|
Plagegeister aller Art und deren Bekämpfung: Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dllWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
16.11.2013, 22:06 | #1 |
| Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll Hallo, nach dem Starten und auch mal zwischen durch bekomme ich die Fehlermeldung < RunDll > - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll - Das angegebene Modul wurde nicht gefunden. Mein Rechner ist dadurch noch erheblich langsamer als vorher (OS Win7). Diese Fehlermeldung bekomme ich nachdem ich Free System Utilities 1.0 einmal zu oft verwendet habe. Meine Paswörter aus dem Firefox wurden dabei auch gelöscht. Ich habe bisher alle Probleme die ich mit Viren, Malware und Systemfehlern hatte, alleine geregelt bekommen aber hier komme ich ohne Hilfe nicht weiter. Ich bin nicht ganz unerfahren, aber kein Crack. Ich eigne mir bei Bedarf immer nur das notwendigste an und das reicht bei diesen Problem leider nicht. Ich hoffe das hier jemand ist der bereit ist mir zu helfen, danke schonmal im voraus. |
17.11.2013, 01:03 | #2 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll Hallo und
__________________Hast du noch weitere Logs (mit Funden)? Malwarebytes und/oder andere Virenscanner, sind die mal fündig geworden? Ich frage deswegen nach => http://www.trojaner-board.de/125889-...tml#post941520 Bitte keine neuen Virenscans machen sondern erst nur schon vorhandene Logs in CODE-Tags posten! Relevant sind nur Logs der letzten 7 Tage bzw. seitdem das Problem besteht! Zudem bitte auch ein Log mit Farbars Tool machen: Scan mit Farbar's Recovery Scan Tool (FRST) Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
Lesestoff: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ |
19.11.2013, 00:08 | #3 |
| Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dllCode:
ATTFilter Search results from Spybot - Search & Destroy 16.11.13 12:47:33 Scan took 02:16:12. 81 items found. Babylon.Toolbar: [SBI $3BE29F71] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\AppID\{BDB69379-802F-4eaf-B541-F8DE92DD98DB} SimplyGen.Toolbar: [SBI $5476DC0C] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\Software\Microsoft\Internet Explorer\SearchScopes\TopResultURLFallback SimplyGen.Toolbar: [SBI $81A00AE4] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\Software\Microsoft\Internet Explorer\SearchScopes\URL SimplyGen.Toolbar: [SBI $35ED56AD] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\Software\Microsoft\Internet Explorer\SearchURI\(Default) SimplyGen.Toolbar: [SBI $8F7C0998] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\Software\Microsoft\Internet Explorer\SearchUrl\(Default) SimplyGen.Toolbar: [SBI $8080EEE2] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\Software\Microsoft\Internet Explorer\AboutURLs\Tabs SimplyGen.Toolbar: [SBI $509C97AB] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\Software\Microsoft\Internet Explorer\Search\Default_Search_URL SimplyGen.Toolbar: [SBI $6610EF24] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\Software\Microsoft\Internet Explorer\Search\Search Bar SimplyGen.Toolbar: [SBI $A640B99D] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\Software\Microsoft\Internet Explorer\Search\Search Page SimplyGen.Toolbar: [SBI $C773531B] Settings (Registry Key, nothing done) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} SimplyGen.Toolbar: [SBI $4F65F2AA] Settings (Registry Change, nothing done) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\AboutURLs\Tabs SimplyGen.Toolbar: [SBI $C1B8B439] Settings (Registry Change, nothing done) HKEY_LOCAL_MACHINE\Software\Classes\Software\Microsoft\Internet Explorer\Main\Default_Search_URL SimplyGen.Toolbar: [SBI $FEB43ED4] Settings (Registry Change, nothing done) HKEY_LOCAL_MACHINE\Software\Classes\Software\Microsoft\Internet Explorer\Main\Search Bar SimplyGen.Toolbar: [SBI $1B65EF50] Settings (Registry Change, nothing done) HKEY_LOCAL_MACHINE\Software\Classes\Software\Microsoft\Internet Explorer\Main\Search Page SimplyGen.Toolbar: [SBI $2E8E7839] Settings (Registry Change, nothing done) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\Search Bar SimplyGen.Toolbar: [SBI $C50E4BD3] Settings (Registry Change, nothing done) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\Search Page SimplyGen.Toolbar: [SBI $A4EA74C8] Settings (Registry Change, nothing done) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchURI\(Default) SimplyGen.Toolbar: [SBI $1E7B2BFD] Settings (Registry Change, nothing done) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl\(Default) SimplyGen.Toolbar: [SBI $0DE5E1D7] Settings (Registry Change, nothing done) HKEY_USERS\S-1-5-21-2524179397-3888794832-3099966248-1000\Software\Microsoft\Internet Explorer\AboutURLs\Tabs SimplyGen.Toolbar: [SBI $FEF041CA] Settings (Registry Change, nothing done) HKEY_USERS\S-1-5-21-2524179397-3888794832-3099966248-1000\Software\Microsoft\Internet Explorer\Search\Search Bar SimplyGen.Toolbar: [SBI $E16A964C] Settings (Registry Change, nothing done) HKEY_USERS\S-1-5-21-2524179397-3888794832-3099966248-1000\Software\Microsoft\Internet Explorer\Search\Search Page SimplyGen.Toolbar: [SBI $C47E9EC0] Settings (Registry Change, nothing done) HKEY_USERS\S-1-5-21-2524179397-3888794832-3099966248-1000\Software\Microsoft\Internet Explorer\SearchURI\(Default) SimplyGen.Toolbar: [SBI $7EEFC1F5] Settings (Registry Change, nothing done) HKEY_USERS\S-1-5-21-2524179397-3888794832-3099966248-1000\Software\Microsoft\Internet Explorer\SearchUrl\(Default) Yontoo.Pagerage: [SBI $7EA79EE0] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\CLSID\{80922ee0-8a76-46ae-95d5-bd3c3fe0708d} Banyan.eSafe: [SBI $F482B9B1] Settings (Registry Key, nothing done) HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Eventlog\Application\WsysSvc Banyan.eSafe: [SBI $1F28F10C] Settings (Registry Key, nothing done) HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Eventlog\Application\WsysSvc Banyan.eSafe: [SBI $043C19FB] Program directory (Directory, nothing done) C:\ProgramData\eSafe\ Directory.subfile=C:\ProgramData\eSafe\log\eGdpSvc.LOG Directory.subfile.size=11850 Directory.subfile.md5=05A28949F3C0E19427DA610622919E1E Directory.subfile.filedate=1383690558 Directory.subfile.filedatetext=2013-11-05 23:29:17 Barowwsoe2Save: [SBI $F5174E26] Program directory (Directory, nothing done) C:\Program Files\Optimizer Pro\ Elex.Desk365: [SBI $C6008D91] Settings (Registry Key, nothing done) HKEY_LOCAL_MACHINE\SOFTWARE\deskSvc Elex.Desk365: [SBI $487B5F3A] Settings (Registry Key, nothing done) HKEY_LOCAL_MACHINE\SOFTWARE\V9 Elex.Desk365: [SBI $C8478A32] Settings (Registry Key, nothing done) HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Eventlog\Application\desksvc Elex.Desk365: [SBI $1BFEF581] Settings (Registry Key, nothing done) HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\desksvc Elex.Desk365: [SBI $5898CD7C] Program directory (Directory, nothing done) C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\ Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\accelerate Directory.subfile.size=0 Directory.subfile.md5=D41D8CD98F00B204E9800998ECF8427E Directory.subfile.filedate=1383689158 Directory.subfile.filedatetext=2013-11-05 23:05:58 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\desk_bkg_list.xml Directory.subfile.size=1434 Directory.subfile.md5=292ECDA960D994D90A33A5E7C3EA9F81 Directory.subfile.filedate=1383689164 Directory.subfile.filedatetext=2013-11-05 23:06:04 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\desk_list.xml Directory.subfile.size=4318 Directory.subfile.md5=3FA9E205526B13074690CD6FFEF27AE1 Directory.subfile.filedate=1383689667 Directory.subfile.filedatetext=2013-11-05 23:14:27 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\desk_settings.ini Directory.subfile.size=80 Directory.subfile.md5=6E8ECBF4B96757DFC8B42989C7B4C0BA Directory.subfile.filedate=1383689165 Directory.subfile.filedatetext=2013-11-05 23:06:05 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\firstrun Directory.subfile.size=0 Directory.subfile.md5=D41D8CD98F00B204E9800998ECF8427E Directory.subfile.filedate=1383689158 Directory.subfile.filedatetext=2013-11-05 23:05:58 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\process_mgr.xml Directory.subfile.size=220 Directory.subfile.md5=0FBAFD0F852466354337E54EEF679AC2 Directory.subfile.filedate=1383689849 Directory.subfile.filedatetext=2013-11-05 23:17:28 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote.xml Directory.subfile.size=5926 Directory.subfile.md5=B4D81B2192BB4FF7AC68105E338DF78D Directory.subfile.filedate=1383689165 Directory.subfile.filedatetext=2013-11-05 23:06:04 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\components\component_libcef_1.1364.1123.exe Directory.subfile.size=10434864 Directory.subfile.md5=8E390845A88CB1E0406CE350F570CF4B Directory.subfile.filedate=1383689259 Directory.subfile.filedatetext=2013-11-05 23:07:39 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\desk_bkg\desk_bkg_1.png Directory.subfile.size=79965 Directory.subfile.md5=39CB48E50C1687943D9D8243534A978C Directory.subfile.filedate=1383689159 Directory.subfile.filedatetext=2013-11-05 23:05:59 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\desk_bkg\desk_bkg_2.png Directory.subfile.size=262007 Directory.subfile.md5=600C71AC313C6D8CB86C8DBF97808CB2 Directory.subfile.filedate=1383689159 Directory.subfile.filedatetext=2013-11-05 23:05:59 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\desk_bkg\desk_bkg_3.png Directory.subfile.size=109761 Directory.subfile.md5=35361BC157F356FA8B05238790C70C1E Directory.subfile.filedate=1383689159 Directory.subfile.filedatetext=2013-11-05 23:05:59 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\desk_bkg\desk_bkg_4.png Directory.subfile.size=311068 Directory.subfile.md5=472564D9BE514897A479679A16AF6295 Directory.subfile.filedate=1383689160 Directory.subfile.filedatetext=2013-11-05 23:05:59 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\desk_bkg\desk_bkg_5.png Directory.subfile.size=201084 Directory.subfile.md5=7BA3473A9526CDB3680E823C3823AA0C Directory.subfile.filedate=1383689160 Directory.subfile.filedatetext=2013-11-05 23:05:59 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\desk_bkg\desk_bkg_default.png Directory.subfile.size=2031 Directory.subfile.md5=F5B39121E867C9936CCB6268837A1894 Directory.subfile.filedate=1383689160 Directory.subfile.filedatetext=2013-11-05 23:06:00 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\337_7c9140b13c049fd26989f7fa25b77cb1_48_48.png Directory.subfile.size=3387 Directory.subfile.md5=0F81CB54F5E938AA0DF1647C9E91F944 Directory.subfile.filedate=1383689369 Directory.subfile.filedatetext=2013-11-05 23:09:29 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\angrybirds_00ff92c12703baaf0130d6aec427d047_48_48.png Directory.subfile.size=3497 Directory.subfile.md5=FB4E1DEAFC3145BE69A525D646982649 Directory.subfile.filedate=1383689349 Directory.subfile.filedatetext=2013-11-05 23:09:09 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\Barbie_00a67ff4ef657679a6c88553135d62ad_48_48.png Directory.subfile.size=6469 Directory.subfile.md5=6FEC5304BA5E57CD34F7FB9818BEF420 Directory.subfile.filedate=1383689372 Directory.subfile.filedatetext=2013-11-05 23:09:31 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\BigFarm_de933b0e5218a4db24bebe3d55ed3558_48_48.png Directory.subfile.size=6293 Directory.subfile.md5=E646335099C567E2B8EDC0BE23FAE1E7 Directory.subfile.filedate=1383689351 Directory.subfile.filedatetext=2013-11-05 23:09:11 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\CCleaner_dee5cce01ac81d7a7a6794a92a62bfa4.ico Directory.subfile.size=71313 Directory.subfile.md5=7674A834A680252C5086098DD5DFCFA2 Directory.subfile.filedate=1383689656 Directory.subfile.filedatetext=2013-11-05 23:14:16 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\CCleaner_dee5cce01ac81d7a7a6794a92a62bfa4_48_48.png Directory.subfile.size=4857 Directory.subfile.md5=67DC0EB2B9EA9969E2C9623BD3BE36D1 Directory.subfile.filedate=1383689662 Directory.subfile.filedatetext=2013-11-05 23:14:21 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\Empire_22b42f57d1c467841280810e218d5510_48_48.png Directory.subfile.size=4485 Directory.subfile.md5=523516E00F26A9DCC3179D2F710A5D97 Directory.subfile.filedate=1383689355 Directory.subfile.filedatetext=2013-11-05 23:09:14 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\ESPN_a7b078f5f5f5b87efcef66ab5783cf9d_48_48.png Directory.subfile.size=1673 Directory.subfile.md5=81A6E66F91C4CB5AC3E1EFC7A38CB632 Directory.subfile.filedate=1383689362 Directory.subfile.filedatetext=2013-11-05 23:09:21 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\Facebook_aab07bc79cf599b25c0110f32d46a3ef_48_48.png Directory.subfile.size=2947 Directory.subfile.md5=5889699F0C98BAAE054385EE602765ED Directory.subfile.filedate=1383689374 Directory.subfile.filedatetext=2013-11-05 23:09:33 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\gcalendar_50b3e3c5fc202f0cfcae8032b2465c1b_48_48.png Directory.subfile.size=1678 Directory.subfile.md5=0562CFC214EC26501CF3DBA7706BD0B6 Directory.subfile.filedate=1383689364 Directory.subfile.filedatetext=2013-11-05 23:09:23 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\Gmail_731b6d011bd9f67463a916a496775935_48_48.png Directory.subfile.size=1578 Directory.subfile.md5=3688623FB3CD88347C4FFF62849275F0 Directory.subfile.filedate=1383689359 Directory.subfile.filedatetext=2013-11-05 23:09:18 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\Google_60d75cb277f0c452fa60dba8350caf65_48_48.png Directory.subfile.size=5539 Directory.subfile.md5=C561A91188026FD2BE462838BB8495F0 Directory.subfile.filedate=1383689379 Directory.subfile.filedatetext=2013-11-05 23:09:38 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\iexplore_fc981e830600c8c44f26996ccab29414.ico Directory.subfile.size=82151 Directory.subfile.md5=12CE4FAE05C5CC52955D83002528FD53 Directory.subfile.filedate=1383689346 Directory.subfile.filedatetext=2013-11-05 23:09:06 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\iexplore_fc981e830600c8c44f26996ccab29414_48_48.png Directory.subfile.size=4985 Directory.subfile.md5=89DF0607A2148022E73CF816E7C9C000 Directory.subfile.filedate=1383689346 Directory.subfile.filedatetext=2013-11-05 23:09:06 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\Mario_52934d81761dc31187a93a3a0be7fecc_48_48.png Directory.subfile.size=7410 Directory.subfile.md5=8E2C1FB25D5A43E50050DA1E75B8E829 Directory.subfile.filedate=1383689371 Directory.subfile.filedatetext=2013-11-05 23:09:31 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\Opera_8594f203304b300fc83e95129a80b002.ico Directory.subfile.size=367958 Directory.subfile.md5=65526D895A005097710560E854E4BD40 Directory.subfile.filedate=1383689346 Directory.subfile.filedatetext=2013-11-05 23:09:05 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\Opera_8594f203304b300fc83e95129a80b002_48_48.png Directory.subfile.size=4257 Directory.subfile.md5=30780730CCCB29DC735299A344DB7023 Directory.subfile.filedate=1383689346 Directory.subfile.filedatetext=2013-11-05 23:09:05 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\Outlook_6f817b67fa6af1a9c8abfa3813a8595c_48_48.png Directory.subfile.size=1034 Directory.subfile.md5=12A0577A36B6102DE489C120629282DB Directory.subfile.filedate=1383689360 Directory.subfile.filedatetext=2013-11-05 23:09:20 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\pulse_b5a242da04cc06eacd02b1ca41e3583c_48_48.png Directory.subfile.size=1471 Directory.subfile.md5=C7BABCC90709D35E29604DAC0F62192C Directory.subfile.filedate=1383689366 Directory.subfile.filedatetext=2013-11-05 23:09:25 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\sys_computer_48_48.png Directory.subfile.size=4955 Directory.subfile.md5=11828301476D2EB5811BE13684251EC5 Directory.subfile.filedate=1383689345 Directory.subfile.filedatetext=2013-11-05 23:09:05 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\sys_control_panel_48_48.png Directory.subfile.size=4451 Directory.subfile.md5=97196978D6E6ADF86B46094BA17FBD24 Directory.subfile.filedate=1383689346 Directory.subfile.filedatetext=2013-11-05 23:09:06 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\sys_my_documents_48_48.png Directory.subfile.size=3987 Directory.subfile.md5=BD685DC2A0ADE90D4D9E48A79AA41DB7 Directory.subfile.filedate=1383689347 Directory.subfile.filedatetext=2013-11-05 23:09:06 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\Twitter_ebddd85ec04b7b94a2b2e97b73a90a4a_48_48.png Directory.subfile.size=3696 Directory.subfile.md5=390D15807C142DFC7630D11F9DC022F6 Directory.subfile.filedate=1383689375 Directory.subfile.filedatetext=2013-11-05 23:09:35 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\Youtube_bf18fdfc4aefd6417a8bacae4be5b415_48_48.png Directory.subfile.size=4469 Directory.subfile.md5=5E075D860EA8A7D9DD510F44BB82C2E5 Directory.subfile.filedate=1383689376 Directory.subfile.filedatetext=2013-11-05 23:09:36 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote\337.ico Directory.subfile.size=15086 Directory.subfile.md5=761DD2166214981120FAD0FF9F43C479 Directory.subfile.filedate=1383689164 Directory.subfile.filedatetext=2013-11-05 23:06:04 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote\337_7c9140b13c049fd26989f7fa25b77cb1.ico Directory.subfile.size=15086 Directory.subfile.md5=761DD2166214981120FAD0FF9F43C479 Directory.subfile.filedate=1383689369 Directory.subfile.filedatetext=2013-11-05 23:09:29 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote\barbie.ico Directory.subfile.size=15086 Directory.subfile.md5=690F18A933D2602125041B2613992063 Directory.subfile.filedate=1383689164 Directory.subfile.filedatetext=2013-11-05 23:06:04 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote\Barbie_00a67ff4ef657679a6c88553135d62ad.ico Directory.subfile.size=15086 Directory.subfile.md5=690F18A933D2602125041B2613992063 Directory.subfile.filedate=1383689372 Directory.subfile.filedatetext=2013-11-05 23:09:31 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote\facebook.ico Directory.subfile.size=13942 Directory.subfile.md5=6BF7864D2BC71231FF1E9B22DAE7F627 Directory.subfile.filedate=1383689164 Directory.subfile.filedatetext=2013-11-05 23:06:04 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote\Facebook_aab07bc79cf599b25c0110f32d46a3ef.ico Directory.subfile.size=13942 Directory.subfile.md5=6BF7864D2BC71231FF1E9B22DAE7F627 Directory.subfile.filedate=1383689374 Directory.subfile.filedatetext=2013-11-05 23:09:33 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote\GameCenter.ico Directory.subfile.size=13942 Directory.subfile.md5=C43C4159B62E4EAED3C7677902627806 Directory.subfile.filedate=1383689164 Directory.subfile.filedatetext=2013-11-05 23:06:04 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote\google.ico Directory.subfile.size=13942 Directory.subfile.md5=638D1346BB53FCF63CA208A6A566528E Directory.subfile.filedate=1383689164 Directory.subfile.filedatetext=2013-11-05 23:06:04 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote\Google_60d75cb277f0c452fa60dba8350caf65.ico Directory.subfile.size=13942 Directory.subfile.md5=638D1346BB53FCF63CA208A6A566528E Directory.subfile.filedate=1383689378 Directory.subfile.filedatetext=2013-11-05 23:09:37 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote\mario.ico Directory.subfile.size=15086 Directory.subfile.md5=2A35CB9031362A53D31436247DB07EBA Directory.subfile.filedate=1383689164 Directory.subfile.filedatetext=2013-11-05 23:06:04 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote\Mario_52934d81761dc31187a93a3a0be7fecc.ico Directory.subfile.size=15086 Directory.subfile.md5=2A35CB9031362A53D31436247DB07EBA Directory.subfile.filedate=1383689370 Directory.subfile.filedatetext=2013-11-05 23:09:30 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote\twitter.ico Directory.subfile.size=13942 Directory.subfile.md5=E559051E49401DADC174EB19B59C7CA7 Directory.subfile.filedate=1383689164 Directory.subfile.filedatetext=2013-11-05 23:06:04 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote\Twitter_ebddd85ec04b7b94a2b2e97b73a90a4a.ico Directory.subfile.size=13942 Directory.subfile.md5=E559051E49401DADC174EB19B59C7CA7 Directory.subfile.filedate=1383689375 Directory.subfile.filedatetext=2013-11-05 23:09:35 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote\v9.ico Directory.subfile.size=13942 Directory.subfile.md5=BD31640E318030A99D4E7A1228D9FC1F Directory.subfile.filedate=1383689164 Directory.subfile.filedatetext=2013-11-05 23:06:04 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote\youtube.ico Directory.subfile.size=13942 Directory.subfile.md5=71DA62EE593F47DB9D9560E680989B9D Directory.subfile.filedate=1383689164 Directory.subfile.filedatetext=2013-11-05 23:06:04 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote\Youtube_bf18fdfc4aefd6417a8bacae4be5b415.ico Directory.subfile.size=13942 Directory.subfile.md5=71DA62EE593F47DB9D9560E680989B9D Directory.subfile.filedate=1383689376 Directory.subfile.filedatetext=2013-11-05 23:09:36 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\sysicons\0737cc0646562366bf607aa1fa2a03bd_21.ico Directory.subfile.size=29926 Directory.subfile.md5=7CBF0F9132A73607AF671090D299095E Directory.subfile.filedate=1383689346 Directory.subfile.filedatetext=2013-11-05 23:09:06 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\sysicons\07584c03a5dd11a6104e45e8ad03b3fe_104.ico Directory.subfile.size=99567 Directory.subfile.md5=AA7F7C9CA7C2A3E8B33C99338E0020D3 Directory.subfile.filedate=1383689345 Directory.subfile.filedatetext=2013-11-05 23:09:04 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\sysicons\07584c03a5dd11a6104e45e8ad03b3fe_107.ico Directory.subfile.size=79781 Directory.subfile.md5=F0CFA464CDD86350DAE8E1AC6E3A25C3 Directory.subfile.filedate=1383689347 Directory.subfile.filedatetext=2013-11-05 23:09:06 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\wp\r0.jpg Directory.subfile.size=218023 Directory.subfile.md5=7C45B7F001DBA3370D041B53EE843075 Directory.subfile.filedate=1383689350 Directory.subfile.filedatetext=2013-11-05 23:09:10 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\wp\r1.jpg Directory.subfile.size=191011 Directory.subfile.md5=BFF12C91F2DCA192FB2AF51321CCEA71 Directory.subfile.filedate=1383689348 Directory.subfile.filedatetext=2013-11-05 23:09:07 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\wp\r2.jpg Directory.subfile.size=283094 Directory.subfile.md5=D33F802276360250E4C7E6B985E3624C Directory.subfile.filedate=1383689349 Directory.subfile.filedatetext=2013-11-05 23:09:09 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\wp\r3.jpg Directory.subfile.size=106599 Directory.subfile.md5=25AB52919B7370C84485C2F1508EF9B2 Directory.subfile.filedate=1383689351 Directory.subfile.filedatetext=2013-11-05 23:09:10 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\wp\r4.jpg Directory.subfile.size=135948 Directory.subfile.md5=7D84542B52308B3FA42595929F8832F1 Directory.subfile.filedate=1383689349 Directory.subfile.filedatetext=2013-11-05 23:09:09 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\wp\r5.jpg Directory.subfile.size=134889 Directory.subfile.md5=AEABC8EE5D6A8476F7622CC208DD207D Directory.subfile.filedate=1383689348 Directory.subfile.filedatetext=2013-11-05 23:09:07 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\wp\r6.jpg Directory.subfile.size=73669 Directory.subfile.md5=44896DB973A2CBA4672280036F74A699 Directory.subfile.filedate=1383689349 Directory.subfile.filedatetext=2013-11-05 23:09:09 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\wp\r7.jpg Directory.subfile.size=120720 Directory.subfile.md5=653EA736D13D96169483EA89C4A67082 Directory.subfile.filedate=1383689349 Directory.subfile.filedatetext=2013-11-05 23:09:09 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\wp\r8.jpg Directory.subfile.size=272547 Directory.subfile.md5=ACFCDE97F94696639696C975B54AA1F4 Directory.subfile.filedate=1383689349 Directory.subfile.filedatetext=2013-11-05 23:09:08 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\wp\r9.jpg Directory.subfile.size=108644 Directory.subfile.md5=3C65AF383BC4ACC0A635A012B7826808 Directory.subfile.filedate=1383689348 Directory.subfile.filedatetext=2013-11-05 23:09:08 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\app\config\1\angrybirds.db Directory.subfile.size=836 Directory.subfile.md5=A22A1487A1CFCE12EFE7264B837D7DC1 Directory.subfile.filedate=1383689349 Directory.subfile.filedatetext=2013-11-05 23:09:09 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\app\config\1\angrybirds.ico Directory.subfile.size=15086 Directory.subfile.md5=04678F375785D80A9E22FF477C5417EF Directory.subfile.filedate=1383689348 Directory.subfile.filedatetext=2013-11-05 23:09:08 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\app\config\3\BigFarm.db Directory.subfile.size=890 Directory.subfile.md5=FEA225420438A0F53528FAE05E16A9E0 Directory.subfile.filedate=1383689351 Directory.subfile.filedatetext=2013-11-05 23:09:11 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\app\config\3\BigFarm.ico Directory.subfile.size=82726 Directory.subfile.md5=91E58CABF6C3C530189E2B1031BEED59 Directory.subfile.filedate=1383689351 Directory.subfile.filedatetext=2013-11-05 23:09:10 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\app\config\35\Gmail.db Directory.subfile.size=778 Directory.subfile.md5=8D16FFFB1992D48E3CB4D8404C518723 Directory.subfile.filedate=1383689359 Directory.subfile.filedatetext=2013-11-05 23:09:18 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\app\config\35\Gmail.ico Directory.subfile.size=13262 Directory.subfile.md5=43E266FA15B8F01B425D381211A8791C Directory.subfile.filedate=1383689357 Directory.subfile.filedatetext=2013-11-05 23:09:16 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\app\config\36\Outlook.db Directory.subfile.size=796 Directory.subfile.md5=8DE87696714794E2552896C853386EE7 Directory.subfile.filedate=1383689360 Directory.subfile.filedatetext=2013-11-05 23:09:20 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\app\config\36\Outlook.ico Directory.subfile.size=13262 Directory.subfile.md5=F8CCECACF455195E9FF5067D20A9CB06 Directory.subfile.filedate=1383689359 Directory.subfile.filedatetext=2013-11-05 23:09:19 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\app\config\39\ESPN.db Directory.subfile.size=920 Directory.subfile.md5=9C78DF11E968D9DD10247231BE2CC2C7 Directory.subfile.filedate=1383689362 Directory.subfile.filedatetext=2013-11-05 23:09:21 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\app\config\39\ESPN.ico Directory.subfile.size=15086 Directory.subfile.md5=9E44300746A04FC221381900153EFE3F Directory.subfile.filedate=1383689361 Directory.subfile.filedatetext=2013-11-05 23:09:20 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\app\config\4\Empire.db Directory.subfile.size=872 Directory.subfile.md5=21E8C7928D43A3B85ECBD4E1460EFF26 Directory.subfile.filedate=1383689354 Directory.subfile.filedatetext=2013-11-05 23:09:14 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\app\config\4\Empire.ico Directory.subfile.size=82726 Directory.subfile.md5=5B186EA99E25E888A95A1D3931512287 Directory.subfile.filedate=1383689353 Directory.subfile.filedatetext=2013-11-05 23:09:12 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\app\config\41\gcalendar.db Directory.subfile.size=858 Directory.subfile.md5=D94EFA5A58CF16DB847E542F69FD50E2 Directory.subfile.filedate=1383689364 Directory.subfile.filedatetext=2013-11-05 23:09:23 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\app\config\41\gcalendar.ico Directory.subfile.size=15086 Directory.subfile.md5=03CD38BE20AF6CB71874DAC6EE7A821C Directory.subfile.filedate=1383689363 Directory.subfile.filedatetext=2013-11-05 23:09:22 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\app\config\42\pulse.db Directory.subfile.size=764 Directory.subfile.md5=10E74A23CA1F759991A6EDF3859BC717 Directory.subfile.filedate=1383689365 Directory.subfile.filedatetext=2013-11-05 23:09:25 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\app\config\42\pulse.ico Directory.subfile.size=15086 Directory.subfile.md5=CCBD925EF735C7946F36FE67E63C17B3 Directory.subfile.filedate=1383689364 Directory.subfile.filedatetext=2013-11-05 23:09:24 Elex.Desk365: [SBI $9BC51D3A] Configuration file (File, nothing done) C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\desk_bkg_list.xml Properties.size=1434 Properties.md5=292ECDA960D994D90A33A5E7C3EA9F81 Properties.filedate=1383689164 Properties.filedatetext=2013-11-05 23:06:04 Elex.Desk365: [SBI $8D473845] Configuration file (File, nothing done) C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\desk_list.xml Properties.size=4318 Properties.md5=3FA9E205526B13074690CD6FFEF27AE1 Properties.filedate=1383689667 Properties.filedatetext=2013-11-05 23:14:27 Elex.Desk365: [SBI $C29E5543] Configuration file (File, nothing done) C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\desk_settings.ini Properties.size=80 Properties.md5=6E8ECBF4B96757DFC8B42989C7B4C0BA Properties.filedate=1383689165 Properties.filedatetext=2013-11-05 23:06:05 Elex.Desk365: [SBI $3C87FAD7] Configuration file (File, nothing done) C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\process_mgr.xml Properties.size=220 Properties.md5=0FBAFD0F852466354337E54EEF679AC2 Properties.filedate=1383689849 Properties.filedatetext=2013-11-05 23:17:28 Elex.Desk365: [SBI $DF805F27] Configuration file (File, nothing done) C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote.xml Properties.size=5926 Properties.md5=B4D81B2192BB4FF7AC68105E338DF78D Properties.filedate=1383689165 Properties.filedatetext=2013-11-05 23:06:04 Elex.Desk365: [SBI $9E0CDB3D] Program directory (Directory, nothing done) C:\Program Files\Desk 365\ Directory.subfile=C:\Program Files\Desk 365\desk_bkg_list.xml Directory.subfile.size=1434 Directory.subfile.md5=292ECDA960D994D90A33A5E7C3EA9F81 Directory.subfile.filedate=1383689164 Directory.subfile.filedatetext=2013-11-05 23:06:04 Directory.subfile=C:\Program Files\Desk 365\desk_list.xml Directory.subfile.size=312 Directory.subfile.md5=59F9E2248D06B0E2F98514F3181AA08C Directory.subfile.filedate=1383689165 Directory.subfile.filedatetext=2013-11-05 23:06:04 Directory.subfile=C:\Program Files\Desk 365\desk_settings.ini Directory.subfile.size=80 Directory.subfile.md5=6E8ECBF4B96757DFC8B42989C7B4C0BA Directory.subfile.filedate=1383689165 Directory.subfile.filedatetext=2013-11-05 23:06:05 Directory.subfile=C:\Program Files\Desk 365\process_mgr.xml Directory.subfile.size=220 Directory.subfile.md5=0FBAFD0F852466354337E54EEF679AC2 Directory.subfile.filedate=1383689165 Directory.subfile.filedatetext=2013-11-05 23:06:04 Directory.subfile=C:\Program Files\Desk 365\promote.xml Directory.subfile.size=5926 Directory.subfile.md5=B4D81B2192BB4FF7AC68105E338DF78D Directory.subfile.filedate=1383689165 Directory.subfile.filedatetext=2013-11-05 23:06:04 Directory.subfile=C:\Program Files\Desk 365\recent.xml Directory.subfile.size=200 Directory.subfile.md5=4B021AF446161B9B0696D14C0A94A321 Directory.subfile.filedate=1383689165 Directory.subfile.filedatetext=2013-11-05 23:06:04 Elex.Desk365: [SBI $9673464D] Configuration file (File, nothing done) C:\Program Files\Desk 365\desk_bkg_list.xml Properties.size=1434 Properties.md5=292ECDA960D994D90A33A5E7C3EA9F81 Properties.filedate=1383689164 Properties.filedatetext=2013-11-05 23:06:04 Elex.Desk365: [SBI $CD3F2E88] Configuration file (File, nothing done) C:\Program Files\Desk 365\desk_list.xml Properties.size=312 Properties.md5=59F9E2248D06B0E2F98514F3181AA08C Properties.filedate=1383689165 Properties.filedatetext=2013-11-05 23:06:04 Elex.Desk365: [SBI $CF280E34] Configuration file (File, nothing done) C:\Program Files\Desk 365\desk_settings.ini Properties.size=80 Properties.md5=6E8ECBF4B96757DFC8B42989C7B4C0BA Properties.filedate=1383689165 Properties.filedatetext=2013-11-05 23:06:05 Elex.Desk365: [SBI $B607A6FD] Configuration file (File, nothing done) C:\Program Files\Desk 365\process_mgr.xml Properties.size=220 Properties.md5=0FBAFD0F852466354337E54EEF679AC2 Properties.filedate=1383689165 Properties.filedatetext=2013-11-05 23:06:04 Elex.Desk365: [SBI $A50DD4C3] Configuration file (File, nothing done) C:\Program Files\Desk 365\promote.xml Properties.size=5926 Properties.md5=B4D81B2192BB4FF7AC68105E338DF78D Properties.filedate=1383689165 Properties.filedatetext=2013-11-05 23:06:04 Elex.Desk365: [SBI $55641D0D] Configuration file (File, nothing done) C:\Program Files\Desk 365\recent.xml Properties.size=200 Properties.md5=4B021AF446161B9B0696D14C0A94A321 Properties.filedate=1383689165 Properties.filedatetext=2013-11-05 23:06:04 ProDe.DownloadGuide: [SBI $48835C16] Program directory (Directory, nothing done) C:\Users\Media.Com GmbH\AppData\Local\DownloadGuide\ Directory.subfile=C:\Users\Media.Com GmbH\AppData\Local\DownloadGuide\FreeSystemUtilities.exe Directory.subfile.size=13885848 Directory.subfile.md5=EA294FAE71549D86FC8280035D0C0369 Directory.subfile.filedate=1383688687 Directory.subfile.filedatetext=2013-11-05 22:58:06 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Local\DownloadGuide\zalando.ico Directory.subfile.size=245862 Directory.subfile.md5=E69943D4C22705095D80190B8B82CFE8 Directory.subfile.filedate=1383688680 Directory.subfile.filedatetext=2013-11-05 22:57:59 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Local\DownloadGuide\Offers\plus-hd-3-8.exe Directory.subfile.size=4759091 Directory.subfile.md5=A06D525FF5C7F19D7B7E86022A393A58 Directory.subfile.filedate=1383688693 Directory.subfile.filedatetext=2013-11-05 22:58:12 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Local\DownloadGuide\Offers\vis.exe Directory.subfile.size=651264 Directory.subfile.md5=CC3C96C61906E41F75071C2EBCC79564 Directory.subfile.filedate=1383688688 Directory.subfile.filedatetext=2013-11-05 22:58:07 ProDe.DownloadGuide: [SBI $03713CD0] Program directory (Directory, nothing done) C:\Users\Media.Com GmbH\AppData\Local\DownloadGuide\Offers\ Directory.subfile=C:\Users\Media.Com GmbH\AppData\Local\DownloadGuide\Offers\plus-hd-3-8.exe Directory.subfile.size=4759091 Directory.subfile.md5=A06D525FF5C7F19D7B7E86022A393A58 Directory.subfile.filedate=1383688693 Directory.subfile.filedatetext=2013-11-05 22:58:12 Directory.subfile=C:\Users\Media.Com GmbH\AppData\Local\DownloadGuide\Offers\vis.exe Directory.subfile.size=651264 Directory.subfile.md5=CC3C96C61906E41F75071C2EBCC79564 Directory.subfile.filedate=1383688688 Directory.subfile.filedatetext=2013-11-05 22:58:07 SimplyTech.HomeTab: [SBI $70303BAC] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b} myPCBackup: [SBI $BE3057E0] Program directory (Directory, nothing done) C:\Program Files\MyPC Backup\ Directory.subfile=C:\Program Files\MyPC Backup\DEL_UnRegisterExtensions.exe Directory.subfile.size=15872 Directory.subfile.md5=32CCEDC4CE079CF10C778CC75E3B40E9 Directory.subfile.filedate=1379630278 Directory.subfile.filedatetext=2013-09-19 23:37:58 PCUtilities.OptimizerPro: [SBI $7AF08CCA] Program directory (Directory, nothing done) C:\Users\Media.Com GmbH\Documents\Optimizer Pro\ Directory.subfile=C:\Users\Media.Com GmbH\Documents\Optimizer Pro\CookiesException.txt Directory.subfile.size=0 Directory.subfile.md5=D41D8CD98F00B204E9800998ECF8427E Directory.subfile.filedate=1383689227 Directory.subfile.filedatetext=2013-11-05 23:07:07 SweetIM: [SBI $3C0145EF] Settings (Registry Value, nothing done) HKEY_LOCAL_MACHINE\SOFTWARE\SweetIM\simapp_id SweetIM: [SBI $CA2339F3] Settings (Registry Key, nothing done) HKEY_LOCAL_MACHINE\SOFTWARE\SweetIM Toolbar.Snap.do: [SBI $B8DD52AF] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113} Toolbar.Snap.do: [SBI $2A1CCFF9] IE toolbar (Registry Value, nothing done) HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{ae07101b-46d4-4a98-af68-0333ea26e113} Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\Media.Com GmbH\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YPW2VEDG\filenuke.com\com.jeroenwijering.sol Properties.size=54 Properties.md5=76981DA4255DFA0EF911C85E93C3E8D6 Properties.filedate=1383433950 Properties.filedatetext=2013-11-03 00:12:30 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\Media.Com GmbH\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YPW2VEDG\is.myvideo.de\com.conviva.livePass.sol Properties.size=225 Properties.md5=C1B6E73F6A626CF75596409C7589F8E0 Properties.filedate=1383543321 Properties.filedatetext=2013-11-04 06:35:21 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\Media.Com GmbH\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YPW2VEDG\streamcloud.eu\com.jeroenwijering.sol Properties.size=63 Properties.md5=D1F80550CF4787F961C275E00676ED41 Properties.filedate=1383681411 Properties.filedatetext=2013-11-05 20:56:51 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\Media.Com GmbH\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YPW2VEDG\www.bet365.com\b365lipcs.sol Properties.size=419 Properties.md5=C26C3323F144DB0FC09010D8C495225B Properties.filedate=1383847066 Properties.filedatetext=2013-11-07 18:57:46 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\Media.Com GmbH\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YPW2VEDG\www.bet365.com\b365push.sol Properties.size=54 Properties.md5=E421239FD63B79A0C7256CF24E306D02 Properties.filedate=1383847045 Properties.filedatetext=2013-11-07 18:57:25 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\Media.Com GmbH\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YPW2VEDG\www.bet365.com\betslip365.sol Properties.size=72 Properties.md5=7DB56FCC0A174E11332701640E60060E Properties.filedate=1383847048 Properties.filedatetext=2013-11-07 18:57:28 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\Media.Com GmbH\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YPW2VEDG\www.bet365.com\htrGgjy810GhjsyjwutirtizqjGifyfGhjsyjwutihttpnj.sol Properties.size=144 Properties.md5=49EB3AF0C4FF1FB358D6A820096EE536 Properties.filedate=1383847066 Properties.filedatetext=2013-11-07 18:57:46 Macromedia.FlashPlayer.Cookies: [SBI $1EF45977] Text file (File, nothing done) C:\Users\Media.Com GmbH\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YPW2VEDG\www.ajaxcdn.org\swf.swf\dm_cookie.sol Properties.size=416 Properties.md5=C88F477D67925D22272FA6AD869C1FE4 Properties.filedate=1384549088 Properties.filedatetext=2013-11-15 21:58:07 Internet Explorer: [SBI $1E8157BE] Typed URL list (Registry Key, nothing done) HKEY_USERS\S-1-5-21-2524179397-3888794832-3099966248-1000\Software\Microsoft\Internet Explorer\TypedURLs Internet Explorer: [SBI $0BC7B918] User agent (Registry Change, nothing done) HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent Internet Explorer: [SBI $0BC7B918] User agent (Registry Change, nothing done) HKEY_USERS\S-1-5-21-2524179397-3888794832-3099966248-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent Internet Explorer: [SBI $0BC7B918] User agent (Registry Change, nothing done) HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent MS Management Console: [SBI $ECD50EAD] Recent command list (Registry Key, nothing done) HKEY_USERS\S-1-5-21-2524179397-3888794832-3099966248-1000\Software\Microsoft\Microsoft Management Console\Recent File List MS Direct3D: [SBI $7FB7B83F] Most recent application (Registry Change, nothing done) HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Direct3D\MostRecentApplication\Name MS Direct3D: [SBI $C2A44980] Most recent application (Registry Change, nothing done) HKEY_USERS\.DEFAULT\Software\Microsoft\Direct3D\MostRecentApplication\Name MS Direct3D: [SBI $C2A44980] Most recent application (Registry Change, nothing done) HKEY_USERS\S-1-5-21-2524179397-3888794832-3099966248-1000\Software\Microsoft\Direct3D\MostRecentApplication\Name MS Direct3D: [SBI $C2A44980] Most recent application (Registry Change, nothing done) HKEY_USERS\S-1-5-18\Software\Microsoft\Direct3D\MostRecentApplication\Name MS DirectDraw: [SBI $EB49D5AF] Most recent application (Registry Change, nothing done) HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication\Name MS Paint: [SBI $07867C39] Recent file list (Registry Key, nothing done) HKEY_USERS\S-1-5-21-2524179397-3888794832-3099966248-1000\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Recent File List MS Regedit: [SBI $C3B62FC1] Recent open key (Registry Change, nothing done) HKEY_USERS\S-1-5-21-2524179397-3888794832-3099966248-1000\Software\Microsoft\Windows\CurrentVersion\Applets\Regedit\LastKey Windows.OpenWith: [SBI $F7204896] Open with list - .AVI extension (Registry Key, nothing done) HKEY_USERS\S-1-5-21-2524179397-3888794832-3099966248-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.AVI\OpenWithList Windows Explorer: [SBI $AA0766B5] Stream history (Registry Key, nothing done) HKEY_USERS\S-1-5-21-2524179397-3888794832-3099966248-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\StreamMRU Windows Explorer: [SBI $D20DA0AD] Recent file global history (Registry Key, nothing done) HKEY_USERS\S-1-5-21-2524179397-3888794832-3099966248-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs Cookie: [SBI $49804B54] Browser: Cookie (6) (Browser: Cookie, nothing done) Cache: [SBI $49804B54] Browser: Cache (15) (Browser: Cache, nothing done) Verlauf: [SBI $49804B54] Browser: History (63) (Browser: History, nothing done) Verlauf: [SBI $49804B54] Browser: History (1000) (Browser: History, nothing done) --- Spybot - Search & Destroy version: 2.1.18.131 DLL (build: 20130516) --- 2013-05-16 blindman.exe (2.1.18.151) 2013-05-16 explorer.exe (2.1.18.177) 2013-05-16 SDBootCD.exe (2.1.18.109) 2013-05-16 SDCleaner.exe (2.1.18.110) 2013-05-16 SDDelFile.exe (2.1.18.94) 2013-06-18 SDDisableProxy.exe 2013-05-16 SDFiles.exe (2.1.18.135) 2013-03-20 SDFileScanHelper.exe (2.1.16.1) 2013-05-16 SDFSSvc.exe (2.1.18.208) 2013-05-16 SDHookHelper.exe (2.1.18.2) 2013-05-16 SDHookInst32.exe (2.1.18.2) 2013-05-16 SDImmunize.exe (2.1.18.130) 2013-05-16 SDLogReport.exe (2.1.18.107) 2013-05-16 SDOnAccess.exe (2.1.18.4) 2013-05-16 SDPESetup.exe (2.1.18.3) 2013-05-16 SDPEStart.exe (2.1.18.86) 2013-05-16 SDPhoneScan.exe (2.1.18.28) 2013-05-16 SDPRE.exe (2.1.18.22) 2013-05-16 SDPrepPos.exe (2.1.18.10) 2013-05-16 SDQuarantine.exe (2.1.18.103) 2013-05-16 SDRootAlyzer.exe (2.1.18.116) 2013-05-16 SDSBIEdit.exe (2.1.18.39) 2013-05-16 SDScan.exe (2.1.18.177) 2013-05-16 SDScript.exe (2.1.18.53) 2013-05-16 SDSettings.exe (2.1.18.136) 2013-05-16 SDShell.exe (2.1.18.2) 2013-05-16 SDShred.exe (2.1.18.107) 2013-05-16 SDSysRepair.exe (2.1.18.101) 2013-05-16 SDTools.exe (2.1.18.150) 2013-07-25 SDTray.exe (2.1.21.129) 2013-05-16 SDUpdate.exe (2.1.18.91) 2013-05-16 SDUpdSvc.exe (2.1.18.76) 2013-07-10 SDWelcome.exe (2.1.21.129) 2013-05-15 SDWSCSvc.exe (2.1.18.2) 2013-06-19 spybotsd2-translation-frx.exe 2013-11-01 unins000.exe (51.1052.0.0) 1999-12-02 xcacls.exe 2012-08-23 borlndmm.dll (10.0.2288.42451) 2012-09-05 DelZip190.dll (1.9.0.107) 2012-09-10 libeay32.dll (1.0.0.4) 2012-09-10 libssl32.dll (1.0.0.4) 2013-05-16 SDAdvancedCheckLibrary.dll (2.1.18.98) 2013-05-16 SDAV.dll 2013-05-16 SDECon32.dll (2.1.18.113) 2013-04-05 SDEvents.dll (2.1.16.2) 2013-05-16 SDFileScanLibrary.dll (2.1.18.12) 2013-05-16 SDHook32.dll (2.1.18.2) 2013-05-16 SDImmunizeLibrary.dll (2.1.18.2) 2013-05-16 SDLicense.dll (2.1.18.0) 2013-05-16 SDLists.dll (2.1.18.4) 2013-05-16 SDResources.dll (2.1.18.7) 2013-05-16 SDScanLibrary.dll (2.1.18.131) 2013-05-16 SDTasks.dll (2.1.18.15) 2013-05-16 SDWinLogon.dll (2.1.18.0) 2012-08-23 sqlite3.dll 2012-09-10 ssleay32.dll (1.0.0.4) 2013-05-16 Tools.dll (2.1.18.36) 2013-11-12 Includes\Adware.sbi (*) 2013-11-12 Includes\AdwareC.sbi (*) 2010-08-13 Includes\Cookies.sbi (*) 2012-11-14 Includes\Dialer.sbi (*) 2012-11-14 Includes\DialerC.sbi (*) 2012-11-14 Includes\HeavyDuty.sbi (*) 2012-11-14 Includes\Hijackers.sbi (*) 2012-11-14 Includes\HijackersC.sbi (*) 2013-10-16 Includes\iPhone.sbi (*) 2013-06-25 Includes\Keyloggers.sbi (*) 2013-10-29 Includes\KeyloggersC.sbi (*) 2013-05-29 Includes\Malware.sbi (*) 2013-11-06 Includes\MalwareC.sbi (*) 2012-11-14 Includes\PUPS.sbi (*) 2013-10-22 Includes\PUPSC.sbi (*) 2012-11-14 Includes\Security.sbi (*) 2013-10-29 Includes\SecurityC.sbi (*) 2013-05-22 Includes\Spyware.sbi (*) 2013-08-06 Includes\SpywareC.sbi (*) 2011-06-07 Includes\Tracks.sbi (*) 2012-11-19 Includes\Tracks.uti (*) 2013-01-16 Includes\Trojans.sbi (*) 2013-05-13 Includes\TrojansC-02.sbi (*) 2013-11-12 Includes\TrojansC-03.sbi (*) 2013-10-22 Includes\TrojansC-04.sbi (*) 2013-05-08 Includes\TrojansC-05.sbi (*) 2013-08-06 Includes\TrojansC.sbi (*) LastRegBack: 2013-11-12 21:40 ==================== End Of Log ============================[/CODE] [CODE]Additional scan result of Farbar Recovery Scan Tool (x86) Version: 18-11-2013 Ran by Media.Com GmbH at 2013-11-18 23:17:44 Running from C:\Users\Media.Com GmbH\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: AVG AntiVirus Free Edition 2013 (Disabled - Out of date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9} AV: Spybot - Search and Destroy (Disabled - Out of date) {20A26C15-1AF0-7CA3-9380-FAB824A7EE0D} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} AS: AVG AntiVirus Free Edition 2013 (Enabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664} ==================== Installed Programs ====================== 7-Zip 9.20 Acrobat.com (Version: 1.6.65) Adobe AIR (Version: 2.5.1.17730) Adobe Flash Player 11 ActiveX (Version: 11.9.900.117) Adobe Flash Player 11 Plugin (Version: 11.9.900.152) Adobe Reader X (10.1.4) - Deutsch (Version: 10.1.4) Areca ASUS WebStorage (Version: 3.0.108.222) AsusScreensaver (Version: 1.05) ASUSUpdate for Eee PC (Version: 1.06.03) AsusVibe2.0 (Version: 2.0.6.125) Atheros Client Installation Program (Version: 7.0) Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (Version: 1.0.2.43) AVG 2013 (Version: 13.0.3408) AVG 2013 (Version: 13.0.3426) AVG 2013 (Version: 13.0.3629) AVG 2013 (Version: 2013.0.3426) AVG Security Toolbar (Version: 12.2.5.34) Broadcom Wireless Network Adapter (Version: 1.00.0000) Canon MP Navigator 3.1 Canon MP140 series Benutzerregistrierung Canon Utilities Easy-PhotoPrint CapsHook (Version: 1.0.0.7) Contrôle ActiveX Windows Live Mesh pour connexions à distance (Version: 15.4.5722.2) D3DX10 (Version: 15.4.2368.0902) E-Cam (Version: 2.0.3.0) Eee Docking 3.10.4 (Version: 3.10.4) ExpressGateCloud (Version: 2.7.37.253) Finger Sensing Pad Driver (Version: 9.1.3.4) FontResizer (Version: 1.01.0011) Galerie de photos Windows Live (Version: 15.4.3502.0922) Game Park Console (Version: 6.2.0.3) Hotkey Service (Version: 1.44) InstantOn for EPC (Version: 2.1.4) Intel(R) Graphics Media Accelerator Driver (Version: 8.14.10.2364) Intel(R) Rapid Storage Technology (Version: 9.6.4.1002) Internet Manager (Version: 22.001.18.00.748) Java 7 Update 45 (Version: 7.0.450) Java Auto Updater (Version: 2.1.9.8) JavaFX 2.1.1 (Version: 2.1.1) Junk Mail filter update (Version: 15.4.3502.0922) LiveUpdate (Version: 1.29) LocaleMe (Version: 1.3) Mesh Runtime (Version: 15.4.5722.2) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319) Microsoft Application Error Reporting (Version: 12.0.6012.5000) Microsoft Silverlight (Version: 5.1.10411.0) Microsoft SQL Server 2005 Compact Edition [ENU] (Version: 3.1.0000) Microsoft Visual C++ 2005 Redistributable (Version: 8.0.59193) Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (Version: 10.0.40219) MotoHelper 2.1.32 Driver 5.4.0 (Version: 2.1.32) MotoHelper MergeModules (Version: 1.2.0) Motorola Mobile Drivers Installation 5.4.0 (Version: 5.4.0) Mozilla Thunderbird 17.0.8 (x86 de) (Version: 17.0.8) MSVCRT (Version: 15.4.2862.0708) MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0) MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0) neroxml (Version: 1.0.0) OpenOffice.org 3.3 (Version: 3.3.9567) Opera 12.16 (Version: 12.16.1860) Raccolta foto di Windows Live (Version: 15.4.3502.0922) Realtek High Definition Audio Driver (Version: 6.0.1.6387) ScanSoft OmniPage SE 4 (Version: 15.2.0020) Spybot - Search & Destroy (Version: 2.1.21) Super Hybrid Engine (Version: 2.19) syncables desktop SE (Version: 5.5.746.11492) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (Version: 3) Update for Zip Opener ViewPassword Visual Studio 2012 x86 Redistributables (Version: 14.0.0.1) VLC media player 2.1.0 (Version: 2.1.0) Windows Live (Version: 15.4.3502.0922) Windows Live Communications Platform (Version: 15.4.3502.0922) Windows Live Essentials (Version: 15.4.3502.0922) Windows Live Essentials (Version: 15.4.3555.0308) Windows Live Family Safety (Version: 15.4.3555.0308) Windows Live Fotogalerie (Version: 15.4.3502.0922) Windows Live ID Sign-in Assistant (Version: 7.250.4232.0) Windows Live Installer (Version: 15.4.3502.0922) Windows Live Mail (Version: 15.4.3502.0922) Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (Version: 15.4.5722.2) Windows Live Mesh (Version: 15.4.3502.0922) Windows Live Mesh ActiveX Control for Remote Connections (Version: 15.4.5722.2) Windows Live Messenger (Version: 15.4.3538.0513) Windows Live MIME IFilter (Version: 15.4.3502.0922) Windows Live Movie Maker (Version: 15.4.3502.0922) Windows Live Photo Common (Version: 15.4.3502.0922) Windows Live Photo Gallery (Version: 15.4.3502.0922) Windows Live PIMT Platform (Version: 15.4.3508.1109) Windows Live Remote Client (Version: 15.4.5722.2) Windows Live Remote Client Resources (Version: 15.4.5722.2) Windows Live Remote Service (Version: 15.4.5722.2) Windows Live Remote Service Resources (Version: 15.4.5722.2) Windows Live SOXE (Version: 15.4.3502.0922) Windows Live SOXE Definitions (Version: 15.4.3502.0922) Windows Live UX Platform (Version: 15.4.3502.0922) Windows Live UX Platform Language Pack (Version: 15.4.3508.1109) Windows Live Writer (Version: 15.4.3502.0922) Windows Live Writer Resources (Version: 15.4.3502.0922) ==================== Restore Points ========================= 10-11-2013 19:05:55 Windows-Sicherung 15-11-2013 19:48:46 Windows Update 15-11-2013 20:52:48 Windows Update 17-11-2013 16:37:38 Windows-Sicherung ==================== Hosts content: ========================== 2009-07-14 03:04 - 2013-11-09 18:06 - 00000027 ____A C:\windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (whitelisted) ============= Task: {0A1C65E5-0E26-4B09-9235-FA2790C7AD92} - System32\Tasks\{A625EF3D-6473-4F04-97A6-48DAC79495F6} => C:\Program Files\RegCleaner\RegCleanr.exe Task: {0A629667-66B0-439E-9D86-2F13042B09E8} - System32\Tasks\MotoHelper Initial Update => C:\Program Files\Motorola\MotoHelper\MotoHelperUpdate.exe [2011-12-06] () Task: {12B88299-96AB-4A99-A9AA-56084136B340} - System32\Tasks\MotoHelper MUM => C:\Program Files\Motorola\MotoHelper\MotoHelperUpdate.exe [2011-12-06] () Task: {3937BF63-3323-4F69-AEA4-BFCD613CACA2} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-07-27] (Adobe Systems Incorporated) Task: {44BFA5A6-1883-4DC6-A41F-914086251037} - System32\Tasks\{D80F25D4-B313-401A-B8C0-1C295ED5D7CA} => Firefox.exe Task: {4E67436D-9DDD-4511-83B2-356F2F463F08} - System32\Tasks\ViewPassword Update => C:\Program Files\ViewPassword\ViewPassword.exe [2013-11-09] () Task: {4FBA8EE9-B48B-4D27-BA9A-0A7D129B314F} - System32\Tasks\{22A9C661-C2D7-46D4-91B3-8B226C716476} => D:\Program Files\RegCleaner\RegCleanr.exe Task: {53B562C7-2010-4174-8F9E-047CD8E343D9} - System32\Tasks\Freemium1ClickMaint => D:\Down\RegCleaner\1Click.exe Task: {54331128-04B4-4FBD-AEBF-D93188171555} - System32\Tasks\{E6014F26-2F39-4C4D-8F27-D75FB2C02259} => D:\Program Files\RegCleaner\RegCleanr.exe Task: {6124E711-8399-4234-ADBD-6A24FFAE6234} - System32\Tasks\MotoHelper Update => C:\Program Files\Motorola\MotoHelper\MotoHelperUpdate.exe [2011-12-06] () Task: {63F38DD0-ED35-44F0-B690-CDFC0B9CDA55} - System32\Tasks\Desk 365 RunAsStdUser => C:\Program Files\Desk 365\desk365.exe Task: {8C2A3830-8F91-4EEF-92A7-541F1509B70D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-11-16] (Adobe Systems Incorporated) Task: {90F191D0-0BB0-4F91-B556-9971DF43DD65} - System32\Tasks\Browser Updater\Browser Updater => Rundll32.exe "C:\Program Files\HomeTab\TBUpdater.dll",TBCheckForUpdate Task: {98A0E8B5-ADC0-4351-A941-DCAD21516744} - System32\Tasks\Omiga Plus RunAsStdUser => C:\Program Files\Omiga Plus\omigaplus.exe Task: {9B214CF5-70EC-4873-8FE4-EE57A390AFD6} - System32\Tasks\ScanSoft Background Update => C:\Program Files\Common Files\ScanSoft Shared\SSBkgdUpdate\SSBkgdUpdate.exe [2006-10-25] (Nuance Communications, Inc.) Task: {9D2DD2FF-11DE-4F67-BCA2-FB5EE9FFB471} - System32\Tasks\{3016348A-32C2-4052-9FD8-92FF34C1F7A9} => C:\Program Files\RegCleaner\RegCleanr.exe Task: {A0A07926-4DA3-4A9D-8555-44BF3610CF1C} - System32\Tasks\Java Update Scheduler => C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-07-02] (Oracle Corporation) Task: {A1BFCE42-3877-4240-B2E9-D580018B07DF} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe Task: {BB3F4473-EAF0-4211-AFD4-E2406D7BFF31} - System32\Tasks\ProtectedSearch\Protected Search => C:\Program Files\HomeTab\ProtectedSearch.exe Task: {C6CB0711-96A4-4DB9-BF46-8051B50FDAC2} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files\Spybot - Search & Destroy 2\SDScan.exe Task: {C73E3D4B-5AC1-4D59-9F64-F17616BE21DB} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files\Spybot - Search & Destroy 2\SDImmunize.exe Task: {C9C53D02-47D5-4527-A038-C8E7D6CA93CC} - System32\Tasks\MotoHelper Routing => C:\Program Files\Motorola\MotoHelper\MotoHelperUpdate.exe [2011-12-06] () Task: {FD472C52-8343-4540-8425-15D4A4D0FD13} - System32\Tasks\Microsoft\Windows\MUI\Lpksetup => C:\Windows\System32\lpksetup.exe [2010-11-20] (Microsoft Corporation) Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\windows\Tasks\ViewPassword Update.job => C:\Program Files\ViewPassword\ViewPassword.exe ==================== Loaded Modules (whitelisted) ============= 2010-09-02 12:08 - 2010-09-02 12:08 - 00118784 _____ () C:\Program Files\Asus\ASUS WebStorage\3.0.108.222\AsusWSShellExt.dll 2013-11-01 18:30 - 2013-05-16 10:55 - 00113496 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2013-11-01 18:30 - 2013-05-16 10:55 - 00416600 _____ () C:\Program Files\Spybot - Search & Destroy 2\DEC150.bpl 2012-09-19 10:57 - 2013-08-06 21:38 - 00835584 _____ () C:\Program Files\Opera\gstreamer\gstreamer.dll 2012-09-19 10:57 - 2013-08-06 21:38 - 00093696 _____ () C:\Program Files\Opera\gstreamer\plugins\gstaudioconvert.dll 2012-09-19 10:57 - 2013-08-06 21:38 - 00094208 _____ () C:\Program Files\Opera\gstreamer\plugins\gstaudioresample.dll 2012-09-19 10:57 - 2013-08-06 21:38 - 00057344 _____ () C:\Program Files\Opera\gstreamer\plugins\gstautodetect.dll 2012-09-19 10:57 - 2013-08-06 21:38 - 00096256 _____ () C:\Program Files\Opera\gstreamer\plugins\gstcoreplugins.dll 2012-09-19 10:57 - 2013-08-06 21:38 - 00062976 _____ () C:\Program Files\Opera\gstreamer\plugins\gstdecodebin2.dll 2012-09-19 10:57 - 2013-08-06 21:38 - 00067072 _____ () C:\Program Files\Opera\gstreamer\plugins\gstdirectsound.dll 2012-09-19 10:57 - 2013-08-06 21:38 - 00158208 _____ () C:\Program Files\Opera\gstreamer\plugins\gstffmpegcolorspace.dll 2012-09-19 10:57 - 2013-08-06 21:38 - 00312832 _____ () C:\Program Files\Opera\gstreamer\plugins\gstoggdec.dll 2012-09-19 10:57 - 2013-08-06 21:38 - 00038912 _____ () C:\Program Files\Opera\gstreamer\plugins\gstwaveform.dll 2012-09-19 10:57 - 2013-08-06 21:38 - 00073728 _____ () C:\Program Files\Opera\gstreamer\plugins\gstwavparse.dll 2012-09-19 10:57 - 2013-08-06 21:38 - 00101888 _____ () C:\Program Files\Opera\gstreamer\plugins\gstwebmdec.dll Danke für die nette Begrüßung. Ich habe ein 32-Bit System. Chkdsk und scannow brachten mir auch nix, genauso wenig wie meine Systemwiederherstellungs Versuche. Die Browser frieren öfters kurzzeitig ein (Farbar gerade auch). Ab und zu bekomme ich auch die Meldung > interaktive Dienste < wobei vorher der Bildschirm schwarz wird. Im Taskmanger erscheinen kurzzeitig (aber stetig) 3 Einträge > dllhost.exe /COM Surrogate, powercfg.exe, conhost.exe.Vllt kannst du damit etwas Anfangen. Vorsichtshalber habe ich beide Dateien hochgeladen, weil ich nicht weiß ob ich zuviel oder zuwenig gelöscht habe. Die anderen Programme habe ich schon deinstalliert. Bis später |
19.11.2013, 00:37 | #4 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll Malwarebytes Anti-Rootkit (MBAR) Downloade dir bitte Malwarebytes Anti-Rootkit und speichere es auf deinem Desktop.
Starte keine andere Datei in diesem Ordner ohne Anweisung eines Helfers
__________________ Logfiles bitte immer in CODE-Tags posten |
19.11.2013, 07:26 | #5 |
| Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll Hallo, mbar hat leider nix gefunden. |
19.11.2013, 12:13 | #6 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll Bitte das richtige Log dazu posten
__________________ --> Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll |
19.11.2013, 19:48 | #7 |
| Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dllCode:
ATTFilter Malwarebytes Anti-Rootkit BETA 1.07.0.1007 www.malwarebytes.org Database version: v2013.11.19.03 Windows 7 Service Pack 1 x86 NTFS Internet Explorer 11.0.9600.16428 Media.Com GmbH :: MEDIACOMGMBH-PC [administrator] 19.11.13 06:54:54 mbar-log-2013-11-19 (06-54-54).txt Scan type: Quick scan Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken Scan options disabled: Objects scanned: 206844 Time elapsed: 24 minute(s), 22 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 0 (No malicious items detected) Registry Values Detected: 0 (No malicious items detected) Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 0 (No malicious items detected) Files Detected: 0 (No malicious items detected) Physical Sectors Detected: 0 (No malicious items detected) (end) |
19.11.2013, 23:53 | #8 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll Ok, MBAR war auch aktuell Adware/Junkware/Toolbars entfernen 1. Schritt: adwCleaner Downloade Dir bitte AdwCleaner auf deinen Desktop.
2. Schritt: JRT - Junkware Removal Tool Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
3. Schritt: Frisches Log mit FRST Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ Logfiles bitte immer in CODE-Tags posten |
20.11.2013, 22:02 | #9 |
| Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dllCode:
ATTFilter # AdwCleaner v3.012 - Bericht erstellt am 20/11/2013 um 20:06:53 # Updated 11/11/2013 von Xplode # Betriebssystem : Windows 7 Starter Service Pack 1 (32 bits) # Benutzername : Media.Com GmbH - MEDIACOMGMBH-PC # Gestartet von : C:\Users\Media.Com GmbH\Desktop\adwcleaner.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\ProgramData\apn Ordner Gelöscht : C:\ProgramData\AVG Secure Search Ordner Gelöscht : C:\ProgramData\Tarma Installer Ordner Gelöscht : C:\Program Files\AVG Secure Search Ordner Gelöscht : C:\Program Files\HDvidCodec.com Ordner Gelöscht : C:\Program Files\Omiga Plus Ordner Gelöscht : C:\Program Files\Searchprotect Ordner Gelöscht : C:\Program Files\SoftwareUpdater Ordner Gelöscht : C:\Program Files\ViewPassword Ordner Gelöscht : C:\Program Files\WinZipper Ordner Gelöscht : C:\Program Files\Common Files\AVG Secure Search Ordner Gelöscht : C:\Users\Media.Com GmbH\AppData\Local\Searchprotect Ordner Gelöscht : C:\Users\Media.Com GmbH\AppData\LocalLow\SimplyTech Ordner Gelöscht : C:\Users\Media.Com GmbH\AppData\LocalLow\Toolbar4 Ordner Gelöscht : C:\Users\Media.Com GmbH\AppData\Roaming\DSite Ordner Gelöscht : C:\Users\Media.Com GmbH\AppData\Roaming\Omiga Plus Ordner Gelöscht : C:\Users\Media.Com GmbH\AppData\Roaming\OpenCandy Ordner Gelöscht : C:\Users\Media.Com GmbH\AppData\Roaming\Systweak Ordner Gelöscht : C:\Users\Media.Com GmbH\AppData\Roaming\WinZipper Ordner Gelöscht : C:\Users\Media.Com GmbH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HDvidCodec.com Datei Gelöscht : C:\Users\Media.Com GmbH\AppData\Roaming\Microsoft\Windows\Start Menu\Startfenster.lnk Datei Gelöscht : C:\windows\System32\Tasks\Browser Updater Datei Gelöscht : C:\windows\System32\Tasks\Desk 365 RunAsStdUser Datei Gelöscht : C:\windows\System32\Tasks\Omiga Plus RunAsStdUser Datei Gelöscht : C:\windows\System32\Tasks\ProtectedSearch ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Wert Gelöscht : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [Avg@toolbar] Wert Gelöscht : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [searchpredict@speedbit.com] Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\bgnnidmnbdkmhfkjgdnngciimpdgohok Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\dnllcmllkjofnojidnaknldfehfhehoo Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof [#] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{90F191D0-0BB0-4F91-B556-9971DF43DD65} [#] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{63F38DD0-ED35-44F0-B690-CDFC0B9CDA55} [#] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{63F38DD0-ED35-44F0-B690-CDFC0B9CDA55} [#] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{98A0E8B5-ADC0-4351-A941-DCAD21516744} [#] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{98A0E8B5-ADC0-4351-A941-DCAD21516744} [#] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BB3F4473-EAF0-4211-AFD4-E2406D7BFF31} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\TbCommonUtils.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\TbHelper.EXE Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\protocols\handler\viprotocol Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SBConvert.SBConvert Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SBConvert.SBConvert.3 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbCommonUtils.CommonUtils Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbCommonUtils.CommonUtils.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.TbDownloadManager Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.TbDownloadManager.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.TbPropertyManager Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.TbPropertyManager.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.TbRequest Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.TbRequest.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.TbTask Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.TbTask.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.ToolbarHelper Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.ToolbarHelper.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Toolbar3.ContextMenuNotifier Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Toolbar3.ContextMenuNotifier.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Toolbar3.CustomInternetSecurityImpl Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Toolbar3.CustomInternetSecurityImpl.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Toolbar3.SearchProviderManager Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Toolbar3.SearchProviderManager.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\BundleSweetIMSetup_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\BundleSweetIMSetup_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\HomeTab_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\HomeTab_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\optimizerpro_rasapi32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\optimizerpro_rasmancs Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\optprostart_rasapi32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\optprostart_rasmancs Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SnapDo_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SnapDo_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftwareUpdater_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftwareUpdater_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\sweetimsetup_rasapi32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\sweetimsetup_rasmancs Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\systweakasp_rasapi32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\systweakasp_rasmancs Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_regcleaner_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_regcleaner_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{4CE516A7-F7AC-4628-B411-8F886DC5733E} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{628F3201-34D0-49C0-BB9A-82A26AEFB291} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{0329E7D6-6F54-462D-93F6-F5C3118BADF2} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{1C950DE5-D31E-42FB-AFB9-91B0161633D8} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{3BDF4CE9-E81D-432B-A55E-9F0570CE811F} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{92A9ACF4-9333-43AE-9698-DB283326F87F} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{9F34B17E-FF0D-4FAB-97C4-9713FEE79052} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{A9A56B8E-2DEB-4ED3-BC92-1FA450BCE1A5} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{AE338F6D-5A7C-4D1D-86E3-C618532079B5} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{C339D489-FABC-41DD-B39D-276101667C70} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{D433A9D0-8267-40CB-8AD5-24F22FA5373F} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{D565B35E-B787-40FA-95E3-E3562F8FC1A0} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{D89031C2-10DA-4C90-9A62-FCED012BC46B} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{DD000E12-C224-49A5-899E-0B37DBD95F15} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{F25AF245-4A81-40DC-92F9-E9021F207706} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{01221FCC-4BFB-461C-B08C-F6D2DF309921} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0FA32667-9A8A-4E9C-902F-CA3323180003} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2A42D13C-D427-4787-821B-CF6973855778} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3D8478AA-7B88-48A9-8BCB-B85D594411EC} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{452AE416-9A97-44CA-93DA-D0F15C36254F} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{45CDA4F7-594C-49A0-AAD1-8224517FE979} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{4D8ED2B3-DC62-43EC-ABA3-5B74F046B1BE} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{6B458F62-592F-4B25-8967-E6A350A59328} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{81E852CC-1FD5-4004-8761-79A48B975E29} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8DA8B89E-0C65-403B-8231-AB22ECFA0687} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{95B6A271-FEB4-4160-B0FF-44394C21C8DC} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A928E66C-F501-4E66-9953-855C712F93B2} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B0E28FA0-DF07-44B6-95CE-48BE26DB9266} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B2CA345D-ADB8-4F5D-AC64-4AB34322F659} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B9F43021-60D4-42A6-A065-9BA37F38AC47} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{BF921DD3-732A-4A11-933B-A5EA49F2FD2C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D83B296A-2FA6-425B-8AE8-A1F33D99FBD6} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E67D5BC7-7129-493E-9281-F47BDAFACE4F} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E6B4EE8F-C38E-4994-BE28-229A3F92262C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{FCA8936E-403A-4487-A966-70F80F1D5A6A} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{FCC9CDD3-EFFF-11D1-A9F0-00A0244AC403} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DD000E12-C224-49A5-899E-0B37DBD95F15} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DD000E12-C224-49A5-899E-0B37DBD95F15} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233} [#] Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A25E7121-3DD8-41B3-855B-756C5BC45449} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DD000E12-C224-49A5-899E-0B37DBD95F15} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F25AF245-4A81-40DC-92F9-E9021F207706} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F25AF245-4A81-40DC-92F9-E9021F207706} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{603C4CC9-5DC6-4C44-873F-8281509DF953} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B} Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{95B7759C-8C7F-4BF1-B163-73684A933233}] Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}] Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{0329E7D6-6F54-462D-93F6-F5C3118BADF2}] Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{C424171E-592A-415A-9EB1-DFD6D95D3530}] Schlüssel Gelöscht : HKCU\Software\1ClickDownload Schlüssel Gelöscht : HKCU\Software\AVG Nation toolbar Schlüssel Gelöscht : HKCU\Software\AVG Secure Search Schlüssel Gelöscht : HKCU\Software\dsiteproducts Schlüssel Gelöscht : HKCU\Software\InstallCore Schlüssel Gelöscht : HKCU\Software\InstalledThirdPartyPrograms Schlüssel Gelöscht : HKCU\Software\Softonic Schlüssel Gelöscht : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F} Schlüssel Gelöscht : HKLM\Software\AVG Nation toolbar Schlüssel Gelöscht : HKLM\Software\AVG Secure Search Schlüssel Gelöscht : HKLM\Software\AVG Security Toolbar Schlüssel Gelöscht : HKLM\Software\DomaIQ Schlüssel Gelöscht : HKLM\Software\hdcode Schlüssel Gelöscht : HKLM\Software\InstalledThirdPartyPrograms Schlüssel Gelöscht : HKLM\Software\omigaplusSvc Schlüssel Gelöscht : HKLM\Software\systweak Schlüssel Gelöscht : HKLM\Software\winzipersvc Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG Secure Search Schlüssel Gelöscht : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4 ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.16428 Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Search [Default_Search_URL] Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Search [SearchAssistant] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [Search Bar] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [Search Page] Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\SearchUrl [Default] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [(Default)] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [Default] ************************* AdwCleaner[R0].txt - [18819 octets] - [20/11/2013 20:00:52] AdwCleaner[S0].txt - [17955 octets] - [20/11/2013 20:06:53] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [18016 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.0.8 (11.05.2013:1) OS: Windows 7 Starter x86 Ran by Media.Com GmbH on Mi 20.11.13 at 20:24:22,09 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Eventlog\Application\omigaplussvc Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\ConfigTask_RASAPI32 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\ConfigTask_RASMANCS Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SuperLyrics-16-codedownloader_RASAPI32 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SuperLyrics-16-codedownloader_RASMANCS Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SuperLyrics-16-updater_RASAPI32 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SuperLyrics-16-updater_RASMANCS Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{5A817CF6-92D5-4DE5-AC38-82DF8A73EF28} ~~~ Files ~~~ Folders Successfully deleted: [Folder] "C:\Program Files\atdhenettvapp.com" Successfully deleted: [Folder] "C:\Users\Media.Com GmbH\AppData\Roaming\microsoft\windows\start menu\programs\atdhenettvapp.com" Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{0109FA2C-0924-4C1A-BAC3-1389E88F7D73} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{013691EF-4618-4C8D-ABF4-FDDC86B6F6EF} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{02AB6826-07E6-4516-AE59-65A77694D73C} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{03A892D6-48C0-4129-9BD1-E11BBE81F620} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{045860ED-82BB-4058-BFC7-74021839D7F4} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{05D6295A-BBD3-423A-AD68-1C8A2FDB4BB9} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{06FFF446-0275-4450-97B7-F031A710A5D1} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{074782A9-4BBD-44CA-B4B6-CBCBB4C559F1} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{0755CB7E-303A-4569-A83B-B358433252B5} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{07976D3E-039E-4786-BDF2-1E00F1A66E44} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{0800AF6A-E3AD-4AE9-B290-38C002B44764} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{098281FA-CDAD-4660-A117-6D6D3ABF3E28} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{09E23835-6605-49B5-8DFA-2C27731BBB49} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{0B68144C-DDAB-482C-A049-B7BDC3D5A68B} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{0BFA6295-092E-4F2F-B2B8-81B590AE924C} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{0C1F40CF-1B18-473D-92AA-B4DC7C0B5BBC} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{0C552646-C56B-4A1C-A596-C9CCD4323A7D} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{0D12E5C8-9F85-4D42-A8B2-F534160CD940} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{0D211046-88FC-430D-9668-EAA879AB4096} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{0DC48A0C-E425-4463-B6B8-72F0CD8C606D} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{0DFFF2F2-1723-40FD-8288-4173C40FE7C8} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{0E0388E7-5491-4475-BC6B-D4CE3D39F01A} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{0F263F3E-855A-435E-B999-0A1D0A9220CA} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{0FFFF606-F9B3-42F2-B271-F8B5853BA83D} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{10406E86-DCE9-4E05-8048-E231F85FB4CB} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{10845451-1716-4647-81DB-73ABFAC9A779} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{1242414A-635A-4043-A819-259F19B48FAD} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{1245FEB9-CFBA-43C9-8E18-848926CCD16D} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{1328F4C6-9436-443C-B184-14EC63B95F3D} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{13376E9C-76F2-485B-AA5A-946541BF45A8} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{138B9722-722D-404B-AF2A-570A9E8C694D} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{13A5E185-C625-4E5D-BDF4-78B4CD39BF10} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{14EA4C08-A9CF-4DF8-9595-FF2EBB327EE6} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{15828F4C-AFDD-40F2-9D34-59C1E32F4200} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{16553FBA-98D8-4DFD-BAB4-14FE20BD104D} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{16566A56-3E61-44BB-952F-FF3B0FAC8181} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{1A056E47-883F-4420-9C50-DF807650EFCD} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{1A87B037-BD03-4A8A-AEC3-966B41799363} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{1B0988F3-AAA8-4668-A4C9-8796A981CB53} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{1C2EDE21-E545-43DD-A26A-B396C00042FC} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{1C5EBFDC-DBE3-4CF3-A509-C3661D6E7F8F} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{1C8E913A-DFDC-46CB-BDF1-86F066293BDB} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{1CD3435B-DD38-46C5-AE58-677EFB67041D} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{1E6137B5-4B83-42EF-B70D-444E10CADDEF} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{1FB010AA-80A3-4B05-A79F-DA0B1FF5E9A8} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{21987937-E61E-4910-9C91-41AF00156970} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{21989335-CD9D-435D-8B98-05CAD427E9AE} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{2203D992-BAF0-4C89-8034-5A9E071D61CF} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{22CA7813-54EA-4317-A801-53C928553939} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{23467D68-6780-458F-A424-94268FE50533} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{2376D2AA-BFB7-41D4-B867-74102FBFCC71} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{239B0B1C-3ECC-4F21-83AA-2BB7CAB173F9} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{249D0020-81DD-441C-BB7C-3A789B45AEA6} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{24FF8A57-E58F-40DA-AF95-4F2937FAE484} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{2676753B-D6F9-4E87-A96F-96C1C2207866} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{2731ADC8-A746-41C6-AF9F-F41D00358D49} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{275AD043-9464-40DC-B2B4-A89757B7621C} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{27656B24-1B29-4617-9D2D-43A768AEA213} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{279987EE-5C46-422A-9D00-8344FEA16988} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{29FEDCC0-712F-4B6E-98F4-40A28231B84D} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{2A5AA77E-C290-4698-B653-8BB56EFFCAC0} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{2A88A980-5E83-42A4-905A-7D1D3CC0F6CE} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{2AF4B102-1EFE-45FA-AD35-46B02F63EC23} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{2B874E2F-B278-4ED6-90E4-1168AED1873F} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{2BF721B5-B067-4509-98C2-8895437B08B5} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{2D629AC9-BEC6-4843-84FD-0C52D3115FA3} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{2E1C32D1-6672-4509-B8FB-B459E41AE13B} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{2E275151-1047-4F01-B3E1-C27F3319983E} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{2EA73B5C-A2DA-45F7-9E67-212FDAC0DC02} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{30BCDFC4-97CF-47DB-A6DC-E8D4AE640F98} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{3214D6B1-F94E-44AF-9E38-6899472BC5C7} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{32F86EA0-BFF3-4F8A-855B-B556F5F40959} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{335BC36D-3653-4579-A1BC-B25D0D09532A} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{34DC4010-B1E6-4EC6-94BD-8C8EE4728A75} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{36A78561-3F02-4E07-96AF-A96A7F0CB4D4} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{3785CB49-55B4-468E-827A-8BEB60BAB134} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{37CA8875-A48C-4577-BAB9-A286FD2298CD} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{3A14A436-AC64-442D-B88F-7CF2B8BDDA1B} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{3B46CF24-B164-488F-8D7A-0D19BF713286} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{3B4ECB20-660B-4A1C-9769-13D56823DD04} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{3B728C28-2266-4BD9-985B-A5A8B196F088} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{3B88FCBC-55E5-4868-87D4-139F62369500} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{3D9EDF86-D9D6-4BC6-959A-72C8CB6C15A2} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{40EF84C1-0F12-42F4-812B-68F4B5797D5C} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{41361577-38F5-4B7E-98F5-94B37B2279BB} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{4166ECFC-B3D9-4ACD-A2B3-7471E8B4DF2D} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{427A07C8-8E10-479C-952F-B2BB65654C9E} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{42837476-C70C-4DAA-8FCD-74EF947D4ABB} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{42E2BA1C-81D2-486C-A385-0ABEB69F0B02} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{43AF1C51-01BA-48A1-B022-FF600DCA2958} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{4442B6F2-6C38-4791-917B-827636E76581} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{461027F1-2E85-4358-88DB-1F45C9BFCD38} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{47F0F173-AC77-4CE5-84D8-2B88E9A8BC90} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{48B19441-9413-4901-A237-3CA6B4FD087A} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{4AA141A7-5F6D-49B2-AF3B-86513BE54356} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{4AF65AE0-B644-48E4-BD64-E754475F1E90} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{4E32FFFF-1CDB-4D09-8DB0-C5D6BAF41DFC} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{4E5EE5A1-9B81-4380-B608-2882FCEF47CF} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{4EBBEC3C-2753-4D77-8C64-A376763398D4} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{4EFD0358-C756-4615-93B8-624AD02BFBD1} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{509102C1-3433-407D-8CBA-1CD9559BE732} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{53AE7656-A7AB-4250-AA6E-D243E446C762} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{55F45CF2-6BD9-4C93-A4A0-0238372B212D} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{56AD8DA8-C3F5-4721-A75F-A556BDDBEFD7} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{572B8110-0439-472C-8EBD-39D31044A3D3} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{5832838F-5801-45A7-A536-4D920074373A} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{583C0937-6243-48D7-BA27-2F9D1CE4D35B} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{5867CF90-09EE-43FF-A491-D853D52E158B} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{595C15C5-DC09-4731-B255-05E7F1D5DA07} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{598BE13C-F884-4AE9-A09A-2CBAD532FC82} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{5AD98065-4B0E-4D7A-AB5B-AADC18AADAF2} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{5BE71CC6-8162-4CEC-99E9-EB5F255BF89E} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{5C830EC1-D1A9-4A39-9583-C5BC72C526C0} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{5F2C07D3-8631-41FC-A1AC-A90937A6BCEF} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{6081A30E-F0F8-499F-A061-BFE94925AD96} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{61544882-4640-4DD2-BFD1-33F27784C1A2} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{63B6F76A-D400-4888-8254-3A554BB7D464} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{6424368D-9785-40B4-89FA-30974A1D81A5} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{64C09A22-CC93-4E62-A26C-CA304307F4D7} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{65674631-9FAE-4D53-AE89-34D26A51CEC3} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{65D4336E-A8F6-41F7-BF76-5C5FE884F7D4} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{66117D28-7876-4DDF-AF23-1C615AA29E90} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{66DEF883-DBDF-450A-B83E-EB5FAD7EE309} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{66F29384-742C-4833-9FF9-73EDC5B5A505} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{67A6CC53-33B9-40B8-AAEF-81752C8A298E} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{67CBE8EA-F8C6-49A6-A391-2C33011B52B5} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{68335B27-CFC4-435D-93BF-46FC52BE8197} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{6BD189A1-DA7E-4B67-83C8-650D2ED66443} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{6CB57854-F6E5-41F2-872C-07F5DF754F8A} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{6E33DC86-9829-42D9-AC1E-2851C1EAA391} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{6F1A8DFF-93E3-4683-A285-A30C91EED40A} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{6FA51BBE-078F-448F-A352-A4887E9A8C49} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{71C4CFB0-8F7E-4828-AA46-BC5F66A7473C} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{72322BB9-9726-48D9-A1E5-CE738E76FD7E} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{72C95C26-3155-4D0A-A4EA-1F939509CC14} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{73649975-1EB0-4AB0-878C-EE15D114AA9E} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{73900467-4099-440B-A01C-948D61A2C702} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{73D543EE-40D2-4143-A567-4B8BD8F56EDE} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{73E691FB-2121-4F10-97B0-0977D22B034F} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{73FAEAAD-01BD-4F75-B812-1C7D3EA9820B} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{75F90A84-F9AA-4BF8-8AE0-128BE53D09C9} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{7673C370-1FE3-4AA0-B0AF-EB0DCB98D1EC} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{7682FAA8-8D40-4165-A7B6-E0F9C0122149} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{76E5B7D1-777C-4799-B726-E112C5D2D3EA} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{76F62F8E-073E-4DC4-B4FA-06BF07EB2298} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{7779455F-507F-46AB-AD91-A1AC4B92807D} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{780A9F9D-C1B3-4FF3-86B9-830DE62E6035} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{782BD3C5-8C80-44AA-907E-50D871C48384} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{7857DA2A-EF9D-4417-B646-655B6E120528} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{789B431F-5B41-4A20-BDF6-98709F72A4BA} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{789C4C03-CC56-4ED7-B79B-E8A134A9C9C6} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{793A510F-2706-4A7F-AD88-21D22751D9F7} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{7A592228-522B-4C56-AAA5-68EF7913D3A5} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{7D68A8E1-022E-4234-8167-666566319CF7} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{7E4C7A40-515F-4DEA-AE19-4E017C9D1327} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{7F42FEF9-2171-4091-99CE-E98FE8F6BAD9} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{7F93D1CC-AD83-4E75-A7F8-56DC10907B79} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{7F9CDEEB-E2F6-410A-AEFF-C5842CD718D4} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{80452BCD-7CF4-40B1-B008-631AE75D9271} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{819C6F34-78C8-4138-9B27-6B03B3DE76CC} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{81F9BAFB-6DFE-40B3-A11B-F58584F61311} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{83A89970-952D-4A54-8B94-E1AC90388589} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{85120CA7-1060-490F-99B8-EE75D83292B1} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{8545A6FC-1655-4424-9306-8DDA4903C7C6} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{8573441B-9163-49AB-9A4C-F3BCE9ECA051} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{87140826-8F1E-4121-BC57-E77305A1E057} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{881AB0EF-F89B-4668-8BCC-392F727B20FE} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{88C55B01-E950-4057-8DE9-FE7F8F281F7A} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{88D114AB-0C7D-4572-93D4-77B05C53CA9B} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{88E50E3F-2ED5-44EF-8E82-7DDFB5424E0E} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{89158D68-9E3D-4FAB-9A50-CA762F147682} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{8AA208C0-A59A-4CDA-BC8A-13B18F1C1867} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{8B15B2CB-AB1B-4532-93FF-17F4296DEB44} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{8C35FEE3-83AA-43C3-B0E7-48A74F4AE779} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{8DD9545A-0A70-4712-BD0C-12527FC11CD1} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{8E654C85-45F4-478B-8308-857CA7E97409} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{8EE3B102-E139-44A4-BB94-82B5AB57DC4E} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{8F954F58-B0B8-49C3-B21F-09EFC60AB7CE} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{8FA9A0BA-4176-400A-95DD-1FC8B9741D86} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{901BDF30-6EDD-48B5-9E3C-33D8366AE119} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{91098C65-9BCC-4021-B957-32DA1F6BEA3C} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{91DC244F-DC90-4B4F-9C3C-2D62F5BC5D38} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{94FE190E-F336-415F-B6AA-DEE77F07A983} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{950F28D4-DEF7-4EDC-92CD-C18A0D39BD02} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{96B2C277-0BDF-458F-9E40-2432CEF38A28} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{97497415-0CF9-4FC6-A324-93D38BB9D128} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{9864E558-ED7B-4BCE-AE8A-F41AADDCC6C2} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{995D09B5-445B-4666-B4AA-6683EEEB160A} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{9A58D4D8-D6D3-473A-B95F-3E8074C5F6E6} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{9AF5CCA2-75E6-428D-98E3-DA6DAA537459} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{9B0A64C3-EEFD-4881-AB94-A7B08578DF4D} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{9B7B20D4-85DE-4A66-B0B5-A29D6D256632} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{9C8BEC6D-06B5-437F-99A9-16C2D275D03C} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{9E7721A4-4619-4FB8-ABA6-A85AFE8B3F41} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{9EB4236C-5973-47A2-9320-C5671D784E14} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{9FA4F7CD-DC82-4385-B5A3-E68319D1BBF7} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{9FFA8CAB-8951-40FB-AFB9-2489A9CCE103} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A1471E69-10D0-4CCD-8CEA-1E4B5ECED559} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A165F9A2-5C8C-45D3-85E3-94EF9504EBF9} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A1963921-AA12-4A72-8988-BAD4CE8603EA} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A1C23E74-B707-400D-9436-30E252BB6A7B} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A20C8A06-803D-45EC-9B59-39A5E677DC23} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A22864E1-AB45-4DCD-A761-8ECB437C77A4} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A2C21C55-B72B-4E2B-850C-77FD1B77B223} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A2E2DCE5-13A6-4D6A-A14E-7C0D83BF1B0D} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A2F3B669-BB77-4874-80C8-3BA61C93143E} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A313BE77-2FB1-4B8A-BFA3-2561026235FD} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A31C386A-C269-4023-9268-33B09DACC5FE} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A34AFD0F-0C09-436E-B959-183F449B281B} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A4B01975-075F-4FC8-8A62-CCC8111128B6} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A4BC2884-6E19-41AD-A1B4-0C85EEC32CED} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A5B5FA41-5551-481D-A543-C251FDEFD6C5} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A6952A39-58E4-4C36-9FD7-86486CCB9A24} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A76EEF21-146A-4AA3-8CFB-F6E18E0D33D5} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A8275354-9E0A-4A1B-893F-0F62206D2D4D} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A918E11E-4FAF-45EF-A963-0537A26FB9CB} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{AB2D5BFF-71A5-4DE4-AF96-E6182E43B6CC} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{AC3348DF-70EE-495F-9E10-4AE5FDC844FD} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{AD25C34F-46DD-4E4C-A7B5-5919FAE2C2DE} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{ADA22ABC-E044-4009-BA33-92AA6214BF91} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{ADB9BD71-CA08-45ED-8F30-2A3036F8E430} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{AEFB634F-A3CA-4CA1-958B-AC71633C664C} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{AF4CAB1A-9AFC-4D9A-BBA6-B2F7862045A5} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{AFD08C0A-4827-46A1-BCAA-752A821E5092} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{B23C59A4-2422-4DE0-99EA-999A3A14657A} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{B38FC521-FE8B-4F37-9C91-1CC5531F6F56} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{B3DAFB97-3104-472A-9D11-3679C3841A4F} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{B40E384E-3DBD-44A9-A882-0663B79146A0} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{B4EE768D-F7C6-4A71-A0ED-74E707C0DBC3} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{B50FA326-64F8-4E0C-B1DE-7F6728CA0B83} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{B5B8544D-1696-4AC7-996A-FD4BC6C54970} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{B6A0199E-680E-44C8-824F-77CEF6ED6753} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{B755A3AB-D8AB-492B-B6FC-4B7F86509D0B} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{B864C08B-FCB2-4677-96F5-2BD5DC09083D} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{B8AF25CF-8E98-4B32-8721-C6AB11DCC6B1} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{B97842BA-2D95-42FA-8CDD-0FF5C4AE5D94} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{BA2CA215-E3B9-4F9A-92CF-EF2F648C013A} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{BA4CB0AE-EE8F-4FBD-9E14-7072673352AD} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{BB86BF0B-F20F-4DFD-8BAA-F5DB2AB5A8BA} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{BB8978F9-3B6C-44EE-B841-3748B9B5DF46} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{BD2CE881-44E0-425B-B9B5-38AF5F8491CA} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{BEDDAFF5-206D-40EB-A339-005BEAF357E1} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{BF83AF3E-3691-4BF2-9E46-4B74CC7C20C4} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{BF9D5856-D384-4A43-8438-D47637C0B963} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{BFF99EC7-5F73-4E4F-854C-55814201BAC2} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{C047BE96-7B14-428C-9294-72E9C5686FBF} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{C1747E89-ACE8-4F0E-9286-2BE1329E5CC0} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{C1BBCFA1-AE4C-47A5-91D7-685832B914C0} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{C1E010CA-EAB7-4C1B-B736-BB6E314D7DA5} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{C2EEF781-46C6-4D62-9B66-525D37A40B99} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{C49E9BB2-3CD9-4AC3-B178-816AD2EB7217} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{C53D3D96-6E72-4137-A1AF-664FE951A7D1} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{C7411371-4C08-4155-9C6F-0A41FCA1C1E6} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{C79C385B-B431-493C-901B-CD753CAFF0F1} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{CB11A311-2F72-4E9C-8836-32D2D710BF1F} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{CBDB8BA3-4660-4BEF-AF79-64D12444EA73} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{CD44C7A1-1F9B-44EE-9E01-2C4A4FB93BAD} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{CD9FD8CC-5C14-4E1F-992F-AE37143B400D} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{CEF2963B-347B-4F79-BB55-E0837F5AD96E} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{D00B93D2-4567-4060-A070-276E9EB5F6F4} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{D1854855-0BCF-46DF-B16E-69FBA3AA7831} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{D1AFD968-652B-4325-A2D2-AC829C72A9DA} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{D1CB77F7-AF55-4E18-81D2-EF89C6BF7CC0} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{D294DE27-E41D-4605-AE61-591E20C30D78} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{D3451523-F379-4BF4-9C36-380C67013951} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{D413C1DB-9166-475D-A7FF-DE1FA27363F5} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{D43A89E6-02BF-41C9-A835-4580CD31A23B} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{D4839536-0CB5-4608-8DBA-15219449CCFE} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{D4F085DD-01C7-4610-ACF8-D41D7BB27CCC} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{D6297A5A-84B5-4735-9D03-F3E0C1580273} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{D74CA8A5-20F6-4016-AAB8-B3348E1DE1B8} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{D757FCA8-9638-4658-A23C-A6ED4D6FF8A3} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{D7E29F72-3A1B-4C36-AF0C-D7F3CDDAA2BE} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{D80003AB-2398-4F36-BC0C-7A556E59A08B} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{D98F73D6-8966-41E8-9855-448050B727F5} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{DBFC9116-01F5-48FF-8F3E-BFEBF811E309} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{DC26C2B9-72E8-43ED-B927-E53566FB02DB} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{DDF037ED-EC8D-4A27-9683-34793B4F371D} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{DEB9BEC3-17FB-4ABB-84F3-154726A8864D} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{DED736D4-4BA0-4A0F-B101-2376B7F9A6C2} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{DEEA5B0A-B701-4C32-AB34-5E36107A15F7} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{DFB372AB-5ABC-4B3B-8D61-6CE9EB9F3F61} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{E249AEE9-6B12-42BF-8AA0-103EEA03076C} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{E2CB3591-8015-4398-B650-1ABC43E8DA9B} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{E333CA49-E30A-4F29-9B4F-198AFD61861C} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{E353B89F-6D63-4AA6-B9B9-D22920995447} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{E49CC3A0-C247-4935-9851-8AE17BE6A882} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{E53AB311-9DED-494F-8B9F-2B8F2A9E2002} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{E5E54853-38AC-406E-A4CF-33201CCC166C} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{E8498189-53FD-4FA6-8612-3B0A52132F68} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{E85E2732-827A-4A36-97BF-D07A8F0EB3AE} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{E8711892-9F2F-444F-B10A-77BF90B8802E} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{E93E47C4-6192-4E30-AE8A-8EA890D9E6BC} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{E99EC258-547C-48BE-BAF7-D25C8F305DF2} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{EA033CA6-6F46-49D4-916E-50751597EA68} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{EA50A0B2-6CF3-4D3B-B2D0-B9A6306AA920} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{EAAB0882-9696-4891-A006-6879D860C61D} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{EAD21942-2AAC-410E-9160-8CEA33EA66F0} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{EAEC9637-D08B-4A9C-BFF7-F93572609369} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{ECC42F60-4EDB-4199-A80A-23C297B027CC} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{EEF26A43-AAB0-46E9-8083-0E0E3CBC56A7} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{EF180AB2-449A-42A9-88B7-9883660FBF19} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{EF270C6F-3F2D-4993-B820-AD37BD47B71D} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{EFF96101-1AAC-4048-8EEF-B97827F6A9AD} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{F08FF102-C28F-46CA-AB87-9627A77747CC} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{F0910EA9-067F-4330-9097-BF8F4CEDDDAB} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{F0DDDC18-DE41-47EF-8E8C-C47BE58BA9F3} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{F28F8CFD-A223-4B04-A121-E7949C9335FF} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{F393A64A-E6B0-4EBD-BF78-ACE3B21881E4} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{F561C18D-4496-4339-B0A6-65FBB7C38D50} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{F626CC1B-C8E2-4662-9D8C-9FF6E088AF1C} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{F76B4A14-1ADD-433E-912D-BF9B2F3F303A} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{F8150AF3-0D13-479A-BB2D-9CBBE863BFFA} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{F822233B-A89D-4ADA-893B-9F5B5F55861B} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{F86A6791-6A61-451C-907C-878DFBF9ACD2} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{F8933290-4B3C-4C1E-831C-B6177A81D7FF} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{F8B06E49-9B27-4830-AD82-0B078BAE50CC} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{F9F8F99E-030E-47E9-833C-66EAA59F348B} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{FA3AA72D-DF91-4445-B888-18F16D36B880} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{FAA90EF6-0E94-40BE-AEBE-7490928C5670} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{FB1F29F1-7B6A-45DC-884B-A93D6239D268} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{FB3207EC-27C4-4A3A-9521-2406C18DA500} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{FCE9C7F2-AF0E-4E3F-BFE6-C257E80AAE25} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{FD578CFE-777C-445E-A5AC-514BFFDDA850} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{FD7581C6-4483-448F-A050-273234B3825F} Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{FFC693B3-9D80-4494-AB30-A7BABE84E6EE} ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on Mi 20.11.13 at 20:31:26,36 Computer was rebooted End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
20.11.2013, 22:06 | #10 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll Die FRST Logs bitte auch in CODE-Tags
__________________ Logfiles bitte immer in CODE-Tags posten |
20.11.2013, 22:54 | #11 |
| Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dllFRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 18-11-2013 Ran by Media.Com GmbH (administrator) on MEDIACOMGMBH-PC on 20-11-2013 21:37:06 Running from C:\Users\Media.Com GmbH\Desktop Microsoft Windows 7 Starter Service Pack 1 (X86) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) =================== (AVG Technologies CZ, s.r.o.) C:\PROGRA~1\AVG\AVG2013\avgrsx.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2013\avgcsrvx.exe (ASUS) C:\Program Files\Common Files\InstantOn\InsOnSrv.exe () C:\windows\system32\AsusService.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2013\avgidsagent.exe (ASUS) C:\Program Files\Common Files\InstantOn\InsOnWMI.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2013\avgwdsvc.exe () C:\ProgramData\DatacardService\HWDeviceService.exe (Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe () C:\ProgramData\Internet Manager\OnlineUpdate\ouc.exe () C:\Program Files\Motorola\MotoHelper\MotoHelperService.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2013\avgui.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe (Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe (ASUS) C:\Program Files\ASUS\CapsHook\CapsHook.exe (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe () C:\Program Files\Motorola\MotoHelper\MotoHelperAgent.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2013\avgnsx.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2013\avgemcx.exe () C:\ExpressGateUtil\VAWinService.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe (Microsoft Corporation) C:\windows\system32\UI0Detect.exe (Opera Software) C:\Program Files\Opera\opera.exe (Farbar) C:\Users\Media.Com GmbH\Desktop\FRST_A.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [AVG_UI] - C:\Program Files\AVG\AVG2013\avgui.exe [4411952 2013-09-23] (AVG Technologies CZ, s.r.o.) HKLM\...\Run: [fspuip] - C:\Program Files\FSP\FspUip.exe [3994992 2011-06-29] (Sentelic Corporation) HKLM\...\Run: [ASUSWebStorage] - C:\Program Files\Asus\ASUS WebStorage\3.0.108.222\AsusWSPanel.exe [737104 2011-07-29] (ecareme) HKLM\...\Run: [HotKeysCmds] - C:\windows\system32\hkcmd.exe [ ] () HKLM\...\Run: [Eee Docking] - C:\Program Files\Asus\Eee Docking\Eee Docking.exe [419504 2011-04-14] (ASUSTek Computer Inc.) HKLM\...\Run: [CapsHook] - C:\Program Files\Asus\CapsHook\CapsHook.exe [445344 2010-11-15] (ASUS) HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM\...\Run: [SDTray] - C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe [5624784 2013-07-25] (Safer-Networking Ltd.) HKCU\...\Run: [Spybot-S&D Cleaning] - C:\Program Files\Spybot - Search & Destroy 2\SDCleaner.exe [3642312 2013-05-16] (Safer-Networking Ltd.) HKCU\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 HKU\Default\...\RunOnce: [Reboot] - C:\Windows\Reboot.exe [ 2010-12-13] (AsusTek Computer Inc.) HKU\Default\...\RunOnce: [AskScreensaver] - C:\Program Files\Asus\AsusScreensaver\AsusScreensaver.exe [ 2011-01-27] (AsusTek Computer Inc.) HKU\Default User\...\RunOnce: [Reboot] - C:\Windows\Reboot.exe [ 2010-12-13] (AsusTek Computer Inc.) HKU\Default User\...\RunOnce: [AskScreensaver] - C:\Program Files\Asus\AsusScreensaver\AsusScreensaver.exe [ 2011-01-27] (AsusTek Computer Inc.) ==================== Internet (Whitelisted) ==================== ProxyServer: localhost:21320 HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://speedtest-1.unitymedia.de/ SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=NP07&src=IE-SearchBox SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=NP07&src=IE-SearchBox SearchScopes: HKCU - {09038620-190C-402B-A92F-18864E6AB22F} URL = hxxp://go.1und1.de/br/ie9_search_web/?su={searchTerms} SearchScopes: HKCU - {6B1D1FB7-7233-4F7C-802C-21A1DDB12754} URL = hxxp://go.web.de/br/ie9_search_web/?su={searchTerms} SearchScopes: HKCU - {81CE708B-5104-4C62-B333-94B417473B29} URL = hxxp://go.mail.com/br/ie8_search_web/?su={searchTerms} BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - No File Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{1AB6B156-C5F6-42A7-A1E2-8B405911BFAE}: [NameServer]10.74.210.210 10.74.210.211 Tcpip\..\Interfaces\{2A8455B8-85AE-4424-829E-0B2CF9559BDF}: [NameServer]10.74.210.210 10.74.210.211 ========================== Services (Whitelisted) ================= R2 ASUS InstantOn; C:\Program Files\Common Files\InstantOn\InsOnSrv.exe [92800 2011-08-11] (ASUS) R2 AsusService; C:\windows\system32\AsusService.exe [224680 2011-07-11] () R2 AVGIDSAgent; C:\Program Files\AVG\AVG2013\avgidsagent.exe [4939312 2013-07-04] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files\AVG\AVG2013\avgwdsvc.exe [283136 2013-07-23] (AVG Technologies CZ, s.r.o.) R2 HWDeviceService.exe; C:\ProgramData\DatacardService\HWDeviceService.exe [270176 2011-01-28] () S2 Internet Manager. RunOuc; C:\Program Files\T-Mobile\InternetManager_H\UpdateDog\ouc.exe [224096 2012-04-16] () R2 MotoHelper; C:\Program Files\Motorola\MotoHelper\MotoHelperService.exe [214896 2011-12-06] () R2 SDScannerService; C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe [1817560 2013-05-16] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe [1033688 2013-05-16] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2013-05-15] (Safer-Networking Ltd.) R2 VideAceWindowsService; C:\ExpressGateUtil\VAWinService.exe [91464 2011-03-26] () S4 vToolbarUpdater12.2.6; C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\12.2.6\ToolbarUpdater.exe [x] ==================== Drivers (Whitelisted) ==================== R1 AsIO; C:\Windows\System32\drivers\AsIO.sys [11456 2010-06-28] () R1 AsUpIO; C:\Windows\System32\drivers\AsUpIO.sys [11832 2010-08-03] () R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdriverx.sys [208184 2013-07-20] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHX; C:\Windows\System32\DRIVERS\avgidshx.sys [60216 2013-07-20] (AVG Technologies CZ, s.r.o.) R1 AVGIDSShim; C:\Windows\System32\DRIVERS\avgidsshimx.sys [22328 2013-09-10] (AVG Technologies CZ, s.r.o.) R1 Avgldx86; C:\Windows\System32\DRIVERS\avgldx86.sys [171320 2013-07-20] (AVG Technologies CZ, s.r.o.) R0 Avglogx; C:\Windows\System32\DRIVERS\avglogx.sys [246072 2013-07-20] (AVG Technologies CZ, s.r.o.) R0 Avgmfx86; C:\Windows\System32\DRIVERS\avgmfx86.sys [96568 2013-07-01] (AVG Technologies CZ, s.r.o.) R0 Avgrkx86; C:\Windows\System32\DRIVERS\avgrkx86.sys [39224 2013-09-05] (AVG Technologies CZ, s.r.o.) R1 Avgtdix; C:\Windows\System32\DRIVERS\avgtdix.sys [182072 2013-03-21] (AVG Technologies CZ, s.r.o.) S4 avgtp; C:\windows\system32\drivers\avgtpx86.sys [27496 2012-09-30] (AVG Technologies) R3 fspad_win732; C:\Windows\System32\DRIVERS\fspad_win732.sys [54640 2011-06-29] (Windows (R) Win 7 DDK provider) S3 huawei_cdcacm; C:\Windows\System32\DRIVERS\ew_jucdcacm.sys [90112 2012-04-16] (Huawei Technologies Co., Ltd.) S3 huawei_ext_ctrl; C:\Windows\System32\DRIVERS\ew_juextctrl.sys [26624 2012-04-16] (Huawei Technologies Co., Ltd.) S3 huawei_wwanecm; C:\Windows\System32\DRIVERS\ew_juwwanecm.sys [181760 2012-04-16] (Huawei Technologies Co., Ltd.) R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [13880 2009-07-20] ( ) U5 AppMgmt; C:\Windows\system32\svchost.exe [20992 2009-07-14] (Microsoft Corporation) S3 btwavdt; \SystemRoot\system32\drivers\btwavdt.sys [x] S3 btwrchid; \SystemRoot\system32\drivers\btwrchid.sys [x] S3 catchme; \??\C:\Users\MEDIA~1.COM\AppData\Local\Temp\catchme.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-11-20 21:32 - 2013-11-20 21:32 - 01090881 _____ (Farbar) C:\Users\Media.Com GmbH\Desktop\FRST_A.exe 2013-11-20 21:29 - 2013-11-20 21:29 - 01090881 _____ (Farbar) C:\Users\Media.Com GmbH\Downloads\FRST.exe 2013-11-20 20:31 - 2013-11-20 20:31 - 00039305 _____ C:\Users\Media.Com GmbH\Desktop\JRT.txt 2013-11-20 20:20 - 2013-11-20 20:20 - 00000000 ____D C:\windows\ERUNT 2013-11-20 20:10 - 2013-11-20 20:10 - 00018097 _____ C:\Users\Media.Com GmbH\Desktop\AdwCleaner[S0].txt 2013-11-20 20:00 - 2013-11-20 20:06 - 00000000 ____D C:\AdwCleaner 2013-11-20 05:59 - 2013-11-20 05:59 - 01034531 _____ (Thisisu) C:\Users\Media.Com GmbH\Desktop\JRT.exe 2013-11-20 05:54 - 2013-11-20 05:54 - 01085542 _____ C:\Users\Media.Com GmbH\Desktop\adwcleaner.exe 2013-11-19 06:51 - 2013-11-19 07:22 - 00000000 ____D C:\Users\Media.Com GmbH\Desktop\mbar 2013-11-19 06:48 - 2013-11-19 06:48 - 12576792 _____ (Malwarebytes Corp.) C:\Users\Media.Com GmbH\Desktop\mbar-1.07.0.1007.exe 2013-11-18 23:57 - 2013-11-19 00:08 - 00189891 _____ C:\Users\Media.Com GmbH\Desktop\18_11.txt 2013-11-18 23:17 - 2013-11-18 23:24 - 00022727 _____ C:\Users\Media.Com GmbH\Desktop\Addition.txt 2013-11-18 23:15 - 2013-11-20 21:37 - 00009317 _____ C:\Users\Media.Com GmbH\Desktop\FRST.txt 2013-11-18 23:14 - 2013-11-18 23:14 - 00000000 ____D C:\FRST 2013-11-18 23:12 - 2013-11-18 23:12 - 01090881 _____ (Farbar) C:\Users\Media.Com GmbH\Desktop\FRST.exe 2013-11-16 12:50 - 2013-11-16 12:50 - 00000833 _____ C:\windows\wininit.ini 2013-11-15 21:01 - 2013-11-15 21:01 - 02166272 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 01926656 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl 2013-11-15 21:01 - 2013-11-15 21:01 - 01818112 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 01156608 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 01051136 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00703488 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00646144 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe 2013-11-15 21:01 - 2013-11-15 21:01 - 00645120 _____ (Microsoft Corporation) C:\windows\system32\jsIntl.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00616104 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dat 2013-11-15 21:01 - 2013-11-15 21:01 - 00367104 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00337408 _____ (Microsoft Corporation) C:\windows\system32\html.iec 2013-11-15 21:01 - 2013-11-15 21:01 - 00244736 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00238288 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00233472 _____ (Microsoft Corporation) C:\windows\system32\url.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00208896 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe 2013-11-15 21:01 - 2013-11-15 21:01 - 00208384 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00194048 _____ (Microsoft Corporation) C:\windows\system32\elshyph.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00182272 _____ (Microsoft Corporation) C:\windows\system32\msls31.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00164864 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00083456 _____ (Microsoft Corporation) C:\windows\system32\inseng.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00071680 _____ (Microsoft Corporation) C:\windows\system32\RegisterIEPKEYs.exe 2013-11-15 21:01 - 2013-11-15 21:01 - 00069632 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00069120 _____ (Microsoft Corporation) C:\windows\system32\icardie.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00062464 _____ (Microsoft Corporation) C:\windows\system32\tdc.ocx 2013-11-15 21:01 - 2013-11-15 21:01 - 00061952 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00043008 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00034816 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00032768 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00024576 _____ (Microsoft Corporation) C:\windows\system32\licmgr10.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 17142784 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 11220992 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 04240384 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb 2013-11-15 21:00 - 2013-11-15 21:00 - 00610304 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 00553472 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 00523776 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 00454656 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 00440832 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 00151552 _____ (Microsoft Corporation) C:\windows\system32\iexpress.exe 2013-11-15 21:00 - 2013-11-15 21:00 - 00139264 _____ (Microsoft Corporation) C:\windows\system32\wextract.exe 2013-11-15 21:00 - 2013-11-15 21:00 - 00127488 _____ (Microsoft Corporation) C:\windows\system32\occache.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 00116736 _____ (Microsoft Corporation) C:\windows\system32\iepeers.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 00112128 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe 2013-11-15 21:00 - 2013-11-15 21:00 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\IEAdvpack.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 00108032 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe 2013-11-15 21:00 - 2013-11-15 21:00 - 00086016 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 00074240 _____ (Microsoft Corporation) C:\windows\system32\SetIEInstalledDate.exe 2013-11-15 21:00 - 2013-11-15 21:00 - 00061952 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 00056832 _____ (Microsoft Corporation) C:\windows\system32\pngfilt.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\mshtmler.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 00043008 _____ (Microsoft Corporation) C:\windows\system32\msfeedsbs.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 00036352 _____ (Microsoft Corporation) C:\windows\system32\imgutil.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 00013312 _____ (Microsoft Corporation) C:\windows\system32\mshta.exe 2013-11-15 21:00 - 2013-11-15 21:00 - 00012800 _____ (Microsoft Corporation) C:\windows\system32\msfeedssync.exe 2013-11-15 21:00 - 2013-11-15 21:00 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 03419136 _____ (Microsoft Corporation) C:\windows\system32\d2d1.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 02284544 _____ (Microsoft Corporation) C:\windows\system32\msmpeg2vdec.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 01988096 _____ (Microsoft Corporation) C:\windows\system32\d3d10warp.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 01247744 _____ (Microsoft Corporation) C:\windows\system32\DWrite.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 01230336 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecs.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 01158144 _____ (Microsoft Corporation) C:\windows\system32\XpsPrint.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 01080832 _____ (Microsoft Corporation) C:\windows\system32\d3d10.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00906240 _____ (Microsoft Corporation) C:\windows\system32\FntCache.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00604160 _____ (Microsoft Corporation) C:\windows\system32\d3d10level9.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00417792 _____ (Microsoft Corporation) C:\windows\system32\WMPhoto.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00364544 _____ (Microsoft Corporation) C:\windows\system32\XpsGdiConverter.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00293376 _____ (Microsoft Corporation) C:\windows\system32\dxgi.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00249856 _____ (Microsoft Corporation) C:\windows\system32\d3d10_1core.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00220160 _____ (Microsoft Corporation) C:\windows\system32\d3d10core.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00207872 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecsExt.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00187392 _____ (Microsoft Corporation) C:\windows\system32\UIAnimation.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00161792 _____ (Microsoft Corporation) C:\windows\system32\d3d10_1.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00010752 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00009728 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00005632 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00005632 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00002560 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-11-15 20:55 - 2013-11-15 21:09 - 00011601 _____ C:\windows\IE11_main.log 2013-11-15 20:48 - 2013-10-04 02:58 - 00152576 _____ (Microsoft Corporation) C:\windows\system32\SmartcardCredentialProvider.dll 2013-11-15 20:48 - 2013-10-04 02:56 - 01796096 _____ (Microsoft Corporation) C:\windows\system32\authui.dll 2013-11-15 20:48 - 2013-10-04 02:56 - 00168960 _____ (Microsoft Corporation) C:\windows\system32\credui.dll 2013-11-15 20:48 - 2013-09-25 03:01 - 00136640 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys 2013-11-15 20:48 - 2013-09-25 03:01 - 00067520 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecdd.sys 2013-11-15 20:48 - 2013-09-25 02:57 - 00247808 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll 2013-11-15 20:48 - 2013-09-25 02:56 - 01038848 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll 2013-11-15 20:48 - 2013-09-04 02:15 - 00258560 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbhub.sys 2013-11-15 20:48 - 2013-09-04 02:14 - 00284672 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbport.sys 2013-11-15 20:48 - 2013-09-04 02:14 - 00076288 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbccgp.sys 2013-11-15 20:48 - 2013-09-04 02:14 - 00043008 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbehci.sys 2013-11-15 20:48 - 2013-09-04 02:14 - 00024064 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbuhci.sys 2013-11-15 20:48 - 2013-09-04 02:14 - 00020480 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbohci.sys 2013-11-15 20:48 - 2013-09-04 02:14 - 00006016 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbd.sys 2013-11-15 20:48 - 2013-07-04 13:16 - 00369848 _____ (Microsoft Corporation) C:\windows\system32\Drivers\cng.sys 2013-11-15 20:47 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\windows\system32\nshwfp.dll 2013-11-15 20:47 - 2013-10-12 03:01 - 00679424 _____ (Microsoft Corporation) C:\windows\system32\IKEEXT.DLL 2013-11-15 20:47 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\windows\system32\FWPUCLNT.DLL 2013-11-15 20:47 - 2013-10-05 20:57 - 01168384 _____ (Microsoft Corporation) C:\windows\system32\crypt32.dll 2013-11-15 20:47 - 2013-10-03 02:58 - 00305152 _____ (Microsoft Corporation) C:\windows\system32\gdi32.dll 2013-11-15 20:47 - 2013-09-25 02:57 - 00099840 _____ (Microsoft Corporation) C:\windows\system32\sspicli.dll 2013-11-15 20:47 - 2013-09-25 02:57 - 00022016 _____ (Microsoft Corporation) C:\windows\system32\secur32.dll 2013-11-15 20:47 - 2013-09-25 02:56 - 00220160 _____ (Microsoft Corporation) C:\windows\system32\ncrypt.dll 2013-11-15 20:47 - 2013-09-25 01:49 - 00022016 _____ (Microsoft Corporation) C:\windows\system32\lsass.exe 2013-11-15 20:47 - 2013-09-25 01:49 - 00015872 _____ (Microsoft Corporation) C:\windows\system32\sspisrv.dll 2013-11-12 22:33 - 2013-11-12 22:33 - 00000000 ____D C:\Users\Media.Com GmbH\AppData\Local\DriverTuner 2013-11-10 21:31 - 2013-11-10 21:31 - 00000000 ____D C:\Users\Media.Com GmbH\.areca 2013-11-10 21:30 - 2013-11-10 21:30 - 00001739 _____ C:\Users\Media.Com GmbH\Desktop\Areca.lnk 2013-11-10 21:30 - 2013-11-10 21:30 - 00000000 ____D C:\Users\Media.Com GmbH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Areca 2013-11-10 21:30 - 2013-11-10 21:30 - 00000000 ____D C:\Program Files\Areca 2013-11-09 20:15 - 2013-11-09 20:34 - 00002562 _____ C:\windows\diagwrn.xml 2013-11-09 20:15 - 2013-11-09 20:34 - 00001908 _____ C:\windows\diagerr.xml 2013-11-09 18:42 - 2013-09-14 01:48 - 00338944 _____ (Microsoft Corporation) C:\windows\system32\Drivers\afd.sys 2013-11-09 18:42 - 2013-09-08 03:07 - 01294272 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tcpip.sys 2013-11-09 18:42 - 2013-09-08 03:03 - 00231424 _____ (Microsoft Corporation) C:\windows\system32\mswsock.dll 2013-11-09 18:42 - 2013-08-29 02:51 - 03969472 _____ (Microsoft Corporation) C:\windows\system32\ntkrnlpa.exe 2013-11-09 18:42 - 2013-08-29 02:51 - 03914176 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe 2013-11-09 18:42 - 2013-08-29 02:50 - 01289096 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll 2013-11-09 18:42 - 2013-08-29 02:50 - 00619520 _____ (Microsoft Corporation) C:\windows\system32\tdh.dll 2013-11-09 18:42 - 2013-08-29 02:48 - 00640512 _____ (Microsoft Corporation) C:\windows\system32\advapi32.dll 2013-11-09 18:42 - 2013-08-28 02:04 - 02348544 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys 2013-11-09 18:42 - 2013-08-28 01:57 - 00434688 _____ (Microsoft Corporation) C:\windows\system32\scavengeui.dll 2013-11-09 18:42 - 2013-08-05 02:56 - 00133056 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ataport.sys 2013-11-09 18:42 - 2013-08-02 02:50 - 00169984 _____ (Microsoft Corporation) C:\windows\system32\winsrv.dll 2013-11-09 18:42 - 2013-08-02 02:49 - 00868352 _____ (Microsoft Corporation) C:\windows\system32\kernel32.dll 2013-11-09 18:42 - 2013-08-02 02:49 - 00293376 _____ (Microsoft Corporation) C:\windows\system32\KernelBase.dll 2013-11-09 18:42 - 2013-08-02 02:48 - 00005120 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-file-l1-1-0.dll 2013-11-09 18:42 - 2013-08-02 02:48 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2013-11-09 18:42 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2013-11-09 18:42 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-synch-l1-1-0.dll 2013-11-09 18:42 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-misc-l1-1-0.dll 2013-11-09 18:42 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2013-11-09 18:42 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localization-l1-1-0.dll 2013-11-09 18:42 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2013-11-09 18:42 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2013-11-09 18:42 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-memory-l1-1-0.dll 2013-11-09 18:42 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2013-11-09 18:42 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2013-11-09 18:42 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-heap-l1-1-0.dll 2013-11-09 18:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-string-l1-1-0.dll 2013-11-09 18:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-11-09 18:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-profile-l1-1-0.dll 2013-11-09 18:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-io-l1-1-0.dll 2013-11-09 18:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-handle-l1-1-0.dll 2013-11-09 18:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2013-11-09 18:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2013-11-09 18:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2013-11-09 18:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-debug-l1-1-0.dll 2013-11-09 18:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2013-11-09 18:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-console-l1-1-0.dll 2013-11-09 18:42 - 2013-08-02 01:52 - 00271360 _____ (Microsoft Corporation) C:\windows\system32\conhost.exe 2013-11-09 18:42 - 2013-08-02 01:43 - 00006144 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-security-base-l1-1-0.dll 2013-11-09 18:42 - 2013-08-02 01:43 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2013-11-09 18:42 - 2013-08-02 01:43 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2013-11-09 18:42 - 2013-08-02 01:43 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-util-l1-1-0.dll 2013-11-09 18:42 - 2013-08-01 12:03 - 00729024 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgkrnl.sys 2013-11-09 18:42 - 2013-07-26 02:55 - 12872704 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll 2013-11-09 18:42 - 2013-07-26 02:55 - 00180224 _____ (Microsoft Corporation) C:\windows\system32\shdocvw.dll 2013-11-09 18:42 - 2013-07-20 11:33 - 00102608 _____ (Microsoft Corporation) C:\windows\system32\PresentationCFFRasterizerNative_v0300.dll 2013-11-09 18:42 - 2013-07-12 11:08 - 00146816 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbvideo.sys 2013-11-09 18:42 - 2013-07-12 11:07 - 00086016 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbcir.sys 2013-11-09 18:42 - 2013-07-04 12:57 - 00205824 _____ (Microsoft Corporation) C:\windows\system32\WebClnt.dll 2013-11-09 18:42 - 2013-07-04 12:51 - 00081920 _____ (Microsoft Corporation) C:\windows\system32\davclnt.dll 2013-11-09 18:42 - 2013-07-04 12:50 - 00530432 _____ (Microsoft Corporation) C:\windows\system32\comctl32.dll 2013-11-09 18:42 - 2013-07-04 10:48 - 00115712 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxdav.sys 2013-11-09 18:42 - 2013-07-03 05:02 - 00036352 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbscan.sys 2013-11-09 18:42 - 2013-07-03 04:36 - 00055808 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hidclass.sys 2013-11-09 18:42 - 2013-07-03 04:36 - 00025728 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hidparse.sys 2013-11-09 18:42 - 2013-06-06 05:52 - 00026112 _____ (Microsoft Corporation) C:\windows\system32\lpk.dll 2013-11-09 18:42 - 2013-06-06 05:51 - 00070656 _____ (Microsoft Corporation) C:\windows\system32\fontsub.dll 2013-11-09 18:42 - 2013-06-06 05:50 - 00010240 _____ (Microsoft Corporation) C:\windows\system32\dciman32.dll 2013-11-09 18:42 - 2013-06-06 04:01 - 00295424 _____ (Adobe Systems Incorporated) C:\windows\system32\atmfd.dll 2013-11-09 18:42 - 2013-06-06 04:01 - 00034304 _____ (Adobe Systems) C:\windows\system32\atmlib.dll 2013-11-09 18:41 - 2013-06-25 23:56 - 00527064 _____ (Microsoft Corporation) C:\windows\system32\Drivers\Wdf01000.sys 2013-11-09 18:13 - 2013-11-09 18:13 - 00022731 _____ C:\ComboFix.txt 2013-11-09 17:18 - 2011-06-26 07:45 - 00256000 _____ C:\windows\PEV.exe 2013-11-09 17:18 - 2010-11-07 18:20 - 00208896 _____ C:\windows\MBR.exe 2013-11-09 17:18 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\windows\SWREG.exe 2013-11-09 17:18 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\windows\SWSC.exe 2013-11-09 17:18 - 2000-08-31 01:00 - 00098816 _____ C:\windows\sed.exe 2013-11-09 17:18 - 2000-08-31 01:00 - 00080412 _____ C:\windows\grep.exe 2013-11-09 17:18 - 2000-08-31 01:00 - 00068096 _____ C:\windows\zip.exe 2013-11-09 17:15 - 2013-11-09 18:13 - 00000000 ____D C:\Qoobox 2013-11-09 17:15 - 2013-11-09 18:08 - 00000000 ____D C:\windows\erdnt 2013-11-09 13:42 - 2013-11-14 22:07 - 00000000 ____D C:\Program Files\Google 2013-11-09 13:39 - 2013-11-14 22:06 - 00000000 ____D C:\Users\Media.Com GmbH\AppData\Local\Google 2013-11-09 01:13 - 2013-11-20 20:23 - 00000392 _____ C:\windows\Tasks\ViewPassword Update.job 2013-11-09 00:29 - 2013-11-19 07:22 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2013-11-09 00:29 - 2013-11-19 06:54 - 00105176 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\MBAMSwissArmy.sys 2013-11-09 00:29 - 2013-11-09 00:29 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-11-09 00:28 - 2013-11-19 06:51 - 00075992 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbamchameleon.sys 2013-11-01 18:30 - 2013-11-01 18:30 - 00002083 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2013-10-25 16:37 - 2013-11-15 20:55 - 00000000 ____D C:\windows\system32\MRT ==================== One Month Modified Files and Folders ======= 2013-11-20 21:37 - 2013-11-18 23:15 - 00009317 _____ C:\Users\Media.Com GmbH\Desktop\FRST.txt 2013-11-20 21:32 - 2013-11-20 21:32 - 01090881 _____ (Farbar) C:\Users\Media.Com GmbH\Desktop\FRST_A.exe 2013-11-20 21:29 - 2013-11-20 21:29 - 01090881 _____ (Farbar) C:\Users\Media.Com GmbH\Downloads\FRST.exe 2013-11-20 21:28 - 2012-04-01 19:57 - 00000000 ____D C:\ProgramData\MFAData 2013-11-20 21:06 - 2013-09-26 05:51 - 00000884 _____ C:\windows\Tasks\Adobe Flash Player Updater.job 2013-11-20 20:48 - 2012-03-14 12:00 - 01867912 _____ C:\windows\WindowsUpdate.log 2013-11-20 20:31 - 2013-11-20 20:31 - 00039305 _____ C:\Users\Media.Com GmbH\Desktop\JRT.txt 2013-11-20 20:31 - 2009-07-14 05:34 - 00009696 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-11-20 20:31 - 2009-07-14 05:34 - 00009696 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-11-20 20:23 - 2013-11-09 01:13 - 00000392 _____ C:\windows\Tasks\ViewPassword Update.job 2013-11-20 20:23 - 2009-07-14 05:53 - 00000006 ____H C:\windows\Tasks\SA.DAT 2013-11-20 20:23 - 2009-07-14 05:39 - 00005016 _____ C:\windows\setupact.log 2013-11-20 20:20 - 2013-11-20 20:20 - 00000000 ____D C:\windows\ERUNT 2013-11-20 20:10 - 2013-11-20 20:10 - 00018097 _____ C:\Users\Media.Com GmbH\Desktop\AdwCleaner[S0].txt 2013-11-20 20:06 - 2013-11-20 20:00 - 00000000 ____D C:\AdwCleaner 2013-11-20 18:08 - 2013-10-16 04:34 - 00000000 ____D C:\Users\Media.Com GmbH\AppData\Roaming\vlc 2013-11-20 05:59 - 2013-11-20 05:59 - 01034531 _____ (Thisisu) C:\Users\Media.Com GmbH\Desktop\JRT.exe 2013-11-20 05:54 - 2013-11-20 05:54 - 01085542 _____ C:\Users\Media.Com GmbH\Desktop\adwcleaner.exe 2013-11-19 07:22 - 2013-11-19 06:51 - 00000000 ____D C:\Users\Media.Com GmbH\Desktop\mbar 2013-11-19 07:22 - 2013-11-09 00:29 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2013-11-19 06:54 - 2013-11-09 00:29 - 00105176 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\MBAMSwissArmy.sys 2013-11-19 06:51 - 2013-11-09 00:28 - 00075992 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbamchameleon.sys 2013-11-19 06:48 - 2013-11-19 06:48 - 12576792 _____ (Malwarebytes Corp.) C:\Users\Media.Com GmbH\Desktop\mbar-1.07.0.1007.exe 2013-11-19 00:08 - 2013-11-18 23:57 - 00189891 _____ C:\Users\Media.Com GmbH\Desktop\18_11.txt 2013-11-18 23:24 - 2013-11-18 23:17 - 00022727 _____ C:\Users\Media.Com GmbH\Desktop\Addition.txt 2013-11-18 23:15 - 2009-07-14 03:37 - 00000000 __RHD C:\Users\Default 2013-11-18 23:14 - 2013-11-18 23:14 - 00000000 ____D C:\FRST 2013-11-18 23:12 - 2013-11-18 23:12 - 01090881 _____ (Farbar) C:\Users\Media.Com GmbH\Desktop\FRST.exe 2013-11-18 09:35 - 2012-05-14 15:19 - 01557762 _____ C:\windows\system32\PerfStringBackup.INI 2013-11-16 19:24 - 2009-07-14 03:37 - 00000000 ____D C:\windows\rescache 2013-11-16 13:09 - 2012-04-16 21:10 - 00692616 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerApp.exe 2013-11-16 13:09 - 2012-03-13 21:08 - 00000000 ____D C:\Users\Media.Com GmbH\AppData\Local\Adobe 2013-11-16 13:09 - 2011-09-23 01:37 - 00071048 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerCPLApp.cpl 2013-11-16 12:58 - 2011-09-23 01:10 - 00127014 _____ C:\windows\PFRO.log 2013-11-16 12:50 - 2013-11-16 12:50 - 00000833 _____ C:\windows\wininit.ini 2013-11-15 21:54 - 2011-09-23 01:38 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2013-11-15 21:40 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\nl-NL 2013-11-15 21:40 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\it-IT 2013-11-15 21:40 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\fr-FR 2013-11-15 21:40 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\de-DE 2013-11-15 21:39 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\zh-TW 2013-11-15 21:39 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\zh-HK 2013-11-15 21:39 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\zh-CN 2013-11-15 21:39 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\tr-TR 2013-11-15 21:39 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\sv-SE 2013-11-15 21:39 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\ru-RU 2013-11-15 21:39 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\pt-PT 2013-11-15 21:39 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\pt-BR 2013-11-15 21:39 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\pl-PL 2013-11-15 21:39 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\nb-NO 2013-11-15 21:39 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\ko-KR 2013-11-15 21:39 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\ja-JP 2013-11-15 21:39 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\hu-HU 2013-11-15 21:39 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\fi-FI 2013-11-15 21:39 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\el-GR 2013-11-15 21:09 - 2013-11-15 20:55 - 00011601 _____ C:\windows\IE11_main.log 2013-11-15 21:01 - 2013-11-15 21:01 - 02166272 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 01926656 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl 2013-11-15 21:01 - 2013-11-15 21:01 - 01818112 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 01156608 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 01051136 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00703488 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00646144 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe 2013-11-15 21:01 - 2013-11-15 21:01 - 00645120 _____ (Microsoft Corporation) C:\windows\system32\jsIntl.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00616104 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dat 2013-11-15 21:01 - 2013-11-15 21:01 - 00367104 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00337408 _____ (Microsoft Corporation) C:\windows\system32\html.iec 2013-11-15 21:01 - 2013-11-15 21:01 - 00244736 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00238288 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00233472 _____ (Microsoft Corporation) C:\windows\system32\url.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00208896 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe 2013-11-15 21:01 - 2013-11-15 21:01 - 00208384 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00194048 _____ (Microsoft Corporation) C:\windows\system32\elshyph.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00182272 _____ (Microsoft Corporation) C:\windows\system32\msls31.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00164864 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00083456 _____ (Microsoft Corporation) C:\windows\system32\inseng.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00071680 _____ (Microsoft Corporation) C:\windows\system32\RegisterIEPKEYs.exe 2013-11-15 21:01 - 2013-11-15 21:01 - 00069632 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00069120 _____ (Microsoft Corporation) C:\windows\system32\icardie.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00062464 _____ (Microsoft Corporation) C:\windows\system32\tdc.ocx 2013-11-15 21:01 - 2013-11-15 21:01 - 00061952 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00043008 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00034816 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00032768 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll 2013-11-15 21:01 - 2013-11-15 21:01 - 00024576 _____ (Microsoft Corporation) C:\windows\system32\licmgr10.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 17142784 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 11220992 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 04240384 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb 2013-11-15 21:00 - 2013-11-15 21:00 - 00610304 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 00553472 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 00523776 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 00454656 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 00440832 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 00151552 _____ (Microsoft Corporation) C:\windows\system32\iexpress.exe 2013-11-15 21:00 - 2013-11-15 21:00 - 00139264 _____ (Microsoft Corporation) C:\windows\system32\wextract.exe 2013-11-15 21:00 - 2013-11-15 21:00 - 00127488 _____ (Microsoft Corporation) C:\windows\system32\occache.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 00116736 _____ (Microsoft Corporation) C:\windows\system32\iepeers.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 00112128 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe 2013-11-15 21:00 - 2013-11-15 21:00 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\IEAdvpack.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 00108032 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe 2013-11-15 21:00 - 2013-11-15 21:00 - 00086016 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 00074240 _____ (Microsoft Corporation) C:\windows\system32\SetIEInstalledDate.exe 2013-11-15 21:00 - 2013-11-15 21:00 - 00061952 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 00056832 _____ (Microsoft Corporation) C:\windows\system32\pngfilt.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\mshtmler.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 00043008 _____ (Microsoft Corporation) C:\windows\system32\msfeedsbs.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 00036352 _____ (Microsoft Corporation) C:\windows\system32\imgutil.dll 2013-11-15 21:00 - 2013-11-15 21:00 - 00013312 _____ (Microsoft Corporation) C:\windows\system32\mshta.exe 2013-11-15 21:00 - 2013-11-15 21:00 - 00012800 _____ (Microsoft Corporation) C:\windows\system32\msfeedssync.exe 2013-11-15 21:00 - 2013-11-15 21:00 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 03419136 _____ (Microsoft Corporation) C:\windows\system32\d2d1.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 02284544 _____ (Microsoft Corporation) C:\windows\system32\msmpeg2vdec.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 01988096 _____ (Microsoft Corporation) C:\windows\system32\d3d10warp.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 01247744 _____ (Microsoft Corporation) C:\windows\system32\DWrite.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 01230336 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecs.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 01158144 _____ (Microsoft Corporation) C:\windows\system32\XpsPrint.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 01080832 _____ (Microsoft Corporation) C:\windows\system32\d3d10.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00906240 _____ (Microsoft Corporation) C:\windows\system32\FntCache.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00604160 _____ (Microsoft Corporation) C:\windows\system32\d3d10level9.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00417792 _____ (Microsoft Corporation) C:\windows\system32\WMPhoto.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00364544 _____ (Microsoft Corporation) C:\windows\system32\XpsGdiConverter.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00293376 _____ (Microsoft Corporation) C:\windows\system32\dxgi.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00249856 _____ (Microsoft Corporation) C:\windows\system32\d3d10_1core.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00220160 _____ (Microsoft Corporation) C:\windows\system32\d3d10core.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00207872 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecsExt.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00187392 _____ (Microsoft Corporation) C:\windows\system32\UIAnimation.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00161792 _____ (Microsoft Corporation) C:\windows\system32\d3d10_1.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00010752 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00009728 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00005632 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00005632 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-11-15 20:58 - 2013-11-15 20:58 - 00002560 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-11-15 20:55 - 2013-10-25 16:37 - 00000000 ____D C:\windows\system32\MRT 2013-11-15 20:49 - 2012-03-22 21:12 - 80340640 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe 2013-11-14 22:07 - 2013-11-09 13:42 - 00000000 ____D C:\Program Files\Google 2013-11-14 22:06 - 2013-11-09 13:39 - 00000000 ____D C:\Users\Media.Com GmbH\AppData\Local\Google 2013-11-12 22:33 - 2013-11-12 22:33 - 00000000 ____D C:\Users\Media.Com GmbH\AppData\Local\DriverTuner 2013-11-10 21:31 - 2013-11-10 21:31 - 00000000 ____D C:\Users\Media.Com GmbH\.areca 2013-11-10 21:31 - 2012-03-13 21:08 - 00000000 ____D C:\Users\Media.Com GmbH 2013-11-10 21:30 - 2013-11-10 21:30 - 00001739 _____ C:\Users\Media.Com GmbH\Desktop\Areca.lnk 2013-11-10 21:30 - 2013-11-10 21:30 - 00000000 ____D C:\Users\Media.Com GmbH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Areca 2013-11-10 21:30 - 2013-11-10 21:30 - 00000000 ____D C:\Program Files\Areca 2013-11-09 20:34 - 2013-11-09 20:15 - 00002562 _____ C:\windows\diagwrn.xml 2013-11-09 20:34 - 2013-11-09 20:15 - 00001908 _____ C:\windows\diagerr.xml 2013-11-09 20:15 - 2009-07-14 05:39 - 00000000 _____ C:\windows\setuperr.log 2013-11-09 20:02 - 2009-07-14 05:33 - 00287752 _____ C:\windows\system32\FNTCACHE.DAT 2013-11-09 18:13 - 2013-11-09 18:13 - 00022731 _____ C:\ComboFix.txt 2013-11-09 18:13 - 2013-11-09 17:15 - 00000000 ____D C:\Qoobox 2013-11-09 18:13 - 2009-07-14 03:37 - 00000000 ___RD C:\Users\Public 2013-11-09 18:08 - 2013-11-09 17:15 - 00000000 ____D C:\windows\erdnt 2013-11-09 18:06 - 2009-07-14 03:04 - 00000215 _____ C:\windows\system.ini 2013-11-09 17:40 - 2009-07-14 03:03 - 40894464 _____ C:\windows\system32\config\software.bak 2013-11-09 17:40 - 2009-07-14 03:03 - 19398656 _____ C:\windows\system32\config\system.bak 2013-11-09 17:40 - 2009-07-14 03:03 - 00262144 _____ C:\windows\system32\config\default.bak 2013-11-09 17:40 - 2009-07-14 03:03 - 00053248 _____ C:\windows\system32\config\sam.bak 2013-11-09 17:40 - 2009-07-14 03:03 - 00020480 _____ C:\windows\system32\config\security.bak 2013-11-09 17:06 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\LogFiles 2013-11-09 09:23 - 2013-07-27 17:26 - 00000114 _____ C:\Users\Media.Com GmbH\AppData\Roaming\WB.CFG 2013-11-09 09:23 - 2013-06-16 19:23 - 00000006 _____ C:\Users\Media.Com GmbH\AppData\Roaming\WBPU-TTL.DAT 2013-11-09 00:50 - 2009-07-14 03:37 - 00000000 ____D C:\windows\Microsoft.NET 2013-11-09 00:29 - 2013-11-09 00:29 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-11-07 11:20 - 2009-07-14 05:53 - 00032632 _____ C:\windows\Tasks\SCHEDLGU.TXT 2013-11-07 10:35 - 2013-03-05 10:13 - 00000000 ____D C:\ProgramData\OnlineUpdate 2013-11-05 23:08 - 2012-03-13 21:08 - 00064648 _____ C:\Users\Media.Com GmbH\AppData\Local\GDIPFONTCACHEV1.DAT 2013-11-02 15:22 - 2012-03-23 07:02 - 00000000 ____D C:\Users\Media.Com GmbH\AppData\Roaming\Mozilla 2013-11-02 05:29 - 2012-03-23 07:01 - 00000000 ____D C:\Program Files\Mozilla Firefox 2013-11-01 18:30 - 2013-11-01 18:30 - 00002083 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2013-11-01 18:30 - 2013-07-28 11:39 - 00000000 ____D C:\Program Files\Spybot - Search & Destroy 2 2013-11-01 16:13 - 2011-09-23 01:56 - 00000000 ____D C:\Program Files\Common Files\InstantOn 2013-11-01 16:13 - 2011-09-23 01:55 - 00000000 ____D C:\ExpressGateUtil 2013-11-01 16:13 - 2011-09-23 01:35 - 00000000 ____D C:\Program Files\E-Cam 2013-11-01 16:13 - 2009-07-14 05:52 - 00000000 ____D C:\Program Files\Windows Sidebar 2013-11-01 16:12 - 2013-04-17 21:27 - 00000000 ____D C:\Program Files\Freemake 2013-11-01 16:12 - 2012-11-01 20:01 - 00000000 ____D C:\Program Files\Microsoft CAPICOM 2.1.0.2 2013-11-01 16:12 - 2012-10-29 21:16 - 00000000 ____D C:\Program Files\Common Files\ScanSoft Shared 2013-11-01 16:12 - 2012-10-29 21:06 - 00000000 ____D C:\Program Files\Canon 2013-11-01 16:12 - 2012-09-19 10:57 - 00000000 ____D C:\Program Files\Opera 2013-11-01 16:12 - 2012-05-07 10:30 - 00000000 ____D C:\Users\Media.Com GmbH\AppData\Roaming\motorola 2013-11-01 16:12 - 2012-04-29 20:24 - 00000000 ____D C:\Program Files\Common Files\Nero 2013-11-01 16:12 - 2012-04-02 06:38 - 00000000 ____D C:\Program Files\OpenOffice.org 3 2013-11-01 16:12 - 2012-04-01 21:37 - 00000000 ____D C:\Program Files\Mozilla Thunderbird 2013-11-01 16:12 - 2012-03-13 21:09 - 00000000 ____D C:\Program Files\FSP 2013-11-01 16:12 - 2011-09-23 01:40 - 00000000 ____D C:\Program Files\Windows Live 2013-11-01 16:12 - 2011-09-23 01:35 - 00000000 ____D C:\Program Files\Common Files\Oberon Media 2013-11-01 16:12 - 2011-09-23 01:33 - 00000000 ____D C:\Program Files\Asus 2013-11-01 16:12 - 2011-09-23 01:26 - 00000000 ____D C:\Program Files\Atheros 2013-11-01 16:12 - 2011-09-23 01:23 - 00000000 ____D C:\Program Files\Realtek 2013-11-01 16:12 - 2011-09-23 01:23 - 00000000 ____D C:\Program Files\Common Files\InstallShield 2013-11-01 16:12 - 2011-09-23 01:22 - 00000000 ___HD C:\Program Files\InstallShield Installation Information 2013-11-01 16:12 - 2009-07-14 05:52 - 00000000 ____D C:\Program Files\Microsoft Games 2013-11-01 16:12 - 2009-07-14 03:37 - 00000000 ____D C:\windows\AppCompat 2013-11-01 16:12 - 2009-07-14 03:37 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2013-11-01 16:11 - 2009-07-14 03:37 - 00000000 ____D C:\windows\registration 2013-11-01 16:08 - 2013-09-28 16:59 - 00000000 ____D C:\Users\Media.Com GmbH\AppData\Local\Freemium 2013-11-01 16:08 - 2009-07-14 05:52 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2013-11-01 16:08 - 2009-07-14 05:52 - 00000000 ____D C:\Program Files\Windows Defender 2013-11-01 16:08 - 2009-07-14 03:37 - 00000000 ____D C:\Program Files\Windows NT 2013-11-01 16:07 - 2012-07-03 21:10 - 00000000 ____D C:\Program Files\Oracle 2013-11-01 16:07 - 2012-04-16 20:48 - 00000000 ____D C:\Program Files\T-Mobile 2013-11-01 16:07 - 2011-09-23 01:51 - 00000000 ____D C:\Program Files\syncables 2013-11-01 16:07 - 2009-07-14 05:52 - 00000000 ____D C:\Program Files\Reference Assemblies 2013-11-01 16:06 - 2012-12-02 20:49 - 00000000 ____D C:\Program Files\Motorola 2013-11-01 16:06 - 2012-04-01 20:07 - 00000000 ____D C:\Program Files\Media.Com 2013-11-01 16:06 - 2011-09-23 01:42 - 00000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition 2013-11-01 16:06 - 2009-07-14 05:52 - 00000000 ____D C:\Program Files\MSBuild 2013-11-01 16:05 - 2013-10-19 16:11 - 00000000 ____D C:\Program Files\Common Files\Java 2013-11-01 16:05 - 2013-06-22 22:38 - 00000000 ____D C:\Program Files\Java 2013-11-01 16:05 - 2012-04-29 19:52 - 00000000 ____D C:\Program Files\Common Files\Motorola Shared 2013-11-01 16:05 - 2011-09-23 01:38 - 00000000 ____D C:\Program Files\Common Files\Windows Live 2013-11-01 16:05 - 2011-09-23 01:21 - 00000000 ____D C:\Program Files\Intel 2013-11-01 16:05 - 2009-07-14 05:52 - 00000000 ____D C:\Program Files\DVD Maker 2013-11-01 16:05 - 2009-07-14 03:37 - 00000000 ____D C:\Program Files\Common Files\System 2013-11-01 16:05 - 2009-07-14 03:37 - 00000000 ____D C:\Program Files\Common Files\SpeechEngines 2013-11-01 16:04 - 2012-10-29 21:09 - 00000000 ___HD C:\Program Files\CanonBJ 2013-11-01 16:04 - 2012-04-01 19:59 - 00000000 ____D C:\Program Files\AVG 2013-11-01 16:04 - 2011-09-23 01:37 - 00000000 ____D C:\Program Files\Common Files\Adobe AIR 2013-11-01 16:04 - 2011-09-23 01:35 - 00000000 ____D C:\Program Files\Common Files\Adobe 2013-11-01 16:04 - 2011-09-23 01:35 - 00000000 ____D C:\Program Files\Adobe 2013-11-01 15:14 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\wfp 2013-10-23 09:05 - 2012-09-30 10:14 - 00000911 _____ C:\Users\Public\Desktop\AVG 2013.lnk Files to move or delete: ==================== C:\Users\Public\AlexaNSISPlugin.4508.dll Some content of TEMP: ==================== C:\Users\Media.Com GmbH\AppData\Local\temp\Quarantine.exe C:\Users\Media.Com GmbH\AppData\Local\temp\vlc-2.1.1-win32.exe ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe => MD5 is legit C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-11-20 20:42 ==================== End Of Log ============================ Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x86) Version: 18-11-2013 Ran by Media.Com GmbH at 2013-11-20 21:52:06 Running from C:\Users\Media.Com GmbH\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: AVG AntiVirus Free Edition 2013 (Enabled - Up to date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9} AV: Spybot - Search and Destroy (Disabled - Out of date) {20A26C15-1AF0-7CA3-9380-FAB824A7EE0D} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} AS: AVG AntiVirus Free Edition 2013 (Enabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664} ==================== Installed Programs ====================== 7-Zip 9.20 Acrobat.com (Version: 1.6.65) Adobe AIR (Version: 2.5.1.17730) Adobe Flash Player 11 ActiveX (Version: 11.9.900.117) Adobe Flash Player 11 Plugin (Version: 11.9.900.152) Adobe Reader X (10.1.4) - Deutsch (Version: 10.1.4) Areca ASUS WebStorage (Version: 3.0.108.222) AsusScreensaver (Version: 1.05) ASUSUpdate for Eee PC (Version: 1.06.03) AsusVibe2.0 (Version: 2.0.6.125) Atheros Client Installation Program (Version: 7.0) Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (Version: 1.0.2.43) AVG 2013 (Version: 13.0.3408) AVG 2013 (Version: 13.0.3426) AVG 2013 (Version: 13.0.3629) AVG 2013 (Version: 2013.0.3426) Broadcom Wireless Network Adapter (Version: 1.00.0000) Canon MP Navigator 3.1 Canon MP140 series Benutzerregistrierung Canon Utilities Easy-PhotoPrint CapsHook (Version: 1.0.0.7) Contrôle ActiveX Windows Live Mesh pour connexions à distance (Version: 15.4.5722.2) D3DX10 (Version: 15.4.2368.0902) E-Cam (Version: 2.0.3.0) Eee Docking 3.10.4 (Version: 3.10.4) ExpressGateCloud (Version: 2.7.37.253) Finger Sensing Pad Driver (Version: 9.1.3.4) FontResizer (Version: 1.01.0011) Galerie de photos Windows Live (Version: 15.4.3502.0922) Game Park Console (Version: 6.2.0.3) Hotkey Service (Version: 1.44) InstantOn for EPC (Version: 2.1.4) Intel(R) Graphics Media Accelerator Driver (Version: 8.14.10.2364) Intel(R) Rapid Storage Technology (Version: 9.6.4.1002) Internet Manager (Version: 22.001.18.00.748) Java 7 Update 45 (Version: 7.0.450) Java Auto Updater (Version: 2.1.9.8) JavaFX 2.1.1 (Version: 2.1.1) Junk Mail filter update (Version: 15.4.3502.0922) LiveUpdate (Version: 1.29) LocaleMe (Version: 1.3) Mesh Runtime (Version: 15.4.5722.2) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319) Microsoft Application Error Reporting (Version: 12.0.6012.5000) Microsoft Silverlight (Version: 5.1.10411.0) Microsoft SQL Server 2005 Compact Edition [ENU] (Version: 3.1.0000) Microsoft Visual C++ 2005 Redistributable (Version: 8.0.59193) Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (Version: 10.0.40219) MotoHelper 2.1.32 Driver 5.4.0 (Version: 2.1.32) MotoHelper MergeModules (Version: 1.2.0) Motorola Mobile Drivers Installation 5.4.0 (Version: 5.4.0) Mozilla Thunderbird 17.0.8 (x86 de) (Version: 17.0.8) MSVCRT (Version: 15.4.2862.0708) MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0) MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0) neroxml (Version: 1.0.0) OpenOffice.org 3.3 (Version: 3.3.9567) Opera 12.16 (Version: 12.16.1860) Raccolta foto di Windows Live (Version: 15.4.3502.0922) Realtek High Definition Audio Driver (Version: 6.0.1.6387) ScanSoft OmniPage SE 4 (Version: 15.2.0020) Spybot - Search & Destroy (Version: 2.1.21) Super Hybrid Engine (Version: 2.19) syncables desktop SE (Version: 5.5.746.11492) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (Version: 3) Update for Zip Opener ViewPassword Visual Studio 2012 x86 Redistributables (Version: 14.0.0.1) VLC media player 2.1.0 (Version: 2.1.0) Windows Live (Version: 15.4.3502.0922) Windows Live Communications Platform (Version: 15.4.3502.0922) Windows Live Essentials (Version: 15.4.3502.0922) Windows Live Essentials (Version: 15.4.3555.0308) Windows Live Family Safety (Version: 15.4.3555.0308) Windows Live Fotogalerie (Version: 15.4.3502.0922) Windows Live ID Sign-in Assistant (Version: 7.250.4232.0) Windows Live Installer (Version: 15.4.3502.0922) Windows Live Mail (Version: 15.4.3502.0922) Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (Version: 15.4.5722.2) Windows Live Mesh (Version: 15.4.3502.0922) Windows Live Mesh ActiveX Control for Remote Connections (Version: 15.4.5722.2) Windows Live Messenger (Version: 15.4.3538.0513) Windows Live MIME IFilter (Version: 15.4.3502.0922) Windows Live Movie Maker (Version: 15.4.3502.0922) Windows Live Photo Common (Version: 15.4.3502.0922) Windows Live Photo Gallery (Version: 15.4.3502.0922) Windows Live PIMT Platform (Version: 15.4.3508.1109) Windows Live Remote Client (Version: 15.4.5722.2) Windows Live Remote Client Resources (Version: 15.4.5722.2) Windows Live Remote Service (Version: 15.4.5722.2) Windows Live Remote Service Resources (Version: 15.4.5722.2) Windows Live SOXE (Version: 15.4.3502.0922) Windows Live SOXE Definitions (Version: 15.4.3502.0922) Windows Live UX Platform (Version: 15.4.3502.0922) Windows Live UX Platform Language Pack (Version: 15.4.3508.1109) Windows Live Writer (Version: 15.4.3502.0922) Windows Live Writer Resources (Version: 15.4.3502.0922) ==================== Restore Points ========================= 10-11-2013 19:05:55 Windows-Sicherung 15-11-2013 19:48:46 Windows Update 15-11-2013 20:52:48 Windows Update 17-11-2013 16:37:38 Windows-Sicherung 20-11-2013 18:36:34 Windows-Sicherung ==================== Hosts content: ========================== 2009-07-14 03:04 - 2013-11-09 18:06 - 00000027 ____A C:\windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (whitelisted) ============= Task: {0A1C65E5-0E26-4B09-9235-FA2790C7AD92} - System32\Tasks\{A625EF3D-6473-4F04-97A6-48DAC79495F6} => C:\Program Files\RegCleaner\RegCleanr.exe Task: {0A629667-66B0-439E-9D86-2F13042B09E8} - System32\Tasks\MotoHelper Initial Update => C:\Program Files\Motorola\MotoHelper\MotoHelperUpdate.exe [2011-12-06] () Task: {12B88299-96AB-4A99-A9AA-56084136B340} - System32\Tasks\MotoHelper MUM => C:\Program Files\Motorola\MotoHelper\MotoHelperUpdate.exe [2011-12-06] () Task: {3937BF63-3323-4F69-AEA4-BFCD613CACA2} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-07-27] (Adobe Systems Incorporated) Task: {44BFA5A6-1883-4DC6-A41F-914086251037} - System32\Tasks\{D80F25D4-B313-401A-B8C0-1C295ED5D7CA} => Firefox.exe Task: {4E67436D-9DDD-4511-83B2-356F2F463F08} - System32\Tasks\ViewPassword Update => C:\Program Files\ViewPassword\ViewPassword.exe Task: {4FBA8EE9-B48B-4D27-BA9A-0A7D129B314F} - System32\Tasks\{22A9C661-C2D7-46D4-91B3-8B226C716476} => D:\Program Files\RegCleaner\RegCleanr.exe Task: {53B562C7-2010-4174-8F9E-047CD8E343D9} - System32\Tasks\Freemium1ClickMaint => D:\Down\RegCleaner\1Click.exe Task: {54331128-04B4-4FBD-AEBF-D93188171555} - System32\Tasks\{E6014F26-2F39-4C4D-8F27-D75FB2C02259} => D:\Program Files\RegCleaner\RegCleanr.exe Task: {6124E711-8399-4234-ADBD-6A24FFAE6234} - System32\Tasks\MotoHelper Update => C:\Program Files\Motorola\MotoHelper\MotoHelperUpdate.exe [2011-12-06] () Task: {8C2A3830-8F91-4EEF-92A7-541F1509B70D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-11-16] (Adobe Systems Incorporated) Task: {9B214CF5-70EC-4873-8FE4-EE57A390AFD6} - System32\Tasks\ScanSoft Background Update => C:\Program Files\Common Files\ScanSoft Shared\SSBkgdUpdate\SSBkgdUpdate.exe [2006-10-25] (Nuance Communications, Inc.) Task: {9D2DD2FF-11DE-4F67-BCA2-FB5EE9FFB471} - System32\Tasks\{3016348A-32C2-4052-9FD8-92FF34C1F7A9} => C:\Program Files\RegCleaner\RegCleanr.exe Task: {A0A07926-4DA3-4A9D-8555-44BF3610CF1C} - System32\Tasks\Java Update Scheduler => C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-07-02] (Oracle Corporation) Task: {A1BFCE42-3877-4240-B2E9-D580018B07DF} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe Task: {C6CB0711-96A4-4DB9-BF46-8051B50FDAC2} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files\Spybot - Search & Destroy 2\SDScan.exe Task: {C73E3D4B-5AC1-4D59-9F64-F17616BE21DB} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files\Spybot - Search & Destroy 2\SDImmunize.exe Task: {C9C53D02-47D5-4527-A038-C8E7D6CA93CC} - System32\Tasks\MotoHelper Routing => C:\Program Files\Motorola\MotoHelper\MotoHelperUpdate.exe [2011-12-06] () Task: {FD472C52-8343-4540-8425-15D4A4D0FD13} - System32\Tasks\Microsoft\Windows\MUI\Lpksetup => C:\Windows\System32\lpksetup.exe [2010-11-20] (Microsoft Corporation) Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\windows\Tasks\ViewPassword Update.job => C:\Program Files\ViewPassword\ViewPassword.exe ==================== Loaded Modules (whitelisted) ============= 2012-04-16 20:51 - 2012-04-16 20:49 - 00011362 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\mingwm10.dll 2012-04-16 20:51 - 2012-04-16 20:49 - 00043008 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\libgcc_s_dw2-1.dll 2012-04-16 20:51 - 2012-04-16 20:49 - 02415104 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\QtCore4.dll 2012-04-16 20:51 - 2012-04-16 20:49 - 01148416 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\QtNetwork4.dll 2013-11-01 18:30 - 2013-05-16 10:55 - 00113496 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2013-11-01 18:30 - 2013-05-16 10:55 - 00416600 _____ () C:\Program Files\Spybot - Search & Destroy 2\DEC150.bpl 2013-11-01 18:30 - 2013-05-16 10:55 - 00161112 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlFileFormats150.bpl 2013-07-28 11:39 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files\Spybot - Search & Destroy 2\sqlite3.dll 2013-07-28 11:39 - 2012-04-03 16:06 - 00565640 _____ () C:\Program Files\Spybot - Search & Destroy 2\av\BDSmartDB.dll 2011-03-26 01:55 - 2011-03-26 01:55 - 00157000 _____ () C:\ExpressGateUtil\libexpat.dll 2011-03-26 01:55 - 2011-03-26 01:55 - 00061768 _____ () C:\ExpressGateUtil\netProfileDatabase.DLL 2010-09-02 12:08 - 2010-09-02 12:08 - 00118784 _____ () C:\Program Files\Asus\ASUS WebStorage\3.0.108.222\AsusWSShellExt.dll 2012-04-16 20:51 - 2012-04-16 20:49 - 09515520 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\QtGui4.dll 2012-04-16 20:55 - 2012-04-16 20:49 - 00082944 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\plugins\imageformats\qgif4.dll 2012-04-16 20:55 - 2012-04-16 20:49 - 00081920 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\plugins\imageformats\qico4.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\ProgramData\TEMP:862BDB1A ==================== Safe Mode (whitelisted) =================== ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== System errors: ============= Microsoft Office Sessions: ========================= ==================== Memory info =========================== Percentage of memory in use: 90% Total physical RAM: 1014.18 MB Available physical RAM: 99.11 MB Total Pagefile: 2038.18 MB Available Pagefile: 728.84 MB Total Virtual: 2047.88 MB Available Virtual: 1896.79 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:100 GB) (Free:74.19 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: () (Fixed) (Total:183.07 GB) (Free:110.81 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298 GB) (Disk ID: 43B3BC89) Partition 1: (Active) - (Size=100 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=15 GB) - (Type=1B) Partition 3: (Not Active) - (Size=183 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=16 MB) - (Type=EF) ==================== End Of Log ============================ |
20.11.2013, 23:17 | #12 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter C:\Users\Public\AlexaNSISPlugin.4508.dll C:\Users\Media.Com GmbH\AppData\Local\temp\Quarantine.exe C:\Users\Media.Com GmbH\AppData\Local\temp\vlc-2.1.1-win32.exe Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
__________________ Logfiles bitte immer in CODE-Tags posten |
21.11.2013, 22:40 | #13 |
| Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dllCode:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 18-11-2013 Ran by Media.Com GmbH at 2013-11-21 22:37:09 Run:1 Running from C:\Users\Media.Com GmbH\Desktop Boot Mode: Normal ============================================== Content of fixlist: ***************** C:\Users\Public\AlexaNSISPlugin.4508.dll C:\Users\Media.Com GmbH\AppData\Local\temp\Quarantine.exe C:\Users\Media.Com GmbH\AppData\Local\temp\vlc-2.1.1-win32.exe ***************** C:\Users\Public\AlexaNSISPlugin.4508.dll => Moved successfully. C:\Users\Media.Com GmbH\AppData\Local\temp\Quarantine.exe => Moved successfully. C:\Users\Media.Com GmbH\AppData\Local\temp\vlc-2.1.1-win32.exe => Moved successfully. ==== End of Fixlog ==== |
22.11.2013, 00:32 | #14 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll Sieht ok aus. Wir sollten fast durch sein. Mach bitte zur Kontrolle einen Quickscan mit Malwarebytes Anti-Malware (MBAM) Hinweis: Denk bitte vorher daran, Malwarebytes Anti-Malware über den Updatebutton zu aktualisieren! Anschließend über den OnlineScanner von ESET eine zusätzliche Meinung zu holen ist auch nicht verkehrt: ESET Online Scanner
__________________ Logfiles bitte immer in CODE-Tags posten |
24.11.2013, 23:21 | #15 |
| Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dllCode:
ATTFilter Malwarebytes Anti-Malware (Test) 1.75.0.1300 www.malwarebytes.org Datenbank Version: v2013.11.24.03 Windows 7 Service Pack 1 x86 NTFS Internet Explorer 11.0.9600.16428 Media.Com GmbH :: MEDIACOMGMBH-PC [Administrator] Schutz: Aktiviert 24.11.13 10:51:33 mbam-log-2013-11-24 (10-51-33).txt Art des Suchlaufs: Quick-Scan Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 205167 Laufzeit: 16 Minute(n), 9 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 0 (Keine bösartigen Objekte gefunden) (Ende) |
Themen zu Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll |
.dll, beim starten, bereit, dll, fehlermeldung, files, firefox, free, home, hometab\tbupdater.dll, langsamer, malware, modul, problem, problem beim starten von c, probleme, rechner, run.dll, rundll, schonmal, starte, starten, system, systemfehler, utilities, verwendet, viren, win, win7 |