|
Log-Analyse und Auswertung: Lollipop Network, S.L.Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
26.01.2014, 13:40 | #1 |
| Lollipop Network, S.L. Guten Tag Ich habe gestern unter Systemsteuerung - Programme und Funktionen "Lollipop" gefunden und konnte es nicht deinstallieren. Nachdem ich im Internet danach gesucht hatte, bin ich zu einem Beitrag hier im Forum gestoßen, welcher mein Problem beinhaltete.(http://www.trojaner-board.de/146116-...entfernen.html) Ich habe mir die Antworten durchgelesen und überlegt ob ich das gleiche mache (FRST holen und den PC scannen), aber ich will nicht gleich überstürzen und erstmal auf Antworten von Fachkräften warten. Ich hoffe mir kann jemand weiterhelfen. Ich würde mich über eine Antwort und einen Tipp freuen. Soll ich das Programm holen und die 2 Dateien hochladen ? Viele Grüße P.s.: Natürlich beschreibe ich auf Rückfragen hin auch das Problem genauer. Geändert von Slaiggmeron (26.01.2014 um 14:07 Uhr) |
26.01.2014, 17:00 | #2 |
/// the machine /// TB-Ausbilder | Lollipop Network, S.L. hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
03.02.2014, 20:08 | #3 |
| Lollipop Network, S.L. Hallo schrauber
__________________danke dass du dich mit meinem Thema befasst. Ich habe wie geraten das Programm geholt und den Scan ausgeführt. Die Datei FRST habe ich, aber bei Addition steht da : "Aufgrund eines unerwarteten Fehlers kann die Datei nicht kopiert werden." Bitte um Ratschläge ... FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 01-02-2014 04 Ran by Simon (administrator) on SIMON-PC on 03-02-2014 19:54:08 Running from C:\Users\Simon\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Cherished Technololgy LIMITED) C:\ProgramData\IePluginService\PluginService.exe (Cherished Technololgy LIMITED) C:\ProgramData\WPM\wprotectmanager.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe (devolo AG) C:\Program Files (x86)\devolo\dlan\devolonetsvc.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe () C:\ProgramData\InternetUpdater\InternetUpdaterService.exe (Protexis Inc.) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe () C:\Program Files (x86)\watchmi\TvdService.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Blabbers Communications Ltd) C:\ProgramData\GinyasBrowserCompanion\tbhcn.exe () C:\Program Files (x86)\HomeTab\SystemSockets.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Alcor Micro Corp.) C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe (Updater) C:\ProgramData\Updater\updater.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.130\SSScheduler.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Apple Computer, Inc.) C:\Program Files (x86)\QuickTime\qttask.exe (Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe () C:\Program Files (x86)\watchmi\TvdTray.exe (OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe () C:\Users\Simon\AppData\Roaming\BrowserCompanion\tbhcn.exe (OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (WatchDog) C:\ProgramData\RHelpers\ChromeHelper\ChromeHelper.exe (WatchDog) C:\ProgramData\RHelpers\FirefoxHelper\FirefoxHelper.exe (WatchDog) C:\ProgramData\RHelpers\IeHelper\IeHelper.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe () C:\Program Files (x86)\Brick-Force\BrickForce.exe (Wiselogic Co., Ltd.) C:\Program Files (x86)\Brick-Force\XTrap\XTrap.xt (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\ipmgui.exe (Blabbers Communications Ltd) C:\ProgramData\GinyasBrowserCompanions\tbhcns.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2028328 2010-01-22] (Synaptics Incorporated) HKLM\...\Run: [SmartAudio] - C:\Program Files\CONEXANT\SAII\SAIICpl.exe [316032 2010-12-14] (Conexant systems, Inc.) HKLM\...\Run: [IntelPAN] - C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [1935120 2011-05-02] (Intel(R) Corporation) HKLM\...\Run: [AmIcoSinglun64] - C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [323584 2009-09-22] (Alcor Micro Corp.) HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [684600 2013-12-12] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [QuickTime Task] - C:\Program Files (x86)\QuickTime\qttask.exe [98304 2012-12-24] (Apple Computer, Inc.) HKLM-x32\...\Run: [NUSB3MON] - C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2011-04-14] (Renesas Electronics Corporation) HKLM-x32\...\Run: [Easy-PrintToolBox] - C:\Program Files (x86)\Canon\Easy-PrintToolBox\BJPSMAIN.EXE [409600 2004-01-14] (CANON INC.) HKLM-x32\...\Run: [Dolby Advanced Audio v2] - C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe [506712 2011-02-03] (Dolby Laboratories Inc.) HKLM-x32\...\Run: [CLMLServer] - C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [107816 2010-08-03] (CyberLink) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2345296 2013-10-01] (LogMeIn Inc.) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Updater] - C:\ProgramData\Updater\Updater.exe [486264 2013-12-18] (Updater) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [SDTray] - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [5624784 2013-07-25] (Safer-Networking Ltd.) HKLM-x32\...\RunOnce: [Coupon Server-repairJob] - wscript.exe "C:\Users\Simon\AppData\Local\Coupon Server\repair.js" "Coupon Server-repairJob" [1846 2013-12-20] () Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKU\S-1-5-21-1763558810-396144071-1509381789-1000\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20587168 2013-11-18] (Skype Technologies S.A.) HKU\S-1-5-21-1763558810-396144071-1509381789-1000\...\Run: [lollipop] - "c:\users\simon\appdata\local\lollipop\lollipop.exe" lollipop HKU\S-1-5-21-1763558810-396144071-1509381789-1000\...\Run: [NextLive] - C:\Windows\SysWOW64\rundll32.exe "C:\Users\Simon\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l HKU\S-1-5-21-1763558810-396144071-1509381789-1000\...\Run: [Updater] - C:\ProgramData\Updater\updater.exe [486264 2013-12-18] (Updater) HKU\S-1-5-21-1763558810-396144071-1509381789-1000\...\Run: [Steam] - C:\Program Files (x86)\Steam\Steam.exe [1815464 2014-01-07] (Valve Corporation) HKU\S-1-5-21-1763558810-396144071-1509381789-1000\...\Policies\system: [LogonHoursAction] 2 HKU\S-1-5-21-1763558810-396144071-1509381789-1000\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 AppInit_DLLs: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll => File Not Found AppInit_DLLs: c:\progra~3\wincert\win64c~1.dll => C:\ProgramData\Wincert\win64cert.dll [8704 2013-04-09] () AppInit_DLLs-x32: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC32Loader.dll => File Not Found Startup: C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk ShortcutTarget: OpenOffice.org 3.3.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe () Startup: C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tbhcn.lnk ShortcutTarget: tbhcn.lnk -> C:\Users\Simon\AppData\Roaming\BrowserCompanion\tbhcn.exe () ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://search.certified-toolbar.com?si=46364&tid=3869&ver=5.5&ts=1388530800000.000000&tguid=46364-3869-1388693601347-308991-b5678&st=chrome&q= HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.awesomehp.com/?type=hp&ts=1390665280&from=tugs&uid=ST9500325AS_S2W39E8WXXXXS2W39E8W HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.awesomehp.com/?type=hp&ts=1390665280&from=tugs&uid=ST9500325AS_S2W39E8WXXXXS2W39E8W HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://search.certified-toolbar.com?si=46364&tid=3869&ver=5.5&ts=1388530800000.000000&tguid=46364-3869-1388693601347-308991-b5678&st=chrome&q= HKCU\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = hxxp://www.opti-page.com/?babsrc=HP_ss&mntrId=F2D378929C4EC927&affID=126473&tsp=5039 HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://search.certified-toolbar.com?si=46364&tid=3869&ver=5.5&ts=1388530800000.000000&tguid=46364-3869-1388693601347-308991-b5678&st=chrome&q= HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1390665280&from=tugs&uid=ST9500325AS_S2W39E8WXXXXS2W39E8W&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.awesomehp.com/?type=hp&ts=1390665280&from=tugs&uid=ST9500325AS_S2W39E8WXXXXS2W39E8W HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.awesomehp.com/?type=hp&ts=1390665280&from=tugs&uid=ST9500325AS_S2W39E8WXXXXS2W39E8W HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.awesomehp.com/web/?type=ds&ts=1390665280&from=tugs&uid=ST9500325AS_S2W39E8WXXXXS2W39E8W&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1390665280&from=tugs&uid=ST9500325AS_S2W39E8WXXXXS2W39E8W&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.awesomehp.com/?type=hp&ts=1390665280&from=tugs&uid=ST9500325AS_S2W39E8WXXXXS2W39E8W HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.awesomehp.com/?type=hp&ts=1390665280&from=tugs&uid=ST9500325AS_S2W39E8WXXXXS2W39E8W HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.awesomehp.com/web/?type=ds&ts=1390665280&from=tugs&uid=ST9500325AS_S2W39E8WXXXXS2W39E8W&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Bar = hxxp://search.certified-toolbar.com?si=46364&tid=3869&ver=5.5&ts=1388530800000.000000&tguid=46364-3869-1388693601347-308991-b5678&st=chrome&q= StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe hxxp://www.awesomehp.com/?type=sc&ts=1390665280&from=tugs&uid=ST9500325AS_S2W39E8WXXXXS2W39E8W SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1390665280&from=tugs&uid=ST9500325AS_S2W39E8WXXXXS2W39E8W&q={searchTerms} SearchScopes: HKLM - {03D35226-9D60-675B-5345-2ABF844C38B1} URL = hxxp://search.qvo6.com/web/?utm_source=b&utm_medium=slbnew&from=slbnew&uid=ST9500325AS_S2W39E8WXXXXS2W39E8W&ts=1373877982 SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1390665280&from=tugs&uid=ST9500325AS_S2W39E8WXXXXS2W39E8W&q={searchTerms} SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=394&systemid=406&apn_dtid=BND406&apn_ptnrs=AG6&o=APN10645&apn_uid=1121204404404463&q={searchTerms} SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2459} URL = hxxp://dts.search.ask.com/sr?src=ieb&gct=ds&appid=152&systemid=459&apn_uid=1121204404404463&apn_dtid=BND103&o=APN10652&apn_ptnrs=AGD&q={searchTerms} SearchScopes: HKLM-x32 - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1390665280&from=tugs&uid=ST9500325AS_S2W39E8WXXXXS2W39E8W&q={searchTerms} SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 - {2992A17B-A5F9-F094-35BF-0C9A42D1D805} URL = hxxp://search.certified-toolbar.com?si=46364&st=bs&tid=3869&ver=3.2&ts=1373994560801&tguid=46364-3869-1373994560801-4B58F3A68DB3E9A990EFF9A669BCC047&q={searchTerms} SearchScopes: HKLM-x32 - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1390665280&from=tugs&uid=ST9500325AS_S2W39E8WXXXXS2W39E8W&q={searchTerms} SearchScopes: HKLM-x32 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=394&systemid=406&apn_dtid=BND406&apn_ptnrs=AG6&o=APN10645&apn_uid=1121204404404463&q={searchTerms} SearchScopes: HKLM-x32 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2459} URL = hxxp://dts.search.ask.com/sr?src=ieb&gct=ds&appid=152&systemid=459&apn_uid=1121204404404463&apn_dtid=BND103&o=APN10652&apn_ptnrs=AGD&q={searchTerms} SearchScopes: HKLM-x32 - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.certified-toolbar.com?si=46364&st=bs&tid=3869&ver=5.5&ts=1388530800000.000000&tguid=46364-3869-1388693601347-308991-b5678&q={searchTerms} SearchScopes: HKCU - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1390665280&from=tugs&uid=ST9500325AS_S2W39E8WXXXXS2W39E8W&q={searchTerms} SearchScopes: HKCU - bProtectorDefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} SearchScopes: HKCU - 036C1E84ACDA4E229CE038AB48D0195C URL = hxxp://dts.search.ask.com/sr?src=ieb&gct=ds&appid=152&systemid=459&apn_uid=1121204404404463&apn_dtid=BND103&o=APN10652&apn_ptnrs=AGD&q={searchTerms} SearchScopes: HKCU - {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.snap.do/?publisher=QuickObrw&dpid=QuickObrw&co=DE&userid=13b7d982-21db-4c33-ae6e-527551dc4974&searchtype=ds&q={searchTerms}&installDate=01/03/2013 SearchScopes: HKCU - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://search.certified-toolbar.com?si=46364&st=bs&tid=3869&ver=4.7&ts=1373994560801.000004&tguid=46364-3869-1373994560801-4B58F3A68DB3E9A990EFF9A669BCC047&q={searchTerms} SearchScopes: HKCU - {03D35226-9D60-675B-5345-2ABF844C38B1} URL = hxxp://search.certified-toolbar.com?si=46364&st=bs&tid=3869&ver=3.2&ts=1373994560801&tguid=46364-3869-1373994560801-4B58F3A68DB3E9A990EFF9A669BCC047&q={searchTerms} SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://www.opti-page.com/?q={searchTerms}&babsrc=SP_ss&mntrId=F2D378929C4EC927&affID=126473&tsp=5039 SearchScopes: HKCU - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1390665280&from=tugs&uid=ST9500325AS_S2W39E8WXXXXS2W39E8W&q={searchTerms} SearchScopes: HKCU - {3BD44F0E-0596-4008-AEE0-45D47E3A8F0E} URL = hxxp://www.mystart.com/results.php?gen=ms&pr=vmn&id=mystarttb&v=5_3&ent=ch_4981&q={searchTerms} SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = SearchScopes: HKCU - {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxp://mysearch.avg.com/search?cid={AD0176BF-40C2-4216-8E28-AAA5CCD88655}&mid=d1896acb5e1d47d392dde92931611851-49a29368bb9c10c575309f86ea6e5f2fedd7f815&lang=de&ds=ub011&coid=avgtbdisub&cmpid=&pr=sa&d=2013-12-18 18:06:30&v=17.2.0.38&pid=safeguard&sg=&sap=dsp&q={searchTerms} SearchScopes: HKCU - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.certified-toolbar.com?si=46364&st=bs&tid=3869&ver=5.5&ts=1388530800000.000000&tguid=46364-3869-1388693601347-308991-b5678&q={searchTerms} BHO: Complitly - {0FB6A909-6086-458F-BD92-1F8EE10042A0} - C:\Users\Simon\AppData\Roaming\Complitly\64\Complitly64.dll (SimplyGen) BHO: QuickShare WidgetEngine - {31ad400d-1b06-4e33-a59a-90c2c140cba0} - C:\Windows\system32\mscoree.dll (Microsoft Corporation) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Skype add-on for Internet Explorer - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.) BHO: HomeTab - {ba696155-d96e-4281-b467-0367a0456474} - C:\Program Files\HomeTab\IE\HomeTab.dll (Simply Tech LTD.) BHO: No Name - {DBC80044-A445-435b-BC74-9C25C1C588A9} - No File BHO: Coupon Server BHO - {F791D8AE-47E8-40A5-A913-EB2D2AF29602} - C:\Program Files (x86)\Coupon Server\FrameworkBHO64.dll () BHO-x32: Ginyas Browser Companion - {00cbb66b-1d3b-46d3-9577-323a336acb50} - C:\Program Files (x86)\BrowserCompanion\jsloader.dll ( ) BHO-x32: Browser Guard - {02a0d829-4393-46fc-a37e-126263035883} - C:\Program Files (x86)\Browser Guard\browserguard.dll (Browser Guard) BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.130\McAfeeMSS_IE.dll (McAfee, Inc.) BHO-x32: SaveSense - {0f21b1e5-5afc-43c9-9c66-515046e92ec2} - C:\Program Files (x86)\SaveSense\SaveSenseIE.dll (SaveSense) BHO-x32: Complitly - {0FB6A909-6086-458F-BD92-1F8EE10042A0} - C:\Users\Simon\AppData\Roaming\Complitly\Complitly.dll (SimplyGen) BHO-x32: Plus-HD-1.6 - {11111111-1111-1111-1111-110311201102} - C:\Program Files (x86)\Plus-HD-1.6\Plus-HD-1.6-bho.dll (Plus HD) BHO-x32: HomeTab - {19a395c9-823b-4700-b817-396fc84ffb16} - C:\Users\Simon\AppData\Roaming\HomeTab\HomeTab.dll (Simply Tech LTD.) BHO-x32: LyricsContainer - {2581ed35-4120-4611-aff0-7bb38a0331be} - No File BHO-x32: Babylon toolbar helper - {2EECD738-5844-4a99-B4B6-146BF802613B} - No File BHO-x32: Music Toolbar (Dist. by Koyote-Lab, Inc.) - {30d489af-4a88-45dd-aacf-986cdbc7823a} - C:\Program Files (x86)\Music Toolbar\Datamngr\SRTOOL~1\IE\searchresultsDx.dll () BHO-x32: QuickShare WidgetEngine - {31ad400d-1b06-4e33-a59a-90c2c140cba0} - C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation) BHO-x32: IETabPage Class - {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} - C:\Program Files (x86)\SupTab\SupTab.dll (Thinknice Co. Limited) BHO-x32: Search-Results Toolbar - {377e5d4d-77e5-476a-8716-7e70a9272da0} - C:\Program Files (x86)\Search Results Toolbar\Datamngr\SRTOOL~1\searchresultsDx.dll (APN LLC) BHO-x32: Websteroids - {44ed99e2-16a6-4b89-80d6-5b21cf42e78b} - C:\ProgramData\Websteroids\IE\common.dll (Creative Island Media, LLC) BHO-x32: TBSB01620 Class - {58124A0B-DC32-4180-9BFF-E0E21AE34026} - C:\Program Files (x86)\IMinent Toolbar\tbcore3.dll () BHO-x32: EWPBrowseObject Class - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files (x86)\Canon\Easy-WebPrint\EWPBrowseLoader.dll () BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: WebEnhance - {814664b0-d93b-4da6-9216-722c56179397} - C:\Program Files (x86)\WebEnhance\webenhance.dll (WebEnhance) BHO-x32: No Name - {84FF7BD6-B47F-46F8-9130-01B2696B36CB} - No File BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG SafeGuard toolbar\17.2.0.38\AVG SafeGuard toolbar_toolbar.dll (AVG Secure Search) BHO-x32: Ginyas Browser Companion Verifier - {963B125B-8B21-49A2-A3A8-E37092276531} - C:\Program Files (x86)\BrowserCompanion\updatebhoWin32.dll (Blabbers Communications Ltd) BHO-x32: IMinent WebBooster (BHO) - {A09AB6EB-31B5-454C-97EC-9B294D92EE2A} - C:\Program Files (x86)\Iminent\IMBooster4Web\Iminent.WebBooster.dll (Iminent) BHO-x32: Wajam - {A7A6995D-6EE1-4FD1-A258-49395D5BF99C} - C:\Program Files (x86)\Wajam\IE\priam_bho.dll (Wajam) BHO-x32: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) BHO-x32: HomeTab - {ba696155-d96e-4281-b467-0367a0456474} - C:\Program Files (x86)\HomeTab\IE\HomeTab.dll (Simply Tech LTD.) BHO-x32: delta Helper Object - {C1AF5FA5-852C-4C90-812E-A7F75E011D87} - C:\Program Files (x86)\Delta\delta\1.8.16.16\bh\delta.dll (Delta-search.com) BHO-x32: MyStart Toolbar - {ccb24e92-62c4-4c53-95d2-65f9eed476bc} - C:\Program Files (x86)\mystarttb\mystartDx.dll () BHO-x32: SaltarSmart - {d99a4ec9-00bd-4fe4-85a5-4db018351265} - C:\Program Files (x86)\SaltarSmart\SaltarSmartbho.dll (SaltarSmart) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Web Check - {E155F23C-9931-47c6-A619-20E6FCA86D75} - C:\Program Files (x86)\Web Check\WebCheck.dll (Web Check) BHO-x32: optitoolbar Helper Object - {F498380A-7935-4DC7-88B1-C158321DF79E} - C:\Program Files (x86)\Opti Toolbar\optitoolbar\1.8.26.9\bh\optitoolbar.dll (Opti Toolbar) BHO-x32: Value Apps plugin - {F63AAEDC-3602-49EF-AA45-262380A98980} - C:\Users\Simon\AppData\Roaming\ValueApps\IE\MonPrx.dll (Conduit Ltd.) BHO-x32: Coupon Server BHO - {F791D8AE-47E8-40A5-A913-EB2D2AF29602} - C:\Program Files (x86)\Coupon Server\FrameworkBHO.dll () Toolbar: HKLM - QuickShare Widget - {ae07101b-46d4-4a98-af68-0333ea26e113} - C:\Windows\system32\mscoree.dll (Microsoft Corporation) Toolbar: HKLM - HomeTab - {ba696155-d96e-4281-b467-0367a0456474} - C:\Program Files\HomeTab\IE\HomeTab.dll (Simply Tech LTD.) Toolbar: HKLM - MyStart Toolbar - {ccb24e92-62c4-4c53-95d2-65f9eed476bc} - C:\Program Files (x86)\mystarttb\mystartDx64.dll () Toolbar: HKLM-x32 - IMinent Toolbar - {977AE9CC-AF83-45E8-9E03-E2798216E2D5} - C:\Program Files (x86)\IMinent Toolbar\tbcore3.dll () Toolbar: HKLM-x32 - QuickShare Widget - {ae07101b-46d4-4a98-af68-0333ea26e113} - C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation) Toolbar: HKLM-x32 - Search-Results Toolbar - {377e5d4d-77e5-476a-8716-7e70a9272da0} - C:\Program Files (x86)\Search Results Toolbar\Datamngr\SRTOOL~1\searchresultsDx.dll (APN LLC) Toolbar: HKLM-x32 - Delta Toolbar - {82E1477C-B154-48D3-9891-33D83C26BCD3} - C:\Program Files (x86)\Delta\delta\1.8.16.16\deltaTlbr.dll (Delta-search.com) Toolbar: HKLM-x32 - Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files (x86)\Canon\Easy-WebPrint\Toolband.dll () Toolbar: HKLM-x32 - Music Toolbar (Dist. by Koyote-Lab, Inc.) - {30d489af-4a88-45dd-aacf-986cdbc7823a} - C:\Program Files (x86)\Music Toolbar\Datamngr\SRTOOL~1\IE\searchresultsDx.dll () Toolbar: HKLM-x32 - HomeTab - {ba696155-d96e-4281-b467-0367a0456474} - C:\Program Files (x86)\HomeTab\IE\HomeTab.dll (Simply Tech LTD.) Toolbar: HKLM-x32 - HomeTab - {19a395c9-823b-4700-b817-396fc84ffb16} - C:\Users\Simon\AppData\Roaming\HomeTab\HomeTab.dll (Simply Tech LTD.) Toolbar: HKLM-x32 - optitoolbar Toolbar - {FE560166-CBE3-4A0D-80B5-A3B216F93EEA} - C:\Program Files (x86)\Opti Toolbar\optitoolbar\1.8.26.9\optitoolbarTlbr.dll (Opti Toolbar) Toolbar: HKLM-x32 - AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG SafeGuard toolbar\17.2.0.38\AVG SafeGuard toolbar_toolbar.dll (AVG Secure Search) Toolbar: HKLM-x32 - MyStart Toolbar - {ccb24e92-62c4-4c53-95d2-65f9eed476bc} - C:\Program Files (x86)\mystarttb\mystartDx.dll () Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File Toolbar: HKCU - No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File Handler: base64 - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - No File Handler: chrome - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - No File Handler: prox - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - No File Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.) Handler-x32: base64 - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files (x86)\BrowserCompanion\tdataprotocol.dll (Blabbers Communications Ltd) Handler-x32: chrome - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files (x86)\BrowserCompanion\tdataprotocol.dll (Blabbers Communications Ltd) Handler-x32: prox - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files (x86)\BrowserCompanion\tdataprotocol.dll (Blabbers Communications Ltd) Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Handler-x32: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\17.2.0\ViProtocol.dll (AVG Secure Search) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\037alt16.default FF NewTab: about:home FF DefaultSearchEngine: awesomehp FF SearchEngineOrder.1: Web Search FF SelectedSearchEngine: awesomehp FF Homepage: about:home FF Keyword.URL: hxxp://search.certified-toolbar.com?si=46364&tid=3869&ver=5.5&ts=1388530800000.000000&tguid=46364-3869-1388693601347-308991-b5678&st=chrome&q= FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_43.dll () FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_43.dll () FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @mcafee.com/McAfeeMssPlugin - C:\Program Files\McAfee Security Scan\3.8.130\npMcAfeeMss.dll (McAfee, Inc.) FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.updaterss.com/SaveSenseLive Update;version=3 - C:\Program Files (x86)\SaveSenseLive\Update\1.3.23.0\npGoogleUpdate3.dll (SaveSense) FF Plugin-x32: @tools.updaterss.com/SaveSenseLive Update;version=9 - C:\Program Files (x86)\SaveSenseLive\Update\1.3.23.0\npGoogleUpdate3.dll (SaveSense) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @lightspark.github.com/Lightspark;version=1 - C:\Program Files (x86)\Lightspark 0.5.3-git\nplightsparkplugin.dll ( ) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Simon\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll () FF Plugin ProgramFiles/Appdata: C:\Users\Simon\AppData\Roaming\mozilla\plugins\np-mswmp.dll (Microsoft Corporation) FF SearchPlugin: C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\037alt16.default\searchplugins\babylon.xml FF SearchPlugin: C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\037alt16.default\searchplugins\bingp.xml FF SearchPlugin: C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\037alt16.default\searchplugins\conduit-search.xml FF SearchPlugin: C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\037alt16.default\searchplugins\Mysearchdial.xml FF SearchPlugin: C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\037alt16.default\searchplugins\optitoolbar.xml FF SearchPlugin: C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\037alt16.default\searchplugins\SearchTheWeb.xml FF SearchPlugin: C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\037alt16.default\searchplugins\Search_Results.xml FF SearchPlugin: C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\037alt16.default\searchplugins\Web Search.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\awesomehp.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\Web Search.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mystarttb.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\qvo6.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\safeguard-secure-search.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Plus-HD-1.6 - C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\037alt16.default\Extensions\6c937ed6-be66-4f72-9a60-ce5789cc7f09@53ba6712-2cae-46e2-b821-95baea44e049.com [2014-01-25] FF Extension: Ginyas Browser Companion - C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\037alt16.default\Extensions\bbrs_002@blabbers.com [2013-07-14] FF Extension: Ginyas Browser Companions - C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\037alt16.default\Extensions\bbrs_003@blabbers.com [2013-06-25] FF Extension: vis - C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\037alt16.default\Extensions\EFGLQA@78ETGYN-0W7FN789T87.COM [2013-11-11] FF Extension: optitoolbar.com - C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\037alt16.default\Extensions\ffxtlbr@optitoolbar.com [2013-10-18] FF Extension: No Name - C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\037alt16.default\Extensions\staged [2014-02-01] FF Extension: Websteroids - C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\037alt16.default\Extensions\support@websteroidsapp.com [2014-01-02] FF Extension: HomeTab - C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\037alt16.default\Extensions\{24532715-4abc-47ee-bd4f-a6774d0723d2} [2014-01-13] FF Extension: Music Toolbar (Dist. by Koyote-Lab, Inc.) - C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\037alt16.default\Extensions\{30d489af-4a88-45dd-aacf-986cdbc7823a} [2013-06-25] FF Extension: Coupon Server - C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\037alt16.default\Extensions\{3C2422B0-C421-8DCF-B2EB-70B9B2B71607} [2014-01-02] FF Extension: Wajam - C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\037alt16.default\Extensions\{5a95a9e0-59dd-4314-bd84-4d18ca83a0e2} [2013-10-25] FF Extension: MyStart Toolbar - C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\037alt16.default\Extensions\{607b689f-7600-45e4-b8e5-887f72dab15c} [2013-12-20] FF Extension: New Tab - C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\037alt16.default\Extensions\{7914EEC2-5E20-DC2C-37AD-5FEF011A7772} [2013-06-25] FF Extension: SaveSense - C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\037alt16.default\Extensions\{8b337819-d1e8-48d3-8178-168ae8c99c36} [2013-12-20] FF Extension: Value Apps - C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\037alt16.default\Extensions\{94cd2cc3-083f-49ba-a218-4cda4b4829fd} [2013-12-20] FF Extension: MySearchDial - C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\037alt16.default\Extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8} [2013-07-17] FF Extension: SaltarSmart - C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\037alt16.default\Extensions\firefox@saltarsmart.biz.xpi [2013-11-07] FF Extension: Extension_Protected - C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\037alt16.default\Extensions\jid0-O6MIff3eO5dIGf5Tcv8RsJDKxrs@jetpack.xpi [2014-01-25] FF Extension: Lightning Speed Dial - C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\037alt16.default\Extensions\lightningnewtab@gmail.com.xpi [2014-01-25] FF HKLM-x32\...\Firefox\Extensions: [{52b0f3db-f988-4788-b9dc-861d016f4487}] - C:\Program Files (x86)\Web Check\WebCheck.xpi FF Extension: Web Check - C:\Program Files (x86)\Web Check\WebCheck.xpi [2013-08-12] FF HKLM-x32\...\Firefox\Extensions: [{20d1f7b3-7721-4da0-b6f3-78bb4d7248f4}] - C:\Program Files (x86)\Browser Guard\browserguard.xpi FF Extension: Browser Guard - C:\Program Files (x86)\Browser Guard\browserguard.xpi [2013-08-27] FF HKLM-x32\...\Firefox\Extensions: [avg@toolbar] - C:\ProgramData\AVG SafeGuard toolbar\FireFoxExt\17.2.0.38 FF Extension: AVG SafeGuard toolbar - C:\ProgramData\AVG SafeGuard toolbar\FireFoxExt\17.2.0.38 [2013-12-18] FF HKLM-x32\...\Firefox\Extensions: [{38e9e285-5266-4fe2-b5b5-c14c29b0cd45}] - C:\Program Files (x86)\WebEnhance\webenhance.xpi FF Extension: WebEnhance - C:\Program Files (x86)\WebEnhance\webenhance.xpi [2013-08-27] FF HKLM-x32\...\Firefox\Extensions: [ext@VideoPlayerV3beta6959.net] - C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta6959\ff FF Extension: Video Player - C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta6959\ff [2014-01-22] FF HKLM-x32\...\Firefox\Extensions: [lightningnewtab@gmail.com] - C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\037alt16.default\extensions\lightningnewtab@gmail.com.xpi FF Extension: No Name - C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\037alt16.default\extensions\lightningnewtab@gmail.com.xpi [2014-01-25] FF HKCU\...\Firefox\Extensions: [happylyrics@hpyproductions.net] - C:\Program Files (x86)\HappyLyrics\FF\ FF Extension: Happy Lyrics - C:\Program Files (x86)\HappyLyrics\FF\ [] FF HKCU\...\Firefox\Extensions: [{cd288a68-7b21-4f14-b789-82cc44992259}] - C:\Program Files (x86)\LyricsContainer\133.xpi FF Extension: No Name - C:\Program Files (x86)\LyricsContainer\133.xpi [2013-09-12] FF HKCU\...\Firefox\Extensions: [{5a95a9e0-59dd-4314-bd84-4d18ca83a0e2}] - C:\Program Files (x86)\Wajam\Firefox\{5a95a9e0-59dd-4314-bd84-4d18ca83a0e2}.xpi FF Extension: Wajam - C:\Program Files (x86)\Wajam\Firefox\{5a95a9e0-59dd-4314-bd84-4d18ca83a0e2}.xpi [2013-02-14] FF StartMenuInternet: FIREFOX.EXE - C:\Program Files (x86)\Mozilla Firefox\firefox.exe hxxp://www.awesomehp.com/?type=sc&ts=1390665280&from=tugs&uid=ST9500325AS_S2W39E8WXXXXS2W39E8W Chrome: ======= CHR HomePage: hxxp://www.awesomehp.com/?type=hp&ts=1390665280&from=tugs&uid=ST9500325AS_S2W39E8WXXXXS2W39E8W CHR RestoreOnStartup: "hxxp://www.awesomehp.com/?type=hp&ts=1390665280&from=tugs&uid=ST9500325AS_S2W39E8WXXXXS2W39E8W" CHR Extension: (Ginyas Browser Companion) - C:\Users\Simon\AppData\Local\Google\Chrome\User Data\Default\Extensions\bodddioamolcibagionmmobehnbhiakf [2013-12-31] CHR Extension: (Ginyas Browser Companions) - C:\Users\Simon\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpgoohpbdddibhlhdkenenmmlfofjfkh [2013-12-20] CHR Extension: (Ginyas Browser Companions) - C:\Users\Simon\AppData\Local\Google\Chrome\User Data\Default\Extensions\cekcjpgehmohobmdiikfnopibipmgnml [2014-01-25] CHR Extension: (Ginyas Browser Companions) - C:\Users\Simon\AppData\Local\Google\Chrome\User Data\Default\Extensions\khcceooakamlehbimaepcldnnlnkcmfk [2013-12-20] CHR Extension: (Ginyas Browser Companions) - C:\Users\Simon\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmffncokckfccddfenhkhnllmlobdahm [2013-12-31] CHR HKLM\...\Chrome\Extension: [pflphaooapbgpeakohlggbpidpppgdff] - C:\Users\Simon\AppData\Local\mysearchdial_speedial_v9.0.2.crx [2013-07-17] CHR HKCU\...\Chrome\Extension: [amfclgbdpgndipgoegfpkkgobahigbcl] - C:\Users\Simon\AppData\Local\Smartbar/Application\1Extension.crx [2013-05-12] CHR HKCU\...\Chrome\Extension: [pflphaooapbgpeakohlggbpidpppgdff] - C:\Users\Simon\AppData\Local\mysearchdial_speedial_v9.0.2.crx [2013-07-17] CHR HKLM-x32\...\Chrome\Extension: [abfmigjiaapipflmopkaaooigcjjdojh] - C:\Program Files (x86)\LyricsContainer\133.crx [2013-09-11] CHR HKLM-x32\...\Chrome\Extension: [bodddioamolcibagionmmobehnbhiakf] - C:\Program Files (x86)\BrowserCompanion\blabbers-ch.crx [2012-07-02] CHR HKLM-x32\...\Chrome\Extension: [chdboodilddefglllfoimeceomkpmkbi] - C:\Program Files (x86)\SaltarSmart\chdboodilddefglllfoimeceomkpmkbi.crx [2013-11-07] CHR HKLM-x32\...\Chrome\Extension: [dacechnliklhcacondhhkkfobapdopee] - C:\Program Files (x86)\Web Check\WebCheck.crx [2013-08-12] CHR HKLM-x32\...\Chrome\Extension: [dlfienamagdnkekbbbocojppncdambda] - C:\Program Files (x86)\Complitly\chrome\ComplitlyChrome.crx [2012-02-24] CHR HKLM-x32\...\Chrome\Extension: [ealchnonpofjocgofjpopjdoegbbkofj] - C:\Program Files (x86)\HappyLyrics\Chrome.crx [2013-06-03] CHR HKLM-x32\...\Chrome\Extension: [eooncjejnppfjjklapaamhcdmjbilmde] - C:\Users\Simon\AppData\Roaming\BabSolution\CR\delta2.crx [2013-05-01] CHR HKLM-x32\...\Chrome\Extension: [fgibjgmnimooanbagcfpnkmngejcojaf] - C:\Program Files (x86)\HomeTab\chrome\HomeTab.crx [2013-07-16] CHR HKLM-x32\...\Chrome\Extension: [gjboppkakhckbakcbnicbnmmfjjmedmh] - C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta6959\ch\VideoPlayerV3beta6959.crx [2014-01-10] CHR HKLM-x32\...\Chrome\Extension: [jpmbfleldcgkldadpdinhjjopdfpjfjp] - C:\Users\Simon\AppData\Local\Wajam\Chrome\wajam.crx [2012-07-26] CHR HKLM-x32\...\Chrome\Extension: [kfepagcelbegkpkcjgfeecmlnmkedjin] - C:\Program Files (x86)\Browser Guard\browserguard.crx [2013-08-27] CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2012-11-22] CHR HKLM-x32\...\Chrome\Extension: [mbegnhpbhfjiaelealfpieodkembdgbj] - C:\Program Files (x86)\WebEnhance\webenhance.crx [2013-08-27] CHR HKLM-x32\...\Chrome\Extension: [ncoodlkjimgohlngmapmpnbfaoifkhnd] - C:\Users\Simon\AppData\Roaming\BabSolution\CR\Opti.crx [2013-10-18] CHR HKLM-x32\...\Chrome\Extension: [ndibdjnfmopecpmkdieinmbadjfpblof] - C:\ProgramData\AVG SafeGuard toolbar\ChromeExt\17.2.0.38\avg.crx [2013-12-18] CHR HKLM-x32\...\Chrome\Extension: [pflphaooapbgpeakohlggbpidpppgdff] - C:\Users\Simon\AppData\Local\mysearchdial_speedial_v9.0.2.crx [2013-07-17] CHR HKLM-x32\...\Chrome\Extension: [pkndmigholgfjlniaohblojbhgjbkakn] - C:\Users\Simon\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv2.crx [2014-01-25] CHR StartMenuInternet: Google Chrome - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe hxxp://www.awesomehp.com/?type=sc&ts=1390665280&from=tugs&uid=ST9500325AS_S2W39E8WXXXXS2W39E8W CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440376 2013-12-12] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440376 2013-11-26] (Avira Operations GmbH & Co. KG) S4 DatamngrCoordinator; C:\Program Files (x86)\Music Toolbar\Datamngr\DatamngrCoordinator.exe [3179568 2013-06-15] (Koyote-Lab Inc.) S4 desksvc; C:\Program Files (x86)\Desk 365\deskSvc.exe [424016 2013-07-15] (337 Technology Limited.) R2 DevoloNetworkService; C:\Program Files (x86)\devolo\dlan\devolonetsvc.exe [3304768 2010-12-23] (devolo AG) R2 IePluginService; C:\ProgramData\IePluginService\PluginService.exe [508016 2014-01-14] (Cherished Technololgy LIMITED) R2 InternetUpdater; C:\ProgramData\InternetUpdater\InternetUpdaterService.exe [40448 2013-12-06] () S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.130\McCHSvc.exe [288776 2013-09-06] (McAfee, Inc.) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [340240 2011-05-02] () R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [244904 2010-12-14] () S2 savesenselive; C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe [146920 2013-12-20] (SaveSense) S3 savesenselivem; C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe [146920 2013-12-20] (SaveSense) S2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [3921880 2013-10-15] (Safer-Networking Ltd.) S2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1042272 2013-09-20] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171416 2013-09-13] (Safer-Networking Ltd.) S2 SystemStoreService; C:\Program Files (x86)\SoftwareUpdater\SystemStore.exe [297984 2014-02-03] () S2 Update SaltarSmart; C:\Program Files (x86)\SaltarSmart\updateSaltarSmart.exe [97056 2014-01-19] () S2 Util SaltarSmart; C:\Program Files (x86)\SaltarSmart\bin\utilSaltarSmart.exe [97056 2014-01-19] () S4 vToolbarUpdater17.2.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.2.0\ToolbarUpdater.exe [1771544 2013-12-18] (AVG Secure Search) S4 WajamUpdaterV3; C:\Program Files (x86)\Wajam\Updater\WajamUpdaterV3.exe [114176 2013-10-22] (Wajam) R2 watchmi; C:\Program Files (x86)\watchmi\TvdService.exe [62464 2010-12-06] () R2 Wpm; C:\ProgramData\WPM\wprotectmanager.exe [493568 2014-01-25] (Cherished Technololgy LIMITED) S4 CltMngSvc; C:\PROGRA~2\SearchProtect\Main\bin\CltMngSvc.exe [x] S2 PnkBstrA; No ImagePath ==================== Drivers (Whitelisted) ==================== S3 athrusb; C:\Windows\System32\DRIVERS\athrxusb.sys [1075712 2008-07-29] (Atheros Communications, Inc.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2013-12-12] (Avira Operations GmbH & Co. KG) S4 avgtp; C:\Windows\system32\drivers\avgtpx64.sys [46368 2013-12-18] (AVG Technologies) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131576 2013-12-12] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-10-01] (Avira Operations GmbH & Co. KG) R2 NPF_devolo; C:\Windows\sysWOW64\drivers\npf_devolo.sys [34048 2010-06-10] (CACE Technologies) S3 L1C; system32\DRIVERS\L1C62x64.sys [x] S3 X6va007; \??\C:\Users\Simon\AppData\Local\Temp\007F8EF.tmp [x] S3 X6va008; \??\C:\Windows\SysWOW64\Drivers\X6va008 [x] S3 X6va011; \??\C:\Windows\SysWOW64\Drivers\X6va011 [x] R3 X6va015; \??\C:\Windows\SysWOW64\Drivers\X6va015 [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-03 19:54 - 2014-02-03 19:54 - 00044654 _____ () C:\Users\Simon\Downloads\FRST.txt 2014-02-03 19:41 - 2014-02-03 19:41 - 02080256 _____ (Farbar) C:\Users\Simon\Downloads\FRST64.exe 2014-02-03 19:15 - 2014-02-03 19:15 - 00001042 _____ () C:\Users\Public\Desktop\Brick-Force.lnk 2014-02-03 19:14 - 2014-02-03 19:41 - 00000000 ____D () C:\Program Files (x86)\Brick-Force 2014-02-03 19:01 - 2014-02-03 19:09 - 250477576 _____ (Infernum Productions AG ) C:\Users\Simon\Downloads\BrickForceSetup_EU (2).exe 2014-01-27 22:20 - 2014-01-27 22:20 - 00003338 _____ () C:\Users\Simon\.recently-used.xbel 2014-01-27 22:08 - 2014-01-27 22:21 - 00000000 ____D () C:\Users\Simon\Desktop\Unsortierte Bilder Handy (27.1.14) 2014-01-27 17:31 - 2009-06-10 22:00 - 00000824 _____ () C:\Windows\system32\Drivers\etc\hosts.20140127-173153.backup 2014-01-26 15:09 - 2009-06-10 22:00 - 00000824 _____ () C:\Windows\system32\Drivers\etc\hosts.20140126-150939.backup 2014-01-26 15:07 - 2009-06-10 22:00 - 00000824 _____ () C:\Windows\system32\Drivers\etc\hosts.20140126-150758.backup 2014-01-26 14:52 - 2014-01-26 14:52 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking 2014-01-26 14:51 - 2014-01-27 16:10 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy 2014-01-26 14:51 - 2014-01-26 14:51 - 00001383 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2014-01-26 14:51 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe 2014-01-26 14:50 - 2014-01-26 14:51 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2 2014-01-26 14:43 - 2014-01-26 14:44 - 40658208 _____ (Safer-Networking Ltd. ) C:\Users\Simon\Downloads\spybot-2.2.25.exe 2014-01-25 19:44 - 2014-01-25 19:44 - 25842736 _____ (Microsoft Corporation) C:\Users\Simon\Downloads\Media-Player [1].exe 2014-01-25 19:42 - 2014-02-03 19:54 - 00000000 ____D () C:\FRST 2014-01-25 18:49 - 2014-01-25 18:49 - 00003094 _____ () C:\Windows\System32\Tasks\{677027D7-FF63-4959-835C-C1C1E1E8ED61} 2014-01-25 17:24 - 2014-01-25 17:24 - 00000000 ____D () C:\Users\Simon\AppData\Local\newplayer 2014-01-25 17:23 - 2014-01-25 17:23 - 00003136 _____ () C:\Windows\System32\Tasks\{FCB869B7-73EA-45C7-901F-5B3D794814B7} 2014-01-25 17:23 - 2014-01-25 17:23 - 00001117 _____ () C:\Users\Public\Desktop\NewPlayer.lnk 2014-01-25 17:22 - 2014-01-25 17:23 - 00000000 ____D () C:\Program Files (x86)\NewPlayer 2014-01-25 17:09 - 2014-01-25 17:10 - 00333896 _____ () C:\Users\Simon\Downloads\Player (1).exe 2014-01-25 16:56 - 2014-01-25 16:56 - 00000000 ____D () C:\ProgramData\WPM 2014-01-25 16:56 - 2014-01-25 16:56 - 00000000 ____D () C:\ProgramData\IePluginService 2014-01-25 16:56 - 2014-01-25 16:56 - 00000000 ____D () C:\Program Files (x86)\SupTab 2014-01-25 16:53 - 2014-01-25 16:53 - 00330904 _____ () C:\Users\Simon\Downloads\Java (7).exe 2014-01-23 16:14 - 2014-02-01 23:49 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-01-23 16:14 - 2014-01-23 16:32 - 00000921 _____ () C:\Users\Public\Desktop\Steam.lnk 2014-01-23 16:08 - 2014-01-23 16:08 - 01588224 _____ () C:\Users\Simon\Downloads\steam-009-multi.msi 2014-01-22 19:47 - 2014-02-02 16:57 - 00003108 _____ () C:\Windows\System32\Tasks\RegClean Pro 2014-01-22 18:23 - 2014-01-22 18:23 - 00000000 ____D () C:\Program Files (x86)\VideoPlayerV3 2014-01-16 21:20 - 2014-01-16 21:20 - 00000000 ____D () C:\Crash 2014-01-16 17:30 - 2014-01-16 17:30 - 00000000 ____D () C:\Users\Simon\Documents\Mobogenie 2014-01-16 17:27 - 2014-02-02 16:57 - 00000276 _____ () C:\Windows\Tasks\RegClean Pro_DEFAULT.job 2014-01-16 17:27 - 2014-01-22 18:05 - 00000284 _____ () C:\Windows\Tasks\RegClean Pro_UPDATES.job 2014-01-16 17:27 - 2014-01-16 17:27 - 00003026 _____ () C:\Windows\System32\Tasks\RegClean Pro_UPDATES 2014-01-16 17:27 - 2014-01-16 17:27 - 00002870 _____ () C:\Windows\System32\Tasks\RegClean Pro_DEFAULT 2014-01-16 17:27 - 2014-01-16 17:27 - 00001054 _____ () C:\Users\Public\Desktop\RegClean Pro.lnk 2014-01-16 17:27 - 2014-01-16 17:27 - 00000000 ____D () C:\Program Files (x86)\RegClean Pro 2014-01-16 17:26 - 2014-02-03 19:26 - 00000292 _____ () C:\Windows\Tasks\Digital Sites.job 2014-01-16 17:26 - 2014-01-31 23:26 - 00000005 _____ () C:\Users\Simon\AppData\Roaming\WBPU-TTL.DAT 2014-01-16 17:26 - 2014-01-16 17:26 - 00003232 _____ () C:\Windows\System32\Tasks\Digital Sites 2014-01-16 17:26 - 2014-01-16 17:26 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\DigitalSites 2014-01-16 17:25 - 2014-01-16 17:25 - 00703928 _____ () C:\Users\Simon\Downloads\DownloadAcceleratorSetup.exe 2014-01-16 17:01 - 2014-01-16 17:01 - 00002555 _____ () C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PlanetSide 2 PSG.lnk 2014-01-16 16:59 - 2014-01-16 16:59 - 20095616 _____ () C:\Users\Simon\Downloads\PS2_PSG_setup.exe 2014-01-16 16:55 - 2014-01-16 16:55 - 00000000 ____D () C:\Users\Simon\AppData\Local\SCE 2014-01-16 16:50 - 2014-01-16 16:50 - 00000000 ____D () C:\Users\Public\Sony Online Entertainment 2014-01-16 16:46 - 2014-01-16 16:47 - 20105448 _____ () C:\Users\Simon\Downloads\PS2_setup.exe 2014-01-16 16:28 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-01-16 16:28 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-01-16 16:28 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-01-16 16:28 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-01-16 16:28 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2014-01-16 16:28 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2014-01-16 16:28 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-01-16 16:27 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-01-16 16:27 - 2013-11-26 11:32 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-01-09 17:31 - 2014-01-09 17:31 - 00003484 _____ () C:\Windows\System32\Tasks\UpdateVO 2014-01-09 17:31 - 2014-01-09 17:31 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\VOPackage 2014-01-09 17:29 - 2014-01-16 17:36 - 00000000 ____D () C:\Program Files (x86)\Mobogenie 2014-01-09 17:26 - 2014-01-09 17:26 - 00660232 _____ (VLC Player) C:\Users\Simon\Downloads\FlvPlayer (1).exe 2014-01-09 17:25 - 2014-01-09 17:25 - 00660232 _____ (VLC Player) C:\Users\Simon\Downloads\FlvPlayer.exe 2014-01-09 16:33 - 2014-01-09 16:33 - 00000000 ____D () C:\ProgramData\Oracle 2014-01-09 16:32 - 2014-01-09 16:31 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-01-09 16:31 - 2014-01-25 19:45 - 00001189 _____ () C:\Windows\wmsetup.log 2014-01-09 16:31 - 2014-01-09 16:31 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-01-09 16:31 - 2014-01-09 16:31 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-01-09 16:31 - 2014-01-09 16:31 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-01-09 16:31 - 2014-01-09 16:31 - 00000000 ____D () C:\Program Files (x86)\Java 2014-01-09 16:29 - 2014-01-09 16:30 - 25842736 _____ (Microsoft Corporation) C:\Users\Simon\Downloads\wmp11-windowsxp-x86-DE-DE.exe 2014-01-09 16:28 - 2014-01-09 16:29 - 29040552 _____ (Oracle Corporation) C:\Users\Simon\Downloads\jre-7u45-windows-i586.exe 2014-01-09 16:17 - 2014-01-09 16:17 - 00475168 _____ () C:\Users\Simon\Downloads\Java (6).exe 2014-01-09 16:17 - 2014-01-09 16:17 - 00475168 _____ () C:\Users\Simon\Downloads\Java (5).exe 2014-01-06 15:33 - 2014-01-06 15:33 - 00000000 _____ () C:\Windows\system32\config\SYSTEM.sav.LOG 2014-01-05 23:35 - 2014-01-05 23:35 - 00481376 _____ () C:\Users\Simon\Downloads\Player.exe 2014-01-05 23:01 - 2014-01-05 23:01 - 00481328 _____ () C:\Users\Simon\Downloads\Java (4).exe ==================== One Month Modified Files and Folders ======= 2014-02-03 19:56 - 2014-02-03 19:54 - 00044654 _____ () C:\Users\Simon\Downloads\FRST.txt 2014-02-03 19:54 - 2014-01-25 19:42 - 00000000 ____D () C:\FRST 2014-02-03 19:51 - 2013-01-25 14:41 - 00001050 _____ () C:\Windows\Tasks\GinyasBrowserCompanions Chrome Watcher.job 2014-02-03 19:51 - 2013-01-25 14:41 - 00000000 ____D () C:\ProgramData\GinyasBrowserCompanions 2014-02-03 19:51 - 2012-04-02 09:22 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-02-03 19:41 - 2014-02-03 19:41 - 02080256 _____ (Farbar) C:\Users\Simon\Downloads\FRST64.exe 2014-02-03 19:41 - 2014-02-03 19:14 - 00000000 ____D () C:\Program Files (x86)\Brick-Force 2014-02-03 19:41 - 2013-01-25 14:41 - 00001050 _____ () C:\Windows\Tasks\GinyasBrowserCompanions Stats Report.job 2014-02-03 19:39 - 2013-02-22 19:06 - 00001038 _____ () C:\Windows\Tasks\GinyasBrowserCompanion Stats Report.job 2014-02-03 19:39 - 2013-01-25 14:41 - 00001050 _____ () C:\Windows\Tasks\GinyasBrowserCompanions FireFox Watcher.job 2014-02-03 19:33 - 2013-12-20 14:28 - 00000930 _____ () C:\Windows\Tasks\SaveSenseLiveUpdateTaskMachineUA.job 2014-02-03 19:28 - 2013-12-20 14:28 - 00000292 _____ () C:\Windows\Tasks\SaveSense.job 2014-02-03 19:26 - 2014-01-16 17:26 - 00000292 _____ () C:\Windows\Tasks\Digital Sites.job 2014-02-03 19:23 - 2013-07-17 18:18 - 00001906 _____ () C:\Windows\Tasks\Plus-HD-1.6-chromeinstaller.job 2014-02-03 19:22 - 2009-07-14 05:51 - 00104707 _____ () C:\Windows\setupact.log 2014-02-03 19:18 - 2013-07-17 18:18 - 00001830 _____ () C:\Windows\Tasks\Plus-HD-1.6-firefoxinstaller.job 2014-02-03 19:18 - 2013-07-17 18:18 - 00001198 _____ () C:\Windows\Tasks\Plus-HD-1.6-codedownloader.job 2014-02-03 19:18 - 2013-07-17 18:18 - 00001194 _____ () C:\Windows\Tasks\Plus-HD-1.6-updater.job 2014-02-03 19:18 - 2013-07-17 18:18 - 00001098 _____ () C:\Windows\Tasks\Plus-HD-1.6-enabler.job 2014-02-03 19:16 - 2011-12-25 11:44 - 00001110 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-02-03 19:15 - 2014-02-03 19:15 - 00001042 _____ () C:\Users\Public\Desktop\Brick-Force.lnk 2014-02-03 19:14 - 2014-01-02 19:02 - 00000344 _____ () C:\Windows\Tasks\bench-S-1-5-21-1763558810-396144071-1509381789-1000.job 2014-02-03 19:09 - 2014-02-03 19:01 - 250477576 _____ (Infernum Productions AG ) C:\Users\Simon\Downloads\BrickForceSetup_EU (2).exe 2014-02-03 19:06 - 2013-02-22 19:06 - 00000990 _____ () C:\Windows\Tasks\GinyasBrowserCompanion Runner.job 2014-02-03 19:06 - 2013-02-22 19:06 - 00000990 _____ () C:\Windows\Tasks\GinyasBrowserCompanion FireFox Watcher.job 2014-02-03 19:06 - 2013-02-22 19:06 - 00000990 _____ () C:\Windows\Tasks\GinyasBrowserCompanion Chrome Watcher.job 2014-02-03 19:06 - 2013-02-22 19:06 - 00000922 _____ () C:\Windows\Tasks\GinyasBrowserCompanion Update Checker.job 2014-02-03 18:26 - 2013-12-19 20:59 - 00000228 _____ () C:\Users\Simon\AppData\Roaming\WB.CFG 2014-02-03 18:23 - 2014-01-02 18:48 - 00000356 _____ () C:\Windows\Tasks\AmiUpdXp.job 2014-02-03 17:48 - 2013-07-16 18:10 - 00004160 _____ () C:\Windows\System32\Tasks\Software Updater Ui 2014-02-03 17:48 - 2013-07-16 18:09 - 00004208 _____ () C:\Windows\System32\Tasks\Software Updater 2014-02-03 17:41 - 2011-12-25 11:41 - 01459021 _____ () C:\Windows\WindowsUpdate.log 2014-02-03 17:39 - 2013-12-31 17:13 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\newnext.me 2014-02-03 17:37 - 2012-07-27 18:04 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\BrowserCompanion 2014-02-02 17:16 - 2013-01-25 14:41 - 00000934 _____ () C:\Windows\Tasks\GinyasBrowserCompanions Update Checker.job 2014-02-02 17:15 - 2013-07-15 09:46 - 00000408 _____ () C:\Windows\Tasks\LyricsContainer Update.job 2014-02-02 16:57 - 2014-01-22 19:47 - 00003108 _____ () C:\Windows\System32\Tasks\RegClean Pro 2014-02-02 16:57 - 2014-01-16 17:27 - 00000276 _____ () C:\Windows\Tasks\RegClean Pro_DEFAULT.job 2014-02-02 16:56 - 2013-12-20 14:28 - 00000926 _____ () C:\Windows\Tasks\SaveSenseLiveUpdateTaskMachineCore.job 2014-02-02 00:15 - 2012-01-20 14:17 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\Skype 2014-02-02 00:09 - 2014-01-02 19:02 - 00000344 _____ () C:\Windows\Tasks\bench-sys.job 2014-02-01 23:52 - 2013-10-13 17:38 - 00000000 ____D () C:\Users\Simon\AppData\Local\LogMeIn Hamachi 2014-02-01 23:49 - 2014-01-23 16:14 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-02-01 23:49 - 2013-10-04 16:56 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cec11a3c92890e.job 2014-02-01 23:43 - 2009-07-14 05:45 - 00016976 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-02-01 23:43 - 2009-07-14 05:45 - 00016976 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-02-01 23:33 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-01-31 23:26 - 2014-01-16 17:26 - 00000005 _____ () C:\Users\Simon\AppData\Roaming\WBPU-TTL.DAT 2014-01-31 23:11 - 2011-12-25 11:44 - 00000000 ____D () C:\Program Files (x86)\Google 2014-01-31 23:11 - 2010-11-21 04:47 - 00169096 _____ () C:\Windows\PFRO.log 2014-01-27 22:21 - 2014-01-27 22:08 - 00000000 ____D () C:\Users\Simon\Desktop\Unsortierte Bilder Handy (27.1.14) 2014-01-27 22:20 - 2014-01-27 22:20 - 00003338 _____ () C:\Users\Simon\.recently-used.xbel 2014-01-27 22:20 - 2012-01-23 17:31 - 00000000 ____D () C:\Users\Simon\.gimp-2.6 2014-01-27 22:20 - 2011-12-25 11:52 - 00000000 ____D () C:\Users\Simon 2014-01-27 22:16 - 2011-08-29 16:58 - 00699666 _____ () C:\Windows\system32\perfh007.dat 2014-01-27 22:16 - 2011-08-29 16:58 - 00149774 _____ () C:\Windows\system32\perfc007.dat 2014-01-27 22:16 - 2009-07-14 06:13 - 01620612 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-01-27 20:03 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache 2014-01-27 16:10 - 2014-01-26 14:51 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy 2014-01-26 14:59 - 2011-08-29 23:09 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-01-26 14:52 - 2014-01-26 14:52 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking 2014-01-26 14:51 - 2014-01-26 14:51 - 00001383 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2014-01-26 14:51 - 2014-01-26 14:50 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2 2014-01-26 14:44 - 2014-01-26 14:43 - 40658208 _____ (Safer-Networking Ltd. ) C:\Users\Simon\Downloads\spybot-2.2.25.exe 2014-01-25 19:45 - 2014-01-09 16:31 - 00001189 _____ () C:\Windows\wmsetup.log 2014-01-25 19:44 - 2014-01-25 19:44 - 25842736 _____ (Microsoft Corporation) C:\Users\Simon\Downloads\Media-Player [1].exe 2014-01-25 19:33 - 2012-01-19 19:43 - 00000000 ____D () C:\Users\Simon\AppData\Local\Adobe 2014-01-25 19:29 - 2012-04-02 09:22 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-01-25 19:29 - 2012-04-02 09:22 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-01-25 19:29 - 2011-08-29 20:22 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-01-25 19:21 - 2012-05-14 18:59 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-01-25 19:21 - 2012-05-14 18:59 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-01-25 19:12 - 2011-12-25 11:59 - 00000000 ____D () C:\Users\Simon\AppData\Local\Google 2014-01-25 19:07 - 2013-07-16 18:10 - 00003728 _____ () C:\Windows\System32\Tasks\Freemium1ClickMaint 2014-01-25 19:04 - 2013-08-02 15:26 - 00000000 ____D () C:\Program Files (x86)\MyPC Backup 2014-01-25 19:04 - 2011-12-25 11:52 - 00000000 ___RD () C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-01-25 18:49 - 2014-01-25 18:49 - 00003094 _____ () C:\Windows\System32\Tasks\{677027D7-FF63-4959-835C-C1C1E1E8ED61} 2014-01-25 18:48 - 2014-01-02 18:52 - 00000000 ____D () C:\Program Files (x86)\AmiExt 2014-01-25 18:45 - 2013-12-31 17:12 - 00000000 ____D () C:\Program Files (x86)\BonanzaDeals 2014-01-25 17:44 - 2012-02-24 20:52 - 00000000 ____D () C:\Program Files (x86)\DealPly 2014-01-25 17:24 - 2014-01-25 17:24 - 00000000 ____D () C:\Users\Simon\AppData\Local\newplayer 2014-01-25 17:23 - 2014-01-25 17:23 - 00003136 _____ () C:\Windows\System32\Tasks\{FCB869B7-73EA-45C7-901F-5B3D794814B7} 2014-01-25 17:23 - 2014-01-25 17:23 - 00001117 _____ () C:\Users\Public\Desktop\NewPlayer.lnk 2014-01-25 17:23 - 2014-01-25 17:22 - 00000000 ____D () C:\Program Files (x86)\NewPlayer 2014-01-25 17:23 - 2013-10-25 10:12 - 00000000 ____D () C:\Program Files (x86)\SearchProtect154410881 2014-01-25 17:10 - 2014-01-25 17:09 - 00333896 _____ () C:\Users\Simon\Downloads\Player (1).exe 2014-01-25 16:56 - 2014-01-25 16:56 - 00000000 ____D () C:\ProgramData\WPM 2014-01-25 16:56 - 2014-01-25 16:56 - 00000000 ____D () C:\ProgramData\IePluginService 2014-01-25 16:56 - 2014-01-25 16:56 - 00000000 ____D () C:\Program Files (x86)\SupTab 2014-01-25 16:55 - 2013-05-09 21:14 - 00001341 _____ () C:\Users\Simon\Desktop\Mozilla Firefox.lnk 2014-01-25 16:55 - 2011-12-25 11:52 - 00001607 _____ () C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-01-25 16:53 - 2014-01-25 16:53 - 00330904 _____ () C:\Users\Simon\Downloads\Java (7).exe 2014-01-23 16:32 - 2014-01-23 16:14 - 00000921 _____ () C:\Users\Public\Desktop\Steam.lnk 2014-01-23 16:08 - 2014-01-23 16:08 - 01588224 _____ () C:\Users\Simon\Downloads\steam-009-multi.msi 2014-01-22 20:31 - 2012-09-25 18:24 - 00000000 ____D () C:\Users\Simon\Desktop\Spiele 2014-01-22 20:07 - 2009-07-14 03:34 - 70516736 _____ () C:\Windows\system32\config\SOFTWARE.bak 2014-01-22 20:07 - 2009-07-14 03:34 - 18350080 _____ () C:\Windows\system32\config\SYSTEM.bak 2014-01-22 20:07 - 2009-07-14 03:34 - 00024576 _____ () C:\Windows\system32\config\SECURITY.bak 2014-01-22 20:06 - 2013-11-09 13:09 - 00001656 _____ () C:\Windows\system32\ASOROSet.bin 2014-01-22 20:03 - 2009-07-14 03:34 - 00126976 _____ () C:\Windows\system32\config\SAM.bak 2014-01-22 20:01 - 2013-11-09 13:09 - 00000000 ____D () C:\Windows\system32\config\RCCBakup 2014-01-22 18:26 - 2014-01-02 21:14 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-01-22 18:26 - 2013-05-09 21:15 - 00000000 ____D () C:\Users\Simon\AppData\Local\Mozilla 2014-01-22 18:24 - 2013-05-09 21:14 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-01-22 18:23 - 2014-01-22 18:23 - 00000000 ____D () C:\Program Files (x86)\VideoPlayerV3 2014-01-22 18:05 - 2014-01-16 17:27 - 00000284 _____ () C:\Windows\Tasks\RegClean Pro_UPDATES.job 2014-01-19 19:18 - 2013-11-27 16:12 - 00004026 _____ () C:\Windows\System32\Tasks\LaunchApp 2014-01-19 19:11 - 2009-07-14 06:09 - 00000000 ____D () C:\Windows\System32\Tasks\WPD 2014-01-19 19:07 - 2009-07-14 05:45 - 00395432 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-01-19 17:53 - 2013-07-16 10:09 - 00000000 ____D () C:\Windows\system32\MRT 2014-01-19 17:41 - 2011-08-29 18:49 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-01-16 21:20 - 2014-01-16 21:20 - 00000000 ____D () C:\Crash 2014-01-16 17:36 - 2014-01-09 17:29 - 00000000 ____D () C:\Program Files (x86)\Mobogenie 2014-01-16 17:36 - 2013-12-31 17:13 - 00000000 ____D () C:\Users\Simon\AppData\Local\Mobogenie 2014-01-16 17:32 - 2012-07-27 18:06 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\Systweak 2014-01-16 17:30 - 2014-01-16 17:30 - 00000000 ____D () C:\Users\Simon\Documents\Mobogenie 2014-01-16 17:30 - 2013-12-31 17:13 - 00000000 ____D () C:\Users\Simon\AppData\Local\genienext 2014-01-16 17:27 - 2014-01-16 17:27 - 00003026 _____ () C:\Windows\System32\Tasks\RegClean Pro_UPDATES 2014-01-16 17:27 - 2014-01-16 17:27 - 00002870 _____ () C:\Windows\System32\Tasks\RegClean Pro_DEFAULT 2014-01-16 17:27 - 2014-01-16 17:27 - 00001054 _____ () C:\Users\Public\Desktop\RegClean Pro.lnk 2014-01-16 17:27 - 2014-01-16 17:27 - 00000000 ____D () C:\Program Files (x86)\RegClean Pro 2014-01-16 17:26 - 2014-01-16 17:26 - 00003232 _____ () C:\Windows\System32\Tasks\Digital Sites 2014-01-16 17:26 - 2014-01-16 17:26 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\DigitalSites 2014-01-16 17:25 - 2014-01-16 17:25 - 00703928 _____ () C:\Users\Simon\Downloads\DownloadAcceleratorSetup.exe 2014-01-16 17:01 - 2014-01-16 17:01 - 00002555 _____ () C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PlanetSide 2 PSG.lnk 2014-01-16 16:59 - 2014-01-16 16:59 - 20095616 _____ () C:\Users\Simon\Downloads\PS2_PSG_setup.exe 2014-01-16 16:55 - 2014-01-16 16:55 - 00000000 ____D () C:\Users\Simon\AppData\Local\SCE 2014-01-16 16:55 - 2013-10-25 10:12 - 00000540 _____ () C:\END 2014-01-16 16:50 - 2014-01-16 16:50 - 00000000 ____D () C:\Users\Public\Sony Online Entertainment 2014-01-16 16:47 - 2014-01-16 16:46 - 20105448 _____ () C:\Users\Simon\Downloads\PS2_setup.exe 2014-01-13 17:28 - 2013-07-16 18:11 - 00000000 ____D () C:\Program Files (x86)\HomeTab 2014-01-12 14:00 - 2013-10-25 10:19 - 01594892 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-01-10 13:25 - 2013-05-14 16:43 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\.minecraft 2014-01-09 17:31 - 2014-01-09 17:31 - 00003484 _____ () C:\Windows\System32\Tasks\UpdateVO 2014-01-09 17:31 - 2014-01-09 17:31 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\VOPackage 2014-01-09 17:31 - 2013-12-31 17:13 - 00000068 _____ () C:\Users\Simon\daemonprocess.txt 2014-01-09 17:26 - 2014-01-09 17:26 - 00660232 _____ (VLC Player) C:\Users\Simon\Downloads\FlvPlayer (1).exe 2014-01-09 17:25 - 2014-01-09 17:25 - 00660232 _____ (VLC Player) C:\Users\Simon\Downloads\FlvPlayer.exe 2014-01-09 16:33 - 2014-01-09 16:33 - 00000000 ____D () C:\ProgramData\Oracle 2014-01-09 16:31 - 2014-01-09 16:32 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-01-09 16:31 - 2014-01-09 16:31 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-01-09 16:31 - 2014-01-09 16:31 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-01-09 16:31 - 2014-01-09 16:31 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-01-09 16:31 - 2014-01-09 16:31 - 00000000 ____D () C:\Program Files (x86)\Java 2014-01-09 16:30 - 2014-01-09 16:29 - 25842736 _____ (Microsoft Corporation) C:\Users\Simon\Downloads\wmp11-windowsxp-x86-DE-DE.exe 2014-01-09 16:29 - 2014-01-09 16:28 - 29040552 _____ (Oracle Corporation) C:\Users\Simon\Downloads\jre-7u45-windows-i586.exe 2014-01-09 16:17 - 2014-01-09 16:17 - 00475168 _____ () C:\Users\Simon\Downloads\Java (6).exe 2014-01-09 16:17 - 2014-01-09 16:17 - 00475168 _____ () C:\Users\Simon\Downloads\Java (5).exe 2014-01-09 06:14 - 2013-07-16 18:11 - 00033864 _____ () C:\Windows\Launcher.exe 2014-01-06 15:33 - 2014-01-06 15:33 - 00000000 _____ () C:\Windows\system32\config\SYSTEM.sav.LOG 2014-01-05 23:39 - 2013-10-25 10:14 - 00001037 _____ () C:\Users\Public\Desktop\VideoPlayer.lnk 2014-01-05 23:35 - 2014-01-05 23:35 - 00481376 _____ () C:\Users\Simon\Downloads\Player.exe 2014-01-05 23:01 - 2014-01-05 23:01 - 00481328 _____ () C:\Users\Simon\Downloads\Java (4).exe Files to move or delete: ==================== C:\Users\Public\AlexaNSISPlugin.3228.dll C:\Users\Simon\xobglu16.dll C:\Users\Simon\xobglu32.dll Some content of TEMP: ==================== C:\Users\Daniel\AppData\Local\Temp\AskSLib.dll C:\Users\Daniel\AppData\Local\Temp\avgnt.exe C:\Users\Simon\AppData\Local\Temp\avgnt.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-01-27 19:55 ==================== End Of Log ============================ --- --- --- |
04.02.2014, 13:45 | #4 |
/// the machine /// TB-Ausbilder | Lollipop Network, S.L. Passt, die brauch ich im Moment nicht Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Lollipop Network, S.L. |
antwort, beitrag, dateien, deinstalliere, forum, funktionen, gefunde, gestern, gesuch, gesucht, guten, hoffe, inter, interne, internet, konnte, lollipop, lollipop network, lollipop network entfernen, network, problem, programme, programme und funktionen, systems, systemsteuerung, textdateien, trojaner, weiterhelfen |