|
Log-Analyse und Auswertung: Windows 7 Tastertur setzt aus, Internet deaktiviert sich, Spiel minimiert sichWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
27.01.2014, 17:14 | #1 |
| Windows 7 Tastertur setzt aus, Internet deaktiviert sich, Spiel minimiert sich Hallo, ich habe seit heute folgende Probleme: - wenn ich etwas schreibe setzt die Tastertur manchmal einfach aus - hin und wieder deaktiviert sich die Internetverbindung und ich muss mich neu einloggen - wenn ich im das Onlinespiel Tera spielen will minimiert es sich immer wieder von alleine (bei anderen Spielen habe ich es noch nicht versucht) Alle diese Dinge funktionierten vor 2 Tagen noch problemlos. Die letzten beiden Programme die ich vor Beginn der Probleme installiert habe sind Skype und VLC Player. Aber beide Programme habe ich problemlos nutzen können. Code:
ATTFilter defogger_disable by jpshortstuff (23.02.10.1) Log created at 16:37 on 27/01/2014 (Ismir Uebel) Checking for autostart values... HKCU\~\Run values retrieved. HKLM\~\Run values retrieved. Checking for services/drivers... -=E.O.F=- FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 27-01-2014 Ran by Ismir Uebel (administrator) on ISMIRUEBEL-PC on 27-01-2014 16:38:16 Running from C:\Users\Ismir Uebel\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\psia.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Panda Security) C:\Program Files (x86)\Panda USB Vaccine\USBVaccine.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe () C:\Program Files (x86)\TP-LINK\TP-LINK-Konfigurationstool\TWCU.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe ==================== Registry (Whitelisted) ================== HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\avastUI.exe [4858968 2013-05-09] (AVAST Software) HKLM-x32\...\Run: [SDTray] - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [5624784 2013-07-25] (Safer-Networking Ltd.) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKCU\...\Run: [Spybot-S&D Cleaning] - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [3666224 2013-09-20] (Safer-Networking Ltd.) HKCU\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKCU\...\Policies\system: [LogonHoursAction] 2 HKU\täglicher Gebrauch\...\Policies\system: [LogonHoursAction] 2 HKU\täglicher Gebrauch\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x300A30D0C10BCE01 SearchScopes: HKLM - DefaultScope value is missing. BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Ismir Uebel\AppData\Roaming\Mozilla\Firefox\Profiles\n5e0hy97.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_43.dll () FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin: @java.com/DTPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_43.dll () FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll (DivX, LLC) FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @videolan.org/vlc,version=2.1.2 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npwachk.dll (Nullsoft, Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: WOT - C:\Users\Ismir Uebel\AppData\Roaming\Mozilla\Firefox\Profiles\n5e0hy97.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2013-11-27] FF Extension: DownloadHelper - C:\Users\Ismir Uebel\AppData\Roaming\Mozilla\Firefox\Profiles\n5e0hy97.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2013-08-28] FF Extension: NoScript - C:\Users\Ismir Uebel\AppData\Roaming\Mozilla\Firefox\Profiles\n5e0hy97.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2013-05-29] FF Extension: Adblock Plus - C:\Users\Ismir Uebel\AppData\Roaming\Mozilla\Firefox\Profiles\n5e0hy97.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-05-29] FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-04-18] ==================== Services (Whitelisted) ================= R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808 2013-05-09] (AVAST Software) R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [3921880 2013-10-15] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1042272 2013-09-20] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171416 2013-09-13] (Safer-Networking Ltd.) R2 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1228504 2013-07-03] (Secunia) S2 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [660184 2013-07-03] (Secunia) ==================== Drivers (Whitelisted) ==================== S3 androidusb; C:\Windows\System32\Drivers\androidusb.sys [32768 2010-04-29] (Google Inc) R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [33400 2013-05-09] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [80816 2013-05-09] (AVAST Software) R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [72016 2013-05-09] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65336 2013-05-09] () R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [1030952 2013-06-30] (AVAST Software) R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [378944 2013-06-30] (AVAST Software) R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [64288 2013-05-09] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [189936 2013-06-30] () R3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2013-07-03] (Secunia) R3 RTL8192cu; C:\Windows\System32\DRIVERS\RTL8192cu.sys [926824 2012-10-25] (Realtek Semiconductor Corporation ) R3 trustms; C:\Windows\System32\drivers\trustms.sys [12416 2010-11-15] () ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-01-27 16:38 - 2014-01-27 16:38 - 00010320 _____ C:\Users\Ismir Uebel\Desktop\FRST.txt 2014-01-27 16:37 - 2014-01-27 16:37 - 00000484 _____ C:\Users\Ismir Uebel\Desktop\defogger_disable.log 2014-01-27 16:37 - 2014-01-21 21:56 - 00380416 _____ C:\Users\Ismir Uebel\Desktop\gmer.exe 2014-01-27 16:30 - 2014-01-27 16:30 - 02078208 _____ (Farbar) C:\Users\Ismir Uebel\Desktop\FRST64.exe 2014-01-27 16:29 - 2014-01-27 16:29 - 00000000 _____ C:\Windows\setuperr.log 2014-01-27 16:29 - 2014-01-27 16:29 - 00000000 _____ C:\Windows\setupact.log 2014-01-27 16:28 - 2014-01-27 16:28 - 00050477 _____ C:\Users\Ismir Uebel\Desktop\Defogger.exe 2014-01-27 15:18 - 2014-01-27 15:18 - 00001379 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2014-01-27 15:18 - 2014-01-27 15:18 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking 2014-01-27 15:18 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe 2014-01-27 15:17 - 2014-01-27 15:47 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2014-01-27 15:17 - 2014-01-27 15:31 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2014-01-27 15:16 - 2014-01-27 15:16 - 40658208 _____ (Safer-Networking Ltd. ) C:\Users\Ismir Uebel\Downloads\spybot-2.2.25.exe 2014-01-27 15:02 - 2014-01-27 15:02 - 00002784 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC 2014-01-27 15:02 - 2014-01-27 15:02 - 00000822 _____ C:\Users\Public\Desktop\CCleaner.lnk 2014-01-27 15:02 - 2014-01-27 15:02 - 00000000 ____D C:\Program Files\CCleaner 2014-01-27 15:00 - 2014-01-27 15:00 - 03571656 _____ (Piriform Ltd) C:\Users\Ismir Uebel\Downloads\ccsetup409_slim.exe 2014-01-25 18:00 - 2014-01-25 19:49 - 00000000 ____D C:\Users\Ismir Uebel\AppData\Roaming\vlc 2014-01-25 18:00 - 2014-01-25 18:00 - 00001066 _____ C:\Users\Public\Desktop\VLC media player.lnk 2014-01-25 18:00 - 2014-01-25 18:00 - 00000000 ____D C:\Program Files (x86)\VideoLAN 2014-01-25 17:59 - 2014-01-25 17:59 - 24097311 _____ C:\Users\Ismir Uebel\Downloads\vlc-2.1.2-win32.exe 2014-01-25 16:09 - 2014-01-26 22:59 - 00000000 ____D C:\Users\Ismir Uebel\AppData\Roaming\Skype 2014-01-25 16:09 - 2014-01-25 16:09 - 00002699 _____ C:\Users\Public\Desktop\Skype.lnk 2014-01-25 16:09 - 2014-01-25 16:09 - 00000000 ___RD C:\Program Files (x86)\Skype 2014-01-25 16:09 - 2014-01-25 16:09 - 00000000 ____D C:\Users\Ismir Uebel\AppData\Local\Skype 2014-01-25 16:09 - 2014-01-25 16:09 - 00000000 ____D C:\ProgramData\Skype 2014-01-25 16:08 - 2014-01-25 16:08 - 01659552 _____ (Skype Technologies S.A.) C:\Users\Ismir Uebel\Downloads\SkypeSetup.exe 2014-01-24 16:14 - 2014-01-24 16:14 - 00023940 _____ C:\Users\Ismir Uebel\AppData\Local\recently-used.xbel 2014-01-24 14:49 - 2014-01-24 14:49 - 00063158 _____ C:\Users\Ismir Uebel\Downloads\cocksure.zip 2014-01-24 14:39 - 2014-01-24 16:14 - 00000000 ____D C:\Users\Ismir Uebel\Desktop\gutschein tim 2014-01-24 12:15 - 2014-01-24 12:34 - 00000000 ____D C:\Users\Ismir Uebel\Desktop\fb bilder 2014-01-21 20:55 - 2014-01-21 20:55 - 00000000 ____D C:\Users\Ismir Uebel\Desktop\arni rules 2014-01-19 17:07 - 2014-01-19 17:08 - 119273352 _____ C:\Users\Ismir Uebel\Downloads\TickTickBoom - HERZ-SCHLAG.zip 2014-01-19 11:21 - 2014-01-19 11:21 - 30796712 _____ (Oracle Corporation) C:\Users\Ismir Uebel\Downloads\jre-7u51-windows-x64(1).exe 2014-01-17 19:27 - 2014-01-17 19:27 - 00312744 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-01-17 19:27 - 2014-01-17 19:27 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-01-17 19:27 - 2014-01-17 19:27 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-01-17 19:27 - 2014-01-17 19:27 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2014-01-17 19:27 - 2014-01-17 19:27 - 00000000 ____D C:\Program Files\Java 2014-01-17 19:25 - 2014-01-17 19:26 - 30796712 _____ (Oracle Corporation) C:\Users\Ismir Uebel\Downloads\jre-7u51-windows-x64.exe 2014-01-17 18:40 - 2013-05-10 06:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2014-01-17 18:40 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2014-01-17 18:40 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2014-01-17 18:40 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2014-01-17 18:32 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-01-17 18:32 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2014-01-17 18:32 - 2013-11-23 18:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2014-01-17 18:32 - 2013-10-30 03:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2014-01-17 18:32 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2014-01-16 16:08 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-01-16 16:08 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-01-16 16:08 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-01-16 16:08 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-01-16 16:08 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2014-01-16 16:08 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2014-01-16 16:08 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-01-16 16:08 - 2013-11-26 11:32 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-01-13 22:24 - 2014-01-13 22:24 - 00014838 _____ C:\Users\Ismir Uebel\Desktop\google.csv 2014-01-13 18:12 - 2014-01-13 18:13 - 00000000 ____D C:\Program Files (x86)\mp3DirectCut 2014-01-13 18:12 - 2014-01-13 18:12 - 00300850 _____ C:\Users\Ismir Uebel\Downloads\mp3DC219.exe 2014-01-13 18:12 - 2014-01-13 18:12 - 00001055 _____ C:\Users\Ismir Uebel\Desktop\mp3DirectCut.lnk 2014-01-13 18:02 - 2014-01-13 18:02 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_androidusb_01009.Wdf 2014-01-12 23:18 - 2014-01-12 23:30 - 00000000 ____D C:\Users\Ismir Uebel\Desktop\fb ss 2014-01-06 19:12 - 2014-01-06 19:38 - 79424949 _____ C:\Users\Ismir Uebel\Downloads\Pyro One - Ausgezogen aus Nimmerland (DE, 2013, NOiR).rar 2014-01-05 09:36 - 2014-01-05 10:13 - 113635556 _____ C:\Users\Ismir Uebel\Downloads\TRC - 13 HQ.rar 2014-01-05 09:27 - 2014-01-05 09:34 - 102797501 _____ C:\Users\Ismir Uebel\Downloads\TRCBRGHTLGHTS.zip 2014-01-05 09:26 - 2014-01-05 09:26 - 59350057 _____ C:\Users\Ismir Uebel\Downloads\TRC - Destroy and Rebuild (2007).rar 2014-01-01 13:41 - 2014-01-01 13:41 - 00000355 _____ C:\Users\Ismir Uebel\Computer - Verknüpfung.lnk 2014-01-01 12:33 - 2014-01-01 12:35 - 00000000 ____D C:\Users\Ismir Uebel\Desktop\Bus 2013-12-28 11:56 - 2014-01-21 20:58 - 00000000 ____D C:\Program Files (x86)\TERA 2013-12-28 11:56 - 2013-12-28 11:56 - 00001044 _____ C:\Users\Ismir Uebel\Desktop\TERA.lnk 2013-12-28 11:56 - 2013-12-28 11:56 - 00000000 ____D C:\Users\Ismir Uebel\AppData\Roaming\TERA 2013-12-28 11:55 - 2013-12-28 11:55 - 15366160 _____ (Gameforge Productions GmbH ) C:\Users\Ismir Uebel\Downloads\TERASetup.exe ==================== One Month Modified Files and Folders ======= 2014-01-27 16:38 - 2014-01-27 16:38 - 00010320 _____ C:\Users\Ismir Uebel\Desktop\FRST.txt 2014-01-27 16:37 - 2014-01-27 16:37 - 00000484 _____ C:\Users\Ismir Uebel\Desktop\defogger_disable.log 2014-01-27 16:34 - 2009-07-14 05:45 - 00014928 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-01-27 16:34 - 2009-07-14 05:45 - 00014928 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-01-27 16:30 - 2014-01-27 16:30 - 02078208 _____ (Farbar) C:\Users\Ismir Uebel\Desktop\FRST64.exe 2014-01-27 16:29 - 2014-01-27 16:29 - 00000000 _____ C:\Windows\setuperr.log 2014-01-27 16:29 - 2014-01-27 16:29 - 00000000 _____ C:\Windows\setupact.log 2014-01-27 16:29 - 2013-06-06 08:36 - 00078224 _____ C:\Users\Ismir Uebel\AppData\Local\GDIPFONTCACHEV1.DAT 2014-01-27 16:28 - 2014-01-27 16:28 - 00050477 _____ C:\Users\Ismir Uebel\Desktop\Defogger.exe 2014-01-27 15:47 - 2014-01-27 15:17 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2014-01-27 15:41 - 2013-02-27 21:25 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-01-27 15:31 - 2014-01-27 15:17 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2014-01-27 15:18 - 2014-01-27 15:18 - 00001379 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2014-01-27 15:18 - 2014-01-27 15:18 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking 2014-01-27 15:16 - 2014-01-27 15:16 - 40658208 _____ (Safer-Networking Ltd. ) C:\Users\Ismir Uebel\Downloads\spybot-2.2.25.exe 2014-01-27 15:04 - 2013-07-16 10:48 - 00000000 ____D C:\Users\Ismir Uebel\AppData\Roaming\Winamp 2014-01-27 15:04 - 2013-03-09 15:48 - 00000000 ____D C:\Users\Ismir Uebel\AppData\Roaming\TS3Client 2014-01-27 15:04 - 2013-02-17 12:10 - 00000000 ____D C:\Users\Ismir Uebel\AppData\Roaming\FileZilla 2014-01-27 15:03 - 2013-06-06 08:33 - 00000000 ____D C:\Windows\Minidump 2014-01-27 15:03 - 2013-06-05 23:12 - 00000000 ____D C:\Windows\Panther 2014-01-27 15:02 - 2014-01-27 15:02 - 00002784 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC 2014-01-27 15:02 - 2014-01-27 15:02 - 00000822 _____ C:\Users\Public\Desktop\CCleaner.lnk 2014-01-27 15:02 - 2014-01-27 15:02 - 00000000 ____D C:\Program Files\CCleaner 2014-01-27 15:00 - 2014-01-27 15:00 - 03571656 _____ (Piriform Ltd) C:\Users\Ismir Uebel\Downloads\ccsetup409_slim.exe 2014-01-27 14:54 - 2013-06-05 22:16 - 01951200 _____ C:\Windows\WindowsUpdate.log 2014-01-27 13:20 - 2009-07-14 18:58 - 00699416 _____ C:\Windows\system32\perfh007.dat 2014-01-27 13:20 - 2009-07-14 18:58 - 00149556 _____ C:\Windows\system32\perfc007.dat 2014-01-27 13:20 - 2009-07-14 06:13 - 01620612 _____ C:\Windows\system32\PerfStringBackup.INI 2014-01-27 13:15 - 2013-06-05 22:16 - 00000000 ____D C:\ProgramData\NVIDIA 2014-01-27 13:15 - 2013-04-18 05:32 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2014-01-27 13:15 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2014-01-26 22:59 - 2014-01-25 16:09 - 00000000 ____D C:\Users\Ismir Uebel\AppData\Roaming\Skype 2014-01-25 19:49 - 2014-01-25 18:00 - 00000000 ____D C:\Users\Ismir Uebel\AppData\Roaming\vlc 2014-01-25 18:00 - 2014-01-25 18:00 - 00001066 _____ C:\Users\Public\Desktop\VLC media player.lnk 2014-01-25 18:00 - 2014-01-25 18:00 - 00000000 ____D C:\Program Files (x86)\VideoLAN 2014-01-25 17:59 - 2014-01-25 17:59 - 24097311 _____ C:\Users\Ismir Uebel\Downloads\vlc-2.1.2-win32.exe 2014-01-25 16:09 - 2014-01-25 16:09 - 00002699 _____ C:\Users\Public\Desktop\Skype.lnk 2014-01-25 16:09 - 2014-01-25 16:09 - 00000000 ___RD C:\Program Files (x86)\Skype 2014-01-25 16:09 - 2014-01-25 16:09 - 00000000 ____D C:\Users\Ismir Uebel\AppData\Local\Skype 2014-01-25 16:09 - 2014-01-25 16:09 - 00000000 ____D C:\ProgramData\Skype 2014-01-25 16:08 - 2014-01-25 16:08 - 01659552 _____ (Skype Technologies S.A.) C:\Users\Ismir Uebel\Downloads\SkypeSetup.exe 2014-01-25 15:43 - 2009-07-14 05:45 - 00335768 _____ C:\Windows\system32\FNTCACHE.DAT 2014-01-24 16:14 - 2014-01-24 16:14 - 00023940 _____ C:\Users\Ismir Uebel\AppData\Local\recently-used.xbel 2014-01-24 16:14 - 2014-01-24 14:39 - 00000000 ____D C:\Users\Ismir Uebel\Desktop\gutschein tim 2014-01-24 16:14 - 2013-04-01 11:55 - 00000000 ____D C:\Users\Ismir Uebel\.gimp-2.8 2014-01-24 14:49 - 2014-01-24 14:49 - 00063158 _____ C:\Users\Ismir Uebel\Downloads\cocksure.zip 2014-01-24 14:28 - 2013-02-16 17:17 - 00000000 ____D C:\Users\Ismir Uebel\Desktop\Filme - intern 2014-01-24 12:34 - 2014-01-24 12:15 - 00000000 ____D C:\Users\Ismir Uebel\Desktop\fb bilder 2014-01-23 14:27 - 2013-06-18 14:24 - 00000000 ____D C:\Users\Ismir Uebel\Desktop\untermietvertrag 2014-01-21 21:56 - 2014-01-27 16:37 - 00380416 _____ C:\Users\Ismir Uebel\Desktop\gmer.exe 2014-01-21 20:58 - 2013-12-28 11:56 - 00000000 ____D C:\Program Files (x86)\TERA 2014-01-21 20:55 - 2014-01-21 20:55 - 00000000 ____D C:\Users\Ismir Uebel\Desktop\arni rules 2014-01-20 07:33 - 2013-05-07 18:24 - 00000000 ____D C:\Program Files (x86)\Motorola 2014-01-19 17:08 - 2014-01-19 17:07 - 119273352 _____ C:\Users\Ismir Uebel\Downloads\TickTickBoom - HERZ-SCHLAG.zip 2014-01-19 11:21 - 2014-01-19 11:21 - 30796712 _____ (Oracle Corporation) C:\Users\Ismir Uebel\Downloads\jre-7u51-windows-x64(1).exe 2014-01-17 19:33 - 2013-07-09 08:14 - 01593956 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2014-01-17 19:29 - 2013-03-11 18:51 - 00000000 ____D C:\Users\Ismir Uebel\AppData\Local\Adobe 2014-01-17 19:28 - 2013-02-27 21:25 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-01-17 19:28 - 2013-02-16 01:01 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-01-17 19:28 - 2013-02-16 01:01 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-01-17 19:27 - 2014-01-17 19:27 - 00312744 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-01-17 19:27 - 2014-01-17 19:27 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-01-17 19:27 - 2014-01-17 19:27 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-01-17 19:27 - 2014-01-17 19:27 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2014-01-17 19:27 - 2014-01-17 19:27 - 00000000 ____D C:\Program Files\Java 2014-01-17 19:26 - 2014-01-17 19:25 - 30796712 _____ (Oracle Corporation) C:\Users\Ismir Uebel\Downloads\jre-7u51-windows-x64.exe 2014-01-17 18:29 - 2013-02-16 02:58 - 00000000 ____D C:\Users\Ismir Uebel\Desktop\Ismir 2014-01-16 17:29 - 2013-07-22 10:52 - 00000000 ____D C:\Windows\system32\MRT 2014-01-16 17:28 - 2013-06-06 08:59 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-01-13 22:24 - 2014-01-13 22:24 - 00014838 _____ C:\Users\Ismir Uebel\Desktop\google.csv 2014-01-13 18:13 - 2014-01-13 18:12 - 00000000 ____D C:\Program Files (x86)\mp3DirectCut 2014-01-13 18:12 - 2014-01-13 18:12 - 00300850 _____ C:\Users\Ismir Uebel\Downloads\mp3DC219.exe 2014-01-13 18:12 - 2014-01-13 18:12 - 00001055 _____ C:\Users\Ismir Uebel\Desktop\mp3DirectCut.lnk 2014-01-13 18:02 - 2014-01-13 18:02 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_androidusb_01009.Wdf 2014-01-13 17:45 - 2013-02-16 17:27 - 00000000 ____D C:\Users\Ismir Uebel\dwhelper 2014-01-12 23:30 - 2014-01-12 23:18 - 00000000 ____D C:\Users\Ismir Uebel\Desktop\fb ss 2014-01-06 19:38 - 2014-01-06 19:12 - 79424949 _____ C:\Users\Ismir Uebel\Downloads\Pyro One - Ausgezogen aus Nimmerland (DE, 2013, NOiR).rar 2014-01-05 10:13 - 2014-01-05 09:36 - 113635556 _____ C:\Users\Ismir Uebel\Downloads\TRC - 13 HQ.rar 2014-01-05 09:34 - 2014-01-05 09:27 - 102797501 _____ C:\Users\Ismir Uebel\Downloads\TRCBRGHTLGHTS.zip 2014-01-05 09:26 - 2014-01-05 09:26 - 59350057 _____ C:\Users\Ismir Uebel\Downloads\TRC - Destroy and Rebuild (2007).rar 2014-01-01 13:41 - 2014-01-01 13:41 - 00000355 _____ C:\Users\Ismir Uebel\Computer - Verknüpfung.lnk 2014-01-01 13:41 - 2013-06-05 22:18 - 00000000 ____D C:\Users\Ismir Uebel 2014-01-01 12:35 - 2014-01-01 12:33 - 00000000 ____D C:\Users\Ismir Uebel\Desktop\Bus 2013-12-28 11:56 - 2013-12-28 11:56 - 00001044 _____ C:\Users\Ismir Uebel\Desktop\TERA.lnk 2013-12-28 11:56 - 2013-12-28 11:56 - 00000000 ____D C:\Users\Ismir Uebel\AppData\Roaming\TERA 2013-12-28 11:55 - 2013-12-28 11:55 - 15366160 _____ (Gameforge Productions GmbH ) C:\Users\Ismir Uebel\Downloads\TERASetup.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-01-20 17:44 ==================== End Of Log ============================ --- --- --- Ich hoffe ihr könnt mir helfen. Danke und Gruß Adi p.s.: Auch ebend beim schreiben dieses Themas hat sich die Internetverbindung deaktiviert und sowohl beim schreibe des Textes als auch bei der Eingabe des WLAN Schlüssels setzte die Tastertur aus. (Beides mehrfach) gmer Log zu lang für den Text zu groß als Anhang (131 KB) |
27.01.2014, 23:12 | #2 | |
/// the machine /// TB-Ausbilder | Windows 7 Tastertur setzt aus, Internet deaktiviert sich, Spiel minimiert sich hi,
__________________Combofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!Downloade dir bitte Combofix vom folgenden Downloadspiegel Link 1 WICHTIG - Speichere Combofix auf deinem Desktop
Wenn Combofix fertig ist, wird es eine Logfile erstellen. Bitte poste die C:\Combofix.txt in deiner nächsten Antwort. Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten Zitat:
__________________ |
28.01.2014, 19:25 | #3 |
| Windows 7 Tastertur setzt aus, Internet deaktiviert sich, Spiel minimiert sich erledigt ... aber wieder das problem, dass es zu viele zeichen sind um sie zu posten und die datei zu groß ist um sie anzuhängen.
__________________ |
29.01.2014, 12:02 | #4 |
/// the machine /// TB-Ausbilder | Windows 7 Tastertur setzt aus, Internet deaktiviert sich, Spiel minimiert sich Log in Stücke teilen und mehrere Antworten nutzen
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
29.01.2014, 15:25 | #5 |
| Windows 7 Tastertur setzt aus, Internet deaktiviert sich, Spiel minimiert sich Ok, ich war mir unsicher ob das ok ist, nicht das was verloren geht. Habe jetzt noch einmal alle scanns gemacht und er folgen die Logs: Code:
ATTFilter defogger_disable by jpshortstuff (23.02.10.1) Log created at 14:55 on 29/01/2014 (Ismir Uebel) Checking for autostart values... HKCU\~\Run values retrieved. HKLM\~\Run values retrieved. Checking for services/drivers... -=E.O.F=- FRST Logfile: FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 27-01-2014 Ran by Ismir Uebel (administrator) on ISMIRUEBEL-PC on 29-01-2014 14:56:34 Running from C:\Users\Ismir Uebel\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Panda Security) C:\Program Files (x86)\Panda USB Vaccine\USBVaccine.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\psia.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe ==================== Registry (Whitelisted) ================== HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\avastUI.exe [4858968 2013-05-09] (AVAST Software) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [SDTray] - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [5624784 2013-07-25] (Safer-Networking Ltd.) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKCU\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKCU\...\Policies\system: [LogonHoursAction] 2 HKU\täglicher Gebrauch\...\Policies\system: [LogonHoursAction] 2 HKU\täglicher Gebrauch\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x300A30D0C10BCE01 StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope value is missing. BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Ismir Uebel\AppData\Roaming\Mozilla\Firefox\Profiles\n5e0hy97.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_43.dll () FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin: @java.com/DTPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_43.dll () FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll (DivX, LLC) FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @videolan.org/vlc,version=2.1.2 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npwachk.dll (Nullsoft, Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: WOT - C:\Users\Ismir Uebel\AppData\Roaming\Mozilla\Firefox\Profiles\n5e0hy97.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2013-11-27] FF Extension: DownloadHelper - C:\Users\Ismir Uebel\AppData\Roaming\Mozilla\Firefox\Profiles\n5e0hy97.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2013-08-28] FF Extension: NoScript - C:\Users\Ismir Uebel\AppData\Roaming\Mozilla\Firefox\Profiles\n5e0hy97.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2013-05-29] FF Extension: Adblock Plus - C:\Users\Ismir Uebel\AppData\Roaming\Mozilla\Firefox\Profiles\n5e0hy97.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-05-29] FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-04-18] ==================== Services (Whitelisted) ================= R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808 2013-05-09] (AVAST Software) S2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [3921880 2013-10-15] (Safer-Networking Ltd.) S2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1042272 2013-09-20] (Safer-Networking Ltd.) S2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171416 2013-09-13] (Safer-Networking Ltd.) R2 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1228504 2013-07-03] (Secunia) S2 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [660184 2013-07-03] (Secunia) ==================== Drivers (Whitelisted) ==================== S3 androidusb; C:\Windows\System32\Drivers\androidusb.sys [32768 2010-04-29] (Google Inc) R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [33400 2013-05-09] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [80816 2013-05-09] (AVAST Software) R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [72016 2013-05-09] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65336 2013-05-09] () R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [1030952 2013-06-30] (AVAST Software) R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [378944 2013-06-30] (AVAST Software) R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [64288 2013-05-09] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [189936 2013-06-30] () R3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2013-07-03] (Secunia) R3 RTL8192cu; C:\Windows\System32\DRIVERS\RTL8192cu.sys [926824 2012-10-25] (Realtek Semiconductor Corporation ) R3 trustms; C:\Windows\System32\drivers\trustms.sys [12416 2010-11-15] () U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) S3 catchme; \??\C:\ComboFix\catchme.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-01-29 14:55 - 2014-01-29 14:56 - 00010291 _____ C:\Users\Ismir Uebel\Desktop\FRST.txt 2014-01-29 00:52 - 2014-01-29 00:52 - 00001379 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2014-01-29 00:51 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe 2014-01-28 21:40 - 2014-01-28 21:40 - 00003226 _____ C:\Windows\PFRO.log 2014-01-28 19:16 - 2014-01-28 19:16 - 00138314 _____ C:\ComboFix.txt 2014-01-28 19:07 - 2014-01-28 19:07 - 00000085 _____ C:\Windows\wininit.ini 2014-01-28 19:02 - 2014-01-28 19:02 - 05175619 ____R (Swearware) C:\Users\Ismir Uebel\Desktop\ComboFix.exe 2014-01-27 18:13 - 2014-01-27 18:13 - 00000000 ____D C:\Program Files\WinRAR 2014-01-27 18:10 - 2014-01-27 18:10 - 00000000 ____D C:\ProgramData\Oracle 2014-01-27 18:10 - 2014-01-27 18:09 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-01-27 18:09 - 2014-01-27 18:09 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-01-27 18:09 - 2014-01-27 18:09 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-01-27 18:09 - 2014-01-27 18:09 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-01-27 18:09 - 2014-01-27 18:09 - 00000000 ____D C:\Program Files (x86)\Java 2014-01-27 16:37 - 2014-01-29 14:55 - 00000484 _____ C:\Users\Ismir Uebel\Desktop\defogger_disable.log 2014-01-27 16:37 - 2014-01-21 21:56 - 00380416 _____ C:\Users\Ismir Uebel\Desktop\gmer.exe 2014-01-27 16:30 - 2014-01-27 16:30 - 02078208 _____ (Farbar) C:\Users\Ismir Uebel\Desktop\FRST64.exe 2014-01-27 16:29 - 2014-01-29 14:16 - 00035378 _____ C:\Windows\setupact.log 2014-01-27 16:29 - 2014-01-27 16:29 - 00000000 _____ C:\Windows\setuperr.log 2014-01-27 16:28 - 2014-01-27 16:28 - 00050477 _____ C:\Users\Ismir Uebel\Desktop\Defogger.exe 2014-01-27 15:18 - 2014-01-27 15:18 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking 2014-01-27 15:17 - 2014-01-29 14:49 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2014-01-27 15:17 - 2014-01-29 00:52 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2014-01-27 15:02 - 2014-01-27 15:02 - 00002784 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC 2014-01-27 15:02 - 2014-01-27 15:02 - 00000822 _____ C:\Users\Public\Desktop\CCleaner.lnk 2014-01-27 15:02 - 2014-01-27 15:02 - 00000000 ____D C:\Program Files\CCleaner 2014-01-25 18:00 - 2014-01-25 19:49 - 00000000 ____D C:\Users\Ismir Uebel\AppData\Roaming\vlc 2014-01-25 18:00 - 2014-01-25 18:00 - 00001066 _____ C:\Users\Public\Desktop\VLC media player.lnk 2014-01-25 18:00 - 2014-01-25 18:00 - 00000000 ____D C:\Program Files (x86)\VideoLAN 2014-01-25 16:09 - 2014-01-29 00:10 - 00000000 ____D C:\Users\Ismir Uebel\AppData\Roaming\Skype 2014-01-25 16:09 - 2014-01-25 16:09 - 00002699 _____ C:\Users\Public\Desktop\Skype.lnk 2014-01-25 16:09 - 2014-01-25 16:09 - 00000000 ___RD C:\Program Files (x86)\Skype 2014-01-25 16:09 - 2014-01-25 16:09 - 00000000 ____D C:\Users\Ismir Uebel\AppData\Local\Skype 2014-01-25 16:09 - 2014-01-25 16:09 - 00000000 ____D C:\ProgramData\Skype 2014-01-24 16:14 - 2014-01-24 16:14 - 00023940 _____ C:\Users\Ismir Uebel\AppData\Local\recently-used.xbel 2014-01-24 14:39 - 2014-01-24 16:14 - 00000000 ____D C:\Users\Ismir Uebel\Desktop\gutschein tim 2014-01-24 12:15 - 2014-01-24 12:34 - 00000000 ____D C:\Users\Ismir Uebel\Desktop\fb bilder 2014-01-21 20:55 - 2014-01-21 20:55 - 00000000 ____D C:\Users\Ismir Uebel\Desktop\arni rules 2014-01-17 19:27 - 2014-01-17 19:27 - 00312744 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-01-17 19:27 - 2014-01-17 19:27 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-01-17 19:27 - 2014-01-17 19:27 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-01-17 19:27 - 2014-01-17 19:27 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2014-01-17 19:27 - 2014-01-17 19:27 - 00000000 ____D C:\Program Files\Java 2014-01-17 18:40 - 2013-05-10 06:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2014-01-17 18:40 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2014-01-17 18:40 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2014-01-17 18:40 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2014-01-17 18:32 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-01-17 18:32 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2014-01-17 18:32 - 2013-11-23 18:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2014-01-17 18:32 - 2013-10-30 03:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2014-01-17 18:32 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2014-01-16 16:08 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-01-16 16:08 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-01-16 16:08 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-01-16 16:08 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-01-16 16:08 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2014-01-16 16:08 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2014-01-16 16:08 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-01-16 16:08 - 2013-11-26 11:32 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-01-13 22:24 - 2014-01-13 22:24 - 00014838 _____ C:\Users\Ismir Uebel\Desktop\google.csv 2014-01-13 18:12 - 2014-01-13 18:13 - 00000000 ____D C:\Program Files (x86)\mp3DirectCut 2014-01-13 18:12 - 2014-01-13 18:12 - 00001055 _____ C:\Users\Ismir Uebel\Desktop\mp3DirectCut.lnk 2014-01-13 18:02 - 2014-01-13 18:02 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_androidusb_01009.Wdf 2014-01-12 23:18 - 2014-01-12 23:30 - 00000000 ____D C:\Users\Ismir Uebel\Desktop\fb ss 2014-01-01 13:41 - 2014-01-01 13:41 - 00000355 _____ C:\Users\Ismir Uebel\Computer - Verknüpfung.lnk 2014-01-01 12:33 - 2014-01-01 12:35 - 00000000 ____D C:\Users\Ismir Uebel\Desktop\Bus ==================== One Month Modified Files and Folders ======= 2014-01-29 14:56 - 2014-01-29 14:55 - 00010291 _____ C:\Users\Ismir Uebel\Desktop\FRST.txt 2014-01-29 14:55 - 2014-01-27 16:37 - 00000484 _____ C:\Users\Ismir Uebel\Desktop\defogger_disable.log 2014-01-29 14:55 - 2013-06-05 22:16 - 02025574 _____ C:\Windows\WindowsUpdate.log 2014-01-29 14:49 - 2014-01-27 15:17 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2014-01-29 14:41 - 2013-02-27 21:25 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-01-29 14:28 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF 2014-01-29 14:22 - 2009-07-14 05:45 - 00014928 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-01-29 14:22 - 2009-07-14 05:45 - 00014928 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-01-29 14:21 - 2009-07-14 18:58 - 00699416 _____ C:\Windows\system32\perfh007.dat 2014-01-29 14:21 - 2009-07-14 18:58 - 00149556 _____ C:\Windows\system32\perfc007.dat 2014-01-29 14:21 - 2009-07-14 06:13 - 01620612 _____ C:\Windows\system32\PerfStringBackup.INI 2014-01-29 14:16 - 2014-01-27 16:29 - 00035378 _____ C:\Windows\setupact.log 2014-01-29 14:16 - 2013-06-05 22:16 - 00000000 ____D C:\ProgramData\NVIDIA 2014-01-29 14:16 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2014-01-29 07:21 - 2013-04-18 05:32 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2014-01-29 00:52 - 2014-01-29 00:52 - 00001379 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2014-01-29 00:52 - 2014-01-27 15:17 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2014-01-29 00:10 - 2014-01-25 16:09 - 00000000 ____D C:\Users\Ismir Uebel\AppData\Roaming\Skype 2014-01-28 21:40 - 2014-01-28 21:40 - 00003226 _____ C:\Windows\PFRO.log 2014-01-28 19:16 - 2014-01-28 19:16 - 00138314 _____ C:\ComboFix.txt 2014-01-28 19:16 - 2013-05-28 22:45 - 00000000 ____D C:\Qoobox 2014-01-28 19:14 - 2009-07-14 03:34 - 00000215 _____ C:\Windows\system.ini 2014-01-28 19:07 - 2014-01-28 19:07 - 00000085 _____ C:\Windows\wininit.ini 2014-01-28 19:02 - 2014-01-28 19:02 - 05175619 ____R (Swearware) C:\Users\Ismir Uebel\Desktop\ComboFix.exe 2014-01-27 18:21 - 2013-03-11 18:51 - 00000000 ____D C:\Users\Ismir Uebel\AppData\Local\Adobe 2014-01-27 18:21 - 2013-02-27 21:25 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-01-27 18:21 - 2013-02-16 01:01 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-01-27 18:21 - 2013-02-16 01:01 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-01-27 18:14 - 2013-02-16 17:19 - 00000000 ____D C:\Program Files (x86)\WinRAR 2014-01-27 18:13 - 2014-01-27 18:13 - 00000000 ____D C:\Program Files\WinRAR 2014-01-27 18:13 - 2013-02-16 17:19 - 00000000 ____D C:\Users\Ismir Uebel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-01-27 18:10 - 2014-01-27 18:10 - 00000000 ____D C:\ProgramData\Oracle 2014-01-27 18:09 - 2014-01-27 18:10 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-01-27 18:09 - 2014-01-27 18:09 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-01-27 18:09 - 2014-01-27 18:09 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-01-27 18:09 - 2014-01-27 18:09 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-01-27 18:09 - 2014-01-27 18:09 - 00000000 ____D C:\Program Files (x86)\Java 2014-01-27 17:17 - 2013-07-16 10:48 - 00000000 ____D C:\Users\Ismir Uebel\AppData\Roaming\Winamp 2014-01-27 16:30 - 2014-01-27 16:30 - 02078208 _____ (Farbar) C:\Users\Ismir Uebel\Desktop\FRST64.exe 2014-01-27 16:29 - 2014-01-27 16:29 - 00000000 _____ C:\Windows\setuperr.log 2014-01-27 16:29 - 2013-06-06 08:36 - 00078224 _____ C:\Users\Ismir Uebel\AppData\Local\GDIPFONTCACHEV1.DAT 2014-01-27 16:28 - 2014-01-27 16:28 - 00050477 _____ C:\Users\Ismir Uebel\Desktop\Defogger.exe 2014-01-27 15:18 - 2014-01-27 15:18 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking 2014-01-27 15:04 - 2013-03-09 15:48 - 00000000 ____D C:\Users\Ismir Uebel\AppData\Roaming\TS3Client 2014-01-27 15:04 - 2013-02-17 12:10 - 00000000 ____D C:\Users\Ismir Uebel\AppData\Roaming\FileZilla 2014-01-27 15:03 - 2013-06-06 08:33 - 00000000 ____D C:\Windows\Minidump 2014-01-27 15:03 - 2013-06-05 23:12 - 00000000 ____D C:\Windows\Panther 2014-01-27 15:02 - 2014-01-27 15:02 - 00002784 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC 2014-01-27 15:02 - 2014-01-27 15:02 - 00000822 _____ C:\Users\Public\Desktop\CCleaner.lnk 2014-01-27 15:02 - 2014-01-27 15:02 - 00000000 ____D C:\Program Files\CCleaner 2014-01-25 19:49 - 2014-01-25 18:00 - 00000000 ____D C:\Users\Ismir Uebel\AppData\Roaming\vlc 2014-01-25 18:00 - 2014-01-25 18:00 - 00001066 _____ C:\Users\Public\Desktop\VLC media player.lnk 2014-01-25 18:00 - 2014-01-25 18:00 - 00000000 ____D C:\Program Files (x86)\VideoLAN 2014-01-25 16:09 - 2014-01-25 16:09 - 00002699 _____ C:\Users\Public\Desktop\Skype.lnk 2014-01-25 16:09 - 2014-01-25 16:09 - 00000000 ___RD C:\Program Files (x86)\Skype 2014-01-25 16:09 - 2014-01-25 16:09 - 00000000 ____D C:\Users\Ismir Uebel\AppData\Local\Skype 2014-01-25 16:09 - 2014-01-25 16:09 - 00000000 ____D C:\ProgramData\Skype 2014-01-25 15:43 - 2009-07-14 05:45 - 00335768 _____ C:\Windows\system32\FNTCACHE.DAT 2014-01-24 16:14 - 2014-01-24 16:14 - 00023940 _____ C:\Users\Ismir Uebel\AppData\Local\recently-used.xbel 2014-01-24 16:14 - 2014-01-24 14:39 - 00000000 ____D C:\Users\Ismir Uebel\Desktop\gutschein tim 2014-01-24 16:14 - 2013-04-01 11:55 - 00000000 ____D C:\Users\Ismir Uebel\.gimp-2.8 2014-01-24 14:28 - 2013-02-16 17:17 - 00000000 ____D C:\Users\Ismir Uebel\Desktop\Filme - intern 2014-01-24 12:34 - 2014-01-24 12:15 - 00000000 ____D C:\Users\Ismir Uebel\Desktop\fb bilder 2014-01-23 14:27 - 2013-06-18 14:24 - 00000000 ____D C:\Users\Ismir Uebel\Desktop\untermietvertrag 2014-01-21 21:56 - 2014-01-27 16:37 - 00380416 _____ C:\Users\Ismir Uebel\Desktop\gmer.exe 2014-01-21 20:58 - 2013-12-28 11:56 - 00000000 ____D C:\Program Files (x86)\TERA 2014-01-21 20:55 - 2014-01-21 20:55 - 00000000 ____D C:\Users\Ismir Uebel\Desktop\arni rules 2014-01-20 07:33 - 2013-05-07 18:24 - 00000000 ____D C:\Program Files (x86)\Motorola 2014-01-17 19:33 - 2013-07-09 08:14 - 01593956 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2014-01-17 19:27 - 2014-01-17 19:27 - 00312744 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-01-17 19:27 - 2014-01-17 19:27 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-01-17 19:27 - 2014-01-17 19:27 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-01-17 19:27 - 2014-01-17 19:27 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2014-01-17 19:27 - 2014-01-17 19:27 - 00000000 ____D C:\Program Files\Java 2014-01-17 18:29 - 2013-02-16 02:58 - 00000000 ____D C:\Users\Ismir Uebel\Desktop\Ismir 2014-01-16 17:29 - 2013-07-22 10:52 - 00000000 ____D C:\Windows\system32\MRT 2014-01-16 17:28 - 2013-06-06 08:59 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-01-13 22:24 - 2014-01-13 22:24 - 00014838 _____ C:\Users\Ismir Uebel\Desktop\google.csv 2014-01-13 18:13 - 2014-01-13 18:12 - 00000000 ____D C:\Program Files (x86)\mp3DirectCut 2014-01-13 18:12 - 2014-01-13 18:12 - 00001055 _____ C:\Users\Ismir Uebel\Desktop\mp3DirectCut.lnk 2014-01-13 18:02 - 2014-01-13 18:02 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_androidusb_01009.Wdf 2014-01-13 17:45 - 2013-02-16 17:27 - 00000000 ____D C:\Users\Ismir Uebel\dwhelper 2014-01-12 23:30 - 2014-01-12 23:18 - 00000000 ____D C:\Users\Ismir Uebel\Desktop\fb ss 2014-01-01 13:41 - 2014-01-01 13:41 - 00000355 _____ C:\Users\Ismir Uebel\Computer - Verknüpfung.lnk 2014-01-01 13:41 - 2013-06-05 22:18 - 00000000 ____D C:\Users\Ismir Uebel 2014-01-01 12:35 - 2014-01-01 12:33 - 00000000 ____D C:\Users\Ismir Uebel\Desktop\Bus ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-01-29 07:47 ==================== End Of Log ============================ --- --- --- --- --- --- GMER 1 Teil Code:
ATTFilter GMER 2.1.19355 - hxxp://www.gmer.net Rootkit scan 2014-01-29 15:05:47 Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP2T0L0-3 WDC_WD5000AAKS-00V1A0 rev.05.01D05 465,76GB Running: gmer.exe; Driver: C:\Users\ISMIRU~1\AppData\Local\Temp\kfdiauow.sys ---- User code sections - GMER 2.1 ---- .text C:\Windows\system32\wininit.exe[480] C:\Windows\system32\kernel32.dll!GetBinaryTypeW + 189 0000000076dceecd 1 byte [62] .text C:\Windows\system32\services.exe[548] C:\Windows\system32\kernel32.dll!GetBinaryTypeW + 189 0000000076dceecd 1 byte [62] .text C:\Windows\system32\winlogon.exe[580] C:\Windows\system32\kernel32.dll!GetBinaryTypeW + 189 0000000076dceecd 1 byte [62] .text C:\Windows\system32\svchost.exe[720] C:\Windows\system32\kernel32.dll!GetBinaryTypeW + 189 0000000076dceecd 1 byte [62] .text C:\Windows\system32\nvvsvc.exe[796] C:\Windows\system32\kernel32.dll!GetBinaryTypeW + 189 0000000076dceecd 1 byte [62] .text C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe[820] C:\Windows\syswow64\kernel32.dll!GetBinaryTypeW + 112 000000007595a2ba 1 byte [62] .text C:\Windows\System32\svchost.exe[932] C:\Windows\system32\kernel32.dll!GetBinaryTypeW + 189 0000000076dceecd 1 byte [62] .text C:\Windows\System32\svchost.exe[988] C:\Windows\system32\kernel32.dll!GetBinaryTypeW + 189 0000000076dceecd 1 byte [62] .text C:\Windows\system32\svchost.exe[112] C:\Windows\system32\kernel32.dll!GetBinaryTypeW + 189 0000000076dceecd 1 byte [62] .text C:\Windows\system32\svchost.exe[272] C:\Windows\system32\kernel32.dll!GetBinaryTypeW + 189 0000000076dceecd 1 byte [62] .text C:\Windows\system32\svchost.exe[1120] C:\Windows\system32\kernel32.dll!GetBinaryTypeW + 189 0000000076dceecd 1 byte [62] .text C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe[1228] C:\Windows\system32\kernel32.dll!GetBinaryTypeW + 189 0000000076dceecd 1 byte [62] .text C:\Windows\system32\nvvsvc.exe[1236] C:\Windows\system32\kernel32.dll!GetBinaryTypeW + 189 0000000076dceecd 1 byte [62] .text C:\Windows\Explorer.EXE[1444] C:\Windows\system32\kernel32.dll!GetBinaryTypeW + 189 0000000076dceecd 1 byte [62] .text C:\Windows\System32\spoolsv.exe[1604] C:\Windows\system32\kernel32.dll!GetBinaryTypeW + 189 0000000076dceecd 1 byte [62] .text C:\Windows\system32\svchost.exe[1636] C:\Windows\system32\kernel32.dll!GetBinaryTypeW + 189 0000000076dceecd 1 byte [62] .text C:\Windows\system32\taskhost.exe[1676] C:\Windows\system32\kernel32.dll!GetBinaryTypeW + 189 0000000076dceecd 1 byte [62] .text C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe[1840] C:\Windows\syswow64\kernel32.dll!GetBinaryTypeW + 112 000000007595a2ba 1 byte [62] .text C:\Program Files (x86)\Secunia\PSI\PSIA.exe[2380] C:\Windows\SysWOW64\ntdll.dll!NtAllocateVirtualMemory 000000007708fac0 5 bytes JMP 0000000100030600 .text C:\Program Files (x86)\Secunia\PSI\PSIA.exe[2380] C:\Windows\SysWOW64\ntdll.dll!NtFreeVirtualMemory 000000007708fb58 5 bytes JMP 0000000100030804 .text C:\Program Files (x86)\Secunia\PSI\PSIA.exe[2380] C:\Windows\SysWOW64\ntdll.dll!NtTerminateProcess 000000007708fcb0 5 bytes JMP 0000000100030c0c .text C:\Program Files (x86)\Secunia\PSI\PSIA.exe[2380] C:\Windows\SysWOW64\ntdll.dll!NtProtectVirtualMemory 0000000077090038 5 bytes JMP 0000000100030a08 .text C:\Program Files (x86)\Secunia\PSI\PSIA.exe[2380] C:\Windows\SysWOW64\ntdll.dll!NtSetContextThread 0000000077091920 5 bytes JMP 0000000100030e10 .text C:\Program Files (x86)\Secunia\PSI\PSIA.exe[2380] C:\Windows\SysWOW64\ntdll.dll!LdrLoadDll 00000000770ac4dd 5 bytes JMP 00000001000301f8 .text C:\Program Files (x86)\Secunia\PSI\PSIA.exe[2380] C:\Windows\SysWOW64\ntdll.dll!LdrUnloadDll 00000000770b1287 5 bytes JMP 00000001000303fc .text C:\Program Files (x86)\Secunia\PSI\PSIA.exe[2380] C:\Windows\syswow64\KERNEL32.dll!GetBinaryTypeW + 112 000000007595a2ba 1 byte [62] .text C:\Program Files (x86)\Secunia\PSI\PSIA.exe[2380] C:\Windows\syswow64\USER32.dll!SetWinEventHook 0000000074b1ee09 5 bytes JMP 00000001000901f8 .text C:\Program Files (x86)\Secunia\PSI\PSIA.exe[2380] C:\Windows\syswow64\USER32.dll!UnhookWinEvent 0000000074b23982 5 bytes JMP 00000001000903fc .text C:\Program Files (x86)\Secunia\PSI\PSIA.exe[2380] C:\Windows\syswow64\USER32.dll!SetWindowsHookExW 0000000074b27603 5 bytes JMP 0000000100090804 .text C:\Program Files (x86)\Secunia\PSI\PSIA.exe[2380] C:\Windows\syswow64\USER32.dll!SetWindowsHookExA 0000000074b2835c 5 bytes JMP 0000000100090600 .text C:\Program Files (x86)\Secunia\PSI\PSIA.exe[2380] C:\Windows\syswow64\USER32.dll!UnhookWindowsHookEx 0000000074b3f52b 5 bytes JMP 0000000100090a08 .text C:\Program Files (x86)\Secunia\PSI\PSIA.exe[2380] C:\Windows\SysWOW64\sechost.dll!SetServiceObjectSecurity 00000000750f5181 5 bytes JMP 0000000100151014 .text C:\Program Files (x86)\Secunia\PSI\PSIA.exe[2380] C:\Windows\SysWOW64\sechost.dll!ChangeServiceConfigA 00000000750f5254 5 bytes JMP 0000000100150804 .text C:\Program Files (x86)\Secunia\PSI\PSIA.exe[2380] C:\Windows\SysWOW64\sechost.dll!ChangeServiceConfigW 00000000750f53d5 5 bytes JMP 0000000100150a08 .text C:\Program Files (x86)\Secunia\PSI\PSIA.exe[2380] C:\Windows\SysWOW64\sechost.dll!ChangeServiceConfig2A 00000000750f54c2 5 bytes JMP 0000000100150c0c .text C:\Program Files (x86)\Secunia\PSI\PSIA.exe[2380] C:\Windows\SysWOW64\sechost.dll!ChangeServiceConfig2W 00000000750f55e2 5 bytes JMP 0000000100150e10 .text C:\Program Files (x86)\Secunia\PSI\PSIA.exe[2380] C:\Windows\SysWOW64\sechost.dll!CreateServiceA 00000000750f567c 5 bytes JMP 00000001001501f8 .text C:\Program Files (x86)\Secunia\PSI\PSIA.exe[2380] C:\Windows\SysWOW64\sechost.dll!CreateServiceW 00000000750f589f 5 bytes JMP 00000001001503fc .text C:\Program Files (x86)\Secunia\PSI\PSIA.exe[2380] C:\Windows\SysWOW64\sechost.dll!DeleteService 00000000750f5a22 5 bytes JMP 0000000100150600 .text C:\Program Files (x86)\Secunia\PSI\PSIA.exe[2380] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000077041465 2 bytes [04, 77] .text C:\Program Files (x86)\Secunia\PSI\PSIA.exe[2380] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000770414bb 2 bytes [04, 77] .text ... * 2 .text C:\Windows\system32\svchost.exe[2520] C:\Windows\system32\KERNEL32.dll!GetBinaryTypeW + 189 0000000076dceecd 1 byte [62] .text C:\Windows\system32\svchost.exe[2520] C:\Windows\SYSTEM32\sechost.dll!SetServiceObjectSecurity 000007fefecb6e00 5 bytes JMP 000007ff7ecd1dac .text C:\Windows\system32\svchost.exe[2520] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfigA 000007fefecb6f2c 5 bytes JMP 000007ff7ecd0ecc .text C:\Windows\system32\svchost.exe[2520] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfigW 000007fefecb7220 5 bytes JMP 000007ff7ecd1284 .text C:\Windows\system32\svchost.exe[2520] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfig2A 000007fefecb739c 5 bytes JMP 000007ff7ecd163c .text C:\Windows\system32\svchost.exe[2520] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfig2W 000007fefecb7538 5 bytes JMP 000007ff7ecd19f4 .text C:\Windows\system32\svchost.exe[2520] C:\Windows\SYSTEM32\sechost.dll!CreateServiceA 000007fefecb75e8 5 bytes JMP 000007ff7ecd03a4 .text C:\Windows\system32\svchost.exe[2520] C:\Windows\SYSTEM32\sechost.dll!CreateServiceW 000007fefecb790c 5 bytes JMP 000007ff7ecd075c .text C:\Windows\system32\svchost.exe[2520] C:\Windows\SYSTEM32\sechost.dll!DeleteService 000007fefecb7ab4 5 bytes JMP 000007ff7ecd0b14 .text C:\Windows\System32\svchost.exe[2560] C:\Windows\SYSTEM32\ntdll.dll!LdrUnloadDll 0000000076eb3b10 5 bytes JMP 000000010030075c .text C:\Windows\System32\svchost.exe[2560] C:\Windows\SYSTEM32\ntdll.dll!LdrLoadDll 0000000076eb7ac0 5 bytes JMP 00000001003003a4 .text C:\Windows\System32\svchost.exe[2560] C:\Windows\SYSTEM32\ntdll.dll!NtAllocateVirtualMemory 0000000076ee1430 5 bytes JMP 0000000100300b14 .text C:\Windows\System32\svchost.exe[2560] C:\Windows\SYSTEM32\ntdll.dll!NtFreeVirtualMemory 0000000076ee1490 5 bytes JMP 0000000100300ecc .text C:\Windows\System32\svchost.exe[2560] C:\Windows\SYSTEM32\ntdll.dll!NtTerminateProcess 0000000076ee1570 5 bytes JMP 000000010030163c .text C:\Windows\System32\svchost.exe[2560] C:\Windows\SYSTEM32\ntdll.dll!NtProtectVirtualMemory 0000000076ee17b0 5 bytes JMP 0000000100301284 .text C:\Windows\System32\svchost.exe[2560] C:\Windows\SYSTEM32\ntdll.dll!NtSetContextThread 0000000076ee27e0 5 bytes JMP 00000001003019f4 .text C:\Windows\System32\svchost.exe[2560] C:\Windows\SYSTEM32\sechost.dll!SetServiceObjectSecurity 000007fefecb6e00 5 bytes JMP 000007ff7ecd1dac .text C:\Windows\System32\svchost.exe[2560] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfigA 000007fefecb6f2c 5 bytes JMP 000007ff7ecd0ecc .text C:\Windows\System32\svchost.exe[2560] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfigW 000007fefecb7220 5 bytes JMP 000007ff7ecd1284 .text C:\Windows\System32\svchost.exe[2560] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfig2A 000007fefecb739c 5 bytes JMP 000007ff7ecd163c .text C:\Windows\System32\svchost.exe[2560] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfig2W 000007fefecb7538 5 bytes JMP 000007ff7ecd19f4 .text C:\Windows\System32\svchost.exe[2560] C:\Windows\SYSTEM32\sechost.dll!CreateServiceA 000007fefecb75e8 5 bytes JMP 000007ff7ecd03a4 .text C:\Windows\System32\svchost.exe[2560] C:\Windows\SYSTEM32\sechost.dll!CreateServiceW 000007fefecb790c 5 bytes JMP 000007ff7ecd075c .text C:\Windows\System32\svchost.exe[2560] C:\Windows\SYSTEM32\sechost.dll!DeleteService 000007fefecb7ab4 5 bytes JMP 000007ff7ecd0b14 .text C:\Windows\system32\SearchIndexer.exe[2664] C:\Windows\SYSTEM32\ntdll.dll!LdrUnloadDll 0000000076eb3b10 5 bytes JMP 000000010015075c .text C:\Windows\system32\SearchIndexer.exe[2664] C:\Windows\SYSTEM32\ntdll.dll!LdrLoadDll 0000000076eb7ac0 5 bytes JMP 00000001001503a4 .text C:\Windows\system32\SearchIndexer.exe[2664] C:\Windows\SYSTEM32\ntdll.dll!NtAllocateVirtualMemory 0000000076ee1430 5 bytes JMP 0000000100150b14 .text C:\Windows\system32\SearchIndexer.exe[2664] C:\Windows\SYSTEM32\ntdll.dll!NtFreeVirtualMemory 0000000076ee1490 5 bytes JMP 0000000100150ecc .text C:\Windows\system32\SearchIndexer.exe[2664] C:\Windows\SYSTEM32\ntdll.dll!NtTerminateProcess 0000000076ee1570 5 bytes JMP 000000010015163c .text C:\Windows\system32\SearchIndexer.exe[2664] C:\Windows\SYSTEM32\ntdll.dll!NtProtectVirtualMemory 0000000076ee17b0 5 bytes JMP 0000000100151284 .text C:\Windows\system32\SearchIndexer.exe[2664] C:\Windows\SYSTEM32\ntdll.dll!NtSetContextThread 0000000076ee27e0 5 bytes JMP 00000001001519f4 .text C:\Windows\system32\SearchIndexer.exe[2664] C:\Windows\system32\KERNEL32.dll!GetBinaryTypeW + 189 0000000076dceecd 1 byte [62] .text C:\Windows\system32\SearchIndexer.exe[2664] C:\Windows\SYSTEM32\sechost.dll!SetServiceObjectSecurity 000007fefecb6e00 5 bytes JMP 000007ff7ecd1dac .text C:\Windows\system32\SearchIndexer.exe[2664] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfigA 000007fefecb6f2c 5 bytes JMP 000007ff7ecd0ecc .text C:\Windows\system32\SearchIndexer.exe[2664] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfigW 000007fefecb7220 5 bytes JMP 000007ff7ecd1284 .text C:\Windows\system32\SearchIndexer.exe[2664] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfig2A 000007fefecb739c 5 bytes JMP 000007ff7ecd163c .text C:\Windows\system32\SearchIndexer.exe[2664] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfig2W 000007fefecb7538 5 bytes JMP 000007ff7ecd19f4 .text C:\Windows\system32\SearchIndexer.exe[2664] C:\Windows\SYSTEM32\sechost.dll!CreateServiceA 000007fefecb75e8 5 bytes JMP 000007ff7ecd03a4 .text C:\Windows\system32\SearchIndexer.exe[2664] C:\Windows\SYSTEM32\sechost.dll!CreateServiceW 000007fefecb790c 5 bytes JMP 000007ff7ecd075c .text C:\Windows\system32\SearchIndexer.exe[2664] C:\Windows\SYSTEM32\sechost.dll!DeleteService 000007fefecb7ab4 5 bytes JMP 000007ff7ecd0b14 .text C:\Program Files\NVIDIA Corporation\Display\nvtray.exe[2724] C:\Windows\SYSTEM32\ntdll.dll!LdrUnloadDll 0000000076eb3b10 5 bytes JMP 00000001003a075c .text C:\Program Files\NVIDIA Corporation\Display\nvtray.exe[2724] C:\Windows\SYSTEM32\ntdll.dll!LdrLoadDll 0000000076eb7ac0 5 bytes JMP 00000001003a03a4 .text C:\Program Files\NVIDIA Corporation\Display\nvtray.exe[2724] C:\Windows\SYSTEM32\ntdll.dll!NtAllocateVirtualMemory 0000000076ee1430 5 bytes JMP 00000001003a0b14 .text C:\Program Files\NVIDIA Corporation\Display\nvtray.exe[2724] C:\Windows\SYSTEM32\ntdll.dll!NtFreeVirtualMemory 0000000076ee1490 5 bytes JMP 00000001003a0ecc .text C:\Program Files\NVIDIA Corporation\Display\nvtray.exe[2724] C:\Windows\SYSTEM32\ntdll.dll!NtTerminateProcess 0000000076ee1570 5 bytes JMP 00000001003a163c .text C:\Program Files\NVIDIA Corporation\Display\nvtray.exe[2724] C:\Windows\SYSTEM32\ntdll.dll!NtProtectVirtualMemory 0000000076ee17b0 5 bytes JMP 00000001003a1284 .text C:\Program Files\NVIDIA Corporation\Display\nvtray.exe[2724] C:\Windows\SYSTEM32\ntdll.dll!NtSetContextThread 0000000076ee27e0 5 bytes JMP 00000001003a19f4 .text C:\Program Files\NVIDIA Corporation\Display\nvtray.exe[2724] C:\Windows\system32\KERNEL32.dll!GetBinaryTypeW + 189 0000000076dceecd 1 byte [62] .text C:\Program Files\NVIDIA Corporation\Display\nvtray.exe[2724] C:\Windows\SYSTEM32\sechost.dll!SetServiceObjectSecurity 000007fefecb6e00 5 bytes JMP 000007ff7ecd1dac .text C:\Program Files\NVIDIA Corporation\Display\nvtray.exe[2724] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfigA 000007fefecb6f2c 5 bytes JMP 000007ff7ecd0ecc .text C:\Program Files\NVIDIA Corporation\Display\nvtray.exe[2724] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfigW 000007fefecb7220 5 bytes JMP 000007ff7ecd1284 .text C:\Program Files\NVIDIA Corporation\Display\nvtray.exe[2724] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfig2A 000007fefecb739c 5 bytes JMP 000007ff7ecd163c .text C:\Program Files\NVIDIA Corporation\Display\nvtray.exe[2724] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfig2W 000007fefecb7538 5 bytes JMP 000007ff7ecd19f4 .text C:\Program Files\NVIDIA Corporation\Display\nvtray.exe[2724] C:\Windows\SYSTEM32\sechost.dll!CreateServiceA 000007fefecb75e8 5 bytes JMP 000007ff7ecd03a4 .text C:\Program Files\NVIDIA Corporation\Display\nvtray.exe[2724] C:\Windows\SYSTEM32\sechost.dll!CreateServiceW 000007fefecb790c 5 bytes JMP 000007ff7ecd075c .text C:\Program Files\NVIDIA Corporation\Display\nvtray.exe[2724] C:\Windows\SYSTEM32\sechost.dll!DeleteService 000007fefecb7ab4 5 bytes JMP 000007ff7ecd0b14 .text C:\Windows\System32\rundll32.exe[3336] C:\Windows\SYSTEM32\ntdll.dll!LdrUnloadDll 0000000076eb3b10 5 bytes JMP 000000010030075c .text C:\Windows\System32\rundll32.exe[3336] C:\Windows\SYSTEM32\ntdll.dll!LdrLoadDll 0000000076eb7ac0 5 bytes JMP 00000001003003a4 .text C:\Windows\System32\rundll32.exe[3336] C:\Windows\SYSTEM32\ntdll.dll!NtAllocateVirtualMemory 0000000076ee1430 5 bytes JMP 0000000100300b14 .text C:\Windows\System32\rundll32.exe[3336] C:\Windows\SYSTEM32\ntdll.dll!NtFreeVirtualMemory 0000000076ee1490 5 bytes JMP 0000000100300ecc .text C:\Windows\System32\rundll32.exe[3336] C:\Windows\SYSTEM32\ntdll.dll!NtTerminateProcess 0000000076ee1570 5 bytes JMP 000000010030163c .text C:\Windows\System32\rundll32.exe[3336] C:\Windows\SYSTEM32\ntdll.dll!NtProtectVirtualMemory 0000000076ee17b0 5 bytes JMP 0000000100301284 .text C:\Windows\System32\rundll32.exe[3336] C:\Windows\SYSTEM32\ntdll.dll!NtSetContextThread 0000000076ee27e0 5 bytes JMP 00000001003019f4 .text C:\Windows\System32\rundll32.exe[3336] C:\Windows\system32\KERNEL32.dll!GetBinaryTypeW + 189 0000000076dceecd 1 byte [62] .text C:\Windows\System32\rundll32.exe[3336] C:\Windows\SYSTEM32\sechost.dll!SetServiceObjectSecurity 000007fefecb6e00 5 bytes JMP 000007ff7ecd1dac .text C:\Windows\System32\rundll32.exe[3336] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfigA 000007fefecb6f2c 5 bytes JMP 000007ff7ecd0ecc .text C:\Windows\System32\rundll32.exe[3336] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfigW 000007fefecb7220 5 bytes JMP 000007ff7ecd1284 .text C:\Windows\System32\rundll32.exe[3336] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfig2A 000007fefecb739c 5 bytes JMP 000007ff7ecd163c .text C:\Windows\System32\rundll32.exe[3336] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfig2W 000007fefecb7538 5 bytes JMP 000007ff7ecd19f4 .text C:\Windows\System32\rundll32.exe[3336] C:\Windows\SYSTEM32\sechost.dll!CreateServiceA 000007fefecb75e8 5 bytes JMP 000007ff7ecd03a4 .text C:\Windows\System32\rundll32.exe[3336] C:\Windows\SYSTEM32\sechost.dll!CreateServiceW 000007fefecb790c 5 bytes JMP 000007ff7ecd075c .text C:\Windows\System32\rundll32.exe[3336] C:\Windows\SYSTEM32\sechost.dll!DeleteService 000007fefecb7ab4 5 bytes JMP 000007ff7ecd0b14 .text C:\Program Files\Windows Sidebar\sidebar.exe[3688] C:\Windows\SYSTEM32\ntdll.dll!LdrUnloadDll 0000000076eb3b10 5 bytes JMP 000000010011075c .text C:\Program Files\Windows Sidebar\sidebar.exe[3688] C:\Windows\SYSTEM32\ntdll.dll!LdrLoadDll 0000000076eb7ac0 5 bytes JMP 00000001001103a4 .text C:\Program Files\Windows Sidebar\sidebar.exe[3688] C:\Windows\SYSTEM32\ntdll.dll!NtAllocateVirtualMemory 0000000076ee1430 5 bytes JMP 0000000100110b14 .text C:\Program Files\Windows Sidebar\sidebar.exe[3688] C:\Windows\SYSTEM32\ntdll.dll!NtFreeVirtualMemory 0000000076ee1490 5 bytes JMP 0000000100110ecc .text C:\Program Files\Windows Sidebar\sidebar.exe[3688] C:\Windows\SYSTEM32\ntdll.dll!NtTerminateProcess 0000000076ee1570 5 bytes JMP 000000010011163c .text C:\Program Files\Windows Sidebar\sidebar.exe[3688] C:\Windows\SYSTEM32\ntdll.dll!NtProtectVirtualMemory 0000000076ee17b0 5 bytes JMP 0000000100111284 .text C:\Program Files\Windows Sidebar\sidebar.exe[3688] C:\Windows\SYSTEM32\ntdll.dll!NtSetContextThread 0000000076ee27e0 5 bytes JMP 00000001001119f4 .text C:\Program Files\Windows Sidebar\sidebar.exe[3688] C:\Windows\system32\KERNEL32.dll!GetBinaryTypeW + 189 0000000076dceecd 1 byte [62] .text C:\Program Files\Windows Sidebar\sidebar.exe[3688] C:\Windows\SYSTEM32\sechost.dll!SetServiceObjectSecurity 000007fefecb6e00 5 bytes JMP 000007ff7ecd1dac .text C:\Program Files\Windows Sidebar\sidebar.exe[3688] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfigA 000007fefecb6f2c 5 bytes JMP 000007ff7ecd0ecc .text C:\Program Files\Windows Sidebar\sidebar.exe[3688] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfigW 000007fefecb7220 5 bytes JMP 000007ff7ecd1284 .text C:\Program Files\Windows Sidebar\sidebar.exe[3688] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfig2A 000007fefecb739c 5 bytes JMP 000007ff7ecd163c .text C:\Program Files\Windows Sidebar\sidebar.exe[3688] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfig2W 000007fefecb7538 5 bytes JMP 000007ff7ecd19f4 .text C:\Program Files\Windows Sidebar\sidebar.exe[3688] C:\Windows\SYSTEM32\sechost.dll!CreateServiceA 000007fefecb75e8 5 bytes JMP 000007ff7ecd03a4 .text C:\Program Files\Windows Sidebar\sidebar.exe[3688] C:\Windows\SYSTEM32\sechost.dll!CreateServiceW 000007fefecb790c 5 bytes JMP 000007ff7ecd075c .text C:\Program Files\Windows Sidebar\sidebar.exe[3688] C:\Windows\SYSTEM32\sechost.dll!DeleteService 000007fefecb7ab4 5 bytes JMP 000007ff7ecd0b14 .text C:\Program Files (x86)\Secunia\PSI\psi_tray.exe[3756] C:\Windows\SysWOW64\ntdll.dll!NtAllocateVirtualMemory 000000007708fac0 5 bytes JMP 0000000100030600 .text C:\Program Files (x86)\Secunia\PSI\psi_tray.exe[3756] C:\Windows\SysWOW64\ntdll.dll!NtFreeVirtualMemory 000000007708fb58 5 bytes JMP 0000000100030804 .text C:\Program Files (x86)\Secunia\PSI\psi_tray.exe[3756] C:\Windows\SysWOW64\ntdll.dll!NtTerminateProcess 000000007708fcb0 5 bytes JMP 0000000100030c0c .text C:\Program Files (x86)\Secunia\PSI\psi_tray.exe[3756] C:\Windows\SysWOW64\ntdll.dll!NtProtectVirtualMemory 0000000077090038 5 bytes JMP 0000000100030a08 .text C:\Program Files (x86)\Secunia\PSI\psi_tray.exe[3756] C:\Windows\SysWOW64\ntdll.dll!NtSetContextThread 0000000077091920 5 bytes JMP 0000000100030e10 .text C:\Program Files (x86)\Secunia\PSI\psi_tray.exe[3756] C:\Windows\SysWOW64\ntdll.dll!LdrLoadDll 00000000770ac4dd 5 bytes JMP 00000001000301f8 .text C:\Program Files (x86)\Secunia\PSI\psi_tray.exe[3756] C:\Windows\SysWOW64\ntdll.dll!LdrUnloadDll 00000000770b1287 5 bytes JMP 00000001000303fc .text C:\Program Files (x86)\Secunia\PSI\psi_tray.exe[3756] C:\Windows\syswow64\KERNEL32.dll!GetBinaryTypeW + 112 000000007595a2ba 1 byte [62] .text C:\Program Files (x86)\Secunia\PSI\psi_tray.exe[3756] C:\Windows\syswow64\USER32.dll!SetWinEventHook 0000000074b1ee09 5 bytes JMP 00000001001001f8 .text C:\Program Files (x86)\Secunia\PSI\psi_tray.exe[3756] C:\Windows\syswow64\USER32.dll!UnhookWinEvent 0000000074b23982 5 bytes JMP 00000001001003fc .text C:\Program Files (x86)\Secunia\PSI\psi_tray.exe[3756] C:\Windows\syswow64\USER32.dll!SetWindowsHookExW 0000000074b27603 5 bytes JMP 0000000100100804 .text C:\Program Files (x86)\Secunia\PSI\psi_tray.exe[3756] C:\Windows\syswow64\USER32.dll!SetWindowsHookExA 0000000074b2835c 5 bytes JMP 0000000100100600 .text C:\Program Files (x86)\Secunia\PSI\psi_tray.exe[3756] C:\Windows\syswow64\USER32.dll!UnhookWindowsHookEx 0000000074b3f52b 5 bytes JMP 0000000100100a08 .text C:\Program Files (x86)\Secunia\PSI\psi_tray.exe[3756] C:\Windows\SysWOW64\sechost.dll!SetServiceObjectSecurity 00000000750f5181 5 bytes JMP 0000000100111014 .text C:\Program Files (x86)\Secunia\PSI\psi_tray.exe[3756] C:\Windows\SysWOW64\sechost.dll!ChangeServiceConfigA 00000000750f5254 5 bytes JMP 0000000100110804 .text C:\Program Files (x86)\Secunia\PSI\psi_tray.exe[3756] C:\Windows\SysWOW64\sechost.dll!ChangeServiceConfigW 00000000750f53d5 5 bytes JMP 0000000100110a08 .text C:\Program Files (x86)\Secunia\PSI\psi_tray.exe[3756] C:\Windows\SysWOW64\sechost.dll!ChangeServiceConfig2A 00000000750f54c2 5 bytes JMP 0000000100110c0c .text C:\Program Files (x86)\Secunia\PSI\psi_tray.exe[3756] C:\Windows\SysWOW64\sechost.dll!ChangeServiceConfig2W 00000000750f55e2 5 bytes JMP 0000000100110e10 .text C:\Program Files (x86)\Secunia\PSI\psi_tray.exe[3756] C:\Windows\SysWOW64\sechost.dll!CreateServiceA 00000000750f567c 5 bytes JMP 00000001001101f8 .text C:\Program Files (x86)\Secunia\PSI\psi_tray.exe[3756] C:\Windows\SysWOW64\sechost.dll!CreateServiceW 00000000750f589f 5 bytes JMP 00000001001103fc .text C:\Program Files (x86)\Secunia\PSI\psi_tray.exe[3756] C:\Windows\SysWOW64\sechost.dll!DeleteService 00000000750f5a22 5 bytes JMP 0000000100110600 .text C:\Program Files (x86)\Secunia\PSI\psi_tray.exe[3756] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000077041465 2 bytes [04, 77] .text C:\Program Files (x86)\Secunia\PSI\psi_tray.exe[3756] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000770414bb 2 bytes [04, 77] .text ... * 2 .text C:\Program Files\AVAST Software\Avast\AvastUI.exe[3804] C:\Windows\syswow64\kernel32.dll!GetBinaryTypeW + 112 000000007595a2ba 1 byte [62] .text C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe[3840] C:\Windows\SysWOW64\ntdll.dll!NtAllocateVirtualMemory 000000007708fac0 5 bytes JMP 0000000100030600 .text C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe[3840] C:\Windows\SysWOW64\ntdll.dll!NtFreeVirtualMemory 000000007708fb58 5 bytes JMP 0000000100030804 .text C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe[3840] C:\Windows\SysWOW64\ntdll.dll!NtTerminateProcess 000000007708fcb0 5 bytes JMP 0000000100030c0c .text C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe[3840] C:\Windows\SysWOW64\ntdll.dll!NtProtectVirtualMemory 0000000077090038 5 bytes JMP 0000000100030a08 .text C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe[3840] C:\Windows\SysWOW64\ntdll.dll!NtSetContextThread 0000000077091920 5 bytes JMP 0000000100030e10 .text C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe[3840] C:\Windows\SysWOW64\ntdll.dll!LdrLoadDll 00000000770ac4dd 5 bytes JMP 00000001000301f8 .text C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe[3840] C:\Windows\SysWOW64\ntdll.dll!LdrUnloadDll 00000000770b1287 5 bytes JMP 00000001000303fc .text C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe[3840] C:\Windows\syswow64\KERNEL32.dll!GetBinaryTypeW + 112 000000007595a2ba 1 byte [62] .text C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe[3840] C:\Windows\SysWOW64\sechost.dll!SetServiceObjectSecurity 00000000750f5181 5 bytes JMP 0000000100251014 .text C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe[3840] C:\Windows\SysWOW64\sechost.dll!ChangeServiceConfigA 00000000750f5254 5 bytes JMP 0000000100250804 .text C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe[3840] C:\Windows\SysWOW64\sechost.dll!ChangeServiceConfigW 00000000750f53d5 5 bytes JMP 0000000100250a08 .text C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe[3840] C:\Windows\SysWOW64\sechost.dll!ChangeServiceConfig2A 00000000750f54c2 5 bytes JMP 0000000100250c0c .text C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe[3840] C:\Windows\SysWOW64\sechost.dll!ChangeServiceConfig2W 00000000750f55e2 5 bytes JMP 0000000100250e10 .text C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe[3840] C:\Windows\SysWOW64\sechost.dll!CreateServiceA 00000000750f567c 5 bytes JMP 00000001002501f8 .text C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe[3840] C:\Windows\SysWOW64\sechost.dll!CreateServiceW 00000000750f589f 5 bytes JMP 00000001002503fc .text C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe[3840] C:\Windows\SysWOW64\sechost.dll!DeleteService 00000000750f5a22 5 bytes JMP 0000000100250600 .text C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe[3840] C:\Windows\syswow64\USER32.dll!SetWinEventHook 0000000074b1ee09 5 bytes JMP 00000001002601f8 .text C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe[3840] C:\Windows\syswow64\USER32.dll!UnhookWinEvent 0000000074b23982 5 bytes JMP 00000001002603fc .text C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe[3840] C:\Windows\syswow64\USER32.dll!SetWindowsHookExW 0000000074b27603 5 bytes JMP 0000000100260804 .text C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe[3840] C:\Windows\syswow64\USER32.dll!SetWindowsHookExA 0000000074b2835c 5 bytes JMP 0000000100260600 .text C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe[3840] C:\Windows\syswow64\USER32.dll!UnhookWindowsHookEx 0000000074b3f52b 5 bytes JMP 0000000100260a08 .text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe[3880] C:\Windows\SysWOW64\ntdll.dll!NtAllocateVirtualMemory 000000007708fac0 5 bytes JMP 0000000100030600 .text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe[3880] C:\Windows\SysWOW64\ntdll.dll!NtFreeVirtualMemory 000000007708fb58 5 bytes JMP 0000000100030804 .text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe[3880] C:\Windows\SysWOW64\ntdll.dll!NtTerminateProcess 000000007708fcb0 5 bytes JMP 0000000100030c0c .text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe[3880] C:\Windows\SysWOW64\ntdll.dll!NtProtectVirtualMemory 0000000077090038 5 bytes JMP 0000000100030a08 .text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe[3880] C:\Windows\SysWOW64\ntdll.dll!NtSetContextThread 0000000077091920 5 bytes JMP 0000000100030e10 .text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe[3880] C:\Windows\SysWOW64\ntdll.dll!LdrLoadDll 00000000770ac4dd 5 bytes JMP 00000001000301f8 .text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe[3880] C:\Windows\SysWOW64\ntdll.dll!LdrUnloadDll 00000000770b1287 5 bytes JMP 00000001000303fc .text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe[3880] C:\Windows\syswow64\KERNEL32.dll!GetBinaryTypeW + 112 000000007595a2ba 1 byte [62] .text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe[3880] C:\Windows\syswow64\USER32.dll!SetWinEventHook 0000000074b1ee09 5 bytes JMP 00000001002401f8 .text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe[3880] C:\Windows\syswow64\USER32.dll!UnhookWinEvent 0000000074b23982 5 bytes JMP 00000001002403fc .text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe[3880] C:\Windows\syswow64\USER32.dll!SetWindowsHookExW 0000000074b27603 5 bytes JMP 0000000100240804 .text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe[3880] C:\Windows\syswow64\USER32.dll!SetWindowsHookExA 0000000074b2835c 5 bytes JMP 0000000100240600 .text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe[3880] C:\Windows\syswow64\USER32.dll!UnhookWindowsHookEx 0000000074b3f52b 5 bytes JMP 0000000100240a08 .text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe[3880] C:\Windows\SysWOW64\sechost.dll!SetServiceObjectSecurity 00000000750f5181 5 bytes JMP 0000000100251014 .text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe[3880] C:\Windows\SysWOW64\sechost.dll!ChangeServiceConfigA 00000000750f5254 5 bytes JMP 0000000100250804 .text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe[3880] C:\Windows\SysWOW64\sechost.dll!ChangeServiceConfigW 00000000750f53d5 5 bytes JMP 0000000100250a08 .text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe[3880] C:\Windows\SysWOW64\sechost.dll!ChangeServiceConfig2A 00000000750f54c2 5 bytes JMP 0000000100250c0c .text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe[3880] C:\Windows\SysWOW64\sechost.dll!ChangeServiceConfig2W 00000000750f55e2 5 bytes JMP 0000000100250e10 .text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe[3880] C:\Windows\SysWOW64\sechost.dll!CreateServiceA 00000000750f567c 5 bytes JMP 00000001002501f8 .text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe[3880] C:\Windows\SysWOW64\sechost.dll!CreateServiceW 00000000750f589f 5 bytes JMP 00000001002503fc .text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe[3880] C:\Windows\SysWOW64\sechost.dll!DeleteService 00000000750f5a22 5 bytes JMP 0000000100250600 .text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe[3880] C:\Windows\syswow64\psapi.dll!GetModuleInformation + 69 0000000077041465 2 bytes [04, 77] .text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe[3880] C:\Windows\syswow64\psapi.dll!GetModuleInformation + 155 00000000770414bb 2 bytes [04, 77] .text ... * 2 .text C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe[3780] C:\Windows\SysWOW64\ntdll.dll!NtAllocateVirtualMemory 000000007708fac0 5 bytes JMP 0000000100030600 .text C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe[3780] C:\Windows\SysWOW64\ntdll.dll!NtFreeVirtualMemory 000000007708fb58 5 bytes JMP 0000000100030804 .text C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe[3780] C:\Windows\SysWOW64\ntdll.dll!NtTerminateProcess 000000007708fcb0 5 bytes JMP 0000000100030c0c .text C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe[3780] C:\Windows\SysWOW64\ntdll.dll!NtProtectVirtualMemory 0000000077090038 5 bytes JMP 0000000100030a08 .text C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe[3780] C:\Windows\SysWOW64\ntdll.dll!NtSetContextThread 0000000077091920 5 bytes JMP 0000000100030e10 .text C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe[3780] C:\Windows\SysWOW64\ntdll.dll!LdrLoadDll 00000000770ac4dd 5 bytes JMP 00000001000301f8 .text C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe[3780] C:\Windows\SysWOW64\ntdll.dll!LdrUnloadDll 00000000770b1287 5 bytes JMP 00000001000303fc .text C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe[3780] C:\Windows\syswow64\KERNEL32.dll!GetBinaryTypeW + 112 000000007595a2ba 1 byte [62] .text C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe[3780] C:\Windows\syswow64\USER32.dll!SetWinEventHook 0000000074b1ee09 5 bytes JMP 00000001002001f8 .text C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe[3780] C:\Windows\syswow64\USER32.dll!UnhookWinEvent 0000000074b23982 5 bytes JMP 00000001002003fc .text C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe[3780] C:\Windows\syswow64\USER32.dll!SetWindowsHookExW 0000000074b27603 5 bytes JMP 0000000100200804 .text C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe[3780] C:\Windows\syswow64\USER32.dll!SetWindowsHookExA 0000000074b2835c 5 bytes JMP 0000000100200600 .text C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe[3780] C:\Windows\syswow64\USER32.dll!UnhookWindowsHookEx 0000000074b3f52b 5 bytes JMP 0000000100200a08 .text C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe[3780] C:\Windows\SysWOW64\sechost.dll!SetServiceObjectSecurity 00000000750f5181 5 bytes JMP 0000000100211014 .text C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe[3780] C:\Windows\SysWOW64\sechost.dll!ChangeServiceConfigA 00000000750f5254 5 bytes JMP 0000000100210804 .text C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe[3780] C:\Windows\SysWOW64\sechost.dll!ChangeServiceConfigW 00000000750f53d5 5 bytes JMP 0000000100210a08 .text C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe[3780] C:\Windows\SysWOW64\sechost.dll!ChangeServiceConfig2A 00000000750f54c2 5 bytes JMP 0000000100210c0c .text C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe[3780] C:\Windows\SysWOW64\sechost.dll!ChangeServiceConfig2W 00000000750f55e2 5 bytes JMP 0000000100210e10 .text C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe[3780] C:\Windows\SysWOW64\sechost.dll!CreateServiceA 00000000750f567c 5 bytes JMP 00000001002101f8 .text C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe[3780] C:\Windows\SysWOW64\sechost.dll!CreateServiceW 00000000750f589f 5 bytes JMP 00000001002103fc .text C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe[3780] C:\Windows\SysWOW64\sechost.dll!DeleteService 00000000750f5a22 5 bytes JMP 0000000100210600 .text C:\Windows\System32\svchost.exe[4368] C:\Windows\SYSTEM32\ntdll.dll!LdrUnloadDll 0000000076eb3b10 5 bytes JMP 000000010044075c .text C:\Windows\System32\svchost.exe[4368] C:\Windows\SYSTEM32\ntdll.dll!LdrLoadDll 0000000076eb7ac0 5 bytes JMP 00000001004403a4 .text C:\Windows\System32\svchost.exe[4368] C:\Windows\SYSTEM32\ntdll.dll!NtAllocateVirtualMemory 0000000076ee1430 5 bytes JMP 0000000100440b14 .text C:\Windows\System32\svchost.exe[4368] C:\Windows\SYSTEM32\ntdll.dll!NtFreeVirtualMemory 0000000076ee1490 5 bytes JMP 0000000100440ecc .text C:\Windows\System32\svchost.exe[4368] C:\Windows\SYSTEM32\ntdll.dll!NtTerminateProcess 0000000076ee1570 5 bytes JMP 000000010044163c .text C:\Windows\System32\svchost.exe[4368] C:\Windows\SYSTEM32\ntdll.dll!NtProtectVirtualMemory 0000000076ee17b0 5 bytes JMP 0000000100441284 .text C:\Windows\System32\svchost.exe[4368] C:\Windows\SYSTEM32\ntdll.dll!NtSetContextThread 0000000076ee27e0 5 bytes JMP 00000001004419f4 .text C:\Windows\System32\svchost.exe[4368] C:\Windows\SYSTEM32\sechost.dll!SetServiceObjectSecurity 000007fefecb6e00 5 bytes JMP 000007ff7ecd1dac .text C:\Windows\System32\svchost.exe[4368] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfigA 000007fefecb6f2c 5 bytes JMP 000007ff7ecd0ecc .text C:\Windows\System32\svchost.exe[4368] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfigW 000007fefecb7220 5 bytes JMP 000007ff7ecd1284 .text C:\Windows\System32\svchost.exe[4368] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfig2A 000007fefecb739c 5 bytes JMP 000007ff7ecd163c .text C:\Windows\System32\svchost.exe[4368] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfig2W 000007fefecb7538 5 bytes JMP 000007ff7ecd19f4 .text C:\Windows\System32\svchost.exe[4368] C:\Windows\SYSTEM32\sechost.dll!CreateServiceA 000007fefecb75e8 5 bytes JMP 000007ff7ecd03a4 .text C:\Windows\System32\svchost.exe[4368] C:\Windows\SYSTEM32\sechost.dll!CreateServiceW 000007fefecb790c 5 bytes JMP 000007ff7ecd075c .text C:\Windows\System32\svchost.exe[4368] C:\Windows\SYSTEM32\sechost.dll!DeleteService 000007fefecb7ab4 5 bytes JMP 000007ff7ecd0b14 .text C:\Program Files\Windows Media Player\wmpnetwk.exe[4568] C:\Windows\SYSTEM32\ntdll.dll!LdrUnloadDll 0000000076eb3b10 5 bytes JMP 000000010011075c .text C:\Program Files\Windows Media Player\wmpnetwk.exe[4568] C:\Windows\SYSTEM32\ntdll.dll!LdrLoadDll 0000000076eb7ac0 5 bytes JMP 00000001001103a4 .text C:\Program Files\Windows Media Player\wmpnetwk.exe[4568] C:\Windows\SYSTEM32\ntdll.dll!NtAllocateVirtualMemory 0000000076ee1430 5 bytes JMP 0000000100110b14 .text C:\Program Files\Windows Media Player\wmpnetwk.exe[4568] C:\Windows\SYSTEM32\ntdll.dll!NtFreeVirtualMemory 0000000076ee1490 5 bytes JMP 0000000100110ecc .text C:\Program Files\Windows Media Player\wmpnetwk.exe[4568] C:\Windows\SYSTEM32\ntdll.dll!NtTerminateProcess 0000000076ee1570 5 bytes JMP 000000010011163c .text C:\Program Files\Windows Media Player\wmpnetwk.exe[4568] C:\Windows\SYSTEM32\ntdll.dll!NtProtectVirtualMemory 0000000076ee17b0 5 bytes JMP 0000000100111284 .text C:\Program Files\Windows Media Player\wmpnetwk.exe[4568] C:\Windows\SYSTEM32\ntdll.dll!NtSetContextThread 0000000076ee27e0 5 bytes JMP 00000001001119f4 .text C:\Program Files\Windows Media Player\wmpnetwk.exe[4568] C:\Windows\system32\KERNEL32.dll!GetBinaryTypeW + 189 0000000076dceecd 1 byte [62] .text C:\Program Files\Windows Media Player\wmpnetwk.exe[4568] C:\Windows\SYSTEM32\sechost.dll!SetServiceObjectSecurity 000007fefecb6e00 5 bytes JMP 000007ff7ecd1dac .text C:\Program Files\Windows Media Player\wmpnetwk.exe[4568] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfigA 000007fefecb6f2c 5 bytes JMP 000007ff7ecd0ecc .text C:\Program Files\Windows Media Player\wmpnetwk.exe[4568] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfigW 000007fefecb7220 5 bytes JMP 000007ff7ecd1284 .text C:\Program Files\Windows Media Player\wmpnetwk.exe[4568] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfig2A 000007fefecb739c 5 bytes JMP 000007ff7ecd163c .text C:\Program Files\Windows Media Player\wmpnetwk.exe[4568] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfig2W 000007fefecb7538 5 bytes JMP 000007ff7ecd19f4 .text C:\Program Files\Windows Media Player\wmpnetwk.exe[4568] C:\Windows\SYSTEM32\sechost.dll!CreateServiceA 000007fefecb75e8 5 bytes JMP 000007ff7ecd03a4 .text C:\Program Files\Windows Media Player\wmpnetwk.exe[4568] C:\Windows\SYSTEM32\sechost.dll!CreateServiceW 000007fefecb790c 5 bytes JMP 000007ff7ecd075c .text C:\Program Files\Windows Media Player\wmpnetwk.exe[4568] C:\Windows\SYSTEM32\sechost.dll!DeleteService 000007fefecb7ab4 5 bytes JMP 000007ff7ecd0b14 .text C:\Windows\system32\svchost.exe[5072] C:\Windows\SYSTEM32\sechost.dll!SetServiceObjectSecurity 000007fefecb6e00 5 bytes JMP 000007ff7ecd1dac .text C:\Windows\system32\svchost.exe[5072] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfigA 000007fefecb6f2c 5 bytes JMP 000007ff7ecd0ecc .text C:\Windows\system32\svchost.exe[5072] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfigW 000007fefecb7220 5 bytes JMP 000007ff7ecd1284 .text C:\Windows\system32\svchost.exe[5072] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfig2A 000007fefecb739c 5 bytes JMP 000007ff7ecd163c .text C:\Windows\system32\svchost.exe[5072] C:\Windows\SYSTEM32\sechost.dll!ChangeServiceConfig2W 000007fefecb7538 5 bytes JMP 000007ff7ecd19f4 .text C:\Windows\system32\svchost.exe[5072] C:\Windows\SYSTEM32\sechost.dll!CreateServiceA 000007fefecb75e8 5 bytes JMP 000007ff7ecd03a4 .text C:\Windows\system32\svchost.exe[5072] C:\Windows\SYSTEM32\sechost.dll!CreateServiceW 000007fefecb790c 5 bytes JMP 000007ff7ecd075c .text C:\Windows\system32\svchost.exe[5072] C:\Windows\SYSTEM32\sechost.dll!DeleteService 000007fefecb7ab4 5 bytes JMP 000007ff7ecd0b14 .text C:\Windows\system32\AUDIODG.EXE[5004] C:\Windows\System32\kernel32.dll!GetBinaryTypeW + 189 0000000076dceecd 1 byte [62] .text C:\Users\Ismir Uebel\Desktop\gmer.exe[4036] C:\Windows\syswow64\kernel32.dll!GetBinaryTypeW + 112 000000007595a2ba 1 byte [62] |
29.01.2014, 15:27 | #6 |
| Windows 7 Tastertur setzt aus, Internet deaktiviert sich, Spiel minimiert sich GMER 2 Teil Code:
ATTFilter ---- Registry - GMER 2.1 ---- Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs@clbcatq clbcatq.dll Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs@ole32 ole32.dll Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs@advapi32 advapi32.dll Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs@COMDLG32 COMDLG32.dll Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs@DllDirectory %SystemRoot%\system32 Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs@DllDirectory32 %SystemRoot%\syswow64 Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs@gdi32 gdi32.dll Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs@IERTUTIL IERTUTIL.dll Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs@IMAGEHLP IMAGEHLP.dll Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs@IMM32 IMM32.dll Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs@kernel32 kernel32.dll Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs@LPK LPK.dll Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs@MSCTF MSCTF.dll Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs@MSVCRT MSVCRT.dll Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs@NORMALIZ NORMALIZ.dll Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs@NSI NSI.dll Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs@OLEAUT32 OLEAUT32.dll Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs@PSAPI PSAPI.DLL Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs@rpcrt4 rpcrt4.dll Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs@sechost sechost.dll Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs@Setupapi Setupapi.dll Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs@SHELL32 SHELL32.dll Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs@SHLWAPI SHLWAPI.dll Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs@URLMON URLMON.dll Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs@user32 user32.dll Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs@USP10 USP10.dll Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs@WININET WININET.dll Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs@WLDAP32 WLDAP32.dll Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs@WS2_32 WS2_32.dll Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs@DifxApi difxapi.dll Reg HKLM\SYSTEM\CurrentControlSet\services\aswFsBlk@Description avast! mini-filter driver (aswFsBlk) Reg HKLM\SYSTEM\CurrentControlSet\services\aswFsBlk@DisplayName aswFsBlk Reg HKLM\SYSTEM\CurrentControlSet\services\aswFsBlk@Type 2 Reg HKLM\SYSTEM\CurrentControlSet\services\aswFsBlk@Start 2 Reg HKLM\SYSTEM\CurrentControlSet\services\aswFsBlk@ErrorControl 1 Reg HKLM\SYSTEM\CurrentControlSet\services\aswFsBlk@Group FSFilter Activity Monitor Reg HKLM\SYSTEM\CurrentControlSet\services\aswFsBlk@DependOnService FltMgr? Reg HKLM\SYSTEM\CurrentControlSet\services\aswFsBlk@Tag 4 Reg HKLM\SYSTEM\CurrentControlSet\services\aswFsBlk\Instances Reg HKLM\SYSTEM\CurrentControlSet\services\aswFsBlk\Instances@DefaultInstance aswFsBlk Instance Reg HKLM\SYSTEM\CurrentControlSet\services\aswFsBlk\Instances\aswFsBlk Instance Reg HKLM\SYSTEM\CurrentControlSet\services\aswFsBlk\Instances\aswFsBlk Instance@Altitude 388400 Reg HKLM\SYSTEM\CurrentControlSet\services\aswFsBlk\Instances\aswFsBlk Instance@Flags 0 Reg HKLM\SYSTEM\CurrentControlSet\services\aswFsBlk Reg HKLM\SYSTEM\CurrentControlSet\services\aswMonFlt@Description avast! mini-filter driver (aswMonFlt) Reg HKLM\SYSTEM\CurrentControlSet\services\aswMonFlt@DisplayName aswMonFlt Reg HKLM\SYSTEM\CurrentControlSet\services\aswMonFlt@Type 2 Reg HKLM\SYSTEM\CurrentControlSet\services\aswMonFlt@Start 2 Reg HKLM\SYSTEM\CurrentControlSet\services\aswMonFlt@ErrorControl 1 Reg HKLM\SYSTEM\CurrentControlSet\services\aswMonFlt@ImagePath \??\C:\Windows\system32\drivers\aswMonFlt.sys Reg HKLM\SYSTEM\CurrentControlSet\services\aswMonFlt@Group FSFilter Anti-Virus Reg HKLM\SYSTEM\CurrentControlSet\services\aswMonFlt@DependOnService FltMgr? Reg HKLM\SYSTEM\CurrentControlSet\services\aswMonFlt\Instances Reg HKLM\SYSTEM\CurrentControlSet\services\aswMonFlt\Instances@DefaultInstance aswMonFlt Instance Reg HKLM\SYSTEM\CurrentControlSet\services\aswMonFlt\Instances\aswMonFlt Instance Reg HKLM\SYSTEM\CurrentControlSet\services\aswMonFlt\Instances\aswMonFlt Instance@Altitude 320700 Reg HKLM\SYSTEM\CurrentControlSet\services\aswMonFlt\Instances\aswMonFlt Instance@Flags 0 Reg HKLM\SYSTEM\CurrentControlSet\services\aswMonFlt Reg HKLM\SYSTEM\CurrentControlSet\services\aswRdr@Description avast! WFP Redirect driver Reg HKLM\SYSTEM\CurrentControlSet\services\aswRdr@DisplayName aswRdr Reg HKLM\SYSTEM\CurrentControlSet\services\aswRdr@Type 1 Reg HKLM\SYSTEM\CurrentControlSet\services\aswRdr@Start 1 Reg HKLM\SYSTEM\CurrentControlSet\services\aswRdr@ErrorControl 1 Reg HKLM\SYSTEM\CurrentControlSet\services\aswRdr@ImagePath \SystemRoot\System32\Drivers\aswrdr2.sys Reg HKLM\SYSTEM\CurrentControlSet\services\aswRdr@Group PNP_TDI Reg HKLM\SYSTEM\CurrentControlSet\services\aswRdr@DependOnService tcpip? Reg HKLM\SYSTEM\CurrentControlSet\services\aswRdr\Parameters Reg HKLM\SYSTEM\CurrentControlSet\services\aswRdr\Parameters@MSIgnoreLSPDefault Reg HKLM\SYSTEM\CurrentControlSet\services\aswRdr\Parameters@WSIgnoreLSPDefault nl_lsp.dll,imon.dll,xfire_lsp.dll,mslsp.dll,mssplsp.dll,cwhook.dll,spi.dll,bmnet.dll,winsflt.dll Reg HKLM\SYSTEM\CurrentControlSet\services\aswRdr Reg HKLM\SYSTEM\CurrentControlSet\services\aswRvrt@Description avast! Revert Reg HKLM\SYSTEM\CurrentControlSet\services\aswRvrt@DisplayName aswRvrt Reg HKLM\SYSTEM\CurrentControlSet\services\aswRvrt@Type 1 Reg HKLM\SYSTEM\CurrentControlSet\services\aswRvrt@Start 0 Reg HKLM\SYSTEM\CurrentControlSet\services\aswRvrt@ErrorControl 1 Reg HKLM\SYSTEM\CurrentControlSet\services\aswRvrt\Parameters Reg HKLM\SYSTEM\CurrentControlSet\services\aswRvrt\Parameters@BootCounter 385 Reg HKLM\SYSTEM\CurrentControlSet\services\aswRvrt\Parameters@SystemRoot \Device\Harddisk0\Partition1\Windows Reg HKLM\SYSTEM\CurrentControlSet\services\aswRvrt\Parameters@TickCounter 4624696 Reg HKLM\SYSTEM\CurrentControlSet\services\aswRvrt\Parameters@ImproperShutdown 1 Reg HKLM\SYSTEM\CurrentControlSet\services\aswRvrt Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx@Description avast! virtualization driver (aswSnx) Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx@DisplayName aswSnx Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx@Type 2 Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx@Start 1 Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx@ErrorControl 1 Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx@Group FSFilter Virtualization Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx@DependOnService FltMgr? Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx@Tag 3 Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx\Instances Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx\Instances@DefaultInstance aswSnx Instance Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx\Instances\aswSnx Instance Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx\Instances\aswSnx Instance@Altitude 137600 Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx\Instances\aswSnx Instance@Flags 0 Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx\Parameters Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx\Parameters@DataFolder \DosDevices\C:\ProgramData\AVAST Software\Avast Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx\Parameters@ProgramFolder \DosDevices\C:\Program Files\AVAST Software\Avast Reg HKLM\SYSTEM\CurrentControlSet\services\aswSnx Reg HKLM\SYSTEM\CurrentControlSet\services\aswSP@Description avast! Self Protection Reg HKLM\SYSTEM\CurrentControlSet\services\aswSP@DisplayName aswSP Reg HKLM\SYSTEM\CurrentControlSet\services\aswSP@Type 1 Reg HKLM\SYSTEM\CurrentControlSet\services\aswSP@Start 1 Reg HKLM\SYSTEM\CurrentControlSet\services\aswSP@ErrorControl 1 Reg HKLM\SYSTEM\CurrentControlSet\services\aswSP\Parameters Reg HKLM\SYSTEM\CurrentControlSet\services\aswSP\Parameters@BehavShield 1 Reg HKLM\SYSTEM\CurrentControlSet\services\aswSP\Parameters@DataFolder \DosDevices\C:\ProgramData\AVAST Software\Avast Reg HKLM\SYSTEM\CurrentControlSet\services\aswSP\Parameters@GadgetFolder \DosDevices\C:\Program Files\Windows Sidebar\Shared Gadgets\aswSidebar.gadget Reg HKLM\SYSTEM\CurrentControlSet\services\aswSP\Parameters@ProgramFilesFolder \DosDevices\C:\Program Files Reg HKLM\SYSTEM\CurrentControlSet\services\aswSP\Parameters@ProgramFolder \DosDevices\C:\Program Files\AVAST Software\Avast Reg HKLM\SYSTEM\CurrentControlSet\services\aswSP Reg HKLM\SYSTEM\CurrentControlSet\services\aswTdi@Description avast! Network Shield TDI driver Reg HKLM\SYSTEM\CurrentControlSet\services\aswTdi@DisplayName avast! Network Shield Support Reg HKLM\SYSTEM\CurrentControlSet\services\aswTdi@Type 1 Reg HKLM\SYSTEM\CurrentControlSet\services\aswTdi@Start 1 Reg HKLM\SYSTEM\CurrentControlSet\services\aswTdi@ErrorControl 1 Reg HKLM\SYSTEM\CurrentControlSet\services\aswTdi@Group PNP_TDI Reg HKLM\SYSTEM\CurrentControlSet\services\aswTdi@DependOnService tcpip? Reg HKLM\SYSTEM\CurrentControlSet\services\aswTdi@Tag 10 Reg HKLM\SYSTEM\CurrentControlSet\services\aswTdi Reg HKLM\SYSTEM\CurrentControlSet\services\aswVmm@Description avast! VM Monitor Reg HKLM\SYSTEM\CurrentControlSet\services\aswVmm@DisplayName aswVmm Reg HKLM\SYSTEM\CurrentControlSet\services\aswVmm@Type 1 Reg HKLM\SYSTEM\CurrentControlSet\services\aswVmm@Start 0 Reg HKLM\SYSTEM\CurrentControlSet\services\aswVmm@ErrorControl 1 Reg HKLM\SYSTEM\CurrentControlSet\services\aswVmm\Parameters Reg HKLM\SYSTEM\CurrentControlSet\services\aswVmm Reg HKLM\SYSTEM\CurrentControlSet\services\avast! Antivirus@Description Verwaltet und implementiert avast! Antivirus-Dienste f?r diesen Computer. Dies beinhaltet den Echtzeit-Schutz, den Virus-Container und den Planer. Reg HKLM\SYSTEM\CurrentControlSet\services\avast! Antivirus@DisplayName avast! Antivirus Reg HKLM\SYSTEM\CurrentControlSet\services\avast! Antivirus@ServiceSidType 1 Reg HKLM\SYSTEM\CurrentControlSet\services\avast! Antivirus@WOW64 1 Reg HKLM\SYSTEM\CurrentControlSet\services\avast! Antivirus@Type 32 Reg HKLM\SYSTEM\CurrentControlSet\services\avast! Antivirus@Start 2 Reg HKLM\SYSTEM\CurrentControlSet\services\avast! Antivirus@ErrorControl 1 Reg HKLM\SYSTEM\CurrentControlSet\services\avast! Antivirus@ImagePath "C:\Program Files\AVAST Software\Avast\AvastSvc.exe" Reg HKLM\SYSTEM\CurrentControlSet\services\avast! Antivirus@Group ShellSvcGroup Reg HKLM\SYSTEM\CurrentControlSet\services\avast! Antivirus@DependOnService aswMonFlt?RpcSS? Reg HKLM\SYSTEM\CurrentControlSet\services\avast! Antivirus@ObjectName LocalSystem Reg HKLM\SYSTEM\CurrentControlSet\services\avast! Antivirus Reg HKLM\SYSTEM\ControlSet002\Control\Session Manager\KnownDLLs@clbcatq clbcatq.dll Reg HKLM\SYSTEM\ControlSet002\Control\Session Manager\KnownDLLs@ole32 ole32.dll Reg HKLM\SYSTEM\ControlSet002\Control\Session Manager\KnownDLLs@advapi32 advapi32.dll Reg HKLM\SYSTEM\ControlSet002\Control\Session Manager\KnownDLLs@COMDLG32 COMDLG32.dll Reg HKLM\SYSTEM\ControlSet002\Control\Session Manager\KnownDLLs@DllDirectory %SystemRoot%\system32 Reg HKLM\SYSTEM\ControlSet002\Control\Session Manager\KnownDLLs@DllDirectory32 %SystemRoot%\syswow64 Reg HKLM\SYSTEM\ControlSet002\Control\Session Manager\KnownDLLs@gdi32 gdi32.dll Reg HKLM\SYSTEM\ControlSet002\Control\Session Manager\KnownDLLs@IERTUTIL IERTUTIL.dll Reg HKLM\SYSTEM\ControlSet002\Control\Session Manager\KnownDLLs@IMAGEHLP IMAGEHLP.dll Reg HKLM\SYSTEM\ControlSet002\Control\Session Manager\KnownDLLs@IMM32 IMM32.dll Reg HKLM\SYSTEM\ControlSet002\Control\Session Manager\KnownDLLs@kernel32 kernel32.dll Reg HKLM\SYSTEM\ControlSet002\Control\Session Manager\KnownDLLs@LPK LPK.dll Reg HKLM\SYSTEM\ControlSet002\Control\Session Manager\KnownDLLs@MSCTF MSCTF.dll Reg HKLM\SYSTEM\ControlSet002\Control\Session Manager\KnownDLLs@MSVCRT MSVCRT.dll Reg HKLM\SYSTEM\ControlSet002\Control\Session Manager\KnownDLLs@NORMALIZ NORMALIZ.dll Reg HKLM\SYSTEM\ControlSet002\Control\Session Manager\KnownDLLs@NSI NSI.dll Reg HKLM\SYSTEM\ControlSet002\Control\Session Manager\KnownDLLs@OLEAUT32 OLEAUT32.dll Reg HKLM\SYSTEM\ControlSet002\Control\Session Manager\KnownDLLs@PSAPI PSAPI.DLL Reg HKLM\SYSTEM\ControlSet002\Control\Session Manager\KnownDLLs@rpcrt4 rpcrt4.dll Reg HKLM\SYSTEM\ControlSet002\Control\Session Manager\KnownDLLs@sechost sechost.dll Reg HKLM\SYSTEM\ControlSet002\Control\Session Manager\KnownDLLs@Setupapi Setupapi.dll Reg HKLM\SYSTEM\ControlSet002\Control\Session Manager\KnownDLLs@SHELL32 SHELL32.dll Reg HKLM\SYSTEM\ControlSet002\Control\Session Manager\KnownDLLs@SHLWAPI SHLWAPI.dll Reg HKLM\SYSTEM\ControlSet002\Control\Session Manager\KnownDLLs@URLMON URLMON.dll Reg HKLM\SYSTEM\ControlSet002\Control\Session Manager\KnownDLLs@user32 user32.dll Reg HKLM\SYSTEM\ControlSet002\Control\Session Manager\KnownDLLs@USP10 USP10.dll Reg HKLM\SYSTEM\ControlSet002\Control\Session Manager\KnownDLLs@WININET WININET.dll Reg HKLM\SYSTEM\ControlSet002\Control\Session Manager\KnownDLLs@WLDAP32 WLDAP32.dll Reg HKLM\SYSTEM\ControlSet002\Control\Session Manager\KnownDLLs@WS2_32 WS2_32.dll Reg HKLM\SYSTEM\ControlSet002\Control\Session Manager\KnownDLLs@DifxApi difxapi.dll Reg HKLM\SYSTEM\ControlSet002\services\aswFsBlk@Description avast! mini-filter driver (aswFsBlk) Reg HKLM\SYSTEM\ControlSet002\services\aswFsBlk@DisplayName aswFsBlk Reg HKLM\SYSTEM\ControlSet002\services\aswFsBlk@Type 2 Reg HKLM\SYSTEM\ControlSet002\services\aswFsBlk@Start 2 Reg HKLM\SYSTEM\ControlSet002\services\aswFsBlk@ErrorControl 1 Reg HKLM\SYSTEM\ControlSet002\services\aswFsBlk@Group FSFilter Activity Monitor Reg HKLM\SYSTEM\ControlSet002\services\aswFsBlk@DependOnService FltMgr? Reg HKLM\SYSTEM\ControlSet002\services\aswFsBlk@Tag 4 Reg HKLM\SYSTEM\ControlSet002\services\aswFsBlk\Instances (not active ControlSet) Reg HKLM\SYSTEM\ControlSet002\services\aswFsBlk\Instances@DefaultInstance aswFsBlk Instance Reg HKLM\SYSTEM\ControlSet002\services\aswFsBlk\Instances\aswFsBlk Instance (not active ControlSet) Reg HKLM\SYSTEM\ControlSet002\services\aswFsBlk\Instances\aswFsBlk Instance@Altitude 388400 Reg HKLM\SYSTEM\ControlSet002\services\aswFsBlk\Instances\aswFsBlk Instance@Flags 0 Reg HKLM\SYSTEM\ControlSet002\services\aswMonFlt@Description avast! mini-filter driver (aswMonFlt) Reg HKLM\SYSTEM\ControlSet002\services\aswMonFlt@DisplayName aswMonFlt Reg HKLM\SYSTEM\ControlSet002\services\aswMonFlt@Type 2 Reg HKLM\SYSTEM\ControlSet002\services\aswMonFlt@Start 2 Reg HKLM\SYSTEM\ControlSet002\services\aswMonFlt@ErrorControl 1 Reg HKLM\SYSTEM\ControlSet002\services\aswMonFlt@ImagePath \??\C:\Windows\system32\drivers\aswMonFlt.sys Reg HKLM\SYSTEM\ControlSet002\services\aswMonFlt@Group FSFilter Anti-Virus Reg HKLM\SYSTEM\ControlSet002\services\aswMonFlt@DependOnService FltMgr? Reg HKLM\SYSTEM\ControlSet002\services\aswMonFlt\Instances (not active ControlSet) Reg HKLM\SYSTEM\ControlSet002\services\aswMonFlt\Instances@DefaultInstance aswMonFlt Instance Reg HKLM\SYSTEM\ControlSet002\services\aswMonFlt\Instances\aswMonFlt Instance (not active ControlSet) Reg HKLM\SYSTEM\ControlSet002\services\aswMonFlt\Instances\aswMonFlt Instance@Altitude 320700 Reg HKLM\SYSTEM\ControlSet002\services\aswMonFlt\Instances\aswMonFlt Instance@Flags 0 Reg HKLM\SYSTEM\ControlSet002\services\aswRdr@Description avast! WFP Redirect driver Reg HKLM\SYSTEM\ControlSet002\services\aswRdr@DisplayName aswRdr Reg HKLM\SYSTEM\ControlSet002\services\aswRdr@Type 1 Reg HKLM\SYSTEM\ControlSet002\services\aswRdr@Start 1 Reg HKLM\SYSTEM\ControlSet002\services\aswRdr@ErrorControl 1 Reg HKLM\SYSTEM\ControlSet002\services\aswRdr@ImagePath \SystemRoot\System32\Drivers\aswrdr2.sys Reg HKLM\SYSTEM\ControlSet002\services\aswRdr@Group PNP_TDI Reg HKLM\SYSTEM\ControlSet002\services\aswRdr@DependOnService tcpip? Reg HKLM\SYSTEM\ControlSet002\services\aswRdr\Parameters (not active ControlSet) Reg HKLM\SYSTEM\ControlSet002\services\aswRdr\Parameters@MSIgnoreLSPDefault Reg HKLM\SYSTEM\ControlSet002\services\aswRdr\Parameters@WSIgnoreLSPDefault nl_lsp.dll,imon.dll,xfire_lsp.dll,mslsp.dll,mssplsp.dll,cwhook.dll,spi.dll,bmnet.dll,winsflt.dll Reg HKLM\SYSTEM\ControlSet002\services\aswRvrt@Description avast! Revert Reg HKLM\SYSTEM\ControlSet002\services\aswRvrt@DisplayName aswRvrt Reg HKLM\SYSTEM\ControlSet002\services\aswRvrt@Type 1 Reg HKLM\SYSTEM\ControlSet002\services\aswRvrt@Start 0 Reg HKLM\SYSTEM\ControlSet002\services\aswRvrt@ErrorControl 1 Reg HKLM\SYSTEM\ControlSet002\services\aswRvrt\Parameters (not active ControlSet) Reg HKLM\SYSTEM\ControlSet002\services\aswRvrt\Parameters@BootCounter 385 Reg HKLM\SYSTEM\ControlSet002\services\aswRvrt\Parameters@SystemRoot \Device\Harddisk0\Partition1\Windows Reg HKLM\SYSTEM\ControlSet002\services\aswRvrt\Parameters@TickCounter 4624696 Reg HKLM\SYSTEM\ControlSet002\services\aswRvrt\Parameters@ImproperShutdown 1 Reg HKLM\SYSTEM\ControlSet002\services\aswSnx@Description avast! virtualization driver (aswSnx) Reg HKLM\SYSTEM\ControlSet002\services\aswSnx@DisplayName aswSnx Reg HKLM\SYSTEM\ControlSet002\services\aswSnx@Type 2 Reg HKLM\SYSTEM\ControlSet002\services\aswSnx@Start 1 Reg HKLM\SYSTEM\ControlSet002\services\aswSnx@ErrorControl 1 Reg HKLM\SYSTEM\ControlSet002\services\aswSnx@Group FSFilter Virtualization Reg HKLM\SYSTEM\ControlSet002\services\aswSnx@DependOnService FltMgr? Reg HKLM\SYSTEM\ControlSet002\services\aswSnx@Tag 3 Reg HKLM\SYSTEM\ControlSet002\services\aswSnx\Instances (not active ControlSet) Reg HKLM\SYSTEM\ControlSet002\services\aswSnx\Instances@DefaultInstance aswSnx Instance Reg HKLM\SYSTEM\ControlSet002\services\aswSnx\Instances\aswSnx Instance (not active ControlSet) Reg HKLM\SYSTEM\ControlSet002\services\aswSnx\Instances\aswSnx Instance@Altitude 137600 Reg HKLM\SYSTEM\ControlSet002\services\aswSnx\Instances\aswSnx Instance@Flags 0 Reg HKLM\SYSTEM\ControlSet002\services\aswSnx\Parameters (not active ControlSet) Reg HKLM\SYSTEM\ControlSet002\services\aswSnx\Parameters@DataFolder \DosDevices\C:\ProgramData\AVAST Software\Avast Reg HKLM\SYSTEM\ControlSet002\services\aswSnx\Parameters@ProgramFolder \DosDevices\C:\Program Files\AVAST Software\Avast Reg HKLM\SYSTEM\ControlSet002\services\aswSP@Description avast! Self Protection Reg HKLM\SYSTEM\ControlSet002\services\aswSP@DisplayName aswSP Reg HKLM\SYSTEM\ControlSet002\services\aswSP@Type 1 Reg HKLM\SYSTEM\ControlSet002\services\aswSP@Start 1 Reg HKLM\SYSTEM\ControlSet002\services\aswSP@ErrorControl 1 Reg HKLM\SYSTEM\ControlSet002\services\aswSP\Parameters (not active ControlSet) Reg HKLM\SYSTEM\ControlSet002\services\aswSP\Parameters@BehavShield 1 Reg HKLM\SYSTEM\ControlSet002\services\aswSP\Parameters@DataFolder \DosDevices\C:\ProgramData\AVAST Software\Avast Reg HKLM\SYSTEM\ControlSet002\services\aswSP\Parameters@GadgetFolder \DosDevices\C:\Program Files\Windows Sidebar\Shared Gadgets\aswSidebar.gadget Reg HKLM\SYSTEM\ControlSet002\services\aswSP\Parameters@ProgramFilesFolder \DosDevices\C:\Program Files Reg HKLM\SYSTEM\ControlSet002\services\aswSP\Parameters@ProgramFolder \DosDevices\C:\Program Files\AVAST Software\Avast Reg HKLM\SYSTEM\ControlSet002\services\aswTdi@Description avast! Network Shield TDI driver Reg HKLM\SYSTEM\ControlSet002\services\aswTdi@DisplayName avast! Network Shield Support Reg HKLM\SYSTEM\ControlSet002\services\aswTdi@Type 1 Reg HKLM\SYSTEM\ControlSet002\services\aswTdi@Start 1 Reg HKLM\SYSTEM\ControlSet002\services\aswTdi@ErrorControl 1 Reg HKLM\SYSTEM\ControlSet002\services\aswTdi@Group PNP_TDI Reg HKLM\SYSTEM\ControlSet002\services\aswTdi@DependOnService tcpip? Reg HKLM\SYSTEM\ControlSet002\services\aswTdi@Tag 10 Reg HKLM\SYSTEM\ControlSet002\services\aswVmm@Description avast! VM Monitor Reg HKLM\SYSTEM\ControlSet002\services\aswVmm@DisplayName aswVmm Reg HKLM\SYSTEM\ControlSet002\services\aswVmm@Type 1 Reg HKLM\SYSTEM\ControlSet002\services\aswVmm@Start 0 Reg HKLM\SYSTEM\ControlSet002\services\aswVmm@ErrorControl 1 Reg HKLM\SYSTEM\ControlSet002\services\aswVmm\Parameters (not active ControlSet) Reg HKLM\SYSTEM\ControlSet002\services\avast! Antivirus@Description Verwaltet und implementiert avast! Antivirus-Dienste f?r diesen Computer. Dies beinhaltet den Echtzeit-Schutz, den Virus-Container und den Planer. Reg HKLM\SYSTEM\ControlSet002\services\avast! Antivirus@DisplayName avast! Antivirus Reg HKLM\SYSTEM\ControlSet002\services\avast! Antivirus@ServiceSidType 1 Reg HKLM\SYSTEM\ControlSet002\services\avast! Antivirus@WOW64 1 Reg HKLM\SYSTEM\ControlSet002\services\avast! Antivirus@Type 32 Reg HKLM\SYSTEM\ControlSet002\services\avast! Antivirus@Start 2 Reg HKLM\SYSTEM\ControlSet002\services\avast! Antivirus@ErrorControl 1 Reg HKLM\SYSTEM\ControlSet002\services\avast! Antivirus@ImagePath "C:\Program Files\AVAST Software\Avast\AvastSvc.exe" Reg HKLM\SYSTEM\ControlSet002\services\avast! Antivirus@Group ShellSvcGroup Reg HKLM\SYSTEM\ControlSet002\services\avast! Antivirus@DependOnService aswMonFlt?RpcSS? Reg HKLM\SYSTEM\ControlSet002\services\avast! Antivirus@ObjectName LocalSystem Reg HKLM\SYSTEM\ControlSet003\services\aswFsBlk@Description avast! mini-filter driver (aswFsBlk) Reg HKLM\SYSTEM\ControlSet003\services\aswFsBlk@DisplayName aswFsBlk Reg HKLM\SYSTEM\ControlSet003\services\aswFsBlk@Type 2 Reg HKLM\SYSTEM\ControlSet003\services\aswFsBlk@Start 2 Reg HKLM\SYSTEM\ControlSet003\services\aswFsBlk@ErrorControl 1 Reg HKLM\SYSTEM\ControlSet003\services\aswFsBlk@Group FSFilter Activity Monitor Reg HKLM\SYSTEM\ControlSet003\services\aswFsBlk@DependOnService FltMgr? Reg HKLM\SYSTEM\ControlSet003\services\aswFsBlk\Instances (not active ControlSet) Reg HKLM\SYSTEM\ControlSet003\services\aswFsBlk\Instances@DefaultInstance aswFsBlk Instance Reg HKLM\SYSTEM\ControlSet003\services\aswFsBlk\Instances\aswFsBlk Instance (not active ControlSet) Reg HKLM\SYSTEM\ControlSet003\services\aswFsBlk\Instances\aswFsBlk Instance@Altitude 388400 Reg HKLM\SYSTEM\ControlSet003\services\aswFsBlk\Instances\aswFsBlk Instance@Flags 0 Reg HKLM\SYSTEM\ControlSet003\services\aswMonFlt@Description avast! mini-filter driver (aswMonFlt) Reg HKLM\SYSTEM\ControlSet003\services\aswMonFlt@DisplayName aswMonFlt Reg HKLM\SYSTEM\ControlSet003\services\aswMonFlt@Type 2 Reg HKLM\SYSTEM\ControlSet003\services\aswMonFlt@Start 2 Reg HKLM\SYSTEM\ControlSet003\services\aswMonFlt@ErrorControl 1 Reg HKLM\SYSTEM\ControlSet003\services\aswMonFlt@ImagePath \??\C:\Windows\system32\drivers\aswMonFlt.sys Reg HKLM\SYSTEM\ControlSet003\services\aswMonFlt@Group FSFilter Anti-Virus Reg HKLM\SYSTEM\ControlSet003\services\aswMonFlt@DependOnService FltMgr? Reg HKLM\SYSTEM\ControlSet003\services\aswMonFlt\Instances (not active ControlSet) Reg HKLM\SYSTEM\ControlSet003\services\aswMonFlt\Instances@DefaultInstance aswMonFlt Instance Reg HKLM\SYSTEM\ControlSet003\services\aswMonFlt\Instances\aswMonFlt Instance (not active ControlSet) Reg HKLM\SYSTEM\ControlSet003\services\aswMonFlt\Instances\aswMonFlt Instance@Altitude 320700 Reg HKLM\SYSTEM\ControlSet003\services\aswMonFlt\Instances\aswMonFlt Instance@Flags 0 Reg HKLM\SYSTEM\ControlSet003\services\aswRdr@Description avast! WFP Redirect driver Reg HKLM\SYSTEM\ControlSet003\services\aswRdr@DisplayName aswRdr Reg HKLM\SYSTEM\ControlSet003\services\aswRdr@Type 1 Reg HKLM\SYSTEM\ControlSet003\services\aswRdr@Start 1 Reg HKLM\SYSTEM\ControlSet003\services\aswRdr@ErrorControl 1 Reg HKLM\SYSTEM\ControlSet003\services\aswRdr@ImagePath \SystemRoot\System32\Drivers\aswrdr2.sys Reg HKLM\SYSTEM\ControlSet003\services\aswRdr@Group PNP_TDI Reg HKLM\SYSTEM\ControlSet003\services\aswRdr@DependOnService tcpip? Reg HKLM\SYSTEM\ControlSet003\services\aswRdr\Parameters (not active ControlSet) Reg HKLM\SYSTEM\ControlSet003\services\aswRdr\Parameters@MSIgnoreLSPDefault Reg HKLM\SYSTEM\ControlSet003\services\aswRdr\Parameters@WSIgnoreLSPDefault nl_lsp.dll,imon.dll,xfire_lsp.dll,mslsp.dll,mssplsp.dll,cwhook.dll,spi.dll,bmnet.dll,winsflt.dll Reg HKLM\SYSTEM\ControlSet003\services\aswRvrt@Description avast! Revert Reg HKLM\SYSTEM\ControlSet003\services\aswRvrt@DisplayName aswRvrt Reg HKLM\SYSTEM\ControlSet003\services\aswRvrt@Type 1 Reg HKLM\SYSTEM\ControlSet003\services\aswRvrt@Start 0 Reg HKLM\SYSTEM\ControlSet003\services\aswRvrt@ErrorControl 1 Reg HKLM\SYSTEM\ControlSet003\services\aswRvrt\Parameters (not active ControlSet) Reg HKLM\SYSTEM\ControlSet003\services\aswRvrt\Parameters@BootCounter 33 Reg HKLM\SYSTEM\ControlSet003\services\aswRvrt\Parameters@ImproperShutdown 1 Reg HKLM\SYSTEM\ControlSet003\services\aswRvrt\Parameters@SystemRoot \Device\Harddisk0\Partition1\Windows Reg HKLM\SYSTEM\ControlSet003\services\aswRvrt\Parameters@TickCounter 260886 Reg HKLM\SYSTEM\ControlSet003\services\aswSnx@Description avast! virtualization driver (aswSnx) Reg HKLM\SYSTEM\ControlSet003\services\aswSnx@DisplayName aswSnx Reg HKLM\SYSTEM\ControlSet003\services\aswSnx@Type 2 Reg HKLM\SYSTEM\ControlSet003\services\aswSnx@Start 1 Reg HKLM\SYSTEM\ControlSet003\services\aswSnx@ErrorControl 1 Reg HKLM\SYSTEM\ControlSet003\services\aswSnx@Group FSFilter Virtualization Reg HKLM\SYSTEM\ControlSet003\services\aswSnx@DependOnService FltMgr? Reg HKLM\SYSTEM\ControlSet003\services\aswSnx\Instances (not active ControlSet) Reg HKLM\SYSTEM\ControlSet003\services\aswSnx\Instances@DefaultInstance aswSnx Instance Reg HKLM\SYSTEM\ControlSet003\services\aswSnx\Instances\aswSnx Instance (not active ControlSet) Reg HKLM\SYSTEM\ControlSet003\services\aswSnx\Instances\aswSnx Instance@Altitude 137600 Reg HKLM\SYSTEM\ControlSet003\services\aswSnx\Instances\aswSnx Instance@Flags 0 Reg HKLM\SYSTEM\ControlSet003\services\aswSnx\Parameters (not active ControlSet) Reg HKLM\SYSTEM\ControlSet003\services\aswSnx\Parameters@DataFolder \DosDevices\C:\ProgramData\AVAST Software\Avast Reg HKLM\SYSTEM\ControlSet003\services\aswSnx\Parameters@ProgramFolder \DosDevices\C:\Program Files\AVAST Software\Avast Reg HKLM\SYSTEM\ControlSet003\services\aswSP@Description avast! Self Protection Reg HKLM\SYSTEM\ControlSet003\services\aswSP@DisplayName aswSP Reg HKLM\SYSTEM\ControlSet003\services\aswSP@Type 1 Reg HKLM\SYSTEM\ControlSet003\services\aswSP@Start 1 Reg HKLM\SYSTEM\ControlSet003\services\aswSP@ErrorControl 1 Reg HKLM\SYSTEM\ControlSet003\services\aswSP\Parameters (not active ControlSet) Reg HKLM\SYSTEM\ControlSet003\services\aswSP\Parameters@BehavShield 1 Reg HKLM\SYSTEM\ControlSet003\services\aswSP\Parameters@DataFolder \DosDevices\C:\ProgramData\AVAST Software\Avast Reg HKLM\SYSTEM\ControlSet003\services\aswSP\Parameters@GadgetFolder \DosDevices\C:\Program Files\Windows Sidebar\Shared Gadgets\aswSidebar.gadget Reg HKLM\SYSTEM\ControlSet003\services\aswSP\Parameters@ProgramFilesFolder \DosDevices\C:\Program Files Reg HKLM\SYSTEM\ControlSet003\services\aswSP\Parameters@ProgramFolder \DosDevices\C:\Program Files\AVAST Software\Avast Reg HKLM\SYSTEM\ControlSet003\services\aswTdi@Description avast! Network Shield TDI driver Reg HKLM\SYSTEM\ControlSet003\services\aswTdi@DisplayName avast! Network Shield Support Reg HKLM\SYSTEM\ControlSet003\services\aswTdi@Type 1 Reg HKLM\SYSTEM\ControlSet003\services\aswTdi@Start 1 Reg HKLM\SYSTEM\ControlSet003\services\aswTdi@ErrorControl 1 Reg HKLM\SYSTEM\ControlSet003\services\aswTdi@Group PNP_TDI Reg HKLM\SYSTEM\ControlSet003\services\aswTdi@DependOnService tcpip? Reg HKLM\SYSTEM\ControlSet003\services\aswVmm@Description avast! VM Monitor Reg HKLM\SYSTEM\ControlSet003\services\aswVmm@DisplayName aswVmm Reg HKLM\SYSTEM\ControlSet003\services\aswVmm@Type 1 Reg HKLM\SYSTEM\ControlSet003\services\aswVmm@Start 0 Reg HKLM\SYSTEM\ControlSet003\services\aswVmm@ErrorControl 1 Reg HKLM\SYSTEM\ControlSet003\services\aswVmm\Parameters (not active ControlSet) Reg HKLM\SYSTEM\ControlSet003\services\avast! Antivirus@Description Verwaltet und implementiert avast! Antivirus-Dienste f?r diesen Computer. Dies beinhaltet den Echtzeit-Schutz, den Virus-Container und den Planer. Reg HKLM\SYSTEM\ControlSet003\services\avast! Antivirus@DisplayName avast! Antivirus Reg HKLM\SYSTEM\ControlSet003\services\avast! Antivirus@ServiceSidType 1 Reg HKLM\SYSTEM\ControlSet003\services\avast! Antivirus@WOW64 1 Reg HKLM\SYSTEM\ControlSet003\services\avast! Antivirus@Type 32 Reg HKLM\SYSTEM\ControlSet003\services\avast! Antivirus@Start 2 Reg HKLM\SYSTEM\ControlSet003\services\avast! Antivirus@ErrorControl 1 Reg HKLM\SYSTEM\ControlSet003\services\avast! Antivirus@ImagePath "C:\Program Files\AVAST Software\Avast\AvastSvc.exe" Reg HKLM\SYSTEM\ControlSet003\services\avast! Antivirus@Group ShellSvcGroup Reg HKLM\SYSTEM\ControlSet003\services\avast! Antivirus@DependOnService aswMonFlt?RpcSS? Reg HKLM\SYSTEM\ControlSet003\services\avast! Antivirus@ObjectName LocalSystem ---- EOF - GMER 2.1 ---- Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 27-01-2014 Ran by Ismir Uebel at 2014-01-29 14:56:59 Running from C:\Users\Ismir Uebel\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: avast! Antivirus (Disabled - Up to date) {2B2D1395-420B-D5C9-657E-930FE358FC3C} AS: avast! Antivirus (Disabled - Up to date) {904CF271-6431-DA47-5FCE-A87D98DFB681} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Disabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} ==================== Installed Programs ====================== Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.170 - Adobe Systems Incorporated) Adobe Flash Player 12 Plugin (x32 Version: 12.0.0.43 - Adobe Systems Incorporated) Adobe Reader XI (11.0.06) - Deutsch (x32 Version: 11.0.06 - Adobe Systems Incorporated) ANNO 2070 (x32 Version: 1.0.0.0 - Ubisoft) avast! Free Antivirus (x32 Version: 8.0.1489.0 - AVAST Software) CCleaner (Version: 4.09 - Piriform) CDBurnerXP (x32 Version: 4.5.2.4214 - CDBurnerXP) Command & Conquer Die ersten 10 Jahre (x32 Version: 1.00.0000 - Electronic Arts) Die Schlacht um Mittelerde™ II (x32 Version: - ) DivX-Setup (x32 Version: 2.6.1.84 - DivX, LLC) FileZilla Client 3.7.3 (x32 Version: 3.7.3 - Tim Kosse) FLV Player 2.0 (build 25) (x32 Version: 2.0 (build 25) - Martijn de Visser) FormatFactory 3.0.1 (x32 Version: 3.0.1 - Free Time) GIMP 2.8.4 (Version: 2.8.4 - The GIMP Team) jAlbum (x32 Version: 11.4.1 - Jalbum AB) Java 7 Update 51 (64-bit) (Version: 7.0.510 - Oracle) Java 7 Update 51 (x32 Version: 7.0.510 - Oracle) Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300 - Malwarebytes Corporation) Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Deutsch) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Silverlight (Version: 5.1.20913.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219 - Microsoft Corporation) MotoHelper MergeModules (x32 Version: 1.2.0 - Motorola) Hidden Mozilla Firefox 26.0 (x86 de) (x32 Version: 26.0 - Mozilla) Mozilla Maintenance Service (x32 Version: 23.0 - Mozilla) MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (x32 Version: 4.30.2117.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (x32 Version: 4.30.2100.0 - Microsoft Corporation) NVIDIA 3D Vision Controller-Treiber 320.49 (Version: 320.49 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 331.65 (Version: 331.65 - NVIDIA Corporation) NVIDIA Drivers (Version: 1.10.62.40 - NVIDIA Corporation) NVIDIA Grafiktreiber 331.65 (Version: 331.65 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.26.4 (Version: 1.3.26.4 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.133.889 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.13.0604 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.13.0604 (Version: 9.13.0604 - NVIDIA Corporation) NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.3165 - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 331.65 (Version: 331.65 - NVIDIA Corporation) Hidden NVIDIA Update 1.15.2 (Version: 1.15.2 - NVIDIA Corporation) NVIDIA Update Components (Version: 1.15.2 - NVIDIA Corporation) Hidden OpenOffice 4.0.0 (x32 Version: 4.00.9702 - Apache Software Foundation) Origin (x32 Version: 9.3.1.4482 - Electronic Arts, Inc.) Panda USB Vaccine 1.0.1.4 (x32 Version: - Panda Security) Phase 5 HTML-Editor (x32 Version: 5.6.2.3 - Systemberatung Schommer) Secunia PSI (3.0.0.7011) (x32 Version: 3.0.0.7011 - Secunia) Skype™ 6.13 (x32 Version: 6.13.104 - Skype Technologies S.A.) SPORE™ (x32 Version: 1.05.0001 - Electronic Arts) Spybot - Search & Destroy (x32 Version: 2.2.25 - Safer-Networking Ltd.) TeamSpeak 3 Client (Version: 3.0.10.1 - TeamSpeak Systems GmbH) TERA (x32 Version: 7 - Gameforge Productions GmbH) TP-LINK 300Mbps Wireless USB Adapter Treiber (x32 Version: 1.3.1 - TP-LINK) TP-LINK-Konfigurationstool (x32 Version: 1.3.1 - TP-LINK) Uplay (x32 Version: 4.0 - Ubisoft) VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden VLC media player 2.1.2 (x32 Version: 2.1.2 - VideoLAN) Winamp (x32 Version: 5.64 - Nullsoft, Inc) Winamp Erkennungs-Plug-in (HKCU Version: 1.0.0.1 - Nullsoft, Inc) WinRAR 5.01 (32-bit) (x32 Version: 5.01.0 - win.rar GmbH) WinRAR 5.01 (64-bit) (Version: 5.01.0 - win.rar GmbH) World of Warcraft (x32 Version: 5.4.0.17371 - Blizzard Entertainment) ==================== Restore Points ========================= 24-01-2014 08:44:21 Windows Update 27-01-2014 08:10:38 Windows-Sicherung 27-01-2014 17:08:51 Installed Java 7 Update 51 28-01-2014 06:46:11 Windows Update ==================== Hosts content: ========================== 2009-07-14 03:34 - 2014-01-28 19:14 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (whitelisted) ============= Task: {3308067A-AC6F-493E-AF0E-BED0D96D7D36} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe Task: {3C3A1CDA-0950-4EDC-BE8F-63A4A26A4C85} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-01-27] (Adobe Systems Incorporated) Task: {5BC073B0-FE86-47FC-B3EF-B5FF6F061EF5} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe Task: {742B6BEC-C9D5-45C2-92EB-41A776A760FB} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe Task: {74C3EF74-923D-4F44-9A45-240B193C2A0B} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-12-17] (Piriform Ltd) Task: {8A907C1F-F026-4ABE-AAF6-CB2348136987} - System32\Tasks\PandaUSBVaccine => C:\Program Files (x86)\Panda USB Vaccine\RunInteractiveWin.exe [2009-09-23] () Task: {A96F0D0C-1789-49F4-AFB3-CF811BB7605C} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup Task: {CAF4A85B-ED87-4E03-B751-76592CF4F384} - \SidebarExecute No Task File Task: {E7DBA968-A424-41DC-BD9E-4837B7B62660} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2013-05-09] (AVAST Software) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Loaded Modules (whitelisted) ============= 2013-06-05 22:16 - 2013-10-23 09:20 - 00102176 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2010-01-02 15:42 - 2010-01-02 15:42 - 00098304 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext_64.dll 2014-01-29 14:22 - 2014-01-29 11:15 - 02258432 _____ () C:\Program Files\AVAST Software\Avast\defs\14012900\algo.dll 2014-01-29 00:51 - 2013-05-16 10:55 - 00113496 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2014-01-29 00:51 - 2013-05-16 10:55 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== ==================== Faulty Device Manager Devices ============= Name: Coprozessor Description: Coprozessor Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (01/26/2014 11:01:29 PM) (Source: Application Hang) (User: ) Description: Programm Skype.exe, Version 6.13.0.104 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 824 Startzeit: 01cf1a96805c8f80 Endzeit: 116 Anwendungspfad: C:\Program Files (x86)\Skype\Phone\Skype.exe Berichts-ID: Error: (01/24/2014 02:51:11 PM) (Source: Application Hang) (User: ) Description: Programm gimp-2.8.exe, Version 2.8.4.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 12e8 Startzeit: 01cf190a885e79b0 Endzeit: 20 Anwendungspfad: C:\Program Files\GIMP 2\bin\gimp-2.8.exe Berichts-ID: 93074671-84fe-11e3-9569-002511c81c08 Error: (01/15/2014 08:16:37 AM) (Source: MsiInstaller) (User: IsmirUebel-PC) Description: Produkt: Adobe Reader XI - Deutsch - Update "{AC76BA86-7AD7-0000-2550-7A8C40011006}" konnte nicht installiert werden. Fehlercode 1625. Windows Installer kann Protokolle erstellen, um bei der Problembehandlung betreffend der Installation von Softwarepaketen behilflich zu sein. Verwenden Sie folgenden Link, um Anweisungen zur Aktivierung der Protokollierungsunterstützung zu erhalten: hxxp://go.microsoft.com/fwlink/?LinkId=23127 Error: (01/13/2014 06:29:39 PM) (Source: Application Hang) (User: ) Description: Programm Explorer.EXE, Version 6.1.7601.17567 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 5c4 Startzeit: 01cf103c07568aa0 Endzeit: 818 Anwendungspfad: C:\Windows\Explorer.EXE Berichts-ID: 44f985d1-7c78-11e3-9dce-002511c81c08 Error: (12/05/2013 11:49:54 AM) (Source: Application Error) (User: ) Description: Aus einem der folgenden Gründe kann nicht auf die Datei "" zugegriffen werden: Es besteht ein Problem mit der Netzwerkverbindung, dem Datenträger mit der gespeicherten Datei bzw. den auf dem Computer installierten Speichertreibern, oder der Datenträger fehlt. Das Programm Secunia PSI Agent wurde wegen dieses Fehlers geschlossen. Programm: Secunia PSI Agent Datei: Der Fehlerwert ist im Abschnitt "Zusätzliche Dateien" aufgelistet. Benutzeraktion 1. Öffnen Sie die Datei erneut. Diese Situation ist eventuell ein temporäres Problem, das selbstständig behoben wird, wenn das Programm erneut ausgeführt wird. 2. Wenn Sie weiterhin nicht auf die Datei zugreifen können und - diese sich im Netzwerk befindet, dann sollte der Netzwerkadministrator überprüfen, dass kein Netzwerkproblem besteht und dass eine Verbindung mit dem Server hergestellt werden kann. - diese sich auf einem Wechseldatenträger, wie z. B. einer Diskette oder einer CD, befindet, überprüfen Sie, ob der Datenträger richtig in den Computer eingelegt ist. 3. Überprüfen und reparieren Sie das Dateisystem, indem Sie CHKDSK ausführen. Klicken Sie dazu im Menü "Start" auf "Ausführen", geben Sie CMD ein, und klicken Sie auf "OK". Geben Sie an der Eingabeaufforderung CHKDSK /F ein, und drücken Sie die EINGABETASTE. 4. Stellen Sie die Datei von einer Sicherungskopie wieder her, wenn das Problem weiterhin besteht. 5. Überprüfen Sie, ob andere Dateien auf demselben Datenträger geöffnet werden können. Falls dies nicht möglich ist, ist der Datenträger eventuell beschädigt. Wenden Sie sich an den Administrator oder den Hersteller der Computerhardware, um weitere Unterstützung zu erhalten, wenn es sich um eine Festplatte handelt. Zusätzliche Daten Fehlerwert: 00000000 Datenträgertyp: 0 Error: (12/05/2013 11:49:54 AM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: PSIA.exe, Version: 3.0.0.7011, Zeitstempel: 0x51d3d69b Name des fehlerhaften Moduls: ole32.dll, Version: 6.1.7601.17514, Zeitstempel: 0x4ce7b96f Ausnahmecode: 0xc0000096 Fehleroffset: 0x000485aa ID des fehlerhaften Prozesses: 0x8e8 Startzeit der fehlerhaften Anwendung: 0xPSIA.exe0 Pfad der fehlerhaften Anwendung: PSIA.exe1 Pfad des fehlerhaften Moduls: PSIA.exe2 Berichtskennung: PSIA.exe3 Error: (11/28/2013 07:57:39 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: Explorer.EXE, Version: 6.1.7601.17567, Zeitstempel: 0x4d672ee4 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18247, Zeitstempel: 0x521eaf24 Ausnahmecode: 0xc0000374 Fehleroffset: 0x00000000000c4102 ID des fehlerhaften Prozesses: 0x584 Startzeit der fehlerhaften Anwendung: 0xExplorer.EXE0 Pfad der fehlerhaften Anwendung: Explorer.EXE1 Pfad des fehlerhaften Moduls: Explorer.EXE2 Berichtskennung: Explorer.EXE3 Error: (11/19/2013 09:29:35 PM) (Source: Application Hang) (User: ) Description: Programm soffice.bin, Version 4.0.9702.500 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1324 Startzeit: 01cee565e6552380 Endzeit: 8 Anwendungspfad: C:\Program Files (x86)\OpenOffice 4\program\soffice.bin Berichts-ID: 4b240d81-5159-11e3-87f9-002511c81c08 Error: (11/19/2013 05:08:45 PM) (Source: Application Hang) (User: ) Description: Programm firefox.exe, Version 25.0.1.5064 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1028 Startzeit: 01cee5088369dfc0 Endzeit: 65 Anwendungspfad: C:\Program Files (x86)\Mozilla Firefox\firefox.exe Berichts-ID: dbf0f5f1-5134-11e3-9ede-002511c81c08 Error: (11/18/2013 10:46:14 AM) (Source: Windows Backup) (User: ) Description: Die Sicherung wurde aufgrund eines Fehlers beim Schreiben am Sicherungsspeicherort "F:\" nicht abgeschlossen. Fehler: "Der Sicherungsort wurde nicht gefunden oder ist ungültig. Überprüfen Sie die Sicherungseinstellungen und den Sicherungsort. (0x81000006)" System errors: ============= Error: (01/29/2014 02:21:21 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (User: NT-AUTORITÄT) Description: Das WLAN-Erweiterungsmodul konnte nicht gestartet werden. Modulpfad: C:\Windows\system32\Rtlihvs.dll Fehlercode: 126 Error: (01/29/2014 02:17:12 PM) (Source: WMPNetworkSvc) (User: ) Description: Dienst "WMPNetworkSvc" konnte nicht ordnungsgemäß gestartet werden, da ein Fehler "0x80004005" in "CoCreateInstance(CLSID_UPnPDeviceFinder)" aufgetreten ist. Überprüfen Sie, ob der Dienst "UPnPHost" ausgeführt wird und ob die Windows-Komponente "UPnPHost" richtig installiert ist. Error: (01/29/2014 02:16:40 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Net.Tcp-Listeneradapter" ist vom Dienst "Net.Tcp-Portfreigabedienst" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1058 Error: (01/29/2014 02:16:40 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Net.Pipe-Listeneradapter" ist von folgendem Dienst abhängig: was. Dieser Dienst ist eventuell nicht installiert. Error: (01/29/2014 02:16:40 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Net.Msmq-Listeneradapter" ist von folgendem Dienst abhängig: msmq. Dieser Dienst ist eventuell nicht installiert. Error: (01/29/2014 07:22:10 AM) (Source: WMPNetworkSvc) (User: ) Description: Dienst "WMPNetworkSvc" konnte nicht ordnungsgemäß gestartet werden, da ein Fehler "0x80004005" in "CoCreateInstance(CLSID_UPnPDeviceFinder)" aufgetreten ist. Überprüfen Sie, ob der Dienst "UPnPHost" ausgeführt wird und ob die Windows-Komponente "UPnPHost" richtig installiert ist. Error: (01/29/2014 07:21:50 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Spybot-S&D 2 Scanner Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (01/29/2014 07:21:50 AM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Spybot-S&D 2 Scanner Service erreicht. Error: (01/29/2014 07:21:19 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Net.Tcp-Listeneradapter" ist vom Dienst "Net.Tcp-Portfreigabedienst" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1058 Error: (01/29/2014 07:21:19 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Net.Pipe-Listeneradapter" ist von folgendem Dienst abhängig: was. Dieser Dienst ist eventuell nicht installiert. Microsoft Office Sessions: ========================= Error: (01/26/2014 11:01:29 PM) (Source: Application Hang)(User: ) Description: Skype.exe6.13.0.10482401cf1a96805c8f80116C:\Program Files (x86)\Skype\Phone\Skype.exe Error: (01/24/2014 02:51:11 PM) (Source: Application Hang)(User: ) Description: gimp-2.8.exe2.8.4.012e801cf190a885e79b020C:\Program Files\GIMP 2\bin\gimp-2.8.exe93074671-84fe-11e3-9569-002511c81c08 Error: (01/15/2014 08:16:37 AM) (Source: MsiInstaller)(User: IsmirUebel-PC) Description: Adobe Reader XI - Deutsch{AC76BA86-7AD7-0000-2550-7A8C40011006}1625(NULL)(NULL)(NULL) Error: (01/13/2014 06:29:39 PM) (Source: Application Hang)(User: ) Description: Explorer.EXE6.1.7601.175675c401cf103c07568aa0818C:\Windows\Explorer.EXE44f985d1-7c78-11e3-9dce-002511c81c08 Error: (12/05/2013 11:49:54 AM) (Source: Application Error)(User: ) Description: Secunia PSI Agent000000000 Error: (12/05/2013 11:49:54 AM) (Source: Application Error)(User: ) Description: PSIA.exe3.0.0.701151d3d69bole32.dll6.1.7601.175144ce7b96fc0000096000485aa8e801cef19750d71640C:\Program Files (x86)\Secunia\PSI\PSIA.exeC:\Windows\syswow64\ole32.dllf941ca40-5d9a-11e3-a78d-002511c81c08 Error: (11/28/2013 07:57:39 PM) (Source: Application Error)(User: ) Description: Explorer.EXE6.1.7601.175674d672ee4ntdll.dll6.1.7601.18247521eaf24c000037400000000000c410258401ceec2742002320C:\Windows\Explorer.EXEC:\Windows\SYSTEM32\ntdll.dllf3ad0ef0-585e-11e3-bf71-002511c81c08 Error: (11/19/2013 09:29:35 PM) (Source: Application Hang)(User: ) Description: soffice.bin4.0.9702.500132401cee565e65523808C:\Program Files (x86)\OpenOffice 4\program\soffice.bin4b240d81-5159-11e3-87f9-002511c81c08 Error: (11/19/2013 05:08:45 PM) (Source: Application Hang)(User: ) Description: firefox.exe25.0.1.5064102801cee5088369dfc065C:\Program Files (x86)\Mozilla Firefox\firefox.exedbf0f5f1-5134-11e3-9ede-002511c81c08 Error: (11/18/2013 10:46:14 AM) (Source: Windows Backup)(User: ) Description: F:\Der Sicherungsort wurde nicht gefunden oder ist ungültig. Überprüfen Sie die Sicherungseinstellungen und den Sicherungsort. (0x81000006) CodeIntegrity Errors: =================================== Date: 2014-01-28 19:13:51.385 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume1\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-01-28 19:13:51.136 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume1\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. ==================== Memory info =========================== Percentage of memory in use: 17% Total physical RAM: 8191.24 MB Available physical RAM: 6775.4 MB Total Pagefile: 16380.66 MB Available Pagefile: 14940.45 MB Total Virtual: 8192 MB Available Virtual: 8191.84 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:465.76 GB) (Free:330.61 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive f: (VERBATIM) (Fixed) (Total:232.83 GB) (Free:69.71 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 0DFADDDB) Partition 1: (Active) - (Size=466 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (Size: 233 GB) (Disk ID: 06B9DB8A) Partition 1: (Not Active) - (Size=233 GB) - (Type=0C) ==================== End Of Log ============================ |
29.01.2014, 15:28 | #7 |
| Windows 7 Tastertur setzt aus, Internet deaktiviert sich, Spiel minimiert sich Combo 1 Teil Code:
ATTFilter ComboFix 14-01-27.02 - Ismir Uebel 29.01.2014 15:07:42.3.2 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.8191.6556 [GMT 1:00] ausgeführt von:: c:\users\Ismir Uebel\Desktop\ComboFix.exe AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C} SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681} SP: Spybot - Search and Destroy *Disabled/Updated* {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . ((((((((((((((((((((((( Dateien erstellt von 2013-12-28 bis 2014-01-29 )))))))))))))))))))))))))))))) . . 2014-01-29 14:12 . 2014-01-29 14:12 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp 2014-01-29 14:12 . 2014-01-29 14:12 -------- d-----w- c:\users\täglicher Gebrauch\AppData\Local\temp 2014-01-29 14:12 . 2014-01-29 14:12 -------- d-----w- c:\users\Public\AppData\Local\temp 2014-01-29 14:12 . 2014-01-29 14:12 -------- d-----w- c:\users\Default\AppData\Local\temp 2014-01-28 23:51 . 2013-09-20 09:49 21040 ----a-w- c:\windows\system32\sdnclean64.exe 2014-01-28 06:46 . 2013-12-04 03:28 10315576 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{FA590F0A-B8EB-4917-AC61-AEDB5A3AC273}\mpengine.dll 2014-01-27 17:13 . 2014-01-27 17:13 -------- d-----w- c:\program files\WinRAR 2014-01-27 17:10 . 2014-01-27 17:10 -------- d-----w- c:\program files (x86)\Common Files\Java 2014-01-27 17:10 . 2014-01-27 17:10 -------- d-----w- c:\programdata\Oracle 2014-01-27 17:09 . 2014-01-27 17:09 96168 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll 2014-01-27 17:09 . 2014-01-27 17:09 -------- d-----w- c:\program files (x86)\Java 2014-01-27 14:17 . 2014-01-29 13:49 -------- d-----w- c:\programdata\Spybot - Search & Destroy 2014-01-27 14:17 . 2014-01-28 23:52 -------- d-----w- c:\program files (x86)\Spybot - Search & Destroy 2 2014-01-27 14:02 . 2014-01-27 14:02 -------- d-----w- c:\program files\CCleaner 2014-01-25 17:00 . 2014-01-25 18:49 -------- d-----w- c:\users\Ismir Uebel\AppData\Roaming\vlc 2014-01-25 17:00 . 2014-01-25 17:00 -------- d-----w- c:\program files (x86)\VideoLAN 2014-01-25 15:09 . 2014-01-25 15:09 -------- d-----w- c:\users\Ismir Uebel\AppData\Local\Skype 2014-01-25 15:09 . 2014-01-28 23:10 -------- d-----w- c:\users\Ismir Uebel\AppData\Roaming\Skype 2014-01-25 15:09 . 2014-01-25 15:09 -------- d-----w- c:\program files (x86)\Common Files\Skype 2014-01-25 15:09 . 2014-01-25 15:09 -------- d-----r- c:\program files (x86)\Skype 2014-01-25 15:09 . 2014-01-25 15:09 -------- d-----w- c:\programdata\Skype 2014-01-17 18:27 . 2014-01-17 18:27 312744 ----a-w- c:\windows\system32\javaws.exe 2014-01-17 18:27 . 2014-01-17 18:27 108968 ----a-w- c:\windows\system32\WindowsAccessBridge-64.dll 2014-01-17 18:27 . 2014-01-17 18:27 189352 ----a-w- c:\windows\system32\javaw.exe 2014-01-17 18:27 . 2014-01-17 18:27 189352 ----a-w- c:\windows\system32\java.exe 2014-01-17 18:27 . 2014-01-17 18:27 -------- d-----w- c:\program files\Java 2014-01-17 17:40 . 2013-05-10 04:30 167424 ----a-w- c:\program files\Windows Media Player\wmplayer.exe 2014-01-17 17:40 . 2013-05-10 03:48 164864 ----a-w- c:\program files (x86)\Windows Media Player\wmplayer.exe 2014-01-17 17:40 . 2013-05-10 05:56 12625920 ----a-w- c:\windows\system32\wmploc.DLL 2014-01-17 17:40 . 2013-05-10 04:56 12625408 ----a-w- c:\windows\SysWow64\wmploc.DLL 2014-01-17 17:40 . 2013-05-10 05:56 14631424 ----a-w- c:\windows\system32\wmp.dll 2014-01-17 17:35 . 2014-01-17 17:35 -------- d-----w- c:\windows\Migration 2014-01-17 17:32 . 2013-11-23 18:26 417792 ----a-w- c:\windows\SysWow64\WMPhoto.dll 2014-01-17 17:32 . 2013-11-23 17:47 465920 ----a-w- c:\windows\system32\WMPhoto.dll 2014-01-17 17:32 . 2013-10-30 02:32 335360 ----a-w- c:\windows\system32\msieftp.dll 2014-01-17 17:32 . 2013-10-30 02:19 301568 ----a-w- c:\windows\SysWow64\msieftp.dll 2014-01-17 17:32 . 2013-11-26 11:40 376768 ----a-w- c:\windows\system32\drivers\netio.sys 2014-01-16 15:08 . 2013-11-27 01:41 343040 ----a-w- c:\windows\system32\drivers\usbhub.sys 2014-01-16 15:08 . 2013-11-27 01:41 99840 ----a-w- c:\windows\system32\drivers\usbccgp.sys 2014-01-16 15:08 . 2013-11-27 01:41 53248 ----a-w- c:\windows\system32\drivers\usbehci.sys 2014-01-16 15:08 . 2013-11-27 01:41 325120 ----a-w- c:\windows\system32\drivers\usbport.sys 2014-01-16 15:08 . 2013-11-27 01:41 25600 ----a-w- c:\windows\system32\drivers\usbohci.sys 2014-01-16 15:08 . 2013-11-27 01:41 30720 ----a-w- c:\windows\system32\drivers\usbuhci.sys 2014-01-16 15:08 . 2013-11-27 01:41 7808 ----a-w- c:\windows\system32\drivers\usbd.sys 2014-01-16 15:08 . 2013-11-26 10:32 3156480 ----a-w- c:\windows\system32\win32k.sys 2014-01-13 17:12 . 2014-01-13 17:13 -------- d-----w- c:\program files (x86)\mp3DirectCut . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2014-01-27 17:21 . 2013-02-16 00:01 692616 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2014-01-27 17:21 . 2013-02-16 00:01 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2014-01-16 16:28 . 2013-06-06 07:59 86054176 ----a-w- c:\windows\system32\MRT.exe 2013-12-18 05:13 . 2013-02-15 21:28 270496 ------w- c:\windows\system32\MpSigStub.exe 2013-11-26 11:54 . 2013-12-24 11:29 23183360 ----a-w- c:\windows\system32\mshtml.dll 2013-11-26 10:19 . 2013-12-24 11:29 2724864 ----a-w- c:\windows\system32\mshtml.tlb 2013-11-26 10:18 . 2013-12-24 11:29 4096 ----a-w- c:\windows\system32\ieetwcollectorres.dll 2013-11-26 09:48 . 2013-12-24 11:29 66048 ----a-w- c:\windows\system32\iesetup.dll 2013-11-26 09:46 . 2013-12-24 11:29 48640 ----a-w- c:\windows\system32\ieetwproxystub.dll 2013-11-26 09:41 . 2013-12-24 11:29 2764288 ----a-w- c:\windows\system32\iertutil.dll 2013-11-26 09:29 . 2013-12-24 11:29 53760 ----a-w- c:\windows\system32\jsproxy.dll 2013-11-26 09:27 . 2013-12-24 11:29 33792 ----a-w- c:\windows\system32\iernonce.dll 2013-11-26 09:23 . 2013-12-24 11:29 2724864 ----a-w- c:\windows\SysWow64\mshtml.tlb 2013-11-26 09:21 . 2013-12-24 11:29 574976 ----a-w- c:\windows\system32\ieui.dll 2013-11-26 09:18 . 2013-12-24 11:29 139264 ----a-w- c:\windows\system32\ieUnatt.exe 2013-11-26 09:18 . 2013-12-24 11:29 111616 ----a-w- c:\windows\system32\ieetwcollector.exe 2013-11-26 09:16 . 2013-12-24 11:29 708608 ----a-w- c:\windows\system32\jscript9diag.dll 2013-11-26 08:57 . 2013-12-24 11:29 218624 ----a-w- c:\windows\system32\ie4uinit.exe 2013-11-26 08:35 . 2013-12-24 11:29 5769216 ----a-w- c:\windows\system32\jscript9.dll 2013-11-26 08:28 . 2013-12-24 11:29 553472 ----a-w- c:\windows\SysWow64\jscript9diag.dll 2013-11-26 08:16 . 2013-12-24 11:29 4243968 ----a-w- c:\windows\SysWow64\jscript9.dll 2013-11-26 08:02 . 2013-12-24 11:29 1995264 ----a-w- c:\windows\system32\inetcpl.cpl 2013-11-26 07:48 . 2013-12-24 11:29 12996608 ----a-w- c:\windows\system32\ieframe.dll 2013-11-26 07:32 . 2013-12-24 11:29 1928192 ----a-w- c:\windows\SysWow64\inetcpl.cpl 2013-11-26 07:07 . 2013-12-24 11:29 2334208 ----a-w- c:\windows\system32\wininet.dll 2013-11-26 06:40 . 2013-12-24 11:29 1395200 ----a-w- c:\windows\system32\urlmon.dll 2013-11-26 06:34 . 2013-12-24 11:29 817664 ----a-w- c:\windows\system32\ieapfltr.dll 2013-11-26 06:33 . 2013-12-24 11:29 1820160 ----a-w- c:\windows\SysWow64\wininet.dll 2013-11-13 22:42 . 2013-11-13 22:42 940032 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe 2013-11-13 22:42 . 2013-11-13 22:42 194048 ----a-w- c:\windows\SysWow64\elshyph.dll 2013-11-13 22:42 . 2013-11-13 22:42 86016 ----a-w- c:\windows\SysWow64\iesysprep.dll 2013-11-13 22:42 . 2013-11-13 22:42 74240 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe 2013-11-13 22:42 . 2013-11-13 22:42 71680 ----a-w- c:\windows\SysWow64\RegisterIEPKEYs.exe 2013-11-13 22:42 . 2013-11-13 22:42 645120 ----a-w- c:\windows\SysWow64\jsIntl.dll 2013-11-13 22:42 . 2013-11-13 22:42 62464 ----a-w- c:\windows\SysWow64\tdc.ocx 2013-11-13 22:42 . 2013-11-13 22:42 61952 ----a-w- c:\windows\SysWow64\MshtmlDac.dll 2013-11-13 22:42 . 2013-11-13 22:42 61952 ----a-w- c:\windows\SysWow64\iesetup.dll 2013-11-13 22:42 . 2013-11-13 22:42 51200 ----a-w- c:\windows\SysWow64\ieetwproxystub.dll 2013-11-13 22:42 . 2013-11-13 22:42 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll 2013-11-13 22:42 . 2013-11-13 22:42 454656 ----a-w- c:\windows\SysWow64\vbscript.dll 2013-11-13 22:42 . 2013-11-13 22:42 36352 ----a-w- c:\windows\SysWow64\imgutil.dll 2013-11-13 22:42 . 2013-11-13 22:42 34816 ----a-w- c:\windows\SysWow64\JavaScriptCollectionAgent.dll 2013-11-13 22:42 . 2013-11-13 22:42 337408 ----a-w- c:\windows\SysWow64\html.iec 2013-11-13 22:42 . 2013-11-13 22:42 24576 ----a-w- c:\windows\SysWow64\licmgr10.dll 2013-11-13 22:42 . 2013-11-13 22:42 235008 ----a-w- c:\windows\system32\elshyph.dll 2013-11-13 22:42 . 2013-11-13 22:42 182272 ----a-w- c:\windows\SysWow64\msls31.dll 2013-11-13 22:42 . 2013-11-13 22:42 151552 ----a-w- c:\windows\SysWow64\iexpress.exe 2013-11-13 22:42 . 2013-11-13 22:42 139264 ----a-w- c:\windows\SysWow64\wextract.exe 2013-11-13 22:42 . 2013-11-13 22:42 13312 ----a-w- c:\windows\SysWow64\mshta.exe 2013-11-13 22:42 . 2013-11-13 22:42 112128 ----a-w- c:\windows\SysWow64\ieUnatt.exe 2013-11-13 22:42 . 2013-11-13 22:42 111616 ----a-w- c:\windows\SysWow64\IEAdvpack.dll 2013-11-13 22:42 . 2013-11-13 22:42 1051136 ----a-w- c:\windows\SysWow64\mshtmlmedia.dll 2013-11-13 22:42 . 2013-11-13 22:42 942592 ----a-w- c:\windows\system32\jsIntl.dll 2013-11-13 22:42 . 2013-11-13 22:42 90112 ----a-w- c:\windows\system32\SetIEInstalledDate.exe 2013-11-13 22:42 . 2013-11-13 22:42 86016 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe 2013-11-13 22:42 . 2013-11-13 22:42 84992 ----a-w- c:\windows\system32\mshtmled.dll 2013-11-13 22:42 . 2013-11-13 22:42 83968 ----a-w- c:\windows\system32\MshtmlDac.dll 2013-11-13 22:42 . 2013-11-13 22:42 81408 ----a-w- c:\windows\system32\icardie.dll 2013-11-13 22:42 . 2013-11-13 22:42 774144 ----a-w- c:\windows\system32\jscript.dll 2013-11-13 22:42 . 2013-11-13 22:42 77312 ----a-w- c:\windows\system32\tdc.ocx 2013-11-13 22:42 . 2013-11-13 22:42 626176 ----a-w- c:\windows\system32\msfeeds.dll 2013-11-13 22:42 . 2013-11-13 22:42 62464 ----a-w- c:\windows\system32\pngfilt.dll 2013-11-13 22:42 . 2013-11-13 22:42 616104 ----a-w- c:\windows\system32\ieapfltr.dat 2013-11-13 22:42 . 2013-11-13 22:42 548352 ----a-w- c:\windows\system32\vbscript.dll 2013-11-13 22:42 . 2013-11-13 22:42 52224 ----a-w- c:\windows\system32\msfeedsbs.dll 2013-11-13 22:42 . 2013-11-13 22:42 48640 ----a-w- c:\windows\system32\mshtmler.dll 2013-11-13 22:42 . 2013-11-13 22:42 48128 ----a-w- c:\windows\system32\imgutil.dll 2013-11-13 22:42 . 2013-11-13 22:42 453120 ----a-w- c:\windows\system32\dxtmsft.dll 2013-11-13 22:42 . 2013-11-13 22:42 413696 ----a-w- c:\windows\system32\html.iec 2013-11-13 22:42 . 2013-11-13 22:42 40448 ----a-w- c:\windows\system32\JavaScriptCollectionAgent.dll 2013-11-13 22:42 . 2013-11-13 22:42 30208 ----a-w- c:\windows\system32\licmgr10.dll 2013-11-13 22:42 . 2013-11-13 22:42 296960 ----a-w- c:\windows\system32\dxtrans.dll 2013-11-13 22:42 . 2013-11-13 22:42 263376 ----a-w- c:\windows\system32\iedkcs32.dll 2013-11-13 22:42 . 2013-11-13 22:42 247808 ----a-w- c:\windows\system32\msls31.dll 2013-11-13 22:42 . 2013-11-13 22:42 243200 ----a-w- c:\windows\system32\webcheck.dll 2013-11-13 22:42 . 2013-11-13 22:42 235520 ----a-w- c:\windows\system32\url.dll 2013-11-13 22:42 . 2013-11-13 22:42 195584 ----a-w- c:\windows\system32\msrating.dll 2013-11-13 22:42 . 2013-11-13 22:42 167424 ----a-w- c:\windows\system32\iexpress.exe 2013-11-13 22:42 . 2013-11-13 22:42 147968 ----a-w- c:\windows\system32\occache.dll 2013-11-13 22:42 . 2013-11-13 22:42 143872 ----a-w- c:\windows\system32\wextract.exe 2013-11-13 22:42 . 2013-11-13 22:42 13824 ----a-w- c:\windows\system32\mshta.exe 2013-11-13 22:42 . 2013-11-13 22:42 135680 ----a-w- c:\windows\system32\iepeers.dll 2013-11-13 22:42 . 2013-11-13 22:42 13312 ----a-w- c:\windows\system32\msfeedssync.exe 2013-11-13 22:42 . 2013-11-13 22:42 131072 ----a-w- c:\windows\system32\IEAdvpack.dll 2013-11-13 22:42 . 2013-11-13 22:42 1228800 ----a-w- c:\windows\system32\mshtmlmedia.dll 2013-11-13 22:42 . 2013-11-13 22:42 105984 ----a-w- c:\windows\system32\iesysprep.dll 2013-11-13 22:42 . 2013-11-13 22:42 101376 ----a-w- c:\windows\system32\inseng.dll 2013-11-12 02:23 . 2013-12-24 11:16 2048 ----a-w- c:\windows\system32\tzres.dll 2013-11-12 02:07 . 2013-12-24 11:16 2048 ----a-w- c:\windows\SysWow64\tzres.dll . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1475584] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-11-21 959904] "avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2013-05-09 4858968] "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2013-07-02 254336] "SDTray"="c:\program files (x86)\Spybot - Search & Destroy 2\SDTray.exe" [2013-07-25 5624784] . c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ Secunia PSI Tray.lnk - c:\program files (x86)\Secunia\PSI\psi_tray.exe [2013-7-3 563416] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager] BootExecute REG_MULTI_SZ autocheck autochk *\0\0sdnclean64.exe . R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R2 SDScannerService;Spybot-S&D 2 Scanner Service;c:\program files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe;c:\program files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [x] R2 SDUpdateService;Spybot-S&D 2 Updating Service;c:\program files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe;c:\program files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [x] R2 SDWSCService;Spybot-S&D 2 Security Center Service;c:\program files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe;c:\program files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [x] R2 Secunia Update Agent;Secunia Update Agent;c:\program files (x86)\Secunia\PSI\sua.exe;c:\program files (x86)\Secunia\PSI\sua.exe [x] R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x] R3 androidusb;ADB Interface Driver;c:\windows\system32\Drivers\androidusb.sys;c:\windows\SYSNATIVE\Drivers\androidusb.sys [x] R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x] R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] S0 aswRvrt;aswRvrt; [x] S0 aswVmm;aswVmm; [x] S1 aswSnx;aswSnx; [x] S1 aswSP;aswSP; [x] S2 aswFsBlk;aswFsBlk; [x] S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x] S2 Secunia PSI Agent;Secunia PSI Agent;c:\program files (x86)\Secunia\PSI\PSIA.exe;c:\program files (x86)\Secunia\PSI\PSIA.exe [x] S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x] S3 PSI;PSI;c:\windows\system32\DRIVERS\psi_mf_amd64.sys;c:\windows\SYSNATIVE\DRIVERS\psi_mf_amd64.sys [x] S3 RTL8192cu;300Mbps Wireless USB Adapter;c:\windows\system32\DRIVERS\RTL8192cu.sys;c:\windows\SYSNATIVE\DRIVERS\RTL8192cu.sys [x] S3 trustms;Trust Mouse;c:\windows\system32\drivers\trustms.sys;c:\windows\SYSNATIVE\drivers\trustms.sys [x] . . --- Andere Dienste/Treiber im Speicher --- . *Deregistered* - kfdiauow [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{2D46B6DC-2207-486B-B523-A557E6D54B47}] start [BU] . Inhalt des "geplante Tasks" Ordners . 2014-01-29 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-02-16 17:21] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast] @="{472083B0-C522-11CF-8763-00608CC02F24}" [HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}] 2013-05-09 08:58 133840 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll . ------- Zusätzlicher Suchlauf ------- . uLocal Page = c:\windows\system32\blank.htm mLocal Page = c:\windows\SysWOW64\blank.htm TCP: DhcpNameServer = 192.168.178.1 FF - ProfilePath - c:\users\Ismir Uebel\AppData\Roaming\Mozilla\Firefox\Profiles\n5e0hy97.default\ . - - - - Entfernte verwaiste Registrierungseinträge - - - - . Notify-SDWinLogon - SDWinLogon.dll . . . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000\Software\SecuROM\License information*] @Allowed: (Read) (RestrictedCode) "datasecu"=hex:cf,ff,e1,37,19,e1,36,66,e0,82,a4,a6,d7,e0,6b,4e,7f,77,7e,dd,e8, 76,39,b7,21,2f,00,dd,5f,96,a1,9d,12,5e,02,5c,48,da,b3,16,86,64,ef,75,9a,fd,\ "rkeysecu"=hex:64,b6,bd,e1,3e,80,9e,c4,40,b4,90,83,87,8e,33,49 . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0000-0003-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.0_03" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0000-0004-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.0_04" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0000-0005-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.0_05" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0000-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0001-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_01" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0001-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_01" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0002-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_02" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0002-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_02" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0003-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_03" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0003-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_03" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0004-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_04" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0004-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_04" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0005-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_05" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0005-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_05" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0006-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_06" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0006-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_06" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0007-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_07" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0007-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_07" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0008-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_08" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0008-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_08" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0009-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_09" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0009-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_09" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0010-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_10" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0010-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_10" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0011-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_11" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0011-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_11" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0012-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_12" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0012-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_12" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0013-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_13" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0013-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_13" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0014-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_14" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0014-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_14" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0015-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_15" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0015-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_15" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0016-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_16" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0016-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_16" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0017-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_17" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0017-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_17" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0018-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_18" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0018-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_18" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0019-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_19" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0019-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_19" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0020-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_20" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0020-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_20" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0021-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_21" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0021-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_21" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0000-0000-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.0" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0000-0000-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.0" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0000-0001-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.0_01" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0000-0001-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.0_01" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0000-0002-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.0_02" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0000-0002-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.0_02" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0000-0003-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.0_03" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0000-0003-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.0_03" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0000-0004-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.0_04" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0000-0004-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.0_04" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0001-0000-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.1" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0001-0000-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.1" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0001-0001-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.1_01" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0001-0001-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.1_01" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0001-0002-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.1_02" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0001-0002-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.1_02" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0001-0003-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.1_03" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0001-0003-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.1_03" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0001-0004-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.1_04" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0001-0004-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.1_04" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0001-0005-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.1_05" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0001-0005-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.1_05" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0001-0006-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.1_06" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0001-0006-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.1_06" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0001-0007-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.1_07" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0001-0007-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.1_07" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0000-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0000-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0001-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_01" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0001-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_01" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0002-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_02" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0002-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_02" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0003-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_03" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0003-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_03" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0004-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_04" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0004-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_04" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0005-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_05" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0005-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_05" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0006-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_06" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0006-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_06" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0007-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_07" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0007-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_07" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0008-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_08" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0008-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_08" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0009-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_09" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0009-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_09" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0010-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_10" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0010-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_10" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0011-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_11" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0011-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_11" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0012-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_12" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0012-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_12" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0013-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_13" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0013-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_13" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0014-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_14" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0014-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_14" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0015-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_15" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0015-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_15" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0016-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_16" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0016-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_16" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0017-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_17" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0017-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_17" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0018-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_18" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0018-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_18" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0019-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_19" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0019-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_19" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0020-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_20" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0020-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_20" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0021-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_21" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0021-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_21" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0022-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_22" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0022-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_22" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0023-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_23" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0023-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_23" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0024-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_24" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0024-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_24" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0025-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_25" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0025-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_25" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0026-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_26" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0026-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_26" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0027-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_27" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0027-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_27" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0028-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_28" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0028-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_28" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0029-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_29" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0029-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_29" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0030-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_30" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0030-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_30" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0031-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_31" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0031-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_31" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0032-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_32" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0032-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_32" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0033-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_33" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0033-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_33" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0034-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_34" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0034-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_34" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0035-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_35" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0035-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_35" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0036-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_36" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0036-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_36" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0037-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_37" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0037-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_37" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0038-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_38" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0038-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_38" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0039-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_39" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0039-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_39" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0040-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_40" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0040-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_40" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0041-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_41" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0041-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_41" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0042-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_42" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0042-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_42" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0043-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_43" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0043-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_43" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0014-0002-FFFF-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0000-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0000-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0000-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0001-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_01" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0001-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_01" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0001-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_01" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0002-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_02" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0002-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_02" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0002-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_02" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0003-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_03" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0003-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_03" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0003-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_03" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0004-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_04" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0004-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_04" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0004-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_04" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0005-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_05" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0005-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_05" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0005-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_05" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_06" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_06" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_06" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0007-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_07" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0007-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_07" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0007-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_07" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0008-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_08" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0008-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_08" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0008-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_08" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_09" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_09" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_09" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_10" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_10" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_10" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_11" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_11" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_11" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0012-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_12" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0012-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_12" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0012-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_12" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0013-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_13" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0013-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_13" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0013-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_13" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0014-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_14" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0014-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_14" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0014-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_14" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0015-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_15" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0015-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_15" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0015-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_15" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0016-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_16" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0016-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_16" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0016-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_16" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0017-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_17" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0017-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_17" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0017-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_17" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0018-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_18" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0018-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_18" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0018-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_18" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0019-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_19" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0019-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_19" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0019-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_19" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0020-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_20" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0020-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_20" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0020-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_20" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0021-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_21" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0021-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_21" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0021-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_21" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0022-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_22" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0022-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_22" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0022-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_22" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0023-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_23" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0023-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_23" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0023-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_23" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0024-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_24" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0024-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_24" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0024-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_24" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0025-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_25" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0025-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_25" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0025-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_25" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0026-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_26" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0026-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_26" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0026-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_26" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0027-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_27" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0027-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_27" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0027-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_27" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0028-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_28" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0028-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_28" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0028-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_28" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0029-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_29" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0029-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_29" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0029-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_29" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0030-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_30" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0030-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_30" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0030-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_30" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0031-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_31" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0031-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_31" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0031-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_31" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0032-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_32" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0032-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_32" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0032-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_32" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0033-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_33" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0033-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_33" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0033-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_33" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0034-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_34" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0034-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_34" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0034-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_34" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0035-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_35" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0035-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_35" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0035-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_35" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0036-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_36" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0036-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_36" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0036-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_36" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0037-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_37" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0037-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_37" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0037-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_37" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0038-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_38" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0038-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_38" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0038-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_38" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0039-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_39" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0039-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_39" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0039-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_39" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0040-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_40" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0040-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_40" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0040-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_40" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0041-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_41" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0041-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_41" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0041-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_41" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0042-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_42" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0042-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_42" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0042-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_42" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0043-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_43" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0043-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_43" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0043-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_43" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0044-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_44" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0044-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_44" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0044-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_44" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0045-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_45" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0045-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_45" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0045-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_45" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0046-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_46" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0046-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_46" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0046-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_46" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0047-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_47" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0047-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_47" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0047-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_47" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0048-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_48" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0048-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_48" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0048-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_48" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0049-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_49" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0049-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_49" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0049-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_49" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0050-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_50" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0050-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_50" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0050-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_50" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0051-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_51" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0051-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_51" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0051-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_51" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0052-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_52" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0052-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_52" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0052-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_52" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0053-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_53" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0053-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_53" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0053-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_53" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0054-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_54" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0054-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_54" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0054-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_54" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0055-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_55" |
29.01.2014, 15:29 | #8 |
| Windows 7 Tastertur setzt aus, Internet deaktiviert sich, Spiel minimiert sich Combo 2 Teil Code:
ATTFilter . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0055-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_55" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0055-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_55" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0056-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_56" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0056-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_56" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0056-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_56" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0057-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_57" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0057-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_57" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0057-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_57" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0058-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_58" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0058-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_58" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0058-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_58" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0059-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_59" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0059-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_59" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0059-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_59" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0060-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_60" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0060-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_60" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0060-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_60" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0061-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_61" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0061-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_61" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0061-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_61" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0015-0000-FFFF-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0000-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0000-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_01" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_01" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_01" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_02" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_02" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_02" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_03" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_03" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_03" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0004-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_04" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0004-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_04" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0004-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_04" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_05" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_05" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_05" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0006-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_06" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0006-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_06" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0006-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_06" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_07" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_07" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_07" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0008-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_08" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0008-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_08" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0008-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_08" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0009-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_09" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0009-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_09" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0009-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_09" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0010-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_10" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0010-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_10" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0010-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_10" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_11" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_11" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_11" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0012-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_12" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0012-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_12" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0012-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_12" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_13" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_13" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_13" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_14" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_14" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_14" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_15" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_15" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_15" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_16" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_16" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_16" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_17" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_17" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_17" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_18" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_18" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_18" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_19" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0019-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_19" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0019-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_19" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_20" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_20" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_20" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_21" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_21" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_21" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_22" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_22" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_22" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_23" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_23" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_23" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_24" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_24" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_24" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_25" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_25" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_25" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_26" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_26" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_26" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0027-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_27" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0027-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_27" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0027-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_27" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0028-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_28" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0028-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_28" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0028-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_28" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_29" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_29" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_29" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_30" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_30" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_30" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_31" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0031-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_31" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0031-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_31" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_32" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0032-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_32" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0032-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_32" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_33" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_33" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_33" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0034-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_34" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0034-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_34" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0034-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_34" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_35" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_35" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_35" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0036-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_36" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0036-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_36" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0036-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_36" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_37" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_37" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_37" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0038-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_38" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0038-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_38" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0038-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_38" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0039-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_39" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0039-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_39" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0039-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_39" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0040-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_40" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0040-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_40" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0040-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_40" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0041-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_41" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0041-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_41" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0041-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_41" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0042-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_42" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0042-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_42" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0042-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_42" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0043-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_43" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0043-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_43" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0043-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_43" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0044-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_44" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0044-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_44" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0044-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_44" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0045-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_45" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0045-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_45" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0045-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_45" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0046-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_46" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0046-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_46" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0046-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_46" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0047-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_47" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0047-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_47" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0047-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_47" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0048-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_48" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0048-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_48" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0048-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_48" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0049-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_49" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0049-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_49" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0049-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_49" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0050-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_50" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0050-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_50" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0050-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_50" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0051-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_51" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0051-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_51" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0051-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_51" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0052-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_52" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0052-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_52" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0052-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_52" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0053-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_53" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0053-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_53" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0053-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_53" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0054-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_54" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0054-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_54" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0054-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_54" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0055-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_55" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0055-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_55" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0055-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_55" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0056-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_56" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0056-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_56" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0056-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_56" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0057-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_57" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0057-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_57" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0057-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_57" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0058-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_58" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0058-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_58" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0058-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_58" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0059-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_59" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0059-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_59" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0059-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_59" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0060-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_60" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0060-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_60" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0060-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_60" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0061-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_61" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0061-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_61" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0061-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_61" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0062-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_62" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0062-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_62" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0062-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_62" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0063-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_63" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0063-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_63" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0063-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_63" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0064-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_64" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0064-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_64" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0064-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_64" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0065-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_65" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0065-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_65" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0065-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_65" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0066-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_66" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0066-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_66" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0066-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_66" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0067-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_67" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0067-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_67" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0067-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_67" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0068-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_68" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0068-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_68" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0068-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_68" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0069-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_69" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0069-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_69" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0069-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_69" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0070-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_70" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0070-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_70" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0070-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_70" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0071-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_71" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0071-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_71" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0071-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_71" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0016-0000-FFFF-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0000-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0000-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0000-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0001-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_01" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0001-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_01" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0001-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_01" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0002-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_02" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0002-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_02" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0002-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_02" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0003-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_03" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0003-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_03" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0003-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_03" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0004-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_04" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0004-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_04" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0004-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_04" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0005-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_05" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0005-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_05" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0005-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_05" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0006-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_06" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0006-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_06" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0006-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_06" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0007-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_07" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0007-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_07" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0007-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_07" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0008-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_08" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0008-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_08" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0008-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_08" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0009-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_09" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0009-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_09" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0009-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_09" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0010-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_10" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0010-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_10" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0010-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_10" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0011-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_11" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0011-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_11" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0011-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_11" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0012-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_12" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0012-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_12" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0012-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_12" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0013-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_13" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0013-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_13" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0013-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_13" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0014-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_14" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0014-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_14" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0014-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_14" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0015-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_15" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0015-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_15" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0015-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_15" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0016-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_16" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0016-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_16" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0016-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_16" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0017-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_17" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0017-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_17" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0017-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_17" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0018-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_18" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0018-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_18" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0018-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_18" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0019-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_19" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0019-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_19" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0019-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_19" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0020-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_20" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0020-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_20" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0020-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_20" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0021-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_21" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0021-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_21" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0021-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_21" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0022-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_22" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0022-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_22" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0022-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_22" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0023-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_23" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0023-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_23" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0023-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_23" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0024-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_24" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0024-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_24" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0024-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_24" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0025-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_25" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0025-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_25" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0025-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_25" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0026-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_26" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0026-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_26" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0026-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_26" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0027-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_27" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0027-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_27" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0027-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_27" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0028-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_28" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0028-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_28" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0028-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_28" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0029-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_29" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0029-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_29" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0029-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_29" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0030-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_30" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0030-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_30" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0030-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_30" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0031-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_31" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0031-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_31" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0031-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_31" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0032-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_32" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0032-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_32" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0032-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_32" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0033-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_33" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0033-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_33" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0033-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_33" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0034-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_34" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0034-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_34" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0034-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_34" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0035-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_35" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0035-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_35" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0035-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_35" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0036-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_36" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0036-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_36" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0036-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_36" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0037-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_37" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0037-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_37" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0037-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_37" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0038-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_38" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0038-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_38" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0038-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_38" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0039-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_39" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0039-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_39" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0039-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_39" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0040-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_40" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0040-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_40" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0040-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_40" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0041-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_41" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0041-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_41" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0041-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_41" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0042-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_42" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0042-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_42" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0042-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_42" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0043-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_43" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0043-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_43" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0043-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_43" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0044-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_44" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0044-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_44" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0044-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_44" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0045-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_45" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0045-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_45" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0045-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_45" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0046-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_46" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0046-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_46" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0046-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_46" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0047-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_47" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0047-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_47" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0047-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_47" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0048-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_48" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0048-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_48" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0048-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_48" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0049-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_49" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0049-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_49" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0049-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_49" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0050-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_50" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0050-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_50" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0050-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_50" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0051-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_51" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0051-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_51" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0051-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_51" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{CAFEEFAC-0017-0000-FFFF-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0" . [HKEY_USERS\S-1-5-21-2373540469-396720452-1981603000-1000_Classes\CLSID\{E19F9331-3110-11D4-991C-005004D3B3DB}] @DACL=(02 0000) @="Java Plug-in 1.3.0_02" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_9_900_170_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_9_900_170_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_9_900_170_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_9_900_170_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_170.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.11" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_170.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_170.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_170.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . Zeit der Fertigstellung: 2014-01-29 15:14:14 ComboFix-quarantined-files.txt 2014-01-29 14:14 ComboFix2.txt 2014-01-28 18:16 ComboFix3.txt 2013-05-28 21:54 . Vor Suchlauf: 15 Verzeichnis(se), 354.953.846.784 Bytes frei Nach Suchlauf: 16 Verzeichnis(se), 354.882.691.072 Bytes frei . - - End Of File - - 709B6334FA2074DEAE090C2CB5187ECD A36C5E4F47E84449FF07ED3517B43A31 |
30.01.2014, 14:26 | #9 |
/// the machine /// TB-Ausbilder | Windows 7 Tastertur setzt aus, Internet deaktiviert sich, Spiel minimiert sich Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
30.01.2014, 16:50 | #10 |
| Windows 7 Tastertur setzt aus, Internet deaktiviert sich, Spiel minimiert sich Erledigt ... Code:
ATTFilter Malwarebytes Anti-Malware 1.75.0.1300 www.malwarebytes.org Datenbank Version: v2014.01.27.06 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 11.0.9600.16476 Ismir Uebel :: ISMIRUEBEL-PC [Administrator] 30.01.2014 16:09:31 mbam-log-2014-01-30 (16-09-31).txt Art des Suchlaufs: Quick-Scan Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 257870 Laufzeit: 3 Minute(n), 42 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 0 (Keine bösartigen Objekte gefunden) (Ende) Code:
ATTFilter # AdwCleaner v3.018 - Bericht erstellt am 30/01/2014 um 16:30:56 # Updated 28/01/2014 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzername : Ismir Uebel - ISMIRUEBEL-PC # Gestartet von : C:\Users\Ismir Uebel\Desktop\adwcleaner.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Datei Gelöscht : C:\Users\Ismir Uebel\AppData\Roaming\Mozilla\Firefox\Profiles\n5e0hy97.default\foxydeal.sqlite ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKCU\Software\Conduit ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.16428 -\\ Mozilla Firefox v26.0 (de) [ Datei : C:\Users\Ismir Uebel\AppData\Roaming\Mozilla\Firefox\Profiles\n5e0hy97.default\prefs.js ] ************************* AdwCleaner[R0].txt - [1028 octets] - [30/01/2014 16:13:49] AdwCleaner[S0].txt - [901 octets] - [30/01/2014 16:30:56] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [960 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.0 (01.07.2014:1) OS: Windows 7 Home Premium x64 Ran by Ismir Uebel on 30.01.2014 at 16:35:01,89 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\caphyon Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\caphyon ~~~ Files ~~~ Folders ~~~ FireFox Emptied folder: C:\Users\Ismir Uebel\AppData\Roaming\mozilla\firefox\profiles\n5e0hy97.default\minidumps [59 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 30.01.2014 at 16:42:33,26 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Ach ja , eine Sache wäre da noch, wenn ich den PC hochfahre, zeigt er mir manchmal die Information, dass er irgend ein Icon nicht ertellen kann. Die Info kommt von Panda USB Vaccine. Ist das ein Problem und wenn nicht, wie kann ich diese meldung abstellen? Hier nen Screenshot davon: |
31.01.2014, 09:23 | #11 |
/// the machine /// TB-Ausbilder | Windows 7 Tastertur setzt aus, Internet deaktiviert sich, Spiel minimiert sich Kannste den Screenhsot bitte nochmal anhängen? ESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
09.02.2014, 22:51 | #12 |
| Windows 7 Tastertur setzt aus, Internet deaktiviert sich, Spiel minimiert sich So erledigt: Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=f94b17696aabd440997610da77387dc9 # engine=17003 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2014-02-09 09:38:57 # local_time=2014-02-09 10:38:57 (+0100, Mitteleuropäische Zeit) # country="Germany" # lang=1033 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode=774 16777213 85 91 14261101 168695409 0 0 # compatibility_mode=5893 16776573 100 94 215315 143611787 0 0 # scanned=196813 # found=0 # cleaned=0 # scan_time=15433 Code:
ATTFilter Results of screen317's Security Check version 0.99.79 Windows 7 Service Pack 1 x64 (UAC is enabled) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` avast! Antivirus Antivirus out of date! `````````Anti-malware/Other Utilities Check:````````` Spybot - Search & Destroy Secunia PSI (3.0.0.7011) Malwarebytes Anti-Malware Version 1.75.0.1300 Java 7 Update 51 Adobe Flash Player 12.0.0.43 Flash Player out of Date! Adobe Reader XI Mozilla Firefox (26.0) ````````Process Check: objlist.exe by Laurent```````` Spybot Teatimer.exe is disabled! AVAST Software Avast AvastSvc.exe AVAST Software Avast AvastUI.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 09-02-2014 02 Ran by Ismir Uebel (administrator) on ISMIRUEBEL-PC on 09-02-2014 22:47:14 Running from C:\Users\Ismir Uebel\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\PSIA.exe (Panda Security) C:\Program Files (x86)\Panda USB Vaccine\USBVaccine.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==================== Registry (Whitelisted) ================== HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\avastUI.exe [4858968 2013-05-09] (AVAST Software) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [SDTray] - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [5624784 2013-07-25] (Safer-Networking Ltd.) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKU\S-1-5-21-2373540469-396720452-1981603000-1000\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKU\S-1-5-21-2373540469-396720452-1981603000-1000\...\Policies\system: [LogonHoursAction] 2 HKU\S-1-5-21-2373540469-396720452-1981603000-1003\...\RunOnce: [WAB Migrate] - C:\Program Files\Windows Mail\wab.exe [516096 2010-11-20] (Microsoft Corporation) HKU\S-1-5-21-2373540469-396720452-1981603000-1003\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKU\S-1-5-21-2373540469-396720452-1981603000-1003\...\Policies\system: [LogonHoursAction] 2 HKU\S-1-5-21-2373540469-396720452-1981603000-1003\...\MountPoints2: {de962ca5-77b2-11e2-92be-806e6f6e6963} - D:\Autorun.exe ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x300A30D0C10BCE01 StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope value is missing. BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Ismir Uebel\AppData\Roaming\Mozilla\Firefox\Profiles\n5e0hy97.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_43.dll () FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin: @java.com/DTPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll () FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll (DivX, LLC) FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @videolan.org/vlc,version=2.1.2 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npwachk.dll (Nullsoft, Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: WOT - C:\Users\Ismir Uebel\AppData\Roaming\Mozilla\Firefox\Profiles\n5e0hy97.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2013-11-27] FF Extension: DownloadHelper - C:\Users\Ismir Uebel\AppData\Roaming\Mozilla\Firefox\Profiles\n5e0hy97.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2013-08-28] FF Extension: NoScript - C:\Users\Ismir Uebel\AppData\Roaming\Mozilla\Firefox\Profiles\n5e0hy97.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2013-05-29] FF Extension: Adblock Plus - C:\Users\Ismir Uebel\AppData\Roaming\Mozilla\Firefox\Profiles\n5e0hy97.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-05-29] FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-04-18] ==================== Services (Whitelisted) ================= R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808 2013-05-09] (AVAST Software) R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [3921880 2013-10-15] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1042272 2013-09-20] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171416 2013-09-13] (Safer-Networking Ltd.) R2 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1228504 2013-07-03] (Secunia) S2 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [660184 2013-07-03] (Secunia) ==================== Drivers (Whitelisted) ==================== S3 androidusb; C:\Windows\System32\Drivers\androidusb.sys [32768 2010-04-29] (Google Inc) R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [33400 2013-05-09] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [80816 2013-05-09] (AVAST Software) R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [72016 2013-05-09] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65336 2013-05-09] () R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [1030952 2013-06-30] (AVAST Software) R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [378944 2013-06-30] (AVAST Software) R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [64288 2013-05-09] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [189936 2013-06-30] () R3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2013-07-03] (Secunia) R3 RTL8192cu; C:\Windows\System32\DRIVERS\RTL8192cu.sys [926824 2012-10-25] (Realtek Semiconductor Corporation ) R3 trustms; C:\Windows\System32\drivers\trustms.sys [12416 2010-11-15] () U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) S3 catchme; \??\C:\ComboFix\catchme.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-09 22:47 - 2014-02-09 22:47 - 00000000 ____D () C:\Users\Ismir Uebel\Desktop\FRST-OlderVersion 2014-02-09 22:43 - 2014-02-09 22:43 - 00000992 _____ () C:\Users\Ismir Uebel\Desktop\checkup.txt 2014-02-09 18:02 - 2014-02-09 18:02 - 00987425 _____ () C:\Users\Ismir Uebel\Desktop\SecurityCheck.exe 2014-02-09 18:01 - 2014-02-09 18:01 - 02347384 _____ (ESET) C:\Users\Ismir Uebel\Desktop\esetsmartinstaller_enu.exe 2014-02-09 16:26 - 2014-02-09 20:44 - 00000000 ____D () C:\Users\Ismir Uebel\Desktop\drucken 2014-02-08 22:24 - 2014-02-08 22:24 - 00025193 _____ () C:\Users\Ismir Uebel\AppData\Local\recently-used.xbel 2014-02-04 13:02 - 2014-02-04 13:19 - 00000000 ____D () C:\Users\Ismir Uebel\Desktop\Autoteilehandel 2014-01-30 16:42 - 2014-01-30 16:42 - 00000918 _____ () C:\Users\Ismir Uebel\Desktop\JRT.txt 2014-01-30 16:33 - 2014-01-30 16:33 - 00001039 _____ () C:\Users\Ismir Uebel\Desktop\AdwCleaner[S0].txt 2014-01-30 16:13 - 2014-01-30 16:31 - 00000000 ____D () C:\AdwCleaner 2014-01-30 16:06 - 2014-01-30 16:06 - 01037068 _____ (Thisisu) C:\Users\Ismir Uebel\Desktop\JRT.exe 2014-01-30 16:03 - 2014-01-30 16:03 - 01166132 _____ () C:\Users\Ismir Uebel\Desktop\adwcleaner.exe 2014-01-29 15:14 - 2014-01-29 15:14 - 00138745 _____ () C:\ComboFix.txt 2014-01-29 15:05 - 2014-01-29 15:05 - 00107239 _____ () C:\Users\Ismir Uebel\Desktop\gmerlog.log 2014-01-29 14:56 - 2014-01-29 14:57 - 00022150 _____ () C:\Users\Ismir Uebel\Desktop\Addition.txt 2014-01-29 14:55 - 2014-02-09 22:47 - 00011063 _____ () C:\Users\Ismir Uebel\Desktop\FRST.txt 2014-01-29 00:52 - 2014-01-29 00:52 - 00001379 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2014-01-29 00:51 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe 2014-01-28 21:40 - 2014-01-30 15:54 - 00003778 _____ () C:\Windows\PFRO.log 2014-01-28 19:07 - 2014-01-28 19:07 - 00000085 _____ () C:\Windows\wininit.ini 2014-01-28 19:02 - 2014-01-28 19:02 - 05175619 ____R (Swearware) C:\Users\Ismir Uebel\Desktop\ComboFix.exe 2014-01-27 18:13 - 2014-01-27 18:13 - 00000000 ____D () C:\Program Files\WinRAR 2014-01-27 18:10 - 2014-01-27 18:10 - 00000000 ____D () C:\ProgramData\Oracle 2014-01-27 18:10 - 2014-01-27 18:09 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-01-27 18:09 - 2014-01-27 18:09 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-01-27 18:09 - 2014-01-27 18:09 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-01-27 18:09 - 2014-01-27 18:09 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-01-27 18:09 - 2014-01-27 18:09 - 00000000 ____D () C:\Program Files (x86)\Java 2014-01-27 16:37 - 2014-01-29 14:55 - 00000484 _____ () C:\Users\Ismir Uebel\Desktop\defogger_disable.log 2014-01-27 16:37 - 2014-01-21 21:56 - 00380416 _____ () C:\Users\Ismir Uebel\Desktop\gmer.exe 2014-01-27 16:30 - 2014-02-09 22:47 - 02170880 _____ (Farbar) C:\Users\Ismir Uebel\Desktop\FRST64.exe 2014-01-27 16:29 - 2014-02-09 16:03 - 00126350 _____ () C:\Windows\setupact.log 2014-01-27 16:29 - 2014-01-27 16:29 - 00000000 _____ () C:\Windows\setuperr.log 2014-01-27 16:28 - 2014-01-27 16:28 - 00050477 _____ () C:\Users\Ismir Uebel\Desktop\Defogger.exe 2014-01-27 15:18 - 2014-01-27 15:18 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking 2014-01-27 15:17 - 2014-01-29 14:49 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy 2014-01-27 15:17 - 2014-01-29 00:52 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2 2014-01-27 15:02 - 2014-01-27 15:02 - 00002784 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC 2014-01-27 15:02 - 2014-01-27 15:02 - 00000822 _____ () C:\Users\Public\Desktop\CCleaner.lnk 2014-01-27 15:02 - 2014-01-27 15:02 - 00000000 ____D () C:\Program Files\CCleaner 2014-01-25 18:00 - 2014-01-31 20:41 - 00000000 ____D () C:\Users\Ismir Uebel\AppData\Roaming\vlc 2014-01-25 18:00 - 2014-01-25 18:00 - 00001066 _____ () C:\Users\Public\Desktop\VLC media player.lnk 2014-01-25 18:00 - 2014-01-25 18:00 - 00000000 ____D () C:\Program Files (x86)\VideoLAN 2014-01-25 16:09 - 2014-02-04 22:52 - 00000000 ____D () C:\Users\Ismir Uebel\AppData\Roaming\Skype 2014-01-25 16:09 - 2014-01-25 16:09 - 00002699 _____ () C:\Users\Public\Desktop\Skype.lnk 2014-01-25 16:09 - 2014-01-25 16:09 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-01-25 16:09 - 2014-01-25 16:09 - 00000000 ____D () C:\Users\Ismir Uebel\AppData\Local\Skype 2014-01-25 16:09 - 2014-01-25 16:09 - 00000000 ____D () C:\ProgramData\Skype 2014-01-24 14:39 - 2014-01-24 16:14 - 00000000 ____D () C:\Users\Ismir Uebel\Desktop\gutschein tim 2014-01-24 12:15 - 2014-01-24 12:34 - 00000000 ____D () C:\Users\Ismir Uebel\Desktop\fb bilder 2014-01-21 20:55 - 2014-01-21 20:55 - 00000000 ____D () C:\Users\Ismir Uebel\Desktop\arni rules 2014-01-17 19:27 - 2014-01-17 19:27 - 00312744 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-01-17 19:27 - 2014-01-17 19:27 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-01-17 19:27 - 2014-01-17 19:27 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-01-17 19:27 - 2014-01-17 19:27 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2014-01-17 19:27 - 2014-01-17 19:27 - 00000000 ____D () C:\Program Files\Java 2014-01-17 18:40 - 2013-05-10 06:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2014-01-17 18:40 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2014-01-17 18:40 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2014-01-17 18:40 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2014-01-17 18:32 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-01-17 18:32 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2014-01-17 18:32 - 2013-11-23 18:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2014-01-17 18:32 - 2013-10-30 03:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2014-01-17 18:32 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2014-01-16 16:08 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-01-16 16:08 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-01-16 16:08 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-01-16 16:08 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-01-16 16:08 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2014-01-16 16:08 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2014-01-16 16:08 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-01-16 16:08 - 2013-11-26 11:32 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-01-13 22:24 - 2014-01-13 22:24 - 00014838 _____ () C:\Users\Ismir Uebel\Desktop\google.csv 2014-01-13 18:12 - 2014-01-13 18:13 - 00000000 ____D () C:\Program Files (x86)\mp3DirectCut 2014-01-13 18:12 - 2014-01-13 18:12 - 00001055 _____ () C:\Users\Ismir Uebel\Desktop\mp3DirectCut.lnk 2014-01-13 18:02 - 2014-01-13 18:02 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_androidusb_01009.Wdf 2014-01-12 23:18 - 2014-01-12 23:30 - 00000000 ____D () C:\Users\Ismir Uebel\Desktop\fb ss ==================== One Month Modified Files and Folders ======= 2014-02-09 22:47 - 2014-02-09 22:47 - 00000000 ____D () C:\Users\Ismir Uebel\Desktop\FRST-OlderVersion 2014-02-09 22:47 - 2014-01-29 14:55 - 00011063 _____ () C:\Users\Ismir Uebel\Desktop\FRST.txt 2014-02-09 22:47 - 2014-01-27 16:30 - 02170880 _____ (Farbar) C:\Users\Ismir Uebel\Desktop\FRST64.exe 2014-02-09 22:47 - 2013-05-28 21:35 - 00000000 ____D () C:\FRST 2014-02-09 22:43 - 2014-02-09 22:43 - 00000992 _____ () C:\Users\Ismir Uebel\Desktop\checkup.txt 2014-02-09 22:41 - 2013-02-27 21:25 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-02-09 20:49 - 2013-06-05 22:16 - 01201549 _____ () C:\Windows\WindowsUpdate.log 2014-02-09 20:44 - 2014-02-09 16:26 - 00000000 ____D () C:\Users\Ismir Uebel\Desktop\drucken 2014-02-09 20:44 - 2013-06-18 14:24 - 00000000 ____D () C:\Users\Ismir Uebel\Desktop\untermietvertrag 2014-02-09 18:19 - 2009-07-14 18:58 - 00699416 _____ () C:\Windows\system32\perfh007.dat 2014-02-09 18:19 - 2009-07-14 18:58 - 00149556 _____ () C:\Windows\system32\perfc007.dat 2014-02-09 18:19 - 2009-07-14 06:13 - 01620612 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-02-09 18:02 - 2014-02-09 18:02 - 00987425 _____ () C:\Users\Ismir Uebel\Desktop\SecurityCheck.exe 2014-02-09 18:01 - 2014-02-09 18:01 - 02347384 _____ (ESET) C:\Users\Ismir Uebel\Desktop\esetsmartinstaller_enu.exe 2014-02-09 16:08 - 2009-07-14 05:45 - 00014928 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-02-09 16:08 - 2009-07-14 05:45 - 00014928 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-02-09 16:04 - 2013-04-18 05:32 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update 2014-02-09 16:03 - 2014-01-27 16:29 - 00126350 _____ () C:\Windows\setupact.log 2014-02-09 16:03 - 2013-06-05 22:16 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-02-09 16:03 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-02-08 22:33 - 2013-04-01 11:55 - 00000000 ____D () C:\Users\Ismir Uebel\.gimp-2.8 2014-02-08 22:24 - 2014-02-08 22:24 - 00025193 _____ () C:\Users\Ismir Uebel\AppData\Local\recently-used.xbel 2014-02-05 13:41 - 2013-02-27 21:25 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-02-05 13:41 - 2013-02-16 01:01 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-02-05 13:41 - 2013-02-16 01:01 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-02-04 22:52 - 2014-01-25 16:09 - 00000000 ____D () C:\Users\Ismir Uebel\AppData\Roaming\Skype 2014-02-04 13:19 - 2014-02-04 13:02 - 00000000 ____D () C:\Users\Ismir Uebel\Desktop\Autoteilehandel 2014-01-31 20:41 - 2014-01-25 18:00 - 00000000 ____D () C:\Users\Ismir Uebel\AppData\Roaming\vlc 2014-01-31 12:19 - 2013-02-16 17:17 - 00000000 ____D () C:\Users\Ismir Uebel\Desktop\Filme - intern 2014-01-30 16:42 - 2014-01-30 16:42 - 00000918 _____ () C:\Users\Ismir Uebel\Desktop\JRT.txt 2014-01-30 16:33 - 2014-01-30 16:33 - 00001039 _____ () C:\Users\Ismir Uebel\Desktop\AdwCleaner[S0].txt 2014-01-30 16:31 - 2014-01-30 16:13 - 00000000 ____D () C:\AdwCleaner 2014-01-30 16:06 - 2014-01-30 16:06 - 01037068 _____ (Thisisu) C:\Users\Ismir Uebel\Desktop\JRT.exe 2014-01-30 16:03 - 2014-01-30 16:03 - 01166132 _____ () C:\Users\Ismir Uebel\Desktop\adwcleaner.exe 2014-01-30 15:54 - 2014-01-28 21:40 - 00003778 _____ () C:\Windows\PFRO.log 2014-01-30 04:20 - 2013-07-16 10:48 - 00000000 ____D () C:\Users\Ismir Uebel\AppData\Roaming\Winamp 2014-01-29 15:14 - 2014-01-29 15:14 - 00138745 _____ () C:\ComboFix.txt 2014-01-29 15:14 - 2013-05-28 22:45 - 00000000 ____D () C:\Qoobox 2014-01-29 15:12 - 2009-07-14 03:34 - 00000215 _____ () C:\Windows\system.ini 2014-01-29 15:05 - 2014-01-29 15:05 - 00107239 _____ () C:\Users\Ismir Uebel\Desktop\gmerlog.log 2014-01-29 14:57 - 2014-01-29 14:56 - 00022150 _____ () C:\Users\Ismir Uebel\Desktop\Addition.txt 2014-01-29 14:55 - 2014-01-27 16:37 - 00000484 _____ () C:\Users\Ismir Uebel\Desktop\defogger_disable.log 2014-01-29 14:49 - 2014-01-27 15:17 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy 2014-01-29 14:28 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF 2014-01-29 00:52 - 2014-01-29 00:52 - 00001379 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2014-01-29 00:52 - 2014-01-27 15:17 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2 2014-01-28 19:07 - 2014-01-28 19:07 - 00000085 _____ () C:\Windows\wininit.ini 2014-01-28 19:02 - 2014-01-28 19:02 - 05175619 ____R (Swearware) C:\Users\Ismir Uebel\Desktop\ComboFix.exe 2014-01-27 18:21 - 2013-03-11 18:51 - 00000000 ____D () C:\Users\Ismir Uebel\AppData\Local\Adobe 2014-01-27 18:14 - 2013-02-16 17:19 - 00000000 ____D () C:\Program Files (x86)\WinRAR 2014-01-27 18:13 - 2014-01-27 18:13 - 00000000 ____D () C:\Program Files\WinRAR 2014-01-27 18:13 - 2013-02-16 17:19 - 00000000 ____D () C:\Users\Ismir Uebel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-01-27 18:10 - 2014-01-27 18:10 - 00000000 ____D () C:\ProgramData\Oracle 2014-01-27 18:09 - 2014-01-27 18:10 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-01-27 18:09 - 2014-01-27 18:09 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-01-27 18:09 - 2014-01-27 18:09 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-01-27 18:09 - 2014-01-27 18:09 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-01-27 18:09 - 2014-01-27 18:09 - 00000000 ____D () C:\Program Files (x86)\Java 2014-01-27 16:29 - 2014-01-27 16:29 - 00000000 _____ () C:\Windows\setuperr.log 2014-01-27 16:29 - 2013-06-06 08:36 - 00078224 _____ () C:\Users\Ismir Uebel\AppData\Local\GDIPFONTCACHEV1.DAT 2014-01-27 16:28 - 2014-01-27 16:28 - 00050477 _____ () C:\Users\Ismir Uebel\Desktop\Defogger.exe 2014-01-27 15:18 - 2014-01-27 15:18 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking 2014-01-27 15:04 - 2013-03-09 15:48 - 00000000 ____D () C:\Users\Ismir Uebel\AppData\Roaming\TS3Client 2014-01-27 15:04 - 2013-02-17 12:10 - 00000000 ____D () C:\Users\Ismir Uebel\AppData\Roaming\FileZilla 2014-01-27 15:03 - 2013-06-06 08:33 - 00000000 ____D () C:\Windows\Minidump 2014-01-27 15:03 - 2013-06-05 23:12 - 00000000 ____D () C:\Windows\Panther 2014-01-27 15:02 - 2014-01-27 15:02 - 00002784 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC 2014-01-27 15:02 - 2014-01-27 15:02 - 00000822 _____ () C:\Users\Public\Desktop\CCleaner.lnk 2014-01-27 15:02 - 2014-01-27 15:02 - 00000000 ____D () C:\Program Files\CCleaner 2014-01-25 18:00 - 2014-01-25 18:00 - 00001066 _____ () C:\Users\Public\Desktop\VLC media player.lnk 2014-01-25 18:00 - 2014-01-25 18:00 - 00000000 ____D () C:\Program Files (x86)\VideoLAN 2014-01-25 16:09 - 2014-01-25 16:09 - 00002699 _____ () C:\Users\Public\Desktop\Skype.lnk 2014-01-25 16:09 - 2014-01-25 16:09 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-01-25 16:09 - 2014-01-25 16:09 - 00000000 ____D () C:\Users\Ismir Uebel\AppData\Local\Skype 2014-01-25 16:09 - 2014-01-25 16:09 - 00000000 ____D () C:\ProgramData\Skype 2014-01-25 15:43 - 2009-07-14 05:45 - 00335768 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-01-24 16:14 - 2014-01-24 14:39 - 00000000 ____D () C:\Users\Ismir Uebel\Desktop\gutschein tim 2014-01-24 12:34 - 2014-01-24 12:15 - 00000000 ____D () C:\Users\Ismir Uebel\Desktop\fb bilder 2014-01-21 21:56 - 2014-01-27 16:37 - 00380416 _____ () C:\Users\Ismir Uebel\Desktop\gmer.exe 2014-01-21 20:58 - 2013-12-28 11:56 - 00000000 ____D () C:\Program Files (x86)\TERA 2014-01-21 20:55 - 2014-01-21 20:55 - 00000000 ____D () C:\Users\Ismir Uebel\Desktop\arni rules 2014-01-20 07:33 - 2013-05-07 18:24 - 00000000 ____D () C:\Program Files (x86)\Motorola 2014-01-17 19:33 - 2013-07-09 08:14 - 01593956 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-01-17 19:27 - 2014-01-17 19:27 - 00312744 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-01-17 19:27 - 2014-01-17 19:27 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-01-17 19:27 - 2014-01-17 19:27 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-01-17 19:27 - 2014-01-17 19:27 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2014-01-17 19:27 - 2014-01-17 19:27 - 00000000 ____D () C:\Program Files\Java 2014-01-17 18:29 - 2013-02-16 02:58 - 00000000 ____D () C:\Users\Ismir Uebel\Desktop\Ismir 2014-01-16 17:29 - 2013-07-22 10:52 - 00000000 ____D () C:\Windows\system32\MRT 2014-01-16 17:28 - 2013-06-06 08:59 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-01-13 22:24 - 2014-01-13 22:24 - 00014838 _____ () C:\Users\Ismir Uebel\Desktop\google.csv 2014-01-13 18:13 - 2014-01-13 18:12 - 00000000 ____D () C:\Program Files (x86)\mp3DirectCut 2014-01-13 18:12 - 2014-01-13 18:12 - 00001055 _____ () C:\Users\Ismir Uebel\Desktop\mp3DirectCut.lnk 2014-01-13 18:02 - 2014-01-13 18:02 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_androidusb_01009.Wdf 2014-01-13 17:45 - 2013-02-16 17:27 - 00000000 ____D () C:\Users\Ismir Uebel\dwhelper 2014-01-12 23:30 - 2014-01-12 23:18 - 00000000 ____D () C:\Users\Ismir Uebel\Desktop\fb ss ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-01-29 07:47 ==================== End Of Log ============================ Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 09-02-2014 02 Ran by Ismir Uebel at 2014-02-09 22:48:04 Running from C:\Users\Ismir Uebel\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: avast! Antivirus (Enabled - Up to date) {2B2D1395-420B-D5C9-657E-930FE358FC3C} AS: avast! Antivirus (Enabled - Up to date) {904CF271-6431-DA47-5FCE-A87D98DFB681} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} ==================== Installed Programs ====================== Adobe Flash Player 12 ActiveX (x32 Version: 12.0.0.44 - Adobe Systems Incorporated) Adobe Flash Player 12 Plugin (x32 Version: 12.0.0.44 - Adobe Systems Incorporated) Adobe Reader XI (11.0.06) - Deutsch (x32 Version: 11.0.06 - Adobe Systems Incorporated) ANNO 2070 (x32 Version: 1.0.0.0 - Ubisoft) avast! Free Antivirus (x32 Version: 8.0.1489.0 - AVAST Software) CCleaner (Version: 4.09 - Piriform) CDBurnerXP (x32 Version: 4.5.2.4214 - CDBurnerXP) Command & Conquer Die ersten 10 Jahre (x32 Version: 1.00.0000 - Electronic Arts) Die Schlacht um Mittelerde™ II (x32 Version: - ) DivX-Setup (x32 Version: 2.6.1.84 - DivX, LLC) FileZilla Client 3.7.3 (x32 Version: 3.7.3 - Tim Kosse) FLV Player 2.0 (build 25) (x32 Version: 2.0 (build 25) - Martijn de Visser) FormatFactory 3.0.1 (x32 Version: 3.0.1 - Free Time) GIMP 2.8.4 (Version: 2.8.4 - The GIMP Team) jAlbum (x32 Version: 11.4.1 - Jalbum AB) Java 7 Update 51 (64-bit) (Version: 7.0.510 - Oracle) Java 7 Update 51 (x32 Version: 7.0.510 - Oracle) Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300 - Malwarebytes Corporation) Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Deutsch) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Silverlight (Version: 5.1.20913.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219 - Microsoft Corporation) MotoHelper MergeModules (x32 Version: 1.2.0 - Motorola) Hidden Mozilla Firefox 26.0 (x86 de) (x32 Version: 26.0 - Mozilla) Mozilla Maintenance Service (x32 Version: 23.0 - Mozilla) MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (x32 Version: 4.30.2117.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (x32 Version: 4.30.2100.0 - Microsoft Corporation) NVIDIA 3D Vision Controller-Treiber 320.49 (Version: 320.49 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 331.65 (Version: 331.65 - NVIDIA Corporation) NVIDIA Drivers (Version: 1.10.62.40 - NVIDIA Corporation) NVIDIA Grafiktreiber 331.65 (Version: 331.65 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.26.4 (Version: 1.3.26.4 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.133.889 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.13.0604 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.13.0604 (Version: 9.13.0604 - NVIDIA Corporation) NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.3165 - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 331.65 (Version: 331.65 - NVIDIA Corporation) Hidden NVIDIA Update 1.15.2 (Version: 1.15.2 - NVIDIA Corporation) NVIDIA Update Components (Version: 1.15.2 - NVIDIA Corporation) Hidden OpenOffice 4.0.0 (x32 Version: 4.00.9702 - Apache Software Foundation) Origin (x32 Version: 9.3.1.4482 - Electronic Arts, Inc.) Panda USB Vaccine 1.0.1.4 (x32 Version: - Panda Security) Phase 5 HTML-Editor (x32 Version: 5.6.2.3 - Systemberatung Schommer) Secunia PSI (3.0.0.7011) (x32 Version: 3.0.0.7011 - Secunia) Skype™ 6.13 (x32 Version: 6.13.104 - Skype Technologies S.A.) SPORE™ (x32 Version: 1.05.0001 - Electronic Arts) Spybot - Search & Destroy (x32 Version: 2.2.25 - Safer-Networking Ltd.) TeamSpeak 3 Client (Version: 3.0.10.1 - TeamSpeak Systems GmbH) TERA (x32 Version: 7 - Gameforge Productions GmbH) TP-LINK 300Mbps Wireless USB Adapter Treiber (x32 Version: 1.3.1 - TP-LINK) TP-LINK-Konfigurationstool (x32 Version: 1.3.1 - TP-LINK) Uplay (x32 Version: 4.0 - Ubisoft) VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden VLC media player 2.1.2 (x32 Version: 2.1.2 - VideoLAN) Winamp (x32 Version: 5.64 - Nullsoft, Inc) Winamp Erkennungs-Plug-in (HKCU Version: 1.0.0.1 - Nullsoft, Inc) WinRAR 5.01 (32-bit) (x32 Version: 5.01.0 - win.rar GmbH) WinRAR 5.01 (64-bit) (Version: 5.01.0 - win.rar GmbH) World of Warcraft (x32 Version: 5.4.0.17371 - Blizzard Entertainment) ==================== Restore Points ========================= 28-01-2014 06:46:11 Windows Update 31-01-2014 16:17:43 Windows Update 03-02-2014 09:00:27 Windows-Sicherung 05-02-2014 08:07:50 Windows Update ==================== Hosts content: ========================== 2009-07-14 03:34 - 2014-01-28 19:14 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (whitelisted) ============= Task: {3308067A-AC6F-493E-AF0E-BED0D96D7D36} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe Task: {3C3A1CDA-0950-4EDC-BE8F-63A4A26A4C85} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-05] (Adobe Systems Incorporated) Task: {5BC073B0-FE86-47FC-B3EF-B5FF6F061EF5} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe Task: {742B6BEC-C9D5-45C2-92EB-41A776A760FB} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe Task: {74C3EF74-923D-4F44-9A45-240B193C2A0B} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-12-17] (Piriform Ltd) Task: {8A907C1F-F026-4ABE-AAF6-CB2348136987} - System32\Tasks\PandaUSBVaccine => C:\Program Files (x86)\Panda USB Vaccine\RunInteractiveWin.exe [2009-09-23] () Task: {A96F0D0C-1789-49F4-AFB3-CF811BB7605C} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup Task: {CAF4A85B-ED87-4E03-B751-76592CF4F384} - \SidebarExecute No Task File Task: {E7DBA968-A424-41DC-BD9E-4837B7B62660} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2013-05-09] (AVAST Software) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Loaded Modules (whitelisted) ============= 2010-01-02 15:42 - 2010-01-02 15:42 - 00098304 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext_64.dll 2014-02-09 16:04 - 2014-02-09 12:49 - 02264576 _____ () C:\Program Files\AVAST Software\Avast\defs\14020900\algo.dll 2014-01-29 00:51 - 2013-05-16 10:55 - 00113496 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2014-01-29 00:51 - 2013-05-16 10:55 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl 2014-01-29 00:51 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll 2014-01-29 00:51 - 2013-05-16 10:55 - 00161112 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl 2014-01-29 00:51 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll 2013-12-24 13:08 - 2013-12-24 13:08 - 03559024 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== ==================== Faulty Device Manager Devices ============= Name: Coprozessor Description: Coprozessor Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (02/09/2014 10:39:48 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (02/09/2014 06:20:31 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (02/09/2014 06:20:28 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (02/09/2014 06:20:27 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (02/09/2014 06:02:21 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (02/09/2014 06:02:04 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (01/31/2014 00:32:51 AM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: SDTray.exe, Version: 2.1.21.129, Zeitstempel: 0x51f0ed9e Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00000000 ID des fehlerhaften Prozesses: 0xbf0 Startzeit der fehlerhaften Anwendung: 0xSDTray.exe0 Pfad der fehlerhaften Anwendung: SDTray.exe1 Pfad des fehlerhaften Moduls: SDTray.exe2 Berichtskennung: SDTray.exe3 System errors: ============= Error: (02/09/2014 04:03:58 PM) (Source: WMPNetworkSvc) (User: ) Description: Dienst "WMPNetworkSvc" konnte nicht ordnungsgemäß gestartet werden, da ein Fehler "0x80070420" in "CoCreateInstance(CLSID_UPnPDeviceFinder)" aufgetreten ist. Überprüfen Sie, ob der Dienst "UPnPHost" ausgeführt wird und ob die Windows-Komponente "UPnPHost" richtig installiert ist. Error: (02/09/2014 04:03:20 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (User: NT-AUTORITÄT) Description: Das WLAN-Erweiterungsmodul konnte nicht gestartet werden. Modulpfad: C:\Windows\system32\Rtlihvs.dll Fehlercode: 126 Error: (02/09/2014 04:03:19 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Net.Tcp-Listeneradapter" ist vom Dienst "Net.Tcp-Portfreigabedienst" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1058 Error: (02/09/2014 04:03:19 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Net.Pipe-Listeneradapter" ist von folgendem Dienst abhängig: was. Dieser Dienst ist eventuell nicht installiert. Error: (02/09/2014 04:03:19 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Net.Msmq-Listeneradapter" ist von folgendem Dienst abhängig: msmq. Dieser Dienst ist eventuell nicht installiert. Error: (02/09/2014 07:12:36 AM) (Source: WMPNetworkSvc) (User: ) Description: Dienst "WMPNetworkSvc" konnte nicht ordnungsgemäß gestartet werden, da ein Fehler "0x80004005" in "CoCreateInstance(CLSID_UPnPDeviceFinder)" aufgetreten ist. Überprüfen Sie, ob der Dienst "UPnPHost" ausgeführt wird und ob die Windows-Komponente "UPnPHost" richtig installiert ist. Error: (02/09/2014 07:11:59 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Net.Tcp-Listeneradapter" ist vom Dienst "Net.Tcp-Portfreigabedienst" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1058 Error: (02/09/2014 07:11:59 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Net.Pipe-Listeneradapter" ist von folgendem Dienst abhängig: was. Dieser Dienst ist eventuell nicht installiert. Error: (02/09/2014 07:11:59 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Net.Msmq-Listeneradapter" ist von folgendem Dienst abhängig: msmq. Dieser Dienst ist eventuell nicht installiert. Error: (02/09/2014 07:11:52 AM) (Source: Microsoft-Windows-WLAN-AutoConfig) (User: NT-AUTORITÄT) Description: Das WLAN-Erweiterungsmodul konnte nicht gestartet werden. Modulpfad: C:\Windows\system32\Rtlihvs.dll Fehlercode: 126 Microsoft Office Sessions: ========================= Error: (02/09/2014 10:39:48 PM) (Source: SideBySide)(User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Program Files (x86)\ESET\ESET Online Scanner\ESETSmartInstaller.exe Error: (02/09/2014 06:20:31 PM) (Source: SideBySide)(User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\Ismir Uebel\Desktop\esetsmartinstaller_enu.exe Error: (02/09/2014 06:20:28 PM) (Source: SideBySide)(User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\Ismir Uebel\Desktop\esetsmartinstaller_enu.exe Error: (02/09/2014 06:20:27 PM) (Source: SideBySide)(User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\Ismir Uebel\Desktop\esetsmartinstaller_enu.exe Error: (02/09/2014 06:02:21 PM) (Source: SideBySide)(User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\Ismir Uebel\Desktop\esetsmartinstaller_enu.exe Error: (02/09/2014 06:02:04 PM) (Source: SideBySide)(User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\Ismir Uebel\Downloads\esetsmartinstaller_enu.exe Error: (01/31/2014 00:32:51 AM) (Source: Application Error)(User: ) Description: SDTray.exe2.1.21.12951f0ed9eunknown0.0.0.000000000c000000500000000bf001cf1df03a3b8ee0C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exeunknownd5425590-8a06-11e3-892d-002511c81c08 CodeIntegrity Errors: =================================== Date: 2014-01-29 15:12:04.955 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume1\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-01-29 15:12:04.737 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume1\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-01-29 15:12:04.487 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume1\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-01-29 15:12:04.300 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume1\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-01-28 19:13:51.385 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume1\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-01-28 19:13:51.136 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume1\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. ==================== Memory info =========================== Percentage of memory in use: 25% Total physical RAM: 8191.24 MB Available physical RAM: 6130.16 MB Total Pagefile: 16380.66 MB Available Pagefile: 14295.1 MB Total Virtual: 8192 MB Available Virtual: 8191.81 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:465.76 GB) (Free:327.07 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive e: (Adi) (Fixed) (Total:465.76 GB) (Free:289.89 GB) NTFS Drive f: (VERBATIM) (Fixed) (Total:232.83 GB) (Free:62.06 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 0DFADDDB) Partition 1: (Active) - (Size=466 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (Size: 233 GB) (Disk ID: 06B9DB8A) Partition 1: (Not Active) - (Size=233 GB) - (Type=0C) ======================================================== Disk: 2 (Size: 466 GB) (Disk ID: FEA14C54) Partition 1: (Not Active) - (Size=466 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
10.02.2014, 17:33 | #13 |
/// the machine /// TB-Ausbilder | Windows 7 Tastertur setzt aus, Internet deaktiviert sich, Spiel minimiert sich Lade SystemLook von jpshortstuff von einem der folgenden Spiegel herunter und speichere das Tool auf dem Desktop. SystemLook (64 bit)
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
11.02.2014, 14:39 | #14 |
| Windows 7 Tastertur setzt aus, Internet deaktiviert sich, Spiel minimiert sich Es hat nicht einmal eine Minute gedauert ;-) Code:
ATTFilter SystemLook 30.07.11 by jpshortstuff Log created at 14:38 on 11/02/2014 by Ismir Uebel Administrator - Elevation successful ========== regfind ========== Searching for "usbvaccine" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8A907C1F-F026-4ABE-AAF6-CB2348136987}] "Path"="\PandaUSBVaccine" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\PandaUSBVaccine] [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\USBVaccine_RASAPI32] [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\USBVaccine_RASMANCS] [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{55A41219-9B22-4098-BAE7-AE289B3C569A}_is1] "DisplayIcon"="C:\Program Files (x86)\Panda USB Vaccine\USBVaccine.exe" ========== filefind ========== Searching for "*usbvaccine*" C:\Program Files (x86)\Panda USB Vaccine\USBVaccine.exe --a---- 1287176 bytes [23:49 15/02/2013] [15:45 23/09/2009] C0417E571BA2837EA3CBE17E728E17DD C:\Windows\System32\Tasks\PandaUSBVaccine --a---- 3108 bytes [23:49 15/02/2013] [23:49 15/02/2013] 006884141DADC68B036BBDCA25A45715 Searching for " " No files found. -= EOF =- |
11.02.2014, 19:50 | #15 |
/// the machine /// TB-Ausbilder | Windows 7 Tastertur setzt aus, Internet deaktiviert sich, Spiel minimiert sich Panda USB VAccine deinstallieren, wenn vorhanden, dann: Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter C:\Program Files (x86)\Panda USB Vaccine\USBVaccine.exe C:\Windows\System32\Tasks\PandaUSBVaccine Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Kopiere den Text in der Codebox in deinen Editor (z.B. Notepad) und speichere es unter dem Namen regfix.reg (bei Dateityp bitte "alle Dateien" wählen) Code:
ATTFilter Windows Registry Editor Version 5.00 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8A907C1F-F026-4ABE-AAF6-CB2348136987}] [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\PandaUSBVaccine] [-HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\USBVaccine_RASAPI32] [-HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\USBVaccine_RASMANCS] [-HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{55A41219-9B22-4098-BAE7-AE289B3C569A}_is1]
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Windows 7 Tastertur setzt aus, Internet deaktiviert sich, Spiel minimiert sich |
.dll, adblock, administrator, adobe, antivirus, avast, browser, ccsetup, explorer, flash player, google, helper, home, internet, mozilla, panda usb vaccine, realtek, registry, safer networking, scan, secunia psi, security, services.exe, software, spielen, svchost.exe, system, usb, windows, winlogon.exe, wlan |