|
Plagegeister aller Art und deren Bekämpfung: Bedrohung: Win32: Agent-ASOG (Trj)Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
10.01.2014, 16:18 | #1 |
| Bedrohung: Win32: Agent-ASOG (Trj) Hallo, ich habe ein Problem, dass seit heute sich bei JEDER Website die ich öffne, Avast mit einer Bedrohung meldet. Habe daraufhin einen Virenscan durchgeführt und siehe da, es wurde das gefunden: Bedrohung:Win32: Agent-ASOG (Trj) Schweregrad: Hoch Ich habe Windows Vista übrigens. Ich habe keine Ahnung von Computerdingen, kann mir jemand möglichst einfach erklären, was nun am besten zu tun ist? Ich weiß nicht weiter Danke im Voraus Lg Honey552 |
10.01.2014, 16:20 | #2 | |
/// TB-Ausbilder | Bedrohung: Win32: Agent-ASOG (Trj) Hallo,
__________________Zitat:
Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
10.01.2014, 16:52 | #3 |
| Bedrohung: Win32: Agent-ASOG (Trj) Klar
__________________C:\Users\Nadine\AppData\Roaming\DigitalSites/UpdateProc/UpdateTask.exe Keine Ahnung was das sein soll. Ich hab da mal drauf geklickt und zack erscheint die Meldung von Avast. Achso, das danach hab ich ganz überlesen. Werde das jetzt runterladen und machen. Moment Danke für die Hilfe schonmal Kurze Frage: Ist das richtig: i Mesh? Da steht irgendwas von Musik hören usw.?? also ich hab dieses i Mesh runtergeladen und hab jetzt ein Musikdownloadeprogramm?? Hat sich grad erledigt, hab nun die richtige Datei und es scant nun Soo hier die Ergebnisse: Addition.txt dditional scan result of Farbar Recovery Scan Tool (x86) Version: 10-01-2014 Ran by Nadine at 2014-01-10 16:48:05 Running from C:\Users\Nadine\Desktop\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Avira Desktop (Enabled - Up to date) {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C} AS: Avira Desktop (Enabled - Up to date) {4D1AAC01-E68E-63B1-344F-57F1C6DA4691} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== ABBYY FineReader 9.0 Sprint (Version: 9.01.513.58212 - ABBYY) ABBYY FineReader 9.0 Sprint (Version: 9.01.513.58212 - ABBYY) Hidden Adobe Flash Player 10 ActiveX (Version: 10.0.22.87 - Adobe Systems Incorporated) Adobe Flash Player 11 Plugin (Version: 11.9.900.170 - Adobe Systems Incorporated) Adobe Reader 9.1 - Deutsch (Version: 9.1.0 - Adobe Systems Incorporated) ALTools Update (Version: - ESTsoft Corp.) ArcSoft PhotoStudio 5.5 (Version: - ArcSoft) ArcSoft WebCam Companion 2 (Version: - ArcSoft) Ask Toolbar (Version: 1.15.23.0 - Ask.com) <==== ATTENTION Ask Toolbar Updater (Version: 1.2.5.36191 - Ask.com) <==== ATTENTION Audio/Video Conference 4.2+ (Version: 4.2+ - Audio/Video Conference Software) avast! Free Antivirus (Version: 9.0.2011 - Avast Software) Canon MP510 (Version: - ) Canon Utilities Easy-PhotoPrint (Version: - ) Carnet d'activités À plus! 1 (Version: 1.00.000 - ) CCleaner (Version: 3.23 - Piriform) Citrix Online Launcher (Version: 1.0.109 - Citrix) CK Gruß- und Einladungskarten Designer (Version: 1.80.0000 - CK Software) Click to Disc (Version: 1.2.00.06190 - Sony Corporation) Hidden Click to Disc Editor (Version: 1.2.00 - Sony Corporation) Click to Disc Editor (Version: 1.2.00 - Sony Corporation) Hidden Die Sims 2 (Version: - ) Digitale Bibliothek 4 (Version: - ) eBesucher Restarter 1.05 (Version: - eBesucher) Epson Easy Photo Print 2 (Version: 2.2.4.0 - SEIKO EPSON CORPORATION) Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) (Version: 1.00.0000 - SEIKO EPSON CORPORATION) Epson Event Manager (Version: 2.50.0000 - SEIKO EPSON CORPORATION) EPSON Scan (Version: - Seiko Epson Corporation) EPSON SX230 Series Printer Uninstall (Version: - SEIKO EPSON Corporation) Franzis Physik Klasse 10 (Version: 1.00.0000 - Franzis Verlag) Free YouTube to MP3 Converter version 3.12.12.827 (Version: 3.12.12.827 - DVDVideoSoft Ltd.) GIMP 2.8.10 (Version: 2.8.10 - The GIMP Team) Google Earth (Version: 7.1.2.2041 - Google) Google Update Helper (Version: 1.3.22.3 - Google Inc.) Hidden GoToMeeting 5.5.0.1133 (Version: 5.5.0.1133 - CitrixOnline) HDAUDIO SoftV92 Data Fax Modem with SmartCP (Version: - ) Image Editor Packages (Version: - ) iMesh (Version: 12.5.0.134600 - iMesh Inc) Intel PROSet Wireless (Version: - ) Hidden Intel(R) Graphics Media Accelerator Driver (Version: - ) Intel(R) PROSet/Wireless WiFi-Software (Version: 12.00.0004 - Intel(R) Corporation) Java 7 Update 25 (Version: 7.0.250 - Oracle) Java Auto Updater (Version: 2.1.9.5 - Sun Microsystems, Inc.) Hidden Java(TM) 6 Update 31 (Version: 6.0.310 - Oracle) Java(TM) 6 Update 6 (Version: 1.6.0.60 - Sun Microsystems, Inc.) Lexikon - Biologie (Version: - ) Lexikon - Physik (Version: - ) McAfee Security Scan Plus (Version: 3.8.130.10 - McAfee, Inc.) Microsoft .NET Framework 1.1 (Version: - ) Microsoft .NET Framework 1.1 (Version: 1.1.4322 - Microsoft) Hidden Microsoft .NET Framework 1.1 German Language Pack (Version: 1.1.4322 - Microsoft) Microsoft .NET Framework 1.1 Security Update (KB2416447) (Version: - ) Microsoft .NET Framework 1.1 Security Update (KB979906) (Version: - ) Microsoft .NET Framework 3.5 Language Pack SP1 - DEU (Version: - Microsoft Corporation) Microsoft .NET Framework 3.5 Language Pack SP1 - deu (Version: 3.5.30729 - Microsoft Corporation) Hidden Microsoft .NET Framework 3.5 SP1 (Version: - Microsoft Corporation) Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6012.5000 - Microsoft Corporation) Hidden Microsoft Silverlight (Version: 4.1.10329.0 - Microsoft Corporation) Microsoft SQL Server Native Client (Version: 9.00.5000.00 - Microsoft Corporation) Microsoft SQL Server VSS Writer (Version: 9.00.5000.00 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (Version: 9.0.30729.5570 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 (Version: 9.0.30411 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual J# .NET Redistributable Package 1.1 (Version: 1.1.4322 - Microsoft) Mozilla Firefox 26.0 (x86 de) (Version: 26.0 - Mozilla) Mozilla Maintenance Service (Version: 26.0 - Mozilla) MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0 - Microsoft Corporation) Music Transfer (Version: 1.2.00.17290 - Sony Corporation) OpenMG Secure Module 5.1.00 (Version: 5.1.00.05200 - Sony Corporation) OpenMG Secure Module 5.1.00 (Version: 5.1.00.05200 - Sony Corporation) Hidden OpenOffice.org 3.4 (Version: 3.4.9590 - OpenOffice.org) Paint.NET v3.5.10 (Version: 3.60.0 - dotPDN LLC) PDF Architect (Version: 1.1.83.9982 - pdfforge GmbH) PDFCreator (Version: 1.7.1 - pdfforge) PhotoScape (Version: - ) Picasa 3 (Version: 3.1 - Google, Inc.) Plus-HD-5.0 (Version: 1.31.153.3 - Plus HD) <==== ATTENTION Primo (Version: 1.00.0000 - Your Company Name) Hidden QuickTime (Version: - ) Realtek High Definition Audio Driver (Version: 6.0.1.5653 - Realtek Semiconductor Corp.) SAMSUNG CDMA Modem Driver Set (Version: - ) SAMSUNG Mobile USB Modem 1.0 Software (Version: - ) SAMSUNG Mobile USB Modem Software (Version: - ) Samsung PC Studio 3 USB Driver Installer (Version: 1.00.0000 - Samsung Electronics Co., Ltd.) Samsung Samples Installer (Version: 1.00.0000 - Samsung Electronics Co., Ltd.) ScanSoft OmniPage SE 4.0 (Version: 15.00.0020 - Nuance Communications, Inc.) Setting Utility Series (Version: 4.1.00.07030 - Sony Corporation) Skype Click to Call (Version: 6.3.11079 - Skype Technologies S.A.) Skype™ 6.6 (Version: 6.6.106 - Skype Technologies S.A.) Sony Picture Utility (Version: 3.2.02.06170 - Sony Corporation) Sony Video Shared Library (Version: 3.4.00 - Sony Corporation) Spotify (Version: 0.8.5.1333.g822e0de8 - Spotify AB) Synaptics Pointing Device Driver (Version: 9.1.13.0 - Synaptics) T-Online WLAN-Access Finder (Version: - ) TuneUp Utilities Language Pack (de-DE) (Version: 13.0.2020.4 - TuneUp Software) Hidden Unterstützung für VAIO-Präsentation (Version: 1.0.00.04240 - Sony Corporation) Unterstützungsdateien für das Microsoft SQL Server-Setup (Englisch) (Version: 9.00.5000.00 - Microsoft Corporation) Update for Image Editor (Version: - Update for Image Editor) Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1 - Microsoft Corporation) VAIO Content Folder Setting (Version: 2.0.00.17290 - Sony Corporation) VAIO Content Metadata Intelligent Analyzing Manager (Version: 3.2.00.06115 - Sony Corporation) Hidden VAIO Content Metadata Manager Setting (Version: 3.2.00.06062 - Sony Corporation) Hidden VAIO Content Metadata XML Interface Library (Version: 3.2.00.06112 - Sony Corporation) VAIO Content Metadata XML Interface Library (Version: 3.2.00.06112 - Sony Corporation) Hidden VAIO Control Center (Version: 3.1.00.07040 - Sony Corporation) VAIO Data Restore Tool (Version: 1.0.04.01170 - Sony Corporation) VAIO DVD Menu Data Basic (Version: 1.0.00.08130 - Sony Corporation) VAIO Energie Verwaltung (Version: 3.1.00.06190 - Sony Corporation) VAIO Entertainment Platform (Version: 3.2.00.06200 - Sony Corporation) VAIO Entertainment Platform (Version: 3.2.00.06200 - Sony Corporation) Hidden VAIO Event Service (Version: 4.1.00.07070 - Sony Corporation) VAIO Guide (Version: 2.4.00.06190 - Sony Corporation) VAIO Launcher (Version: 2.1.00.06130 - Sony Corporation) VAIO Marketing Tools (Version: - Sony Corporation) VAIO Media plus (Version: 1.1.00.05240 - Sony Corporation) VAIO Media plus (Version: 1.1.00.05240 - Sony Corporation) Hidden VAIO MusicBox (Version: 2.1.00.06110 - Sony Corporation) VAIO MusicBox Sample Music (Version: 1.1.00.14140 - Sony Corporation) VAIO Original Function Setting (Version: 1.4.00.04230 - Sony Corporation) VAIO Smart Network (Version: 2.1.00.06270 - Sony Corporation) VAIO Update 4 (Version: 4.0.0.06110 - Sony Corporation) VAIO Wallpaper Contents (Version: 1.2.00.05200 - Sony Corporation) VIS (Version: - ) VLC media player 2.0.3 (Version: 2.0.3 - VideoLAN) Wajam (Version: 1.51 - Wajam) <==== ATTENTION WinDVD for VAIO (Version: 8.0-B9.513 - InterVideo Inc.) WinDVD for VAIO (Version: 8.0-B9.513 - InterVideo Inc.) Hidden WinRAR 4.20 (32-Bit) (Version: 4.20.0 - win.rar GmbH) Yontoo 1.10.03 (Version: 1.10.03 - Yontoo LLC) <==== ATTENTION ==================== Restore Points ========================= 17-07-2012 12:37:10 xpy 1.2.5 29-08-2012 12:37:40 Installed CK Gruß- und Einladungskarten Designer. 14-12-2012 09:07:49 TuneUp Utilities 2013 wird entfernt 14-12-2012 09:10:05 TuneUp Utilities Language Pack (de-DE) wird entfernt 11-01-2013 20:31:37 TubeBox 28-02-2013 14:38:06 Removed Skype™ 6.0 24-03-2013 16:34:40 Franzis Physik Klasse 10 wird installiert 08-04-2013 15:56:56 Installed Java 7 Update 17 30-04-2013 17:50:35 Removed Java(TM) 6 Update 31 30-05-2013 08:01:06 Installed Java 7 Update 21 18-07-2013 09:39:46 Removed CK Gruß- und Einladungskarten Designer. 18-08-2013 15:40:41 Installed Java 7 Update 25 19-08-2013 09:17:36 Installiert Wildlife Park 2 26-11-2013 09:26:50 avast! antivirus system restore point 01-01-2014 15:23:21 avast! antivirus system restore point 03-01-2014 16:26:50 Installed Poladroid 03-01-2014 16:31:36 Installed Poladroid 04-01-2014 11:13:13 Removed Poladroid ==================== Hosts content: ========================== 2006-11-02 11:23 - 2006-09-18 22:41 - 00000761 ____N C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ::1 localhost ==================== Scheduled Tasks (whitelisted) ============= Task: {0D4366B2-EC02-432F-ABCA-E1DB86292FD0} - System32\Tasks\Microsoft\Windows\WindowsCalendar\Reminders - Nadine => C:\Program Files\Windows Calendar\WinCal.exe [2008-01-21] (Microsoft Corporation) Task: {0E24852A-702D-45FB-9F69-22098462AC60} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-01-01] (AVAST Software) Task: {19BD4EA0-4B2D-4B3E-BD55-505C8760FCE6} - System32\Tasks\{C642781C-3FD6-4312-B61E-6495409AC8F9} => Firefox.exe Skype auf Ihren Computer herunterladen ? Mac, Windows, Linux*?*Skype Task: {1CC81347-6204-4B83-900C-01E02F50F067} - System32\Tasks\Microsoft\Windows\MobilePC\TMM Task: {320124A7-D70F-41DE-A9D1-D5E8E19D5D91} - System32\Tasks\Microsoft\Windows\NetworkAccessProtection\NAPStatus UI Task: {3BCDF251-CA5C-4045-A1FC-8FCEF9FBDC93} - System32\Tasks\Microsoft\Windows\Shell\CrawlStartPages Task: {44980BEE-7809-44A9-AC24-D6E578A3B7DF} - System32\Tasks\Microsoft\Windows\RAC\RACAgent => C:\Windows\System32\RacAgent.exe [2008-01-21] (Microsoft Corporation) Task: {46197AB5-D08C-417A-A4A3-B294CC630407} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2012-09-24] (Piriform Ltd) Task: {7A4DEB9D-BAF6-4F8F-B0E6-34E0EA778614} - System32\Tasks\{B34FE132-8AA6-4F77-B633-A3CA21B40909} => Firefox.exe Skype auf Ihren Computer herunterladen ? Mac, Windows, Linux*?*Skype Task: {7DE2A3A9-8792-451A-97F0-4234AF642826} - System32\Tasks\SONY\VAIO Wallpaper Setting Tool\VAIO Wallpaper Setting Tool => C:\Program Files\Sony\VAIO Wallpaper Setting Tool\VWSet.exe [2008-06-27] (Sony Corporation) Task: {DC4D9C47-3ADA-4AAD-8CEB-FD6465F9DD3B} - System32\Tasks\{BA014D31-7426-4406-B38F-BDDCB3D7D41A} => Firefox.exe Skype auf Ihren Computer herunterladen ? Mac, Windows, Linux*?*Skype Task: {DE7BB151-9385-4136-A7BC-9FA352A40C4E} - System32\Tasks\{0BDB4381-B79B-4011-8651-4076C38A8922} => Firefox.exe Skype auf Ihren Computer herunterladen ? Mac, Windows, Linux*?*Skype Task: {E308BC53-EC07-4C5D-81E5-63AFDC1C9C69} - System32\Tasks\SONY\VAIO Update\VAIO Update => C:\Program Files\Sony\VAIO Update 4\VAIOUpdt.exe [2008-06-11] (Sony Corporation) Task: {E5150B95-F9B4-4D5D-95A2-7EC1ACBA95F8} - System32\Tasks\Microsoft\Windows\Wireless\GatherWirelessInfo => C:\Windows\System32\gatherWirelessInfo.vbs [2008-01-21] () Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\avast! Emergency Update.job => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cef5bbfc666ec0.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\Plus-HD-5.0-chromeinstaller.job => C:\Program Files\Plus-HD-5.0\Plus-HD-5.0-chromeinstaller.exe <==== ATTENTION Task: C:\Windows\Tasks\Plus-HD-5.0-codedownloader.job => C:\Program Files\Plus-HD-5.0\Plus-HD-5.0-codedownloader.exe <==== ATTENTION Task: C:\Windows\Tasks\Plus-HD-5.0-enabler.job => C:\Program Files\Plus-HD-5.0\Plus-HD-5.0-enabler.exe <==== ATTENTION Task: C:\Windows\Tasks\Plus-HD-5.0-firefoxinstaller.job => C:\Program Files\Plus-HD-5.0\Plus-HD-5.0-firefoxinstaller.exe <==== ATTENTION Task: C:\Windows\Tasks\Plus-HD-5.0-updater.job => C:\Program Files\Plus-HD-5.0\Plus-HD-5.0-updater.exe <==== ATTENTION Task: C:\Windows\Tasks\Scheduled Update for Ask Toolbar.job => C:\Program Files\Ask.com\UpdateTask.exe Task: C:\Windows\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013.job => C:\Program Files\TuneUp Utilities 2013\OneClick.exe Task: C:\Windows\Tasks\User_Feed_Synchronization-{103B65BD-4798-4CA0-9487-EB211B637804}.job => C:\Windows\system32\msfeedssync.exe ==================== Loaded Modules (whitelisted) ============= 2013-11-26 10:30 - 2013-11-26 10:30 - 19336120 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2013-12-20 13:26 - 2013-12-20 13:26 - 03559024 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\Users\Nadine:zylomtest AlternateDataStreams: C:\Users\Nadine:zylomtr{000HQ7FF-AD7A-3FG3-VK8A-25GG67KOIVUV} AlternateDataStreams: C:\Users\Nadine\Downloads\twilight.mp4:TOC.WMV ==================== Safe Mode (whitelisted) =================== ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (01/10/2014 03:11:47 PM) (Source: VzCdbSvc) (User: ) Description: Das Plug-In-Modul konnte nicht geladen werden. (GUID = {56F9312C-C989-4E04-8C23-299DEE3A36F5}) (Fehlercode = 0x80042019) Error: (01/10/2014 03:11:46 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/09/2014 07:24:41 PM) (Source: VzCdbSvc) (User: ) Description: Das Plug-In-Modul konnte nicht geladen werden. (GUID = {56F9312C-C989-4E04-8C23-299DEE3A36F5}) (Fehlercode = 0x80042019) Error: (01/09/2014 07:24:36 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/09/2014 07:02:05 PM) (Source: VzCdbSvc) (User: ) Description: Das Plug-In-Modul konnte nicht geladen werden. (GUID = {56F9312C-C989-4E04-8C23-299DEE3A36F5}) (Fehlercode = 0x80042019) Error: (01/09/2014 07:02:03 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/09/2014 01:56:25 PM) (Source: VzCdbSvc) (User: ) Description: Das Plug-In-Modul konnte nicht geladen werden. (GUID = {56F9312C-C989-4E04-8C23-299DEE3A36F5}) (Fehlercode = 0x80042019) Error: (01/09/2014 01:56:25 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/09/2014 10:46:48 AM) (Source: VzCdbSvc) (User: ) Description: Das Plug-In-Modul konnte nicht geladen werden. (GUID = {56F9312C-C989-4E04-8C23-299DEE3A36F5}) (Fehlercode = 0x80042019) Error: (01/09/2014 10:46:36 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (01/10/2014 03:11:48 PM) (Source: Service Control Manager) (User: ) Description: SQL Server VSS Writer1 Error: (01/10/2014 03:11:48 PM) (Source: Service Control Manager) (User: ) Description: IPsec-Richtlinien-AgentBFE Error: (01/10/2014 03:11:48 PM) (Source: Service Control Manager) (User: ) Description: IKE- und AuthIP IPsec-SchlüsselerstellungsmoduleBFE Error: (01/10/2014 03:11:48 PM) (Source: Service Control Manager) (User: ) Description: Computerbrowser%%1060 Error: (01/10/2014 03:11:48 PM) (Source: Service Control Manager) (User: ) Description: Parallel port driver%%1058 Error: (01/10/2014 03:11:25 PM) (Source: HTTP) (User: ) Description: \Device\Http\ReqQueueKerberos Error: (01/09/2014 07:24:37 PM) (Source: Service Control Manager) (User: ) Description: SQL Server VSS Writer1 Error: (01/09/2014 07:24:37 PM) (Source: Service Control Manager) (User: ) Description: IPsec-Richtlinien-AgentBFE Error: (01/09/2014 07:24:37 PM) (Source: Service Control Manager) (User: ) Description: IKE- und AuthIP IPsec-SchlüsselerstellungsmoduleBFE Error: (01/09/2014 07:24:37 PM) (Source: Service Control Manager) (User: ) Description: Parallel port driver%%1058 Microsoft Office Sessions: ========================= Error: (01/10/2014 03:11:47 PM) (Source: VzCdbSvc)(User: ) Description: {56F9312C-C989-4E04-8C23-299DEE3A36F5}0x80042019 Error: (01/10/2014 03:11:46 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/09/2014 07:24:41 PM) (Source: VzCdbSvc)(User: ) Description: {56F9312C-C989-4E04-8C23-299DEE3A36F5}0x80042019 Error: (01/09/2014 07:24:36 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/09/2014 07:02:05 PM) (Source: VzCdbSvc)(User: ) Description: {56F9312C-C989-4E04-8C23-299DEE3A36F5}0x80042019 Error: (01/09/2014 07:02:03 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/09/2014 01:56:25 PM) (Source: VzCdbSvc)(User: ) Description: {56F9312C-C989-4E04-8C23-299DEE3A36F5}0x80042019 Error: (01/09/2014 01:56:25 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/09/2014 10:46:48 AM) (Source: VzCdbSvc)(User: ) Description: {56F9312C-C989-4E04-8C23-299DEE3A36F5}0x80042019 Error: (01/09/2014 10:46:36 AM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 CodeIntegrity Errors: =================================== Date: 2014-01-10 16:47:10.693 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-01-10 16:47:10.272 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-01-10 16:47:09.850 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-01-10 16:47:09.414 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-01-10 16:47:08.946 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-01-10 16:47:08.524 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-01-10 16:47:08.087 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-01-10 16:47:07.665 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Memory info =========================== Percentage of memory in use: 54% Total physical RAM: 2938.31 MB Available physical RAM: 1332.71 MB Total Pagefile: 6082.91 MB Available Pagefile: 4648.02 MB Total Virtual: 2047.88 MB Available Virtual: 1896.05 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:224.92 GB) (Free:147.64 GB) NTFS ==>[Drive with boot components (obtained from BCD)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 233 GB) (Disk ID: 92A93BB3) Partition 1: (Not Active) - (Size=8 GB) - (Type=27) Partition 2: (Active) - (Size=225 GB) - (Type=07 NTFS) ==================== End Of Log ============================ FRST.txt FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 10-01-2014 Ran by Nadine (administrator) on NADINE-PC on 10-01-2014 16:45:39 Running from C:\Users\Nadine\Desktop\Desktop Microsoft® Windows Vista™ Home Premium Service Pack 1 (X86) OS Language: German Standard Internet Explorer Version 8 Boot Mode: Normal ==================== Processes (Whitelisted) =================== (Microsoft Corporation) C:\Windows\System32\SLsvc.exe (Realtek Semiconductor) C:\Windows\RTKAUDIOSERVICE.EXE (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (ABBYY) C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (InterVideo) C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe (Sony Corporation) C:\Program Files\Sony\Network Utility\NSUService.exe (pdfforge GmbH) C:\Program Files\PDF Architect\HelperService.exe (pdfforge GmbH) C:\Program Files\PDF Architect\ConversionService.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Skype Technologies S.A.) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe (Sony Corporation) C:\Program Files\Sony\VAIO Event Service\VESMgr.exe (Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMService.exe (Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe (Sony Corporation) C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe (Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe (Wajam) C:\Program Files\Wajam\Updater\WajamUpdater.exe (Conexant Systems, Inc.) C:\Windows\System32\drivers\XAudio.exe (Sony Corporation) C:\Program Files\Sony\VAIO Event Service\VESMgrSub.exe (Intel Corporation) C:\Windows\System32\igfxext.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Microsoft Corporation) C:\Windows\System32\mobsync.exe (Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe (Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMgr.exe (Synaptics, Inc.) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (ScanSoft, Inc.) C:\Program Files\ScanSoft\OmniPageSE4.0\OpWareSE4.exe (SEIKO EPSON CORPORATION) C:\Program Files\Epson Software\Event Manager\EEventManager.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Ask) C:\Program Files\Ask.com\Updater\Updater.exe (Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Sony Corporation) C:\Program Files\Sony\Network Utility\LANUtil.exe (Microsoft Corporation) C:\Windows\ehome\ehtray.exe (Spotify Ltd) C:\Users\Nadine\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe (McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.130\SSScheduler.exe (Microsoft Corporation) C:\Windows\ehome\ehmsas.exe (Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RtHDVCpl] - C:\Windows\RtHDVCpl.exe [6295552 2008-07-03] (Realtek Semiconductor) HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [835584 2007-03-10] (Synaptics, Inc.) HKLM\...\Run: [SSBkgdUpdate] - C:\Program Files\Common Files\ScanSoft Shared\SSBkgdUpdate\SSBkgdUpdate.exe [185896 2006-09-28] (Nuance Communications, Inc.) HKLM\...\Run: [OpwareSE4] - C:\Program Files\ScanSoft\OmniPageSE4.0\OpWareSE4.exe [75304 2006-10-11] (ScanSoft, Inc.) HKLM\...\Run: [EEventManager] - C:\Program Files\Epson Software\Event Manager\EEventManager.exe [979328 2010-10-12] (SEIKO EPSON CORPORATION) HKLM\...\Run: [] - [x] HKLM\...\Run: [ApnUpdater] - C:\Program Files\Ask.com\Updater\Updater.exe [1646216 2013-03-31] (Ask) HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation) HKLM\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3764024 2014-01-01] (AVAST Software) Winlogon\Notify\VESWinlogon: C:\Windows\system32\VESWinlogon.dll (Sony Corporation) HKCU\...\Run: [NSUFloatingUI] - C:\Program Files\Sony\Network Utility\LANUtil.exe [262144 2008-06-27] (Sony Corporation) HKCU\...\Run: [ehTray.exe] - C:\Windows\ehome\ehtray.exe [125952 2008-01-21] (Microsoft Corporation) HKCU\...\Run: [EPSON SX230 Series] - C:\Windows\System32\spool\drivers\w32x86\3\E_FATIHKE.EXE [212480 2012-03-10] (SEIKO EPSON CORPORATION) HKCU\...\Run: [Spotify Web Helper] - C:\Users\Nadine\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1199576 2012-11-18] (Spotify Ltd) HKCU\...\Run: [Skype] - C:\Program Files\Skype\Phone\Skype.exe [19875944 2013-06-21] (Skype Technologies S.A.) HKCU\...\Winlogon: [Shell] EXPLORER.EXE [2927104 2008-10-29] (Microsoft Corporation) <==== ATTENTION HKCU\...0c966feabec1\InprocServer32: [Default-shell32] ATTENTION! ====> ZeroAccess? HKU\Default\...\Run: [WindowsWelcomeCenter] - C:\Windows\System32\oobefldr.dll [ 2008-01-21] (Microsoft Corporation) HKU\Default\...\Run: [NSUFloatingUI] - C:\Program Files\Sony\Network Utility\LANUtil.exe [ 2008-06-27] (Sony Corporation) HKU\Default User\...\Run: [WindowsWelcomeCenter] - C:\Windows\System32\oobefldr.dll [ 2008-01-21] (Microsoft Corporation) HKU\Default User\...\Run: [NSUFloatingUI] - C:\Program Files\Sony\Network Utility\LANUtil.exe [ 2008-06-27] (Sony Corporation) HKU\Gast\...\Run: [WindowsWelcomeCenter] - C:\Windows\System32\oobefldr.dll [ 2008-01-21] (Microsoft Corporation) HKU\Gast\...\Run: [NSUFloatingUI] - C:\Program Files\Sony\Network Utility\LANUtil.exe [ 2008-06-27] (Sony Corporation) HKU\Gast\...\Run: [IncrediMail] - C:\Program Files\IncrediMail\bin\IncMail.exe /c ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Google HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Sony - Sony HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Upgrade to Google Chrome HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.sonystyle-europe.com hxxp://www.club-vaio.com/vbc/ebay/index.html hxxp://www.club-vaio.com/vbc HKCU\Software\Microsoft\Internet Explorer\Main,ICQ Search = hxxp://search.icq.com/search/results.php?q={searchTerms}&ch_id=osd HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MyHeritage.com Search HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Sony - Sony URLSearchHook: HKCU - UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask) SearchScopes: HKLM - DefaultScope {6C46687A-47DF-4C56-9E42-77258AB738EB} URL = hxxp://www.google.de/search?hl=de&q={searchTerms}&meta= SearchScopes: HKLM - {6C46687A-47DF-4C56-9E42-77258AB738EB} URL = hxxp://www.google.de/search?hl=de&q={searchTerms}&meta= SearchScopes: HKLM - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT1958481 SearchScopes: HKLM - {BE28C22E-F666-424d-B5FD-125C4AFEE34E} URL = hxxp://search.myheritage.com?orig=ds&q={searchTerms} SearchScopes: HKLM - {CF739809-1C6C-47C0-85B9-569DBB141420} URL = hxxp://toolbar.ask.com/toolbarv/askRedirect?o=13165&gct=&gc=1&q={searchTerms}&crm=1 SearchScopes: HKCU - DefaultScope {6C46687A-47DF-4C56-9E42-77258AB738EB} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=vc_trans_8140&type=horus SearchScopes: HKCU - {15119C12-F1E1-4712-9193-57C632C566DE} URL = hxxp://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&type=867034&p={searchTerms} SearchScopes: HKCU - {6552C7DD-90A4-4387-B795-F8F96747DE19} URL = hxxp://search.icq.com/search/results.php?q={searchTerms}&ch_id=osd SearchScopes: HKCU - {6C46687A-47DF-4C56-9E42-77258AB738EB} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=vc_trans_8140&type=horus SearchScopes: HKCU - {AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8} URL = hxxp://www.daemon-search.com/search?q={searchTerms} SearchScopes: HKCU - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT1958481 SearchScopes: HKCU - {BE28C22E-F666-424d-B5FD-125C4AFEE34E} URL = hxxp://search.myheritage.com?orig=ds&q={searchTerms} SearchScopes: HKCU - {CF739809-1C6C-47C0-85B9-569DBB141420} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=ORJ&o=100000027&src=crm&q={searchTerms}&locale=de_DE&apn_ptnrs=^U3&apn_dtid=^YYYYYY^YY^DE&apn_uid=C02EF8DF-9E87-42EE-BEDB-B847177CE7C6&apn_sauid=9DBFFDD7-676B-4C1D-B6C5-C6027B53F90F SearchScopes: HKCU - {CFF4DB9B-135F-47c0-9269-B4C6572FD61A} URL = hxxp://mystart.incredimail.com/?search={searchTerms}&loc=search_box BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.130\McAfeeMSS_IE.dll (McAfee, Inc.) BHO: Plus-HD-5.0 - {11111111-1111-1111-1111-110411771118} - C:\Program Files\Plus-HD-5.0\Plus-HD-5.0-bho.dll (Plus HD) BHO: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files\PDF Architect\PDFIEHelper.dll (pdfforge GmbH) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO: Wajam - {A7A6995D-6EE1-4FD1-A258-49395D5BF99C} - C:\Program Files\Wajam\IE\priam_bho.dll (Wajam) BHO: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) BHO: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO: Yontoo - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files\Yontoo\YontooIEClient.dll (Yontoo LLC) Toolbar: HKLM - Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask) Toolbar: HKLM - PDF Architect Toolbar - {25A3A431-30BB-47C8-AD6A-E1063801134F} - C:\Program Files\PDF Architect\PDFIEPlugin.dll (pdfforge GmbH) Toolbar: HKLM - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Toolbar: HKCU - Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask) DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0006-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_06-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\..\Interfaces\{2CC1B3E3-83A7-454A-8049-BB7767A4A0A2}: [NameServer]192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default FF user.js: detected! => C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\user.js FF SearchEngineOrder.1: Ask.com FF Homepage: https://www.google.de/ FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_11_9_900_170.dll () FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin: @google.com/npPicasa3,version=3.0.0 - C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.) FF Plugin: @java.com/DTPlugin,version=10.25.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @mcafee.com/McAfeeMssPlugin - C:\Program Files\McAfee Security Scan\3.8.130\npMcAfeeMss.dll (McAfee, Inc.) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/WPF,version=3.5 - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @videolan.org/vlc,version=2.0.3 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin HKCU: @citrixonline.com/appdetectorplugin - C:\Users\Nadine\AppData\Local\Citrix\Plugins\104\npappdetector.dll (Citrix Online) FF SearchPlugin: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\11-suche.xml FF SearchPlugin: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\askcom.xml FF SearchPlugin: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\conduit.xml FF SearchPlugin: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\daemon-search.xml FF SearchPlugin: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\englische-ergebnisse.xml FF SearchPlugin: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\gmx-suche.xml FF SearchPlugin: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin-1.xml FF SearchPlugin: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin-10.xml FF SearchPlugin: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin-11.xml FF SearchPlugin: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin-12.xml FF SearchPlugin: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin-13.xml FF SearchPlugin: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin-14.xml FF SearchPlugin: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin-15.xml FF SearchPlugin: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin-16.xml FF SearchPlugin: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin-2.xml FF SearchPlugin: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin-3.xml FF SearchPlugin: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin-4.xml FF SearchPlugin: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin-5.xml FF SearchPlugin: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin-6.xml FF SearchPlugin: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin-7.xml FF SearchPlugin: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin-8.xml FF SearchPlugin: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin-9.xml FF SearchPlugin: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin.xml FF SearchPlugin: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\lastminute.xml FF SearchPlugin: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\searchplugins-backup FF SearchPlugin: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\webde-suche.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Plus-HD-5.0 - C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\Extensions\8c6c8c15-21d7-4f62-8a57-202aee8f7fb3@6567ba21-e435-4eb0-838d-8395b2265c30.com FF Extension: Allin1Convert - C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\Extensions\8hffxtbr@Allin1Convert_8h.com FF Extension: vis - C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\Extensions\EFGLQA@78ETGYN-0W7FN789T87.COM FF Extension: ProxTube - Unblock YouTube - C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\Extensions\ich@maltegoetz.de FF Extension: No Name - C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\Extensions\plugin@yontoo.com FF Extension: Ask Toolbar - C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\Extensions\toolbar@ask.com FF Extension: DVDVideoSoftTB Community Toolbar - C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\Extensions\{872b5b88-9db5-4310-bdd0-ac189557e5f5}(22) FF Extension: Yontoo - C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\Extensions\plugin@yontoo.com.xpi FF Extension: YouTube to MP3 - C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\Extensions\youtube2mp3@mondayx.de.xpi FF Extension: DVDVideoSoft YouTube MP3 and Video Download - C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\Extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}.xpi FF Extension: Easy YouTube Video Downloader - C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\Extensions\{c0c9a2c7-2e5c-4447-bc53-97718bc91e1b}.xpi FF Extension: No Name - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF FF HKLM\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files\PDF Architect\FFPDFArchitectExt FF Extension: PDF Architect Converter For Firefox - C:\Program Files\PDF Architect\FFPDFArchitectExt ========================== Services (Whitelisted) ================= R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-01-01] (AVAST Software) S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.130\McCHSvc.exe [235216 2013-09-06] (McAfee, Inc.) R2 NSUService; C:\Program Files\Sony\Network Utility\NSUService.exe [299008 2008-06-27] (Sony Corporation) R2 PDF Architect Helper Service; C:\Program Files\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH) R2 PDF Architect Service; C:\Program Files\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH) R2 Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [3064000 2012-10-02] (Skype Technologies S.A.) S3 SOHCImp; C:\Program Files\Sony\VAIO Media plus\SOHCImp.exe [103712 2008-05-20] (Sony Corporation) S3 SOHDms; C:\Program Files\Sony\VAIO Media plus\SOHDms.exe [353568 2008-05-20] (Sony Corporation) S3 SOHDs; C:\Program Files\Sony\VAIO Media plus\SOHDs.exe [62752 2008-05-20] (Sony Corporation) S3 SPTISRV; C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe [77824 2008-05-20] (Sony Corporation) S3 VAIO Entertainment TV Device Arbitration Service; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzHardwareResourceManager\VzHardwareResourceManager\VzHardwareResourceManager.exe [73728 2008-05-22] (Sony Corporation) R2 VAIO Event Service; C:\Program Files\Sony\VAIO Event Service\VESMgr.exe [182112 2008-07-07] (Sony Corporation) R2 VAIO Power Management; C:\Program Files\Sony\VAIO Power Management\SPMService.exe [411488 2008-06-19] (Sony Corporation) R2 VcmIAlzMgr; C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe [337184 2008-06-11] (Sony Corporation) R3 Vcsw; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe [279848 2008-06-19] (Sony Corporation) R2 VzCdbSvc; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe [192512 2008-05-22] (Sony Corporation) R2 WajamUpdater; C:\Program Files\Wajam\Updater\WajamUpdater.exe [109064 2012-10-05] (Wajam) ==================== Drivers (Whitelisted) ==================== R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [67824 2014-01-01] (AVAST Software) R1 AswRdr; C:\Windows\system32\drivers\aswRdr.sys [54832 2014-01-01] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [49944 2013-11-26] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [775952 2014-01-01] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [410528 2014-01-01] (AVAST Software) R1 aswTdi; C:\Windows\system32\drivers\aswTdi.sys [57672 2014-01-01] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [180248 2014-01-01] () R0 sfsync04; C:\Windows\System32\drivers\sfsync04.sys [59520 2009-02-03] (Protection Technology (StarForce)) R0 sfvfs02; C:\Windows\System32\drivers\sfvfs02.sys [83320 2007-02-08] (Protection Technology (StarForce)) R0 sptd; C:\Windows\System32\Drivers\sptd.sys [691696 2010-01-31] () S1 airpfklm; \??\C:\Windows\system32\drivers\airpfklm.sys [x] S1 bbadijat; \??\C:\Windows\system32\drivers\bbadijat.sys [x] S1 bjgzovuk; \??\C:\Windows\system32\drivers\bjgzovuk.sys [x] S1 bldaapyt; \??\C:\Windows\system32\drivers\bldaapyt.sys [x] S1 dkhvctyw; \??\C:\Windows\system32\drivers\dkhvctyw.sys [x] S1 ejkmdayn; \??\C:\Windows\system32\drivers\ejkmdayn.sys [x] S1 fdosnttj; \??\C:\Windows\system32\drivers\fdosnttj.sys [x] S1 fsqryeva; \??\C:\Windows\system32\drivers\fsqryeva.sys [x] S1 gnrluouq; \??\C:\Windows\system32\drivers\gnrluouq.sys [x] S1 gucdsxqo; \??\C:\Windows\system32\drivers\gucdsxqo.sys [x] S3 IpInIp; system32\DRIVERS\ipinip.sys [x] S1 jjuzrhyu; \??\C:\Windows\system32\drivers\jjuzrhyu.sys [x] S1 jsuxcsaz; \??\C:\Windows\system32\drivers\jsuxcsaz.sys [x] S1 kauuwatg; \??\C:\Windows\system32\drivers\kauuwatg.sys [x] S1 kxworbnk; \??\C:\Windows\system32\drivers\kxworbnk.sys [x] S1 laqgvked; \??\C:\Windows\system32\drivers\laqgvked.sys [x] S1 lknltmmv; \??\C:\Windows\system32\drivers\lknltmmv.sys [x] S1 lkxvdqvs; \??\C:\Windows\system32\drivers\lkxvdqvs.sys [x] S3 MEMSWEEP2; \??\C:\Windows\system32\62B8.tmp [x] S1 mgbyworo; \??\C:\Windows\system32\drivers\mgbyworo.sys [x] S1 mvhblggs; \??\C:\Windows\system32\drivers\mvhblggs.sys [x] S1 nlfgyvgn; \??\C:\Windows\system32\drivers\nlfgyvgn.sys [x] S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [x] S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [x] S1 olvixvbb; \??\C:\Windows\system32\drivers\olvixvbb.sys [x] S1 oqnqxugg; \??\C:\Windows\system32\drivers\oqnqxugg.sys [x] S1 oxiurzhy; \??\C:\Windows\system32\drivers\oxiurzhy.sys [x] S1 ozicsyis; \??\C:\Windows\system32\drivers\ozicsyis.sys [x] S1 pwwxtged; \??\C:\Windows\system32\drivers\pwwxtged.sys [x] S1 qlzjomwy; \??\C:\Windows\system32\drivers\qlzjomwy.sys [x] S1 qpenglmw; \??\C:\Windows\system32\drivers\qpenglmw.sys [x] S1 qxlvepar; \??\C:\Windows\system32\drivers\qxlvepar.sys [x] S1 rurrejhe; \??\C:\Windows\system32\drivers\rurrejhe.sys [x] S1 tgaqtlqi; \??\C:\Windows\system32\drivers\tgaqtlqi.sys [x] S4 UIUSys; system32\DRIVERS\UIUSYS.SYS [x] S1 ujgsgjjo; \??\C:\Windows\system32\drivers\ujgsgjjo.sys [x] S1 xuopuawm; \??\C:\Windows\system32\drivers\xuopuawm.sys [x] S1 xydfwqbx; \??\C:\Windows\system32\drivers\xydfwqbx.sys [x] S1 xyqlevjg; \??\C:\Windows\system32\drivers\xyqlevjg.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== Error(0) reading file: "C:\Windows\system32\ " 2014-01-10 16:45 - 2014-01-10 16:45 - 00000000 ____D C:\FRST 2014-01-10 16:39 - 2014-01-10 16:39 - 00000000 ____D C:\Users\Nadine\Documents\My Received Files 2014-01-10 16:39 - 2014-01-10 16:39 - 00000000 ____D C:\Users\Nadine\AppData\Roaming\MusicNet 2014-01-10 16:35 - 2014-01-10 16:38 - 00000000 ____D C:\Program Files\iMesh Applications 2014-01-09 16:07 - 2014-01-09 18:32 - 00026042 _____ C:\Users\Nadine\Documents\deutsch faust 2.odt 2014-01-08 15:43 - 2014-01-08 15:43 - 00018663 _____ C:\Users\Nadine\Documents\literatur tagesablauf.odt 2014-01-08 14:37 - 2014-01-09 15:40 - 00019816 _____ C:\Users\Nadine\Documents\frani dialog doktor.odt 2014-01-06 19:01 - 2014-01-08 12:18 - 00016713 _____ C:\Users\Nadine\Documents\goethe faust.odt 2014-01-05 15:31 - 2014-01-05 15:31 - 00006473 _____ C:\Users\Nadine\AppData\Local\recently-used.xbel 2014-01-04 21:41 - 2014-01-05 13:22 - 00031461 _____ C:\Users\Nadine\Documents\literatur schäfchen.odt 2014-01-04 15:46 - 2014-01-04 15:46 - 00000000 ____D C:\Users\Nadine\AppData\Local\Plus-HD-5.0 2014-01-04 12:37 - 2014-01-05 15:31 - 00000000 ____D C:\Users\Nadine\AppData\Local\gtk-2.0 2014-01-04 12:37 - 2014-01-04 12:38 - 00000000 ____D C:\Users\Nadine\.thumbnails 2014-01-04 12:26 - 2014-01-05 16:14 - 00000000 ____D C:\Users\Nadine\.gimp-2.8 2014-01-04 12:26 - 2014-01-04 12:26 - 00000000 ____D C:\Users\Nadine\AppData\Local\gegl-0.2 2014-01-04 12:08 - 2014-01-04 12:15 - 00000000 ____D C:\Program Files\GIMP 2 2014-01-03 17:53 - 2014-01-03 17:54 - 00000000 ____D C:\Users\Nadine\Desktop\poli 2014-01-03 17:34 - 2014-01-03 18:17 - 00000474 _____ C:\Users\Nadine\AppData\Roaming\Poladroid prefs.plist 2013-12-24 12:15 - 2014-01-07 18:40 - 00031307 _____ C:\Users\Nadine\Documents\literatur charakter.odt 2013-12-22 22:22 - 2013-12-22 22:22 - 00001318 _____ C:\Windows\Tasks\Plus-HD-5.0-updater.job 2013-12-22 22:22 - 2013-12-22 22:22 - 00001220 _____ C:\Windows\Tasks\Plus-HD-5.0-codedownloader.job 2013-12-22 22:22 - 2013-12-22 22:22 - 00001120 _____ C:\Windows\Tasks\Plus-HD-5.0-enabler.job 2013-12-22 22:21 - 2014-01-07 18:12 - 00843085 _____ C:\Users\Nadine\Documents\literatur projekt.odt 2013-12-22 22:21 - 2013-12-22 22:22 - 00000000 ____D C:\Program Files\Plus-HD-5.0 2013-12-22 22:21 - 2013-12-22 22:21 - 00002082 _____ C:\Windows\Tasks\Plus-HD-5.0-firefoxinstaller.job 2013-12-22 22:21 - 2013-12-22 22:21 - 00001950 _____ C:\Windows\Tasks\Plus-HD-5.0-chromeinstaller.job 2013-12-22 22:21 - 2013-12-22 22:21 - 00000000 ____D C:\Users\Nadine\AppData\Roaming\DigitalSites 2013-12-22 22:21 - 2013-12-22 22:21 - 00000000 ____D C:\Users\Nadine\AppData\Roaming\0D0S1L2Z1P1B0T1P1B2Z 2013-12-22 22:21 - 2013-12-22 22:21 - 00000000 ____D C:\Program Files\Image Converter 2013-12-20 13:26 - 2013-12-20 13:26 - 00000000 ____D C:\Program Files\Mozilla Firefox 2013-12-11 09:38 - 2013-12-11 09:38 - 00002033 _____ C:\Users\Public\Desktop\Google Earth.lnk ==================== One Month Modified Files and Folders ======= 2014-01-10 16:45 - 2014-01-10 16:45 - 00000000 ____D C:\FRST 2014-01-10 16:39 - 2014-01-10 16:39 - 00000000 ____D C:\Users\Nadine\Documents\My Received Files 2014-01-10 16:39 - 2014-01-10 16:39 - 00000000 ____D C:\Users\Nadine\AppData\Roaming\MusicNet 2014-01-10 16:38 - 2014-01-10 16:35 - 00000000 ____D C:\Program Files\iMesh Applications 2014-01-10 15:11 - 2006-11-02 13:47 - 00003616 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 2014-01-10 15:11 - 2006-11-02 13:47 - 00003616 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 2014-01-09 18:32 - 2014-01-09 16:07 - 00026042 _____ C:\Users\Nadine\Documents\deutsch faust 2.odt 2014-01-09 15:40 - 2014-01-08 14:37 - 00019816 _____ C:\Users\Nadine\Documents\frani dialog doktor.odt 2014-01-08 15:43 - 2014-01-08 15:43 - 00018663 _____ C:\Users\Nadine\Documents\literatur tagesablauf.odt 2014-01-08 12:18 - 2014-01-06 19:01 - 00016713 _____ C:\Users\Nadine\Documents\goethe faust.odt 2014-01-07 19:09 - 2013-09-11 17:39 - 00019047 _____ C:\Users\Nadine\Documents\literatur.odt 2014-01-07 19:04 - 2013-04-21 16:40 - 00000000 ____D C:\Users\Nadine\Schule 2014-01-07 18:40 - 2013-12-24 12:15 - 00031307 _____ C:\Users\Nadine\Documents\literatur charakter.odt 2014-01-07 18:12 - 2013-12-22 22:21 - 00843085 _____ C:\Users\Nadine\Documents\literatur projekt.odt 2014-01-07 10:56 - 2013-02-19 11:39 - 00000000 ____D C:\Users\Nadine\Desktop\Dokumente 2014-01-05 16:14 - 2014-01-04 12:26 - 00000000 ____D C:\Users\Nadine\.gimp-2.8 2014-01-05 15:31 - 2014-01-05 15:31 - 00006473 _____ C:\Users\Nadine\AppData\Local\recently-used.xbel 2014-01-05 15:31 - 2014-01-04 12:37 - 00000000 ____D C:\Users\Nadine\AppData\Local\gtk-2.0 2014-01-05 13:22 - 2014-01-04 21:41 - 00031461 _____ C:\Users\Nadine\Documents\literatur schäfchen.odt 2014-01-05 12:52 - 2008-12-21 11:26 - 00000000 ____D C:\Users\Nadine\AppData\Roaming\Skype 2014-01-04 15:46 - 2014-01-04 15:46 - 00000000 ____D C:\Users\Nadine\AppData\Local\Plus-HD-5.0 2014-01-04 12:38 - 2014-01-04 12:37 - 00000000 ____D C:\Users\Nadine\.thumbnails 2014-01-04 12:37 - 2008-12-20 12:10 - 00000000 ____D C:\Users\Nadine 2014-01-04 12:26 - 2014-01-04 12:26 - 00000000 ____D C:\Users\Nadine\AppData\Local\gegl-0.2 2014-01-04 12:24 - 2010-08-12 10:02 - 00000000 ____D C:\Users\Nadine\Desktop\Werbung 2014-01-04 12:15 - 2014-01-04 12:08 - 00000000 ____D C:\Program Files\GIMP 2 2014-01-03 18:17 - 2014-01-03 17:34 - 00000474 _____ C:\Users\Nadine\AppData\Roaming\Poladroid prefs.plist 2014-01-03 17:54 - 2014-01-03 17:53 - 00000000 ____D C:\Users\Nadine\Desktop\poli 2014-01-03 17:34 - 2008-01-21 08:16 - 01578582 _____ C:\Windows\system32\PerfStringBackup.INI 2014-01-02 19:00 - 2013-11-26 11:35 - 00001430 _____ C:\Windows\setupact.log 2014-01-01 18:49 - 2013-08-13 20:32 - 00081800 _____ C:\Windows\PFRO.log 2014-01-01 16:27 - 2013-02-28 15:42 - 00180248 _____ C:\Windows\system32\Drivers\aswVmm.sys 2014-01-01 16:27 - 2012-08-25 11:01 - 00000350 ____H C:\Windows\Tasks\avast! Emergency Update.job 2014-01-01 16:27 - 2012-07-17 09:23 - 00775952 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2014-01-01 16:27 - 2012-07-17 09:23 - 00410528 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2014-01-01 16:27 - 2012-07-17 09:23 - 00067824 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2014-01-01 16:27 - 2012-07-17 09:23 - 00057672 _____ (AVAST Software) C:\Windows\system32\Drivers\aswTdi.sys 2014-01-01 16:27 - 2012-07-17 09:23 - 00054832 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr.sys 2014-01-01 16:27 - 2012-07-17 09:23 - 00001833 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-01-01 16:27 - 2012-07-17 09:22 - 00270240 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2014-01-01 16:27 - 2012-07-17 09:22 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2013-12-29 14:10 - 2012-10-12 21:25 - 00000000 ____D C:\Users\Nadine\AppData\Roaming\vlc 2013-12-29 14:08 - 2013-06-19 15:57 - 00007680 _____ C:\Users\Nadine\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2013-12-22 22:22 - 2013-12-22 22:22 - 00001318 _____ C:\Windows\Tasks\Plus-HD-5.0-updater.job 2013-12-22 22:22 - 2013-12-22 22:22 - 00001220 _____ C:\Windows\Tasks\Plus-HD-5.0-codedownloader.job 2013-12-22 22:22 - 2013-12-22 22:22 - 00001120 _____ C:\Windows\Tasks\Plus-HD-5.0-enabler.job 2013-12-22 22:22 - 2013-12-22 22:21 - 00000000 ____D C:\Program Files\Plus-HD-5.0 2013-12-22 22:21 - 2013-12-22 22:21 - 00002082 _____ C:\Windows\Tasks\Plus-HD-5.0-firefoxinstaller.job 2013-12-22 22:21 - 2013-12-22 22:21 - 00001950 _____ C:\Windows\Tasks\Plus-HD-5.0-chromeinstaller.job 2013-12-22 22:21 - 2013-12-22 22:21 - 00000000 ____D C:\Users\Nadine\AppData\Roaming\DigitalSites 2013-12-22 22:21 - 2013-12-22 22:21 - 00000000 ____D C:\Users\Nadine\AppData\Roaming\0D0S1L2Z1P1B0T1P1B2Z 2013-12-22 22:21 - 2013-12-22 22:21 - 00000000 ____D C:\Program Files\Image Converter 2013-12-21 15:14 - 2012-10-12 21:23 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service 2013-12-20 13:26 - 2013-12-20 13:26 - 00000000 ____D C:\Program Files\Mozilla Firefox 2013-12-18 09:50 - 2008-12-20 12:10 - 00000000 ____D C:\Users\Nadine\AppData\Local\Adobe 2013-12-18 09:48 - 2012-10-12 21:18 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe 2013-12-18 09:48 - 2012-10-12 21:18 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-12-18 09:48 - 2011-06-17 08:29 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl 2013-12-11 09:38 - 2013-12-11 09:38 - 00002033 _____ C:\Users\Public\Desktop\Google Earth.lnk 2013-12-11 09:37 - 2008-07-10 10:28 - 00000000 ____D C:\Program Files\Google ZeroAccess: C:\Windows\Installer\{12c76357-0b32-76e1-0c72-9f963f64d128} C:\Windows\Installer\{12c76357-0b32-76e1-0c72-9f963f64d128}\@ ZeroAccess: C:\Users\Nadine\AppData\Local\{12c76357-0b32-76e1-0c72-9f963f64d128} C:\Users\Nadine\AppData\Local\{12c76357-0b32-76e1-0c72-9f963f64d128}\@ Files to move or delete: ==================== C:\Users\Nadine\AppData\Roaming\desktop.ini Some content of TEMP: ==================== C:\Users\Gast\AppData\Local\Temp\MFPL7014.DLL C:\Users\Nadine\AppData\Local\Temp\36374uninstall.exe C:\Users\Nadine\AppData\Local\Temp\AutoRun.exe C:\Users\Nadine\AppData\Local\Temp\AutoRunGUI.dll C:\Users\Nadine\AppData\Local\Temp\First15.exe C:\Users\Nadine\AppData\Local\Temp\i4jdel0.exe C:\Users\Nadine\AppData\Local\Temp\SkypeSetup.exe C:\Users\Nadine\AppData\Local\Temp\Sqlite3.dll C:\Users\Nadine\AppData\Local\Temp\VP6Install.exe C:\Users\Nadine\AppData\Local\Temp\VP6VFW.dll ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe => MD5 is legit C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll [2009-04-16 12:42] - [2009-03-03 05:39] - 0551424 ____A (Microsoft Corporation) 301AE00E12408650BADDC04DBC832830 C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-01-10 15:17 ==================== End Of Log ============================ --- --- --- Geändert von Honey552 (10.01.2014 um 16:46 Uhr) |
10.01.2014, 17:08 | #4 |
/// TB-Ausbilder | Bedrohung: Win32: Agent-ASOG (Trj) Dann so weiter: Schritt 1
Schritt 2 Downloade Dir bitte AdwCleaner auf deinen Desktop.
Schritt 3 Scan mit Combofix
Schritt 4 Starte noch einmal FRST.
__________________ cheers, Leo |
10.01.2014, 17:40 | #5 |
| Bedrohung: Win32: Agent-ASOG (Trj) Schritt 2 erledigt. Ergebnis AdwCleaner:AdwCleaner Logfile: Code:
ATTFilter # AdwCleaner v3.016 - Bericht erstellt am 10/01/2014 um 17:31:32 # Aktualisiert 23/12/2013 von Xplode # Betriebssystem : Windows Vista (TM) Home Premium Service Pack 1 (32 bits) # Benutzername : Nadine - NADINE-PC # Gestartet von : C:\Users\Nadine\Desktop\Desktop\AdwCleaner(5).exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\ProgramData\Ask Ordner Gelöscht : C:\ProgramData\ICQ\ICQToolbar Ordner Gelöscht : C:\ProgramData\Tarma Installer Ordner Gelöscht : C:\Program Files\Conduit Ordner Gelöscht : C:\Program Files\DAEMON Tools Toolbar Ordner Gelöscht : C:\Program Files\ICQ6Toolbar Ordner Gelöscht : C:\Program Files\iMesh Applications Ordner Gelöscht : C:\Program Files\SoftwareUpdater Ordner Gelöscht : C:\Users\Nadine\AppData\Local\DownloadGuide Ordner Gelöscht : C:\Users\Nadine\AppData\Local\Wajam Ordner Gelöscht : C:\Users\Nadine\AppData\LocalLow\boost_interprocess Ordner Gelöscht : C:\Users\Nadine\AppData\LocalLow\Conduit Ordner Gelöscht : C:\Users\Nadine\AppData\Roaming\0D0S1L2Z1P1B0T1P1B2Z Ordner Gelöscht : C:\Users\Nadine\AppData\Roaming\OpenCandy Ordner Gelöscht : C:\Users\Nadine\AppData\Roaming\pdfforge Ordner Gelöscht : C:\Users\Nadine\AppData\Roaming\Windows Net Data Ordner Gelöscht : C:\Users\Gast\AppData\LocalLow\boost_interprocess Ordner Gelöscht : C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\Allin1Convert_8h Ordner Gelöscht : C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\Conduit Ordner Gelöscht : C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\ICQToolbarData Ordner Gelöscht : C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\UtilityChest_49 Ordner Gelöscht : C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\CT2269050 Ordner Gelöscht : C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\Extensions\EFGLQA@78ETGYN-0W7FN789T87.COM Ordner Gelöscht : C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\Extensions\{872b5b88-9db5-4310-bdd0-ac189557e5f5}(22) Ordner Gelöscht : C:\Users\Nadine\AppData\Local\Google\Chrome\User Data\Default\Extensions\fmlgoencnlndpglbocajlimaikjohmab Datei Gelöscht : C:\END Datei Gelöscht : C:\Program Files\Mozilla Firefox\Components\AskSearch.js Datei Gelöscht : C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\11-suche.xml Datei Gelöscht : C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\Askcom.xml Datei Gelöscht : C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\Conduit.xml Datei Gelöscht : C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\daemon-search.xml Datei Gelöscht : C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin.xml Datei Gelöscht : C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin-1.xml Datei Gelöscht : C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin-10.xml Datei Gelöscht : C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin-11.xml Datei Gelöscht : C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin-12.xml Datei Gelöscht : C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin-13.xml Datei Gelöscht : C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin-14.xml Datei Gelöscht : C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin-15.xml Datei Gelöscht : C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin-16.xml Datei Gelöscht : C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin-2.xml Datei Gelöscht : C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin-3.xml Datei Gelöscht : C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin-4.xml Datei Gelöscht : C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin-5.xml Datei Gelöscht : C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin-6.xml Datei Gelöscht : C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin-7.xml Datei Gelöscht : C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin-8.xml Datei Gelöscht : C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\icqplugin-9.xml Datei Gelöscht : C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\user.js Datei Gelöscht : C:\Users\Gast\AppData\Roaming\Mozilla\Firefox\Profiles\7lj1qgnt.default\user.js ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaojmikegpiepcfdkkjaplodkpfmlo Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\jpmbfleldcgkldadpdinhjjopdfpjfjp Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\ICQ\ICQToolBar Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\ComObject.DeskbarEnabler Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iMesh.AudioCD Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2BFA&SUBSYS_104D0200 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{D616A4A2-7B38-4DBC-9093-6FE7A4A21B17} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{25A3A431-30BB-47C8-AD6A-E1063801134F} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{3BF72F68-72D8-461D-A884-329D936C5581} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{78E9D883-93CD-4072-BEF3-38EE581E2839} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{83AC1413-FCE4-4A46-9DD5-4F31F306E71F} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{9AFB8248-617F-460D-9366-D71CDEDA3179} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2A42D13C-D427-4787-821B-CF6973855778} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3D8478AA-7B88-48A9-8BCB-B85D594411EC} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{C4C4F1F4-3074-4CB6-9FB8-0A64273166F0} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{000123B4-9B42-4900-B3F7-F4B073EFC214} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{02478D38-C3F9-4EFB-9B51-7695ECA05670} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{201F27D4-3704-41D6-89C1-AA35E39143ED} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{25A3A431-30BB-47C8-AD6A-E1063801134F} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3041D03E-FD4B-44E0-B742-2D9B88305F98} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{32099AAC-C132-4136-9E9A-4E364A424E17} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7854F00C-DC77-477E-A10E-603F48442D3B} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{855F3B16-6D32-4FE6-8A56-BBB695989046} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EF99BD32-C1FB-11D2-892F-0090271D4F88} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FD2FD708-1F6F-4B68-B141-C5778F0C19BB} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{25A3A431-30BB-47C8-AD6A-E1063801134F} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{32099AAC-C132-4136-9E9A-4E364A424E17} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{855F3B16-6D32-4FE6-8A56-BBB695989046} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EF99BD32-C1FB-11D2-892F-0090271D4F88} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7C3B01BC-53A5-48A0-A43B-0C67731134B9} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0ABE0FED-50E7-4E42-A125-57C0A11DBCDE} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4250488A-CB24-0893-C066-B1AEA57BCFF2} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AD22EBAF-0D18-4FC7-90CC-5EA0ABBE9EB8} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{CF739809-1C6C-47C0-85B9-569DBB141420} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{CFF4DB9B-135F-47C0-9269-B4C6572FD61A} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{CF739809-1C6C-47C0-85B9-569DBB141420} Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{25A3A431-30BB-47C8-AD6A-E1063801134F}] Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}] Schlüssel Gelöscht : HKCU\Software\Babylon Schlüssel Gelöscht : HKCU\Software\dsiteproducts Schlüssel Gelöscht : HKCU\Software\dt soft\daemon tools toolbar Schlüssel Gelöscht : HKCU\Software\Imesh Schlüssel Gelöscht : HKCU\Software\InstallCore Schlüssel Gelöscht : HKCU\Software\Softonic Schlüssel Gelöscht : HKCU\Software\YahooPartnerToolbar Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Conduit Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Crossrider Schlüssel Gelöscht : HKLM\Software\Conduit Schlüssel Gelöscht : HKLM\Software\ICQ\ICQToolbar Schlüssel Gelöscht : HKLM\Software\Tarma Installer Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Imesh Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{79A765E1-C399-405B-85AF-466F52E918B0} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Imesh Schlüssel Gelöscht : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FF2AEFF45EEA0A48A4B33C1973B6094 Schlüssel Gelöscht : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\305B09CE8C53A214DB58887F62F25536 ***** [ Browser ] ***** -\\ Internet Explorer v8.0.6001.19088 Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search] -\\ Mozilla Firefox v26.0 (de) [ Datei : C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\prefs.js ] Zeile gelöscht : user_pref("CT2269050..clientLogIsEnabled", true); Zeile gelöscht : user_pref("CT2269050..clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent"); Zeile gelöscht : user_pref("CT2269050..uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/RegisterToolbarUninstallation"); Zeile gelöscht : user_pref("CT2269050.ALLOW_SHOWING_HIDDEN_TOOLBAR", false); Zeile gelöscht : user_pref("CT2269050.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx"); Zeile gelöscht : user_pref("CT2269050.AppTrackingLastCheckTime", "Thu Nov 24 2011 14:33:20 GMT+0100"); Zeile gelöscht : user_pref("CT2269050.BrowserCompStateIsOpen_129575150554007677", true); Zeile gelöscht : user_pref("CT2269050.CTID", "CT2269050"); Zeile gelöscht : user_pref("CT2269050.CurrentServerDate", "5-12-2011"); Zeile gelöscht : user_pref("CT2269050.DialogsAlignMode", "LTR"); Zeile gelöscht : user_pref("CT2269050.DialogsGetterLastCheckTime", "Mon Dec 05 2011 14:59:37 GMT+0100"); Zeile gelöscht : user_pref("CT2269050.DownloadReferralCookieData", ""); Zeile gelöscht : user_pref("CT2269050.EMailNotifierPollDate", "Mon Dec 05 2011 19:03:01 GMT+0100"); Zeile gelöscht : user_pref("CT2269050.FirstServerDate", "24-7-2010"); Zeile gelöscht : user_pref("CT2269050.FirstTime", true); Zeile gelöscht : user_pref("CT2269050.FirstTimeFF3", true); Zeile gelöscht : user_pref("CT2269050.FirstTimeSettingsDone", true); Zeile gelöscht : user_pref("CT2269050.FixPageNotFoundErrors", true); Zeile gelöscht : user_pref("CT2269050.GroupingServerCheckInterval", 1440); Zeile gelöscht : user_pref("CT2269050.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/"); Zeile gelöscht : user_pref("CT2269050.HasUserGlobalKeys", true); Zeile gelöscht : user_pref("CT2269050.HomePageProtectorEnabled", false); Zeile gelöscht : user_pref("CT2269050.Initialize", true); Zeile gelöscht : user_pref("CT2269050.InitializeCommonPrefs", true); Zeile gelöscht : user_pref("CT2269050.InstallationAndCookieDataSentCount", 3); Zeile gelöscht : user_pref("CT2269050.InstallationType", "UnknownIntegration"); Zeile gelöscht : user_pref("CT2269050.InstalledDate", "Sat Jul 24 2010 13:23:42 GMT+0200"); Zeile gelöscht : user_pref("CT2269050.InvalidateCache", false); Zeile gelöscht : user_pref("CT2269050.IsAlertDBUpdated", true); Zeile gelöscht : user_pref("CT2269050.IsGrouping", false); Zeile gelöscht : user_pref("CT2269050.IsMulticommunity", false); Zeile gelöscht : user_pref("CT2269050.IsOpenThankYouPage", false); Zeile gelöscht : user_pref("CT2269050.IsOpenUninstallPage", false); Zeile gelöscht : user_pref("CT2269050.LanguagePackLastCheckTime", "Mon Dec 05 2011 15:05:56 GMT+0100"); Zeile gelöscht : user_pref("CT2269050.LanguagePackReloadIntervalMM", 1440); Zeile gelöscht : user_pref("CT2269050.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx"); Zeile gelöscht : user_pref("CT2269050.LastLogin_2.7.0.14", "Fri Apr 29 2011 13:55:27 GMT+0200"); Zeile gelöscht : user_pref("CT2269050.LastLogin_3.3.3.2", "Fri Jul 08 2011 10:26:40 GMT+0200"); Zeile gelöscht : user_pref("CT2269050.LastLogin_3.5.0.12", "Tue Aug 16 2011 11:54:39 GMT+0200"); Zeile gelöscht : user_pref("CT2269050.LastLogin_3.6.0.10", "Tue Sep 27 2011 16:19:55 GMT+0200"); Zeile gelöscht : user_pref("CT2269050.LastLogin_3.7.0.6", "Mon Nov 07 2011 09:11:36 GMT+0100"); Zeile gelöscht : user_pref("CT2269050.LastLogin_3.8.0.8", "Mon Dec 05 2011 18:23:23 GMT+0100"); Zeile gelöscht : user_pref("CT2269050.LatestVersion", "3.8.1.0"); Zeile gelöscht : user_pref("CT2269050.Locale", "en"); Zeile gelöscht : user_pref("CT2269050.LoginCache", 4); Zeile gelöscht : user_pref("CT2269050.MCDetectTooltipHeight", "83"); Zeile gelöscht : user_pref("CT2269050.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1"); Zeile gelöscht : user_pref("CT2269050.MCDetectTooltipWidth", "295"); Zeile gelöscht : user_pref("CT2269050.MyStuffEnabledAtInstallation", true); Zeile gelöscht : user_pref("CT2269050.RadioIsPodcast", false); Zeile gelöscht : user_pref("CT2269050.RadioLastCheckTime", "Mon Dec 05 2011 15:07:17 GMT+0100"); Zeile gelöscht : user_pref("CT2269050.RadioLastUpdateIPServer", "3"); Zeile gelöscht : user_pref("CT2269050.RadioLastUpdateServer", "129132338014870000"); Zeile gelöscht : user_pref("CT2269050.RadioMediaID", "12473396"); Zeile gelöscht : user_pref("CT2269050.RadioMediaType", "Media Player"); Zeile gelöscht : user_pref("CT2269050.RadioMenuSelectedID", "EBRadioMenu_CT2269050_RECENT12473396"); Zeile gelöscht : user_pref("CT2269050.RadioShrinked", "expanded"); Zeile gelöscht : user_pref("CT2269050.RadioShrinkedFromSetup", false); Zeile gelöscht : user_pref("CT2269050.RadioStationName", "Danceradio"); Zeile gelöscht : user_pref("CT2269050.RadioStationURL", "hxxp://101danceradio.com/wmx/classicrockjukebox64k.wmx"); Zeile gelöscht : user_pref("CT2269050.RadioVolume", "53"); Zeile gelöscht : user_pref("CT2269050.SHRINK_TOOLBAR", 1); Zeile gelöscht : user_pref("CT2269050.SearchBoxWidth", 145); Zeile gelöscht : user_pref("CT2269050.SearchEngine", "Search||hxxp://search.conduit.com/Results.aspx?q=UCM_SEARCH_TERM&ctid=CT2269050&octid=EB_ORIGINAL_CTID&SearchSource=1"); Zeile gelöscht : user_pref("CT2269050.SearchEngineBeforeUnload", "ICQ Search"); Zeile gelöscht : user_pref("CT2269050.SearchFromAddressBarIsInit", true); Zeile gelöscht : user_pref("CT2269050.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2269050&q="); Zeile gelöscht : user_pref("CT2269050.SearchInNewTabEnabled", true); Zeile gelöscht : user_pref("CT2269050.SearchInNewTabIntervalMM", 1440); Zeile gelöscht : user_pref("CT2269050.SearchInNewTabLastCheckTime", "Mon Dec 05 2011 15:05:56 GMT+0100"); Zeile gelöscht : user_pref("CT2269050.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_TOOLBAR_ID"); Zeile gelöscht : user_pref("CT2269050.SearchInNewTabUsageUrl", "hxxp://usage.hosting.toolbar.conduit-services.com/usage.ashx?ctid=EB_TOOLBAR_ID"); Zeile gelöscht : user_pref("CT2269050.SearchProtectorEnabled", false); Zeile gelöscht : user_pref("CT2269050.SearchProtectorToolbarDisabled", false); Zeile gelöscht : user_pref("CT2269050.ServiceMapLastCheckTime", "Mon Dec 05 2011 15:05:52 GMT+0100"); Zeile gelöscht : user_pref("CT2269050.SettingsCheckIntervalMin", 120); Zeile gelöscht : user_pref("CT2269050.SettingsLastCheckTime", "Mon Dec 05 2011 18:23:17 GMT+0100"); Zeile gelöscht : user_pref("CT2269050.SettingsLastUpdate", "1322501034"); Zeile gelöscht : user_pref("CT2269050.ThirdPartyComponentsInterval", 504); Zeile gelöscht : user_pref("CT2269050.ThirdPartyComponentsLastCheck", "Wed Nov 30 2011 11:53:49 GMT+0100"); Zeile gelöscht : user_pref("CT2269050.ThirdPartyComponentsLastUpdate", "1312887586"); Zeile gelöscht : user_pref("CT2269050.TrusteLinkUrl", "hxxp://trust.conduit.com/CT2269050"); Zeile gelöscht : user_pref("CT2269050.TrustedApiDomains", "conduit.com,conduit-hosting.com,conduit-services.com,client.conduit-storage.com,OurToolbar.com,CommunityToolbars.com,ForumToolbar.com,MyBlogToolbar.com,MyCity[...] Zeile gelöscht : user_pref("CT2269050.UserID", "UN09854061789643442"); Zeile gelöscht : user_pref("CT2269050.ValidationData_Search", 2); Zeile gelöscht : user_pref("CT2269050.ValidationData_Toolbar", 2); Zeile gelöscht : user_pref("CT2269050.WeatherNetwork", ""); Zeile gelöscht : user_pref("CT2269050.WeatherPollDate", "Mon Dec 05 2011 18:53:58 GMT+0100"); Zeile gelöscht : user_pref("CT2269050.WeatherUnit", "C"); Zeile gelöscht : user_pref("CT2269050.alertChannelId", "666138"); Zeile gelöscht : user_pref("CT2269050.backendstorage./9b+7e+x305", "247E27413334363379453A3D2A722C797A7E7A3128333B4D474549484C5952594B335E5356432C45333438334A414C546660576364676F6A5E4B766B6E5B445D4B4C504A6259646C787A2[...] Zeile gelöscht : user_pref("CT2269050.backendstorage./9b+7e,x305", "247E28412F3F3E3779453A3D2A722C797B787D3128333C4748402C574C4F3C253E2C2E2B2F433A454E59505B57676A66426D62455E69543D56444643465B525D66716C216E6B587D73675[...] Zeile gelöscht : user_pref("CT2269050.backendstorage./9b+7e-x305", "247E2936303C363679453A3D2A722C797A207B3128333D462B554A4D4B4749594D33535D4F432C45333439344A414C565B5E6C656E706C7164736D4D786D705D465F4D4E534D645B66705[...] Zeile gelöscht : user_pref("CT2269050.backendstorage./9b+7e.:2z527", "247E6F727174354379453A3D2A722C757A787D31283323242B4953542E594E513E27402A2B3230453C47323B3C5564606A436E6366533C553F4447445A515C7D7D7E7C6973722173745[...] Zeile gelöscht : user_pref("CT2269050.backendstorage./9b+7e.x305", "247E2A4137374434337A463B3E2B732D7A7D7C213229343F564654524C474A595A4851505E51523964595C49324B393C3B3E5047525D6C6A6B6F786D68506A6F7171742256227679664F6[...] Zeile gelöscht : user_pref("CT2269050.backendstorage./9b+7e/x305", "247E2B413536327844393C29712B787C7B773027323E4C4343534E2D585B3C253E2C302E34433A45515862695E675A416C6164513A5341454348584F5A666D7B7C7174726E702174745B2[...] Zeile gelöscht : user_pref("CT2269050.backendstorage./9b+7e06cg5el8:", "6E6D6F6F736B74767276"); Zeile gelöscht : user_pref("CT2269050.backendstorage./9b+7e06cg5el;8i:k", "247E2D2F226A7473757579717A7C787C242F4B49474F42357D5D5C3D"); Zeile gelöscht : user_pref("CT2269050.backendstorage./9b+7e0x305", "247E2C403A407743383B28702A777C757D2F26313E41295547484D515A4E5A59325D5255422B443237303749404B585E685E706E6E6674626E696B4D786D705D465F4D524B51645B66732[...] Zeile gelöscht : user_pref("CT2269050.backendstorage./9b+7e1x305", "247E2D41313D403279453A3D2A722C7A77797E31283341473E454745482F5A4F523F2841302D2F33463D48566265685C6B675F6D70604873686B58415A4946484B5F56616F7C217D74747[...] Zeile gelöscht : user_pref("CT2269050.backendstorage./9b+7e2x305", "247E2E3542313D3D393A7B473C3F2C742E79207D3229344356554E472E594E51325E4F412A4335373231483F4A59655F5F626C5B717369756975744D786D70517E6B60496252505451675[...] Zeile gelöscht : user_pref("CT2269050.backendstorage./9b+7e3x305", "247E2F413F3B36333F47463F7D493E412E76307E222421352C37474B59574B4A4858584E5E3762573A535E49324B3A3D3F3B504752626C625D75786D766A7C517C7174614A63525557526[...] Zeile gelöscht : user_pref("CT2269050.backendstorage./9b+7e4x305", "247E302C407642373A276F29777B74762E2530413E4F494A522B55553A233C2B2F282941384354515E5D56615F56685C426D6265523B544346494A59505B6C697A7E21702370765925797[...] Zeile gelöscht : user_pref("CT2269050.backendstorage./9b+7e5x305", "247E3136422B7743383B28702A79757A772F2631434B3D49564A50592E594E314A55402942322E332F473E495B5D595A6A5E58707262674974696C59425B4B474B51605762747C2473737[...] Zeile gelöscht : user_pref("CT2269050.backendstorage./9b+7e6x305", "247E322C3E32323238453E7C483D402D752F7E7B2424342B364953545259585A5A50524E36615659462F4838353D3C4D444F626C6D6B72716A77614D786D705D465F4F4C5451645B66797[...] Zeile gelöscht : user_pref("CT2269050.backendstorage./9b+7e7x305", "247E333D2C3F3E3F79453A3D2A722C7B7A797A312833474745445159575B504B504B4D5E545553533A655A5D4A334C3C3B3A3951485367756363677575676B65527D7275624B645453515[...] Zeile gelöscht : user_pref("CT2269050.backendstorage./9b+7e8x305", "247E343D3F3B35373B3F367C47472C742E7E782332293449565540472E594E513E274030323533453C475C5558636A656E625E6C616B7068734B766B6E5B445D4D4F524F6259647927252[...] Zeile gelöscht : user_pref("CT2269050.backendstorage./9b+7e9x305", "247E35332C3F327844393C29712B7B757979302732484C4F4F44504C4754585C5048345F5457442D46373135344B424D636B5D5F5F73696B4A756A6D5A435C4D474B4961586379226F742[...] Zeile gelöscht : user_pref("CT2269050.backendstorage./9b+7e:x305", "247E36333B38327844393C29712B7B76797A30273249485545442C574C4F3C253E2F2A2D2D433A455C67555B5E3F6A5F624F3851423D403F564D586F7A68786C717154207477644D66575[...] Zeile gelöscht : user_pref("CT2269050.backendstorage./9b+7e;x305", "247E373F333F3738422F7B473C3F2C742E7E7A7A22332A354D462C574C4F3C253E2F2B2B31433A455D6356575C5C5A416C6164513A5344404045584F5A7273717A786D2256227679664F6[...] Zeile gelöscht : user_pref("CT2269050.backendstorage./9b+7e<x305", "247E38343030442F463644377D493E412E7630217D2426352C37502E4F4747315C5154412A4334313738483F4A635F5A6A645E625A4772676A5740594A474D4D5E55607971246E7778257[...] Zeile gelöscht : user_pref("CT2269050.backendstorage./9b+7e=x305", "247E3933363F41413739357C483D402D752F207E2022342B36505459574C554F515B345F5457442D46373637384B424D676B706E606F61666B63664D786D705D465F504F5050645B66212[...] Zeile gelöscht : user_pref("CT2269050.backendstorage./9b+7e>x305", "247E3A41363F323238387B473C3F2C742E7E20217C332A35504F5346482F5A4F523F28413233342F463D48635C5D66626A436E6366533C55464748425A515C77707773202371215925797[...] Zeile gelöscht : user_pref("CT2269050.backendstorage./9b+7e?x305", "247E3B2D2F2F334134403A3A7D494C2D752F2023207E342B3652504C5249555256525C35605558452E47383B38364C434E6A706F5F65635D736F677578684C65706B54207477644D66575[...] Zeile gelöscht : user_pref("CT2269050.backendstorage./9b+7e@x305", "247E3C40422B7743383B28702A7B767E782F26314E52543D2A554A2D46513C253E302B332C433A45626756516259655F5F436E63465F6A553E5749444C445C535E7B21747C7821745A267[...] Zeile gelöscht : user_pref("CT2269050.backendstorage./9b+7eax305", "247E3D3D37387743383B28702A7B7A757E2F26314F4F544A52404548564F58315C5154412A4335342F37483F4A68646B645D5E626462616D6971726B6C786A517C7174614A6355544F566[...] Zeile gelöscht : user_pref("CT2269050.backendstorage./9b+7ebe3g=;d9n9=d", "372C2D326975762E3A3C7B3A39434A494841434B265146492965504656496571734D334B57"); Zeile gelöscht : user_pref("CT2269050.backendstorage./9b+7ebx305", "247E3E393141303D33454036327E4A3F422F77317B7D23352C37565949484E4F51525C4E4C55535B54605A5A3E695E614E37503B3D41544B567575656D7367796D6D7C55217578654E675[...] Zeile gelöscht : user_pref("CT2269050.backendstorage./9b+7ecx305", "247E3F3D303043312E7A463B3E2B732D7B207E3128335351565551575A4F584C5E335E5356432C4534383649404B6B59566C686B46716669563F58474B485C535E7E6C6956227679664F6[...] Zeile gelöscht : user_pref("CT2269050.backendstorage./9b+7edx305", "247E4035422A363879453A3D2A722C7D202F26315247543C484A2C574C2F48533E27403233433A45665B68505C5E406B6E4F38514343544B56776C79616D6F517C71547873634C6557566[...] Zeile gelöscht : user_pref("CT2269050.backendstorage./9b+7etx305", "247E6E2F2E3B323342357B44392B732D7A7B7B7C322934215642542D584D503D263F2D2E2E2E443B4635645E6669595C6062686F5C7363716F696467764F7A6F725F48614F50504F665D6[...] Zeile gelöscht : user_pref("CT2269050.backendstorage./9b-0?3g>d", "3C693E69727143737A7371724820767A4C4D257D4D537E2A522653252A272E2F5C2D5B2D"); Zeile gelöscht : user_pref("CT2269050.backendstorage./9b-0?3g@6:5;", ""); Zeile gelöscht : user_pref("CT2269050.backendstorage./9b-0?3gfa7ef", "2B2E2C3D"); Zeile gelöscht : user_pref("CT2269050.backendstorage./9b-3=3eccja=f>", "247E333D2C452F4135276F292A212C393D44307832332A354448584C3A232E333E58604F6456604F6852645858635E604E376B7167617059"); Zeile gelöscht : user_pref("CT2269050.backendstorage./9b/>01=9a6k6<im;krie@pdawm", "6A696B7273747576"); Zeile gelöscht : user_pref("CT2269050.backendstorage./9b3=>@44i48?", "372C2D326975763342363341484779213F3E484F4E4D4648502B564B4E2E5959595F4C564F3764535750"); Zeile gelöscht : user_pref("CT2269050.backendstorage./9b5ba==9cjag", "69696F6E3E3E70457A4246717777487C7A784C7A4F"); Zeile gelöscht : user_pref("CT2269050.backendstorage./9b6b11g4c56b>f;p;anr@p", "6E6D6F6F736B74767675717473"); Zeile gelöscht : user_pref("CT2269050.backendstorage./9b90e@8ff=eg", "393F352F3E"); Zeile gelöscht : user_pref("CT2269050.backendstorage./9b9643g3/9e", "6A"); Zeile gelöscht : user_pref("CT2269050.backendstorage./9b<:222h64<", "393F352F3E"); Zeile gelöscht : user_pref("CT2269050.backendstorage./9b=+03eh8h8j?:", "4443"); Zeile gelöscht : user_pref("CT2269050.backendstorage./9b?+e2a52d8", "372C2D326975762E3A3C7B3A39434A494841434B2651464929655046566470727951555E5E52"); Zeile gelöscht : user_pref("CT2269050.backendstorage./9b?b0d:8aj62<h", "6D"); Zeile gelöscht : user_pref("CT2269050.backendstorage./9ba@0<0bi6a7gn:6@l?", "6E6B"); Zeile gelöscht : user_pref("CT2269050.backendstorage.facebook_mode", "32"); Zeile gelöscht : user_pref("CT2269050.backendstorage.youtube_user_first_login_date", "30332F32312F32303131"); Zeile gelöscht : user_pref("CT2269050.backendstorage.youtube_user_survey_visit", "4E4F545F56495349544544"); Zeile gelöscht : user_pref("CT2269050.backendstorage.youtubelang", "5553"); Zeile gelöscht : user_pref("CT2269050.clientLogIsEnabled", false); Zeile gelöscht : user_pref("CT2269050.clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent"); Zeile gelöscht : user_pref("CT2269050.generalConfigFromLogin", "{\"ApiMaxAlerts\":\"12\",\"SocialDomains\":\"social.conduit.com;apps.conduit.com;services.apps.conduit.com\",\"AppsDetectionUrlPattern\":\"hxxp://appdown[...] Zeile gelöscht : user_pref("CT2269050.globalFirstTimeInfoLastCheckTime", "Mon Dec 05 2011 18:23:26 GMT+0100"); Zeile gelöscht : user_pref("CT2269050.homepageProtectorEnableByLogin", true); Zeile gelöscht : user_pref("CT2269050.initDone", true); Zeile gelöscht : user_pref("CT2269050.isAppTrackingManagerOn", true); Zeile gelöscht : user_pref("CT2269050.myStuffEnabled", true); Zeile gelöscht : user_pref("CT2269050.myStuffPublihserMinWidth", 400); Zeile gelöscht : user_pref("CT2269050.myStuffSearchUrl", "hxxp://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOrigin=29&ctid=EB_TOOLBAR_ID&octid=EB_ORIGINAL_CTID"); Zeile gelöscht : user_pref("CT2269050.myStuffServiceIntervalMM", 1440); Zeile gelöscht : user_pref("CT2269050.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?ComponentId=EB_MY_STUFF_INSTANCE_GUID&lut=EB_MY_STUFF_LUT"); Zeile gelöscht : user_pref("CT2269050.oldAppsList", "128834881989343894,128834881989343895,111,129466585399606892,129391330693125668,129466585396013141,129121052374999726,129023235807856892,1000082,129351672002618989,[...] Zeile gelöscht : user_pref("CT2269050.revertSettingsEnabled", true); Zeile gelöscht : user_pref("CT2269050.searchProtector.notifyChanges", "{\"dataType\":\"string\",\"data\":\"false\"}"); Zeile gelöscht : user_pref("CT2269050.searchProtectorDialogDelayInSec", 10); Zeile gelöscht : user_pref("CT2269050.searchProtectorEnableByLogin", true); Zeile gelöscht : user_pref("CT2269050.testingCtid", ""); Zeile gelöscht : user_pref("CT2269050.toolbarAppMetaDataLastCheckTime", "Mon Dec 05 2011 15:05:58 GMT+0100"); Zeile gelöscht : user_pref("CT2269050.toolbarContextMenuLastCheckTime", "Wed Nov 23 2011 09:53:36 GMT+0100"); Zeile gelöscht : user_pref("CT2269050.uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/RegisterToolbarUninstallation"); Zeile gelöscht : user_pref("CT2269050.usagesFlag", 2); Zeile gelöscht : user_pref("CommunityToolbar.CantToolbarBeEngineOwner", "CT2269050"); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://Settings.toolbar.search.conduit.com/root/CT1858408/CT1858408", "\"d41d8cd98f00b204e9800998ecf8427e3\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://Settings.toolbar.search.conduit.com/root/CT2269050/CT2269050", "\"1322501035\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root/131990/131200/DE", "\"0\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root/666138/661999/DE", "\"0\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root/909619/905414/DE", "\"0\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT1858408", "\"0\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT2269050", "\"1313041456\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=de-de", "oIwsta2spzadhjRgiY1Nhw=="); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=en", "wVmmvqqOMqrv5xct1cJIHg=="); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=de-de", "WiZSpHJzJ/uTUKvfHHyj/w=="); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=en", "0uSPYx+Kl2jpu8sJZMeHjw=="); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=de-de", "9H/gICSaMqbmx+Gd+8W4Sg=="); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=en", "Dclc8oo4TTv7+mAkSlUSWg=="); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=de-de", "eJfMrdrGnhGHiiPiYjgAww=="); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=en", "K4Vqu91uAzWURlxJRdXJOg=="); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.alert.conduit-services.com/alert/dlg.pkg", "\"07879643d3acc1:0\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.engine.conduit-services.com/DLG.pkg?ver=3.3.3.2", "\"807dc126dd28cc1:0\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.12.2.3", "\"4ead38b3e6bcd1:0\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.13.0.6", "\"0d648794549cd1:0\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.14.1.0", "\"0e0a4327275cd1:0\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.15.1.0", "\"0e0a4327275cd1:0\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.3.3.2", "\"07b2625f8cb1:0\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.5.0.12", "\"8028f138140cc1:0\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.6.0.10", "\"0ee90707f77cc1:0\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.7.0.6", "\"80ee9485875dcc1:0\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.8.0.8", "\"6a637346d78ccc1:0\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.8.1.0", "\"80ee9485875dcc1:0\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/Toolbar/?ownerId=CT1858408", "\"f1c77625c0e9bd1c80a2fd6901845fa9\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/Toolbar/?ownerId=CT2269050", "\"93602d2a60e927e3ca51f1ad15996f04\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://settings.engine.conduit-services.com/?browser=FF&lut=0", "634356118310000000"); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://settings.engine.conduit-services.com/?browser=FF&lut=3/13/2011 11:17:11 AM", "634356118310000000"); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://settings.toolbar.conduit-services.com/?ctid=CT1858408&octid=CT1858408", "\"1321973233\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://settings.toolbar.conduit-services.com/?ctid=CT2269050&octid=CT2269050", "\"1322501035\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://settings.toolbar.search.conduit.com/root/CT1858408/CT1858408", "\"1310989086\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://settings.toolbar.search.conduit.com/root/CT2269050/CT2269050", "\"1311170367\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/BankImages/RadioSkins/Bluenote/equalizer_dead.gif", "\"0a8c48d3330c81:0\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/BankImages/RadioSkins/Bluenote/maxi.gif", "\"091b5fe2e30c81:0\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/BankImages/RadioSkins/Bluenote/minimize.gif", "\"0e2106f3030c81:0\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/BankImages/RadioSkins/Bluenote/pause_mini.gif", "\"03c70b54430c81:0\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/BankImages/RadioSkins/Bluenote/play.gif", "\"0f475394430c81:0\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/BankImages/RadioSkins/Bluenote/play_mini.gif", "\"02fce414430c81:0\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/BankImages/RadioSkins/Bluenote/stop.gif", "\"08d9ef44430c81:0\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/BankImages/RadioSkins/Bluenote/vol.gif", "\"066e8863030c81:0\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=EB_LOCALE", "\"4b121196b3398318f01c08fb8af8d394\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=de-de", "\"74c0241ec3b8eb9bdfa5f2ddc4bd5cf8\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=en", "\"1d81252562c31be757300e4205a85371\""); Zeile gelöscht : user_pref("CommunityToolbar.ETag.hxxp://twitter.com/users/show/17707601.xml", "\"ebb56a430239911128024731328affac\""); Zeile gelöscht : user_pref("CommunityToolbar.EngineOwner", ""); Zeile gelöscht : user_pref("CommunityToolbar.EngineOwnerGuid", "{8deccfa4-aaa0-421c-bf51-c1a686b014d4}"); Zeile gelöscht : user_pref("CommunityToolbar.EngineOwnerToolbarId", "verschenken"); Zeile gelöscht : user_pref("CommunityToolbar.IsEngineShown", true); Zeile gelöscht : user_pref("CommunityToolbar.IsMyStuffImportedToEngine", true); Zeile gelöscht : user_pref("CommunityToolbar.LatestLibsPath", "file:///C:\\Users\\Nadine\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\8ktq3vh9.default\\conduitCommon\\modules\\3.8.1.0"); Zeile gelöscht : user_pref("CommunityToolbar.LatestToolbarVersionInstalled", "3.8.1.0"); Zeile gelöscht : user_pref("CommunityToolbar.MiniIPageGadgetPosition.hxxp://assets.onehourtranslation.com/partners/conduit/oht_translation_bar_minimal1.html", "618x134"); Zeile gelöscht : user_pref("CommunityToolbar.MiniIPageGadgetPosition.hxxp://chat.loke.com/?utm_source=Conduit&utm_medium=Toolbar&utm_campaign=CT2269050", "302x66"); Zeile gelöscht : user_pref("CommunityToolbar.MiniIPageGadgetSize.hxxp://pgcff.pricegong.com/agreement/agree.html#pg_ext_msg_key_346b4483", "356x332"); Zeile gelöscht : user_pref("CommunityToolbar.MiniIPageGadgetSize.hxxp://pgcff.pricegong.com/menu_dlg/pg_dlg.html#pg_ext_msg_key_2df8a7dd", "100x93"); Zeile gelöscht : user_pref("CommunityToolbar.MiniIPageGadgetSize.hxxp://storage.conduit.com/50/226/CT2269050/Gadgets/4d92694a-e591-42e6-93a2-583f4d96d7c0.html", "800x708"); Zeile gelöscht : user_pref("CommunityToolbar.MiniIPageGadgetSize.hxxp://storage.conduit.com/50/226/CT2269050/Gadgets/6edca03f-e385-483f-92a6-1ac0700af89b.html", "800x708"); Zeile gelöscht : user_pref("CommunityToolbar.MiniIPageGadgetSize.hxxp://storage.conduit.com/50/226/CT2269050/Gadgets/8e084b7c-cf5c-4e6c-97f3-6ecd9cd4c13f.html", "800x708"); Zeile gelöscht : user_pref("CommunityToolbar.MiniIPageGadgetSize.hxxp://storage.conduit.com/MarketPlace/07/dd/07caac71-eac9-4963-9fa6-f6c1cc836ddd/Gadgets/9b2c0b7d-47bd-440b-a22f-35bf33416229.html", "800x708"); Zeile gelöscht : user_pref("CommunityToolbar.OriginalEngineOwner", "CT1858408"); Zeile gelöscht : user_pref("CommunityToolbar.OriginalEngineOwnerGuid", "{8deccfa4-aaa0-421c-bf51-c1a686b014d4}"); Zeile gelöscht : user_pref("CommunityToolbar.OriginalEngineOwnerToolbarId", "verschenken"); Zeile gelöscht : user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "chrome://browser-region/locale/region.properties"); Zeile gelöscht : user_pref("CommunityToolbar.ToolbarsList", "CT2269050"); Zeile gelöscht : user_pref("CommunityToolbar.ToolbarsList2", "CT2269050"); Zeile gelöscht : user_pref("CommunityToolbar.alert.alertDialogsGetterLastCheckTime", "Mon May 02 2011 15:23:20 GMT+0200"); Zeile gelöscht : user_pref("CommunityToolbar.alert.alertInfoInterval", 1440); Zeile gelöscht : user_pref("CommunityToolbar.alert.alertInfoLastCheckTime", "Fri Jul 08 2011 10:26:56 GMT+0200"); Zeile gelöscht : user_pref("CommunityToolbar.alert.clientsServerUrl", "hxxp://alert.client.conduit.com"); Zeile gelöscht : user_pref("CommunityToolbar.alert.locale", "en"); Zeile gelöscht : user_pref("CommunityToolbar.alert.loginIntervalMin", 1440); Zeile gelöscht : user_pref("CommunityToolbar.alert.loginLastCheckTime", "Fri Jul 08 2011 10:26:38 GMT+0200"); Zeile gelöscht : user_pref("CommunityToolbar.alert.loginLastUpdateTime", "1305622559"); Zeile gelöscht : user_pref("CommunityToolbar.alert.messageShowTimeSec", 20); Zeile gelöscht : user_pref("CommunityToolbar.alert.servicesServerUrl", "hxxp://alert.services.conduit.com"); Zeile gelöscht : user_pref("CommunityToolbar.alert.showTrayIcon", false); Zeile gelöscht : user_pref("CommunityToolbar.alert.userCloseIntervalMin", 300); Zeile gelöscht : user_pref("CommunityToolbar.alert.userId", "bda5675d-780b-4977-b9d5-3da3c41fe14d"); Zeile gelöscht : user_pref("CommunityToolbar.facebook.sessionKey", "2.AQBAnsvN_E3SNOOA.86400.1324652400.0-1664930380"); Zeile gelöscht : user_pref("CommunityToolbar.facebook.sessionSecret", "tta2Y8oApvjciRAo69VQxQ__"); Zeile gelöscht : user_pref("CommunityToolbar.facebook.settingsLastCheckTime", "Fri Dec 23 2011 12:03:37 GMT+0100"); Zeile gelöscht : user_pref("CommunityToolbar.facebook.userId", "1664930380"); Zeile gelöscht : user_pref("CommunityToolbar.globalUserId", "0f725b28-8244-4366-ba56-6beefa7e64e9"); Zeile gelöscht : user_pref("CommunityToolbar.isAlertUrlAddedToFeedItemTable", true); Zeile gelöscht : user_pref("CommunityToolbar.isClickActionAddedToFeedItemTable", true); Zeile gelöscht : user_pref("CommunityToolbar.keywordURLSelectedCTID", "CT1858408"); Zeile gelöscht : user_pref("CommunityToolbar.killedEngine", true); Zeile gelöscht : user_pref("CommunityToolbar.notifications.alertDialogsGetterLastCheckTime", "Thu Dec 22 2011 14:56:04 GMT+0100"); Zeile gelöscht : user_pref("CommunityToolbar.notifications.alertInfoInterval", 1440); Zeile gelöscht : user_pref("CommunityToolbar.notifications.alertInfoLastCheckTime", "Fri Dec 23 2011 12:03:46 GMT+0100"); Zeile gelöscht : user_pref("CommunityToolbar.notifications.clientsServerUrl", "hxxp://alert.client.conduit.com"); Zeile gelöscht : user_pref("CommunityToolbar.notifications.firstTimeAlertShown", true); Zeile gelöscht : user_pref("CommunityToolbar.notifications.locale", "en"); Zeile gelöscht : user_pref("CommunityToolbar.notifications.loginIntervalMin", 1440); Zeile gelöscht : user_pref("CommunityToolbar.notifications.loginLastCheckTime", "Fri Dec 23 2011 12:03:36 GMT+0100"); Zeile gelöscht : user_pref("CommunityToolbar.notifications.loginLastUpdateTime", "1313487611"); Zeile gelöscht : user_pref("CommunityToolbar.notifications.messageShowTimeSec", 20); Zeile gelöscht : user_pref("CommunityToolbar.notifications.servicesServerUrl", "hxxp://alert.services.conduit.com"); Zeile gelöscht : user_pref("CommunityToolbar.notifications.showTrayIcon", false); Zeile gelöscht : user_pref("CommunityToolbar.notifications.userCloseIntervalMin", 300); Zeile gelöscht : user_pref("CommunityToolbar.notifications.userId", "37769edc-d1d2-445f-bf9e-212e121b9f2c"); Zeile gelöscht : user_pref("CommunityToolbar.twitter.user_17707601.LastCheckTime", "Fri Dec 23 2011 15:03:56 GMT+0100"); Zeile gelöscht : user_pref("CommunityToolbar.undefined", ""); Zeile gelöscht : user_pref("browser.search.defaultengine", "Ask.com"); Zeile gelöscht : user_pref("browser.search.defaultthis.engineName", "Sozialmarkt-Community Customized Web Search"); Zeile gelöscht : user_pref("browser.search.defaulturl", "hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.2.9&q="); Zeile gelöscht : user_pref("browser.search.order.1", "Ask.com"); Zeile gelöscht : user_pref("extensions.crossrider.bic", "1431c2fa84b407a2cec2d1741fe9b616"); Zeile gelöscht : user_pref("extensions.toolbar.mindspark._49Members_.lastActivePing", "1388766626160"); Zeile gelöscht : user_pref("extensions.toolbar.mindspark._49Members_.weather.location", "10001"); Zeile gelöscht : user_pref("extensions.toolbar.mindspark._8hMembers_.lastActivePing", "1389369132051"); Zeile gelöscht : user_pref("extensions.toolbar.mindspark._8hMembers_.weather.location", "10001"); Zeile gelöscht : user_pref("extensions.toolbar.mindspark.lastInstalled", "allin1convert@mindspark.com"); Zeile gelöscht : user_pref("extensions.wrc.SearchRules.ask.com.style", ".WRCN {display:none} #psa-teoma-result .ptbs .WRCN, #teoma-results .ptbs .WRCN {display:inline !important; background: url(\"IMAGE\") right no-[...] Zeile gelöscht : user_pref("extensions.wrc.SearchRules.ask.com.url", "^hxxp(s)?\\:\\/\\/(.+\\.)?ask\\.com\\/.*"); Zeile gelöscht : user_pref("icqtoolbar.allowSendURL", false); Zeile gelöscht : user_pref("icqtoolbar.engineVerified", false); Zeile gelöscht : user_pref("icqtoolbar.firstTbRun", false); Zeile gelöscht : user_pref("icqtoolbar.geolastmodified", 1350072344); Zeile gelöscht : user_pref("icqtoolbar.history", "essie%20limo%20scene||turquoise%20%26%20caicos||tumblr||tumblr%20bilder%20als%20hintergrund||food%20is%20my%20bestfriend||food%20is%20my%20best%20friend||popo||honza%2[...] Zeile gelöscht : user_pref("icqtoolbar.hpChange", true); Zeile gelöscht : user_pref("icqtoolbar.icqgeo", 49); Zeile gelöscht : user_pref("icqtoolbar.installTime", "1343218543"); Zeile gelöscht : user_pref("icqtoolbar.newtab_most_visited_state", "1"); Zeile gelöscht : user_pref("icqtoolbar.newtab_recently_closed_state", "1"); Zeile gelöscht : user_pref("icqtoolbar.newtab_state", "1"); Zeile gelöscht : user_pref("icqtoolbar.numberOfSearches", 0); Zeile gelöscht : user_pref("icqtoolbar.previousFFVersion", "15.0.1"); Zeile gelöscht : user_pref("icqtoolbar.skip_default_search", "no"); Zeile gelöscht : user_pref("icqtoolbar.suggestions", false); Zeile gelöscht : user_pref("icqtoolbar.uninstStatSent", true); Zeile gelöscht : user_pref("icqtoolbar.uniqueID", "130579751113057973911305812516555"); Zeile gelöscht : user_pref("icqtoolbar.usageStatstTimestamp", 1350072346); Zeile gelöscht : user_pref("icqtoolbar.voucherHideClicks", 0); Zeile gelöscht : user_pref("icqtoolbar.voucherMoreLinkClicks", 0); Zeile gelöscht : user_pref("icqtoolbar.voucherRedeemClicks", 0); Zeile gelöscht : user_pref("icqtoolbar.voucherWasShown", 0); Zeile gelöscht : user_pref("icqtoolbar.xmlEnableHomePageDsGuard", false); Zeile gelöscht : user_pref("icqtoolbar.xmlEnableSuggestions", false); Zeile gelöscht : user_pref("icqtoolbar.xmlLanguage", "de"); [ Datei : C:\Users\Gast\AppData\Roaming\Mozilla\Firefox\Profiles\7lj1qgnt.default\prefs.js ] Zeile gelöscht : user_pref("browser.search.selectedEngine", "Ask.com"); Zeile gelöscht : user_pref("browser.search.order.1", "Ask.com"); Zeile gelöscht : user_pref("browser.search.defaultengine", "Ask.com"); Zeile gelöscht : user_pref("browser.search.defaultenginename", "Ask.com"); Zeile gelöscht : user_pref("extensions.asktb.ff-original-keyword-url", ""); ************************* AdwCleaner[R0].txt - [48732 octets] - [10/01/2014 17:29:36] AdwCleaner[S0].txt - [48636 octets] - [10/01/2014 17:31:32] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [48697 octets] ########## |
10.01.2014, 18:34 | #6 |
| Bedrohung: Win32: Agent-ASOG (Trj) Ergebnis Combofix Es kam die Meldung, dass noch das Antivenprogramm "Avira Deskop" aktiv wäre. Jedoch habe ich seit fast 2 Jahren kein Avira mehr und es schon lange deinstalliert. Konnte nix mehr auf dem Pc zu avira finden. Das nur so als Zusatzbemerkung. Combofix Logfile: Code:
ATTFilter ComboFix 14-01-08.03 - Nadine 10.01.2014 17:57:54.1.2 - x86 Microsoft® Windows Vista™ Home Premium 6.0.6001.1.1252.49.1031.18.2938.1628 [GMT 1:00] ausgeführt von:: c:\users\Nadine\Desktop\Desktop\ComboFix.exe AV: Avira Desktop *Enabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C} SP: Avira Desktop *Enabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\program files\Conference c:\program files\Conference\Conference.db c:\program files\Conference\Conference.dll c:\program files\Conference\Conference.exe c:\program files\Conference\Conference.ini c:\program files\Conference\Conference.key c:\program files\Conference\Languages\de.xml c:\program files\Conference\Languages\en.xml c:\program files\Conference\Languages\es.xml c:\program files\Conference\Languages\fr.xml c:\program files\Conference\Languages\hu.xml c:\program files\Conference\Languages\pl.xml c:\program files\Conference\Languages\pt.xml c:\program files\Conference\Languages\ru.xml c:\program files\Conference\Languages\ua.xml c:\programdata\Roaming c:\users\Nadine\AppData\Roaming\11004.bat c:\users\Nadine\AppData\Roaming\Alvoal c:\users\Nadine\AppData\Roaming\Alvoal\biuco.tmp c:\users\Nadine\AppData\Roaming\Alvoal\biuco.tug c:\users\Nadine\AppData\Roaming\Local c:\users\Nadine\AppData\Roaming\Local\Temp\DDM\Settings\(2).ddr c:\users\Nadine\AppData\Roaming\Local\Temp\DDM\Settings\.ddr c:\users\Nadine\AppData\Roaming\Local\Temp\DDM\Settings\0.ddi c:\users\Nadine\AppData\Roaming\Local\Temp\DDM\Settings\1.ddi c:\users\Nadine\AppData\Roaming\Local\Temp\DDM\Settings\settings.ddi c:\users\Nadine\AppData\Roaming\Local\Temp\DDM\Settings\Temporary Downloaded Files\(2).ddp c:\users\Nadine\AppData\Roaming\Local\Temp\DDM\Settings\Temporary Downloaded Files\.ddp c:\windows\IsUn0407.exe c:\windows\system32\ c:\windows\system32\drivers\etc\hosts.ics c:\windows\wininit.ini . . ((((((((((((((((((((((( Dateien erstellt von 2013-12-10 bis 2014-01-10 )))))))))))))))))))))))))))))) . . 2014-01-10 17:14 . 2014-01-10 17:19 -------- d-----w- c:\users\Nadine\AppData\Local\temp 2014-01-10 17:14 . 2014-01-10 17:14 -------- d-----w- c:\users\Gast\AppData\Local\temp 2014-01-10 16:29 . 2014-01-10 16:32 -------- d-----w- C:\AdwCleaner 2014-01-10 15:45 . 2014-01-10 15:45 -------- d-----w- C:\FRST 2014-01-10 15:39 . 2014-01-10 15:39 -------- d-----w- c:\users\Nadine\AppData\Roaming\MusicNet 2014-01-04 11:37 . 2014-01-05 14:31 -------- d-----w- c:\users\Nadine\AppData\Local\gtk-2.0 2014-01-04 11:37 . 2014-01-04 11:38 -------- d-----w- c:\users\Nadine\.thumbnails 2014-01-04 11:26 . 2014-01-04 11:26 -------- d-----w- c:\users\Nadine\AppData\Local\fontconfig 2014-01-04 11:26 . 2014-01-05 15:14 -------- d-----w- c:\users\Nadine\.gimp-2.8 2014-01-04 11:26 . 2014-01-04 11:26 -------- d-----w- c:\users\Nadine\AppData\Local\gegl-0.2 2014-01-04 11:08 . 2014-01-04 11:15 -------- d-----w- c:\program files\GIMP 2 2013-12-22 21:21 . 2013-12-22 21:21 -------- d-----w- c:\program files\Image Converter 2013-12-22 21:21 . 2013-12-22 21:21 -------- d-----w- c:\users\Nadine\AppData\Roaming\DigitalSites . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2014-01-01 15:27 . 2013-02-28 14:42 180248 ----a-w- c:\windows\system32\drivers\aswVmm.sys 2014-01-01 15:27 . 2012-07-17 08:23 57672 ----a-w- c:\windows\system32\drivers\aswTdi.sys 2014-01-01 15:27 . 2012-07-17 08:23 410528 ----a-w- c:\windows\system32\drivers\aswSP.sys 2014-01-01 15:27 . 2012-07-17 08:23 54832 ----a-w- c:\windows\system32\drivers\aswRdr.sys 2014-01-01 15:27 . 2012-07-17 08:23 775952 ----a-w- c:\windows\system32\drivers\aswSnx.sys 2014-01-01 15:27 . 2012-07-17 08:23 67824 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys 2014-01-01 15:27 . 2012-07-17 08:22 43152 ----a-w- c:\windows\avastSS.scr 2014-01-01 15:27 . 2012-07-17 08:22 270240 ----a-w- c:\windows\system32\aswBoot.exe 2013-12-18 08:48 . 2012-10-12 20:18 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe 2013-12-18 08:48 . 2011-06-17 07:29 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2013-11-26 09:30 . 2013-02-28 14:42 49944 ----a-w- c:\windows\system32\drivers\aswRvrt.sys . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast] @="{472083B0-C522-11CF-8763-00608CC02F24}" [HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}] 2014-01-01 15:27 259464 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "NSUFloatingUI"="c:\program files\Sony\Network Utility\LANUtil.exe" [2008-06-27 262144] "ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-21 125952] "Spotify Web Helper"="c:\users\Nadine\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" [2012-11-18 1199576] "Skype"="c:\program files\Skype\Phone\Skype.exe" [2013-06-21 19875944] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RtHDVCpl"="RtHDVCpl.exe" [2008-07-03 6295552] "SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2007-03-10 835584] "IgfxTray"="c:\windows\system32\igfxtray.exe" [2008-07-04 150040] "HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2008-07-04 170520] "Persistence"="c:\windows\system32\igfxpers.exe" [2008-07-04 145944] "SSBkgdUpdate"="c:\program files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2006-09-28 185896] "OpwareSE4"="c:\program files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe" [2006-10-11 75304] "EEventManager"="c:\program files\Epson Software\Event Manager\EEventManager.exe" [2010-10-12 979328] "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2013-03-12 253816] "AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2014-01-01 3764024] . c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ McAfee Security Scan Plus.lnk - c:\program files\McAfee Security Scan\3.8.130\SSScheduler.exe [2013-9-6 273296] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\VESWinlogon] 2008-07-07 10:28 98304 ------w- c:\windows\System32\VESWinlogon.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32] "aux"=wdmaud.drv . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MarketingTools] 2008-08-09 12:01 24576 ----a-w- c:\program files\Sony\Marketing Tools\MarketingTools.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Spotify Web Helper] 2012-11-18 16:51 1199576 ----a-w- c:\users\Nadine\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-] "ISBMgr.exe"="c:\program files\Sony\ISB Utility\ISBMgr.exe" . [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\McAfeeAntiSpyware] "DisableMonitoring"=dword:00000001 . S2 ABBYY.Licensing.FineReader.Sprint.9.0;ABBYY FineReader 9.0 Sprint Licensing Service;c:\program files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [2009-05-14 759048] . . --- Andere Dienste/Treiber im Speicher --- . *NewlyCreated* - WS2IFSL . Inhalt des "geplante Tasks" Ordners . 2013-12-18 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-10-12 08:48] . 2014-01-01 c:\windows\Tasks\avast! Emergency Update.job - c:\program files\AVAST Software\Avast\AvastEmUpdate.exe [2012-07-17 15:27] . 2013-12-10 c:\windows\Tasks\GoogleUpdateTaskMachineCore1cef5bbfc666ec0.job - c:\program files\Google\Update\GoogleUpdate.exe [2012-07-22 10:28] . 2012-07-17 c:\windows\Tasks\User_Feed_Synchronization-{103B65BD-4798-4CA0-9487-EB211B637804}.job - c:\windows\system32\msfeedssync.exe [2011-06-15 04:32] . . ------- Zusätzlicher Suchlauf ------- . uStart Page = hxxp://www.google.de/ mStart Page = hxxp://search.myheritage.com uInternet Settings,ProxyOverride = <local> IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200 IE: Nach Microsoft E&xel exportieren - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000 TCP: Interfaces\{2CC1B3E3-83A7-454A-8049-BB7767A4A0A2}: NameServer = 192.168.2.1 FF - ProfilePath - c:\users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\ FF - prefs.js: browser.startup.homepage - hxxps://www.google.de/ . - - - - Entfernte verwaiste Registrierungseinträge - - - - . AddRemove-Lexikon - Biologie - c:\windows\IsUn0407.exe AddRemove-Lexikon - Physik - c:\windows\IsUn0407.exe AddRemove-VIS - c:\users\Nadine\AppData\Roaming\Windows Net Data\uninstaller.exe AddRemove-Video Conference - c:\program files\Conference\Conference.exe AddRemove-Digital Sites - c:\users\Nadine\AppData\Roaming\DIGITA~1\UpdateProc\UpdateTask.exe AddRemove-Image Editor Packages - c:\users\Nadine\AppData\Roaming\0D0S1L2Z1P1B0T1P1B2Z\Image Editor Packages\uninstaller.exe . . . ************************************************************************** Scanne versteckte Prozesse... . Scanne versteckte Autostarteinträge... . Scanne versteckte Dateien... . Scan erfolgreich abgeschlossen versteckte Dateien: . ************************************************************************** . [HKEY_LOCAL_MACHINE\system\ControlSet001\Services\MEMSWEEP2] "ImagePath"="\??\c:\windows\system32\62B8.tmp" . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0000-0003-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.0_03" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0000-0004-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.0_04" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0000-0005-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.0_05" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0000-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0001-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_01" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0001-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_01" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0002-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_02" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0002-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_02" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0003-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_03" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0003-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_03" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0004-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_04" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0004-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_04" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0005-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_05" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0005-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_05" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0006-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_06" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0006-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_06" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0007-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_07" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0007-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_07" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0008-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_08" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0008-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_08" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0009-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_09" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0009-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_09" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0010-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_10" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0010-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_10" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0011-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_11" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0011-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_11" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0012-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_12" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0012-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_12" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0013-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_13" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0013-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_13" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0014-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_14" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0014-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_14" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0015-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_15" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0015-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_15" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0016-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_16" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0016-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_16" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0017-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_17" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0017-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_17" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0018-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_18" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0018-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_18" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0019-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_19" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0019-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_19" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0020-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_20" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0020-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_20" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0021-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_21" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0021-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_21" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0022-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_22" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0022-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_22" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0023-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_23" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0023-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_23" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0024-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_24" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0024-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_24" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0025-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_25" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0025-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_25" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0026-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_26" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0026-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_26" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0027-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_27" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0027-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_27" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0028-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_28" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0028-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_28" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0029-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_29" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0029-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_29" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0030-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_30" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0013-0001-0030-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_30" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0000-0000-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.0" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0000-0000-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.0" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0000-0001-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.0_01" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0000-0001-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.0_01" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0000-0002-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.0_02" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0000-0002-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.0_02" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0000-0003-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.0_03" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0000-0003-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.0_03" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0000-0004-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.0_04" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0000-0004-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.0_04" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0001-0000-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.1" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0001-0000-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.1" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0001-0001-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.1_01" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0001-0001-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.1_01" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0001-0002-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.1_02" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0001-0002-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.1_02" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0001-0003-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.1_03" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0001-0003-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.1_03" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0001-0004-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.1_04" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0001-0004-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.1_04" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0001-0005-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.1_05" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0001-0005-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.1_05" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0001-0006-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.1_06" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0001-0006-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.1_06" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0001-0007-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.1_07" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0001-0007-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.1_07" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0000-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0000-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0001-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_01" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0001-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_01" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0002-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_02" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0002-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_02" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0003-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_03" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0003-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_03" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0004-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_04" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0004-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_04" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0005-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_05" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0005-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_05" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0006-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_06" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0006-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_06" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0007-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_07" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0007-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_07" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0008-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_08" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0008-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_08" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0009-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_09" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0009-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_09" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0010-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_10" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0010-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_10" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0011-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_11" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0011-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_11" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0012-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_12" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0012-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_12" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0013-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_13" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0013-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_13" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0014-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_14" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0014-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_14" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0015-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_15" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0015-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_15" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0016-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_16" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0016-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_16" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0017-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_17" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0017-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_17" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0018-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_18" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0018-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_18" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0019-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_19" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0019-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_19" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0020-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_20" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0020-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_20" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0021-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_21" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0021-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_21" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0022-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_22" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0022-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_22" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0023-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_23" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0023-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_23" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0024-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_24" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0024-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_24" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0025-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_25" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0025-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_25" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0026-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_26" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0026-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_26" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0027-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_27" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0027-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_27" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0028-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_28" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0028-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_28" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0029-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_29" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0029-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_29" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0030-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_30" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0030-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_30" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0031-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_31" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0031-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_31" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0032-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_32" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0032-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_32" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0033-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_33" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0033-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_33" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0034-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_34" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0034-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_34" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0035-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_35" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0035-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_35" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0036-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_36" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0036-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_36" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0037-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_37" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0037-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_37" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0038-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_38" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0038-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_38" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0039-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_39" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0039-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_39" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0040-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_40" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0040-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_40" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0041-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_41" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0041-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_41" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0042-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_42" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0042-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_42" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0043-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_43" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-0043-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_43" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0014-0002-FFFF-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0000-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0000-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0000-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0001-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_01" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0001-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_01" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0001-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_01" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0002-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_02" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0002-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_02" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0002-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_02" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0003-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_03" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0003-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_03" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0003-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_03" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0004-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_04" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0004-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_04" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0004-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_04" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0005-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_05" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0005-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_05" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0005-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_05" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_06" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_06" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_06" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0007-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_07" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0007-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_07" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0007-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_07" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0008-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_08" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0008-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_08" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0008-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_08" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_09" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_09" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_09" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_10" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_10" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_10" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_11" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_11" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_11" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0012-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_12" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0012-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_12" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0012-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_12" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0013-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_13" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0013-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_13" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0013-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_13" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0014-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_14" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0014-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_14" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0014-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_14" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0015-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_15" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0015-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_15" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0015-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_15" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0016-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_16" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0016-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_16" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0016-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_16" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0017-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_17" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0017-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_17" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0017-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_17" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0018-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_18" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0018-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_18" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0018-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_18" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0019-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_19" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0019-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_19" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0019-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_19" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0020-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_20" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0020-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_20" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0020-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_20" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0021-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_21" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0021-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_21" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0021-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_21" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0022-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_22" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0022-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_22" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0022-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_22" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0023-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_23" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0023-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_23" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0023-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_23" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0024-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_24" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0024-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_24" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0024-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_24" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0025-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_25" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0025-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_25" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0025-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_25" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0026-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_26" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0026-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_26" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0026-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_26" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0027-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_27" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0027-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_27" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0027-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_27" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0028-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_28" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0028-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_28" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0028-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_28" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0029-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_29" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0029-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_29" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0029-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_29" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0030-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_30" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0030-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_30" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0030-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_30" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0031-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_31" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0031-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_31" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0031-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_31" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0032-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_32" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0032-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_32" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0032-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_32" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0033-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_33" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0033-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_33" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0033-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_33" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0034-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_34" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0034-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_34" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0034-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_34" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0035-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_35" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0035-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_35" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0035-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_35" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0036-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_36" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0036-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_36" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0036-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_36" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0037-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_37" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0037-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_37" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0037-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_37" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0038-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_38" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0038-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_38" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0038-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_38" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0039-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_39" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0039-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_39" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0039-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_39" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0040-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_40" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0040-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_40" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0040-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_40" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0041-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_41" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0041-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_41" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0041-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_41" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0042-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_42" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0042-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_42" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0042-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_42" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0043-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_43" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0043-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_43" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0043-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_43" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0044-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_44" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0044-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_44" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0044-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_44" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0045-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_45" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0045-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_45" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0045-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_45" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0046-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_46" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0046-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_46" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0046-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_46" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0047-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_47" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0047-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_47" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0047-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_47" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0048-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_48" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0048-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_48" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0048-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_48" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0049-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_49" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0049-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_49" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0049-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_49" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0050-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_50" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0050-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_50" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0050-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_50" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0051-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_51" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0051-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_51" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-0051-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_51" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0015-0000-FFFF-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0000-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0000-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_01" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_01" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_01" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_02" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_02" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_02" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_03" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_03" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_03" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0004-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_04" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0004-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_04" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0004-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_04" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_05" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_05" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_05" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0006-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_06" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0006-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_06" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0006-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_06" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_07" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_07" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_07" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0008-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_08" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0008-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_08" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0008-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_08" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0009-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_09" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0009-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_09" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0009-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_09" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0010-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_10" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0010-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_10" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0010-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_10" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_11" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_11" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_11" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0012-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_12" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0012-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_12" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0012-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_12" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_13" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_13" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_13" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_14" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_14" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_14" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_15" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_15" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_15" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_16" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_16" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_16" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_17" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_17" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_17" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_18" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_18" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_18" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_19" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0019-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_19" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0019-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_19" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_20" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_20" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_20" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_21" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_21" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_21" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_22" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_22" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_22" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_23" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_23" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_23" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_24" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_24" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_24" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_25" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_25" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_25" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_26" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_26" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_26" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0027-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_27" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0027-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_27" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0027-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_27" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0028-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_28" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0028-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_28" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0028-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_28" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_29" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_29" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_29" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_30" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_30" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_30" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_31" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0031-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_31" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0031-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_31" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_32" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0032-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_32" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0032-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_32" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_33" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_33" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_33" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0034-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_34" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0034-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_34" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0034-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_34" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_35" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_35" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_35" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0036-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_36" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0036-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_36" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0036-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_36" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_37" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_37" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_37" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0038-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_38" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0038-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_38" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0038-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_38" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0039-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_39" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0039-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_39" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0039-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_39" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0040-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_40" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0040-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_40" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0040-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_40" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0041-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_41" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0041-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_41" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0041-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_41" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0042-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_42" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0042-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_42" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0042-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_42" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0043-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_43" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0043-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_43" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0043-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_43" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0044-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_44" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0044-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_44" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0044-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_44" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0045-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_45" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0045-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_45" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0045-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_45" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0046-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_46" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0046-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_46" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0046-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_46" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0047-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_47" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0047-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_47" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0047-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_47" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0048-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_48" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0048-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_48" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0048-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_48" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0049-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_49" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0049-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_49" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0049-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_49" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0050-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_50" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0050-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_50" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0050-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_50" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0051-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_51" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0051-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_51" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-0051-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_51" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0016-0000-FFFF-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0000-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0000-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0000-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0001-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_01" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0001-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_01" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0001-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_01" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0002-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_02" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0002-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_02" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0002-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_02" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0003-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_03" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0003-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_03" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0003-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_03" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0004-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_04" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0004-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_04" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0004-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_04" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0005-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_05" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0005-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_05" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0005-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_05" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0006-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_06" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0006-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_06" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0006-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_06" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0007-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_07" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0007-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_07" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0007-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_07" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0008-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_08" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0008-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_08" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0008-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_08" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0009-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_09" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0009-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_09" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0009-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_09" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0010-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_10" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0010-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_10" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0010-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_10" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0011-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_11" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0011-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_11" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0011-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_11" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0012-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_12" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0012-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_12" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0012-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_12" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0013-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_13" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0013-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_13" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0013-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_13" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0014-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_14" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0014-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_14" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0014-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_14" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0015-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_15" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0015-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_15" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0015-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_15" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0016-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_16" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0016-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_16" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0016-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_16" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0017-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_17" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0017-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_17" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0017-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_17" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0018-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_18" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0018-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_18" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0018-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_18" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0019-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_19" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0019-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_19" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0019-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_19" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0020-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_20" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0020-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_20" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0020-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_20" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0021-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_21" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0021-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_21" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0021-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_21" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0022-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_22" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0022-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_22" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0022-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_22" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0023-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_23" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0023-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_23" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0023-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_23" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0024-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_24" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0024-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_24" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0024-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_24" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0025-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_25" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0025-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_25" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-0025-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_25" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{CAFEEFAC-0017-0000-FFFF-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0" . [HKEY_USERS\S-1-5-21-1973630636-454344286-3617988606-1003_Classes\CLSID\{E19F9331-3110-11D4-991C-005004D3B3DB}] @DACL=(02 0000) @="Java Plug-in 1.3.0_02" . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . ------------------------ Weitere laufende Prozesse ------------------------ . c:\windows\RtkAudioService.exe c:\program files\AVAST Software\Avast\AvastSvc.exe c:\windows\system32\WLANExt.exe c:\program files\Intel\WiFi\bin\EvtEng.exe c:\program files\Common Files\InterVideo\RegMgr\iviRegMgr.exe c:\program files\Sony\Network Utility\NSUService.exe c:\program files\PDF Architect\HelperService.exe c:\program files\PDF Architect\ConversionService.exe c:\program files\Common Files\Intel\WirelessCommon\RegSrvc.exe c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe c:\program files\Sony\VAIO Event Service\VESMgr.exe c:\program files\Sony\VAIO Power Management\SPMService.exe c:\windows\system32\DllHost.exe c:\program files\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe c:\program files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe c:\program files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe c:\windows\system32\WUDFHost.exe c:\windows\system32\DRIVERS\xaudio.exe c:\program files\Sony\VAIO Event Service\VESMgrSub.exe c:\windows\system32\DllHost.exe c:\program files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe c:\program files\Sony\VAIO Power Management\SPMgr.exe c:\windows\system32\igfxext.exe c:\windows\system32\igfxsrvc.exe c:\windows\system32\igfxsrvc.exe c:\program files\Windows Media Player\wmpnscfg.exe c:\program files\Windows Media Player\wmpnetwk.exe c:\windows\ehome\ehmsas.exe c:\windows\servicing\TrustedInstaller.exe . ************************************************************************** . Zeit der Fertigstellung: 2014-01-10 18:26:31 - PC wurde neu gestartet ComboFix-quarantined-files.txt 2014-01-10 17:26 . Vor Suchlauf: 11 Verzeichnis(se), 157.496.061.952 Bytes frei Nach Suchlauf: 13 Verzeichnis(se), 157.691.924.480 Bytes frei . - - End Of File - - 3E504CFE0B675220811D78A2104F9B9D 5C616939100B85E558DA92B899A0FC36 |
10.01.2014, 18:39 | #7 |
| Bedrohung: Win32: Agent-ASOG (Trj) 4. Schritt erledigt FRST Ergebnis: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 10-01-2014 Ran by Nadine (administrator) on NADINE-PC on 10-01-2014 18:36:11 Running from C:\Users\Nadine\Desktop\Desktop Microsoft® Windows Vista™ Home Premium Service Pack 1 (X86) OS Language: German Standard Internet Explorer Version 8 Boot Mode: Normal ==================== Processes (Whitelisted) =================== (Microsoft Corporation) C:\Windows\System32\SLsvc.exe (Realtek Semiconductor) C:\Windows\RTKAUDIOSERVICE.EXE (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (ABBYY) C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (InterVideo) C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe (Sony Corporation) C:\Program Files\Sony\Network Utility\NSUService.exe (pdfforge GmbH) C:\Program Files\PDF Architect\HelperService.exe (pdfforge GmbH) C:\Program Files\PDF Architect\ConversionService.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Skype Technologies S.A.) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe (Sony Corporation) C:\Program Files\Sony\VAIO Event Service\VESMgr.exe (Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMService.exe (Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe (Sony Corporation) C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe (Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe (Conexant Systems, Inc.) C:\Windows\System32\drivers\XAudio.exe (Sony Corporation) C:\Program Files\Sony\VAIO Event Service\VESMgrSub.exe (Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe (Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMgr.exe (Intel Corporation) C:\Windows\System32\igfxext.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Synaptics, Inc.) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (ScanSoft, Inc.) C:\Program Files\ScanSoft\OmniPageSE4.0\OpWareSE4.exe (SEIKO EPSON CORPORATION) C:\Program Files\Epson Software\Event Manager\EEventManager.exe (Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Sony Corporation) C:\Program Files\Sony\Network Utility\LANUtil.exe (Microsoft Corporation) C:\Windows\ehome\ehtray.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Spotify Ltd) C:\Users\Nadine\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe (Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe (McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.130\SSScheduler.exe (Microsoft Corporation) C:\Windows\ehome\ehmsas.exe (Microsoft Corporation) C:\Windows\System32\wuauclt.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RtHDVCpl] - C:\Windows\RtHDVCpl.exe [6295552 2008-07-03] (Realtek Semiconductor) HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [835584 2007-03-10] (Synaptics, Inc.) HKLM\...\Run: [SSBkgdUpdate] - C:\Program Files\Common Files\ScanSoft Shared\SSBkgdUpdate\SSBkgdUpdate.exe [185896 2006-09-28] (Nuance Communications, Inc.) HKLM\...\Run: [OpwareSE4] - C:\Program Files\ScanSoft\OmniPageSE4.0\OpWareSE4.exe [75304 2006-10-11] (ScanSoft, Inc.) HKLM\...\Run: [EEventManager] - C:\Program Files\Epson Software\Event Manager\EEventManager.exe [979328 2010-10-12] (SEIKO EPSON CORPORATION) HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation) HKLM\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3764024 2014-01-01] (AVAST Software) Winlogon\Notify\VESWinlogon: C:\Windows\system32\VESWinlogon.dll (Sony Corporation) HKCU\...\Run: [NSUFloatingUI] - C:\Program Files\Sony\Network Utility\LANUtil.exe [262144 2008-06-27] (Sony Corporation) HKCU\...\Run: [ehTray.exe] - C:\Windows\ehome\ehtray.exe [125952 2008-01-21] (Microsoft Corporation) HKCU\...\Run: [Spotify Web Helper] - C:\Users\Nadine\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1199576 2012-11-18] (Spotify Ltd) HKCU\...\Run: [Skype] - C:\Program Files\Skype\Phone\Skype.exe [19875944 2013-06-21] (Skype Technologies S.A.) HKCU\...0c966feabec1\InprocServer32: [Default-shell32] ATTENTION! ====> ZeroAccess? HKU\Default\...\Run: [WindowsWelcomeCenter] - C:\Windows\System32\oobefldr.dll [ 2008-01-21] (Microsoft Corporation) HKU\Default\...\Run: [NSUFloatingUI] - C:\Program Files\Sony\Network Utility\LANUtil.exe [ 2008-06-27] (Sony Corporation) HKU\Default User\...\Run: [WindowsWelcomeCenter] - C:\Windows\System32\oobefldr.dll [ 2008-01-21] (Microsoft Corporation) HKU\Default User\...\Run: [NSUFloatingUI] - C:\Program Files\Sony\Network Utility\LANUtil.exe [ 2008-06-27] (Sony Corporation) HKU\Gast\...\Run: [WindowsWelcomeCenter] - C:\Windows\System32\oobefldr.dll [ 2008-01-21] (Microsoft Corporation) HKU\Gast\...\Run: [NSUFloatingUI] - C:\Program Files\Sony\Network Utility\LANUtil.exe [ 2008-06-27] (Sony Corporation) HKU\Gast\...\Run: [IncrediMail] - C:\Program Files\IncrediMail\bin\IncMail.exe /c ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Sign In HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Google HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.sonystyle-europe.com hxxp://www.club-vaio.com/vbc/ebay/index.html hxxp://www.club-vaio.com/vbc HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MyHeritage.com Search SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKLM - {6C46687A-47DF-4C56-9E42-77258AB738EB} URL = hxxp://www.google.de/search?hl=de&q={searchTerms}&meta= SearchScopes: HKLM - {BE28C22E-F666-424d-B5FD-125C4AFEE34E} URL = hxxp://search.myheritage.com?orig=ds&q={searchTerms} SearchScopes: HKCU - {15119C12-F1E1-4712-9193-57C632C566DE} URL = hxxp://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&type=867034&p={searchTerms} SearchScopes: HKCU - {6C46687A-47DF-4C56-9E42-77258AB738EB} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=vc_trans_8140&type=horus SearchScopes: HKCU - {BE28C22E-F666-424d-B5FD-125C4AFEE34E} URL = hxxp://search.myheritage.com?orig=ds&q={searchTerms} BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.130\McAfeeMSS_IE.dll (McAfee, Inc.) BHO: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files\PDF Architect\PDFIEHelper.dll (pdfforge GmbH) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0006-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_06-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\..\Interfaces\{2CC1B3E3-83A7-454A-8049-BB7767A4A0A2}: [NameServer]192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default FF Homepage: https://www.google.de/ FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_11_9_900_170.dll () FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin: @google.com/npPicasa3,version=3.0.0 - C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.) FF Plugin: @java.com/DTPlugin,version=10.25.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @mcafee.com/McAfeeMssPlugin - C:\Program Files\McAfee Security Scan\3.8.130\npMcAfeeMss.dll (McAfee, Inc.) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/WPF,version=3.5 - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @videolan.org/vlc,version=2.0.3 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin HKCU: @citrixonline.com/appdetectorplugin - C:\Users\Nadine\AppData\Local\Citrix\Plugins\104\npappdetector.dll (Citrix Online) FF SearchPlugin: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\englische-ergebnisse.xml FF SearchPlugin: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\gmx-suche.xml FF SearchPlugin: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\lastminute.xml FF SearchPlugin: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\searchplugins-backup FF SearchPlugin: C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\searchplugins\webde-suche.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: ProxTube - Unblock YouTube - C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\Extensions\ich@maltegoetz.de FF Extension: No Name - C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\Extensions\trash FF Extension: YouTube to MP3 - C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\Extensions\youtube2mp3@mondayx.de.xpi FF Extension: DVDVideoSoft YouTube MP3 and Video Download - C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\Extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}.xpi FF Extension: Easy YouTube Video Downloader - C:\Users\Nadine\AppData\Roaming\Mozilla\Firefox\Profiles\8ktq3vh9.default\Extensions\{c0c9a2c7-2e5c-4447-bc53-97718bc91e1b}.xpi FF Extension: No Name - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF FF HKLM\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files\PDF Architect\FFPDFArchitectExt FF Extension: PDF Architect Converter For Firefox - C:\Program Files\PDF Architect\FFPDFArchitectExt ========================== Services (Whitelisted) ================= R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-01-01] (AVAST Software) S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.130\McCHSvc.exe [235216 2013-09-06] (McAfee, Inc.) R2 NSUService; C:\Program Files\Sony\Network Utility\NSUService.exe [299008 2008-06-27] (Sony Corporation) R2 PDF Architect Helper Service; C:\Program Files\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH) R2 PDF Architect Service; C:\Program Files\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH) R2 Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [3064000 2012-10-02] (Skype Technologies S.A.) S3 SOHCImp; C:\Program Files\Sony\VAIO Media plus\SOHCImp.exe [103712 2008-05-20] (Sony Corporation) S3 SOHDms; C:\Program Files\Sony\VAIO Media plus\SOHDms.exe [353568 2008-05-20] (Sony Corporation) S3 SOHDs; C:\Program Files\Sony\VAIO Media plus\SOHDs.exe [62752 2008-05-20] (Sony Corporation) S3 SPTISRV; C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe [77824 2008-05-20] (Sony Corporation) S3 VAIO Entertainment TV Device Arbitration Service; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzHardwareResourceManager\VzHardwareResourceManager\VzHardwareResourceManager.exe [73728 2008-05-22] (Sony Corporation) R2 VAIO Event Service; C:\Program Files\Sony\VAIO Event Service\VESMgr.exe [182112 2008-07-07] (Sony Corporation) R2 VAIO Power Management; C:\Program Files\Sony\VAIO Power Management\SPMService.exe [411488 2008-06-19] (Sony Corporation) R2 VcmIAlzMgr; C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe [337184 2008-06-11] (Sony Corporation) R3 Vcsw; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe [279848 2008-06-19] (Sony Corporation) R2 VzCdbSvc; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe [192512 2008-05-22] (Sony Corporation) ==================== Drivers (Whitelisted) ==================== R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [67824 2014-01-01] (AVAST Software) R1 AswRdr; C:\Windows\system32\drivers\aswRdr.sys [54832 2014-01-01] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [49944 2013-11-26] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [775952 2014-01-01] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [410528 2014-01-01] (AVAST Software) R1 aswTdi; C:\Windows\system32\drivers\aswTdi.sys [57672 2014-01-01] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [180248 2014-01-01] () R0 sfsync04; C:\Windows\System32\drivers\sfsync04.sys [59520 2009-02-03] (Protection Technology (StarForce)) R0 sfvfs02; C:\Windows\System32\drivers\sfvfs02.sys [83320 2007-02-08] (Protection Technology (StarForce)) R0 sptd; C:\Windows\System32\Drivers\sptd.sys [691696 2010-01-31] () S1 airpfklm; \??\C:\Windows\system32\drivers\airpfklm.sys [x] U5 AppMgmt; C:\Windows\system32\svchost.exe [21504 2008-01-21] (Microsoft Corporation) S1 bbadijat; \??\C:\Windows\system32\drivers\bbadijat.sys [x] S1 bjgzovuk; \??\C:\Windows\system32\drivers\bjgzovuk.sys [x] S1 bldaapyt; \??\C:\Windows\system32\drivers\bldaapyt.sys [x] R3 catchme; \??\C:\ComboFix\catchme.sys [x] S1 dkhvctyw; \??\C:\Windows\system32\drivers\dkhvctyw.sys [x] S1 ejkmdayn; \??\C:\Windows\system32\drivers\ejkmdayn.sys [x] S1 fdosnttj; \??\C:\Windows\system32\drivers\fdosnttj.sys [x] S1 fsqryeva; \??\C:\Windows\system32\drivers\fsqryeva.sys [x] S1 gnrluouq; \??\C:\Windows\system32\drivers\gnrluouq.sys [x] S1 gucdsxqo; \??\C:\Windows\system32\drivers\gucdsxqo.sys [x] S3 IpInIp; system32\DRIVERS\ipinip.sys [x] S1 jjuzrhyu; \??\C:\Windows\system32\drivers\jjuzrhyu.sys [x] S1 jsuxcsaz; \??\C:\Windows\system32\drivers\jsuxcsaz.sys [x] S1 kauuwatg; \??\C:\Windows\system32\drivers\kauuwatg.sys [x] S1 kxworbnk; \??\C:\Windows\system32\drivers\kxworbnk.sys [x] S1 laqgvked; \??\C:\Windows\system32\drivers\laqgvked.sys [x] S1 lknltmmv; \??\C:\Windows\system32\drivers\lknltmmv.sys [x] S1 lkxvdqvs; \??\C:\Windows\system32\drivers\lkxvdqvs.sys [x] S3 MEMSWEEP2; \??\C:\Windows\system32\62B8.tmp [x] S1 mgbyworo; \??\C:\Windows\system32\drivers\mgbyworo.sys [x] S1 mvhblggs; \??\C:\Windows\system32\drivers\mvhblggs.sys [x] S1 nlfgyvgn; \??\C:\Windows\system32\drivers\nlfgyvgn.sys [x] S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [x] S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [x] S1 olvixvbb; \??\C:\Windows\system32\drivers\olvixvbb.sys [x] S1 oqnqxugg; \??\C:\Windows\system32\drivers\oqnqxugg.sys [x] S1 oxiurzhy; \??\C:\Windows\system32\drivers\oxiurzhy.sys [x] S1 ozicsyis; \??\C:\Windows\system32\drivers\ozicsyis.sys [x] S1 pwwxtged; \??\C:\Windows\system32\drivers\pwwxtged.sys [x] S1 qlzjomwy; \??\C:\Windows\system32\drivers\qlzjomwy.sys [x] S1 qpenglmw; \??\C:\Windows\system32\drivers\qpenglmw.sys [x] S1 qxlvepar; \??\C:\Windows\system32\drivers\qxlvepar.sys [x] S1 rurrejhe; \??\C:\Windows\system32\drivers\rurrejhe.sys [x] S1 tgaqtlqi; \??\C:\Windows\system32\drivers\tgaqtlqi.sys [x] S4 UIUSys; system32\DRIVERS\UIUSYS.SYS [x] S1 ujgsgjjo; \??\C:\Windows\system32\drivers\ujgsgjjo.sys [x] S1 xuopuawm; \??\C:\Windows\system32\drivers\xuopuawm.sys [x] S1 xydfwqbx; \??\C:\Windows\system32\drivers\xydfwqbx.sys [x] S1 xyqlevjg; \??\C:\Windows\system32\drivers\xyqlevjg.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-01-10 18:26 - 2014-01-10 18:26 - 00104109 _____ C:\ComboFix.txt 2014-01-10 18:20 - 2014-01-10 18:35 - 00050492 _____ C:\Windows\WindowsUpdate.log 2014-01-10 17:53 - 2011-06-26 07:45 - 00256000 _____ C:\Windows\PEV.exe 2014-01-10 17:53 - 2010-11-07 18:20 - 00208896 _____ C:\Windows\MBR.exe 2014-01-10 17:53 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2014-01-10 17:53 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2014-01-10 17:53 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2014-01-10 17:53 - 2000-08-31 01:00 - 00098816 _____ C:\Windows\sed.exe 2014-01-10 17:53 - 2000-08-31 01:00 - 00080412 _____ C:\Windows\grep.exe 2014-01-10 17:53 - 2000-08-31 01:00 - 00068096 _____ C:\Windows\zip.exe 2014-01-10 17:50 - 2014-01-10 18:26 - 00000000 ____D C:\Qoobox 2014-01-10 17:49 - 2014-01-10 18:23 - 00000000 ____D C:\Windows\erdnt 2014-01-10 17:29 - 2014-01-10 17:32 - 00000000 ____D C:\AdwCleaner 2014-01-10 16:45 - 2014-01-10 16:45 - 00000000 ____D C:\FRST 2014-01-10 16:39 - 2014-01-10 16:39 - 00000000 ____D C:\Users\Nadine\Documents\My Received Files 2014-01-10 16:39 - 2014-01-10 16:39 - 00000000 ____D C:\Users\Nadine\AppData\Roaming\MusicNet 2014-01-09 16:07 - 2014-01-09 18:32 - 00026042 _____ C:\Users\Nadine\Documents\deutsch faust 2.odt 2014-01-08 15:43 - 2014-01-08 15:43 - 00018663 _____ C:\Users\Nadine\Documents\literatur tagesablauf.odt 2014-01-08 14:37 - 2014-01-09 15:40 - 00019816 _____ C:\Users\Nadine\Documents\frani dialog doktor.odt 2014-01-06 19:01 - 2014-01-08 12:18 - 00016713 _____ C:\Users\Nadine\Documents\goethe faust.odt 2014-01-05 15:31 - 2014-01-05 15:31 - 00006473 _____ C:\Users\Nadine\AppData\Local\recently-used.xbel 2014-01-04 21:41 - 2014-01-05 13:22 - 00031461 _____ C:\Users\Nadine\Documents\literatur schäfchen.odt 2014-01-04 12:37 - 2014-01-05 15:31 - 00000000 ____D C:\Users\Nadine\AppData\Local\gtk-2.0 2014-01-04 12:37 - 2014-01-04 12:38 - 00000000 ____D C:\Users\Nadine\.thumbnails 2014-01-04 12:26 - 2014-01-05 16:14 - 00000000 ____D C:\Users\Nadine\.gimp-2.8 2014-01-04 12:26 - 2014-01-04 12:26 - 00000000 ____D C:\Users\Nadine\AppData\Local\gegl-0.2 2014-01-04 12:08 - 2014-01-04 12:15 - 00000000 ____D C:\Program Files\GIMP 2 2014-01-03 17:53 - 2014-01-03 17:54 - 00000000 ____D C:\Users\Nadine\Desktop\poli 2014-01-03 17:34 - 2014-01-03 18:17 - 00000474 _____ C:\Users\Nadine\AppData\Roaming\Poladroid prefs.plist 2013-12-24 12:15 - 2014-01-07 18:40 - 00031307 _____ C:\Users\Nadine\Documents\literatur charakter.odt 2013-12-22 22:21 - 2014-01-07 18:12 - 00843085 _____ C:\Users\Nadine\Documents\literatur projekt.odt 2013-12-22 22:21 - 2013-12-22 22:21 - 00000000 ____D C:\Users\Nadine\AppData\Roaming\DigitalSites 2013-12-22 22:21 - 2013-12-22 22:21 - 00000000 ____D C:\Program Files\Image Converter 2013-12-20 13:26 - 2013-12-20 13:26 - 00000000 ____D C:\Program Files\Mozilla Firefox 2013-12-11 09:38 - 2013-12-11 09:38 - 00002033 _____ C:\Users\Public\Desktop\Google Earth.lnk ==================== One Month Modified Files and Folders ======= 2014-01-10 18:35 - 2014-01-10 18:20 - 00050492 _____ C:\Windows\WindowsUpdate.log 2014-01-10 18:26 - 2014-01-10 18:26 - 00104109 _____ C:\ComboFix.txt 2014-01-10 18:26 - 2014-01-10 17:50 - 00000000 ____D C:\Qoobox 2014-01-10 18:26 - 2006-11-02 12:18 - 00000000 __RHD C:\Users\Default 2014-01-10 18:26 - 2006-11-02 12:18 - 00000000 ___RD C:\Users\Public 2014-01-10 18:23 - 2014-01-10 17:49 - 00000000 ____D C:\Windows\erdnt 2014-01-10 18:18 - 2006-11-02 11:23 - 00000215 _____ C:\Windows\system.ini 2014-01-10 18:16 - 2006-11-02 13:47 - 00003616 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 2014-01-10 18:16 - 2006-11-02 13:47 - 00003616 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 2014-01-10 18:15 - 2013-08-13 20:32 - 00084094 _____ C:\Windows\PFRO.log 2014-01-10 17:32 - 2014-01-10 17:29 - 00000000 ____D C:\AdwCleaner 2014-01-10 17:31 - 2011-05-19 14:41 - 00000000 ____D C:\ProgramData\ICQ 2014-01-10 16:45 - 2014-01-10 16:45 - 00000000 ____D C:\FRST 2014-01-10 16:39 - 2014-01-10 16:39 - 00000000 ____D C:\Users\Nadine\Documents\My Received Files 2014-01-10 16:39 - 2014-01-10 16:39 - 00000000 ____D C:\Users\Nadine\AppData\Roaming\MusicNet 2014-01-09 18:32 - 2014-01-09 16:07 - 00026042 _____ C:\Users\Nadine\Documents\deutsch faust 2.odt 2014-01-09 15:40 - 2014-01-08 14:37 - 00019816 _____ C:\Users\Nadine\Documents\frani dialog doktor.odt 2014-01-08 15:43 - 2014-01-08 15:43 - 00018663 _____ C:\Users\Nadine\Documents\literatur tagesablauf.odt 2014-01-08 12:18 - 2014-01-06 19:01 - 00016713 _____ C:\Users\Nadine\Documents\goethe faust.odt 2014-01-07 19:09 - 2013-09-11 17:39 - 00019047 _____ C:\Users\Nadine\Documents\literatur.odt 2014-01-07 19:04 - 2013-04-21 16:40 - 00000000 ____D C:\Users\Nadine\Schule 2014-01-07 18:40 - 2013-12-24 12:15 - 00031307 _____ C:\Users\Nadine\Documents\literatur charakter.odt 2014-01-07 18:12 - 2013-12-22 22:21 - 00843085 _____ C:\Users\Nadine\Documents\literatur projekt.odt 2014-01-07 10:56 - 2013-02-19 11:39 - 00000000 ____D C:\Users\Nadine\Desktop\Dokumente 2014-01-05 16:14 - 2014-01-04 12:26 - 00000000 ____D C:\Users\Nadine\.gimp-2.8 2014-01-05 15:31 - 2014-01-05 15:31 - 00006473 _____ C:\Users\Nadine\AppData\Local\recently-used.xbel 2014-01-05 15:31 - 2014-01-04 12:37 - 00000000 ____D C:\Users\Nadine\AppData\Local\gtk-2.0 2014-01-05 13:22 - 2014-01-04 21:41 - 00031461 _____ C:\Users\Nadine\Documents\literatur schäfchen.odt 2014-01-05 12:52 - 2008-12-21 11:26 - 00000000 ____D C:\Users\Nadine\AppData\Roaming\Skype 2014-01-04 12:38 - 2014-01-04 12:37 - 00000000 ____D C:\Users\Nadine\.thumbnails 2014-01-04 12:37 - 2008-12-20 12:10 - 00000000 ____D C:\Users\Nadine 2014-01-04 12:26 - 2014-01-04 12:26 - 00000000 ____D C:\Users\Nadine\AppData\Local\gegl-0.2 2014-01-04 12:24 - 2010-08-12 10:02 - 00000000 ____D C:\Users\Nadine\Desktop\Werbung 2014-01-04 12:15 - 2014-01-04 12:08 - 00000000 ____D C:\Program Files\GIMP 2 2014-01-03 18:17 - 2014-01-03 17:34 - 00000474 _____ C:\Users\Nadine\AppData\Roaming\Poladroid prefs.plist 2014-01-03 17:54 - 2014-01-03 17:53 - 00000000 ____D C:\Users\Nadine\Desktop\poli 2014-01-03 17:34 - 2008-01-21 08:16 - 01578582 _____ C:\Windows\system32\PerfStringBackup.INI 2014-01-02 19:00 - 2013-11-26 11:35 - 00001430 _____ C:\Windows\setupact.log 2014-01-01 16:27 - 2013-02-28 15:42 - 00180248 _____ C:\Windows\system32\Drivers\aswVmm.sys 2014-01-01 16:27 - 2012-08-25 11:01 - 00000350 ____H C:\Windows\Tasks\avast! Emergency Update.job 2014-01-01 16:27 - 2012-07-17 09:23 - 00775952 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2014-01-01 16:27 - 2012-07-17 09:23 - 00410528 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2014-01-01 16:27 - 2012-07-17 09:23 - 00067824 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2014-01-01 16:27 - 2012-07-17 09:23 - 00057672 _____ (AVAST Software) C:\Windows\system32\Drivers\aswTdi.sys 2014-01-01 16:27 - 2012-07-17 09:23 - 00054832 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr.sys 2014-01-01 16:27 - 2012-07-17 09:23 - 00001833 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-01-01 16:27 - 2012-07-17 09:22 - 00270240 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2014-01-01 16:27 - 2012-07-17 09:22 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2013-12-29 14:10 - 2012-10-12 21:25 - 00000000 ____D C:\Users\Nadine\AppData\Roaming\vlc 2013-12-29 14:08 - 2013-06-19 15:57 - 00007680 _____ C:\Users\Nadine\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2013-12-22 22:21 - 2013-12-22 22:21 - 00000000 ____D C:\Users\Nadine\AppData\Roaming\DigitalSites 2013-12-22 22:21 - 2013-12-22 22:21 - 00000000 ____D C:\Program Files\Image Converter 2013-12-21 15:14 - 2012-10-12 21:23 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service 2013-12-20 13:26 - 2013-12-20 13:26 - 00000000 ____D C:\Program Files\Mozilla Firefox 2013-12-18 09:50 - 2008-12-20 12:10 - 00000000 ____D C:\Users\Nadine\AppData\Local\Adobe 2013-12-18 09:48 - 2012-10-12 21:18 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe 2013-12-18 09:48 - 2012-10-12 21:18 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-12-18 09:48 - 2011-06-17 08:29 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl 2013-12-11 09:38 - 2013-12-11 09:38 - 00002033 _____ C:\Users\Public\Desktop\Google Earth.lnk 2013-12-11 09:37 - 2008-07-10 10:28 - 00000000 ____D C:\Program Files\Google ZeroAccess: C:\Windows\Installer\{12c76357-0b32-76e1-0c72-9f963f64d128} C:\Windows\Installer\{12c76357-0b32-76e1-0c72-9f963f64d128}\@ ZeroAccess: C:\Users\Nadine\AppData\Local\{12c76357-0b32-76e1-0c72-9f963f64d128} C:\Users\Nadine\AppData\Local\{12c76357-0b32-76e1-0c72-9f963f64d128}\@ Files to move or delete: ==================== C:\Users\Nadine\AppData\Roaming\desktop.ini ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe => MD5 is legit C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll [2009-04-16 12:42] - [2009-03-03 05:39] - 0551424 ____A (Microsoft Corporation) 301AE00E12408650BADDC04DBC832830 C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-01-10 18:34 ==================== End Of Log ============================ |
10.01.2014, 19:24 | #8 |
/// TB-Ausbilder | Bedrohung: Win32: Agent-ASOG (Trj) Besteht das Problem jetzt immer noch? Schritt 1 Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter C:\Windows\Installer\{12c76357-0b32-76e1-0c72-9f963f64d128} C:\Users\Nadine\AppData\Local\{12c76357-0b32-76e1-0c72-9f963f64d128} C:\Users\Nadine\AppData\Roaming\desktop.ini 2013-12-22 22:21 - 2013-12-22 22:21 - 00000000 ____D C:\Users\Nadine\AppData\Roaming\DigitalSites S1 ujgsgjjo; \??\C:\Windows\system32\drivers\ujgsgjjo.sys [x] S1 xuopuawm; \??\C:\Windows\system32\drivers\xuopuawm.sys [x] S1 xydfwqbx; \??\C:\Windows\system32\drivers\xydfwqbx.sys [x] S1 xyqlevjg; \??\C:\Windows\system32\drivers\xyqlevjg.sys [x] S1 olvixvbb; \??\C:\Windows\system32\drivers\olvixvbb.sys [x] S1 oqnqxugg; \??\C:\Windows\system32\drivers\oqnqxugg.sys [x] S1 oxiurzhy; \??\C:\Windows\system32\drivers\oxiurzhy.sys [x] S1 ozicsyis; \??\C:\Windows\system32\drivers\ozicsyis.sys [x] S1 pwwxtged; \??\C:\Windows\system32\drivers\pwwxtged.sys [x] S1 qlzjomwy; \??\C:\Windows\system32\drivers\qlzjomwy.sys [x] S1 qpenglmw; \??\C:\Windows\system32\drivers\qpenglmw.sys [x] S1 qxlvepar; \??\C:\Windows\system32\drivers\qxlvepar.sys [x] S1 bbadijat; \??\C:\Windows\system32\drivers\bbadijat.sys [x] S1 bjgzovuk; \??\C:\Windows\system32\drivers\bjgzovuk.sys [x] S1 bldaapyt; \??\C:\Windows\system32\drivers\bldaapyt.sys [x] SearchScopes: HKLM - {BE28C22E-F666-424d-B5FD-125C4AFEE34E} URL = hxxp://search.myheritage.com?orig=ds&q={searchTerms} SearchScopes: HKCU - {BE28C22E-F666-424d-B5FD-125C4AFEE34E} URL = hxxp://search.myheritage.com?orig=ds&q={searchTerms} HKCU\...0c966feabec1\InprocServer32: [Default-shell32] ATTENTION! ====> ZeroAccess? S1 jjuzrhyu; \??\C:\Windows\system32\drivers\jjuzrhyu.sys [x] S1 dkhvctyw; \??\C:\Windows\system32\drivers\dkhvctyw.sys [x] S1 ejkmdayn; \??\C:\Windows\system32\drivers\ejkmdayn.sys [x] S1 fdosnttj; \??\C:\Windows\system32\drivers\fdosnttj.sys [x] S1 airpfklm; \??\C:\Windows\system32\drivers\airpfklm.sys [x] S1 fsqryeva; \??\C:\Windows\system32\drivers\fsqryeva.sys [x] S1 gnrluouq; \??\C:\Windows\system32\drivers\gnrluouq.sys [x] S1 gucdsxqo; \??\C:\Windows\system32\drivers\gucdsxqo.sys [x] S1 jsuxcsaz; \??\C:\Windows\system32\drivers\jsuxcsaz.sys [x] S1 kauuwatg; \??\C:\Windows\system32\drivers\kauuwatg.sys [x] S1 kxworbnk; \??\C:\Windows\system32\drivers\kxworbnk.sys [x] S1 laqgvked; \??\C:\Windows\system32\drivers\laqgvked.sys [x] S1 lknltmmv; \??\C:\Windows\system32\drivers\lknltmmv.sys [x] S1 lkxvdqvs; \??\C:\Windows\system32\drivers\lkxvdqvs.sys [x] S3 MEMSWEEP2; \??\C:\Windows\system32\62B8.tmp [x] S1 mgbyworo; \??\C:\Windows\system32\drivers\mgbyworo.sys [x] S1 mvhblggs; \??\C:\Windows\system32\drivers\mvhblggs.sys [x] S1 nlfgyvgn; \??\C:\Windows\system32\drivers\nlfgyvgn.sys [x] S1 rurrejhe; \??\C:\Windows\system32\drivers\rurrejhe.sys [x] S1 tgaqtlqi; \??\C:\Windows\system32\drivers\tgaqtlqi.sys [x] Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Schritt 2 Downloade Dir bitte Malwarebytes Anti-Malware
Schritt 3 ESET Online Scanner
Schritt 4 Starte noch einmal FRST.
Bitte poste in deiner nächsten Antwort:
__________________ cheers, Leo |
10.01.2014, 20:17 | #9 |
| Bedrohung: Win32: Agent-ASOG (Trj) Meinst du die ständige Meldung von Avast? Nein, nix mehr UND: meine Firewall ist endlich aktiviert. Ich hatte so ein ähnliches Problem schon mal, und hatte nie Einfluss auf meine Firewall, sie war deaktiviert und wenn ich sie aktivieren wollte, erschien eine Meldung, die mir sagte, ich sei nicht berechtigt. Aber jetzt ist die Firewall tatsächlich aktiviert Vielen Dank!!! |
10.01.2014, 20:32 | #10 |
/// TB-Ausbilder | Bedrohung: Win32: Agent-ASOG (Trj) Ok, dann mach noch die angegebenen Schritte und poste die Logs.
__________________ cheers, Leo |
10.01.2014, 21:17 | #11 |
| Bedrohung: Win32: Agent-ASOG (Trj) Schritt 1 erledigt: Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 10-01-2014 Ran by Nadine at 2014-01-10 20:39:11 Run:1 Running from C:\Users\Nadine\Desktop\Desktop Boot Mode: Normal ============================================== Content of fixlist: ***************** C:\Windows\Installer\{12c76357-0b32-76e1-0c72-9f963f64d128} C:\Users\Nadine\AppData\Local\{12c76357-0b32-76e1-0c72-9f963f64d128} C:\Users\Nadine\AppData\Roaming\desktop.ini 2013-12-22 22:21 - 2013-12-22 22:21 - 00000000 ____D C:\Users\Nadine\AppData\Roaming\DigitalSites S1 ujgsgjjo; \??\C:\Windows\system32\drivers\ujgsgjjo.sys [x] S1 xuopuawm; \??\C:\Windows\system32\drivers\xuopuawm.sys [x] S1 xydfwqbx; \??\C:\Windows\system32\drivers\xydfwqbx.sys [x] S1 xyqlevjg; \??\C:\Windows\system32\drivers\xyqlevjg.sys [x] S1 olvixvbb; \??\C:\Windows\system32\drivers\olvixvbb.sys [x] S1 oqnqxugg; \??\C:\Windows\system32\drivers\oqnqxugg.sys [x] S1 oxiurzhy; \??\C:\Windows\system32\drivers\oxiurzhy.sys [x] S1 ozicsyis; \??\C:\Windows\system32\drivers\ozicsyis.sys [x] S1 pwwxtged; \??\C:\Windows\system32\drivers\pwwxtged.sys [x] S1 qlzjomwy; \??\C:\Windows\system32\drivers\qlzjomwy.sys [x] S1 qpenglmw; \??\C:\Windows\system32\drivers\qpenglmw.sys [x] S1 qxlvepar; \??\C:\Windows\system32\drivers\qxlvepar.sys [x] S1 bbadijat; \??\C:\Windows\system32\drivers\bbadijat.sys [x] S1 bjgzovuk; \??\C:\Windows\system32\drivers\bjgzovuk.sys [x] S1 bldaapyt; \??\C:\Windows\system32\drivers\bldaapyt.sys [x] SearchScopes: HKLM - {BE28C22E-F666-424d-B5FD-125C4AFEE34E} URL = hxxp://search.myheritage.com?orig=ds&q={searchTerms} SearchScopes: HKCU - {BE28C22E-F666-424d-B5FD-125C4AFEE34E} URL = hxxp://search.myheritage.com?orig=ds&q={searchTerms} HKCU\...0c966feabec1\InprocServer32: [Default-shell32] ATTENTION! ====> ZeroAccess? S1 jjuzrhyu; \??\C:\Windows\system32\drivers\jjuzrhyu.sys [x] S1 dkhvctyw; \??\C:\Windows\system32\drivers\dkhvctyw.sys [x] S1 ejkmdayn; \??\C:\Windows\system32\drivers\ejkmdayn.sys [x] S1 fdosnttj; \??\C:\Windows\system32\drivers\fdosnttj.sys [x] S1 airpfklm; \??\C:\Windows\system32\drivers\airpfklm.sys [x] S1 fsqryeva; \??\C:\Windows\system32\drivers\fsqryeva.sys [x] S1 gnrluouq; \??\C:\Windows\system32\drivers\gnrluouq.sys [x] S1 gucdsxqo; \??\C:\Windows\system32\drivers\gucdsxqo.sys [x] S1 jsuxcsaz; \??\C:\Windows\system32\drivers\jsuxcsaz.sys [x] S1 kauuwatg; \??\C:\Windows\system32\drivers\kauuwatg.sys [x] S1 kxworbnk; \??\C:\Windows\system32\drivers\kxworbnk.sys [x] S1 laqgvked; \??\C:\Windows\system32\drivers\laqgvked.sys [x] S1 lknltmmv; \??\C:\Windows\system32\drivers\lknltmmv.sys [x] S1 lkxvdqvs; \??\C:\Windows\system32\drivers\lkxvdqvs.sys [x] S3 MEMSWEEP2; \??\C:\Windows\system32\62B8.tmp [x] S1 mgbyworo; \??\C:\Windows\system32\drivers\mgbyworo.sys [x] S1 mvhblggs; \??\C:\Windows\system32\drivers\mvhblggs.sys [x] S1 nlfgyvgn; \??\C:\Windows\system32\drivers\nlfgyvgn.sys [x] S1 rurrejhe; \??\C:\Windows\system32\drivers\rurrejhe.sys [x] S1 tgaqtlqi; \??\C:\Windows\system32\drivers\tgaqtlqi.sys [x] ***************** C:\Windows\Installer\{12c76357-0b32-76e1-0c72-9f963f64d128} => Moved successfully. C:\Users\Nadine\AppData\Local\{12c76357-0b32-76e1-0c72-9f963f64d128} => Moved successfully. C:\Users\Nadine\AppData\Roaming\desktop.ini => Moved successfully. C:\Users\Nadine\AppData\Roaming\DigitalSites => Moved successfully. ujgsgjjo => Service deleted successfully. xuopuawm => Service deleted successfully. xydfwqbx => Service deleted successfully. xyqlevjg => Service deleted successfully. olvixvbb => Service deleted successfully. oqnqxugg => Service deleted successfully. oxiurzhy => Service deleted successfully. ozicsyis => Service deleted successfully. pwwxtged => Service deleted successfully. qlzjomwy => Service deleted successfully. qpenglmw => Service deleted successfully. qxlvepar => Service deleted successfully. bbadijat => Service deleted successfully. bjgzovuk => Service deleted successfully. bldaapyt => Service deleted successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BE28C22E-F666-424d-B5FD-125C4AFEE34E} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{BE28C22E-F666-424d-B5FD-125C4AFEE34E} => Key not found. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BE28C22E-F666-424d-B5FD-125C4AFEE34E} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{BE28C22E-F666-424d-B5FD-125C4AFEE34E} => Key not found. HKCU\Software\Classes\CLSID\{42aedc87-2188-41fd-b9a3-0c966feabec1} => Key deleted successfully. jjuzrhyu => Service deleted successfully. dkhvctyw => Service deleted successfully. ejkmdayn => Service deleted successfully. fdosnttj => Service deleted successfully. airpfklm => Service deleted successfully. fsqryeva => Service deleted successfully. gnrluouq => Service deleted successfully. gucdsxqo => Service deleted successfully. jsuxcsaz => Service deleted successfully. kauuwatg => Service deleted successfully. kxworbnk => Service deleted successfully. laqgvked => Service deleted successfully. lknltmmv => Service deleted successfully. lkxvdqvs => Service deleted successfully. MEMSWEEP2 => Service deleted successfully. mgbyworo => Service deleted successfully. mvhblggs => Service deleted successfully. nlfgyvgn => Service deleted successfully. rurrejhe => Service deleted successfully. tgaqtlqi => Service deleted successfully. ==== End of Fixlog ==== Schritt 2 Malewarebytes... Ergebnis: Malwarebytes Anti-Malware 1.75.0.1300 Malwarebytes : Free Anti-Malware Datenbank Version: v2014.01.10.06 Windows Vista Service Pack 1 x86 NTFS Internet Explorer 8.0.6001.19088 Nadine :: NADINE-PC [Administrator] 10.01.2014 20:50:24 mbam-log-2014-01-10 (20-50-24).txt Art des Suchlaufs: Quick-Scan Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 239650 Laufzeit: 16 Minute(n), 22 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 3 C:\Users\Nadine\Downloads\SoftonicDownloader_fuer_ck-gruss-und-einladungskarten-designer.exe (PUP.Optional.Softonic.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Nadine\Downloads\TubeBox_Setup361.exe (PUP.Optional.OpenCandy) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Nadine\Downloads\kittensblackwhite.exe (PUP.Optional.InstallIQ.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. (Ende) |
13.01.2014, 19:53 | #12 |
/// TB-Ausbilder | Bedrohung: Win32: Agent-ASOG (Trj) Ok, ich warte noch auf Schritte 3 und 4.
__________________ cheers, Leo |
Themen zu Bedrohung: Win32: Agent-ASOG (Trj) |
ahnung, avast, bedrohung, beste, besten, compu, durchgeführt, einfach, erklären, gefunde, heulen, heute, keine ahnung, melde, problem, scan, trojaner, virenscan, vista, website, win, win32, windows, windows vista |