDA90-6BE6-4095-A650-324593A92D85} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{1C3F83F9-4340-4B5E-9E5E-B8794524B54F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{1C57B9D7-C44E-4099-8171-D60175B8CDCF} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{1C5BC64C-B763-49E1-8B46-22A2DD75244E} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{1D0BBE1B-64BC-4DCA-9529-490931F75373} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{1D2F27CA-8805-4EA3-9052-996EF0C57980} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{1D348ACE-0A23-4D75-9F77-284E7EF1A512} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{1DAD1055-A570-4A4D-85C6-ADBB6107BCA2} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{1DC646EE-4575-471D-8565-C4A01BA933D2} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{1DDC48E8-074B-4E89-88C6-1E5FE53673C3} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{1E32850C-5193-44C4-A102-D950C0944D17} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{1E721885-7616-4163-99E2-B4384F2865CF} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{1E84C2C5-2D12-456C-A851-71FC88FE2330} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{1E90EDEE-6186-4BFB-BE1F-65BDAC15E8BA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{1EF8E347-5E06-4349-BF01-CC4DEF0DFFE2} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{207A2410-6932-4DC8-AF51-7F8CD9C122E1} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{20985420-0A06-4662-85F0-47FBDC455C7A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{209D1034-DA39-42C9-B4A4-29D3CE75AAA8} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{20B7FC84-996C-4795-A6B8-C56156D32580} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{211D1D5A-034E-4DFE-97E0-19333EC0E6FD} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{212E9933-2879-41F5-84BB-038A2A87F676} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2145AC08-A2B2-4BAF-887C-2464DA31E15E} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{22536FFC-0E23-4C9B-913B-394F052BC8AD} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2290F09F-C4FC-46A8-AA80-2EC55BF1E364} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{22C9711F-91DC-4E01-83AC-6EF5403BC71B} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{22FB1254-5DDD-4BF9-A487-08EAFD3F27D9} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{23104215-C01C-4EC4-90C8-7264A2E5EEAA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{234C8E7A-96A6-4B51-9077-C32C5FE8C05E} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2360FDC3-B092-4D3E-B88D-8260D6FDB6F3} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{23A5FAFB-F954-406A-8D32-CDCD6197CEC5} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{23B70EEA-E08C-48ED-AAAD-5B18B732A26C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{23D106AD-822E-4B16-B4D1-DE7A45189E83} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{23D5C934-35C3-45AD-BD76-0D7F3C436D03} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{23DE40C1-4F97-42DB-93EC-0B7A0B406167} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{240F3364-61B6-43E6-9926-8BFB7B5D4501} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{241FA962-E60F-41F6-A1B2-9619D580BE76} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{243AE37C-1202-4D59-99E8-1E6978968D36} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{246EE767-C6AA-4ACF-9472-37B4D192F9E9} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{246FDEE2-8605-4D33-BA04-97E8321C1793} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{24807D47-7D52-452A-BD2E-525DCCFB18B0} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{249BFF98-A7C1-4029-9E1C-43CC10C8ED70} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{249DDB68-6C11-474A-B59A-705966821733} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{24A7D864-49D9-44F8-8567-D4B1BF1298DF} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{24D0BAE4-EF57-4983-AD8D-8DCFDC35BF46} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{25238036-6CAB-41DC-BB83-29E5D5DBF3BF} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2565BA32-0A95-4446-A2E9-D509FFA0A88D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{25FD996E-E995-4D48-8331-D40D38F48159} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2607A95F-CCCD-4087-A0F4-93A3E5CF5DAA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{26161959-C8A3-4549-B8B1-B2B9C68CEAF8} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2672011B-524A-4CFD-9378-BB967184581D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{26E558EE-9EDC-47E8-9D99-E3E519DB4B7A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{26EDFC33-CC85-40B8-A176-07B99831D7E8} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{275AF6C9-1F22-4112-92BA-D08A624869E9} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{275AFA06-F947-4DDF-8E9A-C5232195B975} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{27AA91EA-C2DC-4D7D-A31A-80644B6E5CE9} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{28277CFE-55E2-4488-A1FE-6C7786187B57} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{284614AC-C037-4050-BF55-07DFC0F60FD4} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{28AF6D37-D911-4661-9141-59CD8C641E9A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{28F26939-68BB-4A78-8CAF-16D11BD353FC} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{290D0190-0D25-478E-A500-065B531706DD} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{292877C1-9F36-4CC9-9A7C-F5467A76CBCE} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{29B95CDA-554B-4DB3-A5ED-7EA7094D9AF9} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{29F65718-FA1A-4BAA-940C-1B92DA3C0714} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2A42ADBC-23AB-43A1-8F30-685B3582CE6D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2A790E7A-8C1C-448D-A00E-61441387BC2B} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2B167E4D-5D11-4078-9746-CF706E0E69E4} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2B22B55C-F2BF-44DD-A0FE-35D380697C26} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2B3BC1BD-02B9-4456-AEEB-64C1F17BCAF2} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2B3C3DCB-1422-468E-AFFF-DF3CDF03062A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2B6D0901-E21B-424F-AF9D-8E7B01BBD2EB} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2B82C0BF-A364-43E6-B852-A0655464582C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2C019AD5-EF09-43BA-96D2-B4E700D3E8C0} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2C134459-7267-46A9-B4B9-6B4A8B81618D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2C488948-EBFE-4277-91F4-DF52BBC7FFDB} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2C656042-E4C6-47F1-BF16-07EDCD26BE4A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2D15EEAC-494D-4717-9FC9-4E0BE8955F52} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2D17650C-6139-4320-B2DF-E1502F51D09C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2D707176-AD3B-4F90-8BDD-225969E5B647} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2D7E9A05-A841-4FC7-BE12-BEA061DE5D3E} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2D8A1DF6-34FC-4DF5-865D-485426F9E14B} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2E0E2451-8C35-4347-BB7C-B060D4A42C32} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2E233346-2A14-47F2-964B-A689C7A434F3} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2E5F5CEB-DE46-4386-B99C-1453C3BA1AFC} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2E5FA0CB-77A4-4C13-86F8-B939D55F164E} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2E9C719A-2CAA-4695-B600-07FA55F859BD} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2EEB16D2-0CB8-4190-9B4E-69C80556E37F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2F2B5BAA-9F73-4C2B-8AC5-093774410273} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2F9369C6-4321-4A52-975A-88ED803256E5} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2FA389BD-77F6-4A63-B168-4003AE4E52F2} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{2FA8BF10-F572-4293-B318-8C55413B9C31} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{30407ED9-3C27-40C3-B8E9-F5E95A6B57A4} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{30587B75-7050-4E0A-AAA2-26E3F05DC462} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{308D7EE3-02A9-4BF6-961C-122985372D02} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{30D38075-8EAB-4296-98D7-953362B8A1E3} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{3139740D-B3F8-4FB2-89A7-6AAC86580067} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{3180E8BB-5E43-4B0B-B76F-475BDF4D42B1} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{31965DA8-0836-4174-9852-7E0B3ABF25F9} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{3196FB63-3FA8-4833-8C60-A53917E3FD62} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{31A363F0-057D-45B9-A80C-2F33C84BA780} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{31AE9AC3-67E4-479F-8436-A8C5CA6E25D0} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{321DCE23-4366-4FB7-960A-D09B902FD79C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{327B2547-42E1-4F6E-B7C7-58A82A0DA2F4} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{32AED40F-2AB2-40B6-A0BC-D450AB46056D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{32B9EFB9-9FB0-466C-BDB3-899ED8AE1FCA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{32D0C825-094F-4ECE-A258-86D35C6BC5BF} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{3356F7B6-5EA9-4FFD-B15A-3EC8CADD61A8} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{33981EAB-4C31-40D7-BDAA-9EE24A43B22C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{341A95E6-8235-42FD-8979-6F3D59153D82} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{343B992D-623C-4E65-9BF9-7CFAA02C9282} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{346DE822-C7FC-4C76-BDDC-E45B4844EDC4} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{34AFBD19-AF9F-4182-97B4-52354A6CB7D9} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{34BB4FE3-86A6-4BE0-BCAD-A077125871F2} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{354AE84F-006B-41BB-A4FA-A666E9500893} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{359A375B-EF8A-4DF9-BA9A-E7FE4082FC32} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{35B5CFE0-4E80-49F1-8FF2-0B07A843FCD5} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{35BE9FA6-38D3-435D-B7FA-FBAB553967D6} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{35C9B82D-A0E3-4401-BAB3-6C6E63689FC7} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{362B0305-CAFE-42DF-874C-AA24B343E5EE} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{363241FD-1408-47E2-886E-17436DCA6184} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{36B7A79C-5A50-4E13-B1B8-BD8E0EF404A2} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{37437BDC-5905-41F4-9923-CEEDFE28656F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{3789443D-328B-43B6-8F14-4B0BC55EB5A2} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{3790668F-ACD1-4E83-9CDD-CEBCB8DD6F85} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{379A6E4D-202F-4473-B7FF-1A50A8E4920D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{37BE08FA-3EB0-466D-8CE5-7AC0CFD6798E} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{38AA50C5-17AC-4E7D-B8C2-F76196F163F4} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{38C1E53C-9DE0-4886-9AAB-027F4342CE57} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{390B43C1-D9CF-4423-98B8-A9C43CAA27D3} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{390BC8CB-BEBE-49D7-83E7-E25248984357} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{396E2CE0-34DB-4ED6-AE0B-EDF48E349344} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{399A4512-F050-4865-95C0-93BE6FB4C29C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{39C344CE-C1B2-4BA5-AF26-9904CED8CE4D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{39C37732-273E-4E39-A76B-34A2BB741A5C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{39C39C51-1D30-44FB-9526-506ECB3533A2} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{39C493C8-8CBE-4CB7-B2CE-B005F7C2767E} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{3A1EC4A6-DA5B-4947-90C0-9EE8FE017C6C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{3A3D742D-1C5A-4A3B-AD86-9D5310AD2527} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{3A6F1484-90E7-49DA-9E8B-42896613DB95} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{3AB330C3-04D9-44D1-B717-14A44F5B49C0} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{3B28C6FF-E182-4D2E-8635-9773C10A2110} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{3B4FB83B-40F3-4A8E-B075-C238660373BA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{3B654FAF-357F-40AF-B802-3238F6D43D1F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{3B827FA5-9537-4C6B-9276-26E1605B514B} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{3BDF0FB0-874C-4C1C-8303-C5E15FCB3D35} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{3C166C10-4113-44CD-A4DB-330CDB65CF6B} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{3C3CEC31-5F7B-4D9B-A5C7-6C59F5BC600F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{3C531616-3D3B-460A-9424-F9FD34142863} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{3CC32F76-7CFB-4567-A67F-64149E0EDC77} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{3CD10E6A-E1FA-42D8-8050-9E05237172C5} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{3CF6A1EA-00E6-4548-8306-BAD52D14AB98} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{3D1E509B-95DB-4AC7-B20B-8451A4EF3B53} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{3D3CF296-5E8B-453D-B664-075807523979} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{3E2D61BE-50CA-46D9-AE92-68A68C950386} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{3E53CAFA-3C48-4026-A296-FDA3C70F98A9} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{3E74C1BC-D898-4728-8752-650AB531C5EE} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{3E803CA3-5777-4F2B-8F82-4D073A0BB641} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{3EC925FD-1620-471C-BB71-9B1054D96414} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{3ECB3B22-EB4A-4532-9874-0CBF25C1A741} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{3EEF2B75-0842-4B3F-B86F-6EB62CE6E267} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{3F372D97-9992-462D-9BB1-305BD9991C20} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{3FBEEB3F-A898-441A-AA90-D97FE6660A14} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{4047D3FE-0BE5-44B6-AD70-6ACB5CDE6B03} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{406697EF-5E39-4B46-9D0E-DE46B4BF4FCD} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{40757D94-96A2-43DD-8AB1-9887C77A24EB} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{40D5EF8C-0D43-4668-B19B-A28D383FF162} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{411F5C89-49E9-4EAE-AE27-1051EF24969C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{413E1BD7-9F53-45EF-B927-EAEA08B05A2F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{41760638-F55A-4C46-A654-B4591EC7A6ED} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{41769878-90D7-4B4F-B6BA-11B9646E9079} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{4182D743-FC5C-42F3-82B1-F92D4A5C2C4D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{422EA6AD-F2DE-46AF-A96B-BD2746C62683} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{426B8DEC-34CB-4DFD-97B0-FBEEAAA43C96} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{42724A78-81D5-4FC0-82FA-DAA57F477BDA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{42FA8BA9-5B67-4E58-A04C-BB2363E323D2} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{435E4051-2988-41DE-AEAF-32FF829EA24F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{43DC205B-C12F-4D33-867C-81954E22C622} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{44CC5B01-816F-4BC8-A2F9-89EB8F869BAB} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{4508191F-B003-4124-9ADA-B4C6BBD10A33} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{458C316E-A6D7-43A4-BC43-DB141FDFDA0F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{458F9EB4-DCCD-414D-90AE-C779F8B07DFE} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{45991792-D4F0-4CD5-939E-2705796A9861} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{46265531-FBCC-4F67-B3FD-A84063CA5D17} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{46658353-4DA3-44B6-8412-F4CB614429CA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{469A55B5-70EE-4B53-9E95-40D691E0947F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{47B1798C-894C-42B1-AD57-BA9A8973B5DA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{47E31135-244A-41BD-975F-FCE264DFEAA5} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{492898A7-DD61-48AB-B680-E8A5BB1F5962} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{494E74D3-0E26-4A01-9E0C-07FD9F010497} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{496EA4EE-1B67-4858-8C7B-E9B0C1ADC397} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{49C332C8-B34E-4AC2-B9EC-E1CD4CF016A3} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{49E8A1C3-2EB7-48F5-80D0-7AF7783925AC} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{49EA52D6-42A9-4B55-B6E0-7DD64615FBE1} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{49EA69E6-8D56-429A-9430-EBE53BC06740} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{4B088FD1-FC7B-4F33-8BF6-62D405582BBC} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{4B0D5A6D-1DC1-466E-945D-21A8416D7F9B} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{4B328B01-6318-4594-AA36-5777BE0FDD15} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{4B4DFF66-3D74-4DF4-8D7B-3B96241A6684} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{4B6CFF98-F054-4883-8CF9-70C090A68099} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{4B7386C7-62C6-4A3C-A301-CAA1CBC5ABDD} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{4BD2C3B2-59AC-4489-BCF6-489DC1F88F49} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{4D6AD37A-534B-4290-847E-04123FBDDA3A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{4DF417E7-C52E-443F-92BF-EBDE801C7F17} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{4E04BB84-0DD5-4106-B7C4-230341AC7467} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{4E1552CB-6398-45EC-99AE-41FB2B6BB2D7} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{4E4D6F4E-0A80-4344-AA78-9A62D33FDE3A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{4EA6C63B-92DE-474F-A5B4-3CF8EC0AE069} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{4EAB0A1E-63CD-4D06-AC4A-F7C8A2B63790} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{4F83BA48-56B9-4046-ADF3-A0B36D115B78} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{50378FF0-4832-4D9C-99B8-E7508BB69A01} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{50C77ED9-9758-4D48-A209-B9DA1211DCBD} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{511CF66E-F7BC-45D2-BA97-89A01CBD9D54} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{515CA117-70B3-4395-BC06-562ACC8958D7} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{52104171-9D7C-4C52-82BC-DE462C4F0E27} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{526421B5-9062-4859-9A5A-8EC6421465AD} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{52686DBB-CFAA-4E9C-9337-CE656942D167} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{532DBB20-835B-46F1-ACC7-A99D72B53027} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{53F81CC0-850A-4791-A0DC-E6E7C07D5373} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{55078C94-8FE5-47D6-B682-AD8EE2E3BDF4} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{559AD169-AB32-4E21-8D76-6D3C9852C353} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{55DD728B-2800-4C10-909F-56302F88069B} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{55F54384-5E4D-44B1-9DDC-ED34FE6B1668} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{5686629E-018B-425A-BF62-AE4472CDB403} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{574A8490-B4C6-4C17-B417-0018F6D4AD4D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{5790EBB9-FDDC-407C-85E2-81BFCAFCCB83} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{57CF1E9C-B13D-4AC2-AA70-3571986FA260} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{57DB0A42-A08B-4763-A879-16C67CF04D93} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{5858DE2E-267E-40E0-89BC-2A3C22FC0F99} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{5881DA67-FFE8-4028-B0DE-ACAE10F9BD75} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{58A8109C-93B5-43A3-B5AE-AD0C505A4167} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{598EF613-0B6A-4AE0-8DEB-58E0BFADAA0F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{59FFBC96-F447-4DFE-8E4A-E7BB519D4023} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{5BAA1DB8-9C3F-49AD-8673-2DD08D4BD007} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{5BB4FAEF-6B66-4F8F-8C0D-AF2E5CDB15EA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{5C853176-6106-46D8-8739-2CD8D907B57C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{5CACAF7A-0FF1-48DA-BA91-372616285C5E} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{5CB9333D-F6B4-471D-AEE6-178B2D861134} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{5D309AE0-2FBB-4561-9741-303FF2C8213D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{5D7889B7-7565-4DF8-96DE-91A2F28FC386} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{5D8A10D0-75B0-49F1-8158-03A59AF22661} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{5DEF2082-CBF2-4A98-9066-1DD76DC7607B} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{5EE12597-3D16-4314-A350-9A71334367B5} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{5F33E1A5-AE09-4B95-A4B9-A03735C00970} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{5F91F400-95A9-4F73-BAC3-5CF8A25DFED9} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{5FC92C2F-EA50-4CB3-944F-55FA9A7924C0} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{5FD91DEE-F302-49E3-9835-7508A6201E6D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{5FEEF93A-9FAB-4FE1-B5E0-37F21AA1A15B} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{601559ED-5C7D-4C3D-9846-8EE34C7912BB} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{604FF817-65AA-4468-A091-866868ADA32C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{605C431B-219D-4BEE-A2DB-083CB727DE9E} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{60B1F262-2DF4-4426-9F46-FFD9C4AF7526} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{60CCDE25-D312-41E1-9A64-95E1DEA85750} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{60F85211-7D81-4DF4-8F56-2835653D4F53} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{610B041C-FA55-44AF-B705-E92EF86E03AA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{61851918-CC40-48AF-85C1-3006B3AE3F71} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{61BDCC7C-3768-4300-AAC6-E936A082A6DC} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{62156BDB-CB5D-41B3-AEC3-1F7A45F860BC} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{621A6AE1-BEBA-4F88-8863-A6FA8A7203C1} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6248120D-2450-472E-9A62-24842D290455} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{624D0F61-E68A-4073-9BFA-EA9C89DC6F2A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{62718F98-A7CF-4389-95C7-5A754532B610} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{628046C4-FA83-4FAB-ABA8-E8569B949DBB} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{62885E70-0D0C-4222-A0E3-7D1927515D19} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6298CD38-C807-4459-9A35-0EF42398FBE3} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{62C07A5E-2273-4CA0-B286-9C7D15F72523} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{62EC93F4-6A92-4377-8108-627434B38520} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6300CA10-9959-42AB-BF55-296DF6ACACC3} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6355C55A-6D29-4CC5-97B2-5B7363EFA2EE} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{645B2D66-8B3B-4BC8-A27F-27F5EBE35D4D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{64D3E447-5047-4182-9B0A-E11E4A892A84} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{64D834D0-1326-4987-8755-41E362B4FE5E} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{64F85206-61FB-4F77-835B-87BDCB7EB6DE} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6510DF1D-3B31-41BF-9AC4-15D51DA13A00} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{651AF881-0E53-47FB-9C90-A81DAE0AE0A7} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{65561A46-1E84-4E71-8AA1-94246D55F60E} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{66456FED-58E3-4683-A9DD-6290A306F010} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6665722C-2BBC-4276-9365-3F6CC659569F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{66C74791-58B1-4656-8D63-23683FD2E387} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{66EFC7C5-2E46-4510-B47C-FF495A647F73} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6755B6E5-3A5D-4D4E-A5E0-376FF64B0C25} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{67950CBF-8376-43F4-856A-6CF251803780} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{682A2D10-FFC4-4C3E-BB39-E5905855FB9A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{683133E3-6D55-4A38-AB91-6EAF0B6074F9} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{68D216CB-2503-42FA-8615-E456546F2D21} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6911640A-1EFC-4010-BDCA-95B2E2A996E2} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{69961753-D4B5-45D5-974E-795DBBB81C8F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{69AF8995-3CD5-48DB-9616-F546896AB238} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{69BCBD0C-CF26-492E-A0E1-04E850F8082B} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{69D2D69C-3B01-44AC-B070-D564E8A08EB0} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{69DCDDB4-2356-4063-A344-B620693ED765} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{69DDE6FA-3D16-4D7E-A006-CCFD98A36FB4} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6A75E2CD-0304-4398-95F4-02CD0F910E64} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6AB9D964-D33B-42A5-9572-715C7DA7161D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6AEE9BB8-C4AD-48C0-B5B4-50EFFA167ED0} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6AFF9E2E-F1FA-425F-BB5F-F6A5587962D0} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6B078E81-B84D-4EA3-B8E6-5BBCAD0AA709} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6B2ED2D0-E01E-47A3-8A9A-A145866B747B} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6B8EC789-6D0A-4B2D-B493-91D94FF34428} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6BD3A7C2-E13B-432F-BBFA-30D60A102E60} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6C51619B-2D5A-4621-A2FD-79437F0FE3C9} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6C5C2239-E753-4F5F-8BB3-3D5A9C06EC99} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6C5CF971-E9EC-415D-A997-F63A3580021D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6CEA1699-A5EA-470E-B53C-0A83DDC6C51A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6D70572A-9063-481A-975E-3D06289F9067} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6D8DF437-507F-4EBA-8695-9ACCF54252E1} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6DC085AD-D0A3-44F8-83AB-17CFC2805624} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6E190F0E-A6FB-4D57-B869-D5D71D8E27F2} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6E3413EE-080C-4DA2-A6D4-3F75329DEBCF} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6E3A6104-2B61-46F6-901B-18356712FDFA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6E6D4911-6B14-48DA-A3DD-E0336109C255} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6E7B37AB-03BF-465F-AACA-67FF15D5BD96} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6EB94E11-A41D-4C87-B244-DEE21A8740C6} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6EBEE259-B647-439E-903B-03004E9F7CFD} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6EF31458-B70E-4A53-BB64-0A94527BB6A9} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6F25EE86-68F8-4436-9C59-D8CD8C343EC5} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6F7E3268-29F9-4B5B-905A-641C232775FF} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6F952E73-7F9D-4E3E-B0FA-C616329D9DCF} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{6FCC5273-9C78-4380-9350-60FBA143922F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{70594E24-3ABA-431A-A8B0-1925B50CA1E3} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{708FEB43-1617-431A-A68F-76318DF62768} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{70D8C209-74CB-4619-B7CF-638BFB959082} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{70FC2BFE-2B76-4BEA-8D2C-5FF8273735FB} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{71C60424-8041-42AD-B5F8-D1A01590BF12} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{71E94F2B-37BA-4AC7-9345-AB2337634A78} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{71F6829E-080A-4477-8437-8CD10AB31D44} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{727658B6-8AE5-4A87-9514-BE977D1A33B2} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{72F15657-E7AE-4B89-9AAB-F162D0623A5F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{72FE068B-BD08-4F9A-A647-C2FBC096E800} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{73126692-A340-48B8-BD85-902AA50FA4FB} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{73314ABF-A1D5-4789-BB40-69DF2CAB4AC8} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{738FD676-5B43-4FD1-95CD-F50678D6DF81} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{73BFD734-9F7A-4687-B431-82C8B7D849A2} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{73FC93FB-6EDE-4206-BE89-FB5434DF1A69} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{74568C57-6AA1-460F-8EE3-B97BF61502D6} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{74616AF2-D527-4991-9930-4AB617892D86} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{749761EE-6AA2-410A-B952-58FAF79AF790} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{74E2D977-ADFE-477F-B700-2093A23D2EAE} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{751CC897-ED4C-4E0C-B0AA-8AB5001CB60E} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{7525BAE8-0D5E-4D27-9D8D-E57208E141EA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{75E6D15D-1312-44D7-BB83-F7450778C4F2} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{75FA2526-FBDD-475F-B9B1-3A5273D90C39} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{760D6EAB-4FA6-4E66-974D-6EB4A33B44A8} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{761C8188-FA2D-4E37-A534-F2850C07D7C2} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{76699DCA-C435-4F4C-9F73-F3A8D071F57A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{76B754D9-6152-484E-A685-F2EB262AD1D0} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{76DFA129-C9E8-4A63-8A9D-E66968DC00D9} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{7772F0EF-5415-4A7D-A3F5-A82A7800F62F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{777F12ED-606D-43E9-9A47-CC0FD746619C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{77D24CC3-C806-42AD-88C3-1EE6E3F70802} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{77DAD8BC-EE71-496F-B614-59FEAF8DB98C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{783001AC-E98E-40B3-A5C6-20D802749054} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{78832028-E922-4641-88C5-469EAAC377AE} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{789ABC74-70F7-4DB4-9E0D-4204F4D17B31} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{789FE9AB-3F9F-4341-B2DD-69D372D35459} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{78A9E169-917F-46A8-8A2A-FB56BE9885F7} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{78FBE7DC-6FAF-4FC4-9A75-81684744AF7D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{790B9A5E-D079-4CA1-A766-0CA7F898C1E5} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{793D2B8A-E214-4B7D-91D2-0A6BA4F41F53} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{795143D9-1C93-4F87-9846-6503EC6344A3} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{7A43D513-B18A-4906-87BC-00027D12E3A7} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{7A4448D6-4775-452F-B41B-486CF9199289} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{7A680B34-6CEE-4C05-A150-456AFAE64B61} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{7A80E45F-3580-4A43-BE1C-5EA615BE28CC} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{7AE1D387-4BE8-4BF8-810B-1FE9B044A461} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{7AF268F8-0C5C-4EE0-9C34-42D00DB0D1AE} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{7B03F9BC-0E42-44B8-9552-8169F4762022} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{7B04DA32-7E21-49E2-BA90-932EBDD9DA2A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{7B0CF757-1B25-4A6B-8C0E-ECBEDFAD508A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{7B0E6E7E-5FDF-452C-ACAC-AE45A1E57E90} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{7B2E75A3-BB93-4BFE-83B5-B1439C4FB4D9} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{7B5988BB-2190-4AA1-B5ED-44F21CB21D1F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{7B5CE39B-B15F-4607-B485-5D3E3F992A17} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{7B932585-322B-417C-81DF-DFF172ECF598} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{7C124E17-A8A3-4A8C-A334-4086AEC808CA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{7C75FB31-3608-4494-80B0-79BB385FB160} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{7CB348E9-2B2B-4DB2-AF32-D6ACCF30E71F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{7CDA1563-CFC4-466D-8627-989D2BB9B122} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{7CFA5ABB-6BA1-4459-ADE0-D03215DC74CA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{7D5A4AD5-9D87-40A2-B55A-D4FB6ECD67D0} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{7E864B68-537D-427F-B371-961C5C601511} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{7E9F7421-971A-4C63-8A0B-0346B3331060} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{7EF88285-2132-418F-9715-A9986AB853F7} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{7F07B985-A13B-42BB-A949-0D5F8B3395A0} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{7F605EA5-ABD3-460F-860D-8D7F76C99257} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{7F67581B-6F5B-4774-8854-3078860185CF} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{7FBCE997-E10E-4455-848C-22FC395E6977} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{7FDB5A5B-D318-4E26-83F5-521ED100BBE4} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{8020D43A-AB4E-442F-AEDC-00785B86D24E} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{804C5010-2CBC-44D3-B8AD-F2B0EAA0C6CD} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{8087ACDC-929D-4405-9116-BB4F1819F483} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{809E7D17-404C-4048-AFE7-B3F227E6E8A9} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{80D35420-E996-4FEB-9F24-9A5EA7369CC7} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{80DF3B35-F379-4521-8401-4E0FFB6CDACE} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{80E0024B-428A-46F9-AD34-D247BED40E0E} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{80E4E6AD-CE3E-43B8-87BB-7954E622609C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{80FAA663-E62F-4C19-AE50-4EA9F220DDCA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{815B21FA-79F6-497A-8051-28DE4FF89900} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{819AE580-D454-43CA-9594-6213273EB520} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{823B60E2-6997-44A3-AADB-B141BD465ECA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{83356C7D-FB41-4F32-A760-5CC68987DD72} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{83418AA2-9BB0-4E18-BFCB-6234695F8F98} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{83989AF4-69CC-4DF1-9AB0-E773077EE21D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{83B61121-EEAE-4E94-A475-2B1C8F9132F0} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{83EC3BBC-1972-4B65-8187-57D28761FBF9} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{83F3C795-8E3D-4956-9A5D-2C29B7E14835} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{8443923B-3D02-49D8-AC3C-32F198387B94} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{845F4D92-F8DC-4611-9BB2-2A21114AEC0B} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{848CFE7F-6401-4684-897A-86EA06D4439C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{84B51F0A-2D8F-443A-9D4D-FC3B4639E3AA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{84EEC571-04F9-44ED-A0A1-E24F646F660C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{850F58D3-7F8F-4560-BDF6-8A71D2D5934E} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{852B5D51-583A-4C12-B809-90BD2176E972} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{854668A4-4055-4F45-BE3F-8BC8F88850D3} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{85A72175-7852-4942-910A-DF02D0137DF5} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{85DA70E8-D684-4BE9-AB74-3FA530AE292A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{866161A4-3031-4A92-B41D-C8C5991FCF35} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{87458F8F-A7BC-4775-96CD-24E319877CAA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{8747330D-9E1D-4DC3-851B-1CC2D24120B4} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{8754E06D-CD28-4104-BAF5-F8C0B713B0B4} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{878A941E-394A-40AF-B24B-8004B39FE4D8} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{87FE5FB4-A4A2-4D95-B3B3-EE552DC3B7A9} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{883C93B2-7D48-4D92-B7B7-00EF13B0FBDF} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{8868E8FE-82EA-4170-B0F0-B570514CAE9C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{887CE299-D519-4404-BFF5-B0EA7FEAF30A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{8886CEC4-4F01-4594-B56C-3680BBC58F4E} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{889680BD-A98F-4CDA-8AC3-CE117EE4F683} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{88A22AAC-1EEA-4816-AF8A-AE03FC08FC52} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{88BA506A-17A2-4357-BA4A-E5F2385B1CF5} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{89221042-9717-4E33-A7D0-1833FF475323} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{8964C5A7-F932-4EF7-9B6E-274DDDC2A4F6} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{899514DA-2683-4B66-8A4E-81A86C658D38} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{8A47BBC4-1FE7-42AE-B53A-02EEC46C3051} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{8A7AE667-8972-49E4-8FCF-C5E27A7CC0F2} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{8A8AC765-9B4D-4B9D-821D-A4F4624E5733} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{8A8EF39C-007D-470D-BE51-30574293CBE7} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{8AFAD732-37EC-4B92-9A75-1900A5E70932} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{8C3688B4-E521-45C0-8EC9-2011E791BADC} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{8CF35D49-98FA-476A-9414-F1D9D775433D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{8D792EBF-8DFA-4B45-96CF-F3C058D6FC1F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{8D9C86A2-C1DA-432C-ADCA-E74A676DE8B5} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{8E1F31F6-D71B-4DDA-A729-6957751BD041} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{8E7743EE-5194-4693-80E6-17D054B13F81} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{8E79DBD0-0897-4503-A4B1-E0C83E8DB898} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{8EF8AAB6-81CE-47A3-B512-0C3AD88AD4C5} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{8F1C81DD-3A41-472B-B340-8E175C6D2FA6} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{8F5614AB-1EB7-4BFC-B68E-9AC2D1FC48B1} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{8FE1F205-78A0-4E9B-B151-D7E111A6F086} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{8FF59BDE-B212-408D-B194-D36972B0A1DC} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{9001B6B3-8BD0-450D-B462-828F26731F5D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{90048A49-2C57-4C28-B4CE-78791A940A08} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{909976D5-DA35-47C7-8774-1BE372447F38} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{90C95010-27D5-40C7-B47E-C73B9A0DBE0F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{90DAC37B-5CD7-44BD-8F50-1AE249553BEA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{90F3E479-0E67-45B4-9A0B-1939B2158E38} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{91EA82AC-07C3-4E7D-896F-69D599275CA3} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{91F945B2-9ADC-46D1-8844-114F5E568BD7} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{9232B7C7-2D44-4979-BA43-BCF9252FC36C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{92499000-1356-4304-B652-C5F3A265D035} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{92659CAB-A365-4EFE-AA57-99255FE98CF5} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{92861531-9DC9-46EA-87F2-5EB934B98849} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{9294E1D3-52B7-4D29-BE69-76770E2309A0} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{92A3BAC1-BCCD-47F2-A268-D0F153CACC07} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{92D90D28-D0E9-49E9-BF0B-666FBD07864D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{93D2DB22-9B98-41E8-9F9A-D243FA2B2420} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{948C2CBA-9A83-445D-A3C2-1F7D5ECA40BE} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{948D8862-E3BF-4CAE-9D05-27757C9C2FA3} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{94A30740-C74F-4D4B-A6CC-978BB76B2BFA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{94C4C92E-5445-4698-8AFC-4CE730A83F5C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{94EC9C29-E9F0-465A-88F7-C97A72CCD366} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{9507A021-DDB0-4FCA-BEFF-CC2E1E447B85} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{951BC887-3F88-484B-9C59-A627FA65EB9A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{9535BC31-E8FB-4EEC-B761-A320E108CFCA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{95840C26-13B3-48A6-8BC9-38302EBC959C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{95D4F4EA-99EE-4A57-BB11-F872E8B40D4F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{9603093A-A6A6-428B-80F8-E6C2407778F7} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{96102282-1EBE-44EF-AE16-EE29974B9113} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{96E0D8BA-DCAA-4E13-B876-9EE5D9AB73C1} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{972906B3-947A-41C3-BA09-95160C4A649F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{975465D7-30EE-43D7-9F95-43EBF7CB4CD9} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{97717220-1214-43B3-8491-0C21747CA0DB} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{979823D2-FAF9-49C3-A69E-98ACFCFEB3EE} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{97D5049F-735A-43BE-BC28-F484CF563849} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{97E1C42C-E9AD-4D6F-BC3B-3EF4F439B39F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{97EA8B04-DD98-40FB-95EA-736C56ABF9D7} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{98474B3D-916D-4B74-A3E1-5591E65ED5B9} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{986582CD-43CF-4D35-B6BD-55314B21DD82} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{994250DB-2409-4C90-ACFD-9602902CE5A3} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{9A3AF243-9F56-49F9-BB2C-BF90CB5F3DD6} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{9A5F0BA6-CFD6-4FE6-BFFE-9B102658AA07} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{9B27F4EE-1BD2-42B3-857A-78D09C8162DD} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{9B702AD2-8733-434C-8ACD-EDF2964E0EA3} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{9BAD81C7-6415-4766-8EFF-2ACC383172AA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{9C0E3014-25A7-4A70-9BB9-B58251C5612E} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{9C8B1EC9-C26E-4C2E-AB94-B12FF5F4BDEF} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{9D049848-7629-4DFA-97A2-965E91D0734C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{9D74E8E6-B611-4858-9362-D5ACDE1E10FB} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{9DA71ECE-6D83-4C8B-B934-A9306010571A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{9DE39A60-475F-44F3-A7A5-DC28DBAE6D68} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{9DE78404-D76B-4247-A2B2-E3ED7FAD007A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{9E528AC5-A2FF-4A7A-890A-EF56495367C8} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{9E72ED7E-E610-4C61-9368-BB9AE210CDED} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{9E7F3B0E-93AB-4130-B44B-90EAAE54E43F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{9E99C8B6-9403-492A-A696-C4000689AC83} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{9EB9D949-A5B8-4D52-90DC-9662A887F27C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{9EBACA90-4706-4C2D-90BA-03D027872ED2} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{9EC40726-4E72-43B0-A528-F1BA809193C7} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{9ED89C9E-9416-4409-9574-C518D26B4759} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{9F38D303-AA28-4782-B3F8-417F288FE4F1} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{9F3B32BB-F1F2-4E1C-8E1F-DF9AD5F8649B} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{9F514A92-D62A-4AE1-BA5C-CD8D63F753FE} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A034DC14-3FE0-4B29-929A-C5F66FE27C07} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A08C66E1-18E4-4CB4-97CA-DF3450DD2CFB} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A0BAA86F-F405-450C-BD9B-816A1421C418} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A1351A20-76DE-469E-9EC6-FD5D41FFD9AC} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A1971A24-D972-485F-9663-2C8B8C37A158} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A19CF7C2-14FF-40EE-B364-CD3B86B65609} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A1DC66F8-FB13-4A88-B8BA-F270C7FF3279} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A2816DF2-559C-4A44-AC32-1017A944FB48} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A2A7CD4D-7BAF-439E-AC2A-5A78D42AB68E} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A2AA394C-D172-4DCA-8297-58D3FF6D0270} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A2F8C9A1-416D-428F-AD85-DFC2A3D1B93D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A443D63D-A792-4A19-B7A4-A03EEA7BE9D5} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A4493F21-C8AC-4665-B12D-455FFF8AEEEB} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A44A7992-E501-4739-9BF3-4524841D3D83} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A467F1C7-E20C-4884-9FC7-DCDF6E6992BB} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A4941090-CEC1-4D40-B27A-19149E6C9E2D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A4AE4660-6DD6-4C5A-BF41-E6B1532A317F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A4C4B389-9F0D-436F-8C1D-74F5893D09B0} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A4E91D6A-6204-4214-B026-4FF4E0117C25} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A50F0D43-FC5E-44CA-A309-A87A51DDBC06} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A55B5AAD-74E5-499C-B515-6DC816028D0B} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A6AB092A-98D4-48C2-AAFE-8F04E6EADFC3} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A70C13FD-0FB4-433D-AB2B-2C19F627AB66} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A7420D74-4137-4EB4-B86D-0129354F3AAD} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A79CFDFE-63B6-434C-AD02-96D10DDE40AF} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A7CD260E-7BAF-4FB1-8A9D-790D1C4042E2} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A80FD281-7441-46A6-AC7B-3D38FE645B67} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A83AC01E-B9E0-4C0D-8ABD-DEEA5BF44445} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A845C8CF-F2BB-44F5-91EC-577D1105D283} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A86853CD-3FF3-4DCF-947F-4E20DB0CC40D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A8D6773E-14FF-4214-ABE8-3A98BAAD8856} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A8D72E12-A2D7-41E8-A0A5-3B7527A916DB} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A918D4D3-2D10-4791-A608-0B3A91BDEB98} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A9648838-5F43-4E5A-9317-6EC0CA6358EF} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A987909E-ED5F-4FA3-A256-23703A5E8646} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A9E0DF05-75DD-4024-94BB-6785B51DFB8D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{A9ECEE26-1105-4AD4-B974-2A00A9135D47} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{AA1D20AA-4BEA-440F-BCD4-24CBB9E8A794} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{AA475CD0-9332-44B0-B3FC-A8E6E7A50C89} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{AAA3BD90-4519-4705-ADE7-C9E2280F2F26} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{AAEF76CE-91B5-444A-ADD4-CE17541177EA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{AAF56E7E-8DB6-4DED-9286-8338770454D7} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{AB2CB4E0-3F9E-400F-95B0-CF33D9314CFA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{AB53BD4B-C551-4F19-ADDA-99F9AA57AD56} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{AB681CA5-FB5E-4278-A1E2-DD75594D6CDB} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{AB6C0FEA-A694-4E7E-A608-01FAF32D001D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{AB723501-98A8-4971-88EB-2D54670BB3D6} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{ABF40AE9-EBD1-4596-9E94-7DEF9F8A3F6C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{AC4A01C0-B61B-4D6E-A239-3530BC3062C0} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{AC52A0C3-0725-490B-9C4D-AE3CB381FD45} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{AD1E3B74-171E-4849-A85F-016AE8A361CB} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{AD3372CF-A41A-44E3-BF38-57960B30777F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{ADCFD167-D04F-4F65-B025-B72B71C819DE} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{ADD2A7B7-0068-48B8-9592-50853906BC42} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{AE003785-BAE9-485C-9801-CE751729695F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{AE05D50B-4704-4270-9BCC-0708AC9EA4C8} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{AE122C68-9EB9-4C60-8CF7-24B4B278A400} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{AE930DD6-076C-4DD4-A871-2DE417BCDDB1} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{AF2A4727-D200-4DC2-86E3-85106529A42C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{AF49864D-F7E7-4596-A408-ADC88ABC43FE} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{AF7CDFCB-56CC-4CCA-9F47-1EE0CB61E8EF} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B06FB680-C770-41BD-918E-3B42587BF467} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B0ABBD46-8308-415C-84F0-0150427D4929} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B0E0EAF8-47E7-4086-BFAB-781BC58402BE} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B11304B1-5972-4A28-A430-545DD5B86E0D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B1AF1D5F-F9C2-4324-94A4-60C43549055C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B2422179-4B23-470D-8A04-BAE9FB64D19B} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B271FB85-C418-4ECD-B68C-4F7F222AA888} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B2EA175B-2468-4A6D-8888-6268BC7B881C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B303E725-6265-4924-B867-DB41E6928487} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B3177EE6-F0B1-4C37-898E-F6FAB4ADA166} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B322ADEC-1A6F-4754-8C38-9BF613CBC15D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B326A11A-CF82-4380-82E5-A15F85B7F3ED} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B42C15B1-D16E-45C1-B4C3-EB9BCBDAD6D7} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B42DCC8B-2F83-4E1C-8767-A1C4FB5DCC91} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B44DE49F-51D3-47F7-9BD3-BF732B041F86} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B474F0D3-6C8F-45F8-B75B-9D7E98AA11E2} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B488FF6C-B0BE-448B-ADE9-7346009D08F2} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B4DDC24D-88F1-466C-8862-70F8C030CF92} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B4DE076C-A6B8-4F46-8DDC-F5A728111C79} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B524D82B-EF3F-4AF4-A44C-C6C9E3BC4386} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B529399A-7F2C-44E4-859E-263DB78EFF97} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B52C6BCA-3B7F-4016-B715-98D081C02CC5} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B5387C96-20E3-458A-9A87-D8C7EA03D89F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B5A3F2E6-FA92-489F-B06C-0B0805F618F5} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B61A7281-60A6-44CA-814C-29EA0A83768A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B6506232-A393-407D-AF54-6205E4E1C992} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B66D80A4-4179-416A-848D-498A493CBD75} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B678019D-8D59-4817-991B-8553F166E558} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B6B1373E-36BC-488F-84E9-0D885FDE8709} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B6E82C2C-ED19-43D1-92F3-C39763E4BD14} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B73338CA-0BDD-42B5-96CA-08AD7CD69171} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B734361F-8318-4878-9285-D9BC50BED404} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B7674CC6-2C1C-4079-8436-2DF7A945AC60} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B7785672-E3ED-46C4-9B26-1DA987BFD481} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B783E732-CBCD-4AFD-A895-73355936B3F5} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B79C91EA-0817-490E-A584-2937C077CB9B} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B7A6F5D7-F19A-4878-B74A-20F2A5C2CB35} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B7A8664D-2F6D-49CF-A070-41AC3928C7BF} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B813BB04-4409-48A3-929F-FA5BA98E163C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B86D997E-FDAC-4B80-BEEB-344D248AF8BE} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{B8F274D5-C2C2-4AFE-83C0-D2ADB116CC19} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{BA62D574-95E2-4D5D-81D8-5E7F544D64B0} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{BA6CC538-DDEC-4559-832D-6C193AE8E4BE} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{BA746240-52FB-4B52-AB63-5149B67E6FAF} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{BAC1451F-8691-4722-913B-A1BEB0330FE7} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{BB0EE0B0-4B6A-4BB6-96B6-9A40C9F69CBD} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{BB2F825C-47FC-4AE4-AAB1-A05BDD9912FC} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{BB86080C-2183-42D7-8DFB-C8E290F69A97} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{BBF0F365-CF53-4A50-9769-2C146EDA0D17} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{BBF702D6-677A-4239-BC0B-4C86EC5C94E2} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{BC3F99DF-0E3F-4D30-BE22-96698E451A0D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{BC6408FF-FD7F-4E9D-906A-2E63E565AC90} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{BCC9F4D6-AD6E-4284-B7F3-FFF16CEF1943} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{BD319947-0A4B-4ABB-AD8C-D52473080BBA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{BD330971-0934-45A4-ADB8-AA1490F10410} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{BD3EF7DB-3580-4263-A476-591E2864CC6A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{BDA95CE2-3AD2-483F-A9AD-CB46160B4BB0} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{BE337475-AB66-44D1-BA80-D37D3AEAB633} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{BE5EB73D-1D01-4401-8498-1076E03CDF6A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{BE8466EA-CBC8-40FC-8476-58BB55A9A1E9} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{BE90638A-429A-436C-9629-7BCFB72F2A43} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{BEAAC85F-7C82-4C00-82E5-E9807DD1C133} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{BF5803FB-BA31-4502-8A33-CC081FA4B16F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{BFA2DDCF-2E53-4735-8808-96774DB5846E} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{BFA5796A-0034-4B30-90B5-AB1D1BDE3B16} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{BFF88A62-C65B-4CC4-844F-82D83DAC76BA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C01F2E84-9431-4405-B856-0B7960EF061F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C0A500FC-BC17-475D-A070-B3E979941698} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C0B3E2E2-DDF7-456D-97B4-D0C012E74D18} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C0C50FBD-C17B-467E-A9F0-845CAB1731B5} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C0DAF802-9832-49A6-9740-B3DD78CFAD9F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C0DBA16C-DC8B-411F-9F91-B31E14E668EE} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C0DBB9C3-339E-4EE4-B49C-F54A7036BE4A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C0F8DAB0-B305-419D-A226-4B0792CD3DB0} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C10563DF-39EE-4D57-80F3-E6155BAC0ECA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C113A13A-58E0-4B86-A332-852BF62DA18A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C21C9457-E1A0-407C-BBC6-CE5F71ED6AE1} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C28E3492-51AD-4AF5-B0BB-A97CE8A83225} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C2D1DB28-EFB2-41F1-AC10-D9EACC01CFFC} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C2F38640-C854-4B97-B25F-8AF5FB01B7BE} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C300869D-4E62-4884-9701-03B46EEA99E4} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C337F715-FE51-4A4A-8B7C-DB462981A0DB} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C36C3CCF-65D1-4F68-949F-302CA0D8855C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C3B39956-2311-4B18-8464-D51E2C3DF9D4} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C46B5636-5A8A-40A8-BBEE-75D43EBE321E} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C4A0CA17-917C-4396-91E3-7BCDB0576208} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C4C07953-9337-4461-AA79-A5F8F9C821E7} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C5123ED9-3A26-4229-B9F6-CBC870511DED} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C53BA397-88C0-4CE2-9BF0-377431D572D8} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C5900832-BAC9-4D1E-97C8-A4D4F68A145D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C5B7E85F-1B04-4402-ABD3-75FEA44E09AC} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C5C0C525-F2A4-4BEB-B9BA-99B052FB8B60} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C5CE37D3-8850-4DFC-9F88-AC384894B8B1} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C60719D2-7F2A-484B-B891-EC7B0BA41A63} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C62D1816-9820-4FF2-846A-1443FD514961} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C63D8620-97F2-4894-9F21-9DA82012FE0D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C6515546-F7A1-45AE-9F55-BC409FC1FA26} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C65EA6E0-E9D4-4AF8-9716-E2DC8A97056D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C7109B87-1F85-44DB-B048-475C7039FD15} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C7558C3B-69E8-47AC-B18D-2F9EE00F7078} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C76A23AA-3DD3-490D-9A0C-7C6B041F016E} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C77C6724-8285-4965-B633-3D80826DF817} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C793D6AF-5F58-4F78-BC8F-CC4A4B91058C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C7DDFA82-3C36-4834-9570-4D1740B51B5B} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C800C12F-634E-462B-B415-D8BC5D09D038} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C8208A74-2EFD-46F0-B71D-7428593C4B32} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C86D4C65-1002-46B7-9F19-9A1D3C596BA7} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C8DA8C11-AA8A-414C-96AD-B695B3C0BEE4} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C8F238D5-BF24-4839-B109-EC3FF7C0B307} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C94602E8-363A-451F-BAF8-767C5C008FA4} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C95AD511-977C-452B-B096-E8FE9CDE42DF} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C995EC12-09F9-475A-AC56-E2512CA150D3} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C9A6F4F6-9604-4D6C-A0E3-AF5BD3338B7E} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C9EE052E-E88C-4A92-A552-DF22AEA6394A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{C9FBD32F-FC37-4575-9A8E-9F0A795B7019} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{CA054B8B-1C6E-4E38-A250-D5585BA0A23D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{CA568DE0-FE1A-46F6-80E0-309BAD8951AF} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{CA8A3673-D3BA-4AA2-90CD-6957C7AFAD06} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{CAA4F20C-A84A-4C5D-AA5C-A104DD6BE1AE} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{CABAE470-4389-4BC4-BC18-E88F2D646B29} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{CB074BC2-2EF1-4394-B105-8EA18C54439A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{CB67A27D-46B7-4FF8-9E79-1C42A8D98A51} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{CB9AF1FA-0FCD-4809-9481-85FA0D0892AD} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{CBDDADD4-D6C5-4822-82B7-46E43B7E3142} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{CC0AF552-5EF4-4976-8975-ECD2F144585D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{CC327B80-61FA-4F8C-93FD-AD622E212A82} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{CD130E01-7FDC-4322-82B4-5A08D03C9704} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{CD66C486-AB00-4F1B-B0D1-DFC0ED3D7FC5} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{CD817938-F047-416C-816B-245C0905B6AA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{CD8E6F19-1690-4A7F-9808-9D7453868136} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{CE59E7D8-AD0F-4737-91A8-A425A5E663F9} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{CE649A62-1200-4132-A02D-0FE4FFAD1489} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{CEF41757-AA60-4963-9626-C1B528D6F680} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{CF0E38BC-5564-478A-BD9B-D62B581E1BE9} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{CF207BBD-215A-400E-95A0-9E3BFD1D61D8} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{CF7A715C-F975-4E38-9A84-1E640BF2A985} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{CFC4B391-EB2F-4F6E-951F-4FFBF18B4F57} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{CFCD5B33-2FD0-47AC-BCE6-143719ED209D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{CFF308A1-477E-44A9-B5B3-8E8AA56F2AF5} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{CFFE24DE-04FB-4794-9D77-615A1DBD2576} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{D05905FD-C18C-44D3-8F7D-82F203B622A4} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{D0B8A017-BDA4-499F-AA51-9D5B45932AE9} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{D0F3E1B2-CBF4-46F8-A128-C301799E9D9F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{D0F90F28-98FD-48D5-A92F-968535E45026} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{D18746A5-FABE-422E-9DDD-DFF5F3061983} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{D1C5AF29-90AD-48FF-8A1A-083F9B4F0724} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{D2C6CE25-FD32-4CD0-B65C-10115A034500} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{D30A9BFA-4922-4D4C-9CD6-00D1C41D5257} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{D3245661-6A2C-4899-BDC7-7E43E0F072B8} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{D332ECC4-A40F-48C6-974E-CA0F020994D1} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{D36889E1-F9EB-4495-88E3-6C07B98559A1} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{D3F83DF1-E636-4FD8-B14E-60408C21F23B} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{D41DB283-6CBE-4FAB-BBB0-F9D2564E31F7} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{D5C64D3A-1543-442A-A9EF-69787FAE42C6} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{D5FCB4D7-BCD0-47F6-87B7-5F41A6415743} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{D61EF23F-92AC-4898-88FD-0AA480C80654} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{D63E036B-9473-477F-8058-699E8323C7F2} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{D6CF5E47-1EA9-4617-92A8-8A9AD013BF03} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{D6F67D30-DD75-4BA6-8AFF-C125FF3A2C39} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{D8D06F7E-7419-40BA-8C98-8B43828E35A2} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{D8FB1F70-75DA-45E7-A8BE-7884CE12D12C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{D9034E76-5315-4E57-AF8D-D97EEFED523D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{D91A51D0-F153-4152-9AC4-0502DCFFB9D3} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{D9FB7FC6-917A-4196-96AD-A138AF0C1FEA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{DA2D36D8-8E73-4A41-9FE6-75AA611A3104} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{DA56F490-1F58-425F-95CF-EB56403942E0} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{DA9F0CD5-FDE0-4CA0-BC45-142E471497AD} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{DAEC9C3E-A6F0-441F-8131-529E60F1902C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{DB1E2908-3717-43A0-9F4B-4927F17596B0} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{DB7E38E9-337F-4120-BD93-1C1E7E21A02A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{DB927836-DB26-4278-B0A3-064AF18797E6} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{DBBD9DD9-FB65-44F0-B2EF-281DB9B3F555} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{DBD692FE-DA1B-4715-A683-03C1100868CE} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{DC036AE8-C764-4C11-9F74-476E5D882C4C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{DC318021-020B-41A7-9293-79E5A27CF33F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{DC567226-330A-456A-A956-F70A3202DCC0} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{DCA77519-F3C7-4615-8641-A3EEEA34C235} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{DD6B8DDF-41BB-4061-AFC7-3A279538270E} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{DDBB3A34-5F26-496F-9456-9E64F5FD79DB} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{DDEC9082-A797-40F8-9C52-6C4F6B5683B7} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{DE2C0EDC-4A55-40AC-82EC-A60E5BA566B9} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{DE345246-F7CE-43C7-BA2F-7652DE8EBD7A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{DE89298C-8FA5-4472-A3BA-4CABB2C289FB} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{DEF117D4-1E1A-49D6-B1AC-B5E23172FDDA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{DF0B62D2-3964-4971-BE5F-108F9430D489} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{DF0D0244-8CCD-4FA8-9600-CC9B77396767} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{DFFBD73F-A055-4D4F-95B0-948EFD08F299} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E007D5D8-DFBB-43CD-9028-AEFB74984309} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E019B39F-7960-4878-AD12-384A68E1688A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E060D60F-FE43-49DF-80B4-B9D19FEB6609} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E060DE4F-12D5-42B2-B560-362A9775E650} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E0CBCA4C-DD56-485F-A3B7-20741DD2A409} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E0DCB674-3071-4D1E-A4E9-BEDE4837D551} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E16F737C-0D38-46D7-A8DB-1636219C1CD0} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E23A88C1-A6E2-43F9-8E16-78EFD2A23442} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E2647BFE-6A22-428B-81B5-D208743DED4F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E2F74CD8-D516-4723-826D-3EFB892742C1} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E306BA2C-644C-4415-A849-AE134262E008} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E3134D9E-37A8-4979-B20A-3E57BE69BA57} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E3A854B7-2390-4FE3-8E93-C631D6D896DB} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E45336F4-D1F8-4FCC-B52C-1FE632B0A23F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E4851450-BC66-408B-9BEC-6733271D01BB} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E494A282-A290-47D2-9DC3-9DF39CBEBA72} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E4D4BF01-9ED0-4AB7-BD24-962F8ABA8509} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E4EF567D-45E3-4587-8E65-8B6E8D941681} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E51A7DBA-270A-48FD-9A6E-8086E9584EAA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E5228E81-5C1A-403B-A5CC-8773DA764A73} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E52688C0-E12F-4976-9A05-F929E21E1E02} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E57687BC-FC48-4984-954E-E92F02D44B7E} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E5916D28-97B8-4A2C-8E08-9F94D698AFC4} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E5A1FE95-AED3-48AB-97B7-BCFD6FFC26FC} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E5DFA341-48F7-41EE-BC51-BD9CAF588049} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E5E0A283-FF16-4F6E-8FFB-3B90A0BA1F51} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E61260D3-1530-41A1-945B-31430990C9AD} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E61B1B4C-7B21-472F-8744-D937431F61E6} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E62885A7-A12C-4F82-B73C-F19D3363B135} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E62A9938-87FD-4EAF-9454-525679E93E56} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E62C626F-0427-43A2-A183-15D64A1907E6} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E6D0C694-E6E1-4234-B3C1-3C6D61531E9F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E7408B19-7411-4768-AFA7-E457123F88CC} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E79BCD8D-6AAD-468A-8DEC-5F95C08D0AC7} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E7DD1362-F185-44D4-8288-6BA1919EDDF1} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E7EA338C-E36A-4DD1-92EA-DEBD40F075ED} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E841BBDC-8105-4F18-B396-71525A467583} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E860EE4D-3A9D-4BBD-B101-FFAF7D246CE7} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E8A622E4-FA20-499F-802E-F889FD529DC1} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E8B198DB-1074-49E7-BBCF-CF41D5BAF7C9} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E8D04DA0-97C7-4864-8BBC-344B1D3FAEA6} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{E8F6C1E6-FD21-42D6-AC51-22495862F24A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{EA1C4DB9-07F2-42B8-91BF-6CD302CC3260} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{EA2B3F3A-5377-4CFD-9E58-70D898F1C4FF} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{EA30BCAC-56D3-42D8-93FC-AC07D5C4414C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{EA3AADC2-25B8-49CE-8CFF-15ACEF57A135} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{EA642EB6-950E-4F4A-9F24-A6E41090BB93} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{EA927202-2EB3-47A0-8A9D-7D5B26CB1E58} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{EAA1C8B3-9F19-4BF3-B47D-520558D1B2F7} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{EAA2FBCF-0876-477D-BD83-7C449B45D396} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{EABAE15E-3227-44BD-86D8-1119B3F39ABB} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{EAD958DD-3281-4DC3-AC74-75192091B498} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{EB0A9069-094F-4F3B-8D76-8A552365E4B3} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{EB239C11-D1F8-4F76-9D36-63AB97A8A8D5} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{EB2C06EE-CAF5-415A-B3A0-FB3A53262D63} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{EC78D299-F69C-4294-A067-AF5C05832E94} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{EC810ECF-C860-44B0-8198-0CEE257AA148} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{ED78E09B-B022-4300-A5D1-C6555B78E146} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{EDB582B5-92AF-4BC0-B435-93A2C17634F6} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{EE20ADB2-1361-46D7-84C1-6295FE7F33D7} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{EE7DEA76-A1C7-4150-9DEB-0BF254793644} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{EEE55F8F-BC98-408E-86F6-61757006F596} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{EF166F92-5FC4-49AC-8DF4-1AAB4F137E19} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{EF2034E3-354E-404A-925B-5E1D9E53E237} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F015C7E9-3E2E-4BC5-9C9F-F91ACE388687} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F016F85A-FC5B-4E24-A1AC-72EDB5D41702} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F044BF84-7072-44A7-8B2D-CE4D0B72E8B0} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F0718B3B-6F78-45A2-AD34-54DCDBC32CA4} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F07B2E11-7CBD-4482-84B0-C29C57CFB02B} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F0B28AC1-3DA8-44C5-AD7D-00C23675CA8F} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F0CF8DE6-F454-441E-B1DE-AF5AD8DD847D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F0D29EED-8B81-40EF-AC19-3D4718B5D0BF} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F0DF2DFE-B8E0-4A93-89E0-565A089911C3} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F152CEFE-6EAF-4F05-A536-6C32BCFB48EC} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F21903D1-9AED-4A5F-B7D4-458D609E5B50} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F234B259-6F61-445F-A684-D9BDCCEB4057} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F242CACC-DC25-4EA4-9E02-F97C471608CB} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F2A70AFF-8D00-4721-A7B6-A47FA4023940} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F2B82558-A43E-4FC3-B63D-3104F7991CC5} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F2CB79D3-2280-479D-9F8E-65AE309F9F2D} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F37DFA4B-C5E0-456A-8029-1D509B648857} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F39619E7-4B7F-4FC8-A0B1-FFAC2C9776D2} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F3FA9B03-11B3-42D0-B918-6E5FE1A5AE56} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F423DFBE-9616-4D7D-9892-CC0E1F922BA6} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F436DCB7-A0EA-4C7E-AFFD-66EDBD391C10} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F44CDB43-D897-4F6C-869F-75AE5243F94A} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F49CB518-2CC3-4D68-9F1A-ED997542D5B5} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F4B0C1C1-F8B4-4138-ACB4-E3B3108486C2} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F4C7B9ED-F7CC-4D2B-BF6D-F36689F35674} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F541E096-3A7E-4B20-9D2B-3128DCF279D4} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F55F516D-8F08-4EA5-89BF-46B8E4C425E0} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F5690BBE-1D8C-445B-8B91-290925FD1102} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F595F61F-FFCB-4E9B-A136-6D432BE38EFA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F597F3D9-E553-4E01-9010-27BC99B8DA1B} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F59ECB76-EAF3-4CB1-9549-137E6C5B3681} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F65FBF02-E358-429F-BDF3-EA690F8892F0} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F66E39D9-3A4E-4B8A-A247-A37B01BD07CB} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F6955872-6954-4D2E-BECB-7603D80AABD1} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F6A7E9E2-ED6F-4AA7-B69D-8315A936A609} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F6B55790-8927-4A91-AE61-D3B2534531B5} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F746FBFE-061F-4411-AE52-7FB37F0E2C68} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F838BFC9-3E16-4520-865D-EA94DABA6C10} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F85ACC89-F3C3-43FC-869A-E356FE3FB45B} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F85D2045-73B2-43EA-B405-F25CA85827D5} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F88C636B-DB21-4C2A-9E39-9C45AE3B74B2} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F8A63E9A-0AE2-46A9-ACC0-56A39E71D759} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F8D0B1B9-AD07-4729-9E02-155795F8DB81} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F92B89E1-EFDB-44FB-BDBF-5A61AFC8582E} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F94C28E9-4B4D-4B5D-8B6C-FA360D7ED9A7} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{F9AE4438-6E33-4AB3-B90F-02B97A97E629} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{FA68D016-D261-4469-8564-C4494B403514} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{FA9AC274-60AE-4D4F-B748-FE46A7AB9652} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{FA9CEC60-B0F0-4A98-A497-F7CB87811857} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{FADFE0CF-4503-412C-AAB2-74A5C7E773B1} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{FB0CAF44-CAA3-49A7-8AE9-9CB6D1F8DE56} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{FB17BA06-0432-40EA-B8B8-64E22575C0EA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{FB1F1427-855B-4BAB-9D32-E830772D3B63} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{FB368906-7AE8-4E7D-A4C6-1E004658AEFB} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{FBF5C126-D335-4662-AEB0-C03880CAD2E5} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{FCE3E178-A368-4D92-A59E-2D937935F5AA} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{FCE5AB0D-2B7F-43CA-AC3F-248A768DB63C} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{FD27E537-1DF8-4673-8912-C40C14BDABDC} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{FD5E32BA-EB18-423E-A0DC-96A8768FD3A1} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{FE074C17-7477-4718-933D-C952E3011354} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{FE75488B-DED4-470A-95BA-63F4509C1533} Successfully deleted: [Empty Folder] C:\Users\Jacqueline\appdata\local\{FF4B966E-2E2B-485C-824D-F5B52B54586E} ~~~ FireFox Successfully deleted: [File] C:\user.js Emptied folder: C:\Users\Jacqueline\AppData\Roaming\mozilla\firefox\profiles\o0pihqt3.default\minidumps [296 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 28.09.2013 at 20:47:32,34 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Ich hoffe, ich bin die ganzen Viren bald los!! LG Jacqueline |
28.09.2013, 20:06 | #7 |
| Virus: getwindowinfo & amazonicon & giga software Und noch zu aller guter Letzt die FRST: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 27-09-2013 02 Ran by Jacqueline (administrator) on JACQUELINE-HP on 28-09-2013 21:03:09 Running from C:\Users\Jacqueline\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\system32\atiesrxx.exe (IDT, Inc.) C:\Program Files\IDT\WDM\STacSV64.exe (AMD) C:\Windows\system32\atieclxx.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Samsung) C:\Program Files (x86)\Samsung\Kies\Kies.exe (Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe () C:\Program Files\Hewlett-Packard\HP LaunchBox\HPTaskBar1.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP LaunchBox\HPTaskBar2.exe (EasyBits Software AS) C:\Windows\SysWOW64\ezSharedSvcHost.exe (Dropbox, Inc.) C:\Users\Jacqueline\AppData\Roaming\Dropbox\bin\Dropbox.exe (OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe (OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin (Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe (Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe () C:\Program Files (x86) (x86)\Lexmark 5600-6600 Series\lxdumon.exe (Sun Microsystems, Inc.) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe () C:\Program Files (x86) (x86)\Lexmark 5600-6600 Series\lxduMsdMon.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgui.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe (CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe (Easybits) C:\ProgramData\Easybits Magic Desktop for HP\mdhpSUN.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgcfgex.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2799912 2011-06-10] (Synaptics Incorporated) HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [525312 2010-12-17] (IDT, Inc.) HKLM\...\Run: [SetDefault] - C:\Program Files\Hewlett-Packard\HP LaunchBox\SetDefault.exe [42808 2011-06-27] (Hewlett-Packard Development Company, L.P.) HKLM\...\Run: [MSC] - c:\Program Files\Microsoft Security Client\msseces.exe [1281512 2013-01-27] (Microsoft Corporation) HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1 HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [18705664 2013-01-08] (Skype Technologies S.A.) HKCU\...\Run: [KiesPreload] - C:\Program Files (x86)\Samsung\Kies\Kies.exe [1564528 2013-09-04] (Samsung) HKCU\...\Run: [KiesAirMessage] - C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup HKCU\...\Run: [] - C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [844656 2013-09-04] (Samsung) HKCU\...\Policies\system: [DisableLockWorkstation] 0 HKCU\...\Policies\system: [DisableChangePassword] 0 HKCU\...\Policies\Explorer: [DisallowRun] 1 MountPoints2: G - G:\OpenFiles.exe MountPoints2: {a79b393f-bd7f-11e2-9348-441ea1de96bc} - G:\OpenFiles.exe HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-07-05] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [HPQuickWebProxy] - C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe [168504 2011-06-27] (Hewlett-Packard Company) HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [37960 2013-05-10] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Easybits Recovery] - C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe HKLM-x32\...\Run: [lxdumon.exe] - C:\Program Files (x86) (x86)\Lexmark 5600-6600 Series\lxdumon.exe [676520 2010-02-04] () HKLM-x32\...\Run: [lxduamon] - C:\Program Files (x86) (x86)\Lexmark 5600-6600 Series\lxduamon.exe [16040 2010-02-04] () HKLM-x32\...\Run: [Win7PDF] - C:\Program Files\PDF Printer for Windows 7\PDF.exe HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254896 2012-09-17] (Sun Microsystems, Inc.) HKLM-x32\...\Run: [AVG_UI] - C:\Program Files (x86)\AVG\AVG2013\avgui.exe [4411440 2013-08-15] (AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [HPOSD] - C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [379960 2011-08-19] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [Magic Desktop for HP notification] - C:\ProgramData\Easybits Magic Desktop for HP\mdhpSUN.exe [1238016 2013-07-27] (Easybits) HKLM-x32\...\Run: [HP Quick Launch] - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [578944 2012-03-05] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [KiesTrayAgent] - C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [311152 2013-09-04] (Samsung Electronics Co., Ltd.) Startup: C:\Users\Jacqueline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Jacqueline\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) Startup: C:\Users\Jacqueline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk ShortcutTarget: OpenOffice.org 3.3.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe () ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.at/ HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPCON/1 URLSearchHook: (No Name) - {c840e246-6b95-475e-9bd7-caa1c7eca9f2} - No File SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=HPNTDF&pc=HPNTDF&src=IE-SearchBox SearchScopes: HKLM - {3A613D1D-9637-4C3E-83D4-48C7C344D785} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/5221-111072-7833-3/4?mpre=hxxp://shop.ebay.com/?_nkw={searchTerms} SearchScopes: HKLM-x32 - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/5221-111072-7833-3/4?mpre=hxxp://shop.ebay.com/?_nkw={searchTerms} SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=HPNTDF&pc=HPNTDF&src=IE-SearchBox SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/5221-111072-7833-3/4?mpre=hxxp://shop.ebay.com/?_nkw={searchTerms} BHO: SteadyVideoBHO Class - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: No Name - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - No File BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.) BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Lexmark - {D2C5E510-BE6D-42CC-9F61-E4F939078474} - C:\Program Files (x86)\Lexmark Printable Web\bho.dll () BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard) Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File Toolbar: HKCU - No Name - {C840E246-6B95-475E-9BD7-CAA1C7ECA9F2} - No File Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Tcpip\Parameters: [DhcpNameServer] 212.186.211.21 195.34.133.21 FireFox: ======== FF ProfilePath: C:\Users\Jacqueline\AppData\Roaming\Mozilla\Firefox\Profiles\o0pihqt3.default FF Homepage: about:home|hxxp://www.giga.de/my_homepage/1024/ FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_168.dll () FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_168.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\system32\Adobe\Director\np32dsw.dll No File FF Plugin-x32: @java.com/DTPlugin,version=1.6.0_39 - C:\Windows\SysWOW64\npdeployJava1.dll (Sun Microsystems, Inc.) FF Plugin-x32: @java.com/JavaPlugin - C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.) FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll () FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Extension: Visualisateur 3D de 20-20 - C:\Users\Jacqueline\AppData\Roaming\Mozilla\Firefox\Profiles\o0pihqt3.default\Extensions\2020Player_IKEA@2020Technologies.com FF Extension: Amazon-Icon - C:\Users\Jacqueline\AppData\Roaming\Mozilla\Firefox\Profiles\o0pihqt3.default\Extensions\amazon-icon@winload.de FF Extension: pricealarm - C:\Users\Jacqueline\AppData\Roaming\Mozilla\Firefox\Profiles\o0pihqt3.default\Extensions\EFGLQA@78ETGYN-0W7FN789T87.COM FF Extension: No Name - C:\Users\Jacqueline\AppData\Roaming\Mozilla\Firefox\Profiles\o0pihqt3.default\Extensions\{add05588-65ac-4bbd-91ec-36c013386613}.xpi FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA} FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0039-ABCDEFFEDCBA} Chrome: ======= Error reading preferences. Please check "preferences" file for possible corruption. <======= ATTENTION CHR Extension: () - C:\Users\JACQUE~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\fmlgoencnlndpglbocajlimaikjohmab\background.html CHR HKLM-x32\...\Chrome\Extension: [mkcedibhemacmilmkpndpkoidlnmgngg] - C:\Users\Jacqueline\ChromeExtensions\mkcedibhemacmilmkpndpkoidlnmgngg\amazon.crx ==================== Services (Whitelisted) ================= R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [365568 2011-07-05] (Advanced Micro Devices, Inc.) S2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe [4939312 2013-07-04] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe [283136 2013-07-23] (AVG Technologies CZ, s.r.o.) S2 lxdu_device; C:\Windows\system32\lxducoms.exe [1039360 2009-10-16] ( ) R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [22056 2013-01-27] (Microsoft Corporation) S3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [379360 2013-01-27] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [246072 2013-07-20] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [71480 2013-07-20] (AVG Technologies CZ, s.r.o.) R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [206648 2013-07-20] (AVG Technologies CZ, s.r.o.) R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [311608 2013-07-20] (AVG Technologies CZ, s.r.o.) R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [116536 2013-07-01] (AVG Technologies CZ, s.r.o.) R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [45880 2013-09-05] (AVG Technologies CZ, s.r.o.) R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [240952 2013-03-21] (AVG Technologies CZ, s.r.o.) R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [230320 2013-01-20] (Microsoft Corporation) S3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [130008 2013-01-20] (Microsoft Corporation) S3 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) S3 usbrndis6; C:\Windows\System32\DRIVERS\usb80236.sys [19968 2013-02-12] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-09-28 21:02 - 2013-09-28 21:02 - 01953880 _____ (Farbar) C:\Users\Jacqueline\Downloads\FRST64.exe 2013-09-28 20:47 - 2013-09-28 20:47 - 00110350 _____ C:\Users\Jacqueline\Desktop\JRT.txt 2013-09-28 20:37 - 2013-09-28 20:37 - 00000000 ____D C:\Windows\ERUNT 2013-09-28 20:36 - 2013-09-28 20:36 - 01030305 _____ (Thisisu) C:\Users\Jacqueline\Downloads\JRT.exe 2013-09-28 20:27 - 2013-09-28 20:27 - 00008562 _____ C:\Users\Jacqueline\Desktop\AdwCleaner[S0].txt 2013-09-28 20:21 - 2013-09-28 20:24 - 00000000 ____D C:\AdwCleaner 2013-09-28 20:20 - 2013-09-28 20:20 - 01042066 _____ C:\Users\Jacqueline\Downloads\adwcleaner.exe 2013-09-27 21:33 - 2013-09-27 21:34 - 00032607 _____ C:\Users\Jacqueline\Downloads\Addition.txt 2013-09-27 21:30 - 2013-09-27 21:30 - 00000000 ____D C:\FRST 2013-09-27 08:54 - 2013-09-27 08:54 - 00001109 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-09-27 08:54 - 2013-09-27 08:54 - 00000000 ____D C:\Users\Jacqueline\AppData\Roaming\Malwarebytes 2013-09-27 08:54 - 2013-09-27 08:54 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-09-27 08:54 - 2013-09-27 08:54 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-09-27 08:54 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2013-09-26 18:30 - 2013-09-26 18:30 - 00000000 ____D C:\Program Files (x86)\Windows Sidebar 2013-09-26 17:47 - 2013-09-26 17:48 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Jacqueline\Downloads\mbam-setup-1.75.0.1300(1).exe 2013-09-26 17:44 - 2013-09-26 17:48 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Jacqueline\Downloads\mbam-setup-1.75.0.1300.exe 2013-09-26 16:05 - 2013-09-26 16:05 - 02092792 _____ C:\Users\Jacqueline\Downloads\avira_free_4052_antivirus.exe 2013-09-26 15:49 - 2013-09-26 15:49 - 00000000 ____D C:\Users\Jacqueline\Desktop\Nachhilfe 2013-09-26 10:52 - 2013-09-26 10:52 - 00000000 ____D C:\Users\Public\Documents\CrashDump 2013-09-26 10:14 - 2013-09-26 10:14 - 00000000 ____D C:\Program Files (x86)\MarkAny 2013-09-26 10:11 - 2013-09-26 10:21 - 00002002 _____ C:\Users\Public\Desktop\Samsung Kies (Lite).lnk 2013-09-26 10:11 - 2013-09-26 10:11 - 00001992 _____ C:\Users\Public\Desktop\Samsung Kies.lnk 2013-09-26 10:11 - 2013-09-26 10:11 - 00000000 ____D C:\Users\Public\Documents\NativeFus_Log 2013-09-26 10:11 - 2013-09-26 10:11 - 00000000 ____D C:\Users\Jacqueline\Documents\samsung 2013-09-26 10:11 - 2013-09-26 10:11 - 00000000 ____D C:\Users\Jacqueline\AppData\Roaming\Samsung 2013-09-26 10:11 - 2013-09-26 10:11 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Samsung 2013-09-26 10:08 - 2013-04-18 19:08 - 04659712 _____ (Dmitry Streblechenko) C:\Windows\SysWOW64\Redemption.dll 2013-09-26 10:08 - 2013-04-18 19:06 - 00821824 _____ (Devguru Co., Ltd.) C:\Windows\SysWOW64\dgderapi.dll 2013-09-26 10:06 - 2013-09-26 10:22 - 00000000 ____D C:\Program Files (x86)\Samsung 2013-09-26 10:06 - 2013-09-26 10:09 - 00000000 ____D C:\ProgramData\Samsung 2013-09-26 10:04 - 2013-09-26 10:22 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Downloaded Installations 2013-09-26 10:03 - 2013-09-26 10:03 - 69552992 _____ (Samsung Electronics Co., Ltd. ) C:\Users\Jacqueline\Downloads\KiesSetup.exe 2013-09-25 12:49 - 2013-09-25 12:49 - 00000000 ____D C:\Users\Jacqueline\ChromeExtensions 2013-09-25 12:49 - 2013-09-25 12:49 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Temp62cffb5f9d426b6d803b2d8a9bdd823d 2013-09-25 12:49 - 2013-09-25 12:49 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Temp5482275e3530aa9bd615635939968a27 2013-09-25 12:49 - 2013-09-25 12:49 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Temp2daf80f7e738224c09a386a7a8275c1d 2013-09-25 12:48 - 2013-09-25 12:48 - 01345792 _____ C:\Users\Jacqueline\Downloads\SuperOneClick-Setup.exe 2013-09-25 12:42 - 2013-09-25 12:42 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_WinUsb_01009.Wdf 2013-09-22 18:10 - 2013-09-22 19:03 - 00000000 ____D C:\Users\Jacqueline\Desktop\Literatur Diplomarbeit 2013-09-13 21:51 - 2013-08-10 07:22 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-09-13 21:51 - 2013-08-10 07:22 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-09-13 21:51 - 2013-08-10 07:22 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-09-13 21:51 - 2013-08-10 07:21 - 19246592 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-09-13 21:51 - 2013-08-10 07:21 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-09-13 21:51 - 2013-08-10 07:21 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-09-13 21:51 - 2013-08-10 07:20 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-09-13 21:51 - 2013-08-10 07:20 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-09-13 21:51 - 2013-08-10 07:20 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-09-13 21:51 - 2013-08-10 07:20 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-09-13 21:51 - 2013-08-10 07:20 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-09-13 21:51 - 2013-08-10 07:20 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-09-13 21:51 - 2013-08-10 07:20 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-09-13 21:51 - 2013-08-10 07:20 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-09-13 21:51 - 2013-08-10 05:59 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-09-13 21:51 - 2013-08-10 05:59 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 14332928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 02048000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-09-13 21:51 - 2013-08-10 05:17 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-09-13 21:51 - 2013-08-10 05:07 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-09-13 21:51 - 2013-08-10 04:27 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-09-13 21:51 - 2013-08-10 04:17 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-09-12 13:21 - 2013-08-05 04:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys 2013-09-12 13:21 - 2013-08-02 04:23 - 05550528 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2013-09-12 13:21 - 2013-08-02 04:15 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2013-09-12 13:21 - 2013-08-02 04:15 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2013-09-12 13:21 - 2013-08-02 04:15 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2013-09-12 13:21 - 2013-08-02 04:15 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2013-09-12 13:21 - 2013-08-02 04:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2013-09-12 13:21 - 2013-08-02 04:14 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2013-09-12 13:21 - 2013-08-02 04:13 - 01161216 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2013-09-12 13:21 - 2013-08-02 04:13 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:59 - 03968960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2013-09-12 13:21 - 2013-08-02 03:59 - 03913664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2013-09-12 13:21 - 2013-08-02 03:51 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2013-09-12 13:21 - 2013-08-02 03:50 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2013-09-12 13:21 - 2013-08-02 03:50 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2013-09-12 13:21 - 2013-08-02 03:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2013-09-12 13:21 - 2013-08-02 02:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2013-09-12 13:21 - 2013-08-02 02:45 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2013-09-12 13:20 - 2013-08-08 03:20 - 03155456 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-09-12 13:20 - 2013-08-02 04:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 02:45 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2013-09-12 13:20 - 2013-08-02 02:45 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2013-09-12 13:20 - 2013-08-02 02:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2013-09-12 13:20 - 2013-08-02 02:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 02:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 02:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 02:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2013-09-12 13:20 - 2013-07-26 04:24 - 14172672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2013-09-12 13:20 - 2013-07-26 04:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2013-09-12 13:20 - 2013-07-26 03:55 - 12872704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2013-09-12 13:20 - 2013-07-26 03:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll 2013-09-11 19:52 - 2013-09-11 19:52 - 435300643 _____ C:\Windows\MEMORY.DMP 2013-09-11 19:52 - 2013-09-11 19:52 - 00305448 _____ C:\Windows\Minidump\091113-57236-01.dmp 2013-09-11 19:52 - 2013-09-11 19:52 - 00000000 ____D C:\Windows\Minidump 2013-09-09 09:58 - 2013-09-09 09:57 - 00425064 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2013-09-09 09:58 - 2013-09-09 09:57 - 00074272 _____ C:\Windows\system32\RtNicProp64.dll 2013-09-05 01:43 - 2013-09-05 01:43 - 00045880 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgrkx64.sys ==================== One Month Modified Files and Folders ======= 2013-09-28 21:02 - 2013-09-28 21:02 - 01953880 _____ (Farbar) C:\Users\Jacqueline\Downloads\FRST64.exe 2013-09-28 20:47 - 2013-09-28 20:47 - 00110350 _____ C:\Users\Jacqueline\Desktop\JRT.txt 2013-09-28 20:46 - 2012-04-03 08:19 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-09-28 20:38 - 2011-09-15 01:41 - 01297424 _____ C:\Windows\WindowsUpdate.log 2013-09-28 20:37 - 2013-09-28 20:37 - 00000000 ____D C:\Windows\ERUNT 2013-09-28 20:37 - 2009-07-14 06:45 - 00032064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-09-28 20:37 - 2009-07-14 06:45 - 00032064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-09-28 20:36 - 2013-09-28 20:36 - 01030305 _____ (Thisisu) C:\Users\Jacqueline\Downloads\JRT.exe 2013-09-28 20:27 - 2013-09-28 20:27 - 00008562 _____ C:\Users\Jacqueline\Desktop\AdwCleaner[S0].txt 2013-09-28 20:27 - 2012-03-12 20:32 - 00000000 ___RD C:\Users\Jacqueline\Dropbox 2013-09-28 20:27 - 2012-03-12 20:30 - 00000000 ____D C:\Users\Jacqueline\AppData\Roaming\Dropbox 2013-09-28 20:26 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-09-28 20:26 - 2009-07-14 06:51 - 00124158 _____ C:\Windows\setupact.log 2013-09-28 20:24 - 2013-09-28 20:21 - 00000000 ____D C:\AdwCleaner 2013-09-28 20:24 - 2011-10-28 18:02 - 00000000 ___RD C:\Users\Jacqueline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-09-28 20:20 - 2013-09-28 20:20 - 01042066 _____ C:\Users\Jacqueline\Downloads\adwcleaner.exe 2013-09-28 19:36 - 2011-10-28 18:02 - 00003970 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{9492721E-B895-4B3A-ACB6-B93217A00044} 2013-09-28 19:35 - 2013-03-04 11:32 - 00000000 ____D C:\ProgramData\MFAData 2013-09-28 10:52 - 2011-11-10 19:54 - 00000000 ____D C:\Users\Jacqueline\AppData\Roaming\Skype 2013-09-28 08:54 - 2011-11-20 10:35 - 00000000 _____ C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt 2013-09-28 08:54 - 2011-10-29 17:02 - 00000052 _____ C:\Windows\SysWOW64\DOErrors.log 2013-09-27 21:34 - 2013-09-27 21:33 - 00032607 _____ C:\Users\Jacqueline\Downloads\Addition.txt 2013-09-27 21:30 - 2013-09-27 21:30 - 00000000 ____D C:\FRST 2013-09-27 20:10 - 2010-11-21 05:47 - 00382472 _____ C:\Windows\PFRO.log 2013-09-27 20:07 - 2011-10-29 19:26 - 00000000 ____D C:\Users\Jacqueline\AppData\Roaming\SoftGrid Client 2013-09-27 20:04 - 2013-07-06 09:37 - 00000000 ____D C:\Users\Jacqueline\Desktop\Pablo Arbeit 2013-09-27 20:04 - 2012-07-28 09:35 - 00003216 _____ C:\Windows\System32\Tasks\HPCeeScheduleForJacqueline 2013-09-27 20:04 - 2012-07-28 09:35 - 00000352 _____ C:\Windows\Tasks\HPCeeScheduleForJacqueline.job 2013-09-27 08:54 - 2013-09-27 08:54 - 00001109 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-09-27 08:54 - 2013-09-27 08:54 - 00000000 ____D C:\Users\Jacqueline\AppData\Roaming\Malwarebytes 2013-09-27 08:54 - 2013-09-27 08:54 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-09-27 08:54 - 2013-09-27 08:54 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-09-26 18:30 - 2013-09-26 18:30 - 00000000 ____D C:\Program Files (x86)\Windows Sidebar 2013-09-26 18:30 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Sidebar 2013-09-26 18:17 - 2013-05-29 09:27 - 00000000 ____D C:\Users\Jacqueline\Desktop\Pablo 2013-09-26 17:48 - 2013-09-26 17:47 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Jacqueline\Downloads\mbam-setup-1.75.0.1300(1).exe 2013-09-26 17:48 - 2013-09-26 17:44 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Jacqueline\Downloads\mbam-setup-1.75.0.1300.exe 2013-09-26 16:43 - 2013-03-04 11:32 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Avg2013 2013-09-26 16:05 - 2013-09-26 16:05 - 02092792 _____ C:\Users\Jacqueline\Downloads\avira_free_4052_antivirus.exe 2013-09-26 15:49 - 2013-09-26 15:49 - 00000000 ____D C:\Users\Jacqueline\Desktop\Nachhilfe 2013-09-26 15:17 - 2011-07-19 20:45 - 00697322 _____ C:\Windows\system32\perfh007.dat 2013-09-26 15:17 - 2011-07-19 20:45 - 00148328 _____ C:\Windows\system32\perfc007.dat 2013-09-26 15:17 - 2009-07-14 07:13 - 01614036 _____ C:\Windows\system32\PerfStringBackup.INI 2013-09-26 15:16 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF 2013-09-26 10:52 - 2013-09-26 10:52 - 00000000 ____D C:\Users\Public\Documents\CrashDump 2013-09-26 10:23 - 2011-07-19 11:42 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-09-26 10:22 - 2013-09-26 10:06 - 00000000 ____D C:\Program Files (x86)\Samsung 2013-09-26 10:22 - 2013-09-26 10:04 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Downloaded Installations 2013-09-26 10:21 - 2013-09-26 10:11 - 00002002 _____ C:\Users\Public\Desktop\Samsung Kies (Lite).lnk 2013-09-26 10:14 - 2013-09-26 10:14 - 00000000 ____D C:\Program Files (x86)\MarkAny 2013-09-26 10:11 - 2013-09-26 10:11 - 00001992 _____ C:\Users\Public\Desktop\Samsung Kies.lnk 2013-09-26 10:11 - 2013-09-26 10:11 - 00000000 ____D C:\Users\Public\Documents\NativeFus_Log 2013-09-26 10:11 - 2013-09-26 10:11 - 00000000 ____D C:\Users\Jacqueline\Documents\samsung 2013-09-26 10:11 - 2013-09-26 10:11 - 00000000 ____D C:\Users\Jacqueline\AppData\Roaming\Samsung 2013-09-26 10:11 - 2013-09-26 10:11 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Samsung 2013-09-26 10:09 - 2013-09-26 10:06 - 00000000 ____D C:\ProgramData\Samsung 2013-09-26 10:03 - 2013-09-26 10:03 - 69552992 _____ (Samsung Electronics Co., Ltd. ) C:\Users\Jacqueline\Downloads\KiesSetup.exe 2013-09-26 08:25 - 2011-11-08 21:21 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\CrashDumps 2013-09-25 12:49 - 2013-09-25 12:49 - 00000000 ____D C:\Users\Jacqueline\ChromeExtensions 2013-09-25 12:49 - 2013-09-25 12:49 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Temp62cffb5f9d426b6d803b2d8a9bdd823d 2013-09-25 12:49 - 2013-09-25 12:49 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Temp5482275e3530aa9bd615635939968a27 2013-09-25 12:49 - 2013-09-25 12:49 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Temp2daf80f7e738224c09a386a7a8275c1d 2013-09-25 12:49 - 2011-10-28 17:56 - 00000000 ____D C:\Users\Jacqueline 2013-09-25 12:48 - 2013-09-25 12:48 - 01345792 _____ C:\Users\Jacqueline\Downloads\SuperOneClick-Setup.exe 2013-09-25 12:42 - 2013-09-25 12:42 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_WinUsb_01009.Wdf 2013-09-25 11:44 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2013-09-24 14:22 - 2013-03-19 11:02 - 00000000 ____D C:\Users\Jacqueline\Desktop\DaF SS 13 2013-09-22 19:03 - 2013-09-22 18:10 - 00000000 ____D C:\Users\Jacqueline\Desktop\Literatur Diplomarbeit 2013-09-20 10:46 - 2012-04-03 08:19 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-09-20 10:46 - 2012-04-03 08:19 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-09-20 10:46 - 2011-07-19 11:23 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-09-14 19:04 - 2013-03-04 11:43 - 00000981 _____ C:\Users\Public\Desktop\AVG 2013.lnk 2013-09-14 18:51 - 2011-10-28 18:02 - 00000000 ___RD C:\Users\Jacqueline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-09-14 18:50 - 2009-07-14 06:45 - 00317160 _____ C:\Windows\system32\FNTCACHE.DAT 2013-09-13 21:51 - 2011-10-29 19:25 - 00000000 ____D C:\Program Files (x86)\Microsoft Application Virtualization Client 2013-09-13 21:51 - 2011-09-15 01:51 - 01641654 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2013-09-13 20:48 - 2012-07-20 09:06 - 00000000 ____D C:\Users\Jacqueline\Desktop\Sonstiges 2013-09-11 19:52 - 2013-09-11 19:52 - 435300643 _____ C:\Windows\MEMORY.DMP 2013-09-11 19:52 - 2013-09-11 19:52 - 00305448 _____ C:\Windows\Minidump\091113-57236-01.dmp 2013-09-11 19:52 - 2013-09-11 19:52 - 00000000 ____D C:\Windows\Minidump 2013-09-11 19:50 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\LiveKernelReports 2013-09-11 11:41 - 2011-10-28 18:00 - 00074136 _____ C:\Users\Jacqueline\AppData\Local\GDIPFONTCACHEV1.DAT 2013-09-09 10:07 - 2011-07-19 11:31 - 00000000 ____D C:\ProgramData\Hewlett-Packard 2013-09-09 10:06 - 2011-07-19 11:18 - 00000000 ____D C:\Program Files (x86)\Hewlett-Packard 2013-09-09 10:05 - 2011-02-10 21:23 - 00000000 ____D C:\SWSetup 2013-09-09 10:01 - 2011-09-15 01:54 - 00000000 ____D C:\Program Files (x86)\Realtek 2013-09-09 10:00 - 2011-09-15 01:57 - 00878184 _____ (Realtek Semiconductor Corporation ) C:\Windows\system32\Drivers\rtl8192ce.sys 2013-09-09 09:57 - 2013-09-09 09:58 - 00425064 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2013-09-09 09:57 - 2013-09-09 09:58 - 00074272 _____ C:\Windows\system32\RtNicProp64.dll 2013-09-09 09:57 - 2011-09-15 01:55 - 00107552 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll 2013-09-05 01:43 - 2013-09-05 01:43 - 00045880 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgrkx64.sys 2013-09-03 18:17 - 2011-12-14 19:43 - 00000000 ____D C:\ProgramData\lx_Cats Some content of TEMP: ==================== C:\Users\Jacqueline\AppData\Local\Temp\amazonicon.exe C:\Users\Jacqueline\AppData\Local\Temp\amazoninstallernircmdc.exe C:\Users\Jacqueline\AppData\Local\Temp\comic!.exe C:\Users\Jacqueline\AppData\Local\Temp\contentDATs.exe C:\Users\Jacqueline\AppData\Local\Temp\Extract.exe C:\Users\Jacqueline\AppData\Local\Temp\HPHelpUpdater.exe C:\Users\Jacqueline\AppData\Local\Temp\ICReinstall_bechdel_fun.pdf.exe C:\Users\Jacqueline\AppData\Local\Temp\installhelper.dll C:\Users\Jacqueline\AppData\Local\Temp\install_reader10_de_mssa_aih.exe C:\Users\Jacqueline\AppData\Local\Temp\IPx64_1031.exe C:\Users\Jacqueline\AppData\Local\Temp\JavaIC.dll C:\Users\Jacqueline\AppData\Local\Temp\jre-6u33-windows-i586-iftw.exe C:\Users\Jacqueline\AppData\Local\Temp\jre-6u37-windows-i586-iftw.exe C:\Users\Jacqueline\AppData\Local\Temp\jre-6u39-windows-i586-iftw.exe C:\Users\Jacqueline\AppData\Local\Temp\jre-7u15-windows-i586-iftw.exe C:\Users\Jacqueline\AppData\Local\Temp\msbtwygu.dll C:\Users\Jacqueline\AppData\Local\Temp\msscct32.dll C:\Users\Jacqueline\AppData\Local\Temp\Quarantine.exe C:\Users\Jacqueline\AppData\Local\Temp\Resource.exe C:\Users\Jacqueline\AppData\Local\Temp\sdanircmdc.exe C:\Users\Jacqueline\AppData\Local\Temp\SecurityScan_Release.exe C:\Users\Jacqueline\AppData\Local\Temp\SIMEEIInstaller.exe C:\Users\Jacqueline\AppData\Local\Temp\SkypeSetup.exe C:\Users\Jacqueline\AppData\Local\Temp\SP53794.exe C:\Users\Jacqueline\AppData\Local\Temp\sp54620.exe C:\Users\Jacqueline\AppData\Local\Temp\SP54714.exe C:\Users\Jacqueline\AppData\Local\Temp\SP55081.exe C:\Users\Jacqueline\AppData\Local\Temp\SP55083.exe C:\Users\Jacqueline\AppData\Local\Temp\SP55085.exe C:\Users\Jacqueline\AppData\Local\Temp\SP55152.exe C:\Users\Jacqueline\AppData\Local\Temp\SP56215.exe C:\Users\Jacqueline\AppData\Local\Temp\SP56878.exe C:\Users\Jacqueline\AppData\Local\Temp\SP56929.exe C:\Users\Jacqueline\AppData\Local\Temp\SP57049.exe C:\Users\Jacqueline\AppData\Local\Temp\sp58915.exe C:\Users\Jacqueline\AppData\Local\Temp\SP59792.exe C:\Users\Jacqueline\AppData\Local\Temp\SRAssetsHelper.dll C:\Users\Jacqueline\AppData\Local\Temp\tbuTo0.dll C:\Users\Jacqueline\AppData\Local\Temp\tbWinl.dll C:\Users\Jacqueline\AppData\Local\Temp\UninstallHPSA.exe C:\Users\Jacqueline\AppData\Local\Temp\utt2CE2.tmp.exe C:\Users\Jacqueline\AppData\Local\Temp\utt456A.tmp.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-09-23 21:53 ==================== End Of Log ============================ |
29.09.2013, 17:38 | #8 |
/// the machine /// TB-Ausbilder | Virus: getwindowinfo & amazonicon & giga software Firefox deinstallieren, keine Daten behalten neu installieren. ESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
30.09.2013, 09:21 | #9 |
| Virus: getwindowinfo & amazonicon & giga software Eset (ich hoffe es ist das richtige!): Diese "Bedrohungen" musste ich ja nicht löschen oder? Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=ebdbc09cc4986d4fb04fcdd287617352 # engine=15299 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2013-09-30 07:48:52 # local_time=2013-09-30 09:48:52 (+0100, Mitteleuropäische Sommerzeit) # country="Austria" # lang=1033 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode=1043 16777213 100 87 55258 67661316 0 0 # compatibility_mode=5893 16776574 100 94 6942932 132157182 0 0 # scanned=208070 # found=6 # cleaned=0 # scan_time=53839 sh=2603A5136944DC47E0DEC7CCC054FBAD61172514 ft=0 fh=0000000000000000 vn="a variant of Win32/Kryptik.BERW trojan" ac=I fn="C:\Users\Jacqueline\AppData\Local\Temp\H090kpiv.zip.part" sh=8F3230AE597D31CC0E74D7AF3FEDE133B150D1DA ft=0 fh=0000000000000000 vn="a variant of Java/Exploit.CVE-2012-1723.FR trojan" ac=I fn="C:\Users\Jacqueline\AppData\Local\Temp\jar_cache6337458544226401246.tmp" sh=84614A2CA2F3E11F45C08E5FDD4A3A9260B20306 ft=0 fh=0000000000000000 vn="Win32/Ponmocup.AA trojan" ac=I fn="C:\Users\Jacqueline\AppData\Local\Temp\NvJUFCh+.zip.part" sh=B2C43BB05025BD6A4EEBF9A76CF4749FF379A87F ft=0 fh=0000000000000000 vn="a variant of Win32/Kryptik.BCOI trojan" ac=I fn="C:\Users\Jacqueline\AppData\Local\Temp\RSmNPtjj.zip.part" sh=549576C3043357DE2709F12BD4B6EE3066B5C6B9 ft=0 fh=0000000000000000 vn="multiple threats" ac=I fn="C:\Users\Jacqueline\AppData\Local\Temp\SuperOneClickv2.3.3-ShortFuse.zip" sh=384F4D14CA1D6EE4F21B2E7639D92BAA720A827D ft=0 fh=0000000000000000 vn="Java/Exploit.CVE-2012-1723.BT trojan" ac=I fn="C:\Users\Jacqueline\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\48\7edcddf0-603422de" Code:
ATTFilter Results of screen317's Security Check version 0.99.73 Windows 7 Service Pack 1 x64 (UAC is enabled) Internet Explorer 10 ``````````````Antivirus/Firewall Check:`````````````` AVG AntiVirus Free Edition 2013 Microsoft Security Essentials Antivirus out of date! (On Access scanning disabled!) `````````Anti-malware/Other Utilities Check:````````` Malwarebytes Anti-Malware Version 1.75.0.1300 Java(TM) 6 Update 39 Java version out of Date! Adobe Flash Player 11.8.800.168 Adobe Reader 10.1.2 Adobe Reader out of Date! ````````Process Check: objlist.exe by Laurent```````` Microsoft Security Essentials MSMpEng.exe Microsoft Security Essentials msseces.exe AVG avgwdsvc.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 27-09-2013 02 Ran by Jacqueline (administrator) on JACQUELINE-HP on 30-09-2013 10:17:12 Running from C:\Users\Jacqueline\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\system32\atiesrxx.exe (IDT, Inc.) C:\Program Files\IDT\WDM\STacSV64.exe (AMD) C:\Windows\system32\atieclxx.exe (Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe (EasyBits Software AS) C:\Windows\SysWOW64\ezSharedSvcHost.exe (Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe (Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe ( ) C:\Windows\system32\lxducoms.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe () C:\Program Files\Hewlett-Packard\HP LaunchBox\HPTaskBar1.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP LaunchBox\HPTaskBar2.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Samsung) C:\Program Files (x86)\Samsung\Kies\Kies.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe (Dropbox, Inc.) C:\Users\Jacqueline\AppData\Roaming\Dropbox\bin\Dropbox.exe (OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe (OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe () C:\Program Files (x86) (x86)\Lexmark 5600-6600 Series\lxdumon.exe (Sun Microsystems, Inc.) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE () C:\Program Files (x86) (x86)\Lexmark 5600-6600 Series\lxduMsdMon.exe (CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgui.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe (Easybits) C:\ProgramData\Easybits Magic Desktop for HP\mdhpSUN.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe (Microsoft Corporation) C:\Program Files (x86)\Internet Explorer\IELowutil.exe (Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (Sun Microsystems, Inc.) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\virtualization handler\cvh.exe () C:\Program Files (x86)\Common Files\microsoft shared\virtualization handler\OfficeVirt.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgcfgex.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Adobe Systems Incorporated) C:\Windows\system32\Macromed\Flash\FlashUtil64_11_8_800_175_ActiveX.exe (Microsoft Corporation) C:\Windows\system32\prevhost.exe (Microsoft Corporation) C:\Windows\System32\MsSpellCheckingFacility.exe () C:\Users\Jacqueline\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DVF9ZTF7\SecurityCheck.exe (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2799912 2011-06-10] (Synaptics Incorporated) HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [525312 2010-12-17] (IDT, Inc.) HKLM\...\Run: [SetDefault] - C:\Program Files\Hewlett-Packard\HP LaunchBox\SetDefault.exe [42808 2011-06-27] (Hewlett-Packard Development Company, L.P.) HKLM\...\Run: [MSC] - c:\Program Files\Microsoft Security Client\msseces.exe [1281512 2013-01-27] (Microsoft Corporation) HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1 HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [18705664 2013-01-08] (Skype Technologies S.A.) HKCU\...\Run: [KiesPreload] - C:\Program Files (x86)\Samsung\Kies\Kies.exe [1564528 2013-09-04] (Samsung) HKCU\...\Run: [KiesAirMessage] - C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup HKCU\...\Run: [] - C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [844656 2013-09-04] (Samsung) HKCU\...\Policies\system: [DisableLockWorkstation] 0 HKCU\...\Policies\system: [DisableChangePassword] 0 HKCU\...\Policies\Explorer: [DisallowRun] 1 MountPoints2: G - G:\OpenFiles.exe MountPoints2: {a79b393f-bd7f-11e2-9348-441ea1de96bc} - G:\OpenFiles.exe HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-07-05] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [HPQuickWebProxy] - C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe [168504 2011-06-27] (Hewlett-Packard Company) HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [37960 2013-05-10] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Easybits Recovery] - C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe HKLM-x32\...\Run: [lxdumon.exe] - C:\Program Files (x86) (x86)\Lexmark 5600-6600 Series\lxdumon.exe [676520 2010-02-04] () HKLM-x32\...\Run: [lxduamon] - C:\Program Files (x86) (x86)\Lexmark 5600-6600 Series\lxduamon.exe [16040 2010-02-04] () HKLM-x32\...\Run: [Win7PDF] - C:\Program Files\PDF Printer for Windows 7\PDF.exe HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254896 2012-09-17] (Sun Microsystems, Inc.) HKLM-x32\...\Run: [AVG_UI] - C:\Program Files (x86)\AVG\AVG2013\avgui.exe [4411440 2013-08-15] (AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [HPOSD] - C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [379960 2011-08-19] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [Magic Desktop for HP notification] - C:\ProgramData\Easybits Magic Desktop for HP\mdhpSUN.exe [1238016 2013-07-27] (Easybits) HKLM-x32\...\Run: [HP Quick Launch] - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [578944 2012-03-05] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [KiesTrayAgent] - C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [311152 2013-09-04] (Samsung Electronics Co., Ltd.) Startup: C:\Users\Jacqueline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Jacqueline\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) Startup: C:\Users\Jacqueline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk ShortcutTarget: OpenOffice.org 3.3.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe () ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.at/ HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPCON/1 URLSearchHook: (No Name) - {c840e246-6b95-475e-9bd7-caa1c7eca9f2} - No File SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=HPNTDF&pc=HPNTDF&src=IE-SearchBox SearchScopes: HKLM - {3A613D1D-9637-4C3E-83D4-48C7C344D785} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/5221-111072-7833-3/4?mpre=hxxp://shop.ebay.com/?_nkw={searchTerms} SearchScopes: HKLM-x32 - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/5221-111072-7833-3/4?mpre=hxxp://shop.ebay.com/?_nkw={searchTerms} SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=HPNTDF&pc=HPNTDF&src=IE-SearchBox SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/5221-111072-7833-3/4?mpre=hxxp://shop.ebay.com/?_nkw={searchTerms} BHO: SteadyVideoBHO Class - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: No Name - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - No File BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.) BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Lexmark - {D2C5E510-BE6D-42CC-9F61-E4F939078474} - C:\Program Files (x86)\Lexmark Printable Web\bho.dll () BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard) Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File Toolbar: HKCU - No Name - {C840E246-6B95-475E-9BD7-CAA1C7ECA9F2} - No File Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Tcpip\Parameters: [DhcpNameServer] 212.186.211.21 195.34.133.21 Chrome: ======= Error reading preferences. Please check "preferences" file for possible corruption. <======= ATTENTION CHR Extension: () - C:\Users\JACQUE~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\fmlgoencnlndpglbocajlimaikjohmab\background.html CHR HKLM-x32\...\Chrome\Extension: [mkcedibhemacmilmkpndpkoidlnmgngg] - C:\Users\Jacqueline\ChromeExtensions\mkcedibhemacmilmkpndpkoidlnmgngg\amazon.crx ==================== Services (Whitelisted) ================= R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [365568 2011-07-05] (Advanced Micro Devices, Inc.) S2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe [4939312 2013-07-04] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe [283136 2013-07-23] (AVG Technologies CZ, s.r.o.) R2 lxdu_device; C:\Windows\system32\lxducoms.exe [1039360 2009-10-16] ( ) R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [22056 2013-01-27] (Microsoft Corporation) S3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [379360 2013-01-27] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [246072 2013-07-20] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [71480 2013-07-20] (AVG Technologies CZ, s.r.o.) R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [206648 2013-07-20] (AVG Technologies CZ, s.r.o.) R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [311608 2013-07-20] (AVG Technologies CZ, s.r.o.) R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [116536 2013-07-01] (AVG Technologies CZ, s.r.o.) R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [45880 2013-09-05] (AVG Technologies CZ, s.r.o.) R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [240952 2013-03-21] (AVG Technologies CZ, s.r.o.) R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [230320 2013-01-20] (Microsoft Corporation) S3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [130008 2013-01-20] (Microsoft Corporation) S3 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) S3 usbrndis6; C:\Windows\System32\DRIVERS\usb80236.sys [19968 2013-02-12] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-09-30 09:55 - 2013-09-30 09:55 - 00019267 _____ C:\Users\Jacqueline\Desktop\Finally.xlsx 2013-09-29 10:02 - 2013-09-29 10:03 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{4ECD048C-C046-4349-8FA6-D9880ECD362E} 2013-09-28 21:02 - 2013-09-28 21:02 - 01953880 _____ (Farbar) C:\Users\Jacqueline\Downloads\FRST64.exe 2013-09-28 20:47 - 2013-09-28 20:47 - 00110350 _____ C:\Users\Jacqueline\Desktop\JRT.txt 2013-09-28 20:37 - 2013-09-28 20:37 - 00000000 ____D C:\Windows\ERUNT 2013-09-28 20:36 - 2013-09-28 20:36 - 01030305 _____ (Thisisu) C:\Users\Jacqueline\Downloads\JRT.exe 2013-09-28 20:27 - 2013-09-28 20:27 - 00008562 _____ C:\Users\Jacqueline\Desktop\AdwCleaner[S0].txt 2013-09-28 20:21 - 2013-09-28 20:24 - 00000000 ____D C:\AdwCleaner 2013-09-28 20:20 - 2013-09-28 20:20 - 01042066 _____ C:\Users\Jacqueline\Downloads\adwcleaner.exe 2013-09-27 21:33 - 2013-09-27 21:34 - 00032607 _____ C:\Users\Jacqueline\Downloads\Addition.txt 2013-09-27 21:30 - 2013-09-27 21:30 - 00000000 ____D C:\FRST 2013-09-27 08:54 - 2013-09-27 08:54 - 00001109 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-09-27 08:54 - 2013-09-27 08:54 - 00000000 ____D C:\Users\Jacqueline\AppData\Roaming\Malwarebytes 2013-09-27 08:54 - 2013-09-27 08:54 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-09-27 08:54 - 2013-09-27 08:54 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-09-27 08:54 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2013-09-26 18:30 - 2013-09-26 18:30 - 00000000 ____D C:\Program Files (x86)\Windows Sidebar 2013-09-26 17:47 - 2013-09-26 17:48 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Jacqueline\Downloads\mbam-setup-1.75.0.1300(1).exe 2013-09-26 17:44 - 2013-09-26 17:48 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Jacqueline\Downloads\mbam-setup-1.75.0.1300.exe 2013-09-26 16:05 - 2013-09-26 16:05 - 02092792 _____ C:\Users\Jacqueline\Downloads\avira_free_4052_antivirus.exe 2013-09-26 15:49 - 2013-09-26 15:49 - 00000000 ____D C:\Users\Jacqueline\Desktop\Nachhilfe 2013-09-26 10:52 - 2013-09-26 10:52 - 00000000 ____D C:\Users\Public\Documents\CrashDump 2013-09-26 10:14 - 2013-09-26 10:14 - 00000000 ____D C:\Program Files (x86)\MarkAny 2013-09-26 10:11 - 2013-09-26 10:21 - 00002002 _____ C:\Users\Public\Desktop\Samsung Kies (Lite).lnk 2013-09-26 10:11 - 2013-09-26 10:11 - 00001992 _____ C:\Users\Public\Desktop\Samsung Kies.lnk 2013-09-26 10:11 - 2013-09-26 10:11 - 00000000 ____D C:\Users\Public\Documents\NativeFus_Log 2013-09-26 10:11 - 2013-09-26 10:11 - 00000000 ____D C:\Users\Jacqueline\Documents\samsung 2013-09-26 10:11 - 2013-09-26 10:11 - 00000000 ____D C:\Users\Jacqueline\AppData\Roaming\Samsung 2013-09-26 10:11 - 2013-09-26 10:11 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Samsung 2013-09-26 10:08 - 2013-04-18 19:08 - 04659712 _____ (Dmitry Streblechenko) C:\Windows\SysWOW64\Redemption.dll 2013-09-26 10:08 - 2013-04-18 19:06 - 00821824 _____ (Devguru Co., Ltd.) C:\Windows\SysWOW64\dgderapi.dll 2013-09-26 10:06 - 2013-09-26 10:22 - 00000000 ____D C:\Program Files (x86)\Samsung 2013-09-26 10:06 - 2013-09-26 10:09 - 00000000 ____D C:\ProgramData\Samsung 2013-09-26 10:04 - 2013-09-26 10:22 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Downloaded Installations 2013-09-26 10:03 - 2013-09-26 10:03 - 69552992 _____ (Samsung Electronics Co., Ltd. ) C:\Users\Jacqueline\Downloads\KiesSetup.exe 2013-09-25 12:49 - 2013-09-25 12:49 - 00000000 ____D C:\Users\Jacqueline\ChromeExtensions 2013-09-25 12:49 - 2013-09-25 12:49 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Temp62cffb5f9d426b6d803b2d8a9bdd823d 2013-09-25 12:49 - 2013-09-25 12:49 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Temp5482275e3530aa9bd615635939968a27 2013-09-25 12:49 - 2013-09-25 12:49 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Temp2daf80f7e738224c09a386a7a8275c1d 2013-09-25 12:48 - 2013-09-25 12:48 - 01345792 _____ C:\Users\Jacqueline\Downloads\SuperOneClick-Setup.exe 2013-09-25 12:42 - 2013-09-25 12:42 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_WinUsb_01009.Wdf 2013-09-22 18:10 - 2013-09-22 19:03 - 00000000 ____D C:\Users\Jacqueline\Desktop\Literatur Diplomarbeit 2013-09-13 21:51 - 2013-08-10 07:22 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-09-13 21:51 - 2013-08-10 07:22 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-09-13 21:51 - 2013-08-10 07:22 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-09-13 21:51 - 2013-08-10 07:21 - 19246592 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-09-13 21:51 - 2013-08-10 07:21 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-09-13 21:51 - 2013-08-10 07:21 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-09-13 21:51 - 2013-08-10 07:20 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-09-13 21:51 - 2013-08-10 07:20 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-09-13 21:51 - 2013-08-10 07:20 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-09-13 21:51 - 2013-08-10 07:20 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-09-13 21:51 - 2013-08-10 07:20 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-09-13 21:51 - 2013-08-10 07:20 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-09-13 21:51 - 2013-08-10 07:20 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-09-13 21:51 - 2013-08-10 07:20 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-09-13 21:51 - 2013-08-10 05:59 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-09-13 21:51 - 2013-08-10 05:59 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 14332928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 02048000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-09-13 21:51 - 2013-08-10 05:58 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-09-13 21:51 - 2013-08-10 05:17 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-09-13 21:51 - 2013-08-10 05:07 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-09-13 21:51 - 2013-08-10 04:27 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-09-13 21:51 - 2013-08-10 04:17 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-09-12 13:21 - 2013-08-05 04:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys 2013-09-12 13:21 - 2013-08-02 04:23 - 05550528 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2013-09-12 13:21 - 2013-08-02 04:15 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2013-09-12 13:21 - 2013-08-02 04:15 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2013-09-12 13:21 - 2013-08-02 04:15 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2013-09-12 13:21 - 2013-08-02 04:15 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2013-09-12 13:21 - 2013-08-02 04:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2013-09-12 13:21 - 2013-08-02 04:14 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2013-09-12 13:21 - 2013-08-02 04:13 - 01161216 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2013-09-12 13:21 - 2013-08-02 04:13 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:59 - 03968960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2013-09-12 13:21 - 2013-08-02 03:59 - 03913664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2013-09-12 13:21 - 2013-08-02 03:51 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2013-09-12 13:21 - 2013-08-02 03:50 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2013-09-12 13:21 - 2013-08-02 03:50 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2013-09-12 13:21 - 2013-08-02 03:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2013-09-12 13:21 - 2013-08-02 03:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2013-09-12 13:21 - 2013-08-02 02:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2013-09-12 13:21 - 2013-08-02 02:45 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2013-09-12 13:20 - 2013-08-08 03:20 - 03155456 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-09-12 13:20 - 2013-08-02 04:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 02:45 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2013-09-12 13:20 - 2013-08-02 02:45 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2013-09-12 13:20 - 2013-08-02 02:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2013-09-12 13:20 - 2013-08-02 02:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 02:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 02:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2013-09-12 13:20 - 2013-08-02 02:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2013-09-12 13:20 - 2013-07-26 04:24 - 14172672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2013-09-12 13:20 - 2013-07-26 04:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2013-09-12 13:20 - 2013-07-26 03:55 - 12872704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2013-09-12 13:20 - 2013-07-26 03:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll 2013-09-11 19:52 - 2013-09-11 19:52 - 435300643 _____ C:\Windows\MEMORY.DMP 2013-09-11 19:52 - 2013-09-11 19:52 - 00305448 _____ C:\Windows\Minidump\091113-57236-01.dmp 2013-09-11 19:52 - 2013-09-11 19:52 - 00000000 ____D C:\Windows\Minidump 2013-09-09 09:58 - 2013-09-09 09:57 - 00425064 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2013-09-09 09:58 - 2013-09-09 09:57 - 00074272 _____ C:\Windows\system32\RtNicProp64.dll 2013-09-05 01:43 - 2013-09-05 01:43 - 00045880 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgrkx64.sys ==================== One Month Modified Files and Folders ======= 2013-09-30 09:59 - 2011-09-15 01:41 - 01372336 _____ C:\Windows\WindowsUpdate.log 2013-09-30 09:55 - 2013-09-30 09:55 - 00019267 _____ C:\Users\Jacqueline\Desktop\Finally.xlsx 2013-09-30 09:46 - 2012-04-03 08:19 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-09-30 09:45 - 2011-11-10 19:54 - 00000000 ____D C:\Users\Jacqueline\AppData\Roaming\Skype 2013-09-29 18:54 - 2011-10-28 18:02 - 00003970 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{9492721E-B895-4B3A-ACB6-B93217A00044} 2013-09-29 18:47 - 2013-08-19 11:58 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-09-29 18:45 - 2013-03-19 11:02 - 00000000 ____D C:\Users\Jacqueline\Desktop\DaF SS 13 2013-09-29 18:27 - 2013-03-04 11:32 - 00000000 ____D C:\ProgramData\MFAData 2013-09-29 10:03 - 2013-09-29 10:02 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\{4ECD048C-C046-4349-8FA6-D9880ECD362E} 2013-09-29 10:03 - 2009-07-14 06:45 - 00032064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-09-29 10:03 - 2009-07-14 06:45 - 00032064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-09-29 09:56 - 2012-03-12 20:32 - 00000000 ___RD C:\Users\Jacqueline\Dropbox 2013-09-29 09:56 - 2012-03-12 20:30 - 00000000 ____D C:\Users\Jacqueline\AppData\Roaming\Dropbox 2013-09-29 09:55 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-09-29 09:55 - 2009-07-14 06:51 - 00124270 _____ C:\Windows\setupact.log 2013-09-28 21:02 - 2013-09-28 21:02 - 01953880 _____ (Farbar) C:\Users\Jacqueline\Downloads\FRST64.exe 2013-09-28 20:47 - 2013-09-28 20:47 - 00110350 _____ C:\Users\Jacqueline\Desktop\JRT.txt 2013-09-28 20:37 - 2013-09-28 20:37 - 00000000 ____D C:\Windows\ERUNT 2013-09-28 20:36 - 2013-09-28 20:36 - 01030305 _____ (Thisisu) C:\Users\Jacqueline\Downloads\JRT.exe 2013-09-28 20:27 - 2013-09-28 20:27 - 00008562 _____ C:\Users\Jacqueline\Desktop\AdwCleaner[S0].txt 2013-09-28 20:24 - 2013-09-28 20:21 - 00000000 ____D C:\AdwCleaner 2013-09-28 20:24 - 2011-10-28 18:02 - 00000000 ___RD C:\Users\Jacqueline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-09-28 20:20 - 2013-09-28 20:20 - 01042066 _____ C:\Users\Jacqueline\Downloads\adwcleaner.exe 2013-09-28 08:54 - 2011-11-20 10:35 - 00000000 _____ C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt 2013-09-28 08:54 - 2011-10-29 17:02 - 00000052 _____ C:\Windows\SysWOW64\DOErrors.log 2013-09-27 21:34 - 2013-09-27 21:33 - 00032607 _____ C:\Users\Jacqueline\Downloads\Addition.txt 2013-09-27 21:30 - 2013-09-27 21:30 - 00000000 ____D C:\FRST 2013-09-27 20:10 - 2010-11-21 05:47 - 00382472 _____ C:\Windows\PFRO.log 2013-09-27 20:07 - 2011-10-29 19:26 - 00000000 ____D C:\Users\Jacqueline\AppData\Roaming\SoftGrid Client 2013-09-27 20:04 - 2013-07-06 09:37 - 00000000 ____D C:\Users\Jacqueline\Desktop\Pablo Arbeit 2013-09-27 20:04 - 2012-07-28 09:35 - 00003216 _____ C:\Windows\System32\Tasks\HPCeeScheduleForJacqueline 2013-09-27 20:04 - 2012-07-28 09:35 - 00000352 _____ C:\Windows\Tasks\HPCeeScheduleForJacqueline.job 2013-09-27 08:54 - 2013-09-27 08:54 - 00001109 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-09-27 08:54 - 2013-09-27 08:54 - 00000000 ____D C:\Users\Jacqueline\AppData\Roaming\Malwarebytes 2013-09-27 08:54 - 2013-09-27 08:54 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-09-27 08:54 - 2013-09-27 08:54 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-09-26 18:30 - 2013-09-26 18:30 - 00000000 ____D C:\Program Files (x86)\Windows Sidebar 2013-09-26 18:30 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Sidebar 2013-09-26 18:17 - 2013-05-29 09:27 - 00000000 ____D C:\Users\Jacqueline\Desktop\Pablo 2013-09-26 17:48 - 2013-09-26 17:47 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Jacqueline\Downloads\mbam-setup-1.75.0.1300(1).exe 2013-09-26 17:48 - 2013-09-26 17:44 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Jacqueline\Downloads\mbam-setup-1.75.0.1300.exe 2013-09-26 16:43 - 2013-03-04 11:32 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Avg2013 2013-09-26 16:05 - 2013-09-26 16:05 - 02092792 _____ C:\Users\Jacqueline\Downloads\avira_free_4052_antivirus.exe 2013-09-26 15:49 - 2013-09-26 15:49 - 00000000 ____D C:\Users\Jacqueline\Desktop\Nachhilfe 2013-09-26 15:17 - 2011-07-19 20:45 - 00697322 _____ C:\Windows\system32\perfh007.dat 2013-09-26 15:17 - 2011-07-19 20:45 - 00148328 _____ C:\Windows\system32\perfc007.dat 2013-09-26 15:17 - 2009-07-14 07:13 - 01614036 _____ C:\Windows\system32\PerfStringBackup.INI 2013-09-26 15:16 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF 2013-09-26 10:52 - 2013-09-26 10:52 - 00000000 ____D C:\Users\Public\Documents\CrashDump 2013-09-26 10:23 - 2011-07-19 11:42 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-09-26 10:22 - 2013-09-26 10:06 - 00000000 ____D C:\Program Files (x86)\Samsung 2013-09-26 10:22 - 2013-09-26 10:04 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Downloaded Installations 2013-09-26 10:21 - 2013-09-26 10:11 - 00002002 _____ C:\Users\Public\Desktop\Samsung Kies (Lite).lnk 2013-09-26 10:14 - 2013-09-26 10:14 - 00000000 ____D C:\Program Files (x86)\MarkAny 2013-09-26 10:11 - 2013-09-26 10:11 - 00001992 _____ C:\Users\Public\Desktop\Samsung Kies.lnk 2013-09-26 10:11 - 2013-09-26 10:11 - 00000000 ____D C:\Users\Public\Documents\NativeFus_Log 2013-09-26 10:11 - 2013-09-26 10:11 - 00000000 ____D C:\Users\Jacqueline\Documents\samsung 2013-09-26 10:11 - 2013-09-26 10:11 - 00000000 ____D C:\Users\Jacqueline\AppData\Roaming\Samsung 2013-09-26 10:11 - 2013-09-26 10:11 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Samsung 2013-09-26 10:09 - 2013-09-26 10:06 - 00000000 ____D C:\ProgramData\Samsung 2013-09-26 10:03 - 2013-09-26 10:03 - 69552992 _____ (Samsung Electronics Co., Ltd. ) C:\Users\Jacqueline\Downloads\KiesSetup.exe 2013-09-26 08:25 - 2011-11-08 21:21 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\CrashDumps 2013-09-25 12:49 - 2013-09-25 12:49 - 00000000 ____D C:\Users\Jacqueline\ChromeExtensions 2013-09-25 12:49 - 2013-09-25 12:49 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Temp62cffb5f9d426b6d803b2d8a9bdd823d 2013-09-25 12:49 - 2013-09-25 12:49 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Temp5482275e3530aa9bd615635939968a27 2013-09-25 12:49 - 2013-09-25 12:49 - 00000000 ____D C:\Users\Jacqueline\AppData\Local\Temp2daf80f7e738224c09a386a7a8275c1d 2013-09-25 12:49 - 2011-10-28 17:56 - 00000000 ____D C:\Users\Jacqueline 2013-09-25 12:48 - 2013-09-25 12:48 - 01345792 _____ C:\Users\Jacqueline\Downloads\SuperOneClick-Setup.exe 2013-09-25 12:42 - 2013-09-25 12:42 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_WinUsb_01009.Wdf 2013-09-25 11:44 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2013-09-22 19:03 - 2013-09-22 18:10 - 00000000 ____D C:\Users\Jacqueline\Desktop\Literatur Diplomarbeit 2013-09-20 10:46 - 2012-04-03 08:19 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-09-20 10:46 - 2012-04-03 08:19 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-09-20 10:46 - 2011-07-19 11:23 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-09-14 19:04 - 2013-03-04 11:43 - 00000981 _____ C:\Users\Public\Desktop\AVG 2013.lnk 2013-09-14 18:51 - 2011-10-28 18:02 - 00000000 ___RD C:\Users\Jacqueline\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-09-14 18:50 - 2009-07-14 06:45 - 00317160 _____ C:\Windows\system32\FNTCACHE.DAT 2013-09-13 21:51 - 2011-10-29 19:25 - 00000000 ____D C:\Program Files (x86)\Microsoft Application Virtualization Client 2013-09-13 21:51 - 2011-09-15 01:51 - 01641654 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2013-09-13 20:48 - 2012-07-20 09:06 - 00000000 ____D C:\Users\Jacqueline\Desktop\Sonstiges 2013-09-11 19:52 - 2013-09-11 19:52 - 435300643 _____ C:\Windows\MEMORY.DMP 2013-09-11 19:52 - 2013-09-11 19:52 - 00305448 _____ C:\Windows\Minidump\091113-57236-01.dmp 2013-09-11 19:52 - 2013-09-11 19:52 - 00000000 ____D C:\Windows\Minidump 2013-09-11 19:50 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\LiveKernelReports 2013-09-11 11:41 - 2011-10-28 18:00 - 00074136 _____ C:\Users\Jacqueline\AppData\Local\GDIPFONTCACHEV1.DAT 2013-09-09 10:07 - 2011-07-19 11:31 - 00000000 ____D C:\ProgramData\Hewlett-Packard 2013-09-09 10:06 - 2011-07-19 11:18 - 00000000 ____D C:\Program Files (x86)\Hewlett-Packard 2013-09-09 10:05 - 2011-02-10 21:23 - 00000000 ____D C:\SWSetup 2013-09-09 10:01 - 2011-09-15 01:54 - 00000000 ____D C:\Program Files (x86)\Realtek 2013-09-09 10:00 - 2011-09-15 01:57 - 00878184 _____ (Realtek Semiconductor Corporation ) C:\Windows\system32\Drivers\rtl8192ce.sys 2013-09-09 09:57 - 2013-09-09 09:58 - 00425064 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2013-09-09 09:57 - 2013-09-09 09:58 - 00074272 _____ C:\Windows\system32\RtNicProp64.dll 2013-09-09 09:57 - 2011-09-15 01:55 - 00107552 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll 2013-09-05 01:43 - 2013-09-05 01:43 - 00045880 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgrkx64.sys 2013-09-03 18:17 - 2011-12-14 19:43 - 00000000 ____D C:\ProgramData\lx_Cats Some content of TEMP: ==================== C:\Users\Jacqueline\AppData\Local\Temp\amazonicon.exe C:\Users\Jacqueline\AppData\Local\Temp\amazoninstallernircmdc.exe C:\Users\Jacqueline\AppData\Local\Temp\comic!.exe C:\Users\Jacqueline\AppData\Local\Temp\contentDATs.exe C:\Users\Jacqueline\AppData\Local\Temp\Extract.exe C:\Users\Jacqueline\AppData\Local\Temp\HPHelpUpdater.exe C:\Users\Jacqueline\AppData\Local\Temp\ICReinstall_bechdel_fun.pdf.exe C:\Users\Jacqueline\AppData\Local\Temp\installhelper.dll C:\Users\Jacqueline\AppData\Local\Temp\install_reader10_de_mssa_aih.exe C:\Users\Jacqueline\AppData\Local\Temp\IPx64_1031.exe C:\Users\Jacqueline\AppData\Local\Temp\JavaIC.dll C:\Users\Jacqueline\AppData\Local\Temp\jre-6u33-windows-i586-iftw.exe C:\Users\Jacqueline\AppData\Local\Temp\jre-6u37-windows-i586-iftw.exe C:\Users\Jacqueline\AppData\Local\Temp\jre-6u39-windows-i586-iftw.exe C:\Users\Jacqueline\AppData\Local\Temp\jre-7u15-windows-i586-iftw.exe C:\Users\Jacqueline\AppData\Local\Temp\msbtwygu.dll C:\Users\Jacqueline\AppData\Local\Temp\msscct32.dll C:\Users\Jacqueline\AppData\Local\Temp\Quarantine.exe C:\Users\Jacqueline\AppData\Local\Temp\Resource.exe C:\Users\Jacqueline\AppData\Local\Temp\sdanircmdc.exe C:\Users\Jacqueline\AppData\Local\Temp\SecurityScan_Release.exe C:\Users\Jacqueline\AppData\Local\Temp\SIMEEIInstaller.exe C:\Users\Jacqueline\AppData\Local\Temp\SkypeSetup.exe C:\Users\Jacqueline\AppData\Local\Temp\SP53794.exe C:\Users\Jacqueline\AppData\Local\Temp\sp54620.exe C:\Users\Jacqueline\AppData\Local\Temp\SP54714.exe C:\Users\Jacqueline\AppData\Local\Temp\SP55081.exe C:\Users\Jacqueline\AppData\Local\Temp\SP55083.exe C:\Users\Jacqueline\AppData\Local\Temp\SP55085.exe C:\Users\Jacqueline\AppData\Local\Temp\SP55152.exe C:\Users\Jacqueline\AppData\Local\Temp\SP56215.exe C:\Users\Jacqueline\AppData\Local\Temp\SP56878.exe C:\Users\Jacqueline\AppData\Local\Temp\SP56929.exe C:\Users\Jacqueline\AppData\Local\Temp\SP57049.exe C:\Users\Jacqueline\AppData\Local\Temp\sp58915.exe C:\Users\Jacqueline\AppData\Local\Temp\SP59792.exe C:\Users\Jacqueline\AppData\Local\Temp\SRAssetsHelper.dll C:\Users\Jacqueline\AppData\Local\Temp\tbuTo0.dll C:\Users\Jacqueline\AppData\Local\Temp\tbWinl.dll C:\Users\Jacqueline\AppData\Local\Temp\UninstallHPSA.exe C:\Users\Jacqueline\AppData\Local\Temp\utt2CE2.tmp.exe C:\Users\Jacqueline\AppData\Local\Temp\utt456A.tmp.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-09-23 21:53 ==================== End Of Log ============================ --- --- --- Prinzipiell habe ich keine Probleme mehr JUHUUUU!!! Danke danke danke! Ich hätte nur noch einige Fragen: -) Kann ich mir Mozilla nun wieder herunterladen? -) Soll ich all die Programme die ich jetzt herunter geladen habe, wieder deinstallieren? -) Welchen kostenlosen Antivirus empfiehlst du mir?? VIELEN DANK SCHRAUBER!!!! |
30.09.2013, 16:45 | #10 |
/// the machine /// TB-Ausbilder | Virus: getwindowinfo & amazonicon & giga software Wenns kostenlos sein muss Avast. Firefox kannst wieder installieren. Downloade Dir bitte TFC ( von Oldtimer ) und speichere die Datei auf dem Desktop. Schließe nun alle offenen Programme und trenne Dich von dem Internet. Doppelklick auf die TFC.exe und drücke auf Start. Sollte TFC nicht alle Dateien löschen können wird es einen Neustart verlangen. Dies bitte zulassen. Fertig Die Reihenfolge ist hier entscheidend.
Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
30.09.2013, 18:21 | #11 |
| Virus: getwindowinfo & amazonicon & giga software WOW, super! Vielen vielen Dank für deine kompetente Hilfe!!! Hat alles super geklappt und ich bin Virenfrei! Ich freu mich wie ein Schaukelpferd!!! Danke! |
01.10.2013, 15:52 | #12 |
/// the machine /// TB-Ausbilder | Virus: getwindowinfo & amazonicon & giga software Gern Geschehen
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Virus: getwindowinfo & amazonicon & giga software |
amazonicon, antimalware, brauche, download, entfernung, getwindowinfo, homepage, icon, internetexplorer, java/exploit.cve-2012-1723.bt, java/exploit.cve-2012-1723.fr, malwarebytes, malwarebytes antimalware, profi, unbedingt, win32/kryptik.bcoi, win32/kryptik.berw, win32/ponmocup.aa, windows, windows 7 |