|
Plagegeister aller Art und deren Bekämpfung: Trojaner ? Windows PC- ReparaturWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
20.02.2014, 10:13 | #16 |
/// the machine /// TB-Ausbilder | Trojaner ? Windows PC- Reparatur Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter HKLM-x32\...\Run: [mobilegeni daemon] - C:\Program Files (x86)\Mobogenie\DaemonProcess.exe [747712 2013-11-22] () C:\Program Files (x86)\Mobogenie HKU\S-1-5-21-3542406926-310695326-1963052837-1000\...\Winlogon: [Shell] explorer.exe [2871808 2011-02-25] (Microsoft Corporation) <==== ATTENTION HKU\S-1-5-21-3542406926-310695326-1963052837-1001\...\MountPoints2: {3c4907b9-23a2-11e3-9564-806e6f6e6963} - E:\.\Bin\ASSETUP.exe Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Bitte FRST öffnen, Haken setzen bei Additional und scannen, poste bitte beide Logfiles.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
20.02.2014, 18:47 | #17 |
| Trojaner ? Windows PC- Reparatur Muss gesplittet werden
__________________Code:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 16-02-2014 Ran by Marvin at 2014-02-20 18:43:22 Run:1 Running from C:\Users\Marvin\Desktop Boot Mode: Normal ============================================== Content of fixlist: ***************** HKLM-x32\...\Run: [mobilegeni daemon] - C:\Program Files (x86)\Mobogenie\DaemonProcess.exe [747712 2013-11-22] () C:\Program Files (x86)\Mobogenie HKU\S-1-5-21-3542406926-310695326-1963052837-1000\...\Winlogon: [Shell] explorer.exe [2871808 2011-02-25] (Microsoft Corporation) <==== ATTENTION HKU\S-1-5-21-3542406926-310695326-1963052837-1001\...\MountPoints2: {3c4907b9-23a2-11e3-9564-806e6f6e6963} - E:\.\Bin\ASSETUP.exe ***************** HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\mobilegeni daemon => Value deleted successfully. "C:\Program Files (x86)\Mobogenie" directory move: C:\Program Files (x86)\Mobogenie\aapt.exe => Moved successfully. C:\Program Files (x86)\Mobogenie\AdbWinApi.dll => Moved successfully. C:\Program Files (x86)\Mobogenie\AdbWinUsbApi.dll => Moved successfully. C:\Program Files (x86)\Mobogenie\AutoItX3.dll => Moved successfully. C:\Program Files (x86)\Mobogenie\AutoItX3_x64.dll => Moved successfully. C:\Program Files (x86)\Mobogenie\configure.mu => Moved successfully. C:\Program Files (x86)\Mobogenie\CrashReport.exe => Moved successfully. C:\Program Files (x86)\Mobogenie\CrashRpt.dll => Moved successfully. C:\Program Files (x86)\Mobogenie\DaemonProcess.exe => Moved successfully. C:\Program Files (x86)\Mobogenie\devcon_x64.exe => Moved successfully. C:\Program Files (x86)\Mobogenie\devcon_x86.exe => Moved successfully. C:\Program Files (x86)\Mobogenie\DriverInstall_x64.exe => Moved successfully. C:\Program Files (x86)\Mobogenie\DriverInstall_x86.exe => Moved successfully. C:\Program Files (x86)\Mobogenie\lang.mu => Moved successfully. C:\Program Files (x86)\Mobogenie\libeay32.dll => Moved successfully. C:\Program Files (x86)\Mobogenie\lsusb.exe => Moved successfully. C:\Program Files (x86)\Mobogenie\mgadb.exe => Moved successfully. C:\Program Files (x86)\Mobogenie\mgusb.exe => Moved successfully. C:\Program Files (x86)\Mobogenie\mobileu_chinese.qm => Moved successfully. C:\Program Files (x86)\Mobogenie\mobileu_traditional.qm => Moved successfully. C:\Program Files (x86)\Mobogenie\mobileu_vietnamese.qm => Moved successfully. C:\Program Files (x86)\Mobogenie\mobogenie.apk => Moved successfully. C:\Program Files (x86)\Mobogenie\Mobogenie.exe => Moved successfully. C:\Program Files (x86)\Mobogenie\Mobogenie.url => Moved successfully. C:\Program Files (x86)\Mobogenie\msvcp100.dll => Moved successfully. C:\Program Files (x86)\Mobogenie\msvcr100.dll => Moved successfully. C:\Program Files (x86)\Mobogenie\MUServer.apk => Moved successfully. C:\Program Files (x86)\Mobogenie\New_UpdateMoboGenie.exe => Moved successfully. C:\Program Files (x86)\Mobogenie\OutlookOperatorC.exe => Moved successfully. C:\Program Files (x86)\Mobogenie\phonon4.dll => Moved successfully. C:\Program Files (x86)\Mobogenie\QtCore4.dll => Moved successfully. C:\Program Files (x86)\Mobogenie\QtGui4.dll => Moved successfully. C:\Program Files (x86)\Mobogenie\QtNetwork4.dll => Moved successfully. C:\Program Files (x86)\Mobogenie\QtSql4.dll => Moved successfully. C:\Program Files (x86)\Mobogenie\QtWebKit4.dll => Moved successfully. C:\Program Files (x86)\Mobogenie\release-update.xml => Moved successfully. C:\Program Files (x86)\Mobogenie\shortcut.ico => Moved successfully. C:\Program Files (x86)\Mobogenie\Source.mu => Moved successfully. C:\Program Files (x86)\Mobogenie\ssleay32.dll => Moved successfully. C:\Program Files (x86)\Mobogenie\StaConfig.mu => Moved successfully. C:\Program Files (x86)\Mobogenie\uninst.exe => Moved successfully. C:\Program Files (x86)\Mobogenie\updateConfigure.mu => Moved successfully. C:\Program Files (x86)\Mobogenie\UpdateLogFile.dat => Moved successfully. C:\Program Files (x86)\Mobogenie\UpdateMoboGenie.exe => Moved successfully. C:\Program Files (x86)\Mobogenie\websites.mu => Moved successfully. C:\Program Files (x86)\Mobogenie\websites_cn.mu => Moved successfully. C:\Program Files (x86)\Mobogenie\websites_traditional.mu => Moved successfully. C:\Program Files (x86)\Mobogenie\websites_vie.mu => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\contact.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\dot-test.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\index.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\footer.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\index.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\less\app.less => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\less\common.css => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\less\common.less => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\less\message.less => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\less\vedio.less => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\info\webnotify.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\info\webnotify.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\info\notice\notice.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\info\notice\notice.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\info\download\download.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\info\download\download.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\info\download\download_collection.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\info\download\download_collection.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\info\download\download_model.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\info\download\download_model.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\info\download\download_view.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\info\download\download_view.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\info\connect\connect.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\info\connect\connect.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\iframe\category_switch.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\iframe\download_animate.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\iframe\download_animate.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\iframe\iframe_download.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\iframe\iframe_download.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\iframe\loading.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\iframe\loading.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\iframe\lottery.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\iframe\recommed.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\iframe\recommed.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\iframe\recommend2.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\iframe\recommend3.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\iframe\recommendForNew.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\iframe\tab_switch\appTab.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\iframe\tab_switch\appTab.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\iframe\tab_switch\gameTab.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\iframe\tab_switch\gameTab.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\iframe\tab_switch\genieTab.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\iframe\tab_switch\homeTab.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\iframe\tab_switch\homeTab.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\iframe\tab_switch\imageTab.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\iframe\tab_switch\imageTab.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\iframe\tab_switch\musicTab.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\iframe\tab_switch\musicTab.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\iframe\tab_switch\phoneTab.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\iframe\tab_switch\phoneTab.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\iframe\tab_switch\vedioTab.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\iframe\tab_switch\vedioTab.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\dialog\backup_all.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\dialog\backup_all.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\dialog\restore_all.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_static\dialog\restore_all.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\main.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\main.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\TEMPHTML.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\welcome\sysCallback.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\welcome\sysCallback.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\welcome\welcome_ok.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\welcome\welcome_ok.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\util\DB.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\util\DB.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\util\DeviceUtil.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\util\DeviceUtil.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\util\dialog.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\util\dialog.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\util\dialog_pop.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\util\EventProxyCenter.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\util\EventProxyCenter.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\util\I18nUtil.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\util\log.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\util\log.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\util\module.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\util\navigation.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\util\navigation.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\util\prograss.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\util\prograss.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\util\PropertyUtil.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\util\PropertyUtil.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\util\search.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\util\search.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\util\util.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\util\util.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\tpls\addweb.ejs => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\tpls\app.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\tpls\app_local.ejs => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\tpls\app_system.ejs => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\tpls\app_update.ejs => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\tpls\Disclaimer.ejs => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\tpls\download_animate.ejs => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\tpls\download_center.ejs => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\tpls\download_center_installed.ejs => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\tpls\PrivacyPolicy.ejs => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\tpls\recommend.ejs => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\tpls\recommendNewUser.ejs => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\pb\config.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\pb\config.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\moduletemp\appTemp.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\moduletemp\appTemp.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\moduletemp\contactTemp.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\moduletemp\contactTemp.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\moduletemp\downloadTemp.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\moduletemp\downloadTemp.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\moduletemp\imageTemp.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\moduletemp\imageTemp.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\moduletemp\messageTemp.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\moduletemp\messageTemp.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\moduletemp\musicTemp.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\moduletemp\musicTemp.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\moduletemp\vedioTemp.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\moduletemp\vedioTemp.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\moduletemp\videoTemp.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\moduletemp\videoTemp.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\music.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\music.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\vedio\vedio_common.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\vedio\vedio_common.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\vedio\vedio_main.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\vedio\vedio_main.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\vedio\vedio_nav.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\vedio\vedio_nav.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\vedio\vedio_temp.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\vedio\vedio_temp.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\vedio\video_temp.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\vedio\video_temp.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\ui\super_grid.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\ui\test.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\subject\subject.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\subject\subject.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\subject\subject_temp.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\subject\subject_temp.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\message\messageDialog.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\message\messageDialog.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\message\message_common.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\message\message_common.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\message\message_main.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\message\message_main.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\message\message_main_weinan.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\message\message_main_weinan.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\message\message_nav.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\message\message_nav.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\message\message_right.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\message\message_right.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\message\message_temp.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\message\message_temp.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\image\image_common.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\image\image_common.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\image\image_main.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\image\image_main.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\image\image_nav.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\image\image_nav.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\image\image_temp.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\image\image_temp.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\driver\driver.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\download\download_common.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\download\download_common.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\download\download_dialog_common.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\download\download_dialog_common.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\download\download_dialog_main.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\download\download_dialog_main.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\download\download_dialog_nav.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\download\download_dialog_nav.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\download\download_main.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\download\download_main.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\download\download_nav.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\download\download_nav.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\download\download_temp.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\download\download_temp.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\contact\contact.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\contact\contact.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\contact\contact_letter.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\contact\contact_letter.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\contact\contact_temp.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\contact\contact_temp.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\app\app_common.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\app\app_main.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\app\app_main.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\app\app_nav.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\app\app_nav.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\app\app_right.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\app\app_right.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\app\app_temp.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\app\app_temp.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\app\local_main.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\app\local_main.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\app\system_main.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\app\system_main.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\app\update_main.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\app\update_main.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\app\update_model.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\module\app\update_model.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\lib\backbone.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\lib\backbone.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\lib\bootstrap-typeahead.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\lib\bootstrap-typeahead.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\lib\doT.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\lib\doT.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\lib\ejs.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\lib\ejs.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\lib\eventProxy.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\lib\eventProxy.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\lib\jcarousellite.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\lib\jquery-1.8.3.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\lib\jquery-1.8.3.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\lib\jquery.jtips.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\lib\jquery.jtips.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\lib\jquery.prettyPhoto.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\lib\jquery.prettyPhoto.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\lib\require.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\lib\require.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\lib\undercore.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\lib\undercore.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\interface\interface_app.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\interface\interface_app.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\interface\interface_contact.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\interface\interface_contact.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\interface\interface_download.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\interface\interface_download.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\interface\interface_downloadCenter.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\interface\interface_downloadCenter.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\interface\interface_image.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\interface\interface_image.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\interface\interface_message.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\interface\interface_message.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\interface\interface_vedio.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\interface\interface_vedio.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\interface\moduleInteface.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\language.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\language.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\ÓïÑÔÃû³Æ.txt => Moved successfully. Could not move "C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\????.txt" => Scheduled to move on reboot. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\vietna\app.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\vietna\app.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\vietna\barball.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\vietna\contact.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\vietna\contact.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\vietna\download.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\vietna\download.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\vietna\iframe.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\vietna\iframe.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\vietna\message.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\vietna\message.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\vietna\music.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\vietna\music.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\vietna\picture.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\vietna\picture.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\vietna\video.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\vietna\video.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\vietna\welcome.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\vietna\welcome.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\vietna\window.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\thai\app.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\thai\app.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\thai\barball.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\thai\contact.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\thai\contact.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\thai\download.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\thai\download.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\thai\iframe.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\thai\iframe.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\thai\message.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\thai\message.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\thai\music.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\thai\music.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\thai\picture.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\thai\picture.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\thai\video.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\thai\video.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\thai\welcome.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\thai\welcome.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\thai\window.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\spanish\app.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\spanish\app.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\spanish\barball.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\spanish\contact.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\spanish\contact.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\spanish\download.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\spanish\download.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\spanish\iframe.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\spanish\iframe.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\spanish\message.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\spanish\message.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\spanish\music.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\spanish\music.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\spanish\picture.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\spanish\picture.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\spanish\video.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\spanish\video.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\spanish\welcome.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\spanish\welcome.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\spanish\window.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\russian\app.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\russian\app.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\russian\barball.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\russian\contact.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\russian\contact.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\russian\download.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\russian\download.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\russian\iframe.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\russian\iframe.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\russian\message.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\russian\message.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\russian\music.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\russian\music.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\russian\picture.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\russian\picture.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\russian\video.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\russian\video.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\russian\welcome.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\russian\welcome.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\russian\window.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\portuguese\app.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\portuguese\app.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\portuguese\barball.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\portuguese\contact.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\portuguese\contact.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\portuguese\download.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\portuguese\download.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\portuguese\iframe.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\portuguese\iframe.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\portuguese\message.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\portuguese\message.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\portuguese\music.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\portuguese\music.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\portuguese\picture.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\portuguese\picture.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\portuguese\video.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\portuguese\video.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\portuguese\welcome.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\portuguese\welcome.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\portuguese\window.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\poland\app.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\poland\barball.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\poland\contact.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\poland\download.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\poland\iframe.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\poland\message.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\poland\music.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\poland\picture.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\poland\video.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\poland\welcome.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\poland\window.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\italian\app.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\italian\barball.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\italian\contact.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\italian\download.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\italian\iframe.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\italian\message.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\italian\music.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\italian\picture.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\italian\video.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\italian\welcome.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\italian\window.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\indonesian\app.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\indonesian\app.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\indonesian\barball.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\indonesian\contact.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\indonesian\contact.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\indonesian\download.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\indonesian\download.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\indonesian\iframe.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\indonesian\iframe.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\indonesian\message.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\indonesian\message.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\indonesian\music.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\indonesian\music.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\indonesian\picture.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\indonesian\picture.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\indonesian\video.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\indonesian\video.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\indonesian\welcome.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\indonesian\welcome.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\indonesian\window.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\english\app.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\english\app.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\english\barball.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\english\barball.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\english\contact.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\english\contact.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\english\download.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\english\download.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\english\iframe.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\english\iframe.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\english\message.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\english\message.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\english\music.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\english\music.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\english\picture.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\english\picture.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\english\video.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\english\video.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\english\welcome.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\english\welcome.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\english\window.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\chinese\app.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\chinese\barball.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\chinese\contact.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\chinese\download.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\chinese\iframe.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\chinese\message.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\chinese\music.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\chinese\picture.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\chinese\video.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\chinese\welcome.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\chinese\window.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\arabic\app.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\arabic\app.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\arabic\barball.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\arabic\contact.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\arabic\contact.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\arabic\download.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\arabic\download.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\arabic\iframe.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\arabic\iframe.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\arabic\message.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\arabic\message.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\arabic\music.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\arabic\music.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\arabic\picture.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\arabic\picture.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\arabic\video.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\arabic\video.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\arabic\welcome.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\arabic\welcome.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\arabic\window.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\an.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\AngryBirdsStarWarsIIFree.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\app-default-small.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\backup_complete.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\backup_default_app.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\backup_default_content.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\backup_default_image.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\backup_default_msg.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\backup_default_music.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\backup_default_video.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\backup_li_bg.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\backup_loading.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\BarbaraPalvinVictorias.jpg => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\battery-bg.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\BBM.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\bd_phone.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\bd_right.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\bizhi.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\Camera360.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\CarAbstract.jpg => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\cate-icon.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\category-bg.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\caution.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\charge_finish.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\check_usb_debug.jpg => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\CleanMasterFREE.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\complete.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\connceting.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\connect-error.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\connected.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\connecting.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\connecting.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\connecting_default.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\connection-error.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\connection-guide-bg-300X300.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\connection-no.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\connect_gif.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\contact-default-large.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\contact-default-small.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\contact_icon.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\content_mask_1X35.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\dc_icon_03.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\dc_icon_06.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\dc_icon_07.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\dc_icon_09.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\dc_icon_11.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\dc_weak.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\deamon_process_close.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\default_image.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\default_small_app.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\default_small_images.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\default_small_music.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\default_small_vedio.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\default_video.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\diwali-special.jpg => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\down-anima-bg-16X32.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\download_icon.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\download_progress.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\download_progress_inner.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\drive-arrows.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\driver-no-link.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\driver_bottom_hx.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\driver_download.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\driver_exclam.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\driver_failure.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\driver_install.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\driver_installing_04.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\driver_installing_07.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\driver_leftbar_bg.jpg => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\driver_loading2.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\driver_no_link.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\driver_phone_sd.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\driver_right_bg.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\driver_success.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\driver_tabs_03.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\driver_tabs_05.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\driver_tabs_07.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\driver_tabs_09.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\driver_tabs_11.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\driver_tabs_13.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\driver_tabs_15.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\driver_tabs_17.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\driver_tabs_20.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\driver_tabs_23.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\error.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\expression.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\Facebook.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\facebook_bg.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\facebook_button.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\facebook_sidebar_button.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\fastcharge.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\footer-download-default-icon_03.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\footer-note-center-loading.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\footer_download_icon.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\free.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\getall.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\gl.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\head-replacement_img.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\HillClimbRacing.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\home_03.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\home_05.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\huise.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\hx.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\icon-box.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\icon-contact.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\icon-sdb.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\icon.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\icon_default_app_36X36.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\icon_default_ebook_36X36.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\icon_default_file_36X36.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\icon_default_music_36X36.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\icon_default_pic_36X36.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\icon_default_video_36X36.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\icon_indentation.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\icon_left_triangle.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\icon_open.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\icon_right_triangle.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\imageNavLeft-disabled.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\imageNavLeft.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\imageNavRight-disabled.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\imageNavRight.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\info_panel_bg_8X8.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\Instagram.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\install_phone.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\issue.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\jindu.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\jindushu.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\left_box.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\light.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\load-bg.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\load.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\loading-logo.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\loading.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\loading.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\loading_16.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\loading_16X16.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\logo.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\LoveLips.jpg => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\lucky_bg.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\lvse.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\m-ui-deamon-process-button.jpg => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\m-ui-toolbar.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\manual-update-bg.jpg => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\menu_li_bottom_bg.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\message-contact.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\Minecraft.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\minus.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\mobogenie_load.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\mobogenie_load_img.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\more-web.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\no-connect.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\note_default_icon.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\no_link_icon.jpg => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\no_link_icon.jpg.bak => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\phone_version_icon.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\PlantsVsZombies2.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\playing_11X11.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\plus.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\point.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\PouMyPet.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\process.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\process.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\progress_bg_10X4.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\progress_bg_18X6.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\right_bg_346X484.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\sanjiao.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\search-btn1.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\search-btn2.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\search_btn_message.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\shuaxin.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\SpeedMoto.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\spit.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\split.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\sprite3.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\sprite_icon.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\sprite_lucky.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\sprite_nav_icon.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\step_bg.jpg => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\step_bg2.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\step_image1_09.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\step_image2_03.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\SubwaySurfers.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\tabs_default.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\tabs_light.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\tag-icon.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\TalkingTomCat2Free.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\TempleRun2.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\Thumbs.db => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\tip-new-app.jpg => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\tip-new-ringtone-wallpaper.jpg => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\tips-restore.jpg => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\to_link_icon.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\TreePathWallpaper.jpg => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\tuijian.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\ui-left-images.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\ui-right-images.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\ui_header_bg.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\ui_header_bg2.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\ui_update_icon.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\usb-dbug.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\usb-link.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\versition_03.jpg => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\versition_05.jpg => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\versition_07.jpg => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\versition_09.jpg => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\versition_15.jpg => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\versition_17.jpg => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\versition_19.jpg => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\versition_24.jpg => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\versition_26.jpg => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\versition_28.jpg => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\versition_30.jpg => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\video-box2.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\video-icon.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\video-share.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\video_11.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\video_13.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\video_15.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\video_17.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\video_icon.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\website-logo.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\website.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\welcome_bg.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\welcome_bg_100X100.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\welcome_connect_phone_animate.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\welcome_icon.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\WhatsAppMessenger.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\youtube_b.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\ytb-button.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\light_square\btnNext.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\light_square\btnPrevious.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\light_square\default_thumbnail.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\light_square\loader.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\light_square\sprite.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\light_square\Thumbs.db => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\light_rounded\btnNext.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\light_rounded\btnPrevious.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\light_rounded\default_thumbnail.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\light_rounded\loader.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\light_rounded\sprite.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\light_rounded\Thumbs.db => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\facebook\btnNext.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\facebook\btnPrevious.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\facebook\contentPatternBottom.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\facebook\contentPatternLeft.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\facebook\contentPatternRight.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\facebook\contentPatternTop.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\facebook\default_thumbnail.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\facebook\loader.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\facebook\setWallpaperHover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\facebook\sprite.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\facebook\Thumbs.db => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\default\default_thumb.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\default\loader.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\default\sprite.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\default\sprite_next.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\default\sprite_prev.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\default\sprite_x.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\default\sprite_y.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\default\Thumbs.db => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\dark_square\btnNext.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\dark_square\btnPrevious.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\dark_square\contentPattern.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\dark_square\default_thumbnail.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\dark_square\loader.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\dark_square\sprite.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\dark_square\Thumbs.db => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\dark_rounded\btnNext.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\dark_rounded\btnPrevious.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\dark_rounded\contentPattern.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\dark_rounded\default_thumbnail.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\dark_rounded\loader.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\dark_rounded\sprite.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\prettyPhoto\dark_rounded\Thumbs.db => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\photo\mp_botbut.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\photo\mp_button.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\photo\mp_close.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\photo\mp_del.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\photo\mp_look.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\photo\mp_notsel.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\photo\mp_rotatel.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\photo\mp_rotater.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\photo\mp_selected.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\photo\mp_set.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\images\photo\Thumbs.db => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\iframe\appIframe.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\iframe\barballframe.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\iframe\gameIframe.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\iframe\homeIframe.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\iframe\imagesIframe.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\iframe\musicIframe.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\iframe\tempframe.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\iframe\topIframe.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\iframe\videoIframe.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\htmlTemp\app.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\htmlTemp\barball.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\htmlTemp\contact.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\htmlTemp\download.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\htmlTemp\download_center.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\htmlTemp\driver.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\htmlTemp\footer.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\htmlTemp\good.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\htmlTemp\message.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\htmlTemp\music.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\htmlTemp\picture.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\htmlTemp\pop.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\htmlTemp\vedio.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\htmlTemp\welcome.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\htmlTemp\welcome_ok.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\add_web.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\backupAll.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\backupAll2.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\backup_all.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\backup_status.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\binding.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\close.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\collect_data.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\dialog.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\dm_backup.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\dm_installapp.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\download.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\download_center.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\driver_loading.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\exporting.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\importing.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\import_from_file.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\import_from_file_v2.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\install.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\installing.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\install_failed.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\install_help.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\loading.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\manual-update.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\newsms.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\nomem.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\promote_active.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\recommend.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\recommend2.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\restoreAll.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\restore_all.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\restore_status.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\settings.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\speed.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\update_app.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\upgrade.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\usb.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\usb2.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\video_select.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\language.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\language.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\ÓïÑÔÃû³Æ.txt => Moved successfully. Could not move "C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\????.txt" => Scheduled to move on reboot. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\vietna\app.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\vietna\app.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\vietna\barball.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\vietna\contact.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\vietna\contact.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\vietna\download.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\vietna\download.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\vietna\iframe.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\vietna\iframe.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\vietna\message.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\vietna\message.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\vietna\music.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\vietna\music.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\vietna\picture.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\vietna\picture.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\vietna\video.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\vietna\video.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\vietna\welcome.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\vietna\welcome.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\vietna\window.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\thai\app.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\thai\app.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\thai\barball.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\thai\contact.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\thai\contact.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\thai\download.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\thai\download.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\thai\iframe.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\thai\iframe.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\thai\message.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\thai\message.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\thai\music.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\thai\music.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\thai\picture.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\thai\picture.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\thai\video.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\thai\video.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\thai\welcome.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\thai\welcome.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\thai\window.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\spanish\app.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\spanish\app.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\spanish\barball.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\spanish\contact.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\spanish\contact.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\spanish\download.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\spanish\download.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\spanish\iframe.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\spanish\iframe.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\spanish\message.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\spanish\message.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\spanish\music.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\spanish\music.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\spanish\picture.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\spanish\picture.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\spanish\video.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\spanish\video.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\spanish\welcome.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\spanish\welcome.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\spanish\window.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\russian\app.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\russian\app.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\russian\barball.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\russian\contact.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\russian\contact.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\russian\download.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\russian\download.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\russian\iframe.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\russian\iframe.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\russian\message.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\russian\message.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\russian\music.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\russian\music.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\russian\picture.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\russian\picture.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\russian\video.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\russian\video.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\russian\welcome.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\russian\welcome.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\russian\window.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\portuguese\app.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\portuguese\app.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\portuguese\barball.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\portuguese\contact.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\portuguese\contact.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\portuguese\download.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\portuguese\download.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\portuguese\iframe.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\portuguese\iframe.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\portuguese\message.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\portuguese\message.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\portuguese\music.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\portuguese\music.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\portuguese\picture.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\portuguese\picture.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\portuguese\video.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\portuguese\video.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\portuguese\welcome.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\portuguese\welcome.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\portuguese\window.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\poland\app.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\poland\barball.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\poland\contact.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\poland\download.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\poland\iframe.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\poland\message.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\poland\music.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\poland\picture.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\poland\video.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\poland\welcome.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\poland\window.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\italian\app.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\italian\barball.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\italian\contact.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\italian\download.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\italian\iframe.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\italian\message.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\italian\music.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\italian\picture.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\italian\strings.xml => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\italian\video.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\italian\welcome.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\italian\window.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\indonesian\app.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\indonesian\app.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\indonesian\barball.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\indonesian\contact.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\indonesian\contact.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\indonesian\download.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\indonesian\download.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\indonesian\iframe.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\indonesian\iframe.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\indonesian\message.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\indonesian\message.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\indonesian\music.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\indonesian\music.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\indonesian\picture.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\indonesian\picture.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\indonesian\video.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\indonesian\video.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\indonesian\welcome.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\indonesian\welcome.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\indonesian\window.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\english\app.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\english\app.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\english\barball.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\english\contact.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\english\contact.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\english\download.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\english\download.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\english\iframe.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\english\iframe.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\english\message.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\english\message.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\english\music.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\english\music.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\english\picture.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\english\picture.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\english\video.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\english\video.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\english\welcome.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\english\welcome.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\english\window.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\chinese\app.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\chinese\barball.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\chinese\contact.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\chinese\download.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\chinese\iframe.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\chinese\message.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\chinese\music.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\chinese\picture.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\chinese\video.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\chinese\welcome.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\chinese\window.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\arabic\app.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\arabic\app.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\arabic\barball.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\arabic\contact.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\arabic\contact.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\arabic\download.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\arabic\download.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\arabic\iframe.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\arabic\iframe.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\arabic\message.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\arabic\message.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\arabic\music.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\arabic\music.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\arabic\picture.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\arabic\picture.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\arabic\video.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\arabic\video.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\arabic\welcome.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\arabic\welcome.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\arabic\window.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\images\an.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\images\animation_cicle.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\images\animation_flower.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\images\bd_phone.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\images\hx.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\images\images_156X167_1.jpg => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\images\images_156X167_151.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\images\images_156X167_2.jpg => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\images\images_156X167_3.jpg => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\images\pop1_11.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\images\pop2_03.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\images\pop3_07.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\images\Thumbs.db => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\images\ui-left-images.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\dialog\images\ui-right-images.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\css\app.bak.css => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\css\app.css => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\css\bootstrap-typeahead.bak.css => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\css\bootstrap-typeahead.css => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\css\common.bak.css => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\css\common.css => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\css\grid.css => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\css\image.bak.css => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\css\image.css => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\css\jquery.autocomplete.bak.css => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\css\jquery.autocomplete.css => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\css\main.bak.css => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\css\main.css => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\css\message.bak.css => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\css\message.css => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\css\prettyPhoto.bak.css => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\css\prettyPhoto.css => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\css\style.bak.css => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\css\style.css => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\css\vedio.bak.css => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\css\vedio.css => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\coffee_js_static\info\webnotify.coffee => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\coffee_js_static\info\notice\notice.coffee => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\coffee_js_static\info\download\download.coffee => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\coffee_js_static\info\download\download_collection.coffee => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\coffee_js_static\info\download\download_model.coffee => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\coffee_js_static\info\download\download_view.coffee => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\coffee_js_static\info\connect\connect.coffee => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\coffee_js_static\dialog\backup_all.coffee => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\web\coffee_js_static\dialog\restore_all.coffee => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\app.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\app_hover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\app_on.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\bigger.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\bigger_hover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\bigger_on.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\border_top.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\bottomBar.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\bottomBar_46.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\bottom_bar.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\bottom_slider.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\close.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\close_hover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\close_on.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\delete.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\download.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\downloading.gif => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\facebook.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\facebook_hover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\facebook_on.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\feed.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\feedback.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\feedback_hover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\feedback_on.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\feed_hover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\feed_on.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\game.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\game_hover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\game_on.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\geni.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\geni_hover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\geni_on.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\google.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\google_hover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\google_on.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\gphone.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\gphone_hover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\gphone_on.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\header.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\home.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\home_hover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\home_on.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\leftBar_20.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\leftBottom.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\leftBottom_44.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\leftTop.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\leftTop_03.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\logo.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\mode.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\more.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\more_hover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\more_on.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\music.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\music_bg.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\music_hover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\music_on.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\next.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\next_hover.png => Moved successfully. |
20.02.2014, 18:48 | #18 |
| Trojaner ? Windows PC- ReparaturCode:
ATTFilter C:\Program Files (x86)\Mobogenie\templates\skin\default\next_on.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\normal.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\normal_hover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\normal_on.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\pause.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\pause_hover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\pause_on.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\phone.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\phone_hover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\phone_on.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\picture.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\picture_hover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\picture_on.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\play.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\play_hover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\play_on.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\prev.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\prev_hover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\prev_on.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\rightBar.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\rightBottom.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\rightBottom_48.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\rightTop.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\rightTop_07.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_background.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_background2.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_btnDelete_disabled.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_btnDelete_hover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_btnDelete_normal.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_btnDelete_pressed.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_btnExport_disabled.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_btnExport_hover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_btnExport_normal.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_btnExport_pressed.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_btnImport_disabled.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_btnImport_hover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_btnImport_normal.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_btnImport_pressed.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_btnLeft_disabled.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_btnLeft_hover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_btnLeft_normal.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_btnLeft_pressed.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_btnNewDir_disabled.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_btnNewDir_hover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_btnNewDir_normal.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_btnNewDir_pressed.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_btnRefresh_disabled.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_btnRefresh_hover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_btnRefresh_normal.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_btnRefresh_pressed.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_btnRight_disabled.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_btnRight_hover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_btnRight_normal.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_btnRight_pressed.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_close_hover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_close_normal.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_close_pressed.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_min_hover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_min_normal.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_min_pressed.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sd_title.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\search_bg.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\segment.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\small.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\small_hover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\small_on.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sound.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sound_hover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sound_on.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sound_slider_bg.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\sound_slider_bttn.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\split.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\Thumbs.db => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\topBar_05.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\top_bg.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\top_left_border.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\top_right_border.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\twitter.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\twitter_hover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\twitter_on.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\video.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\video_hover.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\skin\default\video_on.png => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\libraries\bootstrap-typeahead.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\libraries\bootstrap-typeahead.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\libraries\doT.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\libraries\doT.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\libraries\ejs.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\libraries\ejs.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\libraries\ejs_production.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\libraries\ejs_production.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\libraries\jquery-1.8.3.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\libraries\jquery-1.8.3.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\libraries\jquery.prettyPhoto.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\libraries\jquery.prettyPhoto.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\libraries\undercore.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\libraries\undercore.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\doT.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\doT.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\doT.min.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\doT.min.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\doU.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\doU.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\index.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\index.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\LICENSE-DOT.txt => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\package.json => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\README.md => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\test\testdoT.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\test\testdoT.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\examples\advancedsnippet.txt => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\examples\browsersample.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\examples\customdoT.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\examples\customdoT.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\examples\snippet.txt => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\examples\withdoT.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\examples\withdoT.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\examples\views\multidef.def.jst => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\examples\views\one.def => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\examples\views\two.dot.jst => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\bin\dot-packer => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\benchmarks\compileBench.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\benchmarks\compileBench.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\benchmarks\genspeed.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\benchmarks\index.html => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\benchmarks\jslitmus.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\benchmarks\jslitmus.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\benchmarks\templatesBench.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\benchmarks\templatesBench.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\benchmarks\templating\doT.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\benchmarks\templating\doT.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\benchmarks\templating\doU.bak.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\javascript\doT-master\benchmarks\templating\doU.js => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\css\main.bak.css => Moved successfully. C:\Program Files (x86)\Mobogenie\templates\css\main.css => Moved successfully. C:\Program Files (x86)\Mobogenie\sqldrivers\qsqlite4.dll => Moved successfully. C:\Program Files (x86)\Mobogenie\phonon_backend\phonon_ds94.dll => Moved successfully. C:\Program Files (x86)\Mobogenie\log\2013-11-06.log => Moved successfully. C:\Program Files (x86)\Mobogenie\log\2013-11-22.log => Moved successfully. C:\Program Files (x86)\Mobogenie\log\action.log => Moved successfully. C:\Program Files (x86)\Mobogenie\imageformats\qgif4.dll => Moved successfully. C:\Program Files (x86)\Mobogenie\imageformats\qico4.dll => Moved successfully. C:\Program Files (x86)\Mobogenie\imageformats\qjpeg4.dll => Moved successfully. C:\Program Files (x86)\Mobogenie\imageformats\qmng4.dll => Moved successfully. C:\Program Files (x86)\Mobogenie\imageformats\qsvg4.dll => Moved successfully. C:\Program Files (x86)\Mobogenie\imageformats\qtga4.dll => Moved successfully. C:\Program Files (x86)\Mobogenie\imageformats\qtiff4.dll => Moved successfully. "C:\Program Files (x86)\Mobogenie" => Directory moved successfully. HKU\S-1-5-21-3542406926-310695326-1963052837-1000\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell => Value deleted successfully. HKU\1\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{3c4907b9-23a2-11e3-9564-806e6f6e6963} => Key not found. HKCR\CLSID\{3c4907b9-23a2-11e3-9564-806e6f6e6963} => Key not found. => Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2014-02-20 18:45:33)<= "C:\Program Files (x86)\Mobogenie\templates\web\js_\i18n\????.txt" => File could not move. "C:\Program Files (x86)\Mobogenie\templates\web\dialog\js_\i18n\????.txt" => File could not move. ==== End of Fixlog ==== |
21.02.2014, 15:00 | #19 |
/// the machine /// TB-Ausbilder | Trojaner ? Windows PC- Reparatur Mach bitte den Rest von oben.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
21.02.2014, 15:59 | #20 |
| Trojaner ? Windows PC- ReparaturCode:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 20-02-2014 Ran by Marvin at 2014-02-21 15:58:41 Running from C:\Users\Marvin\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Microsoft Security Essentials (Enabled - Up to date) {641105E6-77ED-3F35-A304-765193BCB75F} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Microsoft Security Essentials (Enabled - Up to date) {DF70E402-51D7-30BB-99B4-4D23E83BFDE2} ==================== Installed Programs ====================== 7-Zip 9.20 (x64 edition) (Version: 9.20.00.0 - Igor Pavlov) Adobe Flash Player 12 ActiveX (x32 Version: 12.0.0.44 - Adobe Systems Incorporated) Adobe Reader X (10.1.9) - Deutsch (x32 Version: 10.1.9 - Adobe Systems Incorporated) AMD APP SDK Runtime (Version: 10.0.1084.4 - Advanced Micro Devices Inc.) Hidden AMD Catalyst Install Manager (Version: 8.0.903.0 - Advanced Micro Devices, Inc.) Apple Application Support (x32 Version: 2.3.6 - Apple Inc.) Apple Mobile Device Support (Version: 7.0.0.117 - Apple Inc.) Apple Software Update (x32 Version: 2.1.3.127 - Apple Inc.) Arma 2 (x32 Version: - Bohemia Interactive) ARMA 2 Army of The Czech Republic - Data cache removal (x32 Version: - ) ARMA 2: British Armed Forces - Data cache removal (x32 Version: - ) Arma 2: British Armed Forces (x32 Version: - Bohemia Interactive) Arma 2: DayZ Mod (x32 Version: - Bohemia Interactive) Arma 2: Operation Arrowhead (x32 Version: - Bohemia Interactive) Arma 2: Operation Arrowhead Beta (x32 Version: - ) ARMA 2: Private Military Company - Data cache removal (x32 Version: - ) Arma 2: Private Military Company (x32 Version: - Bohemia Interactive) Asmedia ASM104x USB 3.0 Host Controller Driver (x32 Version: 1.14.8.0 - Asmedia Technology) Assassin's Creed IV: Black Flag (x32 Version: 1.01 - Ubisoft) ASUS Product Register Program (x32 Version: 1.0.018 - ASUSTek Computer Inc.) Avira Free Antivirus (x32 Version: 14.0.3.338 - Avira) Avira SearchFree Toolbar (x32 Version: 12.10.0.2949 - APN, LLC) BattlEye for OA Uninstall (x32 Version: - ) BattlEye Uninstall (x32 Version: - ) Bonjour (Version: 3.0.0.10 - Apple Inc.) Borderlands 2 (x32 Version: - Gearbox Software) Call of Duty: Black Ops II - Multiplayer (x32 Version: - ) Call of Duty: Black Ops II - Zombies (x32 Version: - ) Call of Duty: Black Ops II (x32 Version: - Treyarch) CDBurnerXP (Version: 4.3.8.2523 - CDBurnerXP) Company of Heroes - FAKEMSI (x32 Version: 2.0.0.0 - THQ Inc.) Hidden Company of Heroes (x32 Version: 2.0.0.1 - THQ Inc.) Counter-Strike: Source (x32 Version: - Valve) Counter-Strike: Source (x32 Version: 1.0.0.0 - Valve) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DayZ Commander (x32 Version: 0.92.91 - Dotjosh Studios) Dojotech Spotify Recorder (x32 Version: 3.2 - Dojotech Software) EVEREST Ultimate Edition v5.50 (x32 Version: 5.50 - Lavalys, Inc.) EXPERTool v8.8 (x32 Version: 8.8.0.0 - Gainward Co. Ltd.) Forged Alliance Forever (x32 Version: 240.10.87 - FAF Community) Free YouTube to MP3 Converter version 3.12.17.1127 (x32 Version: 3.12.17.1127 - DVDVideoSoft Ltd.) FUSSBALL MANAGER 13 (x32 Version: 1.0.4.0 - Electronic Arts) GameSpy Arcade (x32 Version: - ) Google Chrome (x32 Version: 32.0.1700.107 - Google Inc.) Google Update Helper (x32 Version: 1.3.22.5 - Google Inc.) Hidden Half-Life 2: Lost Coast (x32 Version: - Valve) Halo Combat Evolved (x32 Version: - ) iTunes (Version: 11.1.3.8 - Apple Inc.) Java 7 Update 40 (64-bit) (Version: 7.0.400 - Oracle) Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden League of Legends (x32 Version: 3.0.1 - Riot Games ) League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft Antimalware Service DE-DE Language Pack (Version: 3.0.8107.0 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Office 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Klick-und-Los 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden Microsoft Office Klick-und-Los 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Starter 2010 - Deutsch (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Security Client (Version: 4.4.0304.0 - Microsoft Corporation) Hidden Microsoft Security Client DE-DE Language Pack (Version: 2.0.0719.0 - Microsoft Corporation) Hidden Microsoft Security Essentials (Version: 4.4.304.0 - Microsoft Corporation) Microsoft Silverlight (Version: 5.1.20913.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219 - Microsoft Corporation) Minecraft (x32 Version: 1.6.1 - MINECRAFTinstall.net) Mobogenie (x32 Version: - Mobogenie.com) <==== ATTENTION MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden Norton PC Checkup (x32 Version: 2.0.18.16 - Symantec Corporation) NVIDIA 3D Vision Controller-Treiber 314.16 (Version: 314.16 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 314.16 (Version: 314.16 - NVIDIA Corporation) NVIDIA Grafiktreiber 314.16 (Version: 314.16 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.23.1 (Version: 1.3.23.1 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.109.706 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.12.1031 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.12.1031 (Version: 9.12.1031 - NVIDIA Corporation) NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.1416 - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 314.16 (Version: 314.16 - NVIDIA Corporation) Hidden NVIDIA Update 1.12.12 (Version: 1.12.12 - NVIDIA Corporation) NVIDIA Update Components (Version: 1.12.12 - NVIDIA Corporation) Hidden OpenOffice 4.0.1 (x32 Version: 4.01.9714 - Apache Software Foundation) Origin (x32 Version: 9.4.5.195 - Electronic Arts, Inc.) Prototype 2 (x32 Version: - ) QuickShare (x32 Version: 1.90.60.12091 - Linkury Inc.) <==== ATTENTION RAGE (x32 Version: - id Software) Realtek Ethernet Controller Driver (x32 Version: 7.61.612.2012 - Realtek) Realtek High Definition Audio Driver (x32 Version: 6.0.1.6699 - Realtek Semiconductor Corp.) Revo Uninstaller 1.95 (x32 Version: 1.95 - VS Revo Group) SHARKOON Skiller (x32 Version: 1.00.0000 - ) Skype™ 6.11 (x32 Version: 6.11.102 - Skype Technologies S.A.) Spotify (HKCU Version: 0.9.7.16.g4b197456 - Spotify AB) Star Wars Battlefront II (x32 Version: 1.0 - LucasArts) Steamless Left4Dead Pack (x32 Version: 1.0 - Steamless) TeamSpeak 3 Client (HKCU Version: 3.0.13 - TeamSpeak Systems GmbH) The Witcher 2: Assassins of Kings Enhanced Edition (x32 Version: - CD Projekt RED) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (x32 Version: 3 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2468871) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2533523) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2600217) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2836939v3) (x32 Version: 3 - Microsoft Corporation) Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Essentials (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Windows Live Fotogalerie (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4225.0 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Language Selector (Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Mesh (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Mesh ActiveX control for remote connections (x32 Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Messenger (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live MIME IFilter (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live Remote Client (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Client Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Service (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Service Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden WinRAR 5.00 (64-bit) (Version: 5.00.0 - win.rar GmbH) Xfire (x32 Version: - ) ==================== Restore Points ========================= 15-02-2014 09:46:40 Windows Update 15-02-2014 12:42:55 DirectX wurde installiert 15-02-2014 14:14:44 DirectX wurde installiert 18-02-2014 14:43:19 Revo Uninstaller's restore point - Google Chrome 18-02-2014 14:47:40 Windows Update ==================== Hosts content: ========================== 2009-07-14 03:34 - 2014-02-12 18:56 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (whitelisted) ============= Task: {5050E41F-7BE2-4559-B9E1-11885187D3EC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-02-18] (Google Inc.) Task: {A333B19F-798F-49B6-A1E5-991908E587A2} - System32\Tasks\ASUS\RunDAOD => C:\Windows\DAODx.exe [2009-03-30] () Task: {CADF4A15-6E70-457B-A136-14BFBA4F214E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-02-18] (Google Inc.) Task: {E3DCFEEB-4641-4215-83E1-85D80F3DDC0F} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-05] (Adobe Systems Incorporated) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2013-09-22 17:33 - 2013-03-06 01:30 - 00086304 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2009-03-30 07:32 - 2009-03-30 07:32 - 00032768 ____R () C:\Windows\DAODx.exe 2013-10-13 16:57 - 2013-10-13 16:55 - 00394824 _____ () C:\Program Files (x86)\Avira\AntiVir Desktop\sqlite3.dll 2013-09-13 19:51 - 2013-09-13 19:51 - 00087952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2013-09-13 19:51 - 2013-09-13 19:51 - 01242952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2014-02-15 15:05 - 2014-02-15 15:05 - 00962560 _____ () D:\Program Files (x86)\Origin\platforms\qwindows.dll 2014-02-15 15:04 - 2014-02-15 15:04 - 00024064 _____ () D:\Program Files (x86)\Origin\imageformats\qgif.dll 2014-02-15 15:04 - 2014-02-15 15:04 - 00025088 _____ () D:\Program Files (x86)\Origin\imageformats\qico.dll 2014-02-15 15:04 - 2014-02-15 15:04 - 00217088 _____ () D:\Program Files (x86)\Origin\imageformats\qjpeg.dll 2014-02-15 15:04 - 2014-02-15 15:04 - 00261632 _____ () D:\Program Files (x86)\Origin\imageformats\qmng.dll 2014-02-15 15:04 - 2014-02-15 15:04 - 00019968 _____ () D:\Program Files (x86)\Origin\imageformats\qtga.dll 2014-02-15 15:04 - 2014-02-15 15:04 - 00302592 _____ () D:\Program Files (x86)\Origin\imageformats\qtiff.dll 2014-02-15 15:04 - 2014-02-15 15:04 - 00018944 _____ () D:\Program Files (x86)\Origin\imageformats\qwbmp.dll 2014-02-18 17:33 - 2014-02-02 00:41 - 00715592 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\libglesv2.dll 2014-02-18 17:33 - 2014-02-02 00:41 - 00100168 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\libegl.dll 2014-02-18 17:33 - 2014-02-02 00:42 - 04055368 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\pdf.dll 2014-02-18 17:33 - 2014-02-02 00:42 - 00399688 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\ppGoogleNaClPluginChrome.dll 2014-02-18 17:33 - 2014-02-02 00:41 - 01634632 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\ffmpegsumo.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== ==================== Disabled items from MSCONFIG ============== ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (02/21/2014 03:56:57 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/20/2014 06:46:47 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/20/2014 06:41:40 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/20/2014 06:38:39 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/20/2014 06:37:18 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: svchost.exe_LanmanServer, Version: 6.1.7600.16385, Zeitstempel: 0x4a5bc3c1 Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000000000 ID des fehlerhaften Prozesses: 0x424 Startzeit der fehlerhaften Anwendung: 0xsvchost.exe_LanmanServer0 Pfad der fehlerhaften Anwendung: svchost.exe_LanmanServer1 Pfad des fehlerhaften Moduls: svchost.exe_LanmanServer2 Berichtskennung: svchost.exe_LanmanServer3 Error: (02/19/2014 05:29:47 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/19/2014 01:48:00 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/18/2014 08:08:40 PM) (Source: Steam Client Service) (User: ) Description: Error: Failed to poke open firewall Error: (02/18/2014 07:17:56 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/18/2014 06:16:35 PM) (Source: Steam Client Service) (User: ) Description: Error: Failed to poke open firewall System errors: ============= Error: (02/21/2014 03:56:53 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Error: (02/20/2014 06:46:10 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Error: (02/20/2014 06:45:31 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Avira Browser-Schutz" wurde mit folgendem dienstspezifischem Fehler beendet: %%4. Error: (02/20/2014 06:41:05 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Error: (02/20/2014 06:40:42 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Avira Browser-Schutz" wurde mit folgendem dienstspezifischem Fehler beendet: %%4. Error: (02/20/2014 06:38:25 PM) (Source: Service Control Manager) (User: ) Description: Der Versuch des Dienststeuerungs-Managers, nach dem unerwarteten Beenden des Dienstes "Server" Korrekturmaßnahmen (Neustart des Diensts) durchzuführen, ist fehlgeschlagen. Fehler: %%1056 Error: (02/20/2014 06:38:25 PM) (Source: Service Control Manager) (User: ) Description: Der Versuch des Dienststeuerungs-Managers, nach dem unerwarteten Beenden des Dienstes "Shellhardwareerkennung" Korrekturmaßnahmen (Neustart des Diensts) durchzuführen, ist fehlgeschlagen. Fehler: %%1056 Error: (02/20/2014 06:37:25 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Windows-Verwaltungsinstrumentation" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 120000 Millisekunden durchgeführt: Neustart des Diensts. Error: (02/20/2014 06:37:25 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Designs" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 60000 Millisekunden durchgeführt: Neustart des Diensts. Error: (02/20/2014 06:37:25 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Shellhardwareerkennung" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 60000 Millisekunden durchgeführt: Neustart des Diensts. Microsoft Office Sessions: ========================= Error: (02/21/2014 03:56:57 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/20/2014 06:46:47 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/20/2014 06:41:40 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/20/2014 06:38:39 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/20/2014 06:37:18 PM) (Source: Application Error)(User: ) Description: svchost.exe_LanmanServer6.1.7600.163854a5bc3c1unknown0.0.0.000000000c0000005000000000000000042401cf2e62569fbf3aC:\Windows\system32\svchost.exeunknowna453d7b4-9a55-11e3-a9d2-ac220b828298 Error: (02/19/2014 05:29:47 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/19/2014 01:48:00 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/18/2014 08:08:40 PM) (Source: Steam Client Service)(User: ) Description: Failed to poke open firewall Error: (02/18/2014 07:17:56 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/18/2014 06:16:35 PM) (Source: Steam Client Service)(User: ) Description: Failed to poke open firewall CodeIntegrity Errors: =================================== Date: 2014-02-12 18:55:20.298 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume1\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-02-12 18:55:20.267 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume1\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. ==================== Memory info =========================== Percentage of memory in use: 26% Total physical RAM: 8089.45 MB Available physical RAM: 5945.63 MB Total Pagefile: 16177.09 MB Available Pagefile: 13793.29 MB Total Virtual: 8192 MB Available Virtual: 8191.83 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:200 GB) (Free:42.9 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: () (Fixed) (Total:1663.01 GB) (Free:1468.33 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: C2B8ADF3) Partition: GPT Partition Type. ==================== End Of Log ============================ |
22.02.2014, 13:38 | #21 |
/// the machine /// TB-Ausbilder | Trojaner ? Windows PC- Reparatur FRST.txt fehlt noch.
__________________ --> Trojaner ? Windows PC- Reparatur |
23.02.2014, 13:09 | #22 |
| Trojaner ? Windows PC- ReparaturFRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 22-02-2014 01 Ran by Marvin (administrator) on MARVIN-PC on 23-02-2014 13:08:20 Running from C:\Users\Marvin\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (APN LLC.) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Symantec Corporation) C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\ccSvcHst.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Symantec Corporation) C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\ccSvcHst.exe () C:\Windows\DAODx.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (Gainward Co. Ltd.) C:\Program Files (x86)\EXPERTool\TBPanel.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Spotify Ltd) C:\Users\Marvin\AppData\Roaming\Spotify\spotify.exe (Spotify Ltd) C:\Users\Marvin\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Electronic Arts) D:\Program Files (x86)\Origin\Origin.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Game Inc.) C:\Program Files (x86)\SHARKOON Skiller\GameMon.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (APN) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe () C:\Users\Marvin\AppData\Roaming\Spotify\Data\SpotifyHelper.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe () C:\Users\Marvin\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Marvin\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Marvin\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Marvin\AppData\Roaming\Spotify\Data\SpotifyHelper.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MpCmdRun.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Symantec Corporation) C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\SymcPCCULaunchSvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6827664 2012-08-07] (Realtek Semiconductor) HKLM\...\Run: [MSC] - C:\Program Files\Microsoft Security Client\msseces.exe [1266912 2013-10-23] (Microsoft Corporation) HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [689744 2014-02-20] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [GamingKeyboard] - C:\Program Files (x86)\SHARKOON Skiller\GameMon.exe [1803264 2012-06-07] (Game Inc.) HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.) HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-11-02] (Apple Inc.) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-12-18] (Adobe Systems Incorporated) HKLM-x32\...\Run: [ApnTBMon] - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1758160 2014-02-13] (APN) HKU\S-1-5-21-3542406926-310695326-1963052837-1000\...\Run: [TBPanel] - C:\Program Files (x86)\EXPERTool\TBPanel.exe [2128680 2013-02-08] (Gainward Co. Ltd.) HKU\S-1-5-21-3542406926-310695326-1963052837-1000\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20584608 2013-11-14] (Skype Technologies S.A.) HKU\S-1-5-21-3542406926-310695326-1963052837-1000\...\Run: [Spotify] - C:\Users\Marvin\AppData\Roaming\Spotify\Spotify.exe [6118400 2014-01-22] (Spotify Ltd) HKU\S-1-5-21-3542406926-310695326-1963052837-1000\...\Run: [Spotify Web Helper] - C:\Users\Marvin\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1171968 2014-01-22] (Spotify Ltd) HKU\S-1-5-21-3542406926-310695326-1963052837-1000\...\Run: [EADM] - D:\Program Files (x86)\Origin\Origin.exe [3598680 2014-02-15] (Electronic Arts) HKU\S-1-5-21-3542406926-310695326-1963052837-1000\...\Winlogon: [Shell] explorer.exe [2871808 2011-02-25] (Microsoft Corporation) <==== ATTENTION HKU\S-1-5-21-3542406926-310695326-1963052837-1001\...\Run: [TBPanel] - C:\Program Files (x86)\EXPERTool\TBPanel.exe [2128680 2013-02-08] (Gainward Co. Ltd.) HKU\S-1-5-21-3542406926-310695326-1963052837-1001\...\MountPoints2: {3c4907b9-23a2-11e3-9564-806e6f6e6963} - E:\.\Bin\ASSETUP.exe ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://syb.msn.com StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - DefaultScope {9A314634-6F06-4511-AF03-329C1A81FF9D} URL = SearchScopes: HKCU - {9A314634-6F06-4511-AF03-329C1A81FF9D} URL = BHO: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport_x64.dll (APN LLC.) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.) BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) Toolbar: HKLM - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport_x64.dll (APN LLC.) Toolbar: HKLM-x32 - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.) Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Chrome: ======= CHR Extension: (ProxTube) - C:\Users\Marvin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aakchaleigkohafkfjfjbblobjifikek [2014-02-18] CHR Extension: (Google Docs) - C:\Users\Marvin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-02-18] CHR Extension: (Google Drive) - C:\Users\Marvin\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-02-18] CHR Extension: (YouTube) - C:\Users\Marvin\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-02-18] CHR Extension: (Adblock Plus) - C:\Users\Marvin\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-02-18] CHR Extension: (Google-Suche) - C:\Users\Marvin\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-02-18] CHR Extension: (AdBlock) - C:\Users\Marvin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-02-18] CHR Extension: (Man of Steel) - C:\Users\Marvin\AppData\Local\Google\Chrome\User Data\Default\Extensions\knfmphhfikndpfbllhdojajhgpmlnlef [2014-02-18] CHR Extension: (Google Wallet) - C:\Users\Marvin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-02-18] CHR Extension: (Google Mail) - C:\Users\Marvin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-02-18] CHR HKLM-x32\...\Chrome\Extension: [aaaaacalgebmfelllfiaoknifldpngjh] - C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\ToolbarCR.crx [2014-02-20] ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440400 2014-02-20] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440400 2014-02-20] (Avira Operations GmbH & Co. KG) R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [1017424 2014-02-20] (Avira Operations GmbH & Co. KG) R2 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [166352 2014-02-13] (APN LLC.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [49152 2013-11-23] () R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2013-10-23] (Microsoft Corporation) R3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [348376 2013-10-23] (Microsoft Corporation) R2 Norton PC Checkup Application Launcher; C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\SymcPCCULaunchSvc.exe [123320 2012-08-13] (Symantec Corporation) R2 PCCUJobMgr; C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\ccSvcHst.exe [126392 2012-08-13] (Symantec Corporation) ==================== Drivers (Whitelisted) ==================== R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2013-12-17] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131576 2013-12-17] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-11-14] (Avira Operations GmbH & Co. KG) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2013-10-12] (DT Soft Ltd) R3 GameKB; C:\Windows\System32\drivers\GameKB.sys [27648 2012-05-11] () S3 hitmanpro37; C:\Windows\system32\drivers\hitmanpro37.sys [32512 2013-10-04] () R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [248240 2013-09-27] (Microsoft Corporation) R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [134944 2013-09-27] (Microsoft Corporation) R1 Serial; C:\Windows\System32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) S3 catchme; \??\C:\ComboFix\catchme.sys [X] S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-21 18:39 - 2014-02-21 18:39 - 00000000 ____D () C:\ProgramData\APN 2014-02-21 15:58 - 2014-02-21 15:59 - 00024880 _____ () C:\Users\Marvin\Desktop\Addition.txt 2014-02-21 15:57 - 2014-02-23 13:08 - 00013126 _____ () C:\Users\Marvin\Desktop\FRST.txt 2014-02-18 17:39 - 2014-02-13 15:33 - 00161276 _____ () C:\Users\Marvin\Desktop\proxtube_1.2.7.crx 2014-02-18 17:38 - 2014-02-18 17:38 - 00614816 _____ (Chip Digital GmbH) C:\Users\Marvin\Downloads\proxtube_1.2.7 - CHIP-Downloader.exe 2014-02-18 17:38 - 2014-02-18 17:38 - 00150536 _____ () C:\Users\Marvin\Desktop\proxtube_1.2.7.zip 2014-02-18 17:33 - 2014-02-23 13:05 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-02-18 17:33 - 2014-02-22 21:44 - 00001110 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-02-18 17:33 - 2014-02-22 10:47 - 00002175 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-02-18 17:33 - 2014-02-20 19:39 - 00004106 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-02-18 17:33 - 2014-02-20 19:39 - 00003854 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-02-18 15:47 - 2014-02-23 13:08 - 00000000 ____D () C:\Users\Marvin\Desktop\FRST-OlderVersion 2014-02-18 15:40 - 2014-02-18 15:40 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Marvin\Downloads\revosetup95.exe 2014-02-18 15:40 - 2014-02-18 15:40 - 00001264 _____ () C:\Users\Marvin\Desktop\Revo Uninstaller.lnk 2014-02-18 15:40 - 2014-02-18 15:40 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group 2014-02-15 15:16 - 2014-02-15 15:16 - 00000883 _____ () C:\Users\Public\Desktop\FUSSBALL MANAGER 13.lnk 2014-02-15 15:05 - 2014-02-16 14:34 - 00000000 ____D () C:\Users\Marvin\AppData\Roaming\Origin 2014-02-15 15:05 - 2014-02-15 15:05 - 00000000 ____D () C:\Users\Marvin\AppData\Local\Origin 2014-02-15 15:04 - 2014-02-23 13:06 - 00000000 ____D () C:\ProgramData\Origin 2014-02-15 15:04 - 2014-02-15 15:04 - 00000692 _____ () C:\Users\Public\Desktop\Origin.lnk 2014-02-15 15:04 - 2014-02-15 15:04 - 00000000 ____D () C:\ProgramData\Electronic Arts 2014-02-15 15:03 - 2014-02-15 15:04 - 17011744 _____ (Electronic Arts, Inc.) C:\Users\Marvin\Downloads\OriginThinSetup.exe 2014-02-15 13:44 - 2014-02-15 13:45 - 00000000 ____D () C:\Users\Marvin\Documents\Witcher 2 2014-02-15 13:44 - 2014-02-15 13:44 - 00000000 ____D () C:\Users\Marvin\AppData\Local\The Witcher 2 2014-02-15 10:33 - 2014-02-15 10:33 - 00001122 _____ () C:\Users\Marvin\Desktop\EVEREST Ultimate Edition.lnk 2014-02-15 10:33 - 2014-02-15 10:33 - 00000000 ____D () C:\Program Files (x86)\Lavalys 2014-02-15 10:32 - 2014-02-15 10:32 - 10255080 _____ (Lavalys, Inc. ) C:\Users\Marvin\Downloads\everestultimate550.exe 2014-02-15 10:18 - 2014-02-15 10:18 - 00002019 _____ () C:\Users\Public\Desktop\Adobe Reader X.lnk 2014-02-15 10:18 - 2014-02-15 10:18 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-02-14 00:05 - 2013-12-21 10:53 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-02-14 00:05 - 2013-12-21 09:56 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-02-14 00:04 - 2014-02-06 13:16 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-02-14 00:04 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-02-14 00:04 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-02-14 00:04 - 2014-02-06 12:12 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-02-14 00:04 - 2014-02-06 12:07 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-02-14 00:04 - 2014-02-06 12:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-02-14 00:04 - 2014-02-06 11:57 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-02-14 00:04 - 2014-02-06 11:56 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-02-14 00:04 - 2014-02-06 11:52 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-02-14 00:04 - 2014-02-06 11:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-02-14 00:04 - 2014-02-06 11:48 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-02-14 00:04 - 2014-02-06 11:48 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-02-14 00:04 - 2014-02-06 11:38 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-02-14 00:04 - 2014-02-06 11:32 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-02-14 00:04 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-02-14 00:04 - 2014-02-06 11:17 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-02-14 00:04 - 2014-02-06 11:11 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-02-14 00:04 - 2014-02-06 11:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-02-14 00:04 - 2014-02-06 11:00 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-02-14 00:04 - 2014-02-06 10:57 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-02-14 00:04 - 2014-02-06 10:57 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-02-14 00:04 - 2014-02-06 10:52 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-02-14 00:04 - 2014-02-06 10:52 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-02-14 00:04 - 2014-02-06 10:50 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-02-14 00:04 - 2014-02-06 10:49 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-02-14 00:04 - 2014-02-06 10:47 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-02-14 00:04 - 2014-02-06 10:46 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-02-14 00:04 - 2014-02-06 10:25 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-02-14 00:04 - 2014-02-06 10:25 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-02-14 00:04 - 2014-02-06 10:24 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-02-14 00:04 - 2014-02-06 10:22 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-02-14 00:04 - 2014-02-06 10:13 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-02-14 00:04 - 2014-02-06 10:09 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-02-14 00:04 - 2014-02-06 10:03 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-02-14 00:04 - 2014-02-06 09:55 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-02-14 00:04 - 2014-02-06 09:41 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-02-14 00:04 - 2014-02-06 09:40 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-02-14 00:04 - 2014-02-06 09:36 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-02-14 00:04 - 2014-02-06 09:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-02-13 23:20 - 2014-02-13 23:20 - 00000000 ____D () C:\Windows\ERUNT 2014-02-13 23:13 - 2014-02-13 23:15 - 00000000 ____D () C:\AdwCleaner 2014-02-13 23:06 - 2014-02-13 23:07 - 00000000 ____D () C:\Spotify 2014-02-13 22:44 - 2014-02-13 22:44 - 00000000 ____D () C:\Users\Marvin\AppData\Roaming\Malwarebytes 2014-02-13 22:44 - 2014-02-13 22:44 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-02-13 18:38 - 2014-01-01 00:05 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls 2014-02-13 18:38 - 2014-01-01 00:04 - 00420008 _____ () C:\Windows\system32\locale.nls 2014-02-13 18:38 - 2013-12-06 03:30 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-02-13 18:38 - 2013-12-06 03:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-02-13 18:38 - 2013-12-06 03:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-02-13 18:38 - 2013-12-06 03:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-02-13 18:38 - 2013-12-04 03:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll 2014-02-13 18:38 - 2013-12-04 03:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll 2014-02-13 18:38 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll 2014-02-13 18:38 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll 2014-02-13 18:38 - 2013-12-04 03:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll 2014-02-13 18:38 - 2013-12-04 03:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe 2014-02-13 18:38 - 2013-12-04 03:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe 2014-02-13 18:38 - 2013-12-04 03:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe 2014-02-13 18:38 - 2013-12-04 03:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe 2014-02-13 18:38 - 2013-12-04 03:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll 2014-02-13 18:38 - 2013-12-04 03:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll 2014-02-13 18:38 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll 2014-02-13 18:38 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll 2014-02-13 18:38 - 2013-12-04 03:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll 2014-02-13 18:38 - 2013-12-04 02:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe 2014-02-13 18:38 - 2013-12-04 02:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe 2014-02-13 18:38 - 2013-12-04 02:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe 2014-02-13 18:38 - 2013-12-04 02:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe 2014-02-13 18:37 - 2013-12-25 00:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-02-13 18:37 - 2013-12-24 23:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-02-13 18:37 - 2013-11-26 09:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2014-02-13 18:37 - 2013-11-22 23:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2014-02-12 18:57 - 2014-02-12 18:57 - 00140273 _____ () C:\ComboFix.txt 2014-02-12 18:49 - 2011-06-26 07:45 - 00256000 _____ () C:\Windows\PEV.exe 2014-02-12 18:49 - 2010-11-07 18:20 - 00208896 _____ () C:\Windows\MBR.exe 2014-02-12 18:49 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2014-02-12 18:49 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2014-02-12 18:49 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2014-02-12 18:49 - 2000-08-31 01:00 - 00098816 _____ () C:\Windows\sed.exe 2014-02-12 18:49 - 2000-08-31 01:00 - 00080412 _____ () C:\Windows\grep.exe 2014-02-12 18:49 - 2000-08-31 01:00 - 00068096 _____ () C:\Windows\zip.exe 2014-02-12 18:48 - 2014-02-12 18:57 - 00000000 ____D () C:\Qoobox 2014-02-12 18:48 - 2014-02-12 18:56 - 00000000 ____D () C:\Windows\erdnt 2014-02-11 21:39 - 2014-02-23 13:08 - 00000000 ____D () C:\FRST 2014-02-11 21:38 - 2014-02-23 13:08 - 02154496 _____ (Farbar) C:\Users\Marvin\Desktop\FRST64.exe 2014-02-01 15:16 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2014-02-01 15:16 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2014-02-01 15:16 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2014-02-01 15:16 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2014-02-01 15:16 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2014-02-01 15:16 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2014-02-01 15:16 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2014-02-01 15:16 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2014-02-01 15:16 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll 2014-02-01 15:16 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2014-02-01 15:16 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2014-02-01 15:16 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2014-02-01 15:16 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2014-02-01 15:16 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2014-02-01 15:16 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2014-02-01 15:16 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2014-01-31 17:49 - 2014-01-31 17:49 - 00000000 ____D () C:\Users\Marvin\Documents\EA Games 2014-01-31 17:49 - 2014-01-31 17:49 - 00000000 ____D () C:\Users\Marvin\AppData\Local\EA Games 2014-01-31 10:29 - 2014-01-31 10:29 - 00000000 ____D () C:\Users\Marvin\Documents\Assassin's Creed IV Black Flag ==================== One Month Modified Files and Folders ======= 2014-02-23 13:08 - 2014-02-21 15:57 - 00013126 _____ () C:\Users\Marvin\Desktop\FRST.txt 2014-02-23 13:08 - 2014-02-18 15:47 - 00000000 ____D () C:\Users\Marvin\Desktop\FRST-OlderVersion 2014-02-23 13:08 - 2014-02-11 21:39 - 00000000 ____D () C:\FRST 2014-02-23 13:08 - 2014-02-11 21:38 - 02154496 _____ (Farbar) C:\Users\Marvin\Desktop\FRST64.exe 2014-02-23 13:07 - 2013-09-23 18:07 - 00000000 ____D () C:\Users\Marvin\AppData\Roaming\Skype 2014-02-23 13:06 - 2014-02-15 15:04 - 00000000 ____D () C:\ProgramData\Origin 2014-02-23 13:06 - 2013-11-01 12:05 - 00000000 ____D () C:\Users\Marvin\AppData\Roaming\Spotify 2014-02-23 13:05 - 2014-02-18 17:33 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-02-23 13:05 - 2013-09-22 17:33 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-02-23 13:05 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-02-23 13:05 - 2009-07-14 05:51 - 00060654 _____ () C:\Windows\setupact.log 2014-02-22 21:58 - 2013-09-22 17:20 - 01987477 _____ () C:\Windows\WindowsUpdate.log 2014-02-22 21:44 - 2014-02-18 17:33 - 00001110 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-02-22 21:27 - 2013-05-21 09:53 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-02-22 15:55 - 2013-09-22 15:27 - 00000000 ____D () C:\Users\Marvin\AppData\Roaming\TS3Client 2014-02-22 11:27 - 2013-09-22 19:19 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-02-22 11:27 - 2013-09-22 19:19 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-02-22 11:27 - 2013-05-21 09:53 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-02-22 10:47 - 2014-02-18 17:33 - 00002175 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-02-22 10:44 - 2009-07-14 05:45 - 00021664 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-02-22 10:44 - 2009-07-14 05:45 - 00021664 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-02-22 10:40 - 2010-11-21 07:50 - 00697072 _____ () C:\Windows\system32\perfh007.dat 2014-02-22 10:40 - 2010-11-21 07:50 - 00148110 _____ () C:\Windows\system32\perfc007.dat 2014-02-22 10:40 - 2009-07-14 06:13 - 01614036 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-02-21 18:39 - 2014-02-21 18:39 - 00000000 ____D () C:\ProgramData\APN 2014-02-21 15:59 - 2014-02-21 15:58 - 00024880 _____ () C:\Users\Marvin\Desktop\Addition.txt 2014-02-20 21:26 - 2013-09-25 09:47 - 00000000 ____D () C:\Users\Marvin\Desktop\World of Warcraft 2014-02-20 19:39 - 2014-02-18 17:33 - 00004106 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-02-20 19:39 - 2014-02-18 17:33 - 00003854 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-02-20 18:43 - 2013-11-06 21:00 - 00018714 _____ () C:\Users\Marvin\daemonprocess.txt 2014-02-20 18:37 - 2009-07-14 06:08 - 00032632 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-02-18 19:16 - 2010-11-21 04:47 - 00425506 _____ () C:\Windows\PFRO.log 2014-02-18 17:38 - 2014-02-18 17:38 - 00614816 _____ (Chip Digital GmbH) C:\Users\Marvin\Downloads\proxtube_1.2.7 - CHIP-Downloader.exe 2014-02-18 17:38 - 2014-02-18 17:38 - 00150536 _____ () C:\Users\Marvin\Desktop\proxtube_1.2.7.zip 2014-02-18 17:33 - 2013-09-22 17:52 - 00000000 ____D () C:\Program Files (x86)\Google 2014-02-18 17:33 - 2013-09-20 13:43 - 00000000 ____D () C:\Users\Marvin\AppData\Local\Google 2014-02-18 15:40 - 2014-02-18 15:40 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Marvin\Downloads\revosetup95.exe 2014-02-18 15:40 - 2014-02-18 15:40 - 00001264 _____ () C:\Users\Marvin\Desktop\Revo Uninstaller.lnk 2014-02-18 15:40 - 2014-02-18 15:40 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group 2014-02-16 18:15 - 2013-09-22 15:00 - 00000000 ____D () C:\Users\Marvin\AppData\Roaming\Xfire 2014-02-16 14:34 - 2014-02-15 15:05 - 00000000 ____D () C:\Users\Marvin\AppData\Roaming\Origin 2014-02-15 15:16 - 2014-02-15 15:16 - 00000883 _____ () C:\Users\Public\Desktop\FUSSBALL MANAGER 13.lnk 2014-02-15 15:15 - 2011-04-07 08:37 - 00135872 _____ () C:\Windows\DirectX.log 2014-02-15 15:05 - 2014-02-15 15:05 - 00000000 ____D () C:\Users\Marvin\AppData\Local\Origin 2014-02-15 15:04 - 2014-02-15 15:04 - 00000692 _____ () C:\Users\Public\Desktop\Origin.lnk 2014-02-15 15:04 - 2014-02-15 15:04 - 00000000 ____D () C:\ProgramData\Electronic Arts 2014-02-15 15:04 - 2014-02-15 15:03 - 17011744 _____ (Electronic Arts, Inc.) C:\Users\Marvin\Downloads\OriginThinSetup.exe 2014-02-15 13:45 - 2014-02-15 13:44 - 00000000 ____D () C:\Users\Marvin\Documents\Witcher 2 2014-02-15 13:44 - 2014-02-15 13:44 - 00000000 ____D () C:\Users\Marvin\AppData\Local\The Witcher 2 2014-02-15 10:47 - 2013-09-24 19:26 - 00000000 ____D () C:\Windows\system32\MRT 2014-02-15 10:46 - 2013-09-24 19:26 - 88567024 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-02-15 10:33 - 2014-02-15 10:33 - 00001122 _____ () C:\Users\Marvin\Desktop\EVEREST Ultimate Edition.lnk 2014-02-15 10:33 - 2014-02-15 10:33 - 00000000 ____D () C:\Program Files (x86)\Lavalys 2014-02-15 10:32 - 2014-02-15 10:32 - 10255080 _____ (Lavalys, Inc. ) C:\Users\Marvin\Downloads\everestultimate550.exe 2014-02-15 10:18 - 2014-02-15 10:18 - 00002019 _____ () C:\Users\Public\Desktop\Adobe Reader X.lnk 2014-02-15 10:18 - 2014-02-15 10:18 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-02-15 10:18 - 2011-04-07 09:21 - 00000000 ____D () C:\ProgramData\Adobe 2014-02-14 17:54 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache 2014-02-14 00:11 - 2011-04-07 08:41 - 01590994 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-02-13 23:20 - 2014-02-13 23:20 - 00000000 ____D () C:\Windows\ERUNT 2014-02-13 23:15 - 2014-02-13 23:13 - 00000000 ____D () C:\AdwCleaner 2014-02-13 23:15 - 2013-09-23 18:02 - 00000000 ____D () C:\Users\Marvin\Desktop\Programme 2014-02-13 23:07 - 2014-02-13 23:06 - 00000000 ____D () C:\Spotify 2014-02-13 22:57 - 2013-11-04 23:14 - 00000000 ____D () C:\Users\Marvin\AppData\Roaming\SoftGrid Client 2014-02-13 22:44 - 2014-02-13 22:44 - 00000000 ____D () C:\Users\Marvin\AppData\Roaming\Malwarebytes 2014-02-13 22:44 - 2014-02-13 22:44 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-02-13 15:33 - 2014-02-18 17:39 - 00161276 _____ () C:\Users\Marvin\Desktop\proxtube_1.2.7.crx 2014-02-12 18:57 - 2014-02-12 18:57 - 00140273 _____ () C:\ComboFix.txt 2014-02-12 18:57 - 2014-02-12 18:48 - 00000000 ____D () C:\Qoobox 2014-02-12 18:57 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Default 2014-02-12 18:56 - 2014-02-12 18:48 - 00000000 ____D () C:\Windows\erdnt 2014-02-12 18:56 - 2009-07-14 03:34 - 00000215 _____ () C:\Windows\system.ini 2014-02-12 18:55 - 2013-09-22 17:23 - 00000000 ____D () C:\Users\Marvin 2014-02-11 21:55 - 2013-09-25 10:10 - 00000000 ____D () C:\Users\Marvin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2014-02-11 21:53 - 2013-10-20 20:28 - 00000025 _____ () C:\Windows\SIERRA.INI 2014-02-10 17:56 - 2013-11-01 12:11 - 00000000 ____D () C:\Users\Marvin\AppData\Local\Spotify 2014-02-06 13:16 - 2014-02-14 00:04 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-02-06 12:30 - 2014-02-14 00:04 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-02-06 12:30 - 2014-02-14 00:04 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-02-06 12:12 - 2014-02-14 00:04 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-02-06 12:07 - 2014-02-14 00:04 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-02-06 12:06 - 2014-02-14 00:04 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-02-06 11:57 - 2014-02-14 00:04 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-02-06 11:56 - 2014-02-14 00:04 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-02-06 11:52 - 2014-02-14 00:04 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-02-06 11:49 - 2014-02-14 00:04 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-02-06 11:48 - 2014-02-14 00:04 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-02-06 11:48 - 2014-02-14 00:04 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-02-06 11:38 - 2014-02-14 00:04 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-02-06 11:32 - 2014-02-14 00:04 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-02-06 11:20 - 2014-02-14 00:04 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-02-06 11:17 - 2014-02-14 00:04 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-02-06 11:11 - 2014-02-14 00:04 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-02-06 11:01 - 2014-02-14 00:04 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-02-06 11:00 - 2014-02-14 00:04 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-02-06 10:57 - 2014-02-14 00:04 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-02-06 10:57 - 2014-02-14 00:04 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-02-06 10:52 - 2014-02-14 00:04 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-02-06 10:52 - 2014-02-14 00:04 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-02-06 10:50 - 2014-02-14 00:04 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-02-06 10:49 - 2014-02-14 00:04 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-02-06 10:47 - 2014-02-14 00:04 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-02-06 10:46 - 2014-02-14 00:04 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-02-06 10:25 - 2014-02-14 00:04 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-02-06 10:25 - 2014-02-14 00:04 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-02-06 10:24 - 2014-02-14 00:04 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-02-06 10:22 - 2014-02-14 00:04 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-02-06 10:13 - 2014-02-14 00:04 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-02-06 10:09 - 2014-02-14 00:04 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-02-06 10:03 - 2014-02-14 00:04 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-02-06 09:55 - 2014-02-14 00:04 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-02-06 09:41 - 2014-02-14 00:04 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-02-06 09:40 - 2014-02-14 00:04 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-02-06 09:36 - 2014-02-14 00:04 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-02-06 09:34 - 2014-02-14 00:04 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-02-05 14:51 - 2009-07-14 06:09 - 00000000 ____D () C:\Windows\System32\Tasks\WPD 2014-02-01 22:23 - 2013-11-23 02:37 - 00000000 ____D () C:\Users\Marvin\AppData\Local\ArmA 2 OA 2014-01-31 17:49 - 2014-01-31 17:49 - 00000000 ____D () C:\Users\Marvin\Documents\EA Games 2014-01-31 17:49 - 2014-01-31 17:49 - 00000000 ____D () C:\Users\Marvin\AppData\Local\EA Games 2014-01-31 10:29 - 2014-01-31 10:29 - 00000000 ____D () C:\Users\Marvin\Documents\Assassin's Creed IV Black Flag Files to move or delete: ==================== C:\Users\Marvin\AppData\Roaming\cache.ini C:\Users\Marvin\Archive.exe C:\Users\Marvin\BsSndRpt.exe C:\Users\Marvin\BugSplat.dll C:\Users\Marvin\BugSplatRc.dll C:\Users\Marvin\dbghelp.dll C:\Users\Marvin\Debug.dll C:\Users\Marvin\DllTie.dll C:\Users\Marvin\Filesystem.dll C:\Users\Marvin\ijl15.dll C:\Users\Marvin\Input.dll C:\Users\Marvin\libacml_mp_dll.dll C:\Users\Marvin\libguide40.dll C:\Users\Marvin\libifcoremd.dll C:\Users\Marvin\libmmd.dll C:\Users\Marvin\Localizer.dll C:\Users\Marvin\LuaConfig.dll C:\Users\Marvin\MathBox.dll C:\Users\Marvin\Memory.dll C:\Users\Marvin\ModManager.dll C:\Users\Marvin\mss32.dll C:\Users\Marvin\NetConfig.dll C:\Users\Marvin\Platform.dll C:\Users\Marvin\PlatHook.dll C:\Users\Marvin\Profiler.dll C:\Users\Marvin\RelicCOH.exe C:\Users\Marvin\removeFakeMSI.bat C:\Users\Marvin\Shark.dll C:\Users\Marvin\SimEngine.dll C:\Users\Marvin\spDx10.dll C:\Users\Marvin\spDx9.dll C:\Users\Marvin\Spooge.dll C:\Users\Marvin\STLPort.5.1.dll C:\Users\Marvin\Uninstall_German.exe C:\Users\Marvin\UserInterface.dll C:\Users\Marvin\Util.dll C:\Users\Marvin\WorldBuilder.exe C:\Users\Marvin\WW2Mod.dll C:\Users\Marvin\XThread.dll Some content of TEMP: ==================== C:\Users\Marvin\AppData\Local\Temp\avgnt.exe C:\Users\Marvin\AppData\Local\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-02-18 16:09 ==================== End Of Log ============================ Da |
24.02.2014, 16:32 | #23 |
/// the machine /// TB-Ausbilder | Trojaner ? Windows PC- Reparatur Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter Task: {A333B19F-798F-49B6-A1E5-991908E587A2} - System32\Tasks\ASUS\RunDAOD => C:\Windows\DAODx.exe [2009-03-30] () HKU\S-1-5-21-3542406926-310695326-1963052837-1000\...\Winlogon: [Shell] explorer.exe [2871808 2011-02-25] (Microsoft Corporation) <==== ATTENTION HKU\S-1-5-21-3542406926-310695326-1963052837-1001\...\Run: [TBPanel] - C:\Program Files (x86)\EXPERTool\TBPanel.exe [2128680 2013-02-08] (Gainward Co. Ltd.) HKU\S-1-5-21-3542406926-310695326-1963052837-1001\...\MountPoints2: {3c4907b9-23a2-11e3-9564-806e6f6e6963} - E:\.\Bin\ASSETUP.exe Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Kommt die Meldung noch?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
24.02.2014, 17:02 | #24 |
| Trojaner ? Windows PC- ReparaturCode:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 23-02-2014 02 Ran by Marvin at 2014-02-24 16:59:47 Run:2 Running from C:\Users\Marvin\Desktop Boot Mode: Normal ============================================== Content of fixlist: ***************** Task: {A333B19F-798F-49B6-A1E5-991908E587A2} - System32\Tasks\ASUS\RunDAOD => C:\Windows\DAODx.exe [2009-03-30] () HKU\S-1-5-21-3542406926-310695326-1963052837-1000\...\Winlogon: [Shell] explorer.exe [2871808 2011-02-25] (Microsoft Corporation) <==== ATTENTION HKU\S-1-5-21-3542406926-310695326-1963052837-1001\...\Run: [TBPanel] - C:\Program Files (x86)\EXPERTool\TBPanel.exe [2128680 2013-02-08] (Gainward Co. Ltd.) HKU\S-1-5-21-3542406926-310695326-1963052837-1001\...\MountPoints2: {3c4907b9-23a2-11e3-9564-806e6f6e6963} - E:\.\Bin\ASSETUP.exe ***************** HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{A333B19F-798F-49B6-A1E5-991908E587A2} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A333B19F-798F-49B6-A1E5-991908E587A2} => Key deleted successfully. C:\Windows\System32\Tasks\ASUS\RunDAOD => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ASUS\RunDAOD => Key deleted successfully. HKU\S-1-5-21-3542406926-310695326-1963052837-1000\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell => Value deleted successfully. HKU\S-1-5-21-3542406926-310695326-1963052837-1001\Software\Microsoft\Windows\CurrentVersion\Run\\TBPanel => Value deleted successfully. HKU\1\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{3c4907b9-23a2-11e3-9564-806e6f6e6963} => Key not found. HKCR\CLSID\{3c4907b9-23a2-11e3-9564-806e6f6e6963} => Key not found. ==== End of Fixlog ==== |
25.02.2014, 13:06 | #25 |
/// the machine /// TB-Ausbilder | Trojaner ? Windows PC- Reparatur Mach bitte nochmal nen Screenshot davon.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
25.02.2014, 14:17 | #26 |
| Trojaner ? Windows PC- ReparaturSeid dem diese Meldung da ist, startet Skype auch nicht mehr, die Meldung dort ist wie Folgt : Erneutes installieren bringt nicht und diese Supporter Seite bringt auch nichts.. ... |
26.02.2014, 11:01 | #27 |
/// the machine /// TB-Ausbilder | Trojaner ? Windows PC- Reparatur Argh wie ich das hasse. Schick mir bitte heute abend ne PM, ich seh die Bilder auf Arbeit nicht, irgendwas blockt da.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
27.02.2014, 18:07 | #28 |
/// the machine /// TB-Ausbilder | Trojaner ? Windows PC- Reparatur Ok, bitte nochmal FRST öffnen. Haken raus bei allem unter Whitelist, Haken rein bei Additional. Scannen und bitte beide Logs posten.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
27.02.2014, 18:55 | #29 |
| Trojaner ? Windows PC- ReparaturFRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 27-02-2014 02 Ran by Marvin (administrator) on MARVIN-PC on 27-02-2014 18:51:37 Running from C:\Users\Marvin\Desktop\FRST-OlderVersion Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (All) ========================= (Microsoft Corporation) C:\Windows\System32\smss.exe (Microsoft Corporation) C:\Windows\system32\csrss.exe (Microsoft Corporation) C:\Windows\system32\wininit.exe (Microsoft Corporation) C:\Windows\system32\csrss.exe (Microsoft Corporation) C:\Windows\system32\services.exe (Microsoft Corporation) C:\Windows\system32\lsass.exe (Microsoft Corporation) C:\Windows\system32\lsm.exe (Microsoft Corporation) C:\Windows\system32\winlogon.exe (Microsoft Corporation) C:\Windows\system32\svchost.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Microsoft Corporation) C:\Windows\system32\svchost.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (Microsoft Corporation) C:\Windows\System32\svchost.exe (Microsoft Corporation) C:\Windows\System32\svchost.exe (Microsoft Corporation) C:\Windows\system32\svchost.exe (Microsoft Corporation) C:\Windows\system32\svchost.exe (Microsoft Corporation) C:\Windows\system32\svchost.exe (Microsoft Corporation) C:\Windows\system32\svchost.exe (Microsoft Corporation) C:\Windows\System32\spoolsv.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (Microsoft Corporation) C:\Windows\system32\svchost.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (APN LLC.) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe (Symantec Corporation) C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\ccSvcHst.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE (Microsoft Corporation) C:\Windows\system32\svchost.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe (Microsoft Corporation) C:\Windows\system32\svchost.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe (Symantec Corporation) C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\SymcPCCULaunchSvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe (Microsoft Corporation) C:\Windows\system32\wbem\wmiprvse.exe (Microsoft Corporation) C:\Windows\system32\taskhost.exe (Symantec Corporation) C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\ccSvcHst.exe (Microsoft Corporation) C:\Windows\system32\Dwm.exe (Microsoft Corporation) C:\Windows\Explorer.EXE (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (Gainward Co. Ltd.) C:\Program Files (x86)\EXPERTool\TBPanel.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Spotify Ltd) C:\Users\Marvin\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Game Inc.) C:\Program Files (x86)\SHARKOON Skiller\GameMon.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (APN) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MpCmdRun.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\svchost.exe (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe (Farbar) C:\Users\Marvin\Desktop\FRST-OlderVersion\FRST64.exe ==================== Registry (All) =========================== HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6827664 2012-08-07] (Realtek Semiconductor) HKLM\...\Run: [MSC] - C:\Program Files\Microsoft Security Client\msseces.exe [1266912 2013-10-23] (Microsoft Corporation) HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [689744 2014-02-20] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [GamingKeyboard] - C:\Program Files (x86)\SHARKOON Skiller\GameMon.exe [1803264 2012-06-07] (Game Inc.) HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.) HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-11-02] (Apple Inc.) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-12-18] (Adobe Systems Incorporated) HKLM-x32\...\Run: [ApnTBMon] - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1758160 2014-02-13] (APN) HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe, [30720 2010-11-21] (Microsoft Corporation) HKLM-x32\...\Winlogon: [Userinit] C:\Windows\sysWOW64\userinit.exe [26624 2010-11-21] (Microsoft Corporation) HKLM\...\Winlogon: [Shell] Explorer.exe [2871808 2011-02-25] (Microsoft Corporation) HKLM-x32\...\Winlogon: [Shell] explorer.exe [2616320 2011-02-25] (Microsoft Corporation) HKLM\...\Policies\Explorer: [NoDrives] 0 HKU\S-1-5-21-3542406926-310695326-1963052837-1000\...\Run: [TBPanel] - C:\Program Files (x86)\EXPERTool\TBPanel.exe [2128680 2013-02-08] (Gainward Co. Ltd.) HKU\S-1-5-21-3542406926-310695326-1963052837-1000\...\Run: [Spotify] - C:\Users\Marvin\AppData\Roaming\Spotify\Spotify.exe [6118400 2014-01-22] (Spotify Ltd) HKU\S-1-5-21-3542406926-310695326-1963052837-1000\...\Run: [Spotify Web Helper] - C:\Users\Marvin\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1171968 2014-01-22] (Spotify Ltd) HKU\S-1-5-21-3542406926-310695326-1963052837-1000\...\Run: [EADM] - D:\Program Files (x86)\Origin\Origin.exe [3598680 2014-02-15] (Electronic Arts) HKU\S-1-5-21-3542406926-310695326-1963052837-1000\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20922016 2014-02-10] (Skype Technologies S.A.) HKU\S-1-5-21-3542406926-310695326-1963052837-1000\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd) HKU\S-1-5-21-3542406926-310695326-1963052837-1000\...\Policies\system: [DisableRegistryTools] 0 HKU\S-1-5-21-3542406926-310695326-1963052837-1000\...\Policies\system: [DisableTaskMgr] 0 HKU\S-1-5-21-3542406926-310695326-1963052837-1000\...\Policies\Explorer: [NoDriveTypeAutoRun] 145 HKU\S-1-5-21-3542406926-310695326-1963052837-1000\...\Policies\Explorer: [NoDrives] 0 HKU\S-1-5-21-3542406926-310695326-1963052837-1000\...\Winlogon: [Shell] explorer.exe [2871808 2011-02-25] (Microsoft Corporation) <==== ATTENTION HKU\S-1-5-21-3542406926-310695326-1963052837-1001\...\Policies\Explorer: [NoDriveTypeAutoRun] 145 HKU\S-1-5-21-3542406926-310695326-1963052837-1001\...\MountPoints2: {3c4907b9-23a2-11e3-9564-806e6f6e6963} - E:\.\Bin\ASSETUP.exe Lsa: [Authentication Packages] msv1_0 Lsa: [Notification Packages] scecli SecurityProviders: credssp.dll SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No File SSODL-x32: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No File ==================== Internet (All) =========================== HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\system32\blank.htm HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.conduit.com/?ctid=CT3319434&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=4&UP=SP3DE13C8F-9D35-4699-AD75-B0B010587DE4&SSPV= HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://syb.msn.com HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\System32\blank.htm HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://go.microsoft.com/fwlink/?LinkId=54896 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://go.microsoft.com/fwlink/?LinkId=69157 HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/p/?LinkId=255141 HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://go.microsoft.com/fwlink/?LinkId=54896 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://go.microsoft.com/fwlink/p/?LinkId=255141 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/p/?LinkId=255141 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896 URLSearchHook: HKCU - Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\System32\ieframe.dll (Microsoft Corporation) URLSearchHook: HKCU - Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\SysWOW64\ieframe.dll (Microsoft Corporation) StartMenuInternet: IEXPLORE.EXE - "C:\Program Files (x86)\Internet Explorer\iexplore.exe" SearchScopes: HKLM - DefaultScope {9A314634-6F06-4511-AF03-329C1A81FF9D} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSBTDF&pc=MASB&src=IE-SearchBox SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM - {9A314634-6F06-4511-AF03-329C1A81FF9D} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSBTDF&pc=MASB&src=IE-SearchBox SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC SearchScopes: HKLM-x32 - {9A314634-6F06-4511-AF03-329C1A81FF9D} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSBTDF&pc=MASB&src=IE-SearchBox SearchScopes: HKCU - DefaultScope {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://search.conduit.com/Results.aspx?ctid=CT3319434&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=4&UP=SP3DE13C8F-9D35-4699-AD75-B0B010587DE4&q={searchTerms}&SSPV= SearchScopes: HKCU - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://search.conduit.com/Results.aspx?ctid=CT3319434&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=4&UP=SP3DE13C8F-9D35-4699-AD75-B0B010587DE4&q={searchTerms}&SSPV= SearchScopes: HKCU - {9A314634-6F06-4511-AF03-329C1A81FF9D} URL = BHO: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport_x64.dll (APN LLC.) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Skype add-on for Internet Explorer - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.) BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation) Toolbar: HKLM - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport_x64.dll (APN LLC.) Toolbar: HKLM-x32 - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.) Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation) Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\system32\urlmon.dll (Microsoft Corporation) Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\System32\msvidctl.dll (Microsoft Corporation) Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\system32\urlmon.dll (Microsoft Corporation) Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\system32\urlmon.dll (Microsoft Corporation) Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\system32\urlmon.dll (Microsoft Corporation) Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\system32\urlmon.dll (Microsoft Corporation) Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll (Microsoft Corporation) Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation) Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - No File Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\system32\urlmon.dll (Microsoft Corporation) Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation) Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\system32\inetcomm.dll (Microsoft Corporation) Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\system32\urlmon.dll (Microsoft Corporation) Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll (Microsoft Corporation) Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - No File Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation) Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation) Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - No File Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\System32\msvidctl.dll (Microsoft Corporation) Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation) Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - No File Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - No File Handler-x32: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation) Handler-x32: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation) Handler-x32: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\SysWOW64\msvidctl.dll (Microsoft Corporation) Handler-x32: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation) Handler-x32: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation) Handler-x32: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation) Handler-x32: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation) Handler-x32: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysWOW64\itss.dll (Microsoft Corporation) Handler-x32: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation) Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll (Microsoft Corporation) Handler-x32: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation) Handler-x32: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation) Handler-x32: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\SysWOW64\inetcomm.dll (Microsoft Corporation) Handler-x32: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation) Handler-x32: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysWOW64\itss.dll (Microsoft Corporation) Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll (Microsoft Corporation) Handler-x32: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation) Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Handler-x32: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\SysWOW64\msvidctl.dll (Microsoft Corporation) Handler-x32: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation) Handler-x32: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll (Microsoft Corporation) Handler-x32: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll (Microsoft Corporation) Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\system32\mscoree.dll (Microsoft Corporation) Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\system32\mscoree.dll (Microsoft Corporation) Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\system32\mscoree.dll (Microsoft Corporation) Filter-x32: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation) Filter-x32: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation) Filter-x32: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation) Winsock: Catalog5 01 C:\Windows\SysWOW64\NLAapi.dll [52224] (Microsoft Corporation) Winsock: Catalog5 02 C:\Windows\SysWOW64\napinsp.dll [52224] (Microsoft Corporation) Winsock: Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation) Winsock: Catalog5 04 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation) Winsock: Catalog5 05 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation) Winsock: Catalog5 06 C:\Windows\SysWOW64\winrnr.dll [20992] (Microsoft Corporation) Winsock: Catalog5 07 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280] (Microsoft Corp.) Winsock: Catalog5 08 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280] (Microsoft Corp.) Winsock: Catalog5 09 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704] (Apple Inc.) Winsock: Catalog9 01 C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG) Winsock: Catalog9 02 C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG) Winsock: Catalog9 03 C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG) Winsock: Catalog9 04 C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG) Winsock: Catalog9 05 C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG) Winsock: Catalog9 06 C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG) Winsock: Catalog9 07 C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG) Winsock: Catalog9 08 C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG) Winsock: Catalog9 09 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation) Winsock: Catalog9 10 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation) Winsock: Catalog9 11 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation) Winsock: Catalog9 12 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation) Winsock: Catalog9 13 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation) Winsock: Catalog9 14 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation) Winsock: Catalog9 15 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation) Winsock: Catalog9 16 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation) Winsock: Catalog9 17 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation) Winsock: Catalog9 18 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation) Winsock: Catalog9 19 C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG) Winsock: Catalog5-x64 01 %SystemRoot%\system32\NLAapi.dll [70656] (Microsoft Corporation) Winsock: Catalog5-x64 02 %SystemRoot%\system32\napinsp.dll [68096] (Microsoft Corporation) Winsock: Catalog5-x64 03 %SystemRoot%\system32\pnrpnsp.dll [86016] (Microsoft Corporation) Winsock: Catalog5-x64 04 %SystemRoot%\system32\pnrpnsp.dll [86016] (Microsoft Corporation) Winsock: Catalog5-x64 05 %SystemRoot%\System32\mswsock.dll [327168] (Microsoft Corporation) Winsock: Catalog5-x64 06 %SystemRoot%\System32\winrnr.dll [28672] (Microsoft Corporation) Winsock: Catalog5-x64 07 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [170880] (Microsoft Corp.) Winsock: Catalog5-x64 08 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [170880] (Microsoft Corp.) Winsock: Catalog5-x64 09 C:\Program Files\Bonjour\mdnsNSP.dll [132968] (Apple Inc.) Winsock: Catalog9-x64 01 C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll [231496] (Avira Operations GmbH & Co. KG) Winsock: Catalog9-x64 02 C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll [231496] (Avira Operations GmbH & Co. KG) Winsock: Catalog9-x64 03 C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll [231496] (Avira Operations GmbH & Co. KG) Winsock: Catalog9-x64 04 C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll [231496] (Avira Operations GmbH & Co. KG) Winsock: Catalog9-x64 05 C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll [231496] (Avira Operations GmbH & Co. KG) Winsock: Catalog9-x64 06 C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll [231496] (Avira Operations GmbH & Co. KG) Winsock: Catalog9-x64 07 C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll [231496] (Avira Operations GmbH & Co. KG) Winsock: Catalog9-x64 08 C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll [231496] (Avira Operations GmbH & Co. KG) Winsock: Catalog9-x64 09 %SystemRoot%\system32\mswsock.dll [327168] (Microsoft Corporation) Winsock: Catalog9-x64 10 %SystemRoot%\system32\mswsock.dll [327168] (Microsoft Corporation) Winsock: Catalog9-x64 11 %SystemRoot%\system32\mswsock.dll [327168] (Microsoft Corporation) Winsock: Catalog9-x64 12 %SystemRoot%\system32\mswsock.dll [327168] (Microsoft Corporation) Winsock: Catalog9-x64 13 %SystemRoot%\system32\mswsock.dll [327168] (Microsoft Corporation) Winsock: Catalog9-x64 14 %SystemRoot%\system32\mswsock.dll [327168] (Microsoft Corporation) Winsock: Catalog9-x64 15 %SystemRoot%\system32\mswsock.dll [327168] (Microsoft Corporation) Winsock: Catalog9-x64 16 %SystemRoot%\system32\mswsock.dll [327168] (Microsoft Corporation) Winsock: Catalog9-x64 17 %SystemRoot%\system32\mswsock.dll [327168] (Microsoft Corporation) Winsock: Catalog9-x64 18 %SystemRoot%\system32\mswsock.dll [327168] (Microsoft Corporation) Winsock: Catalog9-x64 19 C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll [231496] (Avira Operations GmbH & Co. KG) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Chrome: ======= CHR HomePage: hxxp://search.conduit.com/?ctid=CT3319434&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=4&UP=SP3DE13C8F-9D35-4699-AD75-B0B010587DE4&SSPV= CHR DefaultSearchKeyword: google.de CHR DefaultSearchProvider: Google CHR DefaultSearchURL: {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding} CHR DefaultNewTabURL: {google:baseURL}_/chrome/newtab?{google:RLZ}{google:instantExtendedEnabledParameter}{google:ntpIsThemedParameter}ie={inputEncoding} CHR Extension: (ProxTube) - C:\Users\Marvin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aakchaleigkohafkfjfjbblobjifikek [2014-02-18] CHR Extension: (Google Docs) - C:\Users\Marvin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-02-18] CHR Extension: (Google Drive) - C:\Users\Marvin\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-02-18] CHR Extension: (YouTube) - C:\Users\Marvin\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-02-18] CHR Extension: (Adblock Plus) - C:\Users\Marvin\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-02-18] CHR Extension: (Google-Suche) - C:\Users\Marvin\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-02-18] CHR Extension: (AdBlock) - C:\Users\Marvin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-02-18] CHR Extension: (Man of Steel) - C:\Users\Marvin\AppData\Local\Google\Chrome\User Data\Default\Extensions\knfmphhfikndpfbllhdojajhgpmlnlef [2014-02-18] CHR Extension: (Skype Click to Call) - C:\Users\Marvin\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2014-02-25] CHR Extension: (Google Wallet) - C:\Users\Marvin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-02-18] CHR Extension: (Google Mail) - C:\Users\Marvin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-02-18] CHR HKLM-x32\...\Chrome\Extension: [aaaaacalgebmfelllfiaoknifldpngjh] - C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\ToolbarCR.crx [2014-02-20] CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-01-03] CHR StartMenuInternet: Google Chrome - "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" ==================== Services (All) ======================== R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [65432 2013-12-18] (Adobe Systems Incorporated) S3 AdobeFlashPlayerUpdateSvc; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [257928 2014-02-22] (Adobe Systems Incorporated) R3 AeLookupSvc; C:\Windows\System32\aelupsvc.dll [72192 2009-07-14] (Microsoft Corporation) S3 ALG; C:\Windows\System32\alg.exe [79360 2009-07-14] (Microsoft Corporation) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440400 2014-02-20] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440400 2014-02-20] (Avira Operations GmbH & Co. KG) R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [1017424 2014-02-20] (Avira Operations GmbH & Co. KG) R2 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [166352 2014-02-13] (APN LLC.) S3 AppIDSvc; C:\Windows\System32\appidsvc.dll [32256 2009-07-14] (Microsoft Corporation) R3 Appinfo; C:\Windows\System32\appinfo.dll [70144 2013-02-27] (Microsoft Corporation) R2 Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [55624 2013-09-07] (Apple Inc.) S3 aspnet_state; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [51808 2013-09-11] (Microsoft Corporation) R2 AudioEndpointBuilder; C:\Windows\System32\Audiosrv.dll [679424 2010-11-21] (Microsoft Corporation) R2 AudioSrv; C:\Windows\System32\Audiosrv.dll [679424 2010-11-21] (Microsoft Corporation) S3 AxInstSV; C:\Windows\System32\AxInstSV.dll [114688 2010-11-21] (Microsoft Corporation) S3 BDESVC; C:\Windows\System32\bdesvc.dll [100864 2009-07-14] (Microsoft Corporation) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [49152 2013-11-23] () R2 BFE; C:\Windows\System32\bfe.dll [705024 2010-11-21] (Microsoft Corporation) R2 BITS; C:\Windows\system32\qmgr.dll [849920 2010-11-21] (Microsoft Corporation) R2 Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [462184 2011-08-30] (Apple Inc.) R3 Browser; C:\Windows\System32\browser.dll [136704 2012-07-04] (Microsoft Corporation) S3 bthserv; C:\Windows\system32\bthserv.dll [83968 2009-07-14] (Microsoft Corporation) R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1363616 2014-01-03] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1748640 2014-01-03] (Microsoft Corporation) S3 CertPropSvc; C:\Windows\System32\certprop.dll [80384 2010-11-21] (Microsoft Corporation) S3 clr_optimization_v2.0.50727_32; C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [66384 2009-06-10] (Microsoft Corporation) S3 clr_optimization_v2.0.50727_64; C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe [89920 2009-06-10] (Microsoft Corporation) S2 clr_optimization_v4.0.30319_32; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [105144 2013-09-11] (Microsoft Corporation) R2 clr_optimization_v4.0.30319_64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [124088 2013-09-11] (Microsoft Corporation) S3 COMSysApp; C:\Windows\system32\dllhost.exe [9728 2009-07-14] (Microsoft Corporation) S3 COMSysApp; C:\Windows\SysWOW64\dllhost.exe [7168 2009-07-14] (Microsoft Corporation) R2 CryptSvc; C:\Windows\system32\cryptsvc.dll [184320 2013-07-09] (Microsoft Corporation) R2 cvhsvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [822504 2013-04-22] (Microsoft Corporation) R2 DcomLaunch; C:\Windows\system32\rpcss.dll [512000 2010-11-21] (Microsoft Corporation) S3 defragsvc; C:\Windows\System32\defragsvc.dll [291328 2009-07-14] (Microsoft Corporation) R2 Dhcp; C:\Windows\system32\dhcpcore.dll [317952 2010-11-21] (Microsoft Corporation) R2 Dnscache; C:\Windows\System32\dnsrslvr.dll [183296 2011-03-03] (Microsoft Corporation) S3 dot3svc; C:\Windows\System32\dot3svc.dll [252416 2010-11-21] (Microsoft Corporation) R2 DPS; C:\Windows\system32\dps.dll [162816 2010-11-21] (Microsoft Corporation) S3 EapHost; C:\Windows\System32\eapsvc.dll [111104 2009-07-14] (Microsoft Corporation) S3 EFS; C:\Windows\System32\lsass.exe [30720 2013-09-25] (Microsoft Corporation) S3 ehRecvr; C:\Windows\ehome\ehRecvr.exe [696832 2010-11-21] (Microsoft Corporation) S3 ehSched; C:\Windows\ehome\ehsched.exe [127488 2009-07-14] (Microsoft Corporation) R2 eventlog; C:\Windows\System32\wevtsvc.dll [1646080 2010-11-21] (Microsoft Corporation) R2 EventSystem; C:\Windows\system32\es.dll [402944 2009-07-14] (Microsoft Corporation) S3 Fax; C:\Windows\system32\fxssvc.exe [689152 2010-11-21] (Microsoft Corporation) R3 fdPHost; C:\Windows\system32\fdPHost.dll [16384 2009-07-14] (Microsoft Corporation) S3 FDResPub; C:\Windows\system32\fdrespub.dll [34816 2009-07-14] (Microsoft Corporation) R2 FontCache; C:\Windows\system32\FntCache.dll [1175552 2013-09-23] (Microsoft Corporation) S3 FontCache3.0.0.0; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [42856 2010-11-21] (Microsoft Corporation) R2 gpsvc; C:\Windows\System32\gpsvc.dll [777728 2010-11-21] (Microsoft Corporation) S2 gupdate; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648 2014-02-18] (Google Inc.) S3 gupdatem; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648 2014-02-18] (Google Inc.) R3 hidserv; C:\Windows\System32\hidserv.dll [38912 2009-07-14] (Microsoft Corporation) S3 hkmsvc; C:\Windows\system32\kmsvc.dll [90624 2010-11-21] (Microsoft Corporation) S3 HomeGroupListener; C:\Windows\system32\ListSvc.dll [232448 2010-11-21] (Microsoft Corporation) S3 HomeGroupProvider; C:\Windows\system32\provsvc.dll [187904 2010-11-21] (Microsoft Corporation) S3 idsvc; C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe [856400 2010-11-21] (Microsoft Corporation) S3 IEEtwCollectorService; C:\Windows\system32\IEEtwCollector.exe [111616 2014-02-06] (Microsoft Corporation) R2 IKEEXT; C:\Windows\System32\ikeext.dll [859648 2013-10-12] (Microsoft Corporation) R2 IPBusEnum; C:\Windows\system32\ipbusenum.dll [101888 2009-07-14] (Microsoft Corporation) R2 iphlpsvc; C:\Windows\System32\iphlpsvc.dll [569344 2012-10-03] (Microsoft Corporation) R3 iPod Service; C:\Program Files\iPod\bin\iPodService.exe [641352 2013-11-02] (Apple Inc.) S3 KeyIso; C:\Windows\system32\lsass.exe [30720 2013-09-25] (Microsoft Corporation) S3 KtmRm; C:\Windows\system32\msdtckrm.dll [368640 2009-07-14] (Microsoft Corporation) R2 LanmanServer; C:\Windows\System32\srvsvc.dll [236032 2010-11-21] (Microsoft Corporation) R2 LanmanWorkstation; C:\Windows\System32\wkssvc.dll [118784 2010-11-21] (Microsoft Corporation) S3 lltdsvc; C:\Windows\System32\lltdsvc.dll [300032 2009-07-14] (Microsoft Corporation) R2 lmhosts; C:\Windows\System32\lmhsvc.dll [23552 2009-07-14] (Microsoft Corporation) S4 Mcx2Svc; C:\Windows\system32\Mcx2Svc.dll [84992 2010-11-21] (Microsoft Corporation) R2 MMCSS; C:\Windows\system32\mmcss.dll [67584 2009-07-14] (Microsoft Corporation) R2 MpsSvc; C:\Windows\system32\mpssvc.dll [828416 2010-11-21] (Microsoft Corporation) S3 MSDTC; C:\Windows\System32\msdtc.exe [141824 2009-07-14] (Microsoft Corporation) S3 MSiSCSI; C:\Windows\system32\iscsiexe.dll [156672 2009-07-14] (Microsoft Corporation) S3 msiserver; C:\Windows\System32\msiexec.exe [128000 2010-11-21] (Microsoft Corporation) S3 msiserver; C:\Windows\SysWOW64\msiexec.exe [73216 2010-11-21] (Microsoft Corporation) R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2013-10-23] (Microsoft Corporation) S3 napagent; C:\Windows\system32\qagentRT.dll [476160 2010-11-21] (Microsoft Corporation) S3 Netlogon; C:\Windows\system32\lsass.exe [30720 2013-09-25] (Microsoft Corporation) R3 Netman; C:\Windows\System32\netman.dll [360448 2009-07-14] (Microsoft Corporation) S4 NetMsmqActivator; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [139856 2013-09-11] (Microsoft Corporation) S4 NetPipeActivator; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [139856 2013-09-11] (Microsoft Corporation) R3 netprofm; C:\Windows\System32\netprofm.dll [459776 2009-07-14] (Microsoft Corporation) S4 NetTcpActivator; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [139856 2013-09-11] (Microsoft Corporation) S4 NetTcpPortSharing; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [139856 2013-09-11] (Microsoft Corporation) R3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [348376 2013-10-23] (Microsoft Corporation) R2 NlaSvc; C:\Windows\System32\nlasvc.dll [303104 2012-10-03] (Microsoft Corporation) R2 Norton PC Checkup Application Launcher; C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\SymcPCCULaunchSvc.exe [123320 2012-08-13] (Symantec Corporation) R2 nsi; C:\Windows\system32\nsisvc.dll [25600 2009-07-14] (Microsoft Corporation) R2 nvsvc; C:\Windows\system32\nvvsvc.exe [877856 2013-03-06] (NVIDIA Corporation) R2 nvUpdatusService; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [1266464 2013-03-06] (NVIDIA Corporation) S3 ose; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [149352 2010-01-09] (Microsoft Corporation) S3 osppsvc; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [4925184 2010-01-09] (Microsoft Corporation) S3 p2pimsvc; C:\Windows\system32\pnrpsvc.dll [327168 2009-07-14] (Microsoft Corporation) S3 p2psvc; C:\Windows\system32\p2psvc.dll [438784 2009-07-14] (Microsoft Corporation) R2 PcaSvc; C:\Windows\System32\pcasvc.dll [186368 2009-07-14] (Microsoft Corporation) R2 PCCUJobMgr; C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\ccSvcHst.exe [126392 2012-08-13] (Symantec Corporation) S3 PerfHost; C:\Windows\SysWow64\perfhost.exe [20992 2009-07-14] (Microsoft Corporation) S3 pla; C:\Windows\system32\pla.dll [1389056 2010-11-21] (Microsoft Corporation) R2 PlugPlay; C:\Windows\system32\umpnpmgr.dll [404480 2011-05-24] (Microsoft Corporation) S3 PNRPAutoReg; C:\Windows\system32\pnrpauto.dll [25088 2009-07-14] (Microsoft Corporation) S3 PNRPsvc; C:\Windows\system32\pnrpsvc.dll [327168 2009-07-14] (Microsoft Corporation) R3 PolicyAgent; C:\Windows\System32\ipsecsvc.dll [501248 2010-11-21] (Microsoft Corporation) R2 Power; C:\Windows\system32\umpo.dll [163840 2009-07-14] (Microsoft Corporation) R2 ProfSvc; C:\Windows\system32\profsvc.dll [209920 2012-05-01] (Microsoft Corporation) S3 ProtectedStorage; C:\Windows\system32\lsass.exe [30720 2013-09-25] (Microsoft Corporation) S3 QWAVE; C:\Windows\system32\qwave.dll [242688 2009-07-14] (Microsoft Corporation) S3 RasAuto; C:\Windows\System32\rasauto.dll [99328 2009-07-14] (Microsoft Corporation) R3 RasMan; C:\Windows\System32\rasmans.dll [344064 2010-11-21] (Microsoft Corporation) S4 RemoteAccess; C:\Windows\System32\mprdim.dll [97792 2009-07-14] (Microsoft Corporation) S4 RemoteAccess; C:\Windows\SysWOW64\mprdim.dll [75264 2009-07-14] (Microsoft Corporation) S3 RemoteRegistry; C:\Windows\system32\regsvc.dll [159232 2009-07-14] (Microsoft Corporation) R2 RpcEptMapper; C:\Windows\System32\RpcEpMap.dll [67072 2009-07-14] (Microsoft Corporation) S3 RpcLocator; C:\Windows\system32\locator.exe [10240 2009-07-14] (Microsoft Corporation) R2 RpcSs; C:\Windows\system32\rpcss.dll [512000 2010-11-21] (Microsoft Corporation) R2 SamSs; C:\Windows\system32\lsass.exe [30720 2013-09-25] (Microsoft Corporation) S3 SCardSvr; C:\Windows\System32\SCardSvr.dll [190976 2009-07-14] (Microsoft Corporation) R2 Schedule; C:\Windows\system32\schedsvc.dll [1110016 2010-11-21] (Microsoft Corporation) S3 SCPolicySvc; C:\Windows\System32\certprop.dll [80384 2010-11-21] (Microsoft Corporation) S3 SDRSVC; C:\Windows\System32\SDRSVC.dll [170496 2010-11-21] (Microsoft Corporation) R2 seclogon; C:\Windows\system32\seclogon.dll [30720 2010-11-21] (Microsoft Corporation) R2 SENS; C:\Windows\system32\sens.dll [64512 2009-07-14] (Microsoft Corporation) R2 SENS; C:\Windows\SysWOW64\sens.dll [49664 2009-07-14] (Microsoft Corporation) S3 SensrSvc; C:\Windows\system32\sensrsvc.dll [29184 2009-07-14] (Microsoft Corporation) S3 SessionEnv; C:\Windows\system32\sessenv.dll [121856 2010-11-21] (Microsoft Corporation) S3 SessionEnv; C:\Windows\SysWOW64\sessenv.dll [113664 2010-11-21] (Microsoft Corporation) R2 sftlist; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [523944 2013-06-26] (Microsoft Corporation) R3 sftvsa; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [207528 2013-06-26] (Microsoft Corporation) S2 SharedAccess; C:\Windows\System32\ipnathlp.dll [359424 2009-07-14] (Microsoft Corporation) R2 ShellHWDetection; C:\Windows\System32\shsvcs.dll [370688 2010-11-21] (Microsoft Corporation) R2 ShellHWDetection; C:\Windows\SysWOW64\shsvcs.dll [328192 2010-11-21] (Microsoft Corporation) S2 SkypeUpdate; C:\Program Files (x86)\Skype\Updater\Updater.exe [172192 2013-10-23] (Skype Technologies) S3 SNMPTRAP; C:\Windows\System32\snmptrap.exe [14336 2009-07-14] (Microsoft Corporation) R2 Spooler; C:\Windows\System32\spoolsv.exe [559104 2012-02-11] (Microsoft Corporation) S2 sppsvc; C:\Windows\system32\sppsvc.exe [3524608 2010-11-21] (Microsoft Corporation) S3 sppuinotify; C:\Windows\system32\sppuinotify.dll [65536 2009-07-14] (Microsoft Corporation) R3 SSDPSRV; C:\Windows\System32\ssdpsrv.dll [193024 2009-07-14] (Microsoft Corporation) R3 SstpSvc; C:\Windows\system32\sstpsvc.dll [75264 2009-07-14] (Microsoft Corporation) S3 Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [568512 2014-02-24] (Valve Corporation) R2 Stereo Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [383264 2013-03-05] (NVIDIA Corporation) S2 stisvc; C:\Windows\System32\wiaservc.dll [580096 2010-11-21] (Microsoft Corporation) S3 swprv; C:\Windows\System32\swprv.dll [524288 2009-07-14] (Microsoft Corporation) R2 SysMain; C:\Windows\system32\sysmain.dll [1743360 2010-11-21] (Microsoft Corporation) S3 TabletInputService; C:\Windows\System32\TabSvc.dll [92672 2010-11-21] (Microsoft Corporation) R3 TapiSrv; C:\Windows\System32\tapisrv.dll [316928 2010-11-21] (Microsoft Corporation) R3 TapiSrv; C:\Windows\SysWOW64\tapisrv.dll [242176 2010-11-21] (Microsoft Corporation) S3 TBS; C:\Windows\System32\tbssvc.dll [65536 2009-07-14] (Microsoft Corporation) S3 TermService; C:\Windows\System32\termsrv.dll [680960 2010-11-21] (Microsoft Corporation) R2 Themes; C:\Windows\system32\themeservice.dll [44544 2009-07-14] (Microsoft Corporation) S3 THREADORDER; C:\Windows\system32\mmcss.dll [67584 2009-07-14] (Microsoft Corporation) R2 TrkWks; C:\Windows\System32\trkwks.dll [119808 2009-07-14] (Microsoft Corporation) S3 TrustedInstaller; C:\Windows\servicing\TrustedInstaller.exe [194048 2010-11-21] (Microsoft Corporation) S3 UI0Detect; C:\Windows\system32\UI0Detect.exe [40960 2009-07-14] (Microsoft Corporation) S3 upnphost; C:\Windows\System32\upnphost.dll [353792 2009-07-14] (Microsoft Corporation) R2 UxSms; C:\Windows\System32\uxsms.dll [38912 2009-07-14] (Microsoft Corporation) S3 VaultSvc; C:\Windows\system32\lsass.exe [30720 2013-09-25] (Microsoft Corporation) S3 vds; C:\Windows\System32\vds.exe [533504 2010-11-21] (Microsoft Corporation) S3 VSS; C:\Windows\system32\vssvc.exe [1600512 2010-11-21] (Microsoft Corporation) S3 W32Time; C:\Windows\system32\w32time.dll [381952 2009-07-14] (Microsoft Corporation) S3 wbengine; C:\Windows\system32\wbengine.exe [1504256 2010-11-21] (Microsoft Corporation) S3 WbioSrvc; C:\Windows\System32\wbiosrvc.dll [202240 2009-07-14] (Microsoft Corporation) S3 wcncsvc; C:\Windows\System32\wcncsvc.dll [367104 2010-11-21] (Microsoft Corporation) S3 WcsPlugInService; C:\Windows\System32\WcsPlugInService.dll [40960 2009-07-14] (Microsoft Corporation) R3 WdiServiceHost; C:\Windows\system32\wdi.dll [90624 2009-07-14] (Microsoft Corporation) R3 WdiSystemHost; C:\Windows\system32\wdi.dll [90624 2009-07-14] (Microsoft Corporation) S3 WebClient; C:\Windows\System32\webclnt.dll [259584 2013-07-04] (Microsoft Corporation) S3 Wecsvc; C:\Windows\system32\wecsvc.dll [237568 2009-07-14] (Microsoft Corporation) S3 wercplsupport; C:\Windows\System32\wercplsupport.dll [84480 2009-07-14] (Microsoft Corporation) R3 WerSvc; C:\Windows\System32\WerSvc.dll [76800 2009-07-14] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) R3 WinHttpAutoProxySvc; C:\Windows\system32\winhttp.dll [444416 2010-11-21] (Microsoft Corporation) R2 Winmgmt; C:\Windows\system32\wbem\WMIsvc.dll [242688 2009-07-14] (Microsoft Corporation) S3 WinRM; C:\Windows\system32\WsmSvc.dll [2018304 2010-11-21] (Microsoft Corporation) S3 Wlansvc; C:\Windows\System32\wlansvc.dll [886784 2009-07-14] (Microsoft Corporation) S4 wlcrasvc; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [57184 2010-09-22] (Microsoft Corporation) R2 wlidsvc; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2286976 2010-09-21] (Microsoft Corp.) S3 wmiApSrv; C:\Windows\system32\wbem\WmiApSrv.exe [203264 2009-07-14] (Microsoft Corporation) S3 WMPNetworkSvc; C:\Program Files\Windows Media Player\wmpnetwk.exe [1525248 2010-11-21] (Microsoft Corporation) S3 WPCSvc; C:\Windows\System32\wpcsvc.dll [12288 2009-07-14] (Microsoft Corporation) S3 WPDBusEnum; C:\Windows\system32\wpdbusenum.dll [117248 2010-11-21] (Microsoft Corporation) R2 wscsvc; C:\Windows\system32\wscsvc.dll [97280 2009-07-14] (Microsoft Corporation) R2 WSearch; C:\Windows\system32\SearchIndexer.exe [591872 2011-05-04] (Microsoft Corporation) R2 WSearch; C:\Windows\SysWOW64\SearchIndexer.exe [427520 2011-05-04] (Microsoft Corporation) R2 wuauserv; C:\Windows\system32\wuaueng.dll [2428952 2012-06-02] (Microsoft Corporation) S3 wudfsvc; C:\Windows\System32\WUDFSvc.dll [84992 2012-07-26] (Microsoft Corporation) S3 WwanSvc; C:\Windows\System32\wwansvc.dll [230400 2013-03-19] (Microsoft Corporation) ==================== Drivers (All) ========================== S3 1394ohci; C:\Windows\system32\drivers\1394ohci.sys [229888 2010-11-21] (Microsoft Corporation) R0 ACPI; C:\Windows\System32\drivers\ACPI.sys [334208 2010-11-21] (Microsoft Corporation) S3 AcpiPmi; C:\Windows\system32\drivers\acpipmi.sys [12800 2010-11-21] (Microsoft Corporation) S3 adp94xx; C:\Windows\system32\drivers\adp94xx.sys [491088 2009-07-14] (Adaptec, Inc.) S3 adpahci; C:\Windows\system32\drivers\adpahci.sys [339536 2009-07-14] (Adaptec, Inc.) S3 adpu320; C:\Windows\system32\drivers\adpu320.sys [182864 2009-07-14] (Adaptec, Inc.) R1 AFD; C:\Windows\system32\drivers\afd.sys [497152 2013-09-28] (Microsoft Corporation) S3 agp440; C:\Windows\system32\drivers\agp440.sys [61008 2009-07-14] (Microsoft Corporation) S3 aliide; C:\Windows\system32\drivers\aliide.sys [15440 2009-07-14] (Acer Laboratories Inc.) S3 amdide; C:\Windows\system32\drivers\amdide.sys [15440 2009-07-14] (Microsoft Corporation) S3 AmdK8; C:\Windows\system32\drivers\amdk8.sys [64512 2009-07-14] (Microsoft Corporation) R3 AmdPPM; C:\Windows\System32\DRIVERS\amdppm.sys [60928 2009-07-14] (Microsoft Corporation) S3 amdsata; C:\Windows\system32\drivers\amdsata.sys [107904 2011-03-11] (Advanced Micro Devices) S3 amdsbs; C:\Windows\system32\drivers\amdsbs.sys [194128 2009-07-14] (AMD Technologies Inc.) R0 amdxata; C:\Windows\System32\drivers\amdxata.sys [27008 2011-03-11] (Advanced Micro Devices) R0 amd_sata; C:\Windows\System32\DRIVERS\amd_sata.sys [82560 2012-04-11] (Advanced Micro Devices) R0 amd_xata; C:\Windows\System32\DRIVERS\amd_xata.sys [42624 2012-04-11] (Advanced Micro Devices) S3 AppID; C:\Windows\system32\drivers\appid.sys [61440 2010-11-21] (Microsoft Corporation) S3 arc; C:\Windows\system32\drivers\arc.sys [87632 2009-07-14] (Adaptec, Inc.) S3 arcsas; C:\Windows\system32\drivers\arcsas.sys [97856 2009-07-14] (Adaptec, Inc.) R3 asmthub3; C:\Windows\System32\DRIVERS\asmthub3.sys [130536 2012-02-21] (ASMedia Technology Inc) R3 asmtxhci; C:\Windows\System32\DRIVERS\asmtxhci.sys [396776 2012-02-21] (ASMedia Technology Inc) R3 AsyncMac; C:\Windows\System32\DRIVERS\asyncmac.sys [23040 2009-07-14] (Microsoft Corporation) R0 atapi; C:\Windows\System32\drivers\atapi.sys [24128 2009-07-14] (Microsoft Corporation) S3 atikmdag; C:\Windows\System32\DRIVERS\atikmdag.sys [5020672 2009-07-13] (ATI Technologies Inc.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2013-12-17] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131576 2013-12-17] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-11-14] (Avira Operations GmbH & Co. KG) S3 b06bdrv; C:\Windows\system32\drivers\bxvbda.sys [468480 2009-06-10] (Broadcom Corporation) S3 b57nd60a; C:\Windows\System32\DRIVERS\b57nd60a.sys [270848 2009-06-10] (Broadcom Corporation) R1 Beep; C:\Windows\System32\Drivers\Beep.sys [6656 2009-07-14] (Microsoft Corporation) R1 blbdrive; C:\Windows\System32\DRIVERS\blbdrive.sys [45056 2009-07-14] (Microsoft Corporation) R3 bowser; C:\Windows\System32\DRIVERS\bowser.sys [90624 2011-02-23] (Microsoft Corporation) S3 BrFiltLo; C:\Windows\system32\drivers\BrFiltLo.sys [18432 2009-06-10] (Brother Industries, Ltd.) S3 BrFiltUp; C:\Windows\system32\drivers\BrFiltUp.sys [8704 2009-06-10] (Brother Industries, Ltd.) S3 BridgeMP; C:\Windows\System32\DRIVERS\bridge.sys [95232 2009-07-14] (Microsoft Corporation) S3 Brserid; C:\Windows\System32\Drivers\Brserid.sys [286720 2009-07-14] (Brother Industries Ltd.) S3 BrSerWdm; C:\Windows\System32\Drivers\BrSerWdm.sys [47104 2009-06-10] (Brother Industries Ltd.) S3 BrUsbMdm; C:\Windows\System32\Drivers\BrUsbMdm.sys [14976 2009-06-10] (Brother Industries Ltd.) S3 BrUsbSer; C:\Windows\System32\Drivers\BrUsbSer.sys [14720 2009-06-10] (Brother Industries Ltd.) S3 BTHMODEM; C:\Windows\system32\drivers\bthmodem.sys [72192 2009-07-14] (Microsoft Corporation) R4 cdfs; C:\Windows\System32\DRIVERS\cdfs.sys [92160 2009-07-14] (Microsoft Corporation) R1 cdrom; C:\Windows\System32\DRIVERS\cdrom.sys [147456 2010-11-21] (Microsoft Corporation) S3 circlass; C:\Windows\system32\drivers\circlass.sys [45568 2009-07-14] (Microsoft Corporation) R0 CLFS; C:\Windows\System32\CLFS.sys [367696 2009-07-14] (Microsoft Corporation) S3 CmBatt; C:\Windows\system32\drivers\CmBatt.sys [17664 2009-07-14] (Microsoft Corporation) S3 cmdide; C:\Windows\system32\drivers\cmdide.sys [17488 2009-07-14] (CMD Technology, Inc.) R0 CNG; C:\Windows\System32\Drivers\cng.sys [458712 2013-07-04] (Microsoft Corporation) S3 Compbatt; C:\Windows\system32\drivers\compbatt.sys [21584 2009-07-14] (Microsoft Corporation) R3 CompositeBus; C:\Windows\System32\DRIVERS\CompositeBus.sys [38912 2010-11-21] (Microsoft Corporation) S4 crcdisk; C:\Windows\system32\drivers\crcdisk.sys [24144 2009-07-14] (Microsoft Corporation) R1 DfsC; C:\Windows\System32\Drivers\dfsc.sys [102400 2010-11-21] (Microsoft Corporation) R1 discache; C:\Windows\System32\drivers\discache.sys [40448 2009-07-14] (Microsoft Corporation) R0 Disk; C:\Windows\System32\drivers\disk.sys [73280 2009-07-14] (Microsoft Corporation) S3 drmkaud; C:\Windows\system32\drivers\drmkaud.sys [5632 2009-07-14] (Microsoft Corporation) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-02-25] (Disc Soft Ltd) R3 DXGKrnl; C:\Windows\System32\drivers\dxgkrnl.sys [983488 2013-08-01] (Microsoft Corporation) S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation) S3 elxstor; C:\Windows\system32\drivers\elxstor.sys [530496 2009-07-14] (Emulex) S3 ErrDev; C:\Windows\system32\drivers\errdev.sys [9728 2009-07-14] (Microsoft Corporation) S3 exfat; C:\Windows\System32\Drivers\exfat.sys [195072 2009-07-14] (Microsoft Corporation) S3 fastfat; C:\Windows\System32\Drivers\fastfat.sys [204800 2009-07-14] (Microsoft Corporation) S3 fdc; C:\Windows\system32\drivers\fdc.sys [29696 2009-07-14] (Microsoft Corporation) R0 FileInfo; C:\Windows\System32\drivers\fileinfo.sys [70224 2009-07-14] (Microsoft Corporation) S3 Filetrace; C:\Windows\System32\drivers\filetrace.sys [34304 2009-07-14] (Microsoft Corporation) S3 flpydisk; C:\Windows\system32\drivers\flpydisk.sys [24576 2009-07-14] (Microsoft Corporation) R0 FltMgr; C:\Windows\System32\drivers\fltmgr.sys [289664 2010-11-21] (Microsoft Corporation) S3 FsDepends; C:\Windows\System32\drivers\FsDepends.sys [55376 2009-07-14] (Microsoft Corporation) U0 Fs_Rec; C:\Windows\System32\Drivers\Fs_Rec.sys [23408 2012-03-01] (Microsoft Corporation) R0 fvevol; C:\Windows\System32\DRIVERS\fvevol.sys [223752 2013-01-24] (Microsoft Corporation) S3 gagp30kx; C:\Windows\system32\drivers\gagp30kx.sys [65088 2009-07-14] (Microsoft Corporation) R3 GameKB; C:\Windows\System32\drivers\GameKB.sys [27648 2012-05-11] () R3 GEARAspiWDM; C:\Windows\System32\DRIVERS\GEARAspiWDM.sys [33240 2012-08-21] (GEAR Software Inc.) S3 hcw85cir; C:\Windows\system32\drivers\hcw85cir.sys [31232 2009-06-10] (Hauppauge Computer Works, Inc.) S3 HdAudAddService; C:\Windows\System32\drivers\HdAudio.sys [350208 2010-11-21] (Microsoft Corporation) R3 HDAudBus; C:\Windows\System32\DRIVERS\HDAudBus.sys [122368 2010-11-21] (Microsoft Corporation) S3 HidBatt; C:\Windows\system32\drivers\HidBatt.sys [26624 2009-07-14] (Microsoft Corporation) S3 HidBth; C:\Windows\system32\drivers\hidbth.sys [100864 2009-07-14] (Microsoft Corporation) S3 HidIr; C:\Windows\system32\drivers\hidir.sys [46592 2009-07-14] (Microsoft Corporation) R3 HidUsb; C:\Windows\System32\DRIVERS\hidusb.sys [30208 2010-11-21] (Microsoft Corporation) S3 hitmanpro37; C:\Windows\system32\drivers\hitmanpro37.sys [32512 2013-10-04] () S3 HpSAMD; C:\Windows\system32\drivers\HpSAMD.sys [78720 2010-11-21] (Hewlett-Packard Company) R3 HTTP; C:\Windows\System32\drivers\HTTP.sys [753664 2010-11-21] (Microsoft Corporation) R0 hwpolicy; C:\Windows\System32\drivers\hwpolicy.sys [14720 2010-11-21] (Microsoft Corporation) S3 i8042prt; C:\Windows\System32\DRIVERS\i8042prt.sys [105472 2009-07-14] (Microsoft Corporation) S3 iaStorV; C:\Windows\system32\drivers\iaStorV.sys [410496 2011-03-11] (Intel Corporation) S3 iirsp; C:\Windows\system32\drivers\iirsp.sys [44112 2009-07-14] (Intel Corp./ICP vortex GmbH) R3 IntcAzAudAddService; C:\Windows\System32\drivers\RTKVHD64.sys [4102928 2012-08-07] (Realtek Semiconductor Corp.) S3 intelide; C:\Windows\system32\drivers\intelide.sys [16960 2009-07-14] (Microsoft Corporation) S3 intelppm; C:\Windows\system32\drivers\intelppm.sys [62464 2009-07-14] (Microsoft Corporation) S3 IpFilterDriver; C:\Windows\System32\DRIVERS\ipfltdrv.sys [82944 2010-11-21] (Microsoft Corporation) S3 IPMIDRV; C:\Windows\system32\drivers\IPMIDrv.sys [78848 2010-11-21] (Microsoft Corporation) S3 IPNAT; C:\Windows\System32\drivers\ipnat.sys [116224 2009-07-14] (Microsoft Corporation) S3 IRENUM; C:\Windows\System32\drivers\irenum.sys [17920 2009-07-14] (Microsoft Corporation) S3 isapnp; C:\Windows\system32\drivers\isapnp.sys [20544 2009-07-14] (Microsoft Corporation) S3 iScsiPrt; C:\Windows\system32\drivers\msiscsi.sys [273792 2010-11-21] (Microsoft Corporation) R3 kbdclass; C:\Windows\System32\DRIVERS\kbdclass.sys [50768 2009-07-14] (Microsoft Corporation) R3 kbdhid; C:\Windows\System32\DRIVERS\kbdhid.sys [33280 2010-11-21] (Microsoft Corporation) R0 KSecDD; C:\Windows\System32\Drivers\ksecdd.sys [95680 2013-09-25] (Microsoft Corporation) R0 KSecPkg; C:\Windows\System32\Drivers\ksecpkg.sys [154560 2013-09-25] (Microsoft Corporation) R3 ksthunk; C:\Windows\system32\drivers\ksthunk.sys [20992 2009-07-14] (Microsoft Corporation) R2 lltdio; C:\Windows\System32\DRIVERS\lltdio.sys [60928 2009-07-14] (Microsoft Corporation) S3 LSI_FC; C:\Windows\system32\drivers\lsi_fc.sys [114752 2009-07-14] (LSI Corporation) S3 LSI_SAS; C:\Windows\system32\drivers\lsi_sas.sys [106560 2009-07-14] (LSI Corporation) S3 LSI_SAS2; C:\Windows\system32\drivers\lsi_sas2.sys [65600 2009-07-14] (LSI Corporation) S3 LSI_SCSI; C:\Windows\system32\drivers\lsi_scsi.sys [115776 2009-07-14] (LSI Corporation) R2 luafv; C:\Windows\system32\drivers\luafv.sys [113152 2009-07-14] (Microsoft Corporation) S3 lvpopf64; C:\Windows\System32\DRIVERS\lvpopf64.sys [271640 2009-10-07] (Logitech Inc.) S3 LVRS64; C:\Windows\System32\DRIVERS\lvrs64.sys [327704 2009-10-07] (Logitech Inc.) S3 LVUVC64; C:\Windows\System32\DRIVERS\lvuvc64.sys [6379288 2009-10-07] (Logitech Inc.) S3 megasas; C:\Windows\system32\drivers\megasas.sys [35392 2009-07-14] (LSI Corporation) S3 MegaSR; C:\Windows\system32\drivers\MegaSR.sys [284736 2009-07-14] (LSI Corporation, Inc.) S3 Modem; C:\Windows\System32\drivers\modem.sys [40448 2009-07-14] (Microsoft Corporation) R3 monitor; C:\Windows\System32\DRIVERS\monitor.sys [30208 2009-07-14] (Microsoft Corporation) R3 mouclass; C:\Windows\System32\DRIVERS\mouclass.sys [49216 2009-07-14] (Microsoft Corporation) R3 mouhid; C:\Windows\System32\DRIVERS\mouhid.sys [31232 2009-07-14] (Microsoft Corporation) R0 mountmgr; C:\Windows\System32\drivers\mountmgr.sys [94592 2010-11-21] (Microsoft Corporation) R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [248240 2013-09-27] (Microsoft Corporation) S3 mpio; C:\Windows\system32\drivers\mpio.sys [155008 2010-11-21] (Microsoft Corporation) R3 mpsdrv; C:\Windows\System32\drivers\mpsdrv.sys [77312 2009-07-14] (Microsoft Corporation) S3 MRxDAV; C:\Windows\system32\drivers\mrxdav.sys [140800 2013-07-04] (Microsoft Corporation) R3 mrxsmb; C:\Windows\System32\DRIVERS\mrxsmb.sys [158208 2011-04-27] (Microsoft Corporation) R3 mrxsmb10; C:\Windows\System32\DRIVERS\mrxsmb10.sys [288768 2011-07-09] (Microsoft Corporation) R3 mrxsmb20; C:\Windows\System32\DRIVERS\mrxsmb20.sys [128000 2011-04-27] (Microsoft Corporation) R0 msahci; C:\Windows\System32\drivers\msahci.sys [31104 2010-11-21] (Microsoft Corporation) S3 msdsm; C:\Windows\system32\drivers\msdsm.sys [140672 2010-11-21] (Microsoft Corporation) R1 Msfs; C:\Windows\System32\Drivers\Msfs.sys [26112 2009-07-14] (Microsoft Corporation) S3 mshidkmdf; C:\Windows\System32\drivers\mshidkmdf.sys [8192 2009-07-14] (Microsoft Corporation) R0 msisadrv; C:\Windows\System32\drivers\msisadrv.sys [15424 2009-07-14] (Microsoft Corporation) S3 MSKSSRV; C:\Windows\System32\drivers\MSKSSRV.sys [11136 2009-07-14] (Microsoft Corporation) S3 MSPCLOCK; C:\Windows\System32\drivers\MSPCLOCK.sys [7168 2009-07-14] (Microsoft Corporation) S3 MSPQM; C:\Windows\System32\drivers\MSPQM.sys [6784 2009-07-14] (Microsoft Corporation) S3 MsRPC; C:\Windows\System32\Drivers\MsRPC.sys [366976 2010-11-21] (Microsoft Corporation) R1 mssmbios; C:\Windows\System32\DRIVERS\mssmbios.sys [32320 2009-07-14] (Microsoft Corporation) S3 MSTEE; C:\Windows\System32\drivers\MSTEE.sys [8064 2009-07-14] (Microsoft Corporation) S3 MTConfig; C:\Windows\system32\drivers\MTConfig.sys [15360 2009-07-14] (Microsoft Corporation) R0 Mup; C:\Windows\System32\Drivers\mup.sys [60496 2009-07-14] (Microsoft Corporation) S3 NativeWifiP; C:\Windows\System32\DRIVERS\nwifi.sys [318976 2009-07-14] (Microsoft Corporation) R0 NDIS; C:\Windows\System32\drivers\ndis.sys [950128 2012-08-22] (Microsoft Corporation) S3 NdisCap; C:\Windows\System32\DRIVERS\ndiscap.sys [35328 2009-07-14] (Microsoft Corporation) R3 NdisTapi; C:\Windows\System32\DRIVERS\ndistapi.sys [24064 2009-07-14] (Microsoft Corporation) S3 Ndisuio; C:\Windows\System32\DRIVERS\ndisuio.sys [56832 2010-11-21] (Microsoft Corporation) R3 NdisWan; C:\Windows\System32\DRIVERS\ndiswan.sys [164352 2010-11-21] (Microsoft Corporation) R3 NDProxy; C:\Windows\System32\Drivers\NDProxy.sys [57856 2010-11-21] (Microsoft Corporation) R1 NetBIOS; C:\Windows\System32\DRIVERS\netbios.sys [44544 2009-07-14] (Microsoft Corporation) R1 NetBT; C:\Windows\System32\DRIVERS\netbt.sys [261632 2010-11-21] (Microsoft Corporation) S3 nfrd960; C:\Windows\system32\drivers\nfrd960.sys [51264 2009-07-14] (IBM Corporation) R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [134944 2013-09-27] (Microsoft Corporation) R1 Npfs; C:\Windows\System32\Drivers\Npfs.sys [44032 2009-07-14] (Microsoft Corporation) R1 nsiproxy; C:\Windows\System32\drivers\nsiproxy.sys [24576 2009-07-14] (Microsoft Corporation) R3 Ntfs; C:\Windows\System32\Drivers\Ntfs.sys [1656680 2013-04-12] (Microsoft Corporation) R1 Null; C:\Windows\System32\Drivers\Null.sys [6144 2009-07-14] (Microsoft Corporation) R3 NVHDA; C:\Windows\System32\drivers\nvhda64v.sys [194488 2012-12-19] (NVIDIA Corporation) R3 nvlddmkm; C:\Windows\System32\DRIVERS\nvlddmkm.sys [11047712 2013-03-06] (NVIDIA Corporation) S3 nvraid; C:\Windows\system32\drivers\nvraid.sys [148352 2011-03-11] (NVIDIA Corporation) S3 nvstor; C:\Windows\system32\drivers\nvstor.sys [166272 2011-03-11] (NVIDIA Corporation) S3 nv_agp; C:\Windows\system32\drivers\nv_agp.sys [122960 2009-07-14] (Microsoft Corporation) S3 ohci1394; C:\Windows\system32\drivers\ohci1394.sys [72832 2009-07-14] (Microsoft Corporation) S3 Parport; C:\Windows\system32\drivers\parport.sys [97280 2009-07-14] (Microsoft Corporation) R0 partmgr; C:\Windows\System32\drivers\partmgr.sys [75120 2012-03-17] (Microsoft Corporation) R0 pci; C:\Windows\System32\drivers\pci.sys [184704 2010-11-21] (Microsoft Corporation) S3 pciide; C:\Windows\system32\drivers\pciide.sys [12352 2009-07-14] (Microsoft Corporation) S3 pcmcia; C:\Windows\system32\drivers\pcmcia.sys [220752 2009-07-14] (Microsoft Corporation) R0 pcw; C:\Windows\System32\drivers\pcw.sys [50768 2009-07-14] (Microsoft Corporation) R2 PEAUTH; C:\Windows\System32\drivers\peauth.sys [651264 2009-07-14] (Microsoft Corporation) R3 PptpMiniport; C:\Windows\System32\DRIVERS\raspptp.sys [111104 2010-11-21] (Microsoft Corporation) S3 Processor; C:\Windows\system32\drivers\processr.sys [60416 2009-07-14] (Microsoft Corporation) R1 Psched; C:\Windows\System32\DRIVERS\pacer.sys [131584 2010-11-21] (Microsoft Corporation) S3 ql2300; C:\Windows\system32\drivers\ql2300.sys [1524816 2009-07-14] (QLogic Corporation) S3 ql40xx; C:\Windows\system32\drivers\ql40xx.sys [128592 2009-07-14] (QLogic Corporation) S3 QWAVEdrv; C:\Windows\system32\drivers\qwavedrv.sys [46592 2009-07-14] (Microsoft Corporation) S3 RasAcd; C:\Windows\System32\DRIVERS\rasacd.sys [14848 2009-07-14] (Microsoft Corporation) R3 RasAgileVpn; C:\Windows\System32\DRIVERS\AgileVpn.sys [60416 2009-07-14] (Microsoft Corporation) R3 Rasl2tp; C:\Windows\System32\DRIVERS\rasl2tp.sys [129536 2010-11-21] (Microsoft Corporation) R3 RasPppoe; C:\Windows\System32\DRIVERS\raspppoe.sys [92672 2009-07-14] (Microsoft Corporation) R3 RasSstp; C:\Windows\System32\DRIVERS\rassstp.sys [83968 2009-07-14] (Microsoft Corporation) R1 rdbss; C:\Windows\System32\DRIVERS\rdbss.sys [309248 2010-11-21] (Microsoft Corporation) S3 rdpbus; C:\Windows\system32\drivers\rdpbus.sys [24064 2009-07-14] (Microsoft Corporation) R1 RDPCDD; C:\Windows\System32\DRIVERS\RDPCDD.sys [7680 2009-07-14] (Microsoft Corporation) R1 RDPENCDD; C:\Windows\System32\drivers\rdpencdd.sys [7680 2009-07-14] (Microsoft Corporation) R1 RDPREFMP; C:\Windows\System32\drivers\rdprefmp.sys [8192 2009-07-14] (Microsoft Corporation) S3 RdpVideoMiniport; C:\Windows\System32\drivers\rdpvideominiport.sys [19456 2012-08-23] (Microsoft Corporation) S3 RDPWD; C:\Windows\System32\Drivers\RDPWD.sys [210944 2012-04-28] (Microsoft Corporation) R0 rdyboost; C:\Windows\System32\drivers\rdyboost.sys [213888 2010-11-21] (Microsoft Corporation) R2 rspndr; C:\Windows\System32\DRIVERS\rspndr.sys [76800 2009-07-14] (Microsoft Corporation) R3 RTL8167; C:\Windows\System32\DRIVERS\Rt64win7.sys [726160 2012-06-12] (Realtek ) S3 sbp2port; C:\Windows\system32\drivers\sbp2port.sys [103808 2010-11-21] (Microsoft Corporation) S3 scfilter; C:\Windows\System32\DRIVERS\scfilter.sys [29696 2010-11-21] (Microsoft Corporation) R2 secdrv; C:\Windows\System32\Drivers\secdrv.sys [23040 2009-06-10] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) R3 Serenum; C:\Windows\System32\DRIVERS\serenum.sys [23552 2009-07-14] (Microsoft Corporation) R1 Serial; C:\Windows\System32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) S3 sermouse; C:\Windows\system32\drivers\sermouse.sys [26624 2009-07-14] (Microsoft Corporation) S3 sffdisk; C:\Windows\system32\drivers\sffdisk.sys [14336 2009-07-14] (Microsoft Corporation) S3 sffp_mmc; C:\Windows\system32\drivers\sffp_mmc.sys [13824 2009-07-14] (Microsoft Corporation) S3 sffp_sd; C:\Windows\system32\drivers\sffp_sd.sys [14336 2010-11-21] (Microsoft Corporation) S3 sfloppy; C:\Windows\system32\drivers\sfloppy.sys [16896 2009-07-14] (Microsoft Corporation) R3 Sftfs; C:\Windows\System32\DRIVERS\Sftfslh.sys [767144 2013-06-26] (Microsoft Corporation) R3 Sftplay; C:\Windows\System32\DRIVERS\Sftplaylh.sys [273576 2013-06-26] (Microsoft Corporation) R3 Sftredir; C:\Windows\System32\DRIVERS\Sftredirlh.sys [28840 2013-06-26] (Microsoft Corporation) R3 Sftvol; C:\Windows\System32\DRIVERS\Sftvollh.sys [23208 2013-06-26] (Microsoft Corporation) S3 SiSRaid2; C:\Windows\system32\drivers\SiSRaid2.sys [43584 2009-07-14] (Silicon Integrated Systems Corp.) S3 SiSRaid4; C:\Windows\system32\drivers\sisraid4.sys [80464 2009-07-14] (Silicon Integrated Systems) S3 Smb; C:\Windows\System32\DRIVERS\smb.sys [93184 2009-07-14] (Microsoft Corporation) R0 spldr; C:\Windows\System32\Drivers\spldr.sys [19008 2009-07-14] (Microsoft Corporation) R3 srv; C:\Windows\System32\DRIVERS\srv.sys [467456 2011-04-29] (Microsoft Corporation) R3 srv2; C:\Windows\System32\DRIVERS\srv2.sys [410112 2011-04-29] (Microsoft Corporation) R3 srvnet; C:\Windows\System32\DRIVERS\srvnet.sys [168448 2011-04-29] (Microsoft Corporation) S3 stexstor; C:\Windows\system32\drivers\stexstor.sys [24656 2009-07-14] (Promise Technology) R3 swenum; C:\Windows\System32\DRIVERS\swenum.sys [12496 2009-07-14] (Microsoft Corporation) R0 Tcpip; C:\Windows\System32\drivers\tcpip.sys [1903552 2013-09-08] (Microsoft Corporation) S3 TCPIP6; C:\Windows\System32\DRIVERS\tcpip.sys [1903552 2013-09-08] (Microsoft Corporation) R2 tcpipreg; C:\Windows\System32\drivers\tcpipreg.sys [45568 2012-10-03] (Microsoft Corporation) S3 TDPIPE; C:\Windows\System32\drivers\tdpipe.sys [15872 2009-07-14] (Microsoft Corporation) S3 TDTCP; C:\Windows\System32\drivers\tdtcp.sys [23552 2012-02-17] (Microsoft Corporation) R1 tdx; C:\Windows\System32\DRIVERS\tdx.sys [119296 2010-11-21] (Microsoft Corporation) R1 TermDD; C:\Windows\System32\DRIVERS\termdd.sys [63360 2010-11-21] (Microsoft Corporation) S3 tssecsrv; C:\Windows\System32\DRIVERS\tssecsrv.sys [39936 2013-06-15] (Microsoft Corporation) S3 TsUsbFlt; C:\Windows\System32\drivers\tsusbflt.sys [57856 2012-08-23] (Microsoft Corporation) S3 TsUsbGD; C:\Windows\system32\drivers\TsUsbGD.sys [30208 2012-08-23] (Microsoft Corporation) R3 tunnel; C:\Windows\System32\DRIVERS\tunnel.sys [125440 2010-11-21] (Microsoft Corporation) S3 uagp35; C:\Windows\system32\drivers\uagp35.sys [64080 2009-07-14] (Microsoft Corporation) S4 udfs; C:\Windows\System32\DRIVERS\udfs.sys [328192 2010-11-21] (Microsoft Corporation) S3 uliagpkx; C:\Windows\system32\drivers\uliagpkx.sys [64592 2009-07-14] (Microsoft Corporation) R3 umbus; C:\Windows\System32\DRIVERS\umbus.sys [48640 2010-11-21] (Microsoft Corporation) S3 UmPass; C:\Windows\system32\drivers\umpass.sys [9728 2009-07-14] (Microsoft Corporation) S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2012-12-13] (Apple, Inc.) S3 usbaudio; C:\Windows\System32\drivers\usbaudio.sys [109824 2013-07-12] (Microsoft Corporation) R3 usbccgp; C:\Windows\System32\DRIVERS\usbccgp.sys [99840 2013-11-27] (Microsoft Corporation) S3 usbcir; C:\Windows\system32\drivers\usbcir.sys [100864 2013-07-12] (Microsoft Corporation) R3 usbehci; C:\Windows\System32\DRIVERS\usbehci.sys [53248 2013-11-27] (Microsoft Corporation) R3 usbfilter; C:\Windows\System32\DRIVERS\usbfilter.sys [58536 2012-08-28] (Advanced Micro Devices) R3 usbhub; C:\Windows\System32\DRIVERS\usbhub.sys [343040 2013-11-27] (Microsoft Corporation) R3 usbohci; C:\Windows\System32\DRIVERS\usbohci.sys [25600 2013-11-27] (Microsoft Corporation) S3 usbprint; C:\Windows\system32\drivers\usbprint.sys [25088 2009-07-14] (Microsoft Corporation) S3 USBSTOR; C:\Windows\System32\DRIVERS\USBSTOR.SYS [91648 2011-03-11] (Microsoft Corporation) S3 usbuhci; C:\Windows\system32\drivers\usbuhci.sys [30720 2013-11-27] (Microsoft Corporation) R0 vdrvroot; C:\Windows\System32\drivers\vdrvroot.sys [36432 2009-07-14] (Microsoft Corporation) S3 vga; C:\Windows\System32\DRIVERS\vgapnp.sys [29184 2009-07-14] (Microsoft Corporation) R1 VgaSave; C:\Windows\System32\drivers\vga.sys [29184 2009-07-14] (Microsoft Corporation) S3 vhdmp; C:\Windows\system32\drivers\vhdmp.sys [215936 2010-11-21] (Microsoft Corporation) S3 viaide; C:\Windows\system32\drivers\viaide.sys [17488 2009-07-14] (VIA Technologies, Inc.) R0 volmgr; C:\Windows\System32\drivers\volmgr.sys [71552 2010-11-21] (Microsoft Corporation) R0 volmgrx; C:\Windows\System32\drivers\volmgrx.sys [363392 2010-11-21] (Microsoft Corporation) R0 volsnap; C:\Windows\System32\drivers\volsnap.sys [296320 2011-02-25] (Microsoft Corporation) S3 vsmraid; C:\Windows\system32\drivers\vsmraid.sys [161872 2009-07-14] (VIA Technologies Inc.,Ltd) S3 vwifibus; C:\Windows\System32\drivers\vwifibus.sys [24576 2009-07-14] (Microsoft Corporation) S3 WacomPen; C:\Windows\system32\drivers\wacompen.sys [27776 2009-07-14] (Microsoft Corporation) S3 WANARP; C:\Windows\System32\DRIVERS\wanarp.sys [88576 2010-11-21] (Microsoft Corporation) R1 Wanarpv6; C:\Windows\System32\DRIVERS\wanarp.sys [88576 2010-11-21] (Microsoft Corporation) S3 Wd; C:\Windows\system32\drivers\wd.sys [21056 2009-07-14] (Microsoft Corporation) R0 Wdf01000; C:\Windows\System32\drivers\Wdf01000.sys [785624 2013-06-25] (Microsoft Corporation) R1 WfpLwf; C:\Windows\System32\DRIVERS\wfplwf.sys [12800 2009-07-14] (Microsoft Corporation) S3 WIMMount; C:\Windows\System32\drivers\wimmount.sys [22096 2009-07-14] (Microsoft Corporation) S3 WIMMount; C:\Windows\SysWOW64\drivers\wimmount.sys [19008 2009-07-14] (Microsoft Corporation) U3 Winsock; No ImagePath S3 WinUsb; C:\Windows\System32\DRIVERS\WinUsb.sys [41984 2010-11-21] (Microsoft Corporation) R3 WmiAcpi; C:\Windows\System32\DRIVERS\wmiacpi.sys [14336 2009-07-14] (Microsoft Corporation) R1 ws2ifsl; C:\Windows\system32\drivers\ws2ifsl.sys [21504 2009-07-14] (Microsoft Corporation) S3 WSDPrintDevice; C:\Windows\System32\DRIVERS\WSDPrint.sys [23040 2009-07-14] (Microsoft Corporation) S3 WudfPf; C:\Windows\System32\drivers\WudfPf.sys [87040 2012-07-26] (Microsoft Corporation) S3 WUDFRd; C:\Windows\System32\DRIVERS\WUDFRd.sys [198656 2012-07-26] (Microsoft Corporation) U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) U5 BattC; C:\Windows\System32\Drivers\BattC.sys [28240 2009-07-14] (Microsoft Corporation) S3 catchme; \??\C:\ComboFix\catchme.sys [X] S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-25 15:31 - 2014-02-25 15:34 - 00000000 ____D () C:\Users\Marvin\AppData\Local\SKIDROW 2014-02-25 15:28 - 2014-02-25 15:28 - 00001950 _____ () C:\Users\Public\Desktop\DAEMON Tools Lite.lnk 2014-02-25 15:28 - 2014-02-25 15:28 - 00000000 _____ () C:\END 2014-02-25 15:27 - 2014-02-25 15:27 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys 2014-02-25 15:27 - 2014-02-25 15:27 - 00000000 ____D () C:\Users\Marvin\AppData\Roaming\OpenCandy 2014-02-25 15:27 - 2014-02-25 15:27 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite 2014-02-25 15:23 - 2014-02-25 15:23 - 13485616 _____ (Disc Soft Ltd) C:\Users\Marvin\Downloads\DTLite4481-0347.exe 2014-02-25 14:23 - 2014-02-25 14:23 - 00000000 ____D () C:\Users\Marvin\Desktop\chatsync 2014-02-25 14:23 - 2014-02-25 14:13 - 05619712 _____ () C:\Users\Marvin\Desktop\main.db 2014-02-25 14:12 - 2014-02-25 14:12 - 00002699 _____ () C:\Users\Public\Desktop\Skype.lnk 2014-02-25 14:12 - 2014-02-25 14:12 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-02-25 14:12 - 2014-02-25 14:12 - 00000000 ____D () C:\Users\Marvin\AppData\Local\Skype 2014-02-25 14:11 - 2014-02-25 14:11 - 00614816 _____ (Chip Digital GmbH) C:\Users\Marvin\Downloads\Skype - CHIP-Downloader.exe 2014-02-24 16:59 - 2014-02-27 18:51 - 00000000 ____D () C:\Users\Marvin\Desktop\FRST-OlderVersion 2014-02-21 18:39 - 2014-02-21 18:39 - 00000000 ____D () C:\ProgramData\APN 2014-02-18 17:38 - 2014-02-18 17:38 - 00614816 _____ (Chip Digital GmbH) C:\Users\Marvin\Downloads\proxtube_1.2.7 - CHIP-Downloader.exe 2014-02-18 17:33 - 2014-02-27 18:45 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-02-18 17:33 - 2014-02-27 18:44 - 00001110 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-02-18 17:33 - 2014-02-22 10:47 - 00002175 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-02-18 17:33 - 2014-02-20 19:39 - 00004106 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-02-18 17:33 - 2014-02-20 19:39 - 00003854 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-02-18 15:40 - 2014-02-25 16:32 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group 2014-02-18 15:40 - 2014-02-18 15:40 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Marvin\Downloads\revosetup95.exe 2014-02-15 15:16 - 2014-02-15 15:16 - 00000883 _____ () C:\Users\Public\Desktop\FUSSBALL MANAGER 13.lnk 2014-02-15 15:05 - 2014-02-16 14:34 - 00000000 ____D () C:\Users\Marvin\AppData\Roaming\Origin 2014-02-15 15:05 - 2014-02-15 15:05 - 00000000 ____D () C:\Users\Marvin\AppData\Local\Origin 2014-02-15 15:04 - 2014-02-27 18:51 - 00000000 ____D () C:\ProgramData\Origin 2014-02-15 15:04 - 2014-02-15 15:04 - 00000000 ____D () C:\ProgramData\Electronic Arts 2014-02-15 15:03 - 2014-02-15 15:04 - 17011744 _____ (Electronic Arts, Inc.) C:\Users\Marvin\Downloads\OriginThinSetup.exe 2014-02-15 13:44 - 2014-02-15 13:45 - 00000000 ____D () C:\Users\Marvin\Documents\Witcher 2 2014-02-15 13:44 - 2014-02-15 13:44 - 00000000 ____D () C:\Users\Marvin\AppData\Local\The Witcher 2 2014-02-15 10:33 - 2014-02-15 10:33 - 00000000 ____D () C:\Program Files (x86)\Lavalys 2014-02-15 10:32 - 2014-02-15 10:32 - 10255080 _____ (Lavalys, Inc. ) C:\Users\Marvin\Downloads\everestultimate550.exe 2014-02-15 10:18 - 2014-02-15 10:18 - 00002019 _____ () C:\Users\Public\Desktop\Adobe Reader X.lnk 2014-02-15 10:18 - 2014-02-15 10:18 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-02-14 00:05 - 2013-12-21 10:53 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-02-14 00:05 - 2013-12-21 09:56 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-02-14 00:04 - 2014-02-06 13:16 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-02-14 00:04 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-02-14 00:04 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-02-14 00:04 - 2014-02-06 12:12 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-02-14 00:04 - 2014-02-06 12:07 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-02-14 00:04 - 2014-02-06 12:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-02-14 00:04 - 2014-02-06 11:57 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-02-14 00:04 - 2014-02-06 11:56 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-02-14 00:04 - 2014-02-06 11:52 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-02-14 00:04 - 2014-02-06 11:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-02-14 00:04 - 2014-02-06 11:48 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-02-14 00:04 - 2014-02-06 11:48 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-02-14 00:04 - 2014-02-06 11:38 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-02-14 00:04 - 2014-02-06 11:32 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-02-14 00:04 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-02-14 00:04 - 2014-02-06 11:17 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-02-14 00:04 - 2014-02-06 11:11 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-02-14 00:04 - 2014-02-06 11:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-02-14 00:04 - 2014-02-06 11:00 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-02-14 00:04 - 2014-02-06 10:57 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-02-14 00:04 - 2014-02-06 10:57 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-02-14 00:04 - 2014-02-06 10:52 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-02-14 00:04 - 2014-02-06 10:52 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-02-14 00:04 - 2014-02-06 10:50 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-02-14 00:04 - 2014-02-06 10:49 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-02-14 00:04 - 2014-02-06 10:47 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-02-14 00:04 - 2014-02-06 10:46 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-02-14 00:04 - 2014-02-06 10:25 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-02-14 00:04 - 2014-02-06 10:25 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-02-14 00:04 - 2014-02-06 10:24 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-02-14 00:04 - 2014-02-06 10:22 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-02-14 00:04 - 2014-02-06 10:13 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-02-14 00:04 - 2014-02-06 10:09 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-02-14 00:04 - 2014-02-06 10:03 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-02-14 00:04 - 2014-02-06 09:55 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-02-14 00:04 - 2014-02-06 09:41 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-02-14 00:04 - 2014-02-06 09:40 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-02-14 00:04 - 2014-02-06 09:36 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-02-14 00:04 - 2014-02-06 09:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-02-13 23:20 - 2014-02-13 23:20 - 00000000 ____D () C:\Windows\ERUNT 2014-02-13 23:13 - 2014-02-13 23:15 - 00000000 ____D () C:\AdwCleaner 2014-02-13 23:06 - 2014-02-13 23:07 - 00000000 ____D () C:\Spotify 2014-02-13 22:44 - 2014-02-13 22:44 - 00000000 ____D () C:\Users\Marvin\AppData\Roaming\Malwarebytes 2014-02-13 22:44 - 2014-02-13 22:44 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-02-13 18:38 - 2014-01-01 00:05 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls 2014-02-13 18:38 - 2014-01-01 00:04 - 00420008 _____ () C:\Windows\system32\locale.nls 2014-02-13 18:38 - 2013-12-06 03:30 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-02-13 18:38 - 2013-12-06 03:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-02-13 18:38 - 2013-12-06 03:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-02-13 18:38 - 2013-12-06 03:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-02-13 18:38 - 2013-12-04 03:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll 2014-02-13 18:38 - 2013-12-04 03:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll 2014-02-13 18:38 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll 2014-02-13 18:38 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll 2014-02-13 18:38 - 2013-12-04 03:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll 2014-02-13 18:38 - 2013-12-04 03:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe 2014-02-13 18:38 - 2013-12-04 03:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe 2014-02-13 18:38 - 2013-12-04 03:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe 2014-02-13 18:38 - 2013-12-04 03:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe 2014-02-13 18:38 - 2013-12-04 03:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll 2014-02-13 18:38 - 2013-12-04 03:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll 2014-02-13 18:38 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll 2014-02-13 18:38 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll 2014-02-13 18:38 - 2013-12-04 03:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll 2014-02-13 18:38 - 2013-12-04 02:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe 2014-02-13 18:38 - 2013-12-04 02:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe 2014-02-13 18:38 - 2013-12-04 02:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe 2014-02-13 18:38 - 2013-12-04 02:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe 2014-02-13 18:37 - 2013-12-25 00:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-02-13 18:37 - 2013-12-24 23:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-02-13 18:37 - 2013-11-26 09:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2014-02-13 18:37 - 2013-11-22 23:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2014-02-12 18:57 - 2014-02-12 18:57 - 00140273 _____ () C:\ComboFix.txt 2014-02-12 18:49 - 2011-06-26 07:45 - 00256000 _____ () C:\Windows\PEV.exe 2014-02-12 18:49 - 2010-11-07 18:20 - 00208896 _____ () C:\Windows\MBR.exe 2014-02-12 18:49 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2014-02-12 18:49 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2014-02-12 18:49 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2014-02-12 18:49 - 2000-08-31 01:00 - 00098816 _____ () C:\Windows\sed.exe 2014-02-12 18:49 - 2000-08-31 01:00 - 00080412 _____ () C:\Windows\grep.exe 2014-02-12 18:49 - 2000-08-31 01:00 - 00068096 _____ () C:\Windows\zip.exe 2014-02-12 18:48 - 2014-02-12 18:57 - 00000000 ____D () C:\Qoobox 2014-02-12 18:48 - 2014-02-12 18:56 - 00000000 ____D () C:\Windows\erdnt 2014-02-11 21:39 - 2014-02-27 18:51 - 00000000 ____D () C:\FRST 2014-02-11 21:38 - 2014-02-24 16:59 - 02155520 _____ (Farbar) C:\Users\Marvin\Desktop\FRST64.exe 2014-02-01 15:16 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2014-02-01 15:16 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2014-02-01 15:16 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2014-02-01 15:16 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2014-02-01 15:16 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2014-02-01 15:16 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2014-02-01 15:16 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2014-02-01 15:16 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2014-02-01 15:16 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll 2014-02-01 15:16 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2014-02-01 15:16 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2014-02-01 15:16 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2014-02-01 15:16 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2014-02-01 15:16 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2014-02-01 15:16 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2014-02-01 15:16 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2014-01-31 17:49 - 2014-01-31 17:49 - 00000000 ____D () C:\Users\Marvin\Documents\EA Games 2014-01-31 17:49 - 2014-01-31 17:49 - 00000000 ____D () C:\Users\Marvin\AppData\Local\EA Games 2014-01-31 10:29 - 2014-01-31 10:29 - 00000000 ____D () C:\Users\Marvin\Documents\Assassin's Creed IV Black Flag ==================== One Month Modified Files and Folders ======= 2014-02-27 18:51 - 2014-02-24 16:59 - 00000000 ____D () C:\Users\Marvin\Desktop\FRST-OlderVersion 2014-02-27 18:51 - 2014-02-15 15:04 - 00000000 ____D () C:\ProgramData\Origin 2014-02-27 18:51 - 2014-02-11 21:39 - 00000000 ____D () C:\FRST 2014-02-27 18:51 - 2013-11-01 12:05 - 00000000 ____D () C:\Users\Marvin\AppData\Roaming\Spotify 2014-02-27 18:47 - 2009-07-14 05:45 - 00021664 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-02-27 18:47 - 2009-07-14 05:45 - 00021664 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-02-27 18:46 - 2013-09-23 18:07 - 00000000 ____D () C:\Users\Marvin\AppData\Roaming\Skype 2014-02-27 18:45 - 2014-02-18 17:33 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-02-27 18:44 - 2014-02-18 17:33 - 00001110 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-02-27 18:43 - 2013-09-22 17:20 - 01247096 _____ () C:\Windows\WindowsUpdate.log 2014-02-27 18:43 - 2010-11-21 07:50 - 00699868 _____ () C:\Windows\system32\perfh007.dat 2014-02-27 18:43 - 2010-11-21 07:50 - 00149750 _____ () C:\Windows\system32\perfc007.dat 2014-02-27 18:43 - 2009-07-14 06:13 - 01622164 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-02-27 18:39 - 2013-09-22 17:33 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-02-27 18:39 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-02-27 18:39 - 2009-07-14 05:51 - 00061158 _____ () C:\Windows\setupact.log 2014-02-27 17:30 - 2013-09-22 15:27 - 00000000 ____D () C:\Users\Marvin\AppData\Roaming\TS3Client 2014-02-27 17:27 - 2013-05-21 09:53 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-02-27 15:51 - 2010-11-21 04:47 - 00572918 _____ () C:\Windows\PFRO.log 2014-02-26 13:21 - 2011-04-07 08:41 - 01595508 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-02-25 16:32 - 2014-02-18 15:40 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group 2014-02-25 15:34 - 2014-02-25 15:31 - 00000000 ____D () C:\Users\Marvin\AppData\Local\SKIDROW 2014-02-25 15:28 - 2014-02-25 15:28 - 00001950 _____ () C:\Users\Public\Desktop\DAEMON Tools Lite.lnk 2014-02-25 15:28 - 2014-02-25 15:28 - 00000000 _____ () C:\END 2014-02-25 15:27 - 2014-02-25 15:27 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys 2014-02-25 15:27 - 2014-02-25 15:27 - 00000000 ____D () C:\Users\Marvin\AppData\Roaming\OpenCandy 2014-02-25 15:27 - 2014-02-25 15:27 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite 2014-02-25 15:25 - 2013-11-01 12:11 - 00000000 ____D () C:\Users\Marvin\AppData\Local\Spotify 2014-02-25 15:23 - 2014-02-25 15:23 - 13485616 _____ (Disc Soft Ltd) C:\Users\Marvin\Downloads\DTLite4481-0347.exe 2014-02-25 14:23 - 2014-02-25 14:23 - 00000000 ____D () C:\Users\Marvin\Desktop\chatsync 2014-02-25 14:13 - 2014-02-25 14:23 - 05619712 _____ () C:\Users\Marvin\Desktop\main.db 2014-02-25 14:12 - 2014-02-25 14:12 - 00002699 _____ () C:\Users\Public\Desktop\Skype.lnk 2014-02-25 14:12 - 2014-02-25 14:12 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-02-25 14:12 - 2014-02-25 14:12 - 00000000 ____D () C:\Users\Marvin\AppData\Local\Skype 2014-02-25 14:12 - 2013-09-23 18:07 - 00000000 ____D () C:\ProgramData\Skype 2014-02-25 14:11 - 2014-02-25 14:11 - 00614816 _____ (Chip Digital GmbH) C:\Users\Marvin\Downloads\Skype - CHIP-Downloader.exe 2014-02-24 17:00 - 2009-07-14 06:08 - 00032640 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-02-24 16:59 - 2014-02-11 21:38 - 02155520 _____ (Farbar) C:\Users\Marvin\Desktop\FRST64.exe 2014-02-24 16:59 - 2013-09-22 17:52 - 00000000 ____D () C:\Windows\System32\Tasks\ASUS 2014-02-23 18:34 - 2013-11-23 02:37 - 00000000 ____D () C:\Users\Marvin\AppData\Local\ArmA 2 OA 2014-02-23 18:34 - 2013-09-23 18:02 - 00000000 ___RD () C:\Users\Marvin\Desktop\Programme 2014-02-23 17:18 - 2013-11-22 22:35 - 00000000 ____D () C:\Users\Marvin\Documents\StarCraft II 2014-02-23 17:10 - 2013-11-22 22:26 - 00000000 ____D () C:\Users\Marvin\Desktop\StarCraft II 2014-02-22 11:27 - 2013-09-22 19:19 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-02-22 11:27 - 2013-09-22 19:19 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-02-22 11:27 - 2013-05-21 09:53 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-02-22 10:47 - 2014-02-18 17:33 - 00002175 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-02-21 18:39 - 2014-02-21 18:39 - 00000000 ____D () C:\ProgramData\APN 2014-02-20 21:26 - 2013-09-25 09:47 - 00000000 ____D () C:\Users\Marvin\Desktop\World of Warcraft 2014-02-20 19:39 - 2014-02-18 17:33 - 00004106 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-02-20 19:39 - 2014-02-18 17:33 - 00003854 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-02-20 18:43 - 2013-11-06 21:00 - 00018714 _____ () C:\Users\Marvin\daemonprocess.txt 2014-02-18 17:38 - 2014-02-18 17:38 - 00614816 _____ (Chip Digital GmbH) C:\Users\Marvin\Downloads\proxtube_1.2.7 - CHIP-Downloader.exe 2014-02-18 17:33 - 2013-09-22 17:52 - 00000000 ____D () C:\Program Files (x86)\Google 2014-02-18 17:33 - 2013-09-20 13:43 - 00000000 ____D () C:\Users\Marvin\AppData\Local\Google 2014-02-18 15:40 - 2014-02-18 15:40 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Marvin\Downloads\revosetup95.exe 2014-02-16 18:15 - 2013-09-22 15:00 - 00000000 ____D () C:\Users\Marvin\AppData\Roaming\Xfire 2014-02-16 14:34 - 2014-02-15 15:05 - 00000000 ____D () C:\Users\Marvin\AppData\Roaming\Origin 2014-02-15 15:16 - 2014-02-15 15:16 - 00000883 _____ () C:\Users\Public\Desktop\FUSSBALL MANAGER 13.lnk 2014-02-15 15:15 - 2011-04-07 08:37 - 00135872 _____ () C:\Windows\DirectX.log 2014-02-15 15:05 - 2014-02-15 15:05 - 00000000 ____D () C:\Users\Marvin\AppData\Local\Origin 2014-02-15 15:04 - 2014-02-15 15:04 - 00000000 ____D () C:\ProgramData\Electronic Arts 2014-02-15 15:04 - 2014-02-15 15:03 - 17011744 _____ (Electronic Arts, Inc.) C:\Users\Marvin\Downloads\OriginThinSetup.exe 2014-02-15 13:45 - 2014-02-15 13:44 - 00000000 ____D () C:\Users\Marvin\Documents\Witcher 2 2014-02-15 13:44 - 2014-02-15 13:44 - 00000000 ____D () C:\Users\Marvin\AppData\Local\The Witcher 2 2014-02-15 10:47 - 2013-09-24 19:26 - 00000000 ____D () C:\Windows\system32\MRT 2014-02-15 10:46 - 2013-09-24 19:26 - 88567024 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-02-15 10:33 - 2014-02-15 10:33 - 00000000 ____D () C:\Program Files (x86)\Lavalys 2014-02-15 10:32 - 2014-02-15 10:32 - 10255080 _____ (Lavalys, Inc. ) C:\Users\Marvin\Downloads\everestultimate550.exe 2014-02-15 10:18 - 2014-02-15 10:18 - 00002019 _____ () C:\Users\Public\Desktop\Adobe Reader X.lnk 2014-02-15 10:18 - 2014-02-15 10:18 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-02-15 10:18 - 2011-04-07 09:21 - 00000000 ____D () C:\ProgramData\Adobe 2014-02-14 17:54 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache 2014-02-13 23:20 - 2014-02-13 23:20 - 00000000 ____D () C:\Windows\ERUNT 2014-02-13 23:15 - 2014-02-13 23:13 - 00000000 ____D () C:\AdwCleaner 2014-02-13 23:07 - 2014-02-13 23:06 - 00000000 ____D () C:\Spotify 2014-02-13 22:57 - 2013-11-04 23:14 - 00000000 ____D () C:\Users\Marvin\AppData\Roaming\SoftGrid Client 2014-02-13 22:44 - 2014-02-13 22:44 - 00000000 ____D () C:\Users\Marvin\AppData\Roaming\Malwarebytes 2014-02-13 22:44 - 2014-02-13 22:44 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-02-12 18:57 - 2014-02-12 18:57 - 00140273 _____ () C:\ComboFix.txt 2014-02-12 18:57 - 2014-02-12 18:48 - 00000000 ____D () C:\Qoobox 2014-02-12 18:57 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Default 2014-02-12 18:56 - 2014-02-12 18:48 - 00000000 ____D () C:\Windows\erdnt 2014-02-12 18:56 - 2009-07-14 03:34 - 00000215 _____ () C:\Windows\system.ini 2014-02-12 18:55 - 2013-09-22 17:23 - 00000000 ____D () C:\Users\Marvin 2014-02-11 21:55 - 2013-09-25 10:10 - 00000000 ____D () C:\Users\Marvin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2014-02-11 21:53 - 2013-10-20 20:28 - 00000025 _____ () C:\Windows\SIERRA.INI 2014-02-06 13:16 - 2014-02-14 00:04 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-02-06 12:30 - 2014-02-14 00:04 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-02-06 12:30 - 2014-02-14 00:04 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-02-06 12:12 - 2014-02-14 00:04 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-02-06 12:07 - 2014-02-14 00:04 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-02-06 12:06 - 2014-02-14 00:04 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-02-06 11:57 - 2014-02-14 00:04 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-02-06 11:56 - 2014-02-14 00:04 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-02-06 11:52 - 2014-02-14 00:04 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-02-06 11:49 - 2014-02-14 00:04 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-02-06 11:48 - 2014-02-14 00:04 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-02-06 11:48 - 2014-02-14 00:04 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-02-06 11:38 - 2014-02-14 00:04 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-02-06 11:32 - 2014-02-14 00:04 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-02-06 11:20 - 2014-02-14 00:04 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-02-06 11:17 - 2014-02-14 00:04 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-02-06 11:11 - 2014-02-14 00:04 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-02-06 11:01 - 2014-02-14 00:04 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-02-06 11:00 - 2014-02-14 00:04 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-02-06 10:57 - 2014-02-14 00:04 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-02-06 10:57 - 2014-02-14 00:04 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-02-06 10:52 - 2014-02-14 00:04 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-02-06 10:52 - 2014-02-14 00:04 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-02-06 10:50 - 2014-02-14 00:04 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-02-06 10:49 - 2014-02-14 00:04 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-02-06 10:47 - 2014-02-14 00:04 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-02-06 10:46 - 2014-02-14 00:04 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-02-06 10:25 - 2014-02-14 00:04 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-02-06 10:25 - 2014-02-14 00:04 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-02-06 10:24 - 2014-02-14 00:04 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-02-06 10:22 - 2014-02-14 00:04 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-02-06 10:13 - 2014-02-14 00:04 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-02-06 10:09 - 2014-02-14 00:04 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-02-06 10:03 - 2014-02-14 00:04 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-02-06 09:55 - 2014-02-14 00:04 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-02-06 09:41 - 2014-02-14 00:04 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-02-06 09:40 - 2014-02-14 00:04 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-02-06 09:36 - 2014-02-14 00:04 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-02-06 09:34 - 2014-02-14 00:04 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-02-05 14:51 - 2009-07-14 06:09 - 00000000 ____D () C:\Windows\System32\Tasks\WPD 2014-01-31 17:49 - 2014-01-31 17:49 - 00000000 ____D () C:\Users\Marvin\Documents\EA Games 2014-01-31 17:49 - 2014-01-31 17:49 - 00000000 ____D () C:\Users\Marvin\AppData\Local\EA Games 2014-01-31 10:29 - 2014-01-31 10:29 - 00000000 ____D () C:\Users\Marvin\Documents\Assassin's Creed IV Black Flag Files to move or delete: ==================== C:\Users\Marvin\AppData\Roaming\cache.ini C:\Users\Marvin\Archive.exe C:\Users\Marvin\BsSndRpt.exe C:\Users\Marvin\BugSplat.dll C:\Users\Marvin\BugSplatRc.dll C:\Users\Marvin\dbghelp.dll C:\Users\Marvin\Debug.dll C:\Users\Marvin\DllTie.dll C:\Users\Marvin\Filesystem.dll C:\Users\Marvin\ijl15.dll C:\Users\Marvin\Input.dll C:\Users\Marvin\libacml_mp_dll.dll C:\Users\Marvin\libguide40.dll C:\Users\Marvin\libifcoremd.dll C:\Users\Marvin\libmmd.dll C:\Users\Marvin\Localizer.dll C:\Users\Marvin\LuaConfig.dll C:\Users\Marvin\MathBox.dll C:\Users\Marvin\Memory.dll C:\Users\Marvin\ModManager.dll C:\Users\Marvin\mss32.dll C:\Users\Marvin\NetConfig.dll C:\Users\Marvin\Platform.dll C:\Users\Marvin\PlatHook.dll C:\Users\Marvin\Profiler.dll C:\Users\Marvin\RelicCOH.exe C:\Users\Marvin\removeFakeMSI.bat C:\Users\Marvin\Shark.dll C:\Users\Marvin\SimEngine.dll C:\Users\Marvin\spDx10.dll C:\Users\Marvin\spDx9.dll C:\Users\Marvin\Spooge.dll C:\Users\Marvin\STLPort.5.1.dll C:\Users\Marvin\Uninstall_German.exe C:\Users\Marvin\UserInterface.dll C:\Users\Marvin\Util.dll C:\Users\Marvin\WorldBuilder.exe C:\Users\Marvin\WW2Mod.dll C:\Users\Marvin\XThread.dll Some content of TEMP: ==================== C:\Users\Marvin\AppData\Local\Temp\avgnt.exe C:\Users\Marvin\AppData\Local\Temp\nsbF838.exe C:\Users\Marvin\AppData\Local\Temp\nsq2208.exe C:\Users\Marvin\AppData\Local\Temp\nsq25B1.exe C:\Users\Marvin\AppData\Local\Temp\nsqF53A.exe C:\Users\Marvin\AppData\Local\Temp\nsu78CC.exe C:\Users\Marvin\AppData\Local\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-02-18 16:09 ==================== End Of Log ============================ |
27.02.2014, 18:56 | #30 |
| Trojaner ? Windows PC- ReparaturCode:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 27-02-2014 02 Ran by Marvin at 2014-02-27 18:52:29 Running from C:\Users\Marvin\Desktop\FRST-OlderVersion Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Microsoft Security Essentials (Enabled - Up to date) {641105E6-77ED-3F35-A304-765193BCB75F} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Microsoft Security Essentials (Enabled - Up to date) {DF70E402-51D7-30BB-99B4-4D23E83BFDE2} ==================== Installed Programs ====================== 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe Flash Player 12 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 12.0.0.70 - Adobe Systems Incorporated) Adobe Reader X (10.1.9) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AA1000000001}) (Version: 10.1.9 - Adobe Systems Incorporated) AMD APP SDK Runtime (Version: 10.0.1084.4 - Advanced Micro Devices Inc.) Hidden AMD Catalyst Install Manager (HKLM\...\{5DDB9EF7-1BC0-C9C1-9829-6B9CF68AC357}) (Version: 8.0.903.0 - Advanced Micro Devices, Inc.) Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{2EF5D87E-B7BD-458F-8428-E4D0B8B4E65C}) (Version: 7.0.0.117 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Arma 2 (HKLM-x32\...\Steam App 33900) (Version: - Bohemia Interactive) ARMA 2 Army of The Czech Republic - Data cache removal (HKLM-x32\...\A2ACR Data cache removal) (Version: - ) ARMA 2: British Armed Forces - Data cache removal (HKLM-x32\...\A2BAF Data cache removal) (Version: - ) Arma 2: British Armed Forces (HKLM-x32\...\Steam App 65700) (Version: - Bohemia Interactive) Arma 2: DayZ Mod (HKLM-x32\...\Steam App 224580) (Version: - Bohemia Interactive) Arma 2: Operation Arrowhead (HKLM-x32\...\Steam App 33930) (Version: - Bohemia Interactive) Arma 2: Operation Arrowhead Beta (HKLM-x32\...\Steam App 219540) (Version: - ) ARMA 2: Private Military Company - Data cache removal (HKLM-x32\...\A2PMC Data cache removal) (Version: - ) Arma 2: Private Military Company (HKLM-x32\...\Steam App 65720) (Version: - Bohemia Interactive) Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.14.8.0 - Asmedia Technology) Assassin's Creed IV: Black Flag (HKLM-x32\...\{7532E420-C441-4761-8C8C-76698A09593A}_is1) (Version: 1.01 - Ubisoft) ASUS Product Register Program (HKLM-x32\...\{C0B16F2E-3980-44F8-8CF4-F84696541FF7}) (Version: 1.0.018 - ASUSTek Computer Inc.) Avira Free Antivirus (HKLM-x32\...\Avira AntiVir Desktop) (Version: 14.0.3.338 - Avira) Avira SearchFree Toolbar (HKLM-x32\...\{41564952-412D-5637-00A7-A758B70C0A03}) (Version: 12.10.3.4489 - APN, LLC) BattlEye for OA Uninstall (HKLM-x32\...\BattlEye for OA) (Version: - ) BattlEye Uninstall (HKLM-x32\...\BattlEye for A2) (Version: - ) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Borderlands 2 (HKLM-x32\...\Steam App 49520) (Version: - Gearbox Software) Call of Duty: Black Ops II - Multiplayer (HKLM-x32\...\Steam App 202990) (Version: - ) Call of Duty: Black Ops II - Zombies (HKLM-x32\...\Steam App 212910) (Version: - ) Call of Duty: Black Ops II (HKLM-x32\...\Steam App 202970) (Version: - Treyarch) CDBurnerXP (HKLM\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.3.8.2523 - CDBurnerXP) Company of Heroes - FAKEMSI (x32 Version: 2.0.0.0 - THQ Inc.) Hidden Company of Heroes (HKLM-x32\...\Company of Heroes) (Version: 2.0.0.1 - THQ Inc.) Counter-Strike: Source (HKLM-x32\...\{9580813D-94B1-4C28-9426-A441E2BB29A5}) (Version: 1.0.0.0 - Valve) Counter-Strike: Source (HKLM-x32\...\Steam App 240) (Version: - Valve) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.48.1.0347 - Disc Soft Ltd) DayZ Commander (HKLM-x32\...\{B3653588-3AC0-4A1D-950F-D96531E84374}) (Version: 0.92.91 - Dotjosh Studios) Dojotech Spotify Recorder (HKLM-x32\...\{D149DB2E-392E-48CC-8036-88BECC09C50A}) (Version: 3.2 - Dojotech Software) EVEREST Ultimate Edition v5.50 (HKLM-x32\...\EVEREST Ultimate Edition_is1) (Version: 5.50 - Lavalys, Inc.) EXPERTool v8.8 (HKLM-x32\...\{551D9481-9487-4D0C-9A1D-6BC3E7B6D991}_is1) (Version: 8.8.0.0 - Gainward Co. Ltd.) Forged Alliance Forever (HKLM-x32\...\{0EFD68AA-B1A1-4813-963B-681B5133DFA0}) (Version: 240.10.87 - FAF Community) Free YouTube to MP3 Converter version 3.12.17.1127 (HKLM-x32\...\Free YouTube to MP3 Converter_is1) (Version: 3.12.17.1127 - DVDVideoSoft Ltd.) FUSSBALL MANAGER 13 (HKLM-x32\...\{80AF0300-866F-400F-A350-D53E3C3E34E0}) (Version: 1.0.4.0 - Electronic Arts) GameSpy Arcade (HKLM-x32\...\GameSpy Arcade) (Version: - ) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 33.0.1750.117 - Google Inc.) Google Update Helper (x32 Version: 1.3.22.5 - Google Inc.) Hidden Half-Life 2: Lost Coast (HKLM-x32\...\Steam App 340) (Version: - Valve) Halo Combat Evolved (HKLM-x32\...\Halo Combat Evolved) (Version: - ) iTunes (HKLM\...\{D601CEAD-2E4F-4BBB-85CC-C29A4CE6A3C0}) (Version: 11.1.3.8 - Apple Inc.) Java 7 Update 40 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417040FF}) (Version: 7.0.400 - Oracle) Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games ) League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Antimalware Service DE-DE Language Pack (Version: 3.0.8107.0 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Klick-und-Los 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Klick-und-Los 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden Microsoft Office Starter 2010 - Deutsch (HKLM-x32\...\{90140011-0066-0407-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Security Client (Version: 4.4.0304.0 - Microsoft Corporation) Hidden Microsoft Security Client DE-DE Language Pack (Version: 2.0.0719.0 - Microsoft Corporation) Hidden Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.4.304.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.20913.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Minecraft (HKLM-x32\...\{34D9106C-A947-47ED-B4AB-764736350769}) (Version: 1.6.1 - MINECRAFTinstall.net) Mobogenie (HKLM-x32\...\Mobogenie) (Version: - Mobogenie.com) <==== ATTENTION MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden Norton PC Checkup (HKLM-x32\...\NortonPCCheckup) (Version: 2.0.18.16 - Symantec Corporation) NVIDIA 3D Vision Controller-Treiber 314.16 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 314.16 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 314.16 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 314.16 - NVIDIA Corporation) NVIDIA Grafiktreiber 314.16 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 314.16 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.23.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.23.1 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.109.706 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.12.1031 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.12.1031 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.1031 - NVIDIA Corporation) NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.1416 - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 314.16 (Version: 314.16 - NVIDIA Corporation) Hidden NVIDIA Update 1.12.12 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.12.12 - NVIDIA Corporation) NVIDIA Update Components (Version: 1.12.12 - NVIDIA Corporation) Hidden OpenOffice 4.0.1 (HKLM-x32\...\{0AEC308E-7EB3-47F7-BB59-F2C9C6166B27}) (Version: 4.01.9714 - Apache Software Foundation) Origin (HKLM-x32\...\Origin) (Version: 9.4.5.195 - Electronic Arts, Inc.) Prototype 2 (HKLM-x32\...\Prototype 2_is1) (Version: - ) QuickShare (HKLM-x32\...\{1B325F70-A984-421E-8407-06683E6EF03B}) (Version: 1.90.60.12091 - Linkury Inc.) <==== ATTENTION RAGE (HKLM-x32\...\Steam App 9200) (Version: - id Software) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.61.612.2012 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6699 - Realtek Semiconductor Corp.) SHARKOON Skiller (HKLM-x32\...\{91C25547-9534-41A5-823A-1E54BA16EA3F}) (Version: 1.00.0000 - ) Skype Click to Call (HKLM-x32\...\{BB285C9F-C821-4770-8970-56C4AB52C87E}) (Version: 7.0.14735.1561 - Microsoft Corporation) Skype™ 6.14 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.14.104 - Skype Technologies S.A.) Spotify (HKCU\...\Spotify) (Version: 0.9.7.16.g4b197456 - Spotify AB) Star Wars Battlefront II (HKLM-x32\...\{3D374523-CFDE-461A-827E-2A102E2AB365}) (Version: 1.0 - LucasArts) Steamless Left4Dead Pack (HKLM-x32\...\Steamless Left4Dead Pack) (Version: 1.0 - Steamless) TeamSpeak 3 Client (HKCU\...\TeamSpeak 3 Client) (Version: 3.0.13 - TeamSpeak Systems GmbH) The Witcher 2: Assassins of Kings Enhanced Edition (HKLM-x32\...\Steam App 20920) (Version: - CD Projekt RED) Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3508.1109 - Microsoft Corporation) Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Fotogalerie (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4225.0 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Language Selector (Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Mesh (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Mesh ActiveX control for remote connections (HKLM-x32\...\{C5398A89-516C-4DAF-BA07-EE7949090E56}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Messenger (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live MIME IFilter (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live Remote Client (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Client Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Service (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Service Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden WinRAR 5.00 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.00.0 - win.rar GmbH) Xfire (HKLM-x32\...\Xfire) (Version: - ) ==================== Restore Points ========================= 22-02-2014 09:47:07 Windows Update 25-02-2014 14:27:56 Gerätetreiber-Paketinstallation: DT Soft Ltd Systemgeräte 26-02-2014 11:33:38 Windows Update 26-02-2014 12:19:11 Windows Update ==================== Hosts content: ========================== 2009-07-14 03:34 - 2014-02-12 18:56 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (whitelisted) ============= Task: {5050E41F-7BE2-4559-B9E1-11885187D3EC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-02-18] (Google Inc.) Task: {CADF4A15-6E70-457B-A136-14BFBA4F214E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-02-18] (Google Inc.) Task: {E3DCFEEB-4641-4215-83E1-85D80F3DDC0F} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-22] (Adobe Systems Incorporated) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2013-09-22 17:33 - 2013-03-06 01:30 - 00086304 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2013-10-13 16:57 - 2013-10-13 16:55 - 00394824 _____ () C:\Program Files (x86)\Avira\AntiVir Desktop\sqlite3.dll 2013-09-13 19:51 - 2013-09-13 19:51 - 00087952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2013-09-13 19:51 - 2013-09-13 19:51 - 01242952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2014-02-22 10:47 - 2014-02-20 02:02 - 00051016 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\chrome_elf.dll 2014-02-22 10:47 - 2014-02-20 02:02 - 00716616 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\libglesv2.dll 2014-02-22 10:47 - 2014-02-20 02:02 - 00100168 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\libegl.dll 2014-02-22 10:47 - 2014-02-20 02:03 - 04060488 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\pdf.dll 2014-02-22 10:47 - 2014-02-20 02:03 - 00394568 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\ppGoogleNaClPluginChrome.dll 2014-02-22 10:47 - 2014-02-20 02:02 - 01647432 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\ffmpegsumo.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== ==================== Disabled items from MSCONFIG ============== ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (02/27/2014 06:41:08 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/27/2014 04:58:36 PM) (Source: Steam Client Service) (User: ) Description: Error: Failed to poke open firewall Error: (02/27/2014 04:56:44 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/27/2014 03:53:52 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/26/2014 00:24:50 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/25/2014 03:35:26 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: prototype2.exe, Version: 0.0.0.0, Zeitstempel: 0x4f871176 Name des fehlerhaften Moduls: prototype2engine.dll, Version: 0.0.0.0, Zeitstempel: 0x4f871228 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0072c872 ID des fehlerhaften Prozesses: 0x1b40 Startzeit der fehlerhaften Anwendung: 0xprototype2.exe0 Pfad der fehlerhaften Anwendung: prototype2.exe1 Pfad des fehlerhaften Moduls: prototype2.exe2 Berichtskennung: prototype2.exe3 Error: (02/25/2014 03:34:02 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: prototype2.exe, Version: 0.0.0.0, Zeitstempel: 0x4f871176 Name des fehlerhaften Moduls: prototype2engine.dll, Version: 0.0.0.0, Zeitstempel: 0x4f871228 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0072c872 ID des fehlerhaften Prozesses: 0xb0c Startzeit der fehlerhaften Anwendung: 0xprototype2.exe0 Pfad der fehlerhaften Anwendung: prototype2.exe1 Pfad des fehlerhaften Moduls: prototype2.exe2 Berichtskennung: prototype2.exe3 Error: (02/25/2014 03:33:47 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: prototype2.exe, Version: 0.0.0.0, Zeitstempel: 0x4f871176 Name des fehlerhaften Moduls: prototype2engine.dll, Version: 0.0.0.0, Zeitstempel: 0x4f871228 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0072c872 ID des fehlerhaften Prozesses: 0x6d4 Startzeit der fehlerhaften Anwendung: 0xprototype2.exe0 Pfad der fehlerhaften Anwendung: prototype2.exe1 Pfad des fehlerhaften Moduls: prototype2.exe2 Berichtskennung: prototype2.exe3 Error: (02/25/2014 03:32:45 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: prototype2.exe, Version: 0.0.0.0, Zeitstempel: 0x4f871176 Name des fehlerhaften Moduls: prototype2engine.dll_unloaded, Version: 0.0.0.0, Zeitstempel: 0x4f871228 Ausnahmecode: 0xc0000005 Fehleroffset: 0x105678f0 ID des fehlerhaften Prozesses: 0xdb8 Startzeit der fehlerhaften Anwendung: 0xprototype2.exe0 Pfad der fehlerhaften Anwendung: prototype2.exe1 Pfad des fehlerhaften Moduls: prototype2.exe2 Berichtskennung: prototype2.exe3 Error: (02/25/2014 03:32:42 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: prototype2.exe, Version: 0.0.0.0, Zeitstempel: 0x4f871176 Name des fehlerhaften Moduls: prototype2engine.dll_unloaded, Version: 0.0.0.0, Zeitstempel: 0x4f871228 Ausnahmecode: 0xc0000005 Fehleroffset: 0x105678f0 ID des fehlerhaften Prozesses: 0x1a20 Startzeit der fehlerhaften Anwendung: 0xprototype2.exe0 Pfad der fehlerhaften Anwendung: prototype2.exe1 Pfad des fehlerhaften Moduls: prototype2.exe2 Berichtskennung: prototype2.exe3 System errors: ============= Error: (02/27/2014 04:58:35 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Steam Client Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (02/27/2014 04:58:35 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Steam Client Service erreicht. Error: (02/27/2014 04:56:30 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Error: (02/27/2014 03:53:18 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Error: (02/26/2014 00:24:14 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Error: (02/25/2014 03:26:39 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Error: (02/25/2014 02:25:41 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Error: (02/25/2014 02:05:26 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Error: (02/24/2014 05:02:07 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Error: (02/24/2014 04:41:31 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Microsoft Office Sessions: ========================= Error: (02/27/2014 06:41:08 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/27/2014 04:58:36 PM) (Source: Steam Client Service)(User: ) Description: Failed to poke open firewall Error: (02/27/2014 04:56:44 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/27/2014 03:53:52 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/26/2014 00:24:50 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/25/2014 03:35:26 PM) (Source: Application Error)(User: ) Description: prototype2.exe0.0.0.04f871176prototype2engine.dll0.0.0.04f871228c00000050072c8721b4001cf3236d165e1afD:\Program Files (x86)\Activision\Prototype 2\prototype2.exeD:\Program Files (x86)\Activision\Prototype 2\prototype2engine.dll109a8186-9e2a-11e3-b854-ac220b828298 Error: (02/25/2014 03:34:02 PM) (Source: Application Error)(User: ) Description: prototype2.exe0.0.0.04f871176prototype2engine.dll0.0.0.04f871228c00000050072c872b0c01cf32369f4e6cbbD:\Program Files (x86)\Activision\Prototype 2\prototype2.exeD:\Program Files (x86)\Activision\Prototype 2\prototype2engine.dllde6d8871-9e29-11e3-b854-ac220b828298 Error: (02/25/2014 03:33:47 PM) (Source: Application Error)(User: ) Description: prototype2.exe0.0.0.04f871176prototype2engine.dll0.0.0.04f871228c00000050072c8726d401cf3236968b4123D:\Program Files (x86)\Activision\Prototype 2\prototype2.exeD:\Program Files (x86)\Activision\Prototype 2\prototype2engine.dlld5b3369a-9e29-11e3-b854-ac220b828298 Error: (02/25/2014 03:32:45 PM) (Source: Application Error)(User: ) Description: prototype2.exe0.0.0.04f871176prototype2engine.dll_unloaded0.0.0.04f871228c0000005105678f0db801cf32367232fb16D:\Program Files (x86)\Activision\Prototype 2\prototype2.exeprototype2engine.dllb09d9138-9e29-11e3-b854-ac220b828298 Error: (02/25/2014 03:32:42 PM) (Source: Application Error)(User: ) Description: prototype2.exe0.0.0.04f871176prototype2engine.dll_unloaded0.0.0.04f871228c0000005105678f01a2001cf32366fdccd54D:\Program Files (x86)\Activision\Prototype 2\prototype2.exeprototype2engine.dllaeb51b01-9e29-11e3-b854-ac220b828298 CodeIntegrity Errors: =================================== Date: 2014-02-12 18:55:20.298 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume1\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-02-12 18:55:20.267 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume1\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. ==================== Memory info =========================== Percentage of memory in use: 26% Total physical RAM: 8089.45 MB Available physical RAM: 5912.33 MB Total Pagefile: 16177.09 MB Available Pagefile: 13754.33 MB Total Virtual: 8192 MB Available Virtual: 8191.84 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:200 GB) (Free:47.98 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: () (Fixed) (Total:1663.01 GB) (Free:1450.52 GB) NTFS Drive f: (P2 DVD 2) (CDROM) (Total:0.95 GB) (Free:0 GB) CDFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: C2B8ADF3) Partition: GPT Partition Type. ==================== End Of Log ============================ |